Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2025-20406 http://linux.oracle.com/errata/ELSA-2025-20406.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: aarch64: kernel-uek-5.4.17-2136.344.4.3.el8uek.aarch64.rpm kernel-uek-debug-5.4.17-2136.344.4.3.el8uek.aarch64.rpm kernel-uek-debug-devel-5.4.17-2136.344.4.3.el8uek.aarch64.rpm kernel-uek-devel-5.4.17-2136.344.4.3.el8uek.aarch64.rpm kernel-uek-doc-5.4.17-2136.344.4.3.el8uek.noarch.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates/kernel-uek-5.4.17-2136.344.4.3.el8uek.src.rpm Related CVEs: CVE-2024-28956 CVE-2024-36350 CVE-2024-36357 Description of changes: [5.4.17-2136.344.4.3.el8uek] - Add Zen34 clients (Borislav Petkov (AMD)) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/process: Move the buffer clearing before MONITOR (Kim Phillips) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - KVM: SVM: Advertize TSA CPUID bits to guests (Borislav Petkov (AMD)) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Add a Transient Scheduler Attacks mitigation (Borislav Petkov (AMD)) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - KVM: x86: add support for CPUID leaf 0x80000021 (Paolo Bonzini) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Rename MDS machinery to something more generic (Borislav Petkov (AMD)) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/CPU/AMD: Add ZenX generations flags (Borislav Petkov (AMD)) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Free X86_BUG_AMD_APIC_C1E and X86_BUG_AMD_E400 bits (Boris Ostrovsky) [Orabug: 38129026] {CVE-2024-36350} {CVE-2024-36357} - x86/bugs: Enabling Retbleed and SRSO mitigation can taint the kernel (Alexandre Chartre) [Orabug: 38129010] - selftest/x86/bugs: Add selftests for ITS (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Align RETs in BHBclear sequence to avoid thunking (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Add "vmexit" option to skip mitigation on some CPUs (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Enable Indirect Target Selection mitigation (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Add support for ITS-safe return thunk (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Add support for ITS-safe indirect thunk (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - x86/its: Enumerate Indirect Target Selection (ITS) bug (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} - Documentation: x86/bugs/its: Add ITS documentation (Pawan Gupta) [Orabug: 38128642] {CVE-2024-28956} _______________________________________________ El-errata mailing list
* bsc#1216869 * bsc#1217711 * bsc#1218046 * bsc#1218049 * bsc#1218050 . # Security update for slurm_23_02 Announcement ID: SUSE-SU-2024:0312-1 Rating: important References: * bsc#1216869 * bsc#1217711 * bsc#1218046 * bsc#1218049 * bsc#1218050 * bsc#1218051 * bsc#1218053 Cross-References: * CVE-2023-49933 * CVE-2023-49935 * CVE-2023-49936 * CVE-2023-49937 * CVE-2023-49938 CVSS scores: * CVE-2023-49933 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2023-49933 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N * CVE-2023-49935 ( SUSE ): 5.9 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-49935 ( NVD ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-49936 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2023-49936 ( NVD ): 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H * CVE-2023-49937 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H * CVE-2023-49937 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2023-49938 ( SUSE ): 5.1 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-49938 ( NVD ): 8.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N Affected Products: * HPC Module 12 * SUSE Linux Enterprise High Performance Computing 12 SP2 * SUSE Linux Enterprise High Performance Computing 12 SP3 * SUSE Linux Enterprise High Performance Computing 12 SP4 * SUSE Linux Enterprise High Performance Computing 12 SP5 * SUSE Linux Enterprise Server 12 SP2 * SUSE Linux Enterprise Server 12 SP3 * SUSE Linux Enterprise Server 12 SP4 * SUSE Linux Enterprise Server 12 SP5 * SUSE Linux Enterprise Server for SAP Applications 12 SP2 * SUSE Linux Enterprise Server for SAP Applications 12 SP3 * SUSE Linux Enterprise Server for SAP Applications 12 SP4 * SUSE Linux Enterprise Server for SAP Applications 12 SP5 An update that solves five vulnerabilities and has two security fixes can now be installed. ## Description: This update for slurm_23_02fixes the following issues: Update to slurm 23.02.6: Security fixes: * CVE-2023-49933: Prevent message extension attacks that could bypass the message hash. (bsc#1218046) * CVE-2023-49935: Prevent message hash bypass in slurmd which can allow an attacker to reuse root-level MUNGE tokens and escalate permissions. (bsc#1218049) * CVE-2023-49936: Prevent NULL pointer dereference on `size_valp` overflow. (bsc#1218050) * CVE-2023-49937: Prevent double-xfree() on error in `_unpack_node_reg_resp()`. (bsc#1218051) * CVE-2023-49938: Prevent modified `sbcast` RPCs from opening a file with the wrong group permissions. (bsc#1218053) Other fixes: * Add missing service file for slurmrestd (bsc#1217711). * Fix slurm upgrading to incompatible versions (bsc#1216869). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * HPC Module 12 zypper in -t patch SUSE-SLE-Module-HPC-12-2024-312=1 ## Package List: * HPC Module 12 (aarch64 x86_64) * libnss_slurm2_23_02-debuginfo-23.02.7-3.16.1 * slurm_23_02-cray-23.02.7-3.16.1 * slurm_23_02-pam_slurm-debuginfo-23.02.7-3.16.1 * slurm_23_02-23.02.7-3.16.1 * slurm_23_02-node-debuginfo-23.02.7-3.16.1 * slurm_23_02-auth-none-debuginfo-23.02.7-3.16.1 * slurm_23_02-auth-none-23.02.7-3.16.1 * slurm_23_02-sview-23.02.7-3.16.1 * slurm_23_02-plugin-ext-sensors-rrd-23.02.7-3.16.1 * slurm_23_02-munge-23.02.7-3.16.1 * slurm_23_02-plugin-ext-sensors-rrd-debuginfo-23.02.7-3.16.1 * slurm_23_02-sview-debuginfo-23.02.7-3.16.1 * slurm_23_02-munge-debuginfo-23.02.7-3.16.1 * slurm_23_02-lua-debuginfo-23.02.7-3.16.1 * slurm_23_02-cray-debuginfo-23.02.7-3.16.1 * slurm_23_02-pam_slurm-23.02.7-3.16.1 * libpmi0_23_02-debuginfo-23.02.7-3.16.1 * libslurm39-debuginfo-23.02.7-3.16.1 * slurm_23_02-devel-23.02.7-3.16.1 *slurm_23_02-sql-debuginfo-23.02.7-3.16.1 * libpmi0_23_02-23.02.7-3.16.1 * perl-slurm_23_02-debuginfo-23.02.7-3.16.1 * libnss_slurm2_23_02-23.02.7-3.16.1 * slurm_23_02-plugins-23.02.7-3.16.1 * slurm_23_02-slurmdbd-23.02.7-3.16.1 * slurm_23_02-plugins-debuginfo-23.02.7-3.16.1 * libslurm39-23.02.7-3.16.1 * slurm_23_02-torque-23.02.7-3.16.1 * slurm_23_02-debugsource-23.02.7-3.16.1 * slurm_23_02-slurmdbd-debuginfo-23.02.7-3.16.1 * slurm_23_02-debuginfo-23.02.7-3.16.1 * slurm_23_02-torque-debuginfo-23.02.7-3.16.1 * slurm_23_02-lua-23.02.7-3.16.1 * slurm_23_02-sql-23.02.7-3.16.1 * perl-slurm_23_02-23.02.7-3.16.1 * slurm_23_02-node-23.02.7-3.16.1 * HPC Module 12 (noarch) * slurm_23_02-doc-23.02.7-3.16.1 * slurm_23_02-webdoc-23.02.7-3.16.1 * slurm_23_02-config-23.02.7-3.16.1 * slurm_23_02-config-man-23.02.7-3.16.1 ## References: * https://www.suse.com/security/cve/CVE-2023-49933.html * https://www.suse.com/security/cve/CVE-2023-49935.html * https://www.suse.com/security/cve/CVE-2023-49936.html * https://www.suse.com/security/cve/CVE-2023-49937.html * https://www.suse.com/security/cve/CVE-2023-49938.html * https://bugzilla.suse.com/show_bug.cgi?id=1216869 * https://bugzilla.suse.com/show_bug.cgi?id=1217711 * https://bugzilla.suse.com/show_bug.cgi?id=1218046 * https://bugzilla.suse.com/show_bug.cgi?id=1218049 * https://bugzilla.suse.com/show_bug.cgi?id=1218050 * https://bugzilla.suse.com/show_bug.cgi?id=1218051 * https://bugzilla.suse.com/show_bug.cgi?id=1218053 . Critical patch for slurm_23_02 on SUSE addresses various vulnerabilities and brings key improvements. Discover additional information here.. SUSE Update, Slurm Security, HPC Module Threats, Security Fixes. . Severity: Important. LinuxSecurity.com Team
The SUSE Linux Enterprise 15 SP4 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed:. # Security update for the Linux Kernel Announcement ID: SUSE-SU-2023:3182-1 Rating: important References: * #1150305 * #1193629 * #1194869 * #1207894 * #1208788 * #1210565 * #1210584 * #1210853 * #1211243 * #1211811 * #1211867 * #1212301 * #1212846 * #1212905 * #1213010 * #1213011 * #1213012 * #1213013 * #1213014 * #1213015 * #1213016 * #1213017 * #1213018 * #1213019 * #1213020 * #1213021 * #1213024 * #1213025 * #1213032 * #1213034 * #1213035 * #1213036 * #1213037 * #1213038 * #1213039 * #1213040 * #1213041 * #1213059 * #1213061 * #1213087 * #1213088 * #1213089 * #1213090 * #1213092 * #1213093 * #1213094 * #1213095 * #1213096 * #1213098 * #1213099 * #1213100 * #1213102 * #1213103 * #1213104 * #1213105 * #1213106 * #1213107 * #1213108 * #1213109 * #1213110 * #1213111 * #1213112 * #1213113 * #1213114 * #1213134 * #1213245 * #1213247 * #1213252 * #1213258 * #1213259 * #1213263 * #1213264 * #1213286 * #1213523 * #1213524 * #1213543 * #1213585 * #1213586 * #1213705 Cross-References: * CVE-2023-20593 * CVE-2023-2985 * CVE-2023-3117 * CVE-2023-31248 * CVE-2023-3390 * CVE-2023-35001 * CVE-2023-3609 * CVE-2023-3611 * CVE-2023-3812 CVSS scores: * CVE-2023-20593 ( SUSE ): 6.2 CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N * CVE-2023-20593 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N * CVE-2023-2985 ( SUSE ): 6.4 CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-2985 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H * CVE-2023-3117 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3117 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-31248 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-31248 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3390 ( SUSE ): 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3390 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-35001 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-35001 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3609 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3609 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3611 ( SUSE ): 6.7 CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3611 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3812 ( SUSE ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2023-3812 ( NVD ): 7.8 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * Public Cloud Module 15-SP4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 * SUSE Manager Proxy 4.3 * SUSE Manager Retail Branch Server 4.3 * SUSE Manager Server 4.3 An update that solves nine vulnerabilities, contains one feature and has 70 fixes can now be installed. ## Description: The SUSE Linux Enterprise 15 SP4 Azure kernel was updated to receive various security and bugfixes. The following security bugs were fixed: * CVE-2023-3609: Fixed an use-after-free vulnerability in net/sched (bsc#1213586). * CVE-2023-3611: Fixed an out-of-bounds write vulnerability in net/sched (bsc#1213585). * CVE-2023-3812: Fixed an out-of-bounds memory access flaw in the TUN/TAP device driver functionality that could allow a local user to crash or potentially escalate their privileges on the system (bsc#1213543). * CVE-2023-35001: Fixed an out-of-bounds memory access flaw in nft_byteorder that could allow a local attacker to escalate their privilege (bsc#1213059). * CVE-2023-31248: Fixed an use-after-free vulnerability in nft_chain_lookup_byid that could allow a local attacker to escalate their privilege (bsc#1213061). * CVE-2023-3390: Fixedan use-after-free vulnerability in the netfilter subsystem in net/netfilter/nf_tables_api.c that could allow a local attacker with user access to cause a privilege escalation issue (bsc#1212846). * CVE-2023-3117: Fixed an use-after-free vulnerability in the netfilter subsystem when processing named and anonymous sets in batch requests that could allow a local user with CAP_NET_ADMIN capability to crash or potentially escalate their privileges on the system (bsc#1213245). * CVE-2023-20593: Fixed a ZenBleed issue in "Zen 2" CPUs that could allow an attacker to potentially access sensitive information (bsc#1213286). * CVE-2023-2985: Fixed an use-after-free vulnerability in hfsplus_put_super in fs/hfsplus/super.c that could allow a local user to cause a denial of service (bsc#1211867). The following non-security bugs were fixed: * Add MODULE_FIRMWARE() for FIRMWARE_TG357766 (git-fixes). * Drop patch that caused issues with k3s (bsc#1213705). * Enable NXP SNVS RTC driver for i.MX 8MQ/8MP (jsc#PED-4758) * Fix documentation of panic_on_warn (git-fixes). * Fixed launch issue on 15-SP5 (git-fixes, bsc#1210853). * Revert "arm64: dts: zynqmp: Add address-cells property to interrupt (git- fixes) * Revert "drm/amd/display: edp do not add non-edid timings" (git-fixes). * acpi: utils: Fix acpi_evaluate_dsm_typed() redefinition error (git-fixes). * alsa: fireface: make read-only const array for model names static (git- fixes). * alsa: hda/realtek - remove 3k pull low procedure (git-fixes). * alsa: hda/realtek: Add quirk for ASUS ROG G614Jx (git-fixes). * alsa: hda/realtek: Add quirk for ASUS ROG GA402X (git-fixes). * alsa: hda/realtek: Add quirk for ASUS ROG GX650P (git-fixes). * alsa: hda/realtek: Add quirk for ASUS ROG GZ301V (git-fixes). * alsa: hda/realtek: Add quirk for Clevo NPx0SNx (git-fixes). * alsa: hda/realtek: Add quirk for Clevo NS70AU (git-fixes). * alsa: hda/realtek: Add quirks for Unis H3C Desktop B760 & Q760 (git-fixes). * alsa: hda/realtek: Add support for DELL Oasis 13/14/16laptops (git-fixes). * alsa: hda/realtek: Amend G634 quirk to enable rear speakers (git-fixes). * alsa: hda/realtek: Enable Mute LED on HP Laptop 15s-eq2xxx (git-fixes). * alsa: hda/realtek: Fix generic fixup definition for cs35l41 amp (git-fixes). * alsa: hda/realtek: Whitespace fix (git-fixes). * alsa: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() (git-fixes). * alsa: oxfw: make read-only const array models static (git-fixes). * alsa: pcm: Fix potential data race at PCM memory allocation helpers (git- fixes). * apparmor: fix missing error check for rhashtable_insert_fast (git-fixes). * arm64/mm: mark private VM_FAULT_X defines as vm_fault_t (git-fixes) * arm64: dts: microchip: sparx5: do not use PSCI on reference boards (git- fixes) * arm64: vdso: Pass (void *) to virt_to_page() (git-fixes) * arm64: xor-neon: mark xor_arm64_neon_*() static (git-fixes) * asoc: codecs: wcd-mbhc-v2: fix resource leaks on component remove (git- fixes). * asoc: codecs: wcd934x: fix resource leaks on component remove (git-fixes). * asoc: codecs: wcd938x: fix codec initialisation race (git-fixes). * asoc: codecs: wcd938x: fix dB range for HPHL and HPHR (git-fixes). * asoc: codecs: wcd938x: fix missing clsh ctrl error handling (git-fixes). * asoc: codecs: wcd938x: fix soundwire initialisation race (git-fixes). * asoc: tegra: Fix ADX byte map (git-fixes). * asoc: tegra: Fix AMX byte map (git-fixes). * can: bcm: Fix UAF in bcm_proc_show() (git-fixes). * cifs: add a warning when the in-flight count goes negative (bsc#1193629). * cifs: address unused variable warning (bsc#1193629). * cifs: do all necessary checks for credits within or before locking (bsc#1193629). * cifs: fix lease break oops in xfstest generic/098 (bsc#1193629). * cifs: fix max_credits implementation (bsc#1193629). * cifs: fix session state check in reconnect to avoid use-after-free issue (bsc#1193629). * cifs: fix session state check in smb2_find_smb_ses (bsc#1193629). * cifs: fix session statetransition to avoid use-after-free issue (bsc#1193629). * cifs: fix sockaddr comparison in iface_cmp (bsc#1193629). * cifs: fix status checks in cifs_tree_connect (bsc#1193629). * cifs: log session id when a matching ses is not found (bsc#1193629). * cifs: new dynamic tracepoint to track ses not found errors (bsc#1193629). * cifs: prevent use-after-free by freeing the cfile later (bsc#1193629). * cifs: print all credit counters in DebugData (bsc#1193629). * cifs: print client_guid in DebugData (bsc#1193629). * cifs: print more detail when invalidate_inode_mapping fails (bsc#1193629). * cifs: print nosharesock value while dumping mount options (bsc#1193629). * clk: qcom: camcc-sc7180: Add parent dependency to all camera GDSCs (git- fixes). * clk: qcom: gcc-ipq6018: Use floor ops for sdcc clocks (git-fixes). * codel: fix kernel-doc notation warnings (git-fixes). * crypto: kpp - Add helper to set reqsize (git-fixes). * crypto: qat - Use helper to set reqsize (git-fixes). * devlink: fix kernel-doc notation warnings (git-fixes). * docs: networking: Update codeaurora references for rmnet (git-fixes). * documentation: bonding: fix the doc of peer_notif_delay (git-fixes). * documentation: timers: hrtimers: Make hybrid union historical (git-fixes). * drm/amd/display: Correct `DMUB_FW_VERSION` macro (git-fixes). * drm/amdgpu: Set vmbo destroy after pt bo is created (git-fixes). * drm/amdgpu: Validate VM ioctl flags (git-fixes). * drm/amdgpu: avoid restore process run into dead loop (git-fixes). * drm/amdgpu: fix clearing mappings for BOs that are always valid in VM (git- fixes). * drm/atomic: Allow vblank-enabled + self-refresh "disable" (git-fixes). * drm/atomic: Fix potential use-after-free in nonblocking commits (git-fixes). * drm/bridge: tc358768: Add atomic_get_input_bus_fmts() implementation (git- fixes). * drm/bridge: tc358768: fix TCLK_TRAILCNT computation (git-fixes). * drm/bridge: tc358768: fix THS_TRAILCNT computation (git-fixes). * drm/bridge: tc358768: fix THS_ZEROCNTcomputation (git-fixes). * drm/client: Fix memory leak in drm_client_target_cloned (git-fixes). * drm/i915/psr: Use hw.adjusted mode when calculating io/fast wake times (git- fixes). * drm/i915: Fix one wrong caching mode enum usage (git-fixes). * drm/msm/disp/dpu: get timing engine status from intf status register (git- fixes). * drm/msm/dpu: Set DPU_DATA_HCTL_EN for in INTF_SC7180_MASK (git-fixes). * drm/panel: simple: Add Powertip PH800480T013 drm_display_mode flags (git- fixes). * drm/panel: simple: Add connector_type for innolux_at043tn24 (git-fixes). * drm/ttm: Do not leak a resource on swapout move error (git-fixes). * dt-bindings: phy: brcm,brcmstb-usb-phy: Fix error in "compatible" conditional schema (git-fixes). * ext4: Fix reusing stale buffer heads from last failed mounting (bsc#1213020). * ext4: add EA_INODE checking to ext4_iget() (bsc#1213106). * ext4: add ext4_sb_block_valid() refactored out of ext4_inode_block_valid() (bsc#1213088). * ext4: add lockdep annotations for i_data_sem for ea_inode's (bsc#1213109). * ext4: add strict range checks while freeing blocks (bsc#1213089). * ext4: avoid deadlock in fs reclaim with page writeback (bsc#1213016). * ext4: bail out of ext4_xattr_ibody_get() fails for any reason (bsc#1213018). * ext4: block range must be validated before use in ext4_mb_clear_bb() (bsc#1213090). * ext4: check iomap type only if ext4_iomap_begin() does not fail (bsc#1213103). * ext4: disallow ea_inodes with extended attributes (bsc#1213108). * ext4: fail ext4_iget if special inode unallocated (bsc#1213010). * ext4: fix WARNING in ext4_update_inline_data (bsc#1213012). * ext4: fix WARNING in mb_find_extent (bsc#1213099). * ext4: fix bug_on in __es_tree_search caused by bad quota inode (bsc#1213111). * ext4: fix data races when using cached status extents (bsc#1213102). * ext4: fix deadlock when converting an inline directory in nojournal mode (bsc#1213105). * ext4: fix i_disksize exceeding i_size problem in paritally written case (bsc#1213015). *ext4: fix lockdep warning when enabling MMP (bsc#1213100). * ext4: fix task hung in ext4_xattr_delete_inode (bsc#1213096). * ext4: fix to check return value of freeze_bdev() in ext4_shutdown() (bsc#1213021). * ext4: fix use-after-free read in ext4_find_extent for bigalloc + inline (bsc#1213098). * ext4: improve error handling from ext4_dirhash() (bsc#1213104). * ext4: improve error recovery code paths in __ext4_remount() (bsc#1213017). * ext4: move where set the MAY_INLINE_DATA flag is set (bsc#1213011). * ext4: only update i_reserved_data_blocks on successful block allocation (bsc#1213019). * ext4: refactor ext4_free_blocks() to pull out ext4_mb_clear_bb() (bsc#1213087). * ext4: refuse to create ea block when umounted (bsc#1213093). * ext4: set lockdep subclass for the ea_inode in ext4_xattr_inode_cache_find() (bsc#1213107). * ext4: turn quotas off if mount failed after enabling quotas (bsc#1213110). * ext4: update s_journal_inum if it changes after journal replay (bsc#1213094). * ext4: use ext4_fc_tl_mem in fast-commit replay path (bsc#1213092). * ext4: zero i_disksize when initializing the bootloader inode (bsc#1213013). * fbdev: au1200fb: Fix missing IRQ check in au1200fb_drv_probe (git-fixes). * fbdev: imxfb: warn about invalid left/right margin (git-fixes). * fuse: ioctl: translate ENOSYS in outarg (bsc#1213524). * fuse: revalidate: do not invalidate if interrupted (bsc#1213523). * hvcs: Fix hvcs port reference counting (bsc#1213134 ltc#202861). * hvcs: Get reference to tty in remove (bsc#1213134 ltc#202861). * hvcs: Synchronize hotplug remove with port free (bsc#1213134 ltc#202861). * hvcs: Use dev_groups to manage hvcs device attributes (bsc#1213134 ltc#202861). * hvcs: Use driver groups to manage driver attributes (bsc#1213134 ltc#202861). * hvcs: Use vhangup in hotplug remove (bsc#1213134 ltc#202861). * hwmon: (adm1275) Allow setting sample averaging (git-fixes). * hwmon: (pmbus/adm1275) Fix problems with temperature monitoring on ADM1272 (git-fixes). * i2c: xiic:Defer xiic_wakeup() and __xiic_start_xfer() in xiic_process() (git-fixes). * i2c: xiic: Do not try to handle more interrupt events after error (git- fixes). * ib/hfi1: Use bitmap_zalloc() when applicable (git-fixes) * inotify: Avoid reporting event with invalid wd (bsc#1213025). * jbd2: fix data missing when reusing bh which is ready to be checkpointed (bsc#1213095). * jdb2: Do not refuse invalidation of already invalidated buffers (bsc#1213014). * kABI: do not check external trampolines for signature (kabi bsc#1207894 bsc#1211243). * kabi/severities: Add VAS symbols changed due to recent fix VAS accelerators are directly tied to the architecture, there is no reason to have out-of- tree production drivers * kselftest: vDSO: Fix accumulation of uninitialized ret when CLOCK_REALTIME is undefined (git-fixes). * leds: trigger: netdev: Recheck NETDEV_LED_MODE_LINKUP on dev rename (git- fixes). * media: atomisp: gmin_platform: fix out_len in gmin_get_config_dsm_var() (git-fixes). * media: cec: i2c: ch7322: also select REGMAP (git-fixes). * media: i2c: Correct format propagation for st-mipid02 (git-fixes). * media: usb: Check az6007_read() return value (git-fixes). * media: usb: siano: Fix warning due to null work_func_t function pointer (git-fixes). * media: venus: helpers: Fix ALIGN() of non power of two (git-fixes). * media: videodev2.h: Fix struct v4l2_input tuner index comment (git-fixes). * memcg: drop kmem.limit_in_bytes (bsc#1208788, bsc#1212905). * mmc: core: disable TRIM on Kingston EMMC04G-M627 (git-fixes). * mmc: sdhci: fix DMA configure compatibility issue when 64bit DMA mode is used (git-fixes). * net/sched: sch_qfq: refactor parsing of netlink parameters (bsc#1213585). * net/sched: sch_qfq: reintroduce lmax bound check for MTU (bsc#1213585). * net: mana: Add support for vlan tagging (bsc#1212301). * net: phy: prevent stale pointer dereference in phy_init() (git-fixes). * ntb: amd: Fix error handling in amd_ntb_pci_driver_init() (git-fixes). * ntb: idt: Fix errorhandling in idt_pci_driver_init() (git-fixes). * ntb: intel: Fix error handling in intel_ntb_pci_driver_init() (git-fixes). * ntb: ntb_tool: Add check for devm_kcalloc (git-fixes). * ntb: ntb_transport: fix possible memory leak while device_register() fails (git-fixes). * nvme-multipath: support io stats on the mpath device (bsc#1210565). * nvme: introduce nvme_start_request (bsc#1210565). * ocfs2: Switch to security_inode_init_security() (git-fixes). * ocfs2: check new file size on fallocate call (git-fixes). * ocfs2: fix use-after-free when unmounting read-only filesystem (git-fixes). * opp: Fix use-after-free in lazy_opp_tables after probe deferral (git-fixes). * pci/pm: Avoid putting EloPOS E2/S2/H2 PCIe Ports in D3cold (git-fixes). * pci: Add function 1 DMA alias quirk for Marvell 88SE9235 (git-fixes). * phy: Revert "phy: Remove SOC_EXYNOS4212 dep. from PHY_EXYNOS4X12_USB" (git- fixes). * phy: tegra: xusb: Clear the driver reference in usb-phy dev (git-fixes). * phy: tegra: xusb: check return value of devm_kzalloc() (git-fixes). * pie: fix kernel-doc notation warning (git-fixes). * pinctrl: amd: Detect internal GPIO0 debounce handling (git-fixes). * pinctrl: amd: Fix mistake in handling clearing pins at startup (git-fixes). * pinctrl: amd: Only use special debounce behavior for GPIO 0 (git-fixes). * powerpc/64: Only WARN if __pa()/__va() called with bad addresses (bsc#1194869). * powerpc/64s: Fix VAS mm use after free (bsc#1194869). * powerpc/book3s64/mm: Fix DirectMap stats in /proc/meminfo (bsc#1194869). * powerpc/bpf: Fix use of user_pt_regs in uapi (bsc#1194869). * powerpc/ftrace: Remove ftrace init tramp once kernel init is complete (bsc#1194869). * powerpc/interrupt: Do not read MSR from interrupt_exit_kernel_prepare() (bsc#1194869). * powerpc/mm/dax: Fix the condition when checking if altmap vmemap can cross- boundary (bsc#1150305 ltc#176097 git-fixes). * powerpc/mm: Switch obsolete dssall to.long (bsc#1194869). * powerpc/powernv/sriov: perform null check on iovbefore dereferencing iov (bsc#1194869). * powerpc/powernv/vas: Assign real address to rx_fifo in vas_rx_win_attr (bsc#1194869). * powerpc/prom_init: Fix kernel config grep (bsc#1194869). * powerpc/secvar: fix refcount leak in format_show() (bsc#1194869). * powerpc/xics: fix refcount leak in icp_opal_init() (bsc#1194869). * powerpc: clean vdso32 and vdso64 directories (bsc#1194869). * powerpc: define get_cycles macro for arch-override (bsc#1194869). * powerpc: update ppc_save_regs to save current r1 in pt_regs (bsc#1194869). * pwm: ab8500: Fix error code in probe() (git-fixes). * pwm: imx-tpm: force 'real_period' to be zero in suspend (git-fixes). * pwm: sysfs: Do not apply state to already disabled PWMs (git-fixes). * rdma/rxe: Fix access checks in rxe_check_bind_mw (git-fixes) * rpm/check-for-config-changes: ignore also RISCV_ISA_ _and DYNAMIC_SIGFRAME They depend on CONFIG_TOOLCHAIN_HAS__. * rsi: remove kernel-doc comment marker (git-fixes). * s390/ap: fix status returned by ap_aqic() (git-fixes bsc#1213259). * s390/ap: fix status returned by ap_qact() (git-fixes bsc#1213258). * s390/debug: add _ASM_S390_ prefix to header guard (git-fixes bsc#1213263). * s390/percpu: add READ_ONCE() to arch_this_cpu_to_op_simple() (git-fixes bsc#1213252). * s390: define RUNTIME_DISCARD_EXIT to fix link error with GNU ld < 2.36 (git-fixes bsc#1213264). * s390: discard.interp section (git-fixes bsc#1213247). * sched/debug: fix dentry leak in update_sched_domain_debugfs (git-fixes) * sched: Fix DEBUG &&!SCHEDSTATS warn (git-fixes) * security: keys: Modify mismatched function name (git-fixes). * selftests: mptcp: depend on SYN_COOKIES (git-fixes). * selftests: mptcp: sockopt: return error if wrong mark (git-fixes). * selftests: rtnetlink: remove netdevsim device after ipsec offload test (git- fixes). * selftests: tc: add 'ct' action kconfig dep (git-fixes). * selftests: tc: add ConnTrack procfs kconfig (git-fixes). * selftests: tc: set timeout to 15 minutes (git-fixes). * signal/powerpc: Onswapcontext failure force SIGSEGV (bsc#1194869). * signal: Replace force_sigsegv(SIGSEGV) with force_fatal_sig(SIGSEGV) (bsc#1194869). * smb3: do not reserve too many oplock credits (bsc#1193629). * smb3: missing null check in SMB2_change_notify (bsc#1193629). * smb: client: fix broken file attrs with nodfs mounts (bsc#1193629). * smb: client: fix missed ses refcounting (git-fixes). * smb: client: fix parsing of source mount option (bsc#1193629). * smb: client: fix shared DFS root mounts with different prefixes (bsc#1193629). * smb: client: fix warning in CIFSFindFirst() (bsc#1193629). * smb: client: fix warning in CIFSFindNext() (bsc#1193629). * smb: client: fix warning in cifs_match_super() (bsc#1193629). * smb: client: fix warning in cifs_smb3_do_mount() (bsc#1193629). * smb: client: fix warning in generic_ip_connect() (bsc#1193629). * smb: client: improve DFS mount check (bsc#1193629). * smb: client: remove redundant pointer 'server' (bsc#1193629). * smb: delete an unnecessary statement (bsc#1193629). * smb: move client and server files to common directory fs/smb (bsc#1193629). * smb: remove obsolete comment (bsc#1193629). * soundwire: qcom: fix storing port config out-of-bounds (git-fixes). * spi: bcm-qspi: return error if neither hif_mspi nor mspi is available (git- fixes). * spi: bcm63xx: fix max prepend length (git-fixes). * tpm: tpm_vtpm_proxy: fix a race condition in /dev/vtpmx creation (git- fixes). * tty: serial: fsl_lpuart: add earlycon for imx8ulp platform (git-fixes). * ubi: Fix failure attaching when vid_hdr offset equals to (sub)page size (bsc#1210584). * ubi: ensure that VID header offset + VID header size
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-12255 https://linux.oracle.com/errata/ELSA-2023-12255.html The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network: x86_64: kernel-uek-5.4.17-2136.318.7.1.el7uek.x86_64.rpm kernel-uek-debug-5.4.17-2136.318.7.1.el7uek.x86_64.rpm kernel-uek-debug-devel-5.4.17-2136.318.7.1.el7uek.x86_64.rpm kernel-uek-devel-5.4.17-2136.318.7.1.el7uek.x86_64.rpm kernel-uek-doc-5.4.17-2136.318.7.1.el7uek.noarch.rpm kernel-uek-tools-5.4.17-2136.318.7.1.el7uek.x86_64.rpm aarch64: kernel-uek-5.4.17-2136.318.7.1.el7uek.aarch64.rpm kernel-uek-debug-5.4.17-2136.318.7.1.el7uek.aarch64.rpm kernel-uek-debug-devel-5.4.17-2136.318.7.1.el7uek.aarch64.rpm kernel-uek-devel-5.4.17-2136.318.7.1.el7uek.aarch64.rpm kernel-uek-doc-5.4.17-2136.318.7.1.el7uek.noarch.rpm kernel-uek-tools-5.4.17-2136.318.7.1.el7uek.aarch64.rpm kernel-uek-tools-libs-5.4.17-2136.318.7.1.el7uek.aarch64.rpm perf-5.4.17-2136.318.7.1.el7uek.aarch64.rpm python-perf-5.4.17-2136.318.7.1.el7uek.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol7/SRPMS-updates//kernel-uek-5.4.17-2136.318.7.1.el7uek.src.rpm Related CVEs: CVE-2022-2196 CVE-2022-27672 CVE-2022-3108 CVE-2022-4129 CVE-2023-23559 Description of changes: [5.4.17-2136.318.7.1.el7uek] - KVM: arm64: Disabling disabled PMU counters wastes a lot of time (Alexandre Chartre) [Orabug: 33312587] - KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set (Alexandru Elisei) [Orabug: 33312587] - KVM: arm64: pmu: Only handle supported event counters (Eric Auger) [Orabug: 33312587] [5.4.17-2136.318.7.el7uek] - mm, compaction: Skip all pinned pages during scan (Khalid Aziz) [Orabug: 35251798] - xfs: add missing cmap-> br_state = XFS_EXT_NORM update (Gao Xiang) [Orabug: 35214060] - rds/ib: Fix the softlock-up in RDS cache GC worker (Arumugam Kolappan) [Orabug: 35146761] - uek-rpm: Update linux-firmware dependency(Somasundaram Krishnasamy) [Orabug: 33755589] [5.4.17-2136.318.6.el7uek] - net/rds: Flip the default value of "rds_wq_strictly_ordered" (Gerd Rausch) [Orabug: 35197635] [5.4.17-2136.318.5.el7uek] - udf: Fix file corruption when appending just after end of preallocated extent (Jan Kara) [Orabug: 35192763] - selftests/ftrace: Fix bash specific "==" operator (Masami Hiramatsu (Google)) [Orabug: 35192763] - arm64: kdump: Increase reserved memory for larger machines (Henry Willard) [Orabug: 35051468] - KVM: x86/pmu: Update AMD PMC sample period to fix guest NMI-watchdog (Like Xu) [Orabug: 34729426] - KVM: x86/pmu: Introduce pmc-> is_paused to reduce the call time of perf interfaces (Like Xu) [Orabug: 34729426] - perf/x86/uncore: Don't WARN_ON_ONCE() for a broken discovery table (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Add a quirk for UPI on SPR (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Ignore broken units in discovery table (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Fix potential NULL pointer in uncore_get_alias_name (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Factor out uncore_device_to_die() (Kan Liang) [Orabug: 35053343] - Revert "perf/x86/uncore: Factor out uncore_device_to_die()" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Fix potential NULL pointer in uncore_get_alias_name" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Ignore broken units in discovery table" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Add a quirk for UPI on SPR" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Don't WARN_ON_ONCE() for a broken discovery table" (Thomas Tai) [Orabug: 35053343] - Documentation/hw-vuln: Add documentation for Cross-Thread Return Predictions (Tom Lendacky) [Orabug: 35166671] {CVE-2022-27672} - KVM: x86: Mitigate the cross-thread return address predictions bug (Tom Lendacky) [Orabug: 35166671] {CVE-2022-27672} - x86/speculation: Identify processors vulnerable to SMT RSB predictions (Tom Lendacky) [Orabug:35166671] {CVE-2022-27672} - uek-rpm: aarch64: embedded: Enable CONFIG_RANDOMIZE_BASE to support ksplice for T93 (Thomas Tai) [Orabug: 35180981] - drm/amdkfd: Check for null pointer after calling kmemdup (Jiasheng Jiang) [Orabug: 34951503] {CVE-2022-3108} - mm: use padata for copying page ranges in vma_dup() (Anthony Yznaga) [Orabug: 35054622] - mm: parallelize unmap_page_range() for some large VMAs (Anthony Yznaga) [Orabug: 35054622] - net/rds: serialize up+down-work to relax strict ordering (Gerd Rausch) [Orabug: 35094723] - rds: ib: Fix non-parenthetical mutex/semaphore use (HÃ¥kon Bugge) [Orabug: 35155114] - Revert "btrfs: free device in btrfs_close_devices for a single device filesystem" (Vijayendra Suman) [Orabug: 35161536] [5.4.17-2136.318.4.el7uek] - ipc: update semtimedop() to use hrtimer (Prakash Sangappa) [Orabug: 35069807] - rds: ib: Destroy fastreg resources correctly (HÃ¥kon Bugge) [Orabug: 35140658] - rds: ib: Use one-bit booleans in struct rds_ib_device and keep them adjacent (HÃ¥kon Bugge) [Orabug: 35140648] - mips64: drivers/watchdog: Add IRQF_NOBALANCING when requesting irq (Thomas Tai) [Orabug: 35159790] - net: mana: Fix IRQ name - add PCI and queue number (Haiyang Zhang) [Orabug: 35084730] - uek-rpm: Add opbmc to nano rpm (Somasundaram Krishnasamy) [Orabug: 35145857] [5.4.17-2136.318.3.el7uek] - vc_screen: don't clobber return value in vcs_read (Thomas WeiÃschuh) - LTS tag: v5.4.233 (Sherry Yang) - bpf: add missing header file include (Linus Torvalds) - Revert "net/sched: taprio: make qdisc_leaf() see the per-netdev-queue pfifo child qdiscs" (Vladimir Oltean) - ext4: Fix function prototype mismatch for ext4_feat_ktype (Kees Cook) - wifi: mwifiex: Add missing compatible string for SD8787 (Lukas Wunner) - uaccess: Add speculation barrier to copy_from_user() (Dave Hansen) - mac80211: mesh: embedd mesh_paths and mpp_paths into ieee80211_if_mesh (Pavel Skripkin) - drm/i915/gvt: fix double free bug in split_2MB_gtt_entry (Zheng Wang) - alarmtimer: Preventstarvation by small intervals and SIG_IGN (Thomas Gleixner) - powerpc: dts: t208x: Disable 10G on MAC1 and MAC2 (Sean Anderson) - can: kvaser_usb: hydra: help gcc-13 to figure out cmd_len (Marc Kleine-Budde) - KVM: VMX: Execute IBPB on emulated VM-exit when guest has IBRS (Jim Mattson) [Orabug: 34982694] {CVE-2022-2196} - KVM: x86: Fail emulation during EMULTYPE_SKIP on any exception (Sean Christopherson) - random: always mix cycle counter in add_latent_entropy() (Jason A. Donenfeld) - powerpc: dts: t208x: Mark MAC1 and MAC2 as 10G (Sean Anderson) - wifi: rtl8xxxu: gen2: Turn on the rate control (Bitterblue Smith) - drm/etnaviv: don't truncate physical page address (Lucas Stach) - drm: etnaviv: fix common struct sg_table related issues (Marek Szyprowski) - scatterlist: add generic wrappers for iterating over sgtable objects (Marek Szyprowski) - dma-mapping: add generic helpers for mapping sgtable objects (Marek Szyprowski) - LTS tag: v5.4.232 (Sherry Yang) - net: sched: sch: Fix off by one in htb_activate_prios() (Dan Carpenter) - ASoC: SOF: Intel: hda-dai: fix possible stream_tag leak (Pierre-Louis Bossart) - nilfs2: fix underflow in second superblock position calculations (Ryusuke Konishi) - kvm: initialize all of the kvm_debugregs structure before sending it to userspace (Greg Kroah-Hartman) - i40e: Add checking for null for nlmsg_find_attr() (Natalia Petrova) - ipv6: Fix tcp socket connection with DSCP. (Guillaume Nault) - ipv6: Fix datagram socket connection with DSCP. (Guillaume Nault) - ixgbe: add double of VLAN header when computing the max MTU (Jason Xing) - net: mpls: fix stale pointer if allocation fails during device rename (Jakub Kicinski) - net: stmmac: Restrict warning on disabling DMA store and fwd mode (Cristian Ciocaltea) - bnxt_en: Fix mqprio and XDP ring checking logic (Michael Chan) - net: stmmac: fix order of dwmac5 FlexPPS parametrization sequence (Johannes Zink) - net/usb: kalmia: Don't pass act_len in usb_bulk_msg error path (Miko Larsson) - dccp/tcp: Avoidnegative sk_forward_alloc by ipv6_pinfo.pktoptions. (Kuniyuki Iwashima) - sctp: sctp_sock_filter(): avoid list_entry() on possibly empty list (Pietro Borrello) - net: bgmac: fix BCM5358 support by setting correct flags (RafaÅ MiÅecki) - i40e: add double of VLAN header when computing the max MTU (Jason Xing) - ixgbe: allow to increase MTU to 3K with XDP enabled (Jason Xing) - revert "squashfs: harden sanity check in squashfs_read_xattr_id_table" (Andrew Morton) - net: Fix unwanted sign extension in netdev_stats_to_stats64() (Felix Riemann) - Revert "mm: Always release pages to the buddy allocator in memblock_free_late()." (Aaron Thompson) - hugetlb: check for undefined shift on 32 bit architectures (Mike Kravetz) - sched/psi: Fix use-after-free in ep_remove_wait_queue() (Munehisa Kamata) - ALSA: hda/realtek - fixed wrong gpio assigned (Kailang Yang) - ALSA: hda/conexant: add a new hda codec SN6180 (Bo Liu) - mmc: mmc_spi: fix error handling in mmc_spi_probe() (Yang Yingliang) - mmc: sdio: fix possible resource leaks in some error paths (Yang Yingliang) - ipv4: Fix incorrect route flushing when source address is deleted (Ido Schimmel) - Revert "ipv4: Fix incorrect route flushing when source address is deleted" (Shaoying Xu) - xfs: sync lazy sb accounting on quiesce of read-only mounts (Brian Foster) - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks (Darrick J. Wong) - xfs: ensure inobt record walks always make forward progress (Darrick J. Wong) - xfs: fix missing CoW blocks writeback conversion retry (Darrick J. Wong) - xfs: fix finobt btree block recovery ordering (Dave Chinner) - xfs: remove the xfs_inode_log_item_t typedef (Christoph Hellwig) - xfs: remove the xfs_efd_log_item_t typedef (Christoph Hellwig) - xfs: remove the xfs_efi_log_item_t typedef (Christoph Hellwig) - netfilter: nft_tproxy: restrict to prerouting hook (Florian Westphal) - btrfs: free device in btrfs_close_devices for a single device filesystem (Anand Jain) - aio: fix mremap after forknull-deref (Seth Jenkins) - nvme-fc: fix a missing queue put in nvmet_fc_ls_create_association (Amit Engel) - s390/decompressor: specify __decompress() buf len to avoid overflow (Vasily Gorbik) - net: sched: sch: Bounds check priority (Kees Cook) - net: stmmac: do not stop RX_CLK in Rx LPI state for qcs404 SoC (Andrey Konovalov) - net/rose: Fix to not accept on connected socket (Hyunwoo Kim) - tools/virtio: fix the vringh test for virtio ring changes (Shunsuke Mie) - ASoC: cs42l56: fix DT probe (Arnd Bergmann) - selftests/bpf: Verify copy_register_state() preserves parent/live fields (Eduard Zingerman) - migrate: hugetlb: check for hugetlb shared PMD in node migration (Mike Kravetz) - bpf: Always return target ifindex in bpf_fib_lookup (Toke Høiland-Jørgensen) - nvme-pci: Move enumeration by class to be last in the table (Andy Shevchenko) - arm64: dts: meson-axg: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - arm64: dts: meson-g12-common: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - arm64: dts: meson-gx: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - riscv: Fixup race condition on PG_dcache_clean in flush_icache_pte (Guo Ren) - ceph: flush cap releases when the session is flushed (Xiubo Li) - usb: typec: altmodes/displayport: Fix probe pin assign check (Prashant Malani) - usb: core: add quirk for Alcor Link AK9563 smartcard reader (Mark Pearson) - net: USB: Fix wrong-direction WARNING in plusb.c (Alan Stern) - pinctrl: intel: Restore the pins that used to be in Direct IRQ mode (Andy Shevchenko) - pinctrl: single: fix potential NULL dereference (Maxim Korotkov) - pinctrl: aspeed: Fix confusing types in return value (Joel Stanley) - ALSA: pci: lx6464es: fix a debug loop (Dan Carpenter) - selftests: forwarding: lib: quote the sysctl values (Hangbin Liu) - ice: Do not use WQ_MEM_RECLAIM flag for workqueue (Anirudh Venkataramanan) - net: phy: meson-gxl: use MMD access dummy stubs for GXL, internal PHY (HeinerKallweit) - bonding: fix error checking in bond_debug_reregister() (Qi Zheng) - xfrm: fix bug with DSCP copy to v6 from v4 tunnel (Christian Hopps) - IB/IPoIB: Fix legacy IPoIB due to wrong number of queues (Dragos Tatulea) - IB/hfi1: Restore allocated resources on failed copyout (Dean Luick) - can: j1939: do not wait 250 ms if the same addr was already claimed (Devid Antonio Filoni) - tracing: Fix poll() and select() do not work on per_cpu trace_pipe and trace_pipe_raw (Shiju Jose) - ALSA: emux: Avoid potential array out-of-bound in snd_emux_xg_control() (Artemii Karasev) - btrfs: zlib: zero-initialize zlib workspace (Alexander Potapenko) - btrfs: limit device extents to the device size (Josef Bacik) - iio:adc:twl6030: Enable measurement of VAC (Andreas Kemnade) - wifi: brcmfmac: Check the count value of channel spec to prevent out-of-bounds reads (Minsuk Kang) - f2fs: fix to do sanity check on i_extra_isize in is_alive() (Chao Yu) - fbdev: smscufx: fix error handling code in ufx_usb_probe (Dongliang Mu) - powerpc/imc-pmu: Revert nest_init_lock to being a mutex (Michael Ellerman) - serial: 8250_dma: Fix DMA Rx rearm race (Ilpo Järvinen) - serial: 8250_dma: Fix DMA Rx completion race (Ilpo Järvinen) - xprtrdma: Fix regbuf data not freed in rpcrdma_req_create() (Zhang Xiaoxu) - mm: swap: properly update readahead statistics in unuse_pte_range() (Andrea Righi) - nvmem: core: fix cell removal on error (Michael Walle) - Squashfs: fix handling and sanity checking of xattr_ids count (Phillip Lougher) - mm/swapfile: add cond_resched() in get_swap_pages() (Longlong Xia) - fpga: stratix10-soc: Fix return value check in s10_ops_write_init() (Zheng Yongjun) - mm: hugetlb: proc: check for hugetlb shared PMD in /proc/PID/smaps (Mike Kravetz) - riscv: disable generation of unwind tables (Andreas Schwab) - parisc: Wire up PTRACE_GETREGS/PTRACE_SETREGS for compat case (Helge Deller) - parisc: Fix return code of pdc_iodc_print() (Helge Deller) - iio:adc:twl6030: Enable measurements of VUSB, VBATand others (Andreas Kemnade) - iio: adc: berlin2-adc: Add missing of_node_put() in error path (Xiongfeng Wang) - iio: hid: fix the retval in accel_3d_capture_sample (Dmitry Perchanov) - efi: Accept version 2 of memory attributes table (Ard Biesheuvel) - watchdog: diag288_wdt: fix __diag288() inline assembly (Alexander Egorenkov) - watchdog: diag288_wdt: do not use stack buffers for hardware data (Alexander Egorenkov) - fbcon: Check font dimension limits (Samuel Thibault) - Input: i8042 - add Clevo PCX0DX to i8042 quirk table (Werner Sembach) - Input: i8042 - add TUXEDO devices to i8042 quirk tables (Werner Sembach) - Input: i8042 - merge quirk tables (Werner Sembach) - Input: i8042 - move __initconst to fix code styling warning (Werner Sembach) - vc_screen: move load of struct vc_data pointer in vcs_read() to avoid UAF (George Kennedy) - usb: gadget: f_fs: Fix unbalanced spinlock in __ffs_ep0_queue_wait (Udipto Goswami) - usb: dwc3: qcom: enable vbus override when in OTG dr-mode (Neil Armstrong) - usb: dwc3: dwc3-qcom: Fix typo in the dwc3 vbus override API (Wesley Cheng) - iio: adc: stm32-dfsdm: fill module aliases (Olivier Moysan) - net/x25: Fix to not accept on connected socket (Hyunwoo Kim) - i2c: rk3x: fix a bunch of kernel-doc warnings (Randy Dunlap) - scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress (Mike Christie) - scsi: target: core: Fix warning on RT kernels (Maurizio Lombardi) - efi: fix potential NULL deref in efi_mem_reserve_persistent (Anton Gusev) - net: openvswitch: fix flow memory leak in ovs_flow_cmd_new (Fedor Pchelkin) - virtio-net: Keep stop() to follow mirror sequence of open() (Parav Pandit) - selftests: net: udpgso_bench_tx: Cater for pending datagrams zerocopy benchmarking (Andrei Gherzan) - selftests: net: udpgso_bench: Fix racing bug between the rx/tx programs (Andrei Gherzan) - selftests: net: udpgso_bench_rx/tx: Stop when wrong CLI args are provided (Andrei Gherzan) - selftests: net: udpgso_bench_rx: Fix 'used uninitialized' compilerwarning (Andrei Gherzan) - ata: libata: Fix sata_down_spd_limit() when no link speed is reported (Damien Le Moal) - can: j1939: fix errant WARN_ON_ONCE in j1939_session_deactivate (Ziyang Xuan) - net: phy: meson-gxl: Add generic dummy stubs for MMD register access (Chris Healy) - squashfs: harden sanity check in squashfs_read_xattr_id_table (Fedor Pchelkin) - netfilter: br_netfilter: disable sabotage_in hook after first suppression (Florian Westphal) - netrom: Fix use-after-free caused by accept on already connected socket (Hyunwoo Kim) - fix "direction" argument of iov_iter_kvec() (Al Viro) - fix iov_iter_bvec() "direction" argument (Al Viro) - WRITE is "data source", not destination... (Al Viro) - scsi: Revert "scsi: core: map PQ=1, PDT=other values to SCSI_SCAN_TARGET_PRESENT" (Martin K. Petersen) - arm64: dts: imx8mm: Fix pad control for UART1_DTE_RX (Pierluigi Passaro) - ALSA: hda/via: Avoid potential array out-of-bound in add_secret_dac_path() (Artemii Karasev) - ASoC: Intel: bytcr_rt5651: Drop reference count of ACPI device after use (Andy Shevchenko) - bus: sunxi-rsb: Fix error handling in sunxi_rsb_init() (Yuan Can) - firewire: fix memory leak for payload of request subaction to IEC 61883-1 FCP region (Takashi Sakamoto) - LTS tag: v5.4.231 (Sherry Yang) - usb: host: xhci-plat: add wakeup entry at sysfs (Peter Chen) - Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt (Soenke Huster) - ipv6: ensure sane device mtu in tunnels (Eric Dumazet) - exit: Use READ_ONCE() for all oops/warn limit reads (Kees Cook) - docs: Fix path paste-o for /sys/kernel/warn_count (Kees Cook) - panic: Expose "warn_count" to sysfs (Kees Cook) - panic: Introduce warn_limit (Kees Cook) - panic: Consolidate open-coded panic_on_warn checks (Kees Cook) - exit: Allow oops_limit to be disabled (Kees Cook) - exit: Expose "oops_count" to sysfs (Kees Cook) - exit: Put an upper limit on how often we can oops (Jann Horn) - ia64: make IA64_MCA_RECOVERY bool instead of tristate (Randy Dunlap) - csky: Fixfunction name in csky_alignment() and die() (Nathan Chancellor) - h8300: Fix build errors from do_exit() to make_task_dead() transition (Nathan Chancellor) - hexagon: Fix function name in die() (Nathan Chancellor) - objtool: Add a missing comma to avoid string concatenation (Eric W. Biederman) - exit: Add and use make_task_dead. (Eric W. Biederman) - mm: kasan: do not panic if both panic_on_warn and kasan_multishot set (David Gow) - panic: unset panic_on_warn inside panic() (Tiezhu Yang) - sysctl: add a new register_sysctl_init() interface (Xiaoming Ni) - dmaengine: imx-sdma: Fix a possible memory leak in sdma_transfer_init (Hui Wang) - blk-cgroup: fix missing pd_online_fn() while activating policy (Yu Kuai) - bpf: Skip task with pid=1 in send_signal_common() (Hao Sun) - ARM: dts: imx: Fix pca9547 i2c-mux node name (Geert Uytterhoeven) - x86/asm: Fix an assembler warning with current binutils (Mikulas Patocka) - clk: Fix pointer casting to prevent oops in devm_clk_release() (Uwe Kleine-König) - perf/x86/amd: fix potential integer overflow on shift of a int (Colin Ian King) - netfilter: conntrack: unify established states for SCTP paths (Sriram Yagnaraman) - x86/i8259: Mark legacy PIC interrupts with IRQ_LEVEL (Thomas Gleixner) - block: fix and cleanup bio_check_ro (Christoph Hellwig) - nfsd: Ensure knfsd shuts down when the "nfsd" pseudofs is unmounted (Trond Myklebust) - Revert "Input: synaptics - switch touchpad on HP Laptop 15-da3001TU to RMI mode" (Dmitry Torokhov) - net: mdio-mux-meson-g12a: force internal PHY off on mux switch (Jerome Brunet) - net: xgene: Move shared header file into include/linux (Andrew Lunn) - net/phy/mdio-i2c: Move header file to include/linux/mdio (Andrew Lunn) - net/tg3: resolve deadlock in tg3_reset_task() during EEH (David Christensen) - thermal: intel: int340x: Add locking to int340x_thermal_get_trip_type() (Rafael J. Wysocki) - net: ravb: Fix possible hang if RIS2_QFF1 happen (Yoshihiro Shimoda) - sctp: fail if no bound addresses can be used for agiven scope (Marcelo Ricardo Leitner) - net/sched: sch_taprio: do not schedule in taprio_reset() (Eric Dumazet) - netrom: Fix use-after-free of a listening socket. (Kuniyuki Iwashima) - netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE (Sriram Yagnaraman) - ipv4: prevent potential spectre v1 gadget in fib_metrics_match() (Eric Dumazet) - ipv4: prevent potential spectre v1 gadget in ip_metrics_convert() (Eric Dumazet) - netlink: annotate data races around sk_state (Eric Dumazet) - netlink: annotate data races around dst_portid and dst_group (Eric Dumazet) - netlink: annotate data races around nlk-> portid (Eric Dumazet) - netfilter: nft_set_rbtree: skip elements in transaction from garbage collection (Pablo Neira Ayuso) - net: fix UaF in netns ops registration error path (Paolo Abeni) - netlink: prevent potential spectre v1 gadgets (Eric Dumazet) - EDAC/qcom: Do not pass llcc_driv_data as edac_device_ctl_info's pvt_info (Manivannan Sadhasivam) - EDAC/device: Respect any driver-supplied workqueue polling value (Manivannan Sadhasivam) - ARM: 9280/1: mm: fix warning on phys_addr_t to void pointer assignment (Giulio Benetti) - thermal: intel: int340x: Protect trip temperature from concurrent updates (Srinivas Pandruvada) - KVM: x86/vmx: Do not skip segment attributes if unusable bit is set (Hendrik Borghorst) - cifs: Fix oops due to uncleared server-> smbd_conn in reconnect (David Howells) - ftrace/scripts: Update the instructions for ftrace-bisect.sh (Steven Rostedt (Google)) - trace_events_hist: add check for return value of 'create_hist_field' (Natalia Petrova) - tracing: Make sure trace_printk() can output as soon as it can be used (Steven Rostedt (Google)) - module: Don't wait for GOING modules (Petr Pavlu) - scsi: hpsa: Fix allocation size for scsi_host_alloc() (Alexey V. Vissarionov) - Bluetooth: hci_sync: cancel cmd_timer if hci_open failed (Archie Pusaka) - Revert "Revert "xhci: Set HCD flag to defer primary roothub registration"" (Sasha Levin) - fs: reiserfs: removeuseless new_opts in reiserfs_remount (Dongliang Mu) - mmc: sdhci-esdhc-imx: correct the tuning start tap and step setting (Haibo Chen) - mmc: sdhci-esdhc-imx: disable the CMD CRC check for standard tuning (Haibo Chen) - mmc: sdhci-esdhc-imx: clear pending interrupt and halt cqhci (Haibo Chen) - lockref: stop doing cpu_relax in the cmpxchg loop (Mateusz Guzik) - platform/x86: asus-nb-wmi: Add alternate mapping for KEY_SCREENLOCK (Hans de Goede) - platform/x86: touchscreen_dmi: Add info for the CSL Panther Tab HD (Michael Klein) - scsi: hisi_sas: Set a port invalid only if there are no devices attached when refreshing port id (Yihang Li) - KVM: s390: interrupt: use READ_ONCE() before cmpxchg() (Heiko Carstens) - spi: spidev: remove debug messages that access spidev-> spi without locking (Bartosz Golaszewski) - ASoC: fsl-asoc-card: Fix naming of AC'97 CODEC widgets (Mark Brown) - ASoC: fsl_ssi: Rename AC'97 streams to avoid collisions with AC'97 CODEC (Mark Brown) - cpufreq: armada-37xx: stop using 0 as NULL pointer (Miles Chen) - s390/debug: add _ASM_S390_ prefix to header guard (Niklas Schnelle) - drm: Add orientation quirk for Lenovo ideapad D330-10IGL (Patrick Thompson) - ASoC: fsl_micfil: Correct the number of steps on SX controls (Chancel Liu) - cpufreq: Add Tegra234 to cpufreq-dt-platdev blocklist (Sumit Gupta) - tcp: fix rate_app_limited to default to 1 (David Morley) - net: dsa: microchip: ksz9477: port map correction in ALU table entry register (Rakesh Sankaranarayanan) - driver core: Fix test_async_probe_init saves device in wrong array (Chen Zhongjin) - w1: fix WARNING after calling w1_process() (Yang Yingliang) - w1: fix deadloop in __w1_remove_master_device() (Yang Yingliang) - tcp: avoid the lookup process failing to get sk in ehash table (Jason Xing) - dmaengine: xilinx_dma: call of_node_put() when breaking out of for_each_child_of_node() (Liu Shixin) - dmaengine: xilinx_dma: Fix devm_platform_ioremap_resource error handling (Swati Agarwal) - dmaengine: xilinx_dma: usedevm_platform_ioremap_resource() (Radhey Shyam Pandey) - HID: betop: check shape of output reports (Pietro Borrello) - net: macb: fix PTP TX timestamp failure due to packet padding (Robert Hancock) - dmaengine: Fix double increment of client_count in dma_chan_get() (Koba Ko) - drm/panfrost: fix GENERIC_ATOMIC64 dependency (Arnd Bergmann) - net: mlx5: eliminate anonymous module_init & module_exit (Randy Dunlap) - usb: gadget: f_fs: Ensure ep0req is dequeued before free_request (Udipto Goswami) - usb: gadget: f_fs: Prevent race during ffs_ep0_queue_wait (Udipto Goswami) - HID: revert CHERRY_MOUSE_000C quirk (Jiri Kosina) - net: stmmac: fix invalid call to mdiobus_get_phy() (Heiner Kallweit) - HID: check empty report_list in bigben_probe() (Pietro Borrello) - HID: check empty report_list in hid_validate_values() (Pietro Borrello) - net: mdio: validate parameter addr in mdiobus_get_phy() (Heiner Kallweit) - net: usb: sr9700: Handle negative len (Szymon Heidrich) - l2tp: Don't sleep and disable BH under writer-side sk_callback_lock (Jakub Sitnicki) - l2tp: Serialize access to sk_user_data with sk_callback_lock (Jakub Sitnicki) [Orabug: 34951575] {CVE-2022-4129} - net: fix a concurrency bug in l2tp_tunnel_register() (Gong, Sishuai) - net/sched: sch_taprio: fix possible use-after-free (Eric Dumazet) - wifi: rndis_wlan: Prevent buffer overflow in rndis_query_oid (Szymon Heidrich) [Orabug: 35037713] {CVE-2023-23559} - gpio: mxc: Always set GPIOs used as interrupt source to INPUT mode (Marek Vasut) - net: wan: Add checks for NULL for utdm in undo_uhdlc_init and unmap_si_regs (Esina Ekaterina) - net: nfc: Fix use-after-free in local_cleanup() (Jisoo Jang) - phy: rockchip-inno-usb2: Fix missing clk_disable_unprepare() in rockchip_usb2phy_power_on() (Shang XiaoJing) - bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation (Luis Gerhorst) - amd-xgbe: Delay AN timeout during KR training (Raju Rangoju) - amd-xgbe: TX Flow Ctrl Registers are h/w ver dependent (Raju Rangoju) - affs:initialize fsdata in affs_truncate() (Alexander Potapenko) - IB/hfi1: Fix expected receive setup error exit issues (Dean Luick) - IB/hfi1: Reserve user expected TIDs (Dean Luick) - IB/hfi1: Reject a zero-length user expected buffer (Dean Luick) - RDMA/core: Fix ib block iterator counter overflow (Yonatan Nachum) - tomoyo: fix broken dependency on *.conf.default (Masahiro Yamada) - EDAC/highbank: Fix memory leak in highbank_mc_probe() (Miaoqian Lin) - HID: intel_ish-hid: Add check for ishtp_dma_tx_map (Jiasheng Jiang) - ARM: imx: add missing of_node_put() (Dario Binacchi) - ARM: imx35: Retrieve the IIM base address from devicetree (Fabio Estevam) - ARM: imx31: Retrieve the IIM base address from devicetree (Fabio Estevam) - ARM: imx27: Retrieve the SYSCTRL base address from devicetree (Fabio Estevam) - ARM: dts: imx6qdl-gw560x: Remove incorrect 'uart-has-rtscts' (Fabio Estevam) - memory: mvebu-devbus: Fix missing clk_disable_unprepare in mvebu_devbus_probe() (Gaosheng Cui) - memory: atmel-sdramc: Fix missing clk_disable_unprepare in atmel_ramc_probe() (Gaosheng Cui) - clk: Provide new devm_clk helpers for prepared and enabled clocks (Uwe Kleine-König) - clk: generalize devm_clk_get() a bit (Uwe Kleine-König) [5.4.17-2136.318.2.el7uek] - iommu/amd: Increase kdump command sync timeout to 2secs (Joao Martins) [Orabug: 35117313] [5.4.17-2136.318.1.el7uek] - uek-rpm: aarch64: embedded: Clean up T93 config file v2 (Henry Willard) [Orabug: 35029259] - uek-rpm: aarch64 embedded: make some modules built-in (Dave Kleikamp) [Orabug: 35029259] - uek-rpm: aarch64: pensando: config file update for January 2023 update (Dave Kleikamp) [Orabug: 35089950] - drivers/mtd/spi-nor: Winbond w25q02nw flash support. (Hiren Mehta) [Orabug: 35089950] - drivers/i2c: Reset Lattice RD1173 master for i2c_busy set. (Hiren Mehta) [Orabug: 35089950] - drivers/soc/pensando: boot_count to sysfs for kdump.log (Hiren Mehta) [Orabug: 35089950] - drivers/soc/pensando sbus driver (Hiren Mehta) [Orabug: 35089950] -drivers/reset: Add emmc hardware reset (Hiren Mehta) [Orabug: 35089950] - uek-rpm: Add missing dax_pmem_compat.ko to nano rpm (Somasundaram Krishnasamy) [Orabug: 35094871] _______________________________________________ El-errata mailing list
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-12255 https://linux.oracle.com/errata/ELSA-2023-12255.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: aarch64: kernel-uek-5.4.17-2136.318.7.1.el8uek.aarch64.rpm kernel-uek-debug-5.4.17-2136.318.7.1.el8uek.aarch64.rpm kernel-uek-debug-devel-5.4.17-2136.318.7.1.el8uek.aarch64.rpm kernel-uek-devel-5.4.17-2136.318.7.1.el8uek.aarch64.rpm kernel-uek-doc-5.4.17-2136.318.7.1.el8uek.noarch.rpm SRPMS: https://oss.oracle.com:443/ol8/SRPMS-updates//kernel-uek-5.4.17-2136.318.7.1.el8uek.src.rpm Related CVEs: CVE-2022-2196 CVE-2022-27672 CVE-2022-3108 CVE-2022-4129 CVE-2023-23559 Description of changes: [5.4.17-2136.318.7.1.el8uek] - KVM: arm64: Disabling disabled PMU counters wastes a lot of time (Alexandre Chartre) [Orabug: 33312587] - KVM: arm64: Don't zero the cycle count register when PMCR_EL0.P is set (Alexandru Elisei) [Orabug: 33312587] - KVM: arm64: pmu: Only handle supported event counters (Eric Auger) [Orabug: 33312587] [5.4.17-2136.318.7.el8uek] - mm, compaction: Skip all pinned pages during scan (Khalid Aziz) [Orabug: 35251798] - xfs: add missing cmap-> br_state = XFS_EXT_NORM update (Gao Xiang) [Orabug: 35214060] - rds/ib: Fix the softlock-up in RDS cache GC worker (Arumugam Kolappan) [Orabug: 35146761] - uek-rpm: Update linux-firmware dependency (Somasundaram Krishnasamy) [Orabug: 33755589] [5.4.17-2136.318.6.el8uek] - net/rds: Flip the default value of "rds_wq_strictly_ordered" (Gerd Rausch) [Orabug: 35197635] [5.4.17-2136.318.5.el8uek] - udf: Fix file corruption when appending just after end of preallocated extent (Jan Kara) [Orabug: 35192763] - selftests/ftrace: Fix bash specific "==" operator (Masami Hiramatsu (Google)) [Orabug: 35192763] - arm64: kdump: Increase reserved memory for larger machines (Henry Willard) [Orabug: 35051468] - KVM: x86/pmu: Update AMD PMC sample period to fixguest NMI-watchdog (Like Xu) [Orabug: 34729426] - KVM: x86/pmu: Introduce pmc-> is_paused to reduce the call time of perf interfaces (Like Xu) [Orabug: 34729426] - perf/x86/uncore: Don't WARN_ON_ONCE() for a broken discovery table (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Add a quirk for UPI on SPR (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Ignore broken units in discovery table (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Fix potential NULL pointer in uncore_get_alias_name (Kan Liang) [Orabug: 35053343] - perf/x86/uncore: Factor out uncore_device_to_die() (Kan Liang) [Orabug: 35053343] - Revert "perf/x86/uncore: Factor out uncore_device_to_die()" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Fix potential NULL pointer in uncore_get_alias_name" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Ignore broken units in discovery table" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Add a quirk for UPI on SPR" (Thomas Tai) [Orabug: 35053343] - Revert "perf/x86/uncore: Don't WARN_ON_ONCE() for a broken discovery table" (Thomas Tai) [Orabug: 35053343] - Documentation/hw-vuln: Add documentation for Cross-Thread Return Predictions (Tom Lendacky) [Orabug: 35166671] {CVE-2022-27672} - KVM: x86: Mitigate the cross-thread return address predictions bug (Tom Lendacky) [Orabug: 35166671] {CVE-2022-27672} - x86/speculation: Identify processors vulnerable to SMT RSB predictions (Tom Lendacky) [Orabug: 35166671] {CVE-2022-27672} - uek-rpm: aarch64: embedded: Enable CONFIG_RANDOMIZE_BASE to support ksplice for T93 (Thomas Tai) [Orabug: 35180981] - drm/amdkfd: Check for null pointer after calling kmemdup (Jiasheng Jiang) [Orabug: 34951503] {CVE-2022-3108} - mm: use padata for copying page ranges in vma_dup() (Anthony Yznaga) [Orabug: 35054622] - mm: parallelize unmap_page_range() for some large VMAs (Anthony Yznaga) [Orabug: 35054622] - net/rds: serialize up+down-work to relax strict ordering (Gerd Rausch) [Orabug: 35094723] - rds: ib: Fixnon-parenthetical mutex/semaphore use (HÃ¥kon Bugge) [Orabug: 35155114] - Revert "btrfs: free device in btrfs_close_devices for a single device filesystem" (Vijayendra Suman) [Orabug: 35161536] [5.4.17-2136.318.4.el8uek] - ipc: update semtimedop() to use hrtimer (Prakash Sangappa) [Orabug: 35069807] - rds: ib: Destroy fastreg resources correctly (HÃ¥kon Bugge) [Orabug: 35140658] - rds: ib: Use one-bit booleans in struct rds_ib_device and keep them adjacent (HÃ¥kon Bugge) [Orabug: 35140648] - mips64: drivers/watchdog: Add IRQF_NOBALANCING when requesting irq (Thomas Tai) [Orabug: 35159790] - net: mana: Fix IRQ name - add PCI and queue number (Haiyang Zhang) [Orabug: 35084730] - uek-rpm: Add opbmc to nano rpm (Somasundaram Krishnasamy) [Orabug: 35145857] [5.4.17-2136.318.3.el8uek] - vc_screen: don't clobber return value in vcs_read (Thomas WeiÃschuh) - LTS tag: v5.4.233 (Sherry Yang) - bpf: add missing header file include (Linus Torvalds) - Revert "net/sched: taprio: make qdisc_leaf() see the per-netdev-queue pfifo child qdiscs" (Vladimir Oltean) - ext4: Fix function prototype mismatch for ext4_feat_ktype (Kees Cook) - wifi: mwifiex: Add missing compatible string for SD8787 (Lukas Wunner) - uaccess: Add speculation barrier to copy_from_user() (Dave Hansen) - mac80211: mesh: embedd mesh_paths and mpp_paths into ieee80211_if_mesh (Pavel Skripkin) - drm/i915/gvt: fix double free bug in split_2MB_gtt_entry (Zheng Wang) - alarmtimer: Prevent starvation by small intervals and SIG_IGN (Thomas Gleixner) - powerpc: dts: t208x: Disable 10G on MAC1 and MAC2 (Sean Anderson) - can: kvaser_usb: hydra: help gcc-13 to figure out cmd_len (Marc Kleine-Budde) - KVM: VMX: Execute IBPB on emulated VM-exit when guest has IBRS (Jim Mattson) [Orabug: 34982694] {CVE-2022-2196} - KVM: x86: Fail emulation during EMULTYPE_SKIP on any exception (Sean Christopherson) - random: always mix cycle counter in add_latent_entropy() (Jason A. Donenfeld) - powerpc: dts: t208x: Mark MAC1 and MAC2 as 10G (Sean Anderson) - wifi: rtl8xxxu: gen2: Turn on the rate control (Bitterblue Smith) - drm/etnaviv: don't truncate physical page address (Lucas Stach) - drm: etnaviv: fix common struct sg_table related issues (Marek Szyprowski) - scatterlist: add generic wrappers for iterating over sgtable objects (Marek Szyprowski) - dma-mapping: add generic helpers for mapping sgtable objects (Marek Szyprowski) - LTS tag: v5.4.232 (Sherry Yang) - net: sched: sch: Fix off by one in htb_activate_prios() (Dan Carpenter) - ASoC: SOF: Intel: hda-dai: fix possible stream_tag leak (Pierre-Louis Bossart) - nilfs2: fix underflow in second superblock position calculations (Ryusuke Konishi) - kvm: initialize all of the kvm_debugregs structure before sending it to userspace (Greg Kroah-Hartman) - i40e: Add checking for null for nlmsg_find_attr() (Natalia Petrova) - ipv6: Fix tcp socket connection with DSCP. (Guillaume Nault) - ipv6: Fix datagram socket connection with DSCP. (Guillaume Nault) - ixgbe: add double of VLAN header when computing the max MTU (Jason Xing) - net: mpls: fix stale pointer if allocation fails during device rename (Jakub Kicinski) - net: stmmac: Restrict warning on disabling DMA store and fwd mode (Cristian Ciocaltea) - bnxt_en: Fix mqprio and XDP ring checking logic (Michael Chan) - net: stmmac: fix order of dwmac5 FlexPPS parametrization sequence (Johannes Zink) - net/usb: kalmia: Don't pass act_len in usb_bulk_msg error path (Miko Larsson) - dccp/tcp: Avoid negative sk_forward_alloc by ipv6_pinfo.pktoptions. (Kuniyuki Iwashima) - sctp: sctp_sock_filter(): avoid list_entry() on possibly empty list (Pietro Borrello) - net: bgmac: fix BCM5358 support by setting correct flags (RafaÅ MiÅecki) - i40e: add double of VLAN header when computing the max MTU (Jason Xing) - ixgbe: allow to increase MTU to 3K with XDP enabled (Jason Xing) - revert "squashfs: harden sanity check in squashfs_read_xattr_id_table" (Andrew Morton) - net: Fix unwanted sign extension in netdev_stats_to_stats64() (Felix Riemann) -Revert "mm: Always release pages to the buddy allocator in memblock_free_late()." (Aaron Thompson) - hugetlb: check for undefined shift on 32 bit architectures (Mike Kravetz) - sched/psi: Fix use-after-free in ep_remove_wait_queue() (Munehisa Kamata) - ALSA: hda/realtek - fixed wrong gpio assigned (Kailang Yang) - ALSA: hda/conexant: add a new hda codec SN6180 (Bo Liu) - mmc: mmc_spi: fix error handling in mmc_spi_probe() (Yang Yingliang) - mmc: sdio: fix possible resource leaks in some error paths (Yang Yingliang) - ipv4: Fix incorrect route flushing when source address is deleted (Ido Schimmel) - Revert "ipv4: Fix incorrect route flushing when source address is deleted" (Shaoying Xu) - xfs: sync lazy sb accounting on quiesce of read-only mounts (Brian Foster) - xfs: fix the forward progress assertion in xfs_iwalk_run_callbacks (Darrick J. Wong) - xfs: ensure inobt record walks always make forward progress (Darrick J. Wong) - xfs: fix missing CoW blocks writeback conversion retry (Darrick J. Wong) - xfs: fix finobt btree block recovery ordering (Dave Chinner) - xfs: remove the xfs_inode_log_item_t typedef (Christoph Hellwig) - xfs: remove the xfs_efd_log_item_t typedef (Christoph Hellwig) - xfs: remove the xfs_efi_log_item_t typedef (Christoph Hellwig) - netfilter: nft_tproxy: restrict to prerouting hook (Florian Westphal) - btrfs: free device in btrfs_close_devices for a single device filesystem (Anand Jain) - aio: fix mremap after fork null-deref (Seth Jenkins) - nvme-fc: fix a missing queue put in nvmet_fc_ls_create_association (Amit Engel) - s390/decompressor: specify __decompress() buf len to avoid overflow (Vasily Gorbik) - net: sched: sch: Bounds check priority (Kees Cook) - net: stmmac: do not stop RX_CLK in Rx LPI state for qcs404 SoC (Andrey Konovalov) - net/rose: Fix to not accept on connected socket (Hyunwoo Kim) - tools/virtio: fix the vringh test for virtio ring changes (Shunsuke Mie) - ASoC: cs42l56: fix DT probe (Arnd Bergmann) - selftests/bpf: Verifycopy_register_state() preserves parent/live fields (Eduard Zingerman) - migrate: hugetlb: check for hugetlb shared PMD in node migration (Mike Kravetz) - bpf: Always return target ifindex in bpf_fib_lookup (Toke Høiland-Jørgensen) - nvme-pci: Move enumeration by class to be last in the table (Andy Shevchenko) - arm64: dts: meson-axg: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - arm64: dts: meson-g12-common: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - arm64: dts: meson-gx: Make mmc host controller interrupts level-sensitive (Heiner Kallweit) - riscv: Fixup race condition on PG_dcache_clean in flush_icache_pte (Guo Ren) - ceph: flush cap releases when the session is flushed (Xiubo Li) - usb: typec: altmodes/displayport: Fix probe pin assign check (Prashant Malani) - usb: core: add quirk for Alcor Link AK9563 smartcard reader (Mark Pearson) - net: USB: Fix wrong-direction WARNING in plusb.c (Alan Stern) - pinctrl: intel: Restore the pins that used to be in Direct IRQ mode (Andy Shevchenko) - pinctrl: single: fix potential NULL dereference (Maxim Korotkov) - pinctrl: aspeed: Fix confusing types in return value (Joel Stanley) - ALSA: pci: lx6464es: fix a debug loop (Dan Carpenter) - selftests: forwarding: lib: quote the sysctl values (Hangbin Liu) - ice: Do not use WQ_MEM_RECLAIM flag for workqueue (Anirudh Venkataramanan) - net: phy: meson-gxl: use MMD access dummy stubs for GXL, internal PHY (Heiner Kallweit) - bonding: fix error checking in bond_debug_reregister() (Qi Zheng) - xfrm: fix bug with DSCP copy to v6 from v4 tunnel (Christian Hopps) - IB/IPoIB: Fix legacy IPoIB due to wrong number of queues (Dragos Tatulea) - IB/hfi1: Restore allocated resources on failed copyout (Dean Luick) - can: j1939: do not wait 250 ms if the same addr was already claimed (Devid Antonio Filoni) - tracing: Fix poll() and select() do not work on per_cpu trace_pipe and trace_pipe_raw (Shiju Jose) - ALSA: emux: Avoid potential array out-of-bound insnd_emux_xg_control() (Artemii Karasev) - btrfs: zlib: zero-initialize zlib workspace (Alexander Potapenko) - btrfs: limit device extents to the device size (Josef Bacik) - iio:adc:twl6030: Enable measurement of VAC (Andreas Kemnade) - wifi: brcmfmac: Check the count value of channel spec to prevent out-of-bounds reads (Minsuk Kang) - f2fs: fix to do sanity check on i_extra_isize in is_alive() (Chao Yu) - fbdev: smscufx: fix error handling code in ufx_usb_probe (Dongliang Mu) - powerpc/imc-pmu: Revert nest_init_lock to being a mutex (Michael Ellerman) - serial: 8250_dma: Fix DMA Rx rearm race (Ilpo Järvinen) - serial: 8250_dma: Fix DMA Rx completion race (Ilpo Järvinen) - xprtrdma: Fix regbuf data not freed in rpcrdma_req_create() (Zhang Xiaoxu) - mm: swap: properly update readahead statistics in unuse_pte_range() (Andrea Righi) - nvmem: core: fix cell removal on error (Michael Walle) - Squashfs: fix handling and sanity checking of xattr_ids count (Phillip Lougher) - mm/swapfile: add cond_resched() in get_swap_pages() (Longlong Xia) - fpga: stratix10-soc: Fix return value check in s10_ops_write_init() (Zheng Yongjun) - mm: hugetlb: proc: check for hugetlb shared PMD in /proc/PID/smaps (Mike Kravetz) - riscv: disable generation of unwind tables (Andreas Schwab) - parisc: Wire up PTRACE_GETREGS/PTRACE_SETREGS for compat case (Helge Deller) - parisc: Fix return code of pdc_iodc_print() (Helge Deller) - iio:adc:twl6030: Enable measurements of VUSB, VBAT and others (Andreas Kemnade) - iio: adc: berlin2-adc: Add missing of_node_put() in error path (Xiongfeng Wang) - iio: hid: fix the retval in accel_3d_capture_sample (Dmitry Perchanov) - efi: Accept version 2 of memory attributes table (Ard Biesheuvel) - watchdog: diag288_wdt: fix __diag288() inline assembly (Alexander Egorenkov) - watchdog: diag288_wdt: do not use stack buffers for hardware data (Alexander Egorenkov) - fbcon: Check font dimension limits (Samuel Thibault) - Input: i8042 - add Clevo PCX0DX to i8042 quirk table (WernerSembach) - Input: i8042 - add TUXEDO devices to i8042 quirk tables (Werner Sembach) - Input: i8042 - merge quirk tables (Werner Sembach) - Input: i8042 - move __initconst to fix code styling warning (Werner Sembach) - vc_screen: move load of struct vc_data pointer in vcs_read() to avoid UAF (George Kennedy) - usb: gadget: f_fs: Fix unbalanced spinlock in __ffs_ep0_queue_wait (Udipto Goswami) - usb: dwc3: qcom: enable vbus override when in OTG dr-mode (Neil Armstrong) - usb: dwc3: dwc3-qcom: Fix typo in the dwc3 vbus override API (Wesley Cheng) - iio: adc: stm32-dfsdm: fill module aliases (Olivier Moysan) - net/x25: Fix to not accept on connected socket (Hyunwoo Kim) - i2c: rk3x: fix a bunch of kernel-doc warnings (Randy Dunlap) - scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress (Mike Christie) - scsi: target: core: Fix warning on RT kernels (Maurizio Lombardi) - efi: fix potential NULL deref in efi_mem_reserve_persistent (Anton Gusev) - net: openvswitch: fix flow memory leak in ovs_flow_cmd_new (Fedor Pchelkin) - virtio-net: Keep stop() to follow mirror sequence of open() (Parav Pandit) - selftests: net: udpgso_bench_tx: Cater for pending datagrams zerocopy benchmarking (Andrei Gherzan) - selftests: net: udpgso_bench: Fix racing bug between the rx/tx programs (Andrei Gherzan) - selftests: net: udpgso_bench_rx/tx: Stop when wrong CLI args are provided (Andrei Gherzan) - selftests: net: udpgso_bench_rx: Fix 'used uninitialized' compiler warning (Andrei Gherzan) - ata: libata: Fix sata_down_spd_limit() when no link speed is reported (Damien Le Moal) - can: j1939: fix errant WARN_ON_ONCE in j1939_session_deactivate (Ziyang Xuan) - net: phy: meson-gxl: Add generic dummy stubs for MMD register access (Chris Healy) - squashfs: harden sanity check in squashfs_read_xattr_id_table (Fedor Pchelkin) - netfilter: br_netfilter: disable sabotage_in hook after first suppression (Florian Westphal) - netrom: Fix use-after-free caused by accept on already connected socket (HyunwooKim) - fix "direction" argument of iov_iter_kvec() (Al Viro) - fix iov_iter_bvec() "direction" argument (Al Viro) - WRITE is "data source", not destination... (Al Viro) - scsi: Revert "scsi: core: map PQ=1, PDT=other values to SCSI_SCAN_TARGET_PRESENT" (Martin K. Petersen) - arm64: dts: imx8mm: Fix pad control for UART1_DTE_RX (Pierluigi Passaro) - ALSA: hda/via: Avoid potential array out-of-bound in add_secret_dac_path() (Artemii Karasev) - ASoC: Intel: bytcr_rt5651: Drop reference count of ACPI device after use (Andy Shevchenko) - bus: sunxi-rsb: Fix error handling in sunxi_rsb_init() (Yuan Can) - firewire: fix memory leak for payload of request subaction to IEC 61883-1 FCP region (Takashi Sakamoto) - LTS tag: v5.4.231 (Sherry Yang) - usb: host: xhci-plat: add wakeup entry at sysfs (Peter Chen) - Bluetooth: fix null ptr deref on hci_sync_conn_complete_evt (Soenke Huster) - ipv6: ensure sane device mtu in tunnels (Eric Dumazet) - exit: Use READ_ONCE() for all oops/warn limit reads (Kees Cook) - docs: Fix path paste-o for /sys/kernel/warn_count (Kees Cook) - panic: Expose "warn_count" to sysfs (Kees Cook) - panic: Introduce warn_limit (Kees Cook) - panic: Consolidate open-coded panic_on_warn checks (Kees Cook) - exit: Allow oops_limit to be disabled (Kees Cook) - exit: Expose "oops_count" to sysfs (Kees Cook) - exit: Put an upper limit on how often we can oops (Jann Horn) - ia64: make IA64_MCA_RECOVERY bool instead of tristate (Randy Dunlap) - csky: Fix function name in csky_alignment() and die() (Nathan Chancellor) - h8300: Fix build errors from do_exit() to make_task_dead() transition (Nathan Chancellor) - hexagon: Fix function name in die() (Nathan Chancellor) - objtool: Add a missing comma to avoid string concatenation (Eric W. Biederman) - exit: Add and use make_task_dead. (Eric W. Biederman) - mm: kasan: do not panic if both panic_on_warn and kasan_multishot set (David Gow) - panic: unset panic_on_warn inside panic() (Tiezhu Yang) - sysctl: add a new register_sysctl_init()interface (Xiaoming Ni) - dmaengine: imx-sdma: Fix a possible memory leak in sdma_transfer_init (Hui Wang) - blk-cgroup: fix missing pd_online_fn() while activating policy (Yu Kuai) - bpf: Skip task with pid=1 in send_signal_common() (Hao Sun) - ARM: dts: imx: Fix pca9547 i2c-mux node name (Geert Uytterhoeven) - x86/asm: Fix an assembler warning with current binutils (Mikulas Patocka) - clk: Fix pointer casting to prevent oops in devm_clk_release() (Uwe Kleine-König) - perf/x86/amd: fix potential integer overflow on shift of a int (Colin Ian King) - netfilter: conntrack: unify established states for SCTP paths (Sriram Yagnaraman) - x86/i8259: Mark legacy PIC interrupts with IRQ_LEVEL (Thomas Gleixner) - block: fix and cleanup bio_check_ro (Christoph Hellwig) - nfsd: Ensure knfsd shuts down when the "nfsd" pseudofs is unmounted (Trond Myklebust) - Revert "Input: synaptics - switch touchpad on HP Laptop 15-da3001TU to RMI mode" (Dmitry Torokhov) - net: mdio-mux-meson-g12a: force internal PHY off on mux switch (Jerome Brunet) - net: xgene: Move shared header file into include/linux (Andrew Lunn) - net/phy/mdio-i2c: Move header file to include/linux/mdio (Andrew Lunn) - net/tg3: resolve deadlock in tg3_reset_task() during EEH (David Christensen) - thermal: intel: int340x: Add locking to int340x_thermal_get_trip_type() (Rafael J. Wysocki) - net: ravb: Fix possible hang if RIS2_QFF1 happen (Yoshihiro Shimoda) - sctp: fail if no bound addresses can be used for a given scope (Marcelo Ricardo Leitner) - net/sched: sch_taprio: do not schedule in taprio_reset() (Eric Dumazet) - netrom: Fix use-after-free of a listening socket. (Kuniyuki Iwashima) - netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETE (Sriram Yagnaraman) - ipv4: prevent potential spectre v1 gadget in fib_metrics_match() (Eric Dumazet) - ipv4: prevent potential spectre v1 gadget in ip_metrics_convert() (Eric Dumazet) - netlink: annotate data races around sk_state (Eric Dumazet) - netlink: annotate data races arounddst_portid and dst_group (Eric Dumazet) - netlink: annotate data races around nlk-> portid (Eric Dumazet) - netfilter: nft_set_rbtree: skip elements in transaction from garbage collection (Pablo Neira Ayuso) - net: fix UaF in netns ops registration error path (Paolo Abeni) - netlink: prevent potential spectre v1 gadgets (Eric Dumazet) - EDAC/qcom: Do not pass llcc_driv_data as edac_device_ctl_info's pvt_info (Manivannan Sadhasivam) - EDAC/device: Respect any driver-supplied workqueue polling value (Manivannan Sadhasivam) - ARM: 9280/1: mm: fix warning on phys_addr_t to void pointer assignment (Giulio Benetti) - thermal: intel: int340x: Protect trip temperature from concurrent updates (Srinivas Pandruvada) - KVM: x86/vmx: Do not skip segment attributes if unusable bit is set (Hendrik Borghorst) - cifs: Fix oops due to uncleared server-> smbd_conn in reconnect (David Howells) - ftrace/scripts: Update the instructions for ftrace-bisect.sh (Steven Rostedt (Google)) - trace_events_hist: add check for return value of 'create_hist_field' (Natalia Petrova) - tracing: Make sure trace_printk() can output as soon as it can be used (Steven Rostedt (Google)) - module: Don't wait for GOING modules (Petr Pavlu) - scsi: hpsa: Fix allocation size for scsi_host_alloc() (Alexey V. Vissarionov) - Bluetooth: hci_sync: cancel cmd_timer if hci_open failed (Archie Pusaka) - Revert "Revert "xhci: Set HCD flag to defer primary roothub registration"" (Sasha Levin) - fs: reiserfs: remove useless new_opts in reiserfs_remount (Dongliang Mu) - mmc: sdhci-esdhc-imx: correct the tuning start tap and step setting (Haibo Chen) - mmc: sdhci-esdhc-imx: disable the CMD CRC check for standard tuning (Haibo Chen) - mmc: sdhci-esdhc-imx: clear pending interrupt and halt cqhci (Haibo Chen) - lockref: stop doing cpu_relax in the cmpxchg loop (Mateusz Guzik) - platform/x86: asus-nb-wmi: Add alternate mapping for KEY_SCREENLOCK (Hans de Goede) - platform/x86: touchscreen_dmi: Add info for the CSL Panther Tab HD (Michael Klein) -scsi: hisi_sas: Set a port invalid only if there are no devices attached when refreshing port id (Yihang Li) - KVM: s390: interrupt: use READ_ONCE() before cmpxchg() (Heiko Carstens) - spi: spidev: remove debug messages that access spidev-> spi without locking (Bartosz Golaszewski) - ASoC: fsl-asoc-card: Fix naming of AC'97 CODEC widgets (Mark Brown) - ASoC: fsl_ssi: Rename AC'97 streams to avoid collisions with AC'97 CODEC (Mark Brown) - cpufreq: armada-37xx: stop using 0 as NULL pointer (Miles Chen) - s390/debug: add _ASM_S390_ prefix to header guard (Niklas Schnelle) - drm: Add orientation quirk for Lenovo ideapad D330-10IGL (Patrick Thompson) - ASoC: fsl_micfil: Correct the number of steps on SX controls (Chancel Liu) - cpufreq: Add Tegra234 to cpufreq-dt-platdev blocklist (Sumit Gupta) - tcp: fix rate_app_limited to default to 1 (David Morley) - net: dsa: microchip: ksz9477: port map correction in ALU table entry register (Rakesh Sankaranarayanan) - driver core: Fix test_async_probe_init saves device in wrong array (Chen Zhongjin) - w1: fix WARNING after calling w1_process() (Yang Yingliang) - w1: fix deadloop in __w1_remove_master_device() (Yang Yingliang) - tcp: avoid the lookup process failing to get sk in ehash table (Jason Xing) - dmaengine: xilinx_dma: call of_node_put() when breaking out of for_each_child_of_node() (Liu Shixin) - dmaengine: xilinx_dma: Fix devm_platform_ioremap_resource error handling (Swati Agarwal) - dmaengine: xilinx_dma: use devm_platform_ioremap_resource() (Radhey Shyam Pandey) - HID: betop: check shape of output reports (Pietro Borrello) - net: macb: fix PTP TX timestamp failure due to packet padding (Robert Hancock) - dmaengine: Fix double increment of client_count in dma_chan_get() (Koba Ko) - drm/panfrost: fix GENERIC_ATOMIC64 dependency (Arnd Bergmann) - net: mlx5: eliminate anonymous module_init & module_exit (Randy Dunlap) - usb: gadget: f_fs: Ensure ep0req is dequeued before free_request (Udipto Goswami) - usb: gadget: f_fs: Prevent race duringffs_ep0_queue_wait (Udipto Goswami) - HID: revert CHERRY_MOUSE_000C quirk (Jiri Kosina) - net: stmmac: fix invalid call to mdiobus_get_phy() (Heiner Kallweit) - HID: check empty report_list in bigben_probe() (Pietro Borrello) - HID: check empty report_list in hid_validate_values() (Pietro Borrello) - net: mdio: validate parameter addr in mdiobus_get_phy() (Heiner Kallweit) - net: usb: sr9700: Handle negative len (Szymon Heidrich) - l2tp: Don't sleep and disable BH under writer-side sk_callback_lock (Jakub Sitnicki) - l2tp: Serialize access to sk_user_data with sk_callback_lock (Jakub Sitnicki) [Orabug: 34951575] {CVE-2022-4129} - net: fix a concurrency bug in l2tp_tunnel_register() (Gong, Sishuai) - net/sched: sch_taprio: fix possible use-after-free (Eric Dumazet) - wifi: rndis_wlan: Prevent buffer overflow in rndis_query_oid (Szymon Heidrich) [Orabug: 35037713] {CVE-2023-23559} - gpio: mxc: Always set GPIOs used as interrupt source to INPUT mode (Marek Vasut) - net: wan: Add checks for NULL for utdm in undo_uhdlc_init and unmap_si_regs (Esina Ekaterina) - net: nfc: Fix use-after-free in local_cleanup() (Jisoo Jang) - phy: rockchip-inno-usb2: Fix missing clk_disable_unprepare() in rockchip_usb2phy_power_on() (Shang XiaoJing) - bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation (Luis Gerhorst) - amd-xgbe: Delay AN timeout during KR training (Raju Rangoju) - amd-xgbe: TX Flow Ctrl Registers are h/w ver dependent (Raju Rangoju) - affs: initialize fsdata in affs_truncate() (Alexander Potapenko) - IB/hfi1: Fix expected receive setup error exit issues (Dean Luick) - IB/hfi1: Reserve user expected TIDs (Dean Luick) - IB/hfi1: Reject a zero-length user expected buffer (Dean Luick) - RDMA/core: Fix ib block iterator counter overflow (Yonatan Nachum) - tomoyo: fix broken dependency on *.conf.default (Masahiro Yamada) - EDAC/highbank: Fix memory leak in highbank_mc_probe() (Miaoqian Lin) - HID: intel_ish-hid: Add check for ishtp_dma_tx_map (Jiasheng Jiang) - ARM: imx: addmissing of_node_put() (Dario Binacchi) - ARM: imx35: Retrieve the IIM base address from devicetree (Fabio Estevam) - ARM: imx31: Retrieve the IIM base address from devicetree (Fabio Estevam) - ARM: imx27: Retrieve the SYSCTRL base address from devicetree (Fabio Estevam) - ARM: dts: imx6qdl-gw560x: Remove incorrect 'uart-has-rtscts' (Fabio Estevam) - memory: mvebu-devbus: Fix missing clk_disable_unprepare in mvebu_devbus_probe() (Gaosheng Cui) - memory: atmel-sdramc: Fix missing clk_disable_unprepare in atmel_ramc_probe() (Gaosheng Cui) - clk: Provide new devm_clk helpers for prepared and enabled clocks (Uwe Kleine-König) - clk: generalize devm_clk_get() a bit (Uwe Kleine-König) [5.4.17-2136.318.2.el8uek] - iommu/amd: Increase kdump command sync timeout to 2secs (Joao Martins) [Orabug: 35117313] [5.4.17-2136.318.1.el8uek] - uek-rpm: aarch64: embedded: Clean up T93 config file v2 (Henry Willard) [Orabug: 35029259] - uek-rpm: aarch64 embedded: make some modules built-in (Dave Kleikamp) [Orabug: 35029259] - uek-rpm: aarch64: pensando: config file update for January 2023 update (Dave Kleikamp) [Orabug: 35089950] - drivers/mtd/spi-nor: Winbond w25q02nw flash support. (Hiren Mehta) [Orabug: 35089950] - drivers/i2c: Reset Lattice RD1173 master for i2c_busy set. (Hiren Mehta) [Orabug: 35089950] - drivers/soc/pensando: boot_count to sysfs for kdump.log (Hiren Mehta) [Orabug: 35089950] - drivers/soc/pensando sbus driver (Hiren Mehta) [Orabug: 35089950] - drivers/reset: Add emmc hardware reset (Hiren Mehta) [Orabug: 35089950] - uek-rpm: Add missing dax_pmem_compat.ko to nano rpm (Somasundaram Krishnasamy) [Orabug: 35094871] _______________________________________________ El-errata mailing list
- Update to upstream 2.1-36. 20220510 - Addition of 06-97-02/0x03 (ADL-HX C0) microcode at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2022-688cbbf106 2022-05-12 01:12:10.551102 --------------------------------------------------------------------------------Name : microcode_ctl Product : Fedora 36 Version : 2.1 Release : 51.fc36 URL : https://pagure.io/microcode_ctl Summary : Tool to transform and deploy CPU microcode update for x86 Description : The microcode_ctl utility is a companion to the microcode driver written by Tigran Aivazian . The microcode update is volatile and needs to be uploaded on each system boot i.e. it doesn't reflash your cpu permanently, reboot and it reverts back to the old microcode. --------------------------------------------------------------------------------Update Information: - Update to upstream 2.1-36. 20220510 - Addition of 06-97-02/0x03 (ADL-HX C0) microcode at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-9a-03/0x80 (ADL-P6+8/U 9W L0/R0) microcode at revision 0x41c; -Addition of 06-9a-04/0x80 (ADL-P 2+8 R0) microcode (in intel-ucode/06-9a-03) at revision 0x41c; - Addition of 06-9a-03/0x80 (ADL-P 6+8/U 9W L0/R0) microcode (in intel-ucode/06-9a-04) at revision 0x41c; - Addition of 06-9a-04/0x80 (ADL-P 2+8 R0) microcode at revision 0x41c; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode at revision 0x1f; - Update of 06-37-09/0x0f (VLV D0) microcode from revision 0x90c up to 0x90d; - Update of 06-4e-03/0xc0 (SKL-U/U 2+3e/Y D0/K1) microcode from revision 0xec up to 0xf0; - Update of 06-55-03/0x97 (SKX-SP B1) microcode from revision 0x100015c up to 0x100015d; - Update of 06-55-04/0xb7 (SKX-D/SP/W/X H0/M0/M1/U0) microcode from revision 0x2006c0a up to 0x2006d05; - Update of 06-55-06/0xbf (CLX-SP B0) microcode from revision 0x400320a up to 0x4003302; - Update of 06-55-07/0xbf (CLX-SP/W/X B1/L1) microcode from revision 0x500320a up to 0x5003302; - Update of 06-55-0b/0xbf (CPX-SP A1) microcode from revision 0x7002402 up to 0x7002501; - Update of 06-5c-09/0x03 (APL D0) microcode from revision 0x46 up to 0x48; - Update of 06-5e-03/0x36 (SKL-H/S/Xeon E3 N0/R0/S0) microcode from revision 0xec up to 0xf0; - Update of 06-5f-01/0x01 (DNV B0) microcode from revision 0x36 up to 0x38; - Update of06-6a-06/0x87 (ICX-SP D0) microcode from revision 0xd000331 up to 0xd000363; - Update of 06-7a-01/0x01 (GLK B0) microcode from revision 0x38 up to 0x3a; - Update of 06-7a-08/0x01 (GLK-R R0) microcode from revision 0x1c up to 0x1e; - Update of 06-7e-05/0x80 (ICL-U/Y D1) microcode from revision 0xa8 up to 0xb0; - Update of 06-8a-01/0x10 (LKF B2/B3) microcode from revision 0x2d up to 0x31; -Update of 06-8c-01/0x80 (TGL-UP3/UP4 B1) microcode from revision 0x9a up to 0xa4; - Update of 06-8c-02/0xc2 (TGL-R C0) microcode from revision 0x22 up to 0x26; - Update of 06-8d-01/0xc2 (TGL-H R0) microcode from revision 0x3c up to 0x3e; - Update of 06-8e-09/0x10 (AML-Y 2+2 H0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-09/0xc0 (KBL-U/U 2+3e/Y H0/J1) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0a/0xc0 (CFL-U 4+3e D0, KBL-R Y0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0b/0xd0 (WHL-U W0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0c/0x94 (AML-Y 4+2 V0, CML-U 4+2 V0, WHL-U V0) microcode from revision 0xec up to 0xf0; - Update of 06-96-01/0x01 (EHL B1) microcode from revision 0x15 up to 0x16; - Update of 06-9c-00/0x01 (JSL A0/A1) microcode from revision 0x2400001f up to 0x24000023; - Update of 06-9e-09/0x2a (KBL-G/H/S/X/Xeon E3 B0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0a/0x22 (CFL-H/S/Xeon E U0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0b/0x02 (CFL-E/H/S B0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0c/0x22 (CFL-H/S/Xeon E P0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0d/0x22 (CFL-H/S/Xeon E R0) microcode from revision 0xec up to 0xf0; - Update of 06-a5-02/0x20 (CML-H R1) microcode from revision 0xec up to 0xf0; - Update of 06-a5-03/0x22 (CML-S 6+2 G1) microcode from revision 0xec up to 0xf0; - Update of 06-a5-05/0x22 (CML-S 10+2 Q0) microcode from revision0xee up to 0xf0; -Update of 06-a6-00/0x80 (CML-U 6+2 A0) microcode from revision 0xea up to 0xf0; - Update of 06-a6-01/0x80 (CML-U 6+2 v2 K1) microcode from revision 0xec up to 0xf0; - Update of 06-a7-01/0x02 (RKL-S B0) microcode from revision 0x50 up to 0x53. - Addresses CVE-2022-0005, CVE-2022-21131, CVE-2022-21136, CVE-2022-21151 ---- - Update to upstream 2.1-35. 20220419 - Update of 06-5c-0a/0x03 (APL B1/F1) microcode from revision 0x24 up to 0x28. --------------------------------------------------------------------------------ChangeLog: * Tue May 10 2022 Eugene Syromiatnikov 2:2.1-51 - Update to upstream 2.1-36. 20220510 - Addition of 06-97-02/0x03 (ADL-HX C0) microcode at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-97-02) at revision 0x1f; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-97-05) at revision 0x1f; - Addition of 06-9a-03/0x80 (ADL-P 6+8/U 9W L0/R0) microcode at revision 0x41c; - Addition of 06-9a-04/0x80 (ADL-P 2+8 R0) microcode (in intel-ucode/06-9a-03) at revision 0x41c; - Addition of 06-9a-03/0x80 (ADL-P 6+8/U 9W L0/R0) microcode (in intel-ucode/06-9a-04) at revision 0x41c; - Addition of 06-9a-04/0x80 (ADL-P 2+8 R0) microcode at revision 0x41c; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0)microcode at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode (in intel-ucode/06-bf-02) at revision 0x1f; - Addition of 06-97-02/0x03 (ADL-HX C0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-97-05/0x03 (ADL-S 6+0 K0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-bf-02/0x03 (ADL C0) microcode (in intel-ucode/06-bf-05) at revision 0x1f; - Addition of 06-bf-05/0x03 (ADL C0) microcode at revision 0x1f; - Update of 06-37-09/0x0f (VLV D0) microcode from revision 0x90c up to 0x90d; - Update of 06-4e-03/0xc0 (SKL-U/U 2+3e/Y D0/K1) microcode from revision 0xec up to 0xf0; - Update of 06-55-03/0x97 (SKX-SP B1) microcode from revision 0x100015c up to 0x100015d; - Update of 06-55-04/0xb7 (SKX-D/SP/W/X H0/M0/M1/U0) microcode from revision 0x2006c0a up to 0x2006d05; - Update of 06-55-06/0xbf (CLX-SP B0) microcode from revision 0x400320a up to 0x4003302; - Update of 06-55-07/0xbf (CLX-SP/W/X B1/L1) microcode from revision 0x500320a up to 0x5003302; - Update of 06-55-0b/0xbf (CPX-SP A1) microcode from revision 0x7002402 up to 0x7002501; - Update of 06-5c-09/0x03 (APL D0) microcode from revision 0x46 up to 0x48; - Update of 06-5e-03/0x36 (SKL-H/S/Xeon E3 N0/R0/S0) microcode from revision 0xec up to 0xf0; - Update of 06-5f-01/0x01 (DNV B0) microcode from revision 0x36 up to 0x38; - Update of 06-6a-06/0x87 (ICX-SP D0) microcode from revision 0xd000331 up to 0xd000363; - Update of 06-7a-01/0x01 (GLK B0) microcode from revision 0x38 up to 0x3a; - Update of 06-7a-08/0x01 (GLK-R R0) microcode from revision 0x1c up to 0x1e; - Update of 06-7e-05/0x80 (ICL-U/Y D1) microcode from revision 0xa8 up to 0xb0; - Update of 06-8a-01/0x10 (LKF B2/B3) microcode from revision 0x2d up to 0x31; - Update of 06-8c-01/0x80 (TGL-UP3/UP4 B1) microcode from revision 0x9a up to 0xa4; - Update of 06-8c-02/0xc2 (TGL-R C0) microcodefrom revision 0x22 up to 0x26; - Update of 06-8d-01/0xc2 (TGL-H R0) microcode from revision 0x3c up to 0x3e; - Update of 06-8e-09/0x10 (AML-Y 2+2 H0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-09/0xc0 (KBL-U/U 2+3e/Y H0/J1) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0a/0xc0 (CFL-U 4+3e D0, KBL-R Y0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0b/0xd0 (WHL-U W0) microcode from revision 0xec up to 0xf0; - Update of 06-8e-0c/0x94 (AML-Y 4+2 V0, CML-U 4+2 V0, WHL-U V0) microcode from revision 0xec up to 0xf0; - Update of 06-96-01/0x01 (EHL B1) microcode from revision 0x15 up to 0x16; - Update of 06-9c-00/0x01 (JSL A0/A1) microcode from revision 0x2400001f up to 0x24000023; - Update of 06-9e-09/0x2a (KBL-G/H/S/X/Xeon E3 B0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0a/0x22 (CFL-H/S/Xeon E U0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0b/0x02 (CFL-E/H/S B0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0c/0x22 (CFL-H/S/Xeon E P0) microcode from revision 0xec up to 0xf0; - Update of 06-9e-0d/0x22 (CFL-H/S/Xeon E R0) microcode from revision 0xec up to 0xf0; - Update of 06-a5-02/0x20 (CML-H R1) microcode from revision 0xec up to 0xf0; - Update of 06-a5-03/0x22 (CML-S 6+2 G1) microcode from revision 0xec up to 0xf0; - Update of 06-a5-05/0x22 (CML-S 10+2 Q0) microcode from revision 0xee up to 0xf0; - Update of 06-a6-00/0x80 (CML-U 6+2 A0) microcode from revision 0xea up to 0xf0; - Update of 06-a6-01/0x80 (CML-U 6+2 v2 K1) microcode from revision 0xec up to 0xf0; - Update of 06-a7-01/0x02 (RKL-S B0) microcode from revision 0x50 up to 0x53. - Addresses CVE-2022-0005, CVE-2022-21131, CVE-2022-21136, CVE-2022-21151 * Tue May 10 2022 Eugene Syromiatnikov 2:2.1-50 - Update to upstream 2.1-35. 20220419 - Update of 06-5c-0a/0x03 (APL B1/F1) microcode from revision 0x24 up to 0x28. --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-688cbbf106' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
An update for firefox is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score,. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Important: firefox security update Advisory ID: RHSA-2020:5234-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2020:5234 Issue date: 2020-11-30 CVE Names: CVE-2020-16012 CVE-2020-26951 CVE-2020-26953 CVE-2020-26956 CVE-2020-26958 CVE-2020-26959 CVE-2020-26960 CVE-2020-26961 CVE-2020-26965 CVE-2020-26968 ==================================================================== 1. Summary: An update for firefox is now available for Red Hat Enterprise Linux 8.2 Extended Update Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux AppStream EUS (v. 8.2) - aarch64, ppc64le, s390x, x86_64 3. Description: Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. This update upgrades Firefox to version 78.5.0 ESR. Security Fix(es): * Mozilla: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code (CVE-2020-26951) * Mozilla: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5 (CVE-2020-26968) * Mozilla: Variable time processing of cross-origin images during drawImage calls (CVE-2020-16012) * Mozilla: Fullscreen could be enabled without displaying the security UI (CVE-2020-26953) *Mozilla: XSS through paste (manual and clipboard API) (CVE-2020-26956) * Mozilla: Requests intercepted through ServiceWorkers lacked MIME type restrictions (CVE-2020-26958) * Mozilla: Use-after-free in WebRequestService (CVE-2020-26959) * Mozilla: Potential use-after-free in uses of nsTArray (CVE-2020-26960) * Mozilla: DoH did not filter IPv4 mapped IP Addresses (CVE-2020-26961) * Mozilla: Software keyboards may have remembered typed passwords (CVE-2020-26965) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 After installing the update, Firefox must be restarted for the changes to take effect. 5. Bugs fixed (https://bugzilla.redhat.com/): 1898731 - CVE-2020-26951 Mozilla: Parsing mismatches could confuse and bypass security sanitizer for chrome privileged code 1898732 - CVE-2020-16012 Mozilla: Variable time processing of cross-origin images during drawImage calls 1898733 - CVE-2020-26953 Mozilla: Fullscreen could be enabled without displaying the security UI 1898734 - CVE-2020-26956 Mozilla: XSS through paste (manual and clipboard API) 1898735 - CVE-2020-26958 Mozilla: Requests intercepted through ServiceWorkers lacked MIME type restrictions 1898736 - CVE-2020-26959 Mozilla: Use-after-free in WebRequestService 1898737 - CVE-2020-26960 Mozilla: Potential use-after-free in uses of nsTArray 1898738 - CVE-2020-26961 Mozilla: DoH did not filter IPv4 mapped IP Addresses 1898739 - CVE-2020-26965 Mozilla: Software keyboards may have remembered typed passwords 1898741 - CVE-2020-26968 Mozilla: Memory safety bugs fixed in Firefox 83 and Firefox ESR 78.5 6. Package List: Red Hat Enterprise Linux AppStream EUS (v.8.2): Source: firefox-78.5.0-1.el8_2.src.rpm aarch64: firefox-78.5.0-1.el8_2.aarch64.rpm firefox-debuginfo-78.5.0-1.el8_2.aarch64.rpm firefox-debugsource-78.5.0-1.el8_2.aarch64.rpm ppc64le: firefox-78.5.0-1.el8_2.ppc64le.rpm firefox-debuginfo-78.5.0-1.el8_2.ppc64le.rpm firefox-debugsource-78.5.0-1.el8_2.ppc64le.rpm s390x: firefox-78.5.0-1.el8_2.s390x.rpm firefox-debuginfo-78.5.0-1.el8_2.s390x.rpm firefox-debugsource-78.5.0-1.el8_2.s390x.rpm x86_64: firefox-78.5.0-1.el8_2.x86_64.rpm firefox-debuginfo-78.5.0-1.el8_2.x86_64.rpm firefox-debugsource-78.5.0-1.el8_2.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from https://access.redhat.com/security/team/key 7. References: https://access.redhat.com/security/cve/CVE-2020-16012 https://access.redhat.com/security/cve/CVE-2020-26951 https://access.redhat.com/security/cve/CVE-2020-26953 https://access.redhat.com/security/cve/CVE-2020-26956 https://access.redhat.com/security/cve/CVE-2020-26958 https://access.redhat.com/security/cve/CVE-2020-26959 https://access.redhat.com/security/cve/CVE-2020-26960 https://access.redhat.com/security/cve/CVE-2020-26961 https://access.redhat.com/security/cve/CVE-2020-26965 https://access.redhat.com/security/cve/CVE-2020-26968 https://access.redhat.com/security/updates/classification#important 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact Copyright 2020 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPGv1 iQIVAwUBX8S0gNzjgjWX9erEAQjehg/7BPLqtvuEZxu0wOKChvHN8JOYrOPWB3R3 eI5JE32WRO1LG3xKHxpfrERdPJ4Qa9RON/PYBig7I7u5Cn/NoS9r5HywTOWdOP8M kK+AgVWsC/4TczLHv9xp0vjbiXyg24tSzxWf/GmV+BFbjsMpyuW8+NBhfthRNkBY 6jYC8v8N0RaDKcrmMwWEN8Pkp5YDy4B6FD5PuhFmXAamwNKZoveqpb7B6QjcfOK6 JjmzDAseVpauB/IPsvTQJk2lRueLhnBPlhsyYkWgX5sJsCS9pDwL07qGuCiNyJkU dT6BNxL0A/zmETPd77Lw6C9uQA7xFpWVJdAMyeeerx7LtpcdtXb5HXGgHI3Cqplq OHbgfvSCMwPB2lMqgCDHRYTu9e/K2mdAB5xIY/UBnrNGnWZ0Zp18dF5bTuMt9kxr FvXzZYzeg072yqPVauM2yPj0NS9ZsXsY60ILvk8CQ0mMn7t7kMBNDe4z20/oNeAV M+0C3u6yC3ZdgAGOhBx8kNJytmu1Ij36Bt1TW/H8gzf//YnpCFCwf+jFn/hSjgLk lebQnkc9xyuye0VehUIr5w8US+bfCmVIA/rNsT+e52kaPp2vjXPEwXDrSAHLgscS /0fZ2ktSkL9dRMa1tYHhshl3808B70K6GB7IH4/d3YgKQ7XBwyU8nHpw1B0vYihr eGYuePM/eDU=Iv7c -----END PGP SIGNATURE----- -- RHSA-announce mailing list
An update that solves two vulnerabilities and has two fixes An update that solves two vulnerabilities and has two fixes An update that solves two vulnerabilities and has two fixes is now available. is now available.. SUSE Security Update: Security update for the Linux Kernel (Live Patch 12 for SLE 12 SP2) ______________________________________________________________________________ Announcement ID: SUSE-SU-2017:3128-1 Rating: important References: #1063671 #1064392 #1066471 #1066472 Cross-References: CVE-2017-13080 CVE-2017-15649 Affected Products: SUSE Linux Enterprise Live Patching 12 ______________________________________________________________________________ An update that solves two vulnerabilities and has two fixes is now available. Description: This update for the Linux Kernel 4.4.74-92_35 fixes several issues. The following security issues were fixed: - CVE-2017-15649: net/packet/af_packet.c in the Linux kernel allowed local users to gain privileges via crafted system calls that trigger mishandling of packet_fanout data structures, because of a race condition (involving fanout_add and packet_do_bind) that leads to a use-after-free, a different vulnerability than CVE-2017-6346 (bsc#1064392) - CVE-2017-13080: Wi-Fi Protected Access (WPA and WPA2) allowed reinstallation of the Group Temporal Key (GTK) during the group key handshake, allowing an attacker within radio range to replay frames from access points to clients (bsc#1063671, bsc#1066472, bsc#1066471) Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Live Patching 12: zypper in -t patch SUSE-SLE-Live-Patching-12-2017-1928=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Live Patching 12 (x86_64): kgraft-patch-4_4_74-92_35-default-4-2.1 References: https://www.suse.com/security/cve/CVE-2017-13080.html https://www.suse.com/security/cve/CVE-2017-15649.html https://bugzilla.suse.com/1063671 https://bugzilla.suse.com/1064392 https://bugzilla.suse.com/1066471 https://bugzilla.suse.com/1066472 . This critical advisory focuses on several vulnerabilities in the Linux core, improving protection for openSUSE systems.. SUSE Linux Patches, Kernel Patch Updates, Critical Security Fixes. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.