Public bug reported:
SRU Justification Impact: The upstream process for stable tree updates is quite similar in scope to the Ubuntu SRU process, e.g., each patch has to demonstrably fix a bug, and each patch is vetted by upstream by originating either directly from a mainline/stable Linux tree or a minimally backported form of that patch. The following upstream stable patches should be included in the Ubuntu kernel: 5.10.71 upstream stable release from git://git.kernel.org/ Linux 5.10.71 netfilter: nf_tables: Fix oversized kvmalloc() calls netfilter: conntrack: serialize hash resizes and cleanups KVM: x86: Handle SRCU initialization failure during page track init HID: usbhid: free raw_report buffers in usbhid_stop mm: don't allow oversized kvmalloc() calls netfilter: ipset: Fix oversized kvmalloc() calls HID: betop: fix slab-out-of-bounds Write in betop_probe crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() usb: hso: remove the bailout parameter ASoC: dapm: use component prefix when checking widget names net: udp: annotate data race around udp_sk(sk)->corkflag HID: u2fzero: ignore incomplete packets without data ext4: fix potential infinite loop in ext4_dx_readdir() ext4: add error checking to ext4_ext_replay_set_iblocks() ext4: fix reserved space counter leakage ext4: limit the number of blocks in one ADD_RANGE TLV ext4: fix loff_t overflow in ext4_max_bitmap_size() ipack: ipoctal: fix module reference leak ipack: ipoctal: fix missing allocation-failure check ipack: ipoctal: fix tty-registration error handling ipack: ipoctal: fix tty registration race ipack: ipoctal: fix stack information leak debugfs: debugfs_create_file_size(): use IS_ERR to check for error elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings nvme: add command id quirk for apple controllers hwmon: (pmbus/mp2975) Add missed POUT attribute for page 1 mp2975 controller perf/x86/intel: Update event constraints for ICX af_unix: fix races in sk_peer_pid and sk_peer_cred accesses net: sched: flower: protect fl_walk() with rcu net: phy: bcm7xxx: Fixed indirect MMD operations net: hns3: fix always enable rx vlan filter problem after selftest net: hns3: reconstruct function hns3_self_test net: hns3: fix prototype warning net: hns3: fix show wrong state when add existing uc mac address net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE net: hns3: keep MAC pause mode when multiple TCs are enabled net: hns3: do not allow call hns3_nic_net_open repeatedly ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup scsi: csiostor: Add module softdep on cxgb4 Revert "block, bfq: honor already-setup queue merges" net: ks8851: fix link error selftests, bpf: test_lwt_ip_encap: Really disable rp_filter selftests, bpf: Fix makefile dependencies on libbpf bpf: Exempt CAP_BPF from checks against bpf_jit_limit RDMA/hns: Fix inaccurate prints e100: fix buffer overrun in e100_get_regs e100: fix length calculation in e100_get_regs_len dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports dsa: mv88e6xxx: Fix MTU definition dsa: mv88e6xxx: 6161: Use chip wide MAX MTU drm/i915/request: fix early tracepoints smsc95xx: fix stalled rx after link change net: ipv4: Fix rtnexthop len when RTA_FLOW is present net: enetc: fix the incorrect clearing of IF_MODE bits hwmon: (tmp421) fix rounding for negative values hwmon: (tmp421) report /PVLD condition as fault mptcp: don't return sockets in foreign netns sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb mac80211-hwsim: fix late beacon hrtimer handling mac80211: mesh: fix potentially unaligned access mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug hwmon: (mlxreg-fan) Return non-zero value when fan current state is enforced from sysfs bpf, mips: Validate conditional branch offsets RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure IB/cma: Do not send IGMP leaves for sendonly Multicast groups bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 drm/amdgpu: correct initial cp_hqd_quantum for gfx9 drm/amd/display: Pass PCI deviceid into DC RDMA/cma: Do not change route.addr.src_addr.ss_family media: ir_toy: prevent device from hanging during transmit KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest KVM: nVMX: Filter out all unsupported controls when eVMCS was activated KVM: x86: nSVM: don't copy virt_ext from vmcb12 KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() x86/kvmclock: Move this_cpu_pvti into kvmclock.h mac80211: fix use-after-free in CCMP/GCMP RX scsi: ufs: Fix illegal offset in UPIU event trace gpio: pca953x: do not ignore i2c errors hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (tmp421) handle I2C errors fs-verity: fix signed integer overflow with i_size near S64_MAX ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. usb: cdns3: fix race condition before setting doorbell cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS cpufreq: schedutil: Use kobject release() method to free sugov_tunables tty: Fix out-of-bound vmalloc access in imageblit ** Affects: linux-oem-5.10 (Ubuntu) Importance: Undecided Status: Confirmed ** Affects: linux-oem-5.10 (Ubuntu Focal) Importance: Undecided Status: New ** Tags: kernel-stable-tracking-bug ** Changed in: linux-oem-5.10 (Ubuntu) Status: New => Confirmed ** Tags added: kernel-stable-tracking-bug ** Also affects: linux-oem-5.10 (Ubuntu Focal) Importance: Undecided Status: New -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux-oem-5.10 in Ubuntu. https://bugs.launchpad.net/bugs/1949009 Title: Focal update: 5.10.71 upstream stable release Status in linux-oem-5.10 package in Ubuntu: Confirmed Status in linux-oem-5.10 source package in Focal: New Bug description: SRU Justification Impact: The upstream process for stable tree updates is quite similar in scope to the Ubuntu SRU process, e.g., each patch has to demonstrably fix a bug, and each patch is vetted by upstream by originating either directly from a mainline/stable Linux tree or a minimally backported form of that patch. The following upstream stable patches should be included in the Ubuntu kernel: 5.10.71 upstream stable release from git://git.kernel.org/ Linux 5.10.71 netfilter: nf_tables: Fix oversized kvmalloc() calls netfilter: conntrack: serialize hash resizes and cleanups KVM: x86: Handle SRCU initialization failure during page track init HID: usbhid: free raw_report buffers in usbhid_stop mm: don't allow oversized kvmalloc() calls netfilter: ipset: Fix oversized kvmalloc() calls HID: betop: fix slab-out-of-bounds Write in betop_probe crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() usb: hso: remove the bailout parameter ASoC: dapm: use component prefix when checking widget names net: udp: annotate data race around udp_sk(sk)->corkflag HID: u2fzero: ignore incomplete packets without data ext4: fix potential infinite loop in ext4_dx_readdir() ext4: add error checking to ext4_ext_replay_set_iblocks() ext4: fix reserved space counter leakage ext4: limit the number of blocks in one ADD_RANGE TLV ext4: fix loff_t overflow in ext4_max_bitmap_size() ipack: ipoctal: fix module reference leak ipack: ipoctal: fix missing allocation-failure check ipack: ipoctal: fix tty-registration error handling ipack: ipoctal: fix tty registration race ipack: ipoctal: fix stack information leak debugfs: debugfs_create_file_size(): use IS_ERR to check for error elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings nvme: add command id quirk for apple controllers hwmon: (pmbus/mp2975) Add missed POUT attribute for page 1 mp2975 controller perf/x86/intel: Update event constraints for ICX af_unix: fix races in sk_peer_pid and sk_peer_cred accesses net: sched: flower: protect fl_walk() with rcu net: phy: bcm7xxx: Fixed indirect MMD operations net: hns3: fix always enable rx vlan filter problem after selftest net: hns3: reconstruct function hns3_self_test net: hns3: fix prototype warning net: hns3: fix show wrong state when add existing uc mac address net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE net: hns3: keep MAC pause mode when multiple TCs are enabled net: hns3: do not allow call hns3_nic_net_open repeatedly ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup scsi: csiostor: Add module softdep on cxgb4 Revert "block, bfq: honor already-setup queue merges" net: ks8851: fix link error selftests, bpf: test_lwt_ip_encap: Really disable rp_filter selftests, bpf: Fix makefile dependencies on libbpf bpf: Exempt CAP_BPF from checks against bpf_jit_limit RDMA/hns: Fix inaccurate prints e100: fix buffer overrun in e100_get_regs e100: fix length calculation in e100_get_regs_len dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports dsa: mv88e6xxx: Fix MTU definition dsa: mv88e6xxx: 6161: Use chip wide MAX MTU drm/i915/request: fix early tracepoints smsc95xx: fix stalled rx after link change net: ipv4: Fix rtnexthop len when RTA_FLOW is present net: enetc: fix the incorrect clearing of IF_MODE bits hwmon: (tmp421) fix rounding for negative values hwmon: (tmp421) report /PVLD condition as fault mptcp: don't return sockets in foreign netns sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb mac80211-hwsim: fix late beacon hrtimer handling mac80211: mesh: fix potentially unaligned access mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug hwmon: (mlxreg-fan) Return non-zero value when fan current state is enforced from sysfs bpf, mips: Validate conditional branch offsets RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure IB/cma: Do not send IGMP leaves for sendonly Multicast groups bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 drm/amdgpu: correct initial cp_hqd_quantum for gfx9 drm/amd/display: Pass PCI deviceid into DC RDMA/cma: Do not change route.addr.src_addr.ss_family media: ir_toy: prevent device from hanging during transmit KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest KVM: nVMX: Filter out all unsupported controls when eVMCS was activated KVM: x86: nSVM: don't copy virt_ext from vmcb12 KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() x86/kvmclock: Move this_cpu_pvti into kvmclock.h mac80211: fix use-after-free in CCMP/GCMP RX scsi: ufs: Fix illegal offset in UPIU event trace gpio: pca953x: do not ignore i2c errors hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field hwmon: (tmp421) handle I2C errors fs-verity: fix signed integer overflow with i_size near S64_MAX ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. usb: cdns3: fix race condition before setting doorbell cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS cpufreq: schedutil: Use kobject release() method to free sugov_tunables tty: Fix out-of-bound vmalloc access in imageblit To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux-oem-5.10/+bug/1949009/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp