====================================== Sat, 10 Sep 2022 - Debian 11.5 released ====================================== ========================================================================= [Date: Sat, 10 Sep 2022 08:50:11 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: evenement | 3.0.1-2.1 | source php-evenement | 3.0.1-2.1 | all Closed bugs: 1006447 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:50:34 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-cocur-slugify | 4.0.0-2 | source, all Closed bugs: 1019065 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:50:54 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-defuse-php-encryption | 2.2.1-1.1 | source, all Closed bugs: 1019066 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:51:39 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-dflydev-fig-cookies | 2.0.0-1.1 | source, all Closed bugs: 1019067 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:52:06 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-embed | 3.3.9-1.1 | source, all Closed bugs: 1019068 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:52:24 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-fabiang-sasl | 1.0.1-1 | source, all Closed bugs: 1019069 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:52:44 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-markdown | 1.8.0-1.1 | source, all Closed bugs: 1019070 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:53:02 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-raintpl | 3.1.0+dfsg-1.1 | source, all Closed bugs: 1019071 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:53:21 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-child-process | 0.6.1-1 | source, all Closed bugs: 1019072 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:53:46 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-http | 0.8.6-1 | source, all Closed bugs: 1019073 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:54:06 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-respect-validation | 1.1.29-2.1 | source, all Closed bugs: 1019074 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:55:38 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-robmorgan-phinx | 0.9.2-3 | source, all Closed bugs: 1019075 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:55:57 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-ratchet-pawl | 0.3.4-1.1 | all ratchet-pawl | 0.3.4-1.1 | source Closed bugs: 1019076 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:56:19 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-ratchet-rfc6455 | 0.2.4-2.1 | all ratchet-rfc6455 | 0.2.4-2.1 | source Closed bugs: 1019077 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:56:35 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-cboden-ratchet | 0.4.2-1 | all ratchetphp | 0.4.2-1 | source Closed bugs: 1019078 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:56:56 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-cache | 0.5.0-1.1 | all reactphp-cache | 0.5.0-1.1 | source Closed bugs: 1019079 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:57:15 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-dns | 1.2.0-1 | all reactphp-dns | 1.2.0-1 | source Closed bugs: 1019080 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:57:41 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-event-loop | 1.0.0-1.1 | all reactphp-event-loop | 1.0.0-1.1 | source Closed bugs: 1019081 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:57:59 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-promise-stream | 1.1.1-3.1 | all reactphp-promise-stream | 1.1.1-3.1 | source Closed bugs: 1019082 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:58:16 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-promise-timer | 1.5.0-2.1 | all reactphp-promise-timer | 1.5.0-2.1 | source Closed bugs: 1019083 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:58:33 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-socket | 1.4.0-1 | all reactphp-socket | 1.4.0-1 | source Closed bugs: 1019084 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 08:58:49 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: php-react-stream | 1.1.0-1 | all reactphp-stream | 1.1.0-1 | source Closed bugs: 1019085 ------------------- Reason ------------------- RoM; unmaintained; only needed for already-removed movim ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:13:27 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: librust-cbindgen+clap-dev | 0.20.0-1~deb11u1 | amd64, arm64, armhf, i386, mips64el, mipsel, ppc64el, s390x librust-cbindgen-dev | 0.20.0-1~deb11u1 | amd64, arm64, armhf, i386, mips64el, mipsel, ppc64el, s390x ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by rust-cbindgen) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:14:19 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libstd-rust-mozilla-1.51 | 1.51.0+dfsg1-1~deb11u1 | amd64, arm64, armhf, i386, mips64el, mipsel, ppc64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by rustc-mozilla) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:21:35 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel affs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el affs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel affs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel ata-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel ata-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el ata-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf ata-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel ata-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el btrfs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel btrfs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el btrfs-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf btrfs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel btrfs-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel btrfs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel btrfs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el btrfs-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x cdrom-core-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel cdrom-core-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el cdrom-core-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf cdrom-core-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel cdrom-core-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel cdrom-core-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel cdrom-core-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el cdrom-core-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x crc-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel crc-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el crc-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf crc-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel crc-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel crc-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel crc-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el crc-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x crypto-dm-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel crypto-dm-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el crypto-dm-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf crypto-dm-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel crypto-dm-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel crypto-dm-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel crypto-dm-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el crypto-dm-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x crypto-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel crypto-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el crypto-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf crypto-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel crypto-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel crypto-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel crypto-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el crypto-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x dasd-extra-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x dasd-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x efi-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf event-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel event-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el event-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf event-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel event-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel event-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel event-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el ext4-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel ext4-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el ext4-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf ext4-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel ext4-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel ext4-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel ext4-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el ext4-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x f2fs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel f2fs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el f2fs-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf f2fs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel f2fs-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel f2fs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel f2fs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el f2fs-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x fancontrol-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el fat-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel fat-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el fat-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf fat-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel fat-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel fat-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel fat-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el fat-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x fb-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel fb-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el fb-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf fb-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel fb-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel fb-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el firewire-core-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel firewire-core-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el fuse-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel fuse-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el fuse-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf fuse-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel fuse-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel fuse-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel fuse-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el fuse-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x hypervisor-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el i2c-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel i2c-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el i2c-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf i2c-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el input-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel input-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el input-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf input-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel input-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel input-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel input-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el ipv6-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel isofs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel isofs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el isofs-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf isofs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel isofs-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel isofs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel isofs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el isofs-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x jffs2-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel jfs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel jfs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el jfs-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf jfs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel jfs-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel jfs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel jfs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el kernel-image-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel kernel-image-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el kernel-image-5.10.0-13-armmp-di | 5.10.106-1 | armhf kernel-image-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel kernel-image-5.10.0-13-marvell-di | 5.10.106-1 | armel kernel-image-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel kernel-image-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el kernel-image-5.10.0-13-s390x-di | 5.10.106-1 | s390x leds-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf leds-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel linux-headers-5.10.0-13-4kc-malta | 5.10.106-1 | mipsel linux-headers-5.10.0-13-5kc-malta | 5.10.106-1 | mips64el, mipsel linux-headers-5.10.0-13-686 | 5.10.106-1 | i386 linux-headers-5.10.0-13-686-pae | 5.10.106-1 | i386 linux-headers-5.10.0-13-amd64 | 5.10.106-1 | amd64 linux-headers-5.10.0-13-arm64 | 5.10.106-1 | arm64 linux-headers-5.10.0-13-armmp | 5.10.106-1 | armhf linux-headers-5.10.0-13-armmp-lpae | 5.10.106-1 | armhf linux-headers-5.10.0-13-cloud-amd64 | 5.10.106-1 | amd64 linux-headers-5.10.0-13-cloud-arm64 | 5.10.106-1 | arm64 linux-headers-5.10.0-13-common | 5.10.106-1 | all linux-headers-5.10.0-13-common-rt | 5.10.106-1 | all linux-headers-5.10.0-13-loongson-3 | 5.10.106-1 | mips64el, mipsel linux-headers-5.10.0-13-marvell | 5.10.106-1 | armel linux-headers-5.10.0-13-octeon | 5.10.106-1 | mips64el, mipsel linux-headers-5.10.0-13-powerpc64le | 5.10.106-1 | ppc64el linux-headers-5.10.0-13-rpi | 5.10.106-1 | armel linux-headers-5.10.0-13-rt-686-pae | 5.10.106-1 | i386 linux-headers-5.10.0-13-rt-amd64 | 5.10.106-1 | amd64 linux-headers-5.10.0-13-rt-arm64 | 5.10.106-1 | arm64 linux-headers-5.10.0-13-rt-armmp | 5.10.106-1 | armhf linux-headers-5.10.0-13-s390x | 5.10.106-1 | s390x linux-image-5.10.0-13-4kc-malta | 5.10.106-1 | mipsel linux-image-5.10.0-13-4kc-malta-dbg | 5.10.106-1 | mipsel linux-image-5.10.0-13-5kc-malta | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-5kc-malta-dbg | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-686-dbg | 5.10.106-1 | i386 linux-image-5.10.0-13-686-pae-dbg | 5.10.106-1 | i386 linux-image-5.10.0-13-686-pae-unsigned | 5.10.106-1 | i386 linux-image-5.10.0-13-686-unsigned | 5.10.106-1 | i386 linux-image-5.10.0-13-amd64-dbg | 5.10.106-1 | amd64 linux-image-5.10.0-13-amd64-unsigned | 5.10.106-1 | amd64 linux-image-5.10.0-13-arm64-dbg | 5.10.106-1 | arm64 linux-image-5.10.0-13-arm64-unsigned | 5.10.106-1 | arm64 linux-image-5.10.0-13-armmp | 5.10.106-1 | armhf linux-image-5.10.0-13-armmp-dbg | 5.10.106-1 | armhf linux-image-5.10.0-13-armmp-lpae | 5.10.106-1 | armhf linux-image-5.10.0-13-armmp-lpae-dbg | 5.10.106-1 | armhf linux-image-5.10.0-13-cloud-amd64-dbg | 5.10.106-1 | amd64 linux-image-5.10.0-13-cloud-amd64-unsigned | 5.10.106-1 | amd64 linux-image-5.10.0-13-cloud-arm64-dbg | 5.10.106-1 | arm64 linux-image-5.10.0-13-cloud-arm64-unsigned | 5.10.106-1 | arm64 linux-image-5.10.0-13-loongson-3 | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-loongson-3-dbg | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-marvell | 5.10.106-1 | armel linux-image-5.10.0-13-marvell-dbg | 5.10.106-1 | armel linux-image-5.10.0-13-octeon | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-octeon-dbg | 5.10.106-1 | mips64el, mipsel linux-image-5.10.0-13-powerpc64le | 5.10.106-1 | ppc64el linux-image-5.10.0-13-powerpc64le-dbg | 5.10.106-1 | ppc64el linux-image-5.10.0-13-rpi | 5.10.106-1 | armel linux-image-5.10.0-13-rpi-dbg | 5.10.106-1 | armel linux-image-5.10.0-13-rt-686-pae-dbg | 5.10.106-1 | i386 linux-image-5.10.0-13-rt-686-pae-unsigned | 5.10.106-1 | i386 linux-image-5.10.0-13-rt-amd64-dbg | 5.10.106-1 | amd64 linux-image-5.10.0-13-rt-amd64-unsigned | 5.10.106-1 | amd64 linux-image-5.10.0-13-rt-arm64-dbg | 5.10.106-1 | arm64 linux-image-5.10.0-13-rt-arm64-unsigned | 5.10.106-1 | arm64 linux-image-5.10.0-13-rt-armmp | 5.10.106-1 | armhf linux-image-5.10.0-13-rt-armmp-dbg | 5.10.106-1 | armhf linux-image-5.10.0-13-s390x | 5.10.106-1 | s390x linux-image-5.10.0-13-s390x-dbg | 5.10.106-1 | s390x linux-support-5.10.0-13 | 5.10.106-1 | all loop-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel loop-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el loop-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf loop-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel loop-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel loop-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel loop-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el loop-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x md-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel md-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el md-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf md-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel md-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel md-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel md-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el md-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x minix-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel minix-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el minix-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel minix-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel minix-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel mmc-core-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel mmc-core-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el mmc-core-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel mmc-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel mmc-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el mmc-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf mmc-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel mouse-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel mouse-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el mouse-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel mouse-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el mtd-core-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel mtd-core-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el mtd-core-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel mtd-core-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel mtd-core-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el mtd-core-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x mtd-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf mtd-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel multipath-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel multipath-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el multipath-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf multipath-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel multipath-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel multipath-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel multipath-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el multipath-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x nbd-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel nbd-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el nbd-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf nbd-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nbd-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel nbd-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel nbd-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el nbd-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x nfs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nic-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel nic-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el nic-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf nic-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nic-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel nic-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel nic-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el nic-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x nic-shared-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel nic-shared-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el nic-shared-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf nic-shared-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nic-shared-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel nic-shared-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel nic-shared-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el nic-usb-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel nic-usb-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el nic-usb-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf nic-usb-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nic-usb-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel nic-usb-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel nic-usb-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el nic-wireless-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel nic-wireless-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el nic-wireless-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf nic-wireless-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel nic-wireless-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel nic-wireless-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el pata-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel pata-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el pata-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf pata-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel pata-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel ppp-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel ppp-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el ppp-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf ppp-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel ppp-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel ppp-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel ppp-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el rtc-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel sata-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel sata-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el sata-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf sata-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel sata-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel sata-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel sata-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el scsi-core-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel scsi-core-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el scsi-core-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf scsi-core-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel scsi-core-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel scsi-core-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel scsi-core-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el scsi-core-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x scsi-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel scsi-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el scsi-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf scsi-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel scsi-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel scsi-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el scsi-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x scsi-nic-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel scsi-nic-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el scsi-nic-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf scsi-nic-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel scsi-nic-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel scsi-nic-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el serial-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el sound-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel sound-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el sound-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel sound-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel speakup-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel squashfs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel squashfs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el squashfs-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf squashfs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel squashfs-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel squashfs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel squashfs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el udf-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel udf-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el udf-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf udf-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel udf-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel udf-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel udf-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el udf-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x uinput-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf uinput-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel uinput-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el usb-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel usb-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el usb-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf usb-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel usb-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel usb-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel usb-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el usb-serial-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel usb-serial-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el usb-serial-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf usb-serial-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel usb-serial-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel usb-serial-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel usb-serial-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el usb-storage-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel usb-storage-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el usb-storage-modules-5.10.0-13-armmp-di | 5.10.106-1 | armhf usb-storage-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel usb-storage-modules-5.10.0-13-marvell-di | 5.10.106-1 | armel usb-storage-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel usb-storage-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el xfs-modules-5.10.0-13-4kc-malta-di | 5.10.106-1 | mipsel xfs-modules-5.10.0-13-5kc-malta-di | 5.10.106-1 | mips64el xfs-modules-5.10.0-13-loongson-3-di | 5.10.106-1 | mips64el, mipsel xfs-modules-5.10.0-13-octeon-di | 5.10.106-1 | mips64el, mipsel xfs-modules-5.10.0-13-powerpc64le-di | 5.10.106-1 | ppc64el xfs-modules-5.10.0-13-s390x-di | 5.10.106-1 | s390x ------------------- Reason ------------------- [auto-cruft] NBS ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:22:55 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel affs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el affs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel affs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel ata-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel ata-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el ata-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf ata-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel ata-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el btrfs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel btrfs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el btrfs-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf btrfs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel btrfs-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel btrfs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel btrfs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el btrfs-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x cdrom-core-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel cdrom-core-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el cdrom-core-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf cdrom-core-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel cdrom-core-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel cdrom-core-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel cdrom-core-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el cdrom-core-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x crc-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel crc-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el crc-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf crc-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel crc-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel crc-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel crc-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el crc-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x crypto-dm-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel crypto-dm-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el crypto-dm-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf crypto-dm-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel crypto-dm-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel crypto-dm-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel crypto-dm-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el crypto-dm-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x crypto-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel crypto-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el crypto-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf crypto-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel crypto-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel crypto-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel crypto-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el crypto-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x dasd-extra-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x dasd-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x efi-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf event-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel event-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el event-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf event-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel event-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel event-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel event-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el ext4-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel ext4-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el ext4-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf ext4-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel ext4-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel ext4-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel ext4-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el ext4-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x f2fs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel f2fs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el f2fs-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf f2fs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel f2fs-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel f2fs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel f2fs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el f2fs-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x fancontrol-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el fat-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel fat-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el fat-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf fat-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel fat-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel fat-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel fat-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el fat-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x fb-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel fb-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el fb-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf fb-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel fb-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel fb-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el firewire-core-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel firewire-core-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el fuse-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel fuse-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el fuse-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf fuse-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel fuse-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel fuse-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel fuse-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el fuse-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x hypervisor-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el i2c-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel i2c-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el i2c-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf i2c-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el input-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel input-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el input-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf input-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel input-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel input-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel input-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el ipv6-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel isofs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel isofs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el isofs-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf isofs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel isofs-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel isofs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel isofs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el isofs-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x jffs2-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel jfs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel jfs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el jfs-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf jfs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel jfs-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel jfs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel jfs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el kernel-image-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel kernel-image-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el kernel-image-5.10.0-17-armmp-di | 5.10.136-1 | armhf kernel-image-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel kernel-image-5.10.0-17-marvell-di | 5.10.136-1 | armel kernel-image-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel kernel-image-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el kernel-image-5.10.0-17-s390x-di | 5.10.136-1 | s390x leds-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf leds-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel linux-doc | 5.10.136-1 | all linux-doc-5.10 | 5.10.136-1 | all linux-headers-5.10.0-17-4kc-malta | 5.10.136-1 | mipsel linux-headers-5.10.0-17-5kc-malta | 5.10.136-1 | mips64el, mipsel linux-headers-5.10.0-17-686 | 5.10.136-1 | i386 linux-headers-5.10.0-17-686-pae | 5.10.136-1 | i386 linux-headers-5.10.0-17-amd64 | 5.10.136-1 | amd64 linux-headers-5.10.0-17-arm64 | 5.10.136-1 | arm64 linux-headers-5.10.0-17-armmp | 5.10.136-1 | armhf linux-headers-5.10.0-17-armmp-lpae | 5.10.136-1 | armhf linux-headers-5.10.0-17-cloud-amd64 | 5.10.136-1 | amd64 linux-headers-5.10.0-17-cloud-arm64 | 5.10.136-1 | arm64 linux-headers-5.10.0-17-common | 5.10.136-1 | all linux-headers-5.10.0-17-common-rt | 5.10.136-1 | all linux-headers-5.10.0-17-loongson-3 | 5.10.136-1 | mips64el, mipsel linux-headers-5.10.0-17-marvell | 5.10.136-1 | armel linux-headers-5.10.0-17-octeon | 5.10.136-1 | mips64el, mipsel linux-headers-5.10.0-17-powerpc64le | 5.10.136-1 | ppc64el linux-headers-5.10.0-17-rpi | 5.10.136-1 | armel linux-headers-5.10.0-17-rt-686-pae | 5.10.136-1 | i386 linux-headers-5.10.0-17-rt-amd64 | 5.10.136-1 | amd64 linux-headers-5.10.0-17-rt-arm64 | 5.10.136-1 | arm64 linux-headers-5.10.0-17-rt-armmp | 5.10.136-1 | armhf linux-headers-5.10.0-17-s390x | 5.10.136-1 | s390x linux-image-5.10.0-17-4kc-malta | 5.10.136-1 | mipsel linux-image-5.10.0-17-4kc-malta-dbg | 5.10.136-1 | mipsel linux-image-5.10.0-17-5kc-malta | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-5kc-malta-dbg | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-686-dbg | 5.10.136-1 | i386 linux-image-5.10.0-17-686-pae-dbg | 5.10.136-1 | i386 linux-image-5.10.0-17-686-pae-unsigned | 5.10.136-1 | i386 linux-image-5.10.0-17-686-unsigned | 5.10.136-1 | i386 linux-image-5.10.0-17-amd64-dbg | 5.10.136-1 | amd64 linux-image-5.10.0-17-amd64-unsigned | 5.10.136-1 | amd64 linux-image-5.10.0-17-arm64-dbg | 5.10.136-1 | arm64 linux-image-5.10.0-17-arm64-unsigned | 5.10.136-1 | arm64 linux-image-5.10.0-17-armmp | 5.10.136-1 | armhf linux-image-5.10.0-17-armmp-dbg | 5.10.136-1 | armhf linux-image-5.10.0-17-armmp-lpae | 5.10.136-1 | armhf linux-image-5.10.0-17-armmp-lpae-dbg | 5.10.136-1 | armhf linux-image-5.10.0-17-cloud-amd64-dbg | 5.10.136-1 | amd64 linux-image-5.10.0-17-cloud-amd64-unsigned | 5.10.136-1 | amd64 linux-image-5.10.0-17-cloud-arm64-dbg | 5.10.136-1 | arm64 linux-image-5.10.0-17-cloud-arm64-unsigned | 5.10.136-1 | arm64 linux-image-5.10.0-17-loongson-3 | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-loongson-3-dbg | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-marvell | 5.10.136-1 | armel linux-image-5.10.0-17-marvell-dbg | 5.10.136-1 | armel linux-image-5.10.0-17-octeon | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-octeon-dbg | 5.10.136-1 | mips64el, mipsel linux-image-5.10.0-17-powerpc64le | 5.10.136-1 | ppc64el linux-image-5.10.0-17-powerpc64le-dbg | 5.10.136-1 | ppc64el linux-image-5.10.0-17-rpi | 5.10.136-1 | armel linux-image-5.10.0-17-rpi-dbg | 5.10.136-1 | armel linux-image-5.10.0-17-rt-686-pae-dbg | 5.10.136-1 | i386 linux-image-5.10.0-17-rt-686-pae-unsigned | 5.10.136-1 | i386 linux-image-5.10.0-17-rt-amd64-dbg | 5.10.136-1 | amd64 linux-image-5.10.0-17-rt-amd64-unsigned | 5.10.136-1 | amd64 linux-image-5.10.0-17-rt-arm64-dbg | 5.10.136-1 | arm64 linux-image-5.10.0-17-rt-arm64-unsigned | 5.10.136-1 | arm64 linux-image-5.10.0-17-rt-armmp | 5.10.136-1 | armhf linux-image-5.10.0-17-rt-armmp-dbg | 5.10.136-1 | armhf linux-image-5.10.0-17-s390x | 5.10.136-1 | s390x linux-image-5.10.0-17-s390x-dbg | 5.10.136-1 | s390x linux-source | 5.10.136-1 | all linux-source-5.10 | 5.10.136-1 | all linux-support-5.10.0-17 | 5.10.136-1 | all loop-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel loop-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el loop-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf loop-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel loop-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel loop-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel loop-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el loop-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x md-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel md-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el md-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf md-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel md-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel md-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel md-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el md-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x minix-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel minix-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el minix-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel minix-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel minix-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel mmc-core-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel mmc-core-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el mmc-core-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel mmc-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel mmc-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el mmc-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf mmc-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel mouse-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel mouse-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el mouse-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel mouse-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el mtd-core-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel mtd-core-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el mtd-core-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel mtd-core-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel mtd-core-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el mtd-core-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x mtd-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf mtd-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel multipath-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel multipath-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el multipath-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf multipath-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel multipath-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel multipath-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel multipath-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el multipath-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x nbd-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel nbd-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el nbd-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf nbd-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nbd-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel nbd-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel nbd-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el nbd-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x nfs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nic-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel nic-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el nic-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf nic-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nic-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel nic-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel nic-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el nic-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x nic-shared-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel nic-shared-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el nic-shared-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf nic-shared-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nic-shared-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel nic-shared-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel nic-shared-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el nic-usb-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel nic-usb-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el nic-usb-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf nic-usb-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nic-usb-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel nic-usb-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel nic-usb-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el nic-wireless-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel nic-wireless-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el nic-wireless-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf nic-wireless-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel nic-wireless-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel nic-wireless-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el pata-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel pata-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el pata-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf pata-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel pata-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel ppp-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel ppp-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el ppp-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf ppp-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel ppp-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel ppp-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel ppp-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el rtc-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel sata-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel sata-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el sata-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf sata-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel sata-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel sata-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel sata-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el scsi-core-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel scsi-core-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el scsi-core-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf scsi-core-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel scsi-core-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel scsi-core-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel scsi-core-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el scsi-core-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x scsi-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel scsi-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el scsi-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf scsi-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel scsi-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel scsi-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el scsi-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x scsi-nic-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel scsi-nic-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el scsi-nic-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf scsi-nic-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel scsi-nic-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel scsi-nic-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el serial-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el sound-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel sound-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el sound-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel sound-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel speakup-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel squashfs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel squashfs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el squashfs-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf squashfs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel squashfs-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel squashfs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel squashfs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el udf-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel udf-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el udf-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf udf-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel udf-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel udf-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel udf-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el udf-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x uinput-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf uinput-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel uinput-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el usb-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel usb-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el usb-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf usb-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel usb-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel usb-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel usb-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el usb-serial-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel usb-serial-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el usb-serial-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf usb-serial-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel usb-serial-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel usb-serial-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel usb-serial-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el usb-storage-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel usb-storage-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el usb-storage-modules-5.10.0-17-armmp-di | 5.10.136-1 | armhf usb-storage-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel usb-storage-modules-5.10.0-17-marvell-di | 5.10.136-1 | armel usb-storage-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel usb-storage-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el xfs-modules-5.10.0-17-4kc-malta-di | 5.10.136-1 | mipsel xfs-modules-5.10.0-17-5kc-malta-di | 5.10.136-1 | mips64el xfs-modules-5.10.0-17-loongson-3-di | 5.10.136-1 | mips64el, mipsel xfs-modules-5.10.0-17-octeon-di | 5.10.136-1 | mips64el, mipsel xfs-modules-5.10.0-17-powerpc64le-di | 5.10.136-1 | ppc64el xfs-modules-5.10.0-17-s390x-di | 5.10.136-1 | s390x ------------------- Reason ------------------- [auto-cruft] NBS ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:24:13 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-13-686-di | 5.10.106-1 | i386 acpi-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 acpi-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 ata-modules-5.10.0-13-686-di | 5.10.106-1 | i386 ata-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 ata-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 ata-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 btrfs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 btrfs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 btrfs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 btrfs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 cdrom-core-modules-5.10.0-13-686-di | 5.10.106-1 | i386 cdrom-core-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 cdrom-core-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 cdrom-core-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 crc-modules-5.10.0-13-686-di | 5.10.106-1 | i386 crc-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 crc-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 crc-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 crypto-dm-modules-5.10.0-13-686-di | 5.10.106-1 | i386 crypto-dm-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 crypto-dm-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 crypto-dm-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 crypto-modules-5.10.0-13-686-di | 5.10.106-1 | i386 crypto-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 crypto-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 crypto-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 efi-modules-5.10.0-13-686-di | 5.10.106-1 | i386 efi-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 efi-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 efi-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 event-modules-5.10.0-13-686-di | 5.10.106-1 | i386 event-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 event-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 event-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 ext4-modules-5.10.0-13-686-di | 5.10.106-1 | i386 ext4-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 ext4-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 ext4-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 f2fs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 f2fs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 f2fs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 f2fs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 fat-modules-5.10.0-13-686-di | 5.10.106-1 | i386 fat-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 fat-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 fat-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 fb-modules-5.10.0-13-686-di | 5.10.106-1 | i386 fb-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 fb-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 fb-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 firewire-core-modules-5.10.0-13-686-di | 5.10.106-1 | i386 firewire-core-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 firewire-core-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 fuse-modules-5.10.0-13-686-di | 5.10.106-1 | i386 fuse-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 fuse-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 fuse-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 i2c-modules-5.10.0-13-686-di | 5.10.106-1 | i386 i2c-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 i2c-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 i2c-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 input-modules-5.10.0-13-686-di | 5.10.106-1 | i386 input-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 input-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 input-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 isofs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 isofs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 isofs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 isofs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 jfs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 jfs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 jfs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 jfs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 kernel-image-5.10.0-13-686-di | 5.10.106-1 | i386 kernel-image-5.10.0-13-686-pae-di | 5.10.106-1 | i386 kernel-image-5.10.0-13-amd64-di | 5.10.106-1 | amd64 kernel-image-5.10.0-13-arm64-di | 5.10.106-1 | arm64 leds-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 linux-image-5.10.0-13-686 | 5.10.106-1 | i386 linux-image-5.10.0-13-686-pae | 5.10.106-1 | i386 linux-image-5.10.0-13-amd64 | 5.10.106-1 | amd64 linux-image-5.10.0-13-arm64 | 5.10.106-1 | arm64 linux-image-5.10.0-13-cloud-amd64 | 5.10.106-1 | amd64 linux-image-5.10.0-13-cloud-arm64 | 5.10.106-1 | arm64 linux-image-5.10.0-13-rt-686-pae | 5.10.106-1 | i386 linux-image-5.10.0-13-rt-amd64 | 5.10.106-1 | amd64 linux-image-5.10.0-13-rt-arm64 | 5.10.106-1 | arm64 linux-signed-amd64 | 5.10.106+1 | source linux-signed-arm64 | 5.10.106+1 | source linux-signed-i386 | 5.10.106+1 | source loop-modules-5.10.0-13-686-di | 5.10.106-1 | i386 loop-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 loop-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 loop-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 md-modules-5.10.0-13-686-di | 5.10.106-1 | i386 md-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 md-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 md-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 mmc-core-modules-5.10.0-13-686-di | 5.10.106-1 | i386 mmc-core-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 mmc-core-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 mmc-modules-5.10.0-13-686-di | 5.10.106-1 | i386 mmc-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 mmc-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 mmc-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 mouse-modules-5.10.0-13-686-di | 5.10.106-1 | i386 mouse-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 mouse-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 mtd-core-modules-5.10.0-13-686-di | 5.10.106-1 | i386 mtd-core-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 mtd-core-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 mtd-core-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 multipath-modules-5.10.0-13-686-di | 5.10.106-1 | i386 multipath-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 multipath-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 multipath-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 nbd-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nbd-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nbd-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nbd-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 nic-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nic-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nic-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nic-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 nic-pcmcia-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nic-pcmcia-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nic-pcmcia-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nic-shared-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nic-shared-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nic-shared-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nic-shared-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 nic-usb-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nic-usb-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nic-usb-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nic-usb-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 nic-wireless-modules-5.10.0-13-686-di | 5.10.106-1 | i386 nic-wireless-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 nic-wireless-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 nic-wireless-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 pata-modules-5.10.0-13-686-di | 5.10.106-1 | i386 pata-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 pata-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 pcmcia-modules-5.10.0-13-686-di | 5.10.106-1 | i386 pcmcia-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 pcmcia-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 pcmcia-storage-modules-5.10.0-13-686-di | 5.10.106-1 | i386 pcmcia-storage-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 pcmcia-storage-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 ppp-modules-5.10.0-13-686-di | 5.10.106-1 | i386 ppp-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 ppp-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 ppp-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 rfkill-modules-5.10.0-13-686-di | 5.10.106-1 | i386 rfkill-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 rfkill-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 sata-modules-5.10.0-13-686-di | 5.10.106-1 | i386 sata-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 sata-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 sata-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 scsi-core-modules-5.10.0-13-686-di | 5.10.106-1 | i386 scsi-core-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 scsi-core-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 scsi-core-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 scsi-modules-5.10.0-13-686-di | 5.10.106-1 | i386 scsi-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 scsi-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 scsi-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 scsi-nic-modules-5.10.0-13-686-di | 5.10.106-1 | i386 scsi-nic-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 scsi-nic-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 scsi-nic-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 serial-modules-5.10.0-13-686-di | 5.10.106-1 | i386 serial-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 serial-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 sound-modules-5.10.0-13-686-di | 5.10.106-1 | i386 sound-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 sound-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 speakup-modules-5.10.0-13-686-di | 5.10.106-1 | i386 speakup-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 speakup-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 squashfs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 squashfs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 squashfs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 squashfs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 udf-modules-5.10.0-13-686-di | 5.10.106-1 | i386 udf-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 udf-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 udf-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 uinput-modules-5.10.0-13-686-di | 5.10.106-1 | i386 uinput-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 uinput-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 uinput-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 usb-modules-5.10.0-13-686-di | 5.10.106-1 | i386 usb-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 usb-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 usb-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 usb-serial-modules-5.10.0-13-686-di | 5.10.106-1 | i386 usb-serial-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 usb-serial-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 usb-serial-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 usb-storage-modules-5.10.0-13-686-di | 5.10.106-1 | i386 usb-storage-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 usb-storage-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 usb-storage-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 xfs-modules-5.10.0-13-686-di | 5.10.106-1 | i386 xfs-modules-5.10.0-13-686-pae-di | 5.10.106-1 | i386 xfs-modules-5.10.0-13-amd64-di | 5.10.106-1 | amd64 xfs-modules-5.10.0-13-arm64-di | 5.10.106-1 | arm64 ------------------- Reason ------------------- [auto-cruft] old linux ABI ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:24:26 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-17-686-di | 5.10.136-1 | i386 acpi-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 acpi-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 ata-modules-5.10.0-17-686-di | 5.10.136-1 | i386 ata-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 ata-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 ata-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 btrfs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 btrfs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 btrfs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 btrfs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 cdrom-core-modules-5.10.0-17-686-di | 5.10.136-1 | i386 cdrom-core-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 cdrom-core-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 cdrom-core-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 crc-modules-5.10.0-17-686-di | 5.10.136-1 | i386 crc-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 crc-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 crc-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 crypto-dm-modules-5.10.0-17-686-di | 5.10.136-1 | i386 crypto-dm-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 crypto-dm-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 crypto-dm-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 crypto-modules-5.10.0-17-686-di | 5.10.136-1 | i386 crypto-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 crypto-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 crypto-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 efi-modules-5.10.0-17-686-di | 5.10.136-1 | i386 efi-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 efi-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 efi-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 event-modules-5.10.0-17-686-di | 5.10.136-1 | i386 event-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 event-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 event-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 ext4-modules-5.10.0-17-686-di | 5.10.136-1 | i386 ext4-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 ext4-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 ext4-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 f2fs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 f2fs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 f2fs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 f2fs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 fat-modules-5.10.0-17-686-di | 5.10.136-1 | i386 fat-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 fat-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 fat-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 fb-modules-5.10.0-17-686-di | 5.10.136-1 | i386 fb-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 fb-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 fb-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 firewire-core-modules-5.10.0-17-686-di | 5.10.136-1 | i386 firewire-core-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 firewire-core-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 fuse-modules-5.10.0-17-686-di | 5.10.136-1 | i386 fuse-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 fuse-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 fuse-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 i2c-modules-5.10.0-17-686-di | 5.10.136-1 | i386 i2c-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 i2c-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 i2c-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 input-modules-5.10.0-17-686-di | 5.10.136-1 | i386 input-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 input-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 input-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 isofs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 isofs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 isofs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 isofs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 jfs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 jfs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 jfs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 jfs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 kernel-image-5.10.0-17-686-di | 5.10.136-1 | i386 kernel-image-5.10.0-17-686-pae-di | 5.10.136-1 | i386 kernel-image-5.10.0-17-amd64-di | 5.10.136-1 | amd64 kernel-image-5.10.0-17-arm64-di | 5.10.136-1 | arm64 leds-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 linux-image-5.10.0-17-686 | 5.10.136-1 | i386 linux-image-5.10.0-17-686-pae | 5.10.136-1 | i386 linux-image-5.10.0-17-amd64 | 5.10.136-1 | amd64 linux-image-5.10.0-17-arm64 | 5.10.136-1 | arm64 linux-image-5.10.0-17-cloud-amd64 | 5.10.136-1 | amd64 linux-image-5.10.0-17-cloud-arm64 | 5.10.136-1 | arm64 linux-image-5.10.0-17-rt-686-pae | 5.10.136-1 | i386 linux-image-5.10.0-17-rt-amd64 | 5.10.136-1 | amd64 linux-image-5.10.0-17-rt-arm64 | 5.10.136-1 | arm64 linux-signed-amd64 | 5.10.136+1 | source linux-signed-arm64 | 5.10.136+1 | source linux-signed-i386 | 5.10.136+1 | source loop-modules-5.10.0-17-686-di | 5.10.136-1 | i386 loop-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 loop-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 loop-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 md-modules-5.10.0-17-686-di | 5.10.136-1 | i386 md-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 md-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 md-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 mmc-core-modules-5.10.0-17-686-di | 5.10.136-1 | i386 mmc-core-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 mmc-core-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 mmc-modules-5.10.0-17-686-di | 5.10.136-1 | i386 mmc-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 mmc-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 mmc-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 mouse-modules-5.10.0-17-686-di | 5.10.136-1 | i386 mouse-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 mouse-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 mtd-core-modules-5.10.0-17-686-di | 5.10.136-1 | i386 mtd-core-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 mtd-core-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 mtd-core-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 multipath-modules-5.10.0-17-686-di | 5.10.136-1 | i386 multipath-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 multipath-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 multipath-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 nbd-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nbd-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nbd-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nbd-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 nic-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nic-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nic-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nic-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 nic-pcmcia-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nic-pcmcia-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nic-pcmcia-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nic-shared-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nic-shared-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nic-shared-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nic-shared-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 nic-usb-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nic-usb-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nic-usb-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nic-usb-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 nic-wireless-modules-5.10.0-17-686-di | 5.10.136-1 | i386 nic-wireless-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 nic-wireless-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 nic-wireless-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 pata-modules-5.10.0-17-686-di | 5.10.136-1 | i386 pata-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 pata-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 pcmcia-modules-5.10.0-17-686-di | 5.10.136-1 | i386 pcmcia-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 pcmcia-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 pcmcia-storage-modules-5.10.0-17-686-di | 5.10.136-1 | i386 pcmcia-storage-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 pcmcia-storage-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 ppp-modules-5.10.0-17-686-di | 5.10.136-1 | i386 ppp-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 ppp-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 ppp-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 rfkill-modules-5.10.0-17-686-di | 5.10.136-1 | i386 rfkill-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 rfkill-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 sata-modules-5.10.0-17-686-di | 5.10.136-1 | i386 sata-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 sata-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 sata-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 scsi-core-modules-5.10.0-17-686-di | 5.10.136-1 | i386 scsi-core-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 scsi-core-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 scsi-core-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 scsi-modules-5.10.0-17-686-di | 5.10.136-1 | i386 scsi-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 scsi-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 scsi-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 scsi-nic-modules-5.10.0-17-686-di | 5.10.136-1 | i386 scsi-nic-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 scsi-nic-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 scsi-nic-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 serial-modules-5.10.0-17-686-di | 5.10.136-1 | i386 serial-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 serial-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 sound-modules-5.10.0-17-686-di | 5.10.136-1 | i386 sound-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 sound-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 speakup-modules-5.10.0-17-686-di | 5.10.136-1 | i386 speakup-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 speakup-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 squashfs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 squashfs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 squashfs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 squashfs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 udf-modules-5.10.0-17-686-di | 5.10.136-1 | i386 udf-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 udf-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 udf-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 uinput-modules-5.10.0-17-686-di | 5.10.136-1 | i386 uinput-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 uinput-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 uinput-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 usb-modules-5.10.0-17-686-di | 5.10.136-1 | i386 usb-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 usb-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 usb-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 usb-serial-modules-5.10.0-17-686-di | 5.10.136-1 | i386 usb-serial-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 usb-serial-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 usb-serial-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 usb-storage-modules-5.10.0-17-686-di | 5.10.136-1 | i386 usb-storage-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 usb-storage-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 usb-storage-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 xfs-modules-5.10.0-17-686-di | 5.10.136-1 | i386 xfs-modules-5.10.0-17-686-pae-di | 5.10.136-1 | i386 xfs-modules-5.10.0-17-amd64-di | 5.10.136-1 | amd64 xfs-modules-5.10.0-17-arm64-di | 5.10.136-1 | arm64 ------------------- Reason ------------------- [auto-cruft] old linux ABI ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:26:52 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: librust-cbindgen+clap-dev | 0.20.0-1~deb11u1 | armel librust-cbindgen-dev | 0.20.0-1~deb11u1 | armel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by rust-cbindgen - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:27:45 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libstd-rust-mozilla-dev-wasm32 | 1.51.0+dfsg1-1~deb11u1 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by rustc-mozilla - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:28:21 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libstd-rust-mozilla-1.51 | 1.51.0+dfsg1-1~deb11u1 | armel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by rustc-mozilla - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 10 Sep 2022 09:28:42 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: lightning | 1:78.14.0-1~deb11u1 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by thunderbird - based on source metadata) ---------------------------------------------- ========================================================================= avahi (0.8-5+deb11u1) bullseye; urgency=medium . [ Simon McVittie ] * Add patch to fix display of URLs containing '&' in avahi-discover. Otherwise, a TXT entry containing a URL with '&' will cause an error. . [ Michael Biebl ] * Do not disable timeout cleanup on watch cleanup. This was causing timeouts to never be removed from the linked list that tracks them, resulting in both memory and CPU usage to grow larger over time. Thanks to Gustavo Noronha Silva. (Closes: #993051) * Fix NULL pointer crashes when trying to resolve badly-formatted hostnames. Fixes a local DoS in avahi-daemon that can be triggered by trying to resolve badly-formatted hostnames on the /run/avahi-daemon/socket interface. (CVE-2021-3502, Closes: #986018) base-files (11.1+deb11u5) bullseye; urgency=medium . * Change /etc/debian_version to 11.5, for Debian 11.5 point release. blender (2.83.5+dfsg-5+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2022-0546 out-of-bounds heap access due to missing checks in the image loader could result in denial of service, memory corruption or potentially code execution * CVE-2022-0545 integer overflow while processing 2d images might result in a write-what-where vulnerability or an out-of-bounds read vulnerability which could leak sensitive information or achieve code execution * CVE-2022-0544 Crafted DDS image files could create an integer underflow in the DDS loader which leads to an out-of-bounds read and might leak sensitive information. booth (1.0-237-gdd88847-2+deb11u1) bullseye-security; urgency=high . * d/patches: add patch for CVE-2022-2553 cargo-mozilla (0.57.0-7~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye as cargo-mozilla. * Build-dep on rustc-mozilla. * Don't build the doc package. * Vendor libgit2 1.3.0, the system one is too old. * Build-dep on libpcre3-dev, for libgit2. * Disable build::close_output_during_drain test as it hangs in bullseye. cargo-mozilla (0.57.0-7~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to buster. * Bump rustc-mozilla build-dep. cargo-mozilla (0.47.0-3~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to buster. * Vendor libgit2 1.0.1, the system one is too old. * Build-dep on rustc-mozilla. * Build-dep on libpcre3-dev, for libgit2. * Fix tests that now have execution time in the output. * Rename to cargo-mozilla to avoid disruption in the rustc/cargo ecosystem, and don't build the doc package. chromium (104.0.5112.79-1~deb11u1) bullseye-security; urgency=high . * Build with Clang 13 instead of the bullseye default of Clang 11. * New upstream stable release. - CVE-2022-2603: Use after free in Omnibox. Reported by Anonymous - CVE-2022-2604: Use after free in Safe Browsing. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-2605: Out of bounds read in Dawn. Reported by Looben Yang - CVE-2022-2606: Use after free in Managed devices API. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-2607: Use after free in Tab Strip. Reported by @ginggilBesel - CVE-2022-2608: Use after free in Overview Mode. Reported by Khalil Zhani - CVE-2022-2609: Use after free in Nearby Share. Reported by koocola (@alo_cook) and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-2610: Insufficient policy enforcement in Background Fetch. Reported by Maurice Dauer - CVE-2022-2611: Inappropriate implementation in Fullscreen API. Reported by Irvan Kurniawan (sourc7) - CVE-2022-2612: Side-channel information leakage in Keyboard input. Reported by Erik Kraft (erik.kraft5@gmx.at), Martin Schwarzl (martin.schwarzl@iaik.tugraz.at) - CVE-2022-2613: Use after free in Input. Reported by Piotr Tworek (Vewd) - CVE-2022-2614: Use after free in Sign-In Flow. Reported by raven at KunLun lab - CVE-2022-2615: Insufficient policy enforcement in Cookies. Reported by Maurice Dauer - CVE-2022-2616: Inappropriate implementation in Extensions API. Reported by Alesandro Ortiz - CVE-2022-2617: Use after free in Extensions API. Reported by @ginggilBesel - CVE-2022-2618: Insufficient validation of untrusted input in Internals. Reported by asnine - CVE-2022-2619: Insufficient validation of untrusted input in Settings. Reported by Oliver Dunk - CVE-2022-2620: Use after free in WebUI. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-2621: Use after free in Extensions. Reported by Huyna at Viettel Cyber Security - CVE-2022-2622: Insufficient validation of untrusted input in Safe Browsing. Reported by Imre Rad (@ImreRad) and @j00sean - CVE-2022-2623: Use after free in Offline. Reported by raven at KunLun lab - CVE-2022-2624: Heap buffer overflow in PDF. Reported by YU-CHANG CHEN and CHIH-YEN CHANG, working with DEVCORE Internship Program * debian/patches: - bullseye/nomerge.patch: drop, was only needed for clang-11. - bullseye/clang11.patch: drop clang-11 bits, rename to clang13.patch. - bullseye/blink-constexpr.patch: drop, only needed for clang-11. - bullseye/byteswap-constexpr2.patch: drop, only needed for clang-11. - disable/angle-perftests.patch: refresh - disable/catapult.patch: refresh & drop some no longer needed bits. - fixes/tflite.patch: fix a build error. * debian/copyright: - upstream dropped perfetto/ui/src/gen/. chromium (103.0.5060.134-1) unstable; urgency=high . * New upstream security release. - CVE-2022-2477 : Use after free in Guest View. Reported by anonymous - CVE-2022-2478 : Use after free in PDF. Reported by triplepwns - CVE-2022-2479 : Insufficient validation of untrusted input in File. Reported by anonymous - CVE-2022-2480 : Use after free in Service Worker API. Reported by Sergei Glazunov of Google Project Zero - CVE-2022-2481: Use after free in Views. Reported by YoungJoo Lee(@ashuu_lee) of CompSecLab at Seoul National University - CVE-2022-2163: Use after free in Cast UI and Toolbar. Reported by Chaoyuan Peng (@ret2happy) chromium (103.0.5060.134-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-2477 : Use after free in Guest View. Reported by anonymous - CVE-2022-2478 : Use after free in PDF. Reported by triplepwns - CVE-2022-2479 : Insufficient validation of untrusted input in File. Reported by anonymous - CVE-2022-2480 : Use after free in Service Worker API. Reported by Sergei Glazunov of Google Project Zero - CVE-2022-2481: Use after free in Views. Reported by YoungJoo Lee(@ashuu_lee) of CompSecLab at Seoul National University - CVE-2022-2163: Use after free in Cast UI and Toolbar. Reported by Chaoyuan Peng (@ret2happy) chromium (103.0.5060.114-1) unstable; urgency=high . * New upstream security release. - CVE-2022-2294: Heap buffer overflow in WebRTC. Reported by Jan Vojtesek from the Avast Threat Intelligence team - CVE-2022-2295: Type Confusion in V8. Reported by avaue and Buff3tts at S.S.L. - CVE-2022-2296: Use after free in Chrome OS Shell. Reported by Khalil Zhani chromium (103.0.5060.114-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-2294: Heap buffer overflow in WebRTC. Reported by Jan Vojtesek from the Avast Threat Intelligence team - CVE-2022-2295: Type Confusion in V8. Reported by avaue and Buff3tts at S.S.L. - CVE-2022-2296: Use after free in Chrome OS Shell. Reported by Khalil Zhani chromium (103.0.5060.53-1) unstable; urgency=high . * New upstream stable release. - CVE-2022-2156: Use after free in Base. Reported by Mark Brand of Google Project Zero - CVE-2022-2157: Use after free in Interest groups. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-2158: Type Confusion in V8. Reported by Bohan Liu (@P4nda20371774) of Tencent Security Xuanwu Lab - CVE-2022-2160: Insufficient policy enforcement in DevTools. Reported by David Erceg - CVE-2022-2161: Use after free in WebApp Provider. Reported by Zhihua Yao of KunLun Lab - CVE-2022-2162: Insufficient policy enforcement in File System API. Reported by Abdelhamid Naceri (halov) - CVE-2022-2163: Use after free in Cast UI and Toolbar. Reported by Chaoyuan Peng (@ret2happy) - CVE-2022-2164: Inappropriate implementation in Extensions API. Reported by José Miguel Moreno Computer Security Lab (COSEC) at UC3M - CVE-2022-2165: Insufficient data validation in URL formatting. Reported by Rayyan Bijoora * debian/patches: - upstream/dawn-version-fix.patch: drop merged upstream. - upstream/blink-ftbfs.patch: drop, merged upstream. - upstream/libxml.patch: drop, merged upstream. - upstream/nested-nested-nested-nested-nested-nested-regex-patterns.patch: drop, merged upstream. - upstream/byteswap-constexpr.patch: drop, merged upstream. - bullseye/byteswap-constexpr2.patch: sys_byteswap.h moved directories. - disable/angle-perftests.patch: simple refresh. - disable/catapult.patch: simple refresh. - bullseye/clang11.patch: minor update for some code dropped upstream. - system/openjpeg.patch: update for libopenjp2-7-dev's 2.4 -> 2.5 path change. clamav (0.103.7+dfsg-0+deb11u1) bullseye; urgency=medium . * Import 0.103.7 - Update symbol file. clamav (0.103.6+dfsg-1) unstable; urgency=medium . * Import 0.103.6 - CVE-2022-20770 (Possible infinite loop vulnerability in the CHM file parser). - CVE-2022-20796 (Possible NULL-pointer dereference crash in the scan verdict cache check). - CVE-2022-20771 (Possible infinite loop vulnerability in the TIFF file parser). - CVE-2022-20785 (Possible memory leak in the HTML file parser/ Javascript normalizer). - CVE-2022-20792 (Possible multi-byte heap buffer overflow write vulnerability in the signature database load module. - Update symbol file. commons-daemon (1.0.15-8+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Apply patch from Graeme Vetterlein to find current OpenJDK. (Closes: #935336) commons-daemon (1.0.15-8+deb10u1) buster; urgency=medium . * Non-maintainer upload. * Apply patch from unstable to fix JVM detection. (Closes: #935336) curl (7.74.0-1.3+deb11u3) bullseye; urgency=medium . * cookie: reject cookies with "control bytes" (CVE-2022-35252) (Closes: #1018831) * test8: verify that "ctrl-byte cookies" are ignored curl (7.74.0-1.3+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload. * CVE-2021-22898: curl suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol. * CVE-2021-22924: libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take 'issuercert' into account and it compared the involved paths *case insensitively*,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn't include the 'issuer cert' which a transfer can setto qualify how to verify the server certificate. * CVE-2021-22945: When sending data to an MQTT server, libcurl could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it *again*. * CVE-2021-22946: A user can tell curl to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FTP server (`--ssl-reqd` on the command line or`CURLOPT_USE_SSL` set to `CURLUSESSL_CONTROL` or `CURLUSESSL_ALL` withlibcurl). This requirement could be bypassed if the server would return a properly crafted but perfectly legitimate response. This flaw would then make curl silently continue its operations **withoutTLS** contrary to the instructions and expectations, exposing possibly sensitive data in clear text over the network. * CVE-2021-22947: When curl connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server. * CVE-2022-22576: An improper authentication vulnerability exists in curl which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only). * CVE-2022-27774: An insufficiently protected credentials vulnerability exists in curl that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. * CVE-2022-27775: An information disclosure vulnerability exists in curl. By using an IPv6 address that was in the connection pool but with a different zone id it could reuse a connection instead. * CVE-2022-27776: A insufficiently protected credentials vulnerability in curl might leak authentication or cookie header data on HTTP redirects to the same host but another port number. * CVE-2022-27781: libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation. * CVE-2022-27782: libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. * CVE-2022-32205: A malicious server can serve excessive amounts of `Set-Cookie:` headers in a HTTP response to curl and curl stores all of them. A sufficiently large amount of (big) cookies make subsequent HTTP requests to this, or other servers to which the cookies match, create requests that become larger than the threshold that curl uses internally to avoid sending crazy large requests (1048576 bytes) and instead returns an error. This denial state might remain for as long as the same cookies are kept, match and haven't expired. Due to cookie matching rules, a server on `foo.example.com` can set cookies that also would match for `bar.example.com`, making it it possible for a "sister server" to effectively cause a denial of service for a sibling site on the same second level domain using this method. * CVE-2022-32206: curl supports "chained" HTTP compression algorithms, meaning that a serverresponse can be compressed multiple times and potentially with different algorithms. The number of acceptable "links" in this "decompression chain" was unbounded, allowing a malicious server to insert a virtually unlimited number of compression steps.The use of such a decompression chain could result in a "malloc bomb", makingcurl end up spending enormous amounts of allocated heap memory, or trying toand returning out of memory errors. * CVE-2022-32207: When curl saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended. * CVE-2022-32208: When curl does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. dbus-broker (26-1+deb11u2) bullseye; urgency=medium . * Backport patch to fix assertion failure when disconnecting peer groups * Backport patch to fix memory leak * Backport patches to fix null pointer dereference (CVE-2022-31213) debian-installer (20210731+deb11u5) bullseye; urgency=medium . * Bump Linux kernel ABI to 5.10.0-18. debian-installer-netboot-images (20210731+deb11u5) bullseye; urgency=medium . * Update to 20210731+deb11u5, from bullseye-proposed-updates. debian-security-support (1:11+2022.08.23) bullseye; urgency=medium . * Update security-support-limited from 1:12+2022.08.19 from unstable, - add khtml. Closes: #1004293. - add openjdk-17 and point to the bullseye release notes (as discussed in #975016). - for golang, point to the bullseye manual instead the buster one. - drop mozjs52 and mozjs60 as they were only present in buster. - drop libv8-3.14, mozjs, mozjs24, swftools and webkitgtk as they were only present in stretch and earlier. debootstrap (1.0.123+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * setup_merged_usr: create skip flag when merged-usr is disabled on bookworm+ * Add usr-is-merged to the required set on testing/unstable dlt-daemon (2.18.6-1+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * CVE-2022-31291: Double free in dlt_config_file_set_section(). (Closes: #1014534) dnsproxy (1.16-0.1+deb11u1) bullseye; urgency=medium . * debian/dnsproxy.conf: Change the default listening IP address to localhost. This address is used by the daemon to bind a UDP port when it starts. Currently, the default listening address is "192.168.168.1", and if this address is not available on the machine, this will cause a dpkg error when trying to install dnsproxy. Thanks to Marco d'Itri (Closes: #802918). dovecot (1:2.3.13+dfsg1-2+deb11u1) bullseye; urgency=medium . * [4b5dac8] d/patches: cherry-pick fix for CVE-2022-30550 (Closes: #1016351) * [597ba7f] salsa-ci: build with bullseye dpdk (20.11.6-1~deb11u1) bullseye-security; urgency=high . [ Henning Schild ] * dpdk: add Depends: procps . [ Luca Boccassi ] * New upstream release 20.11.6; for a full list of changes see: http://doc.dpdk.org/guides-20.11/rel_notes/release_20_11.html Fixes CVE-2022-2132 and CVE-2022-28199. dpdk (20.11.5-1) unstable; urgency=medium . * New upstream release 20.11.5; for a full list of changes see: http://doc.dpdk.org/guides-20.11/rel_notes/release_20_11.html * Drop config-ppc-fix-build-with-GCC-10.patch, merged upstream * librte-ethdev21.symbols: add new internal symbol dpkg (1.20.12) bullseye; urgency=medium . [ Guillem Jover ] * dpkg: Fix conffile removal-on-upgrade handling. Closes: #995387 * dpkg: Fix memory leak in remove-on-upgrade handling. * dpkg-fsys-usrunmess: Move forced reconfiguration to the last step. See #991190. * dpkg-fsys-usrunmess: Install a local policy-rc.d to ignore service restarts. Closes: #991190 * dpkg-fsys-usrunmess: Do not fail when removing lingering directories. * dpkg-fsys-usrunmess: Fix typo in debug message. * dpkg-fsys-usrunmess: Explicitly set user/group and mode for created dirs. Closes: #1008478 * dpkg-fsys-usrunmess: Set a known umask before starting. See #1008478. * dpkg-fsys-usrunmess: Special case untracked kernel module files. Closes: #1008316 * dpkg-fsys-usrunmess: Handle /lib/modules itself also being untracked. Closes: #1008764 * Architecture support: - Add support for ARCv2 CPU. Based on a patch by Alexey Brodkin . Closes: #980963 * Perl modules: - Dpkg::Shlibs::Objdump: Fix apply_relocations to work with versioned symbols. Closes: #1000421 * Localization: - Fix missing newline in Dutch man pages translation. epiphany-browser (3.38.2-1+deb11u3) bullseye-security; urgency=medium . * CVE-2022-29536: buffer overflow write on pages with a long title, when shortening it and adding ellipsis (Closes: #1009959). fig2dev (1:3.2.8-3+deb11u1) bullseye; urgency=medium . * Rebuild testsuite during build and in autopkgtest. * 34_epsimport: Stop misplacement of embedded eps images. * Adapt salsa CI pipeline to bullseye release. * 35_CVE-2021-37529: Allow long names for non-existing images. * 36_CVE-2021-37530: Avoid a segfault for non-existing image names. firefox-esr (91.13.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-35, also known as: CVE-2022-38472, CVE-2022-38473, CVE-2022-38478. firefox-esr (91.12.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-29, also known as: CVE-2022-36319, CVE-2022-36318. firefox-esr (91.12.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-29, also known as: CVE-2022-36319, CVE-2022-36318. firefox-esr (91.12.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-29, also known as: CVE-2022-36319, CVE-2022-36318. firefox-esr (91.11.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-25, also known as: CVE-2022-34479, CVE-2022-34470, CVE-2022-34468, CVE-2022-34481, CVE-2022-31744, CVE-2022-34472, CVE-2022-2200, CVE-2022-34484. . * build/moz.configure/bindgen.configure, gfx/webrender_bindings/webrender_ffi.h: Work around build failure with newer cbindgen. bz#1773259 foxtrotgps (1.2.2+bzr331-1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Rebuild for bullseye. . foxtrotgps (1.2.2+bzr331-1) unstable; urgency=medium . * New upstream snapshot. - Fixes crash due to not unreferencing threads (see LP#1876744) gif2apng (1.9+srconly-3+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * CVE-2021-45909, Closes: #1002668: heap based buffer overflow in the DecodeLZW * CVE-2021-45910, Closes: #1002667: heap-based buffer overflow within the main function * CVE-2021-45911, Closes: #1002687: heap based buffer overflow in processing of delays in the main function glibc (2.31-13+deb11u4) bullseye; urgency=medium . [ Aurelien Jarno ] * debian/debhelper.in/libc-dev.NEWS: New file to explain how to update programs to use the TI-RPC library instead of the Sun RPC one. Closes: #1014735. * debian/patches/git-updates.diff: update from upstream stable branch: - Fix an off-by-one buffer overflow/underflow in getcwd() (CVE-2021-3999). - Fix an overflow bug in the SSE2 and AVX2 implementations of wmemchr. - Fix an overflow bug in the SSE4.1 and AVX2 implementations of wcslen and wcsncat. - Fix an overflow bug in the AVX2 and EVEX implementation of wcsncmp. - Add a few EVEX optimized string functions to fix a performance issue (up to 40%) with Skylake-X processors. - Make grantpt usable after multi-threaded fork. Closes: #1015740. - debian/patches/hurd-i386/git-posix_openpt.diff: rebase. * debian/rules.d/build.mk: pass --with-default-link=no to configure to ensure that libio vtable protection is enabled. gnutls28 (3.7.1-5+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix double free during gnutls_pkcs7_verify (CVE-2022-2509) golang-github-pkg-term (1.1.0-4~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Rebuild for bullseye. . golang-github-pkg-term (1.1.0-4) unstable; urgency=medium . * Team Upload . [ Aloïs Micard ] * d/control: - Update my uploader email. - Bump Standards-Version. . [ Stephen Gelman ] * Fix building on newer linux kernels (Closes: #1002231) gri (2.12.27-1.1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Rebuild for bullseye. . gri (2.12.27-1.1) unstable; urgency=medium . * Non-maintainer upload. * Use ps2pdf instead of convert for converting from ps to pdf. (Closes: #991057) grub-efi-amd64-signed (1+2.06+3~deb11u1) bullseye; urgency=medium . * Update to grub2 2.06-3~deb11u1 grub-efi-amd64-signed (1+2.06+3~deb10u1) buster; urgency=medium . * Update to grub2 2.06-3~deb10u1 grub-efi-amd64-signed (1+2.06+2) unstable; urgency=medium . * Update to grub2 2.06-2 grub-efi-arm64-signed (1+2.06+3~deb11u1) bullseye; urgency=medium . * Update to grub2 2.06-3~deb11u1 grub-efi-arm64-signed (1+2.06+3~deb10u1) buster; urgency=medium . * Update to grub2 2.06-3~deb10u1 grub-efi-arm64-signed (1+2.06+2) unstable; urgency=medium . * Update to grub2 2.06-2 grub-efi-ia32-signed (1+2.06+3~deb11u1) bullseye; urgency=medium . * Update to grub2 2.06-3~deb11u1 grub-efi-ia32-signed (1+2.06+3~deb10u1) buster; urgency=medium . * Update to grub2 2.06-3~deb10u1 grub-efi-ia32-signed (1+2.06+2) unstable; urgency=medium . * Update to grub2 2.06-2 grub2 (2.06-3~deb11u1) bullseye; urgency=medium . [ Steve McIntyre ] * Rebuild for bullseye. * Updated the 2.06-3 changelog to mention closure of CVE-2022-28736 * Re-enable os-prober by default, don't make that change in a stable update. grub2 (2.06-3~deb10u1) buster; urgency=medium . [ Steve McIntyre ] * Switch to upstream 2.06 release, and rebuild for buster. - Tweak build-deps etc. for the rebuild. * Updated the 2.06-3 changelog to mention closure of CVE-2022-28736 * Re-enable os-prober by default, don't make that change in a stable update. grub2 (2.06-2) unstable; urgency=medium . * Update to minilzo-2.10, fixing build failures on armel, mips64el, mipsel, and ppc64el. grub2 (2.06-1) unstable; urgency=medium . * Use "command -v" in maintainer scripts rather than "which". * New upstream release. - Switch to the upstream shim_lock verifier, dropping several more manual checks for UEFI Secure Boot. * Cherry-pick from upstream: - fs/xfs: Fix unreadable filesystem with v4 superblock - tests/ahci: Change "ide-drive" deprecated QEMU device name to "ide-hd" (closes: #997100) * Remove dir_to_symlink maintainer script code, which was only needed for upgrades from before jessie. gsasl (1.10.0-4+deb11u1) bullseye-security; urgency=medium . * 01-fix-gssapi-server-oob.patch: Add to fix OOB in GSS-API server code. * debian/patches/series: Update. gst-plugins-good1.0 (1.18.4-2+deb11u1) bullseye-security; urgency=medium . * debian/patches/0001-avidemux-Fix-integer-overflow-resulting-in-heap-corr.patch: + Fix heap-based buffer overflow in the avi demuxer when handling certain AVI files (CVE-2022-1921). * debian/patches/0001-matroskademux-Avoid-integer-overflow-resulting-in-he.patch: + Fix potential heap overwrite in the mkv demuxer when handling certain Matroska files (CVE-2022-1920). * debian/patches/0001-qtdemux-Fix-integer-overflows-in-zlib-decompression-.patch: + Fix potential heap overwrite in the qt demuxer when handling certain QuickTime/MP4 files (CVE-2022-2122). * debian/patches/0001-matroskademux-Fix-integer-overflows-in-zlib-bz2-etc-.patch: + Fix potential heap overwrite in the mkv demuxer when handling certain Matroska/WebM files (CVE-2022-1922, CVE-2022-1923, CVE-2022-1924, CVE-2022-1925). http-parser (2.9.4-4+deb11u1) bullseye; urgency=medium . * unset F_CHUNKED on new Transfer-Encoding. Closes: #1016690 [CVE-2020-8287] ifenslave (2.13~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye * Revert "Bump Standards-Version to 4.6.0 (no changed needed)" . ifenslave (2.13) unstable; urgency=medium . * QA upload. . [ Guillem Jover ] * Fix MAC address setting messed up by udev for bond interfaces. (Closes: #949062) * Use ifquery instead of example contrib script ifstate. (Closes: #991930) * Fix ifquery redirections. * Bump Standards-Version to 4.6.0 (no changed needed). * Remove long supported Linux version requirements from Description. . [ Sami Haahtinen ] * Use correct argument in setup_slave_device(). (Closes: #968368) . [ Oleander Reis ] * Handle slave definitions of interfaces with no bond settings. (Closes: #990428) * Delete bond interfaces on ifdown -a. (Closes: #992102) inetutils (2:2.0-1+deb11u1) bullseye; urgency=medium . * telnet: Add checks for option reply parsing limits causing buffer overflow induced crashes due to long option values. Fixes CVE-2019-0053. Closes: #945861 * Add patch from upstream to fix infinite loop causing a stack exhaustion induced crash in telnet client due to malicious server commands. Closes: #945861 * Fix inetutils-ftp security bug trusting FTP PASV responses. Fixes CVE-2021-40491. Closes: #993476 * Fix remote DoS vulnerability in inetutils-telnetd, caused by a crash by a NULL pointer dereference when sending the byte sequences «0xff 0xf7» or «0xff 0xf8». Found by Pierre Kim and Alexandre Torres. Patch adapted by Erik Auerswald . Fixes CVE-2022-39028. intel-microcode (3.20220510.1~deb11u1) bullseye-security; urgency=medium . * Backport to Debian bullseye (no relevant changes) * Update upstream changelog with INTEL-00615 information * Mitigates INTEL-00615: CVE-2022-21151, CVE-2022-21166, CVE-2022-21127, CVE-2022-21125, CVE-2022-21123 . intel-microcode (3.20220510.1) unstable; urgency=medium . * New upstream microcode datafile 20220510 * Fixes INTEL-SA-000617, CVE-2022-21151: Processor optimization removal or modification of security-critical code may allow an authenticated user to potentially enable information disclosure via local access (closes: #1010947) * Fixes several errata (functional issues) on Xeon Scalable, Atom C3000, Atom E3900 * New Microcodes: sig 0x00090672, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x00090675, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x000906a3, pf_mask 0x80, 2022-03-24, rev 0x041c, size 212992 sig 0x000906a4, pf_mask 0x80, 2022-03-24, rev 0x041c, size 212992 sig 0x000b06f2, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x000b06f5, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 * Updated Microcodes: sig 0x00030679, pf_mask 0x0f, 2019-07-10, rev 0x090d, size 52224 sig 0x000406e3, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 106496 sig 0x00050653, pf_mask 0x97, 2021-11-13, rev 0x100015d, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-11-13, rev 0x2006d05, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-12-10, rev 0x4003302, size 37888 sig 0x00050657, pf_mask 0xbf, 2021-12-10, rev 0x5003302, size 37888 sig 0x0005065b, pf_mask 0xbf, 2021-11-19, rev 0x7002501, size 29696 sig 0x000506c9, pf_mask 0x03, 2021-11-16, rev 0x0048, size 17408 sig 0x000506e3, pf_mask 0x36, 2021-11-12, rev 0x00f0, size 109568 sig 0x000506f1, pf_mask 0x01, 2021-12-02, rev 0x0038, size 11264 sig 0x000606a6, pf_mask 0x87, 2022-03-30, rev 0xd000363, size 294912 sig 0x000706a1, pf_mask 0x01, 2021-11-22, rev 0x003a, size 75776 sig 0x000706a8, pf_mask 0x01, 2021-11-22, rev 0x001e, size 75776 sig 0x000706e5, pf_mask 0x80, 2022-03-09, rev 0x00b0, size 112640 sig 0x000806a1, pf_mask 0x10, 2022-03-26, rev 0x0031, size 34816 sig 0x000806c1, pf_mask 0x80, 2022-02-01, rev 0x00a4, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-12-07, rev 0x0026, size 97280 sig 0x000806d1, pf_mask 0xc2, 2021-12-07, rev 0x003e, size 102400 sig 0x000806e9, pf_mask 0x10, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806e9, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806ea, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806eb, pf_mask 0xd0, 2021-11-15, rev 0x00f0, size 105472 sig 0x000806ec, pf_mask 0x94, 2021-11-17, rev 0x00f0, size 105472 sig 0x00090661, pf_mask 0x01, 2022-02-03, rev 0x0016, size 20480 sig 0x000906c0, pf_mask 0x01, 2022-02-19, rev 0x24000023, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-11-12, rev 0x00f0, size 108544 sig 0x000906ea, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 104448 sig 0x000906eb, pf_mask 0x02, 2021-11-12, rev 0x00f0, size 105472 sig 0x000906ec, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 104448 sig 0x000906ed, pf_mask 0x22, 2021-11-16, rev 0x00f0, size 104448 sig 0x000a0652, pf_mask 0x20, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0653, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 97280 sig 0x000a0655, pf_mask 0x22, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0660, pf_mask 0x80, 2021-11-15, rev 0x00f0, size 96256 sig 0x000a0661, pf_mask 0x80, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0671, pf_mask 0x02, 2022-03-09, rev 0x0053, size 103424 * source: update symlinks to reflect id of the latest release, 20220510 . intel-microcode (3.20220419.1) unstable; urgency=medium . * New upstream microcode datafile 20220419 * Fixes errata APLI-11 in Atom E3900 series processors * Updated Microcodes: sig 0x000506ca, pf_mask 0x03, 2021-11-16, rev 0x0028, size 16384 * source: update symlinks to reflect id of the latest release, 20220419 intel-microcode (3.20220510.1~deb10u1) buster-security; urgency=medium . * Backport to Debian buster (no relevant changes) * Update upstream changelog with INTEL-00615 information * Mitigates INTEL-00615: CVE-2022-21151, CVE-2022-21166, CVE-2022-21127, CVE-2022-21125, CVE-2022-21123 . intel-microcode (3.20220510.1) unstable; urgency=medium . * New upstream microcode datafile 20220510 * Fixes INTEL-SA-000617, CVE-2022-21151: Processor optimization removal or modification of security-critical code may allow an authenticated user to potentially enable information disclosure via local access (closes: #1010947) * Fixes several errata (functional issues) on Xeon Scalable, Atom C3000, Atom E3900 * New Microcodes: sig 0x00090672, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x00090675, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x000906a3, pf_mask 0x80, 2022-03-24, rev 0x041c, size 212992 sig 0x000906a4, pf_mask 0x80, 2022-03-24, rev 0x041c, size 212992 sig 0x000b06f2, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 sig 0x000b06f5, pf_mask 0x03, 2022-03-03, rev 0x001f, size 212992 * Updated Microcodes: sig 0x00030679, pf_mask 0x0f, 2019-07-10, rev 0x090d, size 52224 sig 0x000406e3, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 106496 sig 0x00050653, pf_mask 0x97, 2021-11-13, rev 0x100015d, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-11-13, rev 0x2006d05, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-12-10, rev 0x4003302, size 37888 sig 0x00050657, pf_mask 0xbf, 2021-12-10, rev 0x5003302, size 37888 sig 0x0005065b, pf_mask 0xbf, 2021-11-19, rev 0x7002501, size 29696 sig 0x000506c9, pf_mask 0x03, 2021-11-16, rev 0x0048, size 17408 sig 0x000506e3, pf_mask 0x36, 2021-11-12, rev 0x00f0, size 109568 sig 0x000506f1, pf_mask 0x01, 2021-12-02, rev 0x0038, size 11264 sig 0x000606a6, pf_mask 0x87, 2022-03-30, rev 0xd000363, size 294912 sig 0x000706a1, pf_mask 0x01, 2021-11-22, rev 0x003a, size 75776 sig 0x000706a8, pf_mask 0x01, 2021-11-22, rev 0x001e, size 75776 sig 0x000706e5, pf_mask 0x80, 2022-03-09, rev 0x00b0, size 112640 sig 0x000806a1, pf_mask 0x10, 2022-03-26, rev 0x0031, size 34816 sig 0x000806c1, pf_mask 0x80, 2022-02-01, rev 0x00a4, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-12-07, rev 0x0026, size 97280 sig 0x000806d1, pf_mask 0xc2, 2021-12-07, rev 0x003e, size 102400 sig 0x000806e9, pf_mask 0x10, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806e9, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806ea, pf_mask 0xc0, 2021-11-12, rev 0x00f0, size 105472 sig 0x000806eb, pf_mask 0xd0, 2021-11-15, rev 0x00f0, size 105472 sig 0x000806ec, pf_mask 0x94, 2021-11-17, rev 0x00f0, size 105472 sig 0x00090661, pf_mask 0x01, 2022-02-03, rev 0x0016, size 20480 sig 0x000906c0, pf_mask 0x01, 2022-02-19, rev 0x24000023, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-11-12, rev 0x00f0, size 108544 sig 0x000906ea, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 104448 sig 0x000906eb, pf_mask 0x02, 2021-11-12, rev 0x00f0, size 105472 sig 0x000906ec, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 104448 sig 0x000906ed, pf_mask 0x22, 2021-11-16, rev 0x00f0, size 104448 sig 0x000a0652, pf_mask 0x20, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0653, pf_mask 0x22, 2021-11-15, rev 0x00f0, size 97280 sig 0x000a0655, pf_mask 0x22, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0660, pf_mask 0x80, 2021-11-15, rev 0x00f0, size 96256 sig 0x000a0661, pf_mask 0x80, 2021-11-16, rev 0x00f0, size 96256 sig 0x000a0671, pf_mask 0x02, 2022-03-09, rev 0x0053, size 103424 * source: update symlinks to reflect id of the latest release, 20220510 . intel-microcode (3.20220419.1) unstable; urgency=medium . * New upstream microcode datafile 20220419 * Fixes errata APLI-11 in Atom E3900 series processors * Updated Microcodes: sig 0x000506ca, pf_mask 0x03, 2021-11-16, rev 0x0028, size 16384 * source: update symlinks to reflect id of the latest release, 20220419 intel-microcode (3.20220207.1) unstable; urgency=medium . * upstream changelog: new upstream datafile 20220207 * Mitigates (*only* when loaded from UEFI firmware through the FIT) CVE-2021-0146, INTEL-SA-00528: VT-d privilege escalation through debug port, on Pentium, Celeron and Atom processors with signatures 0x506c9, 0x506ca, 0x506f1, 0x706a1, 0x706a8 https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/issues/57#issuecomment-1036363145 * Mitigates CVE-2021-0127, INTEL-SA-00532: an unexpected code breakpoint may cause a system hang, on many processors. * Mitigates CVE-2021-0145, INTEL-SA-00561: information disclosure due to improper sanitization of shared resources (fast-store forward predictor), on many processors. * Mitigates CVE-2021-33120, INTEL-SA-00589: out-of-bounds read on some Atom Processors may allow information disclosure or denial of service via network access. * Fixes critical errata (functional issues) on many processors * Adds a MSR switch to enable RAPL filtering (default off, once enabled it can only be disabled by poweroff or reboot). Useful to protect SGX and other threads from side-channel info leak. Improves the mitigation for CVE-2020-8694, CVE-2020-8695, INTEL-SA-00389 on many processors. * Disables TSX in more processor models. * Fixes issue with WBINDV on multi-socket (server) systems which could cause resets and unpredictable system behavior. * Adds a MSR switch to 10th and 11th-gen (Ice Lake, Tiger Lake, Rocket Lake) processors, to control a fix for (hopefully rare) unpredictable processor behavior when HyperThreading is enabled. This MSR switch is enabled by default on *server* processors. On other processors, it needs to be explicitly enabled by an updated UEFI/BIOS (with added configuration logic). An updated operating system kernel might also be able to enable it. When enabled, this fix can impact performance. * Updated Microcodes: sig 0x000306f2, pf_mask 0x6f, 2021-08-11, rev 0x0049, size 38912 sig 0x000306f4, pf_mask 0x80, 2021-05-24, rev 0x001a, size 23552 sig 0x000406e3, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 105472 sig 0x00050653, pf_mask 0x97, 2021-05-26, rev 0x100015c, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-06-16, rev 0x2006c0a, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-08-13, rev 0x400320a, size 35840 sig 0x00050657, pf_mask 0xbf, 2021-08-13, rev 0x500320a, size 36864 sig 0x0005065b, pf_mask 0xbf, 2021-06-04, rev 0x7002402, size 28672 sig 0x00050663, pf_mask 0x10, 2021-06-12, rev 0x700001c, size 28672 sig 0x00050664, pf_mask 0x10, 2021-06-12, rev 0xf00001a, size 27648 sig 0x00050665, pf_mask 0x10, 2021-09-18, rev 0xe000014, size 23552 sig 0x000506c9, pf_mask 0x03, 2021-05-10, rev 0x0046, size 17408 sig 0x000506ca, pf_mask 0x03, 2021-05-10, rev 0x0024, size 16384 sig 0x000506e3, pf_mask 0x36, 2021-04-29, rev 0x00ec, size 108544 sig 0x000506f1, pf_mask 0x01, 2021-05-10, rev 0x0036, size 11264 sig 0x000606a6, pf_mask 0x87, 2021-12-03, rev 0xd000331, size 291840 sig 0x000706a1, pf_mask 0x01, 2021-05-10, rev 0x0038, size 74752 sig 0x000706a8, pf_mask 0x01, 2021-05-10, rev 0x001c, size 75776 sig 0x000706e5, pf_mask 0x80, 2021-05-26, rev 0x00a8, size 110592 sig 0x000806a1, pf_mask 0x10, 2021-09-02, rev 0x002d, size 34816 sig 0x000806c1, pf_mask 0x80, 2021-08-06, rev 0x009a, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-07-16, rev 0x0022, size 96256 sig 0x000806d1, pf_mask 0xc2, 2021-07-16, rev 0x003c, size 101376 sig 0x000806e9, pf_mask 0x10, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806e9, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ea, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 103424 sig 0x000806eb, pf_mask 0xd0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ec, pf_mask 0x94, 2021-04-28, rev 0x00ec, size 104448 sig 0x00090661, pf_mask 0x01, 2021-09-21, rev 0x0015, size 20480 sig 0x000906c0, pf_mask 0x01, 2021-08-09, rev 0x2400001f, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-04-29, rev 0x00ec, size 106496 sig 0x000906ea, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 102400 sig 0x000906eb, pf_mask 0x02, 2021-04-28, rev 0x00ec, size 104448 sig 0x000906ec, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000906ed, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000a0652, pf_mask 0x20, 2021-04-28, rev 0x00ec, size 93184 sig 0x000a0653, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 94208 sig 0x000a0655, pf_mask 0x22, 2021-04-28, rev 0x00ee, size 94208 sig 0x000a0660, pf_mask 0x80, 2021-04-28, rev 0x00ea, size 94208 sig 0x000a0661, pf_mask 0x80, 2021-04-29, rev 0x00ec, size 93184 sig 0x000a0671, pf_mask 0x02, 2021-08-29, rev 0x0050, size 102400 * Removed Microcodes: sig 0x00080664, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 sig 0x00080665, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 * update .gitignore and debian/.gitignore. Add some missing items from .gitignore and debian/.gitignore. * ucode-blacklist: do not late-load 0x406e3 and 0x506e3. When the BIOS microcode is older than revision 0x7f (and perhaps in some other cases as well), the latest microcode updates for 0x406e3 and 0x506e3 must be applied using the early update method. Otherwise, the system might hang. Also: there must not be any other intermediate microcode update attempts [other than the one done by the BIOS itself], either. It must go from the BIOS microcode update directly to the latest microcode update. * source: update symlinks to reflect id of the latest release, 20220207 jetty9 (9.4.39-3+deb11u1) bullseye-security; urgency=high . * Team upload. * Fix CVE-2022-2047: In Eclipse Jetty the parsing of the authority segment of an http scheme URI, the Jetty HttpURI class improperly detects an invalid input as a hostname. This can lead to failures in a Proxy scenario. * Fix CVE-2022-2048: In Eclipse Jetty HTTP/2 server implementation, when encountering an invalid HTTP/2 request, the error handling has a bug that can wind up not properly cleaning up the active connections and associated resources. This can lead to a Denial of Service scenario where there are no enough resources left to process good requests. kicad (5.1.9+dfsg1-1+deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload by the Security Team. * Security Updates: - CVE-2022-23803, CVE-2022-23804, CVE-2022-23946, CVE-2022-23947: Resolve buffer overflows in the Gerber Viewer. An attacker could provide a malicious Gerber or excellon file to trigger to cause code execution on opening the file. knot (3.0.5-1+deb11u1) bullseye; urgency=medium . [ Daniel Gröber ] * d/patches: Add patch fixing IXFR to AXFR fallback with dnsmasq (Closes: #995576) krb5 (1.18.3-6+deb11u2) bullseye; urgency=medium . * Use SHA256 as Pkinit CMS Digest, Closes: #1017995 ldap-account-manager (8.0.1-0+deb11u1) bullseye-security; urgency=high . * new upstream release . ldap-account-manager (8.0-1) unstable; urgency=medium . * new upstream release * Unauthenticated Arbitrary Object Instantiation / Unauthenticated Remote Code Execution (GHSA-r387-grjx-qgvw, CVE-2022-31084) * Incorrect Default Permissions (GHSA-q8g5-45m4-q95p, CVE-2022-31087) * Incorrect Regular Expressions (GHSA-q9pc-x84w-982x, CVE-2022-31086) * Unauthenticated LDAP Injection (GHSA-wxf8-9x99-6gp4, CVE-2022-31088) * Reflected XSS (Internet Explorer only) (GHSA-6m3q-5c84-6h6j, CVE-2022-31085) . ldap-account-manager (7.9.1-1) unstable; urgency=medium . * new upstream release * Fix CVE-2022-24851 . ldap-account-manager (7.9-1) unstable; urgency=medium . * new upstream release * Fix "FTBFS: error: unknown option '--skip-rebase'" by checking if argument is supported (Closes: #1005424) * Fix "ldap-account-manager.postinst uses a2query without requiring apache2 package" by adding sanity checks (Closes: #1006232) . ldap-account-manager (7.8-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (7.7-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (7.6-1) unstable; urgency=medium . * new upstream release * Fix "[src:ldap-account-manager] ldap-account-manager: embedded copy of normalize.css" by switching to https://github.com/csstools/normalize.css (Closes: #898787) . ldap-account-manager (7.5-1) unstable; urgency=medium . * new upstream release * Fix "node-uglify is deprecated in favor of uglifyjs" by using uglifyjs (Closes: #979896) ldap-account-manager (7.9.1-1) unstable; urgency=medium . * new upstream release * Fix CVE-2022-24851 ldap-account-manager (7.9-1) unstable; urgency=medium . * new upstream release * Fix "FTBFS: error: unknown option '--skip-rebase'" by checking if argument is supported (Closes: #1005424) * Fix "ldap-account-manager.postinst uses a2query without requiring apache2 package" by adding sanity checks (Closes: #1006232) . ldap-account-manager (7.8-1) unstable; urgency=medium . * new upstream release ldap-account-manager (7.7-1) unstable; urgency=medium . * new upstream release . ldap-account-manager (7.6-1) unstable; urgency=medium . * new upstream release * Fix "[src:ldap-account-manager] ldap-account-manager: embedded copy of normalize.css" by switching to https://github.com/csstools/normalize.css (Closes: #898787) ldap-account-manager (7.5-1) unstable; urgency=medium . * new upstream release * Fix "node-uglify is deprecated in favor of uglifyjs" by using uglifyjs (Closes: #979896) ldb (2:2.2.3-2~deb11u2) bullseye-security; urgency=medium . * d/control: add myself to Uploaders * ldb-memory-bug-15096-CVE-2022-32745-4.13-v3.patch: only the lib/ldb/* bits from the larger upstream patchset as found at https://bugzilla.samba.org/show_bug.cgi?id=15096 , as part of the fix for CVE-2022-32745 * d/*.symbols*: add new symbols and versions libayatana-appindicator (0.5.5-2+deb11u2) bullseye; urgency=medium . * debian/control: + Amend version for bullseye in dev:pkg dependencies. libayatana-appindicator (0.5.5-2+deb11u1) bullseye; urgency=medium . * debian/: + Provide libappindicator compat files for runtime. This re-adds support for 3rd party apps that have been built against Canonical's libappindicator rather than libayatana-appindicator. (Closes: #996201). * debian/control: + Add missing libayatana-indicator*-dev dependency to dev:pkgs. + Add B:/R: rules so that libayatana-appindicator will finally replace libappindicator. + Add version to B:/R:. Add Provides: field for libappindicator compatibility. (Closes: #996201). libdatetime-timezone-perl (1:2.47-1+2022b) bullseye; urgency=medium . * Update to Olson database version 2022b. This update includes contemporary changes for Chile and Iran. libhttp-daemon-perl (6.12-1+deb11u1) bullseye; urgency=high . * Non-maintainer upload by the ELTS Team. * CVE-2022-31081 (Closes: #1014808) improved Content-Length: handling in HTTP-header libpgjava (42.2.15-1+deb11u1) bullseye-security; urgency=high . * Team upload. * Fix CVE-2022-26520: An attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. * Fix CVE-2022-21724: The JDBC driver did not verify if certain classes implemented the expected interface before instantiating the class. This can lead to code execution loaded via arbitrary classes. libreoffice (1:7.0.4-4+deb11u3) bullseye; urgency=medium . * debian/patches/fix-e_book_client_connect_direct_sync-sig.diff: as name says (closes: #1016420) libreoffice (1:7.0.4-4+deb11u2) stable; urgency=medium . * debian/patches/hrk-euro.diff: add EUR to .hr i18n; add HRK<->EUR conversion rate to Calc and the Euro Wizard * debian/patches/b0404f80577de9ff69e58390c6f6ef949fdb0139.patch: fix CVE-2021-25636 * debian/patches/0001-CVE-2022-26305-compare-authors-using-Thumbprint.patch, debian/patches/0002-CVE-2022-26307-make-hash-encoding-match-decoding.patch debian/patches/0003-CVE-2022-26306-add-Initialization-Vectors-to-passwor.patch debian/patches/0004-CVE-2022-2630-6-7-add-infobar-to-prompt-to-refresh-t.patch: fix CVE-2022-2630{5,6,7} libtirpc (1.3.1-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix DoS vulnerability in libtirpc (CVE-2021-46828) (Closes: #1015873) libxslt (1.1.34-4+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix use-after-free in xsltApplyTemplates (CVE-2021-30560) linux (5.10.140-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.137 - Makefile: link with -z noexecstack --no-warn-rwx-segments - [x86] link vdso and boot with -z noexecstack --no-warn-rwx-segments - Revert "pNFS: nfs3_set_ds_client should set NFS_CS_NOPING" - scsi: Revert "scsi: qla2xxx: Fix disk failure to rediscover" - ALSA: bcd2000: Fix a UAF bug on the error path of probing - ALSA: hda/realtek: Add quirk for Clevo NV45PZ - ALSA: hda/realtek: Add quirk for HP Spectre x360 15-eb0xxx - wifi: mac80211_hwsim: fix race condition in pending packet - wifi: mac80211_hwsim: add back erroneously removed cast - wifi: mac80211_hwsim: use 32-bit skb cookie - add barriers to buffer_uptodate and set_buffer_uptodate - HID: wacom: Only report rotation for art pen - HID: wacom: Don't register pad_input for touch switch - [x86] KVM: nVMX: Snapshot pre-VM-Enter BNDCFGS for !nested_run_pending case - [x86] KVM: nVMX: Snapshot pre-VM-Enter DEBUGCTL for !nested_run_pending case - [x86] KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 - [s390x] KVM: s390: pv: don't present the ecall interrupt twice - [x86] KVM: nVMX: Let userspace set nVMX MSR to any _host_ supported value - [x86] KVM: x86: Mark TSS busy during LTR emulation _after_ all fault checks - [x86] KVM: x86: Set error code to segment selector on LLDT/LTR non-canonical #GP - [x86] KVM: x86: Tag kvm_mmu_x86_module_init() with __init - mm: Add kvrealloc() - xfs: only set IOMAP_F_SHARED when providing a srcmap to a write - xfs: fix I_DONTCACHE - mm/mremap: hold the rmap lock in write mode when moving page table entries. - ALSA: hda/conexant: Add quirk for LENOVO 20149 Notebook model - ALSA: hda/cirrus - support for iMac 12,1 model - ALSA: hda/realtek: Add quirk for another Asus K42JZ model - ALSA: hda/realtek: Add a quirk for HP OMEN 15 (8786) mute LED - tty: vt: initialize unicode screen buffer - vfs: Check the truncate maximum size in inode_newsize_ok() - fs: Add missing umask strip in vfs_tmpfile - thermal: sysfs: Fix cooling_device_stats_setup() error code path - fbcon: Fix boundary checks for fbcon=vc:n1-n2 parameters - fbcon: Fix accelerated fbdev scrolling while logo is still shown - usbnet: Fix linkwatch use-after-free on disconnect - ovl: drop WARN_ON() dentry is NULL in ovl_encode_fh() - drm/gem: Properly annotate WW context on drm_gem_lock_reservations() error - [arm*] drm/vc4: hdmi: Disable audio if dmas property is present but empty - drm/nouveau: fix another off-by-one in nvbios_addr - drm/nouveau: Don't pm_runtime_put_sync(), only pm_runtime_put_autosuspend() - drm/nouveau/acpi: Don't print error when we get -EINPROGRESS from pm_runtime - drm/amdgpu: Check BO's requested pinning domains against its preferred_domains - iio: light: isl29028: Fix the warning in isl29028_remove() - scsi: sg: Allow waiting for commands to complete on removed device - scsi: qla2xxx: Fix incorrect display of max frame size - scsi: qla2xxx: Zero undefined mailbox IN registers - fuse: limit nsec - [arm64] serial: mvebu-uart: uart2 error bits clearing - md-raid: destroy the bitmap after destroying the thread - md-raid10: fix KASAN warning - PCI: Add defines for normal and subtractive PCI bridges - [powerpc*] powernv: Avoid crashing if rng is NULL - [mips64el,mipsel] cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK - usb: typec: ucsi: Acknowledge the GET_ERROR_STATUS command completion - USB: HCD: Fix URB giveback issue in tasklet function - [arm64,armhf] usb: dwc3: gadget: refactor dwc3_repare_one_trb - [arm64,armhf] usb: dwc3: gadget: fix high speed multiplier setting - netfilter: nf_tables: fix null deref due to zeroed list head - epoll: autoremove wakers even more aggressively - [x86] Handle idle=nomwait cmdline properly for x86_idle - [arm64] Do not forget syscall when starting a new thread. - [arm64] fix oops in concurrently setting insn_emulation sysctls - genirq: Don't return error on missing optional irq_request_resources() - [mips64el,mipsel] irqchip/mips-gic: Only register IPI domain when SMP is enabled - genirq: GENERIC_IRQ_IPI depends on SMP - [mips64el,mipsel] irqchip/mips-gic: Check the return value of ioremap() in gic_of_init() - wait: Fix __wait_event_hrtimeout for RT/DL tasks - [armhf] OMAP2+: display: Fix refcount leak bug - ACPI: EC: Remove duplicate ThinkPad X1 Carbon 6th entry from DMI quirks - ACPI: EC: Drop the EC_FLAGS_IGNORE_DSDT_GPE quirk - ACPI: PM: save NVS memory for Lenovo G40-45 - ACPI: LPSS: Fix missing check in register_device_clock() - [arm64] dts: allwinner: a64: orangepi-win: Fix LED node name - PM: hibernate: defer device probing when resuming from hibernation - selinux: Add boundary check in put_entry() - [armel,armhf] findbit: fix overflowing offset - [arm64,armhf] meson-mx-socinfo: Fix refcount leak in meson_mx_socinfo_init - ACPI: processor/idle: Annotate more functions to live in cpuidle section - Input: atmel_mxt_ts - fix up inverted RESET handler - [arm64] soc: amlogic: Fix refcount leak in meson-secure-pwrc.c - [x86] pmem: Fix platform-device leak in error path - [armhf] dts: ast2500-evb: fix board compatible - [armhf] dts: ast2600-evb: fix board compatible - [arm64] cpufeature: Allow different PMU versions in ID_DFR0_EL1 - locking/lockdep: Fix lockdep_init_map_*() confusion - [arm64] soc: fsl: guts: machine variable might be unset - block: fix infinite loop for invalid zone append - [armhf] OMAP2+: Fix refcount leak in omapdss_init_of - [armhf] OMAP2+: Fix refcount leak in omap3xxx_prm_late_init - [arm64] regulator: qcom_smd: Fix pm8916_pldo range - [arm64] ACPI: APEI: Fix _EINJ vs EFI_MEMORY_SP - [arm64] bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - erofs: avoid consecutive detection for Highmem memory - blk-mq: don't create hctx debugfs dir until q->debugfs_dir is created - hwmon: (drivetemp) Add module alias - block: remove the request_queue to argument request based tracepoints - blktrace: Trace remapped requests correctly - regulator: of: Fix refcount leak bug in of_get_regulation_constraints() - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - dm: return early from dm_pr_call() if DM device is suspended - ath10k: do not enforce interrupt trigger type - wifi: rtlwifi: fix error codes in rtl_debugfs_set_write_h2c() - ath11k: fix netdev open race - drm/mipi-dbi: align max_chunk to 2 in spi_transfer - ath11k: Fix incorrect debug_mask mappings - drm/radeon: fix potential buffer overflow in ni_set_mc_special_registers() - virtio-gpu: fix a missing check to avoid NULL dereference - [arm64] drm: adv7511: override i2c address of cec before accessing it - net: fix sk_wmem_schedule() and sk_rmem_schedule() errors - i2c: Fix a potential use after free - media: tw686x: Register the irq at the end of probe - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb (CVE-2022-1679) - wifi: iwlegacy: 4965: fix potential off-by-one overflow in il4965_rs_fill_link_cmd() - drm/radeon: fix incorrrect SPDX-License-Identifiers - [amd64] crypto: ccp - During shutdown, check SEV data pointer before using - [arm64] drm: bridge: adv7511: Add check for mipi_dsi_driver_register - media: hdpvr: fix error value returns in hdpvr_read - [arm64,armhf] media: v4l2-mem2mem: prevent pollerr when last_buffer_dequeued is set - media: tw686x: Fix memory leak in tw686x_video_init - [arm*] drm/vc4: plane: Remove subpixel positioning check - [arm*] drm/vc4: plane: Fix margin calculations for the right/bottom edges - [arm*] drm/vc4: dsi: Correct DSI divider calculations - [arm*] drm/vc4: dsi: Correct pixel order for DSI0 - [arm*] drm/vc4: drv: Remove the DSI pointer in vc4_drv - [arm*] drm/vc4: dsi: Use snprintf for the PHY clocks instead of an array - [arm*] drm/vc4: dsi: Introduce a variant structure - [arm*] drm/vc4: dsi: Register dsi0 as the correct vc4 encoder type - [arm*] drm/vc4: dsi: Fix dsi0 interrupt support - [arm*] drm/vc4: dsi: Add correct stop condition to vc4_dsi_encoder_disable iteration - [arm*] drm/vc4: hdmi: Remove firmware logic for MAI threshold setting - [arm*] drm/vc4: hdmi: Avoid full hdmi audio fifo writes - [arm*] drm/vc4: hdmi: Don't access the connector state in reset if kmalloc fails - [arm*] drm/vc4: hdmi: Limit the BCM2711 to the max without scrambling - [arm*] drm/vc4: hdmi: Fix timings for interlaced modes - [arm*] drm/vc4: hdmi: Correct HDMI timing registers for interlaced modes - [arm64,armhf] drm/rockchip: vop: Don't crash for invalid duplicate_state() - [arm64,armhf] drm/rockchip: Fix an error handling path rockchip_dp_probe() - lib: bitmap: order includes alphabetically - lib: bitmap: provide devm_bitmap_alloc() and devm_bitmap_zalloc() - hinic: Use the bitmap API when applicable - net: hinic: fix bug that ethtool get wrong stats - net: hinic: avoid kernel hung in hinic_get_stats64() - [arm64] drm/msm/mdp5: Fix global state lock backoff - mt76: mt76x02u: fix possible memory leak in __mt76x02u_mcu_send_msg - mediatek: mt76: mac80211: Fix missing of_node_put() in mt76_led_init() - tcp: make retransmitted SKB fit into the send window - bpf: Fix subprog names in stack traces. - fs: check FMODE_LSEEK to control internal pipe splicing - wifi: wil6210: debugfs: fix info leak in wil_write_file_wmi() - [i386] can: pch_can: do not report txerr and rxerr during bus-off - can: sja1000: do not report txerr and rxerr during bus-off - [armhf] can: sun4i_can: do not report txerr and rxerr during bus-off - can: kvaser_usb_hydra: do not report txerr and rxerr during bus-off - can: kvaser_usb_leaf: do not report txerr and rxerr during bus-off - can: usb_8dev: do not report txerr and rxerr during bus-off - can: error: specify the values of data[5..7] of CAN error frames - [i386] can: pch_can: pch_can_error(): initialize errc before using it - Bluetooth: hci_intel: Add check for platform_driver_register - wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` - wifi: iwlwifi: mvm: fix double list_add at iwl_mvm_mac_wake_tx_queue - wifi: libertas: Fix possible refcount leak in if_usb_probe() - [arm64,armhf] media: cedrus: hevc: Add check for invalid timestamp - net/mlx5e: Remove WARN_ON when trying to offload an unsupported TLS cipher/version - net/mlx5e: Fix the value of MLX5E_MAX_RQ_NUM_MTTS - [arm64] crypto: inside-secure - Add missing MODULE_DEVICE_TABLE for of - inet: add READ_ONCE(sk->sk_bound_dev_if) in INET_MATCH() - tcp: sk->sk_bound_dev_if once in inet_request_bound_dev_if() - ipv6: add READ_ONCE(sk->sk_bound_dev_if) in INET6_MATCH() - tcp: Fix data-races around sysctl_tcp_l3mdev_accept. - net: allow unbound socket for packets in VRF when tcp_l3mdev_accept set - iavf: Fix max_rate limiting - net: rose: fix netdev reference changes - dccp: put dccp_qpolicy_full() and dccp_qpolicy_push() in the same lock - wireguard: ratelimiter: use hrtimer in selftest - wireguard: allowedips: don't corrupt stack when detecting overflow - HID: cp2112: prevent a buffer overflow in cp2112_xfer() - mtd: partitions: Fix refcount leak in parse_redboot_of - [arm64,armhf] usb: xhci: tegra: Fix error check - netfilter: xtables: Bring SPDX identifier back - [arm64,armhf] platform/chrome: cros_ec: Always expose last resume result - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - mwifiex: Ignore BTCOEX events from the 88W8897 firmware - mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv - misc: rtsx: Fix an error handling path in rtsx_pci_probe() - driver core: fix potential deadlock in __driver_attach - usb: host: xhci: use snprintf() in xhci_decode_trb() - [arm64,armhf] PCI: dwc: Add unroll iATU space support to dw_pcie_disable_atu() - [arm64,armhf] PCI: dwc: Always enable CDM check if "snps,enable-cdm-check" exists - soundwire: bus_type: fix remove and shutdown support - [arm64] KVM: arm64: Don't return from void function - [x86] intel_th: Fix a resource leak in an error handling path - [x86] intel_th: msu-sink: Potential dereference of null pointer - [x86] intel_th: msu: Fix vmalloced buffers - [x86] staging: rtl8192u: Fix sleep in atomic context bug in dm_fsync_timer_callback - [arm64] mmc: sdhci-of-esdhc: Fix refcount leak in esdhc_signal_voltage_switch - mmc: block: Add single read for 4k sector cards - [s390x] KVM: s390: pv: leak the topmost page table when destroy fails - PCI/portdrv: Don't disable AER reporting in get_port_device_capability() - [arm64] PCI: qcom: Set up rev 2.1.0 PARF_PHY before enabling clocks - scsi: smartpqi: Fix DMA direction for RAID requests - [armhf] usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc() - [arm64,armhf] usb: dwc3: core: Deprecate GCTL.CORESOFTRESET - [arm64,armhf] usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - [arm64,armhf] usb: dwc3: qcom: fix missing optional irq warnings - RDMA/qedr: Improve error logs for rdma_alloc_tid error return - RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() - [arm64] RDMA/hns: Fix incorrect clearing of interrupt status register - [amd64] RDMA/hfi1: fix potential memory leak in setup_base_ctxt() - gpio: gpiolib-of: Fix refcount bugs in of_mm_gpiochip_add_data() - [mips64el,mipsel] mmc: cavium-octeon: Add of_node_put() when breaking out of loop - HID: alps: Declare U1_UNICORN_LEGACY support - USB: serial: fix tty-port initialized comments - [armhf,i386] platform/olpc: Fix uninitialized data in debugfs write - RDMA/srpt: Duplicate port name members - RDMA/srpt: Introduce a reference count in struct srpt_device - RDMA/srpt: Fix a use-after-free - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - RDMA/mlx5: Add missing check for return value in get namespace flow - RDMA/rxe: Fix error unwind in rxe_create_qp() - null_blk: fix ida error handling in null_add_dev() - nvme: use command_id instead of req->tag in trace_nvme_complete_rq() - jbd2: fix outstanding credits assert in jbd2_journal_commit_transaction() - ext4: recover csum seed of tmp_inode after migrating to extents - jbd2: fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - opp: Fix error check in dev_pm_opp_attach_genpd() - serial: 8250: Export ICR access helpers for internal use - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - profiling: fix shift too large makes kernel panic - tty: n_gsm: Delete gsmtty open SABM frame when config requester - tty: n_gsm: fix user open not possible at responder until initiator open - tty: n_gsm: fix wrong queuing behavior in gsm_dlci_data_output() - tty: n_gsm: fix non flow control frames during mux flow off - tty: n_gsm: fix packet re-transmission without open control channel - tty: n_gsm: fix race condition in gsmld_write() - [arm64] ASoC: qcom: Fix missing of_node_put() in asoc_qcom_lpass_cpu_platform_probe() - vfio: Remove extra put/gets around vfio_device->group - vfio: Simplify the lifetime logic for vfio_device - vfio: Split creation of a vfio_device into init and register ops - tty: n_gsm: fix wrong T1 retry count handling - tty: n_gsm: fix DM command - tty: n_gsm: fix missing corner cases in gsmld_poll() - kfifo: fix kfifo_to_user() return type - lib/smp_processor_id: fix imbalanced instrumentation_end() call - [arm64] mfd: max77620: Fix refcount leak in max77620_initialise_fps - [arm64] iommu/arm-smmu: qcom_iommu: Add of_node_put() when breaking out of loop - [s390x] dump: fix old lowcore virtual vs physical address confusion - fuse: Remove the control interface for virtio-fs - [armhf] ASoC: audio-graph-card: Add of_node_put() in fail path - [arm64] watchdog: armada_37xx_wdt: check the return value of devm_ioremap() in armada_37xx_wdt_probe() - [arm64,armhf] video: fbdev: amba-clcd: Fix refcount leak bugs - video: fbdev: sis: fix typos in SiS_GetModeID() - [powerpc*] pci: Prefer PCI domain assignment via DT 'linux,pci-domain' and alias - f2fs: don't set GC_FAILURE_PIN for background GC - f2fs: write checkpoint during FG_GC - f2fs: fix to remove F2FS_COMPR_FL and tag F2FS_NOCOMP_FL at the same time - [powerpc*] xive: Fix refcount leak in xive_get_max_prio - kprobes: Forbid probing on trampoline and BPF code areas - [powerpc*] pci: Fix PHB numbering when using opal-phbid - sched/deadline: Merge dl_task_can_attach() and dl_cpu_busy() - sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed - [amd64] x86/numa: Use cpumask_available instead of hardcoded NULL check - video: fbdev: arkfb: Fix a divide-by-zero bug in ark_set_pixclock() - sched: Fix the check of nr_running at queue wakelist - video: fbdev: vt8623fb: Check the size of screen before memset_io() - video: fbdev: arkfb: Check the size of screen before memset_io() - video: fbdev: s3fb: Check the size of screen before memset_io() - [s390x] scsi: zfcp: Fix missing auto port scan and thus missing target ports - scsi: qla2xxx: Fix discovery issues in FC-AL topology - scsi: qla2xxx: Turn off multi-queue for 8G adapters - scsi: qla2xxx: Fix erroneous mailbox timeout after PCI error injection - scsi: qla2xxx: Fix losing FCP-2 targets on long port disable with I/Os - scsi: qla2xxx: Fix losing FCP-2 targets during port perturbation tests - [x86] bugs: Enable STIBP for IBPB mitigated RETBleed - [x86] ftrace/x86: Add back ftrace_expected assignment - __follow_mount_rcu(): verify that mount_lock remains unchanged - spmi: trace: fix stack-out-of-bound access in SPMI tracing functions - [x86] drm/i915/dg1: Update DMC_DEBUG3 register - HID: Ignore battery for Elan touchscreen on HP Spectre X360 15-df0xxx - HID: hid-input: add Surface Go battery quirk - [arm*] drm/vc4: drv: Adopt the dma configuration from the HVS or V3D component - usbnet: smsc95xx: Don't clear read-only PHY interrupt - usbnet: smsc95xx: Avoid link settings race on interrupt reception - [x86] intel_th: pci: Add Meteor Lake-P support - [x86] intel_th: pci: Add Raptor Lake-S PCH support - [x86] intel_th: pci: Add Raptor Lake-S CPU support - [x86] KVM: set_msr_mce: Permit guests to ignore single-bit ECC errors - [x86] KVM: x86: Signal #GP, not -EPERM, on bad WRMSR(MCi_CTL/STATUS) - [amd64] iommu/vt-d: avoid invalid memory access via node_online(NUMA_NO_NODE) - PCI/AER: Write AER Capability only when we control it - PCI/ERR: Bind RCEC devices to the Root Port driver - PCI/ERR: Rename reset_link() to reset_subordinates() - PCI/ERR: Simplify by using pci_upstream_bridge() - PCI/ERR: Simplify by computing pci_pcie_type() once - PCI/ERR: Use "bridge" for clarity in pcie_do_recovery() - PCI/ERR: Avoid negated conditional for clarity - PCI/ERR: Add pci_walk_bridge() to pcie_do_recovery() - PCI/ERR: Recover from RCEC AER errors - PCI/AER: Iterate over error counters instead of error strings - serial: 8250: Dissociate 4MHz Titan ports from Oxford ports - serial: 8250: Correct the clock for OxSemi PCIe devices - serial: 8250_pci: Refactor the loop in pci_ite887x_init() - serial: 8250_pci: Replace dev_*() by pci_*() macros - serial: 8250: Fold EndRun device support into OxSemi Tornado code - dm writecache: set a default MAX_WRITEBACK_JOBS - dm thin: fix use-after-free crash in dm_sm_register_threshold_callback - timekeeping: contribute wall clock to rng on time change - btrfs: reject log replay if there is unsupported RO compat flag - btrfs: reset block group chunk force if we have to wait - [amd64,arm64] ACPI: CPPC: Do not prevent CPPC from working in the future - [x86] KVM: VMX: Drop guest CPUID check for VMXE in vmx_set_cr4() - [x86] KVM: VMX: Drop explicit 'nested' check from vmx_set_cr4() - [x86] KVM: SVM: Drop VMXE check from svm_set_cr4() - [x86] KVM: x86: Move vendor CR4 validity check to dedicated kvm_x86_ops hook - [x86] KVM: nVMX: Inject #UD if VMXON is attempted with incompatible CR0/CR4 - [x86] KVM: x86/pmu: preserve IA32_PERF_CAPABILITIES across CPUID refresh - [x86] KVM: x86/pmu: Use binary search to check filtered events - [x86] KVM: x86/pmu: Use different raw event masks for AMD and Intel - [x86] KVM: x86/pmu: Introduce the ctrl_mask value for fixed counter - [x86] KVM: VMX: Mark all PERF_GLOBAL_(OVF)_CTRL bits reserved if there's no vPMU - [x86] KVM: x86/pmu: Ignore pmu->global_ctrl check if vPMU doesn't support global_ctrl - xen-blkback: fix persistent grants negotiation - xen-blkback: Apply 'feature_persistent' parameter when connect - xen-blkfront: Apply 'feature_persistent' parameter when connect - KEYS: asymmetric: enforce SM2 signature use pkey algo - tpm: eventlog: Fix section mismatch for DEBUG_SECTION_MISMATCH - tracing: Use a struct alignof to determine trace event field alignment - ext4: check if directory block is within i_size (CVE-2022-1184) - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - ext4: fix warning in ext4_iomap_begin as race between bmap and write - ext4: make sure ext4_append() always allocates new block - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: fix extent status tree race in writeback error recovery path - ext4: correct max_inline_xattr_value_size computing - ext4: correct the misjudgment in ext4_iget_extra_inode - dm raid: fix address sanitizer warning in raid_resume - dm raid: fix address sanitizer warning in raid_status - KVM: Add infrastructure and macro to mark VM as bugged - [x86] KVM: x86: Check lapic_in_kernel() before attempting to set a SynIC irq (CVE-2022-2153) - [x86] KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() (CVE-2022-2153) - mac80211: fix a memory leak where sta_info is not freed - tcp: fix over estimation in sk_forced_mem_schedule() - Revert "mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv" - [arm*] drm/vc4: change vc4_dma_range_matches from a global to static - Revert "net: usb: ax88179_178a needs FLAG_SEND_ZLP" - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - [x86] kvm: x86/pmu: Fix the compare function used by the pmu event filter - [arm64] tee: add overflow check in register_shm_helper() - net/9p: Initialize the iounit field during fid creation - net_sched: cls_route: disallow handle of 0 - sched/fair: Fix fault in reweight_entity - btrfs: only write the sectors in the vertical stripe which has data stripes - btrfs: raid56: don't trust any cached sector in __raid56_parity_recover() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.138 - ALSA: info: Fix llseek return value when using callback - ALSA: hda/realtek: Add quirk for Clevo NS50PU, NS70PU - [x86] mm: Use proper mask when setting PUD mapping - rds: add missing barrier to release_refill - ata: libata-eh: Add missing command name - [arm64] mmc: meson-gx: Fix an error handling path in meson_mmc_probe() - btrfs: fix lost error handling when looking up extended ref on log replay - tracing: Have filter accept "common_cpu" to be consistent - ALSA: usb-audio: More comprehensive mixer map for ASUS ROG Zenith II - can: ems_usb: fix clang's -Wunaligned-access warning - apparmor: fix quiet_denied for file rules - apparmor: fix absroot causing audited secids to begin with = - apparmor: Fix failed mount permission check error message - apparmor: fix aa_label_asxprint return check - apparmor: fix setting unconfined mode on a loaded profile - apparmor: fix overlapping attachment computation - apparmor: fix reference count leak in aa_pivotroot() - apparmor: Fix memleak in aa_simple_write_to_buffer() - Documentation: ACPI: EINJ: Fix obsolete example - NFSv4.1: Don't decrease the value of seq_nr_highest_sent - NFSv4.1: Handle NFS4ERR_DELAY replies to OP_SEQUENCE correctly - NFSv4: Fix races in the legacy idmapper upcall - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - NFSv4/pnfs: Fix a use-after-free bug in open - bpf: Acquire map uref in .init_seq_private for array map iterator - bpf: Acquire map uref in .init_seq_private for hash map iterator - bpf: Acquire map uref in .init_seq_private for sock local storage map iterator - bpf: Acquire map uref in .init_seq_private for sock{map,hash} iterator - bpf: Check the validity of max_rdwr_access for sock local storage map iterator - can: mcp251x: Fix race condition on receive interrupt - [amd64,arm64] net: atlantic: fix aq_vec index out of range error - sunrpc: fix expiry of auth creds - SUNRPC: Reinitialise the backchannel request buffers before reuse - virtio_net: fix memory leak inside XPD_TX with mergeable - devlink: Fix use-after-free after a failed reload - [arm64] pinctrl: qcom: msm8916: Allow CAMSS GP clocks to be muxed - [arm64,armhf] pinctrl: sunxi: Add I/O bias setting for H6 R-PIO - ACPI: property: Return type of acpi_add_nondev_subnodes() should be bool - geneve: do not use RT_TOS for IPv6 flowlabel - ipv6: do not use RT_TOS for IPv6 flowlabel - [x86] plip: avoid rcu debug splat - vsock: Fix memory leak in vsock_connect() - vsock: Set socket state back to SS_UNCONNECTED in vsock_connect_timeout() - dt-bindings: arm: qcom: fix MSM8916 MTP compatibles - dt-bindings: clock: qcom,gcc-msm8996: add more GCC clock sources - ceph: use correct index when encoding client supported features - ceph: don't leak snap_rwsem in handle_cap_grant - nfp: ethtool: fix the display error of `ethtool -m DEVNAME` - xen/xenbus: fix return type in xenbus_file_read() - atm: idt77252: fix use-after-free bugs caused by tst_timer - geneve: fix TOS inheriting for ipv4 - [arm64] dpaa2-eth: trace the allocated address instead of page struct - iavf: Fix adminq error handling - netfilter: nf_tables: really skip inactive sets when allocating name - netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag - netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified - [powerpc*] pci: Fix get_phb_number() locking - [arm64,armhf] spi: meson-spicc: add local pow2 clock ops to preserve rate between messages - [arm64,armhf] net: dsa: mv88e6060: prevent crash on an unused port - [arm64] net: dsa: felix: fix ethtool 256-511 and 512-1023 TX packet counters - net: genl: fix error path memory leak in policy dumping - ice: Ignore EEXIST when setting promisc mode - [arm64,armhf] i2c: imx: Make sure to unregister adapter on remove() - regulator: pca9450: Remove restrictions for regulator-name - i40e: Fix to stop tx_timeout recovery if GLOBR fails - [arm64,armhf] fec: Fix timer capture timing in `fec_ptp_enable_pps()` - [x86] stmmac: intel: Add a missing clk_disable_unprepare() call in intel_eth_pci_remove() - igb: Add lock to avoid data race - kbuild: fix the modules order between drivers and libs - locking/atomic: Make test_and_*_bit() ordered on failure - [x86] ASoC: SOF: intel: move sof_intel_dsp_desc() forward - [arm64] drm/meson: Fix refcount bugs in meson_vpu_has_available_connectors() - audit: log nftables configuration change events once per table - netfilter: nftables: add helper function to set the base sequence number - netfilter: add helper function to set up the nfnetlink header and use it - [armhf] drm/sun4i: dsi: Prevent underflow when computing packet sizes - PCI: Add ACS quirk for Broadcom BCM5750x NICs - [arm64,armhf] platform/chrome: cros_ec_proto: don't show MKBP version if unsupported - usb: gadget: uvc: call uvc uvcg_warn on completed status instead of uvcg_info - [arm64,armhf] irqchip/tegra: Fix overflow implicit truncation warnings - [arm64] drm/meson: Fix overflow implicit truncation warnings - [armhf] clk: ti: Stop using legacy clkctrl names for omap4 and 5 - [arm*] usb: dwc2: gadget: remove D+ pull-up while no vbus with usb-role-switch - [x86] vboxguest: Do not use devm for irq - uacce: Handle parent device removal or parent driver module rmmod - zram: do not lookup algorithm in backends table - [arm64] clk: qcom: clk-alpha-pll: fix clk_trion_pll_configure description - scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input - gadgetfs: ep_io - wait until IRQ finishes - [x86] pinctrl: intel: Check against matching data instead of ACPI companion - [powerpc*] cxl: Fix a memory leak in an error handling path - [arm64] PCI/ACPI: Guard ARM64-specific mcfg_quirks - RDMA/rxe: Limit the number of calls to each tasklet - md: Notify sysfs sync_completed in md_reap_sync_thread() - nvmet-tcp: fix lockdep complaint on nvmet_tcp_wq flush during queue teardown - drivers:md:fix a potential use-after-free bug - ext4: avoid remove directory when directory is corrupted - ext4: avoid resizing to a partial cluster size - lib/list_debug.c: Detect uninitialized lists - vfio: Clear the caps->buf to NULL after free - [mips64el,mipsel] cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start - modules: Ensure natural alignment for .altinstructions and __bug_table sections - watchdog: export lockup_detector_reconfigure - ALSA: core: Add async signal helpers - ALSA: timer: Use deferred fasync helper - ALSA: control: Use deferred fasync helper - f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() - f2fs: fix to do sanity check on segment type in build_sit_entries() - smb3: check xattr value length earlier - [powerpc*] 64: Init jump labels before parse_early_param() - netfilter: nftables: fix a warning message in nf_tables_commit_audit_collect() - netfilter: nf_tables: fix audit memory leak in nf_tables_commit - tracing/probes: Have kprobes and uprobes use $COMM too - can: j1939: j1939_sk_queue_activate_next_locked(): replace WARN_ON_ONCE with netdev_warn_once() - can: j1939: j1939_session_destroy(): fix memory leak of skbs - PCI/ERR: Retain status from error notification - qrtr: Convert qrtr_ports from IDR to XArray - bpf: Fix KASAN use-after-free Read in compute_effective_progs - [arm64] tee: fix memory leak in tee_shm_register() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.139 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.140 - audit: fix potential double free on error path from fsnotify_add_inode_mark - pinctrl: amd: Don't save/restore interrupt status and wake status bits - xfs: prevent a WARN_ONCE() in xfs_ioc_attr_list() - xfs: reject crazy array sizes being fed to XFS_IOC_GETBMAP* - fs: remove __sync_filesystem - vfs: make sync_filesystem return errors from ->sync_fs - xfs: return errors in xfs_fs_sync_fs - xfs: only bother with sync_filesystem during readonly remount - kernel/sched: Remove dl_boosted flag comment - xfrm: fix refcount leak in __xfrm_policy_check() - xfrm: clone missing x->lastused in xfrm_do_migrate - af_key: Do not call xfrm_probe_algs in parallel (CVE-2022-3028) - xfrm: policy: fix metadata dst->dev xmit null pointer dereference - NFS: Don't allocate nfs_fattr on the stack in __nfs42_ssc_open() - NFSv4.2 fix problems with __nfs42_ssc_open - SUNRPC: RPC level errors should set task->tk_rpc_status - mm/huge_memory.c: use helper function migration_entry_to_page() - mm/smaps: don't access young/dirty bit if pte unpresent - rose: check NULL rose_loopback_neigh->loopback - ice: xsk: Force rings to be sized to power of 2 - ice: xsk: prohibit usage of non-balanced queue id - net/mlx5e: Properly disable vlan strip on non-UL reps - bonding: 802.3ad: fix no transmission of LACPDUs - net: ipvtap - add __init/__exit annotations to module init/exit funcs - netfilter: ebtables: reject blobs that don't provide all entry points - bnxt_en: fix NQ resource accounting during vf creation on 57500 chips - netfilter: nft_payload: report ERANGE for too long offset and length - netfilter: nft_payload: do not truncate csum_offset and csum_type - netfilter: nf_tables: do not leave chain stats enabled on error - netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families - netfilter: nft_tunnel: restrict it to netdev family - netfilter: nftables: remove redundant assignment of variable err - netfilter: nf_tables: consolidate rule verdict trace call - netfilter: nft_cmp: optimize comparison for 16-bytes - netfilter: bitwise: improve error goto labels - netfilter: nf_tables: upfront validation of data via nft_data_init() - netfilter: nf_tables: disallow jump to implicit chain from set element - netfilter: nf_tables: disallow binding to already bound chain (CVE-2022-39190) - tcp: tweak len/truesize ratio for coalesce candidates - net: Fix data-races around sysctl_[rw]mem(_offset)?. - net: Fix data-races around sysctl_[rw]mem_(max|default). - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: Fix data-races around netdev_max_backlog. - net: Fix data-races around netdev_tstamp_prequeue. - ratelimit: Fix data-races in ___ratelimit(). - bpf: Folding omem_charge() into sk_storage_charge() - net: Fix data-races around sysctl_optmem_max. - net: Fix a data-race around sysctl_tstamp_allow_data. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around netdev_budget_usecs. - net: Fix data-races around sysctl_fb_tunnels_only_for_init_net. - net: Fix data-races around sysctl_devconf_inherit_init_net. - net: Fix a data-race around sysctl_somaxconn. - ixgbe: stop resetting SYSTIME in ixgbe_ptp_start_cyclecounter - rxrpc: Fix locking in rxrpc's sendmsg - btrfs: fix silent failure when deleting root reference - btrfs: replace: drop assert for suspended replace - btrfs: add info when mount fails due to stale replace target - btrfs: check if root is readonly while setting security xattr - [x86] perf/x86/lbr: Enable the branch type for the Arch LBR by default - [amd64] x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - [x86] bugs: Add "unknown" reporting for MMIO Stale Data - loop: Check for overflow while configuring loop - asm-generic: sections: refactor memory_intersects - [s390x] fix double free of GS and RI CBs on fork() failure - [x86] ACPI: processor: Remove freq Qos request for all CPUs - xen/privcmd: fix error exit of privcmd_ioctl_dm_op() - mm/hugetlb: fix hugetlb not supporting softdirty tracking - Revert "md-raid: destroy the bitmap after destroying the thread" - md: call __md_stop_writes in md_stop - [arm64] Fix match_list for erratum 1286807 on Arm Cortex-A76 - Documentation/ABI: Mention retbleed vulnerability info file for sysfs - blk-mq: fix io hung due to missing commit_rqs - [x86] perf/x86/intel/uncore: Fix broken read_counter() for SNB IMC PMU - [x86] scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq - bpf: Don't use tnum_range on array range checking for poke descriptors (CVE-2022-2905) . [ Salvatore Bonaccorso ] * Bump ABI to 18 * certs: Rotate to use the "Debian Secure Boot Signer 2022 - linux" certificate (Closes: #1018752) * [x86] nospec: Unwreck the RSB stuffing * [x86] nospec: Fix i386 RSB stuffing (Closes: #1017425) * mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() (CVE-2022-39188) * Revert "PCI/portdrv: Don't disable AER reporting in get_port_device_capability()" * bpf: Don't redirect packets with invalid pkt_len * mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse * net/af_packet: check len when min_header_len equals to 0 linux (5.10.136-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.128 - MAINTAINERS: add Amir as xfs maintainer for 5.10.y - drm: remove drm_fb_helper_modinit - tick/nohz: unexport __init-annotated tick_nohz_full_setup() - bcache: memset on stack variables in bch_btree_check() and bch_sectors_dirty_init() - xfs: use kmem_cache_free() for kmem_cache objects - xfs: punch out data fork delalloc blocks on COW writeback failure - xfs: Fix the free logic of state in xfs_attr_node_hasname - xfs: remove all COW fork extents when remounting readonly - xfs: check sb_meta_uuid for dabuf buffer recovery - [powerpc*] ftrace: Remove ftrace init tramp once kernel init is complete - [arm64] net: mscc: ocelot: allow unregistered IP multicast flooding https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.129 - drm/amdgpu: To flush tlb for MMHUB of RAVEN series - ipv6: take care of disable_policy when restoring routes - nvme-pci: add NVME_QUIRK_BOGUS_NID for ADATA XPG SX6000LNP (AKA SPECTRIX S40G) - nvdimm: Fix badblocks clear off-by-one error - [powerpc*] bpf: Fix use of user_pt_regs in uapi - dm raid: fix accesses beyond end of raid member array - [s390x] archrandom: simplify back to earlier design and initialize earlier - SUNRPC: Fix READ_PLUS crasher (Closes: #1014793) - net: usb: ax88179_178a: Fix packet receiving - virtio-net: fix race between ndo_open() and virtio_device_ready() - [armhf] net: dsa: bcm_sf2: force pause link settings - net: tun: unlink NAPI from device on destruction - net: tun: stop NAPI when detaching queues - net: dp83822: disable false carrier interrupt - net: dp83822: disable rx error interrupt - RDMA/qedr: Fix reporting QP timeout attribute - RDMA/cm: Fix memory leak in ib_cm_insert_listen - linux/dim: Fix divide by 0 in RDMA DIM - usbnet: fix memory allocation in helpers - net: ipv6: unexport __init-annotated seg6_hmac_net_init() - NFSD: restore EINVAL error translation in nfsd_commit() - netfilter: nft_dynset: restore set element counter when failing to update - net/sched: act_api: Notify user space if any actions were flushed before error - net: bonding: fix possible NULL deref in rlb code - net: bonding: fix use-after-free after 802.3ad slave unbind - tipc: move bc link creation back to tipc_node_create - epic100: fix use after free on rmmod - io_uring: ensure that send/sendmsg and recv/recvmsg check sqe->ioprio - tunnels: do not assume mac header is set in skb_tunnel_check_pmtu() - net: tun: avoid disabling NAPI twice - xfs: use current->journal_info for detecting transaction recursion - xfs: rename variable mp to parsing_mp - xfs: Skip repetitive warnings about mount options - xfs: ensure xfs_errortag_random_default matches XFS_ERRTAG_MAX - xfs: fix xfs_trans slab cache name - xfs: update superblock counters correctly for !lazysbcount - xfs: fix xfs_reflink_unshare usage of filemap_write_and_wait_range - tcp: add a missing nf_reset_ct() in 3WHS handling - xen/gntdev: Avoid blocking in unmap_grant_pages() - [arm64] drivers: cpufreq: Add missing of_node_put() in qoriq-cpufreq.c - sit: use min - ipv6/sit: fix ipip6_tunnel_get_prl return value - hwmon: (ibmaem) don't call platform_device_del() if platform_device_add() fails - net: usb: qmi_wwan: add Telit 0x1060 composition - net: usb: qmi_wwan: add Telit 0x1070 composition https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.130 - mm/slub: add missing TID updates on slab deactivation - ALSA: hda/realtek: Add quirk for Clevo L140PU - can: bcm: use call_rcu() instead of costly synchronize_rcu() - can: gs_usb: gs_usb_open/close(): fix memory leak - bpf: Fix incorrect verifier simulation around jmp32's jeq/jne - bpf: Fix insufficient bounds propagation from adjust_scalar_min_max_vals - usbnet: fix memory leak in error case - netfilter: nft_set_pipapo: release elements in clone from abort path - [amd64] iommu/vt-d: Fix PCI bus rescan device hot add - PM: runtime: Redefine pm_runtime_release_supplier() - memregion: Fix memregion_free() fallback definition - video: of_display_timing.h: include errno.h - [powerpc*] powernv: delay rng platform device creation until later in boot - can: kvaser_usb: replace run-time checks with struct kvaser_usb_driver_info - can: kvaser_usb: kvaser_usb_leaf: fix CAN clock frequency regression - can: kvaser_usb: kvaser_usb_leaf: fix bittiming limits - xfs: remove incorrect ASSERT in xfs_rename - [armhf] meson: Fix refcount leak in meson_smp_prepare_cpus - [armhf] pinctrl: sunxi: a83t: Fix NAND function name for some pins - [arm64] dts: imx8mp-evk: correct mmc pad settings - [arm64] dts: imx8mp-evk: correct the uart2 pinctl value - [arm64] dts: imx8mp-evk: correct gpio-led pad settings - [arm64] dts: imx8mp-evk: correct I2C3 pad settings - [arm64,armhf] pinctrl: sunxi: sunxi_pconf_set: use correct offset - [arm64] dts: qcom: msm8992-*: Fix vdd_lvs1_2-supply typo - xsk: Clear page contiguity bit when unmapping pool - i40e: Fix dropped jumbo frames statistics - r8169: fix accessing unset transport header - [armhf] dmaengine: imx-sdma: Allow imx8m for imx7 FW revs - misc: rtsx_usb: fix use of dma mapped buffer for usb bulk transfer - misc: rtsx_usb: use separate command and response buffers - misc: rtsx_usb: set return value in rsp_buf alloc err path - dt-bindings: dma: allwinner,sun50i-a64-dma: Fix min/max typo - ida: don't use BUG_ON() for debugging - [arm64,armhf] dmaengine: pl330: Fix lockdep warning about non-static key - [armhf] dmaengine: ti: Fix refcount leak in ti_dra7_xbar_route_allocate - [armhf] dmaengine: ti: Add missing put_device in ti_dra7_xbar_route_allocate https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.131 - [armhf] Revert "mtd: rawnand: gpmi: Fix setting busy timeout setting" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.132 - [x86] ALSA: hda - Add fixup for Dell Latitidue E5430 - [x86] ALSA: hda/conexant: Apply quirk for another HP ProDesk 600 G3 model - [x86] ALSA: hda/realtek: Fix headset mic for Acer SF313-51 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc221 - [x86] ALSA: hda/realtek - Enable the headset-mic on a Xiaomi's laptop - xen/netback: avoid entering xenvif_rx_next_skb() with an empty rx queue - fix race between exit_itimers() and /proc/pid/timers - mm: split huge PUD on wp_huge_pud fallback - tracing/histograms: Fix memory leak problem - net: sock: tracing: Fix sock_exceed_buf_limit not to dereference stale pointer - ip: fix dflt addr selection for connected nexthop - [armhf] 9213/1: Print message about disabled Spectre workarounds only once - [armel,armhf] 9214/1: alignment: advance IT state after emulating Thumb instruction - wifi: mac80211: fix queue selection for mesh/OCB interfaces - cgroup: Use separate src/dst nodes when preloading css_sets for migration - btrfs: return -EAGAIN for NOWAIT dio reads/writes on compressed and inline extents - [arm64,armhf] drm/panfrost: Put mapping instead of shmem obj on panfrost_mmu_map_fault_addr() error - [arm64,armhf] drm/panfrost: Fix shrinker list corruption by madvise IOCTL - fs/remap: constrain dedupe of EOF blocks - nilfs2: fix incorrect masking of permission flags for symlinks - sh: convert nommu io{re,un}map() to static inline functions - Revert "evm: Fix memleak in init_desc" - ext4: fix race condition between ext4_write and ext4_convert_inline_data - [armhf] dts: imx6qdl-ts7970: Fix ngpio typo and count - [armhf] 9209/1: Spectre-BHB: avoid pr_info() every time a CPU comes out of idle - [armel,armhf] 9210/1: Mark the FDT_FIXED sections as shareable - net/mlx5e: Fix capability check for updating vnic env counters - [x86] drm/i915: fix a possible refcount leak in intel_dp_add_mst_connector() - ima: Fix a potential integer overflow in ima_appraise_measurement - [arm64,armhf] ASoC: sgtl5000: Fix noise on shutdown/remove - [x86] ASoC: Intel: Skylake: Correct the ssp rate discovery in skl_get_ssp_clks() - [x86] ASoC: Intel: Skylake: Correct the handling of fmt_config flexible array - sysctl: Fix data races in proc_dointvec(). - sysctl: Fix data races in proc_douintvec(). - sysctl: Fix data races in proc_dointvec_minmax(). - sysctl: Fix data races in proc_douintvec_minmax(). - sysctl: Fix data races in proc_doulongvec_minmax(). - sysctl: Fix data races in proc_dointvec_jiffies(). - tcp: Fix a data-race around sysctl_tcp_max_orphans. - inetpeer: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - cipso: Fix data-races around sysctl. - icmp: Fix data-races around sysctl. - ipv4: Fix a data-race around sysctl_fib_sync_mem. - [armhf] dts: sunxi: Fix SPI NOR campatible on Orange Pi Zero - [x86] drm/i915/gt: Serialize TLB invalidates with GT resets - sysctl: Fix data-races in proc_dointvec_ms_jiffies(). - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix a data-race around sysctl_icmp_ratemask. - raw: Fix a data-race around sysctl_raw_l3mdev_accept. - ipv4: Fix data-races around sysctl_ip_dynaddr. - nexthop: Fix data-races around nexthop_compat_mode. - [armhf] net: ftgmac100: Hold reference returned by of_get_child_by_name() - ima: force signature verification when CONFIG_KEXEC_SIG is configured - ima: Fix potential memory leak in ima_init_crypto() - sfc: fix use after free when disabling sriov - seg6: fix skb checksum evaluation in SRH encapsulation/insertion - seg6: fix skb checksum in SRv6 End.B6 and End.B6.Encaps behaviors - seg6: bpf: fix skb checksum in bpf_push_seg6_encap() - sfc: fix kernel panic when creating VF - net: atlantic: remove deep parameter on suspend/resume functions - net: atlantic: remove aq_nic_deinit() when resume - [x86] KVM: x86: Fully initialize 'struct kvm_lapic_irq' in kvm_pv_kick_cpu_op() - net/tls: Check for errors in tls_device_init - mm: sysctl: fix missing numa_stat when !CONFIG_HUGETLB_PAGE - virtio_mmio: Add missing PM calls to freeze/restore - virtio_mmio: Restore guest page size on resume - netfilter: br_netfilter: do not skip all hooks with 0 priority - [arm64] scsi: hisi_sas: Limit max hw sectors for v3 HW - [powerpc*] cpufreq: pmac32-cpufreq: Fix refcount leak bug - [x86] platform/x86: hp-wmi: Ignore Sanitization Mode event - net: tipc: fix possible refcount leak in tipc_sk_create() - nvme-tcp: always fail a request when sending it failed - nvme: fix regression when disconnect a recovering ctrl - net: sfp: fix memory leak in sfp_probe() - ASoC: ops: Fix off by one in range control validation - [armhf] pinctrl: aspeed: Fix potential NULL dereference in aspeed_pinmux_set_mux() - [x86] ASoC: SOF: Intel: hda-loader: Clarify the cl_dsp_init() flow - ASoC: dapm: Initialise kcontrol data for mux/demux controls - [amd64] Clear .brk area at early boot - [armhf] dts: stm32: use the correct clock source for CEC on stm32mp151 - Revert "can: xilinx_can: Limit CANFD brp to 2" - nvme-pci: phison e16 has bogus namespace ids - signal handling: don't use BUG_ON() for debugging - USB: serial: ftdi_sio: add Belimo device ids - usb: typec: add missing uevent when partner support PD - [arm64,armhf] usb: dwc3: gadget: Fix event pending check - [armhf] tty: serial: samsung_tty: set dma burst_size to 1 - vt: fix memory overlapping when deleting chars in the buffer - serial: 8250: fix return error code in serial8250_request_std_resource() - [armhf] serial: stm32: Clear prev values before setting RTS delays - [arm*] serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: Fix PM usage_count for console handover - [x86] pat: Fix x86_has_pat_wp() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.133 - [amd64] Preparation for mitigating RETbleed: + KVM/VMX: Use TEST %REG,%REG instead of CMP $0,%REG in vmenter.S + KVM/nVMX: Use __vmx_vcpu_run in nested_vmx_check_vmentry_hw + objtool: Refactor ORC section generation + objtool: Add 'alt_group' struct + objtool: Support stack layout changes in alternatives + objtool: Support retpoline jump detection for vmlinux.o + objtool: Assume only ELF functions do sibling calls + objtool: Combine UNWIND_HINT_RET_OFFSET and UNWIND_HINT_FUNC + x86/xen: Support objtool validation in xen-asm.S + x86/xen: Support objtool vmlinux.o validation in xen-head.S + x86/alternative: Merge include files + x86/alternative: Support not-feature + x86/alternative: Support ALTERNATIVE_TERNARY + x86/alternative: Use ALTERNATIVE_TERNARY() in _static_cpu_has() + x86/insn: Rename insn_decode() to insn_decode_from_regs() + x86/insn: Add a __ignore_sync_check__ marker + x86/insn: Add an insn_decode() API + x86/insn-eval: Handle return values from the decoder + x86/alternative: Use insn_decode() + x86: Add insn_decode_kernel() + x86/alternatives: Optimize optimize_nops() + x86/retpoline: Simplify retpolines + objtool: Correctly handle retpoline thunk calls + objtool: Handle per arch retpoline naming + objtool: Rework the elf_rebuild_reloc_section() logic + objtool: Add elf_create_reloc() helper + objtool: Create reloc sections implicitly + objtool: Extract elf_strtab_concat() + objtool: Extract elf_symbol_add() + objtool: Add elf_create_undef_symbol() + objtool: Keep track of retpoline call sites + objtool: Cache instruction relocs + objtool: Skip magical retpoline .altinstr_replacement + objtool/x86: Rewrite retpoline thunk calls + objtool: Support asm jump tables + x86/alternative: Optimize single-byte NOPs at an arbitrary position + objtool: Fix .symtab_shndx handling for elf_create_undef_symbol() + objtool: Only rewrite unconditional retpoline thunk calls + objtool/x86: Ignore __x86_indirect_alt_* symbols + objtool: Don't make .altinstructions writable + objtool: Teach get_alt_entry() about more relocation types + objtool: print out the symbol type when complaining about it + objtool: Remove reloc symbol type checks in get_alt_entry() + objtool: Make .altinstructions section entry size consistent + objtool: Introduce CFI hash + objtool: Handle __sanitize_cov*() tail calls + objtool: Classify symbols + objtool: Explicitly avoid self modifying code in .altinstr_replacement + objtool,x86: Replace alternatives with .retpoline_sites + x86/retpoline: Remove unused replacement symbols + x86/asm: Fix register order + x86/asm: Fixup odd GEN-for-each-reg.h usage + x86/retpoline: Move the retpoline thunk declarations to nospec-branch.h + x86/retpoline: Create a retpoline thunk array + x86/alternative: Implement .retpoline_sites support + x86/alternative: Handle Jcc __x86_indirect_thunk_\reg + x86/alternative: Try inline spectre_v2=retpoline,amd + x86/alternative: Add debug prints to apply_retpolines() + bpf,x86: Simplify computing label offsets + bpf,x86: Respect X86_FEATURE_RETPOLINE* + x86/lib/atomic64_386_32: Rename things - [amd64] Mitigate straight-line speculation: + x86: Prepare asm files for straight-line-speculation + x86: Prepare inline-asm for straight-line-speculation + x86/alternative: Relax text_poke_bp() constraint + objtool: Add straight-line-speculation validation + x86: Add straight-line-speculation mitigation + tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' + kvm/emulate: Fix SETcc emulation function offsets with SLS + objtool: Default ignore INT3 for unreachable + crypto: x86/poly1305 - Fixup SLS + objtool: Fix SLS validation for kcov tail-call replacement - objtool: Fix code relocs vs weak symbols - objtool: Fix type of reloc::addend - objtool: Fix symbol creation - x86/entry: Remove skip_r11rcx - objtool: Fix objtool regression on x32 systems - x86/realmode: build with -D__DISABLE_EXPORTS - [amd64] Add mitigations for RETbleed on AMD/Hygon (CVE-2022-29900) and Intel (CVE-2022-29901) processors: + x86/kvm/vmx: Make noinstr clean + x86/cpufeatures: Move RETPOLINE flags to word 11 + x86/retpoline: Cleanup some #ifdefery + x86/retpoline: Swizzle retpoline thunk + Makefile: Set retpoline cflags based on CONFIG_CC_IS_{CLANG,GCC} + x86/retpoline: Use -mfunction-return + x86: Undo return-thunk damage + x86,objtool: Create .return_sites + objtool: skip non-text sections when adding return-thunk sites + x86,static_call: Use alternative RET encoding + x86/ftrace: Use alternative RET encoding + x86/bpf: Use alternative RET encoding + x86/kvm: Fix SETcc emulation for return thunks + x86/vsyscall_emu/64: Don't use RET in vsyscall emulation + x86/sev: Avoid using __x86_return_thunk + x86: Use return-thunk in asm code + objtool: Treat .text.__x86.* as noinstr + x86: Add magic AMD return-thunk + x86/bugs: Report AMD retbleed vulnerability + x86/bugs: Add AMD retbleed= boot parameter + x86/bugs: Enable STIBP for JMP2RET + x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value + x86/entry: Add kernel IBRS implementation + x86/bugs: Optimize SPEC_CTRL MSR writes + x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS + x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() + x86/bugs: Report Intel retbleed vulnerability + intel_idle: Disable IBRS during long idle + objtool: Update Retpoline validation + x86/xen: Rename SYS* entry points + x86/bugs: Add retbleed=ibpb + x86/bugs: Do IBPB fallback check only once + objtool: Add entry UNRET validation + x86/cpu/amd: Add Spectral Chicken + x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n + x86/speculation: Fix firmware entry SPEC_CTRL handling + x86/speculation: Fix SPEC_CTRL write on SMT state change + x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit + x86/speculation: Remove x86_spec_ctrl_mask + objtool: Re-add UNWIND_HINT_{SAVE_RESTORE} + KVM: VMX: Flatten __vmx_vcpu_run() + KVM: VMX: Convert launched argument to flags + KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS + KVM: VMX: Fix IBRS handling after vmexit + x86/speculation: Fill RSB on vmexit for IBRS + x86/common: Stamp out the stepping madness + x86/cpu/amd: Enumerate BTC_NO + x86/retbleed: Add fine grained Kconfig knobs + x86/bugs: Add Cannon lake to RETBleed affected CPU list + x86/bugs: Do not enable IBPB-on-entry when IBPB is not supported + x86/kexec: Disable RET on kexec + x86/speculation: Disable RRSBA behavior - x86/static_call: Serialize __static_call_fixup() properly - tools/insn: Restore the relative include paths for cross building - x86, kvm: use proper ASM macros for kvm_vcpu_is_preempted - x86/xen: Fix initialisation in hypercall_page after rethunk - x86/ftrace: Add UNWIND_HINT_FUNC annotation for ftrace_stub - x86/asm/32: Fix ANNOTATE_UNRET_SAFE use on 32-bit - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - efi/x86: use naked RET on mixed mode call wrapper - x86/kvm: fix FASTOP_SIZE when return thunks are enabled - KVM: emulate: do not adjust size of fastop and setcc subroutines - tools arch x86: Sync the msr-index.h copy with the kernel sources - tools headers cpufeatures: Sync with the kernel sources - x86/bugs: Remove apostrophe typo - um: Add missing apply_returns() - x86: Use -mindirect-branch-cs-prefix for RETPOLINE builds - kvm: fix objtool relocation warning - objtool: Fix elf_create_undef_symbol() endianness - tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' - again - tools headers: Remove broken definition of __LITTLE_ENDIAN https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.134 - [armhf] pinctrl: stm32: fix optional IRQ support to gpios - lockdown: Fix kexec lockdown bypass with ima policy (CVE-2022-21505) - io_uring: Use original task for req identity in io_identity_cow() - xen/gntdev: Ignore failure to unmap INVALID_GRANT_HANDLE - docs: net: explain struct net_device lifetime - net: make free_netdev() more lenient with unregistering devices - net: make sure devices go through netdev_wait_all_refs - net: move net_set_todo inside rollback_registered() - net: inline rollback_registered() - net: move rollback_registered_many() - net: inline rollback_registered_many() - [amd64] PCI: hv: Fix multi-MSI to allow more than one MSI vector - [amd64] PCI: hv: Fix hv_arch_irq_unmask() for multi-MSI - [amd64] PCI: hv: Reuse existing IRTE allocation in compose_msi_msg() - [amd64] PCI: hv: Fix interrupt mapping for multi-MSI - [arm64] serial: mvebu-uart: correctly report configured baudrate value - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() (CVE-2022-36879) - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close() - drm/amdgpu/display: add quirk handling for stutter mode - igc: Reinstate IGC_REMOVED logic and implement it properly - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix a data-race around sysctl_ip_autobind_reuse. - ip: Fix a data-race around sysctl_fwmark_reflect. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp: Fix data-races around sysctl_tcp_base_mss. - tcp: Fix data-races around sysctl_tcp_min_snd_mss. - tcp: Fix a data-race around sysctl_tcp_mtu_probe_floor. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - net: stmmac: fix unbalanced ptp clock issue in suspend/resume flow - net: stmmac: fix dma queue left shift overflow issue - igmp: Fix data-races around sysctl_igmp_llm_reports. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_max_msf. - tcp: Fix data-races around keepalive sysctl knobs. - tcp: Fix data-races around sysctl_tcp_syncookies. - tcp: Fix data-races around sysctl_tcp_reordering. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix data-races around sysctl_max_syn_backlog. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix data-races around sysctl_tcp_fastopen_blackhole_timeout. - iavf: Fix handling of dummy receive descriptors - i40e: Fix erroneous adapter reinitialization during recovery process - ixgbe: Add locking to prevent panic when setting sriov_numvfs to zero - [arm64,armhf] gpio: pca953x: only use single read/write for No AI mode - [arm64,armhf] gpio: pca953x: use the correct range when do regmap sync - [arm64,armhf] gpio: pca953x: use the correct register address when regcache sync during init - be2net: Fix buffer overflow in be_get_module_eeprom - ipv4: Fix a data-race around sysctl_fib_multipath_use_neigh. - ip: Fix data-races around sysctl_ip_prot_sock. - udp: Fix a data-race around sysctl_udp_l3mdev_accept. - tcp: Fix data-races around sysctl knobs related to SYN option. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix data-races around sysctl_tcp_max_reordering. - [arm*] spi: bcm2835: bcm2835_spi_handle_err(): fix NULL pointer deref for non DMA transfers - KVM: Don't null dereference ops->destroy - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - bpf: Make sure mac_header was set before using it - sched/deadline: Fix BUG_ON condition for deboosted tasks - [x86] bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - dlm: fix pending remove if msg allocation fails - bitfield.h: Fix "type of reg too small for mask" test - ALSA: memalloc: Align buffer allocations in page size - Bluetooth: Add bt_skb_sendmsg helper - Bluetooth: Add bt_skb_sendmmsg helper - Bluetooth: SCO: Replace use of memcpy_from_msg with bt_skb_sendmsg - Bluetooth: RFCOMM: Replace use of memcpy_from_msg with bt_skb_sendmmsg - Bluetooth: Fix passing NULL to PTR_ERR - Bluetooth: SCO: Fix sco_send_frame returning skb->len - Bluetooth: Fix bt_skb_sendmmsg not allocating partial chunks - [x86] amd: Use IBPB for firmware calls - [x86] alternative: Report missing return thunk details - watchqueue: make sure to serialize 'wqueue->defunct' properly - tty: drivers/tty/, stop using tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drop tty_schedule_flip() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - net: usb: ax88179_178a needs FLAG_SEND_ZLP - watch-queue: remove spurious double semicolon https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.135 - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - Revert "ocfs2: mount shared volume without ha stack" - [s390x] archrandom: prevent CPACF trng invocations in interrupt context - watch_queue: Fix missing rcu annotation - watch_queue: Fix missing locking in add_watch_to_object() - tcp: Fix data-races around sysctl_tcp_dsack. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix data-races around sysctl_tcp_no_ssthresh_metrics_save. - ice: check (DD | EOF) bits on Rx descriptor rather than (EOP | RS) - ice: do not setup vlan for loopback VSI - Revert "tcp: change pingpong threshold to 3" - tcp: Fix data-races around sysctl_tcp_moderate_rcvbuf. - tcp: Fix a data-race around sysctl_tcp_limit_output_bytes. - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - net: ping6: Fix memleak in ipv6_renew_options(). - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - igmp: Fix data-races around sysctl_igmp_qrv. - net: sungem_phy: Add of_node_put() for reference returned by of_get_parent() - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - Documentation: fix sctp_wmem in ip-sysctl.rst - macsec: fix NULL deref in macsec_add_rxsa - macsec: fix error message in macsec_add_rxsa and _txsa - macsec: limit replay window size with XPN - macsec: always read MACSEC_SA_ATTR_PN as a u64 - net: macsec: fix potential resource leak in macsec_add_rxsa() and macsec_add_txsa() - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_slack_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix data-races around sysctl_tcp_reflect_tos. - i40e: Fix interface init with MSI interrupts (no MSI-X) - sctp: fix sleep in atomic context bug in timer handlers - netfilter: nf_queue: do not allow packet truncation below transport header offset (CVE-2022-36946) - virtio-net: fix the race between refill work and close - sfc: disable softirqs for ptp TX - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - page_alloc: fix invalid watermark check on a negative value - mt7601u: add USB device ID for some versions of XiaoDu WiFi Dongle. - [arm*] 9216/1: Fix MAX_DMA_ADDRESS overflow - docs/kernel-parameters: Update descriptions for "mitigations=" param with retbleed - xfs: refactor xfs_file_fsync - xfs: xfs_log_force_lsn isn't passed a LSN - xfs: prevent UAF in xfs_log_item_in_current_chkpt - xfs: fix log intent recovery ENOSPC shutdowns when inactivating inodes - xfs: force the log offline when log intent item recovery fails - xfs: hold buffer across unpin and potential shutdown processing - xfs: remove dead stale buf unpin handling code - xfs: logging the on disk inode LSN can make it go backwards - xfs: Enforce attr3 buffer recovery order - [x86] bugs: Do not enable IBPB at firmware entry when IBPB is not available - bpf: Consolidate shared test timing code - bpf: Add PROG_TEST_RUN support for sk_lookup programs https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.136 - [x86] speculation: Make all RETbleed mitigations 64-bit only - ath9k_htc: fix NULL pointer dereference at ath9k_htc_rxep() - ath9k_htc: fix NULL pointer dereference at ath9k_htc_tx_get_packet() - tun: avoid double free in tun_free_netdev - [x86] ACPI: video: Force backlight native for some TongFang devices - [x86] ACPI: video: Shortening quirk list by identifying Clevo by board_name only - ACPI: APEI: Better fix to avoid spamming the console with old error logs - [arm64] crypto: arm64/poly1305 - fix a read out-of-bound - Bluetooth: hci_bcm: Add BCM4349B1 variant - Bluetooth: hci_bcm: Add DT compatible for CYW55572 - Bluetooth: btusb: Add support of IMC Networks PID 0x3568 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04CA:0x4007 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04C5:0x1675 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x0CB8:0xC558 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3587 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3586 - [x86] Add mitigations for Post-Barrier Return Stack Buffer Prediction (PBRSB) issue (CVE-2022-26373): + x86/speculation: Add RSB VM Exit protections + x86/speculation: Add LFENCE to RSB fill sequence . [ Salvatore Bonaccorso ] * Bump ABI to 17 * [rt] Update to 5.10.131-rt72 * posix-cpu-timers: Cleanup CPU timers before freeing them during exec (CVE-2022-2585) * netfilter: nf_tables: do not allow SET_ID to refer to another table (CVE-2022-2586) * netfilter: nf_tables: do not allow CHAIN_ID to refer to another table * netfilter: nf_tables: do not allow RULE_ID to refer to another chain * net_sched: cls_route: remove from list when handle is 0 (CVE-2022-2588) linux (5.10.127-2) bullseye-security; urgency=high . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size linux (5.10.127-2~bpo10+1) buster-backports; urgency=high . * Rebuild for buster-backports: - Change ABI number to 0.deb10.16 . linux (5.10.127-2) bullseye-security; urgency=high . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size . linux (5.10.127-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.121 - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9520 laptop - ALSA: hda/realtek - Fix microphone noise on ASUS TUF B550M-PLUS - ALSA: usb-audio: Cancel pending work at closing a MIDI substream - USB: serial: option: add Quectel BG95 modem - USB: new quirk for Dell Gen 2 devices - usb: dwc3: gadget: Move null pinter check to proper place - usb: core: hcd: Add support for deferring roothub registration - cifs: when extending a file with falloc we should make files not-sparse - xhci: Allow host runtime PM as default for Intel Alder Lake N xHCI - Fonts: Make font size unsigned in font_desc - [x86] MCE/AMD: Fix memory leak when threshold_create_bank() fails - [w86] perf/x86/intel: Fix event constraints for ICL - ptrace/xtensa: Replace PT_SINGLESTEP with TIF_SINGLESTEP - ptrace: Reimplement PTRACE_KILL by always sending SIGKILL - btrfs: add "0x" prefix for unsupported optional features - btrfs: repair super block num_devices automatically - [amd64] iommu/vt-d: Add RPLS to quirk list to skip TE disabling - drm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modes - mwifiex: add mutex lock for call in mwifiex_dfs_chan_sw_work_queue - b43legacy: Fix assigning negative value to unsigned variable - b43: Fix assigning negative value to unsigned variable - ipw2x00: Fix potential NULL dereference in libipw_xmit() - ipv6: fix locking issues with loops over idev->addr_list - fbcon: Consistently protect deferred_takeover with console_lock() - [x86] platform/uv: Update TSC sync state for UV5 - ACPICA: Avoid cache flush inside virtual machines - drm/komeda: return early if drm_universal_plane_init() fails. - rcu-tasks: Fix race in schedule and flush work - rcu: Make TASKS_RUDE_RCU select IRQ_WORK - sfc: ef10: Fix assigning negative value to unsigned variable - ALSA: jack: Access input_dev under mutex - spi: spi-rspi: Remove setting {src,dst}_{addr,addr_width} based on DMA direction - drm/amd/pm: fix double free in si_parse_power_table() - ath9k: fix QCA9561 PA bias level - media: venus: hfi: avoid null dereference in deinit - media: pci: cx23885: Fix the error handling in cx23885_initdev() - media: cx25821: Fix the warning when removing the module - md/bitmap: don't set sb values if can't pass sanity check - mmc: jz4740: Apply DMA engine limits to maximum segment size - drivers: mmc: sdhci_am654: Add the quirk to set TESTCD bit - scsi: megaraid: Fix error check return value of register_chrdev() - scsi: ufs: Use pm_runtime_resume_and_get() instead of pm_runtime_get_sync() - scsi: lpfc: Fix resource leak in lpfc_sli4_send_seq_to_ulp() - ath11k: disable spectral scan during spectral deinit - ASoC: Intel: bytcr_rt5640: Add quirk for the HP Pro Tablet 408 - drm/plane: Move range check for format_count earlier - drm/amd/pm: fix the compile warning - ath10k: skip ath10k_halt during suspend for driver state RESTARTING - [arm64] compat: Do not treat syscall number as ESR_ELx for a bad syscall - drm: msm: fix error check return value of irq_of_parse_and_map() - ipv6: Don't send rs packets to the interface of ARPHRD_TUNNEL - net/mlx5: fs, delete the FTE when there are no rules attached to it - ASoC: dapm: Don't fold register value changes into notifications - mlxsw: spectrum_dcb: Do not warn about priority changes - mlxsw: Treat LLDP packets as control - drm/amdgpu/ucode: Remove firmware load type check in amdgpu_ucode_free_bo - HID: bigben: fix slab-out-of-bounds Write in bigben_probe - ASoC: tscs454: Add endianness flag in snd_soc_component_driver - net: remove two BUG() from skb_checksum_help() - [s390x] preempt: disable __preempt_count_add() optimization for PROFILE_ALL_BRANCHES - perf/amd/ibs: Cascade pmu init functions' return value - spi: stm32-qspi: Fix wait_cmd timeout in APM mode - dma-debug: change allocation mode from GFP_NOWAIT to GFP_ATIOMIC - ACPI: PM: Block ASUS B1400CEAE from suspend to idle by default - ipmi:ssif: Check for NULL msg when handling events and messages - ipmi: Fix pr_fmt to avoid compilation issues - rtlwifi: Use pr_warn instead of WARN_ONCE - media: rga: fix possible memory leak in rga_probe - media: coda: limit frame interval enumeration to supported encoder frame sizes - media: imon: reorganize serialization - media: cec-adap.c: fix is_configuring state - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - ASoC: rt5645: Fix errorenous cleanup order - nbd: Fix hung on disconnect request if socket is closed before - net: phy: micrel: Allow probing without .driver_data - media: exynos4-is: Fix compile warning - ASoC: max98357a: remove dependency on GPIOLIB - ASoC: rt1015p: remove dependency on GPIOLIB - can: mcp251xfd: silence clang's -Wunaligned-access warning - [x86] microcode: Add explicit CPU vendor dependency - rxrpc: Return an error to sendmsg if call failed - rxrpc, afs: Fix selection of abort codes - eth: tg3: silence the GCC 12 array-bounds warning - gfs2: use i_lock spin_lock for inode qadata - IB/rdmavt: add missing locks in rvt_ruc_loopback - [arm64] dts: qcom: msm8994: Fix BLSP[12]_DMA channels count - PM / devfreq: rk3399_dmc: Disable edev on remove() - crypto: ccree - use fine grained DMA mapping dir - soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc - fs: jfs: fix possible NULL pointer dereference in dbFree() - [powerpc*] fadump: Fix fadump to work with a different endian capture kernel - fat: add ratelimit to fat*_ent_bread() - pinctrl: renesas: rzn1: Fix possible null-ptr-deref in sh_pfc_map_resources() - ARM: versatile: Add missing of_node_put in dcscb_init - ARM: dts: exynos: add atmel,24c128 fallback to Samsung EEPROM - ARM: hisi: Add missing of_node_put after of_find_compatible_node - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - tracing: incorrect isolate_mote_t cast in mm_vmscan_lru_isolate - [powerpc*] powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr - [powerpc*] xics: fix refcount leak in icp_opal_init() - [powerpc*] powernv: fix missing of_node_put in uv_init() - macintosh/via-pmu: Fix build failure when CONFIG_INPUT is disabled - [powerpc*] iommu: Add missing of_node_put in iommu_init_early_dart - [amd64] RDMA/hfi1: Prevent panic when SDMA is disabled - drm: fix EDID struct for old ARM OABI format - dt-bindings: display: sitronix, st7735r: Fix backlight in example - ath11k: acquire ab->base_lock in unassign when finding the peer by addr - ath9k: fix ar9003_get_eepmisc - drm/edid: fix invalid EDID extension block filtering - drm/bridge: adv7511: clean up CEC adapter when probe fails - spi: qcom-qspi: Add minItems to interconnect-names - ASoC: mediatek: Fix error handling in mt8173_max98090_dev_probe - ASoC: mediatek: Fix missing of_node_put in mt2701_wm8960_machine_probe - [x86] delay: Fix the wrong asm constraint in delay_loop() - drm/ingenic: Reset pixclock rate when parent clock rate changes - drm/mediatek: Fix mtk_cec_mask() - [arm*] drm/vc4: hvs: Reset muxes at probe time - [arm*] drm/vc4: txp: Don't set TXP_VSTART_AT_EOF - [arm*] drm/vc4: txp: Force alpha to be 0xff if it's disabled - bpf: Fix excessive memory allocation in stack_map_alloc() - nl80211: show SSID for P2P_GO interfaces - drm/komeda: Fix an undefined behavior bug in komeda_plane_add() - drm: mali-dp: potential dereference of null pointer - spi: spi-ti-qspi: Fix return value handling of wait_for_completion_timeout - scftorture: Fix distribution of short handler delays - net: dsa: mt7530: 1G can also support 1000BASE-X link mode - NFC: NULL out the dev->rfkill to prevent UAF - efi: Add missing prototype for efi_capsule_setup_info - target: remove an incorrect unmap zeroes data deduction - drbd: fix duplicate array initializer - EDAC/dmc520: Don't print an error for each unconfigured interrupt line - mtd: rawnand: denali: Use managed device resources - HID: hid-led: fix maximum brightness for Dream Cheeky - HID: elan: Fix potential double free in elan_input_configured - drm/bridge: Fix error handling in analogix_dp_probe - sched/fair: Fix cfs_rq_clock_pelt() for throttled cfs_rq - spi: img-spfi: Fix pm_runtime_get_sync() error checking - cpufreq: Fix possible race in cpufreq online error path - ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix - media: hantro: Empty encoder capture buffers by default - drm/panel: simple: Add missing bus flags for Innolux G070Y2-L01 - ALSA: pcm: Check for null pointer of pointer substream before dereferencing it - inotify: show inotify mask flags in proc fdinfo - fsnotify: fix wrong lockdep annotations - of: overlay: do not break notify on NOTIFY_{OK|STOP} - drm/msm/dpu: adjust display_v_end for eDP and DP - scsi: ufs: qcom: Fix ufs_qcom_resume() - scsi: ufs: core: Exclude UECxx from SFR dump list - mtd: spi-nor: core: Check written SR value in spi_nor_write_16bit_sr_and_check() - [x86] pm: Fix false positive kmemleak report in msr_build_context() - mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() - [x86] speculation: Add missing prototype for unpriv_ebpf_notify() - ASoC: rk3328: fix disabling mclk on pclk probe failure - perf tools: Add missing headers needed by util/data.h - drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume - drm/msm/dp: stop event kernel thread when DP unbind - drm/msm/dp: fix error check return value of irq_of_parse_and_map() - drm/msm/dsi: fix error checks and return values for DSI xmit functions - drm/msm/hdmi: check return value after calling platform_get_resource_byname() - drm/msm/hdmi: fix error check return value of irq_of_parse_and_map() - drm/msm: add missing include to msm_drv.c - drm/panel: panel-simple: Fix proper bpc for AM-1280800N3TZQW-T00H - drm/rockchip: vop: fix possible null-ptr-deref in vop_bind() - perf tools: Use Python devtools for version autodetection rather than runtime - virtio_blk: fix the discard_granularity and discard_alignment queue limits - [x86] Fix return value of __setup handlers - irqchip/exiu: Fix acknowledgment of edge triggered interrupts - irqchip/aspeed-i2c-ic: Fix irq_of_parse_and_map() return value - irqchip/aspeed-scu-ic: Fix irq_of_parse_and_map() return value - [x86] mm: Cleanup the control_va_addr_alignment() __setup handler - [arm64] fix types in copy_highpage() - regulator: core: Fix enable_count imbalance with EXCLUSIVE_GET - drm/msm/dp: fix event thread stuck in wait_event after kthread_stop() - drm/msm/mdp5: Return error code in mdp5_pipe_release when deadlock is detected - drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected - drm/msm: return an error pointer in msm_gem_prime_get_sg_table() - media: uvcvideo: Fix missing check to determine if element is found in list - iomap: iomap_write_failed fix - spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname() - Revert "cpufreq: Fix possible race in cpufreq online error path" - regulator: qcom_smd: Fix up PM8950 regulator configuration - perf/amd/ibs: Use interrupt regs ip for stack unwinding - ath11k: Don't check arvif->is_started before sending management frames - ASoC: fsl: Fix refcount leak in imx_sgtl5000_probe - ASoC: mxs-saif: Fix refcount leak in mxs_saif_probe - regulator: pfuze100: Fix refcount leak in pfuze_parse_regulators_dt - ASoC: samsung: Use dev_err_probe() helper - ASoC: samsung: Fix refcount leak in aries_audio_probe - scripts/faddr2line: Fix overlapping text section failures - media: aspeed: Fix an error handling path in aspeed_video_probe() - media: exynos4-is: Fix PM disable depth imbalance in fimc_is_probe - media: st-delta: Fix PM disable depth imbalance in delta_probe - media: exynos4-is: Change clk_disable to clk_disable_unprepare - media: pvrusb2: fix array-index-out-of-bounds in pvr2_i2c_core_init - media: vsp1: Fix offset calculation for plane cropping - Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout - Bluetooth: Interleave with allowlist scan - Bluetooth: L2CAP: Rudimentary typo fixes - Bluetooth: LL privacy allow RPA - Bluetooth: use inclusive language in HCI role comments - Bluetooth: use inclusive language when filtering devices - Bluetooth: use hdev lock for accept_list and reject_list in conn req - nvme: set dma alignment to dword - lsm,selinux: pass flowi_common instead of flowi to the LSM hooks - sctp: read sk->sk_bound_dev_if once in sctp_rcv() - net: hinic: add missing destroy_workqueue in hinic_pf_to_mgmt_init - ASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_* - media: ov7670: remove ov7670_power_off from ov7670_remove - media: staging: media: rkvdec: Make use of the helper function devm_platform_ioremap_resource() - media: rkvdec: h264: Fix dpb_valid implementation - media: rkvdec: h264: Fix bit depth wrap in pps packet - ext4: reject the 'commit' option on ext2 filesystems - drm/msm/a6xx: Fix refcount leak in a6xx_gpu_init - drm: msm: fix possible memory leak in mdp5_crtc_cursor_set() - [x86] sev: Annotate stack change in the #VC handler - drm/msm/dpu: handle pm_runtime_get_sync() errors in bind path - [x86] drm/i915: Fix CFI violation with show_dynamic_id() - thermal/drivers/bcm2711: Don't clamp temperature at zero - thermal/drivers/broadcom: Fix potential NULL dereference in sr_thermal_probe - thermal/drivers/core: Use a char pointer for the cooling device name - thermal/core: Fix memory leak in __thermal_cooling_device_register() - thermal/drivers/imx_sc_thermal: Fix refcount leak in imx_sc_thermal_probe - ASoC: wm2000: fix missing clk_disable_unprepare() on error in wm2000_anc_transition() - NFC: hci: fix sleep in atomic context bugs in nfc_hci_hcp_message_tx - ASoC: max98090: Move check for invalid values before casting in max98090_put_enab_tlv() - net: stmmac: selftests: Use kcalloc() instead of kzalloc() - net: stmmac: fix out-of-bounds access in a selftest - hv_netvsc: Fix potential dereference of NULL pointer - rxrpc: Fix listen() setting the bar too high for the prealloc rings - rxrpc: Don't try to resend the request if we're receiving the reply - rxrpc: Fix overlapping ACK accounting - rxrpc: Don't let ack.previousPacket regress - rxrpc: Fix decision on when to generate an IDLE ACK - net: huawei: hinic: Use devm_kcalloc() instead of devm_kzalloc() - hinic: Avoid some over memory allocation - net/smc: postpone sk_refcnt increment in connect() - arm64: dts: rockchip: Move drive-impedance-ohm to emmc phy on rk3399 - memory: samsung: exynos5422-dmc: Avoid some over memory allocation - ARM: dts: suniv: F1C100: fix watchdog compatible - soc: qcom: smp2p: Fix missing of_node_put() in smp2p_parse_ipc - soc: qcom: smsm: Fix missing of_node_put() in smsm_parse_ipc - PCI: cadence: Fix find_first_zero_bit() limit - PCI: rockchip: Fix find_first_zero_bit() limit - PCI: dwc: Fix setting error return on MSI DMA mapping failure - ARM: dts: ci4x10: Adapt to changes in imx6qdl.dtsi regarding fec clocks - soc: qcom: llcc: Add MODULE_DEVICE_TABLE() - [x86] KVM: nVMX: Leave most VM-Exit info fields unmodified on failed VM-Entry - [x86] KVM: nVMX: Clear IDT vectoring on nested VM-Exit for double/triple fault - platform/chrome: cros_ec: fix error handling in cros_ec_register() - ARM: dts: imx6dl-colibri: Fix I2C pinmuxing - platform/chrome: Re-introduce cros_ec_cmd_xfer and use it for ioctls - can: xilinx_can: mark bit timing constants as const - ARM: dts: stm32: Fix PHY post-reset delay on Avenger96 - ARM: dts: bcm2835-rpi-zero-w: Fix GPIO line name for Wifi/BT - ARM: dts: bcm2837-rpi-cm3-io3: Fix GPIO line names for SMPS I2C - ARM: dts: bcm2837-rpi-3-b-plus: Fix GPIO line name of power LED - ARM: dts: bcm2835-rpi-b: Fix GPIO line names - misc: ocxl: fix possible double free in ocxl_file_register_afu - crypto: marvell/cesa - ECB does not IV - gpiolib: of: Introduce hook for missing gpio-ranges - pinctrl: bcm2835: implement hook for missing gpio-ranges - arm: mediatek: select arch timer for mt7629 - powerpc/fadump: fix PT_LOAD segment for boot memory area - mfd: ipaq-micro: Fix error check return value of platform_get_irq() - scsi: fcoe: Fix Wstringop-overflow warnings in fcoe_wwn_from_mac() - firmware: arm_scmi: Fix list protocols enumeration in the base protocol - nvdimm: Fix firmware activation deadlock scenarios - nvdimm: Allow overwrite in the presence of disabled dimms - pinctrl: mvebu: Fix irq_of_parse_and_map() return value - drivers/base/node.c: fix compaction sysfs file leak - dax: fix cache flush on PMD-mapped pages - drivers/base/memory: fix an unlikely reference counting issue in __add_memory_block() - powerpc/8xx: export 'cpm_setbrg' for modules - pinctrl: renesas: core: Fix possible null-ptr-deref in sh_pfc_map_resources() - powerpc/idle: Fix return value of __setup() handler - powerpc/4xx/cpm: Fix return value of __setup() handler - ASoC: atmel-pdmic: Remove endianness flag on pdmic component - ASoC: atmel-classd: Remove endianness flag on class d component - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - ipc/mqueue: use get_tree_nodev() in mqueue_get_tree() - PCI: imx6: Fix PERST# start-up sequence - tty: fix deadlock caused by calling printk() under tty_port->lock - crypto: sun8i-ss - rework handling of IV - crypto: sun8i-ss - handle zero sized sg - crypto: cryptd - Protect per-CPU resource by disabling BH. - Input: sparcspkr - fix refcount leak in bbc_beep_probe - PCI/AER: Clear MULTI_ERR_COR/UNCOR_RCV bits - hwrng: omap3-rom - fix using wrong clk_disable() in omap_rom_rng_runtime_resume() - [powerpc*] 64: Only WARN if __pa()/__va() called with bad addresses - [powerpc*] perf: Fix the threshold compare group constraint for power9 - macintosh: via-pmu and via-cuda need RTC_LIB - powerpc/fsl_rio: Fix refcount leak in fsl_rio_setup - mfd: davinci_voicecodec: Fix possible null-ptr-deref davinci_vc_probe() - mailbox: forward the hrtimer if not queued and under a lock - [amd64] RDMA/hfi1: Prevent use of lock before it is initialized - Input: stmfts - do not leave device disabled in stmfts_input_open - OPP: call of_node_put() on error path in _bandwidth_supported() - f2fs: fix dereference of stale list iterator after loop body - iommu/mediatek: Add list_del in mtk_iommu_remove - i2c: at91: use dma safe buffers - cpufreq: mediatek: add missing platform_driver_unregister() on error in mtk_cpufreq_driver_init - cpufreq: mediatek: Use module_init and add module_exit - cpufreq: mediatek: Unregister platform device on exit - [mips*] Loongson: Use hwmon_device_register_with_groups() to register hwmon - i2c: at91: Initialize dma_buf in at91_twi_xfer() - dmaengine: idxd: Fix the error handling path in idxd_cdev_register() - NFS: Do not report EINTR/ERESTARTSYS as mapping errors - NFS: fsync() should report filesystem errors over EINTR/ERESTARTSYS - NFS: Do not report flush errors in nfs_write_end() - NFS: Don't report errors from nfs_pageio_complete() more than once - NFSv4/pNFS: Do not fail I/O when we fail to allocate the pNFS layout - video: fbdev: clcdfb: Fix refcount leak in clcdfb_of_vram_setup - dmaengine: stm32-mdma: remove GISR1 register - dmaengine: stm32-mdma: rework interrupt handler - dmaengine: stm32-mdma: fix chan initialization in stm32_mdma_irq_handler() - iommu/amd: Increase timeout waiting for GA log enablement - i2c: npcm: Fix timeout calculation - i2c: npcm: Correct register access width - i2c: npcm: Handle spurious interrupts - i2c: rcar: fix PM ref counts in probe error paths - perf c2c: Use stdio interface if slang is not supported - perf jevents: Fix event syntax error caused by ExtSel - f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count() - f2fs: fix to do sanity check on block address in f2fs_do_zero_range() - f2fs: fix to clear dirty inode in f2fs_evict_inode() - f2fs: fix deadloop in foreground GC - f2fs: don't need inode lock for system hidden quota - f2fs: fix to do sanity check on total_data_blocks - f2fs: fix fallocate to use file_modified to update permissions consistently - f2fs: fix to do sanity check for inline inode - wifi: mac80211: fix use-after-free in chanctx code - iwlwifi: mvm: fix assert 1F04 upon reconfig - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages - efi: Do not import certificates from UEFI Secure Boot for T2 Macs - bfq: Split shared queues on move between cgroups - bfq: Update cgroup information before merging bio - bfq: Track whether bfq_group is still online - ext4: fix use-after-free in ext4_rename_dir_prepare - ext4: fix warning in ext4_handle_inode_extension - ext4: fix bug_on in ext4_writepages - ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state - ext4: fix bug_on in __es_tree_search - ext4: verify dir block before splitting it (CVE-2022-1184) - ext4: avoid cycles in directory h-tree (CVE-2022-1184) - ACPI: property: Release subnode properties with data nodes - tracing: Fix potential double free in create_var_ref() - PCI/PM: Fix bridge_d3_blacklist[] Elo i2 overwrite of Gigabyte X299 - PCI: qcom: Fix runtime PM imbalance on probe errors - PCI: qcom: Fix unbalanced PHY init on probe errors - mm, compaction: fast_find_migrateblock() should return pfn in the target zone - [s390x] perf: obtain sie_block from the right address - dlm: fix plock invalid read - dlm: fix missing lkb refcount handling - ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock - scsi: dc395x: Fix a missing check on list iterator - scsi: ufs: qcom: Add a readl() to make sure ref_clk gets enabled - drm/amdgpu/cs: make commands with 0 chunks illegal behaviour. - drm/etnaviv: check for reaped mapping in etnaviv_iommu_unmap_gem - drm/nouveau/clk: Fix an incorrect NULL check on list iterator - drm/nouveau/kms/nv50-: atom: fix an incorrect NULL check on list iterator - drm/bridge: analogix_dp: Grab runtime PM reference for DP-AUX - [x86] drm/i915/dsi: fix VBT send packet port selection for ICL+ - md: fix an incorrect NULL check in does_sb_need_changing - md: fix an incorrect NULL check in md_reload_sb - mtd: cfi_cmdset_0002: Move and rename chip_check/chip_ready/chip_good_for_write - mtd: cfi_cmdset_0002: Use chip_ready() for write on S29GL064N - media: coda: Fix reported H264 profile - media: coda: Add more H264 levels for CODA960 - [amd64] RDMA/hfi1: Fix potential integer multiplication overflow errors - csky: patch_text: Fixup last cpu should be master - irqchip/armada-370-xp: Do not touch Performance Counter Overflow on A375, A38x, A39x - irqchip: irq-xtensa-mx: fix initial IRQ affinity - cfg80211: declare MODULE_FIRMWARE for regulatory.db - mac80211: upgrade passive scan to active scan on DFS channels after beacon rx - um: chan_user: Fix winch_tramp() return value - um: Fix out-of-bounds read in LDT setup - kexec_file: drop weak attribute from arch_kexec_apply_relocations[_add] - ftrace: Clean up hash direct_functions on register failures - iommu/msm: Fix an incorrect NULL check on list iterator - nodemask.h: fix compilation error with GCC12 - hugetlb: fix huge_pmd_unshare address update - xtensa/simdisk: fix proc_read_simdisk() - rtl818x: Prevent using not initialized queues - ASoC: rt5514: Fix event generation for "DSP Voice Wake Up" control - carl9170: tx: fix an incorrect use of list iterator - stm: ltdc: fix two incorrect NULL checks on list iterator - bcache: improve multithreaded bch_btree_check() - bcache: improve multithreaded bch_sectors_dirty_init() - bcache: remove incremental dirty sector counting for bch_sectors_dirty_init() - bcache: avoid journal no-space deadlock by reserving 1 journal bucket - serial: pch: don't overwrite xmit->buf[0] by x_char - tilcdc: tilcdc_external: fix an incorrect NULL check on list iterator - gma500: fix an incorrect NULL check on list iterator - arm64: dts: qcom: ipq8074: fix the sleep clock frequency - phy: qcom-qmp: fix struct clk leak on probe errors - ARM: dts: s5pv210: Remove spi-cs-high on panel in Aries - ARM: pxa: maybe fix gpio lookup tables - SMB3: EBADF/EIO errors in rename/open caused by race condition in smb2_compound_op - docs/conf.py: Cope with removal of language=None in Sphinx 5.0.0 - dt-bindings: gpio: altera: correct interrupt-cells - vdpasim: allow to enable a vq repeatedly - blk-iolatency: Fix inflight count imbalances and IO hangs on offline - coresight: core: Fix coresight device probe failure issue - phy: qcom-qmp: fix reset-controller leak on probe errors - net: ipa: fix page free in ipa_endpoint_trans_release() - net: ipa: fix page free in ipa_endpoint_replenish_one() - xfs: set inode size after creating symlink - xfs: sync lazy sb accounting on quiesce of read-only mounts - xfs: fix chown leaking delalloc quota blocks when fssetxattr fails - xfs: fix incorrect root dquot corruption error when switching group/project quota types - xfs: restore shutdown check in mapped write fault path - xfs: force log and push AIL to clear pinned inodes when aborting mount - xfs: consider shutdown in bmapbt cursor delete assert - xfs: assert in xfs_btree_del_cursor should take into account error - kseltest/cgroup: Make test_stress.sh work if run interactively - thermal/core: fix a UAF bug in __thermal_cooling_device_register() - thermal/core: Fix memory leak in the error path - bfq: Avoid merging queues with different parents - bfq: Drop pointless unlock-lock pair - bfq: Remove pointless bfq_init_rq() calls - bfq: Get rid of __bio_blkcg() usage - bfq: Make sure bfqg for which we are queueing requests is online - block: fix bio_clone_blkg_association() to associate with proper blkcg_gq - Revert "random: use static branch for crng_ready()" - RDMA/rxe: Generate a completion for unsupported/invalid opcode - [mips*] IP27: Remove incorrect `cpu_has_fpu' override - [mips*] IP30: Remove incorrect `cpu_has_fpu' override - ext4: only allow test_dummy_encryption when supported - md: bcache: check the return value of kzalloc() in detached_dev_do_request() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.122 - pcmcia: db1xxx_ss: restrict to MIPS_DB1XXX boards - staging: greybus: codecs: fix type confusion of list iterator variable - iio: adc: ad7124: Remove shift from scan_type - tty: goldfish: Use tty_port_destroy() to destroy port - tty: serial: owl: Fix missing clk_disable_unprepare() in owl_uart_probe - tty: n_tty: Restore EOF push handling behavior - tty: serial: fsl_lpuart: fix potential bug when using both of_alias_get_id and ida_simple_get - usb: usbip: fix a refcount leak in stub_probe() - usb: usbip: add missing device lock on tweak configuration cmd - USB: storage: karma: fix rio_karma_init return - usb: musb: Fix missing of_node_put() in omap2430_probe - staging: fieldbus: Fix the error handling path in anybuss_host_common_probe() - pwm: lp3943: Fix duty calculation in case period was clamped - rpmsg: qcom_smd: Fix irq_of_parse_and_map() return value - usb: dwc3: pci: Fix pm_runtime_get_sync() error checking - misc: fastrpc: fix an incorrect NULL check on list iterator - firmware: stratix10-svc: fix a missing check on list iterator - usb: typec: mux: Check dev_set_name() return value - iio: adc: stmpe-adc: Fix wait_for_completion_timeout return value check - iio: proximity: vl53l0x: Fix return value check of wait_for_completion_timeout - iio: adc: sc27xx: fix read big scale voltage not right - iio: adc: sc27xx: Fine tune the scale calibration values - rpmsg: qcom_smd: Fix returning 0 if irq_of_parse_and_map() fails - phy: qcom-qmp: fix pipe-clock imbalance on power-on failure - serial: sifive: Report actual baud base rather than fixed 115200 - coresight: cpu-debug: Replace mutex with mutex_trylock on panic notifier - extcon: ptn5150: Add queue work sync before driver release - soc: rockchip: Fix refcount leak in rockchip_grf_init - rtc: mt6397: check return value after calling platform_get_resource() - serial: meson: acquire port->lock in startup() - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - serial: digicolor-usart: Don't allow CS5-6 - serial: rda-uart: Don't allow CS5-6 - serial: txx9: Don't allow CS5-6 - serial: sh-sci: Don't allow CS5-6 - serial: sifive: Sanitize CSIZE and c_iflag - serial: st-asc: Sanitize CSIZE and correct PARENB for CS7 - serial: stm32-usart: Correct CSIZE, bits, and parity - firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle - bus: ti-sysc: Fix warnings for unbind for serial - driver: base: fix UAF when driver_attach failed - driver core: fix deadlock in __device_attach - watchdog: rti-wdt: Fix pm_runtime_get_sync() error checking - watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe - ASoC: fsl_sai: Fix FSL_SAI_xDR/xFR definition - clocksource/drivers/oxnas-rps: Fix irq_of_parse_and_map() return value - [s390x] crypto: fix scatterwalk_unmap() callers in AES-GCM - net: sched: fixed barrier to prevent skbuff sticking in qdisc backlog - net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() - net: ethernet: ti: am65-cpsw-nuss: Fix some refcount leaks - net: dsa: mv88e6xxx: Fix refcount leak in mv88e6xxx_mdios_register - modpost: fix removing numeric suffixes - jffs2: fix memory leak in jffs2_do_fill_super - ubi: fastmap: Fix high cpu usage of ubi_bgt by making sure wl_pool not empty - ubi: ubi_create_volume: Fix use-after-free when volume creation failed - bpf: Fix probe read error in ___bpf_prog_run() - net/smc: fixes for converting from "struct smc_cdc_tx_pend **" to "struct smc_wr_tx_pend_priv *" - nfp: only report pause frame configuration for physical device - sfc: fix considering that all channels have TX queues - sfc: fix wrong tx channel offset with efx_separate_tx_channels - net/mlx5: Don't use already freed action pointer - net/mlx5: correct ECE offset in query qp output - net/mlx5e: Update netdev features after changing XDP state - net: sched: add barrier to fix packet stuck problem for lockless qdisc - tcp: tcp_rtx_synack() can be called from process context - gpio: pca953x: use the correct register address to do regcache sync - afs: Fix infinite loop found by xfstest generic/676 - scsi: sd: Fix potential NULL pointer dereference - tipc: check attribute length for bearer name - driver core: Fix wait_for_device_probe() & deferred_probe_timeout interaction - perf c2c: Fix sorting in percent_rmt_hitm_cmp() - dmaengine: idxd: set DMA_INTERRUPT cap bit - mips: cpc: Fix refcount leak in mips_cpc_default_phys_base - bootconfig: Make the bootconfig.o as a normal object file - tracing: Fix sleeping function called from invalid context on RT kernel - tracing: Avoid adding tracer option before update_tracer_options - iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() - iommu/arm-smmu-v3: check return value after calling platform_get_resource() - f2fs: remove WARN_ON in f2fs_is_valid_blkaddr - i2c: cadence: Increase timeout per message if necessary - dmaengine: zynqmp_dma: In struct zynqmp_dma_chan fix desc_size data type - NFSv4: Don't hold the layoutget locks across multiple RPC calls - video: fbdev: hyperv_fb: Allow resolutions with size > 64 MB for Gen1 - video: fbdev: pxa3xx-gcu: release the resources correctly in pxa3xx_gcu_probe/remove() - xprtrdma: treat all calls not a bcall when bc_serv is NULL - netfilter: nat: really support inet nat without l3 address - netfilter: nf_tables: delete flowtable hooks via transaction list - powerpc/kasan: Force thread size increase with KASAN - netfilter: nf_tables: always initialize flowtable hook list in transaction - ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe - netfilter: nf_tables: release new hooks on unsupported flowtable flags - netfilter: nf_tables: memleak flow rule from commit path - netfilter: nf_tables: bail out early if hardware offload is not supported - xen: unexport __init-annotated xen_xlate_map_ballooned_pages() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - bpf, arm64: Clear prog->jited_len along prog->jited - net: dsa: lantiq_gswip: Fix refcount leak in gswip_gphy_fw_list - net/mlx4_en: Fix wrong return value on ioctl EEPROM query failure - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - net: mdio: unexport __init-annotated mdio_bus_init() - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - net: ipv6: unexport __init-annotated seg6_hmac_init() - net/mlx5: Rearm the FW tracer after each tracer event - net/mlx5: fs, fail conflicting actions - ip_gre: test csum_start instead of transport header - net: altera: Fix refcount leak in altera_tse_mdio_create - drm: imx: fix compiler warning with gcc-12 - iio: dummy: iio_simple_dummy: check the return value of kstrdup() - staging: rtl8712: fix a potential memory leak in r871xu_drv_init() - iio: st_sensors: Add a local lock for protecting odr - tty: synclink_gt: Fix null-pointer-dereference in slgt_clean() - tty: Fix a possible resource leak in icom_probe - drivers: staging: rtl8192u: Fix deadlock in ieee80211_beacons_stop() - drivers: staging: rtl8192e: Fix deadlock in rtllib_beacons_stop() - USB: host: isp116x: check return value after calling platform_get_resource() - drivers: tty: serial: Fix deadlock in sa1100_set_termios() - drivers: usb: host: Fix deadlock in oxu_bus_suspend() - USB: hcd-pci: Fully suspend across freeze/thaw cycle - sysrq: do not omit current cpu when showing backtrace of all active CPUs - usb: dwc2: gadget: don't reset gadget's driver->bus - misc: rtsx: set NULL intfdata when probe fails - extcon: Modify extcon device to be created after driver data is set - clocksource/drivers/sp804: Avoid error on multiple instances - staging: rtl8712: fix uninit-value in usb_read8() and friends - staging: rtl8712: fix uninit-value in r871xu_drv_init() - serial: msm_serial: disable interrupts in __msm_console_write() - kernfs: Separate kernfs_pr_cont_buf and rename_lock. - watchdog: wdat_wdt: Stop watchdog when rebooting the system - md: protect md_unregister_thread from reentrancy - scsi: myrb: Fix up null pointer access on myrb_cleanup() - Revert "net: af_key: add check for pfkey_broadcast in function pfkey_process" - ceph: allow ceph.dir.rctime xattr to be updatable - drm/radeon: fix a possible null pointer dereference - modpost: fix undefined behavior of is_arm_mapping_symbol() - [x86] cpu: Elide KCSAN for cpu_has() and friends - jump_label,noinstr: Avoid instrumentation for JUMP_LABEL=n builds - nbd: call genl_unregister_family() first in nbd_cleanup() - nbd: fix race between nbd_alloc_config() and module removal - nbd: fix io hung while disconnecting device - [s390x] gmap: voluntarily schedule during key setting - cifs: version operations for smb20 unneeded when legacy support disabled - nodemask: Fix return values to be unsigned - vringh: Fix loop descriptors check in the indirect cases - scripts/gdb: change kernel config dumping method - ALSA: hda/conexant - Fix loopback issue with CX20632 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo Yoga DuetITL 2021 - cifs: return errors during session setup during reconnects - cifs: fix reconnect on smb3 mount types - ata: libata-transport: fix {dma|pio|xfer}_mode sysfs files - mmc: block: Fix CQE recovery reset success - net: phy: dp83867: retrigger SGMII AN when link change - nfc: st21nfca: fix incorrect validating logic in EVT_TRANSACTION - nfc: st21nfca: fix memory leaks in EVT_TRANSACTION handling - nfc: st21nfca: fix incorrect sizing calculations in EVT_TRANSACTION - ixgbe: fix bcast packets Rx on VF after promisc removal - ixgbe: fix unexpected VLAN Rx in promisc mode on VF - Input: bcm5974 - set missing URB_NO_TRANSFER_DMA_MAP urb flag - drm/bridge: analogix_dp: Support PSR-exit to disable transition - drm/atomic: Force bridge self-refresh-exit on CRTC switch - [powerpc*] 32: Fix overread/overwrite of thread_struct via ptrace (CVE-2022-32981) - [powerpc*] mm: Switch obsolete dssall to .long - interconnect: qcom: sc7180: Drop IP0 interconnects - interconnect: Restore sync state by ignoring ipa-virt in provider count - md/raid0: Ignore RAID0 layout if the second zone has only one device - PCI: qcom: Fix pipe clock imbalance - zonefs: fix handling of explicit_open option on mount - dmaengine: idxd: add missing callback function to support DMA_INTERRUPT - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.123 - [x86] Mitigate Processor MMIO Stale Data vulnerabilities (CVE-2022-21123, CVE-2022-21125, CVE-2022-21166): + Documentation: Add documentation for Processor MMIO Stale Data + x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug + x86/speculation: Add a common function for MD_CLEAR mitigation update + x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data + x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations + x86/speculation/mmio: Enable CPU Fill buffer clearing on idle + x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data + x86/speculation/srbds: Update SRBDS mitigation selection + x86/speculation/mmio: Reuse SRBDS mitigation for SBDS + KVM: x86/speculation: Disable Fill buffer clear within guests + x86/speculation/mmio: Print SMT warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.124 - 9p: missing chunk of "fs/9p: Don't update file type when updating file attributes" - nfsd: Replace use of rwsem with errseq_t - bpf: Fix incorrect memory charge cost calculation in stack_map_alloc() - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - quota: Prevent memory allocation recursion while holding dq_lock - [armhf] ASoC: es8328: Fix event generation for deemphasis control - Input: soc_button_array - also add Lenovo Yoga Tablet2 1051F to dmi_use_low_level_irq - scsi: vmw_pvscsi: Expand vcpuHint to 16 bits - scsi: lpfc: Fix port stuck in bypassed state after LIP in PT2PT topology - scsi: lpfc: Allow reduced polling rate for nvme_admin_async_event cmd completion - scsi: ipr: Fix missing/incorrect resource cleanup in error case - scsi: pmcraid: Fix missing resource cleanup in error case - ALSA: hda/realtek - Add HW8326 support - virtio-mmio: fix missing put_device() when vm_cmdline_parent registration failed - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - random: credit cpu and bootloader seeds by default - pNFS: Don't keep retrying if the server replied NFS4ERR_LAYOUTUNAVAILABLE - pNFS: Avoid a live lock condition in pnfs_update_layout() - [x86] clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() - i40e: Fix adding ADQ filter to TC0 - i40e: Fix calculating the number of queue pairs - i40e: Fix call trace in setup_tx_descriptors - [x86] Drivers: hv: vmbus: Release cpu lock in error case - [x86] drm/i915/reset: Fix error_state_read ptr + offset use - nvme: use sysfs_emit instead of sprintf - nvme: add device name to warning in uuid_show() - net: ax25: Fix deadlock caused by skb_recv_datagram in ax25_recvmsg - [arm64] ftrace: fix branch range checks - [arm64] ftrace: consistently handle PLTs. - block: Fix handling of offline queues in blk_mq_alloc_request_hctx() - faddr2line: Fix overlapping text section failures, the sequel - [arm64,armhf] irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions - [arm64,armhf] irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - i2c: designware: Use standard optional ref clock implementation - [x86] mei: me: add raptor lake point S DID - [x86] comedi: vmk80xx: fix expression for tx buffer size - USB: serial: option: add support for Cinterion MV31 with new baseline - USB: serial: io_ti: add Agilent E5805A support - [arm*] usb: dwc2: Fix memory leak in dwc2_hcd_init - serial: 8250: Store to lsr_save_flags after lsr read - dm mirror log: round up region bitmap size to BITS_PER_LONG - drm/amd/display: Cap OLED brightness per max frame-average luminance - ext4: fix bug_on ext4_mb_use_inode_pa - ext4: make variable "count" signed - ext4: add reserved GDT blocks check - [arm64] KVM: arm64: Don't read a HW interrupt pending state in user context - [x86] KVM: x86: Account a variety of miscellaneous allocations - [x86] KVM: SVM: Use kzalloc for sev ioctl interfaces to prevent kernel data leak - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machine - virtio-pci: Remove wrong address verification in vp_del_vqs() - dma-direct: don't over-decrypt memory - net/sched: act_police: more accurate MTU policing - net: openvswitch: fix misuse of the cached connection on tuple changes - Revert "PCI: Make pci_enable_ptm() private" - igc: Enable PCIe PTM - [arm64] clk: imx8mp: fix usb_root_clk parent https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.125 - [s390x] mm: use non-quiescing sske for KVM switch to keyed guest - zonefs: fix zonefs_iomap_begin() for reads - usb: gadget: u_ether: fix regression in setting fixed MAC address - tcp: add some entropy in __inet_hash_connect() - tcp: use different parts of the port_offset for index and offset (CVE-2022-1012) - tcp: add small random increments to the source port (CVE-2022-1012) - tcp: dynamically allocate the perturb table used by source ports (CVE-2022-1012) - tcp: increase source port perturb table to 2^16 (CVE-2022-1012, CVE-2022-32296) - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012) - serial: core: Initialize rs485 RTS polarity already on probe - [arm64] mm: Don't invalidate FROM_DEVICE buffers at start of DMA transfer - io_uring: add missing item types for various requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.126 - io_uring: use separate list entry for iopoll requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.127 - vt: drop old FONT ioctls - random: schedule mix_interrupt_randomness() less often - random: quiet urandom warning ratelimit suppression message - ALSA: hda/via: Fix missing beep setup - ALSA: hda/conexant: Fix missing beep setup - ALSA: hda/realtek: Add mute LED quirk for HP Omen laptop - ALSA: hda/realtek - ALC897 headset MIC no sound - ALSA: hda/realtek: Apply fixup for Lenovo Yoga Duet 7 properly - ALSA: hda/realtek: Add quirk for Clevo PD70PNT - ALSA: hda/realtek: Add quirk for Clevo NS50PU - net: openvswitch: fix parsing of nw_proto for IPv6 fragments - btrfs: add error messages to all unrecognized mount options - mmc: sdhci-pci-o2micro: Fix card detect by dealing with debouncing - [armhf] mtd: rawnand: gpmi: Fix setting busy timeout setting - ata: libata: add qc->flags in ata_qc_complete_template tracepoint - dm era: commit metadata in postsuspend after worker stops - dm mirror log: clear log bits up to BITS_PER_LONG boundary - USB: serial: option: add Telit LE910Cx 0x1250 composition - USB: serial: option: add Quectel EM05-G modem - USB: serial: option: add Quectel RM500K module support - [arm64] drm/msm: Fix double pm_runtime_disable() call - netfilter: nftables: add nft_parse_register_load() and use it - netfilter: nftables: add nft_parse_register_store() and use it - netfilter: use get_random_u32 instead of prandom - scsi: scsi_debug: Fix zone transition to full condition - [arm64] drm/msm: use for_each_sgtable_sg to iterate over scatterlist - bpf: Fix request_sock leak in sk lookup helpers - [arm64,armhf] drm/sun4i: Fix crash during suspend after component bind failure - [amd64] bpf, x86: Fix tail call count offset calculation on bpf2bpf call - phy: aquantia: Fix AN when higher speeds than 1G are not advertised - tipc: simplify the finalize work queue - tipc: fix use-after-free Read in tipc_named_reinit - igb: fix a use-after-free issue in igb_clean_tx_ring - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - [arm64] drm/msm/mdp4: Fix refcount leak in mdp4_modeset_init_intf - [arm64] drm/msm/dp: check core_initialized before disable interrupts at dp_display_unbind() - [arm64] drm/msm/dp: fixes wrong connection state caused by failure of link train - [arm64] drm/msm/dp: deinitialize mainlink if link training failed - [arm64] drm/msm/dp: promote irq_hpd handle to handle link training correctly - [arm64] drm/msm/dp: fix connect/disconnect handled at irq_hpd - erspan: do not assume transport header is always set - x86/xen: Remove undefined behavior in setup_features() - afs: Fix dynamic root getattr - ice: ethtool: advertise 1000M speeds properly - regmap-irq: Fix a bug in regmap_irq_enable() for type_in_mask chips - igb: Make DMA faster when CPU is active on the PCIe link - virtio_net: fix xdp_rxq_info bug after suspend/resume - nvme: centralize setting the timeout in nvme_alloc_request - nvme: split nvme_alloc_request() - nvme: mark nvme_setup_passsthru() inline - nvme: don't check nvme_req flags for new req - nvme-pci: allocate nvme_command within driver pdu - nvme-pci: add NO APST quirk for Kioxia device - nvme: move the Samsung X5 quirk entry to the core quirks - [s390x] cpumf: Handle events cycles and instructions identical - iio: mma8452: fix probe fail when device tree compatible is used. - iio: adc: vf610: fix conversion mode sysfs node name - xhci: turn off port power in shutdown - xhci-pci: Allow host runtime PM as default for Intel Raptor Lake xHCI - xhci-pci: Allow host runtime PM as default for Intel Meteor Lake xHCI - [arm64,armhf] usb: chipidea: udc: check request status before setting device address - f2fs: attach inline_data after setting compression - iio:accel:bma180: rearrange iio trigger get and register - iio:accel:mxc4005: rearrange iio trigger get and register - iio: accel: mma8452: ignore the return value of reset operation - iio: gyro: mpu3050: Fix the error handling in mpu3050_power_up() - iio: imu: inv_icm42600: Fix broken icm42600 (chip id 0 value) - iio: adc: axp288: Override TS pin bias current for some models - iio: adc: adi-axi-adc: Fix refcount leak in adi_axi_adc_attach_client - [powerpc*] Enable execve syscall exit tracepoint - [powerpc*] rtas: Allow ibm,platform-dump RTAS call with null buffer address - [powerpc*] powernv: wire up rng during setup_arch - [armhf] exynos: Fix refcount leak in exynos_map_pmu - modpost: fix section mismatch check for exported init/exit sections - random: update comment from copy_to_user() -> copy_to_iter() - [powerpc*] pseries: wire up rng during setup_arch() . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.120-rt70 * [rt] Drop "crypto: cryptd - add a lock instead preempt_disable/local_bh_disable" patch * Bump ABI to 16 . [ Ben Hutchings ] * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off * [armel,armhf] crypto: Enable optimised implementations (see #922204): - Enable CRYPTO_SHA256_ARM, CRYPTO_SHA512_ARM as modules - [armhf] Enable SHA1_ARM_NEON, CRYPTO_SHA1_ARM_CE, CRYPTO_SHA2_ARM_CE, CRYPTO_AES_ARM_BS, CRYPTO_AES_ARM_CE, CRYPTO_GHASH_ARM_CE, CRYPTO_CRCT10DIF_ARM_CE, CRYPTO_CRC32_ARM_CE as modules linux-signed-amd64 (5.10.140+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.140-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.137 - Makefile: link with -z noexecstack --no-warn-rwx-segments - [x86] link vdso and boot with -z noexecstack --no-warn-rwx-segments - Revert "pNFS: nfs3_set_ds_client should set NFS_CS_NOPING" - scsi: Revert "scsi: qla2xxx: Fix disk failure to rediscover" - ALSA: bcd2000: Fix a UAF bug on the error path of probing - ALSA: hda/realtek: Add quirk for Clevo NV45PZ - ALSA: hda/realtek: Add quirk for HP Spectre x360 15-eb0xxx - wifi: mac80211_hwsim: fix race condition in pending packet - wifi: mac80211_hwsim: add back erroneously removed cast - wifi: mac80211_hwsim: use 32-bit skb cookie - add barriers to buffer_uptodate and set_buffer_uptodate - HID: wacom: Only report rotation for art pen - HID: wacom: Don't register pad_input for touch switch - [x86] KVM: nVMX: Snapshot pre-VM-Enter BNDCFGS for !nested_run_pending case - [x86] KVM: nVMX: Snapshot pre-VM-Enter DEBUGCTL for !nested_run_pending case - [x86] KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 - [s390x] KVM: s390: pv: don't present the ecall interrupt twice - [x86] KVM: nVMX: Let userspace set nVMX MSR to any _host_ supported value - [x86] KVM: x86: Mark TSS busy during LTR emulation _after_ all fault checks - [x86] KVM: x86: Set error code to segment selector on LLDT/LTR non-canonical #GP - [x86] KVM: x86: Tag kvm_mmu_x86_module_init() with __init - mm: Add kvrealloc() - xfs: only set IOMAP_F_SHARED when providing a srcmap to a write - xfs: fix I_DONTCACHE - mm/mremap: hold the rmap lock in write mode when moving page table entries. - ALSA: hda/conexant: Add quirk for LENOVO 20149 Notebook model - ALSA: hda/cirrus - support for iMac 12,1 model - ALSA: hda/realtek: Add quirk for another Asus K42JZ model - ALSA: hda/realtek: Add a quirk for HP OMEN 15 (8786) mute LED - tty: vt: initialize unicode screen buffer - vfs: Check the truncate maximum size in inode_newsize_ok() - fs: Add missing umask strip in vfs_tmpfile - thermal: sysfs: Fix cooling_device_stats_setup() error code path - fbcon: Fix boundary checks for fbcon=vc:n1-n2 parameters - fbcon: Fix accelerated fbdev scrolling while logo is still shown - usbnet: Fix linkwatch use-after-free on disconnect - ovl: drop WARN_ON() dentry is NULL in ovl_encode_fh() - drm/gem: Properly annotate WW context on drm_gem_lock_reservations() error - [arm*] drm/vc4: hdmi: Disable audio if dmas property is present but empty - drm/nouveau: fix another off-by-one in nvbios_addr - drm/nouveau: Don't pm_runtime_put_sync(), only pm_runtime_put_autosuspend() - drm/nouveau/acpi: Don't print error when we get -EINPROGRESS from pm_runtime - drm/amdgpu: Check BO's requested pinning domains against its preferred_domains - iio: light: isl29028: Fix the warning in isl29028_remove() - scsi: sg: Allow waiting for commands to complete on removed device - scsi: qla2xxx: Fix incorrect display of max frame size - scsi: qla2xxx: Zero undefined mailbox IN registers - fuse: limit nsec - [arm64] serial: mvebu-uart: uart2 error bits clearing - md-raid: destroy the bitmap after destroying the thread - md-raid10: fix KASAN warning - PCI: Add defines for normal and subtractive PCI bridges - [powerpc*] powernv: Avoid crashing if rng is NULL - [mips64el,mipsel] cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK - usb: typec: ucsi: Acknowledge the GET_ERROR_STATUS command completion - USB: HCD: Fix URB giveback issue in tasklet function - [arm64,armhf] usb: dwc3: gadget: refactor dwc3_repare_one_trb - [arm64,armhf] usb: dwc3: gadget: fix high speed multiplier setting - netfilter: nf_tables: fix null deref due to zeroed list head - epoll: autoremove wakers even more aggressively - [x86] Handle idle=nomwait cmdline properly for x86_idle - [arm64] Do not forget syscall when starting a new thread. - [arm64] fix oops in concurrently setting insn_emulation sysctls - genirq: Don't return error on missing optional irq_request_resources() - [mips64el,mipsel] irqchip/mips-gic: Only register IPI domain when SMP is enabled - genirq: GENERIC_IRQ_IPI depends on SMP - [mips64el,mipsel] irqchip/mips-gic: Check the return value of ioremap() in gic_of_init() - wait: Fix __wait_event_hrtimeout for RT/DL tasks - [armhf] OMAP2+: display: Fix refcount leak bug - ACPI: EC: Remove duplicate ThinkPad X1 Carbon 6th entry from DMI quirks - ACPI: EC: Drop the EC_FLAGS_IGNORE_DSDT_GPE quirk - ACPI: PM: save NVS memory for Lenovo G40-45 - ACPI: LPSS: Fix missing check in register_device_clock() - [arm64] dts: allwinner: a64: orangepi-win: Fix LED node name - PM: hibernate: defer device probing when resuming from hibernation - selinux: Add boundary check in put_entry() - [armel,armhf] findbit: fix overflowing offset - [arm64,armhf] meson-mx-socinfo: Fix refcount leak in meson_mx_socinfo_init - ACPI: processor/idle: Annotate more functions to live in cpuidle section - Input: atmel_mxt_ts - fix up inverted RESET handler - [arm64] soc: amlogic: Fix refcount leak in meson-secure-pwrc.c - [x86] pmem: Fix platform-device leak in error path - [armhf] dts: ast2500-evb: fix board compatible - [armhf] dts: ast2600-evb: fix board compatible - [arm64] cpufeature: Allow different PMU versions in ID_DFR0_EL1 - locking/lockdep: Fix lockdep_init_map_*() confusion - [arm64] soc: fsl: guts: machine variable might be unset - block: fix infinite loop for invalid zone append - [armhf] OMAP2+: Fix refcount leak in omapdss_init_of - [armhf] OMAP2+: Fix refcount leak in omap3xxx_prm_late_init - [arm64] regulator: qcom_smd: Fix pm8916_pldo range - [arm64] ACPI: APEI: Fix _EINJ vs EFI_MEMORY_SP - [arm64] bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - erofs: avoid consecutive detection for Highmem memory - blk-mq: don't create hctx debugfs dir until q->debugfs_dir is created - hwmon: (drivetemp) Add module alias - block: remove the request_queue to argument request based tracepoints - blktrace: Trace remapped requests correctly - regulator: of: Fix refcount leak bug in of_get_regulation_constraints() - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - dm: return early from dm_pr_call() if DM device is suspended - ath10k: do not enforce interrupt trigger type - wifi: rtlwifi: fix error codes in rtl_debugfs_set_write_h2c() - ath11k: fix netdev open race - drm/mipi-dbi: align max_chunk to 2 in spi_transfer - ath11k: Fix incorrect debug_mask mappings - drm/radeon: fix potential buffer overflow in ni_set_mc_special_registers() - virtio-gpu: fix a missing check to avoid NULL dereference - [arm64] drm: adv7511: override i2c address of cec before accessing it - net: fix sk_wmem_schedule() and sk_rmem_schedule() errors - i2c: Fix a potential use after free - media: tw686x: Register the irq at the end of probe - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb (CVE-2022-1679) - wifi: iwlegacy: 4965: fix potential off-by-one overflow in il4965_rs_fill_link_cmd() - drm/radeon: fix incorrrect SPDX-License-Identifiers - [amd64] crypto: ccp - During shutdown, check SEV data pointer before using - [arm64] drm: bridge: adv7511: Add check for mipi_dsi_driver_register - media: hdpvr: fix error value returns in hdpvr_read - [arm64,armhf] media: v4l2-mem2mem: prevent pollerr when last_buffer_dequeued is set - media: tw686x: Fix memory leak in tw686x_video_init - [arm*] drm/vc4: plane: Remove subpixel positioning check - [arm*] drm/vc4: plane: Fix margin calculations for the right/bottom edges - [arm*] drm/vc4: dsi: Correct DSI divider calculations - [arm*] drm/vc4: dsi: Correct pixel order for DSI0 - [arm*] drm/vc4: drv: Remove the DSI pointer in vc4_drv - [arm*] drm/vc4: dsi: Use snprintf for the PHY clocks instead of an array - [arm*] drm/vc4: dsi: Introduce a variant structure - [arm*] drm/vc4: dsi: Register dsi0 as the correct vc4 encoder type - [arm*] drm/vc4: dsi: Fix dsi0 interrupt support - [arm*] drm/vc4: dsi: Add correct stop condition to vc4_dsi_encoder_disable iteration - [arm*] drm/vc4: hdmi: Remove firmware logic for MAI threshold setting - [arm*] drm/vc4: hdmi: Avoid full hdmi audio fifo writes - [arm*] drm/vc4: hdmi: Don't access the connector state in reset if kmalloc fails - [arm*] drm/vc4: hdmi: Limit the BCM2711 to the max without scrambling - [arm*] drm/vc4: hdmi: Fix timings for interlaced modes - [arm*] drm/vc4: hdmi: Correct HDMI timing registers for interlaced modes - [arm64,armhf] drm/rockchip: vop: Don't crash for invalid duplicate_state() - [arm64,armhf] drm/rockchip: Fix an error handling path rockchip_dp_probe() - lib: bitmap: order includes alphabetically - lib: bitmap: provide devm_bitmap_alloc() and devm_bitmap_zalloc() - hinic: Use the bitmap API when applicable - net: hinic: fix bug that ethtool get wrong stats - net: hinic: avoid kernel hung in hinic_get_stats64() - [arm64] drm/msm/mdp5: Fix global state lock backoff - mt76: mt76x02u: fix possible memory leak in __mt76x02u_mcu_send_msg - mediatek: mt76: mac80211: Fix missing of_node_put() in mt76_led_init() - tcp: make retransmitted SKB fit into the send window - bpf: Fix subprog names in stack traces. - fs: check FMODE_LSEEK to control internal pipe splicing - wifi: wil6210: debugfs: fix info leak in wil_write_file_wmi() - [i386] can: pch_can: do not report txerr and rxerr during bus-off - can: sja1000: do not report txerr and rxerr during bus-off - [armhf] can: sun4i_can: do not report txerr and rxerr during bus-off - can: kvaser_usb_hydra: do not report txerr and rxerr during bus-off - can: kvaser_usb_leaf: do not report txerr and rxerr during bus-off - can: usb_8dev: do not report txerr and rxerr during bus-off - can: error: specify the values of data[5..7] of CAN error frames - [i386] can: pch_can: pch_can_error(): initialize errc before using it - Bluetooth: hci_intel: Add check for platform_driver_register - wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` - wifi: iwlwifi: mvm: fix double list_add at iwl_mvm_mac_wake_tx_queue - wifi: libertas: Fix possible refcount leak in if_usb_probe() - [arm64,armhf] media: cedrus: hevc: Add check for invalid timestamp - net/mlx5e: Remove WARN_ON when trying to offload an unsupported TLS cipher/version - net/mlx5e: Fix the value of MLX5E_MAX_RQ_NUM_MTTS - [arm64] crypto: inside-secure - Add missing MODULE_DEVICE_TABLE for of - inet: add READ_ONCE(sk->sk_bound_dev_if) in INET_MATCH() - tcp: sk->sk_bound_dev_if once in inet_request_bound_dev_if() - ipv6: add READ_ONCE(sk->sk_bound_dev_if) in INET6_MATCH() - tcp: Fix data-races around sysctl_tcp_l3mdev_accept. - net: allow unbound socket for packets in VRF when tcp_l3mdev_accept set - iavf: Fix max_rate limiting - net: rose: fix netdev reference changes - dccp: put dccp_qpolicy_full() and dccp_qpolicy_push() in the same lock - wireguard: ratelimiter: use hrtimer in selftest - wireguard: allowedips: don't corrupt stack when detecting overflow - HID: cp2112: prevent a buffer overflow in cp2112_xfer() - mtd: partitions: Fix refcount leak in parse_redboot_of - [arm64,armhf] usb: xhci: tegra: Fix error check - netfilter: xtables: Bring SPDX identifier back - [arm64,armhf] platform/chrome: cros_ec: Always expose last resume result - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - mwifiex: Ignore BTCOEX events from the 88W8897 firmware - mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv - misc: rtsx: Fix an error handling path in rtsx_pci_probe() - driver core: fix potential deadlock in __driver_attach - usb: host: xhci: use snprintf() in xhci_decode_trb() - [arm64,armhf] PCI: dwc: Add unroll iATU space support to dw_pcie_disable_atu() - [arm64,armhf] PCI: dwc: Always enable CDM check if "snps,enable-cdm-check" exists - soundwire: bus_type: fix remove and shutdown support - [arm64] KVM: arm64: Don't return from void function - [x86] intel_th: Fix a resource leak in an error handling path - [x86] intel_th: msu-sink: Potential dereference of null pointer - [x86] intel_th: msu: Fix vmalloced buffers - [x86] staging: rtl8192u: Fix sleep in atomic context bug in dm_fsync_timer_callback - [arm64] mmc: sdhci-of-esdhc: Fix refcount leak in esdhc_signal_voltage_switch - mmc: block: Add single read for 4k sector cards - [s390x] KVM: s390: pv: leak the topmost page table when destroy fails - PCI/portdrv: Don't disable AER reporting in get_port_device_capability() - [arm64] PCI: qcom: Set up rev 2.1.0 PARF_PHY before enabling clocks - scsi: smartpqi: Fix DMA direction for RAID requests - [armhf] usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc() - [arm64,armhf] usb: dwc3: core: Deprecate GCTL.CORESOFTRESET - [arm64,armhf] usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - [arm64,armhf] usb: dwc3: qcom: fix missing optional irq warnings - RDMA/qedr: Improve error logs for rdma_alloc_tid error return - RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() - [arm64] RDMA/hns: Fix incorrect clearing of interrupt status register - [amd64] RDMA/hfi1: fix potential memory leak in setup_base_ctxt() - gpio: gpiolib-of: Fix refcount bugs in of_mm_gpiochip_add_data() - [mips64el,mipsel] mmc: cavium-octeon: Add of_node_put() when breaking out of loop - HID: alps: Declare U1_UNICORN_LEGACY support - USB: serial: fix tty-port initialized comments - [armhf,i386] platform/olpc: Fix uninitialized data in debugfs write - RDMA/srpt: Duplicate port name members - RDMA/srpt: Introduce a reference count in struct srpt_device - RDMA/srpt: Fix a use-after-free - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - RDMA/mlx5: Add missing check for return value in get namespace flow - RDMA/rxe: Fix error unwind in rxe_create_qp() - null_blk: fix ida error handling in null_add_dev() - nvme: use command_id instead of req->tag in trace_nvme_complete_rq() - jbd2: fix outstanding credits assert in jbd2_journal_commit_transaction() - ext4: recover csum seed of tmp_inode after migrating to extents - jbd2: fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - opp: Fix error check in dev_pm_opp_attach_genpd() - serial: 8250: Export ICR access helpers for internal use - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - profiling: fix shift too large makes kernel panic - tty: n_gsm: Delete gsmtty open SABM frame when config requester - tty: n_gsm: fix user open not possible at responder until initiator open - tty: n_gsm: fix wrong queuing behavior in gsm_dlci_data_output() - tty: n_gsm: fix non flow control frames during mux flow off - tty: n_gsm: fix packet re-transmission without open control channel - tty: n_gsm: fix race condition in gsmld_write() - [arm64] ASoC: qcom: Fix missing of_node_put() in asoc_qcom_lpass_cpu_platform_probe() - vfio: Remove extra put/gets around vfio_device->group - vfio: Simplify the lifetime logic for vfio_device - vfio: Split creation of a vfio_device into init and register ops - tty: n_gsm: fix wrong T1 retry count handling - tty: n_gsm: fix DM command - tty: n_gsm: fix missing corner cases in gsmld_poll() - kfifo: fix kfifo_to_user() return type - lib/smp_processor_id: fix imbalanced instrumentation_end() call - [arm64] mfd: max77620: Fix refcount leak in max77620_initialise_fps - [arm64] iommu/arm-smmu: qcom_iommu: Add of_node_put() when breaking out of loop - [s390x] dump: fix old lowcore virtual vs physical address confusion - fuse: Remove the control interface for virtio-fs - [armhf] ASoC: audio-graph-card: Add of_node_put() in fail path - [arm64] watchdog: armada_37xx_wdt: check the return value of devm_ioremap() in armada_37xx_wdt_probe() - [arm64,armhf] video: fbdev: amba-clcd: Fix refcount leak bugs - video: fbdev: sis: fix typos in SiS_GetModeID() - [powerpc*] pci: Prefer PCI domain assignment via DT 'linux,pci-domain' and alias - f2fs: don't set GC_FAILURE_PIN for background GC - f2fs: write checkpoint during FG_GC - f2fs: fix to remove F2FS_COMPR_FL and tag F2FS_NOCOMP_FL at the same time - [powerpc*] xive: Fix refcount leak in xive_get_max_prio - kprobes: Forbid probing on trampoline and BPF code areas - [powerpc*] pci: Fix PHB numbering when using opal-phbid - sched/deadline: Merge dl_task_can_attach() and dl_cpu_busy() - sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed - [amd64] x86/numa: Use cpumask_available instead of hardcoded NULL check - video: fbdev: arkfb: Fix a divide-by-zero bug in ark_set_pixclock() - sched: Fix the check of nr_running at queue wakelist - video: fbdev: vt8623fb: Check the size of screen before memset_io() - video: fbdev: arkfb: Check the size of screen before memset_io() - video: fbdev: s3fb: Check the size of screen before memset_io() - [s390x] scsi: zfcp: Fix missing auto port scan and thus missing target ports - scsi: qla2xxx: Fix discovery issues in FC-AL topology - scsi: qla2xxx: Turn off multi-queue for 8G adapters - scsi: qla2xxx: Fix erroneous mailbox timeout after PCI error injection - scsi: qla2xxx: Fix losing FCP-2 targets on long port disable with I/Os - scsi: qla2xxx: Fix losing FCP-2 targets during port perturbation tests - [x86] bugs: Enable STIBP for IBPB mitigated RETBleed - [x86] ftrace/x86: Add back ftrace_expected assignment - __follow_mount_rcu(): verify that mount_lock remains unchanged - spmi: trace: fix stack-out-of-bound access in SPMI tracing functions - [x86] drm/i915/dg1: Update DMC_DEBUG3 register - HID: Ignore battery for Elan touchscreen on HP Spectre X360 15-df0xxx - HID: hid-input: add Surface Go battery quirk - [arm*] drm/vc4: drv: Adopt the dma configuration from the HVS or V3D component - usbnet: smsc95xx: Don't clear read-only PHY interrupt - usbnet: smsc95xx: Avoid link settings race on interrupt reception - [x86] intel_th: pci: Add Meteor Lake-P support - [x86] intel_th: pci: Add Raptor Lake-S PCH support - [x86] intel_th: pci: Add Raptor Lake-S CPU support - [x86] KVM: set_msr_mce: Permit guests to ignore single-bit ECC errors - [x86] KVM: x86: Signal #GP, not -EPERM, on bad WRMSR(MCi_CTL/STATUS) - [amd64] iommu/vt-d: avoid invalid memory access via node_online(NUMA_NO_NODE) - PCI/AER: Write AER Capability only when we control it - PCI/ERR: Bind RCEC devices to the Root Port driver - PCI/ERR: Rename reset_link() to reset_subordinates() - PCI/ERR: Simplify by using pci_upstream_bridge() - PCI/ERR: Simplify by computing pci_pcie_type() once - PCI/ERR: Use "bridge" for clarity in pcie_do_recovery() - PCI/ERR: Avoid negated conditional for clarity - PCI/ERR: Add pci_walk_bridge() to pcie_do_recovery() - PCI/ERR: Recover from RCEC AER errors - PCI/AER: Iterate over error counters instead of error strings - serial: 8250: Dissociate 4MHz Titan ports from Oxford ports - serial: 8250: Correct the clock for OxSemi PCIe devices - serial: 8250_pci: Refactor the loop in pci_ite887x_init() - serial: 8250_pci: Replace dev_*() by pci_*() macros - serial: 8250: Fold EndRun device support into OxSemi Tornado code - dm writecache: set a default MAX_WRITEBACK_JOBS - dm thin: fix use-after-free crash in dm_sm_register_threshold_callback - timekeeping: contribute wall clock to rng on time change - btrfs: reject log replay if there is unsupported RO compat flag - btrfs: reset block group chunk force if we have to wait - [amd64,arm64] ACPI: CPPC: Do not prevent CPPC from working in the future - [x86] KVM: VMX: Drop guest CPUID check for VMXE in vmx_set_cr4() - [x86] KVM: VMX: Drop explicit 'nested' check from vmx_set_cr4() - [x86] KVM: SVM: Drop VMXE check from svm_set_cr4() - [x86] KVM: x86: Move vendor CR4 validity check to dedicated kvm_x86_ops hook - [x86] KVM: nVMX: Inject #UD if VMXON is attempted with incompatible CR0/CR4 - [x86] KVM: x86/pmu: preserve IA32_PERF_CAPABILITIES across CPUID refresh - [x86] KVM: x86/pmu: Use binary search to check filtered events - [x86] KVM: x86/pmu: Use different raw event masks for AMD and Intel - [x86] KVM: x86/pmu: Introduce the ctrl_mask value for fixed counter - [x86] KVM: VMX: Mark all PERF_GLOBAL_(OVF)_CTRL bits reserved if there's no vPMU - [x86] KVM: x86/pmu: Ignore pmu->global_ctrl check if vPMU doesn't support global_ctrl - xen-blkback: fix persistent grants negotiation - xen-blkback: Apply 'feature_persistent' parameter when connect - xen-blkfront: Apply 'feature_persistent' parameter when connect - KEYS: asymmetric: enforce SM2 signature use pkey algo - tpm: eventlog: Fix section mismatch for DEBUG_SECTION_MISMATCH - tracing: Use a struct alignof to determine trace event field alignment - ext4: check if directory block is within i_size (CVE-2022-1184) - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - ext4: fix warning in ext4_iomap_begin as race between bmap and write - ext4: make sure ext4_append() always allocates new block - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: fix extent status tree race in writeback error recovery path - ext4: correct max_inline_xattr_value_size computing - ext4: correct the misjudgment in ext4_iget_extra_inode - dm raid: fix address sanitizer warning in raid_resume - dm raid: fix address sanitizer warning in raid_status - KVM: Add infrastructure and macro to mark VM as bugged - [x86] KVM: x86: Check lapic_in_kernel() before attempting to set a SynIC irq (CVE-2022-2153) - [x86] KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() (CVE-2022-2153) - mac80211: fix a memory leak where sta_info is not freed - tcp: fix over estimation in sk_forced_mem_schedule() - Revert "mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv" - [arm*] drm/vc4: change vc4_dma_range_matches from a global to static - Revert "net: usb: ax88179_178a needs FLAG_SEND_ZLP" - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - [x86] kvm: x86/pmu: Fix the compare function used by the pmu event filter - [arm64] tee: add overflow check in register_shm_helper() - net/9p: Initialize the iounit field during fid creation - net_sched: cls_route: disallow handle of 0 - sched/fair: Fix fault in reweight_entity - btrfs: only write the sectors in the vertical stripe which has data stripes - btrfs: raid56: don't trust any cached sector in __raid56_parity_recover() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.138 - ALSA: info: Fix llseek return value when using callback - ALSA: hda/realtek: Add quirk for Clevo NS50PU, NS70PU - [x86] mm: Use proper mask when setting PUD mapping - rds: add missing barrier to release_refill - ata: libata-eh: Add missing command name - [arm64] mmc: meson-gx: Fix an error handling path in meson_mmc_probe() - btrfs: fix lost error handling when looking up extended ref on log replay - tracing: Have filter accept "common_cpu" to be consistent - ALSA: usb-audio: More comprehensive mixer map for ASUS ROG Zenith II - can: ems_usb: fix clang's -Wunaligned-access warning - apparmor: fix quiet_denied for file rules - apparmor: fix absroot causing audited secids to begin with = - apparmor: Fix failed mount permission check error message - apparmor: fix aa_label_asxprint return check - apparmor: fix setting unconfined mode on a loaded profile - apparmor: fix overlapping attachment computation - apparmor: fix reference count leak in aa_pivotroot() - apparmor: Fix memleak in aa_simple_write_to_buffer() - Documentation: ACPI: EINJ: Fix obsolete example - NFSv4.1: Don't decrease the value of seq_nr_highest_sent - NFSv4.1: Handle NFS4ERR_DELAY replies to OP_SEQUENCE correctly - NFSv4: Fix races in the legacy idmapper upcall - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - NFSv4/pnfs: Fix a use-after-free bug in open - bpf: Acquire map uref in .init_seq_private for array map iterator - bpf: Acquire map uref in .init_seq_private for hash map iterator - bpf: Acquire map uref in .init_seq_private for sock local storage map iterator - bpf: Acquire map uref in .init_seq_private for sock{map,hash} iterator - bpf: Check the validity of max_rdwr_access for sock local storage map iterator - can: mcp251x: Fix race condition on receive interrupt - [amd64,arm64] net: atlantic: fix aq_vec index out of range error - sunrpc: fix expiry of auth creds - SUNRPC: Reinitialise the backchannel request buffers before reuse - virtio_net: fix memory leak inside XPD_TX with mergeable - devlink: Fix use-after-free after a failed reload - [arm64] pinctrl: qcom: msm8916: Allow CAMSS GP clocks to be muxed - [arm64,armhf] pinctrl: sunxi: Add I/O bias setting for H6 R-PIO - ACPI: property: Return type of acpi_add_nondev_subnodes() should be bool - geneve: do not use RT_TOS for IPv6 flowlabel - ipv6: do not use RT_TOS for IPv6 flowlabel - [x86] plip: avoid rcu debug splat - vsock: Fix memory leak in vsock_connect() - vsock: Set socket state back to SS_UNCONNECTED in vsock_connect_timeout() - dt-bindings: arm: qcom: fix MSM8916 MTP compatibles - dt-bindings: clock: qcom,gcc-msm8996: add more GCC clock sources - ceph: use correct index when encoding client supported features - ceph: don't leak snap_rwsem in handle_cap_grant - nfp: ethtool: fix the display error of `ethtool -m DEVNAME` - xen/xenbus: fix return type in xenbus_file_read() - atm: idt77252: fix use-after-free bugs caused by tst_timer - geneve: fix TOS inheriting for ipv4 - [arm64] dpaa2-eth: trace the allocated address instead of page struct - iavf: Fix adminq error handling - netfilter: nf_tables: really skip inactive sets when allocating name - netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag - netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified - [powerpc*] pci: Fix get_phb_number() locking - [arm64,armhf] spi: meson-spicc: add local pow2 clock ops to preserve rate between messages - [arm64,armhf] net: dsa: mv88e6060: prevent crash on an unused port - [arm64] net: dsa: felix: fix ethtool 256-511 and 512-1023 TX packet counters - net: genl: fix error path memory leak in policy dumping - ice: Ignore EEXIST when setting promisc mode - [arm64,armhf] i2c: imx: Make sure to unregister adapter on remove() - regulator: pca9450: Remove restrictions for regulator-name - i40e: Fix to stop tx_timeout recovery if GLOBR fails - [arm64,armhf] fec: Fix timer capture timing in `fec_ptp_enable_pps()` - [x86] stmmac: intel: Add a missing clk_disable_unprepare() call in intel_eth_pci_remove() - igb: Add lock to avoid data race - kbuild: fix the modules order between drivers and libs - locking/atomic: Make test_and_*_bit() ordered on failure - [x86] ASoC: SOF: intel: move sof_intel_dsp_desc() forward - [arm64] drm/meson: Fix refcount bugs in meson_vpu_has_available_connectors() - audit: log nftables configuration change events once per table - netfilter: nftables: add helper function to set the base sequence number - netfilter: add helper function to set up the nfnetlink header and use it - [armhf] drm/sun4i: dsi: Prevent underflow when computing packet sizes - PCI: Add ACS quirk for Broadcom BCM5750x NICs - [arm64,armhf] platform/chrome: cros_ec_proto: don't show MKBP version if unsupported - usb: gadget: uvc: call uvc uvcg_warn on completed status instead of uvcg_info - [arm64,armhf] irqchip/tegra: Fix overflow implicit truncation warnings - [arm64] drm/meson: Fix overflow implicit truncation warnings - [armhf] clk: ti: Stop using legacy clkctrl names for omap4 and 5 - [arm*] usb: dwc2: gadget: remove D+ pull-up while no vbus with usb-role-switch - [x86] vboxguest: Do not use devm for irq - uacce: Handle parent device removal or parent driver module rmmod - zram: do not lookup algorithm in backends table - [arm64] clk: qcom: clk-alpha-pll: fix clk_trion_pll_configure description - scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input - gadgetfs: ep_io - wait until IRQ finishes - [x86] pinctrl: intel: Check against matching data instead of ACPI companion - [powerpc*] cxl: Fix a memory leak in an error handling path - [arm64] PCI/ACPI: Guard ARM64-specific mcfg_quirks - RDMA/rxe: Limit the number of calls to each tasklet - md: Notify sysfs sync_completed in md_reap_sync_thread() - nvmet-tcp: fix lockdep complaint on nvmet_tcp_wq flush during queue teardown - drivers:md:fix a potential use-after-free bug - ext4: avoid remove directory when directory is corrupted - ext4: avoid resizing to a partial cluster size - lib/list_debug.c: Detect uninitialized lists - vfio: Clear the caps->buf to NULL after free - [mips64el,mipsel] cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start - modules: Ensure natural alignment for .altinstructions and __bug_table sections - watchdog: export lockup_detector_reconfigure - ALSA: core: Add async signal helpers - ALSA: timer: Use deferred fasync helper - ALSA: control: Use deferred fasync helper - f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() - f2fs: fix to do sanity check on segment type in build_sit_entries() - smb3: check xattr value length earlier - [powerpc*] 64: Init jump labels before parse_early_param() - netfilter: nftables: fix a warning message in nf_tables_commit_audit_collect() - netfilter: nf_tables: fix audit memory leak in nf_tables_commit - tracing/probes: Have kprobes and uprobes use $COMM too - can: j1939: j1939_sk_queue_activate_next_locked(): replace WARN_ON_ONCE with netdev_warn_once() - can: j1939: j1939_session_destroy(): fix memory leak of skbs - PCI/ERR: Retain status from error notification - qrtr: Convert qrtr_ports from IDR to XArray - bpf: Fix KASAN use-after-free Read in compute_effective_progs - [arm64] tee: fix memory leak in tee_shm_register() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.139 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.140 - audit: fix potential double free on error path from fsnotify_add_inode_mark - pinctrl: amd: Don't save/restore interrupt status and wake status bits - xfs: prevent a WARN_ONCE() in xfs_ioc_attr_list() - xfs: reject crazy array sizes being fed to XFS_IOC_GETBMAP* - fs: remove __sync_filesystem - vfs: make sync_filesystem return errors from ->sync_fs - xfs: return errors in xfs_fs_sync_fs - xfs: only bother with sync_filesystem during readonly remount - kernel/sched: Remove dl_boosted flag comment - xfrm: fix refcount leak in __xfrm_policy_check() - xfrm: clone missing x->lastused in xfrm_do_migrate - af_key: Do not call xfrm_probe_algs in parallel (CVE-2022-3028) - xfrm: policy: fix metadata dst->dev xmit null pointer dereference - NFS: Don't allocate nfs_fattr on the stack in __nfs42_ssc_open() - NFSv4.2 fix problems with __nfs42_ssc_open - SUNRPC: RPC level errors should set task->tk_rpc_status - mm/huge_memory.c: use helper function migration_entry_to_page() - mm/smaps: don't access young/dirty bit if pte unpresent - rose: check NULL rose_loopback_neigh->loopback - ice: xsk: Force rings to be sized to power of 2 - ice: xsk: prohibit usage of non-balanced queue id - net/mlx5e: Properly disable vlan strip on non-UL reps - bonding: 802.3ad: fix no transmission of LACPDUs - net: ipvtap - add __init/__exit annotations to module init/exit funcs - netfilter: ebtables: reject blobs that don't provide all entry points - bnxt_en: fix NQ resource accounting during vf creation on 57500 chips - netfilter: nft_payload: report ERANGE for too long offset and length - netfilter: nft_payload: do not truncate csum_offset and csum_type - netfilter: nf_tables: do not leave chain stats enabled on error - netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families - netfilter: nft_tunnel: restrict it to netdev family - netfilter: nftables: remove redundant assignment of variable err - netfilter: nf_tables: consolidate rule verdict trace call - netfilter: nft_cmp: optimize comparison for 16-bytes - netfilter: bitwise: improve error goto labels - netfilter: nf_tables: upfront validation of data via nft_data_init() - netfilter: nf_tables: disallow jump to implicit chain from set element - netfilter: nf_tables: disallow binding to already bound chain (CVE-2022-39190) - tcp: tweak len/truesize ratio for coalesce candidates - net: Fix data-races around sysctl_[rw]mem(_offset)?. - net: Fix data-races around sysctl_[rw]mem_(max|default). - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: Fix data-races around netdev_max_backlog. - net: Fix data-races around netdev_tstamp_prequeue. - ratelimit: Fix data-races in ___ratelimit(). - bpf: Folding omem_charge() into sk_storage_charge() - net: Fix data-races around sysctl_optmem_max. - net: Fix a data-race around sysctl_tstamp_allow_data. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around netdev_budget_usecs. - net: Fix data-races around sysctl_fb_tunnels_only_for_init_net. - net: Fix data-races around sysctl_devconf_inherit_init_net. - net: Fix a data-race around sysctl_somaxconn. - ixgbe: stop resetting SYSTIME in ixgbe_ptp_start_cyclecounter - rxrpc: Fix locking in rxrpc's sendmsg - btrfs: fix silent failure when deleting root reference - btrfs: replace: drop assert for suspended replace - btrfs: add info when mount fails due to stale replace target - btrfs: check if root is readonly while setting security xattr - [x86] perf/x86/lbr: Enable the branch type for the Arch LBR by default - [amd64] x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - [x86] bugs: Add "unknown" reporting for MMIO Stale Data - loop: Check for overflow while configuring loop - asm-generic: sections: refactor memory_intersects - [s390x] fix double free of GS and RI CBs on fork() failure - [x86] ACPI: processor: Remove freq Qos request for all CPUs - xen/privcmd: fix error exit of privcmd_ioctl_dm_op() - mm/hugetlb: fix hugetlb not supporting softdirty tracking - Revert "md-raid: destroy the bitmap after destroying the thread" - md: call __md_stop_writes in md_stop - [arm64] Fix match_list for erratum 1286807 on Arm Cortex-A76 - Documentation/ABI: Mention retbleed vulnerability info file for sysfs - blk-mq: fix io hung due to missing commit_rqs - [x86] perf/x86/intel/uncore: Fix broken read_counter() for SNB IMC PMU - [x86] scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq - bpf: Don't use tnum_range on array range checking for poke descriptors (CVE-2022-2905) . [ Salvatore Bonaccorso ] * Bump ABI to 18 * certs: Rotate to use the "Debian Secure Boot Signer 2022 - linux" certificate (Closes: #1018752) * [x86] nospec: Unwreck the RSB stuffing * [x86] nospec: Fix i386 RSB stuffing (Closes: #1017425) * mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() (CVE-2022-39188) * Revert "PCI/portdrv: Don't disable AER reporting in get_port_device_capability()" * bpf: Don't redirect packets with invalid pkt_len * mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse * net/af_packet: check len when min_header_len equals to 0 linux-signed-amd64 (5.10.136+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.136-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.128 - MAINTAINERS: add Amir as xfs maintainer for 5.10.y - drm: remove drm_fb_helper_modinit - tick/nohz: unexport __init-annotated tick_nohz_full_setup() - bcache: memset on stack variables in bch_btree_check() and bch_sectors_dirty_init() - xfs: use kmem_cache_free() for kmem_cache objects - xfs: punch out data fork delalloc blocks on COW writeback failure - xfs: Fix the free logic of state in xfs_attr_node_hasname - xfs: remove all COW fork extents when remounting readonly - xfs: check sb_meta_uuid for dabuf buffer recovery - [powerpc*] ftrace: Remove ftrace init tramp once kernel init is complete - [arm64] net: mscc: ocelot: allow unregistered IP multicast flooding https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.129 - drm/amdgpu: To flush tlb for MMHUB of RAVEN series - ipv6: take care of disable_policy when restoring routes - nvme-pci: add NVME_QUIRK_BOGUS_NID for ADATA XPG SX6000LNP (AKA SPECTRIX S40G) - nvdimm: Fix badblocks clear off-by-one error - [powerpc*] bpf: Fix use of user_pt_regs in uapi - dm raid: fix accesses beyond end of raid member array - [s390x] archrandom: simplify back to earlier design and initialize earlier - SUNRPC: Fix READ_PLUS crasher (Closes: #1014793) - net: usb: ax88179_178a: Fix packet receiving - virtio-net: fix race between ndo_open() and virtio_device_ready() - [armhf] net: dsa: bcm_sf2: force pause link settings - net: tun: unlink NAPI from device on destruction - net: tun: stop NAPI when detaching queues - net: dp83822: disable false carrier interrupt - net: dp83822: disable rx error interrupt - RDMA/qedr: Fix reporting QP timeout attribute - RDMA/cm: Fix memory leak in ib_cm_insert_listen - linux/dim: Fix divide by 0 in RDMA DIM - usbnet: fix memory allocation in helpers - net: ipv6: unexport __init-annotated seg6_hmac_net_init() - NFSD: restore EINVAL error translation in nfsd_commit() - netfilter: nft_dynset: restore set element counter when failing to update - net/sched: act_api: Notify user space if any actions were flushed before error - net: bonding: fix possible NULL deref in rlb code - net: bonding: fix use-after-free after 802.3ad slave unbind - tipc: move bc link creation back to tipc_node_create - epic100: fix use after free on rmmod - io_uring: ensure that send/sendmsg and recv/recvmsg check sqe->ioprio - tunnels: do not assume mac header is set in skb_tunnel_check_pmtu() - net: tun: avoid disabling NAPI twice - xfs: use current->journal_info for detecting transaction recursion - xfs: rename variable mp to parsing_mp - xfs: Skip repetitive warnings about mount options - xfs: ensure xfs_errortag_random_default matches XFS_ERRTAG_MAX - xfs: fix xfs_trans slab cache name - xfs: update superblock counters correctly for !lazysbcount - xfs: fix xfs_reflink_unshare usage of filemap_write_and_wait_range - tcp: add a missing nf_reset_ct() in 3WHS handling - xen/gntdev: Avoid blocking in unmap_grant_pages() - [arm64] drivers: cpufreq: Add missing of_node_put() in qoriq-cpufreq.c - sit: use min - ipv6/sit: fix ipip6_tunnel_get_prl return value - hwmon: (ibmaem) don't call platform_device_del() if platform_device_add() fails - net: usb: qmi_wwan: add Telit 0x1060 composition - net: usb: qmi_wwan: add Telit 0x1070 composition https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.130 - mm/slub: add missing TID updates on slab deactivation - ALSA: hda/realtek: Add quirk for Clevo L140PU - can: bcm: use call_rcu() instead of costly synchronize_rcu() - can: gs_usb: gs_usb_open/close(): fix memory leak - bpf: Fix incorrect verifier simulation around jmp32's jeq/jne - bpf: Fix insufficient bounds propagation from adjust_scalar_min_max_vals - usbnet: fix memory leak in error case - netfilter: nft_set_pipapo: release elements in clone from abort path - [amd64] iommu/vt-d: Fix PCI bus rescan device hot add - PM: runtime: Redefine pm_runtime_release_supplier() - memregion: Fix memregion_free() fallback definition - video: of_display_timing.h: include errno.h - [powerpc*] powernv: delay rng platform device creation until later in boot - can: kvaser_usb: replace run-time checks with struct kvaser_usb_driver_info - can: kvaser_usb: kvaser_usb_leaf: fix CAN clock frequency regression - can: kvaser_usb: kvaser_usb_leaf: fix bittiming limits - xfs: remove incorrect ASSERT in xfs_rename - [armhf] meson: Fix refcount leak in meson_smp_prepare_cpus - [armhf] pinctrl: sunxi: a83t: Fix NAND function name for some pins - [arm64] dts: imx8mp-evk: correct mmc pad settings - [arm64] dts: imx8mp-evk: correct the uart2 pinctl value - [arm64] dts: imx8mp-evk: correct gpio-led pad settings - [arm64] dts: imx8mp-evk: correct I2C3 pad settings - [arm64,armhf] pinctrl: sunxi: sunxi_pconf_set: use correct offset - [arm64] dts: qcom: msm8992-*: Fix vdd_lvs1_2-supply typo - xsk: Clear page contiguity bit when unmapping pool - i40e: Fix dropped jumbo frames statistics - r8169: fix accessing unset transport header - [armhf] dmaengine: imx-sdma: Allow imx8m for imx7 FW revs - misc: rtsx_usb: fix use of dma mapped buffer for usb bulk transfer - misc: rtsx_usb: use separate command and response buffers - misc: rtsx_usb: set return value in rsp_buf alloc err path - dt-bindings: dma: allwinner,sun50i-a64-dma: Fix min/max typo - ida: don't use BUG_ON() for debugging - [arm64,armhf] dmaengine: pl330: Fix lockdep warning about non-static key - [armhf] dmaengine: ti: Fix refcount leak in ti_dra7_xbar_route_allocate - [armhf] dmaengine: ti: Add missing put_device in ti_dra7_xbar_route_allocate https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.131 - [armhf] Revert "mtd: rawnand: gpmi: Fix setting busy timeout setting" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.132 - [x86] ALSA: hda - Add fixup for Dell Latitidue E5430 - [x86] ALSA: hda/conexant: Apply quirk for another HP ProDesk 600 G3 model - [x86] ALSA: hda/realtek: Fix headset mic for Acer SF313-51 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc221 - [x86] ALSA: hda/realtek - Enable the headset-mic on a Xiaomi's laptop - xen/netback: avoid entering xenvif_rx_next_skb() with an empty rx queue - fix race between exit_itimers() and /proc/pid/timers - mm: split huge PUD on wp_huge_pud fallback - tracing/histograms: Fix memory leak problem - net: sock: tracing: Fix sock_exceed_buf_limit not to dereference stale pointer - ip: fix dflt addr selection for connected nexthop - [armhf] 9213/1: Print message about disabled Spectre workarounds only once - [armel,armhf] 9214/1: alignment: advance IT state after emulating Thumb instruction - wifi: mac80211: fix queue selection for mesh/OCB interfaces - cgroup: Use separate src/dst nodes when preloading css_sets for migration - btrfs: return -EAGAIN for NOWAIT dio reads/writes on compressed and inline extents - [arm64,armhf] drm/panfrost: Put mapping instead of shmem obj on panfrost_mmu_map_fault_addr() error - [arm64,armhf] drm/panfrost: Fix shrinker list corruption by madvise IOCTL - fs/remap: constrain dedupe of EOF blocks - nilfs2: fix incorrect masking of permission flags for symlinks - sh: convert nommu io{re,un}map() to static inline functions - Revert "evm: Fix memleak in init_desc" - ext4: fix race condition between ext4_write and ext4_convert_inline_data - [armhf] dts: imx6qdl-ts7970: Fix ngpio typo and count - [armhf] 9209/1: Spectre-BHB: avoid pr_info() every time a CPU comes out of idle - [armel,armhf] 9210/1: Mark the FDT_FIXED sections as shareable - net/mlx5e: Fix capability check for updating vnic env counters - [x86] drm/i915: fix a possible refcount leak in intel_dp_add_mst_connector() - ima: Fix a potential integer overflow in ima_appraise_measurement - [arm64,armhf] ASoC: sgtl5000: Fix noise on shutdown/remove - [x86] ASoC: Intel: Skylake: Correct the ssp rate discovery in skl_get_ssp_clks() - [x86] ASoC: Intel: Skylake: Correct the handling of fmt_config flexible array - sysctl: Fix data races in proc_dointvec(). - sysctl: Fix data races in proc_douintvec(). - sysctl: Fix data races in proc_dointvec_minmax(). - sysctl: Fix data races in proc_douintvec_minmax(). - sysctl: Fix data races in proc_doulongvec_minmax(). - sysctl: Fix data races in proc_dointvec_jiffies(). - tcp: Fix a data-race around sysctl_tcp_max_orphans. - inetpeer: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - cipso: Fix data-races around sysctl. - icmp: Fix data-races around sysctl. - ipv4: Fix a data-race around sysctl_fib_sync_mem. - [armhf] dts: sunxi: Fix SPI NOR campatible on Orange Pi Zero - [x86] drm/i915/gt: Serialize TLB invalidates with GT resets - sysctl: Fix data-races in proc_dointvec_ms_jiffies(). - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix a data-race around sysctl_icmp_ratemask. - raw: Fix a data-race around sysctl_raw_l3mdev_accept. - ipv4: Fix data-races around sysctl_ip_dynaddr. - nexthop: Fix data-races around nexthop_compat_mode. - [armhf] net: ftgmac100: Hold reference returned by of_get_child_by_name() - ima: force signature verification when CONFIG_KEXEC_SIG is configured - ima: Fix potential memory leak in ima_init_crypto() - sfc: fix use after free when disabling sriov - seg6: fix skb checksum evaluation in SRH encapsulation/insertion - seg6: fix skb checksum in SRv6 End.B6 and End.B6.Encaps behaviors - seg6: bpf: fix skb checksum in bpf_push_seg6_encap() - sfc: fix kernel panic when creating VF - net: atlantic: remove deep parameter on suspend/resume functions - net: atlantic: remove aq_nic_deinit() when resume - [x86] KVM: x86: Fully initialize 'struct kvm_lapic_irq' in kvm_pv_kick_cpu_op() - net/tls: Check for errors in tls_device_init - mm: sysctl: fix missing numa_stat when !CONFIG_HUGETLB_PAGE - virtio_mmio: Add missing PM calls to freeze/restore - virtio_mmio: Restore guest page size on resume - netfilter: br_netfilter: do not skip all hooks with 0 priority - [arm64] scsi: hisi_sas: Limit max hw sectors for v3 HW - [powerpc*] cpufreq: pmac32-cpufreq: Fix refcount leak bug - [x86] platform/x86: hp-wmi: Ignore Sanitization Mode event - net: tipc: fix possible refcount leak in tipc_sk_create() - nvme-tcp: always fail a request when sending it failed - nvme: fix regression when disconnect a recovering ctrl - net: sfp: fix memory leak in sfp_probe() - ASoC: ops: Fix off by one in range control validation - [armhf] pinctrl: aspeed: Fix potential NULL dereference in aspeed_pinmux_set_mux() - [x86] ASoC: SOF: Intel: hda-loader: Clarify the cl_dsp_init() flow - ASoC: dapm: Initialise kcontrol data for mux/demux controls - [amd64] Clear .brk area at early boot - [armhf] dts: stm32: use the correct clock source for CEC on stm32mp151 - Revert "can: xilinx_can: Limit CANFD brp to 2" - nvme-pci: phison e16 has bogus namespace ids - signal handling: don't use BUG_ON() for debugging - USB: serial: ftdi_sio: add Belimo device ids - usb: typec: add missing uevent when partner support PD - [arm64,armhf] usb: dwc3: gadget: Fix event pending check - [armhf] tty: serial: samsung_tty: set dma burst_size to 1 - vt: fix memory overlapping when deleting chars in the buffer - serial: 8250: fix return error code in serial8250_request_std_resource() - [armhf] serial: stm32: Clear prev values before setting RTS delays - [arm*] serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: Fix PM usage_count for console handover - [x86] pat: Fix x86_has_pat_wp() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.133 - [amd64] Preparation for mitigating RETbleed: + KVM/VMX: Use TEST %REG,%REG instead of CMP $0,%REG in vmenter.S + KVM/nVMX: Use __vmx_vcpu_run in nested_vmx_check_vmentry_hw + objtool: Refactor ORC section generation + objtool: Add 'alt_group' struct + objtool: Support stack layout changes in alternatives + objtool: Support retpoline jump detection for vmlinux.o + objtool: Assume only ELF functions do sibling calls + objtool: Combine UNWIND_HINT_RET_OFFSET and UNWIND_HINT_FUNC + x86/xen: Support objtool validation in xen-asm.S + x86/xen: Support objtool vmlinux.o validation in xen-head.S + x86/alternative: Merge include files + x86/alternative: Support not-feature + x86/alternative: Support ALTERNATIVE_TERNARY + x86/alternative: Use ALTERNATIVE_TERNARY() in _static_cpu_has() + x86/insn: Rename insn_decode() to insn_decode_from_regs() + x86/insn: Add a __ignore_sync_check__ marker + x86/insn: Add an insn_decode() API + x86/insn-eval: Handle return values from the decoder + x86/alternative: Use insn_decode() + x86: Add insn_decode_kernel() + x86/alternatives: Optimize optimize_nops() + x86/retpoline: Simplify retpolines + objtool: Correctly handle retpoline thunk calls + objtool: Handle per arch retpoline naming + objtool: Rework the elf_rebuild_reloc_section() logic + objtool: Add elf_create_reloc() helper + objtool: Create reloc sections implicitly + objtool: Extract elf_strtab_concat() + objtool: Extract elf_symbol_add() + objtool: Add elf_create_undef_symbol() + objtool: Keep track of retpoline call sites + objtool: Cache instruction relocs + objtool: Skip magical retpoline .altinstr_replacement + objtool/x86: Rewrite retpoline thunk calls + objtool: Support asm jump tables + x86/alternative: Optimize single-byte NOPs at an arbitrary position + objtool: Fix .symtab_shndx handling for elf_create_undef_symbol() + objtool: Only rewrite unconditional retpoline thunk calls + objtool/x86: Ignore __x86_indirect_alt_* symbols + objtool: Don't make .altinstructions writable + objtool: Teach get_alt_entry() about more relocation types + objtool: print out the symbol type when complaining about it + objtool: Remove reloc symbol type checks in get_alt_entry() + objtool: Make .altinstructions section entry size consistent + objtool: Introduce CFI hash + objtool: Handle __sanitize_cov*() tail calls + objtool: Classify symbols + objtool: Explicitly avoid self modifying code in .altinstr_replacement + objtool,x86: Replace alternatives with .retpoline_sites + x86/retpoline: Remove unused replacement symbols + x86/asm: Fix register order + x86/asm: Fixup odd GEN-for-each-reg.h usage + x86/retpoline: Move the retpoline thunk declarations to nospec-branch.h + x86/retpoline: Create a retpoline thunk array + x86/alternative: Implement .retpoline_sites support + x86/alternative: Handle Jcc __x86_indirect_thunk_\reg + x86/alternative: Try inline spectre_v2=retpoline,amd + x86/alternative: Add debug prints to apply_retpolines() + bpf,x86: Simplify computing label offsets + bpf,x86: Respect X86_FEATURE_RETPOLINE* + x86/lib/atomic64_386_32: Rename things - [amd64] Mitigate straight-line speculation: + x86: Prepare asm files for straight-line-speculation + x86: Prepare inline-asm for straight-line-speculation + x86/alternative: Relax text_poke_bp() constraint + objtool: Add straight-line-speculation validation + x86: Add straight-line-speculation mitigation + tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' + kvm/emulate: Fix SETcc emulation function offsets with SLS + objtool: Default ignore INT3 for unreachable + crypto: x86/poly1305 - Fixup SLS + objtool: Fix SLS validation for kcov tail-call replacement - objtool: Fix code relocs vs weak symbols - objtool: Fix type of reloc::addend - objtool: Fix symbol creation - x86/entry: Remove skip_r11rcx - objtool: Fix objtool regression on x32 systems - x86/realmode: build with -D__DISABLE_EXPORTS - [amd64] Add mitigations for RETbleed on AMD/Hygon (CVE-2022-29900) and Intel (CVE-2022-29901) processors: + x86/kvm/vmx: Make noinstr clean + x86/cpufeatures: Move RETPOLINE flags to word 11 + x86/retpoline: Cleanup some #ifdefery + x86/retpoline: Swizzle retpoline thunk + Makefile: Set retpoline cflags based on CONFIG_CC_IS_{CLANG,GCC} + x86/retpoline: Use -mfunction-return + x86: Undo return-thunk damage + x86,objtool: Create .return_sites + objtool: skip non-text sections when adding return-thunk sites + x86,static_call: Use alternative RET encoding + x86/ftrace: Use alternative RET encoding + x86/bpf: Use alternative RET encoding + x86/kvm: Fix SETcc emulation for return thunks + x86/vsyscall_emu/64: Don't use RET in vsyscall emulation + x86/sev: Avoid using __x86_return_thunk + x86: Use return-thunk in asm code + objtool: Treat .text.__x86.* as noinstr + x86: Add magic AMD return-thunk + x86/bugs: Report AMD retbleed vulnerability + x86/bugs: Add AMD retbleed= boot parameter + x86/bugs: Enable STIBP for JMP2RET + x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value + x86/entry: Add kernel IBRS implementation + x86/bugs: Optimize SPEC_CTRL MSR writes + x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS + x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() + x86/bugs: Report Intel retbleed vulnerability + intel_idle: Disable IBRS during long idle + objtool: Update Retpoline validation + x86/xen: Rename SYS* entry points + x86/bugs: Add retbleed=ibpb + x86/bugs: Do IBPB fallback check only once + objtool: Add entry UNRET validation + x86/cpu/amd: Add Spectral Chicken + x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n + x86/speculation: Fix firmware entry SPEC_CTRL handling + x86/speculation: Fix SPEC_CTRL write on SMT state change + x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit + x86/speculation: Remove x86_spec_ctrl_mask + objtool: Re-add UNWIND_HINT_{SAVE_RESTORE} + KVM: VMX: Flatten __vmx_vcpu_run() + KVM: VMX: Convert launched argument to flags + KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS + KVM: VMX: Fix IBRS handling after vmexit + x86/speculation: Fill RSB on vmexit for IBRS + x86/common: Stamp out the stepping madness + x86/cpu/amd: Enumerate BTC_NO + x86/retbleed: Add fine grained Kconfig knobs + x86/bugs: Add Cannon lake to RETBleed affected CPU list + x86/bugs: Do not enable IBPB-on-entry when IBPB is not supported + x86/kexec: Disable RET on kexec + x86/speculation: Disable RRSBA behavior - x86/static_call: Serialize __static_call_fixup() properly - tools/insn: Restore the relative include paths for cross building - x86, kvm: use proper ASM macros for kvm_vcpu_is_preempted - x86/xen: Fix initialisation in hypercall_page after rethunk - x86/ftrace: Add UNWIND_HINT_FUNC annotation for ftrace_stub - x86/asm/32: Fix ANNOTATE_UNRET_SAFE use on 32-bit - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - efi/x86: use naked RET on mixed mode call wrapper - x86/kvm: fix FASTOP_SIZE when return thunks are enabled - KVM: emulate: do not adjust size of fastop and setcc subroutines - tools arch x86: Sync the msr-index.h copy with the kernel sources - tools headers cpufeatures: Sync with the kernel sources - x86/bugs: Remove apostrophe typo - um: Add missing apply_returns() - x86: Use -mindirect-branch-cs-prefix for RETPOLINE builds - kvm: fix objtool relocation warning - objtool: Fix elf_create_undef_symbol() endianness - tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' - again - tools headers: Remove broken definition of __LITTLE_ENDIAN https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.134 - [armhf] pinctrl: stm32: fix optional IRQ support to gpios - lockdown: Fix kexec lockdown bypass with ima policy (CVE-2022-21505) - io_uring: Use original task for req identity in io_identity_cow() - xen/gntdev: Ignore failure to unmap INVALID_GRANT_HANDLE - docs: net: explain struct net_device lifetime - net: make free_netdev() more lenient with unregistering devices - net: make sure devices go through netdev_wait_all_refs - net: move net_set_todo inside rollback_registered() - net: inline rollback_registered() - net: move rollback_registered_many() - net: inline rollback_registered_many() - [amd64] PCI: hv: Fix multi-MSI to allow more than one MSI vector - [amd64] PCI: hv: Fix hv_arch_irq_unmask() for multi-MSI - [amd64] PCI: hv: Reuse existing IRTE allocation in compose_msi_msg() - [amd64] PCI: hv: Fix interrupt mapping for multi-MSI - [arm64] serial: mvebu-uart: correctly report configured baudrate value - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() (CVE-2022-36879) - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close() - drm/amdgpu/display: add quirk handling for stutter mode - igc: Reinstate IGC_REMOVED logic and implement it properly - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix a data-race around sysctl_ip_autobind_reuse. - ip: Fix a data-race around sysctl_fwmark_reflect. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp: Fix data-races around sysctl_tcp_base_mss. - tcp: Fix data-races around sysctl_tcp_min_snd_mss. - tcp: Fix a data-race around sysctl_tcp_mtu_probe_floor. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - net: stmmac: fix unbalanced ptp clock issue in suspend/resume flow - net: stmmac: fix dma queue left shift overflow issue - igmp: Fix data-races around sysctl_igmp_llm_reports. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_max_msf. - tcp: Fix data-races around keepalive sysctl knobs. - tcp: Fix data-races around sysctl_tcp_syncookies. - tcp: Fix data-races around sysctl_tcp_reordering. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix data-races around sysctl_max_syn_backlog. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix data-races around sysctl_tcp_fastopen_blackhole_timeout. - iavf: Fix handling of dummy receive descriptors - i40e: Fix erroneous adapter reinitialization during recovery process - ixgbe: Add locking to prevent panic when setting sriov_numvfs to zero - [arm64,armhf] gpio: pca953x: only use single read/write for No AI mode - [arm64,armhf] gpio: pca953x: use the correct range when do regmap sync - [arm64,armhf] gpio: pca953x: use the correct register address when regcache sync during init - be2net: Fix buffer overflow in be_get_module_eeprom - ipv4: Fix a data-race around sysctl_fib_multipath_use_neigh. - ip: Fix data-races around sysctl_ip_prot_sock. - udp: Fix a data-race around sysctl_udp_l3mdev_accept. - tcp: Fix data-races around sysctl knobs related to SYN option. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix data-races around sysctl_tcp_max_reordering. - [arm*] spi: bcm2835: bcm2835_spi_handle_err(): fix NULL pointer deref for non DMA transfers - KVM: Don't null dereference ops->destroy - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - bpf: Make sure mac_header was set before using it - sched/deadline: Fix BUG_ON condition for deboosted tasks - [x86] bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - dlm: fix pending remove if msg allocation fails - bitfield.h: Fix "type of reg too small for mask" test - ALSA: memalloc: Align buffer allocations in page size - Bluetooth: Add bt_skb_sendmsg helper - Bluetooth: Add bt_skb_sendmmsg helper - Bluetooth: SCO: Replace use of memcpy_from_msg with bt_skb_sendmsg - Bluetooth: RFCOMM: Replace use of memcpy_from_msg with bt_skb_sendmmsg - Bluetooth: Fix passing NULL to PTR_ERR - Bluetooth: SCO: Fix sco_send_frame returning skb->len - Bluetooth: Fix bt_skb_sendmmsg not allocating partial chunks - [x86] amd: Use IBPB for firmware calls - [x86] alternative: Report missing return thunk details - watchqueue: make sure to serialize 'wqueue->defunct' properly - tty: drivers/tty/, stop using tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drop tty_schedule_flip() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - net: usb: ax88179_178a needs FLAG_SEND_ZLP - watch-queue: remove spurious double semicolon https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.135 - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - Revert "ocfs2: mount shared volume without ha stack" - [s390x] archrandom: prevent CPACF trng invocations in interrupt context - watch_queue: Fix missing rcu annotation - watch_queue: Fix missing locking in add_watch_to_object() - tcp: Fix data-races around sysctl_tcp_dsack. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix data-races around sysctl_tcp_no_ssthresh_metrics_save. - ice: check (DD | EOF) bits on Rx descriptor rather than (EOP | RS) - ice: do not setup vlan for loopback VSI - Revert "tcp: change pingpong threshold to 3" - tcp: Fix data-races around sysctl_tcp_moderate_rcvbuf. - tcp: Fix a data-race around sysctl_tcp_limit_output_bytes. - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - net: ping6: Fix memleak in ipv6_renew_options(). - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - igmp: Fix data-races around sysctl_igmp_qrv. - net: sungem_phy: Add of_node_put() for reference returned by of_get_parent() - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - Documentation: fix sctp_wmem in ip-sysctl.rst - macsec: fix NULL deref in macsec_add_rxsa - macsec: fix error message in macsec_add_rxsa and _txsa - macsec: limit replay window size with XPN - macsec: always read MACSEC_SA_ATTR_PN as a u64 - net: macsec: fix potential resource leak in macsec_add_rxsa() and macsec_add_txsa() - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_slack_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix data-races around sysctl_tcp_reflect_tos. - i40e: Fix interface init with MSI interrupts (no MSI-X) - sctp: fix sleep in atomic context bug in timer handlers - netfilter: nf_queue: do not allow packet truncation below transport header offset (CVE-2022-36946) - virtio-net: fix the race between refill work and close - sfc: disable softirqs for ptp TX - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - page_alloc: fix invalid watermark check on a negative value - mt7601u: add USB device ID for some versions of XiaoDu WiFi Dongle. - [arm*] 9216/1: Fix MAX_DMA_ADDRESS overflow - docs/kernel-parameters: Update descriptions for "mitigations=" param with retbleed - xfs: refactor xfs_file_fsync - xfs: xfs_log_force_lsn isn't passed a LSN - xfs: prevent UAF in xfs_log_item_in_current_chkpt - xfs: fix log intent recovery ENOSPC shutdowns when inactivating inodes - xfs: force the log offline when log intent item recovery fails - xfs: hold buffer across unpin and potential shutdown processing - xfs: remove dead stale buf unpin handling code - xfs: logging the on disk inode LSN can make it go backwards - xfs: Enforce attr3 buffer recovery order - [x86] bugs: Do not enable IBPB at firmware entry when IBPB is not available - bpf: Consolidate shared test timing code - bpf: Add PROG_TEST_RUN support for sk_lookup programs https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.136 - [x86] speculation: Make all RETbleed mitigations 64-bit only - ath9k_htc: fix NULL pointer dereference at ath9k_htc_rxep() - ath9k_htc: fix NULL pointer dereference at ath9k_htc_tx_get_packet() - tun: avoid double free in tun_free_netdev - [x86] ACPI: video: Force backlight native for some TongFang devices - [x86] ACPI: video: Shortening quirk list by identifying Clevo by board_name only - ACPI: APEI: Better fix to avoid spamming the console with old error logs - [arm64] crypto: arm64/poly1305 - fix a read out-of-bound - Bluetooth: hci_bcm: Add BCM4349B1 variant - Bluetooth: hci_bcm: Add DT compatible for CYW55572 - Bluetooth: btusb: Add support of IMC Networks PID 0x3568 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04CA:0x4007 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04C5:0x1675 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x0CB8:0xC558 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3587 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3586 - [x86] Add mitigations for Post-Barrier Return Stack Buffer Prediction (PBRSB) issue (CVE-2022-26373): + x86/speculation: Add RSB VM Exit protections + x86/speculation: Add LFENCE to RSB fill sequence . [ Salvatore Bonaccorso ] * Bump ABI to 17 * [rt] Update to 5.10.131-rt72 * posix-cpu-timers: Cleanup CPU timers before freeing them during exec (CVE-2022-2585) * netfilter: nf_tables: do not allow SET_ID to refer to another table (CVE-2022-2586) * netfilter: nf_tables: do not allow CHAIN_ID to refer to another table * netfilter: nf_tables: do not allow RULE_ID to refer to another chain * net_sched: cls_route: remove from list when handle is 0 (CVE-2022-2588) linux-signed-amd64 (5.10.127+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.127-2 . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size linux-signed-amd64 (5.10.127+2~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.127-2~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.deb10.16 linux-signed-arm64 (5.10.140+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.140-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.137 - Makefile: link with -z noexecstack --no-warn-rwx-segments - [x86] link vdso and boot with -z noexecstack --no-warn-rwx-segments - Revert "pNFS: nfs3_set_ds_client should set NFS_CS_NOPING" - scsi: Revert "scsi: qla2xxx: Fix disk failure to rediscover" - ALSA: bcd2000: Fix a UAF bug on the error path of probing - ALSA: hda/realtek: Add quirk for Clevo NV45PZ - ALSA: hda/realtek: Add quirk for HP Spectre x360 15-eb0xxx - wifi: mac80211_hwsim: fix race condition in pending packet - wifi: mac80211_hwsim: add back erroneously removed cast - wifi: mac80211_hwsim: use 32-bit skb cookie - add barriers to buffer_uptodate and set_buffer_uptodate - HID: wacom: Only report rotation for art pen - HID: wacom: Don't register pad_input for touch switch - [x86] KVM: nVMX: Snapshot pre-VM-Enter BNDCFGS for !nested_run_pending case - [x86] KVM: nVMX: Snapshot pre-VM-Enter DEBUGCTL for !nested_run_pending case - [x86] KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 - [s390x] KVM: s390: pv: don't present the ecall interrupt twice - [x86] KVM: nVMX: Let userspace set nVMX MSR to any _host_ supported value - [x86] KVM: x86: Mark TSS busy during LTR emulation _after_ all fault checks - [x86] KVM: x86: Set error code to segment selector on LLDT/LTR non-canonical #GP - [x86] KVM: x86: Tag kvm_mmu_x86_module_init() with __init - mm: Add kvrealloc() - xfs: only set IOMAP_F_SHARED when providing a srcmap to a write - xfs: fix I_DONTCACHE - mm/mremap: hold the rmap lock in write mode when moving page table entries. - ALSA: hda/conexant: Add quirk for LENOVO 20149 Notebook model - ALSA: hda/cirrus - support for iMac 12,1 model - ALSA: hda/realtek: Add quirk for another Asus K42JZ model - ALSA: hda/realtek: Add a quirk for HP OMEN 15 (8786) mute LED - tty: vt: initialize unicode screen buffer - vfs: Check the truncate maximum size in inode_newsize_ok() - fs: Add missing umask strip in vfs_tmpfile - thermal: sysfs: Fix cooling_device_stats_setup() error code path - fbcon: Fix boundary checks for fbcon=vc:n1-n2 parameters - fbcon: Fix accelerated fbdev scrolling while logo is still shown - usbnet: Fix linkwatch use-after-free on disconnect - ovl: drop WARN_ON() dentry is NULL in ovl_encode_fh() - drm/gem: Properly annotate WW context on drm_gem_lock_reservations() error - [arm*] drm/vc4: hdmi: Disable audio if dmas property is present but empty - drm/nouveau: fix another off-by-one in nvbios_addr - drm/nouveau: Don't pm_runtime_put_sync(), only pm_runtime_put_autosuspend() - drm/nouveau/acpi: Don't print error when we get -EINPROGRESS from pm_runtime - drm/amdgpu: Check BO's requested pinning domains against its preferred_domains - iio: light: isl29028: Fix the warning in isl29028_remove() - scsi: sg: Allow waiting for commands to complete on removed device - scsi: qla2xxx: Fix incorrect display of max frame size - scsi: qla2xxx: Zero undefined mailbox IN registers - fuse: limit nsec - [arm64] serial: mvebu-uart: uart2 error bits clearing - md-raid: destroy the bitmap after destroying the thread - md-raid10: fix KASAN warning - PCI: Add defines for normal and subtractive PCI bridges - [powerpc*] powernv: Avoid crashing if rng is NULL - [mips64el,mipsel] cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK - usb: typec: ucsi: Acknowledge the GET_ERROR_STATUS command completion - USB: HCD: Fix URB giveback issue in tasklet function - [arm64,armhf] usb: dwc3: gadget: refactor dwc3_repare_one_trb - [arm64,armhf] usb: dwc3: gadget: fix high speed multiplier setting - netfilter: nf_tables: fix null deref due to zeroed list head - epoll: autoremove wakers even more aggressively - [x86] Handle idle=nomwait cmdline properly for x86_idle - [arm64] Do not forget syscall when starting a new thread. - [arm64] fix oops in concurrently setting insn_emulation sysctls - genirq: Don't return error on missing optional irq_request_resources() - [mips64el,mipsel] irqchip/mips-gic: Only register IPI domain when SMP is enabled - genirq: GENERIC_IRQ_IPI depends on SMP - [mips64el,mipsel] irqchip/mips-gic: Check the return value of ioremap() in gic_of_init() - wait: Fix __wait_event_hrtimeout for RT/DL tasks - [armhf] OMAP2+: display: Fix refcount leak bug - ACPI: EC: Remove duplicate ThinkPad X1 Carbon 6th entry from DMI quirks - ACPI: EC: Drop the EC_FLAGS_IGNORE_DSDT_GPE quirk - ACPI: PM: save NVS memory for Lenovo G40-45 - ACPI: LPSS: Fix missing check in register_device_clock() - [arm64] dts: allwinner: a64: orangepi-win: Fix LED node name - PM: hibernate: defer device probing when resuming from hibernation - selinux: Add boundary check in put_entry() - [armel,armhf] findbit: fix overflowing offset - [arm64,armhf] meson-mx-socinfo: Fix refcount leak in meson_mx_socinfo_init - ACPI: processor/idle: Annotate more functions to live in cpuidle section - Input: atmel_mxt_ts - fix up inverted RESET handler - [arm64] soc: amlogic: Fix refcount leak in meson-secure-pwrc.c - [x86] pmem: Fix platform-device leak in error path - [armhf] dts: ast2500-evb: fix board compatible - [armhf] dts: ast2600-evb: fix board compatible - [arm64] cpufeature: Allow different PMU versions in ID_DFR0_EL1 - locking/lockdep: Fix lockdep_init_map_*() confusion - [arm64] soc: fsl: guts: machine variable might be unset - block: fix infinite loop for invalid zone append - [armhf] OMAP2+: Fix refcount leak in omapdss_init_of - [armhf] OMAP2+: Fix refcount leak in omap3xxx_prm_late_init - [arm64] regulator: qcom_smd: Fix pm8916_pldo range - [arm64] ACPI: APEI: Fix _EINJ vs EFI_MEMORY_SP - [arm64] bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - erofs: avoid consecutive detection for Highmem memory - blk-mq: don't create hctx debugfs dir until q->debugfs_dir is created - hwmon: (drivetemp) Add module alias - block: remove the request_queue to argument request based tracepoints - blktrace: Trace remapped requests correctly - regulator: of: Fix refcount leak bug in of_get_regulation_constraints() - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - dm: return early from dm_pr_call() if DM device is suspended - ath10k: do not enforce interrupt trigger type - wifi: rtlwifi: fix error codes in rtl_debugfs_set_write_h2c() - ath11k: fix netdev open race - drm/mipi-dbi: align max_chunk to 2 in spi_transfer - ath11k: Fix incorrect debug_mask mappings - drm/radeon: fix potential buffer overflow in ni_set_mc_special_registers() - virtio-gpu: fix a missing check to avoid NULL dereference - [arm64] drm: adv7511: override i2c address of cec before accessing it - net: fix sk_wmem_schedule() and sk_rmem_schedule() errors - i2c: Fix a potential use after free - media: tw686x: Register the irq at the end of probe - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb (CVE-2022-1679) - wifi: iwlegacy: 4965: fix potential off-by-one overflow in il4965_rs_fill_link_cmd() - drm/radeon: fix incorrrect SPDX-License-Identifiers - [amd64] crypto: ccp - During shutdown, check SEV data pointer before using - [arm64] drm: bridge: adv7511: Add check for mipi_dsi_driver_register - media: hdpvr: fix error value returns in hdpvr_read - [arm64,armhf] media: v4l2-mem2mem: prevent pollerr when last_buffer_dequeued is set - media: tw686x: Fix memory leak in tw686x_video_init - [arm*] drm/vc4: plane: Remove subpixel positioning check - [arm*] drm/vc4: plane: Fix margin calculations for the right/bottom edges - [arm*] drm/vc4: dsi: Correct DSI divider calculations - [arm*] drm/vc4: dsi: Correct pixel order for DSI0 - [arm*] drm/vc4: drv: Remove the DSI pointer in vc4_drv - [arm*] drm/vc4: dsi: Use snprintf for the PHY clocks instead of an array - [arm*] drm/vc4: dsi: Introduce a variant structure - [arm*] drm/vc4: dsi: Register dsi0 as the correct vc4 encoder type - [arm*] drm/vc4: dsi: Fix dsi0 interrupt support - [arm*] drm/vc4: dsi: Add correct stop condition to vc4_dsi_encoder_disable iteration - [arm*] drm/vc4: hdmi: Remove firmware logic for MAI threshold setting - [arm*] drm/vc4: hdmi: Avoid full hdmi audio fifo writes - [arm*] drm/vc4: hdmi: Don't access the connector state in reset if kmalloc fails - [arm*] drm/vc4: hdmi: Limit the BCM2711 to the max without scrambling - [arm*] drm/vc4: hdmi: Fix timings for interlaced modes - [arm*] drm/vc4: hdmi: Correct HDMI timing registers for interlaced modes - [arm64,armhf] drm/rockchip: vop: Don't crash for invalid duplicate_state() - [arm64,armhf] drm/rockchip: Fix an error handling path rockchip_dp_probe() - lib: bitmap: order includes alphabetically - lib: bitmap: provide devm_bitmap_alloc() and devm_bitmap_zalloc() - hinic: Use the bitmap API when applicable - net: hinic: fix bug that ethtool get wrong stats - net: hinic: avoid kernel hung in hinic_get_stats64() - [arm64] drm/msm/mdp5: Fix global state lock backoff - mt76: mt76x02u: fix possible memory leak in __mt76x02u_mcu_send_msg - mediatek: mt76: mac80211: Fix missing of_node_put() in mt76_led_init() - tcp: make retransmitted SKB fit into the send window - bpf: Fix subprog names in stack traces. - fs: check FMODE_LSEEK to control internal pipe splicing - wifi: wil6210: debugfs: fix info leak in wil_write_file_wmi() - [i386] can: pch_can: do not report txerr and rxerr during bus-off - can: sja1000: do not report txerr and rxerr during bus-off - [armhf] can: sun4i_can: do not report txerr and rxerr during bus-off - can: kvaser_usb_hydra: do not report txerr and rxerr during bus-off - can: kvaser_usb_leaf: do not report txerr and rxerr during bus-off - can: usb_8dev: do not report txerr and rxerr during bus-off - can: error: specify the values of data[5..7] of CAN error frames - [i386] can: pch_can: pch_can_error(): initialize errc before using it - Bluetooth: hci_intel: Add check for platform_driver_register - wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` - wifi: iwlwifi: mvm: fix double list_add at iwl_mvm_mac_wake_tx_queue - wifi: libertas: Fix possible refcount leak in if_usb_probe() - [arm64,armhf] media: cedrus: hevc: Add check for invalid timestamp - net/mlx5e: Remove WARN_ON when trying to offload an unsupported TLS cipher/version - net/mlx5e: Fix the value of MLX5E_MAX_RQ_NUM_MTTS - [arm64] crypto: inside-secure - Add missing MODULE_DEVICE_TABLE for of - inet: add READ_ONCE(sk->sk_bound_dev_if) in INET_MATCH() - tcp: sk->sk_bound_dev_if once in inet_request_bound_dev_if() - ipv6: add READ_ONCE(sk->sk_bound_dev_if) in INET6_MATCH() - tcp: Fix data-races around sysctl_tcp_l3mdev_accept. - net: allow unbound socket for packets in VRF when tcp_l3mdev_accept set - iavf: Fix max_rate limiting - net: rose: fix netdev reference changes - dccp: put dccp_qpolicy_full() and dccp_qpolicy_push() in the same lock - wireguard: ratelimiter: use hrtimer in selftest - wireguard: allowedips: don't corrupt stack when detecting overflow - HID: cp2112: prevent a buffer overflow in cp2112_xfer() - mtd: partitions: Fix refcount leak in parse_redboot_of - [arm64,armhf] usb: xhci: tegra: Fix error check - netfilter: xtables: Bring SPDX identifier back - [arm64,armhf] platform/chrome: cros_ec: Always expose last resume result - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - mwifiex: Ignore BTCOEX events from the 88W8897 firmware - mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv - misc: rtsx: Fix an error handling path in rtsx_pci_probe() - driver core: fix potential deadlock in __driver_attach - usb: host: xhci: use snprintf() in xhci_decode_trb() - [arm64,armhf] PCI: dwc: Add unroll iATU space support to dw_pcie_disable_atu() - [arm64,armhf] PCI: dwc: Always enable CDM check if "snps,enable-cdm-check" exists - soundwire: bus_type: fix remove and shutdown support - [arm64] KVM: arm64: Don't return from void function - [x86] intel_th: Fix a resource leak in an error handling path - [x86] intel_th: msu-sink: Potential dereference of null pointer - [x86] intel_th: msu: Fix vmalloced buffers - [x86] staging: rtl8192u: Fix sleep in atomic context bug in dm_fsync_timer_callback - [arm64] mmc: sdhci-of-esdhc: Fix refcount leak in esdhc_signal_voltage_switch - mmc: block: Add single read for 4k sector cards - [s390x] KVM: s390: pv: leak the topmost page table when destroy fails - PCI/portdrv: Don't disable AER reporting in get_port_device_capability() - [arm64] PCI: qcom: Set up rev 2.1.0 PARF_PHY before enabling clocks - scsi: smartpqi: Fix DMA direction for RAID requests - [armhf] usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc() - [arm64,armhf] usb: dwc3: core: Deprecate GCTL.CORESOFTRESET - [arm64,armhf] usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - [arm64,armhf] usb: dwc3: qcom: fix missing optional irq warnings - RDMA/qedr: Improve error logs for rdma_alloc_tid error return - RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() - [arm64] RDMA/hns: Fix incorrect clearing of interrupt status register - [amd64] RDMA/hfi1: fix potential memory leak in setup_base_ctxt() - gpio: gpiolib-of: Fix refcount bugs in of_mm_gpiochip_add_data() - [mips64el,mipsel] mmc: cavium-octeon: Add of_node_put() when breaking out of loop - HID: alps: Declare U1_UNICORN_LEGACY support - USB: serial: fix tty-port initialized comments - [armhf,i386] platform/olpc: Fix uninitialized data in debugfs write - RDMA/srpt: Duplicate port name members - RDMA/srpt: Introduce a reference count in struct srpt_device - RDMA/srpt: Fix a use-after-free - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - RDMA/mlx5: Add missing check for return value in get namespace flow - RDMA/rxe: Fix error unwind in rxe_create_qp() - null_blk: fix ida error handling in null_add_dev() - nvme: use command_id instead of req->tag in trace_nvme_complete_rq() - jbd2: fix outstanding credits assert in jbd2_journal_commit_transaction() - ext4: recover csum seed of tmp_inode after migrating to extents - jbd2: fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - opp: Fix error check in dev_pm_opp_attach_genpd() - serial: 8250: Export ICR access helpers for internal use - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - profiling: fix shift too large makes kernel panic - tty: n_gsm: Delete gsmtty open SABM frame when config requester - tty: n_gsm: fix user open not possible at responder until initiator open - tty: n_gsm: fix wrong queuing behavior in gsm_dlci_data_output() - tty: n_gsm: fix non flow control frames during mux flow off - tty: n_gsm: fix packet re-transmission without open control channel - tty: n_gsm: fix race condition in gsmld_write() - [arm64] ASoC: qcom: Fix missing of_node_put() in asoc_qcom_lpass_cpu_platform_probe() - vfio: Remove extra put/gets around vfio_device->group - vfio: Simplify the lifetime logic for vfio_device - vfio: Split creation of a vfio_device into init and register ops - tty: n_gsm: fix wrong T1 retry count handling - tty: n_gsm: fix DM command - tty: n_gsm: fix missing corner cases in gsmld_poll() - kfifo: fix kfifo_to_user() return type - lib/smp_processor_id: fix imbalanced instrumentation_end() call - [arm64] mfd: max77620: Fix refcount leak in max77620_initialise_fps - [arm64] iommu/arm-smmu: qcom_iommu: Add of_node_put() when breaking out of loop - [s390x] dump: fix old lowcore virtual vs physical address confusion - fuse: Remove the control interface for virtio-fs - [armhf] ASoC: audio-graph-card: Add of_node_put() in fail path - [arm64] watchdog: armada_37xx_wdt: check the return value of devm_ioremap() in armada_37xx_wdt_probe() - [arm64,armhf] video: fbdev: amba-clcd: Fix refcount leak bugs - video: fbdev: sis: fix typos in SiS_GetModeID() - [powerpc*] pci: Prefer PCI domain assignment via DT 'linux,pci-domain' and alias - f2fs: don't set GC_FAILURE_PIN for background GC - f2fs: write checkpoint during FG_GC - f2fs: fix to remove F2FS_COMPR_FL and tag F2FS_NOCOMP_FL at the same time - [powerpc*] xive: Fix refcount leak in xive_get_max_prio - kprobes: Forbid probing on trampoline and BPF code areas - [powerpc*] pci: Fix PHB numbering when using opal-phbid - sched/deadline: Merge dl_task_can_attach() and dl_cpu_busy() - sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed - [amd64] x86/numa: Use cpumask_available instead of hardcoded NULL check - video: fbdev: arkfb: Fix a divide-by-zero bug in ark_set_pixclock() - sched: Fix the check of nr_running at queue wakelist - video: fbdev: vt8623fb: Check the size of screen before memset_io() - video: fbdev: arkfb: Check the size of screen before memset_io() - video: fbdev: s3fb: Check the size of screen before memset_io() - [s390x] scsi: zfcp: Fix missing auto port scan and thus missing target ports - scsi: qla2xxx: Fix discovery issues in FC-AL topology - scsi: qla2xxx: Turn off multi-queue for 8G adapters - scsi: qla2xxx: Fix erroneous mailbox timeout after PCI error injection - scsi: qla2xxx: Fix losing FCP-2 targets on long port disable with I/Os - scsi: qla2xxx: Fix losing FCP-2 targets during port perturbation tests - [x86] bugs: Enable STIBP for IBPB mitigated RETBleed - [x86] ftrace/x86: Add back ftrace_expected assignment - __follow_mount_rcu(): verify that mount_lock remains unchanged - spmi: trace: fix stack-out-of-bound access in SPMI tracing functions - [x86] drm/i915/dg1: Update DMC_DEBUG3 register - HID: Ignore battery for Elan touchscreen on HP Spectre X360 15-df0xxx - HID: hid-input: add Surface Go battery quirk - [arm*] drm/vc4: drv: Adopt the dma configuration from the HVS or V3D component - usbnet: smsc95xx: Don't clear read-only PHY interrupt - usbnet: smsc95xx: Avoid link settings race on interrupt reception - [x86] intel_th: pci: Add Meteor Lake-P support - [x86] intel_th: pci: Add Raptor Lake-S PCH support - [x86] intel_th: pci: Add Raptor Lake-S CPU support - [x86] KVM: set_msr_mce: Permit guests to ignore single-bit ECC errors - [x86] KVM: x86: Signal #GP, not -EPERM, on bad WRMSR(MCi_CTL/STATUS) - [amd64] iommu/vt-d: avoid invalid memory access via node_online(NUMA_NO_NODE) - PCI/AER: Write AER Capability only when we control it - PCI/ERR: Bind RCEC devices to the Root Port driver - PCI/ERR: Rename reset_link() to reset_subordinates() - PCI/ERR: Simplify by using pci_upstream_bridge() - PCI/ERR: Simplify by computing pci_pcie_type() once - PCI/ERR: Use "bridge" for clarity in pcie_do_recovery() - PCI/ERR: Avoid negated conditional for clarity - PCI/ERR: Add pci_walk_bridge() to pcie_do_recovery() - PCI/ERR: Recover from RCEC AER errors - PCI/AER: Iterate over error counters instead of error strings - serial: 8250: Dissociate 4MHz Titan ports from Oxford ports - serial: 8250: Correct the clock for OxSemi PCIe devices - serial: 8250_pci: Refactor the loop in pci_ite887x_init() - serial: 8250_pci: Replace dev_*() by pci_*() macros - serial: 8250: Fold EndRun device support into OxSemi Tornado code - dm writecache: set a default MAX_WRITEBACK_JOBS - dm thin: fix use-after-free crash in dm_sm_register_threshold_callback - timekeeping: contribute wall clock to rng on time change - btrfs: reject log replay if there is unsupported RO compat flag - btrfs: reset block group chunk force if we have to wait - [amd64,arm64] ACPI: CPPC: Do not prevent CPPC from working in the future - [x86] KVM: VMX: Drop guest CPUID check for VMXE in vmx_set_cr4() - [x86] KVM: VMX: Drop explicit 'nested' check from vmx_set_cr4() - [x86] KVM: SVM: Drop VMXE check from svm_set_cr4() - [x86] KVM: x86: Move vendor CR4 validity check to dedicated kvm_x86_ops hook - [x86] KVM: nVMX: Inject #UD if VMXON is attempted with incompatible CR0/CR4 - [x86] KVM: x86/pmu: preserve IA32_PERF_CAPABILITIES across CPUID refresh - [x86] KVM: x86/pmu: Use binary search to check filtered events - [x86] KVM: x86/pmu: Use different raw event masks for AMD and Intel - [x86] KVM: x86/pmu: Introduce the ctrl_mask value for fixed counter - [x86] KVM: VMX: Mark all PERF_GLOBAL_(OVF)_CTRL bits reserved if there's no vPMU - [x86] KVM: x86/pmu: Ignore pmu->global_ctrl check if vPMU doesn't support global_ctrl - xen-blkback: fix persistent grants negotiation - xen-blkback: Apply 'feature_persistent' parameter when connect - xen-blkfront: Apply 'feature_persistent' parameter when connect - KEYS: asymmetric: enforce SM2 signature use pkey algo - tpm: eventlog: Fix section mismatch for DEBUG_SECTION_MISMATCH - tracing: Use a struct alignof to determine trace event field alignment - ext4: check if directory block is within i_size (CVE-2022-1184) - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - ext4: fix warning in ext4_iomap_begin as race between bmap and write - ext4: make sure ext4_append() always allocates new block - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: fix extent status tree race in writeback error recovery path - ext4: correct max_inline_xattr_value_size computing - ext4: correct the misjudgment in ext4_iget_extra_inode - dm raid: fix address sanitizer warning in raid_resume - dm raid: fix address sanitizer warning in raid_status - KVM: Add infrastructure and macro to mark VM as bugged - [x86] KVM: x86: Check lapic_in_kernel() before attempting to set a SynIC irq (CVE-2022-2153) - [x86] KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() (CVE-2022-2153) - mac80211: fix a memory leak where sta_info is not freed - tcp: fix over estimation in sk_forced_mem_schedule() - Revert "mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv" - [arm*] drm/vc4: change vc4_dma_range_matches from a global to static - Revert "net: usb: ax88179_178a needs FLAG_SEND_ZLP" - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - [x86] kvm: x86/pmu: Fix the compare function used by the pmu event filter - [arm64] tee: add overflow check in register_shm_helper() - net/9p: Initialize the iounit field during fid creation - net_sched: cls_route: disallow handle of 0 - sched/fair: Fix fault in reweight_entity - btrfs: only write the sectors in the vertical stripe which has data stripes - btrfs: raid56: don't trust any cached sector in __raid56_parity_recover() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.138 - ALSA: info: Fix llseek return value when using callback - ALSA: hda/realtek: Add quirk for Clevo NS50PU, NS70PU - [x86] mm: Use proper mask when setting PUD mapping - rds: add missing barrier to release_refill - ata: libata-eh: Add missing command name - [arm64] mmc: meson-gx: Fix an error handling path in meson_mmc_probe() - btrfs: fix lost error handling when looking up extended ref on log replay - tracing: Have filter accept "common_cpu" to be consistent - ALSA: usb-audio: More comprehensive mixer map for ASUS ROG Zenith II - can: ems_usb: fix clang's -Wunaligned-access warning - apparmor: fix quiet_denied for file rules - apparmor: fix absroot causing audited secids to begin with = - apparmor: Fix failed mount permission check error message - apparmor: fix aa_label_asxprint return check - apparmor: fix setting unconfined mode on a loaded profile - apparmor: fix overlapping attachment computation - apparmor: fix reference count leak in aa_pivotroot() - apparmor: Fix memleak in aa_simple_write_to_buffer() - Documentation: ACPI: EINJ: Fix obsolete example - NFSv4.1: Don't decrease the value of seq_nr_highest_sent - NFSv4.1: Handle NFS4ERR_DELAY replies to OP_SEQUENCE correctly - NFSv4: Fix races in the legacy idmapper upcall - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - NFSv4/pnfs: Fix a use-after-free bug in open - bpf: Acquire map uref in .init_seq_private for array map iterator - bpf: Acquire map uref in .init_seq_private for hash map iterator - bpf: Acquire map uref in .init_seq_private for sock local storage map iterator - bpf: Acquire map uref in .init_seq_private for sock{map,hash} iterator - bpf: Check the validity of max_rdwr_access for sock local storage map iterator - can: mcp251x: Fix race condition on receive interrupt - [amd64,arm64] net: atlantic: fix aq_vec index out of range error - sunrpc: fix expiry of auth creds - SUNRPC: Reinitialise the backchannel request buffers before reuse - virtio_net: fix memory leak inside XPD_TX with mergeable - devlink: Fix use-after-free after a failed reload - [arm64] pinctrl: qcom: msm8916: Allow CAMSS GP clocks to be muxed - [arm64,armhf] pinctrl: sunxi: Add I/O bias setting for H6 R-PIO - ACPI: property: Return type of acpi_add_nondev_subnodes() should be bool - geneve: do not use RT_TOS for IPv6 flowlabel - ipv6: do not use RT_TOS for IPv6 flowlabel - [x86] plip: avoid rcu debug splat - vsock: Fix memory leak in vsock_connect() - vsock: Set socket state back to SS_UNCONNECTED in vsock_connect_timeout() - dt-bindings: arm: qcom: fix MSM8916 MTP compatibles - dt-bindings: clock: qcom,gcc-msm8996: add more GCC clock sources - ceph: use correct index when encoding client supported features - ceph: don't leak snap_rwsem in handle_cap_grant - nfp: ethtool: fix the display error of `ethtool -m DEVNAME` - xen/xenbus: fix return type in xenbus_file_read() - atm: idt77252: fix use-after-free bugs caused by tst_timer - geneve: fix TOS inheriting for ipv4 - [arm64] dpaa2-eth: trace the allocated address instead of page struct - iavf: Fix adminq error handling - netfilter: nf_tables: really skip inactive sets when allocating name - netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag - netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified - [powerpc*] pci: Fix get_phb_number() locking - [arm64,armhf] spi: meson-spicc: add local pow2 clock ops to preserve rate between messages - [arm64,armhf] net: dsa: mv88e6060: prevent crash on an unused port - [arm64] net: dsa: felix: fix ethtool 256-511 and 512-1023 TX packet counters - net: genl: fix error path memory leak in policy dumping - ice: Ignore EEXIST when setting promisc mode - [arm64,armhf] i2c: imx: Make sure to unregister adapter on remove() - regulator: pca9450: Remove restrictions for regulator-name - i40e: Fix to stop tx_timeout recovery if GLOBR fails - [arm64,armhf] fec: Fix timer capture timing in `fec_ptp_enable_pps()` - [x86] stmmac: intel: Add a missing clk_disable_unprepare() call in intel_eth_pci_remove() - igb: Add lock to avoid data race - kbuild: fix the modules order between drivers and libs - locking/atomic: Make test_and_*_bit() ordered on failure - [x86] ASoC: SOF: intel: move sof_intel_dsp_desc() forward - [arm64] drm/meson: Fix refcount bugs in meson_vpu_has_available_connectors() - audit: log nftables configuration change events once per table - netfilter: nftables: add helper function to set the base sequence number - netfilter: add helper function to set up the nfnetlink header and use it - [armhf] drm/sun4i: dsi: Prevent underflow when computing packet sizes - PCI: Add ACS quirk for Broadcom BCM5750x NICs - [arm64,armhf] platform/chrome: cros_ec_proto: don't show MKBP version if unsupported - usb: gadget: uvc: call uvc uvcg_warn on completed status instead of uvcg_info - [arm64,armhf] irqchip/tegra: Fix overflow implicit truncation warnings - [arm64] drm/meson: Fix overflow implicit truncation warnings - [armhf] clk: ti: Stop using legacy clkctrl names for omap4 and 5 - [arm*] usb: dwc2: gadget: remove D+ pull-up while no vbus with usb-role-switch - [x86] vboxguest: Do not use devm for irq - uacce: Handle parent device removal or parent driver module rmmod - zram: do not lookup algorithm in backends table - [arm64] clk: qcom: clk-alpha-pll: fix clk_trion_pll_configure description - scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input - gadgetfs: ep_io - wait until IRQ finishes - [x86] pinctrl: intel: Check against matching data instead of ACPI companion - [powerpc*] cxl: Fix a memory leak in an error handling path - [arm64] PCI/ACPI: Guard ARM64-specific mcfg_quirks - RDMA/rxe: Limit the number of calls to each tasklet - md: Notify sysfs sync_completed in md_reap_sync_thread() - nvmet-tcp: fix lockdep complaint on nvmet_tcp_wq flush during queue teardown - drivers:md:fix a potential use-after-free bug - ext4: avoid remove directory when directory is corrupted - ext4: avoid resizing to a partial cluster size - lib/list_debug.c: Detect uninitialized lists - vfio: Clear the caps->buf to NULL after free - [mips64el,mipsel] cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start - modules: Ensure natural alignment for .altinstructions and __bug_table sections - watchdog: export lockup_detector_reconfigure - ALSA: core: Add async signal helpers - ALSA: timer: Use deferred fasync helper - ALSA: control: Use deferred fasync helper - f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() - f2fs: fix to do sanity check on segment type in build_sit_entries() - smb3: check xattr value length earlier - [powerpc*] 64: Init jump labels before parse_early_param() - netfilter: nftables: fix a warning message in nf_tables_commit_audit_collect() - netfilter: nf_tables: fix audit memory leak in nf_tables_commit - tracing/probes: Have kprobes and uprobes use $COMM too - can: j1939: j1939_sk_queue_activate_next_locked(): replace WARN_ON_ONCE with netdev_warn_once() - can: j1939: j1939_session_destroy(): fix memory leak of skbs - PCI/ERR: Retain status from error notification - qrtr: Convert qrtr_ports from IDR to XArray - bpf: Fix KASAN use-after-free Read in compute_effective_progs - [arm64] tee: fix memory leak in tee_shm_register() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.139 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.140 - audit: fix potential double free on error path from fsnotify_add_inode_mark - pinctrl: amd: Don't save/restore interrupt status and wake status bits - xfs: prevent a WARN_ONCE() in xfs_ioc_attr_list() - xfs: reject crazy array sizes being fed to XFS_IOC_GETBMAP* - fs: remove __sync_filesystem - vfs: make sync_filesystem return errors from ->sync_fs - xfs: return errors in xfs_fs_sync_fs - xfs: only bother with sync_filesystem during readonly remount - kernel/sched: Remove dl_boosted flag comment - xfrm: fix refcount leak in __xfrm_policy_check() - xfrm: clone missing x->lastused in xfrm_do_migrate - af_key: Do not call xfrm_probe_algs in parallel (CVE-2022-3028) - xfrm: policy: fix metadata dst->dev xmit null pointer dereference - NFS: Don't allocate nfs_fattr on the stack in __nfs42_ssc_open() - NFSv4.2 fix problems with __nfs42_ssc_open - SUNRPC: RPC level errors should set task->tk_rpc_status - mm/huge_memory.c: use helper function migration_entry_to_page() - mm/smaps: don't access young/dirty bit if pte unpresent - rose: check NULL rose_loopback_neigh->loopback - ice: xsk: Force rings to be sized to power of 2 - ice: xsk: prohibit usage of non-balanced queue id - net/mlx5e: Properly disable vlan strip on non-UL reps - bonding: 802.3ad: fix no transmission of LACPDUs - net: ipvtap - add __init/__exit annotations to module init/exit funcs - netfilter: ebtables: reject blobs that don't provide all entry points - bnxt_en: fix NQ resource accounting during vf creation on 57500 chips - netfilter: nft_payload: report ERANGE for too long offset and length - netfilter: nft_payload: do not truncate csum_offset and csum_type - netfilter: nf_tables: do not leave chain stats enabled on error - netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families - netfilter: nft_tunnel: restrict it to netdev family - netfilter: nftables: remove redundant assignment of variable err - netfilter: nf_tables: consolidate rule verdict trace call - netfilter: nft_cmp: optimize comparison for 16-bytes - netfilter: bitwise: improve error goto labels - netfilter: nf_tables: upfront validation of data via nft_data_init() - netfilter: nf_tables: disallow jump to implicit chain from set element - netfilter: nf_tables: disallow binding to already bound chain (CVE-2022-39190) - tcp: tweak len/truesize ratio for coalesce candidates - net: Fix data-races around sysctl_[rw]mem(_offset)?. - net: Fix data-races around sysctl_[rw]mem_(max|default). - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: Fix data-races around netdev_max_backlog. - net: Fix data-races around netdev_tstamp_prequeue. - ratelimit: Fix data-races in ___ratelimit(). - bpf: Folding omem_charge() into sk_storage_charge() - net: Fix data-races around sysctl_optmem_max. - net: Fix a data-race around sysctl_tstamp_allow_data. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around netdev_budget_usecs. - net: Fix data-races around sysctl_fb_tunnels_only_for_init_net. - net: Fix data-races around sysctl_devconf_inherit_init_net. - net: Fix a data-race around sysctl_somaxconn. - ixgbe: stop resetting SYSTIME in ixgbe_ptp_start_cyclecounter - rxrpc: Fix locking in rxrpc's sendmsg - btrfs: fix silent failure when deleting root reference - btrfs: replace: drop assert for suspended replace - btrfs: add info when mount fails due to stale replace target - btrfs: check if root is readonly while setting security xattr - [x86] perf/x86/lbr: Enable the branch type for the Arch LBR by default - [amd64] x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - [x86] bugs: Add "unknown" reporting for MMIO Stale Data - loop: Check for overflow while configuring loop - asm-generic: sections: refactor memory_intersects - [s390x] fix double free of GS and RI CBs on fork() failure - [x86] ACPI: processor: Remove freq Qos request for all CPUs - xen/privcmd: fix error exit of privcmd_ioctl_dm_op() - mm/hugetlb: fix hugetlb not supporting softdirty tracking - Revert "md-raid: destroy the bitmap after destroying the thread" - md: call __md_stop_writes in md_stop - [arm64] Fix match_list for erratum 1286807 on Arm Cortex-A76 - Documentation/ABI: Mention retbleed vulnerability info file for sysfs - blk-mq: fix io hung due to missing commit_rqs - [x86] perf/x86/intel/uncore: Fix broken read_counter() for SNB IMC PMU - [x86] scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq - bpf: Don't use tnum_range on array range checking for poke descriptors (CVE-2022-2905) . [ Salvatore Bonaccorso ] * Bump ABI to 18 * certs: Rotate to use the "Debian Secure Boot Signer 2022 - linux" certificate (Closes: #1018752) * [x86] nospec: Unwreck the RSB stuffing * [x86] nospec: Fix i386 RSB stuffing (Closes: #1017425) * mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() (CVE-2022-39188) * Revert "PCI/portdrv: Don't disable AER reporting in get_port_device_capability()" * bpf: Don't redirect packets with invalid pkt_len * mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse * net/af_packet: check len when min_header_len equals to 0 linux-signed-arm64 (5.10.136+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.136-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.128 - MAINTAINERS: add Amir as xfs maintainer for 5.10.y - drm: remove drm_fb_helper_modinit - tick/nohz: unexport __init-annotated tick_nohz_full_setup() - bcache: memset on stack variables in bch_btree_check() and bch_sectors_dirty_init() - xfs: use kmem_cache_free() for kmem_cache objects - xfs: punch out data fork delalloc blocks on COW writeback failure - xfs: Fix the free logic of state in xfs_attr_node_hasname - xfs: remove all COW fork extents when remounting readonly - xfs: check sb_meta_uuid for dabuf buffer recovery - [powerpc*] ftrace: Remove ftrace init tramp once kernel init is complete - [arm64] net: mscc: ocelot: allow unregistered IP multicast flooding https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.129 - drm/amdgpu: To flush tlb for MMHUB of RAVEN series - ipv6: take care of disable_policy when restoring routes - nvme-pci: add NVME_QUIRK_BOGUS_NID for ADATA XPG SX6000LNP (AKA SPECTRIX S40G) - nvdimm: Fix badblocks clear off-by-one error - [powerpc*] bpf: Fix use of user_pt_regs in uapi - dm raid: fix accesses beyond end of raid member array - [s390x] archrandom: simplify back to earlier design and initialize earlier - SUNRPC: Fix READ_PLUS crasher (Closes: #1014793) - net: usb: ax88179_178a: Fix packet receiving - virtio-net: fix race between ndo_open() and virtio_device_ready() - [armhf] net: dsa: bcm_sf2: force pause link settings - net: tun: unlink NAPI from device on destruction - net: tun: stop NAPI when detaching queues - net: dp83822: disable false carrier interrupt - net: dp83822: disable rx error interrupt - RDMA/qedr: Fix reporting QP timeout attribute - RDMA/cm: Fix memory leak in ib_cm_insert_listen - linux/dim: Fix divide by 0 in RDMA DIM - usbnet: fix memory allocation in helpers - net: ipv6: unexport __init-annotated seg6_hmac_net_init() - NFSD: restore EINVAL error translation in nfsd_commit() - netfilter: nft_dynset: restore set element counter when failing to update - net/sched: act_api: Notify user space if any actions were flushed before error - net: bonding: fix possible NULL deref in rlb code - net: bonding: fix use-after-free after 802.3ad slave unbind - tipc: move bc link creation back to tipc_node_create - epic100: fix use after free on rmmod - io_uring: ensure that send/sendmsg and recv/recvmsg check sqe->ioprio - tunnels: do not assume mac header is set in skb_tunnel_check_pmtu() - net: tun: avoid disabling NAPI twice - xfs: use current->journal_info for detecting transaction recursion - xfs: rename variable mp to parsing_mp - xfs: Skip repetitive warnings about mount options - xfs: ensure xfs_errortag_random_default matches XFS_ERRTAG_MAX - xfs: fix xfs_trans slab cache name - xfs: update superblock counters correctly for !lazysbcount - xfs: fix xfs_reflink_unshare usage of filemap_write_and_wait_range - tcp: add a missing nf_reset_ct() in 3WHS handling - xen/gntdev: Avoid blocking in unmap_grant_pages() - [arm64] drivers: cpufreq: Add missing of_node_put() in qoriq-cpufreq.c - sit: use min - ipv6/sit: fix ipip6_tunnel_get_prl return value - hwmon: (ibmaem) don't call platform_device_del() if platform_device_add() fails - net: usb: qmi_wwan: add Telit 0x1060 composition - net: usb: qmi_wwan: add Telit 0x1070 composition https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.130 - mm/slub: add missing TID updates on slab deactivation - ALSA: hda/realtek: Add quirk for Clevo L140PU - can: bcm: use call_rcu() instead of costly synchronize_rcu() - can: gs_usb: gs_usb_open/close(): fix memory leak - bpf: Fix incorrect verifier simulation around jmp32's jeq/jne - bpf: Fix insufficient bounds propagation from adjust_scalar_min_max_vals - usbnet: fix memory leak in error case - netfilter: nft_set_pipapo: release elements in clone from abort path - [amd64] iommu/vt-d: Fix PCI bus rescan device hot add - PM: runtime: Redefine pm_runtime_release_supplier() - memregion: Fix memregion_free() fallback definition - video: of_display_timing.h: include errno.h - [powerpc*] powernv: delay rng platform device creation until later in boot - can: kvaser_usb: replace run-time checks with struct kvaser_usb_driver_info - can: kvaser_usb: kvaser_usb_leaf: fix CAN clock frequency regression - can: kvaser_usb: kvaser_usb_leaf: fix bittiming limits - xfs: remove incorrect ASSERT in xfs_rename - [armhf] meson: Fix refcount leak in meson_smp_prepare_cpus - [armhf] pinctrl: sunxi: a83t: Fix NAND function name for some pins - [arm64] dts: imx8mp-evk: correct mmc pad settings - [arm64] dts: imx8mp-evk: correct the uart2 pinctl value - [arm64] dts: imx8mp-evk: correct gpio-led pad settings - [arm64] dts: imx8mp-evk: correct I2C3 pad settings - [arm64,armhf] pinctrl: sunxi: sunxi_pconf_set: use correct offset - [arm64] dts: qcom: msm8992-*: Fix vdd_lvs1_2-supply typo - xsk: Clear page contiguity bit when unmapping pool - i40e: Fix dropped jumbo frames statistics - r8169: fix accessing unset transport header - [armhf] dmaengine: imx-sdma: Allow imx8m for imx7 FW revs - misc: rtsx_usb: fix use of dma mapped buffer for usb bulk transfer - misc: rtsx_usb: use separate command and response buffers - misc: rtsx_usb: set return value in rsp_buf alloc err path - dt-bindings: dma: allwinner,sun50i-a64-dma: Fix min/max typo - ida: don't use BUG_ON() for debugging - [arm64,armhf] dmaengine: pl330: Fix lockdep warning about non-static key - [armhf] dmaengine: ti: Fix refcount leak in ti_dra7_xbar_route_allocate - [armhf] dmaengine: ti: Add missing put_device in ti_dra7_xbar_route_allocate https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.131 - [armhf] Revert "mtd: rawnand: gpmi: Fix setting busy timeout setting" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.132 - [x86] ALSA: hda - Add fixup for Dell Latitidue E5430 - [x86] ALSA: hda/conexant: Apply quirk for another HP ProDesk 600 G3 model - [x86] ALSA: hda/realtek: Fix headset mic for Acer SF313-51 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc221 - [x86] ALSA: hda/realtek - Enable the headset-mic on a Xiaomi's laptop - xen/netback: avoid entering xenvif_rx_next_skb() with an empty rx queue - fix race between exit_itimers() and /proc/pid/timers - mm: split huge PUD on wp_huge_pud fallback - tracing/histograms: Fix memory leak problem - net: sock: tracing: Fix sock_exceed_buf_limit not to dereference stale pointer - ip: fix dflt addr selection for connected nexthop - [armhf] 9213/1: Print message about disabled Spectre workarounds only once - [armel,armhf] 9214/1: alignment: advance IT state after emulating Thumb instruction - wifi: mac80211: fix queue selection for mesh/OCB interfaces - cgroup: Use separate src/dst nodes when preloading css_sets for migration - btrfs: return -EAGAIN for NOWAIT dio reads/writes on compressed and inline extents - [arm64,armhf] drm/panfrost: Put mapping instead of shmem obj on panfrost_mmu_map_fault_addr() error - [arm64,armhf] drm/panfrost: Fix shrinker list corruption by madvise IOCTL - fs/remap: constrain dedupe of EOF blocks - nilfs2: fix incorrect masking of permission flags for symlinks - sh: convert nommu io{re,un}map() to static inline functions - Revert "evm: Fix memleak in init_desc" - ext4: fix race condition between ext4_write and ext4_convert_inline_data - [armhf] dts: imx6qdl-ts7970: Fix ngpio typo and count - [armhf] 9209/1: Spectre-BHB: avoid pr_info() every time a CPU comes out of idle - [armel,armhf] 9210/1: Mark the FDT_FIXED sections as shareable - net/mlx5e: Fix capability check for updating vnic env counters - [x86] drm/i915: fix a possible refcount leak in intel_dp_add_mst_connector() - ima: Fix a potential integer overflow in ima_appraise_measurement - [arm64,armhf] ASoC: sgtl5000: Fix noise on shutdown/remove - [x86] ASoC: Intel: Skylake: Correct the ssp rate discovery in skl_get_ssp_clks() - [x86] ASoC: Intel: Skylake: Correct the handling of fmt_config flexible array - sysctl: Fix data races in proc_dointvec(). - sysctl: Fix data races in proc_douintvec(). - sysctl: Fix data races in proc_dointvec_minmax(). - sysctl: Fix data races in proc_douintvec_minmax(). - sysctl: Fix data races in proc_doulongvec_minmax(). - sysctl: Fix data races in proc_dointvec_jiffies(). - tcp: Fix a data-race around sysctl_tcp_max_orphans. - inetpeer: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - cipso: Fix data-races around sysctl. - icmp: Fix data-races around sysctl. - ipv4: Fix a data-race around sysctl_fib_sync_mem. - [armhf] dts: sunxi: Fix SPI NOR campatible on Orange Pi Zero - [x86] drm/i915/gt: Serialize TLB invalidates with GT resets - sysctl: Fix data-races in proc_dointvec_ms_jiffies(). - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix a data-race around sysctl_icmp_ratemask. - raw: Fix a data-race around sysctl_raw_l3mdev_accept. - ipv4: Fix data-races around sysctl_ip_dynaddr. - nexthop: Fix data-races around nexthop_compat_mode. - [armhf] net: ftgmac100: Hold reference returned by of_get_child_by_name() - ima: force signature verification when CONFIG_KEXEC_SIG is configured - ima: Fix potential memory leak in ima_init_crypto() - sfc: fix use after free when disabling sriov - seg6: fix skb checksum evaluation in SRH encapsulation/insertion - seg6: fix skb checksum in SRv6 End.B6 and End.B6.Encaps behaviors - seg6: bpf: fix skb checksum in bpf_push_seg6_encap() - sfc: fix kernel panic when creating VF - net: atlantic: remove deep parameter on suspend/resume functions - net: atlantic: remove aq_nic_deinit() when resume - [x86] KVM: x86: Fully initialize 'struct kvm_lapic_irq' in kvm_pv_kick_cpu_op() - net/tls: Check for errors in tls_device_init - mm: sysctl: fix missing numa_stat when !CONFIG_HUGETLB_PAGE - virtio_mmio: Add missing PM calls to freeze/restore - virtio_mmio: Restore guest page size on resume - netfilter: br_netfilter: do not skip all hooks with 0 priority - [arm64] scsi: hisi_sas: Limit max hw sectors for v3 HW - [powerpc*] cpufreq: pmac32-cpufreq: Fix refcount leak bug - [x86] platform/x86: hp-wmi: Ignore Sanitization Mode event - net: tipc: fix possible refcount leak in tipc_sk_create() - nvme-tcp: always fail a request when sending it failed - nvme: fix regression when disconnect a recovering ctrl - net: sfp: fix memory leak in sfp_probe() - ASoC: ops: Fix off by one in range control validation - [armhf] pinctrl: aspeed: Fix potential NULL dereference in aspeed_pinmux_set_mux() - [x86] ASoC: SOF: Intel: hda-loader: Clarify the cl_dsp_init() flow - ASoC: dapm: Initialise kcontrol data for mux/demux controls - [amd64] Clear .brk area at early boot - [armhf] dts: stm32: use the correct clock source for CEC on stm32mp151 - Revert "can: xilinx_can: Limit CANFD brp to 2" - nvme-pci: phison e16 has bogus namespace ids - signal handling: don't use BUG_ON() for debugging - USB: serial: ftdi_sio: add Belimo device ids - usb: typec: add missing uevent when partner support PD - [arm64,armhf] usb: dwc3: gadget: Fix event pending check - [armhf] tty: serial: samsung_tty: set dma burst_size to 1 - vt: fix memory overlapping when deleting chars in the buffer - serial: 8250: fix return error code in serial8250_request_std_resource() - [armhf] serial: stm32: Clear prev values before setting RTS delays - [arm*] serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: Fix PM usage_count for console handover - [x86] pat: Fix x86_has_pat_wp() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.133 - [amd64] Preparation for mitigating RETbleed: + KVM/VMX: Use TEST %REG,%REG instead of CMP $0,%REG in vmenter.S + KVM/nVMX: Use __vmx_vcpu_run in nested_vmx_check_vmentry_hw + objtool: Refactor ORC section generation + objtool: Add 'alt_group' struct + objtool: Support stack layout changes in alternatives + objtool: Support retpoline jump detection for vmlinux.o + objtool: Assume only ELF functions do sibling calls + objtool: Combine UNWIND_HINT_RET_OFFSET and UNWIND_HINT_FUNC + x86/xen: Support objtool validation in xen-asm.S + x86/xen: Support objtool vmlinux.o validation in xen-head.S + x86/alternative: Merge include files + x86/alternative: Support not-feature + x86/alternative: Support ALTERNATIVE_TERNARY + x86/alternative: Use ALTERNATIVE_TERNARY() in _static_cpu_has() + x86/insn: Rename insn_decode() to insn_decode_from_regs() + x86/insn: Add a __ignore_sync_check__ marker + x86/insn: Add an insn_decode() API + x86/insn-eval: Handle return values from the decoder + x86/alternative: Use insn_decode() + x86: Add insn_decode_kernel() + x86/alternatives: Optimize optimize_nops() + x86/retpoline: Simplify retpolines + objtool: Correctly handle retpoline thunk calls + objtool: Handle per arch retpoline naming + objtool: Rework the elf_rebuild_reloc_section() logic + objtool: Add elf_create_reloc() helper + objtool: Create reloc sections implicitly + objtool: Extract elf_strtab_concat() + objtool: Extract elf_symbol_add() + objtool: Add elf_create_undef_symbol() + objtool: Keep track of retpoline call sites + objtool: Cache instruction relocs + objtool: Skip magical retpoline .altinstr_replacement + objtool/x86: Rewrite retpoline thunk calls + objtool: Support asm jump tables + x86/alternative: Optimize single-byte NOPs at an arbitrary position + objtool: Fix .symtab_shndx handling for elf_create_undef_symbol() + objtool: Only rewrite unconditional retpoline thunk calls + objtool/x86: Ignore __x86_indirect_alt_* symbols + objtool: Don't make .altinstructions writable + objtool: Teach get_alt_entry() about more relocation types + objtool: print out the symbol type when complaining about it + objtool: Remove reloc symbol type checks in get_alt_entry() + objtool: Make .altinstructions section entry size consistent + objtool: Introduce CFI hash + objtool: Handle __sanitize_cov*() tail calls + objtool: Classify symbols + objtool: Explicitly avoid self modifying code in .altinstr_replacement + objtool,x86: Replace alternatives with .retpoline_sites + x86/retpoline: Remove unused replacement symbols + x86/asm: Fix register order + x86/asm: Fixup odd GEN-for-each-reg.h usage + x86/retpoline: Move the retpoline thunk declarations to nospec-branch.h + x86/retpoline: Create a retpoline thunk array + x86/alternative: Implement .retpoline_sites support + x86/alternative: Handle Jcc __x86_indirect_thunk_\reg + x86/alternative: Try inline spectre_v2=retpoline,amd + x86/alternative: Add debug prints to apply_retpolines() + bpf,x86: Simplify computing label offsets + bpf,x86: Respect X86_FEATURE_RETPOLINE* + x86/lib/atomic64_386_32: Rename things - [amd64] Mitigate straight-line speculation: + x86: Prepare asm files for straight-line-speculation + x86: Prepare inline-asm for straight-line-speculation + x86/alternative: Relax text_poke_bp() constraint + objtool: Add straight-line-speculation validation + x86: Add straight-line-speculation mitigation + tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' + kvm/emulate: Fix SETcc emulation function offsets with SLS + objtool: Default ignore INT3 for unreachable + crypto: x86/poly1305 - Fixup SLS + objtool: Fix SLS validation for kcov tail-call replacement - objtool: Fix code relocs vs weak symbols - objtool: Fix type of reloc::addend - objtool: Fix symbol creation - x86/entry: Remove skip_r11rcx - objtool: Fix objtool regression on x32 systems - x86/realmode: build with -D__DISABLE_EXPORTS - [amd64] Add mitigations for RETbleed on AMD/Hygon (CVE-2022-29900) and Intel (CVE-2022-29901) processors: + x86/kvm/vmx: Make noinstr clean + x86/cpufeatures: Move RETPOLINE flags to word 11 + x86/retpoline: Cleanup some #ifdefery + x86/retpoline: Swizzle retpoline thunk + Makefile: Set retpoline cflags based on CONFIG_CC_IS_{CLANG,GCC} + x86/retpoline: Use -mfunction-return + x86: Undo return-thunk damage + x86,objtool: Create .return_sites + objtool: skip non-text sections when adding return-thunk sites + x86,static_call: Use alternative RET encoding + x86/ftrace: Use alternative RET encoding + x86/bpf: Use alternative RET encoding + x86/kvm: Fix SETcc emulation for return thunks + x86/vsyscall_emu/64: Don't use RET in vsyscall emulation + x86/sev: Avoid using __x86_return_thunk + x86: Use return-thunk in asm code + objtool: Treat .text.__x86.* as noinstr + x86: Add magic AMD return-thunk + x86/bugs: Report AMD retbleed vulnerability + x86/bugs: Add AMD retbleed= boot parameter + x86/bugs: Enable STIBP for JMP2RET + x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value + x86/entry: Add kernel IBRS implementation + x86/bugs: Optimize SPEC_CTRL MSR writes + x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS + x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() + x86/bugs: Report Intel retbleed vulnerability + intel_idle: Disable IBRS during long idle + objtool: Update Retpoline validation + x86/xen: Rename SYS* entry points + x86/bugs: Add retbleed=ibpb + x86/bugs: Do IBPB fallback check only once + objtool: Add entry UNRET validation + x86/cpu/amd: Add Spectral Chicken + x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n + x86/speculation: Fix firmware entry SPEC_CTRL handling + x86/speculation: Fix SPEC_CTRL write on SMT state change + x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit + x86/speculation: Remove x86_spec_ctrl_mask + objtool: Re-add UNWIND_HINT_{SAVE_RESTORE} + KVM: VMX: Flatten __vmx_vcpu_run() + KVM: VMX: Convert launched argument to flags + KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS + KVM: VMX: Fix IBRS handling after vmexit + x86/speculation: Fill RSB on vmexit for IBRS + x86/common: Stamp out the stepping madness + x86/cpu/amd: Enumerate BTC_NO + x86/retbleed: Add fine grained Kconfig knobs + x86/bugs: Add Cannon lake to RETBleed affected CPU list + x86/bugs: Do not enable IBPB-on-entry when IBPB is not supported + x86/kexec: Disable RET on kexec + x86/speculation: Disable RRSBA behavior - x86/static_call: Serialize __static_call_fixup() properly - tools/insn: Restore the relative include paths for cross building - x86, kvm: use proper ASM macros for kvm_vcpu_is_preempted - x86/xen: Fix initialisation in hypercall_page after rethunk - x86/ftrace: Add UNWIND_HINT_FUNC annotation for ftrace_stub - x86/asm/32: Fix ANNOTATE_UNRET_SAFE use on 32-bit - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - efi/x86: use naked RET on mixed mode call wrapper - x86/kvm: fix FASTOP_SIZE when return thunks are enabled - KVM: emulate: do not adjust size of fastop and setcc subroutines - tools arch x86: Sync the msr-index.h copy with the kernel sources - tools headers cpufeatures: Sync with the kernel sources - x86/bugs: Remove apostrophe typo - um: Add missing apply_returns() - x86: Use -mindirect-branch-cs-prefix for RETPOLINE builds - kvm: fix objtool relocation warning - objtool: Fix elf_create_undef_symbol() endianness - tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' - again - tools headers: Remove broken definition of __LITTLE_ENDIAN https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.134 - [armhf] pinctrl: stm32: fix optional IRQ support to gpios - lockdown: Fix kexec lockdown bypass with ima policy (CVE-2022-21505) - io_uring: Use original task for req identity in io_identity_cow() - xen/gntdev: Ignore failure to unmap INVALID_GRANT_HANDLE - docs: net: explain struct net_device lifetime - net: make free_netdev() more lenient with unregistering devices - net: make sure devices go through netdev_wait_all_refs - net: move net_set_todo inside rollback_registered() - net: inline rollback_registered() - net: move rollback_registered_many() - net: inline rollback_registered_many() - [amd64] PCI: hv: Fix multi-MSI to allow more than one MSI vector - [amd64] PCI: hv: Fix hv_arch_irq_unmask() for multi-MSI - [amd64] PCI: hv: Reuse existing IRTE allocation in compose_msi_msg() - [amd64] PCI: hv: Fix interrupt mapping for multi-MSI - [arm64] serial: mvebu-uart: correctly report configured baudrate value - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() (CVE-2022-36879) - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close() - drm/amdgpu/display: add quirk handling for stutter mode - igc: Reinstate IGC_REMOVED logic and implement it properly - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix a data-race around sysctl_ip_autobind_reuse. - ip: Fix a data-race around sysctl_fwmark_reflect. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp: Fix data-races around sysctl_tcp_base_mss. - tcp: Fix data-races around sysctl_tcp_min_snd_mss. - tcp: Fix a data-race around sysctl_tcp_mtu_probe_floor. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - net: stmmac: fix unbalanced ptp clock issue in suspend/resume flow - net: stmmac: fix dma queue left shift overflow issue - igmp: Fix data-races around sysctl_igmp_llm_reports. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_max_msf. - tcp: Fix data-races around keepalive sysctl knobs. - tcp: Fix data-races around sysctl_tcp_syncookies. - tcp: Fix data-races around sysctl_tcp_reordering. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix data-races around sysctl_max_syn_backlog. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix data-races around sysctl_tcp_fastopen_blackhole_timeout. - iavf: Fix handling of dummy receive descriptors - i40e: Fix erroneous adapter reinitialization during recovery process - ixgbe: Add locking to prevent panic when setting sriov_numvfs to zero - [arm64,armhf] gpio: pca953x: only use single read/write for No AI mode - [arm64,armhf] gpio: pca953x: use the correct range when do regmap sync - [arm64,armhf] gpio: pca953x: use the correct register address when regcache sync during init - be2net: Fix buffer overflow in be_get_module_eeprom - ipv4: Fix a data-race around sysctl_fib_multipath_use_neigh. - ip: Fix data-races around sysctl_ip_prot_sock. - udp: Fix a data-race around sysctl_udp_l3mdev_accept. - tcp: Fix data-races around sysctl knobs related to SYN option. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix data-races around sysctl_tcp_max_reordering. - [arm*] spi: bcm2835: bcm2835_spi_handle_err(): fix NULL pointer deref for non DMA transfers - KVM: Don't null dereference ops->destroy - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - bpf: Make sure mac_header was set before using it - sched/deadline: Fix BUG_ON condition for deboosted tasks - [x86] bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - dlm: fix pending remove if msg allocation fails - bitfield.h: Fix "type of reg too small for mask" test - ALSA: memalloc: Align buffer allocations in page size - Bluetooth: Add bt_skb_sendmsg helper - Bluetooth: Add bt_skb_sendmmsg helper - Bluetooth: SCO: Replace use of memcpy_from_msg with bt_skb_sendmsg - Bluetooth: RFCOMM: Replace use of memcpy_from_msg with bt_skb_sendmmsg - Bluetooth: Fix passing NULL to PTR_ERR - Bluetooth: SCO: Fix sco_send_frame returning skb->len - Bluetooth: Fix bt_skb_sendmmsg not allocating partial chunks - [x86] amd: Use IBPB for firmware calls - [x86] alternative: Report missing return thunk details - watchqueue: make sure to serialize 'wqueue->defunct' properly - tty: drivers/tty/, stop using tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drop tty_schedule_flip() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - net: usb: ax88179_178a needs FLAG_SEND_ZLP - watch-queue: remove spurious double semicolon https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.135 - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - Revert "ocfs2: mount shared volume without ha stack" - [s390x] archrandom: prevent CPACF trng invocations in interrupt context - watch_queue: Fix missing rcu annotation - watch_queue: Fix missing locking in add_watch_to_object() - tcp: Fix data-races around sysctl_tcp_dsack. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix data-races around sysctl_tcp_no_ssthresh_metrics_save. - ice: check (DD | EOF) bits on Rx descriptor rather than (EOP | RS) - ice: do not setup vlan for loopback VSI - Revert "tcp: change pingpong threshold to 3" - tcp: Fix data-races around sysctl_tcp_moderate_rcvbuf. - tcp: Fix a data-race around sysctl_tcp_limit_output_bytes. - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - net: ping6: Fix memleak in ipv6_renew_options(). - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - igmp: Fix data-races around sysctl_igmp_qrv. - net: sungem_phy: Add of_node_put() for reference returned by of_get_parent() - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - Documentation: fix sctp_wmem in ip-sysctl.rst - macsec: fix NULL deref in macsec_add_rxsa - macsec: fix error message in macsec_add_rxsa and _txsa - macsec: limit replay window size with XPN - macsec: always read MACSEC_SA_ATTR_PN as a u64 - net: macsec: fix potential resource leak in macsec_add_rxsa() and macsec_add_txsa() - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_slack_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix data-races around sysctl_tcp_reflect_tos. - i40e: Fix interface init with MSI interrupts (no MSI-X) - sctp: fix sleep in atomic context bug in timer handlers - netfilter: nf_queue: do not allow packet truncation below transport header offset (CVE-2022-36946) - virtio-net: fix the race between refill work and close - sfc: disable softirqs for ptp TX - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - page_alloc: fix invalid watermark check on a negative value - mt7601u: add USB device ID for some versions of XiaoDu WiFi Dongle. - [arm*] 9216/1: Fix MAX_DMA_ADDRESS overflow - docs/kernel-parameters: Update descriptions for "mitigations=" param with retbleed - xfs: refactor xfs_file_fsync - xfs: xfs_log_force_lsn isn't passed a LSN - xfs: prevent UAF in xfs_log_item_in_current_chkpt - xfs: fix log intent recovery ENOSPC shutdowns when inactivating inodes - xfs: force the log offline when log intent item recovery fails - xfs: hold buffer across unpin and potential shutdown processing - xfs: remove dead stale buf unpin handling code - xfs: logging the on disk inode LSN can make it go backwards - xfs: Enforce attr3 buffer recovery order - [x86] bugs: Do not enable IBPB at firmware entry when IBPB is not available - bpf: Consolidate shared test timing code - bpf: Add PROG_TEST_RUN support for sk_lookup programs https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.136 - [x86] speculation: Make all RETbleed mitigations 64-bit only - ath9k_htc: fix NULL pointer dereference at ath9k_htc_rxep() - ath9k_htc: fix NULL pointer dereference at ath9k_htc_tx_get_packet() - tun: avoid double free in tun_free_netdev - [x86] ACPI: video: Force backlight native for some TongFang devices - [x86] ACPI: video: Shortening quirk list by identifying Clevo by board_name only - ACPI: APEI: Better fix to avoid spamming the console with old error logs - [arm64] crypto: arm64/poly1305 - fix a read out-of-bound - Bluetooth: hci_bcm: Add BCM4349B1 variant - Bluetooth: hci_bcm: Add DT compatible for CYW55572 - Bluetooth: btusb: Add support of IMC Networks PID 0x3568 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04CA:0x4007 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04C5:0x1675 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x0CB8:0xC558 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3587 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3586 - [x86] Add mitigations for Post-Barrier Return Stack Buffer Prediction (PBRSB) issue (CVE-2022-26373): + x86/speculation: Add RSB VM Exit protections + x86/speculation: Add LFENCE to RSB fill sequence . [ Salvatore Bonaccorso ] * Bump ABI to 17 * [rt] Update to 5.10.131-rt72 * posix-cpu-timers: Cleanup CPU timers before freeing them during exec (CVE-2022-2585) * netfilter: nf_tables: do not allow SET_ID to refer to another table (CVE-2022-2586) * netfilter: nf_tables: do not allow CHAIN_ID to refer to another table * netfilter: nf_tables: do not allow RULE_ID to refer to another chain * net_sched: cls_route: remove from list when handle is 0 (CVE-2022-2588) linux-signed-arm64 (5.10.127+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.127-2 . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size linux-signed-arm64 (5.10.127+2~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.127-2~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.deb10.16 linux-signed-i386 (5.10.140+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.140-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.137 - Makefile: link with -z noexecstack --no-warn-rwx-segments - [x86] link vdso and boot with -z noexecstack --no-warn-rwx-segments - Revert "pNFS: nfs3_set_ds_client should set NFS_CS_NOPING" - scsi: Revert "scsi: qla2xxx: Fix disk failure to rediscover" - ALSA: bcd2000: Fix a UAF bug on the error path of probing - ALSA: hda/realtek: Add quirk for Clevo NV45PZ - ALSA: hda/realtek: Add quirk for HP Spectre x360 15-eb0xxx - wifi: mac80211_hwsim: fix race condition in pending packet - wifi: mac80211_hwsim: add back erroneously removed cast - wifi: mac80211_hwsim: use 32-bit skb cookie - add barriers to buffer_uptodate and set_buffer_uptodate - HID: wacom: Only report rotation for art pen - HID: wacom: Don't register pad_input for touch switch - [x86] KVM: nVMX: Snapshot pre-VM-Enter BNDCFGS for !nested_run_pending case - [x86] KVM: nVMX: Snapshot pre-VM-Enter DEBUGCTL for !nested_run_pending case - [x86] KVM: SVM: Don't BUG if userspace injects an interrupt with GIF=0 - [s390x] KVM: s390: pv: don't present the ecall interrupt twice - [x86] KVM: nVMX: Let userspace set nVMX MSR to any _host_ supported value - [x86] KVM: x86: Mark TSS busy during LTR emulation _after_ all fault checks - [x86] KVM: x86: Set error code to segment selector on LLDT/LTR non-canonical #GP - [x86] KVM: x86: Tag kvm_mmu_x86_module_init() with __init - mm: Add kvrealloc() - xfs: only set IOMAP_F_SHARED when providing a srcmap to a write - xfs: fix I_DONTCACHE - mm/mremap: hold the rmap lock in write mode when moving page table entries. - ALSA: hda/conexant: Add quirk for LENOVO 20149 Notebook model - ALSA: hda/cirrus - support for iMac 12,1 model - ALSA: hda/realtek: Add quirk for another Asus K42JZ model - ALSA: hda/realtek: Add a quirk for HP OMEN 15 (8786) mute LED - tty: vt: initialize unicode screen buffer - vfs: Check the truncate maximum size in inode_newsize_ok() - fs: Add missing umask strip in vfs_tmpfile - thermal: sysfs: Fix cooling_device_stats_setup() error code path - fbcon: Fix boundary checks for fbcon=vc:n1-n2 parameters - fbcon: Fix accelerated fbdev scrolling while logo is still shown - usbnet: Fix linkwatch use-after-free on disconnect - ovl: drop WARN_ON() dentry is NULL in ovl_encode_fh() - drm/gem: Properly annotate WW context on drm_gem_lock_reservations() error - [arm*] drm/vc4: hdmi: Disable audio if dmas property is present but empty - drm/nouveau: fix another off-by-one in nvbios_addr - drm/nouveau: Don't pm_runtime_put_sync(), only pm_runtime_put_autosuspend() - drm/nouveau/acpi: Don't print error when we get -EINPROGRESS from pm_runtime - drm/amdgpu: Check BO's requested pinning domains against its preferred_domains - iio: light: isl29028: Fix the warning in isl29028_remove() - scsi: sg: Allow waiting for commands to complete on removed device - scsi: qla2xxx: Fix incorrect display of max frame size - scsi: qla2xxx: Zero undefined mailbox IN registers - fuse: limit nsec - [arm64] serial: mvebu-uart: uart2 error bits clearing - md-raid: destroy the bitmap after destroying the thread - md-raid10: fix KASAN warning - PCI: Add defines for normal and subtractive PCI bridges - [powerpc*] powernv: Avoid crashing if rng is NULL - [mips64el,mipsel] cpuinfo: Fix a warning for CONFIG_CPUMASK_OFFSTACK - usb: typec: ucsi: Acknowledge the GET_ERROR_STATUS command completion - USB: HCD: Fix URB giveback issue in tasklet function - [arm64,armhf] usb: dwc3: gadget: refactor dwc3_repare_one_trb - [arm64,armhf] usb: dwc3: gadget: fix high speed multiplier setting - netfilter: nf_tables: fix null deref due to zeroed list head - epoll: autoremove wakers even more aggressively - [x86] Handle idle=nomwait cmdline properly for x86_idle - [arm64] Do not forget syscall when starting a new thread. - [arm64] fix oops in concurrently setting insn_emulation sysctls - genirq: Don't return error on missing optional irq_request_resources() - [mips64el,mipsel] irqchip/mips-gic: Only register IPI domain when SMP is enabled - genirq: GENERIC_IRQ_IPI depends on SMP - [mips64el,mipsel] irqchip/mips-gic: Check the return value of ioremap() in gic_of_init() - wait: Fix __wait_event_hrtimeout for RT/DL tasks - [armhf] OMAP2+: display: Fix refcount leak bug - ACPI: EC: Remove duplicate ThinkPad X1 Carbon 6th entry from DMI quirks - ACPI: EC: Drop the EC_FLAGS_IGNORE_DSDT_GPE quirk - ACPI: PM: save NVS memory for Lenovo G40-45 - ACPI: LPSS: Fix missing check in register_device_clock() - [arm64] dts: allwinner: a64: orangepi-win: Fix LED node name - PM: hibernate: defer device probing when resuming from hibernation - selinux: Add boundary check in put_entry() - [armel,armhf] findbit: fix overflowing offset - [arm64,armhf] meson-mx-socinfo: Fix refcount leak in meson_mx_socinfo_init - ACPI: processor/idle: Annotate more functions to live in cpuidle section - Input: atmel_mxt_ts - fix up inverted RESET handler - [arm64] soc: amlogic: Fix refcount leak in meson-secure-pwrc.c - [x86] pmem: Fix platform-device leak in error path - [armhf] dts: ast2500-evb: fix board compatible - [armhf] dts: ast2600-evb: fix board compatible - [arm64] cpufeature: Allow different PMU versions in ID_DFR0_EL1 - locking/lockdep: Fix lockdep_init_map_*() confusion - [arm64] soc: fsl: guts: machine variable might be unset - block: fix infinite loop for invalid zone append - [armhf] OMAP2+: Fix refcount leak in omapdss_init_of - [armhf] OMAP2+: Fix refcount leak in omap3xxx_prm_late_init - [arm64] regulator: qcom_smd: Fix pm8916_pldo range - [arm64] ACPI: APEI: Fix _EINJ vs EFI_MEMORY_SP - [arm64] bus: hisi_lpc: fix missing platform_device_put() in hisi_lpc_acpi_probe() - erofs: avoid consecutive detection for Highmem memory - blk-mq: don't create hctx debugfs dir until q->debugfs_dir is created - hwmon: (drivetemp) Add module alias - block: remove the request_queue to argument request based tracepoints - blktrace: Trace remapped requests correctly - regulator: of: Fix refcount leak bug in of_get_regulation_constraints() - nohz/full, sched/rt: Fix missed tick-reenabling bug in dequeue_task_rt() - dm: return early from dm_pr_call() if DM device is suspended - ath10k: do not enforce interrupt trigger type - wifi: rtlwifi: fix error codes in rtl_debugfs_set_write_h2c() - ath11k: fix netdev open race - drm/mipi-dbi: align max_chunk to 2 in spi_transfer - ath11k: Fix incorrect debug_mask mappings - drm/radeon: fix potential buffer overflow in ni_set_mc_special_registers() - virtio-gpu: fix a missing check to avoid NULL dereference - [arm64] drm: adv7511: override i2c address of cec before accessing it - net: fix sk_wmem_schedule() and sk_rmem_schedule() errors - i2c: Fix a potential use after free - media: tw686x: Register the irq at the end of probe - ath9k: fix use-after-free in ath9k_hif_usb_rx_cb (CVE-2022-1679) - wifi: iwlegacy: 4965: fix potential off-by-one overflow in il4965_rs_fill_link_cmd() - drm/radeon: fix incorrrect SPDX-License-Identifiers - [amd64] crypto: ccp - During shutdown, check SEV data pointer before using - [arm64] drm: bridge: adv7511: Add check for mipi_dsi_driver_register - media: hdpvr: fix error value returns in hdpvr_read - [arm64,armhf] media: v4l2-mem2mem: prevent pollerr when last_buffer_dequeued is set - media: tw686x: Fix memory leak in tw686x_video_init - [arm*] drm/vc4: plane: Remove subpixel positioning check - [arm*] drm/vc4: plane: Fix margin calculations for the right/bottom edges - [arm*] drm/vc4: dsi: Correct DSI divider calculations - [arm*] drm/vc4: dsi: Correct pixel order for DSI0 - [arm*] drm/vc4: drv: Remove the DSI pointer in vc4_drv - [arm*] drm/vc4: dsi: Use snprintf for the PHY clocks instead of an array - [arm*] drm/vc4: dsi: Introduce a variant structure - [arm*] drm/vc4: dsi: Register dsi0 as the correct vc4 encoder type - [arm*] drm/vc4: dsi: Fix dsi0 interrupt support - [arm*] drm/vc4: dsi: Add correct stop condition to vc4_dsi_encoder_disable iteration - [arm*] drm/vc4: hdmi: Remove firmware logic for MAI threshold setting - [arm*] drm/vc4: hdmi: Avoid full hdmi audio fifo writes - [arm*] drm/vc4: hdmi: Don't access the connector state in reset if kmalloc fails - [arm*] drm/vc4: hdmi: Limit the BCM2711 to the max without scrambling - [arm*] drm/vc4: hdmi: Fix timings for interlaced modes - [arm*] drm/vc4: hdmi: Correct HDMI timing registers for interlaced modes - [arm64,armhf] drm/rockchip: vop: Don't crash for invalid duplicate_state() - [arm64,armhf] drm/rockchip: Fix an error handling path rockchip_dp_probe() - lib: bitmap: order includes alphabetically - lib: bitmap: provide devm_bitmap_alloc() and devm_bitmap_zalloc() - hinic: Use the bitmap API when applicable - net: hinic: fix bug that ethtool get wrong stats - net: hinic: avoid kernel hung in hinic_get_stats64() - [arm64] drm/msm/mdp5: Fix global state lock backoff - mt76: mt76x02u: fix possible memory leak in __mt76x02u_mcu_send_msg - mediatek: mt76: mac80211: Fix missing of_node_put() in mt76_led_init() - tcp: make retransmitted SKB fit into the send window - bpf: Fix subprog names in stack traces. - fs: check FMODE_LSEEK to control internal pipe splicing - wifi: wil6210: debugfs: fix info leak in wil_write_file_wmi() - [i386] can: pch_can: do not report txerr and rxerr during bus-off - can: sja1000: do not report txerr and rxerr during bus-off - [armhf] can: sun4i_can: do not report txerr and rxerr during bus-off - can: kvaser_usb_hydra: do not report txerr and rxerr during bus-off - can: kvaser_usb_leaf: do not report txerr and rxerr during bus-off - can: usb_8dev: do not report txerr and rxerr during bus-off - can: error: specify the values of data[5..7] of CAN error frames - [i386] can: pch_can: pch_can_error(): initialize errc before using it - Bluetooth: hci_intel: Add check for platform_driver_register - wifi: wil6210: debugfs: fix uninitialized variable use in `wil_write_file_wmi()` - wifi: iwlwifi: mvm: fix double list_add at iwl_mvm_mac_wake_tx_queue - wifi: libertas: Fix possible refcount leak in if_usb_probe() - [arm64,armhf] media: cedrus: hevc: Add check for invalid timestamp - net/mlx5e: Remove WARN_ON when trying to offload an unsupported TLS cipher/version - net/mlx5e: Fix the value of MLX5E_MAX_RQ_NUM_MTTS - [arm64] crypto: inside-secure - Add missing MODULE_DEVICE_TABLE for of - inet: add READ_ONCE(sk->sk_bound_dev_if) in INET_MATCH() - tcp: sk->sk_bound_dev_if once in inet_request_bound_dev_if() - ipv6: add READ_ONCE(sk->sk_bound_dev_if) in INET6_MATCH() - tcp: Fix data-races around sysctl_tcp_l3mdev_accept. - net: allow unbound socket for packets in VRF when tcp_l3mdev_accept set - iavf: Fix max_rate limiting - net: rose: fix netdev reference changes - dccp: put dccp_qpolicy_full() and dccp_qpolicy_push() in the same lock - wireguard: ratelimiter: use hrtimer in selftest - wireguard: allowedips: don't corrupt stack when detecting overflow - HID: cp2112: prevent a buffer overflow in cp2112_xfer() - mtd: partitions: Fix refcount leak in parse_redboot_of - [arm64,armhf] usb: xhci: tegra: Fix error check - netfilter: xtables: Bring SPDX identifier back - [arm64,armhf] platform/chrome: cros_ec: Always expose last resume result - KVM: Don't set Accessed/Dirty bits for ZERO_PAGE - mwifiex: Ignore BTCOEX events from the 88W8897 firmware - mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv - misc: rtsx: Fix an error handling path in rtsx_pci_probe() - driver core: fix potential deadlock in __driver_attach - usb: host: xhci: use snprintf() in xhci_decode_trb() - [arm64,armhf] PCI: dwc: Add unroll iATU space support to dw_pcie_disable_atu() - [arm64,armhf] PCI: dwc: Always enable CDM check if "snps,enable-cdm-check" exists - soundwire: bus_type: fix remove and shutdown support - [arm64] KVM: arm64: Don't return from void function - [x86] intel_th: Fix a resource leak in an error handling path - [x86] intel_th: msu-sink: Potential dereference of null pointer - [x86] intel_th: msu: Fix vmalloced buffers - [x86] staging: rtl8192u: Fix sleep in atomic context bug in dm_fsync_timer_callback - [arm64] mmc: sdhci-of-esdhc: Fix refcount leak in esdhc_signal_voltage_switch - mmc: block: Add single read for 4k sector cards - [s390x] KVM: s390: pv: leak the topmost page table when destroy fails - PCI/portdrv: Don't disable AER reporting in get_port_device_capability() - [arm64] PCI: qcom: Set up rev 2.1.0 PARF_PHY before enabling clocks - scsi: smartpqi: Fix DMA direction for RAID requests - [armhf] usb: aspeed-vhub: Fix refcount leak bug in ast_vhub_init_desc() - [arm64,armhf] usb: dwc3: core: Deprecate GCTL.CORESOFTRESET - [arm64,armhf] usb: dwc3: core: Do not perform GCTL_CORE_SOFTRESET during bootup - [arm64,armhf] usb: dwc3: qcom: fix missing optional irq warnings - RDMA/qedr: Improve error logs for rdma_alloc_tid error return - RDMA/qedr: Fix potential memory leak in __qedr_alloc_mr() - [arm64] RDMA/hns: Fix incorrect clearing of interrupt status register - [amd64] RDMA/hfi1: fix potential memory leak in setup_base_ctxt() - gpio: gpiolib-of: Fix refcount bugs in of_mm_gpiochip_add_data() - [mips64el,mipsel] mmc: cavium-octeon: Add of_node_put() when breaking out of loop - HID: alps: Declare U1_UNICORN_LEGACY support - USB: serial: fix tty-port initialized comments - [armhf,i386] platform/olpc: Fix uninitialized data in debugfs write - RDMA/srpt: Duplicate port name members - RDMA/srpt: Introduce a reference count in struct srpt_device - RDMA/srpt: Fix a use-after-free - mm/mmap.c: fix missing call to vm_unacct_memory in mmap_region - RDMA/mlx5: Add missing check for return value in get namespace flow - RDMA/rxe: Fix error unwind in rxe_create_qp() - null_blk: fix ida error handling in null_add_dev() - nvme: use command_id instead of req->tag in trace_nvme_complete_rq() - jbd2: fix outstanding credits assert in jbd2_journal_commit_transaction() - ext4: recover csum seed of tmp_inode after migrating to extents - jbd2: fix assertion 'jh->b_frozen_data == NULL' failure when journal aborted - opp: Fix error check in dev_pm_opp_attach_genpd() - serial: 8250: Export ICR access helpers for internal use - serial: 8250_dw: Store LSR into lsr_saved_flags in dw8250_tx_wait_empty() - profiling: fix shift too large makes kernel panic - tty: n_gsm: Delete gsmtty open SABM frame when config requester - tty: n_gsm: fix user open not possible at responder until initiator open - tty: n_gsm: fix wrong queuing behavior in gsm_dlci_data_output() - tty: n_gsm: fix non flow control frames during mux flow off - tty: n_gsm: fix packet re-transmission without open control channel - tty: n_gsm: fix race condition in gsmld_write() - [arm64] ASoC: qcom: Fix missing of_node_put() in asoc_qcom_lpass_cpu_platform_probe() - vfio: Remove extra put/gets around vfio_device->group - vfio: Simplify the lifetime logic for vfio_device - vfio: Split creation of a vfio_device into init and register ops - tty: n_gsm: fix wrong T1 retry count handling - tty: n_gsm: fix DM command - tty: n_gsm: fix missing corner cases in gsmld_poll() - kfifo: fix kfifo_to_user() return type - lib/smp_processor_id: fix imbalanced instrumentation_end() call - [arm64] mfd: max77620: Fix refcount leak in max77620_initialise_fps - [arm64] iommu/arm-smmu: qcom_iommu: Add of_node_put() when breaking out of loop - [s390x] dump: fix old lowcore virtual vs physical address confusion - fuse: Remove the control interface for virtio-fs - [armhf] ASoC: audio-graph-card: Add of_node_put() in fail path - [arm64] watchdog: armada_37xx_wdt: check the return value of devm_ioremap() in armada_37xx_wdt_probe() - [arm64,armhf] video: fbdev: amba-clcd: Fix refcount leak bugs - video: fbdev: sis: fix typos in SiS_GetModeID() - [powerpc*] pci: Prefer PCI domain assignment via DT 'linux,pci-domain' and alias - f2fs: don't set GC_FAILURE_PIN for background GC - f2fs: write checkpoint during FG_GC - f2fs: fix to remove F2FS_COMPR_FL and tag F2FS_NOCOMP_FL at the same time - [powerpc*] xive: Fix refcount leak in xive_get_max_prio - kprobes: Forbid probing on trampoline and BPF code areas - [powerpc*] pci: Fix PHB numbering when using opal-phbid - sched/deadline: Merge dl_task_can_attach() and dl_cpu_busy() - sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed - [amd64] x86/numa: Use cpumask_available instead of hardcoded NULL check - video: fbdev: arkfb: Fix a divide-by-zero bug in ark_set_pixclock() - sched: Fix the check of nr_running at queue wakelist - video: fbdev: vt8623fb: Check the size of screen before memset_io() - video: fbdev: arkfb: Check the size of screen before memset_io() - video: fbdev: s3fb: Check the size of screen before memset_io() - [s390x] scsi: zfcp: Fix missing auto port scan and thus missing target ports - scsi: qla2xxx: Fix discovery issues in FC-AL topology - scsi: qla2xxx: Turn off multi-queue for 8G adapters - scsi: qla2xxx: Fix erroneous mailbox timeout after PCI error injection - scsi: qla2xxx: Fix losing FCP-2 targets on long port disable with I/Os - scsi: qla2xxx: Fix losing FCP-2 targets during port perturbation tests - [x86] bugs: Enable STIBP for IBPB mitigated RETBleed - [x86] ftrace/x86: Add back ftrace_expected assignment - __follow_mount_rcu(): verify that mount_lock remains unchanged - spmi: trace: fix stack-out-of-bound access in SPMI tracing functions - [x86] drm/i915/dg1: Update DMC_DEBUG3 register - HID: Ignore battery for Elan touchscreen on HP Spectre X360 15-df0xxx - HID: hid-input: add Surface Go battery quirk - [arm*] drm/vc4: drv: Adopt the dma configuration from the HVS or V3D component - usbnet: smsc95xx: Don't clear read-only PHY interrupt - usbnet: smsc95xx: Avoid link settings race on interrupt reception - [x86] intel_th: pci: Add Meteor Lake-P support - [x86] intel_th: pci: Add Raptor Lake-S PCH support - [x86] intel_th: pci: Add Raptor Lake-S CPU support - [x86] KVM: set_msr_mce: Permit guests to ignore single-bit ECC errors - [x86] KVM: x86: Signal #GP, not -EPERM, on bad WRMSR(MCi_CTL/STATUS) - [amd64] iommu/vt-d: avoid invalid memory access via node_online(NUMA_NO_NODE) - PCI/AER: Write AER Capability only when we control it - PCI/ERR: Bind RCEC devices to the Root Port driver - PCI/ERR: Rename reset_link() to reset_subordinates() - PCI/ERR: Simplify by using pci_upstream_bridge() - PCI/ERR: Simplify by computing pci_pcie_type() once - PCI/ERR: Use "bridge" for clarity in pcie_do_recovery() - PCI/ERR: Avoid negated conditional for clarity - PCI/ERR: Add pci_walk_bridge() to pcie_do_recovery() - PCI/ERR: Recover from RCEC AER errors - PCI/AER: Iterate over error counters instead of error strings - serial: 8250: Dissociate 4MHz Titan ports from Oxford ports - serial: 8250: Correct the clock for OxSemi PCIe devices - serial: 8250_pci: Refactor the loop in pci_ite887x_init() - serial: 8250_pci: Replace dev_*() by pci_*() macros - serial: 8250: Fold EndRun device support into OxSemi Tornado code - dm writecache: set a default MAX_WRITEBACK_JOBS - dm thin: fix use-after-free crash in dm_sm_register_threshold_callback - timekeeping: contribute wall clock to rng on time change - btrfs: reject log replay if there is unsupported RO compat flag - btrfs: reset block group chunk force if we have to wait - [amd64,arm64] ACPI: CPPC: Do not prevent CPPC from working in the future - [x86] KVM: VMX: Drop guest CPUID check for VMXE in vmx_set_cr4() - [x86] KVM: VMX: Drop explicit 'nested' check from vmx_set_cr4() - [x86] KVM: SVM: Drop VMXE check from svm_set_cr4() - [x86] KVM: x86: Move vendor CR4 validity check to dedicated kvm_x86_ops hook - [x86] KVM: nVMX: Inject #UD if VMXON is attempted with incompatible CR0/CR4 - [x86] KVM: x86/pmu: preserve IA32_PERF_CAPABILITIES across CPUID refresh - [x86] KVM: x86/pmu: Use binary search to check filtered events - [x86] KVM: x86/pmu: Use different raw event masks for AMD and Intel - [x86] KVM: x86/pmu: Introduce the ctrl_mask value for fixed counter - [x86] KVM: VMX: Mark all PERF_GLOBAL_(OVF)_CTRL bits reserved if there's no vPMU - [x86] KVM: x86/pmu: Ignore pmu->global_ctrl check if vPMU doesn't support global_ctrl - xen-blkback: fix persistent grants negotiation - xen-blkback: Apply 'feature_persistent' parameter when connect - xen-blkfront: Apply 'feature_persistent' parameter when connect - KEYS: asymmetric: enforce SM2 signature use pkey algo - tpm: eventlog: Fix section mismatch for DEBUG_SECTION_MISMATCH - tracing: Use a struct alignof to determine trace event field alignment - ext4: check if directory block is within i_size (CVE-2022-1184) - ext4: add EXT4_INODE_HAS_XATTR_SPACE macro in xattr.h - ext4: fix warning in ext4_iomap_begin as race between bmap and write - ext4: make sure ext4_append() always allocates new block - ext4: fix use-after-free in ext4_xattr_set_entry - ext4: update s_overhead_clusters in the superblock during an on-line resize - ext4: fix extent status tree race in writeback error recovery path - ext4: correct max_inline_xattr_value_size computing - ext4: correct the misjudgment in ext4_iget_extra_inode - dm raid: fix address sanitizer warning in raid_resume - dm raid: fix address sanitizer warning in raid_status - KVM: Add infrastructure and macro to mark VM as bugged - [x86] KVM: x86: Check lapic_in_kernel() before attempting to set a SynIC irq (CVE-2022-2153) - [x86] KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() (CVE-2022-2153) - mac80211: fix a memory leak where sta_info is not freed - tcp: fix over estimation in sk_forced_mem_schedule() - Revert "mwifiex: fix sleep in atomic context bugs caused by dev_coredumpv" - [arm*] drm/vc4: change vc4_dma_range_matches from a global to static - Revert "net: usb: ax88179_178a needs FLAG_SEND_ZLP" - Bluetooth: L2CAP: Fix l2cap_global_chan_by_psm regression - [x86] kvm: x86/pmu: Fix the compare function used by the pmu event filter - [arm64] tee: add overflow check in register_shm_helper() - net/9p: Initialize the iounit field during fid creation - net_sched: cls_route: disallow handle of 0 - sched/fair: Fix fault in reweight_entity - btrfs: only write the sectors in the vertical stripe which has data stripes - btrfs: raid56: don't trust any cached sector in __raid56_parity_recover() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.138 - ALSA: info: Fix llseek return value when using callback - ALSA: hda/realtek: Add quirk for Clevo NS50PU, NS70PU - [x86] mm: Use proper mask when setting PUD mapping - rds: add missing barrier to release_refill - ata: libata-eh: Add missing command name - [arm64] mmc: meson-gx: Fix an error handling path in meson_mmc_probe() - btrfs: fix lost error handling when looking up extended ref on log replay - tracing: Have filter accept "common_cpu" to be consistent - ALSA: usb-audio: More comprehensive mixer map for ASUS ROG Zenith II - can: ems_usb: fix clang's -Wunaligned-access warning - apparmor: fix quiet_denied for file rules - apparmor: fix absroot causing audited secids to begin with = - apparmor: Fix failed mount permission check error message - apparmor: fix aa_label_asxprint return check - apparmor: fix setting unconfined mode on a loaded profile - apparmor: fix overlapping attachment computation - apparmor: fix reference count leak in aa_pivotroot() - apparmor: Fix memleak in aa_simple_write_to_buffer() - Documentation: ACPI: EINJ: Fix obsolete example - NFSv4.1: Don't decrease the value of seq_nr_highest_sent - NFSv4.1: Handle NFS4ERR_DELAY replies to OP_SEQUENCE correctly - NFSv4: Fix races in the legacy idmapper upcall - NFSv4.1: RECLAIM_COMPLETE must handle EACCES - NFSv4/pnfs: Fix a use-after-free bug in open - bpf: Acquire map uref in .init_seq_private for array map iterator - bpf: Acquire map uref in .init_seq_private for hash map iterator - bpf: Acquire map uref in .init_seq_private for sock local storage map iterator - bpf: Acquire map uref in .init_seq_private for sock{map,hash} iterator - bpf: Check the validity of max_rdwr_access for sock local storage map iterator - can: mcp251x: Fix race condition on receive interrupt - [amd64,arm64] net: atlantic: fix aq_vec index out of range error - sunrpc: fix expiry of auth creds - SUNRPC: Reinitialise the backchannel request buffers before reuse - virtio_net: fix memory leak inside XPD_TX with mergeable - devlink: Fix use-after-free after a failed reload - [arm64] pinctrl: qcom: msm8916: Allow CAMSS GP clocks to be muxed - [arm64,armhf] pinctrl: sunxi: Add I/O bias setting for H6 R-PIO - ACPI: property: Return type of acpi_add_nondev_subnodes() should be bool - geneve: do not use RT_TOS for IPv6 flowlabel - ipv6: do not use RT_TOS for IPv6 flowlabel - [x86] plip: avoid rcu debug splat - vsock: Fix memory leak in vsock_connect() - vsock: Set socket state back to SS_UNCONNECTED in vsock_connect_timeout() - dt-bindings: arm: qcom: fix MSM8916 MTP compatibles - dt-bindings: clock: qcom,gcc-msm8996: add more GCC clock sources - ceph: use correct index when encoding client supported features - ceph: don't leak snap_rwsem in handle_cap_grant - nfp: ethtool: fix the display error of `ethtool -m DEVNAME` - xen/xenbus: fix return type in xenbus_file_read() - atm: idt77252: fix use-after-free bugs caused by tst_timer - geneve: fix TOS inheriting for ipv4 - [arm64] dpaa2-eth: trace the allocated address instead of page struct - iavf: Fix adminq error handling - netfilter: nf_tables: really skip inactive sets when allocating name - netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag - netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified - [powerpc*] pci: Fix get_phb_number() locking - [arm64,armhf] spi: meson-spicc: add local pow2 clock ops to preserve rate between messages - [arm64,armhf] net: dsa: mv88e6060: prevent crash on an unused port - [arm64] net: dsa: felix: fix ethtool 256-511 and 512-1023 TX packet counters - net: genl: fix error path memory leak in policy dumping - ice: Ignore EEXIST when setting promisc mode - [arm64,armhf] i2c: imx: Make sure to unregister adapter on remove() - regulator: pca9450: Remove restrictions for regulator-name - i40e: Fix to stop tx_timeout recovery if GLOBR fails - [arm64,armhf] fec: Fix timer capture timing in `fec_ptp_enable_pps()` - [x86] stmmac: intel: Add a missing clk_disable_unprepare() call in intel_eth_pci_remove() - igb: Add lock to avoid data race - kbuild: fix the modules order between drivers and libs - locking/atomic: Make test_and_*_bit() ordered on failure - [x86] ASoC: SOF: intel: move sof_intel_dsp_desc() forward - [arm64] drm/meson: Fix refcount bugs in meson_vpu_has_available_connectors() - audit: log nftables configuration change events once per table - netfilter: nftables: add helper function to set the base sequence number - netfilter: add helper function to set up the nfnetlink header and use it - [armhf] drm/sun4i: dsi: Prevent underflow when computing packet sizes - PCI: Add ACS quirk for Broadcom BCM5750x NICs - [arm64,armhf] platform/chrome: cros_ec_proto: don't show MKBP version if unsupported - usb: gadget: uvc: call uvc uvcg_warn on completed status instead of uvcg_info - [arm64,armhf] irqchip/tegra: Fix overflow implicit truncation warnings - [arm64] drm/meson: Fix overflow implicit truncation warnings - [armhf] clk: ti: Stop using legacy clkctrl names for omap4 and 5 - [arm*] usb: dwc2: gadget: remove D+ pull-up while no vbus with usb-role-switch - [x86] vboxguest: Do not use devm for irq - uacce: Handle parent device removal or parent driver module rmmod - zram: do not lookup algorithm in backends table - [arm64] clk: qcom: clk-alpha-pll: fix clk_trion_pll_configure description - scsi: lpfc: Prevent buffer overflow crashes in debugfs with malformed user input - gadgetfs: ep_io - wait until IRQ finishes - [x86] pinctrl: intel: Check against matching data instead of ACPI companion - [powerpc*] cxl: Fix a memory leak in an error handling path - [arm64] PCI/ACPI: Guard ARM64-specific mcfg_quirks - RDMA/rxe: Limit the number of calls to each tasklet - md: Notify sysfs sync_completed in md_reap_sync_thread() - nvmet-tcp: fix lockdep complaint on nvmet_tcp_wq flush during queue teardown - drivers:md:fix a potential use-after-free bug - ext4: avoid remove directory when directory is corrupted - ext4: avoid resizing to a partial cluster size - lib/list_debug.c: Detect uninitialized lists - vfio: Clear the caps->buf to NULL after free - [mips64el,mipsel] cavium-octeon: Fix missing of_node_put() in octeon2_usb_clocks_start - modules: Ensure natural alignment for .altinstructions and __bug_table sections - watchdog: export lockup_detector_reconfigure - ALSA: core: Add async signal helpers - ALSA: timer: Use deferred fasync helper - ALSA: control: Use deferred fasync helper - f2fs: fix to avoid use f2fs_bug_on() in f2fs_new_node_page() - f2fs: fix to do sanity check on segment type in build_sit_entries() - smb3: check xattr value length earlier - [powerpc*] 64: Init jump labels before parse_early_param() - netfilter: nftables: fix a warning message in nf_tables_commit_audit_collect() - netfilter: nf_tables: fix audit memory leak in nf_tables_commit - tracing/probes: Have kprobes and uprobes use $COMM too - can: j1939: j1939_sk_queue_activate_next_locked(): replace WARN_ON_ONCE with netdev_warn_once() - can: j1939: j1939_session_destroy(): fix memory leak of skbs - PCI/ERR: Retain status from error notification - qrtr: Convert qrtr_ports from IDR to XArray - bpf: Fix KASAN use-after-free Read in compute_effective_progs - [arm64] tee: fix memory leak in tee_shm_register() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.139 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.140 - audit: fix potential double free on error path from fsnotify_add_inode_mark - pinctrl: amd: Don't save/restore interrupt status and wake status bits - xfs: prevent a WARN_ONCE() in xfs_ioc_attr_list() - xfs: reject crazy array sizes being fed to XFS_IOC_GETBMAP* - fs: remove __sync_filesystem - vfs: make sync_filesystem return errors from ->sync_fs - xfs: return errors in xfs_fs_sync_fs - xfs: only bother with sync_filesystem during readonly remount - kernel/sched: Remove dl_boosted flag comment - xfrm: fix refcount leak in __xfrm_policy_check() - xfrm: clone missing x->lastused in xfrm_do_migrate - af_key: Do not call xfrm_probe_algs in parallel (CVE-2022-3028) - xfrm: policy: fix metadata dst->dev xmit null pointer dereference - NFS: Don't allocate nfs_fattr on the stack in __nfs42_ssc_open() - NFSv4.2 fix problems with __nfs42_ssc_open - SUNRPC: RPC level errors should set task->tk_rpc_status - mm/huge_memory.c: use helper function migration_entry_to_page() - mm/smaps: don't access young/dirty bit if pte unpresent - rose: check NULL rose_loopback_neigh->loopback - ice: xsk: Force rings to be sized to power of 2 - ice: xsk: prohibit usage of non-balanced queue id - net/mlx5e: Properly disable vlan strip on non-UL reps - bonding: 802.3ad: fix no transmission of LACPDUs - net: ipvtap - add __init/__exit annotations to module init/exit funcs - netfilter: ebtables: reject blobs that don't provide all entry points - bnxt_en: fix NQ resource accounting during vf creation on 57500 chips - netfilter: nft_payload: report ERANGE for too long offset and length - netfilter: nft_payload: do not truncate csum_offset and csum_type - netfilter: nf_tables: do not leave chain stats enabled on error - netfilter: nft_osf: restrict osf to ipv4, ipv6 and inet families - netfilter: nft_tunnel: restrict it to netdev family - netfilter: nftables: remove redundant assignment of variable err - netfilter: nf_tables: consolidate rule verdict trace call - netfilter: nft_cmp: optimize comparison for 16-bytes - netfilter: bitwise: improve error goto labels - netfilter: nf_tables: upfront validation of data via nft_data_init() - netfilter: nf_tables: disallow jump to implicit chain from set element - netfilter: nf_tables: disallow binding to already bound chain (CVE-2022-39190) - tcp: tweak len/truesize ratio for coalesce candidates - net: Fix data-races around sysctl_[rw]mem(_offset)?. - net: Fix data-races around sysctl_[rw]mem_(max|default). - net: Fix data-races around weight_p and dev_weight_[rt]x_bias. - net: Fix data-races around netdev_max_backlog. - net: Fix data-races around netdev_tstamp_prequeue. - ratelimit: Fix data-races in ___ratelimit(). - bpf: Folding omem_charge() into sk_storage_charge() - net: Fix data-races around sysctl_optmem_max. - net: Fix a data-race around sysctl_tstamp_allow_data. - net: Fix a data-race around sysctl_net_busy_poll. - net: Fix a data-race around sysctl_net_busy_read. - net: Fix a data-race around netdev_budget. - net: Fix a data-race around netdev_budget_usecs. - net: Fix data-races around sysctl_fb_tunnels_only_for_init_net. - net: Fix data-races around sysctl_devconf_inherit_init_net. - net: Fix a data-race around sysctl_somaxconn. - ixgbe: stop resetting SYSTIME in ixgbe_ptp_start_cyclecounter - rxrpc: Fix locking in rxrpc's sendmsg - btrfs: fix silent failure when deleting root reference - btrfs: replace: drop assert for suspended replace - btrfs: add info when mount fails due to stale replace target - btrfs: check if root is readonly while setting security xattr - [x86] perf/x86/lbr: Enable the branch type for the Arch LBR by default - [amd64] x86/unwind/orc: Unwind ftrace trampolines with correct ORC entry - [x86] bugs: Add "unknown" reporting for MMIO Stale Data - loop: Check for overflow while configuring loop - asm-generic: sections: refactor memory_intersects - [s390x] fix double free of GS and RI CBs on fork() failure - [x86] ACPI: processor: Remove freq Qos request for all CPUs - xen/privcmd: fix error exit of privcmd_ioctl_dm_op() - mm/hugetlb: fix hugetlb not supporting softdirty tracking - Revert "md-raid: destroy the bitmap after destroying the thread" - md: call __md_stop_writes in md_stop - [arm64] Fix match_list for erratum 1286807 on Arm Cortex-A76 - Documentation/ABI: Mention retbleed vulnerability info file for sysfs - blk-mq: fix io hung due to missing commit_rqs - [x86] perf/x86/intel/uncore: Fix broken read_counter() for SNB IMC PMU - [x86] scsi: storvsc: Remove WQ_MEM_RECLAIM from storvsc_error_wq - bpf: Don't use tnum_range on array range checking for poke descriptors (CVE-2022-2905) . [ Salvatore Bonaccorso ] * Bump ABI to 18 * certs: Rotate to use the "Debian Secure Boot Signer 2022 - linux" certificate (Closes: #1018752) * [x86] nospec: Unwreck the RSB stuffing * [x86] nospec: Fix i386 RSB stuffing (Closes: #1017425) * mm: Force TLB flush for PFNMAP mappings before unlink_file_vma() (CVE-2022-39188) * Revert "PCI/portdrv: Don't disable AER reporting in get_port_device_capability()" * bpf: Don't redirect packets with invalid pkt_len * mm/rmap: Fix anon_vma->degree ambiguity leading to double-reuse * net/af_packet: check len when min_header_len equals to 0 linux-signed-i386 (5.10.136+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.136-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.128 - MAINTAINERS: add Amir as xfs maintainer for 5.10.y - drm: remove drm_fb_helper_modinit - tick/nohz: unexport __init-annotated tick_nohz_full_setup() - bcache: memset on stack variables in bch_btree_check() and bch_sectors_dirty_init() - xfs: use kmem_cache_free() for kmem_cache objects - xfs: punch out data fork delalloc blocks on COW writeback failure - xfs: Fix the free logic of state in xfs_attr_node_hasname - xfs: remove all COW fork extents when remounting readonly - xfs: check sb_meta_uuid for dabuf buffer recovery - [powerpc*] ftrace: Remove ftrace init tramp once kernel init is complete - [arm64] net: mscc: ocelot: allow unregistered IP multicast flooding https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.129 - drm/amdgpu: To flush tlb for MMHUB of RAVEN series - ipv6: take care of disable_policy when restoring routes - nvme-pci: add NVME_QUIRK_BOGUS_NID for ADATA XPG SX6000LNP (AKA SPECTRIX S40G) - nvdimm: Fix badblocks clear off-by-one error - [powerpc*] bpf: Fix use of user_pt_regs in uapi - dm raid: fix accesses beyond end of raid member array - [s390x] archrandom: simplify back to earlier design and initialize earlier - SUNRPC: Fix READ_PLUS crasher (Closes: #1014793) - net: usb: ax88179_178a: Fix packet receiving - virtio-net: fix race between ndo_open() and virtio_device_ready() - [armhf] net: dsa: bcm_sf2: force pause link settings - net: tun: unlink NAPI from device on destruction - net: tun: stop NAPI when detaching queues - net: dp83822: disable false carrier interrupt - net: dp83822: disable rx error interrupt - RDMA/qedr: Fix reporting QP timeout attribute - RDMA/cm: Fix memory leak in ib_cm_insert_listen - linux/dim: Fix divide by 0 in RDMA DIM - usbnet: fix memory allocation in helpers - net: ipv6: unexport __init-annotated seg6_hmac_net_init() - NFSD: restore EINVAL error translation in nfsd_commit() - netfilter: nft_dynset: restore set element counter when failing to update - net/sched: act_api: Notify user space if any actions were flushed before error - net: bonding: fix possible NULL deref in rlb code - net: bonding: fix use-after-free after 802.3ad slave unbind - tipc: move bc link creation back to tipc_node_create - epic100: fix use after free on rmmod - io_uring: ensure that send/sendmsg and recv/recvmsg check sqe->ioprio - tunnels: do not assume mac header is set in skb_tunnel_check_pmtu() - net: tun: avoid disabling NAPI twice - xfs: use current->journal_info for detecting transaction recursion - xfs: rename variable mp to parsing_mp - xfs: Skip repetitive warnings about mount options - xfs: ensure xfs_errortag_random_default matches XFS_ERRTAG_MAX - xfs: fix xfs_trans slab cache name - xfs: update superblock counters correctly for !lazysbcount - xfs: fix xfs_reflink_unshare usage of filemap_write_and_wait_range - tcp: add a missing nf_reset_ct() in 3WHS handling - xen/gntdev: Avoid blocking in unmap_grant_pages() - [arm64] drivers: cpufreq: Add missing of_node_put() in qoriq-cpufreq.c - sit: use min - ipv6/sit: fix ipip6_tunnel_get_prl return value - hwmon: (ibmaem) don't call platform_device_del() if platform_device_add() fails - net: usb: qmi_wwan: add Telit 0x1060 composition - net: usb: qmi_wwan: add Telit 0x1070 composition https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.130 - mm/slub: add missing TID updates on slab deactivation - ALSA: hda/realtek: Add quirk for Clevo L140PU - can: bcm: use call_rcu() instead of costly synchronize_rcu() - can: gs_usb: gs_usb_open/close(): fix memory leak - bpf: Fix incorrect verifier simulation around jmp32's jeq/jne - bpf: Fix insufficient bounds propagation from adjust_scalar_min_max_vals - usbnet: fix memory leak in error case - netfilter: nft_set_pipapo: release elements in clone from abort path - [amd64] iommu/vt-d: Fix PCI bus rescan device hot add - PM: runtime: Redefine pm_runtime_release_supplier() - memregion: Fix memregion_free() fallback definition - video: of_display_timing.h: include errno.h - [powerpc*] powernv: delay rng platform device creation until later in boot - can: kvaser_usb: replace run-time checks with struct kvaser_usb_driver_info - can: kvaser_usb: kvaser_usb_leaf: fix CAN clock frequency regression - can: kvaser_usb: kvaser_usb_leaf: fix bittiming limits - xfs: remove incorrect ASSERT in xfs_rename - [armhf] meson: Fix refcount leak in meson_smp_prepare_cpus - [armhf] pinctrl: sunxi: a83t: Fix NAND function name for some pins - [arm64] dts: imx8mp-evk: correct mmc pad settings - [arm64] dts: imx8mp-evk: correct the uart2 pinctl value - [arm64] dts: imx8mp-evk: correct gpio-led pad settings - [arm64] dts: imx8mp-evk: correct I2C3 pad settings - [arm64,armhf] pinctrl: sunxi: sunxi_pconf_set: use correct offset - [arm64] dts: qcom: msm8992-*: Fix vdd_lvs1_2-supply typo - xsk: Clear page contiguity bit when unmapping pool - i40e: Fix dropped jumbo frames statistics - r8169: fix accessing unset transport header - [armhf] dmaengine: imx-sdma: Allow imx8m for imx7 FW revs - misc: rtsx_usb: fix use of dma mapped buffer for usb bulk transfer - misc: rtsx_usb: use separate command and response buffers - misc: rtsx_usb: set return value in rsp_buf alloc err path - dt-bindings: dma: allwinner,sun50i-a64-dma: Fix min/max typo - ida: don't use BUG_ON() for debugging - [arm64,armhf] dmaengine: pl330: Fix lockdep warning about non-static key - [armhf] dmaengine: ti: Fix refcount leak in ti_dra7_xbar_route_allocate - [armhf] dmaengine: ti: Add missing put_device in ti_dra7_xbar_route_allocate https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.131 - [armhf] Revert "mtd: rawnand: gpmi: Fix setting busy timeout setting" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.132 - [x86] ALSA: hda - Add fixup for Dell Latitidue E5430 - [x86] ALSA: hda/conexant: Apply quirk for another HP ProDesk 600 G3 model - [x86] ALSA: hda/realtek: Fix headset mic for Acer SF313-51 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - [x86] ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc221 - [x86] ALSA: hda/realtek - Enable the headset-mic on a Xiaomi's laptop - xen/netback: avoid entering xenvif_rx_next_skb() with an empty rx queue - fix race between exit_itimers() and /proc/pid/timers - mm: split huge PUD on wp_huge_pud fallback - tracing/histograms: Fix memory leak problem - net: sock: tracing: Fix sock_exceed_buf_limit not to dereference stale pointer - ip: fix dflt addr selection for connected nexthop - [armhf] 9213/1: Print message about disabled Spectre workarounds only once - [armel,armhf] 9214/1: alignment: advance IT state after emulating Thumb instruction - wifi: mac80211: fix queue selection for mesh/OCB interfaces - cgroup: Use separate src/dst nodes when preloading css_sets for migration - btrfs: return -EAGAIN for NOWAIT dio reads/writes on compressed and inline extents - [arm64,armhf] drm/panfrost: Put mapping instead of shmem obj on panfrost_mmu_map_fault_addr() error - [arm64,armhf] drm/panfrost: Fix shrinker list corruption by madvise IOCTL - fs/remap: constrain dedupe of EOF blocks - nilfs2: fix incorrect masking of permission flags for symlinks - sh: convert nommu io{re,un}map() to static inline functions - Revert "evm: Fix memleak in init_desc" - ext4: fix race condition between ext4_write and ext4_convert_inline_data - [armhf] dts: imx6qdl-ts7970: Fix ngpio typo and count - [armhf] 9209/1: Spectre-BHB: avoid pr_info() every time a CPU comes out of idle - [armel,armhf] 9210/1: Mark the FDT_FIXED sections as shareable - net/mlx5e: Fix capability check for updating vnic env counters - [x86] drm/i915: fix a possible refcount leak in intel_dp_add_mst_connector() - ima: Fix a potential integer overflow in ima_appraise_measurement - [arm64,armhf] ASoC: sgtl5000: Fix noise on shutdown/remove - [x86] ASoC: Intel: Skylake: Correct the ssp rate discovery in skl_get_ssp_clks() - [x86] ASoC: Intel: Skylake: Correct the handling of fmt_config flexible array - sysctl: Fix data races in proc_dointvec(). - sysctl: Fix data races in proc_douintvec(). - sysctl: Fix data races in proc_dointvec_minmax(). - sysctl: Fix data races in proc_douintvec_minmax(). - sysctl: Fix data races in proc_doulongvec_minmax(). - sysctl: Fix data races in proc_dointvec_jiffies(). - tcp: Fix a data-race around sysctl_tcp_max_orphans. - inetpeer: Fix data-races around sysctl. - net: Fix data-races around sysctl_mem. - cipso: Fix data-races around sysctl. - icmp: Fix data-races around sysctl. - ipv4: Fix a data-race around sysctl_fib_sync_mem. - [armhf] dts: sunxi: Fix SPI NOR campatible on Orange Pi Zero - [x86] drm/i915/gt: Serialize TLB invalidates with GT resets - sysctl: Fix data-races in proc_dointvec_ms_jiffies(). - icmp: Fix a data-race around sysctl_icmp_ratelimit. - icmp: Fix a data-race around sysctl_icmp_ratemask. - raw: Fix a data-race around sysctl_raw_l3mdev_accept. - ipv4: Fix data-races around sysctl_ip_dynaddr. - nexthop: Fix data-races around nexthop_compat_mode. - [armhf] net: ftgmac100: Hold reference returned by of_get_child_by_name() - ima: force signature verification when CONFIG_KEXEC_SIG is configured - ima: Fix potential memory leak in ima_init_crypto() - sfc: fix use after free when disabling sriov - seg6: fix skb checksum evaluation in SRH encapsulation/insertion - seg6: fix skb checksum in SRv6 End.B6 and End.B6.Encaps behaviors - seg6: bpf: fix skb checksum in bpf_push_seg6_encap() - sfc: fix kernel panic when creating VF - net: atlantic: remove deep parameter on suspend/resume functions - net: atlantic: remove aq_nic_deinit() when resume - [x86] KVM: x86: Fully initialize 'struct kvm_lapic_irq' in kvm_pv_kick_cpu_op() - net/tls: Check for errors in tls_device_init - mm: sysctl: fix missing numa_stat when !CONFIG_HUGETLB_PAGE - virtio_mmio: Add missing PM calls to freeze/restore - virtio_mmio: Restore guest page size on resume - netfilter: br_netfilter: do not skip all hooks with 0 priority - [arm64] scsi: hisi_sas: Limit max hw sectors for v3 HW - [powerpc*] cpufreq: pmac32-cpufreq: Fix refcount leak bug - [x86] platform/x86: hp-wmi: Ignore Sanitization Mode event - net: tipc: fix possible refcount leak in tipc_sk_create() - nvme-tcp: always fail a request when sending it failed - nvme: fix regression when disconnect a recovering ctrl - net: sfp: fix memory leak in sfp_probe() - ASoC: ops: Fix off by one in range control validation - [armhf] pinctrl: aspeed: Fix potential NULL dereference in aspeed_pinmux_set_mux() - [x86] ASoC: SOF: Intel: hda-loader: Clarify the cl_dsp_init() flow - ASoC: dapm: Initialise kcontrol data for mux/demux controls - [amd64] Clear .brk area at early boot - [armhf] dts: stm32: use the correct clock source for CEC on stm32mp151 - Revert "can: xilinx_can: Limit CANFD brp to 2" - nvme-pci: phison e16 has bogus namespace ids - signal handling: don't use BUG_ON() for debugging - USB: serial: ftdi_sio: add Belimo device ids - usb: typec: add missing uevent when partner support PD - [arm64,armhf] usb: dwc3: gadget: Fix event pending check - [armhf] tty: serial: samsung_tty: set dma burst_size to 1 - vt: fix memory overlapping when deleting chars in the buffer - serial: 8250: fix return error code in serial8250_request_std_resource() - [armhf] serial: stm32: Clear prev values before setting RTS delays - [arm*] serial: pl011: UPSTAT_AUTORTS requires .throttle/unthrottle - serial: 8250: Fix PM usage_count for console handover - [x86] pat: Fix x86_has_pat_wp() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.133 - [amd64] Preparation for mitigating RETbleed: + KVM/VMX: Use TEST %REG,%REG instead of CMP $0,%REG in vmenter.S + KVM/nVMX: Use __vmx_vcpu_run in nested_vmx_check_vmentry_hw + objtool: Refactor ORC section generation + objtool: Add 'alt_group' struct + objtool: Support stack layout changes in alternatives + objtool: Support retpoline jump detection for vmlinux.o + objtool: Assume only ELF functions do sibling calls + objtool: Combine UNWIND_HINT_RET_OFFSET and UNWIND_HINT_FUNC + x86/xen: Support objtool validation in xen-asm.S + x86/xen: Support objtool vmlinux.o validation in xen-head.S + x86/alternative: Merge include files + x86/alternative: Support not-feature + x86/alternative: Support ALTERNATIVE_TERNARY + x86/alternative: Use ALTERNATIVE_TERNARY() in _static_cpu_has() + x86/insn: Rename insn_decode() to insn_decode_from_regs() + x86/insn: Add a __ignore_sync_check__ marker + x86/insn: Add an insn_decode() API + x86/insn-eval: Handle return values from the decoder + x86/alternative: Use insn_decode() + x86: Add insn_decode_kernel() + x86/alternatives: Optimize optimize_nops() + x86/retpoline: Simplify retpolines + objtool: Correctly handle retpoline thunk calls + objtool: Handle per arch retpoline naming + objtool: Rework the elf_rebuild_reloc_section() logic + objtool: Add elf_create_reloc() helper + objtool: Create reloc sections implicitly + objtool: Extract elf_strtab_concat() + objtool: Extract elf_symbol_add() + objtool: Add elf_create_undef_symbol() + objtool: Keep track of retpoline call sites + objtool: Cache instruction relocs + objtool: Skip magical retpoline .altinstr_replacement + objtool/x86: Rewrite retpoline thunk calls + objtool: Support asm jump tables + x86/alternative: Optimize single-byte NOPs at an arbitrary position + objtool: Fix .symtab_shndx handling for elf_create_undef_symbol() + objtool: Only rewrite unconditional retpoline thunk calls + objtool/x86: Ignore __x86_indirect_alt_* symbols + objtool: Don't make .altinstructions writable + objtool: Teach get_alt_entry() about more relocation types + objtool: print out the symbol type when complaining about it + objtool: Remove reloc symbol type checks in get_alt_entry() + objtool: Make .altinstructions section entry size consistent + objtool: Introduce CFI hash + objtool: Handle __sanitize_cov*() tail calls + objtool: Classify symbols + objtool: Explicitly avoid self modifying code in .altinstr_replacement + objtool,x86: Replace alternatives with .retpoline_sites + x86/retpoline: Remove unused replacement symbols + x86/asm: Fix register order + x86/asm: Fixup odd GEN-for-each-reg.h usage + x86/retpoline: Move the retpoline thunk declarations to nospec-branch.h + x86/retpoline: Create a retpoline thunk array + x86/alternative: Implement .retpoline_sites support + x86/alternative: Handle Jcc __x86_indirect_thunk_\reg + x86/alternative: Try inline spectre_v2=retpoline,amd + x86/alternative: Add debug prints to apply_retpolines() + bpf,x86: Simplify computing label offsets + bpf,x86: Respect X86_FEATURE_RETPOLINE* + x86/lib/atomic64_386_32: Rename things - [amd64] Mitigate straight-line speculation: + x86: Prepare asm files for straight-line-speculation + x86: Prepare inline-asm for straight-line-speculation + x86/alternative: Relax text_poke_bp() constraint + objtool: Add straight-line-speculation validation + x86: Add straight-line-speculation mitigation + tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' + kvm/emulate: Fix SETcc emulation function offsets with SLS + objtool: Default ignore INT3 for unreachable + crypto: x86/poly1305 - Fixup SLS + objtool: Fix SLS validation for kcov tail-call replacement - objtool: Fix code relocs vs weak symbols - objtool: Fix type of reloc::addend - objtool: Fix symbol creation - x86/entry: Remove skip_r11rcx - objtool: Fix objtool regression on x32 systems - x86/realmode: build with -D__DISABLE_EXPORTS - [amd64] Add mitigations for RETbleed on AMD/Hygon (CVE-2022-29900) and Intel (CVE-2022-29901) processors: + x86/kvm/vmx: Make noinstr clean + x86/cpufeatures: Move RETPOLINE flags to word 11 + x86/retpoline: Cleanup some #ifdefery + x86/retpoline: Swizzle retpoline thunk + Makefile: Set retpoline cflags based on CONFIG_CC_IS_{CLANG,GCC} + x86/retpoline: Use -mfunction-return + x86: Undo return-thunk damage + x86,objtool: Create .return_sites + objtool: skip non-text sections when adding return-thunk sites + x86,static_call: Use alternative RET encoding + x86/ftrace: Use alternative RET encoding + x86/bpf: Use alternative RET encoding + x86/kvm: Fix SETcc emulation for return thunks + x86/vsyscall_emu/64: Don't use RET in vsyscall emulation + x86/sev: Avoid using __x86_return_thunk + x86: Use return-thunk in asm code + objtool: Treat .text.__x86.* as noinstr + x86: Add magic AMD return-thunk + x86/bugs: Report AMD retbleed vulnerability + x86/bugs: Add AMD retbleed= boot parameter + x86/bugs: Enable STIBP for JMP2RET + x86/bugs: Keep a per-CPU IA32_SPEC_CTRL value + x86/entry: Add kernel IBRS implementation + x86/bugs: Optimize SPEC_CTRL MSR writes + x86/speculation: Add spectre_v2=ibrs option to support Kernel IBRS + x86/bugs: Split spectre_v2_select_mitigation() and spectre_v2_user_select_mitigation() + x86/bugs: Report Intel retbleed vulnerability + intel_idle: Disable IBRS during long idle + objtool: Update Retpoline validation + x86/xen: Rename SYS* entry points + x86/bugs: Add retbleed=ibpb + x86/bugs: Do IBPB fallback check only once + objtool: Add entry UNRET validation + x86/cpu/amd: Add Spectral Chicken + x86/speculation: Fix RSB filling with CONFIG_RETPOLINE=n + x86/speculation: Fix firmware entry SPEC_CTRL handling + x86/speculation: Fix SPEC_CTRL write on SMT state change + x86/speculation: Use cached host SPEC_CTRL value for guest entry/exit + x86/speculation: Remove x86_spec_ctrl_mask + objtool: Re-add UNWIND_HINT_{SAVE_RESTORE} + KVM: VMX: Flatten __vmx_vcpu_run() + KVM: VMX: Convert launched argument to flags + KVM: VMX: Prevent guest RSB poisoning attacks with eIBRS + KVM: VMX: Fix IBRS handling after vmexit + x86/speculation: Fill RSB on vmexit for IBRS + x86/common: Stamp out the stepping madness + x86/cpu/amd: Enumerate BTC_NO + x86/retbleed: Add fine grained Kconfig knobs + x86/bugs: Add Cannon lake to RETBleed affected CPU list + x86/bugs: Do not enable IBPB-on-entry when IBPB is not supported + x86/kexec: Disable RET on kexec + x86/speculation: Disable RRSBA behavior - x86/static_call: Serialize __static_call_fixup() properly - tools/insn: Restore the relative include paths for cross building - x86, kvm: use proper ASM macros for kvm_vcpu_is_preempted - x86/xen: Fix initialisation in hypercall_page after rethunk - x86/ftrace: Add UNWIND_HINT_FUNC annotation for ftrace_stub - x86/asm/32: Fix ANNOTATE_UNRET_SAFE use on 32-bit - x86/speculation: Use DECLARE_PER_CPU for x86_spec_ctrl_current - efi/x86: use naked RET on mixed mode call wrapper - x86/kvm: fix FASTOP_SIZE when return thunks are enabled - KVM: emulate: do not adjust size of fastop and setcc subroutines - tools arch x86: Sync the msr-index.h copy with the kernel sources - tools headers cpufeatures: Sync with the kernel sources - x86/bugs: Remove apostrophe typo - um: Add missing apply_returns() - x86: Use -mindirect-branch-cs-prefix for RETPOLINE builds - kvm: fix objtool relocation warning - objtool: Fix elf_create_undef_symbol() endianness - tools arch: Update arch/x86/lib/mem{cpy,set}_64.S copies used in 'perf bench mem memcpy' - again - tools headers: Remove broken definition of __LITTLE_ENDIAN https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.134 - [armhf] pinctrl: stm32: fix optional IRQ support to gpios - lockdown: Fix kexec lockdown bypass with ima policy (CVE-2022-21505) - io_uring: Use original task for req identity in io_identity_cow() - xen/gntdev: Ignore failure to unmap INVALID_GRANT_HANDLE - docs: net: explain struct net_device lifetime - net: make free_netdev() more lenient with unregistering devices - net: make sure devices go through netdev_wait_all_refs - net: move net_set_todo inside rollback_registered() - net: inline rollback_registered() - net: move rollback_registered_many() - net: inline rollback_registered_many() - [amd64] PCI: hv: Fix multi-MSI to allow more than one MSI vector - [amd64] PCI: hv: Fix hv_arch_irq_unmask() for multi-MSI - [amd64] PCI: hv: Reuse existing IRTE allocation in compose_msi_msg() - [amd64] PCI: hv: Fix interrupt mapping for multi-MSI - [arm64] serial: mvebu-uart: correctly report configured baudrate value - xfrm: xfrm_policy: fix a possible double xfrm_pols_put() in xfrm_bundle_lookup() (CVE-2022-36879) - perf/core: Fix data race between perf_event_set_output() and perf_mmap_close() - drm/amdgpu/display: add quirk handling for stutter mode - igc: Reinstate IGC_REMOVED logic and implement it properly - ip: Fix data-races around sysctl_ip_no_pmtu_disc. - ip: Fix data-races around sysctl_ip_fwd_use_pmtu. - ip: Fix data-races around sysctl_ip_fwd_update_priority. - ip: Fix data-races around sysctl_ip_nonlocal_bind. - ip: Fix a data-race around sysctl_ip_autobind_reuse. - ip: Fix a data-race around sysctl_fwmark_reflect. - tcp/dccp: Fix a data-race around sysctl_tcp_fwmark_accept. - tcp: Fix data-races around sysctl_tcp_mtu_probing. - tcp: Fix data-races around sysctl_tcp_base_mss. - tcp: Fix data-races around sysctl_tcp_min_snd_mss. - tcp: Fix a data-race around sysctl_tcp_mtu_probe_floor. - tcp: Fix a data-race around sysctl_tcp_probe_threshold. - tcp: Fix a data-race around sysctl_tcp_probe_interval. - net: stmmac: fix unbalanced ptp clock issue in suspend/resume flow - net: stmmac: fix dma queue left shift overflow issue - igmp: Fix data-races around sysctl_igmp_llm_reports. - igmp: Fix a data-race around sysctl_igmp_max_memberships. - igmp: Fix data-races around sysctl_igmp_max_msf. - tcp: Fix data-races around keepalive sysctl knobs. - tcp: Fix data-races around sysctl_tcp_syncookies. - tcp: Fix data-races around sysctl_tcp_reordering. - tcp: Fix data-races around some timeout sysctl knobs. - tcp: Fix a data-race around sysctl_tcp_notsent_lowat. - tcp: Fix a data-race around sysctl_tcp_tw_reuse. - tcp: Fix data-races around sysctl_max_syn_backlog. - tcp: Fix data-races around sysctl_tcp_fastopen. - tcp: Fix data-races around sysctl_tcp_fastopen_blackhole_timeout. - iavf: Fix handling of dummy receive descriptors - i40e: Fix erroneous adapter reinitialization during recovery process - ixgbe: Add locking to prevent panic when setting sriov_numvfs to zero - [arm64,armhf] gpio: pca953x: only use single read/write for No AI mode - [arm64,armhf] gpio: pca953x: use the correct range when do regmap sync - [arm64,armhf] gpio: pca953x: use the correct register address when regcache sync during init - be2net: Fix buffer overflow in be_get_module_eeprom - ipv4: Fix a data-race around sysctl_fib_multipath_use_neigh. - ip: Fix data-races around sysctl_ip_prot_sock. - udp: Fix a data-race around sysctl_udp_l3mdev_accept. - tcp: Fix data-races around sysctl knobs related to SYN option. - tcp: Fix a data-race around sysctl_tcp_early_retrans. - tcp: Fix data-races around sysctl_tcp_recovery. - tcp: Fix a data-race around sysctl_tcp_thin_linear_timeouts. - tcp: Fix data-races around sysctl_tcp_slow_start_after_idle. - tcp: Fix a data-race around sysctl_tcp_retrans_collapse. - tcp: Fix a data-race around sysctl_tcp_stdurg. - tcp: Fix a data-race around sysctl_tcp_rfc1337. - tcp: Fix data-races around sysctl_tcp_max_reordering. - [arm*] spi: bcm2835: bcm2835_spi_handle_err(): fix NULL pointer deref for non DMA transfers - KVM: Don't null dereference ops->destroy - mm/mempolicy: fix uninit-value in mpol_rebind_policy() - bpf: Make sure mac_header was set before using it - sched/deadline: Fix BUG_ON condition for deboosted tasks - [x86] bugs: Warn when "ibrs" mitigation is selected on Enhanced IBRS parts - dlm: fix pending remove if msg allocation fails - bitfield.h: Fix "type of reg too small for mask" test - ALSA: memalloc: Align buffer allocations in page size - Bluetooth: Add bt_skb_sendmsg helper - Bluetooth: Add bt_skb_sendmmsg helper - Bluetooth: SCO: Replace use of memcpy_from_msg with bt_skb_sendmsg - Bluetooth: RFCOMM: Replace use of memcpy_from_msg with bt_skb_sendmmsg - Bluetooth: Fix passing NULL to PTR_ERR - Bluetooth: SCO: Fix sco_send_frame returning skb->len - Bluetooth: Fix bt_skb_sendmmsg not allocating partial chunks - [x86] amd: Use IBPB for firmware calls - [x86] alternative: Report missing return thunk details - watchqueue: make sure to serialize 'wqueue->defunct' properly - tty: drivers/tty/, stop using tty_schedule_flip() - tty: the rest, stop using tty_schedule_flip() - tty: drop tty_schedule_flip() - tty: extract tty_flip_buffer_commit() from tty_flip_buffer_push() - tty: use new tty_insert_flip_string_and_push_buffer() in pty_write() - net: usb: ax88179_178a needs FLAG_SEND_ZLP - watch-queue: remove spurious double semicolon https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.135 - Bluetooth: L2CAP: Fix use-after-free caused by l2cap_chan_put - Revert "ocfs2: mount shared volume without ha stack" - [s390x] archrandom: prevent CPACF trng invocations in interrupt context - watch_queue: Fix missing rcu annotation - watch_queue: Fix missing locking in add_watch_to_object() - tcp: Fix data-races around sysctl_tcp_dsack. - tcp: Fix a data-race around sysctl_tcp_app_win. - tcp: Fix a data-race around sysctl_tcp_adv_win_scale. - tcp: Fix a data-race around sysctl_tcp_frto. - tcp: Fix a data-race around sysctl_tcp_nometrics_save. - tcp: Fix data-races around sysctl_tcp_no_ssthresh_metrics_save. - ice: check (DD | EOF) bits on Rx descriptor rather than (EOP | RS) - ice: do not setup vlan for loopback VSI - Revert "tcp: change pingpong threshold to 3" - tcp: Fix data-races around sysctl_tcp_moderate_rcvbuf. - tcp: Fix a data-race around sysctl_tcp_limit_output_bytes. - tcp: Fix a data-race around sysctl_tcp_challenge_ack_limit. - net: ping6: Fix memleak in ipv6_renew_options(). - ipv6/addrconf: fix a null-ptr-deref bug for ip6_ptr - igmp: Fix data-races around sysctl_igmp_qrv. - net: sungem_phy: Add of_node_put() for reference returned by of_get_parent() - tcp: Fix a data-race around sysctl_tcp_min_tso_segs. - tcp: Fix a data-race around sysctl_tcp_min_rtt_wlen. - tcp: Fix a data-race around sysctl_tcp_autocorking. - tcp: Fix a data-race around sysctl_tcp_invalid_ratelimit. - Documentation: fix sctp_wmem in ip-sysctl.rst - macsec: fix NULL deref in macsec_add_rxsa - macsec: fix error message in macsec_add_rxsa and _txsa - macsec: limit replay window size with XPN - macsec: always read MACSEC_SA_ATTR_PN as a u64 - net: macsec: fix potential resource leak in macsec_add_rxsa() and macsec_add_txsa() - tcp: Fix a data-race around sysctl_tcp_comp_sack_delay_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_slack_ns. - tcp: Fix a data-race around sysctl_tcp_comp_sack_nr. - tcp: Fix data-races around sysctl_tcp_reflect_tos. - i40e: Fix interface init with MSI interrupts (no MSI-X) - sctp: fix sleep in atomic context bug in timer handlers - netfilter: nf_queue: do not allow packet truncation below transport header offset (CVE-2022-36946) - virtio-net: fix the race between refill work and close - sfc: disable softirqs for ptp TX - sctp: leave the err path free in sctp_stream_init to sctp_stream_free - page_alloc: fix invalid watermark check on a negative value - mt7601u: add USB device ID for some versions of XiaoDu WiFi Dongle. - [arm*] 9216/1: Fix MAX_DMA_ADDRESS overflow - docs/kernel-parameters: Update descriptions for "mitigations=" param with retbleed - xfs: refactor xfs_file_fsync - xfs: xfs_log_force_lsn isn't passed a LSN - xfs: prevent UAF in xfs_log_item_in_current_chkpt - xfs: fix log intent recovery ENOSPC shutdowns when inactivating inodes - xfs: force the log offline when log intent item recovery fails - xfs: hold buffer across unpin and potential shutdown processing - xfs: remove dead stale buf unpin handling code - xfs: logging the on disk inode LSN can make it go backwards - xfs: Enforce attr3 buffer recovery order - [x86] bugs: Do not enable IBPB at firmware entry when IBPB is not available - bpf: Consolidate shared test timing code - bpf: Add PROG_TEST_RUN support for sk_lookup programs https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.136 - [x86] speculation: Make all RETbleed mitigations 64-bit only - ath9k_htc: fix NULL pointer dereference at ath9k_htc_rxep() - ath9k_htc: fix NULL pointer dereference at ath9k_htc_tx_get_packet() - tun: avoid double free in tun_free_netdev - [x86] ACPI: video: Force backlight native for some TongFang devices - [x86] ACPI: video: Shortening quirk list by identifying Clevo by board_name only - ACPI: APEI: Better fix to avoid spamming the console with old error logs - [arm64] crypto: arm64/poly1305 - fix a read out-of-bound - Bluetooth: hci_bcm: Add BCM4349B1 variant - Bluetooth: hci_bcm: Add DT compatible for CYW55572 - Bluetooth: btusb: Add support of IMC Networks PID 0x3568 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04CA:0x4007 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x04C5:0x1675 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x0CB8:0xC558 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3587 - Bluetooth: btusb: Add Realtek RTL8852C support ID 0x13D3:0x3586 - [x86] Add mitigations for Post-Barrier Return Stack Buffer Prediction (PBRSB) issue (CVE-2022-26373): + x86/speculation: Add RSB VM Exit protections + x86/speculation: Add LFENCE to RSB fill sequence . [ Salvatore Bonaccorso ] * Bump ABI to 17 * [rt] Update to 5.10.131-rt72 * posix-cpu-timers: Cleanup CPU timers before freeing them during exec (CVE-2022-2585) * netfilter: nf_tables: do not allow SET_ID to refer to another table (CVE-2022-2586) * netfilter: nf_tables: do not allow CHAIN_ID to refer to another table * netfilter: nf_tables: do not allow RULE_ID to refer to another chain * net_sched: cls_route: remove from list when handle is 0 (CVE-2022-2588) linux-signed-i386 (5.10.127+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.127-2 . * [amd64,arm64,armhf] wireguard: Clear keys after suspend despite CONFIG_ANDROID=y * netfilter: nf_tables: stricter validation of element data (CVE-2022-34918) * net: rose: fix UAF bugs caused by timer handler (CVE-2022-2318) * net: rose: fix UAF bug caused by rose_t0timer_expiry * xen/{blk,net}front: fix leaking data in shared pages (CVE-2022-26365, CVE-2022-33740) * xen/{blk,net}front: force data bouncing when backend is untrusted (CVE-2022-33741, CVE-2022-33742) * xen-netfront: restore __skb_queue_tail() positioning in xennet_get_responses() (CVE-2022-33743) * [arm64,armhf] xen/arm: Fix race in RB-tree based P2M accounting (CVE-2022-33744) * fbdev: fbmem: Fix logo center image dx issue * fbdev: Fix potential out-of-bounds writes (CVE-2021-33655): - fbmem: Check virtual screen sizes in fb_set_var() - fbcon: Disallow setting font bigger than screen size - fbcon: Prevent that screen size is smaller than font size linux-signed-i386 (5.10.127+2~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.127-2~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.deb10.16 llvm-toolchain-13 (1:13.0.1-6~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye. llvm-toolchain-13 (1:13.0.1-6~deb10u4) buster; urgency=medium . * Disable libunwind on mips. llvm-toolchain-13 (1:13.0.1-6~deb10u3) buster; urgency=medium . * Disable lldb on mips. llvm-toolchain-13 (1:13.0.1-6~deb10u2) buster; urgency=medium . * Don't build-dep on llvm-spirv, it's not available in buster and having an alternative doesn't work on the buildds. * Add support for mips in various places. llvm-toolchain-13 (1:13.0.1-6~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to buster. * Don't install libclang grpc proto libs, they are not built in buster. llvm-toolchain-13 (1:13.0.1-5) unstable; urgency=medium . [ John Paul Adrian Glaubitz ] * Enable GRPC build dependency only on supported targets * Exclude lib{Monitoring,RemoteIndex}*Proto.a on m68k and sparc64 . [ Gianfranco Costamagna ] * fix grpc architectures, avoiding to install them where not available * Break/Replaces the Ubuntu library that moved GRPC binaries into the wrong location * newline/tab fix in rules * fix GRPC installation in port architectures * Add patches from Upstream/Ubuntu to: - Backport upstream patches to allow building EFI images for Ubuntu Core for arm64 (LP: #1960300) llvm-toolchain-13 (1:13.0.1-4) unstable; urgency=medium . * Backport D115098 for Rust 1.59 (Closes: #1010150) llvm-toolchain-13 (1:13.0.1-3) unstable; urgency=medium . * Fix a typo in an header (closes: #1005195) . * Also install usr/lib/llvm-@LLVM_VERSION@/lib/libRemoteIndexProto.a usr/lib/llvm-@LLVM_VERSION@/lib/libRemoteIndexServiceProto.a usr/lib/llvm-@LLVM_VERSION@/lib/libMonitoringServiceProto.a in libclang-X.Y-dev (Closes: #1005666) llvm-toolchain-13 (1:13.0.1-2) unstable; urgency=medium . * mlir: use the cmake option to avoid installing object files MLIR_INSTALL_AGGREGATE_OBJECTS Closes upstream #53134 * Build clangd with GRPC support Thanks to Sam McCall for the patch llvm-toolchain-13 (1:13.0.1-1) unstable; urgency=medium . * New stable release llvm-toolchain-13 (1:13.0.1~+rc3-1~exp1) experimental; urgency=medium . [ Samuel Thibault ] * Explicitly link against -latomic on all ports, not only the Linux ones. * Stop hardcoding -DCMAKE_SYSTEM_NAME=Linux as cmake parameter, as it breaks stage2 builds on non-Linux architectures . [ Pino Toscano ] * debian/rules: Disable 64bit runtime build on hurd-i386 (Closes: #1003081). . [ Sylvestre Ledru ] * New rc * Lower the debhelper dep to 10 for debian stretch * Rename ocaml-nox => ocaml-base (Closes: #1002609) * Remove Build-Conflicts: ocaml llvm-toolchain-13 (1:13.0.1~+rc2-1~exp1) experimental; urgency=medium . [ Samuel Thibault ] * Explicitly link against -latomic on all ports, not only the Linux ones. * Stop hardcoding -DCMAKE_SYSTEM_NAME=Linux as cmake parameter, as it breaks stage2 builds on non-Linux architectures . [ Pino Toscano ] * debian/rules: Disable 64bit runtime build on hurd-i386 (Closes: #1003081). . [ Sylvestre Ledru ] * New snapshot release llvm-toolchain-13 (1:13.0.1~+rc1-1~exp4) experimental; urgency=medium . * Fix the cmake file with the mlir introducing llvm-toolchain-13 (1:13.0.1~+rc1-1~exp3) experimental; urgency=medium . * Build and ship MLIR as 3 new packages (libmlir-13-dev, libmlir-13 and mlir-13-toolso * Install bfd plugins in /usr/lib/bfd-plugins/LLVMgold-@LLVM_VERSION@.so llvm-toolchain-13 (1:13.0.1~+rc1-1~exp2) experimental; urgency=medium . * Bring back the dependency clang => llvm-13-linker-tools * Unbreak llvm-toolchain-13 on buster. -fuse-ld=gold wasn't passed to compiler-rt. it was using bfd. And binutils shipping in buster has a bug preventing this to work: https://github.com/llvm/llvm-project/issues/42339 * Remove AVR from LLVM_EXPERIMENTAL_TARGETS_TO_BUILD. stable since 11 https://releases.llvm.org/11.0.0/docs/ReleaseNotes.html#changes-to-the-avr-target * Use the version suffix when calling wasm-ld => wasm-ld-13 https://bugzilla.mozilla.org/show_bug.cgi?id=1747145 * Fix run-clang-tidy symlink. it moved from /usr/lib/llvm-13/share/clang/run-clang-tidy to /usr/lib/llvm-13/bin/run-clang-tidy (Closes: #1001748) * Install LLVMgold in usr/lib/bfd-plugins to help various tools to understand the format (Closes: #919020) llvm-toolchain-13 (1:13.0.1~+rc1-1~exp1) experimental; urgency=medium . * New testing release * Use parallel + -4 for the xz tarballs compression to make it faster * Add manpages for git-clang-format & run-clang-tidy * Add back -DLLVM_VERSION_SUFFIX=. Useless for 13 but necessary for snapshot Otherwise, it adds "git" to the libs llvm-toolchain-13 (1:13.0.0-9) unstable; urgency=medium . * Upload to unstable (all green on exp) * Fix an autopkgtest test (Closes: #997902) llvm-toolchain-13 (1:13.0.0-9~exp2) experimental; urgency=medium . * patch compiler-rt build to add option to disable scudo standalone allocator as it is not always supported by all debian baseline arch profiles * add COMPILER_RT_BUILD_SCUDO_STANDALONE=OFF to armel build in debian/rules since the baseline armv5t arch profile is not supported llvm-toolchain-13 (1:13.0.0-9~exp1) experimental; urgency=medium . * Merge migration to 2stage runtimes build 12 => 13 * Adjust openmp runtime quilt patches from branch 12 for changes in upstream (llvmorg-13.0.0) sources llvm-toolchain-13 (1:13.0.0-8) unstable; urgency=medium . * Disable lldb on mipsel and mips64el as it isn't supported See https://reviews.llvm.org/D102872 (Closes: #997011) llvm-toolchain-13 (1:13.0.0-7) unstable; urgency=medium . * Remove omp-device-info from LLVMExports.cmake (Closes: #996551) For real this time * Fix the link issue (hopefully on all archs) (Closes: #995827) customs LDFLAGS were not passed to the stage2 * Trim trailing whitespace. * Update watch file format version to 4. * Update to compat 11. oldstable has 12 bionic has 11 llvm-toolchain-13 (1:13.0.0-6) unstable; urgency=medium . * Remove omp-device-info from LLVMExports.cmake (Closes: #996551) * Fix a atomic issue. Thanks to YunQiang Su for the patch Partial fix for #995827 * Bring back the llvm manpages (Closes: #995684) Were generated at the wrong place llvm-toolchain-13 (1:13.0.0-5) unstable; urgency=medium . * Restrict the dependency on libunwind-13-dev from Package: libc++-13-dev on amd64 arm64 armhf i386 mips64el ppc64el ppc64 riscv64 (Closes: #996462) llvm-toolchain-13 (1:13.0.0-4) unstable; urgency=medium . * Instead of using llvm-* to install binaries in llvm-X.Y list all the binaries one by one. It will prevent "llvm-omp-device-info" to be installed in llvm-X.Y which caused an explicit dependency on libomp which caused llvm-X.Y to be NOT coinstallable anymore * Move llvm-omp-device-info-X.Y from llvm-X to libompX-dev Fixes upstream #52162 llvm-toolchain-13 (1:13.0.0-3) unstable; urgency=medium . * libc++-13-dev should depends on libunwind-13-dev (Closes: #995810) * Disable a tsan and two lldb tests on i386 llvm-toolchain-13 (1:13.0.0-2) unstable; urgency=medium . * Fix the libclang detection in cmake (Closes: #994827) * Adjust the testsuite after various changes (rpass, libclang, polly lib, etc) llvm-toolchain-13 (1:13.0.0-1) unstable; urgency=medium . * New upstream release llvm-toolchain-13 (1:13.0.0~+rc4-1) unstable; urgency=medium . * New testing release * Ship clang-repl See https://reviews.llvm.org/D106813 * Replace make by ninja for the build process It is now more tested than make by upstream And it is supposed to be faster Removed openmp/bootstrap-with-openmp-version-export-missing.diff as it seems that the ninja move fixed it llvm-toolchain-13 (1:13.0.0~+rc3-1) unstable; urgency=medium . * New testing release * Remove debian/patches/disable-no-omit-leaf.diff as it is fixed upstream llvm-toolchain-13 (1:13.0.0~+rc2-3) unstable; urgency=medium . * compiler-rt scudo, don't add the option -mno-omit-leaf-frame-pointer when building on armel & armhf llvm-toolchain-13 (1:13.0.0~+rc2-2) unstable; urgency=medium . * Build with -DCMAKE_POSITION_INDEPENDENT_CODE=ON to libc++ and libc++abi * The changes from 12.0.1-7 . [ John Paul Adrian Glaubitz ] * Disable libunwind-X.Y{-dev} packages on sparc and sparc64 llvm-toolchain-13 (1:13.0.0~+rc2-1) unstable; urgency=medium . [ John Paul Adrian Glaubitz ] * Disable libunwind on m68k, sparc64 and x32 . [ Gianfranco Costamagna ] * integration-test-suite-test: fix build by using 13 as default version . [ Sylvestre Ledru ] * New testing release llvm-toolchain-13 (1:13.0.0~+rc1-2) unstable; urgency=medium . * clang-soname-extract-version.diff: improve the upstream declaration * Fix the libclang links llvm-toolchain-13 (1:13.0.0~+rc1-1~exp1) unstable; urgency=medium . * New snapshot release llvm-toolchain-13 (1:13~++20210731010128+6eaf46beb462-1~exp1) experimental; urgency=medium . * Branching of snapshot into 13 * Adjust libclang: - upstream decided to make it stable starting from 13, with the soname - for now, I am not planning to rename libclang1-13 to libclang13 as it will cause too much churn for a small gain as we will keep libllvm (while losing the capability to have different versions in parallel installed) lwip (2.1.2+dfsg1-8+deb11u1) bullseye; urgency=high . * Fix CVE-2020-22283 * Fix CVE-2020-22284 * closes: 1014447 mat2 (0.12.1-2+deb11u1) bullseye-security; urgency=high . * debian/patches: - Pull in upstream patch to prevent arbitrary file read via a zip archive and inform the user in case of a path traversal attempt. (CVE-2022-35410) mokutil (0.6.0-2~deb11u1) bullseye; urgency=medium . * Rebuild new upstream for bullseye, to allow for SBAT management + Move to new upstream version 0.6.0. + Drop old patches, no longer needed. + Switch to Arch: any to allow for more architectures. Closes: #987613, #991933. + Clean up old tweaks in debian/rules, no longer needed. + Add build-dep on libkeyutils-dev, new dependency. mokutil (0.6.0-2~deb10u1) buster; urgency=medium . * Rebuild new upstream for buster, to allow for SBAT management + Move to new upstream version 0.6.0. + Drop old patches, no longer needed. + Switch to Arch: any to allow for more architectures. Closes: #987613, #991933. + Clean up old tweaks in debian/rules, no longer needed. + Add build-dep on libkeyutils-dev, new dependency. mokutil (0.6.0-1) unstable; urgency=medium . * Move to new upstream version 0.6.0. + Drop old patches, no longer needed. * Switch to Arch: any to allow for more architectures. Closes: #987613, #991933. * Clean up old tweaks in debian/rules, no longer needed. * Add build-dep on libkeyutils-dev, new dependency. * Bump Standards-Version to 4.6.1, no changes needed. mokutil (0.4.0-1) unstable; urgency=medium . * Take mokutil under the wing of efi-team. Thanks to Simon for his work previously, added him as an uploader * Import the upstream source * Move to new upstream version 0.4.0. Closes: #925223 + Includes manpage fixes. Closes: #930759 * Fix compiler warnings about potential unaligned pointers * Update packaging: + Raise debhelper-compat to 13 + Raise Standards-Version to 4.5.1 + Remove now-redundant build-dep on dh-autoreconf net-snmp (5.9+dfsg-4+deb11u1) bullseye-security; urgency=high . * Backport upstream security patches from v5.9.3 Closes: #1016139 * snmpd_fix_bounds_checking: CVE-2022-24805, CVE-2022-24809 * snmpd_recover_set_status: CVE-2022-24806, CVE-2022-24807, CVE-2022-24808, CVE-2022-24810 node-log4js (6.3.0+~cs8.3.10-1+deb11u1) bullseye; urgency=medium . * Changed default file modes from 0o644 to 0o600 for better security (Closes: CVE-2022-21704) node-moment (2.29.1+ds-2+deb11u2) bullseye; urgency=medium . * Fix ReDoS (Closes: #1014845, CVE-2022-31129) nvidia-graphics-drivers (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.141.03-1) unstable; urgency=medium . * New upstream production branch release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016614) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. (Closes: #1016736) . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Update nv-readme.ids. * More generic handling of architectures with gsp firmware. * Drop references to kernel-package and make-kpkg, gone since stretch. * Overhaul build-module-packages.sh. * Add module-assistant based autopkgtest for the *-source package. * Simplify changelog management for the *-source package. * Copy the Source stanza from d/control to the module control file. nvidia-graphics-drivers (470.141.03-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.141.03-1) unstable; urgency=medium . * New upstream production branch release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016614) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. (Closes: #1016736) . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Update nv-readme.ids. * More generic handling of architectures with gsp firmware. * Drop references to kernel-package and make-kpkg, gone since stretch. * Overhaul build-module-packages.sh. * Add module-assistant based autopkgtest for the *-source package. * Simplify changelog management for the *-source package. * Copy the Source stanza from d/control to the module control file. nvidia-graphics-drivers (470.129.06-6) unstable; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. nvidia-graphics-drivers-legacy-390xx (390.154-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-legacy-390xx (390.154-1~deb10u1) buster; urgency=medium . * Rebuild for buster. . nvidia-graphics-drivers-legacy-390xx (390.154-1) unstable; urgency=medium . * New upstream legacy branch release 390.154 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016616) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * Minor packaging sync and cleanup (470.129.06-6). * Drop references to kernel-package and make-kpkg, gone since stretch (470.141.03-1). * Overhaul build-module-packages.sh (470.141.03-1). * Add module-assistant based autopkgtest for the *-source package (470.141.03-1). * Simplify changelog management for the *-source package (470.141.03-1). * Copy the Source stanza from d/control to the module control file (470.141.03-1). * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.151-2) unstable; urgency=medium . * Backport pci/dma changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1012700, #1012618) * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.151-1~deb10u1) buster; urgency=medium . * Rebuild for buster. nvidia-graphics-drivers-legacy-390xx (390.154-1~deb10u1) buster; urgency=medium . * Rebuild for buster. . nvidia-graphics-drivers-legacy-390xx (390.154-1) unstable; urgency=medium . * New upstream legacy branch release 390.154 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016616) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * Minor packaging sync and cleanup (470.129.06-6). * Drop references to kernel-package and make-kpkg, gone since stretch (470.141.03-1). * Overhaul build-module-packages.sh (470.141.03-1). * Add module-assistant based autopkgtest for the *-source package (470.141.03-1). * Simplify changelog management for the *-source package (470.141.03-1). * Copy the Source stanza from d/control to the module control file (470.141.03-1). * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.151-2) unstable; urgency=medium . * Backport pci/dma changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1012700, #1012618) * Update lintian overrides. nvidia-graphics-drivers-legacy-390xx (390.151-2) unstable; urgency=medium . * Backport pci/dma changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1012700, #1012618) * Switch to B-D: dh-dkms. * Update lintian overrides. nvidia-graphics-drivers-legacy-390xx (390.151-1) unstable; urgency=medium . * New upstream legacy branch release 390.151 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185. (Closes: #1011142, #1004849) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Fixed a bug which prevented kernel modules linked from precompiled kernel interface object files from being loaded on recent Linux kernels. This affected custom packages which were prepared with nvidia-installer's --add-this-kernel option, for example. - Fixed a driver installation failure on Linux kernel 5.17 release candidates, where the NVIDIA kernel module failed to build with error "implicit declaration of function 'PDE'". . [ Andreas Beckmann ] * Refresh patches. * Work around architecture misdetection when building the kernel modules in an armhf environment on an arm64 host. (Closes: #1010230) * Bump Standards-Version to 4.6.1. No changes needed. nvidia-graphics-drivers-tesla-450 (450.203.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-450 (450.203.03-1) unstable; urgency=medium . * New upstream Tesla release 450.203.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016618) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Drop references to kernel-package and make-kpkg, gone since stretch (470.141.03-1). * Overhaul build-module-packages.sh (470.141.03-1). * Add module-assistant based autopkgtest for the *-source package (470.141.03-1). * Simplify changelog management for the *-source package (470.141.03-1). * Copy the Source stanza from d/control to the module control file (470.141.03-1). nvidia-graphics-drivers-tesla-450 (450.203.03-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-450 (450.203.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-450 (450.203.03-1) unstable; urgency=medium . * New upstream Tesla release 450.203.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016618) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Drop references to kernel-package and make-kpkg, gone since stretch (470.141.03-1). * Overhaul build-module-packages.sh (470.141.03-1). * Add module-assistant based autopkgtest for the *-source package (470.141.03-1). * Simplify changelog management for the *-source package (470.141.03-1). * Copy the Source stanza from d/control to the module control file (470.141.03-1). nvidia-graphics-drivers-tesla-450 (450.191.01-2) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device and cc_mkdec changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1013130) * Update lintian overrides. nvidia-graphics-drivers-tesla-470 (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-470 (470.141.03-1) unstable; urgency=medium . * New upstream Tesla release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016620) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Re-enable autopkgtest on ppc64el, fixed in Linux 5.19. . nvidia-graphics-drivers (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.141.03-1) unstable; urgency=medium . * New upstream production branch release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016614) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. (Closes: #1016736) . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Update nv-readme.ids. * More generic handling of architectures with gsp firmware. * Drop references to kernel-package and make-kpkg, gone since stretch. * Overhaul build-module-packages.sh. * Add module-assistant based autopkgtest for the *-source package. * Simplify changelog management for the *-source package. * Copy the Source stanza from d/control to the module control file. nvidia-graphics-drivers-tesla-470 (470.141.03-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-470 (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-470 (470.141.03-1) unstable; urgency=medium . * New upstream Tesla release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016620) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Re-enable autopkgtest on ppc64el, fixed in Linux 5.19. . nvidia-graphics-drivers (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.141.03-1) unstable; urgency=medium . * New upstream production branch release 470.141.03 (2022-08-02). * Fixed CVE-2022-31607, CVE-2022-31608, CVE-2022-31615. (Closes: #1016614) https://nvidia.custhelp.com/app/answers/detail/a_id/5383 - Added support for the following GPU: GeForce RTX 3050 OEM. * Improved compatibility with recent Linux kernels. (Closes: #1016736) . [ Andreas Beckmann ] * Replace obsolete pci_*() functions with their dma_*() counterparts in ppc64el specific code paths to fix kernel module build for ppc64el. * Refresh patches. * Update nv-readme.ids. * More generic handling of architectures with gsp firmware. * Drop references to kernel-package and make-kpkg, gone since stretch. * Overhaul build-module-packages.sh. * Add module-assistant based autopkgtest for the *-source package. * Simplify changelog management for the *-source package. * Copy the Source stanza from d/control to the module control file. nvidia-graphics-drivers-tesla-470 (470.129.06-6) unstable; urgency=medium . * Rebuild as Tesla 470 driver. * Build nvidia-cuda-mps from the Tesla driver. . nvidia-graphics-drivers (470.129.06-6) UNRELEASED; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. nvidia-settings (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.141.03-1) unstable; urgency=medium . * New upstream release 470.141.03. - Fixed a bug that prevented nvidia-settings from accurately reflecting changes to some configuration properties. . nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. . nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings (470.141.03-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-settings (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.141.03-1) unstable; urgency=medium . * New upstream release 470.141.03. - Fixed a bug that prevented nvidia-settings from accurately reflecting changes to some configuration properties. . nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. . nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings (470.103.01-1) unstable; urgency=medium . * New upstream release 470.103.01. nvidia-settings-tesla-470 (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings-tesla-470 (470.141.03-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.141.03-1) unstable; urgency=medium . * New upstream release 470.141.03. - Fixed a bug that prevented nvidia-settings from accurately reflecting changes to some configuration properties. . nvidia-settings-tesla-470 (470.129.06-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. . nvidia-settings-tesla-470 (470.103.01-2) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings-tesla-470 (470.141.03-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-settings-tesla-470 (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings-tesla-470 (470.141.03-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.141.03-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.141.03-1) unstable; urgency=medium . * New upstream release 470.141.03. - Fixed a bug that prevented nvidia-settings from accurately reflecting changes to some configuration properties. . nvidia-settings-tesla-470 (470.129.06-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. . nvidia-settings-tesla-470 (470.103.01-2) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings-tesla-470 (470.129.06-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.129.06-1) unstable; urgency=medium . * New upstream release 470.129.06. * Bump Standards-Version to 4.6.1. No changes needed. * Update Lintian overrides. nvidia-settings-tesla-470 (470.103.01-2) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.103.01-2) unstable; urgency=medium . [ Luca Boccassi ] * Add salsa-ci.yml. . [ Helmut Grohne ] * Improve cross building: Pass more build tools to make. (Closes: #1005958) . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on libvdpau-dev. nvidia-settings-tesla-470 (470.103.01-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. open-vm-tools (2:11.2.5-2+deb11u1) bullseye-security; urgency=high . * [67b16ff] Properly check authorization on incoming guestOps requests. (Closes: #1018012 CVE-2022-31676) * [747392e] gbp: build in bullseye * [80c2e62] gitlab-ci: build in bullseye openjdk-11 (11.0.16+8-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-11 (11.0.16+8-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster openjdk-11 (11.0.15+10-1) unstable; urgency=high . * OpenJDK 11.0.15+10 build (release). * Security fixes - JDK-8269938: Enhance XML processing passes redux. - JDK-8270504, CVE-2022-21426: Better XPath expression handling. - JDK-8272255: Completely handle MIDI files. - JDK-8272261: Improve JFR recording file processing. - JDK-8272594: Better record of recordings. - JDK-8274221: More definite BER encodings. - JDK-8275082, JDK-8278008, CVE-2022-21476: Update XML Security for Java to 2.3.0. - JDK-8275151, CVE-2022-21443: Improved Object Identification. - JDK-8277227: Better identification of OIDs. - JDK-8277672, CVE-2022-21434: Better invocation handler handling. - JDK-8278356: Improve file creation. - JDK-8278449: Improve keychain support. - JDK-8278798: Improve supported intrinsic. - JDK-8278805: Enhance BMP image loading. - JDK-8278972, CVE-2022-21496: Improve URL supports. - JDK-8281388: Change wrapping of EncryptedPrivateKeyInfo. * Refresh patches. openjdk-17 (17.0.4+8-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-17 (17.0.3+7-1) unstable; urgency=high . * OpenJDK 17.0.3+7 (release). * Security fixes - JDK-8269938: Enhance XML processing passes redux. - JDK-8270504, CVE-2022-21426: Better XPath expression handling. - JDK-8272255: Completely handle MIDI files. - JDK-8272261: Improve JFR recording file processing. - JDK-8272588: Enhanced recording parsing. - JDK-8272594: Better record of recordings. - JDK-8274221: More definite BER encodings. - JDK-8275082, JDK-8278008, CVE-2022-21476: Update XML Security for Java to 2.3.0. - JDK-8275151, CVE-2022-21443: Improved Object Identification. - JDK-8277227: Better identification of OIDs. - JDK-8277233, CVE-2022-21449: Improve ECDSA signature support. - JDK-8277672, CVE-2022-21434: Better invocation handler handling. - JDK-8278356: Improve file creation. - JDK-8278449: Improve keychain support. - JDK-8278798: Improve supported intrinsic. - JDK-8278805: Enhance BMP image loading. - JDK-8278972, CVE-2022-21496: Improve URL supports. - JDK-8281388: Change wrapping of EncryptedPrivateKeyInfo. * Refresh patches. pcre2 (10.36-2+deb11u1) bullseye; urgency=medium . * Backport upstream fixes for CVE-2022-1586 CVE-2022-1587 (Closes: #1011954) php7.4 (7.4.30-1+deb11u1) bullseye-security; urgency=high . * New upstream version 7.4.30 + [CVE-2022-31626]: Fixed mysqlnd/pdo password buffer overflow. + [CVE-2022-31625]: Fixed uninitialized array in pg_query_params(). postgresql-13 (13.8-0+deb11u1) bullseye; urgency=medium . * New upstream version. . + Do not let extension scripts replace objects not already belonging to the extension (Tom Lane) (CVE-2022-2625) . This change prevents extension scripts from doing CREATE OR REPLACE if there is an existing object that does not belong to the extension. It also prevents CREATE IF NOT EXISTS in the same situation. This prevents a form of trojan-horse attack in which a hostile database user could become the owner of an extension object and then modify it to compromise future uses of the object by other users. As a side benefit, it also reduces the risk of accidentally replacing objects one did not mean to. . The PostgreSQL Project thanks Sven Klemm for reporting this problem. publicsuffix (20220811.1734-0+deb11u1) bullseye; urgency=medium . * new upstream publicsuffix data publicsuffix (20220811.1734-0+deb10u1) buster; urgency=medium . * new upstream publicsuffix data publicsuffix (20220614.1839-1) unstable; urgency=medium . * new upstream version publicsuffix (20211207.1025-1) unstable; urgency=medium . * new upstream version request-tracker4 (4.4.4+dfsg-2+deb11u2) bullseye-security; urgency=medium . * Apply upstream patch which fixes several security vulnerabilities. - A cross-site scripting (XSS) issue when displaying attachment content with fraudulent content types. This vulnerability is assigned CVE-2022-25802. - Not performing full rights checks on access to file or image type custom fields, possibly allowing access to these custom fields by users without rights to access to the associated objects (like the ticket it is associated with). rocksdb (6.11.4-3+deb11u1) bullseye; urgency=medium . [ Daniel Leidert ] * Fix illegal instruction on arm64 (closes: #1015224). rust-cbindgen (0.23.0-1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye. * Vendor dependencies, they are not available in bullseye. * Only build the cbindgen binary. * Lower dh-cargo build-dep. * Build with rust-mozilla. rust-cbindgen (0.23.0-1~deb10u2) buster; urgency=medium . * Use override_ target instead of execute_after_, the latter is not supported in buster's debhelper. This fixes files with too old timestamps. Closes: #1015146. rust-cbindgen (0.23.0-1~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to bullseye. * Bump rustc-mozilla build-deps to 1.59. rust-cbindgen (0.21.0-1) unstable; urgency=medium . * Package cbindgen 0.21.0 from crates.io using debcargo 2.5.0 rust-cbindgen (0.20.0-1) unstable; urgency=medium . * Package cbindgen 0.20.0 from crates.io using debcargo 2.4.4-alpha.0 rustc-mozilla (1.59.0+dfsg1-1~deb11u3) bullseye; urgency=medium . * Set up the symlinks in a target also called by binary-arch. rustc-mozilla (1.59.0+dfsg1-1~deb11u2) bullseye; urgency=medium . * Include mips(el) stage0 binaries. rustc-mozilla (1.59.0+dfsg1-1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye as rustc-mozilla. * Do a bootstrap build. * Disable wasm. * Disable new binary packages rustfmt, -clippy, -all. rustc-mozilla (1.59.0+dfsg1-1~deb10u3) buster; urgency=medium . * Include mips(el) stage0 binaries. rustc-mozilla (1.59.0+dfsg1-1~deb10u2) buster; urgency=medium . * Inline atomics on arm64. * Increase allowed test failures on i386. rustc-mozilla (1.59.0+dfsg1-1~deb10u1) buster; urgency=medium . * Backport to buster. * Lower debhelper compat to 12. Stop using env variables in debhelper install files. * Disable windows target. samba (2:4.13.13+dfsg-1~deb11u5) bullseye-security; urgency=medium . * 3 patches: - CVE-2022-32742-bug-15085-4.13.patch - kpasswd_bugs_v15_4-13.patch - ldb-memory-bug-15096-4.13-v3.patch fixing: o CVE-2022-2031: Samba AD users can bypass certain restrictions associated with changing passwords. https://www.samba.org/samba/security/CVE-2022-2031.html o CVE-2022-32742: Server memory information leak via SMB1. https://www.samba.org/samba/security/CVE-2022-32742.html o CVE-2022-32744: Samba AD users can forge password change requests for any user. https://www.samba.org/samba/security/CVE-2022-32744.html o CVE-2022-32745: Samba AD users can crash the server process with an LDAP add or modify request. https://www.samba.org/samba/security/CVE-2022-32745.html o CVE-2022-32746: Samba AD users can induce a use-after-free in the server process with an LDAP add or modify request. https://www.samba.org/samba/security/CVE-2022-32746.html * Closes: #1016449, CVE-2022-2031 CVE-2022-32742, CVE-2022-32744, CVE-2022-32745, CVE-2022-32746 * Build-Depend on libldb-dev >= 2.2.3-2~deb11u2 (which includes the new symbols in libldb used by this update) * d/rules: use dpkg-query instead of pkg-config to find debian package version of libldb-dev, since this is what we actually want, not the internal version libldb thinks it is at. sbuild (0.81.2+deb11u1) bullseye; urgency=medium . [ Aurelien Jarno ] * Buildd::Mail: support MIME encoded Subject: header * Buildd::Mail: also copy the Content-Type: header when forwarding mail schroot (1.6.10-12+deb11u1) bullseye-security; urgency=medium . * Have a stricter limit on chroot names. [CVE-2022-2787] spip (3.2.11-3+deb11u5) bullseye-security; urgency=medium . * Backport security fixes from 3.2.16 - Remote code execution - XSS alowing priviledge escalation systemd (247.3-7+deb11u1) bullseye; urgency=medium . * Drop bundled copy of linux/if_arp.h. Fixes build failures with newer kernel headers. * virt: support detection for ARM64 Hyper-V guests (Closes: #1013342) * virt: detect OpenStack instance as KVM on arm (Closes: #1016157) thunderbird (1:91.13.0-1~deb11u1) bullseye-security; urgency=medium . * [06edfee] New upstream version 91.13.0 Fixed CVE issues in upstream version 91.13 (MFSA 2022-37): CVE-2022-38472: Address bar spoofing via XSLT error handling CVE-2022-38473: Cross-origin XSLT Documents would have inherited the parent's permissions CVE-2022-38478: Memory safety bugs fixed in Thunderbird 102.2, and Thunderbird 91.13 thunderbird (1:91.12.0-1~deb11u1) bullseye-security; urgency=medium . * [f7c7e7d] New upstream version 91.12.0 Fixed CVE issues in upstream version 91.12 (MFSA 2022-31): CVE-2022-36319: Mouse Position spoofing with CSS transforms CVE-2022-36318: Directory indexes for bundled resources reflected URL parameters (Closes: #1014004) thunderbird (1:91.12.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.11.0-1) unstable; urgency=medium . * [05a947d] New upstream version 91.11.0 Fixed CVE issues in upstream version 91.11 (MFSA 2022-26: CVE-2022-34479: A popup window could be resized in a way to overlay the address bar with web content CVE-2022-34470: Use-after-free in nsSHistory CVE-2022-34468: CSP sandbox header without `allow-scripts` can be bypassed via retargeted javascript: URI CVE-2022-2226: An email with a mismatching OpenPGP signature date was accepted as valid CVE-2022-34481: Potential integer overflow in ReplaceElementsAt CVE-2022-31744: CSP bypass enabling stylesheet injection CVE-2022-34472: Unavailable PAC file resulted in OCSP requests being blocked CVE-2022-2200: Undesired attributes could be set as part of prototype pollution CVE-2022-34484: Memory safety bugs fixed in Thunderbird 91.11 and Thunderbird 102 (Closes: #1014004) * [4c4944d] Rebuild patch queue from patch-queue branch Added patch: fixes/Bug-1773070-Rename-remove-some-eventState-s-variables.-r-.patch thunderbird (1:91.11.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security * [f23e5c8] Revert "Rebuild patch queue from patch-queue branch" The {old-,}stable release doesn't have an "to new" version of cbindgen, so we don't need this added patch. thunderbird (1:91.11.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.10.0-1) unstable; urgency=medium . * [969960a] New upstream version 91.10.0 Fixed CVE issues in upstream version 91.9.1 (MFSA 2022-19): CVE-2022-1802: Prototype pollution in Top-Level Await implementation CVE-2022-1529: Untrusted input used in JavaScript object indexing, leading to prototype pollution . Fixed CVE issues in upstream version 91.10 (MFSA 2022-22): CVE-2022-31736: Cross-Origin resource's length leaked CVE-2022-31737: Heap buffer overflow in WebGL CVE-2022-31738: Browser window spoof using fullscreen mode CVE-2022-31739: Attacker-influenced path traversal when saving downloaded files CVE-2022-31740: Register allocation problem in WASM on arm64 CVE-2022-31741: Uninitialized variable leads to invalid memory read CVE-2022-1834: Braille space character caused incorrect sender email to be shown for a digitally signed email CVE-2022-31742: Querying a WebAuthn token with a large number of allowCredential entries may have leaked cross-origin information CVE-2022-31747: Memory safety bugs fixed in Thunderbird 91.10 * [4b55e16] d/control: Increase Standards-Version to 4.6.0 No further changes needed. trafficserver (8.1.5+ds-1~deb11u1) bullseye-security; urgency=high . * Update d/watch to stick to 8.1.X serie * Update upstream gpg keys * UPdate d/salsa-ci.yaml * New upstream version 8.1.5+ds * Patches refresh for 8.1.5 * Update experimental plugins list * Multiple CVE fixes for 8.1.x + CVE-2021-37150: Protocol vs scheme mismatch + CVE-2022-25763: Improper input validation on HTTP/2 headers + CVE-2022-28129: Insufficient Validation of HTTP/1.x Headers + CVE-2022-31778: Transfer-Encoding not treated as hop-by-hop + CVE-2022-31779: Improper HTTP/2 scheme and method validation + CVE-2022-31780: HTTP/2 framing vulnerabilities twitter-bootstrap4 (4.5.2+dfsg1-8~deb11u1) bullseye; urgency=medium . * Team upload. * Backport the fix for #991939 to bullseye. . twitter-bootstrap4 (4.5.2+dfsg1-8) unstable; urgency=medium . * Add missing .map files (Closes: #991939) tzdata (2021a-1+deb11u5) bullseye; urgency=medium . * Cherry-pick patches from upstream: - Iran plans to stop observing DST permanently, after it falls back on 2022-09-21. - Chile's 2022 DST start is delayed from September 4 to September 11. unzip (6.0-26+deb11u1) bullseye-security; urgency=medium . * Apply upstream patch for CVE-2022-0529 and CVE-2022-0530. - Fix null pointer dereference on invalid UTF-8 input. - Fix wide string conversion in process.c. Closes: #1010355. webkit2gtk (2.36.7-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit in some architectures (see #1008098) so use clang instead. The exceptions are i386 and mipsel, where gcc works fine but clang is the buggy one (see #1010329). - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Build libsoup2 packages only. - debian/rules: Set ENABLE_SOUP3=NO. - debian/control: Remove build dependency on libsoup3 and ccache and remove the entries for all 4.1 API packages (soup3 build). webkit2gtk (2.36.6-1) unstable; urgency=high . * New upstream release. * The WebKitGTK security advisory WSA-2022-0007 lists the following security fixes in the latest versions of WebKitGTK: - CVE identifiers: CVE-2022-32792, CVE-2022-32816 and CVE-2022-2294 (fixed in 2.36.5). * debian/rules: - Enable wpe on Ubuntu now that the MIR has been accepted (thanks, Sebastien Bacher) (Closes: #1016585). webkit2gtk (2.36.6-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit in some architectures (see #1008098) so use clang instead. The exceptions are i386 and mipsel, where gcc works fine but clang is the buggy one (see #1010329). - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Build libsoup2 packages only. - debian/rules: Set ENABLE_SOUP3=NO. - debian/control: Remove build dependency on libsoup3 and ccache and remove the entries for all 4.1 API packages (soup3 build). webkit2gtk (2.36.4-1) unstable; urgency=high . * New upstream release. * The WebKitGTK security advisory WSA-2022-0006 lists the following security fixes in the latest versions of WebKitGTK: - CVE-2022-22662 (fixed in 2.36.0). - CVE-2022-22677 and CVE-2022-26710 (fixed in 2.36.4). * debian/control: - Don't use ccache in i386 because Ubuntu doesn't have it and Debian can live without it (webkit-team/webkit!14). * Update format of lintian overrides (see #1007002). * debian/control: - Update Standards-Version to 4.6.1.0 (no changes). webkit2gtk (2.36.4-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit in some architectures (see #1008098) so use clang instead. The exceptions are i386 and mipsel, where gcc works fine but clang is the buggy one (see #1010329). - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Build libsoup2 packages only. - debian/rules: Set ENABLE_SOUP3=NO. - debian/control: Remove build dependency on libsoup3 and ccache and remove the entries for all 4.1 API packages (soup3 build). webkit2gtk (2.36.4-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. * debian/patches/force-single-process.patch: - Force the single-process mode in Evolution and Geary * debian/control: - Remove all 4.1 API packages (soup3 build). - Remove Breaks for Evolution < 3.34.1. - Remove build dependencies on ccache, libwpebackend-fdo-1.0-dev, libmanette-0.2-dev, liblcms2-dev and libsoup-3.0-dev. - Switch build dependency from libenchant-2-dev to libenchant-dev. - Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: - Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. * Set the debhelper compatibility level back to 10. This fixes a dh_dwz error ".debug_info section not present" - Add debian/compat file. - Update build dependency on debhelper. webkit2gtk (2.36.3-1) unstable; urgency=high . * New upstream release. * Use ccache to speed-up the compilation since the majority of the files are identical in both the soup2 and soup3 builds. - debian/control: Add build dependency on ccache. - debian/rules: Set CCACHE_NOHASHDIR and CCACHE_BASEDIR so ccache actually works with different build directories. - debian/rules: Set CCACHE_DIR inside the source directory, otherwise ccache would try to write to the home directory, which is forbidden by the Debian policy. wpewebkit (2.36.7-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: tell CMake to user clang in all arches except i386 and mipsel (see ##1010329) - debian/control.in: Build depend on clang. * Use libsoup2 instead of libsoup3: - debian/rules: Set USE_SOUP_VERSION=2. wpewebkit (2.36.6-1) unstable; urgency=high . * New upstream release. * The WPE WebKit security advisory WSA-2022-0007 lists the following security fixes in the latest versions of WPE WebKit - CVE identifiers: CVE-2022-32792, CVE-2022-32816 and CVE-2022-2294 (fixed in 2.36.5). wpewebkit (2.36.6-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: tell CMake to user clang in all arches except i386 and mipsel (see ##1010329) - debian/control.in: Build depend on clang. * Use libsoup2 instead of libsoup3: - debian/rules: Set USE_SOUP_VERSION=2. wpewebkit (2.36.4-1) unstable; urgency=high . * New upstream release. * The WPE WebKit security advisory WSA-2022-0006 lists the following security fixes in the latest versions of WPE WebKit: - CVE-2022-22662 (fixed in 2.36.0). - CVE-2022-22677 and CVE-2022-26710 (fixed in 2.36.4). * Update format of lintian overrides (see #1007002). * debian/control.in: - Update Standards-Version to 4.6.1.0 (no changes). wpewebkit (2.36.4-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: tell CMake to user clang in all arches except i386 and mipsel (see ##1010329) - debian/control.in: Build depend on clang. * Use libsoup2 instead of libsoup3: - debian/rules: Set USE_SOUP_VERSION=2. wpewebkit (2.36.3-1) unstable; urgency=high . * New upstream release. * debian/rules: lower memory requirements on sh4. * Generate debian/control from debian/control.in depending on whether we're making the soup2 (1.0 API) or soup3 (1.1 API) build. - debian/rules: Add new target to generate debian/control. * debian/control.in: - Make the -dev package suggest libwpewebkit-1.0-doc xen (4.14.5+24-g87d90d511c-1) bullseye-security; urgency=medium . * Update to new upstream version 4.14.5+24-g87d90d511c, which also contains security fixes for the following issues: for the following issues: - x86 pv: Race condition in typeref acquisition XSA-401 CVE-2022-26362 - x86 pv: Insufficient care with non-coherent mappings XSA-402 CVE-2022-26363 CVE-2022-26364 - x86: MMIO Stale Data vulnerabilities XSA-404 CVE-2022-21123 CVE-2022-21125 CVE-2022-21166 - Retbleed - arbitrary speculative code execution with return instructions XSA-407 CVE-2022-23816 CVE-2022-23825 CVE-2022-29900 * Note that the following XSA are not listed, because... - XSA-403 patches are not applied to stable branch lines. - XSA-405 and XSA-406 have patches for the Linux kernel. xorg-server (2:1.20.11-1+deb11u2) bullseye-security; urgency=medium . * xkb: add request length validation for XkbSetGeometry (CVE-2022-2319) * xkb: swap XkbSetDeviceInfo and XkbSetDeviceInfoCheck (CVE-2022-2320) * Closes: #1014903. xtables-addons (3.13-1+deb11u1) bullseye; urgency=medium . * d/patches: add patch to correct `security_skb_classify_flow` argument (closes: #1014680) zlib (1:1.2.11.dfsg-2+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix a bug when getting a gzip header extra field with inflate() (CVE-2022-37434) (Closes: #1016710) * Fix extra field processing bug that dereferences NULL state->head ======================================= Sat, 09 Jul 2022 - Debian 11.4 released ======================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:22:01 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: python-hbmqtt | 0.9.6-1 | source python3-hbmqtt | 0.9.6-1 | all Closed bugs: 1001639 ------------------- Reason ------------------- RoQA; broken; low popcon; unmaintained ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:22:21 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: elog | 3.1.3-1-1 | source, amd64, arm64, armel, armhf, i386, mips64el, mipsel, ppc64el, s390x Closed bugs: 1010196 ------------------- Reason ------------------- RoQA; unmaintained; security issues ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:33:56 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: thunderbird-l10n-si | 1:78.14.0-1~deb11u1 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by thunderbird - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:35:40 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libegl1-nvidia | 460.91.03-1 | amd64, arm64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by nvidia-graphics-drivers - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:36:55 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libegl1-nvidia-tesla-460 | 460.91.03-1 | amd64, arm64, ppc64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by nvidia-graphics-drivers-tesla-460 - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:44:42 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel affs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el affs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel affs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel affs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel affs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el affs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel affs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel affs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel affs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el affs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel affs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel ata-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel ata-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el ata-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf ata-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel ata-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el ata-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel ata-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el ata-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf ata-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel ata-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el ata-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel ata-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el ata-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf ata-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel ata-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el btrfs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel btrfs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el btrfs-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf btrfs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel btrfs-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel btrfs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel btrfs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el btrfs-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x btrfs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel btrfs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el btrfs-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf btrfs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel btrfs-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel btrfs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel btrfs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el btrfs-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x btrfs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel btrfs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el btrfs-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf btrfs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel btrfs-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel btrfs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel btrfs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el btrfs-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x cdrom-core-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel cdrom-core-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el cdrom-core-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf cdrom-core-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel cdrom-core-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel cdrom-core-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel cdrom-core-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el cdrom-core-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x cdrom-core-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel cdrom-core-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el cdrom-core-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf cdrom-core-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel cdrom-core-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel cdrom-core-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel cdrom-core-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el cdrom-core-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x cdrom-core-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel cdrom-core-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el cdrom-core-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf cdrom-core-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel cdrom-core-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel cdrom-core-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel cdrom-core-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el cdrom-core-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x crc-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel crc-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el crc-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf crc-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel crc-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel crc-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel crc-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el crc-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x crc-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel crc-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el crc-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf crc-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel crc-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel crc-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel crc-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el crc-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x crc-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel crc-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el crc-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf crc-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel crc-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel crc-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel crc-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el crc-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x crypto-dm-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel crypto-dm-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el crypto-dm-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf crypto-dm-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel crypto-dm-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel crypto-dm-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel crypto-dm-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el crypto-dm-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x crypto-dm-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel crypto-dm-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el crypto-dm-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf crypto-dm-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel crypto-dm-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel crypto-dm-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel crypto-dm-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el crypto-dm-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x crypto-dm-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel crypto-dm-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el crypto-dm-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf crypto-dm-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel crypto-dm-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel crypto-dm-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel crypto-dm-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el crypto-dm-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x crypto-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel crypto-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el crypto-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf crypto-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel crypto-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel crypto-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel crypto-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el crypto-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x crypto-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel crypto-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el crypto-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf crypto-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel crypto-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel crypto-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel crypto-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el crypto-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x crypto-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel crypto-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el crypto-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf crypto-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel crypto-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel crypto-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel crypto-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el crypto-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x dasd-extra-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x dasd-extra-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x dasd-extra-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x dasd-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x dasd-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x dasd-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x efi-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf efi-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf efi-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf event-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel event-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el event-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf event-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel event-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel event-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel event-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el event-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel event-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el event-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf event-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel event-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel event-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel event-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el event-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel event-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el event-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf event-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel event-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel event-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel event-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el ext4-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel ext4-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el ext4-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf ext4-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel ext4-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel ext4-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel ext4-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el ext4-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x ext4-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel ext4-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el ext4-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf ext4-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel ext4-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel ext4-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel ext4-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el ext4-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x ext4-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel ext4-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el ext4-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf ext4-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel ext4-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel ext4-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel ext4-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el ext4-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x f2fs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel f2fs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el f2fs-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf f2fs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel f2fs-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel f2fs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel f2fs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el f2fs-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x f2fs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel f2fs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el f2fs-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf f2fs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel f2fs-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel f2fs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel f2fs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el f2fs-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x f2fs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel f2fs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el f2fs-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf f2fs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel f2fs-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel f2fs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel f2fs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el f2fs-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x fancontrol-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el fancontrol-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el fancontrol-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el fat-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel fat-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el fat-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf fat-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel fat-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel fat-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel fat-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el fat-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x fat-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel fat-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el fat-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf fat-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel fat-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel fat-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel fat-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el fat-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x fat-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel fat-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el fat-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf fat-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel fat-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel fat-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel fat-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el fat-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x fb-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel fb-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el fb-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf fb-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel fb-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel fb-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el fb-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel fb-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el fb-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf fb-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel fb-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel fb-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el fb-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel fb-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el fb-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf fb-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel fb-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel fb-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el firewire-core-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel firewire-core-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el firewire-core-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel firewire-core-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el firewire-core-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel firewire-core-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el fuse-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel fuse-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el fuse-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf fuse-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel fuse-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel fuse-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel fuse-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el fuse-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x fuse-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel fuse-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el fuse-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf fuse-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel fuse-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel fuse-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel fuse-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el fuse-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x fuse-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel fuse-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el fuse-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf fuse-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel fuse-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel fuse-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel fuse-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el fuse-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x hypervisor-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el hypervisor-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el hypervisor-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el i2c-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel i2c-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el i2c-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf i2c-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el i2c-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel i2c-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el i2c-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf i2c-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el i2c-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel i2c-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el i2c-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf i2c-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el input-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel input-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el input-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf input-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel input-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel input-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel input-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el input-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel input-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el input-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf input-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel input-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel input-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel input-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el input-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel input-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el input-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf input-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel input-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel input-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel input-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el ipv6-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel ipv6-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel ipv6-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel isofs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel isofs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el isofs-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf isofs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel isofs-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel isofs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel isofs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el isofs-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x isofs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel isofs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el isofs-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf isofs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel isofs-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel isofs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel isofs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el isofs-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x isofs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel isofs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el isofs-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf isofs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel isofs-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel isofs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel isofs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el isofs-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x jffs2-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel jffs2-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel jffs2-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel jfs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel jfs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el jfs-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf jfs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel jfs-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel jfs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel jfs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el jfs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel jfs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el jfs-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf jfs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel jfs-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel jfs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel jfs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el jfs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel jfs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el jfs-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf jfs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel jfs-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel jfs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel jfs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el kernel-image-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel kernel-image-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el kernel-image-5.10.0-10-armmp-di | 5.10.84-1 | armhf kernel-image-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel kernel-image-5.10.0-10-marvell-di | 5.10.84-1 | armel kernel-image-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel kernel-image-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el kernel-image-5.10.0-10-s390x-di | 5.10.84-1 | s390x kernel-image-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel kernel-image-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el kernel-image-5.10.0-14-armmp-di | 5.10.113-1 | armhf kernel-image-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel kernel-image-5.10.0-14-marvell-di | 5.10.113-1 | armel kernel-image-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel kernel-image-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el kernel-image-5.10.0-14-s390x-di | 5.10.113-1 | s390x kernel-image-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel kernel-image-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el kernel-image-5.10.0-15-armmp-di | 5.10.120-1 | armhf kernel-image-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel kernel-image-5.10.0-15-marvell-di | 5.10.120-1 | armel kernel-image-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel kernel-image-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el kernel-image-5.10.0-15-s390x-di | 5.10.120-1 | s390x leds-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf leds-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel leds-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf leds-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel leds-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf leds-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel linux | 5.10.84-1 | source linux | 5.10.106-1 | source linux | 5.10.113-1 | source linux | 5.10.120-1 | source linux-doc | 5.10.84-1 | all linux-doc | 5.10.106-1 | all linux-doc | 5.10.113-1 | all linux-doc | 5.10.120-1 | all linux-doc-5.10 | 5.10.84-1 | all linux-doc-5.10 | 5.10.106-1 | all linux-doc-5.10 | 5.10.113-1 | all linux-doc-5.10 | 5.10.120-1 | all linux-headers-5.10.0-10-4kc-malta | 5.10.84-1 | mipsel linux-headers-5.10.0-10-5kc-malta | 5.10.84-1 | mips64el, mipsel linux-headers-5.10.0-10-686 | 5.10.84-1 | i386 linux-headers-5.10.0-10-686-pae | 5.10.84-1 | i386 linux-headers-5.10.0-10-amd64 | 5.10.84-1 | amd64 linux-headers-5.10.0-10-arm64 | 5.10.84-1 | arm64 linux-headers-5.10.0-10-armmp | 5.10.84-1 | armhf linux-headers-5.10.0-10-armmp-lpae | 5.10.84-1 | armhf linux-headers-5.10.0-10-cloud-amd64 | 5.10.84-1 | amd64 linux-headers-5.10.0-10-cloud-arm64 | 5.10.84-1 | arm64 linux-headers-5.10.0-10-common | 5.10.84-1 | all linux-headers-5.10.0-10-common-rt | 5.10.84-1 | all linux-headers-5.10.0-10-loongson-3 | 5.10.84-1 | mips64el, mipsel linux-headers-5.10.0-10-marvell | 5.10.84-1 | armel linux-headers-5.10.0-10-octeon | 5.10.84-1 | mips64el, mipsel linux-headers-5.10.0-10-powerpc64le | 5.10.84-1 | ppc64el linux-headers-5.10.0-10-rpi | 5.10.84-1 | armel linux-headers-5.10.0-10-rt-686-pae | 5.10.84-1 | i386 linux-headers-5.10.0-10-rt-amd64 | 5.10.84-1 | amd64 linux-headers-5.10.0-10-rt-arm64 | 5.10.84-1 | arm64 linux-headers-5.10.0-10-rt-armmp | 5.10.84-1 | armhf linux-headers-5.10.0-10-s390x | 5.10.84-1 | s390x linux-headers-5.10.0-14-4kc-malta | 5.10.113-1 | mipsel linux-headers-5.10.0-14-5kc-malta | 5.10.113-1 | mips64el, mipsel linux-headers-5.10.0-14-686 | 5.10.113-1 | i386 linux-headers-5.10.0-14-686-pae | 5.10.113-1 | i386 linux-headers-5.10.0-14-amd64 | 5.10.113-1 | amd64 linux-headers-5.10.0-14-arm64 | 5.10.113-1 | arm64 linux-headers-5.10.0-14-armmp | 5.10.113-1 | armhf linux-headers-5.10.0-14-armmp-lpae | 5.10.113-1 | armhf linux-headers-5.10.0-14-cloud-amd64 | 5.10.113-1 | amd64 linux-headers-5.10.0-14-cloud-arm64 | 5.10.113-1 | arm64 linux-headers-5.10.0-14-common | 5.10.113-1 | all linux-headers-5.10.0-14-common-rt | 5.10.113-1 | all linux-headers-5.10.0-14-loongson-3 | 5.10.113-1 | mips64el, mipsel linux-headers-5.10.0-14-marvell | 5.10.113-1 | armel linux-headers-5.10.0-14-octeon | 5.10.113-1 | mips64el, mipsel linux-headers-5.10.0-14-powerpc64le | 5.10.113-1 | ppc64el linux-headers-5.10.0-14-rpi | 5.10.113-1 | armel linux-headers-5.10.0-14-rt-686-pae | 5.10.113-1 | i386 linux-headers-5.10.0-14-rt-amd64 | 5.10.113-1 | amd64 linux-headers-5.10.0-14-rt-arm64 | 5.10.113-1 | arm64 linux-headers-5.10.0-14-rt-armmp | 5.10.113-1 | armhf linux-headers-5.10.0-14-s390x | 5.10.113-1 | s390x linux-headers-5.10.0-15-4kc-malta | 5.10.120-1 | mipsel linux-headers-5.10.0-15-5kc-malta | 5.10.120-1 | mips64el, mipsel linux-headers-5.10.0-15-686 | 5.10.120-1 | i386 linux-headers-5.10.0-15-686-pae | 5.10.120-1 | i386 linux-headers-5.10.0-15-amd64 | 5.10.120-1 | amd64 linux-headers-5.10.0-15-arm64 | 5.10.120-1 | arm64 linux-headers-5.10.0-15-armmp | 5.10.120-1 | armhf linux-headers-5.10.0-15-armmp-lpae | 5.10.120-1 | armhf linux-headers-5.10.0-15-cloud-amd64 | 5.10.120-1 | amd64 linux-headers-5.10.0-15-cloud-arm64 | 5.10.120-1 | arm64 linux-headers-5.10.0-15-common | 5.10.120-1 | all linux-headers-5.10.0-15-common-rt | 5.10.120-1 | all linux-headers-5.10.0-15-loongson-3 | 5.10.120-1 | mips64el, mipsel linux-headers-5.10.0-15-marvell | 5.10.120-1 | armel linux-headers-5.10.0-15-octeon | 5.10.120-1 | mips64el, mipsel linux-headers-5.10.0-15-powerpc64le | 5.10.120-1 | ppc64el linux-headers-5.10.0-15-rpi | 5.10.120-1 | armel linux-headers-5.10.0-15-rt-686-pae | 5.10.120-1 | i386 linux-headers-5.10.0-15-rt-amd64 | 5.10.120-1 | amd64 linux-headers-5.10.0-15-rt-arm64 | 5.10.120-1 | arm64 linux-headers-5.10.0-15-rt-armmp | 5.10.120-1 | armhf linux-headers-5.10.0-15-s390x | 5.10.120-1 | s390x linux-image-5.10.0-10-4kc-malta | 5.10.84-1 | mipsel linux-image-5.10.0-10-4kc-malta-dbg | 5.10.84-1 | mipsel linux-image-5.10.0-10-5kc-malta | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-5kc-malta-dbg | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-686-dbg | 5.10.84-1 | i386 linux-image-5.10.0-10-686-pae-dbg | 5.10.84-1 | i386 linux-image-5.10.0-10-686-pae-unsigned | 5.10.84-1 | i386 linux-image-5.10.0-10-686-unsigned | 5.10.84-1 | i386 linux-image-5.10.0-10-amd64-dbg | 5.10.84-1 | amd64 linux-image-5.10.0-10-amd64-unsigned | 5.10.84-1 | amd64 linux-image-5.10.0-10-arm64-dbg | 5.10.84-1 | arm64 linux-image-5.10.0-10-arm64-unsigned | 5.10.84-1 | arm64 linux-image-5.10.0-10-armmp | 5.10.84-1 | armhf linux-image-5.10.0-10-armmp-dbg | 5.10.84-1 | armhf linux-image-5.10.0-10-armmp-lpae | 5.10.84-1 | armhf linux-image-5.10.0-10-armmp-lpae-dbg | 5.10.84-1 | armhf linux-image-5.10.0-10-cloud-amd64-dbg | 5.10.84-1 | amd64 linux-image-5.10.0-10-cloud-amd64-unsigned | 5.10.84-1 | amd64 linux-image-5.10.0-10-cloud-arm64-dbg | 5.10.84-1 | arm64 linux-image-5.10.0-10-cloud-arm64-unsigned | 5.10.84-1 | arm64 linux-image-5.10.0-10-loongson-3 | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-loongson-3-dbg | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-marvell | 5.10.84-1 | armel linux-image-5.10.0-10-marvell-dbg | 5.10.84-1 | armel linux-image-5.10.0-10-octeon | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-octeon-dbg | 5.10.84-1 | mips64el, mipsel linux-image-5.10.0-10-powerpc64le | 5.10.84-1 | ppc64el linux-image-5.10.0-10-powerpc64le-dbg | 5.10.84-1 | ppc64el linux-image-5.10.0-10-rpi | 5.10.84-1 | armel linux-image-5.10.0-10-rpi-dbg | 5.10.84-1 | armel linux-image-5.10.0-10-rt-686-pae-dbg | 5.10.84-1 | i386 linux-image-5.10.0-10-rt-686-pae-unsigned | 5.10.84-1 | i386 linux-image-5.10.0-10-rt-amd64-dbg | 5.10.84-1 | amd64 linux-image-5.10.0-10-rt-amd64-unsigned | 5.10.84-1 | amd64 linux-image-5.10.0-10-rt-arm64-dbg | 5.10.84-1 | arm64 linux-image-5.10.0-10-rt-arm64-unsigned | 5.10.84-1 | arm64 linux-image-5.10.0-10-rt-armmp | 5.10.84-1 | armhf linux-image-5.10.0-10-rt-armmp-dbg | 5.10.84-1 | armhf linux-image-5.10.0-10-s390x | 5.10.84-1 | s390x linux-image-5.10.0-10-s390x-dbg | 5.10.84-1 | s390x linux-image-5.10.0-14-4kc-malta | 5.10.113-1 | mipsel linux-image-5.10.0-14-4kc-malta-dbg | 5.10.113-1 | mipsel linux-image-5.10.0-14-5kc-malta | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-5kc-malta-dbg | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-686-dbg | 5.10.113-1 | i386 linux-image-5.10.0-14-686-pae-dbg | 5.10.113-1 | i386 linux-image-5.10.0-14-686-pae-unsigned | 5.10.113-1 | i386 linux-image-5.10.0-14-686-unsigned | 5.10.113-1 | i386 linux-image-5.10.0-14-amd64-dbg | 5.10.113-1 | amd64 linux-image-5.10.0-14-amd64-unsigned | 5.10.113-1 | amd64 linux-image-5.10.0-14-arm64-dbg | 5.10.113-1 | arm64 linux-image-5.10.0-14-arm64-unsigned | 5.10.113-1 | arm64 linux-image-5.10.0-14-armmp | 5.10.113-1 | armhf linux-image-5.10.0-14-armmp-dbg | 5.10.113-1 | armhf linux-image-5.10.0-14-armmp-lpae | 5.10.113-1 | armhf linux-image-5.10.0-14-armmp-lpae-dbg | 5.10.113-1 | armhf linux-image-5.10.0-14-cloud-amd64-dbg | 5.10.113-1 | amd64 linux-image-5.10.0-14-cloud-amd64-unsigned | 5.10.113-1 | amd64 linux-image-5.10.0-14-cloud-arm64-dbg | 5.10.113-1 | arm64 linux-image-5.10.0-14-cloud-arm64-unsigned | 5.10.113-1 | arm64 linux-image-5.10.0-14-loongson-3 | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-loongson-3-dbg | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-marvell | 5.10.113-1 | armel linux-image-5.10.0-14-marvell-dbg | 5.10.113-1 | armel linux-image-5.10.0-14-octeon | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-octeon-dbg | 5.10.113-1 | mips64el, mipsel linux-image-5.10.0-14-powerpc64le | 5.10.113-1 | ppc64el linux-image-5.10.0-14-powerpc64le-dbg | 5.10.113-1 | ppc64el linux-image-5.10.0-14-rpi | 5.10.113-1 | armel linux-image-5.10.0-14-rpi-dbg | 5.10.113-1 | armel linux-image-5.10.0-14-rt-686-pae-dbg | 5.10.113-1 | i386 linux-image-5.10.0-14-rt-686-pae-unsigned | 5.10.113-1 | i386 linux-image-5.10.0-14-rt-amd64-dbg | 5.10.113-1 | amd64 linux-image-5.10.0-14-rt-amd64-unsigned | 5.10.113-1 | amd64 linux-image-5.10.0-14-rt-arm64-dbg | 5.10.113-1 | arm64 linux-image-5.10.0-14-rt-arm64-unsigned | 5.10.113-1 | arm64 linux-image-5.10.0-14-rt-armmp | 5.10.113-1 | armhf linux-image-5.10.0-14-rt-armmp-dbg | 5.10.113-1 | armhf linux-image-5.10.0-14-s390x | 5.10.113-1 | s390x linux-image-5.10.0-14-s390x-dbg | 5.10.113-1 | s390x linux-image-5.10.0-15-4kc-malta | 5.10.120-1 | mipsel linux-image-5.10.0-15-4kc-malta-dbg | 5.10.120-1 | mipsel linux-image-5.10.0-15-5kc-malta | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-5kc-malta-dbg | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-686-dbg | 5.10.120-1 | i386 linux-image-5.10.0-15-686-pae-dbg | 5.10.120-1 | i386 linux-image-5.10.0-15-686-pae-unsigned | 5.10.120-1 | i386 linux-image-5.10.0-15-686-unsigned | 5.10.120-1 | i386 linux-image-5.10.0-15-amd64-dbg | 5.10.120-1 | amd64 linux-image-5.10.0-15-amd64-unsigned | 5.10.120-1 | amd64 linux-image-5.10.0-15-arm64-dbg | 5.10.120-1 | arm64 linux-image-5.10.0-15-arm64-unsigned | 5.10.120-1 | arm64 linux-image-5.10.0-15-armmp | 5.10.120-1 | armhf linux-image-5.10.0-15-armmp-dbg | 5.10.120-1 | armhf linux-image-5.10.0-15-armmp-lpae | 5.10.120-1 | armhf linux-image-5.10.0-15-armmp-lpae-dbg | 5.10.120-1 | armhf linux-image-5.10.0-15-cloud-amd64-dbg | 5.10.120-1 | amd64 linux-image-5.10.0-15-cloud-amd64-unsigned | 5.10.120-1 | amd64 linux-image-5.10.0-15-cloud-arm64-dbg | 5.10.120-1 | arm64 linux-image-5.10.0-15-cloud-arm64-unsigned | 5.10.120-1 | arm64 linux-image-5.10.0-15-loongson-3 | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-loongson-3-dbg | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-marvell | 5.10.120-1 | armel linux-image-5.10.0-15-marvell-dbg | 5.10.120-1 | armel linux-image-5.10.0-15-octeon | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-octeon-dbg | 5.10.120-1 | mips64el, mipsel linux-image-5.10.0-15-powerpc64le | 5.10.120-1 | ppc64el linux-image-5.10.0-15-powerpc64le-dbg | 5.10.120-1 | ppc64el linux-image-5.10.0-15-rpi | 5.10.120-1 | armel linux-image-5.10.0-15-rpi-dbg | 5.10.120-1 | armel linux-image-5.10.0-15-rt-686-pae-dbg | 5.10.120-1 | i386 linux-image-5.10.0-15-rt-686-pae-unsigned | 5.10.120-1 | i386 linux-image-5.10.0-15-rt-amd64-dbg | 5.10.120-1 | amd64 linux-image-5.10.0-15-rt-amd64-unsigned | 5.10.120-1 | amd64 linux-image-5.10.0-15-rt-arm64-dbg | 5.10.120-1 | arm64 linux-image-5.10.0-15-rt-arm64-unsigned | 5.10.120-1 | arm64 linux-image-5.10.0-15-rt-armmp | 5.10.120-1 | armhf linux-image-5.10.0-15-rt-armmp-dbg | 5.10.120-1 | armhf linux-image-5.10.0-15-s390x | 5.10.120-1 | s390x linux-image-5.10.0-15-s390x-dbg | 5.10.120-1 | s390x linux-source | 5.10.84-1 | all linux-source | 5.10.106-1 | all linux-source | 5.10.113-1 | all linux-source | 5.10.120-1 | all linux-source-5.10 | 5.10.84-1 | all linux-source-5.10 | 5.10.106-1 | all linux-source-5.10 | 5.10.113-1 | all linux-source-5.10 | 5.10.120-1 | all linux-support-5.10.0-10 | 5.10.84-1 | all linux-support-5.10.0-14 | 5.10.113-1 | all linux-support-5.10.0-15 | 5.10.120-1 | all loop-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel loop-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el loop-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf loop-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel loop-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel loop-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel loop-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el loop-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x loop-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel loop-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el loop-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf loop-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel loop-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel loop-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel loop-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el loop-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x loop-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel loop-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el loop-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf loop-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel loop-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel loop-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel loop-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el loop-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x md-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel md-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el md-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf md-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel md-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel md-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel md-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el md-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x md-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel md-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el md-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf md-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel md-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel md-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel md-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el md-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x md-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel md-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el md-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf md-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel md-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel md-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel md-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el md-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x minix-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel minix-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el minix-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel minix-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel minix-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel minix-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel minix-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el minix-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel minix-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel minix-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel minix-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel minix-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el minix-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel minix-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel minix-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel mmc-core-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel mmc-core-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el mmc-core-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel mmc-core-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel mmc-core-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el mmc-core-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel mmc-core-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel mmc-core-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el mmc-core-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel mmc-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel mmc-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el mmc-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf mmc-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel mmc-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel mmc-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el mmc-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf mmc-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel mmc-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel mmc-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el mmc-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf mmc-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel mouse-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel mouse-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el mouse-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel mouse-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el mouse-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel mouse-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el mouse-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel mouse-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el mouse-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel mouse-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el mouse-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel mouse-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el mtd-core-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel mtd-core-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el mtd-core-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel mtd-core-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel mtd-core-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el mtd-core-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x mtd-core-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel mtd-core-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el mtd-core-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel mtd-core-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel mtd-core-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el mtd-core-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x mtd-core-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel mtd-core-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el mtd-core-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel mtd-core-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel mtd-core-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el mtd-core-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x mtd-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf mtd-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel mtd-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf mtd-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel mtd-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf mtd-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel multipath-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel multipath-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el multipath-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf multipath-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel multipath-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel multipath-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel multipath-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el multipath-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x multipath-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel multipath-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el multipath-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf multipath-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel multipath-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel multipath-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel multipath-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el multipath-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x multipath-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel multipath-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el multipath-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf multipath-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel multipath-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel multipath-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel multipath-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el multipath-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x nbd-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel nbd-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el nbd-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf nbd-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nbd-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel nbd-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel nbd-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el nbd-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x nbd-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel nbd-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el nbd-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf nbd-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nbd-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel nbd-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel nbd-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el nbd-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x nbd-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel nbd-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el nbd-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf nbd-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nbd-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel nbd-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel nbd-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el nbd-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x nfs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nfs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nfs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nic-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel nic-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el nic-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf nic-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nic-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel nic-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel nic-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el nic-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x nic-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel nic-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el nic-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf nic-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nic-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel nic-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel nic-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el nic-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x nic-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel nic-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el nic-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf nic-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nic-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel nic-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel nic-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el nic-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x nic-shared-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel nic-shared-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el nic-shared-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf nic-shared-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nic-shared-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel nic-shared-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel nic-shared-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el nic-shared-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel nic-shared-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el nic-shared-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf nic-shared-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nic-shared-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel nic-shared-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel nic-shared-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el nic-shared-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel nic-shared-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el nic-shared-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf nic-shared-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nic-shared-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel nic-shared-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel nic-shared-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el nic-usb-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel nic-usb-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el nic-usb-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf nic-usb-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nic-usb-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel nic-usb-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel nic-usb-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el nic-usb-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel nic-usb-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el nic-usb-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf nic-usb-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nic-usb-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel nic-usb-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel nic-usb-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el nic-usb-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel nic-usb-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el nic-usb-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf nic-usb-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nic-usb-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel nic-usb-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel nic-usb-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el nic-wireless-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel nic-wireless-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el nic-wireless-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf nic-wireless-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel nic-wireless-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel nic-wireless-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el nic-wireless-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel nic-wireless-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el nic-wireless-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf nic-wireless-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel nic-wireless-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel nic-wireless-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el nic-wireless-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel nic-wireless-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el nic-wireless-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf nic-wireless-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel nic-wireless-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel nic-wireless-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el pata-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel pata-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el pata-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf pata-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel pata-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel pata-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel pata-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el pata-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf pata-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel pata-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel pata-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel pata-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el pata-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf pata-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel pata-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel ppp-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel ppp-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el ppp-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf ppp-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel ppp-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel ppp-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel ppp-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el ppp-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel ppp-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el ppp-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf ppp-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel ppp-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel ppp-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel ppp-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el ppp-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel ppp-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el ppp-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf ppp-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel ppp-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel ppp-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel ppp-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el rtc-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel rtc-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel rtc-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel sata-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel sata-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el sata-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf sata-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel sata-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel sata-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel sata-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el sata-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel sata-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el sata-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf sata-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel sata-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel sata-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel sata-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el sata-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel sata-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el sata-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf sata-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel sata-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel sata-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel sata-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el scsi-core-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel scsi-core-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el scsi-core-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf scsi-core-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel scsi-core-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel scsi-core-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel scsi-core-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el scsi-core-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x scsi-core-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel scsi-core-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el scsi-core-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf scsi-core-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel scsi-core-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel scsi-core-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel scsi-core-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el scsi-core-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x scsi-core-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel scsi-core-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el scsi-core-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf scsi-core-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel scsi-core-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel scsi-core-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel scsi-core-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el scsi-core-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x scsi-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel scsi-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el scsi-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf scsi-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel scsi-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel scsi-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el scsi-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x scsi-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel scsi-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el scsi-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf scsi-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel scsi-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel scsi-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el scsi-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x scsi-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel scsi-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el scsi-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf scsi-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel scsi-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel scsi-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el scsi-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x scsi-nic-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel scsi-nic-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el scsi-nic-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf scsi-nic-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel scsi-nic-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel scsi-nic-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el scsi-nic-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel scsi-nic-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el scsi-nic-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf scsi-nic-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel scsi-nic-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel scsi-nic-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el scsi-nic-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel scsi-nic-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el scsi-nic-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf scsi-nic-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel scsi-nic-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel scsi-nic-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el serial-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el serial-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el serial-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el sound-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel sound-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el sound-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel sound-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel sound-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel sound-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el sound-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel sound-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel sound-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel sound-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el sound-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel sound-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel speakup-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel speakup-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel speakup-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel squashfs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel squashfs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el squashfs-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf squashfs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel squashfs-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel squashfs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel squashfs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el squashfs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel squashfs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el squashfs-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf squashfs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel squashfs-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel squashfs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel squashfs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el squashfs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel squashfs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el squashfs-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf squashfs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel squashfs-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel squashfs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel squashfs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el udf-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel udf-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el udf-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf udf-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel udf-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel udf-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel udf-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el udf-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x udf-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel udf-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el udf-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf udf-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel udf-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel udf-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel udf-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el udf-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x udf-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel udf-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el udf-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf udf-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel udf-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel udf-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel udf-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el udf-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x uinput-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf uinput-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel uinput-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el uinput-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf uinput-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel uinput-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el uinput-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf uinput-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel uinput-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el usb-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel usb-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el usb-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf usb-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel usb-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel usb-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel usb-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el usb-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel usb-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el usb-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf usb-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel usb-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel usb-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel usb-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el usb-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel usb-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el usb-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf usb-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel usb-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel usb-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel usb-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el usb-serial-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel usb-serial-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el usb-serial-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf usb-serial-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel usb-serial-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel usb-serial-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel usb-serial-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el usb-serial-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel usb-serial-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el usb-serial-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf usb-serial-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel usb-serial-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel usb-serial-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel usb-serial-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el usb-serial-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel usb-serial-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el usb-serial-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf usb-serial-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel usb-serial-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel usb-serial-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel usb-serial-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el usb-storage-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel usb-storage-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el usb-storage-modules-5.10.0-10-armmp-di | 5.10.84-1 | armhf usb-storage-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel usb-storage-modules-5.10.0-10-marvell-di | 5.10.84-1 | armel usb-storage-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel usb-storage-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el usb-storage-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel usb-storage-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el usb-storage-modules-5.10.0-14-armmp-di | 5.10.113-1 | armhf usb-storage-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel usb-storage-modules-5.10.0-14-marvell-di | 5.10.113-1 | armel usb-storage-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel usb-storage-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el usb-storage-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel usb-storage-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el usb-storage-modules-5.10.0-15-armmp-di | 5.10.120-1 | armhf usb-storage-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel usb-storage-modules-5.10.0-15-marvell-di | 5.10.120-1 | armel usb-storage-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel usb-storage-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el xfs-modules-5.10.0-10-4kc-malta-di | 5.10.84-1 | mipsel xfs-modules-5.10.0-10-5kc-malta-di | 5.10.84-1 | mips64el xfs-modules-5.10.0-10-loongson-3-di | 5.10.84-1 | mips64el, mipsel xfs-modules-5.10.0-10-octeon-di | 5.10.84-1 | mips64el, mipsel xfs-modules-5.10.0-10-powerpc64le-di | 5.10.84-1 | ppc64el xfs-modules-5.10.0-10-s390x-di | 5.10.84-1 | s390x xfs-modules-5.10.0-14-4kc-malta-di | 5.10.113-1 | mipsel xfs-modules-5.10.0-14-5kc-malta-di | 5.10.113-1 | mips64el xfs-modules-5.10.0-14-loongson-3-di | 5.10.113-1 | mips64el, mipsel xfs-modules-5.10.0-14-octeon-di | 5.10.113-1 | mips64el, mipsel xfs-modules-5.10.0-14-powerpc64le-di | 5.10.113-1 | ppc64el xfs-modules-5.10.0-14-s390x-di | 5.10.113-1 | s390x xfs-modules-5.10.0-15-4kc-malta-di | 5.10.120-1 | mipsel xfs-modules-5.10.0-15-5kc-malta-di | 5.10.120-1 | mips64el xfs-modules-5.10.0-15-loongson-3-di | 5.10.120-1 | mips64el, mipsel xfs-modules-5.10.0-15-octeon-di | 5.10.120-1 | mips64el, mipsel xfs-modules-5.10.0-15-powerpc64le-di | 5.10.120-1 | ppc64el xfs-modules-5.10.0-15-s390x-di | 5.10.120-1 | s390x ------------------- Reason ------------------- [auto-cruft] no longer built by src:linux ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:45:43 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 acpi-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 acpi-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 ata-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 ata-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 ata-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 btrfs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 btrfs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 btrfs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 cdrom-core-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 cdrom-core-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 cdrom-core-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 crc-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 crc-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 crc-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 crypto-dm-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 crypto-dm-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 crypto-dm-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 crypto-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 crypto-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 crypto-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 efi-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 efi-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 efi-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 event-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 event-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 event-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 ext4-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 ext4-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 ext4-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 f2fs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 f2fs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 f2fs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 fat-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 fat-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 fat-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 fb-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 fb-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 fb-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 firewire-core-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 firewire-core-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 firewire-core-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 fuse-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 fuse-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 fuse-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 i2c-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 i2c-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 i2c-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 input-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 input-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 input-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 isofs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 isofs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 isofs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 jfs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 jfs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 jfs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 kernel-image-5.10.0-10-amd64-di | 5.10.84-1 | amd64 kernel-image-5.10.0-14-amd64-di | 5.10.113-1 | amd64 kernel-image-5.10.0-15-amd64-di | 5.10.120-1 | amd64 linux-image-5.10.0-10-amd64 | 5.10.84-1 | amd64 linux-image-5.10.0-10-cloud-amd64 | 5.10.84-1 | amd64 linux-image-5.10.0-10-rt-amd64 | 5.10.84-1 | amd64 linux-image-5.10.0-14-amd64 | 5.10.113-1 | amd64 linux-image-5.10.0-14-cloud-amd64 | 5.10.113-1 | amd64 linux-image-5.10.0-14-rt-amd64 | 5.10.113-1 | amd64 linux-image-5.10.0-15-amd64 | 5.10.120-1 | amd64 linux-image-5.10.0-15-cloud-amd64 | 5.10.120-1 | amd64 linux-image-5.10.0-15-rt-amd64 | 5.10.120-1 | amd64 linux-signed-amd64 | 5.10.84+1 | source linux-signed-amd64 | 5.10.106+1 | source linux-signed-amd64 | 5.10.113+1 | source linux-signed-amd64 | 5.10.120+1 | source loop-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 loop-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 loop-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 md-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 md-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 md-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 mmc-core-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 mmc-core-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 mmc-core-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 mmc-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 mmc-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 mmc-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 mouse-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 mouse-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 mouse-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 mtd-core-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 mtd-core-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 mtd-core-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 multipath-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 multipath-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 multipath-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nbd-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nbd-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nbd-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nic-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nic-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nic-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nic-pcmcia-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nic-pcmcia-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nic-pcmcia-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nic-shared-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nic-shared-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nic-shared-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nic-usb-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nic-usb-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nic-usb-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 nic-wireless-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 nic-wireless-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 nic-wireless-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 pata-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 pata-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 pata-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 pcmcia-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 pcmcia-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 pcmcia-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 pcmcia-storage-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 pcmcia-storage-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 pcmcia-storage-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 ppp-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 ppp-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 ppp-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 rfkill-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 rfkill-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 rfkill-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 sata-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 sata-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 sata-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 scsi-core-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 scsi-core-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 scsi-core-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 scsi-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 scsi-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 scsi-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 scsi-nic-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 scsi-nic-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 scsi-nic-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 serial-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 serial-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 serial-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 sound-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 sound-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 sound-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 speakup-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 speakup-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 speakup-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 squashfs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 squashfs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 squashfs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 udf-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 udf-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 udf-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 uinput-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 uinput-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 uinput-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 usb-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 usb-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 usb-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 usb-serial-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 usb-serial-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 usb-serial-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 usb-storage-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 usb-storage-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 usb-storage-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 xfs-modules-5.10.0-10-amd64-di | 5.10.84-1 | amd64 xfs-modules-5.10.0-14-amd64-di | 5.10.113-1 | amd64 xfs-modules-5.10.0-15-amd64-di | 5.10.120-1 | amd64 ------------------- Reason ------------------- [auto-cruft] no longer built by src:linux-signed-amd64 ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:46:49 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: ata-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 ata-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 ata-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 btrfs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 btrfs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 btrfs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 cdrom-core-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 cdrom-core-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 cdrom-core-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 crc-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 crc-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 crc-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 crypto-dm-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 crypto-dm-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 crypto-dm-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 crypto-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 crypto-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 crypto-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 efi-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 efi-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 efi-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 event-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 event-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 event-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 ext4-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 ext4-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 ext4-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 f2fs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 f2fs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 f2fs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 fat-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 fat-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 fat-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 fb-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 fb-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 fb-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 fuse-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 fuse-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 fuse-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 i2c-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 i2c-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 i2c-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 input-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 input-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 input-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 isofs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 isofs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 isofs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 jfs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 jfs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 jfs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 kernel-image-5.10.0-10-arm64-di | 5.10.84-1 | arm64 kernel-image-5.10.0-14-arm64-di | 5.10.113-1 | arm64 kernel-image-5.10.0-15-arm64-di | 5.10.120-1 | arm64 leds-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 leds-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 leds-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 linux-image-5.10.0-10-arm64 | 5.10.84-1 | arm64 linux-image-5.10.0-10-cloud-arm64 | 5.10.84-1 | arm64 linux-image-5.10.0-10-rt-arm64 | 5.10.84-1 | arm64 linux-image-5.10.0-14-arm64 | 5.10.113-1 | arm64 linux-image-5.10.0-14-cloud-arm64 | 5.10.113-1 | arm64 linux-image-5.10.0-14-rt-arm64 | 5.10.113-1 | arm64 linux-image-5.10.0-15-arm64 | 5.10.120-1 | arm64 linux-image-5.10.0-15-cloud-arm64 | 5.10.120-1 | arm64 linux-image-5.10.0-15-rt-arm64 | 5.10.120-1 | arm64 linux-signed-arm64 | 5.10.84+1 | source linux-signed-arm64 | 5.10.106+1 | source linux-signed-arm64 | 5.10.113+1 | source linux-signed-arm64 | 5.10.120+1 | source loop-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 loop-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 loop-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 md-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 md-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 md-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 mmc-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 mmc-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 mmc-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 mtd-core-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 mtd-core-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 mtd-core-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 multipath-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 multipath-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 multipath-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 nbd-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 nbd-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 nbd-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 nic-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 nic-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 nic-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 nic-shared-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 nic-shared-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 nic-shared-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 nic-usb-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 nic-usb-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 nic-usb-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 nic-wireless-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 nic-wireless-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 nic-wireless-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 ppp-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 ppp-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 ppp-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 sata-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 sata-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 sata-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 scsi-core-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 scsi-core-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 scsi-core-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 scsi-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 scsi-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 scsi-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 scsi-nic-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 scsi-nic-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 scsi-nic-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 squashfs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 squashfs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 squashfs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 udf-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 udf-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 udf-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 uinput-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 uinput-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 uinput-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 usb-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 usb-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 usb-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 usb-serial-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 usb-serial-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 usb-serial-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 usb-storage-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 usb-storage-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 usb-storage-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 xfs-modules-5.10.0-10-arm64-di | 5.10.84-1 | arm64 xfs-modules-5.10.0-14-arm64-di | 5.10.113-1 | arm64 xfs-modules-5.10.0-15-arm64-di | 5.10.120-1 | arm64 ------------------- Reason ------------------- [auto-cruft] no longer built by src:linux-signed-arm64 ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 09 Jul 2022 08:47:37 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-10-686-di | 5.10.84-1 | i386 acpi-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 acpi-modules-5.10.0-14-686-di | 5.10.113-1 | i386 acpi-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 acpi-modules-5.10.0-15-686-di | 5.10.120-1 | i386 acpi-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 ata-modules-5.10.0-10-686-di | 5.10.84-1 | i386 ata-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 ata-modules-5.10.0-14-686-di | 5.10.113-1 | i386 ata-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 ata-modules-5.10.0-15-686-di | 5.10.120-1 | i386 ata-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 btrfs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 btrfs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 btrfs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 btrfs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 btrfs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 btrfs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 cdrom-core-modules-5.10.0-10-686-di | 5.10.84-1 | i386 cdrom-core-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 cdrom-core-modules-5.10.0-14-686-di | 5.10.113-1 | i386 cdrom-core-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 cdrom-core-modules-5.10.0-15-686-di | 5.10.120-1 | i386 cdrom-core-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 crc-modules-5.10.0-10-686-di | 5.10.84-1 | i386 crc-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 crc-modules-5.10.0-14-686-di | 5.10.113-1 | i386 crc-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 crc-modules-5.10.0-15-686-di | 5.10.120-1 | i386 crc-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 crypto-dm-modules-5.10.0-10-686-di | 5.10.84-1 | i386 crypto-dm-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 crypto-dm-modules-5.10.0-14-686-di | 5.10.113-1 | i386 crypto-dm-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 crypto-dm-modules-5.10.0-15-686-di | 5.10.120-1 | i386 crypto-dm-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 crypto-modules-5.10.0-10-686-di | 5.10.84-1 | i386 crypto-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 crypto-modules-5.10.0-14-686-di | 5.10.113-1 | i386 crypto-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 crypto-modules-5.10.0-15-686-di | 5.10.120-1 | i386 crypto-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 efi-modules-5.10.0-10-686-di | 5.10.84-1 | i386 efi-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 efi-modules-5.10.0-14-686-di | 5.10.113-1 | i386 efi-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 efi-modules-5.10.0-15-686-di | 5.10.120-1 | i386 efi-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 event-modules-5.10.0-10-686-di | 5.10.84-1 | i386 event-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 event-modules-5.10.0-14-686-di | 5.10.113-1 | i386 event-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 event-modules-5.10.0-15-686-di | 5.10.120-1 | i386 event-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 ext4-modules-5.10.0-10-686-di | 5.10.84-1 | i386 ext4-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 ext4-modules-5.10.0-14-686-di | 5.10.113-1 | i386 ext4-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 ext4-modules-5.10.0-15-686-di | 5.10.120-1 | i386 ext4-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 f2fs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 f2fs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 f2fs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 f2fs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 f2fs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 f2fs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 fat-modules-5.10.0-10-686-di | 5.10.84-1 | i386 fat-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 fat-modules-5.10.0-14-686-di | 5.10.113-1 | i386 fat-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 fat-modules-5.10.0-15-686-di | 5.10.120-1 | i386 fat-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 fb-modules-5.10.0-10-686-di | 5.10.84-1 | i386 fb-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 fb-modules-5.10.0-14-686-di | 5.10.113-1 | i386 fb-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 fb-modules-5.10.0-15-686-di | 5.10.120-1 | i386 fb-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 firewire-core-modules-5.10.0-10-686-di | 5.10.84-1 | i386 firewire-core-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 firewire-core-modules-5.10.0-14-686-di | 5.10.113-1 | i386 firewire-core-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 firewire-core-modules-5.10.0-15-686-di | 5.10.120-1 | i386 firewire-core-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 fuse-modules-5.10.0-10-686-di | 5.10.84-1 | i386 fuse-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 fuse-modules-5.10.0-14-686-di | 5.10.113-1 | i386 fuse-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 fuse-modules-5.10.0-15-686-di | 5.10.120-1 | i386 fuse-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 i2c-modules-5.10.0-10-686-di | 5.10.84-1 | i386 i2c-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 i2c-modules-5.10.0-14-686-di | 5.10.113-1 | i386 i2c-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 i2c-modules-5.10.0-15-686-di | 5.10.120-1 | i386 i2c-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 input-modules-5.10.0-10-686-di | 5.10.84-1 | i386 input-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 input-modules-5.10.0-14-686-di | 5.10.113-1 | i386 input-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 input-modules-5.10.0-15-686-di | 5.10.120-1 | i386 input-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 isofs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 isofs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 isofs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 isofs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 isofs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 isofs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 jfs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 jfs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 jfs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 jfs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 jfs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 jfs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 kernel-image-5.10.0-10-686-di | 5.10.84-1 | i386 kernel-image-5.10.0-10-686-pae-di | 5.10.84-1 | i386 kernel-image-5.10.0-14-686-di | 5.10.113-1 | i386 kernel-image-5.10.0-14-686-pae-di | 5.10.113-1 | i386 kernel-image-5.10.0-15-686-di | 5.10.120-1 | i386 kernel-image-5.10.0-15-686-pae-di | 5.10.120-1 | i386 linux-image-5.10.0-10-686 | 5.10.84-1 | i386 linux-image-5.10.0-10-686-pae | 5.10.84-1 | i386 linux-image-5.10.0-10-rt-686-pae | 5.10.84-1 | i386 linux-image-5.10.0-14-686 | 5.10.113-1 | i386 linux-image-5.10.0-14-686-pae | 5.10.113-1 | i386 linux-image-5.10.0-14-rt-686-pae | 5.10.113-1 | i386 linux-image-5.10.0-15-686 | 5.10.120-1 | i386 linux-image-5.10.0-15-686-pae | 5.10.120-1 | i386 linux-image-5.10.0-15-rt-686-pae | 5.10.120-1 | i386 linux-signed-i386 | 5.10.84+1 | source linux-signed-i386 | 5.10.106+1 | source linux-signed-i386 | 5.10.113+1 | source linux-signed-i386 | 5.10.120+1 | source loop-modules-5.10.0-10-686-di | 5.10.84-1 | i386 loop-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 loop-modules-5.10.0-14-686-di | 5.10.113-1 | i386 loop-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 loop-modules-5.10.0-15-686-di | 5.10.120-1 | i386 loop-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 md-modules-5.10.0-10-686-di | 5.10.84-1 | i386 md-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 md-modules-5.10.0-14-686-di | 5.10.113-1 | i386 md-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 md-modules-5.10.0-15-686-di | 5.10.120-1 | i386 md-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 mmc-core-modules-5.10.0-10-686-di | 5.10.84-1 | i386 mmc-core-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 mmc-core-modules-5.10.0-14-686-di | 5.10.113-1 | i386 mmc-core-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 mmc-core-modules-5.10.0-15-686-di | 5.10.120-1 | i386 mmc-core-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 mmc-modules-5.10.0-10-686-di | 5.10.84-1 | i386 mmc-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 mmc-modules-5.10.0-14-686-di | 5.10.113-1 | i386 mmc-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 mmc-modules-5.10.0-15-686-di | 5.10.120-1 | i386 mmc-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 mouse-modules-5.10.0-10-686-di | 5.10.84-1 | i386 mouse-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 mouse-modules-5.10.0-14-686-di | 5.10.113-1 | i386 mouse-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 mouse-modules-5.10.0-15-686-di | 5.10.120-1 | i386 mouse-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 mtd-core-modules-5.10.0-10-686-di | 5.10.84-1 | i386 mtd-core-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 mtd-core-modules-5.10.0-14-686-di | 5.10.113-1 | i386 mtd-core-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 mtd-core-modules-5.10.0-15-686-di | 5.10.120-1 | i386 mtd-core-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 multipath-modules-5.10.0-10-686-di | 5.10.84-1 | i386 multipath-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 multipath-modules-5.10.0-14-686-di | 5.10.113-1 | i386 multipath-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 multipath-modules-5.10.0-15-686-di | 5.10.120-1 | i386 multipath-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nbd-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nbd-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nbd-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nbd-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nbd-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nbd-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nic-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nic-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nic-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nic-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nic-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nic-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nic-pcmcia-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nic-pcmcia-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nic-pcmcia-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nic-pcmcia-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nic-pcmcia-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nic-pcmcia-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nic-shared-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nic-shared-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nic-shared-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nic-shared-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nic-shared-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nic-shared-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nic-usb-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nic-usb-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nic-usb-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nic-usb-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nic-usb-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nic-usb-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 nic-wireless-modules-5.10.0-10-686-di | 5.10.84-1 | i386 nic-wireless-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 nic-wireless-modules-5.10.0-14-686-di | 5.10.113-1 | i386 nic-wireless-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 nic-wireless-modules-5.10.0-15-686-di | 5.10.120-1 | i386 nic-wireless-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 pata-modules-5.10.0-10-686-di | 5.10.84-1 | i386 pata-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 pata-modules-5.10.0-14-686-di | 5.10.113-1 | i386 pata-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 pata-modules-5.10.0-15-686-di | 5.10.120-1 | i386 pata-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 pcmcia-modules-5.10.0-10-686-di | 5.10.84-1 | i386 pcmcia-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 pcmcia-modules-5.10.0-14-686-di | 5.10.113-1 | i386 pcmcia-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 pcmcia-modules-5.10.0-15-686-di | 5.10.120-1 | i386 pcmcia-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 pcmcia-storage-modules-5.10.0-10-686-di | 5.10.84-1 | i386 pcmcia-storage-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 pcmcia-storage-modules-5.10.0-14-686-di | 5.10.113-1 | i386 pcmcia-storage-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 pcmcia-storage-modules-5.10.0-15-686-di | 5.10.120-1 | i386 pcmcia-storage-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 ppp-modules-5.10.0-10-686-di | 5.10.84-1 | i386 ppp-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 ppp-modules-5.10.0-14-686-di | 5.10.113-1 | i386 ppp-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 ppp-modules-5.10.0-15-686-di | 5.10.120-1 | i386 ppp-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 rfkill-modules-5.10.0-10-686-di | 5.10.84-1 | i386 rfkill-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 rfkill-modules-5.10.0-14-686-di | 5.10.113-1 | i386 rfkill-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 rfkill-modules-5.10.0-15-686-di | 5.10.120-1 | i386 rfkill-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 sata-modules-5.10.0-10-686-di | 5.10.84-1 | i386 sata-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 sata-modules-5.10.0-14-686-di | 5.10.113-1 | i386 sata-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 sata-modules-5.10.0-15-686-di | 5.10.120-1 | i386 sata-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 scsi-core-modules-5.10.0-10-686-di | 5.10.84-1 | i386 scsi-core-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 scsi-core-modules-5.10.0-14-686-di | 5.10.113-1 | i386 scsi-core-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 scsi-core-modules-5.10.0-15-686-di | 5.10.120-1 | i386 scsi-core-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 scsi-modules-5.10.0-10-686-di | 5.10.84-1 | i386 scsi-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 scsi-modules-5.10.0-14-686-di | 5.10.113-1 | i386 scsi-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 scsi-modules-5.10.0-15-686-di | 5.10.120-1 | i386 scsi-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 scsi-nic-modules-5.10.0-10-686-di | 5.10.84-1 | i386 scsi-nic-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 scsi-nic-modules-5.10.0-14-686-di | 5.10.113-1 | i386 scsi-nic-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 scsi-nic-modules-5.10.0-15-686-di | 5.10.120-1 | i386 scsi-nic-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 serial-modules-5.10.0-10-686-di | 5.10.84-1 | i386 serial-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 serial-modules-5.10.0-14-686-di | 5.10.113-1 | i386 serial-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 serial-modules-5.10.0-15-686-di | 5.10.120-1 | i386 serial-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 sound-modules-5.10.0-10-686-di | 5.10.84-1 | i386 sound-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 sound-modules-5.10.0-14-686-di | 5.10.113-1 | i386 sound-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 sound-modules-5.10.0-15-686-di | 5.10.120-1 | i386 sound-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 speakup-modules-5.10.0-10-686-di | 5.10.84-1 | i386 speakup-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 speakup-modules-5.10.0-14-686-di | 5.10.113-1 | i386 speakup-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 speakup-modules-5.10.0-15-686-di | 5.10.120-1 | i386 speakup-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 squashfs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 squashfs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 squashfs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 squashfs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 squashfs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 squashfs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 udf-modules-5.10.0-10-686-di | 5.10.84-1 | i386 udf-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 udf-modules-5.10.0-14-686-di | 5.10.113-1 | i386 udf-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 udf-modules-5.10.0-15-686-di | 5.10.120-1 | i386 udf-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 uinput-modules-5.10.0-10-686-di | 5.10.84-1 | i386 uinput-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 uinput-modules-5.10.0-14-686-di | 5.10.113-1 | i386 uinput-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 uinput-modules-5.10.0-15-686-di | 5.10.120-1 | i386 uinput-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 usb-modules-5.10.0-10-686-di | 5.10.84-1 | i386 usb-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 usb-modules-5.10.0-14-686-di | 5.10.113-1 | i386 usb-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 usb-modules-5.10.0-15-686-di | 5.10.120-1 | i386 usb-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 usb-serial-modules-5.10.0-10-686-di | 5.10.84-1 | i386 usb-serial-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 usb-serial-modules-5.10.0-14-686-di | 5.10.113-1 | i386 usb-serial-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 usb-serial-modules-5.10.0-15-686-di | 5.10.120-1 | i386 usb-serial-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 usb-storage-modules-5.10.0-10-686-di | 5.10.84-1 | i386 usb-storage-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 usb-storage-modules-5.10.0-14-686-di | 5.10.113-1 | i386 usb-storage-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 usb-storage-modules-5.10.0-15-686-di | 5.10.120-1 | i386 usb-storage-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 xfs-modules-5.10.0-10-686-di | 5.10.84-1 | i386 xfs-modules-5.10.0-10-686-pae-di | 5.10.84-1 | i386 xfs-modules-5.10.0-14-686-di | 5.10.113-1 | i386 xfs-modules-5.10.0-14-686-pae-di | 5.10.113-1 | i386 xfs-modules-5.10.0-15-686-di | 5.10.120-1 | i386 xfs-modules-5.10.0-15-686-pae-di | 5.10.120-1 | i386 ------------------- Reason ------------------- [auto-cruft] no longer built by src:linux-signed-i386 ---------------------------------------------- ========================================================================= apache2 (2.4.54-1~deb11u1) bullseye; urgency=medium . [ Yadd ] * Fix htcacheclean doc (Closes: #1010455) . [ Yadd ] * New upstream version 2.4.54 (closes: #1012513, CVE-2022-31813, CVE-2022-26377, CVE-2022-28614, CVE-2022-28615, CVE-2022-29404, CVE-2022-30522, CVE-2022-30556, CVE-2022-28330) apache2 (2.4.53-2) unstable; urgency=medium . * Clean useless Conflicts/Replace * apache2-dev: add missing dependency on libpcre2-dev (Closes: #1007254) apache2 (2.4.53-2~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports. apache2 (2.4.53-1) unstable; urgency=medium . * New upstream version 2.4.53 (Closes: CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943) * Update copyright * Patches: + Drop fix-2.4.52-regression.patch, now included in upstream + Refresh fhs_compliance.patch + Update and disable child_processes_fail_to_start.patch * Update test framework * Back to unstable asterisk (1:16.16.1~dfsg-1+deb11u1) bullseye-security; urgency=medium . * CVE-2021-32558 / AST-2021-008 (Closes: #991710) If the IAX2 channel driver receives a packet that contains an unsupported media format it can cause a crash to occur in Asterisk * CVE-2021-32686 / AST-2021-009 (Closes: #991931) pjproject/pjsip: crash when SSL socket destroyed during handshake * d/gbp.conf for Bullseye branch asterisk (1:16.16.1~dfsg-1+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. base-files (11.1+deb11u4) bullseye; urgency=medium . * Change /etc/debian_version to 11.4, for Debian 11.4 point release. bash (5.1-2+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * 1-byte buffer overflow read in subst.c read_comsub (Closes: #1003012) chromium (103.0.5060.53-1~deb11u1) bullseye-security; urgency=high . * New upstream stable release. - CVE-2022-2156: Use after free in Base. Reported by Mark Brand of Google Project Zero - CVE-2022-2157: Use after free in Interest groups. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-2158: Type Confusion in V8. Reported by Bohan Liu (@P4nda20371774) of Tencent Security Xuanwu Lab - CVE-2022-2160: Insufficient policy enforcement in DevTools. Reported by David Erceg - CVE-2022-2161: Use after free in WebApp Provider. Reported by Zhihua Yao of KunLun Lab - CVE-2022-2162: Insufficient policy enforcement in File System API. Reported by Abdelhamid Naceri (halov) - CVE-2022-2163: Use after free in Cast UI and Toolbar. Reported by Chaoyuan Peng (@ret2happy) - CVE-2022-2164: Inappropriate implementation in Extensions API. Reported by José Miguel Moreno Computer Security Lab (COSEC) at UC3M - CVE-2022-2165: Insufficient data validation in URL formatting. Reported by Rayyan Bijoora * debian/patches: - upstream/dawn-version-fix.patch: drop merged upstream. - upstream/blink-ftbfs.patch: drop, merged upstream. - upstream/libxml.patch: drop, merged upstream. - upstream/nested-nested-nested-nested-nested-nested-regex-patterns.patch: drop, merged upstream. - upstream/byteswap-constexpr.patch: drop, merged upstream. - bullseye/byteswap-constexpr2.patch: sys_byteswap.h moved directories. - disable/angle-perftests.patch: simple refresh. - disable/catapult.patch: simple refresh. - bullseye/clang11.patch: minor update for some code dropped upstream. - system/openjpeg.patch: update for libopenjp2-7-dev's 2.4 -> 2.5 path change. chromium (102.0.5005.115-1) unstable; urgency=high . * New upstream security release. - CVE-2022-2007: Use after free in WebGPU. Reported by David Manouchehri - CVE-2022-2008: Out of bounds memory access in WebGL. Reported by khangkito - Tran Van Khang (VinCSS) - CVE-2022-2010: Out of bounds read in compositing. Reported by Mark Brand of Google Project Zero - CVE-2022-2011: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) * debian/patches: - bullseye/byteswap-constexpr2.patch - additional fix for bullseye builds on 32-bit platforms (closes: #1011096). - debianization/support-i386.patch - re-enable support for i386 builds. Upstream no longer officially supports i386 builds on linux, so we are on our own here. chromium (102.0.5005.115-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-2007: Use after free in WebGPU. Reported by David Manouchehri - CVE-2022-2008: Out of bounds memory access in WebGL. Reported by khangkito - Tran Van Khang (VinCSS) - CVE-2022-2010: Out of bounds read in compositing. Reported by Mark Brand of Google Project Zero - CVE-2022-2011: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) * debian/patches: - bullseye/byteswap-constexpr2.patch - additional fix for bullseye builds on 32-bit platforms (closes: #1011096). - debianization/support-i386.patch - re-enable support for i386 builds. Upstream no longer officially supports i386 builds on linux, so we are on our own here. chromium (102.0.5005.61-1) unstable; urgency=high . * New upstream stable release. - CVE-2022-1853: Use after free in Indexed DB. Reported by Anonymous - CVE-2022-1854: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) - CVE-2022-1855: Use after free in Messaging. Reported by Anonymous - CVE-2022-1856: Use after free in User Education. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1857: Insufficient policy enforcement in File System API. Reported by Daniel Rhea - CVE-2022-1858: Out of bounds read in DevTools. Reported by EllisVlad - CVE-2022-1859: Use after free in Performance Manager. Reported by Guannan Wang (@Keenan7310) of Tencent Security Xuanwu Lab - CVE-2022-1860: Use after free in UI Foundations. Reported by @ginggilBesel - CVE-2022-1861: Use after free in Sharing. Reported by Khalil Zhani - CVE-2022-1862: Inappropriate implementation in Extensions. Reported by Alesandro Ortiz - CVE-2022-1863: Use after free in Tab Groups. Reported by David Erceg - CVE-2022-1864: Use after free in WebApp Installs. Reported by Yuntao You (@GraVity0) of Bytedance Wuheng Lab - CVE-2022-1865: Use after free in Bookmarks. Reported by Rong Jian of VRI - CVE-2022-1866: Use after free in Tablet Mode. Reported by @ginggilBesel - CVE-2022-1867: Insufficient validation of untrusted input in Data Transfer. Reported by Michał Bentkowski of Securitum - CVE-2022-1868: Inappropriate implementation in Extensions API. Reported by Alesandro Ortiz - CVE-2022-1869: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab - CVE-2022-1870: Use after free in App Service. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1871: Insufficient policy enforcement in File System API. Reported by Thomas Orlita - CVE-2022-1872: Insufficient policy enforcement in Extensions API. Reported by ChaobinZhang - CVE-2022-1873: Insufficient policy enforcement in COOP. Reported by NDevTK - CVE-2022-1874: Insufficient policy enforcement in Safe Browsing. Reported by hjy79425575 - CVE-2022-1875: Inappropriate implementation in PDF. Reported by NDevTK - CVE-2022-1876: Heap buffer overflow in DevTools. Reported by @ginggilBesel * debian/patches: - system/jpeg.patch - straight refresh. - disable/swiftshader.patch - straight refresh. - disable/swiftshader-2.patch - refresh for upstream dropping of legacy swiftshader GL stuff; they now use ANGLE. - disable/angle-perftests.patch - refresh. - system/jsoncpp.patch - refresh for jsoncpp_no_deprecated_declarations argument change. - bullseye/clang11.patch - merge cast-call.patch into it, as well as dropping additional unsupported clang arguments. - bullseye/cast-call.patch - drop. - upstream/dawn-version-fix.patch - add patch to deal w/ FTBFS. - upstream/blink-ftbfs.patch - another FTBFS patch. - upstream/nested-nested-nested-nested-nested-nested-regex-patterns.patch - fix a build failure that only happens with clang + GNU's libstdc++. - upstream/byteswap-constexpr.patch - add this to fix bullsye builds on 32-bit platforms (closes: #1011096). * Don't build unneccessary dawn build tests. chromium (102.0.5005.61-1~deb11u1) bullseye-security; urgency=high . * New upstream stable release. - CVE-2022-1853: Use after free in Indexed DB. Reported by Anonymous - CVE-2022-1854: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) - CVE-2022-1855: Use after free in Messaging. Reported by Anonymous - CVE-2022-1856: Use after free in User Education. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1857: Insufficient policy enforcement in File System API. Reported by Daniel Rhea - CVE-2022-1858: Out of bounds read in DevTools. Reported by EllisVlad - CVE-2022-1859: Use after free in Performance Manager. Reported by Guannan Wang (@Keenan7310) of Tencent Security Xuanwu Lab - CVE-2022-1860: Use after free in UI Foundations. Reported by @ginggilBesel - CVE-2022-1861: Use after free in Sharing. Reported by Khalil Zhani - CVE-2022-1862: Inappropriate implementation in Extensions. Reported by Alesandro Ortiz - CVE-2022-1863: Use after free in Tab Groups. Reported by David Erceg - CVE-2022-1864: Use after free in WebApp Installs. Reported by Yuntao You (@GraVity0) of Bytedance Wuheng Lab - CVE-2022-1865: Use after free in Bookmarks. Reported by Rong Jian of VRI - CVE-2022-1866: Use after free in Tablet Mode. Reported by @ginggilBesel - CVE-2022-1867: Insufficient validation of untrusted input in Data Transfer. Reported by Michał Bentkowski of Securitum - CVE-2022-1868: Inappropriate implementation in Extensions API. Reported by Alesandro Ortiz - CVE-2022-1869: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab - CVE-2022-1870: Use after free in App Service. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1871: Insufficient policy enforcement in File System API. Reported by Thomas Orlita - CVE-2022-1872: Insufficient policy enforcement in Extensions API. Reported by ChaobinZhang - CVE-2022-1873: Insufficient policy enforcement in COOP. Reported by NDevTK - CVE-2022-1874: Insufficient policy enforcement in Safe Browsing. Reported by hjy79425575 - CVE-2022-1875: Inappropriate implementation in PDF. Reported by NDevTK - CVE-2022-1876: Heap buffer overflow in DevTools. Reported by @ginggilBesel * debian/patches: - system/jpeg.patch - straight refresh. - disable/swiftshader.patch - straight refresh. - disable/swiftshader-2.patch - refresh for upstream dropping of legacy swiftshader GL stuff; they now use ANGLE. - disable/angle-perftests.patch - refresh. - system/jsoncpp.patch - refresh for jsoncpp_no_deprecated_declarations argument change. - bullseye/clang11.patch - merge cast-call.patch into it, as well as dropping additional unsupported clang arguments. - bullseye/cast-call.patch - drop. - upstream/dawn-version-fix.patch - add patch to deal w/ FTBFS. - upstream/blink-ftbfs.patch - another FTBFS patch. - upstream/nested-nested-nested-nested-nested-nested-regex-patterns.patch - fix a build failure that only happens with clang + GNU's libstdc++. - upstream/byteswap-constexpr.patch - add this to fix bullsye builds on 32-bit platforms (closes: #1011096). * Don't build unneccessary dawn build tests. chromium (101.0.4951.64-1) unstable; urgency=high . * New upstream security release. - CVE-2022-1633: Use after free in Sharesheet. Reported by Khalil Zhani - CVE-2022-1634: Use after free in Browser UI. Reported by Khalil Zhani - CVE-2022-1635: Use after free in Permission Prompts. Reported by Anonymous - CVE-2022-1636: Use after free in Performance APIs. Reported by Seth Brenith, Microsoft - CVE-2022-1637: Inappropriate implementation in Web Contents. Reported by Alesandro Ortiz - CVE-2022-1638: Heap buffer overflow in V8 Internationalization. Reported by DoHyun Lee (@l33d0hyun) of DNSLab, Korea University - CVE-2022-1639: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) - CVE-2022-1640: Use after free in Sharing. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1641: Use after free in Web UI Diagnostics. Reported by Rong Jian of VRI chromium (101.0.4951.64-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-1633: Use after free in Sharesheet. Reported by Khalil Zhani - CVE-2022-1634: Use after free in Browser UI. Reported by Khalil Zhani - CVE-2022-1635: Use after free in Permission Prompts. Reported by Anonymous - CVE-2022-1636: Use after free in Performance APIs. Reported by Seth Brenith, Microsoft - CVE-2022-1637: Inappropriate implementation in Web Contents. Reported by Alesandro Ortiz - CVE-2022-1638: Heap buffer overflow in V8 Internationalization. Reported by DoHyun Lee (@l33d0hyun) of DNSLab, Korea University - CVE-2022-1639: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa) - CVE-2022-1640: Use after free in Sharing. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1641: Use after free in Web UI Diagnostics. Reported by Rong Jian of VRI . chromium (101.0.4951.54-1) unstable; urgency=low . * Depend on sse3-support to ensure that chromium is only installed on machines that support the SSE3 instruction set. Otherwise we crash, as described in #1010407. We can also remove the manual sse2 check now. Upstream describes the SSE3 requirement @ http://crbug.com/1123353 * New upstream stable release. chromium (101.0.4951.54-1) unstable; urgency=low . * Depend on sse3-support to ensure that chromium is only installed on machines that support the SSE3 instruction set. Otherwise we crash, as described in #1010407. We can also remove the manual sse2 check now. Upstream describes the SSE3 requirement @ http://crbug.com/1123353 * New upstream stable release. chromium (101.0.4951.41-2) unstable; urgency=high . * No changes, just the CVE list. The original blog post *did not* have CVEs. >:( - CVE-2022-1477: Use after free in Vulkan. Reported by SeongHwan Park (SeHwa) - CVE-2022-1478: Use after free in SwiftShader. Reported by SeongHwan Park (SeHwa) - CVE-2022-1479: Use after free in ANGLE. Reported by Jeonghoon Shin of Theori - CVE-2022-1480: Use after free in Device API. Reported by @uwu7586 - CVE-2022-1481: Use after free in Sharing. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1482: Inappropriate implementation in WebGL. Reported by Christoph Diehl, Microsoft - CVE-2022-1483: Heap buffer overflow in WebGPU. Reported by Mark Brand of Google Project Zero - CVE-2022-1484: Heap buffer overflow in Web UI Settings. Reported by Chaoyuan Peng (@ret2happy) - CVE-2022-1485: Use after free in File System API. - CVE-2022-1486: Type Confusion in V8. Reported by Brendon Tiszka - CVE-2022-1487: Use after free in Ozone. Reported by Sri - CVE-2022-1488: Inappropriate implementation in Extensions API. Reported by Thomas Beverley from Wavebox.io - CVE-2022-1489: Out of bounds memory access in UI Shelf. Reported by Khalil Zhani - CVE-2022-1490: Use after free in Browser Switcher. Reported by raven at KunLun lab - CVE-2022-1491: Use after free in Bookmarks. Reported by raven at KunLun lab - CVE-2022-1492: Insufficient data validation in Blink Editing. Reported by Michał Bentkowski of Securitum - CVE-2022-1493: Use after free in Dev Tools. Reported by Zhihua Yao of KunLun Lab - CVE-2022-1494: Insufficient data validation in Trusted Types. Reported by Masato Kinugawa - CVE-2022-1495: Incorrect security UI in Downloads. Reported by Umar Farooq - CVE-2022-1496: Use after free in File Manager. Reported by Zhiyi Zhang and Zhunki from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2022-1497: Inappropriate implementation in Input. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2022-1498: Inappropriate implementation in HTML Parser. Reported by SeungJu Oh (@real_as3617) - CVE-2022-1499: Inappropriate implementation in WebAuthentication. Reported by Jun Kokatsu, Microsoft Browser Vulnerability Research - CVE-2022-1500: Insufficient data validation in Dev Tools. Reported by Hoang Nguyen - CVE-2022-1501: Inappropriate implementation in iframe. Reported by Oriol Brufau chromium (101.0.4951.41-1) unstable; urgency=low . * New upstream stable release. * debian/copyright: - Delete a bunch of file exclusion lines that no longer exist. That png file workaround also goes away. - Add a line to delete a prebuilt apache server & related modules that upstream now includes for some reason? * debian/patches: - upstream/rvo-workaround.patch - drop, merged upstream. - disable/android.patch - drop part of it that upstream fixed. - disable/swiftshader.patch - refresh. - upstream/libxml.patch - add fix for upstream bug related to building against the system libxml. - bullseye/cast-call.patch - add a patch to silence unsupported flag warnings in clang <= 13. chromium (101.0.4951.41-1~deb11u1) bullseye-security; urgency=high . * debian/copyright: - Delete a bunch of file exclusion lines that no longer exist. That png file workaround also goes away. - Add a line to delete a prebuilt apache server & related modules that upstream now includes for some reason? * debian/patches: - upstream/rvo-workaround.patch - drop, merged upstream. - disable/android.patch - drop part of it that upstream fixed. - disable/swiftshader.patch - refresh. - upstream/libxml.patch - add fix for upstream bug related to building against the system libxml. - bullseye/cast-call.patch - add a patch to silence unsupported flag warnings in clang <= 13. * New upstream stable release. - CVE-2022-1477: Use after free in Vulkan. Reported by SeongHwan Park (SeHwa) - CVE-2022-1478: Use after free in SwiftShader. Reported by SeongHwan Park (SeHwa) - CVE-2022-1479: Use after free in ANGLE. Reported by Jeonghoon Shin of Theori - CVE-2022-1480: Use after free in Device API. Reported by @uwu7586 - CVE-2022-1481: Use after free in Sharing. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1482: Inappropriate implementation in WebGL. Reported by Christoph Diehl, Microsoft - CVE-2022-1483: Heap buffer overflow in WebGPU. Reported by Mark Brand of Google Project Zero - CVE-2022-1484: Heap buffer overflow in Web UI Settings. Reported by Chaoyuan Peng (@ret2happy) - CVE-2022-1485: Use after free in File System API. - CVE-2022-1486: Type Confusion in V8. Reported by Brendon Tiszka - CVE-2022-1487: Use after free in Ozone. Reported by Sri - CVE-2022-1488: Inappropriate implementation in Extensions API. Reported by Thomas Beverley from Wavebox.io - CVE-2022-1489: Out of bounds memory access in UI Shelf. Reported by Khalil Zhani - CVE-2022-1490: Use after free in Browser Switcher. Reported by raven at KunLun lab - CVE-2022-1491: Use after free in Bookmarks. Reported by raven at KunLun lab - CVE-2022-1492: Insufficient data validation in Blink Editing. Reported by Michał Bentkowski of Securitum - CVE-2022-1493: Use after free in Dev Tools. Reported by Zhihua Yao of KunLun Lab - CVE-2022-1494: Insufficient data validation in Trusted Types. Reported by Masato Kinugawa - CVE-2022-1495: Incorrect security UI in Downloads. Reported by Umar Farooq - CVE-2022-1496: Use after free in File Manager. Reported by Zhiyi Zhang and Zhunki from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2022-1497: Inappropriate implementation in Input. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2022-1498: Inappropriate implementation in HTML Parser. Reported by SeungJu Oh (@real_as3617) - CVE-2022-1499: Inappropriate implementation in WebAuthentication. Reported by Jun Kokatsu, Microsoft Browser Vulnerability Research - CVE-2022-1500: Insufficient data validation in Dev Tools. Reported by Hoang Nguyen - CVE-2022-1501: Inappropriate implementation in iframe. Reported by Oriol Brufau chromium (100.0.4896.127-1) unstable; urgency=high . * New upstream security release. - CVE-2022-1364: Type Confusion in V8. Reported by Clément Lecigne of Google's Threat Analysis Group chromium (100.0.4896.127-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-1364: Type Confusion in V8. Reported by Clément Lecigne of Google's Threat Analysis Group chromium (100.0.4896.88-1) unstable; urgency=high . * New upstream security release. - CVE-2022-1305: Use after free in storage. Reported by Anonymous - CVE-2022-1306: Inappropriate implementation in compositing. Reported by Sven Dysthe - CVE-2022-1307: Inappropriate implementation in full screen. Reported by Irvan Kurniawan (sourc7) - CVE-2022-1308: Use after free in BFCache. Reported by Samet Bekmezci @sametbekmezci - CVE-2022-1309: Insufficient policy enforcement in developer tools. Reported by David Erceg - CVE-2022-1310: Use after free in regular expressions. Reported by Brendon Tiszka - CVE-2022-1311: Use after free in Chrome OS shell. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1312: Use after free in storage. Reported by Leecraso and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1313: Use after free in tab groups. Reported by Thomas Orlita - CVE-2022-1314: Type Confusion in V8. Reported by Bohan Liu (@P4nda20371774) of Tencent Security Xuanwu Lab chromium (100.0.4896.88-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-1305: Use after free in storage. Reported by Anonymous - CVE-2022-1306: Inappropriate implementation in compositing. Reported by Sven Dysthe - CVE-2022-1307: Inappropriate implementation in full screen. Reported by Irvan Kurniawan (sourc7) - CVE-2022-1308: Use after free in BFCache. Reported by Samet Bekmezci @sametbekmezci - CVE-2022-1309: Insufficient policy enforcement in developer tools. Reported by David Erceg - CVE-2022-1310: Use after free in regular expressions. Reported by Brendon Tiszka - CVE-2022-1311: Use after free in Chrome OS shell. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2022-1312: Use after free in storage. Reported by Leecraso and Guang Gong of 360 Vulnerability Research Institute - CVE-2022-1313: Use after free in tab groups. Reported by Thomas Orlita - CVE-2022-1314: Type Confusion in V8. Reported by Bohan Liu (@P4nda20371774) of Tencent Security Xuanwu Lab chromium (100.0.4896.75-1) unstable; urgency=high . * debian/copyright: - Stop dropping third_party/zlib/contrib/, which is just source code with acceptable licenses. - Replace the rule that dropped third_party/depot_tools with a more specific rule that drops just the ninja binaries. Also delete some unused png files to work around a bug in our scripts. - Replace a rule that dropped third_party/devtools-frontend/src/test with just dropping all wasm files ('*.wasm'), as well as third_party/devtools-frontend/src/test/screenshots/image_diff/. * debian/patches: - upstream/rvo-workaround.patch - added to fix FTBFS w/ clang-11. Pulled from upstream git. - disable/swiftshader-2.patch - drop most of it that's wrapped in a check for windows. - disable/fuzzers.patch - drop it; with the last release modifying fuzzer inclusion, we can now configure the build without this. - disable/owners.patch - drop it; no longer needed with depot_tools remaining in the source tree. - disable/devtools-unittests.patch - drop it; no longer needed if we keep third_party/devtools-frontend/src/test in the source tree. - disable/tests.patch - drop half of it; the media/gpu changes aren't needed, while keeping stuff in third_party/devtools-frontend/src/test from building is still necessary. * Drop enable_nacl_nonsfi=false from debian/rules, as upstream got rid of the variable. * New upstream security release. - CVE-2022-1232: Type Confusion in V8. Reported by Sergei Glazunov of Google Project Zero. chromium (100.0.4896.75-1~deb11u1) bullseye-security; urgency=high . * debian/copyright: - Stop dropping third_party/zlib/contrib/, which is just source code with acceptable licenses. - Replace the rule that dropped third_party/depot_tools with a more specific rule that drops just the ninja binaries. Also delete some unused png files to work around a bug in our scripts. - Replace a rule that dropped third_party/devtools-frontend/src/test with just dropping all wasm files ('*.wasm'), as well as third_party/devtools-frontend/src/test/screenshots/image_diff/. * debian/patches: - disable/swiftshader-2.patch - drop most of it that's wrapped in a check for windows. - disable/fuzzers.patch - drop it; with the last release modifying fuzzer inclusion, we can now configure the build without this. - disable/owners.patch - drop it; no longer needed with depot_tools remaining in the source tree. - disable/devtools-unittests.patch - drop it; no longer needed if we keep third_party/devtools-frontend/src/test in the source tree. - disable/tests.patch - drop half of it; the media/gpu changes aren't needed, while keeping stuff in third_party/devtools-frontend/src/test from building is still necessary. * Drop enable_nacl_nonsfi=false from debian/rules, as upstream got rid of the variable. * New upstream security release. - CVE-2022-1232: Type Confusion in V8. Reported by Sergei Glazunov of Google Project Zero. chromium (100.0.4896.60-1) unstable; urgency=high . * Fix debian/watch to find the correct upstream version. * Ensure xz uses all available cpu cores when preparing orig.tar.gz * Switch to bundled ICU, since Debian's ICU is 2 years old at this point and upstream depends on a bunch of new API in ICU 69.1. * debian/copyright: - ensure all *.dlls are dropped from source. - Stop dropping '*fuzz' directories. It was too aggressive, resulting in build errors for perfectly fine BSD-3-clause and similar code. - Instead, drop '*corpus' and '*corpora' directories. Some of it is fine (lots generated by oss-fuzz with .dict files provided), but not all of it is and it's easier to just drop it. - Drop an esbuild binary. - The full upstream tarball includes additional stuff we don't want, so drop *.jar, tools/win, and some other stuff in third_party/. * debian/rules: - Disabling & deleting swiftshader now also needs to add dawn_use_swiftshader=false. - Switch from -lite upstream tarball to the full tarball in order to include ICU sources. * debian/patches: - upstream/libdrm.patch - drop, merged upstream. - debianization/manpage.patch - drop a small chunk merged upstream. - system/icu.patch - drop now that we're bundling ICU. - bullseye/icu-types.patch - drop now that we're bundling ICU. - system/convertutf.patch - update build for bundled ICU path. - fixes/closure.patch - drop now that we're no longer using lite tarball. - disable/driver-chrome-path.patch - refresh for BUILDFLAG() macro. - system/jsoncpp.patch - refresh for unrelated ios change. - disable/catapult.patch - refresh due to moving around of .pak files. * New upstream stable release. - CVE-2022-1125: Use after free in Portals. Reported by Khalil Zhani - CVE-2022-1127: Use after free in QR Code Generator. Reported by anonymous - CVE-2022-1128: Inappropriate implementation in Web Share API. Reported by Abdel Adim (@smaury92) Oisfi of Shielder - CVE-2022-1129: Inappropriate implementation in Full Screen Mode. Reported by Irvan Kurniawan (sourc7) - CVE-2022-1130: Insufficient validation of untrusted input in WebOTP. Reported by Sergey Toshin of Oversecurity Inc. - CVE-2022-1131: Use after free in Cast UI. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2022-1132: Inappropriate implementation in Virtual Keyboard. Reported by Andr.Ess - CVE-2022-1133: Use after free in WebRTC. Reported by Anonymous - CVE-2022-1134: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab - CVE-2022-1135: Use after free in Shopping Cart. Reported by Wei Yuan of MoyunSec VLab - CVE-2022-1136: Use after free in Tab Strip . Reported by Krace - CVE-2022-1137: Inappropriate implementation in Extensions. Reported by Thomas Orlita - CVE-2022-1138: Inappropriate implementation in Web Cursor. Reported by Alesandro Ortiz - CVE-2022-1139: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2022-1141: Use after free in File Manager. Reported by raven at KunLun lab - CVE-2022-1142: Heap buffer overflow in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1143: Heap buffer overflow in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1144: Use after free in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1145: Use after free in Extensions. Reported by Yakun Zhang of Baidu Security - CVE-2022-1146: Inappropriate implementation in Resource Timing. Reported by Sohom Datta chromium (100.0.4896.60-1~deb11u1) bullseye-security; urgency=high . * Fix debian/watch to find the correct upstream version. * Ensure xz uses all available cpu cores when preparing orig.tar.gz * Switch to bundled ICU, since Debian's ICU is 2 years old at this point and upstream depends on a bunch of new API in ICU 69.1. * debian/copyright: - ensure all *.dlls are dropped from source. - Stop dropping '*fuzz' directories. It was too aggressive, resulting in build errors for perfectly fine BSD-3-clause and similar code. - Instead, drop '*corpus' and '*corpora' directories. Some of it is fine (lots generated by oss-fuzz with .dict files provided), but not all of it is and it's easier to just drop it. - Drop an esbuild binary. - The full upstream tarball includes additional stuff we don't want, so drop *.jar, tools/win, and some other stuff in third_party/. * debian/rules: - Disabling & deleting swiftshader now also needs to add dawn_use_swiftshader=false. - Switch from -lite upstream tarball to the full tarball in order to include ICU sources. * debian/patches: - upstream/libdrm.patch - drop, merged upstream. - debianization/manpage.patch - drop a small chunk merged upstream. - system/icu.patch - drop now that we're bundling ICU. - bullseye/icu-types.patch - drop now that we're bundling ICU. - system/convertutf.patch - update build for bundled ICU path. - fixes/closure.patch - drop now that we're no longer using lite tarball. - disable/driver-chrome-path.patch - refresh for BUILDFLAG() macro. - system/jsoncpp.patch - refresh for unrelated ios change. - disable/catapult.patch - refresh due to moving around of .pak files. - upstream/rvo-workaround.patch - added to fix FTBFS w/ clang-11. Pulled from upstream git. * New upstream stable release. - CVE-2022-1125: Use after free in Portals. Reported by Khalil Zhani - CVE-2022-1127: Use after free in QR Code Generator. Reported by anonymous - CVE-2022-1128: Inappropriate implementation in Web Share API. Reported by Abdel Adim (@smaury92) Oisfi of Shielder - CVE-2022-1129: Inappropriate implementation in Full Screen Mode. Reported by Irvan Kurniawan (sourc7) - CVE-2022-1130: Insufficient validation of untrusted input in WebOTP. Reported by Sergey Toshin of Oversecurity Inc. - CVE-2022-1131: Use after free in Cast UI. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2022-1132: Inappropriate implementation in Virtual Keyboard. Reported by Andr.Ess - CVE-2022-1133: Use after free in WebRTC. Reported by Anonymous - CVE-2022-1134: Type Confusion in V8. Reported by Man Yue Mo of GitHub Security Lab - CVE-2022-1135: Use after free in Shopping Cart. Reported by Wei Yuan of MoyunSec VLab - CVE-2022-1136: Use after free in Tab Strip . Reported by Krace - CVE-2022-1137: Inappropriate implementation in Extensions. Reported by Thomas Orlita - CVE-2022-1138: Inappropriate implementation in Web Cursor. Reported by Alesandro Ortiz - CVE-2022-1139: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2022-1141: Use after free in File Manager. Reported by raven at KunLun lab - CVE-2022-1142: Heap buffer overflow in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1143: Heap buffer overflow in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1144: Use after free in WebUI. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2022-1145: Use after free in Extensions. Reported by Yakun Zhang of Baidu Security - CVE-2022-1146: Inappropriate implementation in Resource Timing. Reported by Sohom Datta chromium (99.0.4844.84-1) unstable; urgency=high . * New upstream security ("just *ONE* security hole, that's it?!") release. - CVE-2022-1096: Type Confusion in V8. Reported by anonymous. chromium (99.0.4844.84-1~deb11u1) bullseye-security; urgency=high . * New upstream security ("just *ONE* security hole, that's it?!") release. - CVE-2022-1096: Type Confusion in V8. Reported by anonymous. chromium (99.0.4844.74-1) unstable; urgency=high . * New upstream security release. - CVE-2022-0971: Use after free in Blink Layout. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0972: Use after free in Extensions. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0973: Use after free in Safe Browsing. Reported by avaue and Buff3tts at S.S.L. - CVE-2022-0974 : Use after free in Splitscreen. Reported by @ginggilBesel. - CVE-2022-0975: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa). - CVE-2022-0976: Heap buffer overflow in GPU. Reported by Omair. - CVE-2022-0977: Use after free in Browser UI. Reported by Khalil Zhani. - CVE-2022-0978: Use after free in ANGLE. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0979: Use after free in Safe Browsing. Reported by anonymous. - CVE-2022-0980: Use after free in New Tab Page. Reported by Krace. cifs-utils (2:6.11-3.1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * mount.cifs: fix length check for ip option parsing (CVE-2022-27239) (Closes: #1010818) * mount.cifs: fix verbose messages on option parsing (CVE-2022-29869) (Closes: #1010818) clamav (0.103.6+dfsg-0+deb11u1) bullseye; urgency=medium . * Import 0.103.6 - CVE-2022-20770 (Possible infinite loop vulnerability in the CHM file parser). - CVE-2022-20796 (Possible NULL-pointer dereference crash in the scan verdict cache check). - CVE-2022-20771 (Possible infinite loop vulnerability in the TIFF file parser). - CVE-2022-20785 (Possible memory leak in the HTML file parser/ Javascript normalizer). - CVE-2022-20792 (Possible multi-byte heap buffer overflow write vulnerability in the signature database load module. - Update symbol file. clamav (0.103.6+dfsg-0+deb10u1) buster; urgency=medium . * Import 0.103.6 - CVE-2022-20770 (Possible infinite loop vulnerability in the CHM file parser). - CVE-2022-20796 (Possible NULL-pointer dereference crash in the scan verdict cache check). - CVE-2022-20771 (Possible infinite loop vulnerability in the TIFF file parser). - CVE-2022-20785 (Possible memory leak in the HTML file parser/ Javascript normalizer). - CVE-2022-20792 (Possible multi-byte heap buffer overflow write vulnerability in the signature database load module. - Update symbol file. clamav (0.103.5+dfsg-1) unstable; urgency=medium . * Import 0.103.5 - CVE-2022-20698 (Fix for invalid pointer read that may cause a crash). - Update symbol file. clementine (1.4.0~rc1+git347-gfc4cb6fc7+dfsg-1+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Add explicit Depends on libqt5sql5-sqlite (Closes: #1008312) composer (2.0.9-2+deb11u1) bullseye; urgency=medium . * Fix code injection vulnerability [CVE-2022-24828] (Closes: #1009960) * Update GitHub token pattern (Closes: #989315) * Checkout ProcessExecutorMock.php needed for updated tests containerd (1.4.13~ds1-1~deb11u2) bullseye-security; urgency=high . * CVE-2022-31030: CRI plugin: Host memory exhaustion through ExecSync * CVE-2022-24769: Default inheritable capabilities for linux container should be empty cups (2.3.3op2-3+deb11u2) bullseye-security; urgency=high . * CVE-2022-26691 Fix certificate comparison. (Thanks to Zdenek Dohnal for the patch) cyrus-imapd (3.2.6-2+deb11u2) bullseye; urgency=medium . * Ensure that ctl_cyrusdb -r and reconstruct now ensure the "uniqueid" field is present in and synchronised between mailboxes.db and cyrus.header. Required before 3.6.x upgrade dbus-broker (26-1+deb11u1) bullseye; urgency=medium . * Backport strnspn-fix-buffer-overflow.patch to fix CVE-2022-31212 (Closes: #1013343) debian-edu-config (2.11.56+deb11u4) bullseye; urgency=medium . [ Wolfgang Schweer ] * etc/exim4/exim-ldap-server-v4.conf: Accept incoming mail from internal network sent to root@. (Closes: #1003727). * Use mktemp instead of deprecated tempfile, adjust: - etc/X11/Xsession-debian-edu - sbin/debian-edu-update-netblock - share/debian-edu-config/tools/gosa-sync - testsuite/postoffice (Closes: #1005352). . [ Mike Gabriel ] * share/d-e-c/tools/gosa-modify-host: Only create Kerberos host and service principals if they don't yet exist. (Closes: #1002014). * share/d-e-c/tools/gosa-create-host: Fix copy+paste flaw in comment. * share/debian-edu-config/tools/setup-freeradius-server: Fix integer comparison in run-by-root check. Script was not executable fully (not even as root). * debian/debian-edu-config.fetch-ldap-cert: Drop retrieval of Debian-Edu_rootCA from this script. This now is the task of the fetch-rootca-cert script. (Closes: #971780). * debian/debian-edu-config.fetch-rootca-cert: Ensure proper symlinking of Debian-Edu_rootCA.crt in /usr/local/share/ca-certificates/ to Debian-Edu_rootCA.crt in /etc/ssl/ca-certificates. Forced symlinking is required, because earlier versions of the fetch-ldap-cert init script put Debian-Edu_rootCA.crt into /etc/ssl/ca-certificates/ as a file. Forced symlinking replaces files by the wanted symlink. The -n option (no- dereference) is required to make sure we don't follow any already existing symlink. (This relates to #971780). * share/debian-edu-config/tools/update-proxy-from-wpad: - Fix typo (wrong protocol) in APT proxy config creation. - Create a Debian Edu specific proxy configuration in /etc/apt/apt.conf.d/ named 03debian-edu-config rather than meddling with /etc/apt/apt.conf directly. Clean up any earlier meddling from apt.conf, as well. (Closes: #1003560). * share/debian-edu-config/tools/{update-proxy-from-wpad,wpad-extra}: - Don't fail if proxy update is not possible, only send warnings to stderr and syslog. Don't source wpad-extra script, execute it instead and capture stdout. (Closes: #1008067). * sbin/update-hostname-from-ip: - Simply if-then-else-clauses, reduce number of exit calls, don't exit with non-zero exitcode. Improve syslog messages if things fail. (Closes: #1006604). * share/debian-edu-config/tools/setup-roaming: Assure libsss-sudo is installed on Roaming Workstation. (Closes: #1004605). * share/debian-edu-config/tools/gosa-remove: Capture removals of GOsa² user templates and ignore them. (Closes: #815042). * ldap-schemas/: Update schema files from Debian's latest GOsa² list of schemas. * share/debian-edu-config/tools/clean-up-host-keytabs: Don't fail on Kerberos principal removal. * etc/cups/cups-browsed-debian-edu.conf: - Let TJENER's print queues appear on Debian Edu clients, use same print queue names on clients as on TJENER. (Closes: #1005841). * sbin/debian-edu-pxeinstall: - Don't append 'ipappend 2' to the kernel boot cmdline anymore as it confuses systemd when booting into the installed system. This resolves the graphical.target not coming up on Debian Edu workstations that got installed via the PXE/network based Debian Installer method. (Closes: #1006362). - Silence stderr output if the artwork theme lacks a plymouth subfolder. This can be silently ignored and should not trouble Debian Edu admins. * Support krb5i on Diskless Workstations (aka LTSP FAT Clients): - ldap-bootstrap/netgroup.ldif: Add diskless-workstation-hosts NIS netgroup during LDAP bootstrap. - debian/debian-edu-config.{postinst,postrm}: Create non-privileged debian-edu system user account on Debian Edu mainserver (for distribution of host keytabs to diskless workstations aka LTSP fat clients). - share/debian-edu-config/tools/: Add update-dlw-krb5-keytabs script and call it (with delay) from gosa-modify-host hook script. (Closes: #613167, #1002018). * Move /etc/debian-edu/host-keytabs/* to /var/lib/debian-edu/host-keytabs/ and replace directory /etc/debian-edu/host-keytabs by a symlink. (Closes: #1002019). * share/debian-edu-config/squid.conf: - Prefer DNSv4 lookups over DNSv6. Debian Edu does not yet fully support IPv6 and many schools still use IPv4 primarily. This gives a great performance boost to squid installations if IPv6 internet is not fully available for whatever reason. (Closes: #1006375). * share/debian-edu-config/tools/list-gosa-systems: - Drop immature list-gosa-systems script again that got sneaked in via upload of 2.11.56+deb11u3. We apologize for the noise. debian-installer (20210731+deb11u4) bullseye; urgency=medium . * Reinstate some armel netboot targets, as suggested by Martin Michlmayr (Closes: #934072) and tested by Rick Thomas (thanks!): - openrd-base - openrd-client - openrd-ultimate * Bump Linux kernel ABI to 5.10.0-16. debian-installer-netboot-images (20210731+deb11u4) bullseye; urgency=medium . * Update to 20210731+deb11u4, from bullseye-proposed-updates. distro-info-data (0.51+deb11u2) bullseye; urgency=medium . * Update data to 0.53: - Add Ubuntu 22.10, Kinetic Kudu. docker.io (20.10.5+dfsg1-1+deb11u2) bullseye; urgency=medium . * Order docker.service after containerd.service to fix shutdown of containers (Closes: #989490) * Explicitly pass the containerd socket path to dockerd to make sure it doesn't start containerd on its own. dpdk (20.11.5-1~deb11u1) bullseye-security; urgency=high . * Upload to bullseye-security (CVE-2021-3839 and CVE-2022-0669) . dpdk (20.11.5-1) unstable; urgency=medium . * New upstream release 20.11.5; for a full list of changes see: http://doc.dpdk.org/guides-20.11/rel_notes/release_20_11.html * Drop config-ppc-fix-build-with-GCC-10.patch, merged upstream * librte-ethdev21.symbols: add new internal symbol dpdk (20.11.4-2) unstable; urgency=medium . * Backport patch to fix ppc64el FTBFS dpkg (1.20.11) bullseye; urgency=medium . [ Guillem Jover ] * dpkg-deb: Fix unexpected end of file conditions on .deb extract. * libdpkg: Do not restrict source:* virtual fields to installed packages. Closes: #1004372 * Perl modules: - Dpkg::Source::Package::V2: Always fix the permissions for upstream tarballs. Closes: #1012195 * Build system: - Build gitlab CI images for bullseye instead of sid. dpkg (1.20.10) bullseye-security; urgency=medium . [ Guillem Jover ] * Perl modules: - Dpkg::Source::Archive: Prevent directory traversal for in-place extracts. Reported by Max Justicz . Fixes CVE-2022-1664. * Localization: - Update Swedish translations. Thanks to Peter Krefting . Closes: #1007116 . [ Update man pages translations ] * German (Helge Kreutzmann). ecdsautils (0.3.2+git20151018-2+deb11u1) bullseye-security; urgency=medium . * debian/patches: - Add 0001-verify-fix-signature-verification-CVE-2022-24884.patch, Fix CVE-2022-24884: Improper Verification of ECDSA Signatures ecdsautils (0.3.2+git20151018-2+deb10u1) buster-security; urgency=medium . * debian/patches: - Add 0001-verify-fix-signature-verification-CVE-2022-24884.patch, Fix CVE-2022-24884: Improper Verification of ECDSA Signatures exo (4.16.0-1+deb11u1) stable-security; urgency=medium . * d/patches: 0001-exo-open-Only-execute-local-.desktop-files.patch added Fix CVE-2022-32278, exo allows executing .desktop files with remote URI scheme. (Closes: #1013129) ffmpeg (7:4.3.4-0+deb11u1) bullseye-security; urgency=medium . * New upstream version 4.3.4 firefox-esr (91.11.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-25, also known as: CVE-2022-34479, CVE-2022-34470, CVE-2022-34468, CVE-2022-34481, CVE-2022-31744, CVE-2022-34472, CVE-2022-2200, CVE-2022-34484. . * build/moz.configure/bindgen.configure, gfx/webrender_bindings/webrender_ffi.h: Work around build failure with newer cbindgen. bz#1773259 firefox-esr (91.11.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-25, also known as: CVE-2022-34479, CVE-2022-34470, CVE-2022-34468, CVE-2022-34481, CVE-2022-31744, CVE-2022-34472, CVE-2022-2200, CVE-2022-34484. . * build/moz.configure/bindgen.configure, gfx/webrender_bindings/webrender_ffi.h: Work around build failure with newer cbindgen. bz#1773259 firefox-esr (91.10.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-21, also known as: CVE-2022-31736, CVE-2022-31737, CVE-2022-31738, CVE-2022-31740, CVE-2022-31741, CVE-2022-31742, CVE-2022-31747. firefox-esr (91.10.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-21, also known as: CVE-2022-31736, CVE-2022-31737, CVE-2022-31738, CVE-2022-31740, CVE-2022-31741, CVE-2022-31742, CVE-2022-31747. firefox-esr (91.10.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-21, also known as: CVE-2022-31736, CVE-2022-31737, CVE-2022-31738, CVE-2022-31740, CVE-2022-31741, CVE-2022-31742, CVE-2022-31747. firefox-esr (91.9.1esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-19, also known as CVE-2022-1802 and CVE-2022-1529. firefox-esr (91.9.1esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-19, also known as CVE-2022-1802 and CVE-2022-1529. firefox-esr (91.9.1esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-19, also known as CVE-2022-1802 and CVE-2022-1529. firefox-esr (91.9.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-17, also known as CVE-2022-29914, CVE-2022-29909, CVE-2022-29916, CVE-2022-29911, CVE-2022-29912, CVE-2022-29917. firefox-esr (91.9.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-17, also known as CVE-2022-29914, CVE-2022-29909, CVE-2022-29916, CVE-2022-29911, CVE-2022-29912, CVE-2022-29917. firefox-esr (91.9.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-17, also known as CVE-2022-29914, CVE-2022-29909, CVE-2022-29916, CVE-2022-29911, CVE-2022-29912, CVE-2022-29917. firefox-esr (91.8.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-14, also known as CVE-2022-1097, CVE-2022-28281, CVE-2022-1196, CVE-2022-28282, CVE-2022-28285, CVE-2022-28286, CVE-2022-24713, CVE-2022-28289. firefox-esr (91.8.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-14, also known as CVE-2022-1097, CVE-2022-28281, CVE-2022-1196, CVE-2022-28282, CVE-2022-28285, CVE-2022-28286, CVE-2022-24713, CVE-2022-28289. firefox-esr (91.8.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-14, also known as CVE-2022-1097, CVE-2022-28281, CVE-2022-1196, CVE-2022-28282, CVE-2022-28285, CVE-2022-28286, CVE-2022-24713, CVE-2022-28289. firefox-esr (91.7.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-11, also known as CVE-2022-26383, CVE-2022-26384, CVE-2022-26387, CVE-2022-26381, CVE-2022-26386. firefox-esr (91.7.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-11, also known as CVE-2022-26383, CVE-2022-26384, CVE-2022-26387, CVE-2022-26381, CVE-2022-26386. firefox-esr (91.7.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-11, also known as CVE-2022-26383, CVE-2022-26384, CVE-2022-26387, CVE-2022-26381, CVE-2022-26386. firefox-esr (91.6.1esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-09, also known as CVE-2022-26485, CVE-2022-26486. firefox-esr (91.6.1esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-09, also known as CVE-2022-26485, CVE-2022-26486. firefox-esr (91.6.1esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-09, also known as CVE-2022-26485, CVE-2022-26486. firefox-esr (91.6.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-05, also known as: CVE-2022-22754, CVE-2022-22756, CVE-2022-22759, CVE-2022-22760, CVE-2022-22761, CVE-2022-22763, CVE-2022-22764. firefox-esr (91.6.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-05, also known as: CVE-2022-22754, CVE-2022-22756, CVE-2022-22759, CVE-2022-22760, CVE-2022-22761, CVE-2022-22763, CVE-2022-22764. . * netwerk/base/SimpleChannel.*, netwerk/base/nsBaseChannel.*, netwerk/protocol/res/ExtensionProtocolHandler.cpp, netwerk/protocol/res/PageThumbProtocolHandler.cpp, toolkit/components/places/nsAnnoProtocolHandler.cpp, dom/file/ipc/RemoteLazyInputStream.cpp: Apply upstream patches to fix excessive CPU usage in web extensions. bz#1706594, bz#1735899. Closes: #1002868. firefox-esr (91.6.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-05, also known as: CVE-2022-22754, CVE-2022-22756, CVE-2022-22759, CVE-2022-22760, CVE-2022-22761, CVE-2022-22763, CVE-2022-22764. . * netwerk/base/SimpleChannel.*, netwerk/base/nsBaseChannel.*, netwerk/protocol/res/ExtensionProtocolHandler.cpp, netwerk/protocol/res/PageThumbProtocolHandler.cpp, toolkit/components/places/nsAnnoProtocolHandler.cpp, dom/file/ipc/RemoteLazyInputStream.cpp: Apply upstream patches to fix excessive CPU usage in web extensions. bz#1706594, bz#1735899. Closes: #1002868. firefox-esr (91.5.1esr-1) unstable; urgency=medium . * New upstream release. firefox-esr (91.5.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2022-02, also known as: CVE-2022-22743, CVE-2022-22742, CVE-2022-22741, CVE-2022-22740, CVE-2022-22738, CVE-2022-22737, CVE-2021-4140, CVE-2022-22748, CVE-2022-22745, CVE-2022-22747, CVE-2022-22739, CVE-2022-22751. . * netwerk/base/SimpleChannel.*, netwerk/base/nsBaseChannel.*, netwerk/protocol/res/ExtensionProtocolHandler.cpp, netwerk/protocol/res/PageThumbProtocolHandler.cpp, toolkit/components/places/nsAnnoProtocolHandler.cpp, dom/file/ipc/RemoteLazyInputStream.cpp: Apply upstream patches to fix excessive CPU usage in web extensions. bz#1706594, bz#1735899. Closes: #1002868. firefox-esr (91.5.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-02, also known as: CVE-2022-22743, CVE-2022-22742, CVE-2022-22741, CVE-2022-22740, CVE-2022-22738, CVE-2022-22737, CVE-2021-4140, CVE-2022-22748, CVE-2022-22745, CVE-2022-22747, CVE-2022-22739, CVE-2022-22751. firefox-esr (91.5.0esr-1~deb10u1) buster-security; urgency=medium . * New upstream release. * Fixes for mfsa2022-02, also known as: CVE-2022-22743, CVE-2022-22742, CVE-2022-22741, CVE-2022-22740, CVE-2022-22738, CVE-2022-22737, CVE-2021-4140, CVE-2022-22748, CVE-2022-22745, CVE-2022-22747, CVE-2022-22739, CVE-2022-22751. . * debian/rules: Build against embedded nspr and nss on bullseye. * debian/control*: Build against rustc-mozilla/cargo-mozilla on relevant older release. * debian/upstream.mk: Add definitions for newer releases of Debian. firefox-esr (91.4.1esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. . * debian/rules: Build against embedded nspr and nss on bullseye. * debian/control*: Build against rustc-mozilla/cargo-mozilla on relevant older release. * debian/upstream.mk: Add definitions for newer releases of Debian. firefox-esr (91.4.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes cubeb deadlock. Closes: #998679. * Fixes for mfsa2021-53, also known as: CVE-2021-43536, CVE-2021-43537, CVE-2021-43538, CVE-2021-43539, CVE-2021-43541, CVE-2021-43542, CVE-2021-43543, CVE-2021-43545, CVE-2021-43546, MOZ-2021-0009. firefox-esr (91.3.0esr-2) unstable; urgency=medium . * debian/firefox.in: Use `command -v` instead of `which`. Closes: #996455. . * modules/fdlibm/src/math_private.h: Fix FTBFS on i386. bz#1729459. * .cargo/config.in, Cargo.lock, Cargo.toml, third_party/rust/cc/.cargo-checksum.json, third_party/rust/cc/Cargo.toml, third_party/rust/cc/src/lib.rs, third_party/rust/cc/src/windows_registry.rs: Update cc crate to b2f6b146b75299c444e05bbde50d03705c7c4b6e, aka 1.0.71 + GCC-11 fix for armhf. bz#1739040. firefox-esr (91.3.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2021-49, also known as: CVE-2021-38503, CVE-2021-38504, CVE-2021-38506, CVE-2021-38507, MOZ-2021-0008, CVE-2021-38508, CVE-2021-38509, MOZ-2021-0007. (MOZ-* pending CVE assignment) firefox-esr (91.2.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2021-45, also known as: CVE-2021-38496, CVE-2021-38497, CVE-2021-38498, CVE-2021-32810, CVE-2021-38500, CVE-2021-38501. firefox-esr (91.1.0esr-1) experimental; urgency=medium . * New upstream release. * Fixes for mfsa2021-40, also known as CVE-2021-38495. firefox-esr (91.0.1esr-1) experimental; urgency=medium . * New upstream release. * Fixes for mfsa2021-37, also known as CVE-2021-29991. . * debian/import-tar.py, debian/repack.py: Fixed for python 3.9. firefox-esr (91.0esr-1) experimental; urgency=medium . * New upstream release. firejail (0.9.64.4-2+deb11u1) bullseye-security; urgency=medium . * Fix local root exploit reachable via --join logic. (CVE-2022-31214) (Closes: #1012510) freetype (2.10.4+dfsg-1+deb11u1) bullseye; urgency=medium . * Add upstream patches to fix multiple vulnerabilities. Closes: #1010183. - CVE-2022-27404: heap buffer overflow via invalid integer decrement in sfnt_init_face() and woff2_open_font(). - CVE-2022-27405: segmentation violation via ft_open_face_internal() when attempting to read the value of FT_LONG face_index. - CVE-2022-27406: segmentation violation via FT_Request_Size() when attempting to read the value of an unguarded face size handle. fribidi (1.0.8-2+deb11u1) bullseye; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2022-25308 stack-buffer-overflow issue in main() * CVE-2022-25309 heap-buffer-overflow issue in fribidi_cap_rtl_to_unicode() * CVE-2022-25310 SEGV issue in fribidi_remove_bidi_marks() (Closes: #1008793) ganeti (3.0.2-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. * Restore the dependency on bridge-utils to ensure that a stable update will not break any user scripts that might depend on brctl. ganeti (3.0.2-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports ganeti (3.0.1-4) unstable; urgency=medium . * Drop ganeti-3.0's dependency on bridge-utils (Ganeti 3.0 uses iproute2). ganeti (3.0.1-3) unstable; urgency=medium . * postrm: remove diversion only on package removal (Closes: #993559) * Restore the diversion on postinst in case it was accidentally removed due to #993559. * Fix FTBFS by removing duplicate index entry. Thanks to Marius Bakke (Closes: #997053) * d/control: remove unnecessary B-D on libpcre3-dev (Closes: #1000040) * Fix FTBFS with sphinx >= 2.1. Thanks to Sascha Lucas geeqie (1:1.6-9+deb11u1) bullseye; urgency=medium . * Add patch to fix Ctrl click inside of a block selection gnupg2 (2.2.27-2+deb11u2) bullseye-security; urgency=high . * fix broken status line (Closes: #1014157) gnutls28 (3.7.1-5+deb11u1) bullseye; urgency=medium . * 56_40-fix-SSSE3-SHA384-to-work-more-than-once.patch: Backport SSSE3 SHA384 miscalculation fix from 3.7.3. Closes: #1011246 * 56_45-wrap_nettle_hash_fast-avoid-calling-_update-with-zer.patch from 3.7.3: Fix null-pointer dereference flaw. CVE-2021-4209 golang-github-russellhaering-goxmldsig (1.1.0-1+deb11u1) bullseye; urgency=medium . * CVE-2020-7711 null pointer dereference caused by crafted XML signatures (Closes: #968928) * according to ratt, nothing else has to be built grunt (1.3.0-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix path traversal (Closes: #1009676, CVE-2022-0436) gzip (1.10-4+deb11u1) bullseye-security; urgency=high . * zgrep: fix arbitrary-file-write vulnerability addressing CVE-2022-1271 (closes: #1009168) hdmi2usb-mode-switch (0.0.1-2+deb11u1) bullseye; urgency=low . * Patch: Udev: Add a suffix to /dev/video device nodes to disambiguate them. (Closes: #1011938) * Move udev rules to priority 70, to come after 60-persistent-v4l.rules. hexchat (2.14.3-6+deb11u1) bullseye; urgency=medium . * hexchat-python3: Add missing dependency on python3-cffi-backend. Closes: #1009877 htmldoc (1.9.11-4+deb11u3) bullseye; urgency=medium . * CVE-2022-24191 Infinite loop in the gif_read_lzw function can lead to a pointer arbitrarily pointing to heap memory and resulting in a buffer overflow. * CVE-2022-27114 Integer Overflow bugs in image.cxx, malloc function may return a heap block smaller than the expected size, and it will cause a buffer overflow/Address boundary error in the jpeg_read_scanlines function. * CVE-2022-28085 A heap buffer overflow in the function pdf_write_names in ps-pdf.cxx may lead to arbitrary code execution and Denial of Service (DoS). knot-resolver (5.3.1-1+deb11u1) bullseye; urgency=medium . * Fix possible assertion failure in NSEC3 edge-case (CVE-2021-40083) (Closes: #991463) libapache2-mod-auth-openidc (2.4.9.4-0+deb11u1) bullseye; urgency=medium . * New upstream version 2.4.9.4 * Fix "CVE-2021-39191" (Closes: #993648) * 2.4.9.2 fixed a regression regarding segfault at reload/restart (Closes: #883616, #891224, #868949) libintl-perl (1.26-3+deb11u1) bullseye; urgency=medium . * Team upload. * Install the missing gettext_xs.pm file. Thanks to Xan Charbonnet for the bug report. (Closes: #1012570) libsdl2 (2.0.14+dfsg2-3+deb11u1) bullseye; urgency=medium . * d/gbp.conf: Set branch for Debian 11 updates * d/p/Always-create-a-full-256-entry-map-in-case-color-values-a.patch: Avoid out-of-bounds read while loading malformed BMP file. libsdl-org/SDL#5042 upstream, CVE-2021-33657. * d/p/Fixed-potential-buffer-overflow-in-YUV-conversion.patch: Avoid out-of-bounds read during YUV to RGB conversion. libsdl-org/SDL#5043 upstream, no known CVE ID. libtgowt (0~git20210627.91d836d+dfsg-3~deb11u1) bullseye; urgency=medium . * Full update from bookworm. Needed as a dependency of telegram-desktop. libtgowt (0~git20210627.91d836d+dfsg-3~bpo11+1) bullseye-backports; urgency=medium . * No-change rebuild for bullseye-backports. . libtgowt (0~git20210627.91d836d+dfsg-3) unstable; urgency=medium . * Upload to unstable. * Extend Packaged-PipeWire.patch for 0.2 version for easy backporting. * Bump Standards-Version to 4.6.0, no related changes. . libtgowt (0~git20210627.91d836d+dfsg-2) experimental; urgency=medium . * Automatically collect transitive dependencies. * New Ignore-sanitize-attr.patch. . libtgowt (0~git20210627.91d836d+dfsg-1) experimental; urgency=medium . * Update to the latest upstream commit. * Refine minimal CMake version, 3.16.0. * New build dependencies, PipeWire, Python, GLib, and X11. * Update get-orig-source target. - Repack to exclude RNNoise non-free model. * Update package metadata to fit the upstream code. * Update copyright info. libtgowt (0~git20210627.91d836d+dfsg-3~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports-sloppy. * Ignore a bug with type casting in PipeWire headers of 0.2.5 version. . libtgowt (0~git20210627.91d836d+dfsg-3) unstable; urgency=medium . * Upload to unstable. * Extend Packaged-PipeWire.patch for 0.2 version for easy backporting. * Bump Standards-Version to 4.6.0, no related changes. . libtgowt (0~git20210627.91d836d+dfsg-2) experimental; urgency=medium . * Automatically collect transitive dependencies. * New Ignore-sanitize-attr.patch. . libtgowt (0~git20210627.91d836d+dfsg-1) experimental; urgency=medium . * Update to the latest upstream commit. * Refine minimal CMake version, 3.16.0. * New build dependencies, PipeWire, Python, GLib, and X11. * Update get-orig-source target. - Repack to exclude RNNoise non-free model. * Update package metadata to fit the upstream code. * Update copyright info. libtgowt (0~git20210627.91d836d+dfsg-2) experimental; urgency=medium . * Automatically collect transitive dependencies. * New Ignore-sanitize-attr.patch. libtgowt (0~git20210627.91d836d+dfsg-1) experimental; urgency=medium . * Update to the latest upstream commit. * Refine minimal CMake version, 3.16.0. * New build dependencies, PipeWire, Python, GLib, and X11. * Update get-orig-source target. - Repack to exclude RNNoise non-free model. * Update package metadata to fit the upstream code. * Update copyright info. libxml2 (2.9.10+dfsg-6.7+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix integer overflow in xmlBufferResize * Fix integer overflows in xmlBuf and xmlBuffer (CVE-2022-29824) (Closes: #1010526) linux (5.10.127-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.121 - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9520 laptop - ALSA: hda/realtek - Fix microphone noise on ASUS TUF B550M-PLUS - ALSA: usb-audio: Cancel pending work at closing a MIDI substream - USB: serial: option: add Quectel BG95 modem - USB: new quirk for Dell Gen 2 devices - usb: dwc3: gadget: Move null pinter check to proper place - usb: core: hcd: Add support for deferring roothub registration - cifs: when extending a file with falloc we should make files not-sparse - xhci: Allow host runtime PM as default for Intel Alder Lake N xHCI - Fonts: Make font size unsigned in font_desc - [x86] MCE/AMD: Fix memory leak when threshold_create_bank() fails - [w86] perf/x86/intel: Fix event constraints for ICL - ptrace/xtensa: Replace PT_SINGLESTEP with TIF_SINGLESTEP - ptrace: Reimplement PTRACE_KILL by always sending SIGKILL - btrfs: add "0x" prefix for unsupported optional features - btrfs: repair super block num_devices automatically - [amd64] iommu/vt-d: Add RPLS to quirk list to skip TE disabling - drm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modes - mwifiex: add mutex lock for call in mwifiex_dfs_chan_sw_work_queue - b43legacy: Fix assigning negative value to unsigned variable - b43: Fix assigning negative value to unsigned variable - ipw2x00: Fix potential NULL dereference in libipw_xmit() - ipv6: fix locking issues with loops over idev->addr_list - fbcon: Consistently protect deferred_takeover with console_lock() - [x86] platform/uv: Update TSC sync state for UV5 - ACPICA: Avoid cache flush inside virtual machines - drm/komeda: return early if drm_universal_plane_init() fails. - rcu-tasks: Fix race in schedule and flush work - rcu: Make TASKS_RUDE_RCU select IRQ_WORK - sfc: ef10: Fix assigning negative value to unsigned variable - ALSA: jack: Access input_dev under mutex - spi: spi-rspi: Remove setting {src,dst}_{addr,addr_width} based on DMA direction - drm/amd/pm: fix double free in si_parse_power_table() - ath9k: fix QCA9561 PA bias level - media: venus: hfi: avoid null dereference in deinit - media: pci: cx23885: Fix the error handling in cx23885_initdev() - media: cx25821: Fix the warning when removing the module - md/bitmap: don't set sb values if can't pass sanity check - mmc: jz4740: Apply DMA engine limits to maximum segment size - drivers: mmc: sdhci_am654: Add the quirk to set TESTCD bit - scsi: megaraid: Fix error check return value of register_chrdev() - scsi: ufs: Use pm_runtime_resume_and_get() instead of pm_runtime_get_sync() - scsi: lpfc: Fix resource leak in lpfc_sli4_send_seq_to_ulp() - ath11k: disable spectral scan during spectral deinit - ASoC: Intel: bytcr_rt5640: Add quirk for the HP Pro Tablet 408 - drm/plane: Move range check for format_count earlier - drm/amd/pm: fix the compile warning - ath10k: skip ath10k_halt during suspend for driver state RESTARTING - [arm64] compat: Do not treat syscall number as ESR_ELx for a bad syscall - drm: msm: fix error check return value of irq_of_parse_and_map() - ipv6: Don't send rs packets to the interface of ARPHRD_TUNNEL - net/mlx5: fs, delete the FTE when there are no rules attached to it - ASoC: dapm: Don't fold register value changes into notifications - mlxsw: spectrum_dcb: Do not warn about priority changes - mlxsw: Treat LLDP packets as control - drm/amdgpu/ucode: Remove firmware load type check in amdgpu_ucode_free_bo - HID: bigben: fix slab-out-of-bounds Write in bigben_probe - ASoC: tscs454: Add endianness flag in snd_soc_component_driver - net: remove two BUG() from skb_checksum_help() - [s390x] preempt: disable __preempt_count_add() optimization for PROFILE_ALL_BRANCHES - perf/amd/ibs: Cascade pmu init functions' return value - spi: stm32-qspi: Fix wait_cmd timeout in APM mode - dma-debug: change allocation mode from GFP_NOWAIT to GFP_ATIOMIC - ACPI: PM: Block ASUS B1400CEAE from suspend to idle by default - ipmi:ssif: Check for NULL msg when handling events and messages - ipmi: Fix pr_fmt to avoid compilation issues - rtlwifi: Use pr_warn instead of WARN_ONCE - media: rga: fix possible memory leak in rga_probe - media: coda: limit frame interval enumeration to supported encoder frame sizes - media: imon: reorganize serialization - media: cec-adap.c: fix is_configuring state - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - ASoC: rt5645: Fix errorenous cleanup order - nbd: Fix hung on disconnect request if socket is closed before - net: phy: micrel: Allow probing without .driver_data - media: exynos4-is: Fix compile warning - ASoC: max98357a: remove dependency on GPIOLIB - ASoC: rt1015p: remove dependency on GPIOLIB - can: mcp251xfd: silence clang's -Wunaligned-access warning - [x86] microcode: Add explicit CPU vendor dependency - rxrpc: Return an error to sendmsg if call failed - rxrpc, afs: Fix selection of abort codes - eth: tg3: silence the GCC 12 array-bounds warning - gfs2: use i_lock spin_lock for inode qadata - IB/rdmavt: add missing locks in rvt_ruc_loopback - [arm64] dts: qcom: msm8994: Fix BLSP[12]_DMA channels count - PM / devfreq: rk3399_dmc: Disable edev on remove() - crypto: ccree - use fine grained DMA mapping dir - soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc - fs: jfs: fix possible NULL pointer dereference in dbFree() - [powerpc*] fadump: Fix fadump to work with a different endian capture kernel - fat: add ratelimit to fat*_ent_bread() - pinctrl: renesas: rzn1: Fix possible null-ptr-deref in sh_pfc_map_resources() - ARM: versatile: Add missing of_node_put in dcscb_init - ARM: dts: exynos: add atmel,24c128 fallback to Samsung EEPROM - ARM: hisi: Add missing of_node_put after of_find_compatible_node - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - tracing: incorrect isolate_mote_t cast in mm_vmscan_lru_isolate - [powerpc*] powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr - [powerpc*] xics: fix refcount leak in icp_opal_init() - [powerpc*] powernv: fix missing of_node_put in uv_init() - macintosh/via-pmu: Fix build failure when CONFIG_INPUT is disabled - [powerpc*] iommu: Add missing of_node_put in iommu_init_early_dart - [amd64] RDMA/hfi1: Prevent panic when SDMA is disabled - drm: fix EDID struct for old ARM OABI format - dt-bindings: display: sitronix, st7735r: Fix backlight in example - ath11k: acquire ab->base_lock in unassign when finding the peer by addr - ath9k: fix ar9003_get_eepmisc - drm/edid: fix invalid EDID extension block filtering - drm/bridge: adv7511: clean up CEC adapter when probe fails - spi: qcom-qspi: Add minItems to interconnect-names - ASoC: mediatek: Fix error handling in mt8173_max98090_dev_probe - ASoC: mediatek: Fix missing of_node_put in mt2701_wm8960_machine_probe - [x86] delay: Fix the wrong asm constraint in delay_loop() - drm/ingenic: Reset pixclock rate when parent clock rate changes - drm/mediatek: Fix mtk_cec_mask() - [arm*] drm/vc4: hvs: Reset muxes at probe time - [arm*] drm/vc4: txp: Don't set TXP_VSTART_AT_EOF - [arm*] drm/vc4: txp: Force alpha to be 0xff if it's disabled - bpf: Fix excessive memory allocation in stack_map_alloc() - nl80211: show SSID for P2P_GO interfaces - drm/komeda: Fix an undefined behavior bug in komeda_plane_add() - drm: mali-dp: potential dereference of null pointer - spi: spi-ti-qspi: Fix return value handling of wait_for_completion_timeout - scftorture: Fix distribution of short handler delays - net: dsa: mt7530: 1G can also support 1000BASE-X link mode - NFC: NULL out the dev->rfkill to prevent UAF - efi: Add missing prototype for efi_capsule_setup_info - target: remove an incorrect unmap zeroes data deduction - drbd: fix duplicate array initializer - EDAC/dmc520: Don't print an error for each unconfigured interrupt line - mtd: rawnand: denali: Use managed device resources - HID: hid-led: fix maximum brightness for Dream Cheeky - HID: elan: Fix potential double free in elan_input_configured - drm/bridge: Fix error handling in analogix_dp_probe - sched/fair: Fix cfs_rq_clock_pelt() for throttled cfs_rq - spi: img-spfi: Fix pm_runtime_get_sync() error checking - cpufreq: Fix possible race in cpufreq online error path - ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix - media: hantro: Empty encoder capture buffers by default - drm/panel: simple: Add missing bus flags for Innolux G070Y2-L01 - ALSA: pcm: Check for null pointer of pointer substream before dereferencing it - inotify: show inotify mask flags in proc fdinfo - fsnotify: fix wrong lockdep annotations - of: overlay: do not break notify on NOTIFY_{OK|STOP} - drm/msm/dpu: adjust display_v_end for eDP and DP - scsi: ufs: qcom: Fix ufs_qcom_resume() - scsi: ufs: core: Exclude UECxx from SFR dump list - mtd: spi-nor: core: Check written SR value in spi_nor_write_16bit_sr_and_check() - [x86] pm: Fix false positive kmemleak report in msr_build_context() - mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() - [x86] speculation: Add missing prototype for unpriv_ebpf_notify() - ASoC: rk3328: fix disabling mclk on pclk probe failure - perf tools: Add missing headers needed by util/data.h - drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume - drm/msm/dp: stop event kernel thread when DP unbind - drm/msm/dp: fix error check return value of irq_of_parse_and_map() - drm/msm/dsi: fix error checks and return values for DSI xmit functions - drm/msm/hdmi: check return value after calling platform_get_resource_byname() - drm/msm/hdmi: fix error check return value of irq_of_parse_and_map() - drm/msm: add missing include to msm_drv.c - drm/panel: panel-simple: Fix proper bpc for AM-1280800N3TZQW-T00H - drm/rockchip: vop: fix possible null-ptr-deref in vop_bind() - perf tools: Use Python devtools for version autodetection rather than runtime - virtio_blk: fix the discard_granularity and discard_alignment queue limits - [x86] Fix return value of __setup handlers - irqchip/exiu: Fix acknowledgment of edge triggered interrupts - irqchip/aspeed-i2c-ic: Fix irq_of_parse_and_map() return value - irqchip/aspeed-scu-ic: Fix irq_of_parse_and_map() return value - [x86] mm: Cleanup the control_va_addr_alignment() __setup handler - [arm64] fix types in copy_highpage() - regulator: core: Fix enable_count imbalance with EXCLUSIVE_GET - drm/msm/dp: fix event thread stuck in wait_event after kthread_stop() - drm/msm/mdp5: Return error code in mdp5_pipe_release when deadlock is detected - drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected - drm/msm: return an error pointer in msm_gem_prime_get_sg_table() - media: uvcvideo: Fix missing check to determine if element is found in list - iomap: iomap_write_failed fix - spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname() - Revert "cpufreq: Fix possible race in cpufreq online error path" - regulator: qcom_smd: Fix up PM8950 regulator configuration - perf/amd/ibs: Use interrupt regs ip for stack unwinding - ath11k: Don't check arvif->is_started before sending management frames - ASoC: fsl: Fix refcount leak in imx_sgtl5000_probe - ASoC: mxs-saif: Fix refcount leak in mxs_saif_probe - regulator: pfuze100: Fix refcount leak in pfuze_parse_regulators_dt - ASoC: samsung: Use dev_err_probe() helper - ASoC: samsung: Fix refcount leak in aries_audio_probe - scripts/faddr2line: Fix overlapping text section failures - media: aspeed: Fix an error handling path in aspeed_video_probe() - media: exynos4-is: Fix PM disable depth imbalance in fimc_is_probe - media: st-delta: Fix PM disable depth imbalance in delta_probe - media: exynos4-is: Change clk_disable to clk_disable_unprepare - media: pvrusb2: fix array-index-out-of-bounds in pvr2_i2c_core_init - media: vsp1: Fix offset calculation for plane cropping - Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout - Bluetooth: Interleave with allowlist scan - Bluetooth: L2CAP: Rudimentary typo fixes - Bluetooth: LL privacy allow RPA - Bluetooth: use inclusive language in HCI role comments - Bluetooth: use inclusive language when filtering devices - Bluetooth: use hdev lock for accept_list and reject_list in conn req - nvme: set dma alignment to dword - lsm,selinux: pass flowi_common instead of flowi to the LSM hooks - sctp: read sk->sk_bound_dev_if once in sctp_rcv() - net: hinic: add missing destroy_workqueue in hinic_pf_to_mgmt_init - ASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_* - media: ov7670: remove ov7670_power_off from ov7670_remove - media: staging: media: rkvdec: Make use of the helper function devm_platform_ioremap_resource() - media: rkvdec: h264: Fix dpb_valid implementation - media: rkvdec: h264: Fix bit depth wrap in pps packet - ext4: reject the 'commit' option on ext2 filesystems - drm/msm/a6xx: Fix refcount leak in a6xx_gpu_init - drm: msm: fix possible memory leak in mdp5_crtc_cursor_set() - [x86] sev: Annotate stack change in the #VC handler - drm/msm/dpu: handle pm_runtime_get_sync() errors in bind path - [x86] drm/i915: Fix CFI violation with show_dynamic_id() - thermal/drivers/bcm2711: Don't clamp temperature at zero - thermal/drivers/broadcom: Fix potential NULL dereference in sr_thermal_probe - thermal/drivers/core: Use a char pointer for the cooling device name - thermal/core: Fix memory leak in __thermal_cooling_device_register() - thermal/drivers/imx_sc_thermal: Fix refcount leak in imx_sc_thermal_probe - ASoC: wm2000: fix missing clk_disable_unprepare() on error in wm2000_anc_transition() - NFC: hci: fix sleep in atomic context bugs in nfc_hci_hcp_message_tx - ASoC: max98090: Move check for invalid values before casting in max98090_put_enab_tlv() - net: stmmac: selftests: Use kcalloc() instead of kzalloc() - net: stmmac: fix out-of-bounds access in a selftest - hv_netvsc: Fix potential dereference of NULL pointer - rxrpc: Fix listen() setting the bar too high for the prealloc rings - rxrpc: Don't try to resend the request if we're receiving the reply - rxrpc: Fix overlapping ACK accounting - rxrpc: Don't let ack.previousPacket regress - rxrpc: Fix decision on when to generate an IDLE ACK - net: huawei: hinic: Use devm_kcalloc() instead of devm_kzalloc() - hinic: Avoid some over memory allocation - net/smc: postpone sk_refcnt increment in connect() - arm64: dts: rockchip: Move drive-impedance-ohm to emmc phy on rk3399 - memory: samsung: exynos5422-dmc: Avoid some over memory allocation - ARM: dts: suniv: F1C100: fix watchdog compatible - soc: qcom: smp2p: Fix missing of_node_put() in smp2p_parse_ipc - soc: qcom: smsm: Fix missing of_node_put() in smsm_parse_ipc - PCI: cadence: Fix find_first_zero_bit() limit - PCI: rockchip: Fix find_first_zero_bit() limit - PCI: dwc: Fix setting error return on MSI DMA mapping failure - ARM: dts: ci4x10: Adapt to changes in imx6qdl.dtsi regarding fec clocks - soc: qcom: llcc: Add MODULE_DEVICE_TABLE() - [x86] KVM: nVMX: Leave most VM-Exit info fields unmodified on failed VM-Entry - [x86] KVM: nVMX: Clear IDT vectoring on nested VM-Exit for double/triple fault - platform/chrome: cros_ec: fix error handling in cros_ec_register() - ARM: dts: imx6dl-colibri: Fix I2C pinmuxing - platform/chrome: Re-introduce cros_ec_cmd_xfer and use it for ioctls - can: xilinx_can: mark bit timing constants as const - ARM: dts: stm32: Fix PHY post-reset delay on Avenger96 - ARM: dts: bcm2835-rpi-zero-w: Fix GPIO line name for Wifi/BT - ARM: dts: bcm2837-rpi-cm3-io3: Fix GPIO line names for SMPS I2C - ARM: dts: bcm2837-rpi-3-b-plus: Fix GPIO line name of power LED - ARM: dts: bcm2835-rpi-b: Fix GPIO line names - misc: ocxl: fix possible double free in ocxl_file_register_afu - crypto: marvell/cesa - ECB does not IV - gpiolib: of: Introduce hook for missing gpio-ranges - pinctrl: bcm2835: implement hook for missing gpio-ranges - arm: mediatek: select arch timer for mt7629 - powerpc/fadump: fix PT_LOAD segment for boot memory area - mfd: ipaq-micro: Fix error check return value of platform_get_irq() - scsi: fcoe: Fix Wstringop-overflow warnings in fcoe_wwn_from_mac() - firmware: arm_scmi: Fix list protocols enumeration in the base protocol - nvdimm: Fix firmware activation deadlock scenarios - nvdimm: Allow overwrite in the presence of disabled dimms - pinctrl: mvebu: Fix irq_of_parse_and_map() return value - drivers/base/node.c: fix compaction sysfs file leak - dax: fix cache flush on PMD-mapped pages - drivers/base/memory: fix an unlikely reference counting issue in __add_memory_block() - powerpc/8xx: export 'cpm_setbrg' for modules - pinctrl: renesas: core: Fix possible null-ptr-deref in sh_pfc_map_resources() - powerpc/idle: Fix return value of __setup() handler - powerpc/4xx/cpm: Fix return value of __setup() handler - ASoC: atmel-pdmic: Remove endianness flag on pdmic component - ASoC: atmel-classd: Remove endianness flag on class d component - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - ipc/mqueue: use get_tree_nodev() in mqueue_get_tree() - PCI: imx6: Fix PERST# start-up sequence - tty: fix deadlock caused by calling printk() under tty_port->lock - crypto: sun8i-ss - rework handling of IV - crypto: sun8i-ss - handle zero sized sg - crypto: cryptd - Protect per-CPU resource by disabling BH. - Input: sparcspkr - fix refcount leak in bbc_beep_probe - PCI/AER: Clear MULTI_ERR_COR/UNCOR_RCV bits - hwrng: omap3-rom - fix using wrong clk_disable() in omap_rom_rng_runtime_resume() - [powerpc*] 64: Only WARN if __pa()/__va() called with bad addresses - [powerpc*] perf: Fix the threshold compare group constraint for power9 - macintosh: via-pmu and via-cuda need RTC_LIB - powerpc/fsl_rio: Fix refcount leak in fsl_rio_setup - mfd: davinci_voicecodec: Fix possible null-ptr-deref davinci_vc_probe() - mailbox: forward the hrtimer if not queued and under a lock - [amd64] RDMA/hfi1: Prevent use of lock before it is initialized - Input: stmfts - do not leave device disabled in stmfts_input_open - OPP: call of_node_put() on error path in _bandwidth_supported() - f2fs: fix dereference of stale list iterator after loop body - iommu/mediatek: Add list_del in mtk_iommu_remove - i2c: at91: use dma safe buffers - cpufreq: mediatek: add missing platform_driver_unregister() on error in mtk_cpufreq_driver_init - cpufreq: mediatek: Use module_init and add module_exit - cpufreq: mediatek: Unregister platform device on exit - [mips*] Loongson: Use hwmon_device_register_with_groups() to register hwmon - i2c: at91: Initialize dma_buf in at91_twi_xfer() - dmaengine: idxd: Fix the error handling path in idxd_cdev_register() - NFS: Do not report EINTR/ERESTARTSYS as mapping errors - NFS: fsync() should report filesystem errors over EINTR/ERESTARTSYS - NFS: Do not report flush errors in nfs_write_end() - NFS: Don't report errors from nfs_pageio_complete() more than once - NFSv4/pNFS: Do not fail I/O when we fail to allocate the pNFS layout - video: fbdev: clcdfb: Fix refcount leak in clcdfb_of_vram_setup - dmaengine: stm32-mdma: remove GISR1 register - dmaengine: stm32-mdma: rework interrupt handler - dmaengine: stm32-mdma: fix chan initialization in stm32_mdma_irq_handler() - iommu/amd: Increase timeout waiting for GA log enablement - i2c: npcm: Fix timeout calculation - i2c: npcm: Correct register access width - i2c: npcm: Handle spurious interrupts - i2c: rcar: fix PM ref counts in probe error paths - perf c2c: Use stdio interface if slang is not supported - perf jevents: Fix event syntax error caused by ExtSel - f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count() - f2fs: fix to do sanity check on block address in f2fs_do_zero_range() - f2fs: fix to clear dirty inode in f2fs_evict_inode() - f2fs: fix deadloop in foreground GC - f2fs: don't need inode lock for system hidden quota - f2fs: fix to do sanity check on total_data_blocks - f2fs: fix fallocate to use file_modified to update permissions consistently - f2fs: fix to do sanity check for inline inode - wifi: mac80211: fix use-after-free in chanctx code - iwlwifi: mvm: fix assert 1F04 upon reconfig - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages - efi: Do not import certificates from UEFI Secure Boot for T2 Macs - bfq: Split shared queues on move between cgroups - bfq: Update cgroup information before merging bio - bfq: Track whether bfq_group is still online - ext4: fix use-after-free in ext4_rename_dir_prepare - ext4: fix warning in ext4_handle_inode_extension - ext4: fix bug_on in ext4_writepages - ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state - ext4: fix bug_on in __es_tree_search - ext4: verify dir block before splitting it (CVE-2022-1184) - ext4: avoid cycles in directory h-tree (CVE-2022-1184) - ACPI: property: Release subnode properties with data nodes - tracing: Fix potential double free in create_var_ref() - PCI/PM: Fix bridge_d3_blacklist[] Elo i2 overwrite of Gigabyte X299 - PCI: qcom: Fix runtime PM imbalance on probe errors - PCI: qcom: Fix unbalanced PHY init on probe errors - mm, compaction: fast_find_migrateblock() should return pfn in the target zone - [s390x] perf: obtain sie_block from the right address - dlm: fix plock invalid read - dlm: fix missing lkb refcount handling - ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock - scsi: dc395x: Fix a missing check on list iterator - scsi: ufs: qcom: Add a readl() to make sure ref_clk gets enabled - drm/amdgpu/cs: make commands with 0 chunks illegal behaviour. - drm/etnaviv: check for reaped mapping in etnaviv_iommu_unmap_gem - drm/nouveau/clk: Fix an incorrect NULL check on list iterator - drm/nouveau/kms/nv50-: atom: fix an incorrect NULL check on list iterator - drm/bridge: analogix_dp: Grab runtime PM reference for DP-AUX - [x86] drm/i915/dsi: fix VBT send packet port selection for ICL+ - md: fix an incorrect NULL check in does_sb_need_changing - md: fix an incorrect NULL check in md_reload_sb - mtd: cfi_cmdset_0002: Move and rename chip_check/chip_ready/chip_good_for_write - mtd: cfi_cmdset_0002: Use chip_ready() for write on S29GL064N - media: coda: Fix reported H264 profile - media: coda: Add more H264 levels for CODA960 - [amd64] RDMA/hfi1: Fix potential integer multiplication overflow errors - csky: patch_text: Fixup last cpu should be master - irqchip/armada-370-xp: Do not touch Performance Counter Overflow on A375, A38x, A39x - irqchip: irq-xtensa-mx: fix initial IRQ affinity - cfg80211: declare MODULE_FIRMWARE for regulatory.db - mac80211: upgrade passive scan to active scan on DFS channels after beacon rx - um: chan_user: Fix winch_tramp() return value - um: Fix out-of-bounds read in LDT setup - kexec_file: drop weak attribute from arch_kexec_apply_relocations[_add] - ftrace: Clean up hash direct_functions on register failures - iommu/msm: Fix an incorrect NULL check on list iterator - nodemask.h: fix compilation error with GCC12 - hugetlb: fix huge_pmd_unshare address update - xtensa/simdisk: fix proc_read_simdisk() - rtl818x: Prevent using not initialized queues - ASoC: rt5514: Fix event generation for "DSP Voice Wake Up" control - carl9170: tx: fix an incorrect use of list iterator - stm: ltdc: fix two incorrect NULL checks on list iterator - bcache: improve multithreaded bch_btree_check() - bcache: improve multithreaded bch_sectors_dirty_init() - bcache: remove incremental dirty sector counting for bch_sectors_dirty_init() - bcache: avoid journal no-space deadlock by reserving 1 journal bucket - serial: pch: don't overwrite xmit->buf[0] by x_char - tilcdc: tilcdc_external: fix an incorrect NULL check on list iterator - gma500: fix an incorrect NULL check on list iterator - arm64: dts: qcom: ipq8074: fix the sleep clock frequency - phy: qcom-qmp: fix struct clk leak on probe errors - ARM: dts: s5pv210: Remove spi-cs-high on panel in Aries - ARM: pxa: maybe fix gpio lookup tables - SMB3: EBADF/EIO errors in rename/open caused by race condition in smb2_compound_op - docs/conf.py: Cope with removal of language=None in Sphinx 5.0.0 - dt-bindings: gpio: altera: correct interrupt-cells - vdpasim: allow to enable a vq repeatedly - blk-iolatency: Fix inflight count imbalances and IO hangs on offline - coresight: core: Fix coresight device probe failure issue - phy: qcom-qmp: fix reset-controller leak on probe errors - net: ipa: fix page free in ipa_endpoint_trans_release() - net: ipa: fix page free in ipa_endpoint_replenish_one() - xfs: set inode size after creating symlink - xfs: sync lazy sb accounting on quiesce of read-only mounts - xfs: fix chown leaking delalloc quota blocks when fssetxattr fails - xfs: fix incorrect root dquot corruption error when switching group/project quota types - xfs: restore shutdown check in mapped write fault path - xfs: force log and push AIL to clear pinned inodes when aborting mount - xfs: consider shutdown in bmapbt cursor delete assert - xfs: assert in xfs_btree_del_cursor should take into account error - kseltest/cgroup: Make test_stress.sh work if run interactively - thermal/core: fix a UAF bug in __thermal_cooling_device_register() - thermal/core: Fix memory leak in the error path - bfq: Avoid merging queues with different parents - bfq: Drop pointless unlock-lock pair - bfq: Remove pointless bfq_init_rq() calls - bfq: Get rid of __bio_blkcg() usage - bfq: Make sure bfqg for which we are queueing requests is online - block: fix bio_clone_blkg_association() to associate with proper blkcg_gq - Revert "random: use static branch for crng_ready()" - RDMA/rxe: Generate a completion for unsupported/invalid opcode - [mips*] IP27: Remove incorrect `cpu_has_fpu' override - [mips*] IP30: Remove incorrect `cpu_has_fpu' override - ext4: only allow test_dummy_encryption when supported - md: bcache: check the return value of kzalloc() in detached_dev_do_request() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.122 - pcmcia: db1xxx_ss: restrict to MIPS_DB1XXX boards - staging: greybus: codecs: fix type confusion of list iterator variable - iio: adc: ad7124: Remove shift from scan_type - tty: goldfish: Use tty_port_destroy() to destroy port - tty: serial: owl: Fix missing clk_disable_unprepare() in owl_uart_probe - tty: n_tty: Restore EOF push handling behavior - tty: serial: fsl_lpuart: fix potential bug when using both of_alias_get_id and ida_simple_get - usb: usbip: fix a refcount leak in stub_probe() - usb: usbip: add missing device lock on tweak configuration cmd - USB: storage: karma: fix rio_karma_init return - usb: musb: Fix missing of_node_put() in omap2430_probe - staging: fieldbus: Fix the error handling path in anybuss_host_common_probe() - pwm: lp3943: Fix duty calculation in case period was clamped - rpmsg: qcom_smd: Fix irq_of_parse_and_map() return value - usb: dwc3: pci: Fix pm_runtime_get_sync() error checking - misc: fastrpc: fix an incorrect NULL check on list iterator - firmware: stratix10-svc: fix a missing check on list iterator - usb: typec: mux: Check dev_set_name() return value - iio: adc: stmpe-adc: Fix wait_for_completion_timeout return value check - iio: proximity: vl53l0x: Fix return value check of wait_for_completion_timeout - iio: adc: sc27xx: fix read big scale voltage not right - iio: adc: sc27xx: Fine tune the scale calibration values - rpmsg: qcom_smd: Fix returning 0 if irq_of_parse_and_map() fails - phy: qcom-qmp: fix pipe-clock imbalance on power-on failure - serial: sifive: Report actual baud base rather than fixed 115200 - coresight: cpu-debug: Replace mutex with mutex_trylock on panic notifier - extcon: ptn5150: Add queue work sync before driver release - soc: rockchip: Fix refcount leak in rockchip_grf_init - rtc: mt6397: check return value after calling platform_get_resource() - serial: meson: acquire port->lock in startup() - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - serial: digicolor-usart: Don't allow CS5-6 - serial: rda-uart: Don't allow CS5-6 - serial: txx9: Don't allow CS5-6 - serial: sh-sci: Don't allow CS5-6 - serial: sifive: Sanitize CSIZE and c_iflag - serial: st-asc: Sanitize CSIZE and correct PARENB for CS7 - serial: stm32-usart: Correct CSIZE, bits, and parity - firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle - bus: ti-sysc: Fix warnings for unbind for serial - driver: base: fix UAF when driver_attach failed - driver core: fix deadlock in __device_attach - watchdog: rti-wdt: Fix pm_runtime_get_sync() error checking - watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe - ASoC: fsl_sai: Fix FSL_SAI_xDR/xFR definition - clocksource/drivers/oxnas-rps: Fix irq_of_parse_and_map() return value - [s390x] crypto: fix scatterwalk_unmap() callers in AES-GCM - net: sched: fixed barrier to prevent skbuff sticking in qdisc backlog - net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() - net: ethernet: ti: am65-cpsw-nuss: Fix some refcount leaks - net: dsa: mv88e6xxx: Fix refcount leak in mv88e6xxx_mdios_register - modpost: fix removing numeric suffixes - jffs2: fix memory leak in jffs2_do_fill_super - ubi: fastmap: Fix high cpu usage of ubi_bgt by making sure wl_pool not empty - ubi: ubi_create_volume: Fix use-after-free when volume creation failed - bpf: Fix probe read error in ___bpf_prog_run() - net/smc: fixes for converting from "struct smc_cdc_tx_pend **" to "struct smc_wr_tx_pend_priv *" - nfp: only report pause frame configuration for physical device - sfc: fix considering that all channels have TX queues - sfc: fix wrong tx channel offset with efx_separate_tx_channels - net/mlx5: Don't use already freed action pointer - net/mlx5: correct ECE offset in query qp output - net/mlx5e: Update netdev features after changing XDP state - net: sched: add barrier to fix packet stuck problem for lockless qdisc - tcp: tcp_rtx_synack() can be called from process context - gpio: pca953x: use the correct register address to do regcache sync - afs: Fix infinite loop found by xfstest generic/676 - scsi: sd: Fix potential NULL pointer dereference - tipc: check attribute length for bearer name - driver core: Fix wait_for_device_probe() & deferred_probe_timeout interaction - perf c2c: Fix sorting in percent_rmt_hitm_cmp() - dmaengine: idxd: set DMA_INTERRUPT cap bit - mips: cpc: Fix refcount leak in mips_cpc_default_phys_base - bootconfig: Make the bootconfig.o as a normal object file - tracing: Fix sleeping function called from invalid context on RT kernel - tracing: Avoid adding tracer option before update_tracer_options - iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() - iommu/arm-smmu-v3: check return value after calling platform_get_resource() - f2fs: remove WARN_ON in f2fs_is_valid_blkaddr - i2c: cadence: Increase timeout per message if necessary - dmaengine: zynqmp_dma: In struct zynqmp_dma_chan fix desc_size data type - NFSv4: Don't hold the layoutget locks across multiple RPC calls - video: fbdev: hyperv_fb: Allow resolutions with size > 64 MB for Gen1 - video: fbdev: pxa3xx-gcu: release the resources correctly in pxa3xx_gcu_probe/remove() - xprtrdma: treat all calls not a bcall when bc_serv is NULL - netfilter: nat: really support inet nat without l3 address - netfilter: nf_tables: delete flowtable hooks via transaction list - powerpc/kasan: Force thread size increase with KASAN - netfilter: nf_tables: always initialize flowtable hook list in transaction - ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe - netfilter: nf_tables: release new hooks on unsupported flowtable flags - netfilter: nf_tables: memleak flow rule from commit path - netfilter: nf_tables: bail out early if hardware offload is not supported - xen: unexport __init-annotated xen_xlate_map_ballooned_pages() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - bpf, arm64: Clear prog->jited_len along prog->jited - net: dsa: lantiq_gswip: Fix refcount leak in gswip_gphy_fw_list - net/mlx4_en: Fix wrong return value on ioctl EEPROM query failure - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - net: mdio: unexport __init-annotated mdio_bus_init() - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - net: ipv6: unexport __init-annotated seg6_hmac_init() - net/mlx5: Rearm the FW tracer after each tracer event - net/mlx5: fs, fail conflicting actions - ip_gre: test csum_start instead of transport header - net: altera: Fix refcount leak in altera_tse_mdio_create - drm: imx: fix compiler warning with gcc-12 - iio: dummy: iio_simple_dummy: check the return value of kstrdup() - staging: rtl8712: fix a potential memory leak in r871xu_drv_init() - iio: st_sensors: Add a local lock for protecting odr - tty: synclink_gt: Fix null-pointer-dereference in slgt_clean() - tty: Fix a possible resource leak in icom_probe - drivers: staging: rtl8192u: Fix deadlock in ieee80211_beacons_stop() - drivers: staging: rtl8192e: Fix deadlock in rtllib_beacons_stop() - USB: host: isp116x: check return value after calling platform_get_resource() - drivers: tty: serial: Fix deadlock in sa1100_set_termios() - drivers: usb: host: Fix deadlock in oxu_bus_suspend() - USB: hcd-pci: Fully suspend across freeze/thaw cycle - sysrq: do not omit current cpu when showing backtrace of all active CPUs - usb: dwc2: gadget: don't reset gadget's driver->bus - misc: rtsx: set NULL intfdata when probe fails - extcon: Modify extcon device to be created after driver data is set - clocksource/drivers/sp804: Avoid error on multiple instances - staging: rtl8712: fix uninit-value in usb_read8() and friends - staging: rtl8712: fix uninit-value in r871xu_drv_init() - serial: msm_serial: disable interrupts in __msm_console_write() - kernfs: Separate kernfs_pr_cont_buf and rename_lock. - watchdog: wdat_wdt: Stop watchdog when rebooting the system - md: protect md_unregister_thread from reentrancy - scsi: myrb: Fix up null pointer access on myrb_cleanup() - Revert "net: af_key: add check for pfkey_broadcast in function pfkey_process" - ceph: allow ceph.dir.rctime xattr to be updatable - drm/radeon: fix a possible null pointer dereference - modpost: fix undefined behavior of is_arm_mapping_symbol() - [x86] cpu: Elide KCSAN for cpu_has() and friends - jump_label,noinstr: Avoid instrumentation for JUMP_LABEL=n builds - nbd: call genl_unregister_family() first in nbd_cleanup() - nbd: fix race between nbd_alloc_config() and module removal - nbd: fix io hung while disconnecting device - [s390x] gmap: voluntarily schedule during key setting - cifs: version operations for smb20 unneeded when legacy support disabled - nodemask: Fix return values to be unsigned - vringh: Fix loop descriptors check in the indirect cases - scripts/gdb: change kernel config dumping method - ALSA: hda/conexant - Fix loopback issue with CX20632 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo Yoga DuetITL 2021 - cifs: return errors during session setup during reconnects - cifs: fix reconnect on smb3 mount types - ata: libata-transport: fix {dma|pio|xfer}_mode sysfs files - mmc: block: Fix CQE recovery reset success - net: phy: dp83867: retrigger SGMII AN when link change - nfc: st21nfca: fix incorrect validating logic in EVT_TRANSACTION - nfc: st21nfca: fix memory leaks in EVT_TRANSACTION handling - nfc: st21nfca: fix incorrect sizing calculations in EVT_TRANSACTION - ixgbe: fix bcast packets Rx on VF after promisc removal - ixgbe: fix unexpected VLAN Rx in promisc mode on VF - Input: bcm5974 - set missing URB_NO_TRANSFER_DMA_MAP urb flag - drm/bridge: analogix_dp: Support PSR-exit to disable transition - drm/atomic: Force bridge self-refresh-exit on CRTC switch - [powerpc*] 32: Fix overread/overwrite of thread_struct via ptrace (CVE-2022-32981) - [powerpc*] mm: Switch obsolete dssall to .long - interconnect: qcom: sc7180: Drop IP0 interconnects - interconnect: Restore sync state by ignoring ipa-virt in provider count - md/raid0: Ignore RAID0 layout if the second zone has only one device - PCI: qcom: Fix pipe clock imbalance - zonefs: fix handling of explicit_open option on mount - dmaengine: idxd: add missing callback function to support DMA_INTERRUPT - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.123 - [x86] Mitigate Processor MMIO Stale Data vulnerabilities (CVE-2022-21123, CVE-2022-21125, CVE-2022-21166): + Documentation: Add documentation for Processor MMIO Stale Data + x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug + x86/speculation: Add a common function for MD_CLEAR mitigation update + x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data + x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations + x86/speculation/mmio: Enable CPU Fill buffer clearing on idle + x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data + x86/speculation/srbds: Update SRBDS mitigation selection + x86/speculation/mmio: Reuse SRBDS mitigation for SBDS + KVM: x86/speculation: Disable Fill buffer clear within guests + x86/speculation/mmio: Print SMT warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.124 - 9p: missing chunk of "fs/9p: Don't update file type when updating file attributes" - nfsd: Replace use of rwsem with errseq_t - bpf: Fix incorrect memory charge cost calculation in stack_map_alloc() - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - quota: Prevent memory allocation recursion while holding dq_lock - [armhf] ASoC: es8328: Fix event generation for deemphasis control - Input: soc_button_array - also add Lenovo Yoga Tablet2 1051F to dmi_use_low_level_irq - scsi: vmw_pvscsi: Expand vcpuHint to 16 bits - scsi: lpfc: Fix port stuck in bypassed state after LIP in PT2PT topology - scsi: lpfc: Allow reduced polling rate for nvme_admin_async_event cmd completion - scsi: ipr: Fix missing/incorrect resource cleanup in error case - scsi: pmcraid: Fix missing resource cleanup in error case - ALSA: hda/realtek - Add HW8326 support - virtio-mmio: fix missing put_device() when vm_cmdline_parent registration failed - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - random: credit cpu and bootloader seeds by default - pNFS: Don't keep retrying if the server replied NFS4ERR_LAYOUTUNAVAILABLE - pNFS: Avoid a live lock condition in pnfs_update_layout() - [x86] clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() - i40e: Fix adding ADQ filter to TC0 - i40e: Fix calculating the number of queue pairs - i40e: Fix call trace in setup_tx_descriptors - [x86] Drivers: hv: vmbus: Release cpu lock in error case - [x86] drm/i915/reset: Fix error_state_read ptr + offset use - nvme: use sysfs_emit instead of sprintf - nvme: add device name to warning in uuid_show() - net: ax25: Fix deadlock caused by skb_recv_datagram in ax25_recvmsg - [arm64] ftrace: fix branch range checks - [arm64] ftrace: consistently handle PLTs. - block: Fix handling of offline queues in blk_mq_alloc_request_hctx() - faddr2line: Fix overlapping text section failures, the sequel - [arm64,armhf] irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions - [arm64,armhf] irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - i2c: designware: Use standard optional ref clock implementation - [x86] mei: me: add raptor lake point S DID - [x86] comedi: vmk80xx: fix expression for tx buffer size - USB: serial: option: add support for Cinterion MV31 with new baseline - USB: serial: io_ti: add Agilent E5805A support - [arm*] usb: dwc2: Fix memory leak in dwc2_hcd_init - serial: 8250: Store to lsr_save_flags after lsr read - dm mirror log: round up region bitmap size to BITS_PER_LONG - drm/amd/display: Cap OLED brightness per max frame-average luminance - ext4: fix bug_on ext4_mb_use_inode_pa - ext4: make variable "count" signed - ext4: add reserved GDT blocks check - [arm64] KVM: arm64: Don't read a HW interrupt pending state in user context - [x86] KVM: x86: Account a variety of miscellaneous allocations - [x86] KVM: SVM: Use kzalloc for sev ioctl interfaces to prevent kernel data leak - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machine - virtio-pci: Remove wrong address verification in vp_del_vqs() - dma-direct: don't over-decrypt memory - net/sched: act_police: more accurate MTU policing - net: openvswitch: fix misuse of the cached connection on tuple changes - Revert "PCI: Make pci_enable_ptm() private" - igc: Enable PCIe PTM - [arm64] clk: imx8mp: fix usb_root_clk parent https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.125 - [s390x] mm: use non-quiescing sske for KVM switch to keyed guest - zonefs: fix zonefs_iomap_begin() for reads - usb: gadget: u_ether: fix regression in setting fixed MAC address - tcp: add some entropy in __inet_hash_connect() - tcp: use different parts of the port_offset for index and offset (CVE-2022-1012) - tcp: add small random increments to the source port (CVE-2022-1012) - tcp: dynamically allocate the perturb table used by source ports (CVE-2022-1012) - tcp: increase source port perturb table to 2^16 (CVE-2022-1012, CVE-2022-32296) - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012) - serial: core: Initialize rs485 RTS polarity already on probe - [arm64] mm: Don't invalidate FROM_DEVICE buffers at start of DMA transfer - io_uring: add missing item types for various requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.126 - io_uring: use separate list entry for iopoll requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.127 - vt: drop old FONT ioctls - random: schedule mix_interrupt_randomness() less often - random: quiet urandom warning ratelimit suppression message - ALSA: hda/via: Fix missing beep setup - ALSA: hda/conexant: Fix missing beep setup - ALSA: hda/realtek: Add mute LED quirk for HP Omen laptop - ALSA: hda/realtek - ALC897 headset MIC no sound - ALSA: hda/realtek: Apply fixup for Lenovo Yoga Duet 7 properly - ALSA: hda/realtek: Add quirk for Clevo PD70PNT - ALSA: hda/realtek: Add quirk for Clevo NS50PU - net: openvswitch: fix parsing of nw_proto for IPv6 fragments - btrfs: add error messages to all unrecognized mount options - mmc: sdhci-pci-o2micro: Fix card detect by dealing with debouncing - [armhf] mtd: rawnand: gpmi: Fix setting busy timeout setting - ata: libata: add qc->flags in ata_qc_complete_template tracepoint - dm era: commit metadata in postsuspend after worker stops - dm mirror log: clear log bits up to BITS_PER_LONG boundary - USB: serial: option: add Telit LE910Cx 0x1250 composition - USB: serial: option: add Quectel EM05-G modem - USB: serial: option: add Quectel RM500K module support - [arm64] drm/msm: Fix double pm_runtime_disable() call - netfilter: nftables: add nft_parse_register_load() and use it - netfilter: nftables: add nft_parse_register_store() and use it - netfilter: use get_random_u32 instead of prandom - scsi: scsi_debug: Fix zone transition to full condition - [arm64] drm/msm: use for_each_sgtable_sg to iterate over scatterlist - bpf: Fix request_sock leak in sk lookup helpers - [arm64,armhf] drm/sun4i: Fix crash during suspend after component bind failure - [amd64] bpf, x86: Fix tail call count offset calculation on bpf2bpf call - phy: aquantia: Fix AN when higher speeds than 1G are not advertised - tipc: simplify the finalize work queue - tipc: fix use-after-free Read in tipc_named_reinit - igb: fix a use-after-free issue in igb_clean_tx_ring - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - [arm64] drm/msm/mdp4: Fix refcount leak in mdp4_modeset_init_intf - [arm64] drm/msm/dp: check core_initialized before disable interrupts at dp_display_unbind() - [arm64] drm/msm/dp: fixes wrong connection state caused by failure of link train - [arm64] drm/msm/dp: deinitialize mainlink if link training failed - [arm64] drm/msm/dp: promote irq_hpd handle to handle link training correctly - [arm64] drm/msm/dp: fix connect/disconnect handled at irq_hpd - erspan: do not assume transport header is always set - x86/xen: Remove undefined behavior in setup_features() - afs: Fix dynamic root getattr - ice: ethtool: advertise 1000M speeds properly - regmap-irq: Fix a bug in regmap_irq_enable() for type_in_mask chips - igb: Make DMA faster when CPU is active on the PCIe link - virtio_net: fix xdp_rxq_info bug after suspend/resume - nvme: centralize setting the timeout in nvme_alloc_request - nvme: split nvme_alloc_request() - nvme: mark nvme_setup_passsthru() inline - nvme: don't check nvme_req flags for new req - nvme-pci: allocate nvme_command within driver pdu - nvme-pci: add NO APST quirk for Kioxia device - nvme: move the Samsung X5 quirk entry to the core quirks - [s390x] cpumf: Handle events cycles and instructions identical - iio: mma8452: fix probe fail when device tree compatible is used. - iio: adc: vf610: fix conversion mode sysfs node name - xhci: turn off port power in shutdown - xhci-pci: Allow host runtime PM as default for Intel Raptor Lake xHCI - xhci-pci: Allow host runtime PM as default for Intel Meteor Lake xHCI - [arm64,armhf] usb: chipidea: udc: check request status before setting device address - f2fs: attach inline_data after setting compression - iio:accel:bma180: rearrange iio trigger get and register - iio:accel:mxc4005: rearrange iio trigger get and register - iio: accel: mma8452: ignore the return value of reset operation - iio: gyro: mpu3050: Fix the error handling in mpu3050_power_up() - iio: imu: inv_icm42600: Fix broken icm42600 (chip id 0 value) - iio: adc: axp288: Override TS pin bias current for some models - iio: adc: adi-axi-adc: Fix refcount leak in adi_axi_adc_attach_client - [powerpc*] Enable execve syscall exit tracepoint - [powerpc*] rtas: Allow ibm,platform-dump RTAS call with null buffer address - [powerpc*] powernv: wire up rng during setup_arch - [armhf] exynos: Fix refcount leak in exynos_map_pmu - modpost: fix section mismatch check for exported init/exit sections - random: update comment from copy_to_user() -> copy_to_iter() - [powerpc*] pseries: wire up rng during setup_arch() . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.120-rt70 * [rt] Drop "crypto: cryptd - add a lock instead preempt_disable/local_bh_disable" patch * Bump ABI to 16 . [ Ben Hutchings ] * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off * [armel,armhf] crypto: Enable optimised implementations (see #922204): - Enable CRYPTO_SHA256_ARM, CRYPTO_SHA512_ARM as modules - [armhf] Enable SHA1_ARM_NEON, CRYPTO_SHA1_ARM_CE, CRYPTO_SHA2_ARM_CE, CRYPTO_AES_ARM_BS, CRYPTO_AES_ARM_CE, CRYPTO_GHASH_ARM_CE, CRYPTO_CRCT10DIF_ARM_CE, CRYPTO_CRC32_ARM_CE as modules linux (5.10.120-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.114 - USB: quirks: add a Realtek card reader - USB: quirks: add STRING quirk for VCOM device - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions - xhci: Enable runtime PM on second Alderlake controller - xhci: stop polling roothubs after shutdown - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms - iio: dac: ad5592r: Fix the missing return value. - iio: dac: ad5446: Fix read_raw not returning set value - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on() - iio: imu: inv_icm42600: Fix I2C init possible nack - usb: misc: fix improper handling of refcount in uss720_probe() - [arm64,x86] usb: typec: ucsi: Fix reuse of completion structure - [arm64,x86] usb: typec: ucsi: Fix role swapping - usb: gadget: uvc: Fix crash when encoding data for usb request - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind() - [arm64,armhf] usb: dwc3: Try usb-role-switch first in dwc3_drd_init - [arm64,armhf] usb: dwc3: core: Fix tx/rx threshold settings - [arm64,armhf] usb: dwc3: core: Only handle soft-reset in DCTL - [arm64,armhf] usb: dwc3: gadget: Return proper request status - [arm*] usb: phy: generic: Get the vbus supply - [arm64,armhf] serial: imx: fix overrun interrupts in DMA mode - serial: 8250: Also set sticky MCR bits in console restoration - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - [arm64,armhf] arch_topology: Do not set llc_sibling if llc_id is invalid - hex2bin: make the function hex_to_bin constant-time - hex2bin: fix access beyond string end - iocost: don't reset the inuse weight of under-weighted debtors - video: fbdev: udlfb: properly check endpoint type - iio:imu:bmi160: disable regulator in error path - USB: Fix xhci event ring dequeue pointer ERDP update issue - [armhf] phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe - [armhf] phy: samsung: exynos5250-sata: fix missing device put in probe error paths - [armhf] OMAP2+: Fix refcount leak in omap_gic_of_init - [armhf] bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific - [armhf] phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks - [armhf] dts: am3517-evm: Fix misc pinmuxing - [armhf] dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35 - ipvs: correctly print the memory size of ip_vs_conn_tab - [armhf] pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_link_register_of - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook - [arm64,armhf] pinctrl: rockchip: fix RK3308 pinmux bits - tcp: md5: incorrect tcp_header_len for incoming connections - [armhf] pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested - tcp: ensure to use the most recently sent skb when filling the rate sample - wireguard: device: check for metadata_dst with skb_valid_dst() - sctp: check asoc strreset_chunk in sctp_generate_reconf_event - [arm64] dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock - [arm64] net: hns3: modify the return code of hclge_get_ring_chain_from_mbx - [arm64] net: hns3: add validity check for message data length - [arm64] net: hns3: add return value for mailbox handling in PF - net/smc: sync err code when tcp connection was refused - ip_gre: Make o_seqno start from 0 in native mode - ip6_gre: Make o_seqno start from 0 in native mode - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - tcp: make sure treq->af_specific is initialized - [arm64,armhf] bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create() - [arm64,armhf] clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource() - [arm64] net: bcmgenet: hide status block before TX timestamping - net: phy: marvell10g: fix return value on error - bnx2x: fix napi API usage sequence - [arm64,armhf] net: fec: add missing of_node_put() in fec_enet_init_stop_mode() - ixgbe: ensure IPsec VF<->PF compatibility - tcp: fix F-RTO may not work correctly when receiving DSACK - [x86] ASoC: Intel: soc-acpi: correct device endpoints for max98373 - ext4: fix bug_on in start_this_handle during umount filesystem - [amd64] x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - cifs: destage any unwritten data to the server before calling copychunk_write - [x86] drivers: net: hippi: Fix deadlock in rr_close() - zonefs: Fix management of open zones - zonefs: Clear inode information flags on inode creation - [x86] drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses - [armhf] net: ethernet: stmmac: fix write to sgmii_adapter_base - [x86] thermal: int340x: Fix attr.show callback prototype - [x86] cpu: Load microcode during restore_processor_state() - tty: n_gsm: fix restart handling via CLD command - tty: n_gsm: fix decoupled mux resource - tty: n_gsm: fix mux cleanup after unregister tty device - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2 - tty: n_gsm: fix malformed counter for out of frame data - netfilter: nft_socket: only do sk lookups when indev is available - tty: n_gsm: fix insufficient txframe size - tty: n_gsm: fix wrong DLCI release order - tty: n_gsm: fix missing explicit ldisc flush - tty: n_gsm: fix wrong command retry handling - tty: n_gsm: fix wrong command frame length field encoding - tty: n_gsm: fix reset fifo race condition - tty: n_gsm: fix incorrect UA handling - tty: n_gsm: fix software flow control handling https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.115 - [mips*] Fix CP0 counter erratum detection for R4k CPUs - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC - mmc: core: Set HS clock speed before sending HS CMD13 - gpiolib: of: fix bounds check for 'gpio-reserved-ranges' - [x86] KVM: x86/svm: Account for family 17h event renumberings in amd_pmc_perf_hw_id - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - firewire: fix potential uaf in outbound_phy_packet_callback() - firewire: remove check of list iterator against head past the loop body - firewire: core: extend card->lock in fw_core_handle_bus_reset - net: stmmac: disable Split Header (SPH) for Intel platforms - genirq: Synchronize interrupt thread startup - ASoC: da7219: Fix change notifications for tone generator frequency - [s390x] dasd: fix data corruption for ESE devices - [s390x] dasd: prevent double format of tracks for ESE devices - [s390x] dasd: Fix read for ESE with blksize < 4k - [s390x] dasd: Fix read inconsistency for ESE DASD devices - can: isotp: remove re-binding of bound socket - nfc: replace improper check device_is_registered() in netlink related functions (CVE-2022-1974) - NFC: netlink: fix sleep in atomic bug when firmware download timeout (CVE-2022-1975) - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled (irq_mask not set) - hwmon: (adt7470) Fix warning on module removal - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback - net/mlx5e: Fix trust state reset in reload - net/mlx5e: Don't match double-vlan packets if cvlan is not set - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft release - net/mlx5e: Fix the calling of update_buffer_lossy() API - net/mlx5: Avoid double clear or set of sync reset requested - NFSv4: Don't invalidate inode attributes on delegation return - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in sun8i_dwmac_register_mdio_mux() - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt() - hinic: fix bug of wq out of bound access - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag - bnxt_en: Fix unnecessary dropping of RX packets - [arm64,armhf] smsc911x: allow using IRQ0 - btrfs: always log symlinks in full mode - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has architectural PMU - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is advertised - rcu: Fix callbacks processing time limit retaining cond_resched() - rcu: Apply callbacks processing time limit only on softirq - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern (CVE-2022-0494) - dm: interlock pending dm_io and dm_wait_for_bios_completion - [arm64] PCI: aardvark: Clear all MSIs at setup - [arm64] PCI: aardvark: Fix reading MSI interrupt number - mmc: rtsx: add 74 Clocks in power on flow https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.116 - regulator: consumer: Add missing stubs to regulator/consumer.h - block: drbd: drbd_nl: Make conversion to 'enum drbd_ret_code' explicit - nfp: bpf: silence bitwise vs. logical OR warning - Bluetooth: Fix the creation of hdev->name - mm: fix missing cache flush for all tail pages of compound page - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.117 - batman-adv: Don't skb_split skbuffs with frag_list - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing - hwmon: (tmp401) Add OF device ID table - mac80211: Reset MBSSID parameters upon connection - net: Fix features skip in for_each_netdev_feature() - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in hardware when deleted - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0 - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving VCAP filters - ipv4: drop dst in multicast routing path - drm/nouveau: Fix a potential theorical leak in nouveau_get_backlight_name() - netlink: do not reset transport header in netlink_recvmsg() - sfc: Use swap() instead of open coding it - net: sfc: fix memory leak due to ptp channel - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection - nfs: fix broken handling of the softreval mount option - dim: initialize all struct fields - [s390x] ctcm: fix variable dereferenced before check - [s390x] ctcm: fix potential memory leak - [s390x] lcs: fix variable dereferenced before check - net/sched: act_pedit: really ensure the skb is writable - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down() - net/smc: non blocking recvmsg() return -EAGAIN when no data and signal_pending - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe() - gfs2: Fix filesystem block deallocation for short writes - hwmon: (f71882fg) Fix negative temperature - ASoC: max98090: Reject invalid values in custom control put() - ASoC: max98090: Generate notifications on changes for custom control - ASoC: ops: Validate input values in snd_soc_put_volsw_range() - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT - tcp: resalt the secret every 10 seconds (CVE-2022-1012) - firmware_loader: use kernel credentials when reading firmware - tty: n_gsm: fix mux activation issues in gsm_config() - usb: cdc-wdm: fix reading stuck on device close - USB: serial: pl2303: add device id for HP LM930 Display - USB: serial: qcserial: add support for Sierra Wireless EM7590 - USB: serial: option: add Fibocom L610 modem - USB: serial: option: add Fibocom MA510 modem - ceph: fix setting of xattrs on async created inodes - drm/nouveau/tegra: Stop using iommu_present() - i40e: i40e_main: fix a missing check on list iterator - [amd64,arm64] net: atlantic: always deep reset on pm op, fixing up my null deref regression - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp() - [x86] drm/vmwgfx: Initialize drm_mode_fb_cmd2 - SUNRPC: Clean up scheduling of autoclose - SUNRPC: Prevent immediate close+reconnect - SUNRPC: Don't call connect() more than once on a TCP socket - SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() (CVE-2022-28893) - net: phy: Fix race condition on link status change - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of linear map - ping: fix address binding wrt vrf - usb: gadget: uvc: rename function to be more consistent - usb: gadget: uvc: allow for application to cleanly shutdown - io_uring: always use original task when preparing req identity (CVE-2022-1786) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.118 - io_uring: always grab file table for deferred statx - floppy: use a statically allocated error counter - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" - igc: Remove _I_PHY_ID checking - igc: Remove phy->type checking - igc: Update I226_K device ID - rtc: fix use-after-free on device removal - [arm64] rtc: pcf2127: fix bug when reading alarm registers - Input: add bounds checking to input_set_capability() - nvme-pci: add quirks for Samsung X5 SSDs - gfs2: Disable page faults during lockless buffered reads - [arm64,armhf] rtc: sun6i: Fix time overflow handling - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions - ALSA: hda/realtek: Enable headset mic on Lenovo P360 - [s390x] pci: improve zpci_dev reference counting - nvme-multipath: fix hang when disk goes live over reconnect - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - fs: fix an infinite loop in iomap_fiemap - drbd: remove usage of list iterator variable after loop - [arm64] platform/chrome: cros_ec_debugfs: detach log reader wq from devm - [armel,armhf] 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() - nilfs2: fix lockdep warnings in page operations for btree nodes - nilfs2: fix lockdep warnings during disk space reclamation - Revert "swiotlb: fix info leak with DMA_FROM_DEVICE" - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" (CVE-2022-0854) - ALSA: usb-audio: Restore Rane SL-1 quirk - [i386] ALSA: wavefront: Proper check of get_user() error - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729) - selinux: fix bad cleanup on error in hashtab_duplicate() - Fix double fget() in vhost_net_set_backend() - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is stable - [arm64] paravirt: Use RCU read locks to guard stolen_time - [arm64] mte: Ensure the cleared tags are visible before setting the PTE - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - libceph: fix potential use-after-free on linger ping and resends - drm/dp/mst: fix a possible memory leak in fetch_monitor_name() - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl - [arm64] net: macb: Increment rx bd head after allocating skb and buffer - net: evaluate net.ipvX.conf.all.disable_policy and disable_xfrm - xfrm: Add possibility to set the default to block if we have no policy - net: xfrm: fix shift-out-of-bounce - xfrm: make user policy API complete - xfrm: notify default policy on update - xfrm: fix dflt policy check when there is no policy configured - xfrm: rework default policy structure - xfrm: fix "disable_policy" flag use when arriving from different devices - net/sched: act_pedit: sanitize shift argument before usage - [x86] net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - [x86] net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - ice: fix possible under reporting of ethtool Tx and Rx statistics - net/qla3xxx: Fix a test in ql_reset_work() - net/mlx5e: Properly block LRO when XDP is enabled - net: af_key: add check for pfkey_broadcast in function pfkey_process - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15 - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - igb: skip phy status check where unavailable - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity - scsi: qla2xxx: Fix missed DMA unmap for aborted commands - mac80211: fix rx reordering with non explicit / psmp ack policy - nl80211: validate S1G channel width - nl80211: fix locking in nl80211_set_tx_bitrate_mask() - ethernet: tulip: fix missing pci_disable_device() on error in tulip_init_one() - [amd64,arm64] net: atlantic: fix "frag[0] not initialized" - [amd64,arm64] net: atlantic: reduce scope of is_rsc_complete - [amd64,arm64] net: atlantic: add check for MAX_SKB_FRAGS - [amd64,arm64] net: atlantic: verify hw_head_ lies within TX buffer ring - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group - afs: Fix afs_getattr() to refetch file status if callback break occurred - include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.119 - lockdown: also lock down previous kgdb use (CVE-2022-21499) - staging: rtl8723bs: prevent ->Ssid overflow in rtw_wx_set_scan() - [x86] KVM: x86: Properly handle APF vs disabled LAPIC situation - [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID (CVE-2022-1789) - tcp: change source port randomizarion at connect() time - secure_seq: use the 64 bits of the siphash for port offset calculation (CVE-2022-1012) - ACPI: sysfs: Make sparse happy about address space in use - ACPI: sysfs: Fix BERT error region memory mapping - random: avoid arch_get_random_seed_long() when collecting IRQ randomness - random: remove dead code left over from blocking pool - MAINTAINERS: co-maintain random.c - MAINTAINERS: add git tree for random.c - crypto: lib/blake2s - Move selftest prototype into header file - crypto: blake2s - define shash_alg structs using macros - [amd64] crypto: x86/blake2s - define shash_alg structs using macros - crypto: blake2s - remove unneeded includes - crypto: blake2s - move update and final logic to internal/blake2s.h - crypto: blake2s - share the "shash" API boilerplate code - crypto: blake2s - optimize blake2s initialization - crypto: blake2s - add comment for blake2s_state fields - crypto: blake2s - adjust include guard naming - crypto: blake2s - include instead of - lib/crypto: blake2s: include as built-in - lib/crypto: blake2s: move hmac construction into wireguard - lib/crypto: sha1: re-roll loops to reduce code size - lib/crypto: blake2s: avoid indirect calls to compression function for Clang CFI - random: document add_hwgenerator_randomness() with other input functions - random: remove unused irq_flags argument from add_interrupt_randomness() - random: use BLAKE2s instead of SHA1 in extraction - random: do not sign extend bytes for rotation when mixing - random: do not re-init if crng_reseed completes before primary init - random: mix bootloader randomness into pool - random: harmonize "crng init done" messages - random: use IS_ENABLED(CONFIG_NUMA) instead of ifdefs - random: early initialization of ChaCha constants - random: avoid superfluous call to RDRAND in CRNG extraction - random: don't reset crng_init_cnt on urandom_read() - random: fix typo in comments - random: cleanup poolinfo abstraction - random: cleanup integer types - random: remove incomplete last_data logic - random: remove unused extract_entropy() reserved argument - random: rather than entropy_store abstraction, use global - random: remove unused OUTPUT_POOL constants - random: de-duplicate INPUT_POOL constants - random: prepend remaining pool constants with POOL_ - random: cleanup fractional entropy shift constants - random: access input_pool_data directly rather than through pointer - random: selectively clang-format where it makes sense - random: simplify arithmetic function flow in account() - random: continually use hwgenerator randomness - random: access primary_pool directly rather than through pointer - random: only call crng_finalize_init() for primary_crng - random: use computational hash for entropy extraction - random: simplify entropy debiting - random: use linear min-entropy accumulation crediting - random: always wake up entropy writers after extraction - random: make credit_entropy_bits() always safe - random: remove use_input_pool parameter from crng_reseed() - random: remove batched entropy locking - random: fix locking in crng_fast_load() - random: use RDSEED instead of RDRAND in entropy extraction - random: get rid of secondary crngs - random: inline leaves of rand_initialize() - random: ensure early RDSEED goes through mixer on init - random: do not xor RDRAND when writing into /dev/random - random: absorb fast pool into input pool after fast load - random: use simpler fast key erasure flow on per-cpu keys - random: use hash function for crng_slow_load() - random: make more consistent use of integer types - random: remove outdated INT_MAX >> 6 check in urandom_read() - random: zero buffer after reading entropy from userspace - random: fix locking for crng_init in crng_reseed() - random: tie batched entropy generation to base_crng generation - random: remove ifdef'd out interrupt bench - random: remove unused tracepoints - random: add proper SPDX header - random: deobfuscate irq u32/u64 contributions - random: introduce drain_entropy() helper to declutter crng_reseed() - random: remove useless header comment - random: remove whitespace and reorder includes - random: group initialization wait functions - random: group crng functions - random: group entropy extraction functions - random: group entropy collection functions - random: group userspace read/write functions - random: group sysctl functions - random: rewrite header introductory comment - random: defer fast pool mixing to worker - random: do not take pool spinlock at boot - random: unify early init crng load accounting - random: check for crng_init == 0 in add_device_randomness() - random: pull add_hwgenerator_randomness() declaration into random.h - random: clear fast pool, crng, and batches in cpuhp bring up - random: round-robin registers as ulong, not u32 - random: only wake up writers after zap if threshold was passed - random: cleanup UUID handling - random: unify cycles_t and jiffies usage and types - random: do crng pre-init loading in worker rather than irq - random: give sysctl_random_min_urandom_seed a more sensible value - random: don't let 644 read-only sysctls be written to - random: replace custom notifier chain with standard one - random: use SipHash as interrupt entropy accumulator - random: make consistent usage of crng_ready() - random: reseed more often immediately after booting - random: check for signal and try earlier when generating entropy - random: skip fast_init if hwrng provides large chunk of entropy - random: treat bootloader trust toggle the same way as cpu trust toggle - random: re-add removed comment about get_random_{u32,u64} reseeding - random: mix build-time latent entropy into pool at init - random: do not split fast init input in add_hwgenerator_randomness() - random: do not allow user to keep crng key around on stack - random: check for signal_pending() outside of need_resched() check - random: check for signals every PAGE_SIZE chunk of /dev/[u]random - random: allow partial reads if later user copies fail - random: make random_get_entropy() return an unsigned long - random: document crng_fast_key_erasure() destination possibility - random: fix sysctl documentation nits - init: call time_init() before rand_initialize() - [s390x] define get_cycles macro for arch-override - [powerpc*] define get_cycles macro for arch-override - timekeeping: Add raw clock fallback for random_get_entropy() - [mips*] use fallback for random_get_entropy() instead of just c0 random - [arm*] use fallback for random_get_entropy() instead of zero - [x86] tsc: Use fallback for random_get_entropy() instead of zero - random: insist on random_get_entropy() existing in order to simplify - random: do not use batches when !crng_ready() - random: use first 128 bits of input as fast init - random: do not pretend to handle premature next security model - random: order timer entropy functions below interrupt functions - random: do not use input pool from hard IRQs - random: help compiler out with fast_mix() by using simpler arguments - siphash: use one source of truth for siphash permutations - random: use symbolic constants for crng_init states - random: avoid initializing twice in credit race - random: move initialization out of reseeding hot path - random: remove ratelimiting for in-kernel unseeded randomness - random: use proper jiffies comparison macro - random: handle latent entropy and command line from random_init() - random: credit architectural init the exact amount - random: use static branch for crng_ready() - random: remove extern from functions in header - random: use proper return types on get_random_{int,long}_wait() - random: make consistent use of buf and len - random: move initialization functions out of hot pages - random: move randomize_page() into mm where it belongs - random: unify batched entropy implementations - random: convert to using fops->read_iter() - random: convert to using fops->write_iter() - random: wire up fops->splice_{read,write}_iter() - random: check for signals after page of pool writes - ALSA: ctxfi: Add SB046x PCI ID https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.120 - percpu_ref_init(): clean ->percpu_count_ref on failure - net: af_key: check encryption module availability consistency - nfc: pn533: Fix buggy cleanup order - [armhf] net: ftgmac100: Disable hardware checksum on AST2600 - [x86] i2c: ismt: Provide a DMA buffer for Interrupt Cause Logging - [arm64] drivers: i2c: thunderx: Allow driver to work with ACPI defined TWSI controllers - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: make poll_usage boolean and annotate its access - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - cfg80211: set custom regdomain after wiphy registration - assoc_array: Fix BUG_ON during garbage collect - io_uring: don't re-import iovecs from callbacks - io_uring: fix using under-expanded iters - xfs: detect overflows in bmbt records - xfs: show the proper user quota options - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks - xfs: fix an ABBA deadlock in xfs_rename - xfs: Fix CIL throttle hang when CIL space used going backwards - exfat: check if cluster num is valid - crypto: drbg - prepare for more fine-grained tracking of seeding state - crypto: drbg - track whether DRBG was seeded with !rng_is_initialized() - crypto: drbg - move dynamic ->reseed_threshold adjustments to __drbg_seed() - crypto: drbg - make reseeding from get_random_bytes() synchronous - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - netfilter: conntrack: re-fetch conntrack after insertion - [x86] kvm: Alloc dummy async #PF token outside of raw spinlock - [x86] kvm: use correct GFP flags for preemption disabled - [x86] KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) - [arm64] crypto: caam - fix i.MX6SX entropy delay value - crypto: ecrdsa - Fix incorrect use of vli_cmp - zsmalloc: fix races between asynchronous zspage free and page migration - Bluetooth: hci_qca: Use del_timer_sync() before freeing - dm integrity: fix error code in dm_integrity_ctr() - dm crypt: make printing of the key constant-time - dm stats: add cond_resched when looping over entries - dm verity: set DM_TARGET_IMMUTABLE feature flag - raid5: introduce MD_BROKEN - HID: multitouch: Add support for Google Whiskers Touchpad - HID: multitouch: add quirks to enable Lenovo X12 trackpoint - tpm: Fix buffer access in tpm2_get_tpm_pt() - docs: submitting-patches: Fix crossref to 'The canonical patch format' - NFS: Memory allocation failures are not server fatal errors - NFSD: Fix possible sleep during nfsd4_release_lockowner() - bpf: Fix potential array overflow in bpf_trampoline_get_progs() - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.115-rt67 * Bump ABI to 15 * [rt] Drop "random: Make it work on rt" . [ Mateusz Łukasik ] * [armhf] drivers/thermal: Enable SUN8I_THERMAL as module (Closes: #1007799) linux (5.10.120-1~bpo10+1) buster-backports; urgency=high . * Rebuild for buster-backports: - Change ABI number to 0.bpo.15 . linux (5.10.120-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.114 - USB: quirks: add a Realtek card reader - USB: quirks: add STRING quirk for VCOM device - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions - xhci: Enable runtime PM on second Alderlake controller - xhci: stop polling roothubs after shutdown - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms - iio: dac: ad5592r: Fix the missing return value. - iio: dac: ad5446: Fix read_raw not returning set value - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on() - iio: imu: inv_icm42600: Fix I2C init possible nack - usb: misc: fix improper handling of refcount in uss720_probe() - [arm64,x86] usb: typec: ucsi: Fix reuse of completion structure - [arm64,x86] usb: typec: ucsi: Fix role swapping - usb: gadget: uvc: Fix crash when encoding data for usb request - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind() - [arm64,armhf] usb: dwc3: Try usb-role-switch first in dwc3_drd_init - [arm64,armhf] usb: dwc3: core: Fix tx/rx threshold settings - [arm64,armhf] usb: dwc3: core: Only handle soft-reset in DCTL - [arm64,armhf] usb: dwc3: gadget: Return proper request status - [arm*] usb: phy: generic: Get the vbus supply - [arm64,armhf] serial: imx: fix overrun interrupts in DMA mode - serial: 8250: Also set sticky MCR bits in console restoration - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - [arm64,armhf] arch_topology: Do not set llc_sibling if llc_id is invalid - hex2bin: make the function hex_to_bin constant-time - hex2bin: fix access beyond string end - iocost: don't reset the inuse weight of under-weighted debtors - video: fbdev: udlfb: properly check endpoint type - iio:imu:bmi160: disable regulator in error path - USB: Fix xhci event ring dequeue pointer ERDP update issue - [armhf] phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe - [armhf] phy: samsung: exynos5250-sata: fix missing device put in probe error paths - [armhf] OMAP2+: Fix refcount leak in omap_gic_of_init - [armhf] bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific - [armhf] phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks - [armhf] dts: am3517-evm: Fix misc pinmuxing - [armhf] dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35 - ipvs: correctly print the memory size of ip_vs_conn_tab - [armhf] pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_link_register_of - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook - [arm64,armhf] pinctrl: rockchip: fix RK3308 pinmux bits - tcp: md5: incorrect tcp_header_len for incoming connections - [armhf] pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested - tcp: ensure to use the most recently sent skb when filling the rate sample - wireguard: device: check for metadata_dst with skb_valid_dst() - sctp: check asoc strreset_chunk in sctp_generate_reconf_event - [arm64] dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock - [arm64] net: hns3: modify the return code of hclge_get_ring_chain_from_mbx - [arm64] net: hns3: add validity check for message data length - [arm64] net: hns3: add return value for mailbox handling in PF - net/smc: sync err code when tcp connection was refused - ip_gre: Make o_seqno start from 0 in native mode - ip6_gre: Make o_seqno start from 0 in native mode - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - tcp: make sure treq->af_specific is initialized - [arm64,armhf] bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create() - [arm64,armhf] clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource() - [arm64] net: bcmgenet: hide status block before TX timestamping - net: phy: marvell10g: fix return value on error - bnx2x: fix napi API usage sequence - [arm64,armhf] net: fec: add missing of_node_put() in fec_enet_init_stop_mode() - ixgbe: ensure IPsec VF<->PF compatibility - tcp: fix F-RTO may not work correctly when receiving DSACK - [x86] ASoC: Intel: soc-acpi: correct device endpoints for max98373 - ext4: fix bug_on in start_this_handle during umount filesystem - [amd64] x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - cifs: destage any unwritten data to the server before calling copychunk_write - [x86] drivers: net: hippi: Fix deadlock in rr_close() - zonefs: Fix management of open zones - zonefs: Clear inode information flags on inode creation - [x86] drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses - [armhf] net: ethernet: stmmac: fix write to sgmii_adapter_base - [x86] thermal: int340x: Fix attr.show callback prototype - [x86] cpu: Load microcode during restore_processor_state() - tty: n_gsm: fix restart handling via CLD command - tty: n_gsm: fix decoupled mux resource - tty: n_gsm: fix mux cleanup after unregister tty device - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2 - tty: n_gsm: fix malformed counter for out of frame data - netfilter: nft_socket: only do sk lookups when indev is available - tty: n_gsm: fix insufficient txframe size - tty: n_gsm: fix wrong DLCI release order - tty: n_gsm: fix missing explicit ldisc flush - tty: n_gsm: fix wrong command retry handling - tty: n_gsm: fix wrong command frame length field encoding - tty: n_gsm: fix reset fifo race condition - tty: n_gsm: fix incorrect UA handling - tty: n_gsm: fix software flow control handling https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.115 - [mips*] Fix CP0 counter erratum detection for R4k CPUs - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC - mmc: core: Set HS clock speed before sending HS CMD13 - gpiolib: of: fix bounds check for 'gpio-reserved-ranges' - [x86] KVM: x86/svm: Account for family 17h event renumberings in amd_pmc_perf_hw_id - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - firewire: fix potential uaf in outbound_phy_packet_callback() - firewire: remove check of list iterator against head past the loop body - firewire: core: extend card->lock in fw_core_handle_bus_reset - net: stmmac: disable Split Header (SPH) for Intel platforms - genirq: Synchronize interrupt thread startup - ASoC: da7219: Fix change notifications for tone generator frequency - [s390x] dasd: fix data corruption for ESE devices - [s390x] dasd: prevent double format of tracks for ESE devices - [s390x] dasd: Fix read for ESE with blksize < 4k - [s390x] dasd: Fix read inconsistency for ESE DASD devices - can: isotp: remove re-binding of bound socket - nfc: replace improper check device_is_registered() in netlink related functions (CVE-2022-1974) - NFC: netlink: fix sleep in atomic bug when firmware download timeout (CVE-2022-1975) - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled (irq_mask not set) - hwmon: (adt7470) Fix warning on module removal - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback - net/mlx5e: Fix trust state reset in reload - net/mlx5e: Don't match double-vlan packets if cvlan is not set - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft release - net/mlx5e: Fix the calling of update_buffer_lossy() API - net/mlx5: Avoid double clear or set of sync reset requested - NFSv4: Don't invalidate inode attributes on delegation return - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in sun8i_dwmac_register_mdio_mux() - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt() - hinic: fix bug of wq out of bound access - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag - bnxt_en: Fix unnecessary dropping of RX packets - [arm64,armhf] smsc911x: allow using IRQ0 - btrfs: always log symlinks in full mode - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has architectural PMU - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is advertised - rcu: Fix callbacks processing time limit retaining cond_resched() - rcu: Apply callbacks processing time limit only on softirq - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern (CVE-2022-0494) - dm: interlock pending dm_io and dm_wait_for_bios_completion - [arm64] PCI: aardvark: Clear all MSIs at setup - [arm64] PCI: aardvark: Fix reading MSI interrupt number - mmc: rtsx: add 74 Clocks in power on flow https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.116 - regulator: consumer: Add missing stubs to regulator/consumer.h - block: drbd: drbd_nl: Make conversion to 'enum drbd_ret_code' explicit - nfp: bpf: silence bitwise vs. logical OR warning - Bluetooth: Fix the creation of hdev->name - mm: fix missing cache flush for all tail pages of compound page - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.117 - batman-adv: Don't skb_split skbuffs with frag_list - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing - hwmon: (tmp401) Add OF device ID table - mac80211: Reset MBSSID parameters upon connection - net: Fix features skip in for_each_netdev_feature() - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in hardware when deleted - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0 - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving VCAP filters - ipv4: drop dst in multicast routing path - drm/nouveau: Fix a potential theorical leak in nouveau_get_backlight_name() - netlink: do not reset transport header in netlink_recvmsg() - sfc: Use swap() instead of open coding it - net: sfc: fix memory leak due to ptp channel - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection - nfs: fix broken handling of the softreval mount option - dim: initialize all struct fields - [s390x] ctcm: fix variable dereferenced before check - [s390x] ctcm: fix potential memory leak - [s390x] lcs: fix variable dereferenced before check - net/sched: act_pedit: really ensure the skb is writable - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down() - net/smc: non blocking recvmsg() return -EAGAIN when no data and signal_pending - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe() - gfs2: Fix filesystem block deallocation for short writes - hwmon: (f71882fg) Fix negative temperature - ASoC: max98090: Reject invalid values in custom control put() - ASoC: max98090: Generate notifications on changes for custom control - ASoC: ops: Validate input values in snd_soc_put_volsw_range() - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT - tcp: resalt the secret every 10 seconds (CVE-2022-1012) - firmware_loader: use kernel credentials when reading firmware - tty: n_gsm: fix mux activation issues in gsm_config() - usb: cdc-wdm: fix reading stuck on device close - USB: serial: pl2303: add device id for HP LM930 Display - USB: serial: qcserial: add support for Sierra Wireless EM7590 - USB: serial: option: add Fibocom L610 modem - USB: serial: option: add Fibocom MA510 modem - ceph: fix setting of xattrs on async created inodes - drm/nouveau/tegra: Stop using iommu_present() - i40e: i40e_main: fix a missing check on list iterator - [amd64,arm64] net: atlantic: always deep reset on pm op, fixing up my null deref regression - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp() - [x86] drm/vmwgfx: Initialize drm_mode_fb_cmd2 - SUNRPC: Clean up scheduling of autoclose - SUNRPC: Prevent immediate close+reconnect - SUNRPC: Don't call connect() more than once on a TCP socket - SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() (CVE-2022-28893) - net: phy: Fix race condition on link status change - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of linear map - ping: fix address binding wrt vrf - usb: gadget: uvc: rename function to be more consistent - usb: gadget: uvc: allow for application to cleanly shutdown - io_uring: always use original task when preparing req identity (CVE-2022-1786) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.118 - io_uring: always grab file table for deferred statx - floppy: use a statically allocated error counter - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" - igc: Remove _I_PHY_ID checking - igc: Remove phy->type checking - igc: Update I226_K device ID - rtc: fix use-after-free on device removal - [arm64] rtc: pcf2127: fix bug when reading alarm registers - Input: add bounds checking to input_set_capability() - nvme-pci: add quirks for Samsung X5 SSDs - gfs2: Disable page faults during lockless buffered reads - [arm64,armhf] rtc: sun6i: Fix time overflow handling - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions - ALSA: hda/realtek: Enable headset mic on Lenovo P360 - [s390x] pci: improve zpci_dev reference counting - nvme-multipath: fix hang when disk goes live over reconnect - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - fs: fix an infinite loop in iomap_fiemap - drbd: remove usage of list iterator variable after loop - [arm64] platform/chrome: cros_ec_debugfs: detach log reader wq from devm - [armel,armhf] 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() - nilfs2: fix lockdep warnings in page operations for btree nodes - nilfs2: fix lockdep warnings during disk space reclamation - Revert "swiotlb: fix info leak with DMA_FROM_DEVICE" - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" (CVE-2022-0854) - ALSA: usb-audio: Restore Rane SL-1 quirk - [i386] ALSA: wavefront: Proper check of get_user() error - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729) - selinux: fix bad cleanup on error in hashtab_duplicate() - Fix double fget() in vhost_net_set_backend() - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is stable - [arm64] paravirt: Use RCU read locks to guard stolen_time - [arm64] mte: Ensure the cleared tags are visible before setting the PTE - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - libceph: fix potential use-after-free on linger ping and resends - drm/dp/mst: fix a possible memory leak in fetch_monitor_name() - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl - [arm64] net: macb: Increment rx bd head after allocating skb and buffer - net: evaluate net.ipvX.conf.all.disable_policy and disable_xfrm - xfrm: Add possibility to set the default to block if we have no policy - net: xfrm: fix shift-out-of-bounce - xfrm: make user policy API complete - xfrm: notify default policy on update - xfrm: fix dflt policy check when there is no policy configured - xfrm: rework default policy structure - xfrm: fix "disable_policy" flag use when arriving from different devices - net/sched: act_pedit: sanitize shift argument before usage - [x86] net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - [x86] net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - ice: fix possible under reporting of ethtool Tx and Rx statistics - net/qla3xxx: Fix a test in ql_reset_work() - net/mlx5e: Properly block LRO when XDP is enabled - net: af_key: add check for pfkey_broadcast in function pfkey_process - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15 - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - igb: skip phy status check where unavailable - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity - scsi: qla2xxx: Fix missed DMA unmap for aborted commands - mac80211: fix rx reordering with non explicit / psmp ack policy - nl80211: validate S1G channel width - nl80211: fix locking in nl80211_set_tx_bitrate_mask() - ethernet: tulip: fix missing pci_disable_device() on error in tulip_init_one() - [amd64,arm64] net: atlantic: fix "frag[0] not initialized" - [amd64,arm64] net: atlantic: reduce scope of is_rsc_complete - [amd64,arm64] net: atlantic: add check for MAX_SKB_FRAGS - [amd64,arm64] net: atlantic: verify hw_head_ lies within TX buffer ring - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group - afs: Fix afs_getattr() to refetch file status if callback break occurred - include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.119 - lockdown: also lock down previous kgdb use (CVE-2022-21499) - staging: rtl8723bs: prevent ->Ssid overflow in rtw_wx_set_scan() - [x86] KVM: x86: Properly handle APF vs disabled LAPIC situation - [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID (CVE-2022-1789) - tcp: change source port randomizarion at connect() time - secure_seq: use the 64 bits of the siphash for port offset calculation (CVE-2022-1012) - ACPI: sysfs: Make sparse happy about address space in use - ACPI: sysfs: Fix BERT error region memory mapping - random: avoid arch_get_random_seed_long() when collecting IRQ randomness - random: remove dead code left over from blocking pool - MAINTAINERS: co-maintain random.c - MAINTAINERS: add git tree for random.c - crypto: lib/blake2s - Move selftest prototype into header file - crypto: blake2s - define shash_alg structs using macros - [amd64] crypto: x86/blake2s - define shash_alg structs using macros - crypto: blake2s - remove unneeded includes - crypto: blake2s - move update and final logic to internal/blake2s.h - crypto: blake2s - share the "shash" API boilerplate code - crypto: blake2s - optimize blake2s initialization - crypto: blake2s - add comment for blake2s_state fields - crypto: blake2s - adjust include guard naming - crypto: blake2s - include instead of - lib/crypto: blake2s: include as built-in - lib/crypto: blake2s: move hmac construction into wireguard - lib/crypto: sha1: re-roll loops to reduce code size - lib/crypto: blake2s: avoid indirect calls to compression function for Clang CFI - random: document add_hwgenerator_randomness() with other input functions - random: remove unused irq_flags argument from add_interrupt_randomness() - random: use BLAKE2s instead of SHA1 in extraction - random: do not sign extend bytes for rotation when mixing - random: do not re-init if crng_reseed completes before primary init - random: mix bootloader randomness into pool - random: harmonize "crng init done" messages - random: use IS_ENABLED(CONFIG_NUMA) instead of ifdefs - random: early initialization of ChaCha constants - random: avoid superfluous call to RDRAND in CRNG extraction - random: don't reset crng_init_cnt on urandom_read() - random: fix typo in comments - random: cleanup poolinfo abstraction - random: cleanup integer types - random: remove incomplete last_data logic - random: remove unused extract_entropy() reserved argument - random: rather than entropy_store abstraction, use global - random: remove unused OUTPUT_POOL constants - random: de-duplicate INPUT_POOL constants - random: prepend remaining pool constants with POOL_ - random: cleanup fractional entropy shift constants - random: access input_pool_data directly rather than through pointer - random: selectively clang-format where it makes sense - random: simplify arithmetic function flow in account() - random: continually use hwgenerator randomness - random: access primary_pool directly rather than through pointer - random: only call crng_finalize_init() for primary_crng - random: use computational hash for entropy extraction - random: simplify entropy debiting - random: use linear min-entropy accumulation crediting - random: always wake up entropy writers after extraction - random: make credit_entropy_bits() always safe - random: remove use_input_pool parameter from crng_reseed() - random: remove batched entropy locking - random: fix locking in crng_fast_load() - random: use RDSEED instead of RDRAND in entropy extraction - random: get rid of secondary crngs - random: inline leaves of rand_initialize() - random: ensure early RDSEED goes through mixer on init - random: do not xor RDRAND when writing into /dev/random - random: absorb fast pool into input pool after fast load - random: use simpler fast key erasure flow on per-cpu keys - random: use hash function for crng_slow_load() - random: make more consistent use of integer types - random: remove outdated INT_MAX >> 6 check in urandom_read() - random: zero buffer after reading entropy from userspace - random: fix locking for crng_init in crng_reseed() - random: tie batched entropy generation to base_crng generation - random: remove ifdef'd out interrupt bench - random: remove unused tracepoints - random: add proper SPDX header - random: deobfuscate irq u32/u64 contributions - random: introduce drain_entropy() helper to declutter crng_reseed() - random: remove useless header comment - random: remove whitespace and reorder includes - random: group initialization wait functions - random: group crng functions - random: group entropy extraction functions - random: group entropy collection functions - random: group userspace read/write functions - random: group sysctl functions - random: rewrite header introductory comment - random: defer fast pool mixing to worker - random: do not take pool spinlock at boot - random: unify early init crng load accounting - random: check for crng_init == 0 in add_device_randomness() - random: pull add_hwgenerator_randomness() declaration into random.h - random: clear fast pool, crng, and batches in cpuhp bring up - random: round-robin registers as ulong, not u32 - random: only wake up writers after zap if threshold was passed - random: cleanup UUID handling - random: unify cycles_t and jiffies usage and types - random: do crng pre-init loading in worker rather than irq - random: give sysctl_random_min_urandom_seed a more sensible value - random: don't let 644 read-only sysctls be written to - random: replace custom notifier chain with standard one - random: use SipHash as interrupt entropy accumulator - random: make consistent usage of crng_ready() - random: reseed more often immediately after booting - random: check for signal and try earlier when generating entropy - random: skip fast_init if hwrng provides large chunk of entropy - random: treat bootloader trust toggle the same way as cpu trust toggle - random: re-add removed comment about get_random_{u32,u64} reseeding - random: mix build-time latent entropy into pool at init - random: do not split fast init input in add_hwgenerator_randomness() - random: do not allow user to keep crng key around on stack - random: check for signal_pending() outside of need_resched() check - random: check for signals every PAGE_SIZE chunk of /dev/[u]random - random: allow partial reads if later user copies fail - random: make random_get_entropy() return an unsigned long - random: document crng_fast_key_erasure() destination possibility - random: fix sysctl documentation nits - init: call time_init() before rand_initialize() - [s390x] define get_cycles macro for arch-override - [powerpc*] define get_cycles macro for arch-override - timekeeping: Add raw clock fallback for random_get_entropy() - [mips*] use fallback for random_get_entropy() instead of just c0 random - [arm*] use fallback for random_get_entropy() instead of zero - [x86] tsc: Use fallback for random_get_entropy() instead of zero - random: insist on random_get_entropy() existing in order to simplify - random: do not use batches when !crng_ready() - random: use first 128 bits of input as fast init - random: do not pretend to handle premature next security model - random: order timer entropy functions below interrupt functions - random: do not use input pool from hard IRQs - random: help compiler out with fast_mix() by using simpler arguments - siphash: use one source of truth for siphash permutations - random: use symbolic constants for crng_init states - random: avoid initializing twice in credit race - random: move initialization out of reseeding hot path - random: remove ratelimiting for in-kernel unseeded randomness - random: use proper jiffies comparison macro - random: handle latent entropy and command line from random_init() - random: credit architectural init the exact amount - random: use static branch for crng_ready() - random: remove extern from functions in header - random: use proper return types on get_random_{int,long}_wait() - random: make consistent use of buf and len - random: move initialization functions out of hot pages - random: move randomize_page() into mm where it belongs - random: unify batched entropy implementations - random: convert to using fops->read_iter() - random: convert to using fops->write_iter() - random: wire up fops->splice_{read,write}_iter() - random: check for signals after page of pool writes - ALSA: ctxfi: Add SB046x PCI ID https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.120 - percpu_ref_init(): clean ->percpu_count_ref on failure - net: af_key: check encryption module availability consistency - nfc: pn533: Fix buggy cleanup order - [armhf] net: ftgmac100: Disable hardware checksum on AST2600 - [x86] i2c: ismt: Provide a DMA buffer for Interrupt Cause Logging - [arm64] drivers: i2c: thunderx: Allow driver to work with ACPI defined TWSI controllers - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: make poll_usage boolean and annotate its access - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - cfg80211: set custom regdomain after wiphy registration - assoc_array: Fix BUG_ON during garbage collect - io_uring: don't re-import iovecs from callbacks - io_uring: fix using under-expanded iters - xfs: detect overflows in bmbt records - xfs: show the proper user quota options - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks - xfs: fix an ABBA deadlock in xfs_rename - xfs: Fix CIL throttle hang when CIL space used going backwards - exfat: check if cluster num is valid - crypto: drbg - prepare for more fine-grained tracking of seeding state - crypto: drbg - track whether DRBG was seeded with !rng_is_initialized() - crypto: drbg - move dynamic ->reseed_threshold adjustments to __drbg_seed() - crypto: drbg - make reseeding from get_random_bytes() synchronous - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - netfilter: conntrack: re-fetch conntrack after insertion - [x86] kvm: Alloc dummy async #PF token outside of raw spinlock - [x86] kvm: use correct GFP flags for preemption disabled - [x86] KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) - [arm64] crypto: caam - fix i.MX6SX entropy delay value - crypto: ecrdsa - Fix incorrect use of vli_cmp - zsmalloc: fix races between asynchronous zspage free and page migration - Bluetooth: hci_qca: Use del_timer_sync() before freeing - dm integrity: fix error code in dm_integrity_ctr() - dm crypt: make printing of the key constant-time - dm stats: add cond_resched when looping over entries - dm verity: set DM_TARGET_IMMUTABLE feature flag - raid5: introduce MD_BROKEN - HID: multitouch: Add support for Google Whiskers Touchpad - HID: multitouch: add quirks to enable Lenovo X12 trackpoint - tpm: Fix buffer access in tpm2_get_tpm_pt() - docs: submitting-patches: Fix crossref to 'The canonical patch format' - NFS: Memory allocation failures are not server fatal errors - NFSD: Fix possible sleep during nfsd4_release_lockowner() - bpf: Fix potential array overflow in bpf_trampoline_get_progs() - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.115-rt67 * Bump ABI to 15 * [rt] Drop "random: Make it work on rt" . [ Mateusz Łukasik ] * [armhf] drivers/thermal: Enable SUN8I_THERMAL as module (Closes: #1007799) . linux (5.10.113-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.107 - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" (Closes: #1008299) - xfrm: Check if_id in xfrm_migrate - xfrm: Fix xfrm migrate issues when address family changes - mac80211: refuse aggregations sessions before authorized - [mips64el,mipsel] smp: fill in sibling and core maps earlier - [x86] atm: firestream: check the return value of ioremap() in fs_init() - iwlwifi: don't advertise TWT support - drm/vrr: Set VRR capable prop only if it is attached to connector - nl80211: Update bss channel on channel switch for P2P_CLIENT - sfc: extend the locking on mcdi->seqno https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.108 - [arm64] crypto: qcom-rng - ensure buffer for generate is completely filled - ocfs2: fix crash when initialize filecheck kobj fails - mm: swap: get rid of livelock in swapin readahead - efi: fix return value of __setup handlers - vsock: each transport cycles only on its own sockets - esp6: fix check on ipv6_skip_exthdr's return value - net: phy: marvell: Fix invalid comparison in the resume and suspend functions - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - atm: eni: Add check for dma_map_single - [x86] hv_netvsc: Add check for kvmalloc_array - [armhf] drm/imx: parallel-display: Remove bus flags check in imx_pd_bridge_atomic_check() - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of - net: phy: mscc: Add MODULE_FIRMWARE macros - bnx2x: fix built-in kernel driver load failure - [arm64] net: bcmgenet: skip invalid partial checksums - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain tc-flower offload - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver - usb: usbtmc: Fix bug in pipe direction for control transfers - scsi: mpt3sas: Page fault in reply q processing - Input: aiptek - properly check endpoint type - perf symbols: Fix symbol size calculation condition - net: usb: Correct PHY handling of smsc95xx - net: usb: Correct reset handling of smsc95xx - smsc95xx: Ignore -ENODEV errors when device is unplugged - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.109 - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION (CVE-2022-26490) - net: ipv6: fix skb_over_panic in __ip6_append_data - exfat: avoid incorrectly releasing for root inode - cgroup: Allocate cgroup_file_ctx for kernfs_open_file->priv (CVE-2021-4197) - cgroup: Use open-time cgroup namespace for process migration perm checks (CVE-2021-4197) - cgroup-v1: Correct privileges check in release_agent writes - tpm: Fix error handling in async work - llc: fix netdevice reference leaks in llc_ui_bind() (CVE-2022-28356) - ALSA: oss: Fix PCM OSS buffer allocation overflow - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - ALSA: hda/realtek: Add quirk for ASUS GA402 - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent read/write and buffer changes (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048) - ALSA: pcm: Add stream lock during PCM reset ioctl operations - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB - ALSA: cmipci: Restore aux vol on suspend/resume - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec - [arm64] drivers: net: xgene: Fix regression in CRC stripping - netfilter: nf_tables: initialize registers in nft_do_chain() (CVE-2022-1016) - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3 - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU - [x86] crypto: qat - disable registration of algorithms - Revert "ath: add support for special 0x0 regulatory domain" - rcu: Don't deboost before reporting expedited quiescent state - mac80211: fix potential double free on mesh join - tpm: use try_get_ops() in tpm-space.c - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620 - llc: only change llc->dev when bind() succeeds https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.110 - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854) - USB: serial: pl2303: add IBM device IDs - USB: serial: simple: add Nokia phone driver - netdevice: add the case if dev is NULL - HID: logitech-dj: add new lightspeed receiver id - xfrm: fix tunnel model fragmentation behavior - virtio_console: break out of buf poll on remove - ethernet: sun: Free the coherent when failing in probing - gpio: Revert regression in sysfs-gpio (gpiolib.c) - spi: Fix invalid sgs value - Revert "gpio: Revert regression in sysfs-gpio (gpiolib.c)" - spi: Fix erroneous sgs value with min_t() - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register (CVE-2022-1353) - [arm*] iommu/iova: Improve 32-bit free space estimate - tpm: fix reference counting for struct tpm_chip - virtio-blk: Use blk_validate_block_size() to validate block size - USB: usb-storage: Fix use of bitfields for hardware data in ene_ub6250.c - xhci: fix garbage USBSTS being logged in some cases - xhci: fix runtime PM imbalance in USB2 resume - xhci: make xhci_handshake timeout for xhci_reset() adjustable - xhci: fix uninitialized string returned by xhci_decode_ctrl_ctx() - [x86] mei: me: add Alder Lake N device id. - [x86] mei: avoid iterator usage outside of list_for_each_entry - iio: inkern: apply consumer scale on IIO_VAL_INT cases - iio: inkern: apply consumer scale when no channel scale is available - iio: inkern: make a best effort on offset calculation - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - KEYS: fix length validation in keyctl_pkey_params_get_2() - Documentation: add link to stable release candidate tree - Documentation: update stable tree link - firmware: stratix10-svc: add missing callback parameter on RSU - SUNRPC: avoid race between mod_timer() and del_timer_sync() - NFSD: prevent underflow in nfssvc_decode_writeargs() - NFSD: prevent integer overflow on 32 bit systems - f2fs: fix to unlock page correctly in error path of is_alive() - f2fs: quota: fix loop condition at f2fs_quota_sync() - f2fs: fix to do sanity check on .cp_pack_total_block_count - [armhf] remoteproc: Fix count check in rproc_coredump_write() - [armhf] pinctrl: samsung: drop pin banks references on error paths - mtd: rawnand: protect access to rawnand devices while in suspend - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28390) - jffs2: fix use-after-free in jffs2_clear_xattr_subsystem - jffs2: fix memory leak in jffs2_do_mount_fs - jffs2: fix memory leak in jffs2_scan_medium - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - mm: invalidate hwpoison page cache page in fault path - mempolicy: mbind_range() set_policy() after vma_merge() - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - qed: display VF trust config - qed: validate and restrict untrusted VFs vlan promisc mode - Revert "Input: clear BTN_RIGHT/MIDDLE on buttonpads" - cifs: prevent bad output lengths in smb2_ioctl_query_info() - cifs: fix NULL ptr dereference in smb2_ioctl_query_info() (CVE-2022-0168) - [i386] ALSA: cs4236: fix an incorrect NULL check on list iterator - ALSA: hda: Avoid unsol event during RPM suspending - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: hda/realtek: Fix audio regression on Mi Notebook Pro 2020 - mm: madvise: skip unmapped vma holes passed to process_madvise - mm: madvise: return correct bytes advised with process_madvise - Revert "mm: madvise: skip unmapped vma holes passed to process_madvise" - mm,hwpoison: unmap poisoned page before invalidation - dm integrity: set journal entry unused when shrinking device - drbd: fix potential silent data corruption - can: isotp: sanitize CAN ID checks in isotp_bind() - [powerpc*] kvm: Fix kvm_use_magic_page - udp: call udp_encap_enable for v6 sockets when enabling encap - [arm64] signal: nofpsimd: Do not allocate fp/simd context when not available - ACPI: properties: Consistently return -ENOENT if there are no more references - coredump: Also dump first pages of non-executable ELF libraries - ext4: fix ext4_fc_stats trace point - ext4: fix fs corruption when tring to remove a non-empty directory with IO error - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() (CVE-2022-1198) - block: limit request dispatch loop duration - block: don't merge across cgroup boundaries if blkcg is enabled - drm/edid: check basic audio support on CEA extension block - [armhf] dts: exynos: add missing HDMI supplies on SMDK5250 - [armhf] dts: exynos: add missing HDMI supplies on SMDK5420 - [x86] mgag200 fix memmapsl configuration in GCTL6 register - carl9170: fix missing bit-wise or operator for tx_params - pstore: Don't use semaphores in always-atomic-context code - [x86] thermal: int340x: Increase bitmap size - exec: Force single empty string when argv is empty - crypto: rsa-pkcs1pad - only allow with rsa - crypto: rsa-pkcs1pad - correctly get hash from source scatterlist - crypto: rsa-pkcs1pad - restore signature length check - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - bcache: fixup multiple threads crash - DEC: Limit PMAX memory probing to R3k systems - brcmfmac: firmware: Allocate space for default boardrev in nvram - brcmfmac: pcie: Release firmwares in the brcmf_pcie_setup error path - brcmfmac: pcie: Replace brcmf_pcie_copy_mem_todev with memcpy_toio - brcmfmac: pcie: Fix crashes due to early IRQs - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - [x86] drm/i915/gem: add missing boundary check in vm_access - PCI: pciehp: Clear cmd_busy bit in polling mode - [arm64] PCI: xgene: Revert "PCI: xgene: Fix IB window setup" - [arm64] regulator: qcom_smd: fix for_each_child.cocci warnings - selinux: check return value of sel_make_avc_files - [arm64] hwrng: cavium - Check health status while reading random data - [arm64] hwrng: cavium - HW_RANDOM_CAVIUM should depend on ARCH_THUNDER - crypto: authenc - Fix sleep in atomic context in decrypt_tail - [x86] thermal: int340x: Check for NULL after calling kmemdup() - [arm64,armhf] spi: tegra114: Add missing IRQ check in tegra_spi_probe - [arm64] mm: avoid fixmap race condition when create pud mapping - audit: log AUDIT_TIME_* records only from rules - spi: pxa2xx-pci: Balance reference count for PCI DMA device - [armhf] hwmon: (pmbus) Add mutex to regulator ops - hwmon: (sch56xx-common) Replace WDOG_ACTIVE with WDOG_HW_RUNNING - nvme: cleanup __nvme_check_ids - block: don't delete queue kobject before its children - PM: hibernate: fix __setup handler error handling - PM: suspend: fix return value of __setup handler - [arm64] crypto: sun8i-ce - call finalize with bh disabled - [arm64,armhf] crypto: amlogic - call finalize with bh disabled - [armhf] clocksource/drivers/timer-ti-dm: Fix regression from errata i940 fix - [armhf] clocksource/drivers/exynos_mct: Refactor resources allocation - [armhf] clocksource/drivers/exynos_mct: Handle DTS with higher number of interrupts - clocksource/drivers/timer-of: Check return value of of_iomap in timer_of_base_init() - ACPI: APEI: fix return value of __setup handlers - [x86] crypto: ccp - ccp_dmaengine_unregister release dma channels - [arm*] amba: Make the remove callback return void - [armhf] hwmon: (pmbus) Add Vin unit off handling - [x86] clocksource: acpi_pm: fix return value of __setup handler - io_uring: terminate manual loop iterator loop correctly for non-vecs - watch_queue: Fix NULL dereference in error cleanup - watch_queue: Actually free the watch - f2fs: fix to enable ATGC correctly via gc_idle sysfs interface - sched/debug: Remove mpol_get/put and task_lock/unlock from sched_show_numa - sched/core: Export pelt_thermal_tp - rseq: Optimise rseq_get_rseq_cs() and clear_rseq_cs() - rseq: Remove broken uapi field layout on 32-bit little endian - perf/core: Fix address filter parser for multiple filters - [x86] perf/x86/intel/pt: Fix address filter config for 32-bit kernel - f2fs: fix missing free nid in f2fs_handle_failed_inode - nfsd: more robust allocation failure handling in nfsd_file_cache_init - f2fs: fix to avoid potential deadlock - btrfs: fix unexpected error path when reflinking an inline extent - f2fs: compress: remove unneeded read when rewrite whole cluster - f2fs: fix compressed file start atomic write may cause data corruption - [arm64,armhf] media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - media: bttv: fix WARNING regression on tunerless devices - [arm*] ASoC: generic: simple-card-utils: remove useless assignment - [armhf] media: coda: Fix missing put_device() call in coda_get_vdoa_data - [armhf] media: aspeed: Correct value for h-total-pixels - video: fbdev: matroxfb: set maxvram of vbG200eW to the same as vbG200 to avoid black screen - video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() - video: fbdev: fbcvt.c: fix printing in fb_cvt_print_name() - [arm64] firmware: qcom: scm: Remove reassignment to desc following initializer - firmware: ti_sci: Fix compilation failure when CONFIG_TI_SCI_PROTOCOL is not defined - [armhf] dts: imx: Add missing LVDS decoder on M53Menlo - media: em28xx: initialize refcount before kref_get - media: usb: go7007: s2250-board: fix leak in probe() - [arm64,armhf] media: cedrus: H265: Fix neighbour info buffer size - [arm64,armhf] media: cedrus: h264: Fix neighbour info buffer size - [x86] ASoC: rt5663: check the return value of devm_kzalloc() in rt5663_parse_dp() - printk: fix return value of printk.devkmsg __setup handler - [x86] ASoC: soc-compress: prevent the potentially use of null pointer - [armhf] memory: emif: Add check for setup_interrupts - [armhf] memory: emif: check the pointer temp in get_device_details() - ALSA: firewire-lib: fix uninitialized flag for AV/C deferred transaction - [arm64] dts: rockchip: Fix SDIO regulator supply properties on rk3399-firefly - media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED - media: saa7134: convert list_for_each to entry variant - media: saa7134: fix incorrect use to determine if list is empty - ivtv: fix incorrect device_caps for ivtvfb - [arm64,armhf] ASoC: rockchip: i2s: Use devm_platform_get_and_ioremap_resource() - [arm64,armhf] ASoC: rockchip: i2s: Fix missing clk_disable_unprepare() in rockchip_i2s_probe - ASoC: dmaengine: do not use a NULL prepare_slave_config() callback - [armhf] ASoC: fsl_spdif: Disable TX clock when stop - [armhf] ASoC: imx-es8328: Fix error return code in imx_es8328_probe() - [arm64] drm/meson: osd_afbcd: Add an exit callback to struct meson_afbcd_ops - [arm64,armhf] drm/bridge: Add missing pm_runtime_disable() in __dw_mipi_dsi_probe - [arm64] drm: bridge: adv7511: Fix ADV7535 HPD enablement - ath10k: fix memory overwrite of the WoWLAN wakeup packet pattern - [arm64,armhf] drm/panfrost: Check for error num after setting mask - Bluetooth: hci_serdev: call init_rwsem() before p->open() - [armhf] mtd: rawnand: gpmi: fix controller timings setting - drm/edid: Don't clear formats if using deep color - drm/nouveau/acr: Fix undefined behavior in nvkm_acr_hsfw_load_bl() - drm/amd/display: Fix a NULL pointer dereference in amdgpu_dm_connector_add_common_modes() - drm/amd/pm: return -ENOTSUPP if there is no get_dpm_ultimate_freq function - ath9k_htc: fix uninit value bugs - RDMA/core: Set MR type in ib_reg_user_mr - [powerpc*] KVM: PPC: Fix vmx/vsx mixup in mmio emulation - i40e: don't reserve excessive XDP_PACKET_HEADROOM on XSK Rx to skb - i40e: respect metadata on XSK Rx to skb - [x86] ray_cs: Check ioremap return value - [powerpc*] KVM: PPC: Book3S HV: Check return value of kvmppc_radix_init - [powerpc*] perf: Don't use perf_hw_context for trace IMC PMU - [arm64,armhf] net: dsa: mv88e6xxx: Enable port policy support on 6097 - [arm64] PCI: aardvark: Fix reading PCI_EXP_RTSTA_PME bit on emulated bridge - [arm64,armhf] drm/bridge: dw-hdmi: use safe format when first in bridge chain - HID: i2c-hid: fix GET/SET_REPORT for unnumbered reports - drm/amd/pm: enable pm sysfs write for one VF mode - drm/amd/display: Add affected crtcs to atomic state for dsc mst unplug - IB/cma: Allow XRC INI QPs to set their local ACK timeout - dax: make sure inodes are flushed before destroy cache - iwlwifi: Fix -EIO error code that is never returned - iwlwifi: mvm: Fix an error code in iwl_mvm_up() - [arm64] drm/msm/dp: populate connector of struct dp_panel - [arm64] drm/msm/dpu: add DSPP blocks teardown - [arm64] drm/msm/dpu: fix dp audio condition - scsi: pm8001: Fix command initialization in pm80XX_send_read_log() - scsi: pm8001: Fix command initialization in pm8001_chip_ssp_tm_req() - scsi: pm8001: Fix payload initialization in pm80xx_set_thermal_config() - scsi: pm8001: Fix le32 values handling in pm80xx_set_sas_protocol_timer_config() - scsi: pm8001: Fix payload initialization in pm80xx_encrypt_update() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_ssp_io_req() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_sata_req() - scsi: pm8001: Fix NCQ NON DATA command task initialization - scsi: pm8001: Fix NCQ NON DATA command completion handling - scsi: pm8001: Fix abort all task initialization - RDMA/mlx5: Fix the flow of a miss in the allocation of a cache ODP MR - drm/amd/display: Remove vupdate_int_entry definition - TOMOYO: fix __setup handlers return values - [arm64,armhf] drm/tegra: Fix reference leak in tegra_dsi_ganged_probe - [x86] power: supply: bq24190_charger: Fix bq24190_vbus_is_enabled() wrong false return - [arm64] scsi: hisi_sas: Change permission of parameter prot_mask - [arm64] bpf, arm64: Call build_prologue() first in first JIT pass - [arm64] bpf, arm64: Feed byte-offset into bpf line info - [arm64,armhf] gpu: host1x: Fix a memory leak in 'host1x_remove()' - [powerpc*] mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() - [x86] KVM: x86: Fix emulation in writing cr8 - [x86] KVM: x86/emulator: Defer not-present segment check in __load_segment_descriptor() - [x86] hv_balloon: rate-limit "Unhandled message" warning - [amd64] IB/hfi1: Allow larger MTU without AIP - PCI: Reduce warnings on possible RW1C corruption - [armhf] mfd: mc13xxx: Add check for mc13xxx_irq_request - [x86] platform/x86: huawei-wmi: check the return value of device_create_file() - vxcan: enable local echo for sent CAN frames - ath10k: Fix error handling in ath10k_setup_msa_resources - [mips*] pgalloc: fix memory leak caused by pgd_free() - RDMA/mlx5: Fix memory leak in error flow for subscribe event routine - bpf, sockmap: Fix memleak in tcp_bpf_sendmsg while sk msg is full - bpf, sockmap: Fix more uncharged while msg has more_data - bpf, sockmap: Fix double uncharge the mem of sk_msg - USB: storage: ums-realtek: fix error code in rts51x_read_mem() - can: isotp: return -EADDRNOTAVAIL when reading from unbound socket - can: isotp: support MSG_TRUNC flag when reading from socket - Bluetooth: call hci_le_conn_failed with hdev lock in hci_le_conn_failed - ipv4: Fix route lookups when handling ICMP redirects and PMTU updates - af_netlink: Fix shift out of bounds in group mask calculation - [arm64,armhf] i2c: meson: Fix wrong speed use from probe - PCI: Avoid broken MSI on SB600 USB devices - [arm64] net: bcmgenet: Use stronger register read/writes to assure ordering - tcp: ensure PMTU updates are processed during fastopen - openvswitch: always update flow key after nat - tipc: fix the timer expires after interval 100ms - [x86] mxser: fix xmit_buf leak in activate when LSR == 0xff - [armhf] fsi: aspeed: convert to devm_platform_ioremap_resource - [armhf] fsi: Aspeed: Fix a potential double free - soundwire: intel: fix wrong register name in intel_shim_wake - iio: mma8452: Fix probe failing when an i2c_device_id is used - [arm64,armhf] phy: dphy: Correct lpx parameter and its derivatives(ta_{get,go,sure}) - [x86] serial: 8250_mid: Balance reference count for PCI DMA device - [x86] serial: 8250_lpss: Balance reference count for PCI DMA device - NFS: Use of mapping_set_error() results in spurious errors - serial: 8250: Fix race condition in RTS-after-send handling - NFS: Return valid errors from nfs2/3_decode_dirent() - [arm64] clk: qcom: clk-rcg2: Update logic to calculate D value for RCG - [arm64] clk: qcom: clk-rcg2: Update the frac table for pixel clock - nvdimm/region: Fix default alignment for small regions - [armhf] clk: tegra: tegra124-emc: Fix missing put_device() call in emc_ensure_emc_driver - NFS: remove unneeded check in decode_devicenotify_args() - [arm64,armhf] pinctrl/rockchip: Add missing of_node_put() in rockchip_pinctrl_probe - [s390x] tty: hvc: fix return value of __setup handler - serial: 8250: fix XOFF/XON sending when DMA is used - driver core: dd: fix return value of __setup handler - jfs: fix divide error in dbNextAG - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFSv4.1: don't retry BIND_CONN_TO_SESSION on session error - kdb: Fix the putarea helper function - clk: Initialize orphan req_rate - [amd64] xen: fix is_xen_pmu() - [arm64] net: enetc: report software timestamping via SO_TIMESTAMPING - [arm64] net: hns3: fix bug when PF set the duplicate MAC address for VFs - net: phy: broadcom: Fix brcm_fet_config_init() - NFSv4/pNFS: Fix another issue with a list iterator pointing to the head - [armhf] net: dsa: bcm_sf2_cfp: fix an incorrect NULL check on list iterator - fs: fd tables have to be multiples of BITS_PER_LONG - fs: fix fd table size alignment properly - LSM: general protection fault in legacy_parse_param - block, bfq: don't move oom_bfqq - selinux: use correct type for context length - selinux: allow FIOCLEX and FIONCLEX with policy capability - loop: use sysfs_emit() in the sysfs xxx show() - Fix incorrect type in assignment of ipv6 port for audit - fs/binfmt_elf: Fix AT_PHDR for unusual ELF files - bfq: fix use-after-free in bfq_dispatch_request - ACPICA: Avoid walking the ACPI Namespace if it is not there - Revert "Revert "block, bfq: honor already-setup queue merges"" - ACPI/APEI: Limit printable size of BERT table data - PM: core: keep irq flags in device_pm_check_callbacks() - nvme-tcp: lockdep: annotate in-kernel sockets - [arm64] spi: tegra20: Use of_device_get_match_data() - ext4: correct cluster len and clusters changed accounting in ext4_mb_mark_bb - ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit - ext4: don't BUG if someone dirty pages without asking ext4 first - f2fs: fix to do sanity check on curseg->alloc_type - NFSD: Fix nfsd_breaker_owns_lease() return values - f2fs: compress: fix to print raw data size in error path of lz4 decompression - video: fbdev: cirrusfb: check pixclock to avoid divide by zero - [armel,armhf] ftrace: avoid redundant loads or clobbering IP - video: fbdev: udlfb: replace snprintf in show functions with sysfs_emit - ASoC: soc-core: skip zero num_dai component in searching dai name - media: cx88-mpeg: clear interrupt status register before streaming video - uaccess: fix type mismatch warnings from access_ok() - media: Revert "media: em28xx: add missing em28xx_close_extension" - media: hdpvr: initialize dev->worker at hdpvr_register_videodev - mmc: host: Return an error when ->enable_sdio_irq() ops is missing - ALSA: hda/realtek: Add alc256-samsung-headphone fixup - [x86] KVM: x86/mmu: Check for present SPTE when clearing dirty bit in TDP MMU - [powerpc*] lib/sstep: Fix 'sthcx' instruction - [powerpc*] lib/sstep: Fix build errors with newer binutils - scsi: qla2xxx: Fix stuck session in gpdb - scsi: qla2xxx: Fix scheduling while atomic - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter - scsi: qla2xxx: Fix warning for missing error code - scsi: qla2xxx: Fix device reconnect in loop topology - scsi: qla2xxx: Add devids and conditionals for 28xx - scsi: qla2xxx: Check for firmware dump already collected - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() - scsi: qla2xxx: Fix disk failure to rediscover - scsi: qla2xxx: Fix incorrect reporting of task management failure - scsi: qla2xxx: Fix hang due to session stuck - scsi: qla2xxx: Fix missed DMA unmap for NVMe ls requests - scsi: qla2xxx: Fix N2N inconsistent PLOGI - scsi: qla2xxx: Reduce false trigger to login - scsi: qla2xxx: Use correct feature type field during RFF_ID processing - [arm64] platform: chrome: Split trace include file - [x86] KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - KVM: Prevent module exit until all VMs are freed - [x86] KVM: x86: fix sending PV IPI - [x86] KVM: SVM: fix panic on out-of-bounds guest IRQ - [x86] ASoC: SOF: Intel: Fix NULL ptr dereference when ENOMEM - ubifs: rename_whiteout: Fix double free for whiteout_ui->data - ubifs: Fix deadlock in concurrent rename whiteout and inode writeback - ubifs: Add missing iput if do_tmpfile() failed in rename whiteout - ubifs: setflags: Make dirtied_ino_d 8 bytes aligned - ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock() - ubifs: Fix to add refcount once page is set private - ubifs: rename_whiteout: correct old_dir size computing - wireguard: queueing: use CFI-safe ptr_ring cleanup function - wireguard: socket: free skb in send6 when ipv6 is disabled - wireguard: socket: ignore v6 endpoints when ipv6 is disabled - XArray: Fix xas_create_range() when multi-order entry present - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path (CVE-2022-28389) - can: mcba_usb: properly check endpoint type - XArray: Update the LRU list in xas_split() - rtc: check if __rtc_read_time was successful - gfs2: Make sure FITRIM minlen is rounded up to fs block size - [arm64] net: hns3: fix software vlan talbe of vlan 0 inconsistent with hardware - rxrpc: Fix call timer start racing with call destruction - [arm64] mailbox: imx: fix wakeup failure from freeze mode - watch_queue: Free the page array when watch_queue is dismantled - pinctrl: pinconf-generic: Print arguments for bias-pull-* - ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl - [arm*] iop32x: offset IRQ numbers by 1 - io_uring: fix memory leak of uid in files registration - [amd64,arm64] ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - [arm64] platform/chrome: cros_ec_typec: Check for EC device - can: isotp: restore accidentally removed MSG_PEEK feature - proc: bootconfig: Add null pointer check - [x86] ASoC: soc-compress: Change the check for codec_dai - batman-adv: Check ptr for NULL before reducing its refcnt - mm/mmap: return 1 from stack_guard_gap __setup() handler - mm/memcontrol: return 1 from cgroup.memory __setup() handler - mm/usercopy: return 1 from hardened_usercopy __setup() handler - bpf: Adjust BPF stack helper functions to accommodate skip > 0 - bpf: Fix comment for helper bpf_current_task_under_cgroup() - dt-bindings: mtd: nand-controller: Fix the reg property description - dt-bindings: mtd: nand-controller: Fix a comment in the examples - dt-bindings: spi: mxic: The interrupt property is not mandatory - [x86] ASoC: topology: Allow TLV control to be either read or write - docs: sysctl/kernel: add missing bit to panic_print - openvswitch: Fixed nd target mask field in the flow dump. - [x86] KVM: x86/mmu: do compare-and-exchange of gPTE via the user address (CVE-2022-1158) - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28388) - coredump: Snapshot the vmas in do_coredump - coredump: Remove the WARN_ON in dump_vma_snapshot - coredump/elf: Pass coredump_params into fill_note_info - coredump: Use the vma snapshot in fill_files_note - [arm64] Do not defer reserve_crashkernel() for platforms with no DMA memory zones - [arm64] PCI: xgene: Revert "PCI: xgene: Use inbound resources for setup" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.111 - ubifs: Rectify space amount budget for mkdir/tmpfile operations - gfs2: Check for active reservation in gfs2_release - gfs2: Fix gfs2_release for non-writers regression - gfs2: gfs2_setattr_size error path fix - [x86] KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs - [x86] KVM: x86/emulator: Emulate RDPID only if it is enabled in guest - drm: Add orientation quirk for GPD Win Max - ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111 - drm/amd/display: Add signal type check when verify stream backends same - drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj - ptp: replace snprintf with sysfs_emit - [armhf] ath11k: fix kernel panic during unload/load ath11k modules - ath11k: mhi: use mhi_sync_power_up() - bpf: Make dst_port field in struct bpf_sock 16-bit wide - scsi: mvsas: Replace snprintf() with sysfs_emit() - scsi: bfa: Replace snprintf() with sysfs_emit() - [arm64,armhf] power: supply: axp20x_battery: properly report current when discharging - mt76: dma: initialize skip_unmap in mt76_dma_rx_fill - cfg80211: don't add non transmitted BSS to 6GHz scanned channels - ipv6: make mc_forwarding atomic - [powerpc*] Set crashkernel offset to mid of RMA region - drm/amdgpu: Fix recursive locking warning - [arm64] PCI: aardvark: Fix support for MSI interrupts - [arm64] iommu/arm-smmu-v3: fix event handling soft lockup - usb: ehci: add pci device support for Aspeed platforms - tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH. - PCI: pciehp: Add Qualcomm quirk for Command Completed erratum - iwlwifi: mvm: Correctly set fragmented EBS - ipv4: Invalidate neighbour for broadcast address upon address addition - dm ioctl: prevent potential spectre v1 gadget - dm: requeue IO if mapping table not yet available - scsi: pm8001: Fix pm80xx_pci_mem_copy() interface - scsi: pm8001: Fix pm8001_mpi_task_abort_resp() - scsi: pm8001: Fix task leak in pm8001_send_abort_all() - scsi: pm8001: Fix tag leaks on error - scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req() - scsi: aha152x: Fix aha152x_setup() __setup handler return value - [arm64] scsi: hisi_sas: Free irq vectors in order for v3 HW - net/smc: correct settings of RMB window update limit - macvtap: advertise link netns via netlink - tuntap: add sanity checks about msg_controllen in sendmsg - Bluetooth: Fix not checking for valid hdev on bt_dev_{info,warn,err,dbg} - Bluetooth: use memset avoid memory leaks - bnxt_en: Eliminate unintended link toggle during FW reset - [mps64el,mipsel] fix fortify panic when copying asm exception handlers - scsi: libfc: Fix use after free in fc_exch_abts_resp() - can: isotp: set default value for N_As to 50 micro seconds - net: account alternate interface name memory - net: limit altnames to 64k total - net: sfp: add 2500base-X quirk for Lantech SFP module - [armhf] usb: dwc3: omap: fix "unbalanced disables for smps10_out1" on omap5evm - Bluetooth: Fix use after free in hci_send_acl - netlabel: fix out-of-bounds memory accesses - ceph: fix memory leak in ceph_readdir when note_last_dentry returns error - init/main.c: return 1 from handled __setup() functions - minix: fix bug when opening a file with O_DIRECT - [arm*] staging: vchiq_core: handle NULL result of find_service_by_handle - [arm64,armhf] phy: amlogic: meson8b-usb2: Use dev_err_probe() - w1: w1_therm: fixes w1_seq for ds28ea00 sensors - NFSv4.2: fix reference count leaks in _nfs42_proc_copy_notify() - NFSv4: Protect the state recovery thread against direct reclaim - xen: delay xen_hvm_init_time_ops() if kdump is boot on vcpu>=32 - [armhf] clk: ti: Preserve node in ti_dt_clocks_register() - clk: Enforce that disjoints limits are invalid - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - SUNRPC/xprt: async tasks mustn't block waiting for memory - SUNRPC: remove scheduling boost for "SWAPPER" tasks. - NFS: swap IO handling is slightly different for O_DIRECT IO - NFS: swap-out must always use STABLE writes. - [armhf] serial: samsung_tty: do not unlock port->lock for uart_write_wakeup() - virtio_console: eliminate anonymous module_init & module_exit - jfs: prevent NULL deref in diFree - SUNRPC: Fix socket waits for write buffer space - NFS: nfsiod should not block forever in mempool_alloc() - NFS: Avoid writeback threads getting stuck in mempool_alloc() - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - drm/amdgpu: fix off by one in amdgpu_gfx_kiq_acquire() - [x86] Drivers: hv: vmbus: Fix potential crash on module unload - Revert "NFSv4: Handle the special Linux file open access mode" - NFSv4: fix open failure with O_ACCMODE flag - ice: Clear default forwarding VSI during VSI release - net: ipv4: fix route with nexthop object delete warning - net: stmmac: Fix unset max_speed difference between DT and non-DT platforms - [armhf] drm/imx: imx-ldb: Check for null pointer after calling kmemdup - [armhf] drm/imx: Fix memory leak in imx_pd_connector_get_modes - sfc: Do not free an empty page_ring - RDMA/mlx5: Don't remove cache MRs when a delay is needed - [amd64] IB/rdmavt: add lock to call to rvt_error_qp to prevent a race condition - [arm64] dpaa2-ptp: Fix refcount leak in dpaa2_ptp_probe - ice: Set txq_teid to ICE_INVAL_TEID on ring creation - ice: Do not skip not enabled queues in ice_vc_dis_qs_msg - ipv6: Fix stats accounting in ip6_pkt_drop - ice: synchronize_rcu() when terminating rings - net: openvswitch: don't send internal clone attribute to the userspace. - net: openvswitch: fix leak of nested actions - rxrpc: fix a race in rxrpc_exit_net() - qede: confirm skb is allocated before using - bpf: Support dual-stack sockets in bpf_tcp_check_syncookie - drbd: Fix five use after free bugs in get_initial_state - io_uring: don't touch scm_fp_list after queueing skb - SUNRPC: Handle ENOMEM in call_transmit_status() - SUNRPC: Handle low memory situations in call_status() - SUNRPC: svc_tcp_sendmsg() should handle errors from xdr_alloc_bvec() - [armhf] iommu/omap: Fix regression in probe for NULL pointer dereference - [arm64] Add part number for Arm Cortex-A78AE - [arm64] Revert "mmc: sdhci-xenon: fix annoying 1.8V regulator warning" - [arm64,armhf] mmc: mmci: stm32: correctly check all elements of sg list - lz4: fix LZ4_decompress_safe_partial read out of bound - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm/mempolicy: fix mpol_new leak in shared_policy_replace - io_uring: fix race between timeout flush and removal (CVE-2022-29582) - [x86] pm: Save the MSR validity status at context setup - [x86] speculation: Restore speculation related MSRs during S3 resume - btrfs: fix qgroup reserve overflow the qgroup limit - btrfs: prevent subvol with swapfile from being deleted - [arm64] patch_text: Fixup last cpu should be master - [amd64] RDMA/hfi1: Fix use-after-free bug for mm struct - gpio: Restrict usage of GPIO chip irq members before initialization - [arm64] perf: qcom_l2_pmu: fix an incorrect NULL check on list iterator - [arm64,armhf] irqchip/gic-v3: Fix GICR_CTLR.RWP polling - drm/nouveau/pmu: Add missing callbacks for Tegra devices - mm: don't skip swap entry even if zap_details specified - cgroup: Use open-time credentials for process migraton perm checks (CVE-2021-4197) - [x86] Drivers: hv: vmbus: Replace smp_store_mb() with virt_store_mb() - [arm64,armhf] irqchip/gic, gic-v3: Prevent GSI to SGI translations - [powerpc*] Fix virt_addr_valid() for 64-bit Book3E & 32-bit https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.112 - [amd64] drm/amdkfd: Use drm_priv to pass VM from KFD to amdgpu - hamradio: defer 6pack kfree after unregister_netdev (CVE-2022-1195) - hamradio: remove needs_free_netdev to avoid UAF (CVE-2022-1195) - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the function - ACPI: processor idle: Check for architectural support for LPI - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups() - [arm64] drm/msm: Add missing put_task_struct() in debugfs path - SUNRPC: Fix the svc_deferred_event trace class - net/sched: flower: fix parsing of ethertype following VLAN header - veth: Ensure eth header is in skb's linear part - gpiolib: acpi: use correct format characters - net: mdio: Alphabetically sort header inclusion - net/sched: fix initialization order when updating chain 0 head - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link - net/sched: taprio: Check if socket flags are valid - cfg80211: hold bss_lock while updating nontrans_list - [arm64] drm/msm: Fix range size vs end confusion - [arm64] drm/msm/dsi: Use connector directly in msm_dsi_manager_connector_init() - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib() - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63 - scsi: pm80xx: Enable upper inbound, outbound queues - scsi: iscsi: Stop queueing during ep_disconnect - scsi: iscsi: Force immediate failure during shutdown - scsi: iscsi: Use system_unbound_wq for destroy_work - scsi: iscsi: Rel ref after iscsi_lookup_endpoint() - scsi: iscsi: Fix in-kernel conn failure handling - scsi: iscsi: Move iscsi_ep_disconnect() - scsi: iscsi: Fix offload conn cleanup when iscsid restarts - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart - sctp: Initialize daddr on peeled off socket - cifs: potential buffer overflow in handling symlinks - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure ordering" - drm/amd: Add USBC connector ID - btrfs: fix fallocate to use file_modified to update permissions consistently - btrfs: do not warn for free space inode in cow_file_range - drm/amd/display: fix audio format not updated after edid updated - drm/amd/display: FEC check in timing validation - drm/amd/display: Update VTEM Infopacket definition - drm/amdkfd: Fix Incorrect VMIDs passed to HWS - drm/amdgpu/vcn: improve vcn dpg stop procedure - [x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring buffer - scsi: target: tcmu: Fix possible page UAF - scsi: lpfc: Fix queue failures when recovering from PCI parity error - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024 - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output - [arm64] alternatives: mark patch_alternative() as `noinstr` - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso - drm/amd/display: Revert FEC check in validation - drm/amd/display: Fix allocate_mst_payload assert on resume - scsi: mvsas: Add PCI ID of RocketRaid 2640 - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan - drivers: net: slip: fix NPD bug in sl_tx_timeout() - mm, page_alloc: fix build_zonerefs_node() - mm: fix unexpected zeroed page mapping with zram swap - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded - ath9k: Properly clear TX status area before reporting to mac80211 - ath9k: Fix usage of driver-private space in tx_info - btrfs: fix root ref counts in error handling in btrfs_get_root_ref - btrfs: mark resumed async balance as writing - ALSA: hda/realtek: Add quirk for Clevo PD50PNT - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers - ALSA: pcm: Test for "silence" field in struct "pcm_format_data" - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size - ipv6: fix panic when forwarding a pkt with no in6 dev - drm/amd/display: don't ignore alpha property on pre-multiplied mode - drm/amdgpu: Enable gfxoff quirk on MacBook Pro - genirq/affinity: Consider that CPUs on nodes can be unbalanced - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation - dm integrity: fix memory corruption when tag_size is less than digest size - smp: Fix offline cpu check in flush_smp_call_function_queue() - timers: Fix warning condition in __run_timers() - dma-direct: avoid redundant memory sync for swiotlb - scsi: iscsi: Fix endpoint reuse regression - scsi: iscsi: Fix unbound endpoint error handling - ax25: add refcount in ax25_dev to avoid UAF bugs (CVE-2022-1204) - ax25: fix reference count leaks of ax25_dev (CVE-2022-1204) - ax25: fix UAF bugs of net_device caused by rebinding operation (CVE-2022-1204) - ax25: Fix refcount leaks caused by ax25_cb_del() (CVE-2022-1204) - ax25: fix UAF bug in ax25_send_control() - ax25: fix NPD bug in ax25_disconnect (CVE-2022-1199) - ax25: Fix NULL pointer dereferences in ax25 timers (CVE-2022-1205) - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.113 - tracing: Dump stacktrace trigger to the corresponding instance - gfs2: assign rgrp glock before compute_bitstructs - net/sched: cls_u32: fix netns refcount changes in u32_change() - ALSA: usb-audio: Clear MIDI port active flag after draining - ALSA: hda/realtek: Add quirk for Clevo NP70PNP - dm: fix mempool NULL pointer race when completing IO - [armhf] dmaengine: imx-sdma: Fix error checking in sdma_event_remap - esp: limit skb_page_frag_refill use to a single page - igc: Fix infinite loop in release_swfw_sync - igc: Fix BUG: scheduling while atomic - rxrpc: Restore removed timer deletion - net/smc: Fix sock leak when release after smc_shutdown() - net/packet: fix packet_sock xmit return value checking - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit() - ip6_gre: Fix skb_under_panic in __gre6_xmit() - net/sched: cls_u32: fix possible leak in u32_init_knode() - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu - ipv6: make ip6_rt_gc_expire an atomic_t - netlink: reset network and mac headers in netlink_dump() - net: stmmac: Use readl_poll_timeout_atomic() in atomic state - [arm64] mm: Remove [PUD|PMD]_TABLE_BIT from [pud|pmd]_bad() - [arm64] mm: fix p?d_leaf() - [x86] platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant - vxlan: fix error return code in vxlan_fdb_append - cifs: Check the IOCB_DIRECT flag, not O_DIRECT - [amd64,arm64] net: atlantic: Avoid out-of-bounds indexing - mt76: Fix undefined behavior due to shift overflowing the constant - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant - [arm64] drm/msm/mdp5: check the return of kzalloc() - [arm64] net: macb: Restart tx only if queue pointer is lagging - scsi: qedi: Fix failed disconnect handling - stat: fix inconsistency between struct stat and struct compat_stat - nvme: add a quirk to disable namespace identifiers - nvme-pci: disable namespace identifiers for Qemu controllers - mm, hugetlb: allow for "high" userspace addresses - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove() - ata: pata_marvell: Check the 'bmdma_addr' beforing reading - [amd64,arm64] net: atlantic: invert deep par in pm functions, preventing null derefs - openvswitch: fix OOB access in reserve_sfa_size() - gpio: Request interrupts after IRQ is initialized - ASoC: soc-dapm: fix two incorrect uses of list iterator - e1000e: Fix possible overflow in LTR decoding - [arm*] arm_pmu: Validate single/group leader events - sched/pelt: Fix attach_entity_load_avg() corner case - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare - [powerpc*] KVM: PPC: Fix TCE handling for VFIO - [arm*] drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage - [powerpc*] perf: Fix power9 event alternatives - ext4: fix fallocate to use file_modified to update permissions consistently - ext4: fix symlink file size not match to file content - ext4: fix use-after-free in ext4_search_dir - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - ext4, doc: fix incorrect h_reserved size - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: force overhead calculation if the s_overhead_cluster makes no sense - can: isotp: stop timeout monitoring when no first frame was sent - jbd2: fix a potential race while discarding reserved buffers after an abort - block/compat_ioctl: fix range check in BLKGETSIZE . [ Salvatore Bonaccorso ] * Bump ABI to 14 * [rt] Drop "tcp: Remove superfluous BH-disable around" * [rt] Update "tracing: Merge irqflags + preempt counter." for upstream changes in 5.10.113 * [x86] pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests (Closes: #1006346) * floppy: disable FDRAWCMD by default . linux (5.10.106-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.104 - mac80211_hwsim: report NOACK frames in tx_status - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work - [arm*] i2c: bcm2835: Avoid clock stretching timeouts - ASoC: rt5682: do not block workqueue if card is unbound - regulator: core: fix false positive in regulator_late_cleanup() - Input: clear BTN_RIGHT/MIDDLE on buttonpads - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW - tipc: fix a bit overflow in tipc_crypto_key_rcv() - cifs: fix double free race when mount fails in cifs_get_root() - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990 - usb: gadget: don't release an existing dev->buf (CVE-2022-24958) - usb: gadget: clear related members when goto fail (CVE-2022-24958) - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I() - exfat: fix i_blocks for files truncated over 4 GiB - tracing: Add test for user space strings when filtering on string pointers - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char - ata: pata_hpt37x: fix PCI clock detection - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag - tracing: Add ustring operation to filtering string pointers - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min - [amd64] iommu/amd: Recover from event log overflow - [x86] drm/i915: s/JSP2/ICP2/ PCH - xen/netfront: destroy queues before real_num_tx_queues is zeroed - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls - xfrm: fix MTU regression - netfilter: fix use-after-free in __nf_register_net_hook() - bpf, sockmap: Do not ignore orig_len parameter - xfrm: fix the if_id check in changelink - xfrm: enforce validity of offload input flags - e1000e: Correct NVM checksum verification flow - net: fix up skbs delta_truesize in UDP GRO frag_list - netfilter: nf_queue: don't assume sk is full socket - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: handle socket prefetch - batman-adv: Request iflink once in batadv-on-batadv check - batman-adv: Request iflink once in batadv_get_real_netdevice - batman-adv: Don't expect inter-netns unique iflink indices - net: ipv6: ensure we call ipv6_mc_down() at most once - net: dcb: flush lingering app table entries for unregistered devices - net/smc: fix connection leak - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server - rcu/nocb: Fix missed nocb_timer requeue - ice: Fix race conditions between virtchnl handling and VF ndo ops - ice: fix concurrent reset and removal of VFs - sched/topology: Make sched_init_numa() use a set for the deduplicating sort - sched/topology: Fix sched_domain_topology_level alloc in sched_init_numa() - mac80211: fix forwarded mesh frames AC & queue selection - net: stmmac: fix return value of __setup handler - mac80211: treat some SAE auth steps as final - iavf: Fix missing check for running netdev - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe() - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc() - efivars: Respect "block" flag in efivar_entry_set_safe() - can: gs_usb: change active_channels's type from atomic_t to u8 - igc: igc_read_phy_reg_gpy: drop premature return - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup() functions - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs - igc: igc_write_phy_reg_gpy: drop premature return - memfd: fix F_SEAL_WRITE after shmem huge page allocated - [armhf] dts: switch timer config to common devkit8000 devicetree - [armhf] dts: Use 32KiHz oscillator on devkit8000 - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed - [arm64] soc: fsl: guts: Add a missing memory allocation failure check - [armhf] tegra: Move panels to AUX bus - net: chelsio: cxgb3: check the return value of pci_find_capability() - iavf: Refactor iavf state machine tracking - nl80211: Handle nla_memdup failures in handle_nan_filter - drm/amdgpu: fix suspend/resume hang regression - net: dcb: disable softirqs in dcbnl_flush_dev() - Input: elan_i2c - move regulator_[en|dis]able() out of elan_[en|dis]able_power() - Input: elan_i2c - fix regulator enable count imbalance after suspend/resume - HID: add mapping for KEY_DICTATE - HID: add mapping for KEY_ALL_APPLICATIONS - tracing/histogram: Fix sorting on old "cpu" value - tracing: Fix return value of __setup handlers - btrfs: fix lost prealloc extents beyond eof after full fsync - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup - btrfs: add missing run of delayed items after unlink during log replay - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6" - hamradio: fix macro redefine warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.105 - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [armhf] report Spectre v2 status through sysfs - [armel,armhf] early traps initialisation - [armel,armhf] use LOADADDR() to get load address of sections - [armel,armhf] Spectre-BHB workaround - [armel,armhf] include unprivileged BPF status in Spectre V2 reporting - [arm64] cputype: Add CPU implementor & types for the Apple M1 cores - [arm64] Add Neoverse-N2, Cortex-A710 CPU part definition - [arm64] Add Cortex-X2 CPU part definition - [arm64] Add Cortex-A510 CPU part definition - [arm64] Add HWCAP for self-synchronising virtual counter - [arm64] add ID_AA64ISAR2_EL1 sys register - [arm64] cpufeature: add HWCAP for FEAT_AFP - [arm64] cpufeature: add HWCAP for FEAT_RPRES - [arm64] entry.S: Add ventry overflow sanity checks - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit - [arm64] entry: Make the trampoline cleanup optional - [arm64] entry: Free up another register on kpti's tramp_exit path - [arm64] entry: Move the trampoline data page before the text page - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary - [arm64] entry: Don't assume tramp_vectors is the start of the vectors - [arm64] entry: Move trampoline macros out of ifdef'd section - [arm64] entry: Make the kpti trampoline's kpti sequence optional - [arm64] entry: Allow the trampoline text to occupy multiple pages - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations - [arm64] entry: Add vectors that have the bhb mitigation sequences - [arm64] entry: Add macro for reading symbol addresses from the trampoline - [arm64] Add percpu vectors for EL1 - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A - [arm64] Mitigate spectre style branch history side channels - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - [arm64] Use the clearbhb instruction in mitigations - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [armel,armhf] fix co-processor register typo - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld - [armhf] fix build warning in proc-v7-bugs.c - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case (CVE-2022-23040, XSA-396) - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036, CVE-2022-23038, XSA-396) - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23036, XSA-396) - xen/netfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23037, XSA-396) - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23038, XSA-396) - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039, XSA-396) - xen: remove gnttab_query_foreign_access() - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/gnttab: fix gnttab_end_foreign_access() without page specified (CVE-2022-23041, XSA-396) - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() (CVE-2022-23042, XSA-396) - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.106 - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias - tipc: fix kernel panic when enabling bearer - mISDN: Remove obsolete PIPELINE_DEBUG debugging information - mISDN: Fix memory leak in dsp_pipeline_build() - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw() - net: qlogic: check the return value of dma_alloc_coherent() in qed_vf_hw_prepare() - esp: Fix BEET mode inter address family tunneling on GSO - qed: return status of qed_iov_get_link - i40e: stop disabling VFs due to PF error responses - ice: stop disabling VFs due to PF error responses - ice: Align macro names to the specification - ice: Remove unnecessary checker loop - ice: Rename a couple of variables - ice: Fix curr_link_speed advertised speed - tipc: fix incorrect order of state message data sanity check - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable - ax25: Fix NULL pointer dereference in ax25_kill_by_device - net/mlx5: Fix size field in bufferx_reg struct - net/mlx5: Fix a race on command flush flow - net/mlx5e: Lag, Only handle events from highest priority multipath entry - NFC: port100: fix use-after-free in port100_send_complete - net: phy: DP83822: clear MISR2 register to disable interrupts - sctp: fix kernel-infoleak for SCTP sockets - [arm64] net: bcmgenet: Don't claim WOL when its not available - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort - net-sysfs: add check for netdevice being present to speed_show - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read - gpio: Return EPROBE_DEFER if gc->to_irq is NULL - Revert "xen-netback: remove 'hotplug-status' once it has served its purpose" - Revert "xen-netback: Check for hotplug-status existence before watching" - ipv6: prevent a possible race condition with lifetimes - tracing: Ensure trace buffer is at least 4096 bytes large - fuse: fix pipe buffer lifetime for direct_io - staging: rtl8723bs: Fix access-point mode deadlock - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive - [arm64] mmc: meson: Fix usage of meson_mmc_post_req() - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0 - virtio: unexport virtio_finalize_features - virtio: acknowledge all features before access - watch_queue, pipe: Free watchqueue state after clearing pipe ring (CVE-2022-0995) - watch_queue: Fix to release page in ->release() (CVE-2022-0995) - watch_queue: Fix to always request a pow-of-2 pipe ring size (CVE-2022-0995) - watch_queue: Fix the alloc bitmap size to reflect notes allocated (CVE-2022-0995) - watch_queue: Free the alloc bitmap when the watch_queue is torn down (CVE-2022-0995) - watch_queue: Fix lack of barrier/sync/lock between post and read (CVE-2022-0995) - watch_queue: Make comment about setting ->defunct more accurate (CVE-2022-0995) - [x86] boot: Fix memremap of setup_indirect structures - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data() - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL - ext4: add check to prevent attempting to resize an fs with sparse_super2 - [armel,armhf] fix Thumb2 regression with Spectre BHB - watch_queue: Fix filter limit check ((CVE-2022-0995) . [ Salvatore Bonaccorso ] * Bump ABI to 13 * [rt] Update to 5.10.104-rt63 * [rt] Update to 5.10.106-rt64 * sctp: fix the processing for INIT chunk (CVE-2021-3772) * tcp: make tcp_read_sock() more robust * io_uring: return back safer resurrect * [arm64] kvm: Fix copy-and-paste error in bhb templates for v5.10 stable linux (5.10.113-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.107 - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" (Closes: #1008299) - xfrm: Check if_id in xfrm_migrate - xfrm: Fix xfrm migrate issues when address family changes - mac80211: refuse aggregations sessions before authorized - [mips64el,mipsel] smp: fill in sibling and core maps earlier - [x86] atm: firestream: check the return value of ioremap() in fs_init() - iwlwifi: don't advertise TWT support - drm/vrr: Set VRR capable prop only if it is attached to connector - nl80211: Update bss channel on channel switch for P2P_CLIENT - sfc: extend the locking on mcdi->seqno https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.108 - [arm64] crypto: qcom-rng - ensure buffer for generate is completely filled - ocfs2: fix crash when initialize filecheck kobj fails - mm: swap: get rid of livelock in swapin readahead - efi: fix return value of __setup handlers - vsock: each transport cycles only on its own sockets - esp6: fix check on ipv6_skip_exthdr's return value - net: phy: marvell: Fix invalid comparison in the resume and suspend functions - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - atm: eni: Add check for dma_map_single - [x86] hv_netvsc: Add check for kvmalloc_array - [armhf] drm/imx: parallel-display: Remove bus flags check in imx_pd_bridge_atomic_check() - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of - net: phy: mscc: Add MODULE_FIRMWARE macros - bnx2x: fix built-in kernel driver load failure - [arm64] net: bcmgenet: skip invalid partial checksums - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain tc-flower offload - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver - usb: usbtmc: Fix bug in pipe direction for control transfers - scsi: mpt3sas: Page fault in reply q processing - Input: aiptek - properly check endpoint type - perf symbols: Fix symbol size calculation condition - net: usb: Correct PHY handling of smsc95xx - net: usb: Correct reset handling of smsc95xx - smsc95xx: Ignore -ENODEV errors when device is unplugged - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.109 - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION (CVE-2022-26490) - net: ipv6: fix skb_over_panic in __ip6_append_data - exfat: avoid incorrectly releasing for root inode - cgroup: Allocate cgroup_file_ctx for kernfs_open_file->priv (CVE-2021-4197) - cgroup: Use open-time cgroup namespace for process migration perm checks (CVE-2021-4197) - cgroup-v1: Correct privileges check in release_agent writes - tpm: Fix error handling in async work - llc: fix netdevice reference leaks in llc_ui_bind() (CVE-2022-28356) - ALSA: oss: Fix PCM OSS buffer allocation overflow - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - ALSA: hda/realtek: Add quirk for ASUS GA402 - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent read/write and buffer changes (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048) - ALSA: pcm: Add stream lock during PCM reset ioctl operations - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB - ALSA: cmipci: Restore aux vol on suspend/resume - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec - [arm64] drivers: net: xgene: Fix regression in CRC stripping - netfilter: nf_tables: initialize registers in nft_do_chain() (CVE-2022-1016) - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3 - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU - [x86] crypto: qat - disable registration of algorithms - Revert "ath: add support for special 0x0 regulatory domain" - rcu: Don't deboost before reporting expedited quiescent state - mac80211: fix potential double free on mesh join - tpm: use try_get_ops() in tpm-space.c - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620 - llc: only change llc->dev when bind() succeeds https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.110 - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854) - USB: serial: pl2303: add IBM device IDs - USB: serial: simple: add Nokia phone driver - netdevice: add the case if dev is NULL - HID: logitech-dj: add new lightspeed receiver id - xfrm: fix tunnel model fragmentation behavior - virtio_console: break out of buf poll on remove - ethernet: sun: Free the coherent when failing in probing - gpio: Revert regression in sysfs-gpio (gpiolib.c) - spi: Fix invalid sgs value - Revert "gpio: Revert regression in sysfs-gpio (gpiolib.c)" - spi: Fix erroneous sgs value with min_t() - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register (CVE-2022-1353) - [arm*] iommu/iova: Improve 32-bit free space estimate - tpm: fix reference counting for struct tpm_chip - virtio-blk: Use blk_validate_block_size() to validate block size - USB: usb-storage: Fix use of bitfields for hardware data in ene_ub6250.c - xhci: fix garbage USBSTS being logged in some cases - xhci: fix runtime PM imbalance in USB2 resume - xhci: make xhci_handshake timeout for xhci_reset() adjustable - xhci: fix uninitialized string returned by xhci_decode_ctrl_ctx() - [x86] mei: me: add Alder Lake N device id. - [x86] mei: avoid iterator usage outside of list_for_each_entry - iio: inkern: apply consumer scale on IIO_VAL_INT cases - iio: inkern: apply consumer scale when no channel scale is available - iio: inkern: make a best effort on offset calculation - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - KEYS: fix length validation in keyctl_pkey_params_get_2() - Documentation: add link to stable release candidate tree - Documentation: update stable tree link - firmware: stratix10-svc: add missing callback parameter on RSU - SUNRPC: avoid race between mod_timer() and del_timer_sync() - NFSD: prevent underflow in nfssvc_decode_writeargs() - NFSD: prevent integer overflow on 32 bit systems - f2fs: fix to unlock page correctly in error path of is_alive() - f2fs: quota: fix loop condition at f2fs_quota_sync() - f2fs: fix to do sanity check on .cp_pack_total_block_count - [armhf] remoteproc: Fix count check in rproc_coredump_write() - [armhf] pinctrl: samsung: drop pin banks references on error paths - mtd: rawnand: protect access to rawnand devices while in suspend - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28390) - jffs2: fix use-after-free in jffs2_clear_xattr_subsystem - jffs2: fix memory leak in jffs2_do_mount_fs - jffs2: fix memory leak in jffs2_scan_medium - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - mm: invalidate hwpoison page cache page in fault path - mempolicy: mbind_range() set_policy() after vma_merge() - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - qed: display VF trust config - qed: validate and restrict untrusted VFs vlan promisc mode - Revert "Input: clear BTN_RIGHT/MIDDLE on buttonpads" - cifs: prevent bad output lengths in smb2_ioctl_query_info() - cifs: fix NULL ptr dereference in smb2_ioctl_query_info() (CVE-2022-0168) - [i386] ALSA: cs4236: fix an incorrect NULL check on list iterator - ALSA: hda: Avoid unsol event during RPM suspending - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: hda/realtek: Fix audio regression on Mi Notebook Pro 2020 - mm: madvise: skip unmapped vma holes passed to process_madvise - mm: madvise: return correct bytes advised with process_madvise - Revert "mm: madvise: skip unmapped vma holes passed to process_madvise" - mm,hwpoison: unmap poisoned page before invalidation - dm integrity: set journal entry unused when shrinking device - drbd: fix potential silent data corruption - can: isotp: sanitize CAN ID checks in isotp_bind() - [powerpc*] kvm: Fix kvm_use_magic_page - udp: call udp_encap_enable for v6 sockets when enabling encap - [arm64] signal: nofpsimd: Do not allocate fp/simd context when not available - ACPI: properties: Consistently return -ENOENT if there are no more references - coredump: Also dump first pages of non-executable ELF libraries - ext4: fix ext4_fc_stats trace point - ext4: fix fs corruption when tring to remove a non-empty directory with IO error - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() (CVE-2022-1198) - block: limit request dispatch loop duration - block: don't merge across cgroup boundaries if blkcg is enabled - drm/edid: check basic audio support on CEA extension block - [armhf] dts: exynos: add missing HDMI supplies on SMDK5250 - [armhf] dts: exynos: add missing HDMI supplies on SMDK5420 - [x86] mgag200 fix memmapsl configuration in GCTL6 register - carl9170: fix missing bit-wise or operator for tx_params - pstore: Don't use semaphores in always-atomic-context code - [x86] thermal: int340x: Increase bitmap size - exec: Force single empty string when argv is empty - crypto: rsa-pkcs1pad - only allow with rsa - crypto: rsa-pkcs1pad - correctly get hash from source scatterlist - crypto: rsa-pkcs1pad - restore signature length check - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - bcache: fixup multiple threads crash - DEC: Limit PMAX memory probing to R3k systems - brcmfmac: firmware: Allocate space for default boardrev in nvram - brcmfmac: pcie: Release firmwares in the brcmf_pcie_setup error path - brcmfmac: pcie: Replace brcmf_pcie_copy_mem_todev with memcpy_toio - brcmfmac: pcie: Fix crashes due to early IRQs - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - [x86] drm/i915/gem: add missing boundary check in vm_access - PCI: pciehp: Clear cmd_busy bit in polling mode - [arm64] PCI: xgene: Revert "PCI: xgene: Fix IB window setup" - [arm64] regulator: qcom_smd: fix for_each_child.cocci warnings - selinux: check return value of sel_make_avc_files - [arm64] hwrng: cavium - Check health status while reading random data - [arm64] hwrng: cavium - HW_RANDOM_CAVIUM should depend on ARCH_THUNDER - crypto: authenc - Fix sleep in atomic context in decrypt_tail - [x86] thermal: int340x: Check for NULL after calling kmemdup() - [arm64,armhf] spi: tegra114: Add missing IRQ check in tegra_spi_probe - [arm64] mm: avoid fixmap race condition when create pud mapping - audit: log AUDIT_TIME_* records only from rules - spi: pxa2xx-pci: Balance reference count for PCI DMA device - [armhf] hwmon: (pmbus) Add mutex to regulator ops - hwmon: (sch56xx-common) Replace WDOG_ACTIVE with WDOG_HW_RUNNING - nvme: cleanup __nvme_check_ids - block: don't delete queue kobject before its children - PM: hibernate: fix __setup handler error handling - PM: suspend: fix return value of __setup handler - [arm64] crypto: sun8i-ce - call finalize with bh disabled - [arm64,armhf] crypto: amlogic - call finalize with bh disabled - [armhf] clocksource/drivers/timer-ti-dm: Fix regression from errata i940 fix - [armhf] clocksource/drivers/exynos_mct: Refactor resources allocation - [armhf] clocksource/drivers/exynos_mct: Handle DTS with higher number of interrupts - clocksource/drivers/timer-of: Check return value of of_iomap in timer_of_base_init() - ACPI: APEI: fix return value of __setup handlers - [x86] crypto: ccp - ccp_dmaengine_unregister release dma channels - [arm*] amba: Make the remove callback return void - [armhf] hwmon: (pmbus) Add Vin unit off handling - [x86] clocksource: acpi_pm: fix return value of __setup handler - io_uring: terminate manual loop iterator loop correctly for non-vecs - watch_queue: Fix NULL dereference in error cleanup - watch_queue: Actually free the watch - f2fs: fix to enable ATGC correctly via gc_idle sysfs interface - sched/debug: Remove mpol_get/put and task_lock/unlock from sched_show_numa - sched/core: Export pelt_thermal_tp - rseq: Optimise rseq_get_rseq_cs() and clear_rseq_cs() - rseq: Remove broken uapi field layout on 32-bit little endian - perf/core: Fix address filter parser for multiple filters - [x86] perf/x86/intel/pt: Fix address filter config for 32-bit kernel - f2fs: fix missing free nid in f2fs_handle_failed_inode - nfsd: more robust allocation failure handling in nfsd_file_cache_init - f2fs: fix to avoid potential deadlock - btrfs: fix unexpected error path when reflinking an inline extent - f2fs: compress: remove unneeded read when rewrite whole cluster - f2fs: fix compressed file start atomic write may cause data corruption - [arm64,armhf] media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - media: bttv: fix WARNING regression on tunerless devices - [arm*] ASoC: generic: simple-card-utils: remove useless assignment - [armhf] media: coda: Fix missing put_device() call in coda_get_vdoa_data - [armhf] media: aspeed: Correct value for h-total-pixels - video: fbdev: matroxfb: set maxvram of vbG200eW to the same as vbG200 to avoid black screen - video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() - video: fbdev: fbcvt.c: fix printing in fb_cvt_print_name() - [arm64] firmware: qcom: scm: Remove reassignment to desc following initializer - firmware: ti_sci: Fix compilation failure when CONFIG_TI_SCI_PROTOCOL is not defined - [armhf] dts: imx: Add missing LVDS decoder on M53Menlo - media: em28xx: initialize refcount before kref_get - media: usb: go7007: s2250-board: fix leak in probe() - [arm64,armhf] media: cedrus: H265: Fix neighbour info buffer size - [arm64,armhf] media: cedrus: h264: Fix neighbour info buffer size - [x86] ASoC: rt5663: check the return value of devm_kzalloc() in rt5663_parse_dp() - printk: fix return value of printk.devkmsg __setup handler - [x86] ASoC: soc-compress: prevent the potentially use of null pointer - [armhf] memory: emif: Add check for setup_interrupts - [armhf] memory: emif: check the pointer temp in get_device_details() - ALSA: firewire-lib: fix uninitialized flag for AV/C deferred transaction - [arm64] dts: rockchip: Fix SDIO regulator supply properties on rk3399-firefly - media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED - media: saa7134: convert list_for_each to entry variant - media: saa7134: fix incorrect use to determine if list is empty - ivtv: fix incorrect device_caps for ivtvfb - [arm64,armhf] ASoC: rockchip: i2s: Use devm_platform_get_and_ioremap_resource() - [arm64,armhf] ASoC: rockchip: i2s: Fix missing clk_disable_unprepare() in rockchip_i2s_probe - ASoC: dmaengine: do not use a NULL prepare_slave_config() callback - [armhf] ASoC: fsl_spdif: Disable TX clock when stop - [armhf] ASoC: imx-es8328: Fix error return code in imx_es8328_probe() - [arm64] drm/meson: osd_afbcd: Add an exit callback to struct meson_afbcd_ops - [arm64,armhf] drm/bridge: Add missing pm_runtime_disable() in __dw_mipi_dsi_probe - [arm64] drm: bridge: adv7511: Fix ADV7535 HPD enablement - ath10k: fix memory overwrite of the WoWLAN wakeup packet pattern - [arm64,armhf] drm/panfrost: Check for error num after setting mask - Bluetooth: hci_serdev: call init_rwsem() before p->open() - [armhf] mtd: rawnand: gpmi: fix controller timings setting - drm/edid: Don't clear formats if using deep color - drm/nouveau/acr: Fix undefined behavior in nvkm_acr_hsfw_load_bl() - drm/amd/display: Fix a NULL pointer dereference in amdgpu_dm_connector_add_common_modes() - drm/amd/pm: return -ENOTSUPP if there is no get_dpm_ultimate_freq function - ath9k_htc: fix uninit value bugs - RDMA/core: Set MR type in ib_reg_user_mr - [powerpc*] KVM: PPC: Fix vmx/vsx mixup in mmio emulation - i40e: don't reserve excessive XDP_PACKET_HEADROOM on XSK Rx to skb - i40e: respect metadata on XSK Rx to skb - [x86] ray_cs: Check ioremap return value - [powerpc*] KVM: PPC: Book3S HV: Check return value of kvmppc_radix_init - [powerpc*] perf: Don't use perf_hw_context for trace IMC PMU - [arm64,armhf] net: dsa: mv88e6xxx: Enable port policy support on 6097 - [arm64] PCI: aardvark: Fix reading PCI_EXP_RTSTA_PME bit on emulated bridge - [arm64,armhf] drm/bridge: dw-hdmi: use safe format when first in bridge chain - HID: i2c-hid: fix GET/SET_REPORT for unnumbered reports - drm/amd/pm: enable pm sysfs write for one VF mode - drm/amd/display: Add affected crtcs to atomic state for dsc mst unplug - IB/cma: Allow XRC INI QPs to set their local ACK timeout - dax: make sure inodes are flushed before destroy cache - iwlwifi: Fix -EIO error code that is never returned - iwlwifi: mvm: Fix an error code in iwl_mvm_up() - [arm64] drm/msm/dp: populate connector of struct dp_panel - [arm64] drm/msm/dpu: add DSPP blocks teardown - [arm64] drm/msm/dpu: fix dp audio condition - scsi: pm8001: Fix command initialization in pm80XX_send_read_log() - scsi: pm8001: Fix command initialization in pm8001_chip_ssp_tm_req() - scsi: pm8001: Fix payload initialization in pm80xx_set_thermal_config() - scsi: pm8001: Fix le32 values handling in pm80xx_set_sas_protocol_timer_config() - scsi: pm8001: Fix payload initialization in pm80xx_encrypt_update() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_ssp_io_req() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_sata_req() - scsi: pm8001: Fix NCQ NON DATA command task initialization - scsi: pm8001: Fix NCQ NON DATA command completion handling - scsi: pm8001: Fix abort all task initialization - RDMA/mlx5: Fix the flow of a miss in the allocation of a cache ODP MR - drm/amd/display: Remove vupdate_int_entry definition - TOMOYO: fix __setup handlers return values - [arm64,armhf] drm/tegra: Fix reference leak in tegra_dsi_ganged_probe - [x86] power: supply: bq24190_charger: Fix bq24190_vbus_is_enabled() wrong false return - [arm64] scsi: hisi_sas: Change permission of parameter prot_mask - [arm64] bpf, arm64: Call build_prologue() first in first JIT pass - [arm64] bpf, arm64: Feed byte-offset into bpf line info - [arm64,armhf] gpu: host1x: Fix a memory leak in 'host1x_remove()' - [powerpc*] mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() - [x86] KVM: x86: Fix emulation in writing cr8 - [x86] KVM: x86/emulator: Defer not-present segment check in __load_segment_descriptor() - [x86] hv_balloon: rate-limit "Unhandled message" warning - [amd64] IB/hfi1: Allow larger MTU without AIP - PCI: Reduce warnings on possible RW1C corruption - [armhf] mfd: mc13xxx: Add check for mc13xxx_irq_request - [x86] platform/x86: huawei-wmi: check the return value of device_create_file() - vxcan: enable local echo for sent CAN frames - ath10k: Fix error handling in ath10k_setup_msa_resources - [mips*] pgalloc: fix memory leak caused by pgd_free() - RDMA/mlx5: Fix memory leak in error flow for subscribe event routine - bpf, sockmap: Fix memleak in tcp_bpf_sendmsg while sk msg is full - bpf, sockmap: Fix more uncharged while msg has more_data - bpf, sockmap: Fix double uncharge the mem of sk_msg - USB: storage: ums-realtek: fix error code in rts51x_read_mem() - can: isotp: return -EADDRNOTAVAIL when reading from unbound socket - can: isotp: support MSG_TRUNC flag when reading from socket - Bluetooth: call hci_le_conn_failed with hdev lock in hci_le_conn_failed - ipv4: Fix route lookups when handling ICMP redirects and PMTU updates - af_netlink: Fix shift out of bounds in group mask calculation - [arm64,armhf] i2c: meson: Fix wrong speed use from probe - PCI: Avoid broken MSI on SB600 USB devices - [arm64] net: bcmgenet: Use stronger register read/writes to assure ordering - tcp: ensure PMTU updates are processed during fastopen - openvswitch: always update flow key after nat - tipc: fix the timer expires after interval 100ms - [x86] mxser: fix xmit_buf leak in activate when LSR == 0xff - [armhf] fsi: aspeed: convert to devm_platform_ioremap_resource - [armhf] fsi: Aspeed: Fix a potential double free - soundwire: intel: fix wrong register name in intel_shim_wake - iio: mma8452: Fix probe failing when an i2c_device_id is used - [arm64,armhf] phy: dphy: Correct lpx parameter and its derivatives(ta_{get,go,sure}) - [x86] serial: 8250_mid: Balance reference count for PCI DMA device - [x86] serial: 8250_lpss: Balance reference count for PCI DMA device - NFS: Use of mapping_set_error() results in spurious errors - serial: 8250: Fix race condition in RTS-after-send handling - NFS: Return valid errors from nfs2/3_decode_dirent() - [arm64] clk: qcom: clk-rcg2: Update logic to calculate D value for RCG - [arm64] clk: qcom: clk-rcg2: Update the frac table for pixel clock - nvdimm/region: Fix default alignment for small regions - [armhf] clk: tegra: tegra124-emc: Fix missing put_device() call in emc_ensure_emc_driver - NFS: remove unneeded check in decode_devicenotify_args() - [arm64,armhf] pinctrl/rockchip: Add missing of_node_put() in rockchip_pinctrl_probe - [s390x] tty: hvc: fix return value of __setup handler - serial: 8250: fix XOFF/XON sending when DMA is used - driver core: dd: fix return value of __setup handler - jfs: fix divide error in dbNextAG - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFSv4.1: don't retry BIND_CONN_TO_SESSION on session error - kdb: Fix the putarea helper function - clk: Initialize orphan req_rate - [amd64] xen: fix is_xen_pmu() - [arm64] net: enetc: report software timestamping via SO_TIMESTAMPING - [arm64] net: hns3: fix bug when PF set the duplicate MAC address for VFs - net: phy: broadcom: Fix brcm_fet_config_init() - NFSv4/pNFS: Fix another issue with a list iterator pointing to the head - [armhf] net: dsa: bcm_sf2_cfp: fix an incorrect NULL check on list iterator - fs: fd tables have to be multiples of BITS_PER_LONG - fs: fix fd table size alignment properly - LSM: general protection fault in legacy_parse_param - block, bfq: don't move oom_bfqq - selinux: use correct type for context length - selinux: allow FIOCLEX and FIONCLEX with policy capability - loop: use sysfs_emit() in the sysfs xxx show() - Fix incorrect type in assignment of ipv6 port for audit - fs/binfmt_elf: Fix AT_PHDR for unusual ELF files - bfq: fix use-after-free in bfq_dispatch_request - ACPICA: Avoid walking the ACPI Namespace if it is not there - Revert "Revert "block, bfq: honor already-setup queue merges"" - ACPI/APEI: Limit printable size of BERT table data - PM: core: keep irq flags in device_pm_check_callbacks() - nvme-tcp: lockdep: annotate in-kernel sockets - [arm64] spi: tegra20: Use of_device_get_match_data() - ext4: correct cluster len and clusters changed accounting in ext4_mb_mark_bb - ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit - ext4: don't BUG if someone dirty pages without asking ext4 first - f2fs: fix to do sanity check on curseg->alloc_type - NFSD: Fix nfsd_breaker_owns_lease() return values - f2fs: compress: fix to print raw data size in error path of lz4 decompression - video: fbdev: cirrusfb: check pixclock to avoid divide by zero - [armel,armhf] ftrace: avoid redundant loads or clobbering IP - video: fbdev: udlfb: replace snprintf in show functions with sysfs_emit - ASoC: soc-core: skip zero num_dai component in searching dai name - media: cx88-mpeg: clear interrupt status register before streaming video - uaccess: fix type mismatch warnings from access_ok() - media: Revert "media: em28xx: add missing em28xx_close_extension" - media: hdpvr: initialize dev->worker at hdpvr_register_videodev - mmc: host: Return an error when ->enable_sdio_irq() ops is missing - ALSA: hda/realtek: Add alc256-samsung-headphone fixup - [x86] KVM: x86/mmu: Check for present SPTE when clearing dirty bit in TDP MMU - [powerpc*] lib/sstep: Fix 'sthcx' instruction - [powerpc*] lib/sstep: Fix build errors with newer binutils - scsi: qla2xxx: Fix stuck session in gpdb - scsi: qla2xxx: Fix scheduling while atomic - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter - scsi: qla2xxx: Fix warning for missing error code - scsi: qla2xxx: Fix device reconnect in loop topology - scsi: qla2xxx: Add devids and conditionals for 28xx - scsi: qla2xxx: Check for firmware dump already collected - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() - scsi: qla2xxx: Fix disk failure to rediscover - scsi: qla2xxx: Fix incorrect reporting of task management failure - scsi: qla2xxx: Fix hang due to session stuck - scsi: qla2xxx: Fix missed DMA unmap for NVMe ls requests - scsi: qla2xxx: Fix N2N inconsistent PLOGI - scsi: qla2xxx: Reduce false trigger to login - scsi: qla2xxx: Use correct feature type field during RFF_ID processing - [arm64] platform: chrome: Split trace include file - [x86] KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - KVM: Prevent module exit until all VMs are freed - [x86] KVM: x86: fix sending PV IPI - [x86] KVM: SVM: fix panic on out-of-bounds guest IRQ - [x86] ASoC: SOF: Intel: Fix NULL ptr dereference when ENOMEM - ubifs: rename_whiteout: Fix double free for whiteout_ui->data - ubifs: Fix deadlock in concurrent rename whiteout and inode writeback - ubifs: Add missing iput if do_tmpfile() failed in rename whiteout - ubifs: setflags: Make dirtied_ino_d 8 bytes aligned - ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock() - ubifs: Fix to add refcount once page is set private - ubifs: rename_whiteout: correct old_dir size computing - wireguard: queueing: use CFI-safe ptr_ring cleanup function - wireguard: socket: free skb in send6 when ipv6 is disabled - wireguard: socket: ignore v6 endpoints when ipv6 is disabled - XArray: Fix xas_create_range() when multi-order entry present - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path (CVE-2022-28389) - can: mcba_usb: properly check endpoint type - XArray: Update the LRU list in xas_split() - rtc: check if __rtc_read_time was successful - gfs2: Make sure FITRIM minlen is rounded up to fs block size - [arm64] net: hns3: fix software vlan talbe of vlan 0 inconsistent with hardware - rxrpc: Fix call timer start racing with call destruction - [arm64] mailbox: imx: fix wakeup failure from freeze mode - watch_queue: Free the page array when watch_queue is dismantled - pinctrl: pinconf-generic: Print arguments for bias-pull-* - ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl - [arm*] iop32x: offset IRQ numbers by 1 - io_uring: fix memory leak of uid in files registration - [amd64,arm64] ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - [arm64] platform/chrome: cros_ec_typec: Check for EC device - can: isotp: restore accidentally removed MSG_PEEK feature - proc: bootconfig: Add null pointer check - [x86] ASoC: soc-compress: Change the check for codec_dai - batman-adv: Check ptr for NULL before reducing its refcnt - mm/mmap: return 1 from stack_guard_gap __setup() handler - mm/memcontrol: return 1 from cgroup.memory __setup() handler - mm/usercopy: return 1 from hardened_usercopy __setup() handler - bpf: Adjust BPF stack helper functions to accommodate skip > 0 - bpf: Fix comment for helper bpf_current_task_under_cgroup() - dt-bindings: mtd: nand-controller: Fix the reg property description - dt-bindings: mtd: nand-controller: Fix a comment in the examples - dt-bindings: spi: mxic: The interrupt property is not mandatory - [x86] ASoC: topology: Allow TLV control to be either read or write - docs: sysctl/kernel: add missing bit to panic_print - openvswitch: Fixed nd target mask field in the flow dump. - [x86] KVM: x86/mmu: do compare-and-exchange of gPTE via the user address (CVE-2022-1158) - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28388) - coredump: Snapshot the vmas in do_coredump - coredump: Remove the WARN_ON in dump_vma_snapshot - coredump/elf: Pass coredump_params into fill_note_info - coredump: Use the vma snapshot in fill_files_note - [arm64] Do not defer reserve_crashkernel() for platforms with no DMA memory zones - [arm64] PCI: xgene: Revert "PCI: xgene: Use inbound resources for setup" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.111 - ubifs: Rectify space amount budget for mkdir/tmpfile operations - gfs2: Check for active reservation in gfs2_release - gfs2: Fix gfs2_release for non-writers regression - gfs2: gfs2_setattr_size error path fix - [x86] KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs - [x86] KVM: x86/emulator: Emulate RDPID only if it is enabled in guest - drm: Add orientation quirk for GPD Win Max - ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111 - drm/amd/display: Add signal type check when verify stream backends same - drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj - ptp: replace snprintf with sysfs_emit - [armhf] ath11k: fix kernel panic during unload/load ath11k modules - ath11k: mhi: use mhi_sync_power_up() - bpf: Make dst_port field in struct bpf_sock 16-bit wide - scsi: mvsas: Replace snprintf() with sysfs_emit() - scsi: bfa: Replace snprintf() with sysfs_emit() - [arm64,armhf] power: supply: axp20x_battery: properly report current when discharging - mt76: dma: initialize skip_unmap in mt76_dma_rx_fill - cfg80211: don't add non transmitted BSS to 6GHz scanned channels - ipv6: make mc_forwarding atomic - [powerpc*] Set crashkernel offset to mid of RMA region - drm/amdgpu: Fix recursive locking warning - [arm64] PCI: aardvark: Fix support for MSI interrupts - [arm64] iommu/arm-smmu-v3: fix event handling soft lockup - usb: ehci: add pci device support for Aspeed platforms - tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH. - PCI: pciehp: Add Qualcomm quirk for Command Completed erratum - iwlwifi: mvm: Correctly set fragmented EBS - ipv4: Invalidate neighbour for broadcast address upon address addition - dm ioctl: prevent potential spectre v1 gadget - dm: requeue IO if mapping table not yet available - scsi: pm8001: Fix pm80xx_pci_mem_copy() interface - scsi: pm8001: Fix pm8001_mpi_task_abort_resp() - scsi: pm8001: Fix task leak in pm8001_send_abort_all() - scsi: pm8001: Fix tag leaks on error - scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req() - scsi: aha152x: Fix aha152x_setup() __setup handler return value - [arm64] scsi: hisi_sas: Free irq vectors in order for v3 HW - net/smc: correct settings of RMB window update limit - macvtap: advertise link netns via netlink - tuntap: add sanity checks about msg_controllen in sendmsg - Bluetooth: Fix not checking for valid hdev on bt_dev_{info,warn,err,dbg} - Bluetooth: use memset avoid memory leaks - bnxt_en: Eliminate unintended link toggle during FW reset - [mps64el,mipsel] fix fortify panic when copying asm exception handlers - scsi: libfc: Fix use after free in fc_exch_abts_resp() - can: isotp: set default value for N_As to 50 micro seconds - net: account alternate interface name memory - net: limit altnames to 64k total - net: sfp: add 2500base-X quirk for Lantech SFP module - [armhf] usb: dwc3: omap: fix "unbalanced disables for smps10_out1" on omap5evm - Bluetooth: Fix use after free in hci_send_acl - netlabel: fix out-of-bounds memory accesses - ceph: fix memory leak in ceph_readdir when note_last_dentry returns error - init/main.c: return 1 from handled __setup() functions - minix: fix bug when opening a file with O_DIRECT - [arm*] staging: vchiq_core: handle NULL result of find_service_by_handle - [arm64,armhf] phy: amlogic: meson8b-usb2: Use dev_err_probe() - w1: w1_therm: fixes w1_seq for ds28ea00 sensors - NFSv4.2: fix reference count leaks in _nfs42_proc_copy_notify() - NFSv4: Protect the state recovery thread against direct reclaim - xen: delay xen_hvm_init_time_ops() if kdump is boot on vcpu>=32 - [armhf] clk: ti: Preserve node in ti_dt_clocks_register() - clk: Enforce that disjoints limits are invalid - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - SUNRPC/xprt: async tasks mustn't block waiting for memory - SUNRPC: remove scheduling boost for "SWAPPER" tasks. - NFS: swap IO handling is slightly different for O_DIRECT IO - NFS: swap-out must always use STABLE writes. - [armhf] serial: samsung_tty: do not unlock port->lock for uart_write_wakeup() - virtio_console: eliminate anonymous module_init & module_exit - jfs: prevent NULL deref in diFree - SUNRPC: Fix socket waits for write buffer space - NFS: nfsiod should not block forever in mempool_alloc() - NFS: Avoid writeback threads getting stuck in mempool_alloc() - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - drm/amdgpu: fix off by one in amdgpu_gfx_kiq_acquire() - [x86] Drivers: hv: vmbus: Fix potential crash on module unload - Revert "NFSv4: Handle the special Linux file open access mode" - NFSv4: fix open failure with O_ACCMODE flag - ice: Clear default forwarding VSI during VSI release - net: ipv4: fix route with nexthop object delete warning - net: stmmac: Fix unset max_speed difference between DT and non-DT platforms - [armhf] drm/imx: imx-ldb: Check for null pointer after calling kmemdup - [armhf] drm/imx: Fix memory leak in imx_pd_connector_get_modes - sfc: Do not free an empty page_ring - RDMA/mlx5: Don't remove cache MRs when a delay is needed - [amd64] IB/rdmavt: add lock to call to rvt_error_qp to prevent a race condition - [arm64] dpaa2-ptp: Fix refcount leak in dpaa2_ptp_probe - ice: Set txq_teid to ICE_INVAL_TEID on ring creation - ice: Do not skip not enabled queues in ice_vc_dis_qs_msg - ipv6: Fix stats accounting in ip6_pkt_drop - ice: synchronize_rcu() when terminating rings - net: openvswitch: don't send internal clone attribute to the userspace. - net: openvswitch: fix leak of nested actions - rxrpc: fix a race in rxrpc_exit_net() - qede: confirm skb is allocated before using - bpf: Support dual-stack sockets in bpf_tcp_check_syncookie - drbd: Fix five use after free bugs in get_initial_state - io_uring: don't touch scm_fp_list after queueing skb - SUNRPC: Handle ENOMEM in call_transmit_status() - SUNRPC: Handle low memory situations in call_status() - SUNRPC: svc_tcp_sendmsg() should handle errors from xdr_alloc_bvec() - [armhf] iommu/omap: Fix regression in probe for NULL pointer dereference - [arm64] Add part number for Arm Cortex-A78AE - [arm64] Revert "mmc: sdhci-xenon: fix annoying 1.8V regulator warning" - [arm64,armhf] mmc: mmci: stm32: correctly check all elements of sg list - lz4: fix LZ4_decompress_safe_partial read out of bound - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm/mempolicy: fix mpol_new leak in shared_policy_replace - io_uring: fix race between timeout flush and removal (CVE-2022-29582) - [x86] pm: Save the MSR validity status at context setup - [x86] speculation: Restore speculation related MSRs during S3 resume - btrfs: fix qgroup reserve overflow the qgroup limit - btrfs: prevent subvol with swapfile from being deleted - [arm64] patch_text: Fixup last cpu should be master - [amd64] RDMA/hfi1: Fix use-after-free bug for mm struct - gpio: Restrict usage of GPIO chip irq members before initialization - [arm64] perf: qcom_l2_pmu: fix an incorrect NULL check on list iterator - [arm64,armhf] irqchip/gic-v3: Fix GICR_CTLR.RWP polling - drm/nouveau/pmu: Add missing callbacks for Tegra devices - mm: don't skip swap entry even if zap_details specified - cgroup: Use open-time credentials for process migraton perm checks (CVE-2021-4197) - [x86] Drivers: hv: vmbus: Replace smp_store_mb() with virt_store_mb() - [arm64,armhf] irqchip/gic, gic-v3: Prevent GSI to SGI translations - [powerpc*] Fix virt_addr_valid() for 64-bit Book3E & 32-bit https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.112 - [amd64] drm/amdkfd: Use drm_priv to pass VM from KFD to amdgpu - hamradio: defer 6pack kfree after unregister_netdev (CVE-2022-1195) - hamradio: remove needs_free_netdev to avoid UAF (CVE-2022-1195) - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the function - ACPI: processor idle: Check for architectural support for LPI - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups() - [arm64] drm/msm: Add missing put_task_struct() in debugfs path - SUNRPC: Fix the svc_deferred_event trace class - net/sched: flower: fix parsing of ethertype following VLAN header - veth: Ensure eth header is in skb's linear part - gpiolib: acpi: use correct format characters - net: mdio: Alphabetically sort header inclusion - net/sched: fix initialization order when updating chain 0 head - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link - net/sched: taprio: Check if socket flags are valid - cfg80211: hold bss_lock while updating nontrans_list - [arm64] drm/msm: Fix range size vs end confusion - [arm64] drm/msm/dsi: Use connector directly in msm_dsi_manager_connector_init() - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib() - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63 - scsi: pm80xx: Enable upper inbound, outbound queues - scsi: iscsi: Stop queueing during ep_disconnect - scsi: iscsi: Force immediate failure during shutdown - scsi: iscsi: Use system_unbound_wq for destroy_work - scsi: iscsi: Rel ref after iscsi_lookup_endpoint() - scsi: iscsi: Fix in-kernel conn failure handling - scsi: iscsi: Move iscsi_ep_disconnect() - scsi: iscsi: Fix offload conn cleanup when iscsid restarts - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart - sctp: Initialize daddr on peeled off socket - cifs: potential buffer overflow in handling symlinks - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure ordering" - drm/amd: Add USBC connector ID - btrfs: fix fallocate to use file_modified to update permissions consistently - btrfs: do not warn for free space inode in cow_file_range - drm/amd/display: fix audio format not updated after edid updated - drm/amd/display: FEC check in timing validation - drm/amd/display: Update VTEM Infopacket definition - drm/amdkfd: Fix Incorrect VMIDs passed to HWS - drm/amdgpu/vcn: improve vcn dpg stop procedure - [x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring buffer - scsi: target: tcmu: Fix possible page UAF - scsi: lpfc: Fix queue failures when recovering from PCI parity error - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024 - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output - [arm64] alternatives: mark patch_alternative() as `noinstr` - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso - drm/amd/display: Revert FEC check in validation - drm/amd/display: Fix allocate_mst_payload assert on resume - scsi: mvsas: Add PCI ID of RocketRaid 2640 - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan - drivers: net: slip: fix NPD bug in sl_tx_timeout() - mm, page_alloc: fix build_zonerefs_node() - mm: fix unexpected zeroed page mapping with zram swap - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded - ath9k: Properly clear TX status area before reporting to mac80211 - ath9k: Fix usage of driver-private space in tx_info - btrfs: fix root ref counts in error handling in btrfs_get_root_ref - btrfs: mark resumed async balance as writing - ALSA: hda/realtek: Add quirk for Clevo PD50PNT - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers - ALSA: pcm: Test for "silence" field in struct "pcm_format_data" - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size - ipv6: fix panic when forwarding a pkt with no in6 dev - drm/amd/display: don't ignore alpha property on pre-multiplied mode - drm/amdgpu: Enable gfxoff quirk on MacBook Pro - genirq/affinity: Consider that CPUs on nodes can be unbalanced - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation - dm integrity: fix memory corruption when tag_size is less than digest size - smp: Fix offline cpu check in flush_smp_call_function_queue() - timers: Fix warning condition in __run_timers() - dma-direct: avoid redundant memory sync for swiotlb - scsi: iscsi: Fix endpoint reuse regression - scsi: iscsi: Fix unbound endpoint error handling - ax25: add refcount in ax25_dev to avoid UAF bugs (CVE-2022-1204) - ax25: fix reference count leaks of ax25_dev (CVE-2022-1204) - ax25: fix UAF bugs of net_device caused by rebinding operation (CVE-2022-1204) - ax25: Fix refcount leaks caused by ax25_cb_del() (CVE-2022-1204) - ax25: fix UAF bug in ax25_send_control() - ax25: fix NPD bug in ax25_disconnect (CVE-2022-1199) - ax25: Fix NULL pointer dereferences in ax25 timers (CVE-2022-1205) - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.113 - tracing: Dump stacktrace trigger to the corresponding instance - gfs2: assign rgrp glock before compute_bitstructs - net/sched: cls_u32: fix netns refcount changes in u32_change() - ALSA: usb-audio: Clear MIDI port active flag after draining - ALSA: hda/realtek: Add quirk for Clevo NP70PNP - dm: fix mempool NULL pointer race when completing IO - [armhf] dmaengine: imx-sdma: Fix error checking in sdma_event_remap - esp: limit skb_page_frag_refill use to a single page - igc: Fix infinite loop in release_swfw_sync - igc: Fix BUG: scheduling while atomic - rxrpc: Restore removed timer deletion - net/smc: Fix sock leak when release after smc_shutdown() - net/packet: fix packet_sock xmit return value checking - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit() - ip6_gre: Fix skb_under_panic in __gre6_xmit() - net/sched: cls_u32: fix possible leak in u32_init_knode() - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu - ipv6: make ip6_rt_gc_expire an atomic_t - netlink: reset network and mac headers in netlink_dump() - net: stmmac: Use readl_poll_timeout_atomic() in atomic state - [arm64] mm: Remove [PUD|PMD]_TABLE_BIT from [pud|pmd]_bad() - [arm64] mm: fix p?d_leaf() - [x86] platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant - vxlan: fix error return code in vxlan_fdb_append - cifs: Check the IOCB_DIRECT flag, not O_DIRECT - [amd64,arm64] net: atlantic: Avoid out-of-bounds indexing - mt76: Fix undefined behavior due to shift overflowing the constant - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant - [arm64] drm/msm/mdp5: check the return of kzalloc() - [arm64] net: macb: Restart tx only if queue pointer is lagging - scsi: qedi: Fix failed disconnect handling - stat: fix inconsistency between struct stat and struct compat_stat - nvme: add a quirk to disable namespace identifiers - nvme-pci: disable namespace identifiers for Qemu controllers - mm, hugetlb: allow for "high" userspace addresses - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove() - ata: pata_marvell: Check the 'bmdma_addr' beforing reading - [amd64,arm64] net: atlantic: invert deep par in pm functions, preventing null derefs - openvswitch: fix OOB access in reserve_sfa_size() - gpio: Request interrupts after IRQ is initialized - ASoC: soc-dapm: fix two incorrect uses of list iterator - e1000e: Fix possible overflow in LTR decoding - [arm*] arm_pmu: Validate single/group leader events - sched/pelt: Fix attach_entity_load_avg() corner case - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare - [powerpc*] KVM: PPC: Fix TCE handling for VFIO - [arm*] drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage - [powerpc*] perf: Fix power9 event alternatives - ext4: fix fallocate to use file_modified to update permissions consistently - ext4: fix symlink file size not match to file content - ext4: fix use-after-free in ext4_search_dir - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - ext4, doc: fix incorrect h_reserved size - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: force overhead calculation if the s_overhead_cluster makes no sense - can: isotp: stop timeout monitoring when no first frame was sent - jbd2: fix a potential race while discarding reserved buffers after an abort - block/compat_ioctl: fix range check in BLKGETSIZE . [ Salvatore Bonaccorso ] * Bump ABI to 14 * [rt] Drop "tcp: Remove superfluous BH-disable around" * [rt] Update "tracing: Merge irqflags + preempt counter." for upstream changes in 5.10.113 * [x86] pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests (Closes: #1006346) * floppy: disable FDRAWCMD by default linux-signed-amd64 (5.10.127+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.127-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.121 - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9520 laptop - ALSA: hda/realtek - Fix microphone noise on ASUS TUF B550M-PLUS - ALSA: usb-audio: Cancel pending work at closing a MIDI substream - USB: serial: option: add Quectel BG95 modem - USB: new quirk for Dell Gen 2 devices - usb: dwc3: gadget: Move null pinter check to proper place - usb: core: hcd: Add support for deferring roothub registration - cifs: when extending a file with falloc we should make files not-sparse - xhci: Allow host runtime PM as default for Intel Alder Lake N xHCI - Fonts: Make font size unsigned in font_desc - [x86] MCE/AMD: Fix memory leak when threshold_create_bank() fails - [w86] perf/x86/intel: Fix event constraints for ICL - ptrace/xtensa: Replace PT_SINGLESTEP with TIF_SINGLESTEP - ptrace: Reimplement PTRACE_KILL by always sending SIGKILL - btrfs: add "0x" prefix for unsupported optional features - btrfs: repair super block num_devices automatically - [amd64] iommu/vt-d: Add RPLS to quirk list to skip TE disabling - drm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modes - mwifiex: add mutex lock for call in mwifiex_dfs_chan_sw_work_queue - b43legacy: Fix assigning negative value to unsigned variable - b43: Fix assigning negative value to unsigned variable - ipw2x00: Fix potential NULL dereference in libipw_xmit() - ipv6: fix locking issues with loops over idev->addr_list - fbcon: Consistently protect deferred_takeover with console_lock() - [x86] platform/uv: Update TSC sync state for UV5 - ACPICA: Avoid cache flush inside virtual machines - drm/komeda: return early if drm_universal_plane_init() fails. - rcu-tasks: Fix race in schedule and flush work - rcu: Make TASKS_RUDE_RCU select IRQ_WORK - sfc: ef10: Fix assigning negative value to unsigned variable - ALSA: jack: Access input_dev under mutex - spi: spi-rspi: Remove setting {src,dst}_{addr,addr_width} based on DMA direction - drm/amd/pm: fix double free in si_parse_power_table() - ath9k: fix QCA9561 PA bias level - media: venus: hfi: avoid null dereference in deinit - media: pci: cx23885: Fix the error handling in cx23885_initdev() - media: cx25821: Fix the warning when removing the module - md/bitmap: don't set sb values if can't pass sanity check - mmc: jz4740: Apply DMA engine limits to maximum segment size - drivers: mmc: sdhci_am654: Add the quirk to set TESTCD bit - scsi: megaraid: Fix error check return value of register_chrdev() - scsi: ufs: Use pm_runtime_resume_and_get() instead of pm_runtime_get_sync() - scsi: lpfc: Fix resource leak in lpfc_sli4_send_seq_to_ulp() - ath11k: disable spectral scan during spectral deinit - ASoC: Intel: bytcr_rt5640: Add quirk for the HP Pro Tablet 408 - drm/plane: Move range check for format_count earlier - drm/amd/pm: fix the compile warning - ath10k: skip ath10k_halt during suspend for driver state RESTARTING - [arm64] compat: Do not treat syscall number as ESR_ELx for a bad syscall - drm: msm: fix error check return value of irq_of_parse_and_map() - ipv6: Don't send rs packets to the interface of ARPHRD_TUNNEL - net/mlx5: fs, delete the FTE when there are no rules attached to it - ASoC: dapm: Don't fold register value changes into notifications - mlxsw: spectrum_dcb: Do not warn about priority changes - mlxsw: Treat LLDP packets as control - drm/amdgpu/ucode: Remove firmware load type check in amdgpu_ucode_free_bo - HID: bigben: fix slab-out-of-bounds Write in bigben_probe - ASoC: tscs454: Add endianness flag in snd_soc_component_driver - net: remove two BUG() from skb_checksum_help() - [s390x] preempt: disable __preempt_count_add() optimization for PROFILE_ALL_BRANCHES - perf/amd/ibs: Cascade pmu init functions' return value - spi: stm32-qspi: Fix wait_cmd timeout in APM mode - dma-debug: change allocation mode from GFP_NOWAIT to GFP_ATIOMIC - ACPI: PM: Block ASUS B1400CEAE from suspend to idle by default - ipmi:ssif: Check for NULL msg when handling events and messages - ipmi: Fix pr_fmt to avoid compilation issues - rtlwifi: Use pr_warn instead of WARN_ONCE - media: rga: fix possible memory leak in rga_probe - media: coda: limit frame interval enumeration to supported encoder frame sizes - media: imon: reorganize serialization - media: cec-adap.c: fix is_configuring state - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - ASoC: rt5645: Fix errorenous cleanup order - nbd: Fix hung on disconnect request if socket is closed before - net: phy: micrel: Allow probing without .driver_data - media: exynos4-is: Fix compile warning - ASoC: max98357a: remove dependency on GPIOLIB - ASoC: rt1015p: remove dependency on GPIOLIB - can: mcp251xfd: silence clang's -Wunaligned-access warning - [x86] microcode: Add explicit CPU vendor dependency - rxrpc: Return an error to sendmsg if call failed - rxrpc, afs: Fix selection of abort codes - eth: tg3: silence the GCC 12 array-bounds warning - gfs2: use i_lock spin_lock for inode qadata - IB/rdmavt: add missing locks in rvt_ruc_loopback - [arm64] dts: qcom: msm8994: Fix BLSP[12]_DMA channels count - PM / devfreq: rk3399_dmc: Disable edev on remove() - crypto: ccree - use fine grained DMA mapping dir - soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc - fs: jfs: fix possible NULL pointer dereference in dbFree() - [powerpc*] fadump: Fix fadump to work with a different endian capture kernel - fat: add ratelimit to fat*_ent_bread() - pinctrl: renesas: rzn1: Fix possible null-ptr-deref in sh_pfc_map_resources() - ARM: versatile: Add missing of_node_put in dcscb_init - ARM: dts: exynos: add atmel,24c128 fallback to Samsung EEPROM - ARM: hisi: Add missing of_node_put after of_find_compatible_node - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - tracing: incorrect isolate_mote_t cast in mm_vmscan_lru_isolate - [powerpc*] powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr - [powerpc*] xics: fix refcount leak in icp_opal_init() - [powerpc*] powernv: fix missing of_node_put in uv_init() - macintosh/via-pmu: Fix build failure when CONFIG_INPUT is disabled - [powerpc*] iommu: Add missing of_node_put in iommu_init_early_dart - [amd64] RDMA/hfi1: Prevent panic when SDMA is disabled - drm: fix EDID struct for old ARM OABI format - dt-bindings: display: sitronix, st7735r: Fix backlight in example - ath11k: acquire ab->base_lock in unassign when finding the peer by addr - ath9k: fix ar9003_get_eepmisc - drm/edid: fix invalid EDID extension block filtering - drm/bridge: adv7511: clean up CEC adapter when probe fails - spi: qcom-qspi: Add minItems to interconnect-names - ASoC: mediatek: Fix error handling in mt8173_max98090_dev_probe - ASoC: mediatek: Fix missing of_node_put in mt2701_wm8960_machine_probe - [x86] delay: Fix the wrong asm constraint in delay_loop() - drm/ingenic: Reset pixclock rate when parent clock rate changes - drm/mediatek: Fix mtk_cec_mask() - [arm*] drm/vc4: hvs: Reset muxes at probe time - [arm*] drm/vc4: txp: Don't set TXP_VSTART_AT_EOF - [arm*] drm/vc4: txp: Force alpha to be 0xff if it's disabled - bpf: Fix excessive memory allocation in stack_map_alloc() - nl80211: show SSID for P2P_GO interfaces - drm/komeda: Fix an undefined behavior bug in komeda_plane_add() - drm: mali-dp: potential dereference of null pointer - spi: spi-ti-qspi: Fix return value handling of wait_for_completion_timeout - scftorture: Fix distribution of short handler delays - net: dsa: mt7530: 1G can also support 1000BASE-X link mode - NFC: NULL out the dev->rfkill to prevent UAF - efi: Add missing prototype for efi_capsule_setup_info - target: remove an incorrect unmap zeroes data deduction - drbd: fix duplicate array initializer - EDAC/dmc520: Don't print an error for each unconfigured interrupt line - mtd: rawnand: denali: Use managed device resources - HID: hid-led: fix maximum brightness for Dream Cheeky - HID: elan: Fix potential double free in elan_input_configured - drm/bridge: Fix error handling in analogix_dp_probe - sched/fair: Fix cfs_rq_clock_pelt() for throttled cfs_rq - spi: img-spfi: Fix pm_runtime_get_sync() error checking - cpufreq: Fix possible race in cpufreq online error path - ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix - media: hantro: Empty encoder capture buffers by default - drm/panel: simple: Add missing bus flags for Innolux G070Y2-L01 - ALSA: pcm: Check for null pointer of pointer substream before dereferencing it - inotify: show inotify mask flags in proc fdinfo - fsnotify: fix wrong lockdep annotations - of: overlay: do not break notify on NOTIFY_{OK|STOP} - drm/msm/dpu: adjust display_v_end for eDP and DP - scsi: ufs: qcom: Fix ufs_qcom_resume() - scsi: ufs: core: Exclude UECxx from SFR dump list - mtd: spi-nor: core: Check written SR value in spi_nor_write_16bit_sr_and_check() - [x86] pm: Fix false positive kmemleak report in msr_build_context() - mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() - [x86] speculation: Add missing prototype for unpriv_ebpf_notify() - ASoC: rk3328: fix disabling mclk on pclk probe failure - perf tools: Add missing headers needed by util/data.h - drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume - drm/msm/dp: stop event kernel thread when DP unbind - drm/msm/dp: fix error check return value of irq_of_parse_and_map() - drm/msm/dsi: fix error checks and return values for DSI xmit functions - drm/msm/hdmi: check return value after calling platform_get_resource_byname() - drm/msm/hdmi: fix error check return value of irq_of_parse_and_map() - drm/msm: add missing include to msm_drv.c - drm/panel: panel-simple: Fix proper bpc for AM-1280800N3TZQW-T00H - drm/rockchip: vop: fix possible null-ptr-deref in vop_bind() - perf tools: Use Python devtools for version autodetection rather than runtime - virtio_blk: fix the discard_granularity and discard_alignment queue limits - [x86] Fix return value of __setup handlers - irqchip/exiu: Fix acknowledgment of edge triggered interrupts - irqchip/aspeed-i2c-ic: Fix irq_of_parse_and_map() return value - irqchip/aspeed-scu-ic: Fix irq_of_parse_and_map() return value - [x86] mm: Cleanup the control_va_addr_alignment() __setup handler - [arm64] fix types in copy_highpage() - regulator: core: Fix enable_count imbalance with EXCLUSIVE_GET - drm/msm/dp: fix event thread stuck in wait_event after kthread_stop() - drm/msm/mdp5: Return error code in mdp5_pipe_release when deadlock is detected - drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected - drm/msm: return an error pointer in msm_gem_prime_get_sg_table() - media: uvcvideo: Fix missing check to determine if element is found in list - iomap: iomap_write_failed fix - spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname() - Revert "cpufreq: Fix possible race in cpufreq online error path" - regulator: qcom_smd: Fix up PM8950 regulator configuration - perf/amd/ibs: Use interrupt regs ip for stack unwinding - ath11k: Don't check arvif->is_started before sending management frames - ASoC: fsl: Fix refcount leak in imx_sgtl5000_probe - ASoC: mxs-saif: Fix refcount leak in mxs_saif_probe - regulator: pfuze100: Fix refcount leak in pfuze_parse_regulators_dt - ASoC: samsung: Use dev_err_probe() helper - ASoC: samsung: Fix refcount leak in aries_audio_probe - scripts/faddr2line: Fix overlapping text section failures - media: aspeed: Fix an error handling path in aspeed_video_probe() - media: exynos4-is: Fix PM disable depth imbalance in fimc_is_probe - media: st-delta: Fix PM disable depth imbalance in delta_probe - media: exynos4-is: Change clk_disable to clk_disable_unprepare - media: pvrusb2: fix array-index-out-of-bounds in pvr2_i2c_core_init - media: vsp1: Fix offset calculation for plane cropping - Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout - Bluetooth: Interleave with allowlist scan - Bluetooth: L2CAP: Rudimentary typo fixes - Bluetooth: LL privacy allow RPA - Bluetooth: use inclusive language in HCI role comments - Bluetooth: use inclusive language when filtering devices - Bluetooth: use hdev lock for accept_list and reject_list in conn req - nvme: set dma alignment to dword - lsm,selinux: pass flowi_common instead of flowi to the LSM hooks - sctp: read sk->sk_bound_dev_if once in sctp_rcv() - net: hinic: add missing destroy_workqueue in hinic_pf_to_mgmt_init - ASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_* - media: ov7670: remove ov7670_power_off from ov7670_remove - media: staging: media: rkvdec: Make use of the helper function devm_platform_ioremap_resource() - media: rkvdec: h264: Fix dpb_valid implementation - media: rkvdec: h264: Fix bit depth wrap in pps packet - ext4: reject the 'commit' option on ext2 filesystems - drm/msm/a6xx: Fix refcount leak in a6xx_gpu_init - drm: msm: fix possible memory leak in mdp5_crtc_cursor_set() - [x86] sev: Annotate stack change in the #VC handler - drm/msm/dpu: handle pm_runtime_get_sync() errors in bind path - [x86] drm/i915: Fix CFI violation with show_dynamic_id() - thermal/drivers/bcm2711: Don't clamp temperature at zero - thermal/drivers/broadcom: Fix potential NULL dereference in sr_thermal_probe - thermal/drivers/core: Use a char pointer for the cooling device name - thermal/core: Fix memory leak in __thermal_cooling_device_register() - thermal/drivers/imx_sc_thermal: Fix refcount leak in imx_sc_thermal_probe - ASoC: wm2000: fix missing clk_disable_unprepare() on error in wm2000_anc_transition() - NFC: hci: fix sleep in atomic context bugs in nfc_hci_hcp_message_tx - ASoC: max98090: Move check for invalid values before casting in max98090_put_enab_tlv() - net: stmmac: selftests: Use kcalloc() instead of kzalloc() - net: stmmac: fix out-of-bounds access in a selftest - hv_netvsc: Fix potential dereference of NULL pointer - rxrpc: Fix listen() setting the bar too high for the prealloc rings - rxrpc: Don't try to resend the request if we're receiving the reply - rxrpc: Fix overlapping ACK accounting - rxrpc: Don't let ack.previousPacket regress - rxrpc: Fix decision on when to generate an IDLE ACK - net: huawei: hinic: Use devm_kcalloc() instead of devm_kzalloc() - hinic: Avoid some over memory allocation - net/smc: postpone sk_refcnt increment in connect() - arm64: dts: rockchip: Move drive-impedance-ohm to emmc phy on rk3399 - memory: samsung: exynos5422-dmc: Avoid some over memory allocation - ARM: dts: suniv: F1C100: fix watchdog compatible - soc: qcom: smp2p: Fix missing of_node_put() in smp2p_parse_ipc - soc: qcom: smsm: Fix missing of_node_put() in smsm_parse_ipc - PCI: cadence: Fix find_first_zero_bit() limit - PCI: rockchip: Fix find_first_zero_bit() limit - PCI: dwc: Fix setting error return on MSI DMA mapping failure - ARM: dts: ci4x10: Adapt to changes in imx6qdl.dtsi regarding fec clocks - soc: qcom: llcc: Add MODULE_DEVICE_TABLE() - [x86] KVM: nVMX: Leave most VM-Exit info fields unmodified on failed VM-Entry - [x86] KVM: nVMX: Clear IDT vectoring on nested VM-Exit for double/triple fault - platform/chrome: cros_ec: fix error handling in cros_ec_register() - ARM: dts: imx6dl-colibri: Fix I2C pinmuxing - platform/chrome: Re-introduce cros_ec_cmd_xfer and use it for ioctls - can: xilinx_can: mark bit timing constants as const - ARM: dts: stm32: Fix PHY post-reset delay on Avenger96 - ARM: dts: bcm2835-rpi-zero-w: Fix GPIO line name for Wifi/BT - ARM: dts: bcm2837-rpi-cm3-io3: Fix GPIO line names for SMPS I2C - ARM: dts: bcm2837-rpi-3-b-plus: Fix GPIO line name of power LED - ARM: dts: bcm2835-rpi-b: Fix GPIO line names - misc: ocxl: fix possible double free in ocxl_file_register_afu - crypto: marvell/cesa - ECB does not IV - gpiolib: of: Introduce hook for missing gpio-ranges - pinctrl: bcm2835: implement hook for missing gpio-ranges - arm: mediatek: select arch timer for mt7629 - powerpc/fadump: fix PT_LOAD segment for boot memory area - mfd: ipaq-micro: Fix error check return value of platform_get_irq() - scsi: fcoe: Fix Wstringop-overflow warnings in fcoe_wwn_from_mac() - firmware: arm_scmi: Fix list protocols enumeration in the base protocol - nvdimm: Fix firmware activation deadlock scenarios - nvdimm: Allow overwrite in the presence of disabled dimms - pinctrl: mvebu: Fix irq_of_parse_and_map() return value - drivers/base/node.c: fix compaction sysfs file leak - dax: fix cache flush on PMD-mapped pages - drivers/base/memory: fix an unlikely reference counting issue in __add_memory_block() - powerpc/8xx: export 'cpm_setbrg' for modules - pinctrl: renesas: core: Fix possible null-ptr-deref in sh_pfc_map_resources() - powerpc/idle: Fix return value of __setup() handler - powerpc/4xx/cpm: Fix return value of __setup() handler - ASoC: atmel-pdmic: Remove endianness flag on pdmic component - ASoC: atmel-classd: Remove endianness flag on class d component - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - ipc/mqueue: use get_tree_nodev() in mqueue_get_tree() - PCI: imx6: Fix PERST# start-up sequence - tty: fix deadlock caused by calling printk() under tty_port->lock - crypto: sun8i-ss - rework handling of IV - crypto: sun8i-ss - handle zero sized sg - crypto: cryptd - Protect per-CPU resource by disabling BH. - Input: sparcspkr - fix refcount leak in bbc_beep_probe - PCI/AER: Clear MULTI_ERR_COR/UNCOR_RCV bits - hwrng: omap3-rom - fix using wrong clk_disable() in omap_rom_rng_runtime_resume() - [powerpc*] 64: Only WARN if __pa()/__va() called with bad addresses - [powerpc*] perf: Fix the threshold compare group constraint for power9 - macintosh: via-pmu and via-cuda need RTC_LIB - powerpc/fsl_rio: Fix refcount leak in fsl_rio_setup - mfd: davinci_voicecodec: Fix possible null-ptr-deref davinci_vc_probe() - mailbox: forward the hrtimer if not queued and under a lock - [amd64] RDMA/hfi1: Prevent use of lock before it is initialized - Input: stmfts - do not leave device disabled in stmfts_input_open - OPP: call of_node_put() on error path in _bandwidth_supported() - f2fs: fix dereference of stale list iterator after loop body - iommu/mediatek: Add list_del in mtk_iommu_remove - i2c: at91: use dma safe buffers - cpufreq: mediatek: add missing platform_driver_unregister() on error in mtk_cpufreq_driver_init - cpufreq: mediatek: Use module_init and add module_exit - cpufreq: mediatek: Unregister platform device on exit - [mips*] Loongson: Use hwmon_device_register_with_groups() to register hwmon - i2c: at91: Initialize dma_buf in at91_twi_xfer() - dmaengine: idxd: Fix the error handling path in idxd_cdev_register() - NFS: Do not report EINTR/ERESTARTSYS as mapping errors - NFS: fsync() should report filesystem errors over EINTR/ERESTARTSYS - NFS: Do not report flush errors in nfs_write_end() - NFS: Don't report errors from nfs_pageio_complete() more than once - NFSv4/pNFS: Do not fail I/O when we fail to allocate the pNFS layout - video: fbdev: clcdfb: Fix refcount leak in clcdfb_of_vram_setup - dmaengine: stm32-mdma: remove GISR1 register - dmaengine: stm32-mdma: rework interrupt handler - dmaengine: stm32-mdma: fix chan initialization in stm32_mdma_irq_handler() - iommu/amd: Increase timeout waiting for GA log enablement - i2c: npcm: Fix timeout calculation - i2c: npcm: Correct register access width - i2c: npcm: Handle spurious interrupts - i2c: rcar: fix PM ref counts in probe error paths - perf c2c: Use stdio interface if slang is not supported - perf jevents: Fix event syntax error caused by ExtSel - f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count() - f2fs: fix to do sanity check on block address in f2fs_do_zero_range() - f2fs: fix to clear dirty inode in f2fs_evict_inode() - f2fs: fix deadloop in foreground GC - f2fs: don't need inode lock for system hidden quota - f2fs: fix to do sanity check on total_data_blocks - f2fs: fix fallocate to use file_modified to update permissions consistently - f2fs: fix to do sanity check for inline inode - wifi: mac80211: fix use-after-free in chanctx code - iwlwifi: mvm: fix assert 1F04 upon reconfig - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages - efi: Do not import certificates from UEFI Secure Boot for T2 Macs - bfq: Split shared queues on move between cgroups - bfq: Update cgroup information before merging bio - bfq: Track whether bfq_group is still online - ext4: fix use-after-free in ext4_rename_dir_prepare - ext4: fix warning in ext4_handle_inode_extension - ext4: fix bug_on in ext4_writepages - ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state - ext4: fix bug_on in __es_tree_search - ext4: verify dir block before splitting it (CVE-2022-1184) - ext4: avoid cycles in directory h-tree (CVE-2022-1184) - ACPI: property: Release subnode properties with data nodes - tracing: Fix potential double free in create_var_ref() - PCI/PM: Fix bridge_d3_blacklist[] Elo i2 overwrite of Gigabyte X299 - PCI: qcom: Fix runtime PM imbalance on probe errors - PCI: qcom: Fix unbalanced PHY init on probe errors - mm, compaction: fast_find_migrateblock() should return pfn in the target zone - [s390x] perf: obtain sie_block from the right address - dlm: fix plock invalid read - dlm: fix missing lkb refcount handling - ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock - scsi: dc395x: Fix a missing check on list iterator - scsi: ufs: qcom: Add a readl() to make sure ref_clk gets enabled - drm/amdgpu/cs: make commands with 0 chunks illegal behaviour. - drm/etnaviv: check for reaped mapping in etnaviv_iommu_unmap_gem - drm/nouveau/clk: Fix an incorrect NULL check on list iterator - drm/nouveau/kms/nv50-: atom: fix an incorrect NULL check on list iterator - drm/bridge: analogix_dp: Grab runtime PM reference for DP-AUX - [x86] drm/i915/dsi: fix VBT send packet port selection for ICL+ - md: fix an incorrect NULL check in does_sb_need_changing - md: fix an incorrect NULL check in md_reload_sb - mtd: cfi_cmdset_0002: Move and rename chip_check/chip_ready/chip_good_for_write - mtd: cfi_cmdset_0002: Use chip_ready() for write on S29GL064N - media: coda: Fix reported H264 profile - media: coda: Add more H264 levels for CODA960 - [amd64] RDMA/hfi1: Fix potential integer multiplication overflow errors - csky: patch_text: Fixup last cpu should be master - irqchip/armada-370-xp: Do not touch Performance Counter Overflow on A375, A38x, A39x - irqchip: irq-xtensa-mx: fix initial IRQ affinity - cfg80211: declare MODULE_FIRMWARE for regulatory.db - mac80211: upgrade passive scan to active scan on DFS channels after beacon rx - um: chan_user: Fix winch_tramp() return value - um: Fix out-of-bounds read in LDT setup - kexec_file: drop weak attribute from arch_kexec_apply_relocations[_add] - ftrace: Clean up hash direct_functions on register failures - iommu/msm: Fix an incorrect NULL check on list iterator - nodemask.h: fix compilation error with GCC12 - hugetlb: fix huge_pmd_unshare address update - xtensa/simdisk: fix proc_read_simdisk() - rtl818x: Prevent using not initialized queues - ASoC: rt5514: Fix event generation for "DSP Voice Wake Up" control - carl9170: tx: fix an incorrect use of list iterator - stm: ltdc: fix two incorrect NULL checks on list iterator - bcache: improve multithreaded bch_btree_check() - bcache: improve multithreaded bch_sectors_dirty_init() - bcache: remove incremental dirty sector counting for bch_sectors_dirty_init() - bcache: avoid journal no-space deadlock by reserving 1 journal bucket - serial: pch: don't overwrite xmit->buf[0] by x_char - tilcdc: tilcdc_external: fix an incorrect NULL check on list iterator - gma500: fix an incorrect NULL check on list iterator - arm64: dts: qcom: ipq8074: fix the sleep clock frequency - phy: qcom-qmp: fix struct clk leak on probe errors - ARM: dts: s5pv210: Remove spi-cs-high on panel in Aries - ARM: pxa: maybe fix gpio lookup tables - SMB3: EBADF/EIO errors in rename/open caused by race condition in smb2_compound_op - docs/conf.py: Cope with removal of language=None in Sphinx 5.0.0 - dt-bindings: gpio: altera: correct interrupt-cells - vdpasim: allow to enable a vq repeatedly - blk-iolatency: Fix inflight count imbalances and IO hangs on offline - coresight: core: Fix coresight device probe failure issue - phy: qcom-qmp: fix reset-controller leak on probe errors - net: ipa: fix page free in ipa_endpoint_trans_release() - net: ipa: fix page free in ipa_endpoint_replenish_one() - xfs: set inode size after creating symlink - xfs: sync lazy sb accounting on quiesce of read-only mounts - xfs: fix chown leaking delalloc quota blocks when fssetxattr fails - xfs: fix incorrect root dquot corruption error when switching group/project quota types - xfs: restore shutdown check in mapped write fault path - xfs: force log and push AIL to clear pinned inodes when aborting mount - xfs: consider shutdown in bmapbt cursor delete assert - xfs: assert in xfs_btree_del_cursor should take into account error - kseltest/cgroup: Make test_stress.sh work if run interactively - thermal/core: fix a UAF bug in __thermal_cooling_device_register() - thermal/core: Fix memory leak in the error path - bfq: Avoid merging queues with different parents - bfq: Drop pointless unlock-lock pair - bfq: Remove pointless bfq_init_rq() calls - bfq: Get rid of __bio_blkcg() usage - bfq: Make sure bfqg for which we are queueing requests is online - block: fix bio_clone_blkg_association() to associate with proper blkcg_gq - Revert "random: use static branch for crng_ready()" - RDMA/rxe: Generate a completion for unsupported/invalid opcode - [mips*] IP27: Remove incorrect `cpu_has_fpu' override - [mips*] IP30: Remove incorrect `cpu_has_fpu' override - ext4: only allow test_dummy_encryption when supported - md: bcache: check the return value of kzalloc() in detached_dev_do_request() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.122 - pcmcia: db1xxx_ss: restrict to MIPS_DB1XXX boards - staging: greybus: codecs: fix type confusion of list iterator variable - iio: adc: ad7124: Remove shift from scan_type - tty: goldfish: Use tty_port_destroy() to destroy port - tty: serial: owl: Fix missing clk_disable_unprepare() in owl_uart_probe - tty: n_tty: Restore EOF push handling behavior - tty: serial: fsl_lpuart: fix potential bug when using both of_alias_get_id and ida_simple_get - usb: usbip: fix a refcount leak in stub_probe() - usb: usbip: add missing device lock on tweak configuration cmd - USB: storage: karma: fix rio_karma_init return - usb: musb: Fix missing of_node_put() in omap2430_probe - staging: fieldbus: Fix the error handling path in anybuss_host_common_probe() - pwm: lp3943: Fix duty calculation in case period was clamped - rpmsg: qcom_smd: Fix irq_of_parse_and_map() return value - usb: dwc3: pci: Fix pm_runtime_get_sync() error checking - misc: fastrpc: fix an incorrect NULL check on list iterator - firmware: stratix10-svc: fix a missing check on list iterator - usb: typec: mux: Check dev_set_name() return value - iio: adc: stmpe-adc: Fix wait_for_completion_timeout return value check - iio: proximity: vl53l0x: Fix return value check of wait_for_completion_timeout - iio: adc: sc27xx: fix read big scale voltage not right - iio: adc: sc27xx: Fine tune the scale calibration values - rpmsg: qcom_smd: Fix returning 0 if irq_of_parse_and_map() fails - phy: qcom-qmp: fix pipe-clock imbalance on power-on failure - serial: sifive: Report actual baud base rather than fixed 115200 - coresight: cpu-debug: Replace mutex with mutex_trylock on panic notifier - extcon: ptn5150: Add queue work sync before driver release - soc: rockchip: Fix refcount leak in rockchip_grf_init - rtc: mt6397: check return value after calling platform_get_resource() - serial: meson: acquire port->lock in startup() - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - serial: digicolor-usart: Don't allow CS5-6 - serial: rda-uart: Don't allow CS5-6 - serial: txx9: Don't allow CS5-6 - serial: sh-sci: Don't allow CS5-6 - serial: sifive: Sanitize CSIZE and c_iflag - serial: st-asc: Sanitize CSIZE and correct PARENB for CS7 - serial: stm32-usart: Correct CSIZE, bits, and parity - firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle - bus: ti-sysc: Fix warnings for unbind for serial - driver: base: fix UAF when driver_attach failed - driver core: fix deadlock in __device_attach - watchdog: rti-wdt: Fix pm_runtime_get_sync() error checking - watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe - ASoC: fsl_sai: Fix FSL_SAI_xDR/xFR definition - clocksource/drivers/oxnas-rps: Fix irq_of_parse_and_map() return value - [s390x] crypto: fix scatterwalk_unmap() callers in AES-GCM - net: sched: fixed barrier to prevent skbuff sticking in qdisc backlog - net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() - net: ethernet: ti: am65-cpsw-nuss: Fix some refcount leaks - net: dsa: mv88e6xxx: Fix refcount leak in mv88e6xxx_mdios_register - modpost: fix removing numeric suffixes - jffs2: fix memory leak in jffs2_do_fill_super - ubi: fastmap: Fix high cpu usage of ubi_bgt by making sure wl_pool not empty - ubi: ubi_create_volume: Fix use-after-free when volume creation failed - bpf: Fix probe read error in ___bpf_prog_run() - net/smc: fixes for converting from "struct smc_cdc_tx_pend **" to "struct smc_wr_tx_pend_priv *" - nfp: only report pause frame configuration for physical device - sfc: fix considering that all channels have TX queues - sfc: fix wrong tx channel offset with efx_separate_tx_channels - net/mlx5: Don't use already freed action pointer - net/mlx5: correct ECE offset in query qp output - net/mlx5e: Update netdev features after changing XDP state - net: sched: add barrier to fix packet stuck problem for lockless qdisc - tcp: tcp_rtx_synack() can be called from process context - gpio: pca953x: use the correct register address to do regcache sync - afs: Fix infinite loop found by xfstest generic/676 - scsi: sd: Fix potential NULL pointer dereference - tipc: check attribute length for bearer name - driver core: Fix wait_for_device_probe() & deferred_probe_timeout interaction - perf c2c: Fix sorting in percent_rmt_hitm_cmp() - dmaengine: idxd: set DMA_INTERRUPT cap bit - mips: cpc: Fix refcount leak in mips_cpc_default_phys_base - bootconfig: Make the bootconfig.o as a normal object file - tracing: Fix sleeping function called from invalid context on RT kernel - tracing: Avoid adding tracer option before update_tracer_options - iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() - iommu/arm-smmu-v3: check return value after calling platform_get_resource() - f2fs: remove WARN_ON in f2fs_is_valid_blkaddr - i2c: cadence: Increase timeout per message if necessary - dmaengine: zynqmp_dma: In struct zynqmp_dma_chan fix desc_size data type - NFSv4: Don't hold the layoutget locks across multiple RPC calls - video: fbdev: hyperv_fb: Allow resolutions with size > 64 MB for Gen1 - video: fbdev: pxa3xx-gcu: release the resources correctly in pxa3xx_gcu_probe/remove() - xprtrdma: treat all calls not a bcall when bc_serv is NULL - netfilter: nat: really support inet nat without l3 address - netfilter: nf_tables: delete flowtable hooks via transaction list - powerpc/kasan: Force thread size increase with KASAN - netfilter: nf_tables: always initialize flowtable hook list in transaction - ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe - netfilter: nf_tables: release new hooks on unsupported flowtable flags - netfilter: nf_tables: memleak flow rule from commit path - netfilter: nf_tables: bail out early if hardware offload is not supported - xen: unexport __init-annotated xen_xlate_map_ballooned_pages() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - bpf, arm64: Clear prog->jited_len along prog->jited - net: dsa: lantiq_gswip: Fix refcount leak in gswip_gphy_fw_list - net/mlx4_en: Fix wrong return value on ioctl EEPROM query failure - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - net: mdio: unexport __init-annotated mdio_bus_init() - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - net: ipv6: unexport __init-annotated seg6_hmac_init() - net/mlx5: Rearm the FW tracer after each tracer event - net/mlx5: fs, fail conflicting actions - ip_gre: test csum_start instead of transport header - net: altera: Fix refcount leak in altera_tse_mdio_create - drm: imx: fix compiler warning with gcc-12 - iio: dummy: iio_simple_dummy: check the return value of kstrdup() - staging: rtl8712: fix a potential memory leak in r871xu_drv_init() - iio: st_sensors: Add a local lock for protecting odr - tty: synclink_gt: Fix null-pointer-dereference in slgt_clean() - tty: Fix a possible resource leak in icom_probe - drivers: staging: rtl8192u: Fix deadlock in ieee80211_beacons_stop() - drivers: staging: rtl8192e: Fix deadlock in rtllib_beacons_stop() - USB: host: isp116x: check return value after calling platform_get_resource() - drivers: tty: serial: Fix deadlock in sa1100_set_termios() - drivers: usb: host: Fix deadlock in oxu_bus_suspend() - USB: hcd-pci: Fully suspend across freeze/thaw cycle - sysrq: do not omit current cpu when showing backtrace of all active CPUs - usb: dwc2: gadget: don't reset gadget's driver->bus - misc: rtsx: set NULL intfdata when probe fails - extcon: Modify extcon device to be created after driver data is set - clocksource/drivers/sp804: Avoid error on multiple instances - staging: rtl8712: fix uninit-value in usb_read8() and friends - staging: rtl8712: fix uninit-value in r871xu_drv_init() - serial: msm_serial: disable interrupts in __msm_console_write() - kernfs: Separate kernfs_pr_cont_buf and rename_lock. - watchdog: wdat_wdt: Stop watchdog when rebooting the system - md: protect md_unregister_thread from reentrancy - scsi: myrb: Fix up null pointer access on myrb_cleanup() - Revert "net: af_key: add check for pfkey_broadcast in function pfkey_process" - ceph: allow ceph.dir.rctime xattr to be updatable - drm/radeon: fix a possible null pointer dereference - modpost: fix undefined behavior of is_arm_mapping_symbol() - [x86] cpu: Elide KCSAN for cpu_has() and friends - jump_label,noinstr: Avoid instrumentation for JUMP_LABEL=n builds - nbd: call genl_unregister_family() first in nbd_cleanup() - nbd: fix race between nbd_alloc_config() and module removal - nbd: fix io hung while disconnecting device - [s390x] gmap: voluntarily schedule during key setting - cifs: version operations for smb20 unneeded when legacy support disabled - nodemask: Fix return values to be unsigned - vringh: Fix loop descriptors check in the indirect cases - scripts/gdb: change kernel config dumping method - ALSA: hda/conexant - Fix loopback issue with CX20632 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo Yoga DuetITL 2021 - cifs: return errors during session setup during reconnects - cifs: fix reconnect on smb3 mount types - ata: libata-transport: fix {dma|pio|xfer}_mode sysfs files - mmc: block: Fix CQE recovery reset success - net: phy: dp83867: retrigger SGMII AN when link change - nfc: st21nfca: fix incorrect validating logic in EVT_TRANSACTION - nfc: st21nfca: fix memory leaks in EVT_TRANSACTION handling - nfc: st21nfca: fix incorrect sizing calculations in EVT_TRANSACTION - ixgbe: fix bcast packets Rx on VF after promisc removal - ixgbe: fix unexpected VLAN Rx in promisc mode on VF - Input: bcm5974 - set missing URB_NO_TRANSFER_DMA_MAP urb flag - drm/bridge: analogix_dp: Support PSR-exit to disable transition - drm/atomic: Force bridge self-refresh-exit on CRTC switch - [powerpc*] 32: Fix overread/overwrite of thread_struct via ptrace (CVE-2022-32981) - [powerpc*] mm: Switch obsolete dssall to .long - interconnect: qcom: sc7180: Drop IP0 interconnects - interconnect: Restore sync state by ignoring ipa-virt in provider count - md/raid0: Ignore RAID0 layout if the second zone has only one device - PCI: qcom: Fix pipe clock imbalance - zonefs: fix handling of explicit_open option on mount - dmaengine: idxd: add missing callback function to support DMA_INTERRUPT - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.123 - [x86] Mitigate Processor MMIO Stale Data vulnerabilities (CVE-2022-21123, CVE-2022-21125, CVE-2022-21166): + Documentation: Add documentation for Processor MMIO Stale Data + x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug + x86/speculation: Add a common function for MD_CLEAR mitigation update + x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data + x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations + x86/speculation/mmio: Enable CPU Fill buffer clearing on idle + x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data + x86/speculation/srbds: Update SRBDS mitigation selection + x86/speculation/mmio: Reuse SRBDS mitigation for SBDS + KVM: x86/speculation: Disable Fill buffer clear within guests + x86/speculation/mmio: Print SMT warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.124 - 9p: missing chunk of "fs/9p: Don't update file type when updating file attributes" - nfsd: Replace use of rwsem with errseq_t - bpf: Fix incorrect memory charge cost calculation in stack_map_alloc() - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - quota: Prevent memory allocation recursion while holding dq_lock - [armhf] ASoC: es8328: Fix event generation for deemphasis control - Input: soc_button_array - also add Lenovo Yoga Tablet2 1051F to dmi_use_low_level_irq - scsi: vmw_pvscsi: Expand vcpuHint to 16 bits - scsi: lpfc: Fix port stuck in bypassed state after LIP in PT2PT topology - scsi: lpfc: Allow reduced polling rate for nvme_admin_async_event cmd completion - scsi: ipr: Fix missing/incorrect resource cleanup in error case - scsi: pmcraid: Fix missing resource cleanup in error case - ALSA: hda/realtek - Add HW8326 support - virtio-mmio: fix missing put_device() when vm_cmdline_parent registration failed - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - random: credit cpu and bootloader seeds by default - pNFS: Don't keep retrying if the server replied NFS4ERR_LAYOUTUNAVAILABLE - pNFS: Avoid a live lock condition in pnfs_update_layout() - [x86] clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() - i40e: Fix adding ADQ filter to TC0 - i40e: Fix calculating the number of queue pairs - i40e: Fix call trace in setup_tx_descriptors - [x86] Drivers: hv: vmbus: Release cpu lock in error case - [x86] drm/i915/reset: Fix error_state_read ptr + offset use - nvme: use sysfs_emit instead of sprintf - nvme: add device name to warning in uuid_show() - net: ax25: Fix deadlock caused by skb_recv_datagram in ax25_recvmsg - [arm64] ftrace: fix branch range checks - [arm64] ftrace: consistently handle PLTs. - block: Fix handling of offline queues in blk_mq_alloc_request_hctx() - faddr2line: Fix overlapping text section failures, the sequel - [arm64,armhf] irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions - [arm64,armhf] irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - i2c: designware: Use standard optional ref clock implementation - [x86] mei: me: add raptor lake point S DID - [x86] comedi: vmk80xx: fix expression for tx buffer size - USB: serial: option: add support for Cinterion MV31 with new baseline - USB: serial: io_ti: add Agilent E5805A support - [arm*] usb: dwc2: Fix memory leak in dwc2_hcd_init - serial: 8250: Store to lsr_save_flags after lsr read - dm mirror log: round up region bitmap size to BITS_PER_LONG - drm/amd/display: Cap OLED brightness per max frame-average luminance - ext4: fix bug_on ext4_mb_use_inode_pa - ext4: make variable "count" signed - ext4: add reserved GDT blocks check - [arm64] KVM: arm64: Don't read a HW interrupt pending state in user context - [x86] KVM: x86: Account a variety of miscellaneous allocations - [x86] KVM: SVM: Use kzalloc for sev ioctl interfaces to prevent kernel data leak - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machine - virtio-pci: Remove wrong address verification in vp_del_vqs() - dma-direct: don't over-decrypt memory - net/sched: act_police: more accurate MTU policing - net: openvswitch: fix misuse of the cached connection on tuple changes - Revert "PCI: Make pci_enable_ptm() private" - igc: Enable PCIe PTM - [arm64] clk: imx8mp: fix usb_root_clk parent https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.125 - [s390x] mm: use non-quiescing sske for KVM switch to keyed guest - zonefs: fix zonefs_iomap_begin() for reads - usb: gadget: u_ether: fix regression in setting fixed MAC address - tcp: add some entropy in __inet_hash_connect() - tcp: use different parts of the port_offset for index and offset (CVE-2022-1012) - tcp: add small random increments to the source port (CVE-2022-1012) - tcp: dynamically allocate the perturb table used by source ports (CVE-2022-1012) - tcp: increase source port perturb table to 2^16 (CVE-2022-1012, CVE-2022-32296) - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012) - serial: core: Initialize rs485 RTS polarity already on probe - [arm64] mm: Don't invalidate FROM_DEVICE buffers at start of DMA transfer - io_uring: add missing item types for various requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.126 - io_uring: use separate list entry for iopoll requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.127 - vt: drop old FONT ioctls - random: schedule mix_interrupt_randomness() less often - random: quiet urandom warning ratelimit suppression message - ALSA: hda/via: Fix missing beep setup - ALSA: hda/conexant: Fix missing beep setup - ALSA: hda/realtek: Add mute LED quirk for HP Omen laptop - ALSA: hda/realtek - ALC897 headset MIC no sound - ALSA: hda/realtek: Apply fixup for Lenovo Yoga Duet 7 properly - ALSA: hda/realtek: Add quirk for Clevo PD70PNT - ALSA: hda/realtek: Add quirk for Clevo NS50PU - net: openvswitch: fix parsing of nw_proto for IPv6 fragments - btrfs: add error messages to all unrecognized mount options - mmc: sdhci-pci-o2micro: Fix card detect by dealing with debouncing - [armhf] mtd: rawnand: gpmi: Fix setting busy timeout setting - ata: libata: add qc->flags in ata_qc_complete_template tracepoint - dm era: commit metadata in postsuspend after worker stops - dm mirror log: clear log bits up to BITS_PER_LONG boundary - USB: serial: option: add Telit LE910Cx 0x1250 composition - USB: serial: option: add Quectel EM05-G modem - USB: serial: option: add Quectel RM500K module support - [arm64] drm/msm: Fix double pm_runtime_disable() call - netfilter: nftables: add nft_parse_register_load() and use it - netfilter: nftables: add nft_parse_register_store() and use it - netfilter: use get_random_u32 instead of prandom - scsi: scsi_debug: Fix zone transition to full condition - [arm64] drm/msm: use for_each_sgtable_sg to iterate over scatterlist - bpf: Fix request_sock leak in sk lookup helpers - [arm64,armhf] drm/sun4i: Fix crash during suspend after component bind failure - [amd64] bpf, x86: Fix tail call count offset calculation on bpf2bpf call - phy: aquantia: Fix AN when higher speeds than 1G are not advertised - tipc: simplify the finalize work queue - tipc: fix use-after-free Read in tipc_named_reinit - igb: fix a use-after-free issue in igb_clean_tx_ring - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - [arm64] drm/msm/mdp4: Fix refcount leak in mdp4_modeset_init_intf - [arm64] drm/msm/dp: check core_initialized before disable interrupts at dp_display_unbind() - [arm64] drm/msm/dp: fixes wrong connection state caused by failure of link train - [arm64] drm/msm/dp: deinitialize mainlink if link training failed - [arm64] drm/msm/dp: promote irq_hpd handle to handle link training correctly - [arm64] drm/msm/dp: fix connect/disconnect handled at irq_hpd - erspan: do not assume transport header is always set - x86/xen: Remove undefined behavior in setup_features() - afs: Fix dynamic root getattr - ice: ethtool: advertise 1000M speeds properly - regmap-irq: Fix a bug in regmap_irq_enable() for type_in_mask chips - igb: Make DMA faster when CPU is active on the PCIe link - virtio_net: fix xdp_rxq_info bug after suspend/resume - nvme: centralize setting the timeout in nvme_alloc_request - nvme: split nvme_alloc_request() - nvme: mark nvme_setup_passsthru() inline - nvme: don't check nvme_req flags for new req - nvme-pci: allocate nvme_command within driver pdu - nvme-pci: add NO APST quirk for Kioxia device - nvme: move the Samsung X5 quirk entry to the core quirks - [s390x] cpumf: Handle events cycles and instructions identical - iio: mma8452: fix probe fail when device tree compatible is used. - iio: adc: vf610: fix conversion mode sysfs node name - xhci: turn off port power in shutdown - xhci-pci: Allow host runtime PM as default for Intel Raptor Lake xHCI - xhci-pci: Allow host runtime PM as default for Intel Meteor Lake xHCI - [arm64,armhf] usb: chipidea: udc: check request status before setting device address - f2fs: attach inline_data after setting compression - iio:accel:bma180: rearrange iio trigger get and register - iio:accel:mxc4005: rearrange iio trigger get and register - iio: accel: mma8452: ignore the return value of reset operation - iio: gyro: mpu3050: Fix the error handling in mpu3050_power_up() - iio: imu: inv_icm42600: Fix broken icm42600 (chip id 0 value) - iio: adc: axp288: Override TS pin bias current for some models - iio: adc: adi-axi-adc: Fix refcount leak in adi_axi_adc_attach_client - [powerpc*] Enable execve syscall exit tracepoint - [powerpc*] rtas: Allow ibm,platform-dump RTAS call with null buffer address - [powerpc*] powernv: wire up rng during setup_arch - [armhf] exynos: Fix refcount leak in exynos_map_pmu - modpost: fix section mismatch check for exported init/exit sections - random: update comment from copy_to_user() -> copy_to_iter() - [powerpc*] pseries: wire up rng during setup_arch() . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.120-rt70 * [rt] Drop "crypto: cryptd - add a lock instead preempt_disable/local_bh_disable" patch * Bump ABI to 16 . [ Ben Hutchings ] * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off * [armel,armhf] crypto: Enable optimised implementations (see #922204): - Enable CRYPTO_SHA256_ARM, CRYPTO_SHA512_ARM as modules - [armhf] Enable SHA1_ARM_NEON, CRYPTO_SHA1_ARM_CE, CRYPTO_SHA2_ARM_CE, CRYPTO_AES_ARM_BS, CRYPTO_AES_ARM_CE, CRYPTO_GHASH_ARM_CE, CRYPTO_CRCT10DIF_ARM_CE, CRYPTO_CRC32_ARM_CE as modules linux-signed-amd64 (5.10.120+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.120-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.114 - USB: quirks: add a Realtek card reader - USB: quirks: add STRING quirk for VCOM device - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions - xhci: Enable runtime PM on second Alderlake controller - xhci: stop polling roothubs after shutdown - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms - iio: dac: ad5592r: Fix the missing return value. - iio: dac: ad5446: Fix read_raw not returning set value - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on() - iio: imu: inv_icm42600: Fix I2C init possible nack - usb: misc: fix improper handling of refcount in uss720_probe() - [arm64,x86] usb: typec: ucsi: Fix reuse of completion structure - [arm64,x86] usb: typec: ucsi: Fix role swapping - usb: gadget: uvc: Fix crash when encoding data for usb request - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind() - [arm64,armhf] usb: dwc3: Try usb-role-switch first in dwc3_drd_init - [arm64,armhf] usb: dwc3: core: Fix tx/rx threshold settings - [arm64,armhf] usb: dwc3: core: Only handle soft-reset in DCTL - [arm64,armhf] usb: dwc3: gadget: Return proper request status - [arm*] usb: phy: generic: Get the vbus supply - [arm64,armhf] serial: imx: fix overrun interrupts in DMA mode - serial: 8250: Also set sticky MCR bits in console restoration - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - [arm64,armhf] arch_topology: Do not set llc_sibling if llc_id is invalid - hex2bin: make the function hex_to_bin constant-time - hex2bin: fix access beyond string end - iocost: don't reset the inuse weight of under-weighted debtors - video: fbdev: udlfb: properly check endpoint type - iio:imu:bmi160: disable regulator in error path - USB: Fix xhci event ring dequeue pointer ERDP update issue - [armhf] phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe - [armhf] phy: samsung: exynos5250-sata: fix missing device put in probe error paths - [armhf] OMAP2+: Fix refcount leak in omap_gic_of_init - [armhf] bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific - [armhf] phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks - [armhf] dts: am3517-evm: Fix misc pinmuxing - [armhf] dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35 - ipvs: correctly print the memory size of ip_vs_conn_tab - [armhf] pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_link_register_of - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook - [arm64,armhf] pinctrl: rockchip: fix RK3308 pinmux bits - tcp: md5: incorrect tcp_header_len for incoming connections - [armhf] pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested - tcp: ensure to use the most recently sent skb when filling the rate sample - wireguard: device: check for metadata_dst with skb_valid_dst() - sctp: check asoc strreset_chunk in sctp_generate_reconf_event - [arm64] dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock - [arm64] net: hns3: modify the return code of hclge_get_ring_chain_from_mbx - [arm64] net: hns3: add validity check for message data length - [arm64] net: hns3: add return value for mailbox handling in PF - net/smc: sync err code when tcp connection was refused - ip_gre: Make o_seqno start from 0 in native mode - ip6_gre: Make o_seqno start from 0 in native mode - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - tcp: make sure treq->af_specific is initialized - [arm64,armhf] bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create() - [arm64,armhf] clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource() - [arm64] net: bcmgenet: hide status block before TX timestamping - net: phy: marvell10g: fix return value on error - bnx2x: fix napi API usage sequence - [arm64,armhf] net: fec: add missing of_node_put() in fec_enet_init_stop_mode() - ixgbe: ensure IPsec VF<->PF compatibility - tcp: fix F-RTO may not work correctly when receiving DSACK - [x86] ASoC: Intel: soc-acpi: correct device endpoints for max98373 - ext4: fix bug_on in start_this_handle during umount filesystem - [amd64] x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - cifs: destage any unwritten data to the server before calling copychunk_write - [x86] drivers: net: hippi: Fix deadlock in rr_close() - zonefs: Fix management of open zones - zonefs: Clear inode information flags on inode creation - [x86] drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses - [armhf] net: ethernet: stmmac: fix write to sgmii_adapter_base - [x86] thermal: int340x: Fix attr.show callback prototype - [x86] cpu: Load microcode during restore_processor_state() - tty: n_gsm: fix restart handling via CLD command - tty: n_gsm: fix decoupled mux resource - tty: n_gsm: fix mux cleanup after unregister tty device - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2 - tty: n_gsm: fix malformed counter for out of frame data - netfilter: nft_socket: only do sk lookups when indev is available - tty: n_gsm: fix insufficient txframe size - tty: n_gsm: fix wrong DLCI release order - tty: n_gsm: fix missing explicit ldisc flush - tty: n_gsm: fix wrong command retry handling - tty: n_gsm: fix wrong command frame length field encoding - tty: n_gsm: fix reset fifo race condition - tty: n_gsm: fix incorrect UA handling - tty: n_gsm: fix software flow control handling https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.115 - [mips*] Fix CP0 counter erratum detection for R4k CPUs - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC - mmc: core: Set HS clock speed before sending HS CMD13 - gpiolib: of: fix bounds check for 'gpio-reserved-ranges' - [x86] KVM: x86/svm: Account for family 17h event renumberings in amd_pmc_perf_hw_id - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - firewire: fix potential uaf in outbound_phy_packet_callback() - firewire: remove check of list iterator against head past the loop body - firewire: core: extend card->lock in fw_core_handle_bus_reset - net: stmmac: disable Split Header (SPH) for Intel platforms - genirq: Synchronize interrupt thread startup - ASoC: da7219: Fix change notifications for tone generator frequency - [s390x] dasd: fix data corruption for ESE devices - [s390x] dasd: prevent double format of tracks for ESE devices - [s390x] dasd: Fix read for ESE with blksize < 4k - [s390x] dasd: Fix read inconsistency for ESE DASD devices - can: isotp: remove re-binding of bound socket - nfc: replace improper check device_is_registered() in netlink related functions (CVE-2022-1974) - NFC: netlink: fix sleep in atomic bug when firmware download timeout (CVE-2022-1975) - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled (irq_mask not set) - hwmon: (adt7470) Fix warning on module removal - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback - net/mlx5e: Fix trust state reset in reload - net/mlx5e: Don't match double-vlan packets if cvlan is not set - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft release - net/mlx5e: Fix the calling of update_buffer_lossy() API - net/mlx5: Avoid double clear or set of sync reset requested - NFSv4: Don't invalidate inode attributes on delegation return - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in sun8i_dwmac_register_mdio_mux() - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt() - hinic: fix bug of wq out of bound access - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag - bnxt_en: Fix unnecessary dropping of RX packets - [arm64,armhf] smsc911x: allow using IRQ0 - btrfs: always log symlinks in full mode - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has architectural PMU - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is advertised - rcu: Fix callbacks processing time limit retaining cond_resched() - rcu: Apply callbacks processing time limit only on softirq - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern (CVE-2022-0494) - dm: interlock pending dm_io and dm_wait_for_bios_completion - [arm64] PCI: aardvark: Clear all MSIs at setup - [arm64] PCI: aardvark: Fix reading MSI interrupt number - mmc: rtsx: add 74 Clocks in power on flow https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.116 - regulator: consumer: Add missing stubs to regulator/consumer.h - block: drbd: drbd_nl: Make conversion to 'enum drbd_ret_code' explicit - nfp: bpf: silence bitwise vs. logical OR warning - Bluetooth: Fix the creation of hdev->name - mm: fix missing cache flush for all tail pages of compound page - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.117 - batman-adv: Don't skb_split skbuffs with frag_list - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing - hwmon: (tmp401) Add OF device ID table - mac80211: Reset MBSSID parameters upon connection - net: Fix features skip in for_each_netdev_feature() - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in hardware when deleted - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0 - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving VCAP filters - ipv4: drop dst in multicast routing path - drm/nouveau: Fix a potential theorical leak in nouveau_get_backlight_name() - netlink: do not reset transport header in netlink_recvmsg() - sfc: Use swap() instead of open coding it - net: sfc: fix memory leak due to ptp channel - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection - nfs: fix broken handling of the softreval mount option - dim: initialize all struct fields - [s390x] ctcm: fix variable dereferenced before check - [s390x] ctcm: fix potential memory leak - [s390x] lcs: fix variable dereferenced before check - net/sched: act_pedit: really ensure the skb is writable - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down() - net/smc: non blocking recvmsg() return -EAGAIN when no data and signal_pending - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe() - gfs2: Fix filesystem block deallocation for short writes - hwmon: (f71882fg) Fix negative temperature - ASoC: max98090: Reject invalid values in custom control put() - ASoC: max98090: Generate notifications on changes for custom control - ASoC: ops: Validate input values in snd_soc_put_volsw_range() - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT - tcp: resalt the secret every 10 seconds (CVE-2022-1012) - firmware_loader: use kernel credentials when reading firmware - tty: n_gsm: fix mux activation issues in gsm_config() - usb: cdc-wdm: fix reading stuck on device close - USB: serial: pl2303: add device id for HP LM930 Display - USB: serial: qcserial: add support for Sierra Wireless EM7590 - USB: serial: option: add Fibocom L610 modem - USB: serial: option: add Fibocom MA510 modem - ceph: fix setting of xattrs on async created inodes - drm/nouveau/tegra: Stop using iommu_present() - i40e: i40e_main: fix a missing check on list iterator - [amd64,arm64] net: atlantic: always deep reset on pm op, fixing up my null deref regression - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp() - [x86] drm/vmwgfx: Initialize drm_mode_fb_cmd2 - SUNRPC: Clean up scheduling of autoclose - SUNRPC: Prevent immediate close+reconnect - SUNRPC: Don't call connect() more than once on a TCP socket - SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() (CVE-2022-28893) - net: phy: Fix race condition on link status change - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of linear map - ping: fix address binding wrt vrf - usb: gadget: uvc: rename function to be more consistent - usb: gadget: uvc: allow for application to cleanly shutdown - io_uring: always use original task when preparing req identity (CVE-2022-1786) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.118 - io_uring: always grab file table for deferred statx - floppy: use a statically allocated error counter - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" - igc: Remove _I_PHY_ID checking - igc: Remove phy->type checking - igc: Update I226_K device ID - rtc: fix use-after-free on device removal - [arm64] rtc: pcf2127: fix bug when reading alarm registers - Input: add bounds checking to input_set_capability() - nvme-pci: add quirks for Samsung X5 SSDs - gfs2: Disable page faults during lockless buffered reads - [arm64,armhf] rtc: sun6i: Fix time overflow handling - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions - ALSA: hda/realtek: Enable headset mic on Lenovo P360 - [s390x] pci: improve zpci_dev reference counting - nvme-multipath: fix hang when disk goes live over reconnect - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - fs: fix an infinite loop in iomap_fiemap - drbd: remove usage of list iterator variable after loop - [arm64] platform/chrome: cros_ec_debugfs: detach log reader wq from devm - [armel,armhf] 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() - nilfs2: fix lockdep warnings in page operations for btree nodes - nilfs2: fix lockdep warnings during disk space reclamation - Revert "swiotlb: fix info leak with DMA_FROM_DEVICE" - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" (CVE-2022-0854) - ALSA: usb-audio: Restore Rane SL-1 quirk - [i386] ALSA: wavefront: Proper check of get_user() error - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729) - selinux: fix bad cleanup on error in hashtab_duplicate() - Fix double fget() in vhost_net_set_backend() - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is stable - [arm64] paravirt: Use RCU read locks to guard stolen_time - [arm64] mte: Ensure the cleared tags are visible before setting the PTE - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - libceph: fix potential use-after-free on linger ping and resends - drm/dp/mst: fix a possible memory leak in fetch_monitor_name() - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl - [arm64] net: macb: Increment rx bd head after allocating skb and buffer - net: evaluate net.ipvX.conf.all.disable_policy and disable_xfrm - xfrm: Add possibility to set the default to block if we have no policy - net: xfrm: fix shift-out-of-bounce - xfrm: make user policy API complete - xfrm: notify default policy on update - xfrm: fix dflt policy check when there is no policy configured - xfrm: rework default policy structure - xfrm: fix "disable_policy" flag use when arriving from different devices - net/sched: act_pedit: sanitize shift argument before usage - [x86] net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - [x86] net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - ice: fix possible under reporting of ethtool Tx and Rx statistics - net/qla3xxx: Fix a test in ql_reset_work() - net/mlx5e: Properly block LRO when XDP is enabled - net: af_key: add check for pfkey_broadcast in function pfkey_process - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15 - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - igb: skip phy status check where unavailable - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity - scsi: qla2xxx: Fix missed DMA unmap for aborted commands - mac80211: fix rx reordering with non explicit / psmp ack policy - nl80211: validate S1G channel width - nl80211: fix locking in nl80211_set_tx_bitrate_mask() - ethernet: tulip: fix missing pci_disable_device() on error in tulip_init_one() - [amd64,arm64] net: atlantic: fix "frag[0] not initialized" - [amd64,arm64] net: atlantic: reduce scope of is_rsc_complete - [amd64,arm64] net: atlantic: add check for MAX_SKB_FRAGS - [amd64,arm64] net: atlantic: verify hw_head_ lies within TX buffer ring - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group - afs: Fix afs_getattr() to refetch file status if callback break occurred - include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.119 - lockdown: also lock down previous kgdb use (CVE-2022-21499) - staging: rtl8723bs: prevent ->Ssid overflow in rtw_wx_set_scan() - [x86] KVM: x86: Properly handle APF vs disabled LAPIC situation - [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID (CVE-2022-1789) - tcp: change source port randomizarion at connect() time - secure_seq: use the 64 bits of the siphash for port offset calculation (CVE-2022-1012) - ACPI: sysfs: Make sparse happy about address space in use - ACPI: sysfs: Fix BERT error region memory mapping - random: avoid arch_get_random_seed_long() when collecting IRQ randomness - random: remove dead code left over from blocking pool - MAINTAINERS: co-maintain random.c - MAINTAINERS: add git tree for random.c - crypto: lib/blake2s - Move selftest prototype into header file - crypto: blake2s - define shash_alg structs using macros - [amd64] crypto: x86/blake2s - define shash_alg structs using macros - crypto: blake2s - remove unneeded includes - crypto: blake2s - move update and final logic to internal/blake2s.h - crypto: blake2s - share the "shash" API boilerplate code - crypto: blake2s - optimize blake2s initialization - crypto: blake2s - add comment for blake2s_state fields - crypto: blake2s - adjust include guard naming - crypto: blake2s - include instead of - lib/crypto: blake2s: include as built-in - lib/crypto: blake2s: move hmac construction into wireguard - lib/crypto: sha1: re-roll loops to reduce code size - lib/crypto: blake2s: avoid indirect calls to compression function for Clang CFI - random: document add_hwgenerator_randomness() with other input functions - random: remove unused irq_flags argument from add_interrupt_randomness() - random: use BLAKE2s instead of SHA1 in extraction - random: do not sign extend bytes for rotation when mixing - random: do not re-init if crng_reseed completes before primary init - random: mix bootloader randomness into pool - random: harmonize "crng init done" messages - random: use IS_ENABLED(CONFIG_NUMA) instead of ifdefs - random: early initialization of ChaCha constants - random: avoid superfluous call to RDRAND in CRNG extraction - random: don't reset crng_init_cnt on urandom_read() - random: fix typo in comments - random: cleanup poolinfo abstraction - random: cleanup integer types - random: remove incomplete last_data logic - random: remove unused extract_entropy() reserved argument - random: rather than entropy_store abstraction, use global - random: remove unused OUTPUT_POOL constants - random: de-duplicate INPUT_POOL constants - random: prepend remaining pool constants with POOL_ - random: cleanup fractional entropy shift constants - random: access input_pool_data directly rather than through pointer - random: selectively clang-format where it makes sense - random: simplify arithmetic function flow in account() - random: continually use hwgenerator randomness - random: access primary_pool directly rather than through pointer - random: only call crng_finalize_init() for primary_crng - random: use computational hash for entropy extraction - random: simplify entropy debiting - random: use linear min-entropy accumulation crediting - random: always wake up entropy writers after extraction - random: make credit_entropy_bits() always safe - random: remove use_input_pool parameter from crng_reseed() - random: remove batched entropy locking - random: fix locking in crng_fast_load() - random: use RDSEED instead of RDRAND in entropy extraction - random: get rid of secondary crngs - random: inline leaves of rand_initialize() - random: ensure early RDSEED goes through mixer on init - random: do not xor RDRAND when writing into /dev/random - random: absorb fast pool into input pool after fast load - random: use simpler fast key erasure flow on per-cpu keys - random: use hash function for crng_slow_load() - random: make more consistent use of integer types - random: remove outdated INT_MAX >> 6 check in urandom_read() - random: zero buffer after reading entropy from userspace - random: fix locking for crng_init in crng_reseed() - random: tie batched entropy generation to base_crng generation - random: remove ifdef'd out interrupt bench - random: remove unused tracepoints - random: add proper SPDX header - random: deobfuscate irq u32/u64 contributions - random: introduce drain_entropy() helper to declutter crng_reseed() - random: remove useless header comment - random: remove whitespace and reorder includes - random: group initialization wait functions - random: group crng functions - random: group entropy extraction functions - random: group entropy collection functions - random: group userspace read/write functions - random: group sysctl functions - random: rewrite header introductory comment - random: defer fast pool mixing to worker - random: do not take pool spinlock at boot - random: unify early init crng load accounting - random: check for crng_init == 0 in add_device_randomness() - random: pull add_hwgenerator_randomness() declaration into random.h - random: clear fast pool, crng, and batches in cpuhp bring up - random: round-robin registers as ulong, not u32 - random: only wake up writers after zap if threshold was passed - random: cleanup UUID handling - random: unify cycles_t and jiffies usage and types - random: do crng pre-init loading in worker rather than irq - random: give sysctl_random_min_urandom_seed a more sensible value - random: don't let 644 read-only sysctls be written to - random: replace custom notifier chain with standard one - random: use SipHash as interrupt entropy accumulator - random: make consistent usage of crng_ready() - random: reseed more often immediately after booting - random: check for signal and try earlier when generating entropy - random: skip fast_init if hwrng provides large chunk of entropy - random: treat bootloader trust toggle the same way as cpu trust toggle - random: re-add removed comment about get_random_{u32,u64} reseeding - random: mix build-time latent entropy into pool at init - random: do not split fast init input in add_hwgenerator_randomness() - random: do not allow user to keep crng key around on stack - random: check for signal_pending() outside of need_resched() check - random: check for signals every PAGE_SIZE chunk of /dev/[u]random - random: allow partial reads if later user copies fail - random: make random_get_entropy() return an unsigned long - random: document crng_fast_key_erasure() destination possibility - random: fix sysctl documentation nits - init: call time_init() before rand_initialize() - [s390x] define get_cycles macro for arch-override - [powerpc*] define get_cycles macro for arch-override - timekeeping: Add raw clock fallback for random_get_entropy() - [mips*] use fallback for random_get_entropy() instead of just c0 random - [arm*] use fallback for random_get_entropy() instead of zero - [x86] tsc: Use fallback for random_get_entropy() instead of zero - random: insist on random_get_entropy() existing in order to simplify - random: do not use batches when !crng_ready() - random: use first 128 bits of input as fast init - random: do not pretend to handle premature next security model - random: order timer entropy functions below interrupt functions - random: do not use input pool from hard IRQs - random: help compiler out with fast_mix() by using simpler arguments - siphash: use one source of truth for siphash permutations - random: use symbolic constants for crng_init states - random: avoid initializing twice in credit race - random: move initialization out of reseeding hot path - random: remove ratelimiting for in-kernel unseeded randomness - random: use proper jiffies comparison macro - random: handle latent entropy and command line from random_init() - random: credit architectural init the exact amount - random: use static branch for crng_ready() - random: remove extern from functions in header - random: use proper return types on get_random_{int,long}_wait() - random: make consistent use of buf and len - random: move initialization functions out of hot pages - random: move randomize_page() into mm where it belongs - random: unify batched entropy implementations - random: convert to using fops->read_iter() - random: convert to using fops->write_iter() - random: wire up fops->splice_{read,write}_iter() - random: check for signals after page of pool writes - ALSA: ctxfi: Add SB046x PCI ID https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.120 - percpu_ref_init(): clean ->percpu_count_ref on failure - net: af_key: check encryption module availability consistency - nfc: pn533: Fix buggy cleanup order - [armhf] net: ftgmac100: Disable hardware checksum on AST2600 - [x86] i2c: ismt: Provide a DMA buffer for Interrupt Cause Logging - [arm64] drivers: i2c: thunderx: Allow driver to work with ACPI defined TWSI controllers - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: make poll_usage boolean and annotate its access - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - cfg80211: set custom regdomain after wiphy registration - assoc_array: Fix BUG_ON during garbage collect - io_uring: don't re-import iovecs from callbacks - io_uring: fix using under-expanded iters - xfs: detect overflows in bmbt records - xfs: show the proper user quota options - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks - xfs: fix an ABBA deadlock in xfs_rename - xfs: Fix CIL throttle hang when CIL space used going backwards - exfat: check if cluster num is valid - crypto: drbg - prepare for more fine-grained tracking of seeding state - crypto: drbg - track whether DRBG was seeded with !rng_is_initialized() - crypto: drbg - move dynamic ->reseed_threshold adjustments to __drbg_seed() - crypto: drbg - make reseeding from get_random_bytes() synchronous - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - netfilter: conntrack: re-fetch conntrack after insertion - [x86] kvm: Alloc dummy async #PF token outside of raw spinlock - [x86] kvm: use correct GFP flags for preemption disabled - [x86] KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) - [arm64] crypto: caam - fix i.MX6SX entropy delay value - crypto: ecrdsa - Fix incorrect use of vli_cmp - zsmalloc: fix races between asynchronous zspage free and page migration - Bluetooth: hci_qca: Use del_timer_sync() before freeing - dm integrity: fix error code in dm_integrity_ctr() - dm crypt: make printing of the key constant-time - dm stats: add cond_resched when looping over entries - dm verity: set DM_TARGET_IMMUTABLE feature flag - raid5: introduce MD_BROKEN - HID: multitouch: Add support for Google Whiskers Touchpad - HID: multitouch: add quirks to enable Lenovo X12 trackpoint - tpm: Fix buffer access in tpm2_get_tpm_pt() - docs: submitting-patches: Fix crossref to 'The canonical patch format' - NFS: Memory allocation failures are not server fatal errors - NFSD: Fix possible sleep during nfsd4_release_lockowner() - bpf: Fix potential array overflow in bpf_trampoline_get_progs() - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.115-rt67 * Bump ABI to 15 * [rt] Drop "random: Make it work on rt" . [ Mateusz Łukasik ] * [armhf] drivers/thermal: Enable SUN8I_THERMAL as module (Closes: #1007799) linux-signed-amd64 (5.10.120+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.120-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.15 linux-signed-amd64 (5.10.113+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.113-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.107 - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" (Closes: #1008299) - xfrm: Check if_id in xfrm_migrate - xfrm: Fix xfrm migrate issues when address family changes - mac80211: refuse aggregations sessions before authorized - [mips64el,mipsel] smp: fill in sibling and core maps earlier - [x86] atm: firestream: check the return value of ioremap() in fs_init() - iwlwifi: don't advertise TWT support - drm/vrr: Set VRR capable prop only if it is attached to connector - nl80211: Update bss channel on channel switch for P2P_CLIENT - sfc: extend the locking on mcdi->seqno https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.108 - [arm64] crypto: qcom-rng - ensure buffer for generate is completely filled - ocfs2: fix crash when initialize filecheck kobj fails - mm: swap: get rid of livelock in swapin readahead - efi: fix return value of __setup handlers - vsock: each transport cycles only on its own sockets - esp6: fix check on ipv6_skip_exthdr's return value - net: phy: marvell: Fix invalid comparison in the resume and suspend functions - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - atm: eni: Add check for dma_map_single - [x86] hv_netvsc: Add check for kvmalloc_array - [armhf] drm/imx: parallel-display: Remove bus flags check in imx_pd_bridge_atomic_check() - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of - net: phy: mscc: Add MODULE_FIRMWARE macros - bnx2x: fix built-in kernel driver load failure - [arm64] net: bcmgenet: skip invalid partial checksums - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain tc-flower offload - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver - usb: usbtmc: Fix bug in pipe direction for control transfers - scsi: mpt3sas: Page fault in reply q processing - Input: aiptek - properly check endpoint type - perf symbols: Fix symbol size calculation condition - net: usb: Correct PHY handling of smsc95xx - net: usb: Correct reset handling of smsc95xx - smsc95xx: Ignore -ENODEV errors when device is unplugged - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.109 - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION (CVE-2022-26490) - net: ipv6: fix skb_over_panic in __ip6_append_data - exfat: avoid incorrectly releasing for root inode - cgroup: Allocate cgroup_file_ctx for kernfs_open_file->priv (CVE-2021-4197) - cgroup: Use open-time cgroup namespace for process migration perm checks (CVE-2021-4197) - cgroup-v1: Correct privileges check in release_agent writes - tpm: Fix error handling in async work - llc: fix netdevice reference leaks in llc_ui_bind() (CVE-2022-28356) - ALSA: oss: Fix PCM OSS buffer allocation overflow - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - ALSA: hda/realtek: Add quirk for ASUS GA402 - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent read/write and buffer changes (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048) - ALSA: pcm: Add stream lock during PCM reset ioctl operations - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB - ALSA: cmipci: Restore aux vol on suspend/resume - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec - [arm64] drivers: net: xgene: Fix regression in CRC stripping - netfilter: nf_tables: initialize registers in nft_do_chain() (CVE-2022-1016) - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3 - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU - [x86] crypto: qat - disable registration of algorithms - Revert "ath: add support for special 0x0 regulatory domain" - rcu: Don't deboost before reporting expedited quiescent state - mac80211: fix potential double free on mesh join - tpm: use try_get_ops() in tpm-space.c - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620 - llc: only change llc->dev when bind() succeeds https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.110 - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854) - USB: serial: pl2303: add IBM device IDs - USB: serial: simple: add Nokia phone driver - netdevice: add the case if dev is NULL - HID: logitech-dj: add new lightspeed receiver id - xfrm: fix tunnel model fragmentation behavior - virtio_console: break out of buf poll on remove - ethernet: sun: Free the coherent when failing in probing - gpio: Revert regression in sysfs-gpio (gpiolib.c) - spi: Fix invalid sgs value - Revert "gpio: Revert regression in sysfs-gpio (gpiolib.c)" - spi: Fix erroneous sgs value with min_t() - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register (CVE-2022-1353) - [arm*] iommu/iova: Improve 32-bit free space estimate - tpm: fix reference counting for struct tpm_chip - virtio-blk: Use blk_validate_block_size() to validate block size - USB: usb-storage: Fix use of bitfields for hardware data in ene_ub6250.c - xhci: fix garbage USBSTS being logged in some cases - xhci: fix runtime PM imbalance in USB2 resume - xhci: make xhci_handshake timeout for xhci_reset() adjustable - xhci: fix uninitialized string returned by xhci_decode_ctrl_ctx() - [x86] mei: me: add Alder Lake N device id. - [x86] mei: avoid iterator usage outside of list_for_each_entry - iio: inkern: apply consumer scale on IIO_VAL_INT cases - iio: inkern: apply consumer scale when no channel scale is available - iio: inkern: make a best effort on offset calculation - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - KEYS: fix length validation in keyctl_pkey_params_get_2() - Documentation: add link to stable release candidate tree - Documentation: update stable tree link - firmware: stratix10-svc: add missing callback parameter on RSU - SUNRPC: avoid race between mod_timer() and del_timer_sync() - NFSD: prevent underflow in nfssvc_decode_writeargs() - NFSD: prevent integer overflow on 32 bit systems - f2fs: fix to unlock page correctly in error path of is_alive() - f2fs: quota: fix loop condition at f2fs_quota_sync() - f2fs: fix to do sanity check on .cp_pack_total_block_count - [armhf] remoteproc: Fix count check in rproc_coredump_write() - [armhf] pinctrl: samsung: drop pin banks references on error paths - mtd: rawnand: protect access to rawnand devices while in suspend - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28390) - jffs2: fix use-after-free in jffs2_clear_xattr_subsystem - jffs2: fix memory leak in jffs2_do_mount_fs - jffs2: fix memory leak in jffs2_scan_medium - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - mm: invalidate hwpoison page cache page in fault path - mempolicy: mbind_range() set_policy() after vma_merge() - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - qed: display VF trust config - qed: validate and restrict untrusted VFs vlan promisc mode - Revert "Input: clear BTN_RIGHT/MIDDLE on buttonpads" - cifs: prevent bad output lengths in smb2_ioctl_query_info() - cifs: fix NULL ptr dereference in smb2_ioctl_query_info() (CVE-2022-0168) - [i386] ALSA: cs4236: fix an incorrect NULL check on list iterator - ALSA: hda: Avoid unsol event during RPM suspending - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: hda/realtek: Fix audio regression on Mi Notebook Pro 2020 - mm: madvise: skip unmapped vma holes passed to process_madvise - mm: madvise: return correct bytes advised with process_madvise - Revert "mm: madvise: skip unmapped vma holes passed to process_madvise" - mm,hwpoison: unmap poisoned page before invalidation - dm integrity: set journal entry unused when shrinking device - drbd: fix potential silent data corruption - can: isotp: sanitize CAN ID checks in isotp_bind() - [powerpc*] kvm: Fix kvm_use_magic_page - udp: call udp_encap_enable for v6 sockets when enabling encap - [arm64] signal: nofpsimd: Do not allocate fp/simd context when not available - ACPI: properties: Consistently return -ENOENT if there are no more references - coredump: Also dump first pages of non-executable ELF libraries - ext4: fix ext4_fc_stats trace point - ext4: fix fs corruption when tring to remove a non-empty directory with IO error - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() (CVE-2022-1198) - block: limit request dispatch loop duration - block: don't merge across cgroup boundaries if blkcg is enabled - drm/edid: check basic audio support on CEA extension block - [armhf] dts: exynos: add missing HDMI supplies on SMDK5250 - [armhf] dts: exynos: add missing HDMI supplies on SMDK5420 - [x86] mgag200 fix memmapsl configuration in GCTL6 register - carl9170: fix missing bit-wise or operator for tx_params - pstore: Don't use semaphores in always-atomic-context code - [x86] thermal: int340x: Increase bitmap size - exec: Force single empty string when argv is empty - crypto: rsa-pkcs1pad - only allow with rsa - crypto: rsa-pkcs1pad - correctly get hash from source scatterlist - crypto: rsa-pkcs1pad - restore signature length check - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - bcache: fixup multiple threads crash - DEC: Limit PMAX memory probing to R3k systems - brcmfmac: firmware: Allocate space for default boardrev in nvram - brcmfmac: pcie: Release firmwares in the brcmf_pcie_setup error path - brcmfmac: pcie: Replace brcmf_pcie_copy_mem_todev with memcpy_toio - brcmfmac: pcie: Fix crashes due to early IRQs - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - [x86] drm/i915/gem: add missing boundary check in vm_access - PCI: pciehp: Clear cmd_busy bit in polling mode - [arm64] PCI: xgene: Revert "PCI: xgene: Fix IB window setup" - [arm64] regulator: qcom_smd: fix for_each_child.cocci warnings - selinux: check return value of sel_make_avc_files - [arm64] hwrng: cavium - Check health status while reading random data - [arm64] hwrng: cavium - HW_RANDOM_CAVIUM should depend on ARCH_THUNDER - crypto: authenc - Fix sleep in atomic context in decrypt_tail - [x86] thermal: int340x: Check for NULL after calling kmemdup() - [arm64,armhf] spi: tegra114: Add missing IRQ check in tegra_spi_probe - [arm64] mm: avoid fixmap race condition when create pud mapping - audit: log AUDIT_TIME_* records only from rules - spi: pxa2xx-pci: Balance reference count for PCI DMA device - [armhf] hwmon: (pmbus) Add mutex to regulator ops - hwmon: (sch56xx-common) Replace WDOG_ACTIVE with WDOG_HW_RUNNING - nvme: cleanup __nvme_check_ids - block: don't delete queue kobject before its children - PM: hibernate: fix __setup handler error handling - PM: suspend: fix return value of __setup handler - [arm64] crypto: sun8i-ce - call finalize with bh disabled - [arm64,armhf] crypto: amlogic - call finalize with bh disabled - [armhf] clocksource/drivers/timer-ti-dm: Fix regression from errata i940 fix - [armhf] clocksource/drivers/exynos_mct: Refactor resources allocation - [armhf] clocksource/drivers/exynos_mct: Handle DTS with higher number of interrupts - clocksource/drivers/timer-of: Check return value of of_iomap in timer_of_base_init() - ACPI: APEI: fix return value of __setup handlers - [x86] crypto: ccp - ccp_dmaengine_unregister release dma channels - [arm*] amba: Make the remove callback return void - [armhf] hwmon: (pmbus) Add Vin unit off handling - [x86] clocksource: acpi_pm: fix return value of __setup handler - io_uring: terminate manual loop iterator loop correctly for non-vecs - watch_queue: Fix NULL dereference in error cleanup - watch_queue: Actually free the watch - f2fs: fix to enable ATGC correctly via gc_idle sysfs interface - sched/debug: Remove mpol_get/put and task_lock/unlock from sched_show_numa - sched/core: Export pelt_thermal_tp - rseq: Optimise rseq_get_rseq_cs() and clear_rseq_cs() - rseq: Remove broken uapi field layout on 32-bit little endian - perf/core: Fix address filter parser for multiple filters - [x86] perf/x86/intel/pt: Fix address filter config for 32-bit kernel - f2fs: fix missing free nid in f2fs_handle_failed_inode - nfsd: more robust allocation failure handling in nfsd_file_cache_init - f2fs: fix to avoid potential deadlock - btrfs: fix unexpected error path when reflinking an inline extent - f2fs: compress: remove unneeded read when rewrite whole cluster - f2fs: fix compressed file start atomic write may cause data corruption - [arm64,armhf] media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - media: bttv: fix WARNING regression on tunerless devices - [arm*] ASoC: generic: simple-card-utils: remove useless assignment - [armhf] media: coda: Fix missing put_device() call in coda_get_vdoa_data - [armhf] media: aspeed: Correct value for h-total-pixels - video: fbdev: matroxfb: set maxvram of vbG200eW to the same as vbG200 to avoid black screen - video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() - video: fbdev: fbcvt.c: fix printing in fb_cvt_print_name() - [arm64] firmware: qcom: scm: Remove reassignment to desc following initializer - firmware: ti_sci: Fix compilation failure when CONFIG_TI_SCI_PROTOCOL is not defined - [armhf] dts: imx: Add missing LVDS decoder on M53Menlo - media: em28xx: initialize refcount before kref_get - media: usb: go7007: s2250-board: fix leak in probe() - [arm64,armhf] media: cedrus: H265: Fix neighbour info buffer size - [arm64,armhf] media: cedrus: h264: Fix neighbour info buffer size - [x86] ASoC: rt5663: check the return value of devm_kzalloc() in rt5663_parse_dp() - printk: fix return value of printk.devkmsg __setup handler - [x86] ASoC: soc-compress: prevent the potentially use of null pointer - [armhf] memory: emif: Add check for setup_interrupts - [armhf] memory: emif: check the pointer temp in get_device_details() - ALSA: firewire-lib: fix uninitialized flag for AV/C deferred transaction - [arm64] dts: rockchip: Fix SDIO regulator supply properties on rk3399-firefly - media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED - media: saa7134: convert list_for_each to entry variant - media: saa7134: fix incorrect use to determine if list is empty - ivtv: fix incorrect device_caps for ivtvfb - [arm64,armhf] ASoC: rockchip: i2s: Use devm_platform_get_and_ioremap_resource() - [arm64,armhf] ASoC: rockchip: i2s: Fix missing clk_disable_unprepare() in rockchip_i2s_probe - ASoC: dmaengine: do not use a NULL prepare_slave_config() callback - [armhf] ASoC: fsl_spdif: Disable TX clock when stop - [armhf] ASoC: imx-es8328: Fix error return code in imx_es8328_probe() - [arm64] drm/meson: osd_afbcd: Add an exit callback to struct meson_afbcd_ops - [arm64,armhf] drm/bridge: Add missing pm_runtime_disable() in __dw_mipi_dsi_probe - [arm64] drm: bridge: adv7511: Fix ADV7535 HPD enablement - ath10k: fix memory overwrite of the WoWLAN wakeup packet pattern - [arm64,armhf] drm/panfrost: Check for error num after setting mask - Bluetooth: hci_serdev: call init_rwsem() before p->open() - [armhf] mtd: rawnand: gpmi: fix controller timings setting - drm/edid: Don't clear formats if using deep color - drm/nouveau/acr: Fix undefined behavior in nvkm_acr_hsfw_load_bl() - drm/amd/display: Fix a NULL pointer dereference in amdgpu_dm_connector_add_common_modes() - drm/amd/pm: return -ENOTSUPP if there is no get_dpm_ultimate_freq function - ath9k_htc: fix uninit value bugs - RDMA/core: Set MR type in ib_reg_user_mr - [powerpc*] KVM: PPC: Fix vmx/vsx mixup in mmio emulation - i40e: don't reserve excessive XDP_PACKET_HEADROOM on XSK Rx to skb - i40e: respect metadata on XSK Rx to skb - [x86] ray_cs: Check ioremap return value - [powerpc*] KVM: PPC: Book3S HV: Check return value of kvmppc_radix_init - [powerpc*] perf: Don't use perf_hw_context for trace IMC PMU - [arm64,armhf] net: dsa: mv88e6xxx: Enable port policy support on 6097 - [arm64] PCI: aardvark: Fix reading PCI_EXP_RTSTA_PME bit on emulated bridge - [arm64,armhf] drm/bridge: dw-hdmi: use safe format when first in bridge chain - HID: i2c-hid: fix GET/SET_REPORT for unnumbered reports - drm/amd/pm: enable pm sysfs write for one VF mode - drm/amd/display: Add affected crtcs to atomic state for dsc mst unplug - IB/cma: Allow XRC INI QPs to set their local ACK timeout - dax: make sure inodes are flushed before destroy cache - iwlwifi: Fix -EIO error code that is never returned - iwlwifi: mvm: Fix an error code in iwl_mvm_up() - [arm64] drm/msm/dp: populate connector of struct dp_panel - [arm64] drm/msm/dpu: add DSPP blocks teardown - [arm64] drm/msm/dpu: fix dp audio condition - scsi: pm8001: Fix command initialization in pm80XX_send_read_log() - scsi: pm8001: Fix command initialization in pm8001_chip_ssp_tm_req() - scsi: pm8001: Fix payload initialization in pm80xx_set_thermal_config() - scsi: pm8001: Fix le32 values handling in pm80xx_set_sas_protocol_timer_config() - scsi: pm8001: Fix payload initialization in pm80xx_encrypt_update() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_ssp_io_req() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_sata_req() - scsi: pm8001: Fix NCQ NON DATA command task initialization - scsi: pm8001: Fix NCQ NON DATA command completion handling - scsi: pm8001: Fix abort all task initialization - RDMA/mlx5: Fix the flow of a miss in the allocation of a cache ODP MR - drm/amd/display: Remove vupdate_int_entry definition - TOMOYO: fix __setup handlers return values - [arm64,armhf] drm/tegra: Fix reference leak in tegra_dsi_ganged_probe - [x86] power: supply: bq24190_charger: Fix bq24190_vbus_is_enabled() wrong false return - [arm64] scsi: hisi_sas: Change permission of parameter prot_mask - [arm64] bpf, arm64: Call build_prologue() first in first JIT pass - [arm64] bpf, arm64: Feed byte-offset into bpf line info - [arm64,armhf] gpu: host1x: Fix a memory leak in 'host1x_remove()' - [powerpc*] mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() - [x86] KVM: x86: Fix emulation in writing cr8 - [x86] KVM: x86/emulator: Defer not-present segment check in __load_segment_descriptor() - [x86] hv_balloon: rate-limit "Unhandled message" warning - [amd64] IB/hfi1: Allow larger MTU without AIP - PCI: Reduce warnings on possible RW1C corruption - [armhf] mfd: mc13xxx: Add check for mc13xxx_irq_request - [x86] platform/x86: huawei-wmi: check the return value of device_create_file() - vxcan: enable local echo for sent CAN frames - ath10k: Fix error handling in ath10k_setup_msa_resources - [mips*] pgalloc: fix memory leak caused by pgd_free() - RDMA/mlx5: Fix memory leak in error flow for subscribe event routine - bpf, sockmap: Fix memleak in tcp_bpf_sendmsg while sk msg is full - bpf, sockmap: Fix more uncharged while msg has more_data - bpf, sockmap: Fix double uncharge the mem of sk_msg - USB: storage: ums-realtek: fix error code in rts51x_read_mem() - can: isotp: return -EADDRNOTAVAIL when reading from unbound socket - can: isotp: support MSG_TRUNC flag when reading from socket - Bluetooth: call hci_le_conn_failed with hdev lock in hci_le_conn_failed - ipv4: Fix route lookups when handling ICMP redirects and PMTU updates - af_netlink: Fix shift out of bounds in group mask calculation - [arm64,armhf] i2c: meson: Fix wrong speed use from probe - PCI: Avoid broken MSI on SB600 USB devices - [arm64] net: bcmgenet: Use stronger register read/writes to assure ordering - tcp: ensure PMTU updates are processed during fastopen - openvswitch: always update flow key after nat - tipc: fix the timer expires after interval 100ms - [x86] mxser: fix xmit_buf leak in activate when LSR == 0xff - [armhf] fsi: aspeed: convert to devm_platform_ioremap_resource - [armhf] fsi: Aspeed: Fix a potential double free - soundwire: intel: fix wrong register name in intel_shim_wake - iio: mma8452: Fix probe failing when an i2c_device_id is used - [arm64,armhf] phy: dphy: Correct lpx parameter and its derivatives(ta_{get,go,sure}) - [x86] serial: 8250_mid: Balance reference count for PCI DMA device - [x86] serial: 8250_lpss: Balance reference count for PCI DMA device - NFS: Use of mapping_set_error() results in spurious errors - serial: 8250: Fix race condition in RTS-after-send handling - NFS: Return valid errors from nfs2/3_decode_dirent() - [arm64] clk: qcom: clk-rcg2: Update logic to calculate D value for RCG - [arm64] clk: qcom: clk-rcg2: Update the frac table for pixel clock - nvdimm/region: Fix default alignment for small regions - [armhf] clk: tegra: tegra124-emc: Fix missing put_device() call in emc_ensure_emc_driver - NFS: remove unneeded check in decode_devicenotify_args() - [arm64,armhf] pinctrl/rockchip: Add missing of_node_put() in rockchip_pinctrl_probe - [s390x] tty: hvc: fix return value of __setup handler - serial: 8250: fix XOFF/XON sending when DMA is used - driver core: dd: fix return value of __setup handler - jfs: fix divide error in dbNextAG - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFSv4.1: don't retry BIND_CONN_TO_SESSION on session error - kdb: Fix the putarea helper function - clk: Initialize orphan req_rate - [amd64] xen: fix is_xen_pmu() - [arm64] net: enetc: report software timestamping via SO_TIMESTAMPING - [arm64] net: hns3: fix bug when PF set the duplicate MAC address for VFs - net: phy: broadcom: Fix brcm_fet_config_init() - NFSv4/pNFS: Fix another issue with a list iterator pointing to the head - [armhf] net: dsa: bcm_sf2_cfp: fix an incorrect NULL check on list iterator - fs: fd tables have to be multiples of BITS_PER_LONG - fs: fix fd table size alignment properly - LSM: general protection fault in legacy_parse_param - block, bfq: don't move oom_bfqq - selinux: use correct type for context length - selinux: allow FIOCLEX and FIONCLEX with policy capability - loop: use sysfs_emit() in the sysfs xxx show() - Fix incorrect type in assignment of ipv6 port for audit - fs/binfmt_elf: Fix AT_PHDR for unusual ELF files - bfq: fix use-after-free in bfq_dispatch_request - ACPICA: Avoid walking the ACPI Namespace if it is not there - Revert "Revert "block, bfq: honor already-setup queue merges"" - ACPI/APEI: Limit printable size of BERT table data - PM: core: keep irq flags in device_pm_check_callbacks() - nvme-tcp: lockdep: annotate in-kernel sockets - [arm64] spi: tegra20: Use of_device_get_match_data() - ext4: correct cluster len and clusters changed accounting in ext4_mb_mark_bb - ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit - ext4: don't BUG if someone dirty pages without asking ext4 first - f2fs: fix to do sanity check on curseg->alloc_type - NFSD: Fix nfsd_breaker_owns_lease() return values - f2fs: compress: fix to print raw data size in error path of lz4 decompression - video: fbdev: cirrusfb: check pixclock to avoid divide by zero - [armel,armhf] ftrace: avoid redundant loads or clobbering IP - video: fbdev: udlfb: replace snprintf in show functions with sysfs_emit - ASoC: soc-core: skip zero num_dai component in searching dai name - media: cx88-mpeg: clear interrupt status register before streaming video - uaccess: fix type mismatch warnings from access_ok() - media: Revert "media: em28xx: add missing em28xx_close_extension" - media: hdpvr: initialize dev->worker at hdpvr_register_videodev - mmc: host: Return an error when ->enable_sdio_irq() ops is missing - ALSA: hda/realtek: Add alc256-samsung-headphone fixup - [x86] KVM: x86/mmu: Check for present SPTE when clearing dirty bit in TDP MMU - [powerpc*] lib/sstep: Fix 'sthcx' instruction - [powerpc*] lib/sstep: Fix build errors with newer binutils - scsi: qla2xxx: Fix stuck session in gpdb - scsi: qla2xxx: Fix scheduling while atomic - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter - scsi: qla2xxx: Fix warning for missing error code - scsi: qla2xxx: Fix device reconnect in loop topology - scsi: qla2xxx: Add devids and conditionals for 28xx - scsi: qla2xxx: Check for firmware dump already collected - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() - scsi: qla2xxx: Fix disk failure to rediscover - scsi: qla2xxx: Fix incorrect reporting of task management failure - scsi: qla2xxx: Fix hang due to session stuck - scsi: qla2xxx: Fix missed DMA unmap for NVMe ls requests - scsi: qla2xxx: Fix N2N inconsistent PLOGI - scsi: qla2xxx: Reduce false trigger to login - scsi: qla2xxx: Use correct feature type field during RFF_ID processing - [arm64] platform: chrome: Split trace include file - [x86] KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - KVM: Prevent module exit until all VMs are freed - [x86] KVM: x86: fix sending PV IPI - [x86] KVM: SVM: fix panic on out-of-bounds guest IRQ - [x86] ASoC: SOF: Intel: Fix NULL ptr dereference when ENOMEM - ubifs: rename_whiteout: Fix double free for whiteout_ui->data - ubifs: Fix deadlock in concurrent rename whiteout and inode writeback - ubifs: Add missing iput if do_tmpfile() failed in rename whiteout - ubifs: setflags: Make dirtied_ino_d 8 bytes aligned - ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock() - ubifs: Fix to add refcount once page is set private - ubifs: rename_whiteout: correct old_dir size computing - wireguard: queueing: use CFI-safe ptr_ring cleanup function - wireguard: socket: free skb in send6 when ipv6 is disabled - wireguard: socket: ignore v6 endpoints when ipv6 is disabled - XArray: Fix xas_create_range() when multi-order entry present - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path (CVE-2022-28389) - can: mcba_usb: properly check endpoint type - XArray: Update the LRU list in xas_split() - rtc: check if __rtc_read_time was successful - gfs2: Make sure FITRIM minlen is rounded up to fs block size - [arm64] net: hns3: fix software vlan talbe of vlan 0 inconsistent with hardware - rxrpc: Fix call timer start racing with call destruction - [arm64] mailbox: imx: fix wakeup failure from freeze mode - watch_queue: Free the page array when watch_queue is dismantled - pinctrl: pinconf-generic: Print arguments for bias-pull-* - ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl - [arm*] iop32x: offset IRQ numbers by 1 - io_uring: fix memory leak of uid in files registration - [amd64,arm64] ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - [arm64] platform/chrome: cros_ec_typec: Check for EC device - can: isotp: restore accidentally removed MSG_PEEK feature - proc: bootconfig: Add null pointer check - [x86] ASoC: soc-compress: Change the check for codec_dai - batman-adv: Check ptr for NULL before reducing its refcnt - mm/mmap: return 1 from stack_guard_gap __setup() handler - mm/memcontrol: return 1 from cgroup.memory __setup() handler - mm/usercopy: return 1 from hardened_usercopy __setup() handler - bpf: Adjust BPF stack helper functions to accommodate skip > 0 - bpf: Fix comment for helper bpf_current_task_under_cgroup() - dt-bindings: mtd: nand-controller: Fix the reg property description - dt-bindings: mtd: nand-controller: Fix a comment in the examples - dt-bindings: spi: mxic: The interrupt property is not mandatory - [x86] ASoC: topology: Allow TLV control to be either read or write - docs: sysctl/kernel: add missing bit to panic_print - openvswitch: Fixed nd target mask field in the flow dump. - [x86] KVM: x86/mmu: do compare-and-exchange of gPTE via the user address (CVE-2022-1158) - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28388) - coredump: Snapshot the vmas in do_coredump - coredump: Remove the WARN_ON in dump_vma_snapshot - coredump/elf: Pass coredump_params into fill_note_info - coredump: Use the vma snapshot in fill_files_note - [arm64] Do not defer reserve_crashkernel() for platforms with no DMA memory zones - [arm64] PCI: xgene: Revert "PCI: xgene: Use inbound resources for setup" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.111 - ubifs: Rectify space amount budget for mkdir/tmpfile operations - gfs2: Check for active reservation in gfs2_release - gfs2: Fix gfs2_release for non-writers regression - gfs2: gfs2_setattr_size error path fix - [x86] KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs - [x86] KVM: x86/emulator: Emulate RDPID only if it is enabled in guest - drm: Add orientation quirk for GPD Win Max - ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111 - drm/amd/display: Add signal type check when verify stream backends same - drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj - ptp: replace snprintf with sysfs_emit - [armhf] ath11k: fix kernel panic during unload/load ath11k modules - ath11k: mhi: use mhi_sync_power_up() - bpf: Make dst_port field in struct bpf_sock 16-bit wide - scsi: mvsas: Replace snprintf() with sysfs_emit() - scsi: bfa: Replace snprintf() with sysfs_emit() - [arm64,armhf] power: supply: axp20x_battery: properly report current when discharging - mt76: dma: initialize skip_unmap in mt76_dma_rx_fill - cfg80211: don't add non transmitted BSS to 6GHz scanned channels - ipv6: make mc_forwarding atomic - [powerpc*] Set crashkernel offset to mid of RMA region - drm/amdgpu: Fix recursive locking warning - [arm64] PCI: aardvark: Fix support for MSI interrupts - [arm64] iommu/arm-smmu-v3: fix event handling soft lockup - usb: ehci: add pci device support for Aspeed platforms - tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH. - PCI: pciehp: Add Qualcomm quirk for Command Completed erratum - iwlwifi: mvm: Correctly set fragmented EBS - ipv4: Invalidate neighbour for broadcast address upon address addition - dm ioctl: prevent potential spectre v1 gadget - dm: requeue IO if mapping table not yet available - scsi: pm8001: Fix pm80xx_pci_mem_copy() interface - scsi: pm8001: Fix pm8001_mpi_task_abort_resp() - scsi: pm8001: Fix task leak in pm8001_send_abort_all() - scsi: pm8001: Fix tag leaks on error - scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req() - scsi: aha152x: Fix aha152x_setup() __setup handler return value - [arm64] scsi: hisi_sas: Free irq vectors in order for v3 HW - net/smc: correct settings of RMB window update limit - macvtap: advertise link netns via netlink - tuntap: add sanity checks about msg_controllen in sendmsg - Bluetooth: Fix not checking for valid hdev on bt_dev_{info,warn,err,dbg} - Bluetooth: use memset avoid memory leaks - bnxt_en: Eliminate unintended link toggle during FW reset - [mps64el,mipsel] fix fortify panic when copying asm exception handlers - scsi: libfc: Fix use after free in fc_exch_abts_resp() - can: isotp: set default value for N_As to 50 micro seconds - net: account alternate interface name memory - net: limit altnames to 64k total - net: sfp: add 2500base-X quirk for Lantech SFP module - [armhf] usb: dwc3: omap: fix "unbalanced disables for smps10_out1" on omap5evm - Bluetooth: Fix use after free in hci_send_acl - netlabel: fix out-of-bounds memory accesses - ceph: fix memory leak in ceph_readdir when note_last_dentry returns error - init/main.c: return 1 from handled __setup() functions - minix: fix bug when opening a file with O_DIRECT - [arm*] staging: vchiq_core: handle NULL result of find_service_by_handle - [arm64,armhf] phy: amlogic: meson8b-usb2: Use dev_err_probe() - w1: w1_therm: fixes w1_seq for ds28ea00 sensors - NFSv4.2: fix reference count leaks in _nfs42_proc_copy_notify() - NFSv4: Protect the state recovery thread against direct reclaim - xen: delay xen_hvm_init_time_ops() if kdump is boot on vcpu>=32 - [armhf] clk: ti: Preserve node in ti_dt_clocks_register() - clk: Enforce that disjoints limits are invalid - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - SUNRPC/xprt: async tasks mustn't block waiting for memory - SUNRPC: remove scheduling boost for "SWAPPER" tasks. - NFS: swap IO handling is slightly different for O_DIRECT IO - NFS: swap-out must always use STABLE writes. - [armhf] serial: samsung_tty: do not unlock port->lock for uart_write_wakeup() - virtio_console: eliminate anonymous module_init & module_exit - jfs: prevent NULL deref in diFree - SUNRPC: Fix socket waits for write buffer space - NFS: nfsiod should not block forever in mempool_alloc() - NFS: Avoid writeback threads getting stuck in mempool_alloc() - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - drm/amdgpu: fix off by one in amdgpu_gfx_kiq_acquire() - [x86] Drivers: hv: vmbus: Fix potential crash on module unload - Revert "NFSv4: Handle the special Linux file open access mode" - NFSv4: fix open failure with O_ACCMODE flag - ice: Clear default forwarding VSI during VSI release - net: ipv4: fix route with nexthop object delete warning - net: stmmac: Fix unset max_speed difference between DT and non-DT platforms - [armhf] drm/imx: imx-ldb: Check for null pointer after calling kmemdup - [armhf] drm/imx: Fix memory leak in imx_pd_connector_get_modes - sfc: Do not free an empty page_ring - RDMA/mlx5: Don't remove cache MRs when a delay is needed - [amd64] IB/rdmavt: add lock to call to rvt_error_qp to prevent a race condition - [arm64] dpaa2-ptp: Fix refcount leak in dpaa2_ptp_probe - ice: Set txq_teid to ICE_INVAL_TEID on ring creation - ice: Do not skip not enabled queues in ice_vc_dis_qs_msg - ipv6: Fix stats accounting in ip6_pkt_drop - ice: synchronize_rcu() when terminating rings - net: openvswitch: don't send internal clone attribute to the userspace. - net: openvswitch: fix leak of nested actions - rxrpc: fix a race in rxrpc_exit_net() - qede: confirm skb is allocated before using - bpf: Support dual-stack sockets in bpf_tcp_check_syncookie - drbd: Fix five use after free bugs in get_initial_state - io_uring: don't touch scm_fp_list after queueing skb - SUNRPC: Handle ENOMEM in call_transmit_status() - SUNRPC: Handle low memory situations in call_status() - SUNRPC: svc_tcp_sendmsg() should handle errors from xdr_alloc_bvec() - [armhf] iommu/omap: Fix regression in probe for NULL pointer dereference - [arm64] Add part number for Arm Cortex-A78AE - [arm64] Revert "mmc: sdhci-xenon: fix annoying 1.8V regulator warning" - [arm64,armhf] mmc: mmci: stm32: correctly check all elements of sg list - lz4: fix LZ4_decompress_safe_partial read out of bound - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm/mempolicy: fix mpol_new leak in shared_policy_replace - io_uring: fix race between timeout flush and removal (CVE-2022-29582) - [x86] pm: Save the MSR validity status at context setup - [x86] speculation: Restore speculation related MSRs during S3 resume - btrfs: fix qgroup reserve overflow the qgroup limit - btrfs: prevent subvol with swapfile from being deleted - [arm64] patch_text: Fixup last cpu should be master - [amd64] RDMA/hfi1: Fix use-after-free bug for mm struct - gpio: Restrict usage of GPIO chip irq members before initialization - [arm64] perf: qcom_l2_pmu: fix an incorrect NULL check on list iterator - [arm64,armhf] irqchip/gic-v3: Fix GICR_CTLR.RWP polling - drm/nouveau/pmu: Add missing callbacks for Tegra devices - mm: don't skip swap entry even if zap_details specified - cgroup: Use open-time credentials for process migraton perm checks (CVE-2021-4197) - [x86] Drivers: hv: vmbus: Replace smp_store_mb() with virt_store_mb() - [arm64,armhf] irqchip/gic, gic-v3: Prevent GSI to SGI translations - [powerpc*] Fix virt_addr_valid() for 64-bit Book3E & 32-bit https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.112 - [amd64] drm/amdkfd: Use drm_priv to pass VM from KFD to amdgpu - hamradio: defer 6pack kfree after unregister_netdev (CVE-2022-1195) - hamradio: remove needs_free_netdev to avoid UAF (CVE-2022-1195) - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the function - ACPI: processor idle: Check for architectural support for LPI - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups() - [arm64] drm/msm: Add missing put_task_struct() in debugfs path - SUNRPC: Fix the svc_deferred_event trace class - net/sched: flower: fix parsing of ethertype following VLAN header - veth: Ensure eth header is in skb's linear part - gpiolib: acpi: use correct format characters - net: mdio: Alphabetically sort header inclusion - net/sched: fix initialization order when updating chain 0 head - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link - net/sched: taprio: Check if socket flags are valid - cfg80211: hold bss_lock while updating nontrans_list - [arm64] drm/msm: Fix range size vs end confusion - [arm64] drm/msm/dsi: Use connector directly in msm_dsi_manager_connector_init() - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib() - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63 - scsi: pm80xx: Enable upper inbound, outbound queues - scsi: iscsi: Stop queueing during ep_disconnect - scsi: iscsi: Force immediate failure during shutdown - scsi: iscsi: Use system_unbound_wq for destroy_work - scsi: iscsi: Rel ref after iscsi_lookup_endpoint() - scsi: iscsi: Fix in-kernel conn failure handling - scsi: iscsi: Move iscsi_ep_disconnect() - scsi: iscsi: Fix offload conn cleanup when iscsid restarts - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart - sctp: Initialize daddr on peeled off socket - cifs: potential buffer overflow in handling symlinks - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure ordering" - drm/amd: Add USBC connector ID - btrfs: fix fallocate to use file_modified to update permissions consistently - btrfs: do not warn for free space inode in cow_file_range - drm/amd/display: fix audio format not updated after edid updated - drm/amd/display: FEC check in timing validation - drm/amd/display: Update VTEM Infopacket definition - drm/amdkfd: Fix Incorrect VMIDs passed to HWS - drm/amdgpu/vcn: improve vcn dpg stop procedure - [x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring buffer - scsi: target: tcmu: Fix possible page UAF - scsi: lpfc: Fix queue failures when recovering from PCI parity error - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024 - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output - [arm64] alternatives: mark patch_alternative() as `noinstr` - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso - drm/amd/display: Revert FEC check in validation - drm/amd/display: Fix allocate_mst_payload assert on resume - scsi: mvsas: Add PCI ID of RocketRaid 2640 - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan - drivers: net: slip: fix NPD bug in sl_tx_timeout() - mm, page_alloc: fix build_zonerefs_node() - mm: fix unexpected zeroed page mapping with zram swap - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded - ath9k: Properly clear TX status area before reporting to mac80211 - ath9k: Fix usage of driver-private space in tx_info - btrfs: fix root ref counts in error handling in btrfs_get_root_ref - btrfs: mark resumed async balance as writing - ALSA: hda/realtek: Add quirk for Clevo PD50PNT - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers - ALSA: pcm: Test for "silence" field in struct "pcm_format_data" - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size - ipv6: fix panic when forwarding a pkt with no in6 dev - drm/amd/display: don't ignore alpha property on pre-multiplied mode - drm/amdgpu: Enable gfxoff quirk on MacBook Pro - genirq/affinity: Consider that CPUs on nodes can be unbalanced - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation - dm integrity: fix memory corruption when tag_size is less than digest size - smp: Fix offline cpu check in flush_smp_call_function_queue() - timers: Fix warning condition in __run_timers() - dma-direct: avoid redundant memory sync for swiotlb - scsi: iscsi: Fix endpoint reuse regression - scsi: iscsi: Fix unbound endpoint error handling - ax25: add refcount in ax25_dev to avoid UAF bugs (CVE-2022-1204) - ax25: fix reference count leaks of ax25_dev (CVE-2022-1204) - ax25: fix UAF bugs of net_device caused by rebinding operation (CVE-2022-1204) - ax25: Fix refcount leaks caused by ax25_cb_del() (CVE-2022-1204) - ax25: fix UAF bug in ax25_send_control() - ax25: fix NPD bug in ax25_disconnect (CVE-2022-1199) - ax25: Fix NULL pointer dereferences in ax25 timers (CVE-2022-1205) - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.113 - tracing: Dump stacktrace trigger to the corresponding instance - gfs2: assign rgrp glock before compute_bitstructs - net/sched: cls_u32: fix netns refcount changes in u32_change() - ALSA: usb-audio: Clear MIDI port active flag after draining - ALSA: hda/realtek: Add quirk for Clevo NP70PNP - dm: fix mempool NULL pointer race when completing IO - [armhf] dmaengine: imx-sdma: Fix error checking in sdma_event_remap - esp: limit skb_page_frag_refill use to a single page - igc: Fix infinite loop in release_swfw_sync - igc: Fix BUG: scheduling while atomic - rxrpc: Restore removed timer deletion - net/smc: Fix sock leak when release after smc_shutdown() - net/packet: fix packet_sock xmit return value checking - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit() - ip6_gre: Fix skb_under_panic in __gre6_xmit() - net/sched: cls_u32: fix possible leak in u32_init_knode() - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu - ipv6: make ip6_rt_gc_expire an atomic_t - netlink: reset network and mac headers in netlink_dump() - net: stmmac: Use readl_poll_timeout_atomic() in atomic state - [arm64] mm: Remove [PUD|PMD]_TABLE_BIT from [pud|pmd]_bad() - [arm64] mm: fix p?d_leaf() - [x86] platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant - vxlan: fix error return code in vxlan_fdb_append - cifs: Check the IOCB_DIRECT flag, not O_DIRECT - [amd64,arm64] net: atlantic: Avoid out-of-bounds indexing - mt76: Fix undefined behavior due to shift overflowing the constant - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant - [arm64] drm/msm/mdp5: check the return of kzalloc() - [arm64] net: macb: Restart tx only if queue pointer is lagging - scsi: qedi: Fix failed disconnect handling - stat: fix inconsistency between struct stat and struct compat_stat - nvme: add a quirk to disable namespace identifiers - nvme-pci: disable namespace identifiers for Qemu controllers - mm, hugetlb: allow for "high" userspace addresses - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove() - ata: pata_marvell: Check the 'bmdma_addr' beforing reading - [amd64,arm64] net: atlantic: invert deep par in pm functions, preventing null derefs - openvswitch: fix OOB access in reserve_sfa_size() - gpio: Request interrupts after IRQ is initialized - ASoC: soc-dapm: fix two incorrect uses of list iterator - e1000e: Fix possible overflow in LTR decoding - [arm*] arm_pmu: Validate single/group leader events - sched/pelt: Fix attach_entity_load_avg() corner case - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare - [powerpc*] KVM: PPC: Fix TCE handling for VFIO - [arm*] drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage - [powerpc*] perf: Fix power9 event alternatives - ext4: fix fallocate to use file_modified to update permissions consistently - ext4: fix symlink file size not match to file content - ext4: fix use-after-free in ext4_search_dir - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - ext4, doc: fix incorrect h_reserved size - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: force overhead calculation if the s_overhead_cluster makes no sense - can: isotp: stop timeout monitoring when no first frame was sent - jbd2: fix a potential race while discarding reserved buffers after an abort - block/compat_ioctl: fix range check in BLKGETSIZE . [ Salvatore Bonaccorso ] * Bump ABI to 14 * [rt] Drop "tcp: Remove superfluous BH-disable around" * [rt] Update "tracing: Merge irqflags + preempt counter." for upstream changes in 5.10.113 * [x86] pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests (Closes: #1006346) * floppy: disable FDRAWCMD by default linux-signed-arm64 (5.10.127+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.127-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.121 - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9520 laptop - ALSA: hda/realtek - Fix microphone noise on ASUS TUF B550M-PLUS - ALSA: usb-audio: Cancel pending work at closing a MIDI substream - USB: serial: option: add Quectel BG95 modem - USB: new quirk for Dell Gen 2 devices - usb: dwc3: gadget: Move null pinter check to proper place - usb: core: hcd: Add support for deferring roothub registration - cifs: when extending a file with falloc we should make files not-sparse - xhci: Allow host runtime PM as default for Intel Alder Lake N xHCI - Fonts: Make font size unsigned in font_desc - [x86] MCE/AMD: Fix memory leak when threshold_create_bank() fails - [w86] perf/x86/intel: Fix event constraints for ICL - ptrace/xtensa: Replace PT_SINGLESTEP with TIF_SINGLESTEP - ptrace: Reimplement PTRACE_KILL by always sending SIGKILL - btrfs: add "0x" prefix for unsupported optional features - btrfs: repair super block num_devices automatically - [amd64] iommu/vt-d: Add RPLS to quirk list to skip TE disabling - drm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modes - mwifiex: add mutex lock for call in mwifiex_dfs_chan_sw_work_queue - b43legacy: Fix assigning negative value to unsigned variable - b43: Fix assigning negative value to unsigned variable - ipw2x00: Fix potential NULL dereference in libipw_xmit() - ipv6: fix locking issues with loops over idev->addr_list - fbcon: Consistently protect deferred_takeover with console_lock() - [x86] platform/uv: Update TSC sync state for UV5 - ACPICA: Avoid cache flush inside virtual machines - drm/komeda: return early if drm_universal_plane_init() fails. - rcu-tasks: Fix race in schedule and flush work - rcu: Make TASKS_RUDE_RCU select IRQ_WORK - sfc: ef10: Fix assigning negative value to unsigned variable - ALSA: jack: Access input_dev under mutex - spi: spi-rspi: Remove setting {src,dst}_{addr,addr_width} based on DMA direction - drm/amd/pm: fix double free in si_parse_power_table() - ath9k: fix QCA9561 PA bias level - media: venus: hfi: avoid null dereference in deinit - media: pci: cx23885: Fix the error handling in cx23885_initdev() - media: cx25821: Fix the warning when removing the module - md/bitmap: don't set sb values if can't pass sanity check - mmc: jz4740: Apply DMA engine limits to maximum segment size - drivers: mmc: sdhci_am654: Add the quirk to set TESTCD bit - scsi: megaraid: Fix error check return value of register_chrdev() - scsi: ufs: Use pm_runtime_resume_and_get() instead of pm_runtime_get_sync() - scsi: lpfc: Fix resource leak in lpfc_sli4_send_seq_to_ulp() - ath11k: disable spectral scan during spectral deinit - ASoC: Intel: bytcr_rt5640: Add quirk for the HP Pro Tablet 408 - drm/plane: Move range check for format_count earlier - drm/amd/pm: fix the compile warning - ath10k: skip ath10k_halt during suspend for driver state RESTARTING - [arm64] compat: Do not treat syscall number as ESR_ELx for a bad syscall - drm: msm: fix error check return value of irq_of_parse_and_map() - ipv6: Don't send rs packets to the interface of ARPHRD_TUNNEL - net/mlx5: fs, delete the FTE when there are no rules attached to it - ASoC: dapm: Don't fold register value changes into notifications - mlxsw: spectrum_dcb: Do not warn about priority changes - mlxsw: Treat LLDP packets as control - drm/amdgpu/ucode: Remove firmware load type check in amdgpu_ucode_free_bo - HID: bigben: fix slab-out-of-bounds Write in bigben_probe - ASoC: tscs454: Add endianness flag in snd_soc_component_driver - net: remove two BUG() from skb_checksum_help() - [s390x] preempt: disable __preempt_count_add() optimization for PROFILE_ALL_BRANCHES - perf/amd/ibs: Cascade pmu init functions' return value - spi: stm32-qspi: Fix wait_cmd timeout in APM mode - dma-debug: change allocation mode from GFP_NOWAIT to GFP_ATIOMIC - ACPI: PM: Block ASUS B1400CEAE from suspend to idle by default - ipmi:ssif: Check for NULL msg when handling events and messages - ipmi: Fix pr_fmt to avoid compilation issues - rtlwifi: Use pr_warn instead of WARN_ONCE - media: rga: fix possible memory leak in rga_probe - media: coda: limit frame interval enumeration to supported encoder frame sizes - media: imon: reorganize serialization - media: cec-adap.c: fix is_configuring state - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - ASoC: rt5645: Fix errorenous cleanup order - nbd: Fix hung on disconnect request if socket is closed before - net: phy: micrel: Allow probing without .driver_data - media: exynos4-is: Fix compile warning - ASoC: max98357a: remove dependency on GPIOLIB - ASoC: rt1015p: remove dependency on GPIOLIB - can: mcp251xfd: silence clang's -Wunaligned-access warning - [x86] microcode: Add explicit CPU vendor dependency - rxrpc: Return an error to sendmsg if call failed - rxrpc, afs: Fix selection of abort codes - eth: tg3: silence the GCC 12 array-bounds warning - gfs2: use i_lock spin_lock for inode qadata - IB/rdmavt: add missing locks in rvt_ruc_loopback - [arm64] dts: qcom: msm8994: Fix BLSP[12]_DMA channels count - PM / devfreq: rk3399_dmc: Disable edev on remove() - crypto: ccree - use fine grained DMA mapping dir - soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc - fs: jfs: fix possible NULL pointer dereference in dbFree() - [powerpc*] fadump: Fix fadump to work with a different endian capture kernel - fat: add ratelimit to fat*_ent_bread() - pinctrl: renesas: rzn1: Fix possible null-ptr-deref in sh_pfc_map_resources() - ARM: versatile: Add missing of_node_put in dcscb_init - ARM: dts: exynos: add atmel,24c128 fallback to Samsung EEPROM - ARM: hisi: Add missing of_node_put after of_find_compatible_node - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - tracing: incorrect isolate_mote_t cast in mm_vmscan_lru_isolate - [powerpc*] powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr - [powerpc*] xics: fix refcount leak in icp_opal_init() - [powerpc*] powernv: fix missing of_node_put in uv_init() - macintosh/via-pmu: Fix build failure when CONFIG_INPUT is disabled - [powerpc*] iommu: Add missing of_node_put in iommu_init_early_dart - [amd64] RDMA/hfi1: Prevent panic when SDMA is disabled - drm: fix EDID struct for old ARM OABI format - dt-bindings: display: sitronix, st7735r: Fix backlight in example - ath11k: acquire ab->base_lock in unassign when finding the peer by addr - ath9k: fix ar9003_get_eepmisc - drm/edid: fix invalid EDID extension block filtering - drm/bridge: adv7511: clean up CEC adapter when probe fails - spi: qcom-qspi: Add minItems to interconnect-names - ASoC: mediatek: Fix error handling in mt8173_max98090_dev_probe - ASoC: mediatek: Fix missing of_node_put in mt2701_wm8960_machine_probe - [x86] delay: Fix the wrong asm constraint in delay_loop() - drm/ingenic: Reset pixclock rate when parent clock rate changes - drm/mediatek: Fix mtk_cec_mask() - [arm*] drm/vc4: hvs: Reset muxes at probe time - [arm*] drm/vc4: txp: Don't set TXP_VSTART_AT_EOF - [arm*] drm/vc4: txp: Force alpha to be 0xff if it's disabled - bpf: Fix excessive memory allocation in stack_map_alloc() - nl80211: show SSID for P2P_GO interfaces - drm/komeda: Fix an undefined behavior bug in komeda_plane_add() - drm: mali-dp: potential dereference of null pointer - spi: spi-ti-qspi: Fix return value handling of wait_for_completion_timeout - scftorture: Fix distribution of short handler delays - net: dsa: mt7530: 1G can also support 1000BASE-X link mode - NFC: NULL out the dev->rfkill to prevent UAF - efi: Add missing prototype for efi_capsule_setup_info - target: remove an incorrect unmap zeroes data deduction - drbd: fix duplicate array initializer - EDAC/dmc520: Don't print an error for each unconfigured interrupt line - mtd: rawnand: denali: Use managed device resources - HID: hid-led: fix maximum brightness for Dream Cheeky - HID: elan: Fix potential double free in elan_input_configured - drm/bridge: Fix error handling in analogix_dp_probe - sched/fair: Fix cfs_rq_clock_pelt() for throttled cfs_rq - spi: img-spfi: Fix pm_runtime_get_sync() error checking - cpufreq: Fix possible race in cpufreq online error path - ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix - media: hantro: Empty encoder capture buffers by default - drm/panel: simple: Add missing bus flags for Innolux G070Y2-L01 - ALSA: pcm: Check for null pointer of pointer substream before dereferencing it - inotify: show inotify mask flags in proc fdinfo - fsnotify: fix wrong lockdep annotations - of: overlay: do not break notify on NOTIFY_{OK|STOP} - drm/msm/dpu: adjust display_v_end for eDP and DP - scsi: ufs: qcom: Fix ufs_qcom_resume() - scsi: ufs: core: Exclude UECxx from SFR dump list - mtd: spi-nor: core: Check written SR value in spi_nor_write_16bit_sr_and_check() - [x86] pm: Fix false positive kmemleak report in msr_build_context() - mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() - [x86] speculation: Add missing prototype for unpriv_ebpf_notify() - ASoC: rk3328: fix disabling mclk on pclk probe failure - perf tools: Add missing headers needed by util/data.h - drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume - drm/msm/dp: stop event kernel thread when DP unbind - drm/msm/dp: fix error check return value of irq_of_parse_and_map() - drm/msm/dsi: fix error checks and return values for DSI xmit functions - drm/msm/hdmi: check return value after calling platform_get_resource_byname() - drm/msm/hdmi: fix error check return value of irq_of_parse_and_map() - drm/msm: add missing include to msm_drv.c - drm/panel: panel-simple: Fix proper bpc for AM-1280800N3TZQW-T00H - drm/rockchip: vop: fix possible null-ptr-deref in vop_bind() - perf tools: Use Python devtools for version autodetection rather than runtime - virtio_blk: fix the discard_granularity and discard_alignment queue limits - [x86] Fix return value of __setup handlers - irqchip/exiu: Fix acknowledgment of edge triggered interrupts - irqchip/aspeed-i2c-ic: Fix irq_of_parse_and_map() return value - irqchip/aspeed-scu-ic: Fix irq_of_parse_and_map() return value - [x86] mm: Cleanup the control_va_addr_alignment() __setup handler - [arm64] fix types in copy_highpage() - regulator: core: Fix enable_count imbalance with EXCLUSIVE_GET - drm/msm/dp: fix event thread stuck in wait_event after kthread_stop() - drm/msm/mdp5: Return error code in mdp5_pipe_release when deadlock is detected - drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected - drm/msm: return an error pointer in msm_gem_prime_get_sg_table() - media: uvcvideo: Fix missing check to determine if element is found in list - iomap: iomap_write_failed fix - spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname() - Revert "cpufreq: Fix possible race in cpufreq online error path" - regulator: qcom_smd: Fix up PM8950 regulator configuration - perf/amd/ibs: Use interrupt regs ip for stack unwinding - ath11k: Don't check arvif->is_started before sending management frames - ASoC: fsl: Fix refcount leak in imx_sgtl5000_probe - ASoC: mxs-saif: Fix refcount leak in mxs_saif_probe - regulator: pfuze100: Fix refcount leak in pfuze_parse_regulators_dt - ASoC: samsung: Use dev_err_probe() helper - ASoC: samsung: Fix refcount leak in aries_audio_probe - scripts/faddr2line: Fix overlapping text section failures - media: aspeed: Fix an error handling path in aspeed_video_probe() - media: exynos4-is: Fix PM disable depth imbalance in fimc_is_probe - media: st-delta: Fix PM disable depth imbalance in delta_probe - media: exynos4-is: Change clk_disable to clk_disable_unprepare - media: pvrusb2: fix array-index-out-of-bounds in pvr2_i2c_core_init - media: vsp1: Fix offset calculation for plane cropping - Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout - Bluetooth: Interleave with allowlist scan - Bluetooth: L2CAP: Rudimentary typo fixes - Bluetooth: LL privacy allow RPA - Bluetooth: use inclusive language in HCI role comments - Bluetooth: use inclusive language when filtering devices - Bluetooth: use hdev lock for accept_list and reject_list in conn req - nvme: set dma alignment to dword - lsm,selinux: pass flowi_common instead of flowi to the LSM hooks - sctp: read sk->sk_bound_dev_if once in sctp_rcv() - net: hinic: add missing destroy_workqueue in hinic_pf_to_mgmt_init - ASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_* - media: ov7670: remove ov7670_power_off from ov7670_remove - media: staging: media: rkvdec: Make use of the helper function devm_platform_ioremap_resource() - media: rkvdec: h264: Fix dpb_valid implementation - media: rkvdec: h264: Fix bit depth wrap in pps packet - ext4: reject the 'commit' option on ext2 filesystems - drm/msm/a6xx: Fix refcount leak in a6xx_gpu_init - drm: msm: fix possible memory leak in mdp5_crtc_cursor_set() - [x86] sev: Annotate stack change in the #VC handler - drm/msm/dpu: handle pm_runtime_get_sync() errors in bind path - [x86] drm/i915: Fix CFI violation with show_dynamic_id() - thermal/drivers/bcm2711: Don't clamp temperature at zero - thermal/drivers/broadcom: Fix potential NULL dereference in sr_thermal_probe - thermal/drivers/core: Use a char pointer for the cooling device name - thermal/core: Fix memory leak in __thermal_cooling_device_register() - thermal/drivers/imx_sc_thermal: Fix refcount leak in imx_sc_thermal_probe - ASoC: wm2000: fix missing clk_disable_unprepare() on error in wm2000_anc_transition() - NFC: hci: fix sleep in atomic context bugs in nfc_hci_hcp_message_tx - ASoC: max98090: Move check for invalid values before casting in max98090_put_enab_tlv() - net: stmmac: selftests: Use kcalloc() instead of kzalloc() - net: stmmac: fix out-of-bounds access in a selftest - hv_netvsc: Fix potential dereference of NULL pointer - rxrpc: Fix listen() setting the bar too high for the prealloc rings - rxrpc: Don't try to resend the request if we're receiving the reply - rxrpc: Fix overlapping ACK accounting - rxrpc: Don't let ack.previousPacket regress - rxrpc: Fix decision on when to generate an IDLE ACK - net: huawei: hinic: Use devm_kcalloc() instead of devm_kzalloc() - hinic: Avoid some over memory allocation - net/smc: postpone sk_refcnt increment in connect() - arm64: dts: rockchip: Move drive-impedance-ohm to emmc phy on rk3399 - memory: samsung: exynos5422-dmc: Avoid some over memory allocation - ARM: dts: suniv: F1C100: fix watchdog compatible - soc: qcom: smp2p: Fix missing of_node_put() in smp2p_parse_ipc - soc: qcom: smsm: Fix missing of_node_put() in smsm_parse_ipc - PCI: cadence: Fix find_first_zero_bit() limit - PCI: rockchip: Fix find_first_zero_bit() limit - PCI: dwc: Fix setting error return on MSI DMA mapping failure - ARM: dts: ci4x10: Adapt to changes in imx6qdl.dtsi regarding fec clocks - soc: qcom: llcc: Add MODULE_DEVICE_TABLE() - [x86] KVM: nVMX: Leave most VM-Exit info fields unmodified on failed VM-Entry - [x86] KVM: nVMX: Clear IDT vectoring on nested VM-Exit for double/triple fault - platform/chrome: cros_ec: fix error handling in cros_ec_register() - ARM: dts: imx6dl-colibri: Fix I2C pinmuxing - platform/chrome: Re-introduce cros_ec_cmd_xfer and use it for ioctls - can: xilinx_can: mark bit timing constants as const - ARM: dts: stm32: Fix PHY post-reset delay on Avenger96 - ARM: dts: bcm2835-rpi-zero-w: Fix GPIO line name for Wifi/BT - ARM: dts: bcm2837-rpi-cm3-io3: Fix GPIO line names for SMPS I2C - ARM: dts: bcm2837-rpi-3-b-plus: Fix GPIO line name of power LED - ARM: dts: bcm2835-rpi-b: Fix GPIO line names - misc: ocxl: fix possible double free in ocxl_file_register_afu - crypto: marvell/cesa - ECB does not IV - gpiolib: of: Introduce hook for missing gpio-ranges - pinctrl: bcm2835: implement hook for missing gpio-ranges - arm: mediatek: select arch timer for mt7629 - powerpc/fadump: fix PT_LOAD segment for boot memory area - mfd: ipaq-micro: Fix error check return value of platform_get_irq() - scsi: fcoe: Fix Wstringop-overflow warnings in fcoe_wwn_from_mac() - firmware: arm_scmi: Fix list protocols enumeration in the base protocol - nvdimm: Fix firmware activation deadlock scenarios - nvdimm: Allow overwrite in the presence of disabled dimms - pinctrl: mvebu: Fix irq_of_parse_and_map() return value - drivers/base/node.c: fix compaction sysfs file leak - dax: fix cache flush on PMD-mapped pages - drivers/base/memory: fix an unlikely reference counting issue in __add_memory_block() - powerpc/8xx: export 'cpm_setbrg' for modules - pinctrl: renesas: core: Fix possible null-ptr-deref in sh_pfc_map_resources() - powerpc/idle: Fix return value of __setup() handler - powerpc/4xx/cpm: Fix return value of __setup() handler - ASoC: atmel-pdmic: Remove endianness flag on pdmic component - ASoC: atmel-classd: Remove endianness flag on class d component - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - ipc/mqueue: use get_tree_nodev() in mqueue_get_tree() - PCI: imx6: Fix PERST# start-up sequence - tty: fix deadlock caused by calling printk() under tty_port->lock - crypto: sun8i-ss - rework handling of IV - crypto: sun8i-ss - handle zero sized sg - crypto: cryptd - Protect per-CPU resource by disabling BH. - Input: sparcspkr - fix refcount leak in bbc_beep_probe - PCI/AER: Clear MULTI_ERR_COR/UNCOR_RCV bits - hwrng: omap3-rom - fix using wrong clk_disable() in omap_rom_rng_runtime_resume() - [powerpc*] 64: Only WARN if __pa()/__va() called with bad addresses - [powerpc*] perf: Fix the threshold compare group constraint for power9 - macintosh: via-pmu and via-cuda need RTC_LIB - powerpc/fsl_rio: Fix refcount leak in fsl_rio_setup - mfd: davinci_voicecodec: Fix possible null-ptr-deref davinci_vc_probe() - mailbox: forward the hrtimer if not queued and under a lock - [amd64] RDMA/hfi1: Prevent use of lock before it is initialized - Input: stmfts - do not leave device disabled in stmfts_input_open - OPP: call of_node_put() on error path in _bandwidth_supported() - f2fs: fix dereference of stale list iterator after loop body - iommu/mediatek: Add list_del in mtk_iommu_remove - i2c: at91: use dma safe buffers - cpufreq: mediatek: add missing platform_driver_unregister() on error in mtk_cpufreq_driver_init - cpufreq: mediatek: Use module_init and add module_exit - cpufreq: mediatek: Unregister platform device on exit - [mips*] Loongson: Use hwmon_device_register_with_groups() to register hwmon - i2c: at91: Initialize dma_buf in at91_twi_xfer() - dmaengine: idxd: Fix the error handling path in idxd_cdev_register() - NFS: Do not report EINTR/ERESTARTSYS as mapping errors - NFS: fsync() should report filesystem errors over EINTR/ERESTARTSYS - NFS: Do not report flush errors in nfs_write_end() - NFS: Don't report errors from nfs_pageio_complete() more than once - NFSv4/pNFS: Do not fail I/O when we fail to allocate the pNFS layout - video: fbdev: clcdfb: Fix refcount leak in clcdfb_of_vram_setup - dmaengine: stm32-mdma: remove GISR1 register - dmaengine: stm32-mdma: rework interrupt handler - dmaengine: stm32-mdma: fix chan initialization in stm32_mdma_irq_handler() - iommu/amd: Increase timeout waiting for GA log enablement - i2c: npcm: Fix timeout calculation - i2c: npcm: Correct register access width - i2c: npcm: Handle spurious interrupts - i2c: rcar: fix PM ref counts in probe error paths - perf c2c: Use stdio interface if slang is not supported - perf jevents: Fix event syntax error caused by ExtSel - f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count() - f2fs: fix to do sanity check on block address in f2fs_do_zero_range() - f2fs: fix to clear dirty inode in f2fs_evict_inode() - f2fs: fix deadloop in foreground GC - f2fs: don't need inode lock for system hidden quota - f2fs: fix to do sanity check on total_data_blocks - f2fs: fix fallocate to use file_modified to update permissions consistently - f2fs: fix to do sanity check for inline inode - wifi: mac80211: fix use-after-free in chanctx code - iwlwifi: mvm: fix assert 1F04 upon reconfig - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages - efi: Do not import certificates from UEFI Secure Boot for T2 Macs - bfq: Split shared queues on move between cgroups - bfq: Update cgroup information before merging bio - bfq: Track whether bfq_group is still online - ext4: fix use-after-free in ext4_rename_dir_prepare - ext4: fix warning in ext4_handle_inode_extension - ext4: fix bug_on in ext4_writepages - ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state - ext4: fix bug_on in __es_tree_search - ext4: verify dir block before splitting it (CVE-2022-1184) - ext4: avoid cycles in directory h-tree (CVE-2022-1184) - ACPI: property: Release subnode properties with data nodes - tracing: Fix potential double free in create_var_ref() - PCI/PM: Fix bridge_d3_blacklist[] Elo i2 overwrite of Gigabyte X299 - PCI: qcom: Fix runtime PM imbalance on probe errors - PCI: qcom: Fix unbalanced PHY init on probe errors - mm, compaction: fast_find_migrateblock() should return pfn in the target zone - [s390x] perf: obtain sie_block from the right address - dlm: fix plock invalid read - dlm: fix missing lkb refcount handling - ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock - scsi: dc395x: Fix a missing check on list iterator - scsi: ufs: qcom: Add a readl() to make sure ref_clk gets enabled - drm/amdgpu/cs: make commands with 0 chunks illegal behaviour. - drm/etnaviv: check for reaped mapping in etnaviv_iommu_unmap_gem - drm/nouveau/clk: Fix an incorrect NULL check on list iterator - drm/nouveau/kms/nv50-: atom: fix an incorrect NULL check on list iterator - drm/bridge: analogix_dp: Grab runtime PM reference for DP-AUX - [x86] drm/i915/dsi: fix VBT send packet port selection for ICL+ - md: fix an incorrect NULL check in does_sb_need_changing - md: fix an incorrect NULL check in md_reload_sb - mtd: cfi_cmdset_0002: Move and rename chip_check/chip_ready/chip_good_for_write - mtd: cfi_cmdset_0002: Use chip_ready() for write on S29GL064N - media: coda: Fix reported H264 profile - media: coda: Add more H264 levels for CODA960 - [amd64] RDMA/hfi1: Fix potential integer multiplication overflow errors - csky: patch_text: Fixup last cpu should be master - irqchip/armada-370-xp: Do not touch Performance Counter Overflow on A375, A38x, A39x - irqchip: irq-xtensa-mx: fix initial IRQ affinity - cfg80211: declare MODULE_FIRMWARE for regulatory.db - mac80211: upgrade passive scan to active scan on DFS channels after beacon rx - um: chan_user: Fix winch_tramp() return value - um: Fix out-of-bounds read in LDT setup - kexec_file: drop weak attribute from arch_kexec_apply_relocations[_add] - ftrace: Clean up hash direct_functions on register failures - iommu/msm: Fix an incorrect NULL check on list iterator - nodemask.h: fix compilation error with GCC12 - hugetlb: fix huge_pmd_unshare address update - xtensa/simdisk: fix proc_read_simdisk() - rtl818x: Prevent using not initialized queues - ASoC: rt5514: Fix event generation for "DSP Voice Wake Up" control - carl9170: tx: fix an incorrect use of list iterator - stm: ltdc: fix two incorrect NULL checks on list iterator - bcache: improve multithreaded bch_btree_check() - bcache: improve multithreaded bch_sectors_dirty_init() - bcache: remove incremental dirty sector counting for bch_sectors_dirty_init() - bcache: avoid journal no-space deadlock by reserving 1 journal bucket - serial: pch: don't overwrite xmit->buf[0] by x_char - tilcdc: tilcdc_external: fix an incorrect NULL check on list iterator - gma500: fix an incorrect NULL check on list iterator - arm64: dts: qcom: ipq8074: fix the sleep clock frequency - phy: qcom-qmp: fix struct clk leak on probe errors - ARM: dts: s5pv210: Remove spi-cs-high on panel in Aries - ARM: pxa: maybe fix gpio lookup tables - SMB3: EBADF/EIO errors in rename/open caused by race condition in smb2_compound_op - docs/conf.py: Cope with removal of language=None in Sphinx 5.0.0 - dt-bindings: gpio: altera: correct interrupt-cells - vdpasim: allow to enable a vq repeatedly - blk-iolatency: Fix inflight count imbalances and IO hangs on offline - coresight: core: Fix coresight device probe failure issue - phy: qcom-qmp: fix reset-controller leak on probe errors - net: ipa: fix page free in ipa_endpoint_trans_release() - net: ipa: fix page free in ipa_endpoint_replenish_one() - xfs: set inode size after creating symlink - xfs: sync lazy sb accounting on quiesce of read-only mounts - xfs: fix chown leaking delalloc quota blocks when fssetxattr fails - xfs: fix incorrect root dquot corruption error when switching group/project quota types - xfs: restore shutdown check in mapped write fault path - xfs: force log and push AIL to clear pinned inodes when aborting mount - xfs: consider shutdown in bmapbt cursor delete assert - xfs: assert in xfs_btree_del_cursor should take into account error - kseltest/cgroup: Make test_stress.sh work if run interactively - thermal/core: fix a UAF bug in __thermal_cooling_device_register() - thermal/core: Fix memory leak in the error path - bfq: Avoid merging queues with different parents - bfq: Drop pointless unlock-lock pair - bfq: Remove pointless bfq_init_rq() calls - bfq: Get rid of __bio_blkcg() usage - bfq: Make sure bfqg for which we are queueing requests is online - block: fix bio_clone_blkg_association() to associate with proper blkcg_gq - Revert "random: use static branch for crng_ready()" - RDMA/rxe: Generate a completion for unsupported/invalid opcode - [mips*] IP27: Remove incorrect `cpu_has_fpu' override - [mips*] IP30: Remove incorrect `cpu_has_fpu' override - ext4: only allow test_dummy_encryption when supported - md: bcache: check the return value of kzalloc() in detached_dev_do_request() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.122 - pcmcia: db1xxx_ss: restrict to MIPS_DB1XXX boards - staging: greybus: codecs: fix type confusion of list iterator variable - iio: adc: ad7124: Remove shift from scan_type - tty: goldfish: Use tty_port_destroy() to destroy port - tty: serial: owl: Fix missing clk_disable_unprepare() in owl_uart_probe - tty: n_tty: Restore EOF push handling behavior - tty: serial: fsl_lpuart: fix potential bug when using both of_alias_get_id and ida_simple_get - usb: usbip: fix a refcount leak in stub_probe() - usb: usbip: add missing device lock on tweak configuration cmd - USB: storage: karma: fix rio_karma_init return - usb: musb: Fix missing of_node_put() in omap2430_probe - staging: fieldbus: Fix the error handling path in anybuss_host_common_probe() - pwm: lp3943: Fix duty calculation in case period was clamped - rpmsg: qcom_smd: Fix irq_of_parse_and_map() return value - usb: dwc3: pci: Fix pm_runtime_get_sync() error checking - misc: fastrpc: fix an incorrect NULL check on list iterator - firmware: stratix10-svc: fix a missing check on list iterator - usb: typec: mux: Check dev_set_name() return value - iio: adc: stmpe-adc: Fix wait_for_completion_timeout return value check - iio: proximity: vl53l0x: Fix return value check of wait_for_completion_timeout - iio: adc: sc27xx: fix read big scale voltage not right - iio: adc: sc27xx: Fine tune the scale calibration values - rpmsg: qcom_smd: Fix returning 0 if irq_of_parse_and_map() fails - phy: qcom-qmp: fix pipe-clock imbalance on power-on failure - serial: sifive: Report actual baud base rather than fixed 115200 - coresight: cpu-debug: Replace mutex with mutex_trylock on panic notifier - extcon: ptn5150: Add queue work sync before driver release - soc: rockchip: Fix refcount leak in rockchip_grf_init - rtc: mt6397: check return value after calling platform_get_resource() - serial: meson: acquire port->lock in startup() - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - serial: digicolor-usart: Don't allow CS5-6 - serial: rda-uart: Don't allow CS5-6 - serial: txx9: Don't allow CS5-6 - serial: sh-sci: Don't allow CS5-6 - serial: sifive: Sanitize CSIZE and c_iflag - serial: st-asc: Sanitize CSIZE and correct PARENB for CS7 - serial: stm32-usart: Correct CSIZE, bits, and parity - firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle - bus: ti-sysc: Fix warnings for unbind for serial - driver: base: fix UAF when driver_attach failed - driver core: fix deadlock in __device_attach - watchdog: rti-wdt: Fix pm_runtime_get_sync() error checking - watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe - ASoC: fsl_sai: Fix FSL_SAI_xDR/xFR definition - clocksource/drivers/oxnas-rps: Fix irq_of_parse_and_map() return value - [s390x] crypto: fix scatterwalk_unmap() callers in AES-GCM - net: sched: fixed barrier to prevent skbuff sticking in qdisc backlog - net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() - net: ethernet: ti: am65-cpsw-nuss: Fix some refcount leaks - net: dsa: mv88e6xxx: Fix refcount leak in mv88e6xxx_mdios_register - modpost: fix removing numeric suffixes - jffs2: fix memory leak in jffs2_do_fill_super - ubi: fastmap: Fix high cpu usage of ubi_bgt by making sure wl_pool not empty - ubi: ubi_create_volume: Fix use-after-free when volume creation failed - bpf: Fix probe read error in ___bpf_prog_run() - net/smc: fixes for converting from "struct smc_cdc_tx_pend **" to "struct smc_wr_tx_pend_priv *" - nfp: only report pause frame configuration for physical device - sfc: fix considering that all channels have TX queues - sfc: fix wrong tx channel offset with efx_separate_tx_channels - net/mlx5: Don't use already freed action pointer - net/mlx5: correct ECE offset in query qp output - net/mlx5e: Update netdev features after changing XDP state - net: sched: add barrier to fix packet stuck problem for lockless qdisc - tcp: tcp_rtx_synack() can be called from process context - gpio: pca953x: use the correct register address to do regcache sync - afs: Fix infinite loop found by xfstest generic/676 - scsi: sd: Fix potential NULL pointer dereference - tipc: check attribute length for bearer name - driver core: Fix wait_for_device_probe() & deferred_probe_timeout interaction - perf c2c: Fix sorting in percent_rmt_hitm_cmp() - dmaengine: idxd: set DMA_INTERRUPT cap bit - mips: cpc: Fix refcount leak in mips_cpc_default_phys_base - bootconfig: Make the bootconfig.o as a normal object file - tracing: Fix sleeping function called from invalid context on RT kernel - tracing: Avoid adding tracer option before update_tracer_options - iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() - iommu/arm-smmu-v3: check return value after calling platform_get_resource() - f2fs: remove WARN_ON in f2fs_is_valid_blkaddr - i2c: cadence: Increase timeout per message if necessary - dmaengine: zynqmp_dma: In struct zynqmp_dma_chan fix desc_size data type - NFSv4: Don't hold the layoutget locks across multiple RPC calls - video: fbdev: hyperv_fb: Allow resolutions with size > 64 MB for Gen1 - video: fbdev: pxa3xx-gcu: release the resources correctly in pxa3xx_gcu_probe/remove() - xprtrdma: treat all calls not a bcall when bc_serv is NULL - netfilter: nat: really support inet nat without l3 address - netfilter: nf_tables: delete flowtable hooks via transaction list - powerpc/kasan: Force thread size increase with KASAN - netfilter: nf_tables: always initialize flowtable hook list in transaction - ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe - netfilter: nf_tables: release new hooks on unsupported flowtable flags - netfilter: nf_tables: memleak flow rule from commit path - netfilter: nf_tables: bail out early if hardware offload is not supported - xen: unexport __init-annotated xen_xlate_map_ballooned_pages() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - bpf, arm64: Clear prog->jited_len along prog->jited - net: dsa: lantiq_gswip: Fix refcount leak in gswip_gphy_fw_list - net/mlx4_en: Fix wrong return value on ioctl EEPROM query failure - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - net: mdio: unexport __init-annotated mdio_bus_init() - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - net: ipv6: unexport __init-annotated seg6_hmac_init() - net/mlx5: Rearm the FW tracer after each tracer event - net/mlx5: fs, fail conflicting actions - ip_gre: test csum_start instead of transport header - net: altera: Fix refcount leak in altera_tse_mdio_create - drm: imx: fix compiler warning with gcc-12 - iio: dummy: iio_simple_dummy: check the return value of kstrdup() - staging: rtl8712: fix a potential memory leak in r871xu_drv_init() - iio: st_sensors: Add a local lock for protecting odr - tty: synclink_gt: Fix null-pointer-dereference in slgt_clean() - tty: Fix a possible resource leak in icom_probe - drivers: staging: rtl8192u: Fix deadlock in ieee80211_beacons_stop() - drivers: staging: rtl8192e: Fix deadlock in rtllib_beacons_stop() - USB: host: isp116x: check return value after calling platform_get_resource() - drivers: tty: serial: Fix deadlock in sa1100_set_termios() - drivers: usb: host: Fix deadlock in oxu_bus_suspend() - USB: hcd-pci: Fully suspend across freeze/thaw cycle - sysrq: do not omit current cpu when showing backtrace of all active CPUs - usb: dwc2: gadget: don't reset gadget's driver->bus - misc: rtsx: set NULL intfdata when probe fails - extcon: Modify extcon device to be created after driver data is set - clocksource/drivers/sp804: Avoid error on multiple instances - staging: rtl8712: fix uninit-value in usb_read8() and friends - staging: rtl8712: fix uninit-value in r871xu_drv_init() - serial: msm_serial: disable interrupts in __msm_console_write() - kernfs: Separate kernfs_pr_cont_buf and rename_lock. - watchdog: wdat_wdt: Stop watchdog when rebooting the system - md: protect md_unregister_thread from reentrancy - scsi: myrb: Fix up null pointer access on myrb_cleanup() - Revert "net: af_key: add check for pfkey_broadcast in function pfkey_process" - ceph: allow ceph.dir.rctime xattr to be updatable - drm/radeon: fix a possible null pointer dereference - modpost: fix undefined behavior of is_arm_mapping_symbol() - [x86] cpu: Elide KCSAN for cpu_has() and friends - jump_label,noinstr: Avoid instrumentation for JUMP_LABEL=n builds - nbd: call genl_unregister_family() first in nbd_cleanup() - nbd: fix race between nbd_alloc_config() and module removal - nbd: fix io hung while disconnecting device - [s390x] gmap: voluntarily schedule during key setting - cifs: version operations for smb20 unneeded when legacy support disabled - nodemask: Fix return values to be unsigned - vringh: Fix loop descriptors check in the indirect cases - scripts/gdb: change kernel config dumping method - ALSA: hda/conexant - Fix loopback issue with CX20632 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo Yoga DuetITL 2021 - cifs: return errors during session setup during reconnects - cifs: fix reconnect on smb3 mount types - ata: libata-transport: fix {dma|pio|xfer}_mode sysfs files - mmc: block: Fix CQE recovery reset success - net: phy: dp83867: retrigger SGMII AN when link change - nfc: st21nfca: fix incorrect validating logic in EVT_TRANSACTION - nfc: st21nfca: fix memory leaks in EVT_TRANSACTION handling - nfc: st21nfca: fix incorrect sizing calculations in EVT_TRANSACTION - ixgbe: fix bcast packets Rx on VF after promisc removal - ixgbe: fix unexpected VLAN Rx in promisc mode on VF - Input: bcm5974 - set missing URB_NO_TRANSFER_DMA_MAP urb flag - drm/bridge: analogix_dp: Support PSR-exit to disable transition - drm/atomic: Force bridge self-refresh-exit on CRTC switch - [powerpc*] 32: Fix overread/overwrite of thread_struct via ptrace (CVE-2022-32981) - [powerpc*] mm: Switch obsolete dssall to .long - interconnect: qcom: sc7180: Drop IP0 interconnects - interconnect: Restore sync state by ignoring ipa-virt in provider count - md/raid0: Ignore RAID0 layout if the second zone has only one device - PCI: qcom: Fix pipe clock imbalance - zonefs: fix handling of explicit_open option on mount - dmaengine: idxd: add missing callback function to support DMA_INTERRUPT - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.123 - [x86] Mitigate Processor MMIO Stale Data vulnerabilities (CVE-2022-21123, CVE-2022-21125, CVE-2022-21166): + Documentation: Add documentation for Processor MMIO Stale Data + x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug + x86/speculation: Add a common function for MD_CLEAR mitigation update + x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data + x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations + x86/speculation/mmio: Enable CPU Fill buffer clearing on idle + x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data + x86/speculation/srbds: Update SRBDS mitigation selection + x86/speculation/mmio: Reuse SRBDS mitigation for SBDS + KVM: x86/speculation: Disable Fill buffer clear within guests + x86/speculation/mmio: Print SMT warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.124 - 9p: missing chunk of "fs/9p: Don't update file type when updating file attributes" - nfsd: Replace use of rwsem with errseq_t - bpf: Fix incorrect memory charge cost calculation in stack_map_alloc() - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - quota: Prevent memory allocation recursion while holding dq_lock - [armhf] ASoC: es8328: Fix event generation for deemphasis control - Input: soc_button_array - also add Lenovo Yoga Tablet2 1051F to dmi_use_low_level_irq - scsi: vmw_pvscsi: Expand vcpuHint to 16 bits - scsi: lpfc: Fix port stuck in bypassed state after LIP in PT2PT topology - scsi: lpfc: Allow reduced polling rate for nvme_admin_async_event cmd completion - scsi: ipr: Fix missing/incorrect resource cleanup in error case - scsi: pmcraid: Fix missing resource cleanup in error case - ALSA: hda/realtek - Add HW8326 support - virtio-mmio: fix missing put_device() when vm_cmdline_parent registration failed - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - random: credit cpu and bootloader seeds by default - pNFS: Don't keep retrying if the server replied NFS4ERR_LAYOUTUNAVAILABLE - pNFS: Avoid a live lock condition in pnfs_update_layout() - [x86] clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() - i40e: Fix adding ADQ filter to TC0 - i40e: Fix calculating the number of queue pairs - i40e: Fix call trace in setup_tx_descriptors - [x86] Drivers: hv: vmbus: Release cpu lock in error case - [x86] drm/i915/reset: Fix error_state_read ptr + offset use - nvme: use sysfs_emit instead of sprintf - nvme: add device name to warning in uuid_show() - net: ax25: Fix deadlock caused by skb_recv_datagram in ax25_recvmsg - [arm64] ftrace: fix branch range checks - [arm64] ftrace: consistently handle PLTs. - block: Fix handling of offline queues in blk_mq_alloc_request_hctx() - faddr2line: Fix overlapping text section failures, the sequel - [arm64,armhf] irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions - [arm64,armhf] irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - i2c: designware: Use standard optional ref clock implementation - [x86] mei: me: add raptor lake point S DID - [x86] comedi: vmk80xx: fix expression for tx buffer size - USB: serial: option: add support for Cinterion MV31 with new baseline - USB: serial: io_ti: add Agilent E5805A support - [arm*] usb: dwc2: Fix memory leak in dwc2_hcd_init - serial: 8250: Store to lsr_save_flags after lsr read - dm mirror log: round up region bitmap size to BITS_PER_LONG - drm/amd/display: Cap OLED brightness per max frame-average luminance - ext4: fix bug_on ext4_mb_use_inode_pa - ext4: make variable "count" signed - ext4: add reserved GDT blocks check - [arm64] KVM: arm64: Don't read a HW interrupt pending state in user context - [x86] KVM: x86: Account a variety of miscellaneous allocations - [x86] KVM: SVM: Use kzalloc for sev ioctl interfaces to prevent kernel data leak - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machine - virtio-pci: Remove wrong address verification in vp_del_vqs() - dma-direct: don't over-decrypt memory - net/sched: act_police: more accurate MTU policing - net: openvswitch: fix misuse of the cached connection on tuple changes - Revert "PCI: Make pci_enable_ptm() private" - igc: Enable PCIe PTM - [arm64] clk: imx8mp: fix usb_root_clk parent https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.125 - [s390x] mm: use non-quiescing sske for KVM switch to keyed guest - zonefs: fix zonefs_iomap_begin() for reads - usb: gadget: u_ether: fix regression in setting fixed MAC address - tcp: add some entropy in __inet_hash_connect() - tcp: use different parts of the port_offset for index and offset (CVE-2022-1012) - tcp: add small random increments to the source port (CVE-2022-1012) - tcp: dynamically allocate the perturb table used by source ports (CVE-2022-1012) - tcp: increase source port perturb table to 2^16 (CVE-2022-1012, CVE-2022-32296) - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012) - serial: core: Initialize rs485 RTS polarity already on probe - [arm64] mm: Don't invalidate FROM_DEVICE buffers at start of DMA transfer - io_uring: add missing item types for various requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.126 - io_uring: use separate list entry for iopoll requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.127 - vt: drop old FONT ioctls - random: schedule mix_interrupt_randomness() less often - random: quiet urandom warning ratelimit suppression message - ALSA: hda/via: Fix missing beep setup - ALSA: hda/conexant: Fix missing beep setup - ALSA: hda/realtek: Add mute LED quirk for HP Omen laptop - ALSA: hda/realtek - ALC897 headset MIC no sound - ALSA: hda/realtek: Apply fixup for Lenovo Yoga Duet 7 properly - ALSA: hda/realtek: Add quirk for Clevo PD70PNT - ALSA: hda/realtek: Add quirk for Clevo NS50PU - net: openvswitch: fix parsing of nw_proto for IPv6 fragments - btrfs: add error messages to all unrecognized mount options - mmc: sdhci-pci-o2micro: Fix card detect by dealing with debouncing - [armhf] mtd: rawnand: gpmi: Fix setting busy timeout setting - ata: libata: add qc->flags in ata_qc_complete_template tracepoint - dm era: commit metadata in postsuspend after worker stops - dm mirror log: clear log bits up to BITS_PER_LONG boundary - USB: serial: option: add Telit LE910Cx 0x1250 composition - USB: serial: option: add Quectel EM05-G modem - USB: serial: option: add Quectel RM500K module support - [arm64] drm/msm: Fix double pm_runtime_disable() call - netfilter: nftables: add nft_parse_register_load() and use it - netfilter: nftables: add nft_parse_register_store() and use it - netfilter: use get_random_u32 instead of prandom - scsi: scsi_debug: Fix zone transition to full condition - [arm64] drm/msm: use for_each_sgtable_sg to iterate over scatterlist - bpf: Fix request_sock leak in sk lookup helpers - [arm64,armhf] drm/sun4i: Fix crash during suspend after component bind failure - [amd64] bpf, x86: Fix tail call count offset calculation on bpf2bpf call - phy: aquantia: Fix AN when higher speeds than 1G are not advertised - tipc: simplify the finalize work queue - tipc: fix use-after-free Read in tipc_named_reinit - igb: fix a use-after-free issue in igb_clean_tx_ring - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - [arm64] drm/msm/mdp4: Fix refcount leak in mdp4_modeset_init_intf - [arm64] drm/msm/dp: check core_initialized before disable interrupts at dp_display_unbind() - [arm64] drm/msm/dp: fixes wrong connection state caused by failure of link train - [arm64] drm/msm/dp: deinitialize mainlink if link training failed - [arm64] drm/msm/dp: promote irq_hpd handle to handle link training correctly - [arm64] drm/msm/dp: fix connect/disconnect handled at irq_hpd - erspan: do not assume transport header is always set - x86/xen: Remove undefined behavior in setup_features() - afs: Fix dynamic root getattr - ice: ethtool: advertise 1000M speeds properly - regmap-irq: Fix a bug in regmap_irq_enable() for type_in_mask chips - igb: Make DMA faster when CPU is active on the PCIe link - virtio_net: fix xdp_rxq_info bug after suspend/resume - nvme: centralize setting the timeout in nvme_alloc_request - nvme: split nvme_alloc_request() - nvme: mark nvme_setup_passsthru() inline - nvme: don't check nvme_req flags for new req - nvme-pci: allocate nvme_command within driver pdu - nvme-pci: add NO APST quirk for Kioxia device - nvme: move the Samsung X5 quirk entry to the core quirks - [s390x] cpumf: Handle events cycles and instructions identical - iio: mma8452: fix probe fail when device tree compatible is used. - iio: adc: vf610: fix conversion mode sysfs node name - xhci: turn off port power in shutdown - xhci-pci: Allow host runtime PM as default for Intel Raptor Lake xHCI - xhci-pci: Allow host runtime PM as default for Intel Meteor Lake xHCI - [arm64,armhf] usb: chipidea: udc: check request status before setting device address - f2fs: attach inline_data after setting compression - iio:accel:bma180: rearrange iio trigger get and register - iio:accel:mxc4005: rearrange iio trigger get and register - iio: accel: mma8452: ignore the return value of reset operation - iio: gyro: mpu3050: Fix the error handling in mpu3050_power_up() - iio: imu: inv_icm42600: Fix broken icm42600 (chip id 0 value) - iio: adc: axp288: Override TS pin bias current for some models - iio: adc: adi-axi-adc: Fix refcount leak in adi_axi_adc_attach_client - [powerpc*] Enable execve syscall exit tracepoint - [powerpc*] rtas: Allow ibm,platform-dump RTAS call with null buffer address - [powerpc*] powernv: wire up rng during setup_arch - [armhf] exynos: Fix refcount leak in exynos_map_pmu - modpost: fix section mismatch check for exported init/exit sections - random: update comment from copy_to_user() -> copy_to_iter() - [powerpc*] pseries: wire up rng during setup_arch() . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.120-rt70 * [rt] Drop "crypto: cryptd - add a lock instead preempt_disable/local_bh_disable" patch * Bump ABI to 16 . [ Ben Hutchings ] * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off * [armel,armhf] crypto: Enable optimised implementations (see #922204): - Enable CRYPTO_SHA256_ARM, CRYPTO_SHA512_ARM as modules - [armhf] Enable SHA1_ARM_NEON, CRYPTO_SHA1_ARM_CE, CRYPTO_SHA2_ARM_CE, CRYPTO_AES_ARM_BS, CRYPTO_AES_ARM_CE, CRYPTO_GHASH_ARM_CE, CRYPTO_CRCT10DIF_ARM_CE, CRYPTO_CRC32_ARM_CE as modules linux-signed-arm64 (5.10.120+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.120-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.114 - USB: quirks: add a Realtek card reader - USB: quirks: add STRING quirk for VCOM device - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions - xhci: Enable runtime PM on second Alderlake controller - xhci: stop polling roothubs after shutdown - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms - iio: dac: ad5592r: Fix the missing return value. - iio: dac: ad5446: Fix read_raw not returning set value - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on() - iio: imu: inv_icm42600: Fix I2C init possible nack - usb: misc: fix improper handling of refcount in uss720_probe() - [arm64,x86] usb: typec: ucsi: Fix reuse of completion structure - [arm64,x86] usb: typec: ucsi: Fix role swapping - usb: gadget: uvc: Fix crash when encoding data for usb request - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind() - [arm64,armhf] usb: dwc3: Try usb-role-switch first in dwc3_drd_init - [arm64,armhf] usb: dwc3: core: Fix tx/rx threshold settings - [arm64,armhf] usb: dwc3: core: Only handle soft-reset in DCTL - [arm64,armhf] usb: dwc3: gadget: Return proper request status - [arm*] usb: phy: generic: Get the vbus supply - [arm64,armhf] serial: imx: fix overrun interrupts in DMA mode - serial: 8250: Also set sticky MCR bits in console restoration - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - [arm64,armhf] arch_topology: Do not set llc_sibling if llc_id is invalid - hex2bin: make the function hex_to_bin constant-time - hex2bin: fix access beyond string end - iocost: don't reset the inuse weight of under-weighted debtors - video: fbdev: udlfb: properly check endpoint type - iio:imu:bmi160: disable regulator in error path - USB: Fix xhci event ring dequeue pointer ERDP update issue - [armhf] phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe - [armhf] phy: samsung: exynos5250-sata: fix missing device put in probe error paths - [armhf] OMAP2+: Fix refcount leak in omap_gic_of_init - [armhf] bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific - [armhf] phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks - [armhf] dts: am3517-evm: Fix misc pinmuxing - [armhf] dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35 - ipvs: correctly print the memory size of ip_vs_conn_tab - [armhf] pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_link_register_of - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook - [arm64,armhf] pinctrl: rockchip: fix RK3308 pinmux bits - tcp: md5: incorrect tcp_header_len for incoming connections - [armhf] pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested - tcp: ensure to use the most recently sent skb when filling the rate sample - wireguard: device: check for metadata_dst with skb_valid_dst() - sctp: check asoc strreset_chunk in sctp_generate_reconf_event - [arm64] dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock - [arm64] net: hns3: modify the return code of hclge_get_ring_chain_from_mbx - [arm64] net: hns3: add validity check for message data length - [arm64] net: hns3: add return value for mailbox handling in PF - net/smc: sync err code when tcp connection was refused - ip_gre: Make o_seqno start from 0 in native mode - ip6_gre: Make o_seqno start from 0 in native mode - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - tcp: make sure treq->af_specific is initialized - [arm64,armhf] bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create() - [arm64,armhf] clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource() - [arm64] net: bcmgenet: hide status block before TX timestamping - net: phy: marvell10g: fix return value on error - bnx2x: fix napi API usage sequence - [arm64,armhf] net: fec: add missing of_node_put() in fec_enet_init_stop_mode() - ixgbe: ensure IPsec VF<->PF compatibility - tcp: fix F-RTO may not work correctly when receiving DSACK - [x86] ASoC: Intel: soc-acpi: correct device endpoints for max98373 - ext4: fix bug_on in start_this_handle during umount filesystem - [amd64] x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - cifs: destage any unwritten data to the server before calling copychunk_write - [x86] drivers: net: hippi: Fix deadlock in rr_close() - zonefs: Fix management of open zones - zonefs: Clear inode information flags on inode creation - [x86] drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses - [armhf] net: ethernet: stmmac: fix write to sgmii_adapter_base - [x86] thermal: int340x: Fix attr.show callback prototype - [x86] cpu: Load microcode during restore_processor_state() - tty: n_gsm: fix restart handling via CLD command - tty: n_gsm: fix decoupled mux resource - tty: n_gsm: fix mux cleanup after unregister tty device - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2 - tty: n_gsm: fix malformed counter for out of frame data - netfilter: nft_socket: only do sk lookups when indev is available - tty: n_gsm: fix insufficient txframe size - tty: n_gsm: fix wrong DLCI release order - tty: n_gsm: fix missing explicit ldisc flush - tty: n_gsm: fix wrong command retry handling - tty: n_gsm: fix wrong command frame length field encoding - tty: n_gsm: fix reset fifo race condition - tty: n_gsm: fix incorrect UA handling - tty: n_gsm: fix software flow control handling https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.115 - [mips*] Fix CP0 counter erratum detection for R4k CPUs - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC - mmc: core: Set HS clock speed before sending HS CMD13 - gpiolib: of: fix bounds check for 'gpio-reserved-ranges' - [x86] KVM: x86/svm: Account for family 17h event renumberings in amd_pmc_perf_hw_id - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - firewire: fix potential uaf in outbound_phy_packet_callback() - firewire: remove check of list iterator against head past the loop body - firewire: core: extend card->lock in fw_core_handle_bus_reset - net: stmmac: disable Split Header (SPH) for Intel platforms - genirq: Synchronize interrupt thread startup - ASoC: da7219: Fix change notifications for tone generator frequency - [s390x] dasd: fix data corruption for ESE devices - [s390x] dasd: prevent double format of tracks for ESE devices - [s390x] dasd: Fix read for ESE with blksize < 4k - [s390x] dasd: Fix read inconsistency for ESE DASD devices - can: isotp: remove re-binding of bound socket - nfc: replace improper check device_is_registered() in netlink related functions (CVE-2022-1974) - NFC: netlink: fix sleep in atomic bug when firmware download timeout (CVE-2022-1975) - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled (irq_mask not set) - hwmon: (adt7470) Fix warning on module removal - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback - net/mlx5e: Fix trust state reset in reload - net/mlx5e: Don't match double-vlan packets if cvlan is not set - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft release - net/mlx5e: Fix the calling of update_buffer_lossy() API - net/mlx5: Avoid double clear or set of sync reset requested - NFSv4: Don't invalidate inode attributes on delegation return - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in sun8i_dwmac_register_mdio_mux() - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt() - hinic: fix bug of wq out of bound access - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag - bnxt_en: Fix unnecessary dropping of RX packets - [arm64,armhf] smsc911x: allow using IRQ0 - btrfs: always log symlinks in full mode - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has architectural PMU - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is advertised - rcu: Fix callbacks processing time limit retaining cond_resched() - rcu: Apply callbacks processing time limit only on softirq - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern (CVE-2022-0494) - dm: interlock pending dm_io and dm_wait_for_bios_completion - [arm64] PCI: aardvark: Clear all MSIs at setup - [arm64] PCI: aardvark: Fix reading MSI interrupt number - mmc: rtsx: add 74 Clocks in power on flow https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.116 - regulator: consumer: Add missing stubs to regulator/consumer.h - block: drbd: drbd_nl: Make conversion to 'enum drbd_ret_code' explicit - nfp: bpf: silence bitwise vs. logical OR warning - Bluetooth: Fix the creation of hdev->name - mm: fix missing cache flush for all tail pages of compound page - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.117 - batman-adv: Don't skb_split skbuffs with frag_list - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing - hwmon: (tmp401) Add OF device ID table - mac80211: Reset MBSSID parameters upon connection - net: Fix features skip in for_each_netdev_feature() - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in hardware when deleted - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0 - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving VCAP filters - ipv4: drop dst in multicast routing path - drm/nouveau: Fix a potential theorical leak in nouveau_get_backlight_name() - netlink: do not reset transport header in netlink_recvmsg() - sfc: Use swap() instead of open coding it - net: sfc: fix memory leak due to ptp channel - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection - nfs: fix broken handling of the softreval mount option - dim: initialize all struct fields - [s390x] ctcm: fix variable dereferenced before check - [s390x] ctcm: fix potential memory leak - [s390x] lcs: fix variable dereferenced before check - net/sched: act_pedit: really ensure the skb is writable - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down() - net/smc: non blocking recvmsg() return -EAGAIN when no data and signal_pending - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe() - gfs2: Fix filesystem block deallocation for short writes - hwmon: (f71882fg) Fix negative temperature - ASoC: max98090: Reject invalid values in custom control put() - ASoC: max98090: Generate notifications on changes for custom control - ASoC: ops: Validate input values in snd_soc_put_volsw_range() - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT - tcp: resalt the secret every 10 seconds (CVE-2022-1012) - firmware_loader: use kernel credentials when reading firmware - tty: n_gsm: fix mux activation issues in gsm_config() - usb: cdc-wdm: fix reading stuck on device close - USB: serial: pl2303: add device id for HP LM930 Display - USB: serial: qcserial: add support for Sierra Wireless EM7590 - USB: serial: option: add Fibocom L610 modem - USB: serial: option: add Fibocom MA510 modem - ceph: fix setting of xattrs on async created inodes - drm/nouveau/tegra: Stop using iommu_present() - i40e: i40e_main: fix a missing check on list iterator - [amd64,arm64] net: atlantic: always deep reset on pm op, fixing up my null deref regression - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp() - [x86] drm/vmwgfx: Initialize drm_mode_fb_cmd2 - SUNRPC: Clean up scheduling of autoclose - SUNRPC: Prevent immediate close+reconnect - SUNRPC: Don't call connect() more than once on a TCP socket - SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() (CVE-2022-28893) - net: phy: Fix race condition on link status change - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of linear map - ping: fix address binding wrt vrf - usb: gadget: uvc: rename function to be more consistent - usb: gadget: uvc: allow for application to cleanly shutdown - io_uring: always use original task when preparing req identity (CVE-2022-1786) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.118 - io_uring: always grab file table for deferred statx - floppy: use a statically allocated error counter - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" - igc: Remove _I_PHY_ID checking - igc: Remove phy->type checking - igc: Update I226_K device ID - rtc: fix use-after-free on device removal - [arm64] rtc: pcf2127: fix bug when reading alarm registers - Input: add bounds checking to input_set_capability() - nvme-pci: add quirks for Samsung X5 SSDs - gfs2: Disable page faults during lockless buffered reads - [arm64,armhf] rtc: sun6i: Fix time overflow handling - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions - ALSA: hda/realtek: Enable headset mic on Lenovo P360 - [s390x] pci: improve zpci_dev reference counting - nvme-multipath: fix hang when disk goes live over reconnect - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - fs: fix an infinite loop in iomap_fiemap - drbd: remove usage of list iterator variable after loop - [arm64] platform/chrome: cros_ec_debugfs: detach log reader wq from devm - [armel,armhf] 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() - nilfs2: fix lockdep warnings in page operations for btree nodes - nilfs2: fix lockdep warnings during disk space reclamation - Revert "swiotlb: fix info leak with DMA_FROM_DEVICE" - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" (CVE-2022-0854) - ALSA: usb-audio: Restore Rane SL-1 quirk - [i386] ALSA: wavefront: Proper check of get_user() error - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729) - selinux: fix bad cleanup on error in hashtab_duplicate() - Fix double fget() in vhost_net_set_backend() - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is stable - [arm64] paravirt: Use RCU read locks to guard stolen_time - [arm64] mte: Ensure the cleared tags are visible before setting the PTE - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - libceph: fix potential use-after-free on linger ping and resends - drm/dp/mst: fix a possible memory leak in fetch_monitor_name() - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl - [arm64] net: macb: Increment rx bd head after allocating skb and buffer - net: evaluate net.ipvX.conf.all.disable_policy and disable_xfrm - xfrm: Add possibility to set the default to block if we have no policy - net: xfrm: fix shift-out-of-bounce - xfrm: make user policy API complete - xfrm: notify default policy on update - xfrm: fix dflt policy check when there is no policy configured - xfrm: rework default policy structure - xfrm: fix "disable_policy" flag use when arriving from different devices - net/sched: act_pedit: sanitize shift argument before usage - [x86] net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - [x86] net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - ice: fix possible under reporting of ethtool Tx and Rx statistics - net/qla3xxx: Fix a test in ql_reset_work() - net/mlx5e: Properly block LRO when XDP is enabled - net: af_key: add check for pfkey_broadcast in function pfkey_process - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15 - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - igb: skip phy status check where unavailable - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity - scsi: qla2xxx: Fix missed DMA unmap for aborted commands - mac80211: fix rx reordering with non explicit / psmp ack policy - nl80211: validate S1G channel width - nl80211: fix locking in nl80211_set_tx_bitrate_mask() - ethernet: tulip: fix missing pci_disable_device() on error in tulip_init_one() - [amd64,arm64] net: atlantic: fix "frag[0] not initialized" - [amd64,arm64] net: atlantic: reduce scope of is_rsc_complete - [amd64,arm64] net: atlantic: add check for MAX_SKB_FRAGS - [amd64,arm64] net: atlantic: verify hw_head_ lies within TX buffer ring - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group - afs: Fix afs_getattr() to refetch file status if callback break occurred - include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.119 - lockdown: also lock down previous kgdb use (CVE-2022-21499) - staging: rtl8723bs: prevent ->Ssid overflow in rtw_wx_set_scan() - [x86] KVM: x86: Properly handle APF vs disabled LAPIC situation - [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID (CVE-2022-1789) - tcp: change source port randomizarion at connect() time - secure_seq: use the 64 bits of the siphash for port offset calculation (CVE-2022-1012) - ACPI: sysfs: Make sparse happy about address space in use - ACPI: sysfs: Fix BERT error region memory mapping - random: avoid arch_get_random_seed_long() when collecting IRQ randomness - random: remove dead code left over from blocking pool - MAINTAINERS: co-maintain random.c - MAINTAINERS: add git tree for random.c - crypto: lib/blake2s - Move selftest prototype into header file - crypto: blake2s - define shash_alg structs using macros - [amd64] crypto: x86/blake2s - define shash_alg structs using macros - crypto: blake2s - remove unneeded includes - crypto: blake2s - move update and final logic to internal/blake2s.h - crypto: blake2s - share the "shash" API boilerplate code - crypto: blake2s - optimize blake2s initialization - crypto: blake2s - add comment for blake2s_state fields - crypto: blake2s - adjust include guard naming - crypto: blake2s - include instead of - lib/crypto: blake2s: include as built-in - lib/crypto: blake2s: move hmac construction into wireguard - lib/crypto: sha1: re-roll loops to reduce code size - lib/crypto: blake2s: avoid indirect calls to compression function for Clang CFI - random: document add_hwgenerator_randomness() with other input functions - random: remove unused irq_flags argument from add_interrupt_randomness() - random: use BLAKE2s instead of SHA1 in extraction - random: do not sign extend bytes for rotation when mixing - random: do not re-init if crng_reseed completes before primary init - random: mix bootloader randomness into pool - random: harmonize "crng init done" messages - random: use IS_ENABLED(CONFIG_NUMA) instead of ifdefs - random: early initialization of ChaCha constants - random: avoid superfluous call to RDRAND in CRNG extraction - random: don't reset crng_init_cnt on urandom_read() - random: fix typo in comments - random: cleanup poolinfo abstraction - random: cleanup integer types - random: remove incomplete last_data logic - random: remove unused extract_entropy() reserved argument - random: rather than entropy_store abstraction, use global - random: remove unused OUTPUT_POOL constants - random: de-duplicate INPUT_POOL constants - random: prepend remaining pool constants with POOL_ - random: cleanup fractional entropy shift constants - random: access input_pool_data directly rather than through pointer - random: selectively clang-format where it makes sense - random: simplify arithmetic function flow in account() - random: continually use hwgenerator randomness - random: access primary_pool directly rather than through pointer - random: only call crng_finalize_init() for primary_crng - random: use computational hash for entropy extraction - random: simplify entropy debiting - random: use linear min-entropy accumulation crediting - random: always wake up entropy writers after extraction - random: make credit_entropy_bits() always safe - random: remove use_input_pool parameter from crng_reseed() - random: remove batched entropy locking - random: fix locking in crng_fast_load() - random: use RDSEED instead of RDRAND in entropy extraction - random: get rid of secondary crngs - random: inline leaves of rand_initialize() - random: ensure early RDSEED goes through mixer on init - random: do not xor RDRAND when writing into /dev/random - random: absorb fast pool into input pool after fast load - random: use simpler fast key erasure flow on per-cpu keys - random: use hash function for crng_slow_load() - random: make more consistent use of integer types - random: remove outdated INT_MAX >> 6 check in urandom_read() - random: zero buffer after reading entropy from userspace - random: fix locking for crng_init in crng_reseed() - random: tie batched entropy generation to base_crng generation - random: remove ifdef'd out interrupt bench - random: remove unused tracepoints - random: add proper SPDX header - random: deobfuscate irq u32/u64 contributions - random: introduce drain_entropy() helper to declutter crng_reseed() - random: remove useless header comment - random: remove whitespace and reorder includes - random: group initialization wait functions - random: group crng functions - random: group entropy extraction functions - random: group entropy collection functions - random: group userspace read/write functions - random: group sysctl functions - random: rewrite header introductory comment - random: defer fast pool mixing to worker - random: do not take pool spinlock at boot - random: unify early init crng load accounting - random: check for crng_init == 0 in add_device_randomness() - random: pull add_hwgenerator_randomness() declaration into random.h - random: clear fast pool, crng, and batches in cpuhp bring up - random: round-robin registers as ulong, not u32 - random: only wake up writers after zap if threshold was passed - random: cleanup UUID handling - random: unify cycles_t and jiffies usage and types - random: do crng pre-init loading in worker rather than irq - random: give sysctl_random_min_urandom_seed a more sensible value - random: don't let 644 read-only sysctls be written to - random: replace custom notifier chain with standard one - random: use SipHash as interrupt entropy accumulator - random: make consistent usage of crng_ready() - random: reseed more often immediately after booting - random: check for signal and try earlier when generating entropy - random: skip fast_init if hwrng provides large chunk of entropy - random: treat bootloader trust toggle the same way as cpu trust toggle - random: re-add removed comment about get_random_{u32,u64} reseeding - random: mix build-time latent entropy into pool at init - random: do not split fast init input in add_hwgenerator_randomness() - random: do not allow user to keep crng key around on stack - random: check for signal_pending() outside of need_resched() check - random: check for signals every PAGE_SIZE chunk of /dev/[u]random - random: allow partial reads if later user copies fail - random: make random_get_entropy() return an unsigned long - random: document crng_fast_key_erasure() destination possibility - random: fix sysctl documentation nits - init: call time_init() before rand_initialize() - [s390x] define get_cycles macro for arch-override - [powerpc*] define get_cycles macro for arch-override - timekeeping: Add raw clock fallback for random_get_entropy() - [mips*] use fallback for random_get_entropy() instead of just c0 random - [arm*] use fallback for random_get_entropy() instead of zero - [x86] tsc: Use fallback for random_get_entropy() instead of zero - random: insist on random_get_entropy() existing in order to simplify - random: do not use batches when !crng_ready() - random: use first 128 bits of input as fast init - random: do not pretend to handle premature next security model - random: order timer entropy functions below interrupt functions - random: do not use input pool from hard IRQs - random: help compiler out with fast_mix() by using simpler arguments - siphash: use one source of truth for siphash permutations - random: use symbolic constants for crng_init states - random: avoid initializing twice in credit race - random: move initialization out of reseeding hot path - random: remove ratelimiting for in-kernel unseeded randomness - random: use proper jiffies comparison macro - random: handle latent entropy and command line from random_init() - random: credit architectural init the exact amount - random: use static branch for crng_ready() - random: remove extern from functions in header - random: use proper return types on get_random_{int,long}_wait() - random: make consistent use of buf and len - random: move initialization functions out of hot pages - random: move randomize_page() into mm where it belongs - random: unify batched entropy implementations - random: convert to using fops->read_iter() - random: convert to using fops->write_iter() - random: wire up fops->splice_{read,write}_iter() - random: check for signals after page of pool writes - ALSA: ctxfi: Add SB046x PCI ID https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.120 - percpu_ref_init(): clean ->percpu_count_ref on failure - net: af_key: check encryption module availability consistency - nfc: pn533: Fix buggy cleanup order - [armhf] net: ftgmac100: Disable hardware checksum on AST2600 - [x86] i2c: ismt: Provide a DMA buffer for Interrupt Cause Logging - [arm64] drivers: i2c: thunderx: Allow driver to work with ACPI defined TWSI controllers - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: make poll_usage boolean and annotate its access - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - cfg80211: set custom regdomain after wiphy registration - assoc_array: Fix BUG_ON during garbage collect - io_uring: don't re-import iovecs from callbacks - io_uring: fix using under-expanded iters - xfs: detect overflows in bmbt records - xfs: show the proper user quota options - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks - xfs: fix an ABBA deadlock in xfs_rename - xfs: Fix CIL throttle hang when CIL space used going backwards - exfat: check if cluster num is valid - crypto: drbg - prepare for more fine-grained tracking of seeding state - crypto: drbg - track whether DRBG was seeded with !rng_is_initialized() - crypto: drbg - move dynamic ->reseed_threshold adjustments to __drbg_seed() - crypto: drbg - make reseeding from get_random_bytes() synchronous - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - netfilter: conntrack: re-fetch conntrack after insertion - [x86] kvm: Alloc dummy async #PF token outside of raw spinlock - [x86] kvm: use correct GFP flags for preemption disabled - [x86] KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) - [arm64] crypto: caam - fix i.MX6SX entropy delay value - crypto: ecrdsa - Fix incorrect use of vli_cmp - zsmalloc: fix races between asynchronous zspage free and page migration - Bluetooth: hci_qca: Use del_timer_sync() before freeing - dm integrity: fix error code in dm_integrity_ctr() - dm crypt: make printing of the key constant-time - dm stats: add cond_resched when looping over entries - dm verity: set DM_TARGET_IMMUTABLE feature flag - raid5: introduce MD_BROKEN - HID: multitouch: Add support for Google Whiskers Touchpad - HID: multitouch: add quirks to enable Lenovo X12 trackpoint - tpm: Fix buffer access in tpm2_get_tpm_pt() - docs: submitting-patches: Fix crossref to 'The canonical patch format' - NFS: Memory allocation failures are not server fatal errors - NFSD: Fix possible sleep during nfsd4_release_lockowner() - bpf: Fix potential array overflow in bpf_trampoline_get_progs() - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.115-rt67 * Bump ABI to 15 * [rt] Drop "random: Make it work on rt" . [ Mateusz Łukasik ] * [armhf] drivers/thermal: Enable SUN8I_THERMAL as module (Closes: #1007799) linux-signed-arm64 (5.10.120+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.120-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.15 linux-signed-arm64 (5.10.113+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.113-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.107 - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" (Closes: #1008299) - xfrm: Check if_id in xfrm_migrate - xfrm: Fix xfrm migrate issues when address family changes - mac80211: refuse aggregations sessions before authorized - [mips64el,mipsel] smp: fill in sibling and core maps earlier - [x86] atm: firestream: check the return value of ioremap() in fs_init() - iwlwifi: don't advertise TWT support - drm/vrr: Set VRR capable prop only if it is attached to connector - nl80211: Update bss channel on channel switch for P2P_CLIENT - sfc: extend the locking on mcdi->seqno https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.108 - [arm64] crypto: qcom-rng - ensure buffer for generate is completely filled - ocfs2: fix crash when initialize filecheck kobj fails - mm: swap: get rid of livelock in swapin readahead - efi: fix return value of __setup handlers - vsock: each transport cycles only on its own sockets - esp6: fix check on ipv6_skip_exthdr's return value - net: phy: marvell: Fix invalid comparison in the resume and suspend functions - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - atm: eni: Add check for dma_map_single - [x86] hv_netvsc: Add check for kvmalloc_array - [armhf] drm/imx: parallel-display: Remove bus flags check in imx_pd_bridge_atomic_check() - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of - net: phy: mscc: Add MODULE_FIRMWARE macros - bnx2x: fix built-in kernel driver load failure - [arm64] net: bcmgenet: skip invalid partial checksums - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain tc-flower offload - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver - usb: usbtmc: Fix bug in pipe direction for control transfers - scsi: mpt3sas: Page fault in reply q processing - Input: aiptek - properly check endpoint type - perf symbols: Fix symbol size calculation condition - net: usb: Correct PHY handling of smsc95xx - net: usb: Correct reset handling of smsc95xx - smsc95xx: Ignore -ENODEV errors when device is unplugged - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.109 - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION (CVE-2022-26490) - net: ipv6: fix skb_over_panic in __ip6_append_data - exfat: avoid incorrectly releasing for root inode - cgroup: Allocate cgroup_file_ctx for kernfs_open_file->priv (CVE-2021-4197) - cgroup: Use open-time cgroup namespace for process migration perm checks (CVE-2021-4197) - cgroup-v1: Correct privileges check in release_agent writes - tpm: Fix error handling in async work - llc: fix netdevice reference leaks in llc_ui_bind() (CVE-2022-28356) - ALSA: oss: Fix PCM OSS buffer allocation overflow - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - ALSA: hda/realtek: Add quirk for ASUS GA402 - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent read/write and buffer changes (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048) - ALSA: pcm: Add stream lock during PCM reset ioctl operations - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB - ALSA: cmipci: Restore aux vol on suspend/resume - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec - [arm64] drivers: net: xgene: Fix regression in CRC stripping - netfilter: nf_tables: initialize registers in nft_do_chain() (CVE-2022-1016) - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3 - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU - [x86] crypto: qat - disable registration of algorithms - Revert "ath: add support for special 0x0 regulatory domain" - rcu: Don't deboost before reporting expedited quiescent state - mac80211: fix potential double free on mesh join - tpm: use try_get_ops() in tpm-space.c - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620 - llc: only change llc->dev when bind() succeeds https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.110 - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854) - USB: serial: pl2303: add IBM device IDs - USB: serial: simple: add Nokia phone driver - netdevice: add the case if dev is NULL - HID: logitech-dj: add new lightspeed receiver id - xfrm: fix tunnel model fragmentation behavior - virtio_console: break out of buf poll on remove - ethernet: sun: Free the coherent when failing in probing - gpio: Revert regression in sysfs-gpio (gpiolib.c) - spi: Fix invalid sgs value - Revert "gpio: Revert regression in sysfs-gpio (gpiolib.c)" - spi: Fix erroneous sgs value with min_t() - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register (CVE-2022-1353) - [arm*] iommu/iova: Improve 32-bit free space estimate - tpm: fix reference counting for struct tpm_chip - virtio-blk: Use blk_validate_block_size() to validate block size - USB: usb-storage: Fix use of bitfields for hardware data in ene_ub6250.c - xhci: fix garbage USBSTS being logged in some cases - xhci: fix runtime PM imbalance in USB2 resume - xhci: make xhci_handshake timeout for xhci_reset() adjustable - xhci: fix uninitialized string returned by xhci_decode_ctrl_ctx() - [x86] mei: me: add Alder Lake N device id. - [x86] mei: avoid iterator usage outside of list_for_each_entry - iio: inkern: apply consumer scale on IIO_VAL_INT cases - iio: inkern: apply consumer scale when no channel scale is available - iio: inkern: make a best effort on offset calculation - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - KEYS: fix length validation in keyctl_pkey_params_get_2() - Documentation: add link to stable release candidate tree - Documentation: update stable tree link - firmware: stratix10-svc: add missing callback parameter on RSU - SUNRPC: avoid race between mod_timer() and del_timer_sync() - NFSD: prevent underflow in nfssvc_decode_writeargs() - NFSD: prevent integer overflow on 32 bit systems - f2fs: fix to unlock page correctly in error path of is_alive() - f2fs: quota: fix loop condition at f2fs_quota_sync() - f2fs: fix to do sanity check on .cp_pack_total_block_count - [armhf] remoteproc: Fix count check in rproc_coredump_write() - [armhf] pinctrl: samsung: drop pin banks references on error paths - mtd: rawnand: protect access to rawnand devices while in suspend - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28390) - jffs2: fix use-after-free in jffs2_clear_xattr_subsystem - jffs2: fix memory leak in jffs2_do_mount_fs - jffs2: fix memory leak in jffs2_scan_medium - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - mm: invalidate hwpoison page cache page in fault path - mempolicy: mbind_range() set_policy() after vma_merge() - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - qed: display VF trust config - qed: validate and restrict untrusted VFs vlan promisc mode - Revert "Input: clear BTN_RIGHT/MIDDLE on buttonpads" - cifs: prevent bad output lengths in smb2_ioctl_query_info() - cifs: fix NULL ptr dereference in smb2_ioctl_query_info() (CVE-2022-0168) - [i386] ALSA: cs4236: fix an incorrect NULL check on list iterator - ALSA: hda: Avoid unsol event during RPM suspending - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: hda/realtek: Fix audio regression on Mi Notebook Pro 2020 - mm: madvise: skip unmapped vma holes passed to process_madvise - mm: madvise: return correct bytes advised with process_madvise - Revert "mm: madvise: skip unmapped vma holes passed to process_madvise" - mm,hwpoison: unmap poisoned page before invalidation - dm integrity: set journal entry unused when shrinking device - drbd: fix potential silent data corruption - can: isotp: sanitize CAN ID checks in isotp_bind() - [powerpc*] kvm: Fix kvm_use_magic_page - udp: call udp_encap_enable for v6 sockets when enabling encap - [arm64] signal: nofpsimd: Do not allocate fp/simd context when not available - ACPI: properties: Consistently return -ENOENT if there are no more references - coredump: Also dump first pages of non-executable ELF libraries - ext4: fix ext4_fc_stats trace point - ext4: fix fs corruption when tring to remove a non-empty directory with IO error - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() (CVE-2022-1198) - block: limit request dispatch loop duration - block: don't merge across cgroup boundaries if blkcg is enabled - drm/edid: check basic audio support on CEA extension block - [armhf] dts: exynos: add missing HDMI supplies on SMDK5250 - [armhf] dts: exynos: add missing HDMI supplies on SMDK5420 - [x86] mgag200 fix memmapsl configuration in GCTL6 register - carl9170: fix missing bit-wise or operator for tx_params - pstore: Don't use semaphores in always-atomic-context code - [x86] thermal: int340x: Increase bitmap size - exec: Force single empty string when argv is empty - crypto: rsa-pkcs1pad - only allow with rsa - crypto: rsa-pkcs1pad - correctly get hash from source scatterlist - crypto: rsa-pkcs1pad - restore signature length check - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - bcache: fixup multiple threads crash - DEC: Limit PMAX memory probing to R3k systems - brcmfmac: firmware: Allocate space for default boardrev in nvram - brcmfmac: pcie: Release firmwares in the brcmf_pcie_setup error path - brcmfmac: pcie: Replace brcmf_pcie_copy_mem_todev with memcpy_toio - brcmfmac: pcie: Fix crashes due to early IRQs - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - [x86] drm/i915/gem: add missing boundary check in vm_access - PCI: pciehp: Clear cmd_busy bit in polling mode - [arm64] PCI: xgene: Revert "PCI: xgene: Fix IB window setup" - [arm64] regulator: qcom_smd: fix for_each_child.cocci warnings - selinux: check return value of sel_make_avc_files - [arm64] hwrng: cavium - Check health status while reading random data - [arm64] hwrng: cavium - HW_RANDOM_CAVIUM should depend on ARCH_THUNDER - crypto: authenc - Fix sleep in atomic context in decrypt_tail - [x86] thermal: int340x: Check for NULL after calling kmemdup() - [arm64,armhf] spi: tegra114: Add missing IRQ check in tegra_spi_probe - [arm64] mm: avoid fixmap race condition when create pud mapping - audit: log AUDIT_TIME_* records only from rules - spi: pxa2xx-pci: Balance reference count for PCI DMA device - [armhf] hwmon: (pmbus) Add mutex to regulator ops - hwmon: (sch56xx-common) Replace WDOG_ACTIVE with WDOG_HW_RUNNING - nvme: cleanup __nvme_check_ids - block: don't delete queue kobject before its children - PM: hibernate: fix __setup handler error handling - PM: suspend: fix return value of __setup handler - [arm64] crypto: sun8i-ce - call finalize with bh disabled - [arm64,armhf] crypto: amlogic - call finalize with bh disabled - [armhf] clocksource/drivers/timer-ti-dm: Fix regression from errata i940 fix - [armhf] clocksource/drivers/exynos_mct: Refactor resources allocation - [armhf] clocksource/drivers/exynos_mct: Handle DTS with higher number of interrupts - clocksource/drivers/timer-of: Check return value of of_iomap in timer_of_base_init() - ACPI: APEI: fix return value of __setup handlers - [x86] crypto: ccp - ccp_dmaengine_unregister release dma channels - [arm*] amba: Make the remove callback return void - [armhf] hwmon: (pmbus) Add Vin unit off handling - [x86] clocksource: acpi_pm: fix return value of __setup handler - io_uring: terminate manual loop iterator loop correctly for non-vecs - watch_queue: Fix NULL dereference in error cleanup - watch_queue: Actually free the watch - f2fs: fix to enable ATGC correctly via gc_idle sysfs interface - sched/debug: Remove mpol_get/put and task_lock/unlock from sched_show_numa - sched/core: Export pelt_thermal_tp - rseq: Optimise rseq_get_rseq_cs() and clear_rseq_cs() - rseq: Remove broken uapi field layout on 32-bit little endian - perf/core: Fix address filter parser for multiple filters - [x86] perf/x86/intel/pt: Fix address filter config for 32-bit kernel - f2fs: fix missing free nid in f2fs_handle_failed_inode - nfsd: more robust allocation failure handling in nfsd_file_cache_init - f2fs: fix to avoid potential deadlock - btrfs: fix unexpected error path when reflinking an inline extent - f2fs: compress: remove unneeded read when rewrite whole cluster - f2fs: fix compressed file start atomic write may cause data corruption - [arm64,armhf] media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - media: bttv: fix WARNING regression on tunerless devices - [arm*] ASoC: generic: simple-card-utils: remove useless assignment - [armhf] media: coda: Fix missing put_device() call in coda_get_vdoa_data - [armhf] media: aspeed: Correct value for h-total-pixels - video: fbdev: matroxfb: set maxvram of vbG200eW to the same as vbG200 to avoid black screen - video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() - video: fbdev: fbcvt.c: fix printing in fb_cvt_print_name() - [arm64] firmware: qcom: scm: Remove reassignment to desc following initializer - firmware: ti_sci: Fix compilation failure when CONFIG_TI_SCI_PROTOCOL is not defined - [armhf] dts: imx: Add missing LVDS decoder on M53Menlo - media: em28xx: initialize refcount before kref_get - media: usb: go7007: s2250-board: fix leak in probe() - [arm64,armhf] media: cedrus: H265: Fix neighbour info buffer size - [arm64,armhf] media: cedrus: h264: Fix neighbour info buffer size - [x86] ASoC: rt5663: check the return value of devm_kzalloc() in rt5663_parse_dp() - printk: fix return value of printk.devkmsg __setup handler - [x86] ASoC: soc-compress: prevent the potentially use of null pointer - [armhf] memory: emif: Add check for setup_interrupts - [armhf] memory: emif: check the pointer temp in get_device_details() - ALSA: firewire-lib: fix uninitialized flag for AV/C deferred transaction - [arm64] dts: rockchip: Fix SDIO regulator supply properties on rk3399-firefly - media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED - media: saa7134: convert list_for_each to entry variant - media: saa7134: fix incorrect use to determine if list is empty - ivtv: fix incorrect device_caps for ivtvfb - [arm64,armhf] ASoC: rockchip: i2s: Use devm_platform_get_and_ioremap_resource() - [arm64,armhf] ASoC: rockchip: i2s: Fix missing clk_disable_unprepare() in rockchip_i2s_probe - ASoC: dmaengine: do not use a NULL prepare_slave_config() callback - [armhf] ASoC: fsl_spdif: Disable TX clock when stop - [armhf] ASoC: imx-es8328: Fix error return code in imx_es8328_probe() - [arm64] drm/meson: osd_afbcd: Add an exit callback to struct meson_afbcd_ops - [arm64,armhf] drm/bridge: Add missing pm_runtime_disable() in __dw_mipi_dsi_probe - [arm64] drm: bridge: adv7511: Fix ADV7535 HPD enablement - ath10k: fix memory overwrite of the WoWLAN wakeup packet pattern - [arm64,armhf] drm/panfrost: Check for error num after setting mask - Bluetooth: hci_serdev: call init_rwsem() before p->open() - [armhf] mtd: rawnand: gpmi: fix controller timings setting - drm/edid: Don't clear formats if using deep color - drm/nouveau/acr: Fix undefined behavior in nvkm_acr_hsfw_load_bl() - drm/amd/display: Fix a NULL pointer dereference in amdgpu_dm_connector_add_common_modes() - drm/amd/pm: return -ENOTSUPP if there is no get_dpm_ultimate_freq function - ath9k_htc: fix uninit value bugs - RDMA/core: Set MR type in ib_reg_user_mr - [powerpc*] KVM: PPC: Fix vmx/vsx mixup in mmio emulation - i40e: don't reserve excessive XDP_PACKET_HEADROOM on XSK Rx to skb - i40e: respect metadata on XSK Rx to skb - [x86] ray_cs: Check ioremap return value - [powerpc*] KVM: PPC: Book3S HV: Check return value of kvmppc_radix_init - [powerpc*] perf: Don't use perf_hw_context for trace IMC PMU - [arm64,armhf] net: dsa: mv88e6xxx: Enable port policy support on 6097 - [arm64] PCI: aardvark: Fix reading PCI_EXP_RTSTA_PME bit on emulated bridge - [arm64,armhf] drm/bridge: dw-hdmi: use safe format when first in bridge chain - HID: i2c-hid: fix GET/SET_REPORT for unnumbered reports - drm/amd/pm: enable pm sysfs write for one VF mode - drm/amd/display: Add affected crtcs to atomic state for dsc mst unplug - IB/cma: Allow XRC INI QPs to set their local ACK timeout - dax: make sure inodes are flushed before destroy cache - iwlwifi: Fix -EIO error code that is never returned - iwlwifi: mvm: Fix an error code in iwl_mvm_up() - [arm64] drm/msm/dp: populate connector of struct dp_panel - [arm64] drm/msm/dpu: add DSPP blocks teardown - [arm64] drm/msm/dpu: fix dp audio condition - scsi: pm8001: Fix command initialization in pm80XX_send_read_log() - scsi: pm8001: Fix command initialization in pm8001_chip_ssp_tm_req() - scsi: pm8001: Fix payload initialization in pm80xx_set_thermal_config() - scsi: pm8001: Fix le32 values handling in pm80xx_set_sas_protocol_timer_config() - scsi: pm8001: Fix payload initialization in pm80xx_encrypt_update() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_ssp_io_req() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_sata_req() - scsi: pm8001: Fix NCQ NON DATA command task initialization - scsi: pm8001: Fix NCQ NON DATA command completion handling - scsi: pm8001: Fix abort all task initialization - RDMA/mlx5: Fix the flow of a miss in the allocation of a cache ODP MR - drm/amd/display: Remove vupdate_int_entry definition - TOMOYO: fix __setup handlers return values - [arm64,armhf] drm/tegra: Fix reference leak in tegra_dsi_ganged_probe - [x86] power: supply: bq24190_charger: Fix bq24190_vbus_is_enabled() wrong false return - [arm64] scsi: hisi_sas: Change permission of parameter prot_mask - [arm64] bpf, arm64: Call build_prologue() first in first JIT pass - [arm64] bpf, arm64: Feed byte-offset into bpf line info - [arm64,armhf] gpu: host1x: Fix a memory leak in 'host1x_remove()' - [powerpc*] mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() - [x86] KVM: x86: Fix emulation in writing cr8 - [x86] KVM: x86/emulator: Defer not-present segment check in __load_segment_descriptor() - [x86] hv_balloon: rate-limit "Unhandled message" warning - [amd64] IB/hfi1: Allow larger MTU without AIP - PCI: Reduce warnings on possible RW1C corruption - [armhf] mfd: mc13xxx: Add check for mc13xxx_irq_request - [x86] platform/x86: huawei-wmi: check the return value of device_create_file() - vxcan: enable local echo for sent CAN frames - ath10k: Fix error handling in ath10k_setup_msa_resources - [mips*] pgalloc: fix memory leak caused by pgd_free() - RDMA/mlx5: Fix memory leak in error flow for subscribe event routine - bpf, sockmap: Fix memleak in tcp_bpf_sendmsg while sk msg is full - bpf, sockmap: Fix more uncharged while msg has more_data - bpf, sockmap: Fix double uncharge the mem of sk_msg - USB: storage: ums-realtek: fix error code in rts51x_read_mem() - can: isotp: return -EADDRNOTAVAIL when reading from unbound socket - can: isotp: support MSG_TRUNC flag when reading from socket - Bluetooth: call hci_le_conn_failed with hdev lock in hci_le_conn_failed - ipv4: Fix route lookups when handling ICMP redirects and PMTU updates - af_netlink: Fix shift out of bounds in group mask calculation - [arm64,armhf] i2c: meson: Fix wrong speed use from probe - PCI: Avoid broken MSI on SB600 USB devices - [arm64] net: bcmgenet: Use stronger register read/writes to assure ordering - tcp: ensure PMTU updates are processed during fastopen - openvswitch: always update flow key after nat - tipc: fix the timer expires after interval 100ms - [x86] mxser: fix xmit_buf leak in activate when LSR == 0xff - [armhf] fsi: aspeed: convert to devm_platform_ioremap_resource - [armhf] fsi: Aspeed: Fix a potential double free - soundwire: intel: fix wrong register name in intel_shim_wake - iio: mma8452: Fix probe failing when an i2c_device_id is used - [arm64,armhf] phy: dphy: Correct lpx parameter and its derivatives(ta_{get,go,sure}) - [x86] serial: 8250_mid: Balance reference count for PCI DMA device - [x86] serial: 8250_lpss: Balance reference count for PCI DMA device - NFS: Use of mapping_set_error() results in spurious errors - serial: 8250: Fix race condition in RTS-after-send handling - NFS: Return valid errors from nfs2/3_decode_dirent() - [arm64] clk: qcom: clk-rcg2: Update logic to calculate D value for RCG - [arm64] clk: qcom: clk-rcg2: Update the frac table for pixel clock - nvdimm/region: Fix default alignment for small regions - [armhf] clk: tegra: tegra124-emc: Fix missing put_device() call in emc_ensure_emc_driver - NFS: remove unneeded check in decode_devicenotify_args() - [arm64,armhf] pinctrl/rockchip: Add missing of_node_put() in rockchip_pinctrl_probe - [s390x] tty: hvc: fix return value of __setup handler - serial: 8250: fix XOFF/XON sending when DMA is used - driver core: dd: fix return value of __setup handler - jfs: fix divide error in dbNextAG - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFSv4.1: don't retry BIND_CONN_TO_SESSION on session error - kdb: Fix the putarea helper function - clk: Initialize orphan req_rate - [amd64] xen: fix is_xen_pmu() - [arm64] net: enetc: report software timestamping via SO_TIMESTAMPING - [arm64] net: hns3: fix bug when PF set the duplicate MAC address for VFs - net: phy: broadcom: Fix brcm_fet_config_init() - NFSv4/pNFS: Fix another issue with a list iterator pointing to the head - [armhf] net: dsa: bcm_sf2_cfp: fix an incorrect NULL check on list iterator - fs: fd tables have to be multiples of BITS_PER_LONG - fs: fix fd table size alignment properly - LSM: general protection fault in legacy_parse_param - block, bfq: don't move oom_bfqq - selinux: use correct type for context length - selinux: allow FIOCLEX and FIONCLEX with policy capability - loop: use sysfs_emit() in the sysfs xxx show() - Fix incorrect type in assignment of ipv6 port for audit - fs/binfmt_elf: Fix AT_PHDR for unusual ELF files - bfq: fix use-after-free in bfq_dispatch_request - ACPICA: Avoid walking the ACPI Namespace if it is not there - Revert "Revert "block, bfq: honor already-setup queue merges"" - ACPI/APEI: Limit printable size of BERT table data - PM: core: keep irq flags in device_pm_check_callbacks() - nvme-tcp: lockdep: annotate in-kernel sockets - [arm64] spi: tegra20: Use of_device_get_match_data() - ext4: correct cluster len and clusters changed accounting in ext4_mb_mark_bb - ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit - ext4: don't BUG if someone dirty pages without asking ext4 first - f2fs: fix to do sanity check on curseg->alloc_type - NFSD: Fix nfsd_breaker_owns_lease() return values - f2fs: compress: fix to print raw data size in error path of lz4 decompression - video: fbdev: cirrusfb: check pixclock to avoid divide by zero - [armel,armhf] ftrace: avoid redundant loads or clobbering IP - video: fbdev: udlfb: replace snprintf in show functions with sysfs_emit - ASoC: soc-core: skip zero num_dai component in searching dai name - media: cx88-mpeg: clear interrupt status register before streaming video - uaccess: fix type mismatch warnings from access_ok() - media: Revert "media: em28xx: add missing em28xx_close_extension" - media: hdpvr: initialize dev->worker at hdpvr_register_videodev - mmc: host: Return an error when ->enable_sdio_irq() ops is missing - ALSA: hda/realtek: Add alc256-samsung-headphone fixup - [x86] KVM: x86/mmu: Check for present SPTE when clearing dirty bit in TDP MMU - [powerpc*] lib/sstep: Fix 'sthcx' instruction - [powerpc*] lib/sstep: Fix build errors with newer binutils - scsi: qla2xxx: Fix stuck session in gpdb - scsi: qla2xxx: Fix scheduling while atomic - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter - scsi: qla2xxx: Fix warning for missing error code - scsi: qla2xxx: Fix device reconnect in loop topology - scsi: qla2xxx: Add devids and conditionals for 28xx - scsi: qla2xxx: Check for firmware dump already collected - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() - scsi: qla2xxx: Fix disk failure to rediscover - scsi: qla2xxx: Fix incorrect reporting of task management failure - scsi: qla2xxx: Fix hang due to session stuck - scsi: qla2xxx: Fix missed DMA unmap for NVMe ls requests - scsi: qla2xxx: Fix N2N inconsistent PLOGI - scsi: qla2xxx: Reduce false trigger to login - scsi: qla2xxx: Use correct feature type field during RFF_ID processing - [arm64] platform: chrome: Split trace include file - [x86] KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - KVM: Prevent module exit until all VMs are freed - [x86] KVM: x86: fix sending PV IPI - [x86] KVM: SVM: fix panic on out-of-bounds guest IRQ - [x86] ASoC: SOF: Intel: Fix NULL ptr dereference when ENOMEM - ubifs: rename_whiteout: Fix double free for whiteout_ui->data - ubifs: Fix deadlock in concurrent rename whiteout and inode writeback - ubifs: Add missing iput if do_tmpfile() failed in rename whiteout - ubifs: setflags: Make dirtied_ino_d 8 bytes aligned - ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock() - ubifs: Fix to add refcount once page is set private - ubifs: rename_whiteout: correct old_dir size computing - wireguard: queueing: use CFI-safe ptr_ring cleanup function - wireguard: socket: free skb in send6 when ipv6 is disabled - wireguard: socket: ignore v6 endpoints when ipv6 is disabled - XArray: Fix xas_create_range() when multi-order entry present - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path (CVE-2022-28389) - can: mcba_usb: properly check endpoint type - XArray: Update the LRU list in xas_split() - rtc: check if __rtc_read_time was successful - gfs2: Make sure FITRIM minlen is rounded up to fs block size - [arm64] net: hns3: fix software vlan talbe of vlan 0 inconsistent with hardware - rxrpc: Fix call timer start racing with call destruction - [arm64] mailbox: imx: fix wakeup failure from freeze mode - watch_queue: Free the page array when watch_queue is dismantled - pinctrl: pinconf-generic: Print arguments for bias-pull-* - ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl - [arm*] iop32x: offset IRQ numbers by 1 - io_uring: fix memory leak of uid in files registration - [amd64,arm64] ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - [arm64] platform/chrome: cros_ec_typec: Check for EC device - can: isotp: restore accidentally removed MSG_PEEK feature - proc: bootconfig: Add null pointer check - [x86] ASoC: soc-compress: Change the check for codec_dai - batman-adv: Check ptr for NULL before reducing its refcnt - mm/mmap: return 1 from stack_guard_gap __setup() handler - mm/memcontrol: return 1 from cgroup.memory __setup() handler - mm/usercopy: return 1 from hardened_usercopy __setup() handler - bpf: Adjust BPF stack helper functions to accommodate skip > 0 - bpf: Fix comment for helper bpf_current_task_under_cgroup() - dt-bindings: mtd: nand-controller: Fix the reg property description - dt-bindings: mtd: nand-controller: Fix a comment in the examples - dt-bindings: spi: mxic: The interrupt property is not mandatory - [x86] ASoC: topology: Allow TLV control to be either read or write - docs: sysctl/kernel: add missing bit to panic_print - openvswitch: Fixed nd target mask field in the flow dump. - [x86] KVM: x86/mmu: do compare-and-exchange of gPTE via the user address (CVE-2022-1158) - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28388) - coredump: Snapshot the vmas in do_coredump - coredump: Remove the WARN_ON in dump_vma_snapshot - coredump/elf: Pass coredump_params into fill_note_info - coredump: Use the vma snapshot in fill_files_note - [arm64] Do not defer reserve_crashkernel() for platforms with no DMA memory zones - [arm64] PCI: xgene: Revert "PCI: xgene: Use inbound resources for setup" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.111 - ubifs: Rectify space amount budget for mkdir/tmpfile operations - gfs2: Check for active reservation in gfs2_release - gfs2: Fix gfs2_release for non-writers regression - gfs2: gfs2_setattr_size error path fix - [x86] KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs - [x86] KVM: x86/emulator: Emulate RDPID only if it is enabled in guest - drm: Add orientation quirk for GPD Win Max - ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111 - drm/amd/display: Add signal type check when verify stream backends same - drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj - ptp: replace snprintf with sysfs_emit - [armhf] ath11k: fix kernel panic during unload/load ath11k modules - ath11k: mhi: use mhi_sync_power_up() - bpf: Make dst_port field in struct bpf_sock 16-bit wide - scsi: mvsas: Replace snprintf() with sysfs_emit() - scsi: bfa: Replace snprintf() with sysfs_emit() - [arm64,armhf] power: supply: axp20x_battery: properly report current when discharging - mt76: dma: initialize skip_unmap in mt76_dma_rx_fill - cfg80211: don't add non transmitted BSS to 6GHz scanned channels - ipv6: make mc_forwarding atomic - [powerpc*] Set crashkernel offset to mid of RMA region - drm/amdgpu: Fix recursive locking warning - [arm64] PCI: aardvark: Fix support for MSI interrupts - [arm64] iommu/arm-smmu-v3: fix event handling soft lockup - usb: ehci: add pci device support for Aspeed platforms - tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH. - PCI: pciehp: Add Qualcomm quirk for Command Completed erratum - iwlwifi: mvm: Correctly set fragmented EBS - ipv4: Invalidate neighbour for broadcast address upon address addition - dm ioctl: prevent potential spectre v1 gadget - dm: requeue IO if mapping table not yet available - scsi: pm8001: Fix pm80xx_pci_mem_copy() interface - scsi: pm8001: Fix pm8001_mpi_task_abort_resp() - scsi: pm8001: Fix task leak in pm8001_send_abort_all() - scsi: pm8001: Fix tag leaks on error - scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req() - scsi: aha152x: Fix aha152x_setup() __setup handler return value - [arm64] scsi: hisi_sas: Free irq vectors in order for v3 HW - net/smc: correct settings of RMB window update limit - macvtap: advertise link netns via netlink - tuntap: add sanity checks about msg_controllen in sendmsg - Bluetooth: Fix not checking for valid hdev on bt_dev_{info,warn,err,dbg} - Bluetooth: use memset avoid memory leaks - bnxt_en: Eliminate unintended link toggle during FW reset - [mps64el,mipsel] fix fortify panic when copying asm exception handlers - scsi: libfc: Fix use after free in fc_exch_abts_resp() - can: isotp: set default value for N_As to 50 micro seconds - net: account alternate interface name memory - net: limit altnames to 64k total - net: sfp: add 2500base-X quirk for Lantech SFP module - [armhf] usb: dwc3: omap: fix "unbalanced disables for smps10_out1" on omap5evm - Bluetooth: Fix use after free in hci_send_acl - netlabel: fix out-of-bounds memory accesses - ceph: fix memory leak in ceph_readdir when note_last_dentry returns error - init/main.c: return 1 from handled __setup() functions - minix: fix bug when opening a file with O_DIRECT - [arm*] staging: vchiq_core: handle NULL result of find_service_by_handle - [arm64,armhf] phy: amlogic: meson8b-usb2: Use dev_err_probe() - w1: w1_therm: fixes w1_seq for ds28ea00 sensors - NFSv4.2: fix reference count leaks in _nfs42_proc_copy_notify() - NFSv4: Protect the state recovery thread against direct reclaim - xen: delay xen_hvm_init_time_ops() if kdump is boot on vcpu>=32 - [armhf] clk: ti: Preserve node in ti_dt_clocks_register() - clk: Enforce that disjoints limits are invalid - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - SUNRPC/xprt: async tasks mustn't block waiting for memory - SUNRPC: remove scheduling boost for "SWAPPER" tasks. - NFS: swap IO handling is slightly different for O_DIRECT IO - NFS: swap-out must always use STABLE writes. - [armhf] serial: samsung_tty: do not unlock port->lock for uart_write_wakeup() - virtio_console: eliminate anonymous module_init & module_exit - jfs: prevent NULL deref in diFree - SUNRPC: Fix socket waits for write buffer space - NFS: nfsiod should not block forever in mempool_alloc() - NFS: Avoid writeback threads getting stuck in mempool_alloc() - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - drm/amdgpu: fix off by one in amdgpu_gfx_kiq_acquire() - [x86] Drivers: hv: vmbus: Fix potential crash on module unload - Revert "NFSv4: Handle the special Linux file open access mode" - NFSv4: fix open failure with O_ACCMODE flag - ice: Clear default forwarding VSI during VSI release - net: ipv4: fix route with nexthop object delete warning - net: stmmac: Fix unset max_speed difference between DT and non-DT platforms - [armhf] drm/imx: imx-ldb: Check for null pointer after calling kmemdup - [armhf] drm/imx: Fix memory leak in imx_pd_connector_get_modes - sfc: Do not free an empty page_ring - RDMA/mlx5: Don't remove cache MRs when a delay is needed - [amd64] IB/rdmavt: add lock to call to rvt_error_qp to prevent a race condition - [arm64] dpaa2-ptp: Fix refcount leak in dpaa2_ptp_probe - ice: Set txq_teid to ICE_INVAL_TEID on ring creation - ice: Do not skip not enabled queues in ice_vc_dis_qs_msg - ipv6: Fix stats accounting in ip6_pkt_drop - ice: synchronize_rcu() when terminating rings - net: openvswitch: don't send internal clone attribute to the userspace. - net: openvswitch: fix leak of nested actions - rxrpc: fix a race in rxrpc_exit_net() - qede: confirm skb is allocated before using - bpf: Support dual-stack sockets in bpf_tcp_check_syncookie - drbd: Fix five use after free bugs in get_initial_state - io_uring: don't touch scm_fp_list after queueing skb - SUNRPC: Handle ENOMEM in call_transmit_status() - SUNRPC: Handle low memory situations in call_status() - SUNRPC: svc_tcp_sendmsg() should handle errors from xdr_alloc_bvec() - [armhf] iommu/omap: Fix regression in probe for NULL pointer dereference - [arm64] Add part number for Arm Cortex-A78AE - [arm64] Revert "mmc: sdhci-xenon: fix annoying 1.8V regulator warning" - [arm64,armhf] mmc: mmci: stm32: correctly check all elements of sg list - lz4: fix LZ4_decompress_safe_partial read out of bound - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm/mempolicy: fix mpol_new leak in shared_policy_replace - io_uring: fix race between timeout flush and removal (CVE-2022-29582) - [x86] pm: Save the MSR validity status at context setup - [x86] speculation: Restore speculation related MSRs during S3 resume - btrfs: fix qgroup reserve overflow the qgroup limit - btrfs: prevent subvol with swapfile from being deleted - [arm64] patch_text: Fixup last cpu should be master - [amd64] RDMA/hfi1: Fix use-after-free bug for mm struct - gpio: Restrict usage of GPIO chip irq members before initialization - [arm64] perf: qcom_l2_pmu: fix an incorrect NULL check on list iterator - [arm64,armhf] irqchip/gic-v3: Fix GICR_CTLR.RWP polling - drm/nouveau/pmu: Add missing callbacks for Tegra devices - mm: don't skip swap entry even if zap_details specified - cgroup: Use open-time credentials for process migraton perm checks (CVE-2021-4197) - [x86] Drivers: hv: vmbus: Replace smp_store_mb() with virt_store_mb() - [arm64,armhf] irqchip/gic, gic-v3: Prevent GSI to SGI translations - [powerpc*] Fix virt_addr_valid() for 64-bit Book3E & 32-bit https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.112 - [amd64] drm/amdkfd: Use drm_priv to pass VM from KFD to amdgpu - hamradio: defer 6pack kfree after unregister_netdev (CVE-2022-1195) - hamradio: remove needs_free_netdev to avoid UAF (CVE-2022-1195) - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the function - ACPI: processor idle: Check for architectural support for LPI - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups() - [arm64] drm/msm: Add missing put_task_struct() in debugfs path - SUNRPC: Fix the svc_deferred_event trace class - net/sched: flower: fix parsing of ethertype following VLAN header - veth: Ensure eth header is in skb's linear part - gpiolib: acpi: use correct format characters - net: mdio: Alphabetically sort header inclusion - net/sched: fix initialization order when updating chain 0 head - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link - net/sched: taprio: Check if socket flags are valid - cfg80211: hold bss_lock while updating nontrans_list - [arm64] drm/msm: Fix range size vs end confusion - [arm64] drm/msm/dsi: Use connector directly in msm_dsi_manager_connector_init() - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib() - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63 - scsi: pm80xx: Enable upper inbound, outbound queues - scsi: iscsi: Stop queueing during ep_disconnect - scsi: iscsi: Force immediate failure during shutdown - scsi: iscsi: Use system_unbound_wq for destroy_work - scsi: iscsi: Rel ref after iscsi_lookup_endpoint() - scsi: iscsi: Fix in-kernel conn failure handling - scsi: iscsi: Move iscsi_ep_disconnect() - scsi: iscsi: Fix offload conn cleanup when iscsid restarts - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart - sctp: Initialize daddr on peeled off socket - cifs: potential buffer overflow in handling symlinks - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure ordering" - drm/amd: Add USBC connector ID - btrfs: fix fallocate to use file_modified to update permissions consistently - btrfs: do not warn for free space inode in cow_file_range - drm/amd/display: fix audio format not updated after edid updated - drm/amd/display: FEC check in timing validation - drm/amd/display: Update VTEM Infopacket definition - drm/amdkfd: Fix Incorrect VMIDs passed to HWS - drm/amdgpu/vcn: improve vcn dpg stop procedure - [x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring buffer - scsi: target: tcmu: Fix possible page UAF - scsi: lpfc: Fix queue failures when recovering from PCI parity error - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024 - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output - [arm64] alternatives: mark patch_alternative() as `noinstr` - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso - drm/amd/display: Revert FEC check in validation - drm/amd/display: Fix allocate_mst_payload assert on resume - scsi: mvsas: Add PCI ID of RocketRaid 2640 - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan - drivers: net: slip: fix NPD bug in sl_tx_timeout() - mm, page_alloc: fix build_zonerefs_node() - mm: fix unexpected zeroed page mapping with zram swap - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded - ath9k: Properly clear TX status area before reporting to mac80211 - ath9k: Fix usage of driver-private space in tx_info - btrfs: fix root ref counts in error handling in btrfs_get_root_ref - btrfs: mark resumed async balance as writing - ALSA: hda/realtek: Add quirk for Clevo PD50PNT - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers - ALSA: pcm: Test for "silence" field in struct "pcm_format_data" - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size - ipv6: fix panic when forwarding a pkt with no in6 dev - drm/amd/display: don't ignore alpha property on pre-multiplied mode - drm/amdgpu: Enable gfxoff quirk on MacBook Pro - genirq/affinity: Consider that CPUs on nodes can be unbalanced - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation - dm integrity: fix memory corruption when tag_size is less than digest size - smp: Fix offline cpu check in flush_smp_call_function_queue() - timers: Fix warning condition in __run_timers() - dma-direct: avoid redundant memory sync for swiotlb - scsi: iscsi: Fix endpoint reuse regression - scsi: iscsi: Fix unbound endpoint error handling - ax25: add refcount in ax25_dev to avoid UAF bugs (CVE-2022-1204) - ax25: fix reference count leaks of ax25_dev (CVE-2022-1204) - ax25: fix UAF bugs of net_device caused by rebinding operation (CVE-2022-1204) - ax25: Fix refcount leaks caused by ax25_cb_del() (CVE-2022-1204) - ax25: fix UAF bug in ax25_send_control() - ax25: fix NPD bug in ax25_disconnect (CVE-2022-1199) - ax25: Fix NULL pointer dereferences in ax25 timers (CVE-2022-1205) - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.113 - tracing: Dump stacktrace trigger to the corresponding instance - gfs2: assign rgrp glock before compute_bitstructs - net/sched: cls_u32: fix netns refcount changes in u32_change() - ALSA: usb-audio: Clear MIDI port active flag after draining - ALSA: hda/realtek: Add quirk for Clevo NP70PNP - dm: fix mempool NULL pointer race when completing IO - [armhf] dmaengine: imx-sdma: Fix error checking in sdma_event_remap - esp: limit skb_page_frag_refill use to a single page - igc: Fix infinite loop in release_swfw_sync - igc: Fix BUG: scheduling while atomic - rxrpc: Restore removed timer deletion - net/smc: Fix sock leak when release after smc_shutdown() - net/packet: fix packet_sock xmit return value checking - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit() - ip6_gre: Fix skb_under_panic in __gre6_xmit() - net/sched: cls_u32: fix possible leak in u32_init_knode() - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu - ipv6: make ip6_rt_gc_expire an atomic_t - netlink: reset network and mac headers in netlink_dump() - net: stmmac: Use readl_poll_timeout_atomic() in atomic state - [arm64] mm: Remove [PUD|PMD]_TABLE_BIT from [pud|pmd]_bad() - [arm64] mm: fix p?d_leaf() - [x86] platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant - vxlan: fix error return code in vxlan_fdb_append - cifs: Check the IOCB_DIRECT flag, not O_DIRECT - [amd64,arm64] net: atlantic: Avoid out-of-bounds indexing - mt76: Fix undefined behavior due to shift overflowing the constant - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant - [arm64] drm/msm/mdp5: check the return of kzalloc() - [arm64] net: macb: Restart tx only if queue pointer is lagging - scsi: qedi: Fix failed disconnect handling - stat: fix inconsistency between struct stat and struct compat_stat - nvme: add a quirk to disable namespace identifiers - nvme-pci: disable namespace identifiers for Qemu controllers - mm, hugetlb: allow for "high" userspace addresses - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove() - ata: pata_marvell: Check the 'bmdma_addr' beforing reading - [amd64,arm64] net: atlantic: invert deep par in pm functions, preventing null derefs - openvswitch: fix OOB access in reserve_sfa_size() - gpio: Request interrupts after IRQ is initialized - ASoC: soc-dapm: fix two incorrect uses of list iterator - e1000e: Fix possible overflow in LTR decoding - [arm*] arm_pmu: Validate single/group leader events - sched/pelt: Fix attach_entity_load_avg() corner case - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare - [powerpc*] KVM: PPC: Fix TCE handling for VFIO - [arm*] drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage - [powerpc*] perf: Fix power9 event alternatives - ext4: fix fallocate to use file_modified to update permissions consistently - ext4: fix symlink file size not match to file content - ext4: fix use-after-free in ext4_search_dir - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - ext4, doc: fix incorrect h_reserved size - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: force overhead calculation if the s_overhead_cluster makes no sense - can: isotp: stop timeout monitoring when no first frame was sent - jbd2: fix a potential race while discarding reserved buffers after an abort - block/compat_ioctl: fix range check in BLKGETSIZE . [ Salvatore Bonaccorso ] * Bump ABI to 14 * [rt] Drop "tcp: Remove superfluous BH-disable around" * [rt] Update "tracing: Merge irqflags + preempt counter." for upstream changes in 5.10.113 * [x86] pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests (Closes: #1006346) * floppy: disable FDRAWCMD by default linux-signed-i386 (5.10.127+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.127-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.121 - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9520 laptop - ALSA: hda/realtek - Fix microphone noise on ASUS TUF B550M-PLUS - ALSA: usb-audio: Cancel pending work at closing a MIDI substream - USB: serial: option: add Quectel BG95 modem - USB: new quirk for Dell Gen 2 devices - usb: dwc3: gadget: Move null pinter check to proper place - usb: core: hcd: Add support for deferring roothub registration - cifs: when extending a file with falloc we should make files not-sparse - xhci: Allow host runtime PM as default for Intel Alder Lake N xHCI - Fonts: Make font size unsigned in font_desc - [x86] MCE/AMD: Fix memory leak when threshold_create_bank() fails - [w86] perf/x86/intel: Fix event constraints for ICL - ptrace/xtensa: Replace PT_SINGLESTEP with TIF_SINGLESTEP - ptrace: Reimplement PTRACE_KILL by always sending SIGKILL - btrfs: add "0x" prefix for unsupported optional features - btrfs: repair super block num_devices automatically - [amd64] iommu/vt-d: Add RPLS to quirk list to skip TE disabling - drm/virtio: fix NULL pointer dereference in virtio_gpu_conn_get_modes - mwifiex: add mutex lock for call in mwifiex_dfs_chan_sw_work_queue - b43legacy: Fix assigning negative value to unsigned variable - b43: Fix assigning negative value to unsigned variable - ipw2x00: Fix potential NULL dereference in libipw_xmit() - ipv6: fix locking issues with loops over idev->addr_list - fbcon: Consistently protect deferred_takeover with console_lock() - [x86] platform/uv: Update TSC sync state for UV5 - ACPICA: Avoid cache flush inside virtual machines - drm/komeda: return early if drm_universal_plane_init() fails. - rcu-tasks: Fix race in schedule and flush work - rcu: Make TASKS_RUDE_RCU select IRQ_WORK - sfc: ef10: Fix assigning negative value to unsigned variable - ALSA: jack: Access input_dev under mutex - spi: spi-rspi: Remove setting {src,dst}_{addr,addr_width} based on DMA direction - drm/amd/pm: fix double free in si_parse_power_table() - ath9k: fix QCA9561 PA bias level - media: venus: hfi: avoid null dereference in deinit - media: pci: cx23885: Fix the error handling in cx23885_initdev() - media: cx25821: Fix the warning when removing the module - md/bitmap: don't set sb values if can't pass sanity check - mmc: jz4740: Apply DMA engine limits to maximum segment size - drivers: mmc: sdhci_am654: Add the quirk to set TESTCD bit - scsi: megaraid: Fix error check return value of register_chrdev() - scsi: ufs: Use pm_runtime_resume_and_get() instead of pm_runtime_get_sync() - scsi: lpfc: Fix resource leak in lpfc_sli4_send_seq_to_ulp() - ath11k: disable spectral scan during spectral deinit - ASoC: Intel: bytcr_rt5640: Add quirk for the HP Pro Tablet 408 - drm/plane: Move range check for format_count earlier - drm/amd/pm: fix the compile warning - ath10k: skip ath10k_halt during suspend for driver state RESTARTING - [arm64] compat: Do not treat syscall number as ESR_ELx for a bad syscall - drm: msm: fix error check return value of irq_of_parse_and_map() - ipv6: Don't send rs packets to the interface of ARPHRD_TUNNEL - net/mlx5: fs, delete the FTE when there are no rules attached to it - ASoC: dapm: Don't fold register value changes into notifications - mlxsw: spectrum_dcb: Do not warn about priority changes - mlxsw: Treat LLDP packets as control - drm/amdgpu/ucode: Remove firmware load type check in amdgpu_ucode_free_bo - HID: bigben: fix slab-out-of-bounds Write in bigben_probe - ASoC: tscs454: Add endianness flag in snd_soc_component_driver - net: remove two BUG() from skb_checksum_help() - [s390x] preempt: disable __preempt_count_add() optimization for PROFILE_ALL_BRANCHES - perf/amd/ibs: Cascade pmu init functions' return value - spi: stm32-qspi: Fix wait_cmd timeout in APM mode - dma-debug: change allocation mode from GFP_NOWAIT to GFP_ATIOMIC - ACPI: PM: Block ASUS B1400CEAE from suspend to idle by default - ipmi:ssif: Check for NULL msg when handling events and messages - ipmi: Fix pr_fmt to avoid compilation issues - rtlwifi: Use pr_warn instead of WARN_ONCE - media: rga: fix possible memory leak in rga_probe - media: coda: limit frame interval enumeration to supported encoder frame sizes - media: imon: reorganize serialization - media: cec-adap.c: fix is_configuring state - nvme-pci: fix a NULL pointer dereference in nvme_alloc_admin_tags - ASoC: rt5645: Fix errorenous cleanup order - nbd: Fix hung on disconnect request if socket is closed before - net: phy: micrel: Allow probing without .driver_data - media: exynos4-is: Fix compile warning - ASoC: max98357a: remove dependency on GPIOLIB - ASoC: rt1015p: remove dependency on GPIOLIB - can: mcp251xfd: silence clang's -Wunaligned-access warning - [x86] microcode: Add explicit CPU vendor dependency - rxrpc: Return an error to sendmsg if call failed - rxrpc, afs: Fix selection of abort codes - eth: tg3: silence the GCC 12 array-bounds warning - gfs2: use i_lock spin_lock for inode qadata - IB/rdmavt: add missing locks in rvt_ruc_loopback - [arm64] dts: qcom: msm8994: Fix BLSP[12]_DMA channels count - PM / devfreq: rk3399_dmc: Disable edev on remove() - crypto: ccree - use fine grained DMA mapping dir - soc: ti: ti_sci_pm_domains: Check for null return of devm_kcalloc - fs: jfs: fix possible NULL pointer dereference in dbFree() - [powerpc*] fadump: Fix fadump to work with a different endian capture kernel - fat: add ratelimit to fat*_ent_bread() - pinctrl: renesas: rzn1: Fix possible null-ptr-deref in sh_pfc_map_resources() - ARM: versatile: Add missing of_node_put in dcscb_init - ARM: dts: exynos: add atmel,24c128 fallback to Samsung EEPROM - ARM: hisi: Add missing of_node_put after of_find_compatible_node - PCI: Avoid pci_dev_lock() AB/BA deadlock with sriov_numvfs_store() - tracing: incorrect isolate_mote_t cast in mm_vmscan_lru_isolate - [powerpc*] powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr - [powerpc*] xics: fix refcount leak in icp_opal_init() - [powerpc*] powernv: fix missing of_node_put in uv_init() - macintosh/via-pmu: Fix build failure when CONFIG_INPUT is disabled - [powerpc*] iommu: Add missing of_node_put in iommu_init_early_dart - [amd64] RDMA/hfi1: Prevent panic when SDMA is disabled - drm: fix EDID struct for old ARM OABI format - dt-bindings: display: sitronix, st7735r: Fix backlight in example - ath11k: acquire ab->base_lock in unassign when finding the peer by addr - ath9k: fix ar9003_get_eepmisc - drm/edid: fix invalid EDID extension block filtering - drm/bridge: adv7511: clean up CEC adapter when probe fails - spi: qcom-qspi: Add minItems to interconnect-names - ASoC: mediatek: Fix error handling in mt8173_max98090_dev_probe - ASoC: mediatek: Fix missing of_node_put in mt2701_wm8960_machine_probe - [x86] delay: Fix the wrong asm constraint in delay_loop() - drm/ingenic: Reset pixclock rate when parent clock rate changes - drm/mediatek: Fix mtk_cec_mask() - [arm*] drm/vc4: hvs: Reset muxes at probe time - [arm*] drm/vc4: txp: Don't set TXP_VSTART_AT_EOF - [arm*] drm/vc4: txp: Force alpha to be 0xff if it's disabled - bpf: Fix excessive memory allocation in stack_map_alloc() - nl80211: show SSID for P2P_GO interfaces - drm/komeda: Fix an undefined behavior bug in komeda_plane_add() - drm: mali-dp: potential dereference of null pointer - spi: spi-ti-qspi: Fix return value handling of wait_for_completion_timeout - scftorture: Fix distribution of short handler delays - net: dsa: mt7530: 1G can also support 1000BASE-X link mode - NFC: NULL out the dev->rfkill to prevent UAF - efi: Add missing prototype for efi_capsule_setup_info - target: remove an incorrect unmap zeroes data deduction - drbd: fix duplicate array initializer - EDAC/dmc520: Don't print an error for each unconfigured interrupt line - mtd: rawnand: denali: Use managed device resources - HID: hid-led: fix maximum brightness for Dream Cheeky - HID: elan: Fix potential double free in elan_input_configured - drm/bridge: Fix error handling in analogix_dp_probe - sched/fair: Fix cfs_rq_clock_pelt() for throttled cfs_rq - spi: img-spfi: Fix pm_runtime_get_sync() error checking - cpufreq: Fix possible race in cpufreq online error path - ath9k_htc: fix potential out of bounds access with invalid rxstatus->rs_keyix - media: hantro: Empty encoder capture buffers by default - drm/panel: simple: Add missing bus flags for Innolux G070Y2-L01 - ALSA: pcm: Check for null pointer of pointer substream before dereferencing it - inotify: show inotify mask flags in proc fdinfo - fsnotify: fix wrong lockdep annotations - of: overlay: do not break notify on NOTIFY_{OK|STOP} - drm/msm/dpu: adjust display_v_end for eDP and DP - scsi: ufs: qcom: Fix ufs_qcom_resume() - scsi: ufs: core: Exclude UECxx from SFR dump list - mtd: spi-nor: core: Check written SR value in spi_nor_write_16bit_sr_and_check() - [x86] pm: Fix false positive kmemleak report in msr_build_context() - mtd: rawnand: cadence: fix possible null-ptr-deref in cadence_nand_dt_probe() - [x86] speculation: Add missing prototype for unpriv_ebpf_notify() - ASoC: rk3328: fix disabling mclk on pclk probe failure - perf tools: Add missing headers needed by util/data.h - drm/msm/disp/dpu1: set vbif hw config to NULL to avoid use after memory free during pm runtime resume - drm/msm/dp: stop event kernel thread when DP unbind - drm/msm/dp: fix error check return value of irq_of_parse_and_map() - drm/msm/dsi: fix error checks and return values for DSI xmit functions - drm/msm/hdmi: check return value after calling platform_get_resource_byname() - drm/msm/hdmi: fix error check return value of irq_of_parse_and_map() - drm/msm: add missing include to msm_drv.c - drm/panel: panel-simple: Fix proper bpc for AM-1280800N3TZQW-T00H - drm/rockchip: vop: fix possible null-ptr-deref in vop_bind() - perf tools: Use Python devtools for version autodetection rather than runtime - virtio_blk: fix the discard_granularity and discard_alignment queue limits - [x86] Fix return value of __setup handlers - irqchip/exiu: Fix acknowledgment of edge triggered interrupts - irqchip/aspeed-i2c-ic: Fix irq_of_parse_and_map() return value - irqchip/aspeed-scu-ic: Fix irq_of_parse_and_map() return value - [x86] mm: Cleanup the control_va_addr_alignment() __setup handler - [arm64] fix types in copy_highpage() - regulator: core: Fix enable_count imbalance with EXCLUSIVE_GET - drm/msm/dp: fix event thread stuck in wait_event after kthread_stop() - drm/msm/mdp5: Return error code in mdp5_pipe_release when deadlock is detected - drm/msm/mdp5: Return error code in mdp5_mixer_release when deadlock is detected - drm/msm: return an error pointer in msm_gem_prime_get_sg_table() - media: uvcvideo: Fix missing check to determine if element is found in list - iomap: iomap_write_failed fix - spi: spi-fsl-qspi: check return value after calling platform_get_resource_byname() - Revert "cpufreq: Fix possible race in cpufreq online error path" - regulator: qcom_smd: Fix up PM8950 regulator configuration - perf/amd/ibs: Use interrupt regs ip for stack unwinding - ath11k: Don't check arvif->is_started before sending management frames - ASoC: fsl: Fix refcount leak in imx_sgtl5000_probe - ASoC: mxs-saif: Fix refcount leak in mxs_saif_probe - regulator: pfuze100: Fix refcount leak in pfuze_parse_regulators_dt - ASoC: samsung: Use dev_err_probe() helper - ASoC: samsung: Fix refcount leak in aries_audio_probe - scripts/faddr2line: Fix overlapping text section failures - media: aspeed: Fix an error handling path in aspeed_video_probe() - media: exynos4-is: Fix PM disable depth imbalance in fimc_is_probe - media: st-delta: Fix PM disable depth imbalance in delta_probe - media: exynos4-is: Change clk_disable to clk_disable_unprepare - media: pvrusb2: fix array-index-out-of-bounds in pvr2_i2c_core_init - media: vsp1: Fix offset calculation for plane cropping - Bluetooth: fix dangling sco_conn and use-after-free in sco_sock_timeout - Bluetooth: Interleave with allowlist scan - Bluetooth: L2CAP: Rudimentary typo fixes - Bluetooth: LL privacy allow RPA - Bluetooth: use inclusive language in HCI role comments - Bluetooth: use inclusive language when filtering devices - Bluetooth: use hdev lock for accept_list and reject_list in conn req - nvme: set dma alignment to dword - lsm,selinux: pass flowi_common instead of flowi to the LSM hooks - sctp: read sk->sk_bound_dev_if once in sctp_rcv() - net: hinic: add missing destroy_workqueue in hinic_pf_to_mgmt_init - ASoC: ti: j721e-evm: Fix refcount leak in j721e_soc_probe_* - media: ov7670: remove ov7670_power_off from ov7670_remove - media: staging: media: rkvdec: Make use of the helper function devm_platform_ioremap_resource() - media: rkvdec: h264: Fix dpb_valid implementation - media: rkvdec: h264: Fix bit depth wrap in pps packet - ext4: reject the 'commit' option on ext2 filesystems - drm/msm/a6xx: Fix refcount leak in a6xx_gpu_init - drm: msm: fix possible memory leak in mdp5_crtc_cursor_set() - [x86] sev: Annotate stack change in the #VC handler - drm/msm/dpu: handle pm_runtime_get_sync() errors in bind path - [x86] drm/i915: Fix CFI violation with show_dynamic_id() - thermal/drivers/bcm2711: Don't clamp temperature at zero - thermal/drivers/broadcom: Fix potential NULL dereference in sr_thermal_probe - thermal/drivers/core: Use a char pointer for the cooling device name - thermal/core: Fix memory leak in __thermal_cooling_device_register() - thermal/drivers/imx_sc_thermal: Fix refcount leak in imx_sc_thermal_probe - ASoC: wm2000: fix missing clk_disable_unprepare() on error in wm2000_anc_transition() - NFC: hci: fix sleep in atomic context bugs in nfc_hci_hcp_message_tx - ASoC: max98090: Move check for invalid values before casting in max98090_put_enab_tlv() - net: stmmac: selftests: Use kcalloc() instead of kzalloc() - net: stmmac: fix out-of-bounds access in a selftest - hv_netvsc: Fix potential dereference of NULL pointer - rxrpc: Fix listen() setting the bar too high for the prealloc rings - rxrpc: Don't try to resend the request if we're receiving the reply - rxrpc: Fix overlapping ACK accounting - rxrpc: Don't let ack.previousPacket regress - rxrpc: Fix decision on when to generate an IDLE ACK - net: huawei: hinic: Use devm_kcalloc() instead of devm_kzalloc() - hinic: Avoid some over memory allocation - net/smc: postpone sk_refcnt increment in connect() - arm64: dts: rockchip: Move drive-impedance-ohm to emmc phy on rk3399 - memory: samsung: exynos5422-dmc: Avoid some over memory allocation - ARM: dts: suniv: F1C100: fix watchdog compatible - soc: qcom: smp2p: Fix missing of_node_put() in smp2p_parse_ipc - soc: qcom: smsm: Fix missing of_node_put() in smsm_parse_ipc - PCI: cadence: Fix find_first_zero_bit() limit - PCI: rockchip: Fix find_first_zero_bit() limit - PCI: dwc: Fix setting error return on MSI DMA mapping failure - ARM: dts: ci4x10: Adapt to changes in imx6qdl.dtsi regarding fec clocks - soc: qcom: llcc: Add MODULE_DEVICE_TABLE() - [x86] KVM: nVMX: Leave most VM-Exit info fields unmodified on failed VM-Entry - [x86] KVM: nVMX: Clear IDT vectoring on nested VM-Exit for double/triple fault - platform/chrome: cros_ec: fix error handling in cros_ec_register() - ARM: dts: imx6dl-colibri: Fix I2C pinmuxing - platform/chrome: Re-introduce cros_ec_cmd_xfer and use it for ioctls - can: xilinx_can: mark bit timing constants as const - ARM: dts: stm32: Fix PHY post-reset delay on Avenger96 - ARM: dts: bcm2835-rpi-zero-w: Fix GPIO line name for Wifi/BT - ARM: dts: bcm2837-rpi-cm3-io3: Fix GPIO line names for SMPS I2C - ARM: dts: bcm2837-rpi-3-b-plus: Fix GPIO line name of power LED - ARM: dts: bcm2835-rpi-b: Fix GPIO line names - misc: ocxl: fix possible double free in ocxl_file_register_afu - crypto: marvell/cesa - ECB does not IV - gpiolib: of: Introduce hook for missing gpio-ranges - pinctrl: bcm2835: implement hook for missing gpio-ranges - arm: mediatek: select arch timer for mt7629 - powerpc/fadump: fix PT_LOAD segment for boot memory area - mfd: ipaq-micro: Fix error check return value of platform_get_irq() - scsi: fcoe: Fix Wstringop-overflow warnings in fcoe_wwn_from_mac() - firmware: arm_scmi: Fix list protocols enumeration in the base protocol - nvdimm: Fix firmware activation deadlock scenarios - nvdimm: Allow overwrite in the presence of disabled dimms - pinctrl: mvebu: Fix irq_of_parse_and_map() return value - drivers/base/node.c: fix compaction sysfs file leak - dax: fix cache flush on PMD-mapped pages - drivers/base/memory: fix an unlikely reference counting issue in __add_memory_block() - powerpc/8xx: export 'cpm_setbrg' for modules - pinctrl: renesas: core: Fix possible null-ptr-deref in sh_pfc_map_resources() - powerpc/idle: Fix return value of __setup() handler - powerpc/4xx/cpm: Fix return value of __setup() handler - ASoC: atmel-pdmic: Remove endianness flag on pdmic component - ASoC: atmel-classd: Remove endianness flag on class d component - proc: fix dentry/inode overinstantiating under /proc/${pid}/net - ipc/mqueue: use get_tree_nodev() in mqueue_get_tree() - PCI: imx6: Fix PERST# start-up sequence - tty: fix deadlock caused by calling printk() under tty_port->lock - crypto: sun8i-ss - rework handling of IV - crypto: sun8i-ss - handle zero sized sg - crypto: cryptd - Protect per-CPU resource by disabling BH. - Input: sparcspkr - fix refcount leak in bbc_beep_probe - PCI/AER: Clear MULTI_ERR_COR/UNCOR_RCV bits - hwrng: omap3-rom - fix using wrong clk_disable() in omap_rom_rng_runtime_resume() - [powerpc*] 64: Only WARN if __pa()/__va() called with bad addresses - [powerpc*] perf: Fix the threshold compare group constraint for power9 - macintosh: via-pmu and via-cuda need RTC_LIB - powerpc/fsl_rio: Fix refcount leak in fsl_rio_setup - mfd: davinci_voicecodec: Fix possible null-ptr-deref davinci_vc_probe() - mailbox: forward the hrtimer if not queued and under a lock - [amd64] RDMA/hfi1: Prevent use of lock before it is initialized - Input: stmfts - do not leave device disabled in stmfts_input_open - OPP: call of_node_put() on error path in _bandwidth_supported() - f2fs: fix dereference of stale list iterator after loop body - iommu/mediatek: Add list_del in mtk_iommu_remove - i2c: at91: use dma safe buffers - cpufreq: mediatek: add missing platform_driver_unregister() on error in mtk_cpufreq_driver_init - cpufreq: mediatek: Use module_init and add module_exit - cpufreq: mediatek: Unregister platform device on exit - [mips*] Loongson: Use hwmon_device_register_with_groups() to register hwmon - i2c: at91: Initialize dma_buf in at91_twi_xfer() - dmaengine: idxd: Fix the error handling path in idxd_cdev_register() - NFS: Do not report EINTR/ERESTARTSYS as mapping errors - NFS: fsync() should report filesystem errors over EINTR/ERESTARTSYS - NFS: Do not report flush errors in nfs_write_end() - NFS: Don't report errors from nfs_pageio_complete() more than once - NFSv4/pNFS: Do not fail I/O when we fail to allocate the pNFS layout - video: fbdev: clcdfb: Fix refcount leak in clcdfb_of_vram_setup - dmaengine: stm32-mdma: remove GISR1 register - dmaengine: stm32-mdma: rework interrupt handler - dmaengine: stm32-mdma: fix chan initialization in stm32_mdma_irq_handler() - iommu/amd: Increase timeout waiting for GA log enablement - i2c: npcm: Fix timeout calculation - i2c: npcm: Correct register access width - i2c: npcm: Handle spurious interrupts - i2c: rcar: fix PM ref counts in probe error paths - perf c2c: Use stdio interface if slang is not supported - perf jevents: Fix event syntax error caused by ExtSel - f2fs: fix to avoid f2fs_bug_on() in dec_valid_node_count() - f2fs: fix to do sanity check on block address in f2fs_do_zero_range() - f2fs: fix to clear dirty inode in f2fs_evict_inode() - f2fs: fix deadloop in foreground GC - f2fs: don't need inode lock for system hidden quota - f2fs: fix to do sanity check on total_data_blocks - f2fs: fix fallocate to use file_modified to update permissions consistently - f2fs: fix to do sanity check for inline inode - wifi: mac80211: fix use-after-free in chanctx code - iwlwifi: mvm: fix assert 1F04 upon reconfig - fs-writeback: writeback_sb_inodes:Recalculate 'wrote' according skipped pages - efi: Do not import certificates from UEFI Secure Boot for T2 Macs - bfq: Split shared queues on move between cgroups - bfq: Update cgroup information before merging bio - bfq: Track whether bfq_group is still online - ext4: fix use-after-free in ext4_rename_dir_prepare - ext4: fix warning in ext4_handle_inode_extension - ext4: fix bug_on in ext4_writepages - ext4: filter out EXT4_FC_REPLAY from on-disk superblock field s_state - ext4: fix bug_on in __es_tree_search - ext4: verify dir block before splitting it (CVE-2022-1184) - ext4: avoid cycles in directory h-tree (CVE-2022-1184) - ACPI: property: Release subnode properties with data nodes - tracing: Fix potential double free in create_var_ref() - PCI/PM: Fix bridge_d3_blacklist[] Elo i2 overwrite of Gigabyte X299 - PCI: qcom: Fix runtime PM imbalance on probe errors - PCI: qcom: Fix unbalanced PHY init on probe errors - mm, compaction: fast_find_migrateblock() should return pfn in the target zone - [s390x] perf: obtain sie_block from the right address - dlm: fix plock invalid read - dlm: fix missing lkb refcount handling - ocfs2: dlmfs: fix error handling of user_dlm_destroy_lock - scsi: dc395x: Fix a missing check on list iterator - scsi: ufs: qcom: Add a readl() to make sure ref_clk gets enabled - drm/amdgpu/cs: make commands with 0 chunks illegal behaviour. - drm/etnaviv: check for reaped mapping in etnaviv_iommu_unmap_gem - drm/nouveau/clk: Fix an incorrect NULL check on list iterator - drm/nouveau/kms/nv50-: atom: fix an incorrect NULL check on list iterator - drm/bridge: analogix_dp: Grab runtime PM reference for DP-AUX - [x86] drm/i915/dsi: fix VBT send packet port selection for ICL+ - md: fix an incorrect NULL check in does_sb_need_changing - md: fix an incorrect NULL check in md_reload_sb - mtd: cfi_cmdset_0002: Move and rename chip_check/chip_ready/chip_good_for_write - mtd: cfi_cmdset_0002: Use chip_ready() for write on S29GL064N - media: coda: Fix reported H264 profile - media: coda: Add more H264 levels for CODA960 - [amd64] RDMA/hfi1: Fix potential integer multiplication overflow errors - csky: patch_text: Fixup last cpu should be master - irqchip/armada-370-xp: Do not touch Performance Counter Overflow on A375, A38x, A39x - irqchip: irq-xtensa-mx: fix initial IRQ affinity - cfg80211: declare MODULE_FIRMWARE for regulatory.db - mac80211: upgrade passive scan to active scan on DFS channels after beacon rx - um: chan_user: Fix winch_tramp() return value - um: Fix out-of-bounds read in LDT setup - kexec_file: drop weak attribute from arch_kexec_apply_relocations[_add] - ftrace: Clean up hash direct_functions on register failures - iommu/msm: Fix an incorrect NULL check on list iterator - nodemask.h: fix compilation error with GCC12 - hugetlb: fix huge_pmd_unshare address update - xtensa/simdisk: fix proc_read_simdisk() - rtl818x: Prevent using not initialized queues - ASoC: rt5514: Fix event generation for "DSP Voice Wake Up" control - carl9170: tx: fix an incorrect use of list iterator - stm: ltdc: fix two incorrect NULL checks on list iterator - bcache: improve multithreaded bch_btree_check() - bcache: improve multithreaded bch_sectors_dirty_init() - bcache: remove incremental dirty sector counting for bch_sectors_dirty_init() - bcache: avoid journal no-space deadlock by reserving 1 journal bucket - serial: pch: don't overwrite xmit->buf[0] by x_char - tilcdc: tilcdc_external: fix an incorrect NULL check on list iterator - gma500: fix an incorrect NULL check on list iterator - arm64: dts: qcom: ipq8074: fix the sleep clock frequency - phy: qcom-qmp: fix struct clk leak on probe errors - ARM: dts: s5pv210: Remove spi-cs-high on panel in Aries - ARM: pxa: maybe fix gpio lookup tables - SMB3: EBADF/EIO errors in rename/open caused by race condition in smb2_compound_op - docs/conf.py: Cope with removal of language=None in Sphinx 5.0.0 - dt-bindings: gpio: altera: correct interrupt-cells - vdpasim: allow to enable a vq repeatedly - blk-iolatency: Fix inflight count imbalances and IO hangs on offline - coresight: core: Fix coresight device probe failure issue - phy: qcom-qmp: fix reset-controller leak on probe errors - net: ipa: fix page free in ipa_endpoint_trans_release() - net: ipa: fix page free in ipa_endpoint_replenish_one() - xfs: set inode size after creating symlink - xfs: sync lazy sb accounting on quiesce of read-only mounts - xfs: fix chown leaking delalloc quota blocks when fssetxattr fails - xfs: fix incorrect root dquot corruption error when switching group/project quota types - xfs: restore shutdown check in mapped write fault path - xfs: force log and push AIL to clear pinned inodes when aborting mount - xfs: consider shutdown in bmapbt cursor delete assert - xfs: assert in xfs_btree_del_cursor should take into account error - kseltest/cgroup: Make test_stress.sh work if run interactively - thermal/core: fix a UAF bug in __thermal_cooling_device_register() - thermal/core: Fix memory leak in the error path - bfq: Avoid merging queues with different parents - bfq: Drop pointless unlock-lock pair - bfq: Remove pointless bfq_init_rq() calls - bfq: Get rid of __bio_blkcg() usage - bfq: Make sure bfqg for which we are queueing requests is online - block: fix bio_clone_blkg_association() to associate with proper blkcg_gq - Revert "random: use static branch for crng_ready()" - RDMA/rxe: Generate a completion for unsupported/invalid opcode - [mips*] IP27: Remove incorrect `cpu_has_fpu' override - [mips*] IP30: Remove incorrect `cpu_has_fpu' override - ext4: only allow test_dummy_encryption when supported - md: bcache: check the return value of kzalloc() in detached_dev_do_request() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.122 - pcmcia: db1xxx_ss: restrict to MIPS_DB1XXX boards - staging: greybus: codecs: fix type confusion of list iterator variable - iio: adc: ad7124: Remove shift from scan_type - tty: goldfish: Use tty_port_destroy() to destroy port - tty: serial: owl: Fix missing clk_disable_unprepare() in owl_uart_probe - tty: n_tty: Restore EOF push handling behavior - tty: serial: fsl_lpuart: fix potential bug when using both of_alias_get_id and ida_simple_get - usb: usbip: fix a refcount leak in stub_probe() - usb: usbip: add missing device lock on tweak configuration cmd - USB: storage: karma: fix rio_karma_init return - usb: musb: Fix missing of_node_put() in omap2430_probe - staging: fieldbus: Fix the error handling path in anybuss_host_common_probe() - pwm: lp3943: Fix duty calculation in case period was clamped - rpmsg: qcom_smd: Fix irq_of_parse_and_map() return value - usb: dwc3: pci: Fix pm_runtime_get_sync() error checking - misc: fastrpc: fix an incorrect NULL check on list iterator - firmware: stratix10-svc: fix a missing check on list iterator - usb: typec: mux: Check dev_set_name() return value - iio: adc: stmpe-adc: Fix wait_for_completion_timeout return value check - iio: proximity: vl53l0x: Fix return value check of wait_for_completion_timeout - iio: adc: sc27xx: fix read big scale voltage not right - iio: adc: sc27xx: Fine tune the scale calibration values - rpmsg: qcom_smd: Fix returning 0 if irq_of_parse_and_map() fails - phy: qcom-qmp: fix pipe-clock imbalance on power-on failure - serial: sifive: Report actual baud base rather than fixed 115200 - coresight: cpu-debug: Replace mutex with mutex_trylock on panic notifier - extcon: ptn5150: Add queue work sync before driver release - soc: rockchip: Fix refcount leak in rockchip_grf_init - rtc: mt6397: check return value after calling platform_get_resource() - serial: meson: acquire port->lock in startup() - serial: 8250_fintek: Check SER_RS485_RTS_* only with RS485 - serial: digicolor-usart: Don't allow CS5-6 - serial: rda-uart: Don't allow CS5-6 - serial: txx9: Don't allow CS5-6 - serial: sh-sci: Don't allow CS5-6 - serial: sifive: Sanitize CSIZE and c_iflag - serial: st-asc: Sanitize CSIZE and correct PARENB for CS7 - serial: stm32-usart: Correct CSIZE, bits, and parity - firmware: dmi-sysfs: Fix memory leak in dmi_sysfs_register_handle - bus: ti-sysc: Fix warnings for unbind for serial - driver: base: fix UAF when driver_attach failed - driver core: fix deadlock in __device_attach - watchdog: rti-wdt: Fix pm_runtime_get_sync() error checking - watchdog: ts4800_wdt: Fix refcount leak in ts4800_wdt_probe - ASoC: fsl_sai: Fix FSL_SAI_xDR/xFR definition - clocksource/drivers/oxnas-rps: Fix irq_of_parse_and_map() return value - [s390x] crypto: fix scatterwalk_unmap() callers in AES-GCM - net: sched: fixed barrier to prevent skbuff sticking in qdisc backlog - net: ethernet: mtk_eth_soc: out of bounds read in mtk_hwlro_get_fdir_entry() - net: ethernet: ti: am65-cpsw-nuss: Fix some refcount leaks - net: dsa: mv88e6xxx: Fix refcount leak in mv88e6xxx_mdios_register - modpost: fix removing numeric suffixes - jffs2: fix memory leak in jffs2_do_fill_super - ubi: fastmap: Fix high cpu usage of ubi_bgt by making sure wl_pool not empty - ubi: ubi_create_volume: Fix use-after-free when volume creation failed - bpf: Fix probe read error in ___bpf_prog_run() - net/smc: fixes for converting from "struct smc_cdc_tx_pend **" to "struct smc_wr_tx_pend_priv *" - nfp: only report pause frame configuration for physical device - sfc: fix considering that all channels have TX queues - sfc: fix wrong tx channel offset with efx_separate_tx_channels - net/mlx5: Don't use already freed action pointer - net/mlx5: correct ECE offset in query qp output - net/mlx5e: Update netdev features after changing XDP state - net: sched: add barrier to fix packet stuck problem for lockless qdisc - tcp: tcp_rtx_synack() can be called from process context - gpio: pca953x: use the correct register address to do regcache sync - afs: Fix infinite loop found by xfstest generic/676 - scsi: sd: Fix potential NULL pointer dereference - tipc: check attribute length for bearer name - driver core: Fix wait_for_device_probe() & deferred_probe_timeout interaction - perf c2c: Fix sorting in percent_rmt_hitm_cmp() - dmaengine: idxd: set DMA_INTERRUPT cap bit - mips: cpc: Fix refcount leak in mips_cpc_default_phys_base - bootconfig: Make the bootconfig.o as a normal object file - tracing: Fix sleeping function called from invalid context on RT kernel - tracing: Avoid adding tracer option before update_tracer_options - iommu/arm-smmu: fix possible null-ptr-deref in arm_smmu_device_probe() - iommu/arm-smmu-v3: check return value after calling platform_get_resource() - f2fs: remove WARN_ON in f2fs_is_valid_blkaddr - i2c: cadence: Increase timeout per message if necessary - dmaengine: zynqmp_dma: In struct zynqmp_dma_chan fix desc_size data type - NFSv4: Don't hold the layoutget locks across multiple RPC calls - video: fbdev: hyperv_fb: Allow resolutions with size > 64 MB for Gen1 - video: fbdev: pxa3xx-gcu: release the resources correctly in pxa3xx_gcu_probe/remove() - xprtrdma: treat all calls not a bcall when bc_serv is NULL - netfilter: nat: really support inet nat without l3 address - netfilter: nf_tables: delete flowtable hooks via transaction list - powerpc/kasan: Force thread size increase with KASAN - netfilter: nf_tables: always initialize flowtable hook list in transaction - ata: pata_octeon_cf: Fix refcount leak in octeon_cf_probe - netfilter: nf_tables: release new hooks on unsupported flowtable flags - netfilter: nf_tables: memleak flow rule from commit path - netfilter: nf_tables: bail out early if hardware offload is not supported - xen: unexport __init-annotated xen_xlate_map_ballooned_pages() - af_unix: Fix a data-race in unix_dgram_peer_wake_me(). - bpf, arm64: Clear prog->jited_len along prog->jited - net: dsa: lantiq_gswip: Fix refcount leak in gswip_gphy_fw_list - net/mlx4_en: Fix wrong return value on ioctl EEPROM query failure - SUNRPC: Fix the calculation of xdr->end in xdr_get_next_encode_buffer() - net: mdio: unexport __init-annotated mdio_bus_init() - net: xfrm: unexport __init-annotated xfrm4_protocol_init() - net: ipv6: unexport __init-annotated seg6_hmac_init() - net/mlx5: Rearm the FW tracer after each tracer event - net/mlx5: fs, fail conflicting actions - ip_gre: test csum_start instead of transport header - net: altera: Fix refcount leak in altera_tse_mdio_create - drm: imx: fix compiler warning with gcc-12 - iio: dummy: iio_simple_dummy: check the return value of kstrdup() - staging: rtl8712: fix a potential memory leak in r871xu_drv_init() - iio: st_sensors: Add a local lock for protecting odr - tty: synclink_gt: Fix null-pointer-dereference in slgt_clean() - tty: Fix a possible resource leak in icom_probe - drivers: staging: rtl8192u: Fix deadlock in ieee80211_beacons_stop() - drivers: staging: rtl8192e: Fix deadlock in rtllib_beacons_stop() - USB: host: isp116x: check return value after calling platform_get_resource() - drivers: tty: serial: Fix deadlock in sa1100_set_termios() - drivers: usb: host: Fix deadlock in oxu_bus_suspend() - USB: hcd-pci: Fully suspend across freeze/thaw cycle - sysrq: do not omit current cpu when showing backtrace of all active CPUs - usb: dwc2: gadget: don't reset gadget's driver->bus - misc: rtsx: set NULL intfdata when probe fails - extcon: Modify extcon device to be created after driver data is set - clocksource/drivers/sp804: Avoid error on multiple instances - staging: rtl8712: fix uninit-value in usb_read8() and friends - staging: rtl8712: fix uninit-value in r871xu_drv_init() - serial: msm_serial: disable interrupts in __msm_console_write() - kernfs: Separate kernfs_pr_cont_buf and rename_lock. - watchdog: wdat_wdt: Stop watchdog when rebooting the system - md: protect md_unregister_thread from reentrancy - scsi: myrb: Fix up null pointer access on myrb_cleanup() - Revert "net: af_key: add check for pfkey_broadcast in function pfkey_process" - ceph: allow ceph.dir.rctime xattr to be updatable - drm/radeon: fix a possible null pointer dereference - modpost: fix undefined behavior of is_arm_mapping_symbol() - [x86] cpu: Elide KCSAN for cpu_has() and friends - jump_label,noinstr: Avoid instrumentation for JUMP_LABEL=n builds - nbd: call genl_unregister_family() first in nbd_cleanup() - nbd: fix race between nbd_alloc_config() and module removal - nbd: fix io hung while disconnecting device - [s390x] gmap: voluntarily schedule during key setting - cifs: version operations for smb20 unneeded when legacy support disabled - nodemask: Fix return values to be unsigned - vringh: Fix loop descriptors check in the indirect cases - scripts/gdb: change kernel config dumping method - ALSA: hda/conexant - Fix loopback issue with CX20632 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo Yoga DuetITL 2021 - cifs: return errors during session setup during reconnects - cifs: fix reconnect on smb3 mount types - ata: libata-transport: fix {dma|pio|xfer}_mode sysfs files - mmc: block: Fix CQE recovery reset success - net: phy: dp83867: retrigger SGMII AN when link change - nfc: st21nfca: fix incorrect validating logic in EVT_TRANSACTION - nfc: st21nfca: fix memory leaks in EVT_TRANSACTION handling - nfc: st21nfca: fix incorrect sizing calculations in EVT_TRANSACTION - ixgbe: fix bcast packets Rx on VF after promisc removal - ixgbe: fix unexpected VLAN Rx in promisc mode on VF - Input: bcm5974 - set missing URB_NO_TRANSFER_DMA_MAP urb flag - drm/bridge: analogix_dp: Support PSR-exit to disable transition - drm/atomic: Force bridge self-refresh-exit on CRTC switch - [powerpc*] 32: Fix overread/overwrite of thread_struct via ptrace (CVE-2022-32981) - [powerpc*] mm: Switch obsolete dssall to .long - interconnect: qcom: sc7180: Drop IP0 interconnects - interconnect: Restore sync state by ignoring ipa-virt in provider count - md/raid0: Ignore RAID0 layout if the second zone has only one device - PCI: qcom: Fix pipe clock imbalance - zonefs: fix handling of explicit_open option on mount - dmaengine: idxd: add missing callback function to support DMA_INTERRUPT - tcp: fix tcp_mtup_probe_success vs wrong snd_cwnd https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.123 - [x86] Mitigate Processor MMIO Stale Data vulnerabilities (CVE-2022-21123, CVE-2022-21125, CVE-2022-21166): + Documentation: Add documentation for Processor MMIO Stale Data + x86/speculation/mmio: Enumerate Processor MMIO Stale Data bug + x86/speculation: Add a common function for MD_CLEAR mitigation update + x86/speculation/mmio: Add mitigation for Processor MMIO Stale Data + x86/bugs: Group MDS, TAA & Processor MMIO Stale Data mitigations + x86/speculation/mmio: Enable CPU Fill buffer clearing on idle + x86/speculation/mmio: Add sysfs reporting for Processor MMIO Stale Data + x86/speculation/srbds: Update SRBDS mitigation selection + x86/speculation/mmio: Reuse SRBDS mitigation for SBDS + KVM: x86/speculation: Disable Fill buffer clear within guests + x86/speculation/mmio: Print SMT warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.124 - 9p: missing chunk of "fs/9p: Don't update file type when updating file attributes" - nfsd: Replace use of rwsem with errseq_t - bpf: Fix incorrect memory charge cost calculation in stack_map_alloc() - ata: libata-core: fix NULL pointer deref in ata_host_alloc_pinfo() - quota: Prevent memory allocation recursion while holding dq_lock - [armhf] ASoC: es8328: Fix event generation for deemphasis control - Input: soc_button_array - also add Lenovo Yoga Tablet2 1051F to dmi_use_low_level_irq - scsi: vmw_pvscsi: Expand vcpuHint to 16 bits - scsi: lpfc: Fix port stuck in bypassed state after LIP in PT2PT topology - scsi: lpfc: Allow reduced polling rate for nvme_admin_async_event cmd completion - scsi: ipr: Fix missing/incorrect resource cleanup in error case - scsi: pmcraid: Fix missing resource cleanup in error case - ALSA: hda/realtek - Add HW8326 support - virtio-mmio: fix missing put_device() when vm_cmdline_parent registration failed - ipv6: Fix signed integer overflow in l2tp_ip6_sendmsg - random: credit cpu and bootloader seeds by default - pNFS: Don't keep retrying if the server replied NFS4ERR_LAYOUTUNAVAILABLE - pNFS: Avoid a live lock condition in pnfs_update_layout() - [x86] clocksource: hyper-v: unexport __init-annotated hv_init_clocksource() - i40e: Fix adding ADQ filter to TC0 - i40e: Fix calculating the number of queue pairs - i40e: Fix call trace in setup_tx_descriptors - [x86] Drivers: hv: vmbus: Release cpu lock in error case - [x86] drm/i915/reset: Fix error_state_read ptr + offset use - nvme: use sysfs_emit instead of sprintf - nvme: add device name to warning in uuid_show() - net: ax25: Fix deadlock caused by skb_recv_datagram in ax25_recvmsg - [arm64] ftrace: fix branch range checks - [arm64] ftrace: consistently handle PLTs. - block: Fix handling of offline queues in blk_mq_alloc_request_hctx() - faddr2line: Fix overlapping text section failures, the sequel - [arm64,armhf] irqchip/gic-v3: Fix error handling in gic_populate_ppi_partitions - [arm64,armhf] irqchip/gic-v3: Fix refcount leak in gic_populate_ppi_partitions - i2c: designware: Use standard optional ref clock implementation - [x86] mei: me: add raptor lake point S DID - [x86] comedi: vmk80xx: fix expression for tx buffer size - USB: serial: option: add support for Cinterion MV31 with new baseline - USB: serial: io_ti: add Agilent E5805A support - [arm*] usb: dwc2: Fix memory leak in dwc2_hcd_init - serial: 8250: Store to lsr_save_flags after lsr read - dm mirror log: round up region bitmap size to BITS_PER_LONG - drm/amd/display: Cap OLED brightness per max frame-average luminance - ext4: fix bug_on ext4_mb_use_inode_pa - ext4: make variable "count" signed - ext4: add reserved GDT blocks check - [arm64] KVM: arm64: Don't read a HW interrupt pending state in user context - [x86] KVM: x86: Account a variety of miscellaneous allocations - [x86] KVM: SVM: Use kzalloc for sev ioctl interfaces to prevent kernel data leak - ALSA: hda/realtek: fix right sounds and mute/micmute LEDs for HP machine - virtio-pci: Remove wrong address verification in vp_del_vqs() - dma-direct: don't over-decrypt memory - net/sched: act_police: more accurate MTU policing - net: openvswitch: fix misuse of the cached connection on tuple changes - Revert "PCI: Make pci_enable_ptm() private" - igc: Enable PCIe PTM - [arm64] clk: imx8mp: fix usb_root_clk parent https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.125 - [s390x] mm: use non-quiescing sske for KVM switch to keyed guest - zonefs: fix zonefs_iomap_begin() for reads - usb: gadget: u_ether: fix regression in setting fixed MAC address - tcp: add some entropy in __inet_hash_connect() - tcp: use different parts of the port_offset for index and offset (CVE-2022-1012) - tcp: add small random increments to the source port (CVE-2022-1012) - tcp: dynamically allocate the perturb table used by source ports (CVE-2022-1012) - tcp: increase source port perturb table to 2^16 (CVE-2022-1012, CVE-2022-32296) - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012) - serial: core: Initialize rs485 RTS polarity already on probe - [arm64] mm: Don't invalidate FROM_DEVICE buffers at start of DMA transfer - io_uring: add missing item types for various requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.126 - io_uring: use separate list entry for iopoll requests https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.127 - vt: drop old FONT ioctls - random: schedule mix_interrupt_randomness() less often - random: quiet urandom warning ratelimit suppression message - ALSA: hda/via: Fix missing beep setup - ALSA: hda/conexant: Fix missing beep setup - ALSA: hda/realtek: Add mute LED quirk for HP Omen laptop - ALSA: hda/realtek - ALC897 headset MIC no sound - ALSA: hda/realtek: Apply fixup for Lenovo Yoga Duet 7 properly - ALSA: hda/realtek: Add quirk for Clevo PD70PNT - ALSA: hda/realtek: Add quirk for Clevo NS50PU - net: openvswitch: fix parsing of nw_proto for IPv6 fragments - btrfs: add error messages to all unrecognized mount options - mmc: sdhci-pci-o2micro: Fix card detect by dealing with debouncing - [armhf] mtd: rawnand: gpmi: Fix setting busy timeout setting - ata: libata: add qc->flags in ata_qc_complete_template tracepoint - dm era: commit metadata in postsuspend after worker stops - dm mirror log: clear log bits up to BITS_PER_LONG boundary - USB: serial: option: add Telit LE910Cx 0x1250 composition - USB: serial: option: add Quectel EM05-G modem - USB: serial: option: add Quectel RM500K module support - [arm64] drm/msm: Fix double pm_runtime_disable() call - netfilter: nftables: add nft_parse_register_load() and use it - netfilter: nftables: add nft_parse_register_store() and use it - netfilter: use get_random_u32 instead of prandom - scsi: scsi_debug: Fix zone transition to full condition - [arm64] drm/msm: use for_each_sgtable_sg to iterate over scatterlist - bpf: Fix request_sock leak in sk lookup helpers - [arm64,armhf] drm/sun4i: Fix crash during suspend after component bind failure - [amd64] bpf, x86: Fix tail call count offset calculation on bpf2bpf call - phy: aquantia: Fix AN when higher speeds than 1G are not advertised - tipc: simplify the finalize work queue - tipc: fix use-after-free Read in tipc_named_reinit - igb: fix a use-after-free issue in igb_clean_tx_ring - bonding: ARP monitor spams NETDEV_NOTIFY_PEERS notifiers - net/sched: sch_netem: Fix arithmetic in netem_dump() for 32-bit platforms - [arm64] drm/msm/mdp4: Fix refcount leak in mdp4_modeset_init_intf - [arm64] drm/msm/dp: check core_initialized before disable interrupts at dp_display_unbind() - [arm64] drm/msm/dp: fixes wrong connection state caused by failure of link train - [arm64] drm/msm/dp: deinitialize mainlink if link training failed - [arm64] drm/msm/dp: promote irq_hpd handle to handle link training correctly - [arm64] drm/msm/dp: fix connect/disconnect handled at irq_hpd - erspan: do not assume transport header is always set - x86/xen: Remove undefined behavior in setup_features() - afs: Fix dynamic root getattr - ice: ethtool: advertise 1000M speeds properly - regmap-irq: Fix a bug in regmap_irq_enable() for type_in_mask chips - igb: Make DMA faster when CPU is active on the PCIe link - virtio_net: fix xdp_rxq_info bug after suspend/resume - nvme: centralize setting the timeout in nvme_alloc_request - nvme: split nvme_alloc_request() - nvme: mark nvme_setup_passsthru() inline - nvme: don't check nvme_req flags for new req - nvme-pci: allocate nvme_command within driver pdu - nvme-pci: add NO APST quirk for Kioxia device - nvme: move the Samsung X5 quirk entry to the core quirks - [s390x] cpumf: Handle events cycles and instructions identical - iio: mma8452: fix probe fail when device tree compatible is used. - iio: adc: vf610: fix conversion mode sysfs node name - xhci: turn off port power in shutdown - xhci-pci: Allow host runtime PM as default for Intel Raptor Lake xHCI - xhci-pci: Allow host runtime PM as default for Intel Meteor Lake xHCI - [arm64,armhf] usb: chipidea: udc: check request status before setting device address - f2fs: attach inline_data after setting compression - iio:accel:bma180: rearrange iio trigger get and register - iio:accel:mxc4005: rearrange iio trigger get and register - iio: accel: mma8452: ignore the return value of reset operation - iio: gyro: mpu3050: Fix the error handling in mpu3050_power_up() - iio: imu: inv_icm42600: Fix broken icm42600 (chip id 0 value) - iio: adc: axp288: Override TS pin bias current for some models - iio: adc: adi-axi-adc: Fix refcount leak in adi_axi_adc_attach_client - [powerpc*] Enable execve syscall exit tracepoint - [powerpc*] rtas: Allow ibm,platform-dump RTAS call with null buffer address - [powerpc*] powernv: wire up rng during setup_arch - [armhf] exynos: Fix refcount leak in exynos_map_pmu - modpost: fix section mismatch check for exported init/exit sections - random: update comment from copy_to_user() -> copy_to_iter() - [powerpc*] pseries: wire up rng during setup_arch() . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.120-rt70 * [rt] Drop "crypto: cryptd - add a lock instead preempt_disable/local_bh_disable" patch * Bump ABI to 16 . [ Ben Hutchings ] * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the kernel parameter: random.trust_bootloader=off * [armel,armhf] crypto: Enable optimised implementations (see #922204): - Enable CRYPTO_SHA256_ARM, CRYPTO_SHA512_ARM as modules - [armhf] Enable SHA1_ARM_NEON, CRYPTO_SHA1_ARM_CE, CRYPTO_SHA2_ARM_CE, CRYPTO_AES_ARM_BS, CRYPTO_AES_ARM_CE, CRYPTO_GHASH_ARM_CE, CRYPTO_CRCT10DIF_ARM_CE, CRYPTO_CRC32_ARM_CE as modules linux-signed-i386 (5.10.120+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.120-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.114 - USB: quirks: add a Realtek card reader - USB: quirks: add STRING quirk for VCOM device - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions - xhci: Enable runtime PM on second Alderlake controller - xhci: stop polling roothubs after shutdown - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms - iio: dac: ad5592r: Fix the missing return value. - iio: dac: ad5446: Fix read_raw not returning set value - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on() - iio: imu: inv_icm42600: Fix I2C init possible nack - usb: misc: fix improper handling of refcount in uss720_probe() - [arm64,x86] usb: typec: ucsi: Fix reuse of completion structure - [arm64,x86] usb: typec: ucsi: Fix role swapping - usb: gadget: uvc: Fix crash when encoding data for usb request - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind() - [arm64,armhf] usb: dwc3: Try usb-role-switch first in dwc3_drd_init - [arm64,armhf] usb: dwc3: core: Fix tx/rx threshold settings - [arm64,armhf] usb: dwc3: core: Only handle soft-reset in DCTL - [arm64,armhf] usb: dwc3: gadget: Return proper request status - [arm*] usb: phy: generic: Get the vbus supply - [arm64,armhf] serial: imx: fix overrun interrupts in DMA mode - serial: 8250: Also set sticky MCR bits in console restoration - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device - [arm64,armhf] arch_topology: Do not set llc_sibling if llc_id is invalid - hex2bin: make the function hex_to_bin constant-time - hex2bin: fix access beyond string end - iocost: don't reset the inuse weight of under-weighted debtors - video: fbdev: udlfb: properly check endpoint type - iio:imu:bmi160: disable regulator in error path - USB: Fix xhci event ring dequeue pointer ERDP update issue - [armhf] phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe - [armhf] phy: samsung: exynos5250-sata: fix missing device put in probe error paths - [armhf] OMAP2+: Fix refcount leak in omap_gic_of_init - [armhf] bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific - [armhf] phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks - [armhf] dts: am3517-evm: Fix misc pinmuxing - [armhf] dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35 - ipvs: correctly print the memory size of ip_vs_conn_tab - [armhf] pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_link_register_of - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook - [arm64,armhf] pinctrl: rockchip: fix RK3308 pinmux bits - tcp: md5: incorrect tcp_header_len for incoming connections - [armhf] pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested - tcp: ensure to use the most recently sent skb when filling the rate sample - wireguard: device: check for metadata_dst with skb_valid_dst() - sctp: check asoc strreset_chunk in sctp_generate_reconf_event - [arm64] dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock - [arm64] net: hns3: modify the return code of hclge_get_ring_chain_from_mbx - [arm64] net: hns3: add validity check for message data length - [arm64] net: hns3: add return value for mailbox handling in PF - net/smc: sync err code when tcp connection was refused - ip_gre: Make o_seqno start from 0 in native mode - ip6_gre: Make o_seqno start from 0 in native mode - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT - tcp: make sure treq->af_specific is initialized - [arm64,armhf] bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create() - [arm64,armhf] clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource() - [arm64] net: bcmgenet: hide status block before TX timestamping - net: phy: marvell10g: fix return value on error - bnx2x: fix napi API usage sequence - [arm64,armhf] net: fec: add missing of_node_put() in fec_enet_init_stop_mode() - ixgbe: ensure IPsec VF<->PF compatibility - tcp: fix F-RTO may not work correctly when receiving DSACK - [x86] ASoC: Intel: soc-acpi: correct device endpoints for max98373 - ext4: fix bug_on in start_this_handle during umount filesystem - [amd64] x86: __memcpy_flushcache: fix wrong alignment if size > 2^32 - cifs: destage any unwritten data to the server before calling copychunk_write - [x86] drivers: net: hippi: Fix deadlock in rr_close() - zonefs: Fix management of open zones - zonefs: Clear inode information flags on inode creation - [x86] drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses - [armhf] net: ethernet: stmmac: fix write to sgmii_adapter_base - [x86] thermal: int340x: Fix attr.show callback prototype - [x86] cpu: Load microcode during restore_processor_state() - tty: n_gsm: fix restart handling via CLD command - tty: n_gsm: fix decoupled mux resource - tty: n_gsm: fix mux cleanup after unregister tty device - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2 - tty: n_gsm: fix malformed counter for out of frame data - netfilter: nft_socket: only do sk lookups when indev is available - tty: n_gsm: fix insufficient txframe size - tty: n_gsm: fix wrong DLCI release order - tty: n_gsm: fix missing explicit ldisc flush - tty: n_gsm: fix wrong command retry handling - tty: n_gsm: fix wrong command frame length field encoding - tty: n_gsm: fix reset fifo race condition - tty: n_gsm: fix incorrect UA handling - tty: n_gsm: fix software flow control handling https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.115 - [mips*] Fix CP0 counter erratum detection for R4k CPUs - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC - mmc: core: Set HS clock speed before sending HS CMD13 - gpiolib: of: fix bounds check for 'gpio-reserved-ranges' - [x86] KVM: x86/svm: Account for family 17h event renumberings in amd_pmc_perf_hw_id - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes - Revert "SUNRPC: attempt AF_LOCAL connect on setup" - firewire: fix potential uaf in outbound_phy_packet_callback() - firewire: remove check of list iterator against head past the loop body - firewire: core: extend card->lock in fw_core_handle_bus_reset - net: stmmac: disable Split Header (SPH) for Intel platforms - genirq: Synchronize interrupt thread startup - ASoC: da7219: Fix change notifications for tone generator frequency - [s390x] dasd: fix data corruption for ESE devices - [s390x] dasd: prevent double format of tracks for ESE devices - [s390x] dasd: Fix read for ESE with blksize < 4k - [s390x] dasd: Fix read inconsistency for ESE DASD devices - can: isotp: remove re-binding of bound socket - nfc: replace improper check device_is_registered() in netlink related functions (CVE-2022-1974) - NFC: netlink: fix sleep in atomic bug when firmware download timeout (CVE-2022-1975) - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled (irq_mask not set) - hwmon: (adt7470) Fix warning on module removal - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback - net/mlx5e: Fix trust state reset in reload - net/mlx5e: Don't match double-vlan packets if cvlan is not set - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft release - net/mlx5e: Fix the calling of update_buffer_lossy() API - net/mlx5: Avoid double clear or set of sync reset requested - NFSv4: Don't invalidate inode attributes on delegation return - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in sun8i_dwmac_register_mdio_mux() - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt() - hinic: fix bug of wq out of bound access - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag - bnxt_en: Fix unnecessary dropping of RX packets - [arm64,armhf] smsc911x: allow using IRQ0 - btrfs: always log symlinks in full mode - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter() - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has architectural PMU - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is advertised - rcu: Fix callbacks processing time limit retaining cond_resched() - rcu: Apply callbacks processing time limit only on softirq - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern (CVE-2022-0494) - dm: interlock pending dm_io and dm_wait_for_bios_completion - [arm64] PCI: aardvark: Clear all MSIs at setup - [arm64] PCI: aardvark: Fix reading MSI interrupt number - mmc: rtsx: add 74 Clocks in power on flow https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.116 - regulator: consumer: Add missing stubs to regulator/consumer.h - block: drbd: drbd_nl: Make conversion to 'enum drbd_ret_code' explicit - nfp: bpf: silence bitwise vs. logical OR warning - Bluetooth: Fix the creation of hdev->name - mm: fix missing cache flush for all tail pages of compound page - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user() - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and __mcopy_atomic() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.117 - batman-adv: Don't skb_split skbuffs with frag_list - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing - hwmon: (tmp401) Add OF device ID table - mac80211: Reset MBSSID parameters upon connection - net: Fix features skip in for_each_netdev_feature() - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in hardware when deleted - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0 - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving VCAP filters - ipv4: drop dst in multicast routing path - drm/nouveau: Fix a potential theorical leak in nouveau_get_backlight_name() - netlink: do not reset transport header in netlink_recvmsg() - sfc: Use swap() instead of open coding it - net: sfc: fix memory leak due to ptp channel - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection - nfs: fix broken handling of the softreval mount option - dim: initialize all struct fields - [s390x] ctcm: fix variable dereferenced before check - [s390x] ctcm: fix potential memory leak - [s390x] lcs: fix variable dereferenced before check - net/sched: act_pedit: really ensure the skb is writable - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down() - net/smc: non blocking recvmsg() return -EAGAIN when no data and signal_pending - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe() - gfs2: Fix filesystem block deallocation for short writes - hwmon: (f71882fg) Fix negative temperature - ASoC: max98090: Reject invalid values in custom control put() - ASoC: max98090: Generate notifications on changes for custom control - ASoC: ops: Validate input values in snd_soc_put_volsw_range() - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT - tcp: resalt the secret every 10 seconds (CVE-2022-1012) - firmware_loader: use kernel credentials when reading firmware - tty: n_gsm: fix mux activation issues in gsm_config() - usb: cdc-wdm: fix reading stuck on device close - USB: serial: pl2303: add device id for HP LM930 Display - USB: serial: qcserial: add support for Sierra Wireless EM7590 - USB: serial: option: add Fibocom L610 modem - USB: serial: option: add Fibocom MA510 modem - ceph: fix setting of xattrs on async created inodes - drm/nouveau/tegra: Stop using iommu_present() - i40e: i40e_main: fix a missing check on list iterator - [amd64,arm64] net: atlantic: always deep reset on pm op, fixing up my null deref regression - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp() - [x86] drm/vmwgfx: Initialize drm_mode_fb_cmd2 - SUNRPC: Clean up scheduling of autoclose - SUNRPC: Prevent immediate close+reconnect - SUNRPC: Don't call connect() more than once on a TCP socket - SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() (CVE-2022-28893) - net: phy: Fix race condition on link status change - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of linear map - ping: fix address binding wrt vrf - usb: gadget: uvc: rename function to be more consistent - usb: gadget: uvc: allow for application to cleanly shutdown - io_uring: always use original task when preparing req identity (CVE-2022-1786) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.118 - io_uring: always grab file table for deferred statx - floppy: use a statically allocated error counter - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI display power state" - igc: Remove _I_PHY_ID checking - igc: Remove phy->type checking - igc: Update I226_K device ID - rtc: fix use-after-free on device removal - [arm64] rtc: pcf2127: fix bug when reading alarm registers - Input: add bounds checking to input_set_capability() - nvme-pci: add quirks for Samsung X5 SSDs - gfs2: Disable page faults during lockless buffered reads - [arm64,armhf] rtc: sun6i: Fix time overflow handling - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions - ALSA: hda/realtek: Enable headset mic on Lenovo P360 - [s390x] pci: improve zpci_dev reference counting - nvme-multipath: fix hang when disk goes live over reconnect - rtc: mc146818-lib: Fix the AltCentury for AMD platforms - fs: fix an infinite loop in iomap_fiemap - drbd: remove usage of list iterator variable after loop - [arm64] platform/chrome: cros_ec_debugfs: detach log reader wq from devm - [armel,armhf] 9191/1: arm/stacktrace, kasan: Silence KASAN warnings in unwind_frame() - nilfs2: fix lockdep warnings in page operations for btree nodes - nilfs2: fix lockdep warnings during disk space reclamation - Revert "swiotlb: fix info leak with DMA_FROM_DEVICE" - Reinstate some of "swiotlb: rework "fix info leak with DMA_FROM_DEVICE"" (CVE-2022-0854) - ALSA: usb-audio: Restore Rane SL-1 quirk - [i386] ALSA: wavefront: Proper check of get_user() error - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729) - selinux: fix bad cleanup on error in hashtab_duplicate() - Fix double fget() in vhost_net_set_backend() - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is stable - [arm64] paravirt: Use RCU read locks to guard stolen_time - [arm64] mte: Ensure the cleared tags are visible before setting the PTE - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of WORD_SZ - libceph: fix potential use-after-free on linger ping and resends - drm/dp/mst: fix a possible memory leak in fetch_monitor_name() - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl - [arm64] net: macb: Increment rx bd head after allocating skb and buffer - net: evaluate net.ipvX.conf.all.disable_policy and disable_xfrm - xfrm: Add possibility to set the default to block if we have no policy - net: xfrm: fix shift-out-of-bounce - xfrm: make user policy API complete - xfrm: notify default policy on update - xfrm: fix dflt policy check when there is no policy configured - xfrm: rework default policy structure - xfrm: fix "disable_policy" flag use when arriving from different devices - net/sched: act_pedit: sanitize shift argument before usage - [x86] net: vmxnet3: fix possible use-after-free bugs in vmxnet3_rq_alloc_rx_buf() - [x86] net: vmxnet3: fix possible NULL pointer dereference in vmxnet3_rq_cleanup() - ice: fix possible under reporting of ethtool Tx and Rx statistics - net/qla3xxx: Fix a test in ql_reset_work() - net/mlx5e: Properly block LRO when XDP is enabled - net: af_key: add check for pfkey_broadcast in function pfkey_process - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15 - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2 - igb: skip phy status check where unavailable - net: bridge: Clear offload_fwd_mark when passing frame up bridge interface. - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity - scsi: qla2xxx: Fix missed DMA unmap for aborted commands - mac80211: fix rx reordering with non explicit / psmp ack policy - nl80211: validate S1G channel width - nl80211: fix locking in nl80211_set_tx_bitrate_mask() - ethernet: tulip: fix missing pci_disable_device() on error in tulip_init_one() - [amd64,arm64] net: atlantic: fix "frag[0] not initialized" - [amd64,arm64] net: atlantic: reduce scope of is_rsc_complete - [amd64,arm64] net: atlantic: add check for MAX_SKB_FRAGS - [amd64,arm64] net: atlantic: verify hw_head_ lies within TX buffer ring - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group - afs: Fix afs_getattr() to refetch file status if callback break occurred - include/uapi/linux/xfrm.h: Fix XFRM_MSG_MAPPING ABI breakage https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.119 - lockdown: also lock down previous kgdb use (CVE-2022-21499) - staging: rtl8723bs: prevent ->Ssid overflow in rtw_wx_set_scan() - [x86] KVM: x86: Properly handle APF vs disabled LAPIC situation - [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID (CVE-2022-1789) - tcp: change source port randomizarion at connect() time - secure_seq: use the 64 bits of the siphash for port offset calculation (CVE-2022-1012) - ACPI: sysfs: Make sparse happy about address space in use - ACPI: sysfs: Fix BERT error region memory mapping - random: avoid arch_get_random_seed_long() when collecting IRQ randomness - random: remove dead code left over from blocking pool - MAINTAINERS: co-maintain random.c - MAINTAINERS: add git tree for random.c - crypto: lib/blake2s - Move selftest prototype into header file - crypto: blake2s - define shash_alg structs using macros - [amd64] crypto: x86/blake2s - define shash_alg structs using macros - crypto: blake2s - remove unneeded includes - crypto: blake2s - move update and final logic to internal/blake2s.h - crypto: blake2s - share the "shash" API boilerplate code - crypto: blake2s - optimize blake2s initialization - crypto: blake2s - add comment for blake2s_state fields - crypto: blake2s - adjust include guard naming - crypto: blake2s - include instead of - lib/crypto: blake2s: include as built-in - lib/crypto: blake2s: move hmac construction into wireguard - lib/crypto: sha1: re-roll loops to reduce code size - lib/crypto: blake2s: avoid indirect calls to compression function for Clang CFI - random: document add_hwgenerator_randomness() with other input functions - random: remove unused irq_flags argument from add_interrupt_randomness() - random: use BLAKE2s instead of SHA1 in extraction - random: do not sign extend bytes for rotation when mixing - random: do not re-init if crng_reseed completes before primary init - random: mix bootloader randomness into pool - random: harmonize "crng init done" messages - random: use IS_ENABLED(CONFIG_NUMA) instead of ifdefs - random: early initialization of ChaCha constants - random: avoid superfluous call to RDRAND in CRNG extraction - random: don't reset crng_init_cnt on urandom_read() - random: fix typo in comments - random: cleanup poolinfo abstraction - random: cleanup integer types - random: remove incomplete last_data logic - random: remove unused extract_entropy() reserved argument - random: rather than entropy_store abstraction, use global - random: remove unused OUTPUT_POOL constants - random: de-duplicate INPUT_POOL constants - random: prepend remaining pool constants with POOL_ - random: cleanup fractional entropy shift constants - random: access input_pool_data directly rather than through pointer - random: selectively clang-format where it makes sense - random: simplify arithmetic function flow in account() - random: continually use hwgenerator randomness - random: access primary_pool directly rather than through pointer - random: only call crng_finalize_init() for primary_crng - random: use computational hash for entropy extraction - random: simplify entropy debiting - random: use linear min-entropy accumulation crediting - random: always wake up entropy writers after extraction - random: make credit_entropy_bits() always safe - random: remove use_input_pool parameter from crng_reseed() - random: remove batched entropy locking - random: fix locking in crng_fast_load() - random: use RDSEED instead of RDRAND in entropy extraction - random: get rid of secondary crngs - random: inline leaves of rand_initialize() - random: ensure early RDSEED goes through mixer on init - random: do not xor RDRAND when writing into /dev/random - random: absorb fast pool into input pool after fast load - random: use simpler fast key erasure flow on per-cpu keys - random: use hash function for crng_slow_load() - random: make more consistent use of integer types - random: remove outdated INT_MAX >> 6 check in urandom_read() - random: zero buffer after reading entropy from userspace - random: fix locking for crng_init in crng_reseed() - random: tie batched entropy generation to base_crng generation - random: remove ifdef'd out interrupt bench - random: remove unused tracepoints - random: add proper SPDX header - random: deobfuscate irq u32/u64 contributions - random: introduce drain_entropy() helper to declutter crng_reseed() - random: remove useless header comment - random: remove whitespace and reorder includes - random: group initialization wait functions - random: group crng functions - random: group entropy extraction functions - random: group entropy collection functions - random: group userspace read/write functions - random: group sysctl functions - random: rewrite header introductory comment - random: defer fast pool mixing to worker - random: do not take pool spinlock at boot - random: unify early init crng load accounting - random: check for crng_init == 0 in add_device_randomness() - random: pull add_hwgenerator_randomness() declaration into random.h - random: clear fast pool, crng, and batches in cpuhp bring up - random: round-robin registers as ulong, not u32 - random: only wake up writers after zap if threshold was passed - random: cleanup UUID handling - random: unify cycles_t and jiffies usage and types - random: do crng pre-init loading in worker rather than irq - random: give sysctl_random_min_urandom_seed a more sensible value - random: don't let 644 read-only sysctls be written to - random: replace custom notifier chain with standard one - random: use SipHash as interrupt entropy accumulator - random: make consistent usage of crng_ready() - random: reseed more often immediately after booting - random: check for signal and try earlier when generating entropy - random: skip fast_init if hwrng provides large chunk of entropy - random: treat bootloader trust toggle the same way as cpu trust toggle - random: re-add removed comment about get_random_{u32,u64} reseeding - random: mix build-time latent entropy into pool at init - random: do not split fast init input in add_hwgenerator_randomness() - random: do not allow user to keep crng key around on stack - random: check for signal_pending() outside of need_resched() check - random: check for signals every PAGE_SIZE chunk of /dev/[u]random - random: allow partial reads if later user copies fail - random: make random_get_entropy() return an unsigned long - random: document crng_fast_key_erasure() destination possibility - random: fix sysctl documentation nits - init: call time_init() before rand_initialize() - [s390x] define get_cycles macro for arch-override - [powerpc*] define get_cycles macro for arch-override - timekeeping: Add raw clock fallback for random_get_entropy() - [mips*] use fallback for random_get_entropy() instead of just c0 random - [arm*] use fallback for random_get_entropy() instead of zero - [x86] tsc: Use fallback for random_get_entropy() instead of zero - random: insist on random_get_entropy() existing in order to simplify - random: do not use batches when !crng_ready() - random: use first 128 bits of input as fast init - random: do not pretend to handle premature next security model - random: order timer entropy functions below interrupt functions - random: do not use input pool from hard IRQs - random: help compiler out with fast_mix() by using simpler arguments - siphash: use one source of truth for siphash permutations - random: use symbolic constants for crng_init states - random: avoid initializing twice in credit race - random: move initialization out of reseeding hot path - random: remove ratelimiting for in-kernel unseeded randomness - random: use proper jiffies comparison macro - random: handle latent entropy and command line from random_init() - random: credit architectural init the exact amount - random: use static branch for crng_ready() - random: remove extern from functions in header - random: use proper return types on get_random_{int,long}_wait() - random: make consistent use of buf and len - random: move initialization functions out of hot pages - random: move randomize_page() into mm where it belongs - random: unify batched entropy implementations - random: convert to using fops->read_iter() - random: convert to using fops->write_iter() - random: wire up fops->splice_{read,write}_iter() - random: check for signals after page of pool writes - ALSA: ctxfi: Add SB046x PCI ID https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.120 - percpu_ref_init(): clean ->percpu_count_ref on failure - net: af_key: check encryption module availability consistency - nfc: pn533: Fix buggy cleanup order - [armhf] net: ftgmac100: Disable hardware checksum on AST2600 - [x86] i2c: ismt: Provide a DMA buffer for Interrupt Cause Logging - [arm64] drivers: i2c: thunderx: Allow driver to work with ACPI defined TWSI controllers - netfilter: nf_tables: disallow non-stateful expression in sets earlier (CVE-2022-1966) - pipe: make poll_usage boolean and annotate its access - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291) - cfg80211: set custom regdomain after wiphy registration - assoc_array: Fix BUG_ON during garbage collect - io_uring: don't re-import iovecs from callbacks - io_uring: fix using under-expanded iters - xfs: detect overflows in bmbt records - xfs: show the proper user quota options - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks - xfs: fix an ABBA deadlock in xfs_rename - xfs: Fix CIL throttle hang when CIL space used going backwards - exfat: check if cluster num is valid - crypto: drbg - prepare for more fine-grained tracking of seeding state - crypto: drbg - track whether DRBG was seeded with !rng_is_initialized() - crypto: drbg - move dynamic ->reseed_threshold adjustments to __drbg_seed() - crypto: drbg - make reseeding from get_random_bytes() synchronous - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972) - netfilter: conntrack: re-fetch conntrack after insertion - [x86] kvm: Alloc dummy async #PF token outside of raw spinlock - [x86] kvm: use correct GFP flags for preemption disabled - [x86] KVM: x86: avoid calling x86 emulator without a decoded instruction (CVE-2022-1852) - [arm64] crypto: caam - fix i.MX6SX entropy delay value - crypto: ecrdsa - Fix incorrect use of vli_cmp - zsmalloc: fix races between asynchronous zspage free and page migration - Bluetooth: hci_qca: Use del_timer_sync() before freeing - dm integrity: fix error code in dm_integrity_ctr() - dm crypt: make printing of the key constant-time - dm stats: add cond_resched when looping over entries - dm verity: set DM_TARGET_IMMUTABLE feature flag - raid5: introduce MD_BROKEN - HID: multitouch: Add support for Google Whiskers Touchpad - HID: multitouch: add quirks to enable Lenovo X12 trackpoint - tpm: Fix buffer access in tpm2_get_tpm_pt() - docs: submitting-patches: Fix crossref to 'The canonical patch format' - NFS: Memory allocation failures are not server fatal errors - NFSD: Fix possible sleep during nfsd4_release_lockowner() - bpf: Fix potential array overflow in bpf_trampoline_get_progs() - bpf: Enlarge offset check value to INT_MAX in bpf_skb_{load,store}_bytes . [ Salvatore Bonaccorso ] * [rt] Update to 5.10.115-rt67 * Bump ABI to 15 * [rt] Drop "random: Make it work on rt" . [ Mateusz Łukasik ] * [armhf] drivers/thermal: Enable SUN8I_THERMAL as module (Closes: #1007799) linux-signed-i386 (5.10.120+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.120-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.15 linux-signed-i386 (5.10.113+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.113-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.107 - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0" (Closes: #1008299) - xfrm: Check if_id in xfrm_migrate - xfrm: Fix xfrm migrate issues when address family changes - mac80211: refuse aggregations sessions before authorized - [mips64el,mipsel] smp: fill in sibling and core maps earlier - [x86] atm: firestream: check the return value of ioremap() in fs_init() - iwlwifi: don't advertise TWT support - drm/vrr: Set VRR capable prop only if it is attached to connector - nl80211: Update bss channel on channel switch for P2P_CLIENT - sfc: extend the locking on mcdi->seqno https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.108 - [arm64] crypto: qcom-rng - ensure buffer for generate is completely filled - ocfs2: fix crash when initialize filecheck kobj fails - mm: swap: get rid of livelock in swapin readahead - efi: fix return value of __setup handlers - vsock: each transport cycles only on its own sockets - esp6: fix check on ipv6_skip_exthdr's return value - net: phy: marvell: Fix invalid comparison in the resume and suspend functions - net/packet: fix slab-out-of-bounds access in packet_recvmsg() - atm: eni: Add check for dma_map_single - [x86] hv_netvsc: Add check for kvmalloc_array - [armhf] drm/imx: parallel-display: Remove bus flags check in imx_pd_bridge_atomic_check() - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit() - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of - net: phy: mscc: Add MODULE_FIRMWARE macros - bnx2x: fix built-in kernel driver load failure - [arm64] net: bcmgenet: skip invalid partial checksums - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain tc-flower offload - usb: gadget: rndis: prevent integer overflow in rndis_set_response() - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver - usb: usbtmc: Fix bug in pipe direction for control transfers - scsi: mpt3sas: Page fault in reply q processing - Input: aiptek - properly check endpoint type - perf symbols: Fix symbol size calculation condition - net: usb: Correct PHY handling of smsc95xx - net: usb: Correct reset handling of smsc95xx - smsc95xx: Ignore -ENODEV errors when device is unplugged - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.109 - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION (CVE-2022-26490) - net: ipv6: fix skb_over_panic in __ip6_append_data - exfat: avoid incorrectly releasing for root inode - cgroup: Allocate cgroup_file_ctx for kernfs_open_file->priv (CVE-2021-4197) - cgroup: Use open-time cgroup namespace for process migration perm checks (CVE-2021-4197) - cgroup-v1: Correct privileges check in release_agent writes - tpm: Fix error handling in async work - llc: fix netdevice reference leaks in llc_ui_bind() (CVE-2022-28356) - ALSA: oss: Fix PCM OSS buffer allocation overflow - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671 - ALSA: hda/realtek: Add quirk for ASUS GA402 - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent read/write and buffer changes (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls (CVE-2022-1048) - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048) - ALSA: pcm: Add stream lock during PCM reset ioctl operations - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB - ALSA: cmipci: Restore aux vol on suspend/resume - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec - [arm64] drivers: net: xgene: Fix regression in CRC stripping - netfilter: nf_tables: initialize registers in nft_do_chain() (CVE-2022-1016) - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3 - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU - [x86] crypto: qat - disable registration of algorithms - Revert "ath: add support for special 0x0 regulatory domain" - rcu: Don't deboost before reporting expedited quiescent state - mac80211: fix potential double free on mesh join - tpm: use try_get_ops() in tpm-space.c - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620 - llc: only change llc->dev when bind() succeeds https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.110 - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854) - USB: serial: pl2303: add IBM device IDs - USB: serial: simple: add Nokia phone driver - netdevice: add the case if dev is NULL - HID: logitech-dj: add new lightspeed receiver id - xfrm: fix tunnel model fragmentation behavior - virtio_console: break out of buf poll on remove - ethernet: sun: Free the coherent when failing in probing - gpio: Revert regression in sysfs-gpio (gpiolib.c) - spi: Fix invalid sgs value - Revert "gpio: Revert regression in sysfs-gpio (gpiolib.c)" - spi: Fix erroneous sgs value with min_t() - af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register (CVE-2022-1353) - [arm*] iommu/iova: Improve 32-bit free space estimate - tpm: fix reference counting for struct tpm_chip - virtio-blk: Use blk_validate_block_size() to validate block size - USB: usb-storage: Fix use of bitfields for hardware data in ene_ub6250.c - xhci: fix garbage USBSTS being logged in some cases - xhci: fix runtime PM imbalance in USB2 resume - xhci: make xhci_handshake timeout for xhci_reset() adjustable - xhci: fix uninitialized string returned by xhci_decode_ctrl_ctx() - [x86] mei: me: add Alder Lake N device id. - [x86] mei: avoid iterator usage outside of list_for_each_entry - iio: inkern: apply consumer scale on IIO_VAL_INT cases - iio: inkern: apply consumer scale when no channel scale is available - iio: inkern: make a best effort on offset calculation - ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE - KEYS: fix length validation in keyctl_pkey_params_get_2() - Documentation: add link to stable release candidate tree - Documentation: update stable tree link - firmware: stratix10-svc: add missing callback parameter on RSU - SUNRPC: avoid race between mod_timer() and del_timer_sync() - NFSD: prevent underflow in nfssvc_decode_writeargs() - NFSD: prevent integer overflow on 32 bit systems - f2fs: fix to unlock page correctly in error path of is_alive() - f2fs: quota: fix loop condition at f2fs_quota_sync() - f2fs: fix to do sanity check on .cp_pack_total_block_count - [armhf] remoteproc: Fix count check in rproc_coredump_write() - [armhf] pinctrl: samsung: drop pin banks references on error paths - mtd: rawnand: protect access to rawnand devices while in suspend - can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28390) - jffs2: fix use-after-free in jffs2_clear_xattr_subsystem - jffs2: fix memory leak in jffs2_do_mount_fs - jffs2: fix memory leak in jffs2_scan_medium - mm/pages_alloc.c: don't create ZONE_MOVABLE beyond the end of a node - mm: invalidate hwpoison page cache page in fault path - mempolicy: mbind_range() set_policy() after vma_merge() - scsi: libsas: Fix sas_ata_qc_issue() handling of NCQ NON DATA commands - qed: display VF trust config - qed: validate and restrict untrusted VFs vlan promisc mode - Revert "Input: clear BTN_RIGHT/MIDDLE on buttonpads" - cifs: prevent bad output lengths in smb2_ioctl_query_info() - cifs: fix NULL ptr dereference in smb2_ioctl_query_info() (CVE-2022-0168) - [i386] ALSA: cs4236: fix an incorrect NULL check on list iterator - ALSA: hda: Avoid unsol event during RPM suspending - ALSA: pcm: Fix potential AB/BA lock with buffer_mutex and mmap_lock - ALSA: hda/realtek: Fix audio regression on Mi Notebook Pro 2020 - mm: madvise: skip unmapped vma holes passed to process_madvise - mm: madvise: return correct bytes advised with process_madvise - Revert "mm: madvise: skip unmapped vma holes passed to process_madvise" - mm,hwpoison: unmap poisoned page before invalidation - dm integrity: set journal entry unused when shrinking device - drbd: fix potential silent data corruption - can: isotp: sanitize CAN ID checks in isotp_bind() - [powerpc*] kvm: Fix kvm_use_magic_page - udp: call udp_encap_enable for v6 sockets when enabling encap - [arm64] signal: nofpsimd: Do not allocate fp/simd context when not available - ACPI: properties: Consistently return -ENOENT if there are no more references - coredump: Also dump first pages of non-executable ELF libraries - ext4: fix ext4_fc_stats trace point - ext4: fix fs corruption when tring to remove a non-empty directory with IO error - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() (CVE-2022-1198) - block: limit request dispatch loop duration - block: don't merge across cgroup boundaries if blkcg is enabled - drm/edid: check basic audio support on CEA extension block - [armhf] dts: exynos: add missing HDMI supplies on SMDK5250 - [armhf] dts: exynos: add missing HDMI supplies on SMDK5420 - [x86] mgag200 fix memmapsl configuration in GCTL6 register - carl9170: fix missing bit-wise or operator for tx_params - pstore: Don't use semaphores in always-atomic-context code - [x86] thermal: int340x: Increase bitmap size - exec: Force single empty string when argv is empty - crypto: rsa-pkcs1pad - only allow with rsa - crypto: rsa-pkcs1pad - correctly get hash from source scatterlist - crypto: rsa-pkcs1pad - restore signature length check - crypto: rsa-pkcs1pad - fix buffer overread in pkcs1pad_verify_complete() - bcache: fixup multiple threads crash - DEC: Limit PMAX memory probing to R3k systems - brcmfmac: firmware: Allocate space for default boardrev in nvram - brcmfmac: pcie: Release firmwares in the brcmf_pcie_setup error path - brcmfmac: pcie: Replace brcmf_pcie_copy_mem_todev with memcpy_toio - brcmfmac: pcie: Fix crashes due to early IRQs - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - [x86] drm/i915/gem: add missing boundary check in vm_access - PCI: pciehp: Clear cmd_busy bit in polling mode - [arm64] PCI: xgene: Revert "PCI: xgene: Fix IB window setup" - [arm64] regulator: qcom_smd: fix for_each_child.cocci warnings - selinux: check return value of sel_make_avc_files - [arm64] hwrng: cavium - Check health status while reading random data - [arm64] hwrng: cavium - HW_RANDOM_CAVIUM should depend on ARCH_THUNDER - crypto: authenc - Fix sleep in atomic context in decrypt_tail - [x86] thermal: int340x: Check for NULL after calling kmemdup() - [arm64,armhf] spi: tegra114: Add missing IRQ check in tegra_spi_probe - [arm64] mm: avoid fixmap race condition when create pud mapping - audit: log AUDIT_TIME_* records only from rules - spi: pxa2xx-pci: Balance reference count for PCI DMA device - [armhf] hwmon: (pmbus) Add mutex to regulator ops - hwmon: (sch56xx-common) Replace WDOG_ACTIVE with WDOG_HW_RUNNING - nvme: cleanup __nvme_check_ids - block: don't delete queue kobject before its children - PM: hibernate: fix __setup handler error handling - PM: suspend: fix return value of __setup handler - [arm64] crypto: sun8i-ce - call finalize with bh disabled - [arm64,armhf] crypto: amlogic - call finalize with bh disabled - [armhf] clocksource/drivers/timer-ti-dm: Fix regression from errata i940 fix - [armhf] clocksource/drivers/exynos_mct: Refactor resources allocation - [armhf] clocksource/drivers/exynos_mct: Handle DTS with higher number of interrupts - clocksource/drivers/timer-of: Check return value of of_iomap in timer_of_base_init() - ACPI: APEI: fix return value of __setup handlers - [x86] crypto: ccp - ccp_dmaengine_unregister release dma channels - [arm*] amba: Make the remove callback return void - [armhf] hwmon: (pmbus) Add Vin unit off handling - [x86] clocksource: acpi_pm: fix return value of __setup handler - io_uring: terminate manual loop iterator loop correctly for non-vecs - watch_queue: Fix NULL dereference in error cleanup - watch_queue: Actually free the watch - f2fs: fix to enable ATGC correctly via gc_idle sysfs interface - sched/debug: Remove mpol_get/put and task_lock/unlock from sched_show_numa - sched/core: Export pelt_thermal_tp - rseq: Optimise rseq_get_rseq_cs() and clear_rseq_cs() - rseq: Remove broken uapi field layout on 32-bit little endian - perf/core: Fix address filter parser for multiple filters - [x86] perf/x86/intel/pt: Fix address filter config for 32-bit kernel - f2fs: fix missing free nid in f2fs_handle_failed_inode - nfsd: more robust allocation failure handling in nfsd_file_cache_init - f2fs: fix to avoid potential deadlock - btrfs: fix unexpected error path when reflinking an inline extent - f2fs: compress: remove unneeded read when rewrite whole cluster - f2fs: fix compressed file start atomic write may cause data corruption - [arm64,armhf] media: v4l2-mem2mem: Apply DST_QUEUE_OFF_BASE on MMAP buffers across ioctls - media: bttv: fix WARNING regression on tunerless devices - [arm*] ASoC: generic: simple-card-utils: remove useless assignment - [armhf] media: coda: Fix missing put_device() call in coda_get_vdoa_data - [armhf] media: aspeed: Correct value for h-total-pixels - video: fbdev: matroxfb: set maxvram of vbG200eW to the same as vbG200 to avoid black screen - video: fbdev: smscufx: Fix null-ptr-deref in ufx_usb_probe() - video: fbdev: fbcvt.c: fix printing in fb_cvt_print_name() - [arm64] firmware: qcom: scm: Remove reassignment to desc following initializer - firmware: ti_sci: Fix compilation failure when CONFIG_TI_SCI_PROTOCOL is not defined - [armhf] dts: imx: Add missing LVDS decoder on M53Menlo - media: em28xx: initialize refcount before kref_get - media: usb: go7007: s2250-board: fix leak in probe() - [arm64,armhf] media: cedrus: H265: Fix neighbour info buffer size - [arm64,armhf] media: cedrus: h264: Fix neighbour info buffer size - [x86] ASoC: rt5663: check the return value of devm_kzalloc() in rt5663_parse_dp() - printk: fix return value of printk.devkmsg __setup handler - [x86] ASoC: soc-compress: prevent the potentially use of null pointer - [armhf] memory: emif: Add check for setup_interrupts - [armhf] memory: emif: check the pointer temp in get_device_details() - ALSA: firewire-lib: fix uninitialized flag for AV/C deferred transaction - [arm64] dts: rockchip: Fix SDIO regulator supply properties on rk3399-firefly - media: stk1160: If start stream fails, return buffers with VB2_BUF_STATE_QUEUED - media: saa7134: convert list_for_each to entry variant - media: saa7134: fix incorrect use to determine if list is empty - ivtv: fix incorrect device_caps for ivtvfb - [arm64,armhf] ASoC: rockchip: i2s: Use devm_platform_get_and_ioremap_resource() - [arm64,armhf] ASoC: rockchip: i2s: Fix missing clk_disable_unprepare() in rockchip_i2s_probe - ASoC: dmaengine: do not use a NULL prepare_slave_config() callback - [armhf] ASoC: fsl_spdif: Disable TX clock when stop - [armhf] ASoC: imx-es8328: Fix error return code in imx_es8328_probe() - [arm64] drm/meson: osd_afbcd: Add an exit callback to struct meson_afbcd_ops - [arm64,armhf] drm/bridge: Add missing pm_runtime_disable() in __dw_mipi_dsi_probe - [arm64] drm: bridge: adv7511: Fix ADV7535 HPD enablement - ath10k: fix memory overwrite of the WoWLAN wakeup packet pattern - [arm64,armhf] drm/panfrost: Check for error num after setting mask - Bluetooth: hci_serdev: call init_rwsem() before p->open() - [armhf] mtd: rawnand: gpmi: fix controller timings setting - drm/edid: Don't clear formats if using deep color - drm/nouveau/acr: Fix undefined behavior in nvkm_acr_hsfw_load_bl() - drm/amd/display: Fix a NULL pointer dereference in amdgpu_dm_connector_add_common_modes() - drm/amd/pm: return -ENOTSUPP if there is no get_dpm_ultimate_freq function - ath9k_htc: fix uninit value bugs - RDMA/core: Set MR type in ib_reg_user_mr - [powerpc*] KVM: PPC: Fix vmx/vsx mixup in mmio emulation - i40e: don't reserve excessive XDP_PACKET_HEADROOM on XSK Rx to skb - i40e: respect metadata on XSK Rx to skb - [x86] ray_cs: Check ioremap return value - [powerpc*] KVM: PPC: Book3S HV: Check return value of kvmppc_radix_init - [powerpc*] perf: Don't use perf_hw_context for trace IMC PMU - [arm64,armhf] net: dsa: mv88e6xxx: Enable port policy support on 6097 - [arm64] PCI: aardvark: Fix reading PCI_EXP_RTSTA_PME bit on emulated bridge - [arm64,armhf] drm/bridge: dw-hdmi: use safe format when first in bridge chain - HID: i2c-hid: fix GET/SET_REPORT for unnumbered reports - drm/amd/pm: enable pm sysfs write for one VF mode - drm/amd/display: Add affected crtcs to atomic state for dsc mst unplug - IB/cma: Allow XRC INI QPs to set their local ACK timeout - dax: make sure inodes are flushed before destroy cache - iwlwifi: Fix -EIO error code that is never returned - iwlwifi: mvm: Fix an error code in iwl_mvm_up() - [arm64] drm/msm/dp: populate connector of struct dp_panel - [arm64] drm/msm/dpu: add DSPP blocks teardown - [arm64] drm/msm/dpu: fix dp audio condition - scsi: pm8001: Fix command initialization in pm80XX_send_read_log() - scsi: pm8001: Fix command initialization in pm8001_chip_ssp_tm_req() - scsi: pm8001: Fix payload initialization in pm80xx_set_thermal_config() - scsi: pm8001: Fix le32 values handling in pm80xx_set_sas_protocol_timer_config() - scsi: pm8001: Fix payload initialization in pm80xx_encrypt_update() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_ssp_io_req() - scsi: pm8001: Fix le32 values handling in pm80xx_chip_sata_req() - scsi: pm8001: Fix NCQ NON DATA command task initialization - scsi: pm8001: Fix NCQ NON DATA command completion handling - scsi: pm8001: Fix abort all task initialization - RDMA/mlx5: Fix the flow of a miss in the allocation of a cache ODP MR - drm/amd/display: Remove vupdate_int_entry definition - TOMOYO: fix __setup handlers return values - [arm64,armhf] drm/tegra: Fix reference leak in tegra_dsi_ganged_probe - [x86] power: supply: bq24190_charger: Fix bq24190_vbus_is_enabled() wrong false return - [arm64] scsi: hisi_sas: Change permission of parameter prot_mask - [arm64] bpf, arm64: Call build_prologue() first in first JIT pass - [arm64] bpf, arm64: Feed byte-offset into bpf line info - [arm64,armhf] gpu: host1x: Fix a memory leak in 'host1x_remove()' - [powerpc*] mm/numa: skip NUMA_NO_NODE onlining in parse_numa_properties() - [x86] KVM: x86: Fix emulation in writing cr8 - [x86] KVM: x86/emulator: Defer not-present segment check in __load_segment_descriptor() - [x86] hv_balloon: rate-limit "Unhandled message" warning - [amd64] IB/hfi1: Allow larger MTU without AIP - PCI: Reduce warnings on possible RW1C corruption - [armhf] mfd: mc13xxx: Add check for mc13xxx_irq_request - [x86] platform/x86: huawei-wmi: check the return value of device_create_file() - vxcan: enable local echo for sent CAN frames - ath10k: Fix error handling in ath10k_setup_msa_resources - [mips*] pgalloc: fix memory leak caused by pgd_free() - RDMA/mlx5: Fix memory leak in error flow for subscribe event routine - bpf, sockmap: Fix memleak in tcp_bpf_sendmsg while sk msg is full - bpf, sockmap: Fix more uncharged while msg has more_data - bpf, sockmap: Fix double uncharge the mem of sk_msg - USB: storage: ums-realtek: fix error code in rts51x_read_mem() - can: isotp: return -EADDRNOTAVAIL when reading from unbound socket - can: isotp: support MSG_TRUNC flag when reading from socket - Bluetooth: call hci_le_conn_failed with hdev lock in hci_le_conn_failed - ipv4: Fix route lookups when handling ICMP redirects and PMTU updates - af_netlink: Fix shift out of bounds in group mask calculation - [arm64,armhf] i2c: meson: Fix wrong speed use from probe - PCI: Avoid broken MSI on SB600 USB devices - [arm64] net: bcmgenet: Use stronger register read/writes to assure ordering - tcp: ensure PMTU updates are processed during fastopen - openvswitch: always update flow key after nat - tipc: fix the timer expires after interval 100ms - [x86] mxser: fix xmit_buf leak in activate when LSR == 0xff - [armhf] fsi: aspeed: convert to devm_platform_ioremap_resource - [armhf] fsi: Aspeed: Fix a potential double free - soundwire: intel: fix wrong register name in intel_shim_wake - iio: mma8452: Fix probe failing when an i2c_device_id is used - [arm64,armhf] phy: dphy: Correct lpx parameter and its derivatives(ta_{get,go,sure}) - [x86] serial: 8250_mid: Balance reference count for PCI DMA device - [x86] serial: 8250_lpss: Balance reference count for PCI DMA device - NFS: Use of mapping_set_error() results in spurious errors - serial: 8250: Fix race condition in RTS-after-send handling - NFS: Return valid errors from nfs2/3_decode_dirent() - [arm64] clk: qcom: clk-rcg2: Update logic to calculate D value for RCG - [arm64] clk: qcom: clk-rcg2: Update the frac table for pixel clock - nvdimm/region: Fix default alignment for small regions - [armhf] clk: tegra: tegra124-emc: Fix missing put_device() call in emc_ensure_emc_driver - NFS: remove unneeded check in decode_devicenotify_args() - [arm64,armhf] pinctrl/rockchip: Add missing of_node_put() in rockchip_pinctrl_probe - [s390x] tty: hvc: fix return value of __setup handler - serial: 8250: fix XOFF/XON sending when DMA is used - driver core: dd: fix return value of __setup handler - jfs: fix divide error in dbNextAG - netfilter: nf_conntrack_tcp: preserve liberal flag in tcp options - NFSv4.1: don't retry BIND_CONN_TO_SESSION on session error - kdb: Fix the putarea helper function - clk: Initialize orphan req_rate - [amd64] xen: fix is_xen_pmu() - [arm64] net: enetc: report software timestamping via SO_TIMESTAMPING - [arm64] net: hns3: fix bug when PF set the duplicate MAC address for VFs - net: phy: broadcom: Fix brcm_fet_config_init() - NFSv4/pNFS: Fix another issue with a list iterator pointing to the head - [armhf] net: dsa: bcm_sf2_cfp: fix an incorrect NULL check on list iterator - fs: fd tables have to be multiples of BITS_PER_LONG - fs: fix fd table size alignment properly - LSM: general protection fault in legacy_parse_param - block, bfq: don't move oom_bfqq - selinux: use correct type for context length - selinux: allow FIOCLEX and FIONCLEX with policy capability - loop: use sysfs_emit() in the sysfs xxx show() - Fix incorrect type in assignment of ipv6 port for audit - fs/binfmt_elf: Fix AT_PHDR for unusual ELF files - bfq: fix use-after-free in bfq_dispatch_request - ACPICA: Avoid walking the ACPI Namespace if it is not there - Revert "Revert "block, bfq: honor already-setup queue merges"" - ACPI/APEI: Limit printable size of BERT table data - PM: core: keep irq flags in device_pm_check_callbacks() - nvme-tcp: lockdep: annotate in-kernel sockets - [arm64] spi: tegra20: Use of_device_get_match_data() - ext4: correct cluster len and clusters changed accounting in ext4_mb_mark_bb - ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit - ext4: don't BUG if someone dirty pages without asking ext4 first - f2fs: fix to do sanity check on curseg->alloc_type - NFSD: Fix nfsd_breaker_owns_lease() return values - f2fs: compress: fix to print raw data size in error path of lz4 decompression - video: fbdev: cirrusfb: check pixclock to avoid divide by zero - [armel,armhf] ftrace: avoid redundant loads or clobbering IP - video: fbdev: udlfb: replace snprintf in show functions with sysfs_emit - ASoC: soc-core: skip zero num_dai component in searching dai name - media: cx88-mpeg: clear interrupt status register before streaming video - uaccess: fix type mismatch warnings from access_ok() - media: Revert "media: em28xx: add missing em28xx_close_extension" - media: hdpvr: initialize dev->worker at hdpvr_register_videodev - mmc: host: Return an error when ->enable_sdio_irq() ops is missing - ALSA: hda/realtek: Add alc256-samsung-headphone fixup - [x86] KVM: x86/mmu: Check for present SPTE when clearing dirty bit in TDP MMU - [powerpc*] lib/sstep: Fix 'sthcx' instruction - [powerpc*] lib/sstep: Fix build errors with newer binutils - scsi: qla2xxx: Fix stuck session in gpdb - scsi: qla2xxx: Fix scheduling while atomic - scsi: qla2xxx: Fix wrong FDMI data for 64G adapter - scsi: qla2xxx: Fix warning for missing error code - scsi: qla2xxx: Fix device reconnect in loop topology - scsi: qla2xxx: Add devids and conditionals for 28xx - scsi: qla2xxx: Check for firmware dump already collected - scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair() - scsi: qla2xxx: Fix disk failure to rediscover - scsi: qla2xxx: Fix incorrect reporting of task management failure - scsi: qla2xxx: Fix hang due to session stuck - scsi: qla2xxx: Fix missed DMA unmap for NVMe ls requests - scsi: qla2xxx: Fix N2N inconsistent PLOGI - scsi: qla2xxx: Reduce false trigger to login - scsi: qla2xxx: Use correct feature type field during RFF_ID processing - [arm64] platform: chrome: Split trace include file - [x86] KVM: x86: Forbid VMM to set SYNIC/STIMER MSRs when SynIC wasn't activated - KVM: Prevent module exit until all VMs are freed - [x86] KVM: x86: fix sending PV IPI - [x86] KVM: SVM: fix panic on out-of-bounds guest IRQ - [x86] ASoC: SOF: Intel: Fix NULL ptr dereference when ENOMEM - ubifs: rename_whiteout: Fix double free for whiteout_ui->data - ubifs: Fix deadlock in concurrent rename whiteout and inode writeback - ubifs: Add missing iput if do_tmpfile() failed in rename whiteout - ubifs: setflags: Make dirtied_ino_d 8 bytes aligned - ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock() - ubifs: Fix to add refcount once page is set private - ubifs: rename_whiteout: correct old_dir size computing - wireguard: queueing: use CFI-safe ptr_ring cleanup function - wireguard: socket: free skb in send6 when ipv6 is disabled - wireguard: socket: ignore v6 endpoints when ipv6 is disabled - XArray: Fix xas_create_range() when multi-order entry present - can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path (CVE-2022-28389) - can: mcba_usb: properly check endpoint type - XArray: Update the LRU list in xas_split() - rtc: check if __rtc_read_time was successful - gfs2: Make sure FITRIM minlen is rounded up to fs block size - [arm64] net: hns3: fix software vlan talbe of vlan 0 inconsistent with hardware - rxrpc: Fix call timer start racing with call destruction - [arm64] mailbox: imx: fix wakeup failure from freeze mode - watch_queue: Free the page array when watch_queue is dismantled - pinctrl: pinconf-generic: Print arguments for bias-pull-* - ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl - [arm*] iop32x: offset IRQ numbers by 1 - io_uring: fix memory leak of uid in files registration - [amd64,arm64] ACPI: CPPC: Avoid out of bounds access when parsing _CPC data - [arm64] platform/chrome: cros_ec_typec: Check for EC device - can: isotp: restore accidentally removed MSG_PEEK feature - proc: bootconfig: Add null pointer check - [x86] ASoC: soc-compress: Change the check for codec_dai - batman-adv: Check ptr for NULL before reducing its refcnt - mm/mmap: return 1 from stack_guard_gap __setup() handler - mm/memcontrol: return 1 from cgroup.memory __setup() handler - mm/usercopy: return 1 from hardened_usercopy __setup() handler - bpf: Adjust BPF stack helper functions to accommodate skip > 0 - bpf: Fix comment for helper bpf_current_task_under_cgroup() - dt-bindings: mtd: nand-controller: Fix the reg property description - dt-bindings: mtd: nand-controller: Fix a comment in the examples - dt-bindings: spi: mxic: The interrupt property is not mandatory - [x86] ASoC: topology: Allow TLV control to be either read or write - docs: sysctl/kernel: add missing bit to panic_print - openvswitch: Fixed nd target mask field in the flow dump. - [x86] KVM: x86/mmu: do compare-and-exchange of gPTE via the user address (CVE-2022-1158) - can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path (CVE-2022-28388) - coredump: Snapshot the vmas in do_coredump - coredump: Remove the WARN_ON in dump_vma_snapshot - coredump/elf: Pass coredump_params into fill_note_info - coredump: Use the vma snapshot in fill_files_note - [arm64] Do not defer reserve_crashkernel() for platforms with no DMA memory zones - [arm64] PCI: xgene: Revert "PCI: xgene: Use inbound resources for setup" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.111 - ubifs: Rectify space amount budget for mkdir/tmpfile operations - gfs2: Check for active reservation in gfs2_release - gfs2: Fix gfs2_release for non-writers regression - gfs2: gfs2_setattr_size error path fix - [x86] KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs - [x86] KVM: x86/emulator: Emulate RDPID only if it is enabled in guest - drm: Add orientation quirk for GPD Win Max - ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111 - drm/amd/display: Add signal type check when verify stream backends same - drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj - ptp: replace snprintf with sysfs_emit - [armhf] ath11k: fix kernel panic during unload/load ath11k modules - ath11k: mhi: use mhi_sync_power_up() - bpf: Make dst_port field in struct bpf_sock 16-bit wide - scsi: mvsas: Replace snprintf() with sysfs_emit() - scsi: bfa: Replace snprintf() with sysfs_emit() - [arm64,armhf] power: supply: axp20x_battery: properly report current when discharging - mt76: dma: initialize skip_unmap in mt76_dma_rx_fill - cfg80211: don't add non transmitted BSS to 6GHz scanned channels - ipv6: make mc_forwarding atomic - [powerpc*] Set crashkernel offset to mid of RMA region - drm/amdgpu: Fix recursive locking warning - [arm64] PCI: aardvark: Fix support for MSI interrupts - [arm64] iommu/arm-smmu-v3: fix event handling soft lockup - usb: ehci: add pci device support for Aspeed platforms - tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH. - PCI: pciehp: Add Qualcomm quirk for Command Completed erratum - iwlwifi: mvm: Correctly set fragmented EBS - ipv4: Invalidate neighbour for broadcast address upon address addition - dm ioctl: prevent potential spectre v1 gadget - dm: requeue IO if mapping table not yet available - scsi: pm8001: Fix pm80xx_pci_mem_copy() interface - scsi: pm8001: Fix pm8001_mpi_task_abort_resp() - scsi: pm8001: Fix task leak in pm8001_send_abort_all() - scsi: pm8001: Fix tag leaks on error - scsi: pm8001: Fix memory leak in pm8001_chip_fw_flash_update_req() - scsi: aha152x: Fix aha152x_setup() __setup handler return value - [arm64] scsi: hisi_sas: Free irq vectors in order for v3 HW - net/smc: correct settings of RMB window update limit - macvtap: advertise link netns via netlink - tuntap: add sanity checks about msg_controllen in sendmsg - Bluetooth: Fix not checking for valid hdev on bt_dev_{info,warn,err,dbg} - Bluetooth: use memset avoid memory leaks - bnxt_en: Eliminate unintended link toggle during FW reset - [mps64el,mipsel] fix fortify panic when copying asm exception handlers - scsi: libfc: Fix use after free in fc_exch_abts_resp() - can: isotp: set default value for N_As to 50 micro seconds - net: account alternate interface name memory - net: limit altnames to 64k total - net: sfp: add 2500base-X quirk for Lantech SFP module - [armhf] usb: dwc3: omap: fix "unbalanced disables for smps10_out1" on omap5evm - Bluetooth: Fix use after free in hci_send_acl - netlabel: fix out-of-bounds memory accesses - ceph: fix memory leak in ceph_readdir when note_last_dentry returns error - init/main.c: return 1 from handled __setup() functions - minix: fix bug when opening a file with O_DIRECT - [arm*] staging: vchiq_core: handle NULL result of find_service_by_handle - [arm64,armhf] phy: amlogic: meson8b-usb2: Use dev_err_probe() - w1: w1_therm: fixes w1_seq for ds28ea00 sensors - NFSv4.2: fix reference count leaks in _nfs42_proc_copy_notify() - NFSv4: Protect the state recovery thread against direct reclaim - xen: delay xen_hvm_init_time_ops() if kdump is boot on vcpu>=32 - [armhf] clk: ti: Preserve node in ti_dt_clocks_register() - clk: Enforce that disjoints limits are invalid - SUNRPC/call_alloc: async tasks mustn't block waiting for memory - SUNRPC/xprt: async tasks mustn't block waiting for memory - SUNRPC: remove scheduling boost for "SWAPPER" tasks. - NFS: swap IO handling is slightly different for O_DIRECT IO - NFS: swap-out must always use STABLE writes. - [armhf] serial: samsung_tty: do not unlock port->lock for uart_write_wakeup() - virtio_console: eliminate anonymous module_init & module_exit - jfs: prevent NULL deref in diFree - SUNRPC: Fix socket waits for write buffer space - NFS: nfsiod should not block forever in mempool_alloc() - NFS: Avoid writeback threads getting stuck in mempool_alloc() - mm: fix race between MADV_FREE reclaim and blkdev direct IO read - drm/amdgpu: fix off by one in amdgpu_gfx_kiq_acquire() - [x86] Drivers: hv: vmbus: Fix potential crash on module unload - Revert "NFSv4: Handle the special Linux file open access mode" - NFSv4: fix open failure with O_ACCMODE flag - ice: Clear default forwarding VSI during VSI release - net: ipv4: fix route with nexthop object delete warning - net: stmmac: Fix unset max_speed difference between DT and non-DT platforms - [armhf] drm/imx: imx-ldb: Check for null pointer after calling kmemdup - [armhf] drm/imx: Fix memory leak in imx_pd_connector_get_modes - sfc: Do not free an empty page_ring - RDMA/mlx5: Don't remove cache MRs when a delay is needed - [amd64] IB/rdmavt: add lock to call to rvt_error_qp to prevent a race condition - [arm64] dpaa2-ptp: Fix refcount leak in dpaa2_ptp_probe - ice: Set txq_teid to ICE_INVAL_TEID on ring creation - ice: Do not skip not enabled queues in ice_vc_dis_qs_msg - ipv6: Fix stats accounting in ip6_pkt_drop - ice: synchronize_rcu() when terminating rings - net: openvswitch: don't send internal clone attribute to the userspace. - net: openvswitch: fix leak of nested actions - rxrpc: fix a race in rxrpc_exit_net() - qede: confirm skb is allocated before using - bpf: Support dual-stack sockets in bpf_tcp_check_syncookie - drbd: Fix five use after free bugs in get_initial_state - io_uring: don't touch scm_fp_list after queueing skb - SUNRPC: Handle ENOMEM in call_transmit_status() - SUNRPC: Handle low memory situations in call_status() - SUNRPC: svc_tcp_sendmsg() should handle errors from xdr_alloc_bvec() - [armhf] iommu/omap: Fix regression in probe for NULL pointer dereference - [arm64] Add part number for Arm Cortex-A78AE - [arm64] Revert "mmc: sdhci-xenon: fix annoying 1.8V regulator warning" - [arm64,armhf] mmc: mmci: stm32: correctly check all elements of sg list - lz4: fix LZ4_decompress_safe_partial read out of bound - mmmremap.c: avoid pointless invalidate_range_start/end on mremap(old_size=0) - mm/mempolicy: fix mpol_new leak in shared_policy_replace - io_uring: fix race between timeout flush and removal (CVE-2022-29582) - [x86] pm: Save the MSR validity status at context setup - [x86] speculation: Restore speculation related MSRs during S3 resume - btrfs: fix qgroup reserve overflow the qgroup limit - btrfs: prevent subvol with swapfile from being deleted - [arm64] patch_text: Fixup last cpu should be master - [amd64] RDMA/hfi1: Fix use-after-free bug for mm struct - gpio: Restrict usage of GPIO chip irq members before initialization - [arm64] perf: qcom_l2_pmu: fix an incorrect NULL check on list iterator - [arm64,armhf] irqchip/gic-v3: Fix GICR_CTLR.RWP polling - drm/nouveau/pmu: Add missing callbacks for Tegra devices - mm: don't skip swap entry even if zap_details specified - cgroup: Use open-time credentials for process migraton perm checks (CVE-2021-4197) - [x86] Drivers: hv: vmbus: Replace smp_store_mb() with virt_store_mb() - [arm64,armhf] irqchip/gic, gic-v3: Prevent GSI to SGI translations - [powerpc*] Fix virt_addr_valid() for 64-bit Book3E & 32-bit https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.112 - [amd64] drm/amdkfd: Use drm_priv to pass VM from KFD to amdgpu - hamradio: defer 6pack kfree after unregister_netdev (CVE-2022-1195) - hamradio: remove needs_free_netdev to avoid UAF (CVE-2022-1195) - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the function - ACPI: processor idle: Check for architectural support for LPI - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups() - [arm64] drm/msm: Add missing put_task_struct() in debugfs path - SUNRPC: Fix the svc_deferred_event trace class - net/sched: flower: fix parsing of ethertype following VLAN header - veth: Ensure eth header is in skb's linear part - gpiolib: acpi: use correct format characters - net: mdio: Alphabetically sort header inclusion - net/sched: fix initialization order when updating chain 0 head - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a fixed-link - net/sched: taprio: Check if socket flags are valid - cfg80211: hold bss_lock while updating nontrans_list - [arm64] drm/msm: Fix range size vs end confusion - [arm64] drm/msm/dsi: Use connector directly in msm_dsi_manager_connector_init() - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib() - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63 - scsi: pm80xx: Enable upper inbound, outbound queues - scsi: iscsi: Stop queueing during ep_disconnect - scsi: iscsi: Force immediate failure during shutdown - scsi: iscsi: Use system_unbound_wq for destroy_work - scsi: iscsi: Rel ref after iscsi_lookup_endpoint() - scsi: iscsi: Fix in-kernel conn failure handling - scsi: iscsi: Move iscsi_ep_disconnect() - scsi: iscsi: Fix offload conn cleanup when iscsid restarts - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart - sctp: Initialize daddr on peeled off socket - cifs: potential buffer overflow in handling symlinks - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure ordering" - drm/amd: Add USBC connector ID - btrfs: fix fallocate to use file_modified to update permissions consistently - btrfs: do not warn for free space inode in cow_file_range - drm/amd/display: fix audio format not updated after edid updated - drm/amd/display: FEC check in timing validation - drm/amd/display: Update VTEM Infopacket definition - drm/amdkfd: Fix Incorrect VMIDs passed to HWS - drm/amdgpu/vcn: improve vcn dpg stop procedure - [x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring buffer - scsi: target: tcmu: Fix possible page UAF - scsi: lpfc: Fix queue failures when recovering from PCI parity error - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024 - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output - [arm64] alternatives: mark patch_alternative() as `noinstr` - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso - drm/amd/display: Revert FEC check in validation - drm/amd/display: Fix allocate_mst_payload assert on resume - scsi: mvsas: Add PCI ID of RocketRaid 2640 - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan - drivers: net: slip: fix NPD bug in sl_tx_timeout() - mm, page_alloc: fix build_zonerefs_node() - mm: fix unexpected zeroed page mapping with zram swap - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded - ath9k: Properly clear TX status area before reporting to mac80211 - ath9k: Fix usage of driver-private space in tx_info - btrfs: fix root ref counts in error handling in btrfs_get_root_ref - btrfs: mark resumed async balance as writing - ALSA: hda/realtek: Add quirk for Clevo PD50PNT - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers - ALSA: pcm: Test for "silence" field in struct "pcm_format_data" - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size - ipv6: fix panic when forwarding a pkt with no in6 dev - drm/amd/display: don't ignore alpha property on pre-multiplied mode - drm/amdgpu: Enable gfxoff quirk on MacBook Pro - genirq/affinity: Consider that CPUs on nodes can be unbalanced - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation - dm integrity: fix memory corruption when tag_size is less than digest size - smp: Fix offline cpu check in flush_smp_call_function_queue() - timers: Fix warning condition in __run_timers() - dma-direct: avoid redundant memory sync for swiotlb - scsi: iscsi: Fix endpoint reuse regression - scsi: iscsi: Fix unbound endpoint error handling - ax25: add refcount in ax25_dev to avoid UAF bugs (CVE-2022-1204) - ax25: fix reference count leaks of ax25_dev (CVE-2022-1204) - ax25: fix UAF bugs of net_device caused by rebinding operation (CVE-2022-1204) - ax25: Fix refcount leaks caused by ax25_cb_del() (CVE-2022-1204) - ax25: fix UAF bug in ax25_send_control() - ax25: fix NPD bug in ax25_disconnect (CVE-2022-1199) - ax25: Fix NULL pointer dereferences in ax25 timers (CVE-2022-1205) - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.113 - tracing: Dump stacktrace trigger to the corresponding instance - gfs2: assign rgrp glock before compute_bitstructs - net/sched: cls_u32: fix netns refcount changes in u32_change() - ALSA: usb-audio: Clear MIDI port active flag after draining - ALSA: hda/realtek: Add quirk for Clevo NP70PNP - dm: fix mempool NULL pointer race when completing IO - [armhf] dmaengine: imx-sdma: Fix error checking in sdma_event_remap - esp: limit skb_page_frag_refill use to a single page - igc: Fix infinite loop in release_swfw_sync - igc: Fix BUG: scheduling while atomic - rxrpc: Restore removed timer deletion - net/smc: Fix sock leak when release after smc_shutdown() - net/packet: fix packet_sock xmit return value checking - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit() - ip6_gre: Fix skb_under_panic in __gre6_xmit() - net/sched: cls_u32: fix possible leak in u32_init_knode() - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu - ipv6: make ip6_rt_gc_expire an atomic_t - netlink: reset network and mac headers in netlink_dump() - net: stmmac: Use readl_poll_timeout_atomic() in atomic state - [arm64] mm: Remove [PUD|PMD]_TABLE_BIT from [pud|pmd]_bad() - [arm64] mm: fix p?d_leaf() - [x86] platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant - vxlan: fix error return code in vxlan_fdb_append - cifs: Check the IOCB_DIRECT flag, not O_DIRECT - [amd64,arm64] net: atlantic: Avoid out-of-bounds indexing - mt76: Fix undefined behavior due to shift overflowing the constant - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant - [arm64] drm/msm/mdp5: check the return of kzalloc() - [arm64] net: macb: Restart tx only if queue pointer is lagging - scsi: qedi: Fix failed disconnect handling - stat: fix inconsistency between struct stat and struct compat_stat - nvme: add a quirk to disable namespace identifiers - nvme-pci: disable namespace identifiers for Qemu controllers - mm, hugetlb: allow for "high" userspace addresses - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove() - ata: pata_marvell: Check the 'bmdma_addr' beforing reading - [amd64,arm64] net: atlantic: invert deep par in pm functions, preventing null derefs - openvswitch: fix OOB access in reserve_sfa_size() - gpio: Request interrupts after IRQ is initialized - ASoC: soc-dapm: fix two incorrect uses of list iterator - e1000e: Fix possible overflow in LTR decoding - [arm*] arm_pmu: Validate single/group leader events - sched/pelt: Fix attach_entity_load_avg() corner case - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised - [arm64,armhf] drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare - [powerpc*] KVM: PPC: Fix TCE handling for VFIO - [arm*] drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage - [powerpc*] perf: Fix power9 event alternatives - ext4: fix fallocate to use file_modified to update permissions consistently - ext4: fix symlink file size not match to file content - ext4: fix use-after-free in ext4_search_dir - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole - ext4, doc: fix incorrect h_reserved size - ext4: fix overhead calculation to account for the reserved gdt blocks - ext4: force overhead calculation if the s_overhead_cluster makes no sense - can: isotp: stop timeout monitoring when no first frame was sent - jbd2: fix a potential race while discarding reserved buffers after an abort - block/compat_ioctl: fix range check in BLKGETSIZE . [ Salvatore Bonaccorso ] * Bump ABI to 14 * [rt] Drop "tcp: Remove superfluous BH-disable around" * [rt] Update "tracing: Merge irqflags + preempt counter." for upstream changes in 5.10.113 * [x86] pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests (Closes: #1006346) * floppy: disable FDRAWCMD by default logrotate (3.18.0-2+deb11u1) bullseye; urgency=medium . * d/patches: cherry-pick upstream fixes: - skip locking if state file is world-readable (CVE-2022-1348) . - more strict configuration parsing to avoid parsing parts of foreign files, e.g. core dumps, (see #1002022) . - do not use incorrect stat information when verifying an olddir configuration after creating the olddir . - advance pointer in full_write on incomplete write to avoid data corruption lrzip (0.641-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Security updates: Two issues that allow remote attackers to cause a denial of service via a crafted lrz file: - CVE-2018-5786: Resolve a potential infinite loop and application hang in the get_fileinfo function. - CVE-2022-26291: Resolve a multiple concurrency use-after-free between the functions zpaq_decompress_buf() and clear_rulist(). A memory corruption issue: - CVE-2022-28044: Resolve a potential heap corruption. lxc (1:4.0.6-2+deb11u1) bullseye; urgency=medium . * lxc-download: Switch GPG server. The default server used to download gpg keys from has been deprecated, and therefore creating containers using the `download` template is now broken. This is fixed with an upstream patch by Stéphane Graber that points to a valid server. (Closes: #991615) minidlna (1.3.0+dfsg-2+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * CVE-2022-26505 Validate HTTP requests to protect against DNS rebinding, thus forbid a remote web server to exfiltrate media files. (Closes: #1006798) mutt (2.0.5-4.1+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Fix uudecode buffer overflow (CVE-2022-1328) (Closes: #1009734) nano (5.4-2+deb11u1) bullseye; urgency=medium . * The "Bueno, de verdad, hasta luego, paso" release. * Add additional patches from Benno Schulenberg with post 5.4 crash, docs and general fixes. * Change debian-branch to bullseye. needrestart (3.5-4+deb11u2) bullseye; urgency=medium . * Add upstream patch 09-cgroupv2 to fix broken detection with cgroupv2. Closes: #1005953 needrestart (3.5-4+deb11u1) bullseye-security; urgency=high . * Add patch 08-anchor-interp-re to fix not anchored regular expressions. This fixes CVE-2022-30688. network-manager (1.30.6-1+deb11u1) bullseye; urgency=medium . * Set debian-branch to debian/bullseye * Revert "supplicant: enable WPA3 for WPA-PSK connections" Enabling WPA3 automatically for key_mgmt=wpa-psk is a change in behaviour which might have unintended side effects and thus not suitable for a stable upload. . network-manager (1.30.6-1) unstable; urgency=medium . * New upstream version 1.30.6 * Rebase patches network-manager (1.30.6-1) unstable; urgency=medium . * New upstream version 1.30.6 * Rebase patches nginx (1.18.0-6.1+deb11u2) bullseye; urgency=medium . * d/patches/CVE-2021-3618.patch: Include upstream changeset from NGINX that adds mitigations into the Mail module for CVE-2021-3618.patch. (Closes: #991328) nginx (1.18.0-6.1+deb11u1) bullseye; urgency=medium . * Backport upstream bugfix for segfault in nginx core >= 1.15.0 when libnginx-mod-http-lua is loaded and init_worker_by_lua* is used. (Closes: #994178) node-ejs (2.5.7-3+deb11u1) bullseye; urgency=medium . * Team upload * Sanitize options and new objects (Closes: #1010359, CVE-2022-29078) node-eventsource (1.0.7-1+deb11u1) bullseye; urgency=medium . * Team upload * Strip sensitive headers on redirect to different origin (Closes: CVE-2022-1650) node-got (11.8.1+~cs53.13.17-3+deb11u1) bullseye; urgency=medium . * Team upload * Don't allow redirection to Unix socket (Closes: #1013264, CVE-2022-33987) node-mermaid (8.7.0+ds+~cs27.17.17-3+deb11u2) bullseye; urgency=medium . * Team upload * Fix for XSS vulnerability in url sanitization (Closes: CVE-2021-43861) node-mermaid (8.7.0+ds+~cs27.17.17-3+deb11u1) bullseye; urgency=medium . * Decode html entities before sanitizing (Closes: CVE-2021-23648) node-minimist (1.2.5+~cs5.3.1-2+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: CVE-2021-44906) node-moment (2.29.1+ds-2+deb11u1) bullseye; urgency=medium . * Avoid loading path-looking locales from fs (Closes: #1009327, CVE-2022-24785) node-node-forge (0.10.0~dfsg-3+deb11u1) bullseye; urgency=medium . * Team upload * Fix signature verification (Closes: CVE-2022-24771, CVE-2022-24772, CVE-2022-24773) node-raw-body (2.4.1-2+deb11u1) bullseye; urgency=medium . * Team upload * Drop use-iconv-not-lite.patch, fixes node-express potential DoS node-sqlite3 (5.0.0+ds1-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix denial-of-service (Closes: CVE-2022-21227) node-url-parse (1.5.3-1+deb11u1) bullseye; urgency=medium . * Team upload * Handle the case where the port is specified but empty (Closes: CVE-2022-0686) * Strip all control characters from the beginning of the URL (Closes: CVE-2022-0691) ntfs-3g (1:2017.3.23AR.3-4+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix multiple issues (Closes: #1011770) - Used a default usn when the former one cannot be retrieved (CVE-2022-30788) - Made sure there is no null character in an attribute name (CVE-2022-30786) - Avoided allocating and reading an attribute beyond its full size (CVE-2022-30784) - Made sure the client log data does not overflow from restart page (CVE-2022-30789) - Made sure there is no null character in an attribute name (bis) (CVE-2022-30786) - Fixed possible out-of-buffer condition in ntfsck (CVE-2021-46790) - Fixed operation on little endian data (CVE-2022-30788) - Returned an error code when the --help or --version options are used (CVE-2022-30783) - Hardened the checking of directory offset requested by a readdir (CVE-2022-30785, CVE-2022-30787) nvidia-cuda-toolkit (11.2.2-3+deb11u3) bullseye; urgency=medium . * Fix nvidia-openjdk-8-jre version ordering. * Drop autopkgtest again, it may exceed ci-worker resources while unpacking the source package. An equivalent test has been added to src:pycuda (sid). nvidia-cuda-toolkit (11.2.2-3+deb11u3~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-cuda-toolkit (11.2.2-3+deb11u3) bullseye; urgency=medium . * Fix nvidia-openjdk-8-jre version ordering. * Drop autopkgtest again, it may exceed ci-worker resources while unpacking the source package. An equivalent test has been added to src:pycuda (sid). . nvidia-cuda-toolkit (11.2.2-3+deb11u2) bullseye; urgency=medium . * Use a snapshot of openjdk-8-jre (8u332-ga-1~deb9u1) for amd64. * Use a snapshot of openjdk-8-jre (8u302-b08-1) for ppc64el. * Check usability of the java binary. (Closes: #1008591) * nsight-compute: Move the 'sections' folder to a multiarch location. (Closes: #1009719) * Upload to bullseye. nvidia-cuda-toolkit (11.2.2-3+deb11u2) bullseye; urgency=medium . * Use a snapshot of openjdk-8-jre (8u332-ga-1~deb9u1) for amd64. * Use a snapshot of openjdk-8-jre (8u302-b08-1) for ppc64el. * Check usability of the java binary. (Closes: #1008591) * nsight-compute: Move the 'sections' folder to a multiarch location. (Closes: #1009719) * Upload to bullseye. nvidia-graphics-drivers (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.129.06-6) unstable; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. . nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. . nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. . nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. . nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) . nvidia-graphics-drivers (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011140) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. (Closes: #1011183) - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. * Import missing legacy IDs from the 510.* README.txt. The Kepler notebook GPUs seem still supported by the 470.* driver. (Closes: #1011245, #939447, #939067) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers (470.103.01-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. nvidia-graphics-drivers (470.129.06-6~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.129.06-6) unstable; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. . nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. . nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. . nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. . nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) . nvidia-graphics-drivers (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011140) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. (Closes: #1011183) - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. * Import missing legacy IDs from the 510.* README.txt. The Kepler notebook GPUs seem still supported by the 470.* driver. (Closes: #1011245, #939447, #939067) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers (470.103.01-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers (470.103.01-3~deb11u2) bullseye; urgency=medium . * Re-enable building libnvidia-nvvm4. . nvidia-graphics-drivers (470.103.01-3~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. * Temporarily disable building libnvidia-nvvm4 to avoid NEW. . nvidia-graphics-drivers (470.103.01-3) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). * nvidia-detect: Drop support for Tesla 460 drivers (EoL). . nvidia-graphics-drivers (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005311) * nvidia-detect: Add support for (Tesla) 470 drivers in bullseye. . nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added an application profile to avoid an image corruption issue in Blender, as described at https://developer.blender.org/T76874 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. . nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) . nvidia-graphics-drivers (470.82.01-1) UNRELEASED; urgency=medium . * New upstream Tesla release 470.82.01 (2021-11-02). - Fixed a regression which prevented DisplayPort and HDMI 2.1 variable refresh rate (VRR) G-SYNC Compatible monitors from functioning correctly in variable refresh rate mode, resulting in issues such as flickering. . nvidia-graphics-drivers (470.82.00-1) unstable; urgency=medium . * New upstream production branch release 470.82.00 (2021-10-26). - Added support for the following GPUs: Matrox D-Series D2450, Matrox D-Series D2480, NVIDIA A2. - Fixed a bug that can cause a kernel crash in SLI Mosaic configurations. - Added support for the EGL_NV_robustness_video_memory_purge extension * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives. * nvidia-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative. (Closes: #996595) * Fix bashisms in upstream scripts. * Drop the unusable leftover non-GLVND libegl1-nvidia package. (Closes: #996763) * nvidia-alternative: Drop unused non-GLVND slave links. * Restrict watch file to releases from the 470.xx production branch. * Update lintian overrides. . nvidia-graphics-drivers (470.74-1) unstable; urgency=medium . * New upstream production branch release 470.74 (2021-09-20). - Fixed a bug that could cause GPU applications to exit when resuming from suspend. - Fixed a regression which resulted in very-high system memory usage for Direct3D 12 games when run through vkd3d-proton. (Closes: #994942, #995271, #996031, #996164, #996468) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.63.01-1) unstable; urgency=medium . * New upstream production branch release 470.63.01 (2021-08-10). - Added an application profile to disable FXAA for Firefox to prevent visual corruption. - Added support for the VK_KHR_wayland_surface extension. - Fixed a Vulkan performance regression that affected rFactor2. (Closes: #994633) . [ Andreas Beckmann ] * libegl-nvidia0: Ship new library libnvidia-vulkan-producer.so.#VERSION# but do not provide alternatives since it is unclear how this undocumented SONAME-less library is supposed to be used. * Add Build-Depends: libnvidia-egl-wayland1. * nvidia-kernel-support: Restore nvidia-modprobe.conf which might have gone missing due to bugs in debhelper (#994919) and dpkg (#995387). (Closes: #994971) . nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. . nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-graphics-drivers (470.57.02-1) experimental; urgency=medium . * New upstream production branch release 470.57.02 (2021-07-19). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Fixed a bug that could cause flickering in Blender and Steam when running on Xwayland. - Fixed a bug that caused GTK+3 applications using the GtkGLArea class to crash when running on Xwayland. - Added a workaround for DOOM Eternal, which avoids an application bug where Vulkan swapchain recreation events are not properly handled. On desktops like GNOME where the window is initially redirected to the compositor, this may prevent the game from flipping (and thus enabling G-SYNC). - Added a workaround for Far Cry 5 when run through DXVK, which avoids a shader race condition bug that was previously exposed by new compiler optimizations. - Added support for the following GPUs: NVIDIA A100 80GB PCIe, NVIDIA A16, NVIDIA PG506-243, NVIDIA PG506-242, NVIDIA CMP 90HX, NVIDIA CMP 70HX, NVIDIA RTX A2000, NVIDIA T4G. . [ Luca Boccassi ] * Update nv-readme.ids. * Update symbols files. . [ Andreas Beckmann ] * Refresh patches. * libcuda1: Add Provides: libcuda-11.4-1{,-i386}. * nvidia-detect: Add support for Tesla 470 drivers. . nvidia-graphics-drivers (470.42.01-1) experimental; urgency=medium . * New upstream beta 470.42.01 (2021-06-22). - Added support for the following GPUs: A100-PG506-207, A100-PG506-217. - Increased the maximum limit on concurrent OpenGL contexts. This limit was previously constrained by a fixed-size internal driver resource, and is now constrained by available system memory. - Applications that exceed the maximum limit on concurrent OpenGL contexts will now receive a BadAlloc X error rather than crashing. - Fixed a bug that could cause the X server to crash upon shutdown with some configurations using GPU screens. - Fixed a bug that could cause rendering errors when displaying scaled MetaModes using the "Nearest" resampling method. - Fixed a bug that could cause OpenGL applications run in PID namespaces to hang upon exit, generating warnings such as the following in the X log: (WW) NVIDIA: Wait for channel idle timed out. - Added support for PRIME Display Offload where both the display offload source and display offload sink are driven by the NVIDIA X Driver. - Added support for PRIME Display Offload where the display offload source is AMDGPU. - Fixed a bug that could prevent the driver from applying application profiles when running applications through Proton or Wine on a PRIME Render Offload configuration. - Fixed a bug that could cause NvFBC's "direct capture" to crash the X server when certain GLX calls are made during a capture. - Added an NVIDIA NGX build for use with Proton and Wine. A new library, nvngx.dll, has been added to enable driver-side support for running Windows applications which make use of DLSS. Changes to Proton, Wine, and other third-party software are needed for this feature. - Added support for VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT from the VK_EXT_global_priority extension. This enables support for asynchronous reprojection in SteamVR. VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT is supported on Pascal GPUs and newer. Global priorities other than VK_QUEUE_GLOBAL_PRIORITY_MEDIUM_EXT require root privileges or the CAP_SYS_NICE capability. - Added support for the VK_EXT_global_priority_query extension. - Added the nvidia-peermem.ko kernel module. This module provides Mellanox InfiniBand HCAs (Host Channel Adapters) direct peer-to-peer access to NVIDIA GPU memory without need without needing to copy data to host memory. See the chapter "GPUDirect RDMA Peer Memory Client" in the README for details. - Added support for the VK_EXT_provoking_vertex extension. - Initial support for hardware accelerated OpenGL and Vulkan rendering on Xwayland. See the chapter "OpenGL and Vulkan on Xwayland" in the README for details. - Fixed a bug that could cause intermittent corruption in Wolfenstein: Youngblood when using NVIDIA Kepler, Maxwell, Pascal, and Volta GPUs. - Fixed a bug that could cause games running with DXVK to crash with Xid 31 (MMU Fault) errors when using NVIDIA Pascal GPUs. - Added support for the VK_EXT_extended_dynamic_state2 extension. - Added support for the VK_EXT_color_write_enable extension. - Added support for the VK_EXT_vertex_input_dynamic_state extension. - Added support for the VK_EXT_ycbcr_2plane_444_formats extension. - Added support for the VK_NV_inherited_viewport_scissor extension. - NvFBC's "direct capture" mode no longer causes flipping to be disabled for applications being captured. G-SYNC can now also be used simultaneously with NvFBC direct capture. - Deprecated NvIFROpenGL support. Release 470 will be the last to support this functionality. NvIFROpenGL header files, samples and documentation were removed from the NVIDIA Capture SDK 7.1.9 release. Future drivers will remove libnvidia-ifr.so and any other reference to NvIFROpenGL. For details please see: https://developer.nvidia.com/nvidia-video-codec-sdk - Fixed a bug that prevented Vulkan direct-to-display from working when DRM KMS is enabled. - Enabled the NVIDIA driver, by default, to attempt to initialize SLI when using GPUs with different amounts of video memory. Previously, this was only available when bit 1 was set in the "Coolbits" X config option. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. - Fixed an issue where vkCreate{Graphics,Compute}Pipeline would sometimes crash when the shaders contained resources with no set/binding. - Fixed a memory fault in the Vulkan driver when using some smaller dimensions of sparse images. - Fixed an issue with vkCmdSetViewport when firstViewport is non-zero. - Fixed handling of VK_DESCRIPTOR_BINDING_VARIABLE_DESCRIPTOR_COUNT_BIT for variable size descriptor bindings. * Fixed crash with certain DisplayPort devices. (Closes: #989069) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update symbols files. * libnvidia-nvvm4: New package for the NVVM Compiler library. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) . nvidia-graphics-drivers (465.31-1) experimental; urgency=medium . * New upstream new feature branch release 465.31 (2021-05-18). . [ Andreas Beckmann ] * Update nv-readme.ids. . nvidia-graphics-drivers (465.27-1) experimental; urgency=medium . * New upstream new feature branch release 465.27 (2021-04-29). . [ Andreas Beckmann ] * libcuda1: Add Provides: libcuda-11.3-1{,-i386}. * Build the nvidia-peermem kernel module. . nvidia-graphics-drivers (465.24.02-1) experimental; urgency=medium . * New upstream new feature branch release 465.24.02 (2021-04-14). * Fixed CVE-2021-1076, CVE-2021-1077. (Closes: #987216) https://nvidia.custhelp.com/app/answers/detail/a_id/5172 * New upstream beta 465.19.01 (2021-03-30). - Added gsp.bin firmware file which is used to offload the GPU initialization and management tasks on some GPUs. See the "GSP Firmware" chapter in the README for more information. - Improved X11 DrawText() performance when rendering stippled text. - Fixed a bug that could prevent some hardware configurations with large numbers of displays connected to the same GPU from working correctly. - Fixed a bug that could cause multi-threaded GLX applications to hang while attempting to handle an XError. - Fixed a potential crash in the Vulkan driver when clearing images with multiple layers. - Fixed a bug with the host-visible device-local memory heap, where if an allocation failed due to space constraints, it could cause the application to crash on future Vulkan function calls. - Fixed corruption in the Vulkan driver that sometimes occurred with shadow rendering with image arrays. - Added support for the VK_KHR_synchronization2 extension. - Added support for the VK_KHR_workgroup_memory_explicit_layout extension. - Added support for the VK_KHR_zero_initialize_workgroup_memory extension. - Added support for linear images for use with host-visible video memory in Vulkan. - Fixed an issue with OpenGL where imported Vulkan buffers would fail with GL_OUT_OF_MEMORY when marked as resident. - Fixed a bug that caused the NVIDIA driver to retain an incorrect memory mapping of the UEFI system console when booting with the kernel parameter pci=realloc. This could cause the console to corrupt memory in use by the NVIDIA driver, and vice versa. - Runtime D3 Power Management is now enabled by default on supported notebook systems with Ampere or newer GPUs. See the chapter titled "PCI-Express Runtime D3 (RTD3) Power Management" in the README for further details. - Updated the NVIDIA X driver to allow OpenGL applications running on an X server that has left the active virtual terminal (VT) to continue running on the GPU, but with a limited frame rate. This functionality is only enabled when the NVreg_PreserveVideoMemoryAllocations=1 nvidia module parameter is enabled. - Fix a Vulkan clamping bug where fragment depth values would not be clamped to the range [0,1] if VK_EXT_depth_range_unrestricted was not enabled. - Fix a bug related to SPIR-V 1.4 non-Input/Output entry point variables. - Fixed a bug in compilation of SPIR-V intersection shaders when modules with multiple entry points are used. . [ Andreas Beckmann ] * Update symbols files. * Ship the gsp.bin firmware blob on amd64. * Some power management features were not yet in Linux 2.6.32. * Update lintian overrides. * Upload to experimental. . nvidia-graphics-drivers (460.106.00-6) UNRELEASED; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device, cc_mkdec and drm_mode_config_has_allow_fb_modifiers changes from 470.129.06 to fix kernel module build for Linux 5.18. . nvidia-graphics-drivers (460.106.00-5) UNRELEASED; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. . nvidia-graphics-drivers (460.106.00-4) UNRELEASED; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers (460.106.00-3) UNRELEASED; urgency=medium . * The Tesla 460 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . nvidia-graphics-drivers (460.106.00-2) UNRELEASED; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers (460.106.00-1) UNRELEASED; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . nvidia-graphics-drivers (460.91.03-2) UNRELEASED; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. . nvidia-graphics-drivers (460.91.03-1) unstable; urgency=medium . * New upstream production branch release 460.91.03 (2021-07-20). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Added support for the following GPUs: GeForce RTX 3070 Ti, CMP 50HX. * Fixed crash with certain DisplayPort devices. (Closes: #989069) . [ Andreas Beckmann ] * Update nv-readme.ids. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) * debian/gen-control.pl: Support substitutions in the Vcs-Git field. * Compute and substitute the Git branch instead of hardcoding it. . nvidia-graphics-drivers (460.84-1) unstable; urgency=medium . * New upstream production branch release 460.84 (2021-06-03). - Added support for the following GPU: GeForce RTX 3080 Ti. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (460.80-1) unstable; urgency=medium . * New upstream production branch release 460.80 (2021-05-11). - Fixed a bug that could cause AddressSanitizer to report a heap-buffer-overflow during initialization of the OpenGL and Vulkan libraries. - Added support for the following GPUs: GeForce RTX 3050 Ti Laptop GPU, GeForce RTX 3050 Laptop GPU, T600 Laptop GPU, T1200 Laptop GPU, RTX A5000 Laptop GPU, RTX A4000 Laptop GPU, RTX A3000 Laptop GPU, RTX A2000 Laptop GPU. - Fixed a bug that could prevent a system from resuming from suspend when DisplayPort activity occurred while the system was suspended. - Fixed a regression that prevented eglQueryDevicesEXT from correctly enumerating GPUs on systems with multiple GPUs where access to the GPU device files was restricted for some GPUs. - Fixed a regression that could cause system hangs when changing display resolution on SLI Mosaic configurations. . [ Luca Boccassi ] * Update nv-readme.ids. * Refresh kmods patches to remove fuzz. nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) nvidia-graphics-drivers (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011140) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. (Closes: #1011183) - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. * Import missing legacy IDs from the 510.* README.txt. The Kepler notebook GPUs seem still supported by the 470.* driver. (Closes: #1011245, #939447, #939067) * Bump Standards-Version to 4.6.1. No changes needed. nvidia-graphics-drivers (470.103.01-4) unstable; urgency=medium . * Update kernel-5.7.0-set-memory-array.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. nvidia-graphics-drivers (470.103.01-3) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). * nvidia-detect: Drop support for Tesla 460 drivers (EoL). nvidia-graphics-drivers (470.103.01-3~deb11u2) bullseye; urgency=medium . * Re-enable building libnvidia-nvvm4. nvidia-graphics-drivers (470.103.01-3~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. * Temporarily disable building libnvidia-nvvm4 to avoid NEW. . nvidia-graphics-drivers (470.103.01-3) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). * nvidia-detect: Drop support for Tesla 460 drivers (EoL). . nvidia-graphics-drivers (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005311) * nvidia-detect: Add support for (Tesla) 470 drivers in bullseye. . nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. . nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) . nvidia-graphics-drivers (470.82.01-1) UNRELEASED; urgency=medium . * New upstream Tesla release 470.82.01 (2021-11-02). - Fixed a regression which prevented DisplayPort and HDMI 2.1 variable refresh rate (VRR) G-SYNC Compatible monitors from functioning correctly in variable refresh rate mode, resulting in issues such as flickering. . nvidia-graphics-drivers (470.82.00-1) unstable; urgency=medium . * New upstream production branch release 470.82.00 (2021-10-26). - Added support for the following GPUs: Matrox D-Series D2450, Matrox D-Series D2480, NVIDIA A2. - Fixed a bug that can cause a kernel crash in SLI Mosaic configurations. - Added support for the EGL_NV_robustness_video_memory_purge extension * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives. * nvidia-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative. (Closes: #996595) * Fix bashisms in upstream scripts. * Drop the unusable leftover non-GLVND libegl1-nvidia package. (Closes: #996763) * nvidia-alternative: Drop unused non-GLVND slave links. * Restrict watch file to releases from the 470.xx production branch. * Update lintian overrides. . nvidia-graphics-drivers (470.74-1) unstable; urgency=medium . * New upstream production branch release 470.74 (2021-09-20). - Fixed a bug that could cause GPU applications to exit when resuming from suspend. - Fixed a regression which resulted in very-high system memory usage for Direct3D 12 games when run through vkd3d-proton. (Closes: #994942, #995271, #996031, #996164, #996468) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.63.01-1) unstable; urgency=medium . * New upstream production branch release 470.63.01 (2021-08-10). - Added an application profile to disable FXAA for Firefox to prevent visual corruption. - Added support for the VK_KHR_wayland_surface extension. - Fixed a Vulkan performance regression that affected rFactor2. (Closes: #994633) . [ Andreas Beckmann ] * libegl-nvidia0: Ship new library libnvidia-vulkan-producer.so.#VERSION# but do not provide alternatives since it is unclear how this undocumented SONAME-less library is supposed to be used. * Add Build-Depends: libnvidia-egl-wayland1. * nvidia-kernel-support: Restore nvidia-modprobe.conf which might have gone missing due to bugs in debhelper (#994919) and dpkg (#995387). (Closes: #994971) . nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. . nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-graphics-drivers (470.57.02-1) experimental; urgency=medium . * New upstream production branch release 470.57.02 (2021-07-19). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Fixed a bug that could cause flickering in Blender and Steam when running on Xwayland. - Fixed a bug that caused GTK+3 applications using the GtkGLArea class to crash when running on Xwayland. - Added a workaround for DOOM Eternal, which avoids an application bug where Vulkan swapchain recreation events are not properly handled. On desktops like GNOME where the window is initially redirected to the compositor, this may prevent the game from flipping (and thus enabling G-SYNC). - Added a workaround for Far Cry 5 when run through DXVK, which avoids a shader race condition bug that was previously exposed by new compiler optimizations. - Added support for the following GPUs: NVIDIA A100 80GB PCIe, NVIDIA A16, NVIDIA PG506-243, NVIDIA PG506-242, NVIDIA CMP 90HX, NVIDIA CMP 70HX, NVIDIA RTX A2000, NVIDIA T4G. . [ Luca Boccassi ] * Update nv-readme.ids. * Update symbols files. . [ Andreas Beckmann ] * Refresh patches. * libcuda1: Add Provides: libcuda-11.4-1{,-i386}. * nvidia-detect: Add support for Tesla 470 drivers. . nvidia-graphics-drivers (470.42.01-1) experimental; urgency=medium . * New upstream beta 470.42.01 (2021-06-22). - Added support for the following GPUs: A100-PG506-207, A100-PG506-217. - Increased the maximum limit on concurrent OpenGL contexts. This limit was previously constrained by a fixed-size internal driver resource, and is now constrained by available system memory. - Applications that exceed the maximum limit on concurrent OpenGL contexts will now receive a BadAlloc X error rather than crashing. - Fixed a bug that could cause the X server to crash upon shutdown with some configurations using GPU screens. - Fixed a bug that could cause rendering errors when displaying scaled MetaModes using the "Nearest" resampling method. - Fixed a bug that could cause OpenGL applications run in PID namespaces to hang upon exit, generating warnings such as the following in the X log: (WW) NVIDIA: Wait for channel idle timed out. - Added support for PRIME Display Offload where both the display offload source and display offload sink are driven by the NVIDIA X Driver. - Added support for PRIME Display Offload where the display offload source is AMDGPU. - Fixed a bug that could prevent the driver from applying application profiles when running applications through Proton or Wine on a PRIME Render Offload configuration. - Fixed a bug that could cause NvFBC's "direct capture" to crash the X server when certain GLX calls are made during a capture. - Added an NVIDIA NGX build for use with Proton and Wine. A new library, nvngx.dll, has been added to enable driver-side support for running Windows applications which make use of DLSS. Changes to Proton, Wine, and other third-party software are needed for this feature. - Added support for VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT from the VK_EXT_global_priority extension. This enables support for asynchronous reprojection in SteamVR. VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT is supported on Pascal GPUs and newer. Global priorities other than VK_QUEUE_GLOBAL_PRIORITY_MEDIUM_EXT require root privileges or the CAP_SYS_NICE capability. - Added support for the VK_EXT_global_priority_query extension. - Added the nvidia-peermem.ko kernel module. This module provides Mellanox InfiniBand HCAs (Host Channel Adapters) direct peer-to-peer access to NVIDIA GPU memory without need without needing to copy data to host memory. See the chapter "GPUDirect RDMA Peer Memory Client" in the README for details. - Added support for the VK_EXT_provoking_vertex extension. - Initial support for hardware accelerated OpenGL and Vulkan rendering on Xwayland. See the chapter "OpenGL and Vulkan on Xwayland" in the README for details. - Fixed a bug that could cause intermittent corruption in Wolfenstein: Youngblood when using NVIDIA Kepler, Maxwell, Pascal, and Volta GPUs. - Fixed a bug that could cause games running with DXVK to crash with Xid 31 (MMU Fault) errors when using NVIDIA Pascal GPUs. - Added support for the VK_EXT_extended_dynamic_state2 extension. - Added support for the VK_EXT_color_write_enable extension. - Added support for the VK_EXT_vertex_input_dynamic_state extension. - Added support for the VK_EXT_ycbcr_2plane_444_formats extension. - Added support for the VK_NV_inherited_viewport_scissor extension. - NvFBC's "direct capture" mode no longer causes flipping to be disabled for applications being captured. G-SYNC can now also be used simultaneously with NvFBC direct capture. - Deprecated NvIFROpenGL support. Release 470 will be the last to support this functionality. NvIFROpenGL header files, samples and documentation were removed from the NVIDIA Capture SDK 7.1.9 release. Future drivers will remove libnvidia-ifr.so and any other reference to NvIFROpenGL. For details please see: https://developer.nvidia.com/nvidia-video-codec-sdk - Fixed a bug that prevented Vulkan direct-to-display from working when DRM KMS is enabled. - Enabled the NVIDIA driver, by default, to attempt to initialize SLI when using GPUs with different amounts of video memory. Previously, this was only available when bit 1 was set in the "Coolbits" X config option. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. - Fixed an issue where vkCreate{Graphics,Compute}Pipeline would sometimes crash when the shaders contained resources with no set/binding. - Fixed a memory fault in the Vulkan driver when using some smaller dimensions of sparse images. - Fixed an issue with vkCmdSetViewport when firstViewport is non-zero. - Fixed handling of VK_DESCRIPTOR_BINDING_VARIABLE_DESCRIPTOR_COUNT_BIT for variable size descriptor bindings. * Fixed crash with certain DisplayPort devices. (Closes: #989069) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update symbols files. * libnvidia-nvvm4: New package for the NVVM Compiler library. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) . nvidia-graphics-drivers (465.31-1) experimental; urgency=medium . * New upstream new feature branch release 465.31 (2021-05-18). . [ Andreas Beckmann ] * Update nv-readme.ids. . nvidia-graphics-drivers (465.27-1) experimental; urgency=medium . * New upstream new feature branch release 465.27 (2021-04-29). . [ Andreas Beckmann ] * libcuda1: Add Provides: libcuda-11.3-1{,-i386}. * Build the nvidia-peermem kernel module. . nvidia-graphics-drivers (465.24.02-1) experimental; urgency=medium . * New upstream new feature branch release 465.24.02 (2021-04-14). * Fixed CVE-2021-1076, CVE-2021-1077. (Closes: #987216) https://nvidia.custhelp.com/app/answers/detail/a_id/5172 * New upstream beta 465.19.01 (2021-03-30). - Added gsp.bin firmware file which is used to offload the GPU initialization and management tasks on some GPUs. See the "GSP Firmware" chapter in the README for more information. - Improved X11 DrawText() performance when rendering stippled text. - Fixed a bug that could prevent some hardware configurations with large numbers of displays connected to the same GPU from working correctly. - Fixed a bug that could cause multi-threaded GLX applications to hang while attempting to handle an XError. - Fixed a potential crash in the Vulkan driver when clearing images with multiple layers. - Fixed a bug with the host-visible device-local memory heap, where if an allocation failed due to space constraints, it could cause the application to crash on future Vulkan function calls. - Fixed corruption in the Vulkan driver that sometimes occurred with shadow rendering with image arrays. - Added support for the VK_KHR_synchronization2 extension. - Added support for the VK_KHR_workgroup_memory_explicit_layout extension. - Added support for the VK_KHR_zero_initialize_workgroup_memory extension. - Added support for linear images for use with host-visible video memory in Vulkan. - Fixed an issue with OpenGL where imported Vulkan buffers would fail with GL_OUT_OF_MEMORY when marked as resident. - Fixed a bug that caused the NVIDIA driver to retain an incorrect memory mapping of the UEFI system console when booting with the kernel parameter pci=realloc. This could cause the console to corrupt memory in use by the NVIDIA driver, and vice versa. - Runtime D3 Power Management is now enabled by default on supported notebook systems with Ampere or newer GPUs. See the chapter titled "PCI-Express Runtime D3 (RTD3) Power Management" in the README for further details. - Updated the NVIDIA X driver to allow OpenGL applications running on an X server that has left the active virtual terminal (VT) to continue running on the GPU, but with a limited frame rate. This functionality is only enabled when the NVreg_PreserveVideoMemoryAllocations=1 nvidia module parameter is enabled. - Fix a Vulkan clamping bug where fragment depth values would not be clamped to the range [0,1] if VK_EXT_depth_range_unrestricted was not enabled. - Fix a bug related to SPIR-V 1.4 non-Input/Output entry point variables. - Fixed a bug in compilation of SPIR-V intersection shaders when modules with multiple entry points are used. . [ Andreas Beckmann ] * Update symbols files. * Ship the gsp.bin firmware blob on amd64. * Some power management features were not yet in Linux 2.6.32. * Update lintian overrides. * Upload to experimental. . nvidia-graphics-drivers (460.106.00-2) UNRELEASED; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. . nvidia-graphics-drivers (460.106.00-1) UNRELEASED; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . nvidia-graphics-drivers (460.91.03-2) UNRELEASED; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. nvidia-graphics-drivers (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005311) * nvidia-detect: Add support for (Tesla) 470 drivers in bullseye. nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. nvidia-graphics-drivers (470.103.01-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. nvidia-graphics-drivers (470.94-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) . nvidia-graphics-drivers (470.82.01-1) UNRELEASED; urgency=medium . * New upstream Tesla release 470.82.01 (2021-11-02). - Fixed a regression which prevented DisplayPort and HDMI 2.1 variable refresh rate (VRR) G-SYNC Compatible monitors from functioning correctly in variable refresh rate mode, resulting in issues such as flickering. . nvidia-graphics-drivers (470.82.00-1) unstable; urgency=medium . * New upstream production branch release 470.82.00 (2021-10-26). - Added support for the following GPUs: Matrox D-Series D2450, Matrox D-Series D2480, NVIDIA A2. - Fixed a bug that can cause a kernel crash in SLI Mosaic configurations. - Added support for the EGL_NV_robustness_video_memory_purge extension * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives. * nvidia-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative. (Closes: #996595) * Fix bashisms in upstream scripts. * Drop the unusable leftover non-GLVND libegl1-nvidia package. (Closes: #996763) * nvidia-alternative: Drop unused non-GLVND slave links. * Restrict watch file to releases from the 470.xx production branch. * Update lintian overrides. . nvidia-graphics-drivers (470.74-1) unstable; urgency=medium . * New upstream production branch release 470.74 (2021-09-20). - Fixed a bug that could cause GPU applications to exit when resuming from suspend. - Fixed a regression which resulted in very-high system memory usage for Direct3D 12 games when run through vkd3d-proton. (Closes: #994942, #995271, #996031, #996164, #996468) * New upstream release 450 series. - Fixed a bug that caused nvidia-drm.ko to crash when loading with DRM-KMS enabled (modeset=1) on Linux v5.14. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.63.01-1) unstable; urgency=medium . * New upstream production branch release 470.63.01 (2021-08-10). - Added an application profile to disable FXAA for Firefox to prevent visual corruption. - Added support for the VK_KHR_wayland_surface extension. - Fixed a Vulkan performance regression that affected rFactor2. (Closes: #994633) . [ Andreas Beckmann ] * libegl-nvidia0: Ship new library libnvidia-vulkan-producer.so.#VERSION# but do not provide alternatives since it is unclear how this undocumented SONAME-less library is supposed to be used. * Add Build-Depends: libnvidia-egl-wayland1. * nvidia-kernel-support: Restore nvidia-modprobe.conf which might have gone missing due to bugs in debhelper (#994919) and dpkg (#995387). (Closes: #994971) . nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. . nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-graphics-drivers (470.57.02-1) experimental; urgency=medium . * New upstream production branch release 470.57.02 (2021-07-19). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Fixed a bug that could cause flickering in Blender and Steam when running on Xwayland. - Fixed a bug that caused GTK+3 applications using the GtkGLArea class to crash when running on Xwayland. - Added a workaround for DOOM Eternal, which avoids an application bug where Vulkan swapchain recreation events are not properly handled. On desktops like GNOME where the window is initially redirected to the compositor, this may prevent the game from flipping (and thus enabling G-SYNC). - Added a workaround for Far Cry 5 when run through DXVK, which avoids a shader race condition bug that was previously exposed by new compiler optimizations. - Added support for the following GPUs: NVIDIA A100 80GB PCIe, NVIDIA A16, NVIDIA PG506-243, NVIDIA PG506-242, NVIDIA CMP 90HX, NVIDIA CMP 70HX, NVIDIA RTX A2000, NVIDIA T4G. . [ Luca Boccassi ] * Update nv-readme.ids. * Update symbols files. . [ Andreas Beckmann ] * Refresh patches. * libcuda1: Add Provides: libcuda-11.4-1{,-i386}. * nvidia-detect: Add support for Tesla 470 drivers. . nvidia-graphics-drivers (470.42.01-1) experimental; urgency=medium . * New upstream beta 470.42.01 (2021-06-22). - Added support for the following GPUs: A100-PG506-207, A100-PG506-217. - Increased the maximum limit on concurrent OpenGL contexts. This limit was previously constrained by a fixed-size internal driver resource, and is now constrained by available system memory. - Applications that exceed the maximum limit on concurrent OpenGL contexts will now receive a BadAlloc X error rather than crashing. - Fixed a bug that could cause the X server to crash upon shutdown with some configurations using GPU screens. - Fixed a bug that could cause rendering errors when displaying scaled MetaModes using the "Nearest" resampling method. - Fixed a bug that could cause OpenGL applications run in PID namespaces to hang upon exit, generating warnings such as the following in the X log: (WW) NVIDIA: Wait for channel idle timed out. - Added support for PRIME Display Offload where both the display offload source and display offload sink are driven by the NVIDIA X Driver. - Added support for PRIME Display Offload where the display offload source is AMDGPU. - Fixed a bug that could prevent the driver from applying application profiles when running applications through Proton or Wine on a PRIME Render Offload configuration. - Fixed a bug that could cause NvFBC's "direct capture" to crash the X server when certain GLX calls are made during a capture. - Added an NVIDIA NGX build for use with Proton and Wine. A new library, nvngx.dll, has been added to enable driver-side support for running Windows applications which make use of DLSS. Changes to Proton, Wine, and other third-party software are needed for this feature. - Added support for VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT from the VK_EXT_global_priority extension. This enables support for asynchronous reprojection in SteamVR. VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT is supported on Pascal GPUs and newer. Global priorities other than VK_QUEUE_GLOBAL_PRIORITY_MEDIUM_EXT require root privileges or the CAP_SYS_NICE capability. - Added support for the VK_EXT_global_priority_query extension. - Added the nvidia-peermem.ko kernel module. This module provides Mellanox InfiniBand HCAs (Host Channel Adapters) direct peer-to-peer access to NVIDIA GPU memory without need without needing to copy data to host memory. See the chapter "GPUDirect RDMA Peer Memory Client" in the README for details. - Added support for the VK_EXT_provoking_vertex extension. - Initial support for hardware accelerated OpenGL and Vulkan rendering on Xwayland. See the chapter "OpenGL and Vulkan on Xwayland" in the README for details. - Fixed a bug that could cause intermittent corruption in Wolfenstein: Youngblood when using NVIDIA Kepler, Maxwell, Pascal, and Volta GPUs. - Fixed a bug that could cause games running with DXVK to crash with Xid 31 (MMU Fault) errors when using NVIDIA Pascal GPUs. - Added support for the VK_EXT_extended_dynamic_state2 extension. - Added support for the VK_EXT_color_write_enable extension. - Added support for the VK_EXT_vertex_input_dynamic_state extension. - Added support for the VK_EXT_ycbcr_2plane_444_formats extension. - Added support for the VK_NV_inherited_viewport_scissor extension. - NvFBC's "direct capture" mode no longer causes flipping to be disabled for applications being captured. G-SYNC can now also be used simultaneously with NvFBC direct capture. - Deprecated NvIFROpenGL support. Release 470 will be the last to support this functionality. NvIFROpenGL header files, samples and documentation were removed from the NVIDIA Capture SDK 7.1.9 release. Future drivers will remove libnvidia-ifr.so and any other reference to NvIFROpenGL. For details please see: https://developer.nvidia.com/nvidia-video-codec-sdk - Fixed a bug that prevented Vulkan direct-to-display from working when DRM KMS is enabled. - Enabled the NVIDIA driver, by default, to attempt to initialize SLI when using GPUs with different amounts of video memory. Previously, this was only available when bit 1 was set in the "Coolbits" X config option. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. - Fixed an issue where vkCreate{Graphics,Compute}Pipeline would sometimes crash when the shaders contained resources with no set/binding. - Fixed a memory fault in the Vulkan driver when using some smaller dimensions of sparse images. - Fixed an issue with vkCmdSetViewport when firstViewport is non-zero. - Fixed handling of VK_DESCRIPTOR_BINDING_VARIABLE_DESCRIPTOR_COUNT_BIT for variable size descriptor bindings. * Fixed crash with certain DisplayPort devices. (Closes: #989069) * New upstream release 390 series. - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update symbols files. * libnvidia-nvvm4: New package for the NVVM Compiler library. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) . nvidia-graphics-drivers (465.31-1) experimental; urgency=medium . * New upstream new feature branch release 465.31 (2021-05-18). . [ Andreas Beckmann ] * Update nv-readme.ids. . nvidia-graphics-drivers (465.27-1) experimental; urgency=medium . * New upstream new feature branch release 465.27 (2021-04-29). . [ Andreas Beckmann ] * libcuda1: Add Provides: libcuda-11.3-1{,-i386}. * Build the nvidia-peermem kernel module. . nvidia-graphics-drivers (465.24.02-1) experimental; urgency=medium . * New upstream new feature branch release 465.24.02 (2021-04-14). * Fixed CVE-2021-1076, CVE-2021-1077. (Closes: #987216) https://nvidia.custhelp.com/app/answers/detail/a_id/5172 * New upstream beta 465.19.01 (2021-03-30). - Added gsp.bin firmware file which is used to offload the GPU initialization and management tasks on some GPUs. See the "GSP Firmware" chapter in the README for more information. - Improved X11 DrawText() performance when rendering stippled text. - Fixed a bug that could prevent some hardware configurations with large numbers of displays connected to the same GPU from working correctly. - Fixed a bug that could cause multi-threaded GLX applications to hang while attempting to handle an XError. - Fixed a potential crash in the Vulkan driver when clearing images with multiple layers. - Fixed a bug with the host-visible device-local memory heap, where if an allocation failed due to space constraints, it could cause the application to crash on future Vulkan function calls. - Fixed corruption in the Vulkan driver that sometimes occurred with shadow rendering with image arrays. - Added support for the VK_KHR_synchronization2 extension. - Added support for the VK_KHR_workgroup_memory_explicit_layout extension. - Added support for the VK_KHR_zero_initialize_workgroup_memory extension. - Added support for linear images for use with host-visible video memory in Vulkan. - Fixed an issue with OpenGL where imported Vulkan buffers would fail with GL_OUT_OF_MEMORY when marked as resident. - Fixed a bug that caused the NVIDIA driver to retain an incorrect memory mapping of the UEFI system console when booting with the kernel parameter pci=realloc. This could cause the console to corrupt memory in use by the NVIDIA driver, and vice versa. - Runtime D3 Power Management is now enabled by default on supported notebook systems with Ampere or newer GPUs. See the chapter titled "PCI-Express Runtime D3 (RTD3) Power Management" in the README for further details. - Updated the NVIDIA X driver to allow OpenGL applications running on an X server that has left the active virtual terminal (VT) to continue running on the GPU, but with a limited frame rate. This functionality is only enabled when the NVreg_PreserveVideoMemoryAllocations=1 nvidia module parameter is enabled. - Fix a Vulkan clamping bug where fragment depth values would not be clamped to the range [0,1] if VK_EXT_depth_range_unrestricted was not enabled. - Fix a bug related to SPIR-V 1.4 non-Input/Output entry point variables. - Fixed a bug in compilation of SPIR-V intersection shaders when modules with multiple entry points are used. . [ Andreas Beckmann ] * Update symbols files. * Ship the gsp.bin firmware blob on amd64. * Some power management features were not yet in Linux 2.6.32. * Update lintian overrides. * Upload to experimental. . nvidia-graphics-drivers (460.106.00-1) UNRELEASED; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . nvidia-graphics-drivers (460.91.03-2) UNRELEASED; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) nvidia-graphics-drivers (470.82.00-1) unstable; urgency=medium . * New upstream production branch release 470.82.00 (2021-10-26). - Added support for the following GPUs: Matrox D-Series D2450, Matrox D-Series D2480, NVIDIA A2. - Fixed a bug that can cause a kernel crash in SLI Mosaic configurations. - Added support for the EGL_NV_robustness_video_memory_purge extension . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives. * nvidia-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative. (Closes: #996595) * Fix bashisms in upstream scripts. * Drop the unusable leftover non-GLVND libegl1-nvidia package. (Closes: #996763) * nvidia-alternative: Drop unused non-GLVND slave links. * Restrict watch file to releases from the 470.xx production branch. * Update lintian overrides. nvidia-graphics-drivers (470.74-1) unstable; urgency=medium . * New upstream production branch release 470.74 (2021-09-20). - Fixed a bug that could cause GPU applications to exit when resuming from suspend. - Fixed a regression which resulted in very-high system memory usage for Direct3D 12 games when run through vkd3d-proton. (Closes: #994942, #995271, #996031, #996164) * New upstream release 450 series. - Fixed a bug that could cause the /proc/driver/nvidia/suspend power management interface to fail to preserve and restore video memory allocations when the NVreg_TemporaryFilePath module parameter for nvidia.ko specified an invalid path. * New upstream release 390 series. - Fixed a bug that caused nvidia-drm.ko to crash when loading with DRM-KMS enabled (modeset=1) on Linux v5.14. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. nvidia-graphics-drivers (470.63.01-1) unstable; urgency=medium . * New upstream production branch release 470.63.01 (2021-08-10). - Added an application profile to disable FXAA for Firefox to prevent visual corruption. - Added support for the VK_KHR_wayland_surface extension. - Fixed a Vulkan performance regression that affected rFactor2. (Closes: #994633) . [ Andreas Beckmann ] * libegl-nvidia0: Ship new library libnvidia-vulkan-producer.so.#VERSION# but do not provide alternatives since it is unclear how this undocumented SONAME-less library is supposed to be used. * Add Build-Depends: libnvidia-egl-wayland-dev. * nvidia-kernel-support: Restore nvidia-modprobe.conf which might have gone missing due to bugs in debhelper (#994919) and dpkg (#995387). (Closes: #994971) nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. nvidia-graphics-drivers (470.57.02-1) experimental; urgency=medium . * New upstream production branch release 470.57.02 (2021-07-19). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Fixed a bug that could cause flickering in Blender and Steam when running on Xwayland. - Fixed a bug that caused GTK+3 applications using the GtkGLArea class to crash when running on Xwayland. - Added a workaround for DOOM Eternal, which avoids an application bug where Vulkan swapchain recreation events are not properly handled. On desktops like GNOME where the window is initially redirected to the compositor, this may prevent the game from flipping (and thus enabling G-SYNC). - Added a workaround for Far Cry 5 when run through DXVK, which avoids a shader race condition bug that was previously exposed by new compiler optimizations. - Added support for the following GPUs: NVIDIA A100 80GB PCIe, NVIDIA A16, NVIDIA PG506-243, NVIDIA PG506-242, NVIDIA CMP 90HX, NVIDIA CMP 70HX, NVIDIA RTX A2000, NVIDIA T4G. . [ Luca Boccassi ] * Update nv-readme.ids. * Update symbols files. . [ Andreas Beckmann ] * Refresh patches. * libcuda1: Add Provides: libcuda-11.4-1{,-i386}. * nvidia-detect: Add support for Tesla 470 drivers. nvidia-graphics-drivers (470.42.01-1) experimental; urgency=medium . * New upstream beta 470.42.01 (2021-06-22). - Added support for the following GPUs: A100-PG506-207, A100-PG506-217. - Increased the maximum limit on concurrent OpenGL contexts. This limit was previously constrained by a fixed-size internal driver resource, and is now constrained by available system memory. - Applications that exceed the maximum limit on concurrent OpenGL contexts will now receive a BadAlloc X error rather than crashing. - Fixed a bug that could cause the X server to crash upon shutdown with some configurations using GPU screens. - Fixed a bug that could cause rendering errors when displaying scaled MetaModes using the "Nearest" resampling method. - Fixed a bug that could cause OpenGL applications run in PID namespaces to hang upon exit, generating warnings such as the following in the X log: (WW) NVIDIA: Wait for channel idle timed out. - Added support for PRIME Display Offload where both the display offload source and display offload sink are driven by the NVIDIA X Driver. - Added support for PRIME Display Offload where the display offload source is AMDGPU. - Fixed a bug that could prevent the driver from applying application profiles when running applications through Proton or Wine on a PRIME Render Offload configuration. - Fixed a bug that could cause NvFBC's "direct capture" to crash the X server when certain GLX calls are made during a capture. - Added an NVIDIA NGX build for use with Proton and Wine. A new library, nvngx.dll, has been added to enable driver-side support for running Windows applications which make use of DLSS. Changes to Proton, Wine, and other third-party software are needed for this feature. - Added support for VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT from the VK_EXT_global_priority extension. This enables support for asynchronous reprojection in SteamVR. VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT is supported on Pascal GPUs and newer. Global priorities other than VK_QUEUE_GLOBAL_PRIORITY_MEDIUM_EXT require root privileges or the CAP_SYS_NICE capability. - Added support for the VK_EXT_global_priority_query extension. - Added the nvidia-peermem.ko kernel module. This module provides Mellanox InfiniBand HCAs (Host Channel Adapters) direct peer-to-peer access to NVIDIA GPU memory without need without needing to copy data to host memory. See the chapter "GPUDirect RDMA Peer Memory Client" in the README for details. - Added support for the VK_EXT_provoking_vertex extension. - Initial support for hardware accelerated OpenGL and Vulkan rendering on Xwayland. See the chapter "OpenGL and Vulkan on Xwayland" in the README for details. - Fixed a bug that could cause intermittent corruption in Wolfenstein: Youngblood when using NVIDIA Kepler, Maxwell, Pascal, and Volta GPUs. - Fixed a bug that could cause games running with DXVK to crash with Xid 31 (MMU Fault) errors when using NVIDIA Pascal GPUs. - Added support for the VK_EXT_extended_dynamic_state2 extension. - Added support for the VK_EXT_color_write_enable extension. - Added support for the VK_EXT_vertex_input_dynamic_state extension. - Added support for the VK_EXT_ycbcr_2plane_444_formats extension. - Added support for the VK_NV_inherited_viewport_scissor extension. - NvFBC's "direct capture" mode no longer causes flipping to be disabled for applications being captured. G-SYNC can now also be used simultaneously with NvFBC direct capture. - Deprecated NvIFROpenGL support. Release 470 will be the last to support this functionality. NvIFROpenGL header files, samples and documentation were removed from the NVIDIA Capture SDK 7.1.9 release. Future drivers will remove libnvidia-ifr.so and any other reference to NvIFROpenGL. For details please see: https://developer.nvidia.com/nvidia-video-codec-sdk - Fixed a bug that prevented Vulkan direct-to-display from working when DRM KMS is enabled. - Enabled the NVIDIA driver, by default, to attempt to initialize SLI when using GPUs with different amounts of video memory. Previously, this was only available when bit 1 was set in the "Coolbits" X config option. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. - Fixed an issue where vkCreate{Graphics,Compute}Pipeline would sometimes crash when the shaders contained resources with no set/binding. - Fixed a memory fault in the Vulkan driver when using some smaller dimensions of sparse images. - Fixed an issue with vkCmdSetViewport when firstViewport is non-zero. - Fixed handling of VK_DESCRIPTOR_BINDING_VARIABLE_DESCRIPTOR_COUNT_BIT for variable size descriptor bindings. * New upstream release 460 series. - Added support for the following GPUs: GeForce RTX 3070 Ti, CMP 50HX. * New upstream release 390 series. - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update symbols files. * libnvidia-nvvm4: New package for the NVVM Compiler library. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) nvidia-graphics-drivers (465.31-1) experimental; urgency=medium . * New upstream new feature branch release 465.31 (2021-05-18). . [ Andreas Beckmann ] * Update nv-readme.ids. nvidia-graphics-drivers (465.27-1) experimental; urgency=medium . * New upstream new feature branch release 465.27 (2021-04-29). * New upstream release 460 series. - Added support for the following GPUs: T600 Laptop GPU, T1200 Laptop GPU, RTX A5000 Laptop GPU, RTX A4000 Laptop GPU, RTX A3000 Laptop GPU, RTX A2000 Laptop GPU. - Fixed a bug that could prevent a system from resuming from suspend when DisplayPort activity occurred while the system was suspended. - Fixed a regression that prevented eglQueryDevicesEXT from correctly enumerating GPUs on systems with multiple GPUs where access to the GPU device files was restricted for some GPUs. - Fixed a regression that could cause system hangs when changing display resolution on SLI Mosaic configurations. * New upstream release 450 series. - Fixed a bug that could result in blank displays when driving multiple displays at the same resolution using active DisplayPort dongles. . [ Andreas Beckmann ] * Update nv-readme.ids. * libcuda1: Add Provides: libcuda-11.3-1{,-i386}. * Build the nvidia-peermem kernel module. nvidia-graphics-drivers (465.24.02-1) experimental; urgency=medium . * New upstream new feature branch release 465.24.02 (2021-04-14). * Fixed CVE-2021-1076, CVE-2021-1077. (Closes: #987216) https://nvidia.custhelp.com/app/answers/detail/a_id/5172 * New upstream beta 465.19.01 (2021-03-30). - Improved X11 DrawText() performance when rendering stippled text. - Fixed a bug that could prevent some hardware configurations with large numbers of displays connected to the same GPU from working correctly. - Fixed a bug that could cause multi-threaded GLX applications to hang while attempting to handle an XError. - Fixed a potential crash in the Vulkan driver when clearing images with multiple layers. - Fixed a bug with the host-visible device-local memory heap, where if an allocation failed due to space constraints, it could cause the application to crash on future Vulkan function calls. - Fixed corruption in the Vulkan driver that sometimes occurred with shadow rendering with image arrays. - Added support for the VK_KHR_synchronization2 extension. - Added support for the VK_KHR_workgroup_memory_explicit_layout extension. - Added support for the VK_KHR_zero_initialize_workgroup_memory extension. - Added support for linear images for use with host-visible video memory in Vulkan. - Fixed an issue with OpenGL where imported Vulkan buffers would fail with GL_OUT_OF_MEMORY when marked as resident. - Fixed a bug that caused the NVIDIA driver to retain an incorrect memory mapping of the UEFI system console when booting with the kernel parameter pci=realloc. This could cause the console to corrupt memory in use by the NVIDIA driver, and vice versa. - Runtime D3 Power Management is now enabled by default on supported notebook systems with Ampere or newer GPUs. See the chapter titled "PCI-Express Runtime D3 (RTD3) Power Management" in the README for further details. - Updated the NVIDIA X driver to allow OpenGL applications running on an X server that has left the active virtual terminal (VT) to continue running on the GPU, but with a limited frame rate. This functionality is only enabled when the NVreg_PreserveVideoMemoryAllocations=1 nvidia module parameter is enabled. - Fix a Vulkan clamping bug where fragment depth values would not be clamped to the range [0,1] if VK_EXT_depth_range_unrestricted was not enabled. - Fix a bug related to SPIR-V 1.4 non-Input/Output entry point variables. - Fixed a bug in compilation of SPIR-V intersection shaders when modules with multiple entry points are used. . [ Andreas Beckmann ] * Update symbols files. * Ship the firmware blob on amd64. * Some power management features were not yet in Linux 2.6.32. * Update lintian overrides. * Upload to experimental. nvidia-graphics-drivers-legacy-390xx (390.151-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-legacy-390xx (390.151-1) unstable; urgency=medium . * New upstream legacy branch release 390.151 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185. (Closes: #1011142, #1004849) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Fixed a bug which prevented kernel modules linked from precompiled kernel interface object files from being loaded on recent Linux kernels. This affected custom packages which were prepared with nvidia-installer's --add-this-kernel option, for example. - Fixed a driver installation failure on Linux kernel 5.17 release candidates, where the NVIDIA kernel module failed to build with error "implicit declaration of function 'PDE'". . [ Andreas Beckmann ] * Refresh patches. * Work around architecture misdetection when building the kernel modules in an armhf environment on an arm64 host. (Closes: #1010230) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-legacy-390xx (390.147-4) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-legacy-390xx (390.147-3) unstable; urgency=medium . * Fix incomplete backport of pde_data changes from 470.103.01. (Closes: #1005909) . nvidia-graphics-drivers-legacy-390xx (390.147-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005804) * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. . nvidia-graphics-drivers-legacy-390xx (390.147-1) unstable; urgency=medium . * New upstream legacy branch release 390.147 (2021-12-16). - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-legacy-390xx-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * nvidia-legacy-390xx-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.144-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994814) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-graphics-drivers-legacy-390xx (390.144-1~deb10u1) buster; urgency=medium . * Rebuild for buster. nvidia-graphics-drivers-legacy-390xx (390.151-1~deb10u1) buster; urgency=medium . * Rebuild for buster. . nvidia-graphics-drivers-legacy-390xx (390.151-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-legacy-390xx (390.151-1) unstable; urgency=medium . * New upstream legacy branch release 390.151 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185. (Closes: #1011142, #1004849) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Fixed a bug which prevented kernel modules linked from precompiled kernel interface object files from being loaded on recent Linux kernels. This affected custom packages which were prepared with nvidia-installer's --add-this-kernel option, for example. - Fixed a driver installation failure on Linux kernel 5.17 release candidates, where the NVIDIA kernel module failed to build with error "implicit declaration of function 'PDE'". . [ Andreas Beckmann ] * Refresh patches. * Work around architecture misdetection when building the kernel modules in an armhf environment on an arm64 host. (Closes: #1010230) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-legacy-390xx (390.147-4) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-legacy-390xx (390.147-3) unstable; urgency=medium . * Fix incomplete backport of pde_data changes from 470.103.01. (Closes: #1005909) . nvidia-graphics-drivers-legacy-390xx (390.147-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005804) * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. . nvidia-graphics-drivers-legacy-390xx (390.147-1) unstable; urgency=medium . * New upstream legacy branch release 390.147 (2021-12-16). - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-legacy-390xx-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * nvidia-legacy-390xx-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.144-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994814) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-legacy-390xx (390.147-4) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). nvidia-graphics-drivers-legacy-390xx (390.147-3) unstable; urgency=medium . * Fix incomplete backport of pde_data changes from 510.39.01. nvidia-graphics-drivers-legacy-390xx (390.147-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005804) * Backport pde_data changes from 510.39.01 to fix kernel module build for Linux 5.17. nvidia-graphics-drivers-legacy-390xx (390.147-1) unstable; urgency=medium . * New upstream legacy branch release 390.147 (2021-12-16). - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-legacy-390xx-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * Update lintian overrides. nvidia-graphics-drivers-legacy-390xx (390.147-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . nvidia-graphics-drivers-legacy-390xx (390.147-1) unstable; urgency=medium . * New upstream legacy branch release 390.147 (2021-12-16). - Worked around a bug in Meson builds of libglvnd 1.3.0 that caused the nvidia_icd.json file to be installed in the wrong location. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-legacy-390xx-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * Update lintian overrides. . nvidia-graphics-drivers-legacy-390xx (390.144-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994814) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-graphics-drivers-legacy-390xx (390.144-1~deb10u1) buster; urgency=medium . * Rebuild for buster. nvidia-graphics-drivers-legacy-390xx (390.144-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-tesla-418 (418.226.00-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-418 (418.226.00-6) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask and acpi_bus_get_device changes from 470.129.06 to fix kernel module build for Linux 5.18. * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-418 (418.226.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-418 (418.226.00-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. . nvidia-graphics-drivers-tesla-418 (418.226.00-3) unstable; urgency=medium . * The Tesla 418 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-tesla-418 (418.226.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. (Closes: #1005405) * nvidia-tesla-418-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) . nvidia-graphics-drivers-tesla-418 (418.226.00-1) unstable; urgency=medium . * New upstream Tesla release 418.226.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-418-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * Update lintian overrides. . nvidia-graphics-drivers-tesla-418 (418.211.00-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-tesla-418 (418.226.00-6~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-418 (418.226.00-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-418 (418.226.00-6) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask and acpi_bus_get_device changes from 470.129.06 to fix kernel module build for Linux 5.18. * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-418 (418.226.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-418 (418.226.00-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. . nvidia-graphics-drivers-tesla-418 (418.226.00-3) unstable; urgency=medium . * The Tesla 418 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-tesla-418 (418.226.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. (Closes: #1005405) * nvidia-tesla-418-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) . nvidia-graphics-drivers-tesla-418 (418.226.00-1) unstable; urgency=medium . * New upstream Tesla release 418.226.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-418-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * Update lintian overrides. . nvidia-graphics-drivers-tesla-418 (418.211.00-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-tesla-418 (418.226.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. nvidia-graphics-drivers-tesla-418 (418.226.00-4) unstable; urgency=medium . * Fix kernel module build for ppc64el. nvidia-graphics-drivers-tesla-418 (418.226.00-3) unstable; urgency=medium . * The Tesla 418 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). nvidia-graphics-drivers-tesla-418 (418.226.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 510.39.01 to fix kernel module build for Linux 5.17. (Closes: #1005405) * nvidia-tesla-418-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) nvidia-graphics-drivers-tesla-418 (418.226.00-1) unstable; urgency=medium . * New upstream Tesla release 418.226.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-418-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). * Fix bashisms in upstream scripts (470.82.00-1). * libegl1-mesa is a transitional package since buster (470.82.00-1). * Update lintian overrides. nvidia-graphics-drivers-tesla-418 (418.211.00-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-tesla-450 (450.191.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-450 (450.191.01-2) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device and cc_mkdec changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1013130) * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-450 (450.191.01-1) unstable; urgency=medium . * New upstream Tesla release 450.191.01 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185, CVE-2022-28192. (Closes: #1011144) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 . [ Andreas Beckmann ] * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-450 (450.172.01-3) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. (Closes: #976901) * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. (Closes: #1009740) * Refresh patches. nvidia-graphics-drivers-tesla-450 (450.191.01-2~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-450 (450.191.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-450 (450.191.01-2) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device and cc_mkdec changes from 470.129.06 to fix kernel module build for Linux 5.18. (Closes: #1013130) * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-450 (450.191.01-1) unstable; urgency=medium . * New upstream Tesla release 450.191.01 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185, CVE-2022-28192. (Closes: #1011144) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 . [ Andreas Beckmann ] * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-450 (450.172.01-3) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. (Closes: #976901) * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. (Closes: #1009740) * Refresh patches. nvidia-graphics-drivers-tesla-450 (450.191.01-1) unstable; urgency=medium . * New upstream Tesla release 450.191.01 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28185, CVE-2022-28192. (Closes: #1011144) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 . [ Andreas Beckmann ] * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. nvidia-graphics-drivers-tesla-450 (450.172.01-3) unstable; urgency=medium . * Update kernel-5.7.0-set-memory-array.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. (Closes: #1009740) nvidia-graphics-drivers-tesla-450 (450.172.01-2) unstable; urgency=medium . * Backport pde_data changes from 510.39.01 to fix kernel module build for Linux 5.17. * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005932) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip build for -rt kernels, not supported upstream. * Declare Testsuite: autopkgtest-pkg-dkms. nvidia-graphics-drivers-tesla-460 (460.106.00-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-460 (460.106.00-6) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device, cc_mkdec and drm_mode_config_has_allow_fb_modifiers changes from 470.129.06 to fix kernel module build for Linux 5.18. * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-460 (460.106.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-460 (460.106.00-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers-tesla-460 (460.106.00-3) unstable; urgency=medium . * The Tesla 460 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * Turn metapackages into transitional packages to aid switching to nvidia-graphics-drivers-tesla-470. (Closes: #1004852, #1005933, #1011145) * Provide less virtual packages. * Remove the Tesla 460 driver from the nvidia alternative. . nvidia-graphics-drivers-tesla-460 (460.106.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. (Closes: #1005406) * nvidia-tesla-460-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-tesla-460 (460.106.00-1) unstable; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-460-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * Drop the unusable leftover non-GLVND libegl1-nvidia-tesla-460 package (470.82.00-1). * nvidia-tesla-460-alternative: Drop unused non-GLVND slave links (470.82.00-1). * Update lintian overrides. . nvidia-graphics-drivers-tesla-460 (460.91.03-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. nvidia-graphics-drivers-tesla-460 (460.106.00-6~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-460 (460.106.00-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-460 (460.106.00-6) unstable; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device, cc_mkdec and drm_mode_config_has_allow_fb_modifiers changes from 470.129.06 to fix kernel module build for Linux 5.18. * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. . nvidia-graphics-drivers-tesla-460 (460.106.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers-tesla-460 (460.106.00-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers-tesla-460 (460.106.00-3) unstable; urgency=medium . * The Tesla 460 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * Turn metapackages into transitional packages to aid switching to nvidia-graphics-drivers-tesla-470. (Closes: #1004852, #1005933, #1011145) * Provide less virtual packages. * Remove the Tesla 460 driver from the nvidia alternative. . nvidia-graphics-drivers-tesla-460 (460.106.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. (Closes: #1005406) * nvidia-tesla-460-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-tesla-460 (460.106.00-1) unstable; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-460-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * Drop the unusable leftover non-GLVND libegl1-nvidia-tesla-460 package (470.82.00-1). * nvidia-tesla-460-alternative: Drop unused non-GLVND slave links (470.82.00-1). * Update lintian overrides. . nvidia-graphics-drivers-tesla-460 (460.91.03-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. nvidia-graphics-drivers-tesla-460 (460.106.00-5) unstable; urgency=medium . * Backport linker scripts changes from 510.60.02. * Refresh patches. * Bump Standards-Version to 4.6.1. No changes needed. nvidia-graphics-drivers-tesla-460 (460.106.00-4) unstable; urgency=medium . * Update kernel-5.7.0-set-memory-array.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. nvidia-graphics-drivers-tesla-460 (460.106.00-3) unstable; urgency=medium . * The Tesla 460 driver series has been declared as End-of-Life by NVIDIA. No further updates fixing security issues, critical bugs, or adding support for new Xorg or Linux releases will be issued. https://docs.nvidia.com/datacenter/tesla/drivers/ . * Turn metapackages into transitional packages to aid switching to nvidia-graphics-drivers-tesla-470. (Closes: #1004852, #1005933) * Provide less virtual packages. * Remove the Tesla 460 driver from the nvidia alternative. nvidia-graphics-drivers-tesla-460 (460.106.00-2) unstable; urgency=medium . * Backport stdarg.h and stddef.h changes from 495.44 to fix kernel module build for Linux 5.16. * Backport pde_data changes from 510.39.01 to fix kernel module build for Linux 5.17. (Closes: #1005406) * nvidia-tesla-460-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip build for -rt kernels, not supported upstream. * Declare Testsuite: autopkgtest-pkg-dkms. nvidia-graphics-drivers-tesla-460 (460.106.00-1) unstable; urgency=medium . * New upstream Tesla release 460.106.00 (2021-10-26). . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-460-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). * Fix bashisms in upstream scripts (470.82.00-1). * Drop the unusable leftover non-GLVND libegl1-nvidia-tesla-460 package (470.82.00-1). * nvidia-tesla-460-alternative: Drop unused non-GLVND slave links (470.82.00-1). * Update lintian overrides. nvidia-graphics-drivers-tesla-460 (460.91.03-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. nvidia-graphics-drivers-tesla-470 (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-470 (470.129.06-6) unstable; urgency=medium . * Rebuild as Tesla 470 driver. * Build nvidia-cuda-mps from the Tesla driver. . nvidia-graphics-drivers (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.129.06-6) unstable; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. . nvidia-graphics-drivers-tesla-470 (470.129.06-5) unstable; urgency=medium . * Rebuild as Tesla 470 driver. * Temporarily disable autopkgtest on ppc64el. (Cf. #1012245) . nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. . nvidia-graphics-drivers-tesla-470 (470.129.06-4) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. . nvidia-graphics-drivers-tesla-470 (470.129.06-3) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. . nvidia-graphics-drivers-tesla-470 (470.129.06-2) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) . nvidia-graphics-drivers-tesla-470 (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011146) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . nvidia-graphics-drivers (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011140) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. (Closes: #1011183) - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. * Import missing legacy IDs from the 510.* README.txt. The Kepler notebook GPUs seem still supported by the 470.* driver. (Closes: #1011245, #939447, #939067) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers (470.103.01-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers (470.103.01-3~deb11u2) bullseye; urgency=medium . * Re-enable building libnvidia-nvvm4. . nvidia-graphics-drivers (470.103.01-3~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. * Temporarily disable building libnvidia-nvvm4 to avoid NEW. . nvidia-graphics-drivers (470.103.01-3) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). * nvidia-detect: Drop support for Tesla 460 drivers (EoL). nvidia-graphics-drivers-tesla-470 (470.129.06-6~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-graphics-drivers-tesla-470 (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-470 (470.129.06-6) unstable; urgency=medium . * Rebuild as Tesla 470 driver. * Build nvidia-cuda-mps from the Tesla driver. . nvidia-graphics-drivers (470.129.06-6~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers (470.129.06-6) unstable; urgency=medium . * Minor packaging sync and cleanup. * Disable building nvidia-cuda-mps, will be built from src:nvidia-graphics-drivers-tesla-${latest}. . nvidia-graphics-drivers-tesla-470 (470.129.06-5) unstable; urgency=medium . * Rebuild as Tesla 470 driver. * Temporarily disable autopkgtest on ppc64el. (Cf. #1012245) . nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. . nvidia-graphics-drivers-tesla-470 (470.129.06-4) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. . nvidia-graphics-drivers-tesla-470 (470.129.06-3) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. . nvidia-graphics-drivers-tesla-470 (470.129.06-2) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) . nvidia-graphics-drivers-tesla-470 (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011146) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . nvidia-graphics-drivers (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011140) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. (Closes: #1011183) - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. * Import missing legacy IDs from the 510.* README.txt. The Kepler notebook GPUs seem still supported by the 470.* driver. (Closes: #1011245, #939447, #939067) * Bump Standards-Version to 4.6.1. No changes needed. . nvidia-graphics-drivers (470.103.01-4) unstable; urgency=medium . * Update 0003-fix-conftest-includes.patch to fix kernel module build for ppc64el. * Backport mt_device_gre changes from 510.39.01 to fix kernel module build for arm64. * Refresh patches. . nvidia-graphics-drivers (470.103.01-3~deb11u2) bullseye; urgency=medium . * Re-enable building libnvidia-nvvm4. . nvidia-graphics-drivers (470.103.01-3~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. * Temporarily disable building libnvidia-nvvm4 to avoid NEW. . nvidia-graphics-drivers (470.103.01-3) unstable; urgency=medium . * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). * nvidia-detect: Drop support for Tesla 460 drivers (EoL). . nvidia-graphics-drivers-tesla-470 (470.103.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-470 (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005934) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005311) * nvidia-detect: Add support for (Tesla) 470 drivers in bullseye. . nvidia-graphics-drivers-tesla-470 (470.103.01-1) unstable; urgency=medium . * Rebuild as Tesla 470 driver. (Closes: #1004853) . nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added an application profile to avoid an image corruption issue in Blender, as described at https://developer.blender.org/T76874 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. . nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) . nvidia-graphics-drivers-tesla-470 (470.82.01-1) unstable; urgency=medium . * New upstream Tesla release 470.82.01 (2021-11-02). - Fixed a regression which prevented DisplayPort and HDMI 2.1 variable refresh rate (VRR) G-SYNC Compatible monitors from functioning correctly in variable refresh rate mode, resulting in issues such as flickering. . nvidia-graphics-drivers (470.82.00-1) unstable; urgency=medium . * New upstream production branch release 470.82.00 (2021-10-26). - Added support for the following GPUs: Matrox D-Series D2450, Matrox D-Series D2480, NVIDIA A2. - Fixed a bug that can cause a kernel crash in SLI Mosaic configurations. - Added support for the EGL_NV_robustness_video_memory_purge extension * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * bug-script: Show the nvidia and glx alternatives. * nvidia-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative. (Closes: #996595) * Fix bashisms in upstream scripts. * Drop the unusable leftover non-GLVND libegl1-nvidia package. (Closes: #996763) * nvidia-alternative: Drop unused non-GLVND slave links. * Restrict watch file to releases from the 470.xx production branch. * Update lintian overrides. . nvidia-graphics-drivers (470.74-1) unstable; urgency=medium . * New upstream production branch release 470.74 (2021-09-20). - Fixed a bug that could cause GPU applications to exit when resuming from suspend. - Fixed a regression which resulted in very-high system memory usage for Direct3D 12 games when run through vkd3d-proton. (Closes: #994942, #995271, #996031, #996164, #996468) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.63.01-1) unstable; urgency=medium . * New upstream production branch release 470.63.01 (2021-08-10). - Added an application profile to disable FXAA for Firefox to prevent visual corruption. - Added support for the VK_KHR_wayland_surface extension. - Fixed a Vulkan performance regression that affected rFactor2. (Closes: #994633) . [ Andreas Beckmann ] * libegl-nvidia0: Ship new library libnvidia-vulkan-producer.so.#VERSION# but do not provide alternatives since it is unclear how this undocumented SONAME-less library is supposed to be used. * Add Build-Depends: libnvidia-egl-wayland1. * nvidia-kernel-support: Restore nvidia-modprobe.conf which might have gone missing due to bugs in debhelper (#994919) and dpkg (#995387). (Closes: #994971) . nvidia-graphics-drivers-tesla-470 (470.57.02-2) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. . nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-graphics-drivers-tesla-470 (470.57.02-1) unstable; urgency=medium . * Fork as new source package, rename everything to include '-tesla-470'. * Do not build 'unversioned' packages from this source. * Upload to unstable. . nvidia-graphics-drivers (470.57.02-1) experimental; urgency=medium . * New upstream production branch release 470.57.02 (2021-07-19). * Fixed CVE-2021-1093, CVE-2021-1094, CVE-2021-1095. (Closes: #991351) https://nvidia.custhelp.com/app/answers/detail/a_id/5211 - Fixed a bug that could cause flickering in Blender and Steam when running on Xwayland. - Fixed a bug that caused GTK+3 applications using the GtkGLArea class to crash when running on Xwayland. - Added a workaround for DOOM Eternal, which avoids an application bug where Vulkan swapchain recreation events are not properly handled. On desktops like GNOME where the window is initially redirected to the compositor, this may prevent the game from flipping (and thus enabling G-SYNC). - Added a workaround for Far Cry 5 when run through DXVK, which avoids a shader race condition bug that was previously exposed by new compiler optimizations. - Added support for the following GPUs: NVIDIA A100 80GB PCIe, NVIDIA A16, NVIDIA PG506-243, NVIDIA PG506-242, NVIDIA CMP 90HX, NVIDIA CMP 70HX, NVIDIA RTX A2000, NVIDIA T4G. . [ Luca Boccassi ] * Update nv-readme.ids. * Update symbols files. . [ Andreas Beckmann ] * Refresh patches. * libcuda1: Add Provides: libcuda-11.4-1{,-i386}. * nvidia-detect: Add support for Tesla 470 drivers. . nvidia-graphics-drivers (470.42.01-1) experimental; urgency=medium . * New upstream beta 470.42.01 (2021-06-22). - Added support for the following GPUs: A100-PG506-207, A100-PG506-217. - Increased the maximum limit on concurrent OpenGL contexts. This limit was previously constrained by a fixed-size internal driver resource, and is now constrained by available system memory. - Applications that exceed the maximum limit on concurrent OpenGL contexts will now receive a BadAlloc X error rather than crashing. - Fixed a bug that could cause the X server to crash upon shutdown with some configurations using GPU screens. - Fixed a bug that could cause rendering errors when displaying scaled MetaModes using the "Nearest" resampling method. - Fixed a bug that could cause OpenGL applications run in PID namespaces to hang upon exit, generating warnings such as the following in the X log: (WW) NVIDIA: Wait for channel idle timed out. - Added support for PRIME Display Offload where both the display offload source and display offload sink are driven by the NVIDIA X Driver. - Added support for PRIME Display Offload where the display offload source is AMDGPU. - Fixed a bug that could prevent the driver from applying application profiles when running applications through Proton or Wine on a PRIME Render Offload configuration. - Fixed a bug that could cause NvFBC's "direct capture" to crash the X server when certain GLX calls are made during a capture. - Added an NVIDIA NGX build for use with Proton and Wine. A new library, nvngx.dll, has been added to enable driver-side support for running Windows applications which make use of DLSS. Changes to Proton, Wine, and other third-party software are needed for this feature. - Added support for VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT from the VK_EXT_global_priority extension. This enables support for asynchronous reprojection in SteamVR. VK_QUEUE_GLOBAL_PRIORITY_REALTIME_EXT is supported on Pascal GPUs and newer. Global priorities other than VK_QUEUE_GLOBAL_PRIORITY_MEDIUM_EXT require root privileges or the CAP_SYS_NICE capability. - Added support for the VK_EXT_global_priority_query extension. - Added the nvidia-peermem.ko kernel module. This module provides Mellanox InfiniBand HCAs (Host Channel Adapters) direct peer-to-peer access to NVIDIA GPU memory without need without needing to copy data to host memory. See the chapter "GPUDirect RDMA Peer Memory Client" in the README for details. - Added support for the VK_EXT_provoking_vertex extension. - Initial support for hardware accelerated OpenGL and Vulkan rendering on Xwayland. See the chapter "OpenGL and Vulkan on Xwayland" in the README for details. - Fixed a bug that could cause intermittent corruption in Wolfenstein: Youngblood when using NVIDIA Kepler, Maxwell, Pascal, and Volta GPUs. - Fixed a bug that could cause games running with DXVK to crash with Xid 31 (MMU Fault) errors when using NVIDIA Pascal GPUs. - Added support for the VK_EXT_extended_dynamic_state2 extension. - Added support for the VK_EXT_color_write_enable extension. - Added support for the VK_EXT_vertex_input_dynamic_state extension. - Added support for the VK_EXT_ycbcr_2plane_444_formats extension. - Added support for the VK_NV_inherited_viewport_scissor extension. - NvFBC's "direct capture" mode no longer causes flipping to be disabled for applications being captured. G-SYNC can now also be used simultaneously with NvFBC direct capture. - Deprecated NvIFROpenGL support. Release 470 will be the last to support this functionality. NvIFROpenGL header files, samples and documentation were removed from the NVIDIA Capture SDK 7.1.9 release. Future drivers will remove libnvidia-ifr.so and any other reference to NvIFROpenGL. For details please see: https://developer.nvidia.com/nvidia-video-codec-sdk - Fixed a bug that prevented Vulkan direct-to-display from working when DRM KMS is enabled. - Enabled the NVIDIA driver, by default, to attempt to initialize SLI when using GPUs with different amounts of video memory. Previously, this was only available when bit 1 was set in the "Coolbits" X config option. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. - Fixed an issue where vkCreate{Graphics,Compute}Pipeline would sometimes crash when the shaders contained resources with no set/binding. - Fixed a memory fault in the Vulkan driver when using some smaller dimensions of sparse images. - Fixed an issue with vkCmdSetViewport when firstViewport is non-zero. - Fixed handling of VK_DESCRIPTOR_BINDING_VARIABLE_DESCRIPTOR_COUNT_BIT for variable size descriptor bindings. * Fixed crash with certain DisplayPort devices. (Closes: #989069) . [ Andreas Beckmann ] * Update nv-readme.ids. * Update symbols files. * libnvidia-nvvm4: New package for the NVVM Compiler library. * Drop manually added Depends: libcuda1 from libraries not referencing it. * nvidia-driver-libs: Add Recommends: libnvidia-encode1. (Closes: #989885) . nvidia-graphics-drivers (465.31-1) experimental; urgency=medium . * New upstream new feature branch release 465.31 (2021-05-18). . [ Andreas Beckmann ] * Update nv-readme.ids. . nvidia-graphics-drivers (465.27-1) experimental; urgency=medium . * New upstream new feature branch release 465.27 (2021-04-29). . [ Andreas Beckmann ] * libcuda1: Add Provides: libcuda-11.3-1{,-i386}. * Build the nvidia-peermem kernel module. . nvidia-graphics-drivers (465.24.02-1) experimental; urgency=medium . * New upstream new feature branch release 465.24.02 (2021-04-14). * Fixed CVE-2021-1076, CVE-2021-1077. (Closes: #987216) https://nvidia.custhelp.com/app/answers/detail/a_id/5172 * New upstream beta 465.19.01 (2021-03-30). - Added gsp.bin firmware file which is used to offload the GPU initialization and management tasks on some GPUs. See the "GSP Firmware" chapter in the README for more information. - Improved X11 DrawText() performance when rendering stippled text. - Fixed a bug that could prevent some hardware configurations with large numbers of displays connected to the same GPU from working correctly. - Fixed a bug that could cause multi-threaded GLX applications to hang while attempting to handle an XError. - Fixed a potential crash in the Vulkan driver when clearing images with multiple layers. - Fixed a bug with the host-visible device-local memory heap, where if an allocation failed due to space constraints, it could cause the application to crash on future Vulkan function calls. - Fixed corruption in the Vulkan driver that sometimes occurred with shadow rendering with image arrays. - Added support for the VK_KHR_synchronization2 extension. - Added support for the VK_KHR_workgroup_memory_explicit_layout extension. - Added support for the VK_KHR_zero_initialize_workgroup_memory extension. - Added support for linear images for use with host-visible video memory in Vulkan. - Fixed an issue with OpenGL where imported Vulkan buffers would fail with GL_OUT_OF_MEMORY when marked as resident. - Fixed a bug that caused the NVIDIA driver to retain an incorrect memory mapping of the UEFI system console when booting with the kernel parameter pci=realloc. This could cause the console to corrupt memory in use by the NVIDIA driver, and vice versa. - Runtime D3 Power Management is now enabled by default on supported notebook systems with Ampere or newer GPUs. See the chapter titled "PCI-Express Runtime D3 (RTD3) Power Management" in the README for further details. - Updated the NVIDIA X driver to allow OpenGL applications running on an X server that has left the active virtual terminal (VT) to continue running on the GPU, but with a limited frame rate. This functionality is only enabled when the NVreg_PreserveVideoMemoryAllocations=1 nvidia module parameter is enabled. - Fix a Vulkan clamping bug where fragment depth values would not be clamped to the range [0,1] if VK_EXT_depth_range_unrestricted was not enabled. - Fix a bug related to SPIR-V 1.4 non-Input/Output entry point variables. - Fixed a bug in compilation of SPIR-V intersection shaders when modules with multiple entry points are used. . [ Andreas Beckmann ] * Update symbols files. * Ship the gsp.bin firmware blob on amd64. * Some power management features were not yet in Linux 2.6.32. * Update lintian overrides. * Upload to experimental. . nvidia-graphics-drivers-tesla-460 (460.106.00-6) UNRELEASED; urgency=medium . * Backport pci/dma, iosys_map, dma_set_coherent_mask, acpi_bus_get_device, cc_mkdec and drm_mode_config_has_allow_fb_modifiers changes from 470.129.06 to fix kernel module build for Linux 5.18. * Minor packaging sync and cleanup (470.129.06-6). * Update lintian overrides. nvidia-graphics-drivers-tesla-470 (470.129.06-5) unstable; urgency=medium . * Temporarily disable autopkgtest on ppc64el. (Cf. #1012245) . nvidia-graphics-drivers (470.129.06-5) unstable; urgency=medium . * Update lintian overrides. nvidia-graphics-drivers-tesla-470 (470.129.06-4) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-4) unstable; urgency=medium . * Use different virtual packages for firmware file Conflicts and Depends. nvidia-graphics-drivers-tesla-470 (470.129.06-3) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-3) unstable; urgency=medium . * Do not create backups when patching README.txt. nvidia-graphics-drivers-tesla-470 (470.129.06-2) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.129.06-2) unstable; urgency=medium . * Fix discrepancy between amd64 and i386 README.txt. (Closes: #1011527) nvidia-graphics-drivers-tesla-470 (470.129.06-1) unstable; urgency=medium . * New upstream production branch release 470.129.06 (2022-05-16). * Fixed CVE-2022-28181, CVE-2022-28183, CVE-2022-28184, CVE-2022-28185, CVE-2022-28191, CVE-2022-28192. (Closes: #1011146) https://nvidia.custhelp.com/app/answers/detail/a_id/5353 - Added support for the following GPUs: GeForce RTX 3050, GeForce RTX 3070 Ti Laptop GPU, GeForce RTX 3080 Ti Laptop GPU, GeForce RTX 3090 Ti, RTX A500 Laptop GPU, RTX A1000 Embedded GPU, RTX A2000 Embedded GPU, RTX A1000 Laptop GPU, RTX A2000 8GB Laptop GPU, RTX A3000 12GB Laptop GPU, RTX A4500 Embedded GPU, RTX A4500 Laptop GPU, RTX A5500 Laptop GPU, T550 Laptop GPU. - Fixed an issue where NvFBC was requesting Vulkan 1.0 while using Vulkan 1.1 core features. This caused NvFBC to fail to initialize with Vulkan loader versions 1.3.204 or newer. nvidia-graphics-drivers-tesla-470 (470.103.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005934) * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). nvidia-graphics-drivers-tesla-470 (470.103.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. nvidia-graphics-drivers-tesla-470 (470.103.01-1) unstable; urgency=medium . * Rebuild as Tesla 470 driver. (Closes: #1004853) . nvidia-graphics-drivers (470.103.01-1) unstable; urgency=medium . * New upstream production branch release 470.103.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004847) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Added support for the following GPUs: NVIDIA GeForce MX550, NVIDIA GeForce MX570, NVIDIA GeForce RTX 2050. . [ Andreas Beckmann ] * Refresh patches. * Update nv-readme.ids. . nvidia-graphics-drivers (470.94-1) unstable; urgency=medium . * New upstream production branch release 470.94 (2021-12-13). - Added support for the following GPU: NVIDIA PG509-210. - Worked around an issue that prevented some games from flipping (and therefore taking advantage of G-SYNC and G-SYNC Compatible monitors) on certain desktops such as GNOME. . [ Andreas Beckmann ] * Update nv-readme.ids. * Update lintian overrides. . nvidia-graphics-drivers (470.86-1) unstable; urgency=medium . * New upstream production branch release 470.86 (2021-11-10). - Added support for the following GPUs: RTX A2000 12GB, RTX A4500, T400 4GB, T1000 8GB. . [ Andreas Beckmann ] * Update nv-readme.ids. * nvidia-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative. (Closes: #999670) nvidia-graphics-drivers-tesla-470 (470.82.01-1) unstable; urgency=medium . * New upstream Tesla release 470.82.01 (2021-11-02). - Fixed a regression which prevented DisplayPort and HDMI 2.1 variable refresh rate (VRR) G-SYNC Compatible monitors from functioning correctly in variable refresh rate mode, resulting in issues such as flickering. nvidia-graphics-drivers-tesla-470 (470.57.02-2) unstable; urgency=medium . * Rebuild as Tesla 470 driver. . nvidia-graphics-drivers (470.57.02-3) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. (Closes: #994860) * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore. (Closes: #992057) * Bump Standards-Version to 4.6.0. No changes needed. * Update lintian overrides. . nvidia-graphics-drivers (470.57.02-2) unstable; urgency=medium . * Upload to unstable. nvidia-graphics-drivers-tesla-470 (470.57.02-1) unstable; urgency=medium . * Fork as new source package, rename everything to include '-tesla-470'. * Do not build 'unversioned' packages from this source. * Upload to unstable. nvidia-persistenced (470.103.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-persistenced (470.103.01-2) unstable; urgency=medium . * Drop alternative dependency on libnvidia-tesla-460-cfg1. (EoL, switch to libnvidia-tesla-470-cfg1.) * Add libnvidia-tesla-510-cfg1 as alternative dependency. . nvidia-persistenced (470.103.01-1) unstable; urgency=medium . * New upstream release. . nvidia-persistenced (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-persistenced (470.57.02-1) unstable; urgency=medium . * New upstream release. * Add libnvidia-tesla-{470,460}-cfg1 as alternative dependencies. nvidia-persistenced (470.103.01-1) unstable; urgency=medium . * New upstream release. nvidia-persistenced (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. nvidia-persistenced (470.57.02-1) unstable; urgency=medium . * New upstream release. * Add libnvidia-tesla-{470,460}-cfg1 as alternative dependencies. nvidia-settings (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.103.01-1) unstable; urgency=medium . * New upstream release 470.103.01. . nvidia-settings (470.94-1) unstable; urgency=medium . * New upstream release 470.94. * Update Lintian overrides. . nvidia-settings (470.82.00-1) unstable; urgency=medium . * New upstream release 470.82.00. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-settings (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-settings (470.57.02-1) experimental; urgency=medium . * New upstream release 470.57.02. - Updated the nvidia-settings command line interface to confirm successful assignment of string attributes. This makes the behavior more consistent with other types of attribute assignments. * New upstream release 470.42.01. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. * New upstream release 465.19.01. - Updated the nvidia-settings control panel to be more consistent about displaying layout controls which are only applicable for some displays or GPUs connected to the system. * Refresh patches. * Upload to experimental. nvidia-settings (470.103.01-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-settings (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings (470.103.01-1) unstable; urgency=medium . * New upstream release 470.103.01. . nvidia-settings (470.94-1) unstable; urgency=medium . * New upstream release 470.94. * Update Lintian overrides. . nvidia-settings (470.82.00-1) unstable; urgency=medium . * New upstream release 470.82.00. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-settings (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-settings (470.57.02-1) experimental; urgency=medium . * New upstream release 470.57.02. - Updated the nvidia-settings command line interface to confirm successful assignment of string attributes. This makes the behavior more consistent with other types of attribute assignments. * New upstream release 470.42.01. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. * New upstream release 465.19.01. - Updated the nvidia-settings control panel to be more consistent about displaying layout controls which are only applicable for some displays or GPUs connected to the system. * Refresh patches. * Upload to experimental. . nvidia-settings (460.91.03-1) unstable; urgency=medium . * New upstream release 460.91.03. . nvidia-settings (460.73.01-1) unstable; urgency=medium . [ Andreas Beckmann ] * New upstream release 460.73.01. . [ Pino Toscano ] * Install nvidia-settings.png in the hicolor icon theme, rather than the legacy pixmaps location. . nvidia-settings (460.56-1) unstable; urgency=medium . * New upstream release 460.56. nvidia-settings (470.94-1) unstable; urgency=medium . * New upstream release 470.94. * Update Lintian overrides. nvidia-settings (470.94-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . nvidia-settings (470.94-1) unstable; urgency=medium . * New upstream release 470.94. * Update Lintian overrides. . nvidia-settings (470.82.00-1) unstable; urgency=medium . * New upstream release 470.82.00. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-settings (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-settings (470.57.02-1) experimental; urgency=medium . * New upstream release 470.57.02. - Updated the nvidia-settings command line interface to confirm successful assignment of string attributes. This makes the behavior more consistent with other types of attribute assignments. * New upstream release 470.42.01. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. * New upstream release 465.19.01. - Updated the nvidia-settings control panel to be more consistent about displaying layout controls which are only applicable for some displays or GPUs connected to the system. * Refresh patches. * Upload to experimental. nvidia-settings (470.82.00-1) unstable; urgency=medium . * New upstream release 470.82.00. * Bump Standards-Version to 4.6.0. No changes needed. nvidia-settings (470.57.02-2) unstable; urgency=medium . * Upload to unstable. nvidia-settings (470.57.02-1) experimental; urgency=medium . * New upstream release 470.57.02. - Updated the nvidia-settings command line interface to confirm successful assignment of string attributes. This makes the behavior more consistent with other types of attribute assignments. * New upstream release 470.42.01. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. * New upstream release 465.19.01. - Updated the nvidia-settings control panel to be more consistent about displaying layout controls which are only applicable for some displays or GPUs connected to the system. * Refresh patches. * Upload to experimental. nvidia-settings-tesla-470 (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. nvidia-settings-tesla-470 (470.103.01-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-settings-tesla-470 (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-settings-tesla-470 (470.103.01-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.103.01-1) unstable; urgency=medium . * New upstream release 470.103.01. . nvidia-settings-tesla-470 (470.94-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.94-1) unstable; urgency=medium . * New upstream release 470.94. * Update Lintian overrides. . nvidia-settings-tesla-470 (470.82.00-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. . nvidia-settings (470.82.00-1) unstable; urgency=medium . * New upstream release 470.82.00. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-settings (470.57.02-2) unstable; urgency=medium . * Upload to unstable. . nvidia-settings-tesla-470 (470.57.02-1) unstable; urgency=medium . * Initial release of nvidia-settings for use with the Tesla 470 driver. * Build only a single binary package, no -dev package or shared library. * Upload to unstable. . nvidia-settings (470.57.02-1) experimental; urgency=medium . * New upstream release 470.57.02. - Updated the nvidia-settings command line interface to confirm successful assignment of string attributes. This makes the behavior more consistent with other types of attribute assignments. * New upstream release 470.42.01. - Updated GPU fan control to be available by default in nvidia-settings and NV-CONTROL, for GPU boards that support programmable fan control. Previously, this was only available when bit 2 was set in the "Coolbits" X config option. * New upstream release 465.19.01. - Updated the nvidia-settings control panel to be more consistent about displaying layout controls which are only applicable for some displays or GPUs connected to the system. * Refresh patches. * Upload to experimental. nvidia-settings-tesla-470 (470.94-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. nvidia-settings-tesla-470 (470.82.00-1) unstable; urgency=medium . * Rebuild as nvidia-settings-tesla-470. nvidia-settings-tesla-470 (470.57.02-1) unstable; urgency=medium . * Initial release of nvidia-settings for use with the Tesla 470 driver. * Build only a single binary package, no -dev package or shared library. * Upload to unstable. nvidia-xconfig (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-xconfig (470.103.01-1) unstable; urgency=medium . * New upstream release. . nvidia-xconfig (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. . nvidia-xconfig (470.57.02-1) unstable; urgency=medium . * New upstream release. nvidia-xconfig (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. nvidia-xconfig (470.57.02-1) unstable; urgency=medium . * New upstream release. openjdk-11 (11.0.15+10-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-11 (11.0.15+10-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster openjdk-11 (11.0.14.1+1-1) unstable; urgency=medium . * OpenJDK 11.0.14.1+1 build (release). - Fix JDK-8218546. LP: #1966338. openjdk-11 (11.0.14+9-1) unstable; urgency=high . * OpenJDK 11.0.14+9 build (release). openjdk-17 (17.0.3+7-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-17 (17.0.2+8-1) unstable; urgency=high . * OpenJDK 17.0.2+8 (release). * Addresses security issues: CVE-2022-21366, CVE-2022-21365, CVE-2022-21360, CVE-2022-21341, CVE-2022-21340, CVE-2022-21305, CVE-2022-21299, CVE-2022-21296, CVE-2022-21294, CVE-2022-21293, CVE-2022-21291, CVE-2022-21283, CVE-2022-21282, CVE-2022-21277, CVE-2022-21248. openldap (2.4.57+dfsg-3+deb11u1) bullseye-security; urgency=high . * Fix SQL injection in back-sql (ITS#9815) (CVE-2022-29155) openldap (2.4.57+dfsg-3+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . openldap (2.4.57+dfsg-3+deb11u1) bullseye-security; urgency=high . * Fix SQL injection in back-sql (ITS#9815) (CVE-2022-29155) openssh (1:8.4p1-5+deb11u1) bullseye; urgency=medium . * Backport from upstream: - Add new pselect6_time64 syscall on 32-bit architectures (closes: #1004427). openssl (1.1.1n-0+deb11u3) bullseye-security; urgency=medium . * CVE-2022-2068 (The c_rehash script allows command injection). * Update expired certs. openssl (1.1.1n-0+deb11u2) bullseye-security; urgency=medium . * CVE-2022-1292 (The c_rehash script allows command injection). orca (3.38.2-2) bullseye; urgency=high . * debian/patches/git-webkitgtk1: Fix screen reading of webkitgtk 2.36 which changed its toolkit name * debian/patches/git-webkitgtk2: Fix screen reading of webkitgtk 2.36 which doesn't implement Collection any more. php-guzzlehttp-psr7 (1.7.0-1+deb11u1) bullseye; urgency=medium . * Track Bullseye * Backport fixes for improper header parsing [CVE-2022-24775] (Closes: #1008236) php-twig (2.14.3-1+deb11u1) bullseye-security; urgency=high . * Backport fix from 3.3.8 [CVE-2022-23614] Disallow calling non Closure in the `sort` filter as is the case for some other filters. phpmyadmin (4:5.0.4+dfsg2-2+deb11u1) bullseye; urgency=medium . * Add a patch for error 500 with some SQL queries (Closes: #1012847) postfix (3.5.13-0+deb11u1) bullseye; urgency=medium . [Scott Kitterman] . * Update debian/watch to track v3.5 versions for stable updates * Refresh patches * Include compatibility_level in addition to postifx version when determining default value for chroot in master.cf. Closes: #995129 * Fixup errors in postifx-add-* man pages. Closes: #995031 * Update main/master.cf.proto on upgrade if not modified. Closes: #991513 * Update d/p/70_postfix-check.diff to exclude makedefs.out from synlink check. Closes: #926331 * Test that nothing is reported by postfix check in autopkgtest * Do not override user set default_transport in postinst. Closes: #988538 * Add information about keeping resolv.conf up to date in the chroot with the resolvconf package. Closes: #964762 . [Sergio Gelato] . * Correct if-up.d to not error out if postfix can't send mail yet. Closes: #959864 . [Miriam España Acebal] . * Removed LDFLAG -Bsymbolic-functions to fix issue where TLS is disabled when private/tlmsgr socket is not found. lp: #1885403 . [Paride Legovini] . * d/postfix.postinst: tolerate search domain with a leading dot. Closes: #991950 . [Wietse Venema] . * 3.5.7 - Bugfix (introduced: Postfix 3.4, already fixed in Postfix 3.6): tlsproxy(8) was using the wrong DANE macro for connections with DANE trust anchors or with non-DANE trust anchors (WTF: Thorsten Habich found this bug in the use case that has nothing to do with DANE). This resulted in a global certificate verify function pointer race, between TLS handshakes that use TLS trust achors and handshakes that use PKI. No memory was corrupted in the course of all this. Viktor Dukhovni. File: tlsproxy/tlsproxy.c. . - Cleanup: the posttls-finger '-X' option reported a false conflict with '-r'. File: posttls-finger/posttls-finger.c. . * 3.5.8 - Bugfix (introduced: Postfix 2.0): smtp_sasl_mechanism_filter ignored table lookup errors, treating them as 'not found'. Found during Postfix 3.6 development. File: smtp/smtp_sasl_proto.c. . - Bugfix (introduced: Postfix 2.3): when deleting a recipient with a milter, delete the recipient from the duplicate filter, so that the recipient can be added back. Backported from Postfix 3.6. Files: global/been_here.[hc], cleanup/cleanup_milter.c. . - Bugfix (introduced: before Postfix alpha): the code that looks for Delivered-To: headers ignored headers longer than $line_length_limit. Backported from Postfix 3.6. File: global/delivered_hdr.c. . - Bugfix (introduced: Postfix 2.8): save a copy of the postscreen_dnsbl_reply_map lookup result. This has no effect when the recommended texthash: look table is used, but it may avoid stale data with other lookup tables. File: postscreen/postscreen_dnsbl.c. . - Bugfix (introduced: Postfix 2.2): after processing an XCCLIENT command, the smtps service was waiting for a TLS handshake. Found by Aki Tuomi. File: smtpd/smtpd.c. . - Bugfix (introduced: Postfix 2.3): static maps did not free their casefolding buffer. File: util/dict_static.c. . - Bugfix (introduced: Postfix 3.5): the Postfix SMTP client broke message headers longer than $line_length_limit, causing subsequent header content to become message body content. Reported by Andreas Weigel, fix by Viktor Dukhovni. File: smtp/smtp_proto.c. . * 3.5.9 - Feature: when a Postfix program makes a DNS query that requests DNSSEC validation (usually for Postfix DANE support) but the DNS response is not DNSSEC validated, Postfix will send a DNS query configured with the "dnssec_probe" parameter to determine if DNSSEC support is available, and logs a warning if it is not. By default, the probe has type "ns" and domain name ".". The probe is sent once per process lifetime. Files: dns/dns.h, dns/dns_lookup.c, dns/dns_sec.c, test_dns_lookup.c, global/mail_params.[hc], mantools/postlink. . - The default "smtp_tls_dane_insecure_mx_policy = dane" was causing unnecessary dnssec_probe activity. The default is now "dane" when smtp_tls_security_level is "dane", otherwise it is "may". File: global/mail_params.h. . * 3.5.10 - Missing null pointer checks (introduced: Postfix 3.4) after an internal I/O error during the smtp(8) to tlsproxy(8) handshake. Found by Coverity, reported by Jaroslav Skarvada. Based on fix by Viktor Dukhovni. File: tls/tls_proxy_client_scan.c. . - Null pointer bug (introduced: Postfix 3.0) and memory leak (introduced: Postfix 3.4) after an inline: table syntax error in main.cf or master.cf. Found by Coverity, reported by Jaroslav Skarvada. Based on fix by Viktor Dukhovni. File: util/dict_inline.c. . - Incomplete null pointer check (introduced: Postfix 2.10) after truncated HaProxy version 1 handshake message. Found by Coverity, reported by Jaroslav Skarvada. Fix by Viktor Dukhovni. File: global/haproxy_srvr.c. . - Missing null pointer check (introduced: Postfix alpha) after null argv[0] value. File: global/mail_task.c. . * 3.5.11 - Bugfix (introduced: Postfix 2.11): the command "postmap lmdb:/file/name" handled duplicate keys ungracefully, discarding entries stored up to and including the duplicate key, and causing a double free() call with lmdb versions 0.9.17 and later. Reported by Adi Prasaja; double free() root cause analysis by Howard Chu. File: util/slmdb.c. . - Typo (introduced: Postfix 3.4): silent_discard should be silent-discard. File: proto/BDAT_README.html. . - Support for Postfix 3.6 compatibility_level syntax, to avoid fatal runtime errors when rolling back from Postfix 3.6 to an earlier supported version, or when sharing Postfix 3.6 configuration files with an earlier supported Postfix version. File: global/mail_params.c. . * 3.5.12 - Bugfix (introduced: Postfix 3.4): the texthash: map implementation did not support "postmap -F" behavior. Reported by Christopher Gurnee, who also found the missing code in the postmap source. File: util/dict_thash.c. . - Bugfix (introduced: 1999, Postfix 2.11) latent false "Result too large" (ERANGE) errors because an strtol() call had no 'errno = 0' statement before the call. Back-ported from Postfix 3.6. Files: postscreen/postscreen_tests.c, util/mac_expand.c. . - Bugfix (introduced: Postfix 3.3): "null pointer read" error in the cleanup daemon when "header_from_format = standard" (the default as of Postfix 3.3) and email was submitted with /usr/sbin/sendmail without From: header, and an all-space full name was specified in 1) the password file, 2) with "sendmail -F", or 3) with the NAME environment variable. Found by Renaud Metrich. File: cleanup/cleanup_message.c. (Closes: #968057) . - Bugfix (introduced: 1999): the Postfix SMTP server was sending all session transcripts to the error_notice_recipient, instead of sending transcripts of bounced mail to the bounce_notice_recipient. File: smtpd/smtpd_chat.c. . - Bugfix (introduced: Postfix 2.4): false "too many reverse jump" warnings in the showq daemon. The loop detection code was comparing memory addresses instead of queue file names. It now properly compares strings. Reported by Mehmet Avcioglu. File: global/record.c. . * 3.5.13 - Bitrot: OpenSSL 3.x requires const. File: tls/tls_misc.c. . - Bugfix (bug introduced: Postfix 2.10): postconf -x produced incorrect output, because different functions were implicitly sharing a buffer for intermediate results. Reported by raf, root cause analysis by Viktor Dukhovni. File: postconf/postconf_builtin.c. . - Bugfix (problem introduced: Postfix 2.11): check_ccert_access worked as expected, but produced a spurious warning when Postfix was built without SASL support. Fix by Brad Barden. File: smtpd/smtpd_check.c. . - Bugfix (introduced: Postfix 2.4): queue file corruption after a Milter (for example, MIMEDefang) made a request to replace the message body with a copy of that message body plus additional text (for example, a SpamAssassin report). . The most likely impacts were a) the queue manager reporting a fatal error resulting in email delivery delays, or b) the queue manager reporting the corruption and moving the message to the corrupt queue for damaged messages. . However, a determined adversary could craft an email message that would trigger the bug, and insert a content filter destination or a redirect email address into its queue file. Postfix would then deliver the message headers there, in most cases without delivering the message body. With enough experimentation, an attacker could make Postfix deliver both the message headers and body. . The details of a successful attack depend on the Milter implementation, and on the Postfix and Milter configuration details; these can be determined remotely through experimentation. Failed experiments may be detected when the queue manager terminates with a fatal error, or when the queue manager moves damaged files to the "corrupt" queue as evidence. . Technical details: when Postfix executes a "replace body" Milter request it will reuse queue file storage that was used by the existing email message body. If the new body is larger, Postfix will append body content to the end of the queue file. The corruption happened when a Milter (for example, MIMEDefang) made a request to replace the body of a message with a new body that contained a copy of the original body plus some new text, and the original body contained a line longer than $line_length_limit bytes (for example, an image encoded in base64 without hard or soft line breaks). In queue files, Postfix stores a long text line as multiple records with up to $line_length_limit bytes each. Unfortunately, Postfix's "replace body" support did not account for the additional queue file space needed to store the second etc. record headers. And thus, the last record(s) of a long text line could overwrite one or more queue file records immediately after the space that was previously occupied by the original message body. . Problem report by Benoît Panizzon. . * Fix duplicate bounce_notice_recipient entries in postconf output. Closes: #999694 postgresql-13 (13.7-0+deb11u1) bullseye-security; urgency=medium . * New upstream release. . * Confine additional operations within security restricted operation sandboxes (Sergey Shinderuk, Noah Misch) . Autovacuum, CLUSTER, CREATE INDEX, REINDEX, REFRESH MATERIALIZED VIEW, and pg_amcheck activated the security restricted operation protection mechanism too late, or even not at all in some code paths. A user having permission to create non-temporary objects within a database could define an object that would execute arbitrary SQL code with superuser permissions the next time that autovacuum processed the object, or that some superuser ran one of the affected commands against it. . The PostgreSQL Project thanks Alexander Lakhin for reporting this problem. (CVE-2022-1552) . * Fix default signature length for gist_ltree_ops indexes (Tomas Vondra, Alexander Korotkov) . The default signature length (hash size) for GiST indexes on ltree columns was accidentally changed while upgrading that operator class to support operator class parameters. If any operations had been done on such an index without first upgrading the ltree extension to version 1.2, they were done assuming that the signature length was 28 bytes rather than the intended 8. This means it is very likely that such indexes are now corrupt. For safety we recommend re-indexing all GiST indexes on ltree columns after installing this update. (Note that GiST indexes on ltree[] columns, that is arrays of ltree, are not affected.) procmail (3.22-26+deb11u1) bullseye; urgency=medium . * Fix NULL pointer dereference. Closes: #769938. Reported by Jakub Wilk using American Fuzzy Lop. Patch from Stephen R. van den Berg. python-bottle (0.12.19-1+deb11u1) bullseye-security; urgency=high . * Gracefully handle errors during early request binding Kudos to Marcel Hellkamp . python-bottle (0.12.19-1) unstable; urgency=medium . * New upstream release . python-bottle (0.12.16-1) UNRELEASED; urgency=medium . * New upstream release . python-bottle (0.12.15-2) unstable; urgency=medium . * Update tox dependency (Closes: #924836) . python-bottle (0.12.15-1) unstable; urgency=medium . * New upstream release . python-bottle (0.12.13-1) unstable; urgency=medium . * New upstream release (See #850176) . python-bottle (0.12.11-1) unstable; urgency=high . * New upstream release (Closes: #848392) * Add python-setuptools dependency . python-bottle (0.12.10-1) unstable; urgency=medium . * New upstream release * Run only "fast" unit tests (Closes: #834918) . python-bottle (0.12.9-1) unstable; urgency=low . * New upstream release . python-bottle (0.12.7-1) unstable; urgency=low . * New upstream release . python-bottle (0.12.6-1) unstable; urgency=high . * New upstream release, closes https://github.com/defnull/bottle/issues/616 . python-bottle (0.12.5-1) unstable; urgency=medium . * New upstream version . python-bottle (0.12.4-1) unstable; urgency=low . * New upstream version . python-bottle (0.12.3-1) unstable; urgency=medium . [ Federico Ceratto ] * New upstream version * Standard-Version bumped to 3.9.5 . [ Daniel Schepler ] * DEB_BUILD_OPTIONS nocheck support added (Closes: #739102) . python-bottle (0.12.0-1) unstable; urgency=medium . [ Federico Ceratto ] * New upstream version . python-bottle (0.11.6-1) unstable; urgency=low . * d/changelog: New upstream release 0.11.6 . python-bottle (0.11.3-1) experimental; urgency=low . * New upstream version * Unit-testing enabled . python-bottle (0.10.11-1) unstable; urgency=low . * New upstream version * Homepage updated (Closes: #671230) * Standard-Version bumped to 3.9.3, debhelper version bumped to 9 . python-bottle (0.10.9-1) unstable; urgency=low . * New upstream version . python-bottle (0.10.7-1) unstable; urgency=low . * New upstream version . python-bottle (0.10.6-1) unstable; urgency=low . * New upstream version . python-bottle (0.10.2-1) unstable; urgency=low . * New upstream version . python-bottle (0.10.1-1) unstable; urgency=low . * New upstream version . python-bottle (0.9.7-1) unstable; urgency=low . * New upstream version * debian/control: - bumped to debhelper 8 - dependency to python-all added * debian/copyright updated . python-bottle (0.9.5-2) unstable; urgency=low . * Testsuite disabled at build-time (Closes: #640266) * Use libjs-underscore in python-bottle-doc . python-bottle (0.9.5-1) unstable; urgency=low . * New upstream version . python-bottle (0.9.4-1) unstable; urgency=low . [ David Paleino ] * Added python-{paste,eventlet} B-D to feed the testsuite . [ Federico Ceratto ] * New upstream version * DM-Upload-Allowed added . python-bottle (0.9.1-1) unstable; urgency=low . * New upstream version * Update debian/copyright * Standards-Version bump to 3.9.2, no changes needed * Patches refreshed * Fix docs generation (directory renamed upstream) * Fix testsuite * Adapt debian/rules to correctly run the testsuite and install the plugins . python-bottle (0.8.4-1) unstable; urgency=low . * New upstream version * Uploading to unstable . python-bottle (0.8.3-1) experimental; urgency=low . * New upstream version * Upload to experimental, since we're in hard Squeeze freeze now. . python-bottle (0.8.2-1) unstable; urgency=low . * New upstream version * debian/patches/02-fix_autoserver_ordering.patch refreshed * debian/control: - Standards-Version bumped to 3.9.1, no changes needed . python-bottle (0.8.1-1) unstable; urgency=low . * New upstream version * debian/patches/: - 01-fix_quiet_parsing.patch disabled, seems fixed in a different way upstream - 02-fix_autoserver_ordering.patch refreshed * debian/control: - Standards-Version bumped to 3.9.0, no changes needed * debian/README.source removed, since the package now contains the documentation * debian/watch fixed, only get versions made by digits and dots * debian/NEWS.Debian added, explain incompatible API changes with previous versions . python-bottle (0.8.0-3) unstable; urgency=low . * debian/patches/02-fix_autoserver_ordering.patch added, moves CherryPyServer later in the list, since it does weird things on import even when people don't use it. (Closes: #586316) * debian/control: - added Provides to python-bottle . python-bottle (0.8.0-2) unstable; urgency=low . * debian/patches/01-fix_quiet_parsing.patch added, thanks to Enrico Zini: only use "quiet" parameter inside run(), i.e. don't pass it to the server adapter (Closes: #584781) . python-bottle (0.8.0-1) unstable; urgency=low . * New upstream version * debian/watch updated to point to github tags * debian/control: - added Build-Dependency on python-sphinx, to build documentation - bumped debhelper B-D to >= 7.0.50~ - Standards-Version bumped to 3.8.4 , no changes needed - added runtime Depends on libjs-jquery - new package python-bottle-doc added * debian/python-bottle-doc.docs added * debian/rules: - also install generated documentation * debian/source/format added, using 3.0 (quilt). * debian/python-bottle-doc.links added, use system-wide jQuery * debian/python-bottle-doc.doc-base added . python-bottle (0.6.4-1) unstable; urgency=low . * Initial release (Closes: #555717) python-scrapy (2.4.1-2+deb11u1) bullseye; urgency=medium . * Team upload. * Security fix for CVE-2021-41125: Don't send authentication data with all requests. Provide a http_auth_domain spider attribute to control which domains are allowed to receive the configured HTTP authentication credentials. * Security Fix CVE-2022-0577: Don't expose cookies cross-domain when redirected. (Closes: #1008234) qemu (1:5.2+dfsg-11+deb11u2) bullseye-security; urgency=medium . * virtio-net-fix-map-leaking-on-error-during-receive-CVE-2022-26353.patch fix memory leak after fix for CVE-2021-3748 * vhost-vsock-detach-the-virqueue-element-on-error-CVE-2022-26354.patch vhost-sock device was not detaching invalid element from the virtqueue on error * ui-cursor-fix-integer-overflow-in-cursor_alloc-CVE-2021-4206.patch, display-qxl-render-fix-race-condition-in-qxl_cursor-CVE-2021-4207.patch two flaws can lead to allocation of small cursor object followed by a subsequent heap-based buffer overflow with a potential for executing arbitrary code within the context of QEMU process * virtiofsd-drop-membership-of-all-supplementary-group-CVE-2022-0358.patch potential group escalation allowed by virtiofsd rsyslog (8.2102.0-2+deb11u1) bullseye-security; urgency=medium . * Fix potential heap buffer overflow in TCP syslog server (receiver) components when octet-counted framing is used (CVE-2022-24903, Closes: #1010619) ruby-net-ssh (1:6.1.0-2+deb11u1) bullseye; urgency=medium . * Backport upstream patches to fix authentication against hosts using OpenSSH 8.8, including but not limited to Debian bookworm (Closes: #1009155, #1008541) runc (1.0.0~rc93+ds1-5+deb11u2) bullseye; urgency=medium . * Backport upstream patch: - do not set inheritable capabilities, Fixes: CVE-2022-29162 . runc (1.0.0~rc93+ds1-5+deb11u1) bullseye; urgency=medium . * Team upload. * backport upstream patch: Honor seccomp defaultErrnoRet, Closes: #1012030 runc (1.0.0~rc93+ds1-5+deb11u1) bullseye; urgency=medium . * Team upload. * backport upstream patch: Honor seccomp defaultErrnoRet, Closes: #1012030 samba (2:4.13.13+dfsg-1~deb11u4) bullseye-proposed-updates; urgency=medium . * fix the order of everything during build by exporting PYTHONHASHSEED=1 for waf. This should fix the broken i386 build of the last security upload. Closes: #1006935, #1009855 * Import the left-over patches from 4.13.17 upstream stable branch: - s3-winbindd-fix-allow-trusted-domains-no-regression.patch https://bugzilla.samba.org/show_bug.cgi?id=14899 Closes: #999876, winbind fails to start with `allow trusted domains: no` - IPA-DC-add-missing-checks.patch https://bugzilla.samba.org/show_bug.cgi?id=14903 - CVE-2020-25717-s3-auth-fix-MIT-Realm-regression.patch https://bugzilla.samba.org/show_bug.cgi?id=14922 Closes: #1001053, MIT-kerberos auth broken after 4.13.13+dfsg-1~deb11u2 - dsdb-Use-DSDB_SEARCH_SHOW_EXTENDED_DN-when-searching.patch https://bugzilla.samba.org/show_bug.cgi?id=14656 https://bugzilla.samba.org/show_bug.cgi?id=14902 - s3-smbd-Fix-mkdir-race-condition-allows-share-escape.patch https://bugzilla.samba.org/show_bug.cgi?id=13979 Closes: #1004691, CVE-2021-43566: mkdir race condition allows share escape * 4 patches from upstream to fix possible serious data corruption issue with windows client cache poisoning, Closes: #1005642 https://bugzilla.samba.org/show_bug.cgi?id=14928 * two patches from upstream to fix coredump when connecting to shares with var substitutions, Closes: #998423 https://bugzilla.samba.org/show_bug.cgi?id=14809 * samba-common-bin.postinst: mkdir /run/samba before invoking samba binaries Closes: #953530 * remove file creation+deletion from previously applied combined patches CVE-2021-23192-only-4.13-v2.patch & CVE-2021-3738-dsdb-crash-4.13-v03.patch to make patch deapply happy (quilt does not notice this situation) * d/salsa-ci.yml: target bullseye slurm-wlm (20.11.7+really20.11.4-2+deb11u1) bullseye-security; urgency=medium . * Fix CVE-2022-29500 and CVE-2022-29501 (Closes: #1010634, #1010633) * Update libslurm symbols file smarty3 (3.1.39-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload. * Fix the following CVE: - CVE-2021-21408: template authors could run restricted static php methods - CVE-2021-29454: template authors could run arbitrary PHP code by crafting a malicious math string - CVE-2022-29221: template authors could inject php code by choosing a malicious {block} name or {include} file name smarty3 (3.1.39-2) unstable; urgency=medium . * debian/watch: + Fix Github watch URL. spip (3.2.11-3+deb11u4) bullseye-security; urgency=high . * Backport security fix from 3.2.15 - Sanitizing and other XSS protections squid (4.13-10+deb11u1) bullseye-security; urgency=medium . * Add patch to fix a Denial of Service in Gopher Processing. Fixes: CVE-2021-46784. * Add patch to fix Out-Of-Bounds memory access in WCCPv2. Fixes: CVE-2021-28116. subversion (1.14.1-3+deb11u1) bullseye-security; urgency=high . * Security Fixes: - CVE-2021-28544: Don't show unreadable copyfrom paths in 'svn log -v' - CVE-2022-24070: Fix issue #4880 "Use-after-free of object-pools when used as httpd module" * Switch gpb.conf and Vcs-Git to debian/bullseye branch tcpdump (4.99.0-2+deb11u1) bullseye; urgency=medium . * Minor AppArmor profile updates (debian/usr.bin.tcpdump): + Grant access to *.cap (closes: #989433). + Account for numerical suffix in filenames added by -W (closes: #1010688). telegram-desktop (3.1.1+ds-1~deb11u2) bullseye; urgency=medium . * Full update from bookworm for compatibility with layer 133 of Telegram API. Closes: #1001016. * Disable OpenGL acceleration by default, can be re-enabled in settings. telegram-desktop (3.1.1+ds-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. (Closes: #1001016) * Merge with bookworm. Remaining changes: - Disable OpenGL acceleration by default, can be re-enabled in settings. . telegram-desktop (3.1.1+ds-1) unstable; urgency=medium . * New upstream release. (Closes: #993972) * Update patches. * Lower debug info for the following 64-bit architectures: RISC-V in Debian, ARMv8 and PowerPC in Ubuntu, due to limitation of their build servers. telegram-desktop (3.1.1+ds-1~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports-sloppy. (Closes: #1001016) * Merge with bookworm. Remaining changes: - Pass the -Wl,--as-needed linker flag. - Not supported Wayland integration. - Disable OpenGL acceleration by default, can be re-enabled in settings. . telegram-desktop (3.1.1+ds-1) unstable; urgency=medium . * New upstream release. (Closes: #993972) * Update patches. * Lower debug info for the following 64-bit architectures: RISC-V in Debian, ARMv8 and PowerPC in Ubuntu, due to limitation of their build servers. telegram-desktop (2.9.2+ds-1) unstable; urgency=medium . * Upload to unstable. * New upstream release. * Put all backporting patches to the master branch. * Pass the -latomic flag to linker via CMake scripts, not the LDFLAGS environment variable. This should really fix build for RISC-V 64-bit. * Bump Standards-Version to 4.6.0, no related changes. telegram-desktop (2.9.2+ds-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. * Disable OpenGL acceleration by default. . telegram-desktop (2.9.2+ds-1) unstable; urgency=medium . * Upload to unstable. * New upstream release. * Put all backporting patches to the master branch. * Pass the -latomic flag to linker via CMake scripts, not the LDFLAGS environment variable. This should really fix build for RISC-V 64-bit. * Bump Standards-Version to 4.6.0, no related changes. . telegram-desktop (2.9.0+ds1-2) experimental; urgency=medium . * Repack upstream source changing suffix for one time. - Move bundled subporjects from the debian/ folder to Telegram/ThirdParty. - Adjust paths in the debian/copyright file accordingly. - Apply Skip-RNNoise.patch to the moved tgcalls subproject. * Link against libatomic to fix build on RISC-V 64-bit. * Thin intermediate static archives to speed up build a little. * Mention missing direct build dependencies, Python, GLib, and XCB. * Remove Ignore-emoji-pack.patch that tried to fix build on IA-64. * Install Apport hook to collect logs from Ubuntu installations. . telegram-desktop (2.9.0+ds-1) experimental; urgency=medium . * New upstream release. - Fixes flaws in MtProto implementation. Closes: #991493, CVE-2021-36769. * Update tgcalls subproject to commit 6f2746e. * New build dependencies, jemalloc, glibmm, and WebKitGTK * New Exclude-QWaylandXdgShellIntegration.patch. * New Skip-*.patch'es to ignore unneeded dependencies. * Increase limit of DIEs for dwz(1) up to 2 ³¹ - 1. * Update copyright info. telegram-desktop (2.9.2+ds-1~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports-sloppy. * Exclude unneeded Wayland dependency. * Disable OpenGL acceleration by default. * Exclude all unused libraries from dependency list. . telegram-desktop (2.9.2+ds-1) unstable; urgency=medium . * Upload to unstable. * New upstream release. * Put all backporting patches to the master branch. * Pass the -latomic flag to linker via CMake scripts, not the LDFLAGS environment variable. This should really fix build for RISC-V 64-bit. * Bump Standards-Version to 4.6.0, no related changes. . telegram-desktop (2.9.0+ds1-2) experimental; urgency=medium . * Repack upstream source changing suffix for one time. - Move bundled subporjects from the debian/ folder to Telegram/ThirdParty. - Adjust paths in the debian/copyright file accordingly. - Apply Skip-RNNoise.patch to the moved tgcalls subproject. * Link against libatomic to fix build on RISC-V 64-bit. * Thin intermediate static archives to speed up build a little. * Mention missing direct build dependencies, Python, GLib, and XCB. * Remove Ignore-emoji-pack.patch that tried to fix build on IA-64. * Install Apport hook to collect logs from Ubuntu installations. . telegram-desktop (2.9.0+ds-1) experimental; urgency=medium . * New upstream release. - Fixes flaws in MtProto implementation. Closes: #991493, CVE-2021-36769. * Update tgcalls subproject to commit 6f2746e. * New build dependencies, jemalloc, glibmm, and WebKitGTK * New Exclude-QWaylandXdgShellIntegration.patch. * New Skip-*.patch'es to ignore unneeded dependencies. * Increase limit of DIEs for dwz(1) up to 2 ³¹ - 1. * Update copyright info. telegram-desktop (2.9.0+ds1-2) experimental; urgency=medium . * Repack upstream source changing suffix for one time. - Move bundled subporjects from the debian/ folder to Telegram/ThirdParty. - Adjust paths in the debian/copyright file accordingly. - Apply Skip-RNNoise.patch to the moved tgcalls subproject. * Link against libatomic to fix build on RISC-V 64-bit. * Thin intermediate static archives to speed up build a little. * Mention missing direct build dependencies, Python, GLib, and XCB. * Remove Ignore-emoji-pack.patch that tried to fix build on IA-64. * Install Apport hook to collect logs from Ubuntu installations. telegram-desktop (2.9.0+ds-1) experimental; urgency=medium . * New upstream release. - Fixes flaws in MtProto implementation. Closes: #991493, CVE-2021-36769. * Update tgcalls subproject to commit 6f2746e. * New build dependencies, jemalloc, glibmm, and WebKitGTK * New Exclude-QWaylandXdgShellIntegration.patch. * New Skip-*.patch'es to ignore unneeded dependencies. * Increase limit of DIEs for dwz(1) up to 2 ³¹ - 1. * Update copyright info. thunderbird (1:91.10.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.10.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.9.0-1) unstable; urgency=medium . * [88b99d1] New upstream version 91.9.0 Fixed CVE issues in upstream version 91.9 (MFSA 2022-18): CVE-2022-1520: Incorrect security status shown after viewing an attached email CVE-2022-29914: Fullscreen notification bypass using popups CVE-2022-29909: Bypassing permission prompt in nested browsing contexts CVE-2022-29916: Leaking browser history with CSS variables CVE-2022-29911: iframe sandbox bypass CVE-2022-29912: Reader mode bypassed SameSite cookies CVE-2022-29913: Speech Synthesis feature not properly disabled CVE-2022-29917: Memory safety bugs fixed in Thunderbird 91.9 thunderbird (1:91.9.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security (Closes: #1009321) thunderbird (1:91.9.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security (Closes: #1009321) thunderbird (1:91.8.1-1) unstable; urgency=medium . * [b57406c] New upstream version 91.8.1 (Closes: #1009321) thunderbird (1:91.8.0-1) unstable; urgency=medium . * [06619c5] New upstream version 91.8.0 Fixed CVE issues in upstream version 91.8 (MFSA 2022-15): CVE-2022-1097: Use-after-free in NSSToken objects CVE-2022-28281: Out of bounds write due to unexpected WebAuthN Extensions CVE-2022-1197: OpenPGP revocation information was ignored CVE-2022-1196: Use-after-free after VR Process destruction CVE-2022-28282: Use-after-free in DocumentL10n::TranslateDocument CVE-2022-28285: Incorrect AliasSet used in JIT Codegen CVE-2022-28286: iframe contents could be rendered outside the border CVE-2022-24713: Denial of Service via complex regular expressions CVE-2022-28289: Memory safety bugs fixed in Thunderbird 91.8 thunderbird (1:91.8.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.8.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.7.0-2) unstable; urgency=medium . * [c348b62] Rebuild patch-queue from patch queue branch Added patch: fixes/Bug-1494436-Unset-MOZ_APP_LAUNCHER-for-external-MIME-hand.patch (Closes: #948691) Thanks go out to Simon McVittie for preparing this patch! thunderbird (1:91.7.0-2~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.7.0-2~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.7.0-1) unstable; urgency=medium . * [952f6d0] New upstream version 91.7.0 Fixed CVE issues in upstream version 91.7 (MFSA 2022-12): CVE-2022-26383: Browser window spoof using fullscreen mode CVE-2022-26384: iframe allow-scripts sandbox bypass CVE-2022-26387: Time-of-check time-of-use bug when verifying add-on signatures CVE-2022-26381: Use-after-free in text reflows CVE-2022-26386: Temporary files downloaded to /tmp and accessible by other local users thunderbird (1:91.6.2-1) unstable; urgency=medium . * [2f95b97] New upstream version 91.6.2 Fixed CVE issues in upstream version 91.6.2 (MFSA 2022-09): CVE-2022-26485: Use-after-free in XSLT parameter processing CVE-2022-26486: Use-after-free in WebGPU IPC Framework thunderbird (1:91.6.2-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.6.2-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.6.1-1) unstable; urgency=medium . * [3edb855] New upstream version 91.6.1 Fixed CVE issues in upstream version 91.6.1 (MFSA 2022-07): CVE-2022-0566: Crafted email could trigger an out-of-bounds write thunderbird (1:91.6.1-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.6.1-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.6.0-1) unstable; urgency=medium . * [884ccb6] New upstream version 91.6.0 Fixed CVE issues in upstream version 91.6 (MFSA 2022-06): CVE-2022-22754: Extensions could have bypassed permission confirmation during update CVE-2022-22756: Drag and dropping an image could have resulted in the dropped object being an executable CVE-2022-22759: Sandboxed iframes could have executed script if the parent appended elements CVE-2022-22760: Cross-Origin responses could be distinguished between script and non-script content-types CVE-2022-22761: frame-ancestors Content Security Policy directive was not enforced for framed extension pages CVE-2022-22763: Script Execution during invalid object state CVE-2022-22764: Memory safety bugs fixed in Thunderbird 91.6 (Closes: #1004951) thunderbird (1:91.6.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:91.6.0-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security thunderbird (1:91.5.1-1) unstable; urgency=medium . * [130bab2] New upstream version 91.5.1 thunderbird (1:91.5.0-2) unstable; urgency=medium . * [fd07163] autopkgtest: Run check-global-config-path.py only on Intel thunderbird (1:91.5.0-2~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security * [3fb049d] d/thunderbird.NEWS: Information about solved issue thunderbird (1:91.5.0-2~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security * [5204a6c] d/thunderbird.NEWS: Adjust version to buster thunderbird (1:91.5.0-1) unstable; urgency=medium . [ Carsten Schoenert ] * [8d4e5f8] New upstream version 91.5.0 Fixed CVE issues in upstream version 91.5 (MFSA 2022-03): CVE-2022-22743: Browser window spoof using fullscreen mode CVE-2022-22742: Out-of-bounds memory access when inserting text in edit mode CVE-2022-22741: Browser window spoof using fullscreen mode CVE-2022-22740: Use-after-free of ChannelEventQueue::mOwner CVE-2022-22738: Heap-buffer-overflow in blendGaussianBlur CVE-2022-22737: Race condition when playing audio files CVE-2021-4140: Iframe sandbox bypass with XSLT CVE-2022-22748: Spoofed origin on external protocol launch dialog CVE-2022-22745: Leaking cross-origin URLs through securitypolicyviolation event CVE-2022-22744: The 'Copy as curl' feature in DevTools did not fully escape website-controlled data, potentially leading to command injection CVE-2022-22747: Crash when handling empty pkcs7 sequence CVE-2022-22739: Missing throttling on external protocol launch dialog CVE-2022-22751: Memory safety bugs fixed in Thunderbird 91.5 * [a86c0b4] Rebuild patch queue from patch-queue branch Modified patch: debian-hacks/Add-another-preferences-directory-for-applications-p.patch Reworking the patch so LoadDirIntoArray is working again that is adding an additional syspref folder for global settings to use. (Closes: #997841, #1003280) * [442988b] autopkgtest: Adding check for accessing syspref folder . [ Jochen Sprickerhof ] * [5b5d508] d/thunderbird-wrapper.sh: Use 'command -v' (Closes:#1002570 ) thunderbird (1:91.4.1-1) unstable; urgency=medium . * [c5b36d3] New upstream version 91.4.1 Fixed CVE issues in upstream version 91.4.1 (MFSA 2021-55): CVE-2021-4126: OpenPGP signature status doesn't consider additional message content CVE-2021-44538: Matrix chat library libolm bundled with Thunderbird vulnerable to a buffer overflow * [b66bebb] d/changelog: Update some MOZ-* entries with assigned CVEs thunderbird (1:91.4.1-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security * [303eebe] d/thunderbird.NEWS: Inform about broken system locale detection thunderbird (1:91.4.1-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security * [fa7c995] d/thunderbird.NEWS: Adjust version to buster thunderbird (1:91.4.0-1) unstable; urgency=medium . * [7752be0] d/source.filter: Small updates to filtering list * [0899850] New upstream version 91.4.0 Fixed CVE issues in upstream version 91.4 (MFSA 2021-54): CVE-2021-43536: URL leakage when navigating while executing asynchronous function CVE-2021-43537: Heap buffer overflow when using structured clone CVE-2021-43538: Missing fullscreen and pointer lock notification when requesting both CVE-2021-43539: GC rooting failure when calling wasm instance methods CVE-2021-43541: External protocol handler parameters were unescaped CVE-2021-43542: XMLHttpRequest error codes could have leaked the existence of an external protocol handler CVE-2021-43543: Bypass of CSP sandbox directive when embedding CVE-2021-43545: Denial of Service when using the Location API in a loop CVE-2021-43546: Cursor spoofing could overlay user interface when native cursor is zoomed CVE-2021-43528: JavaScript unexpectedly enabled for the composition area MOZ-2021-0009: Memory safety bugs fixed in Thunderbird 91.4.0 * [afd7750] d/t.lintian-overrides: Update entries due renamed tags Some Lintan tags were renamed, thus requires am adjustment of the existing overrides. * [30a387c] d/s/lintian-overrides: Adjust most of the existing entries Same as before but for the source package. thunderbird (1:91.3.2-1) unstable; urgency=medium . * [7fd56f0] New upstream version 91.3.2 * [4fccecb] Rebuild patch queue from patch-queue branch Added patch: debian-hacks/Fix-Floating-Point-Normalization-breakage-on-32bit-Linux.patch thunderbird (1:91.3.0-1) unstable; urgency=medium . * [1d3e0b1] Revert "Rebuild patch queue from patch-queue branch" The patch for fixing the broken build on i386 breaks other architectures, so reverting for now. * [66755b4] New upstream version 91.3.0 Fixed CVE issues in upstream version 91.3 (MFSA 2021-50): CVE-2021-38503: iframe sandbox rules did not apply to XSLT stylesheets CVE-2021-38504: Use-after-free in file picker dialog CVE-2021-38506: Thunderbird could be coaxed into going into fullscreen mode without notification or warning CVE-2021-38507: Opportunistic Encryption in HTTP2 could be used to bypass the Same-Origin-Policy on services hosted on other ports MOZ-2021-0008: Use-after-free in HTTP2 Session object (no CVE assigned yet) CVE-2021-38508: Permission Prompt could be overlaid, resulting in user confusion and potential spoofing CVE-2021-38509: Javascript alert box could have been spoofed onto an arbitrary domain MOZ-2021-0007: Memory safety bugs fixed in Thunderbird ESR 91.3 (no CVE assigned yet) thunderbird (1:91.2.1-1) unstable; urgency=medium . [ Carsten Schoenert ] * [bcb5677] d/gbp.conf: Adjust to upstream-91.x * [12a433a] New upstream version 91.2.1 * [f935b52] Rebuild patch queue from patch-queue branch Added patch: debian-hacks/Fix-Floating-Point-Normalization-breakage-on-32bit-Linux.patch * [3faba71] Disable usage of system icu package The system packages of libicu-dev are to old for Thunderbird, we need to use the internel pre-shipped ICU sources. thunderbird (1:91.2.0-1) experimental; urgency=medium . * [3c88844] New upstream version 91.2.0 Fixed CVE issues in upstream version 91.2 (MFSA 2021-47): CVE-2021-38502: Downgrade attack on SMTP STARTTLS connections CVE-2021-38496: Use-after-free in MessageTask CVE-2021-38497: Validation message could have been overlaid on another origin CVE-2021-38498: Use-after-free of nsLanguageAtomService object CVE-2021-32810: Data race in crossbeam-deque CVE-2021-38500: Memory safety bugs fixed in Thunderbird 91.2 CVE-2021-38501: Memory safety bugs fixed in Thunderbird 91.2 (Closes: #973042) thunderbird (1:91.1.1-1) experimental; urgency=medium . * [73e3b75] New upstream version 91.1.1 * [3413d35] Rebuild patch queue from patch-queue branch Removed patch: fixes/Bug-1727113-Never-require-that-addons-are-signed-for-Thun.patch thunderbird (1:91.1.0-1) experimental; urgency=medium . * [0b1d9f9] New upstream version 91.1.0 Fixed CVE issues in upstream version 91.1 (MFSA 2021-41): CVE-2021-38495: Memory safety bugs fixed in Thunderbird 91.1 * [4313e64] Rebuild patch queue from patch-queue branch Added patch: fixes/Bug-1727113-Never-require-that-addons-are-signed-for-Thun.patch (Closes: #993594) Modified patch: porting-armhf/Bug-1526653-Include-struct-definitions-for-user_vfp-and-u.patch * [234c566] d/rules: Don't run dh_autoreconf (Closes: #993494) * [bce15d7] thunderbird: Set package x11-utils as fallback Install x11-utils only if kdialog or zenity aren't present on the system. thunderbird (1:91.0.2-1) experimental; urgency=medium . * [a5efefd] New upstream version 91.0.2 Fixed CVE issues in upstream version 91.0.1 (MFSA 2021-37): CVE-2021-29991: Header Splitting possible with HTTP/3 Responses * [b21a07b] d/control: increase Standards-Version to 4.6.0 No further changes needed. thunderbird (1:91.0-1) experimental; urgency=medium . * [3be73b6] d/source.filter: some updates to filtering list * [5c87a00] New upstream version 91.0 Fixed CVE issues in upstream version 91.0 (MFSA 2021-36): CVE-2021-29986: Race condition when resolving DNS names could have led to memory corruption CVE-2021-29981: Live range splitting could have led to conflicting assignments in the JIT CVE-2021-29988: Memory corruption as a result of incorrect style treatment CVE-2021-29984: Incorrect instruction reordering during JIT optimization CVE-2021-29980: Uninitialized memory in a canvas object could have led to memory corruption CVE-2021-29987: Users could have been tricked into accepting unwanted permissions on Linux CVE-2021-29985: Use-after-free media channels CVE-2021-29982: Single bit data leak due to incorrect JIT optimization and type confusion CVE-2021-29989: Memory safety bugs fixed in Thunderbird 91 (Closes: #640927 , #944208, #958433, #952853, #971722, #982670) * [0157fe4] d/control: Add new package thunderbird-l10n-af Upstream ships localizations for Africaans. * [f23e9e0] d/control: Add new package thunderbird-l10n-en-ca Upstream ships localizations for English (Canada). * [8b3cee9] d/control: Add new package thunderbird-l10n-lv Upstream ships localizations for Latvian. * [cad58ea] d/control: Add new package thunderbird-l10n-pa-in Upstream ships localizations for Punjabi (Gurmukhi). * [aecc2da] d/control: Add new package thunderbird-l10n-th Upstream ships localizations for Thai. * [9707e8a] Moving over to debhelper-compat Switch over to recent debhelper-compat 13. * [2934049] d/rules: Customize dh_missing call Due debhelper-compat dh_missing needs some aditional tweaking as we need to ignore some files which are built and installed into the tempory install folder but not installed into the package(s). * [7df72c6] d/rules: Don't use dwz Running and using dwz is bringing no gain and produces issues to, can be ignored for now. * [1709f28] d/control: Remove non existing packages from Breaks xul-ext-firetray and xul-ext-quotecolors are gone from the supported releases. * [f160918] d/control: Adding Rules-Requires-Root: no No specific root access required so far while package build. thunderbird (1:91.0~b5-1) experimental; urgency=medium . * [8a9083f] d/control: Adjust VCS links to branch debian/experimental * [acf4b3c] d/source.filter: some updates to filtering list * [84d1b87] New upstream version 91.0~b5 thunderbird (1:91.0~b3-1) experimental; urgency=medium . * [90a153b] New upstream version 91.0~b3 * [ada2cf0] d/control: Remove transitional package lightning * [3e5087f] d/control: Remove obsolete lightning-l10-* packages * [6eac520] d/control: Remove Suggests on libgtk2.0-0 fur thunderbird (Closes: #967771) thunderbird (1:91.0~b1-1) experimental; urgency=medium . * [78f0ddb] d/source.filter: some updates to filtering list * [3d29fcf] New upstream version 91.0~b1 (Closes: #990631) * [daa7fab] d/control: Increase some Build-Depends * [f4bfd22] d/control: Remove libgtk2.0-dev from Build-Depends * [ad4e281] d/s/lintian-overrides: Adding one more file to ignore thunderbird (1:90.0~b2-1) experimental; urgency=medium . [ Carsten Schoenert ] * [3cc0d66] d/source.filter: some updates to filtering list * [3c76a94] New upstream version 90.0~b2 * [46718fe] rebuild patch queue from patch-queue branch removed patches: fixes/reduce-the-rust-debuginfo-level-on-selected-architectures.patch debian-hacks/Work-around-Debian-bug-844357.patch * [156d3c9] d/thunderbird.1: Correct debugger option * [ca7daca] /u/l/thunderbird: Correct escape sequencing for gdb calling (Closes: #976979) * [f310330] d/thunderbird-wrapper.sh: Use '${}' syntax for variables * [0ef3788] d/thunderbird.install: Remove gtk2 cruft * [17b0510] d/copyright: Update due removed content * [feca305] d/s/lintian-override: Remove two no longer existing entries . [ Kevin Locke ] * [dbe3c3e] d/thunderbird-wrapper.sh: Make gdb call more fail safe (Closes:#942799) thunderbird (1:89.0~b2-1) experimental; urgency=medium . * [74911c7] New upstream version 89.0~b2 * [b4fef2a] rebuild patch queue from patch-queue branch modified patches: debian-hacks/Don-t-register-plugins-if-the-MOZILLA_DISABLE_PLUGIN.patch porting-armhf/Don-t-use-LLVM-internal-assembler-on-armhf.patch porting-kfreebsd-hurd/FTBFS-hurd-fixing-unsupported-platform-Hurd.patch removed patches: debian-hacks/Don-t-register-plugins-if-the-MOZILLA_DISABLE_PLUGIN.patch * [ea6a29e] d/control: Increase B-D for cbindgen and libnss3-dev thunderbird (1:88.0~b2-1) experimental; urgency=medium . [ Carsten Schoenert ] * [7af1a0b] New upstream version 88.0~b2 * [30d1d48] rebuild patch queue from patch-queue branch modified patch: debian-hacks/Add-another-preferences-directory-for-applications-p.patch porting-armhf/Don-t-use-LLVM-internal-assembler-on-armhf.patch removed patches (included upstream): porting-arm/Reduce-memory-usage-while-linking-on-arm-el-hf-platforms.patch porting-s390x/Explicitly-instantiate-TIntermTraverser-traverse-TIntermN.patch renamed patch: fixes/Load-dependent-libraries-with-their-real-path-to-avo.patch -> fixes/Load-dependent-libraries-with-their-real-path.patch * [f45da92] d/control: Increase B-D for libnss3-dev . [ Colomban Wendling ] * [bbf78cb] d/thunderbird.desktop: Switch StartupWMClass (Closes: #985366) . [ Carsten Schoenert ] * [a2cc9e0] d/control: Adding nasm to Build-Depends * [41fad62] d/copyright: update due removed content thunderbird (1:86.0~b3-1) experimental; urgency=medium . [ Carsten Schoenert ] * [002f597,fe0515b] d/source.filter: updating the filtering list * [dfafc89,35d050f] d/copyright: updates due upstream changes Add Apache2 notice for third_party/python/coverage * [24c009c] lintian: adding override for false positive in SVG file * [d316a1c] New upstream version 86.0~b3 * [20dc687] rebuild patch queue from patch-queue branch modified patch: debian/patches/porting-kfreebsd-hurd/adding-missed-HURD-adoptions.patch * [21b86f0] d/copyright: update due removed content * [7fc9755] d/s/lintian-override: path for TeXZilla.js has changed * [33c5d5a] d/s/lintian-override: remove JS file * [825a440] d/control: Increase B-D for cbindgen . [ Pino Toscano ] * [35c3c3b] thunderbird: Stop shipping /u/s/p/thunderbird.png symlink thunderbird (1:85.0~b3-1) experimental; urgency=medium . * [b142ac6] New upstream version 85.0~b3 * [0d2221a] d/control: Increase various B-D versions * [e4eb52e] rebuild patch queue from patch-queue branch added patch: debian-hacks/Decrease-Cargo-minimal-version-to-1.46.0.patch updated patches: debian-hacks/Use-remoting-name-for-call-to-gdk_set_program_class.patch fixes/reduce-the-rust-debuginfo-level-on-selected-architectures.patch thunderbird (1:84.0~b3-1) experimental; urgency=medium . * [fad5103] calendar-google-provider*: removing left over cruft * [b095d8e] thunderbird.NEWS: Add hint about integration of OpenPGP support * [0f6bdf3] Revert "d/tb.lintian-overrides: ignore warning about none versioned breaks" * [f10f80c] d/copyright: update content * [9c3fb20] d/source.filter: some updates to filtering list * [c9b8274] New upstream version 84.0~b3 * [adf3835] rebuild patch queue from patch-queue branch removed patches: fixes/Add-missing-bindings-for-mips-in-the-authenticator-crate.patch fixes/fix-function-nsMsgComposeAndSend-to-respect-Replo.patch porting-armel/Bug-1463035-Remove-MOZ_SIGNAL_TRAMPOLINE.-r-darchons.patch porting-mips/Bug-1642265-MIPS64-Add-branchTestSymbol-and-fallibleUnbox.patch porting-s390x/Use-more-recent-embedded-version-of-sqlite3.patch porting-m68k/Add-m68k-support-to-Thunderbird.patch porting-sh4/Add-sh4-support-to-Thunderbird.patch * [3ff9c9d] thunderbird-l10n-all: add thunderbird-l10n-cy (Closes: #974127) * [393490c] d/control: remove l10n package for Sinhala * [1f4e966] d/control: increase Standards-Version to 4.5.1 No further changes needed. * [288afdd] d/rules: use python3 explicitly while calling mach Using the Python 3 interpreter is needed otherwise the Mozilla magic tries to use a non existing virtualenv environment. * [a509bdf] d/watch: update to version 4 No further changes needed. * [fc6b358] d/copyright: update some more content Updating the copyright information due upstream modifications. * [3bd5713] d/s/lintian-overrides: Adding more file to ignore thunderbird (1:78.14.0-1) unstable; urgency=medium . * [6dc6817] d/changelog: Correct TB version for referenced MFSA * [38f01f4] d/rules: Don't run dh_autoreconf (Closes: #993494) * [09c4cde] New upstream version 78.14.0 Fixed CVE issues in upstream version 78.14.0 (MFSA 2021-42): CVE-2021-38493: Memory safety bugs fixed in Thunderbird 78.14 and Thunderbird 91.1 tiff (4.2.0-1+deb11u1) bullseye-security; urgency=high . [ Thorsten Alteholz ] * CVE-2022-22844 out-of-bounds read in _TIFFmemcpy in certain situations involving a custom tag and 0x0200 as the second word of the DE field. * CVE-2022-0562 Null source pointer passed as an argument to memcpy() function within TIFFReadDirectory(). This could result in a Denial of Service via crafted TIFF files. * CVE-2022-0561 Null source pointer passed as an argument to memcpy() function within TIFFFetchStripThing(). This could result in a Denial of Service via crafted TIFF files. . [ Laszlo Boszormenyi (GCS) ] * Backport security fix for CVE-2022-0865, crash when reading a file with multiple IFD in memory-mapped mode and when bit reversal is needed. * Backport security fix for CVE-2022-0908, null source pointer passed as an argument to memcpy() function within TIFFFetchNormalTag(). * Backport security fix for CVE-2022-0907, unchecked return value to null pointer dereference in tiffcrop. * Backport security fix for CVE-2022-0909, divide by zero error in tiffcrop. * Backport security fix for CVE-2022-0891, heap buffer overflow in ExtractImageSection function in tiffcrop. * Backport security fix for CVE-2022-0924, heap buffer overflow in tiffcp. tigervnc (1.11.0+dfsg-2+deb11u1) bullseye; urgency=medium . [ John Martin ] * TigerVNC 1.11.0 contains a regression that causes vncviewer to display incorrect colors when vncviewer and X11 server use different endianness. (LP: #1929790) . [ Joachim Falk ] * Fixed typo in tigervncserver man page (Closes: #1003715). * Fixed gnome desktop start up when using tigervncserver@.service. (Closes: #1004395) trafficserver (8.1.1+ds-1.1+deb11u1) bullseye-security; urgency=high . * Multiple CVE fixes for 8.1.x + CVE-2021-37147: Improper input validation vulnerability + CVE-2021-37148: Improper input validation vulnerability + CVE-2021-37149: Improper Input Validation vulnerability + CVE-2021-38161: Improper Authentication vulnerability in TLS origin verification + CVE-2021-44040: Improper Input Validation vulnerability in request line parsing + CVE-2021-44759: Improper Authentication vulnerability in TLS origin validation twisted (20.3.0-7+deb11u1) bullseye; urgency=medium . * Team upload. * CVE-2022-21712: Information disclosure results in leaking of HTTP cookie and authorization headers when following cross origin redirects - debian/patches/CVE-2022-21712-*.patch: Ensure sensitive HTTP headers are removed when forming requests, in src/twisted/web/client.py, src/twisted/web/test/test_agent.py and src/twisted/web/iweb.py. - Thanks Canonical for backporting the patches. * CVE-2022-21716: Parsing of SSH version identifier field during an SSH handshake can result in a denial of service when excessively large packets are received - debian/patches/CVE-2022-21716-*.patch: Ensure that length of received handshake buffer is checked, prior to processing version string in src/twisted/conch/ssh/transport.py and src/twisted/conch/test/test_transport.py - Thanks Canonical for backporting the patches. * CVE-2022-24801: Correct several defects in HTTP request parsing that could permit HTTP request smuggling: disallow signed Content-Length headers, forbid illegal characters in chunked extensions, forbid 0x prefix to chunk lengths, and only strip space and horizontal tab from header values. - debian/patches/CVE-2022-24801-*.patch * Patch: remove spurious test for illegal whitespace in xmlns, to allow tests to pass, again. tzdata (2021a-1+deb11u4) bullseye; urgency=medium . * Cherry-pick patches from upstream: - 07-no-leap-second-2022-06-30.patch: update leap-seconds.list, new expiration date on 28 December 2022. Closes: #1012191. tzdata (2021a-1+deb11u3) bullseye; urgency=medium . * Cherry-pick patches from tzdata-2022a: - 06-palestine-dst2.patch: Palestine will spring forward on 2022-03-27, not -03-26.. ublock-origin (1.42.0+dfsg-1~deb11u1) bullseye; urgency=medium . * Backport to Bullseye. * Correct the mistake in debian/changelog and produce a valid changelog file. (Closes: #996249) ublock-origin (1.42.0+dfsg-1~deb10u1) buster; urgency=medium . * Backport to Buster. * Correct the mistake in debian/changelog and produce a valid changelog file. (Closes: #996249) ublock-origin (1.40.2+dfsg-1) unstable; urgency=medium . * New upstream version 1.40.2+dfsg. ublock-origin (1.39.0+dfsg-2) unstable; urgency=medium . * Fix debian/watch to detect new upstream releases. ublock-origin (1.39.0+dfsg-1) unstable; urgency=medium . * New upstream version 1.39.0+dfsg. * Skip the tests. ublock-origin (1.37.0+dfsg-1) unstable; urgency=medium . * New upstream version 1.37.0+dfsg. - Fix CVE-2021-36773: uBlock supported an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality). Thanks to Marcus Frings for the report. (Closes: #991386) * Declare compliance with Debian Policy 4.6.0. unrar-nonfree (1:6.0.3-1+deb11u1) bullseye; urgency=high . * Fix CVE-2022-30333 (Closes: #1010837) usb.ids (2022.05.20-0+deb11u1) bullseye; urgency=medium . * Upload to bullseye. usb.ids (2022.05.09-1) unstable; urgency=medium . * New upstream version. * Bump Standards-Version to 4.6.1 (no changes). usb.ids (2022.04.02-1) unstable; urgency=medium . * New upstream version. usb.ids (2022.02.15-1) unstable; urgency=medium . * New upstream version. vlc (3.0.17.4-0+deb11u1) bullseye-security; urgency=medium . * New upstream version 3.0.17.4 - Fix an infinite loop in MP4 - Fix crashes with VP9 streams * debian/gbp.conf: Work in bullseye branch vlc (3.0.17.4-0+deb10u1) buster-security; urgency=medium . * New upstream version 3.0.17.4 - Fix remote code execution through crafted playlist (VideoLAN-SB-VLC-3013) - Fix an infinite loop in MP4 - Fix crashes with VP9 streams vlc (3.0.17.3-1) unstable; urgency=medium . * New upstream version 3.0.17.3 * debian/ - Revert "Disable srt until the package is fixed" (Closes: #983109) Thanks to Florian Ernst - Move srt output plugin to vlc-plugin-access-extra vlc (3.0.17-1) unstable; urgency=medium . * New upstream version 3.0.17 - Fix build with ffmpeg 5.0 (Closes: #1004584) * debian/control: - Switch to libidn-dev - Bump BD on libopenmpt-modplug-dev - Bump Standards-Version * debian/copyright: - Add missing text to BSD-2-clause - Update copyright for 3.0.17 * debian/patches: Refresh patches * debian/rules: Set VLC_COMPILE_BY and VLC_COMPILE_HOST (Closes: #990246) * debian/: Update lintian override waitress (1.4.4-1.1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Security update, resolving a request smuggling vulnerability: When using previous Waitress versions behind a proxy that does not properly validate the incoming HTTP request matches the RFC7230 standard, Waitress and the frontend proxy may disagree on where one request starts and where it ends. This would allow requests to be smuggled via the front-end proxy to waitress and later behavior. CVE-2022-24761 (Closes: #1008013) webkit2gtk (2.36.3-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. - This fixes CVE-2022-26700, CVE-2022-26709, CVE-2022-26716, CVE-2022-26717, CVE-2022-26719, CVE-2022-30293 and CVE-2022-30294. * gcc 10 segfaults when building webkit in some architectures (see #1008098) so use clang instead. The exceptions are i386 and mipsel, where gcc works fine but clang is the buggy one (see #1010329). - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Build libsoup2 packages only. - debian/rules: Set ENABLE_SOUP3=NO. - debian/control: Remove build dependency on libsoup3 and ccache and remove the entries for all 4.1 API packages (soup3 build). webkit2gtk (2.36.3-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. - This fixes CVE-2022-26700, CVE-2022-26709, CVE-2022-26716, CVE-2022-26717, CVE-2022-26719, CVE-2022-30293 and CVE-2022-30294. * debian/patches/force-single-process.patch: - Force the single-process mode in Evolution and Geary * debian/control: - Remove all 4.1 API packages (soup3 build). - Remove Breaks for Evolution < 3.34.1. - Remove build dependencies on ccache, libwpebackend-fdo-1.0-dev, libmanette-0.2-dev, liblcms2-dev and libsoup-3.0-dev. - Switch build dependency from libenchant-2-dev to libenchant-dev. - Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: - Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. * Set the debhelper compatibility level back to 10. This fixes a dh_dwz error ".debug_info section not present" - Add debian/compat file. - Update build dependency on debhelper. webkit2gtk (2.36.2-1) unstable; urgency=high . [ Alberto Garcia ] * New upstream release. . [ Adrian Bunk ] * debian/rules: lower memory requirements on sh4. webkit2gtk (2.36.1-1) unstable; urgency=medium . [ Alberto Garcia ] * New upstream release. . [ Jeremy Bicha ] * Reduce the number of parallel build jobs on Ubuntu's amd64 webkit2gtk (2.36.0-3) unstable; urgency=medium . * debian/rules: - Build with -Os, -g0 and ggc-min-expand=10 in mips / mipsel in order to lower the memory requirements and revert the changes from 2.36.0-2 (thanks, Adrian Bunk). webkit2gtk (2.36.0-3~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. - This fixes CVE-2022-22624, CVE-2022-22628 and CVE-2022-22629. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Build libsoup2 packages only. - debian/rules: Set ENABLE_SOUP3=NO. - debian/control: Remove build dependency on libsoup3 and remove the entries for all 4.1 API packages (soup3 build). webkit2gtk (2.36.0-3~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. - This fixes CVE-2022-22624, CVE-2022-22628 and CVE-2022-22629. * debian/patches/force-single-process.patch: - Force the single-process mode in Evolution and Geary * debian/patches/support-ruby2.5.patch: - Support building with Ruby 2.5. * debian/control: - Remove all 4.1 API packages (soup3 build). - Remove Breaks for Evolution < 3.34.1. - Remove build dependencies on libwpebackend-fdo-1.0-dev, libmanette-0.2-dev, liblcms2-dev and libsoup-3.0-dev. - Switch build dependency from libenchant-2-dev to libenchant-dev. - Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: - Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. * Set the debhelper compatibility level back to 10. This fixes a dh_dwz error ".debug_info section not present" - Add debian/compat file. - Update build dependency on debhelper. webkit2gtk (2.36.0-2) unstable; urgency=medium . * debian/rules: - Disable unified builds in Debian/mipsel and reduce the number of parallel jobs in order to prevent running out of memory. * debian/control: - Clarify in package descriptions that 4.0 and 4.1 packages use different versions of libsoup and that the documentation package is equally valid for both. webkit2gtk (2.36.0-1) unstable; urgency=medium . * New upstream release. * Refresh all patches. * debian/rules: + Build with CMAKE_BUILD_WITH_INSTALL_RPATH=ON, otherwise builds are not reproducible if they happen in different directories. * Bring all changes from the 2.35 (experimental) branch. * debian/control: + Make libjavascriptcoregtk-4.0-dev depend on libglib2.0-dev. * debian/source/lintian-overrides: + Update source-is-missing overrides. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/copyright: + Update copyright information of all files. * debian/gbp.conf: + Update upstream branch name. * debian/rules: + USE_SYSTEMD was renamed to ENABLE_JOURNALD_LOG. * debian/control: + Remove all Conflicts: lines, they are obsolete. + Make libjavascriptcoregtk-4.0-dev depend on libglib2.0-dev. + Simplify descriptions and remove references to the WebKit2 API layer. * Build the 4.1 API version of the packages. These use libsoup 3 instead of libsoup 2 but are otherwise identical to the 4.0 API packages. + debian/control: - Add build dependency on libsoup-3.0-dev. - Add entries for the new packages. The 4.1 versions of the WebDriver, JSC command-line interpreter and documentation are currently not being generated. + debian/rules: - Add commands to build both sets of packages. + debian/libwebkit2gtk-4.0-37.install: - Update path of locale files to select only the exact API version. + debian/not-installed: - Don't install the 4.1 build of the JSC command-line interpreter. webkit2gtk (2.35.90-1) experimental; urgency=medium . * New upstream development release. * Refresh all patches. * debian/source/lintian-overrides: + Update source-is-missing overrides. * debian/rules: + USE_SYSTEMD was renamed to ENABLE_JOURNALD_LOG. * debian/control: + Remove all Conflicts: lines, they are obsolete. + Make libjavascriptcoregtk-4.0-dev depend on libglib2.0-dev. + Simplify descriptions and remove references to the WebKit2 API layer. * Build the 4.1 API version of the packages. These use libsoup 3 instead of libsoup 2 but are otherwise identical to the 4.0 API packages. + debian/control: - Add build dependency on libsoup-3.0-dev and libsysprof-4-dev (the latter should be pulled by libsoup). - Add entries for the new packages. The 4.1 versions of the WebDriver, JSC command-line interpreter and documentation are currently not being generated. + debian/rules: - Add commands to build both sets of packages. + debian/libwebkit2gtk-4.0-37.install: - Update path of locale files to select only the exact API version. + debian/not-installed: - Don't install the 4.1 build of the JSC command-line interpreter. webkit2gtk (2.35.3-1) experimental; urgency=medium . * New upstream development release. * Refresh all patches. webkit2gtk (2.35.2-1) experimental; urgency=medium . * New upstream development release. * debian/copyright: + Update copyright information of all files. * Set the debhelper compatibility level to 12: + Get rid of debian/compat. + Add build dependency on debhelper-compat. * debian/rules: + Stop using --builddirectory=build, .gir files no longer seem to contain references to the build directory (see the 2.27.90-1 entry for more details). + Explicitly disable lto since when it's on the build is failing, that doesn't impact Debian by default but is an issue on Ubuntu. (See #1000598) + Don't recommend xdg-desktop-portal-gtk on Ubuntu i386, it's a partial architecture and the binary doesn't exist (See #1000599). * Refresh all patches. * debian/source/lintian-overrides: + Update source-is-missing overrides. webkit2gtk (2.35.1-1) experimental; urgency=medium . * New upstream development release. * debian/watch, debian/gbp.conf: + Update for 2.35.x packages in experimental. * Refresh all patches. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. webkit2gtk (2.34.6-1) unstable; urgency=high . [ Alberto Garcia ] * New upstream release. + Fixes CVE-2022-22620. . [ Jeremy Bicha ] * debian/rules: + Reduce the number of parallel build jobs on Ubuntu's arm64. wireless-regdb (2022.04.08-2~deb11u1) bullseye; urgency=medium . * Backport to bullseye: - Revert "Remove support for loading through crda" - Add my signature for regulatory.bin - d/salsa-ci.yml: Set RELEASE to bullseye * d/tests/check-signatures: Fix typo in openssl command line wireless-regdb (2022.04.08-1) unstable; urgency=medium . * New upstream version: - Raise DFS TX power limit to 250 mW (24 dBm) for the US - Update regulatory rules for Croatia (HR) on 6GHz - Update regulatory rules for France (FR) on 6 and 60 GHz - add support for US S1G channels - add 802.11ah bands to world regulatory domain - Update regulatory rules for Spain (ES) on 6GHz - Update regulatory rules for South Korea (KR) - Update regulatory rules for China (CN) (Closes: #1006127) - Update regulatory rules for the Netherlands (NL) on 6GHz - Update regulatory rules for Israel (IL) - Update regulatory rules for Australia (AU) * d/salsa-ci.yml: Add CI configuration for salsa.debian.org * Remove support for loading through crda (Closes: #973551, #1004347) * d/.gitignore: Ignore another debhelper temporary file wireless-regdb (2021.08.28-1) unstable; urgency=medium . * New upstream version (Closes: #986208): - Update regulatory rules for Egypt (EG), Croatia (HR), Pakistan (PK) on 5GHz, Great Britain (GB), Kazakhstan (KZ), Ukraine (UA), Cuba (CU) on 5Ghz, Germany (DE) on 6GHz, Norway (NO) on 6 and 60 GHz, Ecuador (EC) - US: restore channel 12 & 13 limitation - US: remove PTMP-ONLY from 5850-5895 MHz - US: reduce bandwidth for 5730-5850 and 5850-5895 MHz - ES: Update CNAF regulation url wpewebkit (2.36.3-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security. - This fixes CVE-2022-26700, CVE-2022-26709, CVE-2022-26716, CVE-2022-26717, CVE-2022-26719, CVE-2022-30293 and CVE-2022-30294. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: tell CMake to user clang in all arches except i386 and mipsel (see ##1010329) - debian/control.in: Build depend on clang. * Use libsoup2 instead of libsoup3: - debian/rules: Set USE_SOUP_VERSION=2. wpewebkit (2.36.1-1) unstable; urgency=medium . * New upstream release. * debian/rules: - Reduce the number of parallel build jobs on Ubuntu's amd64 (thanks, Jeremy Bicha). - Re-enable unified builds in Debian/mipsel, the changes from Adrian Bunk should be enough to make this build again. wpewebkit (2.36.0-2) unstable; urgency=medium . * debian/rules: - Build with -Os, -g0 and ggc-min-expand=10 in mips / mipsel in order to lower the memory requirements (thanks, Adrian Bunk). wpewebkit (2.36.0-2~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security. - This fixes CVE-2022-22624, CVE-2022-22628 and CVE-2022-22629. * gcc 10 segfaults when building webkit (see #1008098) so use clang instead. - debian/rules: Tell CMake to use clang. - debian/control: Build depend on clang. * Use libsoup2 instead of libsoup3: - debian/rules: Set USE_SOUP_VERSION=2. - debian/control: Replace all build dependencies and remove the libwpewebkit-1.1 packages. wpewebkit (2.36.0-1) experimental; urgency=medium . * New upstream release. * debian/gbp.conf: + Update upstream branch name. * Refresh all patches. * Update copyright information of all files. * debian/source/lintian-overrides: + Update source-is-missing overrides. * debian/libwpewebkit-1.0-3.symbols: + Update symbols. * debian/rules: + Build with CMAKE_BUILD_WITH_INSTALL_RPATH=ON, otherwise builds are not reproducible if they happen in different directories. + Override the dh_auto_clean rule to remove all python cache files. + Disable unified builds in Debian/mipsel and reduce the number of parallel jobs in order to prevent running out of memory. * Build the 1.1 API version of the packages. These use libsoup 3 instead of libsoup 2 but are otherwise identical to the 1.0 API packages. + debian/control: - Add build dependency on libsoup-3.0-dev. - Add entries for the new packages. + debian/rules: - Add commands to build both sets of packages. wpewebkit (2.34.6-1) unstable; urgency=high . * New upstream release. + Fixes CVE-2022-22620. xen (4.14.4+74-gd7b22226b5-1) bullseye-security; urgency=medium . * Update to new upstream version 4.14.4+74-gd7b22226b5, which also contains security fixes for the following issues: - arm: guest_physmap_remove_page not removing the p2m mappings XSA-393 CVE-2022-23033 - A PV guest could DoS Xen while unmapping a grant XSA-394 CVE-2022-23034 - Insufficient cleanup of passed-through device IRQs XSA-395 CVE-2022-23035 - Racy interactions between dirty vram tracking and paging log dirty hypercalls XSA-397 CVE-2022-26356 - Multiple speculative security issues XSA-398 (no CVE yet) - race in VT-d domain ID cleanup XSA-399 CVE-2022-26357 - IOMMU: RMRR (VT-d) and unity map (AMD-Vi) handling issues XSA-400 CVE-2022-26358 CVE-2022-26359 CVE-2022-26360 CVE-2022-26361 * Note that the following XSA are not listed, because... - XSA-391, XSA-392 and XSA-396 have patches for the Linux kernel. xen (4.14.3+32-g9de3671772-1) unstable; urgency=medium . * Update to new upstream version 4.14.3+32-g9de3671772, which also contains security fixes for the following issues: - guests may exceed their designated memory limit XSA-385 CVE-2021-28706 - PCI devices with RMRRs not deassigned correctly XSA-386 CVE-2021-28702 - PoD operations on misaligned GFNs XSA-388 CVE-2021-28704 CVE-2021-28707 CVE-2021-28708 - issues with partially successful P2M updates on x86 XSA-389 CVE-2021-28705 CVE-2021-28709 * Note that the following XSA are not listed, because... - XSA-387 only applies to Xen 4.13 and older - XSA-390 only applies to Xen 4.15 * Pick the following upstream commits to fix a regression which prevents amd64 type hardware to fully power off. The issue was introduced in version 4.14.0+88-g1d1d1f5391-1 after including upstream commits to improve Raspberry Pi 4 support. (Closes: #994899): - 8b6d55c126 ("x86/ACPI: fix mapping of FACS") - f390941a92 ("x86/DMI: fix table mapping when one lives above 1Mb") - 0f089bbf43 ("x86/ACPI: fix S3 wakeup vector mapping") - 16ca5b3f87 ("x86/ACPI: don't invalidate S5 data when S3 wakeup vector cannot be determined") xz-utils (5.2.5-2.1~deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Rebuild for bullseye-security. . xz-utils (5.2.5-2.1) unstable; urgency=medium . * Non-maintainer upload. * xzgrep: Fix escaping of malicious filenames (ZDI-CAN-16587) (CVE-2022-1271) (Closes: #1009167) zlib (1:1.2.11.dfsg-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix a bug that can crash deflate on some input when using Z_FIXED (CVE-2018-25032) (Closes: #1008265) ======================================= Sat, 26 Mar 2022 - Debian 11.3 released ======================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:37:35 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: btrfs-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x btrfs-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x btrfs-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x cdrom-core-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x cdrom-core-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x cdrom-core-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x crc-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x crc-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x crc-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x crypto-dm-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x crypto-dm-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x crypto-dm-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x crypto-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x crypto-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x crypto-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x dasd-extra-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x dasd-extra-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x dasd-extra-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x dasd-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x dasd-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x dasd-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x ext4-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x ext4-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x ext4-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x f2fs-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x f2fs-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x f2fs-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x fat-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x fat-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x fat-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x fuse-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x fuse-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x fuse-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x isofs-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x isofs-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x isofs-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x kernel-image-5.10.0-11-s390x-di | 5.10.92-2 | s390x kernel-image-5.10.0-12-s390x-di | 5.10.103-1 | s390x kernel-image-5.10.0-9-s390x-di | 5.10.70-1 | s390x linux-headers-5.10.0-11-s390x | 5.10.92-2 | s390x linux-headers-5.10.0-12-s390x | 5.10.103-1 | s390x linux-headers-5.10.0-9-s390x | 5.10.70-1 | s390x linux-image-5.10.0-11-s390x | 5.10.92-2 | s390x linux-image-5.10.0-11-s390x-dbg | 5.10.92-2 | s390x linux-image-5.10.0-12-s390x | 5.10.103-1 | s390x linux-image-5.10.0-12-s390x-dbg | 5.10.103-1 | s390x linux-image-5.10.0-9-s390x | 5.10.70-1 | s390x linux-image-5.10.0-9-s390x-dbg | 5.10.70-1 | s390x loop-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x loop-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x loop-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x md-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x md-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x md-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x mtd-core-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x mtd-core-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x mtd-core-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x multipath-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x multipath-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x multipath-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x nbd-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x nbd-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x nbd-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x nic-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x nic-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x nic-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x scsi-core-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x scsi-core-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x scsi-core-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x scsi-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x scsi-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x scsi-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x udf-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x udf-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x udf-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x xfs-modules-5.10.0-11-s390x-di | 5.10.92-2 | s390x xfs-modules-5.10.0-12-s390x-di | 5.10.103-1 | s390x xfs-modules-5.10.0-9-s390x-di | 5.10.70-1 | s390x ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:37:46 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel affs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel affs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel affs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel affs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel affs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel ata-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel ata-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel ata-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel btrfs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel btrfs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel btrfs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel btrfs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel btrfs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel btrfs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel cdrom-core-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel cdrom-core-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel cdrom-core-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel cdrom-core-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel cdrom-core-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel cdrom-core-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel crc-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel crc-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel crc-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel crc-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel crc-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel crc-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel crypto-dm-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel crypto-dm-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel crypto-dm-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel crypto-dm-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel crypto-dm-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel crypto-dm-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel crypto-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel crypto-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel crypto-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel crypto-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel crypto-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel crypto-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel event-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel event-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel event-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel event-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel event-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel event-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel ext4-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel ext4-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel ext4-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel ext4-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel ext4-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel ext4-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel f2fs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel f2fs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel f2fs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel f2fs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel f2fs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel f2fs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel fat-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel fat-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel fat-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel fat-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel fat-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel fat-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel fb-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel fb-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel fb-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel firewire-core-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel firewire-core-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel firewire-core-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel fuse-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel fuse-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel fuse-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel fuse-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel fuse-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel fuse-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel input-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel input-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel input-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel input-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel input-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel input-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel isofs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel isofs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel isofs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel isofs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel isofs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel isofs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel jfs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel jfs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel jfs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel jfs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel jfs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel jfs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel kernel-image-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel kernel-image-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel kernel-image-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel kernel-image-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel kernel-image-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel kernel-image-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel linux-headers-5.10.0-11-5kc-malta | 5.10.92-2 | mips64el, mipsel linux-headers-5.10.0-11-loongson-3 | 5.10.92-2 | mips64el, mipsel linux-headers-5.10.0-11-octeon | 5.10.92-2 | mips64el, mipsel linux-headers-5.10.0-12-5kc-malta | 5.10.103-1 | mips64el, mipsel linux-headers-5.10.0-12-loongson-3 | 5.10.103-1 | mips64el, mipsel linux-headers-5.10.0-12-octeon | 5.10.103-1 | mips64el, mipsel linux-headers-5.10.0-9-5kc-malta | 5.10.70-1 | mips64el, mipsel linux-headers-5.10.0-9-loongson-3 | 5.10.70-1 | mips64el, mipsel linux-headers-5.10.0-9-octeon | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-11-5kc-malta | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-11-5kc-malta-dbg | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-11-loongson-3 | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-11-loongson-3-dbg | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-11-octeon | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-11-octeon-dbg | 5.10.92-2 | mips64el, mipsel linux-image-5.10.0-12-5kc-malta | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-12-5kc-malta-dbg | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-12-loongson-3 | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-12-loongson-3-dbg | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-12-octeon | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-12-octeon-dbg | 5.10.103-1 | mips64el, mipsel linux-image-5.10.0-9-5kc-malta | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-9-5kc-malta-dbg | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-9-loongson-3 | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-9-loongson-3-dbg | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-9-octeon | 5.10.70-1 | mips64el, mipsel linux-image-5.10.0-9-octeon-dbg | 5.10.70-1 | mips64el, mipsel loop-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel loop-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel loop-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel loop-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel loop-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel loop-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel md-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel md-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel md-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel md-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel md-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel md-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel minix-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel minix-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel minix-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel minix-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel minix-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel minix-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel mtd-core-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel mtd-core-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel mtd-core-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel multipath-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel multipath-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel multipath-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel multipath-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel multipath-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel multipath-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel nbd-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nbd-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel nbd-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nbd-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel nbd-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nbd-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel nfs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nfs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nfs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nic-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nic-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel nic-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nic-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel nic-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nic-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel nic-shared-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nic-shared-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel nic-shared-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nic-shared-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel nic-shared-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nic-shared-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel nic-usb-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nic-usb-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel nic-usb-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nic-usb-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel nic-usb-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nic-usb-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel nic-wireless-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel nic-wireless-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel nic-wireless-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel nic-wireless-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel nic-wireless-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel nic-wireless-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel pata-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel pata-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel pata-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel pata-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel pata-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel pata-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel ppp-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel ppp-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel ppp-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel ppp-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel ppp-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel ppp-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel rtc-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel rtc-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel rtc-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel sata-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel sata-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel sata-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel sata-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel sata-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel sata-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel scsi-core-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel scsi-core-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel scsi-core-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel scsi-core-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel scsi-core-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel scsi-core-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel scsi-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel scsi-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel scsi-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel scsi-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel scsi-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel scsi-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel scsi-nic-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel scsi-nic-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel scsi-nic-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel scsi-nic-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel scsi-nic-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel scsi-nic-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel sound-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel sound-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel sound-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel sound-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel sound-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel sound-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel speakup-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel speakup-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel speakup-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel squashfs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel squashfs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel squashfs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel squashfs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel squashfs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel squashfs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel udf-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel udf-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel udf-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel udf-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel udf-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel udf-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel usb-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel usb-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel usb-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel usb-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel usb-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel usb-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel usb-serial-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel usb-serial-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel usb-serial-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel usb-serial-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel usb-serial-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel usb-serial-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel usb-storage-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel usb-storage-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel usb-storage-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel usb-storage-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel usb-storage-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel usb-storage-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel xfs-modules-5.10.0-11-loongson-3-di | 5.10.92-2 | mips64el, mipsel xfs-modules-5.10.0-11-octeon-di | 5.10.92-2 | mips64el, mipsel xfs-modules-5.10.0-12-loongson-3-di | 5.10.103-1 | mips64el, mipsel xfs-modules-5.10.0-12-octeon-di | 5.10.103-1 | mips64el, mipsel xfs-modules-5.10.0-9-loongson-3-di | 5.10.70-1 | mips64el, mipsel xfs-modules-5.10.0-9-octeon-di | 5.10.70-1 | mips64el, mipsel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:37:56 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel affs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel affs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel ata-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel ata-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel ata-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel btrfs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel btrfs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel btrfs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel cdrom-core-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel cdrom-core-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel cdrom-core-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel crc-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel crc-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel crc-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel crypto-dm-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel crypto-dm-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel crypto-dm-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel crypto-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel crypto-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel crypto-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel event-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel event-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel event-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel ext4-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel ext4-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel ext4-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel f2fs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel f2fs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel f2fs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel fat-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel fat-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel fat-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel fb-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel fb-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel fb-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel fuse-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel fuse-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel fuse-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel i2c-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel i2c-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel i2c-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel input-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel input-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel input-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel isofs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel isofs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel isofs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel jfs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel jfs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel jfs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel kernel-image-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel kernel-image-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel kernel-image-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel linux-headers-5.10.0-11-4kc-malta | 5.10.92-2 | mipsel linux-headers-5.10.0-12-4kc-malta | 5.10.103-1 | mipsel linux-headers-5.10.0-9-4kc-malta | 5.10.70-1 | mipsel linux-image-5.10.0-11-4kc-malta | 5.10.92-2 | mipsel linux-image-5.10.0-11-4kc-malta-dbg | 5.10.92-2 | mipsel linux-image-5.10.0-12-4kc-malta | 5.10.103-1 | mipsel linux-image-5.10.0-12-4kc-malta-dbg | 5.10.103-1 | mipsel linux-image-5.10.0-9-4kc-malta | 5.10.70-1 | mipsel linux-image-5.10.0-9-4kc-malta-dbg | 5.10.70-1 | mipsel loop-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel loop-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel loop-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel md-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel md-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel md-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel minix-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel minix-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel minix-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel mmc-core-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel mmc-core-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel mmc-core-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel mmc-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel mmc-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel mmc-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel mouse-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel mouse-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel mouse-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel mtd-core-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel mtd-core-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel mtd-core-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel multipath-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel multipath-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel multipath-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel nbd-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel nbd-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel nbd-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel nic-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel nic-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel nic-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel nic-shared-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel nic-shared-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel nic-shared-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel nic-usb-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel nic-usb-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel nic-usb-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel nic-wireless-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel nic-wireless-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel nic-wireless-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel pata-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel pata-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel pata-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel ppp-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel ppp-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel ppp-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel sata-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel sata-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel sata-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel scsi-core-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel scsi-core-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel scsi-core-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel scsi-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel scsi-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel scsi-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel scsi-nic-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel scsi-nic-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel scsi-nic-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel sound-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel sound-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel sound-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel squashfs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel squashfs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel squashfs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel udf-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel udf-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel udf-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel usb-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel usb-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel usb-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel usb-serial-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel usb-serial-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel usb-serial-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel usb-storage-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel usb-storage-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel usb-storage-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel xfs-modules-5.10.0-11-4kc-malta-di | 5.10.92-2 | mipsel xfs-modules-5.10.0-12-4kc-malta-di | 5.10.103-1 | mipsel xfs-modules-5.10.0-9-4kc-malta-di | 5.10.70-1 | mipsel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:05 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: ata-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el ata-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el ata-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el btrfs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el btrfs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el btrfs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el cdrom-core-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el cdrom-core-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el cdrom-core-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el crc-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el crc-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el crc-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el crypto-dm-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el crypto-dm-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el crypto-dm-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el crypto-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el crypto-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el crypto-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el event-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el event-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el event-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el ext4-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el ext4-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el ext4-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el f2fs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el f2fs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el f2fs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el fancontrol-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el fancontrol-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el fancontrol-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el fat-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el fat-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el fat-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el fb-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el fb-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el fb-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el firewire-core-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el firewire-core-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el firewire-core-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el fuse-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el fuse-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el fuse-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el hypervisor-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el hypervisor-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el hypervisor-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el i2c-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el i2c-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el i2c-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el input-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el input-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el input-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el isofs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el isofs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el isofs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el jfs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el jfs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el jfs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el kernel-image-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el kernel-image-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el kernel-image-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el linux-headers-5.10.0-11-powerpc64le | 5.10.92-2 | ppc64el linux-headers-5.10.0-12-powerpc64le | 5.10.103-1 | ppc64el linux-headers-5.10.0-9-powerpc64le | 5.10.70-1 | ppc64el linux-image-5.10.0-11-powerpc64le | 5.10.92-2 | ppc64el linux-image-5.10.0-11-powerpc64le-dbg | 5.10.92-2 | ppc64el linux-image-5.10.0-12-powerpc64le | 5.10.103-1 | ppc64el linux-image-5.10.0-12-powerpc64le-dbg | 5.10.103-1 | ppc64el linux-image-5.10.0-9-powerpc64le | 5.10.70-1 | ppc64el linux-image-5.10.0-9-powerpc64le-dbg | 5.10.70-1 | ppc64el loop-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el loop-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el loop-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el md-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el md-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el md-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el mouse-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el mouse-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el mouse-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el mtd-core-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el mtd-core-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el mtd-core-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el multipath-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el multipath-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el multipath-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el nbd-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el nbd-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el nbd-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el nic-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el nic-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el nic-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el nic-shared-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el nic-shared-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el nic-shared-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el nic-usb-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el nic-usb-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el nic-usb-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el nic-wireless-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el nic-wireless-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el nic-wireless-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el ppp-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el ppp-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el ppp-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el sata-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el sata-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el sata-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el scsi-core-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el scsi-core-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el scsi-core-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el scsi-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el scsi-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el scsi-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el scsi-nic-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el scsi-nic-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el scsi-nic-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el serial-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el serial-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el serial-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el squashfs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el squashfs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el squashfs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el udf-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el udf-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el udf-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el uinput-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el uinput-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el uinput-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el usb-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el usb-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el usb-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el usb-serial-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el usb-serial-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el usb-serial-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el usb-storage-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el usb-storage-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el usb-storage-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el xfs-modules-5.10.0-11-powerpc64le-di | 5.10.92-2 | ppc64el xfs-modules-5.10.0-12-powerpc64le-di | 5.10.103-1 | ppc64el xfs-modules-5.10.0-9-powerpc64le-di | 5.10.70-1 | ppc64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:13 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: linux-headers-5.10.0-11-amd64 | 5.10.92-2 | amd64 linux-headers-5.10.0-11-cloud-amd64 | 5.10.92-2 | amd64 linux-headers-5.10.0-11-rt-amd64 | 5.10.92-2 | amd64 linux-headers-5.10.0-12-amd64 | 5.10.103-1 | amd64 linux-headers-5.10.0-12-cloud-amd64 | 5.10.103-1 | amd64 linux-headers-5.10.0-12-rt-amd64 | 5.10.103-1 | amd64 linux-headers-5.10.0-9-amd64 | 5.10.70-1 | amd64 linux-headers-5.10.0-9-cloud-amd64 | 5.10.70-1 | amd64 linux-headers-5.10.0-9-rt-amd64 | 5.10.70-1 | amd64 linux-image-5.10.0-11-amd64-dbg | 5.10.92-2 | amd64 linux-image-5.10.0-11-amd64-unsigned | 5.10.92-2 | amd64 linux-image-5.10.0-11-cloud-amd64-dbg | 5.10.92-2 | amd64 linux-image-5.10.0-11-cloud-amd64-unsigned | 5.10.92-2 | amd64 linux-image-5.10.0-11-rt-amd64-dbg | 5.10.92-2 | amd64 linux-image-5.10.0-11-rt-amd64-unsigned | 5.10.92-2 | amd64 linux-image-5.10.0-12-amd64-dbg | 5.10.103-1 | amd64 linux-image-5.10.0-12-amd64-unsigned | 5.10.103-1 | amd64 linux-image-5.10.0-12-cloud-amd64-dbg | 5.10.103-1 | amd64 linux-image-5.10.0-12-cloud-amd64-unsigned | 5.10.103-1 | amd64 linux-image-5.10.0-12-rt-amd64-dbg | 5.10.103-1 | amd64 linux-image-5.10.0-12-rt-amd64-unsigned | 5.10.103-1 | amd64 linux-image-5.10.0-9-amd64-dbg | 5.10.70-1 | amd64 linux-image-5.10.0-9-amd64-unsigned | 5.10.70-1 | amd64 linux-image-5.10.0-9-cloud-amd64-dbg | 5.10.70-1 | amd64 linux-image-5.10.0-9-cloud-amd64-unsigned | 5.10.70-1 | amd64 linux-image-5.10.0-9-rt-amd64-dbg | 5.10.70-1 | amd64 linux-image-5.10.0-9-rt-amd64-unsigned | 5.10.70-1 | amd64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:24 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: linux-headers-5.10.0-11-arm64 | 5.10.92-2 | arm64 linux-headers-5.10.0-11-cloud-arm64 | 5.10.92-2 | arm64 linux-headers-5.10.0-11-rt-arm64 | 5.10.92-2 | arm64 linux-headers-5.10.0-12-arm64 | 5.10.103-1 | arm64 linux-headers-5.10.0-12-cloud-arm64 | 5.10.103-1 | arm64 linux-headers-5.10.0-12-rt-arm64 | 5.10.103-1 | arm64 linux-headers-5.10.0-9-arm64 | 5.10.70-1 | arm64 linux-headers-5.10.0-9-cloud-arm64 | 5.10.70-1 | arm64 linux-headers-5.10.0-9-rt-arm64 | 5.10.70-1 | arm64 linux-image-5.10.0-11-arm64-dbg | 5.10.92-2 | arm64 linux-image-5.10.0-11-arm64-unsigned | 5.10.92-2 | arm64 linux-image-5.10.0-11-cloud-arm64-dbg | 5.10.92-2 | arm64 linux-image-5.10.0-11-cloud-arm64-unsigned | 5.10.92-2 | arm64 linux-image-5.10.0-11-rt-arm64-dbg | 5.10.92-2 | arm64 linux-image-5.10.0-11-rt-arm64-unsigned | 5.10.92-2 | arm64 linux-image-5.10.0-12-arm64-dbg | 5.10.103-1 | arm64 linux-image-5.10.0-12-arm64-unsigned | 5.10.103-1 | arm64 linux-image-5.10.0-12-cloud-arm64-dbg | 5.10.103-1 | arm64 linux-image-5.10.0-12-cloud-arm64-unsigned | 5.10.103-1 | arm64 linux-image-5.10.0-12-rt-arm64-dbg | 5.10.103-1 | arm64 linux-image-5.10.0-12-rt-arm64-unsigned | 5.10.103-1 | arm64 linux-image-5.10.0-9-arm64-dbg | 5.10.70-1 | arm64 linux-image-5.10.0-9-arm64-unsigned | 5.10.70-1 | arm64 linux-image-5.10.0-9-cloud-arm64-dbg | 5.10.70-1 | arm64 linux-image-5.10.0-9-cloud-arm64-unsigned | 5.10.70-1 | arm64 linux-image-5.10.0-9-rt-arm64-dbg | 5.10.70-1 | arm64 linux-image-5.10.0-9-rt-arm64-unsigned | 5.10.70-1 | arm64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:32 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: btrfs-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel btrfs-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel btrfs-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel cdrom-core-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel cdrom-core-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel cdrom-core-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel crc-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel crc-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel crc-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel crypto-dm-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel crypto-dm-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel crypto-dm-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel crypto-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel crypto-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel crypto-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel event-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel event-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel event-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel ext4-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel ext4-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel ext4-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel f2fs-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel f2fs-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel f2fs-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel fat-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel fat-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel fat-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel fb-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel fb-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel fb-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel fuse-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel fuse-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel fuse-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel input-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel input-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel input-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel ipv6-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel ipv6-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel ipv6-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel isofs-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel isofs-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel isofs-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel jffs2-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel jffs2-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel jffs2-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel jfs-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel jfs-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel jfs-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel kernel-image-5.10.0-11-marvell-di | 5.10.92-2 | armel kernel-image-5.10.0-12-marvell-di | 5.10.103-1 | armel kernel-image-5.10.0-9-marvell-di | 5.10.70-1 | armel leds-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel leds-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel leds-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel linux-headers-5.10.0-11-marvell | 5.10.92-2 | armel linux-headers-5.10.0-11-rpi | 5.10.92-2 | armel linux-headers-5.10.0-12-marvell | 5.10.103-1 | armel linux-headers-5.10.0-12-rpi | 5.10.103-1 | armel linux-headers-5.10.0-9-marvell | 5.10.70-1 | armel linux-headers-5.10.0-9-rpi | 5.10.70-1 | armel linux-image-5.10.0-11-marvell | 5.10.92-2 | armel linux-image-5.10.0-11-marvell-dbg | 5.10.92-2 | armel linux-image-5.10.0-11-rpi | 5.10.92-2 | armel linux-image-5.10.0-11-rpi-dbg | 5.10.92-2 | armel linux-image-5.10.0-12-marvell | 5.10.103-1 | armel linux-image-5.10.0-12-marvell-dbg | 5.10.103-1 | armel linux-image-5.10.0-12-rpi | 5.10.103-1 | armel linux-image-5.10.0-12-rpi-dbg | 5.10.103-1 | armel linux-image-5.10.0-9-marvell | 5.10.70-1 | armel linux-image-5.10.0-9-marvell-dbg | 5.10.70-1 | armel linux-image-5.10.0-9-rpi | 5.10.70-1 | armel linux-image-5.10.0-9-rpi-dbg | 5.10.70-1 | armel loop-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel loop-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel loop-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel md-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel md-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel md-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel minix-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel minix-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel minix-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel mmc-core-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel mmc-core-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel mmc-core-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel mmc-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel mmc-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel mmc-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel mouse-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel mouse-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel mouse-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel mtd-core-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel mtd-core-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel mtd-core-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel mtd-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel mtd-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel mtd-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel multipath-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel multipath-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel multipath-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel nbd-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel nbd-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel nbd-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel nic-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel nic-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel nic-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel nic-shared-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel nic-shared-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel nic-shared-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel nic-usb-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel nic-usb-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel nic-usb-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel ppp-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel ppp-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel ppp-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel sata-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel sata-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel sata-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel scsi-core-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel scsi-core-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel scsi-core-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel squashfs-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel squashfs-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel squashfs-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel udf-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel udf-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel udf-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel uinput-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel uinput-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel uinput-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel usb-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel usb-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel usb-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel usb-serial-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel usb-serial-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel usb-serial-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel usb-storage-modules-5.10.0-11-marvell-di | 5.10.92-2 | armel usb-storage-modules-5.10.0-12-marvell-di | 5.10.103-1 | armel usb-storage-modules-5.10.0-9-marvell-di | 5.10.70-1 | armel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:41 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: ata-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf ata-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf ata-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf btrfs-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf btrfs-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf btrfs-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf cdrom-core-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf cdrom-core-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf cdrom-core-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf crc-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf crc-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf crc-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf crypto-dm-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf crypto-dm-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf crypto-dm-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf crypto-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf crypto-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf crypto-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf efi-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf efi-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf efi-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf event-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf event-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf event-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf ext4-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf ext4-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf ext4-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf f2fs-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf f2fs-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf f2fs-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf fat-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf fat-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf fat-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf fb-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf fb-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf fb-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf fuse-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf fuse-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf fuse-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf i2c-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf i2c-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf i2c-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf input-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf input-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf input-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf isofs-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf isofs-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf isofs-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf jfs-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf jfs-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf jfs-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf kernel-image-5.10.0-11-armmp-di | 5.10.92-2 | armhf kernel-image-5.10.0-12-armmp-di | 5.10.103-1 | armhf kernel-image-5.10.0-9-armmp-di | 5.10.70-1 | armhf leds-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf leds-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf leds-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf linux-headers-5.10.0-11-armmp | 5.10.92-2 | armhf linux-headers-5.10.0-11-armmp-lpae | 5.10.92-2 | armhf linux-headers-5.10.0-11-rt-armmp | 5.10.92-2 | armhf linux-headers-5.10.0-12-armmp | 5.10.103-1 | armhf linux-headers-5.10.0-12-armmp-lpae | 5.10.103-1 | armhf linux-headers-5.10.0-12-rt-armmp | 5.10.103-1 | armhf linux-headers-5.10.0-9-armmp | 5.10.70-1 | armhf linux-headers-5.10.0-9-armmp-lpae | 5.10.70-1 | armhf linux-headers-5.10.0-9-rt-armmp | 5.10.70-1 | armhf linux-image-5.10.0-11-armmp | 5.10.92-2 | armhf linux-image-5.10.0-11-armmp-dbg | 5.10.92-2 | armhf linux-image-5.10.0-11-armmp-lpae | 5.10.92-2 | armhf linux-image-5.10.0-11-armmp-lpae-dbg | 5.10.92-2 | armhf linux-image-5.10.0-11-rt-armmp | 5.10.92-2 | armhf linux-image-5.10.0-11-rt-armmp-dbg | 5.10.92-2 | armhf linux-image-5.10.0-12-armmp | 5.10.103-1 | armhf linux-image-5.10.0-12-armmp-dbg | 5.10.103-1 | armhf linux-image-5.10.0-12-armmp-lpae | 5.10.103-1 | armhf linux-image-5.10.0-12-armmp-lpae-dbg | 5.10.103-1 | armhf linux-image-5.10.0-12-rt-armmp | 5.10.103-1 | armhf linux-image-5.10.0-12-rt-armmp-dbg | 5.10.103-1 | armhf linux-image-5.10.0-9-armmp | 5.10.70-1 | armhf linux-image-5.10.0-9-armmp-dbg | 5.10.70-1 | armhf linux-image-5.10.0-9-armmp-lpae | 5.10.70-1 | armhf linux-image-5.10.0-9-armmp-lpae-dbg | 5.10.70-1 | armhf linux-image-5.10.0-9-rt-armmp | 5.10.70-1 | armhf linux-image-5.10.0-9-rt-armmp-dbg | 5.10.70-1 | armhf loop-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf loop-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf loop-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf md-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf md-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf md-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf mmc-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf mmc-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf mmc-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf mtd-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf mtd-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf mtd-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf multipath-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf multipath-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf multipath-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf nbd-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf nbd-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf nbd-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf nic-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf nic-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf nic-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf nic-shared-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf nic-shared-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf nic-shared-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf nic-usb-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf nic-usb-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf nic-usb-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf nic-wireless-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf nic-wireless-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf nic-wireless-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf pata-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf pata-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf pata-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf ppp-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf ppp-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf ppp-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf sata-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf sata-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf sata-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf scsi-core-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf scsi-core-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf scsi-core-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf scsi-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf scsi-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf scsi-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf scsi-nic-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf scsi-nic-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf scsi-nic-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf squashfs-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf squashfs-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf squashfs-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf udf-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf udf-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf udf-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf uinput-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf uinput-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf uinput-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf usb-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf usb-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf usb-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf usb-serial-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf usb-serial-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf usb-serial-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf usb-storage-modules-5.10.0-11-armmp-di | 5.10.92-2 | armhf usb-storage-modules-5.10.0-12-armmp-di | 5.10.103-1 | armhf usb-storage-modules-5.10.0-9-armmp-di | 5.10.70-1 | armhf ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:49 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: linux-headers-5.10.0-11-686 | 5.10.92-2 | i386 linux-headers-5.10.0-11-686-pae | 5.10.92-2 | i386 linux-headers-5.10.0-11-rt-686-pae | 5.10.92-2 | i386 linux-headers-5.10.0-12-686 | 5.10.103-1 | i386 linux-headers-5.10.0-12-686-pae | 5.10.103-1 | i386 linux-headers-5.10.0-12-rt-686-pae | 5.10.103-1 | i386 linux-headers-5.10.0-9-686 | 5.10.70-1 | i386 linux-headers-5.10.0-9-686-pae | 5.10.70-1 | i386 linux-headers-5.10.0-9-rt-686-pae | 5.10.70-1 | i386 linux-image-5.10.0-11-686-dbg | 5.10.92-2 | i386 linux-image-5.10.0-11-686-pae-dbg | 5.10.92-2 | i386 linux-image-5.10.0-11-686-pae-unsigned | 5.10.92-2 | i386 linux-image-5.10.0-11-686-unsigned | 5.10.92-2 | i386 linux-image-5.10.0-11-rt-686-pae-dbg | 5.10.92-2 | i386 linux-image-5.10.0-11-rt-686-pae-unsigned | 5.10.92-2 | i386 linux-image-5.10.0-12-686-dbg | 5.10.103-1 | i386 linux-image-5.10.0-12-686-pae-dbg | 5.10.103-1 | i386 linux-image-5.10.0-12-686-pae-unsigned | 5.10.103-1 | i386 linux-image-5.10.0-12-686-unsigned | 5.10.103-1 | i386 linux-image-5.10.0-12-rt-686-pae-dbg | 5.10.103-1 | i386 linux-image-5.10.0-12-rt-686-pae-unsigned | 5.10.103-1 | i386 linux-image-5.10.0-9-686-dbg | 5.10.70-1 | i386 linux-image-5.10.0-9-686-pae-dbg | 5.10.70-1 | i386 linux-image-5.10.0-9-686-pae-unsigned | 5.10.70-1 | i386 linux-image-5.10.0-9-686-unsigned | 5.10.70-1 | i386 linux-image-5.10.0-9-rt-686-pae-dbg | 5.10.70-1 | i386 linux-image-5.10.0-9-rt-686-pae-unsigned | 5.10.70-1 | i386 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:38:57 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: affs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el affs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el affs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el ata-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el ata-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el ata-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el btrfs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el btrfs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el btrfs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el cdrom-core-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el cdrom-core-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el cdrom-core-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el crc-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el crc-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el crc-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el crypto-dm-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el crypto-dm-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el crypto-dm-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el crypto-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el crypto-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el crypto-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el event-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el event-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el event-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el ext4-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el ext4-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el ext4-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el f2fs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el f2fs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el f2fs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el fat-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el fat-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el fat-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el fb-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el fb-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el fb-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el fuse-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el fuse-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el fuse-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el i2c-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el i2c-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el i2c-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el input-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el input-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el input-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el isofs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el isofs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el isofs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el jfs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el jfs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el jfs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el kernel-image-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el kernel-image-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el kernel-image-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el loop-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el loop-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el loop-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el md-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el md-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el md-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el minix-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el minix-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el minix-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el mmc-core-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el mmc-core-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el mmc-core-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el mmc-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el mmc-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el mmc-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el mouse-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el mouse-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el mouse-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el mtd-core-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el mtd-core-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el mtd-core-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el multipath-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el multipath-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el multipath-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el nbd-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el nbd-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el nbd-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el nic-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el nic-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el nic-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el nic-shared-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el nic-shared-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el nic-shared-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el nic-usb-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el nic-usb-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el nic-usb-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el nic-wireless-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el nic-wireless-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el nic-wireless-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el pata-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el pata-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el pata-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el ppp-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el ppp-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el ppp-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el sata-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el sata-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el sata-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el scsi-core-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el scsi-core-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el scsi-core-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el scsi-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el scsi-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el scsi-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el scsi-nic-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el scsi-nic-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el scsi-nic-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el sound-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el sound-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el sound-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el squashfs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el squashfs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el squashfs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el udf-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el udf-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el udf-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el usb-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el usb-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el usb-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el usb-serial-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el usb-serial-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el usb-serial-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el usb-storage-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el usb-storage-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el usb-storage-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el xfs-modules-5.10.0-11-5kc-malta-di | 5.10.92-2 | mips64el xfs-modules-5.10.0-12-5kc-malta-di | 5.10.103-1 | mips64el xfs-modules-5.10.0-9-5kc-malta-di | 5.10.70-1 | mips64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:39:06 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 acpi-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 acpi-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 ata-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 ata-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 ata-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 btrfs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 btrfs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 btrfs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 cdrom-core-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 cdrom-core-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 cdrom-core-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 crc-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 crc-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 crc-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 crypto-dm-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 crypto-dm-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 crypto-dm-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 crypto-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 crypto-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 crypto-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 efi-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 efi-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 efi-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 event-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 event-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 event-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 ext4-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 ext4-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 ext4-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 f2fs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 f2fs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 f2fs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 fat-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 fat-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 fat-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 fb-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 fb-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 fb-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 firewire-core-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 firewire-core-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 firewire-core-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 fuse-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 fuse-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 fuse-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 i2c-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 i2c-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 i2c-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 input-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 input-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 input-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 isofs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 isofs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 isofs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 jfs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 jfs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 jfs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 kernel-image-5.10.0-11-amd64-di | 5.10.92-2 | amd64 kernel-image-5.10.0-12-amd64-di | 5.10.103-1 | amd64 kernel-image-5.10.0-9-amd64-di | 5.10.70-1 | amd64 linux-image-5.10.0-11-amd64 | 5.10.92-2 | amd64 linux-image-5.10.0-11-cloud-amd64 | 5.10.92-2 | amd64 linux-image-5.10.0-11-rt-amd64 | 5.10.92-2 | amd64 linux-image-5.10.0-12-amd64 | 5.10.103-1 | amd64 linux-image-5.10.0-12-cloud-amd64 | 5.10.103-1 | amd64 linux-image-5.10.0-12-rt-amd64 | 5.10.103-1 | amd64 linux-image-5.10.0-9-amd64 | 5.10.70-1 | amd64 linux-image-5.10.0-9-cloud-amd64 | 5.10.70-1 | amd64 linux-image-5.10.0-9-rt-amd64 | 5.10.70-1 | amd64 loop-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 loop-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 loop-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 md-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 md-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 md-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 mmc-core-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 mmc-core-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 mmc-core-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 mmc-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 mmc-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 mmc-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 mouse-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 mouse-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 mouse-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 mtd-core-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 mtd-core-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 mtd-core-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 multipath-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 multipath-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 multipath-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nbd-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nbd-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nbd-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nic-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nic-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nic-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nic-pcmcia-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nic-pcmcia-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nic-pcmcia-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nic-shared-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nic-shared-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nic-shared-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nic-usb-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nic-usb-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nic-usb-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 nic-wireless-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 nic-wireless-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 nic-wireless-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 pata-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 pata-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 pata-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 pcmcia-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 pcmcia-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 pcmcia-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 pcmcia-storage-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 pcmcia-storage-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 pcmcia-storage-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 ppp-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 ppp-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 ppp-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 rfkill-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 rfkill-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 rfkill-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 sata-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 sata-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 sata-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 scsi-core-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 scsi-core-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 scsi-core-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 scsi-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 scsi-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 scsi-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 scsi-nic-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 scsi-nic-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 scsi-nic-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 serial-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 serial-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 serial-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 sound-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 sound-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 sound-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 speakup-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 speakup-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 speakup-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 squashfs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 squashfs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 squashfs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 udf-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 udf-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 udf-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 uinput-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 uinput-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 uinput-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 usb-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 usb-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 usb-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 usb-serial-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 usb-serial-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 usb-serial-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 usb-storage-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 usb-storage-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 usb-storage-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 xfs-modules-5.10.0-11-amd64-di | 5.10.92-2 | amd64 xfs-modules-5.10.0-12-amd64-di | 5.10.103-1 | amd64 xfs-modules-5.10.0-9-amd64-di | 5.10.70-1 | amd64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-amd64) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:39:15 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: ata-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 ata-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 ata-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 btrfs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 btrfs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 btrfs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 cdrom-core-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 cdrom-core-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 cdrom-core-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 crc-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 crc-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 crc-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 crypto-dm-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 crypto-dm-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 crypto-dm-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 crypto-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 crypto-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 crypto-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 efi-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 efi-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 efi-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 event-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 event-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 event-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 ext4-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 ext4-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 ext4-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 f2fs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 f2fs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 f2fs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 fat-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 fat-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 fat-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 fb-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 fb-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 fb-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 fuse-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 fuse-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 fuse-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 i2c-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 i2c-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 i2c-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 input-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 input-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 input-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 isofs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 isofs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 isofs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 jfs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 jfs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 jfs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 kernel-image-5.10.0-11-arm64-di | 5.10.92-2 | arm64 kernel-image-5.10.0-12-arm64-di | 5.10.103-1 | arm64 kernel-image-5.10.0-9-arm64-di | 5.10.70-1 | arm64 leds-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 leds-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 leds-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 linux-image-5.10.0-11-arm64 | 5.10.92-2 | arm64 linux-image-5.10.0-11-cloud-arm64 | 5.10.92-2 | arm64 linux-image-5.10.0-11-rt-arm64 | 5.10.92-2 | arm64 linux-image-5.10.0-12-arm64 | 5.10.103-1 | arm64 linux-image-5.10.0-12-cloud-arm64 | 5.10.103-1 | arm64 linux-image-5.10.0-12-rt-arm64 | 5.10.103-1 | arm64 linux-image-5.10.0-9-arm64 | 5.10.70-1 | arm64 linux-image-5.10.0-9-cloud-arm64 | 5.10.70-1 | arm64 linux-image-5.10.0-9-rt-arm64 | 5.10.70-1 | arm64 loop-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 loop-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 loop-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 md-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 md-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 md-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 mmc-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 mmc-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 mmc-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 mtd-core-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 mtd-core-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 mtd-core-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 multipath-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 multipath-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 multipath-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 nbd-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 nbd-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 nbd-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 nic-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 nic-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 nic-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 nic-shared-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 nic-shared-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 nic-shared-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 nic-usb-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 nic-usb-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 nic-usb-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 nic-wireless-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 nic-wireless-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 nic-wireless-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 ppp-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 ppp-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 ppp-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 sata-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 sata-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 sata-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 scsi-core-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 scsi-core-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 scsi-core-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 scsi-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 scsi-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 scsi-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 scsi-nic-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 scsi-nic-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 scsi-nic-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 squashfs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 squashfs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 squashfs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 udf-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 udf-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 udf-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 uinput-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 uinput-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 uinput-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 usb-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 usb-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 usb-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 usb-serial-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 usb-serial-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 usb-serial-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 usb-storage-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 usb-storage-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 usb-storage-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 xfs-modules-5.10.0-11-arm64-di | 5.10.92-2 | arm64 xfs-modules-5.10.0-12-arm64-di | 5.10.103-1 | arm64 xfs-modules-5.10.0-9-arm64-di | 5.10.70-1 | arm64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-arm64) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:39:25 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: acpi-modules-5.10.0-11-686-di | 5.10.92-2 | i386 acpi-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 acpi-modules-5.10.0-12-686-di | 5.10.103-1 | i386 acpi-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 acpi-modules-5.10.0-9-686-di | 5.10.70-1 | i386 acpi-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 ata-modules-5.10.0-11-686-di | 5.10.92-2 | i386 ata-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 ata-modules-5.10.0-12-686-di | 5.10.103-1 | i386 ata-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 ata-modules-5.10.0-9-686-di | 5.10.70-1 | i386 ata-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 btrfs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 btrfs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 btrfs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 btrfs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 btrfs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 btrfs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 cdrom-core-modules-5.10.0-11-686-di | 5.10.92-2 | i386 cdrom-core-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 cdrom-core-modules-5.10.0-12-686-di | 5.10.103-1 | i386 cdrom-core-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 cdrom-core-modules-5.10.0-9-686-di | 5.10.70-1 | i386 cdrom-core-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 crc-modules-5.10.0-11-686-di | 5.10.92-2 | i386 crc-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 crc-modules-5.10.0-12-686-di | 5.10.103-1 | i386 crc-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 crc-modules-5.10.0-9-686-di | 5.10.70-1 | i386 crc-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 crypto-dm-modules-5.10.0-11-686-di | 5.10.92-2 | i386 crypto-dm-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 crypto-dm-modules-5.10.0-12-686-di | 5.10.103-1 | i386 crypto-dm-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 crypto-dm-modules-5.10.0-9-686-di | 5.10.70-1 | i386 crypto-dm-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 crypto-modules-5.10.0-11-686-di | 5.10.92-2 | i386 crypto-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 crypto-modules-5.10.0-12-686-di | 5.10.103-1 | i386 crypto-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 crypto-modules-5.10.0-9-686-di | 5.10.70-1 | i386 crypto-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 efi-modules-5.10.0-11-686-di | 5.10.92-2 | i386 efi-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 efi-modules-5.10.0-12-686-di | 5.10.103-1 | i386 efi-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 efi-modules-5.10.0-9-686-di | 5.10.70-1 | i386 efi-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 event-modules-5.10.0-11-686-di | 5.10.92-2 | i386 event-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 event-modules-5.10.0-12-686-di | 5.10.103-1 | i386 event-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 event-modules-5.10.0-9-686-di | 5.10.70-1 | i386 event-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 ext4-modules-5.10.0-11-686-di | 5.10.92-2 | i386 ext4-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 ext4-modules-5.10.0-12-686-di | 5.10.103-1 | i386 ext4-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 ext4-modules-5.10.0-9-686-di | 5.10.70-1 | i386 ext4-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 f2fs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 f2fs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 f2fs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 f2fs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 f2fs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 f2fs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 fat-modules-5.10.0-11-686-di | 5.10.92-2 | i386 fat-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 fat-modules-5.10.0-12-686-di | 5.10.103-1 | i386 fat-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 fat-modules-5.10.0-9-686-di | 5.10.70-1 | i386 fat-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 fb-modules-5.10.0-11-686-di | 5.10.92-2 | i386 fb-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 fb-modules-5.10.0-12-686-di | 5.10.103-1 | i386 fb-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 fb-modules-5.10.0-9-686-di | 5.10.70-1 | i386 fb-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 firewire-core-modules-5.10.0-11-686-di | 5.10.92-2 | i386 firewire-core-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 firewire-core-modules-5.10.0-12-686-di | 5.10.103-1 | i386 firewire-core-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 firewire-core-modules-5.10.0-9-686-di | 5.10.70-1 | i386 firewire-core-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 fuse-modules-5.10.0-11-686-di | 5.10.92-2 | i386 fuse-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 fuse-modules-5.10.0-12-686-di | 5.10.103-1 | i386 fuse-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 fuse-modules-5.10.0-9-686-di | 5.10.70-1 | i386 fuse-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 i2c-modules-5.10.0-11-686-di | 5.10.92-2 | i386 i2c-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 i2c-modules-5.10.0-12-686-di | 5.10.103-1 | i386 i2c-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 i2c-modules-5.10.0-9-686-di | 5.10.70-1 | i386 i2c-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 input-modules-5.10.0-11-686-di | 5.10.92-2 | i386 input-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 input-modules-5.10.0-12-686-di | 5.10.103-1 | i386 input-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 input-modules-5.10.0-9-686-di | 5.10.70-1 | i386 input-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 isofs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 isofs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 isofs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 isofs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 isofs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 isofs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 jfs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 jfs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 jfs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 jfs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 jfs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 jfs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 kernel-image-5.10.0-11-686-di | 5.10.92-2 | i386 kernel-image-5.10.0-11-686-pae-di | 5.10.92-2 | i386 kernel-image-5.10.0-12-686-di | 5.10.103-1 | i386 kernel-image-5.10.0-12-686-pae-di | 5.10.103-1 | i386 kernel-image-5.10.0-9-686-di | 5.10.70-1 | i386 kernel-image-5.10.0-9-686-pae-di | 5.10.70-1 | i386 linux-image-5.10.0-11-686 | 5.10.92-2 | i386 linux-image-5.10.0-11-686-pae | 5.10.92-2 | i386 linux-image-5.10.0-11-rt-686-pae | 5.10.92-2 | i386 linux-image-5.10.0-12-686 | 5.10.103-1 | i386 linux-image-5.10.0-12-686-pae | 5.10.103-1 | i386 linux-image-5.10.0-12-rt-686-pae | 5.10.103-1 | i386 linux-image-5.10.0-9-686 | 5.10.70-1 | i386 linux-image-5.10.0-9-686-pae | 5.10.70-1 | i386 linux-image-5.10.0-9-rt-686-pae | 5.10.70-1 | i386 loop-modules-5.10.0-11-686-di | 5.10.92-2 | i386 loop-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 loop-modules-5.10.0-12-686-di | 5.10.103-1 | i386 loop-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 loop-modules-5.10.0-9-686-di | 5.10.70-1 | i386 loop-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 md-modules-5.10.0-11-686-di | 5.10.92-2 | i386 md-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 md-modules-5.10.0-12-686-di | 5.10.103-1 | i386 md-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 md-modules-5.10.0-9-686-di | 5.10.70-1 | i386 md-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 mmc-core-modules-5.10.0-11-686-di | 5.10.92-2 | i386 mmc-core-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 mmc-core-modules-5.10.0-12-686-di | 5.10.103-1 | i386 mmc-core-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 mmc-core-modules-5.10.0-9-686-di | 5.10.70-1 | i386 mmc-core-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 mmc-modules-5.10.0-11-686-di | 5.10.92-2 | i386 mmc-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 mmc-modules-5.10.0-12-686-di | 5.10.103-1 | i386 mmc-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 mmc-modules-5.10.0-9-686-di | 5.10.70-1 | i386 mmc-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 mouse-modules-5.10.0-11-686-di | 5.10.92-2 | i386 mouse-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 mouse-modules-5.10.0-12-686-di | 5.10.103-1 | i386 mouse-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 mouse-modules-5.10.0-9-686-di | 5.10.70-1 | i386 mouse-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 mtd-core-modules-5.10.0-11-686-di | 5.10.92-2 | i386 mtd-core-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 mtd-core-modules-5.10.0-12-686-di | 5.10.103-1 | i386 mtd-core-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 mtd-core-modules-5.10.0-9-686-di | 5.10.70-1 | i386 mtd-core-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 multipath-modules-5.10.0-11-686-di | 5.10.92-2 | i386 multipath-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 multipath-modules-5.10.0-12-686-di | 5.10.103-1 | i386 multipath-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 multipath-modules-5.10.0-9-686-di | 5.10.70-1 | i386 multipath-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nbd-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nbd-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nbd-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nbd-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nbd-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nbd-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nic-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nic-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nic-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nic-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nic-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nic-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nic-pcmcia-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nic-pcmcia-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nic-pcmcia-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nic-pcmcia-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nic-pcmcia-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nic-pcmcia-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nic-shared-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nic-shared-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nic-shared-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nic-shared-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nic-shared-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nic-shared-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nic-usb-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nic-usb-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nic-usb-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nic-usb-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nic-usb-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nic-usb-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 nic-wireless-modules-5.10.0-11-686-di | 5.10.92-2 | i386 nic-wireless-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 nic-wireless-modules-5.10.0-12-686-di | 5.10.103-1 | i386 nic-wireless-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 nic-wireless-modules-5.10.0-9-686-di | 5.10.70-1 | i386 nic-wireless-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 pata-modules-5.10.0-11-686-di | 5.10.92-2 | i386 pata-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 pata-modules-5.10.0-12-686-di | 5.10.103-1 | i386 pata-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 pata-modules-5.10.0-9-686-di | 5.10.70-1 | i386 pata-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 pcmcia-modules-5.10.0-11-686-di | 5.10.92-2 | i386 pcmcia-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 pcmcia-modules-5.10.0-12-686-di | 5.10.103-1 | i386 pcmcia-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 pcmcia-modules-5.10.0-9-686-di | 5.10.70-1 | i386 pcmcia-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 pcmcia-storage-modules-5.10.0-11-686-di | 5.10.92-2 | i386 pcmcia-storage-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 pcmcia-storage-modules-5.10.0-12-686-di | 5.10.103-1 | i386 pcmcia-storage-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 pcmcia-storage-modules-5.10.0-9-686-di | 5.10.70-1 | i386 pcmcia-storage-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 ppp-modules-5.10.0-11-686-di | 5.10.92-2 | i386 ppp-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 ppp-modules-5.10.0-12-686-di | 5.10.103-1 | i386 ppp-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 ppp-modules-5.10.0-9-686-di | 5.10.70-1 | i386 ppp-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 rfkill-modules-5.10.0-11-686-di | 5.10.92-2 | i386 rfkill-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 rfkill-modules-5.10.0-12-686-di | 5.10.103-1 | i386 rfkill-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 rfkill-modules-5.10.0-9-686-di | 5.10.70-1 | i386 rfkill-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 sata-modules-5.10.0-11-686-di | 5.10.92-2 | i386 sata-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 sata-modules-5.10.0-12-686-di | 5.10.103-1 | i386 sata-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 sata-modules-5.10.0-9-686-di | 5.10.70-1 | i386 sata-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 scsi-core-modules-5.10.0-11-686-di | 5.10.92-2 | i386 scsi-core-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 scsi-core-modules-5.10.0-12-686-di | 5.10.103-1 | i386 scsi-core-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 scsi-core-modules-5.10.0-9-686-di | 5.10.70-1 | i386 scsi-core-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 scsi-modules-5.10.0-11-686-di | 5.10.92-2 | i386 scsi-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 scsi-modules-5.10.0-12-686-di | 5.10.103-1 | i386 scsi-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 scsi-modules-5.10.0-9-686-di | 5.10.70-1 | i386 scsi-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 scsi-nic-modules-5.10.0-11-686-di | 5.10.92-2 | i386 scsi-nic-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 scsi-nic-modules-5.10.0-12-686-di | 5.10.103-1 | i386 scsi-nic-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 scsi-nic-modules-5.10.0-9-686-di | 5.10.70-1 | i386 scsi-nic-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 serial-modules-5.10.0-11-686-di | 5.10.92-2 | i386 serial-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 serial-modules-5.10.0-12-686-di | 5.10.103-1 | i386 serial-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 serial-modules-5.10.0-9-686-di | 5.10.70-1 | i386 serial-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 sound-modules-5.10.0-11-686-di | 5.10.92-2 | i386 sound-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 sound-modules-5.10.0-12-686-di | 5.10.103-1 | i386 sound-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 sound-modules-5.10.0-9-686-di | 5.10.70-1 | i386 sound-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 speakup-modules-5.10.0-11-686-di | 5.10.92-2 | i386 speakup-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 speakup-modules-5.10.0-12-686-di | 5.10.103-1 | i386 speakup-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 speakup-modules-5.10.0-9-686-di | 5.10.70-1 | i386 speakup-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 squashfs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 squashfs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 squashfs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 squashfs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 squashfs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 squashfs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 udf-modules-5.10.0-11-686-di | 5.10.92-2 | i386 udf-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 udf-modules-5.10.0-12-686-di | 5.10.103-1 | i386 udf-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 udf-modules-5.10.0-9-686-di | 5.10.70-1 | i386 udf-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 uinput-modules-5.10.0-11-686-di | 5.10.92-2 | i386 uinput-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 uinput-modules-5.10.0-12-686-di | 5.10.103-1 | i386 uinput-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 uinput-modules-5.10.0-9-686-di | 5.10.70-1 | i386 uinput-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 usb-modules-5.10.0-11-686-di | 5.10.92-2 | i386 usb-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 usb-modules-5.10.0-12-686-di | 5.10.103-1 | i386 usb-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 usb-modules-5.10.0-9-686-di | 5.10.70-1 | i386 usb-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 usb-serial-modules-5.10.0-11-686-di | 5.10.92-2 | i386 usb-serial-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 usb-serial-modules-5.10.0-12-686-di | 5.10.103-1 | i386 usb-serial-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 usb-serial-modules-5.10.0-9-686-di | 5.10.70-1 | i386 usb-serial-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 usb-storage-modules-5.10.0-11-686-di | 5.10.92-2 | i386 usb-storage-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 usb-storage-modules-5.10.0-12-686-di | 5.10.103-1 | i386 usb-storage-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 usb-storage-modules-5.10.0-9-686-di | 5.10.70-1 | i386 usb-storage-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 xfs-modules-5.10.0-11-686-di | 5.10.92-2 | i386 xfs-modules-5.10.0-11-686-pae-di | 5.10.92-2 | i386 xfs-modules-5.10.0-12-686-di | 5.10.103-1 | i386 xfs-modules-5.10.0-12-686-pae-di | 5.10.103-1 | i386 xfs-modules-5.10.0-9-686-di | 5.10.70-1 | i386 xfs-modules-5.10.0-9-686-pae-di | 5.10.70-1 | i386 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-i386) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:39:45 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: linux-headers-5.10.0-11-common | 5.10.92-2 | all linux-headers-5.10.0-11-common-rt | 5.10.92-2 | all linux-headers-5.10.0-12-common | 5.10.103-1 | all linux-headers-5.10.0-12-common-rt | 5.10.103-1 | all linux-headers-5.10.0-9-common | 5.10.70-1 | all linux-headers-5.10.0-9-common-rt | 5.10.70-1 | all linux-support-5.10.0-11 | 5.10.92-2 | all linux-support-5.10.0-12 | 5.10.103-1 | all linux-support-5.10.0-9 | 5.10.70-1 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:42:29 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libegl1-nvidia-tesla-450 | 450.142.00-1 | amd64, arm64, ppc64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by nvidia-graphics-drivers-tesla-450) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:23:22 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: angular-maven-plugin | 0.3.4-3 | source libangular-maven-plugin-java | 0.3.4-3 | all Closed bugs: 1006450 ------------------- Reason ------------------- RoM; no longer useful; tied to unsupported AngularJS version ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 26 Mar 2022 09:23:39 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libminify-maven-plugin-java | 1.7.4-1.1 | all minify-maven-plugin | 1.7.4-1.1 | source Closed bugs: 1006452 ------------------- Reason ------------------- RoM: old and not useful ---------------------------------------------- ========================================================================= aide (0.17.3-4+deb11u1) bullseye-security; urgency=high . * Apply upstream patch to fix heap-based buffer overflow in base64 functions (CVE-2021-45417) apache-log4j1.2 (1.2.17-10+deb11u1) bullseye; urgency=medium . * Team upload. * Fix CVE-2021-4104, CVE-2022-23302, CVE-2022-23305 and CVE-2022-23307. Multiple security vulnerabilities have been discovered in Apache Log4j 1.2 when it is configured to use JMSSink, JDBCAppender and JMSAppender or Apache Chainsaw. Note that a possible attacker requires write access to the Log4j configuration and the aforementioned features are not enabled by default. In order to completely mitigate against these vulnerabilities the related classes have been removed from the resulting jar file. apache-log4j2 (2.17.1-1~deb11u1) bullseye; urgency=medium . * Team upload. * Backport 2.17.1 to Bullseye and fix CVE-2021-44832: remote code execution vulnerability but requires permission to modify the logging configuration. apache-log4j2 (2.17.1-1~deb10u1) buster; urgency=medium . * Team upload. * Backport 2.17.1 to Buster and fix CVE-2021-44832: remote code execution vulnerability but requires permission to modify the logging configuration. apache-log4j2 (2.17.0-1) unstable; urgency=high . * Team upload. * New upstream version 2.17.0. - Fix CVE-2021-45105: Apache Log4j2 did not protect from uncontrolled recursion from self-referential lookups. When the logging configuration uses a non-default Pattern Layout with a Context Lookup (for example, $${ctx:loginId}), attackers with control over Thread Context Map (MDC) input data can craft malicious input data that contains a recursive lookup, resulting in a denial of service. (Closes: #1001891) Thanks to Salvatore Bonaccorso for the report. apache-log4j2 (2.17.0-1~deb11u1) bullseye-security; urgency=high . * Team upload. * Backport 2.17.0-1 to Bullseye and fix CVE-2021-45105. (Closes: #1001891) apache-log4j2 (2.17.0-1~deb10u1) buster-security; urgency=high . * Team upload. * Backport 2.17.0-1 to Buster and fix CVE-2021-45105. (Closes: #1001891) apache-log4j2 (2.16.0-1) unstable; urgency=high . * Team upload. * New upstream version 2.16.0. - Fix CVE-2021-45046: It was found that the fix to address CVE-2021-44228 in Apache Log4j 2.15.0 was incomplete in certain non-default configurations. This could allow attackers with control over Thread Context Map (MDC) input data when the logging configuration uses a non-default Pattern Layout with either a Context Lookup (for example, $${ctx:loginId}) or a Thread Context Map pattern (%X, %mdc, or %MDC) to craft malicious input data using a JNDI Lookup pattern resulting in a denial of service (DOS) attack. Thanks to Salvatore Bonaccorso for the report. (Closes: #1001729) apache2 (2.4.53-1~deb11u1) bullseye; urgency=medium . * New upstream version 2.4.53 (Closes: CVE-2022-22719, CVE-2022-22720, CVE-2022-22721, CVE-2022-23943) * Update copyright * Drop fix-2.4.52-regression.patch, now included in upstream * Refresh fhs_compliance.patch * Update test framework (fixes autopkgtest) apache2 (2.4.52-3) experimental; urgency=medium . * Fix autopkgtest with libpcre2 (autopkgtest still fails due to an SSL error) * Set hardening=+all instead of hardening=+bindnow apache2 (2.4.52-2) experimental; urgency=medium . * Build with pcre2 (Closes: #1000114) apache2 (2.4.52-1) unstable; urgency=medium . * Refresh suexec-custom.patch * Update lintian overrides * Wrap long lines in changelog entries: 2.4.51-2. * New upstream version 2.4.52 (Closes: CVE-2021-44224, CVE-2021-44790) * Refresh patches apache2 (2.4.52-1~deb11u2) bullseye-security; urgency=medium . * Fix 2.4.52 regression apache2 (2.4.52-1~deb11u1) bullseye-security; urgency=medium . * New upstream version 2.4.52 (Closes: CVE-2021-44224, CVE-2021-44790) * Refresh patches apache2 (2.4.52-1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. apache2 (2.4.51-2) unstable; urgency=medium . * Add patch to have new macro_ignore_empty and macro_ignore_bad_nesting parameters apache2 (2.4.51-1) unstable; urgency=medium . * New upstream version 2.4.51 (Closes: CVE-2021-41773, CVE-2021-42013) * Fix apache2ctl (see https://github.com/oerdnj/deb.sury.org/issues/1659) atftp (0.7.git20120829-3.3+deb11u2) bullseye; urgency=medium . * Fix for CVE-2021-46671 (Closes: #1004974) base-files (11.1+deb11u3) bullseye; urgency=medium . * Change /etc/debian_version to 11.3, for Debian 11.3 point release. bible-kjv (4.34+deb11u1) bullseye; urgency=medium . * Fix off-by-one-error in search (Closes: #1005856) bind9 (1:9.16.27-1~deb11u1) bullseye-security; urgency=high . * New upstream version 9.16.27 * CVE-2022-0396: A synchronous call to closehandle_cb() caused isc__nm_process_sock_buffer() to be called recursively, which in turn left TCP connections hanging in the CLOSE_WAIT state blocking indefinitely when out-of-order processing was disabled. * CVE-2021-25220: The rules for acceptance of records into the cache have been tightened to prevent the possibility of poisoning if forwarders send records outside the configured bailiwick * Remove patch to fix sphinx-build failure (fixed upstream) bind9 (1:9.16.27-1~deb11u1~bpo10+1) buster-backports; urgency=high . * Rebuild for bullseye-backports. . bind9 (1:9.16.27-1~deb11u1) bullseye-security; urgency=high . * New upstream version 9.16.27 * CVE-2022-0396: A synchronous call to closehandle_cb() caused isc__nm_process_sock_buffer() to be called recursively, which in turn left TCP connections hanging in the CLOSE_WAIT state blocking indefinitely when out-of-order processing was disabled. * CVE-2021-25220: The rules for acceptance of records into the cache have been tightened to prevent the possibility of poisoning if forwarders send records outside the configured bailiwick * Remove patch to fix sphinx-build failure (fixed upstream) cfrpki (1.4.2-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. Fixes: - Certificate chain loop. - RRDP Gzip bomb (CVE-2021-43174 CVE-2021-3912). - RRDP Slowloris (CVE-2021-43173 CVE-2021-3909). - ROA with ASCII NUL char (CVE-2021-3910). - Malformed ROAs (CVE-2021-3911). - Repo contains 100GB of trash. - Dot-dot-slash path traversal (CVE-2021-3907). - Improper preservation of permissions (CVE-2021-3978). cfrpki (1.4.0-1) unstable; urgency=high . * New upstream release. cfrpki (1.3.0-1) unstable; urgency=medium . * New upstream release. Fixes: + Prevent ROA issuers from making cfrpki emit an invalid VRP "MaxLength" value, hence causing RTR sessions to terminate. (CVE-2021-3761, Closes: #994572) chromium (99.0.4844.74-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-0971: Use after free in Blink Layout. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0972: Use after free in Extensions. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0973: Use after free in Safe Browsing. Reported by avaue and Buff3tts at S.S.L. - CVE-2022-0974 : Use after free in Splitscreen. Reported by @ginggilBesel. - CVE-2022-0975: Use after free in ANGLE. Reported by SeongHwan Park (SeHwa). - CVE-2022-0976: Heap buffer overflow in GPU. Reported by Omair. - CVE-2022-0977: Use after free in Browser UI. Reported by Khalil Zhani. - CVE-2022-0978: Use after free in ANGLE. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0979: Use after free in Safe Browsing. Reported by anonymous. - CVE-2022-0980: Use after free in New Tab Page. Reported by Krace. . chromium (99.0.4844.51-2) unstable; urgency=medium . * Change dependency on xdg-desktop-portal-* packages to be libgtk-3-0|xdg-desktop-portal-backend. Some folks don't want all the dependencies of the xdg portal packages, and chromium really just requires gtk unless runnning under KDE (closes: #1006267). * Disable fieldtrial testing config to fix some sandboxing issues. We used to do this, but the config flag was renamed (closes: #1003622). * Adjust patches: + system/zlib.patch: drop part of it that is unnecessary. chromium (99.0.4844.51-2) unstable; urgency=medium . * Change dependency on xdg-desktop-portal-* packages to be libgtk-3-0|xdg-desktop-portal-backend. Some folks don't want all the dependencies of the xdg portal packages, and chromium really just requires gtk unless runnning under KDE (closes: #1006267). * Disable fieldtrial testing config to fix some sandboxing issues. We used to do this, but the config flag was renamed (closes: #1003622). * Adjust patches: + system/zlib.patch: drop part of it that is unnecessary. chromium (99.0.4844.51-1) unstable; urgency=high . * Embed harfbuzz instead of using the system harfbuzz. Debian doesn't yet package harfbuzz-subset (see #988781). Once it is packaged, we can go back to using it. * Build against Debian's rapidjson-dev package instead of ANGLE's bundled rapidjson. * Adjust patches: + system/harfbuzz.patch - drop, we're using bundled harfbuzz now. + upstream/quiche-include.patch - drop, merged upstream. + upstream/restrict.patch - drop, merged upstream. + upstream/sequence-point.patch - drop, merged upstream. + disable/installer.patch - use new BUILDFLAG() macro. + disable/unrar.patch - use new BUILDFLAG() macro. + disable/welcome-page.patch - use new BUILDFLAG() macro. + disable/widevine-cdm.cu.patch - use new BUILDFLAG() macro. + disable/tests.patch - drop unnecessary parts of the patch (which ends up being most of it). + disable/angle-perftests.patch - drop config disabling ANGLE's rapidjson. + disable/swiftshader.patch - drop removal of rapidjson dependency. * New upstream stable release. - CVE-2022-0789: Heap buffer overflow in ANGLE. Reported by SeongHwan Park (SeHwa). - CVE-2022-0790: Use after free in Cast UI. Reported by Anonymous. - CVE-2022-0791: Use after free in Omnibox. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0792: Out of bounds read in ANGLE. Reported by Jaehun Jeong(@n3sk) of Theori. - CVE-2022-0793: Use after free in Views. Reported by Thomas Orlita. - CVE-2022-0794: Use after free in WebShare. Reported by Khalil Zhani. - CVE-2022-0795: Type Confusion in Blink Layout. Reported by 0x74960. - CVE-2022-0796: Use after free in Media. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0797: Out of bounds memory access in Mojo. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0798: Use after free in MediaStream. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0799: Insufficient policy enforcement in Installer. Reported by Abdelhamid Naceri (halov). - CVE-2022-0800: Heap buffer overflow in Cast UI. Reported by Khalil Zhani. - CVE-2022-0801: Inappropriate implementation in HTML parser. Reported by Michał Bentkowski of Securitum. - CVE-2022-0802: Inappropriate implementation in Full screen mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0803: Inappropriate implementation in Permissions. Reported by Abdulla Aldoseri. - CVE-2022-0804: Inappropriate implementation in Full screen mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0805: Use after free in Browser Switcher. Reported by raven at KunLun Lab. - CVE-2022-0806: Data leak in Canvas. Reported by Paril. - CVE-2022-0807: Inappropriate implementation in Autofill. Reported by Alesandro Ortiz. - CVE-2022-0808: Use after free in Chrome OS Shell. Reported by @ginggilBesel. - CVE-2022-0809: Out of bounds memory access in WebXR. Reported by @uwu7586. chromium (99.0.4844.51-1~deb11u1) bullseye-security; urgency=high . * Embed harfbuzz instead of using the system harfbuzz. Debian doesn't yet package harfbuzz-subset (see #988781). Once it is packaged, we can go back to using it. * Build against Debian's rapidjson-dev package instead of ANGLE's bundled rapidjson. * Adjust patches: + system/harfbuzz.patch - drop, we're using bundled harfbuzz now. + upstream/quiche-include.patch - drop, merged upstream. + upstream/restrict.patch - drop, merged upstream. + upstream/sequence-point.patch - drop, merged upstream. + disable/installer.patch - use new BUILDFLAG() macro. + disable/unrar.patch - use new BUILDFLAG() macro. + disable/welcome-page.patch - use new BUILDFLAG() macro. + disable/widevine-cdm.cu.patch - use new BUILDFLAG() macro. + disable/tests.patch - drop unnecessary parts of the patch (which ends up being most of it). + disable/angle-perftests.patch - drop config disabling ANGLE's rapidjson. + disable/swiftshader.patch - drop removal of rapidjson dependency. * New upstream stable release. - CVE-2022-0789: Heap buffer overflow in ANGLE. Reported by SeongHwan Park (SeHwa). - CVE-2022-0790: Use after free in Cast UI. Reported by Anonymous. - CVE-2022-0791: Use after free in Omnibox. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0792: Out of bounds read in ANGLE. Reported by Jaehun Jeong(@n3sk) of Theori. - CVE-2022-0793: Use after free in Views. Reported by Thomas Orlita. - CVE-2022-0794: Use after free in WebShare. Reported by Khalil Zhani. - CVE-2022-0795: Type Confusion in Blink Layout. Reported by 0x74960. - CVE-2022-0796: Use after free in Media. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0797: Out of bounds memory access in Mojo. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0798: Use after free in MediaStream. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0799: Insufficient policy enforcement in Installer. Reported by Abdelhamid Naceri (halov). - CVE-2022-0800: Heap buffer overflow in Cast UI. Reported by Khalil Zhani. - CVE-2022-0801: Inappropriate implementation in HTML parser. Reported by Michał Bentkowski of Securitum. - CVE-2022-0802: Inappropriate implementation in Full screen mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0803: Inappropriate implementation in Permissions. Reported by Abdulla Aldoseri. - CVE-2022-0804: Inappropriate implementation in Full screen mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0805: Use after free in Browser Switcher. Reported by raven at KunLun Lab. - CVE-2022-0806: Data leak in Canvas. Reported by Paril. - CVE-2022-0807: Inappropriate implementation in Autofill. Reported by Alesandro Ortiz. - CVE-2022-0808: Use after free in Chrome OS Shell. Reported by @ginggilBesel. - CVE-2022-0809: Out of bounds memory access in WebXR. Reported by @uwu7586. chromium (99.0.4818.0-0.1) experimental; urgency=low . * Non-maintainer upload. * New upstream development release. * Build-dep on rapidjson-dev and actually use rapidjson instead of disabling it in ANGLE. chromium (98.0.4758.102-1) unstable; urgency=high . * Enable pipewire support in webrtc (closes: #954824). * Enable optimize_webui. This UI speed improvement was originally disabled due to nodejs deps, but recent upstream changes makes those deps necessary either way (closes: #970571). * Switch to using bundled node modules, to deal with (frequent) build failures (closes: #1005466). * Manually depend on xdg-desktop-portal-* packages. The file saving dialog needs a UI toolkit (closes: #1005230). * New upstream security release. - CVE-2022-0603: Use after free in File Manager. Reported by Chaoyuan Peng (@ret2happy). - CVE-2022-0604: Heap buffer overflow in Tab Groups. Reported by Krace. - CVE-2022-0605: Use after free in Webstore API. Reported by Thomas Orlita. - CVE-2022-0606: Use after free in ANGLE. - CVE-2022-0606: Use after free in ANGLE. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0607: Use after free in GPU. Reported by 0x74960. - CVE-2022-0608: Integer overflow in Mojo. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0609: Use after free in Animation. Reported by Adam Weidemann and Clément Lecigne of Google's Threat Analysis Group. - CVE-2022-0610: Inappropriate implementation in Gamepad API. Reported by Anonymous. chromium (98.0.4758.102-1~deb11u1) bullseye-security; urgency=high . * Enable pipewire support in webrtc (closes: #954824). * Enable optimize_webui. This UI speed improvement was originally disabled due to nodejs deps, but recent upstream changes makes those deps necessary either way (closes: #970571). * Switch to using bundled node modules, to deal with (frequent) build failures (closes: #1005466). * Manually depend on xdg-desktop-portal-* packages. The file saving dialog needs a UI toolkit (closes: #1005230). * New upstream security release. - CVE-2022-0603: Use after free in File Manager. Reported by Chaoyuan Peng (@ret2happy). - CVE-2022-0604: Heap buffer overflow in Tab Groups. Reported by Krace. - CVE-2022-0605: Use after free in Webstore API. Reported by Thomas Orlita. - CVE-2022-0606: Use after free in ANGLE. - CVE-2022-0606: Use after free in ANGLE. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0607: Use after free in GPU. Reported by 0x74960. - CVE-2022-0608: Integer overflow in Mojo. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0609: Use after free in Animation. Reported by Adam Weidemann and Clément Lecigne of Google's Threat Analysis Group. - CVE-2022-0610: Inappropriate implementation in Gamepad API. Reported by Anonymous. chromium (98.0.4758.80-1) unstable; urgency=high . * Update manpage for package rename and everyone moving to https. * Drop libnpsr4-dev versioned dep. * Drop a bunch of patches (changes shouldn't affect chromium users). See https://salsa.debian.org/chromium-team/chromium/-/commits/master/ for the dropped patches. * New upstream stable release. - CVE-2022-0452: Use after free in Safe Browsing. Reported by avaue at S.S.L. - CVE-2022-0453: Use after free in Reader Mode. Reported by Rong Jian of VRI. - CVE-2022-0454: Heap buffer overflow in ANGLE. Reported by Seong-Hwan Park (SeHwa). - CVE-2022-0455: Inappropriate implementation in Full Screen Mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0456: Use after free in Web Search. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0457: Type Confusion in V8. Reported by rax of the Group0x58. - CVE-2022-0458: Use after free in Thumbnail Tab Strip. Reported by Anonymous. - CVE-2022-0459: Use after free in Screen Capture. Reported by raven (@raid_akame). - CVE-2022-0460: Use after free in Window Dialog. Reported by 0x74960. - CVE-2022-0461: Policy bypass in COOP. Reported by NDevTK. - CVE-2022-0462: Inappropriate implementation in Scroll. Reported by Youssef Sammouda. - CVE-2022-0463: Use after free in Accessibility. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0464: Use after free in Accessibility. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0465: Use after free in Extensions. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0466: Inappropriate implementation in Extensions Platform. Reported by David Erceg. - CVE-2022-0467: Inappropriate implementation in Pointer Lock. Reported by Alesandro Ortiz. - CVE-2022-0468: Use after free in Payments. Reported by Krace. - CVE-2022-0469: Use after free in Cast. Reported by Thomas Orlita. - CVE-2022-0470: Out of bounds memory access in V8. Reported by Looben Yang. chromium (98.0.4758.80-1~deb11u1) bullseye-security; urgency=high . * Update manpage for package rename and everyone moving to https. * Drop libnpsr4-dev versioned dep. * Drop a bunch of patches (changes shouldn't affect chromium users). See https://salsa.debian.org/chromium-team/chromium/-/commits/master/ for the dropped patches. * New upstream stable release. - CVE-2022-0452: Use after free in Safe Browsing. Reported by avaue at S.S.L. - CVE-2022-0453: Use after free in Reader Mode. Reported by Rong Jian of VRI. - CVE-2022-0454: Heap buffer overflow in ANGLE. Reported by Seong-Hwan Park (SeHwa). - CVE-2022-0455: Inappropriate implementation in Full Screen Mode. Reported by Irvan Kurniawan (sourc7). - CVE-2022-0456: Use after free in Web Search. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0457: Type Confusion in V8. Reported by rax of the Group0x58. - CVE-2022-0458: Use after free in Thumbnail Tab Strip. Reported by Anonymous. - CVE-2022-0459: Use after free in Screen Capture. Reported by raven (@raid_akame). - CVE-2022-0460: Use after free in Window Dialog. Reported by 0x74960. - CVE-2022-0461: Policy bypass in COOP. Reported by NDevTK. - CVE-2022-0462: Inappropriate implementation in Scroll. Reported by Youssef Sammouda. - CVE-2022-0463: Use after free in Accessibility. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0464: Use after free in Accessibility. Reported by Zhihua Yao of KunLun Lab. - CVE-2022-0465: Use after free in Extensions. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0466: Inappropriate implementation in Extensions Platform. Reported by David Erceg. - CVE-2022-0467: Inappropriate implementation in Pointer Lock. Reported by Alesandro Ortiz. - CVE-2022-0468: Use after free in Payments. Reported by Krace. - CVE-2022-0469: Use after free in Cast. Reported by Thomas Orlita. - CVE-2022-0470: Out of bounds memory access in V8. Reported by Looben Yang. chromium (97.0.4692.99-1) unstable; urgency=high . * Add myself as an uploader. * Ack my NMU (closes: #1003440). * Remove Riku Voipio from uploaders at the request of the Debian MIA team - thanks for all your past work on chromium, Riku! (closes: #1001562) * Build-dep on terser | uglifyjs.terser (closes: #1001036). * Revert automatic wayland detection for now (closes: #1003689). We'll try again in chromium v98 or v99. * New upstream stable release. - CVE-2022-0289: Use after free in Safe browsing. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0290: Use after free in Site isolation. Reported by Brendon Tiszka and Sergei Glazunov of Google Project Zero. - CVE-2022-0291: Inappropriate implementation in Storage. Reported by Anonymous. - CVE-2022-0292: Inappropriate implementation in Fenced Frames. Reported by Brendon Tiszka. - CVE-2022-0293: Use after free in Web packaging. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0294: Inappropriate implementation in Push messaging. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0295: Use after free in Omnibox. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0296: Use after free in Printing. Reported by koocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0297: Use after free in Vulkan. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0298: Use after free in Scheduling. Reported by Yangkang (@dnpushme) of 360 ATA. - CVE-2022-0300: Use after free in Text Input Method Editor. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0301: Heap buffer overflow in DevTools. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research. - CVE-2022-0302: Use after free in Omnibox. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0303: Race in GPU Watchdog. Reported by Yiğit Can YILMAZ (@yilmazcanyigit). - CVE-2022-0304: Use after free in Bookmarks. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0305: Inappropriate implementation in Service Worker API. Reported by @uwu7586. - CVE-2022-0306: Heap buffer overflow in PDFium. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0307: Use after free in Optimization Guide. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0308: Use after free in Data Transfer. Reported by @ginggilBesel. - CVE-2022-0309: Inappropriate implementation in Autofill. Reported by Alesandro Ortiz. - CVE-2022-0310: Heap buffer overflow in Task Manager. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0311: Heap buffer overflow in Task Manager. Reported by Samet Bekmezci @sametbekmezci. chromium (97.0.4692.99-1~deb11u2) bullseye-security; urgency=high . * Revert the terser build-dep for bullseye. chromium (97.0.4692.99-1~deb11u1) bullseye-security; urgency=high . * Add myself as an uploader. * Build-dep on terser | uglifyjs.terser (closes: #1001036). * Revert automatic wayland detection for now (closes: #1003689). We'll try again in chromium v98 or v99. * New upstream stable release. - CVE-2022-0289: Use after free in Safe browsing. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0290: Use after free in Site isolation. Reported by Brendon Tiszka and Sergei Glazunov of Google Project Zero. - CVE-2022-0291: Inappropriate implementation in Storage. Reported by Anonymous. - CVE-2022-0292: Inappropriate implementation in Fenced Frames. Reported by Brendon Tiszka. - CVE-2022-0293: Use after free in Web packaging. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0294: Inappropriate implementation in Push messaging. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0295: Use after free in Omnibox. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0296: Use after free in Printing. Reported by koocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0297: Use after free in Vulkan. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0298: Use after free in Scheduling. Reported by Yangkang (@dnpushme) of 360 ATA. - CVE-2022-0300: Use after free in Text Input Method Editor. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0301: Heap buffer overflow in DevTools. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research. - CVE-2022-0302: Use after free in Omnibox. Reported by Weipeng Jiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute. - CVE-2022-0303: Race in GPU Watchdog. Reported by Yiğit Can YILMAZ (@yilmazcanyigit). - CVE-2022-0304: Use after free in Bookmarks. Reported by Rong Jian and Guang Gong of 360 Alpha Lab. - CVE-2022-0305: Inappropriate implementation in Service Worker API. Reported by @uwu7586. - CVE-2022-0306: Heap buffer overflow in PDFium. Reported by Sergei Glazunov of Google Project Zero. - CVE-2022-0307: Use after free in Optimization Guide. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0308: Use after free in Data Transfer. Reported by @ginggilBesel. - CVE-2022-0309: Inappropriate implementation in Autofill. Reported by Alesandro Ortiz. - CVE-2022-0310: Heap buffer overflow in Task Manager. Reported by Samet Bekmezci @sametbekmezci. - CVE-2022-0311: Heap buffer overflow in Task Manager. Reported by Samet Bekmezci @sametbekmezci. chromium (97.0.4692.71-0.1) unstable; urgency=high . * Non-maintainer upload. * Stop building chromium's bunded gn and instead build-dep on generate-ninja. * Drop numerous patches related to gcc building, since we just build w/ clang. * Use python3 as default instead of relying on python2 (closes: #942962, #996375). * Enable the ozone backend in the build (closes: #955540). * Automatically detect & enable Wayland support when launching chromium (closes: #861796). * Rename crashpad_handler to chrome_crashpad_handler. * No longer hardcode desktop GL implementation as default - it causes the chromium compositor's draw buffer to fill up & crash on my system. * Enable official builds. * New upstream stable release (closes: #995212). - CVE-2022-0096: Use after free in Storage. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2022-0097: Inappropriate implementation in DevTools. Reported by David Erceg - CVE-2022-0098: Use after free in Screen Capture. Reported by @ginggilBesel - CVE-2022-0099: Use after free in Sign-in. Reported by Rox - CVE-2022-0100: Heap buffer overflow in Media streams API. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0101: Heap buffer overflow in Bookmarks. Reported by raven (@raid_akame) - CVE-2022-0102: Type Confusion in V8. Reported by Brendon Tiszka - CVE-2022-0103: Use after free in SwiftShader. Reported by Abraruddin Khan and Omair - CVE-2022-0104: Heap buffer overflow in ANGLE. Reported by Abraruddin Khan and Omair - CVE-2022-0105: Use after free in PDF. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0106: Use after free in Autofill. Reported by Khalil Zhani - CVE-2022-0107: Use after free in File Manager API. Reported by raven (@raid_akame) - CVE-2022-0108: Inappropriate implementation in Navigation. Reported by Luan Herrera (@lbherrera_) - CVE-2022-0109: Inappropriate implementation in Autofill. Reported by Young Min Kim (@ylemkimon), CompSec Lab at Seoul National University - CVE-2022-0110: Incorrect security UI in Autofill. Reported by Alesandro Ortiz - CVE-2022-0111: Inappropriate implementation in Navigation. Reported by garygreen - CVE-2022-0112: Incorrect security UI in Browser UI. Reported by Thomas Orlita - CVE-2022-0113: Inappropriate implementation in Blink. Reported by Luan Herrera (@lbherrera_) - CVE-2022-0114: Out of bounds memory access in Web Serial. Reported by Looben Yang - CVE-2022-0115: Uninitialized Use in File API. Reported by Mark Brand of Google Project Zero - CVE-2022-0116: Inappropriate implementation in Compositing. Reported by Irvan Kurniawan (sourc7) - CVE-2022-0117: Policy bypass in Service Workers. Reported by Dongsung Kim (@kid1ng) - CVE-2022-0118: Inappropriate implementation in WebShare. Reported by Alesandro Ortiz - CVE-2022-0120: Inappropriate implementation in Passwords. Reported by CHAKRAVARTHI (Ruler96) (96.0.4664.110) - CVE-2021-4098: Insufficient data validation in Mojo. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-4099: Use after free in Swiftshader. Reported by Aki Helin of Solita - CVE-2021-4100: Object lifecycle issue in ANGLE. Reported by Aki Helin of Solita - CVE-2021-4101: Heap buffer overflow in Swiftshader. Reported by Abraruddin Khan and Omair - CVE-2021-4102: Use after free in V8. Reported by Anonymous (96.0.4664.93) - CVE-2021-4052: Use after free in web apps. Reported by Wei Yuan of MoyunSec VLab - CVE-2021-4053: Use after free in UI. Reported by Rox - CVE-2021-4079: Out of bounds write in WebRTC. Reported by Brendon Tiszka - CVE-2021-4054: Incorrect security UI in autofill. Reported by Alesandro Ortiz - CVE-2021-4078: Type confusion in V8. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2021-4055: Heap buffer overflow in extensions. Reported by Chen Rong - CVE-2021-4056: Type Confusion in loader. Reported by @__R0ng of 360 Alpha Lab - CVE-2021-4057: Use after free in file API. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-4058: Heap buffer overflow in ANGLE. Reported by Abraruddin Khan and Omair - CVE-2021-4059: Insufficient data validation in loader. Reported by Luan Herrera (@lbherrera_) - CVE-2021-4061: Type Confusion in V8. Reported by Paolo Severini - CVE-2021-4062: Heap buffer overflow in BFCache. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2021-4063: Use after free in developer tools. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2021-4064: Use after free in screen capture. Reported by @ginggilBesel - CVE-2021-4065: Use after free in autofill. Reported by 5n1p3r0010 from Topsec ChiXiao Lab - CVE-2021-4066: Integer underflow in ANGLE. Reported by Jaehun Jeong(@n3sk) of Theori - CVE-2021-4067: Use after free in window manager. Reported by @ginggilBesel - CVE-2021-4068: Insufficient validation of untrusted input in new tab page. Reported by NDevTK (96.0.4664.45) - CVE-2021-38008: Use after free in media. Reported by Marcin Towalski - CVE-2021-38009: Inappropriate implementation in cache. Reported by Luan Herrera (@lbherrera_) - CVE-2021-38006: Use after free in storage foundation. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38007: Type Confusion in V8. Reported by Polaris Feng and SGFvamll at Singular Security Lab - CVE-2021-38005: Use after free in loader. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38010: Inappropriate implementation in service workers. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38011: Use after free in storage foundation. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38012: Type Confusion in V8. Reported by Yonghwi Jin (@jinmo123) - CVE-2021-38013: Heap buffer overflow in fingerprint recognition. Reported by raven (@raid_akame) - CVE-2021-38014: Out of bounds write in Swiftshader. Reported by Atte Kettunen of OUSPG - CVE-2021-38015: Inappropriate implementation in input. Reported by David Erceg - CVE-2021-38016: Insufficient policy enforcement in background fetch. Reported by Maurice Dauer - CVE-2021-38017: Insufficient policy enforcement in iframe sandbox. Reported by NDevTK - CVE-2021-38018: Inappropriate implementation in navigation. Reported by Alesandro Ortiz - CVE-2021-38019: Insufficient policy enforcement in CORS. Reported by Maurice Dauer - CVE-2021-38020: Insufficient policy enforcement in contacts picker. Reported by Luan Herrera (@lbherrera_) - CVE-2021-38021: Inappropriate implementation in referrer. Reported by Prakash (@1lastBr3ath) - CVE-2021-38022: Inappropriate implementation in WebAuthentication. Reported by Michal Kepkowski (95.0.4638.69) - CVE-2021-37997: Use after free in Sign-In. Reported by Wei Yuan of MoyunSec VLab - CVE-2021-37998: Use after free in Garbage Collection. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2021-37999: Insufficient data validation in New Tab Page. Reported by Ashish Arun Dhone - CVE-2021-38000: Insufficient validation of untrusted input in Intents. Reported by Clement Lecigne, Neel Mehta, and Maddie Stone of Google Threat Analysis Group - CVE-2021-38001: Type Confusion in V8. Reported by @s0rrymybad of Kunlun Lab via Tianfu Cup - CVE-2021-38002: Use after free in Web Transport. Reported by @__R0ng of 360 Alpha Lab, 漏洞研究院青训队 via Tianfu Cup - CVE-2021-38003: Inappropriate implementation in V8. Reported by Clément Lecigne from Google TAG and Samuel Groß from Google Project Zero - CVE-2021-38004: Insufficient policy enforcement in Autofill. Reported by Mark Amery (95.0.4638.54) - CVE-2021-37981: Heap buffer overflow in Skia. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37982: Use after free in Incognito. Reported by Weipeng Jiang (@Krace) from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-37983: Use after free in Dev Tools. Reported by Zhihua Yao of KunLun Lab - CVE-2021-37984: Heap buffer overflow in PDFium. Reported by Antti Levomäki, Joonas Pihlaja and Christian Jalio from Forcepoint - CVE-2021-37985: Use after free in V8. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37986: Heap buffer overflow in Settings. Reported by raven (@raid_akame) - CVE-2021-37987: Use after free in Network APIs. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37988: Use after free in Profiles. Reported by raven (@raid_akame) - CVE-2021-37989: Inappropriate implementation in Blink. Reported by Matt Dyas, Ankur Sundara - CVE-2021-37990: Inappropriate implementation in WebView. Reported by Kareem Selim of CyShield - CVE-2021-37991: Race in V8. Reported by Samuel Groß of Google Project Zero - CVE-2021-37992: Out of bounds read in WebAudio. Reported by sunburst@Ant Security Light-Year Lab - CVE-2021-37993: Use after free in PDF Accessibility. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2021-37996: Insufficient validation of untrusted input in Downloads. Reported by Anonymous - CVE-2021-37994: Inappropriate implementation in iFrame Sandbox. Reported by David Erceg - CVE-2021-37995: Inappropriate implementation in WebApp Installer. Reported by Terence Eden (94.0.4606.81) - CVE-2021-37977: Use after free in Garbage Collection. Reported by Anonymous - CVE-2021-37978: Heap buffer overflow in Blink. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37979: Heap buffer overflow in WebRTC. Reported by Marcin Towalski of Cisco Talos - CVE-2021-37980: Inappropriate implementation in Sandbox. Reported by Yonghwi Jin (@jinmo123) of Theori (94.0.4606.71) - CVE-2021-37974: Use after free in Safe Browsing. Reported by Weipeng Jiang (@Krace) from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-37975: Use after free in V8. Reported by Anonymous - CVE-2021-37976: Information leak in core. Reported by Clément Lecigne from Google TAG, with technical assistance from Sergei Glazunov and Mark Brand from Google Project Zero (94.0.4606.61) - CVE-2021-37973: Use after free in Portals. Reported by Clément Lecigne from Google TAG, with technical assistance from Sergei Glazunov and Mark Brand from Google Project Zero (94.0.4606.54) - CVE-2021-37956 Use after free in Offline use. Reported by Huyna at Viettel Cyber Security - CVE-2021-37957: Use after free in WebGPU. Reported by Looben Yang - CVE-2021-37958: Inappropriate implementation in Navigation. Reported by James Lee (@Windowsrcer) - CVE-2021-37959: Use after free in Task Manager. Reported by raven (@raid_akame) - CVE-2021-37961: Use after free in Tab Strip. Reported by Khalil Zhani - CVE-2021-37962: Use after free in Performance Manager. Reported by Sri - CVE-2021-37963: Side-channel information leakage in DevTools. Reported by Daniel Genkin and Ayush Agarwal, University of Michigan, Eyal Ronen and Shaked Yehezkel, Tel Aviv University, Sioli O’Connell, University of Adelaide, and Jason Kim, Georgia Institute of Technology - CVE-2021-37964: Inappropriate implementation in ChromeOS Networking. Reported by Hugo Hue and Sze Yiu Chau of the Chinese University of Hong Kong - CVE-2021-37965: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2021-37966: Inappropriate implementation in Compositing. Reported by Mohit Raj (shadow2639) - CVE-2021-37967: Inappropriate implementation in Background Fetch API. Reported by SorryMybad (@S0rryMybad) of Kunlun Lab - CVE-2021-37968: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2021-37969: Inappropriate implementation in Google Updater. Reported by Abdelhamid Naceri (halov) - CVE-2021-37970: Use after free in File System API. Reported by SorryMybad (@S0rryMybad) of Kunlun Lab - CVE-2021-37971: Incorrect security UI in Web Browser UI. Reported by Rayyan Bijoora - CVE-2021-37972: Out of bounds read in libjpeg-turbo. Reported by Xu Hanyu and Lu Yutao from Panguite-Forensics-Lab of Qianxin chromium (97.0.4692.71-0.1~deb11u1) bullseye-security; urgency=high . * Non-maintainer upload. * Stop building chromium's bunded gn and instead build-dep on generate-ninja. * Drop numerous patches related to gcc building, since we just build w/ clang. * Use python3 as default instead of relying on python2 (closes: #942962, #996375). * Enable the ozone backend in the build (closes: #955540). * Automatically detect & enable Wayland support when launching chromium (closes: #861796). * Rename crashpad_handler to chrome_crashpad_handler. * No longer hardcode desktop GL implementation as default - it causes the chromium compositor's draw buffer to fill up & crash on my system. * Enable official builds. * New upstream stable release (closes: #995212). - CVE-2022-0096: Use after free in Storage. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2022-0097: Inappropriate implementation in DevTools. Reported by David Erceg - CVE-2022-0098: Use after free in Screen Capture. Reported by @ginggilBesel - CVE-2022-0099: Use after free in Sign-in. Reported by Rox - CVE-2022-0100: Heap buffer overflow in Media streams API. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0101: Heap buffer overflow in Bookmarks. Reported by raven (@raid_akame) - CVE-2022-0102: Type Confusion in V8. Reported by Brendon Tiszka - CVE-2022-0103: Use after free in SwiftShader. Reported by Abraruddin Khan and Omair - CVE-2022-0104: Heap buffer overflow in ANGLE. Reported by Abraruddin Khan and Omair - CVE-2022-0105: Use after free in PDF. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2022-0106: Use after free in Autofill. Reported by Khalil Zhani - CVE-2022-0107: Use after free in File Manager API. Reported by raven (@raid_akame) - CVE-2022-0108: Inappropriate implementation in Navigation. Reported by Luan Herrera (@lbherrera_) - CVE-2022-0109: Inappropriate implementation in Autofill. Reported by Young Min Kim (@ylemkimon), CompSec Lab at Seoul National University - CVE-2022-0110: Incorrect security UI in Autofill. Reported by Alesandro Ortiz - CVE-2022-0111: Inappropriate implementation in Navigation. Reported by garygreen - CVE-2022-0112: Incorrect security UI in Browser UI. Reported by Thomas Orlita - CVE-2022-0113: Inappropriate implementation in Blink. Reported by Luan Herrera (@lbherrera_) - CVE-2022-0114: Out of bounds memory access in Web Serial. Reported by Looben Yang - CVE-2022-0115: Uninitialized Use in File API. Reported by Mark Brand of Google Project Zero - CVE-2022-0116: Inappropriate implementation in Compositing. Reported by Irvan Kurniawan (sourc7) - CVE-2022-0117: Policy bypass in Service Workers. Reported by Dongsung Kim (@kid1ng) - CVE-2022-0118: Inappropriate implementation in WebShare. Reported by Alesandro Ortiz - CVE-2022-0120: Inappropriate implementation in Passwords. Reported by CHAKRAVARTHI (Ruler96) (96.0.4664.110) - CVE-2021-4098: Insufficient data validation in Mojo. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-4099: Use after free in Swiftshader. Reported by Aki Helin of Solita - CVE-2021-4100: Object lifecycle issue in ANGLE. Reported by Aki Helin of Solita - CVE-2021-4101: Heap buffer overflow in Swiftshader. Reported by Abraruddin Khan and Omair - CVE-2021-4102: Use after free in V8. Reported by Anonymous (96.0.4664.93) - CVE-2021-4052: Use after free in web apps. Reported by Wei Yuan of MoyunSec VLab - CVE-2021-4053: Use after free in UI. Reported by Rox - CVE-2021-4079: Out of bounds write in WebRTC. Reported by Brendon Tiszka - CVE-2021-4054: Incorrect security UI in autofill. Reported by Alesandro Ortiz - CVE-2021-4078: Type confusion in V8. Reported by Nan Wang(@eternalsakura13) and Guang Gong of 360 Alpha Lab - CVE-2021-4055: Heap buffer overflow in extensions. Reported by Chen Rong - CVE-2021-4056: Type Confusion in loader. Reported by @__R0ng of 360 Alpha Lab - CVE-2021-4057: Use after free in file API. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-4058: Heap buffer overflow in ANGLE. Reported by Abraruddin Khan and Omair - CVE-2021-4059: Insufficient data validation in loader. Reported by Luan Herrera (@lbherrera_) - CVE-2021-4061: Type Confusion in V8. Reported by Paolo Severini - CVE-2021-4062: Heap buffer overflow in BFCache. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2021-4063: Use after free in developer tools. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2021-4064: Use after free in screen capture. Reported by @ginggilBesel - CVE-2021-4065: Use after free in autofill. Reported by 5n1p3r0010 from Topsec ChiXiao Lab - CVE-2021-4066: Integer underflow in ANGLE. Reported by Jaehun Jeong(@n3sk) of Theori - CVE-2021-4067: Use after free in window manager. Reported by @ginggilBesel - CVE-2021-4068: Insufficient validation of untrusted input in new tab page. Reported by NDevTK (96.0.4664.45) - CVE-2021-38008: Use after free in media. Reported by Marcin Towalski - CVE-2021-38009: Inappropriate implementation in cache. Reported by Luan Herrera (@lbherrera_) - CVE-2021-38006: Use after free in storage foundation. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38007: Type Confusion in V8. Reported by Polaris Feng and SGFvamll at Singular Security Lab - CVE-2021-38005: Use after free in loader. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38010: Inappropriate implementation in service workers. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38011: Use after free in storage foundation. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-38012: Type Confusion in V8. Reported by Yonghwi Jin (@jinmo123) - CVE-2021-38013: Heap buffer overflow in fingerprint recognition. Reported by raven (@raid_akame) - CVE-2021-38014: Out of bounds write in Swiftshader. Reported by Atte Kettunen of OUSPG - CVE-2021-38015: Inappropriate implementation in input. Reported by David Erceg - CVE-2021-38016: Insufficient policy enforcement in background fetch. Reported by Maurice Dauer - CVE-2021-38017: Insufficient policy enforcement in iframe sandbox. Reported by NDevTK - CVE-2021-38018: Inappropriate implementation in navigation. Reported by Alesandro Ortiz - CVE-2021-38019: Insufficient policy enforcement in CORS. Reported by Maurice Dauer - CVE-2021-38020: Insufficient policy enforcement in contacts picker. Reported by Luan Herrera (@lbherrera_) - CVE-2021-38021: Inappropriate implementation in referrer. Reported by Prakash (@1lastBr3ath) - CVE-2021-38022: Inappropriate implementation in WebAuthentication. Reported by Michal Kepkowski (95.0.4638.69) - CVE-2021-37997: Use after free in Sign-In. Reported by Wei Yuan of MoyunSec VLab - CVE-2021-37998: Use after free in Garbage Collection. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2021-37999: Insufficient data validation in New Tab Page. Reported by Ashish Arun Dhone - CVE-2021-38000: Insufficient validation of untrusted input in Intents. Reported by Clement Lecigne, Neel Mehta, and Maddie Stone of Google Threat Analysis Group - CVE-2021-38001: Type Confusion in V8. Reported by @s0rrymybad of Kunlun Lab via Tianfu Cup - CVE-2021-38002: Use after free in Web Transport. Reported by @__R0ng of 360 Alpha Lab, 漏洞研究院青训队 via Tianfu Cup - CVE-2021-38003: Inappropriate implementation in V8. Reported by Clément Lecigne from Google TAG and Samuel Groß from Google Project Zero - CVE-2021-38004: Insufficient policy enforcement in Autofill. Reported by Mark Amery (95.0.4638.54) - CVE-2021-37981: Heap buffer overflow in Skia. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37982: Use after free in Incognito. Reported by Weipeng Jiang (@Krace) from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-37983: Use after free in Dev Tools. Reported by Zhihua Yao of KunLun Lab - CVE-2021-37984: Heap buffer overflow in PDFium. Reported by Antti Levomäki, Joonas Pihlaja and Christian Jalio from Forcepoint - CVE-2021-37985: Use after free in V8. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37986: Heap buffer overflow in Settings. Reported by raven (@raid_akame) - CVE-2021-37987: Use after free in Network APIs. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37988: Use after free in Profiles. Reported by raven (@raid_akame) - CVE-2021-37989: Inappropriate implementation in Blink. Reported by Matt Dyas, Ankur Sundara - CVE-2021-37990: Inappropriate implementation in WebView. Reported by Kareem Selim of CyShield - CVE-2021-37991: Race in V8. Reported by Samuel Groß of Google Project Zero - CVE-2021-37992: Out of bounds read in WebAudio. Reported by sunburst@Ant Security Light-Year Lab - CVE-2021-37993: Use after free in PDF Accessibility. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2021-37996: Insufficient validation of untrusted input in Downloads. Reported by Anonymous - CVE-2021-37994: Inappropriate implementation in iFrame Sandbox. Reported by David Erceg - CVE-2021-37995: Inappropriate implementation in WebApp Installer. Reported by Terence Eden (94.0.4606.81) - CVE-2021-37977: Use after free in Garbage Collection. Reported by Anonymous - CVE-2021-37978: Heap buffer overflow in Blink. Reported by Yangkang (@dnpushme) of 360 ATA - CVE-2021-37979: Heap buffer overflow in WebRTC. Reported by Marcin Towalski of Cisco Talos - CVE-2021-37980: Inappropriate implementation in Sandbox. Reported by Yonghwi Jin (@jinmo123) of Theori (94.0.4606.71) - CVE-2021-37974: Use after free in Safe Browsing. Reported by Weipeng Jiang (@Krace) from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-37975: Use after free in V8. Reported by Anonymous - CVE-2021-37976: Information leak in core. Reported by Clément Lecigne from Google TAG, with technical assistance from Sergei Glazunov and Mark Brand from Google Project Zero (94.0.4606.61) - CVE-2021-37973: Use after free in Portals. Reported by Clément Lecigne from Google TAG, with technical assistance from Sergei Glazunov and Mark Brand from Google Project Zero (94.0.4606.54) - CVE-2021-37956 Use after free in Offline use. Reported by Huyna at Viettel Cyber Security - CVE-2021-37957: Use after free in WebGPU. Reported by Looben Yang - CVE-2021-37958: Inappropriate implementation in Navigation. Reported by James Lee (@Windowsrcer) - CVE-2021-37959: Use after free in Task Manager. Reported by raven (@raid_akame) - CVE-2021-37961: Use after free in Tab Strip. Reported by Khalil Zhani - CVE-2021-37962: Use after free in Performance Manager. Reported by Sri - CVE-2021-37963: Side-channel information leakage in DevTools. Reported by Daniel Genkin and Ayush Agarwal, University of Michigan, Eyal Ronen and Shaked Yehezkel, Tel Aviv University, Sioli O’Connell, University of Adelaide, and Jason Kim, Georgia Institute of Technology - CVE-2021-37964: Inappropriate implementation in ChromeOS Networking. Reported by Hugo Hue and Sze Yiu Chau of the Chinese University of Hong Kong - CVE-2021-37965: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2021-37966: Inappropriate implementation in Compositing. Reported by Mohit Raj (shadow2639) - CVE-2021-37967: Inappropriate implementation in Background Fetch API. Reported by SorryMybad (@S0rryMybad) of Kunlun Lab - CVE-2021-37968: Inappropriate implementation in Background Fetch API. Reported by Maurice Dauer - CVE-2021-37969: Inappropriate implementation in Google Updater. Reported by Abdelhamid Naceri (halov) - CVE-2021-37970: Use after free in File System API. Reported by SorryMybad (@S0rryMybad) of Kunlun Lab - CVE-2021-37971: Incorrect security UI in Web Browser UI. Reported by Rayyan Bijoora - CVE-2021-37972: Out of bounds read in libjpeg-turbo. Reported by Xu Hanyu and Lu Yutao from Panguite-Forensics-Lab of Qianxin chromium (93.0.4577.82-1) unstable; urgency=medium . * New upstream stable release. - CVE-2021-30625: Use after free in Selection API. Reported by Marcin Towalski of Cisco Talos - CVE-2021-30626: Out of bounds memory access in ANGLE. Reported by Jeonghoon Shin of Theori - CVE-2021-30627: Type Confusion in Blink layout. Reported by Aki Helin of OUSPG - CVE-2021-30628: Stack buffer overflow in ANGLE. Reported by Jaehun Jeong @n3sk of Theori - CVE-2021-30629: Use after free in Permissions. Reported by Weipeng Jiang @Krace from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-30630: Inappropriate implementation in Blink . Reported by SorryMybad @S0rryMybad of Kunlun Lab - CVE-2021-30631: Type Confusion in Blink layout. Reported by Atte Kettunen of OUSPG - CVE-2021-30632: Out of bounds write in V8. Reported by Anonymous - CVE-2021-30633: Use after free in Indexed DB API. Reported by Anonymous - CVE-2021-30606: Use after free in Blink. Reported by Nan Wang @eternalsakura13 and koocola @alo_cook of 360 Alpha Lab - CVE-2021-30607: Use after free in Permissions. Reported by Weipeng Jiang @Krace from Codesafe Team of Legendsec at Qi'anxin Group - CVE-2021-30608: Use after free in Web Share. Reported by Huyna at Viettel Cyber Security - CVE-2021-30609: Use after free in Sign-In. Reported by raven @raid_akame - CVE-2021-30610: Use after free in Extensions API. Reported by Igor Bukanov from Vivaldi - CVE-2021-30611: Use after free in WebRTC. Reported by Nan Wang @eternalsakura13 and koocola @alo_cook of 360 Alpha Lab - CVE-2021-30612: Use after free in WebRTC. Reported by Nan Wang @eternalsakura13 and koocola @alo_cook of 360 Alpha Lab - CVE-2021-30613: Use after free in Base internals. Reported by Yangkang @dnpushme of 360 ATA - CVE-2021-30614: Heap buffer overflow in TabStrip. Reported by Huinian Yang @vmth6 of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. - CVE-2021-30615: Cross-origin data leak in Navigation. Reported by NDevTK - CVE-2021-30616: Use after free in Media. Reported by Anonymous - CVE-2021-30617: Policy bypass in Blink. Reported by NDevTK - CVE-2021-30618: Inappropriate implementation in DevTools. Reported by @DanAmodio and @mattaustin from Contrast Security - CVE-2021-30619: UI Spoofing in Autofill. Reported by Alesandro Ortiz - CVE-2021-30620: Insufficient policy enforcement in Blink. Reported by Jun Kokatsu, Microsoft Browser Vulnerability Research - CVE-2021-30621: UI Spoofing in Autofill. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2021-30622: Use after free in WebApp Installs. Reported by Jun Kokatsu, Microsoft Browser Vulnerability Research - CVE-2021-30623: Use after free in Bookmarks. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2021-30624: Use after free in Autofill. Reported by Wei Yuan of MoyunSec VLab - CVE-2021-30598: Type Confusion in V8. Reported by Manfred Paul - CVE-2021-30599: Type Confusion in V8. Reported by Manfred Paul - CVE-2021-30600: Use after free in Printing. Reported by Leecraso and Guang Gong of 360 Alpha Lab - CVE-2021-30601: Use after free in Extensions API. Reported by koocola @alo_cook and Nan Wang @eternalsakura13 of 360 Alpha Lab - CVE-2021-30602: Use after free in WebRTC. Reported by Marcin Towalski of Cisco Talos - CVE-2021-30603: Race in WebAudio. Reported by Sergei Glazunov of Google Project Zero - CVE-2021-30604: Use after free in ANGLE. Reported by Seong-Hwan Park SeHwa of SecunologyLab - CVE-2021-30554: Use after free in WebGL. Reported by anonymous - CVE-2021-30555: Use after free in Sharing. Reported by David Erceg - CVE-2021-30556: Use after free in WebAudio. Reported by Yangkang @dnpushme of 360 ATA - CVE-2021-30557: Use after free in TabGroups. Reported by David Erceg - CVE-2021-30544: Use after free in BFCache. Reported by Rong Jian and Guang Gong of 360 Alpha Lab - CVE-2021-30545: Use after free in Extensions. Reported by kkwon with everpall and kkomdal - CVE-2021-30546: Use after free in Autofill. Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research - CVE-2021-30547: Out of bounds write in ANGLE. Reported by Seong-Hwan Park SeHwa of SecunologyLab - CVE-2021-30548: Use after free in Loader. Reported by Yangkang @dnpushme & Wanglu of Qihoo360 Qex Team - CVE-2021-30549: Use after free in Spell check. Reported by David Erceg - CVE-2021-30550: Use after free in Accessibility. Reported by David Erceg - CVE-2021-30551: Type Confusion in V8. Reported by Clement Lecigne of Google's Threat Analysis Group and Sergei Glazunov of Google Project Zero - CVE-2021-30552: Use after free in Extensions. Reported by David Erceg - CVE-2021-30553: Use after free in Network service. Reported by Anonymous - CVE-2021-30521: Heap buffer overflow in Autofill. Reported by ZhanJia Song - CVE-2021-30522: Use after free in WebAudio. Reported by Piotr Bania of Cisco Talos - CVE-2021-30523: Use after free in WebRTC. Reported by Tolyan Korniltsev - CVE-2021-30524: Use after free in TabStrip. Reported by David Erceg - CVE-2021-30525: Use after free in TabGroups. Reported by David Erceg - CVE-2021-30526: Out of bounds write in TabStrip. Reported by David Erceg - CVE-2021-30527: Use after free in WebUI. Reported by David Erceg - CVE-2021-30528: Use after free in WebAuthentication. Reported by Man Yue Mo of GitHub Security Lab - CVE-2021-30529: Use after free in Bookmarks. Reported by koocola @alo_cook and Nan Wang @eternalsakura13 of 360 Alpha Lab - CVE-2021-30530: Out of bounds memory access in WebAudio. Reported by kkwon - CVE-2021-30531: Insufficient policy enforcement in Content Security Policy. Reported by Philip Papurt - CVE-2021-30532: Insufficient policy enforcement in Content Security Policy. Reported by Philip Papurt - CVE-2021-30533: Insufficient policy enforcement in PopupBlocker. Reported by Eliya Stein - CVE-2021-30534: Insufficient policy enforcement in iFrameSandbox. Reported by Alesandro Ortiz - CVE-2021-30535: Double free in ICU. Reported by nocma, leogan, cheneyxu of WeChat Open Platform Security Team - CVE-2021-21212: Insufficient data validation in networking. Reported by Hugo Hue and Sze Yiu Chau of the Chinese University of Hong Kong - CVE-2021-30536: Out of bounds read in V8. Reported by Chris Salls @salls - CVE-2021-30537: Insufficient policy enforcement in cookies. Reported by Jun Kokatsu @shhnjk - CVE-2021-30538: Insufficient policy enforcement in content security policy. Reported by Tianze Ding @D1iv3 of Tencent Security Xuanwu Lab - CVE-2021-30539: Insufficient policy enforcement in content security policy. Reported by unnamed researcher - CVE-2021-30540: Incorrect security UI in payments. Reported by @retsew0x01 chrony (4.0-8+deb11u2) bullseye; urgency=medium . * debian/usr.sbin.chronyd: - Allow reading the chronyd configuration file that timemaster(8) generates. Thanks to Michael Lestinsky for the report! (Closes: #1004745) cinnamon (4.8.6-2+deb11u1) bullseye; urgency=medium . * d/patches: add upstream patch that solves a crash adding an online account with login on web component (Closes: #1001536) * change vcs-git, CI and gbp to bullseye clamav (0.103.5+dfsg-0+deb11u1) bullseye; urgency=medium . * Import 0.103.5 - CVE-2022-20698 (Fix for invalid pointer read that may cause a crash). - Update symbol file. clamav (0.103.5+dfsg-0+deb10u1) buster; urgency=medium . * Import 0.103.5 - CVE-2022-20698 (Fix for invalid pointer read that may cause a crash). - Update symbol file. clamav (0.103.4+dfsg-1) unstable; urgency=medium . * Import 0.103.4 - Update symbol file. * Add clamonacc.8. * Install clamonacc only on Linux. Patch by Laurent Bigonvill (Closes: #992776). * Drop unused libidn11-dev dependency, suggested by Simon Josefsson (Closes: #991976). clamav (0.103.4+dfsg-0+deb11u1) bullseye; urgency=medium . * Import 0.103.4 - Update symbol file. * Add clamonacc.8. * Install clamonacc only on Linux. Patch by Laurent Bigonvill (Closes: #992776). clamav (0.103.4+dfsg-0+deb10u1) buster; urgency=medium . * Import 0.103.4 - Update symbol file. * Add clamonacc.8. * Install clamonacc only on Linux. Patch by Laurent Bigonvill (Closes: #992776). clamav (0.103.3+dfsg-1) unstable; urgency=medium . * Import 0.103.2 - Update symbol file. - Regression: clamdscan segfaults with --fdpass --multipass and ExcludePath (Closes: #988218). * Remove clamav user on purge (Closes: #987861). * Remove freshclam.dat on purge. containerd (1.4.13~ds1-1~deb11u1) bullseye-security; urgency=high . * New upstream version 1.4.13~ds1 CVE-2022-23648: CRI plugin: insecure handling of image volumes. cryptsetup (2:2.3.7-1+deb11u1) bullseye-security; urgency=high . * New upstream security/bugfix release, with fixes for: + CVE-2021-4122: decryption through LUKS2 reencryption crash recovery. (Closes: #1003686) + Key truncation for standalone dm-integrity devices using HMAC integrity protection. (Closes: #949336) * Update d/gbp.conf and d/salsa-ci.yml to use d/bullseye branch. cryptsetup (2:2.3.7-1+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . cryptsetup (2:2.3.7-1+deb11u1) bullseye-security; urgency=high . * New upstream security/bugfix release, with fixes for: + CVE-2021-4122: decryption through LUKS2 reencryption crash recovery. (Closes: #1003686) + Key truncation for standalone dm-integrity devices using HMAC integrity protection. (Closes: #949336) * Update d/gbp.conf and d/salsa-ci.yml to use d/bullseye branch. cryptsetup (2:2.3.6-1+exp1) experimental; urgency=medium . * New upstream bugfix release. (Closes: #949336) cryptsetup (2:2.3.5-1+exp1) experimental; urgency=medium . * Upload to experimental. . cryptsetup (2:2.3.5-1) unstable; urgency=medium . * New upstream bugfix release. * d/watch: Monitor upstream tags rather than tarballs. * d/gbp.conf: Set 'upstream-vcs-tag' to add upstream tag as additional parent. * Simplify d/README.source in accordance with the above. * Rename d/upstream-signing-key.asc to d/upstream/signing-key.asc as uscan is now able to verify git tags. * encrypted-boot.md: Clarify how to solve double password prompt for the device holding /boot. cups-filters (1.28.7-1+deb11u1) bullseye; urgency=medium . * debian/apparmor/usr.sbin.cups-browsed: Allow reading from Debian Edu's cups-browsed config file (/etc/cups/cups-browsed-debian-edu.conf). (Closes: #1006183). (patch provided by Mike Gabriel) * debian/control: add myself to Uploaders: cyrus-sasl2 (2.1.27+dfsg-2.1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix _sasl_add_string * Escape password for SQL insert/update commands (CVE-2022-24407) dask.distributed (2021.01.0+ds.1-2.1+deb11u1) bullseye; urgency=medium . * Apply pass-host-to-local-cluster.patch. Resolves CVE-2021-42343 * Add python3.9-compatibility.patch. Fixes cannot import name 'Popen' from partially initialized module 'multiprocessing.popen_spawn_posix' debian-edu-config (2.11.56+deb11u3) bullseye-security; urgency=medium . * etc/apache2/mods-available/debian-edu-userdir.conf: - White-space cleanup (tabs and spaces mixed). - CVE-2021-20001: Disable built-in PHP engine. - Add warning to not re-enable PHP interpretation in user dirs (with reference to our README). * README.public_html_with_PHP-CGI+suExec.md: - Provide documentation on how to enable suExec support in Apache2 user directories (i.e. ~/public_html). * debian/NEWS: + Add file, inform about PHP being disabled in Apache2 user directories. debian-installer (20210731+deb11u3) bullseye; urgency=medium . * Bump Linux kernel ABI to 5.10.0-13. debian-installer-netboot-images (20210731+deb11u3) bullseye; urgency=medium . * Update to 20210731+deb11u3, from bullseye-proposed-updates. debian-ports-archive-keyring (2022.02.15~deb11u1) bullseye; urgency=medium . * Upload to bullseye. debian-ports-archive-keyring (2021.12.30) unstable; urgency=medium . * Add "Debian Ports Archive Automatic Signing Key (2023) " (ID: B523E5F3FC4E5F2C). * Upgrade Standard-Version to 4.6.0 (no changes). django-allauth (0.44.0+ds-1+deb11u1) bullseye; urgency=medium . * Import from 0.47.0-1 the patch to fix OpenID failures. (Closes: #1003069) * Disable forwarding for two patches djbdns (1:1.05-13+deb11u1) bullseye; urgency=medium . * Add the 0011-datalimit patch to catch up with recent versions of glibc generating larger executable files. Closes: #996807 * Several improvements to the Python tinytest autopkgtest tool: - use "with subprocess.Popen()" - simplify the command-line parsing a bit - minor import statement fixes - add a tox.ini file to make it easier to run static code checkers - turn a class into a dataclass - send a lot of queries to tinydns to make sure that the fix for #996807 actually works dpdk (20.11.4-2~deb11u1) bullseye; urgency=medium . * Upload to stable-proposed-updates. . dpdk (20.11.4-2) unstable; urgency=medium . * Backport patch to fix ppc64el FTBFS . dpdk (20.11.4-1) unstable; urgency=medium . * Update upstream source from tag 'upstream/20.11.4' * New upstream release 20.11.4; for a full list of changes see: http://doc.dpdk.org/guides-20.11/rel_notes/release_20_11.html * Bump copyright year ranges in d/copyright . dpdk (20.11.3-2) unstable; urgency=medium . [ Christian Ehrhardt ] * d/rules: drop per_library_versions removed since 19.11 (Closes: #998532) dpdk (20.11.4-1) unstable; urgency=medium . * Update upstream source from tag 'upstream/20.11.4' * New upstream release 20.11.4; for a full list of changes see: http://doc.dpdk.org/guides-20.11/rel_notes/release_20_11.html * Bump copyright year ranges in d/copyright dpdk (20.11.3-2) unstable; urgency=medium . [ Christian Ehrhardt ] * d/rules: drop per_library_versions removed since 19.11 (Closes: #998532) dpdk (20.11.3-1) unstable; urgency=medium . [ Henning Schild ] * d/rules: honor "nocheck" in test override . [ Christian Ehrhardt ] * Merge upstream stable release 20.11.3 * drop d/p/0001-rib-fix-insertion-in-some-cases.patch [applied upstream] * drop d/p/test-catch-coredumps.patch [applied upstream] * d/p/disable_autopkgtest_fails.patch: disable failures that do not represent regressions * d/p/disable_armhf_autopkgtest_fails.patch: disable arm failures that do not represent regressions * d/p/disable_ppc64_autopkgtest_fails.patch: skip known false-positives (LP: #1939861) . [ Luca Boccassi ] * Fix d/watch file syntax e2guardian (5.3.4-1+deb11u1) bullseye; urgency=medium . * debian/patches: + CVE-2021-44273: Fix missing SSL certificate validation in the SSL MiTM engine. Add 0001_CVE-2021-44273_fix-hostname-validation-in- certificates.patch. (Closes: #1003125). epiphany-browser (3.38.2-1+deb11u2) bullseye; urgency=medium . * d/p/glib-bug-workaround.patch: - Cherry pick upstream patch ff8ecbf6. This works around a bug in GLib and fixes a UI process crash (Closes: #1005810). epiphany-browser (3.38.2-1+deb11u1) bullseye-security; urgency=medium . * d/p/encode-untrusted-data.patch: - Cherry pick upstream changes from c27a8180e until abac58c51. - Fixes CVE-2021-45085, CVE-2021-45086, CVE-2021-45087 and CVE-2021-45088. espeak-ng (1.50+dfsg-7+deb11u1) bullseye; urgency=medium . * patches/even-delay: Drop spurious 50ms delay while processing events, this adds potentially very long latency to canceling speech. espeakup (1:0.80-20+deb11u1) stable; urgency=medium . * debian/espeakup.service: Protect espeakup from system overloads. expat (2.2.10-2+deb11u3) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * lib: Relax fix to CVE-2022-25236 with regard to RFC 3986 URI characters * tests: Cover relaxed fix to CVE-2022-25236 * lib: Document namespace separator effect right in header * lib|doc: Add a note on namespace URI validation expat (2.2.10-2+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Prevent stack exhaustion in build_model (CVE-2022-25313) * Prevent integer overflow in storeRawNames (CVE-2022-25315) * Prevent integer overflow in copyString (CVE-2022-25314) * lib: Fix (harmless) use of uninitialized memory * lib: Protect against malicious namespace declarations (CVE-2022-25236) (Closes: #1005895) * tests: Cover CVE-2022-25236 * lib: Drop unused macro UTF8_GET_NAMING * lib: Add missing validation of encoding (CVE-2022-25235) (Closes: #1005894) * lib: Add comments to BT_LEAD* cases where encoding has already been validated * tests: Cover missing validation of encoding (CVE-2022-25235) * Fix build_model regression. * tests: Protect against nested element declaration model regressions expat (2.2.10-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * lib: Detect and prevent troublesome left shifts in function storeAtts (CVE-2021-45960) (Closes: #1002994) * lib: Prevent integer overflow on m_groupSize in function doProlog (CVE-2021-46143) * lib: Prevent integer overflow at multiple places (CVE-2022-22822, CVE-2022-22823, CVE-2022-22824, CVE-2022-22825, CVE-2022-22826, CVE-2022-22827) (Closes: #1003474) * lib: Detect and prevent integer overflow in XML_GetBuffer (CVE-2022-23852) * tests: Cover integer overflow in XML_GetBuffer (CVE-2022-23852) * lib: Prevent integer overflow in doProlog (CVE-2022-23990) fcitx5-chinese-addons (5.0.4-1+deb11u1) bullseye; urgency=medium . * debian/control: Add missing package dependency relationship: + fcitx5-table: - fcitx5-module-pinyinhelper (Dep) - fcitx5-module-punctuation (Dep) (Closes: #1001739) flac (1.3.3-2+deb11u1) bullseye; urgency=medium . * CVE-2021-0561 (Closes: #1006339) flatpak (1.10.7-0+deb11u1) bullseye-security; urgency=high . * New upstream stable release * Security fixes: - Prevent a malicious repository from arranging for permissions to be granted without being correctly displayed during installation (CVE-2021-43860, GHSA-qpjc-vq3c-572j) - Provide a new --nofilesystem=host:reset option which flatpak-builder can use to prevent malicious builds from creating directories outside the build directory (CVE-2022-21682, GHSA-8ch7-5j3h-g4fx) * Other bug fixes: - Fix error handling for syscalls that are only allowed with --devel (this change was already included in 1.10.5-0+deb11u1) - Improve diagnostic messages when seccomp rules cannot be applied - Update Polish translation - Clarify documentation related to CVE-2022-21682 - Improve test coverage related to CVE-2022-21682 - Be compatible with newer versions of python3-pyparsing (the version in Debian 11 generates identical code before and after this change) * d/p/Fix-handling-of-syscalls-only-allowed-by-devel.patch: Drop patch, included in 1.10.6 * d/copyright: Update flatpak (1.10.7-0+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. - Revert "debian/control: Add libmalcontent-0-dev to the build-dependencies". It wasn't available in buster. - Revert "Add Suggests on malcontent-gui". - Downgrade dbus from Depends to Recommends. It only needed to be a Depends for the libmalcontent integration, but it is necessary for system-wide installations (without --user), so a Recommends still seems appropriate. . flatpak (1.10.7-0+deb11u1) bullseye-security; urgency=high . * New upstream stable release * Security fixes: - Prevent a malicious repository from arranging for permissions to be granted without being correctly displayed during installation (CVE-2021-43860, GHSA-qpjc-vq3c-572j) - Provide a new --nofilesystem=host:reset option which flatpak-builder can use to prevent malicious builds from creating directories outside the build directory (CVE-2022-21682, GHSA-8ch7-5j3h-g4fx) * Other bug fixes: - Fix error handling for syscalls that are only allowed with --devel (this change was already included in 1.10.5-0+deb11u1) - Improve diagnostic messages when seccomp rules cannot be applied - Update Polish translation - Clarify documentation related to CVE-2022-21682 - Improve test coverage related to CVE-2022-21682 - Be compatible with newer versions of python3-pyparsing (the version in Debian 11 generates identical code before and after this change) * d/p/Fix-handling-of-syscalls-only-allowed-by-devel.patch: Drop patch, included in 1.10.6 * d/copyright: Update flatpak-builder (1.0.12-1+deb11u1) bullseye-security; urgency=high . * d/gbp.conf, Vcs-Git: Configure for bullseye stable updates * d/p/Disable-filesystem-access-with-nofilesystem-host-reset.patch, d/p/Allow-nofilesystem-host-reset-in-flatpak-builder-run.patch: Add patches from upstream to prevent unintended access to host filesystem (CVE-2022-21682). To be effective, this also requires an updated version of flatpak. * d/control: Bump flatpak dependencies to 1.10.7. This ensures that we have the version that enables us to avoid CVE-2022-21682. fort-validator (1.5.3-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. Fixes: - RRDP Slowloris (CVE-2021-43173 CVE-2021-3909). - Repo contains 100GB of trash. - Dot-dot-slash path traversal (CVE-2021-3907). fort-validator (1.5.2-1) unstable; urgency=medium . * New upstream release. fort-validator (1.5.1-1) unstable; urgency=medium . * New upstream release. freerdp2 (2.3.0+dfsg1-2+deb11u1) bullseye; urgency=medium . [ Bernhard Miklautz ] * debian/rules: + Disable additional debug logging. (Closes: #1006683). . [ Mike Gabriel ] * debian/patches: + Add 1001_keep-symbol-DumpThreadHandles-if-debugging-is-disabled.patch. Keep DumpThreadHandles as a symbol even if WITH_DEBUG_THREADS is OFF. galera-3 (25.3.36-0+deb11u1) bullseye; urgency=medium . * New upstream version 25.3.36. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-25.3.36.txt and for previous release 25.3.35 see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-25.3.35.txt galera-3 (25.3.35-1) unstable; urgency=medium . [ Otto Kekäläinen ] * New upstream version 25.3.35. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-25.3.35.txt . [ Debian Janitor ] * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on cmake, libboost-dev and libboost-program-options-dev. + galera-arbitrator-3: Drop versioned constraint on lsb-base in Depends. galera-3 (25.3.34-1) unstable; urgency=medium . * New upstream version 25.3.34. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-25.3.34.txt * Restore CK_TIMEOUT_MULTIPLIER in debian rules to avoid having various slow builds and CI runs fail in vain galera-4 (26.4.11-0+deb11u1) bullseye; urgency=medium . * New upstream release 26.4.11. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-26.4.11.txt and for previous release 26.4.10 see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-26.4.10.txt galera-4 (26.4.10-1) unstable; urgency=medium . [ Otto Kekäläinen ] * New upstream release 26.4.10. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-26.4.10.txt . [ Debian Janitor ] * Remove constraints unnecessary since buster galera-4 (26.4.9-1) unstable; urgency=medium . [ Otto Kekäläinen ] * New upstream release 26.4.9. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-26.4.9.txt * Restore CK_TIMEOUT_MULTIPLIER in debian rules to avoid unnecassary test failures due to slow builders . [ Andreas Beckmann ] * Solve circular Conflicts with galera-3 by no longer providing a virtual galera package (Closes: #990708) gbonds (2.0.3-16+deb11u1) bullseye; urgency=high . * Add redemption data through 11/2021 (sb202106.asc) * Use Treasury API for redemption data (Closes: 1001610) ghostscript (9.53.3~dfsg-7+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Check stack limits after function evaluation (CVE-2021-45944) * Fix op stack management in sampled_data_continue() (CVE-2021-45949) glewlwyd (2.5.2-2+deb11u2) bullseye; urgency=medium . * d/patches: Fix possible privilege escalation (Closes: #1001849) glibc (2.31-13+deb11u3) bullseye; urgency=medium . [ Aurelien Jarno ] * debian/patches/git-updates.diff: update from upstream stable branch: - Fix bad conversion from ISO-2022-JP-3 with iconv (CVE-2021-43396). Closes: #998622. - Remove PIE check on amd64 to fix FTBFS with binutils 2.37. - Fix a buffer overflow in sunrpc svcunix_create (CVE-2022-23218). - Fix a buffer overflow in sunrpc clnt_create (CVE-2022-23219). * debian/debhelper.in/libc-bin.postinst: stop replacing older versions from /etc/nsswitch.conf. Closes: #998008. * debian/debhelper.in/libc.preinst: simplify the version comparison by only comparing the two first parts, now that kernel 2.X are not supported anymore. Closes: #1004861. * debian/debhelper.in/libc.preinst: drop the check for kernel release > 255 now that glibc and preinstall script are fixed. Closes: #987266. * debian/patches/local-CVE-2021-33574-mq_notify-use-after-free.diff: fix a possible use-after-free in mq_notify (CVE-2021-33574). Closes: #989147. glx-alternatives (1.2.1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . glx-alternatives (1.2.1) unstable; urgency=medium . * glx-diversions: After initial setup of the diversions, install a minimal alternative to the diverted files s.t. libGL.so.1 etc. are not missing until glx-alternative-mesa processes its triggers. (Closes: #993338) * Bump Standards-Version to 4.6.0. No changes needed. gnupg2 (2.2.27-2+deb11u1) bullseye; urgency=medium . [ Raphaël Hertzog ] * Avoid network interaction in generator. Closes: #993578 . [ Christoph Biedl ] * Backport "Scd: Fix CCID driver for SCM SPR332/SPR532". Closes: #982546 . [ Daniel Kahn Gillmor ] * update git to point to debian/bullseye branch gnuplot (5.4.1+dfsg1-1+deb11u1) bullseye; urgency=medium . * Fix divide by zero vulnerability. CVE-2021-44917. (Closes: #1002539) golang-1.15 (1.15.15-1~deb11u4) bullseye; urgency=medium . * Backport patch for CVE-2022-24921: regexp: stack exhaustion compiling deeply nested expressions golang-1.15 (1.15.15-1~deb11u3) bullseye; urgency=medium . * Backport patches for CVE-2022-23806 CVE-2022-23772 CVE-2022-23773 + CVE-2022-23806: crypto/elliptic: fix IsOnCurve for big.Int values that are not valid coordinates + CVE-2022-23772: math/big: prevent large memory consumption in Rat.SetString + CVE-2022-23773: cmd/go: prevent branches from materializing into versions golang-github-containers-common (0.33.4+ds1-1+deb11u1) bullseye; urgency=medium . * Backport seccomp patches from upstream to allow execution of newer syscalls. Closes: #994451, #1006137 golang-github-opencontainers-specs (1.0.2.41.g7413a7f-1+deb11u1) bullseye; urgency=medium . * Backport seccomp patches from upstream to allow execution of newer syscalls, Closes: #994451, #1004533 gtk+3.0 (3.24.24-4+deb11u2) bullseye; urgency=medium . [ Jian-Hong Pan ] * d/p/printing-Create-temporary-queues-for-Avahi-printers.patch, d/p/printing-Show-all-Avahi-advertised-printers.patch: Backport patches from upstream 3.24.25 to enable temporary CUPS queues for local printers advertised via mDNS. This enables GTK to discover local printers and print to them, without needing to install the cups-browsed package or configure CUPS queues manually. (Closes: #982925) * d/p/Don-t-try-to-create-local-cups-printers-before-CUPS-2.2.patch: Backport patch from upstream 3.24.29 to make the printing module identical to the more widely-tested version in unstable. . [ Simon McVittie ] * debian/cups-Use-the-same-name-mangling-as-Debian-11-s-cups-brows.patch: Avoid creating confusing duplicate printer entries if the printer's mDNS name begins or ends with a non-alphanumeric character. This change is specific to the Debian 11 version of cups-browsed, and is not necessary with cups-browsed 1.28.11 or later. * d/p/wayland-Ensure-clipboard-handling-doesn-t-lock-up-in-cert.patch: Backport patch from upstream 3.24.31 to prevent Wayland clipboard handling from locking up in certain corner cases (Closes: #1006281) gtk+3.0 (3.24.24-4+deb11u1) bullseye; urgency=medium . * Add patch from upstream to fix missing search results when using NFS (Closes: #976334) * d/gbp.conf, d/control.in: Set packaging branch to debian/bullseye h2database (1.4.197-4+deb11u1) bullseye-security; urgency=high . * Team upload. * Security researchers of JFrog Security and Ismail Aydemir discovered two remote code execution vulnerabilities in the H2 Java SQL database engine which can be exploited through various attack vectors, most notably through the H2 Console and by loading custom classes from remote servers through JNDI. The H2 console is a developer tool and not required by any reverse-dependency in Debian. It has been disabled in (old)stable releases. Database developers are advised to use at least version 2.1.210-1, currently available in Debian unstable. h2database (1.4.197-4+deb10u1) buster-security; urgency=high . * Team upload. * Security researchers of JFrog Security and Ismail Aydemir discovered two remote code execution vulnerabilities in the H2 Java SQL database engine which can be exploited through various attack vectors, most notably through the H2 Console and by loading custom classes from remote servers through JNDI. The H2 console is a developer tool and not required by any reverse-dependency in Debian. It has been disabled in (old)stable releases. Database developers are advised to use at least version 2.1.210-1, currently available in Debian unstable. haproxy (2.2.9-2+deb11u3) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * BUG/MAJOR: http/htx: prevent unbounded loop in http_manage_server_side_cookies (CVE-2022-0711) haproxy (2.2.9-2+deb11u3~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. heartbeat (1:3.0.6-11+deb11u1) bullseye; urgency=medium . * Use tmpfiles.d to create /run/heartbeat (Closes: #1002037) htmldoc (1.9.11-4+deb11u2) bullseye; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2022-0534 A crafted GIF file could lead to a stack out-of-bounds read, which could result in a crash (segmentation fault). installation-guide (20220129~deb11u1) bullseye; urgency=medium . * Backport documentation fixes to bullseye. intel-microcode (3.20220207.1~deb11u1) bullseye; urgency=medium . * Backport for Debian stable (no changes) * Release manager: this is the same package already in bullseye-backports, testing and unstable. It fixes several security issues, adds MSRs that can be enabled by updated kernels for enhanced security mitigaton, and also fixes several critical "functional issues" (i.e. processor errata). There were no reports to date of regressions introduced by this microcode drelease. . intel-microcode (3.20220207.1) unstable; urgency=medium . * upstream changelog: new upstream datafile 20220207 * Mitigates (*only* when loaded from UEFI firmware through the FIT) CVE-2021-0146, INTEL-SA-00528: VT-d privilege escalation through debug port, on Pentium, Celeron and Atom processors with signatures 0x506c9, 0x506ca, 0x506f1, 0x706a1, 0x706a8 https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/issues/57#issuecomment-1036363145 * Mitigates CVE-2021-0127, INTEL-SA-00532: an unexpected code breakpoint may cause a system hang, on many processors. * Mitigates CVE-2021-0145, INTEL-SA-00561: information disclosure due to improper sanitization of shared resources (fast-store forward predictor), on many processors. * Mitigates CVE-2021-33120, INTEL-SA-00589: out-of-bounds read on some Atom Processors may allow information disclosure or denial of service via network access. * Fixes critical errata (functional issues) on many processors * Adds a MSR switch to enable RAPL filtering (default off, once enabled it can only be disabled by poweroff or reboot). Useful to protect SGX and other threads from side-channel info leak. Improves the mitigation for CVE-2020-8694, CVE-2020-8695, INTEL-SA-00389 on many processors. * Disables TSX in more processor models. * Fixes issue with WBINDV on multi-socket (server) systems which could cause resets and unpredictable system behavior. * Adds a MSR switch to 10th and 11th-gen (Ice Lake, Tiger Lake, Rocket Lake) processors, to control a fix for (hopefully rare) unpredictable processor behavior when HyperThreading is enabled. This MSR switch is enabled by default on *server* processors. On other processors, it needs to be explicitly enabled by an updated UEFI/BIOS (with added configuration logic). An updated operating system kernel might also be able to enable it. When enabled, this fix can impact performance. * Updated Microcodes: sig 0x000306f2, pf_mask 0x6f, 2021-08-11, rev 0x0049, size 38912 sig 0x000306f4, pf_mask 0x80, 2021-05-24, rev 0x001a, size 23552 sig 0x000406e3, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 105472 sig 0x00050653, pf_mask 0x97, 2021-05-26, rev 0x100015c, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-06-16, rev 0x2006c0a, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-08-13, rev 0x400320a, size 35840 sig 0x00050657, pf_mask 0xbf, 2021-08-13, rev 0x500320a, size 36864 sig 0x0005065b, pf_mask 0xbf, 2021-06-04, rev 0x7002402, size 28672 sig 0x00050663, pf_mask 0x10, 2021-06-12, rev 0x700001c, size 28672 sig 0x00050664, pf_mask 0x10, 2021-06-12, rev 0xf00001a, size 27648 sig 0x00050665, pf_mask 0x10, 2021-09-18, rev 0xe000014, size 23552 sig 0x000506c9, pf_mask 0x03, 2021-05-10, rev 0x0046, size 17408 sig 0x000506ca, pf_mask 0x03, 2021-05-10, rev 0x0024, size 16384 sig 0x000506e3, pf_mask 0x36, 2021-04-29, rev 0x00ec, size 108544 sig 0x000506f1, pf_mask 0x01, 2021-05-10, rev 0x0036, size 11264 sig 0x000606a6, pf_mask 0x87, 2021-12-03, rev 0xd000331, size 291840 sig 0x000706a1, pf_mask 0x01, 2021-05-10, rev 0x0038, size 74752 sig 0x000706a8, pf_mask 0x01, 2021-05-10, rev 0x001c, size 75776 sig 0x000706e5, pf_mask 0x80, 2021-05-26, rev 0x00a8, size 110592 sig 0x000806a1, pf_mask 0x10, 2021-09-02, rev 0x002d, size 34816 sig 0x000806c1, pf_mask 0x80, 2021-08-06, rev 0x009a, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-07-16, rev 0x0022, size 96256 sig 0x000806d1, pf_mask 0xc2, 2021-07-16, rev 0x003c, size 101376 sig 0x000806e9, pf_mask 0x10, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806e9, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ea, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 103424 sig 0x000806eb, pf_mask 0xd0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ec, pf_mask 0x94, 2021-04-28, rev 0x00ec, size 104448 sig 0x00090661, pf_mask 0x01, 2021-09-21, rev 0x0015, size 20480 sig 0x000906c0, pf_mask 0x01, 2021-08-09, rev 0x2400001f, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-04-29, rev 0x00ec, size 106496 sig 0x000906ea, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 102400 sig 0x000906eb, pf_mask 0x02, 2021-04-28, rev 0x00ec, size 104448 sig 0x000906ec, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000906ed, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000a0652, pf_mask 0x20, 2021-04-28, rev 0x00ec, size 93184 sig 0x000a0653, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 94208 sig 0x000a0655, pf_mask 0x22, 2021-04-28, rev 0x00ee, size 94208 sig 0x000a0660, pf_mask 0x80, 2021-04-28, rev 0x00ea, size 94208 sig 0x000a0661, pf_mask 0x80, 2021-04-29, rev 0x00ec, size 93184 sig 0x000a0671, pf_mask 0x02, 2021-08-29, rev 0x0050, size 102400 * Removed Microcodes: sig 0x00080664, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 sig 0x00080665, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 * update .gitignore and debian/.gitignore. Add some missing items from .gitignore and debian/.gitignore. * ucode-blacklist: do not late-load 0x406e3 and 0x506e3. When the BIOS microcode is older than revision 0x7f (and perhaps in some other cases as well), the latest microcode updates for 0x406e3 and 0x506e3 must be applied using the early update method. Otherwise, the system might hang. Also: there must not be any other intermediate microcode update attempts [other than the one done by the BIOS itself], either. It must go from the BIOS microcode update directly to the latest microcode update. * source: update symlinks to reflect id of the latest release, 20220207 intel-microcode (3.20220207.1~deb10u1) buster; urgency=medium . * Backport for Debian oldstable (no changes) * Release manager: this is the same package already in bullseye-backports, testing and unstable. It fixes several security issues, adds MSRs that can be enabled by updated kernels for enhanced security mitigaton, and also fixes several critical "functional issues" (i.e. processor errata). There were no reports to date of regressions introduced by this microcode drelease. . intel-microcode (3.20220207.1) unstable; urgency=medium . * upstream changelog: new upstream datafile 20220207 * Mitigates (*only* when loaded from UEFI firmware through the FIT) CVE-2021-0146, INTEL-SA-00528: VT-d privilege escalation through debug port, on Pentium, Celeron and Atom processors with signatures 0x506c9, 0x506ca, 0x506f1, 0x706a1, 0x706a8 https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/issues/57#issuecomment-1036363145 * Mitigates CVE-2021-0127, INTEL-SA-00532: an unexpected code breakpoint may cause a system hang, on many processors. * Mitigates CVE-2021-0145, INTEL-SA-00561: information disclosure due to improper sanitization of shared resources (fast-store forward predictor), on many processors. * Mitigates CVE-2021-33120, INTEL-SA-00589: out-of-bounds read on some Atom Processors may allow information disclosure or denial of service via network access. * Fixes critical errata (functional issues) on many processors * Adds a MSR switch to enable RAPL filtering (default off, once enabled it can only be disabled by poweroff or reboot). Useful to protect SGX and other threads from side-channel info leak. Improves the mitigation for CVE-2020-8694, CVE-2020-8695, INTEL-SA-00389 on many processors. * Disables TSX in more processor models. * Fixes issue with WBINDV on multi-socket (server) systems which could cause resets and unpredictable system behavior. * Adds a MSR switch to 10th and 11th-gen (Ice Lake, Tiger Lake, Rocket Lake) processors, to control a fix for (hopefully rare) unpredictable processor behavior when HyperThreading is enabled. This MSR switch is enabled by default on *server* processors. On other processors, it needs to be explicitly enabled by an updated UEFI/BIOS (with added configuration logic). An updated operating system kernel might also be able to enable it. When enabled, this fix can impact performance. * Updated Microcodes: sig 0x000306f2, pf_mask 0x6f, 2021-08-11, rev 0x0049, size 38912 sig 0x000306f4, pf_mask 0x80, 2021-05-24, rev 0x001a, size 23552 sig 0x000406e3, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 105472 sig 0x00050653, pf_mask 0x97, 2021-05-26, rev 0x100015c, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-06-16, rev 0x2006c0a, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-08-13, rev 0x400320a, size 35840 sig 0x00050657, pf_mask 0xbf, 2021-08-13, rev 0x500320a, size 36864 sig 0x0005065b, pf_mask 0xbf, 2021-06-04, rev 0x7002402, size 28672 sig 0x00050663, pf_mask 0x10, 2021-06-12, rev 0x700001c, size 28672 sig 0x00050664, pf_mask 0x10, 2021-06-12, rev 0xf00001a, size 27648 sig 0x00050665, pf_mask 0x10, 2021-09-18, rev 0xe000014, size 23552 sig 0x000506c9, pf_mask 0x03, 2021-05-10, rev 0x0046, size 17408 sig 0x000506ca, pf_mask 0x03, 2021-05-10, rev 0x0024, size 16384 sig 0x000506e3, pf_mask 0x36, 2021-04-29, rev 0x00ec, size 108544 sig 0x000506f1, pf_mask 0x01, 2021-05-10, rev 0x0036, size 11264 sig 0x000606a6, pf_mask 0x87, 2021-12-03, rev 0xd000331, size 291840 sig 0x000706a1, pf_mask 0x01, 2021-05-10, rev 0x0038, size 74752 sig 0x000706a8, pf_mask 0x01, 2021-05-10, rev 0x001c, size 75776 sig 0x000706e5, pf_mask 0x80, 2021-05-26, rev 0x00a8, size 110592 sig 0x000806a1, pf_mask 0x10, 2021-09-02, rev 0x002d, size 34816 sig 0x000806c1, pf_mask 0x80, 2021-08-06, rev 0x009a, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-07-16, rev 0x0022, size 96256 sig 0x000806d1, pf_mask 0xc2, 2021-07-16, rev 0x003c, size 101376 sig 0x000806e9, pf_mask 0x10, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806e9, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ea, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 103424 sig 0x000806eb, pf_mask 0xd0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ec, pf_mask 0x94, 2021-04-28, rev 0x00ec, size 104448 sig 0x00090661, pf_mask 0x01, 2021-09-21, rev 0x0015, size 20480 sig 0x000906c0, pf_mask 0x01, 2021-08-09, rev 0x2400001f, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-04-29, rev 0x00ec, size 106496 sig 0x000906ea, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 102400 sig 0x000906eb, pf_mask 0x02, 2021-04-28, rev 0x00ec, size 104448 sig 0x000906ec, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000906ed, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000a0652, pf_mask 0x20, 2021-04-28, rev 0x00ec, size 93184 sig 0x000a0653, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 94208 sig 0x000a0655, pf_mask 0x22, 2021-04-28, rev 0x00ee, size 94208 sig 0x000a0660, pf_mask 0x80, 2021-04-28, rev 0x00ea, size 94208 sig 0x000a0661, pf_mask 0x80, 2021-04-29, rev 0x00ec, size 93184 sig 0x000a0671, pf_mask 0x02, 2021-08-29, rev 0x0050, size 102400 * Removed Microcodes: sig 0x00080664, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 sig 0x00080665, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 * update .gitignore and debian/.gitignore. Add some missing items from .gitignore and debian/.gitignore. * ucode-blacklist: do not late-load 0x406e3 and 0x506e3. When the BIOS microcode is older than revision 0x7f (and perhaps in some other cases as well), the latest microcode updates for 0x406e3 and 0x506e3 must be applied using the early update method. Otherwise, the system might hang. Also: there must not be any other intermediate microcode update attempts [other than the one done by the BIOS itself], either. It must go from the BIOS microcode update directly to the latest microcode update. * source: update symlinks to reflect id of the latest release, 20220207 intel-microcode (3.20220207.1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports (no changes required) . intel-microcode (3.20220207.1) unstable; urgency=medium . * upstream changelog: new upstream datafile 20220207 * Mitigates (*only* when loaded from UEFI firmware through the FIT) CVE-2021-0146, INTEL-SA-00528: VT-d privilege escalation through debug port, on Pentium, Celeron and Atom processors with signatures 0x506c9, 0x506ca, 0x506f1, 0x706a1, 0x706a8 https://github.com/intel/Intel-Linux-Processor-Microcode-Data-Files/issues/57#issuecomment-1036363145 * Mitigates CVE-2021-0127, INTEL-SA-00532: an unexpected code breakpoint may cause a system hang, on many processors. * Mitigates CVE-2021-0145, INTEL-SA-00561: information disclosure due to improper sanitization of shared resources (fast-store forward predictor), on many processors. * Mitigates CVE-2021-33120, INTEL-SA-00589: out-of-bounds read on some Atom Processors may allow information disclosure or denial of service via network access. * Fixes critical errata (functional issues) on many processors * Adds a MSR switch to enable RAPL filtering (default off, once enabled it can only be disabled by poweroff or reboot). Useful to protect SGX and other threads from side-channel info leak. Improves the mitigation for CVE-2020-8694, CVE-2020-8695, INTEL-SA-00389 on many processors. * Disables TSX in more processor models. * Fixes issue with WBINDV on multi-socket (server) systems which could cause resets and unpredictable system behavior. * Adds a MSR switch to 10th and 11th-gen (Ice Lake, Tiger Lake, Rocket Lake) processors, to control a fix for (hopefully rare) unpredictable processor behavior when HyperThreading is enabled. This MSR switch is enabled by default on *server* processors. On other processors, it needs to be explicitly enabled by an updated UEFI/BIOS (with added configuration logic). An updated operating system kernel might also be able to enable it. When enabled, this fix can impact performance. * Updated Microcodes: sig 0x000306f2, pf_mask 0x6f, 2021-08-11, rev 0x0049, size 38912 sig 0x000306f4, pf_mask 0x80, 2021-05-24, rev 0x001a, size 23552 sig 0x000406e3, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 105472 sig 0x00050653, pf_mask 0x97, 2021-05-26, rev 0x100015c, size 34816 sig 0x00050654, pf_mask 0xb7, 2021-06-16, rev 0x2006c0a, size 43008 sig 0x00050656, pf_mask 0xbf, 2021-08-13, rev 0x400320a, size 35840 sig 0x00050657, pf_mask 0xbf, 2021-08-13, rev 0x500320a, size 36864 sig 0x0005065b, pf_mask 0xbf, 2021-06-04, rev 0x7002402, size 28672 sig 0x00050663, pf_mask 0x10, 2021-06-12, rev 0x700001c, size 28672 sig 0x00050664, pf_mask 0x10, 2021-06-12, rev 0xf00001a, size 27648 sig 0x00050665, pf_mask 0x10, 2021-09-18, rev 0xe000014, size 23552 sig 0x000506c9, pf_mask 0x03, 2021-05-10, rev 0x0046, size 17408 sig 0x000506ca, pf_mask 0x03, 2021-05-10, rev 0x0024, size 16384 sig 0x000506e3, pf_mask 0x36, 2021-04-29, rev 0x00ec, size 108544 sig 0x000506f1, pf_mask 0x01, 2021-05-10, rev 0x0036, size 11264 sig 0x000606a6, pf_mask 0x87, 2021-12-03, rev 0xd000331, size 291840 sig 0x000706a1, pf_mask 0x01, 2021-05-10, rev 0x0038, size 74752 sig 0x000706a8, pf_mask 0x01, 2021-05-10, rev 0x001c, size 75776 sig 0x000706e5, pf_mask 0x80, 2021-05-26, rev 0x00a8, size 110592 sig 0x000806a1, pf_mask 0x10, 2021-09-02, rev 0x002d, size 34816 sig 0x000806c1, pf_mask 0x80, 2021-08-06, rev 0x009a, size 109568 sig 0x000806c2, pf_mask 0xc2, 2021-07-16, rev 0x0022, size 96256 sig 0x000806d1, pf_mask 0xc2, 2021-07-16, rev 0x003c, size 101376 sig 0x000806e9, pf_mask 0x10, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806e9, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ea, pf_mask 0xc0, 2021-04-28, rev 0x00ec, size 103424 sig 0x000806eb, pf_mask 0xd0, 2021-04-28, rev 0x00ec, size 104448 sig 0x000806ec, pf_mask 0x94, 2021-04-28, rev 0x00ec, size 104448 sig 0x00090661, pf_mask 0x01, 2021-09-21, rev 0x0015, size 20480 sig 0x000906c0, pf_mask 0x01, 2021-08-09, rev 0x2400001f, size 20480 sig 0x000906e9, pf_mask 0x2a, 2021-04-29, rev 0x00ec, size 106496 sig 0x000906ea, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 102400 sig 0x000906eb, pf_mask 0x02, 2021-04-28, rev 0x00ec, size 104448 sig 0x000906ec, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000906ed, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 103424 sig 0x000a0652, pf_mask 0x20, 2021-04-28, rev 0x00ec, size 93184 sig 0x000a0653, pf_mask 0x22, 2021-04-28, rev 0x00ec, size 94208 sig 0x000a0655, pf_mask 0x22, 2021-04-28, rev 0x00ee, size 94208 sig 0x000a0660, pf_mask 0x80, 2021-04-28, rev 0x00ea, size 94208 sig 0x000a0661, pf_mask 0x80, 2021-04-29, rev 0x00ec, size 93184 sig 0x000a0671, pf_mask 0x02, 2021-08-29, rev 0x0050, size 102400 * Removed Microcodes: sig 0x00080664, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 sig 0x00080665, pf_mask 0x01, 2021-02-17, rev 0xb00000f, size 130048 * update .gitignore and debian/.gitignore. Add some missing items from .gitignore and debian/.gitignore. * ucode-blacklist: do not late-load 0x406e3 and 0x506e3. When the BIOS microcode is older than revision 0x7f (and perhaps in some other cases as well), the latest microcode updates for 0x406e3 and 0x506e3 must be applied using the early update method. Otherwise, the system might hang. Also: there must not be any other intermediate microcode update attempts [other than the one done by the BIOS itself], either. It must go from the BIOS microcode update directly to the latest microcode update. * source: update symlinks to reflect id of the latest release, 20220207 ipython (7.20.0-1+deb11u1) bullseye-security; urgency=high . * Fixes CVE-2022-21699 (execution of config files from the current directory, which might allow cross-user attacks if ipython is run from a directory multiple users can write). Closes: #1004122 ldap2zone (0.2-11+deb11u1) bullseye; urgency=medium . * debian/patches: + Update 0004_revert-broken-zones.patch. Stop using deprecated $(tempfile) command. (Closes: #1005354) lemonldap-ng (2.0.11+ds-4+deb11u1) bullseye; urgency=medium . * Fix auth process in password-testing plugins (Closes: CVE-2021-20874) libarchive (3.4.3-2+deb11u1) bullseye; urgency=medium . * Add four upstream fixes for various problems: - fix extracting hardlinks to symlinks - CVE-2021-23177: fix handling of symlink ACLs; Closes: 1001986 - CVE-2021-31566: never follow symlinks when setting file flags; Closes: 1001990 libdatetime-timezone-perl (1:2.47-1+2022a) bullseye; urgency=medium . * Update to Olson database version 2022a. This update includes contemporary changes for Palestine. libphp-adodb (5.20.19-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Prevent auth bypass with PostgreSQL connections (CVE-2021-3850) (Closes: #1004376) libpod (3.0.1+dfsg1-3+deb11u1) bullseye; urgency=medium . * Rebuild against containers-common to pickup seccomp updates required for newer kernels. Closes: #​994451, #1006138 librecad (2.1.3-1.3+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2021-21898: A code execution vulnerability exists in the dwgCompressor::decompress18() functionality of LibreCad libdxfrw. A specially-crafted .dwg file can lead to an out-of-bounds write. * CVE-2021-21899: A code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw. A specially-crafted .dwg file can lead to a heap buffer overflow. * CVE-2021-21900: A code execution vulnerability exists in the dxfRW::processLType() functionality of LibreCad libdxfrw. A specially-crafted .dxf file can lead to a use-after-free vulnerability. * CVE-2021-45341: Buffer overflow vulnerabilities in CDataMoji of the jwwlib component of LibreCAD allows an attacker to achieve Remote Code Execution using a crafted JWW document. * CVE-2021-45342: Buffer overflow vulnerabilities in CDataList of the jwwlib component of LibreCAD allows an attacker to achieve Remote Code Execution using a crafted JWW document. * CVE-2021-45343: a NULL pointer dereference in the HATCH handling of libdxfrw allows an attacker to crash the application using a crafted DXF document. libreswan (4.3-1+deb11u1) bullseye-security; urgency=high . * Fixes CVE-2022-23094 libxml2 (2.9.10+dfsg-6.7+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Use-after-free of ID and IDREF attributes (CVE-2022-23308) (Closes: #1006489) lighttpd (1.4.59-1+deb11u1) bullseye-security; urgency=medium . [ Glenn Strauss ] * Fix CVE-2022-22707 32-bit lighttpd mod_extforward crash. linux (5.10.106-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.104 - mac80211_hwsim: report NOACK frames in tx_status - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work - [arm*] i2c: bcm2835: Avoid clock stretching timeouts - ASoC: rt5682: do not block workqueue if card is unbound - regulator: core: fix false positive in regulator_late_cleanup() - Input: clear BTN_RIGHT/MIDDLE on buttonpads - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW - tipc: fix a bit overflow in tipc_crypto_key_rcv() - cifs: fix double free race when mount fails in cifs_get_root() - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990 - usb: gadget: don't release an existing dev->buf (CVE-2022-24958) - usb: gadget: clear related members when goto fail (CVE-2022-24958) - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I() - exfat: fix i_blocks for files truncated over 4 GiB - tracing: Add test for user space strings when filtering on string pointers - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char - ata: pata_hpt37x: fix PCI clock detection - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag - tracing: Add ustring operation to filtering string pointers - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min - [amd64] iommu/amd: Recover from event log overflow - [x86] drm/i915: s/JSP2/ICP2/ PCH - xen/netfront: destroy queues before real_num_tx_queues is zeroed - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls - xfrm: fix MTU regression - netfilter: fix use-after-free in __nf_register_net_hook() - bpf, sockmap: Do not ignore orig_len parameter - xfrm: fix the if_id check in changelink - xfrm: enforce validity of offload input flags - e1000e: Correct NVM checksum verification flow - net: fix up skbs delta_truesize in UDP GRO frag_list - netfilter: nf_queue: don't assume sk is full socket - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: handle socket prefetch - batman-adv: Request iflink once in batadv-on-batadv check - batman-adv: Request iflink once in batadv_get_real_netdevice - batman-adv: Don't expect inter-netns unique iflink indices - net: ipv6: ensure we call ipv6_mc_down() at most once - net: dcb: flush lingering app table entries for unregistered devices - net/smc: fix connection leak - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server - rcu/nocb: Fix missed nocb_timer requeue - ice: Fix race conditions between virtchnl handling and VF ndo ops - ice: fix concurrent reset and removal of VFs - sched/topology: Make sched_init_numa() use a set for the deduplicating sort - sched/topology: Fix sched_domain_topology_level alloc in sched_init_numa() - mac80211: fix forwarded mesh frames AC & queue selection - net: stmmac: fix return value of __setup handler - mac80211: treat some SAE auth steps as final - iavf: Fix missing check for running netdev - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe() - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc() - efivars: Respect "block" flag in efivar_entry_set_safe() - can: gs_usb: change active_channels's type from atomic_t to u8 - igc: igc_read_phy_reg_gpy: drop premature return - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup() functions - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs - igc: igc_write_phy_reg_gpy: drop premature return - memfd: fix F_SEAL_WRITE after shmem huge page allocated - [armhf] dts: switch timer config to common devkit8000 devicetree - [armhf] dts: Use 32KiHz oscillator on devkit8000 - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed - [arm64] soc: fsl: guts: Add a missing memory allocation failure check - [armhf] tegra: Move panels to AUX bus - net: chelsio: cxgb3: check the return value of pci_find_capability() - iavf: Refactor iavf state machine tracking - nl80211: Handle nla_memdup failures in handle_nan_filter - drm/amdgpu: fix suspend/resume hang regression - net: dcb: disable softirqs in dcbnl_flush_dev() - Input: elan_i2c - move regulator_[en|dis]able() out of elan_[en|dis]able_power() - Input: elan_i2c - fix regulator enable count imbalance after suspend/resume - HID: add mapping for KEY_DICTATE - HID: add mapping for KEY_ALL_APPLICATIONS - tracing/histogram: Fix sorting on old "cpu" value - tracing: Fix return value of __setup handlers - btrfs: fix lost prealloc extents beyond eof after full fsync - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup - btrfs: add missing run of delayed items after unlink during log replay - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6" - hamradio: fix macro redefine warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.105 - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [armhf] report Spectre v2 status through sysfs - [armel,armhf] early traps initialisation - [armel,armhf] use LOADADDR() to get load address of sections - [armel,armhf] Spectre-BHB workaround - [armel,armhf] include unprivileged BPF status in Spectre V2 reporting - [arm64] cputype: Add CPU implementor & types for the Apple M1 cores - [arm64] Add Neoverse-N2, Cortex-A710 CPU part definition - [arm64] Add Cortex-X2 CPU part definition - [arm64] Add Cortex-A510 CPU part definition - [arm64] Add HWCAP for self-synchronising virtual counter - [arm64] add ID_AA64ISAR2_EL1 sys register - [arm64] cpufeature: add HWCAP for FEAT_AFP - [arm64] cpufeature: add HWCAP for FEAT_RPRES - [arm64] entry.S: Add ventry overflow sanity checks - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit - [arm64] entry: Make the trampoline cleanup optional - [arm64] entry: Free up another register on kpti's tramp_exit path - [arm64] entry: Move the trampoline data page before the text page - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary - [arm64] entry: Don't assume tramp_vectors is the start of the vectors - [arm64] entry: Move trampoline macros out of ifdef'd section - [arm64] entry: Make the kpti trampoline's kpti sequence optional - [arm64] entry: Allow the trampoline text to occupy multiple pages - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations - [arm64] entry: Add vectors that have the bhb mitigation sequences - [arm64] entry: Add macro for reading symbol addresses from the trampoline - [arm64] Add percpu vectors for EL1 - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A - [arm64] Mitigate spectre style branch history side channels - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - [arm64] Use the clearbhb instruction in mitigations - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [armel,armhf] fix co-processor register typo - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld - [armhf] fix build warning in proc-v7-bugs.c - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case (CVE-2022-23040, XSA-396) - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036, CVE-2022-23038, XSA-396) - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23036, XSA-396) - xen/netfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23037, XSA-396) - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23038, XSA-396) - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039, XSA-396) - xen: remove gnttab_query_foreign_access() - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/gnttab: fix gnttab_end_foreign_access() without page specified (CVE-2022-23041, XSA-396) - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() (CVE-2022-23042, XSA-396) - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.106 - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias - tipc: fix kernel panic when enabling bearer - mISDN: Remove obsolete PIPELINE_DEBUG debugging information - mISDN: Fix memory leak in dsp_pipeline_build() - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw() - net: qlogic: check the return value of dma_alloc_coherent() in qed_vf_hw_prepare() - esp: Fix BEET mode inter address family tunneling on GSO - qed: return status of qed_iov_get_link - i40e: stop disabling VFs due to PF error responses - ice: stop disabling VFs due to PF error responses - ice: Align macro names to the specification - ice: Remove unnecessary checker loop - ice: Rename a couple of variables - ice: Fix curr_link_speed advertised speed - tipc: fix incorrect order of state message data sanity check - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable - ax25: Fix NULL pointer dereference in ax25_kill_by_device - net/mlx5: Fix size field in bufferx_reg struct - net/mlx5: Fix a race on command flush flow - net/mlx5e: Lag, Only handle events from highest priority multipath entry - NFC: port100: fix use-after-free in port100_send_complete - net: phy: DP83822: clear MISR2 register to disable interrupts - sctp: fix kernel-infoleak for SCTP sockets - [arm64] net: bcmgenet: Don't claim WOL when its not available - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort - net-sysfs: add check for netdevice being present to speed_show - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read - gpio: Return EPROBE_DEFER if gc->to_irq is NULL - Revert "xen-netback: remove 'hotplug-status' once it has served its purpose" - Revert "xen-netback: Check for hotplug-status existence before watching" - ipv6: prevent a possible race condition with lifetimes - tracing: Ensure trace buffer is at least 4096 bytes large - fuse: fix pipe buffer lifetime for direct_io - staging: rtl8723bs: Fix access-point mode deadlock - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive - [arm64] mmc: meson: Fix usage of meson_mmc_post_req() - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0 - virtio: unexport virtio_finalize_features - virtio: acknowledge all features before access - watch_queue, pipe: Free watchqueue state after clearing pipe ring (CVE-2022-0995) - watch_queue: Fix to release page in ->release() (CVE-2022-0995) - watch_queue: Fix to always request a pow-of-2 pipe ring size (CVE-2022-0995) - watch_queue: Fix the alloc bitmap size to reflect notes allocated (CVE-2022-0995) - watch_queue: Free the alloc bitmap when the watch_queue is torn down (CVE-2022-0995) - watch_queue: Fix lack of barrier/sync/lock between post and read (CVE-2022-0995) - watch_queue: Make comment about setting ->defunct more accurate (CVE-2022-0995) - [x86] boot: Fix memremap of setup_indirect structures - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data() - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL - ext4: add check to prevent attempting to resize an fs with sparse_super2 - [armel,armhf] fix Thumb2 regression with Spectre BHB - watch_queue: Fix filter limit check ((CVE-2022-0995) . [ Salvatore Bonaccorso ] * Bump ABI to 13 * [rt] Update to 5.10.104-rt63 * [rt] Update to 5.10.106-rt64 * sctp: fix the processing for INIT chunk (CVE-2021-3772) * tcp: make tcp_read_sock() more robust * io_uring: return back safer resurrect * [arm64] kvm: Fix copy-and-paste error in bhb templates for v5.10 stable linux (5.10.103-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.93 - kbuild: Add $(KBUILD_HOSTLDFLAGS) to 'has_libelf' test - devtmpfs regression fix: reconfigure on each mount - orangefs: Fix the size of a memory allocation in orangefs_bufmap_alloc() - perf: Protect perf_guest_cbs with RCU - [x86] KVM: Register Processor Trace interrupt hook iff PT enabled in guest - [s390x] KVM: Clarify SIGP orders versus STOP/RESTART - 9p: only copy valid iattrs in 9P2000.L setattr implementation - [x86] video: vga16fb: Only probe for EGA and VGA 16 color graphic cards - media: uvcvideo: fix division by zero at stream start - rtlwifi: rtl8192cu: Fix WARNING when calling local_irq_restore() with interrupts enabled - firmware: qemu_fw_cfg: fix sysfs information leak - firmware: qemu_fw_cfg: fix NULL-pointer deref on duplicate entries - firmware: qemu_fw_cfg: fix kobject leak in probe error path - [x86] KVM: remove PMU FIXED_CTR3 from msrs_to_save_all - ALSA: hda/realtek: Add speaker fixup for some Yoga 15ITL5 devices - ALSA: hda/realtek - Fix silent output on Gigabyte X570 Aorus Master after reboot from Windows - ALSA: hda: ALC287: Add Lenovo IdeaPad Slim 9i 14ITL5 speaker quirk - ALSA: hda/realtek: Add quirk for Legion Y9000X 2020 - ALSA: hda/realtek: Re-order quirk entries for Lenovo - [powerpc*] pseries: Get entry and uaccess flush required bits from H_GET_CPU_CHARACTERISTICS https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.94 - [x86] KVM: VMX: switch blocked_vcpu_on_cpu_lock to raw spinlock - HID: uhid: Fix worker destroying device without any protection - HID: wacom: Reset expected and received contact counts at the same time - HID: wacom: Ignore the confidence flag when a touch is removed - HID: wacom: Avoid using stale array indicies to read contact count - f2fs: fix to do sanity check in is_alive() - nfc: llcp: fix NULL error pointer dereference on sendmsg() after failed bind() - [armhf] mtd: rawnand: gpmi: Add ERR007117 protection for nfc_apply_timings - [armhf] mtd: rawnand: gpmi: Remove explicit default gpmi clock setting for i.MX6 - mtd: Fixed breaking list in __mtd_del_partition. - [x86] gpu: Reserve stolen memory for first integrated Intel GPU - rtc: cmos: take rtc_lock while reading from CMOS - media: v4l2-ioctl.c: readbuffers depends on V4L2_CAP_READWRITE - media: flexcop-usb: fix control-message timeouts - media: mceusb: fix control-message timeouts - media: em28xx: fix control-message timeouts - media: cpia2: fix control-message timeouts - media: s2255: fix control-message timeouts - media: dib0700: fix undefined behavior in tuner shutdown - media: redrat3: fix control-message timeouts - media: pvrusb2: fix control-message timeouts - media: stk1160: fix control-message timeouts - [armhf] media: cec-pin: fix interrupt en/disable handling - [x86] can: softing_cs: softingcs_probe(): fix memleak on registration failure - iio: adc: ti-adc081c: Partial revert of removal of ACPI IDs - [arm64,armhf] gpu: host1x: Add back arm_iommu_detach_device() - dma_fence_array: Fix PENDING_ERROR leak in dma_fence_array_signaled() - PCI: Add function 1 DMA alias quirk for Marvell 88SE9125 SATA controller - mm_zone: add function to check if managed dma zone exists - [arm64] dma/pool: create dma atomic pool only if dma zone has managed pages - mm/page_alloc.c: do not warn allocation failure on zone DMA if no managed pages - shmem: fix a race between shmem_unused_huge_shrink and shmem_evict_inode - drm/ttm: Put BO in its memory manager's lru list - Bluetooth: L2CAP: Fix not initializing sk_peer_pid - [armhf] drm/bridge: display-connector: fix an uninitialized pointer in probe() - drm: fix null-ptr-deref in drm_dev_init_release() - [arm64,armhf] drm/rockchip: dsi: Fix unbalanced clock on probe error - [arm64,armhf] drm/rockchip: dsi: Hold pm-runtime across bind/unbind - [arm64,armhf] drm/rockchip: dsi: Disable PLL clock on bind error - [arm64,armhf] drm/rockchip: dsi: Reconfigure hardware on resume() - Bluetooth: cmtp: fix possible panic when cmtp_init_sockets() fails - [arm*] clk: bcm-2835: Pick the closest clock rate - [arm*] clk: bcm-2835: Remove rounding up the dividers - [arm*] drm/vc4: hdmi: Set a default HSM rate - [arm64] wcn36xx: ensure pairing of init_scan/finish_scan and start_scan/end_scan - [arm64] wcn36xx: Indicate beacon not connection loss on MISSED_BEACON_IND - [arm64] wcn36xx: Fix DMA channel enable/disable cycle - [arm64] wcn36xx: Release DMA channel descriptor allocations - [arm64] wcn36xx: Put DXE block into reset before freeing memory - [arm64] wcn36xx: populate band before determining rate on RX - [arm64] wcn36xx: fix RX BD rate mapping for 5GHz legacy rates - ath11k: Send PPDU_STATS_CFG with proper pdev mask to firmware - media: videobuf2: Fix the size printk format - [armhf] media: aspeed: fix mode-detect always time out at 2nd run - media: em28xx: fix memory leak in em28xx_init_dev - [armhf] media: aspeed: Update signal status immediately to ensure sane hw state - fs: dlm: use sk->sk_socket instead of con->sock - fs: dlm: don't call kernel_getpeername() in error_report() - Bluetooth: stop proccessing malicious adv data - ath11k: Fix ETSI regd with weather radar overlap - ath11k: clear the keys properly via DISABLE_KEY - ath11k: reset RSN/WPA present state for open BSS - [arm64] tee: fix put order in teedev_close_context() - [x86] drm/vboxvideo: fix a NULL vs IS_ERR() check - media: dmxdev: fix UAF when dvb_register_device() fails - [arm64] crypto: qce - fix uaf on qce_ahash_register_one - [arm64] crypto: qce - fix uaf on qce_skcipher_register_one - [armhf] dts: stm32: fix dtbs_check warning on ili9341 dts binding on stm32f429 disco - [x86] crypto: qat - fix spelling mistake: "messge" -> "message" - [x86] crypto: qat - remove unnecessary collision prevention step in PFVF - [x86] crypto: qat - make pfvf send message direction agnostic - [x86] crypto: qat - fix undetected PFVF timeout in ACK loop - ath11k: Use host CE parameters for CE interrupts configuration - [armhf] media: imx-pxp: Initialize the spinlock prior to using it - [armhf] media: coda: fix CODA960 JPEG encoder buffer overflow - [arm64] media: venus: pm_helpers: Control core power domain manually - [arm64] media: venus: core, venc, vdec: Fix probe dependency error - [arm64] media: venus: core: Fix a potential NULL pointer dereference in an error handling path - [arm64] media: venus: core: Fix a resource leak in the error handling path of 'venus_probe()' - [armhf] thermal/drivers/imx: Implement runtime PM support - netfilter: bridge: add support for pppoe filtering - cgroup: Trace event cgroup id fields should be u64 - ACPI: EC: Rework flushing of EC work while suspended to idle - drm/amdgpu: Fix a NULL pointer dereference in amdgpu_connector_lcd_native_mode() - drm/radeon/radeon_kms: Fix a NULL pointer dereference in radeon_driver_open_kms() - [arm*] serial: amba-pl011: do not request memory region twice - floppy: Fix hang in watchdog when disk is ejected - [x86] staging: rtl8192e: return error code from rtllib_softmac_init() - [x86] staging: rtl8192e: rtllib_module: fix error handle case in alloc_rtllib() - sched/fair: Fix detection of per-CPU kthreads waking a task - sched/fair: Fix per-CPU kthread and wakee stacking for asym CPU capacity - bpf: Adjust BTF log size limit. - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) - bpf: Remove config check to enable bpf support for branch records - [arm64] lib: Annotate {clear, copy}_page() as position-independent - [arm64] clear_page() shouldn't use DC ZVA when DCZID_EL0.DZP == 1 - media: dib8000: Fix a memleak in dib8000_init() - media: saa7146: mxb: Fix a NULL pointer dereference in mxb_attach() - media: si2157: Fix "warm" tuner state detection - wireless: iwlwifi: Fix a double free in iwl_txq_dyn_alloc_dma - sched/rt: Try to restart rt period timer when rt runtime exceeded - rcu/exp: Mark current CPU as exp-QS in IPI loop second pass - mwifiex: Fix possible ABBA deadlock - xfrm: fix a small bug in xfrm_sa_len() - [x86] uaccess: Move variable into switch case statement - [armhf] crypto: stm32 - Fix last sparse warning in stm32_cryp_check_ctr_counter - [armhf] crypto: stm32/cryp - fix CTR counter carry - [armhf] crypto: stm32/cryp - fix xts and race condition in crypto_engine requests - [armhf] crypto: stm32/cryp - check early input data - [armhf] crypto: stm32/cryp - fix double pm exit - [armhf] crypto: stm32/cryp - fix lrw chaining mode - [armhf] crypto: stm32/cryp - fix bugs and crash in tests - [armhf] crypto: stm32 - Revert broken pm_runtime_resume_and_get changes - ath11k: Fix deleting uninitialized kernel timer during fragment cache flush - media: dw2102: Fix use after free - media: msi001: fix possible null-ptr-deref in msi001_probe() - [armhf] media: coda/imx-vdoa: Handle dma_set_coherent_mask error codes - ath11k: Fix a NULL pointer dereference in ath11k_mac_op_hw_scan() - [arm64] dts: qcom: c630: Fix soundcard setup - [arm64] drm/msm/dpu: fix safe status debugfs file - [arm64,armhf] drm/tegra: vic: Fix DMA API misuse - xfrm: interface with if_id 0 should return error - xfrm: state and policy should fail if XFRMA_IF_ID 0 - [armel,armhf] 9159/1: decompressor: Avoid UNPREDICTABLE NOP encoding - usb: ftdi-elan: fix memory leak on device disconnect - iwlwifi: mvm: fix 32-bit build in FTM - iwlwifi: mvm: test roc running status bits before removing the sta - [armhf] mmc: meson-mx-sdio: add IRQ check - selinux: fix potential memleak in selinux_add_opt() - Bluetooth: L2CAP: Fix using wrong mode - bpftool: Enable line buffering for stdout - software node: fix wrong node passed to find nargs_prop - Bluetooth: hci_qca: Stop IBS timer during BT OFF - [x86] mce/inject: Avoid out-of-bounds write when setting flags - ACPI: scan: Create platform device for BCM4752 and LNV4752 ACPI nodes - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in __nonstatic_find_io_region() - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in nonstatic_find_mem_region() - netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check() - bpf: Don't promote bogus looking registers after null check. - bpf: Fix SO_RCVBUF/SO_SNDBUF handling in _bpf_setsockopt(). - netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone - ppp: ensure minimum packet size in ppp_write() - Bluetooth: hci_bcm: Check for error irq - Bluetooth: hci_qca: Fix NULL vs IS_ERR_OR_NULL check in qca_serdev_probe - [arm64] usb: dwc3: qcom: Fix NULL vs IS_ERR checking in dwc3_qcom_probe - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_get_str_desc - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_huion_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_frame_init_v1_buttonpad - debugfs: lockdown: Allow reading debugfs files that are not world readable - net/mlx5e: Fix page DMA map/unmap attributes - net/mlx5e: Don't block routes with nexthop objects in SW - Revert "net/mlx5e: Block offload of outer header csum for UDP tunnels" - net/mlx5: Set command entry semaphore up once got index free - lib/mpi: Add the return value check of kcalloc() - Bluetooth: L2CAP: uninitialized variables in l2cap_sock_setsockopt() - [arm64,armhf] spi: spi-meson-spifc: Add missing pm_runtime_disable() in meson_spifc_probe - ax25: uninitialized variable in ax25_setsockopt() - netrom: fix api breakage in nr_setsockopt() - regmap: Call regmap_debugfs_exit() prior to _init() - tpm: add request_locality before write TPM_INT_ENABLE - tpm_tis: Fix an error handling path in 'tpm_tis_core_init()' - can: softing: softing_startstop(): fix set but not used variable warning - pcmcia: fix setting of kthread task states - iwlwifi: mvm: Use div_s64 instead of do_div in iwl_mvm_ftm_rtt_smoothing() - net: mcs7830: handle usb read errors properly - ext4: avoid trim error on fs with small groups - ALSA: jack: Add missing rwsem around snd_ctl_remove() calls - ALSA: PCM: Add missing rwsem around snd_ctl_remove() calls - ALSA: hda: Add missing rwsem around snd_ctl_remove() calls - RDMA/bnxt_re: Scan the whole bitmap when checking if "disabling RCFW with pending cmd-bit" - [arm64] RDMA/hns: Validate the pkey index - scsi: pm80xx: Update WARN_ON check in pm8001_mpi_build_cmd() - [arm64] clk: imx8mn: Fix imx8mn_clko1_sels - [powerpc*] prom_init: Fix improper check of prom_getprop() - dt-bindings: thermal: Fix definition of cooling-maps contribution property - [powerpc*] 64s: Convert some cpu_setup() and cpu_restore() functions to C - [powerpc*] perf: MMCR0 control for PMU registers under PMCC=00 - [powerpc*] perf: move perf irq/nmi handling details into traps.c - [powerpc*] irq: Add helper to set regs->softe - [powerpc*] perf: Fix PMU callbacks to clear pending PMI before resetting an overflown PMC - clocksource: Reduce clocksource-skew threshold - clocksource: Avoid accidental unstable marking of clocksources - ALSA: oss: fix compile error when OSS_DEBUG is enabled - ALSA: usb-audio: Drop superfluous '0' in Presonus Studio 1810c's ID - [arm*] binder: fix handling of error during copy - [arm64,armhf] iommu/io-pgtable-arm: Fix table descriptor paddr formatting - scsi: ufs: Fix race conditions related to driver data - RDMA/qedr: Fix reporting max_{send/recv}_wr attrs - PCI/MSI: Fix pci_irq_vector()/pci_irq_get_affinity() - RDMA/core: Let ib_find_gid() continue search even after empty entry - RDMA/cma: Let cma_resolve_ib_dev() continue search even after empty entry - [x86] ASoC: rt5663: Handle device_property_read_u32_array error codes - [amd64] iommu/amd: Remove iommu_init_ga() - [amd64] iommu/amd: Restore GA log/tail pointer on host resume - [x86] ASoC: Intel: catpt: Test dmaengine_submit() result before moving on - iommu/iova: Fix race between FQ timeout and teardown - scsi: block: pm: Always set request queue runtime active in blk_post_runtime_resume() - [powerpc*] xive: Add missing null check after calling kmalloc - RDMA/cxgb4: Set queue pair state when being queried - of: base: Fix phandle argument length mismatch error message - [armhf] dts: omap3-n900: Fix lp5523 for multi color - Bluetooth: Fix debugfs entry leak in hci_register_dev() - fs: dlm: filter user dlm messages for kernel locks - [arm64,armhf] drm/lima: fix warning when CONFIG_DEBUG_SG=y & CONFIG_DMA_API_DEBUG=y - ar5523: Fix null-ptr-deref with unexpected WDCMSG_TARGET_START reply - [arm64,armhf] drm/bridge: dw-hdmi: handle ELD when DRM_BRIDGE_ATTACH_NO_CONNECTOR - drm/nouveau/pmu/gm200-: avoid touching PMU outside of DEVINIT/PREOS/ACR - batman-adv: allow netlink usage in unprivileged containers - ath11k: Fix crash caused by uninitialized TX ring - usb: gadget: f_fs: Use stream_open() for endpoint files - drm: panel-orientation-quirks: Add quirk for the Lenovo Yoga Book X91F/L - HID: apple: Do not reset quirks when the Fn key is not found - media: b2c2: Add missing check in flexcop_pci_isr: - drm/amdgpu/display: set vblank_disable_immediate for DC - [arm64,armhf] tty: serial: imx: disable UCR4_OREN in .stop_rx() instead of .shutdown() - gpiolib: acpi: Do not set the IRQ type if the IRQ is already in use - [armhf] HSI: core: Fix return freed object in hsi_new_client - crypto: jitter - consider 32 LSB for APT - rsi: Fix use-after-free in rsi_rx_done_handler() - rsi: Fix out-of-bounds read in rsi_read_pkt() - ath11k: Avoid NULL ptr access during mgmt tx cleanup - [arm64] media: venus: avoid calling core_clk_setrate() concurrently during concurrent video sessions - [x86] ACPI / x86: Drop PWM2 device on Lenovo Yoga Book from always present table - ACPI: Change acpi_device_always_present() into acpi_device_override_status() - [x86] ACPI / x86: Allow specifying acpi_device_override_status() quirks by path - [x86] ACPI / x86: Add not-present quirk for the PCI0.SDHB.BRC1 device on the GPD win - floppy: Add max size check for user space request - [x86] mm: Flush global TLB when switching to trampoline page-table - media: saa7146: hexium_orion: Fix a NULL pointer dereference in hexium_attach() - media: m920x: don't use stack on USB reads - [x86] thunderbolt: Runtime PM activate both ends of the device link - iwlwifi: mvm: synchronize with FW after multicast commands - iwlwifi: mvm: avoid clearing a just saved session protection id - ath11k: avoid deadlock by change ieee80211_queue_work for regd_update_work - ath10k: Fix tx hanging - net-sysfs: update the queue counts in the unregistration path - net: phy: prefer 1000baseT over 1000baseKX - [armhf] gpio: aspeed: Convert aspeed_gpio.lock to raw_spinlock - ath11k: Avoid false DEADLOCK warning reported by lockdep - [x86] mce: Allow instrumentation during task work queueing - [x86] mce: Mark mce_panic() noinstr - [x86] mce: Mark mce_end() noinstr - [x86] mce: Mark mce_read_aux() noinstr - net: bonding: debug: avoid printing debug logs when bond is not notifying peers - bpf: Do not WARN in bpf_warn_invalid_xdp_action() - HID: quirks: Allow inverting the absolute X/Y values - media: igorplugusb: receiver overflow should be reported - media: saa7146: hexium_gemini: Fix a NULL pointer dereference in hexium_attach() - mmc: core: Fixup storing of OCR for MMC_QUIRK_NONSTD_SDIO - audit: ensure userspace is penalized the same as the kernel when under pressure - [arm64] dts: ls1028a-qds: move rtc node to the correct i2c bus - PM: runtime: Add safety net to supplier device release - cpufreq: Fix initialization of min and max frequency QoS requests - usb: hub: Add delay for SuperSpeed hub resume to let links transit to U0 - ath9k: Fix out-of-bound memcpy in ath9k_hif_usb_rx_stream - rtw88: 8822c: update rx settings to prevent potential hw deadlock - iwlwifi: fix leaks/bad data after failed firmware load - iwlwifi: remove module loading failure message - iwlwifi: mvm: Fix calculation of frame length - iwlwifi: pcie: make sure prph_info is set when treating wakeup IRQ - ath11k: Fix napi related hang - Bluetooth: vhci: Set HCI_QUIRK_VALID_LE_STATES - xfrm: rate limit SA mapping change message to user space - [armhf] drm/etnaviv: consider completed fence seqno in hang check - jffs2: GC deadlock reading a page that is used in jffs2_write_begin() - ACPICA: actypes.h: Expand the ACPI_ACCESS_ definitions - ACPICA: Utilities: Avoid deleting the same object twice in a row - ACPICA: Executer: Fix the REFCLASS_REFOF case in acpi_ex_opcode_1A_0T_1R() - ACPICA: Fix wrong interpretation of PCC address - ACPICA: Hardware: Do not flush CPU cache when entering S4 and S5 - drm/amdgpu: fixup bad vram size on gmc v8 - ACPI: battery: Add the ThinkPad "Not Charging" quirk - btrfs: remove BUG_ON() in find_parent_nodes() - btrfs: remove BUG_ON(!eie) in find_parent_nodes - net: mdio: Demote probed message to debug print - mac80211: allow non-standard VHT MCS-10/11 - dm btree: add a defensive bounds check to insert_at() - dm space map common: add bounds check to sm_ll_lookup_bitmap() - net: phy: marvell: configure RGMII delays for 88E1118 - [arm64] regulator: qcom_smd: Align probe function with rpmh-regulator - [arm64,armhf] serial: pl010: Drop CR register reset on set_termios - serial: core: Keep mctrl register state and cached copy in sync - random: do not throw away excess input to crng_fast_load - [powerpc*] powernv: add missing of_node_put - [powerpc*] btext: add missing of_node_put - [powerpc*] watchdog: Fix missed watchdog reset due to memory ordering race - [x86] i2c: i801: Don't silently correct invalid transfer size - [powerpc*] smp: Move setup_profiling_timer() under CONFIG_PROFILING - [powerpc*] i2c: mpc: Correct I2C reset procedure - [arm64] clk: meson: gxbb: Fix the SDM_EN bit for MPLL0 on GXBB - [powerpc*] KVM: PPC: Book3S: Suppress warnings when allocating too big memory slots - [powerpc*] KVM: PPC: Book3S: Suppress failed alloc warning in H_COPY_TOFROM_GUEST - w1: Misuse of get_user()/put_user() reported by sparse - nvmem: core: set size for sysfs bin file - dm: fix alloc_dax error handling in alloc_dev - scsi: lpfc: Trigger SLI4 firmware dump before doing driver cleanup - ALSA: seq: Set upper limit of processed events - [powerpc*] handle kdump appropriately with crash_kexec_post_notifiers option - [powerpc*] fadump: Fix inaccurate CPU state info in vmcore generated with panic - udf: Fix error handling in udf_new_inode() - [mips64el,mipsel] OCTEON: add put_device() after of_find_device_by_node() - [arm64,armhf] irqchip/gic-v4: Disable redistributors' view of the VPE table at boot time - [x86] i2c: designware-pci: Fix to change data types of hcnt and lcnt parameters - scsi: sr: Don't use GFP_DMA - [arm64] rpmsg: core: Clean up resources on announce_create failure. - [armhf] crypto: stm32/crc32 - Fix kernel BUG triggered in probe() - [arm64] crypto: caam - replace this_cpu_ptr with raw_cpu_ptr - ubifs: Error path in ubifs_remount_rw() seems to wrongly free write buffers - tpm: fix NPE on probe for missing device - xen/gntdev: fix unmap notification order - fuse: Pass correct lend value to filemap_write_and_wait_range() - serial: Fix incorrect rs485 polarity on uart open - cputime, cpuacct: Include guest time in user time in cpuacct.stat - tracing/kprobes: 'nmissed' not showed correctly for kretprobe - iwlwifi: mvm: Increase the scan timeout guard to 30 seconds - [s390x] mm: fix 2KB pgtable release race - device property: Fix fwnode_graph_devcon_match() fwnode leak - [armhf] drm/etnaviv: limit submit sizes - drm/nouveau/kms/nv04: use vzalloc for nv04_display - [arm64,armhf] drm/bridge: analogix_dp: Make PSR-exit block less - [powerpc*] 64s/radix: Fix huge vmap false positive - [arm64] PCI: xgene: Fix IB window setup - PCI: pciehp: Use down_read/write_nested(reset_lock) to fix lockdep errors - [arm*] PCI: pci-bridge-emul: Make expansion ROM Base Address register read-only - [arm*] PCI: pci-bridge-emul: Properly mark reserved PCIe bits in PCI config space - [arm*] PCI: pci-bridge-emul: Fix definitions of reserved bits - [arm*] PCI: pci-bridge-emul: Correctly set PCIe capabilities - [arm*] PCI: pci-bridge-emul: Set PCI_STATUS_CAP_LIST for PCIe device - xfrm: fix policy lookup for ipv6 gre packets - btrfs: fix deadlock between quota enable and other quota operations - btrfs: check the root node for uptodate before returning it - btrfs: respect the max size in the header when activating swap file - ext4: make sure to reset inode lockdep class when quota enabling fails - ext4: make sure quota gets properly shutdown on error - ext4: fix a possible ABBA deadlock due to busy PA - ext4: initialize err_blk before calling __ext4_get_inode_loc - ext4: fix fast commit may miss tracking range for FALLOC_FL_ZERO_RANGE - ext4: set csum seed in tmp inode while migrating to extents - ext4: Fix BUG_ON in ext4_bread when write quota data - ext4: use ext4_ext_remove_space() for fast commit replay delete range - ext4: fast commit may miss tracking unwritten range during ftruncate - ext4: destroy ext4_fc_dentry_cachep kmemcache on module removal - ext4: fix null-ptr-deref in '__ext4_journal_ensure_credits' - ext4: don't use the orphan list when migrating an inode - drm/radeon: fix error handling in radeon_driver_open_kms - of: base: Improve argument length mismatch error - firmware: Update Kconfig help text for Google firmware - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - Documentation: dmaengine: Correctly describe dmatest with channel unset - Documentation: ACPI: Fix data node reference documentation - Documentation: refer to config RANDOMIZE_BASE for kernel address-space randomization - Documentation: fix firewire.rst ABI file path error - Bluetooth: hci_sync: Fix not setting adv set duration - scsi: core: Show SCMD_LAST in text form - [arm64] RDMA/hns: Modify the mapping attribute of doorbell to device - RDMA/rxe: Fix a typo in opcode name - [armhf] dmaengine: stm32-mdma: fix STM32_MDMA_CTBR_TSEL_MASK - Revert "net/mlx5: Add retry mechanism to the command entry index allocation" - block: Fix fsync always failed if once failed - bpftool: Remove inclusion of utilities.mak from Makefiles - xdp: check prog type before updating BPF link - ipv4: update fib_info_cnt under spinlock protection - ipv4: avoid quadratic behavior in netns dismantle - [arm64] net/fsl: xgmac_mdio: Add workaround for erratum A-009885 - [arm64] net/fsl: xgmac_mdio: Fix incorrect iounmap when removing module - f2fs: compress: fix potential deadlock of compress file - f2fs: fix to reserve space for IO align feature - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress - clk: Emit a stern warning with writable debugfs enabled - net/smc: Fix hung_task when removing SMC-R devices - virtio_ring: mark ring unused on error - taskstats: Cleanup the use of task->exit_code - inet: frags: annotate races around fqdir->dead and fqdir->high_thresh - netns: add schedule point in ops_exit_list() - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - gre: Don't accidentally set RTO_ONLINK in gre_fill_metadata_dst() - libcxgb: Don't accidentally set RTO_ONLINK in cxgb_find_route() - perf script: Fix hex dump character output - perf probe: Fix ppc64 'perf probe add events failed' case - devlink: Remove misleading internal_flags from health reporter dump - net: bonding: fix bond_xmit_broadcast return value error bug - net_sched: restore "mpu xxx" handling - [arm64] bcmgenet: add WOL IRQ check - net: sfp: fix high power modules without diagnostic monitoring - [arm64] net: mscc: ocelot: fix using match before it is set - dt-bindings: display: meson-dw-hdmi: add missing sound-name-prefix property - dt-bindings: display: meson-vpu: Add missing amlogic,canvas property - dt-bindings: watchdog: Require samsung,syscon-phandle for Exynos7 - mm/hmm.c: allow VM_MIXEDMAP to work with hmm_range_fault - mtd: nand: bbt: Fix corner case in bad block table handling - ath10k: Fix the MTU size on QCA9377 SDIO https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.95 - bnx2x: Utilize firmware 7.13.21.0 - bnx2x: Invalidate fastpath HSI version for VFs - rcu: Tighten rcu_advance_cbs_nowake() checks - [x86] KVM: x86/mmu: Fix write-protection of PTs mapped by the TDP MMU - select: Fix indefinitely sleeping task in poll_schedule_timeout() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.96 - Bluetooth: refactor malicious adv data check - [arm64] media: venus: core: Drop second v4l2 device unregister - net: sfp: ignore disabled SFP node - net: stmmac: skip only stmmac_ptp_register when resume from suspend - [s390x] module: fix loading modules with a lot of relocations - [s390x] hypfs: include z/VM guests with access control group set - bpf: Guard against accessing NULL pt_regs in bpf_get_task_stack() - [s390x] scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices - udf: Restore i_lenAlloc when inode expansion fails (CVE-2022-0617) - udf: Fix NULL ptr deref when converting from inline format (CVE-2022-0617) - efi: runtime: avoid EFIv2 runtime services on Apple x86 machines - tracing: Don't inc err_log entry count if entry allocation fails - ceph: properly put ceph_string reference after async create attempt - ceph: set pool_ns in new inode layout for async creates - fsnotify: fix fsnotify hooks in pseudo filesystems - Revert "KVM: SVM: avoid infinite loop on NPF from bad address" - [x86] perf/x86/intel/uncore: Fix CAS_COUNT_WRITE issue for ICX - [armhf] drm/etnaviv: relax submit size limits - [x86] KVM: x86: Update vCPU's runtime CPUID on write to MSR_IA32_XSS - [arm64] errata: Fix exec handling in erratum 1418040 workaround - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - serial: 8250: of: Fix mapped region size when using reg-offset property - [armhf] serial: stm32: fix software flow control transfer - tty: n_gsm: fix SW flow control encoding/handling - tty: Add support for Brainboxes UC cards. - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge - [arm64,armhf] usb: xhci-plat: fix crash when suspend if remote wake enable - [arm64,armhf] usb: common: ulpi: Fix crash in ulpi_match() - usb: gadget: f_sourcesink: Fix isoc transfer for USB_SPEED_SUPER_PLUS - USB: core: Fix hang in usb_kill_urb by adding memory barriers - usb: typec: tcpm: Do not disconnect while receiving VBUS off - jbd2: export jbd2_journal_[grab|put]_journal_head - ocfs2: fix a deadlock when commit trans - sched/membarrier: Fix membarrier-rseq fence command missing from query bitmask - [x86] MCE/AMD: Allow thresholding interface updates after init - i40e: Increase delay to 1 s after global EMP reset - i40e: Fix issue when maximum queues is exceeded - i40e: Fix queues reservation for XDP - i40e: Fix for failed to init adminq while VF reset - i40e: fix unsigned stat widths - scsi: bnx2fc: Flush destroy_work queue before calling bnx2fc_interface_put() - ipv6_tunnel: Rate limit warning messages - net: fix information leakage in /proc/net/ptype - hwmon: (lm90) Mark alert as broken for MAX6646/6647/6649 - hwmon: (lm90) Mark alert as broken for MAX6680 - ping: fix the sk_bound_dev_if match in ping_lookup - ipv4: avoid using shared IP generator for connected sockets - hwmon: (lm90) Reduce maximum conversion rate for G781 - NFSv4: nfs_atomic_open() can race when looking up a non-regular file - net-procfs: show net devices bound packet types - [arm64] drm/msm: Fix wrong size calculation - [arm64] drm/msm/dsi: Fix missing put_device() call in dsi_get_phy - [arm64] drm/msm/dsi: invalid parameter check in msm_dsi_phy_enable - ipv6: annotate accesses to fn->fn_sernum - NFS: Ensure the server has an up to date ctime before hardlinking - NFS: Ensure the server has an up to date ctime before renaming - [powerpc*] powerpc64/bpf: Limit 'ldbrx' to processors compliant with ISA v2.06 - netfilter: conntrack: don't increment invalid counter on NF_REPEAT - kernel: delete repeated words in comments - perf: Fix perf_event_read_local() time - sched/pelt: Relax the sync of util_sum with util_avg - net: phy: broadcom: hook up soft_reset for BCM54616S - phylib: fix potential use-after-free - rxrpc: Adjust retransmission backoff - [arm64] efi/libstub: arm64: Fix image check alignment at entry - hwmon: (lm90) Mark alert as broken for MAX6654 - [powerpc*] perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending - net: ipv4: Move ip_options_fragment() out of loop - net: ipv4: Fix the warning for dereference - ipv4: fix ip option filtering for locally generated fragments - [x86] video: hyperv_fb: Fix validation of screen resolution - [arm64] drm/msm/hdmi: Fix missing put_device() call in msm_hdmi_get_phy - [arm64] drm/msm/dpu: invalid parameter check in dpu_setup_dspp_pcc - [armhf] net: cpsw: Properly initialise struct page_pool_params - [arm64] net: hns3: handle empty unknown interrupt for VF - Revert "ipv6: Honor all IPv6 PIO Valid Lifetime values" - net: bridge: vlan: fix single net device option dumping - ipv4: raw: lock the socket in raw_bind() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: remove sparse error in ip_neigh_gw4() - net: bridge: vlan: fix memory leak in __allowed_ingress - dt-bindings: can: tcan4x5x: fix mram-cfg RX FIFO config - fsnotify: invalidate dcache before IN_DELETE event - block: Fix wrong offset in bio_truncate() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.97 - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - [x86] KVM: x86: Forcibly leave nested virt when SMM state is toggled - psi: Fix uaf issue when psi trigger is destroyed while being polled - [x86] mce: Add Xeon Sapphire Rapids to list of CPUs that support PPIN - [x86] cpu: Add Xeon Icelake-D to list of CPUs that support PPIN - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - cgroup-v1: Require capabilities to set release_agent (CVE-2022-0492) - net/mlx5e: Fix handling of wrong devices during bond netevent - net/mlx5: Use del_timer_sync in fw reset flow of halting poll - net/mlx5: E-Switch, Fix uninitialized variable modact - ipheth: fix EOVERFLOW in ipheth_rcvbulk_callback - [amd64,arm64] net: amd-xgbe: ensure to reset the tx_timer_active flag - [amd64,arm64] net: amd-xgbe: Fix skb data length underflow - fanotify: Fix stale file descriptor in copy_event_to_user() - net: sched: fix use-after-free in tc_new_tfilter() - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - cpuset: Fix the bug that subpart_cpus updated wrongly in update_cpumask() - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - tcp: add missing tcp_skb_can_collapse() test in tcp_shift_skb_data() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.98 - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" again https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.99 - selinux: fix double free of cond_list on error paths - audit: improve audit queue handling when "audit=1" on cmdline - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() - ALSA: usb-audio: Correct quirk for VF0770 - ALSA: hda: Fix UAF of leds class devs at unbinding - ALSA: hda: realtek: Fix race at concurrent COEF updates - ALSA: hda/realtek: Add quirk for ASUS GU603 - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows - btrfs: fix deadlock between quota disable and qgroup rescan worker - drm/nouveau: fix off by one in BIOS boundary checking - mm/pgtable: define pte_index so that preprocessor could recognize it - block: bio-integrity: Advance seed correctly for larger interval sizes - dma-buf: heaps: Fix potential spectre v1 gadget - [amd64] IB/hfi1: Fix AIP early init panic - memcg: charge fs_context and legacy_fs_context - RDMA/cma: Use correct address when leaving multicast group - RDMA/ucma: Protect mc during concurrent multicast leaves - [amd64] IB/rdmavt: Validate remote_addr during loopback atomic tests - RDMA/mlx4: Don't continue event handler after memory allocation failure - [amd64] iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - [amd64] iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - [arm64,armhf] spi: meson-spicc: add IRQ check in meson_spicc_probe - net: ieee802154: hwsim: Ensure proper channel selection at probe time - net: ieee802154: Return meaningful error codes from the netlink helpers - net: macsec: Fix offload support for NETDEV_UNREGISTER event - net: macsec: Verify that send_sci is on when setting Tx sci explicitly - net: stmmac: dump gmac4 DMA registers correctly - net: stmmac: ensure PTP time register reads are consistent - [x86] drm/i915/overlay: Prevent divide by zero bugs in scaling - [x86] pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line - [x86] pinctrl: intel: fix unexpected interrupt - [arm*] pinctrl: bcm2835: Fix a few error paths - scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe - nfsd: nfsd4_setclientid_confirm mistakenly expires confirmed client. - [amd64,arm64] gve: fix the wrong AdminQ buffer queue index check - bpf: Use VM_MAP instead of VM_ALLOC for ringbuf - rtc: cmos: Evaluate century appropriate - Revert "fbcon: Disable accelerated scrolling" - fbcon: Add option to enable legacy hardware acceleration - perf stat: Fix display of grouped aliased events - [x86] perf/x86/intel/pt: Fix crash with stop filters in single-range mode - [x86] perf: Default set FREEZE_ON_SMI for all - [arm64] EDAC/xgene: Fix deferred probing - ext4: prevent used blocks from being allocated during fast commit replay - ext4: modify the logic of ext4_mb_new_blocks_simple - ext4: fix error handling in ext4_restore_inline_data() - ext4: fix error handling in ext4_fc_record_modified_inode() - ext4: fix incorrect type issue during replay_del_range - cgroup/cpuset: Fix "suspicious RCU usage" lockdep warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.100 - moxart: fix potential use-after-free on remove path (CVE-2022-0487) - crypto: api - Move cryptomgr soft dependency into algapi https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.101 - integrity: check the return value of audit_log_start() - [arm64] mmc: sdhci-of-esdhc: Check for error num after setting mask - can: isotp: fix potential CAN frame reception race in isotp_rcv() - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs - net: phy: marvell: Fix MDI-x polarity setting in 88e1118-compatible PHYs - NFS: Fix initialisation of nfs_client cl_flags field - NFSD: Clamp WRITE offsets - NFSD: Fix offset type in I/O trace points - drm/amdgpu: Set a suitable dev_info.gart_page_size (Closes: #990279) - NFS: change nfs_access_get_cached to only report the mask - NFSv4 only print the label when its queried - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4.1: Fix uninitialised variable in devicenotify - NFSv4 remove zero number of fs_locations entries error check - NFSv4 expose nfs_parse_server_name function - NFSv4 handle port presence in fs_location server string - [x86] perf: Avoid warning for Arch LBR without XSAVE - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer - net: sched: Clarify error message when qdisc kind is unknown - [powerpc*] fixmap: Fix VM debug warning on unmap - scsi: target: iscsi: Make sure the np under each tpg is unique - scsi: qedf: Add stag_work to all the vports - scsi: qedf: Fix refcount issue when LOGO is received during TMF - scsi: pm8001: Fix bogus FW crash for maxcpus=1 - scsi: ufs: Treat link loss as fatal error - scsi: myrs: Fix crash in error case - PM: hibernate: Remove register_nosave_region_late() - [arm*] usb: dwc2: gadget: don't try to disable ep0 in dwc2_hsotg_suspend - perf: Always wake the parent event - nvme-pci: add the IGNORE_DEV_SUBNQN quirk for Intel P4500/P4600 SSDs - [arm64,armhf] net: stmmac: dwmac-sun8i: use return val of readl_poll_timeout() - KVM: eventfd: Fix false positive RCU usage warning - [x86] KVM: nVMX: eVMCS: Filter out VM_EXIT_SAVE_VMX_PREEMPTION_TIMER - [x86] KVM: nVMX: Also filter MSR_IA32_VMX_TRUE_PINBASED_CTLS when eVMCS - [x86] KVM: SVM: Don't kill SEV guest if SMAP erratum triggers in usermode - [x86] KVM: VMX: Set vmcs.PENDING_DBG.BS on #DB in STI/MOVSS blocking shadow - nvme-tcp: fix bogus request completion when failing to send AER - [arm64] ACPI/IORT: Check node revision for PMCG resources - PM: s2idle: ACPI: Fix wakeup interrupts handling - [arm64,armhf] drm/rockchip: vop: Correct RK3399 VOP register fields - [armhf] ARM: dts: Fix timer regression for beagleboard revision c - usb: f_fs: Fix use-after-free for epfile - [arm*] drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd. - netfilter: ctnetlink: disable helper autoassign - ixgbevf: Require large buffers for build_skb on 82599VF - [arm64,armhf] drm/panel: simple: Assign data from panel_dpi_probe() correctly - ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE - bonding: pair enable_port with slave_arr_updates - [arm64,armhf] net: dsa: mv88e6xxx: don't use devres for mdiobus - [armhf] net: dsa: bcm_sf2: don't use devres for mdiobus - [arm64] net: dsa: felix: don't use devres for mdiobus - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - nfp: flower: fix ida_idx not being released - net: do not keep the dst cache when uncloning an skb dst and its metadata - net: fix a memleak when uncloning an skb dst and its metadata - veth: fix races around rq->rx_notify_masked - [armhf] net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE - tipc: rate limit warning for received illegal binding update - [amd64,arm64] net: amd-xgbe: disable interrupts during pci removal - [arm64] dpaa2-eth: unregister the netdev before disconnecting from the PHY - ice: fix an error code in ice_cfg_phy_fec() - ice: fix IPIP and SIT TSO offload - [arm64] net: mscc: ocelot: fix mutex lock error during ethtool stats read - [arm64,armhf] net: dsa: mv88e6xxx: fix use-after-free in mv88e6xxx_mdios_unregister - vt_ioctl: fix array_index_nospec in vt_setactivate - vt_ioctl: add array_index_nospec to VT_ACTIVATE - n_tty: wake up poll(POLLRDNORM) on receiving data - eeprom: ee1004: limit i2c reads to I2C_SMBUS_BLOCK_MAX - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm*] Revert "usb: dwc2: drd: fix soft connect when gadget is unconfigured" - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - [arm64,armhf] usb: ulpi: Move of_node_put to ulpi_dev_release - [arm64,armhf] usb: ulpi: Call of_node_put correctly - [arm64,armhf] usb: dwc3: gadget: Prevent core from processing stale TRBs - usb: gadget: f_uac2: Define specific wTerminalType - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 - USB: serial: option: add ZTE MF286D modem - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices - USB: serial: cp210x: add NCR Retail IO box id - USB: serial: cp210x: add CPI Bulk Coin Recycler id - speakup-dectlk: Restore pitch setting - [x86] hwmon: (dell-smm) Speed up setting of fan speed - can: isotp: fix error path in isotp_sendmsg() to unlock wait queue - scsi: lpfc: Remove NVMe support if kernel has NVME_FC disabled - scsi: lpfc: Reduce log messages seen after firmware download - perf: Fix list corruption in perf_cgroup_switch() - iommu: Fix potential use-after-free during probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.102 - drm/nouveau/pmu/gm200-: use alternate falcon reset sequence - mm: memcg: synchronize objcg lists with a dedicated spinlock - rcu: Do not report strict GPs for outgoing CPUs - fget: clarify and improve __fget_files() implementation - fs/proc: task_mmu.c: don't read mapcount for migration entry - can: isotp: prevent race between isotp_bind() and isotp_setsockopt() - can: isotp: add SF_BROADCAST support for functional addressing - scsi: lpfc: Fix mailbox command failure during driver initialization - HID:Add support for UGTABLET WP5540 - [x86] Revert "svm: Add warning message for AVIC IPI invalid target" - mmc: block: fix read single on recovery logic - mm: don't try to NUMA-migrate COW pages that have other uses - [amd64] PCI: hv: Fix NUMA node assignment when kernel boots with custom NUMA topology - btrfs: send: in case of IO error log it - net: ieee802154: at86rf230: Stop leaking skb's - ax25: improve the incomplete fix to avoid UAF and NPD bugs - vfs: make freeze_super abort when sync_filesystem returns error - quota: make dquot_quota_sync return errors from ->sync_fs - scsi: pm8001: Fix use-after-free for aborted TMF sas_task - scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task - nvme: fix a possible use-after-free in controller reset during load - nvme-tcp: fix possible use-after-free in transport error_recovery work - nvme-rdma: fix possible use-after-free in transport error_recovery work - drm/amdgpu: fix logic inversion in check - [amd64] x86/Xen: streamline (and fix) PV CPU enumeration - Revert "module, async: async_synchronize_full() on module init iff async is used" - random: wake up /dev/random writers after zap - iwlwifi: fix use-after-free - drm/radeon: Fix backlight control on iMac 12,1 - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - vsock: remove vsock from connected table when connect is interrupted by a signal - [x86] drm/i915/gvt: Make DRM_I915_GVT depend on X86 - iwlwifi: pcie: fix locking when "HW not ready" - iwlwifi: pcie: gen2: fix locking when "HW not ready" - netfilter: nft_synproxy: unregister hooks on init error path - ipv6: per-netns exclusive flowlabel checks - net: dsa: lantiq_gswip: fix use after free in gswip_remove() - ping: fix the dif and sdif check in ping_lookup - bonding: force carrier update when releasing slave - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - net_sched: add __rcu annotation to netdev->qdisc - bonding: fix data-races around agg_select_timer - libsubcmd: Fix use-after-free for realloc(..., 0) - [arm64] dpaa2-eth: Initialize mutex used in one step timestamping path - ALSA: hda/realtek: Add quirk for Legion Y9000X 2019 - ALSA: hda/realtek: Fix deadlock by COEF mutex - ALSA: hda: Fix regression on forced probe mask option - ALSA: hda: Fix missing codec probe on Shenker Dock 15 - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() - [powerpc*[ lib/sstep: fix 'ptesync' build error - [armhf] mtd: rawnand: gpmi: don't leak PM reference in error path - [x86] KVM: SVM: Never reject emulation due to SMAP errata for !SEV guests (CVE-2020-36310) - block/wbt: fix negative inflight counter when remove scsi device - NFS: LOOKUP_DIRECTORY is also ok with symlinks - NFS: Do not report writeback errors in nfs_getattr() - tty: n_tty: do not look ahead for EOL character past the end of the buffer - [x86] Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj - [x86] KVM: x86/pmu: Refactoring find_arch_event() to pmc_perf_hw_id() - [x86] KVM: x86/pmu: Don't truncate the PerfEvtSeln MSR when creating a perf event - [x86] KVM: x86/pmu: Use AMD64_RAW_EVENT_MASK for PERF_TYPE_RAW - NFS: Don't set NFS_INO_INVALID_XATTR if there is no xattr cache - [armhf] OMAP2+: hwmod: Add of_node_put() before break - [armhf] OMAP2+: adjust the location of put_device() call in omapdss_init_of - netfilter: conntrack: don't refresh sctp entries in closed state - kconfig: let 'shell' return enough output for deep path names - ata: libata-core: Disable TRIM on M88V29 - [armhf] soc: aspeed: lpc-ctrl: Block error printing on probe defer cases - xprtrdma: fix pointer derefs in error cases of rpcrdma_ep_create - [arm64,armhf] drm/rockchip: dw_hdmi: Do not leave clock enabled in error case - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - net: usb: qmi_wwan: Add support for Dell DW5829e - [arm64] net: macb: Align the dma and coherent dma masks - kconfig: fix failing to generate auto.conf - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop - EDAC: Fix calculation of returned address and next offset in edac_align_ptr() - net: sched: limit TC_ACT_REPEAT loops - [armhf] dmaengine: stm32-dmamux: Fix PM disable depth imbalance in stm32_dmamux_probe - copy_process(): Move fd_install() out of sighand->siglock critical section - [arm*] i2c: brcmstb: fix support for DSL and CM variants https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.103 - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - btrfs: tree-checker: check item_size for inode_item - btrfs: tree-checker: check item_size for dev_item - vhost/vsock: don't check owner in vhost_vsock_stop() while releasing - [x86] KVM: x86/mmu: make apf token non-zero to fix bug - drm/amdgpu: disable MMHUB PG for Picasso - [x86] drm/i915: Correctly populate use_sagv_wm for all pipes - sr9700: sanity check for packet length - USB: zaurus: support another broken Zaurus - CDC-NCM: avoid overflow in sanity checking - netfilter: nf_tables_offload: incorrect flow offload action array size (CVE-2022-25636) - [x86] fpu: Correct pkru/xstate inconsistency - [arm64] tee: export teedev_open() and teedev_close_context() - [arm64] optee: use driver internal tee_context for some rpc - ping: remove pr_err from ping_lookup - perf data: Fix double free in perf_session__delete() - bnx2x: fix driver load from initrd - bnxt_en: Fix active FEC reporting to ethtool - hwmon: Handle failure to register sensor with thermal zone correctly - bpf: Do not try bpf_msg_push_data with len 0 - bpf: Add schedule points in batch ops - io_uring: add a schedule point in io_add_buffers() - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - tipc: Fix end of loop tests for list_for_each_entry() - gso: do not skip outer ip header in case of ipip and net_failover - openvswitch: Fix setting ipv6 fields causing hw csum failure - drm/edid: Always set RGB444 - net/mlx5e: Fix wrong return value on ioctl EEPROM query failure - net/sched: act_ct: Fix flow table lookup after ct clear or switching zones - net: Force inlining of checksum functions in net/checksum.h - nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac() - netfilter: nf_tables: fix memory leak during stateful obj update - net/smc: Use a mutex for locking "struct smc_pnettable" - udp_tunnel: Fix end of loop test in udp_tunnel_nic_unregister() - net/mlx5: Fix possible deadlock on rule deletion - net/mlx5: Fix wrong limitation of metadata match on ecpf - net/mlx5e: kTLS, Use CHECKSUM_UNNECESSARY for device-offloaded packets - regmap-irq: Update interrupt clear register for proper reset - configfs: fix a race in configfs_{,un}register_subsystem() - RDMA/ib_srp: Fix a deadlock - tracing: Have traceon and traceoff trigger honor the instance - iio: adc: ad7124: fix mask used for setting AIN_BUFP & AIN_BUFM bits - iio: imu: st_lsm6dsx: wait for settling time in st_lsm6dsx_read_oneshot - iio: Fix error handling for PM - ata: pata_hpt37x: disable primary channel on HPT371 - Revert "USB: serial: ch341: add new Product ID for CH341A" - usb: gadget: rndis: add spinlock for rndis response list - tracefs: Set the group ownership in apply_options() not parse_options() - USB: serial: option: add support for DW5829e - USB: serial: option: add Telit LE910R1 compositions - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm64] usb: dwc3: pci: Fix Bay Trail phy GPIO mappings - [arm64,armhf] usb: dwc3: gadget: Let the interrupt handler disable bottom halves. - xhci: re-initialize the HC during resume if HCE was set - xhci: Prevent futile URB re-submissions due to incorrect return value. - driver core: Free DMA range map when device is released - RDMA/cma: Do not change route.addr.src_addr outside state checks - [x86] thermal: int340x: fix memory leak in int3400_notify() - tty: n_gsm: fix encoding of control signal octet bit DV - tty: n_gsm: fix proper link termination after failed open - tty: n_gsm: fix NULL pointer access due to DLCI release - tty: n_gsm: fix wrong tty control line for flow control - tty: n_gsm: fix deadlock in gsmtty_open() - memblock: use kfree() to release kmalloced memblock regions . [ Salvatore Bonaccorso ] * Refresh "Makefile: Do not check for libelf when building OOT module" * Bump ABI to 12 * Refresh "firmware: Remove redundant log messages from drivers" * [rt] Refresh "locking/rtmutex: add sleeping lock implementation" * [rt] Refresh "cpuset: Convert callback_lock to raw_spinlock_t" * [rt] Update to 5.10.100-rt62 * Mitigate Spectre v2-type Branch History Buffer attacks (CVE-2022-0001, CVE-2022-0002) - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [x86] speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - [x86] speculation: Add eIBRS + Retpoline options - Documentation/hw-vuln: Update spectre doc - [x86] speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [x86] speculation: Use generic retpoline by default on AMD - [x86] speculation: Update link to AMD speculation whitepaper - [x86] speculation: Warn about Spectre v2 LFENCE mitigation - [x86] speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT linux (5.10.103-1~bpo10+1) buster-backports; urgency=high . * Rebuild for buster-backports: - Change ABI number to 0.bpo.12 . linux (5.10.103-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.93 - kbuild: Add $(KBUILD_HOSTLDFLAGS) to 'has_libelf' test - devtmpfs regression fix: reconfigure on each mount - orangefs: Fix the size of a memory allocation in orangefs_bufmap_alloc() - perf: Protect perf_guest_cbs with RCU - [x86] KVM: Register Processor Trace interrupt hook iff PT enabled in guest - [s390x] KVM: Clarify SIGP orders versus STOP/RESTART - 9p: only copy valid iattrs in 9P2000.L setattr implementation - [x86] video: vga16fb: Only probe for EGA and VGA 16 color graphic cards - media: uvcvideo: fix division by zero at stream start - rtlwifi: rtl8192cu: Fix WARNING when calling local_irq_restore() with interrupts enabled - firmware: qemu_fw_cfg: fix sysfs information leak - firmware: qemu_fw_cfg: fix NULL-pointer deref on duplicate entries - firmware: qemu_fw_cfg: fix kobject leak in probe error path - [x86] KVM: remove PMU FIXED_CTR3 from msrs_to_save_all - ALSA: hda/realtek: Add speaker fixup for some Yoga 15ITL5 devices - ALSA: hda/realtek - Fix silent output on Gigabyte X570 Aorus Master after reboot from Windows - ALSA: hda: ALC287: Add Lenovo IdeaPad Slim 9i 14ITL5 speaker quirk - ALSA: hda/realtek: Add quirk for Legion Y9000X 2020 - ALSA: hda/realtek: Re-order quirk entries for Lenovo - [powerpc*] pseries: Get entry and uaccess flush required bits from H_GET_CPU_CHARACTERISTICS https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.94 - [x86] KVM: VMX: switch blocked_vcpu_on_cpu_lock to raw spinlock - HID: uhid: Fix worker destroying device without any protection - HID: wacom: Reset expected and received contact counts at the same time - HID: wacom: Ignore the confidence flag when a touch is removed - HID: wacom: Avoid using stale array indicies to read contact count - f2fs: fix to do sanity check in is_alive() - nfc: llcp: fix NULL error pointer dereference on sendmsg() after failed bind() - [armhf] mtd: rawnand: gpmi: Add ERR007117 protection for nfc_apply_timings - [armhf] mtd: rawnand: gpmi: Remove explicit default gpmi clock setting for i.MX6 - mtd: Fixed breaking list in __mtd_del_partition. - [x86] gpu: Reserve stolen memory for first integrated Intel GPU - rtc: cmos: take rtc_lock while reading from CMOS - media: v4l2-ioctl.c: readbuffers depends on V4L2_CAP_READWRITE - media: flexcop-usb: fix control-message timeouts - media: mceusb: fix control-message timeouts - media: em28xx: fix control-message timeouts - media: cpia2: fix control-message timeouts - media: s2255: fix control-message timeouts - media: dib0700: fix undefined behavior in tuner shutdown - media: redrat3: fix control-message timeouts - media: pvrusb2: fix control-message timeouts - media: stk1160: fix control-message timeouts - [armhf] media: cec-pin: fix interrupt en/disable handling - [x86] can: softing_cs: softingcs_probe(): fix memleak on registration failure - iio: adc: ti-adc081c: Partial revert of removal of ACPI IDs - [arm64,armhf] gpu: host1x: Add back arm_iommu_detach_device() - dma_fence_array: Fix PENDING_ERROR leak in dma_fence_array_signaled() - PCI: Add function 1 DMA alias quirk for Marvell 88SE9125 SATA controller - mm_zone: add function to check if managed dma zone exists - [arm64] dma/pool: create dma atomic pool only if dma zone has managed pages - mm/page_alloc.c: do not warn allocation failure on zone DMA if no managed pages - shmem: fix a race between shmem_unused_huge_shrink and shmem_evict_inode - drm/ttm: Put BO in its memory manager's lru list - Bluetooth: L2CAP: Fix not initializing sk_peer_pid - [armhf] drm/bridge: display-connector: fix an uninitialized pointer in probe() - drm: fix null-ptr-deref in drm_dev_init_release() - [arm64,armhf] drm/rockchip: dsi: Fix unbalanced clock on probe error - [arm64,armhf] drm/rockchip: dsi: Hold pm-runtime across bind/unbind - [arm64,armhf] drm/rockchip: dsi: Disable PLL clock on bind error - [arm64,armhf] drm/rockchip: dsi: Reconfigure hardware on resume() - Bluetooth: cmtp: fix possible panic when cmtp_init_sockets() fails - [arm*] clk: bcm-2835: Pick the closest clock rate - [arm*] clk: bcm-2835: Remove rounding up the dividers - [arm*] drm/vc4: hdmi: Set a default HSM rate - [arm64] wcn36xx: ensure pairing of init_scan/finish_scan and start_scan/end_scan - [arm64] wcn36xx: Indicate beacon not connection loss on MISSED_BEACON_IND - [arm64] wcn36xx: Fix DMA channel enable/disable cycle - [arm64] wcn36xx: Release DMA channel descriptor allocations - [arm64] wcn36xx: Put DXE block into reset before freeing memory - [arm64] wcn36xx: populate band before determining rate on RX - [arm64] wcn36xx: fix RX BD rate mapping for 5GHz legacy rates - ath11k: Send PPDU_STATS_CFG with proper pdev mask to firmware - media: videobuf2: Fix the size printk format - [armhf] media: aspeed: fix mode-detect always time out at 2nd run - media: em28xx: fix memory leak in em28xx_init_dev - [armhf] media: aspeed: Update signal status immediately to ensure sane hw state - fs: dlm: use sk->sk_socket instead of con->sock - fs: dlm: don't call kernel_getpeername() in error_report() - Bluetooth: stop proccessing malicious adv data - ath11k: Fix ETSI regd with weather radar overlap - ath11k: clear the keys properly via DISABLE_KEY - ath11k: reset RSN/WPA present state for open BSS - [arm64] tee: fix put order in teedev_close_context() - [x86] drm/vboxvideo: fix a NULL vs IS_ERR() check - media: dmxdev: fix UAF when dvb_register_device() fails - [arm64] crypto: qce - fix uaf on qce_ahash_register_one - [arm64] crypto: qce - fix uaf on qce_skcipher_register_one - [armhf] dts: stm32: fix dtbs_check warning on ili9341 dts binding on stm32f429 disco - [x86] crypto: qat - fix spelling mistake: "messge" -> "message" - [x86] crypto: qat - remove unnecessary collision prevention step in PFVF - [x86] crypto: qat - make pfvf send message direction agnostic - [x86] crypto: qat - fix undetected PFVF timeout in ACK loop - ath11k: Use host CE parameters for CE interrupts configuration - [armhf] media: imx-pxp: Initialize the spinlock prior to using it - [armhf] media: coda: fix CODA960 JPEG encoder buffer overflow - [arm64] media: venus: pm_helpers: Control core power domain manually - [arm64] media: venus: core, venc, vdec: Fix probe dependency error - [arm64] media: venus: core: Fix a potential NULL pointer dereference in an error handling path - [arm64] media: venus: core: Fix a resource leak in the error handling path of 'venus_probe()' - [armhf] thermal/drivers/imx: Implement runtime PM support - netfilter: bridge: add support for pppoe filtering - cgroup: Trace event cgroup id fields should be u64 - ACPI: EC: Rework flushing of EC work while suspended to idle - drm/amdgpu: Fix a NULL pointer dereference in amdgpu_connector_lcd_native_mode() - drm/radeon/radeon_kms: Fix a NULL pointer dereference in radeon_driver_open_kms() - [arm*] serial: amba-pl011: do not request memory region twice - floppy: Fix hang in watchdog when disk is ejected - [x86] staging: rtl8192e: return error code from rtllib_softmac_init() - [x86] staging: rtl8192e: rtllib_module: fix error handle case in alloc_rtllib() - sched/fair: Fix detection of per-CPU kthreads waking a task - sched/fair: Fix per-CPU kthread and wakee stacking for asym CPU capacity - bpf: Adjust BTF log size limit. - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) - bpf: Remove config check to enable bpf support for branch records - [arm64] lib: Annotate {clear, copy}_page() as position-independent - [arm64] clear_page() shouldn't use DC ZVA when DCZID_EL0.DZP == 1 - media: dib8000: Fix a memleak in dib8000_init() - media: saa7146: mxb: Fix a NULL pointer dereference in mxb_attach() - media: si2157: Fix "warm" tuner state detection - wireless: iwlwifi: Fix a double free in iwl_txq_dyn_alloc_dma - sched/rt: Try to restart rt period timer when rt runtime exceeded - rcu/exp: Mark current CPU as exp-QS in IPI loop second pass - mwifiex: Fix possible ABBA deadlock - xfrm: fix a small bug in xfrm_sa_len() - [x86] uaccess: Move variable into switch case statement - [armhf] crypto: stm32 - Fix last sparse warning in stm32_cryp_check_ctr_counter - [armhf] crypto: stm32/cryp - fix CTR counter carry - [armhf] crypto: stm32/cryp - fix xts and race condition in crypto_engine requests - [armhf] crypto: stm32/cryp - check early input data - [armhf] crypto: stm32/cryp - fix double pm exit - [armhf] crypto: stm32/cryp - fix lrw chaining mode - [armhf] crypto: stm32/cryp - fix bugs and crash in tests - [armhf] crypto: stm32 - Revert broken pm_runtime_resume_and_get changes - ath11k: Fix deleting uninitialized kernel timer during fragment cache flush - media: dw2102: Fix use after free - media: msi001: fix possible null-ptr-deref in msi001_probe() - [armhf] media: coda/imx-vdoa: Handle dma_set_coherent_mask error codes - ath11k: Fix a NULL pointer dereference in ath11k_mac_op_hw_scan() - [arm64] dts: qcom: c630: Fix soundcard setup - [arm64] drm/msm/dpu: fix safe status debugfs file - [arm64,armhf] drm/tegra: vic: Fix DMA API misuse - xfrm: interface with if_id 0 should return error - xfrm: state and policy should fail if XFRMA_IF_ID 0 - [armel,armhf] 9159/1: decompressor: Avoid UNPREDICTABLE NOP encoding - usb: ftdi-elan: fix memory leak on device disconnect - iwlwifi: mvm: fix 32-bit build in FTM - iwlwifi: mvm: test roc running status bits before removing the sta - [armhf] mmc: meson-mx-sdio: add IRQ check - selinux: fix potential memleak in selinux_add_opt() - Bluetooth: L2CAP: Fix using wrong mode - bpftool: Enable line buffering for stdout - software node: fix wrong node passed to find nargs_prop - Bluetooth: hci_qca: Stop IBS timer during BT OFF - [x86] mce/inject: Avoid out-of-bounds write when setting flags - ACPI: scan: Create platform device for BCM4752 and LNV4752 ACPI nodes - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in __nonstatic_find_io_region() - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in nonstatic_find_mem_region() - netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check() - bpf: Don't promote bogus looking registers after null check. - bpf: Fix SO_RCVBUF/SO_SNDBUF handling in _bpf_setsockopt(). - netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone - ppp: ensure minimum packet size in ppp_write() - Bluetooth: hci_bcm: Check for error irq - Bluetooth: hci_qca: Fix NULL vs IS_ERR_OR_NULL check in qca_serdev_probe - [arm64] usb: dwc3: qcom: Fix NULL vs IS_ERR checking in dwc3_qcom_probe - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_get_str_desc - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_huion_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_frame_init_v1_buttonpad - debugfs: lockdown: Allow reading debugfs files that are not world readable - net/mlx5e: Fix page DMA map/unmap attributes - net/mlx5e: Don't block routes with nexthop objects in SW - Revert "net/mlx5e: Block offload of outer header csum for UDP tunnels" - net/mlx5: Set command entry semaphore up once got index free - lib/mpi: Add the return value check of kcalloc() - Bluetooth: L2CAP: uninitialized variables in l2cap_sock_setsockopt() - [arm64,armhf] spi: spi-meson-spifc: Add missing pm_runtime_disable() in meson_spifc_probe - ax25: uninitialized variable in ax25_setsockopt() - netrom: fix api breakage in nr_setsockopt() - regmap: Call regmap_debugfs_exit() prior to _init() - tpm: add request_locality before write TPM_INT_ENABLE - tpm_tis: Fix an error handling path in 'tpm_tis_core_init()' - can: softing: softing_startstop(): fix set but not used variable warning - pcmcia: fix setting of kthread task states - iwlwifi: mvm: Use div_s64 instead of do_div in iwl_mvm_ftm_rtt_smoothing() - net: mcs7830: handle usb read errors properly - ext4: avoid trim error on fs with small groups - ALSA: jack: Add missing rwsem around snd_ctl_remove() calls - ALSA: PCM: Add missing rwsem around snd_ctl_remove() calls - ALSA: hda: Add missing rwsem around snd_ctl_remove() calls - RDMA/bnxt_re: Scan the whole bitmap when checking if "disabling RCFW with pending cmd-bit" - [arm64] RDMA/hns: Validate the pkey index - scsi: pm80xx: Update WARN_ON check in pm8001_mpi_build_cmd() - [arm64] clk: imx8mn: Fix imx8mn_clko1_sels - [powerpc*] prom_init: Fix improper check of prom_getprop() - dt-bindings: thermal: Fix definition of cooling-maps contribution property - [powerpc*] 64s: Convert some cpu_setup() and cpu_restore() functions to C - [powerpc*] perf: MMCR0 control for PMU registers under PMCC=00 - [powerpc*] perf: move perf irq/nmi handling details into traps.c - [powerpc*] irq: Add helper to set regs->softe - [powerpc*] perf: Fix PMU callbacks to clear pending PMI before resetting an overflown PMC - clocksource: Reduce clocksource-skew threshold - clocksource: Avoid accidental unstable marking of clocksources - ALSA: oss: fix compile error when OSS_DEBUG is enabled - ALSA: usb-audio: Drop superfluous '0' in Presonus Studio 1810c's ID - [arm*] binder: fix handling of error during copy - [arm64,armhf] iommu/io-pgtable-arm: Fix table descriptor paddr formatting - scsi: ufs: Fix race conditions related to driver data - RDMA/qedr: Fix reporting max_{send/recv}_wr attrs - PCI/MSI: Fix pci_irq_vector()/pci_irq_get_affinity() - RDMA/core: Let ib_find_gid() continue search even after empty entry - RDMA/cma: Let cma_resolve_ib_dev() continue search even after empty entry - [x86] ASoC: rt5663: Handle device_property_read_u32_array error codes - [amd64] iommu/amd: Remove iommu_init_ga() - [amd64] iommu/amd: Restore GA log/tail pointer on host resume - [x86] ASoC: Intel: catpt: Test dmaengine_submit() result before moving on - iommu/iova: Fix race between FQ timeout and teardown - scsi: block: pm: Always set request queue runtime active in blk_post_runtime_resume() - [powerpc*] xive: Add missing null check after calling kmalloc - RDMA/cxgb4: Set queue pair state when being queried - of: base: Fix phandle argument length mismatch error message - [armhf] dts: omap3-n900: Fix lp5523 for multi color - Bluetooth: Fix debugfs entry leak in hci_register_dev() - fs: dlm: filter user dlm messages for kernel locks - [arm64,armhf] drm/lima: fix warning when CONFIG_DEBUG_SG=y & CONFIG_DMA_API_DEBUG=y - ar5523: Fix null-ptr-deref with unexpected WDCMSG_TARGET_START reply - [arm64,armhf] drm/bridge: dw-hdmi: handle ELD when DRM_BRIDGE_ATTACH_NO_CONNECTOR - drm/nouveau/pmu/gm200-: avoid touching PMU outside of DEVINIT/PREOS/ACR - batman-adv: allow netlink usage in unprivileged containers - ath11k: Fix crash caused by uninitialized TX ring - usb: gadget: f_fs: Use stream_open() for endpoint files - drm: panel-orientation-quirks: Add quirk for the Lenovo Yoga Book X91F/L - HID: apple: Do not reset quirks when the Fn key is not found - media: b2c2: Add missing check in flexcop_pci_isr: - drm/amdgpu/display: set vblank_disable_immediate for DC - [arm64,armhf] tty: serial: imx: disable UCR4_OREN in .stop_rx() instead of .shutdown() - gpiolib: acpi: Do not set the IRQ type if the IRQ is already in use - [armhf] HSI: core: Fix return freed object in hsi_new_client - crypto: jitter - consider 32 LSB for APT - rsi: Fix use-after-free in rsi_rx_done_handler() - rsi: Fix out-of-bounds read in rsi_read_pkt() - ath11k: Avoid NULL ptr access during mgmt tx cleanup - [arm64] media: venus: avoid calling core_clk_setrate() concurrently during concurrent video sessions - [x86] ACPI / x86: Drop PWM2 device on Lenovo Yoga Book from always present table - ACPI: Change acpi_device_always_present() into acpi_device_override_status() - [x86] ACPI / x86: Allow specifying acpi_device_override_status() quirks by path - [x86] ACPI / x86: Add not-present quirk for the PCI0.SDHB.BRC1 device on the GPD win - floppy: Add max size check for user space request - [x86] mm: Flush global TLB when switching to trampoline page-table - media: saa7146: hexium_orion: Fix a NULL pointer dereference in hexium_attach() - media: m920x: don't use stack on USB reads - [x86] thunderbolt: Runtime PM activate both ends of the device link - iwlwifi: mvm: synchronize with FW after multicast commands - iwlwifi: mvm: avoid clearing a just saved session protection id - ath11k: avoid deadlock by change ieee80211_queue_work for regd_update_work - ath10k: Fix tx hanging - net-sysfs: update the queue counts in the unregistration path - net: phy: prefer 1000baseT over 1000baseKX - [armhf] gpio: aspeed: Convert aspeed_gpio.lock to raw_spinlock - ath11k: Avoid false DEADLOCK warning reported by lockdep - [x86] mce: Allow instrumentation during task work queueing - [x86] mce: Mark mce_panic() noinstr - [x86] mce: Mark mce_end() noinstr - [x86] mce: Mark mce_read_aux() noinstr - net: bonding: debug: avoid printing debug logs when bond is not notifying peers - bpf: Do not WARN in bpf_warn_invalid_xdp_action() - HID: quirks: Allow inverting the absolute X/Y values - media: igorplugusb: receiver overflow should be reported - media: saa7146: hexium_gemini: Fix a NULL pointer dereference in hexium_attach() - mmc: core: Fixup storing of OCR for MMC_QUIRK_NONSTD_SDIO - audit: ensure userspace is penalized the same as the kernel when under pressure - [arm64] dts: ls1028a-qds: move rtc node to the correct i2c bus - PM: runtime: Add safety net to supplier device release - cpufreq: Fix initialization of min and max frequency QoS requests - usb: hub: Add delay for SuperSpeed hub resume to let links transit to U0 - ath9k: Fix out-of-bound memcpy in ath9k_hif_usb_rx_stream - rtw88: 8822c: update rx settings to prevent potential hw deadlock - iwlwifi: fix leaks/bad data after failed firmware load - iwlwifi: remove module loading failure message - iwlwifi: mvm: Fix calculation of frame length - iwlwifi: pcie: make sure prph_info is set when treating wakeup IRQ - ath11k: Fix napi related hang - Bluetooth: vhci: Set HCI_QUIRK_VALID_LE_STATES - xfrm: rate limit SA mapping change message to user space - [armhf] drm/etnaviv: consider completed fence seqno in hang check - jffs2: GC deadlock reading a page that is used in jffs2_write_begin() - ACPICA: actypes.h: Expand the ACPI_ACCESS_ definitions - ACPICA: Utilities: Avoid deleting the same object twice in a row - ACPICA: Executer: Fix the REFCLASS_REFOF case in acpi_ex_opcode_1A_0T_1R() - ACPICA: Fix wrong interpretation of PCC address - ACPICA: Hardware: Do not flush CPU cache when entering S4 and S5 - drm/amdgpu: fixup bad vram size on gmc v8 - ACPI: battery: Add the ThinkPad "Not Charging" quirk - btrfs: remove BUG_ON() in find_parent_nodes() - btrfs: remove BUG_ON(!eie) in find_parent_nodes - net: mdio: Demote probed message to debug print - mac80211: allow non-standard VHT MCS-10/11 - dm btree: add a defensive bounds check to insert_at() - dm space map common: add bounds check to sm_ll_lookup_bitmap() - net: phy: marvell: configure RGMII delays for 88E1118 - [arm64] regulator: qcom_smd: Align probe function with rpmh-regulator - [arm64,armhf] serial: pl010: Drop CR register reset on set_termios - serial: core: Keep mctrl register state and cached copy in sync - random: do not throw away excess input to crng_fast_load - [powerpc*] powernv: add missing of_node_put - [powerpc*] btext: add missing of_node_put - [powerpc*] watchdog: Fix missed watchdog reset due to memory ordering race - [x86] i2c: i801: Don't silently correct invalid transfer size - [powerpc*] smp: Move setup_profiling_timer() under CONFIG_PROFILING - [powerpc*] i2c: mpc: Correct I2C reset procedure - [arm64] clk: meson: gxbb: Fix the SDM_EN bit for MPLL0 on GXBB - [powerpc*] KVM: PPC: Book3S: Suppress warnings when allocating too big memory slots - [powerpc*] KVM: PPC: Book3S: Suppress failed alloc warning in H_COPY_TOFROM_GUEST - w1: Misuse of get_user()/put_user() reported by sparse - nvmem: core: set size for sysfs bin file - dm: fix alloc_dax error handling in alloc_dev - scsi: lpfc: Trigger SLI4 firmware dump before doing driver cleanup - ALSA: seq: Set upper limit of processed events - [powerpc*] handle kdump appropriately with crash_kexec_post_notifiers option - [powerpc*] fadump: Fix inaccurate CPU state info in vmcore generated with panic - udf: Fix error handling in udf_new_inode() - [mips64el,mipsel] OCTEON: add put_device() after of_find_device_by_node() - [arm64,armhf] irqchip/gic-v4: Disable redistributors' view of the VPE table at boot time - [x86] i2c: designware-pci: Fix to change data types of hcnt and lcnt parameters - scsi: sr: Don't use GFP_DMA - [arm64] rpmsg: core: Clean up resources on announce_create failure. - [armhf] crypto: stm32/crc32 - Fix kernel BUG triggered in probe() - [arm64] crypto: caam - replace this_cpu_ptr with raw_cpu_ptr - ubifs: Error path in ubifs_remount_rw() seems to wrongly free write buffers - tpm: fix NPE on probe for missing device - xen/gntdev: fix unmap notification order - fuse: Pass correct lend value to filemap_write_and_wait_range() - serial: Fix incorrect rs485 polarity on uart open - cputime, cpuacct: Include guest time in user time in cpuacct.stat - tracing/kprobes: 'nmissed' not showed correctly for kretprobe - iwlwifi: mvm: Increase the scan timeout guard to 30 seconds - [s390x] mm: fix 2KB pgtable release race - device property: Fix fwnode_graph_devcon_match() fwnode leak - [armhf] drm/etnaviv: limit submit sizes - drm/nouveau/kms/nv04: use vzalloc for nv04_display - [arm64,armhf] drm/bridge: analogix_dp: Make PSR-exit block less - [powerpc*] 64s/radix: Fix huge vmap false positive - [arm64] PCI: xgene: Fix IB window setup - PCI: pciehp: Use down_read/write_nested(reset_lock) to fix lockdep errors - [arm*] PCI: pci-bridge-emul: Make expansion ROM Base Address register read-only - [arm*] PCI: pci-bridge-emul: Properly mark reserved PCIe bits in PCI config space - [arm*] PCI: pci-bridge-emul: Fix definitions of reserved bits - [arm*] PCI: pci-bridge-emul: Correctly set PCIe capabilities - [arm*] PCI: pci-bridge-emul: Set PCI_STATUS_CAP_LIST for PCIe device - xfrm: fix policy lookup for ipv6 gre packets - btrfs: fix deadlock between quota enable and other quota operations - btrfs: check the root node for uptodate before returning it - btrfs: respect the max size in the header when activating swap file - ext4: make sure to reset inode lockdep class when quota enabling fails - ext4: make sure quota gets properly shutdown on error - ext4: fix a possible ABBA deadlock due to busy PA - ext4: initialize err_blk before calling __ext4_get_inode_loc - ext4: fix fast commit may miss tracking range for FALLOC_FL_ZERO_RANGE - ext4: set csum seed in tmp inode while migrating to extents - ext4: Fix BUG_ON in ext4_bread when write quota data - ext4: use ext4_ext_remove_space() for fast commit replay delete range - ext4: fast commit may miss tracking unwritten range during ftruncate - ext4: destroy ext4_fc_dentry_cachep kmemcache on module removal - ext4: fix null-ptr-deref in '__ext4_journal_ensure_credits' - ext4: don't use the orphan list when migrating an inode - drm/radeon: fix error handling in radeon_driver_open_kms - of: base: Improve argument length mismatch error - firmware: Update Kconfig help text for Google firmware - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - Documentation: dmaengine: Correctly describe dmatest with channel unset - Documentation: ACPI: Fix data node reference documentation - Documentation: refer to config RANDOMIZE_BASE for kernel address-space randomization - Documentation: fix firewire.rst ABI file path error - Bluetooth: hci_sync: Fix not setting adv set duration - scsi: core: Show SCMD_LAST in text form - [arm64] RDMA/hns: Modify the mapping attribute of doorbell to device - RDMA/rxe: Fix a typo in opcode name - [armhf] dmaengine: stm32-mdma: fix STM32_MDMA_CTBR_TSEL_MASK - Revert "net/mlx5: Add retry mechanism to the command entry index allocation" - block: Fix fsync always failed if once failed - bpftool: Remove inclusion of utilities.mak from Makefiles - xdp: check prog type before updating BPF link - ipv4: update fib_info_cnt under spinlock protection - ipv4: avoid quadratic behavior in netns dismantle - [arm64] net/fsl: xgmac_mdio: Add workaround for erratum A-009885 - [arm64] net/fsl: xgmac_mdio: Fix incorrect iounmap when removing module - f2fs: compress: fix potential deadlock of compress file - f2fs: fix to reserve space for IO align feature - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress - clk: Emit a stern warning with writable debugfs enabled - net/smc: Fix hung_task when removing SMC-R devices - virtio_ring: mark ring unused on error - taskstats: Cleanup the use of task->exit_code - inet: frags: annotate races around fqdir->dead and fqdir->high_thresh - netns: add schedule point in ops_exit_list() - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - gre: Don't accidentally set RTO_ONLINK in gre_fill_metadata_dst() - libcxgb: Don't accidentally set RTO_ONLINK in cxgb_find_route() - perf script: Fix hex dump character output - perf probe: Fix ppc64 'perf probe add events failed' case - devlink: Remove misleading internal_flags from health reporter dump - net: bonding: fix bond_xmit_broadcast return value error bug - net_sched: restore "mpu xxx" handling - [arm64] bcmgenet: add WOL IRQ check - net: sfp: fix high power modules without diagnostic monitoring - [arm64] net: mscc: ocelot: fix using match before it is set - dt-bindings: display: meson-dw-hdmi: add missing sound-name-prefix property - dt-bindings: display: meson-vpu: Add missing amlogic,canvas property - dt-bindings: watchdog: Require samsung,syscon-phandle for Exynos7 - mm/hmm.c: allow VM_MIXEDMAP to work with hmm_range_fault - mtd: nand: bbt: Fix corner case in bad block table handling - ath10k: Fix the MTU size on QCA9377 SDIO https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.95 - bnx2x: Utilize firmware 7.13.21.0 - bnx2x: Invalidate fastpath HSI version for VFs - rcu: Tighten rcu_advance_cbs_nowake() checks - [x86] KVM: x86/mmu: Fix write-protection of PTs mapped by the TDP MMU - select: Fix indefinitely sleeping task in poll_schedule_timeout() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.96 - Bluetooth: refactor malicious adv data check - [arm64] media: venus: core: Drop second v4l2 device unregister - net: sfp: ignore disabled SFP node - net: stmmac: skip only stmmac_ptp_register when resume from suspend - [s390x] module: fix loading modules with a lot of relocations - [s390x] hypfs: include z/VM guests with access control group set - bpf: Guard against accessing NULL pt_regs in bpf_get_task_stack() - [s390x] scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices - udf: Restore i_lenAlloc when inode expansion fails (CVE-2022-0617) - udf: Fix NULL ptr deref when converting from inline format (CVE-2022-0617) - efi: runtime: avoid EFIv2 runtime services on Apple x86 machines - tracing: Don't inc err_log entry count if entry allocation fails - ceph: properly put ceph_string reference after async create attempt - ceph: set pool_ns in new inode layout for async creates - fsnotify: fix fsnotify hooks in pseudo filesystems - Revert "KVM: SVM: avoid infinite loop on NPF from bad address" - [x86] perf/x86/intel/uncore: Fix CAS_COUNT_WRITE issue for ICX - [armhf] drm/etnaviv: relax submit size limits - [x86] KVM: x86: Update vCPU's runtime CPUID on write to MSR_IA32_XSS - [arm64] errata: Fix exec handling in erratum 1418040 workaround - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - serial: 8250: of: Fix mapped region size when using reg-offset property - [armhf] serial: stm32: fix software flow control transfer - tty: n_gsm: fix SW flow control encoding/handling - tty: Add support for Brainboxes UC cards. - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge - [arm64,armhf] usb: xhci-plat: fix crash when suspend if remote wake enable - [arm64,armhf] usb: common: ulpi: Fix crash in ulpi_match() - usb: gadget: f_sourcesink: Fix isoc transfer for USB_SPEED_SUPER_PLUS - USB: core: Fix hang in usb_kill_urb by adding memory barriers - usb: typec: tcpm: Do not disconnect while receiving VBUS off - jbd2: export jbd2_journal_[grab|put]_journal_head - ocfs2: fix a deadlock when commit trans - sched/membarrier: Fix membarrier-rseq fence command missing from query bitmask - [x86] MCE/AMD: Allow thresholding interface updates after init - i40e: Increase delay to 1 s after global EMP reset - i40e: Fix issue when maximum queues is exceeded - i40e: Fix queues reservation for XDP - i40e: Fix for failed to init adminq while VF reset - i40e: fix unsigned stat widths - scsi: bnx2fc: Flush destroy_work queue before calling bnx2fc_interface_put() - ipv6_tunnel: Rate limit warning messages - net: fix information leakage in /proc/net/ptype - hwmon: (lm90) Mark alert as broken for MAX6646/6647/6649 - hwmon: (lm90) Mark alert as broken for MAX6680 - ping: fix the sk_bound_dev_if match in ping_lookup - ipv4: avoid using shared IP generator for connected sockets - hwmon: (lm90) Reduce maximum conversion rate for G781 - NFSv4: nfs_atomic_open() can race when looking up a non-regular file - net-procfs: show net devices bound packet types - [arm64] drm/msm: Fix wrong size calculation - [arm64] drm/msm/dsi: Fix missing put_device() call in dsi_get_phy - [arm64] drm/msm/dsi: invalid parameter check in msm_dsi_phy_enable - ipv6: annotate accesses to fn->fn_sernum - NFS: Ensure the server has an up to date ctime before hardlinking - NFS: Ensure the server has an up to date ctime before renaming - [powerpc*] powerpc64/bpf: Limit 'ldbrx' to processors compliant with ISA v2.06 - netfilter: conntrack: don't increment invalid counter on NF_REPEAT - kernel: delete repeated words in comments - perf: Fix perf_event_read_local() time - sched/pelt: Relax the sync of util_sum with util_avg - net: phy: broadcom: hook up soft_reset for BCM54616S - phylib: fix potential use-after-free - rxrpc: Adjust retransmission backoff - [arm64] efi/libstub: arm64: Fix image check alignment at entry - hwmon: (lm90) Mark alert as broken for MAX6654 - [powerpc*] perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending - net: ipv4: Move ip_options_fragment() out of loop - net: ipv4: Fix the warning for dereference - ipv4: fix ip option filtering for locally generated fragments - [x86] video: hyperv_fb: Fix validation of screen resolution - [arm64] drm/msm/hdmi: Fix missing put_device() call in msm_hdmi_get_phy - [arm64] drm/msm/dpu: invalid parameter check in dpu_setup_dspp_pcc - [armhf] net: cpsw: Properly initialise struct page_pool_params - [arm64] net: hns3: handle empty unknown interrupt for VF - Revert "ipv6: Honor all IPv6 PIO Valid Lifetime values" - net: bridge: vlan: fix single net device option dumping - ipv4: raw: lock the socket in raw_bind() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: remove sparse error in ip_neigh_gw4() - net: bridge: vlan: fix memory leak in __allowed_ingress - dt-bindings: can: tcan4x5x: fix mram-cfg RX FIFO config - fsnotify: invalidate dcache before IN_DELETE event - block: Fix wrong offset in bio_truncate() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.97 - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - [x86] KVM: x86: Forcibly leave nested virt when SMM state is toggled - psi: Fix uaf issue when psi trigger is destroyed while being polled - [x86] mce: Add Xeon Sapphire Rapids to list of CPUs that support PPIN - [x86] cpu: Add Xeon Icelake-D to list of CPUs that support PPIN - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - cgroup-v1: Require capabilities to set release_agent (CVE-2022-0492) - net/mlx5e: Fix handling of wrong devices during bond netevent - net/mlx5: Use del_timer_sync in fw reset flow of halting poll - net/mlx5: E-Switch, Fix uninitialized variable modact - ipheth: fix EOVERFLOW in ipheth_rcvbulk_callback - [amd64,arm64] net: amd-xgbe: ensure to reset the tx_timer_active flag - [amd64,arm64] net: amd-xgbe: Fix skb data length underflow - fanotify: Fix stale file descriptor in copy_event_to_user() - net: sched: fix use-after-free in tc_new_tfilter() - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - cpuset: Fix the bug that subpart_cpus updated wrongly in update_cpumask() - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - tcp: add missing tcp_skb_can_collapse() test in tcp_shift_skb_data() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.98 - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" again https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.99 - selinux: fix double free of cond_list on error paths - audit: improve audit queue handling when "audit=1" on cmdline - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() - ALSA: usb-audio: Correct quirk for VF0770 - ALSA: hda: Fix UAF of leds class devs at unbinding - ALSA: hda: realtek: Fix race at concurrent COEF updates - ALSA: hda/realtek: Add quirk for ASUS GU603 - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows - btrfs: fix deadlock between quota disable and qgroup rescan worker - drm/nouveau: fix off by one in BIOS boundary checking - mm/pgtable: define pte_index so that preprocessor could recognize it - block: bio-integrity: Advance seed correctly for larger interval sizes - dma-buf: heaps: Fix potential spectre v1 gadget - [amd64] IB/hfi1: Fix AIP early init panic - memcg: charge fs_context and legacy_fs_context - RDMA/cma: Use correct address when leaving multicast group - RDMA/ucma: Protect mc during concurrent multicast leaves - [amd64] IB/rdmavt: Validate remote_addr during loopback atomic tests - RDMA/mlx4: Don't continue event handler after memory allocation failure - [amd64] iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - [amd64] iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - [arm64,armhf] spi: meson-spicc: add IRQ check in meson_spicc_probe - net: ieee802154: hwsim: Ensure proper channel selection at probe time - net: ieee802154: Return meaningful error codes from the netlink helpers - net: macsec: Fix offload support for NETDEV_UNREGISTER event - net: macsec: Verify that send_sci is on when setting Tx sci explicitly - net: stmmac: dump gmac4 DMA registers correctly - net: stmmac: ensure PTP time register reads are consistent - [x86] drm/i915/overlay: Prevent divide by zero bugs in scaling - [x86] pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line - [x86] pinctrl: intel: fix unexpected interrupt - [arm*] pinctrl: bcm2835: Fix a few error paths - scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe - nfsd: nfsd4_setclientid_confirm mistakenly expires confirmed client. - [amd64,arm64] gve: fix the wrong AdminQ buffer queue index check - bpf: Use VM_MAP instead of VM_ALLOC for ringbuf - rtc: cmos: Evaluate century appropriate - Revert "fbcon: Disable accelerated scrolling" - fbcon: Add option to enable legacy hardware acceleration - perf stat: Fix display of grouped aliased events - [x86] perf/x86/intel/pt: Fix crash with stop filters in single-range mode - [x86] perf: Default set FREEZE_ON_SMI for all - [arm64] EDAC/xgene: Fix deferred probing - ext4: prevent used blocks from being allocated during fast commit replay - ext4: modify the logic of ext4_mb_new_blocks_simple - ext4: fix error handling in ext4_restore_inline_data() - ext4: fix error handling in ext4_fc_record_modified_inode() - ext4: fix incorrect type issue during replay_del_range - cgroup/cpuset: Fix "suspicious RCU usage" lockdep warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.100 - moxart: fix potential use-after-free on remove path (CVE-2022-0487) - crypto: api - Move cryptomgr soft dependency into algapi https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.101 - integrity: check the return value of audit_log_start() - [arm64] mmc: sdhci-of-esdhc: Check for error num after setting mask - can: isotp: fix potential CAN frame reception race in isotp_rcv() - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs - net: phy: marvell: Fix MDI-x polarity setting in 88e1118-compatible PHYs - NFS: Fix initialisation of nfs_client cl_flags field - NFSD: Clamp WRITE offsets - NFSD: Fix offset type in I/O trace points - drm/amdgpu: Set a suitable dev_info.gart_page_size (Closes: #990279) - NFS: change nfs_access_get_cached to only report the mask - NFSv4 only print the label when its queried - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4.1: Fix uninitialised variable in devicenotify - NFSv4 remove zero number of fs_locations entries error check - NFSv4 expose nfs_parse_server_name function - NFSv4 handle port presence in fs_location server string - [x86] perf: Avoid warning for Arch LBR without XSAVE - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer - net: sched: Clarify error message when qdisc kind is unknown - [powerpc*] fixmap: Fix VM debug warning on unmap - scsi: target: iscsi: Make sure the np under each tpg is unique - scsi: qedf: Add stag_work to all the vports - scsi: qedf: Fix refcount issue when LOGO is received during TMF - scsi: pm8001: Fix bogus FW crash for maxcpus=1 - scsi: ufs: Treat link loss as fatal error - scsi: myrs: Fix crash in error case - PM: hibernate: Remove register_nosave_region_late() - [arm*] usb: dwc2: gadget: don't try to disable ep0 in dwc2_hsotg_suspend - perf: Always wake the parent event - nvme-pci: add the IGNORE_DEV_SUBNQN quirk for Intel P4500/P4600 SSDs - [arm64,armhf] net: stmmac: dwmac-sun8i: use return val of readl_poll_timeout() - KVM: eventfd: Fix false positive RCU usage warning - [x86] KVM: nVMX: eVMCS: Filter out VM_EXIT_SAVE_VMX_PREEMPTION_TIMER - [x86] KVM: nVMX: Also filter MSR_IA32_VMX_TRUE_PINBASED_CTLS when eVMCS - [x86] KVM: SVM: Don't kill SEV guest if SMAP erratum triggers in usermode - [x86] KVM: VMX: Set vmcs.PENDING_DBG.BS on #DB in STI/MOVSS blocking shadow - nvme-tcp: fix bogus request completion when failing to send AER - [arm64] ACPI/IORT: Check node revision for PMCG resources - PM: s2idle: ACPI: Fix wakeup interrupts handling - [arm64,armhf] drm/rockchip: vop: Correct RK3399 VOP register fields - [armhf] ARM: dts: Fix timer regression for beagleboard revision c - usb: f_fs: Fix use-after-free for epfile - [arm*] drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd. - netfilter: ctnetlink: disable helper autoassign - ixgbevf: Require large buffers for build_skb on 82599VF - [arm64,armhf] drm/panel: simple: Assign data from panel_dpi_probe() correctly - ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE - bonding: pair enable_port with slave_arr_updates - [arm64,armhf] net: dsa: mv88e6xxx: don't use devres for mdiobus - [armhf] net: dsa: bcm_sf2: don't use devres for mdiobus - [arm64] net: dsa: felix: don't use devres for mdiobus - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - nfp: flower: fix ida_idx not being released - net: do not keep the dst cache when uncloning an skb dst and its metadata - net: fix a memleak when uncloning an skb dst and its metadata - veth: fix races around rq->rx_notify_masked - [armhf] net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE - tipc: rate limit warning for received illegal binding update - [amd64,arm64] net: amd-xgbe: disable interrupts during pci removal - [arm64] dpaa2-eth: unregister the netdev before disconnecting from the PHY - ice: fix an error code in ice_cfg_phy_fec() - ice: fix IPIP and SIT TSO offload - [arm64] net: mscc: ocelot: fix mutex lock error during ethtool stats read - [arm64,armhf] net: dsa: mv88e6xxx: fix use-after-free in mv88e6xxx_mdios_unregister - vt_ioctl: fix array_index_nospec in vt_setactivate - vt_ioctl: add array_index_nospec to VT_ACTIVATE - n_tty: wake up poll(POLLRDNORM) on receiving data - eeprom: ee1004: limit i2c reads to I2C_SMBUS_BLOCK_MAX - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm*] Revert "usb: dwc2: drd: fix soft connect when gadget is unconfigured" - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - [arm64,armhf] usb: ulpi: Move of_node_put to ulpi_dev_release - [arm64,armhf] usb: ulpi: Call of_node_put correctly - [arm64,armhf] usb: dwc3: gadget: Prevent core from processing stale TRBs - usb: gadget: f_uac2: Define specific wTerminalType - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 - USB: serial: option: add ZTE MF286D modem - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices - USB: serial: cp210x: add NCR Retail IO box id - USB: serial: cp210x: add CPI Bulk Coin Recycler id - speakup-dectlk: Restore pitch setting - [x86] hwmon: (dell-smm) Speed up setting of fan speed - can: isotp: fix error path in isotp_sendmsg() to unlock wait queue - scsi: lpfc: Remove NVMe support if kernel has NVME_FC disabled - scsi: lpfc: Reduce log messages seen after firmware download - perf: Fix list corruption in perf_cgroup_switch() - iommu: Fix potential use-after-free during probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.102 - drm/nouveau/pmu/gm200-: use alternate falcon reset sequence - mm: memcg: synchronize objcg lists with a dedicated spinlock - rcu: Do not report strict GPs for outgoing CPUs - fget: clarify and improve __fget_files() implementation - fs/proc: task_mmu.c: don't read mapcount for migration entry - can: isotp: prevent race between isotp_bind() and isotp_setsockopt() - can: isotp: add SF_BROADCAST support for functional addressing - scsi: lpfc: Fix mailbox command failure during driver initialization - HID:Add support for UGTABLET WP5540 - [x86] Revert "svm: Add warning message for AVIC IPI invalid target" - mmc: block: fix read single on recovery logic - mm: don't try to NUMA-migrate COW pages that have other uses - [amd64] PCI: hv: Fix NUMA node assignment when kernel boots with custom NUMA topology - btrfs: send: in case of IO error log it - net: ieee802154: at86rf230: Stop leaking skb's - ax25: improve the incomplete fix to avoid UAF and NPD bugs - vfs: make freeze_super abort when sync_filesystem returns error - quota: make dquot_quota_sync return errors from ->sync_fs - scsi: pm8001: Fix use-after-free for aborted TMF sas_task - scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task - nvme: fix a possible use-after-free in controller reset during load - nvme-tcp: fix possible use-after-free in transport error_recovery work - nvme-rdma: fix possible use-after-free in transport error_recovery work - drm/amdgpu: fix logic inversion in check - [amd64] x86/Xen: streamline (and fix) PV CPU enumeration - Revert "module, async: async_synchronize_full() on module init iff async is used" - random: wake up /dev/random writers after zap - iwlwifi: fix use-after-free - drm/radeon: Fix backlight control on iMac 12,1 - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - vsock: remove vsock from connected table when connect is interrupted by a signal - [x86] drm/i915/gvt: Make DRM_I915_GVT depend on X86 - iwlwifi: pcie: fix locking when "HW not ready" - iwlwifi: pcie: gen2: fix locking when "HW not ready" - netfilter: nft_synproxy: unregister hooks on init error path - ipv6: per-netns exclusive flowlabel checks - net: dsa: lantiq_gswip: fix use after free in gswip_remove() - ping: fix the dif and sdif check in ping_lookup - bonding: force carrier update when releasing slave - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - net_sched: add __rcu annotation to netdev->qdisc - bonding: fix data-races around agg_select_timer - libsubcmd: Fix use-after-free for realloc(..., 0) - [arm64] dpaa2-eth: Initialize mutex used in one step timestamping path - ALSA: hda/realtek: Add quirk for Legion Y9000X 2019 - ALSA: hda/realtek: Fix deadlock by COEF mutex - ALSA: hda: Fix regression on forced probe mask option - ALSA: hda: Fix missing codec probe on Shenker Dock 15 - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() - [powerpc*[ lib/sstep: fix 'ptesync' build error - [armhf] mtd: rawnand: gpmi: don't leak PM reference in error path - [x86] KVM: SVM: Never reject emulation due to SMAP errata for !SEV guests (CVE-2020-36310) - block/wbt: fix negative inflight counter when remove scsi device - NFS: LOOKUP_DIRECTORY is also ok with symlinks - NFS: Do not report writeback errors in nfs_getattr() - tty: n_tty: do not look ahead for EOL character past the end of the buffer - [x86] Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj - [x86] KVM: x86/pmu: Refactoring find_arch_event() to pmc_perf_hw_id() - [x86] KVM: x86/pmu: Don't truncate the PerfEvtSeln MSR when creating a perf event - [x86] KVM: x86/pmu: Use AMD64_RAW_EVENT_MASK for PERF_TYPE_RAW - NFS: Don't set NFS_INO_INVALID_XATTR if there is no xattr cache - [armhf] OMAP2+: hwmod: Add of_node_put() before break - [armhf] OMAP2+: adjust the location of put_device() call in omapdss_init_of - netfilter: conntrack: don't refresh sctp entries in closed state - kconfig: let 'shell' return enough output for deep path names - ata: libata-core: Disable TRIM on M88V29 - [armhf] soc: aspeed: lpc-ctrl: Block error printing on probe defer cases - xprtrdma: fix pointer derefs in error cases of rpcrdma_ep_create - [arm64,armhf] drm/rockchip: dw_hdmi: Do not leave clock enabled in error case - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - net: usb: qmi_wwan: Add support for Dell DW5829e - [arm64] net: macb: Align the dma and coherent dma masks - kconfig: fix failing to generate auto.conf - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop - EDAC: Fix calculation of returned address and next offset in edac_align_ptr() - net: sched: limit TC_ACT_REPEAT loops - [armhf] dmaengine: stm32-dmamux: Fix PM disable depth imbalance in stm32_dmamux_probe - copy_process(): Move fd_install() out of sighand->siglock critical section - [arm*] i2c: brcmstb: fix support for DSL and CM variants https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.103 - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - btrfs: tree-checker: check item_size for inode_item - btrfs: tree-checker: check item_size for dev_item - vhost/vsock: don't check owner in vhost_vsock_stop() while releasing - [x86] KVM: x86/mmu: make apf token non-zero to fix bug - drm/amdgpu: disable MMHUB PG for Picasso - [x86] drm/i915: Correctly populate use_sagv_wm for all pipes - sr9700: sanity check for packet length - USB: zaurus: support another broken Zaurus - CDC-NCM: avoid overflow in sanity checking - netfilter: nf_tables_offload: incorrect flow offload action array size (CVE-2022-25636) - [x86] fpu: Correct pkru/xstate inconsistency - [arm64] tee: export teedev_open() and teedev_close_context() - [arm64] optee: use driver internal tee_context for some rpc - ping: remove pr_err from ping_lookup - perf data: Fix double free in perf_session__delete() - bnx2x: fix driver load from initrd - bnxt_en: Fix active FEC reporting to ethtool - hwmon: Handle failure to register sensor with thermal zone correctly - bpf: Do not try bpf_msg_push_data with len 0 - bpf: Add schedule points in batch ops - io_uring: add a schedule point in io_add_buffers() - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - tipc: Fix end of loop tests for list_for_each_entry() - gso: do not skip outer ip header in case of ipip and net_failover - openvswitch: Fix setting ipv6 fields causing hw csum failure - drm/edid: Always set RGB444 - net/mlx5e: Fix wrong return value on ioctl EEPROM query failure - net/sched: act_ct: Fix flow table lookup after ct clear or switching zones - net: Force inlining of checksum functions in net/checksum.h - nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac() - netfilter: nf_tables: fix memory leak during stateful obj update - net/smc: Use a mutex for locking "struct smc_pnettable" - udp_tunnel: Fix end of loop test in udp_tunnel_nic_unregister() - net/mlx5: Fix possible deadlock on rule deletion - net/mlx5: Fix wrong limitation of metadata match on ecpf - net/mlx5e: kTLS, Use CHECKSUM_UNNECESSARY for device-offloaded packets - regmap-irq: Update interrupt clear register for proper reset - configfs: fix a race in configfs_{,un}register_subsystem() - RDMA/ib_srp: Fix a deadlock - tracing: Have traceon and traceoff trigger honor the instance - iio: adc: ad7124: fix mask used for setting AIN_BUFP & AIN_BUFM bits - iio: imu: st_lsm6dsx: wait for settling time in st_lsm6dsx_read_oneshot - iio: Fix error handling for PM - ata: pata_hpt37x: disable primary channel on HPT371 - Revert "USB: serial: ch341: add new Product ID for CH341A" - usb: gadget: rndis: add spinlock for rndis response list - tracefs: Set the group ownership in apply_options() not parse_options() - USB: serial: option: add support for DW5829e - USB: serial: option: add Telit LE910R1 compositions - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm64] usb: dwc3: pci: Fix Bay Trail phy GPIO mappings - [arm64,armhf] usb: dwc3: gadget: Let the interrupt handler disable bottom halves. - xhci: re-initialize the HC during resume if HCE was set - xhci: Prevent futile URB re-submissions due to incorrect return value. - driver core: Free DMA range map when device is released - RDMA/cma: Do not change route.addr.src_addr outside state checks - [x86] thermal: int340x: fix memory leak in int3400_notify() - tty: n_gsm: fix encoding of control signal octet bit DV - tty: n_gsm: fix proper link termination after failed open - tty: n_gsm: fix NULL pointer access due to DLCI release - tty: n_gsm: fix wrong tty control line for flow control - tty: n_gsm: fix deadlock in gsmtty_open() - memblock: use kfree() to release kmalloced memblock regions . [ Salvatore Bonaccorso ] * Refresh "Makefile: Do not check for libelf when building OOT module" * Bump ABI to 12 * Refresh "firmware: Remove redundant log messages from drivers" * [rt] Refresh "locking/rtmutex: add sleeping lock implementation" * [rt] Refresh "cpuset: Convert callback_lock to raw_spinlock_t" * [rt] Update to 5.10.100-rt62 * Mitigate Spectre v2-type Branch History Buffer attacks (CVE-2022-0001, CVE-2022-0002) - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [x86] speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - [x86] speculation: Add eIBRS + Retpoline options - Documentation/hw-vuln: Update spectre doc - [x86] speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [x86] speculation: Use generic retpoline by default on AMD - [x86] speculation: Update link to AMD speculation whitepaper - [x86] speculation: Warn about Spectre v2 LFENCE mitigation - [x86] speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT . linux (5.10.92-2) bullseye-security; urgency=high . * lib/iov_iter: initialize "flags" in new pipe_buffer * [x86] mwifiex: Fix skb_over_panic in mwifiex_usb_recv() (CVE-2021-43976) * [x86] drm/i915: Flush TLBs before releasing backing store (CVE-2022-0330) * [x86] drm/vmwgfx: Fix stale file descriptors on failed usercopy (CVE-2022-22942) * NFSv4: Handle case where the lookup of a directory fails (CVE-2022-24448) * yam: fix a memory leak in yam_siocdevprivate() (CVE-2022-24959) * tipc: improve size validations for received domain records (CVE-2022-0435) * [s390x] KVM: s390: Return error on SIDA memop on normal guest (CVE-2022-0516) * USB: gadget: validate interface OS descriptor requests (CVE-2022-25258) * usb: gadget: rndis: check size of RNDIS_MSG_SET command (CVE-2022-25375) linux (5.10.92-2) bullseye-security; urgency=high . * lib/iov_iter: initialize "flags" in new pipe_buffer * [x86] mwifiex: Fix skb_over_panic in mwifiex_usb_recv() (CVE-2021-43976) * [x86] drm/i915: Flush TLBs before releasing backing store (CVE-2022-0330) * [x86] drm/vmwgfx: Fix stale file descriptors on failed usercopy (CVE-2022-22942) * NFSv4: Handle case where the lookup of a directory fails (CVE-2022-24448) * yam: fix a memory leak in yam_siocdevprivate() (CVE-2022-24959) * tipc: improve size validations for received domain records (CVE-2022-0435) * [s390x] KVM: s390: Return error on SIDA memop on normal guest (CVE-2022-0516) * USB: gadget: validate interface OS descriptor requests (CVE-2022-25258) * usb: gadget: rndis: check size of RNDIS_MSG_SET command (CVE-2022-25375) linux (5.10.92-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.85 - usb: gadget: uvc: fix multiple opens - gcc-plugins: simplify GCC plugin-dev capability test - gcc-plugins: fix gcc 11 indigestion with plugins... - HID: quirks: Add quirk for the Microsoft Surface 3 type-cover - HID: add hid_is_usb() function to make it simpler for USB detection - HID: bigbenff: prevent null pointer dereference - HID: wacom: fix problems when device is not a valid USB device - HID: check for valid USB device for many HID drivers - [amd64] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups - [amd64] IB/hfi1: Insure use of smp_processor_id() is preempt disabled - [amd64] IB/hfi1: Fix early init panic - [amd64] IB/hfi1: Fix leak of rcvhdrtail_dummy_kvaddr - can: kvaser_usb: get CAN clock frequency from device - [x86] can: sja1000: fix use after free in ems_pcmcia_add_card() - drm/amdgpu: move iommu_resume before ip init/resume - drm/amdgpu: init iommu after amdkfd device init - nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done - vrf: don't run conntrack on vrf with !dflt qdisc - bpf, x86: Fix "no previous prototype" warning - bpf: Fix the off-by-two error in range markings - ice: ignore dropped packets during init - bonding: make tx_rebalance_counter an atomic - nfp: Fix memory leak in nfp_cpp_area_cache_add() - seg6: fix the iif in the IPv6 socket control block - udp: using datalen to cap max gso segments - netfilter: conntrack: annotate data-races around ct->timeout - iavf: restore MSI state on reset - iavf: Fix reporting when setting descriptor count - [amd64] IB/hfi1: Correct guard on eager buffer deallocation - devlink: fix netns refcount leak in devlink_nl_cmd_reload() - net/sched: fq_pie: prevent dismantle issue - [x86] KVM: x86: Wait for IPIs to be delivered when handling Hyper-V TLB flush hypercall - mm: bdi: initialize bdi_min_ratio when bdi is unregistered - ALSA: hda/realtek - Add headset Mic support for Lenovo ALC897 platform - ALSA: hda/realtek: Fix quirk for TongFang PHxTxX1 - ALSA: pcm: oss: Fix negative period/buffer sizes - ALSA: pcm: oss: Limit the period size to 16MB - ALSA: pcm: oss: Handle missing errors in snd_pcm_oss_change_params*() - scsi: qla2xxx: Format log strings only if needed - btrfs: clear extent buffer uptodate when we fail to write it - btrfs: replace the BUG_ON in btrfs_del_root_ref with proper error handling - md: fix update super 1.0 on rdev size change - nfsd: fix use-after-free due to delegation race (Closes: #988044) - nfsd: Fix nsfd startup race (again) - tracefs: Have new files inherit the ownership of their parent - [arm64] clk: qcom: regmap-mux: fix parent clock lookup - drm/syncobj: Deal with signalled fences in drm_syncobj_find_fence. - [i386] can: pch_can: pch_can_rx_normal: fix use after free - libata: add horkage for ASMedia 1092 - wait: add wake_up_pollfree() - binder: use wake_up_pollfree() - signalfd: use wake_up_pollfree() - aio: keep poll requests on waitqueue until completed - aio: fix use-after-free due to missing POLLFREE handling - [arm64,armhf] net: mvpp2: fix XDP rx queues registering - tracefs: Set all files to the same group ownership as the mount option - block: fix ioprio_get(IOPRIO_WHO_PGRP) vs setuid(2) - scsi: pm80xx: Do not call scsi_remove_host() in pm8001_alloc() - scsi: scsi_debug: Fix buffer size of REPORT ZONES command - qede: validate non LSO skb length - PM: runtime: Fix pm_runtime_active() kerneldoc comment - ASoC: rt5682: Fix crash due to out of scope stack vars - [arm64] RDMA/hns: Do not halt commands during reset until later - [arm64] RDMA/hns: Do not destroy QP resources in the hw resetting phase - i40e: Fix failed opcode appearing if handling messages from VF - i40e: Fix pre-set max number of queues for VF - i40e: Fix NULL pointer dereference in i40e_dbg_dump_desc - [arm64] Revert "PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge" - Documentation/locking/locktypes: Update migrate_disable() bits. - dt-bindings: net: Reintroduce PHY no lane swap binding - net: cdc_ncm: Allow for dwNtbOutMaxSize to be unset or zero - [arm64,armhf] net: fec: only clear interrupt of handling queue in fec_enet_rx_queue() - net, neigh: clear whole pneigh_entry at alloc time - net/qla3xxx: fix an error code in ql_adapter_up() - USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) - USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) - usb: core: config: fix validation of wMaxPacketValue entries - xhci: Remove CONFIG_USB_DEFAULT_PERSIST to prevent xHCI from runtime suspending - usb: core: config: using bit mask instead of individual bits - xhci: avoid race between disable slot command and host runtime suspend - iio: gyro: adxrs290: fix data signedness - iio: trigger: Fix reference counting - iio: stk3310: Don't return error code in interrupt handler - iio: mma8452: Fix trigger reference couting - iio: ltr501: Don't return error code in trigger handler - iio: kxsd9: Don't return error code in trigger handler - iio: itg3200: Call iio_trigger_notify_done() on error - iio: adc: axp20x_adc: fix charging current reporting on AXP22x - iio: ad7768-1: Call iio_trigger_notify_done() on error - iio: accel: kxcjk-1013: Fix possible memory leak in probe and remove - [armhf] irqchip/aspeed-scu: Replace update_bits with write_bits. - [armhf] irqchip/armada-370-xp: Fix return value of armada_370_xp_msi_alloc() - [armhf] irqchip/armada-370-xp: Fix support for Multi-MSI interrupts - [arm64,armhf] irqchip/irq-gic-v3-its.c: Force synchronisation when issuing INVALL - kbuild: simplify GCC_PLUGINS enablement in dummy-tools/gcc - doc: gcc-plugins: update gcc-plugins.rst - MAINTAINERS: adjust GCC PLUGINS after gcc-plugin.sh removal - Documentation/Kbuild: Remove references to gcc-plugin.sh https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.86 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.87 - nfc: fix segfault in nfc_genl_dump_devices_done - [arm64] drm/msm/dsi: set default num_data_lanes - [arm64] KVM: arm64: Save PSTATE early on exit - [arm64] Revert "tty: serial: fsl_lpuart: drop earlycon entry for i.MX8QXP" - net/mlx4_en: Update reported link modes for 1/10G - ALSA: hda: Add Intel DG2 PCI ID and HDMI codec vid - ALSA: hda/hdmi: fix HDA codec entry table order for ADL-P - [arm64,armhf] i2c: rk3x: Handle a spurious start completion interrupt flag - net: netlink: af_netlink: Prevent empty skb by adding a check on len. - [x86] KVM: x86: Ignore sparse banks size for an "all CPUs", non-sparse IPI req - bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc - fuse: make sure reclaim doesn't write the inode - [x86] hwmon: (dell-smm) Fix warning on /proc/i8k creation error - ethtool: do not perform operations on net devices being unregistered - [armel,armhf] memblock: free_unused_memmap: use pageblock units instead of MAX_ORDER - [armel,armhf] memblock: align freed memory map on pageblock boundaries with SPARSEMEM - memblock: ensure there is no overflow in memblock_overlaps_region() - [armel,armhf] arm: extend pfn_valid to take into account freed memory map alignment - [armel,armhf] arm: ioremap: don't abuse pfn_valid() to check if pfn is in RAM https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.88 - KVM: downgrade two BUG_ONs to WARN_ON_ONCE - mac80211: fix regression in SSN handling of addba tx - mac80211: mark TX-during-stop for TX in in_reconfig - mac80211: send ADDBA requests using the tid/queue of the aggregation session - mac80211: validate extended element ID is present - bpf: Fix signed bounds propagation after mov32 - bpf: Make 32->64 bounds propagation slightly more robust - virtio_ring: Fix querying of maximum DMA mapping size for virtio device - dm btree remove: fix use after free in rebalance_children() - audit: improve robustness of the audit queue handling - [arm64] dts: imx8mp-evk: Improve the Ethernet PHY description - [arm64] dts: rockchip: fix rk3308-roc-cc vcc-sd supply - [arm64] dts: rockchip: fix rk3399-leez-p710 vcc3v3-lan supply - mac80211: track only QoS data frames for admission control - ceph: fix duplicate increment of opened_inodes metric - ceph: initialize pathlen variable in reconnect_caps_cb - [armhf] socfpga: dts: fix qspi node compatible - clk: Don't parent clks until the parent is fully registered - [armhf] soc: imx: Register SoC device only on i.MX boards - virtio/vsock: fix the transport to work with VMADDR_CID_ANY - [s390x] kexec_file: fix error handling when applying relocations - sch_cake: do not call cake_destroy() from cake_init() - inet_diag: fix kernel-infoleak for UDP sockets - [arm64] net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net/sched: sch_ets: don't remove idle classes from the round-robin list - drm/ast: potential dereference of null pointer - mac80211: agg-tx: don't schedule_and_wake_txq() under sta->lock - mac80211: fix lookup when adding AddBA extension element - flow_offload: return EOPNOTSUPP for the unsupported mpls action type - rds: memory leak in __rds_conn_create() (CVE-2021-45480) - [arm64,armhf] soc/tegra: fuse: Fix bitwise vs. logical OR warning - igb: Fix removal of unicast MAC filters of VFs - igbvf: fix double free in `igbvf_probe` - igc: Fix typo in i225 LTR functions - ixgbe: Document how to enable NBASE-T support - ixgbe: set X550 MDIO speed before talking to PHY - netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc (CVE-2021-4135) - net/packet: rx_owner_map depends on pg_vec - sfc_ef100: potential dereference of null pointer - net: Fix double 0x prefix print in SKB dump - net/smc: Prevent smc_release() from long blocking - sit: do not call ipip6_dev_free() from sit_init_net() - USB: gadget: bRequestType is a bitfield, not a enum - Revert "usb: early: convert to readl_poll_timeout_atomic()" - [x86] KVM: x86: Drop guest CPUID check for host initiated writes to MSR_IA32_PERF_CAPABILITIES - [x86] tty: n_hdlc: make n_hdlc_tty_wakeup() asynchronous - USB: NO_LPM quirk Lenovo USB-C to Ethernet Adapher(RTL8153-04) - [arm*] usb: dwc2: fix STM ID/VBUS detection startup delay in dwc2_driver_probe - PCI/MSI: Clear PCI_MSIX_FLAGS_MASKALL on error - PCI/MSI: Mask MSI-X vectors only on success - usb: xhci: Extend support for runtime power management for AMD's Yellow carp. - USB: serial: cp210x: fix CP2105 GPIO registration - USB: serial: option: add Telit FN990 compositions - btrfs: fix memory leak in __add_inode_ref() - btrfs: fix double free of anon_dev after failure to create subvolume - zonefs: add MODULE_ALIAS_FS - iocost: Fix divide-by-zero on donation from low hweight cgroup - [x86] serial: 8250_fintek: Fix garbled text for console - timekeeping: Really make sure wall_to_monotonic isn't positive - libata: if T_LENGTH is zero, dma direction should be DMA_NONE - drm/amdgpu: correct register access for RLC_JUMP_TABLE_RESTORE - Input: touchscreen - avoid bitwise vs logical OR warning - xsk: Do not sleep in poll() when need_wakeup set - media: mxl111sf: change mutex_init() location - fuse: annotate lock in fuse_reverse_inval_entry() - ovl: fix warning in ovl_create_real() - scsi: scsi_debug: Don't call kcalloc() if size arg is zero - scsi: scsi_debug: Fix type in min_t to avoid stack OOB - scsi: scsi_debug: Sanity check block descriptor length in resp_mode_select() - rcu: Mark accesses to rcu_state.n_force_qs - [armhf] bus: ti-sysc: Fix variable set but not used warning for reinit_modules - Revert "xsk: Do not sleep in poll() when need_wakeup set" - xen/blkfront: harden blkfront against event channel storms (CVE-2021-28711) - xen/netfront: harden netfront against event channel storms (CVE-2021-28712) - xen/console: harden hvc_xen against event channel storms (CVE-2021-28713) - xen/netback: fix rx queue stall detection (CVE-2021-28714) - xen/netback: don't queue unlimited number of packages (CVE-2021-28715) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.89 - net: usb: lan78xx: add Allied Telesis AT29M2-AF - ext4: prevent partial update of the extent blocks - ext4: check for out-of-order index extents in ext4_valid_extent_entries() - ext4: check for inconsistent extents between index and leaf block - HID: holtek: fix mouse probing - [arm64] dts: allwinner: orangepi-zero-plus: fix PHY mode - [arm64] spi: change clk_disable_unprepare to clk_unprepare - [amd64] IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() - [arm64] RDMA/hns: Replace kfree() with kvfree() - netfilter: fix regression in looped (broad|multi)cast's MAC handling - qlcnic: potential dereference null pointer of rx_queue->page_ring - net: accept UFOv6 packages in virtio_net_hdr_to_skb - net: skip virtio_net_hdr_set_proto if protocol already set - igb: fix deadlock caused by taking RTNL in RPM resume path - ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module - bonding: fix ad_actor_system option setting to default - [amd64] fjes: Check for error irq - [armhf] drivers: net: smc911x: Check for error irq - sfc: Check null pointer of rx_queue->page_ring - sfc: falcon: Check null pointer of rx_queue->page_ring - Input: elantech - fix stack out of bound access in elantech_change_report_id() - [arm*] pinctrl: bcm2835: Change init order for gpio hogs - hwmon: (lm90) Fix usage of CONFIG2 register in detect function - hwmon: (lm90) Add basic support for TI TMP461 - hwmon: (lm90) Introduce flag indicating extended temperature support - hwmon: (lm90) Drop critical attribute support for MAX6654 - ALSA: jack: Check the return value of kstrdup() - ALSA: drivers: opl3: Fix incorrect use of vp->state - ALSA: hda/realtek: Amp init fixup for HP ZBook 15 G6 - ALSA: hda/realtek: Add new alc285-hp-amp-init model - ALSA: hda/realtek: Fix quirk for Clevo NJ51CU - Input: atmel_mxt_ts - fix double free in mxt_read_info_block - ipmi: bail out if init_srcu_struct fails - ipmi: ssif: initialize ssif_info->client early - ipmi: fix initialization when workqueue allocation fails - [arm64] tee: handle lookup of shm with reference count 0 - [x86] pkey: Fix undefined behaviour with PKRU_WD_BIT - [x86] platform/x86: intel_pmc_core: fix memleak on registration failure - [x86] KVM: VMX: Wake vCPU when delivering posted IRQ even if vCPU == this vCPU - [armhf] pinctrl: stm32: consider the GPIO offset to expose all the GPIO lines - [arm64,armhf] mmc: sdhci-tegra: Fix switch to HS400ES mode - mmc: core: Disable card detect during shutdown - [arm64,armhf] mmc: mmci: stm32: clear DLYB_CR after sending tuning command - [armel,armhf] 9169/1: entry: fix Thumb2 bug in iWMMXt exception handling - mac80211: fix locking in ieee80211_start_ap error path - mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() - [arm64] tee: optee: Fix incorrect page free bug - f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() (CVE-2021-45469) - ceph: fix up non-directory creation in SGID directories - usb: gadget: u_ether: fix race in setting MAC address in setup phase - [x86] KVM: VMX: Fix stale docs for kvm-intel.emulate_invalid_guest_state - mm: mempolicy: fix THP allocations escaping mempolicy restrictions - [arm64] Input: elants_i2c - do not check Remark ID on eKTH3900/eKTH5312 - Input: goodix - add id->model mapping for the "9111" model - ASoC: rt5682: fix the wrong jack type detected - hwmom: (lm90) Fix citical alarm status for MAX6680/MAX6681 - hwmon: (lm90) Do not report 'busy' status bit as alarm - ax25: NPD bug when detaching AX25 device - hamradio: defer ax25 kfree after unregister_netdev - hamradio: improve the incomplete fix to avoid NPD - phonet/pep: refuse to enable an unbound pipe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.90 - Input: i8042 - add deferred probe support - Input: i8042 - enable deferred probe quirk for ASUS UM325UA - tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok(). - tomoyo: use hwight16() in tomoyo_domain_quota_is_ok() - [x86] platform/x86: apple-gmux: use resource_size() with res - memblock: fix memblock_phys_alloc() section mismatch error - selinux: initialize proto variable in selinux_ip_postroute_compat() - scsi: lpfc: Terminate string in lpfc_debugfs_nvmeio_trc_write() - net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources - net/mlx5e: Wrap the tx reporter dump callback to extract the sq - net/mlx5e: Fix ICOSQ recovery flow for XSK - udp: using datalen to cap ipv6 udp max gso segments - sctp: use call_rcu to free endpoint - net/smc: fix using of uninitialized completions - net: usb: pegasus: Do not drop long Ethernet frames - net/smc: improved fix wait on already cleared link - net/smc: don't send CDC/LLC message if link not ready - net/smc: fix kernel panic caused by race of smc_sock - igc: Fix TX timestamp support for non-MSI-X platforms - net/mlx5e: Fix wrong features assignment in case of error - [armhf] net/ncsi: check for error return from call to nla_put_u32 - i2c: validate user data in compat ioctl - nfc: uapi: use kernel size_t to fix user-space builds - uapi: fix linux/nfc.h userspace compilation errors - drm/amdgpu: When the VCN(1.0) block is suspended, powergating is explicitly enabled - drm/amdgpu: add support for IP discovery gc_info table v2 - xhci: Fresco FL1100 controller should not have BROKEN_MSI quirk set. - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - [arm*] binder: fix async_free_space accounting for empty parcels - [x86] scsi: vmw_pvscsi: Set residual data length conditionally - Input: appletouch - initialize work before device registration - Input: spaceball - fix parsing of movement data packets - net: fix use-after-free in tw_timer_handler https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.91 - f2fs: quota: fix potential deadlock - tracing: Fix check for trace_percpu_buffer validity in get_trace_buf() - tracing: Tag trace_percpu_buffer as a percpu pointer - ieee802154: atusb: fix uninit value in atusb_set_extended_addr - i40e: Fix to not show opcode msg on unsuccessful VF MAC change - iavf: Fix limit of total number of queues to active queues of VF - RDMA/core: Don't infoleak GRH fields - netrom: fix copying in user data in nr_setsockopt - RDMA/uverbs: Check for null return of kmalloc_array - mac80211: initialize variable have_higher_than_11mbit - sfc: The RX page_ring is optional - i40e: fix use-after-free in i40e_sync_filters_subtask() - i40e: Fix for displaying message regarding NVM version - i40e: Fix incorrect netdev's real number of RX/TX queues - ipv4: Check attribute length for RTA_GATEWAY in multipath route - ipv4: Check attribute length for RTA_FLOW in multipath route - ipv6: Check attribute length for RTA_GATEWAY in multipath route - ipv6: Check attribute length for RTA_GATEWAY when deleting multipath route - lwtunnel: Validate RTA_ENCAP_TYPE attribute length - batman-adv: mcast: don't send link-local multicast to mcast routers - sch_qfq: prevent shift-out-of-bounds in qfq_init_qdisc - net: ena: Fix undefined state when tx request id is out of bounds - net: ena: Fix error handling when calculating max IO queues number - xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (CVE-2021-4155) - power: supply: core: Break capacity loop - rndis_host: support Hytera digital radios - phonet: refcount leak in pep_sock_accep (CVE-2021-45095) - ipv6: Continue processing multipath route even if gateway attribute is invalid - ipv6: Do cleanup if attribute validation fails in multipath route - scsi: libiscsi: Fix UAF in iscsi_conn_get_param()/iscsi_conn_teardown() - ip6_vti: initialize __ip6_tnl_parm struct in vti6_siocdevprivate - net: udp: fix alignment problem in udp4_seq_show() - [amd64,arm64] atlantic: Fix buff_ring OOB in aq_ring_rx_clean - mISDN: change function names to avoid conflicts - drm/amd/display: Added power down for DCN10 - ipv6: raw: check passed optlen before reading https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.92 - md: revert io stats accounting - workqueue: Fix unbind_workers() VS wq_worker_running() race - bpf: Fix out of bounds access from invalid *_or_null type verification (CVE-2022-23222) - Bluetooth: btusb: fix memory leak in btusb_mtk_submit_wmt_recv_urb() - Bluetooth: btusb: Add two more Bluetooth parts for WCN6855 - Bluetooth: btusb: Add support for Foxconn MT7922A - Bluetooth: btusb: Add support for Foxconn QCA 0xe0d0 - Bluetooth: bfusb: fix division by zero in send path - [armhf] dts: exynos: Fix BCM4330 Bluetooth reset polarity in I9100 - USB: core: Fix bug in resuming hub's handling of wakeup requests - USB: Fix "slab-out-of-bounds Write" bug in usb_hcd_poll_rh_status - ath11k: Fix buffer overflow when scanning with extraie - mmc: sdhci-pci: Add PCI ID for Intel ADL - veth: Do not record rx queue hint in veth_xmit - [x86] mfd: intel-lpss: Fix too early PM enablement in the ACPI ->probe() - can: gs_usb: fix use of uninitialized variable, detach device on reception of invalid USB data - can: isotp: convert struct tpcon::{idx,len} to unsigned int - can: gs_usb: gs_can_start_xmit(): zero-initialize hf->{flags,reserved} - random: fix data race on crng_node_pool - random: fix data race on crng init time - random: fix crash on multiple early calls to add_bootloader_randomness() - media: Revert "media: uvcvideo: Set unique vdev name based in type" - [x86] drm/i915: Avoid bitwise vs logical OR warning in snb_wm_latency_quirk() . [ Salvatore Bonaccorso ] * [arm64] drivers/net/ethernet/google: Enable GVE as module (Closes: #996974) * Refresh "Export symbols needed by Android drivers" * [rt] Update to 5.10.87-rt59 * Bump ABI to 11 * [rt] Update to 5.10.90-rt60 * vfs: fs_context: fix up param length parsing in legacy_parse_param (CVE-2022-0185) . [ Andrew Balmos ] * net/can: Enable CONFIG_CAN_MCP251X as module . [ Cyril Brulebois ] * arm64: dts: Add support for Raspberry Pi Compute Module 4 IO Board, producing a DTB that's almost entirely identical to what a v5.16-rc8 build produces, with lots of thanks to Uwe Kleine-König for the heavy lifting! linux (5.10.92-1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports: - Change ABI number to 0.bpo.11 . linux (5.10.92-1) bullseye-security; urgency=high . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.85 - usb: gadget: uvc: fix multiple opens - gcc-plugins: simplify GCC plugin-dev capability test - gcc-plugins: fix gcc 11 indigestion with plugins... - HID: quirks: Add quirk for the Microsoft Surface 3 type-cover - HID: add hid_is_usb() function to make it simpler for USB detection - HID: bigbenff: prevent null pointer dereference - HID: wacom: fix problems when device is not a valid USB device - HID: check for valid USB device for many HID drivers - [amd64] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups - [amd64] IB/hfi1: Insure use of smp_processor_id() is preempt disabled - [amd64] IB/hfi1: Fix early init panic - [amd64] IB/hfi1: Fix leak of rcvhdrtail_dummy_kvaddr - can: kvaser_usb: get CAN clock frequency from device - [x86] can: sja1000: fix use after free in ems_pcmcia_add_card() - drm/amdgpu: move iommu_resume before ip init/resume - drm/amdgpu: init iommu after amdkfd device init - nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done - vrf: don't run conntrack on vrf with !dflt qdisc - bpf, x86: Fix "no previous prototype" warning - bpf: Fix the off-by-two error in range markings - ice: ignore dropped packets during init - bonding: make tx_rebalance_counter an atomic - nfp: Fix memory leak in nfp_cpp_area_cache_add() - seg6: fix the iif in the IPv6 socket control block - udp: using datalen to cap max gso segments - netfilter: conntrack: annotate data-races around ct->timeout - iavf: restore MSI state on reset - iavf: Fix reporting when setting descriptor count - [amd64] IB/hfi1: Correct guard on eager buffer deallocation - devlink: fix netns refcount leak in devlink_nl_cmd_reload() - net/sched: fq_pie: prevent dismantle issue - [x86] KVM: x86: Wait for IPIs to be delivered when handling Hyper-V TLB flush hypercall - mm: bdi: initialize bdi_min_ratio when bdi is unregistered - ALSA: hda/realtek - Add headset Mic support for Lenovo ALC897 platform - ALSA: hda/realtek: Fix quirk for TongFang PHxTxX1 - ALSA: pcm: oss: Fix negative period/buffer sizes - ALSA: pcm: oss: Limit the period size to 16MB - ALSA: pcm: oss: Handle missing errors in snd_pcm_oss_change_params*() - scsi: qla2xxx: Format log strings only if needed - btrfs: clear extent buffer uptodate when we fail to write it - btrfs: replace the BUG_ON in btrfs_del_root_ref with proper error handling - md: fix update super 1.0 on rdev size change - nfsd: fix use-after-free due to delegation race (Closes: #988044) - nfsd: Fix nsfd startup race (again) - tracefs: Have new files inherit the ownership of their parent - [arm64] clk: qcom: regmap-mux: fix parent clock lookup - drm/syncobj: Deal with signalled fences in drm_syncobj_find_fence. - [i386] can: pch_can: pch_can_rx_normal: fix use after free - libata: add horkage for ASMedia 1092 - wait: add wake_up_pollfree() - binder: use wake_up_pollfree() - signalfd: use wake_up_pollfree() - aio: keep poll requests on waitqueue until completed - aio: fix use-after-free due to missing POLLFREE handling - [arm64,armhf] net: mvpp2: fix XDP rx queues registering - tracefs: Set all files to the same group ownership as the mount option - block: fix ioprio_get(IOPRIO_WHO_PGRP) vs setuid(2) - scsi: pm80xx: Do not call scsi_remove_host() in pm8001_alloc() - scsi: scsi_debug: Fix buffer size of REPORT ZONES command - qede: validate non LSO skb length - PM: runtime: Fix pm_runtime_active() kerneldoc comment - ASoC: rt5682: Fix crash due to out of scope stack vars - [arm64] RDMA/hns: Do not halt commands during reset until later - [arm64] RDMA/hns: Do not destroy QP resources in the hw resetting phase - i40e: Fix failed opcode appearing if handling messages from VF - i40e: Fix pre-set max number of queues for VF - i40e: Fix NULL pointer dereference in i40e_dbg_dump_desc - [arm64] Revert "PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge" - Documentation/locking/locktypes: Update migrate_disable() bits. - dt-bindings: net: Reintroduce PHY no lane swap binding - net: cdc_ncm: Allow for dwNtbOutMaxSize to be unset or zero - [arm64,armhf] net: fec: only clear interrupt of handling queue in fec_enet_rx_queue() - net, neigh: clear whole pneigh_entry at alloc time - net/qla3xxx: fix an error code in ql_adapter_up() - USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) - USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) - usb: core: config: fix validation of wMaxPacketValue entries - xhci: Remove CONFIG_USB_DEFAULT_PERSIST to prevent xHCI from runtime suspending - usb: core: config: using bit mask instead of individual bits - xhci: avoid race between disable slot command and host runtime suspend - iio: gyro: adxrs290: fix data signedness - iio: trigger: Fix reference counting - iio: stk3310: Don't return error code in interrupt handler - iio: mma8452: Fix trigger reference couting - iio: ltr501: Don't return error code in trigger handler - iio: kxsd9: Don't return error code in trigger handler - iio: itg3200: Call iio_trigger_notify_done() on error - iio: adc: axp20x_adc: fix charging current reporting on AXP22x - iio: ad7768-1: Call iio_trigger_notify_done() on error - iio: accel: kxcjk-1013: Fix possible memory leak in probe and remove - [armhf] irqchip/aspeed-scu: Replace update_bits with write_bits. - [armhf] irqchip/armada-370-xp: Fix return value of armada_370_xp_msi_alloc() - [armhf] irqchip/armada-370-xp: Fix support for Multi-MSI interrupts - [arm64,armhf] irqchip/irq-gic-v3-its.c: Force synchronisation when issuing INVALL - kbuild: simplify GCC_PLUGINS enablement in dummy-tools/gcc - doc: gcc-plugins: update gcc-plugins.rst - MAINTAINERS: adjust GCC PLUGINS after gcc-plugin.sh removal - Documentation/Kbuild: Remove references to gcc-plugin.sh https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.86 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.87 - nfc: fix segfault in nfc_genl_dump_devices_done - [arm64] drm/msm/dsi: set default num_data_lanes - [arm64] KVM: arm64: Save PSTATE early on exit - [arm64] Revert "tty: serial: fsl_lpuart: drop earlycon entry for i.MX8QXP" - net/mlx4_en: Update reported link modes for 1/10G - ALSA: hda: Add Intel DG2 PCI ID and HDMI codec vid - ALSA: hda/hdmi: fix HDA codec entry table order for ADL-P - [arm64,armhf] i2c: rk3x: Handle a spurious start completion interrupt flag - net: netlink: af_netlink: Prevent empty skb by adding a check on len. - [x86] KVM: x86: Ignore sparse banks size for an "all CPUs", non-sparse IPI req - bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc - fuse: make sure reclaim doesn't write the inode - [x86] hwmon: (dell-smm) Fix warning on /proc/i8k creation error - ethtool: do not perform operations on net devices being unregistered - [armel,armhf] memblock: free_unused_memmap: use pageblock units instead of MAX_ORDER - [armel,armhf] memblock: align freed memory map on pageblock boundaries with SPARSEMEM - memblock: ensure there is no overflow in memblock_overlaps_region() - [armel,armhf] arm: extend pfn_valid to take into account freed memory map alignment - [armel,armhf] arm: ioremap: don't abuse pfn_valid() to check if pfn is in RAM https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.88 - KVM: downgrade two BUG_ONs to WARN_ON_ONCE - mac80211: fix regression in SSN handling of addba tx - mac80211: mark TX-during-stop for TX in in_reconfig - mac80211: send ADDBA requests using the tid/queue of the aggregation session - mac80211: validate extended element ID is present - bpf: Fix signed bounds propagation after mov32 - bpf: Make 32->64 bounds propagation slightly more robust - virtio_ring: Fix querying of maximum DMA mapping size for virtio device - dm btree remove: fix use after free in rebalance_children() - audit: improve robustness of the audit queue handling - [arm64] dts: imx8mp-evk: Improve the Ethernet PHY description - [arm64] dts: rockchip: fix rk3308-roc-cc vcc-sd supply - [arm64] dts: rockchip: fix rk3399-leez-p710 vcc3v3-lan supply - mac80211: track only QoS data frames for admission control - ceph: fix duplicate increment of opened_inodes metric - ceph: initialize pathlen variable in reconnect_caps_cb - [armhf] socfpga: dts: fix qspi node compatible - clk: Don't parent clks until the parent is fully registered - [armhf] soc: imx: Register SoC device only on i.MX boards - virtio/vsock: fix the transport to work with VMADDR_CID_ANY - [s390x] kexec_file: fix error handling when applying relocations - sch_cake: do not call cake_destroy() from cake_init() - inet_diag: fix kernel-infoleak for UDP sockets - [arm64] net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net/sched: sch_ets: don't remove idle classes from the round-robin list - drm/ast: potential dereference of null pointer - mac80211: agg-tx: don't schedule_and_wake_txq() under sta->lock - mac80211: fix lookup when adding AddBA extension element - flow_offload: return EOPNOTSUPP for the unsupported mpls action type - rds: memory leak in __rds_conn_create() (CVE-2021-45480) - [arm64,armhf] soc/tegra: fuse: Fix bitwise vs. logical OR warning - igb: Fix removal of unicast MAC filters of VFs - igbvf: fix double free in `igbvf_probe` - igc: Fix typo in i225 LTR functions - ixgbe: Document how to enable NBASE-T support - ixgbe: set X550 MDIO speed before talking to PHY - netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc (CVE-2021-4135) - net/packet: rx_owner_map depends on pg_vec - sfc_ef100: potential dereference of null pointer - net: Fix double 0x prefix print in SKB dump - net/smc: Prevent smc_release() from long blocking - sit: do not call ipip6_dev_free() from sit_init_net() - USB: gadget: bRequestType is a bitfield, not a enum - Revert "usb: early: convert to readl_poll_timeout_atomic()" - [x86] KVM: x86: Drop guest CPUID check for host initiated writes to MSR_IA32_PERF_CAPABILITIES - [x86] tty: n_hdlc: make n_hdlc_tty_wakeup() asynchronous - USB: NO_LPM quirk Lenovo USB-C to Ethernet Adapher(RTL8153-04) - [arm*] usb: dwc2: fix STM ID/VBUS detection startup delay in dwc2_driver_probe - PCI/MSI: Clear PCI_MSIX_FLAGS_MASKALL on error - PCI/MSI: Mask MSI-X vectors only on success - usb: xhci: Extend support for runtime power management for AMD's Yellow carp. - USB: serial: cp210x: fix CP2105 GPIO registration - USB: serial: option: add Telit FN990 compositions - btrfs: fix memory leak in __add_inode_ref() - btrfs: fix double free of anon_dev after failure to create subvolume - zonefs: add MODULE_ALIAS_FS - iocost: Fix divide-by-zero on donation from low hweight cgroup - [x86] serial: 8250_fintek: Fix garbled text for console - timekeeping: Really make sure wall_to_monotonic isn't positive - libata: if T_LENGTH is zero, dma direction should be DMA_NONE - drm/amdgpu: correct register access for RLC_JUMP_TABLE_RESTORE - Input: touchscreen - avoid bitwise vs logical OR warning - xsk: Do not sleep in poll() when need_wakeup set - media: mxl111sf: change mutex_init() location - fuse: annotate lock in fuse_reverse_inval_entry() - ovl: fix warning in ovl_create_real() - scsi: scsi_debug: Don't call kcalloc() if size arg is zero - scsi: scsi_debug: Fix type in min_t to avoid stack OOB - scsi: scsi_debug: Sanity check block descriptor length in resp_mode_select() - rcu: Mark accesses to rcu_state.n_force_qs - [armhf] bus: ti-sysc: Fix variable set but not used warning for reinit_modules - Revert "xsk: Do not sleep in poll() when need_wakeup set" - xen/blkfront: harden blkfront against event channel storms (CVE-2021-28711) - xen/netfront: harden netfront against event channel storms (CVE-2021-28712) - xen/console: harden hvc_xen against event channel storms (CVE-2021-28713) - xen/netback: fix rx queue stall detection (CVE-2021-28714) - xen/netback: don't queue unlimited number of packages (CVE-2021-28715) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.89 - net: usb: lan78xx: add Allied Telesis AT29M2-AF - ext4: prevent partial update of the extent blocks - ext4: check for out-of-order index extents in ext4_valid_extent_entries() - ext4: check for inconsistent extents between index and leaf block - HID: holtek: fix mouse probing - [arm64] dts: allwinner: orangepi-zero-plus: fix PHY mode - [arm64] spi: change clk_disable_unprepare to clk_unprepare - [amd64] IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() - [arm64] RDMA/hns: Replace kfree() with kvfree() - netfilter: fix regression in looped (broad|multi)cast's MAC handling - qlcnic: potential dereference null pointer of rx_queue->page_ring - net: accept UFOv6 packages in virtio_net_hdr_to_skb - net: skip virtio_net_hdr_set_proto if protocol already set - igb: fix deadlock caused by taking RTNL in RPM resume path - ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module - bonding: fix ad_actor_system option setting to default - [amd64] fjes: Check for error irq - [armhf] drivers: net: smc911x: Check for error irq - sfc: Check null pointer of rx_queue->page_ring - sfc: falcon: Check null pointer of rx_queue->page_ring - Input: elantech - fix stack out of bound access in elantech_change_report_id() - [arm*] pinctrl: bcm2835: Change init order for gpio hogs - hwmon: (lm90) Fix usage of CONFIG2 register in detect function - hwmon: (lm90) Add basic support for TI TMP461 - hwmon: (lm90) Introduce flag indicating extended temperature support - hwmon: (lm90) Drop critical attribute support for MAX6654 - ALSA: jack: Check the return value of kstrdup() - ALSA: drivers: opl3: Fix incorrect use of vp->state - ALSA: hda/realtek: Amp init fixup for HP ZBook 15 G6 - ALSA: hda/realtek: Add new alc285-hp-amp-init model - ALSA: hda/realtek: Fix quirk for Clevo NJ51CU - Input: atmel_mxt_ts - fix double free in mxt_read_info_block - ipmi: bail out if init_srcu_struct fails - ipmi: ssif: initialize ssif_info->client early - ipmi: fix initialization when workqueue allocation fails - [arm64] tee: handle lookup of shm with reference count 0 - [x86] pkey: Fix undefined behaviour with PKRU_WD_BIT - [x86] platform/x86: intel_pmc_core: fix memleak on registration failure - [x86] KVM: VMX: Wake vCPU when delivering posted IRQ even if vCPU == this vCPU - [armhf] pinctrl: stm32: consider the GPIO offset to expose all the GPIO lines - [arm64,armhf] mmc: sdhci-tegra: Fix switch to HS400ES mode - mmc: core: Disable card detect during shutdown - [arm64,armhf] mmc: mmci: stm32: clear DLYB_CR after sending tuning command - [armel,armhf] 9169/1: entry: fix Thumb2 bug in iWMMXt exception handling - mac80211: fix locking in ieee80211_start_ap error path - mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() - [arm64] tee: optee: Fix incorrect page free bug - f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() (CVE-2021-45469) - ceph: fix up non-directory creation in SGID directories - usb: gadget: u_ether: fix race in setting MAC address in setup phase - [x86] KVM: VMX: Fix stale docs for kvm-intel.emulate_invalid_guest_state - mm: mempolicy: fix THP allocations escaping mempolicy restrictions - [arm64] Input: elants_i2c - do not check Remark ID on eKTH3900/eKTH5312 - Input: goodix - add id->model mapping for the "9111" model - ASoC: rt5682: fix the wrong jack type detected - hwmom: (lm90) Fix citical alarm status for MAX6680/MAX6681 - hwmon: (lm90) Do not report 'busy' status bit as alarm - ax25: NPD bug when detaching AX25 device - hamradio: defer ax25 kfree after unregister_netdev - hamradio: improve the incomplete fix to avoid NPD - phonet/pep: refuse to enable an unbound pipe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.90 - Input: i8042 - add deferred probe support - Input: i8042 - enable deferred probe quirk for ASUS UM325UA - tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok(). - tomoyo: use hwight16() in tomoyo_domain_quota_is_ok() - [x86] platform/x86: apple-gmux: use resource_size() with res - memblock: fix memblock_phys_alloc() section mismatch error - selinux: initialize proto variable in selinux_ip_postroute_compat() - scsi: lpfc: Terminate string in lpfc_debugfs_nvmeio_trc_write() - net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources - net/mlx5e: Wrap the tx reporter dump callback to extract the sq - net/mlx5e: Fix ICOSQ recovery flow for XSK - udp: using datalen to cap ipv6 udp max gso segments - sctp: use call_rcu to free endpoint - net/smc: fix using of uninitialized completions - net: usb: pegasus: Do not drop long Ethernet frames - net/smc: improved fix wait on already cleared link - net/smc: don't send CDC/LLC message if link not ready - net/smc: fix kernel panic caused by race of smc_sock - igc: Fix TX timestamp support for non-MSI-X platforms - net/mlx5e: Fix wrong features assignment in case of error - [armhf] net/ncsi: check for error return from call to nla_put_u32 - i2c: validate user data in compat ioctl - nfc: uapi: use kernel size_t to fix user-space builds - uapi: fix linux/nfc.h userspace compilation errors - drm/amdgpu: When the VCN(1.0) block is suspended, powergating is explicitly enabled - drm/amdgpu: add support for IP discovery gc_info table v2 - xhci: Fresco FL1100 controller should not have BROKEN_MSI quirk set. - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - [arm*] binder: fix async_free_space accounting for empty parcels - [x86] scsi: vmw_pvscsi: Set residual data length conditionally - Input: appletouch - initialize work before device registration - Input: spaceball - fix parsing of movement data packets - net: fix use-after-free in tw_timer_handler https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.91 - f2fs: quota: fix potential deadlock - tracing: Fix check for trace_percpu_buffer validity in get_trace_buf() - tracing: Tag trace_percpu_buffer as a percpu pointer - ieee802154: atusb: fix uninit value in atusb_set_extended_addr - i40e: Fix to not show opcode msg on unsuccessful VF MAC change - iavf: Fix limit of total number of queues to active queues of VF - RDMA/core: Don't infoleak GRH fields - netrom: fix copying in user data in nr_setsockopt - RDMA/uverbs: Check for null return of kmalloc_array - mac80211: initialize variable have_higher_than_11mbit - sfc: The RX page_ring is optional - i40e: fix use-after-free in i40e_sync_filters_subtask() - i40e: Fix for displaying message regarding NVM version - i40e: Fix incorrect netdev's real number of RX/TX queues - ipv4: Check attribute length for RTA_GATEWAY in multipath route - ipv4: Check attribute length for RTA_FLOW in multipath route - ipv6: Check attribute length for RTA_GATEWAY in multipath route - ipv6: Check attribute length for RTA_GATEWAY when deleting multipath route - lwtunnel: Validate RTA_ENCAP_TYPE attribute length - batman-adv: mcast: don't send link-local multicast to mcast routers - sch_qfq: prevent shift-out-of-bounds in qfq_init_qdisc - net: ena: Fix undefined state when tx request id is out of bounds - net: ena: Fix error handling when calculating max IO queues number - xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (CVE-2021-4155) - power: supply: core: Break capacity loop - rndis_host: support Hytera digital radios - phonet: refcount leak in pep_sock_accep (CVE-2021-45095) - ipv6: Continue processing multipath route even if gateway attribute is invalid - ipv6: Do cleanup if attribute validation fails in multipath route - scsi: libiscsi: Fix UAF in iscsi_conn_get_param()/iscsi_conn_teardown() - ip6_vti: initialize __ip6_tnl_parm struct in vti6_siocdevprivate - net: udp: fix alignment problem in udp4_seq_show() - [amd64,arm64] atlantic: Fix buff_ring OOB in aq_ring_rx_clean - mISDN: change function names to avoid conflicts - drm/amd/display: Added power down for DCN10 - ipv6: raw: check passed optlen before reading https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.92 - md: revert io stats accounting - workqueue: Fix unbind_workers() VS wq_worker_running() race - bpf: Fix out of bounds access from invalid *_or_null type verification (CVE-2022-23222) - Bluetooth: btusb: fix memory leak in btusb_mtk_submit_wmt_recv_urb() - Bluetooth: btusb: Add two more Bluetooth parts for WCN6855 - Bluetooth: btusb: Add support for Foxconn MT7922A - Bluetooth: btusb: Add support for Foxconn QCA 0xe0d0 - Bluetooth: bfusb: fix division by zero in send path - [armhf] dts: exynos: Fix BCM4330 Bluetooth reset polarity in I9100 - USB: core: Fix bug in resuming hub's handling of wakeup requests - USB: Fix "slab-out-of-bounds Write" bug in usb_hcd_poll_rh_status - ath11k: Fix buffer overflow when scanning with extraie - mmc: sdhci-pci: Add PCI ID for Intel ADL - veth: Do not record rx queue hint in veth_xmit - [x86] mfd: intel-lpss: Fix too early PM enablement in the ACPI ->probe() - can: gs_usb: fix use of uninitialized variable, detach device on reception of invalid USB data - can: isotp: convert struct tpcon::{idx,len} to unsigned int - can: gs_usb: gs_can_start_xmit(): zero-initialize hf->{flags,reserved} - random: fix data race on crng_node_pool - random: fix data race on crng init time - random: fix crash on multiple early calls to add_bootloader_randomness() - media: Revert "media: uvcvideo: Set unique vdev name based in type" - [x86] drm/i915: Avoid bitwise vs logical OR warning in snb_wm_latency_quirk() . [ Salvatore Bonaccorso ] * [arm64] drivers/net/ethernet/google: Enable GVE as module (Closes: #996974) * Refresh "Export symbols needed by Android drivers" * [rt] Update to 5.10.87-rt59 * Bump ABI to 11 * [rt] Update to 5.10.90-rt60 * vfs: fs_context: fix up param length parsing in legacy_parse_param (CVE-2022-0185) . [ Andrew Balmos ] * net/can: Enable CONFIG_CAN_MCP251X as module . [ Cyril Brulebois ] * arm64: dts: Add support for Raspberry Pi Compute Module 4 IO Board, producing a DTB that's almost entirely identical to what a v5.16-rc8 build produces, with lots of thanks to Uwe Kleine-König for the heavy lifting! . linux (5.10.84-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.71 - tty: Fix out-of-bound vmalloc access in imageblit - cpufreq: schedutil: Use kobject release() method to free sugov_tunables - scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS - cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory - ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. - [amd64,arm64] ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect - fs-verity: fix signed integer overflow with i_size near S64_MAX - hwmon: (tmp421) handle I2C errors - hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field - [arm64,armhf] gpio: pca953x: do not ignore i2c errors - scsi: ufs: Fix illegal offset in UPIU event trace - mac80211: fix use-after-free in CCMP/GCMP RX - [x86] kvmclock: Move this_cpu_pvti into kvmclock.h - [x86] KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() - [x86] KVM: x86: nSVM: don't copy virt_ext from vmcb12 - [x86] KVM: nVMX: Filter out all unsupported controls when eVMCS was activated - KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest - RDMA/cma: Do not change route.addr.src_addr.ss_family - drm/amd/display: Pass PCI deviceid into DC - drm/amdgpu: correct initial cp_hqd_quantum for gfx9 - ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 - bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog - IB/cma: Do not send IGMP leaves for sendonly Multicast groups - RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure - mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug - mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap - mac80211: mesh: fix potentially unaligned access - mac80211-hwsim: fix late beacon hrtimer handling - sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb - hwmon: (tmp421) report /PVLD condition as fault - hwmon: (tmp421) fix rounding for negative values - [arm64] net: enetc: fix the incorrect clearing of IF_MODE bits - net: ipv4: Fix rtnexthop len when RTA_FLOW is present - smsc95xx: fix stalled rx after link change - [x86] drm/i915/request: fix early tracepoints - [arm64,armhf] dsa: mv88e6xxx: 6161: Use chip wide MAX MTU - [arm64,armhf] dsa: mv88e6xxx: Fix MTU definition - [arm64,armhf] dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports - e100: fix length calculation in e100_get_regs_len - e100: fix buffer overrun in e100_get_regs - [arm64] RDMA/hns: Fix inaccurate prints - bpf: Exempt CAP_BPF from checks against bpf_jit_limit - Revert "block, bfq: honor already-setup queue merges" - scsi: csiostor: Add module softdep on cxgb4 - ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup - [arm64] net: hns3: do not allow call hns3_nic_net_open repeatedly - [arm64] net: hns3: keep MAC pause mode when multiple TCs are enabled - [arm64] net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE - [arm64] net: hns3: fix show wrong state when add existing uc mac address - [arm64] net: hns3: fix prototype warning - [arm64] net: hns3: reconstruct function hns3_self_test - [arm64] net: hns3: fix always enable rx vlan filter problem after selftest - [arm64,armhf] net: phy: bcm7xxx: Fixed indirect MMD operations - net: sched: flower: protect fl_walk() with rcu - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses - [x86] perf/x86/intel: Update event constraints for ICX - nvme: add command id quirk for apple controllers - elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings - debugfs: debugfs_create_file_size(): use IS_ERR to check for error - ext4: fix loff_t overflow in ext4_max_bitmap_size() - ext4: limit the number of blocks in one ADD_RANGE TLV (Closes: #995425) - ext4: fix reserved space counter leakage - ext4: add error checking to ext4_ext_replay_set_iblocks() - ext4: fix potential infinite loop in ext4_dx_readdir() - HID: u2fzero: ignore incomplete packets without data - net: udp: annotate data race around udp_sk(sk)->corkflag - ASoC: dapm: use component prefix when checking widget names - usb: hso: remove the bailout parameter - [x86] crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744, CVE-2021-3764) - HID: betop: fix slab-out-of-bounds Write in betop_probe - netfilter: ipset: Fix oversized kvmalloc() calls - mm: don't allow oversized kvmalloc() calls - HID: usbhid: free raw_report buffers in usbhid_stop - [x86] KVM: x86: Handle SRCU initialization failure during page track init - netfilter: conntrack: serialize hash resizes and cleanups - netfilter: nf_tables: Fix oversized kvmalloc() calls https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.72 - [arm64,armhf] spi: rockchip: handle zero length transfers without timing out - nfsd: back channel stuck in SEQ4_STATUS_CB_PATH_DOWN - btrfs: replace BUG_ON() in btrfs_csum_one_bio() with proper error handling - btrfs: fix mount failure due to past and transient device flush error - net: mdio: introduce a shutdown method to mdio device drivers - xen-netback: correct success/error reporting for the SKB-with-fraglist case - scsi: sd: Free scsi_disk device via put_device() - [arm*] usb: dwc2: check return value after calling platform_get_resource() - nvme-fc: update hardware queues before using them - nvme-fc: avoid race between time out and tear down - [arm64] thermal/drivers/tsens: Fix wrong check for tzd in irq handlers - scsi: ses: Retry failed Send/Receive Diagnostic commands - [arm64,armhf] irqchip/gic: Work around broken Renesas integration - smb3: correct smb3 ACL security descriptor - KVM: do not shrink halt_poll_ns below grow_start - [x86] kvm: Add AMD PMU MSRs to msrs_to_save_all[] - [x86] KVM: nSVM: restore int_vector in svm_clear_vintr - [x86] perf/x86: Reset destroy callback on event init failure - libata: Add ATA_HORKAGE_NO_NCQ_ON_ATI for Samsung 860 and 870 SSD. https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73 - [arm64,armhf] usb: chipidea: ci_hdrc_imx: Also search for 'phys' phandle - USB: cdc-acm: fix racy tty buffer accesses - USB: cdc-acm: fix break reporting - usb: typec: tcpm: handle SRC_STARTUP state if cc changes - drm/nouveau/kms/tu102-: delay enabling cursor until after assign_windows - xen/privcmd: fix error handling in mmap-resource processing - [arm64] mmc: meson-gx: do not use memcpy_to/fromio for dram-access-quirk - ovl: fix missing negative dentry check in ovl_rename() (CVE-2021-20321) - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - nfsd: fix error handling of register_pernet_subsys() in init_nfsd() - nfsd4: Handle the NFSv4 READDIR 'dircount' hint being zero - SUNRPC: fix sign error causing rpcsec_gss drops - xen/balloon: fix cancelled balloon action - [armhf] dts: omap3430-sdp: Fix NAND device node - [armhf] bus: ti-sysc: Add break in switch statement in sysc_init_soc() - [arm64] soc: qcom: mdt_loader: Drop PT_LOAD check on hash segment - [armhf] dts: imx: Add missing pinctrl-names for panel on M53Menlo - [armhf] dts: imx: Fix USB host power regulator polarity on M53Menlo - [amd64] PCI: hv: Fix sleep while in non-sleep context when removing child devices from the bus - iwlwifi: pcie: add configuration of a Wi-Fi adapter on Dell XPS 15 - [armel,armhf] bpf, arm: Fix register clobbering in div/mod implementation - [armhf] soc: ti: omap-prm: Fix external abort for am335x pruss - bpf: Fix integer overflow in prealloc_elems_and_freelist() (CVE-2021-41864) - net/mlx5e: IPSEC RX, enable checksum complete - net/mlx5: E-Switch, Fix double allocation of acl flow counter - phy: mdio: fix memory leak - net_sched: fix NULL deref in fifo_set_limit() - [i386] ptp_pch: Load module automatically if ID matches - [armhf] imx6: disable the GIC CPU interface before calling stby-poweroff sequence - net: bridge: use nla_total_size_64bit() in br_get_linkxstats_size() - net: bridge: fix under estimation in br_get_linkxstats_size() - net/sched: sch_taprio: properly cancel timer from taprio_destroy() - net: sfp: Fix typo in state machine debug string - netlink: annotate data races around nlk->bound - perf jevents: Tidy error handling - [armhf] bus: ti-sysc: Use CLKDM_NOAUTO for dra7 dcan1 for errata i893 - [arm64,armhf] drm/sun4i: dw-hdmi: Fix HDMI PHY clock setup - drm/nouveau: avoid a use-after-free when BO init fails - drm/nouveau/kms/nv50-: fix file release memory leak - drm/nouveau/debugfs: fix file release memory leak - [amd64] gve: Correct available tx qpl check - [amd64] gve: Avoid freeing NULL pointer - rtnetlink: fix if_nlmsg_stats_size() under estimation - [amd64] gve: fix gve_get_stats() - [amd64] gve: report 64bit tx_bytes counter from gve_handle_report_stats() - i40e: fix endless loop under rtnl - i40e: Fix freeing of uninitialized misc IRQ vector - net: prefer socket bound to interface when not in VRF - [powerpc*] iommu: Report the correct most efficient DMA mask for PCI devices - i2c: acpi: fix resource leak in reconfiguration device addition - [s390x] bpf, s390: Fix potential memory leak about jit_data - [powerpc*] bpf: Fix BPF_SUB when imm == 0x80000000 - [powerpc*] pseries/eeh: Fix the kdump kernel crash during eeh_pseries_init - [i386] x86/platform/olpc: Correct ifdef symbol to intended CONFIG_OLPC_XO15_SCI - [x86] entry: Correct reference to intended CONFIG_64_BIT - [x86] hpet: Use another crystalball to evaluate HPET usability https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.74 - ext4: check and update i_disksize properly - ext4: correct the error path of ext4_write_inline_data_end() - [x86] ASoC: Intel: sof_sdw: tag SoundWire BEs as non-atomic - HID: apple: Fix logical maximum and usage maximum of Magic Keyboard JIS - netfilter: ip6_tables: zero-initialize fragment offset - HID: wacom: Add new Intuos BT (CTL-4100WL/CTL-6100WL) device IDs - [x86] ASoC: SOF: loader: release_firmware() on load failure to avoid batching - netfilter: nf_nat_masquerade: make async masq_inet6_event handling generic - netfilter: nf_nat_masquerade: defer conntrack walk to work queue - mac80211: Drop frames from invalid MAC address in ad-hoc mode - net: prevent user from passing illegal stab size - mac80211: check return value of rhashtable_init - [x86] vboxfs: fix broken legacy mount signature checking - drm/amdgpu: fix gart.bo pin_count leak - scsi: ses: Fix unsigned comparison with less than zero - scsi: virtio_scsi: Fix spelling mistake "Unsupport" -> "Unsupported" - perf/core: fix userpage->time_enabled of inactive events - sched: Always inline is_percpu_thread() - [armhf] hwmon: (pmbus/ibm-cffps) max_power_out swap changes https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.75 - ALSA: usb-audio: Add quirk for VF0770 - ALSA: pcm: Workaround for a wrong offset in SYNC_PTR compat ioctl - ALSA: seq: Fix a potential UAF by wrong private_free call order - ALSA: hda/realtek: Enable 4-speaker output for Dell Precision 5560 laptop - ALSA: hda - Enable headphone mic on Dell Latitude laptops with ALC3254 - ALSA: hda/realtek: Complete partial device name to avoid ambiguity - ALSA: hda/realtek: Add quirk for Clevo X170KM-G - ALSA: hda/realtek - ALC236 headset MIC recording issue - ALSA: hda/realtek: Add quirk for TongFang PHxTxX1 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo 13s Gen2 - ALSA: hda/realtek: Fix the mic type detection issue for ASUS G551JW - [s390x] fix strrchr() implementation - [arm64] hugetlb: fix CMA gigantic page order for non-4K PAGE_SIZE - drm/msm: Avoid potential overflow in timeout_to_jiffies() - btrfs: unlock newly allocated extent buffer after error - btrfs: deal with errors when replaying dir entry during log replay - btrfs: deal with errors when adding inode reference during log replay - btrfs: check for error when looking up inode during dir entry replay - btrfs: update refs for any root except tree log roots - btrfs: fix abort logic in btrfs_replace_file_extents - [x86] resctrl: Free the ctrlval arrays when domain_setup_mon_state() fails - [x86] mei: me: add Ice Lake-N device id. - xhci: guard accesses to ep_state in xhci_endpoint_reset() - xhci: Fix command ring pointer corruption while aborting a command - xhci: Enable trust tx length quirk for Fresco FL11 USB controller - cb710: avoid NULL pointer subtraction - [arm64,x86] efi/cper: use stack buffer for error record decoding - efi: Change down_interruptible() in virt_efi_reset_system() to down_trylock() - [armhf] usb: musb: dsps: Fix the probe error path (Closes: 1000900) - Input: xpad - add support for another USB ID of Nacon GC-100 - USB: serial: qcserial: add EM9191 QDL support - USB: serial: option: add Quectel EC200S-CN module support - USB: serial: option: add Telit LE910Cx composition 0x1204 - USB: serial: option: add prod. id for Quectel EG91 - virtio: write back F_VERSION_1 before validate - nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells - [powerpc*] xive: Discard disabled interrupts in get_irqchip_state() - driver core: Reject pointless SYNC_STATE_ONLY device links - iio: adc: ad7192: Add IRQ flag - iio: adc: ad7780: Fix IRQ flag - iio: adc: ad7793: Fix IRQ flag - iio: adc128s052: Fix the error handling path of 'adc128_probe()' - iio: adc: max1027: Fix wrong shift with 12-bit devices - iio: light: opt3001: Fixed timeout error when 0 lux - iio: adc: max1027: Fix the number of max1X31 channels - iio: dac: ti-dac5571: fix an error code in probe() - [arm64] tee: optee: Fix missing devices unregister during optee_remove - [armel,armhf] dts: bcm2711-rpi-4-b: Fix usb's unit address - [armel,armhf] dts: bcm2711-rpi-4-b: fix sd_io_1v8_reg regulator states - [armel,armhf] dts: bcm2711-rpi-4-b: Fix pcie0's unit address formatting - nvme-pci: Fix abort command id - sctp: account stream padding length for reconf chunk - [arm64,armhf] gpio: pca953x: Improve bias setting - net/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path - net/mlx5e: Mutually exclude RX-FCS and RX-port-timestamp - net: stmmac: fix get_hw_feature() on old hardware - ethernet: s2io: fix setting mac address during resume - nfc: fix error handling of nfc_proto_register() - NFC: digital: fix possible memory leak in digital_tg_listen_mdaa() - NFC: digital: fix possible memory leak in digital_in_send_sdd_req() - [i386] pata_legacy: fix a couple uninitialized variable bugs - ata: ahci_platform: fix null-ptr-deref in ahci_platform_enable_regulators() - drm/edid: In connector_bad_edid() cap num_of_ext by num_blocks read - [arm64] drm/msm: Fix null pointer dereference on pointer edp - [arm64] drm/msm/mdp5: fix cursor-related warnings - [arm64] drm/msm/a6xx: Track current ctx by seqno - [arm64] drm/msm/dsi: Fix an error code in msm_dsi_modeset_init() - [arm64] drm/msm/dsi: fix off by one in dsi_bus_clk_enable error handling - [arm64] acpi/arm64: fix next_platform_timer() section mismatch error - [x86] platform/x86: intel_scu_ipc: Fix busy loop expiry time - mqprio: Correct stats in mqprio_dump_class_stats(). - qed: Fix missing error code in qed_slowpath_start() - nfp: flow_offload: move flow_indr_dev_register from app init to app start - [arm64] net: mscc: ocelot: warn when a PTP IRQ is raised for an unknown skb - [arm64,armhf] net: dsa: mv88e6xxx: don't use PHY_DETECT on internal PHY's https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.76 - xhci: add quirk for host controllers that don't update endpoint DCS - io_uring: fix splice_fd_in checks backport typo - [armhf] dts: vexpress-v2p-ca9: Fix the SMB unit-address - block: decode QUEUE_FLAG_HCTX_ACTIVE in debugfs output - [x86] xen/x86: prevent PVH type from getting clobbered - NFSD: Keep existing listeners on portlist error - netfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value - ice: fix getting UDP tunnel entry - netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6 - netfilter: ipvs: make global sysctl readonly in non-init netns - tcp: md5: Fix overlap between vrf and non-vrf keys - ipv6: When forwarding count rx stats on the orig netdev - [powerpc*] smp: do not decrement idle task preempt count in CPU offline - [arm64] net: hns3: reset DWRR of unused tc to zero - [arm64] net: hns3: add limit ets dwrr bandwidth cannot be 0 - [arm64] net: hns3: schedule the polling again when allocation fails - [arm64] net: hns3: fix vf reset workqueue cannot exit - [arm64] net: hns3: disable sriov before unload hclge layer - net: stmmac: Fix E2E delay mechanism - e1000e: Fix packet loss on Tiger Lake and later - ice: Add missing E810 device ids - [arm64] net: enetc: fix ethtool counter name for PM0_TERR - can: peak_usb: pcan_usb_fd_decode_status(): fix back to ERROR_ACTIVE state notification - can: peak_pci: peak_pci_remove(): fix UAF - can: isotp: isotp_sendmsg(): fix return error on FC timeout on TX path - can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() - can: j1939: j1939_tp_rxtimer(): fix errant alert in j1939_tp_rxtimer - can: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv - can: j1939: j1939_xtp_rx_dat_one(): cancel session if receive TP.DT with error length - can: j1939: j1939_xtp_rx_rts_session_new(): abort TP less than 9 bytes - ceph: skip existing superblocks that are blocklisted or shut down when mounting - ceph: fix handling of "meta" errors - ocfs2: fix data corruption after conversion from inline format - ocfs2: mount fails with buffer overflow in strlen - userfaultfd: fix a race between writeprotect and exit_mmap() - vfs: check fd has read access in kernel_read_file_from_fd() - ALSA: usb-audio: Provide quirk for Sennheiser GSP670 Headset - ALSA: hda/realtek: Add quirk for Clevo PC50HS - ASoC: DAPM: Fix missing kctl change notifications - audit: fix possible null-pointer dereference in audit_filter_rules - [powerpc*] powerpc64/idle: Fix SP offsets when saving GPRs - [powerpc*] KVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest() - [powerpc*] KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest (CVE-2021-43056) - [powerpc*] idle: Don't corrupt back chain when going idle - mm, slub: fix mismatch between reconstructed freelist depth and cnt - mm, slub: fix potential memoryleak in kmem_cache_open() - mm, slub: fix incorrect memcg slab count for bulk free - [x86] KVM: nVMX: promptly process interrupts delivered while in guest mode - nfc: nci: fix the UAF of rf_conn_info object (CVE-2021-3760) - isdn: cpai: check ctr->cnr to avoid array index out of bound (CVE-2021-43389) - [arm64] net: hns3: fix the max tx size according to user manual - ALSA: hda: intel: Allow repeatedly probing on codec configuration errors - btrfs: deal with errors when checking if a dir entry exists during log replay - net: stmmac: add support for dwmac 3.40a - isdn: mISDN: Fix sleeping function called from invalid context - [x86] platform/x86: intel_scu_ipc: Update timeout value in comment - ALSA: hda: avoid write to STATESTS if controller is in reset - [x86] perf/x86/msr: Add Sapphire Rapids CPU support - scsi: iscsi: Fix set_param() handling - scsi: qla2xxx: Fix a memory leak in an error path of qla2x00_process_els() - sched/scs: Reset the shadow stack when idle_task_exit - [arm64] net: hns3: fix for miscalculation of rx unused desc - scsi: core: Fix shost->cmd_per_lun calculation in scsi_add_host_with_dma() - can: isotp: isotp_sendmsg(): fix TX buffer concurrent access in isotp_sendmsg() - [s390x] pci: fix zpci_zdev_put() on reserve - net: mdiobus: Fix memory leak in __mdiobus_register - tracing: Have all levels of checks prevent recursion - e1000e: Separate TGP board type from SPT - [armhf] pinctrl: stm32: use valid pin identifier in stm32_pinctrl_resume() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.77 - [armel,armhf] 9139/1: kprobes: fix arch_init_kprobes() prototype - io_uring: don't take uring_lock during iowq cancel - [powerpc*] bpf: Fix BPF_MOD when imm == 1 - [arm64] Avoid premature usercopy failure - ext4: fix possible UAF when remounting r/o a mmp-protected file system - usbnet: sanity check for maxpacket - usbnet: fix error return code in usbnet_probe() - pinctrl: amd: disable and mask interrupts on probe - ata: sata_mv: Fix the error handling of mv_chip_id() - tipc: fix size validations for the MSG_CRYPTO type (CVE-2021-43267) - nfc: port100: fix using -ERRNO as command type mask - Revert "net: mdiobus: Fix memory leak in __mdiobus_register" - mmc: vub300: fix control-message timeouts - mmc: cqhci: clear HALT state after CQE enable - [armhf] mmc: dw_mmc: exynos: fix the finding clock sample value - mmc: sdhci: Map more voltage level to SDHCI_POWER_330 - [arm64,armhf] mmc: sdhci-esdhc-imx: clear the buffer_read_ready to reset standard tuning circuit - ocfs2: fix race between searching chunks and release journal_head from buffer_head - nvme-tcp: fix H2CData PDU send accounting (again) - cfg80211: scan: fix RCU in cfg80211_add_nontrans_list() - cfg80211: fix management registrations locking - net: lan78xx: fix division by zero in send path - mm, thp: bail out early in collapse_file for writeback page - drm/ttm: fix memleak in ttm_transfered_destroy - drm/amdgpu: fix out of bounds write (CVE-2021-42327) - cgroup: Fix memory leak caused by missing cgroup_bpf_offline - tcp_bpf: Fix one concurrency problem in the tcp_bpf_send_verdict function - bpf: Fix potential race in tail call compatibility check - bpf: Fix error usage of map_fd and fdget() in generic_map_update_batch() - [amd64] IB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields - [amd64] IB/hfi1: Fix abba locking issue with sc_disable() - nvmet-tcp: fix data digest pointer calculation - nvme-tcp: fix data digest pointer calculation - nvme-tcp: fix possible req->offset corruption - RDMA/mlx5: Set user priority for DCT - [arm64] dts: allwinner: h5: NanoPI Neo 2: Fix ethernet node - regmap: Fix possible double-free in regcache_rbtree_exit() - net: batman-adv: fix error handling - net-sysfs: initialize uid and gid before calling net_ns_get_ownership - cfg80211: correct bridge/4addr mode check - net: Prevent infinite while loop in skb_tx_hash() - RDMA/sa_query: Use strscpy_pad instead of memcpy to copy a string - net: ethernet: microchip: lan743x: Fix driver crash when lan743x_pm_resume fails - net: ethernet: microchip: lan743x: Fix dma allocation failure by using dma_set_mask_and_coherent - phy: phy_ethtool_ksettings_get: Lock the phy for consistency - phy: phy_ethtool_ksettings_set: Move after phy_start_aneg - phy: phy_start_aneg: Add an unlocked version - phy: phy_ethtool_ksettings_set: Lock the PHY while changing settings - sctp: use init_tag from inithdr for ABORT chunk (CVE-2021-3772) - sctp: fix the processing for INIT_ACK chunk (CVE-2021-3772) - sctp: fix the processing for COOKIE_ECHO chunk (CVE-2021-3772) - sctp: add vtag check in sctp_sf_violation (CVE-2021-3772) - sctp: add vtag check in sctp_sf_do_8_5_1_E_sa (CVE-2021-3772) - sctp: add vtag check in sctp_sf_ootb (CVE-2021-3772) - lan743x: fix endianness when accessing descriptors - [s390x] KVM: clear kicked_mask before sleeping again - [s390x] KVM: preserve deliverable_mask in __airqs_kick_single_vcpu https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.78 - scsi: core: Put LLD module refcnt after SCSI device is released - Revert "io_uring: reinforce cancel on flush during exit" - sfc: Fix reading non-legacy supported link modes - vrf: Revert "Reset skb conntrack connection..." - net: ethernet: microchip: lan743x: Fix skb allocation failure - media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt() (CVE-2021-42739) - Revert "xhci: Set HCD flag to defer primary roothub registration" - Revert "usb: core: hcd: Add support for deferring roothub registration" - mm: khugepaged: skip huge page collapse for special files - Revert "drm/ttm: fix memleak in ttm_transfered_destroy" - [arm*] 9120/1: Revert "amba: make use of -1 IRQs warn" - [arm64] Revert "wcn36xx: Disable bmps when encryption is disabled" - ALSA: usb-audio: Add Schiit Hel device to mixer map quirk table - ALSA: usb-audio: Add Audient iD14 to mixer map quirk table https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.79 - [x86] Revert "x86/kvm: fix vcpu-id indexed array sizes" - [arm64,armhf] usb: musb: Balance list entry in musb_gadget_queue - usb-storage: Add compatibility quirk flags for iODD 2531/2541 - [arm*] binder: don't detect sender/target during buffer cleanup - printk/console: Allow to disable console output by using console="" or console=null - staging: rtl8712: fix use-after-free in rtl8712_dl_fw - isofs: Fix out of bound access for corrupted isofs image - [x86] comedi: dt9812: fix DMA buffers on stack - [x86] comedi: ni_usb6501: fix NULL-deref in command paths - [x86] comedi: vmk80xx: fix transfer-buffer overflows - [x86] comedi: vmk80xx: fix bulk-buffer overflow - [x86] comedi: vmk80xx: fix bulk and interrupt message timeouts - staging: r8712u: fix control-message timeout - [x86] staging: rtl8192u: fix control-message timeouts - rsi: fix control-message timeout https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.80 - xhci: Fix USB 3.1 enumeration issues by increasing roothub power-on-good delay - usb: xhci: Enable runtime-pm by default on AMD Yellow Carp platform - [arm*] binder: use euid from cred instead of using task - [arm*] binder: use cred instead of task for selinux checks - [arm*] binder: use cred instead of task for getsecid - Input: iforce - fix control-message timeout - Input: elantench - fix misreporting trackpoint coordinates (Closes: #989285) - libata: fix read log timeout value - ocfs2: fix data corruption on truncate - scsi: core: Remove command size deduction from scsi_setup_scsi_cmnd() - scsi: qla2xxx: Fix kernel crash when accessing port_speed sysfs file - scsi: qla2xxx: Fix use after free in eh_abort path - [arm64,armhf] mmc: dw_mmc: Dont wait for DRTO on Write RSP error - exfat: fix incorrect loading of i_blocks for large files - tpm: Check for integer overflow in tpm2_map_response_body() - media: ite-cir: IR receiver stop working after receive overflow (Closes: #996672) - media: ir-kbd-i2c: improve responsiveness of hauppauge zilog receivers (Closes: #994050) - media: v4l2-ioctl: Fix check_ext_ctrls - ALSA: hda/realtek: Fix mic mute LED for the HP Spectre x360 14 - ALSA: hda/realtek: Add a quirk for HP OMEN 15 mute LED - ALSA: hda/realtek: Add quirk for Clevo PC70HS - ALSA: hda/realtek: Headset fixup for Clevo NH77HJQ - ALSA: hda/realtek: Add a quirk for Acer Spin SP513-54N - ALSA: hda/realtek: Add quirk for ASUS UX550VE - ALSA: hda/realtek: Add quirk for HP EliteBook 840 G7 mute LED - ALSA: ua101: fix division by zero at probe - ALSA: 6fire: fix control and bulk message timeouts - ALSA: line6: fix control and interrupt message timeouts - ALSA: usb-audio: Line6 HX-Stomp XL USB_ID for 48k-fixed quirk - ALSA: usb-audio: Add registration quirk for JBL Quantum 400 - ALSA: hda: Free card instance properly at probe errors - ALSA: synth: missing check for possible NULL after the call to kstrdup - ALSA: timer: Fix use-after-free problem - ALSA: timer: Unconditionally unlink slave instances, too - ext4: fix lazy initialization next schedule time computation in more granular unit - ext4: ensure enough credits in ext4_ext_shift_path_extents - ext4: refresh the ext4_ext_path struct after dropping i_data_sem. - fuse: fix page stealing - [x86] cpu: Fix migration safety with X86_BUG_NULL_SEL - [x86] irq: Ensure PI wakeup handler is unregistered before module unload - ASoC: soc-core: fix null-ptr-deref in snd_soc_del_component_unlocked() - ALSA: hda/realtek: Fixes HP Spectre x360 15-eb1xxx speakers - [arm64] cavium: Return negative value when pci_alloc_irq_vectors() fails - scsi: qla2xxx: Return -ENOMEM if kzalloc() fails - scsi: qla2xxx: Fix unmap of already freed sgl - mISDN: Fix return values of the probe function - [arm64] cavium: Fix return values of the probe function - sfc: Export fibre-specific supported link modes - sfc: Don't use netif_info before net_device setup - [armhf] reset: socfpga: add empty driver allowing consumers to probe - drm: panel-orientation-quirks: Add quirk for Aya Neo 2021 - bpf: Define bpf_jit_alloc_exec_limit for arm64 JIT - bpf: Prevent increasing bpf_jit_limit above max - xen/netfront: stop tx queues during live migration - nvmet-tcp: fix a memory leak when releasing a queue - [armhf] spi: spl022: fix Microwire full duplex mode - net: multicast: calculate csum of looped-back and forwarded packets - [armhf] watchdog: Fix OMAP watchdog early handling - drm: panel-orientation-quirks: Add quirk for GPD Win3 - block: schedule queue restart after BLK_STS_ZONE_RESOURCE - nvmet-tcp: fix header digest verification - r8169: Add device 10ec:8162 to driver r8169 - [x86] vmxnet3: do not stop tx queues after netif_device_detach() - nfp: bpf: relax prog rejection for mtu check through max_pkt_offset - net/smc: Fix smc_link->llc_testlink_time overflow - net/smc: Correct spelling mistake to TCPF_SYN_RECV - rds: stop using dmapool - btrfs: clear MISSING device status bit in btrfs_close_one_device - btrfs: fix lost error handling when replaying directory deletes - btrfs: call btrfs_check_rw_degradable only if there is a missing device - [x86] KVM: VMX: Unregister posted interrupt wakeup handler on hardware unsetup - selinux: fix race condition when computing ocontext SIDs - [armhf] regulator: s5m8767: do not use reset value as DVS voltage if GPIO DVS is disabled - [amd64] EDAC/sb_edac: Fix top-of-high-memory value for Broadwell/Haswell - [x86] mwifiex: fix division by zero in fw download path - ath6kl: fix division by zero in send path - ath6kl: fix control-message timeout - ath10k: fix control-message timeout - ath10k: fix division by zero in send path - PCI: Mark Atheros QCA6174 to avoid bus reset - rtl8187: fix control-message timeouts - [arm64] wcn36xx: Fix HT40 capability for 2Ghz band - [arm64] wcn36xx: Fix tx_status mechanism - [arm64] wcn36xx: Fix (QoS) null data frame bitrate/modulation - PM: sleep: Do not let "syscore" devices runtime-suspend during system transitions - mwifiex: Read a PCI register after writing the TX ring write pointer - mwifiex: Try waking the firmware until we get an interrupt - libata: fix checking of DMA state - [arm64] wcn36xx: handle connection loss indication - rsi: fix occasional initialisation failure with BT coex - rsi: fix key enabled check causing unwanted encryption for vap_id > 0 - rsi: fix rate mask set leading to P2P failure - rsi: Fix module dev_oper_mode parameter description - [x86] perf/x86/intel/uncore: Support extra IMC channel on Ice Lake server - [x86] perf/x86/intel/uncore: Fix Intel ICX IIO event constraints - RDMA/qedr: Fix NULL deref for query_qp on the GSI QP - signal: Remove the bogus sigkill_pending in ptrace_stop - [mips*] signal/mips: Update (_save|_restore)_fp_context to fail with -EFAULT - [arm64] soc: fsl: dpio: replace smp_processor_id with raw_smp_processor_id - [arm64] soc: fsl: dpio: use the combined functions to protect critical zone - [x86] power: supply: max17042_battery: Prevent int underflow in set_soc_threshold - [x86] power: supply: max17042_battery: use VFSOC for capacity when no rsns - [arm64] KVM: arm64: Extract ESR_ELx.EC only - [x86] KVM: nVMX: Query current VMCS when determining if MSR bitmaps are in use - can: j1939: j1939_tp_cmd_recv(): ignore abort message in the BAM transport - can: j1939: j1939_can_recv(): ignore messages with invalid source address - ring-buffer: Protect ring_buffer_reset() from reentrancy - serial: core: Fix initializing and restoring termios speed - ifb: fix building without CONFIG_NET_CLS_ACT - ALSA: mixer: oss: Fix racy access to slots - ALSA: mixer: fix deadlock in snd_mixer_oss_set_volume - xen/balloon: add late_initcall_sync() for initial ballooning done - ovl: fix use after free in struct ovl_aio_req - [arm*] PCI: pci-bridge-emul: Fix emulation of W1C bits - [arm64] PCI: aardvark: Do not clear status bits of masked interrupts - [arm64] PCI: aardvark: Fix checking for link up via LTSSM state - [arm64] PCI: aardvark: Do not unmask unused interrupts - [arm64] PCI: aardvark: Fix reporting Data Link Layer Link Active - [arm64] PCI: aardvark: Fix configuring Reference clock - [arm64] PCI: aardvark: Fix return value of MSI domain .alloc() method - [arm64] PCI: aardvark: Read all 16-bits from PCIE_MSI_PAYLOAD_REG - [arm64] PCI: aardvark: Fix support for bus mastering and PCI_COMMAND on emulated bridge - [arm64] PCI: aardvark: Fix support for PCI_BRIDGE_CTL_BUS_RESET on emulated bridge - [arm64] PCI: aardvark: Set PCI Bridge Class Code to PCI Bridge - [arm64] PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge - quota: check block number when reading the block in quota file - quota: correct error number in free_dqentry() - pinctrl: core: fix possible memory leak in pinctrl_enable() - iio: dac: ad5446: Fix ad5622_write() return value - iio: ad5770r: make devicetree property reading consistent - USB: serial: keyspan: fix memleak on probe errors - serial: 8250: fix racy uartclk update - USB: iowarrior: fix control-message timeouts - [arm64,armhf] USB: chipidea: fix interrupt deadlock - [x86] power: supply: max17042_battery: Clear status bits in interrupt handler - dma-buf: WARN on dmabuf release with pending attachments - drm: panel-orientation-quirks: Update the Lenovo Ideapad D330 quirk (v2) - drm: panel-orientation-quirks: Add quirk for KD Kurio Smart C15200 2-in-1 - drm: panel-orientation-quirks: Add quirk for the Samsung Galaxy Book 10.6 - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() (CVE-2021-3640) - Bluetooth: fix use-after-free error in lock_sock_nested() - drm/panel-orientation-quirks: add Valve Steam Deck - [x86] platform/x86: wmi: do not fail if disabling fails - locking/lockdep: Avoid RCU-induced noinstr fail - net: sched: update default qdisc visibility after Tx queue cnt changes - rcu-tasks: Move RTGS_WAIT_CBS to beginning of rcu_tasks_kthread() loop - ath11k: Align bss_chan_info structure with firmware - [x86] Increase exception stack sizes - mwifiex: Run SET_BSS_MODE when changing from P2P to STATION vif-type - mwifiex: Properly initialize private structure on interface type changes - fscrypt: allow 256-bit master keys with AES-256-XTS - drm/amdgpu: Fix MMIO access page fault - ath11k: Avoid reg rules update during firmware recovery - ath11k: add handler for scan event WMI_SCAN_EVENT_DEQUEUED - ath11k: Change DMA_FROM_DEVICE to DMA_TO_DEVICE when map reinjected packets - ath10k: high latency fixes for beacon buffer - media: netup_unidvb: handle interrupt properly according to the firmware - media: uvcvideo: Set capability in s_param - media: uvcvideo: Return -EIO for control errors - media: uvcvideo: Set unique vdev name based in type - [armhf] media: imx: set a media_device bus_info string - media: mceusb: return without resubmitting URB in case of -EPROTO error. - rtw88: fix RX clock gate setting while fifo dump - brcmfmac: Add DMI nvram filename quirk for Cyberbook T116 tablet - ipmi: Disable some operations during a panic - fs/proc/uptime.c: Fix idle time reporting in /proc/uptime - ACPICA: Avoid evaluating methods too early during system resume - media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() - net-sysfs: try not to restart the syscall if it will fail eventually - tracefs: Have tracefs directories not set OTH permission bits by default - ath: dfs_pattern_detector: Fix possible null-pointer dereference in channel_detector_create() - iov_iter: Fix iov_iter_get_pages{,_alloc} page fault return value - ACPI: battery: Accept charges over the design capacity as full - net: phy: micrel: make *-skew-ps check more lenient - [arm64] drm/msm: prevent NULL dereference in msm_gpu_crashstate_capture() - block: bump max plugged deferred size from 16 to 32 - md: update superblock after changing rdev flags in state_store - memstick: r592: Fix a UAF bug when removing the driver - lib/xz: Avoid overlapping memcpy() with invalid input with in-place decompression - lib/xz: Validate the value before assigning it to an enum variable - workqueue: make sysfs of unbound kworker cpumask more clever - mwl8k: Fix use-after-free in mwl8k_fw_state_machine() - block: remove inaccurate requeue check - nvmet: fix use-after-free when a port is removed - nvmet-rdma: fix use-after-free when a port is removed - nvmet-tcp: fix use-after-free when a port is removed - nvme: drop scan_lock and always kick requeue list when removing namespaces - PM: hibernate: Get block device exclusively in swsusp_check() - iwlwifi: mvm: disable RX-diversity in powersave - gre/sit: Don't generate link-local addr if addr_gen_mode is IN6_ADDR_GEN_MODE_NONE - gfs2: Cancel remote delete work asynchronously - gfs2: Fix glock_hash_walk bugs - vrf: run conntrack only in context of lower/physdev for locally generated packets - net: annotate data-race in neigh_output() - ACPI: AC: Quirk GK45 to skip reading _PSR - btrfs: reflink: initialize return value to 0 in btrfs_extent_same() - btrfs: do not take the uuid_mutex in btrfs_rm_device - [arm64] wcn36xx: Correct band/freq reporting on RX - [x86] hyperv: Protect set_hv_tscchange_cb() against getting preempted - drm/amd/display: dcn20_resource_construct reduce scope of FPU enabled - task_stack: Fix end_of_stack() for architectures with upwards-growing stack - erofs: don't trigger WARN() when decompression fails - netfilter: conntrack: set on IPS_ASSURED if flows enters internal stream state - Bluetooth: fix init and cleanup of sco_conn.timeout_work - rcu: Fix existing exp request check in sync_sched_exp_online_cleanup() - objtool: Add xen_start_kernel() to noreturn list - [x86] xen: Mark cpu_bringup_and_idle() as dead_end_function - objtool: Fix static_call list generation - virtio-gpu: fix possible memory allocation failure - lockdep: Let lock_is_held_type() detect recursive read as read - net: net_namespace: Fix undefined member in key_remove_domain() - cgroup: Make rebind_subsystems() disable v2 controllers all at once - [arm64] wcn36xx: Fix Antenna Diversity Switching - Bluetooth: btmtkuart: fix a memleak in mtk_hci_wmt_sync - [arm64] crypto: caam - disable pkc for non-E SoCs - rxrpc: Fix _usecs_to_jiffies() by using usecs_to_jiffies() - ath11k: fix some sleeping in atomic bugs - ath11k: Avoid race during regd updates - ath11k: fix packet drops due to incorrect 6 GHz freq value in rx status - ath11k: Fix memory leak in ath11k_qmi_driver_event_work - ath10k: Fix missing frame timestamp for beacon/probe-resp - ath10k: sdio: Add missing BH locking around napi_schdule() - drm/ttm: stop calling tt_swapin in vm_access - [arm64] mm: update max_pfn after memory hotplug - drm/amdgpu: fix warning for overflow check - media: em28xx: add missing em28xx_close_extension - media: dvb-usb: fix ununit-value in az6027_rc_query - media: v4l2-ioctl: S_CTRL output the right value - media: si470x: Avoid card name truncation - [x86] media: tm6000: Avoid card name truncation - media: cx23885: Fix snd_card_free call on null card pointer - kprobes: Do not use local variable when creating debugfs file - cpuidle: Fix kobject memory leaks in error paths - media: em28xx: Don't use ops->suspend if it is NULL - ath9k: Fix potential interrupt storm on queue reset - PM: EM: Fix inefficient states detection - [amd64] EDAC/amd64: Handle three rank interleaving mode - rcu: Always inline rcu_dynticks_task*_{enter,exit}() - netfilter: nft_dynset: relax superfluous check on set updates - [x86] crypto: qat - detect PFVF collision after ACK - [x86] crypto: qat - disregard spurious PFVF interrupts - b43legacy: fix a lower bounds test - b43: fix a lower bounds test - [amd64] gve: Recover from queue stall due to missed IRQ - [armhf] mmc: sdhci-omap: Fix NULL pointer exception if regulator is not configured - [armhf] mmc: sdhci-omap: Fix context restore - memstick: jmb38x_ms: use appropriate free function in jmb38x_ms_alloc_host() - net, neigh: Fix NTF_EXT_LEARNED in combination with NTF_USE - hwmon: Fix possible memleak in __hwmon_device_register() - ath10k: fix max antenna gain unit - kernel/sched: Fix sched_fork() access an invalid sched_task_group - tcp: switch orphan_count to bare per-cpu counters - [arm64] drm/msm: potential error pointer dereference in init() - [arm64] drm/msm: uninitialized variable in msm_gem_import() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - [x86] platform/x86: thinkpad_acpi: Fix bitwise vs. logical warning - mt76: mt76x02: fix endianness warnings in mt76x02_mac.c - rsi: stop thread firstly in rsi_91x_init() error handling - mwifiex: Send DELBA requests according to spec - [arm64] net: enetc: unmap DMA in enetc_send_cmd() - phy: micrel: ksz8041nl: do not use power down mode - nvme-rdma: fix error code in nvme_rdma_setup_ctrl - PM: hibernate: fix sparse warnings - [arm64] drm/msm: Fix potential NULL dereference in DPU SSPP - bpftool: Avoid leaking the JSON writer prepared for program metadata - [s390x] gmap: don't unconditionally call pte_unmap_unlock() in __gmap_zap() - [s390x] KVM: pv: avoid double free of sida page - [s390x] KVM: pv: avoid stalls for kvm_s390_pv_init_vm - tpm: fix Atmel TPM crash caused by too frequent queries - tpm_tis_spi: Add missing SPI ID - tcp: don't free a FIN sk_buff in tcp_remove_empty_skb() - [s390x] KVM: Fix handle_sske page fault handling - libertas_tf: Fix possible memory leak in probe and disconnect - libertas: Fix possible memory leak in probe and disconnect - [arm64] wcn36xx: add proper DMA memory barriers in rx path - [arm64] wcn36xx: Fix discarded frames due to wrong sequence number - drm/amdgpu/gmc6: fix DMA mask from 44 to 40 bits - [amd64,arm64] net: amd-xgbe: Toggle PLL settings during rate change - net: phylink: avoid mvneta warning when setting pause parameters - crypto: pcrypt - Delay write to padata->info - udp6: allow SO_MARK ctrl msg to affect routing - cgroup: Fix rootcg cpu.stat guest double counting - bpf: Fix propagation of bounds from 64-bit min/max into 32-bit and var_off. - bpf: Fix propagation of signed bounds from 64-bit min/max into 32-bit. - iio: st_sensors: Call st_sensors_power_enable() from bus drivers - iio: st_sensors: disable regulators after device unregistration - RDMA/bnxt_re: Fix query SRQ failure - [arm64] dts: meson-g12a: Fix the pwm regulator supply properties - [armhf] bus: ti-sysc: Fix timekeeping_suspended warning on resume - scsi: dc395: Fix error case unwinding - JFS: fix memleak in jfs_mount - ALSA: hda: Reduce udelay() at SKL+ position reporting - ALSA: hda: Release controller display power during shutdown/reboot - ALSA: hda: Fix hang during shutdown due to link reset - ALSA: hda: Use position buffer for SKL+ again - soundwire: debugfs: use controller id and link_id for debugfs - scsi: pm80xx: Fix misleading log statement in pm8001_mpi_get_nvmd_resp() - driver core: Fix possible memory leak in device_link_add() - [x86] ASoC: SOF: topology: do not power down primary core during topology removal - [arm64,armhf] soc/tegra: Fix an error handling path in tegra_powergate_power_up() - [powerpc*] Refactor is_kvm_guest() declaration to new header - [powerpc*] Rename is_kvm_guest() to check_kvm_guest() - [powerpc*] Reintroduce is_kvm_guest() as a fast-path check - [powerpc*] Fix is_kvm_guest() / kvm_para_available() - [powerpc*] fix unbalanced node refcount in check_kvm_guest() - serial: 8250_dw: Drop wrong use of ACPI_PTR() - scsi: csiostor: Uninitialized data in csio_ln_vnp_read_cbfn() - RDMA/mlx4: Return missed an error if device doesn't support steering - iio: adis: do not disabe IRQs in 'adis_init()' - scsi: ufs: Refactor ufshcd_setup_clocks() to remove skip_ref_clk - [arm64,armhf] serial: imx: fix detach/attach of serial console - [arm*] usb: dwc2: drd: fix dwc2_force_mode call in dwc2_ovr_init - [arm*] usb: dwc2: drd: fix dwc2_drd_role_sw_set when clock could be disabled - [arm*] usb: dwc2: drd: reset current session before setting the new one - [arm64] firmware: qcom_scm: Fix error retval in __qcom_scm_is_call_available() - [arm64] phy: qcom-qusb2: Fix a memory leak on probe - [armhf] phy: ti: gmii-sel: check of_get_address() for failure - [arm64] serial: xilinx_uartps: Fix race condition causing stuck TX - HID: u2fzero: clarify error check and length calculations - HID: u2fzero: properly handle timeouts in usb_submit_urb - virtio_ring: check desc == NULL when using indirect with packed - [mips*] cm: Convert to bitfield API to fix out-of-bounds access - apparmor: fix error check - rpmsg: Fix rpmsg_create_ept return when RPMSG config is not defined - nfsd: don't alloc under spinlock in rpc_parse_scope_id - NFS: Fix dentry verifier races - pnfs/flexfiles: Fix misplaced barrier in nfs4_ff_layout_prepare_ds - drm/plane-helper: fix uninitialized variable reference - [arm64] PCI: aardvark: Don't spam about PIO Response Status - [arm64] PCI: aardvark: Fix preserving PCI_EXP_RTCTL_CRSSVE flag on emulated bridge - opp: Fix return in _opp_add_static_v2() - NFS: Fix deadlocks in nfs_scan_commit_list() - fs: orangefs: fix error return code of orangefs_revalidate_lookup() - [arm64] mtd: spi-nor: hisi-sfc: Remove excessive clk_disable_unprepare() - mtd: core: don't remove debugfs directory if device is in use - [armhf] remoteproc: Fix a memory leak in an error handling path in 'rproc_handle_vdev()' - NFS: Fix up commit deadlocks - NFS: Fix an Oops in pnfs_mark_request_commit() - Fix user namespace leak - [arm64] soc: fsl: dpaa2-console: free buffer before returning from dpaa2_console_read - netfilter: nfnetlink_queue: fix OOB when mac header was cleared - [x86] watchdog: f71808e_wdt: fix inaccurate report in WDIOC_GETTIMEOUT - scsi: qla2xxx: Changes to support FCP2 Target - scsi: qla2xxx: Relogin during fabric disturbance - scsi: qla2xxx: Fix gnl list corruption - scsi: qla2xxx: Turn off target reset during issue_lip - NFSv4: Fix a regression in nfs_set_open_stateid_locked() - xen-pciback: Fix return in pm_ctrl_init() - [armhf] net: davinci_emac: Fix interrupt pacing disable - ethtool: fix ethtool msg len calculation for pause stats - net: vlan: fix a UAF in vlan_dev_real_dev() - ice: Fix replacing VF hardware MAC to existing MAC filter - ice: Fix not stopping Tx queues for VFs - [x86] ACPI: PMIC: Fix intel_pmic_regs_handler() read accesses - net: phy: fix duplex out of sync problem while changing settings - bonding: Fix a use-after-free problem when bond_sysfs_slave_add() failed - mfd: core: Add missing of_node_put for loop iteration - mm/zsmalloc.c: close race window between zs_pool_dec_isolated() and zs_unregister_migration() - zram: off by one in read_block_state() - llc: fix out-of-bound array index in llc_sk_dev_hash() - nfc: pn533: Fix double free when pn533_fill_fragment_skbs() fails - [arm64] pgtable: make __pte_to_phys/__phys_to_pte_val inline functions - bpf, sockmap: Remove unhash handler for BPF sockmap usage - bpf: sockmap, strparser, and tls are reusing qdisc_skb_cb and colliding - [amd64] gve: Fix off by one in gve_tx_timeout() - seq_file: fix passing wrong private data - net/sched: sch_taprio: fix undefined behavior in ktime_mono_to_any - [arm64] net: hns3: fix kernel crash when unload VF while it is being reset - [arm64] net: hns3: allow configure ETS bandwidth of all TCs - net: stmmac: allow a tc-taprio base-time of zero - vsock: prevent unnecessary refcnt inc for nonblocking connect - net/smc: fix sk_refcnt underflow on linkdown and fallback - cxgb4: fix eeprom len when diagnostics not implemented - [armel,armhf] 9155/1: fix early early_iounmap() - [armhf] 9156/1: drop cc-option fallbacks for architecture selection - [x86] mce: Add errata workaround for Skylake SKX37 - posix-cpu-timers: Clear task::posix_cputimers_work in copy_process() - f2fs: should use GFP_NOFS for directory inodes - net, neigh: Enable state migration between NUD_PERMANENT and NTF_USE - 9p/net: fix missing error check in p9_check_errors - memcg: prohibit unconditional exceeding the limit of dying tasks - [powerpc*] lib: Add helper to check if offset is within conditional branch range - [powerpc*] bpf: Validate branch ranges - [powerpc*] security: Add a helper to query stf_barrier type - [powerpc*] bpf: Emit stf barrier instruction sequences for BPF_NOSPEC - mm, oom: pagefault_out_of_memory: don't force global OOM for dying tasks - mm, oom: do not trigger out_of_memory from the #PF - video: backlight: Drop maximum brightness override for brightness zero - [s390x] cio: check the subchannel validity for dev_busid - [s390x] tape: fix timer initialization in tape_std_assign() - [s390x] ap: Fix hanging ioctl caused by orphaned replies - [s390x] cio: make ccw_device_dma_* more robust - [powerpc*] powernv/prd: Unregister OPAL_MSG_PRD2 notifier during module unload - [arm64,armhf] drm/sun4i: Fix macros in sun8i_csc.h - PCI: Add PCI_EXP_DEVCTL_PAYLOAD_* macros - [arm64] PCI: aardvark: Fix PCIe Max Payload Size setting - SUNRPC: Partial revert of commit 6f9f17287e78 - ath10k: fix invalid dma_addr_t token assignment - arch/cc: Introduce a function to check for confidential computing features - [arm64,armhf] soc/tegra: pmc: Fix imbalanced clock disabling in error code path https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.81 - block: Add a helper to validate the block size - loop: Use blk_validate_block_size() to validate block size - bootconfig: init: Fix memblock leak in xbc_make_cmdline() - net: stmmac: add clocks management for gmac driver - net: stmmac: fix missing unlock on error in stmmac_suspend() - net: stmmac: fix system hang if change mac address after interface ifdown - net: stmmac: fix issue where clk is being unprepared twice - [arm64,armhf] net: stmmac: dwmac-rk: fix unbalanced pm_runtime_enable warnings - [x86] iopl: Fake iopl(3) CLI/STI usage - PCI/MSI: Destroy sysfs before freeing entries - PCI/MSI: Deal with devices lying about their MSI mask capability - PCI: Add MSI masking quirk for Nvidia ION AHCI - erofs: remove the occupied parameter from z_erofs_pagevec_enqueue() - erofs: fix unsafe pagevec reuse of hooked pclusters - scripts/lld-version.sh: Rewrite based on upstream ld-version.sh - perf/core: Avoid put_page() when GUP fails - thermal: Fix NULL pointer dereferences in of_thermal_ functions https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.82 - [arm64] zynqmp: Do not duplicate flash partition label property - [arm64] zynqmp: Fix serial compatible string - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - [armhf] bus: ti-sysc: Add quirk handling for reinit on context lost - [armhf] bus: ti-sysc: Use context lost quirk for otg - [armhf] usb: musb: tusb6010: check return value after calling platform_get_resource() - [x86] usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - staging: rtl8723bs: remove possible deadlock when disconnect (v2) - [x86] ASoC: SOF: Intel: hda-dai: fix potential locking issue - [armhf] clk: imx: imx6ul: Move csi_sel mux to correct base register - [x86] ASoC: nau8824: Add DMI quirk mechanism for active-high jack-detect - scsi: advansys: Fix kernel pointer leak - ALSA: intel-dsp-config: add quirk for APL/GLK/TGL devices based on ES8336 codec - firmware_loader: fix pre-allocated buf built-in firmware use - tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc - scsi: scsi_debug: Fix out-of-bound read in resp_readcap16() - scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() - scsi: target: Fix ordered tag handling - scsi: target: Fix alua_tg_pt_gps_count tracking - iio: imu: st_lsm6dsx: Avoid potential array overflow in st_lsm6dsx_set_odr() - [i386] ALSA: gus: fix null pointer dereference on pointer block - maple: fix wrong return value of maple_bus_init(). - f2fs: fix up f2fs_lookup tracepoints - f2fs: fix to use WHINT_MODE - f2fs: compress: disallow disabling compress on non-empty compressed file - f2fs: fix incorrect return value in f2fs_sanity_check_ckpt() - [armhf] clk/ast2600: Fix soc revision for AHB - [arm64] clk: qcom: gcc-msm8996: Drop (again) gcc_aggre1_pnoc_ahb_clk - sched/core: Mitigate race cpus_share_cache()/update_top_cache_domain() - [x86] perf/x86/vlbr: Add c->flags to vlbr event constraints - blkcg: Remove extra blkcg_bio_issue_init - perf bpf: Avoid memory leak from perf_env__insert_btf() - perf bench futex: Fix memory leak of perf_cpu_map__new() - perf tests: Remove bash construct from record+zstd_comp_decomp.sh - drm/nouveau: hdmigv100.c: fix corrupted HDMI Vendor InfoFrame - net-zerocopy: Copy straggler unaligned data for TCP Rx. zerocopy. - net-zerocopy: Refactor skb frag fast-forward op. - tcp: Fix uninitialized access in skb frags array for Rx 0cp. - tracing: Add length protection to histogram string copies - bnxt_en: reject indirect blk offload when hw-tc-offload is off - tipc: only accept encrypted MSG_CRYPTO msgs - net: reduce indentation level in sk_clone_lock() - sock: fix /proc/net/sockstat underflow in sk_clone_lock() - net/smc: Make sure the link_id is unique - iavf: Fix return of set the new channel count - iavf: check for null in iavf_fix_features - iavf: free q_vectors before queues in iavf_disable_vf - iavf: Fix failure to exit out from last all-multicast mode - iavf: prevent accidental free of filter structure - iavf: validate pointers - iavf: Fix for the false positive ASQ/ARQ errors while issuing VF reset - iavf: Fix for setting queues to 0 - [x86] platform/x86: hp_accel: Fix an error handling path in 'lis3lv02d_probe()' - net/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove() - net/mlx5: Lag, update tracker when state change event received - net/mlx5: E-Switch, Change mode lock from mutex to rw semaphore - net/mlx5: E-Switch, return error if encap isn't supported - scsi: core: sysfs: Fix hang when device state is set via sysfs - net: sched: act_mirred: drop dst for the direction from egress to ingress - [arm64] net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove - net: virtio_net_hdr_to_skb: count transport header in UFO - i40e: Fix correct max_pkt_size on VF RX queue - i40e: Fix NULL ptr dereference on VSI filter sync - i40e: Fix changing previously set num_queue_pairs for PFs - i40e: Fix ping is lost after configuring ADq on VF - i40e: Fix warning message and call stack during rmmod i40e driver - i40e: Fix creation of first queue by omitting it if is not power of two - i40e: Fix display error code in dmesg - e100: fix device suspend/resume (Closes: #995927) - [powerpc*] KVM: PPC: Book3S HV: Use GLOBAL_TOC for kvmppc_h_set_dabr/xdabr() - [x86] perf/x86/intel/uncore: Fix filter_tid mask for CHA events on Skylake Server - [x86] perf/x86/intel/uncore: Fix IIO event constraints for Skylake Server - [s390x] kexec: fix return code handling - [arm64,armhf] net: stmmac: dwmac-rk: Fix ethernet on rk3399 based devices - tun: fix bonding active backup with arp monitoring - tipc: check for null after calling kmemdup - ipc: WARN if trying to remove ipc object which is absent - [x86] hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails - scsi: qla2xxx: Fix mailbox direction flags in qla2xxx_get_adapter_id() - [s390x] kexec: fix memory leak of ipl report buffer - block: Check ADMIN before NICE for IOPRIO_CLASS_RT - [x86] KVM: nVMX: don't use vcpu->arch.efer when checking host state on nested state load - udf: Fix crash after seekdir - [armhf] net: stmmac: socfpga: add runtime suspend/resume callback for stratix10 platform - btrfs: fix memory ordering between normal and ordered work functions - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - drm/udl: fix control-message timeout - drm/nouveau: Add a dedicated mutex for the clients list (CVE-2020-27820) - drm/nouveau: use drm_dev_unplug() during device removal (CVE-2020-27820) - drm/nouveau: clean up all clients on device removal (CVE-2020-27820) - [x86] drm/i915/dp: Ensure sink rate values are always valid - drm/amdgpu: fix set scaling mode Full/Full aspect/Center not works on vga and dvi connectors - scsi: ufs: core: Fix task management completion - scsi: ufs: core: Fix task management completion timeout race - hugetlbfs: flush TLBs correctly after huge_pmd_unshare (CVE-2021-4002) - RDMA/netlink: Add __maybe_unused to static inline in C file - selinux: fix NULL-pointer dereference when hashtab allocation fails - ASoC: DAPM: Cover regression by kctl change notification fix - ice: Delete always true check of PF pointer - fs: export an inode_update_time helper - btrfs: update device path inode time instead of bd_inode - [x86] ALSA: hda: hdac_ext_stream: fix potential locking issues - ALSA: hda: hdac_stream: fix potential locking issue in snd_hdac_stream_assign() - Revert "perf: Rework perf_event_exit_event()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.83 - bpf: Fix toctou on read-only map's constant scalar tracking (CVE-2021-4001) - ACPI: Get acpi_device's parent from the parent field - USB: serial: option: add Telit LE910S1 0x9200 composition - USB: serial: option: add Fibocom FM101-GL variants - [arm*] usb: dwc2: gadget: Fix ISOC flow for elapsed frames - [arm*] usb: dwc2: hcd_queue: Fix use of floating point literal - [arm64,armhf] usb: dwc3: gadget: Ignore NoStream after End Transfer - [arm64,armhf] usb: dwc3: gadget: Check for L1/L2/U3 for Start Transfer - [arm64,armhf] usb: dwc3: gadget: Fix null pointer exception - net: nexthop: fix null pointer dereference when IPv6 is not enabled - [arm64,armhf] usb: chipidea: ci_hdrc_imx: fix potential error pointer dereference in probe - usb: typec: fusb302: Fix masking of comparator and bc_lvl interrupts - usb: hub: Fix usb enumeration issue due to address0 race - usb: hub: Fix locking issues with address0_mutex - [arm*] binder: fix test regression due to sender_euid change - ALSA: ctxfi: Fix out-of-range access - ALSA: hda/realtek: Add quirk for ASRock NUC Box 1100 - ALSA: hda/realtek: Fix LED on HP ProBook 435 G7 - media: cec: copy sequence field for the reply - HID: wacom: Use "Confidence" flag to prevent reporting invalid contacts - [x86] staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect() - fuse: release pipe buf after last use - xen: don't continue xenstore initialization in case of errors - xen: detect uninitialized xenbus in xenbus_init - [powerpc*] KVM: PPC: Book3S HV: Prevent POWER7/8 TLB flush flushing SLB - tracing/uprobe: Fix uprobe_perf_open probes iteration - tracing: Fix pid filtering when triggers are attached - [arm64,armhf] mmc: sdhci-esdhc-imx: disable CMDQ support - mmc: sdhci: Fix ADMA for PAGE_SIZE >= 64KiB - [armhf] mdio: aspeed: Fix "Link is Down" issue - [arm64] PCI: aardvark: Deduplicate code in advk_pcie_rd_conf() - [arm64] PCI: aardvark: Update comment about disabling link training - [arm64] PCI: aardvark: Implement re-issuing config requests on CRS response - [arm64] PCI: aardvark: Simplify initialization of rootcap on virtual bridge - [arm64] PCI: aardvark: Fix link training - proc/vmcore: fix clearing user buffer by properly using clear_user() - netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY - netfilter: ctnetlink: do not erase error code with EINVAL - netfilter: ipvs: Fix reuse connection if RS weight is 0 - netfilter: flowtable: fix IPv6 tunnel addr match - [x86] ASoC: topology: Add missing rwsem around snd_ctl_remove() calls - net: ieee802154: handle iftypes as u32 - NFSv42: Don't fail clone() unless the OP_CLONE operation failed - [armhf] socfpga: Fix crash with CONFIG_FORTIRY_SOURCE - drm/nouveau/acr: fix a couple NULL vs IS_ERR() checks - scsi: mpt3sas: Fix kernel panic during drive powercycle test - [arm*] drm/vc4: fix error code in vc4_create_object() - iavf: Prevent changing static ITR values if adaptive moderation is on - ALSA: intel-dsp-config: add quirk for JSL devices based on ES8336 codec - [arm64,armhf] firmware: smccc: Fix check for ARCH_SOC_ID not implemented - ipv6: fix typos in __ip6_finish_output() - nfp: checking parameter process for rx-usecs/tx-usecs is invalid - net: stmmac: fix system hang caused by eee_ctrl_timer during suspend/resume - net: stmmac: retain PTP clock time during SIOCSHWTSTAMP ioctls - net: ipv6: add fib6_nh_release_dsts stub - net: nexthop: release IPv6 per-cpu dsts when replacing a nexthop group - ice: fix vsi->txq_map sizing - ice: avoid bpf_prog refcount underflow - scsi: core: sysfs: Fix setting device state to SDEV_RUNNING - scsi: scsi_debug: Zero clear zones at reset write pointer - erofs: fix deadlock when shrink erofs slab - net/smc: Ensure the active closing peer first closes clcsock - [arm64,armhf] net: marvell: mvpp2: increase MTU limit when XDP enabled - nvmet-tcp: fix incomplete data digest send - [armhf] net/ncsi : Add payload to be 32-bit aligned to fix dropped packets - PM: hibernate: use correct mode for swsusp_close() - drm/amd/display: Set plane update flags for all planes in reset - tcp_cubic: fix spurious Hystart ACK train detections for not-cwnd-limited flows - lan743x: fix deadlock in lan743x_phy_link_status_change() - net: phylink: Force link down and retrigger resolve on interface change - net: phylink: Force retrigger in case of latched link-fail indicator - net/smc: Fix NULL pointer dereferencing in smc_vlan_by_tcpsk() - net/smc: Fix loop in smc_listen - nvmet: use IOCB_NOWAIT only if the filesystem supports it - igb: fix netpoll exit with traffic - [mips*] loongson64: fix FTLB configuration - [mips*] use 3-level pgtable for 64KB page size on MIPS_VA_BITS_48 - net/sched: sch_ets: don't peek at classes beyond 'nbands' - net: vlan: fix underflow for the real_dev refcnt - net/smc: Don't call clcsock shutdown twice when smc shutdown - [arm64] net: hns3: fix VF RSS failed problem after PF enable multi-TCs - [arm64] net: mscc: ocelot: don't downgrade timestamping RX filters in SIOCSHWTSTAMP - [arm64] net: mscc: ocelot: correctly report the timestamping RX filters in ethtool - tcp: correctly handle increased zerocopy args struct size - sched/scs: Reset task stack state in bringup_cpu() - f2fs: set SBI_NEED_FSCK flag when inconsistent node block found - ceph: properly handle statfs on multifs setups - smb3: do not error on fsync when readonly - [amd64] iommu/amd: Clarify AMD IOMMUv2 initialization messages - vhost/vsock: fix incorrect used length reported to the guest - tracing: Check pid filtering when creating events - xen: sync include/xen/interface/io/ring.h with Xen's newest version - xen/blkfront: read response from backend only once - xen/blkfront: don't take local copy of a request from the ring page - xen/blkfront: don't trust the backend response data blindly - xen/netfront: read response from backend only once - xen/netfront: don't read data from request on the ring page - xen/netfront: disentangle tx_skb_freelist - xen/netfront: don't trust the backend response data blindly - tty: hvc: replace BUG_ON() with negative return value - [s390x] mm: validate VMA in PGSTE manipulation functions - shm: extend forced shm destroy to support objects from several IPC nses - net: stmmac: platform: fix build warning when with !CONFIG_PM_SLEEP - drm/amdgpu/gfx9: switch to golden tsc registers for renoir+ https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.84 - NFSv42: Fix pagecache invalidation after COPY/CLONE - can: j1939: j1939_tp_cmd_recv(): check the dst address of TP.CM_BAM - ovl: simplify file splice - ovl: fix deadlock in splice write - gfs2: release iopen glock early in evict - gfs2: Fix length of holes reported at end-of-file - [powerpc*] pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" - mac80211: do not access the IV when it was stripped - net/smc: Transfer remaining wait queue entries during fallback - [amd64,arm64] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) - net: return correct error code - [x86] platform/x86: thinkpad_acpi: Add support for dual fan control - [x86] platform/x86: thinkpad_acpi: Fix WWAN device disabled issue after S3 deep - [s390x] setup: avoid using memblock_enforce_memory_limit - btrfs: check-integrity: fix a warning on write caching disabled disk - thermal: core: Reset previous low and high trip during thermal zone init - scsi: iscsi: Unblock session then wake up error handler - drm/amd/amdgpu: fix potential memleak - ata: ahci: Add Green Sardine vendor ID as board_ahci_mobile - [arm64] ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() - ipv6: check return value of ipv6_skip_exthdr - net/smc: Avoid warning of possible recursive locking - ACPI: Add stubs for wakeup handler functions - vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit - kprobes: Limit max data_size of the kretprobe instances - rt2x00: do not mark device gone on EPROTO errors during start - ipmi: Move remove_work to dedicated workqueue - cpufreq: Fix get_cpu_device() failure in add_cpu_dev_symlink() - [s390x] pci: move pseudo-MMIO to prevent MIO overlap - fget: check that the fd still exists after getting a ref to it - ipv6: fix memory leak in fib6_rule_suppress - drm/amd/display: Allow DSC on supported MST branch devices - KVM: Disallow user memslot with size that exceeds "unsigned long" - [x86] KVM: nVMX: Flush current VPID (L1 vs. L2) for KVM_REQ_TLB_FLUSH_GUEST - [x86] KVM: x86: Use a stable condition around all VT-d PI paths - [arm64] KVM: arm64: Avoid setting the upper 32 bits of TCR_EL2 and CPTR_EL2 to 1 - [x86] KVM: X86: Use vcpu->arch.walk_mmu for kvm_mmu_invlpg() - wireguard: allowedips: add missing __rcu annotation to satisfy sparse - wireguard: device: reset peer src endpoint when netns exits - wireguard: receive: use ring buffer for incoming handshakes - wireguard: receive: drop handshakes if queue lock is contended - wireguard: ratelimiter: use kvcalloc() instead of kvzalloc() - [armhf] i2c: stm32f7: flush TX FIFO upon transfer errors - [armhf] i2c: stm32f7: recover the bus on access timeout - [armhf] i2c: stm32f7: stop dma transfer in case of NACK - tcp: fix page frag corruption on page fault - net: qlogic: qlcnic: Fix a NULL pointer dereference in qlcnic_83xx_add_rings() - net: mpls: Fix notifications when deleting a device - siphash: use _unaligned version by default - [arm64] ftrace: add missing BTIs - net/mlx4_en: Fix an use-after-free bug in mlx4_en_try_alloc_resources() - rxrpc: Fix rxrpc_peer leak in rxrpc_look_up_bundle() - rxrpc: Fix rxrpc_local leak in rxrpc_lookup_peer() - ALSA: intel-dsp-config: add quirk for CML devices based on ES8336 codec - net: usb: lan78xx: lan78xx_phy_init(): use PHY_POLL instead of "0" if no IRQ is available - [arm64,armhf] net: marvell: mvpp2: Fix the computation of shared CPUs - [arm64] dpaa2-eth: destroy workqueue at the end of remove function - net: annotate data-races on txq->xmit_lock_owner - ipv4: convert fib_num_tclassid_users to atomic_t - net/smc: fix wrong list_del in smc_lgr_cleanup_early - net/rds: correct socket tunable error in rds_tcp_tune() - net/smc: Keep smc_close_final rc during active close - [arm64] drm/msm/a6xx: Allocate enough space for GMU registers - [arm64] drm/msm: Do hw_init() before capturing GPU state - [amd64,arm64] atlantic: Increase delay for fw transactions - [amd64,arm64] atlatnic: enable Nbase-t speeds with base-t - [amd64,arm64] atlantic: Fix to display FW bundle version instead of FW mac version. - [amd64,arm64] atlantic: Add missing DIDs and fix 115c. - [amd64,arm64] Remove Half duplex mode speed capabilities. - [amd64,arm64] atlantic: Fix statistics logic for production hardware - [amd64,arm64] atlantic: Remove warn trace message. - [x86] KVM: x86/pmu: Fix reserved bits for AMD PerfEvtSeln register - [x86] KVM: VMX: Set failure code in prepare_vmcs02() - [x86] entry: Use the correct fence macro after swapgs in kernel CR3 - [x86] xen: Add xenpv_restore_regs_and_return_to_usermode() - sched/uclamp: Fix rq->uclamp_max not set on first enqueue - [x86] pv: Switch SWAPGS to ALTERNATIVE - [x86] entry: Add a fence for kernel entry SWAPGS in paranoid_entry() - vgacon: Propagate console boot parameters before calling `vc_resize' - xhci: Fix commad ring abort, write all 64 bits to CRCR register. - USB: NO_LPM quirk Lenovo Powered USB-C Travel Hub - usb: typec: tcpm: Wait in SNK_DEBOUNCED until disconnect - [x86] tsc: Add a timer to make sure TSC_adjust is always checked - [x86] tsc: Disable clocksource watchdog for TSC on qualified platorms - [x86] 64/mm: Map all kernel memory into trampoline_pgd - [arm64] tty: serial: msm_serial: Deactivate RX DMA for polling support - [arm*] serial: pl011: Add ACPI SBSA UART match id - [arm64,armhf] serial: tegra: Change lower tolerance baud rate limit for tegra20 and tegra30 - serial: core: fix transmit-buffer reset and memleak - serial: 8250_pci: Fix ACCES entries in pci_serial_quirks array - serial: 8250_pci: rewrite pericom_do_set_divisor() - serial: 8250: Fix RTS modem control while in rs485 mode - iwlwifi: mvm: retry init flow if failed - ipmi: msghandler: Make symbol 'remove_work_wq' static . [ Salvatore Bonaccorso ] * integrity: Drop "MODSIGN: load blacklist from MOKx" as redundant after 5.10.47. * Bump ABI to 10 * Refresh "tools/perf: pmu-events: Fix reproducibility" * [rt] Update to 5.10.73-rt54 * [rt] Refresh "tracing: Merge irqflags + preempt counter." * Refresh "Export symbols needed by Android drivers" * [rt] Refresh "printk: introduce kernel sync mode" * [rt] Refresh "printk: move console printing to kthreads" * [rt] Drop "rcutorture: Avoid problematic critical section nesting on RT" * [rt] Add new signing key for Luis Claudio R. Goncalves * [rt] Update to 5.10.83-rt58 . [ Ben Hutchings ] * tools/perf: Fix warning introduced by "tools/perf: pmu-events: Fix reproducibility" linux-signed-amd64 (5.10.106+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.106-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.104 - mac80211_hwsim: report NOACK frames in tx_status - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work - [arm*] i2c: bcm2835: Avoid clock stretching timeouts - ASoC: rt5682: do not block workqueue if card is unbound - regulator: core: fix false positive in regulator_late_cleanup() - Input: clear BTN_RIGHT/MIDDLE on buttonpads - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW - tipc: fix a bit overflow in tipc_crypto_key_rcv() - cifs: fix double free race when mount fails in cifs_get_root() - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990 - usb: gadget: don't release an existing dev->buf (CVE-2022-24958) - usb: gadget: clear related members when goto fail (CVE-2022-24958) - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I() - exfat: fix i_blocks for files truncated over 4 GiB - tracing: Add test for user space strings when filtering on string pointers - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char - ata: pata_hpt37x: fix PCI clock detection - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag - tracing: Add ustring operation to filtering string pointers - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min - [amd64] iommu/amd: Recover from event log overflow - [x86] drm/i915: s/JSP2/ICP2/ PCH - xen/netfront: destroy queues before real_num_tx_queues is zeroed - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls - xfrm: fix MTU regression - netfilter: fix use-after-free in __nf_register_net_hook() - bpf, sockmap: Do not ignore orig_len parameter - xfrm: fix the if_id check in changelink - xfrm: enforce validity of offload input flags - e1000e: Correct NVM checksum verification flow - net: fix up skbs delta_truesize in UDP GRO frag_list - netfilter: nf_queue: don't assume sk is full socket - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: handle socket prefetch - batman-adv: Request iflink once in batadv-on-batadv check - batman-adv: Request iflink once in batadv_get_real_netdevice - batman-adv: Don't expect inter-netns unique iflink indices - net: ipv6: ensure we call ipv6_mc_down() at most once - net: dcb: flush lingering app table entries for unregistered devices - net/smc: fix connection leak - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server - rcu/nocb: Fix missed nocb_timer requeue - ice: Fix race conditions between virtchnl handling and VF ndo ops - ice: fix concurrent reset and removal of VFs - sched/topology: Make sched_init_numa() use a set for the deduplicating sort - sched/topology: Fix sched_domain_topology_level alloc in sched_init_numa() - mac80211: fix forwarded mesh frames AC & queue selection - net: stmmac: fix return value of __setup handler - mac80211: treat some SAE auth steps as final - iavf: Fix missing check for running netdev - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe() - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc() - efivars: Respect "block" flag in efivar_entry_set_safe() - can: gs_usb: change active_channels's type from atomic_t to u8 - igc: igc_read_phy_reg_gpy: drop premature return - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup() functions - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs - igc: igc_write_phy_reg_gpy: drop premature return - memfd: fix F_SEAL_WRITE after shmem huge page allocated - [armhf] dts: switch timer config to common devkit8000 devicetree - [armhf] dts: Use 32KiHz oscillator on devkit8000 - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed - [arm64] soc: fsl: guts: Add a missing memory allocation failure check - [armhf] tegra: Move panels to AUX bus - net: chelsio: cxgb3: check the return value of pci_find_capability() - iavf: Refactor iavf state machine tracking - nl80211: Handle nla_memdup failures in handle_nan_filter - drm/amdgpu: fix suspend/resume hang regression - net: dcb: disable softirqs in dcbnl_flush_dev() - Input: elan_i2c - move regulator_[en|dis]able() out of elan_[en|dis]able_power() - Input: elan_i2c - fix regulator enable count imbalance after suspend/resume - HID: add mapping for KEY_DICTATE - HID: add mapping for KEY_ALL_APPLICATIONS - tracing/histogram: Fix sorting on old "cpu" value - tracing: Fix return value of __setup handlers - btrfs: fix lost prealloc extents beyond eof after full fsync - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup - btrfs: add missing run of delayed items after unlink during log replay - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6" - hamradio: fix macro redefine warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.105 - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [armhf] report Spectre v2 status through sysfs - [armel,armhf] early traps initialisation - [armel,armhf] use LOADADDR() to get load address of sections - [armel,armhf] Spectre-BHB workaround - [armel,armhf] include unprivileged BPF status in Spectre V2 reporting - [arm64] cputype: Add CPU implementor & types for the Apple M1 cores - [arm64] Add Neoverse-N2, Cortex-A710 CPU part definition - [arm64] Add Cortex-X2 CPU part definition - [arm64] Add Cortex-A510 CPU part definition - [arm64] Add HWCAP for self-synchronising virtual counter - [arm64] add ID_AA64ISAR2_EL1 sys register - [arm64] cpufeature: add HWCAP for FEAT_AFP - [arm64] cpufeature: add HWCAP for FEAT_RPRES - [arm64] entry.S: Add ventry overflow sanity checks - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit - [arm64] entry: Make the trampoline cleanup optional - [arm64] entry: Free up another register on kpti's tramp_exit path - [arm64] entry: Move the trampoline data page before the text page - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary - [arm64] entry: Don't assume tramp_vectors is the start of the vectors - [arm64] entry: Move trampoline macros out of ifdef'd section - [arm64] entry: Make the kpti trampoline's kpti sequence optional - [arm64] entry: Allow the trampoline text to occupy multiple pages - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations - [arm64] entry: Add vectors that have the bhb mitigation sequences - [arm64] entry: Add macro for reading symbol addresses from the trampoline - [arm64] Add percpu vectors for EL1 - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A - [arm64] Mitigate spectre style branch history side channels - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - [arm64] Use the clearbhb instruction in mitigations - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [armel,armhf] fix co-processor register typo - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld - [armhf] fix build warning in proc-v7-bugs.c - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case (CVE-2022-23040, XSA-396) - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036, CVE-2022-23038, XSA-396) - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23036, XSA-396) - xen/netfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23037, XSA-396) - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23038, XSA-396) - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039, XSA-396) - xen: remove gnttab_query_foreign_access() - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/gnttab: fix gnttab_end_foreign_access() without page specified (CVE-2022-23041, XSA-396) - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() (CVE-2022-23042, XSA-396) - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.106 - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias - tipc: fix kernel panic when enabling bearer - mISDN: Remove obsolete PIPELINE_DEBUG debugging information - mISDN: Fix memory leak in dsp_pipeline_build() - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw() - net: qlogic: check the return value of dma_alloc_coherent() in qed_vf_hw_prepare() - esp: Fix BEET mode inter address family tunneling on GSO - qed: return status of qed_iov_get_link - i40e: stop disabling VFs due to PF error responses - ice: stop disabling VFs due to PF error responses - ice: Align macro names to the specification - ice: Remove unnecessary checker loop - ice: Rename a couple of variables - ice: Fix curr_link_speed advertised speed - tipc: fix incorrect order of state message data sanity check - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable - ax25: Fix NULL pointer dereference in ax25_kill_by_device - net/mlx5: Fix size field in bufferx_reg struct - net/mlx5: Fix a race on command flush flow - net/mlx5e: Lag, Only handle events from highest priority multipath entry - NFC: port100: fix use-after-free in port100_send_complete - net: phy: DP83822: clear MISR2 register to disable interrupts - sctp: fix kernel-infoleak for SCTP sockets - [arm64] net: bcmgenet: Don't claim WOL when its not available - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort - net-sysfs: add check for netdevice being present to speed_show - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read - gpio: Return EPROBE_DEFER if gc->to_irq is NULL - Revert "xen-netback: remove 'hotplug-status' once it has served its purpose" - Revert "xen-netback: Check for hotplug-status existence before watching" - ipv6: prevent a possible race condition with lifetimes - tracing: Ensure trace buffer is at least 4096 bytes large - fuse: fix pipe buffer lifetime for direct_io - staging: rtl8723bs: Fix access-point mode deadlock - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive - [arm64] mmc: meson: Fix usage of meson_mmc_post_req() - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0 - virtio: unexport virtio_finalize_features - virtio: acknowledge all features before access - watch_queue, pipe: Free watchqueue state after clearing pipe ring (CVE-2022-0995) - watch_queue: Fix to release page in ->release() (CVE-2022-0995) - watch_queue: Fix to always request a pow-of-2 pipe ring size (CVE-2022-0995) - watch_queue: Fix the alloc bitmap size to reflect notes allocated (CVE-2022-0995) - watch_queue: Free the alloc bitmap when the watch_queue is torn down (CVE-2022-0995) - watch_queue: Fix lack of barrier/sync/lock between post and read (CVE-2022-0995) - watch_queue: Make comment about setting ->defunct more accurate (CVE-2022-0995) - [x86] boot: Fix memremap of setup_indirect structures - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data() - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL - ext4: add check to prevent attempting to resize an fs with sparse_super2 - [armel,armhf] fix Thumb2 regression with Spectre BHB - watch_queue: Fix filter limit check ((CVE-2022-0995) . [ Salvatore Bonaccorso ] * Bump ABI to 13 * [rt] Update to 5.10.104-rt63 * [rt] Update to 5.10.106-rt64 * sctp: fix the processing for INIT chunk (CVE-2021-3772) * tcp: make tcp_read_sock() more robust * io_uring: return back safer resurrect * [arm64] kvm: Fix copy-and-paste error in bhb templates for v5.10 stable linux-signed-amd64 (5.10.103+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.103-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.93 - kbuild: Add $(KBUILD_HOSTLDFLAGS) to 'has_libelf' test - devtmpfs regression fix: reconfigure on each mount - orangefs: Fix the size of a memory allocation in orangefs_bufmap_alloc() - perf: Protect perf_guest_cbs with RCU - [x86] KVM: Register Processor Trace interrupt hook iff PT enabled in guest - [s390x] KVM: Clarify SIGP orders versus STOP/RESTART - 9p: only copy valid iattrs in 9P2000.L setattr implementation - [x86] video: vga16fb: Only probe for EGA and VGA 16 color graphic cards - media: uvcvideo: fix division by zero at stream start - rtlwifi: rtl8192cu: Fix WARNING when calling local_irq_restore() with interrupts enabled - firmware: qemu_fw_cfg: fix sysfs information leak - firmware: qemu_fw_cfg: fix NULL-pointer deref on duplicate entries - firmware: qemu_fw_cfg: fix kobject leak in probe error path - [x86] KVM: remove PMU FIXED_CTR3 from msrs_to_save_all - ALSA: hda/realtek: Add speaker fixup for some Yoga 15ITL5 devices - ALSA: hda/realtek - Fix silent output on Gigabyte X570 Aorus Master after reboot from Windows - ALSA: hda: ALC287: Add Lenovo IdeaPad Slim 9i 14ITL5 speaker quirk - ALSA: hda/realtek: Add quirk for Legion Y9000X 2020 - ALSA: hda/realtek: Re-order quirk entries for Lenovo - [powerpc*] pseries: Get entry and uaccess flush required bits from H_GET_CPU_CHARACTERISTICS https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.94 - [x86] KVM: VMX: switch blocked_vcpu_on_cpu_lock to raw spinlock - HID: uhid: Fix worker destroying device without any protection - HID: wacom: Reset expected and received contact counts at the same time - HID: wacom: Ignore the confidence flag when a touch is removed - HID: wacom: Avoid using stale array indicies to read contact count - f2fs: fix to do sanity check in is_alive() - nfc: llcp: fix NULL error pointer dereference on sendmsg() after failed bind() - [armhf] mtd: rawnand: gpmi: Add ERR007117 protection for nfc_apply_timings - [armhf] mtd: rawnand: gpmi: Remove explicit default gpmi clock setting for i.MX6 - mtd: Fixed breaking list in __mtd_del_partition. - [x86] gpu: Reserve stolen memory for first integrated Intel GPU - rtc: cmos: take rtc_lock while reading from CMOS - media: v4l2-ioctl.c: readbuffers depends on V4L2_CAP_READWRITE - media: flexcop-usb: fix control-message timeouts - media: mceusb: fix control-message timeouts - media: em28xx: fix control-message timeouts - media: cpia2: fix control-message timeouts - media: s2255: fix control-message timeouts - media: dib0700: fix undefined behavior in tuner shutdown - media: redrat3: fix control-message timeouts - media: pvrusb2: fix control-message timeouts - media: stk1160: fix control-message timeouts - [armhf] media: cec-pin: fix interrupt en/disable handling - [x86] can: softing_cs: softingcs_probe(): fix memleak on registration failure - iio: adc: ti-adc081c: Partial revert of removal of ACPI IDs - [arm64,armhf] gpu: host1x: Add back arm_iommu_detach_device() - dma_fence_array: Fix PENDING_ERROR leak in dma_fence_array_signaled() - PCI: Add function 1 DMA alias quirk for Marvell 88SE9125 SATA controller - mm_zone: add function to check if managed dma zone exists - [arm64] dma/pool: create dma atomic pool only if dma zone has managed pages - mm/page_alloc.c: do not warn allocation failure on zone DMA if no managed pages - shmem: fix a race between shmem_unused_huge_shrink and shmem_evict_inode - drm/ttm: Put BO in its memory manager's lru list - Bluetooth: L2CAP: Fix not initializing sk_peer_pid - [armhf] drm/bridge: display-connector: fix an uninitialized pointer in probe() - drm: fix null-ptr-deref in drm_dev_init_release() - [arm64,armhf] drm/rockchip: dsi: Fix unbalanced clock on probe error - [arm64,armhf] drm/rockchip: dsi: Hold pm-runtime across bind/unbind - [arm64,armhf] drm/rockchip: dsi: Disable PLL clock on bind error - [arm64,armhf] drm/rockchip: dsi: Reconfigure hardware on resume() - Bluetooth: cmtp: fix possible panic when cmtp_init_sockets() fails - [arm*] clk: bcm-2835: Pick the closest clock rate - [arm*] clk: bcm-2835: Remove rounding up the dividers - [arm*] drm/vc4: hdmi: Set a default HSM rate - [arm64] wcn36xx: ensure pairing of init_scan/finish_scan and start_scan/end_scan - [arm64] wcn36xx: Indicate beacon not connection loss on MISSED_BEACON_IND - [arm64] wcn36xx: Fix DMA channel enable/disable cycle - [arm64] wcn36xx: Release DMA channel descriptor allocations - [arm64] wcn36xx: Put DXE block into reset before freeing memory - [arm64] wcn36xx: populate band before determining rate on RX - [arm64] wcn36xx: fix RX BD rate mapping for 5GHz legacy rates - ath11k: Send PPDU_STATS_CFG with proper pdev mask to firmware - media: videobuf2: Fix the size printk format - [armhf] media: aspeed: fix mode-detect always time out at 2nd run - media: em28xx: fix memory leak in em28xx_init_dev - [armhf] media: aspeed: Update signal status immediately to ensure sane hw state - fs: dlm: use sk->sk_socket instead of con->sock - fs: dlm: don't call kernel_getpeername() in error_report() - Bluetooth: stop proccessing malicious adv data - ath11k: Fix ETSI regd with weather radar overlap - ath11k: clear the keys properly via DISABLE_KEY - ath11k: reset RSN/WPA present state for open BSS - [arm64] tee: fix put order in teedev_close_context() - [x86] drm/vboxvideo: fix a NULL vs IS_ERR() check - media: dmxdev: fix UAF when dvb_register_device() fails - [arm64] crypto: qce - fix uaf on qce_ahash_register_one - [arm64] crypto: qce - fix uaf on qce_skcipher_register_one - [armhf] dts: stm32: fix dtbs_check warning on ili9341 dts binding on stm32f429 disco - [x86] crypto: qat - fix spelling mistake: "messge" -> "message" - [x86] crypto: qat - remove unnecessary collision prevention step in PFVF - [x86] crypto: qat - make pfvf send message direction agnostic - [x86] crypto: qat - fix undetected PFVF timeout in ACK loop - ath11k: Use host CE parameters for CE interrupts configuration - [armhf] media: imx-pxp: Initialize the spinlock prior to using it - [armhf] media: coda: fix CODA960 JPEG encoder buffer overflow - [arm64] media: venus: pm_helpers: Control core power domain manually - [arm64] media: venus: core, venc, vdec: Fix probe dependency error - [arm64] media: venus: core: Fix a potential NULL pointer dereference in an error handling path - [arm64] media: venus: core: Fix a resource leak in the error handling path of 'venus_probe()' - [armhf] thermal/drivers/imx: Implement runtime PM support - netfilter: bridge: add support for pppoe filtering - cgroup: Trace event cgroup id fields should be u64 - ACPI: EC: Rework flushing of EC work while suspended to idle - drm/amdgpu: Fix a NULL pointer dereference in amdgpu_connector_lcd_native_mode() - drm/radeon/radeon_kms: Fix a NULL pointer dereference in radeon_driver_open_kms() - [arm*] serial: amba-pl011: do not request memory region twice - floppy: Fix hang in watchdog when disk is ejected - [x86] staging: rtl8192e: return error code from rtllib_softmac_init() - [x86] staging: rtl8192e: rtllib_module: fix error handle case in alloc_rtllib() - sched/fair: Fix detection of per-CPU kthreads waking a task - sched/fair: Fix per-CPU kthread and wakee stacking for asym CPU capacity - bpf: Adjust BTF log size limit. - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) - bpf: Remove config check to enable bpf support for branch records - [arm64] lib: Annotate {clear, copy}_page() as position-independent - [arm64] clear_page() shouldn't use DC ZVA when DCZID_EL0.DZP == 1 - media: dib8000: Fix a memleak in dib8000_init() - media: saa7146: mxb: Fix a NULL pointer dereference in mxb_attach() - media: si2157: Fix "warm" tuner state detection - wireless: iwlwifi: Fix a double free in iwl_txq_dyn_alloc_dma - sched/rt: Try to restart rt period timer when rt runtime exceeded - rcu/exp: Mark current CPU as exp-QS in IPI loop second pass - mwifiex: Fix possible ABBA deadlock - xfrm: fix a small bug in xfrm_sa_len() - [x86] uaccess: Move variable into switch case statement - [armhf] crypto: stm32 - Fix last sparse warning in stm32_cryp_check_ctr_counter - [armhf] crypto: stm32/cryp - fix CTR counter carry - [armhf] crypto: stm32/cryp - fix xts and race condition in crypto_engine requests - [armhf] crypto: stm32/cryp - check early input data - [armhf] crypto: stm32/cryp - fix double pm exit - [armhf] crypto: stm32/cryp - fix lrw chaining mode - [armhf] crypto: stm32/cryp - fix bugs and crash in tests - [armhf] crypto: stm32 - Revert broken pm_runtime_resume_and_get changes - ath11k: Fix deleting uninitialized kernel timer during fragment cache flush - media: dw2102: Fix use after free - media: msi001: fix possible null-ptr-deref in msi001_probe() - [armhf] media: coda/imx-vdoa: Handle dma_set_coherent_mask error codes - ath11k: Fix a NULL pointer dereference in ath11k_mac_op_hw_scan() - [arm64] dts: qcom: c630: Fix soundcard setup - [arm64] drm/msm/dpu: fix safe status debugfs file - [arm64,armhf] drm/tegra: vic: Fix DMA API misuse - xfrm: interface with if_id 0 should return error - xfrm: state and policy should fail if XFRMA_IF_ID 0 - [armel,armhf] 9159/1: decompressor: Avoid UNPREDICTABLE NOP encoding - usb: ftdi-elan: fix memory leak on device disconnect - iwlwifi: mvm: fix 32-bit build in FTM - iwlwifi: mvm: test roc running status bits before removing the sta - [armhf] mmc: meson-mx-sdio: add IRQ check - selinux: fix potential memleak in selinux_add_opt() - Bluetooth: L2CAP: Fix using wrong mode - bpftool: Enable line buffering for stdout - software node: fix wrong node passed to find nargs_prop - Bluetooth: hci_qca: Stop IBS timer during BT OFF - [x86] mce/inject: Avoid out-of-bounds write when setting flags - ACPI: scan: Create platform device for BCM4752 and LNV4752 ACPI nodes - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in __nonstatic_find_io_region() - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in nonstatic_find_mem_region() - netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check() - bpf: Don't promote bogus looking registers after null check. - bpf: Fix SO_RCVBUF/SO_SNDBUF handling in _bpf_setsockopt(). - netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone - ppp: ensure minimum packet size in ppp_write() - Bluetooth: hci_bcm: Check for error irq - Bluetooth: hci_qca: Fix NULL vs IS_ERR_OR_NULL check in qca_serdev_probe - [arm64] usb: dwc3: qcom: Fix NULL vs IS_ERR checking in dwc3_qcom_probe - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_get_str_desc - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_huion_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_frame_init_v1_buttonpad - debugfs: lockdown: Allow reading debugfs files that are not world readable - net/mlx5e: Fix page DMA map/unmap attributes - net/mlx5e: Don't block routes with nexthop objects in SW - Revert "net/mlx5e: Block offload of outer header csum for UDP tunnels" - net/mlx5: Set command entry semaphore up once got index free - lib/mpi: Add the return value check of kcalloc() - Bluetooth: L2CAP: uninitialized variables in l2cap_sock_setsockopt() - [arm64,armhf] spi: spi-meson-spifc: Add missing pm_runtime_disable() in meson_spifc_probe - ax25: uninitialized variable in ax25_setsockopt() - netrom: fix api breakage in nr_setsockopt() - regmap: Call regmap_debugfs_exit() prior to _init() - tpm: add request_locality before write TPM_INT_ENABLE - tpm_tis: Fix an error handling path in 'tpm_tis_core_init()' - can: softing: softing_startstop(): fix set but not used variable warning - pcmcia: fix setting of kthread task states - iwlwifi: mvm: Use div_s64 instead of do_div in iwl_mvm_ftm_rtt_smoothing() - net: mcs7830: handle usb read errors properly - ext4: avoid trim error on fs with small groups - ALSA: jack: Add missing rwsem around snd_ctl_remove() calls - ALSA: PCM: Add missing rwsem around snd_ctl_remove() calls - ALSA: hda: Add missing rwsem around snd_ctl_remove() calls - RDMA/bnxt_re: Scan the whole bitmap when checking if "disabling RCFW with pending cmd-bit" - [arm64] RDMA/hns: Validate the pkey index - scsi: pm80xx: Update WARN_ON check in pm8001_mpi_build_cmd() - [arm64] clk: imx8mn: Fix imx8mn_clko1_sels - [powerpc*] prom_init: Fix improper check of prom_getprop() - dt-bindings: thermal: Fix definition of cooling-maps contribution property - [powerpc*] 64s: Convert some cpu_setup() and cpu_restore() functions to C - [powerpc*] perf: MMCR0 control for PMU registers under PMCC=00 - [powerpc*] perf: move perf irq/nmi handling details into traps.c - [powerpc*] irq: Add helper to set regs->softe - [powerpc*] perf: Fix PMU callbacks to clear pending PMI before resetting an overflown PMC - clocksource: Reduce clocksource-skew threshold - clocksource: Avoid accidental unstable marking of clocksources - ALSA: oss: fix compile error when OSS_DEBUG is enabled - ALSA: usb-audio: Drop superfluous '0' in Presonus Studio 1810c's ID - [arm*] binder: fix handling of error during copy - [arm64,armhf] iommu/io-pgtable-arm: Fix table descriptor paddr formatting - scsi: ufs: Fix race conditions related to driver data - RDMA/qedr: Fix reporting max_{send/recv}_wr attrs - PCI/MSI: Fix pci_irq_vector()/pci_irq_get_affinity() - RDMA/core: Let ib_find_gid() continue search even after empty entry - RDMA/cma: Let cma_resolve_ib_dev() continue search even after empty entry - [x86] ASoC: rt5663: Handle device_property_read_u32_array error codes - [amd64] iommu/amd: Remove iommu_init_ga() - [amd64] iommu/amd: Restore GA log/tail pointer on host resume - [x86] ASoC: Intel: catpt: Test dmaengine_submit() result before moving on - iommu/iova: Fix race between FQ timeout and teardown - scsi: block: pm: Always set request queue runtime active in blk_post_runtime_resume() - [powerpc*] xive: Add missing null check after calling kmalloc - RDMA/cxgb4: Set queue pair state when being queried - of: base: Fix phandle argument length mismatch error message - [armhf] dts: omap3-n900: Fix lp5523 for multi color - Bluetooth: Fix debugfs entry leak in hci_register_dev() - fs: dlm: filter user dlm messages for kernel locks - [arm64,armhf] drm/lima: fix warning when CONFIG_DEBUG_SG=y & CONFIG_DMA_API_DEBUG=y - ar5523: Fix null-ptr-deref with unexpected WDCMSG_TARGET_START reply - [arm64,armhf] drm/bridge: dw-hdmi: handle ELD when DRM_BRIDGE_ATTACH_NO_CONNECTOR - drm/nouveau/pmu/gm200-: avoid touching PMU outside of DEVINIT/PREOS/ACR - batman-adv: allow netlink usage in unprivileged containers - ath11k: Fix crash caused by uninitialized TX ring - usb: gadget: f_fs: Use stream_open() for endpoint files - drm: panel-orientation-quirks: Add quirk for the Lenovo Yoga Book X91F/L - HID: apple: Do not reset quirks when the Fn key is not found - media: b2c2: Add missing check in flexcop_pci_isr: - drm/amdgpu/display: set vblank_disable_immediate for DC - [arm64,armhf] tty: serial: imx: disable UCR4_OREN in .stop_rx() instead of .shutdown() - gpiolib: acpi: Do not set the IRQ type if the IRQ is already in use - [armhf] HSI: core: Fix return freed object in hsi_new_client - crypto: jitter - consider 32 LSB for APT - rsi: Fix use-after-free in rsi_rx_done_handler() - rsi: Fix out-of-bounds read in rsi_read_pkt() - ath11k: Avoid NULL ptr access during mgmt tx cleanup - [arm64] media: venus: avoid calling core_clk_setrate() concurrently during concurrent video sessions - [x86] ACPI / x86: Drop PWM2 device on Lenovo Yoga Book from always present table - ACPI: Change acpi_device_always_present() into acpi_device_override_status() - [x86] ACPI / x86: Allow specifying acpi_device_override_status() quirks by path - [x86] ACPI / x86: Add not-present quirk for the PCI0.SDHB.BRC1 device on the GPD win - floppy: Add max size check for user space request - [x86] mm: Flush global TLB when switching to trampoline page-table - media: saa7146: hexium_orion: Fix a NULL pointer dereference in hexium_attach() - media: m920x: don't use stack on USB reads - [x86] thunderbolt: Runtime PM activate both ends of the device link - iwlwifi: mvm: synchronize with FW after multicast commands - iwlwifi: mvm: avoid clearing a just saved session protection id - ath11k: avoid deadlock by change ieee80211_queue_work for regd_update_work - ath10k: Fix tx hanging - net-sysfs: update the queue counts in the unregistration path - net: phy: prefer 1000baseT over 1000baseKX - [armhf] gpio: aspeed: Convert aspeed_gpio.lock to raw_spinlock - ath11k: Avoid false DEADLOCK warning reported by lockdep - [x86] mce: Allow instrumentation during task work queueing - [x86] mce: Mark mce_panic() noinstr - [x86] mce: Mark mce_end() noinstr - [x86] mce: Mark mce_read_aux() noinstr - net: bonding: debug: avoid printing debug logs when bond is not notifying peers - bpf: Do not WARN in bpf_warn_invalid_xdp_action() - HID: quirks: Allow inverting the absolute X/Y values - media: igorplugusb: receiver overflow should be reported - media: saa7146: hexium_gemini: Fix a NULL pointer dereference in hexium_attach() - mmc: core: Fixup storing of OCR for MMC_QUIRK_NONSTD_SDIO - audit: ensure userspace is penalized the same as the kernel when under pressure - [arm64] dts: ls1028a-qds: move rtc node to the correct i2c bus - PM: runtime: Add safety net to supplier device release - cpufreq: Fix initialization of min and max frequency QoS requests - usb: hub: Add delay for SuperSpeed hub resume to let links transit to U0 - ath9k: Fix out-of-bound memcpy in ath9k_hif_usb_rx_stream - rtw88: 8822c: update rx settings to prevent potential hw deadlock - iwlwifi: fix leaks/bad data after failed firmware load - iwlwifi: remove module loading failure message - iwlwifi: mvm: Fix calculation of frame length - iwlwifi: pcie: make sure prph_info is set when treating wakeup IRQ - ath11k: Fix napi related hang - Bluetooth: vhci: Set HCI_QUIRK_VALID_LE_STATES - xfrm: rate limit SA mapping change message to user space - [armhf] drm/etnaviv: consider completed fence seqno in hang check - jffs2: GC deadlock reading a page that is used in jffs2_write_begin() - ACPICA: actypes.h: Expand the ACPI_ACCESS_ definitions - ACPICA: Utilities: Avoid deleting the same object twice in a row - ACPICA: Executer: Fix the REFCLASS_REFOF case in acpi_ex_opcode_1A_0T_1R() - ACPICA: Fix wrong interpretation of PCC address - ACPICA: Hardware: Do not flush CPU cache when entering S4 and S5 - drm/amdgpu: fixup bad vram size on gmc v8 - ACPI: battery: Add the ThinkPad "Not Charging" quirk - btrfs: remove BUG_ON() in find_parent_nodes() - btrfs: remove BUG_ON(!eie) in find_parent_nodes - net: mdio: Demote probed message to debug print - mac80211: allow non-standard VHT MCS-10/11 - dm btree: add a defensive bounds check to insert_at() - dm space map common: add bounds check to sm_ll_lookup_bitmap() - net: phy: marvell: configure RGMII delays for 88E1118 - [arm64] regulator: qcom_smd: Align probe function with rpmh-regulator - [arm64,armhf] serial: pl010: Drop CR register reset on set_termios - serial: core: Keep mctrl register state and cached copy in sync - random: do not throw away excess input to crng_fast_load - [powerpc*] powernv: add missing of_node_put - [powerpc*] btext: add missing of_node_put - [powerpc*] watchdog: Fix missed watchdog reset due to memory ordering race - [x86] i2c: i801: Don't silently correct invalid transfer size - [powerpc*] smp: Move setup_profiling_timer() under CONFIG_PROFILING - [powerpc*] i2c: mpc: Correct I2C reset procedure - [arm64] clk: meson: gxbb: Fix the SDM_EN bit for MPLL0 on GXBB - [powerpc*] KVM: PPC: Book3S: Suppress warnings when allocating too big memory slots - [powerpc*] KVM: PPC: Book3S: Suppress failed alloc warning in H_COPY_TOFROM_GUEST - w1: Misuse of get_user()/put_user() reported by sparse - nvmem: core: set size for sysfs bin file - dm: fix alloc_dax error handling in alloc_dev - scsi: lpfc: Trigger SLI4 firmware dump before doing driver cleanup - ALSA: seq: Set upper limit of processed events - [powerpc*] handle kdump appropriately with crash_kexec_post_notifiers option - [powerpc*] fadump: Fix inaccurate CPU state info in vmcore generated with panic - udf: Fix error handling in udf_new_inode() - [mips64el,mipsel] OCTEON: add put_device() after of_find_device_by_node() - [arm64,armhf] irqchip/gic-v4: Disable redistributors' view of the VPE table at boot time - [x86] i2c: designware-pci: Fix to change data types of hcnt and lcnt parameters - scsi: sr: Don't use GFP_DMA - [arm64] rpmsg: core: Clean up resources on announce_create failure. - [armhf] crypto: stm32/crc32 - Fix kernel BUG triggered in probe() - [arm64] crypto: caam - replace this_cpu_ptr with raw_cpu_ptr - ubifs: Error path in ubifs_remount_rw() seems to wrongly free write buffers - tpm: fix NPE on probe for missing device - xen/gntdev: fix unmap notification order - fuse: Pass correct lend value to filemap_write_and_wait_range() - serial: Fix incorrect rs485 polarity on uart open - cputime, cpuacct: Include guest time in user time in cpuacct.stat - tracing/kprobes: 'nmissed' not showed correctly for kretprobe - iwlwifi: mvm: Increase the scan timeout guard to 30 seconds - [s390x] mm: fix 2KB pgtable release race - device property: Fix fwnode_graph_devcon_match() fwnode leak - [armhf] drm/etnaviv: limit submit sizes - drm/nouveau/kms/nv04: use vzalloc for nv04_display - [arm64,armhf] drm/bridge: analogix_dp: Make PSR-exit block less - [powerpc*] 64s/radix: Fix huge vmap false positive - [arm64] PCI: xgene: Fix IB window setup - PCI: pciehp: Use down_read/write_nested(reset_lock) to fix lockdep errors - [arm*] PCI: pci-bridge-emul: Make expansion ROM Base Address register read-only - [arm*] PCI: pci-bridge-emul: Properly mark reserved PCIe bits in PCI config space - [arm*] PCI: pci-bridge-emul: Fix definitions of reserved bits - [arm*] PCI: pci-bridge-emul: Correctly set PCIe capabilities - [arm*] PCI: pci-bridge-emul: Set PCI_STATUS_CAP_LIST for PCIe device - xfrm: fix policy lookup for ipv6 gre packets - btrfs: fix deadlock between quota enable and other quota operations - btrfs: check the root node for uptodate before returning it - btrfs: respect the max size in the header when activating swap file - ext4: make sure to reset inode lockdep class when quota enabling fails - ext4: make sure quota gets properly shutdown on error - ext4: fix a possible ABBA deadlock due to busy PA - ext4: initialize err_blk before calling __ext4_get_inode_loc - ext4: fix fast commit may miss tracking range for FALLOC_FL_ZERO_RANGE - ext4: set csum seed in tmp inode while migrating to extents - ext4: Fix BUG_ON in ext4_bread when write quota data - ext4: use ext4_ext_remove_space() for fast commit replay delete range - ext4: fast commit may miss tracking unwritten range during ftruncate - ext4: destroy ext4_fc_dentry_cachep kmemcache on module removal - ext4: fix null-ptr-deref in '__ext4_journal_ensure_credits' - ext4: don't use the orphan list when migrating an inode - drm/radeon: fix error handling in radeon_driver_open_kms - of: base: Improve argument length mismatch error - firmware: Update Kconfig help text for Google firmware - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - Documentation: dmaengine: Correctly describe dmatest with channel unset - Documentation: ACPI: Fix data node reference documentation - Documentation: refer to config RANDOMIZE_BASE for kernel address-space randomization - Documentation: fix firewire.rst ABI file path error - Bluetooth: hci_sync: Fix not setting adv set duration - scsi: core: Show SCMD_LAST in text form - [arm64] RDMA/hns: Modify the mapping attribute of doorbell to device - RDMA/rxe: Fix a typo in opcode name - [armhf] dmaengine: stm32-mdma: fix STM32_MDMA_CTBR_TSEL_MASK - Revert "net/mlx5: Add retry mechanism to the command entry index allocation" - block: Fix fsync always failed if once failed - bpftool: Remove inclusion of utilities.mak from Makefiles - xdp: check prog type before updating BPF link - ipv4: update fib_info_cnt under spinlock protection - ipv4: avoid quadratic behavior in netns dismantle - [arm64] net/fsl: xgmac_mdio: Add workaround for erratum A-009885 - [arm64] net/fsl: xgmac_mdio: Fix incorrect iounmap when removing module - f2fs: compress: fix potential deadlock of compress file - f2fs: fix to reserve space for IO align feature - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress - clk: Emit a stern warning with writable debugfs enabled - net/smc: Fix hung_task when removing SMC-R devices - virtio_ring: mark ring unused on error - taskstats: Cleanup the use of task->exit_code - inet: frags: annotate races around fqdir->dead and fqdir->high_thresh - netns: add schedule point in ops_exit_list() - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - gre: Don't accidentally set RTO_ONLINK in gre_fill_metadata_dst() - libcxgb: Don't accidentally set RTO_ONLINK in cxgb_find_route() - perf script: Fix hex dump character output - perf probe: Fix ppc64 'perf probe add events failed' case - devlink: Remove misleading internal_flags from health reporter dump - net: bonding: fix bond_xmit_broadcast return value error bug - net_sched: restore "mpu xxx" handling - [arm64] bcmgenet: add WOL IRQ check - net: sfp: fix high power modules without diagnostic monitoring - [arm64] net: mscc: ocelot: fix using match before it is set - dt-bindings: display: meson-dw-hdmi: add missing sound-name-prefix property - dt-bindings: display: meson-vpu: Add missing amlogic,canvas property - dt-bindings: watchdog: Require samsung,syscon-phandle for Exynos7 - mm/hmm.c: allow VM_MIXEDMAP to work with hmm_range_fault - mtd: nand: bbt: Fix corner case in bad block table handling - ath10k: Fix the MTU size on QCA9377 SDIO https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.95 - bnx2x: Utilize firmware 7.13.21.0 - bnx2x: Invalidate fastpath HSI version for VFs - rcu: Tighten rcu_advance_cbs_nowake() checks - [x86] KVM: x86/mmu: Fix write-protection of PTs mapped by the TDP MMU - select: Fix indefinitely sleeping task in poll_schedule_timeout() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.96 - Bluetooth: refactor malicious adv data check - [arm64] media: venus: core: Drop second v4l2 device unregister - net: sfp: ignore disabled SFP node - net: stmmac: skip only stmmac_ptp_register when resume from suspend - [s390x] module: fix loading modules with a lot of relocations - [s390x] hypfs: include z/VM guests with access control group set - bpf: Guard against accessing NULL pt_regs in bpf_get_task_stack() - [s390x] scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices - udf: Restore i_lenAlloc when inode expansion fails (CVE-2022-0617) - udf: Fix NULL ptr deref when converting from inline format (CVE-2022-0617) - efi: runtime: avoid EFIv2 runtime services on Apple x86 machines - tracing: Don't inc err_log entry count if entry allocation fails - ceph: properly put ceph_string reference after async create attempt - ceph: set pool_ns in new inode layout for async creates - fsnotify: fix fsnotify hooks in pseudo filesystems - Revert "KVM: SVM: avoid infinite loop on NPF from bad address" - [x86] perf/x86/intel/uncore: Fix CAS_COUNT_WRITE issue for ICX - [armhf] drm/etnaviv: relax submit size limits - [x86] KVM: x86: Update vCPU's runtime CPUID on write to MSR_IA32_XSS - [arm64] errata: Fix exec handling in erratum 1418040 workaround - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - serial: 8250: of: Fix mapped region size when using reg-offset property - [armhf] serial: stm32: fix software flow control transfer - tty: n_gsm: fix SW flow control encoding/handling - tty: Add support for Brainboxes UC cards. - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge - [arm64,armhf] usb: xhci-plat: fix crash when suspend if remote wake enable - [arm64,armhf] usb: common: ulpi: Fix crash in ulpi_match() - usb: gadget: f_sourcesink: Fix isoc transfer for USB_SPEED_SUPER_PLUS - USB: core: Fix hang in usb_kill_urb by adding memory barriers - usb: typec: tcpm: Do not disconnect while receiving VBUS off - jbd2: export jbd2_journal_[grab|put]_journal_head - ocfs2: fix a deadlock when commit trans - sched/membarrier: Fix membarrier-rseq fence command missing from query bitmask - [x86] MCE/AMD: Allow thresholding interface updates after init - i40e: Increase delay to 1 s after global EMP reset - i40e: Fix issue when maximum queues is exceeded - i40e: Fix queues reservation for XDP - i40e: Fix for failed to init adminq while VF reset - i40e: fix unsigned stat widths - scsi: bnx2fc: Flush destroy_work queue before calling bnx2fc_interface_put() - ipv6_tunnel: Rate limit warning messages - net: fix information leakage in /proc/net/ptype - hwmon: (lm90) Mark alert as broken for MAX6646/6647/6649 - hwmon: (lm90) Mark alert as broken for MAX6680 - ping: fix the sk_bound_dev_if match in ping_lookup - ipv4: avoid using shared IP generator for connected sockets - hwmon: (lm90) Reduce maximum conversion rate for G781 - NFSv4: nfs_atomic_open() can race when looking up a non-regular file - net-procfs: show net devices bound packet types - [arm64] drm/msm: Fix wrong size calculation - [arm64] drm/msm/dsi: Fix missing put_device() call in dsi_get_phy - [arm64] drm/msm/dsi: invalid parameter check in msm_dsi_phy_enable - ipv6: annotate accesses to fn->fn_sernum - NFS: Ensure the server has an up to date ctime before hardlinking - NFS: Ensure the server has an up to date ctime before renaming - [powerpc*] powerpc64/bpf: Limit 'ldbrx' to processors compliant with ISA v2.06 - netfilter: conntrack: don't increment invalid counter on NF_REPEAT - kernel: delete repeated words in comments - perf: Fix perf_event_read_local() time - sched/pelt: Relax the sync of util_sum with util_avg - net: phy: broadcom: hook up soft_reset for BCM54616S - phylib: fix potential use-after-free - rxrpc: Adjust retransmission backoff - [arm64] efi/libstub: arm64: Fix image check alignment at entry - hwmon: (lm90) Mark alert as broken for MAX6654 - [powerpc*] perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending - net: ipv4: Move ip_options_fragment() out of loop - net: ipv4: Fix the warning for dereference - ipv4: fix ip option filtering for locally generated fragments - [x86] video: hyperv_fb: Fix validation of screen resolution - [arm64] drm/msm/hdmi: Fix missing put_device() call in msm_hdmi_get_phy - [arm64] drm/msm/dpu: invalid parameter check in dpu_setup_dspp_pcc - [armhf] net: cpsw: Properly initialise struct page_pool_params - [arm64] net: hns3: handle empty unknown interrupt for VF - Revert "ipv6: Honor all IPv6 PIO Valid Lifetime values" - net: bridge: vlan: fix single net device option dumping - ipv4: raw: lock the socket in raw_bind() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: remove sparse error in ip_neigh_gw4() - net: bridge: vlan: fix memory leak in __allowed_ingress - dt-bindings: can: tcan4x5x: fix mram-cfg RX FIFO config - fsnotify: invalidate dcache before IN_DELETE event - block: Fix wrong offset in bio_truncate() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.97 - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - [x86] KVM: x86: Forcibly leave nested virt when SMM state is toggled - psi: Fix uaf issue when psi trigger is destroyed while being polled - [x86] mce: Add Xeon Sapphire Rapids to list of CPUs that support PPIN - [x86] cpu: Add Xeon Icelake-D to list of CPUs that support PPIN - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - cgroup-v1: Require capabilities to set release_agent (CVE-2022-0492) - net/mlx5e: Fix handling of wrong devices during bond netevent - net/mlx5: Use del_timer_sync in fw reset flow of halting poll - net/mlx5: E-Switch, Fix uninitialized variable modact - ipheth: fix EOVERFLOW in ipheth_rcvbulk_callback - [amd64,arm64] net: amd-xgbe: ensure to reset the tx_timer_active flag - [amd64,arm64] net: amd-xgbe: Fix skb data length underflow - fanotify: Fix stale file descriptor in copy_event_to_user() - net: sched: fix use-after-free in tc_new_tfilter() - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - cpuset: Fix the bug that subpart_cpus updated wrongly in update_cpumask() - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - tcp: add missing tcp_skb_can_collapse() test in tcp_shift_skb_data() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.98 - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" again https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.99 - selinux: fix double free of cond_list on error paths - audit: improve audit queue handling when "audit=1" on cmdline - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() - ALSA: usb-audio: Correct quirk for VF0770 - ALSA: hda: Fix UAF of leds class devs at unbinding - ALSA: hda: realtek: Fix race at concurrent COEF updates - ALSA: hda/realtek: Add quirk for ASUS GU603 - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows - btrfs: fix deadlock between quota disable and qgroup rescan worker - drm/nouveau: fix off by one in BIOS boundary checking - mm/pgtable: define pte_index so that preprocessor could recognize it - block: bio-integrity: Advance seed correctly for larger interval sizes - dma-buf: heaps: Fix potential spectre v1 gadget - [amd64] IB/hfi1: Fix AIP early init panic - memcg: charge fs_context and legacy_fs_context - RDMA/cma: Use correct address when leaving multicast group - RDMA/ucma: Protect mc during concurrent multicast leaves - [amd64] IB/rdmavt: Validate remote_addr during loopback atomic tests - RDMA/mlx4: Don't continue event handler after memory allocation failure - [amd64] iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - [amd64] iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - [arm64,armhf] spi: meson-spicc: add IRQ check in meson_spicc_probe - net: ieee802154: hwsim: Ensure proper channel selection at probe time - net: ieee802154: Return meaningful error codes from the netlink helpers - net: macsec: Fix offload support for NETDEV_UNREGISTER event - net: macsec: Verify that send_sci is on when setting Tx sci explicitly - net: stmmac: dump gmac4 DMA registers correctly - net: stmmac: ensure PTP time register reads are consistent - [x86] drm/i915/overlay: Prevent divide by zero bugs in scaling - [x86] pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line - [x86] pinctrl: intel: fix unexpected interrupt - [arm*] pinctrl: bcm2835: Fix a few error paths - scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe - nfsd: nfsd4_setclientid_confirm mistakenly expires confirmed client. - [amd64,arm64] gve: fix the wrong AdminQ buffer queue index check - bpf: Use VM_MAP instead of VM_ALLOC for ringbuf - rtc: cmos: Evaluate century appropriate - Revert "fbcon: Disable accelerated scrolling" - fbcon: Add option to enable legacy hardware acceleration - perf stat: Fix display of grouped aliased events - [x86] perf/x86/intel/pt: Fix crash with stop filters in single-range mode - [x86] perf: Default set FREEZE_ON_SMI for all - [arm64] EDAC/xgene: Fix deferred probing - ext4: prevent used blocks from being allocated during fast commit replay - ext4: modify the logic of ext4_mb_new_blocks_simple - ext4: fix error handling in ext4_restore_inline_data() - ext4: fix error handling in ext4_fc_record_modified_inode() - ext4: fix incorrect type issue during replay_del_range - cgroup/cpuset: Fix "suspicious RCU usage" lockdep warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.100 - moxart: fix potential use-after-free on remove path (CVE-2022-0487) - crypto: api - Move cryptomgr soft dependency into algapi https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.101 - integrity: check the return value of audit_log_start() - [arm64] mmc: sdhci-of-esdhc: Check for error num after setting mask - can: isotp: fix potential CAN frame reception race in isotp_rcv() - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs - net: phy: marvell: Fix MDI-x polarity setting in 88e1118-compatible PHYs - NFS: Fix initialisation of nfs_client cl_flags field - NFSD: Clamp WRITE offsets - NFSD: Fix offset type in I/O trace points - drm/amdgpu: Set a suitable dev_info.gart_page_size (Closes: #990279) - NFS: change nfs_access_get_cached to only report the mask - NFSv4 only print the label when its queried - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4.1: Fix uninitialised variable in devicenotify - NFSv4 remove zero number of fs_locations entries error check - NFSv4 expose nfs_parse_server_name function - NFSv4 handle port presence in fs_location server string - [x86] perf: Avoid warning for Arch LBR without XSAVE - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer - net: sched: Clarify error message when qdisc kind is unknown - [powerpc*] fixmap: Fix VM debug warning on unmap - scsi: target: iscsi: Make sure the np under each tpg is unique - scsi: qedf: Add stag_work to all the vports - scsi: qedf: Fix refcount issue when LOGO is received during TMF - scsi: pm8001: Fix bogus FW crash for maxcpus=1 - scsi: ufs: Treat link loss as fatal error - scsi: myrs: Fix crash in error case - PM: hibernate: Remove register_nosave_region_late() - [arm*] usb: dwc2: gadget: don't try to disable ep0 in dwc2_hsotg_suspend - perf: Always wake the parent event - nvme-pci: add the IGNORE_DEV_SUBNQN quirk for Intel P4500/P4600 SSDs - [arm64,armhf] net: stmmac: dwmac-sun8i: use return val of readl_poll_timeout() - KVM: eventfd: Fix false positive RCU usage warning - [x86] KVM: nVMX: eVMCS: Filter out VM_EXIT_SAVE_VMX_PREEMPTION_TIMER - [x86] KVM: nVMX: Also filter MSR_IA32_VMX_TRUE_PINBASED_CTLS when eVMCS - [x86] KVM: SVM: Don't kill SEV guest if SMAP erratum triggers in usermode - [x86] KVM: VMX: Set vmcs.PENDING_DBG.BS on #DB in STI/MOVSS blocking shadow - nvme-tcp: fix bogus request completion when failing to send AER - [arm64] ACPI/IORT: Check node revision for PMCG resources - PM: s2idle: ACPI: Fix wakeup interrupts handling - [arm64,armhf] drm/rockchip: vop: Correct RK3399 VOP register fields - [armhf] ARM: dts: Fix timer regression for beagleboard revision c - usb: f_fs: Fix use-after-free for epfile - [arm*] drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd. - netfilter: ctnetlink: disable helper autoassign - ixgbevf: Require large buffers for build_skb on 82599VF - [arm64,armhf] drm/panel: simple: Assign data from panel_dpi_probe() correctly - ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE - bonding: pair enable_port with slave_arr_updates - [arm64,armhf] net: dsa: mv88e6xxx: don't use devres for mdiobus - [armhf] net: dsa: bcm_sf2: don't use devres for mdiobus - [arm64] net: dsa: felix: don't use devres for mdiobus - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - nfp: flower: fix ida_idx not being released - net: do not keep the dst cache when uncloning an skb dst and its metadata - net: fix a memleak when uncloning an skb dst and its metadata - veth: fix races around rq->rx_notify_masked - [armhf] net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE - tipc: rate limit warning for received illegal binding update - [amd64,arm64] net: amd-xgbe: disable interrupts during pci removal - [arm64] dpaa2-eth: unregister the netdev before disconnecting from the PHY - ice: fix an error code in ice_cfg_phy_fec() - ice: fix IPIP and SIT TSO offload - [arm64] net: mscc: ocelot: fix mutex lock error during ethtool stats read - [arm64,armhf] net: dsa: mv88e6xxx: fix use-after-free in mv88e6xxx_mdios_unregister - vt_ioctl: fix array_index_nospec in vt_setactivate - vt_ioctl: add array_index_nospec to VT_ACTIVATE - n_tty: wake up poll(POLLRDNORM) on receiving data - eeprom: ee1004: limit i2c reads to I2C_SMBUS_BLOCK_MAX - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm*] Revert "usb: dwc2: drd: fix soft connect when gadget is unconfigured" - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - [arm64,armhf] usb: ulpi: Move of_node_put to ulpi_dev_release - [arm64,armhf] usb: ulpi: Call of_node_put correctly - [arm64,armhf] usb: dwc3: gadget: Prevent core from processing stale TRBs - usb: gadget: f_uac2: Define specific wTerminalType - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 - USB: serial: option: add ZTE MF286D modem - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices - USB: serial: cp210x: add NCR Retail IO box id - USB: serial: cp210x: add CPI Bulk Coin Recycler id - speakup-dectlk: Restore pitch setting - [x86] hwmon: (dell-smm) Speed up setting of fan speed - can: isotp: fix error path in isotp_sendmsg() to unlock wait queue - scsi: lpfc: Remove NVMe support if kernel has NVME_FC disabled - scsi: lpfc: Reduce log messages seen after firmware download - perf: Fix list corruption in perf_cgroup_switch() - iommu: Fix potential use-after-free during probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.102 - drm/nouveau/pmu/gm200-: use alternate falcon reset sequence - mm: memcg: synchronize objcg lists with a dedicated spinlock - rcu: Do not report strict GPs for outgoing CPUs - fget: clarify and improve __fget_files() implementation - fs/proc: task_mmu.c: don't read mapcount for migration entry - can: isotp: prevent race between isotp_bind() and isotp_setsockopt() - can: isotp: add SF_BROADCAST support for functional addressing - scsi: lpfc: Fix mailbox command failure during driver initialization - HID:Add support for UGTABLET WP5540 - [x86] Revert "svm: Add warning message for AVIC IPI invalid target" - mmc: block: fix read single on recovery logic - mm: don't try to NUMA-migrate COW pages that have other uses - [amd64] PCI: hv: Fix NUMA node assignment when kernel boots with custom NUMA topology - btrfs: send: in case of IO error log it - net: ieee802154: at86rf230: Stop leaking skb's - ax25: improve the incomplete fix to avoid UAF and NPD bugs - vfs: make freeze_super abort when sync_filesystem returns error - quota: make dquot_quota_sync return errors from ->sync_fs - scsi: pm8001: Fix use-after-free for aborted TMF sas_task - scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task - nvme: fix a possible use-after-free in controller reset during load - nvme-tcp: fix possible use-after-free in transport error_recovery work - nvme-rdma: fix possible use-after-free in transport error_recovery work - drm/amdgpu: fix logic inversion in check - [amd64] x86/Xen: streamline (and fix) PV CPU enumeration - Revert "module, async: async_synchronize_full() on module init iff async is used" - random: wake up /dev/random writers after zap - iwlwifi: fix use-after-free - drm/radeon: Fix backlight control on iMac 12,1 - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - vsock: remove vsock from connected table when connect is interrupted by a signal - [x86] drm/i915/gvt: Make DRM_I915_GVT depend on X86 - iwlwifi: pcie: fix locking when "HW not ready" - iwlwifi: pcie: gen2: fix locking when "HW not ready" - netfilter: nft_synproxy: unregister hooks on init error path - ipv6: per-netns exclusive flowlabel checks - net: dsa: lantiq_gswip: fix use after free in gswip_remove() - ping: fix the dif and sdif check in ping_lookup - bonding: force carrier update when releasing slave - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - net_sched: add __rcu annotation to netdev->qdisc - bonding: fix data-races around agg_select_timer - libsubcmd: Fix use-after-free for realloc(..., 0) - [arm64] dpaa2-eth: Initialize mutex used in one step timestamping path - ALSA: hda/realtek: Add quirk for Legion Y9000X 2019 - ALSA: hda/realtek: Fix deadlock by COEF mutex - ALSA: hda: Fix regression on forced probe mask option - ALSA: hda: Fix missing codec probe on Shenker Dock 15 - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() - [powerpc*[ lib/sstep: fix 'ptesync' build error - [armhf] mtd: rawnand: gpmi: don't leak PM reference in error path - [x86] KVM: SVM: Never reject emulation due to SMAP errata for !SEV guests (CVE-2020-36310) - block/wbt: fix negative inflight counter when remove scsi device - NFS: LOOKUP_DIRECTORY is also ok with symlinks - NFS: Do not report writeback errors in nfs_getattr() - tty: n_tty: do not look ahead for EOL character past the end of the buffer - [x86] Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj - [x86] KVM: x86/pmu: Refactoring find_arch_event() to pmc_perf_hw_id() - [x86] KVM: x86/pmu: Don't truncate the PerfEvtSeln MSR when creating a perf event - [x86] KVM: x86/pmu: Use AMD64_RAW_EVENT_MASK for PERF_TYPE_RAW - NFS: Don't set NFS_INO_INVALID_XATTR if there is no xattr cache - [armhf] OMAP2+: hwmod: Add of_node_put() before break - [armhf] OMAP2+: adjust the location of put_device() call in omapdss_init_of - netfilter: conntrack: don't refresh sctp entries in closed state - kconfig: let 'shell' return enough output for deep path names - ata: libata-core: Disable TRIM on M88V29 - [armhf] soc: aspeed: lpc-ctrl: Block error printing on probe defer cases - xprtrdma: fix pointer derefs in error cases of rpcrdma_ep_create - [arm64,armhf] drm/rockchip: dw_hdmi: Do not leave clock enabled in error case - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - net: usb: qmi_wwan: Add support for Dell DW5829e - [arm64] net: macb: Align the dma and coherent dma masks - kconfig: fix failing to generate auto.conf - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop - EDAC: Fix calculation of returned address and next offset in edac_align_ptr() - net: sched: limit TC_ACT_REPEAT loops - [armhf] dmaengine: stm32-dmamux: Fix PM disable depth imbalance in stm32_dmamux_probe - copy_process(): Move fd_install() out of sighand->siglock critical section - [arm*] i2c: brcmstb: fix support for DSL and CM variants https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.103 - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - btrfs: tree-checker: check item_size for inode_item - btrfs: tree-checker: check item_size for dev_item - vhost/vsock: don't check owner in vhost_vsock_stop() while releasing - [x86] KVM: x86/mmu: make apf token non-zero to fix bug - drm/amdgpu: disable MMHUB PG for Picasso - [x86] drm/i915: Correctly populate use_sagv_wm for all pipes - sr9700: sanity check for packet length - USB: zaurus: support another broken Zaurus - CDC-NCM: avoid overflow in sanity checking - netfilter: nf_tables_offload: incorrect flow offload action array size (CVE-2022-25636) - [x86] fpu: Correct pkru/xstate inconsistency - [arm64] tee: export teedev_open() and teedev_close_context() - [arm64] optee: use driver internal tee_context for some rpc - ping: remove pr_err from ping_lookup - perf data: Fix double free in perf_session__delete() - bnx2x: fix driver load from initrd - bnxt_en: Fix active FEC reporting to ethtool - hwmon: Handle failure to register sensor with thermal zone correctly - bpf: Do not try bpf_msg_push_data with len 0 - bpf: Add schedule points in batch ops - io_uring: add a schedule point in io_add_buffers() - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - tipc: Fix end of loop tests for list_for_each_entry() - gso: do not skip outer ip header in case of ipip and net_failover - openvswitch: Fix setting ipv6 fields causing hw csum failure - drm/edid: Always set RGB444 - net/mlx5e: Fix wrong return value on ioctl EEPROM query failure - net/sched: act_ct: Fix flow table lookup after ct clear or switching zones - net: Force inlining of checksum functions in net/checksum.h - nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac() - netfilter: nf_tables: fix memory leak during stateful obj update - net/smc: Use a mutex for locking "struct smc_pnettable" - udp_tunnel: Fix end of loop test in udp_tunnel_nic_unregister() - net/mlx5: Fix possible deadlock on rule deletion - net/mlx5: Fix wrong limitation of metadata match on ecpf - net/mlx5e: kTLS, Use CHECKSUM_UNNECESSARY for device-offloaded packets - regmap-irq: Update interrupt clear register for proper reset - configfs: fix a race in configfs_{,un}register_subsystem() - RDMA/ib_srp: Fix a deadlock - tracing: Have traceon and traceoff trigger honor the instance - iio: adc: ad7124: fix mask used for setting AIN_BUFP & AIN_BUFM bits - iio: imu: st_lsm6dsx: wait for settling time in st_lsm6dsx_read_oneshot - iio: Fix error handling for PM - ata: pata_hpt37x: disable primary channel on HPT371 - Revert "USB: serial: ch341: add new Product ID for CH341A" - usb: gadget: rndis: add spinlock for rndis response list - tracefs: Set the group ownership in apply_options() not parse_options() - USB: serial: option: add support for DW5829e - USB: serial: option: add Telit LE910R1 compositions - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm64] usb: dwc3: pci: Fix Bay Trail phy GPIO mappings - [arm64,armhf] usb: dwc3: gadget: Let the interrupt handler disable bottom halves. - xhci: re-initialize the HC during resume if HCE was set - xhci: Prevent futile URB re-submissions due to incorrect return value. - driver core: Free DMA range map when device is released - RDMA/cma: Do not change route.addr.src_addr outside state checks - [x86] thermal: int340x: fix memory leak in int3400_notify() - tty: n_gsm: fix encoding of control signal octet bit DV - tty: n_gsm: fix proper link termination after failed open - tty: n_gsm: fix NULL pointer access due to DLCI release - tty: n_gsm: fix wrong tty control line for flow control - tty: n_gsm: fix deadlock in gsmtty_open() - memblock: use kfree() to release kmalloced memblock regions . [ Salvatore Bonaccorso ] * Refresh "Makefile: Do not check for libelf when building OOT module" * Bump ABI to 12 * Refresh "firmware: Remove redundant log messages from drivers" * [rt] Refresh "locking/rtmutex: add sleeping lock implementation" * [rt] Refresh "cpuset: Convert callback_lock to raw_spinlock_t" * [rt] Update to 5.10.100-rt62 * Mitigate Spectre v2-type Branch History Buffer attacks (CVE-2022-0001, CVE-2022-0002) - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [x86] speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - [x86] speculation: Add eIBRS + Retpoline options - Documentation/hw-vuln: Update spectre doc - [x86] speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [x86] speculation: Use generic retpoline by default on AMD - [x86] speculation: Update link to AMD speculation whitepaper - [x86] speculation: Warn about Spectre v2 LFENCE mitigation - [x86] speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT linux-signed-amd64 (5.10.103+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.103-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.12 linux-signed-amd64 (5.10.92+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-2 . * lib/iov_iter: initialize "flags" in new pipe_buffer * [x86] mwifiex: Fix skb_over_panic in mwifiex_usb_recv() (CVE-2021-43976) * [x86] drm/i915: Flush TLBs before releasing backing store (CVE-2022-0330) * [x86] drm/vmwgfx: Fix stale file descriptors on failed usercopy (CVE-2022-22942) * NFSv4: Handle case where the lookup of a directory fails (CVE-2022-24448) * yam: fix a memory leak in yam_siocdevprivate() (CVE-2022-24959) * tipc: improve size validations for received domain records (CVE-2022-0435) * [s390x] KVM: s390: Return error on SIDA memop on normal guest (CVE-2022-0516) * USB: gadget: validate interface OS descriptor requests (CVE-2022-25258) * usb: gadget: rndis: check size of RNDIS_MSG_SET command (CVE-2022-25375) linux-signed-amd64 (5.10.92+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.85 - usb: gadget: uvc: fix multiple opens - gcc-plugins: simplify GCC plugin-dev capability test - gcc-plugins: fix gcc 11 indigestion with plugins... - HID: quirks: Add quirk for the Microsoft Surface 3 type-cover - HID: add hid_is_usb() function to make it simpler for USB detection - HID: bigbenff: prevent null pointer dereference - HID: wacom: fix problems when device is not a valid USB device - HID: check for valid USB device for many HID drivers - [amd64] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups - [amd64] IB/hfi1: Insure use of smp_processor_id() is preempt disabled - [amd64] IB/hfi1: Fix early init panic - [amd64] IB/hfi1: Fix leak of rcvhdrtail_dummy_kvaddr - can: kvaser_usb: get CAN clock frequency from device - [x86] can: sja1000: fix use after free in ems_pcmcia_add_card() - drm/amdgpu: move iommu_resume before ip init/resume - drm/amdgpu: init iommu after amdkfd device init - nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done - vrf: don't run conntrack on vrf with !dflt qdisc - bpf, x86: Fix "no previous prototype" warning - bpf: Fix the off-by-two error in range markings - ice: ignore dropped packets during init - bonding: make tx_rebalance_counter an atomic - nfp: Fix memory leak in nfp_cpp_area_cache_add() - seg6: fix the iif in the IPv6 socket control block - udp: using datalen to cap max gso segments - netfilter: conntrack: annotate data-races around ct->timeout - iavf: restore MSI state on reset - iavf: Fix reporting when setting descriptor count - [amd64] IB/hfi1: Correct guard on eager buffer deallocation - devlink: fix netns refcount leak in devlink_nl_cmd_reload() - net/sched: fq_pie: prevent dismantle issue - [x86] KVM: x86: Wait for IPIs to be delivered when handling Hyper-V TLB flush hypercall - mm: bdi: initialize bdi_min_ratio when bdi is unregistered - ALSA: hda/realtek - Add headset Mic support for Lenovo ALC897 platform - ALSA: hda/realtek: Fix quirk for TongFang PHxTxX1 - ALSA: pcm: oss: Fix negative period/buffer sizes - ALSA: pcm: oss: Limit the period size to 16MB - ALSA: pcm: oss: Handle missing errors in snd_pcm_oss_change_params*() - scsi: qla2xxx: Format log strings only if needed - btrfs: clear extent buffer uptodate when we fail to write it - btrfs: replace the BUG_ON in btrfs_del_root_ref with proper error handling - md: fix update super 1.0 on rdev size change - nfsd: fix use-after-free due to delegation race (Closes: #988044) - nfsd: Fix nsfd startup race (again) - tracefs: Have new files inherit the ownership of their parent - [arm64] clk: qcom: regmap-mux: fix parent clock lookup - drm/syncobj: Deal with signalled fences in drm_syncobj_find_fence. - [i386] can: pch_can: pch_can_rx_normal: fix use after free - libata: add horkage for ASMedia 1092 - wait: add wake_up_pollfree() - binder: use wake_up_pollfree() - signalfd: use wake_up_pollfree() - aio: keep poll requests on waitqueue until completed - aio: fix use-after-free due to missing POLLFREE handling - [arm64,armhf] net: mvpp2: fix XDP rx queues registering - tracefs: Set all files to the same group ownership as the mount option - block: fix ioprio_get(IOPRIO_WHO_PGRP) vs setuid(2) - scsi: pm80xx: Do not call scsi_remove_host() in pm8001_alloc() - scsi: scsi_debug: Fix buffer size of REPORT ZONES command - qede: validate non LSO skb length - PM: runtime: Fix pm_runtime_active() kerneldoc comment - ASoC: rt5682: Fix crash due to out of scope stack vars - [arm64] RDMA/hns: Do not halt commands during reset until later - [arm64] RDMA/hns: Do not destroy QP resources in the hw resetting phase - i40e: Fix failed opcode appearing if handling messages from VF - i40e: Fix pre-set max number of queues for VF - i40e: Fix NULL pointer dereference in i40e_dbg_dump_desc - [arm64] Revert "PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge" - Documentation/locking/locktypes: Update migrate_disable() bits. - dt-bindings: net: Reintroduce PHY no lane swap binding - net: cdc_ncm: Allow for dwNtbOutMaxSize to be unset or zero - [arm64,armhf] net: fec: only clear interrupt of handling queue in fec_enet_rx_queue() - net, neigh: clear whole pneigh_entry at alloc time - net/qla3xxx: fix an error code in ql_adapter_up() - USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) - USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) - usb: core: config: fix validation of wMaxPacketValue entries - xhci: Remove CONFIG_USB_DEFAULT_PERSIST to prevent xHCI from runtime suspending - usb: core: config: using bit mask instead of individual bits - xhci: avoid race between disable slot command and host runtime suspend - iio: gyro: adxrs290: fix data signedness - iio: trigger: Fix reference counting - iio: stk3310: Don't return error code in interrupt handler - iio: mma8452: Fix trigger reference couting - iio: ltr501: Don't return error code in trigger handler - iio: kxsd9: Don't return error code in trigger handler - iio: itg3200: Call iio_trigger_notify_done() on error - iio: adc: axp20x_adc: fix charging current reporting on AXP22x - iio: ad7768-1: Call iio_trigger_notify_done() on error - iio: accel: kxcjk-1013: Fix possible memory leak in probe and remove - [armhf] irqchip/aspeed-scu: Replace update_bits with write_bits. - [armhf] irqchip/armada-370-xp: Fix return value of armada_370_xp_msi_alloc() - [armhf] irqchip/armada-370-xp: Fix support for Multi-MSI interrupts - [arm64,armhf] irqchip/irq-gic-v3-its.c: Force synchronisation when issuing INVALL - kbuild: simplify GCC_PLUGINS enablement in dummy-tools/gcc - doc: gcc-plugins: update gcc-plugins.rst - MAINTAINERS: adjust GCC PLUGINS after gcc-plugin.sh removal - Documentation/Kbuild: Remove references to gcc-plugin.sh https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.86 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.87 - nfc: fix segfault in nfc_genl_dump_devices_done - [arm64] drm/msm/dsi: set default num_data_lanes - [arm64] KVM: arm64: Save PSTATE early on exit - [arm64] Revert "tty: serial: fsl_lpuart: drop earlycon entry for i.MX8QXP" - net/mlx4_en: Update reported link modes for 1/10G - ALSA: hda: Add Intel DG2 PCI ID and HDMI codec vid - ALSA: hda/hdmi: fix HDA codec entry table order for ADL-P - [arm64,armhf] i2c: rk3x: Handle a spurious start completion interrupt flag - net: netlink: af_netlink: Prevent empty skb by adding a check on len. - [x86] KVM: x86: Ignore sparse banks size for an "all CPUs", non-sparse IPI req - bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc - fuse: make sure reclaim doesn't write the inode - [x86] hwmon: (dell-smm) Fix warning on /proc/i8k creation error - ethtool: do not perform operations on net devices being unregistered - [armel,armhf] memblock: free_unused_memmap: use pageblock units instead of MAX_ORDER - [armel,armhf] memblock: align freed memory map on pageblock boundaries with SPARSEMEM - memblock: ensure there is no overflow in memblock_overlaps_region() - [armel,armhf] arm: extend pfn_valid to take into account freed memory map alignment - [armel,armhf] arm: ioremap: don't abuse pfn_valid() to check if pfn is in RAM https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.88 - KVM: downgrade two BUG_ONs to WARN_ON_ONCE - mac80211: fix regression in SSN handling of addba tx - mac80211: mark TX-during-stop for TX in in_reconfig - mac80211: send ADDBA requests using the tid/queue of the aggregation session - mac80211: validate extended element ID is present - bpf: Fix signed bounds propagation after mov32 - bpf: Make 32->64 bounds propagation slightly more robust - virtio_ring: Fix querying of maximum DMA mapping size for virtio device - dm btree remove: fix use after free in rebalance_children() - audit: improve robustness of the audit queue handling - [arm64] dts: imx8mp-evk: Improve the Ethernet PHY description - [arm64] dts: rockchip: fix rk3308-roc-cc vcc-sd supply - [arm64] dts: rockchip: fix rk3399-leez-p710 vcc3v3-lan supply - mac80211: track only QoS data frames for admission control - ceph: fix duplicate increment of opened_inodes metric - ceph: initialize pathlen variable in reconnect_caps_cb - [armhf] socfpga: dts: fix qspi node compatible - clk: Don't parent clks until the parent is fully registered - [armhf] soc: imx: Register SoC device only on i.MX boards - virtio/vsock: fix the transport to work with VMADDR_CID_ANY - [s390x] kexec_file: fix error handling when applying relocations - sch_cake: do not call cake_destroy() from cake_init() - inet_diag: fix kernel-infoleak for UDP sockets - [arm64] net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net/sched: sch_ets: don't remove idle classes from the round-robin list - drm/ast: potential dereference of null pointer - mac80211: agg-tx: don't schedule_and_wake_txq() under sta->lock - mac80211: fix lookup when adding AddBA extension element - flow_offload: return EOPNOTSUPP for the unsupported mpls action type - rds: memory leak in __rds_conn_create() (CVE-2021-45480) - [arm64,armhf] soc/tegra: fuse: Fix bitwise vs. logical OR warning - igb: Fix removal of unicast MAC filters of VFs - igbvf: fix double free in `igbvf_probe` - igc: Fix typo in i225 LTR functions - ixgbe: Document how to enable NBASE-T support - ixgbe: set X550 MDIO speed before talking to PHY - netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc (CVE-2021-4135) - net/packet: rx_owner_map depends on pg_vec - sfc_ef100: potential dereference of null pointer - net: Fix double 0x prefix print in SKB dump - net/smc: Prevent smc_release() from long blocking - sit: do not call ipip6_dev_free() from sit_init_net() - USB: gadget: bRequestType is a bitfield, not a enum - Revert "usb: early: convert to readl_poll_timeout_atomic()" - [x86] KVM: x86: Drop guest CPUID check for host initiated writes to MSR_IA32_PERF_CAPABILITIES - [x86] tty: n_hdlc: make n_hdlc_tty_wakeup() asynchronous - USB: NO_LPM quirk Lenovo USB-C to Ethernet Adapher(RTL8153-04) - [arm*] usb: dwc2: fix STM ID/VBUS detection startup delay in dwc2_driver_probe - PCI/MSI: Clear PCI_MSIX_FLAGS_MASKALL on error - PCI/MSI: Mask MSI-X vectors only on success - usb: xhci: Extend support for runtime power management for AMD's Yellow carp. - USB: serial: cp210x: fix CP2105 GPIO registration - USB: serial: option: add Telit FN990 compositions - btrfs: fix memory leak in __add_inode_ref() - btrfs: fix double free of anon_dev after failure to create subvolume - zonefs: add MODULE_ALIAS_FS - iocost: Fix divide-by-zero on donation from low hweight cgroup - [x86] serial: 8250_fintek: Fix garbled text for console - timekeeping: Really make sure wall_to_monotonic isn't positive - libata: if T_LENGTH is zero, dma direction should be DMA_NONE - drm/amdgpu: correct register access for RLC_JUMP_TABLE_RESTORE - Input: touchscreen - avoid bitwise vs logical OR warning - xsk: Do not sleep in poll() when need_wakeup set - media: mxl111sf: change mutex_init() location - fuse: annotate lock in fuse_reverse_inval_entry() - ovl: fix warning in ovl_create_real() - scsi: scsi_debug: Don't call kcalloc() if size arg is zero - scsi: scsi_debug: Fix type in min_t to avoid stack OOB - scsi: scsi_debug: Sanity check block descriptor length in resp_mode_select() - rcu: Mark accesses to rcu_state.n_force_qs - [armhf] bus: ti-sysc: Fix variable set but not used warning for reinit_modules - Revert "xsk: Do not sleep in poll() when need_wakeup set" - xen/blkfront: harden blkfront against event channel storms (CVE-2021-28711) - xen/netfront: harden netfront against event channel storms (CVE-2021-28712) - xen/console: harden hvc_xen against event channel storms (CVE-2021-28713) - xen/netback: fix rx queue stall detection (CVE-2021-28714) - xen/netback: don't queue unlimited number of packages (CVE-2021-28715) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.89 - net: usb: lan78xx: add Allied Telesis AT29M2-AF - ext4: prevent partial update of the extent blocks - ext4: check for out-of-order index extents in ext4_valid_extent_entries() - ext4: check for inconsistent extents between index and leaf block - HID: holtek: fix mouse probing - [arm64] dts: allwinner: orangepi-zero-plus: fix PHY mode - [arm64] spi: change clk_disable_unprepare to clk_unprepare - [amd64] IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() - [arm64] RDMA/hns: Replace kfree() with kvfree() - netfilter: fix regression in looped (broad|multi)cast's MAC handling - qlcnic: potential dereference null pointer of rx_queue->page_ring - net: accept UFOv6 packages in virtio_net_hdr_to_skb - net: skip virtio_net_hdr_set_proto if protocol already set - igb: fix deadlock caused by taking RTNL in RPM resume path - ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module - bonding: fix ad_actor_system option setting to default - [amd64] fjes: Check for error irq - [armhf] drivers: net: smc911x: Check for error irq - sfc: Check null pointer of rx_queue->page_ring - sfc: falcon: Check null pointer of rx_queue->page_ring - Input: elantech - fix stack out of bound access in elantech_change_report_id() - [arm*] pinctrl: bcm2835: Change init order for gpio hogs - hwmon: (lm90) Fix usage of CONFIG2 register in detect function - hwmon: (lm90) Add basic support for TI TMP461 - hwmon: (lm90) Introduce flag indicating extended temperature support - hwmon: (lm90) Drop critical attribute support for MAX6654 - ALSA: jack: Check the return value of kstrdup() - ALSA: drivers: opl3: Fix incorrect use of vp->state - ALSA: hda/realtek: Amp init fixup for HP ZBook 15 G6 - ALSA: hda/realtek: Add new alc285-hp-amp-init model - ALSA: hda/realtek: Fix quirk for Clevo NJ51CU - Input: atmel_mxt_ts - fix double free in mxt_read_info_block - ipmi: bail out if init_srcu_struct fails - ipmi: ssif: initialize ssif_info->client early - ipmi: fix initialization when workqueue allocation fails - [arm64] tee: handle lookup of shm with reference count 0 - [x86] pkey: Fix undefined behaviour with PKRU_WD_BIT - [x86] platform/x86: intel_pmc_core: fix memleak on registration failure - [x86] KVM: VMX: Wake vCPU when delivering posted IRQ even if vCPU == this vCPU - [armhf] pinctrl: stm32: consider the GPIO offset to expose all the GPIO lines - [arm64,armhf] mmc: sdhci-tegra: Fix switch to HS400ES mode - mmc: core: Disable card detect during shutdown - [arm64,armhf] mmc: mmci: stm32: clear DLYB_CR after sending tuning command - [armel,armhf] 9169/1: entry: fix Thumb2 bug in iWMMXt exception handling - mac80211: fix locking in ieee80211_start_ap error path - mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() - [arm64] tee: optee: Fix incorrect page free bug - f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() (CVE-2021-45469) - ceph: fix up non-directory creation in SGID directories - usb: gadget: u_ether: fix race in setting MAC address in setup phase - [x86] KVM: VMX: Fix stale docs for kvm-intel.emulate_invalid_guest_state - mm: mempolicy: fix THP allocations escaping mempolicy restrictions - [arm64] Input: elants_i2c - do not check Remark ID on eKTH3900/eKTH5312 - Input: goodix - add id->model mapping for the "9111" model - ASoC: rt5682: fix the wrong jack type detected - hwmom: (lm90) Fix citical alarm status for MAX6680/MAX6681 - hwmon: (lm90) Do not report 'busy' status bit as alarm - ax25: NPD bug when detaching AX25 device - hamradio: defer ax25 kfree after unregister_netdev - hamradio: improve the incomplete fix to avoid NPD - phonet/pep: refuse to enable an unbound pipe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.90 - Input: i8042 - add deferred probe support - Input: i8042 - enable deferred probe quirk for ASUS UM325UA - tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok(). - tomoyo: use hwight16() in tomoyo_domain_quota_is_ok() - [x86] platform/x86: apple-gmux: use resource_size() with res - memblock: fix memblock_phys_alloc() section mismatch error - selinux: initialize proto variable in selinux_ip_postroute_compat() - scsi: lpfc: Terminate string in lpfc_debugfs_nvmeio_trc_write() - net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources - net/mlx5e: Wrap the tx reporter dump callback to extract the sq - net/mlx5e: Fix ICOSQ recovery flow for XSK - udp: using datalen to cap ipv6 udp max gso segments - sctp: use call_rcu to free endpoint - net/smc: fix using of uninitialized completions - net: usb: pegasus: Do not drop long Ethernet frames - net/smc: improved fix wait on already cleared link - net/smc: don't send CDC/LLC message if link not ready - net/smc: fix kernel panic caused by race of smc_sock - igc: Fix TX timestamp support for non-MSI-X platforms - net/mlx5e: Fix wrong features assignment in case of error - [armhf] net/ncsi: check for error return from call to nla_put_u32 - i2c: validate user data in compat ioctl - nfc: uapi: use kernel size_t to fix user-space builds - uapi: fix linux/nfc.h userspace compilation errors - drm/amdgpu: When the VCN(1.0) block is suspended, powergating is explicitly enabled - drm/amdgpu: add support for IP discovery gc_info table v2 - xhci: Fresco FL1100 controller should not have BROKEN_MSI quirk set. - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - [arm*] binder: fix async_free_space accounting for empty parcels - [x86] scsi: vmw_pvscsi: Set residual data length conditionally - Input: appletouch - initialize work before device registration - Input: spaceball - fix parsing of movement data packets - net: fix use-after-free in tw_timer_handler https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.91 - f2fs: quota: fix potential deadlock - tracing: Fix check for trace_percpu_buffer validity in get_trace_buf() - tracing: Tag trace_percpu_buffer as a percpu pointer - ieee802154: atusb: fix uninit value in atusb_set_extended_addr - i40e: Fix to not show opcode msg on unsuccessful VF MAC change - iavf: Fix limit of total number of queues to active queues of VF - RDMA/core: Don't infoleak GRH fields - netrom: fix copying in user data in nr_setsockopt - RDMA/uverbs: Check for null return of kmalloc_array - mac80211: initialize variable have_higher_than_11mbit - sfc: The RX page_ring is optional - i40e: fix use-after-free in i40e_sync_filters_subtask() - i40e: Fix for displaying message regarding NVM version - i40e: Fix incorrect netdev's real number of RX/TX queues - ipv4: Check attribute length for RTA_GATEWAY in multipath route - ipv4: Check attribute length for RTA_FLOW in multipath route - ipv6: Check attribute length for RTA_GATEWAY in multipath route - ipv6: Check attribute length for RTA_GATEWAY when deleting multipath route - lwtunnel: Validate RTA_ENCAP_TYPE attribute length - batman-adv: mcast: don't send link-local multicast to mcast routers - sch_qfq: prevent shift-out-of-bounds in qfq_init_qdisc - net: ena: Fix undefined state when tx request id is out of bounds - net: ena: Fix error handling when calculating max IO queues number - xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (CVE-2021-4155) - power: supply: core: Break capacity loop - rndis_host: support Hytera digital radios - phonet: refcount leak in pep_sock_accep (CVE-2021-45095) - ipv6: Continue processing multipath route even if gateway attribute is invalid - ipv6: Do cleanup if attribute validation fails in multipath route - scsi: libiscsi: Fix UAF in iscsi_conn_get_param()/iscsi_conn_teardown() - ip6_vti: initialize __ip6_tnl_parm struct in vti6_siocdevprivate - net: udp: fix alignment problem in udp4_seq_show() - [amd64,arm64] atlantic: Fix buff_ring OOB in aq_ring_rx_clean - mISDN: change function names to avoid conflicts - drm/amd/display: Added power down for DCN10 - ipv6: raw: check passed optlen before reading https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.92 - md: revert io stats accounting - workqueue: Fix unbind_workers() VS wq_worker_running() race - bpf: Fix out of bounds access from invalid *_or_null type verification (CVE-2022-23222) - Bluetooth: btusb: fix memory leak in btusb_mtk_submit_wmt_recv_urb() - Bluetooth: btusb: Add two more Bluetooth parts for WCN6855 - Bluetooth: btusb: Add support for Foxconn MT7922A - Bluetooth: btusb: Add support for Foxconn QCA 0xe0d0 - Bluetooth: bfusb: fix division by zero in send path - [armhf] dts: exynos: Fix BCM4330 Bluetooth reset polarity in I9100 - USB: core: Fix bug in resuming hub's handling of wakeup requests - USB: Fix "slab-out-of-bounds Write" bug in usb_hcd_poll_rh_status - ath11k: Fix buffer overflow when scanning with extraie - mmc: sdhci-pci: Add PCI ID for Intel ADL - veth: Do not record rx queue hint in veth_xmit - [x86] mfd: intel-lpss: Fix too early PM enablement in the ACPI ->probe() - can: gs_usb: fix use of uninitialized variable, detach device on reception of invalid USB data - can: isotp: convert struct tpcon::{idx,len} to unsigned int - can: gs_usb: gs_can_start_xmit(): zero-initialize hf->{flags,reserved} - random: fix data race on crng_node_pool - random: fix data race on crng init time - random: fix crash on multiple early calls to add_bootloader_randomness() - media: Revert "media: uvcvideo: Set unique vdev name based in type" - [x86] drm/i915: Avoid bitwise vs logical OR warning in snb_wm_latency_quirk() . [ Salvatore Bonaccorso ] * [arm64] drivers/net/ethernet/google: Enable GVE as module (Closes: #996974) * Refresh "Export symbols needed by Android drivers" * [rt] Update to 5.10.87-rt59 * Bump ABI to 11 * [rt] Update to 5.10.90-rt60 * vfs: fs_context: fix up param length parsing in legacy_parse_param (CVE-2022-0185) . [ Andrew Balmos ] * net/can: Enable CONFIG_CAN_MCP251X as module . [ Cyril Brulebois ] * arm64: dts: Add support for Raspberry Pi Compute Module 4 IO Board, producing a DTB that's almost entirely identical to what a v5.16-rc8 build produces, with lots of thanks to Uwe Kleine-König for the heavy lifting! linux-signed-amd64 (5.10.92+1~bpo10+1) buster-backports; urgency=medium . * Sign kernel from linux 5.10.92-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.11 linux-signed-arm64 (5.10.106+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.106-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.104 - mac80211_hwsim: report NOACK frames in tx_status - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work - [arm*] i2c: bcm2835: Avoid clock stretching timeouts - ASoC: rt5682: do not block workqueue if card is unbound - regulator: core: fix false positive in regulator_late_cleanup() - Input: clear BTN_RIGHT/MIDDLE on buttonpads - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW - tipc: fix a bit overflow in tipc_crypto_key_rcv() - cifs: fix double free race when mount fails in cifs_get_root() - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990 - usb: gadget: don't release an existing dev->buf (CVE-2022-24958) - usb: gadget: clear related members when goto fail (CVE-2022-24958) - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I() - exfat: fix i_blocks for files truncated over 4 GiB - tracing: Add test for user space strings when filtering on string pointers - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char - ata: pata_hpt37x: fix PCI clock detection - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag - tracing: Add ustring operation to filtering string pointers - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min - [amd64] iommu/amd: Recover from event log overflow - [x86] drm/i915: s/JSP2/ICP2/ PCH - xen/netfront: destroy queues before real_num_tx_queues is zeroed - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls - xfrm: fix MTU regression - netfilter: fix use-after-free in __nf_register_net_hook() - bpf, sockmap: Do not ignore orig_len parameter - xfrm: fix the if_id check in changelink - xfrm: enforce validity of offload input flags - e1000e: Correct NVM checksum verification flow - net: fix up skbs delta_truesize in UDP GRO frag_list - netfilter: nf_queue: don't assume sk is full socket - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: handle socket prefetch - batman-adv: Request iflink once in batadv-on-batadv check - batman-adv: Request iflink once in batadv_get_real_netdevice - batman-adv: Don't expect inter-netns unique iflink indices - net: ipv6: ensure we call ipv6_mc_down() at most once - net: dcb: flush lingering app table entries for unregistered devices - net/smc: fix connection leak - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server - rcu/nocb: Fix missed nocb_timer requeue - ice: Fix race conditions between virtchnl handling and VF ndo ops - ice: fix concurrent reset and removal of VFs - sched/topology: Make sched_init_numa() use a set for the deduplicating sort - sched/topology: Fix sched_domain_topology_level alloc in sched_init_numa() - mac80211: fix forwarded mesh frames AC & queue selection - net: stmmac: fix return value of __setup handler - mac80211: treat some SAE auth steps as final - iavf: Fix missing check for running netdev - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe() - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc() - efivars: Respect "block" flag in efivar_entry_set_safe() - can: gs_usb: change active_channels's type from atomic_t to u8 - igc: igc_read_phy_reg_gpy: drop premature return - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup() functions - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs - igc: igc_write_phy_reg_gpy: drop premature return - memfd: fix F_SEAL_WRITE after shmem huge page allocated - [armhf] dts: switch timer config to common devkit8000 devicetree - [armhf] dts: Use 32KiHz oscillator on devkit8000 - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed - [arm64] soc: fsl: guts: Add a missing memory allocation failure check - [armhf] tegra: Move panels to AUX bus - net: chelsio: cxgb3: check the return value of pci_find_capability() - iavf: Refactor iavf state machine tracking - nl80211: Handle nla_memdup failures in handle_nan_filter - drm/amdgpu: fix suspend/resume hang regression - net: dcb: disable softirqs in dcbnl_flush_dev() - Input: elan_i2c - move regulator_[en|dis]able() out of elan_[en|dis]able_power() - Input: elan_i2c - fix regulator enable count imbalance after suspend/resume - HID: add mapping for KEY_DICTATE - HID: add mapping for KEY_ALL_APPLICATIONS - tracing/histogram: Fix sorting on old "cpu" value - tracing: Fix return value of __setup handlers - btrfs: fix lost prealloc extents beyond eof after full fsync - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup - btrfs: add missing run of delayed items after unlink during log replay - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6" - hamradio: fix macro redefine warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.105 - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [armhf] report Spectre v2 status through sysfs - [armel,armhf] early traps initialisation - [armel,armhf] use LOADADDR() to get load address of sections - [armel,armhf] Spectre-BHB workaround - [armel,armhf] include unprivileged BPF status in Spectre V2 reporting - [arm64] cputype: Add CPU implementor & types for the Apple M1 cores - [arm64] Add Neoverse-N2, Cortex-A710 CPU part definition - [arm64] Add Cortex-X2 CPU part definition - [arm64] Add Cortex-A510 CPU part definition - [arm64] Add HWCAP for self-synchronising virtual counter - [arm64] add ID_AA64ISAR2_EL1 sys register - [arm64] cpufeature: add HWCAP for FEAT_AFP - [arm64] cpufeature: add HWCAP for FEAT_RPRES - [arm64] entry.S: Add ventry overflow sanity checks - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit - [arm64] entry: Make the trampoline cleanup optional - [arm64] entry: Free up another register on kpti's tramp_exit path - [arm64] entry: Move the trampoline data page before the text page - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary - [arm64] entry: Don't assume tramp_vectors is the start of the vectors - [arm64] entry: Move trampoline macros out of ifdef'd section - [arm64] entry: Make the kpti trampoline's kpti sequence optional - [arm64] entry: Allow the trampoline text to occupy multiple pages - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations - [arm64] entry: Add vectors that have the bhb mitigation sequences - [arm64] entry: Add macro for reading symbol addresses from the trampoline - [arm64] Add percpu vectors for EL1 - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A - [arm64] Mitigate spectre style branch history side channels - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - [arm64] Use the clearbhb instruction in mitigations - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [armel,armhf] fix co-processor register typo - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld - [armhf] fix build warning in proc-v7-bugs.c - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case (CVE-2022-23040, XSA-396) - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036, CVE-2022-23038, XSA-396) - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23036, XSA-396) - xen/netfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23037, XSA-396) - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23038, XSA-396) - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039, XSA-396) - xen: remove gnttab_query_foreign_access() - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/gnttab: fix gnttab_end_foreign_access() without page specified (CVE-2022-23041, XSA-396) - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() (CVE-2022-23042, XSA-396) - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.106 - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias - tipc: fix kernel panic when enabling bearer - mISDN: Remove obsolete PIPELINE_DEBUG debugging information - mISDN: Fix memory leak in dsp_pipeline_build() - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw() - net: qlogic: check the return value of dma_alloc_coherent() in qed_vf_hw_prepare() - esp: Fix BEET mode inter address family tunneling on GSO - qed: return status of qed_iov_get_link - i40e: stop disabling VFs due to PF error responses - ice: stop disabling VFs due to PF error responses - ice: Align macro names to the specification - ice: Remove unnecessary checker loop - ice: Rename a couple of variables - ice: Fix curr_link_speed advertised speed - tipc: fix incorrect order of state message data sanity check - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable - ax25: Fix NULL pointer dereference in ax25_kill_by_device - net/mlx5: Fix size field in bufferx_reg struct - net/mlx5: Fix a race on command flush flow - net/mlx5e: Lag, Only handle events from highest priority multipath entry - NFC: port100: fix use-after-free in port100_send_complete - net: phy: DP83822: clear MISR2 register to disable interrupts - sctp: fix kernel-infoleak for SCTP sockets - [arm64] net: bcmgenet: Don't claim WOL when its not available - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort - net-sysfs: add check for netdevice being present to speed_show - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read - gpio: Return EPROBE_DEFER if gc->to_irq is NULL - Revert "xen-netback: remove 'hotplug-status' once it has served its purpose" - Revert "xen-netback: Check for hotplug-status existence before watching" - ipv6: prevent a possible race condition with lifetimes - tracing: Ensure trace buffer is at least 4096 bytes large - fuse: fix pipe buffer lifetime for direct_io - staging: rtl8723bs: Fix access-point mode deadlock - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive - [arm64] mmc: meson: Fix usage of meson_mmc_post_req() - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0 - virtio: unexport virtio_finalize_features - virtio: acknowledge all features before access - watch_queue, pipe: Free watchqueue state after clearing pipe ring (CVE-2022-0995) - watch_queue: Fix to release page in ->release() (CVE-2022-0995) - watch_queue: Fix to always request a pow-of-2 pipe ring size (CVE-2022-0995) - watch_queue: Fix the alloc bitmap size to reflect notes allocated (CVE-2022-0995) - watch_queue: Free the alloc bitmap when the watch_queue is torn down (CVE-2022-0995) - watch_queue: Fix lack of barrier/sync/lock between post and read (CVE-2022-0995) - watch_queue: Make comment about setting ->defunct more accurate (CVE-2022-0995) - [x86] boot: Fix memremap of setup_indirect structures - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data() - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL - ext4: add check to prevent attempting to resize an fs with sparse_super2 - [armel,armhf] fix Thumb2 regression with Spectre BHB - watch_queue: Fix filter limit check ((CVE-2022-0995) . [ Salvatore Bonaccorso ] * Bump ABI to 13 * [rt] Update to 5.10.104-rt63 * [rt] Update to 5.10.106-rt64 * sctp: fix the processing for INIT chunk (CVE-2021-3772) * tcp: make tcp_read_sock() more robust * io_uring: return back safer resurrect * [arm64] kvm: Fix copy-and-paste error in bhb templates for v5.10 stable linux-signed-arm64 (5.10.103+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.103-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.93 - kbuild: Add $(KBUILD_HOSTLDFLAGS) to 'has_libelf' test - devtmpfs regression fix: reconfigure on each mount - orangefs: Fix the size of a memory allocation in orangefs_bufmap_alloc() - perf: Protect perf_guest_cbs with RCU - [x86] KVM: Register Processor Trace interrupt hook iff PT enabled in guest - [s390x] KVM: Clarify SIGP orders versus STOP/RESTART - 9p: only copy valid iattrs in 9P2000.L setattr implementation - [x86] video: vga16fb: Only probe for EGA and VGA 16 color graphic cards - media: uvcvideo: fix division by zero at stream start - rtlwifi: rtl8192cu: Fix WARNING when calling local_irq_restore() with interrupts enabled - firmware: qemu_fw_cfg: fix sysfs information leak - firmware: qemu_fw_cfg: fix NULL-pointer deref on duplicate entries - firmware: qemu_fw_cfg: fix kobject leak in probe error path - [x86] KVM: remove PMU FIXED_CTR3 from msrs_to_save_all - ALSA: hda/realtek: Add speaker fixup for some Yoga 15ITL5 devices - ALSA: hda/realtek - Fix silent output on Gigabyte X570 Aorus Master after reboot from Windows - ALSA: hda: ALC287: Add Lenovo IdeaPad Slim 9i 14ITL5 speaker quirk - ALSA: hda/realtek: Add quirk for Legion Y9000X 2020 - ALSA: hda/realtek: Re-order quirk entries for Lenovo - [powerpc*] pseries: Get entry and uaccess flush required bits from H_GET_CPU_CHARACTERISTICS https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.94 - [x86] KVM: VMX: switch blocked_vcpu_on_cpu_lock to raw spinlock - HID: uhid: Fix worker destroying device without any protection - HID: wacom: Reset expected and received contact counts at the same time - HID: wacom: Ignore the confidence flag when a touch is removed - HID: wacom: Avoid using stale array indicies to read contact count - f2fs: fix to do sanity check in is_alive() - nfc: llcp: fix NULL error pointer dereference on sendmsg() after failed bind() - [armhf] mtd: rawnand: gpmi: Add ERR007117 protection for nfc_apply_timings - [armhf] mtd: rawnand: gpmi: Remove explicit default gpmi clock setting for i.MX6 - mtd: Fixed breaking list in __mtd_del_partition. - [x86] gpu: Reserve stolen memory for first integrated Intel GPU - rtc: cmos: take rtc_lock while reading from CMOS - media: v4l2-ioctl.c: readbuffers depends on V4L2_CAP_READWRITE - media: flexcop-usb: fix control-message timeouts - media: mceusb: fix control-message timeouts - media: em28xx: fix control-message timeouts - media: cpia2: fix control-message timeouts - media: s2255: fix control-message timeouts - media: dib0700: fix undefined behavior in tuner shutdown - media: redrat3: fix control-message timeouts - media: pvrusb2: fix control-message timeouts - media: stk1160: fix control-message timeouts - [armhf] media: cec-pin: fix interrupt en/disable handling - [x86] can: softing_cs: softingcs_probe(): fix memleak on registration failure - iio: adc: ti-adc081c: Partial revert of removal of ACPI IDs - [arm64,armhf] gpu: host1x: Add back arm_iommu_detach_device() - dma_fence_array: Fix PENDING_ERROR leak in dma_fence_array_signaled() - PCI: Add function 1 DMA alias quirk for Marvell 88SE9125 SATA controller - mm_zone: add function to check if managed dma zone exists - [arm64] dma/pool: create dma atomic pool only if dma zone has managed pages - mm/page_alloc.c: do not warn allocation failure on zone DMA if no managed pages - shmem: fix a race between shmem_unused_huge_shrink and shmem_evict_inode - drm/ttm: Put BO in its memory manager's lru list - Bluetooth: L2CAP: Fix not initializing sk_peer_pid - [armhf] drm/bridge: display-connector: fix an uninitialized pointer in probe() - drm: fix null-ptr-deref in drm_dev_init_release() - [arm64,armhf] drm/rockchip: dsi: Fix unbalanced clock on probe error - [arm64,armhf] drm/rockchip: dsi: Hold pm-runtime across bind/unbind - [arm64,armhf] drm/rockchip: dsi: Disable PLL clock on bind error - [arm64,armhf] drm/rockchip: dsi: Reconfigure hardware on resume() - Bluetooth: cmtp: fix possible panic when cmtp_init_sockets() fails - [arm*] clk: bcm-2835: Pick the closest clock rate - [arm*] clk: bcm-2835: Remove rounding up the dividers - [arm*] drm/vc4: hdmi: Set a default HSM rate - [arm64] wcn36xx: ensure pairing of init_scan/finish_scan and start_scan/end_scan - [arm64] wcn36xx: Indicate beacon not connection loss on MISSED_BEACON_IND - [arm64] wcn36xx: Fix DMA channel enable/disable cycle - [arm64] wcn36xx: Release DMA channel descriptor allocations - [arm64] wcn36xx: Put DXE block into reset before freeing memory - [arm64] wcn36xx: populate band before determining rate on RX - [arm64] wcn36xx: fix RX BD rate mapping for 5GHz legacy rates - ath11k: Send PPDU_STATS_CFG with proper pdev mask to firmware - media: videobuf2: Fix the size printk format - [armhf] media: aspeed: fix mode-detect always time out at 2nd run - media: em28xx: fix memory leak in em28xx_init_dev - [armhf] media: aspeed: Update signal status immediately to ensure sane hw state - fs: dlm: use sk->sk_socket instead of con->sock - fs: dlm: don't call kernel_getpeername() in error_report() - Bluetooth: stop proccessing malicious adv data - ath11k: Fix ETSI regd with weather radar overlap - ath11k: clear the keys properly via DISABLE_KEY - ath11k: reset RSN/WPA present state for open BSS - [arm64] tee: fix put order in teedev_close_context() - [x86] drm/vboxvideo: fix a NULL vs IS_ERR() check - media: dmxdev: fix UAF when dvb_register_device() fails - [arm64] crypto: qce - fix uaf on qce_ahash_register_one - [arm64] crypto: qce - fix uaf on qce_skcipher_register_one - [armhf] dts: stm32: fix dtbs_check warning on ili9341 dts binding on stm32f429 disco - [x86] crypto: qat - fix spelling mistake: "messge" -> "message" - [x86] crypto: qat - remove unnecessary collision prevention step in PFVF - [x86] crypto: qat - make pfvf send message direction agnostic - [x86] crypto: qat - fix undetected PFVF timeout in ACK loop - ath11k: Use host CE parameters for CE interrupts configuration - [armhf] media: imx-pxp: Initialize the spinlock prior to using it - [armhf] media: coda: fix CODA960 JPEG encoder buffer overflow - [arm64] media: venus: pm_helpers: Control core power domain manually - [arm64] media: venus: core, venc, vdec: Fix probe dependency error - [arm64] media: venus: core: Fix a potential NULL pointer dereference in an error handling path - [arm64] media: venus: core: Fix a resource leak in the error handling path of 'venus_probe()' - [armhf] thermal/drivers/imx: Implement runtime PM support - netfilter: bridge: add support for pppoe filtering - cgroup: Trace event cgroup id fields should be u64 - ACPI: EC: Rework flushing of EC work while suspended to idle - drm/amdgpu: Fix a NULL pointer dereference in amdgpu_connector_lcd_native_mode() - drm/radeon/radeon_kms: Fix a NULL pointer dereference in radeon_driver_open_kms() - [arm*] serial: amba-pl011: do not request memory region twice - floppy: Fix hang in watchdog when disk is ejected - [x86] staging: rtl8192e: return error code from rtllib_softmac_init() - [x86] staging: rtl8192e: rtllib_module: fix error handle case in alloc_rtllib() - sched/fair: Fix detection of per-CPU kthreads waking a task - sched/fair: Fix per-CPU kthread and wakee stacking for asym CPU capacity - bpf: Adjust BTF log size limit. - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) - bpf: Remove config check to enable bpf support for branch records - [arm64] lib: Annotate {clear, copy}_page() as position-independent - [arm64] clear_page() shouldn't use DC ZVA when DCZID_EL0.DZP == 1 - media: dib8000: Fix a memleak in dib8000_init() - media: saa7146: mxb: Fix a NULL pointer dereference in mxb_attach() - media: si2157: Fix "warm" tuner state detection - wireless: iwlwifi: Fix a double free in iwl_txq_dyn_alloc_dma - sched/rt: Try to restart rt period timer when rt runtime exceeded - rcu/exp: Mark current CPU as exp-QS in IPI loop second pass - mwifiex: Fix possible ABBA deadlock - xfrm: fix a small bug in xfrm_sa_len() - [x86] uaccess: Move variable into switch case statement - [armhf] crypto: stm32 - Fix last sparse warning in stm32_cryp_check_ctr_counter - [armhf] crypto: stm32/cryp - fix CTR counter carry - [armhf] crypto: stm32/cryp - fix xts and race condition in crypto_engine requests - [armhf] crypto: stm32/cryp - check early input data - [armhf] crypto: stm32/cryp - fix double pm exit - [armhf] crypto: stm32/cryp - fix lrw chaining mode - [armhf] crypto: stm32/cryp - fix bugs and crash in tests - [armhf] crypto: stm32 - Revert broken pm_runtime_resume_and_get changes - ath11k: Fix deleting uninitialized kernel timer during fragment cache flush - media: dw2102: Fix use after free - media: msi001: fix possible null-ptr-deref in msi001_probe() - [armhf] media: coda/imx-vdoa: Handle dma_set_coherent_mask error codes - ath11k: Fix a NULL pointer dereference in ath11k_mac_op_hw_scan() - [arm64] dts: qcom: c630: Fix soundcard setup - [arm64] drm/msm/dpu: fix safe status debugfs file - [arm64,armhf] drm/tegra: vic: Fix DMA API misuse - xfrm: interface with if_id 0 should return error - xfrm: state and policy should fail if XFRMA_IF_ID 0 - [armel,armhf] 9159/1: decompressor: Avoid UNPREDICTABLE NOP encoding - usb: ftdi-elan: fix memory leak on device disconnect - iwlwifi: mvm: fix 32-bit build in FTM - iwlwifi: mvm: test roc running status bits before removing the sta - [armhf] mmc: meson-mx-sdio: add IRQ check - selinux: fix potential memleak in selinux_add_opt() - Bluetooth: L2CAP: Fix using wrong mode - bpftool: Enable line buffering for stdout - software node: fix wrong node passed to find nargs_prop - Bluetooth: hci_qca: Stop IBS timer during BT OFF - [x86] mce/inject: Avoid out-of-bounds write when setting flags - ACPI: scan: Create platform device for BCM4752 and LNV4752 ACPI nodes - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in __nonstatic_find_io_region() - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in nonstatic_find_mem_region() - netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check() - bpf: Don't promote bogus looking registers after null check. - bpf: Fix SO_RCVBUF/SO_SNDBUF handling in _bpf_setsockopt(). - netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone - ppp: ensure minimum packet size in ppp_write() - Bluetooth: hci_bcm: Check for error irq - Bluetooth: hci_qca: Fix NULL vs IS_ERR_OR_NULL check in qca_serdev_probe - [arm64] usb: dwc3: qcom: Fix NULL vs IS_ERR checking in dwc3_qcom_probe - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_get_str_desc - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_huion_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_frame_init_v1_buttonpad - debugfs: lockdown: Allow reading debugfs files that are not world readable - net/mlx5e: Fix page DMA map/unmap attributes - net/mlx5e: Don't block routes with nexthop objects in SW - Revert "net/mlx5e: Block offload of outer header csum for UDP tunnels" - net/mlx5: Set command entry semaphore up once got index free - lib/mpi: Add the return value check of kcalloc() - Bluetooth: L2CAP: uninitialized variables in l2cap_sock_setsockopt() - [arm64,armhf] spi: spi-meson-spifc: Add missing pm_runtime_disable() in meson_spifc_probe - ax25: uninitialized variable in ax25_setsockopt() - netrom: fix api breakage in nr_setsockopt() - regmap: Call regmap_debugfs_exit() prior to _init() - tpm: add request_locality before write TPM_INT_ENABLE - tpm_tis: Fix an error handling path in 'tpm_tis_core_init()' - can: softing: softing_startstop(): fix set but not used variable warning - pcmcia: fix setting of kthread task states - iwlwifi: mvm: Use div_s64 instead of do_div in iwl_mvm_ftm_rtt_smoothing() - net: mcs7830: handle usb read errors properly - ext4: avoid trim error on fs with small groups - ALSA: jack: Add missing rwsem around snd_ctl_remove() calls - ALSA: PCM: Add missing rwsem around snd_ctl_remove() calls - ALSA: hda: Add missing rwsem around snd_ctl_remove() calls - RDMA/bnxt_re: Scan the whole bitmap when checking if "disabling RCFW with pending cmd-bit" - [arm64] RDMA/hns: Validate the pkey index - scsi: pm80xx: Update WARN_ON check in pm8001_mpi_build_cmd() - [arm64] clk: imx8mn: Fix imx8mn_clko1_sels - [powerpc*] prom_init: Fix improper check of prom_getprop() - dt-bindings: thermal: Fix definition of cooling-maps contribution property - [powerpc*] 64s: Convert some cpu_setup() and cpu_restore() functions to C - [powerpc*] perf: MMCR0 control for PMU registers under PMCC=00 - [powerpc*] perf: move perf irq/nmi handling details into traps.c - [powerpc*] irq: Add helper to set regs->softe - [powerpc*] perf: Fix PMU callbacks to clear pending PMI before resetting an overflown PMC - clocksource: Reduce clocksource-skew threshold - clocksource: Avoid accidental unstable marking of clocksources - ALSA: oss: fix compile error when OSS_DEBUG is enabled - ALSA: usb-audio: Drop superfluous '0' in Presonus Studio 1810c's ID - [arm*] binder: fix handling of error during copy - [arm64,armhf] iommu/io-pgtable-arm: Fix table descriptor paddr formatting - scsi: ufs: Fix race conditions related to driver data - RDMA/qedr: Fix reporting max_{send/recv}_wr attrs - PCI/MSI: Fix pci_irq_vector()/pci_irq_get_affinity() - RDMA/core: Let ib_find_gid() continue search even after empty entry - RDMA/cma: Let cma_resolve_ib_dev() continue search even after empty entry - [x86] ASoC: rt5663: Handle device_property_read_u32_array error codes - [amd64] iommu/amd: Remove iommu_init_ga() - [amd64] iommu/amd: Restore GA log/tail pointer on host resume - [x86] ASoC: Intel: catpt: Test dmaengine_submit() result before moving on - iommu/iova: Fix race between FQ timeout and teardown - scsi: block: pm: Always set request queue runtime active in blk_post_runtime_resume() - [powerpc*] xive: Add missing null check after calling kmalloc - RDMA/cxgb4: Set queue pair state when being queried - of: base: Fix phandle argument length mismatch error message - [armhf] dts: omap3-n900: Fix lp5523 for multi color - Bluetooth: Fix debugfs entry leak in hci_register_dev() - fs: dlm: filter user dlm messages for kernel locks - [arm64,armhf] drm/lima: fix warning when CONFIG_DEBUG_SG=y & CONFIG_DMA_API_DEBUG=y - ar5523: Fix null-ptr-deref with unexpected WDCMSG_TARGET_START reply - [arm64,armhf] drm/bridge: dw-hdmi: handle ELD when DRM_BRIDGE_ATTACH_NO_CONNECTOR - drm/nouveau/pmu/gm200-: avoid touching PMU outside of DEVINIT/PREOS/ACR - batman-adv: allow netlink usage in unprivileged containers - ath11k: Fix crash caused by uninitialized TX ring - usb: gadget: f_fs: Use stream_open() for endpoint files - drm: panel-orientation-quirks: Add quirk for the Lenovo Yoga Book X91F/L - HID: apple: Do not reset quirks when the Fn key is not found - media: b2c2: Add missing check in flexcop_pci_isr: - drm/amdgpu/display: set vblank_disable_immediate for DC - [arm64,armhf] tty: serial: imx: disable UCR4_OREN in .stop_rx() instead of .shutdown() - gpiolib: acpi: Do not set the IRQ type if the IRQ is already in use - [armhf] HSI: core: Fix return freed object in hsi_new_client - crypto: jitter - consider 32 LSB for APT - rsi: Fix use-after-free in rsi_rx_done_handler() - rsi: Fix out-of-bounds read in rsi_read_pkt() - ath11k: Avoid NULL ptr access during mgmt tx cleanup - [arm64] media: venus: avoid calling core_clk_setrate() concurrently during concurrent video sessions - [x86] ACPI / x86: Drop PWM2 device on Lenovo Yoga Book from always present table - ACPI: Change acpi_device_always_present() into acpi_device_override_status() - [x86] ACPI / x86: Allow specifying acpi_device_override_status() quirks by path - [x86] ACPI / x86: Add not-present quirk for the PCI0.SDHB.BRC1 device on the GPD win - floppy: Add max size check for user space request - [x86] mm: Flush global TLB when switching to trampoline page-table - media: saa7146: hexium_orion: Fix a NULL pointer dereference in hexium_attach() - media: m920x: don't use stack on USB reads - [x86] thunderbolt: Runtime PM activate both ends of the device link - iwlwifi: mvm: synchronize with FW after multicast commands - iwlwifi: mvm: avoid clearing a just saved session protection id - ath11k: avoid deadlock by change ieee80211_queue_work for regd_update_work - ath10k: Fix tx hanging - net-sysfs: update the queue counts in the unregistration path - net: phy: prefer 1000baseT over 1000baseKX - [armhf] gpio: aspeed: Convert aspeed_gpio.lock to raw_spinlock - ath11k: Avoid false DEADLOCK warning reported by lockdep - [x86] mce: Allow instrumentation during task work queueing - [x86] mce: Mark mce_panic() noinstr - [x86] mce: Mark mce_end() noinstr - [x86] mce: Mark mce_read_aux() noinstr - net: bonding: debug: avoid printing debug logs when bond is not notifying peers - bpf: Do not WARN in bpf_warn_invalid_xdp_action() - HID: quirks: Allow inverting the absolute X/Y values - media: igorplugusb: receiver overflow should be reported - media: saa7146: hexium_gemini: Fix a NULL pointer dereference in hexium_attach() - mmc: core: Fixup storing of OCR for MMC_QUIRK_NONSTD_SDIO - audit: ensure userspace is penalized the same as the kernel when under pressure - [arm64] dts: ls1028a-qds: move rtc node to the correct i2c bus - PM: runtime: Add safety net to supplier device release - cpufreq: Fix initialization of min and max frequency QoS requests - usb: hub: Add delay for SuperSpeed hub resume to let links transit to U0 - ath9k: Fix out-of-bound memcpy in ath9k_hif_usb_rx_stream - rtw88: 8822c: update rx settings to prevent potential hw deadlock - iwlwifi: fix leaks/bad data after failed firmware load - iwlwifi: remove module loading failure message - iwlwifi: mvm: Fix calculation of frame length - iwlwifi: pcie: make sure prph_info is set when treating wakeup IRQ - ath11k: Fix napi related hang - Bluetooth: vhci: Set HCI_QUIRK_VALID_LE_STATES - xfrm: rate limit SA mapping change message to user space - [armhf] drm/etnaviv: consider completed fence seqno in hang check - jffs2: GC deadlock reading a page that is used in jffs2_write_begin() - ACPICA: actypes.h: Expand the ACPI_ACCESS_ definitions - ACPICA: Utilities: Avoid deleting the same object twice in a row - ACPICA: Executer: Fix the REFCLASS_REFOF case in acpi_ex_opcode_1A_0T_1R() - ACPICA: Fix wrong interpretation of PCC address - ACPICA: Hardware: Do not flush CPU cache when entering S4 and S5 - drm/amdgpu: fixup bad vram size on gmc v8 - ACPI: battery: Add the ThinkPad "Not Charging" quirk - btrfs: remove BUG_ON() in find_parent_nodes() - btrfs: remove BUG_ON(!eie) in find_parent_nodes - net: mdio: Demote probed message to debug print - mac80211: allow non-standard VHT MCS-10/11 - dm btree: add a defensive bounds check to insert_at() - dm space map common: add bounds check to sm_ll_lookup_bitmap() - net: phy: marvell: configure RGMII delays for 88E1118 - [arm64] regulator: qcom_smd: Align probe function with rpmh-regulator - [arm64,armhf] serial: pl010: Drop CR register reset on set_termios - serial: core: Keep mctrl register state and cached copy in sync - random: do not throw away excess input to crng_fast_load - [powerpc*] powernv: add missing of_node_put - [powerpc*] btext: add missing of_node_put - [powerpc*] watchdog: Fix missed watchdog reset due to memory ordering race - [x86] i2c: i801: Don't silently correct invalid transfer size - [powerpc*] smp: Move setup_profiling_timer() under CONFIG_PROFILING - [powerpc*] i2c: mpc: Correct I2C reset procedure - [arm64] clk: meson: gxbb: Fix the SDM_EN bit for MPLL0 on GXBB - [powerpc*] KVM: PPC: Book3S: Suppress warnings when allocating too big memory slots - [powerpc*] KVM: PPC: Book3S: Suppress failed alloc warning in H_COPY_TOFROM_GUEST - w1: Misuse of get_user()/put_user() reported by sparse - nvmem: core: set size for sysfs bin file - dm: fix alloc_dax error handling in alloc_dev - scsi: lpfc: Trigger SLI4 firmware dump before doing driver cleanup - ALSA: seq: Set upper limit of processed events - [powerpc*] handle kdump appropriately with crash_kexec_post_notifiers option - [powerpc*] fadump: Fix inaccurate CPU state info in vmcore generated with panic - udf: Fix error handling in udf_new_inode() - [mips64el,mipsel] OCTEON: add put_device() after of_find_device_by_node() - [arm64,armhf] irqchip/gic-v4: Disable redistributors' view of the VPE table at boot time - [x86] i2c: designware-pci: Fix to change data types of hcnt and lcnt parameters - scsi: sr: Don't use GFP_DMA - [arm64] rpmsg: core: Clean up resources on announce_create failure. - [armhf] crypto: stm32/crc32 - Fix kernel BUG triggered in probe() - [arm64] crypto: caam - replace this_cpu_ptr with raw_cpu_ptr - ubifs: Error path in ubifs_remount_rw() seems to wrongly free write buffers - tpm: fix NPE on probe for missing device - xen/gntdev: fix unmap notification order - fuse: Pass correct lend value to filemap_write_and_wait_range() - serial: Fix incorrect rs485 polarity on uart open - cputime, cpuacct: Include guest time in user time in cpuacct.stat - tracing/kprobes: 'nmissed' not showed correctly for kretprobe - iwlwifi: mvm: Increase the scan timeout guard to 30 seconds - [s390x] mm: fix 2KB pgtable release race - device property: Fix fwnode_graph_devcon_match() fwnode leak - [armhf] drm/etnaviv: limit submit sizes - drm/nouveau/kms/nv04: use vzalloc for nv04_display - [arm64,armhf] drm/bridge: analogix_dp: Make PSR-exit block less - [powerpc*] 64s/radix: Fix huge vmap false positive - [arm64] PCI: xgene: Fix IB window setup - PCI: pciehp: Use down_read/write_nested(reset_lock) to fix lockdep errors - [arm*] PCI: pci-bridge-emul: Make expansion ROM Base Address register read-only - [arm*] PCI: pci-bridge-emul: Properly mark reserved PCIe bits in PCI config space - [arm*] PCI: pci-bridge-emul: Fix definitions of reserved bits - [arm*] PCI: pci-bridge-emul: Correctly set PCIe capabilities - [arm*] PCI: pci-bridge-emul: Set PCI_STATUS_CAP_LIST for PCIe device - xfrm: fix policy lookup for ipv6 gre packets - btrfs: fix deadlock between quota enable and other quota operations - btrfs: check the root node for uptodate before returning it - btrfs: respect the max size in the header when activating swap file - ext4: make sure to reset inode lockdep class when quota enabling fails - ext4: make sure quota gets properly shutdown on error - ext4: fix a possible ABBA deadlock due to busy PA - ext4: initialize err_blk before calling __ext4_get_inode_loc - ext4: fix fast commit may miss tracking range for FALLOC_FL_ZERO_RANGE - ext4: set csum seed in tmp inode while migrating to extents - ext4: Fix BUG_ON in ext4_bread when write quota data - ext4: use ext4_ext_remove_space() for fast commit replay delete range - ext4: fast commit may miss tracking unwritten range during ftruncate - ext4: destroy ext4_fc_dentry_cachep kmemcache on module removal - ext4: fix null-ptr-deref in '__ext4_journal_ensure_credits' - ext4: don't use the orphan list when migrating an inode - drm/radeon: fix error handling in radeon_driver_open_kms - of: base: Improve argument length mismatch error - firmware: Update Kconfig help text for Google firmware - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - Documentation: dmaengine: Correctly describe dmatest with channel unset - Documentation: ACPI: Fix data node reference documentation - Documentation: refer to config RANDOMIZE_BASE for kernel address-space randomization - Documentation: fix firewire.rst ABI file path error - Bluetooth: hci_sync: Fix not setting adv set duration - scsi: core: Show SCMD_LAST in text form - [arm64] RDMA/hns: Modify the mapping attribute of doorbell to device - RDMA/rxe: Fix a typo in opcode name - [armhf] dmaengine: stm32-mdma: fix STM32_MDMA_CTBR_TSEL_MASK - Revert "net/mlx5: Add retry mechanism to the command entry index allocation" - block: Fix fsync always failed if once failed - bpftool: Remove inclusion of utilities.mak from Makefiles - xdp: check prog type before updating BPF link - ipv4: update fib_info_cnt under spinlock protection - ipv4: avoid quadratic behavior in netns dismantle - [arm64] net/fsl: xgmac_mdio: Add workaround for erratum A-009885 - [arm64] net/fsl: xgmac_mdio: Fix incorrect iounmap when removing module - f2fs: compress: fix potential deadlock of compress file - f2fs: fix to reserve space for IO align feature - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress - clk: Emit a stern warning with writable debugfs enabled - net/smc: Fix hung_task when removing SMC-R devices - virtio_ring: mark ring unused on error - taskstats: Cleanup the use of task->exit_code - inet: frags: annotate races around fqdir->dead and fqdir->high_thresh - netns: add schedule point in ops_exit_list() - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - gre: Don't accidentally set RTO_ONLINK in gre_fill_metadata_dst() - libcxgb: Don't accidentally set RTO_ONLINK in cxgb_find_route() - perf script: Fix hex dump character output - perf probe: Fix ppc64 'perf probe add events failed' case - devlink: Remove misleading internal_flags from health reporter dump - net: bonding: fix bond_xmit_broadcast return value error bug - net_sched: restore "mpu xxx" handling - [arm64] bcmgenet: add WOL IRQ check - net: sfp: fix high power modules without diagnostic monitoring - [arm64] net: mscc: ocelot: fix using match before it is set - dt-bindings: display: meson-dw-hdmi: add missing sound-name-prefix property - dt-bindings: display: meson-vpu: Add missing amlogic,canvas property - dt-bindings: watchdog: Require samsung,syscon-phandle for Exynos7 - mm/hmm.c: allow VM_MIXEDMAP to work with hmm_range_fault - mtd: nand: bbt: Fix corner case in bad block table handling - ath10k: Fix the MTU size on QCA9377 SDIO https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.95 - bnx2x: Utilize firmware 7.13.21.0 - bnx2x: Invalidate fastpath HSI version for VFs - rcu: Tighten rcu_advance_cbs_nowake() checks - [x86] KVM: x86/mmu: Fix write-protection of PTs mapped by the TDP MMU - select: Fix indefinitely sleeping task in poll_schedule_timeout() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.96 - Bluetooth: refactor malicious adv data check - [arm64] media: venus: core: Drop second v4l2 device unregister - net: sfp: ignore disabled SFP node - net: stmmac: skip only stmmac_ptp_register when resume from suspend - [s390x] module: fix loading modules with a lot of relocations - [s390x] hypfs: include z/VM guests with access control group set - bpf: Guard against accessing NULL pt_regs in bpf_get_task_stack() - [s390x] scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices - udf: Restore i_lenAlloc when inode expansion fails (CVE-2022-0617) - udf: Fix NULL ptr deref when converting from inline format (CVE-2022-0617) - efi: runtime: avoid EFIv2 runtime services on Apple x86 machines - tracing: Don't inc err_log entry count if entry allocation fails - ceph: properly put ceph_string reference after async create attempt - ceph: set pool_ns in new inode layout for async creates - fsnotify: fix fsnotify hooks in pseudo filesystems - Revert "KVM: SVM: avoid infinite loop on NPF from bad address" - [x86] perf/x86/intel/uncore: Fix CAS_COUNT_WRITE issue for ICX - [armhf] drm/etnaviv: relax submit size limits - [x86] KVM: x86: Update vCPU's runtime CPUID on write to MSR_IA32_XSS - [arm64] errata: Fix exec handling in erratum 1418040 workaround - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - serial: 8250: of: Fix mapped region size when using reg-offset property - [armhf] serial: stm32: fix software flow control transfer - tty: n_gsm: fix SW flow control encoding/handling - tty: Add support for Brainboxes UC cards. - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge - [arm64,armhf] usb: xhci-plat: fix crash when suspend if remote wake enable - [arm64,armhf] usb: common: ulpi: Fix crash in ulpi_match() - usb: gadget: f_sourcesink: Fix isoc transfer for USB_SPEED_SUPER_PLUS - USB: core: Fix hang in usb_kill_urb by adding memory barriers - usb: typec: tcpm: Do not disconnect while receiving VBUS off - jbd2: export jbd2_journal_[grab|put]_journal_head - ocfs2: fix a deadlock when commit trans - sched/membarrier: Fix membarrier-rseq fence command missing from query bitmask - [x86] MCE/AMD: Allow thresholding interface updates after init - i40e: Increase delay to 1 s after global EMP reset - i40e: Fix issue when maximum queues is exceeded - i40e: Fix queues reservation for XDP - i40e: Fix for failed to init adminq while VF reset - i40e: fix unsigned stat widths - scsi: bnx2fc: Flush destroy_work queue before calling bnx2fc_interface_put() - ipv6_tunnel: Rate limit warning messages - net: fix information leakage in /proc/net/ptype - hwmon: (lm90) Mark alert as broken for MAX6646/6647/6649 - hwmon: (lm90) Mark alert as broken for MAX6680 - ping: fix the sk_bound_dev_if match in ping_lookup - ipv4: avoid using shared IP generator for connected sockets - hwmon: (lm90) Reduce maximum conversion rate for G781 - NFSv4: nfs_atomic_open() can race when looking up a non-regular file - net-procfs: show net devices bound packet types - [arm64] drm/msm: Fix wrong size calculation - [arm64] drm/msm/dsi: Fix missing put_device() call in dsi_get_phy - [arm64] drm/msm/dsi: invalid parameter check in msm_dsi_phy_enable - ipv6: annotate accesses to fn->fn_sernum - NFS: Ensure the server has an up to date ctime before hardlinking - NFS: Ensure the server has an up to date ctime before renaming - [powerpc*] powerpc64/bpf: Limit 'ldbrx' to processors compliant with ISA v2.06 - netfilter: conntrack: don't increment invalid counter on NF_REPEAT - kernel: delete repeated words in comments - perf: Fix perf_event_read_local() time - sched/pelt: Relax the sync of util_sum with util_avg - net: phy: broadcom: hook up soft_reset for BCM54616S - phylib: fix potential use-after-free - rxrpc: Adjust retransmission backoff - [arm64] efi/libstub: arm64: Fix image check alignment at entry - hwmon: (lm90) Mark alert as broken for MAX6654 - [powerpc*] perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending - net: ipv4: Move ip_options_fragment() out of loop - net: ipv4: Fix the warning for dereference - ipv4: fix ip option filtering for locally generated fragments - [x86] video: hyperv_fb: Fix validation of screen resolution - [arm64] drm/msm/hdmi: Fix missing put_device() call in msm_hdmi_get_phy - [arm64] drm/msm/dpu: invalid parameter check in dpu_setup_dspp_pcc - [armhf] net: cpsw: Properly initialise struct page_pool_params - [arm64] net: hns3: handle empty unknown interrupt for VF - Revert "ipv6: Honor all IPv6 PIO Valid Lifetime values" - net: bridge: vlan: fix single net device option dumping - ipv4: raw: lock the socket in raw_bind() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: remove sparse error in ip_neigh_gw4() - net: bridge: vlan: fix memory leak in __allowed_ingress - dt-bindings: can: tcan4x5x: fix mram-cfg RX FIFO config - fsnotify: invalidate dcache before IN_DELETE event - block: Fix wrong offset in bio_truncate() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.97 - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - [x86] KVM: x86: Forcibly leave nested virt when SMM state is toggled - psi: Fix uaf issue when psi trigger is destroyed while being polled - [x86] mce: Add Xeon Sapphire Rapids to list of CPUs that support PPIN - [x86] cpu: Add Xeon Icelake-D to list of CPUs that support PPIN - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - cgroup-v1: Require capabilities to set release_agent (CVE-2022-0492) - net/mlx5e: Fix handling of wrong devices during bond netevent - net/mlx5: Use del_timer_sync in fw reset flow of halting poll - net/mlx5: E-Switch, Fix uninitialized variable modact - ipheth: fix EOVERFLOW in ipheth_rcvbulk_callback - [amd64,arm64] net: amd-xgbe: ensure to reset the tx_timer_active flag - [amd64,arm64] net: amd-xgbe: Fix skb data length underflow - fanotify: Fix stale file descriptor in copy_event_to_user() - net: sched: fix use-after-free in tc_new_tfilter() - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - cpuset: Fix the bug that subpart_cpus updated wrongly in update_cpumask() - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - tcp: add missing tcp_skb_can_collapse() test in tcp_shift_skb_data() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.98 - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" again https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.99 - selinux: fix double free of cond_list on error paths - audit: improve audit queue handling when "audit=1" on cmdline - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() - ALSA: usb-audio: Correct quirk for VF0770 - ALSA: hda: Fix UAF of leds class devs at unbinding - ALSA: hda: realtek: Fix race at concurrent COEF updates - ALSA: hda/realtek: Add quirk for ASUS GU603 - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows - btrfs: fix deadlock between quota disable and qgroup rescan worker - drm/nouveau: fix off by one in BIOS boundary checking - mm/pgtable: define pte_index so that preprocessor could recognize it - block: bio-integrity: Advance seed correctly for larger interval sizes - dma-buf: heaps: Fix potential spectre v1 gadget - [amd64] IB/hfi1: Fix AIP early init panic - memcg: charge fs_context and legacy_fs_context - RDMA/cma: Use correct address when leaving multicast group - RDMA/ucma: Protect mc during concurrent multicast leaves - [amd64] IB/rdmavt: Validate remote_addr during loopback atomic tests - RDMA/mlx4: Don't continue event handler after memory allocation failure - [amd64] iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - [amd64] iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - [arm64,armhf] spi: meson-spicc: add IRQ check in meson_spicc_probe - net: ieee802154: hwsim: Ensure proper channel selection at probe time - net: ieee802154: Return meaningful error codes from the netlink helpers - net: macsec: Fix offload support for NETDEV_UNREGISTER event - net: macsec: Verify that send_sci is on when setting Tx sci explicitly - net: stmmac: dump gmac4 DMA registers correctly - net: stmmac: ensure PTP time register reads are consistent - [x86] drm/i915/overlay: Prevent divide by zero bugs in scaling - [x86] pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line - [x86] pinctrl: intel: fix unexpected interrupt - [arm*] pinctrl: bcm2835: Fix a few error paths - scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe - nfsd: nfsd4_setclientid_confirm mistakenly expires confirmed client. - [amd64,arm64] gve: fix the wrong AdminQ buffer queue index check - bpf: Use VM_MAP instead of VM_ALLOC for ringbuf - rtc: cmos: Evaluate century appropriate - Revert "fbcon: Disable accelerated scrolling" - fbcon: Add option to enable legacy hardware acceleration - perf stat: Fix display of grouped aliased events - [x86] perf/x86/intel/pt: Fix crash with stop filters in single-range mode - [x86] perf: Default set FREEZE_ON_SMI for all - [arm64] EDAC/xgene: Fix deferred probing - ext4: prevent used blocks from being allocated during fast commit replay - ext4: modify the logic of ext4_mb_new_blocks_simple - ext4: fix error handling in ext4_restore_inline_data() - ext4: fix error handling in ext4_fc_record_modified_inode() - ext4: fix incorrect type issue during replay_del_range - cgroup/cpuset: Fix "suspicious RCU usage" lockdep warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.100 - moxart: fix potential use-after-free on remove path (CVE-2022-0487) - crypto: api - Move cryptomgr soft dependency into algapi https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.101 - integrity: check the return value of audit_log_start() - [arm64] mmc: sdhci-of-esdhc: Check for error num after setting mask - can: isotp: fix potential CAN frame reception race in isotp_rcv() - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs - net: phy: marvell: Fix MDI-x polarity setting in 88e1118-compatible PHYs - NFS: Fix initialisation of nfs_client cl_flags field - NFSD: Clamp WRITE offsets - NFSD: Fix offset type in I/O trace points - drm/amdgpu: Set a suitable dev_info.gart_page_size (Closes: #990279) - NFS: change nfs_access_get_cached to only report the mask - NFSv4 only print the label when its queried - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4.1: Fix uninitialised variable in devicenotify - NFSv4 remove zero number of fs_locations entries error check - NFSv4 expose nfs_parse_server_name function - NFSv4 handle port presence in fs_location server string - [x86] perf: Avoid warning for Arch LBR without XSAVE - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer - net: sched: Clarify error message when qdisc kind is unknown - [powerpc*] fixmap: Fix VM debug warning on unmap - scsi: target: iscsi: Make sure the np under each tpg is unique - scsi: qedf: Add stag_work to all the vports - scsi: qedf: Fix refcount issue when LOGO is received during TMF - scsi: pm8001: Fix bogus FW crash for maxcpus=1 - scsi: ufs: Treat link loss as fatal error - scsi: myrs: Fix crash in error case - PM: hibernate: Remove register_nosave_region_late() - [arm*] usb: dwc2: gadget: don't try to disable ep0 in dwc2_hsotg_suspend - perf: Always wake the parent event - nvme-pci: add the IGNORE_DEV_SUBNQN quirk for Intel P4500/P4600 SSDs - [arm64,armhf] net: stmmac: dwmac-sun8i: use return val of readl_poll_timeout() - KVM: eventfd: Fix false positive RCU usage warning - [x86] KVM: nVMX: eVMCS: Filter out VM_EXIT_SAVE_VMX_PREEMPTION_TIMER - [x86] KVM: nVMX: Also filter MSR_IA32_VMX_TRUE_PINBASED_CTLS when eVMCS - [x86] KVM: SVM: Don't kill SEV guest if SMAP erratum triggers in usermode - [x86] KVM: VMX: Set vmcs.PENDING_DBG.BS on #DB in STI/MOVSS blocking shadow - nvme-tcp: fix bogus request completion when failing to send AER - [arm64] ACPI/IORT: Check node revision for PMCG resources - PM: s2idle: ACPI: Fix wakeup interrupts handling - [arm64,armhf] drm/rockchip: vop: Correct RK3399 VOP register fields - [armhf] ARM: dts: Fix timer regression for beagleboard revision c - usb: f_fs: Fix use-after-free for epfile - [arm*] drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd. - netfilter: ctnetlink: disable helper autoassign - ixgbevf: Require large buffers for build_skb on 82599VF - [arm64,armhf] drm/panel: simple: Assign data from panel_dpi_probe() correctly - ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE - bonding: pair enable_port with slave_arr_updates - [arm64,armhf] net: dsa: mv88e6xxx: don't use devres for mdiobus - [armhf] net: dsa: bcm_sf2: don't use devres for mdiobus - [arm64] net: dsa: felix: don't use devres for mdiobus - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - nfp: flower: fix ida_idx not being released - net: do not keep the dst cache when uncloning an skb dst and its metadata - net: fix a memleak when uncloning an skb dst and its metadata - veth: fix races around rq->rx_notify_masked - [armhf] net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE - tipc: rate limit warning for received illegal binding update - [amd64,arm64] net: amd-xgbe: disable interrupts during pci removal - [arm64] dpaa2-eth: unregister the netdev before disconnecting from the PHY - ice: fix an error code in ice_cfg_phy_fec() - ice: fix IPIP and SIT TSO offload - [arm64] net: mscc: ocelot: fix mutex lock error during ethtool stats read - [arm64,armhf] net: dsa: mv88e6xxx: fix use-after-free in mv88e6xxx_mdios_unregister - vt_ioctl: fix array_index_nospec in vt_setactivate - vt_ioctl: add array_index_nospec to VT_ACTIVATE - n_tty: wake up poll(POLLRDNORM) on receiving data - eeprom: ee1004: limit i2c reads to I2C_SMBUS_BLOCK_MAX - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm*] Revert "usb: dwc2: drd: fix soft connect when gadget is unconfigured" - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - [arm64,armhf] usb: ulpi: Move of_node_put to ulpi_dev_release - [arm64,armhf] usb: ulpi: Call of_node_put correctly - [arm64,armhf] usb: dwc3: gadget: Prevent core from processing stale TRBs - usb: gadget: f_uac2: Define specific wTerminalType - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 - USB: serial: option: add ZTE MF286D modem - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices - USB: serial: cp210x: add NCR Retail IO box id - USB: serial: cp210x: add CPI Bulk Coin Recycler id - speakup-dectlk: Restore pitch setting - [x86] hwmon: (dell-smm) Speed up setting of fan speed - can: isotp: fix error path in isotp_sendmsg() to unlock wait queue - scsi: lpfc: Remove NVMe support if kernel has NVME_FC disabled - scsi: lpfc: Reduce log messages seen after firmware download - perf: Fix list corruption in perf_cgroup_switch() - iommu: Fix potential use-after-free during probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.102 - drm/nouveau/pmu/gm200-: use alternate falcon reset sequence - mm: memcg: synchronize objcg lists with a dedicated spinlock - rcu: Do not report strict GPs for outgoing CPUs - fget: clarify and improve __fget_files() implementation - fs/proc: task_mmu.c: don't read mapcount for migration entry - can: isotp: prevent race between isotp_bind() and isotp_setsockopt() - can: isotp: add SF_BROADCAST support for functional addressing - scsi: lpfc: Fix mailbox command failure during driver initialization - HID:Add support for UGTABLET WP5540 - [x86] Revert "svm: Add warning message for AVIC IPI invalid target" - mmc: block: fix read single on recovery logic - mm: don't try to NUMA-migrate COW pages that have other uses - [amd64] PCI: hv: Fix NUMA node assignment when kernel boots with custom NUMA topology - btrfs: send: in case of IO error log it - net: ieee802154: at86rf230: Stop leaking skb's - ax25: improve the incomplete fix to avoid UAF and NPD bugs - vfs: make freeze_super abort when sync_filesystem returns error - quota: make dquot_quota_sync return errors from ->sync_fs - scsi: pm8001: Fix use-after-free for aborted TMF sas_task - scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task - nvme: fix a possible use-after-free in controller reset during load - nvme-tcp: fix possible use-after-free in transport error_recovery work - nvme-rdma: fix possible use-after-free in transport error_recovery work - drm/amdgpu: fix logic inversion in check - [amd64] x86/Xen: streamline (and fix) PV CPU enumeration - Revert "module, async: async_synchronize_full() on module init iff async is used" - random: wake up /dev/random writers after zap - iwlwifi: fix use-after-free - drm/radeon: Fix backlight control on iMac 12,1 - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - vsock: remove vsock from connected table when connect is interrupted by a signal - [x86] drm/i915/gvt: Make DRM_I915_GVT depend on X86 - iwlwifi: pcie: fix locking when "HW not ready" - iwlwifi: pcie: gen2: fix locking when "HW not ready" - netfilter: nft_synproxy: unregister hooks on init error path - ipv6: per-netns exclusive flowlabel checks - net: dsa: lantiq_gswip: fix use after free in gswip_remove() - ping: fix the dif and sdif check in ping_lookup - bonding: force carrier update when releasing slave - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - net_sched: add __rcu annotation to netdev->qdisc - bonding: fix data-races around agg_select_timer - libsubcmd: Fix use-after-free for realloc(..., 0) - [arm64] dpaa2-eth: Initialize mutex used in one step timestamping path - ALSA: hda/realtek: Add quirk for Legion Y9000X 2019 - ALSA: hda/realtek: Fix deadlock by COEF mutex - ALSA: hda: Fix regression on forced probe mask option - ALSA: hda: Fix missing codec probe on Shenker Dock 15 - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() - [powerpc*[ lib/sstep: fix 'ptesync' build error - [armhf] mtd: rawnand: gpmi: don't leak PM reference in error path - [x86] KVM: SVM: Never reject emulation due to SMAP errata for !SEV guests (CVE-2020-36310) - block/wbt: fix negative inflight counter when remove scsi device - NFS: LOOKUP_DIRECTORY is also ok with symlinks - NFS: Do not report writeback errors in nfs_getattr() - tty: n_tty: do not look ahead for EOL character past the end of the buffer - [x86] Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj - [x86] KVM: x86/pmu: Refactoring find_arch_event() to pmc_perf_hw_id() - [x86] KVM: x86/pmu: Don't truncate the PerfEvtSeln MSR when creating a perf event - [x86] KVM: x86/pmu: Use AMD64_RAW_EVENT_MASK for PERF_TYPE_RAW - NFS: Don't set NFS_INO_INVALID_XATTR if there is no xattr cache - [armhf] OMAP2+: hwmod: Add of_node_put() before break - [armhf] OMAP2+: adjust the location of put_device() call in omapdss_init_of - netfilter: conntrack: don't refresh sctp entries in closed state - kconfig: let 'shell' return enough output for deep path names - ata: libata-core: Disable TRIM on M88V29 - [armhf] soc: aspeed: lpc-ctrl: Block error printing on probe defer cases - xprtrdma: fix pointer derefs in error cases of rpcrdma_ep_create - [arm64,armhf] drm/rockchip: dw_hdmi: Do not leave clock enabled in error case - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - net: usb: qmi_wwan: Add support for Dell DW5829e - [arm64] net: macb: Align the dma and coherent dma masks - kconfig: fix failing to generate auto.conf - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop - EDAC: Fix calculation of returned address and next offset in edac_align_ptr() - net: sched: limit TC_ACT_REPEAT loops - [armhf] dmaengine: stm32-dmamux: Fix PM disable depth imbalance in stm32_dmamux_probe - copy_process(): Move fd_install() out of sighand->siglock critical section - [arm*] i2c: brcmstb: fix support for DSL and CM variants https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.103 - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - btrfs: tree-checker: check item_size for inode_item - btrfs: tree-checker: check item_size for dev_item - vhost/vsock: don't check owner in vhost_vsock_stop() while releasing - [x86] KVM: x86/mmu: make apf token non-zero to fix bug - drm/amdgpu: disable MMHUB PG for Picasso - [x86] drm/i915: Correctly populate use_sagv_wm for all pipes - sr9700: sanity check for packet length - USB: zaurus: support another broken Zaurus - CDC-NCM: avoid overflow in sanity checking - netfilter: nf_tables_offload: incorrect flow offload action array size (CVE-2022-25636) - [x86] fpu: Correct pkru/xstate inconsistency - [arm64] tee: export teedev_open() and teedev_close_context() - [arm64] optee: use driver internal tee_context for some rpc - ping: remove pr_err from ping_lookup - perf data: Fix double free in perf_session__delete() - bnx2x: fix driver load from initrd - bnxt_en: Fix active FEC reporting to ethtool - hwmon: Handle failure to register sensor with thermal zone correctly - bpf: Do not try bpf_msg_push_data with len 0 - bpf: Add schedule points in batch ops - io_uring: add a schedule point in io_add_buffers() - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - tipc: Fix end of loop tests for list_for_each_entry() - gso: do not skip outer ip header in case of ipip and net_failover - openvswitch: Fix setting ipv6 fields causing hw csum failure - drm/edid: Always set RGB444 - net/mlx5e: Fix wrong return value on ioctl EEPROM query failure - net/sched: act_ct: Fix flow table lookup after ct clear or switching zones - net: Force inlining of checksum functions in net/checksum.h - nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac() - netfilter: nf_tables: fix memory leak during stateful obj update - net/smc: Use a mutex for locking "struct smc_pnettable" - udp_tunnel: Fix end of loop test in udp_tunnel_nic_unregister() - net/mlx5: Fix possible deadlock on rule deletion - net/mlx5: Fix wrong limitation of metadata match on ecpf - net/mlx5e: kTLS, Use CHECKSUM_UNNECESSARY for device-offloaded packets - regmap-irq: Update interrupt clear register for proper reset - configfs: fix a race in configfs_{,un}register_subsystem() - RDMA/ib_srp: Fix a deadlock - tracing: Have traceon and traceoff trigger honor the instance - iio: adc: ad7124: fix mask used for setting AIN_BUFP & AIN_BUFM bits - iio: imu: st_lsm6dsx: wait for settling time in st_lsm6dsx_read_oneshot - iio: Fix error handling for PM - ata: pata_hpt37x: disable primary channel on HPT371 - Revert "USB: serial: ch341: add new Product ID for CH341A" - usb: gadget: rndis: add spinlock for rndis response list - tracefs: Set the group ownership in apply_options() not parse_options() - USB: serial: option: add support for DW5829e - USB: serial: option: add Telit LE910R1 compositions - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm64] usb: dwc3: pci: Fix Bay Trail phy GPIO mappings - [arm64,armhf] usb: dwc3: gadget: Let the interrupt handler disable bottom halves. - xhci: re-initialize the HC during resume if HCE was set - xhci: Prevent futile URB re-submissions due to incorrect return value. - driver core: Free DMA range map when device is released - RDMA/cma: Do not change route.addr.src_addr outside state checks - [x86] thermal: int340x: fix memory leak in int3400_notify() - tty: n_gsm: fix encoding of control signal octet bit DV - tty: n_gsm: fix proper link termination after failed open - tty: n_gsm: fix NULL pointer access due to DLCI release - tty: n_gsm: fix wrong tty control line for flow control - tty: n_gsm: fix deadlock in gsmtty_open() - memblock: use kfree() to release kmalloced memblock regions . [ Salvatore Bonaccorso ] * Refresh "Makefile: Do not check for libelf when building OOT module" * Bump ABI to 12 * Refresh "firmware: Remove redundant log messages from drivers" * [rt] Refresh "locking/rtmutex: add sleeping lock implementation" * [rt] Refresh "cpuset: Convert callback_lock to raw_spinlock_t" * [rt] Update to 5.10.100-rt62 * Mitigate Spectre v2-type Branch History Buffer attacks (CVE-2022-0001, CVE-2022-0002) - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [x86] speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - [x86] speculation: Add eIBRS + Retpoline options - Documentation/hw-vuln: Update spectre doc - [x86] speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [x86] speculation: Use generic retpoline by default on AMD - [x86] speculation: Update link to AMD speculation whitepaper - [x86] speculation: Warn about Spectre v2 LFENCE mitigation - [x86] speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT linux-signed-arm64 (5.10.103+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.103-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.12 linux-signed-arm64 (5.10.92+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-2 . * lib/iov_iter: initialize "flags" in new pipe_buffer * [x86] mwifiex: Fix skb_over_panic in mwifiex_usb_recv() (CVE-2021-43976) * [x86] drm/i915: Flush TLBs before releasing backing store (CVE-2022-0330) * [x86] drm/vmwgfx: Fix stale file descriptors on failed usercopy (CVE-2022-22942) * NFSv4: Handle case where the lookup of a directory fails (CVE-2022-24448) * yam: fix a memory leak in yam_siocdevprivate() (CVE-2022-24959) * tipc: improve size validations for received domain records (CVE-2022-0435) * [s390x] KVM: s390: Return error on SIDA memop on normal guest (CVE-2022-0516) * USB: gadget: validate interface OS descriptor requests (CVE-2022-25258) * usb: gadget: rndis: check size of RNDIS_MSG_SET command (CVE-2022-25375) linux-signed-arm64 (5.10.92+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.85 - usb: gadget: uvc: fix multiple opens - gcc-plugins: simplify GCC plugin-dev capability test - gcc-plugins: fix gcc 11 indigestion with plugins... - HID: quirks: Add quirk for the Microsoft Surface 3 type-cover - HID: add hid_is_usb() function to make it simpler for USB detection - HID: bigbenff: prevent null pointer dereference - HID: wacom: fix problems when device is not a valid USB device - HID: check for valid USB device for many HID drivers - [amd64] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups - [amd64] IB/hfi1: Insure use of smp_processor_id() is preempt disabled - [amd64] IB/hfi1: Fix early init panic - [amd64] IB/hfi1: Fix leak of rcvhdrtail_dummy_kvaddr - can: kvaser_usb: get CAN clock frequency from device - [x86] can: sja1000: fix use after free in ems_pcmcia_add_card() - drm/amdgpu: move iommu_resume before ip init/resume - drm/amdgpu: init iommu after amdkfd device init - nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done - vrf: don't run conntrack on vrf with !dflt qdisc - bpf, x86: Fix "no previous prototype" warning - bpf: Fix the off-by-two error in range markings - ice: ignore dropped packets during init - bonding: make tx_rebalance_counter an atomic - nfp: Fix memory leak in nfp_cpp_area_cache_add() - seg6: fix the iif in the IPv6 socket control block - udp: using datalen to cap max gso segments - netfilter: conntrack: annotate data-races around ct->timeout - iavf: restore MSI state on reset - iavf: Fix reporting when setting descriptor count - [amd64] IB/hfi1: Correct guard on eager buffer deallocation - devlink: fix netns refcount leak in devlink_nl_cmd_reload() - net/sched: fq_pie: prevent dismantle issue - [x86] KVM: x86: Wait for IPIs to be delivered when handling Hyper-V TLB flush hypercall - mm: bdi: initialize bdi_min_ratio when bdi is unregistered - ALSA: hda/realtek - Add headset Mic support for Lenovo ALC897 platform - ALSA: hda/realtek: Fix quirk for TongFang PHxTxX1 - ALSA: pcm: oss: Fix negative period/buffer sizes - ALSA: pcm: oss: Limit the period size to 16MB - ALSA: pcm: oss: Handle missing errors in snd_pcm_oss_change_params*() - scsi: qla2xxx: Format log strings only if needed - btrfs: clear extent buffer uptodate when we fail to write it - btrfs: replace the BUG_ON in btrfs_del_root_ref with proper error handling - md: fix update super 1.0 on rdev size change - nfsd: fix use-after-free due to delegation race (Closes: #988044) - nfsd: Fix nsfd startup race (again) - tracefs: Have new files inherit the ownership of their parent - [arm64] clk: qcom: regmap-mux: fix parent clock lookup - drm/syncobj: Deal with signalled fences in drm_syncobj_find_fence. - [i386] can: pch_can: pch_can_rx_normal: fix use after free - libata: add horkage for ASMedia 1092 - wait: add wake_up_pollfree() - binder: use wake_up_pollfree() - signalfd: use wake_up_pollfree() - aio: keep poll requests on waitqueue until completed - aio: fix use-after-free due to missing POLLFREE handling - [arm64,armhf] net: mvpp2: fix XDP rx queues registering - tracefs: Set all files to the same group ownership as the mount option - block: fix ioprio_get(IOPRIO_WHO_PGRP) vs setuid(2) - scsi: pm80xx: Do not call scsi_remove_host() in pm8001_alloc() - scsi: scsi_debug: Fix buffer size of REPORT ZONES command - qede: validate non LSO skb length - PM: runtime: Fix pm_runtime_active() kerneldoc comment - ASoC: rt5682: Fix crash due to out of scope stack vars - [arm64] RDMA/hns: Do not halt commands during reset until later - [arm64] RDMA/hns: Do not destroy QP resources in the hw resetting phase - i40e: Fix failed opcode appearing if handling messages from VF - i40e: Fix pre-set max number of queues for VF - i40e: Fix NULL pointer dereference in i40e_dbg_dump_desc - [arm64] Revert "PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge" - Documentation/locking/locktypes: Update migrate_disable() bits. - dt-bindings: net: Reintroduce PHY no lane swap binding - net: cdc_ncm: Allow for dwNtbOutMaxSize to be unset or zero - [arm64,armhf] net: fec: only clear interrupt of handling queue in fec_enet_rx_queue() - net, neigh: clear whole pneigh_entry at alloc time - net/qla3xxx: fix an error code in ql_adapter_up() - USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) - USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) - usb: core: config: fix validation of wMaxPacketValue entries - xhci: Remove CONFIG_USB_DEFAULT_PERSIST to prevent xHCI from runtime suspending - usb: core: config: using bit mask instead of individual bits - xhci: avoid race between disable slot command and host runtime suspend - iio: gyro: adxrs290: fix data signedness - iio: trigger: Fix reference counting - iio: stk3310: Don't return error code in interrupt handler - iio: mma8452: Fix trigger reference couting - iio: ltr501: Don't return error code in trigger handler - iio: kxsd9: Don't return error code in trigger handler - iio: itg3200: Call iio_trigger_notify_done() on error - iio: adc: axp20x_adc: fix charging current reporting on AXP22x - iio: ad7768-1: Call iio_trigger_notify_done() on error - iio: accel: kxcjk-1013: Fix possible memory leak in probe and remove - [armhf] irqchip/aspeed-scu: Replace update_bits with write_bits. - [armhf] irqchip/armada-370-xp: Fix return value of armada_370_xp_msi_alloc() - [armhf] irqchip/armada-370-xp: Fix support for Multi-MSI interrupts - [arm64,armhf] irqchip/irq-gic-v3-its.c: Force synchronisation when issuing INVALL - kbuild: simplify GCC_PLUGINS enablement in dummy-tools/gcc - doc: gcc-plugins: update gcc-plugins.rst - MAINTAINERS: adjust GCC PLUGINS after gcc-plugin.sh removal - Documentation/Kbuild: Remove references to gcc-plugin.sh https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.86 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.87 - nfc: fix segfault in nfc_genl_dump_devices_done - [arm64] drm/msm/dsi: set default num_data_lanes - [arm64] KVM: arm64: Save PSTATE early on exit - [arm64] Revert "tty: serial: fsl_lpuart: drop earlycon entry for i.MX8QXP" - net/mlx4_en: Update reported link modes for 1/10G - ALSA: hda: Add Intel DG2 PCI ID and HDMI codec vid - ALSA: hda/hdmi: fix HDA codec entry table order for ADL-P - [arm64,armhf] i2c: rk3x: Handle a spurious start completion interrupt flag - net: netlink: af_netlink: Prevent empty skb by adding a check on len. - [x86] KVM: x86: Ignore sparse banks size for an "all CPUs", non-sparse IPI req - bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc - fuse: make sure reclaim doesn't write the inode - [x86] hwmon: (dell-smm) Fix warning on /proc/i8k creation error - ethtool: do not perform operations on net devices being unregistered - [armel,armhf] memblock: free_unused_memmap: use pageblock units instead of MAX_ORDER - [armel,armhf] memblock: align freed memory map on pageblock boundaries with SPARSEMEM - memblock: ensure there is no overflow in memblock_overlaps_region() - [armel,armhf] arm: extend pfn_valid to take into account freed memory map alignment - [armel,armhf] arm: ioremap: don't abuse pfn_valid() to check if pfn is in RAM https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.88 - KVM: downgrade two BUG_ONs to WARN_ON_ONCE - mac80211: fix regression in SSN handling of addba tx - mac80211: mark TX-during-stop for TX in in_reconfig - mac80211: send ADDBA requests using the tid/queue of the aggregation session - mac80211: validate extended element ID is present - bpf: Fix signed bounds propagation after mov32 - bpf: Make 32->64 bounds propagation slightly more robust - virtio_ring: Fix querying of maximum DMA mapping size for virtio device - dm btree remove: fix use after free in rebalance_children() - audit: improve robustness of the audit queue handling - [arm64] dts: imx8mp-evk: Improve the Ethernet PHY description - [arm64] dts: rockchip: fix rk3308-roc-cc vcc-sd supply - [arm64] dts: rockchip: fix rk3399-leez-p710 vcc3v3-lan supply - mac80211: track only QoS data frames for admission control - ceph: fix duplicate increment of opened_inodes metric - ceph: initialize pathlen variable in reconnect_caps_cb - [armhf] socfpga: dts: fix qspi node compatible - clk: Don't parent clks until the parent is fully registered - [armhf] soc: imx: Register SoC device only on i.MX boards - virtio/vsock: fix the transport to work with VMADDR_CID_ANY - [s390x] kexec_file: fix error handling when applying relocations - sch_cake: do not call cake_destroy() from cake_init() - inet_diag: fix kernel-infoleak for UDP sockets - [arm64] net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net/sched: sch_ets: don't remove idle classes from the round-robin list - drm/ast: potential dereference of null pointer - mac80211: agg-tx: don't schedule_and_wake_txq() under sta->lock - mac80211: fix lookup when adding AddBA extension element - flow_offload: return EOPNOTSUPP for the unsupported mpls action type - rds: memory leak in __rds_conn_create() (CVE-2021-45480) - [arm64,armhf] soc/tegra: fuse: Fix bitwise vs. logical OR warning - igb: Fix removal of unicast MAC filters of VFs - igbvf: fix double free in `igbvf_probe` - igc: Fix typo in i225 LTR functions - ixgbe: Document how to enable NBASE-T support - ixgbe: set X550 MDIO speed before talking to PHY - netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc (CVE-2021-4135) - net/packet: rx_owner_map depends on pg_vec - sfc_ef100: potential dereference of null pointer - net: Fix double 0x prefix print in SKB dump - net/smc: Prevent smc_release() from long blocking - sit: do not call ipip6_dev_free() from sit_init_net() - USB: gadget: bRequestType is a bitfield, not a enum - Revert "usb: early: convert to readl_poll_timeout_atomic()" - [x86] KVM: x86: Drop guest CPUID check for host initiated writes to MSR_IA32_PERF_CAPABILITIES - [x86] tty: n_hdlc: make n_hdlc_tty_wakeup() asynchronous - USB: NO_LPM quirk Lenovo USB-C to Ethernet Adapher(RTL8153-04) - [arm*] usb: dwc2: fix STM ID/VBUS detection startup delay in dwc2_driver_probe - PCI/MSI: Clear PCI_MSIX_FLAGS_MASKALL on error - PCI/MSI: Mask MSI-X vectors only on success - usb: xhci: Extend support for runtime power management for AMD's Yellow carp. - USB: serial: cp210x: fix CP2105 GPIO registration - USB: serial: option: add Telit FN990 compositions - btrfs: fix memory leak in __add_inode_ref() - btrfs: fix double free of anon_dev after failure to create subvolume - zonefs: add MODULE_ALIAS_FS - iocost: Fix divide-by-zero on donation from low hweight cgroup - [x86] serial: 8250_fintek: Fix garbled text for console - timekeeping: Really make sure wall_to_monotonic isn't positive - libata: if T_LENGTH is zero, dma direction should be DMA_NONE - drm/amdgpu: correct register access for RLC_JUMP_TABLE_RESTORE - Input: touchscreen - avoid bitwise vs logical OR warning - xsk: Do not sleep in poll() when need_wakeup set - media: mxl111sf: change mutex_init() location - fuse: annotate lock in fuse_reverse_inval_entry() - ovl: fix warning in ovl_create_real() - scsi: scsi_debug: Don't call kcalloc() if size arg is zero - scsi: scsi_debug: Fix type in min_t to avoid stack OOB - scsi: scsi_debug: Sanity check block descriptor length in resp_mode_select() - rcu: Mark accesses to rcu_state.n_force_qs - [armhf] bus: ti-sysc: Fix variable set but not used warning for reinit_modules - Revert "xsk: Do not sleep in poll() when need_wakeup set" - xen/blkfront: harden blkfront against event channel storms (CVE-2021-28711) - xen/netfront: harden netfront against event channel storms (CVE-2021-28712) - xen/console: harden hvc_xen against event channel storms (CVE-2021-28713) - xen/netback: fix rx queue stall detection (CVE-2021-28714) - xen/netback: don't queue unlimited number of packages (CVE-2021-28715) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.89 - net: usb: lan78xx: add Allied Telesis AT29M2-AF - ext4: prevent partial update of the extent blocks - ext4: check for out-of-order index extents in ext4_valid_extent_entries() - ext4: check for inconsistent extents between index and leaf block - HID: holtek: fix mouse probing - [arm64] dts: allwinner: orangepi-zero-plus: fix PHY mode - [arm64] spi: change clk_disable_unprepare to clk_unprepare - [amd64] IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() - [arm64] RDMA/hns: Replace kfree() with kvfree() - netfilter: fix regression in looped (broad|multi)cast's MAC handling - qlcnic: potential dereference null pointer of rx_queue->page_ring - net: accept UFOv6 packages in virtio_net_hdr_to_skb - net: skip virtio_net_hdr_set_proto if protocol already set - igb: fix deadlock caused by taking RTNL in RPM resume path - ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module - bonding: fix ad_actor_system option setting to default - [amd64] fjes: Check for error irq - [armhf] drivers: net: smc911x: Check for error irq - sfc: Check null pointer of rx_queue->page_ring - sfc: falcon: Check null pointer of rx_queue->page_ring - Input: elantech - fix stack out of bound access in elantech_change_report_id() - [arm*] pinctrl: bcm2835: Change init order for gpio hogs - hwmon: (lm90) Fix usage of CONFIG2 register in detect function - hwmon: (lm90) Add basic support for TI TMP461 - hwmon: (lm90) Introduce flag indicating extended temperature support - hwmon: (lm90) Drop critical attribute support for MAX6654 - ALSA: jack: Check the return value of kstrdup() - ALSA: drivers: opl3: Fix incorrect use of vp->state - ALSA: hda/realtek: Amp init fixup for HP ZBook 15 G6 - ALSA: hda/realtek: Add new alc285-hp-amp-init model - ALSA: hda/realtek: Fix quirk for Clevo NJ51CU - Input: atmel_mxt_ts - fix double free in mxt_read_info_block - ipmi: bail out if init_srcu_struct fails - ipmi: ssif: initialize ssif_info->client early - ipmi: fix initialization when workqueue allocation fails - [arm64] tee: handle lookup of shm with reference count 0 - [x86] pkey: Fix undefined behaviour with PKRU_WD_BIT - [x86] platform/x86: intel_pmc_core: fix memleak on registration failure - [x86] KVM: VMX: Wake vCPU when delivering posted IRQ even if vCPU == this vCPU - [armhf] pinctrl: stm32: consider the GPIO offset to expose all the GPIO lines - [arm64,armhf] mmc: sdhci-tegra: Fix switch to HS400ES mode - mmc: core: Disable card detect during shutdown - [arm64,armhf] mmc: mmci: stm32: clear DLYB_CR after sending tuning command - [armel,armhf] 9169/1: entry: fix Thumb2 bug in iWMMXt exception handling - mac80211: fix locking in ieee80211_start_ap error path - mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() - [arm64] tee: optee: Fix incorrect page free bug - f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() (CVE-2021-45469) - ceph: fix up non-directory creation in SGID directories - usb: gadget: u_ether: fix race in setting MAC address in setup phase - [x86] KVM: VMX: Fix stale docs for kvm-intel.emulate_invalid_guest_state - mm: mempolicy: fix THP allocations escaping mempolicy restrictions - [arm64] Input: elants_i2c - do not check Remark ID on eKTH3900/eKTH5312 - Input: goodix - add id->model mapping for the "9111" model - ASoC: rt5682: fix the wrong jack type detected - hwmom: (lm90) Fix citical alarm status for MAX6680/MAX6681 - hwmon: (lm90) Do not report 'busy' status bit as alarm - ax25: NPD bug when detaching AX25 device - hamradio: defer ax25 kfree after unregister_netdev - hamradio: improve the incomplete fix to avoid NPD - phonet/pep: refuse to enable an unbound pipe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.90 - Input: i8042 - add deferred probe support - Input: i8042 - enable deferred probe quirk for ASUS UM325UA - tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok(). - tomoyo: use hwight16() in tomoyo_domain_quota_is_ok() - [x86] platform/x86: apple-gmux: use resource_size() with res - memblock: fix memblock_phys_alloc() section mismatch error - selinux: initialize proto variable in selinux_ip_postroute_compat() - scsi: lpfc: Terminate string in lpfc_debugfs_nvmeio_trc_write() - net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources - net/mlx5e: Wrap the tx reporter dump callback to extract the sq - net/mlx5e: Fix ICOSQ recovery flow for XSK - udp: using datalen to cap ipv6 udp max gso segments - sctp: use call_rcu to free endpoint - net/smc: fix using of uninitialized completions - net: usb: pegasus: Do not drop long Ethernet frames - net/smc: improved fix wait on already cleared link - net/smc: don't send CDC/LLC message if link not ready - net/smc: fix kernel panic caused by race of smc_sock - igc: Fix TX timestamp support for non-MSI-X platforms - net/mlx5e: Fix wrong features assignment in case of error - [armhf] net/ncsi: check for error return from call to nla_put_u32 - i2c: validate user data in compat ioctl - nfc: uapi: use kernel size_t to fix user-space builds - uapi: fix linux/nfc.h userspace compilation errors - drm/amdgpu: When the VCN(1.0) block is suspended, powergating is explicitly enabled - drm/amdgpu: add support for IP discovery gc_info table v2 - xhci: Fresco FL1100 controller should not have BROKEN_MSI quirk set. - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - [arm*] binder: fix async_free_space accounting for empty parcels - [x86] scsi: vmw_pvscsi: Set residual data length conditionally - Input: appletouch - initialize work before device registration - Input: spaceball - fix parsing of movement data packets - net: fix use-after-free in tw_timer_handler https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.91 - f2fs: quota: fix potential deadlock - tracing: Fix check for trace_percpu_buffer validity in get_trace_buf() - tracing: Tag trace_percpu_buffer as a percpu pointer - ieee802154: atusb: fix uninit value in atusb_set_extended_addr - i40e: Fix to not show opcode msg on unsuccessful VF MAC change - iavf: Fix limit of total number of queues to active queues of VF - RDMA/core: Don't infoleak GRH fields - netrom: fix copying in user data in nr_setsockopt - RDMA/uverbs: Check for null return of kmalloc_array - mac80211: initialize variable have_higher_than_11mbit - sfc: The RX page_ring is optional - i40e: fix use-after-free in i40e_sync_filters_subtask() - i40e: Fix for displaying message regarding NVM version - i40e: Fix incorrect netdev's real number of RX/TX queues - ipv4: Check attribute length for RTA_GATEWAY in multipath route - ipv4: Check attribute length for RTA_FLOW in multipath route - ipv6: Check attribute length for RTA_GATEWAY in multipath route - ipv6: Check attribute length for RTA_GATEWAY when deleting multipath route - lwtunnel: Validate RTA_ENCAP_TYPE attribute length - batman-adv: mcast: don't send link-local multicast to mcast routers - sch_qfq: prevent shift-out-of-bounds in qfq_init_qdisc - net: ena: Fix undefined state when tx request id is out of bounds - net: ena: Fix error handling when calculating max IO queues number - xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (CVE-2021-4155) - power: supply: core: Break capacity loop - rndis_host: support Hytera digital radios - phonet: refcount leak in pep_sock_accep (CVE-2021-45095) - ipv6: Continue processing multipath route even if gateway attribute is invalid - ipv6: Do cleanup if attribute validation fails in multipath route - scsi: libiscsi: Fix UAF in iscsi_conn_get_param()/iscsi_conn_teardown() - ip6_vti: initialize __ip6_tnl_parm struct in vti6_siocdevprivate - net: udp: fix alignment problem in udp4_seq_show() - [amd64,arm64] atlantic: Fix buff_ring OOB in aq_ring_rx_clean - mISDN: change function names to avoid conflicts - drm/amd/display: Added power down for DCN10 - ipv6: raw: check passed optlen before reading https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.92 - md: revert io stats accounting - workqueue: Fix unbind_workers() VS wq_worker_running() race - bpf: Fix out of bounds access from invalid *_or_null type verification (CVE-2022-23222) - Bluetooth: btusb: fix memory leak in btusb_mtk_submit_wmt_recv_urb() - Bluetooth: btusb: Add two more Bluetooth parts for WCN6855 - Bluetooth: btusb: Add support for Foxconn MT7922A - Bluetooth: btusb: Add support for Foxconn QCA 0xe0d0 - Bluetooth: bfusb: fix division by zero in send path - [armhf] dts: exynos: Fix BCM4330 Bluetooth reset polarity in I9100 - USB: core: Fix bug in resuming hub's handling of wakeup requests - USB: Fix "slab-out-of-bounds Write" bug in usb_hcd_poll_rh_status - ath11k: Fix buffer overflow when scanning with extraie - mmc: sdhci-pci: Add PCI ID for Intel ADL - veth: Do not record rx queue hint in veth_xmit - [x86] mfd: intel-lpss: Fix too early PM enablement in the ACPI ->probe() - can: gs_usb: fix use of uninitialized variable, detach device on reception of invalid USB data - can: isotp: convert struct tpcon::{idx,len} to unsigned int - can: gs_usb: gs_can_start_xmit(): zero-initialize hf->{flags,reserved} - random: fix data race on crng_node_pool - random: fix data race on crng init time - random: fix crash on multiple early calls to add_bootloader_randomness() - media: Revert "media: uvcvideo: Set unique vdev name based in type" - [x86] drm/i915: Avoid bitwise vs logical OR warning in snb_wm_latency_quirk() . [ Salvatore Bonaccorso ] * [arm64] drivers/net/ethernet/google: Enable GVE as module (Closes: #996974) * Refresh "Export symbols needed by Android drivers" * [rt] Update to 5.10.87-rt59 * Bump ABI to 11 * [rt] Update to 5.10.90-rt60 * vfs: fs_context: fix up param length parsing in legacy_parse_param (CVE-2022-0185) . [ Andrew Balmos ] * net/can: Enable CONFIG_CAN_MCP251X as module . [ Cyril Brulebois ] * arm64: dts: Add support for Raspberry Pi Compute Module 4 IO Board, producing a DTB that's almost entirely identical to what a v5.16-rc8 build produces, with lots of thanks to Uwe Kleine-König for the heavy lifting! linux-signed-arm64 (5.10.92+1~bpo10+1) buster-backports; urgency=medium . * Sign kernel from linux 5.10.92-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.11 linux-signed-i386 (5.10.106+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.106-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.104 - mac80211_hwsim: report NOACK frames in tx_status - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work - [arm*] i2c: bcm2835: Avoid clock stretching timeouts - ASoC: rt5682: do not block workqueue if card is unbound - regulator: core: fix false positive in regulator_late_cleanup() - Input: clear BTN_RIGHT/MIDDLE on buttonpads - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW - tipc: fix a bit overflow in tipc_crypto_key_rcv() - cifs: fix double free race when mount fails in cifs_get_root() - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990 - usb: gadget: don't release an existing dev->buf (CVE-2022-24958) - usb: gadget: clear related members when goto fail (CVE-2022-24958) - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I() - exfat: fix i_blocks for files truncated over 4 GiB - tracing: Add test for user space strings when filtering on string pointers - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char - ata: pata_hpt37x: fix PCI clock detection - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag - tracing: Add ustring operation to filtering string pointers - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min - [amd64] iommu/amd: Recover from event log overflow - [x86] drm/i915: s/JSP2/ICP2/ PCH - xen/netfront: destroy queues before real_num_tx_queues is zeroed - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls - xfrm: fix MTU regression - netfilter: fix use-after-free in __nf_register_net_hook() - bpf, sockmap: Do not ignore orig_len parameter - xfrm: fix the if_id check in changelink - xfrm: enforce validity of offload input flags - e1000e: Correct NVM checksum verification flow - net: fix up skbs delta_truesize in UDP GRO frag_list - netfilter: nf_queue: don't assume sk is full socket - netfilter: nf_queue: fix possible use-after-free - netfilter: nf_queue: handle socket prefetch - batman-adv: Request iflink once in batadv-on-batadv check - batman-adv: Request iflink once in batadv_get_real_netdevice - batman-adv: Don't expect inter-netns unique iflink indices - net: ipv6: ensure we call ipv6_mc_down() at most once - net: dcb: flush lingering app table entries for unregistered devices - net/smc: fix connection leak - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server - rcu/nocb: Fix missed nocb_timer requeue - ice: Fix race conditions between virtchnl handling and VF ndo ops - ice: fix concurrent reset and removal of VFs - sched/topology: Make sched_init_numa() use a set for the deduplicating sort - sched/topology: Fix sched_domain_topology_level alloc in sched_init_numa() - mac80211: fix forwarded mesh frames AC & queue selection - net: stmmac: fix return value of __setup handler - mac80211: treat some SAE auth steps as final - iavf: Fix missing check for running netdev - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe() - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc() - efivars: Respect "block" flag in efivar_entry_set_safe() - can: gs_usb: change active_channels's type from atomic_t to u8 - igc: igc_read_phy_reg_gpy: drop premature return - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup() functions - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs - igc: igc_write_phy_reg_gpy: drop premature return - memfd: fix F_SEAL_WRITE after shmem huge page allocated - [armhf] dts: switch timer config to common devkit8000 devicetree - [armhf] dts: Use 32KiHz oscillator on devkit8000 - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed - [arm64] soc: fsl: guts: Add a missing memory allocation failure check - [armhf] tegra: Move panels to AUX bus - net: chelsio: cxgb3: check the return value of pci_find_capability() - iavf: Refactor iavf state machine tracking - nl80211: Handle nla_memdup failures in handle_nan_filter - drm/amdgpu: fix suspend/resume hang regression - net: dcb: disable softirqs in dcbnl_flush_dev() - Input: elan_i2c - move regulator_[en|dis]able() out of elan_[en|dis]able_power() - Input: elan_i2c - fix regulator enable count imbalance after suspend/resume - HID: add mapping for KEY_DICTATE - HID: add mapping for KEY_ALL_APPLICATIONS - tracing/histogram: Fix sorting on old "cpu" value - tracing: Fix return value of __setup handlers - btrfs: fix lost prealloc extents beyond eof after full fsync - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup - btrfs: add missing run of delayed items after unlink during log replay - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6" - hamradio: fix macro redefine warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.105 - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [armhf] report Spectre v2 status through sysfs - [armel,armhf] early traps initialisation - [armel,armhf] use LOADADDR() to get load address of sections - [armel,armhf] Spectre-BHB workaround - [armel,armhf] include unprivileged BPF status in Spectre V2 reporting - [arm64] cputype: Add CPU implementor & types for the Apple M1 cores - [arm64] Add Neoverse-N2, Cortex-A710 CPU part definition - [arm64] Add Cortex-X2 CPU part definition - [arm64] Add Cortex-A510 CPU part definition - [arm64] Add HWCAP for self-synchronising virtual counter - [arm64] add ID_AA64ISAR2_EL1 sys register - [arm64] cpufeature: add HWCAP for FEAT_AFP - [arm64] cpufeature: add HWCAP for FEAT_RPRES - [arm64] entry.S: Add ventry overflow sanity checks - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit - [arm64] entry: Make the trampoline cleanup optional - [arm64] entry: Free up another register on kpti's tramp_exit path - [arm64] entry: Move the trampoline data page before the text page - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary - [arm64] entry: Don't assume tramp_vectors is the start of the vectors - [arm64] entry: Move trampoline macros out of ifdef'd section - [arm64] entry: Make the kpti trampoline's kpti sequence optional - [arm64] entry: Allow the trampoline text to occupy multiple pages - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations - [arm64] entry: Add vectors that have the bhb mitigation sequences - [arm64] entry: Add macro for reading symbol addresses from the trampoline - [arm64] Add percpu vectors for EL1 - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of Spectre-v2 - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A - [arm64] Mitigate spectre style branch history side channels - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and migrated - [arm64] Use the clearbhb instruction in mitigations - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [armel,armhf] fix co-processor register typo - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld - [armhf] fix build warning in proc-v7-bugs.c - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case (CVE-2022-23040, XSA-396) - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036, CVE-2022-23038, XSA-396) - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23036, XSA-396) - xen/netfront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23037, XSA-396) - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status (CVE-2022-23038, XSA-396) - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039, XSA-396) - xen: remove gnttab_query_foreign_access() - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396) - xen/gnttab: fix gnttab_end_foreign_access() without page specified (CVE-2022-23041, XSA-396) - xen/netfront: react properly to failing gnttab_end_foreign_access_ref() (CVE-2022-23042, XSA-396) - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.106 - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias - tipc: fix kernel panic when enabling bearer - mISDN: Remove obsolete PIPELINE_DEBUG debugging information - mISDN: Fix memory leak in dsp_pipeline_build() - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw() - net: qlogic: check the return value of dma_alloc_coherent() in qed_vf_hw_prepare() - esp: Fix BEET mode inter address family tunneling on GSO - qed: return status of qed_iov_get_link - i40e: stop disabling VFs due to PF error responses - ice: stop disabling VFs due to PF error responses - ice: Align macro names to the specification - ice: Remove unnecessary checker loop - ice: Rename a couple of variables - ice: Fix curr_link_speed advertised speed - tipc: fix incorrect order of state message data sanity check - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable - ax25: Fix NULL pointer dereference in ax25_kill_by_device - net/mlx5: Fix size field in bufferx_reg struct - net/mlx5: Fix a race on command flush flow - net/mlx5e: Lag, Only handle events from highest priority multipath entry - NFC: port100: fix use-after-free in port100_send_complete - net: phy: DP83822: clear MISR2 register to disable interrupts - sctp: fix kernel-infoleak for SCTP sockets - [arm64] net: bcmgenet: Don't claim WOL when its not available - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort - net-sysfs: add check for netdevice being present to speed_show - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read - gpio: Return EPROBE_DEFER if gc->to_irq is NULL - Revert "xen-netback: remove 'hotplug-status' once it has served its purpose" - Revert "xen-netback: Check for hotplug-status existence before watching" - ipv6: prevent a possible race condition with lifetimes - tracing: Ensure trace buffer is at least 4096 bytes large - fuse: fix pipe buffer lifetime for direct_io - staging: rtl8723bs: Fix access-point mode deadlock - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive - [arm64] mmc: meson: Fix usage of meson_mmc_post_req() - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0 - virtio: unexport virtio_finalize_features - virtio: acknowledge all features before access - watch_queue, pipe: Free watchqueue state after clearing pipe ring (CVE-2022-0995) - watch_queue: Fix to release page in ->release() (CVE-2022-0995) - watch_queue: Fix to always request a pow-of-2 pipe ring size (CVE-2022-0995) - watch_queue: Fix the alloc bitmap size to reflect notes allocated (CVE-2022-0995) - watch_queue: Free the alloc bitmap when the watch_queue is torn down (CVE-2022-0995) - watch_queue: Fix lack of barrier/sync/lock between post and read (CVE-2022-0995) - watch_queue: Make comment about setting ->defunct more accurate (CVE-2022-0995) - [x86] boot: Fix memremap of setup_indirect structures - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data() - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL - ext4: add check to prevent attempting to resize an fs with sparse_super2 - [armel,armhf] fix Thumb2 regression with Spectre BHB - watch_queue: Fix filter limit check ((CVE-2022-0995) . [ Salvatore Bonaccorso ] * Bump ABI to 13 * [rt] Update to 5.10.104-rt63 * [rt] Update to 5.10.106-rt64 * sctp: fix the processing for INIT chunk (CVE-2021-3772) * tcp: make tcp_read_sock() more robust * io_uring: return back safer resurrect * [arm64] kvm: Fix copy-and-paste error in bhb templates for v5.10 stable linux-signed-i386 (5.10.103+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.103-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.93 - kbuild: Add $(KBUILD_HOSTLDFLAGS) to 'has_libelf' test - devtmpfs regression fix: reconfigure on each mount - orangefs: Fix the size of a memory allocation in orangefs_bufmap_alloc() - perf: Protect perf_guest_cbs with RCU - [x86] KVM: Register Processor Trace interrupt hook iff PT enabled in guest - [s390x] KVM: Clarify SIGP orders versus STOP/RESTART - 9p: only copy valid iattrs in 9P2000.L setattr implementation - [x86] video: vga16fb: Only probe for EGA and VGA 16 color graphic cards - media: uvcvideo: fix division by zero at stream start - rtlwifi: rtl8192cu: Fix WARNING when calling local_irq_restore() with interrupts enabled - firmware: qemu_fw_cfg: fix sysfs information leak - firmware: qemu_fw_cfg: fix NULL-pointer deref on duplicate entries - firmware: qemu_fw_cfg: fix kobject leak in probe error path - [x86] KVM: remove PMU FIXED_CTR3 from msrs_to_save_all - ALSA: hda/realtek: Add speaker fixup for some Yoga 15ITL5 devices - ALSA: hda/realtek - Fix silent output on Gigabyte X570 Aorus Master after reboot from Windows - ALSA: hda: ALC287: Add Lenovo IdeaPad Slim 9i 14ITL5 speaker quirk - ALSA: hda/realtek: Add quirk for Legion Y9000X 2020 - ALSA: hda/realtek: Re-order quirk entries for Lenovo - [powerpc*] pseries: Get entry and uaccess flush required bits from H_GET_CPU_CHARACTERISTICS https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.94 - [x86] KVM: VMX: switch blocked_vcpu_on_cpu_lock to raw spinlock - HID: uhid: Fix worker destroying device without any protection - HID: wacom: Reset expected and received contact counts at the same time - HID: wacom: Ignore the confidence flag when a touch is removed - HID: wacom: Avoid using stale array indicies to read contact count - f2fs: fix to do sanity check in is_alive() - nfc: llcp: fix NULL error pointer dereference on sendmsg() after failed bind() - [armhf] mtd: rawnand: gpmi: Add ERR007117 protection for nfc_apply_timings - [armhf] mtd: rawnand: gpmi: Remove explicit default gpmi clock setting for i.MX6 - mtd: Fixed breaking list in __mtd_del_partition. - [x86] gpu: Reserve stolen memory for first integrated Intel GPU - rtc: cmos: take rtc_lock while reading from CMOS - media: v4l2-ioctl.c: readbuffers depends on V4L2_CAP_READWRITE - media: flexcop-usb: fix control-message timeouts - media: mceusb: fix control-message timeouts - media: em28xx: fix control-message timeouts - media: cpia2: fix control-message timeouts - media: s2255: fix control-message timeouts - media: dib0700: fix undefined behavior in tuner shutdown - media: redrat3: fix control-message timeouts - media: pvrusb2: fix control-message timeouts - media: stk1160: fix control-message timeouts - [armhf] media: cec-pin: fix interrupt en/disable handling - [x86] can: softing_cs: softingcs_probe(): fix memleak on registration failure - iio: adc: ti-adc081c: Partial revert of removal of ACPI IDs - [arm64,armhf] gpu: host1x: Add back arm_iommu_detach_device() - dma_fence_array: Fix PENDING_ERROR leak in dma_fence_array_signaled() - PCI: Add function 1 DMA alias quirk for Marvell 88SE9125 SATA controller - mm_zone: add function to check if managed dma zone exists - [arm64] dma/pool: create dma atomic pool only if dma zone has managed pages - mm/page_alloc.c: do not warn allocation failure on zone DMA if no managed pages - shmem: fix a race between shmem_unused_huge_shrink and shmem_evict_inode - drm/ttm: Put BO in its memory manager's lru list - Bluetooth: L2CAP: Fix not initializing sk_peer_pid - [armhf] drm/bridge: display-connector: fix an uninitialized pointer in probe() - drm: fix null-ptr-deref in drm_dev_init_release() - [arm64,armhf] drm/rockchip: dsi: Fix unbalanced clock on probe error - [arm64,armhf] drm/rockchip: dsi: Hold pm-runtime across bind/unbind - [arm64,armhf] drm/rockchip: dsi: Disable PLL clock on bind error - [arm64,armhf] drm/rockchip: dsi: Reconfigure hardware on resume() - Bluetooth: cmtp: fix possible panic when cmtp_init_sockets() fails - [arm*] clk: bcm-2835: Pick the closest clock rate - [arm*] clk: bcm-2835: Remove rounding up the dividers - [arm*] drm/vc4: hdmi: Set a default HSM rate - [arm64] wcn36xx: ensure pairing of init_scan/finish_scan and start_scan/end_scan - [arm64] wcn36xx: Indicate beacon not connection loss on MISSED_BEACON_IND - [arm64] wcn36xx: Fix DMA channel enable/disable cycle - [arm64] wcn36xx: Release DMA channel descriptor allocations - [arm64] wcn36xx: Put DXE block into reset before freeing memory - [arm64] wcn36xx: populate band before determining rate on RX - [arm64] wcn36xx: fix RX BD rate mapping for 5GHz legacy rates - ath11k: Send PPDU_STATS_CFG with proper pdev mask to firmware - media: videobuf2: Fix the size printk format - [armhf] media: aspeed: fix mode-detect always time out at 2nd run - media: em28xx: fix memory leak in em28xx_init_dev - [armhf] media: aspeed: Update signal status immediately to ensure sane hw state - fs: dlm: use sk->sk_socket instead of con->sock - fs: dlm: don't call kernel_getpeername() in error_report() - Bluetooth: stop proccessing malicious adv data - ath11k: Fix ETSI regd with weather radar overlap - ath11k: clear the keys properly via DISABLE_KEY - ath11k: reset RSN/WPA present state for open BSS - [arm64] tee: fix put order in teedev_close_context() - [x86] drm/vboxvideo: fix a NULL vs IS_ERR() check - media: dmxdev: fix UAF when dvb_register_device() fails - [arm64] crypto: qce - fix uaf on qce_ahash_register_one - [arm64] crypto: qce - fix uaf on qce_skcipher_register_one - [armhf] dts: stm32: fix dtbs_check warning on ili9341 dts binding on stm32f429 disco - [x86] crypto: qat - fix spelling mistake: "messge" -> "message" - [x86] crypto: qat - remove unnecessary collision prevention step in PFVF - [x86] crypto: qat - make pfvf send message direction agnostic - [x86] crypto: qat - fix undetected PFVF timeout in ACK loop - ath11k: Use host CE parameters for CE interrupts configuration - [armhf] media: imx-pxp: Initialize the spinlock prior to using it - [armhf] media: coda: fix CODA960 JPEG encoder buffer overflow - [arm64] media: venus: pm_helpers: Control core power domain manually - [arm64] media: venus: core, venc, vdec: Fix probe dependency error - [arm64] media: venus: core: Fix a potential NULL pointer dereference in an error handling path - [arm64] media: venus: core: Fix a resource leak in the error handling path of 'venus_probe()' - [armhf] thermal/drivers/imx: Implement runtime PM support - netfilter: bridge: add support for pppoe filtering - cgroup: Trace event cgroup id fields should be u64 - ACPI: EC: Rework flushing of EC work while suspended to idle - drm/amdgpu: Fix a NULL pointer dereference in amdgpu_connector_lcd_native_mode() - drm/radeon/radeon_kms: Fix a NULL pointer dereference in radeon_driver_open_kms() - [arm*] serial: amba-pl011: do not request memory region twice - floppy: Fix hang in watchdog when disk is ejected - [x86] staging: rtl8192e: return error code from rtllib_softmac_init() - [x86] staging: rtl8192e: rtllib_module: fix error handle case in alloc_rtllib() - sched/fair: Fix detection of per-CPU kthreads waking a task - sched/fair: Fix per-CPU kthread and wakee stacking for asym CPU capacity - bpf: Adjust BTF log size limit. - bpf: Disallow BPF_LOG_KERNEL log level for bpf(BPF_BTF_LOAD) - bpf: Remove config check to enable bpf support for branch records - [arm64] lib: Annotate {clear, copy}_page() as position-independent - [arm64] clear_page() shouldn't use DC ZVA when DCZID_EL0.DZP == 1 - media: dib8000: Fix a memleak in dib8000_init() - media: saa7146: mxb: Fix a NULL pointer dereference in mxb_attach() - media: si2157: Fix "warm" tuner state detection - wireless: iwlwifi: Fix a double free in iwl_txq_dyn_alloc_dma - sched/rt: Try to restart rt period timer when rt runtime exceeded - rcu/exp: Mark current CPU as exp-QS in IPI loop second pass - mwifiex: Fix possible ABBA deadlock - xfrm: fix a small bug in xfrm_sa_len() - [x86] uaccess: Move variable into switch case statement - [armhf] crypto: stm32 - Fix last sparse warning in stm32_cryp_check_ctr_counter - [armhf] crypto: stm32/cryp - fix CTR counter carry - [armhf] crypto: stm32/cryp - fix xts and race condition in crypto_engine requests - [armhf] crypto: stm32/cryp - check early input data - [armhf] crypto: stm32/cryp - fix double pm exit - [armhf] crypto: stm32/cryp - fix lrw chaining mode - [armhf] crypto: stm32/cryp - fix bugs and crash in tests - [armhf] crypto: stm32 - Revert broken pm_runtime_resume_and_get changes - ath11k: Fix deleting uninitialized kernel timer during fragment cache flush - media: dw2102: Fix use after free - media: msi001: fix possible null-ptr-deref in msi001_probe() - [armhf] media: coda/imx-vdoa: Handle dma_set_coherent_mask error codes - ath11k: Fix a NULL pointer dereference in ath11k_mac_op_hw_scan() - [arm64] dts: qcom: c630: Fix soundcard setup - [arm64] drm/msm/dpu: fix safe status debugfs file - [arm64,armhf] drm/tegra: vic: Fix DMA API misuse - xfrm: interface with if_id 0 should return error - xfrm: state and policy should fail if XFRMA_IF_ID 0 - [armel,armhf] 9159/1: decompressor: Avoid UNPREDICTABLE NOP encoding - usb: ftdi-elan: fix memory leak on device disconnect - iwlwifi: mvm: fix 32-bit build in FTM - iwlwifi: mvm: test roc running status bits before removing the sta - [armhf] mmc: meson-mx-sdio: add IRQ check - selinux: fix potential memleak in selinux_add_opt() - Bluetooth: L2CAP: Fix using wrong mode - bpftool: Enable line buffering for stdout - software node: fix wrong node passed to find nargs_prop - Bluetooth: hci_qca: Stop IBS timer during BT OFF - [x86] mce/inject: Avoid out-of-bounds write when setting flags - ACPI: scan: Create platform device for BCM4752 and LNV4752 ACPI nodes - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in __nonstatic_find_io_region() - [x86] pcmcia: rsrc_nonstatic: Fix a NULL pointer dereference in nonstatic_find_mem_region() - netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check() - bpf: Don't promote bogus looking registers after null check. - bpf: Fix SO_RCVBUF/SO_SNDBUF handling in _bpf_setsockopt(). - netfilter: nft_set_pipapo: allocate pcpu scratch maps on clone - ppp: ensure minimum packet size in ppp_write() - Bluetooth: hci_bcm: Check for error irq - Bluetooth: hci_qca: Fix NULL vs IS_ERR_OR_NULL check in qca_serdev_probe - [arm64] usb: dwc3: qcom: Fix NULL vs IS_ERR checking in dwc3_qcom_probe - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_get_str_desc - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_huion_init - HID: hid-uclogic-params: Invalid parameter check in uclogic_params_frame_init_v1_buttonpad - debugfs: lockdown: Allow reading debugfs files that are not world readable - net/mlx5e: Fix page DMA map/unmap attributes - net/mlx5e: Don't block routes with nexthop objects in SW - Revert "net/mlx5e: Block offload of outer header csum for UDP tunnels" - net/mlx5: Set command entry semaphore up once got index free - lib/mpi: Add the return value check of kcalloc() - Bluetooth: L2CAP: uninitialized variables in l2cap_sock_setsockopt() - [arm64,armhf] spi: spi-meson-spifc: Add missing pm_runtime_disable() in meson_spifc_probe - ax25: uninitialized variable in ax25_setsockopt() - netrom: fix api breakage in nr_setsockopt() - regmap: Call regmap_debugfs_exit() prior to _init() - tpm: add request_locality before write TPM_INT_ENABLE - tpm_tis: Fix an error handling path in 'tpm_tis_core_init()' - can: softing: softing_startstop(): fix set but not used variable warning - pcmcia: fix setting of kthread task states - iwlwifi: mvm: Use div_s64 instead of do_div in iwl_mvm_ftm_rtt_smoothing() - net: mcs7830: handle usb read errors properly - ext4: avoid trim error on fs with small groups - ALSA: jack: Add missing rwsem around snd_ctl_remove() calls - ALSA: PCM: Add missing rwsem around snd_ctl_remove() calls - ALSA: hda: Add missing rwsem around snd_ctl_remove() calls - RDMA/bnxt_re: Scan the whole bitmap when checking if "disabling RCFW with pending cmd-bit" - [arm64] RDMA/hns: Validate the pkey index - scsi: pm80xx: Update WARN_ON check in pm8001_mpi_build_cmd() - [arm64] clk: imx8mn: Fix imx8mn_clko1_sels - [powerpc*] prom_init: Fix improper check of prom_getprop() - dt-bindings: thermal: Fix definition of cooling-maps contribution property - [powerpc*] 64s: Convert some cpu_setup() and cpu_restore() functions to C - [powerpc*] perf: MMCR0 control for PMU registers under PMCC=00 - [powerpc*] perf: move perf irq/nmi handling details into traps.c - [powerpc*] irq: Add helper to set regs->softe - [powerpc*] perf: Fix PMU callbacks to clear pending PMI before resetting an overflown PMC - clocksource: Reduce clocksource-skew threshold - clocksource: Avoid accidental unstable marking of clocksources - ALSA: oss: fix compile error when OSS_DEBUG is enabled - ALSA: usb-audio: Drop superfluous '0' in Presonus Studio 1810c's ID - [arm*] binder: fix handling of error during copy - [arm64,armhf] iommu/io-pgtable-arm: Fix table descriptor paddr formatting - scsi: ufs: Fix race conditions related to driver data - RDMA/qedr: Fix reporting max_{send/recv}_wr attrs - PCI/MSI: Fix pci_irq_vector()/pci_irq_get_affinity() - RDMA/core: Let ib_find_gid() continue search even after empty entry - RDMA/cma: Let cma_resolve_ib_dev() continue search even after empty entry - [x86] ASoC: rt5663: Handle device_property_read_u32_array error codes - [amd64] iommu/amd: Remove iommu_init_ga() - [amd64] iommu/amd: Restore GA log/tail pointer on host resume - [x86] ASoC: Intel: catpt: Test dmaengine_submit() result before moving on - iommu/iova: Fix race between FQ timeout and teardown - scsi: block: pm: Always set request queue runtime active in blk_post_runtime_resume() - [powerpc*] xive: Add missing null check after calling kmalloc - RDMA/cxgb4: Set queue pair state when being queried - of: base: Fix phandle argument length mismatch error message - [armhf] dts: omap3-n900: Fix lp5523 for multi color - Bluetooth: Fix debugfs entry leak in hci_register_dev() - fs: dlm: filter user dlm messages for kernel locks - [arm64,armhf] drm/lima: fix warning when CONFIG_DEBUG_SG=y & CONFIG_DMA_API_DEBUG=y - ar5523: Fix null-ptr-deref with unexpected WDCMSG_TARGET_START reply - [arm64,armhf] drm/bridge: dw-hdmi: handle ELD when DRM_BRIDGE_ATTACH_NO_CONNECTOR - drm/nouveau/pmu/gm200-: avoid touching PMU outside of DEVINIT/PREOS/ACR - batman-adv: allow netlink usage in unprivileged containers - ath11k: Fix crash caused by uninitialized TX ring - usb: gadget: f_fs: Use stream_open() for endpoint files - drm: panel-orientation-quirks: Add quirk for the Lenovo Yoga Book X91F/L - HID: apple: Do not reset quirks when the Fn key is not found - media: b2c2: Add missing check in flexcop_pci_isr: - drm/amdgpu/display: set vblank_disable_immediate for DC - [arm64,armhf] tty: serial: imx: disable UCR4_OREN in .stop_rx() instead of .shutdown() - gpiolib: acpi: Do not set the IRQ type if the IRQ is already in use - [armhf] HSI: core: Fix return freed object in hsi_new_client - crypto: jitter - consider 32 LSB for APT - rsi: Fix use-after-free in rsi_rx_done_handler() - rsi: Fix out-of-bounds read in rsi_read_pkt() - ath11k: Avoid NULL ptr access during mgmt tx cleanup - [arm64] media: venus: avoid calling core_clk_setrate() concurrently during concurrent video sessions - [x86] ACPI / x86: Drop PWM2 device on Lenovo Yoga Book from always present table - ACPI: Change acpi_device_always_present() into acpi_device_override_status() - [x86] ACPI / x86: Allow specifying acpi_device_override_status() quirks by path - [x86] ACPI / x86: Add not-present quirk for the PCI0.SDHB.BRC1 device on the GPD win - floppy: Add max size check for user space request - [x86] mm: Flush global TLB when switching to trampoline page-table - media: saa7146: hexium_orion: Fix a NULL pointer dereference in hexium_attach() - media: m920x: don't use stack on USB reads - [x86] thunderbolt: Runtime PM activate both ends of the device link - iwlwifi: mvm: synchronize with FW after multicast commands - iwlwifi: mvm: avoid clearing a just saved session protection id - ath11k: avoid deadlock by change ieee80211_queue_work for regd_update_work - ath10k: Fix tx hanging - net-sysfs: update the queue counts in the unregistration path - net: phy: prefer 1000baseT over 1000baseKX - [armhf] gpio: aspeed: Convert aspeed_gpio.lock to raw_spinlock - ath11k: Avoid false DEADLOCK warning reported by lockdep - [x86] mce: Allow instrumentation during task work queueing - [x86] mce: Mark mce_panic() noinstr - [x86] mce: Mark mce_end() noinstr - [x86] mce: Mark mce_read_aux() noinstr - net: bonding: debug: avoid printing debug logs when bond is not notifying peers - bpf: Do not WARN in bpf_warn_invalid_xdp_action() - HID: quirks: Allow inverting the absolute X/Y values - media: igorplugusb: receiver overflow should be reported - media: saa7146: hexium_gemini: Fix a NULL pointer dereference in hexium_attach() - mmc: core: Fixup storing of OCR for MMC_QUIRK_NONSTD_SDIO - audit: ensure userspace is penalized the same as the kernel when under pressure - [arm64] dts: ls1028a-qds: move rtc node to the correct i2c bus - PM: runtime: Add safety net to supplier device release - cpufreq: Fix initialization of min and max frequency QoS requests - usb: hub: Add delay for SuperSpeed hub resume to let links transit to U0 - ath9k: Fix out-of-bound memcpy in ath9k_hif_usb_rx_stream - rtw88: 8822c: update rx settings to prevent potential hw deadlock - iwlwifi: fix leaks/bad data after failed firmware load - iwlwifi: remove module loading failure message - iwlwifi: mvm: Fix calculation of frame length - iwlwifi: pcie: make sure prph_info is set when treating wakeup IRQ - ath11k: Fix napi related hang - Bluetooth: vhci: Set HCI_QUIRK_VALID_LE_STATES - xfrm: rate limit SA mapping change message to user space - [armhf] drm/etnaviv: consider completed fence seqno in hang check - jffs2: GC deadlock reading a page that is used in jffs2_write_begin() - ACPICA: actypes.h: Expand the ACPI_ACCESS_ definitions - ACPICA: Utilities: Avoid deleting the same object twice in a row - ACPICA: Executer: Fix the REFCLASS_REFOF case in acpi_ex_opcode_1A_0T_1R() - ACPICA: Fix wrong interpretation of PCC address - ACPICA: Hardware: Do not flush CPU cache when entering S4 and S5 - drm/amdgpu: fixup bad vram size on gmc v8 - ACPI: battery: Add the ThinkPad "Not Charging" quirk - btrfs: remove BUG_ON() in find_parent_nodes() - btrfs: remove BUG_ON(!eie) in find_parent_nodes - net: mdio: Demote probed message to debug print - mac80211: allow non-standard VHT MCS-10/11 - dm btree: add a defensive bounds check to insert_at() - dm space map common: add bounds check to sm_ll_lookup_bitmap() - net: phy: marvell: configure RGMII delays for 88E1118 - [arm64] regulator: qcom_smd: Align probe function with rpmh-regulator - [arm64,armhf] serial: pl010: Drop CR register reset on set_termios - serial: core: Keep mctrl register state and cached copy in sync - random: do not throw away excess input to crng_fast_load - [powerpc*] powernv: add missing of_node_put - [powerpc*] btext: add missing of_node_put - [powerpc*] watchdog: Fix missed watchdog reset due to memory ordering race - [x86] i2c: i801: Don't silently correct invalid transfer size - [powerpc*] smp: Move setup_profiling_timer() under CONFIG_PROFILING - [powerpc*] i2c: mpc: Correct I2C reset procedure - [arm64] clk: meson: gxbb: Fix the SDM_EN bit for MPLL0 on GXBB - [powerpc*] KVM: PPC: Book3S: Suppress warnings when allocating too big memory slots - [powerpc*] KVM: PPC: Book3S: Suppress failed alloc warning in H_COPY_TOFROM_GUEST - w1: Misuse of get_user()/put_user() reported by sparse - nvmem: core: set size for sysfs bin file - dm: fix alloc_dax error handling in alloc_dev - scsi: lpfc: Trigger SLI4 firmware dump before doing driver cleanup - ALSA: seq: Set upper limit of processed events - [powerpc*] handle kdump appropriately with crash_kexec_post_notifiers option - [powerpc*] fadump: Fix inaccurate CPU state info in vmcore generated with panic - udf: Fix error handling in udf_new_inode() - [mips64el,mipsel] OCTEON: add put_device() after of_find_device_by_node() - [arm64,armhf] irqchip/gic-v4: Disable redistributors' view of the VPE table at boot time - [x86] i2c: designware-pci: Fix to change data types of hcnt and lcnt parameters - scsi: sr: Don't use GFP_DMA - [arm64] rpmsg: core: Clean up resources on announce_create failure. - [armhf] crypto: stm32/crc32 - Fix kernel BUG triggered in probe() - [arm64] crypto: caam - replace this_cpu_ptr with raw_cpu_ptr - ubifs: Error path in ubifs_remount_rw() seems to wrongly free write buffers - tpm: fix NPE on probe for missing device - xen/gntdev: fix unmap notification order - fuse: Pass correct lend value to filemap_write_and_wait_range() - serial: Fix incorrect rs485 polarity on uart open - cputime, cpuacct: Include guest time in user time in cpuacct.stat - tracing/kprobes: 'nmissed' not showed correctly for kretprobe - iwlwifi: mvm: Increase the scan timeout guard to 30 seconds - [s390x] mm: fix 2KB pgtable release race - device property: Fix fwnode_graph_devcon_match() fwnode leak - [armhf] drm/etnaviv: limit submit sizes - drm/nouveau/kms/nv04: use vzalloc for nv04_display - [arm64,armhf] drm/bridge: analogix_dp: Make PSR-exit block less - [powerpc*] 64s/radix: Fix huge vmap false positive - [arm64] PCI: xgene: Fix IB window setup - PCI: pciehp: Use down_read/write_nested(reset_lock) to fix lockdep errors - [arm*] PCI: pci-bridge-emul: Make expansion ROM Base Address register read-only - [arm*] PCI: pci-bridge-emul: Properly mark reserved PCIe bits in PCI config space - [arm*] PCI: pci-bridge-emul: Fix definitions of reserved bits - [arm*] PCI: pci-bridge-emul: Correctly set PCIe capabilities - [arm*] PCI: pci-bridge-emul: Set PCI_STATUS_CAP_LIST for PCIe device - xfrm: fix policy lookup for ipv6 gre packets - btrfs: fix deadlock between quota enable and other quota operations - btrfs: check the root node for uptodate before returning it - btrfs: respect the max size in the header when activating swap file - ext4: make sure to reset inode lockdep class when quota enabling fails - ext4: make sure quota gets properly shutdown on error - ext4: fix a possible ABBA deadlock due to busy PA - ext4: initialize err_blk before calling __ext4_get_inode_loc - ext4: fix fast commit may miss tracking range for FALLOC_FL_ZERO_RANGE - ext4: set csum seed in tmp inode while migrating to extents - ext4: Fix BUG_ON in ext4_bread when write quota data - ext4: use ext4_ext_remove_space() for fast commit replay delete range - ext4: fast commit may miss tracking unwritten range during ftruncate - ext4: destroy ext4_fc_dentry_cachep kmemcache on module removal - ext4: fix null-ptr-deref in '__ext4_journal_ensure_credits' - ext4: don't use the orphan list when migrating an inode - drm/radeon: fix error handling in radeon_driver_open_kms - of: base: Improve argument length mismatch error - firmware: Update Kconfig help text for Google firmware - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - Documentation: dmaengine: Correctly describe dmatest with channel unset - Documentation: ACPI: Fix data node reference documentation - Documentation: refer to config RANDOMIZE_BASE for kernel address-space randomization - Documentation: fix firewire.rst ABI file path error - Bluetooth: hci_sync: Fix not setting adv set duration - scsi: core: Show SCMD_LAST in text form - [arm64] RDMA/hns: Modify the mapping attribute of doorbell to device - RDMA/rxe: Fix a typo in opcode name - [armhf] dmaengine: stm32-mdma: fix STM32_MDMA_CTBR_TSEL_MASK - Revert "net/mlx5: Add retry mechanism to the command entry index allocation" - block: Fix fsync always failed if once failed - bpftool: Remove inclusion of utilities.mak from Makefiles - xdp: check prog type before updating BPF link - ipv4: update fib_info_cnt under spinlock protection - ipv4: avoid quadratic behavior in netns dismantle - [arm64] net/fsl: xgmac_mdio: Add workaround for erratum A-009885 - [arm64] net/fsl: xgmac_mdio: Fix incorrect iounmap when removing module - f2fs: compress: fix potential deadlock of compress file - f2fs: fix to reserve space for IO align feature - af_unix: annote lockless accesses to unix_tot_inflight & gc_in_progress - clk: Emit a stern warning with writable debugfs enabled - net/smc: Fix hung_task when removing SMC-R devices - virtio_ring: mark ring unused on error - taskstats: Cleanup the use of task->exit_code - inet: frags: annotate races around fqdir->dead and fqdir->high_thresh - netns: add schedule point in ops_exit_list() - xfrm: Don't accidentally set RTO_ONLINK in decode_session4() - gre: Don't accidentally set RTO_ONLINK in gre_fill_metadata_dst() - libcxgb: Don't accidentally set RTO_ONLINK in cxgb_find_route() - perf script: Fix hex dump character output - perf probe: Fix ppc64 'perf probe add events failed' case - devlink: Remove misleading internal_flags from health reporter dump - net: bonding: fix bond_xmit_broadcast return value error bug - net_sched: restore "mpu xxx" handling - [arm64] bcmgenet: add WOL IRQ check - net: sfp: fix high power modules without diagnostic monitoring - [arm64] net: mscc: ocelot: fix using match before it is set - dt-bindings: display: meson-dw-hdmi: add missing sound-name-prefix property - dt-bindings: display: meson-vpu: Add missing amlogic,canvas property - dt-bindings: watchdog: Require samsung,syscon-phandle for Exynos7 - mm/hmm.c: allow VM_MIXEDMAP to work with hmm_range_fault - mtd: nand: bbt: Fix corner case in bad block table handling - ath10k: Fix the MTU size on QCA9377 SDIO https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.95 - bnx2x: Utilize firmware 7.13.21.0 - bnx2x: Invalidate fastpath HSI version for VFs - rcu: Tighten rcu_advance_cbs_nowake() checks - [x86] KVM: x86/mmu: Fix write-protection of PTs mapped by the TDP MMU - select: Fix indefinitely sleeping task in poll_schedule_timeout() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.96 - Bluetooth: refactor malicious adv data check - [arm64] media: venus: core: Drop second v4l2 device unregister - net: sfp: ignore disabled SFP node - net: stmmac: skip only stmmac_ptp_register when resume from suspend - [s390x] module: fix loading modules with a lot of relocations - [s390x] hypfs: include z/VM guests with access control group set - bpf: Guard against accessing NULL pt_regs in bpf_get_task_stack() - [s390x] scsi: zfcp: Fix failed recovery on gone remote port with non-NPIV FCP devices - udf: Restore i_lenAlloc when inode expansion fails (CVE-2022-0617) - udf: Fix NULL ptr deref when converting from inline format (CVE-2022-0617) - efi: runtime: avoid EFIv2 runtime services on Apple x86 machines - tracing: Don't inc err_log entry count if entry allocation fails - ceph: properly put ceph_string reference after async create attempt - ceph: set pool_ns in new inode layout for async creates - fsnotify: fix fsnotify hooks in pseudo filesystems - Revert "KVM: SVM: avoid infinite loop on NPF from bad address" - [x86] perf/x86/intel/uncore: Fix CAS_COUNT_WRITE issue for ICX - [armhf] drm/etnaviv: relax submit size limits - [x86] KVM: x86: Update vCPU's runtime CPUID on write to MSR_IA32_XSS - [arm64] errata: Fix exec handling in erratum 1418040 workaround - netfilter: nft_payload: do not update layer 4 checksum when mangling fragments - serial: 8250: of: Fix mapped region size when using reg-offset property - [armhf] serial: stm32: fix software flow control transfer - tty: n_gsm: fix SW flow control encoding/handling - tty: Add support for Brainboxes UC cards. - usb-storage: Add unusual-devs entry for VL817 USB-SATA bridge - [arm64,armhf] usb: xhci-plat: fix crash when suspend if remote wake enable - [arm64,armhf] usb: common: ulpi: Fix crash in ulpi_match() - usb: gadget: f_sourcesink: Fix isoc transfer for USB_SPEED_SUPER_PLUS - USB: core: Fix hang in usb_kill_urb by adding memory barriers - usb: typec: tcpm: Do not disconnect while receiving VBUS off - jbd2: export jbd2_journal_[grab|put]_journal_head - ocfs2: fix a deadlock when commit trans - sched/membarrier: Fix membarrier-rseq fence command missing from query bitmask - [x86] MCE/AMD: Allow thresholding interface updates after init - i40e: Increase delay to 1 s after global EMP reset - i40e: Fix issue when maximum queues is exceeded - i40e: Fix queues reservation for XDP - i40e: Fix for failed to init adminq while VF reset - i40e: fix unsigned stat widths - scsi: bnx2fc: Flush destroy_work queue before calling bnx2fc_interface_put() - ipv6_tunnel: Rate limit warning messages - net: fix information leakage in /proc/net/ptype - hwmon: (lm90) Mark alert as broken for MAX6646/6647/6649 - hwmon: (lm90) Mark alert as broken for MAX6680 - ping: fix the sk_bound_dev_if match in ping_lookup - ipv4: avoid using shared IP generator for connected sockets - hwmon: (lm90) Reduce maximum conversion rate for G781 - NFSv4: nfs_atomic_open() can race when looking up a non-regular file - net-procfs: show net devices bound packet types - [arm64] drm/msm: Fix wrong size calculation - [arm64] drm/msm/dsi: Fix missing put_device() call in dsi_get_phy - [arm64] drm/msm/dsi: invalid parameter check in msm_dsi_phy_enable - ipv6: annotate accesses to fn->fn_sernum - NFS: Ensure the server has an up to date ctime before hardlinking - NFS: Ensure the server has an up to date ctime before renaming - [powerpc*] powerpc64/bpf: Limit 'ldbrx' to processors compliant with ISA v2.06 - netfilter: conntrack: don't increment invalid counter on NF_REPEAT - kernel: delete repeated words in comments - perf: Fix perf_event_read_local() time - sched/pelt: Relax the sync of util_sum with util_avg - net: phy: broadcom: hook up soft_reset for BCM54616S - phylib: fix potential use-after-free - rxrpc: Adjust retransmission backoff - [arm64] efi/libstub: arm64: Fix image check alignment at entry - hwmon: (lm90) Mark alert as broken for MAX6654 - [powerpc*] perf: Fix power_pmu_disable to call clear_pmi_irq_pending only if PMI is pending - net: ipv4: Move ip_options_fragment() out of loop - net: ipv4: Fix the warning for dereference - ipv4: fix ip option filtering for locally generated fragments - [x86] video: hyperv_fb: Fix validation of screen resolution - [arm64] drm/msm/hdmi: Fix missing put_device() call in msm_hdmi_get_phy - [arm64] drm/msm/dpu: invalid parameter check in dpu_setup_dspp_pcc - [armhf] net: cpsw: Properly initialise struct page_pool_params - [arm64] net: hns3: handle empty unknown interrupt for VF - Revert "ipv6: Honor all IPv6 PIO Valid Lifetime values" - net: bridge: vlan: fix single net device option dumping - ipv4: raw: lock the socket in raw_bind() - ipv4: tcp: send zero IPID in SYNACK messages - ipv4: remove sparse error in ip_neigh_gw4() - net: bridge: vlan: fix memory leak in __allowed_ingress - dt-bindings: can: tcan4x5x: fix mram-cfg RX FIFO config - fsnotify: invalidate dcache before IN_DELETE event - block: Fix wrong offset in bio_truncate() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.97 - PCI: pciehp: Fix infinite loop in IRQ handler upon power fault - [x86] KVM: x86: Forcibly leave nested virt when SMM state is toggled - psi: Fix uaf issue when psi trigger is destroyed while being polled - [x86] mce: Add Xeon Sapphire Rapids to list of CPUs that support PPIN - [x86] cpu: Add Xeon Icelake-D to list of CPUs that support PPIN - [arm*] drm/vc4: hdmi: Make sure the device is powered with CEC - cgroup-v1: Require capabilities to set release_agent (CVE-2022-0492) - net/mlx5e: Fix handling of wrong devices during bond netevent - net/mlx5: Use del_timer_sync in fw reset flow of halting poll - net/mlx5: E-Switch, Fix uninitialized variable modact - ipheth: fix EOVERFLOW in ipheth_rcvbulk_callback - [amd64,arm64] net: amd-xgbe: ensure to reset the tx_timer_active flag - [amd64,arm64] net: amd-xgbe: Fix skb data length underflow - fanotify: Fix stale file descriptor in copy_event_to_user() - net: sched: fix use-after-free in tc_new_tfilter() - rtnetlink: make sure to refresh master_dev/m_ops in __rtnl_newlink() - cpuset: Fix the bug that subpart_cpus updated wrongly in update_cpumask() - af_packet: fix data-race in packet_setsockopt / packet_setsockopt - tcp: add missing tcp_skb_can_collapse() test in tcp_shift_skb_data() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.98 - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" - [arm*] Revert "drm/vc4: hdmi: Make sure the device is powered with CEC" again https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.99 - selinux: fix double free of cond_list on error paths - audit: improve audit queue handling when "audit=1" on cmdline - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw() - ASoC: ops: Reject out of bounds values in snd_soc_put_volsw_sx() - ASoC: ops: Reject out of bounds values in snd_soc_put_xr_sx() - ALSA: usb-audio: Correct quirk for VF0770 - ALSA: hda: Fix UAF of leds class devs at unbinding - ALSA: hda: realtek: Fix race at concurrent COEF updates - ALSA: hda/realtek: Add quirk for ASUS GU603 - ALSA: hda/realtek: Add missing fixup-model entry for Gigabyte X570 ALC1220 quirks - ALSA: hda/realtek: Fix silent output on Gigabyte X570S Aorus Master (newer chipset) - ALSA: hda/realtek: Fix silent output on Gigabyte X570 Aorus Xtreme after reboot from Windows - btrfs: fix deadlock between quota disable and qgroup rescan worker - drm/nouveau: fix off by one in BIOS boundary checking - mm/pgtable: define pte_index so that preprocessor could recognize it - block: bio-integrity: Advance seed correctly for larger interval sizes - dma-buf: heaps: Fix potential spectre v1 gadget - [amd64] IB/hfi1: Fix AIP early init panic - memcg: charge fs_context and legacy_fs_context - RDMA/cma: Use correct address when leaving multicast group - RDMA/ucma: Protect mc during concurrent multicast leaves - [amd64] IB/rdmavt: Validate remote_addr during loopback atomic tests - RDMA/mlx4: Don't continue event handler after memory allocation failure - [amd64] iommu/vt-d: Fix potential memory leak in intel_setup_irq_remapping() - [amd64] iommu/amd: Fix loop timeout issue in iommu_ga_log_enable() - [arm64,armhf] spi: meson-spicc: add IRQ check in meson_spicc_probe - net: ieee802154: hwsim: Ensure proper channel selection at probe time - net: ieee802154: Return meaningful error codes from the netlink helpers - net: macsec: Fix offload support for NETDEV_UNREGISTER event - net: macsec: Verify that send_sci is on when setting Tx sci explicitly - net: stmmac: dump gmac4 DMA registers correctly - net: stmmac: ensure PTP time register reads are consistent - [x86] drm/i915/overlay: Prevent divide by zero bugs in scaling - [x86] pinctrl: intel: Fix a glitch when updating IRQ flags on a preconfigured line - [x86] pinctrl: intel: fix unexpected interrupt - [arm*] pinctrl: bcm2835: Fix a few error paths - scsi: bnx2fc: Make bnx2fc_recv_frame() mp safe - nfsd: nfsd4_setclientid_confirm mistakenly expires confirmed client. - [amd64,arm64] gve: fix the wrong AdminQ buffer queue index check - bpf: Use VM_MAP instead of VM_ALLOC for ringbuf - rtc: cmos: Evaluate century appropriate - Revert "fbcon: Disable accelerated scrolling" - fbcon: Add option to enable legacy hardware acceleration - perf stat: Fix display of grouped aliased events - [x86] perf/x86/intel/pt: Fix crash with stop filters in single-range mode - [x86] perf: Default set FREEZE_ON_SMI for all - [arm64] EDAC/xgene: Fix deferred probing - ext4: prevent used blocks from being allocated during fast commit replay - ext4: modify the logic of ext4_mb_new_blocks_simple - ext4: fix error handling in ext4_restore_inline_data() - ext4: fix error handling in ext4_fc_record_modified_inode() - ext4: fix incorrect type issue during replay_del_range - cgroup/cpuset: Fix "suspicious RCU usage" lockdep warning https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.100 - moxart: fix potential use-after-free on remove path (CVE-2022-0487) - crypto: api - Move cryptomgr soft dependency into algapi https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.101 - integrity: check the return value of audit_log_start() - [arm64] mmc: sdhci-of-esdhc: Check for error num after setting mask - can: isotp: fix potential CAN frame reception race in isotp_rcv() - net: phy: marvell: Fix RGMII Tx/Rx delays setting in 88e1121-compatible PHYs - net: phy: marvell: Fix MDI-x polarity setting in 88e1118-compatible PHYs - NFS: Fix initialisation of nfs_client cl_flags field - NFSD: Clamp WRITE offsets - NFSD: Fix offset type in I/O trace points - drm/amdgpu: Set a suitable dev_info.gart_page_size (Closes: #990279) - NFS: change nfs_access_get_cached to only report the mask - NFSv4 only print the label when its queried - nfs: nfs4clinet: check the return value of kstrdup() - NFSv4.1: Fix uninitialised variable in devicenotify - NFSv4 remove zero number of fs_locations entries error check - NFSv4 expose nfs_parse_server_name function - NFSv4 handle port presence in fs_location server string - [x86] perf: Avoid warning for Arch LBR without XSAVE - drm: panel-orientation-quirks: Add quirk for the 1Netbook OneXPlayer - net: sched: Clarify error message when qdisc kind is unknown - [powerpc*] fixmap: Fix VM debug warning on unmap - scsi: target: iscsi: Make sure the np under each tpg is unique - scsi: qedf: Add stag_work to all the vports - scsi: qedf: Fix refcount issue when LOGO is received during TMF - scsi: pm8001: Fix bogus FW crash for maxcpus=1 - scsi: ufs: Treat link loss as fatal error - scsi: myrs: Fix crash in error case - PM: hibernate: Remove register_nosave_region_late() - [arm*] usb: dwc2: gadget: don't try to disable ep0 in dwc2_hsotg_suspend - perf: Always wake the parent event - nvme-pci: add the IGNORE_DEV_SUBNQN quirk for Intel P4500/P4600 SSDs - [arm64,armhf] net: stmmac: dwmac-sun8i: use return val of readl_poll_timeout() - KVM: eventfd: Fix false positive RCU usage warning - [x86] KVM: nVMX: eVMCS: Filter out VM_EXIT_SAVE_VMX_PREEMPTION_TIMER - [x86] KVM: nVMX: Also filter MSR_IA32_VMX_TRUE_PINBASED_CTLS when eVMCS - [x86] KVM: SVM: Don't kill SEV guest if SMAP erratum triggers in usermode - [x86] KVM: VMX: Set vmcs.PENDING_DBG.BS on #DB in STI/MOVSS blocking shadow - nvme-tcp: fix bogus request completion when failing to send AER - [arm64] ACPI/IORT: Check node revision for PMCG resources - PM: s2idle: ACPI: Fix wakeup interrupts handling - [arm64,armhf] drm/rockchip: vop: Correct RK3399 VOP register fields - [armhf] ARM: dts: Fix timer regression for beagleboard revision c - usb: f_fs: Fix use-after-free for epfile - [arm*] drm/vc4: hdmi: Allow DBLCLK modes even if horz timing is odd. - netfilter: ctnetlink: disable helper autoassign - ixgbevf: Require large buffers for build_skb on 82599VF - [arm64,armhf] drm/panel: simple: Assign data from panel_dpi_probe() correctly - ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE - bonding: pair enable_port with slave_arr_updates - [arm64,armhf] net: dsa: mv88e6xxx: don't use devres for mdiobus - [armhf] net: dsa: bcm_sf2: don't use devres for mdiobus - [arm64] net: dsa: felix: don't use devres for mdiobus - ipmr,ip6mr: acquire RTNL before calling ip[6]mr_free_table() on failure path - nfp: flower: fix ida_idx not being released - net: do not keep the dst cache when uncloning an skb dst and its metadata - net: fix a memleak when uncloning an skb dst and its metadata - veth: fix races around rq->rx_notify_masked - [armhf] net: mdio: aspeed: Add missing MODULE_DEVICE_TABLE - tipc: rate limit warning for received illegal binding update - [amd64,arm64] net: amd-xgbe: disable interrupts during pci removal - [arm64] dpaa2-eth: unregister the netdev before disconnecting from the PHY - ice: fix an error code in ice_cfg_phy_fec() - ice: fix IPIP and SIT TSO offload - [arm64] net: mscc: ocelot: fix mutex lock error during ethtool stats read - [arm64,armhf] net: dsa: mv88e6xxx: fix use-after-free in mv88e6xxx_mdios_unregister - vt_ioctl: fix array_index_nospec in vt_setactivate - vt_ioctl: add array_index_nospec to VT_ACTIVATE - n_tty: wake up poll(POLLRDNORM) on receiving data - eeprom: ee1004: limit i2c reads to I2C_SMBUS_BLOCK_MAX - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm*] Revert "usb: dwc2: drd: fix soft connect when gadget is unconfigured" - net: usb: ax88179_178a: Fix out-of-bounds accesses in RX fixup - [arm64,armhf] usb: ulpi: Move of_node_put to ulpi_dev_release - [arm64,armhf] usb: ulpi: Call of_node_put correctly - [arm64,armhf] usb: dwc3: gadget: Prevent core from processing stale TRBs - usb: gadget: f_uac2: Define specific wTerminalType - USB: serial: ftdi_sio: add support for Brainboxes US-159/235/320 - USB: serial: option: add ZTE MF286D modem - USB: serial: ch341: add support for GW Instek USB2.0-Serial devices - USB: serial: cp210x: add NCR Retail IO box id - USB: serial: cp210x: add CPI Bulk Coin Recycler id - speakup-dectlk: Restore pitch setting - [x86] hwmon: (dell-smm) Speed up setting of fan speed - can: isotp: fix error path in isotp_sendmsg() to unlock wait queue - scsi: lpfc: Remove NVMe support if kernel has NVME_FC disabled - scsi: lpfc: Reduce log messages seen after firmware download - perf: Fix list corruption in perf_cgroup_switch() - iommu: Fix potential use-after-free during probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.102 - drm/nouveau/pmu/gm200-: use alternate falcon reset sequence - mm: memcg: synchronize objcg lists with a dedicated spinlock - rcu: Do not report strict GPs for outgoing CPUs - fget: clarify and improve __fget_files() implementation - fs/proc: task_mmu.c: don't read mapcount for migration entry - can: isotp: prevent race between isotp_bind() and isotp_setsockopt() - can: isotp: add SF_BROADCAST support for functional addressing - scsi: lpfc: Fix mailbox command failure during driver initialization - HID:Add support for UGTABLET WP5540 - [x86] Revert "svm: Add warning message for AVIC IPI invalid target" - mmc: block: fix read single on recovery logic - mm: don't try to NUMA-migrate COW pages that have other uses - [amd64] PCI: hv: Fix NUMA node assignment when kernel boots with custom NUMA topology - btrfs: send: in case of IO error log it - net: ieee802154: at86rf230: Stop leaking skb's - ax25: improve the incomplete fix to avoid UAF and NPD bugs - vfs: make freeze_super abort when sync_filesystem returns error - quota: make dquot_quota_sync return errors from ->sync_fs - scsi: pm8001: Fix use-after-free for aborted TMF sas_task - scsi: pm8001: Fix use-after-free for aborted SSP/STP sas_task - nvme: fix a possible use-after-free in controller reset during load - nvme-tcp: fix possible use-after-free in transport error_recovery work - nvme-rdma: fix possible use-after-free in transport error_recovery work - drm/amdgpu: fix logic inversion in check - [amd64] x86/Xen: streamline (and fix) PV CPU enumeration - Revert "module, async: async_synchronize_full() on module init iff async is used" - random: wake up /dev/random writers after zap - iwlwifi: fix use-after-free - drm/radeon: Fix backlight control on iMac 12,1 - [x86] drm/i915/opregion: check port number bounds for SWSCI display power state - vsock: remove vsock from connected table when connect is interrupted by a signal - [x86] drm/i915/gvt: Make DRM_I915_GVT depend on X86 - iwlwifi: pcie: fix locking when "HW not ready" - iwlwifi: pcie: gen2: fix locking when "HW not ready" - netfilter: nft_synproxy: unregister hooks on init error path - ipv6: per-netns exclusive flowlabel checks - net: dsa: lantiq_gswip: fix use after free in gswip_remove() - ping: fix the dif and sdif check in ping_lookup - bonding: force carrier update when releasing slave - drop_monitor: fix data-race in dropmon_net_event / trace_napi_poll_hit - net_sched: add __rcu annotation to netdev->qdisc - bonding: fix data-races around agg_select_timer - libsubcmd: Fix use-after-free for realloc(..., 0) - [arm64] dpaa2-eth: Initialize mutex used in one step timestamping path - ALSA: hda/realtek: Add quirk for Legion Y9000X 2019 - ALSA: hda/realtek: Fix deadlock by COEF mutex - ALSA: hda: Fix regression on forced probe mask option - ALSA: hda: Fix missing codec probe on Shenker Dock 15 - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw() - ASoC: ops: Fix stereo change notifications in snd_soc_put_volsw_range() - [powerpc*[ lib/sstep: fix 'ptesync' build error - [armhf] mtd: rawnand: gpmi: don't leak PM reference in error path - [x86] KVM: SVM: Never reject emulation due to SMAP errata for !SEV guests (CVE-2020-36310) - block/wbt: fix negative inflight counter when remove scsi device - NFS: LOOKUP_DIRECTORY is also ok with symlinks - NFS: Do not report writeback errors in nfs_getattr() - tty: n_tty: do not look ahead for EOL character past the end of the buffer - [x86] Drivers: hv: vmbus: Fix memory leak in vmbus_add_channel_kobj - [x86] KVM: x86/pmu: Refactoring find_arch_event() to pmc_perf_hw_id() - [x86] KVM: x86/pmu: Don't truncate the PerfEvtSeln MSR when creating a perf event - [x86] KVM: x86/pmu: Use AMD64_RAW_EVENT_MASK for PERF_TYPE_RAW - NFS: Don't set NFS_INO_INVALID_XATTR if there is no xattr cache - [armhf] OMAP2+: hwmod: Add of_node_put() before break - [armhf] OMAP2+: adjust the location of put_device() call in omapdss_init_of - netfilter: conntrack: don't refresh sctp entries in closed state - kconfig: let 'shell' return enough output for deep path names - ata: libata-core: Disable TRIM on M88V29 - [armhf] soc: aspeed: lpc-ctrl: Block error printing on probe defer cases - xprtrdma: fix pointer derefs in error cases of rpcrdma_ep_create - [arm64,armhf] drm/rockchip: dw_hdmi: Do not leave clock enabled in error case - tracing: Fix tp_printk option related with tp_printk_stop_on_boot - net: usb: qmi_wwan: Add support for Dell DW5829e - [arm64] net: macb: Align the dma and coherent dma masks - kconfig: fix failing to generate auto.conf - scsi: lpfc: Fix pt2pt NVMe PRLI reject LOGO loop - EDAC: Fix calculation of returned address and next offset in edac_align_ptr() - net: sched: limit TC_ACT_REPEAT loops - [armhf] dmaengine: stm32-dmamux: Fix PM disable depth imbalance in stm32_dmamux_probe - copy_process(): Move fd_install() out of sighand->siglock critical section - [arm*] i2c: brcmstb: fix support for DSL and CM variants https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.103 - cgroup/cpuset: Fix a race between cpuset_attach() and cpu hotplug - btrfs: tree-checker: check item_size for inode_item - btrfs: tree-checker: check item_size for dev_item - vhost/vsock: don't check owner in vhost_vsock_stop() while releasing - [x86] KVM: x86/mmu: make apf token non-zero to fix bug - drm/amdgpu: disable MMHUB PG for Picasso - [x86] drm/i915: Correctly populate use_sagv_wm for all pipes - sr9700: sanity check for packet length - USB: zaurus: support another broken Zaurus - CDC-NCM: avoid overflow in sanity checking - netfilter: nf_tables_offload: incorrect flow offload action array size (CVE-2022-25636) - [x86] fpu: Correct pkru/xstate inconsistency - [arm64] tee: export teedev_open() and teedev_close_context() - [arm64] optee: use driver internal tee_context for some rpc - ping: remove pr_err from ping_lookup - perf data: Fix double free in perf_session__delete() - bnx2x: fix driver load from initrd - bnxt_en: Fix active FEC reporting to ethtool - hwmon: Handle failure to register sensor with thermal zone correctly - bpf: Do not try bpf_msg_push_data with len 0 - bpf: Add schedule points in batch ops - io_uring: add a schedule point in io_add_buffers() - net: __pskb_pull_tail() & pskb_carve_frag_list() drop_monitor friends - tipc: Fix end of loop tests for list_for_each_entry() - gso: do not skip outer ip header in case of ipip and net_failover - openvswitch: Fix setting ipv6 fields causing hw csum failure - drm/edid: Always set RGB444 - net/mlx5e: Fix wrong return value on ioctl EEPROM query failure - net/sched: act_ct: Fix flow table lookup after ct clear or switching zones - net: Force inlining of checksum functions in net/checksum.h - nfp: flower: Fix a potential leak in nfp_tunnel_add_shared_mac() - netfilter: nf_tables: fix memory leak during stateful obj update - net/smc: Use a mutex for locking "struct smc_pnettable" - udp_tunnel: Fix end of loop test in udp_tunnel_nic_unregister() - net/mlx5: Fix possible deadlock on rule deletion - net/mlx5: Fix wrong limitation of metadata match on ecpf - net/mlx5e: kTLS, Use CHECKSUM_UNNECESSARY for device-offloaded packets - regmap-irq: Update interrupt clear register for proper reset - configfs: fix a race in configfs_{,un}register_subsystem() - RDMA/ib_srp: Fix a deadlock - tracing: Have traceon and traceoff trigger honor the instance - iio: adc: ad7124: fix mask used for setting AIN_BUFP & AIN_BUFM bits - iio: imu: st_lsm6dsx: wait for settling time in st_lsm6dsx_read_oneshot - iio: Fix error handling for PM - ata: pata_hpt37x: disable primary channel on HPT371 - Revert "USB: serial: ch341: add new Product ID for CH341A" - usb: gadget: rndis: add spinlock for rndis response list - tracefs: Set the group ownership in apply_options() not parse_options() - USB: serial: option: add support for DW5829e - USB: serial: option: add Telit LE910R1 compositions - [arm*] usb: dwc2: drd: fix soft connect when gadget is unconfigured - [arm64] usb: dwc3: pci: Fix Bay Trail phy GPIO mappings - [arm64,armhf] usb: dwc3: gadget: Let the interrupt handler disable bottom halves. - xhci: re-initialize the HC during resume if HCE was set - xhci: Prevent futile URB re-submissions due to incorrect return value. - driver core: Free DMA range map when device is released - RDMA/cma: Do not change route.addr.src_addr outside state checks - [x86] thermal: int340x: fix memory leak in int3400_notify() - tty: n_gsm: fix encoding of control signal octet bit DV - tty: n_gsm: fix proper link termination after failed open - tty: n_gsm: fix NULL pointer access due to DLCI release - tty: n_gsm: fix wrong tty control line for flow control - tty: n_gsm: fix deadlock in gsmtty_open() - memblock: use kfree() to release kmalloced memblock regions . [ Salvatore Bonaccorso ] * Refresh "Makefile: Do not check for libelf when building OOT module" * Bump ABI to 12 * Refresh "firmware: Remove redundant log messages from drivers" * [rt] Refresh "locking/rtmutex: add sleeping lock implementation" * [rt] Refresh "cpuset: Convert callback_lock to raw_spinlock_t" * [rt] Update to 5.10.100-rt62 * Mitigate Spectre v2-type Branch History Buffer attacks (CVE-2022-0001, CVE-2022-0002) - [x86] bugs: Unconditionally allow spectre_v2=retpoline,amd - [x86] speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE - [x86] speculation: Add eIBRS + Retpoline options - Documentation/hw-vuln: Update spectre doc - [x86] speculation: Include unprivileged eBPF status in Spectre v2 mitigation reporting - [x86] speculation: Use generic retpoline by default on AMD - [x86] speculation: Update link to AMD speculation whitepaper - [x86] speculation: Warn about Spectre v2 LFENCE mitigation - [x86] speculation: Warn about eIBRS + LFENCE + Unprivileged eBPF + SMT linux-signed-i386 (5.10.103+1~bpo10+1) buster-backports; urgency=high . * Sign kernel from linux 5.10.103-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.12 linux-signed-i386 (5.10.92+2) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-2 . * lib/iov_iter: initialize "flags" in new pipe_buffer * [x86] mwifiex: Fix skb_over_panic in mwifiex_usb_recv() (CVE-2021-43976) * [x86] drm/i915: Flush TLBs before releasing backing store (CVE-2022-0330) * [x86] drm/vmwgfx: Fix stale file descriptors on failed usercopy (CVE-2022-22942) * NFSv4: Handle case where the lookup of a directory fails (CVE-2022-24448) * yam: fix a memory leak in yam_siocdevprivate() (CVE-2022-24959) * tipc: improve size validations for received domain records (CVE-2022-0435) * [s390x] KVM: s390: Return error on SIDA memop on normal guest (CVE-2022-0516) * USB: gadget: validate interface OS descriptor requests (CVE-2022-25258) * usb: gadget: rndis: check size of RNDIS_MSG_SET command (CVE-2022-25375) linux-signed-i386 (5.10.92+1) bullseye-security; urgency=high . * Sign kernel from linux 5.10.92-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.85 - usb: gadget: uvc: fix multiple opens - gcc-plugins: simplify GCC plugin-dev capability test - gcc-plugins: fix gcc 11 indigestion with plugins... - HID: quirks: Add quirk for the Microsoft Surface 3 type-cover - HID: add hid_is_usb() function to make it simpler for USB detection - HID: bigbenff: prevent null pointer dereference - HID: wacom: fix problems when device is not a valid USB device - HID: check for valid USB device for many HID drivers - [amd64] nft_set_pipapo: Fix bucket load in AVX2 lookup routine for six 8-bit groups - [amd64] IB/hfi1: Insure use of smp_processor_id() is preempt disabled - [amd64] IB/hfi1: Fix early init panic - [amd64] IB/hfi1: Fix leak of rcvhdrtail_dummy_kvaddr - can: kvaser_usb: get CAN clock frequency from device - [x86] can: sja1000: fix use after free in ems_pcmcia_add_card() - drm/amdgpu: move iommu_resume before ip init/resume - drm/amdgpu: init iommu after amdkfd device init - nfc: fix potential NULL pointer deref in nfc_genl_dump_ses_done - vrf: don't run conntrack on vrf with !dflt qdisc - bpf, x86: Fix "no previous prototype" warning - bpf: Fix the off-by-two error in range markings - ice: ignore dropped packets during init - bonding: make tx_rebalance_counter an atomic - nfp: Fix memory leak in nfp_cpp_area_cache_add() - seg6: fix the iif in the IPv6 socket control block - udp: using datalen to cap max gso segments - netfilter: conntrack: annotate data-races around ct->timeout - iavf: restore MSI state on reset - iavf: Fix reporting when setting descriptor count - [amd64] IB/hfi1: Correct guard on eager buffer deallocation - devlink: fix netns refcount leak in devlink_nl_cmd_reload() - net/sched: fq_pie: prevent dismantle issue - [x86] KVM: x86: Wait for IPIs to be delivered when handling Hyper-V TLB flush hypercall - mm: bdi: initialize bdi_min_ratio when bdi is unregistered - ALSA: hda/realtek - Add headset Mic support for Lenovo ALC897 platform - ALSA: hda/realtek: Fix quirk for TongFang PHxTxX1 - ALSA: pcm: oss: Fix negative period/buffer sizes - ALSA: pcm: oss: Limit the period size to 16MB - ALSA: pcm: oss: Handle missing errors in snd_pcm_oss_change_params*() - scsi: qla2xxx: Format log strings only if needed - btrfs: clear extent buffer uptodate when we fail to write it - btrfs: replace the BUG_ON in btrfs_del_root_ref with proper error handling - md: fix update super 1.0 on rdev size change - nfsd: fix use-after-free due to delegation race (Closes: #988044) - nfsd: Fix nsfd startup race (again) - tracefs: Have new files inherit the ownership of their parent - [arm64] clk: qcom: regmap-mux: fix parent clock lookup - drm/syncobj: Deal with signalled fences in drm_syncobj_find_fence. - [i386] can: pch_can: pch_can_rx_normal: fix use after free - libata: add horkage for ASMedia 1092 - wait: add wake_up_pollfree() - binder: use wake_up_pollfree() - signalfd: use wake_up_pollfree() - aio: keep poll requests on waitqueue until completed - aio: fix use-after-free due to missing POLLFREE handling - [arm64,armhf] net: mvpp2: fix XDP rx queues registering - tracefs: Set all files to the same group ownership as the mount option - block: fix ioprio_get(IOPRIO_WHO_PGRP) vs setuid(2) - scsi: pm80xx: Do not call scsi_remove_host() in pm8001_alloc() - scsi: scsi_debug: Fix buffer size of REPORT ZONES command - qede: validate non LSO skb length - PM: runtime: Fix pm_runtime_active() kerneldoc comment - ASoC: rt5682: Fix crash due to out of scope stack vars - [arm64] RDMA/hns: Do not halt commands during reset until later - [arm64] RDMA/hns: Do not destroy QP resources in the hw resetting phase - i40e: Fix failed opcode appearing if handling messages from VF - i40e: Fix pre-set max number of queues for VF - i40e: Fix NULL pointer dereference in i40e_dbg_dump_desc - [arm64] Revert "PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge" - Documentation/locking/locktypes: Update migrate_disable() bits. - dt-bindings: net: Reintroduce PHY no lane swap binding - net: cdc_ncm: Allow for dwNtbOutMaxSize to be unset or zero - [arm64,armhf] net: fec: only clear interrupt of handling queue in fec_enet_rx_queue() - net, neigh: clear whole pneigh_entry at alloc time - net/qla3xxx: fix an error code in ql_adapter_up() - USB: gadget: detect too-big endpoint 0 requests (CVE-2021-39685) - USB: gadget: zero allocate endpoint 0 buffers (CVE-2021-39685) - usb: core: config: fix validation of wMaxPacketValue entries - xhci: Remove CONFIG_USB_DEFAULT_PERSIST to prevent xHCI from runtime suspending - usb: core: config: using bit mask instead of individual bits - xhci: avoid race between disable slot command and host runtime suspend - iio: gyro: adxrs290: fix data signedness - iio: trigger: Fix reference counting - iio: stk3310: Don't return error code in interrupt handler - iio: mma8452: Fix trigger reference couting - iio: ltr501: Don't return error code in trigger handler - iio: kxsd9: Don't return error code in trigger handler - iio: itg3200: Call iio_trigger_notify_done() on error - iio: adc: axp20x_adc: fix charging current reporting on AXP22x - iio: ad7768-1: Call iio_trigger_notify_done() on error - iio: accel: kxcjk-1013: Fix possible memory leak in probe and remove - [armhf] irqchip/aspeed-scu: Replace update_bits with write_bits. - [armhf] irqchip/armada-370-xp: Fix return value of armada_370_xp_msi_alloc() - [armhf] irqchip/armada-370-xp: Fix support for Multi-MSI interrupts - [arm64,armhf] irqchip/irq-gic-v3-its.c: Force synchronisation when issuing INVALL - kbuild: simplify GCC_PLUGINS enablement in dummy-tools/gcc - doc: gcc-plugins: update gcc-plugins.rst - MAINTAINERS: adjust GCC PLUGINS after gcc-plugin.sh removal - Documentation/Kbuild: Remove references to gcc-plugin.sh https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.86 https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.87 - nfc: fix segfault in nfc_genl_dump_devices_done - [arm64] drm/msm/dsi: set default num_data_lanes - [arm64] KVM: arm64: Save PSTATE early on exit - [arm64] Revert "tty: serial: fsl_lpuart: drop earlycon entry for i.MX8QXP" - net/mlx4_en: Update reported link modes for 1/10G - ALSA: hda: Add Intel DG2 PCI ID and HDMI codec vid - ALSA: hda/hdmi: fix HDA codec entry table order for ADL-P - [arm64,armhf] i2c: rk3x: Handle a spurious start completion interrupt flag - net: netlink: af_netlink: Prevent empty skb by adding a check on len. - [x86] KVM: x86: Ignore sparse banks size for an "all CPUs", non-sparse IPI req - bpf: Fix integer overflow in argument calculation for bpf_map_area_alloc - fuse: make sure reclaim doesn't write the inode - [x86] hwmon: (dell-smm) Fix warning on /proc/i8k creation error - ethtool: do not perform operations on net devices being unregistered - [armel,armhf] memblock: free_unused_memmap: use pageblock units instead of MAX_ORDER - [armel,armhf] memblock: align freed memory map on pageblock boundaries with SPARSEMEM - memblock: ensure there is no overflow in memblock_overlaps_region() - [armel,armhf] arm: extend pfn_valid to take into account freed memory map alignment - [armel,armhf] arm: ioremap: don't abuse pfn_valid() to check if pfn is in RAM https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.88 - KVM: downgrade two BUG_ONs to WARN_ON_ONCE - mac80211: fix regression in SSN handling of addba tx - mac80211: mark TX-during-stop for TX in in_reconfig - mac80211: send ADDBA requests using the tid/queue of the aggregation session - mac80211: validate extended element ID is present - bpf: Fix signed bounds propagation after mov32 - bpf: Make 32->64 bounds propagation slightly more robust - virtio_ring: Fix querying of maximum DMA mapping size for virtio device - dm btree remove: fix use after free in rebalance_children() - audit: improve robustness of the audit queue handling - [arm64] dts: imx8mp-evk: Improve the Ethernet PHY description - [arm64] dts: rockchip: fix rk3308-roc-cc vcc-sd supply - [arm64] dts: rockchip: fix rk3399-leez-p710 vcc3v3-lan supply - mac80211: track only QoS data frames for admission control - ceph: fix duplicate increment of opened_inodes metric - ceph: initialize pathlen variable in reconnect_caps_cb - [armhf] socfpga: dts: fix qspi node compatible - clk: Don't parent clks until the parent is fully registered - [armhf] soc: imx: Register SoC device only on i.MX boards - virtio/vsock: fix the transport to work with VMADDR_CID_ANY - [s390x] kexec_file: fix error handling when applying relocations - sch_cake: do not call cake_destroy() from cake_init() - inet_diag: fix kernel-infoleak for UDP sockets - [arm64] net: hns3: fix use-after-free bug in hclgevf_send_mbx_msg - net/sched: sch_ets: don't remove idle classes from the round-robin list - drm/ast: potential dereference of null pointer - mac80211: agg-tx: don't schedule_and_wake_txq() under sta->lock - mac80211: fix lookup when adding AddBA extension element - flow_offload: return EOPNOTSUPP for the unsupported mpls action type - rds: memory leak in __rds_conn_create() (CVE-2021-45480) - [arm64,armhf] soc/tegra: fuse: Fix bitwise vs. logical OR warning - igb: Fix removal of unicast MAC filters of VFs - igbvf: fix double free in `igbvf_probe` - igc: Fix typo in i225 LTR functions - ixgbe: Document how to enable NBASE-T support - ixgbe: set X550 MDIO speed before talking to PHY - netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc (CVE-2021-4135) - net/packet: rx_owner_map depends on pg_vec - sfc_ef100: potential dereference of null pointer - net: Fix double 0x prefix print in SKB dump - net/smc: Prevent smc_release() from long blocking - sit: do not call ipip6_dev_free() from sit_init_net() - USB: gadget: bRequestType is a bitfield, not a enum - Revert "usb: early: convert to readl_poll_timeout_atomic()" - [x86] KVM: x86: Drop guest CPUID check for host initiated writes to MSR_IA32_PERF_CAPABILITIES - [x86] tty: n_hdlc: make n_hdlc_tty_wakeup() asynchronous - USB: NO_LPM quirk Lenovo USB-C to Ethernet Adapher(RTL8153-04) - [arm*] usb: dwc2: fix STM ID/VBUS detection startup delay in dwc2_driver_probe - PCI/MSI: Clear PCI_MSIX_FLAGS_MASKALL on error - PCI/MSI: Mask MSI-X vectors only on success - usb: xhci: Extend support for runtime power management for AMD's Yellow carp. - USB: serial: cp210x: fix CP2105 GPIO registration - USB: serial: option: add Telit FN990 compositions - btrfs: fix memory leak in __add_inode_ref() - btrfs: fix double free of anon_dev after failure to create subvolume - zonefs: add MODULE_ALIAS_FS - iocost: Fix divide-by-zero on donation from low hweight cgroup - [x86] serial: 8250_fintek: Fix garbled text for console - timekeeping: Really make sure wall_to_monotonic isn't positive - libata: if T_LENGTH is zero, dma direction should be DMA_NONE - drm/amdgpu: correct register access for RLC_JUMP_TABLE_RESTORE - Input: touchscreen - avoid bitwise vs logical OR warning - xsk: Do not sleep in poll() when need_wakeup set - media: mxl111sf: change mutex_init() location - fuse: annotate lock in fuse_reverse_inval_entry() - ovl: fix warning in ovl_create_real() - scsi: scsi_debug: Don't call kcalloc() if size arg is zero - scsi: scsi_debug: Fix type in min_t to avoid stack OOB - scsi: scsi_debug: Sanity check block descriptor length in resp_mode_select() - rcu: Mark accesses to rcu_state.n_force_qs - [armhf] bus: ti-sysc: Fix variable set but not used warning for reinit_modules - Revert "xsk: Do not sleep in poll() when need_wakeup set" - xen/blkfront: harden blkfront against event channel storms (CVE-2021-28711) - xen/netfront: harden netfront against event channel storms (CVE-2021-28712) - xen/console: harden hvc_xen against event channel storms (CVE-2021-28713) - xen/netback: fix rx queue stall detection (CVE-2021-28714) - xen/netback: don't queue unlimited number of packages (CVE-2021-28715) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.89 - net: usb: lan78xx: add Allied Telesis AT29M2-AF - ext4: prevent partial update of the extent blocks - ext4: check for out-of-order index extents in ext4_valid_extent_entries() - ext4: check for inconsistent extents between index and leaf block - HID: holtek: fix mouse probing - [arm64] dts: allwinner: orangepi-zero-plus: fix PHY mode - [arm64] spi: change clk_disable_unprepare to clk_unprepare - [amd64] IB/qib: Fix memory leak in qib_user_sdma_queue_pkts() - [arm64] RDMA/hns: Replace kfree() with kvfree() - netfilter: fix regression in looped (broad|multi)cast's MAC handling - qlcnic: potential dereference null pointer of rx_queue->page_ring - net: accept UFOv6 packages in virtio_net_hdr_to_skb - net: skip virtio_net_hdr_set_proto if protocol already set - igb: fix deadlock caused by taking RTNL in RPM resume path - ipmi: Fix UAF when uninstall ipmi_si and ipmi_msghandler module - bonding: fix ad_actor_system option setting to default - [amd64] fjes: Check for error irq - [armhf] drivers: net: smc911x: Check for error irq - sfc: Check null pointer of rx_queue->page_ring - sfc: falcon: Check null pointer of rx_queue->page_ring - Input: elantech - fix stack out of bound access in elantech_change_report_id() - [arm*] pinctrl: bcm2835: Change init order for gpio hogs - hwmon: (lm90) Fix usage of CONFIG2 register in detect function - hwmon: (lm90) Add basic support for TI TMP461 - hwmon: (lm90) Introduce flag indicating extended temperature support - hwmon: (lm90) Drop critical attribute support for MAX6654 - ALSA: jack: Check the return value of kstrdup() - ALSA: drivers: opl3: Fix incorrect use of vp->state - ALSA: hda/realtek: Amp init fixup for HP ZBook 15 G6 - ALSA: hda/realtek: Add new alc285-hp-amp-init model - ALSA: hda/realtek: Fix quirk for Clevo NJ51CU - Input: atmel_mxt_ts - fix double free in mxt_read_info_block - ipmi: bail out if init_srcu_struct fails - ipmi: ssif: initialize ssif_info->client early - ipmi: fix initialization when workqueue allocation fails - [arm64] tee: handle lookup of shm with reference count 0 - [x86] pkey: Fix undefined behaviour with PKRU_WD_BIT - [x86] platform/x86: intel_pmc_core: fix memleak on registration failure - [x86] KVM: VMX: Wake vCPU when delivering posted IRQ even if vCPU == this vCPU - [armhf] pinctrl: stm32: consider the GPIO offset to expose all the GPIO lines - [arm64,armhf] mmc: sdhci-tegra: Fix switch to HS400ES mode - mmc: core: Disable card detect during shutdown - [arm64,armhf] mmc: mmci: stm32: clear DLYB_CR after sending tuning command - [armel,armhf] 9169/1: entry: fix Thumb2 bug in iWMMXt exception handling - mac80211: fix locking in ieee80211_start_ap error path - mm/hwpoison: clear MF_COUNT_INCREASED before retrying get_any_page() - [arm64] tee: optee: Fix incorrect page free bug - f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() (CVE-2021-45469) - ceph: fix up non-directory creation in SGID directories - usb: gadget: u_ether: fix race in setting MAC address in setup phase - [x86] KVM: VMX: Fix stale docs for kvm-intel.emulate_invalid_guest_state - mm: mempolicy: fix THP allocations escaping mempolicy restrictions - [arm64] Input: elants_i2c - do not check Remark ID on eKTH3900/eKTH5312 - Input: goodix - add id->model mapping for the "9111" model - ASoC: rt5682: fix the wrong jack type detected - hwmom: (lm90) Fix citical alarm status for MAX6680/MAX6681 - hwmon: (lm90) Do not report 'busy' status bit as alarm - ax25: NPD bug when detaching AX25 device - hamradio: defer ax25 kfree after unregister_netdev - hamradio: improve the incomplete fix to avoid NPD - phonet/pep: refuse to enable an unbound pipe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.90 - Input: i8042 - add deferred probe support - Input: i8042 - enable deferred probe quirk for ASUS UM325UA - tomoyo: Check exceeded quota early in tomoyo_domain_quota_is_ok(). - tomoyo: use hwight16() in tomoyo_domain_quota_is_ok() - [x86] platform/x86: apple-gmux: use resource_size() with res - memblock: fix memblock_phys_alloc() section mismatch error - selinux: initialize proto variable in selinux_ip_postroute_compat() - scsi: lpfc: Terminate string in lpfc_debugfs_nvmeio_trc_write() - net/mlx5: DR, Fix NULL vs IS_ERR checking in dr_domain_init_resources - net/mlx5e: Wrap the tx reporter dump callback to extract the sq - net/mlx5e: Fix ICOSQ recovery flow for XSK - udp: using datalen to cap ipv6 udp max gso segments - sctp: use call_rcu to free endpoint - net/smc: fix using of uninitialized completions - net: usb: pegasus: Do not drop long Ethernet frames - net/smc: improved fix wait on already cleared link - net/smc: don't send CDC/LLC message if link not ready - net/smc: fix kernel panic caused by race of smc_sock - igc: Fix TX timestamp support for non-MSI-X platforms - net/mlx5e: Fix wrong features assignment in case of error - [armhf] net/ncsi: check for error return from call to nla_put_u32 - i2c: validate user data in compat ioctl - nfc: uapi: use kernel size_t to fix user-space builds - uapi: fix linux/nfc.h userspace compilation errors - drm/amdgpu: When the VCN(1.0) block is suspended, powergating is explicitly enabled - drm/amdgpu: add support for IP discovery gc_info table v2 - xhci: Fresco FL1100 controller should not have BROKEN_MSI quirk set. - usb: gadget: f_fs: Clear ffs_eventfd in ffs_data_clear. - [arm*] binder: fix async_free_space accounting for empty parcels - [x86] scsi: vmw_pvscsi: Set residual data length conditionally - Input: appletouch - initialize work before device registration - Input: spaceball - fix parsing of movement data packets - net: fix use-after-free in tw_timer_handler https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.91 - f2fs: quota: fix potential deadlock - tracing: Fix check for trace_percpu_buffer validity in get_trace_buf() - tracing: Tag trace_percpu_buffer as a percpu pointer - ieee802154: atusb: fix uninit value in atusb_set_extended_addr - i40e: Fix to not show opcode msg on unsuccessful VF MAC change - iavf: Fix limit of total number of queues to active queues of VF - RDMA/core: Don't infoleak GRH fields - netrom: fix copying in user data in nr_setsockopt - RDMA/uverbs: Check for null return of kmalloc_array - mac80211: initialize variable have_higher_than_11mbit - sfc: The RX page_ring is optional - i40e: fix use-after-free in i40e_sync_filters_subtask() - i40e: Fix for displaying message regarding NVM version - i40e: Fix incorrect netdev's real number of RX/TX queues - ipv4: Check attribute length for RTA_GATEWAY in multipath route - ipv4: Check attribute length for RTA_FLOW in multipath route - ipv6: Check attribute length for RTA_GATEWAY in multipath route - ipv6: Check attribute length for RTA_GATEWAY when deleting multipath route - lwtunnel: Validate RTA_ENCAP_TYPE attribute length - batman-adv: mcast: don't send link-local multicast to mcast routers - sch_qfq: prevent shift-out-of-bounds in qfq_init_qdisc - net: ena: Fix undefined state when tx request id is out of bounds - net: ena: Fix error handling when calculating max IO queues number - xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate (CVE-2021-4155) - power: supply: core: Break capacity loop - rndis_host: support Hytera digital radios - phonet: refcount leak in pep_sock_accep (CVE-2021-45095) - ipv6: Continue processing multipath route even if gateway attribute is invalid - ipv6: Do cleanup if attribute validation fails in multipath route - scsi: libiscsi: Fix UAF in iscsi_conn_get_param()/iscsi_conn_teardown() - ip6_vti: initialize __ip6_tnl_parm struct in vti6_siocdevprivate - net: udp: fix alignment problem in udp4_seq_show() - [amd64,arm64] atlantic: Fix buff_ring OOB in aq_ring_rx_clean - mISDN: change function names to avoid conflicts - drm/amd/display: Added power down for DCN10 - ipv6: raw: check passed optlen before reading https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.92 - md: revert io stats accounting - workqueue: Fix unbind_workers() VS wq_worker_running() race - bpf: Fix out of bounds access from invalid *_or_null type verification (CVE-2022-23222) - Bluetooth: btusb: fix memory leak in btusb_mtk_submit_wmt_recv_urb() - Bluetooth: btusb: Add two more Bluetooth parts for WCN6855 - Bluetooth: btusb: Add support for Foxconn MT7922A - Bluetooth: btusb: Add support for Foxconn QCA 0xe0d0 - Bluetooth: bfusb: fix division by zero in send path - [armhf] dts: exynos: Fix BCM4330 Bluetooth reset polarity in I9100 - USB: core: Fix bug in resuming hub's handling of wakeup requests - USB: Fix "slab-out-of-bounds Write" bug in usb_hcd_poll_rh_status - ath11k: Fix buffer overflow when scanning with extraie - mmc: sdhci-pci: Add PCI ID for Intel ADL - veth: Do not record rx queue hint in veth_xmit - [x86] mfd: intel-lpss: Fix too early PM enablement in the ACPI ->probe() - can: gs_usb: fix use of uninitialized variable, detach device on reception of invalid USB data - can: isotp: convert struct tpcon::{idx,len} to unsigned int - can: gs_usb: gs_can_start_xmit(): zero-initialize hf->{flags,reserved} - random: fix data race on crng_node_pool - random: fix data race on crng init time - random: fix crash on multiple early calls to add_bootloader_randomness() - media: Revert "media: uvcvideo: Set unique vdev name based in type" - [x86] drm/i915: Avoid bitwise vs logical OR warning in snb_wm_latency_quirk() . [ Salvatore Bonaccorso ] * [arm64] drivers/net/ethernet/google: Enable GVE as module (Closes: #996974) * Refresh "Export symbols needed by Android drivers" * [rt] Update to 5.10.87-rt59 * Bump ABI to 11 * [rt] Update to 5.10.90-rt60 * vfs: fs_context: fix up param length parsing in legacy_parse_param (CVE-2022-0185) . [ Andrew Balmos ] * net/can: Enable CONFIG_CAN_MCP251X as module . [ Cyril Brulebois ] * arm64: dts: Add support for Raspberry Pi Compute Module 4 IO Board, producing a DTB that's almost entirely identical to what a v5.16-rc8 build produces, with lots of thanks to Uwe Kleine-König for the heavy lifting! linux-signed-i386 (5.10.92+1~bpo10+1) buster-backports; urgency=medium . * Sign kernel from linux 5.10.92-1~bpo10+1 . * Rebuild for buster-backports: - Change ABI number to 0.bpo.11 lxml (4.6.3+dfsg-0.1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Cleaner: Prevent "@import" from re-occurring in the CSS after replacements, e.g. "@@importimport" (CVE-2021-43818) (Closes: #1001885) * Cleaner: Remove SVG image data URLs since they can embed script content (CVE-2021-43818) (Closes: #1001885) mariadb-10.5 (1:10.5.15-0+deb11u1) bullseye; urgency=medium . [ Otto Kekäläinen ] * New upstream version 10.5.15. Includes security fixes for - CVE-2021-46661 - CVE-2021-46663 - CVE-2021-46664 - CVE-2021-46665 - CVE-2021-46668 * New upstream version 10.5.14. Includes security fixes for - CVE-2021-46659 - CVE-2022-24048 - CVE-2022-24050 - CVE-2022-24051 - CVE-2022-24052 * Drop more MIPS and CTE patches applied now upstream * New upstream version 10.5.13. Includes security fixes for: - CVE-2021-35604 - CVE-2021-46662 - CVE-2021-46667 * Drop MIPS and libatomic patches applied now upstream * Salsa-CI: Use new MySQL.com signing key * Notable upstream functional changes in 10.5.14: - New default value for innodb_change_buffering is 'none' instead of old value 'all' (MDEV-27734). This change should improve crash safety but might cause performance regressions on systems that use old spinning disks (HDD) where seek latency is higher. - New default minimum value for innodb_buffer_pool_size is 20 MB (from 2 MB) * Upstream release 10.5.13 included fixes for - MDEV-26712: Memory leak in row events (Closes: #1001467) - MDEV-23328: Server hang due to Galera lock conflict (Closes: #1003839) . [ Bas Couwenberg ] * Don't require debian.cnf to be executable in logrotate (Closes: #994284) mariadb-10.5 (1:10.5.13-0+deb11u1) bullseye; urgency=medium . [ Otto Kekäläinen ] * New upstream version 10.5.13. Includes security fixes for: - CVE-2021-35604 * Drop MIPS and libatomic patches applied now upstream . [ Bas Couwenberg ] * Don't require debian.cnf to be executable in logrotate (Closes: #994284) mariadb-10.5 (1:10.5.12-1) unstable; urgency=medium . * New upstream version 10.5.12. Includes security fixes for: - CVE-2021-2389 - CVE-2021-2372 * Drop patches applied upstream in MariaDB S3 plugin mediawiki (1:1.35.4-1+deb11u2) bullseye-security; urgency=high . * Cherry-pick upstream patches fixing CVE-2021-44858, CVE-2021-44857, CVE-2021-45038. mediawiki (1:1.35.4-1) unstable; urgency=medium . * New upstream version 1.35.4, fixing CVE-2021-41798, CVE-2021-41799, CVE-2021-41800, CVE-2021-41801. minetest (5.3.0+repack-2.1+deb11u1) bullseye-security; urgency=high . * Fix CVE-2022-24300 and CVE-2022-24301: Several vulnerabilities have been discovered in Minetest. These issues may allow attackers to manipulate game mods by adding or modifying meta fields of the same item stack and grant them an unfair advantage over other players. These flaws could also be abused for a denial of service attack. (Closes: #1004223) modsecurity-apache (2.9.3-3+deb11u1) bullseye-security; urgency=high . * Added json_depth_limit.patch Fixes CVE--2021-42717 mpich (3.4.1-5~deb11u1) bullseye; urgency=medium . * Team upload. * Rebuild for bullseye. . mpich (3.4.1-5) unstable; urgency=medium . * Team upload. * libmpich12: Add Breaks: libmpich1.0-dev (<< 3) which provided libmpich-dev causing the old package using the ancient alternatives scheme to be kept installed on some upgrade paths. * mpich: Add Breaks+Replaces: libmpich1.0-dev (<< 3) since some files got moved around. (Closes: #992065) mujs (1.1.0-1+deb11u1) bullseye; urgency=high . * Clear jump list after patching jump addresses (CVE-2021-45005) mutter (3.38.6-2~deb11u2) bullseye; urgency=medium . * d/patches: Update to commit 3.38.6-9-g0b26ad635 from gnome-3-38 branch (Closes: #1002651) - d/p/wayland-subsurface-Check-for-parent-actor-before-unparent.patch, d/p/wayland-subsurface-Handle-node-unlinking-on-parent-destro.patch, d/p/window-actor-wayland-Remove-subsurface-actors-on-dispose.patch: Fix a crash involving Wayland subsurfaces, which can be triggered by Firefox in Wayland mode (fix backported from 41~beta and 40.5) - d/p/wayland-data-offer-Accept-final-preferrence-of-drop-desti.patch: Fix protocol error during Alt + drag-and-drop from Firefox in Wayland mode, which would result in Firefox being terminated (fix backported from 41.1 and 40.6) - d/p/surface-actor-Fix-unobscurred_fraction-calculation.patch: When an app/game using VSync is full-screen in a multi-monitor setup, use the refresh rate of the correct monitor (LP: #1788535) (fix backported from 41.3) - d/p/xwayland-Fix-condition-for-queuing-a-window-to-META_QUEUE.patch: Avoid flooding Xwayland clients (X11 apps under Wayland) with window management events, which can cause performance problems (fix backported from 41.1 and 40.6) - d/p/wayland-surface-Switch-order-for-calculating-surface-dama.patch, d/p/wayland-surface-Use-correct-default-viewport-for-surface-.patch, d/p/wayland-surface-Do-not-uncoditionally-process-surface-dam.patch: Fix visible glitches for Wayland clients that use the wp_viewporter protocol in combination with wl_surface_damage(), such as the GStreamer waylandsink element (fix backported from 41.3) nbd (1:3.21-1+deb11u1) bullseye-security; urgency=medium . * Cherry-pick fixes for CVE-2022-26495 and CVE-2022-26496 from git master; Closes: #1006915. * Fix parsing of nbdtab in nbd-client; Closes: #1003863. node-cached-path-relative (1.0.2-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: CVE-2021-23518) node-fetch (2.6.1-5+deb11u1) bullseye; urgency=medium . * Team upload * Don't forward secure headers to 3th party (Closes: CVE-2022-0235) node-follow-redirects (1.13.1-1+deb11u1) bullseye; urgency=medium . * Team upload * Drop Cookie header across domains (Closes: CVE-2022-0155) * Drop confidential headers across schemes (Closes: CVE-2022-0536) node-markdown-it (10.0.0+dfsg-2+deb11u1) bullseye; urgency=medium . * Fix ReDoS (Closes: CVE-2022-21670) node-nth-check (2.0.0-1+deb11u1) bullseye; urgency=medium . * Team upload * Replace regex with hand-rolled parser (Closes: CVE-2021-3803) node-prismjs (1.23.0+dfsg-1+deb11u2) bullseye; urgency=medium . * Command Line: Escape markup in command line output (Closes: CVE-2022-23647) * Fix also minified files (Really closes: CVE-2021-3801) node-trim-newlines (3.0.0-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix Regex Denial of Service (Closes: CVE-2021-33623) nss (2:3.61-1+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Check for missing signedData field (CVE-2022-22747) nvidia-cuda-toolkit (11.2.2-3+deb11u1) bullseye; urgency=medium . * cuda-gdb: Disable non-functional python support causing segmentation faults. (Closes: #997031) * Use a snapshot of openjdk-8-jre (8u312-b07-1). * Do not ship a spurious CMakeLists.txt below /usr/include/cuda. * Bump Standards-Version to 4.6.0 (no changes needed). * Update Lintian overrides. * Record upstream versions to detect non-monotonic cases. * Semi-automatically update version-prefixes in non-monotonic cases. * Add (tesla-)510 driver as alternate dependency. * Add superficial autopkgtest checking the usability of the STL headers in host code compiled with nvcc (cf. #1006962). Mark as flaky to avoid regressions. * Upload to bullseye. nvidia-cuda-toolkit (11.2.2-3+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . nvidia-cuda-toolkit (11.2.2-3+deb11u1) bullseye; urgency=medium . * cuda-gdb: Disable non-functional python support causing segmentation faults. (Closes: #997031) * Use a snapshot of openjdk-8-jre (8u312-b07-1). * Do not ship a spurious CMakeLists.txt below /usr/include/cuda. * Bump Standards-Version to 4.6.0 (no changes needed). * Update Lintian overrides. * Record upstream versions to detect non-monotonic cases. * Semi-automatically update version-prefixes in non-monotonic cases. * Add (tesla-)510 driver as alternate dependency. * Add superficial autopkgtest checking the usability of the STL headers in host code compiled with nvcc (cf. #1006962). Mark as flaky to avoid regressions. * Upload to bullseye. . nvidia-cuda-toolkit (11.2.2-3) unstable; urgency=medium . * Use a snapshot of openjdk-8-jre (8u292-b10-3). * Tighten library dependencies. * Add (tesla-)470 driver as alternate dependency. * Update watch file. nvidia-graphics-drivers-tesla-450 (450.172.01-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-graphics-drivers-tesla-450 (450.172.01-2) unstable; urgency=medium . * Add xorg-video-abi-25 (Xorg Xserver 21) as alternative dependency. (Closes: #1005932) * Backport pde_data changes from 470.103.01 to fix kernel module build for Linux 5.17. * dkms.conf: Use a BUILD_EXCLUSIVE equivalent hack to skip building for -rt kernels, not supported upstream (510.54-1). * Declare Testsuite: autopkgtest-pkg-dkms (510.54-1). . nvidia-graphics-drivers-tesla-450 (450.172.01-1) unstable; urgency=medium . * New upstream Tesla release 450.172.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004851) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Fixed a bug that caused nvidia-drm.ko to crash when loading with DRM-KMS enabled (modeset=1) on Linux v5.14. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * nvidia-tesla-450-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) . nvidia-graphics-drivers-tesla-450 (450.156.00-1) unstable; urgency=medium . * New upstream Tesla release 450.156.00 (2021-10-26). - Fixed a bug that could cause the /proc/driver/nvidia/suspend power management interface to fail to preserve and restore video memory allocations when the NVreg_TemporaryFilePath module parameter for nvidia.ko specified an invalid path. . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-450-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). (Closes: #996595) * Fix bashisms in upstream scripts (470.82.00-1). * Drop the unusable leftover non-GLVND libegl1-nvidia-tesla-450 package (470.82.00-1). * nvidia-tesla-450-alternative: Drop unused non-GLVND slave links (470.82.00-1). * Update lintian overrides. . nvidia-graphics-drivers-tesla-450 (450.142.00-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. nvidia-graphics-drivers-tesla-450 (450.172.01-1) unstable; urgency=medium . * New upstream Tesla release 450.172.01 (2022-01-31). * Fixed CVE‑2022‑21813, CVE‑2022‑21814. (Closes: #1004851) https://nvidia.custhelp.com/app/answers/detail/a_id/5312 - Fixed a bug that caused nvidia-drm.ko to crash when loading with DRM-KMS enabled (modeset=1) on Linux v5.14. * Improved compatibility with recent Linux kernels. . [ Andreas Beckmann ] * Refresh patches. * nvidia-tesla-450-kernel-support: Provide /etc/modprobe.d/nvidia-options.conf as a template taking into account the module renaming. This is a slave alternative of the nvidia alternative (470.86-1). (Closes: #999670) nvidia-graphics-drivers-tesla-450 (450.156.00-1) unstable; urgency=medium . * New upstream Tesla release 450.156.00 (2021-10-26). - Fixed a bug that could cause the /proc/driver/nvidia/suspend power management interface to fail to preserve and restore video memory allocations when the NVreg_TemporaryFilePath module parameter for nvidia.ko specified an invalid path. . [ Andreas Beckmann ] * bug-script: Show the nvidia and glx alternatives (470.82.00-1). * nvidia-tesla-450-alternative: libnvidia-cfg.so.1 on its own is not sufficient to activate a nvidia alternative (470.82.00-1). * Fix bashisms in upstream scripts (470.82.00-1). * Drop the unusable leftover non-GLVND libegl1-nvidia package (470.82.00-1). * nvidia-alternative: Drop unused non-GLVND slave links (470.82.00-1). * Update lintian overrides. nvidia-graphics-drivers-tesla-450 (450.142.00-2) unstable; urgency=medium . * Backport drm_device_has_pdev and set_current_state changes from 470.63.01 to fix kernel module build for Linux 5.14. * Generate tight dependencies on libnvidia*-glcore/libnvidia*-eglcore (470.57.02-3). * Bump Standards-Version to 4.6.0. No changes needed. nvidia-modprobe (470.103.01-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. . nvidia-modprobe (470.103.01-1) unstable; urgency=medium . * New upstream release. . nvidia-modprobe (470.94-1) unstable; urgency=medium . * New upstream release. . nvidia-modprobe (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. * Update Lintian overrides. . nvidia-modprobe (470.57.02-1) unstable; urgency=medium . * New upstream release. * Upload to unstable. . nvidia-modprobe (470.42.01-1) experimental; urgency=medium . * New upstream release. . nvidia-modprobe (465.24.02-1) experimental; urgency=medium . * New upstream release. (Closes: #987744) * Upload to experimental. nvidia-modprobe (470.94-1) unstable; urgency=medium . * New upstream release. nvidia-modprobe (470.94-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . nvidia-modprobe (470.94-1) unstable; urgency=medium . * New upstream release. . nvidia-modprobe (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. * Update Lintian overrides. . nvidia-modprobe (470.57.02-1) unstable; urgency=medium . * New upstream release. * Upload to unstable. . nvidia-modprobe (470.42.01-1) experimental; urgency=medium . * New upstream release. . nvidia-modprobe (465.24.02-1) experimental; urgency=medium . * New upstream release. (Closes: #987744) * Upload to experimental. nvidia-modprobe (470.82.00-1) unstable; urgency=medium . * New upstream release. * Bump Standards-Version to 4.6.0. No changes needed. * Update Lintian overrides. nvidia-modprobe (470.57.02-1) unstable; urgency=medium . * New upstream release. * Upload to unstable. nvidia-modprobe (470.42.01-1) experimental; urgency=medium . * New upstream release. nvidia-modprobe (465.24.02-1) experimental; urgency=medium . * New upstream release. (Closes: #987744) openboard (1.5.4+dfsg1-2+deb11u1) bullseye; urgency=medium . * debian/openboard-common.install: + Install OpenBoard.png icon to /usr/share/pixmaps/. * debian/openboard.desktop: + Use OpenBoard.png icon from /usr/share/pixmaps/. (Closes: #989658). openjdk-11 (11.0.14+9-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-11 (11.0.14+9-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster openjdk-11 (11.0.13+8-1) unstable; urgency=medium . * OpenJDK 11.0.13+8 build (release). * Security fixes - JDK-8163326, CVE-2021-35550: Update the default enabled cipher suites preference - JDK-8254967, CVE-2021-35565: com.sun.net.HttpsServer spins on TLS session close - JDK-8263314: Enhance XML Dsig modes - JDK-8265167, CVE-2021-35556: Richer Text Editors - JDK-8265574: Improve handling of sheets - JDK-8265580, CVE-2021-35559: Enhanced style for RTF kit - JDK-8265776: Improve Stream handling for SSL - JDK-8266097, CVE-2021-35561: Better hashing support - JDK-8266103: Better specified spec values - JDK-8266109: More Resilient Classloading - JDK-8266115: More Manifest Jar Loading - JDK-8266137, CVE-2021-35564: Improve Keystore integrity - JDK-8266689, CVE-2021-35567: More Constrained Delegation - JDK-8267086: ArrayIndexOutOfBoundsException in java.security.KeyFactory.generatePublic - JDK-8267712: Better LDAP reference processing - JDK-8267729, CVE-2021-35578: Improve TLS client handshaking - JDK-8267735, CVE-2021-35586: Better BMP support - JDK-8268193: Improve requests of certificates - JDK-8268199: Correct certificate requests - JDK-8268205: Enhance DTLS client handshake - JDK-8268506: More Manifest Digests - JDK-8269618, CVE-2021-35603: Better session identification - JDK-8269624: Enhance method selection support - JDK-8270398: Enhance canonicalization - JDK-8270404: Better canonicalization * Remove patches applied upstream. openjdk-11 (11.0.13+8-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-11 (11.0.13+8-1~deb10u1) buster-security; urgency=medium . * Rebuild for buster-security openjdk-17 (17.0.2+8-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-17 (17.0.1+12-1+deb11u2) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-17 (17.0.1+12-1+deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye openjdk-17 (17.0.1+12-1) unstable; urgency=medium . * OpenJDK 17.0.1+12 (release). * Remove patches applied upstream. openjdk-17 (17+35-1) unstable; urgency=medium . * Fix JDK-8272472, ftbfs with glibc 2.24. openjdk-17 (17~35ea-1) unstable; urgency=medium . * OpenJDK 17 snapshot, build 35 (first release candidate). openjdk-17 (17~33ea-1) unstable; urgency=high . * OpenJDK 17 snapshot, build 33. openjdk-17 (17~31ea-1) unstable; urgency=medium . * OpenJDK 17 snapshot, build 31. * Encode the early-access status into the package version. LP: #1934895. openjdk-17 (17~29-1) unstable; urgency=medium . * OpenJDK 17 snapshot, build 29. * Update watch file. * Prepare to build with jtreg6, where available. openjdk-17 (17~27-1) unstable; urgency=medium . * OpenJDK 17 snapshot, build 27. * Only build using lto with GCC 11. * Build using GCC 11 in recent distributions. * Update VCS attributes. * Disable runnning the tests, requires not yet packaged jtreg6. * Remove rimd, removed upstream. openjdk-17 (17~24-1) unstable; urgency=medium . * OpenJDK 17 snapshot, build 24. * Drop the work around for JDK 8211105. * Remove jaotc (the experimental JIT compiler), removed upstream. * Add an (unapplied) patch to replace OASIS header files with ones imported from NSPR and NSS. See #985765. Not reviewed, not applying. openssl (1.1.1n-0+deb11u1) bullseye; urgency=medium . * New upstream version. openssl (1.1.1n-0+deb10u1) buster; urgency=medium . * New upstream version. - Add new symbols. openssl (1.1.1m-1) unstable; urgency=medium . * New upstream version. - Fix builds on kfreebsd (Closes: #993501). * Add arc, patch by Vineet Gupta (Closes: #989442). openssl (1.1.1m-0+deb11u1) bullseye; urgency=medium . * New upstream version. - Fix armv8 pointer authentication (Closes: #989604). openssl (1.1.1l-1) unstable; urgency=medium . * New upstream version. - CVE-2021-3711 (SM2 Decryption Buffer Overflow). - CVE-2021-3712 (Read buffer overruns processing ASN.1 strings). openssl (1.1.1k-1+deb11u2) bullseye-security; urgency=medium . * CVE-2022-0778 (Infinite loop in BN_mod_sqrt() reachable when parsing certificates). * CVE-2021-4160 (Carry propagation bug in the MIPS32 and MIPS64 squaring procedure.) openvswitch (2.15.0+ds1-2+deb11u1) bullseye; urgency=medium . * CVE-2021-36980: use-after-free in decode_NXAST_RAW_ENCAPAdd. Add upstream patch (Closes: #991308). . [ Felix Moessbauer ] * fix ABI incompatibility that crashes OVS when enabling LLDP (Closes: #992406). ostree (2020.8-2+deb11u1) bullseye; urgency=medium . * d/gbp.conf, d/control: Branch for Debian 11 updates * Backport various bug fixes from newer libostree releases. Each of these fixes an issue that was reported against Flatpak when using the libostree from Debian 11, either via bullseye or buster-backports. - d/p/Fall-back-if-copy_file_range-fails-with-EINVAL.patch: Add patch to fall back if copy_file_range fails with EINVAL. This fixes an incompatibility with eCryptFS, in particular when using Flatpak in an eCryptFS home directory. (Closes: #1004467) - d/p/libotutil-Avoid-infinite-recursion-during-error-unwinding.patch: Avoid infinite recursion when recovering from certain errors, in particular the one that was a symptom of #1004467. - d/p/Fix-marking-static-delta-commits-as-partial.patch: Mark commits as partial before downloading, to avoid Flatpak and other ostree users getting into a state where a failed download cannot be resumed. - d/p/lib-Fix-a-bad-call-to-g_file_get_child.patch: Fix an assertion failure when using a backport or local build of GLib >= 2.71 - d/p/Fix-translation-of-file-URIs-into-paths.patch: Fix the ability to fetch OSTree content from paths containing non-URI characters (such as backslashes) or non-ASCII pdb2pqr (2.1.1+dfsg-7+deb11u1) bullseye; urgency=medium . * Team upload. * Fix ImportError in propka due to changed relative import handling in Python 3.8. The patch fixing #937262 has changed the way relative imports are called, but the used construction does not work since Python 3.8. Undoing changes in the patch fixed the ImportError in propka. php-crypt-gpg (1.6.4-2+deb11u1) bullseye; urgency=high . * Backport fix for CVE-2022-24953: Crypt_GPG <1.6.7 does not prevent additional options in GPG calls, which presents a risk for certain environments and GPG versions. (Closes: #1005921) * d/gbp.conf, d/salsa-ci.yml: Target Bullseye release. php-laravel-framework (6.20.14+dfsg-2+deb11u1) bullseye; urgency=high . * Fix security issue: XSS vulnerability in the Blade templating engine (CVE-2021-43808, Closes: #1001333) * Fix security issue: Failure to block the upload of executable PHP content (CVE-2021-43617, Closes: #1002728) php7.4 (7.4.28-1+deb11u1) bullseye-security; urgency=high . * New upstream version 7.4.28 + CVE-2021-21708: UAF due to php_filter_float() failing for ints * New upstream version 7.4.26 + CVE-2021-21707: special character is breaking the path in xml function php7.4 (7.4.26-1) unstable; urgency=medium . * New upstream version 7.4.26 phpliteadmin (1.9.8.2-1+deb11u1) bullseye; urgency=medium . * Fix CVE-2021-46709, an XSS issue with the newRows GET parameter. pillow (8.1.2+dfsg-0.3+deb11u1) bullseye-security; urgency=medium . * CVE-2022-22815 CVE-2022-22816 CVE-2022-22817 policykit-1 (0.105-31+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Local Privilege Escalation in polkit's pkexec (CVE-2021-4034) prips (1.1.1-3+deb11u1) bullseye; urgency=medium . * Add two patches from the 1.2.0 upstream version: - stop-at-last-address: stop at 255.255.255.255 instead of wrapping over to 0.0.0.0 and going on forever. Closes: #1001923 - fix-different-cidr: fix the CIDR (-c) output when the addresses differ in their very first bit. Closes: #1001924 prosody (0.11.9-2+deb11u2) bullseye-security; urgency=medium . * CVE-2022-0217 fix memory leak (Closes: #1004173) prosody (0.11.9-2+deb11u1) bullseye-security; urgency=high . * fix for https://prosody.im/security/advisory_20220113/ CVE-2022-0217 pypy3 (7.3.5+dfsg-2+deb11u1) bullseye; urgency=medium . * Patch: Remove extraneous #endif from import.h (Closes: #1001519) python-django (2:2.2.26-1~deb11u1) bullseye; urgency=medium . * New upstream security release: . - CVE-2021-45115: Denial-of-service possibility in UserAttributeSimilarityValidator . UserAttributeSimilarityValidator incurred significant overhead evaluating submitted password that were artificially large in relative to the comparison values. On the assumption that access to user registration was unrestricted this provided a potential vector for a denial-of-service attack. . In order to mitigate this issue, relatively long values are now ignored by UserAttributeSimilarityValidator. . - CVE-2021-45116: Potential information disclosure in dictsort template filter . Due to leveraging the Django Template Language's variable resolution logic, the dictsort template filter was potentially vulnerable to information disclosure or unintended method calls, if passed a suitably crafted key. . In order to avoid this possibility, dictsort now works with a restricted resolution logic, that will not call methods, nor allow indexing on dictionaries. . - CVE-2021-45452: Potential directory-traversal via Storage.save() . Storage.save() allowed directory-traversal if directly passed suitably crafted file names. . See for more information. (Closes: #1003113) . * Fix a traceback around the handling of RequestSite/get_current_site() due to a circular import by backporting commit 78163d1a from upstream. Thanks to Raphaël Hertzog for the report. (Closes: #1003478) python-nbxmpp (2.0.2-1+deb11u1) bullseye-security; urgency=medium . * CVE-2021-41055 (Gajim crashes on message correction in MUC when message id == replace id) python-pip (20.3.4-4+deb11u1) bullseye; urgency=medium . * Use native map() to avoid a zipimport race in pip list --outdated. (Closes: #1006150) redis (5:6.0.16-1+deb11u2) bullseye-security; urgency=high . * CVE-2022-0543: Prevent a Debian-specific Lua sandbox escape vulnerability. . This vulnerability existed because the Lua library in Debian is provided as a dynamic library. A "package" variable was automatically populated that in turn permitted access to arbitrary Lua functionality. As this extended to, for example, the "execute" function from the "os" module, an attacker with the ability to execute arbitrary Lua code could potentially execute arbitrary shell commands. . Thanks to Reginaldo Silva for discovering and reporting this issue. (Closes: #1005787) redis (5:6.0.16-1+deb11u1) bullseye-security; urgency=high . * New upstream security release: . - CVE-2021-32762: Integer to heap buffer overflow issue in redis-cli and redis-sentinel parsing large multi-bulk replies on some older and less common platforms. . - CVE-2021-32687: Integer to heap buffer overflow with intsets, when set-max-intset-entries is manually configured to a non-default, very large value. . - CVE-2021-32675: Denial Of Service when processing RESP request payloads with a large number of elements on many connections. . - CVE-2021-32672: Random heap reading issue with Lua Debugger. . - CVE-2021-32628: Integer to heap buffer overflow handling ziplist-encoded data types, when configuring a large, non-default value for hash-max-ziplist-entries, hash-max-ziplist-value, zset-max-ziplist-entries or zset-max-ziplist-value. . - CVE-2021-32627: Integer to heap buffer overflow issue with streams, when configuring a non-default, large value for proto-max-bulk-len and client-query-buffer-limit. . - CVE-2021-32626: Specially crafted Lua scripts may result with Heap buffer overflow. . - CVE-2021-41099: Integer to heap buffer overflow handling certain string commands and network payloads, when proto-max-bulk-len is manually configured to a non-default, very large value. redis (5:6.0.16-1) unstable; urgency=medium . * New upstream security release: . - CVE-2021-32762: Integer to heap buffer overflow issue in redis-cli and redis-sentinel parsing large multi-bulk replies on some older and less common platforms. . - CVE-2021-32687: Integer to heap buffer overflow with intsets, when set-max-intset-entries is manually configured to a non-default, very large value. . - CVE-2021-32675: Denial Of Service when processing RESP request payloads with a large number of elements on many connections. . - CVE-2021-32672: Random heap reading issue with Lua Debugger. . - CVE-2021-32628: Integer to heap buffer overflow handling ziplist-encoded data types, when configuring a large, non-default value for hash-max-ziplist-entries, hash-max-ziplist-value, zset-max-ziplist-entries or zset-max-ziplist-value. . - CVE-2021-32627: Integer to heap buffer overflow issue with streams, when configuring a non-default, large value for proto-max-bulk-len and client-query-buffer-limit. . - CVE-2021-32626: Specially crafted Lua scripts may result with Heap buffer overflow. . - CVE-2021-41099: Integer to heap buffer overflow handling certain string commands and network payloads, when proto-max-bulk-len is manually configured to a non-default, very large value. . * Refresh patches. * Bump Standards-Version to 4.6.0. redis (5:6.0.16-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . redis (5:6.0.16-1) unstable; urgency=medium . * New upstream security release: . - CVE-2021-32762: Integer to heap buffer overflow issue in redis-cli and redis-sentinel parsing large multi-bulk replies on some older and less common platforms. . - CVE-2021-32687: Integer to heap buffer overflow with intsets, when set-max-intset-entries is manually configured to a non-default, very large value. . - CVE-2021-32675: Denial Of Service when processing RESP request payloads with a large number of elements on many connections. . - CVE-2021-32672: Random heap reading issue with Lua Debugger. . - CVE-2021-32628: Integer to heap buffer overflow handling ziplist-encoded data types, when configuring a large, non-default value for hash-max-ziplist-entries, hash-max-ziplist-value, zset-max-ziplist-entries or zset-max-ziplist-value. . - CVE-2021-32627: Integer to heap buffer overflow issue with streams, when configuring a non-default, large value for proto-max-bulk-len and client-query-buffer-limit. . - CVE-2021-32626: Specially crafted Lua scripts may result with Heap buffer overflow. . - CVE-2021-41099: Integer to heap buffer overflow handling certain string commands and network payloads, when proto-max-bulk-len is manually configured to a non-default, very large value. . * Refresh patches. * Bump Standards-Version to 4.6.0. redis (5:6.0.16-1~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for bullseye-backports-sloppy. . redis (5:6.0.16-1) unstable; urgency=medium . * New upstream security release: . - CVE-2021-32762: Integer to heap buffer overflow issue in redis-cli and redis-sentinel parsing large multi-bulk replies on some older and less common platforms. . - CVE-2021-32687: Integer to heap buffer overflow with intsets, when set-max-intset-entries is manually configured to a non-default, very large value. . - CVE-2021-32675: Denial Of Service when processing RESP request payloads with a large number of elements on many connections. . - CVE-2021-32672: Random heap reading issue with Lua Debugger. . - CVE-2021-32628: Integer to heap buffer overflow handling ziplist-encoded data types, when configuring a large, non-default value for hash-max-ziplist-entries, hash-max-ziplist-value, zset-max-ziplist-entries or zset-max-ziplist-value. . - CVE-2021-32627: Integer to heap buffer overflow issue with streams, when configuring a non-default, large value for proto-max-bulk-len and client-query-buffer-limit. . - CVE-2021-32626: Specially crafted Lua scripts may result with Heap buffer overflow. . - CVE-2021-41099: Integer to heap buffer overflow handling certain string commands and network payloads, when proto-max-bulk-len is manually configured to a non-default, very large value. . * Refresh patches. * Bump Standards-Version to 4.6.0. . redis (5:6.0.15-1) unstable; urgency=medium . * New upstream security release. - CVE-2021-32761: Integer overflow issues with BITFIELD command on 32-bit systems. * Bump Standards-Version to 4.5.1. . redis (5:6.0.14-1) unstable; urgency=medium . * CVE-2021-32625: Fix a vulnerability in the STRALGO LCS command. (Closes: #989351) . redis (5:6.0.13-1) unstable; urgency=medium . * New upstream security release: - CVE-2021-29477: Vulnerability in the STRALGO LCS command. - CVE-2021-29478: Vulnerability in the COPY command for large intsets. (Closes: #988045) * Refresh patches. . redis (5:6.0.12-1) unstable; urgency=medium . * New upstream release. . redis (5:6.0.11-1) unstable; urgency=medium . * New upstream release, incorporating security issues. (Closes: #983446) - Refresh patches. . redis (5:6.0.10-4) unstable; urgency=medium . * New upstream release - Fix cluster access to unaligned memory on ARM architectures with hard alignment requirements such as armhf and arm64. (Closes: #982504) * wrap-and-sort -sa. . redis (5:6.0.9-4) unstable; urgency=medium . * Send systemd readiness notification when we are ready to accept connections in order to fix systemd integration when Redis is used with replicaof. Thanks to Guillem Jover for the report and patch. (Closes: #981226) . redis (5:6.0.9-3) unstable; urgency=medium . * Also remove the /etc/redis directory in purge. * Allow /etc/redis to be rewritten. Thanks to Yossi Gottlieb for the patch. (Closes: #981000) . redis (5:6.0.9-2) unstable; urgency=medium . * Enable systemd Type=notify support. Thanks to Michael Prokop for all his help in integration. (Closes: #977852) * Bump Standards-Version to 4.5.1. . redis (5:6.0.9-1) unstable; urgency=medium . * New upstream release. - Update patches. . redis (5:6.0.8-2) unstable; urgency=medium . * Apply a patch from Yossi Gottlieb to fix a crash when reporting RDB/AOF file errors. (Closes: #972683) * Refresh patches. . redis (5:6.0.8-1) unstable; urgency=medium . * New upstream release. . redis (5:6.0.7-1) unstable; urgency=medium . * New upstream release. * Refresh patches. * Set some Forwarded headers. . redis (5:6.0.6-1) unstable; urgency=medium . * New upstream release. * Refresh patches. . redis (5:6.0.5-1) unstable; urgency=medium . * New upstream release. . redis (5:6.0.4-1) unstable; urgency=medium . * New upstream release. . redis (5:6.0.3-1) unstable; urgency=medium . * New upstream release. . redis (5:6.0.1-2) unstable; urgency=medium . * Upload to unstable. . redis (5:6.0.1-1) experimental; urgency=medium . * New upstream "General Availability" release. . redis (5:6.0.0-2) unstable; urgency=medium . * Mark 0004-redis-check-rdb as being flaky for now. * Wrap long changelog line. * Correct spelling mistake in autopkgtest comment. . redis (5:6.0.0-1) unstable; urgency=medium . * New upstream "GA" release. - Drop 0002-Mark-extern-definition-of-SDS_NOINIT-in-sds.h.patch; merged upstream. * Upload to unstable. - Update debian/gbp.conf. . redis (5:6.0~rc4-1) experimental; urgency=medium . * New upstream beta release. * Use the newly-package liblzf-dev package over the local version. (Closes: #958321) * Refresh patches. . redis (5:6.0~rc3-1) experimental; urgency=medium . * New upstream beta release. . redis (5:6.0~rc2-1) experimental; urgency=medium . * New upstream beta release. * Refresh patches. . redis (5:6.0~rc1-3) experimental; urgency=medium . * Install openssl in the testsuite; required for generating test certificates. * Correct a typo in a previous changelog entry. . redis (5:6.0~rc1-2) experimental; urgency=medium . * Add support for TLS added in Redis 6.x. Thanks to Jason Perrin for the patch. (Closes: #951255) * Add a comment regarding why we export a MAKEFLAGS variable in debian/rules. * Bump Standards-Version to 4.5.0. . redis (5:6.0~rc1-1) experimental; urgency=medium . * New upstream RC1 release. * Refresh patches. * Disable using the system hiredis for now, awaiting a a new upstream release. . redis (5:5.0.7-7) unstable; urgency=medium . * Add a sleep to ensure that the redis server has started before running the autopkgtests. . redis (5:5.0.7-6) unstable; urgency=medium . * No change sourceful upload to permit migration to testing. . redis (5:5.0.7-5) unstable; urgency=medium . * Ensure that the redis daemon is running prior to running the autopkgtests. . redis (5:5.0.7-4) unstable; urgency=medium . * Use the newly-package liblzf-dev package over the local version. (Closes: #958321) * Don't duplicate long description of the redis-server package in the metapackage. . redis (5:5.0.7-3) unstable; urgency=medium . * Fix FTBFS with GCC 10. (Closes: #957751) * Refresh all patches. . redis (5:5.0.7-2) unstable; urgency=medium . [ Christian Göttsche ] * Update systemd service to reflect new names, etc. * Create directories in postinst with correct SELinux context. . [ Chris Lamb ] * Bump Standards-Version to 4.5.0. . [ David Prévot ] * Update long description to remove duplicate information. . redis (5:5.0.7-1) unstable; urgency=medium . * New upstream bugfix release. * Bump Standards-Version to 4.4.1. * Run wrap-and-sort -sa. . redis (5:5.0.6-1) unstable; urgency=medium . * New upstream release. * Specify "Rules-Requires-Root: no">. . redis (5:5.0.5-2) unstable; urgency=medium . * Sourceful upload to unstable to ensure testing migration. * Bump Standards-Version to 4.4.0. * Don't build release tags in gitlab-ci.yml. . redis (5:5.0.5-1) unstable; urgency=medium . * New upstream release. . redis (5:5.0.4-1) unstable; urgency=medium . * New upstream release. roundcube (1.4.13+dfsg.1-1~deb11u1) bullseye-security; urgency=high . * New security upstream release, with fix for CVE-2021-46144: XSS vulnerability via HTML messages with malicious CSS content (closes: #1003027). * Prepend '' to the test vector of the above. * Refresh d/patches. roundcube (1.4.13+dfsg.1-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . roundcube (1.4.13+dfsg.1-1~deb11u1) bullseye-security; urgency=high . * New security upstream release, with fix for CVE-2021-46144: XSS vulnerability via HTML messages with malicious CSS content (closes: #1003027). * Prepend '' to the test vector of the above. * Refresh d/patches. ruby2.7 (2.7.4-1+deb11u1) bullseye-security; urgency=high . * Add length limit option for methods that parses date strings. (Fixes: CVE-2021-41817) * When parsing cookies, only decode the values. (Fixes: CVE-2021-41819) * Add patch to fix integer overflow. (Fixes: CVE-2021-41816) (Closes: #1002995) rust-cbindgen (0.20.0-1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye. rust-cbindgen (0.20.0-1~deb10u2) buster; urgency=medium . * Non-maintainer upload. * Fix file timestamps from orig tarball by using a supported debhelper target in buster (execute_after_dh_* is not supported in dh 12.1). * debian/copyright: rename license paragraph to please lintian. rust-cbindgen (0.20.0-1~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to buster. * Vendor dependencies, they are not available in buster. * Only build the cbindgen binary. * Lower dh-cargo build-dep. rust-cbindgen (0.19.0-1) experimental; urgency=medium . * Package cbindgen 0.19.0 from crates.io using debcargo 2.4.4-alpha.0 rust-cbindgen (0.18.0-1) experimental; urgency=medium . * Package cbindgen 0.18.0 from crates.io using debcargo 2.4.4-alpha.0 s390-dasd (0.0.74~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye. s390-dasd (0.0.74~deb10u1) buster; urgency=medium . * Rebuild for buster. samba (2:4.13.13+dfsg-1~deb11u3) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Add patches for CVE-2022-0336 (Closes: #1004694) - CVE-2022-0336: pytest: Add a test for an SPN conflict with a re-added SPN. - CVE-2022-0336: s4/dsdb/samldb: Don't return early when an SPN is re-added to an object. * Add patches for CVE-2021-44142 (Closes: #1004693) - CVE-2021-44142: libadouble: add defines for icon lengths. - CVE-2021-44142: smbd: add Netatalk xattr used by vfs_fruit to the list of private Samba xattrs. - CVE-2021-44142: libadouble: harden ad_unpack_xattrs() - CVE-2021-44142: libadouble: add basic cmocka tests. - CVE-2021-44142: libadouble: harden parsing code. * Add patches to address "The CVE-2020-25717 username map [script] advice has undesired side effects for the local nt token" (Closes: #1001068) - CVE-2020-25727: idmap_nss: verify that the name of the sid belongs to the configured domain - CVE-2020-25717: tests/krb5: Add method to automatically obtain server credentials - CVE-2020-25717: nsswitch/nsstest.c: Lower 'non existent uid' to make room for new accounts - CVE-2020-25717: selftest: turn ad_member_no_nss_wb into ad_member_idmap_nss - CVE-2020-25717: tests/krb5: Add a test for idmap_nss mapping users to SIDs - CVE-2020-25717: s3:auth: Fallback to a SID/UID based mapping if the named based lookup fails schleuder (3.6.0-3+deb11u1) bullseye; urgency=medium . * debian/patches: - Pull in upstream patch to migrate boolean values to integers, if the ActiveRecord SQLite3 connection adapter is in use. Since ActiveRecord >= 6.0, the relevant code relies on boolean serialization to use 1 and 0, but does not natively recognize 't' and 'f' as booleans were previously serialized. This change made existing mailing lists fail, if people were upgrading buster to bullseye. (Closes: #100262) snapd (2.49-1+deb11u1) bullseye-security; urgency=high . * SECURITY UPDATE: local privilege escalation - 0015-cve-2021-44730-44731-4120.patch: Add validations of the location of the snap-confine binary within snapd. - 0015-cve-2021-44730-44731-4120: Fix race condition in snap-confine when preparing a private mount namespace for a snap. - 0016-cve-2021-2021-44730-44731-4120-auto-remove.patch: automatic remove vulnerable inactive core/snapd snaps - CVE-2021-44730 - CVE-2021-44731 * SECURITY UPDATE: data injection from malicious snaps - 0015-cve-2021-44730-44731-4120: Add validations of snap content interface and layout paths in snapd - CVE-2021-4120 - LP: #1949368 sogo (5.0.1-4+deb11u1) bullseye-security; urgency=high . * [CVE-2021-33054] fixes validation of SAML message signatures (closes: #989479) * Switch gbp debian branch to bullseye. sphinx-bootstrap-theme (0.7.1-1+deb11u1) bullseye; urgency=medium . * Fix search functionality Add a combined backport of 2 upstream commits that remove 1 extra spaces off of a few lines. spip (3.2.11-3+deb11u3) bullseye-security; urgency=high . * Backport security fix from 3.2.14 - arbitrary PHP code execution spip (3.2.11-3+deb11u2) bullseye; urgency=medium . * Document CVE fixed previously * Backport security fixes (XSS) from 3.2.13 spip (3.2.11-3+deb11u1) bullseye-security; urgency=high . * Set up branch debian/bullseye * Backport security fixes from 3.2.12 - SQL injections, remote code execution, XSS * Don’t ship vcs-control-file strongswan (5.9.1-1+deb11u2) bullseye-security; urgency=medium . * gbp: revert upstream branch name change * eap-authenticator: Enforce failure if MSK generation fails - Fix incorrect handling of Early EAP-Success Messages (CVE-2021-45079) symfony (4.4.19+dfsg-2+deb11u1) bullseye; urgency=medium . * Prevent CSV injection via formulas [CVE-2021-41270] systemd (247.3-7) bullseye; urgency=medium . * Switch debian-branch to debian/bullseye * udevadm-trigger: do not return immediately on EACCES. Fixes a regression when using systemd-networkd in an unprivileged LXD container. (Closes: #997006) * Revert multipath symlink race fix. Revert upstream commits which caused a regression in udev resulting in long delays when processing partitions with the same label. (Closes: #993738) * shared/rm-rf: loop over nested directories instead of recursing. Fixes uncontrolled recursion in systemd-tmpfiles. (CVE-2021-3997, Closes: #1003467) * Demote systemd-timesyncd from Depends to Recommends. This avoids a dependency cycle between systemd and systemd-timesyncd and thus makes dist upgrades more predictable and robust. It also allows minimal, systemd based containers where no NTP client is strictly necessary. To ensure that systemd-timesyncd is installed in a default installation created by d-i, bump its priority to standard. (Closes: #986651, #993947) * autopktest: Fix timedated test dependencies. Add an explicit systemd-timesyncd dependency as it is required by the timedated test. * machine: enter target PID namespace when adding a live mount. Fixes failure to bind mount a directory into a container using machinectl. (Closes: #993248) sysvinit (2.96-7+deb11u1) bullseye; urgency=medium . [ Tomas Pospisek ] * Clarify that when called with a `time` shutdown will not exit. That's important to know for programs or scripts that call `shutdown ... time` because they will never proceed after having called it (unless they fork exec or similar of course). Point in case: unattended-upgrades gets caught by this. . [ mirabilos ] * convert to a DEP 3 patch instead . [ Mark Hindley ] * Backport upstream patch to fix parsing of shutdown +0 (Closes: #1001795). tang (8-3+deb11u1) bullseye-security; urgency=high . * Fix data leak [CVE-2021-4076] tasksel (3.68+deb11u1) bullseye; urgency=medium . * Team upload. . * Install CUPS for all *-desktop tasks, now that task-print-service is no longer existing. See #993668 tryton-proteus (5.0.8-1+deb11u1) bullseye-security; urgency=high . * This release contains fixes for XML parsing vulnerabilities: https://discuss.tryton.org/t/security-release-for-issue11219-and-issue11244/5059 https://bugs.tryton.org/issue11219 (CVE-2022-26661) https://bugs.tryton.org/issue11244 (CVE-2022-26662) tryton-server (5.0.33-2+deb11u1) bullseye-security; urgency=high . * This release contains fixes for XML parsing vulnerabilities: https://discuss.tryton.org/t/security-release-for-issue11219-and-issue11244/5059 https://bugs.tryton.org/issue11219 (CVE-2022-26661) https://bugs.tryton.org/issue11244 (CVE-2022-26662) uriparser (0.9.4+dfsg-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * UriNormalize.c: Fix .hostText copying in uriMakeOwnerEngine (CVE-2021-46141) * UriParse.c: Adjust uriFreeUriMembers* to fixed uriMakeOwner* behavior (CVE-2021-46141) * UriNormalize.c: Fix handling of empty segments in uriPreventLeakage (CVE-2021-46142) usb.ids (2022.02.15-0+deb11u1) bullseye; urgency=medium . * Upload to bullseye. usb.ids (2021.12.24-1) unstable; urgency=medium . * New upstream version. * Bump Standards-Version to 4.6.0 (no changes). usb.ids (2021.07.19-1) unstable; urgency=medium . * New upstream version. usb.ids (2021.07.01-1) unstable; urgency=medium . * New upstream version. usbview (2.0-21-g6fe2f4f-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix authorization for inactive or arbitrary other users (CVE-2022-23220) * Pass on the command line parameters to GTK only if not invoked via pkexec usbview (2.0-21-g6fe2f4f-2+deb10u1) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix authorization for inactive or arbitrary other users (CVE-2022-23220) * Pass on the command line parameters to GTK only if not invoked via pkexec util-linux (2.36.1-8+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * include/strutils: Add ul_strtou64() function * libmount: fix UID check for FUSE umount [CVE-2021-3995] * libmount: fix (deleted) suffix issue [CVE-2021-3996] varnish (6.5.1-1+deb11u2) bullseye-security; urgency=medium . * Apply upstream patch to fix: VSV00008 Varnish HTTP/1 Request Smuggling Vulnerability (CVE-2022-23959). (Closes: #1004433) varnish (6.5.1-1+deb11u1) bullseye-security; urgency=medium . * Apply upstream patches to fix VSV00007: Varnish HTTP/2 Request Smuggling Attack (CVE-2021-36740). (Closes: #991040) webkit2gtk (2.34.6-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. webkit2gtk (2.34.6-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. * debian/patches/force-single-process.patch: + Force the single-process mode in Evolution and Geary * debian/control: + Remove Breaks for Evolution < 3.34.1. + Remove build dependency on libwpebackend-fdo-1.0-dev, libmanette-0.2-dev and liblcms2-dev. + Switch build dependency from libenchant-2-dev to libenchant-dev. + Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: + Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. * Set the debhelper compatibility level back to 10. This fixes a dh_dwz error ".debug_info section not present" - Add debian/compat file. - Update build dependency on debhelper. webkit2gtk (2.34.5-1) unstable; urgency=high . * New upstream release. + Fixes CVE-2022-22589, CVE-2022-22590 and CVE-2022-22592. webkit2gtk (2.34.4-1) unstable; urgency=high . * New upstream release. * Set the debhelper compatibility level to 12: - Get rid of debian/compat. - Add build dependency on debhelper-compat. * debian/rules: - Stop using --builddirectory=build, .gir files no longer seem to contain references to the build directory (see the 2.27.90-1 entry for more details). * debian/copyright: + Update copyright years. webkit2gtk (2.34.4-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. - Fixes CVE-2021-30934, CVE-2021-30936, CVE-2021-30951, CVE-2021-30952, CVE-2021-30953, CVE-2021-30954, CVE-2021-30984. webkit2gtk (2.34.4-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. - Fixes CVE-2021-30934, CVE-2021-30936, CVE-2021-30951, CVE-2021-30952, CVE-2021-30953, CVE-2021-30954, CVE-2021-30984. * debian/patches/force-single-process.patch: + Force the single-process mode in Evolution and Geary * debian/control: + Remove Breaks for Evolution < 3.34.1. + Remove build dependency on libwpebackend-fdo-1.0-dev, libmanette-0.2-dev and liblcms2-dev. + Switch build dependency from libenchant-2-dev to libenchant-dev. + Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: + Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. * Set the debhelper compatibility level back to 10. This fixes a dh_dwz error ".debug_info section not present" - Add debian/compat file. - Update build dependency on debhelper. webkit2gtk (2.34.3-1) unstable; urgency=high . [ Alberto Garcia ] * New upstream release. * The WebKitGTK security advisory WSA-2021-0007 lists the following security fixes in the latest versions of WebKitGTK: + CVE-2021-30809, CVE-2021-30836 (fixed in 2.32.4). + CVE-2021-30818, CVE-2021-30823, CVE-2021-30884, CVE-2021-30888, CVE-2021-30889, CVE-2021-30897 (fixed in 2.34.0). + CVE-2021-30887, CVE-2021-30890 (fixed in 2.34.3). . [ Sebastien Bacher ] * debian/rules: + Explicitly disable lto since when it's on the build is failing, that doesn't impact Debian by default but is an issue on Ubuntu. (Closes: #1000598) + Don't recommend xdg-desktop-portal-gtk on Ubuntu i386, it's a partial architecture and the binary doesn't exist (Closes: #1000599). webkit2gtk (2.34.3-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30887, CVE-2021-30890. webkit2gtk (2.34.3-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. + Fixes CVE-2021-30887, CVE-2021-30890. * debian/patches/force-single-process.patch: + Force the single-process mode in Evolution and Geary * debian/control: + Remove Breaks for Evolution < 3.34.1. + Remove build dependency on libwpebackend-fdo-1.0-dev, libmanette-0.2-dev and liblcms2-dev. + Switch build dependency from libenchant-2-dev to libenchant-dev. + Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: + Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. webkit2gtk (2.34.2-1) unstable; urgency=medium . * New upstream release. webkit2gtk (2.34.2-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. webkit2gtk (2.34.1-1) unstable; urgency=high . [ Alberto Garcia ] * New upstream release. * debian/rules: + Build with -O1 in sh3 and sh4 (Closes: #995717). * debian/copyright: + Update copyright information of all files. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/libwebkit2gtk-4.0-37.lintian-overrides: + Override library-not-linked-against-libc. * debian/source/lintian-overrides: + Update source-is-missing overrides. * debian/control: + Update Standards-Version to 4.6.0.1 (no changes). . [ Sebastien Bacher ] * debian/control, debian/rules: + handle gstreamer1.0-plugins-bad with the same Ubuntu override than libav, it's also in universe (Closes: #995166). weechat (3.0-1+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * CVE-2021-40516: A crafted WebSocket frame could result in a crash in the Relay plugin. (Closes: #993803) wolfssl (4.6.0+p1-0+deb11u1) bullseye; urgency=medium . * Stable update to address the following vulnerabilities. The updated version was released by upstream: - PR 3676: CVE-2021-3336 - PR 3990: CVE-2021-37155 (OCSP Match Issue) - PR 4211: CVE-2021-38597 - PR 4629: CVE-2021-44718 - PR 4813: CVE-2022-25638 - PR 4831: CVE-2022-25640 * Drop 58f9b6ec01f0caf89e9e4d37a8816b310005aaf1.patch, which was previously cherry-picked from upstream. * Upstream updated some certificates in the test suite. wordpress (5.7.5+dfsg1-0+deb11u1) bullseye-security; urgency=high . * Upstream security release Closes: #1003243 - CVE-2022-21662 - Stored XSS through authenticated users - CVE-2022-21663 - Authenticated Object Injection in Multisites - CVE-2022-21661 - WordPress: SQL Injection through WP_Query - CVE-2022-21664 - SQL injection due to improper sanitization in WP_Meta_Query * WordPress 5.7.4 just had a removal of an old CA certificate which isn't used in Debian installations wpewebkit (2.34.6-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. wpewebkit (2.34.5-1) unstable; urgency=high . * New upstream release. wpewebkit (2.34.4-1) unstable; urgency=high . * New upstream release. * Set the debhelper compatibility level to 12: - Get rid of debian/compat. - Add build dependency on debhelper-compat. * debian/copyright: + Update copyright years. wpewebkit (2.34.4-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. - Fixes CVE-2021-30934, CVE-2021-30936, CVE-2021-30951, CVE-2021-30952, CVE-2021-30953, CVE-2021-30954, CVE-2021-30984. wpewebkit (2.34.3-1) unstable; urgency=high . * New upstream release. wpewebkit (2.34.3-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30887, CVE-2021-30890. wpewebkit (2.34.2-1) unstable; urgency=medium . * New upstream release. * debian/patches/fix-ftbfs-m68k.patch: + Update patch. wpewebkit (2.34.1-1) unstable; urgency=high . * New upstream release. * debian/gbp.conf: + Update upstream branch name. * Update copyright information of all files. * Refresh all patches. * debian/rules: + Build with -O1 in sh3 and sh4 (see #995717). + Build with -DUSE_SOUP2=ON. * debian/control: + Add build dependency on liblcms2-dev (see #880697). + Update Standards-Version to 4.6.0.1 (no changes). * debian/libwpewebkit-1.0-3.symbols: + Update symbols. * debian/libwpewebkit-1.0-3.lintian-overrides: + Override library-not-linked-against-libc. * debian/source/lintian-overrides: + Update source-is-missing overrides. xorg-server (2:1.20.11-1+deb11u1) bullseye-security; urgency=high . * Team upload. * record: Fix out of bounds access in SwapCreateRegister() [CVE-2021-4011] * xfixes: Fix out of bounds access in *ProcXFixesCreatePointerBarrier() [CVE-2021-4009] * Xext: Fix out of bounds access in SProcScreenSaverSuspend() [CVE-2021-4010] * render: Fix out of bounds access in SProcRenderCompositeGlyphs() [CVE-2021-4008] xserver-xorg-video-intel (2:2.99.917+git20200714-1+deb11u1) bullseye; urgency=medium . [ Julien Cristau ] * Fix SIGILL crash on non-SSE2 CPUs (closes: #979276) xterm (366-1+deb11u1) bullseye; urgency=medium . * Cherry-pick sixel graphics fixes from xterm 370d and 370f. - Check for out-of-bounds condition while drawing sixels, and quit that operation (report by Nick Black (CVE-2022-24130), Closes: #1004689). zsh (5.8-6+deb11u1) bullseye-security; urgency=high . * [452b3045] Cherry-pick zsh 5.8.1 fixes for CVE-2021-45444 for 5.8. * [c8a1b7a1] Install new Etc/CVE-2021-45444-VCS_Info-workaround.patch into zsh-doc. It is not relevant for Debian's package but gives hints about CVE-2021-45444 mitigations on other platforms which aren't updated yet. * [201dacfc] Update cherry-pick-CVE-2021-45444_2.patch to use a file name without blanks as actually used in the final 5.8.1 release. zziplib (0.13.62-3.3+deb11u1) bullseye; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2020-18442 Because of mishandling a return value, an attacker might cause a denial of service due to an infinite loop. ======================================= Sat, 18 Dec 2021 - Debian 11.2 released ======================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:54:47 -0000] [ftpmaster: Archive Administrator] Removed the following packages from stable: libwebkit2gtk-4.0-37-gtk2 | 2.32.4-1~deb11u1 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by webkit2gtk - based on source metadata) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:15 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: btrfs-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x cdrom-core-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x crc-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x crypto-dm-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x crypto-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x dasd-extra-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x dasd-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x ext4-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x f2fs-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x fat-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x fuse-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x isofs-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x kernel-image-5.10.0-8-s390x-di | 5.10.46-5 | s390x linux-headers-5.10.0-8-s390x | 5.10.46-5 | s390x linux-image-5.10.0-8-s390x | 5.10.46-5 | s390x linux-image-5.10.0-8-s390x-dbg | 5.10.46-5 | s390x loop-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x md-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x mtd-core-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x multipath-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x nbd-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x nic-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x scsi-core-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x scsi-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x udf-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x xfs-modules-5.10.0-8-s390x-di | 5.10.46-5 | s390x ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:22 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: affs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel ata-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel btrfs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel cdrom-core-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel crc-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel crypto-dm-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel crypto-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel event-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel ext4-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel f2fs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel fat-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel fb-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel fuse-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel i2c-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel input-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel isofs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel jfs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel kernel-image-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel linux-headers-5.10.0-8-4kc-malta | 5.10.46-5 | mipsel linux-image-5.10.0-8-4kc-malta | 5.10.46-5 | mipsel linux-image-5.10.0-8-4kc-malta-dbg | 5.10.46-5 | mipsel loop-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel md-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel minix-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel mmc-core-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel mmc-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel mouse-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel mtd-core-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel multipath-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel nbd-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel nic-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel nic-shared-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel nic-usb-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel nic-wireless-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel pata-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel ppp-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel sata-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel scsi-core-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel scsi-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel scsi-nic-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel sound-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel squashfs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel udf-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel usb-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel usb-serial-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel usb-storage-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel xfs-modules-5.10.0-8-4kc-malta-di | 5.10.46-5 | mipsel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:30 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: ata-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el btrfs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el cdrom-core-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el crc-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el crypto-dm-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el crypto-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el event-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el ext4-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el f2fs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el fancontrol-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el fat-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el fb-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el firewire-core-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el fuse-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el hypervisor-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el i2c-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el input-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el isofs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el jfs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el kernel-image-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el linux-headers-5.10.0-8-powerpc64le | 5.10.46-5 | ppc64el linux-image-5.10.0-8-powerpc64le | 5.10.46-5 | ppc64el linux-image-5.10.0-8-powerpc64le-dbg | 5.10.46-5 | ppc64el loop-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el md-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el mouse-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el mtd-core-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el multipath-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el nbd-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el nic-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el nic-shared-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el nic-usb-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el nic-wireless-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el ppp-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el sata-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el scsi-core-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el scsi-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el scsi-nic-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el serial-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el squashfs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el udf-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el uinput-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el usb-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el usb-serial-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el usb-storage-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el xfs-modules-5.10.0-8-powerpc64le-di | 5.10.46-5 | ppc64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:38 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: linux-headers-5.10.0-8-amd64 | 5.10.46-5 | amd64 linux-headers-5.10.0-8-cloud-amd64 | 5.10.46-5 | amd64 linux-headers-5.10.0-8-rt-amd64 | 5.10.46-5 | amd64 linux-image-5.10.0-8-amd64-dbg | 5.10.46-5 | amd64 linux-image-5.10.0-8-amd64-unsigned | 5.10.46-5 | amd64 linux-image-5.10.0-8-cloud-amd64-dbg | 5.10.46-5 | amd64 linux-image-5.10.0-8-cloud-amd64-unsigned | 5.10.46-5 | amd64 linux-image-5.10.0-8-rt-amd64-dbg | 5.10.46-5 | amd64 linux-image-5.10.0-8-rt-amd64-unsigned | 5.10.46-5 | amd64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:46 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: linux-headers-5.10.0-8-arm64 | 5.10.46-5 | arm64 linux-headers-5.10.0-8-cloud-arm64 | 5.10.46-5 | arm64 linux-headers-5.10.0-8-rt-arm64 | 5.10.46-5 | arm64 linux-image-5.10.0-8-arm64-dbg | 5.10.46-5 | arm64 linux-image-5.10.0-8-arm64-unsigned | 5.10.46-5 | arm64 linux-image-5.10.0-8-cloud-arm64-dbg | 5.10.46-5 | arm64 linux-image-5.10.0-8-cloud-arm64-unsigned | 5.10.46-5 | arm64 linux-image-5.10.0-8-rt-arm64-dbg | 5.10.46-5 | arm64 linux-image-5.10.0-8-rt-arm64-unsigned | 5.10.46-5 | arm64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:55:54 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: btrfs-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel cdrom-core-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel crc-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel crypto-dm-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel crypto-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel event-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel ext4-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel f2fs-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel fat-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel fb-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel fuse-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel input-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel ipv6-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel isofs-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel jffs2-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel jfs-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel kernel-image-5.10.0-8-marvell-di | 5.10.46-5 | armel leds-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel linux-headers-5.10.0-8-marvell | 5.10.46-5 | armel linux-headers-5.10.0-8-rpi | 5.10.46-5 | armel linux-image-5.10.0-8-marvell | 5.10.46-5 | armel linux-image-5.10.0-8-marvell-dbg | 5.10.46-5 | armel linux-image-5.10.0-8-rpi | 5.10.46-5 | armel linux-image-5.10.0-8-rpi-dbg | 5.10.46-5 | armel loop-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel md-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel minix-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel mmc-core-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel mmc-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel mouse-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel mtd-core-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel mtd-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel multipath-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel nbd-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel nic-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel nic-shared-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel nic-usb-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel ppp-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel sata-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel scsi-core-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel squashfs-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel udf-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel uinput-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel usb-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel usb-serial-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel usb-storage-modules-5.10.0-8-marvell-di | 5.10.46-5 | armel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:56:03 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: ata-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf btrfs-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf cdrom-core-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf crc-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf crypto-dm-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf crypto-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf efi-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf event-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf ext4-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf f2fs-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf fat-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf fb-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf fuse-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf i2c-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf input-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf isofs-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf jfs-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf kernel-image-5.10.0-8-armmp-di | 5.10.46-5 | armhf leds-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf linux-headers-5.10.0-8-armmp | 5.10.46-5 | armhf linux-headers-5.10.0-8-armmp-lpae | 5.10.46-5 | armhf linux-headers-5.10.0-8-rt-armmp | 5.10.46-5 | armhf linux-image-5.10.0-8-armmp | 5.10.46-5 | armhf linux-image-5.10.0-8-armmp-dbg | 5.10.46-5 | armhf linux-image-5.10.0-8-armmp-lpae | 5.10.46-5 | armhf linux-image-5.10.0-8-armmp-lpae-dbg | 5.10.46-5 | armhf linux-image-5.10.0-8-rt-armmp | 5.10.46-5 | armhf linux-image-5.10.0-8-rt-armmp-dbg | 5.10.46-5 | armhf loop-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf md-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf mmc-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf mtd-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf multipath-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf nbd-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf nic-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf nic-shared-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf nic-usb-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf nic-wireless-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf pata-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf ppp-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf sata-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf scsi-core-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf scsi-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf scsi-nic-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf squashfs-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf udf-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf uinput-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf usb-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf usb-serial-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf usb-storage-modules-5.10.0-8-armmp-di | 5.10.46-5 | armhf ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:56:15 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: linux-headers-5.10.0-8-686 | 5.10.46-5 | i386 linux-headers-5.10.0-8-686-pae | 5.10.46-5 | i386 linux-headers-5.10.0-8-rt-686-pae | 5.10.46-5 | i386 linux-image-5.10.0-8-686-dbg | 5.10.46-5 | i386 linux-image-5.10.0-8-686-pae-dbg | 5.10.46-5 | i386 linux-image-5.10.0-8-686-pae-unsigned | 5.10.46-5 | i386 linux-image-5.10.0-8-686-unsigned | 5.10.46-5 | i386 linux-image-5.10.0-8-rt-686-pae-dbg | 5.10.46-5 | i386 linux-image-5.10.0-8-rt-686-pae-unsigned | 5.10.46-5 | i386 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:56:23 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: affs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el ata-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el btrfs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el cdrom-core-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el crc-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el crypto-dm-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el crypto-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el event-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el ext4-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el f2fs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el fat-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el fb-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el fuse-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el i2c-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el input-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el isofs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el jfs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el kernel-image-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el loop-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el md-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el minix-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el mmc-core-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el mmc-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el mouse-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el mtd-core-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el multipath-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el nbd-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el nic-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el nic-shared-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el nic-usb-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el nic-wireless-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el pata-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el ppp-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el sata-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el scsi-core-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el scsi-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el scsi-nic-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el sound-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el squashfs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el udf-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el usb-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el usb-serial-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el usb-storage-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el xfs-modules-5.10.0-8-5kc-malta-di | 5.10.46-5 | mips64el ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:56:32 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: affs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel affs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel ata-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel btrfs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel btrfs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel cdrom-core-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel cdrom-core-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel crc-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel crc-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel crypto-dm-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel crypto-dm-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel crypto-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel crypto-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel event-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel event-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel ext4-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel ext4-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel f2fs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel f2fs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel fat-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel fat-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel fb-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel firewire-core-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel fuse-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel fuse-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel input-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel input-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel isofs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel isofs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel jfs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel jfs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel kernel-image-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel kernel-image-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel linux-headers-5.10.0-8-5kc-malta | 5.10.46-5 | mips64el, mipsel linux-headers-5.10.0-8-loongson-3 | 5.10.46-5 | mips64el, mipsel linux-headers-5.10.0-8-octeon | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-5kc-malta | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-5kc-malta-dbg | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-loongson-3 | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-loongson-3-dbg | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-octeon | 5.10.46-5 | mips64el, mipsel linux-image-5.10.0-8-octeon-dbg | 5.10.46-5 | mips64el, mipsel loop-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel loop-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel md-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel md-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel minix-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel minix-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel mtd-core-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel multipath-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel multipath-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel nbd-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nbd-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel nfs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nic-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nic-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel nic-shared-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nic-shared-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel nic-usb-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nic-usb-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel nic-wireless-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel nic-wireless-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel pata-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel pata-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel ppp-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel ppp-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel rtc-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel sata-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel sata-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel scsi-core-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel scsi-core-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel scsi-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel scsi-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel scsi-nic-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel scsi-nic-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel sound-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel sound-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel speakup-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel squashfs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel squashfs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel udf-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel udf-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel usb-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel usb-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel usb-serial-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel usb-serial-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel usb-storage-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel usb-storage-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel xfs-modules-5.10.0-8-loongson-3-di | 5.10.46-5 | mips64el, mipsel xfs-modules-5.10.0-8-octeon-di | 5.10.46-5 | mips64el, mipsel ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:56:41 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: acpi-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 ata-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 btrfs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 cdrom-core-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 crc-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 crypto-dm-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 crypto-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 efi-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 event-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 ext4-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 f2fs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 fat-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 fb-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 firewire-core-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 fuse-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 i2c-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 input-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 isofs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 jfs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 kernel-image-5.10.0-8-amd64-di | 5.10.46-5 | amd64 linux-image-5.10.0-8-amd64 | 5.10.46-5 | amd64 linux-image-5.10.0-8-cloud-amd64 | 5.10.46-5 | amd64 linux-image-5.10.0-8-rt-amd64 | 5.10.46-5 | amd64 loop-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 md-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 mmc-core-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 mmc-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 mouse-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 mtd-core-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 multipath-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nbd-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nic-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nic-pcmcia-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nic-shared-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nic-usb-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 nic-wireless-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 pata-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 pcmcia-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 pcmcia-storage-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 ppp-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 rfkill-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 sata-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 scsi-core-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 scsi-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 scsi-nic-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 serial-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 sound-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 speakup-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 squashfs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 udf-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 uinput-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 usb-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 usb-serial-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 usb-storage-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 xfs-modules-5.10.0-8-amd64-di | 5.10.46-5 | amd64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-amd64) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:57:08 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: ata-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 btrfs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 cdrom-core-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 crc-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 crypto-dm-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 crypto-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 efi-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 event-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 ext4-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 f2fs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 fat-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 fb-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 fuse-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 i2c-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 input-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 isofs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 jfs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 kernel-image-5.10.0-8-arm64-di | 5.10.46-5 | arm64 leds-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 linux-image-5.10.0-8-arm64 | 5.10.46-5 | arm64 linux-image-5.10.0-8-cloud-arm64 | 5.10.46-5 | arm64 linux-image-5.10.0-8-rt-arm64 | 5.10.46-5 | arm64 loop-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 md-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 mmc-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 mtd-core-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 multipath-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 nbd-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 nic-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 nic-shared-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 nic-usb-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 nic-wireless-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 ppp-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 sata-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 scsi-core-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 scsi-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 scsi-nic-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 squashfs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 udf-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 uinput-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 usb-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 usb-serial-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 usb-storage-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 xfs-modules-5.10.0-8-arm64-di | 5.10.46-5 | arm64 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-arm64) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:57:17 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: acpi-modules-5.10.0-8-686-di | 5.10.46-5 | i386 acpi-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 ata-modules-5.10.0-8-686-di | 5.10.46-5 | i386 ata-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 btrfs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 btrfs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 cdrom-core-modules-5.10.0-8-686-di | 5.10.46-5 | i386 cdrom-core-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 crc-modules-5.10.0-8-686-di | 5.10.46-5 | i386 crc-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 crypto-dm-modules-5.10.0-8-686-di | 5.10.46-5 | i386 crypto-dm-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 crypto-modules-5.10.0-8-686-di | 5.10.46-5 | i386 crypto-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 efi-modules-5.10.0-8-686-di | 5.10.46-5 | i386 efi-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 event-modules-5.10.0-8-686-di | 5.10.46-5 | i386 event-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 ext4-modules-5.10.0-8-686-di | 5.10.46-5 | i386 ext4-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 f2fs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 f2fs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 fat-modules-5.10.0-8-686-di | 5.10.46-5 | i386 fat-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 fb-modules-5.10.0-8-686-di | 5.10.46-5 | i386 fb-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 firewire-core-modules-5.10.0-8-686-di | 5.10.46-5 | i386 firewire-core-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 fuse-modules-5.10.0-8-686-di | 5.10.46-5 | i386 fuse-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 i2c-modules-5.10.0-8-686-di | 5.10.46-5 | i386 i2c-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 input-modules-5.10.0-8-686-di | 5.10.46-5 | i386 input-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 isofs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 isofs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 jfs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 jfs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 kernel-image-5.10.0-8-686-di | 5.10.46-5 | i386 kernel-image-5.10.0-8-686-pae-di | 5.10.46-5 | i386 linux-image-5.10.0-8-686 | 5.10.46-5 | i386 linux-image-5.10.0-8-686-pae | 5.10.46-5 | i386 linux-image-5.10.0-8-rt-686-pae | 5.10.46-5 | i386 loop-modules-5.10.0-8-686-di | 5.10.46-5 | i386 loop-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 md-modules-5.10.0-8-686-di | 5.10.46-5 | i386 md-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 mmc-core-modules-5.10.0-8-686-di | 5.10.46-5 | i386 mmc-core-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 mmc-modules-5.10.0-8-686-di | 5.10.46-5 | i386 mmc-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 mouse-modules-5.10.0-8-686-di | 5.10.46-5 | i386 mouse-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 mtd-core-modules-5.10.0-8-686-di | 5.10.46-5 | i386 mtd-core-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 multipath-modules-5.10.0-8-686-di | 5.10.46-5 | i386 multipath-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nbd-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nbd-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nic-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nic-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nic-pcmcia-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nic-pcmcia-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nic-shared-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nic-shared-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nic-usb-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nic-usb-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 nic-wireless-modules-5.10.0-8-686-di | 5.10.46-5 | i386 nic-wireless-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 pata-modules-5.10.0-8-686-di | 5.10.46-5 | i386 pata-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 pcmcia-modules-5.10.0-8-686-di | 5.10.46-5 | i386 pcmcia-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 pcmcia-storage-modules-5.10.0-8-686-di | 5.10.46-5 | i386 pcmcia-storage-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 ppp-modules-5.10.0-8-686-di | 5.10.46-5 | i386 ppp-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 rfkill-modules-5.10.0-8-686-di | 5.10.46-5 | i386 rfkill-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 sata-modules-5.10.0-8-686-di | 5.10.46-5 | i386 sata-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 scsi-core-modules-5.10.0-8-686-di | 5.10.46-5 | i386 scsi-core-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 scsi-modules-5.10.0-8-686-di | 5.10.46-5 | i386 scsi-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 scsi-nic-modules-5.10.0-8-686-di | 5.10.46-5 | i386 scsi-nic-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 serial-modules-5.10.0-8-686-di | 5.10.46-5 | i386 serial-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 sound-modules-5.10.0-8-686-di | 5.10.46-5 | i386 sound-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 speakup-modules-5.10.0-8-686-di | 5.10.46-5 | i386 speakup-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 squashfs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 squashfs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 udf-modules-5.10.0-8-686-di | 5.10.46-5 | i386 udf-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 uinput-modules-5.10.0-8-686-di | 5.10.46-5 | i386 uinput-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 usb-modules-5.10.0-8-686-di | 5.10.46-5 | i386 usb-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 usb-serial-modules-5.10.0-8-686-di | 5.10.46-5 | i386 usb-serial-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 usb-storage-modules-5.10.0-8-686-di | 5.10.46-5 | i386 usb-storage-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 xfs-modules-5.10.0-8-686-di | 5.10.46-5 | i386 xfs-modules-5.10.0-8-686-pae-di | 5.10.46-5 | i386 ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux-signed-i386) ---------------------------------------------- ========================================================================= ========================================================================= [Date: Sat, 18 Dec 2021 09:57:33 -0000] [ftpmaster: Mark Hymers] Removed the following packages from stable: linux-headers-5.10.0-8-common | 5.10.46-5 | all linux-headers-5.10.0-8-common-rt | 5.10.46-5 | all linux-support-5.10.0-8 | 5.10.46-5 | all ------------------- Reason ------------------- [auto-cruft] NBS (no longer built by linux - based on source metadata) ---------------------------------------------- ========================================================================= apache-log4j2 (2.16.0-1~deb11u1) bullseye-security; urgency=high . * Team upload. * Backport version 2.16.0 to Bullseye and fix CVE-2021-45046. (Closes: #1001729) apache-log4j2 (2.16.0-1~deb10u1) buster-security; urgency=high . * Team upload. * Backport version 2.16.0 to Buster and fix CVE-2021-45046. (Closes: #1001729) apache-log4j2 (2.15.0-1) unstable; urgency=high . * Team upload. * New upstream version 2.15.0. - Fix CVE-2021-44228: Chen Zhaojun of Alibaba Cloud Security Team discovered that JNDI features used in configuration, log messages, and parameters do not protect against attacker controlled LDAP and other JNDI related endpoints. An attacker who can control log messages or log message parameters can execute arbitrary code loaded from LDAP servers when message lookup substitution is enabled. From version 2.15.0, this behavior has been disabled by default. (Closes: #1001478) * Update debian/watch to track the latest releases. * Declare compliance with Debian Policy 4.6.0. apache-log4j2 (2.15.0-1~deb11u1) bullseye-security; urgency=high . * Team upload. * Backport version 2.15.0 to Bullseye and fix CVE-2021-44228. (Closes: #1001478) apache-log4j2 (2.15.0-1~deb10u1) buster-security; urgency=high . * Team upload. * Backport version 2.15.0 to Buster and fix CVE-2021-44228. (Closes: #1001478) * Fix CVE-2020-9488: Improper validation of certificate with host mismatch in Apache Log4j SMTP appender. This could allow an SMTPS connection to be intercepted by a man-in-the-middle attack which could leak any log messages sent through that appender. (Closes: #959450) apache2 (2.4.51-1~deb11u1) bullseye-security; urgency=medium . * New upstream version 2.4.51 (Closes: CVE-2021-41773, CVE-2021-42013) * Refresh patches apache2 (2.4.51-1~bpo10+2) buster-backports; urgency=medium . * Rebuild for buster-backports apache2 (2.4.51-1~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports-sloppy apache2 (2.4.50-1) unstable; urgency=high . * New upstream version 2.4.50 (Closes: CVE-2021-41773, CVE-2021-41524) * Remove patches already merged upstream apache2 (2.4.50-1~deb11u1) bullseye-security; urgency=medium . [ Ondřej Surý ] * New upstream version 2.4.50 (Closes: CVE-2021-41524, CVE-2021-41773) . [ Yadd ] * Refresh patches and drop CVE-2021-40438-improvement, correctly-count-active-child-processes and spelling-errors patches apache2 (2.4.49-4) unstable; urgency=medium . [ Ondřej Surý ] * Add upstream patch to fix crash in 2.4.49 apache2 (2.4.49-3) unstable; urgency=medium . [ Yadd ] * Re-export upstream signing key without extra signatures. * Drop transition for old debug package migration. . [ Moritz Muehlenhoff ] * Fix CVE-2021-40438 regression apache2 (2.4.49-2) unstable; urgency=medium . [ Michiel Hazelhof ] * Fix multi instance issue (Closes: #868861) . [ Philippe Ombredanne ] * Fix GPL version typo in copyright file apache2 (2.4.49-1) unstable; urgency=medium . * Update upstream GPG keys * New upstream version 2.4.49 * Refresh patches apache2 (2.4.49-1~deb11u3) bullseye-security; urgency=medium . [ Ondřej Surý ] * Add upstream patch to fix crash in 2.4.49 apache2 (2.4.49-1~deb11u2) bullseye-security; urgency=medium . [ Yadd ] * Re-export upstream signing key without extra signatures. . [ Moritz Muehlenhoff ] * Fix CVE-2021-40438 regression apache2 (2.4.49-1~deb11u1) bullseye-security; urgency=high . * Update upstream GPG keys * New upstream version 2.4.49 (Closes: CVE-2021-34798, CVE-2021-36160, CVE-2021-39275, CVE-2021-40438) * Refresh patches apache2 (2.4.49-1~bpo10+1) buster-backports-sloppy; urgency=medium . * Rebuild for buster-backports-sloppy apache2 (2.4.48-4) unstable; urgency=medium . * Fix mod_proxy HTTP2 request line injection (Closes: CVE-2021-33193) authheaders (0.13.1-1) bullseye; urgency=medium . * New upstream bugfix release * Update debian/watch to track 0.13 for stable updates base-files (11.1+deb11u2) bullseye; urgency=medium . * Change /etc/debian_version to 11.2, for Debian 11.2 point release. bind9 (1:9.16.22-1~deb11u1) bullseye-security; urgency=high . * New upstream version 9.16.22 + CVE-2021-25219: The "lame-ttl" option is now forcibly set to 0. This effectively disables the lame server cache, as it could previously be abused by an attacker to significantly degrade resolver performance. bind9 (1:9.16.22-1~deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. * Cherry-pick upstream fix to build with Sphinx < 2.0.0 (only necessary for buster) . bind9 (1:9.16.22-1~deb11u1) bullseye-security; urgency=high . * New upstream version 9.16.22 + CVE-2021-25219: The "lame-ttl" option is now forcibly set to 0. This effectively disables the lame server cache, as it could previously be abused by an attacker to significantly degrade resolver performance. bind9 (1:9.16.21-1) unstable; urgency=medium . * New upstream version 9.16.21 bpftrace (0.11.3-5+deb11u1) bullseye; urgency=medium . * d/patches: add patch to fix array indexing (Closes: #1001449). brltty (6.3+dfsg-1+deb11u1) bullseye; urgency=medium . [ Gregory Nowak ] * brltty.init: Make it wait for $local_fs, like the systemd service does. (Closes: Bug#994729) btrbk (0.27.1-1.1+deb11u2) bullseye; urgency=high . * Non-maintainer upload by the LTS Team. * regression fix for CVE-2021-38173 (Closes: #996260, #996266) calibre (5.12.0+dfsg-1+deb11u1) bullseye; urgency=medium . * Avoid to use embedded assignment syntax (Closes: #998744) chrony (4.0-8+deb11u1) bullseye; urgency=medium . * debian/patches/: - Add fix-seccomp-filter-for-BINDTODEVICE-socket-option.patch to be able to bind a socket to a network device with a name longer than 3 characters when the system call filter is enabled. (Closes: #995207) cmake (3.18.4-2+deb11u1) bullseye; urgency=medium . * Team upload. * Add PostgreSQL 13 to known versions (Closes: #990623) containerd (1.4.12~ds1-1~deb11u1) bullseye; urgency=medium . * New upstream version 1.4.12~ds1 + 1.4.12 * Mitigate CVE-2021-41190: Handle ambiguous OCI manifest parsing * Update pull to try next mirror for non-404 errors * Update pull to handle of non-https urls in descriptors + 1.4.11 * CVE-2021-41103: Fix insufficiently restricted permissions on container root and plugin directories + 1.4.10 * Support "clone3" in default seccomp profile * Fix panic in metadata content writer on copy error + 1.4.9 * Update pull authorization logic on redirect * Fix user agent used for fetching registry authentication tokens + 1.4.8 * CVE-2021-32760: Archive package allows chmod of file outside of unpack target directory + 1.4.7 * Fix invalid validation error checking * Fix error on image pull resume * Refresh patches + Drop CVE-2021-32760 patch + Drop CVE-2021-41103 patch + Refresh 0005-backport-github.com-containerd-containerd-remotes.patch with latest 1.5 release branch * Backport RPi1/RPi0 workaround (Closes: #998909) containerd (1.4.5~ds1-2+deb11u1) bullseye-security; urgency=high . * CVE-2021-41103: Insufficiently restricted permissions on container root and plugin directories curl (7.74.0-1.3+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Also remove -ffile-prefix-map from curl-config. (Closes: #990128) datatables.js (1.10.21+dfsg-2+deb11u1) bullseye; urgency=medium . * Team upload. * Fix: If an array was passed to the HTML escape entities function it would not have its contents escaped (Closes: #995229, CVE-2021-23445) debian-edu-config (2.11.56+deb11u2) bullseye; urgency=medium . [ Mike Gabriel ] * share/debian-edu-config/tools/pxe-addfirmware: Fix TFTP server path (/var/lib/tftpboot-> /srv/tftp). (Closes: #995610). . [ Wolfgang Schweer ] * Add real support for LTSP chroot setup and maintenance. (Closes: #996103). - Adjust existing scripts and manual page for improved LTSP chroot setup: + sbin/debian-edu-ltsp-install: Add LTSP diskless client chroot creation, use uniform locations for X2Go thin clients and diskless workstations, ensure sitesummary-client setup and configuration inside chroots, care for proper mount and umount operation, add xrdp-sesman to the list of masked services for LTSP clients, make sure all kernels are updated, adjust the ltsp.conf file content to match the changes, replace last edit date with version number, adjust usage information accordingly. + share/debian-edu-config/tools/run-at-firstboot: Care for the changed 'debian-edu-ltsp-install' default options to make sure combined server installations have a generated SquashFS image file just like before. + share/man/man8/debian-edu-ltsp-install.8: Update to reflect the changes. - Provide maintenance related scripts and manual pages: + sbin/debian-edu-ltsp-chroot: Tool to make LTSP chroot maintenance easy. + sbin/debian-edu-ltsp-initrd: Wrapper script for 'ltsp initrd' command. It makes sure that a use case specific initrd (/srv/tftp/ltsp/ltsp.img) is generated and moved to the right location. + sbin/debian-edu-ltsp-ipxe: Wrapper script for 'ltsp ipxe' command. It cares for a Debian Edu specific /srv/tftp/ltsp/ltsp.ipxe content. + share/debian-edu-config/tools/ltsp-addfirmware: Install firmware in LTSP chroots in case clients won't work otherwise. (Adjusted tool from Buster re-added to the binary package.) + share/man/man8/debian-edu-ltsp-chroot.8 + share/man/man8/debian-edu-ltsp-initrd.8 + share/man/man8/debian-edu-ltsp-ipxe.8 * Adjust Makefile to reflect the changes. debian-edu-doc (2.11.26+deb11u1) bullseye; urgency=medium . * Update Debian Edu Bullseye manual from the wiki; this makes sure that: - all LTSP setup and maintenance related changes are in the manual. - the Debian Edu Bullseye manual source file is the same like the one in the master branch / Debian unstable. * Update Bullseye and Buster manual translations (PO files) from the master branch / Debian unstable. * Update related PO addendum files from the master branch to make sure that all translators are credited correctly in the generated manuals. . [ Translation updates ] * Bullseye manual: - Chinese (Simplified): Ma Yong, Cube Kassaki and Jingxuan - Dutch: Frans Spiesschaert - German: Wolfgang Schweer - Norwegian Bokmål: Petter Reinholdtsen - Polish: Stanisław Stefan Krukowski - Portuguese (Brazil): Barbara Tostes and Fred Maranhão - Portuguese (Portugal): José Vieira - Portuguese: José Vieira - Romanian: Guilherme Fernandes Neto - Spanish: Eulalio Barbero Espinosa - Swedish: Luna Jernberg * Buster manual: - Chinese (Simplified): Cube Kassaki and Ma Yong - Norwegian Bokmål: Petter Reinholdtsen - Polish: Stanisław Stefan Krukowski - Portuguese (Brazil): Barbara Tostes and Fred Maranhão - Spanish: Eulalio Barbero Espinosa - Swedish: Luna Jernberg debian-installer (20210731+deb11u2) bullseye; urgency=medium . * Bump Linux kernel ABI to 5.10.0-10. debian-installer-netboot-images (20210731+deb11u2) bullseye; urgency=medium . * Update to 20210731+deb11u2, from bullseye-proposed-updates. distro-info-data (0.51+deb11u1) bullseye; urgency=medium . * Update data to 0.52: - Extend Ubuntu 14.04 and 16.04 ESM out to 10 years in total. - Add Ubuntu 22.04 LTS, Jammy Jellyfish. docker.io (20.10.5+dfsg1-1+deb11u1) bullseye; urgency=medium . * Backport patches for CVE-2021-41089 CVE-2021-41091 CVE-2021-41092 + CVE-2021-41089: Create parent directories inside a chroot during docker cp to prevent a specially crafted container from changing permissions of existing files in the host’s filesystem. + CVE-2021-41091: Lock down file permissions to prevent unprivileged users from discovering and executing programs in /var/lib/docker. + CVE-2021-41092: Ensure default auth config has address field set, to prevent credentials being sent to the default registry. (Closes: #998292) * Backport "clone3" syscall workaround in default seccomp policy (Closes: #995191) edk2 (2020.11-2+deb11u1) bullseye; urgency=medium . * Address Boot Guard TOCTOU vulnerability (CVE-2019-11098) (Closes: #991495) ffmpeg (7:4.3.3-0+deb11u1) bullseye-security; urgency=medium . * New upstream version 4.3.3 - Fixes various security issues: CVE-2020-20446 CVE-2020-20450 CVE-2020-20453 CVE-2020-22037 CVE-2020-22042 CVE-2021-38114 CVE-2021-38171 CVE-2021-38291 * debian/patches: Refresh patches ffmpeg (7:4.3.2-2) experimental; urgency=medium . * debian/: - Build with zimg (Closes: #966059) - Disable librvsg on hppa and sh4 (Closes: #983344) ffmpeg (7:4.3.2-1) experimental; urgency=medium . * New upstream release * debian/control: Add libgl-dev as alternative Build-Depends * debian/patches: Remove patches integrated upstream firefox-esr (78.15.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2021-44, also known as CVE-2021-38496, CVE-2021-38500. firefox-esr (78.14.0esr-1) unstable; urgency=medium . * New upstream release. * Fixes for mfsa2021-39, also known as CVE-2021-38493. . * debian/import-tar.py, debian/repack.py: Fixed for python 3.9. flatpak (1.10.5-0+deb11u1) bullseye-security; urgency=medium . * New upstream stable release 1.10.4 - Don't allow VFS manipulation which could be used to trick portals into allowing unintended access to host (Closes: #995935, CVE-2021-41133, GHSA-67h7-w3jq-vh4q) - Fix parental controls check when installing system-wide as non-root - OCI now uses the pax tar format, which handles large files better than GNU tar - tests: Fix test-sideload.sh if ostree is built with curl backend (this change is unnecessary but harmless in the configuration used in Debian) * New upstream stable release 1.10.5 - Fix regressions in 1.12.0 with extra data or --allow=multiarch. This only partially prevents use of VFS-manipulating syscalls if a newer kernel is used with an older libseccomp, but that's the best we will be able to achieve without new features in libseccomp and/or bubblewrap. * d/control: Build-depend on libseccomp 2.5.0. This ensures that we can block creation of new user namespaces via clone3(), which should be enough to prevent CVE-2021-41133 on at least Debian 11 kernels (Linux 5.10). It also allows blocking most of the syscalls we want to block; we cannot guarantee to be able to block mount_setattr(), which was only added in libseccomp 2.5.2, but that syscall was new in Linux 5.12. * d/p/Fix-handling-of-syscalls-only-allowed-by-devel.patch: Fix error handling for syscalls that are only allowed with --devel flatpak (1.10.5-0+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. - Revert "debian/control: Add libmalcontent-0-dev to the build-dependencies". It wasn't available in buster. - Revert "Add Suggests on malcontent-gui". - Downgrade dbus from Depends to Recommends. It only needed to be a Depends for the libmalcontent integration, but it is necessary for system-wide installations (without --user), so a Recommends still seems appropriate. * Note that this backport requires libseccomp2 (>= 2.5.0) from buster-backports. This is necessary in order to prevent clone3() when using backported bullseye kernels. . flatpak (1.10.5-0+deb11u1) bullseye-security; urgency=medium . * New upstream stable release 1.10.4 - Don't allow VFS manipulation which could be used to trick portals into allowing unintended access to host (Closes: #995935, CVE-2021-41133, GHSA-67h7-w3jq-vh4q) - Fix parental controls check when installing system-wide as non-root - OCI now uses the pax tar format, which handles large files better than GNU tar - tests: Fix test-sideload.sh if ostree is built with curl backend (this change is unnecessary but harmless in the configuration used in Debian) * New upstream stable release 1.10.5 - Fix regressions in 1.12.0 with extra data or --allow=multiarch. This only partially prevents use of VFS-manipulating syscalls if a newer kernel is used with an older libseccomp, but that's the best we will be able to achieve without new features in libseccomp and/or bubblewrap. * d/control: Build-depend on libseccomp 2.5.0. This ensures that we can block creation of new user namespaces via clone3(), which should be enough to prevent CVE-2021-41133 on at least Debian 11 kernels (Linux 5.10). It also allows blocking most of the syscalls we want to block; we cannot guarantee to be able to block mount_setattr(), which was only added in libseccomp 2.5.2, but that syscall was new in Linux 5.12. * d/p/Fix-handling-of-syscalls-only-allowed-by-devel.patch: Fix error handling for syscalls that are only allowed with --devel freeipmi (1.6.6-4+deb11u1) bullseye; urgency=medium . * Fix .pc files path in -dev packages. Thanks to наб (Closes: #996325) gdal (3.2.2+dfsg-2+deb11u1) bullseye; urgency=medium . * Update branch in gbp.conf & Vcs-Git URL. * Add upstream patches to fix BAG 2.0 Extract support in LVBAG driver. (closes: #1000437) gerbv (2.7.0-2+deb11u1) bullseye; urgency=medium . * Build for bullseye * [e983451] Rebuild patch queue from patch-queue branch Added patch: security/Fix-TALOS-2021-1402.patch Fixing CVE-2021-40391 * [7d33020] d/gbp.conf: Adjust to branch debian/bullseye gmp (2:6.2.1+dfsg-1+deb11u1) bullseye; urgency=medium . * [ba91bc2] Add .gitlab-ci.yml * [a848ad6] Avoid bit size overflows. CVE-2021-43618 golang-1.15 (1.15.15-1~deb11u2) bullseye; urgency=medium . * Backport patch for CVE-2021-38297 When invoking functions from WASM modules, built using GOARCH=wasm GOOS=js, passing very large arguments can cause portions of the module to be overwritten with data from the arguments. * Backport patch for CVE-2021-41771 debug/macho: invalid dynamic symbol table command can cause panic * Backport patch for CVE-2021-44716 net/http: limit growth of header canonicalization cache * Backport patch for CVE-2021-44717 syscall: don’t close fd 0 on ForkExec error golang-1.15 (1.15.15-1~deb11u1) bullseye; urgency=medium . [ Anthony Fok ] * Fix Lintian warning tab-in-license-text debian/copyright (starting at line 381) . [ Shengjing Zhu ] * Rebuild 1.15.15 for bullseye + Include fix for CVE-2021-36221 (Closes: #991961) net/http: panic due to racy read of persistConn after handler panic * Backport patch for CVE-2021-39293 archive/zip: overflow in preallocation check can cause OOM panic grass (7.8.5-1+deb11u1) bullseye; urgency=medium . * Update branch in gbp.conf & Vcs-Git URL. * Add upstream patch to fix parsing GDAL formats with colon in description. (closes: #999828) horizon (3:18.6.2-5+deb11u1) bullseye; urgency=medium . * Compile translations at build time. htmldoc (1.9.11-4+deb11u1) bullseye; urgency=medium . * Add patch from upstream to fix CVEs: CVE-2021-40985, CVE-2021-43579. im-config (0.46-1+deb11u1) bullseye; urgency=medium . * Team upload . [ Gunnar Hjalmarsson ] * Replace "fcitx" with "fcitx5" in IM_CONFIG_PREFERRED_RULE variable (closes: #990742) . [ Shengjing Zhu ] * Change IM_MODULE env for fcitx5 to "fcitx" (closes: #977203, LP: #1928360) isync (1.3.0-2.2+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Fix multiple buffer overflows (CVE-2021-3657) jqueryui (1.12.1+dfsg-8+deb11u1) bullseye; urgency=medium . * Team upload * Make sure altField is treated as a CSS selector (Closes: CVE-2021-41182) * Make sure text option are text, shorten HTML strings (Closes: CVE-2021-41183) * Make sure `of` is treated as a CSS selector (Closes: CVE-2021-41184) jwm (2.3.7-5+deb11u1) bullseye; urgency=medium . * d/p/03-fix-keyboard-move-segfault.patch: Backport upstream commit to fix SEGFAULT (closes: #977878) keepalived (1:2.1.5-0.2+deb11u1) bullseye; urgency=medium . * Fix shipped too broad DBus policy. CVE-2021-44225. keystone (2:18.0.0-3+deb11u1) bullseye; urgency=medium . * Tune keystone-uwsgi.ini for performance. * CVE-2021-38155 / OSSA-2021-003: Account name and UUID oracles in account locking. Applied upstream patch: Hide AccountLocked exception from end users (Closes: #992070). kodi (2:19.1+dfsg2-2+deb11u1) bullseye; urgency=medium . * Branch out bullseye * Fix buffer overflow in PLS playlists (Closes: CVE-2021-42917) ldb (2:2.2.3-2~deb11u1) bullseye-security; urgency=high . * Upload to bullseye-security ldb (2:2.2.3-1) unstable; urgency=high . * New upstream version 2.2.3 ldb (2:2.2.3-1~deb11u1) bullseye-security; urgency=high . * Upload to bullseye-security ldb (2:2.2.2-2) unstable; urgency=high . * Upload to unstable ldb (2:2.2.2-2~deb11u1) bullseye-security; urgency=high . * Upload to bullseye-security ldb (2:2.2.2-1) experimental; urgency=medium . [ Mathieu Parent ] * Acknowledge NMU * New upstream version 2.2.2, includes: - CVE-2020-27840: Heap corruption via crafted DN strings. - CVE-2021-20277: Out of bounds read in AD DC LDAP server. . [ Debian Janitor ] * Update standards version to 4.5.1, no changes needed. * Avoid explicitly specifying -Wl,--as-needed linker flag. libayatana-indicator (0.8.4-1+deb11u2) bullseye; urgency=medium . * debian/patches: + Add 0002_src-indicator-ng.c-Make-sure-old-menu-item-name-is-n.patch. Prevent regular crashes in indicator applets. (Closes: #992499). libayatana-indicator (0.8.4-1+deb11u1) bullseye; urgency=medium . [ Martin Wimpress ] * debian/patches: + Add 0001_scale-icons-when-loading-from-filename.patch (LP: #1733301) . [ Mike Gabriel ] * debian/patches: + Fix file path in 0001_scale-icons-when-loading-from-filename.patch. libdatetime-timezone-perl (1:2.47-1+2021e) bullseye; urgency=medium . * Update to Olson database version 2021e. This update includes contemporary changes for Palestine. . libdatetime-timezone-perl (1:2.47-1+2021d) bullseye; urgency=medium . * Update to Olson database version 2021d. This update includes fixes for the zone links for Atlantic/Jan_Mayen and America/Virgin (2021c), and contemporary changes for Fiji (2021d). libdatetime-timezone-perl (1:2.47-1+2021d) bullseye; urgency=medium . * Update to Olson database version 2021d. This update includes fixes for the zone links for Atlantic/Jan_Mayen and America/Virgin (2021c), and contemporary changes for Fiji (2021d). libencode-perl (3.08-1+deb11u2) bullseye; urgency=medium . * Fix memory leak. Add patch rt_139622_memory-leak.patch, taken from upstream releases 3.13, 3.14, 3.15 to fix a memory leak in Encode.xs. Cf. https://rt.cpan.org/Ticket/Display.html?id=139622 (Closes: #995804) libreoffice (1:7.0.4-4+deb11u1) bullseye-security; urgency=high . * backport fixes from libreoffice-7-0 branch: - xmlsecurity-replace-XSecParser-implementation.diff - xmlsecurity-improve-handling-of-multiple-X509Data-elements.diff: (fixes CVE-2021-25633 "Double Certificate Attack") - xmlsecurity-XSecParser-confused-about-multiple-timestamps.diff, xmlsecurity-ignore-elements-in-ds:Object-that-arent-signed.diff: (fixes CVE-2021-25634 "Timestamp Manipulation with Signature Wrapping") - default-to-CertificateValidity::INVALID.diff: (fixes CVE-2021-25635 "Content Manipulation with Certificate Validation Attack") libreoffice (1:7.0.4-4+deb11u1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . * debian/source/include-binaries: - include tarballs/libmwaw-0.3.16.tar.xz - include tarballs/mdds-1.6.0.tar.bz2 - include tarballs/liborcus-0.16.1.tar.bz2 - include tarballs/xmlsec1-1.2.30.tar.gz - include tarballs/libnumbertext-1.0.6.tar.xz * debian/rules: - revert clang (>= 1:11) build-dep for buster-backports; doesn't exist in buster and we resort back to gcc . libreoffice (1:7.0.4-4+deb11u1) bullseye-security; urgency=high . * backport fixes from libreoffice-7-0 branch: - xmlsecurity-replace-XSecParser-implementation.diff - xmlsecurity-improve-handling-of-multiple-X509Data-elements.diff: (fixes CVE-2021-25633 "Double Certificate Attack") - xmlsecurity-XSecParser-confused-about-multiple-timestamps.diff, xmlsecurity-ignore-elements-in-ds:Object-that-arent-signed.diff: (fixes CVE-2021-25634 "Timestamp Manipulation with Signature Wrapping") - default-to-CertificateValidity::INVALID.diff: (fixes CVE-2021-25635 "Content Manipulation with Certificate Validation Attack") . libreoffice (1:7.0.4-4) unstable; urgency=medium . * debian/patches/apparmor-updates.diff: allow one more digit in temp files (closes: #982274) * debian/control.in, debian/libreoffice-common.{maintscript,postinst.in}: apply patch from Adreas Beckmann to fix upgrade buster->bullseye - libreoffice-core: Copy some Conflicts from libreoffice-common for smoother upgrades from buster. Dpkg will otherwise ignore Conflicts that are encountered later against a package that is already deconfigured. - libreoffice-common: Do not use dir_to_symlink for /usr/lib/libreoffice/share/registry, the Breaks/Conflicts cascade does not work reliable here to ensure all packages previously shipping files there are either removed or upgraded first, but not just deconfigured. Fix up the symlink in postinst instead. (Closes: #985297) . libreoffice (1:7.0.4-3) unstable; urgency=medium . * debian/tests/control.in: *really* add libreoffice-writer dependency to uicheck-sc test . libreoffice (1:7.0.4-2) unstable; urgency=medium . * debian/test/control: make uicheck-sc depend on libreoffice-writer, too (the openDialogs/uno.Show:License Dialog test opens a new "Writer/Web" document...) . libreoffice (1:7.0.4-1) unstable; urgency=medium . * LibreOffice 7.0.4 final release (identical to rc2) . * debian/patches/pdfium-m68k.diff: fix pdfium build on m68k . * debian/rules, debian/control*in: s/noinsttests/noinsttest/, thanks lintian * debian/rules: - revert clang (>= 1:11) build-dep for buster-backports; doesn't exist in buster and we resort back to gcc - don't rm LICENSE.html, it is used by Help -> License Information -> Show License * debian/control.mediawiki.in: remove Homepage: (closes: #978713) * debian/*.mime: stop quoting %s (closes: #950319) libseccomp (2.5.1-1+deb11u1) bullseye; urgency=medium . * Add support for syscalls up to Linux 5.15. libxml-security-java (2.0.10-2+deb11u1) bullseye-security; urgency=high . * Team upload. * Fix CVE-2021-40690: Apache Santuario - XML Security for Java is vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element. libxml-security-java (2.0.10-2+deb10u1) buster-security; urgency=high . * Team upload. * Fix CVE-2021-40690: Apache Santuario - XML Security for Java is vulnerable to an issue where the "secureValidation" property is not passed correctly when creating a KeyInfo from a KeyInfoReference element. This allows an attacker to abuse an XPath Transform to extract any local .xml files in a RetrievalMethod element. libxstream-java (1.4.15-3+deb11u1) bullseye-security; urgency=high . * Team upload. * Enable the security whitelist by default to prevent RCE vulnerabilities. XStream no longer uses a blacklist because it cannot be secured for general purpose. linux (5.10.84-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.71 - tty: Fix out-of-bound vmalloc access in imageblit - cpufreq: schedutil: Use kobject release() method to free sugov_tunables - scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS - cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory - ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. - [amd64,arm64] ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect - fs-verity: fix signed integer overflow with i_size near S64_MAX - hwmon: (tmp421) handle I2C errors - hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field - [arm64,armhf] gpio: pca953x: do not ignore i2c errors - scsi: ufs: Fix illegal offset in UPIU event trace - mac80211: fix use-after-free in CCMP/GCMP RX - [x86] kvmclock: Move this_cpu_pvti into kvmclock.h - [x86] KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() - [x86] KVM: x86: nSVM: don't copy virt_ext from vmcb12 - [x86] KVM: nVMX: Filter out all unsupported controls when eVMCS was activated - KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest - RDMA/cma: Do not change route.addr.src_addr.ss_family - drm/amd/display: Pass PCI deviceid into DC - drm/amdgpu: correct initial cp_hqd_quantum for gfx9 - ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 - bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog - IB/cma: Do not send IGMP leaves for sendonly Multicast groups - RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure - mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug - mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap - mac80211: mesh: fix potentially unaligned access - mac80211-hwsim: fix late beacon hrtimer handling - sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb - hwmon: (tmp421) report /PVLD condition as fault - hwmon: (tmp421) fix rounding for negative values - [arm64] net: enetc: fix the incorrect clearing of IF_MODE bits - net: ipv4: Fix rtnexthop len when RTA_FLOW is present - smsc95xx: fix stalled rx after link change - [x86] drm/i915/request: fix early tracepoints - [arm64,armhf] dsa: mv88e6xxx: 6161: Use chip wide MAX MTU - [arm64,armhf] dsa: mv88e6xxx: Fix MTU definition - [arm64,armhf] dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports - e100: fix length calculation in e100_get_regs_len - e100: fix buffer overrun in e100_get_regs - [arm64] RDMA/hns: Fix inaccurate prints - bpf: Exempt CAP_BPF from checks against bpf_jit_limit - Revert "block, bfq: honor already-setup queue merges" - scsi: csiostor: Add module softdep on cxgb4 - ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup - [arm64] net: hns3: do not allow call hns3_nic_net_open repeatedly - [arm64] net: hns3: keep MAC pause mode when multiple TCs are enabled - [arm64] net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE - [arm64] net: hns3: fix show wrong state when add existing uc mac address - [arm64] net: hns3: fix prototype warning - [arm64] net: hns3: reconstruct function hns3_self_test - [arm64] net: hns3: fix always enable rx vlan filter problem after selftest - [arm64,armhf] net: phy: bcm7xxx: Fixed indirect MMD operations - net: sched: flower: protect fl_walk() with rcu - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses - [x86] perf/x86/intel: Update event constraints for ICX - nvme: add command id quirk for apple controllers - elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings - debugfs: debugfs_create_file_size(): use IS_ERR to check for error - ext4: fix loff_t overflow in ext4_max_bitmap_size() - ext4: limit the number of blocks in one ADD_RANGE TLV (Closes: #995425) - ext4: fix reserved space counter leakage - ext4: add error checking to ext4_ext_replay_set_iblocks() - ext4: fix potential infinite loop in ext4_dx_readdir() - HID: u2fzero: ignore incomplete packets without data - net: udp: annotate data race around udp_sk(sk)->corkflag - ASoC: dapm: use component prefix when checking widget names - usb: hso: remove the bailout parameter - [x86] crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744, CVE-2021-3764) - HID: betop: fix slab-out-of-bounds Write in betop_probe - netfilter: ipset: Fix oversized kvmalloc() calls - mm: don't allow oversized kvmalloc() calls - HID: usbhid: free raw_report buffers in usbhid_stop - [x86] KVM: x86: Handle SRCU initialization failure during page track init - netfilter: conntrack: serialize hash resizes and cleanups - netfilter: nf_tables: Fix oversized kvmalloc() calls https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.72 - [arm64,armhf] spi: rockchip: handle zero length transfers without timing out - nfsd: back channel stuck in SEQ4_STATUS_CB_PATH_DOWN - btrfs: replace BUG_ON() in btrfs_csum_one_bio() with proper error handling - btrfs: fix mount failure due to past and transient device flush error - net: mdio: introduce a shutdown method to mdio device drivers - xen-netback: correct success/error reporting for the SKB-with-fraglist case - scsi: sd: Free scsi_disk device via put_device() - [arm*] usb: dwc2: check return value after calling platform_get_resource() - nvme-fc: update hardware queues before using them - nvme-fc: avoid race between time out and tear down - [arm64] thermal/drivers/tsens: Fix wrong check for tzd in irq handlers - scsi: ses: Retry failed Send/Receive Diagnostic commands - [arm64,armhf] irqchip/gic: Work around broken Renesas integration - smb3: correct smb3 ACL security descriptor - KVM: do not shrink halt_poll_ns below grow_start - [x86] kvm: Add AMD PMU MSRs to msrs_to_save_all[] - [x86] KVM: nSVM: restore int_vector in svm_clear_vintr - [x86] perf/x86: Reset destroy callback on event init failure - libata: Add ATA_HORKAGE_NO_NCQ_ON_ATI for Samsung 860 and 870 SSD. https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73 - [arm64,armhf] usb: chipidea: ci_hdrc_imx: Also search for 'phys' phandle - USB: cdc-acm: fix racy tty buffer accesses - USB: cdc-acm: fix break reporting - usb: typec: tcpm: handle SRC_STARTUP state if cc changes - drm/nouveau/kms/tu102-: delay enabling cursor until after assign_windows - xen/privcmd: fix error handling in mmap-resource processing - [arm64] mmc: meson-gx: do not use memcpy_to/fromio for dram-access-quirk - ovl: fix missing negative dentry check in ovl_rename() (CVE-2021-20321) - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - nfsd: fix error handling of register_pernet_subsys() in init_nfsd() - nfsd4: Handle the NFSv4 READDIR 'dircount' hint being zero - SUNRPC: fix sign error causing rpcsec_gss drops - xen/balloon: fix cancelled balloon action - [armhf] dts: omap3430-sdp: Fix NAND device node - [armhf] bus: ti-sysc: Add break in switch statement in sysc_init_soc() - [arm64] soc: qcom: mdt_loader: Drop PT_LOAD check on hash segment - [armhf] dts: imx: Add missing pinctrl-names for panel on M53Menlo - [armhf] dts: imx: Fix USB host power regulator polarity on M53Menlo - [amd64] PCI: hv: Fix sleep while in non-sleep context when removing child devices from the bus - iwlwifi: pcie: add configuration of a Wi-Fi adapter on Dell XPS 15 - [armel,armhf] bpf, arm: Fix register clobbering in div/mod implementation - [armhf] soc: ti: omap-prm: Fix external abort for am335x pruss - bpf: Fix integer overflow in prealloc_elems_and_freelist() (CVE-2021-41864) - net/mlx5e: IPSEC RX, enable checksum complete - net/mlx5: E-Switch, Fix double allocation of acl flow counter - phy: mdio: fix memory leak - net_sched: fix NULL deref in fifo_set_limit() - [i386] ptp_pch: Load module automatically if ID matches - [armhf] imx6: disable the GIC CPU interface before calling stby-poweroff sequence - net: bridge: use nla_total_size_64bit() in br_get_linkxstats_size() - net: bridge: fix under estimation in br_get_linkxstats_size() - net/sched: sch_taprio: properly cancel timer from taprio_destroy() - net: sfp: Fix typo in state machine debug string - netlink: annotate data races around nlk->bound - perf jevents: Tidy error handling - [armhf] bus: ti-sysc: Use CLKDM_NOAUTO for dra7 dcan1 for errata i893 - [arm64,armhf] drm/sun4i: dw-hdmi: Fix HDMI PHY clock setup - drm/nouveau: avoid a use-after-free when BO init fails - drm/nouveau/kms/nv50-: fix file release memory leak - drm/nouveau/debugfs: fix file release memory leak - [amd64] gve: Correct available tx qpl check - [amd64] gve: Avoid freeing NULL pointer - rtnetlink: fix if_nlmsg_stats_size() under estimation - [amd64] gve: fix gve_get_stats() - [amd64] gve: report 64bit tx_bytes counter from gve_handle_report_stats() - i40e: fix endless loop under rtnl - i40e: Fix freeing of uninitialized misc IRQ vector - net: prefer socket bound to interface when not in VRF - [powerpc*] iommu: Report the correct most efficient DMA mask for PCI devices - i2c: acpi: fix resource leak in reconfiguration device addition - [s390x] bpf, s390: Fix potential memory leak about jit_data - [powerpc*] bpf: Fix BPF_SUB when imm == 0x80000000 - [powerpc*] pseries/eeh: Fix the kdump kernel crash during eeh_pseries_init - [i386] x86/platform/olpc: Correct ifdef symbol to intended CONFIG_OLPC_XO15_SCI - [x86] entry: Correct reference to intended CONFIG_64_BIT - [x86] hpet: Use another crystalball to evaluate HPET usability https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.74 - ext4: check and update i_disksize properly - ext4: correct the error path of ext4_write_inline_data_end() - [x86] ASoC: Intel: sof_sdw: tag SoundWire BEs as non-atomic - HID: apple: Fix logical maximum and usage maximum of Magic Keyboard JIS - netfilter: ip6_tables: zero-initialize fragment offset - HID: wacom: Add new Intuos BT (CTL-4100WL/CTL-6100WL) device IDs - [x86] ASoC: SOF: loader: release_firmware() on load failure to avoid batching - netfilter: nf_nat_masquerade: make async masq_inet6_event handling generic - netfilter: nf_nat_masquerade: defer conntrack walk to work queue - mac80211: Drop frames from invalid MAC address in ad-hoc mode - net: prevent user from passing illegal stab size - mac80211: check return value of rhashtable_init - [x86] vboxfs: fix broken legacy mount signature checking - drm/amdgpu: fix gart.bo pin_count leak - scsi: ses: Fix unsigned comparison with less than zero - scsi: virtio_scsi: Fix spelling mistake "Unsupport" -> "Unsupported" - perf/core: fix userpage->time_enabled of inactive events - sched: Always inline is_percpu_thread() - [armhf] hwmon: (pmbus/ibm-cffps) max_power_out swap changes https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.75 - ALSA: usb-audio: Add quirk for VF0770 - ALSA: pcm: Workaround for a wrong offset in SYNC_PTR compat ioctl - ALSA: seq: Fix a potential UAF by wrong private_free call order - ALSA: hda/realtek: Enable 4-speaker output for Dell Precision 5560 laptop - ALSA: hda - Enable headphone mic on Dell Latitude laptops with ALC3254 - ALSA: hda/realtek: Complete partial device name to avoid ambiguity - ALSA: hda/realtek: Add quirk for Clevo X170KM-G - ALSA: hda/realtek - ALC236 headset MIC recording issue - ALSA: hda/realtek: Add quirk for TongFang PHxTxX1 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo 13s Gen2 - ALSA: hda/realtek: Fix the mic type detection issue for ASUS G551JW - [s390x] fix strrchr() implementation - [arm64] hugetlb: fix CMA gigantic page order for non-4K PAGE_SIZE - drm/msm: Avoid potential overflow in timeout_to_jiffies() - btrfs: unlock newly allocated extent buffer after error - btrfs: deal with errors when replaying dir entry during log replay - btrfs: deal with errors when adding inode reference during log replay - btrfs: check for error when looking up inode during dir entry replay - btrfs: update refs for any root except tree log roots - btrfs: fix abort logic in btrfs_replace_file_extents - [x86] resctrl: Free the ctrlval arrays when domain_setup_mon_state() fails - [x86] mei: me: add Ice Lake-N device id. - xhci: guard accesses to ep_state in xhci_endpoint_reset() - xhci: Fix command ring pointer corruption while aborting a command - xhci: Enable trust tx length quirk for Fresco FL11 USB controller - cb710: avoid NULL pointer subtraction - [arm64,x86] efi/cper: use stack buffer for error record decoding - efi: Change down_interruptible() in virt_efi_reset_system() to down_trylock() - [armhf] usb: musb: dsps: Fix the probe error path (Closes: 1000900) - Input: xpad - add support for another USB ID of Nacon GC-100 - USB: serial: qcserial: add EM9191 QDL support - USB: serial: option: add Quectel EC200S-CN module support - USB: serial: option: add Telit LE910Cx composition 0x1204 - USB: serial: option: add prod. id for Quectel EG91 - virtio: write back F_VERSION_1 before validate - nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells - [powerpc*] xive: Discard disabled interrupts in get_irqchip_state() - driver core: Reject pointless SYNC_STATE_ONLY device links - iio: adc: ad7192: Add IRQ flag - iio: adc: ad7780: Fix IRQ flag - iio: adc: ad7793: Fix IRQ flag - iio: adc128s052: Fix the error handling path of 'adc128_probe()' - iio: adc: max1027: Fix wrong shift with 12-bit devices - iio: light: opt3001: Fixed timeout error when 0 lux - iio: adc: max1027: Fix the number of max1X31 channels - iio: dac: ti-dac5571: fix an error code in probe() - [arm64] tee: optee: Fix missing devices unregister during optee_remove - [armel,armhf] dts: bcm2711-rpi-4-b: Fix usb's unit address - [armel,armhf] dts: bcm2711-rpi-4-b: fix sd_io_1v8_reg regulator states - [armel,armhf] dts: bcm2711-rpi-4-b: Fix pcie0's unit address formatting - nvme-pci: Fix abort command id - sctp: account stream padding length for reconf chunk - [arm64,armhf] gpio: pca953x: Improve bias setting - net/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path - net/mlx5e: Mutually exclude RX-FCS and RX-port-timestamp - net: stmmac: fix get_hw_feature() on old hardware - ethernet: s2io: fix setting mac address during resume - nfc: fix error handling of nfc_proto_register() - NFC: digital: fix possible memory leak in digital_tg_listen_mdaa() - NFC: digital: fix possible memory leak in digital_in_send_sdd_req() - [i386] pata_legacy: fix a couple uninitialized variable bugs - ata: ahci_platform: fix null-ptr-deref in ahci_platform_enable_regulators() - drm/edid: In connector_bad_edid() cap num_of_ext by num_blocks read - [arm64] drm/msm: Fix null pointer dereference on pointer edp - [arm64] drm/msm/mdp5: fix cursor-related warnings - [arm64] drm/msm/a6xx: Track current ctx by seqno - [arm64] drm/msm/dsi: Fix an error code in msm_dsi_modeset_init() - [arm64] drm/msm/dsi: fix off by one in dsi_bus_clk_enable error handling - [arm64] acpi/arm64: fix next_platform_timer() section mismatch error - [x86] platform/x86: intel_scu_ipc: Fix busy loop expiry time - mqprio: Correct stats in mqprio_dump_class_stats(). - qed: Fix missing error code in qed_slowpath_start() - nfp: flow_offload: move flow_indr_dev_register from app init to app start - [arm64] net: mscc: ocelot: warn when a PTP IRQ is raised for an unknown skb - [arm64,armhf] net: dsa: mv88e6xxx: don't use PHY_DETECT on internal PHY's https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.76 - xhci: add quirk for host controllers that don't update endpoint DCS - io_uring: fix splice_fd_in checks backport typo - [armhf] dts: vexpress-v2p-ca9: Fix the SMB unit-address - block: decode QUEUE_FLAG_HCTX_ACTIVE in debugfs output - [x86] xen/x86: prevent PVH type from getting clobbered - NFSD: Keep existing listeners on portlist error - netfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value - ice: fix getting UDP tunnel entry - netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6 - netfilter: ipvs: make global sysctl readonly in non-init netns - tcp: md5: Fix overlap between vrf and non-vrf keys - ipv6: When forwarding count rx stats on the orig netdev - [powerpc*] smp: do not decrement idle task preempt count in CPU offline - [arm64] net: hns3: reset DWRR of unused tc to zero - [arm64] net: hns3: add limit ets dwrr bandwidth cannot be 0 - [arm64] net: hns3: schedule the polling again when allocation fails - [arm64] net: hns3: fix vf reset workqueue cannot exit - [arm64] net: hns3: disable sriov before unload hclge layer - net: stmmac: Fix E2E delay mechanism - e1000e: Fix packet loss on Tiger Lake and later - ice: Add missing E810 device ids - [arm64] net: enetc: fix ethtool counter name for PM0_TERR - can: peak_usb: pcan_usb_fd_decode_status(): fix back to ERROR_ACTIVE state notification - can: peak_pci: peak_pci_remove(): fix UAF - can: isotp: isotp_sendmsg(): fix return error on FC timeout on TX path - can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() - can: j1939: j1939_tp_rxtimer(): fix errant alert in j1939_tp_rxtimer - can: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv - can: j1939: j1939_xtp_rx_dat_one(): cancel session if receive TP.DT with error length - can: j1939: j1939_xtp_rx_rts_session_new(): abort TP less than 9 bytes - ceph: skip existing superblocks that are blocklisted or shut down when mounting - ceph: fix handling of "meta" errors - ocfs2: fix data corruption after conversion from inline format - ocfs2: mount fails with buffer overflow in strlen - userfaultfd: fix a race between writeprotect and exit_mmap() - vfs: check fd has read access in kernel_read_file_from_fd() - ALSA: usb-audio: Provide quirk for Sennheiser GSP670 Headset - ALSA: hda/realtek: Add quirk for Clevo PC50HS - ASoC: DAPM: Fix missing kctl change notifications - audit: fix possible null-pointer dereference in audit_filter_rules - [powerpc*] powerpc64/idle: Fix SP offsets when saving GPRs - [powerpc*] KVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest() - [powerpc*] KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest (CVE-2021-43056) - [powerpc*] idle: Don't corrupt back chain when going idle - mm, slub: fix mismatch between reconstructed freelist depth and cnt - mm, slub: fix potential memoryleak in kmem_cache_open() - mm, slub: fix incorrect memcg slab count for bulk free - [x86] KVM: nVMX: promptly process interrupts delivered while in guest mode - nfc: nci: fix the UAF of rf_conn_info object (CVE-2021-3760) - isdn: cpai: check ctr->cnr to avoid array index out of bound (CVE-2021-43389) - [arm64] net: hns3: fix the max tx size according to user manual - ALSA: hda: intel: Allow repeatedly probing on codec configuration errors - btrfs: deal with errors when checking if a dir entry exists during log replay - net: stmmac: add support for dwmac 3.40a - isdn: mISDN: Fix sleeping function called from invalid context - [x86] platform/x86: intel_scu_ipc: Update timeout value in comment - ALSA: hda: avoid write to STATESTS if controller is in reset - [x86] perf/x86/msr: Add Sapphire Rapids CPU support - scsi: iscsi: Fix set_param() handling - scsi: qla2xxx: Fix a memory leak in an error path of qla2x00_process_els() - sched/scs: Reset the shadow stack when idle_task_exit - [arm64] net: hns3: fix for miscalculation of rx unused desc - scsi: core: Fix shost->cmd_per_lun calculation in scsi_add_host_with_dma() - can: isotp: isotp_sendmsg(): fix TX buffer concurrent access in isotp_sendmsg() - [s390x] pci: fix zpci_zdev_put() on reserve - net: mdiobus: Fix memory leak in __mdiobus_register - tracing: Have all levels of checks prevent recursion - e1000e: Separate TGP board type from SPT - [armhf] pinctrl: stm32: use valid pin identifier in stm32_pinctrl_resume() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.77 - [armel,armhf] 9139/1: kprobes: fix arch_init_kprobes() prototype - io_uring: don't take uring_lock during iowq cancel - [powerpc*] bpf: Fix BPF_MOD when imm == 1 - [arm64] Avoid premature usercopy failure - ext4: fix possible UAF when remounting r/o a mmp-protected file system - usbnet: sanity check for maxpacket - usbnet: fix error return code in usbnet_probe() - pinctrl: amd: disable and mask interrupts on probe - ata: sata_mv: Fix the error handling of mv_chip_id() - tipc: fix size validations for the MSG_CRYPTO type (CVE-2021-43267) - nfc: port100: fix using -ERRNO as command type mask - Revert "net: mdiobus: Fix memory leak in __mdiobus_register" - mmc: vub300: fix control-message timeouts - mmc: cqhci: clear HALT state after CQE enable - [armhf] mmc: dw_mmc: exynos: fix the finding clock sample value - mmc: sdhci: Map more voltage level to SDHCI_POWER_330 - [arm64,armhf] mmc: sdhci-esdhc-imx: clear the buffer_read_ready to reset standard tuning circuit - ocfs2: fix race between searching chunks and release journal_head from buffer_head - nvme-tcp: fix H2CData PDU send accounting (again) - cfg80211: scan: fix RCU in cfg80211_add_nontrans_list() - cfg80211: fix management registrations locking - net: lan78xx: fix division by zero in send path - mm, thp: bail out early in collapse_file for writeback page - drm/ttm: fix memleak in ttm_transfered_destroy - drm/amdgpu: fix out of bounds write (CVE-2021-42327) - cgroup: Fix memory leak caused by missing cgroup_bpf_offline - tcp_bpf: Fix one concurrency problem in the tcp_bpf_send_verdict function - bpf: Fix potential race in tail call compatibility check - bpf: Fix error usage of map_fd and fdget() in generic_map_update_batch() - [amd64] IB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields - [amd64] IB/hfi1: Fix abba locking issue with sc_disable() - nvmet-tcp: fix data digest pointer calculation - nvme-tcp: fix data digest pointer calculation - nvme-tcp: fix possible req->offset corruption - RDMA/mlx5: Set user priority for DCT - [arm64] dts: allwinner: h5: NanoPI Neo 2: Fix ethernet node - regmap: Fix possible double-free in regcache_rbtree_exit() - net: batman-adv: fix error handling - net-sysfs: initialize uid and gid before calling net_ns_get_ownership - cfg80211: correct bridge/4addr mode check - net: Prevent infinite while loop in skb_tx_hash() - RDMA/sa_query: Use strscpy_pad instead of memcpy to copy a string - net: ethernet: microchip: lan743x: Fix driver crash when lan743x_pm_resume fails - net: ethernet: microchip: lan743x: Fix dma allocation failure by using dma_set_mask_and_coherent - phy: phy_ethtool_ksettings_get: Lock the phy for consistency - phy: phy_ethtool_ksettings_set: Move after phy_start_aneg - phy: phy_start_aneg: Add an unlocked version - phy: phy_ethtool_ksettings_set: Lock the PHY while changing settings - sctp: use init_tag from inithdr for ABORT chunk (CVE-2021-3772) - sctp: fix the processing for INIT_ACK chunk (CVE-2021-3772) - sctp: fix the processing for COOKIE_ECHO chunk (CVE-2021-3772) - sctp: add vtag check in sctp_sf_violation (CVE-2021-3772) - sctp: add vtag check in sctp_sf_do_8_5_1_E_sa (CVE-2021-3772) - sctp: add vtag check in sctp_sf_ootb (CVE-2021-3772) - lan743x: fix endianness when accessing descriptors - [s390x] KVM: clear kicked_mask before sleeping again - [s390x] KVM: preserve deliverable_mask in __airqs_kick_single_vcpu https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.78 - scsi: core: Put LLD module refcnt after SCSI device is released - Revert "io_uring: reinforce cancel on flush during exit" - sfc: Fix reading non-legacy supported link modes - vrf: Revert "Reset skb conntrack connection..." - net: ethernet: microchip: lan743x: Fix skb allocation failure - media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt() (CVE-2021-42739) - Revert "xhci: Set HCD flag to defer primary roothub registration" - Revert "usb: core: hcd: Add support for deferring roothub registration" - mm: khugepaged: skip huge page collapse for special files - Revert "drm/ttm: fix memleak in ttm_transfered_destroy" - [arm*] 9120/1: Revert "amba: make use of -1 IRQs warn" - [arm64] Revert "wcn36xx: Disable bmps when encryption is disabled" - ALSA: usb-audio: Add Schiit Hel device to mixer map quirk table - ALSA: usb-audio: Add Audient iD14 to mixer map quirk table https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.79 - [x86] Revert "x86/kvm: fix vcpu-id indexed array sizes" - [arm64,armhf] usb: musb: Balance list entry in musb_gadget_queue - usb-storage: Add compatibility quirk flags for iODD 2531/2541 - [arm*] binder: don't detect sender/target during buffer cleanup - printk/console: Allow to disable console output by using console="" or console=null - staging: rtl8712: fix use-after-free in rtl8712_dl_fw - isofs: Fix out of bound access for corrupted isofs image - [x86] comedi: dt9812: fix DMA buffers on stack - [x86] comedi: ni_usb6501: fix NULL-deref in command paths - [x86] comedi: vmk80xx: fix transfer-buffer overflows - [x86] comedi: vmk80xx: fix bulk-buffer overflow - [x86] comedi: vmk80xx: fix bulk and interrupt message timeouts - staging: r8712u: fix control-message timeout - [x86] staging: rtl8192u: fix control-message timeouts - rsi: fix control-message timeout https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.80 - xhci: Fix USB 3.1 enumeration issues by increasing roothub power-on-good delay - usb: xhci: Enable runtime-pm by default on AMD Yellow Carp platform - [arm*] binder: use euid from cred instead of using task - [arm*] binder: use cred instead of task for selinux checks - [arm*] binder: use cred instead of task for getsecid - Input: iforce - fix control-message timeout - Input: elantench - fix misreporting trackpoint coordinates (Closes: #989285) - libata: fix read log timeout value - ocfs2: fix data corruption on truncate - scsi: core: Remove command size deduction from scsi_setup_scsi_cmnd() - scsi: qla2xxx: Fix kernel crash when accessing port_speed sysfs file - scsi: qla2xxx: Fix use after free in eh_abort path - [arm64,armhf] mmc: dw_mmc: Dont wait for DRTO on Write RSP error - exfat: fix incorrect loading of i_blocks for large files - tpm: Check for integer overflow in tpm2_map_response_body() - media: ite-cir: IR receiver stop working after receive overflow (Closes: #996672) - media: ir-kbd-i2c: improve responsiveness of hauppauge zilog receivers (Closes: #994050) - media: v4l2-ioctl: Fix check_ext_ctrls - ALSA: hda/realtek: Fix mic mute LED for the HP Spectre x360 14 - ALSA: hda/realtek: Add a quirk for HP OMEN 15 mute LED - ALSA: hda/realtek: Add quirk for Clevo PC70HS - ALSA: hda/realtek: Headset fixup for Clevo NH77HJQ - ALSA: hda/realtek: Add a quirk for Acer Spin SP513-54N - ALSA: hda/realtek: Add quirk for ASUS UX550VE - ALSA: hda/realtek: Add quirk for HP EliteBook 840 G7 mute LED - ALSA: ua101: fix division by zero at probe - ALSA: 6fire: fix control and bulk message timeouts - ALSA: line6: fix control and interrupt message timeouts - ALSA: usb-audio: Line6 HX-Stomp XL USB_ID for 48k-fixed quirk - ALSA: usb-audio: Add registration quirk for JBL Quantum 400 - ALSA: hda: Free card instance properly at probe errors - ALSA: synth: missing check for possible NULL after the call to kstrdup - ALSA: timer: Fix use-after-free problem - ALSA: timer: Unconditionally unlink slave instances, too - ext4: fix lazy initialization next schedule time computation in more granular unit - ext4: ensure enough credits in ext4_ext_shift_path_extents - ext4: refresh the ext4_ext_path struct after dropping i_data_sem. - fuse: fix page stealing - [x86] cpu: Fix migration safety with X86_BUG_NULL_SEL - [x86] irq: Ensure PI wakeup handler is unregistered before module unload - ASoC: soc-core: fix null-ptr-deref in snd_soc_del_component_unlocked() - ALSA: hda/realtek: Fixes HP Spectre x360 15-eb1xxx speakers - [arm64] cavium: Return negative value when pci_alloc_irq_vectors() fails - scsi: qla2xxx: Return -ENOMEM if kzalloc() fails - scsi: qla2xxx: Fix unmap of already freed sgl - mISDN: Fix return values of the probe function - [arm64] cavium: Fix return values of the probe function - sfc: Export fibre-specific supported link modes - sfc: Don't use netif_info before net_device setup - [armhf] reset: socfpga: add empty driver allowing consumers to probe - drm: panel-orientation-quirks: Add quirk for Aya Neo 2021 - bpf: Define bpf_jit_alloc_exec_limit for arm64 JIT - bpf: Prevent increasing bpf_jit_limit above max - xen/netfront: stop tx queues during live migration - nvmet-tcp: fix a memory leak when releasing a queue - [armhf] spi: spl022: fix Microwire full duplex mode - net: multicast: calculate csum of looped-back and forwarded packets - [armhf] watchdog: Fix OMAP watchdog early handling - drm: panel-orientation-quirks: Add quirk for GPD Win3 - block: schedule queue restart after BLK_STS_ZONE_RESOURCE - nvmet-tcp: fix header digest verification - r8169: Add device 10ec:8162 to driver r8169 - [x86] vmxnet3: do not stop tx queues after netif_device_detach() - nfp: bpf: relax prog rejection for mtu check through max_pkt_offset - net/smc: Fix smc_link->llc_testlink_time overflow - net/smc: Correct spelling mistake to TCPF_SYN_RECV - rds: stop using dmapool - btrfs: clear MISSING device status bit in btrfs_close_one_device - btrfs: fix lost error handling when replaying directory deletes - btrfs: call btrfs_check_rw_degradable only if there is a missing device - [x86] KVM: VMX: Unregister posted interrupt wakeup handler on hardware unsetup - selinux: fix race condition when computing ocontext SIDs - [armhf] regulator: s5m8767: do not use reset value as DVS voltage if GPIO DVS is disabled - [amd64] EDAC/sb_edac: Fix top-of-high-memory value for Broadwell/Haswell - [x86] mwifiex: fix division by zero in fw download path - ath6kl: fix division by zero in send path - ath6kl: fix control-message timeout - ath10k: fix control-message timeout - ath10k: fix division by zero in send path - PCI: Mark Atheros QCA6174 to avoid bus reset - rtl8187: fix control-message timeouts - [arm64] wcn36xx: Fix HT40 capability for 2Ghz band - [arm64] wcn36xx: Fix tx_status mechanism - [arm64] wcn36xx: Fix (QoS) null data frame bitrate/modulation - PM: sleep: Do not let "syscore" devices runtime-suspend during system transitions - mwifiex: Read a PCI register after writing the TX ring write pointer - mwifiex: Try waking the firmware until we get an interrupt - libata: fix checking of DMA state - [arm64] wcn36xx: handle connection loss indication - rsi: fix occasional initialisation failure with BT coex - rsi: fix key enabled check causing unwanted encryption for vap_id > 0 - rsi: fix rate mask set leading to P2P failure - rsi: Fix module dev_oper_mode parameter description - [x86] perf/x86/intel/uncore: Support extra IMC channel on Ice Lake server - [x86] perf/x86/intel/uncore: Fix Intel ICX IIO event constraints - RDMA/qedr: Fix NULL deref for query_qp on the GSI QP - signal: Remove the bogus sigkill_pending in ptrace_stop - [mips*] signal/mips: Update (_save|_restore)_fp_context to fail with -EFAULT - [arm64] soc: fsl: dpio: replace smp_processor_id with raw_smp_processor_id - [arm64] soc: fsl: dpio: use the combined functions to protect critical zone - [x86] power: supply: max17042_battery: Prevent int underflow in set_soc_threshold - [x86] power: supply: max17042_battery: use VFSOC for capacity when no rsns - [arm64] KVM: arm64: Extract ESR_ELx.EC only - [x86] KVM: nVMX: Query current VMCS when determining if MSR bitmaps are in use - can: j1939: j1939_tp_cmd_recv(): ignore abort message in the BAM transport - can: j1939: j1939_can_recv(): ignore messages with invalid source address - ring-buffer: Protect ring_buffer_reset() from reentrancy - serial: core: Fix initializing and restoring termios speed - ifb: fix building without CONFIG_NET_CLS_ACT - ALSA: mixer: oss: Fix racy access to slots - ALSA: mixer: fix deadlock in snd_mixer_oss_set_volume - xen/balloon: add late_initcall_sync() for initial ballooning done - ovl: fix use after free in struct ovl_aio_req - [arm*] PCI: pci-bridge-emul: Fix emulation of W1C bits - [arm64] PCI: aardvark: Do not clear status bits of masked interrupts - [arm64] PCI: aardvark: Fix checking for link up via LTSSM state - [arm64] PCI: aardvark: Do not unmask unused interrupts - [arm64] PCI: aardvark: Fix reporting Data Link Layer Link Active - [arm64] PCI: aardvark: Fix configuring Reference clock - [arm64] PCI: aardvark: Fix return value of MSI domain .alloc() method - [arm64] PCI: aardvark: Read all 16-bits from PCIE_MSI_PAYLOAD_REG - [arm64] PCI: aardvark: Fix support for bus mastering and PCI_COMMAND on emulated bridge - [arm64] PCI: aardvark: Fix support for PCI_BRIDGE_CTL_BUS_RESET on emulated bridge - [arm64] PCI: aardvark: Set PCI Bridge Class Code to PCI Bridge - [arm64] PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge - quota: check block number when reading the block in quota file - quota: correct error number in free_dqentry() - pinctrl: core: fix possible memory leak in pinctrl_enable() - iio: dac: ad5446: Fix ad5622_write() return value - iio: ad5770r: make devicetree property reading consistent - USB: serial: keyspan: fix memleak on probe errors - serial: 8250: fix racy uartclk update - USB: iowarrior: fix control-message timeouts - [arm64,armhf] USB: chipidea: fix interrupt deadlock - [x86] power: supply: max17042_battery: Clear status bits in interrupt handler - dma-buf: WARN on dmabuf release with pending attachments - drm: panel-orientation-quirks: Update the Lenovo Ideapad D330 quirk (v2) - drm: panel-orientation-quirks: Add quirk for KD Kurio Smart C15200 2-in-1 - drm: panel-orientation-quirks: Add quirk for the Samsung Galaxy Book 10.6 - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() (CVE-2021-3640) - Bluetooth: fix use-after-free error in lock_sock_nested() - drm/panel-orientation-quirks: add Valve Steam Deck - [x86] platform/x86: wmi: do not fail if disabling fails - locking/lockdep: Avoid RCU-induced noinstr fail - net: sched: update default qdisc visibility after Tx queue cnt changes - rcu-tasks: Move RTGS_WAIT_CBS to beginning of rcu_tasks_kthread() loop - ath11k: Align bss_chan_info structure with firmware - [x86] Increase exception stack sizes - mwifiex: Run SET_BSS_MODE when changing from P2P to STATION vif-type - mwifiex: Properly initialize private structure on interface type changes - fscrypt: allow 256-bit master keys with AES-256-XTS - drm/amdgpu: Fix MMIO access page fault - ath11k: Avoid reg rules update during firmware recovery - ath11k: add handler for scan event WMI_SCAN_EVENT_DEQUEUED - ath11k: Change DMA_FROM_DEVICE to DMA_TO_DEVICE when map reinjected packets - ath10k: high latency fixes for beacon buffer - media: netup_unidvb: handle interrupt properly according to the firmware - media: uvcvideo: Set capability in s_param - media: uvcvideo: Return -EIO for control errors - media: uvcvideo: Set unique vdev name based in type - [armhf] media: imx: set a media_device bus_info string - media: mceusb: return without resubmitting URB in case of -EPROTO error. - rtw88: fix RX clock gate setting while fifo dump - brcmfmac: Add DMI nvram filename quirk for Cyberbook T116 tablet - ipmi: Disable some operations during a panic - fs/proc/uptime.c: Fix idle time reporting in /proc/uptime - ACPICA: Avoid evaluating methods too early during system resume - media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() - net-sysfs: try not to restart the syscall if it will fail eventually - tracefs: Have tracefs directories not set OTH permission bits by default - ath: dfs_pattern_detector: Fix possible null-pointer dereference in channel_detector_create() - iov_iter: Fix iov_iter_get_pages{,_alloc} page fault return value - ACPI: battery: Accept charges over the design capacity as full - net: phy: micrel: make *-skew-ps check more lenient - [arm64] drm/msm: prevent NULL dereference in msm_gpu_crashstate_capture() - block: bump max plugged deferred size from 16 to 32 - md: update superblock after changing rdev flags in state_store - memstick: r592: Fix a UAF bug when removing the driver - lib/xz: Avoid overlapping memcpy() with invalid input with in-place decompression - lib/xz: Validate the value before assigning it to an enum variable - workqueue: make sysfs of unbound kworker cpumask more clever - mwl8k: Fix use-after-free in mwl8k_fw_state_machine() - block: remove inaccurate requeue check - nvmet: fix use-after-free when a port is removed - nvmet-rdma: fix use-after-free when a port is removed - nvmet-tcp: fix use-after-free when a port is removed - nvme: drop scan_lock and always kick requeue list when removing namespaces - PM: hibernate: Get block device exclusively in swsusp_check() - iwlwifi: mvm: disable RX-diversity in powersave - gre/sit: Don't generate link-local addr if addr_gen_mode is IN6_ADDR_GEN_MODE_NONE - gfs2: Cancel remote delete work asynchronously - gfs2: Fix glock_hash_walk bugs - vrf: run conntrack only in context of lower/physdev for locally generated packets - net: annotate data-race in neigh_output() - ACPI: AC: Quirk GK45 to skip reading _PSR - btrfs: reflink: initialize return value to 0 in btrfs_extent_same() - btrfs: do not take the uuid_mutex in btrfs_rm_device - [arm64] wcn36xx: Correct band/freq reporting on RX - [x86] hyperv: Protect set_hv_tscchange_cb() against getting preempted - drm/amd/display: dcn20_resource_construct reduce scope of FPU enabled - task_stack: Fix end_of_stack() for architectures with upwards-growing stack - erofs: don't trigger WARN() when decompression fails - netfilter: conntrack: set on IPS_ASSURED if flows enters internal stream state - Bluetooth: fix init and cleanup of sco_conn.timeout_work - rcu: Fix existing exp request check in sync_sched_exp_online_cleanup() - objtool: Add xen_start_kernel() to noreturn list - [x86] xen: Mark cpu_bringup_and_idle() as dead_end_function - objtool: Fix static_call list generation - virtio-gpu: fix possible memory allocation failure - lockdep: Let lock_is_held_type() detect recursive read as read - net: net_namespace: Fix undefined member in key_remove_domain() - cgroup: Make rebind_subsystems() disable v2 controllers all at once - [arm64] wcn36xx: Fix Antenna Diversity Switching - Bluetooth: btmtkuart: fix a memleak in mtk_hci_wmt_sync - [arm64] crypto: caam - disable pkc for non-E SoCs - rxrpc: Fix _usecs_to_jiffies() by using usecs_to_jiffies() - ath11k: fix some sleeping in atomic bugs - ath11k: Avoid race during regd updates - ath11k: fix packet drops due to incorrect 6 GHz freq value in rx status - ath11k: Fix memory leak in ath11k_qmi_driver_event_work - ath10k: Fix missing frame timestamp for beacon/probe-resp - ath10k: sdio: Add missing BH locking around napi_schdule() - drm/ttm: stop calling tt_swapin in vm_access - [arm64] mm: update max_pfn after memory hotplug - drm/amdgpu: fix warning for overflow check - media: em28xx: add missing em28xx_close_extension - media: dvb-usb: fix ununit-value in az6027_rc_query - media: v4l2-ioctl: S_CTRL output the right value - media: si470x: Avoid card name truncation - [x86] media: tm6000: Avoid card name truncation - media: cx23885: Fix snd_card_free call on null card pointer - kprobes: Do not use local variable when creating debugfs file - cpuidle: Fix kobject memory leaks in error paths - media: em28xx: Don't use ops->suspend if it is NULL - ath9k: Fix potential interrupt storm on queue reset - PM: EM: Fix inefficient states detection - [amd64] EDAC/amd64: Handle three rank interleaving mode - rcu: Always inline rcu_dynticks_task*_{enter,exit}() - netfilter: nft_dynset: relax superfluous check on set updates - [x86] crypto: qat - detect PFVF collision after ACK - [x86] crypto: qat - disregard spurious PFVF interrupts - b43legacy: fix a lower bounds test - b43: fix a lower bounds test - [amd64] gve: Recover from queue stall due to missed IRQ - [armhf] mmc: sdhci-omap: Fix NULL pointer exception if regulator is not configured - [armhf] mmc: sdhci-omap: Fix context restore - memstick: jmb38x_ms: use appropriate free function in jmb38x_ms_alloc_host() - net, neigh: Fix NTF_EXT_LEARNED in combination with NTF_USE - hwmon: Fix possible memleak in __hwmon_device_register() - ath10k: fix max antenna gain unit - kernel/sched: Fix sched_fork() access an invalid sched_task_group - tcp: switch orphan_count to bare per-cpu counters - [arm64] drm/msm: potential error pointer dereference in init() - [arm64] drm/msm: uninitialized variable in msm_gem_import() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - [x86] platform/x86: thinkpad_acpi: Fix bitwise vs. logical warning - mt76: mt76x02: fix endianness warnings in mt76x02_mac.c - rsi: stop thread firstly in rsi_91x_init() error handling - mwifiex: Send DELBA requests according to spec - [arm64] net: enetc: unmap DMA in enetc_send_cmd() - phy: micrel: ksz8041nl: do not use power down mode - nvme-rdma: fix error code in nvme_rdma_setup_ctrl - PM: hibernate: fix sparse warnings - [arm64] drm/msm: Fix potential NULL dereference in DPU SSPP - bpftool: Avoid leaking the JSON writer prepared for program metadata - [s390x] gmap: don't unconditionally call pte_unmap_unlock() in __gmap_zap() - [s390x] KVM: pv: avoid double free of sida page - [s390x] KVM: pv: avoid stalls for kvm_s390_pv_init_vm - tpm: fix Atmel TPM crash caused by too frequent queries - tpm_tis_spi: Add missing SPI ID - tcp: don't free a FIN sk_buff in tcp_remove_empty_skb() - [s390x] KVM: Fix handle_sske page fault handling - libertas_tf: Fix possible memory leak in probe and disconnect - libertas: Fix possible memory leak in probe and disconnect - [arm64] wcn36xx: add proper DMA memory barriers in rx path - [arm64] wcn36xx: Fix discarded frames due to wrong sequence number - drm/amdgpu/gmc6: fix DMA mask from 44 to 40 bits - [amd64,arm64] net: amd-xgbe: Toggle PLL settings during rate change - net: phylink: avoid mvneta warning when setting pause parameters - crypto: pcrypt - Delay write to padata->info - udp6: allow SO_MARK ctrl msg to affect routing - cgroup: Fix rootcg cpu.stat guest double counting - bpf: Fix propagation of bounds from 64-bit min/max into 32-bit and var_off. - bpf: Fix propagation of signed bounds from 64-bit min/max into 32-bit. - iio: st_sensors: Call st_sensors_power_enable() from bus drivers - iio: st_sensors: disable regulators after device unregistration - RDMA/bnxt_re: Fix query SRQ failure - [arm64] dts: meson-g12a: Fix the pwm regulator supply properties - [armhf] bus: ti-sysc: Fix timekeeping_suspended warning on resume - scsi: dc395: Fix error case unwinding - JFS: fix memleak in jfs_mount - ALSA: hda: Reduce udelay() at SKL+ position reporting - ALSA: hda: Release controller display power during shutdown/reboot - ALSA: hda: Fix hang during shutdown due to link reset - ALSA: hda: Use position buffer for SKL+ again - soundwire: debugfs: use controller id and link_id for debugfs - scsi: pm80xx: Fix misleading log statement in pm8001_mpi_get_nvmd_resp() - driver core: Fix possible memory leak in device_link_add() - [x86] ASoC: SOF: topology: do not power down primary core during topology removal - [arm64,armhf] soc/tegra: Fix an error handling path in tegra_powergate_power_up() - [powerpc*] Refactor is_kvm_guest() declaration to new header - [powerpc*] Rename is_kvm_guest() to check_kvm_guest() - [powerpc*] Reintroduce is_kvm_guest() as a fast-path check - [powerpc*] Fix is_kvm_guest() / kvm_para_available() - [powerpc*] fix unbalanced node refcount in check_kvm_guest() - serial: 8250_dw: Drop wrong use of ACPI_PTR() - scsi: csiostor: Uninitialized data in csio_ln_vnp_read_cbfn() - RDMA/mlx4: Return missed an error if device doesn't support steering - iio: adis: do not disabe IRQs in 'adis_init()' - scsi: ufs: Refactor ufshcd_setup_clocks() to remove skip_ref_clk - [arm64,armhf] serial: imx: fix detach/attach of serial console - [arm*] usb: dwc2: drd: fix dwc2_force_mode call in dwc2_ovr_init - [arm*] usb: dwc2: drd: fix dwc2_drd_role_sw_set when clock could be disabled - [arm*] usb: dwc2: drd: reset current session before setting the new one - [arm64] firmware: qcom_scm: Fix error retval in __qcom_scm_is_call_available() - [arm64] phy: qcom-qusb2: Fix a memory leak on probe - [armhf] phy: ti: gmii-sel: check of_get_address() for failure - [arm64] serial: xilinx_uartps: Fix race condition causing stuck TX - HID: u2fzero: clarify error check and length calculations - HID: u2fzero: properly handle timeouts in usb_submit_urb - virtio_ring: check desc == NULL when using indirect with packed - [mips*] cm: Convert to bitfield API to fix out-of-bounds access - apparmor: fix error check - rpmsg: Fix rpmsg_create_ept return when RPMSG config is not defined - nfsd: don't alloc under spinlock in rpc_parse_scope_id - NFS: Fix dentry verifier races - pnfs/flexfiles: Fix misplaced barrier in nfs4_ff_layout_prepare_ds - drm/plane-helper: fix uninitialized variable reference - [arm64] PCI: aardvark: Don't spam about PIO Response Status - [arm64] PCI: aardvark: Fix preserving PCI_EXP_RTCTL_CRSSVE flag on emulated bridge - opp: Fix return in _opp_add_static_v2() - NFS: Fix deadlocks in nfs_scan_commit_list() - fs: orangefs: fix error return code of orangefs_revalidate_lookup() - [arm64] mtd: spi-nor: hisi-sfc: Remove excessive clk_disable_unprepare() - mtd: core: don't remove debugfs directory if device is in use - [armhf] remoteproc: Fix a memory leak in an error handling path in 'rproc_handle_vdev()' - NFS: Fix up commit deadlocks - NFS: Fix an Oops in pnfs_mark_request_commit() - Fix user namespace leak - [arm64] soc: fsl: dpaa2-console: free buffer before returning from dpaa2_console_read - netfilter: nfnetlink_queue: fix OOB when mac header was cleared - [x86] watchdog: f71808e_wdt: fix inaccurate report in WDIOC_GETTIMEOUT - scsi: qla2xxx: Changes to support FCP2 Target - scsi: qla2xxx: Relogin during fabric disturbance - scsi: qla2xxx: Fix gnl list corruption - scsi: qla2xxx: Turn off target reset during issue_lip - NFSv4: Fix a regression in nfs_set_open_stateid_locked() - xen-pciback: Fix return in pm_ctrl_init() - [armhf] net: davinci_emac: Fix interrupt pacing disable - ethtool: fix ethtool msg len calculation for pause stats - net: vlan: fix a UAF in vlan_dev_real_dev() - ice: Fix replacing VF hardware MAC to existing MAC filter - ice: Fix not stopping Tx queues for VFs - [x86] ACPI: PMIC: Fix intel_pmic_regs_handler() read accesses - net: phy: fix duplex out of sync problem while changing settings - bonding: Fix a use-after-free problem when bond_sysfs_slave_add() failed - mfd: core: Add missing of_node_put for loop iteration - mm/zsmalloc.c: close race window between zs_pool_dec_isolated() and zs_unregister_migration() - zram: off by one in read_block_state() - llc: fix out-of-bound array index in llc_sk_dev_hash() - nfc: pn533: Fix double free when pn533_fill_fragment_skbs() fails - [arm64] pgtable: make __pte_to_phys/__phys_to_pte_val inline functions - bpf, sockmap: Remove unhash handler for BPF sockmap usage - bpf: sockmap, strparser, and tls are reusing qdisc_skb_cb and colliding - [amd64] gve: Fix off by one in gve_tx_timeout() - seq_file: fix passing wrong private data - net/sched: sch_taprio: fix undefined behavior in ktime_mono_to_any - [arm64] net: hns3: fix kernel crash when unload VF while it is being reset - [arm64] net: hns3: allow configure ETS bandwidth of all TCs - net: stmmac: allow a tc-taprio base-time of zero - vsock: prevent unnecessary refcnt inc for nonblocking connect - net/smc: fix sk_refcnt underflow on linkdown and fallback - cxgb4: fix eeprom len when diagnostics not implemented - [armel,armhf] 9155/1: fix early early_iounmap() - [armhf] 9156/1: drop cc-option fallbacks for architecture selection - [x86] mce: Add errata workaround for Skylake SKX37 - posix-cpu-timers: Clear task::posix_cputimers_work in copy_process() - f2fs: should use GFP_NOFS for directory inodes - net, neigh: Enable state migration between NUD_PERMANENT and NTF_USE - 9p/net: fix missing error check in p9_check_errors - memcg: prohibit unconditional exceeding the limit of dying tasks - [powerpc*] lib: Add helper to check if offset is within conditional branch range - [powerpc*] bpf: Validate branch ranges - [powerpc*] security: Add a helper to query stf_barrier type - [powerpc*] bpf: Emit stf barrier instruction sequences for BPF_NOSPEC - mm, oom: pagefault_out_of_memory: don't force global OOM for dying tasks - mm, oom: do not trigger out_of_memory from the #PF - video: backlight: Drop maximum brightness override for brightness zero - [s390x] cio: check the subchannel validity for dev_busid - [s390x] tape: fix timer initialization in tape_std_assign() - [s390x] ap: Fix hanging ioctl caused by orphaned replies - [s390x] cio: make ccw_device_dma_* more robust - [powerpc*] powernv/prd: Unregister OPAL_MSG_PRD2 notifier during module unload - [arm64,armhf] drm/sun4i: Fix macros in sun8i_csc.h - PCI: Add PCI_EXP_DEVCTL_PAYLOAD_* macros - [arm64] PCI: aardvark: Fix PCIe Max Payload Size setting - SUNRPC: Partial revert of commit 6f9f17287e78 - ath10k: fix invalid dma_addr_t token assignment - arch/cc: Introduce a function to check for confidential computing features - [arm64,armhf] soc/tegra: pmc: Fix imbalanced clock disabling in error code path https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.81 - block: Add a helper to validate the block size - loop: Use blk_validate_block_size() to validate block size - bootconfig: init: Fix memblock leak in xbc_make_cmdline() - net: stmmac: add clocks management for gmac driver - net: stmmac: fix missing unlock on error in stmmac_suspend() - net: stmmac: fix system hang if change mac address after interface ifdown - net: stmmac: fix issue where clk is being unprepared twice - [arm64,armhf] net: stmmac: dwmac-rk: fix unbalanced pm_runtime_enable warnings - [x86] iopl: Fake iopl(3) CLI/STI usage - PCI/MSI: Destroy sysfs before freeing entries - PCI/MSI: Deal with devices lying about their MSI mask capability - PCI: Add MSI masking quirk for Nvidia ION AHCI - erofs: remove the occupied parameter from z_erofs_pagevec_enqueue() - erofs: fix unsafe pagevec reuse of hooked pclusters - scripts/lld-version.sh: Rewrite based on upstream ld-version.sh - perf/core: Avoid put_page() when GUP fails - thermal: Fix NULL pointer dereferences in of_thermal_ functions https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.82 - [arm64] zynqmp: Do not duplicate flash partition label property - [arm64] zynqmp: Fix serial compatible string - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - [armhf] bus: ti-sysc: Add quirk handling for reinit on context lost - [armhf] bus: ti-sysc: Use context lost quirk for otg - [armhf] usb: musb: tusb6010: check return value after calling platform_get_resource() - [x86] usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - staging: rtl8723bs: remove possible deadlock when disconnect (v2) - [x86] ASoC: SOF: Intel: hda-dai: fix potential locking issue - [armhf] clk: imx: imx6ul: Move csi_sel mux to correct base register - [x86] ASoC: nau8824: Add DMI quirk mechanism for active-high jack-detect - scsi: advansys: Fix kernel pointer leak - ALSA: intel-dsp-config: add quirk for APL/GLK/TGL devices based on ES8336 codec - firmware_loader: fix pre-allocated buf built-in firmware use - tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc - scsi: scsi_debug: Fix out-of-bound read in resp_readcap16() - scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() - scsi: target: Fix ordered tag handling - scsi: target: Fix alua_tg_pt_gps_count tracking - iio: imu: st_lsm6dsx: Avoid potential array overflow in st_lsm6dsx_set_odr() - [i386] ALSA: gus: fix null pointer dereference on pointer block - maple: fix wrong return value of maple_bus_init(). - f2fs: fix up f2fs_lookup tracepoints - f2fs: fix to use WHINT_MODE - f2fs: compress: disallow disabling compress on non-empty compressed file - f2fs: fix incorrect return value in f2fs_sanity_check_ckpt() - [armhf] clk/ast2600: Fix soc revision for AHB - [arm64] clk: qcom: gcc-msm8996: Drop (again) gcc_aggre1_pnoc_ahb_clk - sched/core: Mitigate race cpus_share_cache()/update_top_cache_domain() - [x86] perf/x86/vlbr: Add c->flags to vlbr event constraints - blkcg: Remove extra blkcg_bio_issue_init - perf bpf: Avoid memory leak from perf_env__insert_btf() - perf bench futex: Fix memory leak of perf_cpu_map__new() - perf tests: Remove bash construct from record+zstd_comp_decomp.sh - drm/nouveau: hdmigv100.c: fix corrupted HDMI Vendor InfoFrame - net-zerocopy: Copy straggler unaligned data for TCP Rx. zerocopy. - net-zerocopy: Refactor skb frag fast-forward op. - tcp: Fix uninitialized access in skb frags array for Rx 0cp. - tracing: Add length protection to histogram string copies - bnxt_en: reject indirect blk offload when hw-tc-offload is off - tipc: only accept encrypted MSG_CRYPTO msgs - net: reduce indentation level in sk_clone_lock() - sock: fix /proc/net/sockstat underflow in sk_clone_lock() - net/smc: Make sure the link_id is unique - iavf: Fix return of set the new channel count - iavf: check for null in iavf_fix_features - iavf: free q_vectors before queues in iavf_disable_vf - iavf: Fix failure to exit out from last all-multicast mode - iavf: prevent accidental free of filter structure - iavf: validate pointers - iavf: Fix for the false positive ASQ/ARQ errors while issuing VF reset - iavf: Fix for setting queues to 0 - [x86] platform/x86: hp_accel: Fix an error handling path in 'lis3lv02d_probe()' - net/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove() - net/mlx5: Lag, update tracker when state change event received - net/mlx5: E-Switch, Change mode lock from mutex to rw semaphore - net/mlx5: E-Switch, return error if encap isn't supported - scsi: core: sysfs: Fix hang when device state is set via sysfs - net: sched: act_mirred: drop dst for the direction from egress to ingress - [arm64] net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove - net: virtio_net_hdr_to_skb: count transport header in UFO - i40e: Fix correct max_pkt_size on VF RX queue - i40e: Fix NULL ptr dereference on VSI filter sync - i40e: Fix changing previously set num_queue_pairs for PFs - i40e: Fix ping is lost after configuring ADq on VF - i40e: Fix warning message and call stack during rmmod i40e driver - i40e: Fix creation of first queue by omitting it if is not power of two - i40e: Fix display error code in dmesg - e100: fix device suspend/resume (Closes: #995927) - [powerpc*] KVM: PPC: Book3S HV: Use GLOBAL_TOC for kvmppc_h_set_dabr/xdabr() - [x86] perf/x86/intel/uncore: Fix filter_tid mask for CHA events on Skylake Server - [x86] perf/x86/intel/uncore: Fix IIO event constraints for Skylake Server - [s390x] kexec: fix return code handling - [arm64,armhf] net: stmmac: dwmac-rk: Fix ethernet on rk3399 based devices - tun: fix bonding active backup with arp monitoring - tipc: check for null after calling kmemdup - ipc: WARN if trying to remove ipc object which is absent - [x86] hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails - scsi: qla2xxx: Fix mailbox direction flags in qla2xxx_get_adapter_id() - [s390x] kexec: fix memory leak of ipl report buffer - block: Check ADMIN before NICE for IOPRIO_CLASS_RT - [x86] KVM: nVMX: don't use vcpu->arch.efer when checking host state on nested state load - udf: Fix crash after seekdir - [armhf] net: stmmac: socfpga: add runtime suspend/resume callback for stratix10 platform - btrfs: fix memory ordering between normal and ordered work functions - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - drm/udl: fix control-message timeout - drm/nouveau: Add a dedicated mutex for the clients list (CVE-2020-27820) - drm/nouveau: use drm_dev_unplug() during device removal (CVE-2020-27820) - drm/nouveau: clean up all clients on device removal (CVE-2020-27820) - [x86] drm/i915/dp: Ensure sink rate values are always valid - drm/amdgpu: fix set scaling mode Full/Full aspect/Center not works on vga and dvi connectors - scsi: ufs: core: Fix task management completion - scsi: ufs: core: Fix task management completion timeout race - hugetlbfs: flush TLBs correctly after huge_pmd_unshare (CVE-2021-4002) - RDMA/netlink: Add __maybe_unused to static inline in C file - selinux: fix NULL-pointer dereference when hashtab allocation fails - ASoC: DAPM: Cover regression by kctl change notification fix - ice: Delete always true check of PF pointer - fs: export an inode_update_time helper - btrfs: update device path inode time instead of bd_inode - [x86] ALSA: hda: hdac_ext_stream: fix potential locking issues - ALSA: hda: hdac_stream: fix potential locking issue in snd_hdac_stream_assign() - Revert "perf: Rework perf_event_exit_event()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.83 - bpf: Fix toctou on read-only map's constant scalar tracking (CVE-2021-4001) - ACPI: Get acpi_device's parent from the parent field - USB: serial: option: add Telit LE910S1 0x9200 composition - USB: serial: option: add Fibocom FM101-GL variants - [arm*] usb: dwc2: gadget: Fix ISOC flow for elapsed frames - [arm*] usb: dwc2: hcd_queue: Fix use of floating point literal - [arm64,armhf] usb: dwc3: gadget: Ignore NoStream after End Transfer - [arm64,armhf] usb: dwc3: gadget: Check for L1/L2/U3 for Start Transfer - [arm64,armhf] usb: dwc3: gadget: Fix null pointer exception - net: nexthop: fix null pointer dereference when IPv6 is not enabled - [arm64,armhf] usb: chipidea: ci_hdrc_imx: fix potential error pointer dereference in probe - usb: typec: fusb302: Fix masking of comparator and bc_lvl interrupts - usb: hub: Fix usb enumeration issue due to address0 race - usb: hub: Fix locking issues with address0_mutex - [arm*] binder: fix test regression due to sender_euid change - ALSA: ctxfi: Fix out-of-range access - ALSA: hda/realtek: Add quirk for ASRock NUC Box 1100 - ALSA: hda/realtek: Fix LED on HP ProBook 435 G7 - media: cec: copy sequence field for the reply - HID: wacom: Use "Confidence" flag to prevent reporting invalid contacts - [x86] staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect() - fuse: release pipe buf after last use - xen: don't continue xenstore initialization in case of errors - xen: detect uninitialized xenbus in xenbus_init - [powerpc*] KVM: PPC: Book3S HV: Prevent POWER7/8 TLB flush flushing SLB - tracing/uprobe: Fix uprobe_perf_open probes iteration - tracing: Fix pid filtering when triggers are attached - [arm64,armhf] mmc: sdhci-esdhc-imx: disable CMDQ support - mmc: sdhci: Fix ADMA for PAGE_SIZE >= 64KiB - [armhf] mdio: aspeed: Fix "Link is Down" issue - [arm64] PCI: aardvark: Deduplicate code in advk_pcie_rd_conf() - [arm64] PCI: aardvark: Update comment about disabling link training - [arm64] PCI: aardvark: Implement re-issuing config requests on CRS response - [arm64] PCI: aardvark: Simplify initialization of rootcap on virtual bridge - [arm64] PCI: aardvark: Fix link training - proc/vmcore: fix clearing user buffer by properly using clear_user() - netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY - netfilter: ctnetlink: do not erase error code with EINVAL - netfilter: ipvs: Fix reuse connection if RS weight is 0 - netfilter: flowtable: fix IPv6 tunnel addr match - [x86] ASoC: topology: Add missing rwsem around snd_ctl_remove() calls - net: ieee802154: handle iftypes as u32 - NFSv42: Don't fail clone() unless the OP_CLONE operation failed - [armhf] socfpga: Fix crash with CONFIG_FORTIRY_SOURCE - drm/nouveau/acr: fix a couple NULL vs IS_ERR() checks - scsi: mpt3sas: Fix kernel panic during drive powercycle test - [arm*] drm/vc4: fix error code in vc4_create_object() - iavf: Prevent changing static ITR values if adaptive moderation is on - ALSA: intel-dsp-config: add quirk for JSL devices based on ES8336 codec - [arm64,armhf] firmware: smccc: Fix check for ARCH_SOC_ID not implemented - ipv6: fix typos in __ip6_finish_output() - nfp: checking parameter process for rx-usecs/tx-usecs is invalid - net: stmmac: fix system hang caused by eee_ctrl_timer during suspend/resume - net: stmmac: retain PTP clock time during SIOCSHWTSTAMP ioctls - net: ipv6: add fib6_nh_release_dsts stub - net: nexthop: release IPv6 per-cpu dsts when replacing a nexthop group - ice: fix vsi->txq_map sizing - ice: avoid bpf_prog refcount underflow - scsi: core: sysfs: Fix setting device state to SDEV_RUNNING - scsi: scsi_debug: Zero clear zones at reset write pointer - erofs: fix deadlock when shrink erofs slab - net/smc: Ensure the active closing peer first closes clcsock - [arm64,armhf] net: marvell: mvpp2: increase MTU limit when XDP enabled - nvmet-tcp: fix incomplete data digest send - [armhf] net/ncsi : Add payload to be 32-bit aligned to fix dropped packets - PM: hibernate: use correct mode for swsusp_close() - drm/amd/display: Set plane update flags for all planes in reset - tcp_cubic: fix spurious Hystart ACK train detections for not-cwnd-limited flows - lan743x: fix deadlock in lan743x_phy_link_status_change() - net: phylink: Force link down and retrigger resolve on interface change - net: phylink: Force retrigger in case of latched link-fail indicator - net/smc: Fix NULL pointer dereferencing in smc_vlan_by_tcpsk() - net/smc: Fix loop in smc_listen - nvmet: use IOCB_NOWAIT only if the filesystem supports it - igb: fix netpoll exit with traffic - [mips*] loongson64: fix FTLB configuration - [mips*] use 3-level pgtable for 64KB page size on MIPS_VA_BITS_48 - net/sched: sch_ets: don't peek at classes beyond 'nbands' - net: vlan: fix underflow for the real_dev refcnt - net/smc: Don't call clcsock shutdown twice when smc shutdown - [arm64] net: hns3: fix VF RSS failed problem after PF enable multi-TCs - [arm64] net: mscc: ocelot: don't downgrade timestamping RX filters in SIOCSHWTSTAMP - [arm64] net: mscc: ocelot: correctly report the timestamping RX filters in ethtool - tcp: correctly handle increased zerocopy args struct size - sched/scs: Reset task stack state in bringup_cpu() - f2fs: set SBI_NEED_FSCK flag when inconsistent node block found - ceph: properly handle statfs on multifs setups - smb3: do not error on fsync when readonly - [amd64] iommu/amd: Clarify AMD IOMMUv2 initialization messages - vhost/vsock: fix incorrect used length reported to the guest - tracing: Check pid filtering when creating events - xen: sync include/xen/interface/io/ring.h with Xen's newest version - xen/blkfront: read response from backend only once - xen/blkfront: don't take local copy of a request from the ring page - xen/blkfront: don't trust the backend response data blindly - xen/netfront: read response from backend only once - xen/netfront: don't read data from request on the ring page - xen/netfront: disentangle tx_skb_freelist - xen/netfront: don't trust the backend response data blindly - tty: hvc: replace BUG_ON() with negative return value - [s390x] mm: validate VMA in PGSTE manipulation functions - shm: extend forced shm destroy to support objects from several IPC nses - net: stmmac: platform: fix build warning when with !CONFIG_PM_SLEEP - drm/amdgpu/gfx9: switch to golden tsc registers for renoir+ https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.84 - NFSv42: Fix pagecache invalidation after COPY/CLONE - can: j1939: j1939_tp_cmd_recv(): check the dst address of TP.CM_BAM - ovl: simplify file splice - ovl: fix deadlock in splice write - gfs2: release iopen glock early in evict - gfs2: Fix length of holes reported at end-of-file - [powerpc*] pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" - mac80211: do not access the IV when it was stripped - net/smc: Transfer remaining wait queue entries during fallback - [amd64,arm64] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) - net: return correct error code - [x86] platform/x86: thinkpad_acpi: Add support for dual fan control - [x86] platform/x86: thinkpad_acpi: Fix WWAN device disabled issue after S3 deep - [s390x] setup: avoid using memblock_enforce_memory_limit - btrfs: check-integrity: fix a warning on write caching disabled disk - thermal: core: Reset previous low and high trip during thermal zone init - scsi: iscsi: Unblock session then wake up error handler - drm/amd/amdgpu: fix potential memleak - ata: ahci: Add Green Sardine vendor ID as board_ahci_mobile - [arm64] ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() - ipv6: check return value of ipv6_skip_exthdr - net/smc: Avoid warning of possible recursive locking - ACPI: Add stubs for wakeup handler functions - vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit - kprobes: Limit max data_size of the kretprobe instances - rt2x00: do not mark device gone on EPROTO errors during start - ipmi: Move remove_work to dedicated workqueue - cpufreq: Fix get_cpu_device() failure in add_cpu_dev_symlink() - [s390x] pci: move pseudo-MMIO to prevent MIO overlap - fget: check that the fd still exists after getting a ref to it - ipv6: fix memory leak in fib6_rule_suppress - drm/amd/display: Allow DSC on supported MST branch devices - KVM: Disallow user memslot with size that exceeds "unsigned long" - [x86] KVM: nVMX: Flush current VPID (L1 vs. L2) for KVM_REQ_TLB_FLUSH_GUEST - [x86] KVM: x86: Use a stable condition around all VT-d PI paths - [arm64] KVM: arm64: Avoid setting the upper 32 bits of TCR_EL2 and CPTR_EL2 to 1 - [x86] KVM: X86: Use vcpu->arch.walk_mmu for kvm_mmu_invlpg() - wireguard: allowedips: add missing __rcu annotation to satisfy sparse - wireguard: device: reset peer src endpoint when netns exits - wireguard: receive: use ring buffer for incoming handshakes - wireguard: receive: drop handshakes if queue lock is contended - wireguard: ratelimiter: use kvcalloc() instead of kvzalloc() - [armhf] i2c: stm32f7: flush TX FIFO upon transfer errors - [armhf] i2c: stm32f7: recover the bus on access timeout - [armhf] i2c: stm32f7: stop dma transfer in case of NACK - tcp: fix page frag corruption on page fault - net: qlogic: qlcnic: Fix a NULL pointer dereference in qlcnic_83xx_add_rings() - net: mpls: Fix notifications when deleting a device - siphash: use _unaligned version by default - [arm64] ftrace: add missing BTIs - net/mlx4_en: Fix an use-after-free bug in mlx4_en_try_alloc_resources() - rxrpc: Fix rxrpc_peer leak in rxrpc_look_up_bundle() - rxrpc: Fix rxrpc_local leak in rxrpc_lookup_peer() - ALSA: intel-dsp-config: add quirk for CML devices based on ES8336 codec - net: usb: lan78xx: lan78xx_phy_init(): use PHY_POLL instead of "0" if no IRQ is available - [arm64,armhf] net: marvell: mvpp2: Fix the computation of shared CPUs - [arm64] dpaa2-eth: destroy workqueue at the end of remove function - net: annotate data-races on txq->xmit_lock_owner - ipv4: convert fib_num_tclassid_users to atomic_t - net/smc: fix wrong list_del in smc_lgr_cleanup_early - net/rds: correct socket tunable error in rds_tcp_tune() - net/smc: Keep smc_close_final rc during active close - [arm64] drm/msm/a6xx: Allocate enough space for GMU registers - [arm64] drm/msm: Do hw_init() before capturing GPU state - [amd64,arm64] atlantic: Increase delay for fw transactions - [amd64,arm64] atlatnic: enable Nbase-t speeds with base-t - [amd64,arm64] atlantic: Fix to display FW bundle version instead of FW mac version. - [amd64,arm64] atlantic: Add missing DIDs and fix 115c. - [amd64,arm64] Remove Half duplex mode speed capabilities. - [amd64,arm64] atlantic: Fix statistics logic for production hardware - [amd64,arm64] atlantic: Remove warn trace message. - [x86] KVM: x86/pmu: Fix reserved bits for AMD PerfEvtSeln register - [x86] KVM: VMX: Set failure code in prepare_vmcs02() - [x86] entry: Use the correct fence macro after swapgs in kernel CR3 - [x86] xen: Add xenpv_restore_regs_and_return_to_usermode() - sched/uclamp: Fix rq->uclamp_max not set on first enqueue - [x86] pv: Switch SWAPGS to ALTERNATIVE - [x86] entry: Add a fence for kernel entry SWAPGS in paranoid_entry() - vgacon: Propagate console boot parameters before calling `vc_resize' - xhci: Fix commad ring abort, write all 64 bits to CRCR register. - USB: NO_LPM quirk Lenovo Powered USB-C Travel Hub - usb: typec: tcpm: Wait in SNK_DEBOUNCED until disconnect - [x86] tsc: Add a timer to make sure TSC_adjust is always checked - [x86] tsc: Disable clocksource watchdog for TSC on qualified platorms - [x86] 64/mm: Map all kernel memory into trampoline_pgd - [arm64] tty: serial: msm_serial: Deactivate RX DMA for polling support - [arm*] serial: pl011: Add ACPI SBSA UART match id - [arm64,armhf] serial: tegra: Change lower tolerance baud rate limit for tegra20 and tegra30 - serial: core: fix transmit-buffer reset and memleak - serial: 8250_pci: Fix ACCES entries in pci_serial_quirks array - serial: 8250_pci: rewrite pericom_do_set_divisor() - serial: 8250: Fix RTS modem control while in rs485 mode - iwlwifi: mvm: retry init flow if failed - ipmi: msghandler: Make symbol 'remove_work_wq' static . [ Salvatore Bonaccorso ] * integrity: Drop "MODSIGN: load blacklist from MOKx" as redundant after 5.10.47. * Bump ABI to 10 * Refresh "tools/perf: pmu-events: Fix reproducibility" * [rt] Update to 5.10.73-rt54 * [rt] Refresh "tracing: Merge irqflags + preempt counter." * Refresh "Export symbols needed by Android drivers" * [rt] Refresh "printk: introduce kernel sync mode" * [rt] Refresh "printk: move console printing to kthreads" * [rt] Drop "rcutorture: Avoid problematic critical section nesting on RT" * [rt] Add new signing key for Luis Claudio R. Goncalves * [rt] Update to 5.10.83-rt58 . [ Ben Hutchings ] * tools/perf: Fix warning introduced by "tools/perf: pmu-events: Fix reproducibility" linux-signed-amd64 (5.10.84+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.84-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.71 - tty: Fix out-of-bound vmalloc access in imageblit - cpufreq: schedutil: Use kobject release() method to free sugov_tunables - scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS - cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory - ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. - [amd64,arm64] ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect - fs-verity: fix signed integer overflow with i_size near S64_MAX - hwmon: (tmp421) handle I2C errors - hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field - [arm64,armhf] gpio: pca953x: do not ignore i2c errors - scsi: ufs: Fix illegal offset in UPIU event trace - mac80211: fix use-after-free in CCMP/GCMP RX - [x86] kvmclock: Move this_cpu_pvti into kvmclock.h - [x86] KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() - [x86] KVM: x86: nSVM: don't copy virt_ext from vmcb12 - [x86] KVM: nVMX: Filter out all unsupported controls when eVMCS was activated - KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest - RDMA/cma: Do not change route.addr.src_addr.ss_family - drm/amd/display: Pass PCI deviceid into DC - drm/amdgpu: correct initial cp_hqd_quantum for gfx9 - ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 - bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog - IB/cma: Do not send IGMP leaves for sendonly Multicast groups - RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure - mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug - mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap - mac80211: mesh: fix potentially unaligned access - mac80211-hwsim: fix late beacon hrtimer handling - sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb - hwmon: (tmp421) report /PVLD condition as fault - hwmon: (tmp421) fix rounding for negative values - [arm64] net: enetc: fix the incorrect clearing of IF_MODE bits - net: ipv4: Fix rtnexthop len when RTA_FLOW is present - smsc95xx: fix stalled rx after link change - [x86] drm/i915/request: fix early tracepoints - [arm64,armhf] dsa: mv88e6xxx: 6161: Use chip wide MAX MTU - [arm64,armhf] dsa: mv88e6xxx: Fix MTU definition - [arm64,armhf] dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports - e100: fix length calculation in e100_get_regs_len - e100: fix buffer overrun in e100_get_regs - [arm64] RDMA/hns: Fix inaccurate prints - bpf: Exempt CAP_BPF from checks against bpf_jit_limit - Revert "block, bfq: honor already-setup queue merges" - scsi: csiostor: Add module softdep on cxgb4 - ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup - [arm64] net: hns3: do not allow call hns3_nic_net_open repeatedly - [arm64] net: hns3: keep MAC pause mode when multiple TCs are enabled - [arm64] net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE - [arm64] net: hns3: fix show wrong state when add existing uc mac address - [arm64] net: hns3: fix prototype warning - [arm64] net: hns3: reconstruct function hns3_self_test - [arm64] net: hns3: fix always enable rx vlan filter problem after selftest - [arm64,armhf] net: phy: bcm7xxx: Fixed indirect MMD operations - net: sched: flower: protect fl_walk() with rcu - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses - [x86] perf/x86/intel: Update event constraints for ICX - nvme: add command id quirk for apple controllers - elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings - debugfs: debugfs_create_file_size(): use IS_ERR to check for error - ext4: fix loff_t overflow in ext4_max_bitmap_size() - ext4: limit the number of blocks in one ADD_RANGE TLV (Closes: #995425) - ext4: fix reserved space counter leakage - ext4: add error checking to ext4_ext_replay_set_iblocks() - ext4: fix potential infinite loop in ext4_dx_readdir() - HID: u2fzero: ignore incomplete packets without data - net: udp: annotate data race around udp_sk(sk)->corkflag - ASoC: dapm: use component prefix when checking widget names - usb: hso: remove the bailout parameter - [x86] crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744, CVE-2021-3764) - HID: betop: fix slab-out-of-bounds Write in betop_probe - netfilter: ipset: Fix oversized kvmalloc() calls - mm: don't allow oversized kvmalloc() calls - HID: usbhid: free raw_report buffers in usbhid_stop - [x86] KVM: x86: Handle SRCU initialization failure during page track init - netfilter: conntrack: serialize hash resizes and cleanups - netfilter: nf_tables: Fix oversized kvmalloc() calls https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.72 - [arm64,armhf] spi: rockchip: handle zero length transfers without timing out - nfsd: back channel stuck in SEQ4_STATUS_CB_PATH_DOWN - btrfs: replace BUG_ON() in btrfs_csum_one_bio() with proper error handling - btrfs: fix mount failure due to past and transient device flush error - net: mdio: introduce a shutdown method to mdio device drivers - xen-netback: correct success/error reporting for the SKB-with-fraglist case - scsi: sd: Free scsi_disk device via put_device() - [arm*] usb: dwc2: check return value after calling platform_get_resource() - nvme-fc: update hardware queues before using them - nvme-fc: avoid race between time out and tear down - [arm64] thermal/drivers/tsens: Fix wrong check for tzd in irq handlers - scsi: ses: Retry failed Send/Receive Diagnostic commands - [arm64,armhf] irqchip/gic: Work around broken Renesas integration - smb3: correct smb3 ACL security descriptor - KVM: do not shrink halt_poll_ns below grow_start - [x86] kvm: Add AMD PMU MSRs to msrs_to_save_all[] - [x86] KVM: nSVM: restore int_vector in svm_clear_vintr - [x86] perf/x86: Reset destroy callback on event init failure - libata: Add ATA_HORKAGE_NO_NCQ_ON_ATI for Samsung 860 and 870 SSD. https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73 - [arm64,armhf] usb: chipidea: ci_hdrc_imx: Also search for 'phys' phandle - USB: cdc-acm: fix racy tty buffer accesses - USB: cdc-acm: fix break reporting - usb: typec: tcpm: handle SRC_STARTUP state if cc changes - drm/nouveau/kms/tu102-: delay enabling cursor until after assign_windows - xen/privcmd: fix error handling in mmap-resource processing - [arm64] mmc: meson-gx: do not use memcpy_to/fromio for dram-access-quirk - ovl: fix missing negative dentry check in ovl_rename() (CVE-2021-20321) - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - nfsd: fix error handling of register_pernet_subsys() in init_nfsd() - nfsd4: Handle the NFSv4 READDIR 'dircount' hint being zero - SUNRPC: fix sign error causing rpcsec_gss drops - xen/balloon: fix cancelled balloon action - [armhf] dts: omap3430-sdp: Fix NAND device node - [armhf] bus: ti-sysc: Add break in switch statement in sysc_init_soc() - [arm64] soc: qcom: mdt_loader: Drop PT_LOAD check on hash segment - [armhf] dts: imx: Add missing pinctrl-names for panel on M53Menlo - [armhf] dts: imx: Fix USB host power regulator polarity on M53Menlo - [amd64] PCI: hv: Fix sleep while in non-sleep context when removing child devices from the bus - iwlwifi: pcie: add configuration of a Wi-Fi adapter on Dell XPS 15 - [armel,armhf] bpf, arm: Fix register clobbering in div/mod implementation - [armhf] soc: ti: omap-prm: Fix external abort for am335x pruss - bpf: Fix integer overflow in prealloc_elems_and_freelist() (CVE-2021-41864) - net/mlx5e: IPSEC RX, enable checksum complete - net/mlx5: E-Switch, Fix double allocation of acl flow counter - phy: mdio: fix memory leak - net_sched: fix NULL deref in fifo_set_limit() - [i386] ptp_pch: Load module automatically if ID matches - [armhf] imx6: disable the GIC CPU interface before calling stby-poweroff sequence - net: bridge: use nla_total_size_64bit() in br_get_linkxstats_size() - net: bridge: fix under estimation in br_get_linkxstats_size() - net/sched: sch_taprio: properly cancel timer from taprio_destroy() - net: sfp: Fix typo in state machine debug string - netlink: annotate data races around nlk->bound - perf jevents: Tidy error handling - [armhf] bus: ti-sysc: Use CLKDM_NOAUTO for dra7 dcan1 for errata i893 - [arm64,armhf] drm/sun4i: dw-hdmi: Fix HDMI PHY clock setup - drm/nouveau: avoid a use-after-free when BO init fails - drm/nouveau/kms/nv50-: fix file release memory leak - drm/nouveau/debugfs: fix file release memory leak - [amd64] gve: Correct available tx qpl check - [amd64] gve: Avoid freeing NULL pointer - rtnetlink: fix if_nlmsg_stats_size() under estimation - [amd64] gve: fix gve_get_stats() - [amd64] gve: report 64bit tx_bytes counter from gve_handle_report_stats() - i40e: fix endless loop under rtnl - i40e: Fix freeing of uninitialized misc IRQ vector - net: prefer socket bound to interface when not in VRF - [powerpc*] iommu: Report the correct most efficient DMA mask for PCI devices - i2c: acpi: fix resource leak in reconfiguration device addition - [s390x] bpf, s390: Fix potential memory leak about jit_data - [powerpc*] bpf: Fix BPF_SUB when imm == 0x80000000 - [powerpc*] pseries/eeh: Fix the kdump kernel crash during eeh_pseries_init - [i386] x86/platform/olpc: Correct ifdef symbol to intended CONFIG_OLPC_XO15_SCI - [x86] entry: Correct reference to intended CONFIG_64_BIT - [x86] hpet: Use another crystalball to evaluate HPET usability https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.74 - ext4: check and update i_disksize properly - ext4: correct the error path of ext4_write_inline_data_end() - [x86] ASoC: Intel: sof_sdw: tag SoundWire BEs as non-atomic - HID: apple: Fix logical maximum and usage maximum of Magic Keyboard JIS - netfilter: ip6_tables: zero-initialize fragment offset - HID: wacom: Add new Intuos BT (CTL-4100WL/CTL-6100WL) device IDs - [x86] ASoC: SOF: loader: release_firmware() on load failure to avoid batching - netfilter: nf_nat_masquerade: make async masq_inet6_event handling generic - netfilter: nf_nat_masquerade: defer conntrack walk to work queue - mac80211: Drop frames from invalid MAC address in ad-hoc mode - net: prevent user from passing illegal stab size - mac80211: check return value of rhashtable_init - [x86] vboxfs: fix broken legacy mount signature checking - drm/amdgpu: fix gart.bo pin_count leak - scsi: ses: Fix unsigned comparison with less than zero - scsi: virtio_scsi: Fix spelling mistake "Unsupport" -> "Unsupported" - perf/core: fix userpage->time_enabled of inactive events - sched: Always inline is_percpu_thread() - [armhf] hwmon: (pmbus/ibm-cffps) max_power_out swap changes https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.75 - ALSA: usb-audio: Add quirk for VF0770 - ALSA: pcm: Workaround for a wrong offset in SYNC_PTR compat ioctl - ALSA: seq: Fix a potential UAF by wrong private_free call order - ALSA: hda/realtek: Enable 4-speaker output for Dell Precision 5560 laptop - ALSA: hda - Enable headphone mic on Dell Latitude laptops with ALC3254 - ALSA: hda/realtek: Complete partial device name to avoid ambiguity - ALSA: hda/realtek: Add quirk for Clevo X170KM-G - ALSA: hda/realtek - ALC236 headset MIC recording issue - ALSA: hda/realtek: Add quirk for TongFang PHxTxX1 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo 13s Gen2 - ALSA: hda/realtek: Fix the mic type detection issue for ASUS G551JW - [s390x] fix strrchr() implementation - [arm64] hugetlb: fix CMA gigantic page order for non-4K PAGE_SIZE - drm/msm: Avoid potential overflow in timeout_to_jiffies() - btrfs: unlock newly allocated extent buffer after error - btrfs: deal with errors when replaying dir entry during log replay - btrfs: deal with errors when adding inode reference during log replay - btrfs: check for error when looking up inode during dir entry replay - btrfs: update refs for any root except tree log roots - btrfs: fix abort logic in btrfs_replace_file_extents - [x86] resctrl: Free the ctrlval arrays when domain_setup_mon_state() fails - [x86] mei: me: add Ice Lake-N device id. - xhci: guard accesses to ep_state in xhci_endpoint_reset() - xhci: Fix command ring pointer corruption while aborting a command - xhci: Enable trust tx length quirk for Fresco FL11 USB controller - cb710: avoid NULL pointer subtraction - [arm64,x86] efi/cper: use stack buffer for error record decoding - efi: Change down_interruptible() in virt_efi_reset_system() to down_trylock() - [armhf] usb: musb: dsps: Fix the probe error path (Closes: 1000900) - Input: xpad - add support for another USB ID of Nacon GC-100 - USB: serial: qcserial: add EM9191 QDL support - USB: serial: option: add Quectel EC200S-CN module support - USB: serial: option: add Telit LE910Cx composition 0x1204 - USB: serial: option: add prod. id for Quectel EG91 - virtio: write back F_VERSION_1 before validate - nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells - [powerpc*] xive: Discard disabled interrupts in get_irqchip_state() - driver core: Reject pointless SYNC_STATE_ONLY device links - iio: adc: ad7192: Add IRQ flag - iio: adc: ad7780: Fix IRQ flag - iio: adc: ad7793: Fix IRQ flag - iio: adc128s052: Fix the error handling path of 'adc128_probe()' - iio: adc: max1027: Fix wrong shift with 12-bit devices - iio: light: opt3001: Fixed timeout error when 0 lux - iio: adc: max1027: Fix the number of max1X31 channels - iio: dac: ti-dac5571: fix an error code in probe() - [arm64] tee: optee: Fix missing devices unregister during optee_remove - [armel,armhf] dts: bcm2711-rpi-4-b: Fix usb's unit address - [armel,armhf] dts: bcm2711-rpi-4-b: fix sd_io_1v8_reg regulator states - [armel,armhf] dts: bcm2711-rpi-4-b: Fix pcie0's unit address formatting - nvme-pci: Fix abort command id - sctp: account stream padding length for reconf chunk - [arm64,armhf] gpio: pca953x: Improve bias setting - net/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path - net/mlx5e: Mutually exclude RX-FCS and RX-port-timestamp - net: stmmac: fix get_hw_feature() on old hardware - ethernet: s2io: fix setting mac address during resume - nfc: fix error handling of nfc_proto_register() - NFC: digital: fix possible memory leak in digital_tg_listen_mdaa() - NFC: digital: fix possible memory leak in digital_in_send_sdd_req() - [i386] pata_legacy: fix a couple uninitialized variable bugs - ata: ahci_platform: fix null-ptr-deref in ahci_platform_enable_regulators() - drm/edid: In connector_bad_edid() cap num_of_ext by num_blocks read - [arm64] drm/msm: Fix null pointer dereference on pointer edp - [arm64] drm/msm/mdp5: fix cursor-related warnings - [arm64] drm/msm/a6xx: Track current ctx by seqno - [arm64] drm/msm/dsi: Fix an error code in msm_dsi_modeset_init() - [arm64] drm/msm/dsi: fix off by one in dsi_bus_clk_enable error handling - [arm64] acpi/arm64: fix next_platform_timer() section mismatch error - [x86] platform/x86: intel_scu_ipc: Fix busy loop expiry time - mqprio: Correct stats in mqprio_dump_class_stats(). - qed: Fix missing error code in qed_slowpath_start() - nfp: flow_offload: move flow_indr_dev_register from app init to app start - [arm64] net: mscc: ocelot: warn when a PTP IRQ is raised for an unknown skb - [arm64,armhf] net: dsa: mv88e6xxx: don't use PHY_DETECT on internal PHY's https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.76 - xhci: add quirk for host controllers that don't update endpoint DCS - io_uring: fix splice_fd_in checks backport typo - [armhf] dts: vexpress-v2p-ca9: Fix the SMB unit-address - block: decode QUEUE_FLAG_HCTX_ACTIVE in debugfs output - [x86] xen/x86: prevent PVH type from getting clobbered - NFSD: Keep existing listeners on portlist error - netfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value - ice: fix getting UDP tunnel entry - netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6 - netfilter: ipvs: make global sysctl readonly in non-init netns - tcp: md5: Fix overlap between vrf and non-vrf keys - ipv6: When forwarding count rx stats on the orig netdev - [powerpc*] smp: do not decrement idle task preempt count in CPU offline - [arm64] net: hns3: reset DWRR of unused tc to zero - [arm64] net: hns3: add limit ets dwrr bandwidth cannot be 0 - [arm64] net: hns3: schedule the polling again when allocation fails - [arm64] net: hns3: fix vf reset workqueue cannot exit - [arm64] net: hns3: disable sriov before unload hclge layer - net: stmmac: Fix E2E delay mechanism - e1000e: Fix packet loss on Tiger Lake and later - ice: Add missing E810 device ids - [arm64] net: enetc: fix ethtool counter name for PM0_TERR - can: peak_usb: pcan_usb_fd_decode_status(): fix back to ERROR_ACTIVE state notification - can: peak_pci: peak_pci_remove(): fix UAF - can: isotp: isotp_sendmsg(): fix return error on FC timeout on TX path - can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() - can: j1939: j1939_tp_rxtimer(): fix errant alert in j1939_tp_rxtimer - can: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv - can: j1939: j1939_xtp_rx_dat_one(): cancel session if receive TP.DT with error length - can: j1939: j1939_xtp_rx_rts_session_new(): abort TP less than 9 bytes - ceph: skip existing superblocks that are blocklisted or shut down when mounting - ceph: fix handling of "meta" errors - ocfs2: fix data corruption after conversion from inline format - ocfs2: mount fails with buffer overflow in strlen - userfaultfd: fix a race between writeprotect and exit_mmap() - vfs: check fd has read access in kernel_read_file_from_fd() - ALSA: usb-audio: Provide quirk for Sennheiser GSP670 Headset - ALSA: hda/realtek: Add quirk for Clevo PC50HS - ASoC: DAPM: Fix missing kctl change notifications - audit: fix possible null-pointer dereference in audit_filter_rules - [powerpc*] powerpc64/idle: Fix SP offsets when saving GPRs - [powerpc*] KVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest() - [powerpc*] KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest (CVE-2021-43056) - [powerpc*] idle: Don't corrupt back chain when going idle - mm, slub: fix mismatch between reconstructed freelist depth and cnt - mm, slub: fix potential memoryleak in kmem_cache_open() - mm, slub: fix incorrect memcg slab count for bulk free - [x86] KVM: nVMX: promptly process interrupts delivered while in guest mode - nfc: nci: fix the UAF of rf_conn_info object (CVE-2021-3760) - isdn: cpai: check ctr->cnr to avoid array index out of bound (CVE-2021-43389) - [arm64] net: hns3: fix the max tx size according to user manual - ALSA: hda: intel: Allow repeatedly probing on codec configuration errors - btrfs: deal with errors when checking if a dir entry exists during log replay - net: stmmac: add support for dwmac 3.40a - isdn: mISDN: Fix sleeping function called from invalid context - [x86] platform/x86: intel_scu_ipc: Update timeout value in comment - ALSA: hda: avoid write to STATESTS if controller is in reset - [x86] perf/x86/msr: Add Sapphire Rapids CPU support - scsi: iscsi: Fix set_param() handling - scsi: qla2xxx: Fix a memory leak in an error path of qla2x00_process_els() - sched/scs: Reset the shadow stack when idle_task_exit - [arm64] net: hns3: fix for miscalculation of rx unused desc - scsi: core: Fix shost->cmd_per_lun calculation in scsi_add_host_with_dma() - can: isotp: isotp_sendmsg(): fix TX buffer concurrent access in isotp_sendmsg() - [s390x] pci: fix zpci_zdev_put() on reserve - net: mdiobus: Fix memory leak in __mdiobus_register - tracing: Have all levels of checks prevent recursion - e1000e: Separate TGP board type from SPT - [armhf] pinctrl: stm32: use valid pin identifier in stm32_pinctrl_resume() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.77 - [armel,armhf] 9139/1: kprobes: fix arch_init_kprobes() prototype - io_uring: don't take uring_lock during iowq cancel - [powerpc*] bpf: Fix BPF_MOD when imm == 1 - [arm64] Avoid premature usercopy failure - ext4: fix possible UAF when remounting r/o a mmp-protected file system - usbnet: sanity check for maxpacket - usbnet: fix error return code in usbnet_probe() - pinctrl: amd: disable and mask interrupts on probe - ata: sata_mv: Fix the error handling of mv_chip_id() - tipc: fix size validations for the MSG_CRYPTO type (CVE-2021-43267) - nfc: port100: fix using -ERRNO as command type mask - Revert "net: mdiobus: Fix memory leak in __mdiobus_register" - mmc: vub300: fix control-message timeouts - mmc: cqhci: clear HALT state after CQE enable - [armhf] mmc: dw_mmc: exynos: fix the finding clock sample value - mmc: sdhci: Map more voltage level to SDHCI_POWER_330 - [arm64,armhf] mmc: sdhci-esdhc-imx: clear the buffer_read_ready to reset standard tuning circuit - ocfs2: fix race between searching chunks and release journal_head from buffer_head - nvme-tcp: fix H2CData PDU send accounting (again) - cfg80211: scan: fix RCU in cfg80211_add_nontrans_list() - cfg80211: fix management registrations locking - net: lan78xx: fix division by zero in send path - mm, thp: bail out early in collapse_file for writeback page - drm/ttm: fix memleak in ttm_transfered_destroy - drm/amdgpu: fix out of bounds write (CVE-2021-42327) - cgroup: Fix memory leak caused by missing cgroup_bpf_offline - tcp_bpf: Fix one concurrency problem in the tcp_bpf_send_verdict function - bpf: Fix potential race in tail call compatibility check - bpf: Fix error usage of map_fd and fdget() in generic_map_update_batch() - [amd64] IB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields - [amd64] IB/hfi1: Fix abba locking issue with sc_disable() - nvmet-tcp: fix data digest pointer calculation - nvme-tcp: fix data digest pointer calculation - nvme-tcp: fix possible req->offset corruption - RDMA/mlx5: Set user priority for DCT - [arm64] dts: allwinner: h5: NanoPI Neo 2: Fix ethernet node - regmap: Fix possible double-free in regcache_rbtree_exit() - net: batman-adv: fix error handling - net-sysfs: initialize uid and gid before calling net_ns_get_ownership - cfg80211: correct bridge/4addr mode check - net: Prevent infinite while loop in skb_tx_hash() - RDMA/sa_query: Use strscpy_pad instead of memcpy to copy a string - net: ethernet: microchip: lan743x: Fix driver crash when lan743x_pm_resume fails - net: ethernet: microchip: lan743x: Fix dma allocation failure by using dma_set_mask_and_coherent - phy: phy_ethtool_ksettings_get: Lock the phy for consistency - phy: phy_ethtool_ksettings_set: Move after phy_start_aneg - phy: phy_start_aneg: Add an unlocked version - phy: phy_ethtool_ksettings_set: Lock the PHY while changing settings - sctp: use init_tag from inithdr for ABORT chunk (CVE-2021-3772) - sctp: fix the processing for INIT_ACK chunk (CVE-2021-3772) - sctp: fix the processing for COOKIE_ECHO chunk (CVE-2021-3772) - sctp: add vtag check in sctp_sf_violation (CVE-2021-3772) - sctp: add vtag check in sctp_sf_do_8_5_1_E_sa (CVE-2021-3772) - sctp: add vtag check in sctp_sf_ootb (CVE-2021-3772) - lan743x: fix endianness when accessing descriptors - [s390x] KVM: clear kicked_mask before sleeping again - [s390x] KVM: preserve deliverable_mask in __airqs_kick_single_vcpu https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.78 - scsi: core: Put LLD module refcnt after SCSI device is released - Revert "io_uring: reinforce cancel on flush during exit" - sfc: Fix reading non-legacy supported link modes - vrf: Revert "Reset skb conntrack connection..." - net: ethernet: microchip: lan743x: Fix skb allocation failure - media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt() (CVE-2021-42739) - Revert "xhci: Set HCD flag to defer primary roothub registration" - Revert "usb: core: hcd: Add support for deferring roothub registration" - mm: khugepaged: skip huge page collapse for special files - Revert "drm/ttm: fix memleak in ttm_transfered_destroy" - [arm*] 9120/1: Revert "amba: make use of -1 IRQs warn" - [arm64] Revert "wcn36xx: Disable bmps when encryption is disabled" - ALSA: usb-audio: Add Schiit Hel device to mixer map quirk table - ALSA: usb-audio: Add Audient iD14 to mixer map quirk table https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.79 - [x86] Revert "x86/kvm: fix vcpu-id indexed array sizes" - [arm64,armhf] usb: musb: Balance list entry in musb_gadget_queue - usb-storage: Add compatibility quirk flags for iODD 2531/2541 - [arm*] binder: don't detect sender/target during buffer cleanup - printk/console: Allow to disable console output by using console="" or console=null - staging: rtl8712: fix use-after-free in rtl8712_dl_fw - isofs: Fix out of bound access for corrupted isofs image - [x86] comedi: dt9812: fix DMA buffers on stack - [x86] comedi: ni_usb6501: fix NULL-deref in command paths - [x86] comedi: vmk80xx: fix transfer-buffer overflows - [x86] comedi: vmk80xx: fix bulk-buffer overflow - [x86] comedi: vmk80xx: fix bulk and interrupt message timeouts - staging: r8712u: fix control-message timeout - [x86] staging: rtl8192u: fix control-message timeouts - rsi: fix control-message timeout https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.80 - xhci: Fix USB 3.1 enumeration issues by increasing roothub power-on-good delay - usb: xhci: Enable runtime-pm by default on AMD Yellow Carp platform - [arm*] binder: use euid from cred instead of using task - [arm*] binder: use cred instead of task for selinux checks - [arm*] binder: use cred instead of task for getsecid - Input: iforce - fix control-message timeout - Input: elantench - fix misreporting trackpoint coordinates (Closes: #989285) - libata: fix read log timeout value - ocfs2: fix data corruption on truncate - scsi: core: Remove command size deduction from scsi_setup_scsi_cmnd() - scsi: qla2xxx: Fix kernel crash when accessing port_speed sysfs file - scsi: qla2xxx: Fix use after free in eh_abort path - [arm64,armhf] mmc: dw_mmc: Dont wait for DRTO on Write RSP error - exfat: fix incorrect loading of i_blocks for large files - tpm: Check for integer overflow in tpm2_map_response_body() - media: ite-cir: IR receiver stop working after receive overflow (Closes: #996672) - media: ir-kbd-i2c: improve responsiveness of hauppauge zilog receivers (Closes: #994050) - media: v4l2-ioctl: Fix check_ext_ctrls - ALSA: hda/realtek: Fix mic mute LED for the HP Spectre x360 14 - ALSA: hda/realtek: Add a quirk for HP OMEN 15 mute LED - ALSA: hda/realtek: Add quirk for Clevo PC70HS - ALSA: hda/realtek: Headset fixup for Clevo NH77HJQ - ALSA: hda/realtek: Add a quirk for Acer Spin SP513-54N - ALSA: hda/realtek: Add quirk for ASUS UX550VE - ALSA: hda/realtek: Add quirk for HP EliteBook 840 G7 mute LED - ALSA: ua101: fix division by zero at probe - ALSA: 6fire: fix control and bulk message timeouts - ALSA: line6: fix control and interrupt message timeouts - ALSA: usb-audio: Line6 HX-Stomp XL USB_ID for 48k-fixed quirk - ALSA: usb-audio: Add registration quirk for JBL Quantum 400 - ALSA: hda: Free card instance properly at probe errors - ALSA: synth: missing check for possible NULL after the call to kstrdup - ALSA: timer: Fix use-after-free problem - ALSA: timer: Unconditionally unlink slave instances, too - ext4: fix lazy initialization next schedule time computation in more granular unit - ext4: ensure enough credits in ext4_ext_shift_path_extents - ext4: refresh the ext4_ext_path struct after dropping i_data_sem. - fuse: fix page stealing - [x86] cpu: Fix migration safety with X86_BUG_NULL_SEL - [x86] irq: Ensure PI wakeup handler is unregistered before module unload - ASoC: soc-core: fix null-ptr-deref in snd_soc_del_component_unlocked() - ALSA: hda/realtek: Fixes HP Spectre x360 15-eb1xxx speakers - [arm64] cavium: Return negative value when pci_alloc_irq_vectors() fails - scsi: qla2xxx: Return -ENOMEM if kzalloc() fails - scsi: qla2xxx: Fix unmap of already freed sgl - mISDN: Fix return values of the probe function - [arm64] cavium: Fix return values of the probe function - sfc: Export fibre-specific supported link modes - sfc: Don't use netif_info before net_device setup - [armhf] reset: socfpga: add empty driver allowing consumers to probe - drm: panel-orientation-quirks: Add quirk for Aya Neo 2021 - bpf: Define bpf_jit_alloc_exec_limit for arm64 JIT - bpf: Prevent increasing bpf_jit_limit above max - xen/netfront: stop tx queues during live migration - nvmet-tcp: fix a memory leak when releasing a queue - [armhf] spi: spl022: fix Microwire full duplex mode - net: multicast: calculate csum of looped-back and forwarded packets - [armhf] watchdog: Fix OMAP watchdog early handling - drm: panel-orientation-quirks: Add quirk for GPD Win3 - block: schedule queue restart after BLK_STS_ZONE_RESOURCE - nvmet-tcp: fix header digest verification - r8169: Add device 10ec:8162 to driver r8169 - [x86] vmxnet3: do not stop tx queues after netif_device_detach() - nfp: bpf: relax prog rejection for mtu check through max_pkt_offset - net/smc: Fix smc_link->llc_testlink_time overflow - net/smc: Correct spelling mistake to TCPF_SYN_RECV - rds: stop using dmapool - btrfs: clear MISSING device status bit in btrfs_close_one_device - btrfs: fix lost error handling when replaying directory deletes - btrfs: call btrfs_check_rw_degradable only if there is a missing device - [x86] KVM: VMX: Unregister posted interrupt wakeup handler on hardware unsetup - selinux: fix race condition when computing ocontext SIDs - [armhf] regulator: s5m8767: do not use reset value as DVS voltage if GPIO DVS is disabled - [amd64] EDAC/sb_edac: Fix top-of-high-memory value for Broadwell/Haswell - [x86] mwifiex: fix division by zero in fw download path - ath6kl: fix division by zero in send path - ath6kl: fix control-message timeout - ath10k: fix control-message timeout - ath10k: fix division by zero in send path - PCI: Mark Atheros QCA6174 to avoid bus reset - rtl8187: fix control-message timeouts - [arm64] wcn36xx: Fix HT40 capability for 2Ghz band - [arm64] wcn36xx: Fix tx_status mechanism - [arm64] wcn36xx: Fix (QoS) null data frame bitrate/modulation - PM: sleep: Do not let "syscore" devices runtime-suspend during system transitions - mwifiex: Read a PCI register after writing the TX ring write pointer - mwifiex: Try waking the firmware until we get an interrupt - libata: fix checking of DMA state - [arm64] wcn36xx: handle connection loss indication - rsi: fix occasional initialisation failure with BT coex - rsi: fix key enabled check causing unwanted encryption for vap_id > 0 - rsi: fix rate mask set leading to P2P failure - rsi: Fix module dev_oper_mode parameter description - [x86] perf/x86/intel/uncore: Support extra IMC channel on Ice Lake server - [x86] perf/x86/intel/uncore: Fix Intel ICX IIO event constraints - RDMA/qedr: Fix NULL deref for query_qp on the GSI QP - signal: Remove the bogus sigkill_pending in ptrace_stop - [mips*] signal/mips: Update (_save|_restore)_fp_context to fail with -EFAULT - [arm64] soc: fsl: dpio: replace smp_processor_id with raw_smp_processor_id - [arm64] soc: fsl: dpio: use the combined functions to protect critical zone - [x86] power: supply: max17042_battery: Prevent int underflow in set_soc_threshold - [x86] power: supply: max17042_battery: use VFSOC for capacity when no rsns - [arm64] KVM: arm64: Extract ESR_ELx.EC only - [x86] KVM: nVMX: Query current VMCS when determining if MSR bitmaps are in use - can: j1939: j1939_tp_cmd_recv(): ignore abort message in the BAM transport - can: j1939: j1939_can_recv(): ignore messages with invalid source address - ring-buffer: Protect ring_buffer_reset() from reentrancy - serial: core: Fix initializing and restoring termios speed - ifb: fix building without CONFIG_NET_CLS_ACT - ALSA: mixer: oss: Fix racy access to slots - ALSA: mixer: fix deadlock in snd_mixer_oss_set_volume - xen/balloon: add late_initcall_sync() for initial ballooning done - ovl: fix use after free in struct ovl_aio_req - [arm*] PCI: pci-bridge-emul: Fix emulation of W1C bits - [arm64] PCI: aardvark: Do not clear status bits of masked interrupts - [arm64] PCI: aardvark: Fix checking for link up via LTSSM state - [arm64] PCI: aardvark: Do not unmask unused interrupts - [arm64] PCI: aardvark: Fix reporting Data Link Layer Link Active - [arm64] PCI: aardvark: Fix configuring Reference clock - [arm64] PCI: aardvark: Fix return value of MSI domain .alloc() method - [arm64] PCI: aardvark: Read all 16-bits from PCIE_MSI_PAYLOAD_REG - [arm64] PCI: aardvark: Fix support for bus mastering and PCI_COMMAND on emulated bridge - [arm64] PCI: aardvark: Fix support for PCI_BRIDGE_CTL_BUS_RESET on emulated bridge - [arm64] PCI: aardvark: Set PCI Bridge Class Code to PCI Bridge - [arm64] PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge - quota: check block number when reading the block in quota file - quota: correct error number in free_dqentry() - pinctrl: core: fix possible memory leak in pinctrl_enable() - iio: dac: ad5446: Fix ad5622_write() return value - iio: ad5770r: make devicetree property reading consistent - USB: serial: keyspan: fix memleak on probe errors - serial: 8250: fix racy uartclk update - USB: iowarrior: fix control-message timeouts - [arm64,armhf] USB: chipidea: fix interrupt deadlock - [x86] power: supply: max17042_battery: Clear status bits in interrupt handler - dma-buf: WARN on dmabuf release with pending attachments - drm: panel-orientation-quirks: Update the Lenovo Ideapad D330 quirk (v2) - drm: panel-orientation-quirks: Add quirk for KD Kurio Smart C15200 2-in-1 - drm: panel-orientation-quirks: Add quirk for the Samsung Galaxy Book 10.6 - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() (CVE-2021-3640) - Bluetooth: fix use-after-free error in lock_sock_nested() - drm/panel-orientation-quirks: add Valve Steam Deck - [x86] platform/x86: wmi: do not fail if disabling fails - locking/lockdep: Avoid RCU-induced noinstr fail - net: sched: update default qdisc visibility after Tx queue cnt changes - rcu-tasks: Move RTGS_WAIT_CBS to beginning of rcu_tasks_kthread() loop - ath11k: Align bss_chan_info structure with firmware - [x86] Increase exception stack sizes - mwifiex: Run SET_BSS_MODE when changing from P2P to STATION vif-type - mwifiex: Properly initialize private structure on interface type changes - fscrypt: allow 256-bit master keys with AES-256-XTS - drm/amdgpu: Fix MMIO access page fault - ath11k: Avoid reg rules update during firmware recovery - ath11k: add handler for scan event WMI_SCAN_EVENT_DEQUEUED - ath11k: Change DMA_FROM_DEVICE to DMA_TO_DEVICE when map reinjected packets - ath10k: high latency fixes for beacon buffer - media: netup_unidvb: handle interrupt properly according to the firmware - media: uvcvideo: Set capability in s_param - media: uvcvideo: Return -EIO for control errors - media: uvcvideo: Set unique vdev name based in type - [armhf] media: imx: set a media_device bus_info string - media: mceusb: return without resubmitting URB in case of -EPROTO error. - rtw88: fix RX clock gate setting while fifo dump - brcmfmac: Add DMI nvram filename quirk for Cyberbook T116 tablet - ipmi: Disable some operations during a panic - fs/proc/uptime.c: Fix idle time reporting in /proc/uptime - ACPICA: Avoid evaluating methods too early during system resume - media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() - net-sysfs: try not to restart the syscall if it will fail eventually - tracefs: Have tracefs directories not set OTH permission bits by default - ath: dfs_pattern_detector: Fix possible null-pointer dereference in channel_detector_create() - iov_iter: Fix iov_iter_get_pages{,_alloc} page fault return value - ACPI: battery: Accept charges over the design capacity as full - net: phy: micrel: make *-skew-ps check more lenient - [arm64] drm/msm: prevent NULL dereference in msm_gpu_crashstate_capture() - block: bump max plugged deferred size from 16 to 32 - md: update superblock after changing rdev flags in state_store - memstick: r592: Fix a UAF bug when removing the driver - lib/xz: Avoid overlapping memcpy() with invalid input with in-place decompression - lib/xz: Validate the value before assigning it to an enum variable - workqueue: make sysfs of unbound kworker cpumask more clever - mwl8k: Fix use-after-free in mwl8k_fw_state_machine() - block: remove inaccurate requeue check - nvmet: fix use-after-free when a port is removed - nvmet-rdma: fix use-after-free when a port is removed - nvmet-tcp: fix use-after-free when a port is removed - nvme: drop scan_lock and always kick requeue list when removing namespaces - PM: hibernate: Get block device exclusively in swsusp_check() - iwlwifi: mvm: disable RX-diversity in powersave - gre/sit: Don't generate link-local addr if addr_gen_mode is IN6_ADDR_GEN_MODE_NONE - gfs2: Cancel remote delete work asynchronously - gfs2: Fix glock_hash_walk bugs - vrf: run conntrack only in context of lower/physdev for locally generated packets - net: annotate data-race in neigh_output() - ACPI: AC: Quirk GK45 to skip reading _PSR - btrfs: reflink: initialize return value to 0 in btrfs_extent_same() - btrfs: do not take the uuid_mutex in btrfs_rm_device - [arm64] wcn36xx: Correct band/freq reporting on RX - [x86] hyperv: Protect set_hv_tscchange_cb() against getting preempted - drm/amd/display: dcn20_resource_construct reduce scope of FPU enabled - task_stack: Fix end_of_stack() for architectures with upwards-growing stack - erofs: don't trigger WARN() when decompression fails - netfilter: conntrack: set on IPS_ASSURED if flows enters internal stream state - Bluetooth: fix init and cleanup of sco_conn.timeout_work - rcu: Fix existing exp request check in sync_sched_exp_online_cleanup() - objtool: Add xen_start_kernel() to noreturn list - [x86] xen: Mark cpu_bringup_and_idle() as dead_end_function - objtool: Fix static_call list generation - virtio-gpu: fix possible memory allocation failure - lockdep: Let lock_is_held_type() detect recursive read as read - net: net_namespace: Fix undefined member in key_remove_domain() - cgroup: Make rebind_subsystems() disable v2 controllers all at once - [arm64] wcn36xx: Fix Antenna Diversity Switching - Bluetooth: btmtkuart: fix a memleak in mtk_hci_wmt_sync - [arm64] crypto: caam - disable pkc for non-E SoCs - rxrpc: Fix _usecs_to_jiffies() by using usecs_to_jiffies() - ath11k: fix some sleeping in atomic bugs - ath11k: Avoid race during regd updates - ath11k: fix packet drops due to incorrect 6 GHz freq value in rx status - ath11k: Fix memory leak in ath11k_qmi_driver_event_work - ath10k: Fix missing frame timestamp for beacon/probe-resp - ath10k: sdio: Add missing BH locking around napi_schdule() - drm/ttm: stop calling tt_swapin in vm_access - [arm64] mm: update max_pfn after memory hotplug - drm/amdgpu: fix warning for overflow check - media: em28xx: add missing em28xx_close_extension - media: dvb-usb: fix ununit-value in az6027_rc_query - media: v4l2-ioctl: S_CTRL output the right value - media: si470x: Avoid card name truncation - [x86] media: tm6000: Avoid card name truncation - media: cx23885: Fix snd_card_free call on null card pointer - kprobes: Do not use local variable when creating debugfs file - cpuidle: Fix kobject memory leaks in error paths - media: em28xx: Don't use ops->suspend if it is NULL - ath9k: Fix potential interrupt storm on queue reset - PM: EM: Fix inefficient states detection - [amd64] EDAC/amd64: Handle three rank interleaving mode - rcu: Always inline rcu_dynticks_task*_{enter,exit}() - netfilter: nft_dynset: relax superfluous check on set updates - [x86] crypto: qat - detect PFVF collision after ACK - [x86] crypto: qat - disregard spurious PFVF interrupts - b43legacy: fix a lower bounds test - b43: fix a lower bounds test - [amd64] gve: Recover from queue stall due to missed IRQ - [armhf] mmc: sdhci-omap: Fix NULL pointer exception if regulator is not configured - [armhf] mmc: sdhci-omap: Fix context restore - memstick: jmb38x_ms: use appropriate free function in jmb38x_ms_alloc_host() - net, neigh: Fix NTF_EXT_LEARNED in combination with NTF_USE - hwmon: Fix possible memleak in __hwmon_device_register() - ath10k: fix max antenna gain unit - kernel/sched: Fix sched_fork() access an invalid sched_task_group - tcp: switch orphan_count to bare per-cpu counters - [arm64] drm/msm: potential error pointer dereference in init() - [arm64] drm/msm: uninitialized variable in msm_gem_import() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - [x86] platform/x86: thinkpad_acpi: Fix bitwise vs. logical warning - mt76: mt76x02: fix endianness warnings in mt76x02_mac.c - rsi: stop thread firstly in rsi_91x_init() error handling - mwifiex: Send DELBA requests according to spec - [arm64] net: enetc: unmap DMA in enetc_send_cmd() - phy: micrel: ksz8041nl: do not use power down mode - nvme-rdma: fix error code in nvme_rdma_setup_ctrl - PM: hibernate: fix sparse warnings - [arm64] drm/msm: Fix potential NULL dereference in DPU SSPP - bpftool: Avoid leaking the JSON writer prepared for program metadata - [s390x] gmap: don't unconditionally call pte_unmap_unlock() in __gmap_zap() - [s390x] KVM: pv: avoid double free of sida page - [s390x] KVM: pv: avoid stalls for kvm_s390_pv_init_vm - tpm: fix Atmel TPM crash caused by too frequent queries - tpm_tis_spi: Add missing SPI ID - tcp: don't free a FIN sk_buff in tcp_remove_empty_skb() - [s390x] KVM: Fix handle_sske page fault handling - libertas_tf: Fix possible memory leak in probe and disconnect - libertas: Fix possible memory leak in probe and disconnect - [arm64] wcn36xx: add proper DMA memory barriers in rx path - [arm64] wcn36xx: Fix discarded frames due to wrong sequence number - drm/amdgpu/gmc6: fix DMA mask from 44 to 40 bits - [amd64,arm64] net: amd-xgbe: Toggle PLL settings during rate change - net: phylink: avoid mvneta warning when setting pause parameters - crypto: pcrypt - Delay write to padata->info - udp6: allow SO_MARK ctrl msg to affect routing - cgroup: Fix rootcg cpu.stat guest double counting - bpf: Fix propagation of bounds from 64-bit min/max into 32-bit and var_off. - bpf: Fix propagation of signed bounds from 64-bit min/max into 32-bit. - iio: st_sensors: Call st_sensors_power_enable() from bus drivers - iio: st_sensors: disable regulators after device unregistration - RDMA/bnxt_re: Fix query SRQ failure - [arm64] dts: meson-g12a: Fix the pwm regulator supply properties - [armhf] bus: ti-sysc: Fix timekeeping_suspended warning on resume - scsi: dc395: Fix error case unwinding - JFS: fix memleak in jfs_mount - ALSA: hda: Reduce udelay() at SKL+ position reporting - ALSA: hda: Release controller display power during shutdown/reboot - ALSA: hda: Fix hang during shutdown due to link reset - ALSA: hda: Use position buffer for SKL+ again - soundwire: debugfs: use controller id and link_id for debugfs - scsi: pm80xx: Fix misleading log statement in pm8001_mpi_get_nvmd_resp() - driver core: Fix possible memory leak in device_link_add() - [x86] ASoC: SOF: topology: do not power down primary core during topology removal - [arm64,armhf] soc/tegra: Fix an error handling path in tegra_powergate_power_up() - [powerpc*] Refactor is_kvm_guest() declaration to new header - [powerpc*] Rename is_kvm_guest() to check_kvm_guest() - [powerpc*] Reintroduce is_kvm_guest() as a fast-path check - [powerpc*] Fix is_kvm_guest() / kvm_para_available() - [powerpc*] fix unbalanced node refcount in check_kvm_guest() - serial: 8250_dw: Drop wrong use of ACPI_PTR() - scsi: csiostor: Uninitialized data in csio_ln_vnp_read_cbfn() - RDMA/mlx4: Return missed an error if device doesn't support steering - iio: adis: do not disabe IRQs in 'adis_init()' - scsi: ufs: Refactor ufshcd_setup_clocks() to remove skip_ref_clk - [arm64,armhf] serial: imx: fix detach/attach of serial console - [arm*] usb: dwc2: drd: fix dwc2_force_mode call in dwc2_ovr_init - [arm*] usb: dwc2: drd: fix dwc2_drd_role_sw_set when clock could be disabled - [arm*] usb: dwc2: drd: reset current session before setting the new one - [arm64] firmware: qcom_scm: Fix error retval in __qcom_scm_is_call_available() - [arm64] phy: qcom-qusb2: Fix a memory leak on probe - [armhf] phy: ti: gmii-sel: check of_get_address() for failure - [arm64] serial: xilinx_uartps: Fix race condition causing stuck TX - HID: u2fzero: clarify error check and length calculations - HID: u2fzero: properly handle timeouts in usb_submit_urb - virtio_ring: check desc == NULL when using indirect with packed - [mips*] cm: Convert to bitfield API to fix out-of-bounds access - apparmor: fix error check - rpmsg: Fix rpmsg_create_ept return when RPMSG config is not defined - nfsd: don't alloc under spinlock in rpc_parse_scope_id - NFS: Fix dentry verifier races - pnfs/flexfiles: Fix misplaced barrier in nfs4_ff_layout_prepare_ds - drm/plane-helper: fix uninitialized variable reference - [arm64] PCI: aardvark: Don't spam about PIO Response Status - [arm64] PCI: aardvark: Fix preserving PCI_EXP_RTCTL_CRSSVE flag on emulated bridge - opp: Fix return in _opp_add_static_v2() - NFS: Fix deadlocks in nfs_scan_commit_list() - fs: orangefs: fix error return code of orangefs_revalidate_lookup() - [arm64] mtd: spi-nor: hisi-sfc: Remove excessive clk_disable_unprepare() - mtd: core: don't remove debugfs directory if device is in use - [armhf] remoteproc: Fix a memory leak in an error handling path in 'rproc_handle_vdev()' - NFS: Fix up commit deadlocks - NFS: Fix an Oops in pnfs_mark_request_commit() - Fix user namespace leak - [arm64] soc: fsl: dpaa2-console: free buffer before returning from dpaa2_console_read - netfilter: nfnetlink_queue: fix OOB when mac header was cleared - [x86] watchdog: f71808e_wdt: fix inaccurate report in WDIOC_GETTIMEOUT - scsi: qla2xxx: Changes to support FCP2 Target - scsi: qla2xxx: Relogin during fabric disturbance - scsi: qla2xxx: Fix gnl list corruption - scsi: qla2xxx: Turn off target reset during issue_lip - NFSv4: Fix a regression in nfs_set_open_stateid_locked() - xen-pciback: Fix return in pm_ctrl_init() - [armhf] net: davinci_emac: Fix interrupt pacing disable - ethtool: fix ethtool msg len calculation for pause stats - net: vlan: fix a UAF in vlan_dev_real_dev() - ice: Fix replacing VF hardware MAC to existing MAC filter - ice: Fix not stopping Tx queues for VFs - [x86] ACPI: PMIC: Fix intel_pmic_regs_handler() read accesses - net: phy: fix duplex out of sync problem while changing settings - bonding: Fix a use-after-free problem when bond_sysfs_slave_add() failed - mfd: core: Add missing of_node_put for loop iteration - mm/zsmalloc.c: close race window between zs_pool_dec_isolated() and zs_unregister_migration() - zram: off by one in read_block_state() - llc: fix out-of-bound array index in llc_sk_dev_hash() - nfc: pn533: Fix double free when pn533_fill_fragment_skbs() fails - [arm64] pgtable: make __pte_to_phys/__phys_to_pte_val inline functions - bpf, sockmap: Remove unhash handler for BPF sockmap usage - bpf: sockmap, strparser, and tls are reusing qdisc_skb_cb and colliding - [amd64] gve: Fix off by one in gve_tx_timeout() - seq_file: fix passing wrong private data - net/sched: sch_taprio: fix undefined behavior in ktime_mono_to_any - [arm64] net: hns3: fix kernel crash when unload VF while it is being reset - [arm64] net: hns3: allow configure ETS bandwidth of all TCs - net: stmmac: allow a tc-taprio base-time of zero - vsock: prevent unnecessary refcnt inc for nonblocking connect - net/smc: fix sk_refcnt underflow on linkdown and fallback - cxgb4: fix eeprom len when diagnostics not implemented - [armel,armhf] 9155/1: fix early early_iounmap() - [armhf] 9156/1: drop cc-option fallbacks for architecture selection - [x86] mce: Add errata workaround for Skylake SKX37 - posix-cpu-timers: Clear task::posix_cputimers_work in copy_process() - f2fs: should use GFP_NOFS for directory inodes - net, neigh: Enable state migration between NUD_PERMANENT and NTF_USE - 9p/net: fix missing error check in p9_check_errors - memcg: prohibit unconditional exceeding the limit of dying tasks - [powerpc*] lib: Add helper to check if offset is within conditional branch range - [powerpc*] bpf: Validate branch ranges - [powerpc*] security: Add a helper to query stf_barrier type - [powerpc*] bpf: Emit stf barrier instruction sequences for BPF_NOSPEC - mm, oom: pagefault_out_of_memory: don't force global OOM for dying tasks - mm, oom: do not trigger out_of_memory from the #PF - video: backlight: Drop maximum brightness override for brightness zero - [s390x] cio: check the subchannel validity for dev_busid - [s390x] tape: fix timer initialization in tape_std_assign() - [s390x] ap: Fix hanging ioctl caused by orphaned replies - [s390x] cio: make ccw_device_dma_* more robust - [powerpc*] powernv/prd: Unregister OPAL_MSG_PRD2 notifier during module unload - [arm64,armhf] drm/sun4i: Fix macros in sun8i_csc.h - PCI: Add PCI_EXP_DEVCTL_PAYLOAD_* macros - [arm64] PCI: aardvark: Fix PCIe Max Payload Size setting - SUNRPC: Partial revert of commit 6f9f17287e78 - ath10k: fix invalid dma_addr_t token assignment - arch/cc: Introduce a function to check for confidential computing features - [arm64,armhf] soc/tegra: pmc: Fix imbalanced clock disabling in error code path https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.81 - block: Add a helper to validate the block size - loop: Use blk_validate_block_size() to validate block size - bootconfig: init: Fix memblock leak in xbc_make_cmdline() - net: stmmac: add clocks management for gmac driver - net: stmmac: fix missing unlock on error in stmmac_suspend() - net: stmmac: fix system hang if change mac address after interface ifdown - net: stmmac: fix issue where clk is being unprepared twice - [arm64,armhf] net: stmmac: dwmac-rk: fix unbalanced pm_runtime_enable warnings - [x86] iopl: Fake iopl(3) CLI/STI usage - PCI/MSI: Destroy sysfs before freeing entries - PCI/MSI: Deal with devices lying about their MSI mask capability - PCI: Add MSI masking quirk for Nvidia ION AHCI - erofs: remove the occupied parameter from z_erofs_pagevec_enqueue() - erofs: fix unsafe pagevec reuse of hooked pclusters - scripts/lld-version.sh: Rewrite based on upstream ld-version.sh - perf/core: Avoid put_page() when GUP fails - thermal: Fix NULL pointer dereferences in of_thermal_ functions https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.82 - [arm64] zynqmp: Do not duplicate flash partition label property - [arm64] zynqmp: Fix serial compatible string - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - [armhf] bus: ti-sysc: Add quirk handling for reinit on context lost - [armhf] bus: ti-sysc: Use context lost quirk for otg - [armhf] usb: musb: tusb6010: check return value after calling platform_get_resource() - [x86] usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - staging: rtl8723bs: remove possible deadlock when disconnect (v2) - [x86] ASoC: SOF: Intel: hda-dai: fix potential locking issue - [armhf] clk: imx: imx6ul: Move csi_sel mux to correct base register - [x86] ASoC: nau8824: Add DMI quirk mechanism for active-high jack-detect - scsi: advansys: Fix kernel pointer leak - ALSA: intel-dsp-config: add quirk for APL/GLK/TGL devices based on ES8336 codec - firmware_loader: fix pre-allocated buf built-in firmware use - tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc - scsi: scsi_debug: Fix out-of-bound read in resp_readcap16() - scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() - scsi: target: Fix ordered tag handling - scsi: target: Fix alua_tg_pt_gps_count tracking - iio: imu: st_lsm6dsx: Avoid potential array overflow in st_lsm6dsx_set_odr() - [i386] ALSA: gus: fix null pointer dereference on pointer block - maple: fix wrong return value of maple_bus_init(). - f2fs: fix up f2fs_lookup tracepoints - f2fs: fix to use WHINT_MODE - f2fs: compress: disallow disabling compress on non-empty compressed file - f2fs: fix incorrect return value in f2fs_sanity_check_ckpt() - [armhf] clk/ast2600: Fix soc revision for AHB - [arm64] clk: qcom: gcc-msm8996: Drop (again) gcc_aggre1_pnoc_ahb_clk - sched/core: Mitigate race cpus_share_cache()/update_top_cache_domain() - [x86] perf/x86/vlbr: Add c->flags to vlbr event constraints - blkcg: Remove extra blkcg_bio_issue_init - perf bpf: Avoid memory leak from perf_env__insert_btf() - perf bench futex: Fix memory leak of perf_cpu_map__new() - perf tests: Remove bash construct from record+zstd_comp_decomp.sh - drm/nouveau: hdmigv100.c: fix corrupted HDMI Vendor InfoFrame - net-zerocopy: Copy straggler unaligned data for TCP Rx. zerocopy. - net-zerocopy: Refactor skb frag fast-forward op. - tcp: Fix uninitialized access in skb frags array for Rx 0cp. - tracing: Add length protection to histogram string copies - bnxt_en: reject indirect blk offload when hw-tc-offload is off - tipc: only accept encrypted MSG_CRYPTO msgs - net: reduce indentation level in sk_clone_lock() - sock: fix /proc/net/sockstat underflow in sk_clone_lock() - net/smc: Make sure the link_id is unique - iavf: Fix return of set the new channel count - iavf: check for null in iavf_fix_features - iavf: free q_vectors before queues in iavf_disable_vf - iavf: Fix failure to exit out from last all-multicast mode - iavf: prevent accidental free of filter structure - iavf: validate pointers - iavf: Fix for the false positive ASQ/ARQ errors while issuing VF reset - iavf: Fix for setting queues to 0 - [x86] platform/x86: hp_accel: Fix an error handling path in 'lis3lv02d_probe()' - net/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove() - net/mlx5: Lag, update tracker when state change event received - net/mlx5: E-Switch, Change mode lock from mutex to rw semaphore - net/mlx5: E-Switch, return error if encap isn't supported - scsi: core: sysfs: Fix hang when device state is set via sysfs - net: sched: act_mirred: drop dst for the direction from egress to ingress - [arm64] net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove - net: virtio_net_hdr_to_skb: count transport header in UFO - i40e: Fix correct max_pkt_size on VF RX queue - i40e: Fix NULL ptr dereference on VSI filter sync - i40e: Fix changing previously set num_queue_pairs for PFs - i40e: Fix ping is lost after configuring ADq on VF - i40e: Fix warning message and call stack during rmmod i40e driver - i40e: Fix creation of first queue by omitting it if is not power of two - i40e: Fix display error code in dmesg - e100: fix device suspend/resume (Closes: #995927) - [powerpc*] KVM: PPC: Book3S HV: Use GLOBAL_TOC for kvmppc_h_set_dabr/xdabr() - [x86] perf/x86/intel/uncore: Fix filter_tid mask for CHA events on Skylake Server - [x86] perf/x86/intel/uncore: Fix IIO event constraints for Skylake Server - [s390x] kexec: fix return code handling - [arm64,armhf] net: stmmac: dwmac-rk: Fix ethernet on rk3399 based devices - tun: fix bonding active backup with arp monitoring - tipc: check for null after calling kmemdup - ipc: WARN if trying to remove ipc object which is absent - [x86] hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails - scsi: qla2xxx: Fix mailbox direction flags in qla2xxx_get_adapter_id() - [s390x] kexec: fix memory leak of ipl report buffer - block: Check ADMIN before NICE for IOPRIO_CLASS_RT - [x86] KVM: nVMX: don't use vcpu->arch.efer when checking host state on nested state load - udf: Fix crash after seekdir - [armhf] net: stmmac: socfpga: add runtime suspend/resume callback for stratix10 platform - btrfs: fix memory ordering between normal and ordered work functions - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - drm/udl: fix control-message timeout - drm/nouveau: Add a dedicated mutex for the clients list (CVE-2020-27820) - drm/nouveau: use drm_dev_unplug() during device removal (CVE-2020-27820) - drm/nouveau: clean up all clients on device removal (CVE-2020-27820) - [x86] drm/i915/dp: Ensure sink rate values are always valid - drm/amdgpu: fix set scaling mode Full/Full aspect/Center not works on vga and dvi connectors - scsi: ufs: core: Fix task management completion - scsi: ufs: core: Fix task management completion timeout race - hugetlbfs: flush TLBs correctly after huge_pmd_unshare (CVE-2021-4002) - RDMA/netlink: Add __maybe_unused to static inline in C file - selinux: fix NULL-pointer dereference when hashtab allocation fails - ASoC: DAPM: Cover regression by kctl change notification fix - ice: Delete always true check of PF pointer - fs: export an inode_update_time helper - btrfs: update device path inode time instead of bd_inode - [x86] ALSA: hda: hdac_ext_stream: fix potential locking issues - ALSA: hda: hdac_stream: fix potential locking issue in snd_hdac_stream_assign() - Revert "perf: Rework perf_event_exit_event()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.83 - bpf: Fix toctou on read-only map's constant scalar tracking (CVE-2021-4001) - ACPI: Get acpi_device's parent from the parent field - USB: serial: option: add Telit LE910S1 0x9200 composition - USB: serial: option: add Fibocom FM101-GL variants - [arm*] usb: dwc2: gadget: Fix ISOC flow for elapsed frames - [arm*] usb: dwc2: hcd_queue: Fix use of floating point literal - [arm64,armhf] usb: dwc3: gadget: Ignore NoStream after End Transfer - [arm64,armhf] usb: dwc3: gadget: Check for L1/L2/U3 for Start Transfer - [arm64,armhf] usb: dwc3: gadget: Fix null pointer exception - net: nexthop: fix null pointer dereference when IPv6 is not enabled - [arm64,armhf] usb: chipidea: ci_hdrc_imx: fix potential error pointer dereference in probe - usb: typec: fusb302: Fix masking of comparator and bc_lvl interrupts - usb: hub: Fix usb enumeration issue due to address0 race - usb: hub: Fix locking issues with address0_mutex - [arm*] binder: fix test regression due to sender_euid change - ALSA: ctxfi: Fix out-of-range access - ALSA: hda/realtek: Add quirk for ASRock NUC Box 1100 - ALSA: hda/realtek: Fix LED on HP ProBook 435 G7 - media: cec: copy sequence field for the reply - HID: wacom: Use "Confidence" flag to prevent reporting invalid contacts - [x86] staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect() - fuse: release pipe buf after last use - xen: don't continue xenstore initialization in case of errors - xen: detect uninitialized xenbus in xenbus_init - [powerpc*] KVM: PPC: Book3S HV: Prevent POWER7/8 TLB flush flushing SLB - tracing/uprobe: Fix uprobe_perf_open probes iteration - tracing: Fix pid filtering when triggers are attached - [arm64,armhf] mmc: sdhci-esdhc-imx: disable CMDQ support - mmc: sdhci: Fix ADMA for PAGE_SIZE >= 64KiB - [armhf] mdio: aspeed: Fix "Link is Down" issue - [arm64] PCI: aardvark: Deduplicate code in advk_pcie_rd_conf() - [arm64] PCI: aardvark: Update comment about disabling link training - [arm64] PCI: aardvark: Implement re-issuing config requests on CRS response - [arm64] PCI: aardvark: Simplify initialization of rootcap on virtual bridge - [arm64] PCI: aardvark: Fix link training - proc/vmcore: fix clearing user buffer by properly using clear_user() - netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY - netfilter: ctnetlink: do not erase error code with EINVAL - netfilter: ipvs: Fix reuse connection if RS weight is 0 - netfilter: flowtable: fix IPv6 tunnel addr match - [x86] ASoC: topology: Add missing rwsem around snd_ctl_remove() calls - net: ieee802154: handle iftypes as u32 - NFSv42: Don't fail clone() unless the OP_CLONE operation failed - [armhf] socfpga: Fix crash with CONFIG_FORTIRY_SOURCE - drm/nouveau/acr: fix a couple NULL vs IS_ERR() checks - scsi: mpt3sas: Fix kernel panic during drive powercycle test - [arm*] drm/vc4: fix error code in vc4_create_object() - iavf: Prevent changing static ITR values if adaptive moderation is on - ALSA: intel-dsp-config: add quirk for JSL devices based on ES8336 codec - [arm64,armhf] firmware: smccc: Fix check for ARCH_SOC_ID not implemented - ipv6: fix typos in __ip6_finish_output() - nfp: checking parameter process for rx-usecs/tx-usecs is invalid - net: stmmac: fix system hang caused by eee_ctrl_timer during suspend/resume - net: stmmac: retain PTP clock time during SIOCSHWTSTAMP ioctls - net: ipv6: add fib6_nh_release_dsts stub - net: nexthop: release IPv6 per-cpu dsts when replacing a nexthop group - ice: fix vsi->txq_map sizing - ice: avoid bpf_prog refcount underflow - scsi: core: sysfs: Fix setting device state to SDEV_RUNNING - scsi: scsi_debug: Zero clear zones at reset write pointer - erofs: fix deadlock when shrink erofs slab - net/smc: Ensure the active closing peer first closes clcsock - [arm64,armhf] net: marvell: mvpp2: increase MTU limit when XDP enabled - nvmet-tcp: fix incomplete data digest send - [armhf] net/ncsi : Add payload to be 32-bit aligned to fix dropped packets - PM: hibernate: use correct mode for swsusp_close() - drm/amd/display: Set plane update flags for all planes in reset - tcp_cubic: fix spurious Hystart ACK train detections for not-cwnd-limited flows - lan743x: fix deadlock in lan743x_phy_link_status_change() - net: phylink: Force link down and retrigger resolve on interface change - net: phylink: Force retrigger in case of latched link-fail indicator - net/smc: Fix NULL pointer dereferencing in smc_vlan_by_tcpsk() - net/smc: Fix loop in smc_listen - nvmet: use IOCB_NOWAIT only if the filesystem supports it - igb: fix netpoll exit with traffic - [mips*] loongson64: fix FTLB configuration - [mips*] use 3-level pgtable for 64KB page size on MIPS_VA_BITS_48 - net/sched: sch_ets: don't peek at classes beyond 'nbands' - net: vlan: fix underflow for the real_dev refcnt - net/smc: Don't call clcsock shutdown twice when smc shutdown - [arm64] net: hns3: fix VF RSS failed problem after PF enable multi-TCs - [arm64] net: mscc: ocelot: don't downgrade timestamping RX filters in SIOCSHWTSTAMP - [arm64] net: mscc: ocelot: correctly report the timestamping RX filters in ethtool - tcp: correctly handle increased zerocopy args struct size - sched/scs: Reset task stack state in bringup_cpu() - f2fs: set SBI_NEED_FSCK flag when inconsistent node block found - ceph: properly handle statfs on multifs setups - smb3: do not error on fsync when readonly - [amd64] iommu/amd: Clarify AMD IOMMUv2 initialization messages - vhost/vsock: fix incorrect used length reported to the guest - tracing: Check pid filtering when creating events - xen: sync include/xen/interface/io/ring.h with Xen's newest version - xen/blkfront: read response from backend only once - xen/blkfront: don't take local copy of a request from the ring page - xen/blkfront: don't trust the backend response data blindly - xen/netfront: read response from backend only once - xen/netfront: don't read data from request on the ring page - xen/netfront: disentangle tx_skb_freelist - xen/netfront: don't trust the backend response data blindly - tty: hvc: replace BUG_ON() with negative return value - [s390x] mm: validate VMA in PGSTE manipulation functions - shm: extend forced shm destroy to support objects from several IPC nses - net: stmmac: platform: fix build warning when with !CONFIG_PM_SLEEP - drm/amdgpu/gfx9: switch to golden tsc registers for renoir+ https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.84 - NFSv42: Fix pagecache invalidation after COPY/CLONE - can: j1939: j1939_tp_cmd_recv(): check the dst address of TP.CM_BAM - ovl: simplify file splice - ovl: fix deadlock in splice write - gfs2: release iopen glock early in evict - gfs2: Fix length of holes reported at end-of-file - [powerpc*] pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" - mac80211: do not access the IV when it was stripped - net/smc: Transfer remaining wait queue entries during fallback - [amd64,arm64] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) - net: return correct error code - [x86] platform/x86: thinkpad_acpi: Add support for dual fan control - [x86] platform/x86: thinkpad_acpi: Fix WWAN device disabled issue after S3 deep - [s390x] setup: avoid using memblock_enforce_memory_limit - btrfs: check-integrity: fix a warning on write caching disabled disk - thermal: core: Reset previous low and high trip during thermal zone init - scsi: iscsi: Unblock session then wake up error handler - drm/amd/amdgpu: fix potential memleak - ata: ahci: Add Green Sardine vendor ID as board_ahci_mobile - [arm64] ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() - ipv6: check return value of ipv6_skip_exthdr - net/smc: Avoid warning of possible recursive locking - ACPI: Add stubs for wakeup handler functions - vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit - kprobes: Limit max data_size of the kretprobe instances - rt2x00: do not mark device gone on EPROTO errors during start - ipmi: Move remove_work to dedicated workqueue - cpufreq: Fix get_cpu_device() failure in add_cpu_dev_symlink() - [s390x] pci: move pseudo-MMIO to prevent MIO overlap - fget: check that the fd still exists after getting a ref to it - ipv6: fix memory leak in fib6_rule_suppress - drm/amd/display: Allow DSC on supported MST branch devices - KVM: Disallow user memslot with size that exceeds "unsigned long" - [x86] KVM: nVMX: Flush current VPID (L1 vs. L2) for KVM_REQ_TLB_FLUSH_GUEST - [x86] KVM: x86: Use a stable condition around all VT-d PI paths - [arm64] KVM: arm64: Avoid setting the upper 32 bits of TCR_EL2 and CPTR_EL2 to 1 - [x86] KVM: X86: Use vcpu->arch.walk_mmu for kvm_mmu_invlpg() - wireguard: allowedips: add missing __rcu annotation to satisfy sparse - wireguard: device: reset peer src endpoint when netns exits - wireguard: receive: use ring buffer for incoming handshakes - wireguard: receive: drop handshakes if queue lock is contended - wireguard: ratelimiter: use kvcalloc() instead of kvzalloc() - [armhf] i2c: stm32f7: flush TX FIFO upon transfer errors - [armhf] i2c: stm32f7: recover the bus on access timeout - [armhf] i2c: stm32f7: stop dma transfer in case of NACK - tcp: fix page frag corruption on page fault - net: qlogic: qlcnic: Fix a NULL pointer dereference in qlcnic_83xx_add_rings() - net: mpls: Fix notifications when deleting a device - siphash: use _unaligned version by default - [arm64] ftrace: add missing BTIs - net/mlx4_en: Fix an use-after-free bug in mlx4_en_try_alloc_resources() - rxrpc: Fix rxrpc_peer leak in rxrpc_look_up_bundle() - rxrpc: Fix rxrpc_local leak in rxrpc_lookup_peer() - ALSA: intel-dsp-config: add quirk for CML devices based on ES8336 codec - net: usb: lan78xx: lan78xx_phy_init(): use PHY_POLL instead of "0" if no IRQ is available - [arm64,armhf] net: marvell: mvpp2: Fix the computation of shared CPUs - [arm64] dpaa2-eth: destroy workqueue at the end of remove function - net: annotate data-races on txq->xmit_lock_owner - ipv4: convert fib_num_tclassid_users to atomic_t - net/smc: fix wrong list_del in smc_lgr_cleanup_early - net/rds: correct socket tunable error in rds_tcp_tune() - net/smc: Keep smc_close_final rc during active close - [arm64] drm/msm/a6xx: Allocate enough space for GMU registers - [arm64] drm/msm: Do hw_init() before capturing GPU state - [amd64,arm64] atlantic: Increase delay for fw transactions - [amd64,arm64] atlatnic: enable Nbase-t speeds with base-t - [amd64,arm64] atlantic: Fix to display FW bundle version instead of FW mac version. - [amd64,arm64] atlantic: Add missing DIDs and fix 115c. - [amd64,arm64] Remove Half duplex mode speed capabilities. - [amd64,arm64] atlantic: Fix statistics logic for production hardware - [amd64,arm64] atlantic: Remove warn trace message. - [x86] KVM: x86/pmu: Fix reserved bits for AMD PerfEvtSeln register - [x86] KVM: VMX: Set failure code in prepare_vmcs02() - [x86] entry: Use the correct fence macro after swapgs in kernel CR3 - [x86] xen: Add xenpv_restore_regs_and_return_to_usermode() - sched/uclamp: Fix rq->uclamp_max not set on first enqueue - [x86] pv: Switch SWAPGS to ALTERNATIVE - [x86] entry: Add a fence for kernel entry SWAPGS in paranoid_entry() - vgacon: Propagate console boot parameters before calling `vc_resize' - xhci: Fix commad ring abort, write all 64 bits to CRCR register. - USB: NO_LPM quirk Lenovo Powered USB-C Travel Hub - usb: typec: tcpm: Wait in SNK_DEBOUNCED until disconnect - [x86] tsc: Add a timer to make sure TSC_adjust is always checked - [x86] tsc: Disable clocksource watchdog for TSC on qualified platorms - [x86] 64/mm: Map all kernel memory into trampoline_pgd - [arm64] tty: serial: msm_serial: Deactivate RX DMA for polling support - [arm*] serial: pl011: Add ACPI SBSA UART match id - [arm64,armhf] serial: tegra: Change lower tolerance baud rate limit for tegra20 and tegra30 - serial: core: fix transmit-buffer reset and memleak - serial: 8250_pci: Fix ACCES entries in pci_serial_quirks array - serial: 8250_pci: rewrite pericom_do_set_divisor() - serial: 8250: Fix RTS modem control while in rs485 mode - iwlwifi: mvm: retry init flow if failed - ipmi: msghandler: Make symbol 'remove_work_wq' static . [ Salvatore Bonaccorso ] * integrity: Drop "MODSIGN: load blacklist from MOKx" as redundant after 5.10.47. * Bump ABI to 10 * Refresh "tools/perf: pmu-events: Fix reproducibility" * [rt] Update to 5.10.73-rt54 * [rt] Refresh "tracing: Merge irqflags + preempt counter." * Refresh "Export symbols needed by Android drivers" * [rt] Refresh "printk: introduce kernel sync mode" * [rt] Refresh "printk: move console printing to kthreads" * [rt] Drop "rcutorture: Avoid problematic critical section nesting on RT" * [rt] Add new signing key for Luis Claudio R. Goncalves * [rt] Update to 5.10.83-rt58 . [ Ben Hutchings ] * tools/perf: Fix warning introduced by "tools/perf: pmu-events: Fix reproducibility" linux-signed-arm64 (5.10.84+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.84-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.71 - tty: Fix out-of-bound vmalloc access in imageblit - cpufreq: schedutil: Use kobject release() method to free sugov_tunables - scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS - cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory - ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. - [amd64,arm64] ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect - fs-verity: fix signed integer overflow with i_size near S64_MAX - hwmon: (tmp421) handle I2C errors - hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field - [arm64,armhf] gpio: pca953x: do not ignore i2c errors - scsi: ufs: Fix illegal offset in UPIU event trace - mac80211: fix use-after-free in CCMP/GCMP RX - [x86] kvmclock: Move this_cpu_pvti into kvmclock.h - [x86] KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() - [x86] KVM: x86: nSVM: don't copy virt_ext from vmcb12 - [x86] KVM: nVMX: Filter out all unsupported controls when eVMCS was activated - KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest - RDMA/cma: Do not change route.addr.src_addr.ss_family - drm/amd/display: Pass PCI deviceid into DC - drm/amdgpu: correct initial cp_hqd_quantum for gfx9 - ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 - bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog - IB/cma: Do not send IGMP leaves for sendonly Multicast groups - RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure - mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug - mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap - mac80211: mesh: fix potentially unaligned access - mac80211-hwsim: fix late beacon hrtimer handling - sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb - hwmon: (tmp421) report /PVLD condition as fault - hwmon: (tmp421) fix rounding for negative values - [arm64] net: enetc: fix the incorrect clearing of IF_MODE bits - net: ipv4: Fix rtnexthop len when RTA_FLOW is present - smsc95xx: fix stalled rx after link change - [x86] drm/i915/request: fix early tracepoints - [arm64,armhf] dsa: mv88e6xxx: 6161: Use chip wide MAX MTU - [arm64,armhf] dsa: mv88e6xxx: Fix MTU definition - [arm64,armhf] dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports - e100: fix length calculation in e100_get_regs_len - e100: fix buffer overrun in e100_get_regs - [arm64] RDMA/hns: Fix inaccurate prints - bpf: Exempt CAP_BPF from checks against bpf_jit_limit - Revert "block, bfq: honor already-setup queue merges" - scsi: csiostor: Add module softdep on cxgb4 - ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup - [arm64] net: hns3: do not allow call hns3_nic_net_open repeatedly - [arm64] net: hns3: keep MAC pause mode when multiple TCs are enabled - [arm64] net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE - [arm64] net: hns3: fix show wrong state when add existing uc mac address - [arm64] net: hns3: fix prototype warning - [arm64] net: hns3: reconstruct function hns3_self_test - [arm64] net: hns3: fix always enable rx vlan filter problem after selftest - [arm64,armhf] net: phy: bcm7xxx: Fixed indirect MMD operations - net: sched: flower: protect fl_walk() with rcu - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses - [x86] perf/x86/intel: Update event constraints for ICX - nvme: add command id quirk for apple controllers - elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings - debugfs: debugfs_create_file_size(): use IS_ERR to check for error - ext4: fix loff_t overflow in ext4_max_bitmap_size() - ext4: limit the number of blocks in one ADD_RANGE TLV (Closes: #995425) - ext4: fix reserved space counter leakage - ext4: add error checking to ext4_ext_replay_set_iblocks() - ext4: fix potential infinite loop in ext4_dx_readdir() - HID: u2fzero: ignore incomplete packets without data - net: udp: annotate data race around udp_sk(sk)->corkflag - ASoC: dapm: use component prefix when checking widget names - usb: hso: remove the bailout parameter - [x86] crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744, CVE-2021-3764) - HID: betop: fix slab-out-of-bounds Write in betop_probe - netfilter: ipset: Fix oversized kvmalloc() calls - mm: don't allow oversized kvmalloc() calls - HID: usbhid: free raw_report buffers in usbhid_stop - [x86] KVM: x86: Handle SRCU initialization failure during page track init - netfilter: conntrack: serialize hash resizes and cleanups - netfilter: nf_tables: Fix oversized kvmalloc() calls https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.72 - [arm64,armhf] spi: rockchip: handle zero length transfers without timing out - nfsd: back channel stuck in SEQ4_STATUS_CB_PATH_DOWN - btrfs: replace BUG_ON() in btrfs_csum_one_bio() with proper error handling - btrfs: fix mount failure due to past and transient device flush error - net: mdio: introduce a shutdown method to mdio device drivers - xen-netback: correct success/error reporting for the SKB-with-fraglist case - scsi: sd: Free scsi_disk device via put_device() - [arm*] usb: dwc2: check return value after calling platform_get_resource() - nvme-fc: update hardware queues before using them - nvme-fc: avoid race between time out and tear down - [arm64] thermal/drivers/tsens: Fix wrong check for tzd in irq handlers - scsi: ses: Retry failed Send/Receive Diagnostic commands - [arm64,armhf] irqchip/gic: Work around broken Renesas integration - smb3: correct smb3 ACL security descriptor - KVM: do not shrink halt_poll_ns below grow_start - [x86] kvm: Add AMD PMU MSRs to msrs_to_save_all[] - [x86] KVM: nSVM: restore int_vector in svm_clear_vintr - [x86] perf/x86: Reset destroy callback on event init failure - libata: Add ATA_HORKAGE_NO_NCQ_ON_ATI for Samsung 860 and 870 SSD. https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73 - [arm64,armhf] usb: chipidea: ci_hdrc_imx: Also search for 'phys' phandle - USB: cdc-acm: fix racy tty buffer accesses - USB: cdc-acm: fix break reporting - usb: typec: tcpm: handle SRC_STARTUP state if cc changes - drm/nouveau/kms/tu102-: delay enabling cursor until after assign_windows - xen/privcmd: fix error handling in mmap-resource processing - [arm64] mmc: meson-gx: do not use memcpy_to/fromio for dram-access-quirk - ovl: fix missing negative dentry check in ovl_rename() (CVE-2021-20321) - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - nfsd: fix error handling of register_pernet_subsys() in init_nfsd() - nfsd4: Handle the NFSv4 READDIR 'dircount' hint being zero - SUNRPC: fix sign error causing rpcsec_gss drops - xen/balloon: fix cancelled balloon action - [armhf] dts: omap3430-sdp: Fix NAND device node - [armhf] bus: ti-sysc: Add break in switch statement in sysc_init_soc() - [arm64] soc: qcom: mdt_loader: Drop PT_LOAD check on hash segment - [armhf] dts: imx: Add missing pinctrl-names for panel on M53Menlo - [armhf] dts: imx: Fix USB host power regulator polarity on M53Menlo - [amd64] PCI: hv: Fix sleep while in non-sleep context when removing child devices from the bus - iwlwifi: pcie: add configuration of a Wi-Fi adapter on Dell XPS 15 - [armel,armhf] bpf, arm: Fix register clobbering in div/mod implementation - [armhf] soc: ti: omap-prm: Fix external abort for am335x pruss - bpf: Fix integer overflow in prealloc_elems_and_freelist() (CVE-2021-41864) - net/mlx5e: IPSEC RX, enable checksum complete - net/mlx5: E-Switch, Fix double allocation of acl flow counter - phy: mdio: fix memory leak - net_sched: fix NULL deref in fifo_set_limit() - [i386] ptp_pch: Load module automatically if ID matches - [armhf] imx6: disable the GIC CPU interface before calling stby-poweroff sequence - net: bridge: use nla_total_size_64bit() in br_get_linkxstats_size() - net: bridge: fix under estimation in br_get_linkxstats_size() - net/sched: sch_taprio: properly cancel timer from taprio_destroy() - net: sfp: Fix typo in state machine debug string - netlink: annotate data races around nlk->bound - perf jevents: Tidy error handling - [armhf] bus: ti-sysc: Use CLKDM_NOAUTO for dra7 dcan1 for errata i893 - [arm64,armhf] drm/sun4i: dw-hdmi: Fix HDMI PHY clock setup - drm/nouveau: avoid a use-after-free when BO init fails - drm/nouveau/kms/nv50-: fix file release memory leak - drm/nouveau/debugfs: fix file release memory leak - [amd64] gve: Correct available tx qpl check - [amd64] gve: Avoid freeing NULL pointer - rtnetlink: fix if_nlmsg_stats_size() under estimation - [amd64] gve: fix gve_get_stats() - [amd64] gve: report 64bit tx_bytes counter from gve_handle_report_stats() - i40e: fix endless loop under rtnl - i40e: Fix freeing of uninitialized misc IRQ vector - net: prefer socket bound to interface when not in VRF - [powerpc*] iommu: Report the correct most efficient DMA mask for PCI devices - i2c: acpi: fix resource leak in reconfiguration device addition - [s390x] bpf, s390: Fix potential memory leak about jit_data - [powerpc*] bpf: Fix BPF_SUB when imm == 0x80000000 - [powerpc*] pseries/eeh: Fix the kdump kernel crash during eeh_pseries_init - [i386] x86/platform/olpc: Correct ifdef symbol to intended CONFIG_OLPC_XO15_SCI - [x86] entry: Correct reference to intended CONFIG_64_BIT - [x86] hpet: Use another crystalball to evaluate HPET usability https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.74 - ext4: check and update i_disksize properly - ext4: correct the error path of ext4_write_inline_data_end() - [x86] ASoC: Intel: sof_sdw: tag SoundWire BEs as non-atomic - HID: apple: Fix logical maximum and usage maximum of Magic Keyboard JIS - netfilter: ip6_tables: zero-initialize fragment offset - HID: wacom: Add new Intuos BT (CTL-4100WL/CTL-6100WL) device IDs - [x86] ASoC: SOF: loader: release_firmware() on load failure to avoid batching - netfilter: nf_nat_masquerade: make async masq_inet6_event handling generic - netfilter: nf_nat_masquerade: defer conntrack walk to work queue - mac80211: Drop frames from invalid MAC address in ad-hoc mode - net: prevent user from passing illegal stab size - mac80211: check return value of rhashtable_init - [x86] vboxfs: fix broken legacy mount signature checking - drm/amdgpu: fix gart.bo pin_count leak - scsi: ses: Fix unsigned comparison with less than zero - scsi: virtio_scsi: Fix spelling mistake "Unsupport" -> "Unsupported" - perf/core: fix userpage->time_enabled of inactive events - sched: Always inline is_percpu_thread() - [armhf] hwmon: (pmbus/ibm-cffps) max_power_out swap changes https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.75 - ALSA: usb-audio: Add quirk for VF0770 - ALSA: pcm: Workaround for a wrong offset in SYNC_PTR compat ioctl - ALSA: seq: Fix a potential UAF by wrong private_free call order - ALSA: hda/realtek: Enable 4-speaker output for Dell Precision 5560 laptop - ALSA: hda - Enable headphone mic on Dell Latitude laptops with ALC3254 - ALSA: hda/realtek: Complete partial device name to avoid ambiguity - ALSA: hda/realtek: Add quirk for Clevo X170KM-G - ALSA: hda/realtek - ALC236 headset MIC recording issue - ALSA: hda/realtek: Add quirk for TongFang PHxTxX1 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo 13s Gen2 - ALSA: hda/realtek: Fix the mic type detection issue for ASUS G551JW - [s390x] fix strrchr() implementation - [arm64] hugetlb: fix CMA gigantic page order for non-4K PAGE_SIZE - drm/msm: Avoid potential overflow in timeout_to_jiffies() - btrfs: unlock newly allocated extent buffer after error - btrfs: deal with errors when replaying dir entry during log replay - btrfs: deal with errors when adding inode reference during log replay - btrfs: check for error when looking up inode during dir entry replay - btrfs: update refs for any root except tree log roots - btrfs: fix abort logic in btrfs_replace_file_extents - [x86] resctrl: Free the ctrlval arrays when domain_setup_mon_state() fails - [x86] mei: me: add Ice Lake-N device id. - xhci: guard accesses to ep_state in xhci_endpoint_reset() - xhci: Fix command ring pointer corruption while aborting a command - xhci: Enable trust tx length quirk for Fresco FL11 USB controller - cb710: avoid NULL pointer subtraction - [arm64,x86] efi/cper: use stack buffer for error record decoding - efi: Change down_interruptible() in virt_efi_reset_system() to down_trylock() - [armhf] usb: musb: dsps: Fix the probe error path (Closes: 1000900) - Input: xpad - add support for another USB ID of Nacon GC-100 - USB: serial: qcserial: add EM9191 QDL support - USB: serial: option: add Quectel EC200S-CN module support - USB: serial: option: add Telit LE910Cx composition 0x1204 - USB: serial: option: add prod. id for Quectel EG91 - virtio: write back F_VERSION_1 before validate - nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells - [powerpc*] xive: Discard disabled interrupts in get_irqchip_state() - driver core: Reject pointless SYNC_STATE_ONLY device links - iio: adc: ad7192: Add IRQ flag - iio: adc: ad7780: Fix IRQ flag - iio: adc: ad7793: Fix IRQ flag - iio: adc128s052: Fix the error handling path of 'adc128_probe()' - iio: adc: max1027: Fix wrong shift with 12-bit devices - iio: light: opt3001: Fixed timeout error when 0 lux - iio: adc: max1027: Fix the number of max1X31 channels - iio: dac: ti-dac5571: fix an error code in probe() - [arm64] tee: optee: Fix missing devices unregister during optee_remove - [armel,armhf] dts: bcm2711-rpi-4-b: Fix usb's unit address - [armel,armhf] dts: bcm2711-rpi-4-b: fix sd_io_1v8_reg regulator states - [armel,armhf] dts: bcm2711-rpi-4-b: Fix pcie0's unit address formatting - nvme-pci: Fix abort command id - sctp: account stream padding length for reconf chunk - [arm64,armhf] gpio: pca953x: Improve bias setting - net/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path - net/mlx5e: Mutually exclude RX-FCS and RX-port-timestamp - net: stmmac: fix get_hw_feature() on old hardware - ethernet: s2io: fix setting mac address during resume - nfc: fix error handling of nfc_proto_register() - NFC: digital: fix possible memory leak in digital_tg_listen_mdaa() - NFC: digital: fix possible memory leak in digital_in_send_sdd_req() - [i386] pata_legacy: fix a couple uninitialized variable bugs - ata: ahci_platform: fix null-ptr-deref in ahci_platform_enable_regulators() - drm/edid: In connector_bad_edid() cap num_of_ext by num_blocks read - [arm64] drm/msm: Fix null pointer dereference on pointer edp - [arm64] drm/msm/mdp5: fix cursor-related warnings - [arm64] drm/msm/a6xx: Track current ctx by seqno - [arm64] drm/msm/dsi: Fix an error code in msm_dsi_modeset_init() - [arm64] drm/msm/dsi: fix off by one in dsi_bus_clk_enable error handling - [arm64] acpi/arm64: fix next_platform_timer() section mismatch error - [x86] platform/x86: intel_scu_ipc: Fix busy loop expiry time - mqprio: Correct stats in mqprio_dump_class_stats(). - qed: Fix missing error code in qed_slowpath_start() - nfp: flow_offload: move flow_indr_dev_register from app init to app start - [arm64] net: mscc: ocelot: warn when a PTP IRQ is raised for an unknown skb - [arm64,armhf] net: dsa: mv88e6xxx: don't use PHY_DETECT on internal PHY's https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.76 - xhci: add quirk for host controllers that don't update endpoint DCS - io_uring: fix splice_fd_in checks backport typo - [armhf] dts: vexpress-v2p-ca9: Fix the SMB unit-address - block: decode QUEUE_FLAG_HCTX_ACTIVE in debugfs output - [x86] xen/x86: prevent PVH type from getting clobbered - NFSD: Keep existing listeners on portlist error - netfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value - ice: fix getting UDP tunnel entry - netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6 - netfilter: ipvs: make global sysctl readonly in non-init netns - tcp: md5: Fix overlap between vrf and non-vrf keys - ipv6: When forwarding count rx stats on the orig netdev - [powerpc*] smp: do not decrement idle task preempt count in CPU offline - [arm64] net: hns3: reset DWRR of unused tc to zero - [arm64] net: hns3: add limit ets dwrr bandwidth cannot be 0 - [arm64] net: hns3: schedule the polling again when allocation fails - [arm64] net: hns3: fix vf reset workqueue cannot exit - [arm64] net: hns3: disable sriov before unload hclge layer - net: stmmac: Fix E2E delay mechanism - e1000e: Fix packet loss on Tiger Lake and later - ice: Add missing E810 device ids - [arm64] net: enetc: fix ethtool counter name for PM0_TERR - can: peak_usb: pcan_usb_fd_decode_status(): fix back to ERROR_ACTIVE state notification - can: peak_pci: peak_pci_remove(): fix UAF - can: isotp: isotp_sendmsg(): fix return error on FC timeout on TX path - can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() - can: j1939: j1939_tp_rxtimer(): fix errant alert in j1939_tp_rxtimer - can: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv - can: j1939: j1939_xtp_rx_dat_one(): cancel session if receive TP.DT with error length - can: j1939: j1939_xtp_rx_rts_session_new(): abort TP less than 9 bytes - ceph: skip existing superblocks that are blocklisted or shut down when mounting - ceph: fix handling of "meta" errors - ocfs2: fix data corruption after conversion from inline format - ocfs2: mount fails with buffer overflow in strlen - userfaultfd: fix a race between writeprotect and exit_mmap() - vfs: check fd has read access in kernel_read_file_from_fd() - ALSA: usb-audio: Provide quirk for Sennheiser GSP670 Headset - ALSA: hda/realtek: Add quirk for Clevo PC50HS - ASoC: DAPM: Fix missing kctl change notifications - audit: fix possible null-pointer dereference in audit_filter_rules - [powerpc*] powerpc64/idle: Fix SP offsets when saving GPRs - [powerpc*] KVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest() - [powerpc*] KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest (CVE-2021-43056) - [powerpc*] idle: Don't corrupt back chain when going idle - mm, slub: fix mismatch between reconstructed freelist depth and cnt - mm, slub: fix potential memoryleak in kmem_cache_open() - mm, slub: fix incorrect memcg slab count for bulk free - [x86] KVM: nVMX: promptly process interrupts delivered while in guest mode - nfc: nci: fix the UAF of rf_conn_info object (CVE-2021-3760) - isdn: cpai: check ctr->cnr to avoid array index out of bound (CVE-2021-43389) - [arm64] net: hns3: fix the max tx size according to user manual - ALSA: hda: intel: Allow repeatedly probing on codec configuration errors - btrfs: deal with errors when checking if a dir entry exists during log replay - net: stmmac: add support for dwmac 3.40a - isdn: mISDN: Fix sleeping function called from invalid context - [x86] platform/x86: intel_scu_ipc: Update timeout value in comment - ALSA: hda: avoid write to STATESTS if controller is in reset - [x86] perf/x86/msr: Add Sapphire Rapids CPU support - scsi: iscsi: Fix set_param() handling - scsi: qla2xxx: Fix a memory leak in an error path of qla2x00_process_els() - sched/scs: Reset the shadow stack when idle_task_exit - [arm64] net: hns3: fix for miscalculation of rx unused desc - scsi: core: Fix shost->cmd_per_lun calculation in scsi_add_host_with_dma() - can: isotp: isotp_sendmsg(): fix TX buffer concurrent access in isotp_sendmsg() - [s390x] pci: fix zpci_zdev_put() on reserve - net: mdiobus: Fix memory leak in __mdiobus_register - tracing: Have all levels of checks prevent recursion - e1000e: Separate TGP board type from SPT - [armhf] pinctrl: stm32: use valid pin identifier in stm32_pinctrl_resume() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.77 - [armel,armhf] 9139/1: kprobes: fix arch_init_kprobes() prototype - io_uring: don't take uring_lock during iowq cancel - [powerpc*] bpf: Fix BPF_MOD when imm == 1 - [arm64] Avoid premature usercopy failure - ext4: fix possible UAF when remounting r/o a mmp-protected file system - usbnet: sanity check for maxpacket - usbnet: fix error return code in usbnet_probe() - pinctrl: amd: disable and mask interrupts on probe - ata: sata_mv: Fix the error handling of mv_chip_id() - tipc: fix size validations for the MSG_CRYPTO type (CVE-2021-43267) - nfc: port100: fix using -ERRNO as command type mask - Revert "net: mdiobus: Fix memory leak in __mdiobus_register" - mmc: vub300: fix control-message timeouts - mmc: cqhci: clear HALT state after CQE enable - [armhf] mmc: dw_mmc: exynos: fix the finding clock sample value - mmc: sdhci: Map more voltage level to SDHCI_POWER_330 - [arm64,armhf] mmc: sdhci-esdhc-imx: clear the buffer_read_ready to reset standard tuning circuit - ocfs2: fix race between searching chunks and release journal_head from buffer_head - nvme-tcp: fix H2CData PDU send accounting (again) - cfg80211: scan: fix RCU in cfg80211_add_nontrans_list() - cfg80211: fix management registrations locking - net: lan78xx: fix division by zero in send path - mm, thp: bail out early in collapse_file for writeback page - drm/ttm: fix memleak in ttm_transfered_destroy - drm/amdgpu: fix out of bounds write (CVE-2021-42327) - cgroup: Fix memory leak caused by missing cgroup_bpf_offline - tcp_bpf: Fix one concurrency problem in the tcp_bpf_send_verdict function - bpf: Fix potential race in tail call compatibility check - bpf: Fix error usage of map_fd and fdget() in generic_map_update_batch() - [amd64] IB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields - [amd64] IB/hfi1: Fix abba locking issue with sc_disable() - nvmet-tcp: fix data digest pointer calculation - nvme-tcp: fix data digest pointer calculation - nvme-tcp: fix possible req->offset corruption - RDMA/mlx5: Set user priority for DCT - [arm64] dts: allwinner: h5: NanoPI Neo 2: Fix ethernet node - regmap: Fix possible double-free in regcache_rbtree_exit() - net: batman-adv: fix error handling - net-sysfs: initialize uid and gid before calling net_ns_get_ownership - cfg80211: correct bridge/4addr mode check - net: Prevent infinite while loop in skb_tx_hash() - RDMA/sa_query: Use strscpy_pad instead of memcpy to copy a string - net: ethernet: microchip: lan743x: Fix driver crash when lan743x_pm_resume fails - net: ethernet: microchip: lan743x: Fix dma allocation failure by using dma_set_mask_and_coherent - phy: phy_ethtool_ksettings_get: Lock the phy for consistency - phy: phy_ethtool_ksettings_set: Move after phy_start_aneg - phy: phy_start_aneg: Add an unlocked version - phy: phy_ethtool_ksettings_set: Lock the PHY while changing settings - sctp: use init_tag from inithdr for ABORT chunk (CVE-2021-3772) - sctp: fix the processing for INIT_ACK chunk (CVE-2021-3772) - sctp: fix the processing for COOKIE_ECHO chunk (CVE-2021-3772) - sctp: add vtag check in sctp_sf_violation (CVE-2021-3772) - sctp: add vtag check in sctp_sf_do_8_5_1_E_sa (CVE-2021-3772) - sctp: add vtag check in sctp_sf_ootb (CVE-2021-3772) - lan743x: fix endianness when accessing descriptors - [s390x] KVM: clear kicked_mask before sleeping again - [s390x] KVM: preserve deliverable_mask in __airqs_kick_single_vcpu https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.78 - scsi: core: Put LLD module refcnt after SCSI device is released - Revert "io_uring: reinforce cancel on flush during exit" - sfc: Fix reading non-legacy supported link modes - vrf: Revert "Reset skb conntrack connection..." - net: ethernet: microchip: lan743x: Fix skb allocation failure - media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt() (CVE-2021-42739) - Revert "xhci: Set HCD flag to defer primary roothub registration" - Revert "usb: core: hcd: Add support for deferring roothub registration" - mm: khugepaged: skip huge page collapse for special files - Revert "drm/ttm: fix memleak in ttm_transfered_destroy" - [arm*] 9120/1: Revert "amba: make use of -1 IRQs warn" - [arm64] Revert "wcn36xx: Disable bmps when encryption is disabled" - ALSA: usb-audio: Add Schiit Hel device to mixer map quirk table - ALSA: usb-audio: Add Audient iD14 to mixer map quirk table https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.79 - [x86] Revert "x86/kvm: fix vcpu-id indexed array sizes" - [arm64,armhf] usb: musb: Balance list entry in musb_gadget_queue - usb-storage: Add compatibility quirk flags for iODD 2531/2541 - [arm*] binder: don't detect sender/target during buffer cleanup - printk/console: Allow to disable console output by using console="" or console=null - staging: rtl8712: fix use-after-free in rtl8712_dl_fw - isofs: Fix out of bound access for corrupted isofs image - [x86] comedi: dt9812: fix DMA buffers on stack - [x86] comedi: ni_usb6501: fix NULL-deref in command paths - [x86] comedi: vmk80xx: fix transfer-buffer overflows - [x86] comedi: vmk80xx: fix bulk-buffer overflow - [x86] comedi: vmk80xx: fix bulk and interrupt message timeouts - staging: r8712u: fix control-message timeout - [x86] staging: rtl8192u: fix control-message timeouts - rsi: fix control-message timeout https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.80 - xhci: Fix USB 3.1 enumeration issues by increasing roothub power-on-good delay - usb: xhci: Enable runtime-pm by default on AMD Yellow Carp platform - [arm*] binder: use euid from cred instead of using task - [arm*] binder: use cred instead of task for selinux checks - [arm*] binder: use cred instead of task for getsecid - Input: iforce - fix control-message timeout - Input: elantench - fix misreporting trackpoint coordinates (Closes: #989285) - libata: fix read log timeout value - ocfs2: fix data corruption on truncate - scsi: core: Remove command size deduction from scsi_setup_scsi_cmnd() - scsi: qla2xxx: Fix kernel crash when accessing port_speed sysfs file - scsi: qla2xxx: Fix use after free in eh_abort path - [arm64,armhf] mmc: dw_mmc: Dont wait for DRTO on Write RSP error - exfat: fix incorrect loading of i_blocks for large files - tpm: Check for integer overflow in tpm2_map_response_body() - media: ite-cir: IR receiver stop working after receive overflow (Closes: #996672) - media: ir-kbd-i2c: improve responsiveness of hauppauge zilog receivers (Closes: #994050) - media: v4l2-ioctl: Fix check_ext_ctrls - ALSA: hda/realtek: Fix mic mute LED for the HP Spectre x360 14 - ALSA: hda/realtek: Add a quirk for HP OMEN 15 mute LED - ALSA: hda/realtek: Add quirk for Clevo PC70HS - ALSA: hda/realtek: Headset fixup for Clevo NH77HJQ - ALSA: hda/realtek: Add a quirk for Acer Spin SP513-54N - ALSA: hda/realtek: Add quirk for ASUS UX550VE - ALSA: hda/realtek: Add quirk for HP EliteBook 840 G7 mute LED - ALSA: ua101: fix division by zero at probe - ALSA: 6fire: fix control and bulk message timeouts - ALSA: line6: fix control and interrupt message timeouts - ALSA: usb-audio: Line6 HX-Stomp XL USB_ID for 48k-fixed quirk - ALSA: usb-audio: Add registration quirk for JBL Quantum 400 - ALSA: hda: Free card instance properly at probe errors - ALSA: synth: missing check for possible NULL after the call to kstrdup - ALSA: timer: Fix use-after-free problem - ALSA: timer: Unconditionally unlink slave instances, too - ext4: fix lazy initialization next schedule time computation in more granular unit - ext4: ensure enough credits in ext4_ext_shift_path_extents - ext4: refresh the ext4_ext_path struct after dropping i_data_sem. - fuse: fix page stealing - [x86] cpu: Fix migration safety with X86_BUG_NULL_SEL - [x86] irq: Ensure PI wakeup handler is unregistered before module unload - ASoC: soc-core: fix null-ptr-deref in snd_soc_del_component_unlocked() - ALSA: hda/realtek: Fixes HP Spectre x360 15-eb1xxx speakers - [arm64] cavium: Return negative value when pci_alloc_irq_vectors() fails - scsi: qla2xxx: Return -ENOMEM if kzalloc() fails - scsi: qla2xxx: Fix unmap of already freed sgl - mISDN: Fix return values of the probe function - [arm64] cavium: Fix return values of the probe function - sfc: Export fibre-specific supported link modes - sfc: Don't use netif_info before net_device setup - [armhf] reset: socfpga: add empty driver allowing consumers to probe - drm: panel-orientation-quirks: Add quirk for Aya Neo 2021 - bpf: Define bpf_jit_alloc_exec_limit for arm64 JIT - bpf: Prevent increasing bpf_jit_limit above max - xen/netfront: stop tx queues during live migration - nvmet-tcp: fix a memory leak when releasing a queue - [armhf] spi: spl022: fix Microwire full duplex mode - net: multicast: calculate csum of looped-back and forwarded packets - [armhf] watchdog: Fix OMAP watchdog early handling - drm: panel-orientation-quirks: Add quirk for GPD Win3 - block: schedule queue restart after BLK_STS_ZONE_RESOURCE - nvmet-tcp: fix header digest verification - r8169: Add device 10ec:8162 to driver r8169 - [x86] vmxnet3: do not stop tx queues after netif_device_detach() - nfp: bpf: relax prog rejection for mtu check through max_pkt_offset - net/smc: Fix smc_link->llc_testlink_time overflow - net/smc: Correct spelling mistake to TCPF_SYN_RECV - rds: stop using dmapool - btrfs: clear MISSING device status bit in btrfs_close_one_device - btrfs: fix lost error handling when replaying directory deletes - btrfs: call btrfs_check_rw_degradable only if there is a missing device - [x86] KVM: VMX: Unregister posted interrupt wakeup handler on hardware unsetup - selinux: fix race condition when computing ocontext SIDs - [armhf] regulator: s5m8767: do not use reset value as DVS voltage if GPIO DVS is disabled - [amd64] EDAC/sb_edac: Fix top-of-high-memory value for Broadwell/Haswell - [x86] mwifiex: fix division by zero in fw download path - ath6kl: fix division by zero in send path - ath6kl: fix control-message timeout - ath10k: fix control-message timeout - ath10k: fix division by zero in send path - PCI: Mark Atheros QCA6174 to avoid bus reset - rtl8187: fix control-message timeouts - [arm64] wcn36xx: Fix HT40 capability for 2Ghz band - [arm64] wcn36xx: Fix tx_status mechanism - [arm64] wcn36xx: Fix (QoS) null data frame bitrate/modulation - PM: sleep: Do not let "syscore" devices runtime-suspend during system transitions - mwifiex: Read a PCI register after writing the TX ring write pointer - mwifiex: Try waking the firmware until we get an interrupt - libata: fix checking of DMA state - [arm64] wcn36xx: handle connection loss indication - rsi: fix occasional initialisation failure with BT coex - rsi: fix key enabled check causing unwanted encryption for vap_id > 0 - rsi: fix rate mask set leading to P2P failure - rsi: Fix module dev_oper_mode parameter description - [x86] perf/x86/intel/uncore: Support extra IMC channel on Ice Lake server - [x86] perf/x86/intel/uncore: Fix Intel ICX IIO event constraints - RDMA/qedr: Fix NULL deref for query_qp on the GSI QP - signal: Remove the bogus sigkill_pending in ptrace_stop - [mips*] signal/mips: Update (_save|_restore)_fp_context to fail with -EFAULT - [arm64] soc: fsl: dpio: replace smp_processor_id with raw_smp_processor_id - [arm64] soc: fsl: dpio: use the combined functions to protect critical zone - [x86] power: supply: max17042_battery: Prevent int underflow in set_soc_threshold - [x86] power: supply: max17042_battery: use VFSOC for capacity when no rsns - [arm64] KVM: arm64: Extract ESR_ELx.EC only - [x86] KVM: nVMX: Query current VMCS when determining if MSR bitmaps are in use - can: j1939: j1939_tp_cmd_recv(): ignore abort message in the BAM transport - can: j1939: j1939_can_recv(): ignore messages with invalid source address - ring-buffer: Protect ring_buffer_reset() from reentrancy - serial: core: Fix initializing and restoring termios speed - ifb: fix building without CONFIG_NET_CLS_ACT - ALSA: mixer: oss: Fix racy access to slots - ALSA: mixer: fix deadlock in snd_mixer_oss_set_volume - xen/balloon: add late_initcall_sync() for initial ballooning done - ovl: fix use after free in struct ovl_aio_req - [arm*] PCI: pci-bridge-emul: Fix emulation of W1C bits - [arm64] PCI: aardvark: Do not clear status bits of masked interrupts - [arm64] PCI: aardvark: Fix checking for link up via LTSSM state - [arm64] PCI: aardvark: Do not unmask unused interrupts - [arm64] PCI: aardvark: Fix reporting Data Link Layer Link Active - [arm64] PCI: aardvark: Fix configuring Reference clock - [arm64] PCI: aardvark: Fix return value of MSI domain .alloc() method - [arm64] PCI: aardvark: Read all 16-bits from PCIE_MSI_PAYLOAD_REG - [arm64] PCI: aardvark: Fix support for bus mastering and PCI_COMMAND on emulated bridge - [arm64] PCI: aardvark: Fix support for PCI_BRIDGE_CTL_BUS_RESET on emulated bridge - [arm64] PCI: aardvark: Set PCI Bridge Class Code to PCI Bridge - [arm64] PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge - quota: check block number when reading the block in quota file - quota: correct error number in free_dqentry() - pinctrl: core: fix possible memory leak in pinctrl_enable() - iio: dac: ad5446: Fix ad5622_write() return value - iio: ad5770r: make devicetree property reading consistent - USB: serial: keyspan: fix memleak on probe errors - serial: 8250: fix racy uartclk update - USB: iowarrior: fix control-message timeouts - [arm64,armhf] USB: chipidea: fix interrupt deadlock - [x86] power: supply: max17042_battery: Clear status bits in interrupt handler - dma-buf: WARN on dmabuf release with pending attachments - drm: panel-orientation-quirks: Update the Lenovo Ideapad D330 quirk (v2) - drm: panel-orientation-quirks: Add quirk for KD Kurio Smart C15200 2-in-1 - drm: panel-orientation-quirks: Add quirk for the Samsung Galaxy Book 10.6 - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() (CVE-2021-3640) - Bluetooth: fix use-after-free error in lock_sock_nested() - drm/panel-orientation-quirks: add Valve Steam Deck - [x86] platform/x86: wmi: do not fail if disabling fails - locking/lockdep: Avoid RCU-induced noinstr fail - net: sched: update default qdisc visibility after Tx queue cnt changes - rcu-tasks: Move RTGS_WAIT_CBS to beginning of rcu_tasks_kthread() loop - ath11k: Align bss_chan_info structure with firmware - [x86] Increase exception stack sizes - mwifiex: Run SET_BSS_MODE when changing from P2P to STATION vif-type - mwifiex: Properly initialize private structure on interface type changes - fscrypt: allow 256-bit master keys with AES-256-XTS - drm/amdgpu: Fix MMIO access page fault - ath11k: Avoid reg rules update during firmware recovery - ath11k: add handler for scan event WMI_SCAN_EVENT_DEQUEUED - ath11k: Change DMA_FROM_DEVICE to DMA_TO_DEVICE when map reinjected packets - ath10k: high latency fixes for beacon buffer - media: netup_unidvb: handle interrupt properly according to the firmware - media: uvcvideo: Set capability in s_param - media: uvcvideo: Return -EIO for control errors - media: uvcvideo: Set unique vdev name based in type - [armhf] media: imx: set a media_device bus_info string - media: mceusb: return without resubmitting URB in case of -EPROTO error. - rtw88: fix RX clock gate setting while fifo dump - brcmfmac: Add DMI nvram filename quirk for Cyberbook T116 tablet - ipmi: Disable some operations during a panic - fs/proc/uptime.c: Fix idle time reporting in /proc/uptime - ACPICA: Avoid evaluating methods too early during system resume - media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() - net-sysfs: try not to restart the syscall if it will fail eventually - tracefs: Have tracefs directories not set OTH permission bits by default - ath: dfs_pattern_detector: Fix possible null-pointer dereference in channel_detector_create() - iov_iter: Fix iov_iter_get_pages{,_alloc} page fault return value - ACPI: battery: Accept charges over the design capacity as full - net: phy: micrel: make *-skew-ps check more lenient - [arm64] drm/msm: prevent NULL dereference in msm_gpu_crashstate_capture() - block: bump max plugged deferred size from 16 to 32 - md: update superblock after changing rdev flags in state_store - memstick: r592: Fix a UAF bug when removing the driver - lib/xz: Avoid overlapping memcpy() with invalid input with in-place decompression - lib/xz: Validate the value before assigning it to an enum variable - workqueue: make sysfs of unbound kworker cpumask more clever - mwl8k: Fix use-after-free in mwl8k_fw_state_machine() - block: remove inaccurate requeue check - nvmet: fix use-after-free when a port is removed - nvmet-rdma: fix use-after-free when a port is removed - nvmet-tcp: fix use-after-free when a port is removed - nvme: drop scan_lock and always kick requeue list when removing namespaces - PM: hibernate: Get block device exclusively in swsusp_check() - iwlwifi: mvm: disable RX-diversity in powersave - gre/sit: Don't generate link-local addr if addr_gen_mode is IN6_ADDR_GEN_MODE_NONE - gfs2: Cancel remote delete work asynchronously - gfs2: Fix glock_hash_walk bugs - vrf: run conntrack only in context of lower/physdev for locally generated packets - net: annotate data-race in neigh_output() - ACPI: AC: Quirk GK45 to skip reading _PSR - btrfs: reflink: initialize return value to 0 in btrfs_extent_same() - btrfs: do not take the uuid_mutex in btrfs_rm_device - [arm64] wcn36xx: Correct band/freq reporting on RX - [x86] hyperv: Protect set_hv_tscchange_cb() against getting preempted - drm/amd/display: dcn20_resource_construct reduce scope of FPU enabled - task_stack: Fix end_of_stack() for architectures with upwards-growing stack - erofs: don't trigger WARN() when decompression fails - netfilter: conntrack: set on IPS_ASSURED if flows enters internal stream state - Bluetooth: fix init and cleanup of sco_conn.timeout_work - rcu: Fix existing exp request check in sync_sched_exp_online_cleanup() - objtool: Add xen_start_kernel() to noreturn list - [x86] xen: Mark cpu_bringup_and_idle() as dead_end_function - objtool: Fix static_call list generation - virtio-gpu: fix possible memory allocation failure - lockdep: Let lock_is_held_type() detect recursive read as read - net: net_namespace: Fix undefined member in key_remove_domain() - cgroup: Make rebind_subsystems() disable v2 controllers all at once - [arm64] wcn36xx: Fix Antenna Diversity Switching - Bluetooth: btmtkuart: fix a memleak in mtk_hci_wmt_sync - [arm64] crypto: caam - disable pkc for non-E SoCs - rxrpc: Fix _usecs_to_jiffies() by using usecs_to_jiffies() - ath11k: fix some sleeping in atomic bugs - ath11k: Avoid race during regd updates - ath11k: fix packet drops due to incorrect 6 GHz freq value in rx status - ath11k: Fix memory leak in ath11k_qmi_driver_event_work - ath10k: Fix missing frame timestamp for beacon/probe-resp - ath10k: sdio: Add missing BH locking around napi_schdule() - drm/ttm: stop calling tt_swapin in vm_access - [arm64] mm: update max_pfn after memory hotplug - drm/amdgpu: fix warning for overflow check - media: em28xx: add missing em28xx_close_extension - media: dvb-usb: fix ununit-value in az6027_rc_query - media: v4l2-ioctl: S_CTRL output the right value - media: si470x: Avoid card name truncation - [x86] media: tm6000: Avoid card name truncation - media: cx23885: Fix snd_card_free call on null card pointer - kprobes: Do not use local variable when creating debugfs file - cpuidle: Fix kobject memory leaks in error paths - media: em28xx: Don't use ops->suspend if it is NULL - ath9k: Fix potential interrupt storm on queue reset - PM: EM: Fix inefficient states detection - [amd64] EDAC/amd64: Handle three rank interleaving mode - rcu: Always inline rcu_dynticks_task*_{enter,exit}() - netfilter: nft_dynset: relax superfluous check on set updates - [x86] crypto: qat - detect PFVF collision after ACK - [x86] crypto: qat - disregard spurious PFVF interrupts - b43legacy: fix a lower bounds test - b43: fix a lower bounds test - [amd64] gve: Recover from queue stall due to missed IRQ - [armhf] mmc: sdhci-omap: Fix NULL pointer exception if regulator is not configured - [armhf] mmc: sdhci-omap: Fix context restore - memstick: jmb38x_ms: use appropriate free function in jmb38x_ms_alloc_host() - net, neigh: Fix NTF_EXT_LEARNED in combination with NTF_USE - hwmon: Fix possible memleak in __hwmon_device_register() - ath10k: fix max antenna gain unit - kernel/sched: Fix sched_fork() access an invalid sched_task_group - tcp: switch orphan_count to bare per-cpu counters - [arm64] drm/msm: potential error pointer dereference in init() - [arm64] drm/msm: uninitialized variable in msm_gem_import() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - [x86] platform/x86: thinkpad_acpi: Fix bitwise vs. logical warning - mt76: mt76x02: fix endianness warnings in mt76x02_mac.c - rsi: stop thread firstly in rsi_91x_init() error handling - mwifiex: Send DELBA requests according to spec - [arm64] net: enetc: unmap DMA in enetc_send_cmd() - phy: micrel: ksz8041nl: do not use power down mode - nvme-rdma: fix error code in nvme_rdma_setup_ctrl - PM: hibernate: fix sparse warnings - [arm64] drm/msm: Fix potential NULL dereference in DPU SSPP - bpftool: Avoid leaking the JSON writer prepared for program metadata - [s390x] gmap: don't unconditionally call pte_unmap_unlock() in __gmap_zap() - [s390x] KVM: pv: avoid double free of sida page - [s390x] KVM: pv: avoid stalls for kvm_s390_pv_init_vm - tpm: fix Atmel TPM crash caused by too frequent queries - tpm_tis_spi: Add missing SPI ID - tcp: don't free a FIN sk_buff in tcp_remove_empty_skb() - [s390x] KVM: Fix handle_sske page fault handling - libertas_tf: Fix possible memory leak in probe and disconnect - libertas: Fix possible memory leak in probe and disconnect - [arm64] wcn36xx: add proper DMA memory barriers in rx path - [arm64] wcn36xx: Fix discarded frames due to wrong sequence number - drm/amdgpu/gmc6: fix DMA mask from 44 to 40 bits - [amd64,arm64] net: amd-xgbe: Toggle PLL settings during rate change - net: phylink: avoid mvneta warning when setting pause parameters - crypto: pcrypt - Delay write to padata->info - udp6: allow SO_MARK ctrl msg to affect routing - cgroup: Fix rootcg cpu.stat guest double counting - bpf: Fix propagation of bounds from 64-bit min/max into 32-bit and var_off. - bpf: Fix propagation of signed bounds from 64-bit min/max into 32-bit. - iio: st_sensors: Call st_sensors_power_enable() from bus drivers - iio: st_sensors: disable regulators after device unregistration - RDMA/bnxt_re: Fix query SRQ failure - [arm64] dts: meson-g12a: Fix the pwm regulator supply properties - [armhf] bus: ti-sysc: Fix timekeeping_suspended warning on resume - scsi: dc395: Fix error case unwinding - JFS: fix memleak in jfs_mount - ALSA: hda: Reduce udelay() at SKL+ position reporting - ALSA: hda: Release controller display power during shutdown/reboot - ALSA: hda: Fix hang during shutdown due to link reset - ALSA: hda: Use position buffer for SKL+ again - soundwire: debugfs: use controller id and link_id for debugfs - scsi: pm80xx: Fix misleading log statement in pm8001_mpi_get_nvmd_resp() - driver core: Fix possible memory leak in device_link_add() - [x86] ASoC: SOF: topology: do not power down primary core during topology removal - [arm64,armhf] soc/tegra: Fix an error handling path in tegra_powergate_power_up() - [powerpc*] Refactor is_kvm_guest() declaration to new header - [powerpc*] Rename is_kvm_guest() to check_kvm_guest() - [powerpc*] Reintroduce is_kvm_guest() as a fast-path check - [powerpc*] Fix is_kvm_guest() / kvm_para_available() - [powerpc*] fix unbalanced node refcount in check_kvm_guest() - serial: 8250_dw: Drop wrong use of ACPI_PTR() - scsi: csiostor: Uninitialized data in csio_ln_vnp_read_cbfn() - RDMA/mlx4: Return missed an error if device doesn't support steering - iio: adis: do not disabe IRQs in 'adis_init()' - scsi: ufs: Refactor ufshcd_setup_clocks() to remove skip_ref_clk - [arm64,armhf] serial: imx: fix detach/attach of serial console - [arm*] usb: dwc2: drd: fix dwc2_force_mode call in dwc2_ovr_init - [arm*] usb: dwc2: drd: fix dwc2_drd_role_sw_set when clock could be disabled - [arm*] usb: dwc2: drd: reset current session before setting the new one - [arm64] firmware: qcom_scm: Fix error retval in __qcom_scm_is_call_available() - [arm64] phy: qcom-qusb2: Fix a memory leak on probe - [armhf] phy: ti: gmii-sel: check of_get_address() for failure - [arm64] serial: xilinx_uartps: Fix race condition causing stuck TX - HID: u2fzero: clarify error check and length calculations - HID: u2fzero: properly handle timeouts in usb_submit_urb - virtio_ring: check desc == NULL when using indirect with packed - [mips*] cm: Convert to bitfield API to fix out-of-bounds access - apparmor: fix error check - rpmsg: Fix rpmsg_create_ept return when RPMSG config is not defined - nfsd: don't alloc under spinlock in rpc_parse_scope_id - NFS: Fix dentry verifier races - pnfs/flexfiles: Fix misplaced barrier in nfs4_ff_layout_prepare_ds - drm/plane-helper: fix uninitialized variable reference - [arm64] PCI: aardvark: Don't spam about PIO Response Status - [arm64] PCI: aardvark: Fix preserving PCI_EXP_RTCTL_CRSSVE flag on emulated bridge - opp: Fix return in _opp_add_static_v2() - NFS: Fix deadlocks in nfs_scan_commit_list() - fs: orangefs: fix error return code of orangefs_revalidate_lookup() - [arm64] mtd: spi-nor: hisi-sfc: Remove excessive clk_disable_unprepare() - mtd: core: don't remove debugfs directory if device is in use - [armhf] remoteproc: Fix a memory leak in an error handling path in 'rproc_handle_vdev()' - NFS: Fix up commit deadlocks - NFS: Fix an Oops in pnfs_mark_request_commit() - Fix user namespace leak - [arm64] soc: fsl: dpaa2-console: free buffer before returning from dpaa2_console_read - netfilter: nfnetlink_queue: fix OOB when mac header was cleared - [x86] watchdog: f71808e_wdt: fix inaccurate report in WDIOC_GETTIMEOUT - scsi: qla2xxx: Changes to support FCP2 Target - scsi: qla2xxx: Relogin during fabric disturbance - scsi: qla2xxx: Fix gnl list corruption - scsi: qla2xxx: Turn off target reset during issue_lip - NFSv4: Fix a regression in nfs_set_open_stateid_locked() - xen-pciback: Fix return in pm_ctrl_init() - [armhf] net: davinci_emac: Fix interrupt pacing disable - ethtool: fix ethtool msg len calculation for pause stats - net: vlan: fix a UAF in vlan_dev_real_dev() - ice: Fix replacing VF hardware MAC to existing MAC filter - ice: Fix not stopping Tx queues for VFs - [x86] ACPI: PMIC: Fix intel_pmic_regs_handler() read accesses - net: phy: fix duplex out of sync problem while changing settings - bonding: Fix a use-after-free problem when bond_sysfs_slave_add() failed - mfd: core: Add missing of_node_put for loop iteration - mm/zsmalloc.c: close race window between zs_pool_dec_isolated() and zs_unregister_migration() - zram: off by one in read_block_state() - llc: fix out-of-bound array index in llc_sk_dev_hash() - nfc: pn533: Fix double free when pn533_fill_fragment_skbs() fails - [arm64] pgtable: make __pte_to_phys/__phys_to_pte_val inline functions - bpf, sockmap: Remove unhash handler for BPF sockmap usage - bpf: sockmap, strparser, and tls are reusing qdisc_skb_cb and colliding - [amd64] gve: Fix off by one in gve_tx_timeout() - seq_file: fix passing wrong private data - net/sched: sch_taprio: fix undefined behavior in ktime_mono_to_any - [arm64] net: hns3: fix kernel crash when unload VF while it is being reset - [arm64] net: hns3: allow configure ETS bandwidth of all TCs - net: stmmac: allow a tc-taprio base-time of zero - vsock: prevent unnecessary refcnt inc for nonblocking connect - net/smc: fix sk_refcnt underflow on linkdown and fallback - cxgb4: fix eeprom len when diagnostics not implemented - [armel,armhf] 9155/1: fix early early_iounmap() - [armhf] 9156/1: drop cc-option fallbacks for architecture selection - [x86] mce: Add errata workaround for Skylake SKX37 - posix-cpu-timers: Clear task::posix_cputimers_work in copy_process() - f2fs: should use GFP_NOFS for directory inodes - net, neigh: Enable state migration between NUD_PERMANENT and NTF_USE - 9p/net: fix missing error check in p9_check_errors - memcg: prohibit unconditional exceeding the limit of dying tasks - [powerpc*] lib: Add helper to check if offset is within conditional branch range - [powerpc*] bpf: Validate branch ranges - [powerpc*] security: Add a helper to query stf_barrier type - [powerpc*] bpf: Emit stf barrier instruction sequences for BPF_NOSPEC - mm, oom: pagefault_out_of_memory: don't force global OOM for dying tasks - mm, oom: do not trigger out_of_memory from the #PF - video: backlight: Drop maximum brightness override for brightness zero - [s390x] cio: check the subchannel validity for dev_busid - [s390x] tape: fix timer initialization in tape_std_assign() - [s390x] ap: Fix hanging ioctl caused by orphaned replies - [s390x] cio: make ccw_device_dma_* more robust - [powerpc*] powernv/prd: Unregister OPAL_MSG_PRD2 notifier during module unload - [arm64,armhf] drm/sun4i: Fix macros in sun8i_csc.h - PCI: Add PCI_EXP_DEVCTL_PAYLOAD_* macros - [arm64] PCI: aardvark: Fix PCIe Max Payload Size setting - SUNRPC: Partial revert of commit 6f9f17287e78 - ath10k: fix invalid dma_addr_t token assignment - arch/cc: Introduce a function to check for confidential computing features - [arm64,armhf] soc/tegra: pmc: Fix imbalanced clock disabling in error code path https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.81 - block: Add a helper to validate the block size - loop: Use blk_validate_block_size() to validate block size - bootconfig: init: Fix memblock leak in xbc_make_cmdline() - net: stmmac: add clocks management for gmac driver - net: stmmac: fix missing unlock on error in stmmac_suspend() - net: stmmac: fix system hang if change mac address after interface ifdown - net: stmmac: fix issue where clk is being unprepared twice - [arm64,armhf] net: stmmac: dwmac-rk: fix unbalanced pm_runtime_enable warnings - [x86] iopl: Fake iopl(3) CLI/STI usage - PCI/MSI: Destroy sysfs before freeing entries - PCI/MSI: Deal with devices lying about their MSI mask capability - PCI: Add MSI masking quirk for Nvidia ION AHCI - erofs: remove the occupied parameter from z_erofs_pagevec_enqueue() - erofs: fix unsafe pagevec reuse of hooked pclusters - scripts/lld-version.sh: Rewrite based on upstream ld-version.sh - perf/core: Avoid put_page() when GUP fails - thermal: Fix NULL pointer dereferences in of_thermal_ functions https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.82 - [arm64] zynqmp: Do not duplicate flash partition label property - [arm64] zynqmp: Fix serial compatible string - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - [armhf] bus: ti-sysc: Add quirk handling for reinit on context lost - [armhf] bus: ti-sysc: Use context lost quirk for otg - [armhf] usb: musb: tusb6010: check return value after calling platform_get_resource() - [x86] usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - staging: rtl8723bs: remove possible deadlock when disconnect (v2) - [x86] ASoC: SOF: Intel: hda-dai: fix potential locking issue - [armhf] clk: imx: imx6ul: Move csi_sel mux to correct base register - [x86] ASoC: nau8824: Add DMI quirk mechanism for active-high jack-detect - scsi: advansys: Fix kernel pointer leak - ALSA: intel-dsp-config: add quirk for APL/GLK/TGL devices based on ES8336 codec - firmware_loader: fix pre-allocated buf built-in firmware use - tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc - scsi: scsi_debug: Fix out-of-bound read in resp_readcap16() - scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() - scsi: target: Fix ordered tag handling - scsi: target: Fix alua_tg_pt_gps_count tracking - iio: imu: st_lsm6dsx: Avoid potential array overflow in st_lsm6dsx_set_odr() - [i386] ALSA: gus: fix null pointer dereference on pointer block - maple: fix wrong return value of maple_bus_init(). - f2fs: fix up f2fs_lookup tracepoints - f2fs: fix to use WHINT_MODE - f2fs: compress: disallow disabling compress on non-empty compressed file - f2fs: fix incorrect return value in f2fs_sanity_check_ckpt() - [armhf] clk/ast2600: Fix soc revision for AHB - [arm64] clk: qcom: gcc-msm8996: Drop (again) gcc_aggre1_pnoc_ahb_clk - sched/core: Mitigate race cpus_share_cache()/update_top_cache_domain() - [x86] perf/x86/vlbr: Add c->flags to vlbr event constraints - blkcg: Remove extra blkcg_bio_issue_init - perf bpf: Avoid memory leak from perf_env__insert_btf() - perf bench futex: Fix memory leak of perf_cpu_map__new() - perf tests: Remove bash construct from record+zstd_comp_decomp.sh - drm/nouveau: hdmigv100.c: fix corrupted HDMI Vendor InfoFrame - net-zerocopy: Copy straggler unaligned data for TCP Rx. zerocopy. - net-zerocopy: Refactor skb frag fast-forward op. - tcp: Fix uninitialized access in skb frags array for Rx 0cp. - tracing: Add length protection to histogram string copies - bnxt_en: reject indirect blk offload when hw-tc-offload is off - tipc: only accept encrypted MSG_CRYPTO msgs - net: reduce indentation level in sk_clone_lock() - sock: fix /proc/net/sockstat underflow in sk_clone_lock() - net/smc: Make sure the link_id is unique - iavf: Fix return of set the new channel count - iavf: check for null in iavf_fix_features - iavf: free q_vectors before queues in iavf_disable_vf - iavf: Fix failure to exit out from last all-multicast mode - iavf: prevent accidental free of filter structure - iavf: validate pointers - iavf: Fix for the false positive ASQ/ARQ errors while issuing VF reset - iavf: Fix for setting queues to 0 - [x86] platform/x86: hp_accel: Fix an error handling path in 'lis3lv02d_probe()' - net/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove() - net/mlx5: Lag, update tracker when state change event received - net/mlx5: E-Switch, Change mode lock from mutex to rw semaphore - net/mlx5: E-Switch, return error if encap isn't supported - scsi: core: sysfs: Fix hang when device state is set via sysfs - net: sched: act_mirred: drop dst for the direction from egress to ingress - [arm64] net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove - net: virtio_net_hdr_to_skb: count transport header in UFO - i40e: Fix correct max_pkt_size on VF RX queue - i40e: Fix NULL ptr dereference on VSI filter sync - i40e: Fix changing previously set num_queue_pairs for PFs - i40e: Fix ping is lost after configuring ADq on VF - i40e: Fix warning message and call stack during rmmod i40e driver - i40e: Fix creation of first queue by omitting it if is not power of two - i40e: Fix display error code in dmesg - e100: fix device suspend/resume (Closes: #995927) - [powerpc*] KVM: PPC: Book3S HV: Use GLOBAL_TOC for kvmppc_h_set_dabr/xdabr() - [x86] perf/x86/intel/uncore: Fix filter_tid mask for CHA events on Skylake Server - [x86] perf/x86/intel/uncore: Fix IIO event constraints for Skylake Server - [s390x] kexec: fix return code handling - [arm64,armhf] net: stmmac: dwmac-rk: Fix ethernet on rk3399 based devices - tun: fix bonding active backup with arp monitoring - tipc: check for null after calling kmemdup - ipc: WARN if trying to remove ipc object which is absent - [x86] hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails - scsi: qla2xxx: Fix mailbox direction flags in qla2xxx_get_adapter_id() - [s390x] kexec: fix memory leak of ipl report buffer - block: Check ADMIN before NICE for IOPRIO_CLASS_RT - [x86] KVM: nVMX: don't use vcpu->arch.efer when checking host state on nested state load - udf: Fix crash after seekdir - [armhf] net: stmmac: socfpga: add runtime suspend/resume callback for stratix10 platform - btrfs: fix memory ordering between normal and ordered work functions - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - drm/udl: fix control-message timeout - drm/nouveau: Add a dedicated mutex for the clients list (CVE-2020-27820) - drm/nouveau: use drm_dev_unplug() during device removal (CVE-2020-27820) - drm/nouveau: clean up all clients on device removal (CVE-2020-27820) - [x86] drm/i915/dp: Ensure sink rate values are always valid - drm/amdgpu: fix set scaling mode Full/Full aspect/Center not works on vga and dvi connectors - scsi: ufs: core: Fix task management completion - scsi: ufs: core: Fix task management completion timeout race - hugetlbfs: flush TLBs correctly after huge_pmd_unshare (CVE-2021-4002) - RDMA/netlink: Add __maybe_unused to static inline in C file - selinux: fix NULL-pointer dereference when hashtab allocation fails - ASoC: DAPM: Cover regression by kctl change notification fix - ice: Delete always true check of PF pointer - fs: export an inode_update_time helper - btrfs: update device path inode time instead of bd_inode - [x86] ALSA: hda: hdac_ext_stream: fix potential locking issues - ALSA: hda: hdac_stream: fix potential locking issue in snd_hdac_stream_assign() - Revert "perf: Rework perf_event_exit_event()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.83 - bpf: Fix toctou on read-only map's constant scalar tracking (CVE-2021-4001) - ACPI: Get acpi_device's parent from the parent field - USB: serial: option: add Telit LE910S1 0x9200 composition - USB: serial: option: add Fibocom FM101-GL variants - [arm*] usb: dwc2: gadget: Fix ISOC flow for elapsed frames - [arm*] usb: dwc2: hcd_queue: Fix use of floating point literal - [arm64,armhf] usb: dwc3: gadget: Ignore NoStream after End Transfer - [arm64,armhf] usb: dwc3: gadget: Check for L1/L2/U3 for Start Transfer - [arm64,armhf] usb: dwc3: gadget: Fix null pointer exception - net: nexthop: fix null pointer dereference when IPv6 is not enabled - [arm64,armhf] usb: chipidea: ci_hdrc_imx: fix potential error pointer dereference in probe - usb: typec: fusb302: Fix masking of comparator and bc_lvl interrupts - usb: hub: Fix usb enumeration issue due to address0 race - usb: hub: Fix locking issues with address0_mutex - [arm*] binder: fix test regression due to sender_euid change - ALSA: ctxfi: Fix out-of-range access - ALSA: hda/realtek: Add quirk for ASRock NUC Box 1100 - ALSA: hda/realtek: Fix LED on HP ProBook 435 G7 - media: cec: copy sequence field for the reply - HID: wacom: Use "Confidence" flag to prevent reporting invalid contacts - [x86] staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect() - fuse: release pipe buf after last use - xen: don't continue xenstore initialization in case of errors - xen: detect uninitialized xenbus in xenbus_init - [powerpc*] KVM: PPC: Book3S HV: Prevent POWER7/8 TLB flush flushing SLB - tracing/uprobe: Fix uprobe_perf_open probes iteration - tracing: Fix pid filtering when triggers are attached - [arm64,armhf] mmc: sdhci-esdhc-imx: disable CMDQ support - mmc: sdhci: Fix ADMA for PAGE_SIZE >= 64KiB - [armhf] mdio: aspeed: Fix "Link is Down" issue - [arm64] PCI: aardvark: Deduplicate code in advk_pcie_rd_conf() - [arm64] PCI: aardvark: Update comment about disabling link training - [arm64] PCI: aardvark: Implement re-issuing config requests on CRS response - [arm64] PCI: aardvark: Simplify initialization of rootcap on virtual bridge - [arm64] PCI: aardvark: Fix link training - proc/vmcore: fix clearing user buffer by properly using clear_user() - netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY - netfilter: ctnetlink: do not erase error code with EINVAL - netfilter: ipvs: Fix reuse connection if RS weight is 0 - netfilter: flowtable: fix IPv6 tunnel addr match - [x86] ASoC: topology: Add missing rwsem around snd_ctl_remove() calls - net: ieee802154: handle iftypes as u32 - NFSv42: Don't fail clone() unless the OP_CLONE operation failed - [armhf] socfpga: Fix crash with CONFIG_FORTIRY_SOURCE - drm/nouveau/acr: fix a couple NULL vs IS_ERR() checks - scsi: mpt3sas: Fix kernel panic during drive powercycle test - [arm*] drm/vc4: fix error code in vc4_create_object() - iavf: Prevent changing static ITR values if adaptive moderation is on - ALSA: intel-dsp-config: add quirk for JSL devices based on ES8336 codec - [arm64,armhf] firmware: smccc: Fix check for ARCH_SOC_ID not implemented - ipv6: fix typos in __ip6_finish_output() - nfp: checking parameter process for rx-usecs/tx-usecs is invalid - net: stmmac: fix system hang caused by eee_ctrl_timer during suspend/resume - net: stmmac: retain PTP clock time during SIOCSHWTSTAMP ioctls - net: ipv6: add fib6_nh_release_dsts stub - net: nexthop: release IPv6 per-cpu dsts when replacing a nexthop group - ice: fix vsi->txq_map sizing - ice: avoid bpf_prog refcount underflow - scsi: core: sysfs: Fix setting device state to SDEV_RUNNING - scsi: scsi_debug: Zero clear zones at reset write pointer - erofs: fix deadlock when shrink erofs slab - net/smc: Ensure the active closing peer first closes clcsock - [arm64,armhf] net: marvell: mvpp2: increase MTU limit when XDP enabled - nvmet-tcp: fix incomplete data digest send - [armhf] net/ncsi : Add payload to be 32-bit aligned to fix dropped packets - PM: hibernate: use correct mode for swsusp_close() - drm/amd/display: Set plane update flags for all planes in reset - tcp_cubic: fix spurious Hystart ACK train detections for not-cwnd-limited flows - lan743x: fix deadlock in lan743x_phy_link_status_change() - net: phylink: Force link down and retrigger resolve on interface change - net: phylink: Force retrigger in case of latched link-fail indicator - net/smc: Fix NULL pointer dereferencing in smc_vlan_by_tcpsk() - net/smc: Fix loop in smc_listen - nvmet: use IOCB_NOWAIT only if the filesystem supports it - igb: fix netpoll exit with traffic - [mips*] loongson64: fix FTLB configuration - [mips*] use 3-level pgtable for 64KB page size on MIPS_VA_BITS_48 - net/sched: sch_ets: don't peek at classes beyond 'nbands' - net: vlan: fix underflow for the real_dev refcnt - net/smc: Don't call clcsock shutdown twice when smc shutdown - [arm64] net: hns3: fix VF RSS failed problem after PF enable multi-TCs - [arm64] net: mscc: ocelot: don't downgrade timestamping RX filters in SIOCSHWTSTAMP - [arm64] net: mscc: ocelot: correctly report the timestamping RX filters in ethtool - tcp: correctly handle increased zerocopy args struct size - sched/scs: Reset task stack state in bringup_cpu() - f2fs: set SBI_NEED_FSCK flag when inconsistent node block found - ceph: properly handle statfs on multifs setups - smb3: do not error on fsync when readonly - [amd64] iommu/amd: Clarify AMD IOMMUv2 initialization messages - vhost/vsock: fix incorrect used length reported to the guest - tracing: Check pid filtering when creating events - xen: sync include/xen/interface/io/ring.h with Xen's newest version - xen/blkfront: read response from backend only once - xen/blkfront: don't take local copy of a request from the ring page - xen/blkfront: don't trust the backend response data blindly - xen/netfront: read response from backend only once - xen/netfront: don't read data from request on the ring page - xen/netfront: disentangle tx_skb_freelist - xen/netfront: don't trust the backend response data blindly - tty: hvc: replace BUG_ON() with negative return value - [s390x] mm: validate VMA in PGSTE manipulation functions - shm: extend forced shm destroy to support objects from several IPC nses - net: stmmac: platform: fix build warning when with !CONFIG_PM_SLEEP - drm/amdgpu/gfx9: switch to golden tsc registers for renoir+ https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.84 - NFSv42: Fix pagecache invalidation after COPY/CLONE - can: j1939: j1939_tp_cmd_recv(): check the dst address of TP.CM_BAM - ovl: simplify file splice - ovl: fix deadlock in splice write - gfs2: release iopen glock early in evict - gfs2: Fix length of holes reported at end-of-file - [powerpc*] pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" - mac80211: do not access the IV when it was stripped - net/smc: Transfer remaining wait queue entries during fallback - [amd64,arm64] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) - net: return correct error code - [x86] platform/x86: thinkpad_acpi: Add support for dual fan control - [x86] platform/x86: thinkpad_acpi: Fix WWAN device disabled issue after S3 deep - [s390x] setup: avoid using memblock_enforce_memory_limit - btrfs: check-integrity: fix a warning on write caching disabled disk - thermal: core: Reset previous low and high trip during thermal zone init - scsi: iscsi: Unblock session then wake up error handler - drm/amd/amdgpu: fix potential memleak - ata: ahci: Add Green Sardine vendor ID as board_ahci_mobile - [arm64] ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() - ipv6: check return value of ipv6_skip_exthdr - net/smc: Avoid warning of possible recursive locking - ACPI: Add stubs for wakeup handler functions - vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit - kprobes: Limit max data_size of the kretprobe instances - rt2x00: do not mark device gone on EPROTO errors during start - ipmi: Move remove_work to dedicated workqueue - cpufreq: Fix get_cpu_device() failure in add_cpu_dev_symlink() - [s390x] pci: move pseudo-MMIO to prevent MIO overlap - fget: check that the fd still exists after getting a ref to it - ipv6: fix memory leak in fib6_rule_suppress - drm/amd/display: Allow DSC on supported MST branch devices - KVM: Disallow user memslot with size that exceeds "unsigned long" - [x86] KVM: nVMX: Flush current VPID (L1 vs. L2) for KVM_REQ_TLB_FLUSH_GUEST - [x86] KVM: x86: Use a stable condition around all VT-d PI paths - [arm64] KVM: arm64: Avoid setting the upper 32 bits of TCR_EL2 and CPTR_EL2 to 1 - [x86] KVM: X86: Use vcpu->arch.walk_mmu for kvm_mmu_invlpg() - wireguard: allowedips: add missing __rcu annotation to satisfy sparse - wireguard: device: reset peer src endpoint when netns exits - wireguard: receive: use ring buffer for incoming handshakes - wireguard: receive: drop handshakes if queue lock is contended - wireguard: ratelimiter: use kvcalloc() instead of kvzalloc() - [armhf] i2c: stm32f7: flush TX FIFO upon transfer errors - [armhf] i2c: stm32f7: recover the bus on access timeout - [armhf] i2c: stm32f7: stop dma transfer in case of NACK - tcp: fix page frag corruption on page fault - net: qlogic: qlcnic: Fix a NULL pointer dereference in qlcnic_83xx_add_rings() - net: mpls: Fix notifications when deleting a device - siphash: use _unaligned version by default - [arm64] ftrace: add missing BTIs - net/mlx4_en: Fix an use-after-free bug in mlx4_en_try_alloc_resources() - rxrpc: Fix rxrpc_peer leak in rxrpc_look_up_bundle() - rxrpc: Fix rxrpc_local leak in rxrpc_lookup_peer() - ALSA: intel-dsp-config: add quirk for CML devices based on ES8336 codec - net: usb: lan78xx: lan78xx_phy_init(): use PHY_POLL instead of "0" if no IRQ is available - [arm64,armhf] net: marvell: mvpp2: Fix the computation of shared CPUs - [arm64] dpaa2-eth: destroy workqueue at the end of remove function - net: annotate data-races on txq->xmit_lock_owner - ipv4: convert fib_num_tclassid_users to atomic_t - net/smc: fix wrong list_del in smc_lgr_cleanup_early - net/rds: correct socket tunable error in rds_tcp_tune() - net/smc: Keep smc_close_final rc during active close - [arm64] drm/msm/a6xx: Allocate enough space for GMU registers - [arm64] drm/msm: Do hw_init() before capturing GPU state - [amd64,arm64] atlantic: Increase delay for fw transactions - [amd64,arm64] atlatnic: enable Nbase-t speeds with base-t - [amd64,arm64] atlantic: Fix to display FW bundle version instead of FW mac version. - [amd64,arm64] atlantic: Add missing DIDs and fix 115c. - [amd64,arm64] Remove Half duplex mode speed capabilities. - [amd64,arm64] atlantic: Fix statistics logic for production hardware - [amd64,arm64] atlantic: Remove warn trace message. - [x86] KVM: x86/pmu: Fix reserved bits for AMD PerfEvtSeln register - [x86] KVM: VMX: Set failure code in prepare_vmcs02() - [x86] entry: Use the correct fence macro after swapgs in kernel CR3 - [x86] xen: Add xenpv_restore_regs_and_return_to_usermode() - sched/uclamp: Fix rq->uclamp_max not set on first enqueue - [x86] pv: Switch SWAPGS to ALTERNATIVE - [x86] entry: Add a fence for kernel entry SWAPGS in paranoid_entry() - vgacon: Propagate console boot parameters before calling `vc_resize' - xhci: Fix commad ring abort, write all 64 bits to CRCR register. - USB: NO_LPM quirk Lenovo Powered USB-C Travel Hub - usb: typec: tcpm: Wait in SNK_DEBOUNCED until disconnect - [x86] tsc: Add a timer to make sure TSC_adjust is always checked - [x86] tsc: Disable clocksource watchdog for TSC on qualified platorms - [x86] 64/mm: Map all kernel memory into trampoline_pgd - [arm64] tty: serial: msm_serial: Deactivate RX DMA for polling support - [arm*] serial: pl011: Add ACPI SBSA UART match id - [arm64,armhf] serial: tegra: Change lower tolerance baud rate limit for tegra20 and tegra30 - serial: core: fix transmit-buffer reset and memleak - serial: 8250_pci: Fix ACCES entries in pci_serial_quirks array - serial: 8250_pci: rewrite pericom_do_set_divisor() - serial: 8250: Fix RTS modem control while in rs485 mode - iwlwifi: mvm: retry init flow if failed - ipmi: msghandler: Make symbol 'remove_work_wq' static . [ Salvatore Bonaccorso ] * integrity: Drop "MODSIGN: load blacklist from MOKx" as redundant after 5.10.47. * Bump ABI to 10 * Refresh "tools/perf: pmu-events: Fix reproducibility" * [rt] Update to 5.10.73-rt54 * [rt] Refresh "tracing: Merge irqflags + preempt counter." * Refresh "Export symbols needed by Android drivers" * [rt] Refresh "printk: introduce kernel sync mode" * [rt] Refresh "printk: move console printing to kthreads" * [rt] Drop "rcutorture: Avoid problematic critical section nesting on RT" * [rt] Add new signing key for Luis Claudio R. Goncalves * [rt] Update to 5.10.83-rt58 . [ Ben Hutchings ] * tools/perf: Fix warning introduced by "tools/perf: pmu-events: Fix reproducibility" linux-signed-i386 (5.10.84+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.84-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.71 - tty: Fix out-of-bound vmalloc access in imageblit - cpufreq: schedutil: Use kobject release() method to free sugov_tunables - scsi: qla2xxx: Changes to support kdump kernel for NVMe BFS - cpufreq: schedutil: Destroy mutex before kobject_put() frees the memory - ALSA: hda/realtek: Quirks to enable speaker output for Lenovo Legion 7i 15IMHG05, Yoga 7i 14ITL5/15ITL5, and 13s Gen2 laptops. - [amd64,arm64] ACPI: NFIT: Use fallback node id when numa info in NFIT table is incorrect - fs-verity: fix signed integer overflow with i_size near S64_MAX - hwmon: (tmp421) handle I2C errors - hwmon: (w83793) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83792d) Fix NULL pointer dereference by removing unnecessary structure field - hwmon: (w83791d) Fix NULL pointer dereference by removing unnecessary structure field - [arm64,armhf] gpio: pca953x: do not ignore i2c errors - scsi: ufs: Fix illegal offset in UPIU event trace - mac80211: fix use-after-free in CCMP/GCMP RX - [x86] kvmclock: Move this_cpu_pvti into kvmclock.h - [x86] KVM: x86: Fix stack-out-of-bounds memory access from ioapic_write_indirect() - [x86] KVM: x86: nSVM: don't copy virt_ext from vmcb12 - [x86] KVM: nVMX: Filter out all unsupported controls when eVMCS was activated - KVM: rseq: Update rseq when processing NOTIFY_RESUME on xfer to KVM guest - RDMA/cma: Do not change route.addr.src_addr.ss_family - drm/amd/display: Pass PCI deviceid into DC - drm/amdgpu: correct initial cp_hqd_quantum for gfx9 - ipvs: check that ip_vs_conn_tab_bits is between 8 and 20 - bpf: Handle return value of BPF_PROG_TYPE_STRUCT_OPS prog - IB/cma: Do not send IGMP leaves for sendonly Multicast groups - RDMA/cma: Fix listener leak in rdma_cma_listen_on_all() failure - mac80211: Fix ieee80211_amsdu_aggregate frag_tail bug - mac80211: limit injected vht mcs/nss in ieee80211_parse_tx_radiotap - mac80211: mesh: fix potentially unaligned access - mac80211-hwsim: fix late beacon hrtimer handling - sctp: break out if skb_header_pointer returns NULL in sctp_rcv_ootb - hwmon: (tmp421) report /PVLD condition as fault - hwmon: (tmp421) fix rounding for negative values - [arm64] net: enetc: fix the incorrect clearing of IF_MODE bits - net: ipv4: Fix rtnexthop len when RTA_FLOW is present - smsc95xx: fix stalled rx after link change - [x86] drm/i915/request: fix early tracepoints - [arm64,armhf] dsa: mv88e6xxx: 6161: Use chip wide MAX MTU - [arm64,armhf] dsa: mv88e6xxx: Fix MTU definition - [arm64,armhf] dsa: mv88e6xxx: Include tagger overhead when setting MTU for DSA and CPU ports - e100: fix length calculation in e100_get_regs_len - e100: fix buffer overrun in e100_get_regs - [arm64] RDMA/hns: Fix inaccurate prints - bpf: Exempt CAP_BPF from checks against bpf_jit_limit - Revert "block, bfq: honor already-setup queue merges" - scsi: csiostor: Add module softdep on cxgb4 - ixgbe: Fix NULL pointer dereference in ixgbe_xdp_setup - [arm64] net: hns3: do not allow call hns3_nic_net_open repeatedly - [arm64] net: hns3: keep MAC pause mode when multiple TCs are enabled - [arm64] net: hns3: fix mixed flag HCLGE_FLAG_MQPRIO_ENABLE and HCLGE_FLAG_DCB_ENABLE - [arm64] net: hns3: fix show wrong state when add existing uc mac address - [arm64] net: hns3: fix prototype warning - [arm64] net: hns3: reconstruct function hns3_self_test - [arm64] net: hns3: fix always enable rx vlan filter problem after selftest - [arm64,armhf] net: phy: bcm7xxx: Fixed indirect MMD operations - net: sched: flower: protect fl_walk() with rcu - af_unix: fix races in sk_peer_pid and sk_peer_cred accesses - [x86] perf/x86/intel: Update event constraints for ICX - nvme: add command id quirk for apple controllers - elf: don't use MAP_FIXED_NOREPLACE for elf interpreter mappings - debugfs: debugfs_create_file_size(): use IS_ERR to check for error - ext4: fix loff_t overflow in ext4_max_bitmap_size() - ext4: limit the number of blocks in one ADD_RANGE TLV (Closes: #995425) - ext4: fix reserved space counter leakage - ext4: add error checking to ext4_ext_replay_set_iblocks() - ext4: fix potential infinite loop in ext4_dx_readdir() - HID: u2fzero: ignore incomplete packets without data - net: udp: annotate data race around udp_sk(sk)->corkflag - ASoC: dapm: use component prefix when checking widget names - usb: hso: remove the bailout parameter - [x86] crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd() (CVE-2021-3744, CVE-2021-3764) - HID: betop: fix slab-out-of-bounds Write in betop_probe - netfilter: ipset: Fix oversized kvmalloc() calls - mm: don't allow oversized kvmalloc() calls - HID: usbhid: free raw_report buffers in usbhid_stop - [x86] KVM: x86: Handle SRCU initialization failure during page track init - netfilter: conntrack: serialize hash resizes and cleanups - netfilter: nf_tables: Fix oversized kvmalloc() calls https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.72 - [arm64,armhf] spi: rockchip: handle zero length transfers without timing out - nfsd: back channel stuck in SEQ4_STATUS_CB_PATH_DOWN - btrfs: replace BUG_ON() in btrfs_csum_one_bio() with proper error handling - btrfs: fix mount failure due to past and transient device flush error - net: mdio: introduce a shutdown method to mdio device drivers - xen-netback: correct success/error reporting for the SKB-with-fraglist case - scsi: sd: Free scsi_disk device via put_device() - [arm*] usb: dwc2: check return value after calling platform_get_resource() - nvme-fc: update hardware queues before using them - nvme-fc: avoid race between time out and tear down - [arm64] thermal/drivers/tsens: Fix wrong check for tzd in irq handlers - scsi: ses: Retry failed Send/Receive Diagnostic commands - [arm64,armhf] irqchip/gic: Work around broken Renesas integration - smb3: correct smb3 ACL security descriptor - KVM: do not shrink halt_poll_ns below grow_start - [x86] kvm: Add AMD PMU MSRs to msrs_to_save_all[] - [x86] KVM: nSVM: restore int_vector in svm_clear_vintr - [x86] perf/x86: Reset destroy callback on event init failure - libata: Add ATA_HORKAGE_NO_NCQ_ON_ATI for Samsung 860 and 870 SSD. https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.73 - [arm64,armhf] usb: chipidea: ci_hdrc_imx: Also search for 'phys' phandle - USB: cdc-acm: fix racy tty buffer accesses - USB: cdc-acm: fix break reporting - usb: typec: tcpm: handle SRC_STARTUP state if cc changes - drm/nouveau/kms/tu102-: delay enabling cursor until after assign_windows - xen/privcmd: fix error handling in mmap-resource processing - [arm64] mmc: meson-gx: do not use memcpy_to/fromio for dram-access-quirk - ovl: fix missing negative dentry check in ovl_rename() (CVE-2021-20321) - ovl: fix IOCB_DIRECT if underlying fs doesn't support direct IO - nfsd: fix error handling of register_pernet_subsys() in init_nfsd() - nfsd4: Handle the NFSv4 READDIR 'dircount' hint being zero - SUNRPC: fix sign error causing rpcsec_gss drops - xen/balloon: fix cancelled balloon action - [armhf] dts: omap3430-sdp: Fix NAND device node - [armhf] bus: ti-sysc: Add break in switch statement in sysc_init_soc() - [arm64] soc: qcom: mdt_loader: Drop PT_LOAD check on hash segment - [armhf] dts: imx: Add missing pinctrl-names for panel on M53Menlo - [armhf] dts: imx: Fix USB host power regulator polarity on M53Menlo - [amd64] PCI: hv: Fix sleep while in non-sleep context when removing child devices from the bus - iwlwifi: pcie: add configuration of a Wi-Fi adapter on Dell XPS 15 - [armel,armhf] bpf, arm: Fix register clobbering in div/mod implementation - [armhf] soc: ti: omap-prm: Fix external abort for am335x pruss - bpf: Fix integer overflow in prealloc_elems_and_freelist() (CVE-2021-41864) - net/mlx5e: IPSEC RX, enable checksum complete - net/mlx5: E-Switch, Fix double allocation of acl flow counter - phy: mdio: fix memory leak - net_sched: fix NULL deref in fifo_set_limit() - [i386] ptp_pch: Load module automatically if ID matches - [armhf] imx6: disable the GIC CPU interface before calling stby-poweroff sequence - net: bridge: use nla_total_size_64bit() in br_get_linkxstats_size() - net: bridge: fix under estimation in br_get_linkxstats_size() - net/sched: sch_taprio: properly cancel timer from taprio_destroy() - net: sfp: Fix typo in state machine debug string - netlink: annotate data races around nlk->bound - perf jevents: Tidy error handling - [armhf] bus: ti-sysc: Use CLKDM_NOAUTO for dra7 dcan1 for errata i893 - [arm64,armhf] drm/sun4i: dw-hdmi: Fix HDMI PHY clock setup - drm/nouveau: avoid a use-after-free when BO init fails - drm/nouveau/kms/nv50-: fix file release memory leak - drm/nouveau/debugfs: fix file release memory leak - [amd64] gve: Correct available tx qpl check - [amd64] gve: Avoid freeing NULL pointer - rtnetlink: fix if_nlmsg_stats_size() under estimation - [amd64] gve: fix gve_get_stats() - [amd64] gve: report 64bit tx_bytes counter from gve_handle_report_stats() - i40e: fix endless loop under rtnl - i40e: Fix freeing of uninitialized misc IRQ vector - net: prefer socket bound to interface when not in VRF - [powerpc*] iommu: Report the correct most efficient DMA mask for PCI devices - i2c: acpi: fix resource leak in reconfiguration device addition - [s390x] bpf, s390: Fix potential memory leak about jit_data - [powerpc*] bpf: Fix BPF_SUB when imm == 0x80000000 - [powerpc*] pseries/eeh: Fix the kdump kernel crash during eeh_pseries_init - [i386] x86/platform/olpc: Correct ifdef symbol to intended CONFIG_OLPC_XO15_SCI - [x86] entry: Correct reference to intended CONFIG_64_BIT - [x86] hpet: Use another crystalball to evaluate HPET usability https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.74 - ext4: check and update i_disksize properly - ext4: correct the error path of ext4_write_inline_data_end() - [x86] ASoC: Intel: sof_sdw: tag SoundWire BEs as non-atomic - HID: apple: Fix logical maximum and usage maximum of Magic Keyboard JIS - netfilter: ip6_tables: zero-initialize fragment offset - HID: wacom: Add new Intuos BT (CTL-4100WL/CTL-6100WL) device IDs - [x86] ASoC: SOF: loader: release_firmware() on load failure to avoid batching - netfilter: nf_nat_masquerade: make async masq_inet6_event handling generic - netfilter: nf_nat_masquerade: defer conntrack walk to work queue - mac80211: Drop frames from invalid MAC address in ad-hoc mode - net: prevent user from passing illegal stab size - mac80211: check return value of rhashtable_init - [x86] vboxfs: fix broken legacy mount signature checking - drm/amdgpu: fix gart.bo pin_count leak - scsi: ses: Fix unsigned comparison with less than zero - scsi: virtio_scsi: Fix spelling mistake "Unsupport" -> "Unsupported" - perf/core: fix userpage->time_enabled of inactive events - sched: Always inline is_percpu_thread() - [armhf] hwmon: (pmbus/ibm-cffps) max_power_out swap changes https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.75 - ALSA: usb-audio: Add quirk for VF0770 - ALSA: pcm: Workaround for a wrong offset in SYNC_PTR compat ioctl - ALSA: seq: Fix a potential UAF by wrong private_free call order - ALSA: hda/realtek: Enable 4-speaker output for Dell Precision 5560 laptop - ALSA: hda - Enable headphone mic on Dell Latitude laptops with ALC3254 - ALSA: hda/realtek: Complete partial device name to avoid ambiguity - ALSA: hda/realtek: Add quirk for Clevo X170KM-G - ALSA: hda/realtek - ALC236 headset MIC recording issue - ALSA: hda/realtek: Add quirk for TongFang PHxTxX1 - ALSA: hda/realtek: Fix for quirk to enable speaker output on the Lenovo 13s Gen2 - ALSA: hda/realtek: Fix the mic type detection issue for ASUS G551JW - [s390x] fix strrchr() implementation - [arm64] hugetlb: fix CMA gigantic page order for non-4K PAGE_SIZE - drm/msm: Avoid potential overflow in timeout_to_jiffies() - btrfs: unlock newly allocated extent buffer after error - btrfs: deal with errors when replaying dir entry during log replay - btrfs: deal with errors when adding inode reference during log replay - btrfs: check for error when looking up inode during dir entry replay - btrfs: update refs for any root except tree log roots - btrfs: fix abort logic in btrfs_replace_file_extents - [x86] resctrl: Free the ctrlval arrays when domain_setup_mon_state() fails - [x86] mei: me: add Ice Lake-N device id. - xhci: guard accesses to ep_state in xhci_endpoint_reset() - xhci: Fix command ring pointer corruption while aborting a command - xhci: Enable trust tx length quirk for Fresco FL11 USB controller - cb710: avoid NULL pointer subtraction - [arm64,x86] efi/cper: use stack buffer for error record decoding - efi: Change down_interruptible() in virt_efi_reset_system() to down_trylock() - [armhf] usb: musb: dsps: Fix the probe error path (Closes: 1000900) - Input: xpad - add support for another USB ID of Nacon GC-100 - USB: serial: qcserial: add EM9191 QDL support - USB: serial: option: add Quectel EC200S-CN module support - USB: serial: option: add Telit LE910Cx composition 0x1204 - USB: serial: option: add prod. id for Quectel EG91 - virtio: write back F_VERSION_1 before validate - nvmem: Fix shift-out-of-bound (UBSAN) with byte size cells - [powerpc*] xive: Discard disabled interrupts in get_irqchip_state() - driver core: Reject pointless SYNC_STATE_ONLY device links - iio: adc: ad7192: Add IRQ flag - iio: adc: ad7780: Fix IRQ flag - iio: adc: ad7793: Fix IRQ flag - iio: adc128s052: Fix the error handling path of 'adc128_probe()' - iio: adc: max1027: Fix wrong shift with 12-bit devices - iio: light: opt3001: Fixed timeout error when 0 lux - iio: adc: max1027: Fix the number of max1X31 channels - iio: dac: ti-dac5571: fix an error code in probe() - [arm64] tee: optee: Fix missing devices unregister during optee_remove - [armel,armhf] dts: bcm2711-rpi-4-b: Fix usb's unit address - [armel,armhf] dts: bcm2711-rpi-4-b: fix sd_io_1v8_reg regulator states - [armel,armhf] dts: bcm2711-rpi-4-b: Fix pcie0's unit address formatting - nvme-pci: Fix abort command id - sctp: account stream padding length for reconf chunk - [arm64,armhf] gpio: pca953x: Improve bias setting - net/mlx5e: Fix memory leak in mlx5_core_destroy_cq() error path - net/mlx5e: Mutually exclude RX-FCS and RX-port-timestamp - net: stmmac: fix get_hw_feature() on old hardware - ethernet: s2io: fix setting mac address during resume - nfc: fix error handling of nfc_proto_register() - NFC: digital: fix possible memory leak in digital_tg_listen_mdaa() - NFC: digital: fix possible memory leak in digital_in_send_sdd_req() - [i386] pata_legacy: fix a couple uninitialized variable bugs - ata: ahci_platform: fix null-ptr-deref in ahci_platform_enable_regulators() - drm/edid: In connector_bad_edid() cap num_of_ext by num_blocks read - [arm64] drm/msm: Fix null pointer dereference on pointer edp - [arm64] drm/msm/mdp5: fix cursor-related warnings - [arm64] drm/msm/a6xx: Track current ctx by seqno - [arm64] drm/msm/dsi: Fix an error code in msm_dsi_modeset_init() - [arm64] drm/msm/dsi: fix off by one in dsi_bus_clk_enable error handling - [arm64] acpi/arm64: fix next_platform_timer() section mismatch error - [x86] platform/x86: intel_scu_ipc: Fix busy loop expiry time - mqprio: Correct stats in mqprio_dump_class_stats(). - qed: Fix missing error code in qed_slowpath_start() - nfp: flow_offload: move flow_indr_dev_register from app init to app start - [arm64] net: mscc: ocelot: warn when a PTP IRQ is raised for an unknown skb - [arm64,armhf] net: dsa: mv88e6xxx: don't use PHY_DETECT on internal PHY's https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.76 - xhci: add quirk for host controllers that don't update endpoint DCS - io_uring: fix splice_fd_in checks backport typo - [armhf] dts: vexpress-v2p-ca9: Fix the SMB unit-address - block: decode QUEUE_FLAG_HCTX_ACTIVE in debugfs output - [x86] xen/x86: prevent PVH type from getting clobbered - NFSD: Keep existing listeners on portlist error - netfilter: xt_IDLETIMER: fix panic that occurs when timer_type has garbage value - ice: fix getting UDP tunnel entry - netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6 - netfilter: ipvs: make global sysctl readonly in non-init netns - tcp: md5: Fix overlap between vrf and non-vrf keys - ipv6: When forwarding count rx stats on the orig netdev - [powerpc*] smp: do not decrement idle task preempt count in CPU offline - [arm64] net: hns3: reset DWRR of unused tc to zero - [arm64] net: hns3: add limit ets dwrr bandwidth cannot be 0 - [arm64] net: hns3: schedule the polling again when allocation fails - [arm64] net: hns3: fix vf reset workqueue cannot exit - [arm64] net: hns3: disable sriov before unload hclge layer - net: stmmac: Fix E2E delay mechanism - e1000e: Fix packet loss on Tiger Lake and later - ice: Add missing E810 device ids - [arm64] net: enetc: fix ethtool counter name for PM0_TERR - can: peak_usb: pcan_usb_fd_decode_status(): fix back to ERROR_ACTIVE state notification - can: peak_pci: peak_pci_remove(): fix UAF - can: isotp: isotp_sendmsg(): fix return error on FC timeout on TX path - can: isotp: isotp_sendmsg(): add result check for wait_event_interruptible() - can: j1939: j1939_tp_rxtimer(): fix errant alert in j1939_tp_rxtimer - can: j1939: j1939_netdev_start(): fix UAF for rx_kref of j1939_priv - can: j1939: j1939_xtp_rx_dat_one(): cancel session if receive TP.DT with error length - can: j1939: j1939_xtp_rx_rts_session_new(): abort TP less than 9 bytes - ceph: skip existing superblocks that are blocklisted or shut down when mounting - ceph: fix handling of "meta" errors - ocfs2: fix data corruption after conversion from inline format - ocfs2: mount fails with buffer overflow in strlen - userfaultfd: fix a race between writeprotect and exit_mmap() - vfs: check fd has read access in kernel_read_file_from_fd() - ALSA: usb-audio: Provide quirk for Sennheiser GSP670 Headset - ALSA: hda/realtek: Add quirk for Clevo PC50HS - ASoC: DAPM: Fix missing kctl change notifications - audit: fix possible null-pointer dereference in audit_filter_rules - [powerpc*] powerpc64/idle: Fix SP offsets when saving GPRs - [powerpc*] KVM: PPC: Book3S HV: Fix stack handling in idle_kvm_start_guest() - [powerpc*] KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest (CVE-2021-43056) - [powerpc*] idle: Don't corrupt back chain when going idle - mm, slub: fix mismatch between reconstructed freelist depth and cnt - mm, slub: fix potential memoryleak in kmem_cache_open() - mm, slub: fix incorrect memcg slab count for bulk free - [x86] KVM: nVMX: promptly process interrupts delivered while in guest mode - nfc: nci: fix the UAF of rf_conn_info object (CVE-2021-3760) - isdn: cpai: check ctr->cnr to avoid array index out of bound (CVE-2021-43389) - [arm64] net: hns3: fix the max tx size according to user manual - ALSA: hda: intel: Allow repeatedly probing on codec configuration errors - btrfs: deal with errors when checking if a dir entry exists during log replay - net: stmmac: add support for dwmac 3.40a - isdn: mISDN: Fix sleeping function called from invalid context - [x86] platform/x86: intel_scu_ipc: Update timeout value in comment - ALSA: hda: avoid write to STATESTS if controller is in reset - [x86] perf/x86/msr: Add Sapphire Rapids CPU support - scsi: iscsi: Fix set_param() handling - scsi: qla2xxx: Fix a memory leak in an error path of qla2x00_process_els() - sched/scs: Reset the shadow stack when idle_task_exit - [arm64] net: hns3: fix for miscalculation of rx unused desc - scsi: core: Fix shost->cmd_per_lun calculation in scsi_add_host_with_dma() - can: isotp: isotp_sendmsg(): fix TX buffer concurrent access in isotp_sendmsg() - [s390x] pci: fix zpci_zdev_put() on reserve - net: mdiobus: Fix memory leak in __mdiobus_register - tracing: Have all levels of checks prevent recursion - e1000e: Separate TGP board type from SPT - [armhf] pinctrl: stm32: use valid pin identifier in stm32_pinctrl_resume() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.77 - [armel,armhf] 9139/1: kprobes: fix arch_init_kprobes() prototype - io_uring: don't take uring_lock during iowq cancel - [powerpc*] bpf: Fix BPF_MOD when imm == 1 - [arm64] Avoid premature usercopy failure - ext4: fix possible UAF when remounting r/o a mmp-protected file system - usbnet: sanity check for maxpacket - usbnet: fix error return code in usbnet_probe() - pinctrl: amd: disable and mask interrupts on probe - ata: sata_mv: Fix the error handling of mv_chip_id() - tipc: fix size validations for the MSG_CRYPTO type (CVE-2021-43267) - nfc: port100: fix using -ERRNO as command type mask - Revert "net: mdiobus: Fix memory leak in __mdiobus_register" - mmc: vub300: fix control-message timeouts - mmc: cqhci: clear HALT state after CQE enable - [armhf] mmc: dw_mmc: exynos: fix the finding clock sample value - mmc: sdhci: Map more voltage level to SDHCI_POWER_330 - [arm64,armhf] mmc: sdhci-esdhc-imx: clear the buffer_read_ready to reset standard tuning circuit - ocfs2: fix race between searching chunks and release journal_head from buffer_head - nvme-tcp: fix H2CData PDU send accounting (again) - cfg80211: scan: fix RCU in cfg80211_add_nontrans_list() - cfg80211: fix management registrations locking - net: lan78xx: fix division by zero in send path - mm, thp: bail out early in collapse_file for writeback page - drm/ttm: fix memleak in ttm_transfered_destroy - drm/amdgpu: fix out of bounds write (CVE-2021-42327) - cgroup: Fix memory leak caused by missing cgroup_bpf_offline - tcp_bpf: Fix one concurrency problem in the tcp_bpf_send_verdict function - bpf: Fix potential race in tail call compatibility check - bpf: Fix error usage of map_fd and fdget() in generic_map_update_batch() - [amd64] IB/qib: Protect from buffer overflow in struct qib_user_sdma_pkt fields - [amd64] IB/hfi1: Fix abba locking issue with sc_disable() - nvmet-tcp: fix data digest pointer calculation - nvme-tcp: fix data digest pointer calculation - nvme-tcp: fix possible req->offset corruption - RDMA/mlx5: Set user priority for DCT - [arm64] dts: allwinner: h5: NanoPI Neo 2: Fix ethernet node - regmap: Fix possible double-free in regcache_rbtree_exit() - net: batman-adv: fix error handling - net-sysfs: initialize uid and gid before calling net_ns_get_ownership - cfg80211: correct bridge/4addr mode check - net: Prevent infinite while loop in skb_tx_hash() - RDMA/sa_query: Use strscpy_pad instead of memcpy to copy a string - net: ethernet: microchip: lan743x: Fix driver crash when lan743x_pm_resume fails - net: ethernet: microchip: lan743x: Fix dma allocation failure by using dma_set_mask_and_coherent - phy: phy_ethtool_ksettings_get: Lock the phy for consistency - phy: phy_ethtool_ksettings_set: Move after phy_start_aneg - phy: phy_start_aneg: Add an unlocked version - phy: phy_ethtool_ksettings_set: Lock the PHY while changing settings - sctp: use init_tag from inithdr for ABORT chunk (CVE-2021-3772) - sctp: fix the processing for INIT_ACK chunk (CVE-2021-3772) - sctp: fix the processing for COOKIE_ECHO chunk (CVE-2021-3772) - sctp: add vtag check in sctp_sf_violation (CVE-2021-3772) - sctp: add vtag check in sctp_sf_do_8_5_1_E_sa (CVE-2021-3772) - sctp: add vtag check in sctp_sf_ootb (CVE-2021-3772) - lan743x: fix endianness when accessing descriptors - [s390x] KVM: clear kicked_mask before sleeping again - [s390x] KVM: preserve deliverable_mask in __airqs_kick_single_vcpu https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.78 - scsi: core: Put LLD module refcnt after SCSI device is released - Revert "io_uring: reinforce cancel on flush during exit" - sfc: Fix reading non-legacy supported link modes - vrf: Revert "Reset skb conntrack connection..." - net: ethernet: microchip: lan743x: Fix skb allocation failure - media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt() (CVE-2021-42739) - Revert "xhci: Set HCD flag to defer primary roothub registration" - Revert "usb: core: hcd: Add support for deferring roothub registration" - mm: khugepaged: skip huge page collapse for special files - Revert "drm/ttm: fix memleak in ttm_transfered_destroy" - [arm*] 9120/1: Revert "amba: make use of -1 IRQs warn" - [arm64] Revert "wcn36xx: Disable bmps when encryption is disabled" - ALSA: usb-audio: Add Schiit Hel device to mixer map quirk table - ALSA: usb-audio: Add Audient iD14 to mixer map quirk table https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.79 - [x86] Revert "x86/kvm: fix vcpu-id indexed array sizes" - [arm64,armhf] usb: musb: Balance list entry in musb_gadget_queue - usb-storage: Add compatibility quirk flags for iODD 2531/2541 - [arm*] binder: don't detect sender/target during buffer cleanup - printk/console: Allow to disable console output by using console="" or console=null - staging: rtl8712: fix use-after-free in rtl8712_dl_fw - isofs: Fix out of bound access for corrupted isofs image - [x86] comedi: dt9812: fix DMA buffers on stack - [x86] comedi: ni_usb6501: fix NULL-deref in command paths - [x86] comedi: vmk80xx: fix transfer-buffer overflows - [x86] comedi: vmk80xx: fix bulk-buffer overflow - [x86] comedi: vmk80xx: fix bulk and interrupt message timeouts - staging: r8712u: fix control-message timeout - [x86] staging: rtl8192u: fix control-message timeouts - rsi: fix control-message timeout https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.80 - xhci: Fix USB 3.1 enumeration issues by increasing roothub power-on-good delay - usb: xhci: Enable runtime-pm by default on AMD Yellow Carp platform - [arm*] binder: use euid from cred instead of using task - [arm*] binder: use cred instead of task for selinux checks - [arm*] binder: use cred instead of task for getsecid - Input: iforce - fix control-message timeout - Input: elantench - fix misreporting trackpoint coordinates (Closes: #989285) - libata: fix read log timeout value - ocfs2: fix data corruption on truncate - scsi: core: Remove command size deduction from scsi_setup_scsi_cmnd() - scsi: qla2xxx: Fix kernel crash when accessing port_speed sysfs file - scsi: qla2xxx: Fix use after free in eh_abort path - [arm64,armhf] mmc: dw_mmc: Dont wait for DRTO on Write RSP error - exfat: fix incorrect loading of i_blocks for large files - tpm: Check for integer overflow in tpm2_map_response_body() - media: ite-cir: IR receiver stop working after receive overflow (Closes: #996672) - media: ir-kbd-i2c: improve responsiveness of hauppauge zilog receivers (Closes: #994050) - media: v4l2-ioctl: Fix check_ext_ctrls - ALSA: hda/realtek: Fix mic mute LED for the HP Spectre x360 14 - ALSA: hda/realtek: Add a quirk for HP OMEN 15 mute LED - ALSA: hda/realtek: Add quirk for Clevo PC70HS - ALSA: hda/realtek: Headset fixup for Clevo NH77HJQ - ALSA: hda/realtek: Add a quirk for Acer Spin SP513-54N - ALSA: hda/realtek: Add quirk for ASUS UX550VE - ALSA: hda/realtek: Add quirk for HP EliteBook 840 G7 mute LED - ALSA: ua101: fix division by zero at probe - ALSA: 6fire: fix control and bulk message timeouts - ALSA: line6: fix control and interrupt message timeouts - ALSA: usb-audio: Line6 HX-Stomp XL USB_ID for 48k-fixed quirk - ALSA: usb-audio: Add registration quirk for JBL Quantum 400 - ALSA: hda: Free card instance properly at probe errors - ALSA: synth: missing check for possible NULL after the call to kstrdup - ALSA: timer: Fix use-after-free problem - ALSA: timer: Unconditionally unlink slave instances, too - ext4: fix lazy initialization next schedule time computation in more granular unit - ext4: ensure enough credits in ext4_ext_shift_path_extents - ext4: refresh the ext4_ext_path struct after dropping i_data_sem. - fuse: fix page stealing - [x86] cpu: Fix migration safety with X86_BUG_NULL_SEL - [x86] irq: Ensure PI wakeup handler is unregistered before module unload - ASoC: soc-core: fix null-ptr-deref in snd_soc_del_component_unlocked() - ALSA: hda/realtek: Fixes HP Spectre x360 15-eb1xxx speakers - [arm64] cavium: Return negative value when pci_alloc_irq_vectors() fails - scsi: qla2xxx: Return -ENOMEM if kzalloc() fails - scsi: qla2xxx: Fix unmap of already freed sgl - mISDN: Fix return values of the probe function - [arm64] cavium: Fix return values of the probe function - sfc: Export fibre-specific supported link modes - sfc: Don't use netif_info before net_device setup - [armhf] reset: socfpga: add empty driver allowing consumers to probe - drm: panel-orientation-quirks: Add quirk for Aya Neo 2021 - bpf: Define bpf_jit_alloc_exec_limit for arm64 JIT - bpf: Prevent increasing bpf_jit_limit above max - xen/netfront: stop tx queues during live migration - nvmet-tcp: fix a memory leak when releasing a queue - [armhf] spi: spl022: fix Microwire full duplex mode - net: multicast: calculate csum of looped-back and forwarded packets - [armhf] watchdog: Fix OMAP watchdog early handling - drm: panel-orientation-quirks: Add quirk for GPD Win3 - block: schedule queue restart after BLK_STS_ZONE_RESOURCE - nvmet-tcp: fix header digest verification - r8169: Add device 10ec:8162 to driver r8169 - [x86] vmxnet3: do not stop tx queues after netif_device_detach() - nfp: bpf: relax prog rejection for mtu check through max_pkt_offset - net/smc: Fix smc_link->llc_testlink_time overflow - net/smc: Correct spelling mistake to TCPF_SYN_RECV - rds: stop using dmapool - btrfs: clear MISSING device status bit in btrfs_close_one_device - btrfs: fix lost error handling when replaying directory deletes - btrfs: call btrfs_check_rw_degradable only if there is a missing device - [x86] KVM: VMX: Unregister posted interrupt wakeup handler on hardware unsetup - selinux: fix race condition when computing ocontext SIDs - [armhf] regulator: s5m8767: do not use reset value as DVS voltage if GPIO DVS is disabled - [amd64] EDAC/sb_edac: Fix top-of-high-memory value for Broadwell/Haswell - [x86] mwifiex: fix division by zero in fw download path - ath6kl: fix division by zero in send path - ath6kl: fix control-message timeout - ath10k: fix control-message timeout - ath10k: fix division by zero in send path - PCI: Mark Atheros QCA6174 to avoid bus reset - rtl8187: fix control-message timeouts - [arm64] wcn36xx: Fix HT40 capability for 2Ghz band - [arm64] wcn36xx: Fix tx_status mechanism - [arm64] wcn36xx: Fix (QoS) null data frame bitrate/modulation - PM: sleep: Do not let "syscore" devices runtime-suspend during system transitions - mwifiex: Read a PCI register after writing the TX ring write pointer - mwifiex: Try waking the firmware until we get an interrupt - libata: fix checking of DMA state - [arm64] wcn36xx: handle connection loss indication - rsi: fix occasional initialisation failure with BT coex - rsi: fix key enabled check causing unwanted encryption for vap_id > 0 - rsi: fix rate mask set leading to P2P failure - rsi: Fix module dev_oper_mode parameter description - [x86] perf/x86/intel/uncore: Support extra IMC channel on Ice Lake server - [x86] perf/x86/intel/uncore: Fix Intel ICX IIO event constraints - RDMA/qedr: Fix NULL deref for query_qp on the GSI QP - signal: Remove the bogus sigkill_pending in ptrace_stop - [mips*] signal/mips: Update (_save|_restore)_fp_context to fail with -EFAULT - [arm64] soc: fsl: dpio: replace smp_processor_id with raw_smp_processor_id - [arm64] soc: fsl: dpio: use the combined functions to protect critical zone - [x86] power: supply: max17042_battery: Prevent int underflow in set_soc_threshold - [x86] power: supply: max17042_battery: use VFSOC for capacity when no rsns - [arm64] KVM: arm64: Extract ESR_ELx.EC only - [x86] KVM: nVMX: Query current VMCS when determining if MSR bitmaps are in use - can: j1939: j1939_tp_cmd_recv(): ignore abort message in the BAM transport - can: j1939: j1939_can_recv(): ignore messages with invalid source address - ring-buffer: Protect ring_buffer_reset() from reentrancy - serial: core: Fix initializing and restoring termios speed - ifb: fix building without CONFIG_NET_CLS_ACT - ALSA: mixer: oss: Fix racy access to slots - ALSA: mixer: fix deadlock in snd_mixer_oss_set_volume - xen/balloon: add late_initcall_sync() for initial ballooning done - ovl: fix use after free in struct ovl_aio_req - [arm*] PCI: pci-bridge-emul: Fix emulation of W1C bits - [arm64] PCI: aardvark: Do not clear status bits of masked interrupts - [arm64] PCI: aardvark: Fix checking for link up via LTSSM state - [arm64] PCI: aardvark: Do not unmask unused interrupts - [arm64] PCI: aardvark: Fix reporting Data Link Layer Link Active - [arm64] PCI: aardvark: Fix configuring Reference clock - [arm64] PCI: aardvark: Fix return value of MSI domain .alloc() method - [arm64] PCI: aardvark: Read all 16-bits from PCIE_MSI_PAYLOAD_REG - [arm64] PCI: aardvark: Fix support for bus mastering and PCI_COMMAND on emulated bridge - [arm64] PCI: aardvark: Fix support for PCI_BRIDGE_CTL_BUS_RESET on emulated bridge - [arm64] PCI: aardvark: Set PCI Bridge Class Code to PCI Bridge - [arm64] PCI: aardvark: Fix support for PCI_ROM_ADDRESS1 on emulated bridge - quota: check block number when reading the block in quota file - quota: correct error number in free_dqentry() - pinctrl: core: fix possible memory leak in pinctrl_enable() - iio: dac: ad5446: Fix ad5622_write() return value - iio: ad5770r: make devicetree property reading consistent - USB: serial: keyspan: fix memleak on probe errors - serial: 8250: fix racy uartclk update - USB: iowarrior: fix control-message timeouts - [arm64,armhf] USB: chipidea: fix interrupt deadlock - [x86] power: supply: max17042_battery: Clear status bits in interrupt handler - dma-buf: WARN on dmabuf release with pending attachments - drm: panel-orientation-quirks: Update the Lenovo Ideapad D330 quirk (v2) - drm: panel-orientation-quirks: Add quirk for KD Kurio Smart C15200 2-in-1 - drm: panel-orientation-quirks: Add quirk for the Samsung Galaxy Book 10.6 - Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() (CVE-2021-3640) - Bluetooth: fix use-after-free error in lock_sock_nested() - drm/panel-orientation-quirks: add Valve Steam Deck - [x86] platform/x86: wmi: do not fail if disabling fails - locking/lockdep: Avoid RCU-induced noinstr fail - net: sched: update default qdisc visibility after Tx queue cnt changes - rcu-tasks: Move RTGS_WAIT_CBS to beginning of rcu_tasks_kthread() loop - ath11k: Align bss_chan_info structure with firmware - [x86] Increase exception stack sizes - mwifiex: Run SET_BSS_MODE when changing from P2P to STATION vif-type - mwifiex: Properly initialize private structure on interface type changes - fscrypt: allow 256-bit master keys with AES-256-XTS - drm/amdgpu: Fix MMIO access page fault - ath11k: Avoid reg rules update during firmware recovery - ath11k: add handler for scan event WMI_SCAN_EVENT_DEQUEUED - ath11k: Change DMA_FROM_DEVICE to DMA_TO_DEVICE when map reinjected packets - ath10k: high latency fixes for beacon buffer - media: netup_unidvb: handle interrupt properly according to the firmware - media: uvcvideo: Set capability in s_param - media: uvcvideo: Return -EIO for control errors - media: uvcvideo: Set unique vdev name based in type - [armhf] media: imx: set a media_device bus_info string - media: mceusb: return without resubmitting URB in case of -EPROTO error. - rtw88: fix RX clock gate setting while fifo dump - brcmfmac: Add DMI nvram filename quirk for Cyberbook T116 tablet - ipmi: Disable some operations during a panic - fs/proc/uptime.c: Fix idle time reporting in /proc/uptime - ACPICA: Avoid evaluating methods too early during system resume - media: usb: dvd-usb: fix uninit-value bug in dibusb_read_eeprom_byte() - net-sysfs: try not to restart the syscall if it will fail eventually - tracefs: Have tracefs directories not set OTH permission bits by default - ath: dfs_pattern_detector: Fix possible null-pointer dereference in channel_detector_create() - iov_iter: Fix iov_iter_get_pages{,_alloc} page fault return value - ACPI: battery: Accept charges over the design capacity as full - net: phy: micrel: make *-skew-ps check more lenient - [arm64] drm/msm: prevent NULL dereference in msm_gpu_crashstate_capture() - block: bump max plugged deferred size from 16 to 32 - md: update superblock after changing rdev flags in state_store - memstick: r592: Fix a UAF bug when removing the driver - lib/xz: Avoid overlapping memcpy() with invalid input with in-place decompression - lib/xz: Validate the value before assigning it to an enum variable - workqueue: make sysfs of unbound kworker cpumask more clever - mwl8k: Fix use-after-free in mwl8k_fw_state_machine() - block: remove inaccurate requeue check - nvmet: fix use-after-free when a port is removed - nvmet-rdma: fix use-after-free when a port is removed - nvmet-tcp: fix use-after-free when a port is removed - nvme: drop scan_lock and always kick requeue list when removing namespaces - PM: hibernate: Get block device exclusively in swsusp_check() - iwlwifi: mvm: disable RX-diversity in powersave - gre/sit: Don't generate link-local addr if addr_gen_mode is IN6_ADDR_GEN_MODE_NONE - gfs2: Cancel remote delete work asynchronously - gfs2: Fix glock_hash_walk bugs - vrf: run conntrack only in context of lower/physdev for locally generated packets - net: annotate data-race in neigh_output() - ACPI: AC: Quirk GK45 to skip reading _PSR - btrfs: reflink: initialize return value to 0 in btrfs_extent_same() - btrfs: do not take the uuid_mutex in btrfs_rm_device - [arm64] wcn36xx: Correct band/freq reporting on RX - [x86] hyperv: Protect set_hv_tscchange_cb() against getting preempted - drm/amd/display: dcn20_resource_construct reduce scope of FPU enabled - task_stack: Fix end_of_stack() for architectures with upwards-growing stack - erofs: don't trigger WARN() when decompression fails - netfilter: conntrack: set on IPS_ASSURED if flows enters internal stream state - Bluetooth: fix init and cleanup of sco_conn.timeout_work - rcu: Fix existing exp request check in sync_sched_exp_online_cleanup() - objtool: Add xen_start_kernel() to noreturn list - [x86] xen: Mark cpu_bringup_and_idle() as dead_end_function - objtool: Fix static_call list generation - virtio-gpu: fix possible memory allocation failure - lockdep: Let lock_is_held_type() detect recursive read as read - net: net_namespace: Fix undefined member in key_remove_domain() - cgroup: Make rebind_subsystems() disable v2 controllers all at once - [arm64] wcn36xx: Fix Antenna Diversity Switching - Bluetooth: btmtkuart: fix a memleak in mtk_hci_wmt_sync - [arm64] crypto: caam - disable pkc for non-E SoCs - rxrpc: Fix _usecs_to_jiffies() by using usecs_to_jiffies() - ath11k: fix some sleeping in atomic bugs - ath11k: Avoid race during regd updates - ath11k: fix packet drops due to incorrect 6 GHz freq value in rx status - ath11k: Fix memory leak in ath11k_qmi_driver_event_work - ath10k: Fix missing frame timestamp for beacon/probe-resp - ath10k: sdio: Add missing BH locking around napi_schdule() - drm/ttm: stop calling tt_swapin in vm_access - [arm64] mm: update max_pfn after memory hotplug - drm/amdgpu: fix warning for overflow check - media: em28xx: add missing em28xx_close_extension - media: dvb-usb: fix ununit-value in az6027_rc_query - media: v4l2-ioctl: S_CTRL output the right value - media: si470x: Avoid card name truncation - [x86] media: tm6000: Avoid card name truncation - media: cx23885: Fix snd_card_free call on null card pointer - kprobes: Do not use local variable when creating debugfs file - cpuidle: Fix kobject memory leaks in error paths - media: em28xx: Don't use ops->suspend if it is NULL - ath9k: Fix potential interrupt storm on queue reset - PM: EM: Fix inefficient states detection - [amd64] EDAC/amd64: Handle three rank interleaving mode - rcu: Always inline rcu_dynticks_task*_{enter,exit}() - netfilter: nft_dynset: relax superfluous check on set updates - [x86] crypto: qat - detect PFVF collision after ACK - [x86] crypto: qat - disregard spurious PFVF interrupts - b43legacy: fix a lower bounds test - b43: fix a lower bounds test - [amd64] gve: Recover from queue stall due to missed IRQ - [armhf] mmc: sdhci-omap: Fix NULL pointer exception if regulator is not configured - [armhf] mmc: sdhci-omap: Fix context restore - memstick: jmb38x_ms: use appropriate free function in jmb38x_ms_alloc_host() - net, neigh: Fix NTF_EXT_LEARNED in combination with NTF_USE - hwmon: Fix possible memleak in __hwmon_device_register() - ath10k: fix max antenna gain unit - kernel/sched: Fix sched_fork() access an invalid sched_task_group - tcp: switch orphan_count to bare per-cpu counters - [arm64] drm/msm: potential error pointer dereference in init() - [arm64] drm/msm: uninitialized variable in msm_gem_import() - net: stream: don't purge sk_error_queue in sk_stream_kill_queues() - [x86] platform/x86: thinkpad_acpi: Fix bitwise vs. logical warning - mt76: mt76x02: fix endianness warnings in mt76x02_mac.c - rsi: stop thread firstly in rsi_91x_init() error handling - mwifiex: Send DELBA requests according to spec - [arm64] net: enetc: unmap DMA in enetc_send_cmd() - phy: micrel: ksz8041nl: do not use power down mode - nvme-rdma: fix error code in nvme_rdma_setup_ctrl - PM: hibernate: fix sparse warnings - [arm64] drm/msm: Fix potential NULL dereference in DPU SSPP - bpftool: Avoid leaking the JSON writer prepared for program metadata - [s390x] gmap: don't unconditionally call pte_unmap_unlock() in __gmap_zap() - [s390x] KVM: pv: avoid double free of sida page - [s390x] KVM: pv: avoid stalls for kvm_s390_pv_init_vm - tpm: fix Atmel TPM crash caused by too frequent queries - tpm_tis_spi: Add missing SPI ID - tcp: don't free a FIN sk_buff in tcp_remove_empty_skb() - [s390x] KVM: Fix handle_sske page fault handling - libertas_tf: Fix possible memory leak in probe and disconnect - libertas: Fix possible memory leak in probe and disconnect - [arm64] wcn36xx: add proper DMA memory barriers in rx path - [arm64] wcn36xx: Fix discarded frames due to wrong sequence number - drm/amdgpu/gmc6: fix DMA mask from 44 to 40 bits - [amd64,arm64] net: amd-xgbe: Toggle PLL settings during rate change - net: phylink: avoid mvneta warning when setting pause parameters - crypto: pcrypt - Delay write to padata->info - udp6: allow SO_MARK ctrl msg to affect routing - cgroup: Fix rootcg cpu.stat guest double counting - bpf: Fix propagation of bounds from 64-bit min/max into 32-bit and var_off. - bpf: Fix propagation of signed bounds from 64-bit min/max into 32-bit. - iio: st_sensors: Call st_sensors_power_enable() from bus drivers - iio: st_sensors: disable regulators after device unregistration - RDMA/bnxt_re: Fix query SRQ failure - [arm64] dts: meson-g12a: Fix the pwm regulator supply properties - [armhf] bus: ti-sysc: Fix timekeeping_suspended warning on resume - scsi: dc395: Fix error case unwinding - JFS: fix memleak in jfs_mount - ALSA: hda: Reduce udelay() at SKL+ position reporting - ALSA: hda: Release controller display power during shutdown/reboot - ALSA: hda: Fix hang during shutdown due to link reset - ALSA: hda: Use position buffer for SKL+ again - soundwire: debugfs: use controller id and link_id for debugfs - scsi: pm80xx: Fix misleading log statement in pm8001_mpi_get_nvmd_resp() - driver core: Fix possible memory leak in device_link_add() - [x86] ASoC: SOF: topology: do not power down primary core during topology removal - [arm64,armhf] soc/tegra: Fix an error handling path in tegra_powergate_power_up() - [powerpc*] Refactor is_kvm_guest() declaration to new header - [powerpc*] Rename is_kvm_guest() to check_kvm_guest() - [powerpc*] Reintroduce is_kvm_guest() as a fast-path check - [powerpc*] Fix is_kvm_guest() / kvm_para_available() - [powerpc*] fix unbalanced node refcount in check_kvm_guest() - serial: 8250_dw: Drop wrong use of ACPI_PTR() - scsi: csiostor: Uninitialized data in csio_ln_vnp_read_cbfn() - RDMA/mlx4: Return missed an error if device doesn't support steering - iio: adis: do not disabe IRQs in 'adis_init()' - scsi: ufs: Refactor ufshcd_setup_clocks() to remove skip_ref_clk - [arm64,armhf] serial: imx: fix detach/attach of serial console - [arm*] usb: dwc2: drd: fix dwc2_force_mode call in dwc2_ovr_init - [arm*] usb: dwc2: drd: fix dwc2_drd_role_sw_set when clock could be disabled - [arm*] usb: dwc2: drd: reset current session before setting the new one - [arm64] firmware: qcom_scm: Fix error retval in __qcom_scm_is_call_available() - [arm64] phy: qcom-qusb2: Fix a memory leak on probe - [armhf] phy: ti: gmii-sel: check of_get_address() for failure - [arm64] serial: xilinx_uartps: Fix race condition causing stuck TX - HID: u2fzero: clarify error check and length calculations - HID: u2fzero: properly handle timeouts in usb_submit_urb - virtio_ring: check desc == NULL when using indirect with packed - [mips*] cm: Convert to bitfield API to fix out-of-bounds access - apparmor: fix error check - rpmsg: Fix rpmsg_create_ept return when RPMSG config is not defined - nfsd: don't alloc under spinlock in rpc_parse_scope_id - NFS: Fix dentry verifier races - pnfs/flexfiles: Fix misplaced barrier in nfs4_ff_layout_prepare_ds - drm/plane-helper: fix uninitialized variable reference - [arm64] PCI: aardvark: Don't spam about PIO Response Status - [arm64] PCI: aardvark: Fix preserving PCI_EXP_RTCTL_CRSSVE flag on emulated bridge - opp: Fix return in _opp_add_static_v2() - NFS: Fix deadlocks in nfs_scan_commit_list() - fs: orangefs: fix error return code of orangefs_revalidate_lookup() - [arm64] mtd: spi-nor: hisi-sfc: Remove excessive clk_disable_unprepare() - mtd: core: don't remove debugfs directory if device is in use - [armhf] remoteproc: Fix a memory leak in an error handling path in 'rproc_handle_vdev()' - NFS: Fix up commit deadlocks - NFS: Fix an Oops in pnfs_mark_request_commit() - Fix user namespace leak - [arm64] soc: fsl: dpaa2-console: free buffer before returning from dpaa2_console_read - netfilter: nfnetlink_queue: fix OOB when mac header was cleared - [x86] watchdog: f71808e_wdt: fix inaccurate report in WDIOC_GETTIMEOUT - scsi: qla2xxx: Changes to support FCP2 Target - scsi: qla2xxx: Relogin during fabric disturbance - scsi: qla2xxx: Fix gnl list corruption - scsi: qla2xxx: Turn off target reset during issue_lip - NFSv4: Fix a regression in nfs_set_open_stateid_locked() - xen-pciback: Fix return in pm_ctrl_init() - [armhf] net: davinci_emac: Fix interrupt pacing disable - ethtool: fix ethtool msg len calculation for pause stats - net: vlan: fix a UAF in vlan_dev_real_dev() - ice: Fix replacing VF hardware MAC to existing MAC filter - ice: Fix not stopping Tx queues for VFs - [x86] ACPI: PMIC: Fix intel_pmic_regs_handler() read accesses - net: phy: fix duplex out of sync problem while changing settings - bonding: Fix a use-after-free problem when bond_sysfs_slave_add() failed - mfd: core: Add missing of_node_put for loop iteration - mm/zsmalloc.c: close race window between zs_pool_dec_isolated() and zs_unregister_migration() - zram: off by one in read_block_state() - llc: fix out-of-bound array index in llc_sk_dev_hash() - nfc: pn533: Fix double free when pn533_fill_fragment_skbs() fails - [arm64] pgtable: make __pte_to_phys/__phys_to_pte_val inline functions - bpf, sockmap: Remove unhash handler for BPF sockmap usage - bpf: sockmap, strparser, and tls are reusing qdisc_skb_cb and colliding - [amd64] gve: Fix off by one in gve_tx_timeout() - seq_file: fix passing wrong private data - net/sched: sch_taprio: fix undefined behavior in ktime_mono_to_any - [arm64] net: hns3: fix kernel crash when unload VF while it is being reset - [arm64] net: hns3: allow configure ETS bandwidth of all TCs - net: stmmac: allow a tc-taprio base-time of zero - vsock: prevent unnecessary refcnt inc for nonblocking connect - net/smc: fix sk_refcnt underflow on linkdown and fallback - cxgb4: fix eeprom len when diagnostics not implemented - [armel,armhf] 9155/1: fix early early_iounmap() - [armhf] 9156/1: drop cc-option fallbacks for architecture selection - [x86] mce: Add errata workaround for Skylake SKX37 - posix-cpu-timers: Clear task::posix_cputimers_work in copy_process() - f2fs: should use GFP_NOFS for directory inodes - net, neigh: Enable state migration between NUD_PERMANENT and NTF_USE - 9p/net: fix missing error check in p9_check_errors - memcg: prohibit unconditional exceeding the limit of dying tasks - [powerpc*] lib: Add helper to check if offset is within conditional branch range - [powerpc*] bpf: Validate branch ranges - [powerpc*] security: Add a helper to query stf_barrier type - [powerpc*] bpf: Emit stf barrier instruction sequences for BPF_NOSPEC - mm, oom: pagefault_out_of_memory: don't force global OOM for dying tasks - mm, oom: do not trigger out_of_memory from the #PF - video: backlight: Drop maximum brightness override for brightness zero - [s390x] cio: check the subchannel validity for dev_busid - [s390x] tape: fix timer initialization in tape_std_assign() - [s390x] ap: Fix hanging ioctl caused by orphaned replies - [s390x] cio: make ccw_device_dma_* more robust - [powerpc*] powernv/prd: Unregister OPAL_MSG_PRD2 notifier during module unload - [arm64,armhf] drm/sun4i: Fix macros in sun8i_csc.h - PCI: Add PCI_EXP_DEVCTL_PAYLOAD_* macros - [arm64] PCI: aardvark: Fix PCIe Max Payload Size setting - SUNRPC: Partial revert of commit 6f9f17287e78 - ath10k: fix invalid dma_addr_t token assignment - arch/cc: Introduce a function to check for confidential computing features - [arm64,armhf] soc/tegra: pmc: Fix imbalanced clock disabling in error code path https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.81 - block: Add a helper to validate the block size - loop: Use blk_validate_block_size() to validate block size - bootconfig: init: Fix memblock leak in xbc_make_cmdline() - net: stmmac: add clocks management for gmac driver - net: stmmac: fix missing unlock on error in stmmac_suspend() - net: stmmac: fix system hang if change mac address after interface ifdown - net: stmmac: fix issue where clk is being unprepared twice - [arm64,armhf] net: stmmac: dwmac-rk: fix unbalanced pm_runtime_enable warnings - [x86] iopl: Fake iopl(3) CLI/STI usage - PCI/MSI: Destroy sysfs before freeing entries - PCI/MSI: Deal with devices lying about their MSI mask capability - PCI: Add MSI masking quirk for Nvidia ION AHCI - erofs: remove the occupied parameter from z_erofs_pagevec_enqueue() - erofs: fix unsafe pagevec reuse of hooked pclusters - scripts/lld-version.sh: Rewrite based on upstream ld-version.sh - perf/core: Avoid put_page() when GUP fails - thermal: Fix NULL pointer dereferences in of_thermal_ functions https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.82 - [arm64] zynqmp: Do not duplicate flash partition label property - [arm64] zynqmp: Fix serial compatible string - scsi: lpfc: Fix list_add() corruption in lpfc_drain_txq() - [armhf] bus: ti-sysc: Add quirk handling for reinit on context lost - [armhf] bus: ti-sysc: Use context lost quirk for otg - [armhf] usb: musb: tusb6010: check return value after calling platform_get_resource() - [x86] usb: typec: tipd: Remove WARN_ON in tps6598x_block_read - staging: rtl8723bs: remove possible deadlock when disconnect (v2) - [x86] ASoC: SOF: Intel: hda-dai: fix potential locking issue - [armhf] clk: imx: imx6ul: Move csi_sel mux to correct base register - [x86] ASoC: nau8824: Add DMI quirk mechanism for active-high jack-detect - scsi: advansys: Fix kernel pointer leak - ALSA: intel-dsp-config: add quirk for APL/GLK/TGL devices based on ES8336 codec - firmware_loader: fix pre-allocated buf built-in firmware use - tty: tty_buffer: Fix the softlockup issue in flush_to_ldisc - scsi: scsi_debug: Fix out-of-bound read in resp_readcap16() - scsi: scsi_debug: Fix out-of-bound read in resp_report_tgtpgs() - scsi: target: Fix ordered tag handling - scsi: target: Fix alua_tg_pt_gps_count tracking - iio: imu: st_lsm6dsx: Avoid potential array overflow in st_lsm6dsx_set_odr() - [i386] ALSA: gus: fix null pointer dereference on pointer block - maple: fix wrong return value of maple_bus_init(). - f2fs: fix up f2fs_lookup tracepoints - f2fs: fix to use WHINT_MODE - f2fs: compress: disallow disabling compress on non-empty compressed file - f2fs: fix incorrect return value in f2fs_sanity_check_ckpt() - [armhf] clk/ast2600: Fix soc revision for AHB - [arm64] clk: qcom: gcc-msm8996: Drop (again) gcc_aggre1_pnoc_ahb_clk - sched/core: Mitigate race cpus_share_cache()/update_top_cache_domain() - [x86] perf/x86/vlbr: Add c->flags to vlbr event constraints - blkcg: Remove extra blkcg_bio_issue_init - perf bpf: Avoid memory leak from perf_env__insert_btf() - perf bench futex: Fix memory leak of perf_cpu_map__new() - perf tests: Remove bash construct from record+zstd_comp_decomp.sh - drm/nouveau: hdmigv100.c: fix corrupted HDMI Vendor InfoFrame - net-zerocopy: Copy straggler unaligned data for TCP Rx. zerocopy. - net-zerocopy: Refactor skb frag fast-forward op. - tcp: Fix uninitialized access in skb frags array for Rx 0cp. - tracing: Add length protection to histogram string copies - bnxt_en: reject indirect blk offload when hw-tc-offload is off - tipc: only accept encrypted MSG_CRYPTO msgs - net: reduce indentation level in sk_clone_lock() - sock: fix /proc/net/sockstat underflow in sk_clone_lock() - net/smc: Make sure the link_id is unique - iavf: Fix return of set the new channel count - iavf: check for null in iavf_fix_features - iavf: free q_vectors before queues in iavf_disable_vf - iavf: Fix failure to exit out from last all-multicast mode - iavf: prevent accidental free of filter structure - iavf: validate pointers - iavf: Fix for the false positive ASQ/ARQ errors while issuing VF reset - iavf: Fix for setting queues to 0 - [x86] platform/x86: hp_accel: Fix an error handling path in 'lis3lv02d_probe()' - net/mlx5e: nullify cq->dbg pointer in mlx5_debug_cq_remove() - net/mlx5: Lag, update tracker when state change event received - net/mlx5: E-Switch, Change mode lock from mutex to rw semaphore - net/mlx5: E-Switch, return error if encap isn't supported - scsi: core: sysfs: Fix hang when device state is set via sysfs - net: sched: act_mirred: drop dst for the direction from egress to ingress - [arm64] net: dpaa2-eth: fix use-after-free in dpaa2_eth_remove - net: virtio_net_hdr_to_skb: count transport header in UFO - i40e: Fix correct max_pkt_size on VF RX queue - i40e: Fix NULL ptr dereference on VSI filter sync - i40e: Fix changing previously set num_queue_pairs for PFs - i40e: Fix ping is lost after configuring ADq on VF - i40e: Fix warning message and call stack during rmmod i40e driver - i40e: Fix creation of first queue by omitting it if is not power of two - i40e: Fix display error code in dmesg - e100: fix device suspend/resume (Closes: #995927) - [powerpc*] KVM: PPC: Book3S HV: Use GLOBAL_TOC for kvmppc_h_set_dabr/xdabr() - [x86] perf/x86/intel/uncore: Fix filter_tid mask for CHA events on Skylake Server - [x86] perf/x86/intel/uncore: Fix IIO event constraints for Skylake Server - [s390x] kexec: fix return code handling - [arm64,armhf] net: stmmac: dwmac-rk: Fix ethernet on rk3399 based devices - tun: fix bonding active backup with arp monitoring - tipc: check for null after calling kmemdup - ipc: WARN if trying to remove ipc object which is absent - [x86] hyperv: Fix NULL deref in set_hv_tscchange_cb() if Hyper-V setup fails - scsi: qla2xxx: Fix mailbox direction flags in qla2xxx_get_adapter_id() - [s390x] kexec: fix memory leak of ipl report buffer - block: Check ADMIN before NICE for IOPRIO_CLASS_RT - [x86] KVM: nVMX: don't use vcpu->arch.efer when checking host state on nested state load - udf: Fix crash after seekdir - [armhf] net: stmmac: socfpga: add runtime suspend/resume callback for stratix10 platform - btrfs: fix memory ordering between normal and ordered work functions - cfg80211: call cfg80211_stop_ap when switch from P2P_GO type - drm/udl: fix control-message timeout - drm/nouveau: Add a dedicated mutex for the clients list (CVE-2020-27820) - drm/nouveau: use drm_dev_unplug() during device removal (CVE-2020-27820) - drm/nouveau: clean up all clients on device removal (CVE-2020-27820) - [x86] drm/i915/dp: Ensure sink rate values are always valid - drm/amdgpu: fix set scaling mode Full/Full aspect/Center not works on vga and dvi connectors - scsi: ufs: core: Fix task management completion - scsi: ufs: core: Fix task management completion timeout race - hugetlbfs: flush TLBs correctly after huge_pmd_unshare (CVE-2021-4002) - RDMA/netlink: Add __maybe_unused to static inline in C file - selinux: fix NULL-pointer dereference when hashtab allocation fails - ASoC: DAPM: Cover regression by kctl change notification fix - ice: Delete always true check of PF pointer - fs: export an inode_update_time helper - btrfs: update device path inode time instead of bd_inode - [x86] ALSA: hda: hdac_ext_stream: fix potential locking issues - ALSA: hda: hdac_stream: fix potential locking issue in snd_hdac_stream_assign() - Revert "perf: Rework perf_event_exit_event()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.83 - bpf: Fix toctou on read-only map's constant scalar tracking (CVE-2021-4001) - ACPI: Get acpi_device's parent from the parent field - USB: serial: option: add Telit LE910S1 0x9200 composition - USB: serial: option: add Fibocom FM101-GL variants - [arm*] usb: dwc2: gadget: Fix ISOC flow for elapsed frames - [arm*] usb: dwc2: hcd_queue: Fix use of floating point literal - [arm64,armhf] usb: dwc3: gadget: Ignore NoStream after End Transfer - [arm64,armhf] usb: dwc3: gadget: Check for L1/L2/U3 for Start Transfer - [arm64,armhf] usb: dwc3: gadget: Fix null pointer exception - net: nexthop: fix null pointer dereference when IPv6 is not enabled - [arm64,armhf] usb: chipidea: ci_hdrc_imx: fix potential error pointer dereference in probe - usb: typec: fusb302: Fix masking of comparator and bc_lvl interrupts - usb: hub: Fix usb enumeration issue due to address0 race - usb: hub: Fix locking issues with address0_mutex - [arm*] binder: fix test regression due to sender_euid change - ALSA: ctxfi: Fix out-of-range access - ALSA: hda/realtek: Add quirk for ASRock NUC Box 1100 - ALSA: hda/realtek: Fix LED on HP ProBook 435 G7 - media: cec: copy sequence field for the reply - HID: wacom: Use "Confidence" flag to prevent reporting invalid contacts - [x86] staging: rtl8192e: Fix use after free in _rtl92e_pci_disconnect() - fuse: release pipe buf after last use - xen: don't continue xenstore initialization in case of errors - xen: detect uninitialized xenbus in xenbus_init - [powerpc*] KVM: PPC: Book3S HV: Prevent POWER7/8 TLB flush flushing SLB - tracing/uprobe: Fix uprobe_perf_open probes iteration - tracing: Fix pid filtering when triggers are attached - [arm64,armhf] mmc: sdhci-esdhc-imx: disable CMDQ support - mmc: sdhci: Fix ADMA for PAGE_SIZE >= 64KiB - [armhf] mdio: aspeed: Fix "Link is Down" issue - [arm64] PCI: aardvark: Deduplicate code in advk_pcie_rd_conf() - [arm64] PCI: aardvark: Update comment about disabling link training - [arm64] PCI: aardvark: Implement re-issuing config requests on CRS response - [arm64] PCI: aardvark: Simplify initialization of rootcap on virtual bridge - [arm64] PCI: aardvark: Fix link training - proc/vmcore: fix clearing user buffer by properly using clear_user() - netfilter: ctnetlink: fix filtering with CTA_TUPLE_REPLY - netfilter: ctnetlink: do not erase error code with EINVAL - netfilter: ipvs: Fix reuse connection if RS weight is 0 - netfilter: flowtable: fix IPv6 tunnel addr match - [x86] ASoC: topology: Add missing rwsem around snd_ctl_remove() calls - net: ieee802154: handle iftypes as u32 - NFSv42: Don't fail clone() unless the OP_CLONE operation failed - [armhf] socfpga: Fix crash with CONFIG_FORTIRY_SOURCE - drm/nouveau/acr: fix a couple NULL vs IS_ERR() checks - scsi: mpt3sas: Fix kernel panic during drive powercycle test - [arm*] drm/vc4: fix error code in vc4_create_object() - iavf: Prevent changing static ITR values if adaptive moderation is on - ALSA: intel-dsp-config: add quirk for JSL devices based on ES8336 codec - [arm64,armhf] firmware: smccc: Fix check for ARCH_SOC_ID not implemented - ipv6: fix typos in __ip6_finish_output() - nfp: checking parameter process for rx-usecs/tx-usecs is invalid - net: stmmac: fix system hang caused by eee_ctrl_timer during suspend/resume - net: stmmac: retain PTP clock time during SIOCSHWTSTAMP ioctls - net: ipv6: add fib6_nh_release_dsts stub - net: nexthop: release IPv6 per-cpu dsts when replacing a nexthop group - ice: fix vsi->txq_map sizing - ice: avoid bpf_prog refcount underflow - scsi: core: sysfs: Fix setting device state to SDEV_RUNNING - scsi: scsi_debug: Zero clear zones at reset write pointer - erofs: fix deadlock when shrink erofs slab - net/smc: Ensure the active closing peer first closes clcsock - [arm64,armhf] net: marvell: mvpp2: increase MTU limit when XDP enabled - nvmet-tcp: fix incomplete data digest send - [armhf] net/ncsi : Add payload to be 32-bit aligned to fix dropped packets - PM: hibernate: use correct mode for swsusp_close() - drm/amd/display: Set plane update flags for all planes in reset - tcp_cubic: fix spurious Hystart ACK train detections for not-cwnd-limited flows - lan743x: fix deadlock in lan743x_phy_link_status_change() - net: phylink: Force link down and retrigger resolve on interface change - net: phylink: Force retrigger in case of latched link-fail indicator - net/smc: Fix NULL pointer dereferencing in smc_vlan_by_tcpsk() - net/smc: Fix loop in smc_listen - nvmet: use IOCB_NOWAIT only if the filesystem supports it - igb: fix netpoll exit with traffic - [mips*] loongson64: fix FTLB configuration - [mips*] use 3-level pgtable for 64KB page size on MIPS_VA_BITS_48 - net/sched: sch_ets: don't peek at classes beyond 'nbands' - net: vlan: fix underflow for the real_dev refcnt - net/smc: Don't call clcsock shutdown twice when smc shutdown - [arm64] net: hns3: fix VF RSS failed problem after PF enable multi-TCs - [arm64] net: mscc: ocelot: don't downgrade timestamping RX filters in SIOCSHWTSTAMP - [arm64] net: mscc: ocelot: correctly report the timestamping RX filters in ethtool - tcp: correctly handle increased zerocopy args struct size - sched/scs: Reset task stack state in bringup_cpu() - f2fs: set SBI_NEED_FSCK flag when inconsistent node block found - ceph: properly handle statfs on multifs setups - smb3: do not error on fsync when readonly - [amd64] iommu/amd: Clarify AMD IOMMUv2 initialization messages - vhost/vsock: fix incorrect used length reported to the guest - tracing: Check pid filtering when creating events - xen: sync include/xen/interface/io/ring.h with Xen's newest version - xen/blkfront: read response from backend only once - xen/blkfront: don't take local copy of a request from the ring page - xen/blkfront: don't trust the backend response data blindly - xen/netfront: read response from backend only once - xen/netfront: don't read data from request on the ring page - xen/netfront: disentangle tx_skb_freelist - xen/netfront: don't trust the backend response data blindly - tty: hvc: replace BUG_ON() with negative return value - [s390x] mm: validate VMA in PGSTE manipulation functions - shm: extend forced shm destroy to support objects from several IPC nses - net: stmmac: platform: fix build warning when with !CONFIG_PM_SLEEP - drm/amdgpu/gfx9: switch to golden tsc registers for renoir+ https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.84 - NFSv42: Fix pagecache invalidation after COPY/CLONE - can: j1939: j1939_tp_cmd_recv(): check the dst address of TP.CM_BAM - ovl: simplify file splice - ovl: fix deadlock in splice write - gfs2: release iopen glock early in evict - gfs2: Fix length of holes reported at end-of-file - [powerpc*] pseries/ddw: Revert "Extend upper limit for huge DMA window for persistent memory" - mac80211: do not access the IV when it was stripped - net/smc: Transfer remaining wait queue entries during fallback - [amd64,arm64] atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait (CVE-2021-43975) - net: return correct error code - [x86] platform/x86: thinkpad_acpi: Add support for dual fan control - [x86] platform/x86: thinkpad_acpi: Fix WWAN device disabled issue after S3 deep - [s390x] setup: avoid using memblock_enforce_memory_limit - btrfs: check-integrity: fix a warning on write caching disabled disk - thermal: core: Reset previous low and high trip during thermal zone init - scsi: iscsi: Unblock session then wake up error handler - drm/amd/amdgpu: fix potential memleak - ata: ahci: Add Green Sardine vendor ID as board_ahci_mobile - [arm64] ethernet: hisilicon: hns: hns_dsaf_misc: fix a possible array overflow in hns_dsaf_ge_srst_by_port() - ipv6: check return value of ipv6_skip_exthdr - net/smc: Avoid warning of possible recursive locking - ACPI: Add stubs for wakeup handler functions - vrf: Reset IPCB/IP6CB when processing outbound pkts in vrf dev xmit - kprobes: Limit max data_size of the kretprobe instances - rt2x00: do not mark device gone on EPROTO errors during start - ipmi: Move remove_work to dedicated workqueue - cpufreq: Fix get_cpu_device() failure in add_cpu_dev_symlink() - [s390x] pci: move pseudo-MMIO to prevent MIO overlap - fget: check that the fd still exists after getting a ref to it - ipv6: fix memory leak in fib6_rule_suppress - drm/amd/display: Allow DSC on supported MST branch devices - KVM: Disallow user memslot with size that exceeds "unsigned long" - [x86] KVM: nVMX: Flush current VPID (L1 vs. L2) for KVM_REQ_TLB_FLUSH_GUEST - [x86] KVM: x86: Use a stable condition around all VT-d PI paths - [arm64] KVM: arm64: Avoid setting the upper 32 bits of TCR_EL2 and CPTR_EL2 to 1 - [x86] KVM: X86: Use vcpu->arch.walk_mmu for kvm_mmu_invlpg() - wireguard: allowedips: add missing __rcu annotation to satisfy sparse - wireguard: device: reset peer src endpoint when netns exits - wireguard: receive: use ring buffer for incoming handshakes - wireguard: receive: drop handshakes if queue lock is contended - wireguard: ratelimiter: use kvcalloc() instead of kvzalloc() - [armhf] i2c: stm32f7: flush TX FIFO upon transfer errors - [armhf] i2c: stm32f7: recover the bus on access timeout - [armhf] i2c: stm32f7: stop dma transfer in case of NACK - tcp: fix page frag corruption on page fault - net: qlogic: qlcnic: Fix a NULL pointer dereference in qlcnic_83xx_add_rings() - net: mpls: Fix notifications when deleting a device - siphash: use _unaligned version by default - [arm64] ftrace: add missing BTIs - net/mlx4_en: Fix an use-after-free bug in mlx4_en_try_alloc_resources() - rxrpc: Fix rxrpc_peer leak in rxrpc_look_up_bundle() - rxrpc: Fix rxrpc_local leak in rxrpc_lookup_peer() - ALSA: intel-dsp-config: add quirk for CML devices based on ES8336 codec - net: usb: lan78xx: lan78xx_phy_init(): use PHY_POLL instead of "0" if no IRQ is available - [arm64,armhf] net: marvell: mvpp2: Fix the computation of shared CPUs - [arm64] dpaa2-eth: destroy workqueue at the end of remove function - net: annotate data-races on txq->xmit_lock_owner - ipv4: convert fib_num_tclassid_users to atomic_t - net/smc: fix wrong list_del in smc_lgr_cleanup_early - net/rds: correct socket tunable error in rds_tcp_tune() - net/smc: Keep smc_close_final rc during active close - [arm64] drm/msm/a6xx: Allocate enough space for GMU registers - [arm64] drm/msm: Do hw_init() before capturing GPU state - [amd64,arm64] atlantic: Increase delay for fw transactions - [amd64,arm64] atlatnic: enable Nbase-t speeds with base-t - [amd64,arm64] atlantic: Fix to display FW bundle version instead of FW mac version. - [amd64,arm64] atlantic: Add missing DIDs and fix 115c. - [amd64,arm64] Remove Half duplex mode speed capabilities. - [amd64,arm64] atlantic: Fix statistics logic for production hardware - [amd64,arm64] atlantic: Remove warn trace message. - [x86] KVM: x86/pmu: Fix reserved bits for AMD PerfEvtSeln register - [x86] KVM: VMX: Set failure code in prepare_vmcs02() - [x86] entry: Use the correct fence macro after swapgs in kernel CR3 - [x86] xen: Add xenpv_restore_regs_and_return_to_usermode() - sched/uclamp: Fix rq->uclamp_max not set on first enqueue - [x86] pv: Switch SWAPGS to ALTERNATIVE - [x86] entry: Add a fence for kernel entry SWAPGS in paranoid_entry() - vgacon: Propagate console boot parameters before calling `vc_resize' - xhci: Fix commad ring abort, write all 64 bits to CRCR register. - USB: NO_LPM quirk Lenovo Powered USB-C Travel Hub - usb: typec: tcpm: Wait in SNK_DEBOUNCED until disconnect - [x86] tsc: Add a timer to make sure TSC_adjust is always checked - [x86] tsc: Disable clocksource watchdog for TSC on qualified platorms - [x86] 64/mm: Map all kernel memory into trampoline_pgd - [arm64] tty: serial: msm_serial: Deactivate RX DMA for polling support - [arm*] serial: pl011: Add ACPI SBSA UART match id - [arm64,armhf] serial: tegra: Change lower tolerance baud rate limit for tegra20 and tegra30 - serial: core: fix transmit-buffer reset and memleak - serial: 8250_pci: Fix ACCES entries in pci_serial_quirks array - serial: 8250_pci: rewrite pericom_do_set_divisor() - serial: 8250: Fix RTS modem control while in rs485 mode - iwlwifi: mvm: retry init flow if failed - ipmi: msghandler: Make symbol 'remove_work_wq' static . [ Salvatore Bonaccorso ] * integrity: Drop "MODSIGN: load blacklist from MOKx" as redundant after 5.10.47. * Bump ABI to 10 * Refresh "tools/perf: pmu-events: Fix reproducibility" * [rt] Update to 5.10.73-rt54 * [rt] Refresh "tracing: Merge irqflags + preempt counter." * Refresh "Export symbols needed by Android drivers" * [rt] Refresh "printk: introduce kernel sync mode" * [rt] Refresh "printk: move console printing to kthreads" * [rt] Drop "rcutorture: Avoid problematic critical section nesting on RT" * [rt] Add new signing key for Luis Claudio R. Goncalves * [rt] Update to 5.10.83-rt58 . [ Ben Hutchings ] * tools/perf: Fix warning introduced by "tools/perf: pmu-events: Fix reproducibility" lldpd (1.0.11-1+deb11u1) bullseye; urgency=high . * d/patches: sonmp: fix heap overflow when reading SONMP packets. CVE-2021-43612 * d/patches: client: do not set VLAN tag if client did not set it mrtg (2.17.7-2+deb11u1) bullseye; urgency=medium . * debian/patches/: created two patches to fix spelling errors in source code. These spelling errors will break the program in some circumstances. - deb11-01-fix-variable-name-cfgmaker.patch (Closes: #995950) - deb11-02-fix-variable-name-MRTG_lib.patch (Closes: #996090) neutron (2:17.2.1-0+deb11u1) bullseye-security; urgency=medium . * New upstream release, includes: - CVE-2021-40085: By supplying a specially crafted extra_dhcp_opts value, an authenticated user may add arbitrary configuration to the dnsmasq process in order to crash the service, change parameters for other tenants sharing the same interface, or otherwise alter that daemon's behavior. This vulnerability may also be used to trigger a configuration parsing buffer overflow in versions of dnsmasq prior to 2.81, which could lead to remote code execution. All Neutron deployments are affected. (Closes: #993398). * d/patches: Remove upstream applied patches node-getobject (0.1.0-2+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: CVE-2020-28282) node-json-schema (0.3.0+~7.0.6-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: #999765, CVE-2021-3918) node-tar (6.0.5+ds1+~cs11.3.9-1+deb11u2) bullseye-security; urgency=medium . * Team upload * Fix insufficient symlink protection (Closes: CVE-2021-37701) * Fix arbitrary file creation/overwrite and arbitrary code execution vulnerability (Closes: CVE-2021-37712) * Don't apply umask when uncompressing to avoid creating world writable directories nss (2:3.61-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Ensure DER encoded signatures are within size limits (CVE-2021-43527) open3d (0.9.0+ds-5+deb11u1) bullseye; urgency=medium . * Ensure that python3-open3d depends on python3-numpy (Closes: #993622) opendmarc (1.4.0~beta1+dfsg-6+deb11u1) bullseye; urgency=medium . * Amend patch "ticket193.patch" (Closes: #995694): - Remove unexplained diff that breaks opendmarc-import * Add patch "arcseal-segfaults.patch" (Closes: #995703): - Fix segfaults, increase token max lengths in ARC-Seal headers php7.4 (7.4.25-1+deb11u1) bullseye-security; urgency=high . * New upstream version 7.4.25 + CVE-2021-21706: ZipArchive::extractTo extracts outside of destination + CVE-2021-21703: PHP-FPM oob R/W in root process leading to privilege escalation plib (1.8.5-8+deb11u1) bullseye; urgency=medium . * Prevent integer overflow in ssgLoadTGA() function. CVE-2021-38714 (Closes: #992973) plib (1.8.5-8+deb10u1) buster; urgency=medium . * Prevent integer overflow in ssgLoadTGA() function. CVE-2021-38714 (Closes: #992973) plocate (1.1.8-2+deb11u1) stable; urgency=medium . * debian/patches/01-fix-wrong-escape.diff: New patch backported from upstream, fixes problems with escaping UTF-8 characters on platforms with signed char (which is most of them). poco (1.10.0-6+deb11u1) bullseye; urgency=medium . * Fix cmake files (Closes: #1000656). - Drop duplicated cmake/ in path so they are discoverable by cmake. - Fix cmake logic to export correct paths of shared objects. - Install FindPCRE.cmake, needed by PocoFoundationConfig.cmake. postgresql-13 (13.5-0+deb11u1) bullseye-security; urgency=medium . * New upstream security release. . + Make the server and libpq reject extraneous data after an SSL or GSS encryption handshake (Tom Lane) . A man-in-the-middle with the ability to inject data into the TCP connection could stuff some cleartext data into the start of a supposedly encryption-protected database session. . This could be abused to send faked SQL commands to the server, although that would only work if the server did not demand any authentication data. (However, a server relying on SSL certificate authentication might well not do so.) (CVE-2021-23214) . This could probably be abused to inject faked responses to the client's first few queries, although other details of libpq's behavior make that harder than it sounds. A different line of attack is to exfiltrate the client's password, or other sensitive data that might be sent early in the session. That has been shown to be possible with a server vulnerable to CVE-2021-23214. (CVE-2021-23222) . The PostgreSQL Project thanks Jacob Champion for reporting these problems. . * Flatten debian/*.lintian-overrides symlinks to fix salsa CI. postgresql-13 (13.4-3) unstable; urgency=medium . * Cherry-pick riscv spinlocks patch from upstream. (Closes: #993217) postgresql-13 (13.4-2) unstable; urgency=medium . * Enable spinlocks on riscv64. * Fix awk to be mawk, spotted by Yangfl. (Closes: #987786) * B-D on autoconf2.69. (Closes: #978886) * Spanish debconf translation by Jonathan Bustillos, thanks! (Closes: #986775) * Flatten debian/*.lintian-overrides symlinks. postgresql-13 (13.4-1) unstable; urgency=medium . * New upstream version. . + Fix mis-planning of repeated application of a projection step (Tom Lane) . The planner could create an incorrect plan in cases where two ProjectionPaths were stacked on top of each other. The only known way to trigger that situation involves parallel sort operations, but there may be other instances. The result would be crashes or incorrect query results. Disclosure of server memory contents is also possible. (CVE-2021-3677) . + Disallow SSL renegotiation more completely (Michael Paquier) . SSL renegotiation has been disabled for some time, but the server would still cooperate with a client-initiated renegotiation request. A maliciously crafted renegotiation request could result in a server crash (see OpenSSL issue CVE-2021-3449). Disable the feature altogether on OpenSSL versions that permit doing so, which are 1.1.0h and newer. . * Remove obsolete #dbg# and #PIE# code. privoxy (3.0.32-2+deb11u1) bullseye; urgency=medium . * 53_CVE-2021-44540: get_url_spec_param(): Free memory of compiled pattern spec before bailing (CVE-2021-44540). * 54_CVE-2021-44541: process_encrypted_request_headers(): Free header memory when failing to get the request destination (CVE-2021-44541). * 55_CVE-2021-44542: send_http_request(): Prevent memory leaks when handling errors (CVE-2021-44542). * 56_CVE-2021-44543: cgi_error_no_template(): Encode the template name to prevent XSS (CVE-2021-44543). publicsuffix (20211207.1025-0+deb11u1) bullseye; urgency=medium . * new upstream publicsuffix data publicsuffix (20211109.1735-1) unstable; urgency=medium . * new upstream version publicsuffix (20211109.1735-0+deb11u1) bullseye; urgency=medium . * new upstream publicsuffix data publicsuffix (20211109.1735-0+deb10u1) buster; urgency=medium . * new upstream publicsuffix data python-django (2:2.2.25-1~deb11u1) bullseye; urgency=medium . * New upstream security release: . - CVE-2021-44420: Potential bypass of an upstream access control based on URL paths. . Full details are available here: . * Update gbp.conf for bullseye release. python-eventlet (0.26.1-7+deb11u1) bullseye; urgency=medium . [ Filippo Giunchedi ] * Fix dnspython 2 compat See also https://github.com/eventlet/eventlet/pull/722 and https://phabricator.wikimedia.org/T283714 python-virtualenv (20.4.0+ds-2+deb11u1) bullseye; urgency=medium . * include-pkg_resources.patch: Avoid KeyError when building a virtualenv with --no-setuptools, thanks Mathieu Parent. (Closes: #994953) qemu (1:5.2+dfsg-11+deb11u1) bullseye-security; urgency=medium . [ Michael Tokarev ] * usbredir-fix-free-call-CVE-2021-3682.patch Closes: #991911, CVE-2021-3682: wrong free in usbredir in bufp_alloc() * uas-add-stream-number-sanity-checks-CVE-2021-3713.patch Closes: #992727, CVE-2021-3713: an OOB write to UASDevice fields in UAS device emulation code * virtio-net-fix-use-after-unmap-free-for-sg-CVE-2021-3748.patch Closes: #993401, CVE-2021-3748: use-after-free in virtio_net_receive_rcu * ati_2d-fix-buffer-overflow-in-ati_2d_blt-CVE-2021-3638.patch Closes: #992726, CVE-2021-3638: inconsistent check in ati_2d_blt() may lead to out-of-bounds write * vhost-user-gpu fixes from upstream, 7 patches: CVE-2021-3544: multiple memory leaks CVE-2021-3545: information disclosure due to uninitialized memory reads CVE-2021-3546: out-of-bounds write in virgl_cmd_get_capset() Closes: #989042, CVE-2021-3544, CVE-2021-3545, CVE-2021-3546 . [ Cyril Brulebois ] * linux-user-elfload-fix-address-calculation-in-fallback.patch This fixes problems with some access to an unmounted /proc, as seen while building images for the Raspberry Pi devices. With thanks to Diederik de Haas for the report and to Bernhard Übelacker for pinpointing the upstream fix to backport. (Closes: #988174) ros-ros-comm (1.15.9+ds1-7+deb11u1) bullseye; urgency=medium . * Add https://github.com/ros/ros_comm/pull/2185 (Fix CVE-2021-37146) roundcube (1.4.12+dfsg.1-1~deb11u1) bullseye-security; urgency=high . * New bugfix/security upstream release (closes: #1000156), with fixes for: + CVE-2021-44025: XSS issue in handling attachment filename extension in mimetype mismatch warning; and + CVE-2021-44026: possible SQL injection via some session variables. * d/gbp.conf: Rename upstream branch to upstream/release-1.4. * d/salsa-ci.yml: Set RELEASE=bullseye. * Refresh d/patches. roundcube (1.4.12+dfsg.1-1~bpo10+1) buster-backports; urgency=medium . * Rebuild for buster-backports. . roundcube (1.4.12+dfsg.1-1~deb11u1) bullseye-security; urgency=high . * New bugfix/security upstream release (closes: #1000156), with fixes for: + CVE-2021-44025: XSS issue in handling attachment filename extension in mimetype mismatch warning; and + CVE-2021-44026: possible SQL injection via some session variables. * d/gbp.conf: Rename upstream branch to upstream/release-1.4. * d/salsa-ci.yml: Set RELEASE=bullseye. * Refresh d/patches. ruby-httpclient (2.8.3-3+deb11u1) bullseye; urgency=medium . * Add simple autopkgtest to check a basic SSL connection * Add patch to use the system certificate store (Closes: #995448) * debian/rules: remove embedded CA certificate store * Add dependency on ca-certificates ruby-httpclient (2.8.3-3+deb10u1) buster; urgency=medium . * Add simple autopkgtest to check a basic SSL connection * Add patch to use the system certificate store (Closes: #995448) * debian/rules: remove embedded CA certificate store * Add dependency on ca-certificates ruby-httpclient (2.8.3-3) unstable; urgency=medium . [ Debian Janitor ] * Trim trailing whitespace. * Use secure copyright file specification URI. * debian/copyright: use spaces rather than tabs to start continuation lines. * Set debhelper-compat version in Build-Depends. * Set upstream metadata fields: Bug-Database, Bug-Submit, Repository, Repository-Browse. * Update standards version to 4.5.0, no changes needed. * Remove MIA uploader Ryan Niebur . (Closes: #856376) . [ Utkarsh Gupta ] * Add salsa-ci.yml * Add patch to disable tests related to HTTP_PROXY and other related issues (proxy, et al) because LP builders don't like them! :D (Closes: #861456) rustc-mozilla (1.51.0+dfsg1-1~deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Backport to bullseye. * stage0 build. + Use arm-unknown-linux-gnueabi target for armel. * Reduce debugging symbols on i386 to avoid FTBFS due to OOM. rustc-mozilla (1.51.0+dfsg1-1~deb10u1) buster; urgency=medium . * Non-maintainer upload. * Backport to buster. * stage0 build. + Use arm-unknown-linux-gnueabi target for armel. * Disable wasm. * Reduce debugging symbols on i386 to avoid FTBFS due to OOM. * Use debhelper compat level 9 * Replace gcc-mingw-w64-x86-64-posix by gcc-mingw-w64-x86-64 salt (3002.6+dfsg1-4+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fix CVE-2021-21996: Jonathan Schlue discovered that a user who has control of the source, and source_hash URLs can gain full file system access as root on a salt minion. samba (2:4.13.13+dfsg-1~deb11u2) bullseye-security; urgency=high . * This is a security release in order to address the following defects: - CVE-2016-2124: don't fallback to non spnego authentication if we require kerberos - MS CVE-2020-17049 in Samba: 'Bronze bit' S4U2Proxy Constrained Delegation bypass - CVE-2020-25717: A user on the domain can become root on domain members - CVE-2020-25718: An RODC can issue (forge) administrator tickets to other servers + Bump build-depends ldb >= 2.2.3 - CVE-2020-25719: AD DC Username based races when no PAC is given - CVE-2020-25721: Kerberos acceptors need easy access to stable AD identifiers (eg objectSid) - CVE-2020-25722: AD DC UPN vs samAccountName not checked (top-level bug for AD DC validation issues) - CVE-2021-3738: crash in dsdb stack - CVE-2021-23192: dcerpc requests don't check all fragments against the first auth_state + Update d/samba-libs.install for libdcerpc-pkt-auth.so.0 samba (2:4.13.13+dfsg-1~deb11u1) bullseye-security; urgency=high . * Upload to bullseye-security squashfs-tools (1:4.4-2+deb11u2) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * unsquashfs: use squashfs_closedir() to delete directory * unsquashfs: dynamically allocate name * unsquashfs: use linked list to store directory names * Unsquashfs: additional write outside destination directory exploit fix (CVE-2021-41072) (Closes: #994262) * Unsquashfs: Add makefile entry for unsquash-12.o strongswan (5.9.1-1+deb11u1) bullseye-security; urgency=medium . * Reject RSASSA-PSS params with negative salt length - fix remote denial of service (CVE-2021-41990) * Prevent crash due to integer overflow / sign change - fix remote denial of service (CVE-2021-41991) * d/gpp.conf: track bullseye branches supysonic (0.6.2+ds-3+deb11u1) bullseye; urgency=medium . * d/patches, d/links: Symlink jquery instead of loading it directly. Closes: #990148. * d/links: Use the minimized bootstrap CSS files. Closes: #990152. tomcat9 (9.0.43-2~deb11u3) bullseye-security; urgency=high . * Team upload. * Fix CVE-2021-42340: Apache Tomcat did not properly release an HTTP upgrade connection for WebSocket connections once the WebSocket connection was closed. This created a memory leak that, over time, could lead to a denial of service via an OutOfMemoryError. tomcat9 (9.0.43-2~deb11u2) bullseye-security; urgency=high . * Team upload. * CVE-2021-30640: Fix NullPointerException. If no userRoleAttribute is specified in the user's Realm configuration its default value will be null. This will cause a NPE in the methods doFilterEscaping and doAttributeValueEscaping. This is upstream bug https://bz.apache.org/bugzilla/show_bug.cgi?id=65308 * Set the fileOwner of catalina.out to tomcat explicitly. Thanks to Adam Cecile for the report. (Closes: #987179) * Fix CVE-2021-41079: Apache Tomcat did not properly validate incoming TLS packets. When Tomcat was configured to use NIO+OpenSSL or NIO2+OpenSSL for TLS, a specially crafted packet could be used to trigger an infinite loop resulting in a denial of service. tzdata (2021a-1+deb11u2) bullseye; urgency=medium . * Cherry-pick patches from tzdata-2021d and tzdata-2021e: - 04-fiji-dst.patch: Fiji suspends DST for the 2021/2022 season. - 05-palestine-dst.patch: Palestine will fall back 2021-10-29 (not 2021-10-30) at 01:00. udisks2 (2.9.2-2+deb11u1) bullseye; urgency=medium . * Switch debian-branch to debian/bullseye * Use the mkfs command to format exfat partitions * Add Recommends exfatprogs as preferred alternative (Closes: #992152) * mount options: Always use errors=remount-ro for ext filesystems (CVE-2021-3802) ulfius (2.7.1-1+deb11u2) bullseye; urgency=medium . * d/patches: Uses o_malloc instead of malloc (Closes: #1001384) vim (2:8.2.2434-3+deb11u1) bullseye; urgency=medium . * Switch gbp.conf and CI to bullseye * Remove vim-gtk alternatives during vim-gtk -> vim-gtk3 transition (Closes: #993766) * Backport patches 8.2.3402 and 8.2.3403 to fix heap overflow in :retab (Closes: #994076, CVE-2021-3770) * Backport 8.2.3409 to fix heap overflow (Closes: #994498, CVE-2021-3778) * Backport patch 8.2.3428 to fix use after free (Closes: #994497, CVE-2021-3796) webkit2gtk (2.34.1-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30846, CVE-2021-30851 and CVE-2021-42762. webkit2gtk (2.34.1-1~deb10u1) buster-security; urgency=high . * Rebuild for buster-security. + Fixes CVE-2021-30846, CVE-2021-30851 and CVE-2021-42762. * debian/patches/force-single-process.patch: + Force the single-process mode in Evolution and Geary * debian/control: + Remove Breaks for Evolution < 3.34.1. + Remove build dependency on libwpebackend-fdo-1.0-dev, libmanette-0.2-dev and liblcms2-dev. + Switch build dependency from libenchant-2-dev to libenchant-dev. + Switch build dependencies on libgl-dev and libgles-dev with libgl1-mesa-dev and libgles2-mesa-dev. * Downgrade xdg-desktop-portal-gtk from a recommendation to a suggestion (See #989307) * debian/rules: + Build with -DENABLE_GAMEPAD=OFF -DUSE_LCMS=OFF. webkit2gtk (2.34.0-1) unstable; urgency=medium . * New upstream release. * Bring all changes from the 2.33 (experimental) branch. * debian/rules: + Build with -DUSE_SOUP2=ON. * debian/control: + Add build dependency on liblcms2-dev (bug #880697). + Remove the dummy libwebkit2gtk-4.0-37-gtk2 package. * debian/copyright: + Update copyright information of all files. * debian/gbp.conf: + Update upstream branch name. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/source/lintian-overrides: + Update source-is-missing overrides. * Refresh all patches. webkit2gtk (2.34.0-1~bpo11+1) bullseye-backports; urgency=medium . * Rebuild for bullseye-backports. . webkit2gtk (2.34.0-1) unstable; urgency=medium . * New upstream release. * Bring all changes from the 2.33 (experimental) branch. * debian/rules: + Build with -DUSE_SOUP2=ON. * debian/control: + Add build dependency on liblcms2-dev (bug #880697). + Remove the dummy libwebkit2gtk-4.0-37-gtk2 package. * debian/copyright: + Update copyright information of all files. * debian/gbp.conf: + Update upstream branch name. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/source/lintian-overrides: + Update source-is-missing overrides. * Refresh all patches. webkit2gtk (2.33.91-1) experimental; urgency=medium . * New upstream development release. * debian/source/lintian-overrides: + Update source-is-missing override. webkit2gtk (2.33.90-1) experimental; urgency=medium . * New upstream development release. * Refresh all patches and drop debian/patches/fix-gtkdoc-build. * debian/copyright: + Update copyright information of all files. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/source/lintian-overrides: + Update source-is-missing override. webkit2gtk (2.33.3-1) experimental; urgency=medium . * New upstream development release. * Refresh all patches. * debian/patches/fix-gtkdoc-build.patch: + Fix gtk-doc build (WebKit bug #229152). * debian/control: + Remove the dummy libwebkit2gtk-4.0-37-gtk2 package. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/source/lintian-overrides: + Update source-is-missing override. webkit2gtk (2.33.2-1) experimental; urgency=medium . * New upstream development release. * Update fix-ftbfs-m68k.patch and drop fix-mips-page-size.patch. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/copyright: + Update copyright information of all files. webkit2gtk (2.33.1-1) experimental; urgency=medium . * New upstream development release. * debian/patches/fix-ftbfs-m68k.patch: + Compile BytecodeGenerator.cpp without optimizations on m68k and sh4, otherwise the build fails due to gcc bugs. * debian/watch, debian/gbp.conf: + Update for 2.33.x packages in experimental. * Refresh all patches. * debian/rules: + Build with -DUSE_SOUP2=ON. * debian/libwebkit2gtk-4.0-37.symbols: + Update symbols. * debian/copyright: + Update copyright information of all files. * debian/control: + Add build dependency on liblcms2-dev (Closes: #880697). * debian/source/lintian-overrides: + Update source-is-missing override. webkit2gtk (2.32.4-1) unstable; urgency=high . * New upstream release. * debian/source/lintian-overrides: + Update source-is-missing overrides. wget (1.21-1+deb11u1) bullseye; urgency=medium . * Non-maintainer upload. * Apply upstream patch to fix downloads over 2GB on 32-bit systems. closes: bug#999744 wireshark (3.4.10-0+deb11u1) bullseye-security; urgency=medium . * New upstream version 3.4.10 - security fixes: - Bluetooth DHT dissector crash (CVE-2021-39929) - Bluetooth HCI_ISO dissector crash (CVE-2021-39926) - Bluetooth SDP dissector crash (CVE-2021-39925) - Bluetooth DHT dissector large loop (CVE-2021-39924) - PNRP dissector large loop - C12.22 dissector crash (CVE-2021-39922) - IEEE 802.11 dissector crash (CVE-2021-39928) - Modbus dissector crash (CVE-2021-39921) - IPPUSB dissector crash (CVE-2021-39920) * debian/gitlab-ci.yml: Test against bullseye wireshark (3.4.9-1) unstable; urgency=medium . [ Debian Janitor ] * Trim trailing whitespace. Changes-By: lintian-brush Fixes: lintian: trailing-whitespace See-also: https://lintian.debian.org/tags/trailing-whitespace.html . [ Balint Reczey ] * New upstream version * Update symbols * debian/copyright: Fix typo and remove patterns for removed files * debian/control: Drop Conflists: and Replaces: referring to very old versions * Bump compat level to 12 keeping backports in mind * debian/rules: - Drop override_dh_strip doing ddeb migration. This is not needed for quite some time. - Don't pass --parallel to dh, it is the default now - Turn on BUILD_corbaidl2wrs to ship idl2wrs man page - Pass build idl2deb man page in arch:any build, too * Bump standards version, no changes were needed * Drop obsoleted override for not applied patch * Override false positive missing-build-dependency-for-dh-addon Lintian warning wireshark (3.4.8-1) unstable; urgency=medium . * New upstream version * debian/control: Revert to using my personal email address as the Uploader wireshark (3.4.7-1) unstable; urgency=medium . * Upload to unstable . wireshark (3.4.7-1~exp1) experimental; urgency=medium . * New upstream version - security fixes: - DNP dissector crash (CVE-2021-22235) * Update symbols. . wireshark (3.4.6-1~exp1) experimental; urgency=medium . * New upstream version 3.4.5 - security fixes (Closes: #987853): - MS-WSP dissector excessive memory consumption (CVE-2021-22207) * debian/gbp.conf: Drop git-dch configuration. With the move from Gerrit to GitLab there is no easy way of distinguishing upstream commits. * New upstream version 3.4.6 - security fixes: - MS-WSP dissector excessive memory consumption. (CVE-2021-22207) * Cherrypick upstream commit for SMCD(v2) support (LP: #1887933) wireshark (3.4.7-1~exp1) experimental; urgency=medium . * New upstream version - security fixes: - DNP dissector crash (CVE-2021-22235) * Update symbols. wireshark (3.4.6-1~exp1) experimental; urgency=medium . * New upstream version 3.4.5 - security fixes (Closes: #987853): - MS-WSP dissector excessive memory consumption (CVE-2021-22207) * debian/gbp.conf: Drop git-dch configuration. With the move from Gerrit to GitLab there is no easy way of distinguishing upstream commits. * New upstream version 3.4.6 - security fixes: - MS-WSP dissector excessive memory consumption. (CVE-2021-22207) * Cherrypick upstream commit for SMCD(v2) support (LP: #1887933) wordpress (5.7.3+dfsg1-0+deb11u1) bullseye-security; urgency=medium . * Security release, fixes 2 bugs: - CVE-2021-39200 - Disclosure in wp_die() Closes: #994060 - CVE-2021-39201 - XSS in editor Closes: #994059 wpewebkit (2.34.1-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30846, CVE-2021-30851 and CVE-2021-42762. wpewebkit (2.32.4-1) unstable; urgency=high . * New upstream release. * disable-external-audio-rendering.patch: + Drop this patch now for bookworm. * debian/source/lintian-overrides: + Update source-is-missing overrides. xen (4.14.3+32-g9de3671772-1~deb11u1) bullseye-security; urgency=medium . * d/salsa-ci.yml: Set RELEASE variable to bullseye * Rebuild for bullseye-security xen (4.14.3-1) unstable; urgency=high . * Update to new upstream version 4.14.3, which also contains security fixes for the following issues: - IOMMU page mapping issues on x86 XSA-378 CVE-2021-28694 CVE-2021-28695 CVE-2021-28696 - grant table v2 status pages may remain accessible after de-allocation XSA-379 CVE-2021-28697 - long running loops in grant table handling XSA-380 CVE-2021-28698 - inadequate grant-v2 status frames array bounds check XSA-382 CVE-2021-28699 - xen/arm: No memory limit for dom0less domUs XSA-383 CVE-2021-28700 - Another race in XENMAPSPACE_grant_table handling XSA-384 CVE-2021-28701 ====================================== Sat, 09 Oct 2021 - Debian 11.1 released ====================================== apache2 (2.4.48-3.1+deb11u1) bullseye-security; urgency=medium . * Fix mod_proxy HTTP2 request line injection (Closes: CVE-2021-33193) apr (1.7.0-6+deb11u1) bullseye; urgency=medium . * Team upload . [ Salvatore Bonaccorso ] * Out-of-bounds array dereference in apr_time_exp*() functions (CVE-2021-35940) (Closes: #992789) atftp (0.7.git20120829-3.3+deb11u1) bullseye; urgency=medium . * Fix for CVE-2021-41054 (Closes: #994895) automysqlbackup (2.6+debian.4-3+deb11u1) bullseye; urgency=medium . * Fix borken cp code when using LATEST=yes (Closes: #986462). base-files (11.1+deb11u1) bullseye; urgency=medium . * Change /etc/debian_version to 11.1, for Debian 11.1 point release. btrbk (0.27.1-1.1+deb11u1) bullseye; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2021-38173 fixes a security vulnerability which would have allowed for an arbitrary code execution c-ares (1.17.1-1+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Missing input validation on hostnames returned by DNS servers (CVE-2021-3672) - ares_expand_name() should escape more characters - ares_expand_name(): fix formatting and handling of root name response clamav (0.103.3+dfsg-0+deb11u1) bullseye; urgency=medium . * Import 0.103.3 - Update symbol file. - Regression: clamdscan segfaults with --fdpass --multipass and ExcludePath (Closes: #988218). * Remove clamav user on purge (Closes: #987861). * Remove freshclam.dat on purge. clamav (0.103.3+dfsg-0+deb10u1) buster; urgency=medium . * Import 0.103.3 - Update symbol file. - Regression: clamdscan segfaults with --fdpass --multipass and ExcludePath (Closes: #988218). * Remove clamav user on purge (Closes: #987861). * Remove freshclam.dat on purge. cloud-init (20.4.1-2+deb11u1) bullseye; urgency=high . * Team upload. * cherry-pick upstream fix for duplicate includes in /etc/sudoers (Closes: #991629) cyrus-imapd (3.2.6-2+deb11u1) bullseye; urgency=high . * Replace string hashing algorithm (Closes: #993433, CVE-2021-33582) dazzdb (1.0+git20201103.8d98c37-1+deb11u1) bullseye; urgency=medium . [ Aurelien Jarno ] * Fix a use-after-free in DBstats (Closes: #993770) debian-edu-config (2.11.56+deb11u1) bullseye; urgency=medium . [ Wolfgang Schweer ] * Adjust sbin/debian-edu-ltsp-install. (Closes: #993935) Thanks to Dominik George for spotting and reporting the issue. - Extend main server related exclude list. - Add slapd and xrdp-sesman to the list of masked services. - Ensure home directory access after above changes. debian-installer (20210731+deb11u1) bullseye; urgency=medium . * Set USE_PROPOSED_UPDATES=1 for the bullseye stable branch. * Update USE_UDEBS_FROM default from unstable to bullseye, so that users don't have to know about the debian/rules heuristics when performing manual, local builds. * Bump Linux kernel ABI to 5.10.0-9. debian-installer-netboot-images (20210731+deb11u1) bullseye; urgency=medium . * Update to 20210731+deb11u1, from bullseye-proposed-updates. * Set DISTRIBUTION to bullseye-proposed-updates (instead of bullseye), and DISTRIBUTION_FALLBACK to bullseye (instead of unset) to fetch d-i from p-u before the point release, while avoiding an FTBFS after the point release (See: #902226). * Use Packages.xz instead of Packages.gz (bullseye-proposed-updates only features the former). detox (1.3.3-1+deb11u1) bullseye; urgency=medium . * debian/patches/010_fix-largefiles.patch: created to fix 'Value too large for defined data type' on ARM. This issue is related to large files and was fixed by upstream in configure.ac, adding AC_SYS_LARGEFILE. (Closes: #992542) devscripts (2.21.3+deb11u1) bullseye; urgency=medium . [ Mattia Rizzolo ] * debchange: + Target bullseye-backports with --bpo. dlt-viewer (2.21.2+dfsg-2+deb11u1) bullseye; urgency=medium . * Add missing qdlt/qdlt*.h header files to dev package (Closes: #993562) dpdk (20.11.3-1~deb11u1) bullseye; urgency=medium . * Upload to stable-proposed-updates. . dpdk (20.11.3-1) unstable; urgency=medium . [ Henning Schild ] * d/rules: honor "nocheck" in test override . [ Christian Ehrhardt ] * Merge upstream stable release 20.11.3 * drop d/p/0001-rib-fix-insertion-in-some-cases.patch [applied upstream] * drop d/p/test-catch-coredumps.patch [applied upstream] * d/p/disable_autopkgtest_fails.patch: disable failures that do not represent regressions * d/p/disable_armhf_autopkgtest_fails.patch: disable arm failures that do not represent regressions * d/p/disable_ppc64_autopkgtest_fails.patch: skip known false-positives (LP: #1939861) . [ Luca Boccassi ] * Fix d/watch file syntax dpdk (20.11.2-1) experimental; urgency=medium . * New upstream release candidate 20.11.2 For details see https://doc.dpdk.org/guides/rel_notes/release_20_11.html * Fix uscan regex to match 20.11.x * Drop test-catch-coredumps.patch, merged upstream dpdk (20.11.1-4) experimental; urgency=medium . * Add disable_lcores_autotest_ppc.patch to fix ppc64el autopkgtest dpdk (20.11.1-3) experimental; urgency=medium . * Add patch to fix running build tests on ppc64el dpdk (20.11.1-2) experimental; urgency=medium . * Autopkgtest: simplify dependencies * Autopkgtest: remove architecture check script * Autopkgtest: enable root-less fast test suite dpdk (20.11.1-1) experimental; urgency=medium . * Merge LTS stable release 20.11.1 - drop patch d/p/0001-rib-fix-insertion-in-some-cases.patch included in 20.11.1 * Do not build-test on arm64 (HW dependent) exiv2 (0.27.3-3+deb11u1) bullseye-security; urgency=medium . * CVE-2021-31291 (Closes: #991705) * CVE-2021-31292 (Closes: #991706) fetchmail (6.4.16-4+deb11u1) bullseye; urgency=medium . * Backport upstream regression fix for 6.4.20's security (CVE-2021-36386) fix. * Fix envelope segmentation fault (closes: #992400). firefox-esr (78.14.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2021-39, also known as CVE-2021-38493. . * debian/import-tar.py, debian/repack.py: Fixed for python 3.9. firefox-esr (78.13.0esr-1~deb11u1) bullseye-security; urgency=medium . * New upstream release. * Fixes for mfsa2021-34, also known as: CVE-2021-29986, CVE-2021-29988, CVE-2021-29984, CVE-2021-29980, CVE-2021-29985, CVE-2021-29989. flatpak (1.10.3-0+deb11u1) bullseye; urgency=medium . * New upstream stable release - Don't inherit an unusual $XDG_RUNTIME_DIR setting into the sandbox (regression in 1.8.5 and 1.10.0) - Improve unit test coverage - Various other changes that were already in earlier releases to Debian * Drop all patches, applied upstream * d/gbp.conf, d/control: Branch for bullseye * d/watch: Restrict to 1.10.x versions for bullseye freeradius (3.0.21+dfsg-2.2+deb11u1) bullseye; urgency=medium . * Cherry-Pick upstream fix for a crash bug (Closes: #992036) * Cherry-pick upstream fix to add missing continuation in postgresql sample config (Closes: #992207) * d/gbp.conf for the debian/bullseye branch galera-3 (25.3.34-0+deb11u1) bullseye; urgency=medium . * New upstream version 25.3.34. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-25.3.34.txt * Restore CK_TIMEOUT_MULTIPLIER in debian/rules to avoid having various slow builds and CI runs fail in vain * Includes new upstream version 25.3.33 which necessitates to follow upstream change and switch from SCons to CMake, otherwise building from sources would fail * Remove patches applied upstream or obsoleted by SCons->CMake change * Add Lintian overrides for libgalera_smm.so that are intentional galera-3 (25.3.33-1) unstable; urgency=low . * New upstream version 25.3.33 * Follow upstream change and switch from SCons to CMake. This is necessary, otherwise building from sources would fail. * Remove patches applied upstream or obsoleted by SCons->CMake change * Add Lintian overrides for libgalera_smm.so that are intentional galera-4 (26.4.9-0+deb11u1) bullseye; urgency=medium . [ Otto Kekäläinen ] * New upstream release 26.4.9. Includes multiple bug fixes, see https://github.com/codership/documentation/blob/master/release-notes/release-notes-galera-26.4.9.txt * Restore CK_TIMEOUT_MULTIPLIER in debian rules to avoid unnecassary test failures due to slow builders . [ Andreas Beckmann ] * Solve circular Conflicts with galera-3 by no longer providing a virtual galera package (Closes: #990708) ghostscript (9.53.3~dfsg-7+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Include device specifier strings in access validation (CVE-2021-3781) (Closes: #994011) glewlwyd (2.5.2-2+deb11u1) bullseye; urgency=medium . * d/patches: Fix CVE-2021-40818 possible buffer overflow during FIDO2 signature validation in webauthn registration glibc (2.31-13+deb11u2) bullseye; urgency=medium . [ Aurelien Jarno ] * debian/debhelper.in/libc.preinst: do not try to detect if debconf is available when the debconf frontend has already been loaded. glibc (2.31-13+deb11u1) bullseye; urgency=medium . [ Aurelien Jarno ] * debian/script.in/nsscheck.sh: restart openssh-server even if it has been deconfigured during the upgrade. Closes: #990069. * debian/debhelper.in/libc.preinst: fix text fallback when debconf is unusable, the current debconf configuration should be queried without first sourcing the confmodule to avoid losing control of the tty. Big thanks to Colin Watson for the help diagnosing the issue and for providing an easy reproducer. Closes: #994042. gnome-maps (3.38.6-0+deb11u1) bullseye; urgency=medium . * d/control.in, d/gbp.conf, d/watch: Target 3.38.x for bullseye * New upstream stable release - Fix a bug where place details get lost after searching again for the same place - Avoid dark-mode background pattern when wrapping around from -180 to 180 degrees longitude, working around a libchamplain bug - Only grab focus onto next route entry in sidebar if it's empty. This avoids a hang when dragging around route markers. - Don't save an invalid location when moving the view and immediately quitting the app - Fix handling of different attribution logos, which is necessary now that street and aerial maps come from different providers - Update fallback file used if details of map providers cannot be downloaded - Don't try to set aerial tiles if not available. This avoids a crash if aerial maps were saved as the last-used map type in GSettings, and at next startup the service has dropped support. (Closes: #990618) - Fix a regression when signing in for Open Street Map editing - Translation update: nb gnome-shell (3.38.6-1~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye . gnome-shell (3.38.6-1) unstable; urgency=medium . * Team upload * New upstream release - gdm user interface fixes + Don't limit timed-login progress bar to the width of the username if it's short + Make sure authentication cancellation is handled correctly + Improve fingerprint authentication handling + Don't retry authentication if services are unavailable - Fix word suggestions in on-screen keyboard - Fix freeze after closing some modal dialogs with gjs 1.68.x (LP: #1918666) - Fix double-free crash in calendar on non-x86 (LP: #1915929) - Improve OSK compatibility with gjs 1.68.x (LP: #1918738) - Fix input-method popup visibility over fullscreen applications - Fix a crash if an app moves between monitors during startup - Fix D-Bus-initiated app focus changes - Make sure to return a value from D-Bus methods so callers won't time out - Fix runtime warnings related to magnifier and shutdown - Make sure power menu stays in sync with upower - Use mallinfo2() instead of deprecated mallinfo() if glibc is new enough (not applicable in Debian yet) * d/gbp.conf, d/control.in: Update VCS details for debian/unstable branch gnome-shell (3.38.4-2) experimental; urgency=medium . * debian/patches: Import upstream patches needed to support libgweather 40. libgweather 40 had an internal API change that caused runtime issues, so we need to update the shell code in order to make the shell to work and show the weather information. * debian/control: Bump runtime dependency on gweather 40 gpac (1.0.1+dfsg1-4+deb11u1) bullseye-security; urgency=medium . * Fix multiple security issues - CVE-2021-21861 - CVE-2021-21860 - CVE-2021-21859 - CVE-2021-21858 - CVE-2021-21857 - CVE-2021-21855 - CVE-2021-21854 - CVE-2021-21853 - CVE-2021-21852 - CVE-2021-21850 - CVE-2021-21849 - CVE-2021-21848 - CVE-2021-21847 - CVE-2021-21846 - CVE-2021-21845 - CVE-2021-21844 - CVE-2021-21843 - CVE-2021-21842 - CVE-2021-21841 - CVE-2021-21840 - CVE-2021-21839 - CVE-2021-21838 - CVE-2021-21837 - CVE-2021-21836 - CVE-2021-21834 grilo (0.3.13-1+deb11u1) bullseye-security; urgency=high . * fix-tls-cert-validation.patch: - Fix TLS cert validation not being done for any network call (Closes: #992971, CVE-2021-39365). haproxy (2.2.9-2+deb11u2) bullseye-security; urgency=high . * d/patches: fix missing header name length check in HTX (CVE-2021-40346). * d/patches: h2: match absolute-path not path-absolute for :path. Closes: #993303. haproxy (2.2.9-2+deb11u1) bullseye-security; urgency=high . * Fix HTTP request smuggling via HTTP/2 desync attacks. hdf5 (1.10.6+repack-4+deb11u1) bullseye; urgency=medium . [ Andreas Beckmann ] * libhdf5-mpich-dev: bump libmpich-dev dependency to (>= 3.3-3~) (Closes: #992068) iotop-c (1.17-1+deb11u1) bullseye; urgency=medium . * Backport bugfix from 1.18 - fix OOB access caused by UTF8 process names jailkit (2.21-4+deb11u1) bullseye; urgency=medium . * debian/patches/: - 050_fix-incorrect-device.patch: created to fix the incorrect calc of device major number. Without this patch, jailkit won't be able to create jails that need a device from /dev. Thanks to Jesse Norell . (Closes: #992422) - 060_fix-typo-jk_init.patch: created to fix a typo in /usr/sbin/jk_init. Without this patch, jailkit won't be able to check for the presence of some libraries. Thanks to Peter Viskup . (Closes: #992420) java-atk-wrapper (0.38.0-2+deb11u1) bullseye; urgency=medium . * patches/dbus: Also detect at-spi through dbus. krb5 (1.18.3-6+deb11u1) bullseye; urgency=medium . * Fix KDC null dereference crash on FAST request with no server field, CVE-2021-37750, Closes: #992607 * Fix memory leak in krb5_gss_inquire_cred, Closes: #991140 ledgersmb (1.6.9+ds-2+deb11u3) bullseye-security; urgency=medium . * Fix a regression in the display of some search results ledgersmb (1.6.9+ds-2+deb11u2) bullseye-security; urgency=medium . * Fix CVE-2021-3731, thanks to Erik Huelsmann ledgersmb (1.6.9+ds-2+deb11u1) bullseye-security; urgency=medium . * Fix CVE-2021-3693 and CVE-2021-3694, thanks to Erik Huelsmann libavif (0.8.4-2+deb11u1) bullseye; urgency=medium . * debian/patches/c6acdf6b7c69c9d23917cf814a3b17ce639a7266.patch: Add upstream fix to correct libdir in libavif.pc pkgconfig file. (Closes: #994144) libbluray (1:1.2.1-4+deb11u1) bullseye; urgency=medium . * debian/gbp.conf: Switch to bullseye branch * debian/: Switch to embedded libasm. The version from libasm-java is too new. (Closes: #991991) libdatetime-timezone-perl (1:2.47-1+2021b) bullseye; urgency=medium . * Update to Olson database version 2021b. This update includes contemporary changes for Jordan and Samoa. libencode-perl (3.08-1+deb11u1) bullseye-security; urgency=high . * [SECURITY] CVE-2021-36770: Encode loading code from working directory libslirp (4.4.0-1+deb11u2) bullseye; urgency=medium . * fix-DHCP-broken-in-libslirp-v4.6.0.patch from upstream this fixes previous change in this area (bootp-limit-vendor-area-to-input-packet-CVE-2021-3592.patch). https://gitlab.freedesktop.org/slirp/libslirp/-/issues/48 . libslirp (4.4.0-1+deb11u1) bullseye; urgency=medium . * import a few patches from upstream to fix 4 security issues: - add-mtod_check.patch (preparational) - bootp-limit-vendor-area-to-input-packet-CVE-2021-3592.patch, bootp-check-bootp_input-buffer-size-CVE-2021-3592.patch Closes: #989993, CVE-2021-3592: invalid pointer init in bootp_init() - tftp-check-tftp_input-buffer-size-CVE-2021-3595.patch, tftp-introduce-a-header-structure-CVE-2021-3595.patch Closes: #989996, CVE-2021-3595: invalid pointer init in tftp_input() - udp-check-upd_input-buffer-size-CVE-2021-3594.patch Closes: #989995, CVE-2021-3594: invalid pointer init in udp_input() - upd6-check-udp6_input-buffer-size-CVE-2021-3593.patch Closes: #989994, CVE-2021-3593: invalid pointer init in udp6_input() libslirp (4.4.0-1+deb11u1) bullseye; urgency=medium . * import a few patches from upstream to fix 4 security issues: - add-mtod_check.patch (preparational) - bootp-limit-vendor-area-to-input-packet-CVE-2021-3592.patch, bootp-check-bootp_input-buffer-size-CVE-2021-3592.patch Closes: #989993, CVE-2021-3592: invalid pointer init in bootp_init() - tftp-check-tftp_input-buffer-size-CVE-2021-3595.patch, tftp-introduce-a-header-structure-CVE-2021-3595.patch Closes: #989996, CVE-2021-3595: invalid pointer init in tftp_input() - udp-check-upd_input-buffer-size-CVE-2021-3594.patch Closes: #989995, CVE-2021-3594: invalid pointer init in udp_input() - upd6-check-udp6_input-buffer-size-CVE-2021-3593.patch Closes: #989994, CVE-2021-3593: invalid pointer init in udp6_input() libspf2 (1.2.10-7.1~deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Rebuild for bullseye-security. . libssh (0.9.5-1+deb11u1) bullseye-security; urgency=high . * dh-gex: Avoid memory leaks. Add 0001-dh-gex-Avoid-memory-leaks.patch: Backported from upstream 0.9.6 release. * Fix handshake bug with AEAD ciphers and no HMAC overlap. Add 0002-Fix-handshake-bug-with-AEAD-ciphers-and-no-HMAC-over.patch and 0003-Add-initial-server-algorithm-test-for-no-HMAC-overla.patch: Backport fix and test from upstream 0.9.6 release. * Create a separate length for session_id. Add 0004-CVE-2021-3634-Create-a-separate-length-for-session_i.patch and 0005-tests-Simple-reproducer-for-rekeying-with-different-.patch: Backport fix and test from upstream 0.9.6 release. CVE-2021-3634 (Closes: #993046) linux (5.10.70-1) bullseye; urgency=medium . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.47 - module: limit enabling module.sig_enforce (CVE-2021-35039) - drm: add a locked version of drm_is_current_master - drm/nouveau: wait for moving fence after pinning v2 - drm/radeon: wait for moving fence after pinning - drm/amdgpu: wait for moving fence after pinning - [arm64] mmc: meson-gx: use memcpy_to/fromio for dram-access-quirk - [arm64] Ignore any DMA offsets in the max_zone_phys() calculation - [arm64] Force NO_BLOCK_MAPPINGS if crashkernel reservation is required - [arm64] spi: spi-nxp-fspi: move the register operation after the clock enable - [arm*] drm/vc4: hdmi: Move the HSM clock enable to runtime_pm - [arm*] drm/vc4: hdmi: Make sure the controller is powered in detect - [x86] entry: Fix noinstr fail in __do_fast_syscall_32() - [amd64] x86/xen: Fix noinstr fail in exc_xen_unknown_trap() - locking/lockdep: Improve noinstr vs errors - [x86] perf/x86/lbr: Remove cpuc->lbr_xsave allocation from atomic context - [x86] perf/x86/intel/lbr: Zero the xstate buffer on allocation - [armhf] dmaengine: stm32-mdma: fix PM reference leak in stm32_mdma_alloc_chan_resourc() - mac80211: remove warning in ieee80211_get_sband() - mac80211_hwsim: drop pending frames on stop - cfg80211: call cfg80211_leave_ocb when switching away from OCB - net: ipv4: Remove unneed BUG() function - mac80211: drop multicast fragments - net: ethtool: clear heap allocations for ethtool function - inet: annotate data race in inet_send_prepare() and inet_dgram_connect() - ping: Check return value of function 'ping_queue_rcv_skb' - net: annotate data race in sock_error() - inet: annotate date races around sk->sk_txhash - net/packet: annotate data race in packet_sendmsg() - net: phy: dp83867: perform soft reset and retain established link - net/packet: annotate accesses to po->bind - net/packet: annotate accesses to po->ifindex - r8152: Avoid memcpy() over-reading of ETH_SS_STATS - r8169: Avoid memcpy() over-reading of ETH_SS_STATS - net: qed: Fix memcpy() overflow of qed_dcbx_params() - mac80211: reset profile_periodicity/ema_ap - mac80211: handle various extensible elements correctly - [x86] PCI: Add AMD RS690 quirk to enable 64-bit DMA - [x86] perf/x86: Track pmu in per-CPU cpu_hw_events - [armhf] pinctrl: stm32: fix the reported number of GPIO lines per bank - i2c: i801: Ensure that SMBHSTSTS_INUSE_STS is cleared when leaving i801_access - gpiolib: cdev: zero padding during conversion to gpioline_info_changed - scsi: sd: Call sd_revalidate_disk() for ioctl(BLKRRPART) - nilfs2: fix memory leak in nilfs_sysfs_delete_device_group - [s390x] stack: fix possible register corruption with stack switch helper - i2c: robotfuzz-osif: fix control-request directions - ceph: must hold snap_rwsem when filling inode for async create - kthread_worker: split code for canceling the delayed work timer - kthread: prevent deadlock when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [x86] fpu: Preserve supervisor states in sanitize_restored_user_xstate() - [x86] fpu: Make init_fpstate correct with optimized XSAVE - mm: add VM_WARN_ON_ONCE_PAGE() macro - mm/rmap: remove unneeded semicolon in page_not_mapped() - mm/rmap: use page_not_mapped in try_to_unmap() - mm, thp: use head page in __migration_entry_wait() - mm/thp: fix __split_huge_pmd_locked() on shmem migration entry - mm/thp: make is_huge_zero_pmd() safe and quicker - mm/thp: try_to_unmap() use TTU_SYNC for safe splitting - mm/thp: fix vma_address() if virtual address below file offset - mm/thp: fix page_address_in_vma() on file THP tails - mm/thp: unmap_mapping_page() to fix THP truncate_cleanup_page() - mm: thp: replace DEBUG_VM BUG with VM_WARN when unmap fails for split - mm: page_vma_mapped_walk(): use page for pvmw->page - mm: page_vma_mapped_walk(): settle PageHuge on entry - mm: page_vma_mapped_walk(): use pmde for *pvmw->pmd - mm: page_vma_mapped_walk(): prettify PVMW_MIGRATION block - mm: page_vma_mapped_walk(): crossing page table boundary - mm: page_vma_mapped_walk(): add a level of indentation - mm: page_vma_mapped_walk(): use goto instead of while (1) - mm: page_vma_mapped_walk(): get vma_address_end() earlier - mm/thp: fix page_vma_mapped_walk() if THP mapped by ptes - mm/thp: another PVMW_SYNC fix in page_vma_mapped_walk() - mm, futex: fix shared futex pgoff on shmem huge page - [x86] KVM: SVM: Call SEV Guest Decommission if ASID binding fails - netfs: fix test for whether we can skip read when writing beyond EOF - Revert "drm: add a locked version of drm_is_current_master" - certs: Add EFI_CERT_X509_GUID support for dbx entries (CVE-2020-26541) - certs: Move load_system_certificate_list to a common function - certs: Add ability to preload revocation certs - integrity: Load mokx variables into the blacklist keyring https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.48 - scsi: sr: Return appropriate error code when disk is ejected - [arm64,armhf] gpio: mxc: Fix disabled interrupt wake-up support - drm/nouveau: fix dma_address check for CPU/GPU sync - RDMA/mlx5: Block FDB rules when not in switchdev mode - [x86] Revert "KVM: x86/mmu: Drop kvm_mmu_extended_role.cr4_la57 hack" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.49 - [powerpc*] KVM: PPC: Book3S HV: Save and restore FSCR in the P9 path - media: uvcvideo: Support devices that report an OT as an entity source - xen/events: reset active flag for lateeoi events later https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.50 - Bluetooth: hci_qca: fix potential GPF - Bluetooth: btqca: Don't modify firmware contents in-place - Bluetooth: Remove spurious error message - ALSA: usb-audio: fix rate on Ozone Z90 USB headset - ALSA: usb-audio: Fix OOB access at proc output - ALSA: firewire-motu: fix stream format for MOTU 8pre FireWire - ALSA: usb-audio: scarlett2: Fix wrong resume call - ALSA: intel8x0: Fix breakage at ac97 clock measurement - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 450 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 445 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 630 G8 - ALSA: hda/realtek: Add another ALC236 variant support - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook x360 830 G8 - ALSA: hda/realtek: Improve fixup for HP Spectre x360 15-df0xxx - ALSA: hda/realtek: Fix bass speaker DAC mapping for Asus UM431D - ALSA: hda/realtek: Apply LED fixup for HP Dragonfly G1, too - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook 830 G8 Notebook PC - media: dvb-usb: fix wrong definition - Input: usbtouchscreen - fix control-request directions - net: can: ems_usb: fix use-after-free in ems_usb_disconnect() - usb: gadget: eem: fix echo command packet response issue - USB: cdc-acm: blacklist Heimann USB Appset device - [arm64,armhf] usb: dwc3: Fix debugfs creation flow - usb: typec: Add the missed altmode_id_remove() in typec_register_altmode() - xhci: solve a double free problem while doing s4 - gfs2: Fix underflow in gfs2_page_mkwrite - gfs2: Fix error handling in init_statfs - copy_page_to_iter(): fix ITER_DISCARD case - iov_iter_fault_in_readable() should do nothing in xarray case - [powerpc*] crypto: nx - Fix memcpy() over-reading in nonce - [amd64] crypto: ccp - Annotate SEV Firmware file names - [armel,armhf] arm_pmu: Fix write counter incorrect in ARMv7 big-endian mode - btrfs: send: fix invalid path for unlink operations after parent orphanization - btrfs: compression: don't try to compress if we don't have enough pages - btrfs: clear defrag status of a root if starting transaction fails - ext4: cleanup in-core orphan list if ext4_truncate() failed to get a transaction handle - ext4: fix kernel infoleak via ext4_extent_header - ext4: fix overflow in ext4_iomap_alloc() - ext4: return error code when ext4_fill_flex_info() fails - ext4: correct the cache_nr in tracepoint ext4_es_shrink_exit - ext4: remove check for zero nr_to_scan in ext4_es_scan() - ext4: fix avefreec in find_group_orlov - ext4: use ext4_grp_locked_error in mb_find_extent - can: gw: synchronize rcu operations before removing gw job entry - can: isotp: isotp_release(): omit unintended hrtimer restart on socket release - can: j1939: j1939_sk_init(): set SOCK_RCU_FREE to call sk_destruct() after RCU is done - can: peak_pciefd: pucan_handle_status(): fix a potential starvation issue in TX path - mac80211: remove iwlwifi specific workaround that broke sta NDP tx - SUNRPC: Fix the batch tasks count wraparound. - SUNRPC: Should wake up the privileged task firstly. - bus: mhi: Wait for M2 state during system resume - mm/gup: fix try_grab_compound_head() race with split_huge_page() - [arm64] perf/smmuv3: Don't trample existing events with global filter - [x86] KVM: nVMX: Handle split-lock #AC exceptions that happen in L2 - [x86] KVM: x86/mmu: Treat NX as used (not reserved) for all !TDP shadow MMUs - [x86] KVM: x86/mmu: Use MMU's role to detect CR4.SMEP value in nested NPT walk - [s390x] cio: dont call css_wait_for_slow_path() inside a lock - [s390x] mm: Fix secure storage access exception handling - f2fs: Prevent swap file in LFS mode - [armhf] rtc: stm32: Fix unbalanced clk_disable_unprepare() on probe error path - iio: light: tcs3472: do not free unallocated IRQ - iio: ltr501: mark register holding upper 8 bits of ALS_DATA{0,1} and PS_DATA as volatile, too - iio: ltr501: ltr559: fix initialization of LTR501_ALS_CONTR - iio: ltr501: ltr501_read_ps(): add missing endianness conversion - iio: accel: bma180: Fix BMA25x bandwidth register values - [arm64] serial: mvebu-uart: fix calculation of clock divisor - [sh4] serial: sh-sci: Stop dmaengine transfer in sci_stop_tx() - serial_cs: Add Option International GSM-Ready 56K/ISDN modem - serial_cs: remove wrong GLOBETROTTER.cis entry - ath9k: Fix kernel NULL pointer dereference during ath_reset_internal() - ssb: sdio: Don't overwrite const buffer if block_write fails - rsi: Assign beacon rate settings to the correct rate_info descriptor field - rsi: fix AP mode with WPA failure due to encrypted EAPOL - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - seq_buf: Make trace_seq_putmem_hex() support data longer than 8 - [powerpc*] stacktrace: Fix spurious "stale" traces in raise_backtrace_ipi() - loop: Fix missing discard support when using LOOP_CONFIGURE - fuse: Fix crash in fuse_dentry_automount() error path - fuse: Fix crash if superblock of submount gets killed early - fuse: Fix infinite loop in sget_fc() - fuse: ignore PG_workingset after stealing - fuse: check connected before queueing on fpq->io - fuse: reject internal errno - [arm*] thermal/cpufreq_cooling: Update offline CPUs per-cpu thermal_pressure - spi: Make of_register_spi_device also set the fwnode - Add a reference to ucounts for each cred - media: marvel-ccic: fix some issues when getting pm_runtime - [i386] spi: spi-topcliff-pch: Fix potential double free in pch_spi_process_messages() - sched/core: Initialize the idle task with preemption disabled - [armhf] hwrng: exynos - Fix runtime PM imbalance on error - [powerpc*] crypto: nx - add missing MODULE_DEVICE_TABLE - media: cpia2: fix memory leak in cpia2_usb_probe - [arm64,armhf] media: hevc: Fix dependent slice segment flags - media: pvrusb2: fix warning in pvr2_i2c_core_done - [armhf] media: imx: imx7_mipi_csis: Fix logging of only error event counters - [x86] crypto: qat - check return code of qat_hal_rd_rel_reg() - [x86] crypto: qat - remove unused macro in FW loader - [arm64] crypto: qce: skcipher: Fix incorrect sg count for dma transfers - [arm64] perf: Convert snprintf to sysfs_emit - sched/fair: Fix ascii art by relpacing tabs - media: bt878: do not schedule tasklet when it is not setup - media: em28xx: Fix possible memory leak of em28xx struct - media: v4l2-core: Avoid the dangling pointer in v4l2_fh_release - media: bt8xx: Fix a missing check bug in bt878_probe - media: dvd_usb: memory leak in cinergyt2_fe_attach - memstick: rtsx_usb_ms: fix UAF - mmc: via-sdmmc: add a check against NULL pointer dereference - [arm64,armhf] spi: meson-spicc: fix a wrong goto jump for avoiding memory leak. - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_probe - crypto: shash - avoid comparing pointers to exported functions under CFI - media: dvb_net: avoid speculation from net slot - media: siano: fix device register error path - [armhf] media: imx-csi: Skip first few frames from a BT.656 source - [powerpc*] KVM: PPC: Book3S HV: Fix TLB management on SMT8 POWER9 and POWER10 processors - btrfs: fix error handling in __btrfs_update_delayed_inode - btrfs: abort transaction if we fail to update the delayed inode - btrfs: sysfs: fix format string for some discard stats - btrfs: don't clear page extent mapped if we're not invalidating the full page - btrfs: disable build on platforms having page size 256K - [s390x] KVM: get rid of register asm usage - [armhf] regulator: da9052: Ensure enough delay time for .set_voltage_time_sel - [x86] ACPI: video: use native backlight for GA401/GA502/GA503 - HID: do not use down_interruptible() when unbinding devices - ACPI: processor idle: Fix up C-state latency if not ordered - [x86] hv_utils: Fix passing zero to 'PTR_ERR' warning - lib: vsprintf: Fix handling of number field widths in vsscanf - ACPI: EC: Make more Asus laptops use ECDT _GPE - block_dump: remove block_dump feature in mark_inode_dirty() - blk-mq: grab rq->refcount before calling ->fn in blk_mq_tagset_busy_iter - blk-mq: clear stale request in tags->rq[] before freeing one request pool - fs: dlm: cancel work sync othercon - random32: Fix implicit truncation warning in prandom_seed_state() - open: don't silently ignore unknown O-flags in openat2() - [x86] drivers: hv: Fix missing error code in vmbus_connect() - fs: dlm: fix memory leak when fenced - ACPICA: Fix memory leak caused by _CID repair function - ACPI: bus: Call kobject_put() in acpi_init() error path - ACPI: resources: Add checks for ACPI IRQ override - block: fix race between adding/removing rq qos and normal IO - [x86] platform/x86: asus-nb-wmi: Revert "Drop duplicate DMI quirk structures" - [x86] platform/x86: asus-nb-wmi: Revert "add support for ASUS ROG Zephyrus G14 and G15" - [x86] platform/x86: toshiba_acpi: Fix missing error code in toshiba_acpi_setup_keyboard() - nvme-pci: fix var. type for increasing cq_head - nvmet-fc: do not check for invalid target port in nvmet_fc_handle_fcp_rqst() - [amd64] EDAC/Intel: Do not load EDAC driver when running as a guest - [amd64] PCI: hv: Add check for hyperv_initialized in init_hv_pci_drv() - cifs: improve fallocate emulation - ACPI: EC: trust DSDT GPE for certain HP laptop - clocksource: Retry clock read if long delays detected - clocksource: Check per-CPU clock synchronization when marked unstable - tpm_tis_spi: add missing SPI device ID entries - ACPI: tables: Add custom DSDT file as makefile prerequisite - HID: wacom: Correct base usage for capacitive ExpressKey status bits - cifs: fix missing spinlock around update to ses->status - [arm64] mailbox: qcom: Use PLATFORM_DEVID_AUTO to register platform device - block: fix discard request merge - kthread_worker: fix return value when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [ia64] mca_drv: fix incorrect array size calculation - writeback, cgroup: increment isw_nr_in_flight before grabbing an inode - spi: Allow to have all native CSs in use along with GPIOs - spi: Avoid undefined behaviour when counting unused native CSs - [arm64] media: venus: Rework error fail recover logic - [armhf] sata_highbank: fix deferred probing - sched/uclamp: Fix wrong implementation of cpu.uclamp.min - sched/uclamp: Fix locking around cpu_util_update_eff() - [mips*] pata_octeon_cf: avoid WARN_ON() in ata_host_activate() - [x86] elf: Use _BITUL() macro in UAPI headers - [x86] crypto: ccp - Fix a resource leak in an error handling path - media: rc: i2c: Fix an error message - media: au0828: fix a NULL vs IS_ERR() check - media: gspca/gl860: fix zero-length control requests - media: siano: Fix out-of-bounds warnings in smscore_load_firmware_family2() - [arm64] crypto: nitrox - fix unchecked variable in nitrox_register_interrupts - [amd64] crypto: x86/curve25519 - fix cpu feature checking logic in mod_exit - [arm64[ consistently use reserved_pg_dir - [arm64] mm: Fix ttbr0 values stored in struct thread_info for software-pan - media: subdev: remove VIDIOC_DQEVENT_TIME32 handling - hwmon: (lm70) Use device_get_match_data() - hwmon: (lm70) Revert "hwmon: (lm70) Add support for ACPI" - [x86] KVM: nVMX: Sync all PGDs on nested transition with shadow paging - [x86] KVM: nVMX: Ensure 64-bit shift when checking VMFUNC bitmap - [x86] KVM: nVMX: Don't clobber nested MMU's A/D status on EPTP switch - [x86] KVM: x86/mmu: Fix return value in tdp_mmu_map_handle_target_level() - [arm64] perf/arm-cmn: Fix invalid pointer when access dtc object sharing the same IRQ number - [arm64] KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set - [arm64] regulator: hi655x: Fix pass wrong pointer to config.driver_data - btrfs: clear log tree recovering status if starting transaction fails - sched/rt: Fix RT utilization tracking during policy change - sched/rt: Fix Deadline utilization tracking during policy change - sched/uclamp: Fix uclamp_tg_restrict() - [armhf] spi: spi-sun6i: Fix chipselect/clock bug - [powerpc*] crypto: nx - Fix RCU warning in nx842_OF_upd_status - psi: Fix race between psi_trigger_create/destroy - media: v4l2-async: Clean v4l2_async_notifier_add_fwnode_remote_subdev - [armhf] media: video-mux: Skip dangling endpoints - PM / devfreq: Add missing error code in devfreq_add_device() - ACPI: PM / fan: Put fan device IDs into separate header file - block: avoid double io accounting for flush request - nvme-pci: look for StorageD3Enable on companion ACPI device instead - ACPI: sysfs: Fix a buffer overrun problem with description_show() - mark pstore-blk as broken - [armhf] clocksource/drivers/timer-ti-dm: Save and restore timer TIOCP_CFG - ACPI: APEI: fix synchronous external aborts in user-mode - blk-wbt: introduce a new disable state to prevent false positive by rwb_enabled() - blk-wbt: make sure throttle is enabled properly - ACPI: Use DEVICE_ATTR_ macros - ACPI: bgrt: Fix CFI violation - cpufreq: Make cpufreq_online() call driver->offline() on errors - blk-mq: update hctx->dispatch_busy in case of real scheduler - ocfs2: fix snprintf() checking - dax: fix ENOMEM handling in grab_mapping_entry() - swap: fix do_swap_page() race with swapoff - mm/shmem: fix shmem_swapin() race with swapoff - mm: memcg/slab: properly set up gfp flags for objcg pointer array - mm: page_alloc: refactor setup_per_zone_lowmem_reserve() - mm/page_alloc: fix counting of managed_pages - xfrm: xfrm_state_mtu should return at least 1280 for ipv6 - drm/bridge: Fix the stop condition of drm_bridge_chain_pre_enable() - drm/ast: Fix missing conversions to managed API - [arm64,armhf] net: mvpp2: Put fwnode in error case during ->probe() - [i386] net: pch_gbe: Propagate error from devm_gpio_request_one() - [x86] drm/vmwgfx: Mark a surface gpu-dirty after the SVGA3dCmdDXGenMips command - [x86] drm/vmwgfx: Fix cpu updates of coherent multisample surfaces - net: qrtr: ns: Fix error return code in qrtr_ns_init() - [arm64] clk: meson: g12a: fix gp0 and hifi ranges - [armhf] net: ftgmac100: add missing error return code in ftgmac100_probe() - [arm64,armhf] drm: rockchip: set alpha_en to 0 if it is not used - [arm64] drm/rockchip: cdn-dp-core: add missing clk_disable_unprepare() on error in cdn_dp_grf_write() - [arm64,armhf] drm/rockchip: dsi: move all lane config except LCDC mux to bind() - [arm64] drm/rockchip: cdn-dp: fix sign extension on an int multiply for a u64 result - RDMA/srp: Fix a recently introduced memory leak - [powerpc*] ehea: fix error return code in ehea_restart_qps() - xfrm: remove the fragment check for ipv6 beet mode - net/sched: act_vlan: Fix modify to allow 0 - RDMA/core: Sanitize WQ state received from the userspace - RDMA/rxe: Fix failure during driver load - [arm*] drm/vc4: hdmi: Fix error path of hpd-gpios - drm: qxl: ensure surf.data is ininitialized - tools/bpftool: Fix error return code in do_batch() - ath10k: go to path err_unsupported when chip id is not supported - ath10k: add missing error return code in ath10k_pci_probe() - wireless: carl9170: fix LEDS build errors & warnings - ieee802154: hwsim: Fix possible memory leak in hwsim_subscribe_all_others - [arm64] clk: imx8mq: remove SYS PLL 1/2 clock gates - [arm64] wcn36xx: Move hal_buf allocation to devm_kmalloc in probe - ssb: Fix error return code in ssb_bus_scan() - brcmfmac: fix setting of station info chains bitmask - brcmfmac: correctly report average RSSI in station info - brcmfmac: Fix a double-free in brcmf_sdio_bus_reset - brcmsmac: mac80211_if: Fix a resource leak in an error handling path - ath11k: Fix an error handling path in ath11k_core_fetch_board_data_api_n() - ath10k: Fix an error code in ath10k_add_interface() - ath11k: send beacon template after vdev_start/restart during csa - netlabel: Fix memory leak in netlbl_mgmt_add_common - RDMA/mlx5: Don't add slave port to unaffiliated list - netfilter: nft_exthdr: check for IPv6 packet before further processing - netfilter: nft_osf: check for TCP packet before further processing - netfilter: nft_tproxy: restrict support to TCP and UDP transport protocols - RDMA/rxe: Fix qp reference counting for atomic ops - xsk: Fix missing validation for skb and unaligned mode - xsk: Fix broken Tx ring validation - bpf: Fix libelf endian handling in resolv_btfids - mt76: fix possible NULL pointer dereference in mt76_tx - vrf: do not push non-ND strict packets with a source LLA through packet taps again - net: sched: add barrier to ensure correct ordering for lockless qdisc - netfilter: nf_tables_offload: check FLOW_DISSECTOR_KEY_BASIC in VLAN transfer logic - pkt_sched: sch_qfq: fix qfq_change_class() error path - xfrm: Fix xfrm offload fallback fail case - iwlwifi: increase PNVM load timeout - rtw88: 8822c: fix lc calibration timing - vxlan: add missing rcu_read_lock() in neigh_reduce() - ip6_tunnel: fix GRE6 segmentation - net/ipv4: swap flow ports when validating source - ieee802154: hwsim: Fix memory leak in hwsim_add_one - ieee802154: hwsim: avoid possible crash in hwsim_del_edge_nl() - bpf: Fix null ptr deref with mixed tail calls and subprogs - [arm64] drm/msm: Fix error return code in msm_drm_init() - [arm64] drm/msm/dpu: Fix error return code in dpu_mdss_init() - mac80211: remove iwlwifi specific workaround NDPs of null_response - net: bcmgenet: Fix attaching to PYH failed on RPi 4B - ipv6: exthdrs: do not blindly use init_net - can: j1939: j1939_sk_setsockopt(): prevent allocation of j1939 filter for optlen == 0 - bpf: Do not change gso_size during bpf_skb_change_proto() - i40e: Fix error handling in i40e_vsi_open - i40e: Fix autoneg disabling for non-10GBaseT links - i40e: Fix missing rtnl locking when setting up pf switch - RDMA/cma: Protect RMW with qp_mutex - net: macsec: fix the length used to copy the key for offloading - net: phy: mscc: fix macsec key length - ipv6: fix out-of-bound access in ip6_parse_tlv() - e1000e: Check the PCIm state - RDMA/cma: Fix incorrect Packet Lifetime calculation - [amd64] gve: Fix swapped vars when fetching max queues - Revert "be2net: disable bh with spin_lock in be_process_mcc" - Bluetooth: mgmt: Fix slab-out-of-bounds in tlv_data_is_valid - Bluetooth: Fix not sending Set Extended Scan Response - Bluetooth: Fix Set Extended (Scan Response) Data - Bluetooth: Fix handling of HCI_LE_Advertising_Set_Terminated event - [arm64] clk: qcom: clk-alpha-pll: fix CAL_L write in alpha_pll_fabia_prepare - writeback: fix obtain a reference to a freeing memcg css - net: lwtunnel: handle MTU calculation in forwading - net: sched: fix warning in tcindex_alloc_perfect_hash - net: tipc: fix FB_MTU eat two pages - RDMA/mlx5: Don't access NULL-cleared mpi pointer - RDMA/core: Always release restrack object - [mips*] Fix PKMAP with 32-bit MIPS huge page support - [x86] ASoC: rt5682: Disable irq on shutdown - rcu: Invoke rcu_spawn_core_kthreads() from rcu_spawn_gp_kthread() - [arm64] serial: fsl_lpuart: don't modify arbitrary data on lpuart32 - [arm64] serial: fsl_lpuart: remove RTSCTS handling from get_mctrl() - tty: nozomi: Fix a resource leak in an error handling function - mwifiex: re-fix for unaligned accesses - iio: adis_buffer: do not return ints in irq handlers - iio: adis16475: do not return ints in irq handlers - [arm64] ASoC: hisilicon: fix missing clk_disable_unprepare() on error in hi6210_i2s_startup() - mtd: partitions: redboot: seek fis-index-block in the right node - [arm*] staging: mmal-vchiq: Fix incorrect static vchiq_instance. - char: pcmcia: error out if 'num_bytes_read' is greater than 4 in set_protocol() - leds: class: The -ENOTSUPP should never be seen by user space - scsi: FlashPoint: Rename si_flags field - scsi: iscsi: Flush block work before unblock - [armhf] fsi: core: Fix return of error values on failures - [armhf] fsi: scom: Reset the FSI2PIB engine for any error - [armhf] fsi: occ: Don't accept response from un-initialized OCC - [armhf] fsi/sbefifo: Clean up correct FIFO when receiving reset request from SBE - [armhf] fsi/sbefifo: Fix reset timeout - [amd64] iommu/amd: Fix extended features logging - [s390x] irq: select HAVE_IRQ_EXIT_ON_IRQ_STACK - [s390x] enable HAVE_IOREMAP_PROT - [s390x] appldata depends on PROC_SYSCTL - [amd64,arm64] iommu/dma: Fix IOVA reserve dma ranges - ASoC: max98373-sdw: use first_hw_init flag on resume - ASoC: rt1308-sdw: use first_hw_init flag on resume - ASoC: rt5682-sdw: use first_hw_init flag on resume - ASoC: rt700-sdw: use first_hw_init flag on resume - ASoC: rt711-sdw: use first_hw_init flag on resume - ASoC: rt715-sdw: use first_hw_init flag on resume - ASoC: rt5682: fix getting the wrong device id when the suspend_stress_test - ASoC: rt5682-sdw: set regcache_cache_only false before reading RT5682_DEVICE_ID - usb: gadget: f_fs: Fix setting of device and driver data cross-references - [arm*] usb: dwc2: Don't reset the core after setting turnaround time - [armhf] ASoC: fsl_spdif: Fix error handler with pm_runtime_enable - staging: rtl8712: fix error handling in r871xu_drv_init - staging: rtl8712: fix memory leak in rtl871x_load_fw_cb - serial: 8250: Actually allow UPF_MAGIC_MULTIPLIER baud rates - of: Fix truncation of memory sizes on 32-bit platforms - [armhf] mtd: rawnand: marvell: add missing clk_disable_unprepare() on error in marvell_nfc_resume() - scsi: mpt3sas: Fix error return value in _scsih_expander_add() - soundwire: stream: Fix test for DP prepare complete - [powerpc*] powernv: Fix machine check reporting of async store errors - configfs: fix memleak in configfs_release_bin_file - [x86] ASoC: Intel: sof_sdw: add SOF_RT715_DAI_ID_FIX for AlderLake - [armhf] ASoC: fsl_spdif: Fix unexpected interrupt after suspend - [powerpc*] Offline CPU in stop_this_cpu() - [powerpc*] papr_scm: Properly handle UUID types and API - [powerpc*] 64s: Fix copy-paste data exposure into newly created tasks - [powerpc*] papr_scm: Make 'perf_stats' invisible if perf-stats unavailable - ALSA: firewire-lib: Fix 'amdtp_domain_start()' when no AMDTP_OUT_STREAM stream is found - [arm64] serial: mvebu-uart: do not allow changing baudrate when uartclk is not available - [arm64] serial: mvebu-uart: correctly calculate minimal possible baudrate - vfio/pci: Handle concurrent vma faults - mm/pmem: avoid inserting hugepage PTE entry with fsdax if hugepage support is disabled - mm/huge_memory.c: remove dedicated macro HPAGE_CACHE_INDEX_MASK - mm/huge_memory.c: add missing read-only THP checking in transparent_hugepage_enabled() - mm/huge_memory.c: don't discard hugepage if other processes are mapping it - mm/hugetlb: use helper huge_page_order and pages_per_huge_page - mm/hugetlb: remove redundant check in preparing and destroying gigantic page - hugetlb: remove prep_compound_huge_page cleanup - include/linux/huge_mm.h: remove extern keyword - mm/z3fold: fix potential memory leak in z3fold_destroy_pool() - mm/z3fold: use release_z3fold_page_locked() to release locked z3fold page - lib/math/rational.c: fix divide by zero - exfat: handle wrong stream entry size in exfat_readdir() - scsi: fc: Correct RHBA attributes length - scsi: target: cxgbit: Unmap DMA buffer before calling target_execute_cmd() - fscrypt: don't ignore minor_hash when hash is 0 - fscrypt: fix derivation of SipHash keys on big endian CPUs - tpm: Replace WARN_ONCE() with dev_err_once() in tpm_tis_status() - erofs: fix error return code in erofs_read_superblock() - io_uring: fix blocking inline submission - mmc: block: Disable CMDQ on the ioctl path - mmc: vub3000: fix control-request direction - scsi: core: Retry I/O for Notify (Enable Spinup) Required error - [arm64] crypto: qce - fix error return code in qce_skcipher_async_req_handle() - [s390x] preempt: Fix preempt_count initialization - cred: add missing return error code when set_cred_ucounts() failed - [amd64,arm64] iommu/dma: Fix compile warning in 32-bit builds - [powerpc*] preempt: Don't touch the idle task's preempt_count during hotplug https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.51 - drm/ast: Fixed CVE for DP501 - drm/amd/amdgpu/sriov disable all ip hw status by default - [arm*] drm/vc4: fix argument ordering in vc4_crtc_get_margins() - [i386] net: pch_gbe: Use proper accessors to BE data in pch_ptp_match() - hugetlb: clear huge pte during flush function on mips platform - atm: iphase: fix possible use-after-free in ia_module_exit() - mISDN: fix possible use-after-free in HFC_cleanup() - atm: nicstar: Fix possible use-after-free in nicstar_cleanup() - net: Treat __napi_schedule_irqoff() as __napi_schedule() on PREEMPT_RT - reiserfs: add check for invalid 1st journal block - drm/virtio: Fix double free on probe failure - net: mdio: provide shim implementation of devm_of_mdiobus_register - net/sched: cls_api: increase max_reclassify_loop - drm/scheduler: Fix hang when sched_entity released - drm/sched: Avoid data corruptions - udf: Fix NULL pointer dereference in udf_symlink function - [arm*] drm/vc4: Fix clock source for VEC PixelValve on BCM2711 - [arm*] drm/vc4: hdmi: Fix PM reference leak in vc4_hdmi_encoder_pre_crtc_co() - e100: handle eeprom as little endian - igb: handle vlan types with checker enabled - igb: fix assignment on big endian machines - net/mlx5e: IPsec/rep_tc: Fix rep_tc_update_skb drops IPsec packet - net/mlx5: Fix lag port remapping logic - [arm64,armhf] drm: rockchip: add missing registers for RK3188 - [arm64,armhf] drm: rockchip: add missing registers for RK3066 - net: stmmac: the XPCS obscures a potential "PHY not found" error - [arm64,armhf] clk: tegra: Fix refcounting of gate clocks - [arm64,armhf] clk: tegra: Ensure that PLLU configuration is applied properly - virtio-net: Add validation for used length - ipv6: use prandom_u32() for ID generation - [mips*] cpu-probe: Fix FPU detection on Ingenic JZ4760(B) - drm/amdgpu: remove unsafe optimization to drop preamble ib - net: tcp better handling of reordering then loss cases - RDMA/cxgb4: Fix missing error code in create_qp() - dm space maps: don't reset space map allocation cursor when committing - dm writecache: don't split bios when overwriting contiguous cache content - dm: Fix dm_accept_partial_bio() relative to zone management commands - [armhf] pinctrl: mcp23s08: fix race condition in irq handler - ice: set the value of global config lock timeout longer - virtio_net: Remove BUG() to avoid machine dead - [arm64] net: bcmgenet: check return value after calling platform_get_resource() - [arm64,armhf] net: mvpp2: check return value after calling platform_get_resource() - net: phy: realtek: add delay to fix RXC generation issue - [amd64] drm/amdkfd: use allowed domain for vmbo validation - [amd64] fjes: check return value after calling platform_get_resource() - selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC - r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM - xfrm: Fix error reporting in xfrm_state_construct. - dm writecache: commit just one block, not a full page - [arm64,armhf] wlcore/wl12xx: Fix wl12xx get_mac error if device is in ELP - [arm64,armhf] wl1251: Fix possible buffer overflow in wl1251_cmd_scan - ice: fix incorrect payload indicator on PTYPE - ice: mark PTYPE 2 as reserved - mt76: mt7615: fix fixed-rate tx status reporting - net: fix mistake path for netdev_features_strings - net: sched: fix error return code in tcf_del_walker() - io_uring: fix false WARN_ONCE - drm/amdgpu: fix bad address translation for sienna_cichlid - rtl8xxxu: Fix device info for RTL8192EU devices - [mips*] add PMD table accounting into MIPS'pmd_alloc_one - [arm64,armhf] net: fec: add ndo_select_queue to fix TX bandwidth fluctuations - atm: nicstar: use 'dma_free_coherent' instead of 'kfree' - atm: nicstar: register the interrupt handler in the right place - vsock: notify server to shutdown when client has pending signal - RDMA/rxe: Don't overwrite errno from ib_umem_get() - iwlwifi: mvm: don't change band on bound PHY contexts - iwlwifi: mvm: fix error print when session protection ends - iwlwifi: pcie: free IML DMA memory allocation - iwlwifi: pcie: fix context info freeing - sfc: avoid double pci_remove of VFs - sfc: error code if SRIOV cannot be disabled - wireless: wext-spy: Fix out-of-bounds warning - cfg80211: fix default HE tx bitrate mask in 2G band - mac80211: consider per-CPU statistics if present - mac80211_hwsim: add concurrent channels scanning support over virtio - IB/isert: Align target max I/O size to initiator size - net: ip: avoid OOM kills with large UDP sends over loopback - RDMA/cma: Fix rdma_resolve_route() memory leak - Bluetooth: btusb: Fixed too many in-token issue for Mediatek Chip. - Bluetooth: Fix the HCI to MGMT status conversion table - Bluetooth: Fix alt settings for incoming SCO with transparent coding format - Bluetooth: Shutdown controller after workqueues are flushed or cancelled - Bluetooth: btusb: Add a new QCA_ROME device (0cf3:e500) - Bluetooth: L2CAP: Fix invalid access if ECRED Reconfigure fails - Bluetooth: L2CAP: Fix invalid access on ECRED Connection response - Bluetooth: btusb: Add support USB ALT 3 for WBS - Bluetooth: mgmt: Fix the command returns garbage parameter value - Bluetooth: btusb: fix bt fiwmare downloading failure issue for qca btsoc. - sched/fair: Ensure _sum and _avg values stay consistent - bpf: Fix false positive kmemleak report in bpf_ringbuf_area_alloc() - flow_offload: action should not be NULL when it is referenced - [mips*] loongsoon64: Reserve memory below starting pfn to prevent Oops - [mips*] set mips32r5 for virt extensions - [mips*] MT extensions are not available on MIPS32r1 - ath11k: unlock on error path in ath11k_mac_op_add_interface() - [arm64] dts: rockchip: Enable USB3 for rk3328 Rock64 - loop: fix I/O error on fsync() in detached loop devices - mm,hwpoison: return -EBUSY when migration fails - io_uring: simplify io_remove_personalities() - io_uring: Convert personality_idr to XArray - io_uring: convert io_buffer_idr to XArray - scsi: iscsi: Fix race condition between login and sync thread - scsi: iscsi: Fix iSCSI cls conn state - [powerpc*] mm: Fix lockup on kernel exec fault - [powerpc*] barrier: Avoid collision with clang's __lwsync macro - [powerpc*] powernv/vas: Release reference to tgid during window close - drm/amdgpu: enable sdma0 tmz for Raven/Renoir(V2) - drm/radeon: Add the missed drm_gem_object_put() in radeon_user_framebuffer_create() - drm/radeon: Call radeon_suspend_kms() in radeon_pci_shutdown() for Loongson64 - [arm*] drm/vc4: txp: Properly set the possible_crtcs mask - [arm*] drm/vc4: crtc: Skip the TXP - [arm*] drm/vc4: hdmi: Prevent clock unbalance - drm/dp: Handle zeroed port counts in drm_dp_read_downstream_info() - [arm64,armhf] drm/rockchip: dsi: remove extra component_del() call - pinctrl/amd: Add device HID for new AMD GPIO controller - drm/amd/display: Reject non-zero src_y and src_x for video planes - [arm64,armhf] drm/tegra: Don't set allow_fb_modifiers explicitly - [arm64] drm/msm/mdp4: Fix modifier support enabling - [arm64] drm/arm/malidp: Always list modifiers - drm/nouveau: Don't set allow_fb_modifiers explicitly - [x86] drm/i915/display: Do not zero past infoframes.vsc - mmc: sdhci-acpi: Disable write protect detection on Toshiba Encore 2 WT8-B - mmc: sdhci: Fix warning message when accessing RPMB in HS400 mode - mmc: core: clear flags before allowing to retune - mmc: core: Allow UHS-I voltage switch for SDSC cards if supported - [armhf] ata: ahci_sunxi: Disable DIPM - [arm64] tlb: fix the TTL value of tlb_get_level - cpu/hotplug: Cure the cpusets trainwreck - [arm64,armhf] clocksource/arm_arch_timer: Improve Allwinner A64 timer workaround - [arm64,armhf] ASoC: tegra: Set driver_name=tegra for all machine drivers - i40e: fix PTP on 5Gb links - qemu_fw_cfg: Make fw_cfg_rev_attr a proper kobj_attribute - ipmi/watchdog: Stop watchdog timer when the current action is 'none' - [x86] thermal/drivers/int340x/processor_thermal: Fix tcc setting - ubifs: Fix races between xattr_{set|get} and listxattr operations - power: supply: ab8500: Fix an old bug - mfd: syscon: Free the allocated name field of struct regmap_config - nvmem: core: add a missing of_node_put - seq_buf: Fix overflow in seq_buf_putmem_hex() - rq-qos: fix missed wake-ups in rq_qos_throttle try two - tracing: Simplify & fix saved_tgids logic - tracing: Resize tgid_map to pid_max, not PID_MAX_DEFAULT - dm zoned: check zone capacity - dm writecache: flush origin device when writing and cache is full - dm btree remove: assign new_root only when removal succeeds - PCI: Leave Apple Thunderbolt controllers on for s2idle or standby - [arm64] PCI: aardvark: Fix checking for PIO Non-posted Request - [arm64] PCI: aardvark: Implement workaround for the readback value of VEND_ID - media: subdev: disallow ioctl for saa6588/davinci - media: dtv5100: fix control-request directions - media: zr364xx: fix memory leak in zr364xx_start_readpipe - media: gspca/sq905: fix control-request direction - media: gspca/sunplus: fix zero-length control requests - media: uvcvideo: Fix pixel format change for Elgato Cam Link 4K - io_uring: fix clear IORING_SETUP_R_DISABLED in wrong function - dm writecache: write at least 4k when committing - [armhf] pinctrl: mcp23s08: Fix missing unlock on error in mcp23s08_irq() - drm/ast: Remove reference to struct drm_device.pdev - jfs: fix GPF in diFree - ext4: fix memory leak in ext4_fill_super - f2fs: fix to avoid racing on fsync_entry_slab by multi filesystem instances https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.52 - cifs: handle reconnect of tcon when there is no cached dfs referral - KVM: mmio: Fix use-after-free Read in kvm_vm_ioctl_unregister_coalesced_mmio - [x86] KVM: x86: Use guest MAXPHYADDR from CPUID.0x8000_0008 iff TDP is enabled - [x86] KVM: x86/mmu: Do not apply HPA (memory encryption) mask to GPAs - [x86] KVM: nSVM: Check the value written to MSR_VM_HSAVE_PA - [x86] KVM: X86: Disable hardware breakpoints unconditionally before kvm_x86->run() - scsi: core: Fix bad pointer dereference when ehandler kthread is invalid - [s390x] scsi: zfcp: Report port fc_security as unknown early during remote cable pull - tracing: Do not reference char * as a string in histograms - [x86] drm/i915/gtt: drop the page table optimisation - [x86] drm/i915/gt: Fix -EDEADLK handling regression - cgroup: verify that source is a string - fbmem: Do not delete the mode that is still in use - drm/dp_mst: Do not set proposed vcpi directly - drm/dp_mst: Avoid to mess up payload table by ports in stale topology - drm/dp_mst: Add missing drm parameters to recently added call to drm_dbg_kms() - Revert "drm/ast: Remove reference to struct drm_device.pdev" - net: bridge: multicast: fix PIM hello router port marking race - net: bridge: multicast: fix MRD advertisement router port marking race - [x86] ASoC: Intel: sof_sdw: add mutual exclusion between PCH DMIC and RT715 - [arm64] dmaengine: fsl-qdma: check dma_set_mask return value - scsi: arcmsr: Fix the wrong CDB payload report to IOP - srcu: Fix broken node geometry after early ssp init - rcu: Reject RCU_LOCKDEP_WARN() false positives - [arm64] tty: serial: fsl_lpuart: fix the potential risk of division or modulo by zero - [arm64] serial: fsl_lpuart: disable DMA for console and fix sysrq - [x86] misc/libmasm/module: Fix two use after free in ibmasm_init_one - [x86] ASoC: intel/boards: add missing MODULE_DEVICE_TABLE - partitions: msdos: fix one-byte get_unaligned() - iio: gyro: fxa21002c: Balance runtime pm + use pm_runtime_resume_and_get(). - iio: magn: bmc150: Balance runtime pm + use pm_runtime_resume_and_get() - Revert "ALSA: bebob/oxfw: fix Kconfig entry for Mackie d.2 Pro" - [arm64,armhf] usb: common: usb-conn-gpio: fix NULL pointer dereference of charger - w1: ds2438: fixing bug that would always get page0 - scsi: arcmsr: Fix doorbell status being updated late on ARC-1886 - [arm64] scsi: hisi_sas: Propagate errors in interrupt_init_v1_hw() - scsi: lpfc: Fix "Unexpected timeout" error in direct attach topology - scsi: lpfc: Fix crash when lpfc_sli4_hba_setup() fails to initialize the SGLs - scsi: core: Cap scsi_host cmd_per_lun at can_queue - tty: serial: 8250: serial_cs: Fix a memory leak in error handling path - scsi: mpt3sas: Fix deadlock while cancelling the running firmware event - scsi: core: Fixup calling convention for scsi_mode_sense() - scsi: scsi_dh_alua: Check for negative result value - fs/jfs: Fix missing error code in lmLogInit() - scsi: megaraid_sas: Fix resource leak in case of probe failure - scsi: megaraid_sas: Early detection of VD deletion through RaidMap update - scsi: megaraid_sas: Handle missing interrupts while re-enabling IRQs - scsi: iscsi: Add iscsi_cls_conn refcount helpers - scsi: iscsi: Fix conn use after free during resets - scsi: iscsi: Fix shost->max_id use - scsi: qedi: Fix null ref during abort handling - scsi: qedi: Fix race during abort timeouts - scsi: qedi: Fix TMF session block/unblock use - scsi: qedi: Fix cleanup session block/unblock use - [armhf] mfd: da9052/stmpe: Add and modify MODULE_DEVICE_TABLE - [armhf] fsi: Add missing MODULE_DEVICE_TABLE - [s390x] disable SSP when needed - [i386] ALSA: sb: Fix potential double-free of CSP mixer elements - [powerpc*] ps3: Add dma_mask to ps3_dma_region - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak when arm_smmu_rpm_get fails - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak in address translation - ASoC: soc-pcm: fix the return value in dpcm_apply_symmetry() - [arm64] gpio: zynq: Check return value of pm_runtime_get_sync - [arm64] gpio: zynq: Check return value of irq_get_irq_data - [x86] scsi: storvsc: Correctly handle multiple flags in srb_status - [powerpc*] ALSA: ppc: fix error return code in snd_pmac_probe() - [arm64,armhf] gpio: pca953x: Add support for the On Semi pca9655 - [powerpc*] mm/book3s64: Fix possible build error - ASoC: soc-core: Fix the error return code in snd_soc_of_parse_audio_routing() - [s390x] processor: always inline stap() and __load_psw_mask() - [s390x] ipl_parm: fix program check new psw handling - [s390x] mem_detect: fix diag260() program check new psw handling - [s390x] mem_detect: fix tprot() program check new psw handling - ALSA: bebob: add support for ToneWeal FW66 - ALSA: usb-audio: scarlett2: Fix 18i8 Gen 2 PCM Input count - ALSA: usb-audio: scarlett2: Fix data_mutex lock - ALSA: usb-audio: scarlett2: Fix scarlett2_*_ctl_put() return values - usb: gadget: f_hid: fix endianness issue with descriptors - [powerpc*] boot: Fixup device-tree on little endian - [x86] ASoC: Intel: kbl_da7219_max98357a: shrink platform_id below 20 characters - [arm64,armhf] ALSA: hda: Add IRQ check for platform_get_irq() - ALSA: usb-audio: scarlett2: Fix 6i6 Gen 2 line out descriptions - ALSA: firewire-motu: fix detection for S/PDIF source on optical interface in v2 protocol - staging: rtl8723bs: fix macro value for 2.4Ghz only device - [x86] intel_th: Wait until port is in reset before programming it - i2c: core: Disable client irq on reboot/shutdown - lib/decompress_unlz4.c: correctly handle zero-padding around initrds. - kcov: add __no_sanitize_coverage to fix noinstr for all architectures - [amd64] PCI: hv: Fix a race condition when removing the device - [x86] power: supply: max17042: Do not enforce (incorrect) interrupt trigger type - power: reset: gpio-poweroff: add missing MODULE_DEVICE_TABLE - PCI/P2PDMA: Avoid pci_get_slot(), which may sleep - NFSv4: Fix delegation return in cases where we have to retry - PCI: pciehp: Ignore Link Down/Up caused by DPC - [x86] watchdog: Fix possible use-after-free in wdt_startup() - [x86] watchdog: Fix possible use-after-free by calling del_timer_sync() - watchdog: iTCO_wdt: Account for rebooting on second timeout - [x86] fpu: Return proper error codes from user access functions - [armhf] remoteproc: core: Fix cdev remove and rproc del - [arm64,armhf] PCI: tegra: Add missing MODULE_DEVICE_TABLE - orangefs: fix orangefs df output. - ceph: remove bogus checks and WARN_ONs from ceph_set_page_dirty - [x86] drm/gma500: Add the missed drm_gem_object_put() in psb_user_framebuffer_create() - NFS: nfs_find_open_context() may only select open files - [arm64,armhf] pwm: tegra: Don't modify HW state in .remove callback - [arm64] ACPI: AMBA: Fix resource name in /proc/iomem - [x86] ACPI: video: Add quirk for the Dell Vostro 3350 - [arm64] PCI: rockchip: Register IRQ handlers after device and data are ready - virtio-blk: Fix memory leak among suspend/resume procedure - virtio_net: Fix error handling in virtnet_restore() - f2fs: atgc: fix to set default age threshold - NFSD: Fix TP_printk() format specifier in nfsd_clid_class - [x86] signal: Detect and prevent an alternate signal stack overflow - f2fs: add MODULE_SOFTDEP to ensure crc32 is included in the initramfs - f2fs: compress: fix to disallow temp extension - PCI/sysfs: Fix dsm_label_utf16s_to_utf8s() buffer overrun - NFSv4: Fix an Oops in pnfs_mark_request_commit() when doing O_DIRECT - ubifs: Fix off-by-one error - ubifs: journal: Fix error return code in ubifs_jnl_write_inode() - [armhf] watchdog: aspeed: fix hardware timeout calculation - SUNRPC: prevent port reuse on transports which don't request it. - nfs: fix acl memory leak of posix_acl_create() - ubifs: Set/Clear I_LINKABLE under i_lock for whiteout inode - f2fs: fix to avoid adding tab before doc section - [x86] fpu: Fix copy_xstate_to_kernel() gap handling - [x86] fpu: Limit xstate copy size in xstateregs_set() - virtio_net: move tx vq operation under tx queue lock - nvme-tcp: can't set sk_user_data without write_lock - nfsd: Reduce contention for the nfsd_file nf_rwsem - [i386] ALSA: isa: Fix error return code in snd_cmi8330_probe() - vdpa/mlx5: Clear vq ready indication upon device reset - NFSv4/pnfs: Fix the layout barrier update - NFSv4/pnfs: Fix layoutget behaviour after invalidation - NFSv4/pNFS: Don't call _nfs4_pnfs_v3_ds_connect multiple times - [armhf] exynos: add missing of_node_put for loop iteration - [armhf] dts: exynos: fix PWM LED max brightness on Odroid HC1 - [armhf] dts: exynos: fix PWM LED max brightness on Odroid XU4 - [armel,armhf] memory: pl353: Fix error return code in pl353_smc_probe() - rtc: fix snprintf() checking in is_rtc_hctosys() - dt-bindings: i2c: at91: fix example for scl-gpios - [arm64] dts: allwinner: a64-sopine-baseboard: change RGMII mode to TXID - [armhf] dts: am335x: align ti,pindir-d0-out-d1-in property with dt-shema - [arm64] firmware: turris-mox-rwtm: fix reply status decoding function - [arm64] firmware: turris-mox-rwtm: report failures better - [arm64] firmware: turris-mox-rwtm: fail probing when firmware does not support hwrng - [arm64] firmware: turris-mox-rwtm: show message about HWRNG registration - scsi: be2iscsi: Fix an error handling path in beiscsi_dev_probe() - jump_label: Fix jump_label_text_reserved() vs __init - static_call: Fix static_call_text_reserved() vs __init - [mips*] always link byteswap helpers into decompressor - [mips*] disable branch profiling in boot/decompress.o - [mips*] vdso: Invalid GIC access through VDSO - scsi: scsi_dh_alua: Fix signedness bug in alua_rtpg() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.53 - [armhf] dts: rockchip: fix pinctrl sleep nodename for rk3036-kylin and rk3288 - [armhf] imx: pm-imx5: Fix references to imx5_cpu_suspend_info - [arm64] dts: rockchip: fix regulator-gpio states array - [armhf] dts: imx6dl-riotboard: configure PHY clock and set proper EEE value - [armhf] dts: am57xx-cl-som-am57x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: am335x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: OMAP2+: Replace underscores in sub-mailbox node names - [arm64] dts: qcom: sc7180: Move rmtfs memory region - [armhf] memory: tegra: Fix compilation warnings on 64bit platforms - [armel,armhf] dts: bcm283x: Fix up GPIO LED node names - [armhf] dts: rockchip: fix supply properties in io-domains nodes - [armhf] OMAP2+: Block suspend for am3 and am4 if PM is not configured - [arm64,armhf] soc/tegra: fuse: Fix Tegra234-only builds - thermal/core: Correct function name thermal_zone_device_unregister() - [arm64] arch/arm64/boot/dts/marvell: fix NAND partitioning scheme - [arm64,armhf] rtc: max77686: Do not enforce (incorrect) interrupt trigger type - scsi: aic7xxx: Fix unintentional sign extension issue on left shift of u8 - scsi: libsas: Add LUN number check in .slave_alloc callback - scsi: libfc: Fix array index out of bound exception - scsi: qedf: Add check to synchronize abort and flush - sched/fair: Fix CFS bandwidth hrtimer expiry type - [x86] perf/x86/intel/uncore: Clean up error handling path of iio mapping - thermal/core/thermal_of: Stop zone device before unregistering it - [s390x] traps: do not test MONITOR CALL without CONFIG_BUG - [s390x] introduce proper type handling call_on_stack() macro - cifs: prevent NULL deref in cifs_compose_mount_options() - [arm64] firmware: turris-mox-rwtm: add marvell,armada-3700-rwtm-firmware compatible string - [arm64] dts: marvell: armada-37xx: move firmware node to generic dtsi file - Revert "swap: fix do_swap_page() race with swapoff" - f2fs: Show casefolding support only when supported - mm/thp: simplify copying of huge zero page pmd when fork - mm/userfaultfd: fix uffd-wp special cases for fork() - mm/page_alloc: fix memory map initialization for descending nodes - [arm64] net: bcmgenet: ensure EXT_ENERGY_DET_MASK is clear - [arm64,armhf] net: dsa: mv88e6xxx: enable .port_set_policy() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: use correct .stats_set_histogram() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable .rmu_disable() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable devlink ATU hash param for Topaz - net: ipv6: fix return value of ip6_skb_dst_mtu - netfilter: ctnetlink: suspicious RCU usage in ctnetlink_dump_helpinfo - net/sched: act_ct: fix err check for nf_conntrack_confirm - [x86] vmxnet3: fix cksum offload issues for tunnels with non-default udp ports - net/sched: act_ct: remove and free nf_table callbacks - net: bridge: sync fdb to new unicast-filtering ports - [arm64] net: bcmgenet: Ensure all TX/RX queues DMAs are disabled - net: ip_tunnel: fix mtu calculation for ETHER tunnel devices - [arm64] net: qcom/emac: fix UAF in emac_remove - net: ti: fix UAF in tlan_remove_one - net: send SYNACK packet with accepted fwmark - net: validate lwtstate->data before returning from skb_tunnel_info() - Revert "mm/shmem: fix shmem_swapin() race with swapoff" - [arm64,armhf] net: dsa: properly check for the bridge_leave methods in dsa_switch_bridge_leave() - dma-buf/sync_file: Don't leak fences on merge failure - [armhf] dts: aspeed: Fix AST2600 machines line names - [armhf] dts: tacoma: Add phase corrections for eMMC - tcp: annotate data races around tp->mtu_info - tcp: fix tcp_init_transfer() to not reset icsk_ca_initialized - ipv6: tcp: drop silly ICMPv6 packet too big messages - tcp: call sk_wmem_schedule before sk_mem_charge in zerocopy path - bpf: Track subprog poke descriptors correctly and fix use-after-free - udp: annotate data races around unix_sk(sk)->gso_size https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.54 - igc: Fix use-after-free error during reset - igb: Fix use-after-free error during reset - igc: change default return of igc_read_phy_reg() - ixgbe: Fix an error handling path in 'ixgbe_probe()' - igc: Fix an error handling path in 'igc_probe()' - igb: Fix an error handling path in 'igb_probe()' - e1000e: Fix an error handling path in 'e1000_probe()' - iavf: Fix an error handling path in 'iavf_probe()' - igb: Check if num of q_vectors is smaller than max before array access - igb: Fix position of assignment to *ring - [amd64] gve: Fix an error handling path in 'gve_probe()' - bonding: fix suspicious RCU usage in bond_ipsec_add_sa() - bonding: fix null dereference in bond_ipsec_add_sa() - ixgbevf: use xso.real_dev instead of xso.dev in callback functions of struct xfrmdev_ops - bonding: fix suspicious RCU usage in bond_ipsec_del_sa() - bonding: disallow setting nested bonding + ipsec offload - bonding: Add struct bond_ipesc to manage SA - bonding: fix suspicious RCU usage in bond_ipsec_offload_ok() - bonding: fix incorrect return value of bond_ipsec_offload_ok() - ipv6: fix 'disable_policy' for fwd packets - stmmac: platform: Fix signedness bug in stmmac_probe_config_dt() - cxgb4: fix IRQ free race during driver unload - nvme-pci: do not call nvme_dev_remove_admin from nvme_remove - [x86] KVM: x86/pmu: Clear anythread deprecated bit when 0xa leaf is unsupported on the SVM - [armhf] spi: imx: add a check for speed_hz before calculating the clock - [armhf] spi: stm32: fixes pm_runtime calls in probe/remove - bpf, test: fix NULL pointer dereference on invalid expected_attach_type - bpf: Fix tail_call_reachable rejection for interpreter when jit failed - xdp, net: Fix use-after-free in bpf_xdp_link_release - timers: Fix get_next_timer_interrupt() with no timers pending - liquidio: Fix unintentional sign extension issue on left shift of u16 - [s390x] bpf: Perform r1 range checking before accessing jit->seen_reg[r1] - bpf, sockmap: Fix potential memory leak on unlikely error case - bpf, sockmap, tcp: sk_prot needs inuse_idx set for proc stats - bpf, sockmap, udp: sk_prot needs inuse_idx set for proc stats - bpftool: Check malloc return value in mount_bpffs_for_pin - net: fix uninit-value in caif_seqpkt_sendmsg - usb: hso: fix error handling code of hso_create_net_device (CVE-2021-37159) - dma-mapping: handle vmalloc addresses in dma_common_{mmap,get_sgtable} - efi/tpm: Differentiate missing and invalid final event log table. - net: decnet: Fix sleeping inside in af_decnet - [powerpc*] KVM: PPC: Fix kvm_arch_vcpu_ioctl vcpu_load leak - net: sched: fix memory leak in tcindex_partial_destroy_work - sctp: trim optlen when it's a huge value in sctp_setsockopt - netrom: Decrease sock refcount when sock timers expire - scsi: iscsi: Fix iface sysfs attr detection - scsi: target: Fix protect handling in WRITE SAME(32) - bnxt_en: don't disable an already disabled PCI device - bnxt_en: Refresh RoCE capabilities in bnxt_ulp_probe() - bnxt_en: Add missing check for BNXT_STATE_ABORT_ERR in bnxt_fw_rset_task() - bnxt_en: Validate vlan protocol ID on RX packets - bnxt_en: Check abort error state in bnxt_half_open_nic() - net/tcp_fastopen: fix data races around tfo_active_disable_stamp - ALSA: hda: intel-dsp-cfg: add missing ElkhartLake PCI ID - [arm64] net: hns3: fix possible mismatches resp of mailbox - [arm64] net: hns3: fix rx VLAN offload state inconsistent issue - [arm*] spi: spi-bcm2835: Fix deadlock - net/sched: act_skbmod: Skip non-Ethernet packets - ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions - ceph: don't WARN if we're still opening a session to an MDS - nvme-pci: don't WARN_ON in nvme_reset_work if ctrl.state is not RESETTING - Revert "USB: quirks: ignore remote wake-up on Fibocom L850-GL LTE modem" - afs: Fix tracepoint string placement with built-in AFS - r8169: Avoid duplicate sysfs entry creation error - nvme: set the PRACT bit when using Write Zeroes with T10 PI - sctp: update active_key for asoc when old key is being replaced - tcp: disable TFO blackhole logic by default - net: sched: cls_api: Fix the the wrong parameter - [arm64,armhf] drm/panel: raspberrypi-touchscreen: Prevent double-free - cifs: only write 64kb at a time when fallocating a small region of a file - cifs: fix fallocate when trying to allocate a hole. - proc: Avoid mixing integer types in mem_rw() - mmc: core: Don't allocate IDA for OF aliases - [s390x] ftrace: fix ftrace_update_ftrace_func implementation - [s390x] boot: fix use of expolines in the DMA code - ALSA: usb-audio: Add missing proc text entry for BESPOKEN type - ALSA: usb-audio: Add registration quirk for JBL Quantum headsets - [i386] ALSA: sb: Fix potential ABBA deadlock in CSP driver - ALSA: hda/realtek: Fix pop noise and 2 Front Mic issues on a machine - ALSA: hdmi: Expose all pins on MSI MS-7C94 board - ALSA: pcm: Call substream ack() method upon compat mmap commit - ALSA: pcm: Fix mmap capability check - xhci: Fix lost USB 2 remote wake - [powerpc*] KVM: PPC: Book3S HV Nested: Sanitise H_ENTER_NESTED TM state - usb: hub: Disable USB 3 device initiated lpm if exit latency is too high - usb: hub: Fix link power management max exit latency (MEL) calculations - USB: usb-storage: Add LaCie Rugged USB3-FW to IGNORE_UAS - USB: serial: option: add support for u-blox LARA-R6 family - USB: serial: cp210x: fix comments for GE CS1000 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick - [arm*] usb: dwc2: gadget: Fix GOUTNAK flow for Slave mode. - [arm*] usb: dwc2: gadget: Fix sending zero length packet in DDMA mode. - firmware/efi: Tell memblock about EFI iomem reservations - tracepoints: Update static_call before tp_funcs when adding a tracepoint - tracing/histogram: Rename "cpu" to "common_cpu" - tracing: Synthetic event field_pos is an index not a boolean - btrfs: check for missing device in btrfs_trim_fs - media: ngene: Fix out-of-bounds bug in ngene_command_config_free_buf() - ixgbe: Fix packet corruption due to missing DMA sync - bus: mhi: core: Validate channel ID when processing command completions - posix-cpu-timers: Fix rearm racing against process tick - io_uring: explicitly count entries for poll reqs - io_uring: remove double poll entry on arm failure - userfaultfd: do not untag user pointers - memblock: make for_each_mem_range() traverse MEMBLOCK_HOTPLUG regions - hugetlbfs: fix mount mode command line processing - rbd: don't hold lock_rwsem while running_list is being drained - rbd: always kick acquire on "acquired" and "released" notifications - misc: eeprom: at24: Always append device id even if label property is set. - driver core: Prevent warning when removing a device link from unregistered consumer - drm: Return -ENOTTY for non-drm ioctls - drm/amdgpu: update golden setting for sienna_cichlid - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes RX stats for Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes PCS register dump via ethtool -d on Topaz - PCI: Mark AMD Navi14 GPU ATS as broken - skbuff: Release nfct refcount on napi stolen or re-used skbs - Documentation: Fix intiramfs script name - usb: ehci: Prevent missed ehci interrupts with edge-triggered MSI - [amd64] drm/i915/gvt: Clear d3_entered on elsp cmd submission. - sfc: ensure correct number of XDP queues - xhci: add xhci_get_virt_ep() helper https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.55 - io_uring: fix link timeout refs - [x86] KVM: determine if an exception has an error code only when injecting it. - af_unix: fix garbage collect vs MSG_PEEK - workqueue: fix UAF in pwq_unbound_release_workfn() - cgroup1: fix leaked context root causing sporadic NULL deref in LTP - net/802/mrp: fix memleak in mrp_request_join() - net/802/garp: fix memleak in garp_request_join() - net: annotate data race around sk_ll_usec - sctp: move 198 addresses from unusable to private scope - rcu-tasks: Don't delete holdouts within trc_inspect_reader() - rcu-tasks: Don't delete holdouts within trc_wait_for_one_reader() - ipv6: allocate enough headroom in ip6_finish_output2() - drm/ttm: add a check against null pointer dereference - hfs: add missing clean-up in hfs_fill_super - hfs: fix high memory mapping in hfs_bnode_read - hfs: add lock nesting notation to hfs_find_init - cifs: fix the out of range assignment to bit fields in parse_server_interfaces - iomap: remove the length variable in iomap_seek_data - iomap: remove the length variable in iomap_seek_hole - ipv6: ip6_finish_output2: set sk into newly allocated nskb https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.56 - io_uring: fix null-ptr-deref in io_sq_offload_start() - [x86] asm: Ensure asm/proto.h can be included stand-alone - pipe: make pipe writes always wake up readers - btrfs: fix rw device counting in __btrfs_free_extra_devids - btrfs: mark compressed range uptodate only if all bio succeed - Revert "ACPI: resources: Add checks for ACPI IRQ override" - [x86] kvm: fix vcpu-id indexed array sizes - KVM: add missing compat KVM_CLEAR_DIRTY_LOG - ocfs2: fix zero out valid data - ocfs2: issue zeroout to EOF blocks - can: j1939: j1939_xtp_rx_dat_one(): fix rxtimer value between consecutive TP.DT to 750ms - can: raw: raw_setsockopt(): fix raw_rcv panic for sock UAF - can: peak_usb: pcan_usb_handle_bus_evt(): fix reading rxerr/txerr values - can: mcba_usb_start(): add missing urb->transfer_dma initialization (Closes: #990850) - can: usb_8dev: fix memory leak - can: ems_usb: fix memory leak - can: esd_usb2: fix memory leak - HID: wacom: Re-enable touch by default for Cintiq 24HDT / 27QHDT - NIU: fix incorrect error return, missed in previous revert - drm/amdgpu: Avoid printing of stack contents on firmware load error - drm/amdgpu: Fix resource leak on probe error path - blk-iocost: fix operation ordering in iocg_wake_fn() - nfc: nfcsim: fix use after free during module unload - cfg80211: Fix possible memory leak in function cfg80211_bss_update - bpf: Fix OOB read when printing XDP link fdinfo - mac80211: fix enabling 4-address mode on a sta vif after assoc - netfilter: conntrack: adjust stop timestamp to real expiry value - netfilter: nft_nat: allow to specify layer 4 protocol NAT only - i40e: Fix logic of disabling queues - i40e: Fix firmware LLDP agent related warning - i40e: Fix queue-to-TC mapping on Tx - i40e: Fix log TC creation failure when max num of queues is exceeded - tipc: fix implicit-connect for SYN+ - tipc: fix sleeping in tipc accept routine - net: Set true network header for ECN decapsulation - net: qrtr: fix memory leaks - tipc: do not write skb_shinfo frags when doing decrytion - mlx4: Fix missing error code in mlx4_load_one() - [x86] KVM: x86: Check the right feature bit for MSR_KVM_ASYNC_PF_ACK access - net: llc: fix skb_over_panic - [arm64] drm/msm/dpu: Fix sm8250_mdp register length - [arm64] drm/msm/dp: Initialize the INTF_CONFIG register - skmsg: Make sk_psock_destroy() static - net/mlx5: Fix flow table chaining - net/mlx5e: Fix nullptr in mlx5e_hairpin_get_mdev() - tulip: windbond-840: Fix missing pci_disable_device() in probe and remove - sis900: Fix missing pci_disable_device() in probe and remove - SMB3: fix readpage for large swap cache - [powerpc*] pseries: Fix regression while building external modules - Revert "perf map: Fix dso->nsinfo refcounting" - i40e: Add additional info to PHY type error - can: j1939: j1939_session_deactivate(): clarify lifetime of session object https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.57 - [x86] drm/i915: Revert "drm/i915/gem: Asynchronous cmdparser" - [x86] Revert "drm/i915: Propagate errors on awaiting already signaled fences" - btrfs: fix race causing unnecessary inode logging during link and rename - btrfs: fix lost inode on log replay after mix of fsync, rename and inode eviction - [armhf] spi: stm32h7: fix full duplex irq handler handling - r8152: Fix potential PM refcount imbalance - qed: fix possible unpaired spin_{un}lock_bh in _qed_mcp_cmd_and_union() - ASoC: rt5682: Fix the issue of garbled recording after powerd_dbus_suspend - net: Fix zero-copy head len calculation. - efi/mokvar: Reserve the table only if it is in boot services data - nvme: fix nvme_setup_command metadata trace event - ACPI: fix NULL pointer dereference - Revert "Bluetooth: Shutdown controller after workqueues are flushed or cancelled" - Revert "watchdog: iTCO_wdt: Account for rebooting on second timeout" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.58 - Revert "ACPICA: Fix memory leak caused by _CID repair function" - ALSA: seq: Fix racy deletion of subscriber - [armhf] bus: ti-sysc: Fix gpt12 system timer issue with reserved status - net: xfrm: fix memory leak in xfrm_user_rcv_msg - [armhf] imx: add missing iounmap() - [armhf] imx: add missing clk_disable_unprepare() - [arm64] dts: ls1028: sl28: fix networking for variant 2 - [armhf] imx: fix missing 3rd argument in macro imx_mmdc_perf_init - [armhf] dts: imx: Swap M53Menlo pinctrl_power_button/pinctrl_power_out pins - [arm64] dts: armada-3720-turris-mox: fixed indices for the SDHC controllers - [arm64] dts: armada-3720-turris-mox: remove mrvl,i2c-fast-mode - ALSA: usb-audio: fix incorrect clock source setting - [arm64,armhf] clk: tegra: Implement disable_unused() of tegra_clk_sdmmc_mux_ops - [armhf] dmaengine: stm32-dma: Fix PM usage counter imbalance in stm32 dma ops - [armhf] dmaengine: stm32-dmamux: Fix PM usage counter unbalance in stm32 dmamux ops - [armhf] spi: imx: mx51-ecspi: Reinstate low-speed CONFIGREG delay - [armhf] spi: imx: mx51-ecspi: Fix low-speed CONFIGREG delay calculation - scsi: sr: Return correct event when media event code is 3 - media: videobuf2-core: dequeue if start_streaming fails - [armhf] dmaengine: imx-dma: configure the generic DMA type to make it work - net, gro: Set inner transport header offset in tcp/udp GRO hook - net: phy: micrel: Fix detection of ksz87xx switch - net: natsemi: Fix missing pci_disable_device() in probe and remove - RDMA/mlx5: Delay emptying a cache entry when a new MR is added to it recently - sctp: move the active_key update after sh_keys is added - nfp: update ethtool reporting of pauseframe control - net: ipv6: fix returned variable type in ip6_skb_dst_mtu - net: sched: fix lockdep_set_class() typo error for sch->seqlock - [mips*] check return value of pgtable_pmd_page_ctor - bnx2x: fix an error code in bnx2x_nic_load() - net: pegasus: fix uninit-value in get_interrupt_interval - [arm64,armhf] net: fec: fix use-after-free in fec_drv_remove - net: vxge: fix use-after-free in vxge_device_unregister - Bluetooth: defer cleanup of resources in hci_unregister_dev() - USB: usbtmc: Fix RCU stall warning - USB: serial: option: add Telit FD980 composition 0x1056 - USB: serial: ch341: fix character loss at high transfer rates - USB: serial: ftdi_sio: add device ID for Auto-M3 OP-COM v2 - [x86] firmware_loader: use -ETIMEDOUT instead of -EAGAIN in fw_load_sysfs_fallback - [x86] firmware_loader: fix use-after-free in firmware_fallback_sysfs - ALSA: pcm - fix mmap capability check for the snd-dummy driver - ALSA: hda/realtek: add mic quirk for Acer SF314-42 - ALSA: hda/realtek: Fix headset mic for Acer SWIFT SF314-56 (ALC256) - ALSA: usb-audio: Fix superfluous autosuspend recovery - ALSA: usb-audio: Add registration quirk for JBL Quantum 600 - [arm64,armhf] usb: dwc3: gadget: Avoid runtime resume if disabling pullup - usb: gadget: f_hid: added GET_IDLE and SET_IDLE handlers - usb: gadget: f_hid: fixed NULL pointer dereference - usb: gadget: f_hid: idle uses the highest byte for duration - usb: typec: tcpm: Keep other events when receiving FRS and Sourcing_vbus events - clk: fix leak on devm_clk_bulk_get_all() unwind - tracing: Fix NULL pointer dereference in start_creating - tracepoint: static call: Compare data on transition from 2->1 callees - tracepoint: Fix static call function vs data state mismatch - [arm64] stacktrace: avoid tracing arch_stack_walk() - [arm64] optee: Clear stale cache entries during initialization - [arm64] tee: add tee_shm_alloc_kernel_buf() - [arm64] optee: Fix memory leak when failing to register shm pages - [arm64] optee: Refuse to load the driver under the kdump kernel - [arm64] optee: fix tee out of memory failure seen during kexec reboot - staging: rtl8723bs: Fix a resource leak in sd_int_dpc - staging: rtl8712: get rid of flush_scheduled_work - staging: rtl8712: error handling refactoring - drivers core: Fix oops when driver probe fails - media: rtl28xxu: fix zero-length control request - pipe: increase minimum default pipe size to 2 pages - ext4: fix potential htree corruption when growing large_dir directories - [arm64,armhf] serial: tegra: Only print FIFO error message when an error occurs - serial: 8250: Mask out floating 16/32-bit bus bits - [mips*] Malta: Do not byte-swap accesses to the CBUS UART - serial: 8250_pci: Enumerate Elkhart Lake UARTs via dedicated driver - serial: 8250_pci: Avoid irq sharing for MSI(-X) interrupts. - timers: Move clearing of base::timer_running under base:: Lock - xfrm: Fix RCU vs hash_resize_mutex lock inversion - pcmcia: i82092: fix a null pointer dereference bug - selinux: correct the return value when loads initial sids - [armhf] bus: ti-sysc: AM3: RNG is GP only - [arm64] Revert "gpio: mpc8xxx: change the gpio interrupt flags." - [armhf] omap2+: hwmod: fix potential NULL pointer access - md/raid10: properly indicate failure when ending a failed write request - [x86] KVM: accept userspace interrupt only if no event is injected - KVM: Do not leak memory for duplicate debugfs directories - [x86] KVM: x86/mmu: Fix per-cpu counter corruption on 32-bit builds - [arm64] vdso: Avoid ISB after reading from cntvct_el0 - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_remove - [x86] drm/i915: Correct SFC_DONE register offset - sched/rt: Fix double enqueue caused by rt_effective_prio - [x86] drm/i915: avoid uninitialised var in eb_parse() - libata: fix ata_pio_sector for CONFIG_HIGHMEM - reiserfs: add check for root_inode in reiserfs_fill_super - reiserfs: check directory items on read from disk - net: qede: Fix end of loop tests for list_for_each_entry - net/qla3xxx: fix schedule while atomic in ql_wait_for_drvr_lock and ql_adapter_reset - smb3: rc uninitialized in one fallocate path - drm/amdgpu/display: only enable aux backlight control for OLED panels - [arm64] fix compat syscall return truncation https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.59 - [x86] KVM: SVM: Fix off-by-one indexing when nullifying last used SEV VMCB - [arm64] tee: Correct inappropriate usage of TEE_SHM_DMA_BUF flag - bpf: Add lockdown check for probe_write_user helper - mm: make zone_to_nid() and zone_set_nid() available for DISCONTIGMEM - [x86] vboxsf: Honor excl flag to the dir-inode create op - [x86] vboxsf: Make vboxsf_dir_create() return the handle for the created file - USB:ehci:fix Kunpeng920 ehci hardware problem - ALSA: pcm: Fix mmap breakage without explicit buffer setup - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 650 G8 Notebook PC - ALSA: hda: Add quirk for ASUS Flow x13 - ppp: Fix generating ppp unit id when ifname is not specified - net: xilinx_emaclite: Do not print real IOMEM pointer (CVE-2021-38205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.60 - iio: adc: ti-ads7950: Ensure CS is deasserted after reading channels - iio: adis: set GPIO reset pin direction - [x86] ASoC: amd: Fix reference to PCM buffer address - [x86] ASoC: intel: atom: Fix reference to PCM buffer address - i2c: dev: zero out array used for i2c reads from userspace - cifs: create sd context must be a multiple of 8 - scsi: lpfc: Move initialization of phba->poll_list earlier to avoid crash - seccomp: Fix setting loaded filter count during TSYNC - [armhf] net: ethernet: ti: cpsw: fix min eth packet size for non-switch use-cases - ceph: reduce contention in ceph_check_delayed_caps() - [amd64,arm64] ACPI: NFIT: Fix support for virtual SPA ranges - libnvdimm/region: Fix label activation vs errors - drm/amd/display: use GFP_ATOMIC in amdgpu_dm_irq_schedule_work - drm/amdgpu: don't enable baco on boco platforms in runpm - ieee802154: hwsim: fix GPF in hwsim_set_edge_lqi - ieee802154: hwsim: fix GPF in hwsim_new_edge_nl - [x86] ASoC: SOF: Intel: hda-ipc: fix reply size checking - netfilter: nf_conntrack_bridge: Fix memory leak when error - [x86] pinctrl: tigerlake: Fix GPIO mapping for newer version of software - [x86] platform/x86: pcengines-apuv2: Add missing terminating entries to gpio-lookup tables - net: phy: micrel: Fix link detection on ksz87xx switch" - ppp: Fix generating ifname when empty IFLA_IFNAME is specified - net/smc: fix wait on already cleared link - net: sched: act_mirred: Reset ct info when mirror/redirect skb - ice: Prevent probing virtual functions - ice: don't remove netdev->dev_addr from uc sync list - iavf: Set RSS LUT and key in reset handle path - net/mlx5: Synchronize correct IRQ when destroying CQ - net/mlx5: Fix return value from tracer initialization - [arm64] drm/meson: fix colour distortion from HDR set during vendor u-boot - net: Fix memory leak in ieee802154_raw_deliver - net: igmp: fix data-race in igmp_ifc_timer_expire() - net: bridge: validate the NUD_PERMANENT bit when adding an extern_learn FDB entry - net: bridge: fix flags interpretation for extern learn fdb entries - net: bridge: fix memleak in br_add_if() - net: linkwatch: fix failure to restore device state across suspend/resume - tcp_bbr: fix u32 wrap bug in round logic if bbr_init() called after 2B packets - net: igmp: increase size of mr_ifc_count - [x86] drm/i915: Only access SFC_DONE when media domain is not fused off - xen/events: Fix race in set_evtchn_to_irq - vsock/virtio: avoid potential deadlock when vsock device remove - nbd: Aovid double completion of a request - [arm64] efi/libstub: arm64: Force Image reallocation if BSS was not reserved - [arm64] efi/libstub: arm64: Relax 2M alignment again for relocatable kernels - [powerpc*] kprobes: Fix kprobe Oops happens in booke - genirq: Provide IRQCHIP_AFFINITY_PRE_STARTUP - [x86] msi: Force affinity setup before startup - [x86] ioapic: Force affinity setup before startup - [x86] resctrl: Fix default monitoring groups reporting - genirq/msi: Ensure deactivation on teardown - PCI/MSI: Enable and mask MSI-X early - PCI/MSI: Mask all unused MSI-X entries - PCI/MSI: Enforce that MSI-X table entry is masked for update - PCI/MSI: Enforce MSI[X] entry updates to be visible - PCI/MSI: Do not set invalid bits in MSI mask - PCI/MSI: Correct misleading comments - PCI/MSI: Use msi_mask_irq() in pci_msi_shutdown() - PCI/MSI: Protect msi_desc::masked for multi-MSI - [powerpc*] smp: Fix OOPS in topology_init() - [arm64] efi/libstub: arm64: Double check image alignment at entry - [x86] KVM: VMX: Use current VMCS to query WAITPKG support for MSR emulation - [x86] KVM: nVMX: Use vmx_need_pf_intercept() when deciding if L0 wants a #PF - [x86] vboxsf: Add vboxsf_[create|release]_sf_handle() helpers - [x86] vboxsf: Add support for the atomic_open directory-inode op - ceph: add some lockdep assertions around snaprealm handling - ceph: clean up locking annotation for ceph_get_snap_realm and __lookup_snap_realm - ceph: take snap_empty_lock atomically with snaprealm refcount change https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.61 - mtd: cfi_cmdset_0002: fix crash when erasing/writing AMD cards - media: zr364xx: propagate errors from zr364xx_start_readpipe() - media: zr364xx: fix memory leaks in probe() - media: drivers/media/usb: fix memory leak in zr364xx_probe - [x86] KVM: Factor out x86 instruction emulation with decoding - [x86] KVM: Fix warning caused by stale emulation context - USB: core: Avoid WARNings for 0-length descriptor requests - USB: core: Fix incorrect pipe calculation in do_proc_control() - dmaengine: xilinx_dma: Fix read-after-free bug when terminating transfers - net: xfrm: Fix end of loop tests for list_for_each_entry - dmaengine: of-dma: router_xlate to return -EPROBE_DEFER if controller is not yet available - scsi: pm80xx: Fix TMF task completion race condition - scsi: megaraid_mm: Fix end of loop tests for list_for_each_entry() - scsi: scsi_dh_rdac: Avoid crash during rdac_bus_attach() - scsi: core: Avoid printing an error if target_alloc() returns -ENXIO - scsi: core: Fix capacity set to zero after offlinining device - drm/amdgpu: fix the doorbell missing when in CGPG issue for renoir. - qede: fix crash in rmmod qede while automatic debug collection - net: usb: pegasus: Check the return value of get_geristers() and friends; - net: usb: lan78xx: don't modify phy_device state concurrently - Bluetooth: hidp: use correct wait queue when removing ctrl_wait (Closes: #992121) - [arm64] dts: qcom: c630: fix correct powerdown pin for WSA881x - [arm64] dts: qcom: msm8992-bullhead: Remove PSCI - iommu: Check if group is NULL before remove device - [arm64] cpufreq: armada-37xx: forbid cpufreq for 1.2 GHz variant - virtio: Protect vqs list access - [armhf] bus: ti-sysc: Fix error handling for sysc_check_active_timer() - vhost: Fix the calculation in vhost_overflow() - bpf: Clear zext_dst of dead insns - bnxt: don't lock the tx queue from napi poll - bnxt: disable napi before canceling DIM - bnxt: make sure xmit_more + errors does not miss doorbells - bnxt: count Tx drops - net: 6pack: fix slab-out-of-bounds in decode_data - bnxt_en: Disable aRFS if running on 212 firmware - bnxt_en: Add missing DMA memory barriers - vrf: Reset skb conntrack connection on VRF rcv - virtio-net: support XDP when not more queues - virtio-net: use NETIF_F_GRO_HW instead of NETIF_F_LRO - net: qlcnic: add missed unlock in qlcnic_83xx_flash_read32 - ixgbe, xsk: clean up the resources in ixgbe_xsk_pool_enable error path - sch_cake: fix srchost/dsthost hashing mode - [arm64,armhf] net: mdio-mux: Don't ignore memory allocation errors - [arm64,armhf] net: mdio-mux: Handle -EPROBE_DEFER correctly - ovs: clear skb->tstamp in forwarding path - [amd64] iommu/vt-d: Consolidate duplicate cache invaliation code - [amd64] iommu/vt-d: Fix incomplete cache flush in intel_pasid_tear_down_entry() - r8152: fix writing USB_BP2_EN - i40e: Fix ATR queue selection - iavf: Fix ping is lost after untrusted VF had tried to change MAC - Revert "flow_offload: action should not be NULL when it is referenced" - [arm64,armhf] mmc: dw_mmc: Fix hang on data CRC error - [arm64,armhf] mmc: mmci: stm32: Check when the voltage switch procedure should be done - [arm64] mmc: sdhci-msm: Update the software timeout value for sdhc - [armhf] clk: imx6q: fix uart earlycon unwork - [arm64] clk: qcom: gdsc: Ensure regulator init state matches GDSC state - ALSA: hda - fix the 'Capture Switch' value change notifications - slimbus: messaging: start transaction ids from 1 instead of zero - slimbus: messaging: check for valid transaction id - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9510 laptop - [arm*] mmc: sdhci-iproc: Cap min clock frequency on BCM2711 - [arm*] mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711 - btrfs: prevent rename2 from exchanging a subvol with a directory from different parents - ALSA: hda/via: Apply runtime PM workaround for ASUS B23E - [s390x] pci: fix use after free of zpci_dev - PCI: Increase D3 delay for AMD Renoir/Cezanne XHCI - ALSA: hda/realtek: Limit mic boost on HP ProBook 445 G8 - [x86] ASoC: intel: atom: Fix breakage for PCM buffer address setup - mm: memcontrol: fix occasional OOMs due to proportional memory.low reclaim - fs: warn about impending deprecation of mandatory locks - io_uring: fix xa_alloc_cycle() error return value check - io_uring: only assign io_uring_enter() SQPOLL error in actual error case https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.62 - bpf: Fix ringbuf helper function compatibility - bpf: Fix NULL pointer dereference in bpf_get_local_storage() helper - ASoC: rt5682: Adjust headset volume button threshold - ASoC: component: Remove misplaced prefix handling in pin control functions - netfilter: conntrack: collect all entries in one cycle - once: Fix panic when module unload - blk-iocost: fix lockdep warning on blkcg->lock - ovl: fix uninitialized pointer read in ovl_lookup_real_one() - [arm64] net: mscc: Fix non-GPL export of regmap APIs - can: usb: esd_usb2: esd_usb2_rx_event(): fix the interchange of the CAN RX and TX error counters - ceph: correctly handle releasing an embedded cap flush - Revert "btrfs: compression: don't try to compress if we don't have enough pages" - drm/amdgpu: Cancel delayed work when GFXOFF is disabled - Revert "USB: serial: ch341: fix character loss at high transfer rates" - USB: serial: option: add new VID/PID to support Fibocom FG150 - [arm64,armhf] usb: dwc3: gadget: Fix dwc3_calc_trbs_left() - [arm64,armhf] usb: dwc3: gadget: Stop EP0 transfers during pullup disable - scsi: core: Fix hang of freezing queue between blocking and running device - [amd64] IB/hfi1: Fix possible null-pointer dereference in _extend_sdma_tx_descs() - ice: do not abort devlink info if board identifier can't be found - net: usb: pegasus: fixes of set_register(s) return value evaluation; - igc: fix page fault when thunderbolt is unplugged - igc: Use num_tx_queues when iterating over tx_ring queue - e1000e: Fix the max snoop/no-snoop latency for 10M - e1000e: Do not take care about recovery NVM checksum - ip_gre: add validation for csum_start - [arm64] xgene-v2: Fix a resource leak in the error handling path of 'xge_probe()' - [arm64,armhf] net: marvell: fix MVNETA_TX_IN_PRGRS bit number - ucounts: Increase ucounts reference counter before the security hook - net/sched: ets: fix crash when flipping from 'strict' to 'quantum' - ipv6: use siphash in rt6_exception_hash() - ipv4: use siphash instead of Jenkins in fnhe_hashfun() - cxgb4: dont touch blocked freelist bitmap after free - rtnetlink: Return correct error on changing device netns - [arm64] net: hns3: clear hardware resource when loading driver - [arm64] net: hns3: add waiting time before cmdq memory is released - [arm64] net: hns3: fix duplicate node in VLAN list - [arm64] net: hns3: fix get wrong pfc_en when query PFC configuration - [arm*] Revert "mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711" - net: stmmac: add mutex lock to protect est parameters - net: stmmac: fix kernel panic due to NULL pointer dereference of plat->est - [x86] drm/i915: Fix syncmap memory leak - usb: gadget: u_audio: fix race condition on endpoint stop - [x86] perf/x86/intel/uncore: Fix integer overflow on 23 bit left shift of a u32 - iwlwifi: pnvm: accept multiple HW-type TLVs - opp: remove WARN when no valid OPPs remain - [arm64,armhf] cpufreq: blocklist Qualcomm sm8150 in cpufreq-dt-platdev - virtio: Improve vq->broken access to avoid any compiler optimization - virtio_pci: Support surprise removal of virtio pci device - qed: qed ll2 race condition fixes - qed: Fix null-pointer dereference in qed_rdma_create_qp() - blk-mq: don't grab rq's refcount in blk_mq_check_expired() - drm: Copy drm_wait_vblank to user before returning - drm/nouveau/disp: power down unused DP links during init - drm/nouveau/kms/nv50: workaround EFI GOP window channel format differences - net/rds: dma_map_sg is entitled to merge entries - btrfs: fix race between marking inode needs to be logged and log syncing - pipe: avoid unnecessary EPOLLET wakeups under normal loads - pipe: do FASYNC notifications for every pipe IO, not just state changes - tipc: call tipc_wait_for_connect only when dlen is not 0 - Bluetooth: btusb: check conditions before enabling USB ALT 3 for WBS - [powerpc*] perf: Invoke per-CPU variable access with disabled interrupts - srcu: Provide internal interface to start a Tree SRCU grace period - srcu: Provide polling interfaces for Tree SRCU grace periods - srcu: Provide internal interface to start a Tiny SRCU grace period - srcu: Make Tiny SRCU use multi-bit grace-period counter - srcu: Provide polling interfaces for Tiny SRCU grace periods - tracepoint: Use rcu get state and cond sync for static call updates - usb: typec: ucsi: acpi: Always decode connector change information (Closes: #992004) - usb: typec: ucsi: Work around PPM losing change information - usb: typec: ucsi: Clear pending after acking connector change - [arm64] dts: qcom: msm8994-angler: Fix gpio-reserved-ranges 85-88 - kthread: Fix PF_KTHREAD vs to_kthread() race - Revert "floppy: reintroduce O_NDELAY fix" - net: don't unconditionally copy_from_user a struct ifreq for socket ioctls - audit: move put_tree() to avoid trim_trees refcount underflow and UAF - bpf: Fix potentially incorrect results with bpf_get_local_storage() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.63 - fscrypt: add fscrypt_symlink_getattr() for computing st_size - ext4: report correct st_size for encrypted symlinks - f2fs: report correct st_size for encrypted symlinks - ubifs: report correct st_size for encrypted symlinks - Revert "ucounts: Increase ucounts reference counter before the security hook" - Revert "cred: add missing return error code when set_cred_ucounts() failed" - Revert "Add a reference to ucounts for each cred" - [armhf] gpu: ipu-v3: Fix i.MX IPU-v3 offset calculations for (semi)planar U/V formats - qed: Fix the VF msix vectors flow - [arm64] net: macb: Add a NULL check on desc_ptp - qede: Fix memset corruption - [x86] perf/x86/intel/pt: Fix mask of num_address_ranges - ceph: fix possible null-pointer dereference in ceph_mdsmap_decode() - [x86] perf/x86/amd/ibs: Work around erratum #1197 - [x86] perf/x86/amd/power: Assign pmu.module - ALSA: hda/realtek: Quirk for HP Spectre x360 14 amp setup - ALSA: hda/realtek: Workaround for conflicting SSID on ASUS ROG Strix G17 - ALSA: pcm: fix divide error in snd_pcm_lib_ioctl - spi: Switch to signed types for *_native_cs SPI controller fields - new helper: inode_wrong_type() - fuse: fix illegal access to inode with reused nodeid - media: stkwebcam: fix memory leak in stk_camera_probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.64 - igmp: Add ip_mc_list lock in ip_check_mc_rcu - USB: serial: mos7720: improve OOM-handling in read_mos_reg() - mm/page_alloc: speed up the iteration of max_order - Revert "r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM" - [amd64] x86/events/amd/iommu: Fix invalid Perf result due to IOMMU PMC power-gating - blk-mq: fix kernel panic during iterating over flush request - blk-mq: fix is_flush_rq - blk-mq: clearing flush request reference in tags->rqs[] - ALSA: usb-audio: Add registration quirk for JBL Quantum 800 - xhci: fix even more unsafe memory usage in xhci tracing - xhci: fix unsafe memory usage in xhci tracing - [x86] reboot: Limit Dell Optiplex 990 quirk to early BIOS versions - PCI: Call Max Payload Size-related fixup quirks early https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.65 - locking/mutex: Fix HANDOFF condition - regmap: fix the offset of register error log - sched/deadline: Fix reset_on_fork reporting of DL tasks - power: supply: axp288_fuel_gauge: Report register-address on readb / writeb errors - sched/deadline: Fix missing clock update in migrate_task_rq_dl() - rcu/tree: Handle VM stoppage in stall detection - [x86] EDAC/mce_amd: Do not load edac_mce_amd module on guests - posix-cpu-timers: Force next expiration recalc after itimer reset - hrtimer: Avoid double reprogramming in __hrtimer_start_range_ns() - hrtimer: Ensure timerfd notification for HIGHRES=n - udf: Check LVID earlier - udf: Fix iocharset=utf8 mount option - isofs: joliet: Fix iocharset=utf8 mount option - bcache: add proper error unwinding in bcache_device_init - blk-throtl: optimize IOPS throttle for large IO scenarios - nvme-tcp: don't update queue count when failing to set io queues - nvme-rdma: don't update queue count when failing to set io queues - nvmet: pass back cntlid on successful completion - [x86] power: supply: max17042_battery: fix typo in MAx17042_TOFF - [s390x] cio: add dev_busid sysfs entry for each subchannel - [s390x] zcrypt: fix wrong offset index for APKA master key valid state - libata: fix ata_host_start() - [x86] crypto: qat - do not ignore errors from enable_vf2pf_comms() - [x86] crypto: qat - handle both source of interrupt in VF ISR - [x86] crypto: qat - fix reuse of completion variable - [x86] crypto: qat - fix naming for init/shutdown VF to PF notifications - [x86] crypto: qat - do not export adf_iov_putmsg() - fcntl: fix potential deadlock for &fasync_struct.fa_lock - udf_get_extendedattr() had no boundary checks. - [s390x] pci: fix misleading rc in clp_set_pci_fn() - [s390x] debug: keep debug data on resize - [s390x] debug: fix debug area life cycle - [s390x] ap: fix state machine hang after failure to enable irq - [arm64] power: supply: cw2015: use dev_err_probe to allow deferred probe - sched/numa: Fix is_core_idle() - sched: Fix UCLAMP_FLAG_IDLE setting - rcu: Fix to include first blocked task in stall warning - rcu: Add lockdep_assert_irqs_disabled() to rcu_sched_clock_irq() and callees - rcu: Fix stall-warning deadlock due to non-release of rcu_node ->lock - block: return ELEVATOR_DISCARD_MERGE if possible - [arm64] spi: spi-fsl-dspi: Fix issue with uninitialized dma_slave_config - genirq/timings: Fix error return code in irq_timings_test_irqs() - [mips64el,mipsel] irqchip/loongson-pch-pic: Improve edge triggered interrupt support - lib/mpi: use kcalloc in mpi_resize - block: nbd: add sanity check for first_minor - [arm64,armhf] irqchip/gic-v3: Fix priority comparison when non-secure priorities are used - [x86] crypto: qat - use proper type for vf_mask - [x86] mce: Defer processing of early errors - [arm64] regulator: vctrl: Use locked regulator_get_voltage in probe path - [arm64] regulator: vctrl: Avoid lockdep warning in enable/disable ops - [arm64,armhf] drm/panfrost: Fix missing clk_disable_unprepare() on error in panfrost_clk_init() - [x86] drm/gma500: Fix end of loop tests for list_for_each_entry - drm/of: free the right object - bpf: Fix a typo of reuseport map in bpf.h. - bpf: Fix potential memleak and UAF in the verifier. - drm/of: free the iterator object on failure - [amd64] gve: fix the wrong AdminQ buffer overflow check - i40e: improve locking of mac_filter_hash - gfs2: Fix memory leak of object lsi on error return path - firmware: fix theoretical UAF race with firmware cache and resume - driver core: Fix error return code in really_probe() - media: dvb-usb: fix uninit-value in dvb_usb_adapter_dvb_init - media: dvb-usb: fix uninit-value in vp702x_read_mac_addr - media: dvb-usb: Fix error handling in dvb_usb_i2c_init - media: go7007: fix memory leak in go7007_usb_probe - media: go7007: remove redundant initialization - [armhf] media: coda: fix frame_mem_ctrl for YUV420 and YVU420 formats - Bluetooth: sco: prevent information leak in sco_conn_defer_accept() - [x86] drm/amdgpu/acp: Make PM domain really work - tcp: seq_file: Avoid skipping sk during tcp_seek_last_pos - [armhf] dts: meson8b: odroidc1: Fix the pwm regulator supply properties - [armhf] dts: meson8b: mxq: Fix the pwm regulator supply properties - [armhf] dts: meson8b: ec100: Fix the pwm regulator supply properties - net/mlx5e: Prohibit inner indir TIRs in IPoIB - net/mlx5e: Block LRO if firmware asks for tunneled LRO - cgroup/cpuset: Fix a partition bug with hotplug - net: cipso: fix warnings in netlbl_cipsov4_add_std - Bluetooth: mgmt: Fix wrong opcode in the response for add_adv cmd - devlink: Break parameter notification sequence to be before/after unload/load driver - net/mlx5: Fix missing return value in mlx5_devlink_eswitch_inline_mode_set() - leds: lt3593: Put fwnode in any case during ->probe() - leds: trigger: audio: Add an activate callback to ensure the initial brightness is set - media: em28xx-input: fix refcount bug in em28xx_usb_disconnect - [arm64] media: venus: venc: Fix potential null pointer dereference on pointer fmt - PCI: PM: Avoid forcing PCI_D0 for wakeup reasons inconsistently - PCI: PM: Enable PME if it can be signaled from D3cold - debugfs: Return error during {full/open}_proxy_open() on rmmod - Bluetooth: increase BTNAMSIZ to 21 chars to fix potential buffer overflow - PM: EM: Increase energy calculation precision - [arm64] drm/msm/mdp4: refactor HW revision detection into read_mdp_hw_revision - [arm64] drm/msm/mdp4: move HW revision detection to earlier phase - [arm64] drm/msm/dpu: make dpu_hw_ctl_clear_all_blendstages clear necessary LMs - cgroup/cpuset: Miscellaneous code cleanup - cgroup/cpuset: Fix violation of cpuset locking rule - [x86] ASoC: Intel: Fix platform ID matching - Bluetooth: fix repeated calls to sco_sock_kill - [arm64] drm/msm/dsi: Fix some reference counted resource leaks - net/mlx5: Register to devlink ingress VLAN filter trap - net/mlx5: Fix unpublish devlink parameters - [x86] ASoC: rt5682: Implement remove callback - [x86] ASoC: rt5682: Properly turn off regulators if wrong device ID - [arm64,armhf] usb: dwc3: meson-g12a: add IRQ check - [arm64] usb: dwc3: qcom: add IRQ check - [armhf] usb: phy: twl6030: add IRQ checks - devlink: Clear whole devlink_flash_notify struct - Bluetooth: Move shutdown callback before flushing tx and rx queue - PM: cpu: Make notifier chain use a raw_spinlock_t - mac80211: Fix insufficient headroom issue for AMSDU - locking/lockdep: Mark local_lock_t - locking/local_lock: Add missing owner initialization - lockd: Fix invalid lockowner cast after vfs_test_lock - nfsd4: Fix forced-expiry locking - [arm64] dts: marvell: armada-37xx: Extend PCIe MEM space - [arm*] firmware: raspberrypi: Keep count of all consumers - [arm*] firmware: raspberrypi: Fix a leak in 'rpi_firmware_get()' - mm/swap: consider max pages in iomap_swapfile_add_extent - Bluetooth: add timeout sanity check to hci_inquiry - [armhf] i2c: s3c2410: fix IRQ check - gfs2: init system threads before freeze lock - rsi: fix error code in rsi_load_9116_firmware() - rsi: fix an error code in rsi_probe() - [x86] ASoC: Intel: Skylake: Leave data as is when invoking TLV IPCs - [x86] ASoC: Intel: Skylake: Fix module resource and format selection - mmc: sdhci: Fix issue with uninitialized dma_slave_config - [arm64,armhf] mmc: dw_mmc: Fix issue with uninitialized dma_slave_config - bpf: Fix possible out of bound write in narrow load handling - CIFS: Fix a potencially linear read overflow - [arm64] i2c: xlp9xx: fix main IRQ check - [arm*] usb: ehci-orion: Handle errors of clk_prepare_enable() in probe - [arm64] tty: serial: fsl_lpuart: fix the wrong mapbase value - iwlwifi: follow the new inclusive terminology - iwlwifi: skip first element in the WTAS ACPI table - ice: Only lock to update netdev dev_addr - ath6kl: wmi: fix an error code in ath6kl_wmi_sync_point() - [amd64,arm64] atlantic: Fix driver resume flow. - bcma: Fix memory leak for internally-handled cores - brcmfmac: pcie: fix oops on failure to resume and reprobe - ipv6: make exception cache less predictible - ipv4: make exception cache less predictible - net: sched: Fix qdisc_rate_table refcount leak when get tcf_block failed - ipv4: fix endianness issue in inet_rtm_getroute_build_skb() - [x86] ASoC: rt5682: Remove unused variable in rt5682_i2c_remove() - iwlwifi Add support for ax201 in Samsung Galaxy Book Flex2 Alpha - f2fs: guarantee to write dirty data when enabling checkpoint back - time: Handle negative seconds correctly in timespec64_to_ns() - io_uring: IORING_OP_WRITE needs hash_reg_file set - bio: fix page leak bio_add_hw_page failure - tty: Fix data race between tiocsti() and flush_to_ldisc() - [x86] perf/x86/amd/ibs: Extend PERF_PMU_CAP_NO_EXCLUDE to IBS Op - [x86] resctrl: Fix a maybe-uninitialized build warning treated as error - [x86] Revert "KVM: x86: mmu: Add guest physical address check in translate_gpa()" - [s390x] KVM: index kvm->arch.idle_mask by vcpu_idx - [x86] KVM: x86: Update vCPU's hv_clock before back to guest when tsc_offset is adjusted - [x86] KVM: VMX: avoid running vmx_handle_exit_irqoff in case of emulation - [x86] KVM: nVMX: Unconditionally clear nested.pi_pending on nested VM-Enter - fuse: truncate pagecache on atomic_o_trunc - fuse: flush extending writes - fbmem: don't allow too huge resolutions - backlight: pwm_bl: Improve bootloader/kernel device handover - [armel] clk: kirkwood: Fix a clocking boot regression https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.66 - Revert "Bluetooth: Move shutdown callback before flushing tx and rx queue" - Revert "block: nbd: add sanity check for first_minor" - Revert "posix-cpu-timers: Force next expiration recalc after itimer reset" - Revert "time: Handle negative seconds correctly in timespec64_to_ns()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.67 - io_uring: limit fixed table size by RLIMIT_NOFILE - io_uring: place fixed tables under memcg limits - io_uring: add ->splice_fd_in checks - io_uring: fail links of cancelled timeouts - io-wq: fix wakeup race when adding new work - btrfs: wake up async_delalloc_pages waiters after submit - btrfs: reset replace target device to allocation state on close - blk-zoned: allow zone management send operations without CAP_SYS_ADMIN - blk-zoned: allow BLKREPORTZONE without CAP_SYS_ADMIN - PCI/MSI: Skip masking MSI-X on Xen PV - [powerpc*] perf/hv-gpci: Fix counter value parsing - xen: fix setting of max_pfn in shared_info - 9p/xen: Fix end of loop tests for list_for_each_entry - ceph: fix dereference of null pointer cf - [armhf] soc: aspeed: lpc-ctrl: Fix boundary check for mmap - [armhf] soc: aspeed: p2a-ctrl: Fix boundary check for mmap - [arm64] mm: Fix TLBI vs ASID rollover - [arm64] head: avoid over-mapping in map_memory - iio: ltc2983: fix device probe - [arm64] wcn36xx: Ensure finish scan is not requested before start scan - block: bfq: fix bfq_set_next_ioprio_data() - [x86] power: supply: max17042: handle fails of reading status register - dm crypt: Avoid percpu_counter spinlock contention in crypt_page_alloc() - [x86] crypto: ccp - shutdown SEV firmware on kexec - [x86] VMCI: fix NULL pointer dereference when unmapping queue pair - media: uvc: don't do DMA on stack - media: rc-loopback: return number of emitters rather than error - [s390x] qdio: fix roll-back after timeout on ESTABLISH ccw - [s390x] qdio: cancel the ESTABLISH ccw after timeout - [armhf] Revert "dmaengine: imx-sdma: refine to load context only once" - [armhf] dmaengine: imx-sdma: remove duplicated sdma_load_context - libata: add ATA_HORKAGE_NO_NCQ_TRIM for Samsung 860 and 870 SSDs - f2fs: fix to do sanity check for sb/cp fields correctly - PCI/portdrv: Enable Bandwidth Notification only if port supports it - PCI: Restrict ASMedia ASM1062 SATA Max Payload Size Supported - PCI: Return ~0 data on pciconfig_read() CAP_SYS_ADMIN failure - [arm64] PCI: xilinx-nwl: Enable the clock through CCF - [arm64] PCI: aardvark: Configure PCIe resources from 'ranges' DT property - PCI: Export pci_pio_to_address() for module use - [arm64] PCI: aardvark: Fix checking for PIO status - [arm64] PCI: aardvark: Fix masking and unmasking legacy INTx interrupts - HID: input: do not report stylus battery state as "full" - f2fs: quota: fix potential deadlock - [arm64] pinctrl: armada-37xx: Correct PWM pins definitions - scsi: bsg: Remove support for SCSI_IOCTL_SEND_COMMAND - [arm64,armhf] clk: rockchip: drop GRF dependency for rk3328/rk3036 pll types - [amd64] IB/hfi1: Adjust pkey entry in index 0 - RDMA/iwcm: Release resources if iw_cm module initialization fails - docs: Fix infiniband uverbs minor number - scsi: BusLogic: Use %X for u32 sized integer rather than %lX - [armhf] pinctrl: samsung: Fix pinctrl bank pin count - scsi: ufs: Fix memory corruption by ufshcd_read_desc_param() - [powerpc*] cpuidle: pseries: Fixup CEDE0 latency only for POWER10 onwards - [powerpc*] stacktrace: Include linux/delay.h - RDMA/mlx5: Delete not-available udata check - [powerpc*] cpuidle: pseries: Mark pseries_idle_proble() as __init - f2fs: reduce the scope of setting fsck tag when de->name_len is zero - NFSv4/pNFS: Fix a layoutget livelock loop - NFSv4/pNFS: Always allow update of a zero valued layout barrier - NFSv4/pnfs: The layout barrier indicate a minimal value for the seqid - SUNRPC: Fix potential memory corruption - SUNRPC/xprtrdma: Fix reconnection locking - SUNRPC query transport's source port - sunrpc: Fix return value of get_srcport() - [arm64,armhf] pinctrl: single: Fix error return code in pcs_parse_bits_in_pinctrl_entry() - [powerpc*] numa: Consider the max NUMA node for migratable LPAR - scsi: smartpqi: Fix an error code in pqi_get_raid_map() - scsi: qedi: Fix error codes in qedi_alloc_global_queues() - scsi: qedf: Fix error codes in qedf_alloc_global_queues() - iommu/vt-d: Update the virtual command related registers - HID: i2c-hid: Fix Elan touchpad regression - [arm64,armhf] clk: imx8m: fix clock tree update of TF-A managed clocks - [powerpc*] KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines - [powerpc*] KVM: PPC: Book3S HV Nested: Reflect guest PMU in-use to L0 when guest SPRs are live - [x86] platform/x86: dell-smbios-wmi: Add missing kfree in error-exit from run_smbios_call - [powerpc*] smp: Update cpu_core_map on all PowerPc systems - [arm64] RDMA/hns: Fix QP's resp incomplete assignment - fscache: Fix cookie key hashing - [powerpc*] KVM: PPC: Fix clearing never mapped TCEs in realmode - f2fs: fix to account missing .skipped_gc_rwsem - f2fs: fix unexpected ENOENT comes from f2fs_map_blocks() - f2fs: fix to unmap pages from userspace process in punch_hole() - f2fs: deallocate compressed pages when error happens - f2fs: should put a page beyond EOF when preparing a write - [mips64el,mipsel] Malta: fix alignment of the devicetree buffer - userfaultfd: prevent concurrent API initialization - [arm*] drm/vc4: hdmi: Set HD_CTL_WHOLSMP and HD_CTL_CHALIGN_SET - drm/amdgpu: Fix amdgpu_ras_eeprom_init() - media: dib8000: rewrite the init prbs logic - [x86] hyperv: fix for unwanted manipulation of sched_clock when TSC marked unstable - PCI: Use pci_update_current_state() in pci_enable_device_flags() - tipc: keep the skb in rcv queue until the whole data is read - net: phy: Fix data type in DP83822 dp8382x_disable_wol() - iio: dac: ad5624r: Fix incorrect handling of an optional regulator. - iavf: do not override the adapter state in the watchdog task - iavf: fix locking of critical sections - video: fbdev: kyro: fix a DoS bug by restricting user input - netlink: Deal with ESRCH error in nlmsg_notify() - drm: avoid blocking in drm_clients_info's rcu section - drm: serialize drm_file.master with a new spinlock - drm: protect drm_master pointers in drm_lease.c - rcu: Fix macro name CONFIG_TASKS_RCU_TRACE - igc: Check if num of q_vectors is smaller than max before array access - usb: gadget: u_ether: fix a potential null pointer dereference - [armhf] USB: EHCI: ehci-mv: improve error handling in mv_ehci_enable() - usb: gadget: composite: Allow bMaxPower=0 if self-powered - tty: serial: jsm: hold port lock when reporting modem line changes - [arm64] bus: fsl-mc: fix mmio base address for child DPRCs - nfp: fix return statement in nfp_net_parse_meta() - ethtool: improve compat ioctl handling - drm/amdgpu: Fix a printing message - [arm64] dts: allwinner: h6: tanix-tx6: Fix regulator node names - video: fbdev: kyro: Error out if 'pixclock' equals zero - ipv4: ip_output.c: Fix out-of-bounds warning in ip_copy_addrs() - flow_dissector: Fix out-of-bounds warnings - [s390x] jump_label: print real address in a case of a jump label bug - [s390x] make PCI mio support a machine flag - serial: 8250: Define RX trigger levels for OxSemi 950 devices - serial: 8250_pci: make setup_port() parameters explicitly unsigned - Bluetooth: skip invalid hci_sync_conn_complete_evt - workqueue: Fix possible memory leaks in wq_numa_init() - bonding: 3ad: fix the concurrency between __bond_release_one() and bond_3ad_state_machine_handler() - [x86] ASoC: Intel: bytcr_rt5640: Move "Platform Clock" routes to the maps for the matching in-/output - [x86] ASoC: Intel: update sof_pcm512x quirks - media: v4l2-dv-timings.c: fix wrong condition in two for-loops - gfs2: Fix glock recursion in freeze_go_xmote_bh - [armhf] dts: imx53-ppd: Fix ACHC entry - [arm64] nvmem: qfprom: Fix up qfprom_disable_fuse_blowing() ordering - [arm64] net: ethernet: stmmac: Do not use unreachable() in ipq806x_gmac_probe() - [arm64] drm/msm: mdp4: drop vblank get/put from prepare/complete_commit - [arm64] drm/msm/dsi: Fix DSI and DSI PHY regulator config from SDM660 - [x86] thunderbolt: Fix port linking by checking all adapters - [x86] drm/vmwgfx: fix potential UAF in vmwgfx_surface.c - Bluetooth: schedule SCO timeouts with delayed_work - Bluetooth: avoid circular locks in sco_sock_connect - [arm64] drm/msm/dp: return correct edid checksum after corrupted edid checksum read - net/mlx5: Fix variable type to match 64bit - gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port() - mac80211: Fix monitor MTU limit so that A-MSDUs get through - [arm64] dts: ls1046a: fix eeprom entries - nvme-tcp: don't check blk_mq_tag_to_rq when receiving pdu data - nvme: code command_id with a genctr for use-after-free validation - Bluetooth: Fix handling of LE Enhanced Connection Complete - opp: Don't print an error if required-opps is missing - iomap: pass writeback errors to the mapping - tcp: enable data-less, empty-cookie SYN with TFO_SERVER_COOKIE_NOT_REQD - rpc: fix gss_svc_init cleanup on failure - [armhf] hwmon: (pmbus/ibm-cffps) Fix write bits for LED control - [x86] staging: rts5208: Fix get_ms_information() heap buffer size - net: Fix offloading indirect devices dependency on qdisc order creation - gfs2: Don't call dlm after protocol is unmounted - [arm64,armhf] usb: chipidea: host: fix port index underflow and UBSAN complains - lockd: lockd server-side shouldn't set fl_ops - [armhf] drm/exynos: Always initialize mapping in exynos_drm_register_dma() - rtl8xxxu: Fix the handling of TX A-MPDU aggregation - rtw88: use read_poll_timeout instead of fixed sleep - rtw88: wow: build wow function only if CONFIG_PM is on - rtw88: wow: fix size access error of probe request - btrfs: tree-log: check btrfs_lookup_data_extent return value - soundwire: intel: fix potential race condition during power down - [x86] ASoC: Intel: Skylake: Fix module configuration for KPB and MIXER - [x86] ASoC: Intel: Skylake: Fix passing loadable flag for module - of: Don't allow __of_attached_node_sysfs() without CONFIG_SYSFS - [arm64] mmc: sdhci-of-arasan: Modified SD default speed to 19MHz for ZynqMP - [arm64] mmc: sdhci-of-arasan: Check return value of non-void funtions - mmc: rtsx_pci: Fix long reads when clock is prescaled - mmc: core: Return correct emmc response in case of ioctl error - cifs: fix wrong release in sess_alloc_buffer() failed path - Revert "USB: xhci: fix U1/U2 handling for hardware with XHCI_INTEL_HOST quirk set" - [armhf] usb: musb: musb_dsps: request_irq() after initializing musb - usbip: give back URBs for unsent unlink requests during cleanup - usbip:vhci_hcd USB port can get stuck in the disabled state - [arm64,armhf] ASoC: rockchip: i2s: Fix regmap_ops hang - [arm64,armhf] ASoC: rockchip: i2s: Fixup config for DAIFMT_DSP_A/B - nfsd: fix crash on LOCKT on reexported NFSv3 - iwlwifi: pcie: free RBs during configure - iwlwifi: mvm: fix a memory leak in iwl_mvm_mac_ctxt_beacon_changed - iwlwifi: mvm: avoid static queue number aliasing - iwlwifi: mvm: fix access to BSS elements - iwlwifi: fw: correctly limit to monitor dump - iwlwifi: mvm: Fix scan channel flags settings - net/mlx5: DR, fix a potential use-after-free bug - net/mlx5: DR, Enable QP retransmission - parport: remove non-zero check on count - [arm64] wcn36xx: Fix missing frame timestamp for beacon/probe-resp - ath9k: fix OOB read ar9300_eeprom_restore_internal - ath9k: fix sleeping in atomic context - net: fix NULL pointer reference in cipso_v4_doi_free - fix array-index-out-of-bounds in taprio_change - [arm64] net: hns3: clean up a type mismatch warning - fs/io_uring Don't use the return value from import_iovec(). - io_uring: remove duplicated io_size from rw - ovl: fix BUG_ON() in may_delete() when called from ovl_cleanup() - scsi: BusLogic: Fix missing pr_cont() use - scsi: qla2xxx: Changes to support kdump kernel - scsi: qla2xxx: Sync queue idx with queue_pair_map idx - [powerpc*] cpufreq: powernv: Fix init_chip_info initialization in numa=off - [s390x] pv: fix the forcing of the swiotlb - hugetlb: fix hugetlb cgroup refcounting during vma split - mm/hmm: bypass devmap pte when all pfn requested flags are fulfilled - mm/hugetlb: initialize hugetlb_usage in mm_init - mm,vmscan: fix divide by zero in get_scan_count - memcg: enable accounting for pids in nested pid namespaces - libnvdimm/pmem: Fix crash triggered when I/O in-flight during unbind - [arm64,armhf] platform/chrome: cros_ec_proto: Send command again when timeout occurs - [x86] drm/mgag200: Select clock in PLL update functions - [arm64] drm/msi/mdp4: populate priv->kms in mdp4_kms_init - drm/dp_mst: Fix return code on sideband message failure - [arm64,armhf] drm/panfrost: Make sure MMU context lifetime is not bound to panfrost_priv - drm/amdgpu: Fix BUG_ON assert - [arm64,armhf] drm/panfrost: Simplify lock_region calculation - [arm64,armhf] drm/panfrost: Use u64 for size in lock_region - [arm64,armhf] drm/panfrost: Clamp lock region to Bifrost minimum - fanotify: limit number of event merge attempts https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.68 - btrfs: fix upper limit for max_inline for page size 64K - [amd64] xen: reset legacy rtc flag for PV domU - [arm64] sve: Use correct size when reinitialising SVE state - PCI: Add AMD GPU multi-function power dependencies - drm/amd/amdgpu: Increase HWIP_MAX_INSTANCE to 10 - [armhf] drm/etnaviv: return context from etnaviv_iommu_context_get - [armhf] drm/etnaviv: put submit prev MMU context when it exists - [armhf] drm/etnaviv: stop abusing mmu_context as FE running marker - [armhf] drm/etnaviv: keep MMU context across runtime suspend/resume - [armhf] drm/etnaviv: exec and MMU state is lost when resetting the GPU - [armhf] drm/etnaviv: fix MMU context leak on GPU reset - [armhf] drm/etnaviv: reference MMU context when setting up hardware state - [armhf] drm/etnaviv: add missing MMU context put when reaping MMU mapping - [s390x] sclp: fix Secure-IPL facility detection - [x86] pat: Pass valid address to sanitize_phys() - [x86] mm: Fix kern_addr_valid() to cope with existing but not present entries - tipc: fix an use-after-free issue in tipc_recvmsg - ethtool: Fix rxnfc copy to user buffer overflow - net/{mlx5|nfp|bnxt}: Remove unnecessary RTNL lock assert - net/l2tp: Fix reference count leak in l2tp_udp_recv_core - r6040: Restore MDIO clock frequency after MAC reset - tipc: increase timeout in tipc_sk_enqueue() - [arm64] drm/rockchip: cdn-dp-core: Make cdn_dp_core_resume __maybe_unused - net/mlx5: FWTrace, cancel work on alloc pd error flow - net/mlx5: Fix potential sleeping in atomic context - nvme-tcp: fix io_work priority inversion - events: Reuse value read using READ_ONCE instead of re-reading it - vhost_net: fix OoB on sendmsg() failure. - net/af_unix: fix a data-race in unix_dgram_poll - [arm64,armhf] net: dsa: destroy the phylink instance on any error in dsa_slave_phy_setup - [x86] uaccess: Fix 32-bit __get_user_asm_u64() when CC_HAS_ASM_GOTO_OUTPUT=y - tcp: fix tp->undo_retrans accounting in tcp_sacktag_one() - qed: Handle management FW error - udp_tunnel: Fix udp_tunnel_nic work-queue type - dt-bindings: arm: Fix Toradex compatible typo - [powerpc*] KVM: PPC: Book3S HV: Tolerate treclaim. in fake-suspend mode changing registers - bnxt_en: make bnxt_free_skbs() safe to call after bnxt_free_mem() - [arm64] net: hns3: pad the short tunnel frame before sending to hardware - [arm64] net: hns3: change affinity_mask to numa node range - [arm64] net: hns3: disable mac in flr process - [arm64] net: hns3: fix the timing issue of VF clearing interrupt sources - mm/memory_hotplug: use "unsigned long" for PFN in zone_for_pfn_range() - dt-bindings: mtd: gpmc: Fix the ECC bytes vs. OOB bytes equation - PCI: Add ACS quirks for NXP LX2xx0 and LX2xx2 platforms - fuse: fix use after free in fuse_read_interrupt() - [arm64,armhf] PCI: tegra: Fix OF node reference leak - [armhf] mfd: Don't use irq_create_mapping() to resolve a mapping - tracing/probes: Reject events which have the same name of existing one - PCI: Add ACS quirks for Cavium multi-function devices - watchdog: Start watchdog in watchdog_set_last_hw_keepalive only if appropriate - Set fc_nlinfo in nh_create_ipv4, nh_create_ipv6 - net: usb: cdc_mbim: avoid altsetting toggling for Telit LN920 - block, bfq: honor already-setup queue merges - [i386] PCI: ibmphp: Fix double unmap of io_mem - ethtool: Fix an error code in cxgb2.c - [s390x] bpf: Fix optimizing out zero-extensions - [s390x] bpf: Fix 64-bit subtraction of the -0x80000000 constant - [s390x] bpf: Fix branch shortening during codegen pass - mfd: axp20x: Update AXP288 volatile ranges - PCI: of: Don't fail devm_pci_alloc_host_bridge() on missing 'ranges' - netfilter: nft_ct: protect nft_ct_pcpu_template_refcnt with mutex - [arm64] KVM: Restrict IPA size to maximum 48 bits on 4K and 16K page size - PCI: Fix pci_dev_str_match_path() alloc while atomic bug - mtd: mtdconcat: Judge callback existence based on the master - mtd: mtdconcat: Check _read, _write callbacks existence before assignment - [arm64] KVM: Fix read-side race on updates to vcpu reset state - [arm64] KVM: Handle PSCI resets before userspace touches vCPU state - mtd: rawnand: cafe: Fix a resource leak in the error handling path of 'cafe_nand_probe()' - perf unwind: Do not overwrite FEATURE_CHECK_LDFLAGS-libunwind-{x86,aarch64} - [arm64] gpio: mpc8xxx: Fix a resources leak in the error handling path of 'mpc8xxx_probe()' - [arm64] gpio: mpc8xxx: Use 'devm_gpiochip_add_data()' to simplify the code and avoid a leak - net: hso: add failure handler for add_net_device - [armhf] net: dsa: b53: Fix calculating number of switch ports - [armhf] net: dsa: b53: Set correct number of ports in the DSA struct - netfilter: socket: icmp6: fix use-after-scope - fq_codel: reject silly quantum parameters - qlcnic: Remove redundant unlock in qlcnic_pinit_from_rom - ip_gre: validate csum_start only on pull - [armhf] net: dsa: b53: Fix IMP port setup on BCM5301x - bnxt_en: fix stored FW_PSID version masks - bnxt_en: Fix asic.rev in devlink dev info command - bnxt_en: log firmware debug notifications - bnxt_en: Consolidate firmware reset event logging. - bnxt_en: Convert to use netif_level() helpers. - bnxt_en: Improve logging of error recovery settings information. - bnxt_en: Fix possible unintended driver initiated error recovery - mfd: lpc_sch: Partially revert "Add support for Intel Quark X1000" - mfd: lpc_sch: Rename GPIOBASE to prevent build error - [x86] mce: Avoid infinite loop for copy from user recovery - bnxt_en: Fix error recovery regression - [armhf] net: dsa: bcm_sf2: Fix array overrun in bcm_sf2_num_active_ports() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.69 - PCI: pci-bridge-emul: Add PCIe Root Capabilities Register - [arm64] PCI: aardvark: Fix reporting CRS value - console: consume APC, DM, DCS - [s390x] pci_mmio: fully validate the VMA before calling follow_pte() - [armel,armhf] Qualify enabling of swiotlb_init() - [armel,armhf] 9077/1: PLT: Move struct plt_entries definition to header - [armel,armhf] 9078/1: Add warn suppress parameter to arm_gen_branch_link() - [armel,armhf] 9079/1: ftrace: Add MODULE_PLTS support - [armel,armhf] 9098/1: ftrace: MODULE_PLT: Fix build problem without DYNAMIC_FTRACE - Revert "net/mlx5: Register to devlink ingress VLAN filter trap" - sctp: validate chunk size in __rcv_asconf_lookup (CVE-2021-3655) - sctp: add param size validation for SCTP_PARAM_SET_PRIMARY (CVE-2021-3655) - [x86] staging: rtl8192u: Fix bitwise vs logical operator in TranslateRxSignalStuff819xUsb() - coredump: fix memleak in dump_vma_snapshot() - dmaengine: acpi: Avoid comparison GSI with Linux vIRQ - [armhf] thermal/drivers/exynos: Fix an error code in exynos_tmu_probe() - 9p/trans_virtio: Remove sysfs file on probe failure - prctl: allow to setup brk for et_dyn executables - nilfs2: use refcount_dec_and_lock() to fix potential UAF - profiling: fix shift-out-of-bounds bugs - PM: sleep: core: Avoid setting power.must_resume to false - platform/chrome: sensorhub: Add trace events for sample - platform/chrome: cros_ec_trace: Fix format warnings - ceph: allow ceph_put_mds_session to take NULL or ERR_PTR - ceph: cancel delayed work instead of flushing on mdsc teardown - thermal/core: Fix thermal_cooling_device_register() prototype - drivers: base: cacheinfo: Get rid of DEFINE_SMP_CALL_CACHE_FUNCTION() - dma-buf: DMABUF_MOVE_NOTIFY should depend on DMA_SHARED_BUFFER - [amd64] iommu/amd: Relocate GAMSup check to early_enable_iommus - ceph: request Fw caps before updating the mtime in ceph_write_iter - ceph: remove the capsnaps when removing caps - ceph: lockdep annotations for try_nonblocking_invalidate - btrfs: update the bdev time directly when closing - btrfs: fix lockdep warning while mounting sprout fs - nilfs2: fix memory leak in nilfs_sysfs_create_device_group - nilfs2: fix NULL pointer in nilfs_##name##_attr_release - nilfs2: fix memory leak in nilfs_sysfs_create_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_delete_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_create_snapshot_group - nilfs2: fix memory leak in nilfs_sysfs_delete_snapshot_group - [arm64,armhf] pwm: rockchip: Don't modify HW state in .remove() callback - [armhf] pwm: stm32-lp: Don't modify HW state in .remove() callback - blk-throttle: fix UAF by deleteing timer in blk_throtl_exit() - blk-mq: allow 4x BLK_MAX_REQUEST_COUNT at blk_plug for multiple_queues - sched/idle: Make the idle timer expire in hard interrupt context - drm/nouveau/nvkm: Replace -ENOSYS with -ENODEV https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.70 - [arm64] PCI: aardvark: Increase polling delay to 1.5s while waiting for PIO response - ocfs2: drop acl cache for directories too - mm: fix uninitialized use in overcommit_policy_handler - [arm*] usb: dwc2: gadget: Fix ISOC flow for BDMA and Slave - [arm*] usb: dwc2: gadget: Fix ISOC transfer complete handling for DDMA - [armhf] usb: musb: tusb6010: uninitialized data in tusb_fifo_write_unaligned() - cifs: fix incorrect check for null pointer in header_assemble - [x86] xen/x86: fix PV trap handling on secondary processors - usb-storage: Add quirk for ScanLogic SL11R-IDE older than 2.6c - USB: serial: cp210x: add ID for GW Instek GDM-834x Digital Multimeter - USB: cdc-acm: fix minor-number release - [arm*] binder: make sure fd closes complete - [arm64,armhf] usb: dwc3: core: balance phy init and exit - usb: core: hcd: Add support for deferring roothub registration - USB: serial: mos7840: remove duplicated 0xac24 device ID - USB: serial: option: add Telit LN920 compositions - USB: serial: option: remove duplicate USB device ID - USB: serial: option: add device id for Foxconn T99W265 - erofs: fix up erofs_lookup tracepoint - btrfs: prevent __btrfs_dump_space_info() to underflow its free space - xhci: Set HCD flag to defer primary roothub registration - [arm64] serial: mvebu-uart: fix driver's tx_empty callback - scsi: sd_zbc: Ensure buffer size is aligned to SECTOR_SIZE - net: hso: fix muxed tty registration - afs: Fix incorrect triggering of sillyrename on 3rd-party invalidation - afs: Fix updating of i_blocks on file/dir extension - [arm64] enetc: Fix illegal access when reading affinity_hint - [arm64] enetc: Fix uninitialized struct dim_sample field usage - bnxt_en: Fix TX timeout when TX ring size is set to the smallest - [arm64] net: hns3: fix change RSS 'hfunc' ineffective issue - [arm64] net: hns3: check queue id range before using - net/smc: add missing error check in smc_clc_prfx_set() - net/smc: fix 'workqueue leaked lock' in smc_conn_abort_work - [arm64,armhf] net: dsa: don't allocate the slave_mii_bus using devres - [s390x] qeth: fix NULL deref in qeth_clear_working_pool_list() - qed: rdma - don't wait for resources under hw error recovery flow - net/mlx4_en: Don't allow aRFS for encapsulated packets - atlantic: Fix issue in the pm resume flow. - scsi: iscsi: Adjust iface sysfs attr detection - scsi: target: Fix the pgr/alua_support_store functions - [x86] tty: synclink_gt, drop unneeded forward declarations - [x86] tty: synclink_gt: rename a conflicting function name - nvme-tcp: fix incorrect h2cdata pdu offset accounting - treewide: Change list_sort to use const pointers - nvme: keep ctrl->namespaces ordered - thermal/core: Potential buffer overflow in thermal_build_list_of_policies() - cifs: fix a sign extension bug - scsi: qla2xxx: Restore initiator in dual mode - scsi: lpfc: Use correct scnprintf() limit - [arm64,armhf] irqchip/gic-v3-its: Fix potential VPE leak on error - md: fix a lock order reversal in md_alloc - [x86] asm: Add a missing __iomem annotation in enqcmds() - [x86] asm: Fix SETZ size enqcmds() build failure - io_uring: put provided buffer meta data under memcg accounting - blktrace: Fix uaf in blk_trace access after removing by sysfs - net: phylink: Update SFP selected interface on advertising changes - net: stmmac: allow CSR clock of 300MHz - blk-mq: avoid to iterate over stale request - ipv6: delay fib6_sernum increase in fib6_add - [x86] cpufreq: intel_pstate: Override parameters if HWP forced by BIOS - bpf: Add oversize check before call kvcalloc() - xen/balloon: use a kernel thread instead a workqueue - nvme-multipath: fix ANA state updates when a namespace is not present - nvme-rdma: destroy cm id before destroy qp to avoid use after free - amd/display: downgrade validation failure log level - block: check if a profile is actually registered in blk_integrity_unregister - block: flush the integrity workqueue in blk_integrity_unregister - blk-cgroup: fix UAF by grabbing blkcg lock before destroying blkg pd - qnx4: avoid stringop-overread errors - [arm64] Mark __stack_chk_guard as __ro_after_init - net: 6pack: Fix tx timeout and slot time - [x86] thermal/drivers/int340x: Do not set a wrong tcc offset on resume - USB: serial: cp210x: fix dropped characters with CP2102 - xen/balloon: fix balloon kthread freezing . [ Salvatore Bonaccorso ] * Refresh "MODSIGN: do not load mok when secure boot disabled" * Refresh "MODSIGN: load blacklist from MOKx" * [rt] Update to 5.10.47-rt46 - sched: Fix migration_cpu_stop() requeueing - sched: Simplify migration_cpu_stop() - sched: Collate affine_move_task() stoppers - sched: Optimize migration_cpu_stop() - sched: Fix affine_move_task() self-concurrency - sched: Simplify set_affinity_pending refcounts - sched: Don't defer CPU pick to migration_cpu_stop() * Bump ABI to 9 * Disalbe PSTORE_BLK (Marked broken upstream) * Refresh "fs: Add MODULE_SOFTDEP declarations for hard-coded crypto drivers" * [rt] Update to 5.10.52-rt47 * [rt] Refresh "sched: Fix balance_callback()" * [rt] Drop "timers: Move clearing of base::timer_running under base::lock" (applied upstream) * [rt] Refresh "net/Qdisc: use a seqlock instead seqcount" * [rt] Refresh "net: xfrm: Use sequence counter with associated" * [rt] Update to 5.10.59-rt51 * [rt] Update to 5.10.59-rt52 * [rt] Update to 5.10.65-rt53 * Refresh "Partially revert "net: socket: implement 64-bit timestamps"" * [armhf] dts: sun7i: A20-olinuxino-lime2: Fix ethernet phy-mode * [mipsel] bpf, mips: Validate conditional branch offsets (CVE-2021-38300) linux (5.10.46-5) bullseye-security; urgency=high . * virtio_console: Assure used length from device is limited (CVE-2021-38160) * NFSv4: Initialise connection to the server in nfs4_alloc_client() (CVE-2021-38199) * tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. (CVE-2021-3679) * [poewrpc*] KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow (CVE-2021-37576) * ovl: prevent private clone if bind mount is not allowed (CVE-2021-3732) * [x86] KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653) * [x86] KVM: nSVM: always intercept VMLOAD/VMSAVE when nested (CVE-2021-3656) * bpf: Fix integer overflow involving bucket_size (CVE-2021-38166) * ath: Use safer key clearing with key cache entries (CVE-2020-3702) * ath9k: Clear key cache explicitly on disabling hardware (CVE-2020-3702) * ath: Export ath_hw_keysetmac() (CVE-2020-3702) * ath: Modify ath_key_delete() to not need full key entry (CVE-2020-3702) * ath9k: Postpone key cache entry deletion for TXQ frames reference it (CVE-2020-3702) * btrfs: fix NULL pointer dereference when deleting device by invalid id (CVE-2021-3739) * net: qrtr: fix another OOB Read in qrtr_endpoint_post (CVE-2021-3743) * vt_kdsetmode: extend console locking (CVE-2021-3753) * ext4: fix race writing to an inline_data file while its xattrs are changing (CVE-2021-40490) * dccp: don't duplicate ccid when cloning dccp sock (CVE-2020-16119) * io_uring: ensure symmetry in handling iter types in loop_rw_iter() (CVE-2021-41073) * netfilter: nftables: avoid potential overflows on 32bit arches * netfilter: nf_tables: initialize set before expression setup (Closes: #993978) * netfilter: nftables: clone set element expression template * bnx2x: Fix enabling network interfaces without VFs (Closes: #993948) linux-signed-amd64 (5.10.70+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.70-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.47 - module: limit enabling module.sig_enforce (CVE-2021-35039) - drm: add a locked version of drm_is_current_master - drm/nouveau: wait for moving fence after pinning v2 - drm/radeon: wait for moving fence after pinning - drm/amdgpu: wait for moving fence after pinning - [arm64] mmc: meson-gx: use memcpy_to/fromio for dram-access-quirk - [arm64] Ignore any DMA offsets in the max_zone_phys() calculation - [arm64] Force NO_BLOCK_MAPPINGS if crashkernel reservation is required - [arm64] spi: spi-nxp-fspi: move the register operation after the clock enable - [arm*] drm/vc4: hdmi: Move the HSM clock enable to runtime_pm - [arm*] drm/vc4: hdmi: Make sure the controller is powered in detect - [x86] entry: Fix noinstr fail in __do_fast_syscall_32() - [amd64] x86/xen: Fix noinstr fail in exc_xen_unknown_trap() - locking/lockdep: Improve noinstr vs errors - [x86] perf/x86/lbr: Remove cpuc->lbr_xsave allocation from atomic context - [x86] perf/x86/intel/lbr: Zero the xstate buffer on allocation - [armhf] dmaengine: stm32-mdma: fix PM reference leak in stm32_mdma_alloc_chan_resourc() - mac80211: remove warning in ieee80211_get_sband() - mac80211_hwsim: drop pending frames on stop - cfg80211: call cfg80211_leave_ocb when switching away from OCB - net: ipv4: Remove unneed BUG() function - mac80211: drop multicast fragments - net: ethtool: clear heap allocations for ethtool function - inet: annotate data race in inet_send_prepare() and inet_dgram_connect() - ping: Check return value of function 'ping_queue_rcv_skb' - net: annotate data race in sock_error() - inet: annotate date races around sk->sk_txhash - net/packet: annotate data race in packet_sendmsg() - net: phy: dp83867: perform soft reset and retain established link - net/packet: annotate accesses to po->bind - net/packet: annotate accesses to po->ifindex - r8152: Avoid memcpy() over-reading of ETH_SS_STATS - r8169: Avoid memcpy() over-reading of ETH_SS_STATS - net: qed: Fix memcpy() overflow of qed_dcbx_params() - mac80211: reset profile_periodicity/ema_ap - mac80211: handle various extensible elements correctly - [x86] PCI: Add AMD RS690 quirk to enable 64-bit DMA - [x86] perf/x86: Track pmu in per-CPU cpu_hw_events - [armhf] pinctrl: stm32: fix the reported number of GPIO lines per bank - i2c: i801: Ensure that SMBHSTSTS_INUSE_STS is cleared when leaving i801_access - gpiolib: cdev: zero padding during conversion to gpioline_info_changed - scsi: sd: Call sd_revalidate_disk() for ioctl(BLKRRPART) - nilfs2: fix memory leak in nilfs_sysfs_delete_device_group - [s390x] stack: fix possible register corruption with stack switch helper - i2c: robotfuzz-osif: fix control-request directions - ceph: must hold snap_rwsem when filling inode for async create - kthread_worker: split code for canceling the delayed work timer - kthread: prevent deadlock when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [x86] fpu: Preserve supervisor states in sanitize_restored_user_xstate() - [x86] fpu: Make init_fpstate correct with optimized XSAVE - mm: add VM_WARN_ON_ONCE_PAGE() macro - mm/rmap: remove unneeded semicolon in page_not_mapped() - mm/rmap: use page_not_mapped in try_to_unmap() - mm, thp: use head page in __migration_entry_wait() - mm/thp: fix __split_huge_pmd_locked() on shmem migration entry - mm/thp: make is_huge_zero_pmd() safe and quicker - mm/thp: try_to_unmap() use TTU_SYNC for safe splitting - mm/thp: fix vma_address() if virtual address below file offset - mm/thp: fix page_address_in_vma() on file THP tails - mm/thp: unmap_mapping_page() to fix THP truncate_cleanup_page() - mm: thp: replace DEBUG_VM BUG with VM_WARN when unmap fails for split - mm: page_vma_mapped_walk(): use page for pvmw->page - mm: page_vma_mapped_walk(): settle PageHuge on entry - mm: page_vma_mapped_walk(): use pmde for *pvmw->pmd - mm: page_vma_mapped_walk(): prettify PVMW_MIGRATION block - mm: page_vma_mapped_walk(): crossing page table boundary - mm: page_vma_mapped_walk(): add a level of indentation - mm: page_vma_mapped_walk(): use goto instead of while (1) - mm: page_vma_mapped_walk(): get vma_address_end() earlier - mm/thp: fix page_vma_mapped_walk() if THP mapped by ptes - mm/thp: another PVMW_SYNC fix in page_vma_mapped_walk() - mm, futex: fix shared futex pgoff on shmem huge page - [x86] KVM: SVM: Call SEV Guest Decommission if ASID binding fails - netfs: fix test for whether we can skip read when writing beyond EOF - Revert "drm: add a locked version of drm_is_current_master" - certs: Add EFI_CERT_X509_GUID support for dbx entries (CVE-2020-26541) - certs: Move load_system_certificate_list to a common function - certs: Add ability to preload revocation certs - integrity: Load mokx variables into the blacklist keyring https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.48 - scsi: sr: Return appropriate error code when disk is ejected - [arm64,armhf] gpio: mxc: Fix disabled interrupt wake-up support - drm/nouveau: fix dma_address check for CPU/GPU sync - RDMA/mlx5: Block FDB rules when not in switchdev mode - [x86] Revert "KVM: x86/mmu: Drop kvm_mmu_extended_role.cr4_la57 hack" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.49 - [powerpc*] KVM: PPC: Book3S HV: Save and restore FSCR in the P9 path - media: uvcvideo: Support devices that report an OT as an entity source - xen/events: reset active flag for lateeoi events later https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.50 - Bluetooth: hci_qca: fix potential GPF - Bluetooth: btqca: Don't modify firmware contents in-place - Bluetooth: Remove spurious error message - ALSA: usb-audio: fix rate on Ozone Z90 USB headset - ALSA: usb-audio: Fix OOB access at proc output - ALSA: firewire-motu: fix stream format for MOTU 8pre FireWire - ALSA: usb-audio: scarlett2: Fix wrong resume call - ALSA: intel8x0: Fix breakage at ac97 clock measurement - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 450 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 445 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 630 G8 - ALSA: hda/realtek: Add another ALC236 variant support - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook x360 830 G8 - ALSA: hda/realtek: Improve fixup for HP Spectre x360 15-df0xxx - ALSA: hda/realtek: Fix bass speaker DAC mapping for Asus UM431D - ALSA: hda/realtek: Apply LED fixup for HP Dragonfly G1, too - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook 830 G8 Notebook PC - media: dvb-usb: fix wrong definition - Input: usbtouchscreen - fix control-request directions - net: can: ems_usb: fix use-after-free in ems_usb_disconnect() - usb: gadget: eem: fix echo command packet response issue - USB: cdc-acm: blacklist Heimann USB Appset device - [arm64,armhf] usb: dwc3: Fix debugfs creation flow - usb: typec: Add the missed altmode_id_remove() in typec_register_altmode() - xhci: solve a double free problem while doing s4 - gfs2: Fix underflow in gfs2_page_mkwrite - gfs2: Fix error handling in init_statfs - copy_page_to_iter(): fix ITER_DISCARD case - iov_iter_fault_in_readable() should do nothing in xarray case - [powerpc*] crypto: nx - Fix memcpy() over-reading in nonce - [amd64] crypto: ccp - Annotate SEV Firmware file names - [armel,armhf] arm_pmu: Fix write counter incorrect in ARMv7 big-endian mode - btrfs: send: fix invalid path for unlink operations after parent orphanization - btrfs: compression: don't try to compress if we don't have enough pages - btrfs: clear defrag status of a root if starting transaction fails - ext4: cleanup in-core orphan list if ext4_truncate() failed to get a transaction handle - ext4: fix kernel infoleak via ext4_extent_header - ext4: fix overflow in ext4_iomap_alloc() - ext4: return error code when ext4_fill_flex_info() fails - ext4: correct the cache_nr in tracepoint ext4_es_shrink_exit - ext4: remove check for zero nr_to_scan in ext4_es_scan() - ext4: fix avefreec in find_group_orlov - ext4: use ext4_grp_locked_error in mb_find_extent - can: gw: synchronize rcu operations before removing gw job entry - can: isotp: isotp_release(): omit unintended hrtimer restart on socket release - can: j1939: j1939_sk_init(): set SOCK_RCU_FREE to call sk_destruct() after RCU is done - can: peak_pciefd: pucan_handle_status(): fix a potential starvation issue in TX path - mac80211: remove iwlwifi specific workaround that broke sta NDP tx - SUNRPC: Fix the batch tasks count wraparound. - SUNRPC: Should wake up the privileged task firstly. - bus: mhi: Wait for M2 state during system resume - mm/gup: fix try_grab_compound_head() race with split_huge_page() - [arm64] perf/smmuv3: Don't trample existing events with global filter - [x86] KVM: nVMX: Handle split-lock #AC exceptions that happen in L2 - [x86] KVM: x86/mmu: Treat NX as used (not reserved) for all !TDP shadow MMUs - [x86] KVM: x86/mmu: Use MMU's role to detect CR4.SMEP value in nested NPT walk - [s390x] cio: dont call css_wait_for_slow_path() inside a lock - [s390x] mm: Fix secure storage access exception handling - f2fs: Prevent swap file in LFS mode - [armhf] rtc: stm32: Fix unbalanced clk_disable_unprepare() on probe error path - iio: light: tcs3472: do not free unallocated IRQ - iio: ltr501: mark register holding upper 8 bits of ALS_DATA{0,1} and PS_DATA as volatile, too - iio: ltr501: ltr559: fix initialization of LTR501_ALS_CONTR - iio: ltr501: ltr501_read_ps(): add missing endianness conversion - iio: accel: bma180: Fix BMA25x bandwidth register values - [arm64] serial: mvebu-uart: fix calculation of clock divisor - [sh4] serial: sh-sci: Stop dmaengine transfer in sci_stop_tx() - serial_cs: Add Option International GSM-Ready 56K/ISDN modem - serial_cs: remove wrong GLOBETROTTER.cis entry - ath9k: Fix kernel NULL pointer dereference during ath_reset_internal() - ssb: sdio: Don't overwrite const buffer if block_write fails - rsi: Assign beacon rate settings to the correct rate_info descriptor field - rsi: fix AP mode with WPA failure due to encrypted EAPOL - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - seq_buf: Make trace_seq_putmem_hex() support data longer than 8 - [powerpc*] stacktrace: Fix spurious "stale" traces in raise_backtrace_ipi() - loop: Fix missing discard support when using LOOP_CONFIGURE - fuse: Fix crash in fuse_dentry_automount() error path - fuse: Fix crash if superblock of submount gets killed early - fuse: Fix infinite loop in sget_fc() - fuse: ignore PG_workingset after stealing - fuse: check connected before queueing on fpq->io - fuse: reject internal errno - [arm*] thermal/cpufreq_cooling: Update offline CPUs per-cpu thermal_pressure - spi: Make of_register_spi_device also set the fwnode - Add a reference to ucounts for each cred - media: marvel-ccic: fix some issues when getting pm_runtime - [i386] spi: spi-topcliff-pch: Fix potential double free in pch_spi_process_messages() - sched/core: Initialize the idle task with preemption disabled - [armhf] hwrng: exynos - Fix runtime PM imbalance on error - [powerpc*] crypto: nx - add missing MODULE_DEVICE_TABLE - media: cpia2: fix memory leak in cpia2_usb_probe - [arm64,armhf] media: hevc: Fix dependent slice segment flags - media: pvrusb2: fix warning in pvr2_i2c_core_done - [armhf] media: imx: imx7_mipi_csis: Fix logging of only error event counters - [x86] crypto: qat - check return code of qat_hal_rd_rel_reg() - [x86] crypto: qat - remove unused macro in FW loader - [arm64] crypto: qce: skcipher: Fix incorrect sg count for dma transfers - [arm64] perf: Convert snprintf to sysfs_emit - sched/fair: Fix ascii art by relpacing tabs - media: bt878: do not schedule tasklet when it is not setup - media: em28xx: Fix possible memory leak of em28xx struct - media: v4l2-core: Avoid the dangling pointer in v4l2_fh_release - media: bt8xx: Fix a missing check bug in bt878_probe - media: dvd_usb: memory leak in cinergyt2_fe_attach - memstick: rtsx_usb_ms: fix UAF - mmc: via-sdmmc: add a check against NULL pointer dereference - [arm64,armhf] spi: meson-spicc: fix a wrong goto jump for avoiding memory leak. - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_probe - crypto: shash - avoid comparing pointers to exported functions under CFI - media: dvb_net: avoid speculation from net slot - media: siano: fix device register error path - [armhf] media: imx-csi: Skip first few frames from a BT.656 source - [powerpc*] KVM: PPC: Book3S HV: Fix TLB management on SMT8 POWER9 and POWER10 processors - btrfs: fix error handling in __btrfs_update_delayed_inode - btrfs: abort transaction if we fail to update the delayed inode - btrfs: sysfs: fix format string for some discard stats - btrfs: don't clear page extent mapped if we're not invalidating the full page - btrfs: disable build on platforms having page size 256K - [s390x] KVM: get rid of register asm usage - [armhf] regulator: da9052: Ensure enough delay time for .set_voltage_time_sel - [x86] ACPI: video: use native backlight for GA401/GA502/GA503 - HID: do not use down_interruptible() when unbinding devices - ACPI: processor idle: Fix up C-state latency if not ordered - [x86] hv_utils: Fix passing zero to 'PTR_ERR' warning - lib: vsprintf: Fix handling of number field widths in vsscanf - ACPI: EC: Make more Asus laptops use ECDT _GPE - block_dump: remove block_dump feature in mark_inode_dirty() - blk-mq: grab rq->refcount before calling ->fn in blk_mq_tagset_busy_iter - blk-mq: clear stale request in tags->rq[] before freeing one request pool - fs: dlm: cancel work sync othercon - random32: Fix implicit truncation warning in prandom_seed_state() - open: don't silently ignore unknown O-flags in openat2() - [x86] drivers: hv: Fix missing error code in vmbus_connect() - fs: dlm: fix memory leak when fenced - ACPICA: Fix memory leak caused by _CID repair function - ACPI: bus: Call kobject_put() in acpi_init() error path - ACPI: resources: Add checks for ACPI IRQ override - block: fix race between adding/removing rq qos and normal IO - [x86] platform/x86: asus-nb-wmi: Revert "Drop duplicate DMI quirk structures" - [x86] platform/x86: asus-nb-wmi: Revert "add support for ASUS ROG Zephyrus G14 and G15" - [x86] platform/x86: toshiba_acpi: Fix missing error code in toshiba_acpi_setup_keyboard() - nvme-pci: fix var. type for increasing cq_head - nvmet-fc: do not check for invalid target port in nvmet_fc_handle_fcp_rqst() - [amd64] EDAC/Intel: Do not load EDAC driver when running as a guest - [amd64] PCI: hv: Add check for hyperv_initialized in init_hv_pci_drv() - cifs: improve fallocate emulation - ACPI: EC: trust DSDT GPE for certain HP laptop - clocksource: Retry clock read if long delays detected - clocksource: Check per-CPU clock synchronization when marked unstable - tpm_tis_spi: add missing SPI device ID entries - ACPI: tables: Add custom DSDT file as makefile prerequisite - HID: wacom: Correct base usage for capacitive ExpressKey status bits - cifs: fix missing spinlock around update to ses->status - [arm64] mailbox: qcom: Use PLATFORM_DEVID_AUTO to register platform device - block: fix discard request merge - kthread_worker: fix return value when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [ia64] mca_drv: fix incorrect array size calculation - writeback, cgroup: increment isw_nr_in_flight before grabbing an inode - spi: Allow to have all native CSs in use along with GPIOs - spi: Avoid undefined behaviour when counting unused native CSs - [arm64] media: venus: Rework error fail recover logic - [armhf] sata_highbank: fix deferred probing - sched/uclamp: Fix wrong implementation of cpu.uclamp.min - sched/uclamp: Fix locking around cpu_util_update_eff() - [mips*] pata_octeon_cf: avoid WARN_ON() in ata_host_activate() - [x86] elf: Use _BITUL() macro in UAPI headers - [x86] crypto: ccp - Fix a resource leak in an error handling path - media: rc: i2c: Fix an error message - media: au0828: fix a NULL vs IS_ERR() check - media: gspca/gl860: fix zero-length control requests - media: siano: Fix out-of-bounds warnings in smscore_load_firmware_family2() - [arm64] crypto: nitrox - fix unchecked variable in nitrox_register_interrupts - [amd64] crypto: x86/curve25519 - fix cpu feature checking logic in mod_exit - [arm64[ consistently use reserved_pg_dir - [arm64] mm: Fix ttbr0 values stored in struct thread_info for software-pan - media: subdev: remove VIDIOC_DQEVENT_TIME32 handling - hwmon: (lm70) Use device_get_match_data() - hwmon: (lm70) Revert "hwmon: (lm70) Add support for ACPI" - [x86] KVM: nVMX: Sync all PGDs on nested transition with shadow paging - [x86] KVM: nVMX: Ensure 64-bit shift when checking VMFUNC bitmap - [x86] KVM: nVMX: Don't clobber nested MMU's A/D status on EPTP switch - [x86] KVM: x86/mmu: Fix return value in tdp_mmu_map_handle_target_level() - [arm64] perf/arm-cmn: Fix invalid pointer when access dtc object sharing the same IRQ number - [arm64] KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set - [arm64] regulator: hi655x: Fix pass wrong pointer to config.driver_data - btrfs: clear log tree recovering status if starting transaction fails - sched/rt: Fix RT utilization tracking during policy change - sched/rt: Fix Deadline utilization tracking during policy change - sched/uclamp: Fix uclamp_tg_restrict() - [armhf] spi: spi-sun6i: Fix chipselect/clock bug - [powerpc*] crypto: nx - Fix RCU warning in nx842_OF_upd_status - psi: Fix race between psi_trigger_create/destroy - media: v4l2-async: Clean v4l2_async_notifier_add_fwnode_remote_subdev - [armhf] media: video-mux: Skip dangling endpoints - PM / devfreq: Add missing error code in devfreq_add_device() - ACPI: PM / fan: Put fan device IDs into separate header file - block: avoid double io accounting for flush request - nvme-pci: look for StorageD3Enable on companion ACPI device instead - ACPI: sysfs: Fix a buffer overrun problem with description_show() - mark pstore-blk as broken - [armhf] clocksource/drivers/timer-ti-dm: Save and restore timer TIOCP_CFG - ACPI: APEI: fix synchronous external aborts in user-mode - blk-wbt: introduce a new disable state to prevent false positive by rwb_enabled() - blk-wbt: make sure throttle is enabled properly - ACPI: Use DEVICE_ATTR_ macros - ACPI: bgrt: Fix CFI violation - cpufreq: Make cpufreq_online() call driver->offline() on errors - blk-mq: update hctx->dispatch_busy in case of real scheduler - ocfs2: fix snprintf() checking - dax: fix ENOMEM handling in grab_mapping_entry() - swap: fix do_swap_page() race with swapoff - mm/shmem: fix shmem_swapin() race with swapoff - mm: memcg/slab: properly set up gfp flags for objcg pointer array - mm: page_alloc: refactor setup_per_zone_lowmem_reserve() - mm/page_alloc: fix counting of managed_pages - xfrm: xfrm_state_mtu should return at least 1280 for ipv6 - drm/bridge: Fix the stop condition of drm_bridge_chain_pre_enable() - drm/ast: Fix missing conversions to managed API - [arm64,armhf] net: mvpp2: Put fwnode in error case during ->probe() - [i386] net: pch_gbe: Propagate error from devm_gpio_request_one() - [x86] drm/vmwgfx: Mark a surface gpu-dirty after the SVGA3dCmdDXGenMips command - [x86] drm/vmwgfx: Fix cpu updates of coherent multisample surfaces - net: qrtr: ns: Fix error return code in qrtr_ns_init() - [arm64] clk: meson: g12a: fix gp0 and hifi ranges - [armhf] net: ftgmac100: add missing error return code in ftgmac100_probe() - [arm64,armhf] drm: rockchip: set alpha_en to 0 if it is not used - [arm64] drm/rockchip: cdn-dp-core: add missing clk_disable_unprepare() on error in cdn_dp_grf_write() - [arm64,armhf] drm/rockchip: dsi: move all lane config except LCDC mux to bind() - [arm64] drm/rockchip: cdn-dp: fix sign extension on an int multiply for a u64 result - RDMA/srp: Fix a recently introduced memory leak - [powerpc*] ehea: fix error return code in ehea_restart_qps() - xfrm: remove the fragment check for ipv6 beet mode - net/sched: act_vlan: Fix modify to allow 0 - RDMA/core: Sanitize WQ state received from the userspace - RDMA/rxe: Fix failure during driver load - [arm*] drm/vc4: hdmi: Fix error path of hpd-gpios - drm: qxl: ensure surf.data is ininitialized - tools/bpftool: Fix error return code in do_batch() - ath10k: go to path err_unsupported when chip id is not supported - ath10k: add missing error return code in ath10k_pci_probe() - wireless: carl9170: fix LEDS build errors & warnings - ieee802154: hwsim: Fix possible memory leak in hwsim_subscribe_all_others - [arm64] clk: imx8mq: remove SYS PLL 1/2 clock gates - [arm64] wcn36xx: Move hal_buf allocation to devm_kmalloc in probe - ssb: Fix error return code in ssb_bus_scan() - brcmfmac: fix setting of station info chains bitmask - brcmfmac: correctly report average RSSI in station info - brcmfmac: Fix a double-free in brcmf_sdio_bus_reset - brcmsmac: mac80211_if: Fix a resource leak in an error handling path - ath11k: Fix an error handling path in ath11k_core_fetch_board_data_api_n() - ath10k: Fix an error code in ath10k_add_interface() - ath11k: send beacon template after vdev_start/restart during csa - netlabel: Fix memory leak in netlbl_mgmt_add_common - RDMA/mlx5: Don't add slave port to unaffiliated list - netfilter: nft_exthdr: check for IPv6 packet before further processing - netfilter: nft_osf: check for TCP packet before further processing - netfilter: nft_tproxy: restrict support to TCP and UDP transport protocols - RDMA/rxe: Fix qp reference counting for atomic ops - xsk: Fix missing validation for skb and unaligned mode - xsk: Fix broken Tx ring validation - bpf: Fix libelf endian handling in resolv_btfids - mt76: fix possible NULL pointer dereference in mt76_tx - vrf: do not push non-ND strict packets with a source LLA through packet taps again - net: sched: add barrier to ensure correct ordering for lockless qdisc - netfilter: nf_tables_offload: check FLOW_DISSECTOR_KEY_BASIC in VLAN transfer logic - pkt_sched: sch_qfq: fix qfq_change_class() error path - xfrm: Fix xfrm offload fallback fail case - iwlwifi: increase PNVM load timeout - rtw88: 8822c: fix lc calibration timing - vxlan: add missing rcu_read_lock() in neigh_reduce() - ip6_tunnel: fix GRE6 segmentation - net/ipv4: swap flow ports when validating source - ieee802154: hwsim: Fix memory leak in hwsim_add_one - ieee802154: hwsim: avoid possible crash in hwsim_del_edge_nl() - bpf: Fix null ptr deref with mixed tail calls and subprogs - [arm64] drm/msm: Fix error return code in msm_drm_init() - [arm64] drm/msm/dpu: Fix error return code in dpu_mdss_init() - mac80211: remove iwlwifi specific workaround NDPs of null_response - net: bcmgenet: Fix attaching to PYH failed on RPi 4B - ipv6: exthdrs: do not blindly use init_net - can: j1939: j1939_sk_setsockopt(): prevent allocation of j1939 filter for optlen == 0 - bpf: Do not change gso_size during bpf_skb_change_proto() - i40e: Fix error handling in i40e_vsi_open - i40e: Fix autoneg disabling for non-10GBaseT links - i40e: Fix missing rtnl locking when setting up pf switch - RDMA/cma: Protect RMW with qp_mutex - net: macsec: fix the length used to copy the key for offloading - net: phy: mscc: fix macsec key length - ipv6: fix out-of-bound access in ip6_parse_tlv() - e1000e: Check the PCIm state - RDMA/cma: Fix incorrect Packet Lifetime calculation - [amd64] gve: Fix swapped vars when fetching max queues - Revert "be2net: disable bh with spin_lock in be_process_mcc" - Bluetooth: mgmt: Fix slab-out-of-bounds in tlv_data_is_valid - Bluetooth: Fix not sending Set Extended Scan Response - Bluetooth: Fix Set Extended (Scan Response) Data - Bluetooth: Fix handling of HCI_LE_Advertising_Set_Terminated event - [arm64] clk: qcom: clk-alpha-pll: fix CAL_L write in alpha_pll_fabia_prepare - writeback: fix obtain a reference to a freeing memcg css - net: lwtunnel: handle MTU calculation in forwading - net: sched: fix warning in tcindex_alloc_perfect_hash - net: tipc: fix FB_MTU eat two pages - RDMA/mlx5: Don't access NULL-cleared mpi pointer - RDMA/core: Always release restrack object - [mips*] Fix PKMAP with 32-bit MIPS huge page support - [x86] ASoC: rt5682: Disable irq on shutdown - rcu: Invoke rcu_spawn_core_kthreads() from rcu_spawn_gp_kthread() - [arm64] serial: fsl_lpuart: don't modify arbitrary data on lpuart32 - [arm64] serial: fsl_lpuart: remove RTSCTS handling from get_mctrl() - tty: nozomi: Fix a resource leak in an error handling function - mwifiex: re-fix for unaligned accesses - iio: adis_buffer: do not return ints in irq handlers - iio: adis16475: do not return ints in irq handlers - [arm64] ASoC: hisilicon: fix missing clk_disable_unprepare() on error in hi6210_i2s_startup() - mtd: partitions: redboot: seek fis-index-block in the right node - [arm*] staging: mmal-vchiq: Fix incorrect static vchiq_instance. - char: pcmcia: error out if 'num_bytes_read' is greater than 4 in set_protocol() - leds: class: The -ENOTSUPP should never be seen by user space - scsi: FlashPoint: Rename si_flags field - scsi: iscsi: Flush block work before unblock - [armhf] fsi: core: Fix return of error values on failures - [armhf] fsi: scom: Reset the FSI2PIB engine for any error - [armhf] fsi: occ: Don't accept response from un-initialized OCC - [armhf] fsi/sbefifo: Clean up correct FIFO when receiving reset request from SBE - [armhf] fsi/sbefifo: Fix reset timeout - [amd64] iommu/amd: Fix extended features logging - [s390x] irq: select HAVE_IRQ_EXIT_ON_IRQ_STACK - [s390x] enable HAVE_IOREMAP_PROT - [s390x] appldata depends on PROC_SYSCTL - [amd64,arm64] iommu/dma: Fix IOVA reserve dma ranges - ASoC: max98373-sdw: use first_hw_init flag on resume - ASoC: rt1308-sdw: use first_hw_init flag on resume - ASoC: rt5682-sdw: use first_hw_init flag on resume - ASoC: rt700-sdw: use first_hw_init flag on resume - ASoC: rt711-sdw: use first_hw_init flag on resume - ASoC: rt715-sdw: use first_hw_init flag on resume - ASoC: rt5682: fix getting the wrong device id when the suspend_stress_test - ASoC: rt5682-sdw: set regcache_cache_only false before reading RT5682_DEVICE_ID - usb: gadget: f_fs: Fix setting of device and driver data cross-references - [arm*] usb: dwc2: Don't reset the core after setting turnaround time - [armhf] ASoC: fsl_spdif: Fix error handler with pm_runtime_enable - staging: rtl8712: fix error handling in r871xu_drv_init - staging: rtl8712: fix memory leak in rtl871x_load_fw_cb - serial: 8250: Actually allow UPF_MAGIC_MULTIPLIER baud rates - of: Fix truncation of memory sizes on 32-bit platforms - [armhf] mtd: rawnand: marvell: add missing clk_disable_unprepare() on error in marvell_nfc_resume() - scsi: mpt3sas: Fix error return value in _scsih_expander_add() - soundwire: stream: Fix test for DP prepare complete - [powerpc*] powernv: Fix machine check reporting of async store errors - configfs: fix memleak in configfs_release_bin_file - [x86] ASoC: Intel: sof_sdw: add SOF_RT715_DAI_ID_FIX for AlderLake - [armhf] ASoC: fsl_spdif: Fix unexpected interrupt after suspend - [powerpc*] Offline CPU in stop_this_cpu() - [powerpc*] papr_scm: Properly handle UUID types and API - [powerpc*] 64s: Fix copy-paste data exposure into newly created tasks - [powerpc*] papr_scm: Make 'perf_stats' invisible if perf-stats unavailable - ALSA: firewire-lib: Fix 'amdtp_domain_start()' when no AMDTP_OUT_STREAM stream is found - [arm64] serial: mvebu-uart: do not allow changing baudrate when uartclk is not available - [arm64] serial: mvebu-uart: correctly calculate minimal possible baudrate - vfio/pci: Handle concurrent vma faults - mm/pmem: avoid inserting hugepage PTE entry with fsdax if hugepage support is disabled - mm/huge_memory.c: remove dedicated macro HPAGE_CACHE_INDEX_MASK - mm/huge_memory.c: add missing read-only THP checking in transparent_hugepage_enabled() - mm/huge_memory.c: don't discard hugepage if other processes are mapping it - mm/hugetlb: use helper huge_page_order and pages_per_huge_page - mm/hugetlb: remove redundant check in preparing and destroying gigantic page - hugetlb: remove prep_compound_huge_page cleanup - include/linux/huge_mm.h: remove extern keyword - mm/z3fold: fix potential memory leak in z3fold_destroy_pool() - mm/z3fold: use release_z3fold_page_locked() to release locked z3fold page - lib/math/rational.c: fix divide by zero - exfat: handle wrong stream entry size in exfat_readdir() - scsi: fc: Correct RHBA attributes length - scsi: target: cxgbit: Unmap DMA buffer before calling target_execute_cmd() - fscrypt: don't ignore minor_hash when hash is 0 - fscrypt: fix derivation of SipHash keys on big endian CPUs - tpm: Replace WARN_ONCE() with dev_err_once() in tpm_tis_status() - erofs: fix error return code in erofs_read_superblock() - io_uring: fix blocking inline submission - mmc: block: Disable CMDQ on the ioctl path - mmc: vub3000: fix control-request direction - scsi: core: Retry I/O for Notify (Enable Spinup) Required error - [arm64] crypto: qce - fix error return code in qce_skcipher_async_req_handle() - [s390x] preempt: Fix preempt_count initialization - cred: add missing return error code when set_cred_ucounts() failed - [amd64,arm64] iommu/dma: Fix compile warning in 32-bit builds - [powerpc*] preempt: Don't touch the idle task's preempt_count during hotplug https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.51 - drm/ast: Fixed CVE for DP501 - drm/amd/amdgpu/sriov disable all ip hw status by default - [arm*] drm/vc4: fix argument ordering in vc4_crtc_get_margins() - [i386] net: pch_gbe: Use proper accessors to BE data in pch_ptp_match() - hugetlb: clear huge pte during flush function on mips platform - atm: iphase: fix possible use-after-free in ia_module_exit() - mISDN: fix possible use-after-free in HFC_cleanup() - atm: nicstar: Fix possible use-after-free in nicstar_cleanup() - net: Treat __napi_schedule_irqoff() as __napi_schedule() on PREEMPT_RT - reiserfs: add check for invalid 1st journal block - drm/virtio: Fix double free on probe failure - net: mdio: provide shim implementation of devm_of_mdiobus_register - net/sched: cls_api: increase max_reclassify_loop - drm/scheduler: Fix hang when sched_entity released - drm/sched: Avoid data corruptions - udf: Fix NULL pointer dereference in udf_symlink function - [arm*] drm/vc4: Fix clock source for VEC PixelValve on BCM2711 - [arm*] drm/vc4: hdmi: Fix PM reference leak in vc4_hdmi_encoder_pre_crtc_co() - e100: handle eeprom as little endian - igb: handle vlan types with checker enabled - igb: fix assignment on big endian machines - net/mlx5e: IPsec/rep_tc: Fix rep_tc_update_skb drops IPsec packet - net/mlx5: Fix lag port remapping logic - [arm64,armhf] drm: rockchip: add missing registers for RK3188 - [arm64,armhf] drm: rockchip: add missing registers for RK3066 - net: stmmac: the XPCS obscures a potential "PHY not found" error - [arm64,armhf] clk: tegra: Fix refcounting of gate clocks - [arm64,armhf] clk: tegra: Ensure that PLLU configuration is applied properly - virtio-net: Add validation for used length - ipv6: use prandom_u32() for ID generation - [mips*] cpu-probe: Fix FPU detection on Ingenic JZ4760(B) - drm/amdgpu: remove unsafe optimization to drop preamble ib - net: tcp better handling of reordering then loss cases - RDMA/cxgb4: Fix missing error code in create_qp() - dm space maps: don't reset space map allocation cursor when committing - dm writecache: don't split bios when overwriting contiguous cache content - dm: Fix dm_accept_partial_bio() relative to zone management commands - [armhf] pinctrl: mcp23s08: fix race condition in irq handler - ice: set the value of global config lock timeout longer - virtio_net: Remove BUG() to avoid machine dead - [arm64] net: bcmgenet: check return value after calling platform_get_resource() - [arm64,armhf] net: mvpp2: check return value after calling platform_get_resource() - net: phy: realtek: add delay to fix RXC generation issue - [amd64] drm/amdkfd: use allowed domain for vmbo validation - [amd64] fjes: check return value after calling platform_get_resource() - selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC - r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM - xfrm: Fix error reporting in xfrm_state_construct. - dm writecache: commit just one block, not a full page - [arm64,armhf] wlcore/wl12xx: Fix wl12xx get_mac error if device is in ELP - [arm64,armhf] wl1251: Fix possible buffer overflow in wl1251_cmd_scan - ice: fix incorrect payload indicator on PTYPE - ice: mark PTYPE 2 as reserved - mt76: mt7615: fix fixed-rate tx status reporting - net: fix mistake path for netdev_features_strings - net: sched: fix error return code in tcf_del_walker() - io_uring: fix false WARN_ONCE - drm/amdgpu: fix bad address translation for sienna_cichlid - rtl8xxxu: Fix device info for RTL8192EU devices - [mips*] add PMD table accounting into MIPS'pmd_alloc_one - [arm64,armhf] net: fec: add ndo_select_queue to fix TX bandwidth fluctuations - atm: nicstar: use 'dma_free_coherent' instead of 'kfree' - atm: nicstar: register the interrupt handler in the right place - vsock: notify server to shutdown when client has pending signal - RDMA/rxe: Don't overwrite errno from ib_umem_get() - iwlwifi: mvm: don't change band on bound PHY contexts - iwlwifi: mvm: fix error print when session protection ends - iwlwifi: pcie: free IML DMA memory allocation - iwlwifi: pcie: fix context info freeing - sfc: avoid double pci_remove of VFs - sfc: error code if SRIOV cannot be disabled - wireless: wext-spy: Fix out-of-bounds warning - cfg80211: fix default HE tx bitrate mask in 2G band - mac80211: consider per-CPU statistics if present - mac80211_hwsim: add concurrent channels scanning support over virtio - IB/isert: Align target max I/O size to initiator size - net: ip: avoid OOM kills with large UDP sends over loopback - RDMA/cma: Fix rdma_resolve_route() memory leak - Bluetooth: btusb: Fixed too many in-token issue for Mediatek Chip. - Bluetooth: Fix the HCI to MGMT status conversion table - Bluetooth: Fix alt settings for incoming SCO with transparent coding format - Bluetooth: Shutdown controller after workqueues are flushed or cancelled - Bluetooth: btusb: Add a new QCA_ROME device (0cf3:e500) - Bluetooth: L2CAP: Fix invalid access if ECRED Reconfigure fails - Bluetooth: L2CAP: Fix invalid access on ECRED Connection response - Bluetooth: btusb: Add support USB ALT 3 for WBS - Bluetooth: mgmt: Fix the command returns garbage parameter value - Bluetooth: btusb: fix bt fiwmare downloading failure issue for qca btsoc. - sched/fair: Ensure _sum and _avg values stay consistent - bpf: Fix false positive kmemleak report in bpf_ringbuf_area_alloc() - flow_offload: action should not be NULL when it is referenced - [mips*] loongsoon64: Reserve memory below starting pfn to prevent Oops - [mips*] set mips32r5 for virt extensions - [mips*] MT extensions are not available on MIPS32r1 - ath11k: unlock on error path in ath11k_mac_op_add_interface() - [arm64] dts: rockchip: Enable USB3 for rk3328 Rock64 - loop: fix I/O error on fsync() in detached loop devices - mm,hwpoison: return -EBUSY when migration fails - io_uring: simplify io_remove_personalities() - io_uring: Convert personality_idr to XArray - io_uring: convert io_buffer_idr to XArray - scsi: iscsi: Fix race condition between login and sync thread - scsi: iscsi: Fix iSCSI cls conn state - [powerpc*] mm: Fix lockup on kernel exec fault - [powerpc*] barrier: Avoid collision with clang's __lwsync macro - [powerpc*] powernv/vas: Release reference to tgid during window close - drm/amdgpu: enable sdma0 tmz for Raven/Renoir(V2) - drm/radeon: Add the missed drm_gem_object_put() in radeon_user_framebuffer_create() - drm/radeon: Call radeon_suspend_kms() in radeon_pci_shutdown() for Loongson64 - [arm*] drm/vc4: txp: Properly set the possible_crtcs mask - [arm*] drm/vc4: crtc: Skip the TXP - [arm*] drm/vc4: hdmi: Prevent clock unbalance - drm/dp: Handle zeroed port counts in drm_dp_read_downstream_info() - [arm64,armhf] drm/rockchip: dsi: remove extra component_del() call - pinctrl/amd: Add device HID for new AMD GPIO controller - drm/amd/display: Reject non-zero src_y and src_x for video planes - [arm64,armhf] drm/tegra: Don't set allow_fb_modifiers explicitly - [arm64] drm/msm/mdp4: Fix modifier support enabling - [arm64] drm/arm/malidp: Always list modifiers - drm/nouveau: Don't set allow_fb_modifiers explicitly - [x86] drm/i915/display: Do not zero past infoframes.vsc - mmc: sdhci-acpi: Disable write protect detection on Toshiba Encore 2 WT8-B - mmc: sdhci: Fix warning message when accessing RPMB in HS400 mode - mmc: core: clear flags before allowing to retune - mmc: core: Allow UHS-I voltage switch for SDSC cards if supported - [armhf] ata: ahci_sunxi: Disable DIPM - [arm64] tlb: fix the TTL value of tlb_get_level - cpu/hotplug: Cure the cpusets trainwreck - [arm64,armhf] clocksource/arm_arch_timer: Improve Allwinner A64 timer workaround - [arm64,armhf] ASoC: tegra: Set driver_name=tegra for all machine drivers - i40e: fix PTP on 5Gb links - qemu_fw_cfg: Make fw_cfg_rev_attr a proper kobj_attribute - ipmi/watchdog: Stop watchdog timer when the current action is 'none' - [x86] thermal/drivers/int340x/processor_thermal: Fix tcc setting - ubifs: Fix races between xattr_{set|get} and listxattr operations - power: supply: ab8500: Fix an old bug - mfd: syscon: Free the allocated name field of struct regmap_config - nvmem: core: add a missing of_node_put - seq_buf: Fix overflow in seq_buf_putmem_hex() - rq-qos: fix missed wake-ups in rq_qos_throttle try two - tracing: Simplify & fix saved_tgids logic - tracing: Resize tgid_map to pid_max, not PID_MAX_DEFAULT - dm zoned: check zone capacity - dm writecache: flush origin device when writing and cache is full - dm btree remove: assign new_root only when removal succeeds - PCI: Leave Apple Thunderbolt controllers on for s2idle or standby - [arm64] PCI: aardvark: Fix checking for PIO Non-posted Request - [arm64] PCI: aardvark: Implement workaround for the readback value of VEND_ID - media: subdev: disallow ioctl for saa6588/davinci - media: dtv5100: fix control-request directions - media: zr364xx: fix memory leak in zr364xx_start_readpipe - media: gspca/sq905: fix control-request direction - media: gspca/sunplus: fix zero-length control requests - media: uvcvideo: Fix pixel format change for Elgato Cam Link 4K - io_uring: fix clear IORING_SETUP_R_DISABLED in wrong function - dm writecache: write at least 4k when committing - [armhf] pinctrl: mcp23s08: Fix missing unlock on error in mcp23s08_irq() - drm/ast: Remove reference to struct drm_device.pdev - jfs: fix GPF in diFree - ext4: fix memory leak in ext4_fill_super - f2fs: fix to avoid racing on fsync_entry_slab by multi filesystem instances https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.52 - cifs: handle reconnect of tcon when there is no cached dfs referral - KVM: mmio: Fix use-after-free Read in kvm_vm_ioctl_unregister_coalesced_mmio - [x86] KVM: x86: Use guest MAXPHYADDR from CPUID.0x8000_0008 iff TDP is enabled - [x86] KVM: x86/mmu: Do not apply HPA (memory encryption) mask to GPAs - [x86] KVM: nSVM: Check the value written to MSR_VM_HSAVE_PA - [x86] KVM: X86: Disable hardware breakpoints unconditionally before kvm_x86->run() - scsi: core: Fix bad pointer dereference when ehandler kthread is invalid - [s390x] scsi: zfcp: Report port fc_security as unknown early during remote cable pull - tracing: Do not reference char * as a string in histograms - [x86] drm/i915/gtt: drop the page table optimisation - [x86] drm/i915/gt: Fix -EDEADLK handling regression - cgroup: verify that source is a string - fbmem: Do not delete the mode that is still in use - drm/dp_mst: Do not set proposed vcpi directly - drm/dp_mst: Avoid to mess up payload table by ports in stale topology - drm/dp_mst: Add missing drm parameters to recently added call to drm_dbg_kms() - Revert "drm/ast: Remove reference to struct drm_device.pdev" - net: bridge: multicast: fix PIM hello router port marking race - net: bridge: multicast: fix MRD advertisement router port marking race - [x86] ASoC: Intel: sof_sdw: add mutual exclusion between PCH DMIC and RT715 - [arm64] dmaengine: fsl-qdma: check dma_set_mask return value - scsi: arcmsr: Fix the wrong CDB payload report to IOP - srcu: Fix broken node geometry after early ssp init - rcu: Reject RCU_LOCKDEP_WARN() false positives - [arm64] tty: serial: fsl_lpuart: fix the potential risk of division or modulo by zero - [arm64] serial: fsl_lpuart: disable DMA for console and fix sysrq - [x86] misc/libmasm/module: Fix two use after free in ibmasm_init_one - [x86] ASoC: intel/boards: add missing MODULE_DEVICE_TABLE - partitions: msdos: fix one-byte get_unaligned() - iio: gyro: fxa21002c: Balance runtime pm + use pm_runtime_resume_and_get(). - iio: magn: bmc150: Balance runtime pm + use pm_runtime_resume_and_get() - Revert "ALSA: bebob/oxfw: fix Kconfig entry for Mackie d.2 Pro" - [arm64,armhf] usb: common: usb-conn-gpio: fix NULL pointer dereference of charger - w1: ds2438: fixing bug that would always get page0 - scsi: arcmsr: Fix doorbell status being updated late on ARC-1886 - [arm64] scsi: hisi_sas: Propagate errors in interrupt_init_v1_hw() - scsi: lpfc: Fix "Unexpected timeout" error in direct attach topology - scsi: lpfc: Fix crash when lpfc_sli4_hba_setup() fails to initialize the SGLs - scsi: core: Cap scsi_host cmd_per_lun at can_queue - tty: serial: 8250: serial_cs: Fix a memory leak in error handling path - scsi: mpt3sas: Fix deadlock while cancelling the running firmware event - scsi: core: Fixup calling convention for scsi_mode_sense() - scsi: scsi_dh_alua: Check for negative result value - fs/jfs: Fix missing error code in lmLogInit() - scsi: megaraid_sas: Fix resource leak in case of probe failure - scsi: megaraid_sas: Early detection of VD deletion through RaidMap update - scsi: megaraid_sas: Handle missing interrupts while re-enabling IRQs - scsi: iscsi: Add iscsi_cls_conn refcount helpers - scsi: iscsi: Fix conn use after free during resets - scsi: iscsi: Fix shost->max_id use - scsi: qedi: Fix null ref during abort handling - scsi: qedi: Fix race during abort timeouts - scsi: qedi: Fix TMF session block/unblock use - scsi: qedi: Fix cleanup session block/unblock use - [armhf] mfd: da9052/stmpe: Add and modify MODULE_DEVICE_TABLE - [armhf] fsi: Add missing MODULE_DEVICE_TABLE - [s390x] disable SSP when needed - [i386] ALSA: sb: Fix potential double-free of CSP mixer elements - [powerpc*] ps3: Add dma_mask to ps3_dma_region - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak when arm_smmu_rpm_get fails - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak in address translation - ASoC: soc-pcm: fix the return value in dpcm_apply_symmetry() - [arm64] gpio: zynq: Check return value of pm_runtime_get_sync - [arm64] gpio: zynq: Check return value of irq_get_irq_data - [x86] scsi: storvsc: Correctly handle multiple flags in srb_status - [powerpc*] ALSA: ppc: fix error return code in snd_pmac_probe() - [arm64,armhf] gpio: pca953x: Add support for the On Semi pca9655 - [powerpc*] mm/book3s64: Fix possible build error - ASoC: soc-core: Fix the error return code in snd_soc_of_parse_audio_routing() - [s390x] processor: always inline stap() and __load_psw_mask() - [s390x] ipl_parm: fix program check new psw handling - [s390x] mem_detect: fix diag260() program check new psw handling - [s390x] mem_detect: fix tprot() program check new psw handling - ALSA: bebob: add support for ToneWeal FW66 - ALSA: usb-audio: scarlett2: Fix 18i8 Gen 2 PCM Input count - ALSA: usb-audio: scarlett2: Fix data_mutex lock - ALSA: usb-audio: scarlett2: Fix scarlett2_*_ctl_put() return values - usb: gadget: f_hid: fix endianness issue with descriptors - [powerpc*] boot: Fixup device-tree on little endian - [x86] ASoC: Intel: kbl_da7219_max98357a: shrink platform_id below 20 characters - [arm64,armhf] ALSA: hda: Add IRQ check for platform_get_irq() - ALSA: usb-audio: scarlett2: Fix 6i6 Gen 2 line out descriptions - ALSA: firewire-motu: fix detection for S/PDIF source on optical interface in v2 protocol - staging: rtl8723bs: fix macro value for 2.4Ghz only device - [x86] intel_th: Wait until port is in reset before programming it - i2c: core: Disable client irq on reboot/shutdown - lib/decompress_unlz4.c: correctly handle zero-padding around initrds. - kcov: add __no_sanitize_coverage to fix noinstr for all architectures - [amd64] PCI: hv: Fix a race condition when removing the device - [x86] power: supply: max17042: Do not enforce (incorrect) interrupt trigger type - power: reset: gpio-poweroff: add missing MODULE_DEVICE_TABLE - PCI/P2PDMA: Avoid pci_get_slot(), which may sleep - NFSv4: Fix delegation return in cases where we have to retry - PCI: pciehp: Ignore Link Down/Up caused by DPC - [x86] watchdog: Fix possible use-after-free in wdt_startup() - [x86] watchdog: Fix possible use-after-free by calling del_timer_sync() - watchdog: iTCO_wdt: Account for rebooting on second timeout - [x86] fpu: Return proper error codes from user access functions - [armhf] remoteproc: core: Fix cdev remove and rproc del - [arm64,armhf] PCI: tegra: Add missing MODULE_DEVICE_TABLE - orangefs: fix orangefs df output. - ceph: remove bogus checks and WARN_ONs from ceph_set_page_dirty - [x86] drm/gma500: Add the missed drm_gem_object_put() in psb_user_framebuffer_create() - NFS: nfs_find_open_context() may only select open files - [arm64,armhf] pwm: tegra: Don't modify HW state in .remove callback - [arm64] ACPI: AMBA: Fix resource name in /proc/iomem - [x86] ACPI: video: Add quirk for the Dell Vostro 3350 - [arm64] PCI: rockchip: Register IRQ handlers after device and data are ready - virtio-blk: Fix memory leak among suspend/resume procedure - virtio_net: Fix error handling in virtnet_restore() - f2fs: atgc: fix to set default age threshold - NFSD: Fix TP_printk() format specifier in nfsd_clid_class - [x86] signal: Detect and prevent an alternate signal stack overflow - f2fs: add MODULE_SOFTDEP to ensure crc32 is included in the initramfs - f2fs: compress: fix to disallow temp extension - PCI/sysfs: Fix dsm_label_utf16s_to_utf8s() buffer overrun - NFSv4: Fix an Oops in pnfs_mark_request_commit() when doing O_DIRECT - ubifs: Fix off-by-one error - ubifs: journal: Fix error return code in ubifs_jnl_write_inode() - [armhf] watchdog: aspeed: fix hardware timeout calculation - SUNRPC: prevent port reuse on transports which don't request it. - nfs: fix acl memory leak of posix_acl_create() - ubifs: Set/Clear I_LINKABLE under i_lock for whiteout inode - f2fs: fix to avoid adding tab before doc section - [x86] fpu: Fix copy_xstate_to_kernel() gap handling - [x86] fpu: Limit xstate copy size in xstateregs_set() - virtio_net: move tx vq operation under tx queue lock - nvme-tcp: can't set sk_user_data without write_lock - nfsd: Reduce contention for the nfsd_file nf_rwsem - [i386] ALSA: isa: Fix error return code in snd_cmi8330_probe() - vdpa/mlx5: Clear vq ready indication upon device reset - NFSv4/pnfs: Fix the layout barrier update - NFSv4/pnfs: Fix layoutget behaviour after invalidation - NFSv4/pNFS: Don't call _nfs4_pnfs_v3_ds_connect multiple times - [armhf] exynos: add missing of_node_put for loop iteration - [armhf] dts: exynos: fix PWM LED max brightness on Odroid HC1 - [armhf] dts: exynos: fix PWM LED max brightness on Odroid XU4 - [armel,armhf] memory: pl353: Fix error return code in pl353_smc_probe() - rtc: fix snprintf() checking in is_rtc_hctosys() - dt-bindings: i2c: at91: fix example for scl-gpios - [arm64] dts: allwinner: a64-sopine-baseboard: change RGMII mode to TXID - [armhf] dts: am335x: align ti,pindir-d0-out-d1-in property with dt-shema - [arm64] firmware: turris-mox-rwtm: fix reply status decoding function - [arm64] firmware: turris-mox-rwtm: report failures better - [arm64] firmware: turris-mox-rwtm: fail probing when firmware does not support hwrng - [arm64] firmware: turris-mox-rwtm: show message about HWRNG registration - scsi: be2iscsi: Fix an error handling path in beiscsi_dev_probe() - jump_label: Fix jump_label_text_reserved() vs __init - static_call: Fix static_call_text_reserved() vs __init - [mips*] always link byteswap helpers into decompressor - [mips*] disable branch profiling in boot/decompress.o - [mips*] vdso: Invalid GIC access through VDSO - scsi: scsi_dh_alua: Fix signedness bug in alua_rtpg() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.53 - [armhf] dts: rockchip: fix pinctrl sleep nodename for rk3036-kylin and rk3288 - [armhf] imx: pm-imx5: Fix references to imx5_cpu_suspend_info - [arm64] dts: rockchip: fix regulator-gpio states array - [armhf] dts: imx6dl-riotboard: configure PHY clock and set proper EEE value - [armhf] dts: am57xx-cl-som-am57x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: am335x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: OMAP2+: Replace underscores in sub-mailbox node names - [arm64] dts: qcom: sc7180: Move rmtfs memory region - [armhf] memory: tegra: Fix compilation warnings on 64bit platforms - [armel,armhf] dts: bcm283x: Fix up GPIO LED node names - [armhf] dts: rockchip: fix supply properties in io-domains nodes - [armhf] OMAP2+: Block suspend for am3 and am4 if PM is not configured - [arm64,armhf] soc/tegra: fuse: Fix Tegra234-only builds - thermal/core: Correct function name thermal_zone_device_unregister() - [arm64] arch/arm64/boot/dts/marvell: fix NAND partitioning scheme - [arm64,armhf] rtc: max77686: Do not enforce (incorrect) interrupt trigger type - scsi: aic7xxx: Fix unintentional sign extension issue on left shift of u8 - scsi: libsas: Add LUN number check in .slave_alloc callback - scsi: libfc: Fix array index out of bound exception - scsi: qedf: Add check to synchronize abort and flush - sched/fair: Fix CFS bandwidth hrtimer expiry type - [x86] perf/x86/intel/uncore: Clean up error handling path of iio mapping - thermal/core/thermal_of: Stop zone device before unregistering it - [s390x] traps: do not test MONITOR CALL without CONFIG_BUG - [s390x] introduce proper type handling call_on_stack() macro - cifs: prevent NULL deref in cifs_compose_mount_options() - [arm64] firmware: turris-mox-rwtm: add marvell,armada-3700-rwtm-firmware compatible string - [arm64] dts: marvell: armada-37xx: move firmware node to generic dtsi file - Revert "swap: fix do_swap_page() race with swapoff" - f2fs: Show casefolding support only when supported - mm/thp: simplify copying of huge zero page pmd when fork - mm/userfaultfd: fix uffd-wp special cases for fork() - mm/page_alloc: fix memory map initialization for descending nodes - [arm64] net: bcmgenet: ensure EXT_ENERGY_DET_MASK is clear - [arm64,armhf] net: dsa: mv88e6xxx: enable .port_set_policy() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: use correct .stats_set_histogram() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable .rmu_disable() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable devlink ATU hash param for Topaz - net: ipv6: fix return value of ip6_skb_dst_mtu - netfilter: ctnetlink: suspicious RCU usage in ctnetlink_dump_helpinfo - net/sched: act_ct: fix err check for nf_conntrack_confirm - [x86] vmxnet3: fix cksum offload issues for tunnels with non-default udp ports - net/sched: act_ct: remove and free nf_table callbacks - net: bridge: sync fdb to new unicast-filtering ports - [arm64] net: bcmgenet: Ensure all TX/RX queues DMAs are disabled - net: ip_tunnel: fix mtu calculation for ETHER tunnel devices - [arm64] net: qcom/emac: fix UAF in emac_remove - net: ti: fix UAF in tlan_remove_one - net: send SYNACK packet with accepted fwmark - net: validate lwtstate->data before returning from skb_tunnel_info() - Revert "mm/shmem: fix shmem_swapin() race with swapoff" - [arm64,armhf] net: dsa: properly check for the bridge_leave methods in dsa_switch_bridge_leave() - dma-buf/sync_file: Don't leak fences on merge failure - [armhf] dts: aspeed: Fix AST2600 machines line names - [armhf] dts: tacoma: Add phase corrections for eMMC - tcp: annotate data races around tp->mtu_info - tcp: fix tcp_init_transfer() to not reset icsk_ca_initialized - ipv6: tcp: drop silly ICMPv6 packet too big messages - tcp: call sk_wmem_schedule before sk_mem_charge in zerocopy path - bpf: Track subprog poke descriptors correctly and fix use-after-free - udp: annotate data races around unix_sk(sk)->gso_size https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.54 - igc: Fix use-after-free error during reset - igb: Fix use-after-free error during reset - igc: change default return of igc_read_phy_reg() - ixgbe: Fix an error handling path in 'ixgbe_probe()' - igc: Fix an error handling path in 'igc_probe()' - igb: Fix an error handling path in 'igb_probe()' - e1000e: Fix an error handling path in 'e1000_probe()' - iavf: Fix an error handling path in 'iavf_probe()' - igb: Check if num of q_vectors is smaller than max before array access - igb: Fix position of assignment to *ring - [amd64] gve: Fix an error handling path in 'gve_probe()' - bonding: fix suspicious RCU usage in bond_ipsec_add_sa() - bonding: fix null dereference in bond_ipsec_add_sa() - ixgbevf: use xso.real_dev instead of xso.dev in callback functions of struct xfrmdev_ops - bonding: fix suspicious RCU usage in bond_ipsec_del_sa() - bonding: disallow setting nested bonding + ipsec offload - bonding: Add struct bond_ipesc to manage SA - bonding: fix suspicious RCU usage in bond_ipsec_offload_ok() - bonding: fix incorrect return value of bond_ipsec_offload_ok() - ipv6: fix 'disable_policy' for fwd packets - stmmac: platform: Fix signedness bug in stmmac_probe_config_dt() - cxgb4: fix IRQ free race during driver unload - nvme-pci: do not call nvme_dev_remove_admin from nvme_remove - [x86] KVM: x86/pmu: Clear anythread deprecated bit when 0xa leaf is unsupported on the SVM - [armhf] spi: imx: add a check for speed_hz before calculating the clock - [armhf] spi: stm32: fixes pm_runtime calls in probe/remove - bpf, test: fix NULL pointer dereference on invalid expected_attach_type - bpf: Fix tail_call_reachable rejection for interpreter when jit failed - xdp, net: Fix use-after-free in bpf_xdp_link_release - timers: Fix get_next_timer_interrupt() with no timers pending - liquidio: Fix unintentional sign extension issue on left shift of u16 - [s390x] bpf: Perform r1 range checking before accessing jit->seen_reg[r1] - bpf, sockmap: Fix potential memory leak on unlikely error case - bpf, sockmap, tcp: sk_prot needs inuse_idx set for proc stats - bpf, sockmap, udp: sk_prot needs inuse_idx set for proc stats - bpftool: Check malloc return value in mount_bpffs_for_pin - net: fix uninit-value in caif_seqpkt_sendmsg - usb: hso: fix error handling code of hso_create_net_device (CVE-2021-37159) - dma-mapping: handle vmalloc addresses in dma_common_{mmap,get_sgtable} - efi/tpm: Differentiate missing and invalid final event log table. - net: decnet: Fix sleeping inside in af_decnet - [powerpc*] KVM: PPC: Fix kvm_arch_vcpu_ioctl vcpu_load leak - net: sched: fix memory leak in tcindex_partial_destroy_work - sctp: trim optlen when it's a huge value in sctp_setsockopt - netrom: Decrease sock refcount when sock timers expire - scsi: iscsi: Fix iface sysfs attr detection - scsi: target: Fix protect handling in WRITE SAME(32) - bnxt_en: don't disable an already disabled PCI device - bnxt_en: Refresh RoCE capabilities in bnxt_ulp_probe() - bnxt_en: Add missing check for BNXT_STATE_ABORT_ERR in bnxt_fw_rset_task() - bnxt_en: Validate vlan protocol ID on RX packets - bnxt_en: Check abort error state in bnxt_half_open_nic() - net/tcp_fastopen: fix data races around tfo_active_disable_stamp - ALSA: hda: intel-dsp-cfg: add missing ElkhartLake PCI ID - [arm64] net: hns3: fix possible mismatches resp of mailbox - [arm64] net: hns3: fix rx VLAN offload state inconsistent issue - [arm*] spi: spi-bcm2835: Fix deadlock - net/sched: act_skbmod: Skip non-Ethernet packets - ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions - ceph: don't WARN if we're still opening a session to an MDS - nvme-pci: don't WARN_ON in nvme_reset_work if ctrl.state is not RESETTING - Revert "USB: quirks: ignore remote wake-up on Fibocom L850-GL LTE modem" - afs: Fix tracepoint string placement with built-in AFS - r8169: Avoid duplicate sysfs entry creation error - nvme: set the PRACT bit when using Write Zeroes with T10 PI - sctp: update active_key for asoc when old key is being replaced - tcp: disable TFO blackhole logic by default - net: sched: cls_api: Fix the the wrong parameter - [arm64,armhf] drm/panel: raspberrypi-touchscreen: Prevent double-free - cifs: only write 64kb at a time when fallocating a small region of a file - cifs: fix fallocate when trying to allocate a hole. - proc: Avoid mixing integer types in mem_rw() - mmc: core: Don't allocate IDA for OF aliases - [s390x] ftrace: fix ftrace_update_ftrace_func implementation - [s390x] boot: fix use of expolines in the DMA code - ALSA: usb-audio: Add missing proc text entry for BESPOKEN type - ALSA: usb-audio: Add registration quirk for JBL Quantum headsets - [i386] ALSA: sb: Fix potential ABBA deadlock in CSP driver - ALSA: hda/realtek: Fix pop noise and 2 Front Mic issues on a machine - ALSA: hdmi: Expose all pins on MSI MS-7C94 board - ALSA: pcm: Call substream ack() method upon compat mmap commit - ALSA: pcm: Fix mmap capability check - xhci: Fix lost USB 2 remote wake - [powerpc*] KVM: PPC: Book3S HV Nested: Sanitise H_ENTER_NESTED TM state - usb: hub: Disable USB 3 device initiated lpm if exit latency is too high - usb: hub: Fix link power management max exit latency (MEL) calculations - USB: usb-storage: Add LaCie Rugged USB3-FW to IGNORE_UAS - USB: serial: option: add support for u-blox LARA-R6 family - USB: serial: cp210x: fix comments for GE CS1000 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick - [arm*] usb: dwc2: gadget: Fix GOUTNAK flow for Slave mode. - [arm*] usb: dwc2: gadget: Fix sending zero length packet in DDMA mode. - firmware/efi: Tell memblock about EFI iomem reservations - tracepoints: Update static_call before tp_funcs when adding a tracepoint - tracing/histogram: Rename "cpu" to "common_cpu" - tracing: Synthetic event field_pos is an index not a boolean - btrfs: check for missing device in btrfs_trim_fs - media: ngene: Fix out-of-bounds bug in ngene_command_config_free_buf() - ixgbe: Fix packet corruption due to missing DMA sync - bus: mhi: core: Validate channel ID when processing command completions - posix-cpu-timers: Fix rearm racing against process tick - io_uring: explicitly count entries for poll reqs - io_uring: remove double poll entry on arm failure - userfaultfd: do not untag user pointers - memblock: make for_each_mem_range() traverse MEMBLOCK_HOTPLUG regions - hugetlbfs: fix mount mode command line processing - rbd: don't hold lock_rwsem while running_list is being drained - rbd: always kick acquire on "acquired" and "released" notifications - misc: eeprom: at24: Always append device id even if label property is set. - driver core: Prevent warning when removing a device link from unregistered consumer - drm: Return -ENOTTY for non-drm ioctls - drm/amdgpu: update golden setting for sienna_cichlid - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes RX stats for Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes PCS register dump via ethtool -d on Topaz - PCI: Mark AMD Navi14 GPU ATS as broken - skbuff: Release nfct refcount on napi stolen or re-used skbs - Documentation: Fix intiramfs script name - usb: ehci: Prevent missed ehci interrupts with edge-triggered MSI - [amd64] drm/i915/gvt: Clear d3_entered on elsp cmd submission. - sfc: ensure correct number of XDP queues - xhci: add xhci_get_virt_ep() helper https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.55 - io_uring: fix link timeout refs - [x86] KVM: determine if an exception has an error code only when injecting it. - af_unix: fix garbage collect vs MSG_PEEK - workqueue: fix UAF in pwq_unbound_release_workfn() - cgroup1: fix leaked context root causing sporadic NULL deref in LTP - net/802/mrp: fix memleak in mrp_request_join() - net/802/garp: fix memleak in garp_request_join() - net: annotate data race around sk_ll_usec - sctp: move 198 addresses from unusable to private scope - rcu-tasks: Don't delete holdouts within trc_inspect_reader() - rcu-tasks: Don't delete holdouts within trc_wait_for_one_reader() - ipv6: allocate enough headroom in ip6_finish_output2() - drm/ttm: add a check against null pointer dereference - hfs: add missing clean-up in hfs_fill_super - hfs: fix high memory mapping in hfs_bnode_read - hfs: add lock nesting notation to hfs_find_init - cifs: fix the out of range assignment to bit fields in parse_server_interfaces - iomap: remove the length variable in iomap_seek_data - iomap: remove the length variable in iomap_seek_hole - ipv6: ip6_finish_output2: set sk into newly allocated nskb https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.56 - io_uring: fix null-ptr-deref in io_sq_offload_start() - [x86] asm: Ensure asm/proto.h can be included stand-alone - pipe: make pipe writes always wake up readers - btrfs: fix rw device counting in __btrfs_free_extra_devids - btrfs: mark compressed range uptodate only if all bio succeed - Revert "ACPI: resources: Add checks for ACPI IRQ override" - [x86] kvm: fix vcpu-id indexed array sizes - KVM: add missing compat KVM_CLEAR_DIRTY_LOG - ocfs2: fix zero out valid data - ocfs2: issue zeroout to EOF blocks - can: j1939: j1939_xtp_rx_dat_one(): fix rxtimer value between consecutive TP.DT to 750ms - can: raw: raw_setsockopt(): fix raw_rcv panic for sock UAF - can: peak_usb: pcan_usb_handle_bus_evt(): fix reading rxerr/txerr values - can: mcba_usb_start(): add missing urb->transfer_dma initialization (Closes: #990850) - can: usb_8dev: fix memory leak - can: ems_usb: fix memory leak - can: esd_usb2: fix memory leak - HID: wacom: Re-enable touch by default for Cintiq 24HDT / 27QHDT - NIU: fix incorrect error return, missed in previous revert - drm/amdgpu: Avoid printing of stack contents on firmware load error - drm/amdgpu: Fix resource leak on probe error path - blk-iocost: fix operation ordering in iocg_wake_fn() - nfc: nfcsim: fix use after free during module unload - cfg80211: Fix possible memory leak in function cfg80211_bss_update - bpf: Fix OOB read when printing XDP link fdinfo - mac80211: fix enabling 4-address mode on a sta vif after assoc - netfilter: conntrack: adjust stop timestamp to real expiry value - netfilter: nft_nat: allow to specify layer 4 protocol NAT only - i40e: Fix logic of disabling queues - i40e: Fix firmware LLDP agent related warning - i40e: Fix queue-to-TC mapping on Tx - i40e: Fix log TC creation failure when max num of queues is exceeded - tipc: fix implicit-connect for SYN+ - tipc: fix sleeping in tipc accept routine - net: Set true network header for ECN decapsulation - net: qrtr: fix memory leaks - tipc: do not write skb_shinfo frags when doing decrytion - mlx4: Fix missing error code in mlx4_load_one() - [x86] KVM: x86: Check the right feature bit for MSR_KVM_ASYNC_PF_ACK access - net: llc: fix skb_over_panic - [arm64] drm/msm/dpu: Fix sm8250_mdp register length - [arm64] drm/msm/dp: Initialize the INTF_CONFIG register - skmsg: Make sk_psock_destroy() static - net/mlx5: Fix flow table chaining - net/mlx5e: Fix nullptr in mlx5e_hairpin_get_mdev() - tulip: windbond-840: Fix missing pci_disable_device() in probe and remove - sis900: Fix missing pci_disable_device() in probe and remove - SMB3: fix readpage for large swap cache - [powerpc*] pseries: Fix regression while building external modules - Revert "perf map: Fix dso->nsinfo refcounting" - i40e: Add additional info to PHY type error - can: j1939: j1939_session_deactivate(): clarify lifetime of session object https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.57 - [x86] drm/i915: Revert "drm/i915/gem: Asynchronous cmdparser" - [x86] Revert "drm/i915: Propagate errors on awaiting already signaled fences" - btrfs: fix race causing unnecessary inode logging during link and rename - btrfs: fix lost inode on log replay after mix of fsync, rename and inode eviction - [armhf] spi: stm32h7: fix full duplex irq handler handling - r8152: Fix potential PM refcount imbalance - qed: fix possible unpaired spin_{un}lock_bh in _qed_mcp_cmd_and_union() - ASoC: rt5682: Fix the issue of garbled recording after powerd_dbus_suspend - net: Fix zero-copy head len calculation. - efi/mokvar: Reserve the table only if it is in boot services data - nvme: fix nvme_setup_command metadata trace event - ACPI: fix NULL pointer dereference - Revert "Bluetooth: Shutdown controller after workqueues are flushed or cancelled" - Revert "watchdog: iTCO_wdt: Account for rebooting on second timeout" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.58 - Revert "ACPICA: Fix memory leak caused by _CID repair function" - ALSA: seq: Fix racy deletion of subscriber - [armhf] bus: ti-sysc: Fix gpt12 system timer issue with reserved status - net: xfrm: fix memory leak in xfrm_user_rcv_msg - [armhf] imx: add missing iounmap() - [armhf] imx: add missing clk_disable_unprepare() - [arm64] dts: ls1028: sl28: fix networking for variant 2 - [armhf] imx: fix missing 3rd argument in macro imx_mmdc_perf_init - [armhf] dts: imx: Swap M53Menlo pinctrl_power_button/pinctrl_power_out pins - [arm64] dts: armada-3720-turris-mox: fixed indices for the SDHC controllers - [arm64] dts: armada-3720-turris-mox: remove mrvl,i2c-fast-mode - ALSA: usb-audio: fix incorrect clock source setting - [arm64,armhf] clk: tegra: Implement disable_unused() of tegra_clk_sdmmc_mux_ops - [armhf] dmaengine: stm32-dma: Fix PM usage counter imbalance in stm32 dma ops - [armhf] dmaengine: stm32-dmamux: Fix PM usage counter unbalance in stm32 dmamux ops - [armhf] spi: imx: mx51-ecspi: Reinstate low-speed CONFIGREG delay - [armhf] spi: imx: mx51-ecspi: Fix low-speed CONFIGREG delay calculation - scsi: sr: Return correct event when media event code is 3 - media: videobuf2-core: dequeue if start_streaming fails - [armhf] dmaengine: imx-dma: configure the generic DMA type to make it work - net, gro: Set inner transport header offset in tcp/udp GRO hook - net: phy: micrel: Fix detection of ksz87xx switch - net: natsemi: Fix missing pci_disable_device() in probe and remove - RDMA/mlx5: Delay emptying a cache entry when a new MR is added to it recently - sctp: move the active_key update after sh_keys is added - nfp: update ethtool reporting of pauseframe control - net: ipv6: fix returned variable type in ip6_skb_dst_mtu - net: sched: fix lockdep_set_class() typo error for sch->seqlock - [mips*] check return value of pgtable_pmd_page_ctor - bnx2x: fix an error code in bnx2x_nic_load() - net: pegasus: fix uninit-value in get_interrupt_interval - [arm64,armhf] net: fec: fix use-after-free in fec_drv_remove - net: vxge: fix use-after-free in vxge_device_unregister - Bluetooth: defer cleanup of resources in hci_unregister_dev() - USB: usbtmc: Fix RCU stall warning - USB: serial: option: add Telit FD980 composition 0x1056 - USB: serial: ch341: fix character loss at high transfer rates - USB: serial: ftdi_sio: add device ID for Auto-M3 OP-COM v2 - [x86] firmware_loader: use -ETIMEDOUT instead of -EAGAIN in fw_load_sysfs_fallback - [x86] firmware_loader: fix use-after-free in firmware_fallback_sysfs - ALSA: pcm - fix mmap capability check for the snd-dummy driver - ALSA: hda/realtek: add mic quirk for Acer SF314-42 - ALSA: hda/realtek: Fix headset mic for Acer SWIFT SF314-56 (ALC256) - ALSA: usb-audio: Fix superfluous autosuspend recovery - ALSA: usb-audio: Add registration quirk for JBL Quantum 600 - [arm64,armhf] usb: dwc3: gadget: Avoid runtime resume if disabling pullup - usb: gadget: f_hid: added GET_IDLE and SET_IDLE handlers - usb: gadget: f_hid: fixed NULL pointer dereference - usb: gadget: f_hid: idle uses the highest byte for duration - usb: typec: tcpm: Keep other events when receiving FRS and Sourcing_vbus events - clk: fix leak on devm_clk_bulk_get_all() unwind - tracing: Fix NULL pointer dereference in start_creating - tracepoint: static call: Compare data on transition from 2->1 callees - tracepoint: Fix static call function vs data state mismatch - [arm64] stacktrace: avoid tracing arch_stack_walk() - [arm64] optee: Clear stale cache entries during initialization - [arm64] tee: add tee_shm_alloc_kernel_buf() - [arm64] optee: Fix memory leak when failing to register shm pages - [arm64] optee: Refuse to load the driver under the kdump kernel - [arm64] optee: fix tee out of memory failure seen during kexec reboot - staging: rtl8723bs: Fix a resource leak in sd_int_dpc - staging: rtl8712: get rid of flush_scheduled_work - staging: rtl8712: error handling refactoring - drivers core: Fix oops when driver probe fails - media: rtl28xxu: fix zero-length control request - pipe: increase minimum default pipe size to 2 pages - ext4: fix potential htree corruption when growing large_dir directories - [arm64,armhf] serial: tegra: Only print FIFO error message when an error occurs - serial: 8250: Mask out floating 16/32-bit bus bits - [mips*] Malta: Do not byte-swap accesses to the CBUS UART - serial: 8250_pci: Enumerate Elkhart Lake UARTs via dedicated driver - serial: 8250_pci: Avoid irq sharing for MSI(-X) interrupts. - timers: Move clearing of base::timer_running under base:: Lock - xfrm: Fix RCU vs hash_resize_mutex lock inversion - pcmcia: i82092: fix a null pointer dereference bug - selinux: correct the return value when loads initial sids - [armhf] bus: ti-sysc: AM3: RNG is GP only - [arm64] Revert "gpio: mpc8xxx: change the gpio interrupt flags." - [armhf] omap2+: hwmod: fix potential NULL pointer access - md/raid10: properly indicate failure when ending a failed write request - [x86] KVM: accept userspace interrupt only if no event is injected - KVM: Do not leak memory for duplicate debugfs directories - [x86] KVM: x86/mmu: Fix per-cpu counter corruption on 32-bit builds - [arm64] vdso: Avoid ISB after reading from cntvct_el0 - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_remove - [x86] drm/i915: Correct SFC_DONE register offset - sched/rt: Fix double enqueue caused by rt_effective_prio - [x86] drm/i915: avoid uninitialised var in eb_parse() - libata: fix ata_pio_sector for CONFIG_HIGHMEM - reiserfs: add check for root_inode in reiserfs_fill_super - reiserfs: check directory items on read from disk - net: qede: Fix end of loop tests for list_for_each_entry - net/qla3xxx: fix schedule while atomic in ql_wait_for_drvr_lock and ql_adapter_reset - smb3: rc uninitialized in one fallocate path - drm/amdgpu/display: only enable aux backlight control for OLED panels - [arm64] fix compat syscall return truncation https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.59 - [x86] KVM: SVM: Fix off-by-one indexing when nullifying last used SEV VMCB - [arm64] tee: Correct inappropriate usage of TEE_SHM_DMA_BUF flag - bpf: Add lockdown check for probe_write_user helper - mm: make zone_to_nid() and zone_set_nid() available for DISCONTIGMEM - [x86] vboxsf: Honor excl flag to the dir-inode create op - [x86] vboxsf: Make vboxsf_dir_create() return the handle for the created file - USB:ehci:fix Kunpeng920 ehci hardware problem - ALSA: pcm: Fix mmap breakage without explicit buffer setup - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 650 G8 Notebook PC - ALSA: hda: Add quirk for ASUS Flow x13 - ppp: Fix generating ppp unit id when ifname is not specified - net: xilinx_emaclite: Do not print real IOMEM pointer (CVE-2021-38205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.60 - iio: adc: ti-ads7950: Ensure CS is deasserted after reading channels - iio: adis: set GPIO reset pin direction - [x86] ASoC: amd: Fix reference to PCM buffer address - [x86] ASoC: intel: atom: Fix reference to PCM buffer address - i2c: dev: zero out array used for i2c reads from userspace - cifs: create sd context must be a multiple of 8 - scsi: lpfc: Move initialization of phba->poll_list earlier to avoid crash - seccomp: Fix setting loaded filter count during TSYNC - [armhf] net: ethernet: ti: cpsw: fix min eth packet size for non-switch use-cases - ceph: reduce contention in ceph_check_delayed_caps() - [amd64,arm64] ACPI: NFIT: Fix support for virtual SPA ranges - libnvdimm/region: Fix label activation vs errors - drm/amd/display: use GFP_ATOMIC in amdgpu_dm_irq_schedule_work - drm/amdgpu: don't enable baco on boco platforms in runpm - ieee802154: hwsim: fix GPF in hwsim_set_edge_lqi - ieee802154: hwsim: fix GPF in hwsim_new_edge_nl - [x86] ASoC: SOF: Intel: hda-ipc: fix reply size checking - netfilter: nf_conntrack_bridge: Fix memory leak when error - [x86] pinctrl: tigerlake: Fix GPIO mapping for newer version of software - [x86] platform/x86: pcengines-apuv2: Add missing terminating entries to gpio-lookup tables - net: phy: micrel: Fix link detection on ksz87xx switch" - ppp: Fix generating ifname when empty IFLA_IFNAME is specified - net/smc: fix wait on already cleared link - net: sched: act_mirred: Reset ct info when mirror/redirect skb - ice: Prevent probing virtual functions - ice: don't remove netdev->dev_addr from uc sync list - iavf: Set RSS LUT and key in reset handle path - net/mlx5: Synchronize correct IRQ when destroying CQ - net/mlx5: Fix return value from tracer initialization - [arm64] drm/meson: fix colour distortion from HDR set during vendor u-boot - net: Fix memory leak in ieee802154_raw_deliver - net: igmp: fix data-race in igmp_ifc_timer_expire() - net: bridge: validate the NUD_PERMANENT bit when adding an extern_learn FDB entry - net: bridge: fix flags interpretation for extern learn fdb entries - net: bridge: fix memleak in br_add_if() - net: linkwatch: fix failure to restore device state across suspend/resume - tcp_bbr: fix u32 wrap bug in round logic if bbr_init() called after 2B packets - net: igmp: increase size of mr_ifc_count - [x86] drm/i915: Only access SFC_DONE when media domain is not fused off - xen/events: Fix race in set_evtchn_to_irq - vsock/virtio: avoid potential deadlock when vsock device remove - nbd: Aovid double completion of a request - [arm64] efi/libstub: arm64: Force Image reallocation if BSS was not reserved - [arm64] efi/libstub: arm64: Relax 2M alignment again for relocatable kernels - [powerpc*] kprobes: Fix kprobe Oops happens in booke - genirq: Provide IRQCHIP_AFFINITY_PRE_STARTUP - [x86] msi: Force affinity setup before startup - [x86] ioapic: Force affinity setup before startup - [x86] resctrl: Fix default monitoring groups reporting - genirq/msi: Ensure deactivation on teardown - PCI/MSI: Enable and mask MSI-X early - PCI/MSI: Mask all unused MSI-X entries - PCI/MSI: Enforce that MSI-X table entry is masked for update - PCI/MSI: Enforce MSI[X] entry updates to be visible - PCI/MSI: Do not set invalid bits in MSI mask - PCI/MSI: Correct misleading comments - PCI/MSI: Use msi_mask_irq() in pci_msi_shutdown() - PCI/MSI: Protect msi_desc::masked for multi-MSI - [powerpc*] smp: Fix OOPS in topology_init() - [arm64] efi/libstub: arm64: Double check image alignment at entry - [x86] KVM: VMX: Use current VMCS to query WAITPKG support for MSR emulation - [x86] KVM: nVMX: Use vmx_need_pf_intercept() when deciding if L0 wants a #PF - [x86] vboxsf: Add vboxsf_[create|release]_sf_handle() helpers - [x86] vboxsf: Add support for the atomic_open directory-inode op - ceph: add some lockdep assertions around snaprealm handling - ceph: clean up locking annotation for ceph_get_snap_realm and __lookup_snap_realm - ceph: take snap_empty_lock atomically with snaprealm refcount change https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.61 - mtd: cfi_cmdset_0002: fix crash when erasing/writing AMD cards - media: zr364xx: propagate errors from zr364xx_start_readpipe() - media: zr364xx: fix memory leaks in probe() - media: drivers/media/usb: fix memory leak in zr364xx_probe - [x86] KVM: Factor out x86 instruction emulation with decoding - [x86] KVM: Fix warning caused by stale emulation context - USB: core: Avoid WARNings for 0-length descriptor requests - USB: core: Fix incorrect pipe calculation in do_proc_control() - dmaengine: xilinx_dma: Fix read-after-free bug when terminating transfers - net: xfrm: Fix end of loop tests for list_for_each_entry - dmaengine: of-dma: router_xlate to return -EPROBE_DEFER if controller is not yet available - scsi: pm80xx: Fix TMF task completion race condition - scsi: megaraid_mm: Fix end of loop tests for list_for_each_entry() - scsi: scsi_dh_rdac: Avoid crash during rdac_bus_attach() - scsi: core: Avoid printing an error if target_alloc() returns -ENXIO - scsi: core: Fix capacity set to zero after offlinining device - drm/amdgpu: fix the doorbell missing when in CGPG issue for renoir. - qede: fix crash in rmmod qede while automatic debug collection - net: usb: pegasus: Check the return value of get_geristers() and friends; - net: usb: lan78xx: don't modify phy_device state concurrently - Bluetooth: hidp: use correct wait queue when removing ctrl_wait (Closes: #992121) - [arm64] dts: qcom: c630: fix correct powerdown pin for WSA881x - [arm64] dts: qcom: msm8992-bullhead: Remove PSCI - iommu: Check if group is NULL before remove device - [arm64] cpufreq: armada-37xx: forbid cpufreq for 1.2 GHz variant - virtio: Protect vqs list access - [armhf] bus: ti-sysc: Fix error handling for sysc_check_active_timer() - vhost: Fix the calculation in vhost_overflow() - bpf: Clear zext_dst of dead insns - bnxt: don't lock the tx queue from napi poll - bnxt: disable napi before canceling DIM - bnxt: make sure xmit_more + errors does not miss doorbells - bnxt: count Tx drops - net: 6pack: fix slab-out-of-bounds in decode_data - bnxt_en: Disable aRFS if running on 212 firmware - bnxt_en: Add missing DMA memory barriers - vrf: Reset skb conntrack connection on VRF rcv - virtio-net: support XDP when not more queues - virtio-net: use NETIF_F_GRO_HW instead of NETIF_F_LRO - net: qlcnic: add missed unlock in qlcnic_83xx_flash_read32 - ixgbe, xsk: clean up the resources in ixgbe_xsk_pool_enable error path - sch_cake: fix srchost/dsthost hashing mode - [arm64,armhf] net: mdio-mux: Don't ignore memory allocation errors - [arm64,armhf] net: mdio-mux: Handle -EPROBE_DEFER correctly - ovs: clear skb->tstamp in forwarding path - [amd64] iommu/vt-d: Consolidate duplicate cache invaliation code - [amd64] iommu/vt-d: Fix incomplete cache flush in intel_pasid_tear_down_entry() - r8152: fix writing USB_BP2_EN - i40e: Fix ATR queue selection - iavf: Fix ping is lost after untrusted VF had tried to change MAC - Revert "flow_offload: action should not be NULL when it is referenced" - [arm64,armhf] mmc: dw_mmc: Fix hang on data CRC error - [arm64,armhf] mmc: mmci: stm32: Check when the voltage switch procedure should be done - [arm64] mmc: sdhci-msm: Update the software timeout value for sdhc - [armhf] clk: imx6q: fix uart earlycon unwork - [arm64] clk: qcom: gdsc: Ensure regulator init state matches GDSC state - ALSA: hda - fix the 'Capture Switch' value change notifications - slimbus: messaging: start transaction ids from 1 instead of zero - slimbus: messaging: check for valid transaction id - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9510 laptop - [arm*] mmc: sdhci-iproc: Cap min clock frequency on BCM2711 - [arm*] mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711 - btrfs: prevent rename2 from exchanging a subvol with a directory from different parents - ALSA: hda/via: Apply runtime PM workaround for ASUS B23E - [s390x] pci: fix use after free of zpci_dev - PCI: Increase D3 delay for AMD Renoir/Cezanne XHCI - ALSA: hda/realtek: Limit mic boost on HP ProBook 445 G8 - [x86] ASoC: intel: atom: Fix breakage for PCM buffer address setup - mm: memcontrol: fix occasional OOMs due to proportional memory.low reclaim - fs: warn about impending deprecation of mandatory locks - io_uring: fix xa_alloc_cycle() error return value check - io_uring: only assign io_uring_enter() SQPOLL error in actual error case https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.62 - bpf: Fix ringbuf helper function compatibility - bpf: Fix NULL pointer dereference in bpf_get_local_storage() helper - ASoC: rt5682: Adjust headset volume button threshold - ASoC: component: Remove misplaced prefix handling in pin control functions - netfilter: conntrack: collect all entries in one cycle - once: Fix panic when module unload - blk-iocost: fix lockdep warning on blkcg->lock - ovl: fix uninitialized pointer read in ovl_lookup_real_one() - [arm64] net: mscc: Fix non-GPL export of regmap APIs - can: usb: esd_usb2: esd_usb2_rx_event(): fix the interchange of the CAN RX and TX error counters - ceph: correctly handle releasing an embedded cap flush - Revert "btrfs: compression: don't try to compress if we don't have enough pages" - drm/amdgpu: Cancel delayed work when GFXOFF is disabled - Revert "USB: serial: ch341: fix character loss at high transfer rates" - USB: serial: option: add new VID/PID to support Fibocom FG150 - [arm64,armhf] usb: dwc3: gadget: Fix dwc3_calc_trbs_left() - [arm64,armhf] usb: dwc3: gadget: Stop EP0 transfers during pullup disable - scsi: core: Fix hang of freezing queue between blocking and running device - [amd64] IB/hfi1: Fix possible null-pointer dereference in _extend_sdma_tx_descs() - ice: do not abort devlink info if board identifier can't be found - net: usb: pegasus: fixes of set_register(s) return value evaluation; - igc: fix page fault when thunderbolt is unplugged - igc: Use num_tx_queues when iterating over tx_ring queue - e1000e: Fix the max snoop/no-snoop latency for 10M - e1000e: Do not take care about recovery NVM checksum - ip_gre: add validation for csum_start - [arm64] xgene-v2: Fix a resource leak in the error handling path of 'xge_probe()' - [arm64,armhf] net: marvell: fix MVNETA_TX_IN_PRGRS bit number - ucounts: Increase ucounts reference counter before the security hook - net/sched: ets: fix crash when flipping from 'strict' to 'quantum' - ipv6: use siphash in rt6_exception_hash() - ipv4: use siphash instead of Jenkins in fnhe_hashfun() - cxgb4: dont touch blocked freelist bitmap after free - rtnetlink: Return correct error on changing device netns - [arm64] net: hns3: clear hardware resource when loading driver - [arm64] net: hns3: add waiting time before cmdq memory is released - [arm64] net: hns3: fix duplicate node in VLAN list - [arm64] net: hns3: fix get wrong pfc_en when query PFC configuration - [arm*] Revert "mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711" - net: stmmac: add mutex lock to protect est parameters - net: stmmac: fix kernel panic due to NULL pointer dereference of plat->est - [x86] drm/i915: Fix syncmap memory leak - usb: gadget: u_audio: fix race condition on endpoint stop - [x86] perf/x86/intel/uncore: Fix integer overflow on 23 bit left shift of a u32 - iwlwifi: pnvm: accept multiple HW-type TLVs - opp: remove WARN when no valid OPPs remain - [arm64,armhf] cpufreq: blocklist Qualcomm sm8150 in cpufreq-dt-platdev - virtio: Improve vq->broken access to avoid any compiler optimization - virtio_pci: Support surprise removal of virtio pci device - qed: qed ll2 race condition fixes - qed: Fix null-pointer dereference in qed_rdma_create_qp() - blk-mq: don't grab rq's refcount in blk_mq_check_expired() - drm: Copy drm_wait_vblank to user before returning - drm/nouveau/disp: power down unused DP links during init - drm/nouveau/kms/nv50: workaround EFI GOP window channel format differences - net/rds: dma_map_sg is entitled to merge entries - btrfs: fix race between marking inode needs to be logged and log syncing - pipe: avoid unnecessary EPOLLET wakeups under normal loads - pipe: do FASYNC notifications for every pipe IO, not just state changes - tipc: call tipc_wait_for_connect only when dlen is not 0 - Bluetooth: btusb: check conditions before enabling USB ALT 3 for WBS - [powerpc*] perf: Invoke per-CPU variable access with disabled interrupts - srcu: Provide internal interface to start a Tree SRCU grace period - srcu: Provide polling interfaces for Tree SRCU grace periods - srcu: Provide internal interface to start a Tiny SRCU grace period - srcu: Make Tiny SRCU use multi-bit grace-period counter - srcu: Provide polling interfaces for Tiny SRCU grace periods - tracepoint: Use rcu get state and cond sync for static call updates - usb: typec: ucsi: acpi: Always decode connector change information (Closes: #992004) - usb: typec: ucsi: Work around PPM losing change information - usb: typec: ucsi: Clear pending after acking connector change - [arm64] dts: qcom: msm8994-angler: Fix gpio-reserved-ranges 85-88 - kthread: Fix PF_KTHREAD vs to_kthread() race - Revert "floppy: reintroduce O_NDELAY fix" - net: don't unconditionally copy_from_user a struct ifreq for socket ioctls - audit: move put_tree() to avoid trim_trees refcount underflow and UAF - bpf: Fix potentially incorrect results with bpf_get_local_storage() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.63 - fscrypt: add fscrypt_symlink_getattr() for computing st_size - ext4: report correct st_size for encrypted symlinks - f2fs: report correct st_size for encrypted symlinks - ubifs: report correct st_size for encrypted symlinks - Revert "ucounts: Increase ucounts reference counter before the security hook" - Revert "cred: add missing return error code when set_cred_ucounts() failed" - Revert "Add a reference to ucounts for each cred" - [armhf] gpu: ipu-v3: Fix i.MX IPU-v3 offset calculations for (semi)planar U/V formats - qed: Fix the VF msix vectors flow - [arm64] net: macb: Add a NULL check on desc_ptp - qede: Fix memset corruption - [x86] perf/x86/intel/pt: Fix mask of num_address_ranges - ceph: fix possible null-pointer dereference in ceph_mdsmap_decode() - [x86] perf/x86/amd/ibs: Work around erratum #1197 - [x86] perf/x86/amd/power: Assign pmu.module - ALSA: hda/realtek: Quirk for HP Spectre x360 14 amp setup - ALSA: hda/realtek: Workaround for conflicting SSID on ASUS ROG Strix G17 - ALSA: pcm: fix divide error in snd_pcm_lib_ioctl - spi: Switch to signed types for *_native_cs SPI controller fields - new helper: inode_wrong_type() - fuse: fix illegal access to inode with reused nodeid - media: stkwebcam: fix memory leak in stk_camera_probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.64 - igmp: Add ip_mc_list lock in ip_check_mc_rcu - USB: serial: mos7720: improve OOM-handling in read_mos_reg() - mm/page_alloc: speed up the iteration of max_order - Revert "r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM" - [amd64] x86/events/amd/iommu: Fix invalid Perf result due to IOMMU PMC power-gating - blk-mq: fix kernel panic during iterating over flush request - blk-mq: fix is_flush_rq - blk-mq: clearing flush request reference in tags->rqs[] - ALSA: usb-audio: Add registration quirk for JBL Quantum 800 - xhci: fix even more unsafe memory usage in xhci tracing - xhci: fix unsafe memory usage in xhci tracing - [x86] reboot: Limit Dell Optiplex 990 quirk to early BIOS versions - PCI: Call Max Payload Size-related fixup quirks early https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.65 - locking/mutex: Fix HANDOFF condition - regmap: fix the offset of register error log - sched/deadline: Fix reset_on_fork reporting of DL tasks - power: supply: axp288_fuel_gauge: Report register-address on readb / writeb errors - sched/deadline: Fix missing clock update in migrate_task_rq_dl() - rcu/tree: Handle VM stoppage in stall detection - [x86] EDAC/mce_amd: Do not load edac_mce_amd module on guests - posix-cpu-timers: Force next expiration recalc after itimer reset - hrtimer: Avoid double reprogramming in __hrtimer_start_range_ns() - hrtimer: Ensure timerfd notification for HIGHRES=n - udf: Check LVID earlier - udf: Fix iocharset=utf8 mount option - isofs: joliet: Fix iocharset=utf8 mount option - bcache: add proper error unwinding in bcache_device_init - blk-throtl: optimize IOPS throttle for large IO scenarios - nvme-tcp: don't update queue count when failing to set io queues - nvme-rdma: don't update queue count when failing to set io queues - nvmet: pass back cntlid on successful completion - [x86] power: supply: max17042_battery: fix typo in MAx17042_TOFF - [s390x] cio: add dev_busid sysfs entry for each subchannel - [s390x] zcrypt: fix wrong offset index for APKA master key valid state - libata: fix ata_host_start() - [x86] crypto: qat - do not ignore errors from enable_vf2pf_comms() - [x86] crypto: qat - handle both source of interrupt in VF ISR - [x86] crypto: qat - fix reuse of completion variable - [x86] crypto: qat - fix naming for init/shutdown VF to PF notifications - [x86] crypto: qat - do not export adf_iov_putmsg() - fcntl: fix potential deadlock for &fasync_struct.fa_lock - udf_get_extendedattr() had no boundary checks. - [s390x] pci: fix misleading rc in clp_set_pci_fn() - [s390x] debug: keep debug data on resize - [s390x] debug: fix debug area life cycle - [s390x] ap: fix state machine hang after failure to enable irq - [arm64] power: supply: cw2015: use dev_err_probe to allow deferred probe - sched/numa: Fix is_core_idle() - sched: Fix UCLAMP_FLAG_IDLE setting - rcu: Fix to include first blocked task in stall warning - rcu: Add lockdep_assert_irqs_disabled() to rcu_sched_clock_irq() and callees - rcu: Fix stall-warning deadlock due to non-release of rcu_node ->lock - block: return ELEVATOR_DISCARD_MERGE if possible - [arm64] spi: spi-fsl-dspi: Fix issue with uninitialized dma_slave_config - genirq/timings: Fix error return code in irq_timings_test_irqs() - [mips64el,mipsel] irqchip/loongson-pch-pic: Improve edge triggered interrupt support - lib/mpi: use kcalloc in mpi_resize - block: nbd: add sanity check for first_minor - [arm64,armhf] irqchip/gic-v3: Fix priority comparison when non-secure priorities are used - [x86] crypto: qat - use proper type for vf_mask - [x86] mce: Defer processing of early errors - [arm64] regulator: vctrl: Use locked regulator_get_voltage in probe path - [arm64] regulator: vctrl: Avoid lockdep warning in enable/disable ops - [arm64,armhf] drm/panfrost: Fix missing clk_disable_unprepare() on error in panfrost_clk_init() - [x86] drm/gma500: Fix end of loop tests for list_for_each_entry - drm/of: free the right object - bpf: Fix a typo of reuseport map in bpf.h. - bpf: Fix potential memleak and UAF in the verifier. - drm/of: free the iterator object on failure - [amd64] gve: fix the wrong AdminQ buffer overflow check - i40e: improve locking of mac_filter_hash - gfs2: Fix memory leak of object lsi on error return path - firmware: fix theoretical UAF race with firmware cache and resume - driver core: Fix error return code in really_probe() - media: dvb-usb: fix uninit-value in dvb_usb_adapter_dvb_init - media: dvb-usb: fix uninit-value in vp702x_read_mac_addr - media: dvb-usb: Fix error handling in dvb_usb_i2c_init - media: go7007: fix memory leak in go7007_usb_probe - media: go7007: remove redundant initialization - [armhf] media: coda: fix frame_mem_ctrl for YUV420 and YVU420 formats - Bluetooth: sco: prevent information leak in sco_conn_defer_accept() - [x86] drm/amdgpu/acp: Make PM domain really work - tcp: seq_file: Avoid skipping sk during tcp_seek_last_pos - [armhf] dts: meson8b: odroidc1: Fix the pwm regulator supply properties - [armhf] dts: meson8b: mxq: Fix the pwm regulator supply properties - [armhf] dts: meson8b: ec100: Fix the pwm regulator supply properties - net/mlx5e: Prohibit inner indir TIRs in IPoIB - net/mlx5e: Block LRO if firmware asks for tunneled LRO - cgroup/cpuset: Fix a partition bug with hotplug - net: cipso: fix warnings in netlbl_cipsov4_add_std - Bluetooth: mgmt: Fix wrong opcode in the response for add_adv cmd - devlink: Break parameter notification sequence to be before/after unload/load driver - net/mlx5: Fix missing return value in mlx5_devlink_eswitch_inline_mode_set() - leds: lt3593: Put fwnode in any case during ->probe() - leds: trigger: audio: Add an activate callback to ensure the initial brightness is set - media: em28xx-input: fix refcount bug in em28xx_usb_disconnect - [arm64] media: venus: venc: Fix potential null pointer dereference on pointer fmt - PCI: PM: Avoid forcing PCI_D0 for wakeup reasons inconsistently - PCI: PM: Enable PME if it can be signaled from D3cold - debugfs: Return error during {full/open}_proxy_open() on rmmod - Bluetooth: increase BTNAMSIZ to 21 chars to fix potential buffer overflow - PM: EM: Increase energy calculation precision - [arm64] drm/msm/mdp4: refactor HW revision detection into read_mdp_hw_revision - [arm64] drm/msm/mdp4: move HW revision detection to earlier phase - [arm64] drm/msm/dpu: make dpu_hw_ctl_clear_all_blendstages clear necessary LMs - cgroup/cpuset: Miscellaneous code cleanup - cgroup/cpuset: Fix violation of cpuset locking rule - [x86] ASoC: Intel: Fix platform ID matching - Bluetooth: fix repeated calls to sco_sock_kill - [arm64] drm/msm/dsi: Fix some reference counted resource leaks - net/mlx5: Register to devlink ingress VLAN filter trap - net/mlx5: Fix unpublish devlink parameters - [x86] ASoC: rt5682: Implement remove callback - [x86] ASoC: rt5682: Properly turn off regulators if wrong device ID - [arm64,armhf] usb: dwc3: meson-g12a: add IRQ check - [arm64] usb: dwc3: qcom: add IRQ check - [armhf] usb: phy: twl6030: add IRQ checks - devlink: Clear whole devlink_flash_notify struct - Bluetooth: Move shutdown callback before flushing tx and rx queue - PM: cpu: Make notifier chain use a raw_spinlock_t - mac80211: Fix insufficient headroom issue for AMSDU - locking/lockdep: Mark local_lock_t - locking/local_lock: Add missing owner initialization - lockd: Fix invalid lockowner cast after vfs_test_lock - nfsd4: Fix forced-expiry locking - [arm64] dts: marvell: armada-37xx: Extend PCIe MEM space - [arm*] firmware: raspberrypi: Keep count of all consumers - [arm*] firmware: raspberrypi: Fix a leak in 'rpi_firmware_get()' - mm/swap: consider max pages in iomap_swapfile_add_extent - Bluetooth: add timeout sanity check to hci_inquiry - [armhf] i2c: s3c2410: fix IRQ check - gfs2: init system threads before freeze lock - rsi: fix error code in rsi_load_9116_firmware() - rsi: fix an error code in rsi_probe() - [x86] ASoC: Intel: Skylake: Leave data as is when invoking TLV IPCs - [x86] ASoC: Intel: Skylake: Fix module resource and format selection - mmc: sdhci: Fix issue with uninitialized dma_slave_config - [arm64,armhf] mmc: dw_mmc: Fix issue with uninitialized dma_slave_config - bpf: Fix possible out of bound write in narrow load handling - CIFS: Fix a potencially linear read overflow - [arm64] i2c: xlp9xx: fix main IRQ check - [arm*] usb: ehci-orion: Handle errors of clk_prepare_enable() in probe - [arm64] tty: serial: fsl_lpuart: fix the wrong mapbase value - iwlwifi: follow the new inclusive terminology - iwlwifi: skip first element in the WTAS ACPI table - ice: Only lock to update netdev dev_addr - ath6kl: wmi: fix an error code in ath6kl_wmi_sync_point() - [amd64,arm64] atlantic: Fix driver resume flow. - bcma: Fix memory leak for internally-handled cores - brcmfmac: pcie: fix oops on failure to resume and reprobe - ipv6: make exception cache less predictible - ipv4: make exception cache less predictible - net: sched: Fix qdisc_rate_table refcount leak when get tcf_block failed - ipv4: fix endianness issue in inet_rtm_getroute_build_skb() - [x86] ASoC: rt5682: Remove unused variable in rt5682_i2c_remove() - iwlwifi Add support for ax201 in Samsung Galaxy Book Flex2 Alpha - f2fs: guarantee to write dirty data when enabling checkpoint back - time: Handle negative seconds correctly in timespec64_to_ns() - io_uring: IORING_OP_WRITE needs hash_reg_file set - bio: fix page leak bio_add_hw_page failure - tty: Fix data race between tiocsti() and flush_to_ldisc() - [x86] perf/x86/amd/ibs: Extend PERF_PMU_CAP_NO_EXCLUDE to IBS Op - [x86] resctrl: Fix a maybe-uninitialized build warning treated as error - [x86] Revert "KVM: x86: mmu: Add guest physical address check in translate_gpa()" - [s390x] KVM: index kvm->arch.idle_mask by vcpu_idx - [x86] KVM: x86: Update vCPU's hv_clock before back to guest when tsc_offset is adjusted - [x86] KVM: VMX: avoid running vmx_handle_exit_irqoff in case of emulation - [x86] KVM: nVMX: Unconditionally clear nested.pi_pending on nested VM-Enter - fuse: truncate pagecache on atomic_o_trunc - fuse: flush extending writes - fbmem: don't allow too huge resolutions - backlight: pwm_bl: Improve bootloader/kernel device handover - [armel] clk: kirkwood: Fix a clocking boot regression https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.66 - Revert "Bluetooth: Move shutdown callback before flushing tx and rx queue" - Revert "block: nbd: add sanity check for first_minor" - Revert "posix-cpu-timers: Force next expiration recalc after itimer reset" - Revert "time: Handle negative seconds correctly in timespec64_to_ns()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.67 - io_uring: limit fixed table size by RLIMIT_NOFILE - io_uring: place fixed tables under memcg limits - io_uring: add ->splice_fd_in checks - io_uring: fail links of cancelled timeouts - io-wq: fix wakeup race when adding new work - btrfs: wake up async_delalloc_pages waiters after submit - btrfs: reset replace target device to allocation state on close - blk-zoned: allow zone management send operations without CAP_SYS_ADMIN - blk-zoned: allow BLKREPORTZONE without CAP_SYS_ADMIN - PCI/MSI: Skip masking MSI-X on Xen PV - [powerpc*] perf/hv-gpci: Fix counter value parsing - xen: fix setting of max_pfn in shared_info - 9p/xen: Fix end of loop tests for list_for_each_entry - ceph: fix dereference of null pointer cf - [armhf] soc: aspeed: lpc-ctrl: Fix boundary check for mmap - [armhf] soc: aspeed: p2a-ctrl: Fix boundary check for mmap - [arm64] mm: Fix TLBI vs ASID rollover - [arm64] head: avoid over-mapping in map_memory - iio: ltc2983: fix device probe - [arm64] wcn36xx: Ensure finish scan is not requested before start scan - block: bfq: fix bfq_set_next_ioprio_data() - [x86] power: supply: max17042: handle fails of reading status register - dm crypt: Avoid percpu_counter spinlock contention in crypt_page_alloc() - [x86] crypto: ccp - shutdown SEV firmware on kexec - [x86] VMCI: fix NULL pointer dereference when unmapping queue pair - media: uvc: don't do DMA on stack - media: rc-loopback: return number of emitters rather than error - [s390x] qdio: fix roll-back after timeout on ESTABLISH ccw - [s390x] qdio: cancel the ESTABLISH ccw after timeout - [armhf] Revert "dmaengine: imx-sdma: refine to load context only once" - [armhf] dmaengine: imx-sdma: remove duplicated sdma_load_context - libata: add ATA_HORKAGE_NO_NCQ_TRIM for Samsung 860 and 870 SSDs - f2fs: fix to do sanity check for sb/cp fields correctly - PCI/portdrv: Enable Bandwidth Notification only if port supports it - PCI: Restrict ASMedia ASM1062 SATA Max Payload Size Supported - PCI: Return ~0 data on pciconfig_read() CAP_SYS_ADMIN failure - [arm64] PCI: xilinx-nwl: Enable the clock through CCF - [arm64] PCI: aardvark: Configure PCIe resources from 'ranges' DT property - PCI: Export pci_pio_to_address() for module use - [arm64] PCI: aardvark: Fix checking for PIO status - [arm64] PCI: aardvark: Fix masking and unmasking legacy INTx interrupts - HID: input: do not report stylus battery state as "full" - f2fs: quota: fix potential deadlock - [arm64] pinctrl: armada-37xx: Correct PWM pins definitions - scsi: bsg: Remove support for SCSI_IOCTL_SEND_COMMAND - [arm64,armhf] clk: rockchip: drop GRF dependency for rk3328/rk3036 pll types - [amd64] IB/hfi1: Adjust pkey entry in index 0 - RDMA/iwcm: Release resources if iw_cm module initialization fails - docs: Fix infiniband uverbs minor number - scsi: BusLogic: Use %X for u32 sized integer rather than %lX - [armhf] pinctrl: samsung: Fix pinctrl bank pin count - scsi: ufs: Fix memory corruption by ufshcd_read_desc_param() - [powerpc*] cpuidle: pseries: Fixup CEDE0 latency only for POWER10 onwards - [powerpc*] stacktrace: Include linux/delay.h - RDMA/mlx5: Delete not-available udata check - [powerpc*] cpuidle: pseries: Mark pseries_idle_proble() as __init - f2fs: reduce the scope of setting fsck tag when de->name_len is zero - NFSv4/pNFS: Fix a layoutget livelock loop - NFSv4/pNFS: Always allow update of a zero valued layout barrier - NFSv4/pnfs: The layout barrier indicate a minimal value for the seqid - SUNRPC: Fix potential memory corruption - SUNRPC/xprtrdma: Fix reconnection locking - SUNRPC query transport's source port - sunrpc: Fix return value of get_srcport() - [arm64,armhf] pinctrl: single: Fix error return code in pcs_parse_bits_in_pinctrl_entry() - [powerpc*] numa: Consider the max NUMA node for migratable LPAR - scsi: smartpqi: Fix an error code in pqi_get_raid_map() - scsi: qedi: Fix error codes in qedi_alloc_global_queues() - scsi: qedf: Fix error codes in qedf_alloc_global_queues() - iommu/vt-d: Update the virtual command related registers - HID: i2c-hid: Fix Elan touchpad regression - [arm64,armhf] clk: imx8m: fix clock tree update of TF-A managed clocks - [powerpc*] KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines - [powerpc*] KVM: PPC: Book3S HV Nested: Reflect guest PMU in-use to L0 when guest SPRs are live - [x86] platform/x86: dell-smbios-wmi: Add missing kfree in error-exit from run_smbios_call - [powerpc*] smp: Update cpu_core_map on all PowerPc systems - [arm64] RDMA/hns: Fix QP's resp incomplete assignment - fscache: Fix cookie key hashing - [powerpc*] KVM: PPC: Fix clearing never mapped TCEs in realmode - f2fs: fix to account missing .skipped_gc_rwsem - f2fs: fix unexpected ENOENT comes from f2fs_map_blocks() - f2fs: fix to unmap pages from userspace process in punch_hole() - f2fs: deallocate compressed pages when error happens - f2fs: should put a page beyond EOF when preparing a write - [mips64el,mipsel] Malta: fix alignment of the devicetree buffer - userfaultfd: prevent concurrent API initialization - [arm*] drm/vc4: hdmi: Set HD_CTL_WHOLSMP and HD_CTL_CHALIGN_SET - drm/amdgpu: Fix amdgpu_ras_eeprom_init() - media: dib8000: rewrite the init prbs logic - [x86] hyperv: fix for unwanted manipulation of sched_clock when TSC marked unstable - PCI: Use pci_update_current_state() in pci_enable_device_flags() - tipc: keep the skb in rcv queue until the whole data is read - net: phy: Fix data type in DP83822 dp8382x_disable_wol() - iio: dac: ad5624r: Fix incorrect handling of an optional regulator. - iavf: do not override the adapter state in the watchdog task - iavf: fix locking of critical sections - video: fbdev: kyro: fix a DoS bug by restricting user input - netlink: Deal with ESRCH error in nlmsg_notify() - drm: avoid blocking in drm_clients_info's rcu section - drm: serialize drm_file.master with a new spinlock - drm: protect drm_master pointers in drm_lease.c - rcu: Fix macro name CONFIG_TASKS_RCU_TRACE - igc: Check if num of q_vectors is smaller than max before array access - usb: gadget: u_ether: fix a potential null pointer dereference - [armhf] USB: EHCI: ehci-mv: improve error handling in mv_ehci_enable() - usb: gadget: composite: Allow bMaxPower=0 if self-powered - tty: serial: jsm: hold port lock when reporting modem line changes - [arm64] bus: fsl-mc: fix mmio base address for child DPRCs - nfp: fix return statement in nfp_net_parse_meta() - ethtool: improve compat ioctl handling - drm/amdgpu: Fix a printing message - [arm64] dts: allwinner: h6: tanix-tx6: Fix regulator node names - video: fbdev: kyro: Error out if 'pixclock' equals zero - ipv4: ip_output.c: Fix out-of-bounds warning in ip_copy_addrs() - flow_dissector: Fix out-of-bounds warnings - [s390x] jump_label: print real address in a case of a jump label bug - [s390x] make PCI mio support a machine flag - serial: 8250: Define RX trigger levels for OxSemi 950 devices - serial: 8250_pci: make setup_port() parameters explicitly unsigned - Bluetooth: skip invalid hci_sync_conn_complete_evt - workqueue: Fix possible memory leaks in wq_numa_init() - bonding: 3ad: fix the concurrency between __bond_release_one() and bond_3ad_state_machine_handler() - [x86] ASoC: Intel: bytcr_rt5640: Move "Platform Clock" routes to the maps for the matching in-/output - [x86] ASoC: Intel: update sof_pcm512x quirks - media: v4l2-dv-timings.c: fix wrong condition in two for-loops - gfs2: Fix glock recursion in freeze_go_xmote_bh - [armhf] dts: imx53-ppd: Fix ACHC entry - [arm64] nvmem: qfprom: Fix up qfprom_disable_fuse_blowing() ordering - [arm64] net: ethernet: stmmac: Do not use unreachable() in ipq806x_gmac_probe() - [arm64] drm/msm: mdp4: drop vblank get/put from prepare/complete_commit - [arm64] drm/msm/dsi: Fix DSI and DSI PHY regulator config from SDM660 - [x86] thunderbolt: Fix port linking by checking all adapters - [x86] drm/vmwgfx: fix potential UAF in vmwgfx_surface.c - Bluetooth: schedule SCO timeouts with delayed_work - Bluetooth: avoid circular locks in sco_sock_connect - [arm64] drm/msm/dp: return correct edid checksum after corrupted edid checksum read - net/mlx5: Fix variable type to match 64bit - gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port() - mac80211: Fix monitor MTU limit so that A-MSDUs get through - [arm64] dts: ls1046a: fix eeprom entries - nvme-tcp: don't check blk_mq_tag_to_rq when receiving pdu data - nvme: code command_id with a genctr for use-after-free validation - Bluetooth: Fix handling of LE Enhanced Connection Complete - opp: Don't print an error if required-opps is missing - iomap: pass writeback errors to the mapping - tcp: enable data-less, empty-cookie SYN with TFO_SERVER_COOKIE_NOT_REQD - rpc: fix gss_svc_init cleanup on failure - [armhf] hwmon: (pmbus/ibm-cffps) Fix write bits for LED control - [x86] staging: rts5208: Fix get_ms_information() heap buffer size - net: Fix offloading indirect devices dependency on qdisc order creation - gfs2: Don't call dlm after protocol is unmounted - [arm64,armhf] usb: chipidea: host: fix port index underflow and UBSAN complains - lockd: lockd server-side shouldn't set fl_ops - [armhf] drm/exynos: Always initialize mapping in exynos_drm_register_dma() - rtl8xxxu: Fix the handling of TX A-MPDU aggregation - rtw88: use read_poll_timeout instead of fixed sleep - rtw88: wow: build wow function only if CONFIG_PM is on - rtw88: wow: fix size access error of probe request - btrfs: tree-log: check btrfs_lookup_data_extent return value - soundwire: intel: fix potential race condition during power down - [x86] ASoC: Intel: Skylake: Fix module configuration for KPB and MIXER - [x86] ASoC: Intel: Skylake: Fix passing loadable flag for module - of: Don't allow __of_attached_node_sysfs() without CONFIG_SYSFS - [arm64] mmc: sdhci-of-arasan: Modified SD default speed to 19MHz for ZynqMP - [arm64] mmc: sdhci-of-arasan: Check return value of non-void funtions - mmc: rtsx_pci: Fix long reads when clock is prescaled - mmc: core: Return correct emmc response in case of ioctl error - cifs: fix wrong release in sess_alloc_buffer() failed path - Revert "USB: xhci: fix U1/U2 handling for hardware with XHCI_INTEL_HOST quirk set" - [armhf] usb: musb: musb_dsps: request_irq() after initializing musb - usbip: give back URBs for unsent unlink requests during cleanup - usbip:vhci_hcd USB port can get stuck in the disabled state - [arm64,armhf] ASoC: rockchip: i2s: Fix regmap_ops hang - [arm64,armhf] ASoC: rockchip: i2s: Fixup config for DAIFMT_DSP_A/B - nfsd: fix crash on LOCKT on reexported NFSv3 - iwlwifi: pcie: free RBs during configure - iwlwifi: mvm: fix a memory leak in iwl_mvm_mac_ctxt_beacon_changed - iwlwifi: mvm: avoid static queue number aliasing - iwlwifi: mvm: fix access to BSS elements - iwlwifi: fw: correctly limit to monitor dump - iwlwifi: mvm: Fix scan channel flags settings - net/mlx5: DR, fix a potential use-after-free bug - net/mlx5: DR, Enable QP retransmission - parport: remove non-zero check on count - [arm64] wcn36xx: Fix missing frame timestamp for beacon/probe-resp - ath9k: fix OOB read ar9300_eeprom_restore_internal - ath9k: fix sleeping in atomic context - net: fix NULL pointer reference in cipso_v4_doi_free - fix array-index-out-of-bounds in taprio_change - [arm64] net: hns3: clean up a type mismatch warning - fs/io_uring Don't use the return value from import_iovec(). - io_uring: remove duplicated io_size from rw - ovl: fix BUG_ON() in may_delete() when called from ovl_cleanup() - scsi: BusLogic: Fix missing pr_cont() use - scsi: qla2xxx: Changes to support kdump kernel - scsi: qla2xxx: Sync queue idx with queue_pair_map idx - [powerpc*] cpufreq: powernv: Fix init_chip_info initialization in numa=off - [s390x] pv: fix the forcing of the swiotlb - hugetlb: fix hugetlb cgroup refcounting during vma split - mm/hmm: bypass devmap pte when all pfn requested flags are fulfilled - mm/hugetlb: initialize hugetlb_usage in mm_init - mm,vmscan: fix divide by zero in get_scan_count - memcg: enable accounting for pids in nested pid namespaces - libnvdimm/pmem: Fix crash triggered when I/O in-flight during unbind - [arm64,armhf] platform/chrome: cros_ec_proto: Send command again when timeout occurs - [x86] drm/mgag200: Select clock in PLL update functions - [arm64] drm/msi/mdp4: populate priv->kms in mdp4_kms_init - drm/dp_mst: Fix return code on sideband message failure - [arm64,armhf] drm/panfrost: Make sure MMU context lifetime is not bound to panfrost_priv - drm/amdgpu: Fix BUG_ON assert - [arm64,armhf] drm/panfrost: Simplify lock_region calculation - [arm64,armhf] drm/panfrost: Use u64 for size in lock_region - [arm64,armhf] drm/panfrost: Clamp lock region to Bifrost minimum - fanotify: limit number of event merge attempts https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.68 - btrfs: fix upper limit for max_inline for page size 64K - [amd64] xen: reset legacy rtc flag for PV domU - [arm64] sve: Use correct size when reinitialising SVE state - PCI: Add AMD GPU multi-function power dependencies - drm/amd/amdgpu: Increase HWIP_MAX_INSTANCE to 10 - [armhf] drm/etnaviv: return context from etnaviv_iommu_context_get - [armhf] drm/etnaviv: put submit prev MMU context when it exists - [armhf] drm/etnaviv: stop abusing mmu_context as FE running marker - [armhf] drm/etnaviv: keep MMU context across runtime suspend/resume - [armhf] drm/etnaviv: exec and MMU state is lost when resetting the GPU - [armhf] drm/etnaviv: fix MMU context leak on GPU reset - [armhf] drm/etnaviv: reference MMU context when setting up hardware state - [armhf] drm/etnaviv: add missing MMU context put when reaping MMU mapping - [s390x] sclp: fix Secure-IPL facility detection - [x86] pat: Pass valid address to sanitize_phys() - [x86] mm: Fix kern_addr_valid() to cope with existing but not present entries - tipc: fix an use-after-free issue in tipc_recvmsg - ethtool: Fix rxnfc copy to user buffer overflow - net/{mlx5|nfp|bnxt}: Remove unnecessary RTNL lock assert - net/l2tp: Fix reference count leak in l2tp_udp_recv_core - r6040: Restore MDIO clock frequency after MAC reset - tipc: increase timeout in tipc_sk_enqueue() - [arm64] drm/rockchip: cdn-dp-core: Make cdn_dp_core_resume __maybe_unused - net/mlx5: FWTrace, cancel work on alloc pd error flow - net/mlx5: Fix potential sleeping in atomic context - nvme-tcp: fix io_work priority inversion - events: Reuse value read using READ_ONCE instead of re-reading it - vhost_net: fix OoB on sendmsg() failure. - net/af_unix: fix a data-race in unix_dgram_poll - [arm64,armhf] net: dsa: destroy the phylink instance on any error in dsa_slave_phy_setup - [x86] uaccess: Fix 32-bit __get_user_asm_u64() when CC_HAS_ASM_GOTO_OUTPUT=y - tcp: fix tp->undo_retrans accounting in tcp_sacktag_one() - qed: Handle management FW error - udp_tunnel: Fix udp_tunnel_nic work-queue type - dt-bindings: arm: Fix Toradex compatible typo - [powerpc*] KVM: PPC: Book3S HV: Tolerate treclaim. in fake-suspend mode changing registers - bnxt_en: make bnxt_free_skbs() safe to call after bnxt_free_mem() - [arm64] net: hns3: pad the short tunnel frame before sending to hardware - [arm64] net: hns3: change affinity_mask to numa node range - [arm64] net: hns3: disable mac in flr process - [arm64] net: hns3: fix the timing issue of VF clearing interrupt sources - mm/memory_hotplug: use "unsigned long" for PFN in zone_for_pfn_range() - dt-bindings: mtd: gpmc: Fix the ECC bytes vs. OOB bytes equation - PCI: Add ACS quirks for NXP LX2xx0 and LX2xx2 platforms - fuse: fix use after free in fuse_read_interrupt() - [arm64,armhf] PCI: tegra: Fix OF node reference leak - [armhf] mfd: Don't use irq_create_mapping() to resolve a mapping - tracing/probes: Reject events which have the same name of existing one - PCI: Add ACS quirks for Cavium multi-function devices - watchdog: Start watchdog in watchdog_set_last_hw_keepalive only if appropriate - Set fc_nlinfo in nh_create_ipv4, nh_create_ipv6 - net: usb: cdc_mbim: avoid altsetting toggling for Telit LN920 - block, bfq: honor already-setup queue merges - [i386] PCI: ibmphp: Fix double unmap of io_mem - ethtool: Fix an error code in cxgb2.c - [s390x] bpf: Fix optimizing out zero-extensions - [s390x] bpf: Fix 64-bit subtraction of the -0x80000000 constant - [s390x] bpf: Fix branch shortening during codegen pass - mfd: axp20x: Update AXP288 volatile ranges - PCI: of: Don't fail devm_pci_alloc_host_bridge() on missing 'ranges' - netfilter: nft_ct: protect nft_ct_pcpu_template_refcnt with mutex - [arm64] KVM: Restrict IPA size to maximum 48 bits on 4K and 16K page size - PCI: Fix pci_dev_str_match_path() alloc while atomic bug - mtd: mtdconcat: Judge callback existence based on the master - mtd: mtdconcat: Check _read, _write callbacks existence before assignment - [arm64] KVM: Fix read-side race on updates to vcpu reset state - [arm64] KVM: Handle PSCI resets before userspace touches vCPU state - mtd: rawnand: cafe: Fix a resource leak in the error handling path of 'cafe_nand_probe()' - perf unwind: Do not overwrite FEATURE_CHECK_LDFLAGS-libunwind-{x86,aarch64} - [arm64] gpio: mpc8xxx: Fix a resources leak in the error handling path of 'mpc8xxx_probe()' - [arm64] gpio: mpc8xxx: Use 'devm_gpiochip_add_data()' to simplify the code and avoid a leak - net: hso: add failure handler for add_net_device - [armhf] net: dsa: b53: Fix calculating number of switch ports - [armhf] net: dsa: b53: Set correct number of ports in the DSA struct - netfilter: socket: icmp6: fix use-after-scope - fq_codel: reject silly quantum parameters - qlcnic: Remove redundant unlock in qlcnic_pinit_from_rom - ip_gre: validate csum_start only on pull - [armhf] net: dsa: b53: Fix IMP port setup on BCM5301x - bnxt_en: fix stored FW_PSID version masks - bnxt_en: Fix asic.rev in devlink dev info command - bnxt_en: log firmware debug notifications - bnxt_en: Consolidate firmware reset event logging. - bnxt_en: Convert to use netif_level() helpers. - bnxt_en: Improve logging of error recovery settings information. - bnxt_en: Fix possible unintended driver initiated error recovery - mfd: lpc_sch: Partially revert "Add support for Intel Quark X1000" - mfd: lpc_sch: Rename GPIOBASE to prevent build error - [x86] mce: Avoid infinite loop for copy from user recovery - bnxt_en: Fix error recovery regression - [armhf] net: dsa: bcm_sf2: Fix array overrun in bcm_sf2_num_active_ports() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.69 - PCI: pci-bridge-emul: Add PCIe Root Capabilities Register - [arm64] PCI: aardvark: Fix reporting CRS value - console: consume APC, DM, DCS - [s390x] pci_mmio: fully validate the VMA before calling follow_pte() - [armel,armhf] Qualify enabling of swiotlb_init() - [armel,armhf] 9077/1: PLT: Move struct plt_entries definition to header - [armel,armhf] 9078/1: Add warn suppress parameter to arm_gen_branch_link() - [armel,armhf] 9079/1: ftrace: Add MODULE_PLTS support - [armel,armhf] 9098/1: ftrace: MODULE_PLT: Fix build problem without DYNAMIC_FTRACE - Revert "net/mlx5: Register to devlink ingress VLAN filter trap" - sctp: validate chunk size in __rcv_asconf_lookup (CVE-2021-3655) - sctp: add param size validation for SCTP_PARAM_SET_PRIMARY (CVE-2021-3655) - [x86] staging: rtl8192u: Fix bitwise vs logical operator in TranslateRxSignalStuff819xUsb() - coredump: fix memleak in dump_vma_snapshot() - dmaengine: acpi: Avoid comparison GSI with Linux vIRQ - [armhf] thermal/drivers/exynos: Fix an error code in exynos_tmu_probe() - 9p/trans_virtio: Remove sysfs file on probe failure - prctl: allow to setup brk for et_dyn executables - nilfs2: use refcount_dec_and_lock() to fix potential UAF - profiling: fix shift-out-of-bounds bugs - PM: sleep: core: Avoid setting power.must_resume to false - platform/chrome: sensorhub: Add trace events for sample - platform/chrome: cros_ec_trace: Fix format warnings - ceph: allow ceph_put_mds_session to take NULL or ERR_PTR - ceph: cancel delayed work instead of flushing on mdsc teardown - thermal/core: Fix thermal_cooling_device_register() prototype - drivers: base: cacheinfo: Get rid of DEFINE_SMP_CALL_CACHE_FUNCTION() - dma-buf: DMABUF_MOVE_NOTIFY should depend on DMA_SHARED_BUFFER - [amd64] iommu/amd: Relocate GAMSup check to early_enable_iommus - ceph: request Fw caps before updating the mtime in ceph_write_iter - ceph: remove the capsnaps when removing caps - ceph: lockdep annotations for try_nonblocking_invalidate - btrfs: update the bdev time directly when closing - btrfs: fix lockdep warning while mounting sprout fs - nilfs2: fix memory leak in nilfs_sysfs_create_device_group - nilfs2: fix NULL pointer in nilfs_##name##_attr_release - nilfs2: fix memory leak in nilfs_sysfs_create_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_delete_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_create_snapshot_group - nilfs2: fix memory leak in nilfs_sysfs_delete_snapshot_group - [arm64,armhf] pwm: rockchip: Don't modify HW state in .remove() callback - [armhf] pwm: stm32-lp: Don't modify HW state in .remove() callback - blk-throttle: fix UAF by deleteing timer in blk_throtl_exit() - blk-mq: allow 4x BLK_MAX_REQUEST_COUNT at blk_plug for multiple_queues - sched/idle: Make the idle timer expire in hard interrupt context - drm/nouveau/nvkm: Replace -ENOSYS with -ENODEV https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.70 - [arm64] PCI: aardvark: Increase polling delay to 1.5s while waiting for PIO response - ocfs2: drop acl cache for directories too - mm: fix uninitialized use in overcommit_policy_handler - [arm*] usb: dwc2: gadget: Fix ISOC flow for BDMA and Slave - [arm*] usb: dwc2: gadget: Fix ISOC transfer complete handling for DDMA - [armhf] usb: musb: tusb6010: uninitialized data in tusb_fifo_write_unaligned() - cifs: fix incorrect check for null pointer in header_assemble - [x86] xen/x86: fix PV trap handling on secondary processors - usb-storage: Add quirk for ScanLogic SL11R-IDE older than 2.6c - USB: serial: cp210x: add ID for GW Instek GDM-834x Digital Multimeter - USB: cdc-acm: fix minor-number release - [arm*] binder: make sure fd closes complete - [arm64,armhf] usb: dwc3: core: balance phy init and exit - usb: core: hcd: Add support for deferring roothub registration - USB: serial: mos7840: remove duplicated 0xac24 device ID - USB: serial: option: add Telit LN920 compositions - USB: serial: option: remove duplicate USB device ID - USB: serial: option: add device id for Foxconn T99W265 - erofs: fix up erofs_lookup tracepoint - btrfs: prevent __btrfs_dump_space_info() to underflow its free space - xhci: Set HCD flag to defer primary roothub registration - [arm64] serial: mvebu-uart: fix driver's tx_empty callback - scsi: sd_zbc: Ensure buffer size is aligned to SECTOR_SIZE - net: hso: fix muxed tty registration - afs: Fix incorrect triggering of sillyrename on 3rd-party invalidation - afs: Fix updating of i_blocks on file/dir extension - [arm64] enetc: Fix illegal access when reading affinity_hint - [arm64] enetc: Fix uninitialized struct dim_sample field usage - bnxt_en: Fix TX timeout when TX ring size is set to the smallest - [arm64] net: hns3: fix change RSS 'hfunc' ineffective issue - [arm64] net: hns3: check queue id range before using - net/smc: add missing error check in smc_clc_prfx_set() - net/smc: fix 'workqueue leaked lock' in smc_conn_abort_work - [arm64,armhf] net: dsa: don't allocate the slave_mii_bus using devres - [s390x] qeth: fix NULL deref in qeth_clear_working_pool_list() - qed: rdma - don't wait for resources under hw error recovery flow - net/mlx4_en: Don't allow aRFS for encapsulated packets - atlantic: Fix issue in the pm resume flow. - scsi: iscsi: Adjust iface sysfs attr detection - scsi: target: Fix the pgr/alua_support_store functions - [x86] tty: synclink_gt, drop unneeded forward declarations - [x86] tty: synclink_gt: rename a conflicting function name - nvme-tcp: fix incorrect h2cdata pdu offset accounting - treewide: Change list_sort to use const pointers - nvme: keep ctrl->namespaces ordered - thermal/core: Potential buffer overflow in thermal_build_list_of_policies() - cifs: fix a sign extension bug - scsi: qla2xxx: Restore initiator in dual mode - scsi: lpfc: Use correct scnprintf() limit - [arm64,armhf] irqchip/gic-v3-its: Fix potential VPE leak on error - md: fix a lock order reversal in md_alloc - [x86] asm: Add a missing __iomem annotation in enqcmds() - [x86] asm: Fix SETZ size enqcmds() build failure - io_uring: put provided buffer meta data under memcg accounting - blktrace: Fix uaf in blk_trace access after removing by sysfs - net: phylink: Update SFP selected interface on advertising changes - net: stmmac: allow CSR clock of 300MHz - blk-mq: avoid to iterate over stale request - ipv6: delay fib6_sernum increase in fib6_add - [x86] cpufreq: intel_pstate: Override parameters if HWP forced by BIOS - bpf: Add oversize check before call kvcalloc() - xen/balloon: use a kernel thread instead a workqueue - nvme-multipath: fix ANA state updates when a namespace is not present - nvme-rdma: destroy cm id before destroy qp to avoid use after free - amd/display: downgrade validation failure log level - block: check if a profile is actually registered in blk_integrity_unregister - block: flush the integrity workqueue in blk_integrity_unregister - blk-cgroup: fix UAF by grabbing blkcg lock before destroying blkg pd - qnx4: avoid stringop-overread errors - [arm64] Mark __stack_chk_guard as __ro_after_init - net: 6pack: Fix tx timeout and slot time - [x86] thermal/drivers/int340x: Do not set a wrong tcc offset on resume - USB: serial: cp210x: fix dropped characters with CP2102 - xen/balloon: fix balloon kthread freezing . [ Salvatore Bonaccorso ] * Refresh "MODSIGN: do not load mok when secure boot disabled" * Refresh "MODSIGN: load blacklist from MOKx" * [rt] Update to 5.10.47-rt46 - sched: Fix migration_cpu_stop() requeueing - sched: Simplify migration_cpu_stop() - sched: Collate affine_move_task() stoppers - sched: Optimize migration_cpu_stop() - sched: Fix affine_move_task() self-concurrency - sched: Simplify set_affinity_pending refcounts - sched: Don't defer CPU pick to migration_cpu_stop() * Bump ABI to 9 * Disalbe PSTORE_BLK (Marked broken upstream) * Refresh "fs: Add MODULE_SOFTDEP declarations for hard-coded crypto drivers" * [rt] Update to 5.10.52-rt47 * [rt] Refresh "sched: Fix balance_callback()" * [rt] Drop "timers: Move clearing of base::timer_running under base::lock" (applied upstream) * [rt] Refresh "net/Qdisc: use a seqlock instead seqcount" * [rt] Refresh "net: xfrm: Use sequence counter with associated" * [rt] Update to 5.10.59-rt51 * [rt] Update to 5.10.59-rt52 * [rt] Update to 5.10.65-rt53 * Refresh "Partially revert "net: socket: implement 64-bit timestamps"" * [armhf] dts: sun7i: A20-olinuxino-lime2: Fix ethernet phy-mode * [mipsel] bpf, mips: Validate conditional branch offsets (CVE-2021-38300) linux-signed-amd64 (5.10.46+5) bullseye-security; urgency=high . * Sign kernel from linux 5.10.46-5 . * virtio_console: Assure used length from device is limited (CVE-2021-38160) * NFSv4: Initialise connection to the server in nfs4_alloc_client() (CVE-2021-38199) * tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. (CVE-2021-3679) * [poewrpc*] KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow (CVE-2021-37576) * ovl: prevent private clone if bind mount is not allowed (CVE-2021-3732) * [x86] KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653) * [x86] KVM: nSVM: always intercept VMLOAD/VMSAVE when nested (CVE-2021-3656) * bpf: Fix integer overflow involving bucket_size (CVE-2021-38166) * ath: Use safer key clearing with key cache entries (CVE-2020-3702) * ath9k: Clear key cache explicitly on disabling hardware (CVE-2020-3702) * ath: Export ath_hw_keysetmac() (CVE-2020-3702) * ath: Modify ath_key_delete() to not need full key entry (CVE-2020-3702) * ath9k: Postpone key cache entry deletion for TXQ frames reference it (CVE-2020-3702) * btrfs: fix NULL pointer dereference when deleting device by invalid id (CVE-2021-3739) * net: qrtr: fix another OOB Read in qrtr_endpoint_post (CVE-2021-3743) * vt_kdsetmode: extend console locking (CVE-2021-3753) * ext4: fix race writing to an inline_data file while its xattrs are changing (CVE-2021-40490) * dccp: don't duplicate ccid when cloning dccp sock (CVE-2020-16119) * io_uring: ensure symmetry in handling iter types in loop_rw_iter() (CVE-2021-41073) * netfilter: nftables: avoid potential overflows on 32bit arches * netfilter: nf_tables: initialize set before expression setup (Closes: #993978) * netfilter: nftables: clone set element expression template * bnx2x: Fix enabling network interfaces without VFs (Closes: #993948) linux-signed-arm64 (5.10.70+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.70-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.47 - module: limit enabling module.sig_enforce (CVE-2021-35039) - drm: add a locked version of drm_is_current_master - drm/nouveau: wait for moving fence after pinning v2 - drm/radeon: wait for moving fence after pinning - drm/amdgpu: wait for moving fence after pinning - [arm64] mmc: meson-gx: use memcpy_to/fromio for dram-access-quirk - [arm64] Ignore any DMA offsets in the max_zone_phys() calculation - [arm64] Force NO_BLOCK_MAPPINGS if crashkernel reservation is required - [arm64] spi: spi-nxp-fspi: move the register operation after the clock enable - [arm*] drm/vc4: hdmi: Move the HSM clock enable to runtime_pm - [arm*] drm/vc4: hdmi: Make sure the controller is powered in detect - [x86] entry: Fix noinstr fail in __do_fast_syscall_32() - [amd64] x86/xen: Fix noinstr fail in exc_xen_unknown_trap() - locking/lockdep: Improve noinstr vs errors - [x86] perf/x86/lbr: Remove cpuc->lbr_xsave allocation from atomic context - [x86] perf/x86/intel/lbr: Zero the xstate buffer on allocation - [armhf] dmaengine: stm32-mdma: fix PM reference leak in stm32_mdma_alloc_chan_resourc() - mac80211: remove warning in ieee80211_get_sband() - mac80211_hwsim: drop pending frames on stop - cfg80211: call cfg80211_leave_ocb when switching away from OCB - net: ipv4: Remove unneed BUG() function - mac80211: drop multicast fragments - net: ethtool: clear heap allocations for ethtool function - inet: annotate data race in inet_send_prepare() and inet_dgram_connect() - ping: Check return value of function 'ping_queue_rcv_skb' - net: annotate data race in sock_error() - inet: annotate date races around sk->sk_txhash - net/packet: annotate data race in packet_sendmsg() - net: phy: dp83867: perform soft reset and retain established link - net/packet: annotate accesses to po->bind - net/packet: annotate accesses to po->ifindex - r8152: Avoid memcpy() over-reading of ETH_SS_STATS - r8169: Avoid memcpy() over-reading of ETH_SS_STATS - net: qed: Fix memcpy() overflow of qed_dcbx_params() - mac80211: reset profile_periodicity/ema_ap - mac80211: handle various extensible elements correctly - [x86] PCI: Add AMD RS690 quirk to enable 64-bit DMA - [x86] perf/x86: Track pmu in per-CPU cpu_hw_events - [armhf] pinctrl: stm32: fix the reported number of GPIO lines per bank - i2c: i801: Ensure that SMBHSTSTS_INUSE_STS is cleared when leaving i801_access - gpiolib: cdev: zero padding during conversion to gpioline_info_changed - scsi: sd: Call sd_revalidate_disk() for ioctl(BLKRRPART) - nilfs2: fix memory leak in nilfs_sysfs_delete_device_group - [s390x] stack: fix possible register corruption with stack switch helper - i2c: robotfuzz-osif: fix control-request directions - ceph: must hold snap_rwsem when filling inode for async create - kthread_worker: split code for canceling the delayed work timer - kthread: prevent deadlock when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [x86] fpu: Preserve supervisor states in sanitize_restored_user_xstate() - [x86] fpu: Make init_fpstate correct with optimized XSAVE - mm: add VM_WARN_ON_ONCE_PAGE() macro - mm/rmap: remove unneeded semicolon in page_not_mapped() - mm/rmap: use page_not_mapped in try_to_unmap() - mm, thp: use head page in __migration_entry_wait() - mm/thp: fix __split_huge_pmd_locked() on shmem migration entry - mm/thp: make is_huge_zero_pmd() safe and quicker - mm/thp: try_to_unmap() use TTU_SYNC for safe splitting - mm/thp: fix vma_address() if virtual address below file offset - mm/thp: fix page_address_in_vma() on file THP tails - mm/thp: unmap_mapping_page() to fix THP truncate_cleanup_page() - mm: thp: replace DEBUG_VM BUG with VM_WARN when unmap fails for split - mm: page_vma_mapped_walk(): use page for pvmw->page - mm: page_vma_mapped_walk(): settle PageHuge on entry - mm: page_vma_mapped_walk(): use pmde for *pvmw->pmd - mm: page_vma_mapped_walk(): prettify PVMW_MIGRATION block - mm: page_vma_mapped_walk(): crossing page table boundary - mm: page_vma_mapped_walk(): add a level of indentation - mm: page_vma_mapped_walk(): use goto instead of while (1) - mm: page_vma_mapped_walk(): get vma_address_end() earlier - mm/thp: fix page_vma_mapped_walk() if THP mapped by ptes - mm/thp: another PVMW_SYNC fix in page_vma_mapped_walk() - mm, futex: fix shared futex pgoff on shmem huge page - [x86] KVM: SVM: Call SEV Guest Decommission if ASID binding fails - netfs: fix test for whether we can skip read when writing beyond EOF - Revert "drm: add a locked version of drm_is_current_master" - certs: Add EFI_CERT_X509_GUID support for dbx entries (CVE-2020-26541) - certs: Move load_system_certificate_list to a common function - certs: Add ability to preload revocation certs - integrity: Load mokx variables into the blacklist keyring https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.48 - scsi: sr: Return appropriate error code when disk is ejected - [arm64,armhf] gpio: mxc: Fix disabled interrupt wake-up support - drm/nouveau: fix dma_address check for CPU/GPU sync - RDMA/mlx5: Block FDB rules when not in switchdev mode - [x86] Revert "KVM: x86/mmu: Drop kvm_mmu_extended_role.cr4_la57 hack" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.49 - [powerpc*] KVM: PPC: Book3S HV: Save and restore FSCR in the P9 path - media: uvcvideo: Support devices that report an OT as an entity source - xen/events: reset active flag for lateeoi events later https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.50 - Bluetooth: hci_qca: fix potential GPF - Bluetooth: btqca: Don't modify firmware contents in-place - Bluetooth: Remove spurious error message - ALSA: usb-audio: fix rate on Ozone Z90 USB headset - ALSA: usb-audio: Fix OOB access at proc output - ALSA: firewire-motu: fix stream format for MOTU 8pre FireWire - ALSA: usb-audio: scarlett2: Fix wrong resume call - ALSA: intel8x0: Fix breakage at ac97 clock measurement - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 450 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 445 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 630 G8 - ALSA: hda/realtek: Add another ALC236 variant support - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook x360 830 G8 - ALSA: hda/realtek: Improve fixup for HP Spectre x360 15-df0xxx - ALSA: hda/realtek: Fix bass speaker DAC mapping for Asus UM431D - ALSA: hda/realtek: Apply LED fixup for HP Dragonfly G1, too - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook 830 G8 Notebook PC - media: dvb-usb: fix wrong definition - Input: usbtouchscreen - fix control-request directions - net: can: ems_usb: fix use-after-free in ems_usb_disconnect() - usb: gadget: eem: fix echo command packet response issue - USB: cdc-acm: blacklist Heimann USB Appset device - [arm64,armhf] usb: dwc3: Fix debugfs creation flow - usb: typec: Add the missed altmode_id_remove() in typec_register_altmode() - xhci: solve a double free problem while doing s4 - gfs2: Fix underflow in gfs2_page_mkwrite - gfs2: Fix error handling in init_statfs - copy_page_to_iter(): fix ITER_DISCARD case - iov_iter_fault_in_readable() should do nothing in xarray case - [powerpc*] crypto: nx - Fix memcpy() over-reading in nonce - [amd64] crypto: ccp - Annotate SEV Firmware file names - [armel,armhf] arm_pmu: Fix write counter incorrect in ARMv7 big-endian mode - btrfs: send: fix invalid path for unlink operations after parent orphanization - btrfs: compression: don't try to compress if we don't have enough pages - btrfs: clear defrag status of a root if starting transaction fails - ext4: cleanup in-core orphan list if ext4_truncate() failed to get a transaction handle - ext4: fix kernel infoleak via ext4_extent_header - ext4: fix overflow in ext4_iomap_alloc() - ext4: return error code when ext4_fill_flex_info() fails - ext4: correct the cache_nr in tracepoint ext4_es_shrink_exit - ext4: remove check for zero nr_to_scan in ext4_es_scan() - ext4: fix avefreec in find_group_orlov - ext4: use ext4_grp_locked_error in mb_find_extent - can: gw: synchronize rcu operations before removing gw job entry - can: isotp: isotp_release(): omit unintended hrtimer restart on socket release - can: j1939: j1939_sk_init(): set SOCK_RCU_FREE to call sk_destruct() after RCU is done - can: peak_pciefd: pucan_handle_status(): fix a potential starvation issue in TX path - mac80211: remove iwlwifi specific workaround that broke sta NDP tx - SUNRPC: Fix the batch tasks count wraparound. - SUNRPC: Should wake up the privileged task firstly. - bus: mhi: Wait for M2 state during system resume - mm/gup: fix try_grab_compound_head() race with split_huge_page() - [arm64] perf/smmuv3: Don't trample existing events with global filter - [x86] KVM: nVMX: Handle split-lock #AC exceptions that happen in L2 - [x86] KVM: x86/mmu: Treat NX as used (not reserved) for all !TDP shadow MMUs - [x86] KVM: x86/mmu: Use MMU's role to detect CR4.SMEP value in nested NPT walk - [s390x] cio: dont call css_wait_for_slow_path() inside a lock - [s390x] mm: Fix secure storage access exception handling - f2fs: Prevent swap file in LFS mode - [armhf] rtc: stm32: Fix unbalanced clk_disable_unprepare() on probe error path - iio: light: tcs3472: do not free unallocated IRQ - iio: ltr501: mark register holding upper 8 bits of ALS_DATA{0,1} and PS_DATA as volatile, too - iio: ltr501: ltr559: fix initialization of LTR501_ALS_CONTR - iio: ltr501: ltr501_read_ps(): add missing endianness conversion - iio: accel: bma180: Fix BMA25x bandwidth register values - [arm64] serial: mvebu-uart: fix calculation of clock divisor - [sh4] serial: sh-sci: Stop dmaengine transfer in sci_stop_tx() - serial_cs: Add Option International GSM-Ready 56K/ISDN modem - serial_cs: remove wrong GLOBETROTTER.cis entry - ath9k: Fix kernel NULL pointer dereference during ath_reset_internal() - ssb: sdio: Don't overwrite const buffer if block_write fails - rsi: Assign beacon rate settings to the correct rate_info descriptor field - rsi: fix AP mode with WPA failure due to encrypted EAPOL - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - seq_buf: Make trace_seq_putmem_hex() support data longer than 8 - [powerpc*] stacktrace: Fix spurious "stale" traces in raise_backtrace_ipi() - loop: Fix missing discard support when using LOOP_CONFIGURE - fuse: Fix crash in fuse_dentry_automount() error path - fuse: Fix crash if superblock of submount gets killed early - fuse: Fix infinite loop in sget_fc() - fuse: ignore PG_workingset after stealing - fuse: check connected before queueing on fpq->io - fuse: reject internal errno - [arm*] thermal/cpufreq_cooling: Update offline CPUs per-cpu thermal_pressure - spi: Make of_register_spi_device also set the fwnode - Add a reference to ucounts for each cred - media: marvel-ccic: fix some issues when getting pm_runtime - [i386] spi: spi-topcliff-pch: Fix potential double free in pch_spi_process_messages() - sched/core: Initialize the idle task with preemption disabled - [armhf] hwrng: exynos - Fix runtime PM imbalance on error - [powerpc*] crypto: nx - add missing MODULE_DEVICE_TABLE - media: cpia2: fix memory leak in cpia2_usb_probe - [arm64,armhf] media: hevc: Fix dependent slice segment flags - media: pvrusb2: fix warning in pvr2_i2c_core_done - [armhf] media: imx: imx7_mipi_csis: Fix logging of only error event counters - [x86] crypto: qat - check return code of qat_hal_rd_rel_reg() - [x86] crypto: qat - remove unused macro in FW loader - [arm64] crypto: qce: skcipher: Fix incorrect sg count for dma transfers - [arm64] perf: Convert snprintf to sysfs_emit - sched/fair: Fix ascii art by relpacing tabs - media: bt878: do not schedule tasklet when it is not setup - media: em28xx: Fix possible memory leak of em28xx struct - media: v4l2-core: Avoid the dangling pointer in v4l2_fh_release - media: bt8xx: Fix a missing check bug in bt878_probe - media: dvd_usb: memory leak in cinergyt2_fe_attach - memstick: rtsx_usb_ms: fix UAF - mmc: via-sdmmc: add a check against NULL pointer dereference - [arm64,armhf] spi: meson-spicc: fix a wrong goto jump for avoiding memory leak. - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_probe - crypto: shash - avoid comparing pointers to exported functions under CFI - media: dvb_net: avoid speculation from net slot - media: siano: fix device register error path - [armhf] media: imx-csi: Skip first few frames from a BT.656 source - [powerpc*] KVM: PPC: Book3S HV: Fix TLB management on SMT8 POWER9 and POWER10 processors - btrfs: fix error handling in __btrfs_update_delayed_inode - btrfs: abort transaction if we fail to update the delayed inode - btrfs: sysfs: fix format string for some discard stats - btrfs: don't clear page extent mapped if we're not invalidating the full page - btrfs: disable build on platforms having page size 256K - [s390x] KVM: get rid of register asm usage - [armhf] regulator: da9052: Ensure enough delay time for .set_voltage_time_sel - [x86] ACPI: video: use native backlight for GA401/GA502/GA503 - HID: do not use down_interruptible() when unbinding devices - ACPI: processor idle: Fix up C-state latency if not ordered - [x86] hv_utils: Fix passing zero to 'PTR_ERR' warning - lib: vsprintf: Fix handling of number field widths in vsscanf - ACPI: EC: Make more Asus laptops use ECDT _GPE - block_dump: remove block_dump feature in mark_inode_dirty() - blk-mq: grab rq->refcount before calling ->fn in blk_mq_tagset_busy_iter - blk-mq: clear stale request in tags->rq[] before freeing one request pool - fs: dlm: cancel work sync othercon - random32: Fix implicit truncation warning in prandom_seed_state() - open: don't silently ignore unknown O-flags in openat2() - [x86] drivers: hv: Fix missing error code in vmbus_connect() - fs: dlm: fix memory leak when fenced - ACPICA: Fix memory leak caused by _CID repair function - ACPI: bus: Call kobject_put() in acpi_init() error path - ACPI: resources: Add checks for ACPI IRQ override - block: fix race between adding/removing rq qos and normal IO - [x86] platform/x86: asus-nb-wmi: Revert "Drop duplicate DMI quirk structures" - [x86] platform/x86: asus-nb-wmi: Revert "add support for ASUS ROG Zephyrus G14 and G15" - [x86] platform/x86: toshiba_acpi: Fix missing error code in toshiba_acpi_setup_keyboard() - nvme-pci: fix var. type for increasing cq_head - nvmet-fc: do not check for invalid target port in nvmet_fc_handle_fcp_rqst() - [amd64] EDAC/Intel: Do not load EDAC driver when running as a guest - [amd64] PCI: hv: Add check for hyperv_initialized in init_hv_pci_drv() - cifs: improve fallocate emulation - ACPI: EC: trust DSDT GPE for certain HP laptop - clocksource: Retry clock read if long delays detected - clocksource: Check per-CPU clock synchronization when marked unstable - tpm_tis_spi: add missing SPI device ID entries - ACPI: tables: Add custom DSDT file as makefile prerequisite - HID: wacom: Correct base usage for capacitive ExpressKey status bits - cifs: fix missing spinlock around update to ses->status - [arm64] mailbox: qcom: Use PLATFORM_DEVID_AUTO to register platform device - block: fix discard request merge - kthread_worker: fix return value when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [ia64] mca_drv: fix incorrect array size calculation - writeback, cgroup: increment isw_nr_in_flight before grabbing an inode - spi: Allow to have all native CSs in use along with GPIOs - spi: Avoid undefined behaviour when counting unused native CSs - [arm64] media: venus: Rework error fail recover logic - [armhf] sata_highbank: fix deferred probing - sched/uclamp: Fix wrong implementation of cpu.uclamp.min - sched/uclamp: Fix locking around cpu_util_update_eff() - [mips*] pata_octeon_cf: avoid WARN_ON() in ata_host_activate() - [x86] elf: Use _BITUL() macro in UAPI headers - [x86] crypto: ccp - Fix a resource leak in an error handling path - media: rc: i2c: Fix an error message - media: au0828: fix a NULL vs IS_ERR() check - media: gspca/gl860: fix zero-length control requests - media: siano: Fix out-of-bounds warnings in smscore_load_firmware_family2() - [arm64] crypto: nitrox - fix unchecked variable in nitrox_register_interrupts - [amd64] crypto: x86/curve25519 - fix cpu feature checking logic in mod_exit - [arm64[ consistently use reserved_pg_dir - [arm64] mm: Fix ttbr0 values stored in struct thread_info for software-pan - media: subdev: remove VIDIOC_DQEVENT_TIME32 handling - hwmon: (lm70) Use device_get_match_data() - hwmon: (lm70) Revert "hwmon: (lm70) Add support for ACPI" - [x86] KVM: nVMX: Sync all PGDs on nested transition with shadow paging - [x86] KVM: nVMX: Ensure 64-bit shift when checking VMFUNC bitmap - [x86] KVM: nVMX: Don't clobber nested MMU's A/D status on EPTP switch - [x86] KVM: x86/mmu: Fix return value in tdp_mmu_map_handle_target_level() - [arm64] perf/arm-cmn: Fix invalid pointer when access dtc object sharing the same IRQ number - [arm64] KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set - [arm64] regulator: hi655x: Fix pass wrong pointer to config.driver_data - btrfs: clear log tree recovering status if starting transaction fails - sched/rt: Fix RT utilization tracking during policy change - sched/rt: Fix Deadline utilization tracking during policy change - sched/uclamp: Fix uclamp_tg_restrict() - [armhf] spi: spi-sun6i: Fix chipselect/clock bug - [powerpc*] crypto: nx - Fix RCU warning in nx842_OF_upd_status - psi: Fix race between psi_trigger_create/destroy - media: v4l2-async: Clean v4l2_async_notifier_add_fwnode_remote_subdev - [armhf] media: video-mux: Skip dangling endpoints - PM / devfreq: Add missing error code in devfreq_add_device() - ACPI: PM / fan: Put fan device IDs into separate header file - block: avoid double io accounting for flush request - nvme-pci: look for StorageD3Enable on companion ACPI device instead - ACPI: sysfs: Fix a buffer overrun problem with description_show() - mark pstore-blk as broken - [armhf] clocksource/drivers/timer-ti-dm: Save and restore timer TIOCP_CFG - ACPI: APEI: fix synchronous external aborts in user-mode - blk-wbt: introduce a new disable state to prevent false positive by rwb_enabled() - blk-wbt: make sure throttle is enabled properly - ACPI: Use DEVICE_ATTR_ macros - ACPI: bgrt: Fix CFI violation - cpufreq: Make cpufreq_online() call driver->offline() on errors - blk-mq: update hctx->dispatch_busy in case of real scheduler - ocfs2: fix snprintf() checking - dax: fix ENOMEM handling in grab_mapping_entry() - swap: fix do_swap_page() race with swapoff - mm/shmem: fix shmem_swapin() race with swapoff - mm: memcg/slab: properly set up gfp flags for objcg pointer array - mm: page_alloc: refactor setup_per_zone_lowmem_reserve() - mm/page_alloc: fix counting of managed_pages - xfrm: xfrm_state_mtu should return at least 1280 for ipv6 - drm/bridge: Fix the stop condition of drm_bridge_chain_pre_enable() - drm/ast: Fix missing conversions to managed API - [arm64,armhf] net: mvpp2: Put fwnode in error case during ->probe() - [i386] net: pch_gbe: Propagate error from devm_gpio_request_one() - [x86] drm/vmwgfx: Mark a surface gpu-dirty after the SVGA3dCmdDXGenMips command - [x86] drm/vmwgfx: Fix cpu updates of coherent multisample surfaces - net: qrtr: ns: Fix error return code in qrtr_ns_init() - [arm64] clk: meson: g12a: fix gp0 and hifi ranges - [armhf] net: ftgmac100: add missing error return code in ftgmac100_probe() - [arm64,armhf] drm: rockchip: set alpha_en to 0 if it is not used - [arm64] drm/rockchip: cdn-dp-core: add missing clk_disable_unprepare() on error in cdn_dp_grf_write() - [arm64,armhf] drm/rockchip: dsi: move all lane config except LCDC mux to bind() - [arm64] drm/rockchip: cdn-dp: fix sign extension on an int multiply for a u64 result - RDMA/srp: Fix a recently introduced memory leak - [powerpc*] ehea: fix error return code in ehea_restart_qps() - xfrm: remove the fragment check for ipv6 beet mode - net/sched: act_vlan: Fix modify to allow 0 - RDMA/core: Sanitize WQ state received from the userspace - RDMA/rxe: Fix failure during driver load - [arm*] drm/vc4: hdmi: Fix error path of hpd-gpios - drm: qxl: ensure surf.data is ininitialized - tools/bpftool: Fix error return code in do_batch() - ath10k: go to path err_unsupported when chip id is not supported - ath10k: add missing error return code in ath10k_pci_probe() - wireless: carl9170: fix LEDS build errors & warnings - ieee802154: hwsim: Fix possible memory leak in hwsim_subscribe_all_others - [arm64] clk: imx8mq: remove SYS PLL 1/2 clock gates - [arm64] wcn36xx: Move hal_buf allocation to devm_kmalloc in probe - ssb: Fix error return code in ssb_bus_scan() - brcmfmac: fix setting of station info chains bitmask - brcmfmac: correctly report average RSSI in station info - brcmfmac: Fix a double-free in brcmf_sdio_bus_reset - brcmsmac: mac80211_if: Fix a resource leak in an error handling path - ath11k: Fix an error handling path in ath11k_core_fetch_board_data_api_n() - ath10k: Fix an error code in ath10k_add_interface() - ath11k: send beacon template after vdev_start/restart during csa - netlabel: Fix memory leak in netlbl_mgmt_add_common - RDMA/mlx5: Don't add slave port to unaffiliated list - netfilter: nft_exthdr: check for IPv6 packet before further processing - netfilter: nft_osf: check for TCP packet before further processing - netfilter: nft_tproxy: restrict support to TCP and UDP transport protocols - RDMA/rxe: Fix qp reference counting for atomic ops - xsk: Fix missing validation for skb and unaligned mode - xsk: Fix broken Tx ring validation - bpf: Fix libelf endian handling in resolv_btfids - mt76: fix possible NULL pointer dereference in mt76_tx - vrf: do not push non-ND strict packets with a source LLA through packet taps again - net: sched: add barrier to ensure correct ordering for lockless qdisc - netfilter: nf_tables_offload: check FLOW_DISSECTOR_KEY_BASIC in VLAN transfer logic - pkt_sched: sch_qfq: fix qfq_change_class() error path - xfrm: Fix xfrm offload fallback fail case - iwlwifi: increase PNVM load timeout - rtw88: 8822c: fix lc calibration timing - vxlan: add missing rcu_read_lock() in neigh_reduce() - ip6_tunnel: fix GRE6 segmentation - net/ipv4: swap flow ports when validating source - ieee802154: hwsim: Fix memory leak in hwsim_add_one - ieee802154: hwsim: avoid possible crash in hwsim_del_edge_nl() - bpf: Fix null ptr deref with mixed tail calls and subprogs - [arm64] drm/msm: Fix error return code in msm_drm_init() - [arm64] drm/msm/dpu: Fix error return code in dpu_mdss_init() - mac80211: remove iwlwifi specific workaround NDPs of null_response - net: bcmgenet: Fix attaching to PYH failed on RPi 4B - ipv6: exthdrs: do not blindly use init_net - can: j1939: j1939_sk_setsockopt(): prevent allocation of j1939 filter for optlen == 0 - bpf: Do not change gso_size during bpf_skb_change_proto() - i40e: Fix error handling in i40e_vsi_open - i40e: Fix autoneg disabling for non-10GBaseT links - i40e: Fix missing rtnl locking when setting up pf switch - RDMA/cma: Protect RMW with qp_mutex - net: macsec: fix the length used to copy the key for offloading - net: phy: mscc: fix macsec key length - ipv6: fix out-of-bound access in ip6_parse_tlv() - e1000e: Check the PCIm state - RDMA/cma: Fix incorrect Packet Lifetime calculation - [amd64] gve: Fix swapped vars when fetching max queues - Revert "be2net: disable bh with spin_lock in be_process_mcc" - Bluetooth: mgmt: Fix slab-out-of-bounds in tlv_data_is_valid - Bluetooth: Fix not sending Set Extended Scan Response - Bluetooth: Fix Set Extended (Scan Response) Data - Bluetooth: Fix handling of HCI_LE_Advertising_Set_Terminated event - [arm64] clk: qcom: clk-alpha-pll: fix CAL_L write in alpha_pll_fabia_prepare - writeback: fix obtain a reference to a freeing memcg css - net: lwtunnel: handle MTU calculation in forwading - net: sched: fix warning in tcindex_alloc_perfect_hash - net: tipc: fix FB_MTU eat two pages - RDMA/mlx5: Don't access NULL-cleared mpi pointer - RDMA/core: Always release restrack object - [mips*] Fix PKMAP with 32-bit MIPS huge page support - [x86] ASoC: rt5682: Disable irq on shutdown - rcu: Invoke rcu_spawn_core_kthreads() from rcu_spawn_gp_kthread() - [arm64] serial: fsl_lpuart: don't modify arbitrary data on lpuart32 - [arm64] serial: fsl_lpuart: remove RTSCTS handling from get_mctrl() - tty: nozomi: Fix a resource leak in an error handling function - mwifiex: re-fix for unaligned accesses - iio: adis_buffer: do not return ints in irq handlers - iio: adis16475: do not return ints in irq handlers - [arm64] ASoC: hisilicon: fix missing clk_disable_unprepare() on error in hi6210_i2s_startup() - mtd: partitions: redboot: seek fis-index-block in the right node - [arm*] staging: mmal-vchiq: Fix incorrect static vchiq_instance. - char: pcmcia: error out if 'num_bytes_read' is greater than 4 in set_protocol() - leds: class: The -ENOTSUPP should never be seen by user space - scsi: FlashPoint: Rename si_flags field - scsi: iscsi: Flush block work before unblock - [armhf] fsi: core: Fix return of error values on failures - [armhf] fsi: scom: Reset the FSI2PIB engine for any error - [armhf] fsi: occ: Don't accept response from un-initialized OCC - [armhf] fsi/sbefifo: Clean up correct FIFO when receiving reset request from SBE - [armhf] fsi/sbefifo: Fix reset timeout - [amd64] iommu/amd: Fix extended features logging - [s390x] irq: select HAVE_IRQ_EXIT_ON_IRQ_STACK - [s390x] enable HAVE_IOREMAP_PROT - [s390x] appldata depends on PROC_SYSCTL - [amd64,arm64] iommu/dma: Fix IOVA reserve dma ranges - ASoC: max98373-sdw: use first_hw_init flag on resume - ASoC: rt1308-sdw: use first_hw_init flag on resume - ASoC: rt5682-sdw: use first_hw_init flag on resume - ASoC: rt700-sdw: use first_hw_init flag on resume - ASoC: rt711-sdw: use first_hw_init flag on resume - ASoC: rt715-sdw: use first_hw_init flag on resume - ASoC: rt5682: fix getting the wrong device id when the suspend_stress_test - ASoC: rt5682-sdw: set regcache_cache_only false before reading RT5682_DEVICE_ID - usb: gadget: f_fs: Fix setting of device and driver data cross-references - [arm*] usb: dwc2: Don't reset the core after setting turnaround time - [armhf] ASoC: fsl_spdif: Fix error handler with pm_runtime_enable - staging: rtl8712: fix error handling in r871xu_drv_init - staging: rtl8712: fix memory leak in rtl871x_load_fw_cb - serial: 8250: Actually allow UPF_MAGIC_MULTIPLIER baud rates - of: Fix truncation of memory sizes on 32-bit platforms - [armhf] mtd: rawnand: marvell: add missing clk_disable_unprepare() on error in marvell_nfc_resume() - scsi: mpt3sas: Fix error return value in _scsih_expander_add() - soundwire: stream: Fix test for DP prepare complete - [powerpc*] powernv: Fix machine check reporting of async store errors - configfs: fix memleak in configfs_release_bin_file - [x86] ASoC: Intel: sof_sdw: add SOF_RT715_DAI_ID_FIX for AlderLake - [armhf] ASoC: fsl_spdif: Fix unexpected interrupt after suspend - [powerpc*] Offline CPU in stop_this_cpu() - [powerpc*] papr_scm: Properly handle UUID types and API - [powerpc*] 64s: Fix copy-paste data exposure into newly created tasks - [powerpc*] papr_scm: Make 'perf_stats' invisible if perf-stats unavailable - ALSA: firewire-lib: Fix 'amdtp_domain_start()' when no AMDTP_OUT_STREAM stream is found - [arm64] serial: mvebu-uart: do not allow changing baudrate when uartclk is not available - [arm64] serial: mvebu-uart: correctly calculate minimal possible baudrate - vfio/pci: Handle concurrent vma faults - mm/pmem: avoid inserting hugepage PTE entry with fsdax if hugepage support is disabled - mm/huge_memory.c: remove dedicated macro HPAGE_CACHE_INDEX_MASK - mm/huge_memory.c: add missing read-only THP checking in transparent_hugepage_enabled() - mm/huge_memory.c: don't discard hugepage if other processes are mapping it - mm/hugetlb: use helper huge_page_order and pages_per_huge_page - mm/hugetlb: remove redundant check in preparing and destroying gigantic page - hugetlb: remove prep_compound_huge_page cleanup - include/linux/huge_mm.h: remove extern keyword - mm/z3fold: fix potential memory leak in z3fold_destroy_pool() - mm/z3fold: use release_z3fold_page_locked() to release locked z3fold page - lib/math/rational.c: fix divide by zero - exfat: handle wrong stream entry size in exfat_readdir() - scsi: fc: Correct RHBA attributes length - scsi: target: cxgbit: Unmap DMA buffer before calling target_execute_cmd() - fscrypt: don't ignore minor_hash when hash is 0 - fscrypt: fix derivation of SipHash keys on big endian CPUs - tpm: Replace WARN_ONCE() with dev_err_once() in tpm_tis_status() - erofs: fix error return code in erofs_read_superblock() - io_uring: fix blocking inline submission - mmc: block: Disable CMDQ on the ioctl path - mmc: vub3000: fix control-request direction - scsi: core: Retry I/O for Notify (Enable Spinup) Required error - [arm64] crypto: qce - fix error return code in qce_skcipher_async_req_handle() - [s390x] preempt: Fix preempt_count initialization - cred: add missing return error code when set_cred_ucounts() failed - [amd64,arm64] iommu/dma: Fix compile warning in 32-bit builds - [powerpc*] preempt: Don't touch the idle task's preempt_count during hotplug https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.51 - drm/ast: Fixed CVE for DP501 - drm/amd/amdgpu/sriov disable all ip hw status by default - [arm*] drm/vc4: fix argument ordering in vc4_crtc_get_margins() - [i386] net: pch_gbe: Use proper accessors to BE data in pch_ptp_match() - hugetlb: clear huge pte during flush function on mips platform - atm: iphase: fix possible use-after-free in ia_module_exit() - mISDN: fix possible use-after-free in HFC_cleanup() - atm: nicstar: Fix possible use-after-free in nicstar_cleanup() - net: Treat __napi_schedule_irqoff() as __napi_schedule() on PREEMPT_RT - reiserfs: add check for invalid 1st journal block - drm/virtio: Fix double free on probe failure - net: mdio: provide shim implementation of devm_of_mdiobus_register - net/sched: cls_api: increase max_reclassify_loop - drm/scheduler: Fix hang when sched_entity released - drm/sched: Avoid data corruptions - udf: Fix NULL pointer dereference in udf_symlink function - [arm*] drm/vc4: Fix clock source for VEC PixelValve on BCM2711 - [arm*] drm/vc4: hdmi: Fix PM reference leak in vc4_hdmi_encoder_pre_crtc_co() - e100: handle eeprom as little endian - igb: handle vlan types with checker enabled - igb: fix assignment on big endian machines - net/mlx5e: IPsec/rep_tc: Fix rep_tc_update_skb drops IPsec packet - net/mlx5: Fix lag port remapping logic - [arm64,armhf] drm: rockchip: add missing registers for RK3188 - [arm64,armhf] drm: rockchip: add missing registers for RK3066 - net: stmmac: the XPCS obscures a potential "PHY not found" error - [arm64,armhf] clk: tegra: Fix refcounting of gate clocks - [arm64,armhf] clk: tegra: Ensure that PLLU configuration is applied properly - virtio-net: Add validation for used length - ipv6: use prandom_u32() for ID generation - [mips*] cpu-probe: Fix FPU detection on Ingenic JZ4760(B) - drm/amdgpu: remove unsafe optimization to drop preamble ib - net: tcp better handling of reordering then loss cases - RDMA/cxgb4: Fix missing error code in create_qp() - dm space maps: don't reset space map allocation cursor when committing - dm writecache: don't split bios when overwriting contiguous cache content - dm: Fix dm_accept_partial_bio() relative to zone management commands - [armhf] pinctrl: mcp23s08: fix race condition in irq handler - ice: set the value of global config lock timeout longer - virtio_net: Remove BUG() to avoid machine dead - [arm64] net: bcmgenet: check return value after calling platform_get_resource() - [arm64,armhf] net: mvpp2: check return value after calling platform_get_resource() - net: phy: realtek: add delay to fix RXC generation issue - [amd64] drm/amdkfd: use allowed domain for vmbo validation - [amd64] fjes: check return value after calling platform_get_resource() - selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC - r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM - xfrm: Fix error reporting in xfrm_state_construct. - dm writecache: commit just one block, not a full page - [arm64,armhf] wlcore/wl12xx: Fix wl12xx get_mac error if device is in ELP - [arm64,armhf] wl1251: Fix possible buffer overflow in wl1251_cmd_scan - ice: fix incorrect payload indicator on PTYPE - ice: mark PTYPE 2 as reserved - mt76: mt7615: fix fixed-rate tx status reporting - net: fix mistake path for netdev_features_strings - net: sched: fix error return code in tcf_del_walker() - io_uring: fix false WARN_ONCE - drm/amdgpu: fix bad address translation for sienna_cichlid - rtl8xxxu: Fix device info for RTL8192EU devices - [mips*] add PMD table accounting into MIPS'pmd_alloc_one - [arm64,armhf] net: fec: add ndo_select_queue to fix TX bandwidth fluctuations - atm: nicstar: use 'dma_free_coherent' instead of 'kfree' - atm: nicstar: register the interrupt handler in the right place - vsock: notify server to shutdown when client has pending signal - RDMA/rxe: Don't overwrite errno from ib_umem_get() - iwlwifi: mvm: don't change band on bound PHY contexts - iwlwifi: mvm: fix error print when session protection ends - iwlwifi: pcie: free IML DMA memory allocation - iwlwifi: pcie: fix context info freeing - sfc: avoid double pci_remove of VFs - sfc: error code if SRIOV cannot be disabled - wireless: wext-spy: Fix out-of-bounds warning - cfg80211: fix default HE tx bitrate mask in 2G band - mac80211: consider per-CPU statistics if present - mac80211_hwsim: add concurrent channels scanning support over virtio - IB/isert: Align target max I/O size to initiator size - net: ip: avoid OOM kills with large UDP sends over loopback - RDMA/cma: Fix rdma_resolve_route() memory leak - Bluetooth: btusb: Fixed too many in-token issue for Mediatek Chip. - Bluetooth: Fix the HCI to MGMT status conversion table - Bluetooth: Fix alt settings for incoming SCO with transparent coding format - Bluetooth: Shutdown controller after workqueues are flushed or cancelled - Bluetooth: btusb: Add a new QCA_ROME device (0cf3:e500) - Bluetooth: L2CAP: Fix invalid access if ECRED Reconfigure fails - Bluetooth: L2CAP: Fix invalid access on ECRED Connection response - Bluetooth: btusb: Add support USB ALT 3 for WBS - Bluetooth: mgmt: Fix the command returns garbage parameter value - Bluetooth: btusb: fix bt fiwmare downloading failure issue for qca btsoc. - sched/fair: Ensure _sum and _avg values stay consistent - bpf: Fix false positive kmemleak report in bpf_ringbuf_area_alloc() - flow_offload: action should not be NULL when it is referenced - [mips*] loongsoon64: Reserve memory below starting pfn to prevent Oops - [mips*] set mips32r5 for virt extensions - [mips*] MT extensions are not available on MIPS32r1 - ath11k: unlock on error path in ath11k_mac_op_add_interface() - [arm64] dts: rockchip: Enable USB3 for rk3328 Rock64 - loop: fix I/O error on fsync() in detached loop devices - mm,hwpoison: return -EBUSY when migration fails - io_uring: simplify io_remove_personalities() - io_uring: Convert personality_idr to XArray - io_uring: convert io_buffer_idr to XArray - scsi: iscsi: Fix race condition between login and sync thread - scsi: iscsi: Fix iSCSI cls conn state - [powerpc*] mm: Fix lockup on kernel exec fault - [powerpc*] barrier: Avoid collision with clang's __lwsync macro - [powerpc*] powernv/vas: Release reference to tgid during window close - drm/amdgpu: enable sdma0 tmz for Raven/Renoir(V2) - drm/radeon: Add the missed drm_gem_object_put() in radeon_user_framebuffer_create() - drm/radeon: Call radeon_suspend_kms() in radeon_pci_shutdown() for Loongson64 - [arm*] drm/vc4: txp: Properly set the possible_crtcs mask - [arm*] drm/vc4: crtc: Skip the TXP - [arm*] drm/vc4: hdmi: Prevent clock unbalance - drm/dp: Handle zeroed port counts in drm_dp_read_downstream_info() - [arm64,armhf] drm/rockchip: dsi: remove extra component_del() call - pinctrl/amd: Add device HID for new AMD GPIO controller - drm/amd/display: Reject non-zero src_y and src_x for video planes - [arm64,armhf] drm/tegra: Don't set allow_fb_modifiers explicitly - [arm64] drm/msm/mdp4: Fix modifier support enabling - [arm64] drm/arm/malidp: Always list modifiers - drm/nouveau: Don't set allow_fb_modifiers explicitly - [x86] drm/i915/display: Do not zero past infoframes.vsc - mmc: sdhci-acpi: Disable write protect detection on Toshiba Encore 2 WT8-B - mmc: sdhci: Fix warning message when accessing RPMB in HS400 mode - mmc: core: clear flags before allowing to retune - mmc: core: Allow UHS-I voltage switch for SDSC cards if supported - [armhf] ata: ahci_sunxi: Disable DIPM - [arm64] tlb: fix the TTL value of tlb_get_level - cpu/hotplug: Cure the cpusets trainwreck - [arm64,armhf] clocksource/arm_arch_timer: Improve Allwinner A64 timer workaround - [arm64,armhf] ASoC: tegra: Set driver_name=tegra for all machine drivers - i40e: fix PTP on 5Gb links - qemu_fw_cfg: Make fw_cfg_rev_attr a proper kobj_attribute - ipmi/watchdog: Stop watchdog timer when the current action is 'none' - [x86] thermal/drivers/int340x/processor_thermal: Fix tcc setting - ubifs: Fix races between xattr_{set|get} and listxattr operations - power: supply: ab8500: Fix an old bug - mfd: syscon: Free the allocated name field of struct regmap_config - nvmem: core: add a missing of_node_put - seq_buf: Fix overflow in seq_buf_putmem_hex() - rq-qos: fix missed wake-ups in rq_qos_throttle try two - tracing: Simplify & fix saved_tgids logic - tracing: Resize tgid_map to pid_max, not PID_MAX_DEFAULT - dm zoned: check zone capacity - dm writecache: flush origin device when writing and cache is full - dm btree remove: assign new_root only when removal succeeds - PCI: Leave Apple Thunderbolt controllers on for s2idle or standby - [arm64] PCI: aardvark: Fix checking for PIO Non-posted Request - [arm64] PCI: aardvark: Implement workaround for the readback value of VEND_ID - media: subdev: disallow ioctl for saa6588/davinci - media: dtv5100: fix control-request directions - media: zr364xx: fix memory leak in zr364xx_start_readpipe - media: gspca/sq905: fix control-request direction - media: gspca/sunplus: fix zero-length control requests - media: uvcvideo: Fix pixel format change for Elgato Cam Link 4K - io_uring: fix clear IORING_SETUP_R_DISABLED in wrong function - dm writecache: write at least 4k when committing - [armhf] pinctrl: mcp23s08: Fix missing unlock on error in mcp23s08_irq() - drm/ast: Remove reference to struct drm_device.pdev - jfs: fix GPF in diFree - ext4: fix memory leak in ext4_fill_super - f2fs: fix to avoid racing on fsync_entry_slab by multi filesystem instances https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.52 - cifs: handle reconnect of tcon when there is no cached dfs referral - KVM: mmio: Fix use-after-free Read in kvm_vm_ioctl_unregister_coalesced_mmio - [x86] KVM: x86: Use guest MAXPHYADDR from CPUID.0x8000_0008 iff TDP is enabled - [x86] KVM: x86/mmu: Do not apply HPA (memory encryption) mask to GPAs - [x86] KVM: nSVM: Check the value written to MSR_VM_HSAVE_PA - [x86] KVM: X86: Disable hardware breakpoints unconditionally before kvm_x86->run() - scsi: core: Fix bad pointer dereference when ehandler kthread is invalid - [s390x] scsi: zfcp: Report port fc_security as unknown early during remote cable pull - tracing: Do not reference char * as a string in histograms - [x86] drm/i915/gtt: drop the page table optimisation - [x86] drm/i915/gt: Fix -EDEADLK handling regression - cgroup: verify that source is a string - fbmem: Do not delete the mode that is still in use - drm/dp_mst: Do not set proposed vcpi directly - drm/dp_mst: Avoid to mess up payload table by ports in stale topology - drm/dp_mst: Add missing drm parameters to recently added call to drm_dbg_kms() - Revert "drm/ast: Remove reference to struct drm_device.pdev" - net: bridge: multicast: fix PIM hello router port marking race - net: bridge: multicast: fix MRD advertisement router port marking race - [x86] ASoC: Intel: sof_sdw: add mutual exclusion between PCH DMIC and RT715 - [arm64] dmaengine: fsl-qdma: check dma_set_mask return value - scsi: arcmsr: Fix the wrong CDB payload report to IOP - srcu: Fix broken node geometry after early ssp init - rcu: Reject RCU_LOCKDEP_WARN() false positives - [arm64] tty: serial: fsl_lpuart: fix the potential risk of division or modulo by zero - [arm64] serial: fsl_lpuart: disable DMA for console and fix sysrq - [x86] misc/libmasm/module: Fix two use after free in ibmasm_init_one - [x86] ASoC: intel/boards: add missing MODULE_DEVICE_TABLE - partitions: msdos: fix one-byte get_unaligned() - iio: gyro: fxa21002c: Balance runtime pm + use pm_runtime_resume_and_get(). - iio: magn: bmc150: Balance runtime pm + use pm_runtime_resume_and_get() - Revert "ALSA: bebob/oxfw: fix Kconfig entry for Mackie d.2 Pro" - [arm64,armhf] usb: common: usb-conn-gpio: fix NULL pointer dereference of charger - w1: ds2438: fixing bug that would always get page0 - scsi: arcmsr: Fix doorbell status being updated late on ARC-1886 - [arm64] scsi: hisi_sas: Propagate errors in interrupt_init_v1_hw() - scsi: lpfc: Fix "Unexpected timeout" error in direct attach topology - scsi: lpfc: Fix crash when lpfc_sli4_hba_setup() fails to initialize the SGLs - scsi: core: Cap scsi_host cmd_per_lun at can_queue - tty: serial: 8250: serial_cs: Fix a memory leak in error handling path - scsi: mpt3sas: Fix deadlock while cancelling the running firmware event - scsi: core: Fixup calling convention for scsi_mode_sense() - scsi: scsi_dh_alua: Check for negative result value - fs/jfs: Fix missing error code in lmLogInit() - scsi: megaraid_sas: Fix resource leak in case of probe failure - scsi: megaraid_sas: Early detection of VD deletion through RaidMap update - scsi: megaraid_sas: Handle missing interrupts while re-enabling IRQs - scsi: iscsi: Add iscsi_cls_conn refcount helpers - scsi: iscsi: Fix conn use after free during resets - scsi: iscsi: Fix shost->max_id use - scsi: qedi: Fix null ref during abort handling - scsi: qedi: Fix race during abort timeouts - scsi: qedi: Fix TMF session block/unblock use - scsi: qedi: Fix cleanup session block/unblock use - [armhf] mfd: da9052/stmpe: Add and modify MODULE_DEVICE_TABLE - [armhf] fsi: Add missing MODULE_DEVICE_TABLE - [s390x] disable SSP when needed - [i386] ALSA: sb: Fix potential double-free of CSP mixer elements - [powerpc*] ps3: Add dma_mask to ps3_dma_region - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak when arm_smmu_rpm_get fails - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak in address translation - ASoC: soc-pcm: fix the return value in dpcm_apply_symmetry() - [arm64] gpio: zynq: Check return value of pm_runtime_get_sync - [arm64] gpio: zynq: Check return value of irq_get_irq_data - [x86] scsi: storvsc: Correctly handle multiple flags in srb_status - [powerpc*] ALSA: ppc: fix error return code in snd_pmac_probe() - [arm64,armhf] gpio: pca953x: Add support for the On Semi pca9655 - [powerpc*] mm/book3s64: Fix possible build error - ASoC: soc-core: Fix the error return code in snd_soc_of_parse_audio_routing() - [s390x] processor: always inline stap() and __load_psw_mask() - [s390x] ipl_parm: fix program check new psw handling - [s390x] mem_detect: fix diag260() program check new psw handling - [s390x] mem_detect: fix tprot() program check new psw handling - ALSA: bebob: add support for ToneWeal FW66 - ALSA: usb-audio: scarlett2: Fix 18i8 Gen 2 PCM Input count - ALSA: usb-audio: scarlett2: Fix data_mutex lock - ALSA: usb-audio: scarlett2: Fix scarlett2_*_ctl_put() return values - usb: gadget: f_hid: fix endianness issue with descriptors - [powerpc*] boot: Fixup device-tree on little endian - [x86] ASoC: Intel: kbl_da7219_max98357a: shrink platform_id below 20 characters - [arm64,armhf] ALSA: hda: Add IRQ check for platform_get_irq() - ALSA: usb-audio: scarlett2: Fix 6i6 Gen 2 line out descriptions - ALSA: firewire-motu: fix detection for S/PDIF source on optical interface in v2 protocol - staging: rtl8723bs: fix macro value for 2.4Ghz only device - [x86] intel_th: Wait until port is in reset before programming it - i2c: core: Disable client irq on reboot/shutdown - lib/decompress_unlz4.c: correctly handle zero-padding around initrds. - kcov: add __no_sanitize_coverage to fix noinstr for all architectures - [amd64] PCI: hv: Fix a race condition when removing the device - [x86] power: supply: max17042: Do not enforce (incorrect) interrupt trigger type - power: reset: gpio-poweroff: add missing MODULE_DEVICE_TABLE - PCI/P2PDMA: Avoid pci_get_slot(), which may sleep - NFSv4: Fix delegation return in cases where we have to retry - PCI: pciehp: Ignore Link Down/Up caused by DPC - [x86] watchdog: Fix possible use-after-free in wdt_startup() - [x86] watchdog: Fix possible use-after-free by calling del_timer_sync() - watchdog: iTCO_wdt: Account for rebooting on second timeout - [x86] fpu: Return proper error codes from user access functions - [armhf] remoteproc: core: Fix cdev remove and rproc del - [arm64,armhf] PCI: tegra: Add missing MODULE_DEVICE_TABLE - orangefs: fix orangefs df output. - ceph: remove bogus checks and WARN_ONs from ceph_set_page_dirty - [x86] drm/gma500: Add the missed drm_gem_object_put() in psb_user_framebuffer_create() - NFS: nfs_find_open_context() may only select open files - [arm64,armhf] pwm: tegra: Don't modify HW state in .remove callback - [arm64] ACPI: AMBA: Fix resource name in /proc/iomem - [x86] ACPI: video: Add quirk for the Dell Vostro 3350 - [arm64] PCI: rockchip: Register IRQ handlers after device and data are ready - virtio-blk: Fix memory leak among suspend/resume procedure - virtio_net: Fix error handling in virtnet_restore() - f2fs: atgc: fix to set default age threshold - NFSD: Fix TP_printk() format specifier in nfsd_clid_class - [x86] signal: Detect and prevent an alternate signal stack overflow - f2fs: add MODULE_SOFTDEP to ensure crc32 is included in the initramfs - f2fs: compress: fix to disallow temp extension - PCI/sysfs: Fix dsm_label_utf16s_to_utf8s() buffer overrun - NFSv4: Fix an Oops in pnfs_mark_request_commit() when doing O_DIRECT - ubifs: Fix off-by-one error - ubifs: journal: Fix error return code in ubifs_jnl_write_inode() - [armhf] watchdog: aspeed: fix hardware timeout calculation - SUNRPC: prevent port reuse on transports which don't request it. - nfs: fix acl memory leak of posix_acl_create() - ubifs: Set/Clear I_LINKABLE under i_lock for whiteout inode - f2fs: fix to avoid adding tab before doc section - [x86] fpu: Fix copy_xstate_to_kernel() gap handling - [x86] fpu: Limit xstate copy size in xstateregs_set() - virtio_net: move tx vq operation under tx queue lock - nvme-tcp: can't set sk_user_data without write_lock - nfsd: Reduce contention for the nfsd_file nf_rwsem - [i386] ALSA: isa: Fix error return code in snd_cmi8330_probe() - vdpa/mlx5: Clear vq ready indication upon device reset - NFSv4/pnfs: Fix the layout barrier update - NFSv4/pnfs: Fix layoutget behaviour after invalidation - NFSv4/pNFS: Don't call _nfs4_pnfs_v3_ds_connect multiple times - [armhf] exynos: add missing of_node_put for loop iteration - [armhf] dts: exynos: fix PWM LED max brightness on Odroid HC1 - [armhf] dts: exynos: fix PWM LED max brightness on Odroid XU4 - [armel,armhf] memory: pl353: Fix error return code in pl353_smc_probe() - rtc: fix snprintf() checking in is_rtc_hctosys() - dt-bindings: i2c: at91: fix example for scl-gpios - [arm64] dts: allwinner: a64-sopine-baseboard: change RGMII mode to TXID - [armhf] dts: am335x: align ti,pindir-d0-out-d1-in property with dt-shema - [arm64] firmware: turris-mox-rwtm: fix reply status decoding function - [arm64] firmware: turris-mox-rwtm: report failures better - [arm64] firmware: turris-mox-rwtm: fail probing when firmware does not support hwrng - [arm64] firmware: turris-mox-rwtm: show message about HWRNG registration - scsi: be2iscsi: Fix an error handling path in beiscsi_dev_probe() - jump_label: Fix jump_label_text_reserved() vs __init - static_call: Fix static_call_text_reserved() vs __init - [mips*] always link byteswap helpers into decompressor - [mips*] disable branch profiling in boot/decompress.o - [mips*] vdso: Invalid GIC access through VDSO - scsi: scsi_dh_alua: Fix signedness bug in alua_rtpg() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.53 - [armhf] dts: rockchip: fix pinctrl sleep nodename for rk3036-kylin and rk3288 - [armhf] imx: pm-imx5: Fix references to imx5_cpu_suspend_info - [arm64] dts: rockchip: fix regulator-gpio states array - [armhf] dts: imx6dl-riotboard: configure PHY clock and set proper EEE value - [armhf] dts: am57xx-cl-som-am57x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: am335x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: OMAP2+: Replace underscores in sub-mailbox node names - [arm64] dts: qcom: sc7180: Move rmtfs memory region - [armhf] memory: tegra: Fix compilation warnings on 64bit platforms - [armel,armhf] dts: bcm283x: Fix up GPIO LED node names - [armhf] dts: rockchip: fix supply properties in io-domains nodes - [armhf] OMAP2+: Block suspend for am3 and am4 if PM is not configured - [arm64,armhf] soc/tegra: fuse: Fix Tegra234-only builds - thermal/core: Correct function name thermal_zone_device_unregister() - [arm64] arch/arm64/boot/dts/marvell: fix NAND partitioning scheme - [arm64,armhf] rtc: max77686: Do not enforce (incorrect) interrupt trigger type - scsi: aic7xxx: Fix unintentional sign extension issue on left shift of u8 - scsi: libsas: Add LUN number check in .slave_alloc callback - scsi: libfc: Fix array index out of bound exception - scsi: qedf: Add check to synchronize abort and flush - sched/fair: Fix CFS bandwidth hrtimer expiry type - [x86] perf/x86/intel/uncore: Clean up error handling path of iio mapping - thermal/core/thermal_of: Stop zone device before unregistering it - [s390x] traps: do not test MONITOR CALL without CONFIG_BUG - [s390x] introduce proper type handling call_on_stack() macro - cifs: prevent NULL deref in cifs_compose_mount_options() - [arm64] firmware: turris-mox-rwtm: add marvell,armada-3700-rwtm-firmware compatible string - [arm64] dts: marvell: armada-37xx: move firmware node to generic dtsi file - Revert "swap: fix do_swap_page() race with swapoff" - f2fs: Show casefolding support only when supported - mm/thp: simplify copying of huge zero page pmd when fork - mm/userfaultfd: fix uffd-wp special cases for fork() - mm/page_alloc: fix memory map initialization for descending nodes - [arm64] net: bcmgenet: ensure EXT_ENERGY_DET_MASK is clear - [arm64,armhf] net: dsa: mv88e6xxx: enable .port_set_policy() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: use correct .stats_set_histogram() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable .rmu_disable() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable devlink ATU hash param for Topaz - net: ipv6: fix return value of ip6_skb_dst_mtu - netfilter: ctnetlink: suspicious RCU usage in ctnetlink_dump_helpinfo - net/sched: act_ct: fix err check for nf_conntrack_confirm - [x86] vmxnet3: fix cksum offload issues for tunnels with non-default udp ports - net/sched: act_ct: remove and free nf_table callbacks - net: bridge: sync fdb to new unicast-filtering ports - [arm64] net: bcmgenet: Ensure all TX/RX queues DMAs are disabled - net: ip_tunnel: fix mtu calculation for ETHER tunnel devices - [arm64] net: qcom/emac: fix UAF in emac_remove - net: ti: fix UAF in tlan_remove_one - net: send SYNACK packet with accepted fwmark - net: validate lwtstate->data before returning from skb_tunnel_info() - Revert "mm/shmem: fix shmem_swapin() race with swapoff" - [arm64,armhf] net: dsa: properly check for the bridge_leave methods in dsa_switch_bridge_leave() - dma-buf/sync_file: Don't leak fences on merge failure - [armhf] dts: aspeed: Fix AST2600 machines line names - [armhf] dts: tacoma: Add phase corrections for eMMC - tcp: annotate data races around tp->mtu_info - tcp: fix tcp_init_transfer() to not reset icsk_ca_initialized - ipv6: tcp: drop silly ICMPv6 packet too big messages - tcp: call sk_wmem_schedule before sk_mem_charge in zerocopy path - bpf: Track subprog poke descriptors correctly and fix use-after-free - udp: annotate data races around unix_sk(sk)->gso_size https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.54 - igc: Fix use-after-free error during reset - igb: Fix use-after-free error during reset - igc: change default return of igc_read_phy_reg() - ixgbe: Fix an error handling path in 'ixgbe_probe()' - igc: Fix an error handling path in 'igc_probe()' - igb: Fix an error handling path in 'igb_probe()' - e1000e: Fix an error handling path in 'e1000_probe()' - iavf: Fix an error handling path in 'iavf_probe()' - igb: Check if num of q_vectors is smaller than max before array access - igb: Fix position of assignment to *ring - [amd64] gve: Fix an error handling path in 'gve_probe()' - bonding: fix suspicious RCU usage in bond_ipsec_add_sa() - bonding: fix null dereference in bond_ipsec_add_sa() - ixgbevf: use xso.real_dev instead of xso.dev in callback functions of struct xfrmdev_ops - bonding: fix suspicious RCU usage in bond_ipsec_del_sa() - bonding: disallow setting nested bonding + ipsec offload - bonding: Add struct bond_ipesc to manage SA - bonding: fix suspicious RCU usage in bond_ipsec_offload_ok() - bonding: fix incorrect return value of bond_ipsec_offload_ok() - ipv6: fix 'disable_policy' for fwd packets - stmmac: platform: Fix signedness bug in stmmac_probe_config_dt() - cxgb4: fix IRQ free race during driver unload - nvme-pci: do not call nvme_dev_remove_admin from nvme_remove - [x86] KVM: x86/pmu: Clear anythread deprecated bit when 0xa leaf is unsupported on the SVM - [armhf] spi: imx: add a check for speed_hz before calculating the clock - [armhf] spi: stm32: fixes pm_runtime calls in probe/remove - bpf, test: fix NULL pointer dereference on invalid expected_attach_type - bpf: Fix tail_call_reachable rejection for interpreter when jit failed - xdp, net: Fix use-after-free in bpf_xdp_link_release - timers: Fix get_next_timer_interrupt() with no timers pending - liquidio: Fix unintentional sign extension issue on left shift of u16 - [s390x] bpf: Perform r1 range checking before accessing jit->seen_reg[r1] - bpf, sockmap: Fix potential memory leak on unlikely error case - bpf, sockmap, tcp: sk_prot needs inuse_idx set for proc stats - bpf, sockmap, udp: sk_prot needs inuse_idx set for proc stats - bpftool: Check malloc return value in mount_bpffs_for_pin - net: fix uninit-value in caif_seqpkt_sendmsg - usb: hso: fix error handling code of hso_create_net_device (CVE-2021-37159) - dma-mapping: handle vmalloc addresses in dma_common_{mmap,get_sgtable} - efi/tpm: Differentiate missing and invalid final event log table. - net: decnet: Fix sleeping inside in af_decnet - [powerpc*] KVM: PPC: Fix kvm_arch_vcpu_ioctl vcpu_load leak - net: sched: fix memory leak in tcindex_partial_destroy_work - sctp: trim optlen when it's a huge value in sctp_setsockopt - netrom: Decrease sock refcount when sock timers expire - scsi: iscsi: Fix iface sysfs attr detection - scsi: target: Fix protect handling in WRITE SAME(32) - bnxt_en: don't disable an already disabled PCI device - bnxt_en: Refresh RoCE capabilities in bnxt_ulp_probe() - bnxt_en: Add missing check for BNXT_STATE_ABORT_ERR in bnxt_fw_rset_task() - bnxt_en: Validate vlan protocol ID on RX packets - bnxt_en: Check abort error state in bnxt_half_open_nic() - net/tcp_fastopen: fix data races around tfo_active_disable_stamp - ALSA: hda: intel-dsp-cfg: add missing ElkhartLake PCI ID - [arm64] net: hns3: fix possible mismatches resp of mailbox - [arm64] net: hns3: fix rx VLAN offload state inconsistent issue - [arm*] spi: spi-bcm2835: Fix deadlock - net/sched: act_skbmod: Skip non-Ethernet packets - ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions - ceph: don't WARN if we're still opening a session to an MDS - nvme-pci: don't WARN_ON in nvme_reset_work if ctrl.state is not RESETTING - Revert "USB: quirks: ignore remote wake-up on Fibocom L850-GL LTE modem" - afs: Fix tracepoint string placement with built-in AFS - r8169: Avoid duplicate sysfs entry creation error - nvme: set the PRACT bit when using Write Zeroes with T10 PI - sctp: update active_key for asoc when old key is being replaced - tcp: disable TFO blackhole logic by default - net: sched: cls_api: Fix the the wrong parameter - [arm64,armhf] drm/panel: raspberrypi-touchscreen: Prevent double-free - cifs: only write 64kb at a time when fallocating a small region of a file - cifs: fix fallocate when trying to allocate a hole. - proc: Avoid mixing integer types in mem_rw() - mmc: core: Don't allocate IDA for OF aliases - [s390x] ftrace: fix ftrace_update_ftrace_func implementation - [s390x] boot: fix use of expolines in the DMA code - ALSA: usb-audio: Add missing proc text entry for BESPOKEN type - ALSA: usb-audio: Add registration quirk for JBL Quantum headsets - [i386] ALSA: sb: Fix potential ABBA deadlock in CSP driver - ALSA: hda/realtek: Fix pop noise and 2 Front Mic issues on a machine - ALSA: hdmi: Expose all pins on MSI MS-7C94 board - ALSA: pcm: Call substream ack() method upon compat mmap commit - ALSA: pcm: Fix mmap capability check - xhci: Fix lost USB 2 remote wake - [powerpc*] KVM: PPC: Book3S HV Nested: Sanitise H_ENTER_NESTED TM state - usb: hub: Disable USB 3 device initiated lpm if exit latency is too high - usb: hub: Fix link power management max exit latency (MEL) calculations - USB: usb-storage: Add LaCie Rugged USB3-FW to IGNORE_UAS - USB: serial: option: add support for u-blox LARA-R6 family - USB: serial: cp210x: fix comments for GE CS1000 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick - [arm*] usb: dwc2: gadget: Fix GOUTNAK flow for Slave mode. - [arm*] usb: dwc2: gadget: Fix sending zero length packet in DDMA mode. - firmware/efi: Tell memblock about EFI iomem reservations - tracepoints: Update static_call before tp_funcs when adding a tracepoint - tracing/histogram: Rename "cpu" to "common_cpu" - tracing: Synthetic event field_pos is an index not a boolean - btrfs: check for missing device in btrfs_trim_fs - media: ngene: Fix out-of-bounds bug in ngene_command_config_free_buf() - ixgbe: Fix packet corruption due to missing DMA sync - bus: mhi: core: Validate channel ID when processing command completions - posix-cpu-timers: Fix rearm racing against process tick - io_uring: explicitly count entries for poll reqs - io_uring: remove double poll entry on arm failure - userfaultfd: do not untag user pointers - memblock: make for_each_mem_range() traverse MEMBLOCK_HOTPLUG regions - hugetlbfs: fix mount mode command line processing - rbd: don't hold lock_rwsem while running_list is being drained - rbd: always kick acquire on "acquired" and "released" notifications - misc: eeprom: at24: Always append device id even if label property is set. - driver core: Prevent warning when removing a device link from unregistered consumer - drm: Return -ENOTTY for non-drm ioctls - drm/amdgpu: update golden setting for sienna_cichlid - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes RX stats for Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes PCS register dump via ethtool -d on Topaz - PCI: Mark AMD Navi14 GPU ATS as broken - skbuff: Release nfct refcount on napi stolen or re-used skbs - Documentation: Fix intiramfs script name - usb: ehci: Prevent missed ehci interrupts with edge-triggered MSI - [amd64] drm/i915/gvt: Clear d3_entered on elsp cmd submission. - sfc: ensure correct number of XDP queues - xhci: add xhci_get_virt_ep() helper https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.55 - io_uring: fix link timeout refs - [x86] KVM: determine if an exception has an error code only when injecting it. - af_unix: fix garbage collect vs MSG_PEEK - workqueue: fix UAF in pwq_unbound_release_workfn() - cgroup1: fix leaked context root causing sporadic NULL deref in LTP - net/802/mrp: fix memleak in mrp_request_join() - net/802/garp: fix memleak in garp_request_join() - net: annotate data race around sk_ll_usec - sctp: move 198 addresses from unusable to private scope - rcu-tasks: Don't delete holdouts within trc_inspect_reader() - rcu-tasks: Don't delete holdouts within trc_wait_for_one_reader() - ipv6: allocate enough headroom in ip6_finish_output2() - drm/ttm: add a check against null pointer dereference - hfs: add missing clean-up in hfs_fill_super - hfs: fix high memory mapping in hfs_bnode_read - hfs: add lock nesting notation to hfs_find_init - cifs: fix the out of range assignment to bit fields in parse_server_interfaces - iomap: remove the length variable in iomap_seek_data - iomap: remove the length variable in iomap_seek_hole - ipv6: ip6_finish_output2: set sk into newly allocated nskb https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.56 - io_uring: fix null-ptr-deref in io_sq_offload_start() - [x86] asm: Ensure asm/proto.h can be included stand-alone - pipe: make pipe writes always wake up readers - btrfs: fix rw device counting in __btrfs_free_extra_devids - btrfs: mark compressed range uptodate only if all bio succeed - Revert "ACPI: resources: Add checks for ACPI IRQ override" - [x86] kvm: fix vcpu-id indexed array sizes - KVM: add missing compat KVM_CLEAR_DIRTY_LOG - ocfs2: fix zero out valid data - ocfs2: issue zeroout to EOF blocks - can: j1939: j1939_xtp_rx_dat_one(): fix rxtimer value between consecutive TP.DT to 750ms - can: raw: raw_setsockopt(): fix raw_rcv panic for sock UAF - can: peak_usb: pcan_usb_handle_bus_evt(): fix reading rxerr/txerr values - can: mcba_usb_start(): add missing urb->transfer_dma initialization (Closes: #990850) - can: usb_8dev: fix memory leak - can: ems_usb: fix memory leak - can: esd_usb2: fix memory leak - HID: wacom: Re-enable touch by default for Cintiq 24HDT / 27QHDT - NIU: fix incorrect error return, missed in previous revert - drm/amdgpu: Avoid printing of stack contents on firmware load error - drm/amdgpu: Fix resource leak on probe error path - blk-iocost: fix operation ordering in iocg_wake_fn() - nfc: nfcsim: fix use after free during module unload - cfg80211: Fix possible memory leak in function cfg80211_bss_update - bpf: Fix OOB read when printing XDP link fdinfo - mac80211: fix enabling 4-address mode on a sta vif after assoc - netfilter: conntrack: adjust stop timestamp to real expiry value - netfilter: nft_nat: allow to specify layer 4 protocol NAT only - i40e: Fix logic of disabling queues - i40e: Fix firmware LLDP agent related warning - i40e: Fix queue-to-TC mapping on Tx - i40e: Fix log TC creation failure when max num of queues is exceeded - tipc: fix implicit-connect for SYN+ - tipc: fix sleeping in tipc accept routine - net: Set true network header for ECN decapsulation - net: qrtr: fix memory leaks - tipc: do not write skb_shinfo frags when doing decrytion - mlx4: Fix missing error code in mlx4_load_one() - [x86] KVM: x86: Check the right feature bit for MSR_KVM_ASYNC_PF_ACK access - net: llc: fix skb_over_panic - [arm64] drm/msm/dpu: Fix sm8250_mdp register length - [arm64] drm/msm/dp: Initialize the INTF_CONFIG register - skmsg: Make sk_psock_destroy() static - net/mlx5: Fix flow table chaining - net/mlx5e: Fix nullptr in mlx5e_hairpin_get_mdev() - tulip: windbond-840: Fix missing pci_disable_device() in probe and remove - sis900: Fix missing pci_disable_device() in probe and remove - SMB3: fix readpage for large swap cache - [powerpc*] pseries: Fix regression while building external modules - Revert "perf map: Fix dso->nsinfo refcounting" - i40e: Add additional info to PHY type error - can: j1939: j1939_session_deactivate(): clarify lifetime of session object https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.57 - [x86] drm/i915: Revert "drm/i915/gem: Asynchronous cmdparser" - [x86] Revert "drm/i915: Propagate errors on awaiting already signaled fences" - btrfs: fix race causing unnecessary inode logging during link and rename - btrfs: fix lost inode on log replay after mix of fsync, rename and inode eviction - [armhf] spi: stm32h7: fix full duplex irq handler handling - r8152: Fix potential PM refcount imbalance - qed: fix possible unpaired spin_{un}lock_bh in _qed_mcp_cmd_and_union() - ASoC: rt5682: Fix the issue of garbled recording after powerd_dbus_suspend - net: Fix zero-copy head len calculation. - efi/mokvar: Reserve the table only if it is in boot services data - nvme: fix nvme_setup_command metadata trace event - ACPI: fix NULL pointer dereference - Revert "Bluetooth: Shutdown controller after workqueues are flushed or cancelled" - Revert "watchdog: iTCO_wdt: Account for rebooting on second timeout" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.58 - Revert "ACPICA: Fix memory leak caused by _CID repair function" - ALSA: seq: Fix racy deletion of subscriber - [armhf] bus: ti-sysc: Fix gpt12 system timer issue with reserved status - net: xfrm: fix memory leak in xfrm_user_rcv_msg - [armhf] imx: add missing iounmap() - [armhf] imx: add missing clk_disable_unprepare() - [arm64] dts: ls1028: sl28: fix networking for variant 2 - [armhf] imx: fix missing 3rd argument in macro imx_mmdc_perf_init - [armhf] dts: imx: Swap M53Menlo pinctrl_power_button/pinctrl_power_out pins - [arm64] dts: armada-3720-turris-mox: fixed indices for the SDHC controllers - [arm64] dts: armada-3720-turris-mox: remove mrvl,i2c-fast-mode - ALSA: usb-audio: fix incorrect clock source setting - [arm64,armhf] clk: tegra: Implement disable_unused() of tegra_clk_sdmmc_mux_ops - [armhf] dmaengine: stm32-dma: Fix PM usage counter imbalance in stm32 dma ops - [armhf] dmaengine: stm32-dmamux: Fix PM usage counter unbalance in stm32 dmamux ops - [armhf] spi: imx: mx51-ecspi: Reinstate low-speed CONFIGREG delay - [armhf] spi: imx: mx51-ecspi: Fix low-speed CONFIGREG delay calculation - scsi: sr: Return correct event when media event code is 3 - media: videobuf2-core: dequeue if start_streaming fails - [armhf] dmaengine: imx-dma: configure the generic DMA type to make it work - net, gro: Set inner transport header offset in tcp/udp GRO hook - net: phy: micrel: Fix detection of ksz87xx switch - net: natsemi: Fix missing pci_disable_device() in probe and remove - RDMA/mlx5: Delay emptying a cache entry when a new MR is added to it recently - sctp: move the active_key update after sh_keys is added - nfp: update ethtool reporting of pauseframe control - net: ipv6: fix returned variable type in ip6_skb_dst_mtu - net: sched: fix lockdep_set_class() typo error for sch->seqlock - [mips*] check return value of pgtable_pmd_page_ctor - bnx2x: fix an error code in bnx2x_nic_load() - net: pegasus: fix uninit-value in get_interrupt_interval - [arm64,armhf] net: fec: fix use-after-free in fec_drv_remove - net: vxge: fix use-after-free in vxge_device_unregister - Bluetooth: defer cleanup of resources in hci_unregister_dev() - USB: usbtmc: Fix RCU stall warning - USB: serial: option: add Telit FD980 composition 0x1056 - USB: serial: ch341: fix character loss at high transfer rates - USB: serial: ftdi_sio: add device ID for Auto-M3 OP-COM v2 - [x86] firmware_loader: use -ETIMEDOUT instead of -EAGAIN in fw_load_sysfs_fallback - [x86] firmware_loader: fix use-after-free in firmware_fallback_sysfs - ALSA: pcm - fix mmap capability check for the snd-dummy driver - ALSA: hda/realtek: add mic quirk for Acer SF314-42 - ALSA: hda/realtek: Fix headset mic for Acer SWIFT SF314-56 (ALC256) - ALSA: usb-audio: Fix superfluous autosuspend recovery - ALSA: usb-audio: Add registration quirk for JBL Quantum 600 - [arm64,armhf] usb: dwc3: gadget: Avoid runtime resume if disabling pullup - usb: gadget: f_hid: added GET_IDLE and SET_IDLE handlers - usb: gadget: f_hid: fixed NULL pointer dereference - usb: gadget: f_hid: idle uses the highest byte for duration - usb: typec: tcpm: Keep other events when receiving FRS and Sourcing_vbus events - clk: fix leak on devm_clk_bulk_get_all() unwind - tracing: Fix NULL pointer dereference in start_creating - tracepoint: static call: Compare data on transition from 2->1 callees - tracepoint: Fix static call function vs data state mismatch - [arm64] stacktrace: avoid tracing arch_stack_walk() - [arm64] optee: Clear stale cache entries during initialization - [arm64] tee: add tee_shm_alloc_kernel_buf() - [arm64] optee: Fix memory leak when failing to register shm pages - [arm64] optee: Refuse to load the driver under the kdump kernel - [arm64] optee: fix tee out of memory failure seen during kexec reboot - staging: rtl8723bs: Fix a resource leak in sd_int_dpc - staging: rtl8712: get rid of flush_scheduled_work - staging: rtl8712: error handling refactoring - drivers core: Fix oops when driver probe fails - media: rtl28xxu: fix zero-length control request - pipe: increase minimum default pipe size to 2 pages - ext4: fix potential htree corruption when growing large_dir directories - [arm64,armhf] serial: tegra: Only print FIFO error message when an error occurs - serial: 8250: Mask out floating 16/32-bit bus bits - [mips*] Malta: Do not byte-swap accesses to the CBUS UART - serial: 8250_pci: Enumerate Elkhart Lake UARTs via dedicated driver - serial: 8250_pci: Avoid irq sharing for MSI(-X) interrupts. - timers: Move clearing of base::timer_running under base:: Lock - xfrm: Fix RCU vs hash_resize_mutex lock inversion - pcmcia: i82092: fix a null pointer dereference bug - selinux: correct the return value when loads initial sids - [armhf] bus: ti-sysc: AM3: RNG is GP only - [arm64] Revert "gpio: mpc8xxx: change the gpio interrupt flags." - [armhf] omap2+: hwmod: fix potential NULL pointer access - md/raid10: properly indicate failure when ending a failed write request - [x86] KVM: accept userspace interrupt only if no event is injected - KVM: Do not leak memory for duplicate debugfs directories - [x86] KVM: x86/mmu: Fix per-cpu counter corruption on 32-bit builds - [arm64] vdso: Avoid ISB after reading from cntvct_el0 - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_remove - [x86] drm/i915: Correct SFC_DONE register offset - sched/rt: Fix double enqueue caused by rt_effective_prio - [x86] drm/i915: avoid uninitialised var in eb_parse() - libata: fix ata_pio_sector for CONFIG_HIGHMEM - reiserfs: add check for root_inode in reiserfs_fill_super - reiserfs: check directory items on read from disk - net: qede: Fix end of loop tests for list_for_each_entry - net/qla3xxx: fix schedule while atomic in ql_wait_for_drvr_lock and ql_adapter_reset - smb3: rc uninitialized in one fallocate path - drm/amdgpu/display: only enable aux backlight control for OLED panels - [arm64] fix compat syscall return truncation https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.59 - [x86] KVM: SVM: Fix off-by-one indexing when nullifying last used SEV VMCB - [arm64] tee: Correct inappropriate usage of TEE_SHM_DMA_BUF flag - bpf: Add lockdown check for probe_write_user helper - mm: make zone_to_nid() and zone_set_nid() available for DISCONTIGMEM - [x86] vboxsf: Honor excl flag to the dir-inode create op - [x86] vboxsf: Make vboxsf_dir_create() return the handle for the created file - USB:ehci:fix Kunpeng920 ehci hardware problem - ALSA: pcm: Fix mmap breakage without explicit buffer setup - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 650 G8 Notebook PC - ALSA: hda: Add quirk for ASUS Flow x13 - ppp: Fix generating ppp unit id when ifname is not specified - net: xilinx_emaclite: Do not print real IOMEM pointer (CVE-2021-38205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.60 - iio: adc: ti-ads7950: Ensure CS is deasserted after reading channels - iio: adis: set GPIO reset pin direction - [x86] ASoC: amd: Fix reference to PCM buffer address - [x86] ASoC: intel: atom: Fix reference to PCM buffer address - i2c: dev: zero out array used for i2c reads from userspace - cifs: create sd context must be a multiple of 8 - scsi: lpfc: Move initialization of phba->poll_list earlier to avoid crash - seccomp: Fix setting loaded filter count during TSYNC - [armhf] net: ethernet: ti: cpsw: fix min eth packet size for non-switch use-cases - ceph: reduce contention in ceph_check_delayed_caps() - [amd64,arm64] ACPI: NFIT: Fix support for virtual SPA ranges - libnvdimm/region: Fix label activation vs errors - drm/amd/display: use GFP_ATOMIC in amdgpu_dm_irq_schedule_work - drm/amdgpu: don't enable baco on boco platforms in runpm - ieee802154: hwsim: fix GPF in hwsim_set_edge_lqi - ieee802154: hwsim: fix GPF in hwsim_new_edge_nl - [x86] ASoC: SOF: Intel: hda-ipc: fix reply size checking - netfilter: nf_conntrack_bridge: Fix memory leak when error - [x86] pinctrl: tigerlake: Fix GPIO mapping for newer version of software - [x86] platform/x86: pcengines-apuv2: Add missing terminating entries to gpio-lookup tables - net: phy: micrel: Fix link detection on ksz87xx switch" - ppp: Fix generating ifname when empty IFLA_IFNAME is specified - net/smc: fix wait on already cleared link - net: sched: act_mirred: Reset ct info when mirror/redirect skb - ice: Prevent probing virtual functions - ice: don't remove netdev->dev_addr from uc sync list - iavf: Set RSS LUT and key in reset handle path - net/mlx5: Synchronize correct IRQ when destroying CQ - net/mlx5: Fix return value from tracer initialization - [arm64] drm/meson: fix colour distortion from HDR set during vendor u-boot - net: Fix memory leak in ieee802154_raw_deliver - net: igmp: fix data-race in igmp_ifc_timer_expire() - net: bridge: validate the NUD_PERMANENT bit when adding an extern_learn FDB entry - net: bridge: fix flags interpretation for extern learn fdb entries - net: bridge: fix memleak in br_add_if() - net: linkwatch: fix failure to restore device state across suspend/resume - tcp_bbr: fix u32 wrap bug in round logic if bbr_init() called after 2B packets - net: igmp: increase size of mr_ifc_count - [x86] drm/i915: Only access SFC_DONE when media domain is not fused off - xen/events: Fix race in set_evtchn_to_irq - vsock/virtio: avoid potential deadlock when vsock device remove - nbd: Aovid double completion of a request - [arm64] efi/libstub: arm64: Force Image reallocation if BSS was not reserved - [arm64] efi/libstub: arm64: Relax 2M alignment again for relocatable kernels - [powerpc*] kprobes: Fix kprobe Oops happens in booke - genirq: Provide IRQCHIP_AFFINITY_PRE_STARTUP - [x86] msi: Force affinity setup before startup - [x86] ioapic: Force affinity setup before startup - [x86] resctrl: Fix default monitoring groups reporting - genirq/msi: Ensure deactivation on teardown - PCI/MSI: Enable and mask MSI-X early - PCI/MSI: Mask all unused MSI-X entries - PCI/MSI: Enforce that MSI-X table entry is masked for update - PCI/MSI: Enforce MSI[X] entry updates to be visible - PCI/MSI: Do not set invalid bits in MSI mask - PCI/MSI: Correct misleading comments - PCI/MSI: Use msi_mask_irq() in pci_msi_shutdown() - PCI/MSI: Protect msi_desc::masked for multi-MSI - [powerpc*] smp: Fix OOPS in topology_init() - [arm64] efi/libstub: arm64: Double check image alignment at entry - [x86] KVM: VMX: Use current VMCS to query WAITPKG support for MSR emulation - [x86] KVM: nVMX: Use vmx_need_pf_intercept() when deciding if L0 wants a #PF - [x86] vboxsf: Add vboxsf_[create|release]_sf_handle() helpers - [x86] vboxsf: Add support for the atomic_open directory-inode op - ceph: add some lockdep assertions around snaprealm handling - ceph: clean up locking annotation for ceph_get_snap_realm and __lookup_snap_realm - ceph: take snap_empty_lock atomically with snaprealm refcount change https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.61 - mtd: cfi_cmdset_0002: fix crash when erasing/writing AMD cards - media: zr364xx: propagate errors from zr364xx_start_readpipe() - media: zr364xx: fix memory leaks in probe() - media: drivers/media/usb: fix memory leak in zr364xx_probe - [x86] KVM: Factor out x86 instruction emulation with decoding - [x86] KVM: Fix warning caused by stale emulation context - USB: core: Avoid WARNings for 0-length descriptor requests - USB: core: Fix incorrect pipe calculation in do_proc_control() - dmaengine: xilinx_dma: Fix read-after-free bug when terminating transfers - net: xfrm: Fix end of loop tests for list_for_each_entry - dmaengine: of-dma: router_xlate to return -EPROBE_DEFER if controller is not yet available - scsi: pm80xx: Fix TMF task completion race condition - scsi: megaraid_mm: Fix end of loop tests for list_for_each_entry() - scsi: scsi_dh_rdac: Avoid crash during rdac_bus_attach() - scsi: core: Avoid printing an error if target_alloc() returns -ENXIO - scsi: core: Fix capacity set to zero after offlinining device - drm/amdgpu: fix the doorbell missing when in CGPG issue for renoir. - qede: fix crash in rmmod qede while automatic debug collection - net: usb: pegasus: Check the return value of get_geristers() and friends; - net: usb: lan78xx: don't modify phy_device state concurrently - Bluetooth: hidp: use correct wait queue when removing ctrl_wait (Closes: #992121) - [arm64] dts: qcom: c630: fix correct powerdown pin for WSA881x - [arm64] dts: qcom: msm8992-bullhead: Remove PSCI - iommu: Check if group is NULL before remove device - [arm64] cpufreq: armada-37xx: forbid cpufreq for 1.2 GHz variant - virtio: Protect vqs list access - [armhf] bus: ti-sysc: Fix error handling for sysc_check_active_timer() - vhost: Fix the calculation in vhost_overflow() - bpf: Clear zext_dst of dead insns - bnxt: don't lock the tx queue from napi poll - bnxt: disable napi before canceling DIM - bnxt: make sure xmit_more + errors does not miss doorbells - bnxt: count Tx drops - net: 6pack: fix slab-out-of-bounds in decode_data - bnxt_en: Disable aRFS if running on 212 firmware - bnxt_en: Add missing DMA memory barriers - vrf: Reset skb conntrack connection on VRF rcv - virtio-net: support XDP when not more queues - virtio-net: use NETIF_F_GRO_HW instead of NETIF_F_LRO - net: qlcnic: add missed unlock in qlcnic_83xx_flash_read32 - ixgbe, xsk: clean up the resources in ixgbe_xsk_pool_enable error path - sch_cake: fix srchost/dsthost hashing mode - [arm64,armhf] net: mdio-mux: Don't ignore memory allocation errors - [arm64,armhf] net: mdio-mux: Handle -EPROBE_DEFER correctly - ovs: clear skb->tstamp in forwarding path - [amd64] iommu/vt-d: Consolidate duplicate cache invaliation code - [amd64] iommu/vt-d: Fix incomplete cache flush in intel_pasid_tear_down_entry() - r8152: fix writing USB_BP2_EN - i40e: Fix ATR queue selection - iavf: Fix ping is lost after untrusted VF had tried to change MAC - Revert "flow_offload: action should not be NULL when it is referenced" - [arm64,armhf] mmc: dw_mmc: Fix hang on data CRC error - [arm64,armhf] mmc: mmci: stm32: Check when the voltage switch procedure should be done - [arm64] mmc: sdhci-msm: Update the software timeout value for sdhc - [armhf] clk: imx6q: fix uart earlycon unwork - [arm64] clk: qcom: gdsc: Ensure regulator init state matches GDSC state - ALSA: hda - fix the 'Capture Switch' value change notifications - slimbus: messaging: start transaction ids from 1 instead of zero - slimbus: messaging: check for valid transaction id - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9510 laptop - [arm*] mmc: sdhci-iproc: Cap min clock frequency on BCM2711 - [arm*] mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711 - btrfs: prevent rename2 from exchanging a subvol with a directory from different parents - ALSA: hda/via: Apply runtime PM workaround for ASUS B23E - [s390x] pci: fix use after free of zpci_dev - PCI: Increase D3 delay for AMD Renoir/Cezanne XHCI - ALSA: hda/realtek: Limit mic boost on HP ProBook 445 G8 - [x86] ASoC: intel: atom: Fix breakage for PCM buffer address setup - mm: memcontrol: fix occasional OOMs due to proportional memory.low reclaim - fs: warn about impending deprecation of mandatory locks - io_uring: fix xa_alloc_cycle() error return value check - io_uring: only assign io_uring_enter() SQPOLL error in actual error case https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.62 - bpf: Fix ringbuf helper function compatibility - bpf: Fix NULL pointer dereference in bpf_get_local_storage() helper - ASoC: rt5682: Adjust headset volume button threshold - ASoC: component: Remove misplaced prefix handling in pin control functions - netfilter: conntrack: collect all entries in one cycle - once: Fix panic when module unload - blk-iocost: fix lockdep warning on blkcg->lock - ovl: fix uninitialized pointer read in ovl_lookup_real_one() - [arm64] net: mscc: Fix non-GPL export of regmap APIs - can: usb: esd_usb2: esd_usb2_rx_event(): fix the interchange of the CAN RX and TX error counters - ceph: correctly handle releasing an embedded cap flush - Revert "btrfs: compression: don't try to compress if we don't have enough pages" - drm/amdgpu: Cancel delayed work when GFXOFF is disabled - Revert "USB: serial: ch341: fix character loss at high transfer rates" - USB: serial: option: add new VID/PID to support Fibocom FG150 - [arm64,armhf] usb: dwc3: gadget: Fix dwc3_calc_trbs_left() - [arm64,armhf] usb: dwc3: gadget: Stop EP0 transfers during pullup disable - scsi: core: Fix hang of freezing queue between blocking and running device - [amd64] IB/hfi1: Fix possible null-pointer dereference in _extend_sdma_tx_descs() - ice: do not abort devlink info if board identifier can't be found - net: usb: pegasus: fixes of set_register(s) return value evaluation; - igc: fix page fault when thunderbolt is unplugged - igc: Use num_tx_queues when iterating over tx_ring queue - e1000e: Fix the max snoop/no-snoop latency for 10M - e1000e: Do not take care about recovery NVM checksum - ip_gre: add validation for csum_start - [arm64] xgene-v2: Fix a resource leak in the error handling path of 'xge_probe()' - [arm64,armhf] net: marvell: fix MVNETA_TX_IN_PRGRS bit number - ucounts: Increase ucounts reference counter before the security hook - net/sched: ets: fix crash when flipping from 'strict' to 'quantum' - ipv6: use siphash in rt6_exception_hash() - ipv4: use siphash instead of Jenkins in fnhe_hashfun() - cxgb4: dont touch blocked freelist bitmap after free - rtnetlink: Return correct error on changing device netns - [arm64] net: hns3: clear hardware resource when loading driver - [arm64] net: hns3: add waiting time before cmdq memory is released - [arm64] net: hns3: fix duplicate node in VLAN list - [arm64] net: hns3: fix get wrong pfc_en when query PFC configuration - [arm*] Revert "mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711" - net: stmmac: add mutex lock to protect est parameters - net: stmmac: fix kernel panic due to NULL pointer dereference of plat->est - [x86] drm/i915: Fix syncmap memory leak - usb: gadget: u_audio: fix race condition on endpoint stop - [x86] perf/x86/intel/uncore: Fix integer overflow on 23 bit left shift of a u32 - iwlwifi: pnvm: accept multiple HW-type TLVs - opp: remove WARN when no valid OPPs remain - [arm64,armhf] cpufreq: blocklist Qualcomm sm8150 in cpufreq-dt-platdev - virtio: Improve vq->broken access to avoid any compiler optimization - virtio_pci: Support surprise removal of virtio pci device - qed: qed ll2 race condition fixes - qed: Fix null-pointer dereference in qed_rdma_create_qp() - blk-mq: don't grab rq's refcount in blk_mq_check_expired() - drm: Copy drm_wait_vblank to user before returning - drm/nouveau/disp: power down unused DP links during init - drm/nouveau/kms/nv50: workaround EFI GOP window channel format differences - net/rds: dma_map_sg is entitled to merge entries - btrfs: fix race between marking inode needs to be logged and log syncing - pipe: avoid unnecessary EPOLLET wakeups under normal loads - pipe: do FASYNC notifications for every pipe IO, not just state changes - tipc: call tipc_wait_for_connect only when dlen is not 0 - Bluetooth: btusb: check conditions before enabling USB ALT 3 for WBS - [powerpc*] perf: Invoke per-CPU variable access with disabled interrupts - srcu: Provide internal interface to start a Tree SRCU grace period - srcu: Provide polling interfaces for Tree SRCU grace periods - srcu: Provide internal interface to start a Tiny SRCU grace period - srcu: Make Tiny SRCU use multi-bit grace-period counter - srcu: Provide polling interfaces for Tiny SRCU grace periods - tracepoint: Use rcu get state and cond sync for static call updates - usb: typec: ucsi: acpi: Always decode connector change information (Closes: #992004) - usb: typec: ucsi: Work around PPM losing change information - usb: typec: ucsi: Clear pending after acking connector change - [arm64] dts: qcom: msm8994-angler: Fix gpio-reserved-ranges 85-88 - kthread: Fix PF_KTHREAD vs to_kthread() race - Revert "floppy: reintroduce O_NDELAY fix" - net: don't unconditionally copy_from_user a struct ifreq for socket ioctls - audit: move put_tree() to avoid trim_trees refcount underflow and UAF - bpf: Fix potentially incorrect results with bpf_get_local_storage() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.63 - fscrypt: add fscrypt_symlink_getattr() for computing st_size - ext4: report correct st_size for encrypted symlinks - f2fs: report correct st_size for encrypted symlinks - ubifs: report correct st_size for encrypted symlinks - Revert "ucounts: Increase ucounts reference counter before the security hook" - Revert "cred: add missing return error code when set_cred_ucounts() failed" - Revert "Add a reference to ucounts for each cred" - [armhf] gpu: ipu-v3: Fix i.MX IPU-v3 offset calculations for (semi)planar U/V formats - qed: Fix the VF msix vectors flow - [arm64] net: macb: Add a NULL check on desc_ptp - qede: Fix memset corruption - [x86] perf/x86/intel/pt: Fix mask of num_address_ranges - ceph: fix possible null-pointer dereference in ceph_mdsmap_decode() - [x86] perf/x86/amd/ibs: Work around erratum #1197 - [x86] perf/x86/amd/power: Assign pmu.module - ALSA: hda/realtek: Quirk for HP Spectre x360 14 amp setup - ALSA: hda/realtek: Workaround for conflicting SSID on ASUS ROG Strix G17 - ALSA: pcm: fix divide error in snd_pcm_lib_ioctl - spi: Switch to signed types for *_native_cs SPI controller fields - new helper: inode_wrong_type() - fuse: fix illegal access to inode with reused nodeid - media: stkwebcam: fix memory leak in stk_camera_probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.64 - igmp: Add ip_mc_list lock in ip_check_mc_rcu - USB: serial: mos7720: improve OOM-handling in read_mos_reg() - mm/page_alloc: speed up the iteration of max_order - Revert "r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM" - [amd64] x86/events/amd/iommu: Fix invalid Perf result due to IOMMU PMC power-gating - blk-mq: fix kernel panic during iterating over flush request - blk-mq: fix is_flush_rq - blk-mq: clearing flush request reference in tags->rqs[] - ALSA: usb-audio: Add registration quirk for JBL Quantum 800 - xhci: fix even more unsafe memory usage in xhci tracing - xhci: fix unsafe memory usage in xhci tracing - [x86] reboot: Limit Dell Optiplex 990 quirk to early BIOS versions - PCI: Call Max Payload Size-related fixup quirks early https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.65 - locking/mutex: Fix HANDOFF condition - regmap: fix the offset of register error log - sched/deadline: Fix reset_on_fork reporting of DL tasks - power: supply: axp288_fuel_gauge: Report register-address on readb / writeb errors - sched/deadline: Fix missing clock update in migrate_task_rq_dl() - rcu/tree: Handle VM stoppage in stall detection - [x86] EDAC/mce_amd: Do not load edac_mce_amd module on guests - posix-cpu-timers: Force next expiration recalc after itimer reset - hrtimer: Avoid double reprogramming in __hrtimer_start_range_ns() - hrtimer: Ensure timerfd notification for HIGHRES=n - udf: Check LVID earlier - udf: Fix iocharset=utf8 mount option - isofs: joliet: Fix iocharset=utf8 mount option - bcache: add proper error unwinding in bcache_device_init - blk-throtl: optimize IOPS throttle for large IO scenarios - nvme-tcp: don't update queue count when failing to set io queues - nvme-rdma: don't update queue count when failing to set io queues - nvmet: pass back cntlid on successful completion - [x86] power: supply: max17042_battery: fix typo in MAx17042_TOFF - [s390x] cio: add dev_busid sysfs entry for each subchannel - [s390x] zcrypt: fix wrong offset index for APKA master key valid state - libata: fix ata_host_start() - [x86] crypto: qat - do not ignore errors from enable_vf2pf_comms() - [x86] crypto: qat - handle both source of interrupt in VF ISR - [x86] crypto: qat - fix reuse of completion variable - [x86] crypto: qat - fix naming for init/shutdown VF to PF notifications - [x86] crypto: qat - do not export adf_iov_putmsg() - fcntl: fix potential deadlock for &fasync_struct.fa_lock - udf_get_extendedattr() had no boundary checks. - [s390x] pci: fix misleading rc in clp_set_pci_fn() - [s390x] debug: keep debug data on resize - [s390x] debug: fix debug area life cycle - [s390x] ap: fix state machine hang after failure to enable irq - [arm64] power: supply: cw2015: use dev_err_probe to allow deferred probe - sched/numa: Fix is_core_idle() - sched: Fix UCLAMP_FLAG_IDLE setting - rcu: Fix to include first blocked task in stall warning - rcu: Add lockdep_assert_irqs_disabled() to rcu_sched_clock_irq() and callees - rcu: Fix stall-warning deadlock due to non-release of rcu_node ->lock - block: return ELEVATOR_DISCARD_MERGE if possible - [arm64] spi: spi-fsl-dspi: Fix issue with uninitialized dma_slave_config - genirq/timings: Fix error return code in irq_timings_test_irqs() - [mips64el,mipsel] irqchip/loongson-pch-pic: Improve edge triggered interrupt support - lib/mpi: use kcalloc in mpi_resize - block: nbd: add sanity check for first_minor - [arm64,armhf] irqchip/gic-v3: Fix priority comparison when non-secure priorities are used - [x86] crypto: qat - use proper type for vf_mask - [x86] mce: Defer processing of early errors - [arm64] regulator: vctrl: Use locked regulator_get_voltage in probe path - [arm64] regulator: vctrl: Avoid lockdep warning in enable/disable ops - [arm64,armhf] drm/panfrost: Fix missing clk_disable_unprepare() on error in panfrost_clk_init() - [x86] drm/gma500: Fix end of loop tests for list_for_each_entry - drm/of: free the right object - bpf: Fix a typo of reuseport map in bpf.h. - bpf: Fix potential memleak and UAF in the verifier. - drm/of: free the iterator object on failure - [amd64] gve: fix the wrong AdminQ buffer overflow check - i40e: improve locking of mac_filter_hash - gfs2: Fix memory leak of object lsi on error return path - firmware: fix theoretical UAF race with firmware cache and resume - driver core: Fix error return code in really_probe() - media: dvb-usb: fix uninit-value in dvb_usb_adapter_dvb_init - media: dvb-usb: fix uninit-value in vp702x_read_mac_addr - media: dvb-usb: Fix error handling in dvb_usb_i2c_init - media: go7007: fix memory leak in go7007_usb_probe - media: go7007: remove redundant initialization - [armhf] media: coda: fix frame_mem_ctrl for YUV420 and YVU420 formats - Bluetooth: sco: prevent information leak in sco_conn_defer_accept() - [x86] drm/amdgpu/acp: Make PM domain really work - tcp: seq_file: Avoid skipping sk during tcp_seek_last_pos - [armhf] dts: meson8b: odroidc1: Fix the pwm regulator supply properties - [armhf] dts: meson8b: mxq: Fix the pwm regulator supply properties - [armhf] dts: meson8b: ec100: Fix the pwm regulator supply properties - net/mlx5e: Prohibit inner indir TIRs in IPoIB - net/mlx5e: Block LRO if firmware asks for tunneled LRO - cgroup/cpuset: Fix a partition bug with hotplug - net: cipso: fix warnings in netlbl_cipsov4_add_std - Bluetooth: mgmt: Fix wrong opcode in the response for add_adv cmd - devlink: Break parameter notification sequence to be before/after unload/load driver - net/mlx5: Fix missing return value in mlx5_devlink_eswitch_inline_mode_set() - leds: lt3593: Put fwnode in any case during ->probe() - leds: trigger: audio: Add an activate callback to ensure the initial brightness is set - media: em28xx-input: fix refcount bug in em28xx_usb_disconnect - [arm64] media: venus: venc: Fix potential null pointer dereference on pointer fmt - PCI: PM: Avoid forcing PCI_D0 for wakeup reasons inconsistently - PCI: PM: Enable PME if it can be signaled from D3cold - debugfs: Return error during {full/open}_proxy_open() on rmmod - Bluetooth: increase BTNAMSIZ to 21 chars to fix potential buffer overflow - PM: EM: Increase energy calculation precision - [arm64] drm/msm/mdp4: refactor HW revision detection into read_mdp_hw_revision - [arm64] drm/msm/mdp4: move HW revision detection to earlier phase - [arm64] drm/msm/dpu: make dpu_hw_ctl_clear_all_blendstages clear necessary LMs - cgroup/cpuset: Miscellaneous code cleanup - cgroup/cpuset: Fix violation of cpuset locking rule - [x86] ASoC: Intel: Fix platform ID matching - Bluetooth: fix repeated calls to sco_sock_kill - [arm64] drm/msm/dsi: Fix some reference counted resource leaks - net/mlx5: Register to devlink ingress VLAN filter trap - net/mlx5: Fix unpublish devlink parameters - [x86] ASoC: rt5682: Implement remove callback - [x86] ASoC: rt5682: Properly turn off regulators if wrong device ID - [arm64,armhf] usb: dwc3: meson-g12a: add IRQ check - [arm64] usb: dwc3: qcom: add IRQ check - [armhf] usb: phy: twl6030: add IRQ checks - devlink: Clear whole devlink_flash_notify struct - Bluetooth: Move shutdown callback before flushing tx and rx queue - PM: cpu: Make notifier chain use a raw_spinlock_t - mac80211: Fix insufficient headroom issue for AMSDU - locking/lockdep: Mark local_lock_t - locking/local_lock: Add missing owner initialization - lockd: Fix invalid lockowner cast after vfs_test_lock - nfsd4: Fix forced-expiry locking - [arm64] dts: marvell: armada-37xx: Extend PCIe MEM space - [arm*] firmware: raspberrypi: Keep count of all consumers - [arm*] firmware: raspberrypi: Fix a leak in 'rpi_firmware_get()' - mm/swap: consider max pages in iomap_swapfile_add_extent - Bluetooth: add timeout sanity check to hci_inquiry - [armhf] i2c: s3c2410: fix IRQ check - gfs2: init system threads before freeze lock - rsi: fix error code in rsi_load_9116_firmware() - rsi: fix an error code in rsi_probe() - [x86] ASoC: Intel: Skylake: Leave data as is when invoking TLV IPCs - [x86] ASoC: Intel: Skylake: Fix module resource and format selection - mmc: sdhci: Fix issue with uninitialized dma_slave_config - [arm64,armhf] mmc: dw_mmc: Fix issue with uninitialized dma_slave_config - bpf: Fix possible out of bound write in narrow load handling - CIFS: Fix a potencially linear read overflow - [arm64] i2c: xlp9xx: fix main IRQ check - [arm*] usb: ehci-orion: Handle errors of clk_prepare_enable() in probe - [arm64] tty: serial: fsl_lpuart: fix the wrong mapbase value - iwlwifi: follow the new inclusive terminology - iwlwifi: skip first element in the WTAS ACPI table - ice: Only lock to update netdev dev_addr - ath6kl: wmi: fix an error code in ath6kl_wmi_sync_point() - [amd64,arm64] atlantic: Fix driver resume flow. - bcma: Fix memory leak for internally-handled cores - brcmfmac: pcie: fix oops on failure to resume and reprobe - ipv6: make exception cache less predictible - ipv4: make exception cache less predictible - net: sched: Fix qdisc_rate_table refcount leak when get tcf_block failed - ipv4: fix endianness issue in inet_rtm_getroute_build_skb() - [x86] ASoC: rt5682: Remove unused variable in rt5682_i2c_remove() - iwlwifi Add support for ax201 in Samsung Galaxy Book Flex2 Alpha - f2fs: guarantee to write dirty data when enabling checkpoint back - time: Handle negative seconds correctly in timespec64_to_ns() - io_uring: IORING_OP_WRITE needs hash_reg_file set - bio: fix page leak bio_add_hw_page failure - tty: Fix data race between tiocsti() and flush_to_ldisc() - [x86] perf/x86/amd/ibs: Extend PERF_PMU_CAP_NO_EXCLUDE to IBS Op - [x86] resctrl: Fix a maybe-uninitialized build warning treated as error - [x86] Revert "KVM: x86: mmu: Add guest physical address check in translate_gpa()" - [s390x] KVM: index kvm->arch.idle_mask by vcpu_idx - [x86] KVM: x86: Update vCPU's hv_clock before back to guest when tsc_offset is adjusted - [x86] KVM: VMX: avoid running vmx_handle_exit_irqoff in case of emulation - [x86] KVM: nVMX: Unconditionally clear nested.pi_pending on nested VM-Enter - fuse: truncate pagecache on atomic_o_trunc - fuse: flush extending writes - fbmem: don't allow too huge resolutions - backlight: pwm_bl: Improve bootloader/kernel device handover - [armel] clk: kirkwood: Fix a clocking boot regression https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.66 - Revert "Bluetooth: Move shutdown callback before flushing tx and rx queue" - Revert "block: nbd: add sanity check for first_minor" - Revert "posix-cpu-timers: Force next expiration recalc after itimer reset" - Revert "time: Handle negative seconds correctly in timespec64_to_ns()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.67 - io_uring: limit fixed table size by RLIMIT_NOFILE - io_uring: place fixed tables under memcg limits - io_uring: add ->splice_fd_in checks - io_uring: fail links of cancelled timeouts - io-wq: fix wakeup race when adding new work - btrfs: wake up async_delalloc_pages waiters after submit - btrfs: reset replace target device to allocation state on close - blk-zoned: allow zone management send operations without CAP_SYS_ADMIN - blk-zoned: allow BLKREPORTZONE without CAP_SYS_ADMIN - PCI/MSI: Skip masking MSI-X on Xen PV - [powerpc*] perf/hv-gpci: Fix counter value parsing - xen: fix setting of max_pfn in shared_info - 9p/xen: Fix end of loop tests for list_for_each_entry - ceph: fix dereference of null pointer cf - [armhf] soc: aspeed: lpc-ctrl: Fix boundary check for mmap - [armhf] soc: aspeed: p2a-ctrl: Fix boundary check for mmap - [arm64] mm: Fix TLBI vs ASID rollover - [arm64] head: avoid over-mapping in map_memory - iio: ltc2983: fix device probe - [arm64] wcn36xx: Ensure finish scan is not requested before start scan - block: bfq: fix bfq_set_next_ioprio_data() - [x86] power: supply: max17042: handle fails of reading status register - dm crypt: Avoid percpu_counter spinlock contention in crypt_page_alloc() - [x86] crypto: ccp - shutdown SEV firmware on kexec - [x86] VMCI: fix NULL pointer dereference when unmapping queue pair - media: uvc: don't do DMA on stack - media: rc-loopback: return number of emitters rather than error - [s390x] qdio: fix roll-back after timeout on ESTABLISH ccw - [s390x] qdio: cancel the ESTABLISH ccw after timeout - [armhf] Revert "dmaengine: imx-sdma: refine to load context only once" - [armhf] dmaengine: imx-sdma: remove duplicated sdma_load_context - libata: add ATA_HORKAGE_NO_NCQ_TRIM for Samsung 860 and 870 SSDs - f2fs: fix to do sanity check for sb/cp fields correctly - PCI/portdrv: Enable Bandwidth Notification only if port supports it - PCI: Restrict ASMedia ASM1062 SATA Max Payload Size Supported - PCI: Return ~0 data on pciconfig_read() CAP_SYS_ADMIN failure - [arm64] PCI: xilinx-nwl: Enable the clock through CCF - [arm64] PCI: aardvark: Configure PCIe resources from 'ranges' DT property - PCI: Export pci_pio_to_address() for module use - [arm64] PCI: aardvark: Fix checking for PIO status - [arm64] PCI: aardvark: Fix masking and unmasking legacy INTx interrupts - HID: input: do not report stylus battery state as "full" - f2fs: quota: fix potential deadlock - [arm64] pinctrl: armada-37xx: Correct PWM pins definitions - scsi: bsg: Remove support for SCSI_IOCTL_SEND_COMMAND - [arm64,armhf] clk: rockchip: drop GRF dependency for rk3328/rk3036 pll types - [amd64] IB/hfi1: Adjust pkey entry in index 0 - RDMA/iwcm: Release resources if iw_cm module initialization fails - docs: Fix infiniband uverbs minor number - scsi: BusLogic: Use %X for u32 sized integer rather than %lX - [armhf] pinctrl: samsung: Fix pinctrl bank pin count - scsi: ufs: Fix memory corruption by ufshcd_read_desc_param() - [powerpc*] cpuidle: pseries: Fixup CEDE0 latency only for POWER10 onwards - [powerpc*] stacktrace: Include linux/delay.h - RDMA/mlx5: Delete not-available udata check - [powerpc*] cpuidle: pseries: Mark pseries_idle_proble() as __init - f2fs: reduce the scope of setting fsck tag when de->name_len is zero - NFSv4/pNFS: Fix a layoutget livelock loop - NFSv4/pNFS: Always allow update of a zero valued layout barrier - NFSv4/pnfs: The layout barrier indicate a minimal value for the seqid - SUNRPC: Fix potential memory corruption - SUNRPC/xprtrdma: Fix reconnection locking - SUNRPC query transport's source port - sunrpc: Fix return value of get_srcport() - [arm64,armhf] pinctrl: single: Fix error return code in pcs_parse_bits_in_pinctrl_entry() - [powerpc*] numa: Consider the max NUMA node for migratable LPAR - scsi: smartpqi: Fix an error code in pqi_get_raid_map() - scsi: qedi: Fix error codes in qedi_alloc_global_queues() - scsi: qedf: Fix error codes in qedf_alloc_global_queues() - iommu/vt-d: Update the virtual command related registers - HID: i2c-hid: Fix Elan touchpad regression - [arm64,armhf] clk: imx8m: fix clock tree update of TF-A managed clocks - [powerpc*] KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines - [powerpc*] KVM: PPC: Book3S HV Nested: Reflect guest PMU in-use to L0 when guest SPRs are live - [x86] platform/x86: dell-smbios-wmi: Add missing kfree in error-exit from run_smbios_call - [powerpc*] smp: Update cpu_core_map on all PowerPc systems - [arm64] RDMA/hns: Fix QP's resp incomplete assignment - fscache: Fix cookie key hashing - [powerpc*] KVM: PPC: Fix clearing never mapped TCEs in realmode - f2fs: fix to account missing .skipped_gc_rwsem - f2fs: fix unexpected ENOENT comes from f2fs_map_blocks() - f2fs: fix to unmap pages from userspace process in punch_hole() - f2fs: deallocate compressed pages when error happens - f2fs: should put a page beyond EOF when preparing a write - [mips64el,mipsel] Malta: fix alignment of the devicetree buffer - userfaultfd: prevent concurrent API initialization - [arm*] drm/vc4: hdmi: Set HD_CTL_WHOLSMP and HD_CTL_CHALIGN_SET - drm/amdgpu: Fix amdgpu_ras_eeprom_init() - media: dib8000: rewrite the init prbs logic - [x86] hyperv: fix for unwanted manipulation of sched_clock when TSC marked unstable - PCI: Use pci_update_current_state() in pci_enable_device_flags() - tipc: keep the skb in rcv queue until the whole data is read - net: phy: Fix data type in DP83822 dp8382x_disable_wol() - iio: dac: ad5624r: Fix incorrect handling of an optional regulator. - iavf: do not override the adapter state in the watchdog task - iavf: fix locking of critical sections - video: fbdev: kyro: fix a DoS bug by restricting user input - netlink: Deal with ESRCH error in nlmsg_notify() - drm: avoid blocking in drm_clients_info's rcu section - drm: serialize drm_file.master with a new spinlock - drm: protect drm_master pointers in drm_lease.c - rcu: Fix macro name CONFIG_TASKS_RCU_TRACE - igc: Check if num of q_vectors is smaller than max before array access - usb: gadget: u_ether: fix a potential null pointer dereference - [armhf] USB: EHCI: ehci-mv: improve error handling in mv_ehci_enable() - usb: gadget: composite: Allow bMaxPower=0 if self-powered - tty: serial: jsm: hold port lock when reporting modem line changes - [arm64] bus: fsl-mc: fix mmio base address for child DPRCs - nfp: fix return statement in nfp_net_parse_meta() - ethtool: improve compat ioctl handling - drm/amdgpu: Fix a printing message - [arm64] dts: allwinner: h6: tanix-tx6: Fix regulator node names - video: fbdev: kyro: Error out if 'pixclock' equals zero - ipv4: ip_output.c: Fix out-of-bounds warning in ip_copy_addrs() - flow_dissector: Fix out-of-bounds warnings - [s390x] jump_label: print real address in a case of a jump label bug - [s390x] make PCI mio support a machine flag - serial: 8250: Define RX trigger levels for OxSemi 950 devices - serial: 8250_pci: make setup_port() parameters explicitly unsigned - Bluetooth: skip invalid hci_sync_conn_complete_evt - workqueue: Fix possible memory leaks in wq_numa_init() - bonding: 3ad: fix the concurrency between __bond_release_one() and bond_3ad_state_machine_handler() - [x86] ASoC: Intel: bytcr_rt5640: Move "Platform Clock" routes to the maps for the matching in-/output - [x86] ASoC: Intel: update sof_pcm512x quirks - media: v4l2-dv-timings.c: fix wrong condition in two for-loops - gfs2: Fix glock recursion in freeze_go_xmote_bh - [armhf] dts: imx53-ppd: Fix ACHC entry - [arm64] nvmem: qfprom: Fix up qfprom_disable_fuse_blowing() ordering - [arm64] net: ethernet: stmmac: Do not use unreachable() in ipq806x_gmac_probe() - [arm64] drm/msm: mdp4: drop vblank get/put from prepare/complete_commit - [arm64] drm/msm/dsi: Fix DSI and DSI PHY regulator config from SDM660 - [x86] thunderbolt: Fix port linking by checking all adapters - [x86] drm/vmwgfx: fix potential UAF in vmwgfx_surface.c - Bluetooth: schedule SCO timeouts with delayed_work - Bluetooth: avoid circular locks in sco_sock_connect - [arm64] drm/msm/dp: return correct edid checksum after corrupted edid checksum read - net/mlx5: Fix variable type to match 64bit - gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port() - mac80211: Fix monitor MTU limit so that A-MSDUs get through - [arm64] dts: ls1046a: fix eeprom entries - nvme-tcp: don't check blk_mq_tag_to_rq when receiving pdu data - nvme: code command_id with a genctr for use-after-free validation - Bluetooth: Fix handling of LE Enhanced Connection Complete - opp: Don't print an error if required-opps is missing - iomap: pass writeback errors to the mapping - tcp: enable data-less, empty-cookie SYN with TFO_SERVER_COOKIE_NOT_REQD - rpc: fix gss_svc_init cleanup on failure - [armhf] hwmon: (pmbus/ibm-cffps) Fix write bits for LED control - [x86] staging: rts5208: Fix get_ms_information() heap buffer size - net: Fix offloading indirect devices dependency on qdisc order creation - gfs2: Don't call dlm after protocol is unmounted - [arm64,armhf] usb: chipidea: host: fix port index underflow and UBSAN complains - lockd: lockd server-side shouldn't set fl_ops - [armhf] drm/exynos: Always initialize mapping in exynos_drm_register_dma() - rtl8xxxu: Fix the handling of TX A-MPDU aggregation - rtw88: use read_poll_timeout instead of fixed sleep - rtw88: wow: build wow function only if CONFIG_PM is on - rtw88: wow: fix size access error of probe request - btrfs: tree-log: check btrfs_lookup_data_extent return value - soundwire: intel: fix potential race condition during power down - [x86] ASoC: Intel: Skylake: Fix module configuration for KPB and MIXER - [x86] ASoC: Intel: Skylake: Fix passing loadable flag for module - of: Don't allow __of_attached_node_sysfs() without CONFIG_SYSFS - [arm64] mmc: sdhci-of-arasan: Modified SD default speed to 19MHz for ZynqMP - [arm64] mmc: sdhci-of-arasan: Check return value of non-void funtions - mmc: rtsx_pci: Fix long reads when clock is prescaled - mmc: core: Return correct emmc response in case of ioctl error - cifs: fix wrong release in sess_alloc_buffer() failed path - Revert "USB: xhci: fix U1/U2 handling for hardware with XHCI_INTEL_HOST quirk set" - [armhf] usb: musb: musb_dsps: request_irq() after initializing musb - usbip: give back URBs for unsent unlink requests during cleanup - usbip:vhci_hcd USB port can get stuck in the disabled state - [arm64,armhf] ASoC: rockchip: i2s: Fix regmap_ops hang - [arm64,armhf] ASoC: rockchip: i2s: Fixup config for DAIFMT_DSP_A/B - nfsd: fix crash on LOCKT on reexported NFSv3 - iwlwifi: pcie: free RBs during configure - iwlwifi: mvm: fix a memory leak in iwl_mvm_mac_ctxt_beacon_changed - iwlwifi: mvm: avoid static queue number aliasing - iwlwifi: mvm: fix access to BSS elements - iwlwifi: fw: correctly limit to monitor dump - iwlwifi: mvm: Fix scan channel flags settings - net/mlx5: DR, fix a potential use-after-free bug - net/mlx5: DR, Enable QP retransmission - parport: remove non-zero check on count - [arm64] wcn36xx: Fix missing frame timestamp for beacon/probe-resp - ath9k: fix OOB read ar9300_eeprom_restore_internal - ath9k: fix sleeping in atomic context - net: fix NULL pointer reference in cipso_v4_doi_free - fix array-index-out-of-bounds in taprio_change - [arm64] net: hns3: clean up a type mismatch warning - fs/io_uring Don't use the return value from import_iovec(). - io_uring: remove duplicated io_size from rw - ovl: fix BUG_ON() in may_delete() when called from ovl_cleanup() - scsi: BusLogic: Fix missing pr_cont() use - scsi: qla2xxx: Changes to support kdump kernel - scsi: qla2xxx: Sync queue idx with queue_pair_map idx - [powerpc*] cpufreq: powernv: Fix init_chip_info initialization in numa=off - [s390x] pv: fix the forcing of the swiotlb - hugetlb: fix hugetlb cgroup refcounting during vma split - mm/hmm: bypass devmap pte when all pfn requested flags are fulfilled - mm/hugetlb: initialize hugetlb_usage in mm_init - mm,vmscan: fix divide by zero in get_scan_count - memcg: enable accounting for pids in nested pid namespaces - libnvdimm/pmem: Fix crash triggered when I/O in-flight during unbind - [arm64,armhf] platform/chrome: cros_ec_proto: Send command again when timeout occurs - [x86] drm/mgag200: Select clock in PLL update functions - [arm64] drm/msi/mdp4: populate priv->kms in mdp4_kms_init - drm/dp_mst: Fix return code on sideband message failure - [arm64,armhf] drm/panfrost: Make sure MMU context lifetime is not bound to panfrost_priv - drm/amdgpu: Fix BUG_ON assert - [arm64,armhf] drm/panfrost: Simplify lock_region calculation - [arm64,armhf] drm/panfrost: Use u64 for size in lock_region - [arm64,armhf] drm/panfrost: Clamp lock region to Bifrost minimum - fanotify: limit number of event merge attempts https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.68 - btrfs: fix upper limit for max_inline for page size 64K - [amd64] xen: reset legacy rtc flag for PV domU - [arm64] sve: Use correct size when reinitialising SVE state - PCI: Add AMD GPU multi-function power dependencies - drm/amd/amdgpu: Increase HWIP_MAX_INSTANCE to 10 - [armhf] drm/etnaviv: return context from etnaviv_iommu_context_get - [armhf] drm/etnaviv: put submit prev MMU context when it exists - [armhf] drm/etnaviv: stop abusing mmu_context as FE running marker - [armhf] drm/etnaviv: keep MMU context across runtime suspend/resume - [armhf] drm/etnaviv: exec and MMU state is lost when resetting the GPU - [armhf] drm/etnaviv: fix MMU context leak on GPU reset - [armhf] drm/etnaviv: reference MMU context when setting up hardware state - [armhf] drm/etnaviv: add missing MMU context put when reaping MMU mapping - [s390x] sclp: fix Secure-IPL facility detection - [x86] pat: Pass valid address to sanitize_phys() - [x86] mm: Fix kern_addr_valid() to cope with existing but not present entries - tipc: fix an use-after-free issue in tipc_recvmsg - ethtool: Fix rxnfc copy to user buffer overflow - net/{mlx5|nfp|bnxt}: Remove unnecessary RTNL lock assert - net/l2tp: Fix reference count leak in l2tp_udp_recv_core - r6040: Restore MDIO clock frequency after MAC reset - tipc: increase timeout in tipc_sk_enqueue() - [arm64] drm/rockchip: cdn-dp-core: Make cdn_dp_core_resume __maybe_unused - net/mlx5: FWTrace, cancel work on alloc pd error flow - net/mlx5: Fix potential sleeping in atomic context - nvme-tcp: fix io_work priority inversion - events: Reuse value read using READ_ONCE instead of re-reading it - vhost_net: fix OoB on sendmsg() failure. - net/af_unix: fix a data-race in unix_dgram_poll - [arm64,armhf] net: dsa: destroy the phylink instance on any error in dsa_slave_phy_setup - [x86] uaccess: Fix 32-bit __get_user_asm_u64() when CC_HAS_ASM_GOTO_OUTPUT=y - tcp: fix tp->undo_retrans accounting in tcp_sacktag_one() - qed: Handle management FW error - udp_tunnel: Fix udp_tunnel_nic work-queue type - dt-bindings: arm: Fix Toradex compatible typo - [powerpc*] KVM: PPC: Book3S HV: Tolerate treclaim. in fake-suspend mode changing registers - bnxt_en: make bnxt_free_skbs() safe to call after bnxt_free_mem() - [arm64] net: hns3: pad the short tunnel frame before sending to hardware - [arm64] net: hns3: change affinity_mask to numa node range - [arm64] net: hns3: disable mac in flr process - [arm64] net: hns3: fix the timing issue of VF clearing interrupt sources - mm/memory_hotplug: use "unsigned long" for PFN in zone_for_pfn_range() - dt-bindings: mtd: gpmc: Fix the ECC bytes vs. OOB bytes equation - PCI: Add ACS quirks for NXP LX2xx0 and LX2xx2 platforms - fuse: fix use after free in fuse_read_interrupt() - [arm64,armhf] PCI: tegra: Fix OF node reference leak - [armhf] mfd: Don't use irq_create_mapping() to resolve a mapping - tracing/probes: Reject events which have the same name of existing one - PCI: Add ACS quirks for Cavium multi-function devices - watchdog: Start watchdog in watchdog_set_last_hw_keepalive only if appropriate - Set fc_nlinfo in nh_create_ipv4, nh_create_ipv6 - net: usb: cdc_mbim: avoid altsetting toggling for Telit LN920 - block, bfq: honor already-setup queue merges - [i386] PCI: ibmphp: Fix double unmap of io_mem - ethtool: Fix an error code in cxgb2.c - [s390x] bpf: Fix optimizing out zero-extensions - [s390x] bpf: Fix 64-bit subtraction of the -0x80000000 constant - [s390x] bpf: Fix branch shortening during codegen pass - mfd: axp20x: Update AXP288 volatile ranges - PCI: of: Don't fail devm_pci_alloc_host_bridge() on missing 'ranges' - netfilter: nft_ct: protect nft_ct_pcpu_template_refcnt with mutex - [arm64] KVM: Restrict IPA size to maximum 48 bits on 4K and 16K page size - PCI: Fix pci_dev_str_match_path() alloc while atomic bug - mtd: mtdconcat: Judge callback existence based on the master - mtd: mtdconcat: Check _read, _write callbacks existence before assignment - [arm64] KVM: Fix read-side race on updates to vcpu reset state - [arm64] KVM: Handle PSCI resets before userspace touches vCPU state - mtd: rawnand: cafe: Fix a resource leak in the error handling path of 'cafe_nand_probe()' - perf unwind: Do not overwrite FEATURE_CHECK_LDFLAGS-libunwind-{x86,aarch64} - [arm64] gpio: mpc8xxx: Fix a resources leak in the error handling path of 'mpc8xxx_probe()' - [arm64] gpio: mpc8xxx: Use 'devm_gpiochip_add_data()' to simplify the code and avoid a leak - net: hso: add failure handler for add_net_device - [armhf] net: dsa: b53: Fix calculating number of switch ports - [armhf] net: dsa: b53: Set correct number of ports in the DSA struct - netfilter: socket: icmp6: fix use-after-scope - fq_codel: reject silly quantum parameters - qlcnic: Remove redundant unlock in qlcnic_pinit_from_rom - ip_gre: validate csum_start only on pull - [armhf] net: dsa: b53: Fix IMP port setup on BCM5301x - bnxt_en: fix stored FW_PSID version masks - bnxt_en: Fix asic.rev in devlink dev info command - bnxt_en: log firmware debug notifications - bnxt_en: Consolidate firmware reset event logging. - bnxt_en: Convert to use netif_level() helpers. - bnxt_en: Improve logging of error recovery settings information. - bnxt_en: Fix possible unintended driver initiated error recovery - mfd: lpc_sch: Partially revert "Add support for Intel Quark X1000" - mfd: lpc_sch: Rename GPIOBASE to prevent build error - [x86] mce: Avoid infinite loop for copy from user recovery - bnxt_en: Fix error recovery regression - [armhf] net: dsa: bcm_sf2: Fix array overrun in bcm_sf2_num_active_ports() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.69 - PCI: pci-bridge-emul: Add PCIe Root Capabilities Register - [arm64] PCI: aardvark: Fix reporting CRS value - console: consume APC, DM, DCS - [s390x] pci_mmio: fully validate the VMA before calling follow_pte() - [armel,armhf] Qualify enabling of swiotlb_init() - [armel,armhf] 9077/1: PLT: Move struct plt_entries definition to header - [armel,armhf] 9078/1: Add warn suppress parameter to arm_gen_branch_link() - [armel,armhf] 9079/1: ftrace: Add MODULE_PLTS support - [armel,armhf] 9098/1: ftrace: MODULE_PLT: Fix build problem without DYNAMIC_FTRACE - Revert "net/mlx5: Register to devlink ingress VLAN filter trap" - sctp: validate chunk size in __rcv_asconf_lookup (CVE-2021-3655) - sctp: add param size validation for SCTP_PARAM_SET_PRIMARY (CVE-2021-3655) - [x86] staging: rtl8192u: Fix bitwise vs logical operator in TranslateRxSignalStuff819xUsb() - coredump: fix memleak in dump_vma_snapshot() - dmaengine: acpi: Avoid comparison GSI with Linux vIRQ - [armhf] thermal/drivers/exynos: Fix an error code in exynos_tmu_probe() - 9p/trans_virtio: Remove sysfs file on probe failure - prctl: allow to setup brk for et_dyn executables - nilfs2: use refcount_dec_and_lock() to fix potential UAF - profiling: fix shift-out-of-bounds bugs - PM: sleep: core: Avoid setting power.must_resume to false - platform/chrome: sensorhub: Add trace events for sample - platform/chrome: cros_ec_trace: Fix format warnings - ceph: allow ceph_put_mds_session to take NULL or ERR_PTR - ceph: cancel delayed work instead of flushing on mdsc teardown - thermal/core: Fix thermal_cooling_device_register() prototype - drivers: base: cacheinfo: Get rid of DEFINE_SMP_CALL_CACHE_FUNCTION() - dma-buf: DMABUF_MOVE_NOTIFY should depend on DMA_SHARED_BUFFER - [amd64] iommu/amd: Relocate GAMSup check to early_enable_iommus - ceph: request Fw caps before updating the mtime in ceph_write_iter - ceph: remove the capsnaps when removing caps - ceph: lockdep annotations for try_nonblocking_invalidate - btrfs: update the bdev time directly when closing - btrfs: fix lockdep warning while mounting sprout fs - nilfs2: fix memory leak in nilfs_sysfs_create_device_group - nilfs2: fix NULL pointer in nilfs_##name##_attr_release - nilfs2: fix memory leak in nilfs_sysfs_create_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_delete_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_create_snapshot_group - nilfs2: fix memory leak in nilfs_sysfs_delete_snapshot_group - [arm64,armhf] pwm: rockchip: Don't modify HW state in .remove() callback - [armhf] pwm: stm32-lp: Don't modify HW state in .remove() callback - blk-throttle: fix UAF by deleteing timer in blk_throtl_exit() - blk-mq: allow 4x BLK_MAX_REQUEST_COUNT at blk_plug for multiple_queues - sched/idle: Make the idle timer expire in hard interrupt context - drm/nouveau/nvkm: Replace -ENOSYS with -ENODEV https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.70 - [arm64] PCI: aardvark: Increase polling delay to 1.5s while waiting for PIO response - ocfs2: drop acl cache for directories too - mm: fix uninitialized use in overcommit_policy_handler - [arm*] usb: dwc2: gadget: Fix ISOC flow for BDMA and Slave - [arm*] usb: dwc2: gadget: Fix ISOC transfer complete handling for DDMA - [armhf] usb: musb: tusb6010: uninitialized data in tusb_fifo_write_unaligned() - cifs: fix incorrect check for null pointer in header_assemble - [x86] xen/x86: fix PV trap handling on secondary processors - usb-storage: Add quirk for ScanLogic SL11R-IDE older than 2.6c - USB: serial: cp210x: add ID for GW Instek GDM-834x Digital Multimeter - USB: cdc-acm: fix minor-number release - [arm*] binder: make sure fd closes complete - [arm64,armhf] usb: dwc3: core: balance phy init and exit - usb: core: hcd: Add support for deferring roothub registration - USB: serial: mos7840: remove duplicated 0xac24 device ID - USB: serial: option: add Telit LN920 compositions - USB: serial: option: remove duplicate USB device ID - USB: serial: option: add device id for Foxconn T99W265 - erofs: fix up erofs_lookup tracepoint - btrfs: prevent __btrfs_dump_space_info() to underflow its free space - xhci: Set HCD flag to defer primary roothub registration - [arm64] serial: mvebu-uart: fix driver's tx_empty callback - scsi: sd_zbc: Ensure buffer size is aligned to SECTOR_SIZE - net: hso: fix muxed tty registration - afs: Fix incorrect triggering of sillyrename on 3rd-party invalidation - afs: Fix updating of i_blocks on file/dir extension - [arm64] enetc: Fix illegal access when reading affinity_hint - [arm64] enetc: Fix uninitialized struct dim_sample field usage - bnxt_en: Fix TX timeout when TX ring size is set to the smallest - [arm64] net: hns3: fix change RSS 'hfunc' ineffective issue - [arm64] net: hns3: check queue id range before using - net/smc: add missing error check in smc_clc_prfx_set() - net/smc: fix 'workqueue leaked lock' in smc_conn_abort_work - [arm64,armhf] net: dsa: don't allocate the slave_mii_bus using devres - [s390x] qeth: fix NULL deref in qeth_clear_working_pool_list() - qed: rdma - don't wait for resources under hw error recovery flow - net/mlx4_en: Don't allow aRFS for encapsulated packets - atlantic: Fix issue in the pm resume flow. - scsi: iscsi: Adjust iface sysfs attr detection - scsi: target: Fix the pgr/alua_support_store functions - [x86] tty: synclink_gt, drop unneeded forward declarations - [x86] tty: synclink_gt: rename a conflicting function name - nvme-tcp: fix incorrect h2cdata pdu offset accounting - treewide: Change list_sort to use const pointers - nvme: keep ctrl->namespaces ordered - thermal/core: Potential buffer overflow in thermal_build_list_of_policies() - cifs: fix a sign extension bug - scsi: qla2xxx: Restore initiator in dual mode - scsi: lpfc: Use correct scnprintf() limit - [arm64,armhf] irqchip/gic-v3-its: Fix potential VPE leak on error - md: fix a lock order reversal in md_alloc - [x86] asm: Add a missing __iomem annotation in enqcmds() - [x86] asm: Fix SETZ size enqcmds() build failure - io_uring: put provided buffer meta data under memcg accounting - blktrace: Fix uaf in blk_trace access after removing by sysfs - net: phylink: Update SFP selected interface on advertising changes - net: stmmac: allow CSR clock of 300MHz - blk-mq: avoid to iterate over stale request - ipv6: delay fib6_sernum increase in fib6_add - [x86] cpufreq: intel_pstate: Override parameters if HWP forced by BIOS - bpf: Add oversize check before call kvcalloc() - xen/balloon: use a kernel thread instead a workqueue - nvme-multipath: fix ANA state updates when a namespace is not present - nvme-rdma: destroy cm id before destroy qp to avoid use after free - amd/display: downgrade validation failure log level - block: check if a profile is actually registered in blk_integrity_unregister - block: flush the integrity workqueue in blk_integrity_unregister - blk-cgroup: fix UAF by grabbing blkcg lock before destroying blkg pd - qnx4: avoid stringop-overread errors - [arm64] Mark __stack_chk_guard as __ro_after_init - net: 6pack: Fix tx timeout and slot time - [x86] thermal/drivers/int340x: Do not set a wrong tcc offset on resume - USB: serial: cp210x: fix dropped characters with CP2102 - xen/balloon: fix balloon kthread freezing . [ Salvatore Bonaccorso ] * Refresh "MODSIGN: do not load mok when secure boot disabled" * Refresh "MODSIGN: load blacklist from MOKx" * [rt] Update to 5.10.47-rt46 - sched: Fix migration_cpu_stop() requeueing - sched: Simplify migration_cpu_stop() - sched: Collate affine_move_task() stoppers - sched: Optimize migration_cpu_stop() - sched: Fix affine_move_task() self-concurrency - sched: Simplify set_affinity_pending refcounts - sched: Don't defer CPU pick to migration_cpu_stop() * Bump ABI to 9 * Disalbe PSTORE_BLK (Marked broken upstream) * Refresh "fs: Add MODULE_SOFTDEP declarations for hard-coded crypto drivers" * [rt] Update to 5.10.52-rt47 * [rt] Refresh "sched: Fix balance_callback()" * [rt] Drop "timers: Move clearing of base::timer_running under base::lock" (applied upstream) * [rt] Refresh "net/Qdisc: use a seqlock instead seqcount" * [rt] Refresh "net: xfrm: Use sequence counter with associated" * [rt] Update to 5.10.59-rt51 * [rt] Update to 5.10.59-rt52 * [rt] Update to 5.10.65-rt53 * Refresh "Partially revert "net: socket: implement 64-bit timestamps"" * [armhf] dts: sun7i: A20-olinuxino-lime2: Fix ethernet phy-mode * [mipsel] bpf, mips: Validate conditional branch offsets (CVE-2021-38300) linux-signed-arm64 (5.10.46+5) bullseye-security; urgency=high . * Sign kernel from linux 5.10.46-5 . * virtio_console: Assure used length from device is limited (CVE-2021-38160) * NFSv4: Initialise connection to the server in nfs4_alloc_client() (CVE-2021-38199) * tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. (CVE-2021-3679) * [poewrpc*] KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow (CVE-2021-37576) * ovl: prevent private clone if bind mount is not allowed (CVE-2021-3732) * [x86] KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653) * [x86] KVM: nSVM: always intercept VMLOAD/VMSAVE when nested (CVE-2021-3656) * bpf: Fix integer overflow involving bucket_size (CVE-2021-38166) * ath: Use safer key clearing with key cache entries (CVE-2020-3702) * ath9k: Clear key cache explicitly on disabling hardware (CVE-2020-3702) * ath: Export ath_hw_keysetmac() (CVE-2020-3702) * ath: Modify ath_key_delete() to not need full key entry (CVE-2020-3702) * ath9k: Postpone key cache entry deletion for TXQ frames reference it (CVE-2020-3702) * btrfs: fix NULL pointer dereference when deleting device by invalid id (CVE-2021-3739) * net: qrtr: fix another OOB Read in qrtr_endpoint_post (CVE-2021-3743) * vt_kdsetmode: extend console locking (CVE-2021-3753) * ext4: fix race writing to an inline_data file while its xattrs are changing (CVE-2021-40490) * dccp: don't duplicate ccid when cloning dccp sock (CVE-2020-16119) * io_uring: ensure symmetry in handling iter types in loop_rw_iter() (CVE-2021-41073) * netfilter: nftables: avoid potential overflows on 32bit arches * netfilter: nf_tables: initialize set before expression setup (Closes: #993978) * netfilter: nftables: clone set element expression template * bnx2x: Fix enabling network interfaces without VFs (Closes: #993948) linux-signed-i386 (5.10.70+1) bullseye; urgency=medium . * Sign kernel from linux 5.10.70-1 . * New upstream stable update: https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.47 - module: limit enabling module.sig_enforce (CVE-2021-35039) - drm: add a locked version of drm_is_current_master - drm/nouveau: wait for moving fence after pinning v2 - drm/radeon: wait for moving fence after pinning - drm/amdgpu: wait for moving fence after pinning - [arm64] mmc: meson-gx: use memcpy_to/fromio for dram-access-quirk - [arm64] Ignore any DMA offsets in the max_zone_phys() calculation - [arm64] Force NO_BLOCK_MAPPINGS if crashkernel reservation is required - [arm64] spi: spi-nxp-fspi: move the register operation after the clock enable - [arm*] drm/vc4: hdmi: Move the HSM clock enable to runtime_pm - [arm*] drm/vc4: hdmi: Make sure the controller is powered in detect - [x86] entry: Fix noinstr fail in __do_fast_syscall_32() - [amd64] x86/xen: Fix noinstr fail in exc_xen_unknown_trap() - locking/lockdep: Improve noinstr vs errors - [x86] perf/x86/lbr: Remove cpuc->lbr_xsave allocation from atomic context - [x86] perf/x86/intel/lbr: Zero the xstate buffer on allocation - [armhf] dmaengine: stm32-mdma: fix PM reference leak in stm32_mdma_alloc_chan_resourc() - mac80211: remove warning in ieee80211_get_sband() - mac80211_hwsim: drop pending frames on stop - cfg80211: call cfg80211_leave_ocb when switching away from OCB - net: ipv4: Remove unneed BUG() function - mac80211: drop multicast fragments - net: ethtool: clear heap allocations for ethtool function - inet: annotate data race in inet_send_prepare() and inet_dgram_connect() - ping: Check return value of function 'ping_queue_rcv_skb' - net: annotate data race in sock_error() - inet: annotate date races around sk->sk_txhash - net/packet: annotate data race in packet_sendmsg() - net: phy: dp83867: perform soft reset and retain established link - net/packet: annotate accesses to po->bind - net/packet: annotate accesses to po->ifindex - r8152: Avoid memcpy() over-reading of ETH_SS_STATS - r8169: Avoid memcpy() over-reading of ETH_SS_STATS - net: qed: Fix memcpy() overflow of qed_dcbx_params() - mac80211: reset profile_periodicity/ema_ap - mac80211: handle various extensible elements correctly - [x86] PCI: Add AMD RS690 quirk to enable 64-bit DMA - [x86] perf/x86: Track pmu in per-CPU cpu_hw_events - [armhf] pinctrl: stm32: fix the reported number of GPIO lines per bank - i2c: i801: Ensure that SMBHSTSTS_INUSE_STS is cleared when leaving i801_access - gpiolib: cdev: zero padding during conversion to gpioline_info_changed - scsi: sd: Call sd_revalidate_disk() for ioctl(BLKRRPART) - nilfs2: fix memory leak in nilfs_sysfs_delete_device_group - [s390x] stack: fix possible register corruption with stack switch helper - i2c: robotfuzz-osif: fix control-request directions - ceph: must hold snap_rwsem when filling inode for async create - kthread_worker: split code for canceling the delayed work timer - kthread: prevent deadlock when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [x86] fpu: Preserve supervisor states in sanitize_restored_user_xstate() - [x86] fpu: Make init_fpstate correct with optimized XSAVE - mm: add VM_WARN_ON_ONCE_PAGE() macro - mm/rmap: remove unneeded semicolon in page_not_mapped() - mm/rmap: use page_not_mapped in try_to_unmap() - mm, thp: use head page in __migration_entry_wait() - mm/thp: fix __split_huge_pmd_locked() on shmem migration entry - mm/thp: make is_huge_zero_pmd() safe and quicker - mm/thp: try_to_unmap() use TTU_SYNC for safe splitting - mm/thp: fix vma_address() if virtual address below file offset - mm/thp: fix page_address_in_vma() on file THP tails - mm/thp: unmap_mapping_page() to fix THP truncate_cleanup_page() - mm: thp: replace DEBUG_VM BUG with VM_WARN when unmap fails for split - mm: page_vma_mapped_walk(): use page for pvmw->page - mm: page_vma_mapped_walk(): settle PageHuge on entry - mm: page_vma_mapped_walk(): use pmde for *pvmw->pmd - mm: page_vma_mapped_walk(): prettify PVMW_MIGRATION block - mm: page_vma_mapped_walk(): crossing page table boundary - mm: page_vma_mapped_walk(): add a level of indentation - mm: page_vma_mapped_walk(): use goto instead of while (1) - mm: page_vma_mapped_walk(): get vma_address_end() earlier - mm/thp: fix page_vma_mapped_walk() if THP mapped by ptes - mm/thp: another PVMW_SYNC fix in page_vma_mapped_walk() - mm, futex: fix shared futex pgoff on shmem huge page - [x86] KVM: SVM: Call SEV Guest Decommission if ASID binding fails - netfs: fix test for whether we can skip read when writing beyond EOF - Revert "drm: add a locked version of drm_is_current_master" - certs: Add EFI_CERT_X509_GUID support for dbx entries (CVE-2020-26541) - certs: Move load_system_certificate_list to a common function - certs: Add ability to preload revocation certs - integrity: Load mokx variables into the blacklist keyring https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.48 - scsi: sr: Return appropriate error code when disk is ejected - [arm64,armhf] gpio: mxc: Fix disabled interrupt wake-up support - drm/nouveau: fix dma_address check for CPU/GPU sync - RDMA/mlx5: Block FDB rules when not in switchdev mode - [x86] Revert "KVM: x86/mmu: Drop kvm_mmu_extended_role.cr4_la57 hack" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.49 - [powerpc*] KVM: PPC: Book3S HV: Save and restore FSCR in the P9 path - media: uvcvideo: Support devices that report an OT as an entity source - xen/events: reset active flag for lateeoi events later https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.50 - Bluetooth: hci_qca: fix potential GPF - Bluetooth: btqca: Don't modify firmware contents in-place - Bluetooth: Remove spurious error message - ALSA: usb-audio: fix rate on Ozone Z90 USB headset - ALSA: usb-audio: Fix OOB access at proc output - ALSA: firewire-motu: fix stream format for MOTU 8pre FireWire - ALSA: usb-audio: scarlett2: Fix wrong resume call - ALSA: intel8x0: Fix breakage at ac97 clock measurement - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 450 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 445 G8 - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 630 G8 - ALSA: hda/realtek: Add another ALC236 variant support - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook x360 830 G8 - ALSA: hda/realtek: Improve fixup for HP Spectre x360 15-df0xxx - ALSA: hda/realtek: Fix bass speaker DAC mapping for Asus UM431D - ALSA: hda/realtek: Apply LED fixup for HP Dragonfly G1, too - ALSA: hda/realtek: fix mute/micmute LEDs for HP EliteBook 830 G8 Notebook PC - media: dvb-usb: fix wrong definition - Input: usbtouchscreen - fix control-request directions - net: can: ems_usb: fix use-after-free in ems_usb_disconnect() - usb: gadget: eem: fix echo command packet response issue - USB: cdc-acm: blacklist Heimann USB Appset device - [arm64,armhf] usb: dwc3: Fix debugfs creation flow - usb: typec: Add the missed altmode_id_remove() in typec_register_altmode() - xhci: solve a double free problem while doing s4 - gfs2: Fix underflow in gfs2_page_mkwrite - gfs2: Fix error handling in init_statfs - copy_page_to_iter(): fix ITER_DISCARD case - iov_iter_fault_in_readable() should do nothing in xarray case - [powerpc*] crypto: nx - Fix memcpy() over-reading in nonce - [amd64] crypto: ccp - Annotate SEV Firmware file names - [armel,armhf] arm_pmu: Fix write counter incorrect in ARMv7 big-endian mode - btrfs: send: fix invalid path for unlink operations after parent orphanization - btrfs: compression: don't try to compress if we don't have enough pages - btrfs: clear defrag status of a root if starting transaction fails - ext4: cleanup in-core orphan list if ext4_truncate() failed to get a transaction handle - ext4: fix kernel infoleak via ext4_extent_header - ext4: fix overflow in ext4_iomap_alloc() - ext4: return error code when ext4_fill_flex_info() fails - ext4: correct the cache_nr in tracepoint ext4_es_shrink_exit - ext4: remove check for zero nr_to_scan in ext4_es_scan() - ext4: fix avefreec in find_group_orlov - ext4: use ext4_grp_locked_error in mb_find_extent - can: gw: synchronize rcu operations before removing gw job entry - can: isotp: isotp_release(): omit unintended hrtimer restart on socket release - can: j1939: j1939_sk_init(): set SOCK_RCU_FREE to call sk_destruct() after RCU is done - can: peak_pciefd: pucan_handle_status(): fix a potential starvation issue in TX path - mac80211: remove iwlwifi specific workaround that broke sta NDP tx - SUNRPC: Fix the batch tasks count wraparound. - SUNRPC: Should wake up the privileged task firstly. - bus: mhi: Wait for M2 state during system resume - mm/gup: fix try_grab_compound_head() race with split_huge_page() - [arm64] perf/smmuv3: Don't trample existing events with global filter - [x86] KVM: nVMX: Handle split-lock #AC exceptions that happen in L2 - [x86] KVM: x86/mmu: Treat NX as used (not reserved) for all !TDP shadow MMUs - [x86] KVM: x86/mmu: Use MMU's role to detect CR4.SMEP value in nested NPT walk - [s390x] cio: dont call css_wait_for_slow_path() inside a lock - [s390x] mm: Fix secure storage access exception handling - f2fs: Prevent swap file in LFS mode - [armhf] rtc: stm32: Fix unbalanced clk_disable_unprepare() on probe error path - iio: light: tcs3472: do not free unallocated IRQ - iio: ltr501: mark register holding upper 8 bits of ALS_DATA{0,1} and PS_DATA as volatile, too - iio: ltr501: ltr559: fix initialization of LTR501_ALS_CONTR - iio: ltr501: ltr501_read_ps(): add missing endianness conversion - iio: accel: bma180: Fix BMA25x bandwidth register values - [arm64] serial: mvebu-uart: fix calculation of clock divisor - [sh4] serial: sh-sci: Stop dmaengine transfer in sci_stop_tx() - serial_cs: Add Option International GSM-Ready 56K/ISDN modem - serial_cs: remove wrong GLOBETROTTER.cis entry - ath9k: Fix kernel NULL pointer dereference during ath_reset_internal() - ssb: sdio: Don't overwrite const buffer if block_write fails - rsi: Assign beacon rate settings to the correct rate_info descriptor field - rsi: fix AP mode with WPA failure due to encrypted EAPOL - tracepoint: Add tracepoint_probe_register_may_exist() for BPF tracing - seq_buf: Make trace_seq_putmem_hex() support data longer than 8 - [powerpc*] stacktrace: Fix spurious "stale" traces in raise_backtrace_ipi() - loop: Fix missing discard support when using LOOP_CONFIGURE - fuse: Fix crash in fuse_dentry_automount() error path - fuse: Fix crash if superblock of submount gets killed early - fuse: Fix infinite loop in sget_fc() - fuse: ignore PG_workingset after stealing - fuse: check connected before queueing on fpq->io - fuse: reject internal errno - [arm*] thermal/cpufreq_cooling: Update offline CPUs per-cpu thermal_pressure - spi: Make of_register_spi_device also set the fwnode - Add a reference to ucounts for each cred - media: marvel-ccic: fix some issues when getting pm_runtime - [i386] spi: spi-topcliff-pch: Fix potential double free in pch_spi_process_messages() - sched/core: Initialize the idle task with preemption disabled - [armhf] hwrng: exynos - Fix runtime PM imbalance on error - [powerpc*] crypto: nx - add missing MODULE_DEVICE_TABLE - media: cpia2: fix memory leak in cpia2_usb_probe - [arm64,armhf] media: hevc: Fix dependent slice segment flags - media: pvrusb2: fix warning in pvr2_i2c_core_done - [armhf] media: imx: imx7_mipi_csis: Fix logging of only error event counters - [x86] crypto: qat - check return code of qat_hal_rd_rel_reg() - [x86] crypto: qat - remove unused macro in FW loader - [arm64] crypto: qce: skcipher: Fix incorrect sg count for dma transfers - [arm64] perf: Convert snprintf to sysfs_emit - sched/fair: Fix ascii art by relpacing tabs - media: bt878: do not schedule tasklet when it is not setup - media: em28xx: Fix possible memory leak of em28xx struct - media: v4l2-core: Avoid the dangling pointer in v4l2_fh_release - media: bt8xx: Fix a missing check bug in bt878_probe - media: dvd_usb: memory leak in cinergyt2_fe_attach - memstick: rtsx_usb_ms: fix UAF - mmc: via-sdmmc: add a check against NULL pointer dereference - [arm64,armhf] spi: meson-spicc: fix a wrong goto jump for avoiding memory leak. - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_probe - crypto: shash - avoid comparing pointers to exported functions under CFI - media: dvb_net: avoid speculation from net slot - media: siano: fix device register error path - [armhf] media: imx-csi: Skip first few frames from a BT.656 source - [powerpc*] KVM: PPC: Book3S HV: Fix TLB management on SMT8 POWER9 and POWER10 processors - btrfs: fix error handling in __btrfs_update_delayed_inode - btrfs: abort transaction if we fail to update the delayed inode - btrfs: sysfs: fix format string for some discard stats - btrfs: don't clear page extent mapped if we're not invalidating the full page - btrfs: disable build on platforms having page size 256K - [s390x] KVM: get rid of register asm usage - [armhf] regulator: da9052: Ensure enough delay time for .set_voltage_time_sel - [x86] ACPI: video: use native backlight for GA401/GA502/GA503 - HID: do not use down_interruptible() when unbinding devices - ACPI: processor idle: Fix up C-state latency if not ordered - [x86] hv_utils: Fix passing zero to 'PTR_ERR' warning - lib: vsprintf: Fix handling of number field widths in vsscanf - ACPI: EC: Make more Asus laptops use ECDT _GPE - block_dump: remove block_dump feature in mark_inode_dirty() - blk-mq: grab rq->refcount before calling ->fn in blk_mq_tagset_busy_iter - blk-mq: clear stale request in tags->rq[] before freeing one request pool - fs: dlm: cancel work sync othercon - random32: Fix implicit truncation warning in prandom_seed_state() - open: don't silently ignore unknown O-flags in openat2() - [x86] drivers: hv: Fix missing error code in vmbus_connect() - fs: dlm: fix memory leak when fenced - ACPICA: Fix memory leak caused by _CID repair function - ACPI: bus: Call kobject_put() in acpi_init() error path - ACPI: resources: Add checks for ACPI IRQ override - block: fix race between adding/removing rq qos and normal IO - [x86] platform/x86: asus-nb-wmi: Revert "Drop duplicate DMI quirk structures" - [x86] platform/x86: asus-nb-wmi: Revert "add support for ASUS ROG Zephyrus G14 and G15" - [x86] platform/x86: toshiba_acpi: Fix missing error code in toshiba_acpi_setup_keyboard() - nvme-pci: fix var. type for increasing cq_head - nvmet-fc: do not check for invalid target port in nvmet_fc_handle_fcp_rqst() - [amd64] EDAC/Intel: Do not load EDAC driver when running as a guest - [amd64] PCI: hv: Add check for hyperv_initialized in init_hv_pci_drv() - cifs: improve fallocate emulation - ACPI: EC: trust DSDT GPE for certain HP laptop - clocksource: Retry clock read if long delays detected - clocksource: Check per-CPU clock synchronization when marked unstable - tpm_tis_spi: add missing SPI device ID entries - ACPI: tables: Add custom DSDT file as makefile prerequisite - HID: wacom: Correct base usage for capacitive ExpressKey status bits - cifs: fix missing spinlock around update to ses->status - [arm64] mailbox: qcom: Use PLATFORM_DEVID_AUTO to register platform device - block: fix discard request merge - kthread_worker: fix return value when kthread_mod_delayed_work() races with kthread_cancel_delayed_work_sync() - [ia64] mca_drv: fix incorrect array size calculation - writeback, cgroup: increment isw_nr_in_flight before grabbing an inode - spi: Allow to have all native CSs in use along with GPIOs - spi: Avoid undefined behaviour when counting unused native CSs - [arm64] media: venus: Rework error fail recover logic - [armhf] sata_highbank: fix deferred probing - sched/uclamp: Fix wrong implementation of cpu.uclamp.min - sched/uclamp: Fix locking around cpu_util_update_eff() - [mips*] pata_octeon_cf: avoid WARN_ON() in ata_host_activate() - [x86] elf: Use _BITUL() macro in UAPI headers - [x86] crypto: ccp - Fix a resource leak in an error handling path - media: rc: i2c: Fix an error message - media: au0828: fix a NULL vs IS_ERR() check - media: gspca/gl860: fix zero-length control requests - media: siano: Fix out-of-bounds warnings in smscore_load_firmware_family2() - [arm64] crypto: nitrox - fix unchecked variable in nitrox_register_interrupts - [amd64] crypto: x86/curve25519 - fix cpu feature checking logic in mod_exit - [arm64[ consistently use reserved_pg_dir - [arm64] mm: Fix ttbr0 values stored in struct thread_info for software-pan - media: subdev: remove VIDIOC_DQEVENT_TIME32 handling - hwmon: (lm70) Use device_get_match_data() - hwmon: (lm70) Revert "hwmon: (lm70) Add support for ACPI" - [x86] KVM: nVMX: Sync all PGDs on nested transition with shadow paging - [x86] KVM: nVMX: Ensure 64-bit shift when checking VMFUNC bitmap - [x86] KVM: nVMX: Don't clobber nested MMU's A/D status on EPTP switch - [x86] KVM: x86/mmu: Fix return value in tdp_mmu_map_handle_target_level() - [arm64] perf/arm-cmn: Fix invalid pointer when access dtc object sharing the same IRQ number - [arm64] KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set - [arm64] regulator: hi655x: Fix pass wrong pointer to config.driver_data - btrfs: clear log tree recovering status if starting transaction fails - sched/rt: Fix RT utilization tracking during policy change - sched/rt: Fix Deadline utilization tracking during policy change - sched/uclamp: Fix uclamp_tg_restrict() - [armhf] spi: spi-sun6i: Fix chipselect/clock bug - [powerpc*] crypto: nx - Fix RCU warning in nx842_OF_upd_status - psi: Fix race between psi_trigger_create/destroy - media: v4l2-async: Clean v4l2_async_notifier_add_fwnode_remote_subdev - [armhf] media: video-mux: Skip dangling endpoints - PM / devfreq: Add missing error code in devfreq_add_device() - ACPI: PM / fan: Put fan device IDs into separate header file - block: avoid double io accounting for flush request - nvme-pci: look for StorageD3Enable on companion ACPI device instead - ACPI: sysfs: Fix a buffer overrun problem with description_show() - mark pstore-blk as broken - [armhf] clocksource/drivers/timer-ti-dm: Save and restore timer TIOCP_CFG - ACPI: APEI: fix synchronous external aborts in user-mode - blk-wbt: introduce a new disable state to prevent false positive by rwb_enabled() - blk-wbt: make sure throttle is enabled properly - ACPI: Use DEVICE_ATTR_ macros - ACPI: bgrt: Fix CFI violation - cpufreq: Make cpufreq_online() call driver->offline() on errors - blk-mq: update hctx->dispatch_busy in case of real scheduler - ocfs2: fix snprintf() checking - dax: fix ENOMEM handling in grab_mapping_entry() - swap: fix do_swap_page() race with swapoff - mm/shmem: fix shmem_swapin() race with swapoff - mm: memcg/slab: properly set up gfp flags for objcg pointer array - mm: page_alloc: refactor setup_per_zone_lowmem_reserve() - mm/page_alloc: fix counting of managed_pages - xfrm: xfrm_state_mtu should return at least 1280 for ipv6 - drm/bridge: Fix the stop condition of drm_bridge_chain_pre_enable() - drm/ast: Fix missing conversions to managed API - [arm64,armhf] net: mvpp2: Put fwnode in error case during ->probe() - [i386] net: pch_gbe: Propagate error from devm_gpio_request_one() - [x86] drm/vmwgfx: Mark a surface gpu-dirty after the SVGA3dCmdDXGenMips command - [x86] drm/vmwgfx: Fix cpu updates of coherent multisample surfaces - net: qrtr: ns: Fix error return code in qrtr_ns_init() - [arm64] clk: meson: g12a: fix gp0 and hifi ranges - [armhf] net: ftgmac100: add missing error return code in ftgmac100_probe() - [arm64,armhf] drm: rockchip: set alpha_en to 0 if it is not used - [arm64] drm/rockchip: cdn-dp-core: add missing clk_disable_unprepare() on error in cdn_dp_grf_write() - [arm64,armhf] drm/rockchip: dsi: move all lane config except LCDC mux to bind() - [arm64] drm/rockchip: cdn-dp: fix sign extension on an int multiply for a u64 result - RDMA/srp: Fix a recently introduced memory leak - [powerpc*] ehea: fix error return code in ehea_restart_qps() - xfrm: remove the fragment check for ipv6 beet mode - net/sched: act_vlan: Fix modify to allow 0 - RDMA/core: Sanitize WQ state received from the userspace - RDMA/rxe: Fix failure during driver load - [arm*] drm/vc4: hdmi: Fix error path of hpd-gpios - drm: qxl: ensure surf.data is ininitialized - tools/bpftool: Fix error return code in do_batch() - ath10k: go to path err_unsupported when chip id is not supported - ath10k: add missing error return code in ath10k_pci_probe() - wireless: carl9170: fix LEDS build errors & warnings - ieee802154: hwsim: Fix possible memory leak in hwsim_subscribe_all_others - [arm64] clk: imx8mq: remove SYS PLL 1/2 clock gates - [arm64] wcn36xx: Move hal_buf allocation to devm_kmalloc in probe - ssb: Fix error return code in ssb_bus_scan() - brcmfmac: fix setting of station info chains bitmask - brcmfmac: correctly report average RSSI in station info - brcmfmac: Fix a double-free in brcmf_sdio_bus_reset - brcmsmac: mac80211_if: Fix a resource leak in an error handling path - ath11k: Fix an error handling path in ath11k_core_fetch_board_data_api_n() - ath10k: Fix an error code in ath10k_add_interface() - ath11k: send beacon template after vdev_start/restart during csa - netlabel: Fix memory leak in netlbl_mgmt_add_common - RDMA/mlx5: Don't add slave port to unaffiliated list - netfilter: nft_exthdr: check for IPv6 packet before further processing - netfilter: nft_osf: check for TCP packet before further processing - netfilter: nft_tproxy: restrict support to TCP and UDP transport protocols - RDMA/rxe: Fix qp reference counting for atomic ops - xsk: Fix missing validation for skb and unaligned mode - xsk: Fix broken Tx ring validation - bpf: Fix libelf endian handling in resolv_btfids - mt76: fix possible NULL pointer dereference in mt76_tx - vrf: do not push non-ND strict packets with a source LLA through packet taps again - net: sched: add barrier to ensure correct ordering for lockless qdisc - netfilter: nf_tables_offload: check FLOW_DISSECTOR_KEY_BASIC in VLAN transfer logic - pkt_sched: sch_qfq: fix qfq_change_class() error path - xfrm: Fix xfrm offload fallback fail case - iwlwifi: increase PNVM load timeout - rtw88: 8822c: fix lc calibration timing - vxlan: add missing rcu_read_lock() in neigh_reduce() - ip6_tunnel: fix GRE6 segmentation - net/ipv4: swap flow ports when validating source - ieee802154: hwsim: Fix memory leak in hwsim_add_one - ieee802154: hwsim: avoid possible crash in hwsim_del_edge_nl() - bpf: Fix null ptr deref with mixed tail calls and subprogs - [arm64] drm/msm: Fix error return code in msm_drm_init() - [arm64] drm/msm/dpu: Fix error return code in dpu_mdss_init() - mac80211: remove iwlwifi specific workaround NDPs of null_response - net: bcmgenet: Fix attaching to PYH failed on RPi 4B - ipv6: exthdrs: do not blindly use init_net - can: j1939: j1939_sk_setsockopt(): prevent allocation of j1939 filter for optlen == 0 - bpf: Do not change gso_size during bpf_skb_change_proto() - i40e: Fix error handling in i40e_vsi_open - i40e: Fix autoneg disabling for non-10GBaseT links - i40e: Fix missing rtnl locking when setting up pf switch - RDMA/cma: Protect RMW with qp_mutex - net: macsec: fix the length used to copy the key for offloading - net: phy: mscc: fix macsec key length - ipv6: fix out-of-bound access in ip6_parse_tlv() - e1000e: Check the PCIm state - RDMA/cma: Fix incorrect Packet Lifetime calculation - [amd64] gve: Fix swapped vars when fetching max queues - Revert "be2net: disable bh with spin_lock in be_process_mcc" - Bluetooth: mgmt: Fix slab-out-of-bounds in tlv_data_is_valid - Bluetooth: Fix not sending Set Extended Scan Response - Bluetooth: Fix Set Extended (Scan Response) Data - Bluetooth: Fix handling of HCI_LE_Advertising_Set_Terminated event - [arm64] clk: qcom: clk-alpha-pll: fix CAL_L write in alpha_pll_fabia_prepare - writeback: fix obtain a reference to a freeing memcg css - net: lwtunnel: handle MTU calculation in forwading - net: sched: fix warning in tcindex_alloc_perfect_hash - net: tipc: fix FB_MTU eat two pages - RDMA/mlx5: Don't access NULL-cleared mpi pointer - RDMA/core: Always release restrack object - [mips*] Fix PKMAP with 32-bit MIPS huge page support - [x86] ASoC: rt5682: Disable irq on shutdown - rcu: Invoke rcu_spawn_core_kthreads() from rcu_spawn_gp_kthread() - [arm64] serial: fsl_lpuart: don't modify arbitrary data on lpuart32 - [arm64] serial: fsl_lpuart: remove RTSCTS handling from get_mctrl() - tty: nozomi: Fix a resource leak in an error handling function - mwifiex: re-fix for unaligned accesses - iio: adis_buffer: do not return ints in irq handlers - iio: adis16475: do not return ints in irq handlers - [arm64] ASoC: hisilicon: fix missing clk_disable_unprepare() on error in hi6210_i2s_startup() - mtd: partitions: redboot: seek fis-index-block in the right node - [arm*] staging: mmal-vchiq: Fix incorrect static vchiq_instance. - char: pcmcia: error out if 'num_bytes_read' is greater than 4 in set_protocol() - leds: class: The -ENOTSUPP should never be seen by user space - scsi: FlashPoint: Rename si_flags field - scsi: iscsi: Flush block work before unblock - [armhf] fsi: core: Fix return of error values on failures - [armhf] fsi: scom: Reset the FSI2PIB engine for any error - [armhf] fsi: occ: Don't accept response from un-initialized OCC - [armhf] fsi/sbefifo: Clean up correct FIFO when receiving reset request from SBE - [armhf] fsi/sbefifo: Fix reset timeout - [amd64] iommu/amd: Fix extended features logging - [s390x] irq: select HAVE_IRQ_EXIT_ON_IRQ_STACK - [s390x] enable HAVE_IOREMAP_PROT - [s390x] appldata depends on PROC_SYSCTL - [amd64,arm64] iommu/dma: Fix IOVA reserve dma ranges - ASoC: max98373-sdw: use first_hw_init flag on resume - ASoC: rt1308-sdw: use first_hw_init flag on resume - ASoC: rt5682-sdw: use first_hw_init flag on resume - ASoC: rt700-sdw: use first_hw_init flag on resume - ASoC: rt711-sdw: use first_hw_init flag on resume - ASoC: rt715-sdw: use first_hw_init flag on resume - ASoC: rt5682: fix getting the wrong device id when the suspend_stress_test - ASoC: rt5682-sdw: set regcache_cache_only false before reading RT5682_DEVICE_ID - usb: gadget: f_fs: Fix setting of device and driver data cross-references - [arm*] usb: dwc2: Don't reset the core after setting turnaround time - [armhf] ASoC: fsl_spdif: Fix error handler with pm_runtime_enable - staging: rtl8712: fix error handling in r871xu_drv_init - staging: rtl8712: fix memory leak in rtl871x_load_fw_cb - serial: 8250: Actually allow UPF_MAGIC_MULTIPLIER baud rates - of: Fix truncation of memory sizes on 32-bit platforms - [armhf] mtd: rawnand: marvell: add missing clk_disable_unprepare() on error in marvell_nfc_resume() - scsi: mpt3sas: Fix error return value in _scsih_expander_add() - soundwire: stream: Fix test for DP prepare complete - [powerpc*] powernv: Fix machine check reporting of async store errors - configfs: fix memleak in configfs_release_bin_file - [x86] ASoC: Intel: sof_sdw: add SOF_RT715_DAI_ID_FIX for AlderLake - [armhf] ASoC: fsl_spdif: Fix unexpected interrupt after suspend - [powerpc*] Offline CPU in stop_this_cpu() - [powerpc*] papr_scm: Properly handle UUID types and API - [powerpc*] 64s: Fix copy-paste data exposure into newly created tasks - [powerpc*] papr_scm: Make 'perf_stats' invisible if perf-stats unavailable - ALSA: firewire-lib: Fix 'amdtp_domain_start()' when no AMDTP_OUT_STREAM stream is found - [arm64] serial: mvebu-uart: do not allow changing baudrate when uartclk is not available - [arm64] serial: mvebu-uart: correctly calculate minimal possible baudrate - vfio/pci: Handle concurrent vma faults - mm/pmem: avoid inserting hugepage PTE entry with fsdax if hugepage support is disabled - mm/huge_memory.c: remove dedicated macro HPAGE_CACHE_INDEX_MASK - mm/huge_memory.c: add missing read-only THP checking in transparent_hugepage_enabled() - mm/huge_memory.c: don't discard hugepage if other processes are mapping it - mm/hugetlb: use helper huge_page_order and pages_per_huge_page - mm/hugetlb: remove redundant check in preparing and destroying gigantic page - hugetlb: remove prep_compound_huge_page cleanup - include/linux/huge_mm.h: remove extern keyword - mm/z3fold: fix potential memory leak in z3fold_destroy_pool() - mm/z3fold: use release_z3fold_page_locked() to release locked z3fold page - lib/math/rational.c: fix divide by zero - exfat: handle wrong stream entry size in exfat_readdir() - scsi: fc: Correct RHBA attributes length - scsi: target: cxgbit: Unmap DMA buffer before calling target_execute_cmd() - fscrypt: don't ignore minor_hash when hash is 0 - fscrypt: fix derivation of SipHash keys on big endian CPUs - tpm: Replace WARN_ONCE() with dev_err_once() in tpm_tis_status() - erofs: fix error return code in erofs_read_superblock() - io_uring: fix blocking inline submission - mmc: block: Disable CMDQ on the ioctl path - mmc: vub3000: fix control-request direction - scsi: core: Retry I/O for Notify (Enable Spinup) Required error - [arm64] crypto: qce - fix error return code in qce_skcipher_async_req_handle() - [s390x] preempt: Fix preempt_count initialization - cred: add missing return error code when set_cred_ucounts() failed - [amd64,arm64] iommu/dma: Fix compile warning in 32-bit builds - [powerpc*] preempt: Don't touch the idle task's preempt_count during hotplug https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.51 - drm/ast: Fixed CVE for DP501 - drm/amd/amdgpu/sriov disable all ip hw status by default - [arm*] drm/vc4: fix argument ordering in vc4_crtc_get_margins() - [i386] net: pch_gbe: Use proper accessors to BE data in pch_ptp_match() - hugetlb: clear huge pte during flush function on mips platform - atm: iphase: fix possible use-after-free in ia_module_exit() - mISDN: fix possible use-after-free in HFC_cleanup() - atm: nicstar: Fix possible use-after-free in nicstar_cleanup() - net: Treat __napi_schedule_irqoff() as __napi_schedule() on PREEMPT_RT - reiserfs: add check for invalid 1st journal block - drm/virtio: Fix double free on probe failure - net: mdio: provide shim implementation of devm_of_mdiobus_register - net/sched: cls_api: increase max_reclassify_loop - drm/scheduler: Fix hang when sched_entity released - drm/sched: Avoid data corruptions - udf: Fix NULL pointer dereference in udf_symlink function - [arm*] drm/vc4: Fix clock source for VEC PixelValve on BCM2711 - [arm*] drm/vc4: hdmi: Fix PM reference leak in vc4_hdmi_encoder_pre_crtc_co() - e100: handle eeprom as little endian - igb: handle vlan types with checker enabled - igb: fix assignment on big endian machines - net/mlx5e: IPsec/rep_tc: Fix rep_tc_update_skb drops IPsec packet - net/mlx5: Fix lag port remapping logic - [arm64,armhf] drm: rockchip: add missing registers for RK3188 - [arm64,armhf] drm: rockchip: add missing registers for RK3066 - net: stmmac: the XPCS obscures a potential "PHY not found" error - [arm64,armhf] clk: tegra: Fix refcounting of gate clocks - [arm64,armhf] clk: tegra: Ensure that PLLU configuration is applied properly - virtio-net: Add validation for used length - ipv6: use prandom_u32() for ID generation - [mips*] cpu-probe: Fix FPU detection on Ingenic JZ4760(B) - drm/amdgpu: remove unsafe optimization to drop preamble ib - net: tcp better handling of reordering then loss cases - RDMA/cxgb4: Fix missing error code in create_qp() - dm space maps: don't reset space map allocation cursor when committing - dm writecache: don't split bios when overwriting contiguous cache content - dm: Fix dm_accept_partial_bio() relative to zone management commands - [armhf] pinctrl: mcp23s08: fix race condition in irq handler - ice: set the value of global config lock timeout longer - virtio_net: Remove BUG() to avoid machine dead - [arm64] net: bcmgenet: check return value after calling platform_get_resource() - [arm64,armhf] net: mvpp2: check return value after calling platform_get_resource() - net: phy: realtek: add delay to fix RXC generation issue - [amd64] drm/amdkfd: use allowed domain for vmbo validation - [amd64] fjes: check return value after calling platform_get_resource() - selinux: use __GFP_NOWARN with GFP_NOWAIT in the AVC - r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM - xfrm: Fix error reporting in xfrm_state_construct. - dm writecache: commit just one block, not a full page - [arm64,armhf] wlcore/wl12xx: Fix wl12xx get_mac error if device is in ELP - [arm64,armhf] wl1251: Fix possible buffer overflow in wl1251_cmd_scan - ice: fix incorrect payload indicator on PTYPE - ice: mark PTYPE 2 as reserved - mt76: mt7615: fix fixed-rate tx status reporting - net: fix mistake path for netdev_features_strings - net: sched: fix error return code in tcf_del_walker() - io_uring: fix false WARN_ONCE - drm/amdgpu: fix bad address translation for sienna_cichlid - rtl8xxxu: Fix device info for RTL8192EU devices - [mips*] add PMD table accounting into MIPS'pmd_alloc_one - [arm64,armhf] net: fec: add ndo_select_queue to fix TX bandwidth fluctuations - atm: nicstar: use 'dma_free_coherent' instead of 'kfree' - atm: nicstar: register the interrupt handler in the right place - vsock: notify server to shutdown when client has pending signal - RDMA/rxe: Don't overwrite errno from ib_umem_get() - iwlwifi: mvm: don't change band on bound PHY contexts - iwlwifi: mvm: fix error print when session protection ends - iwlwifi: pcie: free IML DMA memory allocation - iwlwifi: pcie: fix context info freeing - sfc: avoid double pci_remove of VFs - sfc: error code if SRIOV cannot be disabled - wireless: wext-spy: Fix out-of-bounds warning - cfg80211: fix default HE tx bitrate mask in 2G band - mac80211: consider per-CPU statistics if present - mac80211_hwsim: add concurrent channels scanning support over virtio - IB/isert: Align target max I/O size to initiator size - net: ip: avoid OOM kills with large UDP sends over loopback - RDMA/cma: Fix rdma_resolve_route() memory leak - Bluetooth: btusb: Fixed too many in-token issue for Mediatek Chip. - Bluetooth: Fix the HCI to MGMT status conversion table - Bluetooth: Fix alt settings for incoming SCO with transparent coding format - Bluetooth: Shutdown controller after workqueues are flushed or cancelled - Bluetooth: btusb: Add a new QCA_ROME device (0cf3:e500) - Bluetooth: L2CAP: Fix invalid access if ECRED Reconfigure fails - Bluetooth: L2CAP: Fix invalid access on ECRED Connection response - Bluetooth: btusb: Add support USB ALT 3 for WBS - Bluetooth: mgmt: Fix the command returns garbage parameter value - Bluetooth: btusb: fix bt fiwmare downloading failure issue for qca btsoc. - sched/fair: Ensure _sum and _avg values stay consistent - bpf: Fix false positive kmemleak report in bpf_ringbuf_area_alloc() - flow_offload: action should not be NULL when it is referenced - [mips*] loongsoon64: Reserve memory below starting pfn to prevent Oops - [mips*] set mips32r5 for virt extensions - [mips*] MT extensions are not available on MIPS32r1 - ath11k: unlock on error path in ath11k_mac_op_add_interface() - [arm64] dts: rockchip: Enable USB3 for rk3328 Rock64 - loop: fix I/O error on fsync() in detached loop devices - mm,hwpoison: return -EBUSY when migration fails - io_uring: simplify io_remove_personalities() - io_uring: Convert personality_idr to XArray - io_uring: convert io_buffer_idr to XArray - scsi: iscsi: Fix race condition between login and sync thread - scsi: iscsi: Fix iSCSI cls conn state - [powerpc*] mm: Fix lockup on kernel exec fault - [powerpc*] barrier: Avoid collision with clang's __lwsync macro - [powerpc*] powernv/vas: Release reference to tgid during window close - drm/amdgpu: enable sdma0 tmz for Raven/Renoir(V2) - drm/radeon: Add the missed drm_gem_object_put() in radeon_user_framebuffer_create() - drm/radeon: Call radeon_suspend_kms() in radeon_pci_shutdown() for Loongson64 - [arm*] drm/vc4: txp: Properly set the possible_crtcs mask - [arm*] drm/vc4: crtc: Skip the TXP - [arm*] drm/vc4: hdmi: Prevent clock unbalance - drm/dp: Handle zeroed port counts in drm_dp_read_downstream_info() - [arm64,armhf] drm/rockchip: dsi: remove extra component_del() call - pinctrl/amd: Add device HID for new AMD GPIO controller - drm/amd/display: Reject non-zero src_y and src_x for video planes - [arm64,armhf] drm/tegra: Don't set allow_fb_modifiers explicitly - [arm64] drm/msm/mdp4: Fix modifier support enabling - [arm64] drm/arm/malidp: Always list modifiers - drm/nouveau: Don't set allow_fb_modifiers explicitly - [x86] drm/i915/display: Do not zero past infoframes.vsc - mmc: sdhci-acpi: Disable write protect detection on Toshiba Encore 2 WT8-B - mmc: sdhci: Fix warning message when accessing RPMB in HS400 mode - mmc: core: clear flags before allowing to retune - mmc: core: Allow UHS-I voltage switch for SDSC cards if supported - [armhf] ata: ahci_sunxi: Disable DIPM - [arm64] tlb: fix the TTL value of tlb_get_level - cpu/hotplug: Cure the cpusets trainwreck - [arm64,armhf] clocksource/arm_arch_timer: Improve Allwinner A64 timer workaround - [arm64,armhf] ASoC: tegra: Set driver_name=tegra for all machine drivers - i40e: fix PTP on 5Gb links - qemu_fw_cfg: Make fw_cfg_rev_attr a proper kobj_attribute - ipmi/watchdog: Stop watchdog timer when the current action is 'none' - [x86] thermal/drivers/int340x/processor_thermal: Fix tcc setting - ubifs: Fix races between xattr_{set|get} and listxattr operations - power: supply: ab8500: Fix an old bug - mfd: syscon: Free the allocated name field of struct regmap_config - nvmem: core: add a missing of_node_put - seq_buf: Fix overflow in seq_buf_putmem_hex() - rq-qos: fix missed wake-ups in rq_qos_throttle try two - tracing: Simplify & fix saved_tgids logic - tracing: Resize tgid_map to pid_max, not PID_MAX_DEFAULT - dm zoned: check zone capacity - dm writecache: flush origin device when writing and cache is full - dm btree remove: assign new_root only when removal succeeds - PCI: Leave Apple Thunderbolt controllers on for s2idle or standby - [arm64] PCI: aardvark: Fix checking for PIO Non-posted Request - [arm64] PCI: aardvark: Implement workaround for the readback value of VEND_ID - media: subdev: disallow ioctl for saa6588/davinci - media: dtv5100: fix control-request directions - media: zr364xx: fix memory leak in zr364xx_start_readpipe - media: gspca/sq905: fix control-request direction - media: gspca/sunplus: fix zero-length control requests - media: uvcvideo: Fix pixel format change for Elgato Cam Link 4K - io_uring: fix clear IORING_SETUP_R_DISABLED in wrong function - dm writecache: write at least 4k when committing - [armhf] pinctrl: mcp23s08: Fix missing unlock on error in mcp23s08_irq() - drm/ast: Remove reference to struct drm_device.pdev - jfs: fix GPF in diFree - ext4: fix memory leak in ext4_fill_super - f2fs: fix to avoid racing on fsync_entry_slab by multi filesystem instances https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.52 - cifs: handle reconnect of tcon when there is no cached dfs referral - KVM: mmio: Fix use-after-free Read in kvm_vm_ioctl_unregister_coalesced_mmio - [x86] KVM: x86: Use guest MAXPHYADDR from CPUID.0x8000_0008 iff TDP is enabled - [x86] KVM: x86/mmu: Do not apply HPA (memory encryption) mask to GPAs - [x86] KVM: nSVM: Check the value written to MSR_VM_HSAVE_PA - [x86] KVM: X86: Disable hardware breakpoints unconditionally before kvm_x86->run() - scsi: core: Fix bad pointer dereference when ehandler kthread is invalid - [s390x] scsi: zfcp: Report port fc_security as unknown early during remote cable pull - tracing: Do not reference char * as a string in histograms - [x86] drm/i915/gtt: drop the page table optimisation - [x86] drm/i915/gt: Fix -EDEADLK handling regression - cgroup: verify that source is a string - fbmem: Do not delete the mode that is still in use - drm/dp_mst: Do not set proposed vcpi directly - drm/dp_mst: Avoid to mess up payload table by ports in stale topology - drm/dp_mst: Add missing drm parameters to recently added call to drm_dbg_kms() - Revert "drm/ast: Remove reference to struct drm_device.pdev" - net: bridge: multicast: fix PIM hello router port marking race - net: bridge: multicast: fix MRD advertisement router port marking race - [x86] ASoC: Intel: sof_sdw: add mutual exclusion between PCH DMIC and RT715 - [arm64] dmaengine: fsl-qdma: check dma_set_mask return value - scsi: arcmsr: Fix the wrong CDB payload report to IOP - srcu: Fix broken node geometry after early ssp init - rcu: Reject RCU_LOCKDEP_WARN() false positives - [arm64] tty: serial: fsl_lpuart: fix the potential risk of division or modulo by zero - [arm64] serial: fsl_lpuart: disable DMA for console and fix sysrq - [x86] misc/libmasm/module: Fix two use after free in ibmasm_init_one - [x86] ASoC: intel/boards: add missing MODULE_DEVICE_TABLE - partitions: msdos: fix one-byte get_unaligned() - iio: gyro: fxa21002c: Balance runtime pm + use pm_runtime_resume_and_get(). - iio: magn: bmc150: Balance runtime pm + use pm_runtime_resume_and_get() - Revert "ALSA: bebob/oxfw: fix Kconfig entry for Mackie d.2 Pro" - [arm64,armhf] usb: common: usb-conn-gpio: fix NULL pointer dereference of charger - w1: ds2438: fixing bug that would always get page0 - scsi: arcmsr: Fix doorbell status being updated late on ARC-1886 - [arm64] scsi: hisi_sas: Propagate errors in interrupt_init_v1_hw() - scsi: lpfc: Fix "Unexpected timeout" error in direct attach topology - scsi: lpfc: Fix crash when lpfc_sli4_hba_setup() fails to initialize the SGLs - scsi: core: Cap scsi_host cmd_per_lun at can_queue - tty: serial: 8250: serial_cs: Fix a memory leak in error handling path - scsi: mpt3sas: Fix deadlock while cancelling the running firmware event - scsi: core: Fixup calling convention for scsi_mode_sense() - scsi: scsi_dh_alua: Check for negative result value - fs/jfs: Fix missing error code in lmLogInit() - scsi: megaraid_sas: Fix resource leak in case of probe failure - scsi: megaraid_sas: Early detection of VD deletion through RaidMap update - scsi: megaraid_sas: Handle missing interrupts while re-enabling IRQs - scsi: iscsi: Add iscsi_cls_conn refcount helpers - scsi: iscsi: Fix conn use after free during resets - scsi: iscsi: Fix shost->max_id use - scsi: qedi: Fix null ref during abort handling - scsi: qedi: Fix race during abort timeouts - scsi: qedi: Fix TMF session block/unblock use - scsi: qedi: Fix cleanup session block/unblock use - [armhf] mfd: da9052/stmpe: Add and modify MODULE_DEVICE_TABLE - [armhf] fsi: Add missing MODULE_DEVICE_TABLE - [s390x] disable SSP when needed - [i386] ALSA: sb: Fix potential double-free of CSP mixer elements - [powerpc*] ps3: Add dma_mask to ps3_dma_region - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak when arm_smmu_rpm_get fails - [arm64,armhf] iommu/arm-smmu: Fix arm_smmu_device refcount leak in address translation - ASoC: soc-pcm: fix the return value in dpcm_apply_symmetry() - [arm64] gpio: zynq: Check return value of pm_runtime_get_sync - [arm64] gpio: zynq: Check return value of irq_get_irq_data - [x86] scsi: storvsc: Correctly handle multiple flags in srb_status - [powerpc*] ALSA: ppc: fix error return code in snd_pmac_probe() - [arm64,armhf] gpio: pca953x: Add support for the On Semi pca9655 - [powerpc*] mm/book3s64: Fix possible build error - ASoC: soc-core: Fix the error return code in snd_soc_of_parse_audio_routing() - [s390x] processor: always inline stap() and __load_psw_mask() - [s390x] ipl_parm: fix program check new psw handling - [s390x] mem_detect: fix diag260() program check new psw handling - [s390x] mem_detect: fix tprot() program check new psw handling - ALSA: bebob: add support for ToneWeal FW66 - ALSA: usb-audio: scarlett2: Fix 18i8 Gen 2 PCM Input count - ALSA: usb-audio: scarlett2: Fix data_mutex lock - ALSA: usb-audio: scarlett2: Fix scarlett2_*_ctl_put() return values - usb: gadget: f_hid: fix endianness issue with descriptors - [powerpc*] boot: Fixup device-tree on little endian - [x86] ASoC: Intel: kbl_da7219_max98357a: shrink platform_id below 20 characters - [arm64,armhf] ALSA: hda: Add IRQ check for platform_get_irq() - ALSA: usb-audio: scarlett2: Fix 6i6 Gen 2 line out descriptions - ALSA: firewire-motu: fix detection for S/PDIF source on optical interface in v2 protocol - staging: rtl8723bs: fix macro value for 2.4Ghz only device - [x86] intel_th: Wait until port is in reset before programming it - i2c: core: Disable client irq on reboot/shutdown - lib/decompress_unlz4.c: correctly handle zero-padding around initrds. - kcov: add __no_sanitize_coverage to fix noinstr for all architectures - [amd64] PCI: hv: Fix a race condition when removing the device - [x86] power: supply: max17042: Do not enforce (incorrect) interrupt trigger type - power: reset: gpio-poweroff: add missing MODULE_DEVICE_TABLE - PCI/P2PDMA: Avoid pci_get_slot(), which may sleep - NFSv4: Fix delegation return in cases where we have to retry - PCI: pciehp: Ignore Link Down/Up caused by DPC - [x86] watchdog: Fix possible use-after-free in wdt_startup() - [x86] watchdog: Fix possible use-after-free by calling del_timer_sync() - watchdog: iTCO_wdt: Account for rebooting on second timeout - [x86] fpu: Return proper error codes from user access functions - [armhf] remoteproc: core: Fix cdev remove and rproc del - [arm64,armhf] PCI: tegra: Add missing MODULE_DEVICE_TABLE - orangefs: fix orangefs df output. - ceph: remove bogus checks and WARN_ONs from ceph_set_page_dirty - [x86] drm/gma500: Add the missed drm_gem_object_put() in psb_user_framebuffer_create() - NFS: nfs_find_open_context() may only select open files - [arm64,armhf] pwm: tegra: Don't modify HW state in .remove callback - [arm64] ACPI: AMBA: Fix resource name in /proc/iomem - [x86] ACPI: video: Add quirk for the Dell Vostro 3350 - [arm64] PCI: rockchip: Register IRQ handlers after device and data are ready - virtio-blk: Fix memory leak among suspend/resume procedure - virtio_net: Fix error handling in virtnet_restore() - f2fs: atgc: fix to set default age threshold - NFSD: Fix TP_printk() format specifier in nfsd_clid_class - [x86] signal: Detect and prevent an alternate signal stack overflow - f2fs: add MODULE_SOFTDEP to ensure crc32 is included in the initramfs - f2fs: compress: fix to disallow temp extension - PCI/sysfs: Fix dsm_label_utf16s_to_utf8s() buffer overrun - NFSv4: Fix an Oops in pnfs_mark_request_commit() when doing O_DIRECT - ubifs: Fix off-by-one error - ubifs: journal: Fix error return code in ubifs_jnl_write_inode() - [armhf] watchdog: aspeed: fix hardware timeout calculation - SUNRPC: prevent port reuse on transports which don't request it. - nfs: fix acl memory leak of posix_acl_create() - ubifs: Set/Clear I_LINKABLE under i_lock for whiteout inode - f2fs: fix to avoid adding tab before doc section - [x86] fpu: Fix copy_xstate_to_kernel() gap handling - [x86] fpu: Limit xstate copy size in xstateregs_set() - virtio_net: move tx vq operation under tx queue lock - nvme-tcp: can't set sk_user_data without write_lock - nfsd: Reduce contention for the nfsd_file nf_rwsem - [i386] ALSA: isa: Fix error return code in snd_cmi8330_probe() - vdpa/mlx5: Clear vq ready indication upon device reset - NFSv4/pnfs: Fix the layout barrier update - NFSv4/pnfs: Fix layoutget behaviour after invalidation - NFSv4/pNFS: Don't call _nfs4_pnfs_v3_ds_connect multiple times - [armhf] exynos: add missing of_node_put for loop iteration - [armhf] dts: exynos: fix PWM LED max brightness on Odroid HC1 - [armhf] dts: exynos: fix PWM LED max brightness on Odroid XU4 - [armel,armhf] memory: pl353: Fix error return code in pl353_smc_probe() - rtc: fix snprintf() checking in is_rtc_hctosys() - dt-bindings: i2c: at91: fix example for scl-gpios - [arm64] dts: allwinner: a64-sopine-baseboard: change RGMII mode to TXID - [armhf] dts: am335x: align ti,pindir-d0-out-d1-in property with dt-shema - [arm64] firmware: turris-mox-rwtm: fix reply status decoding function - [arm64] firmware: turris-mox-rwtm: report failures better - [arm64] firmware: turris-mox-rwtm: fail probing when firmware does not support hwrng - [arm64] firmware: turris-mox-rwtm: show message about HWRNG registration - scsi: be2iscsi: Fix an error handling path in beiscsi_dev_probe() - jump_label: Fix jump_label_text_reserved() vs __init - static_call: Fix static_call_text_reserved() vs __init - [mips*] always link byteswap helpers into decompressor - [mips*] disable branch profiling in boot/decompress.o - [mips*] vdso: Invalid GIC access through VDSO - scsi: scsi_dh_alua: Fix signedness bug in alua_rtpg() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.53 - [armhf] dts: rockchip: fix pinctrl sleep nodename for rk3036-kylin and rk3288 - [armhf] imx: pm-imx5: Fix references to imx5_cpu_suspend_info - [arm64] dts: rockchip: fix regulator-gpio states array - [armhf] dts: imx6dl-riotboard: configure PHY clock and set proper EEE value - [armhf] dts: am57xx-cl-som-am57x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: am335x: fix ti,no-reset-on-init flag for gpios - [armhf] dts: OMAP2+: Replace underscores in sub-mailbox node names - [arm64] dts: qcom: sc7180: Move rmtfs memory region - [armhf] memory: tegra: Fix compilation warnings on 64bit platforms - [armel,armhf] dts: bcm283x: Fix up GPIO LED node names - [armhf] dts: rockchip: fix supply properties in io-domains nodes - [armhf] OMAP2+: Block suspend for am3 and am4 if PM is not configured - [arm64,armhf] soc/tegra: fuse: Fix Tegra234-only builds - thermal/core: Correct function name thermal_zone_device_unregister() - [arm64] arch/arm64/boot/dts/marvell: fix NAND partitioning scheme - [arm64,armhf] rtc: max77686: Do not enforce (incorrect) interrupt trigger type - scsi: aic7xxx: Fix unintentional sign extension issue on left shift of u8 - scsi: libsas: Add LUN number check in .slave_alloc callback - scsi: libfc: Fix array index out of bound exception - scsi: qedf: Add check to synchronize abort and flush - sched/fair: Fix CFS bandwidth hrtimer expiry type - [x86] perf/x86/intel/uncore: Clean up error handling path of iio mapping - thermal/core/thermal_of: Stop zone device before unregistering it - [s390x] traps: do not test MONITOR CALL without CONFIG_BUG - [s390x] introduce proper type handling call_on_stack() macro - cifs: prevent NULL deref in cifs_compose_mount_options() - [arm64] firmware: turris-mox-rwtm: add marvell,armada-3700-rwtm-firmware compatible string - [arm64] dts: marvell: armada-37xx: move firmware node to generic dtsi file - Revert "swap: fix do_swap_page() race with swapoff" - f2fs: Show casefolding support only when supported - mm/thp: simplify copying of huge zero page pmd when fork - mm/userfaultfd: fix uffd-wp special cases for fork() - mm/page_alloc: fix memory map initialization for descending nodes - [arm64] net: bcmgenet: ensure EXT_ENERGY_DET_MASK is clear - [arm64,armhf] net: dsa: mv88e6xxx: enable .port_set_policy() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: use correct .stats_set_histogram() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable .rmu_disable() on Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable devlink ATU hash param for Topaz - net: ipv6: fix return value of ip6_skb_dst_mtu - netfilter: ctnetlink: suspicious RCU usage in ctnetlink_dump_helpinfo - net/sched: act_ct: fix err check for nf_conntrack_confirm - [x86] vmxnet3: fix cksum offload issues for tunnels with non-default udp ports - net/sched: act_ct: remove and free nf_table callbacks - net: bridge: sync fdb to new unicast-filtering ports - [arm64] net: bcmgenet: Ensure all TX/RX queues DMAs are disabled - net: ip_tunnel: fix mtu calculation for ETHER tunnel devices - [arm64] net: qcom/emac: fix UAF in emac_remove - net: ti: fix UAF in tlan_remove_one - net: send SYNACK packet with accepted fwmark - net: validate lwtstate->data before returning from skb_tunnel_info() - Revert "mm/shmem: fix shmem_swapin() race with swapoff" - [arm64,armhf] net: dsa: properly check for the bridge_leave methods in dsa_switch_bridge_leave() - dma-buf/sync_file: Don't leak fences on merge failure - [armhf] dts: aspeed: Fix AST2600 machines line names - [armhf] dts: tacoma: Add phase corrections for eMMC - tcp: annotate data races around tp->mtu_info - tcp: fix tcp_init_transfer() to not reset icsk_ca_initialized - ipv6: tcp: drop silly ICMPv6 packet too big messages - tcp: call sk_wmem_schedule before sk_mem_charge in zerocopy path - bpf: Track subprog poke descriptors correctly and fix use-after-free - udp: annotate data races around unix_sk(sk)->gso_size https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.54 - igc: Fix use-after-free error during reset - igb: Fix use-after-free error during reset - igc: change default return of igc_read_phy_reg() - ixgbe: Fix an error handling path in 'ixgbe_probe()' - igc: Fix an error handling path in 'igc_probe()' - igb: Fix an error handling path in 'igb_probe()' - e1000e: Fix an error handling path in 'e1000_probe()' - iavf: Fix an error handling path in 'iavf_probe()' - igb: Check if num of q_vectors is smaller than max before array access - igb: Fix position of assignment to *ring - [amd64] gve: Fix an error handling path in 'gve_probe()' - bonding: fix suspicious RCU usage in bond_ipsec_add_sa() - bonding: fix null dereference in bond_ipsec_add_sa() - ixgbevf: use xso.real_dev instead of xso.dev in callback functions of struct xfrmdev_ops - bonding: fix suspicious RCU usage in bond_ipsec_del_sa() - bonding: disallow setting nested bonding + ipsec offload - bonding: Add struct bond_ipesc to manage SA - bonding: fix suspicious RCU usage in bond_ipsec_offload_ok() - bonding: fix incorrect return value of bond_ipsec_offload_ok() - ipv6: fix 'disable_policy' for fwd packets - stmmac: platform: Fix signedness bug in stmmac_probe_config_dt() - cxgb4: fix IRQ free race during driver unload - nvme-pci: do not call nvme_dev_remove_admin from nvme_remove - [x86] KVM: x86/pmu: Clear anythread deprecated bit when 0xa leaf is unsupported on the SVM - [armhf] spi: imx: add a check for speed_hz before calculating the clock - [armhf] spi: stm32: fixes pm_runtime calls in probe/remove - bpf, test: fix NULL pointer dereference on invalid expected_attach_type - bpf: Fix tail_call_reachable rejection for interpreter when jit failed - xdp, net: Fix use-after-free in bpf_xdp_link_release - timers: Fix get_next_timer_interrupt() with no timers pending - liquidio: Fix unintentional sign extension issue on left shift of u16 - [s390x] bpf: Perform r1 range checking before accessing jit->seen_reg[r1] - bpf, sockmap: Fix potential memory leak on unlikely error case - bpf, sockmap, tcp: sk_prot needs inuse_idx set for proc stats - bpf, sockmap, udp: sk_prot needs inuse_idx set for proc stats - bpftool: Check malloc return value in mount_bpffs_for_pin - net: fix uninit-value in caif_seqpkt_sendmsg - usb: hso: fix error handling code of hso_create_net_device (CVE-2021-37159) - dma-mapping: handle vmalloc addresses in dma_common_{mmap,get_sgtable} - efi/tpm: Differentiate missing and invalid final event log table. - net: decnet: Fix sleeping inside in af_decnet - [powerpc*] KVM: PPC: Fix kvm_arch_vcpu_ioctl vcpu_load leak - net: sched: fix memory leak in tcindex_partial_destroy_work - sctp: trim optlen when it's a huge value in sctp_setsockopt - netrom: Decrease sock refcount when sock timers expire - scsi: iscsi: Fix iface sysfs attr detection - scsi: target: Fix protect handling in WRITE SAME(32) - bnxt_en: don't disable an already disabled PCI device - bnxt_en: Refresh RoCE capabilities in bnxt_ulp_probe() - bnxt_en: Add missing check for BNXT_STATE_ABORT_ERR in bnxt_fw_rset_task() - bnxt_en: Validate vlan protocol ID on RX packets - bnxt_en: Check abort error state in bnxt_half_open_nic() - net/tcp_fastopen: fix data races around tfo_active_disable_stamp - ALSA: hda: intel-dsp-cfg: add missing ElkhartLake PCI ID - [arm64] net: hns3: fix possible mismatches resp of mailbox - [arm64] net: hns3: fix rx VLAN offload state inconsistent issue - [arm*] spi: spi-bcm2835: Fix deadlock - net/sched: act_skbmod: Skip non-Ethernet packets - ipv6: fix another slab-out-of-bounds in fib6_nh_flush_exceptions - ceph: don't WARN if we're still opening a session to an MDS - nvme-pci: don't WARN_ON in nvme_reset_work if ctrl.state is not RESETTING - Revert "USB: quirks: ignore remote wake-up on Fibocom L850-GL LTE modem" - afs: Fix tracepoint string placement with built-in AFS - r8169: Avoid duplicate sysfs entry creation error - nvme: set the PRACT bit when using Write Zeroes with T10 PI - sctp: update active_key for asoc when old key is being replaced - tcp: disable TFO blackhole logic by default - net: sched: cls_api: Fix the the wrong parameter - [arm64,armhf] drm/panel: raspberrypi-touchscreen: Prevent double-free - cifs: only write 64kb at a time when fallocating a small region of a file - cifs: fix fallocate when trying to allocate a hole. - proc: Avoid mixing integer types in mem_rw() - mmc: core: Don't allocate IDA for OF aliases - [s390x] ftrace: fix ftrace_update_ftrace_func implementation - [s390x] boot: fix use of expolines in the DMA code - ALSA: usb-audio: Add missing proc text entry for BESPOKEN type - ALSA: usb-audio: Add registration quirk for JBL Quantum headsets - [i386] ALSA: sb: Fix potential ABBA deadlock in CSP driver - ALSA: hda/realtek: Fix pop noise and 2 Front Mic issues on a machine - ALSA: hdmi: Expose all pins on MSI MS-7C94 board - ALSA: pcm: Call substream ack() method upon compat mmap commit - ALSA: pcm: Fix mmap capability check - xhci: Fix lost USB 2 remote wake - [powerpc*] KVM: PPC: Book3S HV Nested: Sanitise H_ENTER_NESTED TM state - usb: hub: Disable USB 3 device initiated lpm if exit latency is too high - usb: hub: Fix link power management max exit latency (MEL) calculations - USB: usb-storage: Add LaCie Rugged USB3-FW to IGNORE_UAS - USB: serial: option: add support for u-blox LARA-R6 family - USB: serial: cp210x: fix comments for GE CS1000 - USB: serial: cp210x: add ID for CEL EM3588 USB ZigBee stick - [arm*] usb: dwc2: gadget: Fix GOUTNAK flow for Slave mode. - [arm*] usb: dwc2: gadget: Fix sending zero length packet in DDMA mode. - firmware/efi: Tell memblock about EFI iomem reservations - tracepoints: Update static_call before tp_funcs when adding a tracepoint - tracing/histogram: Rename "cpu" to "common_cpu" - tracing: Synthetic event field_pos is an index not a boolean - btrfs: check for missing device in btrfs_trim_fs - media: ngene: Fix out-of-bounds bug in ngene_command_config_free_buf() - ixgbe: Fix packet corruption due to missing DMA sync - bus: mhi: core: Validate channel ID when processing command completions - posix-cpu-timers: Fix rearm racing against process tick - io_uring: explicitly count entries for poll reqs - io_uring: remove double poll entry on arm failure - userfaultfd: do not untag user pointers - memblock: make for_each_mem_range() traverse MEMBLOCK_HOTPLUG regions - hugetlbfs: fix mount mode command line processing - rbd: don't hold lock_rwsem while running_list is being drained - rbd: always kick acquire on "acquired" and "released" notifications - misc: eeprom: at24: Always append device id even if label property is set. - driver core: Prevent warning when removing a device link from unregistered consumer - drm: Return -ENOTTY for non-drm ioctls - drm/amdgpu: update golden setting for sienna_cichlid - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes RX stats for Topaz - [arm64,armhf] net: dsa: mv88e6xxx: enable SerDes PCS register dump via ethtool -d on Topaz - PCI: Mark AMD Navi14 GPU ATS as broken - skbuff: Release nfct refcount on napi stolen or re-used skbs - Documentation: Fix intiramfs script name - usb: ehci: Prevent missed ehci interrupts with edge-triggered MSI - [amd64] drm/i915/gvt: Clear d3_entered on elsp cmd submission. - sfc: ensure correct number of XDP queues - xhci: add xhci_get_virt_ep() helper https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.55 - io_uring: fix link timeout refs - [x86] KVM: determine if an exception has an error code only when injecting it. - af_unix: fix garbage collect vs MSG_PEEK - workqueue: fix UAF in pwq_unbound_release_workfn() - cgroup1: fix leaked context root causing sporadic NULL deref in LTP - net/802/mrp: fix memleak in mrp_request_join() - net/802/garp: fix memleak in garp_request_join() - net: annotate data race around sk_ll_usec - sctp: move 198 addresses from unusable to private scope - rcu-tasks: Don't delete holdouts within trc_inspect_reader() - rcu-tasks: Don't delete holdouts within trc_wait_for_one_reader() - ipv6: allocate enough headroom in ip6_finish_output2() - drm/ttm: add a check against null pointer dereference - hfs: add missing clean-up in hfs_fill_super - hfs: fix high memory mapping in hfs_bnode_read - hfs: add lock nesting notation to hfs_find_init - cifs: fix the out of range assignment to bit fields in parse_server_interfaces - iomap: remove the length variable in iomap_seek_data - iomap: remove the length variable in iomap_seek_hole - ipv6: ip6_finish_output2: set sk into newly allocated nskb https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.56 - io_uring: fix null-ptr-deref in io_sq_offload_start() - [x86] asm: Ensure asm/proto.h can be included stand-alone - pipe: make pipe writes always wake up readers - btrfs: fix rw device counting in __btrfs_free_extra_devids - btrfs: mark compressed range uptodate only if all bio succeed - Revert "ACPI: resources: Add checks for ACPI IRQ override" - [x86] kvm: fix vcpu-id indexed array sizes - KVM: add missing compat KVM_CLEAR_DIRTY_LOG - ocfs2: fix zero out valid data - ocfs2: issue zeroout to EOF blocks - can: j1939: j1939_xtp_rx_dat_one(): fix rxtimer value between consecutive TP.DT to 750ms - can: raw: raw_setsockopt(): fix raw_rcv panic for sock UAF - can: peak_usb: pcan_usb_handle_bus_evt(): fix reading rxerr/txerr values - can: mcba_usb_start(): add missing urb->transfer_dma initialization (Closes: #990850) - can: usb_8dev: fix memory leak - can: ems_usb: fix memory leak - can: esd_usb2: fix memory leak - HID: wacom: Re-enable touch by default for Cintiq 24HDT / 27QHDT - NIU: fix incorrect error return, missed in previous revert - drm/amdgpu: Avoid printing of stack contents on firmware load error - drm/amdgpu: Fix resource leak on probe error path - blk-iocost: fix operation ordering in iocg_wake_fn() - nfc: nfcsim: fix use after free during module unload - cfg80211: Fix possible memory leak in function cfg80211_bss_update - bpf: Fix OOB read when printing XDP link fdinfo - mac80211: fix enabling 4-address mode on a sta vif after assoc - netfilter: conntrack: adjust stop timestamp to real expiry value - netfilter: nft_nat: allow to specify layer 4 protocol NAT only - i40e: Fix logic of disabling queues - i40e: Fix firmware LLDP agent related warning - i40e: Fix queue-to-TC mapping on Tx - i40e: Fix log TC creation failure when max num of queues is exceeded - tipc: fix implicit-connect for SYN+ - tipc: fix sleeping in tipc accept routine - net: Set true network header for ECN decapsulation - net: qrtr: fix memory leaks - tipc: do not write skb_shinfo frags when doing decrytion - mlx4: Fix missing error code in mlx4_load_one() - [x86] KVM: x86: Check the right feature bit for MSR_KVM_ASYNC_PF_ACK access - net: llc: fix skb_over_panic - [arm64] drm/msm/dpu: Fix sm8250_mdp register length - [arm64] drm/msm/dp: Initialize the INTF_CONFIG register - skmsg: Make sk_psock_destroy() static - net/mlx5: Fix flow table chaining - net/mlx5e: Fix nullptr in mlx5e_hairpin_get_mdev() - tulip: windbond-840: Fix missing pci_disable_device() in probe and remove - sis900: Fix missing pci_disable_device() in probe and remove - SMB3: fix readpage for large swap cache - [powerpc*] pseries: Fix regression while building external modules - Revert "perf map: Fix dso->nsinfo refcounting" - i40e: Add additional info to PHY type error - can: j1939: j1939_session_deactivate(): clarify lifetime of session object https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.57 - [x86] drm/i915: Revert "drm/i915/gem: Asynchronous cmdparser" - [x86] Revert "drm/i915: Propagate errors on awaiting already signaled fences" - btrfs: fix race causing unnecessary inode logging during link and rename - btrfs: fix lost inode on log replay after mix of fsync, rename and inode eviction - [armhf] spi: stm32h7: fix full duplex irq handler handling - r8152: Fix potential PM refcount imbalance - qed: fix possible unpaired spin_{un}lock_bh in _qed_mcp_cmd_and_union() - ASoC: rt5682: Fix the issue of garbled recording after powerd_dbus_suspend - net: Fix zero-copy head len calculation. - efi/mokvar: Reserve the table only if it is in boot services data - nvme: fix nvme_setup_command metadata trace event - ACPI: fix NULL pointer dereference - Revert "Bluetooth: Shutdown controller after workqueues are flushed or cancelled" - Revert "watchdog: iTCO_wdt: Account for rebooting on second timeout" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.58 - Revert "ACPICA: Fix memory leak caused by _CID repair function" - ALSA: seq: Fix racy deletion of subscriber - [armhf] bus: ti-sysc: Fix gpt12 system timer issue with reserved status - net: xfrm: fix memory leak in xfrm_user_rcv_msg - [armhf] imx: add missing iounmap() - [armhf] imx: add missing clk_disable_unprepare() - [arm64] dts: ls1028: sl28: fix networking for variant 2 - [armhf] imx: fix missing 3rd argument in macro imx_mmdc_perf_init - [armhf] dts: imx: Swap M53Menlo pinctrl_power_button/pinctrl_power_out pins - [arm64] dts: armada-3720-turris-mox: fixed indices for the SDHC controllers - [arm64] dts: armada-3720-turris-mox: remove mrvl,i2c-fast-mode - ALSA: usb-audio: fix incorrect clock source setting - [arm64,armhf] clk: tegra: Implement disable_unused() of tegra_clk_sdmmc_mux_ops - [armhf] dmaengine: stm32-dma: Fix PM usage counter imbalance in stm32 dma ops - [armhf] dmaengine: stm32-dmamux: Fix PM usage counter unbalance in stm32 dmamux ops - [armhf] spi: imx: mx51-ecspi: Reinstate low-speed CONFIGREG delay - [armhf] spi: imx: mx51-ecspi: Fix low-speed CONFIGREG delay calculation - scsi: sr: Return correct event when media event code is 3 - media: videobuf2-core: dequeue if start_streaming fails - [armhf] dmaengine: imx-dma: configure the generic DMA type to make it work - net, gro: Set inner transport header offset in tcp/udp GRO hook - net: phy: micrel: Fix detection of ksz87xx switch - net: natsemi: Fix missing pci_disable_device() in probe and remove - RDMA/mlx5: Delay emptying a cache entry when a new MR is added to it recently - sctp: move the active_key update after sh_keys is added - nfp: update ethtool reporting of pauseframe control - net: ipv6: fix returned variable type in ip6_skb_dst_mtu - net: sched: fix lockdep_set_class() typo error for sch->seqlock - [mips*] check return value of pgtable_pmd_page_ctor - bnx2x: fix an error code in bnx2x_nic_load() - net: pegasus: fix uninit-value in get_interrupt_interval - [arm64,armhf] net: fec: fix use-after-free in fec_drv_remove - net: vxge: fix use-after-free in vxge_device_unregister - Bluetooth: defer cleanup of resources in hci_unregister_dev() - USB: usbtmc: Fix RCU stall warning - USB: serial: option: add Telit FD980 composition 0x1056 - USB: serial: ch341: fix character loss at high transfer rates - USB: serial: ftdi_sio: add device ID for Auto-M3 OP-COM v2 - [x86] firmware_loader: use -ETIMEDOUT instead of -EAGAIN in fw_load_sysfs_fallback - [x86] firmware_loader: fix use-after-free in firmware_fallback_sysfs - ALSA: pcm - fix mmap capability check for the snd-dummy driver - ALSA: hda/realtek: add mic quirk for Acer SF314-42 - ALSA: hda/realtek: Fix headset mic for Acer SWIFT SF314-56 (ALC256) - ALSA: usb-audio: Fix superfluous autosuspend recovery - ALSA: usb-audio: Add registration quirk for JBL Quantum 600 - [arm64,armhf] usb: dwc3: gadget: Avoid runtime resume if disabling pullup - usb: gadget: f_hid: added GET_IDLE and SET_IDLE handlers - usb: gadget: f_hid: fixed NULL pointer dereference - usb: gadget: f_hid: idle uses the highest byte for duration - usb: typec: tcpm: Keep other events when receiving FRS and Sourcing_vbus events - clk: fix leak on devm_clk_bulk_get_all() unwind - tracing: Fix NULL pointer dereference in start_creating - tracepoint: static call: Compare data on transition from 2->1 callees - tracepoint: Fix static call function vs data state mismatch - [arm64] stacktrace: avoid tracing arch_stack_walk() - [arm64] optee: Clear stale cache entries during initialization - [arm64] tee: add tee_shm_alloc_kernel_buf() - [arm64] optee: Fix memory leak when failing to register shm pages - [arm64] optee: Refuse to load the driver under the kdump kernel - [arm64] optee: fix tee out of memory failure seen during kexec reboot - staging: rtl8723bs: Fix a resource leak in sd_int_dpc - staging: rtl8712: get rid of flush_scheduled_work - staging: rtl8712: error handling refactoring - drivers core: Fix oops when driver probe fails - media: rtl28xxu: fix zero-length control request - pipe: increase minimum default pipe size to 2 pages - ext4: fix potential htree corruption when growing large_dir directories - [arm64,armhf] serial: tegra: Only print FIFO error message when an error occurs - serial: 8250: Mask out floating 16/32-bit bus bits - [mips*] Malta: Do not byte-swap accesses to the CBUS UART - serial: 8250_pci: Enumerate Elkhart Lake UARTs via dedicated driver - serial: 8250_pci: Avoid irq sharing for MSI(-X) interrupts. - timers: Move clearing of base::timer_running under base:: Lock - xfrm: Fix RCU vs hash_resize_mutex lock inversion - pcmcia: i82092: fix a null pointer dereference bug - selinux: correct the return value when loads initial sids - [armhf] bus: ti-sysc: AM3: RNG is GP only - [arm64] Revert "gpio: mpc8xxx: change the gpio interrupt flags." - [armhf] omap2+: hwmod: fix potential NULL pointer access - md/raid10: properly indicate failure when ending a failed write request - [x86] KVM: accept userspace interrupt only if no event is injected - KVM: Do not leak memory for duplicate debugfs directories - [x86] KVM: x86/mmu: Fix per-cpu counter corruption on 32-bit builds - [arm64] vdso: Avoid ISB after reading from cntvct_el0 - [arm64,armhf] spi: meson-spicc: fix memory leak in meson_spicc_remove - [x86] drm/i915: Correct SFC_DONE register offset - sched/rt: Fix double enqueue caused by rt_effective_prio - [x86] drm/i915: avoid uninitialised var in eb_parse() - libata: fix ata_pio_sector for CONFIG_HIGHMEM - reiserfs: add check for root_inode in reiserfs_fill_super - reiserfs: check directory items on read from disk - net: qede: Fix end of loop tests for list_for_each_entry - net/qla3xxx: fix schedule while atomic in ql_wait_for_drvr_lock and ql_adapter_reset - smb3: rc uninitialized in one fallocate path - drm/amdgpu/display: only enable aux backlight control for OLED panels - [arm64] fix compat syscall return truncation https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.59 - [x86] KVM: SVM: Fix off-by-one indexing when nullifying last used SEV VMCB - [arm64] tee: Correct inappropriate usage of TEE_SHM_DMA_BUF flag - bpf: Add lockdown check for probe_write_user helper - mm: make zone_to_nid() and zone_set_nid() available for DISCONTIGMEM - [x86] vboxsf: Honor excl flag to the dir-inode create op - [x86] vboxsf: Make vboxsf_dir_create() return the handle for the created file - USB:ehci:fix Kunpeng920 ehci hardware problem - ALSA: pcm: Fix mmap breakage without explicit buffer setup - ALSA: hda/realtek: fix mute/micmute LEDs for HP ProBook 650 G8 Notebook PC - ALSA: hda: Add quirk for ASUS Flow x13 - ppp: Fix generating ppp unit id when ifname is not specified - net: xilinx_emaclite: Do not print real IOMEM pointer (CVE-2021-38205) https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.60 - iio: adc: ti-ads7950: Ensure CS is deasserted after reading channels - iio: adis: set GPIO reset pin direction - [x86] ASoC: amd: Fix reference to PCM buffer address - [x86] ASoC: intel: atom: Fix reference to PCM buffer address - i2c: dev: zero out array used for i2c reads from userspace - cifs: create sd context must be a multiple of 8 - scsi: lpfc: Move initialization of phba->poll_list earlier to avoid crash - seccomp: Fix setting loaded filter count during TSYNC - [armhf] net: ethernet: ti: cpsw: fix min eth packet size for non-switch use-cases - ceph: reduce contention in ceph_check_delayed_caps() - [amd64,arm64] ACPI: NFIT: Fix support for virtual SPA ranges - libnvdimm/region: Fix label activation vs errors - drm/amd/display: use GFP_ATOMIC in amdgpu_dm_irq_schedule_work - drm/amdgpu: don't enable baco on boco platforms in runpm - ieee802154: hwsim: fix GPF in hwsim_set_edge_lqi - ieee802154: hwsim: fix GPF in hwsim_new_edge_nl - [x86] ASoC: SOF: Intel: hda-ipc: fix reply size checking - netfilter: nf_conntrack_bridge: Fix memory leak when error - [x86] pinctrl: tigerlake: Fix GPIO mapping for newer version of software - [x86] platform/x86: pcengines-apuv2: Add missing terminating entries to gpio-lookup tables - net: phy: micrel: Fix link detection on ksz87xx switch" - ppp: Fix generating ifname when empty IFLA_IFNAME is specified - net/smc: fix wait on already cleared link - net: sched: act_mirred: Reset ct info when mirror/redirect skb - ice: Prevent probing virtual functions - ice: don't remove netdev->dev_addr from uc sync list - iavf: Set RSS LUT and key in reset handle path - net/mlx5: Synchronize correct IRQ when destroying CQ - net/mlx5: Fix return value from tracer initialization - [arm64] drm/meson: fix colour distortion from HDR set during vendor u-boot - net: Fix memory leak in ieee802154_raw_deliver - net: igmp: fix data-race in igmp_ifc_timer_expire() - net: bridge: validate the NUD_PERMANENT bit when adding an extern_learn FDB entry - net: bridge: fix flags interpretation for extern learn fdb entries - net: bridge: fix memleak in br_add_if() - net: linkwatch: fix failure to restore device state across suspend/resume - tcp_bbr: fix u32 wrap bug in round logic if bbr_init() called after 2B packets - net: igmp: increase size of mr_ifc_count - [x86] drm/i915: Only access SFC_DONE when media domain is not fused off - xen/events: Fix race in set_evtchn_to_irq - vsock/virtio: avoid potential deadlock when vsock device remove - nbd: Aovid double completion of a request - [arm64] efi/libstub: arm64: Force Image reallocation if BSS was not reserved - [arm64] efi/libstub: arm64: Relax 2M alignment again for relocatable kernels - [powerpc*] kprobes: Fix kprobe Oops happens in booke - genirq: Provide IRQCHIP_AFFINITY_PRE_STARTUP - [x86] msi: Force affinity setup before startup - [x86] ioapic: Force affinity setup before startup - [x86] resctrl: Fix default monitoring groups reporting - genirq/msi: Ensure deactivation on teardown - PCI/MSI: Enable and mask MSI-X early - PCI/MSI: Mask all unused MSI-X entries - PCI/MSI: Enforce that MSI-X table entry is masked for update - PCI/MSI: Enforce MSI[X] entry updates to be visible - PCI/MSI: Do not set invalid bits in MSI mask - PCI/MSI: Correct misleading comments - PCI/MSI: Use msi_mask_irq() in pci_msi_shutdown() - PCI/MSI: Protect msi_desc::masked for multi-MSI - [powerpc*] smp: Fix OOPS in topology_init() - [arm64] efi/libstub: arm64: Double check image alignment at entry - [x86] KVM: VMX: Use current VMCS to query WAITPKG support for MSR emulation - [x86] KVM: nVMX: Use vmx_need_pf_intercept() when deciding if L0 wants a #PF - [x86] vboxsf: Add vboxsf_[create|release]_sf_handle() helpers - [x86] vboxsf: Add support for the atomic_open directory-inode op - ceph: add some lockdep assertions around snaprealm handling - ceph: clean up locking annotation for ceph_get_snap_realm and __lookup_snap_realm - ceph: take snap_empty_lock atomically with snaprealm refcount change https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.61 - mtd: cfi_cmdset_0002: fix crash when erasing/writing AMD cards - media: zr364xx: propagate errors from zr364xx_start_readpipe() - media: zr364xx: fix memory leaks in probe() - media: drivers/media/usb: fix memory leak in zr364xx_probe - [x86] KVM: Factor out x86 instruction emulation with decoding - [x86] KVM: Fix warning caused by stale emulation context - USB: core: Avoid WARNings for 0-length descriptor requests - USB: core: Fix incorrect pipe calculation in do_proc_control() - dmaengine: xilinx_dma: Fix read-after-free bug when terminating transfers - net: xfrm: Fix end of loop tests for list_for_each_entry - dmaengine: of-dma: router_xlate to return -EPROBE_DEFER if controller is not yet available - scsi: pm80xx: Fix TMF task completion race condition - scsi: megaraid_mm: Fix end of loop tests for list_for_each_entry() - scsi: scsi_dh_rdac: Avoid crash during rdac_bus_attach() - scsi: core: Avoid printing an error if target_alloc() returns -ENXIO - scsi: core: Fix capacity set to zero after offlinining device - drm/amdgpu: fix the doorbell missing when in CGPG issue for renoir. - qede: fix crash in rmmod qede while automatic debug collection - net: usb: pegasus: Check the return value of get_geristers() and friends; - net: usb: lan78xx: don't modify phy_device state concurrently - Bluetooth: hidp: use correct wait queue when removing ctrl_wait (Closes: #992121) - [arm64] dts: qcom: c630: fix correct powerdown pin for WSA881x - [arm64] dts: qcom: msm8992-bullhead: Remove PSCI - iommu: Check if group is NULL before remove device - [arm64] cpufreq: armada-37xx: forbid cpufreq for 1.2 GHz variant - virtio: Protect vqs list access - [armhf] bus: ti-sysc: Fix error handling for sysc_check_active_timer() - vhost: Fix the calculation in vhost_overflow() - bpf: Clear zext_dst of dead insns - bnxt: don't lock the tx queue from napi poll - bnxt: disable napi before canceling DIM - bnxt: make sure xmit_more + errors does not miss doorbells - bnxt: count Tx drops - net: 6pack: fix slab-out-of-bounds in decode_data - bnxt_en: Disable aRFS if running on 212 firmware - bnxt_en: Add missing DMA memory barriers - vrf: Reset skb conntrack connection on VRF rcv - virtio-net: support XDP when not more queues - virtio-net: use NETIF_F_GRO_HW instead of NETIF_F_LRO - net: qlcnic: add missed unlock in qlcnic_83xx_flash_read32 - ixgbe, xsk: clean up the resources in ixgbe_xsk_pool_enable error path - sch_cake: fix srchost/dsthost hashing mode - [arm64,armhf] net: mdio-mux: Don't ignore memory allocation errors - [arm64,armhf] net: mdio-mux: Handle -EPROBE_DEFER correctly - ovs: clear skb->tstamp in forwarding path - [amd64] iommu/vt-d: Consolidate duplicate cache invaliation code - [amd64] iommu/vt-d: Fix incomplete cache flush in intel_pasid_tear_down_entry() - r8152: fix writing USB_BP2_EN - i40e: Fix ATR queue selection - iavf: Fix ping is lost after untrusted VF had tried to change MAC - Revert "flow_offload: action should not be NULL when it is referenced" - [arm64,armhf] mmc: dw_mmc: Fix hang on data CRC error - [arm64,armhf] mmc: mmci: stm32: Check when the voltage switch procedure should be done - [arm64] mmc: sdhci-msm: Update the software timeout value for sdhc - [armhf] clk: imx6q: fix uart earlycon unwork - [arm64] clk: qcom: gdsc: Ensure regulator init state matches GDSC state - ALSA: hda - fix the 'Capture Switch' value change notifications - slimbus: messaging: start transaction ids from 1 instead of zero - slimbus: messaging: check for valid transaction id - ALSA: hda/realtek: Enable 4-speaker output for Dell XPS 15 9510 laptop - [arm*] mmc: sdhci-iproc: Cap min clock frequency on BCM2711 - [arm*] mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711 - btrfs: prevent rename2 from exchanging a subvol with a directory from different parents - ALSA: hda/via: Apply runtime PM workaround for ASUS B23E - [s390x] pci: fix use after free of zpci_dev - PCI: Increase D3 delay for AMD Renoir/Cezanne XHCI - ALSA: hda/realtek: Limit mic boost on HP ProBook 445 G8 - [x86] ASoC: intel: atom: Fix breakage for PCM buffer address setup - mm: memcontrol: fix occasional OOMs due to proportional memory.low reclaim - fs: warn about impending deprecation of mandatory locks - io_uring: fix xa_alloc_cycle() error return value check - io_uring: only assign io_uring_enter() SQPOLL error in actual error case https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.62 - bpf: Fix ringbuf helper function compatibility - bpf: Fix NULL pointer dereference in bpf_get_local_storage() helper - ASoC: rt5682: Adjust headset volume button threshold - ASoC: component: Remove misplaced prefix handling in pin control functions - netfilter: conntrack: collect all entries in one cycle - once: Fix panic when module unload - blk-iocost: fix lockdep warning on blkcg->lock - ovl: fix uninitialized pointer read in ovl_lookup_real_one() - [arm64] net: mscc: Fix non-GPL export of regmap APIs - can: usb: esd_usb2: esd_usb2_rx_event(): fix the interchange of the CAN RX and TX error counters - ceph: correctly handle releasing an embedded cap flush - Revert "btrfs: compression: don't try to compress if we don't have enough pages" - drm/amdgpu: Cancel delayed work when GFXOFF is disabled - Revert "USB: serial: ch341: fix character loss at high transfer rates" - USB: serial: option: add new VID/PID to support Fibocom FG150 - [arm64,armhf] usb: dwc3: gadget: Fix dwc3_calc_trbs_left() - [arm64,armhf] usb: dwc3: gadget: Stop EP0 transfers during pullup disable - scsi: core: Fix hang of freezing queue between blocking and running device - [amd64] IB/hfi1: Fix possible null-pointer dereference in _extend_sdma_tx_descs() - ice: do not abort devlink info if board identifier can't be found - net: usb: pegasus: fixes of set_register(s) return value evaluation; - igc: fix page fault when thunderbolt is unplugged - igc: Use num_tx_queues when iterating over tx_ring queue - e1000e: Fix the max snoop/no-snoop latency for 10M - e1000e: Do not take care about recovery NVM checksum - ip_gre: add validation for csum_start - [arm64] xgene-v2: Fix a resource leak in the error handling path of 'xge_probe()' - [arm64,armhf] net: marvell: fix MVNETA_TX_IN_PRGRS bit number - ucounts: Increase ucounts reference counter before the security hook - net/sched: ets: fix crash when flipping from 'strict' to 'quantum' - ipv6: use siphash in rt6_exception_hash() - ipv4: use siphash instead of Jenkins in fnhe_hashfun() - cxgb4: dont touch blocked freelist bitmap after free - rtnetlink: Return correct error on changing device netns - [arm64] net: hns3: clear hardware resource when loading driver - [arm64] net: hns3: add waiting time before cmdq memory is released - [arm64] net: hns3: fix duplicate node in VLAN list - [arm64] net: hns3: fix get wrong pfc_en when query PFC configuration - [arm*] Revert "mmc: sdhci-iproc: Set SDHCI_QUIRK_CAP_CLOCK_BASE_BROKEN on BCM2711" - net: stmmac: add mutex lock to protect est parameters - net: stmmac: fix kernel panic due to NULL pointer dereference of plat->est - [x86] drm/i915: Fix syncmap memory leak - usb: gadget: u_audio: fix race condition on endpoint stop - [x86] perf/x86/intel/uncore: Fix integer overflow on 23 bit left shift of a u32 - iwlwifi: pnvm: accept multiple HW-type TLVs - opp: remove WARN when no valid OPPs remain - [arm64,armhf] cpufreq: blocklist Qualcomm sm8150 in cpufreq-dt-platdev - virtio: Improve vq->broken access to avoid any compiler optimization - virtio_pci: Support surprise removal of virtio pci device - qed: qed ll2 race condition fixes - qed: Fix null-pointer dereference in qed_rdma_create_qp() - blk-mq: don't grab rq's refcount in blk_mq_check_expired() - drm: Copy drm_wait_vblank to user before returning - drm/nouveau/disp: power down unused DP links during init - drm/nouveau/kms/nv50: workaround EFI GOP window channel format differences - net/rds: dma_map_sg is entitled to merge entries - btrfs: fix race between marking inode needs to be logged and log syncing - pipe: avoid unnecessary EPOLLET wakeups under normal loads - pipe: do FASYNC notifications for every pipe IO, not just state changes - tipc: call tipc_wait_for_connect only when dlen is not 0 - Bluetooth: btusb: check conditions before enabling USB ALT 3 for WBS - [powerpc*] perf: Invoke per-CPU variable access with disabled interrupts - srcu: Provide internal interface to start a Tree SRCU grace period - srcu: Provide polling interfaces for Tree SRCU grace periods - srcu: Provide internal interface to start a Tiny SRCU grace period - srcu: Make Tiny SRCU use multi-bit grace-period counter - srcu: Provide polling interfaces for Tiny SRCU grace periods - tracepoint: Use rcu get state and cond sync for static call updates - usb: typec: ucsi: acpi: Always decode connector change information (Closes: #992004) - usb: typec: ucsi: Work around PPM losing change information - usb: typec: ucsi: Clear pending after acking connector change - [arm64] dts: qcom: msm8994-angler: Fix gpio-reserved-ranges 85-88 - kthread: Fix PF_KTHREAD vs to_kthread() race - Revert "floppy: reintroduce O_NDELAY fix" - net: don't unconditionally copy_from_user a struct ifreq for socket ioctls - audit: move put_tree() to avoid trim_trees refcount underflow and UAF - bpf: Fix potentially incorrect results with bpf_get_local_storage() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.63 - fscrypt: add fscrypt_symlink_getattr() for computing st_size - ext4: report correct st_size for encrypted symlinks - f2fs: report correct st_size for encrypted symlinks - ubifs: report correct st_size for encrypted symlinks - Revert "ucounts: Increase ucounts reference counter before the security hook" - Revert "cred: add missing return error code when set_cred_ucounts() failed" - Revert "Add a reference to ucounts for each cred" - [armhf] gpu: ipu-v3: Fix i.MX IPU-v3 offset calculations for (semi)planar U/V formats - qed: Fix the VF msix vectors flow - [arm64] net: macb: Add a NULL check on desc_ptp - qede: Fix memset corruption - [x86] perf/x86/intel/pt: Fix mask of num_address_ranges - ceph: fix possible null-pointer dereference in ceph_mdsmap_decode() - [x86] perf/x86/amd/ibs: Work around erratum #1197 - [x86] perf/x86/amd/power: Assign pmu.module - ALSA: hda/realtek: Quirk for HP Spectre x360 14 amp setup - ALSA: hda/realtek: Workaround for conflicting SSID on ASUS ROG Strix G17 - ALSA: pcm: fix divide error in snd_pcm_lib_ioctl - spi: Switch to signed types for *_native_cs SPI controller fields - new helper: inode_wrong_type() - fuse: fix illegal access to inode with reused nodeid - media: stkwebcam: fix memory leak in stk_camera_probe https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.64 - igmp: Add ip_mc_list lock in ip_check_mc_rcu - USB: serial: mos7720: improve OOM-handling in read_mos_reg() - mm/page_alloc: speed up the iteration of max_order - Revert "r8169: avoid link-up interrupt issue on RTL8106e if user enables ASPM" - [amd64] x86/events/amd/iommu: Fix invalid Perf result due to IOMMU PMC power-gating - blk-mq: fix kernel panic during iterating over flush request - blk-mq: fix is_flush_rq - blk-mq: clearing flush request reference in tags->rqs[] - ALSA: usb-audio: Add registration quirk for JBL Quantum 800 - xhci: fix even more unsafe memory usage in xhci tracing - xhci: fix unsafe memory usage in xhci tracing - [x86] reboot: Limit Dell Optiplex 990 quirk to early BIOS versions - PCI: Call Max Payload Size-related fixup quirks early https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.65 - locking/mutex: Fix HANDOFF condition - regmap: fix the offset of register error log - sched/deadline: Fix reset_on_fork reporting of DL tasks - power: supply: axp288_fuel_gauge: Report register-address on readb / writeb errors - sched/deadline: Fix missing clock update in migrate_task_rq_dl() - rcu/tree: Handle VM stoppage in stall detection - [x86] EDAC/mce_amd: Do not load edac_mce_amd module on guests - posix-cpu-timers: Force next expiration recalc after itimer reset - hrtimer: Avoid double reprogramming in __hrtimer_start_range_ns() - hrtimer: Ensure timerfd notification for HIGHRES=n - udf: Check LVID earlier - udf: Fix iocharset=utf8 mount option - isofs: joliet: Fix iocharset=utf8 mount option - bcache: add proper error unwinding in bcache_device_init - blk-throtl: optimize IOPS throttle for large IO scenarios - nvme-tcp: don't update queue count when failing to set io queues - nvme-rdma: don't update queue count when failing to set io queues - nvmet: pass back cntlid on successful completion - [x86] power: supply: max17042_battery: fix typo in MAx17042_TOFF - [s390x] cio: add dev_busid sysfs entry for each subchannel - [s390x] zcrypt: fix wrong offset index for APKA master key valid state - libata: fix ata_host_start() - [x86] crypto: qat - do not ignore errors from enable_vf2pf_comms() - [x86] crypto: qat - handle both source of interrupt in VF ISR - [x86] crypto: qat - fix reuse of completion variable - [x86] crypto: qat - fix naming for init/shutdown VF to PF notifications - [x86] crypto: qat - do not export adf_iov_putmsg() - fcntl: fix potential deadlock for &fasync_struct.fa_lock - udf_get_extendedattr() had no boundary checks. - [s390x] pci: fix misleading rc in clp_set_pci_fn() - [s390x] debug: keep debug data on resize - [s390x] debug: fix debug area life cycle - [s390x] ap: fix state machine hang after failure to enable irq - [arm64] power: supply: cw2015: use dev_err_probe to allow deferred probe - sched/numa: Fix is_core_idle() - sched: Fix UCLAMP_FLAG_IDLE setting - rcu: Fix to include first blocked task in stall warning - rcu: Add lockdep_assert_irqs_disabled() to rcu_sched_clock_irq() and callees - rcu: Fix stall-warning deadlock due to non-release of rcu_node ->lock - block: return ELEVATOR_DISCARD_MERGE if possible - [arm64] spi: spi-fsl-dspi: Fix issue with uninitialized dma_slave_config - genirq/timings: Fix error return code in irq_timings_test_irqs() - [mips64el,mipsel] irqchip/loongson-pch-pic: Improve edge triggered interrupt support - lib/mpi: use kcalloc in mpi_resize - block: nbd: add sanity check for first_minor - [arm64,armhf] irqchip/gic-v3: Fix priority comparison when non-secure priorities are used - [x86] crypto: qat - use proper type for vf_mask - [x86] mce: Defer processing of early errors - [arm64] regulator: vctrl: Use locked regulator_get_voltage in probe path - [arm64] regulator: vctrl: Avoid lockdep warning in enable/disable ops - [arm64,armhf] drm/panfrost: Fix missing clk_disable_unprepare() on error in panfrost_clk_init() - [x86] drm/gma500: Fix end of loop tests for list_for_each_entry - drm/of: free the right object - bpf: Fix a typo of reuseport map in bpf.h. - bpf: Fix potential memleak and UAF in the verifier. - drm/of: free the iterator object on failure - [amd64] gve: fix the wrong AdminQ buffer overflow check - i40e: improve locking of mac_filter_hash - gfs2: Fix memory leak of object lsi on error return path - firmware: fix theoretical UAF race with firmware cache and resume - driver core: Fix error return code in really_probe() - media: dvb-usb: fix uninit-value in dvb_usb_adapter_dvb_init - media: dvb-usb: fix uninit-value in vp702x_read_mac_addr - media: dvb-usb: Fix error handling in dvb_usb_i2c_init - media: go7007: fix memory leak in go7007_usb_probe - media: go7007: remove redundant initialization - [armhf] media: coda: fix frame_mem_ctrl for YUV420 and YVU420 formats - Bluetooth: sco: prevent information leak in sco_conn_defer_accept() - [x86] drm/amdgpu/acp: Make PM domain really work - tcp: seq_file: Avoid skipping sk during tcp_seek_last_pos - [armhf] dts: meson8b: odroidc1: Fix the pwm regulator supply properties - [armhf] dts: meson8b: mxq: Fix the pwm regulator supply properties - [armhf] dts: meson8b: ec100: Fix the pwm regulator supply properties - net/mlx5e: Prohibit inner indir TIRs in IPoIB - net/mlx5e: Block LRO if firmware asks for tunneled LRO - cgroup/cpuset: Fix a partition bug with hotplug - net: cipso: fix warnings in netlbl_cipsov4_add_std - Bluetooth: mgmt: Fix wrong opcode in the response for add_adv cmd - devlink: Break parameter notification sequence to be before/after unload/load driver - net/mlx5: Fix missing return value in mlx5_devlink_eswitch_inline_mode_set() - leds: lt3593: Put fwnode in any case during ->probe() - leds: trigger: audio: Add an activate callback to ensure the initial brightness is set - media: em28xx-input: fix refcount bug in em28xx_usb_disconnect - [arm64] media: venus: venc: Fix potential null pointer dereference on pointer fmt - PCI: PM: Avoid forcing PCI_D0 for wakeup reasons inconsistently - PCI: PM: Enable PME if it can be signaled from D3cold - debugfs: Return error during {full/open}_proxy_open() on rmmod - Bluetooth: increase BTNAMSIZ to 21 chars to fix potential buffer overflow - PM: EM: Increase energy calculation precision - [arm64] drm/msm/mdp4: refactor HW revision detection into read_mdp_hw_revision - [arm64] drm/msm/mdp4: move HW revision detection to earlier phase - [arm64] drm/msm/dpu: make dpu_hw_ctl_clear_all_blendstages clear necessary LMs - cgroup/cpuset: Miscellaneous code cleanup - cgroup/cpuset: Fix violation of cpuset locking rule - [x86] ASoC: Intel: Fix platform ID matching - Bluetooth: fix repeated calls to sco_sock_kill - [arm64] drm/msm/dsi: Fix some reference counted resource leaks - net/mlx5: Register to devlink ingress VLAN filter trap - net/mlx5: Fix unpublish devlink parameters - [x86] ASoC: rt5682: Implement remove callback - [x86] ASoC: rt5682: Properly turn off regulators if wrong device ID - [arm64,armhf] usb: dwc3: meson-g12a: add IRQ check - [arm64] usb: dwc3: qcom: add IRQ check - [armhf] usb: phy: twl6030: add IRQ checks - devlink: Clear whole devlink_flash_notify struct - Bluetooth: Move shutdown callback before flushing tx and rx queue - PM: cpu: Make notifier chain use a raw_spinlock_t - mac80211: Fix insufficient headroom issue for AMSDU - locking/lockdep: Mark local_lock_t - locking/local_lock: Add missing owner initialization - lockd: Fix invalid lockowner cast after vfs_test_lock - nfsd4: Fix forced-expiry locking - [arm64] dts: marvell: armada-37xx: Extend PCIe MEM space - [arm*] firmware: raspberrypi: Keep count of all consumers - [arm*] firmware: raspberrypi: Fix a leak in 'rpi_firmware_get()' - mm/swap: consider max pages in iomap_swapfile_add_extent - Bluetooth: add timeout sanity check to hci_inquiry - [armhf] i2c: s3c2410: fix IRQ check - gfs2: init system threads before freeze lock - rsi: fix error code in rsi_load_9116_firmware() - rsi: fix an error code in rsi_probe() - [x86] ASoC: Intel: Skylake: Leave data as is when invoking TLV IPCs - [x86] ASoC: Intel: Skylake: Fix module resource and format selection - mmc: sdhci: Fix issue with uninitialized dma_slave_config - [arm64,armhf] mmc: dw_mmc: Fix issue with uninitialized dma_slave_config - bpf: Fix possible out of bound write in narrow load handling - CIFS: Fix a potencially linear read overflow - [arm64] i2c: xlp9xx: fix main IRQ check - [arm*] usb: ehci-orion: Handle errors of clk_prepare_enable() in probe - [arm64] tty: serial: fsl_lpuart: fix the wrong mapbase value - iwlwifi: follow the new inclusive terminology - iwlwifi: skip first element in the WTAS ACPI table - ice: Only lock to update netdev dev_addr - ath6kl: wmi: fix an error code in ath6kl_wmi_sync_point() - [amd64,arm64] atlantic: Fix driver resume flow. - bcma: Fix memory leak for internally-handled cores - brcmfmac: pcie: fix oops on failure to resume and reprobe - ipv6: make exception cache less predictible - ipv4: make exception cache less predictible - net: sched: Fix qdisc_rate_table refcount leak when get tcf_block failed - ipv4: fix endianness issue in inet_rtm_getroute_build_skb() - [x86] ASoC: rt5682: Remove unused variable in rt5682_i2c_remove() - iwlwifi Add support for ax201 in Samsung Galaxy Book Flex2 Alpha - f2fs: guarantee to write dirty data when enabling checkpoint back - time: Handle negative seconds correctly in timespec64_to_ns() - io_uring: IORING_OP_WRITE needs hash_reg_file set - bio: fix page leak bio_add_hw_page failure - tty: Fix data race between tiocsti() and flush_to_ldisc() - [x86] perf/x86/amd/ibs: Extend PERF_PMU_CAP_NO_EXCLUDE to IBS Op - [x86] resctrl: Fix a maybe-uninitialized build warning treated as error - [x86] Revert "KVM: x86: mmu: Add guest physical address check in translate_gpa()" - [s390x] KVM: index kvm->arch.idle_mask by vcpu_idx - [x86] KVM: x86: Update vCPU's hv_clock before back to guest when tsc_offset is adjusted - [x86] KVM: VMX: avoid running vmx_handle_exit_irqoff in case of emulation - [x86] KVM: nVMX: Unconditionally clear nested.pi_pending on nested VM-Enter - fuse: truncate pagecache on atomic_o_trunc - fuse: flush extending writes - fbmem: don't allow too huge resolutions - backlight: pwm_bl: Improve bootloader/kernel device handover - [armel] clk: kirkwood: Fix a clocking boot regression https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.66 - Revert "Bluetooth: Move shutdown callback before flushing tx and rx queue" - Revert "block: nbd: add sanity check for first_minor" - Revert "posix-cpu-timers: Force next expiration recalc after itimer reset" - Revert "time: Handle negative seconds correctly in timespec64_to_ns()" https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.67 - io_uring: limit fixed table size by RLIMIT_NOFILE - io_uring: place fixed tables under memcg limits - io_uring: add ->splice_fd_in checks - io_uring: fail links of cancelled timeouts - io-wq: fix wakeup race when adding new work - btrfs: wake up async_delalloc_pages waiters after submit - btrfs: reset replace target device to allocation state on close - blk-zoned: allow zone management send operations without CAP_SYS_ADMIN - blk-zoned: allow BLKREPORTZONE without CAP_SYS_ADMIN - PCI/MSI: Skip masking MSI-X on Xen PV - [powerpc*] perf/hv-gpci: Fix counter value parsing - xen: fix setting of max_pfn in shared_info - 9p/xen: Fix end of loop tests for list_for_each_entry - ceph: fix dereference of null pointer cf - [armhf] soc: aspeed: lpc-ctrl: Fix boundary check for mmap - [armhf] soc: aspeed: p2a-ctrl: Fix boundary check for mmap - [arm64] mm: Fix TLBI vs ASID rollover - [arm64] head: avoid over-mapping in map_memory - iio: ltc2983: fix device probe - [arm64] wcn36xx: Ensure finish scan is not requested before start scan - block: bfq: fix bfq_set_next_ioprio_data() - [x86] power: supply: max17042: handle fails of reading status register - dm crypt: Avoid percpu_counter spinlock contention in crypt_page_alloc() - [x86] crypto: ccp - shutdown SEV firmware on kexec - [x86] VMCI: fix NULL pointer dereference when unmapping queue pair - media: uvc: don't do DMA on stack - media: rc-loopback: return number of emitters rather than error - [s390x] qdio: fix roll-back after timeout on ESTABLISH ccw - [s390x] qdio: cancel the ESTABLISH ccw after timeout - [armhf] Revert "dmaengine: imx-sdma: refine to load context only once" - [armhf] dmaengine: imx-sdma: remove duplicated sdma_load_context - libata: add ATA_HORKAGE_NO_NCQ_TRIM for Samsung 860 and 870 SSDs - f2fs: fix to do sanity check for sb/cp fields correctly - PCI/portdrv: Enable Bandwidth Notification only if port supports it - PCI: Restrict ASMedia ASM1062 SATA Max Payload Size Supported - PCI: Return ~0 data on pciconfig_read() CAP_SYS_ADMIN failure - [arm64] PCI: xilinx-nwl: Enable the clock through CCF - [arm64] PCI: aardvark: Configure PCIe resources from 'ranges' DT property - PCI: Export pci_pio_to_address() for module use - [arm64] PCI: aardvark: Fix checking for PIO status - [arm64] PCI: aardvark: Fix masking and unmasking legacy INTx interrupts - HID: input: do not report stylus battery state as "full" - f2fs: quota: fix potential deadlock - [arm64] pinctrl: armada-37xx: Correct PWM pins definitions - scsi: bsg: Remove support for SCSI_IOCTL_SEND_COMMAND - [arm64,armhf] clk: rockchip: drop GRF dependency for rk3328/rk3036 pll types - [amd64] IB/hfi1: Adjust pkey entry in index 0 - RDMA/iwcm: Release resources if iw_cm module initialization fails - docs: Fix infiniband uverbs minor number - scsi: BusLogic: Use %X for u32 sized integer rather than %lX - [armhf] pinctrl: samsung: Fix pinctrl bank pin count - scsi: ufs: Fix memory corruption by ufshcd_read_desc_param() - [powerpc*] cpuidle: pseries: Fixup CEDE0 latency only for POWER10 onwards - [powerpc*] stacktrace: Include linux/delay.h - RDMA/mlx5: Delete not-available udata check - [powerpc*] cpuidle: pseries: Mark pseries_idle_proble() as __init - f2fs: reduce the scope of setting fsck tag when de->name_len is zero - NFSv4/pNFS: Fix a layoutget livelock loop - NFSv4/pNFS: Always allow update of a zero valued layout barrier - NFSv4/pnfs: The layout barrier indicate a minimal value for the seqid - SUNRPC: Fix potential memory corruption - SUNRPC/xprtrdma: Fix reconnection locking - SUNRPC query transport's source port - sunrpc: Fix return value of get_srcport() - [arm64,armhf] pinctrl: single: Fix error return code in pcs_parse_bits_in_pinctrl_entry() - [powerpc*] numa: Consider the max NUMA node for migratable LPAR - scsi: smartpqi: Fix an error code in pqi_get_raid_map() - scsi: qedi: Fix error codes in qedi_alloc_global_queues() - scsi: qedf: Fix error codes in qedf_alloc_global_queues() - iommu/vt-d: Update the virtual command related registers - HID: i2c-hid: Fix Elan touchpad regression - [arm64,armhf] clk: imx8m: fix clock tree update of TF-A managed clocks - [powerpc*] KVM: PPC: Book3S HV: Fix copy_tofrom_guest routines - [powerpc*] KVM: PPC: Book3S HV Nested: Reflect guest PMU in-use to L0 when guest SPRs are live - [x86] platform/x86: dell-smbios-wmi: Add missing kfree in error-exit from run_smbios_call - [powerpc*] smp: Update cpu_core_map on all PowerPc systems - [arm64] RDMA/hns: Fix QP's resp incomplete assignment - fscache: Fix cookie key hashing - [powerpc*] KVM: PPC: Fix clearing never mapped TCEs in realmode - f2fs: fix to account missing .skipped_gc_rwsem - f2fs: fix unexpected ENOENT comes from f2fs_map_blocks() - f2fs: fix to unmap pages from userspace process in punch_hole() - f2fs: deallocate compressed pages when error happens - f2fs: should put a page beyond EOF when preparing a write - [mips64el,mipsel] Malta: fix alignment of the devicetree buffer - userfaultfd: prevent concurrent API initialization - [arm*] drm/vc4: hdmi: Set HD_CTL_WHOLSMP and HD_CTL_CHALIGN_SET - drm/amdgpu: Fix amdgpu_ras_eeprom_init() - media: dib8000: rewrite the init prbs logic - [x86] hyperv: fix for unwanted manipulation of sched_clock when TSC marked unstable - PCI: Use pci_update_current_state() in pci_enable_device_flags() - tipc: keep the skb in rcv queue until the whole data is read - net: phy: Fix data type in DP83822 dp8382x_disable_wol() - iio: dac: ad5624r: Fix incorrect handling of an optional regulator. - iavf: do not override the adapter state in the watchdog task - iavf: fix locking of critical sections - video: fbdev: kyro: fix a DoS bug by restricting user input - netlink: Deal with ESRCH error in nlmsg_notify() - drm: avoid blocking in drm_clients_info's rcu section - drm: serialize drm_file.master with a new spinlock - drm: protect drm_master pointers in drm_lease.c - rcu: Fix macro name CONFIG_TASKS_RCU_TRACE - igc: Check if num of q_vectors is smaller than max before array access - usb: gadget: u_ether: fix a potential null pointer dereference - [armhf] USB: EHCI: ehci-mv: improve error handling in mv_ehci_enable() - usb: gadget: composite: Allow bMaxPower=0 if self-powered - tty: serial: jsm: hold port lock when reporting modem line changes - [arm64] bus: fsl-mc: fix mmio base address for child DPRCs - nfp: fix return statement in nfp_net_parse_meta() - ethtool: improve compat ioctl handling - drm/amdgpu: Fix a printing message - [arm64] dts: allwinner: h6: tanix-tx6: Fix regulator node names - video: fbdev: kyro: Error out if 'pixclock' equals zero - ipv4: ip_output.c: Fix out-of-bounds warning in ip_copy_addrs() - flow_dissector: Fix out-of-bounds warnings - [s390x] jump_label: print real address in a case of a jump label bug - [s390x] make PCI mio support a machine flag - serial: 8250: Define RX trigger levels for OxSemi 950 devices - serial: 8250_pci: make setup_port() parameters explicitly unsigned - Bluetooth: skip invalid hci_sync_conn_complete_evt - workqueue: Fix possible memory leaks in wq_numa_init() - bonding: 3ad: fix the concurrency between __bond_release_one() and bond_3ad_state_machine_handler() - [x86] ASoC: Intel: bytcr_rt5640: Move "Platform Clock" routes to the maps for the matching in-/output - [x86] ASoC: Intel: update sof_pcm512x quirks - media: v4l2-dv-timings.c: fix wrong condition in two for-loops - gfs2: Fix glock recursion in freeze_go_xmote_bh - [armhf] dts: imx53-ppd: Fix ACHC entry - [arm64] nvmem: qfprom: Fix up qfprom_disable_fuse_blowing() ordering - [arm64] net: ethernet: stmmac: Do not use unreachable() in ipq806x_gmac_probe() - [arm64] drm/msm: mdp4: drop vblank get/put from prepare/complete_commit - [arm64] drm/msm/dsi: Fix DSI and DSI PHY regulator config from SDM660 - [x86] thunderbolt: Fix port linking by checking all adapters - [x86] drm/vmwgfx: fix potential UAF in vmwgfx_surface.c - Bluetooth: schedule SCO timeouts with delayed_work - Bluetooth: avoid circular locks in sco_sock_connect - [arm64] drm/msm/dp: return correct edid checksum after corrupted edid checksum read - net/mlx5: Fix variable type to match 64bit - gpu: drm: amd: amdgpu: amdgpu_i2c: fix possible uninitialized-variable access in amdgpu_i2c_router_select_ddc_port() - mac80211: Fix monitor MTU limit so that A-MSDUs get through - [arm64] dts: ls1046a: fix eeprom entries - nvme-tcp: don't check blk_mq_tag_to_rq when receiving pdu data - nvme: code command_id with a genctr for use-after-free validation - Bluetooth: Fix handling of LE Enhanced Connection Complete - opp: Don't print an error if required-opps is missing - iomap: pass writeback errors to the mapping - tcp: enable data-less, empty-cookie SYN with TFO_SERVER_COOKIE_NOT_REQD - rpc: fix gss_svc_init cleanup on failure - [armhf] hwmon: (pmbus/ibm-cffps) Fix write bits for LED control - [x86] staging: rts5208: Fix get_ms_information() heap buffer size - net: Fix offloading indirect devices dependency on qdisc order creation - gfs2: Don't call dlm after protocol is unmounted - [arm64,armhf] usb: chipidea: host: fix port index underflow and UBSAN complains - lockd: lockd server-side shouldn't set fl_ops - [armhf] drm/exynos: Always initialize mapping in exynos_drm_register_dma() - rtl8xxxu: Fix the handling of TX A-MPDU aggregation - rtw88: use read_poll_timeout instead of fixed sleep - rtw88: wow: build wow function only if CONFIG_PM is on - rtw88: wow: fix size access error of probe request - btrfs: tree-log: check btrfs_lookup_data_extent return value - soundwire: intel: fix potential race condition during power down - [x86] ASoC: Intel: Skylake: Fix module configuration for KPB and MIXER - [x86] ASoC: Intel: Skylake: Fix passing loadable flag for module - of: Don't allow __of_attached_node_sysfs() without CONFIG_SYSFS - [arm64] mmc: sdhci-of-arasan: Modified SD default speed to 19MHz for ZynqMP - [arm64] mmc: sdhci-of-arasan: Check return value of non-void funtions - mmc: rtsx_pci: Fix long reads when clock is prescaled - mmc: core: Return correct emmc response in case of ioctl error - cifs: fix wrong release in sess_alloc_buffer() failed path - Revert "USB: xhci: fix U1/U2 handling for hardware with XHCI_INTEL_HOST quirk set" - [armhf] usb: musb: musb_dsps: request_irq() after initializing musb - usbip: give back URBs for unsent unlink requests during cleanup - usbip:vhci_hcd USB port can get stuck in the disabled state - [arm64,armhf] ASoC: rockchip: i2s: Fix regmap_ops hang - [arm64,armhf] ASoC: rockchip: i2s: Fixup config for DAIFMT_DSP_A/B - nfsd: fix crash on LOCKT on reexported NFSv3 - iwlwifi: pcie: free RBs during configure - iwlwifi: mvm: fix a memory leak in iwl_mvm_mac_ctxt_beacon_changed - iwlwifi: mvm: avoid static queue number aliasing - iwlwifi: mvm: fix access to BSS elements - iwlwifi: fw: correctly limit to monitor dump - iwlwifi: mvm: Fix scan channel flags settings - net/mlx5: DR, fix a potential use-after-free bug - net/mlx5: DR, Enable QP retransmission - parport: remove non-zero check on count - [arm64] wcn36xx: Fix missing frame timestamp for beacon/probe-resp - ath9k: fix OOB read ar9300_eeprom_restore_internal - ath9k: fix sleeping in atomic context - net: fix NULL pointer reference in cipso_v4_doi_free - fix array-index-out-of-bounds in taprio_change - [arm64] net: hns3: clean up a type mismatch warning - fs/io_uring Don't use the return value from import_iovec(). - io_uring: remove duplicated io_size from rw - ovl: fix BUG_ON() in may_delete() when called from ovl_cleanup() - scsi: BusLogic: Fix missing pr_cont() use - scsi: qla2xxx: Changes to support kdump kernel - scsi: qla2xxx: Sync queue idx with queue_pair_map idx - [powerpc*] cpufreq: powernv: Fix init_chip_info initialization in numa=off - [s390x] pv: fix the forcing of the swiotlb - hugetlb: fix hugetlb cgroup refcounting during vma split - mm/hmm: bypass devmap pte when all pfn requested flags are fulfilled - mm/hugetlb: initialize hugetlb_usage in mm_init - mm,vmscan: fix divide by zero in get_scan_count - memcg: enable accounting for pids in nested pid namespaces - libnvdimm/pmem: Fix crash triggered when I/O in-flight during unbind - [arm64,armhf] platform/chrome: cros_ec_proto: Send command again when timeout occurs - [x86] drm/mgag200: Select clock in PLL update functions - [arm64] drm/msi/mdp4: populate priv->kms in mdp4_kms_init - drm/dp_mst: Fix return code on sideband message failure - [arm64,armhf] drm/panfrost: Make sure MMU context lifetime is not bound to panfrost_priv - drm/amdgpu: Fix BUG_ON assert - [arm64,armhf] drm/panfrost: Simplify lock_region calculation - [arm64,armhf] drm/panfrost: Use u64 for size in lock_region - [arm64,armhf] drm/panfrost: Clamp lock region to Bifrost minimum - fanotify: limit number of event merge attempts https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.68 - btrfs: fix upper limit for max_inline for page size 64K - [amd64] xen: reset legacy rtc flag for PV domU - [arm64] sve: Use correct size when reinitialising SVE state - PCI: Add AMD GPU multi-function power dependencies - drm/amd/amdgpu: Increase HWIP_MAX_INSTANCE to 10 - [armhf] drm/etnaviv: return context from etnaviv_iommu_context_get - [armhf] drm/etnaviv: put submit prev MMU context when it exists - [armhf] drm/etnaviv: stop abusing mmu_context as FE running marker - [armhf] drm/etnaviv: keep MMU context across runtime suspend/resume - [armhf] drm/etnaviv: exec and MMU state is lost when resetting the GPU - [armhf] drm/etnaviv: fix MMU context leak on GPU reset - [armhf] drm/etnaviv: reference MMU context when setting up hardware state - [armhf] drm/etnaviv: add missing MMU context put when reaping MMU mapping - [s390x] sclp: fix Secure-IPL facility detection - [x86] pat: Pass valid address to sanitize_phys() - [x86] mm: Fix kern_addr_valid() to cope with existing but not present entries - tipc: fix an use-after-free issue in tipc_recvmsg - ethtool: Fix rxnfc copy to user buffer overflow - net/{mlx5|nfp|bnxt}: Remove unnecessary RTNL lock assert - net/l2tp: Fix reference count leak in l2tp_udp_recv_core - r6040: Restore MDIO clock frequency after MAC reset - tipc: increase timeout in tipc_sk_enqueue() - [arm64] drm/rockchip: cdn-dp-core: Make cdn_dp_core_resume __maybe_unused - net/mlx5: FWTrace, cancel work on alloc pd error flow - net/mlx5: Fix potential sleeping in atomic context - nvme-tcp: fix io_work priority inversion - events: Reuse value read using READ_ONCE instead of re-reading it - vhost_net: fix OoB on sendmsg() failure. - net/af_unix: fix a data-race in unix_dgram_poll - [arm64,armhf] net: dsa: destroy the phylink instance on any error in dsa_slave_phy_setup - [x86] uaccess: Fix 32-bit __get_user_asm_u64() when CC_HAS_ASM_GOTO_OUTPUT=y - tcp: fix tp->undo_retrans accounting in tcp_sacktag_one() - qed: Handle management FW error - udp_tunnel: Fix udp_tunnel_nic work-queue type - dt-bindings: arm: Fix Toradex compatible typo - [powerpc*] KVM: PPC: Book3S HV: Tolerate treclaim. in fake-suspend mode changing registers - bnxt_en: make bnxt_free_skbs() safe to call after bnxt_free_mem() - [arm64] net: hns3: pad the short tunnel frame before sending to hardware - [arm64] net: hns3: change affinity_mask to numa node range - [arm64] net: hns3: disable mac in flr process - [arm64] net: hns3: fix the timing issue of VF clearing interrupt sources - mm/memory_hotplug: use "unsigned long" for PFN in zone_for_pfn_range() - dt-bindings: mtd: gpmc: Fix the ECC bytes vs. OOB bytes equation - PCI: Add ACS quirks for NXP LX2xx0 and LX2xx2 platforms - fuse: fix use after free in fuse_read_interrupt() - [arm64,armhf] PCI: tegra: Fix OF node reference leak - [armhf] mfd: Don't use irq_create_mapping() to resolve a mapping - tracing/probes: Reject events which have the same name of existing one - PCI: Add ACS quirks for Cavium multi-function devices - watchdog: Start watchdog in watchdog_set_last_hw_keepalive only if appropriate - Set fc_nlinfo in nh_create_ipv4, nh_create_ipv6 - net: usb: cdc_mbim: avoid altsetting toggling for Telit LN920 - block, bfq: honor already-setup queue merges - [i386] PCI: ibmphp: Fix double unmap of io_mem - ethtool: Fix an error code in cxgb2.c - [s390x] bpf: Fix optimizing out zero-extensions - [s390x] bpf: Fix 64-bit subtraction of the -0x80000000 constant - [s390x] bpf: Fix branch shortening during codegen pass - mfd: axp20x: Update AXP288 volatile ranges - PCI: of: Don't fail devm_pci_alloc_host_bridge() on missing 'ranges' - netfilter: nft_ct: protect nft_ct_pcpu_template_refcnt with mutex - [arm64] KVM: Restrict IPA size to maximum 48 bits on 4K and 16K page size - PCI: Fix pci_dev_str_match_path() alloc while atomic bug - mtd: mtdconcat: Judge callback existence based on the master - mtd: mtdconcat: Check _read, _write callbacks existence before assignment - [arm64] KVM: Fix read-side race on updates to vcpu reset state - [arm64] KVM: Handle PSCI resets before userspace touches vCPU state - mtd: rawnand: cafe: Fix a resource leak in the error handling path of 'cafe_nand_probe()' - perf unwind: Do not overwrite FEATURE_CHECK_LDFLAGS-libunwind-{x86,aarch64} - [arm64] gpio: mpc8xxx: Fix a resources leak in the error handling path of 'mpc8xxx_probe()' - [arm64] gpio: mpc8xxx: Use 'devm_gpiochip_add_data()' to simplify the code and avoid a leak - net: hso: add failure handler for add_net_device - [armhf] net: dsa: b53: Fix calculating number of switch ports - [armhf] net: dsa: b53: Set correct number of ports in the DSA struct - netfilter: socket: icmp6: fix use-after-scope - fq_codel: reject silly quantum parameters - qlcnic: Remove redundant unlock in qlcnic_pinit_from_rom - ip_gre: validate csum_start only on pull - [armhf] net: dsa: b53: Fix IMP port setup on BCM5301x - bnxt_en: fix stored FW_PSID version masks - bnxt_en: Fix asic.rev in devlink dev info command - bnxt_en: log firmware debug notifications - bnxt_en: Consolidate firmware reset event logging. - bnxt_en: Convert to use netif_level() helpers. - bnxt_en: Improve logging of error recovery settings information. - bnxt_en: Fix possible unintended driver initiated error recovery - mfd: lpc_sch: Partially revert "Add support for Intel Quark X1000" - mfd: lpc_sch: Rename GPIOBASE to prevent build error - [x86] mce: Avoid infinite loop for copy from user recovery - bnxt_en: Fix error recovery regression - [armhf] net: dsa: bcm_sf2: Fix array overrun in bcm_sf2_num_active_ports() https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.69 - PCI: pci-bridge-emul: Add PCIe Root Capabilities Register - [arm64] PCI: aardvark: Fix reporting CRS value - console: consume APC, DM, DCS - [s390x] pci_mmio: fully validate the VMA before calling follow_pte() - [armel,armhf] Qualify enabling of swiotlb_init() - [armel,armhf] 9077/1: PLT: Move struct plt_entries definition to header - [armel,armhf] 9078/1: Add warn suppress parameter to arm_gen_branch_link() - [armel,armhf] 9079/1: ftrace: Add MODULE_PLTS support - [armel,armhf] 9098/1: ftrace: MODULE_PLT: Fix build problem without DYNAMIC_FTRACE - Revert "net/mlx5: Register to devlink ingress VLAN filter trap" - sctp: validate chunk size in __rcv_asconf_lookup (CVE-2021-3655) - sctp: add param size validation for SCTP_PARAM_SET_PRIMARY (CVE-2021-3655) - [x86] staging: rtl8192u: Fix bitwise vs logical operator in TranslateRxSignalStuff819xUsb() - coredump: fix memleak in dump_vma_snapshot() - dmaengine: acpi: Avoid comparison GSI with Linux vIRQ - [armhf] thermal/drivers/exynos: Fix an error code in exynos_tmu_probe() - 9p/trans_virtio: Remove sysfs file on probe failure - prctl: allow to setup brk for et_dyn executables - nilfs2: use refcount_dec_and_lock() to fix potential UAF - profiling: fix shift-out-of-bounds bugs - PM: sleep: core: Avoid setting power.must_resume to false - platform/chrome: sensorhub: Add trace events for sample - platform/chrome: cros_ec_trace: Fix format warnings - ceph: allow ceph_put_mds_session to take NULL or ERR_PTR - ceph: cancel delayed work instead of flushing on mdsc teardown - thermal/core: Fix thermal_cooling_device_register() prototype - drivers: base: cacheinfo: Get rid of DEFINE_SMP_CALL_CACHE_FUNCTION() - dma-buf: DMABUF_MOVE_NOTIFY should depend on DMA_SHARED_BUFFER - [amd64] iommu/amd: Relocate GAMSup check to early_enable_iommus - ceph: request Fw caps before updating the mtime in ceph_write_iter - ceph: remove the capsnaps when removing caps - ceph: lockdep annotations for try_nonblocking_invalidate - btrfs: update the bdev time directly when closing - btrfs: fix lockdep warning while mounting sprout fs - nilfs2: fix memory leak in nilfs_sysfs_create_device_group - nilfs2: fix NULL pointer in nilfs_##name##_attr_release - nilfs2: fix memory leak in nilfs_sysfs_create_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_delete_##name##_group - nilfs2: fix memory leak in nilfs_sysfs_create_snapshot_group - nilfs2: fix memory leak in nilfs_sysfs_delete_snapshot_group - [arm64,armhf] pwm: rockchip: Don't modify HW state in .remove() callback - [armhf] pwm: stm32-lp: Don't modify HW state in .remove() callback - blk-throttle: fix UAF by deleteing timer in blk_throtl_exit() - blk-mq: allow 4x BLK_MAX_REQUEST_COUNT at blk_plug for multiple_queues - sched/idle: Make the idle timer expire in hard interrupt context - drm/nouveau/nvkm: Replace -ENOSYS with -ENODEV https://www.kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.70 - [arm64] PCI: aardvark: Increase polling delay to 1.5s while waiting for PIO response - ocfs2: drop acl cache for directories too - mm: fix uninitialized use in overcommit_policy_handler - [arm*] usb: dwc2: gadget: Fix ISOC flow for BDMA and Slave - [arm*] usb: dwc2: gadget: Fix ISOC transfer complete handling for DDMA - [armhf] usb: musb: tusb6010: uninitialized data in tusb_fifo_write_unaligned() - cifs: fix incorrect check for null pointer in header_assemble - [x86] xen/x86: fix PV trap handling on secondary processors - usb-storage: Add quirk for ScanLogic SL11R-IDE older than 2.6c - USB: serial: cp210x: add ID for GW Instek GDM-834x Digital Multimeter - USB: cdc-acm: fix minor-number release - [arm*] binder: make sure fd closes complete - [arm64,armhf] usb: dwc3: core: balance phy init and exit - usb: core: hcd: Add support for deferring roothub registration - USB: serial: mos7840: remove duplicated 0xac24 device ID - USB: serial: option: add Telit LN920 compositions - USB: serial: option: remove duplicate USB device ID - USB: serial: option: add device id for Foxconn T99W265 - erofs: fix up erofs_lookup tracepoint - btrfs: prevent __btrfs_dump_space_info() to underflow its free space - xhci: Set HCD flag to defer primary roothub registration - [arm64] serial: mvebu-uart: fix driver's tx_empty callback - scsi: sd_zbc: Ensure buffer size is aligned to SECTOR_SIZE - net: hso: fix muxed tty registration - afs: Fix incorrect triggering of sillyrename on 3rd-party invalidation - afs: Fix updating of i_blocks on file/dir extension - [arm64] enetc: Fix illegal access when reading affinity_hint - [arm64] enetc: Fix uninitialized struct dim_sample field usage - bnxt_en: Fix TX timeout when TX ring size is set to the smallest - [arm64] net: hns3: fix change RSS 'hfunc' ineffective issue - [arm64] net: hns3: check queue id range before using - net/smc: add missing error check in smc_clc_prfx_set() - net/smc: fix 'workqueue leaked lock' in smc_conn_abort_work - [arm64,armhf] net: dsa: don't allocate the slave_mii_bus using devres - [s390x] qeth: fix NULL deref in qeth_clear_working_pool_list() - qed: rdma - don't wait for resources under hw error recovery flow - net/mlx4_en: Don't allow aRFS for encapsulated packets - atlantic: Fix issue in the pm resume flow. - scsi: iscsi: Adjust iface sysfs attr detection - scsi: target: Fix the pgr/alua_support_store functions - [x86] tty: synclink_gt, drop unneeded forward declarations - [x86] tty: synclink_gt: rename a conflicting function name - nvme-tcp: fix incorrect h2cdata pdu offset accounting - treewide: Change list_sort to use const pointers - nvme: keep ctrl->namespaces ordered - thermal/core: Potential buffer overflow in thermal_build_list_of_policies() - cifs: fix a sign extension bug - scsi: qla2xxx: Restore initiator in dual mode - scsi: lpfc: Use correct scnprintf() limit - [arm64,armhf] irqchip/gic-v3-its: Fix potential VPE leak on error - md: fix a lock order reversal in md_alloc - [x86] asm: Add a missing __iomem annotation in enqcmds() - [x86] asm: Fix SETZ size enqcmds() build failure - io_uring: put provided buffer meta data under memcg accounting - blktrace: Fix uaf in blk_trace access after removing by sysfs - net: phylink: Update SFP selected interface on advertising changes - net: stmmac: allow CSR clock of 300MHz - blk-mq: avoid to iterate over stale request - ipv6: delay fib6_sernum increase in fib6_add - [x86] cpufreq: intel_pstate: Override parameters if HWP forced by BIOS - bpf: Add oversize check before call kvcalloc() - xen/balloon: use a kernel thread instead a workqueue - nvme-multipath: fix ANA state updates when a namespace is not present - nvme-rdma: destroy cm id before destroy qp to avoid use after free - amd/display: downgrade validation failure log level - block: check if a profile is actually registered in blk_integrity_unregister - block: flush the integrity workqueue in blk_integrity_unregister - blk-cgroup: fix UAF by grabbing blkcg lock before destroying blkg pd - qnx4: avoid stringop-overread errors - [arm64] Mark __stack_chk_guard as __ro_after_init - net: 6pack: Fix tx timeout and slot time - [x86] thermal/drivers/int340x: Do not set a wrong tcc offset on resume - USB: serial: cp210x: fix dropped characters with CP2102 - xen/balloon: fix balloon kthread freezing . [ Salvatore Bonaccorso ] * Refresh "MODSIGN: do not load mok when secure boot disabled" * Refresh "MODSIGN: load blacklist from MOKx" * [rt] Update to 5.10.47-rt46 - sched: Fix migration_cpu_stop() requeueing - sched: Simplify migration_cpu_stop() - sched: Collate affine_move_task() stoppers - sched: Optimize migration_cpu_stop() - sched: Fix affine_move_task() self-concurrency - sched: Simplify set_affinity_pending refcounts - sched: Don't defer CPU pick to migration_cpu_stop() * Bump ABI to 9 * Disalbe PSTORE_BLK (Marked broken upstream) * Refresh "fs: Add MODULE_SOFTDEP declarations for hard-coded crypto drivers" * [rt] Update to 5.10.52-rt47 * [rt] Refresh "sched: Fix balance_callback()" * [rt] Drop "timers: Move clearing of base::timer_running under base::lock" (applied upstream) * [rt] Refresh "net/Qdisc: use a seqlock instead seqcount" * [rt] Refresh "net: xfrm: Use sequence counter with associated" * [rt] Update to 5.10.59-rt51 * [rt] Update to 5.10.59-rt52 * [rt] Update to 5.10.65-rt53 * Refresh "Partially revert "net: socket: implement 64-bit timestamps"" * [armhf] dts: sun7i: A20-olinuxino-lime2: Fix ethernet phy-mode * [mipsel] bpf, mips: Validate conditional branch offsets (CVE-2021-38300) linux-signed-i386 (5.10.46+5) bullseye-security; urgency=high . * Sign kernel from linux 5.10.46-5 . * virtio_console: Assure used length from device is limited (CVE-2021-38160) * NFSv4: Initialise connection to the server in nfs4_alloc_client() (CVE-2021-38199) * tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop. (CVE-2021-3679) * [poewrpc*] KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow (CVE-2021-37576) * ovl: prevent private clone if bind mount is not allowed (CVE-2021-3732) * [x86] KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653) * [x86] KVM: nSVM: always intercept VMLOAD/VMSAVE when nested (CVE-2021-3656) * bpf: Fix integer overflow involving bucket_size (CVE-2021-38166) * ath: Use safer key clearing with key cache entries (CVE-2020-3702) * ath9k: Clear key cache explicitly on disabling hardware (CVE-2020-3702) * ath: Export ath_hw_keysetmac() (CVE-2020-3702) * ath: Modify ath_key_delete() to not need full key entry (CVE-2020-3702) * ath9k: Postpone key cache entry deletion for TXQ frames reference it (CVE-2020-3702) * btrfs: fix NULL pointer dereference when deleting device by invalid id (CVE-2021-3739) * net: qrtr: fix another OOB Read in qrtr_endpoint_post (CVE-2021-3743) * vt_kdsetmode: extend console locking (CVE-2021-3753) * ext4: fix race writing to an inline_data file while its xattrs are changing (CVE-2021-40490) * dccp: don't duplicate ccid when cloning dccp sock (CVE-2020-16119) * io_uring: ensure symmetry in handling iter types in loop_rw_iter() (CVE-2021-41073) * netfilter: nftables: avoid potential overflows on 32bit arches * netfilter: nf_tables: initialize set before expression setup (Closes: #993978) * netfilter: nftables: clone set element expression template * bnx2x: Fix enabling network interfaces without VFs (Closes: #993948) lynx (2.9.0dev.6-3~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. . lynx (2.9.0dev.6-3) unstable; urgency=high . * Apply fix from Lynx 2.9.0dev.9 for CVE-2021-38165 to fix leakage of username and password in the TLS 1.2 SNI Extension if username and password were given in the URL, i.e. as https://user:pass@example.org/ (Closes: #991971) mariadb-10.5 (1:10.5.12-0+deb11u1) bullseye; urgency=medium . * New upstream version 10.5.12. Includes security fixes for: - CVE-2021-2389 - CVE-2021-2372 * Drop patches applied upstream in MariaDB S3 plugin mbrola (3.3+dfsg-4+deb11u1) bullseye; urgency=medium . * patches/EOF: Fix detecting end of file. mediawiki (1:1.35.4-1~deb11u1) bullseye-security; urgency=high . * New upstream version 1.35.4, fixing CVE-2021-35197, CVE-2021-41798, CVE-2021-41799, CVE-2021-41800, CVE-2021-41801. mediawiki (1:1.35.3-1) unstable; urgency=medium . [ Kunal Mehta ] * New upstream version 1.35.3, fixing CVE-2021-35197. . [ Tobias Wiese ] * d/tests: update test restrictions (Closes: #987976) * d/tests: Add systemd as test dependency modsecurity-crs (3.3.0-1+deb11u1) bullseye; urgency=medium . * Add upstream patch to fix request body bypass CVE-2021-35368 (Closes: #992000) mtr (0.94-1+deb11u1) bullseye; urgency=medium . * d/control: Compile with json support with jansson (closes: #986534) mutter (3.38.6-2~deb11u1) bullseye; urgency=medium . * Rebuild for bullseye . mutter (3.38.6-2) unstable; urgency=medium . * Team upload * d/p/monitor-manager-Don-t-include-generated-code-in-header-fi.patch: Add patch from upstream 40.1 to fix FTBFS seen on s390x. Thanks to Adrian Bunk. . mutter (3.38.6-1) unstable; urgency=medium . [ Marco Trevisan ] * d/gbp.conf, d/control.in: Update VCS details for debian/unstable branch . [ Simon McVittie ] * New upstream release - xwayland: Check permissions on /tmp/.X11-unix - Ensure valid window texture size after viewport changes - kms: Improve handling of common video modes that might exceed the possible bandwidth - Fix damage propagation for rotated transforms with viewport - Improve Wayland subsurface reordering * Update GLib build-dependency (no practical effect, the new dependency is already in bullseye) . [ Laurent Bigonville ] * Fixes for non-Linux ports: - Build-depend on libegl1-mesa-dev on all architectures (not just Linux). It is required for EGL support. - Only build-depend on udev on Linux architectures - Only depend on libwayland on Linux architectures - Drop unnecessary -dev dependency on libudev-dev mutter (3.38.6-1) unstable; urgency=medium . [ Marco Trevisan ] * d/gbp.conf, d/control.in: Update VCS details for debian/unstable branch . [ Simon McVittie ] * New upstream release - xwayland: Check permissions on /tmp/.X11-unix - Ensure valid window texture size after viewport changes - kms: Improve handling of common video modes that might exceed the possible bandwidth - Fix damage propagation for rotated transforms with viewport - Improve Wayland subsurface reordering * Update GLib build-dependency (no practical effect, the new dependency is already in bullseye) . [ Laurent Bigonville ] * Fixes for non-Linux ports: - Build-depend on libegl1-mesa-dev on all architectures (not just Linux). It is required for EGL support. - Only build-depend on udev on Linux architectures - Only depend on libwayland on Linux architectures - Drop unnecessary -dev dependency on libudev-dev nautilus (3.38.2-1+deb11u1) bullseye; urgency=medium . * Update from upstream gnome-3-38 branch - Don't save window size and position when tiled. Tiling is more like a special case of maximization than an ordinary floating window position. - Fix some memory leaks - Translation updates: bn_IN, ca, mjw, nb, tr, vi * Backport patches from GNOME 40 to avoid opening multiple selected files in multiple application instances (Closes: #993137) * d/gbp.conf, d/control.in, d/watch: Target 3.38.x for bullseye nextcloud-desktop (3.1.1-2+deb11u1) bullseye-security; urgency=high . * Add backported patch to fix CVE-2021-22895 (Closes: #989846). * Add backported patch to fix CVE-2021-32728 with small modifications to match for Debian. node-ansi-regex (5.0.1-1~deb11u1) bullseye; urgency=medium . * Team upload * New upstream version 5.0.1 (Closes: CVE-2021-3807) node-ansi-regex (5.0.0-2) unstable; urgency=medium . [ Debian Janitor ] * Apply multi-arch hints. + node-ansi-regex: Add Multi-Arch: foreign. * Remove constraints unnecessary since buster: + Build-Depends: Drop versioned constraint on pkg-js-tools. * Bump debhelper from old 12 to 13. * Update standards version to 4.5.1, no changes needed. node-axios (0.21.1+dfsg-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix ReDoS (Closes: CVE-2021-3749) node-object-path (0.11.5-3+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: CVE-2021-23434) * Fix prototype pollution (Closes: CVE-2021-3805) node-prismjs (1.23.0+dfsg-1+deb11u1) bullseye; urgency=medium . * Team upload * Fix ReDoS (Closes: CVE-2021-3801) node-set-value (3.0.1-2+deb11u1) bullseye; urgency=medium . * Team upload * Fix prototype pollution (Closes: #994448, CVE-2021-23440) * Add test for CVE-2021-23440 node-tar (6.0.5+ds1+~cs11.3.9-1+deb11u1) bullseye; urgency=medium . * Team upload * Remove paths from dirCache when no longer dirs (Closes: #992110, CVE-2021-32803) * Strip absolute paths more comprehensively (Closes: #992111, CVE-2021-32804) nodejs (12.22.5~dfsg-2~11u1) bullseye-security; urgency=medium . * ares_compat.patch let node compile against ares < 1.17.2 Closes: #992112 nodejs (12.22.5~dfsg-1) unstable; urgency=medium . * New upstream version 12.22.5~dfsg + Follow-up fix for CVE-2021-22930 as the issue was not completely resolved by the version 12.22.4 (High). + CVE-2021-22939: Incomplete validation of rejectUnauthorized parameter (Low). nodejs (12.22.4~dfsg-1) unstable; urgency=medium . * New upstream version 12.22.4~dfsg Fixed vulnerabilities: + CVE-2021-22930: Use after free on close http2 on stream canceling (High) ntfs-3g (1:2017.3.23AR.3-4+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * Fixed an endianness error in ntfscp * Checked the locations of MFT and MFTMirr at startup * Fix multiple buffer overflows. CVE-2021-33285, CVE-2021-35269, CVE-2021-35268, CVE-2021-33289, CVE-2021-33286, CVE-2021-35266, CVE-2021-33287, CVE-2021-35267, CVE-2021-39251, CVE-2021-39252, CVE-2021-39253, CVE-2021-39254, CVE-2021-39255, CVE-2021-39256, CVE-2021-39257, CVE-2021-39258, CVE-2021-39259, CVE-2021-39260, CVE-2021-39261, CVE-2021-39262, CVE-2021-39263. (Closes: #988386) openssl (1.1.1k-1+deb11u1) bullseye-security; urgency=medium . * CVE-2021-3711 (SM2 Decryption Buffer Overflow). * CVE-2021-3712 (Read buffer overruns processing ASN.1 strings). osmcoastline (2.3.0-1+deb11u1) bullseye; urgency=medium . * Update branch in gbp.conf & Vcs-Git URL. * Add upstream patch to fix projections other than WGS84. (closes: #993518) pam (1.4.0-9+deb11u1) bullseye; urgency=medium . * Fix syntax error in libpam0g.postinst when a systemd unit fails, Closes: #992538 perl (5.32.1-4+deb11u2) bullseye; urgency=medium . * Apply upstream patch fixing a regexp memory leak. (Closes: #994834) perl (5.32.1-4+deb11u1) bullseye-security; urgency=high . * [SECURITY] CVE-2021-36770: Encode loading code from working directory pglogical (2.3.3-3+deb11u1) bullseye; urgency=medium . * Adjust to PostgreSQL 13.4 snapshot handling fixes (PG commit ef9480509). * debian/watch: Fix github URL. pmdk (1.10-2+deb11u1) bullseye; urgency=high . * Fix missing barriers after non-temporal memcpy. postgresql-13 (13.4-0+deb11u1) bullseye; urgency=medium . * New upstream version. . + Fix mis-planning of repeated application of a projection step (Tom Lane) . The planner could create an incorrect plan in cases where two ProjectionPaths were stacked on top of each other. The only known way to trigger that situation involves parallel sort operations, but there may be other instances. The result would be crashes or incorrect query results. Disclosure of server memory contents is also possible. (CVE-2021-3677) . + Disallow SSL renegotiation more completely (Michael Paquier) . SSL renegotiation has been disabled for some time, but the server would still cooperate with a client-initiated renegotiation request. A maliciously crafted renegotiation request could result in a server crash (see OpenSSL issue CVE-2021-3449). Disable the feature altogether on OpenSSL versions that permit doing so, which are 1.1.0h and newer. postorius (1.3.4-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the Security Team. * CVE-2021-40347: Check a user owns the email they are trying to unsubscribe (Fixes: #993746) proftpd-dfsg (1.3.7a+dfsg-12+deb11u2) bullseye; urgency=medium . * Add patch for upstream issue #1149 (Closes: #993784). proftpd-dfsg (1.3.7a+dfsg-12+deb11u1) bullseye; urgency=medium . * Add patch for upstream issue #1284 (Closes: #993173). * Cherry pick patch for issue #1111 (Closes: #992920). pyx3 (0.15-3+deb11u1) bullseye; urgency=medium . * Fix horizontal font alignment issue with texlive 2020. Cherry-pick patch from upstream, with thanks to Andre Wobst and Joerg Lehmann (Closes: #992656). reportbug (7.10.3+deb11u1) bullseye; urgency=medium . [ Thomas Goirand ] * Update suite names vs stable/oldstable, so it's possible to request for bullseye-pu (Closes: #992332). request-tracker4 (4.4.4+dfsg-2+deb11u1) bullseye; urgency=medium . * Apply upstream patch which fixes a security vulnerability that involves a login timing side-channel attack. This resolves CVE-2021-38562 (Closes: #995175) rhonabwy (0.9.13-3+deb11u1) bullseye; urgency=medium . * d/patches/bugfixes: apply upstream bugfixes jwe cbc tag computation error jws alg:none signature verification issue rpki-trust-anchors (20210817-1~deb11u1) bullseye; urgency=medium . * Rebuilt for the stable distribution. rsync (3.2.3-4+deb11u1) bullseye; urgency=medium . * debian/patches: - copy-devices: Re-add upstream patch for --copy-devices, the --write-device option is not fully equivalent (closes: #992215). - fix_delay_updates: New patch from upstream to fix regression in option --delay-updates (closes: #992231). - fix_mkpath.patch: New upstream patch to fix an edge case on --mkpath. - fix_rsync-ssl_RSYNC_SSL_CERT_feature: New upstream patch to fix an edge case on rsync-ssl. - fix_sparse_inplace: New upstream patch to fix --sparse + --inplace options. - manpage_upstream_fixes: Import multiple upstream patches to fix manpage. - update_rrsync_options: New upstream patch to update rrsync options. * d/rsync.docs: Add NEWS.md file (previously named NEWS) (closes: #993697). ruby-rqrcode-rails3 (0.1.7-1.1+deb11u1) bullseye; urgency=medium . * Fix for ruby-rqrcode 1.0 compatibility (Thanks to Florence Foo) (Closes: #992040) sabnzbdplus (3.1.1+dfsg-2+deb11u1) bullseye; urgency=medium . * Backport upstream security fix to prevent a directory escape in the renamer function via malicious par2 files. (CVE-2021-29488) shellcheck (0.7.1-1+deb11u1) bullseye; urgency=medium . * d/rules: Fix manpage generation (closes: #918555, #985003) shiro (1.3.2-4+deb11u1) bullseye; urgency=medium . * Update patch for Spring Framework 4.3.x build failure. * Cherry-pick upstream patch with Guice improvements. * CVE-2020-1957: Fix a path-traversal issue where a specially-crafted request could cause an authentication bypass. (Closes: #955018) * CVE-2020-11989: Fix an encoding issue introduced in the handling of the previous CVE-2020-1957 path-traversal issue which could have also caused an authentication bypass. * CVE-2020-13933: Fix an authentication bypass resulting from a specially crafted HTTP request. (Closes: #968753) * CVE-2020-17510: Fix an authentication bypass resulting from a specially crafted HTTP request. speech-dispatcher (0.10.2-2+deb11u1) bullseye; urgency=medium . * patches/generic-set-voice-name: Fix setting voice name for the generic module. squashfs-tools (1:4.4-2+deb11u1) bullseye-security; urgency=high . * Non-maintainer upload by the LTS Team. * CVE-2021-40153 unsquashfs unvalidated filepaths allow writing outside of destination. telegram-desktop (2.6.1+ds-1+deb11u1) bullseye; urgency=medium . * Add Schedule-TTL-check.patch (Closes: #993243). termshark (2.2.0-1+deb11u1) bullseye; urgency=medium . * Team upload * Include themes in package (Closes: #992831) thunderbird (1:78.14.0-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security thunderbird (1:78.13.0-1) unstable; urgency=medium . * [b4498b0] New upstream version 78.13.0 Fixed CVE issues in upstream version 78.12 (MFSA 2021-35): CVE-2021-29986: Race condition when resolving DNS names could have led to memory corruption CVE-2021-29988: Memory corruption as a result of incorrect style treatment CVE-2021-29984: Incorrect instruction reordering during JIT optimization CVE-2021-29980: Uninitialized memory in a canvas object could have led to memory corruption CVE-2021-29985: Use-after-free media channels CVE-2021-29989: Memory safety bugs fixed in Thunderbird 78.13 thunderbird (1:78.13.0-1~deb11u1) bullseye-security; urgency=medium . * [6dc6817] d/changelog: Correct TB version for referenced MFSA * Rebuild for bullseye-security tmux (3.1c-1+deb11u1) bullseye; urgency=medium . * Cherry-pick commit 7a4aa14618 from upstream to fix a race condition which results in the config not being loaded if several clients are interacting with the server while it's initializing (upstream GitHub issue #2438, closes: #992202). tomcat9 (9.0.43-2~deb11u1) bullseye-security; urgency=medium . * Team upload. * Rebuild for bullseye-security. . tomcat9 (9.0.43-2) unstable; urgency=medium . * Team upload. . [ mirabilos ] * fix /var/log/tomcat9 permissions fixup for commit 51128fe9fb2d4d0b56be675d845cf92e4301a6c3 . [ Markus Koschany ] * Fix CVE-2021-30640: A vulnerability in the JNDI Realm of Apache Tomcat allows an attacker to authenticate using variations of a valid user name and/or to bypass some of the protection provided by the LockOut Realm. * Fix CVE-2021-33037: Apache Tomcat did not correctly parse the HTTP transfer-encoding request header in some circumstances leading to the possibility to request smuggling when used with a reverse proxy. Specifically: - Tomcat incorrectly ignored the transfer encoding header if the client declared it would only accept an HTTP/1.0 response; - Tomcat honoured the identify encoding; and - Tomcat did not ensure that, if present, the chunked encoding was the final encoding. (Closes: #991046) tor (0.4.5.10-1~deb11u1) bullseye-security; urgency=medium . * Upload fix for TROVE-2021-007/CVE-2021-38385 to bullseye: - Resolve an assertion failure caused by a behavior mismatch between our batch-signature verification code and our single-signature verification code. This assertion failure could be triggered remotely, leading to a denial of service attack. We fix this issue by disabling batch verification. Fixes bug 40078; bugfix on 0.2.6.1-alpha. This issue is also tracked as TROVE-2021-007 and CVE-2021-38385. Found by Henry de Valence. txt2man (1.7.1-1+deb11u1) bullseye; urgency=medium . * debian/patches/020_fix-display-blocks.patch: created to fix regression in handling display blocks. Currently, literal blocks are being treated as paragraphs. Consequently, is not possible put a source code or a literal text in a manpage. (Closes: #992283) tzdata (2021a-1+deb11u1) bullseye; urgency=medium . * Cherry-pick patches from tzdata-2021b until the upstream situation gets less confused: - 01-no-leap-second-2021-12-31.patch: No leap second on 2021-12-31 as per IERS Bulletin C 62. - 02-samoa-dst.patch: Samoa no longer observes DST. - 03-jordan-dst.patch: Jordan now starts DST on February's last Thursday. ublock-origin (1.37.0+dfsg-1~deb11u1) bullseye; urgency=medium . * Backport to Debian 11 "Bullseye". ulfius (2.7.1-1+deb11u1) bullseye; urgency=medium . * d/patches: Fix CVE-2021-40540 (Closes: #994763) webkit2gtk (2.32.4-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30858. wpewebkit (2.32.4-1~deb11u1) bullseye-security; urgency=high . * Rebuild for bullseye-security. + Fixes CVE-2021-30858. xen (4.14.3-1~deb11u1) bullseye-security; urgency=medium . * Rebuild for bullseye-security xmlgraphics-commons (2.4-2~deb11u1) bullseye-security; urgency=medium . * Team upload * Rebuild for bullseye-security. . xmlgraphics-commons (2.4-2) unstable; urgency=high . * Team upload. * Fix CVE-2020-11988: Apache XmlGraphics Commons is vulnerable to server-side request forgery, caused by improper input validation by the XMPParser. By using a specially-crafted argument, an attacker could exploit this vulnerability to cause the underlying server to make arbitrary GET requests. (Closes: #984949) ========================================= Sat, 14 Aug 2021 - Debian 11.0 released =========================================