-
Wed Jan 28 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-200.67.23.el9uek]
- scsi: lpfc: Rework lpfc_sli4_fcf_rr_next_index_get() (Yury Norov (NVIDIA)) [Orabug: 38886419]
- scsi: lpfc: Update lpfc version to 14.4.0.12 (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Add capability to register Platform Name ID to fabric (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Allow support for BB credit recovery in point-to-point topology (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Fix reusing an ndlp that is marked NLP_DROPPED during FLOGI (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Modify kref handling for Fabric Controller ndlps (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Fix leaked ndlp krefs when in point-to-point topology (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Ensure unregistration of rpis for received PLOGIs (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Remove redundant NULL ptr assignment in lpfc_els_free_iocb() (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Revise discovery related function headers and comments (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Update various NPIV diagnostic log messaging (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Copyright updates for 14.4.0.11 patches (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Update lpfc version to 14.4.0.11 (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Abort outstanding ELS WQEs regardless of if rmmod is in progress (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Remove unused member variables in struct lpfc_hba and lpfc_vport (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Use int type to store negative error codes (Qianfeng Rong) [Orabug: 38886419]
- scsi: fc: Avoid -Wflex-array-member-not-at-end warnings (Gustavo A. R. Silva) [Orabug: 38886419]
- scsi: lpfc: use min() to improve code (Qianfeng Rong) [Orabug: 38886419]
- PCI/ERR: Remove remnants of .link_reset() callback (Lukas Wunner) [Orabug: 38886419]
- scsi: lpfc: Fix wrong function reference in a comment (Jean Delvare) [Orabug: 38886419]
- scsi: lpfc: Copyright updates for 14.4.0.10 patches (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Update lpfc version to 14.4.0.10 (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Modify end-of-life adapters' model descriptions (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Revise CQ_CREATE_SET mailbox bitfield definitions (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Move clearing of HBA_SETUP flag to before lpfc_sli4_queue_unset (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Relocate clearing initial phba flags from link up to link down hdlr (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Simplify error handling for failed lpfc_get_sli4_parameters cmd (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Early return out of FDMI cmpl for locally rejected statuses (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Skip RSCN processing when FC_UNLOADING flag is set (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Update debugfs trace ring initialization messages (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Revise logging format for failed CT MIB requests (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Copyright updates for 14.4.0.9 patches (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Update lpfc version to 14.4.0.9 (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Create lpfc_vmid_info sysfs entry (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Prevent failure to reregister with NVMe transport after PRLI retry (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Restart eratt_poll timer if HBA_SETUP flag still unset (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Notify FC transport of rport disappearance during PCI fcn reset (Justin Tee) [Orabug: 38886419]
- scsi: lpfc: Use secs_to_jiffies() instead of msecs_to_jiffies() (Thorsten Blum) [Orabug: 38886419]
- scsi: lpfc: Fix spelling mistake 'Toplogy' -> 'Topology' (Colin Ian King) [Orabug: 38886419]
- scsi: lpfc: Convert timeouts to secs_to_jiffies() (Easwar Hariharan) [Orabug: 38886419]
- jiffies: Define secs_to_jiffies() (Easwar Hariharan) [Orabug: 38886419]
- arista-sonic/amax31732: Fix build error form probe (Vijay Kumar) [Orabug: 38526339]
- Build Arista SONIC SCD driver (Vijay Kumar) [Orabug: 38526339]
- Import Arista SONiC driver (src → drivers/platform/arista-sonic) (Vijay Kumar) [Orabug: 38526339]
- uek-rpm/kernel-uek.spec: Build uek kernel for ONOS (Vijay Kumar) [Orabug: 38526339]
- Add config to support ONOS platforms (Vijay Kumar) [Orabug: 38526339]
- support reading mdio config from ACPI tables (Madhava Reddy Siddareddygari) [Orabug: 38526339]
- mtd: spi nor core driver update to support ACPI table match (Madhava Reddy Siddareddygari) [Orabug: 38526339]
- hwmon: (pmbus) Add support for MPS Multi-phase mp2855 controller (Vadim Pasternak) [Orabug: 38526339]
- fix os crash caused by optoe when class switch (philo) [Orabug: 38526339]
- mtd: Add support for reading partition data from ACPI (Madhava Reddy Siddareddygari) [Orabug: 38526339]
- i2c: asf: Introduce MCTP support over ASF controller (amlakshm) [Orabug: 38526339]
- Add Nvidia-specific wrapper function for the psample driver (Vadym Hlushko) [Orabug: 38526339]
- tg3: fix broadcom NIC 57766 staying down issue (Boyang Yu) [Orabug: 38526339]
- Add 2 more parameter for tg3.c. (Roy Lee) [Orabug: 38526339]
- Dynamic write timeout support for optoe driver (Mihir Patel) [Orabug: 38526339]
- Update optoe support for Linux 6.1 (Saikrishna Arcot) [Orabug: 38526339]
- Read ID register to find pageable bit in optoe driver (Mihir Patel) [Orabug: 38526339]
- A2h access for optoe2 even when DDM is unsupported (Jemston Fernando) [Orabug: 38526339]
- Dynamic write_max support for optoe driver (Prince George) [Orabug: 38526339]
- drivers/misc/eeprom: Support QSFP-DD (CMIS) type devices (Don Bollinger) [Orabug: 38526339]
- eeprom/optoe: Correct a panic inducing defect which is triggered on a read (or write) (Don Bollinger) [Orabug: 38526339]
- drivers/misc/eeprom: Improve EOF handling (Don Bollinger) [Orabug: 38526339]
- drivers/misc/eeprom: Add optoe driver (SFP/QSFP EEPROM Read/Write) (Don Bollinger) [Orabug: 38526339]
- Add 'delay' module param to the driver. (Cumulus Networks) [Orabug: 38526339]
- Fix calculation of page_len in sff_8436_read_write function (yurypm) [Orabug: 38526339]
- replace memory_accessor with nvmem_device_read (Guohan Lu) [Orabug: 38526339]
- extend driver to plug into the NVMEM framework (Guohan Lu) [Orabug: 38526339]
- Update SFF8436 EEPROM driver (Shuotian Cheng) [Orabug: 38526339]
- Driver to expose eeprom information including DOM for QSFPs (Cumulus Networks) [Orabug: 38526339]
- amd/mmc: mmcblk not working on some AMD platforms (Vijay Kumar) [Orabug: 38526339]
- Release prefecth memory resources assigned by the BIOS (Baptiste Covolato) [Orabug: 38526339]
- Fix kernel hangs seen and easily reproducable using ethtool -t (Samuel Angebault) [Orabug: 38526339]
- Recover the MAC with the one previously saved by Arista Aboot (byu343) [Orabug: 38526339]
- Force DMA accesses to be done in the 4G range due to a SB800 limitation (Samuel Angebault) [Orabug: 38526339]
- uek-rpm: Change TRUSTED_KEYS from m to y on aarch64-embedded config (Dave Kleikamp) [Orabug: 38894100]
- crypto: octeontx2: fix buffer size to include enc key length + nonce (Amit Singh Tomar) [Orabug: 38894100]
- uek-rpm: T93: Build mvl_mhu module into kernel (Dave Kleikamp) [Orabug: 38894100]
- arm64: errata: Add missing sentinel (Geetha sowjanya) [Orabug: 38894100]
- uek-rpm: T93: build Octeon info driver (Dave Kleikamp) [Orabug: 38850588]
- drivers: soc: marvell: octeontx_info: Fix parsing of two fdt properties (Felix Manlunas) [Orabug: 38850588]
- drives: soc: marvell: Using struct proc_ops instead of file_operations (Piyush Malgujar) [Orabug: 38850588]
- drives: soc: marvell: Update octtx_info to display sdk-version (Chandrakala Chavva) [Orabug: 38850588]
- drives: soc: marvell: Fix issues reported by static code analysis (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: update to support to print reset counters (Selvam Venkatachalam) [Orabug: 38850588]
- drives: soc: marvell: Remove unnecessary warnings about reset counters (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: support to print reset counters (Selvam Venkatachalam) [Orabug: 38850588]
- drives: soc: marvell: Fixes conversion for BOARD-MAC-ADDRESS-ID-NUM in octeontx_info (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: Fixes unnecessary logging from octeontx info driver (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: Fix OcteonTX info driver (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: Adds MAC addressess overview to board info (Wojciech Bartczak) [Orabug: 38850588]
- drives: soc: marvell: Display version information for flash components (Aaron Williams) [Orabug: 38850588]
- drives: soc: marvell: publish no of macs in octeontx_info node (Sujeet Baranwal) [Orabug: 38850588]
- drives: soc: marvell: Alter ways of mac address parsing (Sujeet Baranwal) [Orabug: 38850588]
- drives: soc: marvell: Board info logic reorg (Sujeet Baranwal) [Orabug: 38850588]
- drives: soc: marvell: Board information made available (Sujeet Baranwal) [Orabug: 38850588]
- drivers: soc: Adds common Marvell OcteonTX header for SMC calls (sdonelli) [Orabug: 38850588]
- uek-rpm: T93: Build pci console driver (Dave Kleikamp) [Orabug: 38850588]
- Change struct octeontx2_pcie_console_nexus (Ray Asbury) [Orabug: 38850588]
- drivers: marvell: Fix klockwork issues (Suman Ghosh) [Orabug: 38850588]
- drivers: soc: marvell: Add PCI console driver (Rick Farrington) [Orabug: 38850588]
- uek-rpm: T93: add hw_access module (Dave Kleikamp) [Orabug: 38850588]
- soc: marvell: hw-access: add mapping for TAD (Pavan Nikhilesh) [Orabug: 38850588]
- soc: marvell: hw_access: add ioctl to get link info (Gowthami Thiagarajan) [Orabug: 38850588]
- soc: marvell: hw_access: add mapping for DPI PF BAR0 (Ankur Dwivedi) [Orabug: 38850588]
- soc: marvell: hw_access: add mapping for DPI VF BAR0 (Ankur Dwivedi) [Orabug: 38850588]
- drivers: marvell: Fix klockwork issues (Suman Ghosh) [Orabug: 38850588]
- soc: marvell: hw_access: add mapping for mcs registers (Ankur Dwivedi) [Orabug: 38850588]
- soc: marvell: hw-access: register access via debugfs (Sumit Gaur) [Orabug: 38850588]
- soc: marvell: hw_access: fix pci resource leak (Harman Kalra) [Orabug: 38850588]
- soc: marvell: hw_access: fix csr mapping range (Gowthami Thiagarajan) [Orabug: 38850588]
- soc: marvell: hw_access: Extend available ranges (Jakub Palider) [Orabug: 38850588]
- soc: marvell: hw_access: add support to read aura/pool context (Ashwin Sekhar T K) [Orabug: 38850588]
- soc: marvell: hw_access: get cgx info (Gowthami Thiagarajan) [Orabug: 38850588]
- soc: marvell: hw_access: add hw context reading support (Gowthami Thiagarajan) [Orabug: 38850588]
- soc: marvell: Driver to access and modify device CSRs. (Gowthami Thiagarajan) [Orabug: 38850588]
- octeontx2-af: extend npa context reading capability (Ashwin Sekhar T K) [Orabug: 38850588]
- arm64: Add workaround for Cavium erratum 36890 (Andrew Pinski) [Orabug: 38850588]
- arm64: errata: Extend Errata-38627 workaround to new affected parts (Bharat Bhushan) [Orabug: 38850588]
- KVM: arm64: Extend timer errata-38627 to kvm (Bharat Bhushan) [Orabug: 38850588]
- clocksource: Add Marvell Errata-38627 workaround (Bharat Bhushan) [Orabug: 38850588]
- uek-rpm: T93: build MHU Mailbox (Dave Kleikamp) [Orabug: 38850588]
- mailbox: mvl-mhu: ioremap error handling fixed (Damian Eppel) [Orabug: 38850588]
- mailbox: add OcteonTX2 MHU mailbox driver (Wojciech Bartczak) [Orabug: 38850588]
- crypto: octeontx2: Hide fortified memcpy warning (Dave Kleikamp) [Orabug: 38850588]
- crypto: octeontx2: fix aes_cbc with 6.1 kernel (Srujana Challa) [Orabug: 38850588]
- fips: exclude crypto_simd from FIPS module for aarch64 (Saeed Mirzamohammadi) [Orabug: 38862017]
- fips: clean up redundant Makefile (Saeed Mirzamohammadi) [Orabug: 38820413]
- uek-rpm: make simd built-in for FIPS (Saeed Mirzamohammadi) [Orabug: 38820413]
- crypto: convert crypto_simd to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38820413]
- xfs: enable online fsck by default in Kconfig (Darrick J. Wong) [Orabug: 38313145]
- xfs: remove some EXPERIMENTAL warnings (Darrick J. Wong) [Orabug: 38313145]
- sched/fair: add opt-in knob to use runnable_avg in wakeup fast path (Daniel Jordan) [Orabug: 38404539]
- uek-rpm: Enable CONFIG_MEM_ALLOC_PROFILING (Vishal Moola) [Orabug: 38405199]
- rhashtable: Add allocation tagging hooks (Vishal Moola) [Orabug: 38405199]
- Revert "rhashtable: plumb through alloc tag" (Vishal Moola) [Orabug: 38405199]
- UEK: kABI: Use kABI padding in task_struct (Vishal Moola) [Orabug: 38405199]
- memcg: multi-memcg percpu charge cache (Shakeel Butt) [Orabug: 38472779]
- rds: Free all frags when rds_ib_recv_cache_put() fails (Hans Westgaard Ry) [Orabug: 38492232]
- uek-rpm: BF3/BF4: Enable CONFIG_PINCTRL_MLXBF3 and CONFIG_LAN743X (Thomas Tai) [Orabug: 38784578]
- uek: kabi: update FIPS kABI files (Saeed Mirzamohammadi) [Orabug: 38764635]
- uek-rpm: Add reservations for the symbols used by fips140 module (Harshit Mogalapalli) [Orabug: 38764635]
- uek: add FIPS kABI checking in spec files (Saeed Mirzamohammadi) [Orabug: 38764635]
- Revert "uek: kabi: update kABI files for FIPS symbols" (Saeed Mirzamohammadi) [Orabug: 38764635]
- crypto: ensure genksyms updates CRC for SCK keys (Saeed Mirzamohammadi) [Orabug: 38764635]
- uek: kabi: clean up extra debug files (Saeed Mirzamohammadi) [Orabug: 38764635]
- crypto: tcrypt: use resolved driver info for self-tests (Saeed Mirzamohammadi) [Orabug: 38764635]
- crypto: convert scompress/acompress to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38764635]
- fips: don't export aesgcm functions from the FIPS module (Vegard Nossum) [Orabug: 38764635]
- fips: don't export gf128mul functions from the FIPS module (Vegard Nossum) [Orabug: 38764635]
- uek-rpm: Change TRUSTED_KEYS from m to y on aarch64 configs (Harshit Mogalapalli) [Orabug: 38266493]
- dm mpath: enable DM_TARGET_ATOMIC_WRITES (John Garry) [Orabug: 38686264]
- dm-crypt: enable DM_TARGET_ATOMIC_WRITES (Mikulas Patocka) [Orabug: 38748184]
- dm: test for REQ_ATOMIC in dm_accept_partial_bio() (Mikulas Patocka) [Orabug: 38748184]
- NFSD: Add a Kconfig setting to enable delegated timestamps (Chuck Lever) [Orabug: 38696904]
- scsi: target: Add atomic support to target_core_iblock (Mike Christie) [Orabug: 38675526]
- scsi: target: Add WRITE_ATOMIC_16 support to RSOC (Mike Christie) [Orabug: 38675526]
- scsi: target: Report atomic values in INQUIRY (Mike Christie) [Orabug: 38675526]
- scsi: target: Add WRITE_ATOMIC_16 handler (Mike Christie) [Orabug: 38675526]
- scsi: target: Add helper to set up atomic values from block_device (Mike Christie) [Orabug: 38675526]
- scsi: target: Add atomic se_device fields (Mike Christie) [Orabug: 38675526]
- scsi: target: Rename target_configure_unmap_from_queue() (Mike Christie) [Orabug: 38675526]
- KVM: x86/mmu: Treat TDP MMU faults as spurious if access is already allowed (Sean Christopherson) [Orabug: 38609061]
- uek-rpm: BF3: Rework BF3 configuration file to resolve boot error with FIPS mode enabled (Thomas Tai) [Orabug: 38605739]
- uek-rpm: Fix packaging fips140.ko.debug files into kernel-uek (Harshit Mogalapalli) [Orabug: 38592440]
- crypto/jitterentropy: do not hand-define core kernel types (Nick Alcock) [Orabug: 38589527]
- net/mlx5: DR, use the right action structs for STEv3 (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: Restore missing trace event when enabling vport QoS (Carolina Jubran) [Orabug: 37984345]
- net/mlx5: Fix vport QoS cleanup on error (Carolina Jubran) [Orabug: 37984345]
- net/mlx5e: add missing cpu_to_node to kvzalloc_node in mlx5e_open_xdpredirect_sq (Stanislav Fomichev) [Orabug: 37984345]
- platform/mellanox: mlxreg-io: use sysfs_emit() instead of sprintf() (Ai Chao) [Orabug: 37984345]
- platform/mellanox: mlxreg-hotplug: use sysfs_emit() instead of sprintf() (Ai Chao) [Orabug: 37984345]
- mlxsw: Do not store Tx header length as driver parameter (Amit Cohen) [Orabug: 37984345]
- mlxsw: Move Tx header handling to PCI driver (Amit Cohen) [Orabug: 37984345]
- mlxsw: Define Tx header fields in txheader.h (Amit Cohen) [Orabug: 37984345]
- mlxsw: Initialize txhdr_info according to PTP operations (Amit Cohen) [Orabug: 37984345]
- mlxsw: Add mlxsw_txhdr_info structure (Amit Cohen) [Orabug: 37984345]
- net/mlx5: fix unintentional sign extension on shift of dest_attr->vport.vhca_id (Colin Ian King) [Orabug: 37984345]
- net/mlx5e: CT: Offload connections with hardware steering rules (Cosmin Ratiu) [Orabug: 37984345]
- net/mlx5e: CT: Make mlx5_ct_fs_smfs_ct_validate_flow_rule reusable (Cosmin Ratiu) [Orabug: 37984345]
- net/mlx5e: CT: Add initial support for Hardware Steering (Cosmin Ratiu) [Orabug: 37984345]
- net/mlx5: HWS, rework the check if matcher size can be increased (Yevgeny Kliteynik) [Orabug: 37984345]
- selftests/net/forwarding: teamd command not found (Alessandro Zanni) [Orabug: 37984345]
- net/mlx5: HWS, update flow - support through bigger action RTC (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, update flow - remove the use of dual RTCs (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: fs, add HWS to steering mode options (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS get capabilities (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, set create match definer to not supported by HWS (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add support for dest vport HWS action (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS fte API functions (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add dest table cache (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, manage flow counters HWS action sharing by refcount (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS modify header API function (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS packet reformat API function (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS actions pool (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS flow group API functions (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS flow table API functions (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: fs, add HWS root namespace functions (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: SHAMPO: Introduce new SHAMPO specific HCA caps (Saeed Mahameed) [Orabug: 37984345]
- net/mlx5: Add support for MRTCQ register (Jianbo Liu) [Orabug: 37984345]
- netdevsim: add queue management API support (Jakub Kicinski) [Orabug: 37984345]
- netdevsim: add queue alloc/free helpers (Jakub Kicinski) [Orabug: 37984345]
- netdevsim: allocate rqs individually (Jakub Kicinski) [Orabug: 37984345]
- netdevsim: support NAPI config (Jakub Kicinski) [Orabug: 37984345]
- net/mlx5e: Update TX ESN context for IPSec hardware offload (Jianbo Liu) [Orabug: 37984345]
- xfrm: Support ESN context update to hardware for TX (Jianbo Liu) [Orabug: 37984345]
- net/mlx5: HWS, set timeout on polling for completion (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, support flow sampler destination (Vlad Dogaru) [Orabug: 37984345]
- net/mlx5: HWS, use the right size when writing arg data (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, handle returned error value in pool alloc (Vlad Dogaru) [Orabug: 37984345]
- net/mlx5: HWS, separate SQ that HWS uses from the usual traffic SQs (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, num_of_rules counter on matcher should be atomic (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, reduce memory consumption of a matcher struct (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, remove wrong deletion of the miss table list (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, add error message on failure to move rules (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, simplify allocations as we support only FDB (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, denote how refcounts are protected (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, remove implementation of unused FW commands (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, remove the use of duplicated structs (Yevgeny Kliteynik) [Orabug: 37984345]
- RDMA/mlx5: Fix link status down event for MPV (Patrisious Haddad) [Orabug: 37984345]
- RDMA/mlx5: Handle link status event only for LAG device (Yuyu Li) [Orabug: 37984345]
- RDMA/mlx4: Support report_port_event() ops (Yuyu Li) [Orabug: 37984345]
- RDMA/core: Support link status events dispatching (Yuyu Li) [Orabug: 37984345]
- RDMA/core: Add ib_query_netdev_port() to query netdev port by IB device. (Yuyu Li) [Orabug: 37984345]
- RDMA/core: Remove unused ibdev_printk (Dr. David Alan Gilbert) [Orabug: 37984345]
- net/mlx5: Remove PTM support log message (Carolina Jubran) [Orabug: 37984345]
- net/mlx5: DR, add support for ConnectX-8 steering (Itamar Gozlan) [Orabug: 37984345]
- net/mlx5: DR, expand SWS STE callbacks and consolidate common structs (Itamar Gozlan) [Orabug: 37984345]
- net/mlx5: HWS, do not initialize native API queues (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: HWS, no need to expose mlx5hws_send_queues_open/close (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: fs, retry insertion to hash table on EBUSY (Mark Bloch) [Orabug: 37984345]
- net/mlx5: fs, add mlx5_fs_pool API (Moshe Shemesh) [Orabug: 37984345]
- net/mlx5: LAG, Support LAG over Multi-Host NICs (Rongwei Liu) [Orabug: 37984345]
- net/mlx5: LAG, Refactor lag logic (Rongwei Liu) [Orabug: 37984345]
- char:ipmi: Fix a not-used variable on a non-ACPI system (Corey Minyard) [Orabug: 37984345]
- net/mlx5e: Report rx_discards_phy via rx_dropped (Yafang Shao) [Orabug: 37984345]
- mlxsw: Switch to napi_gro_receive() (Ido Schimmel) [Orabug: 37984345]
- net/mlx5: Add device cap abs_native_port_num (Rongwei Liu) [Orabug: 37984345]
- mlxsw: spectrum_flower: Do not allow mixing sample and mirror actions (Ido Schimmel) [Orabug: 37984345]
- RDMA/mlx4: Use DMA iterator to write MTT (Leon Romanovsky) [Orabug: 37984345]
- RDMA/mlx4: Use ib_umem_find_best_pgsz() to calculate MTT size (Leon Romanovsky) [Orabug: 37984345]
- net/mlx5: qos: Add ifc support for cross-esw scheduling (Cosmin Ratiu) [Orabug: 37984345]
- net/mlx5: Add support for new scheduling elements (Carolina Jubran) [Orabug: 37984345]
- net/mlx5: Add ConnectX-8 device to ifc (Yevgeny Kliteynik) [Orabug: 37984345]
- net/mlx5: ifc: Reorganize mlx5_ifc_flow_table_context_bits (Cosmin Ratiu) [Orabug: 37984345]
- RDMA/nldev: Add IB device and net device rename events (Chiara Meiohas) [Orabug: 37984345]
- net/mlx5: Fix lockdep assertion on sync reset unload event (Moshe Shemesh) [Orabug: 37944844]
- net-shapers: implement cap validation in the core (Paolo Abeni) [Orabug: 37944844]
- net: shaper: implement introspection support (Paolo Abeni) [Orabug: 37944844]
- netlink: spec: add shaper introspection support (Paolo Abeni) [Orabug: 37944844]
- net-shapers: implement shaper cleanup on queue deletion (Paolo Abeni) [Orabug: 37944844]
- net-shapers: implement delete support for NODE scope shaper (Paolo Abeni) [Orabug: 37944844]
- net-shapers: implement NL group operation (Paolo Abeni) [Orabug: 37944844]
- net-shapers: implement NL set and delete operations (Paolo Abeni) [Orabug: 37944844]
- net-shapers: implement NL get operation (Paolo Abeni) [Orabug: 37944844]
- netlink: spec: add shaper YAML spec (Paolo Abeni) [Orabug: 37944844]
- genetlink: extend info user-storage to match NL cb ctx (Paolo Abeni) [Orabug: 37944844]
- EDAC/bluefield: Don't use bluefield_edac_readl() result on error (David Thompson) [Orabug: 37944844]
- xsk: Bring back busy polling support in XDP_COPY (Samiullah Khawaja) [Orabug: 37944844]
- net: page_pool: don't try to stash the napi id (Jakub Kicinski) [Orabug: 37944844]
- xsk: Bring back busy polling support (Stanislav Fomichev) [Orabug: 37944844]
- net: Make napi_hash_lock irq safe (Joe Damato) [Orabug: 37944844]
- virtchnl: fix m68k build. (Paolo Abeni) [Orabug: 37944844]
- net/mlx5: fs, Add support for RDMA RX steering over IB link layer (Patrisious Haddad) [Orabug: 37944844]
- RDMA/mlx5: Extend ODP statistics with operation count (Chiara Meiohas) [Orabug: 37944844]
- Fix a potential abuse of seq_printf() format string in drivers (David Wang) [Orabug: 37944844]
- i2c: Switch back to struct platform_driver::remove() (Uwe Kleine-König) [Orabug: 37944844]
- net/mlx5e: SHAMPO, Rework header allocation loop (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5e: SHAMPO, Drop info array (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5e: SHAMPO, Change frag page setup order during allocation (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5e: SHAMPO, Fix page_index calculation inconsistency (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5e: SHAMPO, Simplify UMR allocation for headers (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5: Make vport QoS enablement more flexible for future extensions (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Integrate esw_qos_vport_enable logic into rate operations (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Generalize scheduling element operations (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Refactor scheduling element configuration bitmasks (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Generalize max_rate and min_rate setting for nodes (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Simplify QoS normalization by removing error handling (Carolina Jubran) [Orabug: 37944844]
- mlx5/core: deduplicate {mlx5_,}eq_update_ci() (Caleb Sander Mateos) [Orabug: 37944844]
- mlx5/core: relax memory barrier in eq_update_ci() (Caleb Sander Mateos) [Orabug: 37944844]
- netdevsim: add more hw_features (Sabrina Dubroca) [Orabug: 37944844]
- mlx5/core: Schedule EQ comp tasklet only if necessary (Caleb Sander Mateos) [Orabug: 37944844]
- mlx5_en: use read sequence for gettimex64 (Vadim Fedorenko) [Orabug: 37944844]
- RDMA/mlx5: Add implementation for ufile_hw_cleanup device operation (Patrisious Haddad) [Orabug: 37944844]
- RDMA/core: Move ib_uverbs_file struct to uverbs_types.h (Patrisious Haddad) [Orabug: 37944844]
- RDMA/core: Add device ufile cleanup operation (Patrisious Haddad) [Orabug: 37944844]
- RDMA/mlx5: Support querying per-plane IB PortCounters (Mark Zhang) [Orabug: 37944844]
- RDMA/mlx5: Support OOO RX WQE consumption (Edward Srouji) [Orabug: 37944844]
- net/mlx5: Introduce data placement ordering bits (Edward Srouji) [Orabug: 37944844]
- net/mlx5e: do not create xdp_redirect for non-uplink rep (William Tu) [Orabug: 37944844]
- net/mlx5e: move XDP_REDIRECT sq to dynamic allocation (William Tu) [Orabug: 37944844]
- net/mlx5: HWS, renamed the files in accordance with naming convention (Yevgeny Kliteynik) [Orabug: 37944844]
- net/mlx5: Rework esw qos domain init and cleanup (Cosmin Ratiu) [Orabug: 37944844]
- dim: pass dim_sample to net_dim() by reference (Caleb Sander Mateos) [Orabug: 37944844]
- dim: make dim_calc_stats() inputs const pointers (Caleb Sander Mateos) [Orabug: 37944844]
- net/mlx5: DPLL, Add clock quality level op implementation (Jiri Pirko) [Orabug: 37944844]
- dpll: add clock quality level attribute and op (Jiri Pirko) [Orabug: 37944844]
- mlx5: simplify EQ interrupt polling logic (Caleb Sander Mateos) [Orabug: 37944844]
- mlx5: fix typo in "mlx5_cqwq_get_cqe_enahnced_comp" (Caleb Sander Mateos) [Orabug: 37944844]
- net/mlx5e: Update features on ring size change (Dragos Tatulea) [Orabug: 37944844]
- net/mlx5e: Update features on MTU change (Dragos Tatulea) [Orabug: 37944844]
- netdevsim: macsec: pad u64 to correct length in logs (Ales Nezbeda) [Orabug: 37944844]
- EDAC/bluefield: Use Arm SMC for EMI access on BlueField-2 (David Thompson) [Orabug: 37944844]
- selftests: mlxsw: devlink_trap_police: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: qos_max_descriptors: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: qos_ets_strict: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: qos_mc_aware: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- selftests: ETS: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- selftests: RED: Use defer for test cleanup (Petr Machata) [Orabug: 37944844]
- net/mlx5: fs, rename modify header struct member action (Moshe Shemesh) [Orabug: 37944844]
- net/mlx5: fs, rename packet reformat struct member action (Moshe Shemesh) [Orabug: 37944844]
- net/mlx5: Only create VEPA flow table when in VEPA mode (Benjamin Poirier) [Orabug: 37944844]
- net/mlx5: Add sync reset drop mode support (Moshe Shemesh) [Orabug: 37944844]
- net/mlx5: Generalize QoS operations for nodes and vports (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Simplify QoS scheduling element configuration (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Remove vport QoS enabled flag (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Refactor vport QoS to use scheduling node structure (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Refactor vport scheduling element creation function (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Introduce node struct and rename group terminology to node (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Rename vport QoS group reference to parent (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Restrict domain list insertion to root TSAR ancestors (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Add parent group support in rate group structure (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Introduce node type to rate group structure (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Refactor QoS group scheduling element creation (Carolina Jubran) [Orabug: 37944844]
- platform/x86: Switch back to struct platform_driver::remove() (Uwe Kleine-König) [Orabug: 37944844]
- mlx4: Add support for persistent NAPI config to RX CQs (Joe Damato) [Orabug: 37944844]
- mlx5: Add support for persistent NAPI config (Joe Damato) [Orabug: 37944844]
- net: napi: Add napi_config (Joe Damato) [Orabug: 37944844]
- net: napi: Make gro_flush_timeout per-NAPI (Joe Damato) [Orabug: 37944844]
- net: napi: Make napi_defer_hard_irqs per-NAPI (Joe Damato) [Orabug: 37944844]
- mmc: Switch back to struct platform_driver::remove() (Uwe Kleine-König) [Orabug: 37944844]
- virtchnl: support queue rate limit and quanta size configuration (Wenjun Wu) [Orabug: 37944844]
- net/mlx5: Add support check for TSAR types in QoS scheduling (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: Unify QoS element type checks across NIC and E-Switch (Carolina Jubran) [Orabug: 37944844]
- net/mlx5: qos: Refactor locking to a qos domain mutex (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Store rate groups in a qos domain (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Rename rate group 'list' as 'parent_entry' (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Add an explicit 'dev' to vport trace calls (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Store the eswitch in a mlx5_esw_rate_group (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Drop 'esw' param from vport qos functions (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Always create group0 (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Maintain rate group vport members in a list (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Refactor and document bw_share calculation (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Consistently name vport vars as 'vport' (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Rename vport 'tsar' into 'sched_elem'. (Cosmin Ratiu) [Orabug: 37944844]
- net/mlx5: qos: Flesh out element_attributes in mlx5_ifc.h (Cosmin Ratiu) [Orabug: 37944844]
- selftests: mlxsw: sch_red_core: Lower TBF rate (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: sch_red_core: Send more packets for drop tests (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: sch_red_core: Sleep before querying queue depth (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: sch_red_core: Increase backlog size tolerance (Petr Machata) [Orabug: 37944844]
- selftests: mlxsw: sch_red_ets: Increase required backlog (Petr Machata) [Orabug: 37944844]
- ipv4: remove fib_info_lock (Eric Dumazet) [Orabug: 37944844]
- ipv4: use rcu in ip_fib_check_default() (Eric Dumazet) [Orabug: 37944844]
- ipv4: remove fib_devindex_hashfn() (Eric Dumazet) [Orabug: 37944844]
- net: ethernet: Switch back to struct platform_driver::remove() (Uwe Kleine-König) [Orabug: 37944844]
- selftests: mlxsw: rtnetlink: Use devlink_reload() API (Amit Cohen) [Orabug: 37944844]
- ipv4: avoid quadratic behavior in FIB insertion of common address (Alexandre Ferrieux) [Orabug: 37944844]
- Revert "net/mlx5: Fix lockdep assertion on sync reset unload event" (Qing Huang) [Orabug: 37944844]
- uek-rpm: BF3: build BF3 smartnic kernel (Thomas Tai) [Orabug: 38551182]
- uek-rpm: BF3: add denylist.txt.S.emb3 and modules.yaml.S.emb3 (Thomas Tai) [Orabug: 38551182]
- uek-rpm: BF3: Add config file for BF3 smartnic (Thomas Tai) [Orabug: 38551182]
- uek: kabi: update kABI files for FIPS symbols (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek: update spec files to include FIPS symvers (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek-rpm: Enable CRYPTO_FIPS140_EXTMOD in the spec file (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert all DECLARE_CRYPTO_API[0-6] macros to DECLARE_CRYPTO_API (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek-rpm: set new FIPS module name (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips/fips140-glue.c: fips_name/fips_version lengths (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/testmgr.c: fix crash in __alg_test_hash (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek-rpm: build FIPS module in kernel-uek.spec (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek-rpm: enable ECDH and ECC configs (Saeed Mirzamohammadi) [Orabug: 38493695]
- uek-rpm: make cryptd built-in to the kernel (Saeed Mirzamohammadi) [Orabug: 38493695]
- scripts/extract-fips: add script to extract FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add zstd to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add lzo-rle to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add lzo to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add lz4hc to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add lz4 to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add crct10dif-ce to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add crct10dif-generic to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add crc32c-generic to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add crc32-generic to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add xxhash64-generic to FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/testmgr: mark xxhash64 as non-cryptographic (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: scripts and glue for FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/fips140: add FIPS 140 module loader (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add ecdh to fips module to fix the TPM issue (Saeed Mirzamohammadi) [Orabug: 38493695]
- arch/arm64/crypto: fix module_cpu_feature_match (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/x86: CRYPTO_MODULE_DEVICE_TABLE (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: change module_init/exit to crypto_module_init/exit (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add lib crypto algos to fips module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add crypto/crypto_null.c to module (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: add sig.c to fips module (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert geniv to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert skcipher to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert rng to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert lskcipher to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert kpp to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert cipher to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert akcipher to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert aead to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- fips: adjust two arm64 symbols (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert asymmetric_keys to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/sha256_generic: embed lib/crypto/sha256.c (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/sha1_generic: embed lib/crypto/sha1.c (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert rsa/rsa_helper to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert ecc to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert aes_generic to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert dh/dh_helper to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert sha256_generic/sha512_generic to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert sha3_generic to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert sha1_generic to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert testmgr to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert hash/shash/ahash to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert cryptd to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert algapi.c to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: convert api.c to CRYPTO_API() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/aes_generic: embed lib/crypto/aes.c (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: only apply crypto API fixups for load_module_mem() (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: avoid modifying struct module (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: add a mechanism for pluggable crypto APIs (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: Kconfig - add CRYPTO_FIPS140_EXTMOD (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: keep initial module reference with MODULE_INIT_MEM (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: fix init_module02 and finit_module02 (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: add MODULE_INIT_MEM flag (Saeed Mirzamohammadi) [Orabug: 38493695]
- module: add load_module_mem() helper (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: make sure crypto_alg_tested() finds the correct algorithm (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: testmgr: check that we got the expected alg (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: alg - add CRYPTO_ALG_FIPS_PROVIDED flag (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: pass struct crypto_alg directly to alg_test() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/testmgr: add helper to alg_test() (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/algapi.c: disable crypto_check_module_sig() for FIPS module (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/algapi: don't init algapi in fips mode (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/testmgr: mark non-crypto algorithms (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/testmgr: make fips_allowed a bit set (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/crypto_user: don't overwrite net->crypto_nlsk on error (Saeed Mirzamohammadi) [Orabug: 38493695]
- certs/system_keyring: export restrict_link_by_builtin_*trusted (Saeed Mirzamohammadi) [Orabug: 38493695]
- lib/crypto/mpi/mpi-bit.c: export mpi_set_bit (Saeed Mirzamohammadi) [Orabug: 38493695]
- arch/x86/boot/string.h: override memmove()/strlen() (Saeed Mirzamohammadi) [Orabug: 38493695]
- libcrc32c: panic on failure (Saeed Mirzamohammadi) [Orabug: 38493695]
- testmgr: standardize alg/driver output in logs (Saeed Mirzamohammadi) [Orabug: 38493695]
- KEYS: trusted: eat -ENOENT from the crypto API (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: hide crypto_default_rng (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto: api - Disallow identical template names (Saeed Mirzamohammadi) [Orabug: 38493695]
- crypto/jitterentropy.c: use kernel's ARRAY_SIZE (Saeed Mirzamohammadi) [Orabug: 38493695]
- params: use arch_initcall (Saeed Mirzamohammadi) [Orabug: 38493695]
- Revert "Revert "crypto: shash - avoid comparing pointers to exported functions under CFI"" (Saeed Mirzamohammadi) [Orabug: 38493695]
- Revert "extract-vmlinux: Check for uncompressed image as fallback" (Saeed Mirzamohammadi) [Orabug: 38493695]
- cifs: Do not query WSL EAs for native SMB symlink (Pali Rohár) [Orabug: 37978666]
- Fix SMB311 posix special file creation to servers which do not advertise reparse support (Steve French) [Orabug: 37978666]
- smb: client: fix native SMB symlink traversal (Paulo Alcantara) [Orabug: 37978666]
- smb: client: fix regression with native SMB symlinks (Paulo Alcantara) [Orabug: 37978666]
- cifs: Fix support for WSL-style symlinks (Pali Rohár) [Orabug: 37978666]
- cifs: Check if server supports reparse points before using them (Pali Rohár) [Orabug: 37978666]
- cifs: Fix parsing native symlinks directory/file type (Pali Rohár) [Orabug: 37978666]
- cifs: Add support for creating WSL-style symlinks (Pali Rohár) [Orabug: 37978666]
- cifs: Add support for creating NFS-style symlinks (Pali Rohár) [Orabug: 37978666]
- cifs: Add support for creating native Windows sockets (Pali Rohár) [Orabug: 37978666]
- cifs: Add mount option -o reparse=none (Pali Rohár) [Orabug: 37978666]
- cifs: Add mount option -o symlink= for choosing symlink create type (Pali Rohár) [Orabug: 37978666]
- cifs: Fix creating and resolving absolute NT-style symlinks (Pali Rohár) [Orabug: 37978666]
- cifs: Simplify reparse point check in cifs_query_path_info() function (Pali Rohár) [Orabug: 37978666]
- cifs: Rename struct reparse_posix_data to reparse_nfs_data_buffer and move to common/smb2pdu.h (Pali Rohár) [Orabug: 37978666]
- cifs: Remove struct reparse_posix_data from struct cifs_open_info_data (Pali Rohár) [Orabug: 37978666]
- cifs: Remove unicode parameter from parse_reparse_point() function (Pali Rohár) [Orabug: 37978666]
- cifs: Change translation of STATUS_NOT_A_REPARSE_POINT to -ENODATA (Pali Rohár) [Orabug: 37978666]
- cifs: Remove duplicate struct reparse_symlink_data and SYMLINK_FLAG_RELATIVE (Pali Rohár) [Orabug: 37978666]
- smb3: add missing tracepoint for querying wsl EAs (Steve French) [Orabug: 37978666]
- smb3: fix compiler warning in reparse code (Steve French) [Orabug: 37978666]
- cifs: Add support for parsing WSL-style symlinks (Pali Rohár) [Orabug: 37978666]
- cifs: Validate content of native symlink (Pali Rohár) [Orabug: 37978666]
- uek-rpm: Enable CONFIG_INTEL_TDX_HOST (Liam Merwick) [Orabug: 38359602]
- KVM: TDX: Fix uninitialized error code for __tdx_bringup() (Tony Lindgren) [Orabug: 38359602]
- KVM: TDX: Reject fully in-kernel irqchip if EOIs are protected, i.e. for TDX VMs (Sagi Shahar) [Orabug: 38359602]
- KVM: TDX: Do not retry locally when the retry is caused by invalid memslot (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Select TDX's KVM_GENERIC_xxx dependencies iff CONFIG_KVM_INTEL_TDX=y (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Remove redundant __GFP_ZERO (Qianfeng Rong) [Orabug: 38359602]
- KVM: TDX: Move TDX hardware setup from main.c to tdx.c (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Use kvm_arch_vcpu.host_debugctl to restore the host's DEBUGCTL (Sean Christopherson) [Orabug: 38359602]
- x86/virt/tdx: Use precalculated TDVPR page physical address (Kai Huang) [Orabug: 38359602]
- KVM/TDX: Explicitly do WBINVD when no more TDX SEAMCALLs (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Update the kexec section in the TDX documentation (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Remove the !KEXEC_CORE dependency (Kai Huang) [Orabug: 38359602]
- x86/kexec: Disable kexec/kdump on platforms with TDX partial write erratum (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Mark memory cache state incoherent when making SEAMCALL (Kai Huang) [Orabug: 38359602]
- x86/sme: Use percpu boolean to control WBINVD during kexec (Kai Huang) [Orabug: 38359602]
- x86/kexec: Consolidate relocate_kernel() function parameters (Kai Huang) [Orabug: 38359602]
- x86/tdx: Skip clearing reclaimed pages unless X86_BUG_TDX_PW_MCE is present (Adrian Hunter) [Orabug: 38359602]
- x86/tdx: Tidy reset_pamt functions (Adrian Hunter) [Orabug: 38359602]
- x86/tdx: Eliminate duplicate code in tdx_clear_page() (Adrian Hunter) [Orabug: 38359602]
- x86/sev: Disable ftrace branch profiling in SEV startup code (Ard Biesheuvel) [Orabug: 38359602]
- x86/kexec: Use typedef for relocate_kernel_fn function prototype (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Cope with relocate_kernel() not being at the start of the page (David Woodhouse) [Orabug: 38359602]
- kexec_core: Add and update comments regarding the KEXEC_JUMP flow (Rafael J. Wysocki) [Orabug: 38359602]
- x86/kexec: Mark machine_kexec() with __nocfi (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Fix location of relocate_kernel with -ffunction-sections (Nathan Chancellor) [Orabug: 38359602]
- x86/kexec: Fix stack and handling of re-entry point for ::preserve_context (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Use correct swap page in swap_pages function (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Ensure preserve_context flag is set on return to kernel (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Disable global pages before writing to control page (David Woodhouse) [Orabug: 38359602]
- x86/sev: Don't hang but terminate on failure to remap SVSM CA (Ard Biesheuvel) [Orabug: 38359602]
- x86/sev: Avoid WARN()s and panic()s in early boot code (Ard Biesheuvel) [Orabug: 38359602]
- x86/sev: Disable UBSAN on SEV code that may execute very early (Ard Biesheuvel) [Orabug: 38359602]
- x86/boot/64: Fix spurious undefined reference when CONFIG_X86_5LEVEL=n, on GCC-12 (Ard Biesheuvel) [Orabug: 38359602]
- x86/kexec: Mark relocate_kernel page as ROX instead of RWX (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Clean up register usage in relocate_kernel() (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Eliminate writes through kernel mapping of relocate_kernel page (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Drop page_list argument from relocate_kernel() (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Add data section to relocate_kernel (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Move relocate_kernel to kernel .data section (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Invoke copy of relocate_kernel() instead of the original (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Copy control page into place in machine_kexec_prepare() (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Only swap pages for ::preserve_context mode (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Use named labels in swap_pages in relocate_kernel_64.S (David Woodhouse) [Orabug: 38359602]
- x86/kexec: Clean up and document register use in relocate_kernel_64.S (David Woodhouse) [Orabug: 38359602]
- KVM: TDX: Report supported optional TDVMCALLs in TDX capabilities (Paolo Bonzini) [Orabug: 38359602]
- KVM: TDX: Exit to userspace for SetupEventNotifyInterrupt (Paolo Bonzini) [Orabug: 38359602]
- KVM: TDX: Exit to userspace for GetTdVmCallInfo (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Handle TDG.VP.VMCALL<GetQuote> (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Add new TDVMCALL status code for unsupported subfuncs (Binbin Wu) [Orabug: 38359602]
- KVM: x86/mmu: Reject direct bits in gpa passed to KVM_PRE_FAULT_MEMORY (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86/mmu: Embed direct bits into gpa for KVM_PRE_FAULT_MEMORY (Paolo Bonzini) [Orabug: 38359602]
- KVM: VMX: use __always_inline for is_td_vcpu and is_td (Edward Adam Davis) [Orabug: 38359602]
- x86/tdx: mark tdh_vp_enter() as __flatten (Paolo Bonzini) [Orabug: 38359602]
- KVM: VMX: Clean up and macrofy x86_ops (Vishal Verma) [Orabug: 38359602]
- KVM: VMX: Define a VMX glue macro for kvm_complete_insn_gp() (Vishal Verma) [Orabug: 38359602]
- KVM: VMX: Move vt_apicv_pre_state_restore() to posted_intr.c and tweak name (Vishal Verma) [Orabug: 38359602]
- KVM: x86: Revert kvm_x86_ops.mem_enc_ioctl() back to an OPTIONAL hook (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Do not use kvm_rip_read() unconditionally for KVM_PROFILING (Adrian Hunter) [Orabug: 38359602]
- KVM: x86: Do not use kvm_rip_read() unconditionally in KVM tracepoints (Adrian Hunter) [Orabug: 38359602]
- x86/tdx: Emit warning if IRQs are enabled during HLT #VE handling (Vishal Annapurve) [Orabug: 38359602]
- x86/paravirt: Move halt paravirt calls under CONFIG_PARAVIRT (Kirill A. Shutemov) [Orabug: 38359602]
- Documentation/virt/kvm: Document on Trust Domain Extensions (TDX) (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Make TDX VM type supported (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: KVM: TDX: Always honor guest PAT on TDX enabled guests (Yan Zhao) [Orabug: 38359602]
- KVM: x86: remove shadow_memtype_mask (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86: Introduce Intel specific quirk KVM_X86_QUIRK_IGNORE_GUEST_PAT (Yan Zhao) [Orabug: 38359602]
- KVM: x86: Quirk initialization of feature MSRs to KVM's max configuration (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Co-locate initialization of feature MSRs in kvm_arch_vcpu_create() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Introduce supported_quirks to block disabling quirks (Yan Zhao) [Orabug: 38359602]
- KVM: x86: Allow vendor code to disable quirks (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86: do not allow re-enabling quirks (Paolo Bonzini) [Orabug: 38359602]
- KVM: TDX: Enable guest access to MTRR MSRs (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Add a method to ignore hypercall patching (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Ignore setting up mce (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add methods to ignore accesses to TSC (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add methods to ignore VMX preemption timer (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add method to ignore guest instruction emulation (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add methods to ignore accesses to CPU state (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Bypass register cache when querying CPL from kvm_sched_out() (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Handle TDG.VP.VMCALL<GetTdVmCallInfo> hypercall (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Enable guest access to LMCE related MSRs (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle TDX PV rdmsr/wrmsr hypercall (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Implement callbacks for MSR operations (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Move KVM_MAX_MCE_BANKS to header file (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle TDX PV HLT hypercall (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle TDX PV CPUID hypercall (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Kick off vCPUs when SEAMCALL is busy during TD page removal (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Retry locally in TDX EPT violation handler on RET_PF_RETRY (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Detect unexpected SEPT violations due to pending SPTEs (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Handle EPT violation/misconfig exit (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle EXIT_REASON_OTHER_SMI (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle EXCEPTION_NMI and EXTERNAL_INTERRUPT (Isaku Yamahata) [Orabug: 38359602]
- KVM: VMX: Add a helper for NMI handling (Sean Christopherson) [Orabug: 38359602]
- KVM: VMX: Move emulation_required to struct vcpu_vt (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Add methods to ignore virtual apic related operation (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Force APICv active for TDX guest (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Enforce KVM_IRQCHIP_SPLIT for TDX guests (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Always block INIT/SIPI (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle SMI request as !CONFIG_KVM_SMM (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Implement methods to inject NMI (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Wait lapic expire when timer IRQ was injected (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Assume timer IRQ was injected if APIC state is protected (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Implement non-NMI interrupt injection (Isaku Yamahata) [Orabug: 38359602]
- KVM: VMX: Move posted interrupt delivery code to common header (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Disable PI wakeup for IPIv (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add support for find pending IRQ in a protected local APIC (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Handle TDX PV MMIO hypercall (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Handle TDX PV port I/O hypercall (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle TDG.VP.VMCALL<ReportFatalError> (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Handle TDG.VP.VMCALL<MapGPA> (Binbin Wu) [Orabug: 38359602]
- KVM: TDX: Handle KVM hypercall with TDG.VP.VMCALL (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add a place holder for handler of TDX hypercalls (TDG.VP.VMCALL) (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add a place holder to handle TDX VM exit (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Move pv_unhalted check out of kvm_vcpu_has_events() (Binbin Wu) [Orabug: 38359602]
- KVM: x86: Have ____kvm_emulate_hypercall() read the GPRs (Binbin Wu) [Orabug: 38359602]
- KVM: x86: Add a switch_db_regs flag to handle TDX's auto-switched behavior (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Save and restore IA32_DEBUGCTL (Adrian Hunter) [Orabug: 38359602]
- KVM: TDX: Disable support for TSX and WAITPKG (Adrian Hunter) [Orabug: 38359602]
- KVM: TDX: restore user ret MSRs (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Allow to update cached values in kvm_user_return_msrs w/o wrmsr (Chao Gao) [Orabug: 38359602]
- KVM: TDX: restore host xsave state when exit from the guest TD (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: vcpu_run: save/restore host state(host kernel gs) (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Implement TDX vcpu enter/exit path (Isaku Yamahata) [Orabug: 38359602]
- KVM: VMX: Move common fields of struct vcpu_{vmx,tdx} to a struct (Binbin Wu) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrapper to enter/exit TDX guest (Kai Huang) [Orabug: 38359602]
- KVM: TDX: Handle SEPT zap error due to page add error in premap (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Skip updating CPU dirty logging request for TDs (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86: Make cpu_dirty_log_size a per-VM value (Yan Zhao) [Orabug: 38359602]
- KVM: VMX: read the PML log in the same order as it was written (Maxim Levitsky) [Orabug: 38359602]
- KVM: VMX: refactor PML terminology (Maxim Levitsky) [Orabug: 38359602]
- KVM: x86: Remove hwapic_irr_update() from kvm_x86_ops (Chao Gao) [Orabug: 38359602]
- KVM: x86/mmu: Add parameter "kvm" to kvm_mmu_page_ad_need_write_protect() (Yan Zhao) [Orabug: 38359602]
- KVM: Add parameter "kvm" to kvm_cpu_dirty_log_size() and its callers (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Handle vCPU dissociation (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Finalize VM initialization (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add an ioctl to create initial guest memory (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Export kvm_tdp_map_page() (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/mmu: Bail out kvm_tdp_map_page() when VM dead (Yan Zhao) [Orabug: 38359602]
- KVM: TDX: Implement hook to get max mapping level of private pages (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Implement hooks to propagate changes of TDP MMU mirror page table (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Handle TLB tracking for TDX (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Set per-VM shadow_mmio_value to 0 (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Add setter for shadow_mmio_value (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Require TDP MMU, mmio caching and EPT A/D bits for TDX (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Set gfn_direct_bits to shared bit (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add load_mmu_pgd method for TDX (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Add accessors VMX VMCS helpers (Isaku Yamahata) [Orabug: 38359602]
- KVM: VMX: Teach EPT violation helper about private mem (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/mmu: Do not enable page track for TD guest (Yan Zhao) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Add a helper function to walk down the TDP MMU (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Implement memslot deletion for TDX (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TD measurement of initial contents (Isaku Yamahata) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers to remove a TD private page (Isaku Yamahata) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers to manage TDX TLB tracking (Isaku Yamahata) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers to add TD private pages (Isaku Yamahata) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrapper tdh_mem_sept_add() to add SEPT pages (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Register TDX host key IDs to cgroup misc controller (Zhiming Hu) [Orabug: 38359602]
- KVM: x86/mmu: Taking guest pa into consideration when calculate tdp level (Xiaoyao Li) [Orabug: 38359602]
- KVM: x86: Introduce KVM_TDX_GET_CPUID (Xiaoyao Li) [Orabug: 38359602]
- KVM: TDX: Do TDX specific vcpu initialization (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Short-circuit all of kvm_apic_set_base() if MSR value is unchanged (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Unpack msr_data structure prior to calling kvm_apic_set_base() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Make kvm_recalculate_apic_map() local to lapic.c (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Rename APIC base setters to better capture their relationship (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Move kvm_set_apic_base() implementation to lapic.c (from x86.c) (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Drop superfluous kvm_lapic_set_base() call when setting APIC state (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Short-circuit all kvm_lapic_set_base() if MSR value isn't changing (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: create/free TDX vcpu structure (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Don't offline the last cpu of one package when there's TDX guest (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Make pmu_intel.c ignore guest TD case (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: add ioctl to initialize VM with TDX specific parameters (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: expose cpuid_entry2_find for TDX (Paolo Bonzini) [Orabug: 38359602]
- KVM: TDX: Support per-VM KVM_CAP_MAX_VCPUS extension check (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: create/destroy VM structure (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Get system-wide info about TDX module on initialization (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add place holder for TDX VM specific mem_enc_op ioctl (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add helper functions to print TDX SEAMCALL error (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add TDX "architectural" error codes (Sean Christopherson) [Orabug: 38359602]
- KVM: TDX: Define TDX architectural definitions (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Add placeholders for TDX VM/vCPU structures (Isaku Yamahata) [Orabug: 38359602]
- KVM: TDX: Get TDX global information (Kai Huang) [Orabug: 38359602]
- KVM: VMX: Initialize TDX during KVM module load (Kai Huang) [Orabug: 38359602]
- KVM: VMX: Refactor VMX module init/exit functions (Kai Huang) [Orabug: 38359602]
- KVM: Export hardware virtualization enabling/disabling functions (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Add tdx_guest_keyid_alloc/free() to alloc and free TDX guest KeyID (Isaku Yamahata) [Orabug: 38359602]
- x86/virt/tdx: Read essential global metadata for KVM (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: allocate tdx_sys_info in static memory (Paolo Bonzini) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX flush operations (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX VM/vCPU field access (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX page cache management (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX vCPU creation (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX TD creation (Rick Edgecombe) [Orabug: 38359602]
- x86/virt/tdx: Add SEAMCALL wrappers for TDX KeyID management (Rick Edgecombe) [Orabug: 38359602]
- asm-generic: add an optional pfn_valid check to page_to_phys (Christoph Hellwig) [Orabug: 38359602]
- asm-generic: provide generic page_to_phys and phys_to_page implementations (Christoph Hellwig) [Orabug: 38359602]
- KVM: x86: Add infrastructure for secure TSC (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Push down setting vcpu.arch.user_set_tsc (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: move vm_destroy callback at end of kvm_arch_destroy_vm (Paolo Bonzini) [Orabug: 38359602]
- x86/tdx: Mark message.bytes as nonstring (Kees Cook) [Orabug: 38359602]
- KVM: x86/mmu: Return RET_PF* instead of 1 in kvm_mmu_page_fault() (Yan Zhao) [Orabug: 38359602]
- KVM: x86/mmu: Prevent aliased memslot GFNs (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Don't zap valid mirror roots in kvm_tdp_mmu_zap_all() (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Take root types for kvm_tdp_mmu_invalidate_all_roots() (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Propagate tearing down mirror page tables (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Propagate building mirror page tables (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Propagate attr_filter to MMU notifier callbacks (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Support mirror root for TDP MMU (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Take root in tdp_mmu_for_each_pte() (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Introduce KVM MMU root types to specify page table type (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Extract root invalid check from tdx_mmu_next_root() (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Support GFN direct bits (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/tdp_mmu: Take struct kvm in iter loops (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Make kvm_tdp_mmu_alloc_root() return void (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/mmu: Add an is_mirror member for union kvm_mmu_page_role (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86/mmu: Add an external pointer to struct kvm_mmu_page (Isaku Yamahata) [Orabug: 38359602]
- KVM: x86: Add a VM type define for TDX (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86/mmu: Zap invalid roots with mmu_lock holding for write at uninit (Rick Edgecombe) [Orabug: 38359602]
- KVM: x86: Refactor __kvm_emulate_hypercall() into a macro (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86: Always complete hypercall via function callback (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Bump hypercall stat prior to fully completing hypercall (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Move "emulate hypercall" function declarations to x86.h (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Add a helper to check for user interception of KVM hypercalls (Binbin Wu) [Orabug: 38359602]
- KVM: x86: clear vcpu->run->hypercall.ret before exiting for KVM_EXIT_HYPERCALL (Paolo Bonzini) [Orabug: 38359602]
- KVM: x86: Add interrupt injection information to the kvm_entry tracepoint (Maxim Levitsky) [Orabug: 38359602]
- KVM: x86: Use only local variables (no bitmask) to init kvm_cpu_caps (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Explicitly track feature flags that are enabled at runtime (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Explicitly track feature flags that require vendor enabling (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Rename "SF" macro to "SCATTERED_F" (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Pull CPUID capabilities from boot_cpu_data only as needed (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Add a macro for features that are synthesized into boot_cpu_data (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Drop superfluous host XSAVE check when adjusting guest XSAVES caps (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Replace (almost) all guest CPUID feature queries with cpu_caps (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Reject userspace attempts to access ARCH_CAPABILITIES w/o support (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Reject userspace attempts to access PERF_CAPABILITIES w/o PDCM (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Shuffle code to prepare for dropping guest_cpuid_has() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Update guest cpu_caps at runtime for dynamic CPUID-based features (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Update OS{XSAVE,PKE} bits in guest CPUID irrespective of host support (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Drop unnecessary check that cpuid_entry2_find() returns right leaf (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Avoid double CPUID lookup when updating MWAIT at runtime (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Initialize guest cpu_caps based on KVM support (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Treat MONTIOR/MWAIT as a "partially emulated" feature (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Extract code for generating per-entry emulated CPUID information (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Initialize guest cpu_caps based on guest CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Replace guts of "governed" features with comprehensive cpu_caps (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Rename "governed features" helpers to use "guest_cpu_cap" (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Advertise HYPERVISOR in KVM_GET_SUPPORTED_CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Advertise TSC_DEADLINE_TIMER in KVM_GET_SUPPORTED_CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Remove all direct usage of cpuid_entry2_find() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Move kvm_find_cpuid_entry{,_index}() up near cpuid_entry2_find() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Always operate on kvm_vcpu data in cpuid_entry2_find() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Remove unnecessary caching of KVM's PV CPUID base (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Clear PV_UNHALT for !HLT-exiting only when userspace sets CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Swap incoming guest CPUID into vCPU before massaging in KVM_SET_CPUID2 (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Add a macro to init CPUID features that KVM emulates in software (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: AMD's IBPB is not equivalent to Intel's IBPB (Jim Mattson) [Orabug: 38359602]
- KVM: x86: Add a macro to init CPUID features that ignore host kernel support (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Harden CPU capabilities processing against out-of-scope features (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: #undef SPEC_CTRL_SSBD in cpuid.c to avoid macro collisions (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Handle kernel- and KVM-defined CPUID words in a single helper (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Add a macro to precisely handle aliased 0x1.EDX CPUID features (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Add a macro to init CPUID features that are 64-bit only (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Rename kvm_cpu_cap_mask() to kvm_cpu_cap_init() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Unpack F() CPUID feature flag macros to one flag per line of code (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Account for max supported CPUID leaf when getting raw host CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Do reverse CPUID sanity checks in __feature_leaf() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Don't update PV features caches when enabling enforcement capability (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Zero out PV features cache when the CPUID leaf is not present (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Account for KVM-reserved CR4 bits when passing through CR4 on VMX (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Explicitly do runtime CPUID updates "after" initial setup (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Do all post-set CPUID processing during vCPU creation (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Limit use of F() and SF() to kvm_cpu_cap_{mask,init_kvm_defined}() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Use feature_bit() to clear CONSTANT_TSC when emulating CPUID (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: expose MSR_PLATFORM_INFO as a feature MSR (Paolo Bonzini) [Orabug: 38359602]
- x86: KVM: Advertise CPUIDs for new instructions in Clearwater Forest (Tao Su) [Orabug: 38359602]
- x86/virt/tdx: Require the module to assert it has the NO_RBP_MOD mitigation (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Switch to use auto-generated global metadata reading code (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Use dedicated struct members for PAMT entry sizes (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Use auto-generated code to read global metadata (Paolo Bonzini) [Orabug: 38359602]
- x86/virt/tdx: Start to track all global metadata in one structure (Kai Huang) [Orabug: 38359602]
- x86/virt/tdx: Rename 'struct tdx_tdmr_sysinfo' to reflect the spec better (Kai Huang) [Orabug: 38359602]
- x86/tdx: Dump attributes and TD_CTLS on boot (Kirill A. Shutemov) [Orabug: 38359602]
- x86/tdx: Disable unnecessary virtualization exceptions (Kirill A. Shutemov) [Orabug: 38359602]
- x86/tdx: Enable CPU topology enumeration (Kirill A. Shutemov) [Orabug: 38359602]
- KVM: x86/mmu: Drop per-VM zapped_obsolete_pages list (Vipin Sharma) [Orabug: 38359602]
- KVM: x86/mmu: Remove KVM's MMU shrinker (Vipin Sharma) [Orabug: 38359602]
- KVM: x86/mmu: WARN if huge page recovery triggered during dirty logging (David Matlack) [Orabug: 38359602]
- KVM: x86/mmu: Rename make_huge_page_split_spte() to make_small_spte() (David Matlack) [Orabug: 38359602]
- KVM: x86/mmu: Recover TDP MMU huge page mappings in-place instead of zapping (David Matlack) [Orabug: 38359602]
- KVM: x86/mmu: Refactor TDP MMU iter need resched check (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Demote the WARN on yielded in xxx_cond_resched() to KVM_MMU_WARN_ON (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Check yielded_gfn for forward progress iff resched is needed (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Batch TLB flushes when zapping collapsible TDP MMU SPTEs (David Matlack) [Orabug: 38359602]
- KVM: x86/mmu: Drop @max_level from kvm_mmu_max_mapping_level() (David Matlack) [Orabug: 38359602]
- KVM: x86: Don't emit TLB flushes when aging SPTEs for mmu_notifiers (Sean Christopherson) [Orabug: 38359602]
- KVM: Allow arch code to elide TLB flushes when aging a young page (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Set Dirty bit for new SPTEs, even if _hardware_ A/D bits are disabled (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Dedup logic for detecting TLB flushes on leaf SPTE changes (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Stop processing TDP MMU roots for test_age if young SPTE found (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Process only valid TDP MMU roots when aging a gfn range (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Use Accessed bit even when _hardware_ A/D bits are disabled (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Set shadow_dirty_mask for EPT even if A/D bits disabled (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Set shadow_accessed_mask for EPT even if A/D bits disabled (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Add a dedicated flag to track if A/D bits are globally enabled (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: WARN and flush if resolving a TDP MMU fault clears MMU-writable (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Fold mmu_spte_update_no_track() into mmu_spte_update() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Drop ignored return value from kvm_tdp_mmu_clear_dirty_slot() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Don't flush TLBs when clearing Dirty bit in shadow MMU (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Don't force flush if SPTE update clears Accessed bit (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Fold all of make_spte()'s writable handling into one if-else (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Always set SPTE's dirty bit if it's created as writable (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Flush remote TLBs iff MMU-writable flag is cleared from RO SPTE (Sean Christopherson) [Orabug: 38359602]
- KVM: Don't grab reference on VM_MIXEDMAP pfns that have a "struct page" (Sean Christopherson) [Orabug: 38359602]
- KVM: Drop APIs that manipulate "struct page" via pfns (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Don't mark "struct page" accessed when zapping SPTEs (Sean Christopherson) [Orabug: 38359602]
- KVM: Make kvm_follow_pfn.refcounted_page a required field (Sean Christopherson) [Orabug: 38359602]
- KVM: Drop gfn_to_pfn() APIs now that all users are gone (Sean Christopherson) [Orabug: 38359602]
- KVM: Add support for read-only usage of gfn_to_page() (Sean Christopherson) [Orabug: 38359602]
- KVM: Convert gfn_to_page() to use kvm_follow_pfn() (Sean Christopherson) [Orabug: 38359602]
- KVM: arm64: Don't mark "struct page" accessed when making SPTE young (Sean Christopherson) [Orabug: 38359602]
- KVM: arm64: Use __gfn_to_page() when copying MTE tags to/from userspace (Sean Christopherson) [Orabug: 38359602]
- KVM: arm64: Use __kvm_faultin_pfn() to handle memory aborts (Sean Christopherson) [Orabug: 38359602]
- KVM: arm64: Mark "struct page" pfns accessed/dirty before dropping mmu_lock (Sean Christopherson) [Orabug: 38359602]
- KVM: VMX: Use __kvm_faultin_page() to get APIC access page/pfn (Sean Christopherson) [Orabug: 38359602]
- KVM: VMX: Hold mmu_lock until page is released when updating APIC access page (Sean Christopherson) [Orabug: 38359602]
- KVM: Move x86's API to release a faultin page to common KVM (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Don't mark unused faultin pages as accessed (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Put refcounted pages instead of blindly releasing pfns (Sean Christopherson) [Orabug: 38359602]
- KVM: guest_memfd: Provide "struct page" as output from kvm_gmem_get_pfn() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Convert page fault paths to kvm_faultin_pfn() (Sean Christopherson) [Orabug: 38359602]
- KVM: Add kvm_faultin_pfn() to specifically service guest page faults (Sean Christopherson) [Orabug: 38359602]
- KVM: Move declarations of memslot accessors up in kvm_host.h (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Mark pages/folios dirty at the origin of make_spte() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Add helper to "finish" handling a guest page fault (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Add common helper to handle prefetching SPTEs (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Put direct prefetched pages via kvm_release_page_clean() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Add "mmu" prefix fault-in helpers to free up generic names (Sean Christopherson) [Orabug: 38359602]
- KVM: x86: Don't fault-in APIC access page during initial allocation (Sean Christopherson) [Orabug: 38359602]
- KVM: Disallow direct access (w/o mmu_notifier) to unpinned pfn by default (Sean Christopherson) [Orabug: 38359602]
- KVM: Get writable mapping for __kvm_vcpu_map() only when necessary (Sean Christopherson) [Orabug: 38359602]
- KVM: Pass in write/dirty to kvm_vcpu_map(), not kvm_vcpu_unmap() (Sean Christopherson) [Orabug: 38359602]
- KVM: nVMX: Mark vmcs12's APIC access page dirty when unmapping (Sean Christopherson) [Orabug: 38359602]
- KVM: Pin (as in FOLL_PIN) pages during kvm_vcpu_map() (Sean Christopherson) [Orabug: 38359602]
- KVM: Migrate kvm_vcpu_map() to kvm_follow_pfn() (David Stevens) [Orabug: 38359602]
- KVM: pfncache: Precisely track refcounted pages (Sean Christopherson) [Orabug: 38359602]
- KVM: Move kvm_{set,release}_page_{clean,dirty}() helpers up in kvm_main.c (Sean Christopherson) [Orabug: 38359602]
- KVM: Provide refcounted page as output field in struct kvm_follow_pfn (Sean Christopherson) [Orabug: 38359602]
- KVM: Use plain "struct page" pointer instead of single-entry array (Sean Christopherson) [Orabug: 38359602]
- KVM: nVMX: Add helper to put (unmap) vmcs12 pages (Sean Christopherson) [Orabug: 38359602]
- KVM: nVMX: Drop pointless msr_bitmap_map field from struct nested_vmx (Sean Christopherson) [Orabug: 38359602]
- KVM: nVMX: Rely on kvm_vcpu_unmap() to track validity of eVMCS mapping (Sean Christopherson) [Orabug: 38359602]
- KVM: Use NULL for struct page pointer to indicate mremapped memory (Sean Christopherson) [Orabug: 38359602]
- KVM: Explicitly initialize all fields at the start of kvm_vcpu_map() (Sean Christopherson) [Orabug: 38359602]
- KVM: Remove pointless sanity check on @map param to kvm_vcpu_(un)map() (Sean Christopherson) [Orabug: 38359602]
- KVM: Introduce kvm_follow_pfn() to eventually replace "gfn_to_pfn" APIs (David Stevens) [Orabug: 38359602]
- KVM: Drop unused "hva" pointer from __gfn_to_pfn_memslot() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Drop kvm_page_fault.hva, i.e. don't track intermediate hva (Sean Christopherson) [Orabug: 38359602]
- KVM: Replace "async" pointer in gfn=>pfn with "no_wait" and error code (David Stevens) [Orabug: 38359602]
- KVM: Drop extra GUP (via check_user_page_hwpoison()) to detect poisoned page (Sean Christopherson) [Orabug: 38359602]
- KVM: Return ERR_SIGPENDING from hva_to_pfn() if GUP returns -EGAIN (Sean Christopherson) [Orabug: 38359602]
- KVM: Annotate that all paths in hva_to_pfn() might sleep (Sean Christopherson) [Orabug: 38359602]
- KVM: Drop @atomic param from gfn=>pfn and hva=>pfn APIs (Sean Christopherson) [Orabug: 38359602]
- KVM: Rename gfn_to_page_many_atomic() to kvm_prefetch_pages() (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Use gfn_to_page_many_atomic() when prefetching indirect PTEs (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Mark page/folio accessed only when zapping leaf SPTEs (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Mark folio dirty when creating SPTE, not when zapping/modifying (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Mark new SPTE as Accessed when synchronizing existing SPTE (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Invert @can_unsync and renamed to @synchronizing (Sean Christopherson) [Orabug: 38359602]
- KVM: x86/mmu: Don't overwrite shadow-present MMU SPTEs when prefaulting (Sean Christopherson) [Orabug: 38359602]
- KVM: Add kvm_release_page_unused() API to put pages that KVM never consumes (Sean Christopherson) [Orabug: 38359602]
- KVM: Allow calling kvm_release_page_{clean,dirty}() on a NULL page pointer (Sean Christopherson) [Orabug: 38359602]
- KVM: Drop KVM_ERR_PTR_BAD_PAGE and instead return NULL to indicate an error (Sean Christopherson) [Orabug: 38359602]
- NFSD: release read access of nfs4_file when a write delegation is returned (Dai Ngo) [Orabug: 38512200]
- NFSD: Offer write delegation for OPEN with OPEN4_SHARE_ACCESS_WRITE (Dai Ngo) [Orabug: 38512200]
- nfsd: implement OPEN_ARGS_SHARE_ACCESS_WANT_OPEN_XOR_DELEGATION (Jeff Layton) [Orabug: 38512200]
- nfsd: handle delegated timestamps in SETATTR (Jeff Layton) [Orabug: 38512200]
- nfsd: add support for delegated timestamps (Jeff Layton) [Orabug: 38512200]
- nfsd: rework NFS4_SHARE_WANT_* flag handling (Jeff Layton) [Orabug: 38512200]
- nfsd: add support for FATTR4_OPEN_ARGUMENTS (Jeff Layton) [Orabug: 38512200]
- nfsd: prepare delegation code for handing out *_ATTRS_DELEG delegations (Jeff Layton) [Orabug: 38512200]
- nfsd: rename NFS4_SHARE_WANT_* constants to OPEN4_SHARE_ACCESS_WANT_* (Jeff Layton) [Orabug: 38512200]
- nfsd: switch to autogenerated definitions for open_delegation_type4 (Jeff Layton) [Orabug: 38512200]
- nfs_common: make include/linux/nfs4.h include generated nfs4_1.h (Jeff Layton) [Orabug: 38512200]
- nfsd: fix handling of delegated change attr in CB_GETATTR (Jeff Layton) [Orabug: 38512200]
- nfsd: have nfsd4_deleg_getattr_conflict pass back write deleg pointer (Jeff Layton) [Orabug: 38512200]
- nfsd: drop the nfsd4_fattr_args "size" field (Jeff Layton) [Orabug: 38512200]
- nfsd: drop the ncf_cb_bmap field (Jeff Layton) [Orabug: 38512200]
- tls: skip setting sk_write_space on rekey (Sabrina Dubroca) [Orabug: 38295472]
- selftests: tls: add rekey tests (Sabrina Dubroca) [Orabug: 38295472]
- selftests: tls: add key_generation argument to tls_crypto_info_init (Sabrina Dubroca) [Orabug: 38295472]
- selftests: tls: add a selftest for wrapping rec_seq (Sabrina Dubroca) [Orabug: 38295472]
- docs: tls: document TLS1.3 key updates (Sabrina Dubroca) [Orabug: 38295472]
- tls: add counters for rekey (Sabrina Dubroca) [Orabug: 38295472]
- tls: implement rekey for TLS1.3 (Sabrina Dubroca) [Orabug: 38295472]
- tls: block decryption when a rekey is pending (Sabrina Dubroca) [Orabug: 38295472]
- uek-rpm: Enable few more options in UEK8U2 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Run savedefconfig for UEK8U2 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Set KFENCE_SAMPLE_INTERVAL to 100 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Enable MODULE_UNLOAD_TAINT_TRACKING in UEK8U2 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Enable DAMON_RECLAIM in UEK8U2 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Enable BLK_CGROUP_IOLATENCY in UEK8U2 (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Enable multiple compression techniques with ZRAM (Harshit Mogalapalli) [Orabug: 38488528]
- uek-rpm: Enable SQUASHFS_COMPILE_DECOMP_MULTI_PERCPU in UEK8 (Harshit Mogalapalli) [Orabug: 38488528]
- tools/selftests: add guard region test for /proc/$pid/pagemap (Lorenzo Stoakes) [Orabug: 38456071]
- fs/proc/task_mmu: add guard region bit to pagemap (Lorenzo Stoakes) [Orabug: 38456071]
- tools/testing/selftests: fix guard region test tmpfs assumption (Lorenzo Stoakes) [Orabug: 38456071]
- tools/selftests: add file/shmem-backed mapping guard region tests (Lorenzo Stoakes) [Orabug: 38456071]
- tools/selftests: expand all guard region tests to file-backed (Lorenzo Stoakes) [Orabug: 38456071]
- selftests/mm: rename guard-pages to guard-regions (Lorenzo Stoakes) [Orabug: 38456071]
- mm: allow guard regions in file-backed and read-only mappings (Lorenzo Stoakes) [Orabug: 38456071]
- selftests/mm: add fork CoW guard page test (Lorenzo Stoakes) [Orabug: 38456071]
- selftests/mm: add self tests for guard page feature (Lorenzo Stoakes) [Orabug: 38456071]
- tools: testing: update tools UAPI header for mman-common.h (Lorenzo Stoakes) [Orabug: 38456071]
- mm: madvise: implement lightweight guard page mechanism (Lorenzo Stoakes) [Orabug: 38456071]
- mm: add PTE_MARKER_GUARD PTE marker (Lorenzo Stoakes) [Orabug: 38456071]
- mm: pagewalk: add the ability to install PTEs (Lorenzo Stoakes) [Orabug: 38456071]
- uek-rpm: T93: build OcteonTX2 SPI controller (Dave Kleikamp) [Orabug: 38474944]
- drivers: spi: octeontx2: Fix compile errors and warnings (Dave Kleikamp) [Orabug: 38474944]
- drivers: spi: octeontx2: Fix typo in return code (Suneel Garapati) [Orabug: 38474944]
- drivers: spi: octeontx2: ACPI support for SPI driver (Piyush Malgujar) [Orabug: 38474944]
- drivers: spi: octeontx2: Resolve issues detected in static code analysis (Piyush Malgujar) [Orabug: 38474944]
- drivers: spi: octeontx2: Add fix for hw issue (Piyush Malgujar) [Orabug: 38474944]
- drivers: spi: octeontx2: use read after write for MPI_CFG (Piyush Malgujar) [Orabug: 38474944]
- drivers: spi: octeontx2: set tritx in config register (Piyush Malgujar) [Orabug: 38474944]
- drivers: spi: octeontx2: Support for octeontx2 spi controller (Piyush Malgujar) [Orabug: 38474944]
- uek-rpm: Build T93 smartnic kernel (Dave Kleikamp) [Orabug: 38474944]
- uek-rpm: T93: add modules.yaml.S.emb and denylist.txt.S.emb (Dave Kleikamp) [Orabug: 38474944]
- uek-rpm: Add config file for T93 smartnic (Dave Kleikamp) [Orabug: 38474944]
- iommu/arm-smmu-v3: Force 32 byte command queue memory reads (srokade) [Orabug: 38474944]
- uek-rpm: build embedded4 kernel (Joe Dobosenski) [Orabug: 38097144]
- uek-rpm: add UEK8 kconfig for embedded4 platform (Joe Dobosenski) [Orabug: 38097144]
- irqchip/pensando: Fix partial of_iomap() leak on error (#505) (Brad Larson) [Orabug: 38097144]
- mmc: core: Use HPI to interrupt lengthy cache flush (#495) (Brad Larson) [Orabug: 38097144]
- i2c: designware: Support stuck SDA line recovery (Brad Larson) [Orabug: 38097144]
- perf/arm-cmn: Enable AMD Pensando Salina SoC CMN PMU driver (Brad Larson) [Orabug: 38097144]
- arm64: Enable platform SError handler (Brad Larson) [Orabug: 38097144]
- spi: dw-mmio: Add AMD Pensando Salina SoC support (Brad Larson) [Orabug: 38097144]
- rtc: elbacpld: Support RTC in AMD Pensando system controller (Brad Larson) [Orabug: 38097144]
- mfd: Add AMD Pensando system controller (Brad Larson) [Orabug: 38097144]
- EDAC/elba: Add AMD Pensando Elba/Giglio SoC EDAC driver (Brad Larson) [Orabug: 38097144]
- mtd: spi-nor: winbond: Add support for W25Q02NW (Brad Larson) [Orabug: 38097144]
- irqchip/pensando: Add AMD Pensando IRQ driver (Brad Larson) [Orabug: 38097144]
- arm64: Add AMD Pensando UIO support (Brad Larson) [Orabug: 38097144]
- arm64: defconfig: Add AMD Pensando defconfig (Brad Larson) [Orabug: 38097144]
- soc/pensando: Add AMD Pensando SoC drivers (Brad Larson) [Orabug: 38097144]
- arm64: dts: Add AMD Pensando SoC support (Brad Larson) [Orabug: 38097144]
- i2c: rd1173: Add Lattice SPI to I2C bus driver (Brad Larson) [Orabug: 38097144]
- hwmon: (pmbus/tps53679) Add support for tps53659 (Brad Larson) [Orabug: 38097144]
- hwmon: (pmbus/ltc2978) Add support for ltc3888 (Brad Larson) [Orabug: 38097144]
- mmc: sdhci-cadence: Support ADMA with bounce buffers (Brad Larson) [Orabug: 38097144]
-
Wed Jan 28 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-109.67.2.el9uek]
- net: mana: Reduce waiting time if HWC not responding (Haiyang Zhang) [Orabug: 38881615]
-
Tue Jan 27 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-109.67.1.el9uek]
- LTS version: v6.12.67 (Jack Vogel)
- mm/fake-numa: handle cases with no SRAT info (Bruno Faccini)
- mm/page_alloc: prevent pcp corruption with SMP=n (Vlastimil Babka)
- mm/page_alloc: batch page freeing in decay_pcp_high (Joshua Hahn)
- mm/page_alloc/vmstat: simplify refresh_cpu_vm_stats change detection (Joshua Hahn)
- dmaengine: fsl-edma: Fix clk leak on alloc_chan_resources failure (Zhen Ni)
- phy: rockchip: inno-usb2: Fix a double free bug in rockchip_usb2phy_probe() (Xu Wang)
- phy: phy-rockchip-inno-usb2: Use dev_err_probe() in the probe path (Dragan Simic)
- mm: numa,memblock: include <asm/numa.h> for 'numa_nodes_parsed' (Ben Dooks)
- mm/fake-numa: allow later numa node hotplug (Bruno Faccini)
- mm: kmsan: fix poisoning of high-order non-compound pages (Ryan Roberts)
- selftests/bpf: Test invalid narrower ctx load (Paul Chaignon)
- bpf: Reject narrower access to pointer ctx fields (Paul Chaignon) [Orabug: 38335080] {CVE-2025-38591}
- mm/damon/sysfs-scheme: cleanup access_pattern subdirs on scheme dir setup failure (Seongjae Park)
- mm/damon/sysfs-scheme: cleanup quotas subdirs on scheme dir setup failure (Seongjae Park)
- xfs: set max_agbno to allow sparse alloc of last full inode chunk (Brian Foster)
- btrfs: fix deadlock in wait_current_trans() due to ignored transaction type (Robbie Ko)
- HID: intel-ish-hid: Fix -Wcast-function-type-strict in devm_ishtp_alloc_workqueue() (Nathan Chancellor)
- HID: intel-ish-hid: Use dedicated unbound workqueues to prevent resume blocking (Zhang Lixu)
- dmaengine: ti: k3-udma: fix device leak on udma lookup (Johan Hovold)
- dmaengine: ti: dma-crossbar: fix device leak on am335x route allocation (Johan Hovold)
- dmaengine: ti: dma-crossbar: fix device leak on dra7x route allocation (Johan Hovold)
- dmaengine: stm32: dmamux: fix OF node leak on route allocation failure (Johan Hovold)
- dmaengine: stm32: dmamux: fix device leak on route allocation (Johan Hovold)
- dmaengine: sh: rz-dmac: Fix rz_dmac_terminate_all() (Biju Das)
- dmaengine: qcom: gpi: Fix memory leak in gpi_peripheral_config() (Miaoqian Lin)
- dmaengine: lpc32xx-dmamux: fix device leak on route allocation (Johan Hovold)
- dmaengine: lpc18xx-dmamux: fix device leak on route allocation (Johan Hovold)
- dmaengine: idxd: fix device leaks on compat bind and unbind (Johan Hovold)
- dmaengine: dw: dmamux: fix OF node leak on route allocation failure (Johan Hovold)
- dmaengine: bcm-sba-raid: fix device leak on probe (Johan Hovold)
- dmaengine: at_hdmac: fix device leak on of_dma_xlate() (Johan Hovold)
- dmaengine: apple-admac: Add "apple,t8103-admac" compatible (Janne Grunau)
- LoongArch: dts: loongson-2k2000: Add default interrupt controller address cells (Binbin Zhou)
- LoongArch: dts: loongson-2k1000: Fix i2c-gpio node names (Binbin Zhou)
- LoongArch: dts: loongson-2k1000: Add default interrupt controller address cells (Binbin Zhou)
- LoongArch: dts: loongson-2k0500: Add default interrupt controller address cells (Binbin Zhou)
- drm/vmwgfx: Fix an error return check in vmw_compat_shader_add() (Haoxiang Li)
- drm/panel-simple: fix connector type for DataImage SCF0700C48GGU18 panel (Marek Vasut)
- drm/nouveau/disp/nv50-: Set lock_core in curs507a_prepare (Lyude Paul)
- drm/amdkfd: fix a memory leak in device_queue_manager_init() (Haoxiang Li)
- drm/amd: Clean up kfd node on surprise disconnect (Mario Limonciello)
- drm/amd/display: Bump the HDMI clock to 340MHz (Mario Limonciello)
- LoongArch: Fix PMU counter allocation for mixed-type event groups (Lisa Robinson)
- mm/damon/sysfs: cleanup attrs subdirs on context dir setup failure (Seongjae Park)
- mm/page_alloc: make percpu_pagelist_high_fraction reads lock-free (Aboorva Devarajan)
- mm/zswap: fix error pointer free in zswap_cpu_comp_prepare() (Pavel Butsykin)
- nvme: fix PCIe subsystem reset controller state transition (Nilay Shroff)
- x86/resctrl: Fix memory bandwidth counter width for Hygon (Xiaochen Shen)
- x86/resctrl: Add missing resctrl initialization for Hygon (Xiaochen Shen)
- i2c: riic: Move suspend handling to NOIRQ phase (Tommaso Merciai)
- tcpm: allow looking for role_sw device in the main node (Arnaud Ferraris)
- EDAC/i3200: Fix a resource leak in i3200_probe1() (Haoxiang Li)
- EDAC/x38: Fix a resource leak in x38_probe1() (Haoxiang Li)
- hrtimer: Fix softirq base check in update_needs_ipi() (Thomas Weißschuh)
- ext4: fix iloc.bh leak in ext4_xattr_inode_update_ref (Yangerkun)
- ASoC: codecs: wsa881x: fix unnecessary initialisation (Johan Hovold)
- nvme-pci: disable secondary temp for Wodposit WPBSNM8 (Ilikara Zheng)
- USB: serial: ftdi_sio: add support for PICAXE AXE027 cable (Ethan Nelson-Moore)
- USB: serial: option: add Telit LE910 MBIM composition (Ulrich Mohr)
- USB: OHCI/UHCI: Add soft dependencies on ehci_platform (Huacai Chen)
- usb: core: add USB_QUIRK_NO_BOS for devices that hang on BOS descriptor (Johannes Brüderl)
- usb: dwc3: Check for USB4 IP_NAME (Thinh Nguyen)
- phy: tegra: xusb: Explicitly configure HS_DISCON_LEVEL to 0x7 (Wayne Chang)
- phy: rockchip: inno-usb2: fix disconnection in gadget mode (Louis Chauvet)
- phy: freescale: imx8m-pcie: assert phy reset during power on (Rafael Beims)
- phy: ti: gmii-sel: fix regmap leak on probe failure (Johan Hovold)
- phy: rockchip: inno-usb2: fix communication disruption in gadget mode (Luca Ceresoli)
- x86/kaslr: Recognize all ZONE_DEVICE users as physaddr consumers (Dan Williams)
- lib/buildid: use __kernel_read() for sleepable context (Shakeel Butt) [Orabug: 38887735] {CVE-2026-23002}
- xfs: Fix the return value of xfs_rtcopy_summary() (Nirjhar Roy)
- net: can: j1939: j1939_xtp_rx_rts_session_active(): deactivate session upon receiving the second rts (Tetsuo Handa) [Orabug: 38887709] {CVE-2026-22997}
- can: ctucanfd: fix SSP_SRC in cases when bit-rate is higher than 1 MBit. (Ondrej Ille)
- can: gs_usb: gs_usb_receive_bulk_callback(): fix URB memory leak (Marc Kleine-Budde)
- null_blk: fix kmemleak by releasing references to fault configfs items (Nilay Shroff)
- ALSA: pcm: Improve the fix for race of buffer access at PCM OSS layer (Jaroslav Kysela)
- scsi: core: Fix error handler encryption support (Brian Kao)
- io_uring: move local task_work in exit cancel loop (Ming Lei)
- drm/amd/display: mark static functions noinline_for_stack (Tzung-Bi Shih)
- ASoC: codecs: wsa883x: fix unnecessary initialisation (Johan Hovold)
- bridge: mcast: Fix use-after-free during router port configuration (Ido Schimmel) [Orabug: 38175058] {CVE-2025-38248}
- HID: usbhid: paper over wrong bNumDescriptor field (Benjamin Tissoires)
- i2c: qcom-geni: make sure I2C hub controllers can't use SE DMA (Neil Armstrong)
- dmaengine: omap-dma: fix dma_pool resource leak in error paths (Xu Wang)
- selftests/landlock: Properly close a file descriptor (Günther Noack)
- phy: broadcom: ns-usb3: Fix Wvoid-pointer-to-enum-cast warning (again) (Krzysztof Kozlowski)
- selftests/landlock: Remove invalid unix socket bind() (Matthieu Buffet)
- selftests/landlock: Fix TCP bind(AF_UNSPEC) test case (Matthieu Buffet)
- phy: ti: da8xx-usb: Handle devm_pm_runtime_enable() errors (Xu Wang)
- phy: stm32-usphyc: Fix off by one in probe() (Dan Carpenter)
- phy: qcom-qusb2: Fix NULL pointer dereference on early suspend (Loic Poulain)
- phy: drop probe registration printks (Johan Hovold)
- phy: phy-snps-eusb2: refactor constructs names (Ivaylo Ivanov)
- phy: fsl-imx8mq-usb: Clear the PCS_TX_SWING_FULL field before using it (Stefano Radaelli)
- dmaengine: xilinx_dma: Fix uninitialized addr_width when "xlnx,addrwidth" property is missing (Suraj Gupta)
- dmaengine: tegra-adma: Fix use-after-free (Sheetal)
- dmaengine: xilinx: xdma: Fix regmap max_register (Anthony Brandon)
- mm, kfence: describe @slab parameter in __kfence_obj_info() (Bagas Sanjaya)
- textsearch: describe @list member in ts_ops search (Bagas Sanjaya)
- mm: describe @flags parameter in memalloc_flags_save() (Bagas Sanjaya)
- drm/amd/pm: fix smu overdrive data type wrong issue on smu 14.0.2 (Yang Wang)
- ASoC: tlv320adcx140: fix word length (Emil Svendsen)
- ASoC: tlv320adcx140: fix null pointer (Emil Svendsen)
- ASoC: sdw_utils: cs42l43: Enable Headphone pin for LINEOUT jack type (Cole Leavitt)
- net/sched: sch_qfq: do not free existing class in qfq_change_class() (Eric Dumazet) [Orabug: 38887717] {CVE-2026-22999}
- selftests: drv-net: fix RPS mask handling for high CPU numbers (Gal Pressman)
- ipv6: Fix use-after-free in inet6_addr_del(). (Kuniyuki Iwashima) [Orabug: 38887755] {CVE-2026-23010}
- net: hv_netvsc: reject RSS hash key programming without RX indirection table (Aditya Garg)
- ALSA: hda/cirrus_scodec_test: Fix incorrect setup of gpiochip (Richard Fitzgerald)
- net: octeon_ep_vf: fix free_irq dev_id mismatch in IRQ rollback (Kery Qi)
- btrfs: fix memory leaks in create_space_info() error paths (Jiasheng Jiang)
- btrfs: introduce btrfs_space_info sub-group (Naohiro Aota)
- btrfs: factor out check_removing_space_info() from btrfs_free_block_groups() (Naohiro Aota)
- btrfs: factor out init_space_info() from create_space_info() (Naohiro Aota)
- net/mlx5e: Restore destroying state bit after profile cleanup (Saeed Mahameed)
- net/mlx5e: Pass netdev to mlx5e_destroy_netdev instead of priv (Saeed Mahameed)
- net/mlx5e: Don't store mlx5e_priv in mlx5e_dev devlink priv (Saeed Mahameed)
- net/mlx5e: Fix crash on profile change rollback failure (Saeed Mahameed) [Orabug: 38887724] {CVE-2026-23000}
- vsock/test: add a final full barrier after run all tests (Stefano Garzarella)
- ipv4: ip_gre: make ipgre_header() robust (Eric Dumazet) [Orabug: 38887757] {CVE-2026-23011}
- macvlan: fix possible UAF in macvlan_forward_source() (Eric Dumazet) [Orabug: 38887729] {CVE-2026-23001}
- net: update netdev_lock_{type,name} (Eric Dumazet)
- ip6_tunnel: use skb_vlan_inet_prepare() in __ip6_tnl_rcv() (Eric Dumazet) [Orabug: 38887737] {CVE-2026-23003}
- net: bridge: annotate data-races around fdb->{updated,used} (Eric Dumazet)
- btrfs: send: check for inline extents in range_is_hole_in_parent() (Qu Wenruo)
- nvme-tcp: fix NULL pointer dereferences in nvmet_tcp_build_pdu_iovec (Shivam Kumar) [Orabug: 38887713] {CVE-2026-22998}
- can: etas_es58x: allow partial RX URB allocation to succeed (Szymon Wilczek)
- PM: EM: Fix incorrect description of the cost field in struct em_perf_state (Yaxiong Tian)
- drm/vmwgfx: Merge vmw_bo_release and vmw_bo_free functions (Ian Forbes)
- pnfs/blocklayout: Fix memory leak in bl_parse_scsi() (Zilin Guan)
- pnfs/flexfiles: Fix memory leak in nfs4_ff_alloc_deviceid_node() (Zilin Guan)
- NFS: Fix a deadlock involving nfs_release_folio() (Trond Myklebust)
- pNFS: Fix a deadlock when returning a delegation during open() (Trond Myklebust)
- xfrm: set ipv4 no_pmtu_disc flag only on output sa when direction is set (Antony Antony)
- xfrm: Fix inner mode lookup in tunnel mode GSO segmentation (Jianbo Liu)
- ASoC: codecs: wsa884x: fix codec initialisation (Johan Hovold)
- x86/fpu: Clear XSTATE_BV[i] in guest XSAVE state whenever XFD[i]=1 (Sean Christopherson) [Orabug: 38887746] {CVE-2026-23005}
- Revert "gfs2: Fix use of bio_chain" (Andreas Gruenbacher)
- efi/cper: Fix cper_bits_to_str buffer handling and return value (Dandan Zhang)
- firmware: imx: scu-irq: Set mu_resource_id before get handle (Peng Fan)
- LTS version: v6.12.66 (Jack Vogel)
- bpf: test_run: Fix ctx leak in bpf_prog_test_run_xdp error path (Shardul Bankar)
- ALSA: hda: intel-dsp-config: Prefer legacy driver as fallback (Takashi Iwai)
- tpm2-sessions: Fix out of range indexing in name_size (Jarkko Sakkinen) [Orabug: 38847816] {CVE-2025-68792}
- spi: cadence-quadspi: Prevent lost complete() call during indirect read (Mateusz Litwin)
- scsi: sg: Fix occasional bogus elapsed time that exceeds timeout (Michal Rábek)
- ASoC: fsl_sai: Add missing registers to cache default (Alexander Stein)
- ALSA: hda/realtek: enable woofer speakers on Medion NM14LNL (Kai Vehmanen)
- ASoC: amd: yc: Add quirk for Honor MagicBook X16 2025 (Andrew Elantsev)
- ALSA: usb-audio: Update for native DSD support quirks (Jussi Laako)
- can: j1939: make j1939_session_activate() fail if device is no longer registered (Tetsuo Handa)
- drm/amdkfd: Fix improper NULL termination of queue restore SMI event string (Brian Kocoloski)
- spi: mt65xx: Use IRQF_ONESHOT with threaded IRQ (Fei Shao)
- drm/amd/display: Fix DP no audio issue (Charlene Liu)
- ata: libata-core: Disable LPM on ST2000DM008-2FR102 (Niklas Cassel)
- netfilter: nf_tables: avoid chain re-validation if possible (Florian Westphal) [Orabug: 38887632] {CVE-2025-71160}
- powercap: fix sscanf() error return value handling (Sumeet Pawnikar)
- powercap: fix race condition in register_control_type() (Sumeet Pawnikar)
- net: sfp: extend Potron XGSPON quirk to cover additional EEPROM variant (Marcus Hughes)
- bpf: Fix reference count leak in bpf_prog_test_run_xdp() (Tetsuo Handa) [Orabug: 38887701] {CVE-2026-22994}
- bpf, test_run: Subtract size of xdp_frame from allowed metadata size (Toke Høiland-Jørgensen)
- bpf: Support specifying linear xdp packet data size for BPF_PROG_TEST_RUN (Amery Hung)
- bpf: Make variables in bpf_prog_test_run_xdp less confusing (Amery Hung)
- bpf: Fix an issue in bpf_prog_test_run_xdp when page size greater than 4K (Yonghong Song)
- btrfs: fix beyond-EOF write handling (Qu Wenruo)
- btrfs: use variable for end offset in extent_writepage_io() (Filipe Manana)
- btrfs: truncate ordered extent when skipping writeback past i_size (Filipe Manana)
- btrfs: remove btrfs_fs_info::sectors_per_page (Qu Wenruo)
- btrfs: add extra error messages for delalloc range related errors (Qu Wenruo)
- btrfs: subpage: dump the involved bitmap when ASSERT() failed (Qu Wenruo)
- btrfs: fix error handling of submit_uncompressed_range() (Qu Wenruo)
- ALSA: ac97: fix a double free in snd_ac97_controller_register() (Haoxiang Li)
- ALSA: ac97bus: Use guard() for mutex locks (Takashi Iwai)
- erofs: fix file-backed mounts no longer working on EROFS partitions (Gao Xiang)
- erofs: don't bother with s_stack_depth increasing for now (Gao Xiang)
- arp: do not assume dev_hard_header() does not change skb->head (Eric Dumazet) [Orabug: 38887789] {CVE-2026-22988}
- net: enetc: fix build warning when PAGE_SIZE is greater than 128K (Wei Fang)
- net: usb: pegasus: fix memory leak in update_eth_regs_async() (Petko Manolov)
- net/sched: sch_qfq: Fix NULL deref when deactivating inactive aggregate in qfq_reset (Xiang Mei) [Orabug: 38872324] {CVE-2026-22976}
- HID: quirks: work around VID/PID conflict for appledisplay (René Rebe)
- net: netdevsim: fix inconsistent carrier state after link/unlink (Yohei Kojima)
- idpf: cap maximum Rx buffer size (Joshua Hay)
- idpf: fix memory leak in idpf_vport_rel() (Emil Tantilov)
- idpf: keep the netdev when a reset fails (Emil Tantilov)
- net: fix memory leak in skb_segment_list for GRO packets (Mohammad Heib) [Orabug: 38887655] {CVE-2026-22979}
- riscv: pgtable: Cleanup useless VA_USER_XXX definitions (Guo Ren)
- btrfs: only enforce free space tree if v1 cache is required for bs < ps cases (Qu Wenruo)
- vsock: Make accept()ed sockets use custom setsockopt() (Michal Luczaj)
- bnxt_en: Fix potential data corruption with HW GRO/LRO (Srijit Bose)
- net: wwan: iosm: Fix memory leak in ipc_mux_deinit() (Zilin Guan)
- net/mlx5e: Don't print error message due to invalid module (Gal Pressman)
- netdev: preserve NETIF_F_ALL_FOR_ALL across TSO updates (Di Zhu)
- net: sock: fix hardened usercopy panic in sock_recv_errqueue (Weiming Shi) [Orabug: 38877945] {CVE-2026-22977}
- inet: ping: Fix icmp out counting (Yuan Gao)
- net: mscc: ocelot: Fix crash when adding interface under a lag (Jerry Wu)
- bridge: fix C-VLAN preservation in 802.1ad vlan_tunnel egress (Alexandre Knecht)
- net: marvell: prestera: fix NULL dereference on devlink_alloc() failure (Alok Tiwari)
- netfilter: nf_conncount: update last_gc only when GC has been performed (Fernando Fernandez Mancera)
- netfilter: nf_tables: fix memory leak in nf_tables_newrule() (Zilin Guan)
- gpio: pca953x: handle short interrupt pulses on PCAL devices (Ernest Van Hoecke)
- gpio: pca953x: Add support for level-triggered interrupts (Potin Lai)
- netfilter: nft_synproxy: avoid possible data-race on update operation (Fernando Fernandez Mancera)
- netfilter: nft_set_pipapo: fix range overlap detection (Florian Westphal)
- arm64: dts: mba8mx: Fix Ethernet PHY IRQ support (Alexander Stein)
- arm64: dts: imx8qm-ss-dma: correct the dma channels of lpuart (Sherry Sun)
- arm64: dts: imx8mp: Fix LAN8740Ai PHY reference clock on DH electronics i.MX8M Plus DHCOM (Marek Vasut)
- ARM: dts: imx6q-ba16: fix RTC interrupt level (Ian Ray)
- arm64: dts: add off-on-delay-us for usdhc2 regulator (Haibo Chen)
- crypto: qat - fix duplicate restarting msg during AER error (Harshita Bhilwaria)
- arm64: dts: ti: k3-am62-lp-sk-nand: Rename pinctrls to fix schema warnings (Wadim Egorov)
- drm/amd/display: Apply e4479aecf658 to dml (Nathan Chancellor)
- drm/amd/display: Respect user's CONFIG_FRAME_WARN more for dml files (Nathan Chancellor)
- btrfs: fix NULL dereference on root when tracing inode eviction (Miquel Sabaté Solà)
- btrfs: tracepoints: use btrfs_root_id() to get the id of a root (Filipe Manana)
- btrfs: qgroup: update all parent qgroups when doing quick inherit (Qu Wenruo)
- btrfs: fix qgroup_snapshot_quick_inherit() squota bug (Boris Burkov)
- scsi: Revert "scsi: libsas: Fix exp-attached device scan after probe failure scanned in again after probe failed" (Xingui Yang)
- scsi: ufs: core: Fix EH failure after W-LUN resume error (Brian Kao)
- scsi: ipr: Enable/disable IRQD_NO_BALANCING during reset (Wen Xiong)
- smb/client: fix NT_STATUS_NO_DATA_DETECTED value (Chenxiaosong)
- smb/client: fix NT_STATUS_DEVICE_DOOR_OPEN value (Chenxiaosong)
- smb/client: fix NT_STATUS_UNABLE_TO_FREE_VM value (Chenxiaosong)
- drm/amd/display: shrink struct members (Rosen Penev)
- NFS: Fix up the automount fs_context to use the correct cred (Trond Myklebust)
- ASoC: rockchip: Fix Wvoid-pointer-to-enum-cast warning (again) (Krzysztof Kozlowski)
- NFSv4: ensure the open stateid seqid doesn't go backwards (Scott Mayhew)
- dm-snapshot: fix 'scheduling while atomic' on real-time kernels (Mikulas Patocka)
- alpha: don't reference obsolete termio struct for TC* constants (Sam James)
- ARM: 9461/1: Disable HIGHPTE on PREEMPT_RT kernels (Sebastian Andrzej Siewior)
- csky: fix csky_cmpxchg_fixup not working (Yang Li)
- drm/xe: Ensure GT is in C0 during resumes (Xin Wang)
- drm/xe: make xe_gt_idle_disable_c6() handle the forcewake internally (Xin Wang)
- libceph: make calc_target() set t->paused, not just clear it (Ilya Dryomov)
- libceph: reset sparse-read state in osd_fault() (Sam Edwards)
- libceph: return the handler error from mon_handle_auth_done() (Ilya Dryomov) [Orabug: 38887696] {CVE-2026-22992}
- libceph: make free_choose_arg_map() resilient to partial allocation (Tuo Li) [Orabug: 38887690] {CVE-2026-22991}
- libceph: replace overzealous BUG_ON in osdmap_apply_incremental() (Ilya Dryomov) [Orabug: 38887684] {CVE-2026-22990}
- libceph: prevent potential out-of-bounds reads in handle_auth_done() (Ziming Zhang) [Orabug: 38887672] {CVE-2026-22984}
- wifi: mac80211: restore non-chanctx injection behaviour (Johannes Berg)
- wifi: avoid kernel-infoleak from struct iw_point (Eric Dumazet) [Orabug: 38887649] {CVE-2026-22978}
- pinctrl: qcom: lpass-lpi: mark the GPIO controller as sleeping (Bartosz Golaszewski)
- gpio: rockchip: mark the GPIO controller as sleeping (Bartosz Golaszewski)
- drm/radeon: Remove __counted_by from ClockInfoArray.clockInfo[] (Alex Deucher)
- drm/pl111: Fix error handling in pl111_amba_probe (Miaoqian Lin)
- drm/amdgpu: Fix query for VPE block_type and ip_count (Alan Liu)
- counter: interrupt-cnt: Drop IRQF_NO_THREAD flag (Alexander Sverdlin)
- counter: 104-quad-8: Fix incorrect return value in IRQ handler (Xu Wang)
- lib/crypto: aes: Fix missing MMU protection for AES S-box (Eric Biggers)
- mei: me: add nova lake point S DID (Alexander Usyskin)
- btrfs: always detect conflicting inodes when logging inode refs (Filipe Manana)
- arm64: Fix cleared E0POE bit after cpu_suspend()/resume() (Levi Yun)
- net: 3com: 3c59x: fix possible null dereference in vortex_probe1() (Thomas Fourier)
- atm: Fix dma_free_coherent() size (Thomas Fourier)
- NFSD: Remove NFSERR_EAGAIN (Chuck Lever)
- NFSD: net ref data still needs to be freed even if net hasn't startup (Edward Adam Davis)
- nfsd: check that server is running in unlock_filesystem (Olga Kornievskaia) [Orabug: 38887681] {CVE-2026-22989}
- nfsd: use correct loop termination in nfsd4_revoke_states() (Neil Brown)
- nfsd: provide locking for v4_end_grace (Neil Brown) [Orabug: 38887658] {CVE-2026-22980}
- NFSD: Fix permission check for read access to executable-only files (Scott Mayhew)
- LTS version: v6.12.65 (Jack Vogel)
- pwm: stm32: Always program polarity (Sean Nyekjaer)
- virtio_console: fix order of fields cols and rows (Maximilian Immanuel Brandtner)
- sched/fair: Small cleanup to update_newidle_cost() (Peter Zijlstra)
- sched/fair: Small cleanup to sched_balance_newidle() (Peter Zijlstra)
- net: Remove RTNL dance for SIOCBRADDIF and SIOCBRDELIF. (Thadeu Lima de Souza Cascardo) [Orabug: 37844499] {CVE-2025-22111}
- cpufreq: intel_pstate: Check IDA only before MSR_IA32_PERF_CTL writes (Richa Bharti)
- drm/amdgpu: Forward VMID reservation errors (Natalie Vock)
- net: phy: mediatek: fix nvmem cell reference leak in mt798x_phy_calibration (Miaoqian Lin)
- wifi: mac80211: Discard Beacon frames to non-broadcast address (Jouni Malinen) [Orabug: 38852360] {CVE-2025-71127}
- mptcp: ensure context reset on disconnect() (Paolo Abeni) [Orabug: 38852416] {CVE-2025-71144}
- mm: consider non-anon swap cache folios in folio_expected_ref_count() (Bijan Tabatabai)
- mm: simplify folio_expected_ref_count() (David Hildenbrand)
- mm/page_alloc: change all pageblocks migrate type on coalescing (Alexander Gordeev) [Orabug: 38852382] {CVE-2025-71134}
- mptcp: fallback earlier on simult connection (Paolo Abeni) [Orabug: 38848079] {CVE-2025-71088}
-
Wed Jan 21 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.64.6.el9uek]
- tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock(). (Kuniyuki Iwashima) [Orabug: 38649136] {CVE-2025-40149}
-
Tue Jan 20 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.64.5.el9uek]
- net/mlx5: Update mlx5_ifc to support FEC for 200G per lane link modes (Jianbo Liu) [Orabug: 38859067]
-
Tue Jan 13 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.64.4.el9uek]
- fuse: fix runtime warning on truncate_folio_batch_exceptionals() (Haiyue Wang) [Orabug: 38516705] {CVE-2025-38357}
- PCI/AER: Avoid NULL pointer dereference in aer_ratelimit() (Breno Leitao) [Orabug: 38597009] {CVE-2025-40034}
- bnxt_en: Shutdown FW DMA in bnxt_shutdown() (Michael Chan) [Orabug: 38747442] {CVE-2025-40330}
- mlx5: Fix default values in create CQ (Akiva Goldberger) [Orabug: 38750222,38773368] {CVE-2025-68209}
- RDMA/cm: Base cm_id destruction timeout on CMA values (Håkon Bugge) [Orabug: 38753653]
- bnxt_en: Fix null pointer dereference in bnxt_bs_trace_check_wrap() (Gautam R A) [Orabug: 38773315] {CVE-2025-68197}
- LTS version: v6.12.64 (Jack Vogel)
- block: fix NULL pointer dereference in blk_zone_reset_all_bio_endio() (Damien Le Moal)
- iomap: allocate s_dio_done_wq for async reads as well (Christoph Hellwig) [Orabug: 38798795] {CVE-2025-68357}
- mm/damon/tests/vaddr-kunit: handle alloc failures on damon_do_test_apply_three_regions() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failres in damon_test_new_filter() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_split_regions_of() (Seongjae Park)
- vfio/pci: Disable qword access to the PCI ROM bar (Kevin Tian)
- media: amphion: Remove vpu_vb_is_codecconfig (Ming Qian)
- media: amphion: Make some vpu_v4l2 functions static (Laurent Pinchart)
- media: amphion: Add a frame flush mode for decoder (Ming Qian)
- media: mediatek: vcodec: Use spinlock for context list protection lock (Chen-Yu Tsai)
- powerpc/pseries/cmm: adjust BALLOON_MIGRATE when migrating pages (David Hildenbrand)
- mm/balloon_compaction: convert balloon_page_delete() to balloon_page_finalize() (David Hildenbrand)
- mm/balloon_compaction: we cannot have isolated pages in the balloon list (David Hildenbrand)
- PCI: brcmstb: Fix disabling L0s capability (Jim Quinlan)
- PCI: brcmstb: Set MLW based on "num-lanes" DT property if present (Jim Quinlan)
- PCI: brcmstb: Reuse pcie_cfg_data structure (Stanimir Varbanov)
- ASoC: renesas: rz-ssi: Fix rz_ssi_priv::hw_params_cache::sample_width (Biju Das)
- ASoC: qcom: sdw: fix memory leak for sdw_stream_runtime (Srinivas Kandagatla)
- soundwire: stream: extend sdw_alloc_stream() to take 'type' parameter (Pierre-Louis Bossart)
- block: handle zone management operations completions (Damien Le Moal)
- ASoC: renesas: rz-ssi: Fix channel swap issue in full duplex mode (Biju Das)
- gve: defer interrupt enabling until NAPI registration (Ankit Garg) [Orabug: 38887626] {CVE-2025-71156}
- hrtimers: Make hrtimer_update_function() less expensive (Thomas Gleixner)
- idpf: remove obsolete stashing code (Joshua Hay)
- idpf: stop Tx if there are insufficient buffer resources (Joshua Hay)
- idpf: replace flow scheduling buffer ring with buffer pool (Joshua Hay)
- idpf: simplify and fix splitq Tx packet rollback error path (Joshua Hay)
- idpf: improve when to set RE bit logic (Joshua Hay)
- idpf: add support for Tx refillqs in flow scheduling mode (Joshua Hay)
- idpf: trigger SW interrupt when exiting wb_on_itr mode (Joshua Hay)
- idpf: add support for SW triggered interrupts (Joshua Hay)
- wifi: mt76: mt7925: add handler to hif suspend/resume event (Quan Zhou)
- wifi: mt76: mt7925: fix CLC command timeout when suspend/resume (Quan Zhou)
- wifi: mt76: mt7925: fix the unfinished command of regd_notifier before suspend (Quan Zhou)
- media: i2c: imx219: Fix 1920x1080 mode to use 1:1 pixel aspect ratio (Dave Stevenson)
- x86/microcode/AMD: Select which microcode patch to load (Borislav Petkov)
- tty: fix tty_port_tty_*hangup() kernel-doc (Jiri Slaby)
- serial: core: Fix serial device initialization (Alexander Stein)
- usbnet: Fix using smp_processor_id() in preemptible code warnings (Zqiang) [Orabug: 38649205] {CVE-2025-40164}
- net: use dst_dev_rcu() in sk_setup_caps() (Eric Dumazet) [Orabug: 38649240] {CVE-2025-40170}
- ipv6: adopt dst_dev() helper (Eric Dumazet)
- net: ipv6: ioam6: use consistent dst names (Justin Iurman)
- drm/panthor: Flush shmem writes before mapping buffers CPU-uncached (Boris Brezillon)
- md/raid10: wait barrier before returning discard request with REQ_NOWAIT (Xiao Ni) [Orabug: 37855392] {CVE-2025-40325}
- netfilter: nft_ct: add seqadj extension for natted connections (Andrii Melnychenko) [Orabug: 38773355] {CVE-2025-68206}
- gpiolib: acpi: Add quirk for Dell Precision 7780 (Askar Safin)
- gpiolib: acpi: Add quirk for ASUS ProArt PX13 (Mario Limonciello)
- gpiolib: acpi: Add a quirk for Acer Nitro V15 (Mario Limonciello)
- gpiolib: acpi: Move quirks to a separate file (Andy Shevchenko)
- gpiolib: acpi: Add acpi_gpio_need_run_edge_events_on_boot() getter (Andy Shevchenko)
- gpiolib: acpi: Handle deferred list via new API (Andy Shevchenko)
- gpiolib: acpi: Switch to use enum in acpi_gpio_in_ignore_list() (Andy Shevchenko)
- f2fs: fix to propagate error from f2fs_enable_checkpoint() (Chao Yu)
- f2fs: dump more information for f2fs_{enable,disable}_checkpoint() (Chao Yu)
- f2fs: add timeout in f2fs_enable_checkpoint() (Chao Yu)
- f2fs: clear SBI_POR_DOING before initing inmem curseg (Sheng Yong)
- serial: xilinx_uartps: fix rs485 delay_rts_after_send (Jakub Turek)
- serial: xilinx_uartps: Use helper function hrtimer_update_function() (Nam Cao)
- hrtimers: Introduce hrtimer_update_function() (Nam Cao)
- drm/displayid: add quirk to ignore DisplayID checksum errors (Jani Nikula)
- sched_ext: Fix missing post-enqueue handling in move_local_task_to_local_dsq() (Tejun Heo)
- sched_ext: Factor out local_dsq_post_enq() from dispatch_enqueue() (Tejun Heo)
- tpm2-sessions: Fix tpm2_read_public range checks (Jarkko Sakkinen)
- block: freeze queue when updating zone resources (Damien Le Moal)
- ARM: dts: microchip: sama7g5: fix uart fifo size to 32 (Nicolas Ferre)
- svcrdma: bound check rq_pages index in inline path (Joshua Rogers) [Orabug: 38847975] {CVE-2025-71068}
- mm/ksm: fix exec/fork inheritance support for prctl (Xu Xin)
- mptcp: pm: ignore unknown endpoint flags (Matthieu Baerts)
- serial: core: Restore sysfs fwnode information (Andy Shevchenko)
- serial: core: fix OF node leak (Johan Hovold)
- f2fs: fix to avoid updating compression context during writeback (Chao Yu)
- f2fs: drop inode from the donation list when the last file is closed (Jaegeuk Kim)
- f2fs: use global inline_xattr_slab instead of per-sb slab cache (Chao Yu)
- f2fs: fix to detect recoverable inode during dryrun of find_fsync_dnodes() (Chao Yu)
- xhci: dbgtty: fix device unregister: fixup (Łukasz Bartosik)
- tty: introduce and use tty_port_tty_vhangup() helper (Jiri Slaby)
- jbd2: fix the inconsistency between checksum and data in memory for journal sb (Ye Bin)
- sched_ext: Fix incorrect sched_class settings for per-cpu migration tasks (Zqiang)
- erofs: fix unexpected EIO under memory pressure (Junbeom Yeom)
- sched/eevdf: Fix min_vruntime vs avg_vruntime (Peter Zijlstra)
- btrfs: don't rewrite ret from inode_permission (Josef Bacik)
- gfs2: fix freeze error handling (Alexey Velichayshiy)
- lib/crypto: riscv/chacha: Avoid s0/fp register (Vivian Wang)
- drm/imagination: Disallow exporting of PM/FW protected objects (Alessio Belle)
- drm/nouveau/dispnv50: Don't call drm_atomic_get_crtc_state() in prepare_fb (Lyude Paul)
- drm/i915/gem: Zero-initialize the eb.vma array in i915_gem_do_execbuffer (Niemiec, Krzysztof) [Orabug: 38852366] {CVE-2025-71130}
- drm/msm/dpu: Add missing NULL pointer check for pingpong interface (Nikolay Kuratov) [Orabug: 38852395] {CVE-2025-71138}
- drm/xe: Drop preempt-fences when destroying imported dma-bufs. (Thomas Hellström)
- drm/xe: Use usleep_range for accurate long-running workload timeslicing (Matthew Brost)
- drm/xe: Adjust long-running workload timeslices to reasonable values (Matthew Brost)
- drm/xe/oa: Disallow 0 OA property values (Ashutosh Dixit)
- drm/xe/bo: Don't include the CCS metadata in the dma-buf sg-table (Thomas Hellström)
- drm/mgag200: Fix big-endian support (René Rebe)
- drm/ttm: Avoid NULL pointer deref for evicted BOs (Simon Richter) [Orabug: 38848051] {CVE-2025-71083}
- drm/i915: Fix format string truncation warning (Ard Biesheuvel)
- drm/amdkfd: Trap handler support for expert scheduling mode (Jay Cornwall)
- drm/amdkfd: bump minimum vgpr size for gfx1151 (Jonathan Kim)
- drm/amdkfd: Export the cwsr_size and ctl_stack_size to userspace (Mario Limonciello)
- drm/mediatek: Fix probe device leaks (Johan Hovold)
- drm/mediatek: Fix probe memory leak (Johan Hovold)
- drm/mediatek: Fix probe resource leaks (Johan Hovold)
- drm/mediatek: Fix device node reference leak in mtk_dp_dt_parse() (Miaoqian Lin)
- drm/xe/oa: Fix potential UAF in xe_oa_add_config_ioctl() (Sanjay Yadav)
- drm/edid: add DRM_EDID_IDENT_INIT() to initialize struct drm_edid_ident (Jani Nikula)
- drm/gma500: Remove unused helper psb_fbdev_fb_setcolreg() (Thomas Zimmermann)
- drm/buddy: Separate clear and dirty free block trees (Arunpravin Paneer Selvam)
- drm/buddy: Optimize free block management with RB tree (Arunpravin Paneer Selvam)
- drm/msm/a6xx: Fix out of bound IO access in a6xx_get_gmu_registers (Akhil P Oommen)
- drm/amdgpu/gmc11: add amdgpu_vm_handle_fault() handling (Alex Deucher)
- drm/amdgpu: add missing lock to amdgpu_ttm_access_memory_sdma (Pierre-Eric Pelloux-Prayer)
- drm/amdgpu/gmc12: add amdgpu_vm_handle_fault() handling (Alex Deucher)
- Revert "drm/amd: Skip power ungate during suspend for VPE" (Mario Limonciello)
- net: macb: Relocate mog_init_rings() callback from macb_mac_link_up() to macb_open() (Xiaolei Wang)
- net: nfc: fix deadlock between nfc_unregister_device and rfkill_fop_write (Deepanshu Kartikey)
- net: usb: sr9700: fix incorrect command used to write single register (Ethan Nelson-Moore)
- nfsd: Drop the client reference in client_states_open() (Haoxiang Li)
- LoongArch: BPF: Sign extend kfunc call arguments (Hengqi Chen)
- LoongArch: BPF: Zero-extend bpf_tail_call() index (Hengqi Chen)
- LoongArch: Refactor register restoration in ftrace_common_return (Duan Chenghao)
- fjes: Add missing iounmap in fjes_hw_init() (Haoxiang Li)
- e1000: fix OOB in e1000_tbi_should_accept() (Guangshuo Li) [Orabug: 38848098] {CVE-2025-71093}
- RDMA/cm: Fix leaking the multicast GID table reference (Jason Gunthorpe) [Orabug: 38848057] {CVE-2025-71084}
- RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly (Jason Gunthorpe) [Orabug: 38848116] {CVE-2025-71096}
- samples/ftrace: Adjust LoongArch register restore order in direct calls (Duan Chenghao)
- tools/mm/page_owner_sort: fix timestamp comparison for stable sorting (Kaushlendra Kumar)
- x86/microcode/AMD: Fix Entrysign revision check for Zen5/Strix Halo (Rongrong)
- mm/page_owner: fix memory leak in page_owner_stack_fops->release() (Ran Xiaokai)
- idr: fix idr_alloc() returning an ID out of range (Matthew Wilcox)
- lockd: fix vfs_test_lock() calls (Neil Brown)
- kasan: unpoison vms[area] addresses with a common tag (Maciej Wieczor-Retman)
- kasan: refactor pcpu kasan vmalloc unpoison (Maciej Wieczor-Retman)
- compiler_types.h: add "auto" as a macro for "__auto_type" (H. Peter Anvin)
- pmdomain: imx: Fix reference count leak in imx_gpc_probe() (Xu Wang)
- mm/damon/tests/core-kunit: handle alloc failure on damon_test_set_attrs() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures in damon_test_ops_registration() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures in damon_test_update_monitoring_result() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures in damon_test_set_regions() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_merge_two() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on dasmon_test_merge_regions_of() (Seongjae Park)
- mm/damon/tests/core-kunit: handle memory alloc failure from damon_test_aggregate() (Seongjae Park)
- mm/damon/tests/core-kunit: handle memory failure from damon_test_target() (Seongjae Park)
- mm/damon/tests/core-kunit: handle allocation failures in damon_test_regions() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_split_at() (Seongjae Park)
- mm/damon/tests/vaddr-kunit: handle alloc failures on damon_test_split_evenly_succ() (Seongjae Park)
- mm/damon/tests/vaddr-kunit: handle alloc failures in damon_test_split_evenly_fail() (Seongjae Park)
- mm/damon/tests/sysfs-kunit: handle alloc failures on damon_sysfs_test_add_targets() (Seongjae Park)
- LoongArch: Use unsigned long for _end and _text (Tiezhu Yang)
- LoongArch: Use __pmd()/__pte() for swap entry conversions (Wangyuli)
- LoongArch: Fix build errors for CONFIG_RANDSTRUCT (Huacai Chen)
- LoongArch: Correct the calculation logic of thread_count (Maqiang)
- LoongArch: Add new PCI ID for pci_fixup_vgadev() (Huacai Chen)
- media: mediatek: vcodec: Fix a reference leak in mtk_vcodec_fw_vpu_init() (Haoxiang Li)
- media: i2c: adv7842: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: i2c: ADV7604: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: amphion: Cancel message work before releasing the VPU core (Ming Qian)
- media: vpif_display: fix section mismatch (Johan Hovold)
- media: vpif_capture: fix section mismatch (Johan Hovold)
- media: videobuf2: Fix device reference leak in vb2_dc_alloc error path (Xu Wang)
- media: verisilicon: Protect G2 HEVC decoder against invalid DPB index (Nicolas Dufresne)
- media: TDA1997x: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: samsung: exynos4-is: fix potential ABBA deadlock on init (Marek Szyprowski)
- media: renesas: rcar_drif: fix device node reference leak in rcar_drif_bond_enabled (Miaoqian Lin)
- media: platform: mtk-mdp3: fix device leaks at probe (Johan Hovold)
- media: msp3400: Avoid possible out-of-bounds array accesses in msp3400c_thread() (Ivan Abramov)
- media: cec: Fix debugfs leak on bus_register() failure (Xu Wang)
- fbdev: tcx.c fix mem_map to correct smem_start offset (René Rebe)
- fbdev: pxafb: Fix multiple clamped values in pxafb_adjust_timing (Thorsten Blum)
- fbdev: gbefb: fix to use physical address instead of dma address (René Rebe)
- dm-bufio: align write boundary on physical block size (Mikulas Patocka)
- dm-ebs: Mark full buffer dirty even on partial write (Uladzislau Rezki)
- firmware: stratix10-svc: Add mutex in stratix10 memory management (Mahesh Rao)
- media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() (Ivan Abramov)
- powerpc/pseries/cmm: call balloon_devinfo_init() also without CONFIG_BALLOON_COMPACTION (David Hildenbrand)
- perf/x86/amd/uncore: Fix the return value of amd_uncore_df_event_init() on error (Sandipan Das)
- parisc: entry: set W bit for !compat tasks in syscall_restore_rfi() (Sven Schnelle)
- parisc: entry.S: fix space adjustment on interruption for 64-bit userspace (Sven Schnelle)
- mtd: spi-nor: winbond: Add support for W25H02NWxxAM chips (Miquel Raynal)
- mtd: spi-nor: winbond: Add support for W25H01NWxxAM chips (Miquel Raynal)
- mtd: spi-nor: winbond: Add support for W25H512NWxxAM chips (Miquel Raynal)
- mtd: spi-nor: winbond: Add support for W25Q02NWxxIM chips (Miquel Raynal)
- mtd: spi-nor: winbond: Add support for W25Q01NWxxIM chips (Miquel Raynal)
- mtd: spi-nor: winbond: Add support for W25Q01NWxxIQ chips (Miquel Raynal)
- mtd: mtdpart: ignore error -ENOENT from parsers on subpartitions (Christian Marangi)
- media: verisilicon: Fix CPU stalls on G2 bus error (Nicolas Dufresne)
- media: rc: st_rc: Fix reset control resource leak (Xu Wang)
- mfd: max77620: Fix potential IRQ chip conflict when probing two devices (Krzysztof Kozlowski)
- mfd: altera-sysmgr: Fix device leak on sysmgr regmap lookup (Johan Hovold)
- clk: samsung: exynos-clkout: Assign .num before accessing .hws (Nathan Chancellor) [Orabug: 38852404] {CVE-2025-71143}
- block: Clear BLK_ZONE_WPLUG_PLUGGED when aborting plugged BIOs (Damien Le Moal)
- leds: leds-lp50xx: Enable chip before any communication (Christian Hitz)
- leds: leds-lp50xx: LP5009 supports 3 modules for a total of 9 LEDs (Christian Hitz)
- leds: leds-lp50xx: Allow LED 0 to be added to module bank (Christian Hitz)
- leds: leds-cros_ec: Skip LEDs without color components (Thomas Weißschuh)
- powerpc/64s/slb: Fix SLB multihit issue during SLB preload (Donet Tom)
- powerpc, mm: Fix mprotect on book3s 32-bit (Dave Vasilevsky)
- arm64: dts: ti: k3-j721e-sk: Fix pinmux for pin Y1 used by power regulator (Siddharth Vadapalli)
- PCI/PM: Reinstate clearing state_saved in legacy and !PM codepaths (Lukas Wunner)
- fgraph: Check ftrace_pids_enabled on registration for early filtering (Shengming Hu)
- fgraph: Initialize ftrace_ops->private for function graph ops (Shengming Hu)
- HID: logitech-dj: Remove duplicate error logging (Hans de Goede)
- iommu: disable SVA when CONFIG_X86 is set (Lu Baolu) [Orabug: 38848082] {CVE-2025-71089}
- iommu/tegra: fix device leak on probe_device() (Johan Hovold)
- iommu/sun50i: fix device leak on of_xlate() (Johan Hovold)
- iommu/qcom: fix device leak on of_xlate() (Johan Hovold)
- iommu/omap: fix device leaks on probe_device() (Johan Hovold)
- iommu/mediatek: fix device leak on of_xlate() (Johan Hovold)
- iommu/mediatek-v1: fix device leaks on probe() (Johan Hovold)
- iommu/mediatek-v1: fix device leak on probe_device() (Johan Hovold)
- iommu/ipmmu-vmsa: fix device leak on of_xlate() (Johan Hovold)
- iommu/exynos: fix device leak on of_xlate() (Johan Hovold)
- iommu/apple-dart: fix device leak on of_xlate() (Johan Hovold)
- iommu/amd: Propagate the error code returned by __modify_irte_ga() in modify_irte_ga() (Jinhui Guo)
- iommu/amd: Fix pci_segment memleak in alloc_pci_segment() (Jinhui Guo)
- ASoC: qcom: qdsp6: q6asm-dai: set 10 ms period and buffer alignment. (Srinivas Kandagatla)
- ASoC: qcom: q6adm: the the copp device only during last instance (Srinivas Kandagatla)
- ASoC: qcom: q6asm-dai: perform correct state check before closing (Srinivas Kandagatla)
- ASoC: qcom: q6apm-dai: set flags to reflect correct operation of appl_ptr (Srinivas Kandagatla)
- ASoC: codecs: lpass-tx-macro: fix SM6115 support (Srinivas Kandagatla)
- ASoC: stm32: sai: fix OF node leak on probe (Johan Hovold)
- ASoC: stm32: sai: fix clk prepare imbalance on probe failure (Johan Hovold)
- ASoC: stm32: sai: fix device leak on probe (Johan Hovold)
- ASoC: codecs: wcd939x: fix regmap leak on probe failure (Johan Hovold)
- ntfs: Do not overwrite uptodate pages (Matthew Wilcox)
- selftests/ftrace: traceonoff_triggers: strip off names (Yipeng Zou)
- blk-mq: skip CPU offline notify on unmapped hctx (Cong Zhang)
- RDMA/bnxt_re: fix dma_free_coherent() pointer (Thomas Fourier)
- RDMA/rtrs: Fix clt_path::max_pages_per_mr calculation (Lihonggang)
- ksmbd: Fix memory leak in get_file_all_info() (Zilin Guan)
- md/raid5: fix possible null-pointer dereferences in raid5_store_group_thread_cnt() (Tuo Li) [Orabug: 38852384] {CVE-2025-71135}
- md: Fix static checker warning in analyze_sbs (Li Nan)
- RDMA/bnxt_re: Fix to use correct page size for PDE table (Kalesh Ap)
- RDMA/bnxt_re: Fix IB_SEND_IP_CSUM handling in post_send (Alok Tiwari)
- RDMA/core: always drop device refcount in ib_del_sub_device_and_put() (Tetsuo Handa) [Orabug: 38887628] {CVE-2025-71157}
- RDMA/bnxt_re: Fix incorrect BAR check in bnxt_qplib_map_creq_db() (Alok Tiwari)
- RDMA/core: Fix logic error in ib_get_gids_from_rdma_hdr() (Jang Ingyu)
- RDMA/efa: Remove possible negative shift (Michael Margolin)
- RDMA/irdma: avoid invalid read in irdma_net_event (Michal Schmidt) [Orabug: 38852378] {CVE-2025-71133}
- ipv6: fix a BUG in rt6_get_pcpu_route() under PREEMPT_RT (Jiayuan Chen) [Orabug: 38848033] {CVE-2025-71080}
- net: rose: fix invalid array index in rose_kill_by_device() (Pwnverse)
- ipv4: Fix reference count leak when using error routes with nexthop objects (Ido Schimmel) [Orabug: 38848124] {CVE-2025-71097}
- ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() (Will Rosenberg) [Orabug: 38848060] {CVE-2025-71085}
- net: stmmac: fix the crash issue for zero copy XDP_TX action (Wei Fang) [Orabug: 38848110] {CVE-2025-71095}
- octeontx2-pf: fix "UBSAN: shift-out-of-bounds error" (Anshumali Gaur)
- platform/x86: hp-bioscfg: Fix out-of-bounds array access in ACPI package parsing (Junrui Luo) [Orabug: 38848146] {CVE-2025-71101}
- vfio/pds: Fix memory leak in pds_vfio_dirty_enable() (Zilin Guan)
- net: bridge: Describe @tunnel_hash member in net_bridge_vlan_group struct (Bagas Sanjaya)
- net: usb: asix: validate PHY address before use (Deepanshu Kartikey) [Orabug: 38848106] {CVE-2025-71094}
- kbuild: fix compilation of dtb specified on command-line without make rule (Thomas De Schampheleire)
- net: dsa: b53: skip multicast entries for fdb_dump() (Jonas Gorski)
- firewire: nosy: Fix dma_free_coherent() size (Thomas Fourier)
- genalloc.h: fix htmldocs warning (Andrew Morton)
- smc91x: fix broken irq-context in PREEMPT_RT (Levi Yun) [Orabug: 38852375] {CVE-2025-71132}
- selftests: net: fix "buffer overflow detected" for tap.c (Alice C. Munduruca)
- net: usb: rtl8150: fix memory leak on usb_submit_urb() failure (Deepakkumar Karn) [Orabug: 38887618] {CVE-2025-71154}
- amd-xgbe: reset retries and mode on RX adapt failures (Raju Rangoju)
- net: dsa: fix missing put_device() in dsa_tree_find_first_conduit() (Vladimir Oltean)
- team: fix check for port enabled in team_queue_override_port_prio_changed() (Jiri Pirko) [Orabug: 38848087] {CVE-2025-71091}
- platform/x86: ibm_rtl: fix EBDA signature search pointer arithmetic (Junrui Luo)
- platform/x86: msi-laptop: add missing sysfs_remove_group() (Thomas Fourier)
- platform/mellanox: mlxbf-pmc: Remove trailing whitespaces from event names (Shravan Kumar Ramani)
- ip6_gre: make ip6gre_header() robust (Eric Dumazet) [Orabug: 38848130] {CVE-2025-71098}
- net: openvswitch: Avoid needlessly taking the RTNL on vport destroy (Toke Høiland-Jørgensen)
- net: mdio: aspeed: add dummy read to avoid read-after-write issue (Jacky Chou)
- Bluetooth: btusb: revert use of devm_kzalloc in btusb (Raphael Pinsonneault-Thibeault) [Orabug: 38848042] {CVE-2025-71082}
- crypto: seqiv - Do not use req->iv after crypto_aead_encrypt (Herbert Xu) [Orabug: 38852369] {CVE-2025-71131}
- idpf: reduce mbx_task schedule delay to 300us (Brian Vazquez)
- iavf: fix off-by-one issues in iavf_config_rss_reg() (Kohei Enju) [Orabug: 38848072] {CVE-2025-71087}
- i40e: validate ring_len parameter against hardware-specific values (Gregory Herrero)
- i40e: fix scheduling in set_rx_mode (Przemyslaw Korba)
- wifi: mac80211: do not use old MBSSID elements (Aloka Dixit)
- wifi: cfg80211: sme: store capped length in __cfg80211_connect_result() (Dan Carpenter)
- wifi: rtlwifi: 8192cu: fix tid out of range in rtl92cu_tx_fill_desc() (Morning Star) [Orabug: 38848143] {CVE-2025-71100}
- wifi: rtw88: limit indirect IO under powered off for RTL8822CS (Ping-Ke Shih)
- fuse: fix readahead reclaim deadlock (Joanne Koong) [Orabug: 38847945] {CVE-2025-68821}
- iommu/mediatek: fix use-after-free on probe deferral (Johan Hovold)
- x86/msi: Make irq_retrigger() functional for posted MSI (Thomas Gleixner)
- ARM: dts: microchip: sama5d2: fix spi flexcom fifo size to 32 (Nicolas Ferre)
- hwmon: (w83l786ng) Convert macros to functions to avoid TOCTOU (Gui-Dong Han)
- hwmon: (w83791d) Convert macros to functions to avoid TOCTOU (Gui-Dong Han) [Orabug: 38852299] {CVE-2025-71111}
- hwmon: (max6697) fix regmap leak on probe failure (Johan Hovold)
- hwmon: (max16065) Use local variable to avoid TOCTOU (Gui-Dong Han)
- interconnect: qcom: sdx75: Drop QPIC interconnect and BCM nodes (Raviteja Laggyshetty)
- i2c: amd-mp2: fix reference leak in MP2 PCI device (Ma Ke)
- platform/x86: intel: chtwc_int33fe: don't dereference swnode args (Bartosz Golaszewski)
- rpmsg: glink: fix rpmsg device leak (Srinivas Kandagatla)
- soc: amlogic: canvas: fix device leak on lookup (Johan Hovold)
- soc: apple: mailbox: fix device leak on lookup (Johan Hovold)
- soc: qcom: ocmem: fix device leak on lookup (Johan Hovold)
- soc: qcom: pbs: fix device leak on lookup (Johan Hovold)
- soc: samsung: exynos-pmu: fix device leak on regmap lookup (Johan Hovold)
- tracing: Fix fixed array of synthetic event (Steven Rostedt)
- virtio: vdpa: Fix reference count leak in octep_sriov_enable() (Miaoqian Lin)
- amba: tegra-ahb: Fix device leak on SMMU enable (Johan Hovold)
- crypto: caam - Add check for kcalloc() in test_len() (Guangshuo Li)
- crypto: af_alg - zero initialize memory allocated via sock_kmalloc (Shivani Agarwal) [Orabug: 38852311] {CVE-2025-71113}
- dt-bindings: PCI: qcom,pcie-sm8550: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sm8450: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sm8350: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sm8250: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sm8150: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sc8280xp: Add missing required power-domains and resets (Krzysztof Kozlowski)
- dt-bindings: PCI: qcom,pcie-sc7280: Add missing required power-domains and resets (Krzysztof Kozlowski)
- arm64: Revamp HCR_EL2.E2H RES1 detection (Marc Zyngier)
- KVM: arm64: Initialize SCTLR_EL1 in __kvm_hyp_init_cpu() (Ahmed Genidi)
- KVM: arm64: Initialize HCR_EL2.E2H early (Mark Rutland)
- sched/rt: Fix race in push_rt_task (Harshit Agarwal) [Orabug: 38158721] {CVE-2025-38234}
- hsr: hold rcu and dev lock for hsr_get_port_ndev (Hangbin Liu)
- pinctrl: renesas: rzg2l: Fix ISEL restore on resume (Claudiu Beznea)
- ALSA: wavefront: Clear substream pointers on close (Junrui Luo)
- ALSA: wavefront: Use guard() for spin locks (Takashi Iwai)
- ALSA: hda: cs35l41: Fix NULL pointer dereference in cs35l41_hda_read_acpi() (Denis Arefev)
- drm/displayid: pass iter to drm_find_displayid_extension() (Jani Nikula)
- drm/amd/display: Fix scratch registers offsets for DCN351 (Ray Wu)
- drm/amd/display: Fix scratch registers offsets for DCN35 (Ray Wu)
- drm/amd/display: Use GFP_ATOMIC in dc_create_plane_state() (Alex Deucher)
- Revert "drm/amd/display: Fix pbn to kbps Conversion" (Mario Limonciello)
- io_uring: fix min_wait wakeups for SQPOLL (Jens Axboe)
- io_uring/poll: correctly handle io_poll_add() return value on update (Jens Axboe) [Orabug: 38887603] {CVE-2025-71149}
- gpio: regmap: Fix memleak in error path in gpio_regmap_register() (Guan Wentao)
- s390/ipl: Clear SBP flag when bootprog is set (Sven Schnelle)
- btrfs: don't log conflicting inode if it's a dir moved in the current transaction (Filipe Manana) [Orabug: 38847745] {CVE-2025-68778}
- powerpc/kexec: Enable SMT before waking offline CPUs (Nysal Jan K.A.)
- SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy_verf (Joshua Rogers) [Orabug: 38852340] {CVE-2025-71120}
- svcrdma: use rc_pageoff for memcpy byte offset (Joshua Rogers) [Orabug: 38847896] {CVE-2025-68811}
- svcrdma: return 0 on success from svc_rdma_copy_inline_range (Joshua Rogers)
- nfsd: Mark variable __maybe_unused to avoid W=1 build break (Andy Shevchenko)
- NFSD: NFSv4 file creation neglects setting ACL (Chuck Lever) [Orabug: 38847871] {CVE-2025-68803}
- NFSD: Clear SECLABEL in the suppattr_exclcreat bitmap (Chuck Lever)
- net/handshake: restore destructor on submit failure (Caoping) [Orabug: 38887600] {CVE-2025-71148}
- fsnotify: do not generate ACCESS/MODIFY events on child for special files (Amir Goldstein) [Orabug: 38847799] {CVE-2025-68788}
- net: phy: marvell-88q2xxx: Fix clamped value in mv88q2xxx_hwmon_write (Thorsten Blum)
- r8169: fix RTL8117 Wake-on-Lan in DASH mode (René Rebe)
- PM: runtime: Do not clear needs_force_resume with enabled runtime PM (Rafael J. Wysocki)
- tracing: Do not register unsupported perf events (Steven Rostedt) [Orabug: 38852354] {CVE-2025-71125}
- xfs: fix a UAF problem in xattr repair (Darrick J. Wong) [Orabug: 38847781] {CVE-2025-68784}
- xfs: fix stupid compiler warning (Darrick J. Wong)
- xfs: fix a memory leak in xfs_buf_item_init() (Haoxiang Li)
- KVM: nSVM: Clear exit_code_hi in VMCB when synthesizing nested VM-Exits (Sean Christopherson)
- KVM: nSVM: Set exit_code_hi to -1 when synthesizing SVM_EXIT_ERR (failed VMRUN) (Sean Christopherson)
- KVM: nVMX: Immediately refresh APICv controls as needed on nested VM-Exit (Dongli Zhang)
- KVM: SVM: Mark VMCB_PERM_MAP as dirty on nested VMRUN (Jim Mattson)
- KVM: nSVM: Propagate SVM_EXIT_CR0_SEL_WRITE correctly for LMSW emulation (Yosry Ahmed)
- KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (Jim Mattson)
- KVM: nSVM: Avoid incorrect injection of SVM_EXIT_CR0_SEL_WRITE (Yosry Ahmed)
- KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (Fuqiang Wang) [Orabug: 38852272] {CVE-2025-71104}
- KVM: x86: Explicitly set new periodic hrtimer expiration in apic_timer_fn() (Fuqiang Wang)
- KVM: x86: WARN if hrtimer callback for periodic APIC timer fires with period=0 (Sean Christopherson)
- powerpc: Add reloc_offset() to font bitmap pointer used for bootx_printf() (Finn Thain)
- libceph: make decode_pool() more resilient against corrupted osdmaps (Ilya Dryomov) [Orabug: 38852324] {CVE-2025-71116}
- parisc: Do not reprogram affinitiy on ASP chip (Helge Deller)
- scs: fix a wrong parameter in __scs_magic (Zhichi Lin)
- platform/chrome: cros_ec_ishtp: Fix UAF after unbinding driver (Tzung-Bi Shih)
- KVM: x86: Don't clear async #PF queue when CR0.PG is disabled (e.g. on #SMI) (Maxim Levitsky)
- ocfs2: fix kernel BUG in ocfs2_find_victim_chain (Prithvi Tambewagh) [Orabug: 38847687] {CVE-2025-68771}
- media: vidtv: initialize local pointers upon transfer of memory ownership (Jeongjun Park)
- KVM: Disallow toggling KVM_MEM_GUEST_MEMFD on an existing memslot (Sean Christopherson) [Orabug: 38847894] {CVE-2025-68810}
- tools/testing/nvdimm: Use per-DIMM device handle (Alison Schofield)
- f2fs: fix return value of f2fs_recover_fsync_data() (Chao Yu)
- f2fs: fix uninitialized one_time_gc in victim_sel_policy (Xiaole He)
- f2fs: fix age extent cache insertion skip on counter overflow (Xiaole He)
- f2fs: invalidate dentry cache on failed whiteout creation (Deepanshu Kartikey)
- f2fs: fix to avoid updating zero-sized extent in extent cache (Chao Yu)
- f2fs: fix to avoid potential deadlock (Chao Yu)
- f2fs: ensure node page reads complete before f2fs_put_super() finishes (Jan Prusakowski)
- scsi: ufs: core: Add ufshcd_update_evt_hist() for UFS suspend error (Seunghwan Baek)
- scsi: mpi3mr: Read missing IOCFacts flag for reply queue full overflow (Chandrakanth Patil)
- scsi: target: Reset t_task_cdb pointer in error case (Andrey Vatoropin) [Orabug: 38847769] {CVE-2025-68782}
- NFSD: use correct reservation type in nfsd4_scsi_fence_client (Dai Ngo)
- scsi: aic94xx: fix use-after-free in device removal path (Junrui Luo) [Orabug: 38848008] {CVE-2025-71075}
- scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" (Tony Battersby) [Orabug: 38847928] {CVE-2025-68818}
- cpufreq: nforce2: fix reference count leak in nforce2 (Miaoqian Lin)
- cpuidle: governors: teo: Drop misguided target residency check (Rafael J. Wysocki)
- serial: sh-sci: Check that the DMA cookie is valid (Claudiu Beznea)
- mei: gsc: add dependency on Xe driver (Junxiao Chang)
- intel_th: Fix error handling in intel_th_output_open (Ma Ke)
- char: applicom: fix NULL pointer dereference in ac_ioctl (Tianchu Chen)
- usb: renesas_usbhs: Fix a resource leak in usbhs_pipe_malloc() (Haoxiang Li)
- usb: dwc3: keep susphy enabled during exit to avoid controller faults (Udipto Goswami)
- usb: dwc3: of-simple: fix clock resource leak in dwc3_of_simple_probe (Miaoqian Lin)
- usb: gadget: lpc32xx_udc: fix clock imbalance in error path (Johan Hovold)
- usb: phy: isp1301: fix non-OF device reference imbalance (Johan Hovold)
- usb: phy: fsl-usb: Fix use-after-free in delayed work during device removal (Duoming Zhou)
- USB: lpc32xx_udc: Fix error handling in probe (Ma Ke)
- usb: typec: altmodes/displayport: Drop the device reference in dp_altmode_probe() (Haoxiang Li)
- usb: ohci-nxp: fix device leak on probe failure (Johan Hovold)
- phy: broadcom: bcm63xx-usbh: fix section mismatches (Johan Hovold)
- media: pvrusb2: Fix incorrect variable used in trace message (Colin Ian King)
- media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg() (Jeongjun Park) [Orabug: 38847936] {CVE-2025-68819}
- usb: usb-storage: Maintain minimal modifications to the bcdDevice range. (Chenchangcheng)
- mptcp: avoid deadlock on fallback while reinjecting (Paolo Abeni) [Orabug: 38852415] {CVE-2025-71126}
- mptcp: schedule rtx timer only after pushing data (Paolo Abeni)
- selftests: mptcp: pm: ensure unknown flags are ignored (Matthieu Baerts)
- media: v4l2-mem2mem: Fix outdated documentation (Laurent Pinchart)
- jbd2: use a weaker annotation in journal handling (Byungchul Park)
- jbd2: use a per-journal lock_class_key for jbd2_trans_commit_key (Tetsuo Handa)
- ext4: align max orphan file size with e2fsprogs limit (Baokun Li)
- ext4: fix incorrect group number assertion in mb_check_buddy (Yongjian Sun)
- ext4: clear i_state_flags when alloc inode (Haibo Chen)
- ext4: xattr: fix null pointer deref in ext4_raw_inode() (Karina Yankevich) [Orabug: 38848274] {CVE-2025-68820}
- ext4: fix string copying in parse_apply_sb_mount_options() (Fedor Pchelkin) [Orabug: 38852413] {CVE-2025-71123}
- tpm: Cap the number of PCR banks (Jarkko Sakkinen) [Orabug: 38848016] {CVE-2025-71077}
- ktest.pl: Fix uninitialized var in config-bisect.pl (Steven Rostedt)
- fs/ntfs3: fix mount failure for sparse runs in run_unpack() (Konstantin Komarov)
- kallsyms: Fix wrong "big" kernel symbol type read from procfs (Zheng Yejian)
- floppy: fix for PAGE_SIZE != 4KB (René Rebe)
- block: rate-limit capacity change info log (Li Chen)
- wifi: mt76: Fix DTS power-limits on little endian systems (Sven Eckelmann)
- s390/dasd: Fix gendisk parent after copy pair swap (Stefan Haberland)
- lib/crypto: x86/blake2s: Fix 32-bit arg treated as 64-bit (Eric Biggers)
- perf: arm_cspmu: fix error handling in arm_cspmu_impl_unregister() (Ma Ke)
- mmc: sdhci-msm: Avoid early clock doubling during HS400 transition (Sarthak Garg)
- x86/mce: Do not clear bank's poll bit in mce_poll_banks on AMD SMCA systems (Avadhut Naik)
- io_uring: fix filename leak in __io_openat_prep() (Prithvi Tambewagh) [Orabug: 38847904] {CVE-2025-68814}
- KEYS: trusted: Fix a memory leak in tpm2_load_cmd (Jarkko Sakkinen) [Orabug: 38887596] {CVE-2025-71147}
- cifs: Fix memory and information leak in smb3_reconfigure() (Zilin Guan) [Orabug: 38887608] {CVE-2025-71151}
- vhost/vsock: improve RCU read sections around vhost_vsock_get() (Stefano Garzarella)
- block: rnbd-clt: Fix signedness bug in init_dev() (Dan Carpenter)
- scsi: scsi_debug: Fix atomic write enable module param description (John Garry)
- MIPS: ftrace: Fix memory corruption when kernel is located beyond 32 bits (Gregory Clement)
- platform/x86/intel/hid: Add Dell Pro Rugged 10/12 tablet to VGBS DMI quirks (Chia-Lin Kao)
- nvme-fabrics: add ENOKEY to no retry criteria for authentication failures (Justin Tee)
- nvme-fc: don't hold rport lock when putting ctrl (Daniel Wagner)
- i2c: designware: Disable SMBus interrupts to prevent storms from mis-configured firmware (Jinhui Guo)
- clk: qcom: dispcc-sm7150: Fix dispcc_mdss_pclk0_clk_src (Jens Reidel)
- libperf cpumap: Fix perf_cpu_map__max for an empty/NULL map (Ian Rogers)
- serial: sprd: Return -EPROBE_DEFER when uart clock is not ready (Wenhua Lin)
- usb: usb-storage: No additional quirks need to be added to the EL-R12 optical drive. (Chenchangcheng)
- usb: xhci: limit run_graceperiod for only usb 3.0 devices (Hongyu Xie)
- iio: adc: ti_am335x_adc: Limit step_avg to valid range for gcc complains (Pei Xiao)
- usb: typec: ucsi: Handle incorrect num_connectors capability (Mark Pearson) [Orabug: 38852284] {CVE-2025-71108}
- usbip: Fix locking bug in RT-enabled kernels (Lizhi Xu)
- exfat: zero out post-EOF page cache on file extension (Yuezhang Mo)
- exfat: fix remount failure in different process environments (Yuezhang Mo)
- reset: fix BIT macro reference (Yongchao Jia)
- via_wdt: fix critical boot hang due to unnamed resource allocation (Li Qiang) [Orabug: 38852317] {CVE-2025-71114}
- fuse: Invalidate the page cache after FOPEN_DIRECT_IO write (Bernd Schubert)
- fuse: Always flush the page cache before FOPEN_DIRECT_IO write (Bernd Schubert)
- scsi: qla2xxx: Use reinit_completion on mbx_intr_comp (Tony Battersby)
- scsi: qla2xxx: Fix initiator mode with qlini_mode=exclusive (Tony Battersby)
- scsi: qla2xxx: Fix lost interrupts with qlini_mode=disabled (Tony Battersby)
- powerpc/addnote: Fix overflow on 32-bit builds (Ben Collins)
- clk: mvebu: cp110 add CLK_IGNORE_UNUSED to pcie_x10, pcie_x11 & pcie_x4 (Josua Mayer)
- scsi: smartpqi: Add support for Hurray Data new controller PCI device (David Strahan)
- ti-sysc: allow OMAP2 and OMAP4 timers to be reserved on AM33xx (Matthias Schiffer)
- firmware: imx: scu-irq: Init workqueue before request mbox channel (Peng Fan)
- scsi: ufs: host: mediatek: Fix shutdown/suspend race condition (Peter Wang)
- ipmi: Fix __scan_channels() failing to rescan channels (Jinhui Guo)
- ipmi: Fix the race between __scan_channels() and deliver_response() (Jinhui Guo)
- nfsd: fix memory leak in nfsd_create_serv error paths (Shardul Bankar)
- nfsd: rename nfsd_serv_ prefixed methods and variables with nfsd_net_ (Mike Snitzer)
- nfsd: update percpu_ref to manage references on nfsd_net (Mike Snitzer)
- ASoC: ak4458: remove the reset operation in probe and remove (Shengjiu Wang)
- ALSA: usb-mixer: us16x08: validate meter packet indices (Shipei Qu) [Orabug: 38847774] {CVE-2025-68783}
- ALSA: pcmcia: Fix resource leak in snd_pdacf_probe error path (Xu Wang)
- ALSA: vxpocket: Fix resource leak in vxpocket_probe error path (Xu Wang)
- x86/fpu: Fix FPU state core dump truncation on CPUs with no extended xfeatures (Yongxin Liu)
- net/hsr: fix NULL pointer dereference in prp_get_untagged_frame() (Shaurya Rane) [Orabug: 38847723] {CVE-2025-68776}
- dt-bindings: mmc: sdhci-of-aspeed: Switch ref to sdhci-common.yaml (Andrew Jeffery)
- mmc: sdhci-of-arasan: Increase CD stable timeout to 2 seconds (Sai Krishna Potthuri)
- mmc: sdhci-esdhc-imx: add alternate ARCH_S32 dependency to Kconfig (Jared Kangas)
- spi: fsl-cpm: Check length parity before switching to 16 bit mode (Christophe Leroy)
- ACPI: CPPC: Fix missing PCC check for guaranteed_perf (Pengjie Zhang)
- ACPI: PCC: Fix race condition by removing static qualifier (Pengjie Zhang)
- soc/tegra: fuse: Do not register SoC device on ACPI boot (Kartik)
- can: gs_usb: gs_can_open(): fix error handling (Marc Kleine-Budde)
- xfs: don't leak a locked dquot when xfs_dquot_attach_buf fails (Christoph Hellwig)
- Input: i8042 - add TUXEDO InfinityBook Max Gen10 AMD to i8042 quirk table (Christoffer Sandberg)
- Input: alps - fix use-after-free bugs caused by dev3_register_work (Duoming Zhou) [Orabug: 38847948] {CVE-2025-68822}
- Input: lkkbd - disable pending work before freeing device (Minseong Kim)
- Input: ti_am335x_tsc - fix off-by-one error in wire_order validation (Junjie Cao)
- HID: input: map HID_GD_Z to ABS_DISTANCE for stylus/pen (Ping Cheng)
- ksmbd: fix buffer validation by including null terminator size in EA length (Namjae Jeon)
- ksmbd: Fix refcount leak when invalid session is found on session lookup (Namjae Jeon)
- ksmbd: skip lock-range check on equal size to avoid size==0 underflow (Qianchang Zhao)
- hwmon: (ltc4282): Fix reset_history file permissions (Nuno Sa)
- drm/xe/oa: Limit num_syncs to prevent oversized allocations (Shuicheng Lin)
- drm/xe: Limit num_syncs to prevent oversized allocations (Shuicheng Lin)
- block: rnbd-clt: Fix leaked ID in init_dev() (Thomas Fourier)
- spi: cadence-quadspi: Fix clock disable on probe failure path (Anurag Dutta)
- arm64: kdump: Fix elfcorehdr overlap caused by reserved memory processing reorder (Jianpeng Chang)
- x86/xen: Fix sparse warning in enlighten_pv.c (Juergen Gross)
- x86/xen: Move Xen upcall handler (Brian Gerst)
- drm/panel: sony-td4353-jdi: Enable prepare_prev_first (Marijn Suijten)
- MIPS: Fix a reference leak bug in ip22_check_gio() (Haoxiang Li)
- drm/xe: Restore engine registers before restarting schedulers after GT reset (Jan Maslak)
- drm/me/gsc: mei interrupt top half should be in irq disabled context (Junxiao Chang)
- hwmon: (tmp401) fix overflow caused by default conversion rate value (Alexey Simakov)
- hwmon: (ibmpex) fix use-after-free in high/low store (Junrui Luo) [Orabug: 38847806] {CVE-2025-68789}
- hwmon: (dell-smm) Limit fan multiplier to avoid overflow (Denis Sergeev)
- net: hns3: add VLAN id validation before using (Jian Shen)
- net: hns3: using the num_tqps to check whether tqp_index is out of range when vf get ring info from mbx (Jian Shen)
- net: hns3: using the num_tqps in the vf driver to apply for resources (Jian Shen)
- net: enetc: do not transmit redirected XDP frames when the link is down (Wei Fang)
- net/handshake: duplicate handshake cancellations leak socket (Scott Mayhew) [Orabug: 38847719] {CVE-2025-68775}
- net/mlx5: Serialize firmware reset with devlink (Shay Drory)
- net/mlx5: fw_tracer, Handle escaped percent properly (Shay Drory)
- net/mlx5: fw_tracer, Validate format string parameters (Shay Drory) [Orabug: 38847913] {CVE-2025-68816}
- net/mlx5: Drain firmware reset in shutdown callback (Moshe Shemesh)
- net/mlx5: fw reset, clear reset requested on drain_fw_reset (Moshe Shemesh)
- ethtool: Avoid overflowing userspace buffer on stats query (Gal Pressman) [Orabug: 38847825] {CVE-2025-68795}
- iommufd/selftest: Check for overflow in IOMMU_TEST_OP_ADD_RESERVED (Jason Gunthorpe)
- iommufd/selftest: Make it clearer to gcc that the access is not out of bounds (Jason Gunthorpe)
- iommufd/selftest: Update hw_info coverage for an input data_type (Nicolin Chen)
- iommufd/selftest: Add coverage for reporting max_pasid_log2 via IOMMU_HW_INFO (Yi Liu)
- selftests: netfilter: packetdrill: avoid failure on HZ=100 kernel (Florian Westphal)
- netfilter: nf_tables: remove redundant chain validation on register store (Pablo Neira Ayuso)
- netfilter: nf_nat: remove bogus direction check (Florian Westphal)
- nfc: pn533: Fix error code in pn533_acr122_poweron_rdr() (Dan Carpenter)
- net/sched: ets: Remove drr class from the active list if it changes to strict (Victor Nogueira) [Orabug: 38847909] {CVE-2025-68815}
- caif: fix integer underflow in cffrml_receive() (Junrui Luo)
- ipvs: fix ipv4 null-ptr-deref in route error path (Slavin Liu) [Orabug: 38847899] {CVE-2025-68813}
- netfilter: nf_conncount: fix leaked ct in error paths (Fernando Fernandez Mancera) [Orabug: 38887785] {CVE-2025-71146}
- broadcom: b44: prevent uninitialized value usage (Alexey Simakov)
- net: openvswitch: fix middle attribute validation in push_nsh() action (Ilya Maximets) [Orabug: 38847783] {CVE-2025-68785}
- bnxt_en: Fix XDP_TX path (Michael Chan) [Orabug: 38847683] {CVE-2025-68770}
- mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats (Ido Schimmel)
- mlxsw: spectrum_router: Fix neighbour use-after-free (Ido Schimmel)
- mlxsw: spectrum_router: Fix possible neighbour reference count leak (Ido Schimmel)
- ipvlan: Ignore PACKET_LOOPBACK in handle_mode_l2() (Dmitry Skorodumov)
- net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (Jamal Hadi Salim) [Orabug: 38847964] {CVE-2025-71066}
- netrom: Fix memory leak in nr_sendmsg() (Wang Liang)
- net: fec: ERR007885 Workaround for XDP TX path (Wei Fang)
- gfs2: Fix use of bio_chain (Andreas Gruenbacher)
- Bluetooth: btusb: Add new VID/PID 0x0489/0xE12F for RTL8852BE-VT (Max Chou)
- Bluetooth: btusb: Add new VID/PID 13d3/3533 for RTL8821CE (Gongwei Li)
- Bluetooth: btusb: MT7920: Add VID/PID 0489/e135 (Chris Lu)
- Bluetooth: btusb: MT7922: Add VID/PID 0489/e170 (Chris Lu)
- Bluetooth: btusb: Add new VID/PID 2b89/6275 for RTL8761BUV (Chingbin Li)
- ksmbd: vfs: fix race on m_flags in vfs_cache (Qianchang Zhao)
- ksmbd: fix use-after-free in ksmbd_tree_connect_put under concurrency (Namjae Jeon)
- smb/server: fix return value of smb2_ioctl() (Chenxiaosong)
- gfs2: Fix "gfs2: Switch to wait_event in gfs2_quotad" (Andreas Gruenbacher)
- gfs2: fix remote evict for read-only filesystems (Andreas Gruenbacher)
- btrfs: scrub: always update btrfs_scrub_progress::last_physical (Qu Wenruo)
- wifi: brcmfmac: Add DMI nvram filename quirk for Acer A1 840 tablet (Hans de Goede)
- wifi: mt76: mt792x: fix wifi init fail by setting MCU_RUNNING after CLC load (Quan Zhou)
- wifi: cfg80211: use cfg80211_leave() in iftype change (Johannes Berg)
- wifi: cfg80211: stop radar detection in cfg80211_leave() (Johannes Berg)
- wifi: rtl8xxxu: Fix HT40 channel config for RTL8192CU, RTL8723AU (Bitterblue Smith)
- fs/ntfs3: check for shutdown in fsync (Konstantin Komarov)
- hfsplus: fix volume corruption issue for generic/073 (Viacheslav Dubeyko)
- hfsplus: Verify inode mode when loading from disk (Tetsuo Handa)
- hfsplus: fix missing hfs_bnode_get() in __hfs_bnode_create (Yang Chenzhi)
- hfsplus: fix volume corruption issue for generic/070 (Viacheslav Dubeyko)
- ntfs: set dummy blocksize to read boot_block when mounting (Pedro Demarchi Gomes)
- kbuild: Use objtree for module signing key path (Mikhail Malyshev)
- fs/ntfs3: Support timestamps prior to epoch (Konstantin Komarov)
- livepatch: Match old_sympos 0 and 1 in klp_find_func() (Song Liu)
- cpuidle: menu: Use residency threshold in polling state override decisions (Aboorva Devarajan)
- cpufreq: s5pv210: fix refcount leak (Shuhao Fu)
- ACPI: fan: Workaround for 64-bit firmware bug (Armin Wolf)
- cpufreq: dt-platdev: Add JH7110S SOC to the allowlist (Hal Feng)
- ACPI: property: Use ACPI functions in acpi_graph_get_next_endpoint() only (Sakari Ailus)
- ACPICA: Avoid walking the Namespace if start_node is NULL (Cryolitia Pukngae) [Orabug: 38852332] {CVE-2025-71118}
- x86/ptrace: Always inline trivial accessors (Peter Zijlstra)
- sched/deadline: only set free_cpus for online runqueues (Doug Berger) [Orabug: 38847752] {CVE-2025-68780}
- perf/x86/amd: Check event before enable to avoid GPF (George Kennedy) [Orabug: 38847848] {CVE-2025-68798}
- scripts/faddr2line: Fix "Argument list too long" error (Pankaj Raghav)
- iomap: account for unaligned end offsets when truncating read range (Joanne Koong)
- iomap: adjust read range correctly for non-block-aligned positions (Joanne Koong) [Orabug: 38847819] {CVE-2025-68794}
- shmem: fix recovery on rename failures (Al Viro) [Orabug: 38847988] {CVE-2025-71072}
- btrfs: fix memory leak of fs_devices in degraded seed device path (Deepanshu Kartikey)
- bpf, arm64: Do not audit capability check in do_jit() (Ondrej Mosnacek)
- btrfs: fix a potential path leak in print_data_reloc_error() (Qu Wenruo)
- btrfs: do not skip logging new dentries when logging a new name (Filipe Manana)
-
Tue Jan 06 2026 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.63.3.el9uek]
- x86/its: Build fails with CONFIG_MITIGATION_ITS=n (Alexandre Chartre) [Orabug: 38756944]
-
Tue Dec 23 2025 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.63.2.el9uek]
- LTS version: v6.12.63 (Jack Vogel)
- ASoC: codecs: nau8325: Silence uninitialized variables warnings (Krzysztof Kozlowski)
- ALSA: wavefront: Fix integer overflow in sample size validation (Junrui Luo)
- ALSA: dice: fix buffer overflow in detect_stream_formats() (Junrui Luo)
- usb: dwc3: dwc3_power_off_all_roothub_ports: Use ioremap_np when required (Sven Peter)
- usb: phy: Initialize struct usb_phy list_head (Diogo Ivo)
- usb: gadget: tegra-xudc: Always reinitialize data toggle when clear halt (Haotien Hsu)
- tcp_metrics: use dst_dev_net_rcu() (Eric Dumazet) [Orabug: 38592188] {CVE-2025-40075}
- net: dst: introduce dst->dev_rcu (Eric Dumazet)
- net: lan743x: Allocate rings outside ZONE_DMA (Thangaraj Samynathan)
- LoongArch: Add machine_kexec_mask_interrupts() implementation (Huacai Chen)
- ocfs2: fix memory leak in ocfs2_merge_rec_left() (Dmitry Antipov)
- irqchip/mchp-eic: Fix error code in mchp_eic_domain_alloc() (Dan Carpenter)
- scsi: imm: Fix use-after-free bug caused by unfinished delayed work (Duoming Zhou) [Orabug: 38783113] {CVE-2025-68324}
- efi/cper: align ARM CPER type with UEFI 2.9A/2.10 specs (Mauro Carvalho Chehab)
- efi/cper: Adjust infopfx size to accept an extra space (Mauro Carvalho Chehab)
- efi/cper: Add a new helper function to print bitmasks (Mauro Carvalho Chehab)
- dm log-writes: Add missing set_freezable() for freezable kthread (Xu Wang)
- dm-raid: fix possible NULL dereference with undefined raid type (Alexey Simakov)
- block: return unsigned int from queue_dma_alignment (Christoph Hellwig)
- block: Use RCU in blk_mq_[un]quiesce_tagset() instead of set->tag_list_lock (Mohamed Khalfella) [Orabug: 38818209] {CVE-2025-68756}
- ARM: 9464/1: fix input-only operand modification in load_unaligned_zeropad() (Pangliyuan)
- ALSA: firewire-motu: add bounds check in put_user loop for DSP events (Junrui Luo)
- rtc: gamecube: Check the return value of ioremap() (Xu Wang)
- drm/amdkfd: Use huge page size to check split svm range alignment (Xiaogang Chen)
- ALSA: uapi: Fix typo in asound.h comment (Andres J Rosa)
- docs: hwmon: fix link to g762 devicetree binding (Kathara Sasikumar)
- cifs: Fix handling of a beyond-EOF DIO/unbuffered read over SMB2 (David Howells)
- drm/nouveau: refactor deprecated strcpy (Madhur Kumar)
- ALSA: firewire-motu: fix buffer overflow in hwdep read for DSP events (Junrui Luo)
- regulator: fixed: Rely on the core freeing the enable GPIO (Mark Brown)
- drm/plane: Fix IS_ERR() vs NULL check in drm_plane_create_hotspot_properties() (Dan Carpenter)
- nvme-auth: use kvfree() for memory allocated with kvcalloc() (Israel Rukshin)
- block: fix memory leak in __blkdev_issue_zero_pages (Shaurya Rane) [Orabug: 38798772] {CVE-2025-68348}
- block: fix comment for op_is_zone_mgmt() to include RESET_ALL (Shechenglong)
- blk-mq: Abort suspend when wakeup events are pending (Cong Zhang)
- ASoC: ak5558: Disable regulator when error happens (Shengjiu Wang)
- ASoC: ak4458: Disable regulator when error happens (Shengjiu Wang)
- ASoC: bcm: bcm63xx-pcm-whistler: Check return value of of_dma_configure() (Xu Wang)
- platform/x86: asus-wmi: use brightness_set_blocking() for kbd led (Anton Khirnov)
- fs/nls: Fix inconsistency between utf8_to_utf32() and utf32_to_utf8() (Armin Wolf)
- NFS: Fix inheritance of the block sizes when automounting (Trond Myklebust)
- Expand the type of nfs_fattr->valid (Trond Myklebust)
- NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags (Trond Myklebust) [Orabug: 38818236] {CVE-2025-68764}
- Revert "nfs: ignore SB_RDONLY when mounting nfs" (Trond Myklebust)
- Revert "nfs: clear SB_RDONLY before getting superblock" (Trond Myklebust)
- Revert "nfs: ignore SB_RDONLY when remounting nfs" (Trond Myklebust)
- NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid (Jonathan Curley) [Orabug: 38798774] {CVE-2025-68349}
- NFS: Initialise verifiers for visible dentries in _nfs4_open_and_get_state (Trond Myklebust)
- nfs/vfs: discard d_exact_alias() (Neil Brown)
- NFS: Initialise verifiers for visible dentries in nfs_atomic_open() (Trond Myklebust)
- NFS: Initialise verifiers for visible dentries in readdir and lookup (Trond Myklebust)
- fs/nls: Fix utf16 to utf8 conversion (Armin Wolf)
- NFS: Avoid changing nlink when file removes and attribute updates race (Trond Myklebust)
- f2fs: maintain one time GC mode is enabled during whole zoned GC cycle (Daeho Jeong)
- f2fs: add gc_boost_gc_greedy sysfs node (Daeho Jeong)
- f2fs: add gc_boost_gc_multiple sysfs node (Daeho Jeong)
- f2fs: introduce reserved_pin_section sysfs entry (Chao Yu)
- f2fs: sysfs: add encoding_flags entry (Chao Yu)
- f2fs: add carve_out sysfs node (Daeho Jeong)
- f2fs: fix to avoid running out of free segments (Chao Yu)
- f2fs: add a sysfs entry to reclaim POSIX_FADV_NOREUSE pages (Jaegeuk Kim)
- f2fs: keep POSIX_FADV_NOREUSE ranges (Jaegeuk Kim)
- platform/x86:intel/pmc: Update Arrow Lake telemetry GUID (Xi Pardee)
- sched/fair: Fix unfairness caused by stalled tg_load_avg_contrib when the last task migrates out (Xupengbo)
- 9p: fix cache/debug options printing in v9fs_show_options (Eric Sandeen)
- fbdev: ssd1307fb: fix potential page leak in ssd1307fb_probe() (Abdun Nihaal)
- pinctrl: single: Fix incorrect type for error return variable (Xu Wang)
- perf hist: In init, ensure mem_info is put on error paths (Ian Rogers)
- perf tools: Fix split kallsyms DSO counting (Namhyung Kim)
- perf tools: Mark split kallsyms DSOs as loaded (Namhyung Kim)
- net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop (Xiang Mei) [Orabug: 38783136] {CVE-2025-68325}
- net: dsa: xrs700x: reject unsupported HSR configurations (Vladimir Oltean)
- net: hsr: create an API to get hsr port type (Xiaoliang Yang)
- net: hsr: Create and export hsr_get_port_ndev() (Md Danish Anwar)
- net: hsr: remove synchronize_rcu() from hsr_add_port() (Eric Dumazet)
- net: hsr: remove one synchronize_rcu() from hsr_del_port() (Eric Dumazet)
- clk: keystone: fix compile testing (Johan Hovold)
- md/raid5: fix IO hang when array is broken with IO inflight (Yu Kuai)
- remoteproc: qcom_q6v5_wcss: fix parsing of qcom,halt-regs (Alexandru Gagniuc)
- mtd: lpddr_cmds: fix signed shifts in lpddr_cmds (Ivan Stepchenko)
- selftests: bonding: add delay before each xvlan_over_bond connectivity check (Hangbin Liu)
- selftests: bonding: add ipvlan over bond testing (Etienne Champetier)
- net: phy: aquantia: check for NVMEM deferral (Robert Marko)
- vfio/pci: Use RCU for error/request triggers to avoid circular locking (Alex Williamson)
- spi: ch341: fix out-of-bounds memory access in ch341_transfer_one (Tianchu Chen)
- mtd: rawnand: renesas: Handle devm_pm_runtime_enable() errors (Xu Wang)
- net: stmmac: fix rx limit check in stmmac_rx_zc() (Alexey Kodanev)
- netfilter: nft_connlimit: update the count if add was skipped (Fernando Fernandez Mancera)
- netfilter: nf_conncount: rework API to use sk_buff directly (Fernando Fernandez Mancera)
- netfilter: flowtable: check for maximum number of encapsulations in bridge vlan (Pablo Neira Ayuso)
- Reinstate "resource: avoid unnecessary lookups in find_next_iomem_res()" (Ilias Stamatis)
- resource: introduce is_type_match() helper and use it (Andy Shevchenko)
- resource: replace open coded resource_intersection() (Andy Shevchenko)
- regulator: core: Protect regulator_supply_alias_list with regulator_list_mutex (Sparkhuang) [Orabug: 38798786] {CVE-2025-68354}
- ARM: dts: samsung: exynos4412-midas: turn off SDIO WLAN chip during system suspend (Marek Szyprowski)
- ARM: dts: samsung: exynos4210-trats: turn off SDIO WLAN chip during system suspend (Marek Szyprowski)
- ARM: dts: samsung: exynos4210-i9100: turn off SDIO WLAN chip during system suspend (Marek Szyprowski)
- ARM: dts: samsung: universal_c210: turn off SDIO WLAN chip during system suspend (Marek Szyprowski)
- spi: airoha-snfi: en7523: workaround flash damaging if UART_TXD was short to GND (Mikhail Kshevetskiy)
- ASoC: Intel: catpt: Fix error path in hw_params() (Cezary Rojewski)
- vdpa/pds: use %pe for ERR_PTR() in event handler registration (Alok Tiwari)
- vhost: Fix kthread worker cgroup failure handling (Mike Christie)
- vdpa/mlx5: Fix incorrect error code reporting in query_virtqueues (Alok Tiwari)
- virtio: fix virtqueue_set_affinity() docs (Michael S. Tsirkin)
- virtio: fix grammar in virtio_queue_info docs (Michael S. Tsirkin)
- virtio: fix whitespace in virtio_config_ops (Michael S. Tsirkin)
- virtio: fix typo in virtio_device_ready() comment (Michael S. Tsirkin)
- virtio_vdpa: fix misleading return in void function (Alok Tiwari)
- of: Skip devicetree kunit tests when RISCV+ACPI doesn't populate root node (Guenter Roeck)
- ext4: improve integrity checking in __mb_check_buddy by enhancing order-0 validation (Yongjian Sun)
- ublk: prevent invalid access with DEBUG (Kevin Brodsky)
- ACPI: processor_core: fix map_x2apic_id for amd-pstate on am4 (René Rebe)
- hwmon: sy7636a: Fix regulator_enable resource leak on error path (Xu Wang)
- drm/amd/display: Fix logical vs bitwise bug in get_embedded_panel_info_v2_1() (Dan Carpenter)
- greybus: gb-beagleplay: Fix timeout handling in bootloader functions (Xu Wang)
- firmware_loader: make RUST_FW_LOADER_ABSTRACTIONS select FW_LOADER (Alexandre Courbot)
- ASoC: fsl_xcvr: clear the channel status control memory (Shengjiu Wang)
- gfs2: Prevent recursive memory reclaim (Andreas Gruenbacher) [Orabug: 38798793] {CVE-2025-68356}
- ASoC: nau8325: add missing build config (Jaroslav Kysela)
- ASoC: nau8325: use simple i2c probe function (Jaroslav Kysela)
- drm/panthor: Avoid adding of kernel BOs to extobj list (Akash Goel)
- RDMA/irdma: Do not directly rely on IB_PD_UNSAFE_GLOBAL_RKEY (Jacob Moroni)
- RDMA/irdma: Fix data race in irdma_free_pble (Krzysztof Czurylo)
- RDMA/irdma: Fix data race in irdma_sc_ccq_arm (Krzysztof Czurylo)
- iommu/arm-smmu-qcom: Enable use of all SMR groups when running bare-metal (Stephan Gerhold)
- backlight: lp855x: Fix lp855x.h kernel-doc warnings (Randy Dunlap)
- backlight: led-bl: Add devlink to supplier LEDs (Luca Ceresoli)
- wifi: ieee80211: correct FILS status codes (Ria Thomas)
- iomap: always run error completions in user context (Christoph Hellwig)
- iomap: factor out a iomap_dio_done helper (Christoph Hellwig)
- um: Don't rename vmap to kernel_vmap (David Gow)
- drm/nouveau: restrict the flush page to a 32-bit address (Timur Tabi)
- PCI: dwc: Fix wrong PORT_LOGIC_LTSSM_STATE_MASK definition (Shawn Lin)
- btrfs: fix leaf leak in an error path in btrfs_del_items() (Filipe Manana)
- iommu/arm-smmu-v3: Fix error check in arm_smmu_alloc_cd_tables (Ryan Huang)
- staging: fbtft: core: fix potential memory leak in fbtft_probe_common() (Jianglei Nie)
- firmware: stratix10-svc: fix make htmldocs warning for stratix10_svc (Dinh Nguyen)
- mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_sta_add() (Zilin Guan)
- ASoC: tas2781: correct the wrong period (Shenghao Ding)
- RDMA/bnxt_re: Pass correct flag for dma mr creation (Selvin Xavier)
- RDMA/bnxt_re: Fix the inline size for GenP7 devices (Selvin Xavier)
- erofs: limit the level of fs stacking for file-backed mounts (Gao Xiang)
- RISC-V: KVM: Fix guest page fault within HLV* instructions (Fangyu Yu)
- crypto: ccree - Correctly handle return of sg_nents_for_len (Xu Wang)
- crypto: starfive - Correctly handle return of sg_nents_for_len (Xu Wang)
- selftests/bpf: Improve reliability of test_perf_branches_no_hw() (Matt Bobrowski)
- selftests/bpf: skip test_perf_branches_hw() on unsupported platforms (Matt Bobrowski)
- usb: raw-gadget: cap raw_io transfer length to KMALLOC_MAX_SIZE (Gopi Krishna Menon)
- usb: dwc2: fix hang during suspend if set as peripheral (Jisheng Zhang)
- usb: dwc2: fix hang during shutdown if set as peripheral (Jisheng Zhang)
- usb: dwc2: disable platform lowlevel hw resources during shutdown (Jisheng Zhang)
- usb: chaoskey: fix locking for O_NONBLOCK (Oliver Neukum)
- ima: Handle error code returned by ima_filter_rule_match() (Zhao Yipeng) [Orabug: 38798921] {CVE-2025-68740}
- RAS: Report all ARM processor CPER information to userspace (Jason Tian)
- wifi: rtl818x: rtl8187: Fix potential buffer underflow in rtl8187_rx_cb() (Seungjin Bae) [Orabug: 38798814] {CVE-2025-68362}
- cpuset: Treat cpusets in attaching as populated (Chen Ridong)
- net: phy: adin1100: Fix software power-down ready condition (Alexander Dahl)
- phy: rockchip: samsung-hdptx: Prevent Inter-Pair Skew from exceeding the limits (Cristian Ciocaltea)
- phy: rockchip: samsung-hdptx: Reduce ROPLL loop bandwidth (Cristian Ciocaltea)
- phy: freescale: Initialize priv->lock (Xiaolei Wang)
- phy: renesas: rcar-gen3-usb2: Fix an error handling path in rcar_gen3_phy_usb2_probe() (Christophe Jaillet)
- leds: rgb: leds-qcom-lpg: Don't enable TRILED when configuring PWM (Fenglin Wu)
- mfd: mt6358-irq: Fix missing irq_domain_remove() in error path (Xu Wang)
- mfd: mt6397-irq: Fix missing irq_domain_remove() in error path (Xu Wang)
- wifi: mac80211: fix CMAC functions not handling errors (Chien Wong)
- iommu/vt-d: Fix unused invalidation hint in qi_desc_iotlb (Aashish Sharma)
- scsi: qla2xxx: Fix improper freeing of purex item (Zilin Guan) [Orabug: 38798928] {CVE-2025-68741}
- pwm: bcm2835: Make sure the channel is enabled after pwm_request() (Uwe Kleine-König)
- perf arm_spe: Fix memset subclass in operation (Leo Yan)
- perf arm-spe: Extend branch operations (Leo Yan)
- ipv6: clear RA flags when adding a static route (Fernando Fernandez Mancera)
- drm/msm/a6xx: Improve MX rail fallback in RPMH vote init (Akhil P Oommen)
- drm/msm/a6xx: Fix the gemnoc workaround (Akhil P Oommen)
- drm/msm/a6xx: Flush LRZ cache before PT switch (Akhil P Oommen)
- drm/mediatek: Fix CCORR mtk_ctm_s31_32_to_s1_n function issue (Jay Liu)
- fs/ntfs3: Prevent memory leaks in add sub record (Edward Adam Davis)
- fs/ntfs3: out1 also needs to put mi (Edward Adam Davis)
- powerpc/64s/ptdump: Fix kernel_hash_pagetable dump for ISA v3.00 HPTE format (Ritesh Harjani)
- powerpc/64s/hash: Restrict stress_hpt_struct memblock region to within RMA limit (Ritesh Harjani)
- bpf: Fix invalid prog->stats access when update_effective_progs fails (Pu Lehui) [Orabug: 38798931] {CVE-2025-68742}
- wifi: rtl818x: Fix potential memory leaks in rtl8180_init_rx_ring() (Abdun Nihaal) [Orabug: 38818221] {CVE-2025-68759}
- drm/msm/a2xx: stop over-complaining about the legacy firmware (Dmitry Baryshkov)
- block/blk-throttle: Fix throttle slice time for SSDs (Guenter Roeck)
- NFSD/blocklayout: Fix minlength check in proc_layoutget (Sergey Bashirov)
- tracefs: fix a leak in eventfs_create_events_dir() (Al Viro)
- watchdog: starfive: Fix resource leak in probe error path (Xu Wang)
- watchdog: wdat_wdt: Fix ACPI table leak in probe function (Xu Wang)
- bpf: Check skb->transport_header is set in bpf_skb_check_mtu (Martin Kafai Lau) [Orabug: 38798820] {CVE-2025-68363}
- selftests/bpf: Fix failure paths in send_signal test (Alexei Starovoitov)
- bpf: Handle return value of ftrace_set_filter_ip in register_fentry (Menglong Dong)
- ps3disk: use memcpy_{from,to}_bvec index (René Rebe)
- drm/msm/dpu: drop dpu_hw_dsc_destroy() prototype (Dmitry Baryshkov)
- crypto: iaa - Fix incorrect return value in save_iaa_wq() (Zilin Guan)
- arm64: dts: rockchip: Add eeprom vcc-supply for Radxa ROCK 3C (Fukaumi Naoki)
- arm64: dts: rockchip: Add eeprom vcc-supply for Radxa ROCK 5A (Fukaumi Naoki)
- arm64: dts: rockchip: Move the EEPROM to correct I2C bus on Radxa ROCK 5A (Fukaumi Naoki)
- PCI: keystone: Exit ks_pcie_probe() for invalid mode (Siddharth Vadapalli)
- bpf: Free special fields when update [lru_,]percpu_hash maps (Leon Hwang) [Orabug: 38798936] {CVE-2025-68744}
- leds: netxbig: Fix GPIO descriptor leak in error paths (Xu Wang)
- scsi: sim710: Fix resource leak by adding missing ioport_unmap() calls (Xu Wang)
- ACPI: property: Fix fwnode refcount leak in acpi_fwnode_graph_parse_endpoint() (Xu Wang)
- ocfs2: relax BUG() to ocfs2_error() in __ocfs2_move_extent() (Dmitry Antipov) [Orabug: 38798823] {CVE-2025-68364}
- lib/vsprintf: Check pointer before dereferencing in time_and_date() (Andy Shevchenko)
- clk: renesas: r9a06g032: Fix memory leak in error path (Xu Wang)
- coresight: etm4x: Add context synchronization before enabling trace (Leo Yan)
- coresight: etm4x: Extract the trace unit controlling (Leo Yan)
- coresight: etm4x: Correct polling IDLE bit (Leo Yan)
- coresight: Change device mode to atomic type (Leo Yan)
- nbd: defer config unlock in nbd_genl_connect (Zheng Qixing) [Orabug: 38798832] {CVE-2025-68366}
- wifi: cw1200: Fix potential memory leak in cw1200_bh_rx_helper() (Abdun Nihaal)
- macintosh/mac_hid: fix race condition in mac_hid_toggle_emumouse (Long Li) [Orabug: 38798837] {CVE-2025-68367}
- powerpc/32: Fix unpaired stwcx. on interrupt exit (Christophe Leroy)
- powerpc/kdump: Fix size calculation for hot-removed memory ranges (Sourabh Jain)
- cpufreq/amd-pstate: Call cppc_set_auto_sel() only for online CPUs (Gautham R. Shenoy)
- scsi: ufs: core: fix incorrect buffer duplication in ufshcd_read_string_desc() (Bean Huo)
- drm/panthor: Fix potential memleak of vma structure (Akash Goel)
- ntfs3: init run lock for extend inode (Edward Adam Davis)
- ARM: dts: stm32: stm32mp157c-phycore: Fix STMPE811 touchscreen node properties (Jihed Chaibi)
- RDMA/rtrs: server: Fix error handling in get_or_create_srv (Ma Ke)
- dt-bindings: PCI: amlogic: Fix the register name of the DBI region (Manivannan Sadhasivam)
- scsi: smartpqi: Fix device resources accessed after device removal (Mike Mcgowen) [Orabug: 38798847] {CVE-2025-68371}
- scsi: stex: Fix reboot_notifier leak in probe error path (Xu Wang)
- nbd: defer config put in recv_work (Zheng Qixing) [Orabug: 38798850] {CVE-2025-68372}
- md: fix rcu protection in md_wakeup_thread (Yun Zhou) [Orabug: 38798857] {CVE-2025-68374}
- regulator: core: disable supply if enabling main regulator fails (Gabor Juhos)
- perf/x86/intel: Correct large PEBS flag check (Dapeng Mi)
- ext4: correct the checking of quota files before moving extents (Zhang Yi)
- mfd: da9055: Fix missing regmap_del_irq_chip() in error path (Xu Wang)
- locktorture: Fix memory leak in param_set_cpumask() (Wang Liang)
- efi/libstub: Fix page table access in 5-level to 4-level paging transition (Usama Arif)
- x86/boot: Fix page table access in 5-level to 4-level paging transition (Usama Arif)
- ARM: dts: omap3: n900: Correct obsolete TWL4030 power compatible (Jihed Chaibi)
- ARM: dts: omap3: beagle-xm: Correct obsolete TWL4030 power compatible (Jihed Chaibi)
- ARM: dts: am335x-netcom-plus-2xx: add missing GPIO labels (Yegor Yefremov)
- libbpf: Fix parsing of multi-split BTF (Alan Maguire)
- spi: tegra210-quad: Fix timeout handling (Vishwaroop A) [Orabug: 38798943] {CVE-2025-68746}
- drm/panthor: Fix UAF on kernel BO VA nodes (Boris Brezillon)
- drm/panthor: Fix race with suspend during unplug (Ketil Johnsen)
- drm/panthor: Fix UAF race between device unplug and FW event processing (Ketil Johnsen)
- drm/panthor: Fix group_free_queue() for partially initialized queues (Boris Brezillon)
- drm/panthor: Handle errors returned by drm_sched_entity_init() (Boris Brezillon)
- fs/9p: Don't open remote file with APPEND mode when writeback cache is used (Tingmao Wang)
- scsi: target: Do not write NUL characters into ASCII configfs output (Bart Van Assche)
- power: supply: apm_power: only unset own apm_get_power_status (Ahelenia Ziemiańska)
- power: supply: wm831x: Check wm831x_set_bits() return value (Ivan Abramov)
- power: supply: rt9467: Prevent using uninitialized local variable in rt9467_set_value_from_ranges() (Murad Masimov)
- power: supply: rt9467: Return error on failure in rt9467_set_value_from_ranges() (Ivan Abramov)
- power: supply: max17040: Check iio_read_channel_processed() return code (Ivan Abramov)
- power: supply: cw2015: Check devm_delayed_work_autocancel() return code (Ivan Abramov)
- power: supply: rt5033_charger: Fix device node reference leaks (Xu Wang)
- perf record: skip synthesize event when open evsel failed (Shuai Xue)
- perf lock contention: Load kernel map before lookup (Namhyung Kim)
- drm/imagination: Fix reference to devm_platform_get_and_ioremap_resource() (Geert Uytterhoeven)
- interconnect: debugfs: Fix incorrect error handling for NULL path (Kuan-Wei Chiu)
- arm64: dts: qcom: msm8996: add interconnect paths to USB2 controller (Dmitry Baryshkov)
- interconnect: qcom: msm8996: add missing link to SLAVE_USB_HS (Dmitry Baryshkov)
- wifi: ath12k: fix potential memory leak in ath12k_wow_arp_ns_offload() (Abdun Nihaal)
- i3c: master: svc: Prevent incomplete IBI transaction (Stanley Chu)
- i3c: fix refcount inconsistency in i3c_master_register (Frank Li)
- pinctrl: stm32: fix hwspinlock resource leak in probe function (Xu Wang)
- soc: qcom: smem: fix hwspinlock resource leak in probe error paths (Xu Wang)
- tools/nolibc/stdio: let perror work when NOLIBC_IGNORE_ERRNO is set (Benjamin Berg)
- x86/dumpstack: Prevent KASAN false positive warnings in __show_regs() (Tengda Wu)
- task_work: Fix NMI race condition (Peter Zijlstra)
- perf/x86/intel/cstate: Remove PC3 support from LunarLake (Zhang Rui)
- bpf: Fix stackmap overflow check in __bpf_get_stackid() (Arnaud Lecomte) [Orabug: 38798864] {CVE-2025-68378}
- bpf: Refactor stack map trace depth calculation into helper function (Arnaud Lecomte)
- perf: Remove get_perf_callchain() init_nr argument (Josh Poimboeuf)
- mtd: rawnand: lpc32xx_slc: fix GPIO descriptor leak on probe error and remove (Xu Wang)
- mtd: nand: relax ECC parameter validation check (Aryan Srivastava)
- Revert "mtd: rawnand: marvell: fix layouts" (Aryan Srivastava)
- ARM: dts: renesas: r9a06g032-rzn1d400-db: Drop invalid #cells properties (Wolfram Sang)
- ARM: dts: renesas: gose: Remove superfluous port property (Wolfram Sang)
- RDMA/rxe: Fix null deref on srq->rq.queue after resize failure (Zhu Yanjun) [Orabug: 38798867] {CVE-2025-68379}
- sctp: Defer SCTP_DBG_OBJCNT_DEC() to sctp_destroy_sock(). (Kuniyuki Iwashima)
- phy: mscc: Fix PTP for VSC8574 and VSC8572 (Horatiu Vultur)
- arm64: dts: qcom: qcm6490-shift-otter: Add missing reserved-memory (Alexander Martinz)
- arm64: dts: qcom: sm8650: set ufs as dma coherent (Neil Armstrong)
- arm64: dts: qcom: sdm845-oneplus: Correct gpio used for slider (Gergo Koteles)
- arm64: dts: qcom: x1e80100: Add missing quirk for HS only USB controller (Krishna Kurapati)
- arm64: dts: qcom: x1e80100: Fix compile warnings for USB HS controller (Krishna Kurapati)
- firmware: imx: scu-irq: fix OF node leak in (Peng Fan)
- arm64: dts: ti: k3-am62p: Fix memory ranges for GPU (Randolph Sapp)
- s390/ap: Don't leak debug feature files if AP instructions are not available (Heiko Carstens)
- s390/smp: Fix fallback CPU detection (Heiko Carstens)
- wifi: ath11k: fix peer HE MCS assignment (Baochen Qiang) [Orabug: 38798872] {CVE-2025-68380}
- wifi: ath11k: fix VHT MCS assignment (Baochen Qiang)
- crypto: hisilicon/qm - restore original qos values (Nieweiqiang)
- crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id (Thorsten Blum) [Orabug: 38798874] {CVE-2025-68724}
- soc: qcom: gsbi: fix double disable caused by devm (Xu Wang)
- soc: Switch back to struct platform_driver::remove() (Uwe Kleine-König)
- clk: qcom: camcc-sm7150: Fix PLL config of PLL2 (Luca Weiss)
- clk: qcom: camcc-sm6350: Fix PLL config of PLL2 (Luca Weiss)
- clk: qcom: camcc-sm6350: Specify Titan GDSC power domain as a parent to other (Vladimir Zapolskiy)
- clk: qcom: camcc-sm8550: Specify Titan GDSC power domain as a parent to other (Vladimir Zapolskiy)
- uio: uio_fsl_elbc_gpcm:: Add null pointer check to uio_fsl_elbc_gpcm_probe (Li Qiang)
- PCI: rcar-gen2: Drop ARM dependency from PCI_RCAR_GEN2 (Geert Uytterhoeven)
- arm64: dts: exynos: gs101: fix sysreg_apm reg property (Peter Griffin)
- perf annotate: Check return value of evsel__get_arch() properly (Tianyou Li)
- arm64: dts: imx8mp-venice-gw702x: remove off-board sdhc1 (Tim Harvey)
- arm64: dts: imx8mp-venice-gw702x: remove off-board uart (Tim Harvey)
- arm64: dts: imx8mm-venice-gw72xx: remove unused sdhc1 pinctrl (Tim Harvey)
- arm64: dts: freescale: imx8mp-venice-gw7905-2x: remove duplicate usdhc1 props (Tim Harvey)
- block/mq-deadline: Switch back to a single dispatch list (Bart Van Assche)
- block/mq-deadline: Introduce dd_start_request() (Bart Van Assche)
- firmware: qcom: tzmem: fix qcom_tzmem_policy kernel-doc (Randy Dunlap)
- iio: imu: st_lsm6dsx: Fix measurement unit for odr struct member (Francesco Lavra)
- inet: Avoid ehash lookup race in inet_twsk_hashdance_schedule() (Luoxuanqiang)
- inet: Avoid ehash lookup race in inet_ehash_insert() (Luoxuanqiang)
- rculist: Add hlist_nulls_replace_rcu() and hlist_nulls_replace_init_rcu() (Luoxuanqiang)
- clk: qcom: gcc-x1e80100: Add missing USB4 clocks/resets (Konrad Dybcio)
- dt-bindings: clock: qcom,x1e80100-gcc: Add missing USB4 clocks/resets (Konrad Dybcio)
- dt-bindings: clock: qcom,x1e80100-gcc: Add missing video resets (Stephan Gerhold)
- ntfs3: Fix uninit buffer allocated by __getname() (Sidharth Seela)
- ntfs3: fix uninit memory after failed mi_read in mi_format_new (Raphael Pinsonneault-Thibeault)
- crypto: authenc - Correctly pass EINPROGRESS back up to the caller (Herbert Xu)
- irqchip/qcom-irq-combiner: Fix section mismatch (Johan Hovold)
- irqchip/starfive-jh8100: Fix section mismatch (Johan Hovold)
- irqchip/renesas-rzg2l: Fix section mismatch (Johan Hovold)
- irqchip/imx-mu-msi: Fix section mismatch (Johan Hovold)
- irqchip/irq-brcmstb-l2: Fix section mismatch (Johan Hovold)
- irqchip/irq-bcm7120-l2: Fix section mismatch (Johan Hovold)
- irqchip/irq-bcm7038-l1: Fix section mismatch (Johan Hovold)
- sched/fair: Forfeit vruntime on yield (Fernand Sieber)
- wifi: ath11k: restore register window after global reset (Baochen Qiang)
- wifi: ath10k: move recovery check logic into a new work (Kang Yang)
- wifi: ath10k: Add missing include of export.h (Jeff Johnson)
- wifi: ath10k: Avoid vdev delete timeout when firmware is already down (Loic Poulain)
- objtool: Fix weak symbol detection (Josh Poimboeuf)
- objtool: Fix standalone --hacks=jump_label (Dylan Hatch)
- HID: logitech-hidpp: Do not assume FAP in hidpp_send_message_sync() (Mavroudis Chatzilazaridis)
- drm: atmel-hlcdc: fix atmel_xlcdc_plane_setup_scaler() (Cyrille Pitchen)
- clk: renesas: cpg-mssr: Read back reset registers to assure values latched (Marek Vasut)
- clk: renesas: Pass sub struct of cpg_mssr_priv to cpg_clk_register (Thierry Bultel)
- clk: renesas: Use str_on_off() helper (Geert Uytterhoeven)
- clk: renesas: cpg-mssr: Add missing 1ms delay into reset toggle callback (Marek Vasut)
- pinctrl: renesas: rzg2l: Fix PMC restore (Biju Das)
- USB: Fix descriptor count when handling invalid MBIM extended descriptor (Seungjin Bae)
- drm/vgem-fence: Fix potential deadlock on release (Janusz Krzysztofik) [Orabug: 38818211] {CVE-2025-68757}
- accel/ivpu: Fix DCT active percent format (Karol Wachowski)
- accel/ivpu: Make function parameter names consistent (Jacek Lawrynowicz)
- drm/panel: visionox-rm69299: Don't clear all mode flags (Guido Günther)
- accel/ivpu: Ensure rpm_runtime_put in case of engine reset/resume fail (Karol Wachowski)
- accel/ivpu: Prevent runtime suspend during context abort work (Andrzej Kacprowski)
- gpu: host1x: Fix race in syncpt alloc/free (Mainak Sen) [Orabug: 38798898] {CVE-2025-68732}
- smack: fix bug: setting task label silently ignores input garbage (Konstantin Andreev)
- smack: fix bug: unprivileged task can create labels (Konstantin Andreev)
- smack: fix bug: invalid label of unix socket file (Konstantin Andreev)
- smack: always "instantiate" inode in smack_inode_init_security() (Konstantin Andreev)
- smack: deduplicate xattr setting in smack_inode_init_security() (Konstantin Andreev)
- smack: fix bug: SMACK64TRANSMUTE set on non-directory (Konstantin Andreev)
- smack: deduplicate "does access rule request transmutation" (Konstantin Andreev)
- net/mlx5e: Set default burst period for TX and RX reporters (Shahar Shitrit) [Orabug: 38636804]
- devlink: Make health reporter burst period configurable (Shahar Shitrit) [Orabug: 38636804]
- devlink: Introduce burst period for health reporter (Shahar Shitrit) [Orabug: 38636804]
- devlink: Move health reporter recovery abort logic to a separate function (Shahar Shitrit) [Orabug: 38636804]
- devlink: Move graceful period parameter to reporter ops (Shahar Shitrit) [Orabug: 38636804]
- devlink: use devlink_nl_put_u64() helper (Przemek Kitszel) [Orabug: 38636804]
- devlink: introduce devlink_nl_put_u64() (Przemek Kitszel) [Orabug: 38636804]
- Revert "net/mlx5: set graceful_period to 0 to allow multiple transmission queue recovery" (Qing Huang) [Orabug: 38636804]
- net/rds: improve conn destroy printk message (Sharath Srinivasan) [Orabug: 38728739]
- net/rds: expand kref coverage to rds_notifier->n_conn (Sharath Srinivasan) [Orabug: 38728739]
- net/rds: fix crash by expanding kref coverage to rds_incoming.i_conn (Sharath Srinivasan) [Orabug: 38728739]
- net/rds: rds_sendmsg must use rs_conn only when not being destroyed (Sharath Srinivasan) [Orabug: 38728742]
- Revert "iommu/amd: Skip enabling command/event buffers for kdump" (Dongli Zhang) [Orabug: 38766139]
- mm: list_lru: avoid using NULL list_lru_one. (Imran Khan) [Orabug: 38787957]
-
Tue Dec 16 2025 Jack Vogel <jack.vogel@oracle.com> [6.12.0-108.62.1.el9uek]
- uek-rpm: Allow disabling kabichk at command line (Yifei Liu) [Orabug: 38733049]
- Revert "xfrm: Use xdo.dev instead of xdo.real_dev" (Jack Vogel) [Orabug: 38718730]
- Revert "net/mlx5: Fix IPsec cleanup over MPV device" (Jack Vogel) [Orabug: 38718730]
- LTS version: v6.12.62 (Jack Vogel)
- bus: mhi: host: pci_generic: Add Telit FN990B40 modem support (Daniele Palmas)
- bus: mhi: host: pci_generic: Add Telit FN920C04 modem support (Daniele Palmas)
- staging: rtl8723bs: fix out-of-bounds read in OnBeacon ESR IE parsing (Navaneeth K)
- staging: rtl8723bs: fix stack buffer overflow in OnAssocReq IE parsing (Navaneeth K)
- staging: rtl8723bs: fix out-of-bounds read in rtw_get_ie() parser (Navaneeth K)
- comedi: check device's attached status in compat ioctls (Nikita Zhandarovich)
- comedi: multiq3: sanitize config options in multiq3_attach() (Nikita Zhandarovich)
- comedi: c6xdigio: Fix invalid PNP driver unregistration (Ian Abbott)
- wifi: rtw88: Add USB ID 2001:3329 for D-Link AC13U rev. A1 (Zenm Chen)
- wifi: rtl8xxxu: Add USB ID 2001:3328 for D-Link AN3U rev. A1 (Zenm Chen)
- samples: work around glibc redefining some of our defines wrong (Linus Torvalds)
- LoongArch: Mask all interrupts during kexec/kdump (Huacai Chen)
- HID: elecom: Add support for ELECOM M-XT3URBK (018F) (Naoki Ueki)
- platform/x86/amd/pmc: Add spurious_8042 to Xbox Ally (Antheas Kapenekakis)
- platform/x86/amd: pmc: Add Lenovo Legion Go 2 to pmc quirk list (Antheas Kapenekakis)
- platform/x86: huawei-wmi: add keys for HONOR models (Ston Jia)
- HID: apple: Add SONiX AK870 PRO to non_apple_keyboards quirk list (April Grimoire)
- platform/x86: acer-wmi: Ignore backlight event (Armin Wolf)
- pinctrl: qcom: msm: Fix deadlock in pinmux configuration (Praveen Talari)
- nvme: fix admin request_queue lifetime (Keith Busch) [Orabug: 38773611] {CVE-2025-68265}
- HID: hid-input: Extend Elan ignore battery quirk to USB (Mario Limonciello)
- bfs: Reconstruct file type when loading from disk (Tetsuo Handa)
- ALSA: usb-audio: Add native DSD quirks for PureAudio DAC series (Lushih Hsieh)
- drm/amdkfd: Fix GPU mappings for APU after prefetch (Harish Kasiviswanathan)
- smb: fix invalid username check in smb3_fs_context_parse_param() (Yiqi Sun)
- Bluetooth: btrtl: Avoid loading the config file on security chips (Max Chou)
- drm/vmwgfx: Use kref in vmw_bo_dirty (Ian Forbes)
- spi: imx: keep dma request disabled before dma transfer setup (Robin Gong)
- spi: xilinx: increase number of retries before declaring stall (Alvaro Gamez Machado)
- ftrace: bpf: Fix IPMODIFY + DIRECT in modify_ftrace_direct() (Song Liu)
- USB: serial: kobil_sct: fix TIOCMBIS and TIOCMBIC (Johan Hovold)
- USB: serial: belkin_sa: fix TIOCMBIS and TIOCMBIC (Johan Hovold)
- serial: add support of CPCI cards (Magne Bruno)
- USB: serial: ftdi_sio: match on interface number for jtag (Johan Hovold)
- USB: serial: option: move Telit 0x10c7 composition in the right place (Fabio Porcedda)
- USB: serial: option: add Telit Cinterion FE910C04 new compositions (Fabio Porcedda)
- USB: serial: option: add Foxconn T99W760 (Slark Xiao)
- KVM: SVM: Don't skip unrelated instruction if INT3/INTO is replaced (Omar Sandoval) [Orabug: 38773578] {CVE-2025-68259}
- comedi: pcl818: fix null-ptr-deref in pcl818_ai_cancel() (Nikita Zhandarovich)
- ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock() (Alexey Nepomnyashih) [Orabug: 38773586] {CVE-2025-68261}
- locking/spinlock/debug: Fix data-race in do_raw_write_lock (Alexander Sverdlin)
- ksmbd: ipc: fix use-after-free in ipc_msg_send_request (Qianchang Zhao)
- ext4: refresh inline data size before write operations (Deepanshu Kartikey) [Orabug: 38773602] {CVE-2025-68264}
- jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted (Ye Bin) [Orabug: 38792632] {CVE-2025-68337}
- Documentation: process: Also mention Sasha Levin as stable tree maintainer (Bagas Sanjaya)
- xfrm: flush all states in xfrm_state_fini (Sabrina Dubroca)
- xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added (Sabrina Dubroca)
- Revert "xfrm: destroy xfrm_state synchronously on net exit path" (Sabrina Dubroca)
- xfrm: delete x->tunnel as we delete x (Sabrina Dubroca) [Orabug: 38730491,38854317] {CVE-2025-40215}
- LTS version: v6.12.61 (Jack Vogel)
- spi: spi-nxp-fspi: Check return value of devm_mutex_init() (Thomas Weißschuh)
- drm/i915/dp: Initialize the source OUI write timestamp always (Imre Deak)
- Revert "ACPI: Suppress misleading SPCR console message when SPCR table is absent" (Punit Agrawal)
- wifi: ath12k: correctly handle mcast packets for clients (Sarika Sharma)
- net: dsa: microchip: Free previously initialized ports on init failures (Bastien Curutchet)
- net: dsa: microchip: Do not execute PTP driver code for unsupported switches (Tristram Ha)
- drm, fbcon, vga_switcheroo: Avoid race condition in fbcon setup (Thomas Zimmermann) [Orabug: 38773709] {CVE-2025-68296}
- net: dsa: microchip: Fix symetry in ksz_ptp_msg_irq_{setup/free}() (Bastien Curutchet)
- KVM: SVM: Fix redundant updates of LBR MSR intercepts (Yosry Ahmed)
- KVM: nSVM: Fix and simplify LBR virtualization handling with nested (Yosry Ahmed)
- KVM: nSVM: Always recalculate LBR MSR intercepts in svm_update_lbrv() (Yosry Ahmed)
- KVM: SVM: Introduce svm_recalc_lbr_msr_intercepts() (Yosry Ahmed)
- mm/huge_memory: fix NULL pointer deference when splitting folio (Wei Yang) [Orabug: 38773700] {CVE-2025-68293}
- usb: gadget: udc: fix use-after-free in usb_gadget_state_work (Jimmy Hu) [Orabug: 38773635] {CVE-2025-68282}
- usb: udc: Add trace event for usb_gadget_set_state (Kuen-Han Tsai)
- can: rcar_canfd: Fix CAN-FD mode as default (Biju Das)
- usb: typec: ucsi: psy: Set max current to zero when disconnected (Jameson Thies)
- nfsd: Replace clamp_t in nfsd4_get_drc_mem() (Neil Brown)
- staging: rtl8712: Remove driver using deprecated API wext (Philipp Hortmann)
- libceph: replace BUG_ON with bounds check for map->max_osd (Ziming Zhang) [Orabug: 38773641] {CVE-2025-68283}
- libceph: prevent potential out-of-bounds writes in handle_auth_session_key() (Ziming Zhang) [Orabug: 38773648] {CVE-2025-68284}
- libceph: fix potential use-after-free in have_mon_and_osd_map() (Ilya Dryomov) [Orabug: 38773654] {CVE-2025-68285}
- net: dsa: microchip: Don't free uninitialized ksz_irq (Bastien Curutchet)
- net: dsa: microchip: ptp: Fix checks on irq_find_mapping() (Bastien Curutchet)
- net: dsa: microchip: common: Fix checks on irq_find_mapping() (Bastien Curutchet)
- drm/amd/display: Don't change brightness for disabled connectors (Mario Limonciello)
- drm/amd/display: Check NULL before accessing (Alex Hung) [Orabug: 38773661] {CVE-2025-68286}
- drm/amd/amdgpu: reserve vm invalidation engine for uni_mes (Michael Chen)
- drm: sti: fix device leaks at component probe (Johan Hovold)
- USB: serial: option: add support for Rolling RW101R-GL (Vanillan Wang)
- USB: serial: ftdi_sio: add support for u-blox EVK-M101 (Oleksandr Suvorov)
- xhci: dbgtty: fix device unregister (Łukasz Bartosik)
- xhci: dbgtty: Fix data corruption when transmitting data form DbC to host (Mathias Nyman)
- xhci: fix stale flag preventig URBs after link state error is cleared (Mathias Nyman)
- usb: dwc3: Fix race condition between concurrent dwc3_remove_requests() call paths (Manish Nagar)
- usb: dwc3: pci: Sort out the Intel device IDs (Krogerus Heikki)
- usb: dwc3: pci: add support for the Intel Nova Lake -S (Krogerus Heikki)
- usb: uas: fix urb unmapping issue when the uas device is remove during ongoing data transfer (Owen Gu) [Orabug: 38792592] {CVE-2025-68331}
- usb: storage: sddr55: Reject out-of-bound new_pba (Tianchu Chen) [Orabug: 38762728] {CVE-2025-40345}
- USB: storage: Remove subclass and protocol overrides from Novatek quirk (Alan Stern)
- usb: storage: Fix memory leak in USB bulk transport (Desnes Nunes) [Orabug: 38773676] {CVE-2018-1000204,CVE-2025-68288}
- usb: renesas_usbhs: Fix synchronous external abort on unbind (Claudiu Beznea)
- usb: gadget: f_eem: Fix memory leak in eem_unwrap (Kuen-Han Tsai)
- usb: cdns3: Fix double resource release in cdns3_pci_probe (Miaoqian Lin)
- most: usb: fix double free on late probe failure (Johan Hovold)
- serial: amba-pl011: prefer dma_mapping_error() over explicit address checking (Miaoqian Lin)
- mptcp: Initialise rcv_mss before calling tcp_send_active_reset() in mptcp_do_fastclose(). (Kuniyuki Iwashima)
- mptcp: clear scheduled subflows on retransmit (Paolo Abeni)
- mmc: sdhci-of-dwcmshc: Promote the th1520 reset handling to ip level (Jisheng Zhang)
- mm/memfd: fix information leak in hugetlb folios (Deepanshu Kartikey) [Orabug: 38773697] {CVE-2025-68292}
- firmware: stratix10-svc: fix bug in saving controller data (Khairul Anuar Romli)
- nvmem: layouts: fix nvmem_layout_bus_uevent (Guan Wentao)
- slimbus: ngd: Fix reference count leak in qcom_slim_ngd_notify_slaves (Miaoqian Lin)
- thunderbolt: Add support for Intel Wildcat Lake (Alan Borzeszkowski)
- smb: client: fix memory leak in cifs_construct_tcon() (Paulo Alcantara) [Orabug: 38773703] {CVE-2025-68295}
- drivers/usb/dwc3: fix PCI parent check (Jamie Iles)
- dm-verity: fix unreliable memory allocation (Mikulas Patocka)
- ceph: fix crash in process_v2_sparse_read() for encrypted directories (Viacheslav Dubeyko) [Orabug: 38773716] {CVE-2025-68297}
- can: sun4i_can: sun4i_can_interrupt(): fix max irq loop handling (Marc Kleine-Budde)
- can: sja1000: fix max irq loop handling (Thomas Mühlbacher)
- Bluetooth: btusb: mediatek: Avoid btusb_mtk_claim_iso_intf() NULL deref (Douglas Anderson) [Orabug: 38773723] {CVE-2025-68298}
- atm/fore200e: Fix possible data race in fore200e_open() (Gui-Dong Han)
- ARM: dts: nxp: imx6ul: correct SAI3 interrupt line (Maarten Zanders)
- arm64: dts: imx8qm-mek: fix mux-controller select/enable-gpios polarity (Xu Yang)
- arm64: dts: imx8dxl-ss-conn: swap interrupts number of eqos (Frank Li)
- ALSA: usb-audio: Add DSD quirk for LEAK Stereo 230 (Ivan Zhaldak)
- tracing: Fix WARN_ON in tracing_buffers_mmap_close for split VMAs (Deepanshu Kartikey) [Orabug: 38792583] {CVE-2025-68329}
- MIPS: mm: kmalloc tlb_vpn array to avoid stack overflow (Thomas Bogendoerfer) [Orabug: 38851582]
- MIPS: mm: Prevent a TLB shutdown on initial uniquification (Maciej W. Rozycki)
- iio: adc: rtq6056: Correct the sign bit index (Chiyuan Huang)
- iio: adc: ad7280a: fix ad7280_store_balance_timer() (David Lechner)
- iio: accel: fix ADXL355 startup race condition (Valek Andrej)
- iio: accel: bmc150: Fix irq assumption regression (Linus Walleij) [Orabug: 38792585] {CVE-2025-68330}
- iio: adc: stm32-dfsdm: fix st,adc-alt-channel property handling (Olivier Moysan)
- iio:common:ssp_sensors: Fix an error handling path ssp_probe() (Christophe Jaillet)
- iio: imu: st_lsm6dsx: fix array size for st_lsm6dsx_settings fields (Francesco Lavra)
- iio: humditiy: hdc3020: fix units for thresholds and hysteresis (Dimitri Fedrau)
- iio: humditiy: hdc3020: fix units for temperature and humidity measurement (Dimitri Fedrau)
- iio: buffer: support getting dma channel from the buffer (Nuno Sa)
- iio: buffer-dmaengine: enable .get_dma_dev() (Nuno Sa)
- iio: buffer-dma: support getting the DMA channel (Nuno Sa)
- Revert "perf/x86: Always store regs->ip in perf_callchain_kernel()" (Jiri Olsa)
- Revert "drm/amd/display: Move setup_stream_attribute" (Alex Deucher)
- spi: bcm63xx: fix premature CS deassertion on RX-only transactions (Hang Zhou)
- spi: nxp-fspi: Propagate fwnode in ACPI case as well (Andy Shevchenko)
- spi: spi-nxp-fspi: Add OCT-DTR mode support (Haibo Chen)
- spi: spi-nxp-fspi: remove the goto in probe (Haibo Chen)
- spi: nxp-fspi: Support per spi-mem operation frequency switches (Miquel Raynal)
- spi: spi-mem: Add a new controller capability (Miquel Raynal)
- spi: spi-mem: Extend spi-mem operations with a per-operation maximum frequency (Miquel Raynal)
- spi: spi-mem: Allow specifying the byte order in Octal DTR mode (Tudor Ambarus)
- spi: amlogic-spifc-a1: Handle devm_pm_runtime_enable() errors (Xu Wang)
- spi: tegra114: remove Kconfig dependency on TEGRA20_APB_DMA (Francesco Lavra)
- fs/namespace: fix reference leak in grab_requested_mnt_ns (Andrei Vagin) [Orabug: 38773950] {CVE-2025-68300}
- mailbox: pcc: don't zero error register (Jamie Iles)
- mailbox: pcc: Refactor error handling in irq handler into separate function (Sudeep Holla)
- mailbox: mtk-cmdq: Refine DMA address handling for the command buffer (Jason-JH Lin)
- mailbox: mailbox-test: Fix debugfs_create_dir error checking (Xu Wang)
- usb: gadget: renesas_usbf: Handle devm_pm_runtime_enable() errors (Xu Wang)
- iio: st_lsm6dsx: Fixed calibrated timestamp calculation (Mario Tesi)
- net: fec: do not register PPS event for PEROUT (Wei Fang)
- net: fec: do not allow enabling PPS and PEROUT simultaneously (Wei Fang)
- net: fec: do not update PEROUT if it is enabled (Wei Fang)
- net: fec: cancel perout_timer when PEROUT is disabled (Wei Fang)
- net: atlantic: fix fragment overflow handling in RX path (Jiefeng Zhang) [Orabug: 38773728] {CVE-2025-68301}
- eth: fbnic: Fix counter roll-over issue (Mohsin Bashir)
- net: dsa: sja1105: fix SGMII linking at 10M or 100M but not passing traffic (Vladimir Oltean)
- net: dsa: sja1105: simplify static configuration reload (Russell King)
- net: wwan: mhi: Keep modem name match with Foxconn T99W640 (Slark Xiao)
- drm/amdgpu: fix cyan_skillfish2 gpu info fw handling (Alex Deucher)
- net: sxgbe: fix potential NULL dereference in sxgbe_rx() (Alexey Kodanev)
- team: Move team device type change at the end of team_port_add (Nikola Z. Ivanov) [Orabug: 38796270] {CVE-2025-68340}
- net/mlx5e: Fix validation logic in rate limiting (Danielle Costantino)
- drm/xe: Fix conversion from clock ticks to milliseconds (Harish Chegondi)
- net: lan966x: Fix the initialization of taprio (Horatiu Vultur)
- net: aquantia: Add missing descriptor cache invalidation on ATL2 (Kai-Heng Feng)
- platform/x86: intel: punit_ipc: fix memory corruption (Dan Carpenter)
- net: phy: mxl-gpy: fix bogus error on USXGMII and integrated PHY (Daniel Golle)
- veth: reduce XDP no_direct return section to fix race (Jesper Dangaard Brouer) [Orabug: 38796276] {CVE-2025-68341}
- veth: more robust handing of race to avoid txq getting stuck (Jesper Dangaard Brouer)
- veth: prevent NULL pointer dereference in veth_xdp_rcv (Jesper Dangaard Brouer)
- veth: apply qdisc backpressure on full ptr_ring to reduce TX drops (Jesper Dangaard Brouer)
- net: sched: generalize check for no-queue qdisc on TX queue (Jesper Dangaard Brouer)
- Bluetooth: SMP: Fix not generating mackey and ltk when repairing (Luiz Augusto von Dentz)
- Bluetooth: hci_sock: Prevent race in socket write iter and sock bind (Edward Adam Davis) [Orabug: 38773949] {CVE-2025-68305}
- Bluetooth: hci_core: Fix triggering cmd_timer for HCI_OP_NOP (Luiz Augusto von Dentz)
- Bluetooth: btusb: mediatek: Fix kernel crash when releasing mtk iso interface (Chris Lu) [Orabug: 38773748] {CVE-2025-68306}
- can: gs_usb: gs_usb_receive_bulk_callback(): check actual_length before accessing data (Marc Kleine-Budde) [Orabug: 38796278] {CVE-2025-68342}
- can: gs_usb: gs_usb_receive_bulk_callback(): check actual_length before accessing header (Marc Kleine-Budde) [Orabug: 38796285] {CVE-2025-68343}
- can: gs_usb: gs_usb_xmit_callback(): fix handling of failed transmitted URBs (Marc Kleine-Budde) [Orabug: 38773751] {CVE-2025-68307}
- can: kvaser_usb: leaf: Fix potential infinite loop in command parsers (Seungjin Bae) [Orabug: 38773759] {CVE-2025-68308}
- LTS version: v6.12.60 (Jack Vogel)
- Revert "gpio: swnode: don't use the swnode's name as the key for GPIO lookup" (Charles Keepax)
- drm/amd/display: Prevent Gating DTBCLK before It Is Properly Latched (Fangzhi Zuo)
- drm/amd/display: Insert dccg log for easy debug (Charlene Liu)
- drm/amd/display: disable DPP RCG before DPP CLK enable (Charlene Liu)
- drm/amd/display: avoid reset DTBCLK at clock init (Charlene Liu)
- xfs: fix out of bounds memory read error in symlink repair (Darrick J. Wong) [Orabug: 38730602] {CVE-2025-40246}
- xfs: Replace strncpy with memcpy (Marcelo Moreira)
- mptcp: fix a race in mptcp_pm_del_add_timer() (Eric Dumazet) [Orabug: 38730655] {CVE-2025-40257}
- drm/i915/dp_mst: Disable Panel Replay (Imre Deak)
- maple_tree: fix tracepoint string pointers (Martin Kaiser)
- tty/vt: fix up incorrect backport to stable releases (Jari Ruusu)
- smb: client: fix incomplete backport in cfids_invalidation_worker() (Henrique Carvalho)
- drm/amdgpu: fix gpu page fault after hibernation on PF passthrough (Samuel Zhang) [Orabug: 38773445] {CVE-2025-68230}
- tracing/tools: Fix incorrcet short option in usage text for --threads (Zhang Chujun)
- net: ethernet: ti: netcp: Standardize knav_dma_open_channel to return NULL on error (Nishanth Menon)
- ALSA: usb-audio: fix uac2 clock source at terminal parser (René Rebe)
- s390/mm: Fix __ptep_rdp() inline assembly (Heiko Carstens)
- drm/xe: Prevent BIT() overflow when handling invalid prefetch region (Shuicheng Lin)
- Revert "RDMA/irdma: Update Kconfig" (Guan Wentao)
- KVM: arm64: Make all 32bit ID registers fully writable (Marc Zyngier)
- ALSA: usb-audio: Fix missing unlock at error path of maxpacksize check (Takashi Iwai)
- kconfig/nconf: Initialize the default locale at startup (Jakub Horký)
- kconfig/mconf: Initialize the default locale at startup (Jakub Horký)
- net: tls: Cancel RX async resync request on rcd_delta overflow (Shahar Shitrit)
- blk-crypto: use BLK_STS_INVAL for alignment errors (Carlos Llamas)
- net: tls: Change async resync helpers argument (Shahar Shitrit)
- selftests: net: use BASH for bareudp testing (Po-Hsu Lin)
- x86/microcode/AMD: Limit Entrysign signature checking to known generations (Borislav Petkov)
- scsi: core: Fix a regression triggered by scsi_host_busy() (Bart Van Assche) [Orabug: 38773426]
- cifs: fix typo in enable_gcm_256 module parameter (Steve French)
- bcma: don't register devices disabled in OF (Rafał Miłecki)
- vsock: Ignore signal/timeout on connect() if already established (Michal Luczaj) [Orabug: 38730610,38858283] {CVE-2025-40248}
- cifs: fix memory leak in smb3_fs_context_parse_param error path (Shaurya Rane) [Orabug: 38773403] {CVE-2025-68219}
- LoongArch: Use UAPI types in ptrace UAPI header (Thomas Weißschuh)
- af_unix: Read sk_peek_offset() again after sleeping in unix_stream_read_generic(). (Kuniyuki Iwashima)
- af_unix: Cache state->msg in unix_stream_read_generic(). (Kuniyuki Iwashima)
- devlink: rate: Unset parent pointer in devl_rate_nodes_destroy (Shay Drory) [Orabug: 38730623] {CVE-2025-40251}
- pinctrl: s32cc: initialize gpio_pin_config::list after kmalloc() (Jared Kangas)
- pinctrl: s32cc: fix uninitialized memory in s32_pinctrl_desc (Jared Kangas)
- ice: fix PTP cleanup on driver removal in error path (Grzegorz Nitka) [Orabug: 38773389] {CVE-2025-68215}
- idpf: fix possible vport_config NULL pointer deref in remove (Emil Tantilov) [Orabug: 38773956] {CVE-2025-68213}
- net: qlogic/qede: fix potential out-of-bounds read in qede_tpa_cont() and qede_tpa_end() (Pavel Zhigulin) [Orabug: 38730628] {CVE-2025-40252}
- platform/x86/intel/speed_select_if: Convert PCIBIOS_* return codes to errnos (Xu Wang)
- selftests: net: lib: Do not overwrite error messages (Ido Schimmel)
- s390/ctcm: Fix double-kfree (Aleksei Nikiforov)
- nvme-multipath: fix lockdep WARN due to partition scan work (Shin'Ichiro Kawasaki) [Orabug: 38773400] {CVE-2025-68218}
- tools: riscv: Fixed misalignment of CSR related definitions (Chen Pei)
- net: openvswitch: remove never-working support for setting nsh fields (Ilya Maximets) [Orabug: 38730647] {CVE-2025-40254}
- net: mlxsw: linecards: fix missing error check in mlxsw_linecard_devlink_info_get() (Pavel Zhigulin)
- net: dsa: hellcreek: fix missing error handling in LED registration (Pavel Zhigulin)
- drm/tegra: Add call to put_pid() (Prateek Agarwal) [Orabug: 38773463] {CVE-2025-68233}
- mlxsw: spectrum: Fix memory leak in mlxsw_sp_flower_stats() (Zilin Guan)
- platform/x86: msi-wmi-platform: Fix typo in WMI GUID (Armin Wolf)
- platform/x86: msi-wmi-platform: Only load on MSI devices (Armin Wolf)
- pinctrl: cirrus: Fix fwnode leak in cs42l43_pin_probe() (Xu Wang)
- xfrm: Prevent locally generated packets from direct output in tunnel mode (Jianbo Liu)
- xfrm: Determine inner GSO type from packet inner protocol (Jianbo Liu)
- pinctrl: realtek: Select REGMAP_MMIO for RTD driver (Yu-Chun Lin)
- xfrm: set err and extack on failure to create pcpu SA (Sabrina Dubroca)
- xfrm: drop SA reference in xfrm_state_update if dir doesn't match (Sabrina Dubroca)
- drm/amd/display: Clear the CUR_ENABLE register on DCN20 on DPP5 (Ivan Lipski)
- drm/amd/display: Fix pbn to kbps Conversion (Fangzhi Zuo)
- drm/amd/display: Move sleep into each retry for retrieve_link_cap() (Mario Limonciello)
- drm/amd/display: Increase DPCD read retries (Mario Limonciello)
- drm/amdgpu: Skip emit de meta data on gfx11 with rs64 enabled (Yifan Zha)
- drm/amd: Skip power ungate during suspend for VPE (Mario Limonciello)
- drm/radeon: delete radeon_fence_process in is_signaled, no deadlock (Robert Mcclinton) [Orabug: 38773418] {CVE-2025-68223}
- drm/tegra: dc: Fix reference leak in tegra_dc_couple() (Ma Ke)
- mptcp: do not fallback when OoO is present (Paolo Abeni)
- mptcp: decouple mptcp fastclose from tcp close (Paolo Abeni)
- mptcp: avoid unneeded subflow-level drops (Paolo Abeni)
- selftests: mptcp: join: userspace: longer timeout (Matthieu Baerts)
- selftests: mptcp: join: endpoints: longer timeout (Matthieu Baerts)
- mptcp: fix premature close in case of fallback (Paolo Abeni)
- mptcp: fix duplicate reset on fastclose (Paolo Abeni)
- mptcp: fix ack generation for fallback msk (Paolo Abeni)
- mptcp: fix race condition in mptcp_schedule_work() (Eric Dumazet) [Orabug: 38730658] {CVE-2025-40258}
- LoongArch: Don't panic if no valid cache info for PCI (Huacai Chen)
- dt-bindings: pinctrl: toshiba,visconti: Fix number of items in groups (Krzysztof Kozlowski)
- MIPS: Malta: Fix !EVA SOC-it PCI MMIO (Maciej W. Rozycki)
- scsi: target: tcm_loop: Fix segfault in tcm_loop_tpg_address_show() (Hamza Mahfooz) [Orabug: 38773439] {CVE-2025-68229}
- scsi: sg: Do not sleep in atomic context (Bart Van Assche) [Orabug: 38730661] {CVE-2025-40259}
- nvme: nvme-fc: Ensure ->ioerr_work is cancelled in nvme_fc_delete_ctrl() (Ewan D. Milne) [Orabug: 38730672] {CVE-2025-40261}
- nvme: nvme-fc: move tagset removal to nvme_fc_delete_ctrl() (Ewan D. Milne)
- nouveau/firmware: Add missing kfree() of nvkm_falcon_fw::boot (Nam Cao) [Orabug: 38773467] {CVE-2025-68235}
- mm/mempool: fix poisoning order>0 pages with HIGHMEM (Vlastimil Babka) [Orabug: 38773453] {CVE-2025-68231}
- Input: pegasus-notetaker - fix potential out-of-bounds access (Seungjin Bae)
- Input: imx_sc_key - fix memory corruption on unload (Dan Carpenter)
- Input: goodix - add support for ACPI ID GDIX1003 (Hans de Goede)
- Input: cros_ec_keyb - fix an invalid memory access (Tzung-Bi Shih) [Orabug: 38730679] {CVE-2025-40263}
- Revert "drm/tegra: dsi: Clear enable register if powered by bootloader" (Diogo Ivo)
- net: dsa: microchip: lan937x: Fix RGMII delay tuning (Oleksij Rempel)
- be2net: pass wrb_params in case of OS2BMC (Andrey Vatoropin) [Orabug: 38730688] {CVE-2025-40264}
- ata: libata-scsi: Add missing scsi_device_put() in ata_scsi_dev_rescan() (Yihang Li)
- smb: client: introduce close_cached_dir_locked() (Henrique Carvalho)
- ata: libata-scsi: Fix system suspend for a security locked drive (Niklas Cassel)
- mptcp: Fix proto fallback detection with BPF (Jiayuan Chen) [Orabug: 38773434] {CVE-2025-68227}
- mptcp: Disallow MPTCP subflows from sockmap (Jiayuan Chen)
- exfat: check return value of sb_min_blocksize in exfat_read_boot_sector (Yongpeng Yang)
- shmem: fix tmpfs reconfiguration (remount) when noswap is set (Mike Yuan)
- isofs: check the return value of sb_min_blocksize() in isofs_fill_super (Yongpeng Yang)
- mtdchar: fix integer overflow in read/write ioctls (Dan Carpenter) [Orabug: 38773476] {CVE-2025-68237}
- mtd: rawnand: cadence: fix DMA device NULL pointer dereference (Niravkumar L Rabara)
- arm64: dts: rockchip: disable HS400 on RK3588 Tiger (Quentin Schulz)
- arm64: dts: rockchip: include rk3399-base instead of rk3399 in rk3399-op1 (Quentin Schulz)
- arm64: dts: rockchip: fix PCIe 3.3V regulator voltage on orangepi-5 (Mykola Kvach)
- arm64: dts: rockchip: Fix vccio4-supply on rk3566-pinetab2 (Diederik de Haas)
- HID: quirks: work around VID/PID conflict for 0x4c4a/0x4155 (Zhang Heng)
- HID: amd_sfh: Stop sensor before starting (Mario Limonciello)
- timers: Fix NULL function pointer race in timer_shutdown_sync() (Yipeng Zou) [Orabug: 38773387] {CVE-2025-68214}
- KVM: arm64: Check the untrusted offset in FF-A memory share (Sebastian Ene) [Orabug: 38730696] {CVE-2025-40266}
-
Tue Dec 09 2025 Jack Vogel <jack.vogel@oracle.com> [6.12.0-107.59.3.el9uek]
- rds: Add smp_rmb before reading c_destroy_in_prog (Håkon Bugge) [Orabug: 38352483]
- dma/pool: eliminate alloc_pages warning in atomic_pool_expand (Dave Kleikamp) [Orabug: 38643312]
- net/mlx5e: Add a miss level for ipsec crypto offload (Lama Kayal) [Orabug: 38733231]