All of lore.kernel.org
 help / color / mirror / Atom feed
From: Ulrich Hecht <uli@fpond.eu>
To: "cip-dev@lists.cip-project.org" <cip-dev@lists.cip-project.org>,
	"pavel@nabladev.com" <pavel@nabladev.com>,
	"nobuhiro.iwamatsu.x90@mail.toshiba"
	<nobuhiro.iwamatsu.x90@mail.toshiba>
Subject: Request for review for 4.19-st20, 4.19-cip136
Date: Wed, 2 Sep 2026 20:32:51 +0200 (CEST)	[thread overview]
Message-ID: <588742173.259606.1788373971804@webmail.strato.de> (raw)

Hi!

Here are the "manual" backports for the upcoming 4.19 kernel release. There's a total of 68; 40 by me, and 28 by LLM. (The latter are labeled with "Assisted-by: SLTR:qwen-3.8".)

As always they can be found in https://git.kernel.org/pub/scm/linux/kernel/git/cip/linux-cip.git/log/?h=linux-4.19.y-st-rc

27bcd94232ddc ipv6: mcast: Fix potential UAF in MLD delayed work
d03436150e4a9 drm/edid: fix OOB read in drm_parse_tiled_block()
4227b25379d71 drm/displayid: fix Tiled Display Topology ID size
43d3d995bf595 f2fs: validate orphan inode entry count
5021916ddfd36 ALSA: seq: close a re-opened queue timer in the destructor
6fe1ea5d01613 hwmon: (adt7470) Fix PWM auto temp state array and bounds check
c32d12e231163 writeback: fix race between cgroup_writeback_umount() and inode_switch_wbs()
725e862fe8b08 ieee802154: admin-gate legacy LLSEC dump operations
033fdbe334d3c xen/gntdev: fix error handling in ioctl
fdc9c5a408cfc rxrpc: Fix leak of released call in recvmsg(MSG_PEEK)
3ecdb8f5381c2 mac802154: llsec: reject frames shorter than the authentication tag
e05a9dca311e3 vmxnet3: fix BUG_ON in vmxnet3_get_hdr_len() for Geneve packets
ae8427e05bc1a firewire: net: Fix fragmented datagram reassembly
837b739d485a8 serial: 8250_mid: Disable DMA for selected platforms
c9534ae294af2 bonding: 3ad: fix mux port state on oper down
0ee0719ebd182 crypto: af_alg - Remove zero-copy support from skcipher and aead
8d4d8938c938b apparmor: mediate the implicit connect of TCP fast open sendmsg
d1ae7480a5a50 netfilter: ipset: fix refcount race between list:set GC and swap
afe5bdeae11e4 btrfs: do not trim a device which is not writeable
c819b97d60589 xfs: use null daddr for unset first bad log block
82f3412405d88 HID: appleir: fix UAF on pending key_up_timer in remove()
f6b1dda2a3508 smb: client: Fix next buffer leak in receive_encrypted_standard()
598fd8e4db9ac iio: common: st_sensors: honour channel endianness in read_axis_data
a43c58057c539 netfilter: nf_nat_sip: reload possible stale data pointer
19f32fd717473 ipvs: ensure inner headers in ICMP errors are in headroom
a777755df8ee5 netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop
de57725fa7d0d rtc: ds1307: Fix off-by-one issue with wday for rx8130
27f698f798451 smb/client: preserve errors from smb2_set_sparse()
1afab31384e2e netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer()
80f8dca831e42 tipc: prevent snt_unacked underflow on CONN_ACK
21754c9585fc3 tipc: require net admin for TIPCv2 netlink mutators
3face51d6506e net: fib_rules: Don't dump dying fib_rule in fib_rules_dump().
be43ba6f489b6 ocfs2: rebase copied fsdlm LVB pointers in locking_state
d145312da325f net/sched: cls_bpf: prevent unbounded recursion in offload rollback
21aebfc636b9c crypto: ecc - Fix carry overflow in vli multiplication
ea5470a093f6d Bluetooth: fix UAF in bt_accept_dequeue()
5fb906176753b net: ipv4: bound TCP reordering sysctl writes and MTU probe sizes
b06d8e05be8d6 drm/dp/mst: fix buffer overflows in sideband chunk accumulation
2ee87cc535310 net: ipip: require CAP_NET_ADMIN in the device netns for changelink
798716bc98db1 rxrpc: Fix notification vs call-release vs recvmsg
483240e3761eb libceph: fix multiple unsafe decodes in decode_locker()
4338c41c423b1 scsi: scsi_debug: Negate wrapped memcmp() result
e370b6e8d1a59 vhost: reset the vring metadata cache on vring reconfiguration
7d8fc6d0208be futex: Prevent robust futex exit race some more
3d3bcb5dd85d1 Input: evdev - fix information leak in evdev_pass_values()
a3e7176697ddd mm/huge_memory: unlock i_mmap_rwsem before releasing after-split folios
96c6f93b3ff66 sctp: prevent peer transport count overflow
39cf294824a31 net: bridge: stop fast-leave after deleting a port group
f0b272d10c9df mm/percpu-km: fix bitmap overflow and accounting in pcpu_create_chunk()
caba2e7b56939 ipv6: fib6: fix NULL deref in fib6_walk_continue() on multi-batch dump
5298659ef682c openvswitch: fix GSO userspace truncation underflow
031a2f99d475b vxlan: require CAP_NET_ADMIN in the device netns for changelink
e7383f6dbb6b9 can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF
bd5b04d67545f tipc: fix u16 MTU truncation in media and bearer MTU validation
fd119cc5d1ce0 net/sched: act_tunnel_key: Defer dst_release to RCU callback
231854d20f22b KVM: nVMX: Hide shadow VMCS right after VMCLEAR
c4bc9e59cd758 perf/x86/amd/core: Always use the NMI latency mitigation
a0aef239f4722 i2c: core: fix adapter registration race
6cff48ecf1d69 net: ip_gre: require CAP_NET_ADMIN in the device netns for changelink
c7b13e80811aa nfsd: release layout stid on setlease failure
d75140d1212a2 i2c: imx: fix locked bus on SMBus block-read of 0 (atomic)
e33cc57dadde8 selinux: avoid sk_socket dereference in selinux_sctp_bind_connect()
b8c1bbd016710 net/openvswitch: check Ethernet header length in key_extract()
f965a98a469c3 net: ipv6: fix dif and sdif mismatch in raw6_icmp_error
7bdb312c113d2 smb: client: restrict implied bcc[0] exemption to responses without data area
8f223fbe6b2d4 batman-adv: retrieve ethhdr after potential skb realloc on RX
1c72d53630aa3 NFS: Pin the 'struct nfs_server' during a FREE_STATEID call
f1f7d30dcdfaa NFS: Decrement refcounts if allocating nfs_free_stateid_data fails

Thank you!

CU
Uli


             reply	other threads:[~2026-09-02 18:33 UTC|newest]

Thread overview: 10+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2026-09-02 18:32 Ulrich Hecht [this message]
2026-09-03  9:00 ` Request for review for 4.19-st20, 4.19-cip136 Pavel Machek
2026-09-03  9:18   ` Ulrich Hecht
2026-09-03 11:59 ` Pavel Machek
2026-09-10  8:09   ` [cip-dev] " Ulrich Hecht
2026-09-07 11:04 ` Pavel Machek
2026-09-10  8:09   ` [cip-dev] " Ulrich Hecht
2026-09-09 19:23 ` Pavel Machek
2026-09-10 19:32 ` Pavel Machek
2026-09-11 10:15   ` [cip-dev] " Ulrich Hecht

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=588742173.259606.1788373971804@webmail.strato.de \
    --to=uli@fpond.eu \
    --cc=cip-dev@lists.cip-project.org \
    --cc=nobuhiro.iwamatsu.x90@mail.toshiba \
    --cc=pavel@nabladev.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.