This bug was fixed in the package linux - 5.19.0-18.18 --------------- linux (5.19.0-18.18) kinetic; urgency=medium
* kinetic/linux: 5.19.0-18.18 -proposed tracker (LP: #1990366) * 5.19.0-17.17: kernel NULL pointer dereference, address: 0000000000000084 (LP: #1990236) - Revert "UBUNTU: SAUCE: apparmor: Fix regression in stacking due to label flags" - Revert "UBUNTU: [Config] disable SECURITY_APPARMOR_RESTRICT_USERNS" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - add an internal buffer"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - don't wait on cleanup"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - don't waste entropy"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - always add a pending request"" - Revert "UBUNTU: SAUCE: Revert "hwrng: virtio - unregister device before reset"" - Revert "UBUNTU: SAUCE: Revert "virtio-rng: make device ready before making request"" - Revert "UBUNTU: [Config] update configs after apply new apparmor patch set" - Revert "UBUNTU: SAUCE: apparmor: add user namespace creation mediation" - Revert "UBUNTU: SAUCE: selinux: Implement userns_create hook" - Revert "UBUNTU: SAUCE: bpf-lsm: Make bpf_lsm_userns_create() sleepable" - Revert "UBUNTU: SAUCE: security, lsm: Introduce security_create_user_ns()" - Revert "UBUNTU: SAUCE: lsm stacking v37: AppArmor: Remove the exclusive flag" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add /proc attr entry for full LSM context" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Removed scaffolding function lsmcontext_init" - Revert "UBUNTU: SAUCE: lsm stacking v37: netlabel: Use a struct lsmblob in audit data" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Add record for multiple object contexts" - Revert "UBUNTU: SAUCE: lsm stacking v37: audit: multiple subject lsm values for netlabel" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Add record for multiple task security contexts" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Allow multiple records in an audit_buffer" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add a function to report multiple LSMs" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Create audit_stamp structure" - Revert "UBUNTU: SAUCE: lsm stacking v37: Audit: Keep multiple LSM data in audit_names" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: security_secid_to_secctx module selection" - Revert "UBUNTU: SAUCE: lsm stacking v37: binder: Pass LSM identifier for confirmation" - Revert "UBUNTU: SAUCE: lsm stacking v37: NET: Store LSM netlabel data in a lsmblob" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: security_secid_to_secctx in netlink netfilter" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_dentry_init_security" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_inode_getsecctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmcontext in security_secid_to_secctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Ensure the correct LSM context releaser" - Revert "UBUNTU: SAUCE: fixup lsm stacking v37: LSM: Specify which LSM to display" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Specify which LSM to display" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_cred_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_inode_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_current_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_ipc_getsecid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_secid_to_secctx" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_secctx_to_secid" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_kernel_act_as" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Use lsmblob in security_audit_rule_match" - Revert "UBUNTU: SAUCE: lsm stacking v37: IMA: avoid label collisions with stacked LSMs" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: provide lsm name and id slot mappings" - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Add the lsmblob data structure." - Revert "UBUNTU: SAUCE: lsm stacking v37: LSM: Infrastructure management of the sock security" - Revert "UBUNTU: SAUCE: lsm stacking v37: integrity: disassociate ima_filter_rule from security_audit_rule" - Revert "UBUNTU: SAUCE: apparmor: LSM stacking: switch from SK_CTX() to aa_sock()" - Revert "UBUNTU: SAUCE: apparmor: Add fine grained mediation of posix mqueues" - Revert "UBUNTU: SAUCE: apparmor: rename aa_sock() to aa_unix_sk()" - Revert "UBUNTU: SAUCE: fix shutdown unix socket owner conditional check" - Revert "UBUNTU: SAUCE: apparmor: af_unix mediation" - Revert "UBUNTU: SAUCE: apparmor: patch to provide compatibility with v2.x net rules" - Revert "UBUNTU: SAUCE: apparmor: add/use fns to print hash string hex value" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix aa_class_names[] to match reserved classes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: rework profile->rules to be a list" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: refactor profile rules and attachments" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: verify loaded permission bits masks don't overlap" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: cleanup: move perm accumulation into perms.h" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make sure perm indexes are accumulated" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: verify permission table indexes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add the ability for policy to specify a permission table" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make unpack_array return a trianary value" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: group dfa policydb unpacking" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: make transition table unpack generic so it can be reused" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add user mode flag" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: add mediation class information to auditing" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend permissions to support a label and tag string" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: isolate policy backwards compatibility to its own file" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend xindex size" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: move dfa perm macros into policy_unpack" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: extend policydb permission set by making use of the xbits" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix apparmor mediating locking non-fs unix sockets" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: Fix abi check to include v8 abi" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: preparse for state being more than just an integer" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert policy lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: cleanup shared permission struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert fperm lookup to use accept as an index" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch to using the new shared policydb struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: combine file_rules and aa_policydb into a single shared struct" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute policydb permission on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: convert xmatch to use aa_perms structure" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: rework and cleanup fperm computation" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: move fperm computation into policy_unpack" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute xmatch permissions on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: compute file permissions on profile load" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: expose compression level limits in sysfs" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: use zstd compression for profile data" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: reserve mediation classes" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix lockdep warning when removing a namespace" - Revert "UBUNTU: SAUCE: apparmor-next 6.1: apparmor: fix a memleak in multi_transaction_new()" - Revert "UBUNTU: SAUCE: upstream v6.0: Smack: Provide read control for io_uring_cmd" - Revert "UBUNTU: SAUCE: upstream v6.0: selinux: implement the security_uring_cmd() LSM hook" - Revert "UBUNTU: SAUCE: upstream v6.0: lsm,io_uring: add LSM hooks for the new uring_cmd file op" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: correct config reference to intended one" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: move ptrace mediation to more logical task.{h,c}" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: extend policydb permission set by making use of the xbits" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: allow label to carry debug flags" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Mark alloc_unconfined() as static" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: disable showing the mode as part of a secid to secctx" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Convert secid mapping to XArrays instead of IDR" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: add a kernel label to use on kernel objects" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: test: Remove some casts which are no-longer required" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix undefined reference to `zlib_deflate_workspacesize'" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix some kernel-doc comments" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix match_mnt_path_str() and match_mnt() kernel-doc comment" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Use struct_size() helper in kmalloc()" - Revert "UBUNTU: SAUCE: upstream v6.0: security/apparmor: remove redundant ret variable" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: resolve uninitialized symbol warnings in policy_unpack_test.c" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: don't create raw_sha1 symlink if sha1 hashing is disabled" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Enable tuning of policy paranoid load for embedded systems" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: make export of raw binary profile to userspace optional" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Update help description of policy hash for introspection" - Revert "UBUNTU: SAUCE: upstream v6.0: lsm: Fix kernel-doc" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: Fix kernel-doc" - Revert "UBUNTU: SAUCE: upstream v6.0: apparmor: fix absroot causing audited secids to begin with =" - Revert "Revert "UBUNTU: SAUCE: apparmor: add/use fns to print hash string hex value"" - Revert "Revert "UBUNTU: SAUCE: apparmor: patch to provide compatibility with v2.x net rules"" - Revert "Revert "UBUNTU: SAUCE: apparmor: af_unix mediation"" - Revert "Revert "UBUNTU: SAUCE: apparmor: fix use after free in sk_peer_label"" - Revert "Revert "UBUNTU SAUCE: apparmor: fix apparmor mediating locking non- fs, unix sockets"" - Revert "Revert "apparmor: fix absroot causing audited secids to begin with ="" - Revert "Revert "UBUNTU: SAUCE: apparmor: disable showing the mode as part of a secid to secctx"" - Revert "Revert "UBUNTU: SAUCE: apparmor: rename aa_sock() to aa_unix_sk()"" - Revert "Revert "UBUNTU: SAUCE: apparmor: LSM stacking: switch from SK_CTX() to aa_sock()"" - Revert "Revert "UBUNTU: SAUCE: LSM: Infrastructure management of the sock security"" - Revert "Revert "UBUNTU: SAUCE: LSM: Create and manage the lsmblob data structure."" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_audit_rule_match"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_kernel_act_as"" - Revert "Revert "UBUNTU: SAUCE: net: Prepare UDS for security module stacking"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_secctx_to_secid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_secid_to_secctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_ipc_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_task_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_inode_getsecid"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in security_cred_getsecid"" - Revert "Revert "UBUNTU: SAUCE: IMA: Change internal interfaces to use lsmblobs"" - Revert "Revert "UBUNTU: SAUCE: LSM: Specify which LSM to display"" - Revert "Revert "UBUNTU: SAUCE: LSM: Ensure the correct LSM context releaser"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmcontext in security_secid_to_secctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmcontext in security_inode_getsecctx"" - Revert "Revert "UBUNTU: SAUCE: LSM: security_secid_to_secctx in netlink netfilter"" - Revert "Revert "UBUNTU: SAUCE: NET: Store LSM netlabel data in a lsmblob"" - Revert "Revert "UBUNTU: SAUCE: Audit: Add new record for multiple process LSM attributes"" - Revert "Revert "UBUNTU: SAUCE: Audit: Fix incorrect static inline function declration."" - Revert "Revert "UBUNTU: SAUCE: Audit: Add a new record for multiple object LSM attributes"" - Revert "Revert "UBUNTU: SAUCE: LSM: Add /proc attr entry for full LSM context"" - Revert "Revert "UBUNTU: SAUCE: AppArmor: Remove the exclusive flag"" - Revert "Revert "UBUNTU: SAUCE: Audit: Fix for missing NULL check"" - Revert "Revert "UBUNTU: SAUCE: apparmor: rename kzfree() to kfree_sensitive()"" - Revert "Revert "UBUNTU: SAUCE: LSM: change ima_read_file() to use lsmblob"" - Revert "Revert "UBUNTU: SAUCE: LSM: Use lsmblob in smk_netlbl_mls()"" - Revert "Revert "UBUNTU: SAUCE: apparmor: Fix build error, make sk parameter const"" - Revert "Revert "UBUNTU: SAUCE: LSM: Specify which LSM to display (using struct cred as input)"" * [22.04 FEAT] Enhanced Interpretation for PCI Functions on s390x - kernel part (LP: #1853306) - s390/sclp: detect the zPCI load/store interpretation facility - s390/sclp: detect the AISII facility - s390/sclp: detect the AENI facility - s390/sclp: detect the AISI facility - s390/airq: pass more TPI info to airq handlers - s390/airq: allow for airq structure that uses an input vector - s390/pci: externalize the SIC operation controls and routine - s390/pci: stash associated GISA designation - s390/pci: stash dtsm and maxstbl - vfio/pci: introduce CONFIG_VFIO_PCI_ZDEV_KVM - KVM: s390: pci: add basic kvm_zdev structure - KVM: s390: pci: do initial setup for AEN interpretation - KVM: s390: pci: enable host forwarding of Adapter Event Notifications - KVM: s390: mechanism to enable guest zPCI Interpretation - KVM: s390: pci: provide routines for enabling/disabling interrupt forwarding - KVM: s390: pci: add routines to start/stop interpretive execution - vfio-pci/zdev: add open/close device hooks - vfio-pci/zdev: add function handle to clp base capability - vfio-pci/zdev: different maxstbl for interpreted devices - KVM: s390: add KVM_S390_ZPCI_OP to manage guest zPCI devices - MAINTAINERS: additional files related kvm s390 pci passthrough - Documentation: kvm: extend KVM_S390_ZPCI_OP subheading underline - KVM: s390: pci: Hook to access KVM lowlevel from VFIO * [22.10 FEAT] [IO2201] Independent Usage of Secondary Physical Function (LP: #1959542) - PCI: Clean up pci_scan_slot() - PCI: Split out next_ari_fn() from next_fn() - PCI: Move jailhouse's isolated function handling to pci_scan_slot() - PCI: Extend isolated function probing to s390 - s390/pci: allow zPCI zbus without a function zero * AMD ACP 6.2 DMIC support (LP: #1989518) - ASoC: amd: add Pink Sardine platform ACP IP register header - ASoC: amd: add Pink Sardine ACP PCI driver - ASoC: amd: add acp6.2 init/de-init functions - ASoC: amd: add platform devices for acp6.2 pdm driver and dmic driver - ASoC: amd: add acp6.2 pdm platform driver - ASoC: amd: add acp6.2 irq handler - ASoC: amd: add acp6.2 pdm driver dma ops - ASoC: amd: add acp6.2 pci driver pm ops - ASoC: amd: add acp6.2 pdm driver pm ops - ASoC: amd: enable Pink Sardine acp6.2 drivers build - ASoC: amd: create platform device for acp6.2 machine driver - ASoC: amd: add Pink Sardine machine driver using dmic - ASoC: amd: enable Pink sardine platform machine driver build. - [Config] Enable audio for AMD PinkSardine * support independent clock and LED GPIOs for Intel IPU6 platforms (LP: #1989046) - SAUCE: platform/x86: int3472: support independent clock and LED GPIOs * CVE-2022-2978 - SAUCE: fs: fix UAF/GPF bug in nilfs_mdt_destroy * Miscellaneous Ubuntu changes - [Config] disable SECURITY_APPARMOR_RESTRICT_USERNS - SAUCE: Add mdev_set_iommu_device() kABI. - SAUCE: apparmor: Fix regression in stacking due to label flags - [Config] update toolchain version * Miscellaneous upstream changes - Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" -- Andrea Righi <andrea.ri...@canonical.com> Wed, 21 Sep 2022 16:28:46 +0200 ** Changed in: linux (Ubuntu Kinetic) Status: Fix Committed => Fix Released ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2022-2978 -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1987923 Title: Kinetic update: v5.19.4 upstream stable release Status in linux package in Ubuntu: Fix Released Status in linux source package in Kinetic: Fix Released Bug description: SRU Justification Impact: The upstream process for stable tree updates is quite similar in scope to the Ubuntu SRU process, e.g., each patch has to demonstrably fix a bug, and each patch is vetted by upstream by originating either directly from a mainline/stable Linux tree or a minimally backported form of that patch. The following upstream stable patches should be included in the Ubuntu kernel: v5.19.4 upstream stable release from git://git.kernel.org/ ALSA: info: Fix llseek return value when using callback ALSA: hda/realtek: Add quirk for Clevo NS50PU, NS70PU RDMA: Handle the return code from dma_resv_wait_timeout() properly KVM: Unconditionally get a ref to /dev/kvm module when creating a VM x86/mm: Use proper mask when setting PUD mapping rds: add missing barrier to release_refill drm/i915/gem: Remove shared locking on freeing objects locking/atomic: Make test_and_*_bit() ordered on failure drm/nouveau: recognise GA103 drm/ttm: Fix dummy res NULL ptr deref bug drm/amdgpu: Only disable prefer_shadow on hawaii drm/amd/display: Check correct bounds for stream encoder instances for DCN303 s390/ap: fix crash on older machines based on QCI info missing ata: libata-eh: Add missing command name mmc: pxamci: Fix another error handling path in pxamci_probe() mmc: pxamci: Fix an error handling path in pxamci_probe() mmc: meson-gx: Fix an error handling path in meson_mmc_probe() btrfs: unset reloc control if transaction commit fails in prepare_to_relocate() btrfs: reset RO counter on block group if we fail to relocate btrfs: fix lost error handling when looking up extended ref on log replay btrfs: fix warning during log replay when bumping inode link count drm/amdgpu: change vram width algorithm for vram_info v3_0 drm/i915/gt: Ignore TLB invalidations on idle engines drm/i915/gt: Invalidate TLB of the OA unit at TLB invalidations drm/i915/gt: Skip TLB invalidations once wedged drm/i915/gt: Batch TLB invalidations drm/i915: pass a pointer for tlb seqno at vma_invalidate_tlb() cifs: Fix memory leak on the deferred close x86/kprobes: Fix JNG/JNLE emulation tracing/perf: Fix double put of trace event when init fails tracing/eprobes: Do not allow eprobes to use $stack, or % for regs tracing/eprobes: Do not hardcode $comm as a string tracing/eprobes: Fix reading of string fields tracing/eprobes: Have event probes be consistent with kprobes and uprobes tracing/probes: Have kprobes and uprobes use $COMM too tracing: Have filter accept "common_cpu" to be consistent ALSA: usb-audio: More comprehensive mixer map for ASUS ROG Zenith II ALSA: hda: Fix crash due to jack poll in suspend dt-bindings: usb: mtk-xhci: Allow wakeup interrupt-names to be optional can: ems_usb: fix clang's -Wunaligned-access warning apparmor: fix quiet_denied for file rules Revert "UBUNTU: SAUCE: apparmor: drop prefixing abs root labels with '='" apparmor: fix absroot causing audited secids to begin with = apparmor: Fix failed mount permission check error message apparmor: fix aa_label_asxprint return check apparmor: fix setting unconfined mode on a loaded profile apparmor: fix overlapping attachment computation apparmor: fix reference count leak in aa_pivotroot() apparmor: Fix memleak in aa_simple_write_to_buffer() Documentation: ACPI: EINJ: Fix obsolete example netfilter: nf_tables: fix crash when nf_trace is enabled net: tap: NULL pointer derefence in dev_parse_header_protocol when skb->dev is null NFSv4.1: Don't decrease the value of seq_nr_highest_sent NFSv4.1: Handle NFS4ERR_DELAY replies to OP_SEQUENCE correctly NFSv4: Fix races in the legacy idmapper upcall NFSv4.1: RECLAIM_COMPLETE must handle EACCES NFSv4/pnfs: Fix a use-after-free bug in open mptcp, btf: Add struct mptcp_sock definition when CONFIG_MPTCP is disabled mptcp: move subflow cleanup in mptcp_destroy_common() mptcp: do not queue data on closed subflows selftests: mptcp: make sendfile selftest work BPF: Fix potential bad pointer dereference in bpf_sys_bpf() bpf: Disallow bpf programs call prog_run command. bpf: Don't reinit map value in prealloc_lru_pop bpf: Acquire map uref in .init_seq_private for array map iterator bpf: Acquire map uref in .init_seq_private for hash map iterator bpf: Acquire map uref in .init_seq_private for sock local storage map iterator bpf: Acquire map uref in .init_seq_private for sock{map,hash} iterator bpf: Check the validity of max_rdwr_access for sock local storage map iterator can: mcp251x: Fix race condition on receive interrupt can: j1939: j1939_session_destroy(): fix memory leak of skbs net: atlantic: fix aq_vec index out of range error m68k: coldfire/device.c: protect FLEXCAN blocks sunrpc: fix expiry of auth creds SUNRPC: Fix xdr_encode_bool() SUNRPC: Reinitialise the backchannel request buffers before reuse SUNRPC: Don't reuse bvec on retransmission of the request ASoC: qdsp6: q6apm-dai: unprepare stream if its already prepared virtio: VIRTIO_HARDEN_NOTIFICATION is broken UBUNTU: [Config] updateconfigs for VIRTIO_HARDEN_NOTIFICATION virtio_net: fix memory leak inside XPD_TX with mergeable virtio-blk: Avoid use-after-free on suspend/resume devlink: Fix use-after-free after a failed reload net: phy: Warn about incorrect mdio_bus_phy_resume() state net: bcmgenet: Indicate MAC is in charge of PHY PM net: phy: c45 baset1: do not skip aneg configuration if clock role is not specified net: dsa: felix: suppress non-changes to the tagging protocol net: bgmac: Fix a BUG triggered by wrong bytes_compl net: atm: bring back zatm uAPI selftests: forwarding: Fix failing tests with old libnet dt-bindings: arm: qcom: fix Alcatel OneTouch Idol 3 compatibles pinctrl: renesas: rzg2l: Return -EINVAL for pins which have input disabled dt-bindings: pinctrl: mt8192: Add drive-strength-microamp dt-bindings: pinctrl: mt8192: Use generic bias instead of pull-*-adv pinctrl: nomadik: Fix refcount leak in nmk_pinctrl_dt_subnode_to_map pinctrl: qcom: msm8916: Allow CAMSS GP clocks to be muxed pinctrl: amd: Don't save/restore interrupt status and wake status bits dt-bindings: pinctrl: mt8195: Fix name for mediatek,rsel-resistance-in-si-unit dt-bindings: pinctrl: mt8195: Add and use drive-strength-microamp pinctrl: sunxi: Add I/O bias setting for H6 R-PIO dt-bindings: pinctrl: mt8186: Add and use drive-strength-microamp pinctrl: qcom: sm8250: Fix PDC map rtc: spear: set range max Input: exc3000 - fix return value check of wait_for_completion_timeout Input: mt6779-keypad - match hardware matrix organization Input: iqs7222 - correct slider event disable logic Input: iqs7222 - fortify slider event reporting Input: iqs7222 - protect volatile registers Input: iqs7222 - acknowledge reset before writing registers Input: iqs7222 - handle reset during ATI Input: iqs7222 - remove support for RF filter dt-bindings: input: iqs7222: Remove support for RF filter dt-bindings: input: iqs7222: Correct bottom speed step size dt-bindings: input: iqs7222: Extend slider-mapped GPIO to IQS7222C octeontx2-pf: Fix NIX_AF_TL3_TL2X_LINKX_CFG register configuration octeontx2-af: Apply tx nibble fixup always octeontx2-af: suppress external profile loading warning octeontx2-af: Fix mcam entry resource leak octeontx2-af: Fix key checking for source mac ACPI: property: Return type of acpi_add_nondev_subnodes() should be bool geneve: do not use RT_TOS for IPv6 flowlabel vxlan: do not use RT_TOS for IPv6 flowlabel mlx5: do not use RT_TOS for IPv6 flowlabel ipv6: do not use RT_TOS for IPv6 flowlabel plip: avoid rcu debug splat vsock: Fix memory leak in vsock_connect() vsock: Set socket state back to SS_UNCONNECTED in vsock_connect_timeout() dt-bindings: gpio: zynq: Add missing compatible strings dt-bindings: arm: qcom: fix Longcheer L8150 compatibles dt-bindings: arm: qcom: fix MSM8916 MTP compatibles dt-bindings: arm: qcom: fix MSM8994 boards compatibles dt-bindings: clock: qcom,gcc-msm8996: add more GCC clock sources dt-bindings: PCI: qcom: Fix reset conditional spi: dt-bindings: cadence: add missing 'required' spi: dt-bindings: zynqmp-qspi: add missing 'required' dt-bindings: opp: opp-v2-kryo-cpu: Fix example binding checks spi: dt-bindings: qcom,spi-geni-qcom: allow three interconnects ceph: use correct index when encoding client supported features tools/testing/cxl: Fix decoder default state tools/vm/slabinfo: use alphabetic order when two values are equal ceph: don't leak snap_rwsem in handle_cap_grant clk: imx93: Correct the edma1's parent clock vdpa_sim: use max_iotlb_entries as a limit in vhost_iotlb_init vdpa_sim_blk: set number of address spaces and virtqueue groups tools/testing/cxl: Fix cxl_hdm_decode_init() calling convention kbuild: dummy-tools: avoid tmpdir leak in dummy gcc tools build: Switch to new openssl API for test-libcrypto NTB: ntb_tool: uninitialized heap data in tool_fn_write() nfp: ethtool: fix the display error of `ethtool -m DEVNAME` xen/xenbus: fix return type in xenbus_file_read() tsnep: Fix tsnep_tx_unmap() error path usage atm: idt77252: fix use-after-free bugs caused by tst_timer fscache: don't leak cookie access refs if invalidation is in progress or failed geneve: fix TOS inheriting for ipv4 nvme-fc: fix the fc_appid_store return value perf probe: Fix an error handling path in 'parse_perf_probe_command()' i2c: qcom-geni: Fix GPI DMA buffer sync-back perf parse-events: Fix segfault when event parser gets an error perf tests: Fix Track with sched_switch test for hybrid case dpaa2-eth: trace the allocated address instead of page struct fs/ntfs3: Fix using uninitialized value n when calling indx_read fs/ntfs3: Fix NULL deref in ntfs_update_mftmirr fs/ntfs3: Don't clear upper bits accidentally in log_replay() fs/ntfs3: Fix double free on remount fs/ntfs3: Do not change mode if ntfs_set_ea failed fs/ntfs3: Fix missing i_op in ntfs_read_mft nios2: page fault et.al. are *not* restartable syscalls... nios2: don't leave NULLs in sys_call_table[] nios2: traced syscall does need to check the syscall number nios2: fix syscall restart checks nios2: restarts apply only to the first sigframe we build... nios2: add force_successful_syscall_return() iavf: Fix adminq error handling iavf: Fix NULL pointer dereference in iavf_get_link_ksettings iavf: Fix reset error handling iavf: Fix deadlock in initialization ASoC: Intel: avs: Fix potential buffer overflow by snprintf() ASoC: SOF: debug: Fix potential buffer overflow by snprintf() ASoC: SOF: Intel: hda: Fix potential buffer overflow by snprintf() ASoC: DPCM: Don't pick up BE without substream ASoC: tas2770: Set correct FSYNC polarity ASoC: tas2770: Allow mono streams ASoC: tas2770: Drop conflicting set_bias_level power setting ASoC: tas2770: Fix handling of mute/unmute ASoC: codec: tlv320aic32x4: fix mono playback via I2S IB/iser: Fix login with authentication RDMA/mlx5: Use the proper number of ports RDMA/cxgb4: fix accept failure due to increased cpl_t5_pass_accept_rpl size netfilter: nfnetlink: re-enable conntrack expectation events netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access fs/ntfs3: uninitialized variable in ntfs_set_acl_ex() netfilter: nf_tables: disallow NFTA_SET_ELEM_KEY_END with NFT_SET_ELEM_INTERVAL_END flag netfilter: nf_ct_sane: remove pseudo skb linearization netfilter: nf_ct_h323: cap packet size at 64k netfilter: nf_ct_ftp: prefer skb_linearize netfilter: nf_ct_irc: cap packet search space to 4k netfilter: nf_tables: possible module reference underflow in error path netfilter: nf_tables: really skip inactive sets when allocating name netfilter: nf_tables: fix scheduling-while-atomic splat netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags netfilter: nf_tables: disallow NFT_SET_ELEM_CATCHALL and NFT_SET_ELEM_INTERVAL_END netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified powerpc/pci: Fix get_phb_number() locking spi: meson-spicc: add local pow2 clock ops to preserve rate between messages net/sunrpc: fix potential memory leaks in rpc_sysfs_xprt_state_change() net: dsa: mv88e6060: prevent crash on an unused port net: qrtr: start MHI channel after endpoit creation virtio_net: fix endian-ness for RSS mlxsw: spectrum: Clear PTP configuration after unregistering the netdevice net: moxa: pass pdev instead of ndev to DMA functions net: fix potential refcount leak in ndisc_router_discovery() net: rtnetlink: fix module reference count leak issue in rtnetlink_rcv_msg net: sched: fix misuse of qcpu->backlog in gnet_stats_add_queue_cpu net: dsa: microchip: ksz9477: fix fdb_dump last invalid entry net: dsa: felix: fix ethtool 256-511 and 512-1023 TX packet counters net: mscc: ocelot: fix incorrect ndo_get_stats64 packet counters net: mscc: ocelot: fix address of SYS_COUNT_TX_AGING counter net: genl: fix error path memory leak in policy dumping net: dsa: don't warn in dsa_port_set_state_now() when driver doesn't support it net: dsa: sja1105: fix buffer overflow in sja1105_setup_devlink_regions() ice: Fix VSI rebuild WARN_ON check for VF ice: Fix call trace with null VSI during VF reset ice: Fix VF not able to send tagged traffic with no VLAN filters ice: Fix double VLAN error when entering promisc mode ice: Ignore EEXIST when setting promisc mode ice: Fix clearing of promisc mode with bridge over bond ice: Ignore error message when setting same promiscuous mode modpost: fix module versioning when a symbol lacks valid CRC i2c: imx: Make sure to unregister adapter on remove() i40e: Fix tunnel checksum offload with fragmented traffic regulator: pca9450: Remove restrictions for regulator-name i40e: Fix to stop tx_timeout recovery if GLOBR fails blk-mq: run queue no matter whether the request is the last request tools/rtla: Fix command symlinks fec: Fix timer capture timing in `fec_ptp_enable_pps()` dt-bindings: display: sun4i: Add D1 TCONs to conditionals stmmac: intel: Add a missing clk_disable_unprepare() call in intel_eth_pci_remove() igb: Add lock to avoid data race kbuild: fix the modules order between drivers and libs gcc-plugins: Undefine LATENT_ENTROPY_PLUGIN when plugin disabled for a file can: j1939: j1939_sk_queue_activate_next_locked(): replace WARN_ON_ONCE with netdev_warn_once() drm/imx/dcss: get rid of HPD warning message drm/meson: Fix refcount bugs in meson_vpu_has_available_connectors() drm/i915/ttm: don't leak the ccs state drm/amdgpu: Avoid another list of reset devices drm/bridge: lvds-codec: Fix error checking of drm_of_lvds_get_data_mapping() drm/sun4i: dsi: Prevent underflow when computing packet sizes drm/amdgpu: Fix use-after-free on amdgpu_bo_list mutex KVM: arm64: Treat PMCR_EL1.LC as RES1 on asymmetric systems KVM: arm64: Reject 32bit user PSTATE on asymmetric systems net: mscc: ocelot: turn stats_lock into a spinlock net: mscc: ocelot: fix race between ndo_get_stats64 and ocelot_check_stats_work net: mscc: ocelot: make struct ocelot_stat_layout array indexable net: mscc: ocelot: report ndo_get_stats64 from the wraparound-resistant ocelot->stats x86/ibt, objtool: Add IBT_NOSEAL() x86/kvm: Fix "missing ENDBR" BUG for fastop functions thunderbolt: Change downstream router's TMU rate in both TMU uni/bidir mode HID: multitouch: new device class fix Lenovo X12 trackpad sticky PCI: Add ACS quirk for Broadcom BCM5750x NICs platform/chrome: cros_ec_proto: don't show MKBP version if unsupported staging: r8188eu: add error handling of rtw_read8 staging: r8188eu: add error handling of rtw_read16 staging: r8188eu: add error handling of rtw_read32 usb: cdns3 fix use-after-free at workaround 2 usb: gadget: uvc: calculate the number of request depending on framesize usb: gadget: uvc: call uvc uvcg_warn on completed status instead of uvcg_info PCI: aardvark: Fix reporting Slot capabilities on emulated bridge scsi: ufs: core: Add UFSHCD_QUIRK_BROKEN_64BIT_ADDRESS scsi: ufs: core: Add UFSHCD_QUIRK_HIBERN_FASTAUTO irqchip/tegra: Fix overflow implicit truncation warnings drm/meson: Fix overflow implicit truncation warnings clk: ti: Stop using legacy clkctrl names for omap4 and 5 scsi: ufs: ufs-mediatek: Fix the timing of configuring device regulators usb: typec: mux: Add CONFIG guards for functions usb: host: ohci-ppc-of: Fix refcount leak bug usb: renesas: Fix refcount leak bug scsi: iscsi: Fix HW conn removal use after free usb: dwc2: gadget: remove D+ pull-up while no vbus with usb-role-switch vboxguest: Do not use devm for irq clk: qcom: ipq8074: dont disable gcc_sleep_clk_src uacce: Handle parent device removal or parent driver module rmmod zram: do not lookup algorithm in backends table clk: qcom: clk-alpha-pll: fix clk_trion_pll_configure description scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input scsi: lpfc: Fix possible memory leak when failing to issue CMF WQE gadgetfs: ep_io - wait until IRQ finishes coresight: etm4x: avoid build failure with unrolled loops habanalabs: add terminating NULL to attrs arrays habanalabs/gaudi: invoke device reset from one code block habanalabs/gaudi: fix shift out of bounds habanalabs/gaudi: mask constant value before cast mmc: tmio: avoid glitches when resetting scsi: ufs: ufs-exynos: Change ufs phy control sequence pinctrl: intel: Check against matching data instead of ACPI companion cxl: Fix a memory leak in an error handling path PCI/ACPI: Guard ARM64-specific mcfg_quirks um: add "noreboot" command line option for PANIC_TIMEOUT=-1 setups of: overlay: Move devicetree_corrupt() check up dmaengine: dw-axi-dmac: do not print NULL LLI during error dmaengine: dw-axi-dmac: ignore interrupt if no descriptor mmc: renesas_sdhi: newer SoCs don't need manual tap correction ACPI: PPTT: Leave the table mapped for the runtime usage RDMA/rxe: Limit the number of calls to each tasklet csky/kprobe: reclaim insn_slot on kprobe unregistration selftests/kprobe: Do not test for GRP/ without event failures dmaengine: tegra: Add terminate() for Tegra234 dmaengine: sprd: Cleanup in .remove() after pm_runtime_get_sync() failed Revert "RDMA/rxe: Create duplicate mapping tables for FMRs" openrisc: io: Define iounmap argument as volatile phy: samsung: phy-exynos-pcie: sanitize init/power_on callbacks md: Notify sysfs sync_completed in md_reap_sync_thread() md/raid5: Make logic blocking check consistent with logic that blocks nvmet-tcp: fix lockdep complaint on nvmet_tcp_wq flush during queue teardown drivers:md:fix a potential use-after-free bug ext4: avoid remove directory when directory is corrupted ext4: block range must be validated before use in ext4_mb_clear_bb() ext4: avoid resizing to a partial cluster size lib/list_debug.c: Detect uninitialized lists tty: serial: Fix refcount leak bug in ucc_uart.c KVM: PPC: Book3S HV: Fix "rm_exit" entry in debugfs timings vfio: Clear the caps->buf to NULL after free mips: cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start iommu/io-pgtable-arm-v7s: Add a quirk to allow pgtable PA up to 35bit ASoC: Intel: avs: Set max DMA segment size ALSA: hda: Fix page fault in snd_hda_codec_shutdown() modules: Ensure natural alignment for .altinstructions and __bug_table sections ASoC: SOF: Intel: cnl: Do not process IPC reply before firmware boot ASoC: SOF: Intel: hda-ipc: Do not process IPC reply before firmware boot ASoC: SOF: sof-client-probes: Only load the driver if IPC3 is used ASoC: rsnd: care default case on rsnd_ssiu_busif_err_irq_ctrl() riscv: dts: sifive: Add fu740 topology information riscv: dts: canaan: Add k210 topology information ASoC: nau8821: Don't unconditionally free interrupt riscv: mmap with PROT_WRITE but no PROT_READ is invalid RISC-V: Add fast call path of crash_kexec() ALSA: hda/realtek: Enable speaker and mute LEDs for HP laptops ASoC: SOF: Intel: hda: add sanity check on SSP index reported by NHLT ASoC: Intel: sof_es8336: Fix GPIO quirks set via module option ASoC: Intel: sof_es8336: ignore GpioInt when looking for speaker/headset GPIO lines ASoC: Intel: sof_nau8825: Move quirk check to the front in late probe watchdog: export lockup_detector_reconfigure powerpc/watchdog: introduce a NMI watchdog's factor powerpc/pseries/mobility: set NMI watchdog factor during an LPM powerpc/32: Set an IBAT covering up to _einittext during init powerpc/32: Don't always pass -mcpu=powerpc to the compiler ASoC: codecs: va-macro: use fsgen as clock ovl: warn if trusted xattr creation fails powerpc/ioda/iommu/debugfs: Generate unique debugfs entries ALSA: core: Add async signal helpers ALSA: timer: Use deferred fasync helper ALSA: pcm: Use deferred fasync helper ALSA: control: Use deferred fasync helper f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() f2fs: fix to do sanity check on segment type in build_sit_entries() smb3: check xattr value length earlier powerpc/64: Init jump labels before parse_early_param() venus: pm_helpers: Fix warning in OPP during probe video: fbdev: i740fb: Check the argument of i740_calc_vclk() MIPS: tlbex: Explicitly compare _PAGE_NO_EXEC against 0 f2fs: revive F2FS_IOC_ABORT_VOLATILE_WRITE f2fs: fix null-ptr-deref in f2fs_get_dnode_of_data scsi: ufs: ufs-mediatek: Fix build error and type mismatch Revert "ALSA: hda: Fix page fault in snd_hda_codec_shutdown()" Linux 5.19.4 UBUNTU: Upstream stable to v5.19.4 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1987923/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp