SUSE-SU-2025:0289-1

Source
https://www.suse.com/support/update/announcement/2025/suse-su-20250289-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2025:0289-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/SUSE-SU-2025:0289-1
Related
Published
2025-01-29T16:11:29Z
Modified
2025-01-29T16:11:29Z
Summary
Security update for the Linux Kernel
Details

The SUSE Linux Enterprise 15 SP6 Confidential Computing kernel was updated to receive various security bugfixes.

The following security bugs were fixed:

  • CVE-2023-52489: mm/sparsemem: fix race in accessing memory_section->usage (bsc#1221326).
  • CVE-2024-26596: net: dsa: fix netdev_priv() dereference before check on non-DSA netdevice events (bsc#1220355).
  • CVE-2024-26924: scsi: lpfc: Release hbalock before calling lpfcworkerwake_up() (bsc#1225820).
  • CVE-2024-27397: netfilter: nf_tables: use timestamp to check for set element timeout (bsc#1224095).
  • CVE-2024-35839: kABI fix for netfilter: bridge: replace physindev with physinif in nfbridgeinfo (bsc#1224726).
  • CVE-2024-36915: nfc: llcp: fix nfcllcpsetsockopt() unsafe copies (bsc#1225758).
  • CVE-2024-41042: Prefer nftchainvalidate (bsc#1228526).
  • CVE-2024-44934: net: bridge: mcast: wait for previous gc cycles when removing port (bsc#1229809).
  • CVE-2024-44996: vsock: fix recursive ->recvmsg calls (bsc#1230205).
  • CVE-2024-45828: i3c: mipi-i3c-hci: Mask ring interrupts before ring stop request (bsc#1235705).
  • CVE-2024-46680: Bluetooth: btnxpuart: Fix random crash seen while removing driver (bsc#1230557).
  • CVE-2024-46765: ice: protect XDP configuration with a mutex (bsc#1230807).
  • CVE-2024-46800: sch/netem: fix use after free in netem_dequeue (bsc#1230827).
  • CVE-2024-47678: icmp: change the order of rate limits (bsc#1231854).
  • CVE-2024-48881: bcache: revert replacing ISERRORNULL with ISERR again (bsc#1235727).
  • CVE-2024-49944: sctp: set skstate back to CLOSED if autobind fails in sctplisten_start (bsc#1232166).
  • CVE-2024-49951: Bluetooth: MGMT: Fix possible crash on mgmtindexremoved (bsc#1232158).
  • CVE-2024-49952: netfilter: nftables: prevent nfskb_duplicated corruption (bsc#1232157).
  • CVE-2024-49998: net: dsa: improve shutdown sequence (bsc#1232087).
  • CVE-2024-50018: net: napi: Prevent overflow of napideferhard_irqs (bsc#1232419).
  • CVE-2024-50039: kABI: Restore deleted EXPORTSYMBOL(qdisccalculatepktlen) (bsc#1231909).
  • CVE-2024-50143: udf: fix uninit-value use in udfgetfileshortad (bsc#1233038).
  • CVE-2024-50151: smb: client: fix OOBs when building SMB2_IOCTL request (bsc#1233055).
  • CVE-2024-50199: mm/swapfile: skip HugeTLB pages for unuse_vma (bsc#1233112).
  • CVE-2024-50202: nilfs2: propagate directory read errors from nilfsfindentry() (bsc#1233324).
  • CVE-2024-50252: mlxsw: spectrum_ipip: Fix memory leak when changing remote IPv6 address (bsc#1233201).
  • CVE-2024-50256: netfilter: nfrejectipv6: fix potential crash in nfsendreset6() (bsc#1233200).
  • CVE-2024-50262: bpf: Fix out-of-bounds write in triegetnext_key() (bsc#1233239).
  • CVE-2024-50278, CVE-2024-50280: dm cache: fix flushing uninitialized delayedwork on cachectr error (bsc#1233467 bsc#1233469).
  • CVE-2024-50278: dm cache: fix potential out-of-bounds access on the first resume (bsc#1233467).
  • CVE-2024-50279: dm cache: fix out-of-bounds access to the dirty bitset when resizing (bsc#1233468).
  • CVE-2024-50296: net: hns3: fix kernel crash when uninstalling driver (bsc#1233485).
  • CVE-2024-50299: sctp: properly validate chunk size in sctpsfootb() (bsc#1233488).
  • CVE-2024-53043: mctp i2c: handle NULL header address (bsc#1233523).
  • CVE-2024-53050: drm/i915/hdcp: Add encoder check in hdcp2getcapability (bsc#1233546).
  • CVE-2024-53051: drm/i915/hdcp: Add encoder check in intelhdcpget_capability (bsc#1233547).
  • CVE-2024-53055: wifi: iwlwifi: mvm: fix 6 GHz scan construction (bsc#1233550).
  • CVE-2024-53056: drm/mediatek: Fix potential NULL dereference in mtkcrtcdestroy() (bsc#1233568).
  • CVE-2024-53064: idpf: fix idpfvccore_init error path (bsc#1233558 bsc#1234464).
  • CVE-2024-53090: afs: Fix lock recursion (bsc#1233637).
  • CVE-2024-53091: bpf: Add skisinet and ISICSK check in tlsswhasctx_tx/rx (bsc#1233638).
  • CVE-2024-53099: bpf: Check validity of link->type in bpflinkshow_fdinfo() (bsc#1233772).
  • CVE-2024-53105: mm: pagealloc: move mlocked flag clearance into freepages_prepare() (bsc#1234069).
  • CVE-2024-53110: vpvdpa: fix idtable array not null terminated error (bsc#1234085).
  • CVE-2024-53111: mm/mremap: fix address wraparound in movepagetables() (bsc#1234086).
  • CVE-2024-53113: mm: fix NULL pointer dereference in allocpagesbulk_noprof (bsc#1234077).
  • CVE-2024-53117: virtio/vsock: Improve MSG_ZEROCOPY error handling (bsc#1234079).
  • CVE-2024-53118: vsock: Fix skerrorqueue memory leak (bsc#1234071).
  • CVE-2024-53119: virtio/vsock: Fix accept_queue memory leak (bsc#1234073).
  • CVE-2024-53121: net/mlx5: fs, lock FTE when checking if active (bsc#1234078).
  • CVE-2024-53122: mptcp: cope racing subflow creation in mptcprcvspace_adjust (bsc#1234076).
  • CVE-2024-53125: bpf: synclinkedregs() must preserve subreg_def (bsc#1234156).
  • CVE-2024-53130: nilfs2: fix null-ptr-deref in blockdirtybuffer tracepoint (bsc#1234219).
  • CVE-2024-53131: nilfs2: fix null-ptr-deref in blocktouchbuffer tracepoint (bsc#1234220).
  • CVE-2024-53133: drm/amd/display: Handle dml allocation failure to avoid crash (bsc#1234221)
  • CVE-2024-53134: pmdomain: imx93-blk-ctrl: correct remove path (bsc#1234159).
  • CVE-2024-53138: net/mlx5e: kTLS, Fix incorrect page refcounting (bsc#1234223).
  • CVE-2024-53141: netfilter: ipset: add missing range check in bitmapipuadt (bsc#1234381).
  • CVE-2024-53160: rcu/kvfree: Fix data-race in _modtimer / kvfreecallrcu (bsc#1234810).
  • CVE-2024-53161: EDAC/bluefield: Fix potential integer overflow (bsc#1234856).
  • CVE-2024-53164: net: sched: fix ordering of qlen adjustment (bsc#1234863).
  • CVE-2024-53170: block: fix uaf for flush rq while iterating tags (bsc#1234888).
  • CVE-2024-53172: ubi: fastmap: Fix duplicate slab cache names while attaching (bsc#1234898).
  • CVE-2024-53175: ipc: fix memleak if msginitns failed in createipcns (bsc#1234893).
  • CVE-2024-53179: smb: client: fix use-after-free of signing key (bsc#1234921).
  • CVE-2024-53185: smb: client: fix NULL ptr deref in cryptoaeadsetkey() (bsc#1234901).
  • CVE-2024-53195: KVM: arm64: Get rid of userspaceirqchipin_use (bsc#1234957).
  • CVE-2024-53196: KVM: arm64: Do not retire aborted MMIO instruction (bsc#1234906).
  • CVE-2024-53198: xen: Fix the issue of resource not being properly released in xenbusdevprobe() (bsc#1234923).
  • CVE-2024-53214: vfio/pci: Properly hide first-in-list PCIe extended capability (bsc#1235004).
  • CVE-2024-53216: nfsd: fix UAF when access exuuid or exstats (bsc#1235003).
  • CVE-2024-53222: zram: fix NULL pointer in compalgorithmshow() (bsc#1234974).
  • CVE-2024-53227: scsi: bfa: Fix use-after-free in bfadimmodule_exit() (bsc#1235011).
  • CVE-2024-53232: iommu/s390: Implement blocking domain (bsc#1235050).
  • CVE-2024-53234: erofs: handle NONHEAD !delta[1] lclusters gracefully (bsc#1235045).
  • CVE-2024-53236: xsk: Free skb when TX metadata options are invalid (bsc#1235000).
  • CVE-2024-53240: xen/netfront: fix crash when removing device (bsc#1234281).
  • CVE-2024-53241: x86/xen: use new hypercall functions instead of hypercall page (XSA-466 bsc#1234282).
  • CVE-2024-53685: ceph: give up on paths longer than PATH_MAX (bsc#1235720).
  • CVE-2024-55639: net: renesas: rswitch: avoid use-after-put for a device tree node (bsc#1235737).
  • CVE-2024-55881: KVM: x86: Play nice with protected guests in completehypercallexit() (bsc#1235745).
  • CVE-2024-56372: net: tun: fix tunnapialloc_frags() (bsc#1235753).
  • CVE-2024-56549: cachefiles: Fix NULL pointer dereference in object->file (bsc#1234912).
  • CVE-2024-56566: mm/slub: Avoid list corruption when removing a slab from the full list (bsc#1235033).
  • CVE-2024-56568: iommu/arm-smmu: Defer probe of clients after smmu device bound (bsc#1235032).
  • CVE-2024-56569: ftrace: Fix regression with module command in stacktracefilter (bsc#1235031).
  • CVE-2024-56570: ovl: Filter invalid inodes with missing lookup function (bsc#1235035).
  • CVE-2024-56582: btrfs: fix use-after-free in btrfsencodedread_endio() (bsc#1235128).
  • CVE-2024-56588: scsi: hisi_sas: Create all dump files during debugfs initialization (bsc#1235123).
  • CVE-2024-56589: scsi: hisisas: Add condresched() for no forced preemption model (bsc#1235241).
  • CVE-2024-56599: wifi: ath10k: avoid NULL pointer error during sdio remove (bsc#1235138).
  • CVE-2024-56602: net: ieee802154: do not leave a dangling sk pointer in ieee802154_create() (bsc#1235521).
  • CVE-2024-56603: net: afcan: do not leave a dangling sk pointer in cancreate() (bsc#1235415).
  • CVE-2024-56604: Bluetooth: RFCOMM: avoid leaving dangling sk pointer in rfcommsockalloc() (bsc#1235056).
  • CVE-2024-56605: Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2capsockcreate() (bsc#1235061).
  • CVE-2024-56611: mm/mempolicy: fix migratetonode() assuming there is at least one VMA in a MM (bsc#1235391).
  • CVE-2024-56614: xsk: fix OOB map writes when deleting elements (bsc#1235424).
  • CVE-2024-56615: bpf: fix OOB devmap writes when deleting elements (bsc#1235426).
  • CVE-2024-56617: cacheinfo: Allocate memory during CPU hotplug if not done from the primary CPU (bsc#1235429).
  • CVE-2024-56620: scsi: ufs: qcom: Only free platform MSIs when ESI is enabled (bsc#1235227).
  • CVE-2024-56622: scsi: ufs: core: sysfs: Prevent div by zero (bsc#1235251).
  • CVE-2024-56631: scsi: sg: Fix slab-use-after-free read in sg_release() (bsc#1235480).
  • CVE-2024-56635: net: avoid potential UAF in default_operstate() (bsc#1235519).
  • CVE-2024-56636: geneve: do not assume mac header is set in genevexmitskb() (bsc#1235520).
  • CVE-2024-56637: netfilter: ipset: Hold module reference while requesting a module (bsc#1235523).
  • CVE-2024-56641: net/smc: initialize close_work early to avoid warning (bsc#1235526).
  • CVE-2024-56643: dccp: Fix memory leak in dccpfeatchange_recv (bsc#1235132).
  • CVE-2024-56648: net: hsr: avoid potential out-of-bound access in fillframeinfo() (bsc#1235451).
  • CVE-2024-56649: net: enetc: Do not configure preemptible TCs if SIs do not support (bsc#1235449).
  • CVE-2024-56656: bnxt_en: Fix aggregation ID mask to prevent oops on 5760X chips (bsc#1235444).
  • CVE-2024-56659: net: lapb: increase LAPBHEADERLEN (bsc#1235439).
  • CVE-2024-56660: net/mlx5: DR, prevent potential error pointer dereference (bsc#1235437).
  • CVE-2024-56664: bpf, sockmap: Fix race between element replace and close() (bsc#1235249).
  • CVE-2024-56675: bpf: Fix UAF via mismatching bpf_prog/attachment RCU flavors (bsc#1235555).
  • CVE-2024-56694: bpf: fix recursive lock when verdict program return SK_PASS (bsc#1235412).
  • CVE-2024-56704: 9p/xen: fix release of IRQ (bsc#1235584).
  • CVE-2024-56708: EDAC/igen6: Avoid segmentation fault on module unload (bsc#1235564).
  • CVE-2024-56712: udmabuf: fix memory leak on last export_udmabuf() error path (bsc#1235565).
  • CVE-2024-56716: netdevsim: prevent bad user input in nsimdevhealthbreakwrite() (bsc#1235587).
  • CVE-2024-56729: smb: Initialize cfid->tcon before performing network ops (bsc#1235503).
  • CVE-2024-56747: scsi: qedi: Fix a possible memory leak in qediallocandinitsb() (bsc#1234934).
  • CVE-2024-56748: scsi: qedf: Fix a possible memory leak in qedfallocandinitsb() (bsc#1235627).
  • CVE-2024-56755: netfs/fscache: Add a memory barrier for FSCACHEVOLUMECREATING (bsc#1234920).
  • CVE-2024-56759: btrfs: fix use-after-free when COWing tree bock and tracing is enabled (bsc#1235645).
  • CVE-2024-56774: btrfs: add a sanity check for btrfs root in btrfssearchslot() (bsc#1235653).
  • CVE-2024-56775: drm/amd/display: Fix handling of plane refcount (bsc#1235657).
  • CVE-2024-57791: net/smc: check return value of sock_recvmsg when draining clc data (bsc#1235759).
  • CVE-2024-57793: virt: tdx-guest: Just leak decrypted memory on unrecoverable errors (bsc#1235768).
  • CVE-2024-57795: RDMA/rxe: Remove the direct link to net_device (bsc#1235906).
  • CVE-2024-57801: net/mlx5e: Skip restore TC rules for vport rep without loaded flag (bsc#1235940).
  • CVE-2024-57804: scsi: mpi3mr: Fix corrupt config pages PHY state is switched in sysfs (bsc#1235779).
  • CVE-2024-57809: PCI: imx6: Fix suspend/resume support on i.MX6QDL (bsc#1235793).
  • CVE-2024-57838: s390/entry: Mark IRQ entries to fix stack depot warnings (bsc#1235798).
  • CVE-2024-57857: RDMA/siw: Remove direct link to net_device (bsc#1235946).
  • CVE-2024-57892: ocfs2: fix slab-use-after-free due to dangling pointer dqi_priv (bsc#1235964).
  • CVE-2024-57896: btrfs: flush delalloc workers queue before stopping cleaner kthread during unmount (bsc#1235965).
  • CVE-2024-57903: net: restrict SO_REUSEPORT to inet sockets (bsc#1235967).
  • CVE-2024-57929: dm array: fix releasing a faulty array block twice in dmarraycursor_end (bsc#1236096).
  • CVE-2024-57932: gve: guard XDP xmit NDO on existence of xdp queues (bsc#1236190).
  • CVE-2024-57933: gve: guard XSK operations on the existence of queues (bsc#1236178).
  • CVE-2025-21632: x86/fpu: Ensure shadow stack is active before 'getting' registers (bsc#1236106).
  • CVE-2025-21649: net: hns3: fix kernel crash when 1588 is sent on HIP08 devices (bsc#1236143).
  • CVE-2025-21650: net: hns3: fixed hclgefetchpf_reg accesses bar space out of bounds issue (bsc#1236144).
  • CVE-2025-21651: net: hns3: do not auto enable misc vector (bsc#1236145).
  • CVE-2025-21662: net/mlx5: Fix variable not being completed when function returns (bsc#1236198).

The following non-security bugs were fixed:

  • 9p: v9fsfidfind: also lookup by inode if not found dentry (git-fixes).
  • ACPI/HMAT: Move HMAT messages to pr_debug() (bsc#1234294)
  • ACPI/IORT: Add PMCG platform information for HiSilicon HIP09A (stable-fixes).
  • ACPI/IORT: Add PMCG platform information for HiSilicon HIP10/11 (stable-fixes).
  • ACPI: PCC: Add PCC shared memory region command and status bitfields (stable-fixes).
  • ACPI: PRM: Add PRM handler direct call support (jsc#PED-10467).
  • ACPI: resource: Add Asus Vivobook X1504VAP to irq1levellowskipoverride[] (stable-fixes).
  • ACPI: resource: Add TongFang GM5HG0A to irq1edgelowforceoverride[] (stable-fixes).
  • ACPI: resource: Fix memory resource type union access (git-fixes).
  • ACPI: x86: Add skip i2c clients quirk for Acer Iconia One 8 A1-840 (stable-fixes).
  • ACPI: x86: Clean up Asus entries in acpiquirkskipdmiids[] (stable-fixes).
  • ACPI: x86: Make UART skip quirks work on PCI UARTs without an UID (stable-fixes).
  • ACPICA: events/evxfregn: do not release the ContextMutex that was never acquired (git-fixes).
  • ALSA hda/realtek: Add quirk for Framework F111:000C (stable-fixes).
  • ALSA: hda/conexant: fix Z60MR100 startup pop issue (stable-fixes).
  • ALSA: hda/hdmi: Yet more pin fix for HP EliteDesk 800 G4 (stable-fixes).
  • ALSA: hda/realtek - Add support for ASUS Zen AIO 27 Z272SD_A272SD audio (stable-fixes).
  • ALSA: hda/realtek: Add Framework Laptop 13 (Intel Core Ultra) to quirks (stable-fixes).
  • ALSA: hda/realtek: Add new alc2xx-fixup-headset-mic model (stable-fixes).
  • ALSA: hda/realtek: Add support for Ayaneo System using CS35L41 HDA (stable-fixes).
  • ALSA: hda/realtek: Add support for Galaxy Book2 Pro (NP950XEE) (stable-fixes).
  • ALSA: hda/realtek: Add support for Samsung Galaxy Book3 360 (NP730QFG) (stable-fixes).
  • ALSA: hda/realtek: Enable mute and micmute LED on HP ProBook 430 G8 (stable-fixes).
  • ALSA: hda/realtek: Fix headset mic on Acer Nitro 5 (stable-fixes).
  • ALSA: hda: Add HP MP9 G4 Retail System AMS to force connect list (stable-fixes).
  • ALSA: line6: Fix racy access to midibuf (stable-fixes).
  • ALSA: seq: Check UMP support for midi_version change (git-fixes).
  • ALSA: seq: oss: Fix races at processing SysEx messages (stable-fixes).
  • ALSA: seq: ump: Fix seq port updates per FB info notify (git-fixes).
  • ALSA: seq: ump: Use automatic cleanup of kfree() (stable-fixes).
  • ALSA: seq: ump: Use guard() for locking (stable-fixes).
  • ALSA: ump: Use guard() for locking (stable-fixes).
  • ALSA: usb-audio: Add implicit feedback quirk for Yamaha THR5 (stable-fixes).
  • ALSA: usb-audio: Fix a DMA to stack memory bug (git-fixes).
  • ALSA: usb-audio: Notify xrun for low-latency mode (git-fixes).
  • ALSA: usb-audio: Re-add ScratchAmp quirk entries (git-fixes).
  • ALSA: usb-audio: US16x08: Initialize array before use (git-fixes).
  • ALSA: usb-audio: add mixer mapping for Corsair HS80 (stable-fixes).
  • ASoC: Intel: avs: da7219: Remove suspendpre() and resumepost() (stable-fixes).
  • ASoC: Intel: sof_sdw: add quirk for Dell SKU 0B8C (stable-fixes).
  • ASoC: Intel: sof_sdw: fix jack detection on ADL-N variant RVP (stable-fixes).
  • ASoC: SOF: Remove libraries from topology lookups (git-fixes).
  • ASoC: SOF: ipc3-topology: fix resource leaks in sofipc3widgetsetupcomp_dai() (git-fixes).
  • ASoC: amd: yc: Add a quirk for microfone on Lenovo ThinkPad P14s Gen 5 21MES00B00 (stable-fixes).
  • ASoC: amd: yc: Add quirk for microphone on Lenovo Thinkpad T14s Gen 6 21M1CTO1WW (stable-fixes).
  • ASoC: amd: yc: Fix the wrong return value (git-fixes).
  • ASoC: amd: yc: Support mic on HP 14-em0002la (stable-fixes).
  • ASoC: amd: yc: Support mic on Lenovo Thinkpad E14 Gen 6 (stable-fixes).
  • ASoC: amd: yc: fix internal mic on Redmi G 2022 (stable-fixes).
  • ASoC: codecs: wcd938x-sdw: Correct Soundwire ports mask (git-fixes).
  • ASoC: codecs: wsa881x: Correct Soundwire ports mask (git-fixes).
  • ASoC: codecs: wsa883x: Correct Soundwire ports mask (git-fixes).
  • ASoC: codecs: wsa884x: Correct Soundwire ports mask (git-fixes).
  • ASoC: cs35l56: Handle OTP read latency over SoundWire (stable-fixes).
  • ASoC: cs35l56: Patch CS35L56IRQ1MASK_18 to the default value (stable-fixes).
  • ASoC: fsl_micfil: Expand the range of FIFO watermark mask (stable-fixes).
  • ASoC: hdmi-codec: reorder channel allocation list (stable-fixes).
  • ASoC: mediatek: disable buffer pre-allocation (stable-fixes).
  • ASoC: mediatek: mt8188-mt6359: Remove hardcoded dmic codec (git-fixes).
  • ASoC: meson: axg-fifo: fix irq scheduling issue with PREEMPT_RT (git-fixes).
  • ASoC: nau8822: Lower debug print priority (stable-fixes).
  • ASoC: rt722: add delay time to wait for the calibration procedure (stable-fixes).
  • Bluetooth: Add support ITTIM PE50-M75C (stable-fixes).
  • Bluetooth: Fix type of len in rfcommsockgetsockopt{,_old}() (stable-fixes).
  • Bluetooth: ISO: Reassociate a socket with an active BIS (stable-fixes).
  • Bluetooth: L2CAP: do not leave dangling sk pointer on error in l2capsockcreate() (stable-fixes).
  • Bluetooth: MGMT: Fix Add Device to responding before completing (git-fixes).
  • Bluetooth: MGMT: Fix possible deadlocks (git-fixes).
  • Bluetooth: SCO: Add support for 16 bits transparent voice setting (git-fixes).
  • Bluetooth: btnxpuart: Fix driver sending truncated data (git-fixes).
  • Bluetooth: btnxpuart: Resolve TX timeout error in power save stress test (bsc#1230557)
  • Bluetooth: btusb: Add RTL8852BE device 0489:e123 to device tables (stable-fixes).
  • Bluetooth: btusb: Add USB HW IDs for MT7921/MT7922/MT7925 (stable-fixes).
  • Bluetooth: btusb: Add new VID/PID 0489/e111 for MT7925 (stable-fixes).
  • Bluetooth: btusb: Add new VID/PID 13d3/3602 for MT7925 (stable-fixes).
  • Bluetooth: btusb: add callback function in btusb suspend/resume (stable-fixes).
  • Bluetooth: btusb: mediatek: add callback function in btusb_disconnect (stable-fixes).
  • Bluetooth: hcicore: Fix not checking skb length on hciacldata_packet (stable-fixes).
  • Bluetooth: hcievent: Fix using rcuread_(un)lock while iterating (git-fixes).
  • Bluetooth: hci_sync: Fix not setting Random Address when required (git-fixes).
  • Bluetooth: iso: Fix recursive locking warning (git-fixes).
  • Disable ceph (jsc#PED-7242)
  • Documentation/virt/kvm: Document on Trust Domain Extensions(TDX) (jsc#PED-6143).
  • Documentation: PM: Clarify pmruntimeresumeandget() return value (git-fixes).
  • Drivers: hv: util: Avoid accessing a ringbuffer not initialized yet (git-fixes).
  • Drop uvcvideo fix due to regression (bsc#1235894)
  • HID: magicmouse: Apple Magic Trackpad 2 USB-C driver support (stable-fixes).
  • HID: wacom: fix when get product name maybe null pointer (git-fixes).
  • Input: bbnsm_pwrkey - fix missed key press after suspend (git-fixes).
  • KVM: Fix conflict of IOCTL definition of KVMMEMORYMAPPING (jsc#PED-6143).
  • KVM: SVM: Allow guest writes to set MSRAMD64DE_CFG bits (bsc#1234635).
  • KVM: TDX: Add KVM Exit for TDX TDG.VP.VMCALL (jsc#PED-6143).
  • KVM: TDX: Add TSXCTRL msr into uretmsrs list (jsc#PED-6143).
  • KVM: TDX: Add a method to ignore dirty logging (jsc#PED-6143).
  • KVM: TDX: Add a method to ignore for TDX to ignore hypercall patch (jsc#PED-6143).
  • KVM: TDX: Add a place holder for handler of TDX hypercalls (TDG.VP.VMCALL) (jsc#PED-6143).
  • KVM: TDX: Add a place holder to handle TDX VM exit (jsc#PED-6143).
  • KVM: TDX: Add accessors VMX VMCS helpers (jsc#PED-6143).
  • KVM: TDX: Add helper function to read TDX metadata in array (jsc#PED-6143).
  • KVM: TDX: Add helper functions to allocate/free TDX private host key id (jsc#PED-6143).
  • KVM: TDX: Add isprivate check for mmualloc_root (jsc#PED-6143).
  • KVM: TDX: Add loadmmupgd method for TDX (jsc#PED-6143).
  • KVM: TDX: Add methods to ignore VMX preemption timer (jsc#PED-6143).
  • KVM: TDX: Add methods to ignore accesses to TSC (jsc#PED-6143).
  • KVM: TDX: Add methods to ignore guest instruction emulation (jsc#PED-6143).
  • KVM: TDX: Add methods to ignore virtual apic related operation (jsc#PED-6143).
  • KVM: TDX: Add support for find pending IRQ in a protected local APIC (jsc#PED-6143).
  • KVM: TDX: Complete interrupts after tdexit (jsc#PED-6143).
  • KVM: TDX: Create initial guest memory (jsc#PED-6143).
  • KVM: TDX: Do TDX specific vcpu initialization (jsc#PED-6143).
  • KVM: TDX: Do not use NORBPMOD for backward compatibility (jsc#PED-6143).
  • KVM: TDX: Emulate Xen MTRR disablement (jsc#PED-6143).
  • KVM: TDX: Extend memory measurement with initial guest memory (jsc#PED-6143).
  • KVM: TDX: Finalize VM initialization (jsc#PED-6143).
  • KVM: TDX: Fix incompatibility with QEMU definition (jsc#PED-6143).
  • KVM: TDX: Fix is_private for page fault handler (jsc#PED-6143).
  • KVM: TDX: Get system-wide info about TDX module on initialization (jsc#PED-6143).
  • KVM: TDX: Handle EXITREASONOTHER_SMI with MSMI (jsc#PED-6143).
  • KVM: TDX: Handle MSR IA32FEATCTL MSR and IA32MCGEXT_CTL (jsc#PED-6143).
  • KVM: TDX: Handle MSR MTRRCap and MTRRDefType access (jsc#PED-6143).
  • KVM: TDX: Handle TDG.VP.VMCALL<GetTdVmCallInfo> hypercall (jsc#PED-6143).
  • KVM: TDX: Handle TDX PV CPUID hypercall (jsc#PED-6143).
  • KVM: TDX: Handle TDX PV HLT hypercall (jsc#PED-6143).
  • KVM: TDX: Handle TDX PV MMIO hypercall (jsc#PED-6143).
  • KVM: TDX: Handle TDX PV port io hypercall (jsc#PED-6143).
  • KVM: TDX: Handle TDX PV rdmsr/wrmsr hypercall (jsc#PED-6143).
  • KVM: TDX: Handle vmentry failure for INTEL TD guest (jsc#PED-6143).
  • KVM: TDX: Ignore setting up mce (jsc#PED-6143).
  • KVM: TDX: Implement TDX vcpu enter/exit path (jsc#PED-6143).
  • KVM: TDX: Implement callbacks for MSR operations for TDX (jsc#PED-6143).
  • KVM: TDX: Implement interrupt injection (jsc#PED-6143).
  • KVM: TDX: Implement methods to inject NMI (jsc#PED-6143).
  • KVM: TDX: Inhibit APICv for TDX guest (jsc#PED-6143).
  • KVM: TDX: MTRR: implement getmtmask() for TDX (jsc#PED-6143).
  • KVM: TDX: Make KVMCAPMAX_VCPUS backend specific (jsc#PED-6143).
  • KVM: TDX: Make pmu_intel.c ignore guest TD case (jsc#PED-6143).
  • KVM: TDX: Refuse to unplug the last cpu on the package (jsc#PED-6143).
  • KVM: TDX: Require TDP MMU and mmio caching for TDX (jsc#PED-6143).
  • KVM: TDX: Retry seamcall when TDXOPERANDBUSY with operand SEPT (jsc#PED-6143).
  • KVM: TDX: Return -EINTR for KVMMEMORYMAPPING when signal pending (jsc#PED-6143).
  • KVM: TDX: Silently discard SMI request (jsc#PED-6143).
  • KVM: TDX: Silently ignore INIT/SIPI (jsc#PED-6143).
  • KVM: TDX: TDP MMU TDX support (jsc#PED-6143).
  • KVM: TDX: create/destroy VM structure (jsc#PED-6143).
  • KVM: TDX: create/free TDX vcpu structure (jsc#PED-6143).
  • KVM: TDX: handle EXCEPTIONNMI and EXTERNALINTERRUPT (jsc#PED-6143).
  • KVM: TDX: handle EXITREASONOTHER_SMI (jsc#PED-6143).
  • KVM: TDX: handle KVM hypercall with TDG.VP.VMCALL (jsc#PED-6143).
  • KVM: TDX: handle ept violation/misconfig exit (jsc#PED-6143).
  • KVM: TDX: handle vcpu migration over logical processor (jsc#PED-6143).
  • KVM: TDX: initialize VM with TDX specific parameters (jsc#PED-6143).
  • KVM: TDX: remove use of struct vcpuvmx from postedinterrupt.c (jsc#PED-6143).
  • KVM: TDX: restore debug store when TD exit (jsc#PED-6143).
  • KVM: TDX: restore host xsave state when exit from the guest TD (jsc#PED-6143).
  • KVM: TDX: restore user ret MSRs (jsc#PED-6143).
  • KVM: TDX: vcpu_run: save/restore host state(host kernel gs) (jsc#PED-6143).
  • KVM: TDX: x86: Add ioctl to get TDX systemwide parameters (jsc#PED-6143).
  • KVM: VMX: Move NMI/exception handler to common helper (jsc#PED-6143).
  • KVM: VMX: Split out guts of EPT violation to common/exposed function (jsc#PED-6143).
  • KVM: s390: Reject KVMSETGSI_ROUTING on ucontrol VMs (git-fixes bsc#1235776).
  • KVM: s390: Reject setting flic pfault attributes on ucontrol VMs (git-fixes bsc#1235777).
  • KVM: s390: vsie: fix virtual/physical address in unpin_scb() (git-fixes bsc#1235778).
  • KVM: x86/mmu: Add a new isprivate member for union kvmmmupagerole (jsc#PED-6143).
  • KVM: x86/mmu: Add a private pointer to struct kvmmmupage (jsc#PED-6143).
  • KVM: x86/mmu: Add address conversion functions for TDX shared bit of GPA (jsc#PED-6143).
  • KVM: x86/mmu: Alloc TDP MMU roots while holding mmu_lock for read (jsc#PED-6143).
  • KVM: x86/mmu: Allow passing '-1' for 'all' as_id for TDP MMU iterators (jsc#PED-6143).
  • KVM: x86/mmu: Check for usable TDP MMU root while holding mmu_lock for read (jsc#PED-6143).
  • KVM: x86/mmu: Disallow fast page fault on private GPA (jsc#PED-6143).
  • KVM: x86/mmu: Do not do TLB flush when zappings SPTEs in invalid roots (jsc#PED-6143).
  • KVM: x86/mmu: Do not enable page track for TD guest (jsc#PED-6143).
  • KVM: x86/mmu: Free TDP MMU roots while holding mmy_lock for read (jsc#PED-6143).
  • KVM: x86/mmu: Precisely invalidate MMU root_role during CPUID update (git-fixes).
  • KVM: x86/mmu: Skip invalid TDP MMU roots when write-protecting SPTEs (jsc#PED-6143).
  • KVM: x86/mmu: Skip invalid roots when zapping leaf SPTEs for GFN range (jsc#PED-6143).
  • KVM: x86/mmu: Zap invalidated TDP MMU roots at 4KiB granularity (jsc#PED-6143).
  • KVM: x86/tdp_mmu: Apply mmu notifier callback to only shared GPA (jsc#PED-6143).
  • KVM: x86/tdp_mmu: Do not zap private pages for unsupported cases (jsc#PED-6143).
  • KVM: x86/tdp_mmu: Fix to return original flush on unsupported cases (jsc#PED-6143).
  • KVM: x86/tdpmmu: Init role member of struct kvmmmu_page at allocation (jsc#PED-6143).
  • KVM: x86/tdp_mmu: Support TDX private mapping for TDP MMU (jsc#PED-6143).
  • KVM: x86: Add a switchdbregs flag to handle TDX's auto-switched behavior (jsc#PED-6143).
  • KVM: x86: Add hooks in kvmarchvcpumemorymapping() (jsc#PED-6143).
  • KVM: x86: Allow to update cached values in kvmuserreturn_msrs w/o wrmsr (jsc#PED-6143).
  • KVM: x86: Assume timer IRQ was injected if APIC state is proteced (jsc#PED-6143).
  • KVM: x86: Split core of hypercall emulation to helper function (jsc#PED-6143).
  • KVM: x86: design documentation on TDX support of x86 KVM TDP MMU (jsc#PED-6143).
  • NFS/pnfs: Fix a live lock between recalled layouts and layoutget (git-fixes).
  • NFSD: Async COPY result needs to return a write verifier (git-fixes).
  • NFSD: Cap the number of bytes copied by nfs4resetrecoverydir() (git-fixes).
  • NFSD: Fix nfsd4shutdowncopy() (git-fixes).
  • NFSD: Prevent NULL dereference in nfsd4processcb_update() (git-fixes).
  • NFSD: Prevent a potential integer overflow (git-fixes).
  • NFSD: Remove a never-true comparison (git-fixes).
  • NFSD: initialize copy->cpclp early in nfsd4copy for use by trace point (git-fixes).
  • NFSv4.0: Fix a use-after-free problem in the asynchronous open() (git-fixes).
  • Octeontx2-pf: Free send queue buffers incase of leaf to inner (git-fixes).
  • PCI/AER: Disable AER service on suspend (stable-fixes).
  • PCI/MSI: Handle lack of irqdomain gracefully (git-fixes).
  • PCI: Add 'reset_subordinate' to reset hierarchy below bridge (stable-fixes).
  • PCI: Add ACS quirk for Broadcom BCM5760X NIC (stable-fixes).
  • PCI: Add ACS quirk for Wangxun FF5xxx NICs (stable-fixes).
  • PCI: Add TPERSTCLK_US macro (git-fixes).
  • PCI: Detect and trust built-in Thunderbolt chips (stable-fixes).
  • PCI: Fix use-after-free of slot->bus on hot remove (stable-fixes).
  • PCI: Use preserveconfig in place of pciflags (stable-fixes).
  • PCI: cadence: Extract link setup sequence from cdnspciehost_setup() (stable-fixes).
  • PCI: cadence: Set cdnspciehost_init() global (stable-fixes).
  • PCI: cpqphp: Use PCIPOSSIBLEERROR() to check config reads (stable-fixes).
  • PCI: j721e: Add PCIe 4x lane selection support (stable-fixes).
  • PCI: j721e: Add per platform maximum lane settings (stable-fixes).
  • PCI: j721e: Add reset GPIO to struct j721e_pcie (stable-fixes).
  • PCI: j721e: Add suspend and resume support (git-fixes).
  • PCI: j721e: Use TPERSTCLK_US macro (git-fixes).
  • PCI: qcom: Add support for IPQ9574 (stable-fixes).
  • PCI: vmd: Add DID 8086:B06F and 8086:B60B for Intel client SKUs (stable-fixes).
  • PCI: vmd: Set devices to D0 before enabling PM L1 Substates (stable-fixes).
  • RAS/AMD/ATL: Translate normalized to system physical addresses using PRM (jsc#PED-10467).
  • RDMA/bnxtre: Add check for path mtu in modifyqp (git-fixes)
  • RDMA/bnxt_re: Add send queue size check for variable wqe (git-fixes)
  • RDMA/bnxt_re: Avoid initializing the software queue for user queues (git-fixes)
  • RDMA/bnxt_re: Avoid sending the modify QP workaround for latest adapters (git-fixes)
  • RDMA/bnxt_re: Disable use of reserved wqes (git-fixes)
  • RDMA/bnxt_re: Fix MSN table size for variable wqe mode (git-fixes)
  • RDMA/bnxt_re: Fix max SGEs for the Work Request (git-fixes)
  • RDMA/bnxtre: Fix maxqp_wrs reported (git-fixes)
  • RDMA/bnxtre: Fix reporting hwver in query_device (git-fixes)
  • RDMA/bnxt_re: Fix the check for 9060 condition (git-fixes)
  • RDMA/bnxt_re: Fix the locking while accessing the QP table (git-fixes)
  • RDMA/bnxt_re: Fix the max WQE size for static WQE support (git-fixes)
  • RDMA/bnxt_re: Fix the max WQEs used in Static WQE mode (git-fixes)
  • RDMA/bnxt_re: Remove always true dattr validity check (git-fixes)
  • RDMA/core: Fix ENODEV error for iWARP test over vlan (git-fixes)
  • RDMA/hns: Fix accessing invalid dip_ctx during destroying QP (git-fixes)
  • RDMA/hns: Fix mapping error of zero-hop WQE buffer (git-fixes)
  • RDMA/hns: Fix missing flush CQE for DWQE (git-fixes)
  • RDMA/hns: Fix warning storm caused by invalid input in IO path (git-fixes)
  • RDMA/mlx5: Enforce same type port association for multiport RoCE (git-fixes)
  • RDMA/rtrs: Ensure 'ib_sge list' is accessible (git-fixes)
  • RDMA/uverbs: Prevent integer overflow issue (git-fixes)
  • RFC: KVM: x86, TDX: Add check for KVMSETCPUID2 (jsc#PED-6143).
  • RFC: KVM: x86: Add x86 callback to check cpuid (jsc#PED-6143).
  • Revert 'block/mq-deadline: use correct way to throttling write requests' (bsc#1234146).
  • Revert 'btrfs: fix use-after-free waiting for encoded read endios (bsc#1235128)'
  • Revert 'igb: Disable threaded IRQ for igbmsixother' (git-fixes).
  • Revert 'mm, kmsan: fix infinite recursion due to RCU critical section' (bsc#1230413)
  • Revert 'mm/sparsemem: fix race in accessing memory_section->usage' (bsc#1230413)
  • Revert 'mm: prevent derefencing NULL ptr in pfnsectionvalid()' (bsc#1230413)
  • Revert 'mtd: spi-nor: core: replace dummy buswidth from addr to data' (git-fixes).
  • Revert 'unicode: Do not special case ignorable code points' (stable-fixes).
  • Revert 'arm64: Kconfig: Make SME depend on BROKEN for now'
  • SUNRPC: make sure cache entry active before cache_show (git-fixes).
  • SUNRPC: timeout and cancel TLS handshake with -ETIMEDOUT (git-fixes).
  • USB: core: Disable LPM only for non-suspended ports (git-fixes).
  • USB: serial: cp210x: add Phoenix Contact UPS Device (stable-fixes).
  • USB: serial: option: add MediaTek T7XX compositions (stable-fixes).
  • USB: serial: option: add MeiG Smart SLM770A (stable-fixes).
  • USB: serial: option: add MeiG Smart SRM815 (stable-fixes).
  • USB: serial: option: add Neoway N723-EA support (stable-fixes).
  • USB: serial: option: add Netprisma LCUK54 modules for WWAN Ready (stable-fixes).
  • USB: serial: option: add TCL IK512 MBIM & ECM (stable-fixes).
  • USB: serial: option: add Telit FE910C04 rmnet compositions (stable-fixes).
  • USB: usblp: return error when setting unsupported protocol (git-fixes).
  • VM: TDX: Add place holder for TDX VM specific memencop ioctl (jsc#PED-6143).
  • accel/habanalabs/gaudi2: unsecure tpc count registers (stable-fixes).
  • accel/habanalabs: export dma-buf only if size/offset multiples of PAGE_SIZE (stable-fixes).
  • accel/habanalabs: fix debugfs files permissions (stable-fixes).
  • accel/habanalabs: increase HLMAXSTR to 64 bytes to avoid warnings (stable-fixes).
  • acpi: nfit: vmalloc-out-of-bounds Read in acpinfitctl (git-fixes).
  • afunix: Call manageoob() for every skb in unixstreamread_generic() (bsc#1234725).
  • afs: Automatically generate trace tag enums (git-fixes).
  • afs: Fix missing subdir edit when renamed between parent dirs (git-fixes).
  • afs: Fix the maximum cell name length (git-fixes).
  • amdgpu/uvd: get ring reference from rq scheduler (git-fixes).
  • arch: Introduce arch{,try}cmpxchg128{,local}() (bsc#1220773).
  • arch: Remove cmpxchg_double (bsc#1220773).
  • arch: consolidate archirqwork_raise prototypes (git-fixes).
  • arm64: Ensure bits ASID[15:8] are masked out when the kernel uses (bsc#1234605)
  • arm64: Force position-independent veneers (git-fixes).
  • arm64: Kconfig: Make SME depend on BROKEN for now (git-fixes).
  • arm64: dts: allwinner: pinephone: Add mount matrix to accelerometer (git-fixes)
  • arm64: dts: freescale: imx8mm-verdin: Fix SD regulator startup delay (git-fixes)
  • arm64: dts: freescale: imx8mp-verdin: Fix SD regulator startup delay (git-fixes)
  • arm64: dts: imx8-ss-vpu: Fix imx8qm VPU IRQs (git-fixes)
  • arm64: dts: imx8mp: correct sdhc ipg clk (git-fixes).
  • arm64: dts: imx8qxp: Add VPU subsystem file (git-fixes)
  • arm64: dts: imx93: add nvmem property for eqos (git-fixes)
  • arm64: dts: imx93: add nvmem property for fec1 (git-fixes)
  • arm64: dts: imx93: add ocotp node (git-fixes)
  • arm64: dts: rockchip: Add DTS for FriendlyARM NanoPi R2S Plus (git-fixes)
  • arm64: dts: rockchip: Correct GPIO polarity on brcm BT nodes (git-fixes)
  • arm64: dts: rockchip: Fix LED triggers on rk3308-roc-cc (git-fixes)
  • arm64: dts: rockchip: Fix bluetooth properties on Rock960 boards (git-fixes)
  • arm64: dts: rockchip: Fix bluetooth properties on rk3566 box demo (git-fixes)
  • arm64: dts: rockchip: Fix reset-gpios property on brcm BT nodes (git-fixes)
  • arm64: dts: rockchip: Fix rt5651 compatible value on (git-fixes)
  • arm64: dts: rockchip: Fix rt5651 compatible value on rk3399-eaidk-610 (git-fixes)
  • arm64: dts: rockchip: Fix wakeup prop names on PineNote BT node (git-fixes)
  • arm64: dts: rockchip: Remove #cooling-cells from fan on Theobroma (git-fixes)
  • arm64: dts: rockchip: Remove hdmi's 2nd interrupt on rk3328 (git-fixes)
  • arm64: dts: rockchip: Remove undocumented supports-emmc property (git-fixes)
  • arm64: dts: rockchip: add hevc power domain clock to rk3328 (git-fixes).
  • arm64: dts: rockchip: fix i2c2 pinctrl-names property on (git-fixes)
  • arm64: dts: rockchip: remove num-slots property from (git-fixes)
  • arm64: dts: rockchip: remove orphaned pinctrl-names from pinephone (git-fixes)
  • arm64: fix .data.rel.ro size assertion when CONFIGLTOCLANG (git-fixes)
  • arm64: ptrace: fix partial SETREGSET for NTARMTAGGEDADDRCTRL (git-fixes).
  • arm64: smccc: Remove broken support for SMCCCv1.3 SVE discard hint (git-fixes)
  • arm64: smccc: replace custom COUNT_ARGS() & CONCATENATE() (git-fixes)
  • arm64: tegra: Move AGX Orin nodes to correct location (git-fixes)
  • arm64: tls: Fix context-switching of tpidrro_el0 when kpti is enabled (git-fixes)
  • autofs: fix memory leak of waitqueues in autofscatatonicmode (git-fixes).
  • batman-adv: Do not let TT changes list grows indefinitely (git-fixes).
  • batman-adv: Do not send uninitialized TT changes (git-fixes).
  • batman-adv: Remove uninitialized data in full table TT response (git-fixes).
  • blk-cgroup: Fix UAF in blkcgunpinonline() (bsc#1234726).
  • blk-core: use prwarnratelimited() in biocheckro() (bsc#1234139).
  • blk-iocost: Fix an UBSAN shift-out-of-bounds warning (bsc#1234144).
  • blk-iocost: do not WARN if iocg was already offlined (bsc#1234147).
  • blk-throttle: fix lockdep warning of 'cgroup_mutex or RCU read lock required!' (bsc#1234140).
  • blk-wbt-Fix-detection-of-dirty-throttled-tasks.patch: Update tags
  • block, bfq: choose the last bfqq from merge chain in bfqsetupcooperator() (bsc#1234149).
  • block, bfq: do not break merge chain in bfqsplitbfqq() (bsc#1234150).
  • block, bfq: fix bfqq uaf in bfqlimitdepth() (bsc#1234160).
  • block, bfq: fix procress reference leakage for bfqq in merge chain (bsc#1234280).
  • block, bfq: fix uaf for accessing waker_bfqq after splitting (bsc#1234279).
  • block/mq-deadline: Fix the tag reservation code (bsc#1234148).
  • block: Call .limit_depth() after .hctx has been set (bsc#1234148).
  • block: Fix where bio IO priority gets set (bsc#1234145).
  • block: prevent an integer overflow in bvectrymergehwpage (bsc#1234142).
  • block: update the stablewrites flag in bdevadd (bsc#1234141).
  • bnxt_en: Fix GSO type for HW GRO packets on 5750X chips (git-fixes)
  • bnxt_en: Fix receive ring space parameters when XDP is active (git-fixes).
  • bnxt_en: Reserve rings after PCIe AER recovery if NIC interface is down (git-fixes).
  • bnxt_en: Set backplane link modes correctly for ethtool (git-fixes).
  • bpf, arm64: Fix address emission with tag-based KASAN enabled (git-fixes)
  • bpf, arm64: Remove garbage frame for struct_ops trampoline (git-fixes)
  • bpf, x86: Fix PROBE_MEM runtime load check (git-fixes).
  • bpf: verifier: prevent userspace memory access (git-fixes).
  • btrfs: fix use-after-free in btrfsencodedread_endio() (bsc#1235445).
  • btrfs: fix use-after-free waiting for encoded read endios (bsc#1235128)
  • btrfs: fix use-after-free waiting for encoded read endios (bsc#1235445).
  • can: ccan: ccanhandlebus_err(): update statistics if skb allocation fails (git-fixes).
  • can: dev: cansettermination(): allow sleeping GPIOs (git-fixes).
  • can: emsusb: emsusbrxerr(): fix {rx,tx}_errors statistics (git-fixes).
  • can: gs_usb: add VID/PID for Xylanta SAINT3 product family (stable-fixes).
  • can: hi311x: hi3110canist(): fix potential use-after-free (git-fixes).
  • can: hi311x: hi3110canist(): fix {rx,tx}_errors statistics (git-fixes).
  • can: ificanfd: ificanfdhandlelecerr(): fix {rx,tx}errors statistics (git-fixes).
  • can: j1939: fix error in J1939 documentation (stable-fixes).
  • can: j1939: j1939sessionnew(): fix skb reference counting (git-fixes).
  • can: mcan: mcanhandlelecerr(): fix {rx,tx}errors statistics (git-fixes).
  • can: mcp251xfd: mcp251xfdgettef_len(): work around erratum DS80000789E 6 (git-fixes).
  • can: sja1000: sja1000err(): fix {rx,tx}errors statistics (git-fixes).
  • can: sun4ican: sun4icanerr(): call canchange_state() even if cf is NULL (git-fixes).
  • can: sun4ican: sun4icanerr(): fix {rx,tx}errors statistics (git-fixes).
  • ceph: improve error handling and short/overflow-read logic in _cephsync_read() (bsc#1228592).
  • cleanup: Add conditional guard support (stable-fixes).
  • cleanup: Adjust scoped_guard() macros to avoid potential warning (stable-fixes).
  • cleanup: Remove address space of returned pointer (git-fixes).
  • clocksource/drivers/timer-ti-dm: Fix child node refcount handling (git-fixes).
  • clocksource/drivers:sp804: Make user selectable (git-fixes).
  • counter: stm32-timer-cnt: Add check for clk_enable() (git-fixes).
  • counter: ti-ecap-capture: Add check for clk_enable() (git-fixes).
  • cpufreq: intelpstate: Check turboisdisabled() in storeno_turbo() (bsc#1234619).
  • cpufreq: intelpstate: Do not update global.turbodisabled after initialization (bsc#1234619).
  • cpufreq: intelpstate: Drop redundant locking from intelpstatedrivercleanup() (bsc#1234619).
  • cpufreq: intel_pstate: Fix unchecked HWP MSR access (bsc#1234619).
  • cpufreq: intelpstate: Fold intelpstatemaxwithin_limits() into caller (bsc#1234619).
  • cpufreq: intelpstate: Get rid of unnecessary READONCE() annotations (bsc#1234619).
  • cpufreq: intelpstate: Read global.noturbo under READ_ONCE() (bsc#1234619).
  • cpufreq: intelpstate: Rearrange shownoturbo() and storeno_turbo() (bsc#1234619).
  • cpufreq: intel_pstate: Refine computation of P-state for given frequency (bsc#1234619).
  • cpufreq: intelpstate: Replace three global.turbodisabled checks (bsc#1234619).
  • cpufreq: intel_pstate: Revise global turbo disable check (bsc#1234619).
  • cpufreq: intel_pstate: Simplify spinlock locking (bsc#1234619).
  • cpufreq: intel_pstate: Update the maximum CPU frequency consistently (bsc#1234619).
  • cpufreq: intelpstate: Use _roafterinit for three variables (bsc#1234619).
  • cpufreq: intel_pstate: Wait for canceled delayed work to complete (bsc#1234619).
  • crypto: ecc - Prevent eccdigitsfrom_bytes from reading too many bytes (git-fixes).
  • crypto: ecdsa - Avoid signed integer overflow on signature decoding (stable-fixes).
  • crypto: ecdsa - Convert byte arrays with key coordinates to digits (stable-fixes).
  • crypto: ecdsa - Rename keylen to bufsize where necessary (stable-fixes).
  • crypto: ecdsa - Use eccdigitsfrom_bytes to convert signature (stable-fixes).
  • crypto: qat - disable IOV in adfdevstop() (git-fixes).
  • crypto: x86/sha256 - Add parentheses around macros' single arguments (stable-fixes).
  • cyrpto/b128ops: Remove struct u128 (bsc#1220773).
  • devlink: Fix length of eswitch inline-mode (git-fixes).
  • dlm: fix possible lkb_resource null dereference (git-fixes).
  • dma-buf: fix dmafencearray_signaled v4 (stable-fixes).
  • dma-debug: fix a possible deadlock on radix_lock (stable-fixes).
  • dma-fence: Fix reference leak on fence merge failure path (git-fixes).
  • dma-fence: Use kernel's sort for merging fences (git-fixes).
  • dmaengine: apple-admac: Avoid accessing registers in probe (git-fixes).
  • dmaengine: atxdmac: avoid nullprtderef in atxdmacprepdma_memset (git-fixes).
  • dmaengine: dw: Select only supported masters for ACPI devices (git-fixes).
  • dmaengine: idxd: Check for driver name match before sva user feature (bsc#1234357).
  • dmaengine: mv_xor: fix child node refcount handling in early exit (git-fixes).
  • dmaengine: tegra: Return correct DMA status when paused (git-fixes).
  • driver core: Add FWLINKFLAGIGNORE to completely ignore a fwnode link (stable-fixes).
  • driver core: fw_devlink: Improve logs for cycle detection (stable-fixes).
  • driver core: fw_devlink: Stop trying to optimize cycle detection logic (git-fixes).
  • drivers: net: ionic: add missed debugfs cleanup to ionic_probe() error path (git-fixes).
  • drm/amd/display: Add HDR workaround for specific eDP (stable-fixes).
  • drm/amd/display: Add NULL check for clkmgr in dcn32init_hw (stable-fixes).
  • drm/amd/display: Add check for granularity in dml ceil/floor helpers (stable-fixes).
  • drm/amd/display: Allow backlight to go below AMDGPU_DM_DEFAULT_MIN_BACKLIGHT (stable-fixes).
  • drm/amd/display: Avoid overflow assignment in linkdpcts (stable-fixes).
  • drm/amd/display: Fix DSC-re-computing (stable-fixes).
  • drm/amd/display: Fix Synaptics Cascaded Panamera DSC Determination (stable-fixes).
  • drm/amd/display: Fix incorrect DSC recompute trigger (stable-fixes).
  • drm/amd/display: Revert Avoid overflow assignment (stable-fixes).
  • drm/amd/display: Use gpuvmminpagesizekbytes for DML2 surfaces (stable-fixes).
  • drm/amd/display: increase MAX_SURFACES to the value supported by hw (stable-fixes).
  • drm/amd/pm: fix the high voltage issue after unload (stable-fixes).
  • drm/amd/pm: update currentsocclk and currentuclk in gpu_metrics on smu v13.0.7 (stable-fixes).
  • drm/amdgpu/gfx10: use rlc safe mode for soft recovery (stable-fixes).
  • drm/amdgpu/gfx11: use rlc safe mode for soft recovery (stable-fixes).
  • drm/amdgpu/gfx9: properly handle error ints on all pipes (stable-fixes).
  • drm/amdgpu/gfx9: use rlc safe mode for soft recovery (stable-fixes).
  • drm/amdgpu/hdp5.2: do a posting read when flushing HDP (stable-fixes).
  • drm/amdgpu/pm: Remove gpu_od if it's an empty directory (stable-fixes).
  • drm/amdgpu/umsch: do not execute umsch test when GPU is in reset/suspend (stable-fixes).
  • drm/amdgpu/umsch: reinitialize write pointer in hw init (stable-fixes).
  • drm/amdgpu/vcn: reset fw_shared when VCPU buffers corrupted on vcn v4.0.3 (stable-fixes).
  • drm/amdgpu: Block MMR_READ IOCTL in reset (stable-fixes).
  • drm/amdgpu: Dereference the ATCS ACPI buffer (stable-fixes).
  • drm/amdgpu: add raven1 gfxoff quirk (stable-fixes).
  • drm/amdgpu: add smu 14.0.1 discovery support (stable-fixes).
  • drm/amdgpu: clear RBOVERFLOW bit when enabling interrupts for vega20ih (stable-fixes).
  • drm/amdgpu: differentiate external rev id for gfx 11.5.0 (stable-fixes).
  • drm/amdgpu: disallow multiple BO_HANDLES chunks in one submit (stable-fixes).
  • drm/amdgpu: do not access invalid sched (git-fixes).
  • drm/amdgpu: enable gfxoff quirk on HP 705G4 (stable-fixes).
  • drm/amdgpu: fix unchecked return value warning for amdgpu_gfx (stable-fixes).
  • drm/amdgpu: fix usage slab after free (stable-fixes).
  • drm/amdgpu: prevent BO_HANDLES error from being overwritten (git-fixes).
  • drm/amdgpu: refine error handling in amdgputtmttpinuserptr (stable-fixes).
  • drm/amdgpu: set the right AMDGPU sg segment limitation (stable-fixes).
  • drm/amdgpu: skip amdgpudevicecachepcistate under sriov (stable-fixes).
  • drm/amdkfd: Correct the migration DMA map direction (stable-fixes).
  • drm/amdkfd: Fix resource leak in criu restore queue (stable-fixes).
  • drm/amdkfd: Use device based logging for errors (stable-fixes).
  • drm/amdkfd: Use the correct wptr size (stable-fixes).
  • drm/amdkfd: fixed page fault when enable MES shader debugger (git-fixes).
  • drm/amdkfd: pause autosuspend when creating pdd (stable-fixes).
  • drm/bridge: adv7511_audio: Update Audio InfoFrame properly (git-fixes).
  • drm/bridge: it6505: Enable module autoloading (stable-fixes).
  • drm/bridge: it6505: Fix inverted reset polarity (git-fixes).
  • drm/bridge: it6505: update usleep_range for RC circuit charge time (stable-fixes).
  • drm/display: Fix building with GCC 15 (stable-fixes).
  • drm/dpmst: Ensure mstprimary pointer is valid in drmdpmsthandleup_req() (stable-fixes).
  • drm/dp_mst: Fix MST sideband message body length check (stable-fixes).
  • drm/dp_mst: Fix resetting msg rx state after topology removal (git-fixes).
  • drm/dp_mst: Verify request type in the corresponding down message reply (stable-fixes).
  • drm/etnaviv: flush shader L1 cache after user commandstream (stable-fixes).
  • drm/i915/dg1: Fix power gate sequence (git-fixes).
  • drm/i915: Fix NULL pointer dereference in capture_engine (git-fixes).
  • drm/i915: Fix memory leak by correcting cache object name in error handler (git-fixes).
  • drm/mcde: Enable module autoloading (stable-fixes).
  • drm/mediatek: Add return value check when reading DPCD (git-fixes).
  • drm/mediatek: Add support for 180-degree rotation in the display driver (git-fixes).
  • drm/mediatek: Fix YCbCr422 color format issue for DP (git-fixes).
  • drm/mediatek: Fix mode valid issue for dp (git-fixes).
  • drm/mediatek: Set private->alldrmprivate[i]->drm to NULL if mtkdrmbind returns err (git-fixes).
  • drm/mediatek: mtk_dsi: Add registers to pdata to fix MT8186/MT8188 (git-fixes).
  • drm/mediatek: stop selecting foreign drivers (git-fixes).
  • drm/modes: Avoid divide by zero harder in drmmodevrefresh() (stable-fixes).
  • drm/nouveau/gsp: Use the sg allocator for level 2 of radix3 (stable-fixes).
  • drm/panel: novatek-nt35950: fix return value check in nt35950_probe() (git-fixes).
  • drm/panel: simple: Add Microchip AC69T88A LVDS Display panel (stable-fixes).
  • drm/printer: Allow NULL data in devcoredump printer (stable-fixes).
  • drm/radeon/r100: Handle unknown family in r100cpinit_microcode() (stable-fixes).
  • drm/radeon/r600cs: Fix possible int overflow in r600packet3_check() (stable-fixes).
  • drm/radeon: Fix spurious unplug event on radeon HDMI (git-fixes).
  • drm/radeon: add helper rdevtodrm(rdev) (stable-fixes).
  • drm/radeon: change rdev->ddev to rdevtodrm(rdev) (stable-fixes).
  • drm/sched: memset() 'job' in drmschedjob_init() (stable-fixes).
  • drm/sti: Add _iomem for mixerdbg_mxn's parameter (git-fixes).
  • drm/v3d: Enable Performance Counters before clearing them (git-fixes).
  • drm/v3d: Ensure job pointer is set to NULL after job completion (git-fixes).
  • drm/vc4: hdmi: Avoid log spam for audio start failure (stable-fixes).
  • drm/vc4: hvs: Set AXI panic modes for the HVS (stable-fixes).
  • drm/vmwgfx: Add new keep_resv BO param (git-fixes).
  • drm: adv7511: Drop dsi single lane support (git-fixes).
  • drm: adv7511: Fix use-after-free in adv7533attachdsi() (git-fixes).
  • drm: panel-orientation-quirks: Add quirk for AYA NEO 2 model (stable-fixes).
  • drm: panel-orientation-quirks: Add quirk for AYA NEO Founder edition (stable-fixes).
  • drm: panel-orientation-quirks: Add quirk for AYA NEO GEEK (stable-fixes).
  • drm: panel-orientation-quirks: Make Lenovo Yoga Tab 3 X90F DMI match less strict (stable-fixes).
  • erofs: avoid debugging output for (de)compressed data (git-fixes).
  • exfat: ensure that ctime is updated whenever the mtime is (git-fixes).
  • exfat: fix the infinite loop in _exfatfree_cluster() (git-fixes).
  • exfat: fix the infinite loop in exfat_readdir() (git-fixes).
  • exfat: fix uninit-value in _exfatgetdentryset (git-fixes).
  • ext4: add a new helper to check if es must be kept (bsc#1234170).
  • ext4: add correct group descriptors and reserved GDT blocks to system zone (bsc#1234164).
  • ext4: add missed brelse in update_backups (bsc#1234171).
  • ext4: allow for the last group to be marked as trimmed (bsc#1234278).
  • ext4: avoid bufferhead leak in ext4markinodeused() (bsc#1234191).
  • ext4: avoid excessive credit estimate in ext4_tmpfile() (bsc#1234180).
  • ext4: avoid negative minclusters in findgroup_orlov() (bsc#1234193).
  • ext4: avoid overlapping preallocations due to overflow (bsc#1234162).
  • ext4: avoid potential bufferhead leak in _ext4newinode() (bsc#1234192).
  • ext4: avoid writing unitialized memory to disk in EA inodes (bsc#1234187).
  • ext4: check the extent status again before inserting delalloc block (bsc#1234186).
  • ext4: clear EXT4GROUPINFOWASTRIMMED_BIT even mount with discard (bsc#1234190).
  • ext4: convert to exclusive lock while inserting delalloc extents (bsc#1234178).
  • ext4: correct best extent lstart adjustment logic (bsc#1234179).
  • ext4: correct grp validation in ext4mbgood_group (bsc#1234163).
  • ext4: correct return value of ext4convertmeta_bg (bsc#1234172).
  • ext4: correct the hole length returned by ext4mapblocks() (bsc#1234178).
  • ext4: correct the start block of counting reserved clusters (bsc#1234169).
  • ext4: do not let fstrim block system suspend (https://bugzilla.kernel.org/show_bug.cgi?id=216322 bsc#1234166).
  • ext4: do not trim the group with corrupted block bitmap (bsc#1234177).
  • ext4: factor out _esallocextent() and _esfreeextent() (bsc#1234170).
  • ext4: factor out a common helper to query extent map (bsc#1234186).
  • ext4: fix inconsistent between segment fstrim and full fstrim (bsc#1234176).
  • ext4: fix incorrect tid assumption in _jbd2logwaitfor_space() (bsc#1234188).
  • ext4: fix incorrect tid assumption in ext4waitfortailpage_commit() (bsc#1234188).
  • ext4: fix incorrect tid assumption in jbd2journalshrinkcheckpointlist() (bsc#1234188).
  • ext4: fix memory leaks in ext4fname{setupfilename,preparelookup} (bsc#1214954).
  • ext4: fix potential unnitialized variable (bsc#1234183).
  • ext4: fix race between writepages and remount (bsc#1234168).
  • ext4: fix rec_len verify error (bsc#1234167).
  • ext4: fix slab-use-after-free in ext4esinsert_extent() (bsc#1234170).
  • ext4: fix uninitialized variable in ext4inlinedirto_tree (bsc#1234185).
  • ext4: forbid commit inconsistent quota data when errors=remount-ro (bsc#1234178).
  • ext4: make ext4esinsertdelayedblock() return void (bsc#1234170).
  • ext4: make ext4esinsert_extent() return void (bsc#1234170).
  • ext4: make ext4esremove_extent() return void (bsc#1234170).
  • ext4: make ext4zerooutes() return void (bsc#1234170).
  • ext4: make sure allocate pending entry not fail (bsc#1234170).
  • ext4: mark buffer new if it is unwritten to avoid stale data exposure (bsc#1234175).
  • ext4: move 'ix' sanity check to corrent position (bsc#1234174).
  • ext4: move setting of trimmed bit into ext4trytotrimrange() (bsc#1234165).
  • ext4: nested locking for xattr inode (bsc#1234189).
  • ext4: propagate errors from ext4findextent() in ext4insertrange() (bsc#1234194).
  • ext4: refactor ext4damap_blocks() (bsc#1234178).
  • ext4: remove gdb backup copy for meta bg in setupnewflexgroupblocks (bsc#1234173).
  • ext4: remove the redundant foliowaitstable() (bsc#1234184).
  • ext4: set the type of max_zeroout to unsigned int to avoid overflow (bsc#1234182).
  • ext4: set type of acgroupslinearremaining to _u32 to avoid overflow (bsc#1234181).
  • ext4: use pre-allocated es in _esinsert_extent() (bsc#1234170).
  • ext4: use pre-allocated es in _esremove_extent() (bsc#1234170).
  • ext4: using nofail preallocation in ext4esinsertdelayedblock() (bsc#1234170).
  • ext4: using nofail preallocation in ext4esinsert_extent() (bsc#1234170).
  • ext4: using nofail preallocation in ext4esremove_extent() (bsc#1234170).
  • filemap: Fix bounds checking in filemap_read() (bsc#1234209).
  • filemap: add a per-mapping stable writes flag (bsc#1234141).
  • firmware: arm_scmi: Reject clear channel request on A2P (stable-fixes).
  • fs-writeback: do not requeue a clean inode having skipped pages (bsc#1234200).
  • fs/writeback: bail out if there is no more inodes for IO and queued once (bsc#1234207).
  • fsnotify: fix sending inotify event with unexpected filename (bsc#1234198).
  • genirq/cpuhotplug: Retry with cpuonlinemask when migration fails (git-fixes).
  • genirq/cpuhotplug: Skip suspended interrupts when restoring affinity (git-fixes).
  • genirq/irqdesc: Honor caller provided affinity in alloc_desc() (git-fixes).
  • gpio: grgpio: Add NULL check in grgpio_probe (git-fixes).
  • gpio: grgpio: use a helper variable to store the address of ofdev->dev (stable-fixes).
  • gpio: xilinx: Convert gpio_lock to raw spinlock (git-fixes).
  • hfsplus: do not query the device logical block size multiple times (git-fixes).
  • hvc/xen: fix console unplug (git-fixes).
  • hvc/xen: fix error path in xenhvcinit() to always register frontend driver (git-fixes).
  • hvc/xen: fix event channel handling for secondary consoles (git-fixes).
  • hwmon: (drivetemp) Fix driver producing garbage data when SCSI errors occur (git-fixes).
  • hwmon: (nct6775) Add 665-ACE/600M-CL to ASUS WMI monitoring list (stable-fixes).
  • hwmon: (pmbus/core) clear faults after setting smbalert mask (git-fixes).
  • hwmon: (pmbuscore) Allow to hook PMBUSSMBALERT_MASK (stable-fixes).
  • hwmon: (tmp513) Do not use 'proxy' headers (stable-fixes).
  • hwmon: (tmp513) Fix Current Register value interpretation (git-fixes).
  • hwmon: (tmp513) Fix division of negative numbers (git-fixes).
  • hwmon: (tmp513) Fix interpretation of values of Shunt Voltage and Limit Registers (git-fixes).
  • hwmon: (tmp513) Fix interpretation of values of Temperature Result and Limit Registers (git-fixes).
  • hwmon: (tmp513) Simplify with deverrprobe() (stable-fixes).
  • hwmon: (tmp513) Use SI constants from units.h (stable-fixes).
  • i2c: core: fix reference leak in i2cregisteradapter() (git-fixes).
  • i2c: i801: Add support for Intel Arrow Lake-H (stable-fixes).
  • i2c: i801: Add support for Intel Panther Lake (stable-fixes).
  • i2c: imx: add imx7d compatible string for applying erratum ERR007805 (git-fixes).
  • i2c: microchip-core: actually use repeated sends (git-fixes).
  • i2c: microchip-core: fix 'ghost' detections (git-fixes).
  • i2c: mux: demux-pinctrl: check initial mux selection, too (git-fixes).
  • i2c: pnx: Fix timeout in wait functions (git-fixes).
  • i2c: rcar: fix NACK handling when being a target (git-fixes).
  • i2c: riic: Always round-up when calculating bus period (git-fixes).
  • i2c: xgene-slimpro: Migrate to use generic PCC shmem related macros (stable-fixes).
  • i40e: Fix handling changed priv flags (git-fixes).
  • i915/guc: Accumulate active runtime on gt reset (git-fixes).
  • i915/guc: Ensure busyness counter increases motonically (git-fixes).
  • i915/guc: Reset engine utilization buffer before registration (git-fixes).
  • iTCOwdt: mask NMINOW bit for updatenoreboot_bit() call (git-fixes).
  • ice: Unbind the workqueue (bsc#1234989)
  • ice: change q_index variable type to s16 to store -1 value (git-fixes).
  • ice: consistently use qidx in icevccfgqs_msg() (git-fixes).
  • ice: fix PHY Clock Recovery availability check (git-fixes).
  • idpf: add support for SW triggered interrupts (bsc#1235507).
  • idpf: enable WBONITR (bsc#1235507).
  • idpf: trigger SW interrupt when exiting wbonitr mode (bsc#1235507).
  • ieee802154: ca8210: Add missing check for kfifoalloc() in ca8210probe() (git-fixes).
  • igb: Fix potential invalid memory access in igbinitmodule() (git-fixes).
  • iio: adc: ad7124: Disable all channels at probe time (git-fixes).
  • iio: adc: at91: call inputfreedevice() on allocated iio_dev (git-fixes).
  • iio: adc: rockchip_saradc: fix information leak in triggered buffer (git-fixes).
  • iio: adc: ti-ads124s08: Use gpiodsetvalue_cansleep() (git-fixes).
  • iio: adc: ti-ads8688: fix information leak in triggered buffer (git-fixes).
  • iio: dummy: iiosimplydummy_buffer: fix information leak in triggered buffer (git-fixes).
  • iio: gyro: fxas21002c: Fix missing data update in trigger handler (git-fixes).
  • iio: imu: kmx61: fix information leak in triggered buffer (git-fixes).
  • iio: inkern: call iiodeviceput() only on mapped devices (git-fixes).
  • iio: light: vcnl4035: fix information leak in triggered buffer (git-fixes).
  • iio: magnetometer: yas530: use signed integer type for clamp limits (git-fixes).
  • iio: pressure: zpa2326: fix information leak in triggered buffer (git-fixes).
  • iio: test : check null return of kunitkmalloc in iiorescaletestscale (git-fixes).
  • instrumentation: Wire up cmpxchg128() (bsc#1220773).
  • io_uring/rw: avoid punting to io-wq directly (git-fixes).
  • iouring/tctx: work around xastore() allocation error issue (git-fixes).
  • io_uring: Fix registered ring file refcount leak (git-fixes).
  • iouring: always lock _iocqringoverflow_flush (git-fixes).
  • io_uring: check if iowq is killed before queuing (git-fixes).
  • iommu/io-pgtable-arm: Fix stage-2 map/unmap for concatenated tables (git-fixes).
  • irqchip/gic-v3: Force propagation of the active state with a read-back (stable-fixes).
  • irqchip/gic: Correct declaration of *percpubase pointer in union gicbase (stable-fixes).
  • irqflags: Explicitly ignore lockdephrtimerexit() argument (git-fixes).
  • isofs: handle CDs with bad root inode but good Joliet root directory (bsc#1234199).
  • ixgbe: downgrade logging of unsupported VF API version to debug (git-fixes).
  • ixgbevf: stop attempting IPSEC offload on Mailbox API 1.5 (git-fixes).
  • jffs2: Fix rtime decompressor (git-fixes).
  • jffs2: Prevent rtime decompress memory corruption (git-fixes).
  • jffs2: fix use of uninitialized variable (git-fixes).
  • jfs: add a check to prevent array-index-out-of-bounds in dbAdjTree (git-fixes).
  • jfs: array-index-out-of-bounds fix in dtReadFirst (git-fixes).
  • jfs: fix array-index-out-of-bounds in jfs_readdir (git-fixes).
  • jfs: fix shift-out-of-bounds in dbSplit (git-fixes).
  • jfs: xattr: check invalid xattr size more strictly (git-fixes).
  • kABI workaround for struct drmdpmsttopologymgr (git-fixes).
  • kABI: Fix kABI after TDX KVM backports (jsc#PED-6143).
  • kABI: Restore exported _armsmcccsvecheck (git-fixes)
  • kabi/severities: make vcapfindactionfield PASS (bsc#1220773)
  • kasan: make report_lock a raw spinlock (git-fixes).
  • kdb: Fix buffer overflow during tab-complete (bsc#1234652).
  • kdb: Fix console handling when editing and tab-completing commands (bsc#1234655).
  • kdb: Merge identical case statements in kdb_read() (bsc#1234657).
  • kdb: Use format-specifiers rather than memset() for padding in kdb_read() (bsc#1234658).
  • kdb: Use format-strings rather than '\0' injection in kdb_read() (bsc#1234654).
  • kdb: Use the passed prompt in kdbpositioncursor() (bsc#1234654).
  • kdb: address -Wformat-security warnings (bsc#1234659).
  • kgdb: Flush console before entering kgdb on panic (bsc#1234651).
  • leds: class: Protect brightnessshow() with ledcdev->led_access mutex (stable-fixes).
  • lib/stackdepot: print disabled message only if truly disabled (git-fixes).
  • linux/dmaengine.h: fix a few kernel-doc warnings (git-fixes).
  • locking/atomic/x86: Correct the definition of _archtry_cmpxchg128() (bsc#1220773 git-fix).
  • loop: fix the the direct I/O support check when used on top of block devices (bsc#1234143).
  • mac80211: fix user-power when emulating chanctx (stable-fixes).
  • mailbox: pcc: Add support for platform notification handling (stable-fixes).
  • mailbox: pcc: Support shared interrupt for multiple subspaces (stable-fixes).
  • media: cx231xx: Add support for Dexatek USB Video Grabber 1d19:6108 (stable-fixes).
  • media: dvb-frontends: dib3000mb: fix uninit-value in dib3000writereg (git-fixes).
  • media: uvcvideo: Add a quirk for the Kaiweets KTI-W02 infrared camera (stable-fixes).
  • media: uvcvideo: Force UVC version to 1.0a for 0408:4035 (stable-fixes).
  • media: uvcvideo: RealSense D421 Depth module metadata (stable-fixes).
  • memory tiering: count PGPROMOTE_SUCCESS when mem tiering is enabled (git-fixes).
  • memory-failure: use a folio in mehugepage() (git-fixes).
  • mfd: da9052-spi: Change read-mask to write-mask (git-fixes).
  • mfd: intelsocpmic_bxtwc: Use IRQ domain for PMIC devices (git-fixes).
  • mfd: intelsocpmic_bxtwc: Use IRQ domain for TMU device (git-fixes).
  • mfd: intelsocpmic_bxtwc: Use IRQ domain for USB Type-C device (git-fixes).
  • misc: microchip: pci1xxxx: Resolve kernel panic during GPIO IRQ handling (git-fixes).
  • misc: microchip: pci1xxxx: Resolve return code mismatch during GPIO set config (git-fixes).
  • mm, kmsan: fix infinite recursion due to RCU critical section (git-fixes).
  • mm,pageowner: do not remove _GFPNOLOCKDEP in addstackrecordto_list (git-fixes).
  • mm/filemap: avoid buffered read/write race to read inconsistent data (bsc#1234204).
  • mm/memory-failure: cast index to loff_t before shifting it (git-fixes).
  • mm/memory-failure: check the mapcount of the precise page (git-fixes).
  • mm/memory-failure: fix crash in splithugepagetolist from softofflinepage (git-fixes).
  • mm/memory-failure: pass the folio and the page to collect_procs() (git-fixes).
  • mm/memory-failure: use rawspinlockt in struct memoryfailurecpu (git-fixes).
  • mm/memoryhotplug: add missing memhotplug_lock (git-fixes).
  • mm/memoryhotplug: fix error handling in addmemory_resource() (git-fixes).
  • mm/memory_hotplug: prevent accessing by index=-1 (git-fixes).
  • mm/memory_hotplug: use pfn math in place of direct struct page manipulation (git-fixes).
  • mm/migrate: correct nrfailed in migratepages_sync() (git-fixes).
  • mm/migrate: fix deadlock in migratepagesbatch() on large folios (git-fixes).
  • mm/migrate: putback split folios when numa hint migration fails (git-fixes).
  • mm/migrate: split source folio if it is on deferred split list (git-fixes).
  • mm/pageowner: remove freets from page_owner output (git-fixes).
  • mm/readahead: do not allow order-1 folio (bsc#1234205).
  • mm/readahead: limit page cache size in pagecachera_order() (bsc#1234208).
  • mm: convert DAX lock/unlock page to lock/unlock folio (git-fixes).
  • mm: memory-failure: ensure moving HWPoison flag to the raw error pages (git-fixes).
  • mm: memory-failure: fetch compound head after extra page refcnt is held (git-fixes).
  • mm: memory-failure: fix potential page refcnt leak in memory_failure() (git-fixes).
  • mm: memory-failure: fix race window when trying to get hugetlb folio (git-fixes).
  • mm: memory-failure: remove unneeded PageHuge() check (git-fixes).
  • mm: prevent derefencing NULL ptr in pfnsectionvalid() (git-fixes).
  • mmc: core: Add SD card quirk for broken poweroff notification (stable-fixes).
  • mmc: core: Further prevent card detect during shutdown (git-fixes).
  • mmc: mtk-sd: Fix MMCCAP2CRYPTO flag setting (git-fixes).
  • mmc: mtk-sd: fix devmclkget_optional usage (stable-fixes).
  • mmc: sdhci-esdhc-imx: enable quirks SDHCIQUIRKNO_LED (stable-fixes).
  • mmc: sdhci-pci: Add DMI quirk for missing CD GPIO on Vexia Edu Atla 10 tablet (stable-fixes).
  • mmc: sdhci-tegra: Remove SDHCIQUIRKBROKENADMAZEROLEN_DESC quirk (git-fixes).
  • modpost: fix the missed iteration for the max bit in do_input() (git-fixes).
  • mtd: diskonchip: Cast an operand to prevent potential overflow (git-fixes).
  • mtd: hyperbus: rpc-if: Add missing MODULEDEVICETABLE (git-fixes).
  • mtd: hyperbus: rpc-if: Convert to platform remove callback returning void (stable-fixes).
  • mtd: rawnand: arasan: Fix double assertion of chip-select (git-fixes).
  • mtd: rawnand: arasan: Fix missing de-registration of NAND (git-fixes).
  • mtd: rawnand: fix double free in atmelpmecccreate_user() (git-fixes).
  • net :mana :Request a V2 response version for MANAQUERYGF_STAT (git-fixes).
  • net/ipv6: release expired exception dst cached in socket (bsc#1216813).
  • net/mlx5e: CT: Fix null-ptr-deref in add rule err flow (git-fixes).
  • net/mlx5e: Remove workaround to avoid syndrome for internal port (git-fixes).
  • net/mlx5e: clear xdp features on non-uplink representors (git-fixes).
  • net/qed: allow old cards not supporting 'num_images' to work (git-fixes).
  • net: Return error from skstreamwaitconnect() if skwait_event() fails (git-fixes).
  • net: mana: Increase the DEFRXBUFFERSPERQUEUE to 1024 (bsc#1235246).
  • net: usb: qmi_wwan: add Quectel RG650V (stable-fixes).
  • net: usb: qmi_wwan: add Telit FE910C04 compositions (stable-fixes).
  • net: wwan: iosm: Properly check for valid exec stage in ipcmmioinit() (git-fixes).
  • net: wwan: t7xx: Fix FSM command timeout issue (git-fixes).
  • netdevsim: copy addresses for both in and out paths (git-fixes).
  • nfs: ignore SB_RDONLY when mounting nfs (git-fixes).
  • nfsd: fix nfs4openowner leak when concurrent nfsd4open occur (git-fixes).
  • nfsd: make sure exp active before svcexportshow (git-fixes).
  • nfsd: release svcexpkey/svcexport with rcu_work (git-fixes).
  • nfsd: restore callback functionality for NFSv4.0 (git-fixes).
  • nilfs2: fix buffer head leaks in calls to truncateinodepages() (git-fixes).
  • nilfs2: fix potential out-of-bounds memory access in nilfsfindentry() (git-fixes).
  • nilfs2: prevent use of deleted inode (git-fixes).
  • nvme-pci: 512 byte aligned dma pool segment quirk (git-fixes).
  • nvme-rdma: unquiesce admin_q before destroy it (git-fixes).
  • nvme-tcp: fix the memleak while create new ctrl failed (git-fixes).
  • nvme/multipath: Fix RCU list traversal to use SRCU primitive (git-fixes).
  • nvme: apple: fix device reference counting (git-fixes).
  • nvme: fix metadata handling in nvme-passthrough (git-fixes).
  • nvmet-loop: avoid using mutex in IO hotpath (git-fixes).
  • ocfs2: fix uninitialized value in ocfs2fileread_iter() (git-fixes).
  • ocfs2: free inode when ocfs2getinit_inode() fails (git-fixes).
  • of/irq: Fix using uninitialized variable @addrlen in API ofirqparseone() (git-fixes).
  • of: Fix error path in ofparsephandlewithargs_map() (git-fixes).
  • of: Fix refcount leakage for OF node returned by _ofgetdmaparent() (git-fixes).
  • of: address: Report error on resource bounds overflow (stable-fixes).
  • parisc: Raise minimal GCC version (bsc#1220773).
  • parisc: Raise minimal GCC version to 12.0.0 (bsc#1220773 git-fix).
  • percpu: Add {raw,this}cputry_cmpxchg() (bsc#1220773).
  • percpu: Fix self-assignment of _old in rawcpugenerictry_cmpxchg() (bsc#1220773 git-fix).
  • percpu: Wire up cmpxchg128 (bsc#1220773).
  • phy: core: Fix an OF node refcount leakage in ofphy_get() (git-fixes).
  • phy: core: Fix an OF node refcount leakage in ofphyprovider_lookup() (git-fixes).
  • phy: core: Fix that API devmofphyproviderunregister() fails to unregister the phy provider (git-fixes).
  • phy: core: Fix that API devmphydestroy() fails to destroy the phy (git-fixes).
  • phy: core: Fix that API devmphyput() fails to release the phy (git-fixes).
  • phy: qcom-qmp: Fix register name in RX Lane config of SC8280XP (git-fixes).
  • phy: rockchip: naneng-combphy: fix phy reset (git-fixes).
  • phy: usb: Toggle the PHY power during init (git-fixes).
  • pinctrl: mcp23s08: Fix sleeping in atomic context due to regmap locking (git-fixes).
  • pinctrl: qcom-pmic-gpio: add support for PM8937 (stable-fixes).
  • pinctrl: qcom: spmi-mpp: Add PM8937 compatible (stable-fixes).
  • pinmux: Use sequential access to access desc->pinmux data (stable-fixes).
  • platform/chrome: crosecproto: Lock device when updating MKBP version (git-fixes).
  • platform/x86/amd/pmc: Only disable IRQ1 wakeup where i8042 actually enabled it (git-fixes).
  • platform/x86/intel-uncore-freq: Ignore minor version change (bsc#1225897).
  • platform/x86/intel/tpmi: Add defines to get version information (bsc#1225897).
  • platform/x86: asus-nb-wmi: Ignore unknown event 0xCF (stable-fixes).
  • platform/x86: dell-smbios-base: Extends support to Alienware products (stable-fixes).
  • platform/x86: dell-wmi-base: Handle META key Lock/Unlock events (stable-fixes).
  • platform/x86: thinkpad_acpi: Fix for ThinkPad's with ECFW showing incorrect fan speed (stable-fixes).
  • power: supply: gpio-charger: Fix set charge current limits (git-fixes).
  • powerpc/64s: Fix unnecessary copy to 0 when kernel is booted at address 0 (bsc#1215199).
  • powerpc/atomic: Use YZ constraints for DS-form instructions (bsc#1194869).
  • powerpc/book3s64/hugetlb: Fix disabling hugetlb when fadump is active (bsc#1235108).
  • powerpc/fadump: Move fadumpcmainit to setuparch() after initmeminit() (bsc#1215199).
  • powerpc/fadump: Refactor and prepare fadumpcmainit for late init (bsc#1215199).
  • powerpc/iommu: Move pSeries specific functions to pseries/iommu.c (bsc#1220711 ltc#205755).
  • powerpc/iommu: Only build sPAPR access functions on pSeries (bsc#1220711 ltc#205755).
  • powerpc/kexec: Fix return of uninitialized variable (bsc#1194869).
  • powerpc/mm/fault: Fix kfence page fault reporting (bsc#1194869).
  • powerpc/mm: Fix boot crash with FLATMEM (bsc#1194869).
  • powerpc/mm: Fix boot warning with hugepages and CONFIGDEBUGVIRTUAL (bsc#1194869).
  • powerpc/powernv/pci: Remove MVE code (bsc#1220711 ltc#205755).
  • powerpc/powernv/pci: Remove ioda1 support (bsc#1220711 ltc#205755).
  • powerpc/powernv/pci: Remove last IODA1 defines (bsc#1220711 ltc#205755).
  • powerpc/powernv: Free name on error in opaleventinit() (bsc#1194869).
  • powerpc/pseries/iommu: IOMMU incorrectly marks MMIO range in DDW (bsc#1218470 ltc#204531).
  • powerpc/pseries/vas: Add close() callback in vasvmops struct (bsc#1234825).
  • powerpc/pseries: Fix KVM guest detection for disabling hardlockup detector (bsc#1194869).
  • powerpc/pseries: Fix dtlaccesslock to be a rw_semaphore (bsc#1194869).
  • powerpc/pseries: Use correct data types from pserieshperrorlog struct (bsc#1215199).
  • powerpc/vdso: Inconditionally use CFUNC macro (bsc#1215199).
  • proc/softirqs: replace seqprintf with seqputdecimalull_width (git-fixes).
  • quota: Fix rcu annotations of inode dquot pointers (bsc#1234197).
  • quota: explicitly forbid quota files from being encrypted (bsc#1234196).
  • quota: flush quotareleasework upon quota writeback (bsc#1234195).
  • quota: simplify dropdquotref() (bsc#1234197).
  • readahead: use ilog2 instead of a while loop in pagecachera_order() (bsc#1234208).
  • regmap: Use correct format specifier for logging range errors (stable-fixes).
  • regmap: detach regmap from dev on regmap_exit (git-fixes).
  • regulator: rk808: Add apply_bit for BUCK3 on RK809 (stable-fixes).
  • rtc: cmos: avoid taking rtc_lock for extended period of time (stable-fixes).
  • s390/cio: Do not unregister the subchannel based on DNV (git-fixes).
  • s390/cpum_sf: Convert to cmpxchg128() (bsc#1220773).
  • s390/cpum_sf: Handle CPU hotplug remove during sampling (git-fixes).
  • s390/cpumsf: Remove WARNON_ONCE statements (git-fixes).
  • s390/facility: Disable compile time optimization for decompressor code (git-fixes).
  • s390/iucv: MSGPEEK causes memory leak in iucvsock_destruct() (git-fixes).
  • s390/pageattr: Implement missing kernelpagepresent() (git-fixes).
  • s390x config: IOMMUDEFAULTDMA_LAZY=y (bsc#1235646)
  • scatterlist: fix incorrect func name in kernel-doc (git-fixes).
  • sched/numa: fix memory leak due to the overwritten vma->numab_state (git fixes (sched/numa)).
  • scsi: lpfc: Add handling for LS_RJT reason explanation authentication required (bsc#1235409).
  • scsi: lpfc: Add support for large fw object application layer reads (bsc#1235409).
  • scsi: lpfc: Change lpfcnodelist saveflags member into a bitmask (bsc#1235409).
  • scsi: lpfc: Copyright updates for 14.4.0.7 patches (bsc#1235409).
  • scsi: lpfc: Delete NLPTARGETREMOVE flag due to obsolete usage (bsc#1235409).
  • scsi: lpfc: Modify handling of ADISC based on ndlp state and RPI registration (bsc#1235409).
  • scsi: lpfc: Redefine incorrect type in lpfccreatedevice_data() (bsc#1235409).
  • scsi: lpfc: Restrict the REG_FCFI MAM field to FCoE adapters only (bsc#1235409).
  • scsi: lpfc: Update definition of firmware configuration mbox cmds (bsc#1235409).
  • scsi: lpfc: Update lpfc version to 14.4.0.7 (bsc#1235409).
  • scsi: qla2xxx: Fix NVMe and NPIV connect issue (bsc#1235406).
  • scsi: qla2xxx: Fix abort in bsg timeout (bsc#1235406).
  • scsi: qla2xxx: Fix use after free on unload (bsc#1235406).
  • scsi: qla2xxx: Remove check reqsgcnt should be equal to rspsgcnt (bsc#1235406).
  • scsi: qla2xxx: Remove the unused 'dellistentry' field in struct fc_port (bsc#1235406).
  • scsi: qla2xxx: Supported speed displayed incorrectly for VPorts (bsc#1235406).
  • scsi: qla2xxx: Update version to 10.02.09.400-k (bsc#1235406).
  • scsi: storvsc: Do not flag MAINTENANCEIN return of SRBSTATUSDATAOVERRUN as an error (git-fixes).
  • selftests/bpf: Test PROBEMEM of VSYSCALLADDR on x86-64 (git-fixes).
  • selftests: mptcp: avoid spurious errors on disconnect (git-fixes).
  • serial: 8250_dw: Add Sophgo SG2044 quirk (stable-fixes).
  • serial: 8250dw: Do not use struct dw8250data outside of 8250_dw (git-fixes).
  • serial: 8250_dw: Replace ACPI device check by a quirk (git-fixes).
  • serial: 8250_fintek: Add support for F81216E (stable-fixes).
  • serial: Do not hold the port lock when setting rx-during-tx GPIO (git-fixes).
  • serial: amba-pl011: Fix RX stall when DMA is used (git-fixes).
  • serial: amba-pl011: Use port lock wrappers (stable-fixes).
  • serial: amba-pl011: fix build regression (git-fixes).
  • serial: do not use uninitialized value in uartpollinit() (git-fixes).
  • serial: imx: only set receiver level if it is zero (git-fixes).
  • serial: imx: set receiver level before starting uart (git-fixes).
  • serial: qcom-geni: Do not cancel/abort if we can't get the port lock (git-fixes).
  • serial: qcom-geni: disable interrupts during console writes (git-fixes).
  • serial: qcom-geni: fix arg types for qcomgeniserialpollbit() (git-fixes).
  • serial: qcom-geni: fix console corruption (git-fixes).
  • serial: qcom-geni: fix dma rx cancellation (git-fixes).
  • serial: qcom-geni: fix false console tx restart (git-fixes).
  • serial: qcom-geni: fix fifo polling timeout (git-fixes).
  • serial: qcom-geni: fix hard lockup on buffer flush (git-fixes).
  • serial: qcom-geni: fix polled console corruption (git-fixes).
  • serial: qcom-geni: fix polled console initialisation (git-fixes).
  • serial: qcom-geni: fix receiver enable (git-fixes).
  • serial: qcom-geni: fix shutdown race (git-fixes).
  • serial: qcom-geni: fix soft lockup on sw flow control and suspend (git-fixes).
  • serial: qcom-geni: introduce qcomgeniserialpollbitfield() (git-fixes).
  • serial: qcom-geni: revert broken hibernation support (git-fixes).
  • serial: stm32: Return IRQ_NONE in the ISR if no handling happend (git-fixes).
  • serial: stm32: do not always set SERRS485RXDURINGTX if RS485 is enabled (git-fixes).
  • slub: Replace cmpxchg_double() (bsc#1220773).
  • slub: Replace cmpxchg_double() - KABI fix (bsc#1220773).
  • smb: client: fix TCP timers deadlock after rmmod (git-fixes) [hcarvalho: fix issue described in bsc#1233642]
  • soc/fsl: cpm: qmc: Convert to platform remove callback returning void (stable-fixes).
  • soc: fsl: cpm1: qmc: Fix blank line and spaces (stable-fixes).
  • soc: fsl: cpm1: qmc: Introduce qmcinitresource() and its CPM1 version (stable-fixes).
  • soc: fsl: cpm1: qmc: Introduce qmc{init,exit}xcc() and their CPM1 version (stable-fixes).
  • soc: fsl: cpm1: qmc: Re-order probe() operations (stable-fixes).
  • soc: fsl: cpm1: qmc: Set the ret error code on platformgetirq() failure (git-fixes).
  • soc: imx8m: Probe the SoC driver as platform driver (stable-fixes).
  • soc: qcom: Add check devm_kasprintf() returned value (stable-fixes).
  • soc: qcom: geni-se: Add MTXFIFONOTEMPTY bit definition (git-fixes).
  • soc: qcom: geni-se: add GPLENGTH/IRQENSET/IRQEN_CLEAR registers (git-fixes).
  • soc: qcom: socinfo: fix revision check in qcomsocinfoprobe() (git-fixes).
  • sound: usb: enable DSD output for ddHiFi TC44C (stable-fixes).
  • sound: usb: format: do not warn that raw DSD is unsupported (stable-fixes).
  • spi: aspeed: Fix an error handling path in aspeedspi[read|write]_user() (git-fixes).
  • spi: mpc52xx: Add cancelworksync before module remove (git-fixes).
  • stackdepot: rename poolindex to poolindexplus1 (git-fixes).
  • stackdepot: respect _GFPNOLOCKDEP allocation flag (git-fixes).
  • staging: iio: ad9832: Correct phase range check (git-fixes).
  • staging: iio: ad9834: Correct phase range check (git-fixes).
  • sunrpc: clear XPRTSOCKUPD_TIMEOUT when reset transport (git-fixes).
  • sunrpc: fix one UAF issue caused by sunrpc kernel tcp socket (git-fixes).
  • sunrpc: handle -ENOTCONN in xstcpsetup_socket() (git-fixes).
  • svcrdma: Address an integer overflow (git-fixes).
  • svcrdma: fix miss destroy percpucounter in svcrdmaprocinit() (git-fixes).
  • swiotlb: Enforce page alignment in swiotlb_alloc() (git-fixes).
  • swiotlb: Reinstate page-alignment for mappings >= PAGE_SIZE (git-fixes).
  • tdx: following fixup for mapping_level porting conflict (jsc#PED-6143).
  • tdx: init hasprivatemem during tdx init (jsc#PED-6143).
  • the end of (the first phase of) TDX KVM patch series (jsc#PED-6143).
  • thermal/drivers/qcom/tsens-v1: Add support for MSM8937 tsens (stable-fixes).
  • thermal: of: fix OF node leak in ofthermalzone_find() (git-fixes).
  • thunderbolt: Add support for Intel Lunar Lake (stable-fixes).
  • thunderbolt: Add support for Intel Panther Lake-M/P (stable-fixes).
  • tipc: fix NULL deref in cleanup_bearer() (bsc#1235433).
  • tools: hv: change permissions of NetworkManager configuration file (git-fixes).
  • tpm/eventlog: Limit memory allocations for event logs with excessive size (bsc#1233260 bsc#1233259 bsc#1232421).
  • tpm: Map the ACPI provided event log (bsc#1233260 bsc#1233259 bsc#1232421).
  • tpmtisspi: Release chip select when flow control fails (bsc#1234338)
  • tty: serial: 8250: Fix another runtime PM usage counter underflow (git-fixes).
  • tty: serial: kgdboc: Fix 8250_* kgdb over serial (git-fixes).
  • types: Introduce [us]128 (bsc#1220773).
  • ubifs: Correct the total block count by deducting journal reservation (git-fixes).
  • ubifs: authentication: Fix use-after-free in ubifstncend_commit (git-fixes).
  • udf: Fix lock ordering in udfevictinode() (bsc#1234238).
  • udf: fix uninit-value use in udfgetfileshortad (bsc#1234243).
  • udf: prevent integer overflow in udfbitmapfree_blocks() (bsc#1234239).
  • udf: refactor inode_bmap() to handle error (bsc#1234242).
  • udf: refactor udfcurrentaext() to handle error (bsc#1234240).
  • udf: refactor udfnextaext() to handle error (bsc#1234241).
  • udf: udftime: prevent overflow in udfdiskstamptotime() (bsc#1234237).
  • usb-storage: Add max sectors quirk for Nokia 208 (stable-fixes).
  • usb: add support for new USB device ID 0x17EF:0x3098 for the r8152 driver (stable-fixes).
  • usb: cdns3-ti: Add workaround for Errata i2409 (stable-fixes).
  • usb: cdns3: Add quirk flag to enable suspend residency (stable-fixes).
  • usb: chipidea: add CIHDRCFORCEVBUSACTIVE_ALWAYS flag (stable-fixes).
  • usb: chipidea: udc: handle USB Error Interrupt if IOC not set (stable-fixes).
  • usb: dwc2: Fix HCD port connection race (git-fixes).
  • usb: dwc2: Fix HCD resume (git-fixes).
  • usb: dwc2: gadget: Do not write invalid mapped sg entries into dma_desc with iommu enabled (stable-fixes).
  • usb: dwc2: hcd: Fix GetPortStatus & SetPortFeature (git-fixes).
  • usb: dwc3-am62: Disable autosuspend during remove (git-fixes).
  • usb: dwc3: ep0: Do not clear ep0 DWC3EPTRANSFER_STARTED (git-fixes).
  • usb: dwc3: ep0: Do not reset resource alloc flag (git-fixes).
  • usb: dwc3: ep0: Do not reset resource alloc flag (including ep0) (git-fixes).
  • usb: dwc3: gadget: Rewrite endpoint allocation flow (stable-fixes).
  • usb: dwc3: gadget: fix writing NYET threshold (git-fixes).
  • usb: dwc3: xilinx: make sure pipe clock is deselected in usb2 only mode (git-fixes).
  • usb: ehci-hcd: fix call balance of clocks handling routines (git-fixes).
  • usb: fix reference leak in usbnewdevice() (git-fixes).
  • usb: gadget: configfs: Ignore trailing LF for user strings to cdev (git-fixes).
  • usb: gadget: ffs: Remove WARNON in functionfs_bind (git-fixes).
  • usb: gadget: f_uac2: Fix incorrect setting of bNumEndpoints (git-fixes).
  • usb: gadget: u_serial: Disable ep before setting port to null to fix the crash caused by port being null (git-fixes).
  • usb: gadget: userial: Fix the issue that gsstart_io crashed due to accessing null pointer (git-fixes).
  • usb: host: max3421-hcd: Correctly abort a USB request (git-fixes).
  • usb: typec: anx7411: fix OF node reference leaks in anx7411typecswitch_probe() (git-fixes).
  • usb: typec: anx7411: fix fwnode_handle reference leak (git-fixes).
  • usb: typec: tcpm/tcpcimaxim: fix error code in maxcontaminantreadresistance_kohm() (git-fixes).
  • usb: typec: use cleanup facility for 'altmodes_node' (stable-fixes).
  • vDPA/ifcvf: Fix pcireadconfig_byte() return code handling (git-fixes).
  • vdpa/mlx5: Fix PA offset with unaligned starting iotlb map (git-fixes).
  • vdpa/mlx5: Fix suboptimal range on iotlb iteration (git-fixes).
  • vdpa: solidrun: Fix UB bug with devres (git-fixes).
  • vfs: fix readahead(2) on block devices (bsc#1234201).
  • vmscan,migrate: fix page count imbalance on node stats when demoting pages (git-fixes).
  • watchdog: apple: Actually flush writes after requesting watchdog restart (git-fixes).
  • watchdog: mediatek: Make sure system reset gets asserted in mtkwdtrestart() (git-fixes).
  • watchdog: rti: of: honor timeout-sec property (git-fixes).
  • watchdog: rzg2l_wdt: Power on the watchdog domain in the restart handler (stable-fixes).
  • watchdog: rzg2l_wdt: Rely on the reset driver for doing proper reset (stable-fixes).
  • watchdog: rzg2l_wdt: Remove reset de-assert from probe (stable-fixes).
  • wifi: ath12k: fix atomic calls in ath12kmacopsetbitrate_mask() (stable-fixes).
  • wifi: ath5k: add PCI ID for Arcadyan devices (git-fixes).
  • wifi: ath5k: add PCI ID for SX76X (git-fixes).
  • wifi: brcmfmac: Fix oops due to NULL pointer dereference in brcmfsdiodsglist_rw() (stable-fixes).
  • wifi: cfg80211: sme: init n_channels before channels[] access (git-fixes).
  • wifi: cw1200: Fix potential NULL dereference (git-fixes).
  • wifi: ipw2x00: libipwrxany(): fix bad alignment (stable-fixes).
  • wifi: iwlwifi: mvm: Use the sync timepoint API in suspend (stable-fixes).
  • wifi: mac80211: Add non-atomic station iterator (stable-fixes).
  • wifi: mac80211: clean up 'ret' in stalinkapply_parameters() (stable-fixes).
  • wifi: mac80211: export ieee80211purgetx_queue() for drivers (stable-fixes).
  • wifi: mac80211: fix mbss changed flags corruption on 32 bit systems (stable-fixes).
  • wifi: mac80211: fix station NSS capability initialization order (git-fixes).
  • wifi: mac80211: init cnt before accessing elem in ieee80211copymbssid_beacon (git-fixes).
  • wifi: mac80211: wake the queues in case of failure in resume (stable-fixes).
  • wifi: nl80211: fix NL80211ATTRMLOLINKID off-by-one (git-fixes).
  • wifi: rtlwifi: Drastically reduce the attempts to read efuse in case of failures (stable-fixes).
  • wifi: rtw88: use ieee80211purgetx_queue() to purge TX skb (stable-fixes).
  • wifi: rtw89: check return value of ieee80211probereqget() for RNR (stable-fixes).
  • workqueue: Do not warn when cancelling WQMEMRECLAIM work from !WQMEMRECLAIM worker (bsc#1235416).
  • writeback, cgroup: switch inodes with dirty timestamps to release dying cgwbs (bsc#1234203).
  • x86,amdiommu: Replace cmpxchgdouble() (bsc#1220773).
  • x86,inteliommu: Replace cmpxchgdouble() (bsc#1220773).
  • x86/hyperv: Fix hv tsc page based sched_clock for hibernation (git-fixes).
  • x86/kexec: Reset TDX private memory on platforms with TDX erratum (jsc#PED-6143).
  • x86/kexec: do unconditional WBINVD for bare-metal in relocate_kernel() (jsc#PED-6143).
  • x86/kexec: do unconditional WBINVD for bare-metal in stopthiscpu() (jsc#PED-6143).
  • x86/static-call: Remove earlybootirqs_disabled check to fix Xen PVH dom0 (git-fixes).
  • x86/virt/tdx: Add TDX memory reset notifier to reset other private pages (jsc#PED-6143).
  • x86/virt/tdx: Exclude memory region hole within CMR as TDMR's reserved area (jsc#PED-6143).
  • x86/virt/tdx: Explicitly save/restore RBP for seamcallsavedret() (jsc#PED-6143).
  • x86/virt/tdx: Get information about TDX module and TDX-capable memory (jsc#PED-6143).
  • xfs: do not allocate COW extents when unsharing a hole (git-fixes).
  • xfs: fix sbspinoalign checks for large fsblock sizes (git-fixes).
  • xfs: remove unknown compat feature check in superblock write validation (git-fixes).
  • xfs: return from xfssymlinkverify early on V4 filesystems (git-fixes).
  • xfs: sbspinoalign is not verified (git-fixes).
  • xhci: Add usb cold attach (CAS) as a reason to resume root hub (git-fixes).
  • xhci: Allow RPM on the USB controller (1022:43f7) by default (stable-fixes).
  • xhci: fix possible null pointer deref during xhci urb enqueue (git-fixes).
References

Affected packages

SUSE:Linux Enterprise Module for Confidential Computing Technical Preview 15 SP6 / kernel-coco

Package

Name
kernel-coco
Purl
pkg:rpm/suse/kernel-coco&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Confidential%20Computing%20Technical%20Preview%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-15061.12.coco15sp6.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-coco_debug": "6.4.0-15061.12.coco15sp6.1",
            "kernel-syms-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco_debug-devel": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco-devel": "6.4.0-15061.12.coco15sp6.1",
            "reiserfs-kmp-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-source-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-devel-coco": "6.4.0-15061.12.coco15sp6.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Confidential Computing Technical Preview 15 SP6 / kernel-coco_debug

Package

Name
kernel-coco_debug
Purl
pkg:rpm/suse/kernel-coco_debug&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Confidential%20Computing%20Technical%20Preview%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-15061.12.coco15sp6.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-coco_debug": "6.4.0-15061.12.coco15sp6.1",
            "kernel-syms-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco_debug-devel": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco-devel": "6.4.0-15061.12.coco15sp6.1",
            "reiserfs-kmp-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-source-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-devel-coco": "6.4.0-15061.12.coco15sp6.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Confidential Computing Technical Preview 15 SP6 / kernel-source-coco

Package

Name
kernel-source-coco
Purl
pkg:rpm/suse/kernel-source-coco&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Confidential%20Computing%20Technical%20Preview%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-15061.12.coco15sp6.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-coco_debug": "6.4.0-15061.12.coco15sp6.1",
            "kernel-syms-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco_debug-devel": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco-devel": "6.4.0-15061.12.coco15sp6.1",
            "reiserfs-kmp-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-source-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-devel-coco": "6.4.0-15061.12.coco15sp6.1"
        }
    ]
}

SUSE:Linux Enterprise Module for Confidential Computing Technical Preview 15 SP6 / kernel-syms-coco

Package

Name
kernel-syms-coco
Purl
pkg:rpm/suse/kernel-syms-coco&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Confidential%20Computing%20Technical%20Preview%2015%20SP6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.4.0-15061.12.coco15sp6.1

Ecosystem specific

{
    "binaries": [
        {
            "kernel-coco_debug": "6.4.0-15061.12.coco15sp6.1",
            "kernel-syms-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco_debug-devel": "6.4.0-15061.12.coco15sp6.1",
            "kernel-coco-devel": "6.4.0-15061.12.coco15sp6.1",
            "reiserfs-kmp-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-source-coco": "6.4.0-15061.12.coco15sp6.1",
            "kernel-devel-coco": "6.4.0-15061.12.coco15sp6.1"
        }
    ]
}