- 
    Sun Jan 17 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.103.2.el8uek]
    
- A/A Bonding: Fix a one-byte-off kmalloc (Håkon Bugge)  [Orabug: 32380824]  
- netfilter: add and use nf_hook_slow_list() (Florian Westphal)  [Orabug: 32372530]  {CVE-2021-20177} 
- net/rds: Fix gfp_t parameter (Hans Westgaard Ry)  [Orabug: 32372158]  
- uek-rpm: Report removed symbols also during kabi check (Somasundaram Krishnasamy)  [Orabug: 32380061]  
- uek-rpm: update kABI lists for new symbol (Dan Duval)  [Orabug: 32378206]  
- A/A Bonding: Introduce selective interface name inclusion (Håkon Bugge)  [Orabug: 32350974]  
- uek-rpm: add nfs_ssc to nano_modules (Calum Mackay)  [Orabug: 32346419]  
- target: fix XCOPY NAA identifier lookup (David Disseldorp)  [Orabug: 32248035]  {CVE-2020-28374}
   
  
  - 
    Sun Jan 10 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.103.1.el8uek]
    
- mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start (Zhang Xiaohui)  [Orabug: 32349203]  {CVE-2020-36158} 
- x86/process: Mark cpu inactive before offlining (Mridula Shastry)  [Orabug: 32234812]  
- add license checking to kABI checker (Dan Duval)  [Orabug: 32355206]
   
  
  - 
    Mon Jan 04 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.103.0.el8uek]
    
- lockd: don't use interval-based rebinding over TCP (Calum Mackay)  [Orabug: 32337715]  
- tools: update header files in the tools directory (Thomas Tai)  [Orabug: 32321484]  
- perf: Fix a kABI breakage in perf_event.h (Thomas Tai)  [Orabug: 32321484]  
- perf/x86: Fix n_metric for cancelled txn (Peter Zijlstra)  [Orabug: 32321484]  
- perf/x86: Fix n_pair for cancelled txn (Peter Zijlstra)  [Orabug: 32321484]  
- perf/x86/intel: Check perf metrics feature for each CPU (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Support per-thread RDPMC TopDown metrics (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Support TopDown metrics on Ice Lake (Kan Liang)  [Orabug: 32321484]  
- perf/x86: Use event_base_rdpmc for the RDPMC userspace support (Kan Liang)  [Orabug: 32321484]  
- perf/x86: Add a macro for RDPMC offset of fixed counters (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Generic support for hardware TopDown metrics (Kan Liang)  [Orabug: 32321484]  
- perf/core: Add a new PERF_EV_CAP_SIBLING event capability (Kan Liang)  [Orabug: 32321484]  
- perf/core: Unify {pinned,flexible}_sched_in() (Peter Zijlstra)  [Orabug: 32321484]  
- perf/x86/intel: Use switch in intel_pmu_disable/enable_event (Kan Liang)  [Orabug: 32321484]  
- perf/x86: Keep LBR records unchanged in host context for guest usage (Like Xu)  [Orabug: 32321484]  
- perf/x86/intel: Fix the name of perf METRICS (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Move BTS index to 47 (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Introduce the fourth fixed counter (Kan Liang)  [Orabug: 32321484]  
- perf/x86/intel: Name the global status bit in NMI handler (Kan Liang)  [Orabug: 32321484]  
- perf/x86: Add constraint to create guest LBR event without hw counter (Like Xu)  [Orabug: 32321484]  
- perf/x86/lbr: Add interface to get LBR information (Like Xu)  [Orabug: 32321484]  
- perf/x86/core: Refactor hw->idx checks and cleanup (Like Xu)  [Orabug: 32321484]  
- perf/x86/intel: Avoid unnecessary PEBS_ENABLE MSR access in PMI (Kan Liang)  [Orabug: 32321484]  
- perf/x86: Provide stubs of KVM helpers for non-Intel CPUs (Sean Christopherson)  [Orabug: 32321484]  
- partitions/efi: Enable no warning option for the GPT warnings related to alternative header (Saeed Mirzamohammadi)  [Orabug: 32302136]  
- Revert "cpu/hotplug: avoid race between cpuset_hotplug_workfn and later hotplug" (Daniel Jordan)  [Orabug: 32295229]  
- cpuset: fix race between hotplug work and later CPU offline (Daniel Jordan)  [Orabug: 32295229]  
- uek-rpm: aarch64: update PMU configs for Altra (Dave Kleikamp)  [Orabug: 32290034]  
- driver/perf: Add PMU driver for the ARM DMC-620 memory controller (Tuan Phan)  [Orabug: 32290034]  
- perf: arm-cmn: Fix conversion specifiers for node type (Will Deacon)  [Orabug: 32290034]  
- perf: arm-cmn: Fix unsigned comparison to less than zero (Will Deacon)  [Orabug: 32290034]  
- perf: Add Arm CMN-600 PMU driver (Robin Murphy)  [Orabug: 32290034]  
- perf: Add Arm CMN-600 DT binding (Robin Murphy)  [Orabug: 32290034]  
- perf: arm_dsu: Support DSU ACPI devices (Tuan Phan)  [Orabug: 32290034]  
- arm64: acpi: Make apei_claim_sea() synchronise with APEI's irq work (James Morse)  [Orabug: 32290034]  
- ACPI: APEI: Kick the memory_failure() queue for synchronous errors (James Morse)  [Orabug: 32290034]  
- iommu/arm-smmu-v3: Don't reserve implementation defined register space (Jean-Philippe Brucker)  [Orabug: 32290034]  
- Revert "BACKPORT: perf: Add Arm CMN-600 DT binding" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "BACKPORT: WIP: perf: Add Arm CMN-600 PMU driver" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "BACKPORT: WIP: perf/arm-cmn: Add ACPI support" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: Add ARM DMC-620 PMU driver." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "BACKPORT: ACPI / APEI: Kick the memory_failure() queue for synchronous errors" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "BACKPORT: arm64: acpi: Make apei_claim_sea() synchronise with APEI's irq work" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "Perf: arm-cmn: Allow irq to be shared." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: arm_cmn: improve and make it work on 2P." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: arm_dsu: Allow IRQ to be shared among devices." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: arm_dsu: Support ACPI mode." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: arm_dmc620: Update ACPI ID." (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf: avoid breaking KABI by reusing enum" (Dave Kleikamp)  [Orabug: 32290034]  
- Revert "perf/smmuv3: Allow sharing MMIO registers with the SMMU driver" (Dave Kleikamp)  [Orabug: 32290034]  
- tty: Fix ->session locking (Jann Horn)  [Orabug: 32266677]  {CVE-2020-29660} 
- tty: Fix ->pgrp locking in tiocspgrp() (Jann Horn)  [Orabug: 32266677]  {CVE-2020-29660} 
- xen-blkback: set ring->xenblkd to NULL after kthread_stop() (Pawel Wieczorkiewicz)  [Orabug: 32260252]  {CVE-2020-29569} 
- xenbus/xenbus_backend: Disallow pending watch messages (SeongJae Park)  [Orabug: 32253409]  {CVE-2020-29568} 
- xen/xenbus: Count pending messages for each watch (SeongJae Park)  [Orabug: 32253409]  {CVE-2020-29568} 
- xen/xenbus/xen_bus_type: Support will_handle watch callback (SeongJae Park)  [Orabug: 32253409]  {CVE-2020-29568} 
- xen/xenbus: Add 'will_handle' callback support in xenbus_watch_path() (SeongJae Park)  [Orabug: 32253409]  {CVE-2020-29568} 
- xen/xenbus: Allow watches discard events before queueing (SeongJae Park)  [Orabug: 32253409]  {CVE-2020-29568} 
- KVM: x86: clflushopt should be treated as a no-op by emulation (David Edmondson)  [Orabug: 32251910]
   
  
  - 
    Sun Dec 13 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.102.0.el8uek]
    
- futex: Fix inode life-time issue (Peter Zijlstra)  [Orabug: 32233515]  {CVE-2020-14381} 
- perf/core: Fix race in the perf_mmap_close() function (Jiri Olsa)  [Orabug: 32233352]  {CVE-2020-14351} 
- intel_idle: Customize IceLake server support (Chen Yu)  [Orabug: 32218858]  
- dm crypt: Allow unaligned bio buffer lengths for skcipher devices (Sudhakar Panneerselvam)  [Orabug: 32210418]  
- vhost scsi: fix lun reset completion handling (Mike Christie)  [Orabug: 32167069]  
- vhost scsi: Add support for LUN resets. (Mike Christie)  [Orabug: 32167069]  
- vhost scsi: add lun parser helper (Mike Christie)  [Orabug: 32167069]  
- vhost scsi: fix cmd completion race (Mike Christie)  [Orabug: 32167069]  
- vhost scsi: alloc cmds per vq instead of session (Mike Christie)  [Orabug: 32167069]  
- vhost: Create accessors for virtqueues private_data (Eugenio Pérez)  [Orabug: 32167069]  
- vhost: add helper to check if a vq has been setup (Mike Christie)  [Orabug: 32167069]  
- scsi: sd: Allow user to configure command retries (Mike Christie)  [Orabug: 32167069]  
- scsi: core: Add limitless cmd retry support (Mike Christie)  [Orabug: 32167069]  
- scsi: mpt3sas: Update driver version to 36.100.00.00 (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Handle trigger page after firmware update (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Add persistent MPI trigger page (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Add persistent SCSI sense trigger page (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Add persistent Event trigger page (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Add persistent Master trigger page (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Add persistent trigger pages support (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Sync time periodically between driver and firmware (Suganath Prabu S)  [Orabug: 32242279]  
- scsi: mpt3sas: Bump driver version to 35.101.00.00 (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Add module parameter multipath_on_hba (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Handle vSES vphy object during HBA reset (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Add bypass_dirty_port_flag parameter (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Handling HBA vSES device (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Set valid PhysicalPort in SMPPassThrough (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Update hba_port objects after host reset (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Get sas_device objects using device's rphy (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Rename transport_del_phy_from_an_existing_port() (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Get device objects using sas_address & portID (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Update hba_port's sas_address & phy_mask (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Rearrange _scsih_mark_responding_sas_device() (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Allocate memory for hba_port objects (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Define hba_port structure (Sreekanth Reddy)  [Orabug: 32242279]  
- scsi: mpt3sas: Fix ioctl timeout (Suganath Prabu S)  [Orabug: 32242279]  
- icmp: randomize the global rate limiter (Eric Dumazet)  [Orabug: 32227958]  {CVE-2020-25705} 
- perf/x86/intel/uncore: Add box_offsets for free-running counters (Kan Liang)  [Orabug: 32020885]  
- perf/x86/intel/uncore: Factor out __snr_uncore_mmio_init_box (Kan Liang)  [Orabug: 32020885]  
- perf/x86/intel/uncore: Add Ice Lake server uncore support (Kan Liang)  [Orabug: 32020885]
   
  
  - 
    Wed Dec 02 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.101.2.el8uek]
    
- vt: Disable KD_FONT_OP_COPY (Daniel Vetter)  [Orabug: 32187738]  {CVE-2020-28974} 
- page_frag: Recover from memory pressure (Dongli Zhang)  [Orabug: 32177966]  
- Fonts: Support FONT_EXTRA_WORDS macros for built-in fonts (Peilin Ye)  [Orabug: 32176254]  {CVE-2020-28915} 
- fbdev, newport_con: Move FONT_EXTRA_WORDS macros into linux/font.h (Peilin Ye)  [Orabug: 32176254]  {CVE-2020-28915} 
- ocfs2: initialize ip_next_orphan (Wengang Wang)  [Orabug: 32159053]  
- net/rds: rds_ib_remove_one() accesses freed memory (Ka-Cheong Poon)  [Orabug: 32213896]  
- hv_netvsc: make recording RSS hash depend on feature flag (Stephen Hemminger)  [Orabug: 32159973]  
- hv_netvsc: record hardware hash in skb (Stephen Hemminger)  [Orabug: 32159973]  
- RDMA/umem: Move to allocate SG table from pages (Maor Gottlieb)  [Orabug: 32005752]  
- lib/scatterlist: Add support in dynamic allocation of SG table from pages (Maor Gottlieb)  [Orabug: 32005752]  
- arm64:uek/config: Enable ZONE_DMA config (Vijay Kumar)  [Orabug: 31970521]  
- Revert "arm64/dts: Serial console fix for RPi4" (Vijay Kumar)  [Orabug: 31970521]  
- uek-rpm: aarch64: enable CONFIG_ACPI_APEI_EINJ (Dave Kleikamp)  [Orabug: 32182237]  
- NFSD: fix missing refcount in nfsd4_copy by nfsd4_do_async_copy (Dai Ngo)  [Orabug: 32177992]  
- NFSD: Fix use-after-free warning when doing inter-server copy (Dai Ngo)  [Orabug: 32177992]  
- xen/events: block rogue events for some time (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: defer eoi in case of excessive number of events (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: use a common cpu hotplug hook for event channels (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: switch user event channels to lateeoi model (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/pciback: use lateeoi irq binding (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/pvcallsback: use lateeoi irq binding (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/scsiback: use lateeoi irq binding (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/netback: use lateeoi irq binding (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/blkback: use lateeoi irq binding (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: add a new "late EOI" evtchn framework (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: fix race in evtchn_fifo_unmask() (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: add a proper barrier to 2-level uevent unmasking (Juergen Gross)  [Orabug: 32177535]  {CVE-2020-27673} 
- xen/events: avoid removing an event channel while handling it (Juergen Gross)  [Orabug: 32177543]
   
  
  - 
    Fri Nov 20 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.101.1.el8uek]
    
- uek-rpm: Enable Intel Speed Select Technology interface support (Somasundaram Krishnasamy)  [Orabug: 32161425]  
- platform/x86: ISST: Increase timeout (Srinivas Pandruvada)  [Orabug: 32161425]  
- platform/x86: ISST: Fix wrong unregister type (Srinivas Pandruvada)  [Orabug: 32161425]  
- platform/x86: ISST: Allow additional core-power mailbox commands (Srinivas Pandruvada)  [Orabug: 32161425]  
- IB/mlx4: Convert rej_tmout radix-tree to XArray (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Adjust delayed work when a dup is observed (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Add support for REJ due to timeout (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Fix starvation in paravirt mux/demux (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Separate tunnel and wire bufs parameters (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Add support for MRA (Håkon Bugge)  [Orabug: 32136895]  
- IB/mlx4: Add and improve logging (Håkon Bugge)  [Orabug: 32136895]  
- perf/core: Fix a memory leak in perf_event_parse_addr_filter() (kiyin(尹亮))  [Orabug: 32131172]  {CVE-2020-25704} 
- vt: keyboard, extend func_buf_lock to readers (Jiri Slaby)  [Orabug: 32122948]  {CVE-2020-25656} {CVE-2020-25656} 
- vt: keyboard, simplify vt_kdgkbsent (Jiri Slaby)  [Orabug: 32122948]  {CVE-2020-25656} 
- tty: make FONTX ioctl use the tty pointer they were actually passed (Linus Torvalds)  [Orabug: 32122725]  {CVE-2020-25668} 
- NFSv4.2: Fix NFS4ERR_STALE error when doing inter server copy (Dai Ngo)  [Orabug: 31879682]
   
  
  - 
    Sat Nov 14 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.101.0.el8uek]
    
- hv_utils: drain the timesync packets on onchannelcallback (Vineeth Pillai)  [Orabug: 32152142]  
- hv_utils: return error if host timesysnc update is stale (Vineeth Pillai)  [Orabug: 32152142]  
- x86/cpu/intel: enable X86_FEATURE_NT_GOOD on Intel Icelakex (Ankur Arora)  [Orabug: 32143850]  
- x86/cpu/amd: enable X86_FEATURE_NT_GOOD on AMD Zen (Ankur Arora)  [Orabug: 32143850]  
- x86/cpu/intel: enable X86_FEATURE_NT_GOOD on Intel Broadwellx (Ankur Arora)  [Orabug: 32143850]  
- mm, clear_huge_page: use clear_page_uncached() for gigantic pages (Ankur Arora)  [Orabug: 32143850]  
- x86/clear_page: add clear_page_uncached() (Ankur Arora)  [Orabug: 32143850]  
- x86/asm: add clear_page_nt() (Ankur Arora)  [Orabug: 32143850]  
- perf bench: add memset_movnti() (Ankur Arora)  [Orabug: 32143850]  
- x86/asm: add memset_movnti() (Ankur Arora)  [Orabug: 32143850]  
- x86/cpuid: add X86_FEATURE_NT_GOOD (Ankur Arora)  [Orabug: 32143850]  
- kernel: add panic_on_taint (Rafael Aquini)  [Orabug: 32137996]  
- cifs: handle empty list of targets in cifs_reconnect() (Paulo Alcantara)  [Orabug: 32124750]  
- cifs: get rid of unused parameter in reconn_setup_dfs_targets() (Paulo Alcantara)  [Orabug: 32124750]  
- rds/ib: Fix: (rds: Deregister all FRWR mr with free_mr) (Manjunath Patil)  [Orabug: 32113472]  
- net/rds: Force ARP flush upon RDMA_CM_EVENT_ADDR_CHANGE (Gerd Rausch)  [Orabug: 32095959]  
- uek-rpm: aarch64: increase CONFIG_NODES_SHIFT from 3 to 6 (Dave Kleikamp)  [Orabug: 32075923]  
- rds: Restore MR use-once semantics (Håkon Bugge)  [Orabug: 31990092] [Orabug: 32072247]  
- rds: Fix incorrect cmsg status and use-after-free (Håkon Bugge)  [Orabug: 32003078] [Orabug: 32072245]  
- rds: Force ordering of {set,clear}_bit operating on m_flags (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- rds: Do not send canceled operations to the transport layer (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- rds: Introduce rds_conn_to_path helper (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "RDS: Drop the connection as part of cancel to avoid hangs" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "rds: fix warning in rds_send_drop_to()" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "rds: Use correct conn when dropping connections due to cancel" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "rds: prevent use-after-free of rds conn in rds_send_drop_to()" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "rds: Use bitmap to designate dropped connections" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- Revert "UEK6 compiler warning for /net/rds/send.c" (Håkon Bugge)  [Orabug: 31505749] [Orabug: 32072228]  
- x86/mce/therm_throt: Undo thermal polling properly on CPU offline (Thomas Gleixner)  [Orabug: 32048971]  
- x86/mce/therm_throt: Do not access uninitialized therm_work (Chuansheng Liu)  [Orabug: 32048971]  
- x86/mce/therm_throt: Mark throttle_active_work() as __maybe_unused (Arnd Bergmann)  [Orabug: 32048971]  
- x86/mce/therm_throt: Mask out read-only and reserved MSR bits (Srinivas Pandruvada)  [Orabug: 32048971]  
- x86/mce/therm_throt: Optimize notifications of thermal throttle (Srinivas Pandruvada)  [Orabug: 32048971]  
- ocfs2: fix remounting needed after setfacl command (Gang He)  [Orabug: 32042684]  
- IB/mlx4: disable CQ time stamping (aru kolappan)  [Orabug: 32042517]  
- net/rds: Refactor sendmsg ancillary data processing (Ka-Cheong Poon)  [Orabug: 32027845]  
- Bluetooth: A2MP: Fix not initializing all members (Luiz Augusto von Dentz)  [Orabug: 32021285]  {CVE-2020-12352} 
- ima: Use ima_hash_algo for collision detection in the measurement list (Roberto Sassu)  [Orabug: 31973040]  
- ima: Calculate and extend PCR with digests in ima_template_entry (Roberto Sassu)  [Orabug: 31973040]  
- ima: Allocate and initialize tfm for each PCR bank (Roberto Sassu)  [Orabug: 31973040]  
- ima: Switch to dynamically allocated buffer for template digests (Roberto Sassu)  [Orabug: 31973040]  
- ima: Store template digest directly in ima_template_entry (Roberto Sassu)  [Orabug: 31973040]  
- scsi: lpfc: Fix initial FLOGI failure due to BBSCN not supported (James Smart)  [Orabug: 31598148]  
- net/rds: Check for NULL rds_ibdev in rds_ib_rx() only if rds_ib_srq_enabled (Sharath Srinivasan)  [Orabug: 32113840]  
- A/A Bonding: Increase number and interval of GARPs sent by rdmaip (Sharath Srinivasan)  [Orabug: 32095766]  
- powercap: restrict energy meter to root access (Kanth Ghatraju)  [Orabug: 32040802]  {CVE-2020-8694} {CVE-2020-8695}
   
  
  - 
    Mon Oct 26 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.100.6.el8uek]
    
- KVM: ioapic: break infinite recursion on lazy EOI (Vitaly Kuznetsov)  [Orabug: 32066585]  {CVE-2020-27152} {CVE-2020-27152} 
- x86/mitigations: Restore paranoid checks for int3 handling (Boris Ostrovsky)  [Orabug: 31999339]  
- x86/jump_label: Patch one site at a time (Boris Ostrovsky)  [Orabug: 31999339]
   
  
  - 
    Wed Oct 21 2020 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.100.5.el8uek]
    
- uek-rpm: Fix integer test for 4k page size module signing (Dave Kleikamp)  [Orabug: 32021114]  
- uek-rpm/kernel-uek.spec: Sign modules for 4k kernel (Vijay Kumar)  [Orabug: 32021114]  
- hdlc_ppp: add range checks in ppp_cp_parse_cr() (Dan Carpenter)  [Orabug: 31989185]  {CVE-2020-25643} 
- dm crypt: add flags to optionally bypass kcryptd workqueues (Ignat Korchagin)  [Orabug: 31998688]  
- uek-rpm: Create initramfs at postinstall stage also. (Somasundaram Krishnasamy)  [Orabug: 32010302]  
- geneve: add transport ports in route lookup for geneve (Mark Gray)  [Orabug: 32013938]  {CVE-2020-25645} 
- nvmet: Disable keep-alive timer when kato is cleared to 0h (Amit Engel)  [Orabug: 31997181]  
- KVM: nVMX: stop abusing need_vmcs12_to_shadow_sync for eVMCS mapping (Vitaly Kuznetsov)  [Orabug: 31986433]  
- cpu/hotplug: avoid race between cpuset_hotplug_workfn and later hotplug (Daniel Jordan)  [Orabug: 31985221]  
- uek-rpm: Update secure boot UEK signing certificates (Brian Maly)  [Orabug: 31979626]  
- uek-rpm: Add old OL keys to the default .blacklist keyring (Eric Snowberg)  [Orabug: 31961115]  
- certs: Add ability to preload revocation certs (Eric Snowberg)  [Orabug: 31961115]  
- certs: Move load_system_certificate_list to a common function (Eric Snowberg)  [Orabug: 31961115]  
- certs: Add EFI_CERT_X509_GUID support for dbx entries (Eric Snowberg)  [Orabug: 31961115]  {CVE-2020-26541} 
- bcache: stop setting ->queuedata (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: pr_info() format clean up in bcache_device_init() (Coly Li)  [Orabug: 30210051]  
- bcache: use delayed kworker fo asynchronous devices registration (Coly Li)  [Orabug: 30210051]  
- bcache: check and adjust logical block size for backing devices (Mauricio Faria de Oliveira)  [Orabug: 30210051]  
- bcache: configure the asynchronous registertion to be experimental (Coly Li)  [Orabug: 30210051]  
- bcache: asynchronous devices registration (Coly Li)  [Orabug: 30210051]  
- bcache: Convert pr_<level> uses to a more typical style (Joe Perches)  [Orabug: 30210051]  
- bcache: remove redundant variables i and n (Colin Ian King)  [Orabug: 30210051]  
- bcache: remove a duplicate ->make_request_fn assignment (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: pass the make_request methods to blk_queue_make_request (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: remove dupplicated declaration from btree.h (Coly Li)  [Orabug: 30210051]  
- bcache: optimize barrier usage for atomic operations (Coly Li)  [Orabug: 30210051]  
- bcache: optimize barrier usage for Rmw atomic bitops (Davidlohr Bueso)  [Orabug: 30210051]  
- bcache: Use scnprintf() for avoiding potential buffer overflow (Takashi Iwai)  [Orabug: 30210051]  
- bcache: make bch_sectors_dirty_init() to be multithreaded (Coly Li)  [Orabug: 30210051]  
- bcache: make bch_btree_check() to be multithreaded (Coly Li)  [Orabug: 30210051]  
- bcache: add bcache_ prefix to btree_root() and btree() macros (Coly Li)  [Orabug: 30210051]  
- bcache: move macro btree() and btree_root() into btree.h (Coly Li)  [Orabug: 30210051]  
- bcache: remove macro nr_to_fifo_front() (Coly Li)  [Orabug: 30210051]  
- bcache: Revert "bcache: shrink btree node cache after bch_btree_check()" (Coly Li)  [Orabug: 30210051]  
- bcache: check return value of prio_read() (Coly Li)  [Orabug: 30210051]  
- bcache: reap from tail of c->btree_cache in bch_mca_scan() (Coly Li)  [Orabug: 30210051]  
- bcache: reap c->btree_cache_freeable from the tail in bch_mca_scan() (Coly Li)  [Orabug: 30210051]  
- bcache: remove member accessed from struct btree (Coly Li)  [Orabug: 30210051]  
- bcache: add code comments for state->pool in __btree_sort() (Coly Li)  [Orabug: 30210051]  
- bcache: use read_cache_page_gfp to read the superblock (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: store a pointer to the on-disk sb in the cache and cached_dev structures (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: return a pointer to the on-disk sb from read_super (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: transfer the sb_page reference to register_{bdev,cache} (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: use a separate data structure for the on-disk super block (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: don't export symbols (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: remove the extra cflags for request.o (Christoph Hellwig)  [Orabug: 30210051]  
- bcache: add idle_max_writeback_rate sysfs interface (Coly Li)  [Orabug: 30210051]  
- bcache: add code comments in bch_btree_leaf_dirty() (Coly Li)  [Orabug: 30210051]  
- bcache: add code comment bch_keylist_pop() and bch_keylist_pop_front() (Coly Li)  [Orabug: 30210051]  
- bcache: deleted code comments for dead code in bch_data_insert_keys() (Coly Li)  [Orabug: 30210051]  
- bcache: add more accurate error messages in read_super() (Coly Li)  [Orabug: 30210051]  
- bcache: fix a lost wake-up problem caused by mca_cannibalize_lock (Guoju Fang)  [Orabug: 30210051]  
- mstflint_access: Update driver code to v4.15.0-1 from Github (Itay Avraham)  [Orabug: 31965669]  
- rds/tcp: Enhance stats maintained by rds (Rao Shoaib)  [Orabug: 31933715]  
- panic: move disabling iommu to after dump_stack() (John Donnelly)  [Orabug: 31916337]  
- nbd_genl_status: null check for nla_nest_start (Navid Emamdoost)  [Orabug: 31972480]  {CVE-2019-16089} 
- vgacon: remove software scrollback support (Linus Torvalds)  [Orabug: 31914650]  {CVE-2020-14390} 
- fbcon: remove soft scrollback code (Linus Torvalds)  [Orabug: 31914650]  {CVE-2020-14390} 
- net: ethernet: mlx4: Fix memory allocation in mlx4_buddy_init() (Shung-Hsi Yu)  [Orabug: 31907969]  
- PCI: pciehp: Reduce noisiness on hot removal (Lukas Wunner)  [Orabug: 30512596]  
- kdump: update Documentation about crashkernel (Chen Zhou)  [Orabug: 31554906]  
- arm64: kdump: add memory for devices by DT property linux, usable-memory-range (Chen Zhou)  [Orabug: 31554906]  
- kdump: add threshold for the required memory (Chen Zhou)  [Orabug: 31554906]  
- arm64: kdump: reimplement crashkernel=X (Chen Zhou)  [Orabug: 31554906]  
- arm64: kdump: introduce some macroes for crash kernel reservation (Chen Zhou)  [Orabug: 31554906]  
- x86: kdump: move reserve_crashkernel[_low]() into crash_core.c (Chen Zhou)  [Orabug: 31554906]  
- x86: kdump: use macro CRASH_ADDR_LOW_MAX in functions reserve_crashkernel[_low]() (Chen Zhou)  [Orabug: 31554906]  
- x86: kdump: make the lower bound of crash kernel reservation consistent (Chen Zhou)  [Orabug: 31554906]  
- x86: kdump: move CRASH_ALIGN to 2M (Chen Zhou)  [Orabug: 31554906]  
- block: allow 'chunk_sectors' to be non-power-of-2 (Mike Snitzer)  [Orabug: 31827023]  
- block: use lcm_not_zero() when stacking chunk_sectors (Mike Snitzer)  [Orabug: 31827023]  
- dm: fix comment in dm_process_bio() (Mike Snitzer)  [Orabug: 31827023]  
- dm: fix bio splitting and its bio completion order for regular IO (Mike Snitzer)  [Orabug: 31827023]  
- block: allow for_each_bvec to support zero len bvec (Ming Lei)  [Orabug: 31955136]  {CVE-2020-25641}
   
  
  - 
    Tue Sep 29 2020 Somasundaram Krishnasamy <somasundaram.krishnasamy@oracle.com> [5.4.17-2036.100.4.el8uek]
    
- xfs: force writes to delalloc regions to unwritten (Darrick J. Wong)  [Orabug: 30787888]  
- xfs: properly serialise fallocate against AIO+DIO (Dave Chinner)  [Orabug: 31366104]  
- perf/x86/rapl: Add Ice Lake RAPL support (Thomas Tai)  [Orabug: 31766610]  
- xfs: attach dquots and reserve quota blocks during unwritten conversion (Darrick J. Wong)  [Orabug: 31785972]  
- netfilter: ctnetlink: add a range check for l3/l4 protonum (Will McVicker)  [Orabug: 31872853]  {CVE-2020-25211} 
- net/rds: Extract dest qp num for displaying in rds-info (Praveen Kumar Kannoju)  [Orabug: 31880140]  
- uek-rpm: streamline 4konly build (Dave Kleikamp)  [Orabug: 31891770]  
- bnxt: correct warning: unused variable: 'rc' (John Donnelly)  [Orabug: 31907548]  
- i40e: Correct warning: 'aq_ret' may be used uninitialized, (John Donnelly)  [Orabug: 31907631]  
- uek-rpm: Add ovmapi.ko to uek6 nano_modules (Joe Jin)  [Orabug: 31908852]  
- uek-rpm: config: Enable OVM API (Joe Jin)  [Orabug: 31908852]  
- uek-rpm: Fix kernel-ueknano depmod warnings vhost_iotlb regmap-i2c (Vijayendra Suman)  [Orabug: 31916879]  
- kprobes: Fix compiler warning for !CONFIG_KPROBES_ON_FTRACE (Muchun Song)  [Orabug: 31920526]  
- scsi: page warning: 'page' may be used uninitialized. (John Donnelly)  [Orabug: 31920671]  
- x86/speculation/taa: Add TAA_MITIGATION_IDLE mode (Patrick Colp)  [Orabug: 31921884]  
- oracleasm: Access d_bdev before dropping inode (Stephen Brennan)  [Orabug: 31927355]  
- iommu/amd: Restore IRTE.RemapEn bit for amd_iommu_activate_guest_mode (Suravee Suthikulpanit)  [Orabug: 31931368]  
- iommu/amd: Fix potential @entry null deref (Joao Martins)  [Orabug: 31931368]  
- iommu/amd: Restore IRTE.RemapEn bit after programming IRTE (Suravee Suthikulpanit)  [Orabug: 31931368]