- 
    Sun Mar 28 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.105.3.el8uek]
    
- bpf, selftests: Fix up some test_verifier cases for unprivileged (Piotr Krysiuk)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- bpf: Add sanity check for upper ptr_limit (Piotr Krysiuk)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- bpf: Simplify alu_limit masking for pointer arithmetic (Piotr Krysiuk)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- bpf: Fix off-by-one for area size in creating mask to left (Piotr Krysiuk)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- bpf: Prohibit alu ops for pointer types not defining ptr_limit (Piotr Krysiuk)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- selftests/bpf: Test access to bpf map pointer (Andrey Ignatov)  [Orabug: 32656762]  {CVE-2020-27170} {CVE-2020-27171} 
- KVM: SVM: Disable AVIC before setting V_IRQ (Suravee Suthikulpanit)  [Orabug: 32603570]  
- KVM: Introduce kvm_make_all_cpus_request_except() (Suravee Suthikulpanit)  [Orabug: 32603570]  
- KVM: X86: correct meaningless kvm_apicv_activated() check (Paolo Bonzini)  [Orabug: 32603570]  
- KVM: Disable preemption in kvm_get_running_vcpu() (Marc Zyngier)  [Orabug: 32603570]  
- KVM: Move running VCPU from ARM to common code (Paolo Bonzini)  [Orabug: 32603570]  
- RDMA/core: Fix corrupted SL on passive side (Håkon Bugge)  [Orabug: 32662966]  
- fuse: fix live lock in fuse_iget() (Amir Goldstein)  [Orabug: 32669271]  {CVE-2021-28950} 
- fuse: fix bad inode (Miklos Szeredi)  [Orabug: 32669271]  {CVE-2021-28950} 
- bpf: Fix truncation handling for mod32 dst reg wrt zero (Daniel Borkmann)  [Orabug: 32673814]  {CVE-2021-3444} 
- bpf: Fix 32 bit src register truncation on div/mod (Daniel Borkmann)  [Orabug: 32673814]  {CVE-2021-3444}
   
  
  - 
    Mon Mar 22 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.105.2.el8uek]
    
- video: hyperv_fb: Fix the mmap() regression for v5.4.y and older (Dexuan Cui)  [Orabug: 32651462]  
- video: hyperv_fb: Fix the cache type when mapping the VRAM (Dexuan Cui)  [Orabug: 32651462]  
- Xen/gnttab: handle p2m update errors on a per-slot basis (Jan Beulich)  [Orabug: 32651474]  {CVE-2021-28038} 
- KVM: kvmclock: Fix vCPUs > 64 can't be online/hotpluged (Wanpeng Li)  [Orabug: 32641679]  
- xen/netback: avoid race in xenvif_rx_ring_slots_available() (Juergen Gross)  [Orabug: 32640121]  
- uek-rpm: ol7: aarch64: add CONFIG_ACPI_HOTPLUG_MEMORY (Mihai Carabas)  [Orabug: 32632928]  
- mm: support memblock alloc on the exact node for sparse_buffer_init() (Yunfeng Ye)  [Orabug: 32627001]  
- mm/sparse.c: do not waste pre allocated memmap space (Michal Hocko)  [Orabug: 32627001]  
- mm/sparse: consistently do not zero memmap (Vincent Whitchurch)  [Orabug: 32627001]
   
  
  - 
    Sun Mar 14 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.105.1.el8uek]
    
- mm/vmscan: fix infinite loop in drop_slab_node (Chunxin Zang)  [Orabug: 32620156]  
- scsi: iscsi: Verify lengths on passthrough PDUs (Chris Leech)  [Orabug: 32603379]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365} 
- scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE (Chris Leech)  [Orabug: 32603379]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365} 
- scsi: iscsi: Report connection state in sysfs (Gabriel Krisman Bertazi)  [Orabug: 32603379]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365} 
- sysfs: Add sysfs_emit and sysfs_emit_at to format sysfs output (Joe Perches)  [Orabug: 32603379]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365} 
- scsi: iscsi: Restrict sessions and handles to admin capabilities (Lee Duncan)  [Orabug: 32603379]  {CVE-2021-27363} {CVE-2021-27364} {CVE-2021-27365} 
- drm/nouveau: bail out of nouveau_channel_new if channel init fails (Frantisek Hrbata)  [Orabug: 32591560]  {CVE-2020-25639} 
- uek-rpm: add opbmc to nano-kernel (Eric Snowberg)  [Orabug: 32555676]
   
  
  - 
    Sun Mar 07 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.105.0.el8uek]
    
- scsi: scsi_dh_alua: Avoid crash during alua_bus_detach() (Hannes Reinecke)  [Orabug: 32589381]  
- hsr: use netdev_err() instead of WARN_ONCE() (Taehee Yoo)  [Orabug: 32576071]  
- PCI: hotplug: Add module parameter to allow user control of LEDs (Thomas Tai)  [Orabug: 32556982]  
- net/rds: increase 1MB MR pool size for RDS (Manjunath Patil)   
- block/diskstats: accumulate all per-cpu counters in one pass (Konstantin Khlebnikov)  [Orabug: 32531557]  
- scsi: libfc: Fix for double free() (Javed Hasan)  [Orabug: 32508285]  
- x86/platform/uv: Fix UV4 hub revision adjustment (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Fix copied UV5 output archtype (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Drop last traces of uv_flush_tlb_others (Jiri Slaby)  [Orabug: 32520489]  
- x86/tlb/uv: Add a forward declaration for struct flush_tlb_info (Borislav Petkov)  [Orabug: 32520489]  
- x86/platform/uv: Recognize UV5 hubless system identifier (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Remove spaces from OEM IDs (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Fix missing OEM_TABLE_ID (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update Copyrights to conform to HPE standards (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update for UV5 NMI MMR changes (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update UV5 TSC checking (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update node present counting (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update UV5 MMR references in UV GRU (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Adjust GAM MMR references affected by UV5 updates (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update MMIOH references based on new UV5 MMRs (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Add and decode Arch Type in UVsystab (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Add UV5 direct references (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Update UV MMRs for UV5 (Mike Travis)  [Orabug: 32520489]  
- drivers/misc/sgi-xp: Adjust references in UV kernel modules (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Remove SCIR MMR references for UV systems (Mike Travis)  [Orabug: 32520489]  
- x86/platform/uv: Remove UV BAU TLB Shootdown Handler (Mike Travis)  [Orabug: 32520489]  
- x86/apic/uv: Avoid unused variable warning (Arnd Bergmann)  [Orabug: 32520489]  
- x86/platform/uv: Remove vestigial mention of UV1 platform from bios header (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from uv (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for uv1 platform from uv_hub (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from uv_bau (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from uv_mmrs (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from x2apic_uv_x (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from uv_tlb (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove support for UV1 platform from uv_time (steve.wahl@hpe.com)  [Orabug: 32520489]  
- x86/platform/uv: Remove the unused _uv_cpu_blade_processor_id() macro (Christoph Hellwig)  [Orabug: 32520489]  
- x86/platform/uv: Unexport uv_apicid_hibits (Christoph Hellwig)  [Orabug: 32520489]  
- x86/platform/uv: Remove _uv_hub_info_check() (Christoph Hellwig)  [Orabug: 32520489]  
- x86/platform/uv: Simplify uv_send_IPI_one() (Christoph Hellwig)  [Orabug: 32520489]  
- x86/platform/uv: Remove the UV*_HUB_IS_SUPPORTED macros (Christoph Hellwig)  [Orabug: 32520489]  
- x86/platform/uv: Remove the uv_partition_coherence_id() macro (Christoph Hellwig)  [Orabug: 32520489]  
- x86/apic/uv: Remove code for unused distributed GRU mode (Steve Wahl)  [Orabug: 32520489]  
- perf/x86/intel/uncore: With > 8 nodes, get pci bus die id from NUMA info (Steve Wahl)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Store the logical die id instead of the physical die id. (Steve Wahl)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Generic support for the PCI sub driver (Kan Liang)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Factor out uncore_pci_pmu_unregister() (Kan Liang)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Factor out uncore_pci_pmu_register() (Kan Liang)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Factor out uncore_pci_find_dev_pmu() (Kan Liang)  [Orabug: 32520463]  
- perf/x86/intel/uncore: Factor out uncore_pci_get_dev_die_info() (Kan Liang)  [Orabug: 32520463]  
- cper,edac,efi: Memory Error Record: bank group/address and chip id (Alex Kluver)  [Orabug: 32520436]  
- edac,ghes,cper: Add Row Extension to Memory Error Record (Alex Kluver)  [Orabug: 32520436]
   
  
  - 
    Mon Mar 01 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.104.4.el8uek]
    
- KVM: arm64: guest context in x18 instead of x29 (Mihai Carabas)  [Orabug: 32545182]
   
  
  - 
    Sun Feb 21 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.104.3.el8uek]
    
- config: enable CONFIG_MLX5_MPFS (Brian Maly)  [Orabug: 32249042]  
- net: Fix bridge enslavement failure (Ido Schimmel)  [Orabug: 32503298]  
- inet: do not call sublist_rcv on empty list (Florian Westphal)  [Orabug: 32512814]  
- KVM: arm64: pmu: Don't mark a counter as chained if the odd one is disabled (Eric Auger)  [Orabug: 32499188]  
- random: wire /dev/random with a DRBG instance (Saeed Mirzamohammadi)  [Orabug: 32522087]  
- crypto: drbg - always try to free Jitter RNG instance (Stephan Müller)  [Orabug: 32522087]  
- crypto: drbg - always seeded with SP800-90B compliant noise source (Stephan Müller)  [Orabug: 32522087]  
- crypto: jitter - SP800-90B compliance (Stephan Müller)  [Orabug: 32522087]  
- crypto: jitter - add header to fix buildwarnings (Ben Dooks)  [Orabug: 32522087]  
- crypto: jitter - fix comments (Alexander E. Patrakov)  [Orabug: 32522087]  
- xen-blkback: fix error handling in xen_blkbk_map() (Jan Beulich)  [Orabug: 32492109]  {CVE-2021-26930} 
- xen-scsiback: don't "handle" error by BUG() (Jan Beulich)  [Orabug: 32492101]  {CVE-2021-26931} 
- xen-netback: don't "handle" error by BUG() (Jan Beulich)  [Orabug: 32492101]  {CVE-2021-26931} 
- xen-blkback: don't "handle" error by BUG() (Jan Beulich)  [Orabug: 32492101]  {CVE-2021-26931} 
- Xen/gntdev: correct error checking in gntdev_map_grant_pages() (Jan Beulich)  [Orabug: 32492093]  {CVE-2021-26932} 
- Xen/gntdev: correct dev_bus_addr handling in gntdev_map_grant_pages() (Jan Beulich)  [Orabug: 32492093]  {CVE-2021-26932} 
- Xen/x86: also check kernel mapping in set_foreign_p2m_mapping() (Jan Beulich)  [Orabug: 32492093]  {CVE-2021-26932} 
- Xen/x86: don't bail early from clear_foreign_p2m_mapping() (Jan Beulich)  [Orabug: 32492093]  {CVE-2021-26932}
   
  
  - 
    Fri Feb 12 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.104.2.el8uek]
    
- tcp: fix to update snd_wl1 in bulk receiver fast path (Neal Cardwell)  [Orabug: 32498822]  
- selinux: allow reading labels before policy is loaded (Jonathan Lebon)  [Orabug: 32492277]  
- selinux: allow labeling before policy is loaded (Jonathan Lebon)  [Orabug: 32492277]  
- KVM: SVM: Initialize prev_ga_tag before use (Suravee Suthikulpanit)  [Orabug: 32478549]  
- tools/power turbostat: Support additional CPU model numbers (Len Brown)  [Orabug: 32422451]  
- x86/cpu: Add Lakefield, Alder Lake and Rocket Lake models to the to Intel CPU family (Tony Luck)  [Orabug: 32422451]  
- x86/cpu: Add Sapphire Rapids CPU model number (Tony Luck)  [Orabug: 32422451]  
- tools/power turbostat: Support Tiger Lake (Chen Yu)  [Orabug: 32422451]  
- uek-rpm: config-aarch64: enable MEMORY HOTREMOVE (Mihai Carabas)  [Orabug: 32353851]  
- arm64/mm/hotplug: Ensure early memory sections are all online (Anshuman Khandual)  [Orabug: 32353851]  
- arm64/mm/hotplug: Enable MEM_OFFLINE event handling (Anshuman Khandual)  [Orabug: 32353851]  
- arm64/mm/hotplug: Register boot memory hot remove notifier earlier (Anshuman Khandual)  [Orabug: 32353851]  
- arm64/mm: Enable memory hot remove (Anshuman Khandual)  [Orabug: 32353851]  
- arm64/mm: Hold memory hotplug lock while walking for kernel page table dump (Anshuman Khandual)  [Orabug: 32353851]  
- KVM: arm64: Save/restore sp_el0 as part of __guest_enter (Marc Zyngier)  [Orabug: 32171445]  
- net/mlx4_en: Handle TX error CQE (Moshe Shemesh)  [Orabug: 32492969]  
- net/mlx4_en: Avoid scheduling restart task if it is already running (Moshe Shemesh)  [Orabug: 32492969]
   
  
  - 
    Sun Feb 07 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.104.1.el8uek]
    
- vhost scsi: alloc vhost_scsi with kvzalloc() to avoid delay (Dongli Zhang)  [Orabug: 32471677]  
- HID: hid-input: fix stylus battery reporting (Dmitry Torokhov)  [Orabug: 32464784]  {CVE-2020-0431} 
- nbd: freeze the queue while we're adding connections (Josef Bacik)  [Orabug: 32447285]  {CVE-2021-3348} 
- futex: Handle faults correctly for PI futexes (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Simplify fixup_pi_state_owner() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Use pi_state_update_owner() in put_pi_state() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- rtmutex: Remove unused argument from rt_mutex_proxy_unlock() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Don't enable IRQs unconditionally in put_pi_state() (Dan Carpenter)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Provide and use pi_state_update_owner() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Replace pointless printk in fixup_owner() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- futex: Ensure the correct return value from futex_lock_pi() (Thomas Gleixner)  [Orabug: 32447187]  {CVE-2021-3347} 
- uek-rpm: Enable Oracle Pilot BMC module (Eric Snowberg)  [Orabug: 32422662]  
- hwmon: Add a new Oracle Pilot BMC driver (Eric Snowberg)  [Orabug: 32422662]  
- arm64: Reserve only 256M on RPi for crashkernel=auto (Vijay Kumar)  [Orabug: 32301026]
   
  
  - 
    Sun Jan 31 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.104.0.el8uek]
    
- Revert "rds: Deregister all FRWR mr with free_mr" (aru kolappan)  [Orabug: 32426610]  
- thermal: intel_pch_thermal: Add PCI ids for Lewisburg PCH. (Andres Freund)  [Orabug: 32424705]  
- thermal: intel: intel_pch_thermal: Add Cannon Lake Low Power PCH support (Sumeet Pawnikar)  [Orabug: 32424705]  
- thermal: intel: intel_pch_thermal: Add Comet Lake (CML) platform support (Gayatri Kammela)  [Orabug: 32424705]  
- nfs: Fix security label length not being reset (Jeffrey Mitchell)  [Orabug: 32350989]  
- ovl: check permission to open real file (Miklos Szeredi)  [Orabug: 32046372]  {CVE-2020-16120} 
- ovl: verify permissions in ovl_path_open() (Miklos Szeredi)  [Orabug: 32046372]  {CVE-2020-16120} 
- ovl: switch to mounter creds in readdir (Miklos Szeredi)  [Orabug: 32046372]  {CVE-2020-16120} 
- ovl: pass correct flags for opening real directory (Miklos Szeredi)  [Orabug: 32046372]  
- A/A Bonding: Add synchronized bundle failback (Gerd Rausch)  [Orabug: 32381883]
   
  
  - 
    Sun Jan 17 2021 Jack Vogel <jack.vogel@oracle.com> [5.4.17-2036.103.2.el8uek]
    
- A/A Bonding: Fix a one-byte-off kmalloc (Håkon Bugge)  [Orabug: 32380824]  
- netfilter: add and use nf_hook_slow_list() (Florian Westphal)  [Orabug: 32372530]  {CVE-2021-20177} 
- net/rds: Fix gfp_t parameter (Hans Westgaard Ry)  [Orabug: 32372158]  
- uek-rpm: Report removed symbols also during kabi check (Somasundaram Krishnasamy)  [Orabug: 32380061]  
- uek-rpm: update kABI lists for new symbol (Dan Duval)  [Orabug: 32378206]  
- A/A Bonding: Introduce selective interface name inclusion (Håkon Bugge)  [Orabug: 32350974]  
- uek-rpm: add nfs_ssc to nano_modules (Calum Mackay)  [Orabug: 32346419]  
- target: fix XCOPY NAA identifier lookup (David Disseldorp)  [Orabug: 32248035]  {CVE-2020-28374}