Archive-only list for patches
 help / color / mirror / Atom feed
 messages from 2026-07-21 21:35:45 to 2026-07-21 21:44:32 UTC [more...]

[PATCH 6.1 0000/1067] 6.1.178-rc1 review
 2026-07-21 15:24 UTC  (201+ messages)
` [PATCH 6.1 0653/1067] net: enetc: check the number of BDs needed for xdp_frame
` [PATCH 6.1 0655/1067] usbnet: gl620a: fix out-of-bounds read in genelink_rx_fixup()
` [PATCH 6.1 0656/1067] net: phy: sfp: free mii_bus in sfp_i2c_mdiobus_destroy
` [PATCH 6.1 0657/1067] net: gianfar: dispose irq mappings on probe failure and device removal
` [PATCH 6.1 0658/1067] net/sched: sch_teql: Introduce slaves_lock to avoid race condition and UAF
` [PATCH 6.1 0659/1067] bridge: stp: Fix a potential use-after-free when deleting a bridge
` [PATCH 6.1 0660/1067] tracing/events: Fix to check the simple_tsk_fn creation
` [PATCH 6.1 0661/1067] tracing: eprobe: read the complete FILTER_PTR_STRING pointer
` [PATCH 6.1 0662/1067] irqchip/gic-v3-its: Fix OF node reference leak
` [PATCH 6.1 0672/1067] afs: Fix callback service message parsers to pass through -EAGAIN
` [PATCH 6.1 0673/1067] afs: Fix vllist leak
` [PATCH 6.1 0674/1067] afs: Fix the volume AFS_VOLUME_RM_TREE is set on
` [PATCH 6.1 0675/1067] afs: Fix unchecked-length string display in debug statement
` [PATCH 6.1 0676/1067] ata: sata_gemini: unwind clocks on IDE pinctrl errors
` [PATCH 6.1 0677/1067] HID: picolcd: prevent NULL pointer dereference in picolcd_send_and_wait()
` [PATCH 6.1 0678/1067] HID: core: Fix OOB read in hid_get_report for numbered reports
` [PATCH 6.1 0679/1067] arm64/mm: convert ptep_clear() to ptep_get_and_clear()
` [PATCH 6.1 0680/1067] arm64/mm: Optimize TLB flush in unmap_hotplug_[pmd|pud]_range()
` [PATCH 6.1 0681/1067] net: usb: net1080: validate packet_len before pad-byte access in rx_fixup
` [PATCH 6.1 0682/1067] gue: validate REMCSUM private option length
` [PATCH 6.1 0683/1067] netfilter: xt_u32: reject invalid shift counts
` [PATCH 6.1 0684/1067] netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt()
` [PATCH 6.1 0685/1067] netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop
` [PATCH 6.1 0686/1067] netfilter: xt_connmark: reject invalid shift parameters
` [PATCH 6.1 0687/1067] net/mlx5e: Fix HV VHCA stats zero-sized buffer allocation
` [PATCH 6.1 0688/1067] net/mlx5e: Fix HV VHCA stats agent registration race
` [PATCH 6.1 0689/1067] qede: fix off-by-one in BD ring consumption on build_skb failure
` [PATCH 6.1 0690/1067] net: qualcomm: rmnet: add tx packets aggregation
` [PATCH 6.1 0691/1067] net: qualcomm: rmnet: validate MAP frame length before ingress parsing
` [PATCH 6.1 0692/1067] net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket
` [PATCH 6.1 0693/1067] amt: fix size calculation in amt_get_size()
` [PATCH 6.1 0694/1067] Bluetooth: MGMT: Fix adv monitor add failure cleanup
` [PATCH 6.1 0695/1067] Bluetooth: ISO: exclude RFU bits from ISO_SDU_Length
` [PATCH 6.1 0696/1067] Bluetooth: bpa10x: avoid OOB read of revision string in bpa10x_setup()
` [PATCH 6.1 0697/1067] ring-buffer: Fix event length with forced 8-byte alignment
` [PATCH 6.1 0698/1067] net: usb: lan78xx: move functions to avoid forward definitions
` [PATCH 6.1 0699/1067] net: usb: lan78xx: disable VLAN filter in promiscuous mode
` [PATCH 6.1 0700/1067] net/sched: cake: reject overhead values that underflow length
` [PATCH 6.1 0701/1067] octeontx2-pf: check DMAC extraction support before filtering
` [PATCH 6.1 0702/1067] ipv6: mcast: Replace locking comments with lockdep annotations
` [PATCH 6.1 0703/1067] ipv6: mcast: Fix potential UAF in MLD delayed work
` [PATCH 6.1 0704/1067] ipvs: pass parsed transport offset to state handlers
` [PATCH 6.1 0705/1067] ipvs: use parsed transport offset in TCP state lookup
` [PATCH 6.1 0706/1067] ipvs: fix PMTU for GUE/GRE tunnel ICMP errors
` [PATCH 6.1 0707/1067] ipvs: ensure inner headers in ICMP errors are in headroom
` [PATCH 6.1 0708/1067] cifs: validate DFS referral string offsets
` [PATCH 6.1 0709/1067] dm era: fix NULL pointer dereference in metadata_open()
` [PATCH 6.1 0710/1067] regulator: core: Make regulator_lock_two() logic easier to follow
` [PATCH 6.1 0711/1067] regulator: core: regulator_lock_two() should test for EDEADLK not EDEADLOCK
` [PATCH 6.1 0712/1067] net/mlx5: Fix L3 tunnel entropy refcount leak
` [PATCH 6.1 0713/1067] octeontx2-af: fix VF bringup affecting PF promiscuous state
` [PATCH 6.1 0714/1067] smb: client: fix overflow in passthrough ioctl bounds check
` [PATCH 6.1 0715/1067] mlxsw: fix refcount leak in mlxsw_sp_vrs_lpm_tree_replace()
` [PATCH 6.1 0716/1067] vduse: Fix race in vduse_dev_msg_sync and vduse_dev_read_iter
` [PATCH 6.1 0717/1067] ASoC: SOF: ipc3-control: Use overflow checks in control_update size calc
` [PATCH 6.1 0718/1067] ASoC: SOF: ipc3-control: Fix TOCTOU in bytes_put and bytes_get
` [PATCH 6.1 0719/1067] net: qrtr: fix 32-bit integer overflow in qrtr_endpoint_post()
` [PATCH 6.1 0720/1067] net: atm: reject out-of-range traffic classes in QoS validation
` [PATCH 6.1 0721/1067] net: ife: require ETH_HLEN to be pullable in ife_decode()
` [PATCH 6.1 0722/1067] arm64: fpsimd: Fix type mismatch in sve_{save,load}_state()
` [PATCH 6.1 0723/1067] arm64: dts: qcom: sdm630: describe adsp_mem region properly
` [PATCH 6.1 0724/1067] KVM: s390: pci: Fix GISC refcount leak on AIF enable failure
` [PATCH 6.1 0725/1067] KVM: arm64: vgic: Check the interrupt is still ours before migrating it
` [PATCH 6.1 0726/1067] KVM: s390: pci: Fix handling of AIF enable without AISB
` [PATCH 6.1 0727/1067] KVM: x86: Ignore pending PV EOI if the vCPU has since disabled PV EOIs
` [PATCH 6.1 0728/1067] fbdev: metronomefb: fix potential memory leak in metronomefb_probe()
` [PATCH 6.1 0729/1067] fbdev: broadsheetfb: fix potential memory leak in broadsheetfb_probe()
` [PATCH 6.1 0730/1067] fbdev: hecubafb: fix potential memory leak in hecubafb_probe()
` [PATCH 6.1 0731/1067] fbdev: sm712: Fix operator precedence in big_swap macro
` [PATCH 6.1 0732/1067] fbdev: radeon: fix potential memory leak in radeonfb_pci_register()
` [PATCH 6.1 0733/1067] fbdev: i740fb: fix potential memory leak in i740fb_probe()
` [PATCH 6.1 0734/1067] fbdev: s3fb: fix potential memory leak in s3_pci_probe()
` [PATCH 6.1 0735/1067] fbdev: uvesafb: fix potential memory leak in uvesafb_probe()
` [PATCH 6.1 0736/1067] fbdev: tdfxfb: fix potential memory leak in tdfxfb_probe()
` [PATCH 6.1 0737/1067] fbdev: carminefb: fix potential memory leak in alloc_carmine_fb()
` [PATCH 6.1 0738/1067] fbdev: nvidia: fix potential memory leak in nvidiafb_probe()
` [PATCH 6.1 0739/1067] fbdev: tridentfb: fix potential memory leak in trident_pci_probe()
` [PATCH 6.1 0740/1067] ASoC: SOF: ipc3-control: Validate size in snd_sof_update_control
` [PATCH 6.1 0741/1067] ASoC: qcom: q6apm: fix NULL pointer dereference in graph_callback
` [PATCH 6.1 0742/1067] netfilter: nf_conntrack_irc: fix parse_dcc() off-by-one OOB read
` [PATCH 6.1 0743/1067] netfilter: nfnl_cthelper: apply per-class values when updating policies
` [PATCH 6.1 0744/1067] netfilter: xt_cluster: reject template conntracks in hash match
` [PATCH 6.1 0745/1067] netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst
` [PATCH 6.1 0746/1067] netfilter: nf_nat_sip: reload possible stale data pointer
` [PATCH 6.1 0747/1067] netfilter: nf_conntrack_reasm: guard mac_header adjustment after IPv6 defrag
` [PATCH 6.1 0748/1067] netfilter: nf_conncount: fix zone comparison in tuple dedup
` [PATCH 6.1 0749/1067] netfilter: ecache: fix inverted time_after() check
` [PATCH 6.1 0750/1067] netfilter: xt_nat: reject unsupported target families
` [PATCH 6.1 0751/1067] netfilter: bridge: fix stale prevhdr pointer in br_ip6_fragment()
` [PATCH 6.1 0752/1067] gpu: host1x: Fix device reference leak in host1x_device_parse_dt() error path
` [PATCH 6.1 0753/1067] soc: ti: k3-ringacc: Fix access mode for k3_ringacc_ring_pop_tail_io/proxy
` [PATCH 6.1 0754/1067] soc: fsl: qe: panic on ioremap() failure in qe_reset()
` [PATCH 6.1 0755/1067] selinux: check connect-related permissions on TCP Fast Open
` [PATCH 6.1 0756/1067] leds: uleds: Fix potential buffer overread
` [PATCH 6.1 0757/1067] mfd: sm501: Fix reference leak on failed device registration
` [PATCH 6.1 0758/1067] tools/power/x86/intel-speed-select: Harden daemon pidfile open
` [PATCH 6.1 0759/1067] x86/boot: Validate console=uart8250 baud rate to fix early boot hang
` [PATCH 6.1 0760/1067] x86/boot: Reject too long acpi_rsdp= values
` [PATCH 6.1 0761/1067] perf/x86/amd/lbr: Fix kernel address leakage
` [PATCH 6.1 0762/1067] batman-adv: gw: acquire ethernet header only after skb realloc
` [PATCH 6.1 0763/1067] batman-adv: access unicast_ttvn skb->data "
` [PATCH 6.1 0764/1067] batman-adv: dat: acquire ARP hw source "
` [PATCH 6.1 0765/1067] batman-adv: bla: reacquire gw address "
` [PATCH 6.1 0766/1067] batman-adv: dat: ensure accessible eth_hdr proto field
` [PATCH 6.1 0767/1067] batman-adv: dat: fix tie-break for candidate selection
` [PATCH 6.1 0768/1067] batman-adv: tt: avoid request storms during pending request
` [PATCH 6.1 0769/1067] batman-adv: fix VLAN priority offset
` [PATCH 6.1 0770/1067] batman-adv: frag: free unfragmentable packet
` [PATCH 6.1 0771/1067] batman-adv: frag: fix primary_if leak on failed linearization
` [PATCH 6.1 0772/1067] batman-adv: tt: prevent TVLV OOB check overflow
` [PATCH 6.1 0773/1067] mfd: tps6586x: Fix OF node refcount
` [PATCH 6.1 0774/1067] Bluetooth: SCO: fix sleeping under spinlock in sco_conn_ready
` [PATCH 6.1 0775/1067] Bluetooth: SCO: hold sk properly "
` [PATCH 6.1 0776/1067] jbd2: fix integer underflow in jbd2_journal_initialize_fast_commit()
` [PATCH 6.1 0777/1067] nvdimm/btt: Free arenas on btt_init() error paths
` [PATCH 6.1 0778/1067] nvdimm/btt: Free arena sub-allocations on discover_arenas() error path
` [PATCH 6.1 0779/1067] lockd: Plug nlm_file leak when nlm_do_fopen() fails
` [PATCH 6.1 0780/1067] lockd: Plug nlm_file refcount leak on cached nlm_do_fopen() failure
` [PATCH 6.1 0781/1067] MIPS: ip22-gio: fix gio device memory leak
` [PATCH 6.1 0782/1067] MIPS: ip22-gio: fix kfree() of static object
` [PATCH 6.1 0783/1067] MIPS: ip22-gio: fix device reference leak in probe
` [PATCH 6.1 0784/1067] MIPS: DEC: Ensure 32-bit stack location for o32 prom_printf()
` [PATCH 6.1 0785/1067] power: supply: cpcap-battery: Fix missing nvmem_device_put() causing reference leak
` [PATCH 6.1 0786/1067] fs/ntfs3: fix syncing wrong inode on DIRSYNC cross-directory rename
` [PATCH 6.1 0787/1067] fs/ntfs3: bound DeleteIndexEntryAllocation memmove length
` [PATCH 6.1 0788/1067] fs/ntfs3: bound copy_lcns dp->page_lcns[] index in analysis pass
` [PATCH 6.1 0789/1067] fs/ntfs3: bound attr_off in UpdateResidentValue against data_off
` [PATCH 6.1 0790/1067] fs/ntfs3: validate lcns_follow in log_replay conversion
` [PATCH 6.1 0791/1067] fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow
` [PATCH 6.1 0792/1067] fs/ntfs3: bound NTFS_DE view.data_off in UpdateRecordData{Root,Allocation}
` [PATCH 6.1 0793/1067] ntfs3: cap RESTART_TABLE free-chain walker at rt->used
` [PATCH 6.1 0794/1067] ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head
` [PATCH 6.1 0795/1067] ntfs3: fix out-of-bounds read in decompress_lznt
` [PATCH 6.1 0796/1067] power: supply: charger-manager: fix refcount leak in is_full_charged()
` [PATCH 6.1 0797/1067] mips: sched: Fix CPUMASK_OFFSTACK memory corruption
` [PATCH 6.1 0798/1067] riscv: cacheinfo: Fix node reference leak in populate_cache_leaves
` [PATCH 6.1 0799/1067] proc: only bump parent nlink when registering directories
` [PATCH 6.1 0800/1067] mtd: slram: remove failed entries from the device list
` [PATCH 6.1 0801/1067] scsi: smartpqi: Use shost_to_hba() in pqi_scan_finished()
` [PATCH 6.1 0802/1067] scsi: sas: Skip opt_sectors when DMA reports no real optimization hint
` [PATCH 6.1 0803/1067] ocfs2: use kzalloc for quota recovery bitmap allocation
` [PATCH 6.1 0804/1067] mtd: rawnand: pl353: fix probe resource allocation
` [PATCH 6.1 0805/1067] net/9p: fix infinite loop in p9_client_rpc on fatal signal
` [PATCH 6.1 0806/1067] mtd: rawnand: fix condition in nand_select_target()
` [PATCH 6.1 0807/1067] ocfs2: avoid moving extents to occupied clusters
` [PATCH 6.1 0808/1067] ocfs2: fix NULL h_transaction deref in ocfs2_assure_trans_credits
` [PATCH 6.1 0809/1067] ocfs2: add journal NULL check in ocfs2_checkpoint_inode()
` [PATCH 6.1 0810/1067] ocfs2: reject dinodes with non-canonical i_mode type
` [PATCH 6.1 0811/1067] ocfs2: reject dinodes whose i_rdev disagrees with the file type
` [PATCH 6.1 0812/1067] ocfs2: reject non-inline dinodes with i_size and zero i_clusters
` [PATCH 6.1 0813/1067] bus: mhi: ep: Protect mhi_ep_handle_syserr() in the error path
` [PATCH 6.1 0814/1067] fpga: microchip-spi: fix zero header_size OOB read in mpf_ops_parse_header()
` [PATCH 6.1 0815/1067] mtd: spi-nor: swp: Improve locking user experience
` [PATCH 6.1 0816/1067] mtd: maps: vmu-flash: fix NULL pointer dereference in initialization
` [PATCH 6.1 0817/1067] irqchip/crossbar: Use correct index in crossbar_domain_free()
` [PATCH 6.1 0818/1067] tpm: tpm_tis_spi: Use wait_woken() in wait_for_tmp_stat()
` [PATCH 6.1 0819/1067] dmaengine: tegra: Fix burst size calculation
` [PATCH 6.1 0820/1067] dmaengine: dw-edma: Add spinlock to protect DONE_INT_MASK and ABORT_INT_MASK
` [PATCH 6.1 0821/1067] smb: client: use kvzalloc() for megabyte buffer in simple fallocate
` [PATCH 6.1 0822/1067] ksmbd: fix integer overflow in set_file_allocation_info()
` [PATCH 6.1 0823/1067] hwmon: (ltc2992) add missing select REGMAP_I2C to Kconfig
` [PATCH 6.1 0824/1067] i2c: mediatek: fix WRRD for SoCs without auto_restart option
` [PATCH 6.1 0825/1067] i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()
` [PATCH 6.1 0826/1067] xen/gntdev: fix error handling in ioctl
` [PATCH 6.1 0827/1067] xfrm: use compat translator only for u64 alignment mismatch
` [PATCH 6.1 0828/1067] xfrm: xfrm_interface: require CAP_NET_ADMIN in the device netns for changelink
` [PATCH 6.1 0829/1067] tpm: fix event_size output in tpm1_binary_bios_measurements_show
` [PATCH 6.1 0830/1067] tpm: Make the TPM character devices non-seekable
` [PATCH 6.1 0831/1067] time: Fix off-by-one in compat settimeofday() usec validation
` [PATCH 6.1 0832/1067] spi: uniphier: Fix completion initialization order before devm_request_irq()
` [PATCH 6.1 0833/1067] sctp: validate STALE_COOKIE cause length before reading staleness
` [PATCH 6.1 0834/1067] nvmet-rdma: handle inline data with a nonzero offset
` [PATCH 6.1 0835/1067] can: esd_usb: kill anchored URBs before freeing netdevs
` [PATCH 6.1 0836/1067] can: isotp: use unconditional synchronize_rcu() in isotp_release()
` [PATCH 6.1 0837/1067] can: bcm: defer rx_op deallocation to workqueue to fix thrtimer UAF
` [PATCH 6.1 0839/1067] can: bcm: add missing rcu list annotations and operations
` [PATCH 6.1 0840/1067] bpf: Add missing access_ok call to copy_user_syms
` [PATCH 6.1 0841/1067] net: sparx5: unregister blocking notifier on init failure
` [PATCH 6.1 0848/1067] dm-stats: fix merge accounting
` [PATCH 6.1 0849/1067] dm_early_create: fix freeing used table on dm_resume failure
` [PATCH 6.1 0850/1067] dm-verity: fix a possible NULL pointer dereference
` [PATCH 6.1 0851/1067] dm-verity: increase sprintf buffer size
` [PATCH 6.1 0852/1067] scsi: hpsa: Fix DMA mapping leak on IOACCEL2 reset path
` [PATCH 6.1 0853/1067] scsi: lpfc: Fix memory leak in lpfc_sli4_driver_resource_setup()
` [PATCH 6.1 0854/1067] scsi: sg: Report request-table problems when any status is set
` [PATCH 6.1 0855/1067] scsi: xen: scsiback: Free the command tag on the TMR submit-failure path
` [PATCH 6.1 0856/1067] scsi: xen: scsiback: Free unsubmitted command instead of double-putting it
` [PATCH 6.1 0857/1067] scsi: target: Bound PR-OUT TransportID parsing to the received buffer
` [PATCH 6.1 0858/1067] scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE
` [PATCH 6.1 0859/1067] scsi: elx: efct: Fix refcount leak in efct_hw_io_abort()
` [PATCH 6.1 0860/1067] scsi: elx: efct: Fix I/O leak on unsupported additional CDB
` [PATCH 6.1 0861/1067] Input: ims-pcu - fix use-after-free and double-free in disconnect
` [PATCH 6.1 0862/1067] Input: ims-pcu - release data interface on disconnect
` [PATCH 6.1 0863/1067] Input: ims-pcu - validate control endpoint type
` [PATCH 6.1 0864/1067] Input: ims-pcu - add response length checks
` [PATCH 6.1 0865/1067] Input: ims-pcu - fix DMA mapping violation in line setup
` [PATCH 6.1 0866/1067] Input: ims-pcu - fix out-of-bounds read in ims_pcu_irq() debug logging
` [PATCH 6.1 0867/1067] Input: ims-pcu - fix potential infinite loop in CDC union descriptor parsing
` [PATCH 6.1 0868/1067] Input: ims-pcu - fix race condition in reset_device sysfs callback
` [PATCH 6.1 0869/1067] Input: ims-pcu - fix type confusion in CDC union descriptor parsing


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox