[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2023-12858 -- Oracle kernel-uek_bpftool

ID: oval:org.secpod.oval:def:1507057Date: (C)2023-10-25   (M)2024-06-17
Class: PATCHFamily: unix




[5.15.0-106.131.4.el9uek] - jbd2: check "jh-gt;b_transaction" before removing it from checkpoint - jbd2: fix checkpoint cleanup performance regression - scsi: qla2xxx: Fix TMF leak through - scsi: qla2xxx: Fix command flush during TMF - scsi: qla2xxx: Limit TMF to 8 per function - Revert quot;drm/amdgpu: install stub fence into potential unused fence pointersquot; - dlm: fix plock lookup when using multiple lockspaces - Revert quot;scsi: qla2xxx: Fix buffer overrunquot; - media: dvb: symbol fixup for dvb_attach - PCI: rockchip: Use 64-bit mask on MSI 64-bit PCI address - x86/speculation: Mark all Skylake CPUs as vulnerable to GDS - clk: qcom: reset: Use the correct type of sleep/delay based on length - ALSA: ac97: Fix possible error value of *rac97 - md/raid0: Fix performance regression for large sequential writes - md/raid0: Factor out helper for mapping and submitting a bio - md: add error_handlers for raid0 and linear - md: Set MD_BROKEN for RAID1 and RAID10 - LTS version: v5.15.131 - usb: typec: tcpci: clear the fault status bit - usb: typec: tcpci: move tcpci.h to include/linux/usb/ - pinctrl: amd: Don"t show Invalid config param errors - nilfs2: fix WARNING in mark_buffer_dirty due to discarded buffer reuse - nilfs2: fix general protection fault in nilfs_lookup_dirty_data_buffers - tcpm: Avoid soft reset when partner does not support get_status - fsi: master-ast-cf: Add MODULE_FIRMWARE macro - firmware: stratix10-svc: Fix an NULL vs IS_ERR bug in probe - serial: sc16is7xx: fix bug when first setting GPIO direction - serial: sc16is7xx: fix broken port 0 uart init - serial: qcom-geni: fix opp vote on shutdown - wifi: mt76: mt7921: do not support one stream on secondary antenna only - Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race condition - staging: rtl8712: fix race condition - HID: wacom: remove the battery when the EKR is off - usb: chipidea: imx: improve logic if samsung,picophy-* parameter is 0 - usb: dwc3: meson-g12a: do post init to fix broken usb after resumption - ALSA: usb-audio: Fix init call orders for UAC1 - USB: serial: option: add FOXCONN T99W368/T99W373 product - USB: serial: option: add Quectel EM05G variant - modules: only allow symbol_get of EXPORT_SYMBOL_GPL modules - rtc: ds1685: use EXPORT_SYMBOL_GPL for ds1685_rtc_poweroff - net: enetc: use EXPORT_SYMBOL_GPL for enetc_phc_index - mmc: au1xmmc: force non-modular build and remove symbol_get usage - ARM: pxa: remove use of symbol_get - ksmbd: replace one-element array with flex-array member in struct smb2_ea_info - ksmbd: fix wrong DataOffset validation of create context - erofs: ensure that the post-EOF tails are all zeroed - netfilter: nfnetlink_osf: avoid OOB read [Orabug: 35824286] - netfilter: nftables: exthdr: fix 4-byte stack OOB write [Orabug: 35824286] - netfilter: xt_sctp: validate the flag_info count [Orabug: 35824286] - netfilter: xt_u32: validate user space input [Orabug: 35824286] - netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash_netportnet.c [Orabug: 35824286] {CVE-2023-42753} - rds: Fix lack of reentrancy for connection reset with dst addr zero [Orabug: 35655833] {CVE-2023-22024} - attr: use consistent sgid stripping checks [Orabug: 35520042] - Revert quot;perf build-ids: Fall back to debuginfod query if debuginfo not foundquot; [Orabug: 35617848] - KEYS: use kfree_sensitive with key [Orabug: 35746757] - kernfs: fix missing kernfs_iattr_rwsem locking [Orabug: 35796770] - scsi: megaraid_sas: Fix deadlock on firmware crashdump [Orabug: 35819592] [5.15.0-106.130.3.el9uek] - KVM: arm64: Skip instruction after emulating write to TCR_EL1 [Orabug: 35677037] - uek-rpm: aarch64: enable ACPI_AGDI [Orabug: 35761254] - arm64: sdei: abort running SDEI handlers during crash [Orabug: 35761254] - ACPI: AGDI: Fix missing prototype warning for acpi_agdi_init [Orabug: 35761254] - ACPI: AGDI: Add driver for Arm Generic Diagnostic Dump and Reset device [Orabug: 35761254] - ACPI: tables: Add AGDI to the list of known table signatures [Orabug: 35761254] - ACPICA: iASL: Add suppport for AGDI table [Orabug: 35761254] - net/rds: Avoid unpin_user_pages_dirty_lock in tasklets [Orabug: 35765163] - x86/CPU/AMD: Fix the DIV initial fix attempt [Orabug: 35776935] {CVE-2023-20588} - x86/CPU/AMD: Do not leak quotient data after a division by 0 [Orabug: 35776935] {CVE-2023-20588} - x86: change default to spec_store_bypass_disable=prctl spectre_v2_user=prctl [Orabug: 35778852] [5.15.0-106.130.2.el9uek] - LTS version: v5.15.130 - rcu-tasks: Add trc_inspect_reader checks for exiting critical section - rcu-tasks: Wait for trc_read_check_handler IPIs - rcu-tasks: Fix IPI failure handling in trc_wait_for_one_reader - rcu: Prevent expedited GP from enabling tick on offline CPU - ARM: module: Use module_init_layout_section to spot init sections - arm64: module: Use module_init_layout_section to spot init sections - arm64: module-plts: inline linux/moduleloader.h - module: Expose module_init_layout_section - ACPI: thermal: Drop nocrt parameter - LTS version: v5.15.129 - mm,ima,kexec,of: use memblock_free_late from ima_free_kexec_buffer - mm: memory-failure: fix unexpected return value in soft_offline_page - mm: memory-failure: kill soft_offline_free_page - dma-buf/sw_sync: Avoid recursive lock during fence signal - pinctrl: renesas: rza2: Add lock around pinctrl_generic{{add,remove}_group,{add,remove}_function} - clk: Fix undefined reference to clk_rate_exclusive_{get,put}" - scsi: core: raid_class: Remove raid_component_add - scsi: snic: Fix double free in snic_tgt_create - can: raw: add missing refcount for memory leak fix - drm/i915: Fix premature release of request"s reusable memory - cgroup/cpuset: Free DL BW in case can_attach fails - sched/deadline: Create DL BW alloc, free amp; check overflow interface - cgroup/cpuset: Iterate only if DEADLINE tasks are present - sched/cpuset: Keep track of SCHED_DEADLINE task in cpusets - sched/cpuset: Bring back cpuset_mutex - cgroup/cpuset: Rename functions dealing with DEADLINE accounting - torture: Fix hang during kthread shutdown phase - nfsd: use vfs setgid helper - nfs: use vfs setgid helper - x86/fpu: Set X86_FEATURE_OSXSAVE feature after enabling OSXSAVE in CR4 - x86/fpu: Invalidate FPU state correctly on exec - drm/display/dp: Fix the DP DSC Receiver cap size - drm/vmwgfx: Fix shader stage validation - PCI: acpiphp: Use pci_assign_unassigned_bridge_resources only for non-root bus - media: vcodec: Fix potential array out-of-bounds in encoder queue_setup - of: dynamic: Refactor action prints to not use quot;%pOFquot; inside devtree_lock - of: unittest: Fix EXPECT for parse_phandle_with_args_map test - radix tree: remove unused variable - lib/clz_ctz.c: Fix __clzdi2 and __ctzdi2 for 32-bit kernels - batman-adv: Hold rtnl lock during MTU update via netlink - batman-adv: Fix batadv_v_ogm_aggr_send memory leak - batman-adv: Fix TT global entry leak when client roamed back - batman-adv: Do not get eth header before batadv_check_management_packet - batman-adv: Don"t increase MTU when set by user - batman-adv: Trigger events for auto adjusted MTU - selinux: set next pointer before attaching to list - nfsd: Fix race to FREE_STATEID and cl_revoked - NFS: Fix a use after free in nfs_direct_join_group - mm: add a call to flush_cache_vmap in vmap_pfn - ALSA: ymfpci: Fix the missing snd_card_free call at probe error - clk: Fix slab-out-of-bounds error in devm_clk_release - NFSv4: Fix dropped lock for racing OPEN and delegation return - ibmveth: Use dcbf rather than dcbfl - Revert quot;KVM: x86: enable TDP MMU by defaultquot; - net/ncsi: change from ndo_set_mac_address to dev_set_mac_address - net/ncsi: make one oem_gma function for all mfr id - bonding: fix macvlan over alb bond support - net: remove bond_slave_has_mac_rcu - rtnetlink: Reject negative ifindexes in RTM_NEWLINK - rtnetlink: return ENODEV when ifname does not exist and group is given - netfilter: nf_tables: fix out of memory error handling - netfilter: nf_tables: flush pending destroy work before netlink notifier - net/sched: fix a qdisc modification with ambiguous command request - igc: Fix the typo in the PTM Control macro - igb: Avoid starting unnecessary workqueues - ice: fix receive buffer size miscalculation - net: validate veth and vxcan peer ifindexes - net: bcmgenet: Fix return value check for fixed_phy_register - net: bgmac: Fix return value check for fixed_phy_register - ipvlan: Fix a reference count leak warning in ipvlan_ns_exit - dccp: annotate data-races in dccp_poll - sock: annotate data-races around prot-gt;memory_pressure - octeontx2-af: SDP: fix receive link config - tracing: Fix memleak due to race between current_tracer and trace - tracing: Fix cpu buffers unavailable due to "record_disabled" missed - can: raw: fix lockdep issue in raw_release - drm/amd/display: check TG is non-null before checking if enabled - drm/amd/display: do not wait for mpc idle if tg is disabled - can: raw: fix receiver memory leak - jbd2: fix a race when checking checkpoint buffer busy - jbd2: remove journal_clean_one_cp_list - jbd2: remove t_checkpoint_io_list - ALSA: pcm: Fix potential data race at PCM memory allocation helpers - fbdev: fix potential OOB read in fast_imageblit - fbdev: Fix sys_imageblit for arbitrary image widths - fbdev: Improve performance of sys_imageblit - MIPS: cpu-features: Use boot_cpu_type for CPU type based features - MIPS: cpu-features: Enable octeon_cache by cpu_type - fs: dlm: fix mismatch of plock results from userspace - fs: dlm: use dlm_plock_info for do_unlock_close - fs: dlm: change plock interrupted message to debug again - fs: dlm: add pid to debug log - dlm: replace usage of found with dedicated list iterator variable - dlm: improve plock logging if interrupted - PCI: acpiphp: Reassign resources on bridge if necessary - xprtrdma: Remap Receive buffers after a reconnect - NFSv4: fix out path in __nfs4_get_acl_uncached - NFSv4.2: fix error handling in nfs42_proc_getxattr - objtool/x86: Fix SRSO mess - LTS version: v5.15.128 - x86/srso: Correct the mitigation status when SMT is disabled - objtool/x86: Fixup frame-pointer vs rethunk - x86/retpoline,kprobes: Fix position of thunk sections with CONFIG_LTO_CLANG - x86/srso: Disable the mitigation on unaffected configurations - x86/retpoline: Don"t clobber RFLAGS during srso_safe_ret - x86/static_call: Fix __static_call_fixup - x86/srso: Explain the untraining sequences a bit more - x86/cpu: Cleanup the untrain mess - x86/cpu: Rename srso__alias to srso_alias_\1 - x86/cpu: Rename original retbleed methods - x86/cpu: Clean up SRSO return thunk mess - x86/ibt: Add ANNOTATE_NOENDBR - objtool: Add frame-pointer-specific function ignore - x86/alternative: Make custom return thunk unconditional - x86/cpu: Fix up srso_safe_ret and __x86_return_thunk - x86/cpu: Fix __x86_return_thunk symbol type - mmc: f-sdh30: fix order of function calls in sdhci_f_sdh30_remove - net: fix the RTO timer retransmitting skb every 1ms if linear option is enabled - virtio-net: set queues after driver_ok - af_unix: Fix null-ptr-deref in unix_stream_sendpage. - arm64: dts: rockchip: Disable HS400 for eMMC on ROCK Pi 4 - exfat: check if filename entries exceeds max filename length - netfilter: set default timeout to 3 secs for sctp shutdown send and recv state - drm/amd: flush any delayed gfxoff on suspend entry - drm/qxl: fix UAF on handle creation - mmc: block: Fix in_flight[issue_type] value error - mmc: wbsd: fix double mmc_free_host in wbsd_init - cifs: Release folio lock on fscache read hit. - ALSA: usb-audio: Add support for Mythware XA001AU capture and playback interfaces. - serial: 8250: Fix oops for port-gt;pm on uart_change_pm - riscv: uaccess: Return the number of bytes effectively not copied - ALSA: hda/realtek - Remodified 3k pull low procedure - soc: aspeed: socinfo: Add kfree for kstrdup - ASoC: meson: axg-tdm-formatter: fix channel slot allocation - ASoC: rt5665: add missed regulator_bulk_disable - ARM: dts: imx: Set default tuning step for imx6sx usdhc - arm64: dts: qcom: qrb5165-rb5: fix thermal zone conflict - bus: ti-sysc: Flush posted write on enable before reset - net: do not allow gso_size to be set to GSO_BY_FRAGS - sock: Fix misuse of sk_under_memory_pressure - net: dsa: mv88e6xxx: Wait for EEPROM done before HW reset - i40e: fix misleading debug logs - iavf: fix FDIR rule fields masks validation - team: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - net: phy: broadcom: stub c45 read/write for 54810 - netfilter: nft_dynset: disallow object maps - ipvs: fix racy memcpy in proc_do_sync_threshold - netfilter: nf_tables: deactivate catchall elements in next generation - netfilter: nf_tables: fix false-positive lockdep splat - drm/panel: simple: Fix AUO G121EAN01 panel timings according to the docs - selftests: mirror_gre_changes: Tighten up the TTL test match - net: phy: fix IRQ-based wake-on-lan over hibernate / power off - xfrm: add forgotten nla_policy for XFRMA_MTIMER_THRESH - xfrm: add NULL check in xfrm_update_ae_params - ip_vti: fix potential slab-use-after-free in decode_session6 - ip6_vti: fix slab-use-after-free in decode_session6 - xfrm: fix slab-use-after-free in decode_session6 - net: xfrm: Amend XFRMA_SEC_CTX nla_policy structure - net: af_key: fix sadb_x_filter validation - net: xfrm: Fix xfrm_address_filter OOB read - i2c: designware: Handle invalid SMBus block data response length value - i2c: designware: Correct length byte validation logic - btrfs: fix BUG_ON condition in btrfs_cancel_balance - tty: serial: fsl_lpuart: Clear the error flags by writing 1 for lpuart32 platforms - tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux - powerpc/rtas_flash: allow user copy to flash block cache objects - fbdev: mmp: fix value check in mmphw_probe - i2c: hisi: Only handle the interrupt of the driver"s transfer - i2c: bcm-iproc: Fix bcm_iproc_i2c_isr deadlock issue - cifs: fix potential oops in cifs_oplock_break - vduse: Use proper spinlock for IRQ injection - virtio-mmio: don"t break lifecycle of vm_dev - btrfs: move out now unused BG from the reclaim list - ARM: dts: nxp/imx6sll: fix wrong property name in usbphy node - ARM: dts: imx6sll: fixup of operating points - mmc: sunxi: fix deferred probing - mmc: bcm2835: fix deferred probing - USB: dwc3: fix use-after-free on core driver unbind - USB: dwc3: qcom: fix NULL-deref on suspend - tty: serial: fsl_lpuart: reduce RX watermark to 0 on LS1028A - tty: serial: fsl_lpuart: make rx_watermark configurable for different platforms - tty: serial: fsl_lpuart: Add i.MXRT1050 support - usb: dwc3: gadget: Improve dwc3_gadget_suspend and dwc3_gadget_resume - USB: dwc3: gadget: drop dead hibernation code - usb: dwc3: Fix typos in gadget.c - usb: dwc3: Remove DWC3 locking during gadget suspend/resume - usb: dwc3: gadget: Synchronize IRQ between soft connect/disconnect - drm/amd/display: fix access hdcp_workqueue assert - drm/amd/display: phase3 mst hdcp for multiple displays - drm/amd/display: save restore hdcp state when display is unplugged from mst hub - ARM: dts: aspeed: asrock: Correct firmware flash SPI clocks - igc: read before write to SRRCTL register - iio: addac: stx104: Fix race condition when converting analog-to-digital - iio: addac: stx104: Fix race condition for stx104_write_raw - iio: stx104: Move to addac subdirectory - iio: adc: stx104: Implement and utilize register structures - iio: adc: stx104: Utilize iomap interface - iio: add addac subdirectory - ring-buffer: Do not swap cpu_buffer during resize process - powerpc/kasan: Disable KCOV in KASAN code - ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync - ALSA: hda/realtek: Add quirks for Unis H3C Desktop B760 amp; Q760 - fs/ntfs3: Mark ntfs dirty when on-disk struct is corrupted - fs: ntfs3: Fix possible null-pointer dereferences in mi_read - fs/ntfs3: Enhance sanity check while generating attr_list - drm/amdgpu: Fix potential fence use-after-free v2 - Bluetooth: btusb: Add MT7922 bluetooth ID for the Asus Ally - Bluetooth: L2CAP: Fix use-after-free - watchdog: sp5100_tco: support Hygon FCH/SCH - firewire: net: fix use after free in fwnet_finish_incoming_packet - pcmcia: rsrc_nonstatic: Fix memory leak in nonstatic_release_resource_db - gfs2: Fix possible data races in gfs2_show_options - usb: chipidea: imx: add missing USB PHY DPDM wakeup setting - usb: chipidea: imx: don"t request QoS for imx8ulp - thunderbolt: Read retimer NVM authentication status prior tb_retimer_set_inbound_sbtx - media: platform: mediatek: vpu: fix NULL ptr dereference - usb: gadget: u_serial: Avoid spinlock recursion in __gs_console_push - media: v4l2-mem2mem: add lock to protect parameter num_rdy - smb: client: fix warning in cifs_smb3_do_mount - ovl: check type and offset of struct vfsmount in ovl_entry - RDMA/mlx5: Return the firmware result upon destroying QP/RQ - HID: add quirk for 03f0:464a HP Elite Presenter Mouse - drm/amdgpu: install stub fence into potential unused fence pointers - HID: logitech-hidpp: Add USB and Bluetooth IDs for the Logitech G915 TKL Keyboard - dma-remap: use kvmalloc_array/kvfree for larger dma memory remap - ASoC: SOF: Intel: fix SoundWire/HDaudio mutual exclusion - iopoll: Call cpu_relax in busy loops - ARM: dts: imx6dl: prtrvt, prtvt7, prti6q, prtwd2: fix USB related warnings - PCI: tegra194: Fix possible array out of bounds access - net: tls: avoid discarding data on record close - net/tls: Multi-threaded calls to TX tls_dev_del - net/tls: Perform immediate device ctx cleanup when possible - macsec: use DEV_STATS_INC - macsec: Fix traffic counters/statistics - selftests: forwarding: tc_actions: Use ncat instead of nc - selftests: forwarding: tc_actions: cleanup temporary files when test is aborted - mmc: sdhci-f-sdh30: Replace with sdhci_pltfm - LTS version: v5.15.127 - timers/nohz: Last resort update jiffies on nohz_full IRQ entry - timers/nohz: Switch to ONESHOT_STOPPED in the low-res handler when the tick is stopped - tick: Detect and fix jiffies update stall - sch_netem: fix issues in netem_change vs get_dist_table - alpha: remove __init annotation from exported page_is_ram - scsi: qedf: Fix firmware halt over suspend and resume - scsi: qedi: Fix firmware halt over suspend and resume - scsi: fnic: Replace return codes in fnic_clean_pending_aborts - scsi: core: Fix possible memory leak if device_add fails - scsi: snic: Fix possible memory leak if device_add fails - scsi: 53c700: Check that command slot is not NULL - scsi: storvsc: Fix handling of virtual Fibre Channel timeouts - scsi: core: Fix legacy /proc parsing buffer overflow - netfilter: nf_tables: report use refcount overflow - nvme-rdma: fix potential unbalanced freeze amp; unfreeze - nvme-tcp: fix potential unbalanced freeze amp; unfreeze - btrfs: set cache_block_group_error if we find an error - btrfs: reject invalid reloc tree root keys with stack dump - btrfs: exit gracefully if reloc roots don"t match - btrfs: don"t stop integrity writeback too early - ibmvnic: Handle DMA unmapping of login buffs in release functions - ibmvnic: Unmap DMA login rsp buffer on send login fail - ibmvnic: Enforce stronger sanity checks on login response - net/mlx5: Skip clock update work when device is in error state - net/mlx5: Allow 0 for total host VFs - dmaengine: mcf-edma: Fix a potential un-allocated memory access - nexthop: Fix infinite nexthop bucket dump when using maximum nexthop ID - nexthop: Make nexthop bucket dump more efficient - nexthop: Fix infinite nexthop dump when using maximum nexthop ID - net: hns3: add wait until mac link down - net: hns3: refactor hclge_mac_link_status_wait for interface reuse - net: phy: at803x: remove set/get wol callbacks for AR8032 - RDMA/umem: Set iova in ODP flow - wifi: cfg80211: fix sband iftype data lookup for AP_VLAN - drm/rockchip: Don"t spam logs in atomic check - IB/hfi1: Fix possible panic during hotplug remove - iavf: fix potential races for FDIR filters - drivers: net: prevent tun_build_skb to exceed the packet size limit - dccp: fix data-race around dp-gt;dccps_mss_cache - bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves - xsk: fix refcount underflow in error path - tunnels: fix kasan splat when generating ipv4 pmtu error - net/packet: annotate data-races around tp-gt;status - mISDN: Update parameter type of dsp_cmx_send - bpf, sockmap: Fix bug that strp_done cannot be called - bpf, sockmap: Fix map type error in sock_map_del_link - net: core: remove unnecessary frame_sz check in bpf_xdp_adjust_tail - selftests: forwarding: tc_flower: Relax success criterion - selftests: forwarding: Switch off timeout - selftests: forwarding: Skip test when no interfaces are specified - selftests: forwarding: ethtool_extended_state: Skip when using veth pairs - selftests: forwarding: ethtool: Skip when using veth pairs - selftests: forwarding: Add a helper to skip test when using veth pairs - selftests/rseq: Fix build with undefined __weak - drm/nouveau/disp: Revert a NULL check inside nouveau_connector_get_modes - x86: Move gds_ucode_mitigated declaration to header - x86/speculation: Add cpu_show_gds prototype - x86/mm: Fix VDSO and VVAR placement on 5-level paging machines - x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 - x86/srso: Fix build breakage with the LLVM linker - usb: typec: tcpm: Fix response to vsafe0V event - usb: common: usb-conn-gpio: Prevent bailing out if initial role is none - usb: dwc3: Properly handle processing of pending events - usb-storage: alauda: Fix uninit-value in alauda_check_media - misc: rtsx: judge ASPM Mode to set PETXCFG Reg - binder: fix memory leak in binder_init - iio: adc: ina2xx: avoid NULL pointer dereference on OF device match - iio: cros_ec: Fix the allocation size for cros_ec_command - io_uring: correct check for O_TMPFILE - selftests/bpf: Fix sk_assign on s390x - selftests/bpf: Workaround verification failure for fexit_bpf2bpf/func_replace_return_code - selftests/bpf: make test_align selftest more robust - bpf: aggressively forget precise markings during state checkpointing - bpf: stop setting precise in current state - bpf: allow precision tracking for programs with subprogs - nilfs2: fix use-after-free of nilfs_root in dirtying inodes via iput - radix tree test suite: fix incorrect allocation size for pthreads - hwmon: Enable PMBUS_SKIP_STATUS_CHECK for pfe1100 - drm/amd/display: check attr flag before set cursor degamma on DCN3+ - drm/shmem-helper: Reset vma-gt;vm_ops before calling dma_buf_mmap - drm/nouveau/gr: enable memory loads on helper invocation on all channels - riscv,mmio: Fix readX-to-delay ordering - dmaengine: pl330: Return DMA_PAUSED when transaction is paused - ipv6: adjust ndisc_is_useropt to also return true for PIO - mmc: moxart: read scr register without changing byte order - wireguard: allowedips: expand maximum node depth - ksmbd: fix wrong next length validation of ea buffer in smb2_set_ea - ksmbd: validate command request size - LTS version v5.15.126 - PM: sleep: wakeirq: fix wake irq arming - PM / wakeirq: support enabling wake-up irq after runtime_suspend called - soundwire: fix enumeration completion - soundwire: bus: pm_runtime_request_resume on peripheral attachment - selftests/rseq: Play nice with binaries statically linked against glibc 2.35+ - selftests/rseq: check if libc rseq support is registered - drm/imx/ipuv3: Fix front porch adjustment upon hactive aligning - powerpc/mm/altmap: Fix altmap boundary check - mtd: rawnand: fsl_upm: Fix an off-by one test in fun_exec_op - mtd: rawnand: rockchip: Align hwecc vs. raw page helper layouts - mtd: rawnand: rockchip: fix oobfree offset and description - mtd: rawnand: omap_elm: Fix incorrect type in assignment - ext2: Drop fragment support - fs: Protect reconfiguration of sb read-write from racing writes - net: usbnet: Fix WARNING in usbnet_start_xmit/usb_submit_urb - Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb - fs/sysv: Null check to prevent null-ptr-deref bug - fs/ntfs3: Use __GFP_NOWARN allocation at ntfs_load_attr_list - file: reinstate f_pos locking optimization for regular files - bpf, cpumap: Make sure kthread is running before map update returns - drm/ttm: check null pointer before accessing when swapping - open: make RESOLVE_CACHED correctly test for O_TMPFILE - bpf: Disable preemption in bpf_event_output - rbd: prevent busy loop when requesting exclusive lock - wifi: mt76: mt7615: do not advertise 5 GHz on first phy of MT7615D - net: tap_open: set sk_uid from current_fsuid - net: tun_chr_open: set sk_uid from current_fsuid - arm64: dts: stratix10: fix incorrect I2C property for SCL signal - mtd: rawnand: meson: fix OOB available bytes for ECC - mtd: spinand: toshiba: Fix ecc_get_status - exfat: release s_lock before calling dir_emit - exfat: use kvmalloc_array/kvfree instead of kmalloc_array/kfree - firmware: arm_scmi: Drop OF node reference in the transport channel setup - ceph: defer stopping mdsc delayed_work - USB: zaurus: Add ID for A-300/B-500/C-700 - libceph: fix potential hang in ceph_osdc_notify - scsi: storvsc: Limit max_sectors for virtual Fibre Channel devices - scsi: zfcp: Defer fc_rport blocking until after ADISC response - tcp_metrics: fix data-race in tcpm_suck_dst vs fastopen - tcp_metrics: annotate data-races around tm-gt;tcpm_net - tcp_metrics: annotate data-races around tm-gt;tcpm_vals[] - tcp_metrics: annotate data-races around tm-gt;tcpm_lock - tcp_metrics: annotate data-races around tm-gt;tcpm_stamp - tcp_metrics: fix addr_same helper - prestera: fix fallback to previous version on same major version - net/mlx5: fs_core: Skip the FTs in the same FS_TYPE_PRIO_CHAINS fs_prio - net/mlx5: fs_core: Make find_closest_ft more generic - vxlan: Fix nexthop hash size - ip6mr: Fix skb_under_panic in ip6mr_cache_report - s390/qeth: Don"t call dev_close/dev_open - net: dcb: choose correct policy to parse DCB_ATTR_BCN - net: netsec: Ignore "phy-mode" on SynQuacer in DT mode - net: korina: handle clk prepare error in korina_probe - net: ll_temac: fix error checking of irq_of_parse_and_map - net: ll_temac: Switch to use dev_err_probe helper - bpf: sockmap: Remove preempt_disable in sock_map_sk_acquire - net/sched: cls_route: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_fw: No longer copy tcf_result on update to avoid use-after-free - net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free - bpf, cpumap: Handle skb as well when clean up ptr_ring - net/sched: taprio: Limit TCA_TAPRIO_ATTR_SCHED_CYCLE_TIME to INT_MAX. - net: add missing data-race annotation for sk_ll_usec - net: add missing data-race annotations around sk-gt;sk_peek_off - net: add missing READ_ONCE annotation - net: add missing READ_ONCE annotation - net: add missing READ_ONCE annotation - net: annotate data-races around sk-gt;sk_max_pacing_rate - qed: Fix scheduling in a tasklet while getting stats - mISDN: hfcpci: Fix potential deadlock on amp;hc-gt;lock - net: sched: cls_u32: Fix match key mis-addressing - perf test uprobe_from_different_cu: Skip if there is no gcc - net: dsa: fix value check in bcm_sf2_sw_probe - rtnetlink: let rtnl_bridge_setlink checks IFLA_BRIDGE_MODE length - bpf: Add length check for SK_DIAG_BPF_STORAGE_REQ_MAP_FD parsing - net/mlx5e: fix return value check in mlx5e_ipsec_remove_trailer - net/mlx5: DR, fix memory leak in mlx5dr_cmd_create_reformat_ctx - wifi: cfg80211: Fix return value in scan logic - KVM: s390: fix sthyi error handling - word-at-a-time: use the same return type for has_zero regardless of endianness - arm64: dts: imx8mn-var-som: add missing pull-up for onboard PHY reset pinmux - iommu/arm-smmu-v3: Document nesting-related errata - iommu/arm-smmu-v3: Add explicit feature for nesting - iommu/arm-smmu-v3: Document MMU-700 erratum 2812531 - iommu/arm-smmu-v3: Work around MMU-600 erratum 1076982 - net/mlx5: Free irqs only on shutdown callback - perf: Fix function pointer case - io_uring: gate iowait schedule on having pending requests - net: mana: Use the correct WQE count for ringing RQ doorbell [Orabug: 35555552] - net: mana: Batch ringing RX queue doorbell on receiving packets [Orabug: 35555552] - devlink: report devlink_port_type_warn source device [Orabug: 35727899] - scsi: mpi3mr: Update driver version to 8.5.0.0.0 [Orabug: 35729632] - scsi: mpi3mr: Enhance handling of devices removed after controller reset [Orabug: 35729632] - scsi: mpi3mr: WRITE SAME implementation [Orabug: 35729632] - scsi: mpi3mr: Add support for more than 1MB I/O [Orabug: 35729632] - scsi: mpi3mr: Update MPI Headers to version 3.00.28 [Orabug: 35729632] - scsi: mpi3mr: Invoke soft reset upon TSU or event ack time out [Orabug: 35729632] - scsi: mpi3mr: Propagate sense data for admin queue SCSI I/O [Orabug: 35729632] - scsi: mpi3mr: Fix the type used for pointers to bitmap [Orabug: 35729632] - scsi: mpi3mr: Use -ENOMEM instead of -1 in mpi3mr_expander_add [Orabug: 35729632] - scsi: mpi3mr: Use IRQ save variants of spinlock to protect chain frame allocation [Orabug: 35729632] - scsi: mpi3mr: Handle soft reset in progress fault code [Orabug: 35729632] - scsi: mpi3mr: Update copyright year [Orabug: 35729632] - scsi: mpi3mr: Fix W=1 compilation warnings [Orabug: 35729632] - scsi: mpi3mr: Update MPI Headers to revision 27 [Orabug: 35729632] - scsi: mpi3mr: Modify MUR timeout value to 120 seconds [Orabug: 35729632] - scsi: mpi3mr: Fix admin queue memory leak upon soft reset [Orabug: 35729632] - scsi: mpi3mr: Successive VD delete and add causes FW fault [Orabug: 35729632] - scsi: mpi3mr: Fix expander node leak in mpi3mr_remove [Orabug: 35729632] - scsi: mpi3mr: Fix memory leaks in mpi3mr_init_ioc [Orabug: 35729632] - scsi: mpi3mr: Fix sas_hba.phy memory leak in mpi3mr_remove [Orabug: 35729632] - scsi: mpi3mr: Fix mpi3mr_hba_port memory leak in mpi3mr_remove [Orabug: 35729632] - scsi: mpi3mr: Fix config page DMA memory leak [Orabug: 35729632] - scsi: mpi3mr: Fix throttle_groups memory leak [Orabug: 35729632] - scsi: mpi3mr: Bad drive in topology results kernel crash [Orabug: 35729632] - scsi: mpi3mr: NVMe command size greater than 8K fails [Orabug: 35729632] - scsi: mpi3mr: Return proper values for failures in firmware init path [Orabug: 35729632] - scsi: mpi3mr: Wait for diagnostic save during controller init [Orabug: 35729632] - scsi: mpi3mr: Driver unload crashes host when enhanced logging is enabled [Orabug: 35729632] - scsi: mpi3mr: ioctl timeout when disabling/enabling interrupt [Orabug: 35729632] - scsi: mpi3mr: Remove unneeded version.h include [Orabug: 35729632] - scsi: mpi3mr: Fix missing mrioc-gt;evtack_cmds initialization [Orabug: 35729632] - scsi: mpi3mr: Use number of bits to manage bitmap sizes [Orabug: 35729632] - scsi: mpi3mr: Remove unnecessary memcpy to alltgt_info-gt;dmi [Orabug: 35729632] - scsi: mpi3mr: Fix issues in mpi3mr_get_all_tgt_info [Orabug: 35729632] - scsi: mpi3mr: Fix an issue found by KASAN [Orabug: 35729632] - scsi: mpi3mr: Remove usage of dma_get_required_mask API [Orabug: 35729632] - scsi: mpi3mr: Suppress command reply debug prints [Orabug: 35729632] - scsi: mpi3mr: Select CONFIG_SCSI_SAS_ATTRS [Orabug: 35729632] - vhost-scsi: Fix alignment handling with windows [Orabug: 35769316] - selftests/bpf: fix static assert compilation issue for test_cls_*.c [Orabug: 35773339] [5.15.0-106.125.1.el9uek] - smp: Reduce NMI traffic from CSD waiters to CSD destination [Orabug: 35752500] - smp: Reduce logging due to dump_stack of CSD waiters [Orabug: 35752500] - block: Sysfs option to change ioticks granularity [Orabug: 34977356] - uek: kabi: update x86_64 kABI files for new symbols [Orabug: 35501675] - uek: kabi: update aarch64 kABI files for new symbols [Orabug: 35553840] - rpmbuild: fixed missing _kernel_cc macros to allow alternate compilers [Orabug: 35729326] - scsi: megaraid_sas: Driver version update to 07.725.01.00-rc1 [Orabug: 35729651] - scsi: megaraid_sas: Add crash dump mode capability bit in MFI capabilities [Orabug: 35729651] - scsi: megaraid_sas: Add flexible array member for SGLs [Orabug: 35729651] - scsi: megaraid_sas: Fix some spelling mistakes in comment [Orabug: 35729651] - scsi: megaraid_sas: Move megasas_dbg_lvl init to megasas_init [Orabug: 35729651] - scsi: megaraid_sas: Remove unnecessary memset [Orabug: 35729651] - scsi: megaraid_sas: Simplify megasas_update_device_list [Orabug: 35729651] - scsi: megaraid_sas: Correct an error message [Orabug: 35729651] - scsi: megaraid_sas: Correct value passed to scsi_device_lookup [Orabug: 35729651] - scsi: megaraid: Convert sysfs snprintf to sysfs_emit [Orabug: 35729651] - scsi: megaraid_sas: Use struct_size in code related to struct MR_PD_CFG_SEQ_NUM_SYNC [Orabug: 35729651] - scsi: megaraid_sas: Use struct_size in code related to struct MR_FW_RAID_MAP [Orabug: 35729651] - scsi: megaraid_sas: Replace one-element array with flexible-array member in MR_PD_CFG_SEQ_NUM_SYNC [Orabug: 35729651] - scsi: megaraid_sas: Replace one-element array with flexible-array member in MR_DRV_RAID_MAP [Orabug: 35729651] - scsi: megaraid_sas: Replace one-element array with flexible-array member in MR_FW_RAID_MAP_DYNAMIC [Orabug: 35729651] - scsi: megaraid_sas: Replace one-element array with flexible-array member in MR_FW_RAID_MAP [Orabug: 35729651] - scsi: megaraid: Remove redundant assignment to variable mfiStatus [Orabug: 35729651] - scsi: megaraid_sas: Remove unnecessary kfree [Orabug: 35729651] - scsi: megaraid_sas: Remove redundant variable cmd_type [Orabug: 35729651] - scsi: megaraid: Remove the static variable initialisation [Orabug: 35729651] - scsi: megaraid_sas: Clean up some inconsistent indenting [Orabug: 35729651] - scsi: megaraid_sas: Remove redundant memset statement [Orabug: 35729651] - scsi: megaraid_sas: Remove unnecessary memset [Orabug: 35729651] - scsi: megasas: Clean up some inconsistent indenting [Orabug: 35729651] - scsi: megasas: Stop using the SCSI pointer [Orabug: 35729651] - scsi: megaraid_sas: Use irq_set_affinity_and_hint [Orabug: 35729651] - scsi: megaraid_sas: Driver version update to 07.719.03.00-rc1 [Orabug: 35729651] - scsi: megaraid_sas: Add helper functions for irq_context [Orabug: 35729651] - scsi: mpt3sas: Fix an issue when driver is being removed [Orabug: 35729658] - scsi: mpt3sas: Remove HBA BIOS version in the kernel log [Orabug: 35729658] - scsi: mpt3sas: Drop redundant pci_enable_pcie_error_reporting [Orabug: 35729658] - scsi: mpt3sas: Demote log level for trace buffer allocation to info [Orabug: 35729658] - scsi: mpt3sas: Update driver version to 43.100.00.00 [Orabug: 35729658] - scsi: mpt3sas: Increase cmd_per_lun to 128 [Orabug: 35729658] - scsi: mpt3sas: Fix trace buffer registration failed [Orabug: 35729658] - scsi: mpt3sas: Disable MPI2_FUNCTION_FW_DOWNLOAD for ATTO devices [Orabug: 35729658] - scsi: mpt3sas: Add support for ATTO ExpressSAS H12xx GT devices [Orabug: 35729658] - scsi: mpt3sas: Remove flush_scheduled_work call [Orabug: 35729658] - scsi: mpt3sas: Fix whitespace and spelling mistake [Orabug: 35729658] - scsi: mpt3sas: Fix typo in comment [Orabug: 35729658] - scsi: mpt3sas: Fix junk chars displayed while printing ChipName [Orabug: 35729658] - scsi: mpt3sas: Use cached ATA Information VPD page [Orabug: 35729658] - scsi: mpt3sas: Fix adapter replyPostRegisterIndex declaration [Orabug: 35729658] - scsi: mpt3sas: Fix event callback log_code value handling [Orabug: 35729658] - scsi: mpt3sas: Fix _ctl_set_task_mid TaskMID check [Orabug: 35729658] - scsi: mpt3sas: Fix mpt3sas_check_same_4gb_region kdoc comment [Orabug: 35729658] - scsi: mpt3sas: Convert to flexible arrays [Orabug: 35729658] - scsi: mpt3sas: Update persistent trigger pages from sysfs interface [Orabug: 35729658] - KVM: selftests: vmx_pmu_msrs_test: Drop tests mangling guest visible CPUIDs [Orabug: 35730650] - rds: Remove gratuitous include of time.h from rds.h [Orabug: 35742760] - uek-rpm: Removing pre scriptlet to not allow firmware downgrade [Orabug: 35756462]

Platform:
Oracle Linux 9
Product:
kernel-uek
bpftool
Reference:
ELSA-2023-12858
CVE-2023-20588
CVE-2023-22024
CVE-2023-42753
CVE    3
CVE-2023-22024
CVE-2023-20588
CVE-2023-42753

© SecPod Technologies