[continued from previous message]
- fscrypt: simplify master key locking
- fscrypt: stop using keyrings subsystem for fscrypt_master_key
- fscrypt: fix keyring memory leak on mount failure
- tcp/udp: Fix memory leak in ipv6_renew_options(). (CVE-2022-3524)
- [armhf] mtd: rawnand: gpmi: Set WAIT_FOR_READY timeout based on
program/erase times
- memcg: enable accounting of ipc resources (CVE-2021-3759)
- [arm*] binder: fix UAF of alloc->vma in race with munmap()
- btrfs: fix type of parameter generation in btrfs_get_dentry
- ftrace: Fix use-after-free for dynamic ftrace_ops
- tcp/udp: Make early_demux back namespacified.
- tracing: kprobe: Fix memory leak in test_gen_kprobe/kretprobe_cmd()
- kprobe: reverse kp->flags when arm_kprobe failed
- tracing/histogram: Update document for KEYS_MAX size
- capabilities: fix potential memleak on error path from
vfs_getxattr_alloc()
- fuse: add file_modified() to fallocate
- efi: random: reduce seed size to 32 bytes
- efi: random: Use 'ACPI reclaim' memory for random seed
- [x86] perf/x86/intel: Fix pebs event constraints for ICL
- [x86] perf/x86/intel: Add Cooper Lake stepping to isolation_ucodes[]
- ext4: fix warning in 'ext4_da_release_space'
- ext4: fix BUG_ON() when directory entry has invalid rec_len
- [x86] KVM: x86: Mask off reserved bits in CPUID.80000006H
- [x86] KVM: x86: Mask off reserved bits in CPUID.8000001AH
- [x86] KVM: x86: Mask off reserved bits in CPUID.80000008H
- [x86] KVM: x86: Mask off reserved bits in CPUID.80000001H
- [x86] KVM: x86: emulator: em_sysexit should update ctxt->mode
- [x86] KVM: x86: emulator: introduce emulator_recalc_and_set_mode
- [x86] KVM: x86: emulator: update the emulation mode after CR0 write
- ext4,f2fs: fix readahead of verity data
- [arm64,armhf] drm/rockchip: dsi: Force synchronous probe
- [x86] drm/i915/sdvo: Filter out invalid outputs more sensibly
- [x86] drm/i915/sdvo: Setup DDC fully before output init
- wifi: brcmfmac: Fix potential buffer overflow in brcmf_fweh_event_worker()
(CVE-2022-3628)
- ipc: remove memcg accounting for sops objects in do_semtimedop()
https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.155
- fuse: fix readdir cache race
- [armhf] phy: stm32: fix an error code in probe
- wifi: cfg80211: silence a sparse RCU warning
- wifi: cfg80211: fix memory leak in query_regdb_file()
- bpf, sockmap: Fix the sk->sk_forward_alloc warning of
sk_stream_kill_queues
- bpftool: Fix NULL pointer dereference when pin {PROG, MAP, LINK} without
FILE
- [x86] HID: hyperv: fix possible memory leak in mousevsc_probe()
- bpf: Support for pointers beyond pkt_end.
- bpf: Add helper macro bpf_for_each_reg_in_vstate
- bpf: Fix wrong reg type conversion in release_reference()
- net: gso: fix panic on frag_list with mixed head alloc types
- macsec: delete new rxsc when offload fails
- macsec: fix secy->n_rx_sc accounting
- macsec: fix detection of RXSCs when toggling offloading
- macsec: clear encryption keys from the stack after setting up offload
- net: tun: Fix memory leaks of napi_get_frags
- bnxt_en: Fix possible crash in bnxt_hwrm_set_coal()
- bnxt_en: fix potentially incorrect return value for ndo_rx_flow_steer
- capabilities: fix undefined behavior in bit shift for CAP_TO_MASK
- [s390x] KVM: s390x: fix SCK locking
- [s390x] KVM: s390: pv: don't allow userspace to set the clock under PV
- hamradio: fix issue of dev reference count leakage in bpq_device_event()
- [arm*] drm/vc4: Fix missing platform_unregister_drivers() call in
vc4_drm_register()
- tcp: prohibit TCP_REPAIR_OPTIONS if data was already sent
- ipv6: addrlabel: fix infoleak when sending struct ifaddrlblmsg to network
- can: af_can: fix NULL pointer dereference in can_rx_register()
- [arm64,armhf] net: stmmac: dwmac-meson8b: fix
meson8b_devm_clk_prepare_enable()
- tipc: fix the msg->req tlv len check in
tipc_nl_compat_name_table_dump_header
- [arm64] dmaengine: mv_xor_v2: Fix a resource leak in mv_xor_v2_remove()
- [arm64] drivers: net: xgene: disable napi when register irq failed in
xgene_enet_open()
- net/mlx5: Allow async trigger completion execution on single CPU systems
- net/mlx5e: E-Switch, Fix comparing termination table instance
- [armhf] net: cpsw: disable napi in cpsw_ndo_open()
- net: cxgb3_main: disable napi when bind qsets failed in cxgb_up()
- cxgb4vf: shut down the adapter when t4vf_update_port_info() failed in
cxgb4vf_open()
- net: phy: mscc: macsec: clear encryption keys when freeing a flow
- [amd64,arm64] net: atlantic: macsec: clear encryption keys from the stack
- ethernet: s2io: disable napi when start nic failed in s2io_card_up()
- [armel,armhf] net: mv643xx_eth: disable napi when init rxq or txq failed
in mv643xx_eth_open()
- net: macvlan: fix memory leaks of macvlan_common_newlink
- [arm64] efi: Fix handling of misaligned runtime regions and drop warning
- [mips*] jump_label: Fix compat branch range check
- [arm64] mmc: sdhci-of-arasan: Fix SDHCI_RESET_ALL for CQHCI
- [arm64,armhf] mmc: sdhci-tegra: Fix SDHCI_RESET_ALL for CQHCI
- ALSA: hda/hdmi - enable runtime pm for more AMD display audio
- ALSA: hda/ca0132: add quirk for EVGA Z390 DARK
- ALSA: hda: fix potential memleak in 'add_widget_node'
- ALSA: hda/realtek: Add Positivo C6300 model quirk
- ALSA: usb-audio: Add quirk entry for M-Audio Micro
- ALSA: usb-audio: Add DSD support for Accuphase DAC-60
- vmlinux.lds.h: Fix placement of '.data..decrypted' section
- ata: libata-scsi: fix SYNCHRONIZE CACHE (16) command failure
- nilfs2: fix deadlock in nilfs_count_free_blocks()
- nilfs2: fix use-after-free bug of ns_writer on remount
- [x86] drm/i915/dmabuf: fix sg_table handling in map_dma_buf
- [x86] platform/x86: hp_wmi: Fix rfkill causing soft blocked wifi
- [arm64,armhf] mms: sdhci-esdhc-imx: Fix SDHCI_RESET_ALL for CQHCI
- udf: Fix a slab-out-of-bounds write bug in udf_find_entry()
- mm/memremap.c: map FS_DAX device memory as decrypted
- can: j1939: j1939_send_one(): fix missing CAN header initialization
- net: tun: call napi_schedule_prep() to ensure we own a napi
- [arm64,armhf] mmc: sdhci-esdhc-imx: Convert the driver to DT-only
- [x86] cpu: Restore AMD's DE_CFG MSR after resume
- io_uring: kill goto error handling in io_sqpoll_wait_sq()
https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.156
- drm/amd/display: Remove wrong pipe control lock
- NFSv4: Retry LOCK on OLD_STATEID during delegation return
- [arm64,armhf] i2c: tegra: Allocate DMA memory for DMA engine
- [x86] i2c: i801: add lis3lv02d's I2C address for Vostro 5568
- btrfs: remove pointless and double ulist frees in error paths of qgroup
tests
- Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm
- ALSA: hda/realtek: fix speakers and micmute on HP 855 G8
- [x86] mtd: spi-nor: intel-spi: Disable write protection only if asked
- [arm64,armhf] mmc: sdhci-esdhc-imx: use the correct host caps for
MMC_CAP_8_BIT_DATA
- drm/amd/pm: support power source switch on Sienna Cichlid
- drm/amd/pm: Read BIF STRAP also for BACO check
- drm/amd/pm: disable BACO entry/exit completely on several sienna cichlid
cards
- drm/amdgpu: disable BACO on special BEIGE_GOBY card
- [armhf] spi: stm32: Print summary 'callbacks suppressed' message
- ASoC: core: Fix use-after-free in snd_soc_exit()
- serial: 8250: Remove serial_rs485 sanitization from em485
- [arm64,armhf] serial: imx: Add missing .thaw_noirq hook
- tty: n_gsm: fix sleep-in-atomic-context bug in gsm_control_send
- bpf, test_run: Fix alignment problem in bpf_prog_test_run_skb()
- ASoC: soc-utils: Remove __exit for snd_soc_util_exit()
- sctp: remove the unnecessary sinfo_stream check in
sctp_prsctp_prune_unsent
- sctp: clear out_curr if all frag chunks of current msg are pruned
- block: sed-opal: kmalloc the cmd/resp buffers
- [arm64] Fix bit-shifting UB in the MIDR_CPU_MODEL() macro
- parport_pc: Avoid FIFO port location truncation
- pinctrl: devicetree: fix null pointer dereferencing in pinctrl_dt_to_map
- [arm64,armhf] drm/panel: simple: set bpc field for logic technologies
displays
- drm/drv: Fix potential memory leak in drm_dev_init()
- drm: Fix potential null-ptr-deref in drm_vblank_destroy_worker()
- ata: libata-transport: fix double ata_host_put() in ata_tport_add()
- ata: libata-transport: fix error handling in ata_tport_add()
- ata: libata-transport: fix error handling in ata_tlink_add()
- ata: libata-transport: fix error handling in ata_tdev_add()
- bpf: Initialize same number of free nodes for each pcpu_freelist
- mISDN: fix possible memory leak in mISDN_dsp_element_register()
- net: hinic: Fix error handling in hinic_module_init()
- net: liquidio: release resources when liquidio driver open failed
- mISDN: fix misuse of put_device() in mISDN_register_device()
- net: macvlan: Use built-in RCU list checking
- net: caif: fix double disconnect client in chnl_net_open()
- bnxt_en: Remove debugfs when pci_register_driver failed
- xen/pcpu: fix possible memory leak in register_pcpu()
- net: ena: Fix error handling in ena_init()
- drbd: use after free in drbd_create_device()
- [x86] platform/x86/intel: pmc: Don't unconditionally attach Intel PMC when
virtualized
- cifs: add check for returning value of SMB2_close_init
- cifs: Fix wrong return value checking when GETFLAGS
- [x86] net: thunderbolt: Fix error handling in tbnet_init()
- cifs: add check for returning value of SMB2_set_info_init
- ftrace: Fix the possible incorrect kernel message
- ftrace: Optimize the allocation for mcount entries
- ftrace: Fix null pointer dereference in ftrace_add_mod()
- ring_buffer: Do not deactivate non-existant pages
- tracing/ring-buffer: Have polling block on watermark
- tracing: Fix memory leak in test_gen_synth_cmd() and
test_empty_synth_event()
- tracing: Fix wild-memory-access in register_synth_event()
- tracing: kprobe: Fix potential null-ptr-deref on trace_event_file in
kprobe_event_gen_test_exit()
- tracing: kprobe: Fix potential null-ptr-deref on trace_array in
kprobe_event_gen_test_exit()
- ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
- ALSA: hda/realtek: fix speakers for Samsung Galaxy Book Pro
- ALSA: hda/realtek: Fix the speaker output on Samsung Galaxy Book Pro 360
- [arm64,armhf] Revert "usb: dwc3: disable USB core PHY management"
- slimbus: stream: correct presence rate frequencies
- speakup: fix a segfault caused by switching consoles
- USB: serial: option: add Sierra Wireless EM9191
- USB: serial: option: remove old LARA-R6 PID
- USB: serial: option: add u-blox LARA-R6 00B modem
- USB: serial: option: add u-blox LARA-L6 modem
- USB: serial: option: add Fibocom FM160 0x0111 composition
- usb: add NO_LPM quirk for Realforce 87U Keyboard
- dm ioctl: fix misbehavior if list_versions races with module loading
- serial: 8250: Fall back to non-DMA Rx if IIR_RDI occurs
- serial: 8250: Flush DMA Rx on RLSI
- [x86] serial: 8250_lpss: Configure DMA also w/o DMA filter
- Input: iforce - invert valid length check when fetching device IDs
- maccess: Fix writing offset in case of fault in
strncpy_from_kernel_nofault()
- [s390x] scsi: zfcp: Fix double free of FSF request when qdio send fails
- [amd64] iommu/vt-d: Set SRE bit only when hardware has SRS cap
- firmware: coreboot: Register bus in module init
- mmc: core: properly select voltage range without power cycle
- mmc: sdhci-pci-o2micro: fix card detect fail issue caused by CD# debounce
timeout
- mmc: sdhci-pci: Fix possible memory leak caused by missing pci_dev_put()
- docs: update mediator contact information in CoC doc
- [x86] misc/vmw_vmci: fix an infoleak in vmci_host_do_receive_datagram()
- [x86] perf/x86/intel/pt: Fix sampling using single range output
- nvme: restrict management ioctls to admin
- nvme: ensure subsystem reset is single threaded (CVE-2022-3169)
- net: fix a concurrency bug in l2tp_tunnel_register()
- ring-buffer: Include dropped pages in counting dirty patches
- usbnet: smsc95xx: Fix deadlock on runtime resume
- stddef: Introduce struct_group() helper macro
- net: use struct_group to copy ip/ipv6 header addresses
- scsi: target: tcm_loop: Fix possible name leak in tcm_loop_setup_hba_bus()
- scsi: scsi_debug: Fix possible UAF in sdebug_add_host_helper()
- kprobes: Skip clearing aggrprobe's post_handler in kprobe-on-ftrace case
- Input: i8042 - fix leaking of platform device on module removal
- macvlan: enforce a consistent minimal mtu
- tcp: cdg: allow tcp_cdg_release() to be called multiple times
- kcm: avoid potential race in kcm_tx_work (CVE-2022-3521)
- kcm: close race conditions on sk_receive_queue
- 9p: trans_fd/p9_conn_cancel: drop client lock earlier
- gfs2: Check sb_bsize_shift after reading superblock
- gfs2: Switch from strlcpy to strscpy
- 9p/trans_fd: always use O_NONBLOCK read/write
- mm: fs: initialize fsdata passed to write_begin/write_end interface
https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.157
- scsi: scsi_transport_sas: Fix error handling in sas_phy_add()
- ata: libata-scsi: simplify __ata_scsi_queuecmd()
- ata: libata-core: do not issue non-internal commands once EH is pending
- bridge: switchdev: Notify about VLAN protocol changes
- bridge: switchdev: Fix memory leaks when changing VLAN protocol
- drm/display: Don't assume dual mode adaptors support i2c sub-addressing
- nvme: add a bogus subsystem NQN quirk for Micron MTFDKBA2T0TFH
- nvme-pci: add NVME_QUIRK_BOGUS_NID for Micron Nitro
- iio: ms5611: Simplify IO callback parameters
- iio: pressure: ms5611: fixed value compensation bug
- ceph: do not update snapshot context when there is no new snapshot
- ceph: avoid putting the realm twice when decoding snaps fails
- wifi: mac80211: fix memory free error when registering wiphy fail
- wifi: mac80211_hwsim: fix debugfs attribute ps with rc table support
- audit: fix undefined behavior in bit shift for AUDIT_BIT
- wifi: airo: do not assign -1 to unsigned char
- wifi: mac80211: Fix ack frame idr leak when mesh has no route
- [armhf] spi: stm32: fix stm32_spi_prepare_mbr() that halves spi clk for
every run
- Revert "net: macsec: report real_dev features when HW offloading is
enabled"
- [powerpc*] scsi: ibmvfc: Avoid path failures during live migration
- scsi: scsi_debug: Make the READ CAPACITY response compliant with ZBC
- drm: panel-orientation-quirks: Add quirk for Acer Switch V 10 (SW5-017)
- block, bfq: fix null pointer dereference in bfq_bio_bfqg()
- [arm64] syscall: Include asm/ptrace.h in syscall_wrapper header.
- [mips*] pic32: treat port as signed integer
- xfrm: fix "disable_policy" on ipv4 early demux
- xfrm: replay: Fix ESN wrap around for GSO
- af_key: Fix send_acquire race with pfkey_register
- [armhf] sgtl5000: Reset the CHIP_CLK_CTRL reg on remove
- ASoC: soc-pcm: Don't zero TDM masks in __soc_pcm_open()
- [x86] scsi: storvsc: Fix handling of srb_status and capacity change events
- regulator: core: fix kobject release warning and memory leak in
regulator_register()
- regulator: core: fix UAF in destroy_regulator()
- [arm64,armhf] bus: sunxi-rsb: Support atomic transfers
- [arm64] tee: optee: fix possible memory leak in optee_register_device()
- net: liquidio: simplify if expression
- rxrpc: Allow list of in-use local UDP endpoints to be viewed in /proc
- rxrpc: Use refcount_t rather than atomic_t
- rxrpc: Fix race between conn bundle lookup and bundle removal
[ZDI-CAN-15975]
- [i386] net: pch_gbe: fix potential memleak in pch_gbe_tx_queue()
- 9p/fd: fix issue of list_del corruption in p9_fd_cancel()
- netfilter: conntrack: Fix data-races around ct mark
- [armhf] dts: imx6q-prti6q: Fix ref/tcxo-clock-frequency properties
- net/mlx4: Check retval of mlx4_bitmap_init
- net/qla3xxx: fix potential memleak in ql3xxx_send()
- [i386] net: pch_gbe: fix pci device refcount leak while module exiting
- nfp: fill splittable of devlink_port_attrs correctly
- nfp: add port from netdev validation for EEPROM access
- macsec: Fix invalid error code set
- [x86] Drivers: hv: vmbus: fix double free in the error path of
vmbus_add_channel_work()
- [x86] Drivers: hv: vmbus: fix possible memory leak in
vmbus_device_register()
- netfilter: ipset: Limit the maximal range of consecutive elements to
add/delete
- netfilter: ipset: regression in ip_set_hash_ip.c
- net/mlx5: Fix FW tracer timestamp calculation
- net/mlx5: Fix handling of entry refcount when command is not issued to FW
- tipc: set con sock in tipc_conn_alloc
- tipc: add an extra conn_get in tipc_conn_alloc
- tipc: check skb_linearize() return value in tipc_disc_rcv()
- xfrm: Fix ignored return value in xfrm6_init()
- sfc: fix potential memleak in __ef100_hard_start_xmit()
- net: sched: allow act_ct to be built without NF_NAT
- [armhf] regulator: twl6030: re-add TWL6032_SUBCLASS
- bnx2x: fix pci device refcount leak in bnx2x_vf_is_pcie_pending()
- netfilter: flowtable_offload: add missing locking
- dccp/tcp: Reset saddr on failure after inet6?_hash_connect().
- ipv4: Fix error return code in fib_table_insert()
- [s390x] dasd: fix no record found for raw_track_access
- net: arcnet: Fix RESET flag handling
- arcnet: fix potential memory leak in com20020_probe()
- [arm64] net: thunderx: Fix the ACPI memory leak
- [arm64] net: enetc: manage ENETC_F_QBV in priv->active_offloads only when
enabled
- [arm64] net: enetc: cache accesses to &priv->si->hw
- [arm64] net: enetc: preserve TX ring priority across reconfiguration
- lib/vdso: use "grep -E" instead of "egrep"
- [armhf] usb: dwc3: exynos: Fix remove() function
- ext4: fix use-after-free in ext4_ext_shift_extents
- [arm64] dts: rockchip: lower rk3399-puma-haikou SD controller clock
frequency
- iio: light: apds9960: fix wrong register for gesture gain
- ceph: make ceph_create_session_msg a global symbol
- ceph: make iterate_sessions a global symbol
- ceph: flush mdlog before umounting
- ceph: flush the mdlog before waiting on unsafe reqs
- ceph: fix off by one bugs in unsafe_request_wait()
- ceph: put the requests/sessions when it fails to alloc memory
- ceph: fix possible NULL pointer dereference for req->r_session
- ceph: Use kcalloc for allocating multiple elements
- ceph: fix NULL pointer dereference for req->r_session
- [arm64,armhf] usb: dwc3: gadget: conditionally remove requests
- [arm64,armhf] usb: dwc3: gadget: Return -ESHUTDOWN on ep disable
- [arm64,armhf] usb: dwc3: gadget: Clear ep descriptor last
- nilfs2: fix nilfs_sufile_mark_dirty() not set segment usage as dirty
- mm: vmscan: fix extreme overreclaim and swap floods
- [x86] KVM: x86: nSVM: leave nested mode on vCPU free
- [x86] KVM: x86: remove exit_int_info warning in svm_handle_exit
- [x86] ioremap: Fix page aligned size calculation in __ioremap_caller()
- [arm*] binder: avoid potential data leakage when copying txn
- [arm*] binder: read pre-translated fds from sender buffer
- [arm*] binder: defer copies of pre-patched txn data
- [arm*] binder: fix pointer cast warning
- [arm*] binder: Address corner cases in deferred copy and fixup
- [arm*] binder: Gracefully handle BINDER_TYPE_FDA objects with num_fds=0
- Input: synaptics - switch touchpad on HP Laptop 15-da3001TU to RMI mode
- [x86] ASoC: Intel: bytcht_es8316: Add quirk for the Nanote UMPC-01
- Input: goodix - try resetting the controller when no config is set
- [x86] Input: soc_button_array - add use_low_level_irq module parameter
- [x86] Input: soc_button_array - add Acer Switch V 10 to
dmi_use_low_level_irq[]
- xen-pciback: Allow setting PCI_MSIX_FLAGS_MASKALL too
- xen/platform-pci: add missing free_irq() in error path
- [x86] platform/x86: asus-wmi: add missing pci_dev_put() in
asus_wmi_set_xusb2pr()
- [x86] platform/x86: acer-wmi: Enable SW_TABLET_MODE on Switch V 10
(SW5-017)
- zonefs: fix zone report size in __zonefs_io_error()
- [x86] platform/x86: hp-wmi: Ignore Smart Experience App event
- tcp: configurable source port perturb table size
- net: usb: qmi_wwan: add Telit 0x103a composition
- [arm64,armhf] gpu: host1x: Avoid trying to use GART on Tegra20
- dm integrity: flush the journal on suspend
- dm integrity: clear the journal on suspend
- genirq/msi: Shutdown managed interrupts with unsatifiable affinities
- genirq: Always limit the affinity to online CPUs
- [arm64,armhf] irqchip/gic-v3: Always trust the managed affinity provided
by the core code
- genirq: Take the proposed affinity at face value if force==true
- btrfs: free btrfs_path before copying root refs to userspace
- btrfs: free btrfs_path before copying fspath to userspace
- btrfs: free btrfs_path before copying subvol info to userspace
- btrfs: sysfs: normalize the error handling branch in btrfs_init_sysfs()
- drm/amdgpu: always register an MMU notifier for userptr
- [x86] drm/i915: fix TLB invalidation for Gen12 video and compute engines
(CVE-2022-4139)
- fuse: lock inode unconditionally in fuse_fallocate()
https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.158
- btrfs: sink iterator parameter to btrfs_ioctl_logical_to_ino
- btrfs: free btrfs_path before copying inodes to userspace
- [armhf] spi: spi-imx: Fix spi_bus_clk if requested clock is higher than
input clock
- btrfs: move QUOTA_ENABLED check to rescan_should_stop from
btrfs_qgroup_rescan_worker
- drm/display/dp_mst: Fix drm_dp_mst_add_affected_dsc_crtcs() return code
- drm/amdgpu: update drm_display_info correctly when the edid is read
- drm/amdgpu: Partially revert "drm/amdgpu: update drm_display_info
correctly when the edid is read"
- btrfs: qgroup: fix sleep from invalid context bug in
btrfs_qgroup_inherit()
- iio: health: afe4403: Fix oob read in afe4403_read_raw
- bpf, perf: Use subprog name when reporting subprog ksymbol
- scripts/faddr2line: Fix regression in name resolution on ppc64le
- [x86] hwmon: (i5500_temp) fix missing pci_disable_device()
- hwmon: (ibmpex) Fix possible UAF when ibmpex_register_bmc() fails
- bpf: Do not copy spin lock field from user in bpf_selem_alloc
- of: property: decrement node refcount in of_fwnode_get_reference_args()
- ixgbevf: Fix resource leak in ixgbevf_init_module()
- i40e: Fix error handling in i40e_init_module()
- iavf: remove redundant ret variable
- iavf: Fix error handling in iavf_init_module()
- e100: switch from 'pci_' to 'dma_' API
- e100: Fix possible use after free in e100_xmit_prepare
- net/mlx5: Fix uninitialized variable bug in outlen_write()
- net/mlx5e: Fix use-after-free when reverting termination table
- can: sja1000_isa: sja1000_isa_probe(): add missing free_sja1000dev()
- [i386] can: cc770: cc770_isa_probe(): add missing free_cc770dev()
- qlcnic: fix sleep-in-atomic-context bugs caused by msleep
- [amd64,arm64] aquantia: Do not purge addresses when setting the number of
rings
- wifi: cfg80211: fix buffer overflow in elem comparison
- wifi: cfg80211: don't allow multi-BSSID in S1G
- wifi: mac8021: fix possible oob access in ieee80211_get_rate_duration
- net: phy: fix null-ptr-deref while probe() failed
- net/9p: Fix a potential socket leak in p9_socket_open
- tipc: re-fetch skb cb after tipc_msg_validate
- afs: Fix fileserver probe RTT handling
- net: tun: Fix use-after-free in tun_detach()
- packet: do not set TP_STATUS_CSUM_VALID on CHECKSUM_COMPLETE
- sctp: fix memory leak in sctp_stream_outq_migrate()
- [x86] hwmon: (coretemp) Check for null before removing sysfs attrs
- [x86] hwmon: (coretemp) fix pci device refcount leak in nv1a_ram_new()
- net/mlx5: DR, Fix uninitialized var warning
- nilfs2: fix NULL pointer dereference in nilfs_palloc_commit_free_entry()
- [x86] bugs: Make sure MSR_SPEC_CTRL is updated properly upon resume from
S3
- [x86] pinctrl: intel: Save and restore pins in "direct IRQ" mode
- net: stmmac: Set MAC's flow control register to reflect current settings
- mmc: core: Fix ambiguous TRIM and DISCARD arg
- [arm64,armhf] mmc: sdhci-esdhc-imx: correct CQHCI exit halt state check
- mmc: sdhci: Fix voltage switch delay
- drm/amdgpu: temporarily disable broken Clang builds due to blown
stack-frame
- [x86] drm/i915: Never return 0 if not all requests retired
- tracing: Free buffers when a used dynamic event is removed
- io_uring: don't hold uring_lock when calling io_run_task_work*
- ASoC: ops: Fix bounds check for _sx controls
- [arm64,armhf] pinctrl: single: Fix potential division by zero
- [amd64] iommu/vt-d: Fix PCI device refcount leak in has_external_pci()
- [amd64] iommu/vt-d: Fix PCI device refcount leak in dmar_dev_scope_init()
- ipv4: Handle attempt to delete multipath route when fib_info contains an
nh reference (CVE-2022-3435)
- ipv4: Fix route deletion when nexthop info is not specified
- Revert "tty: n_gsm: avoid call of sleeping functions from atomic context"
- [x86] tsx: Add a feature bit for TSX control MSR support
- [x86] pm: Add enumeration check before spec MSRs save/restore setup
- [arm64,armhf] i2c: imx: Only DMA messages with I2C_M_DMA_SAFE flag set
- [amd64,arm64] ACPI: HMAT: remove unnecessary variable initialization
- [amd64,arm64] ACPI: HMAT: Fix initiator registration for single-initiator
systems
- char: tpm: Protect tpm_pm_suspend with locks
- block: unhash blkdev part inode when the part is deleted
- proc: avoid integer type confusion in get_proc_long (CVE-2022-4378)
- proc: proc_skip_spaces() shouldn't think it is working on C strings
(CVE-2022-4378)
- v4l2: don't fall back to follow_pfn() if pin_user_pages_fast() fails
- ipc/sem: Fix dangling sem_array access in semtimedop race
.
[ Salvatore Bonaccorso ]
* Bump ABI to 20
* [rt] Drop "net: arcnet: Fix RESET flag handling" (applied upstream)
* [x86] Enable AMD_MEM_ENCRYPT (Closes: #1024697)
* xen/netback: Ensure protocol headers don't fall in the non-linear area
(XSA-423, CVE-2022-3643)
* xen/netback: do some code cleanup
* xen/netback: don't call kfree_skb() with interrupts disabled (XSA-424,
CVE-2022-42328, CVE-2022-42329)
* [rt] Update to 5.10.158-rt77
Checksums-Sha1:
629a74d5001eb3940d7b90fc1ebd89547ef6e184 197238 linux_5.10.158-1.dsc
780f751a3f74488fdc1f60bfd5d1abea5c230e74 121806368 linux_5.10.158.orig.tar.xz
bcec77c1ee5667d70159da04f5347bffb787a420 1563668 linux_5.10.158-1.debian.tar.xz
748e097e1963b594d773374bd9ee198a72d15ed1 6847 linux_5.10.158-1_source.buildinfo
Checksums-Sha256:
ede37fb73686fdc84ba692456f88a49241c5819a413c72561434222a88481719 197238 linux_5.10.158-1.dsc
a0791322c13f09ec855a0630a4764234308aafb4fe04540dde302b8cc21e052a 121806368 linux_5.10.158.orig.tar.xz
6fc516d444e7cd71b2c49df50175e5eb5ed4a8edc90cb11b56e019a444b87c02 1563668 linux_5.10.158-1.debian.tar.xz
3dc7090b472dcfe7a188294c1b0d0592862d9cf45371d74b92e0726d7c40233c 6847 linux_5.10.158-1_source.buildinfo
Files:
bf628e2873be8bd2afb0b8b9f27e8a02 197238 kernel optional linux_5.10.158-1.dsc
a23c2f7a9f76965b623a917a6541716b 121806368 kernel optional linux_5.10.158.orig.tar.xz
c258acdfb698bda08cb5bbcd0d16094f 1563668 kernel optional linux_5.10.158-1.debian.tar.xz
b5ef2c73095e5b2912a7dc2f6ccde874 6847 kernel optional linux_5.10.158-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmOTbVJfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EGI0QAJ8t9rDSfBW5j6oPhUNLtwPf7ZSHyNSf pCs1fTkpVmSuYm+8nEFRgJt52l5o7V5E5gYPnIvpOuJubKpmp+cyVlaPTvgn5CvL 2XveYblichnoAEXZXS9Hv4S5aTfP2R0Eys15eqkQ6+QXsOpjKgiwD5XEaYIcpmMj hFvuIophZr2HAag+BJ2h216xn7k0n1I6P/0bdKGWGoWJWGpvhs5oL7ICRx9X2+7R gGtr3oL4ZVkipfGQNPGk8RLWMc4nbjvUXuglj8DmU96M2UJzhyYTre+Y0i/8oD7n xDP8twTmC2CaSycl8V1qa6Z6xI/oFrDUfBESmkudPhLVmILczJxzxxs1qKrWS/PM /pwiyzSsGuFFr3v0fKOm0CfOkQcwwOQu+qtLUypq0Mkk1/pO4fRk2X+NwXAnKJtp mkoaN2lwtlCp23iWOlAgE2tREvDqxLbB9cCFQNOmRrxh4ZHBb1mjhQwYubw9XIbW to/VtWSekNpPc3KgwZSqNsQhc6wAMbiiu+x7fzHWQjhp+UHyPDW3szxb+OmRq2Tw 376NMvjlA+8BVN0Qh/BpYSHto72fQ5YbzJo7ibzZTga1H2PofePmYsU40QPS6rEn JWHwZApCk/TRZ68H9S6I2f7UegCOFcL3tKefWuEy/nC7Y6sd6/b+cXUnL4hkuoDP
HyiQgLHwPQlc
=f3fj
-----END PGP SIGNATURE-----
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)