messages from 2026-09-12 17:03:01 to 2026-09-12 18:21:53 UTC [more...]
[PATCH 5.15 000/935] 5.15.221-rc1 review
2026-09-12 18:07 UTC (198+ messages)
` [PATCH 5.15 029/935] of: fix out-of-bounds read in of_alias_scan() stem parser
` [PATCH 5.15 031/935] NFSD: Encode only the status in NFS-ACL v2 GETACL error replies
` [PATCH 5.15 032/935] NFSD: Fix off-by-one in DRC bucket pruning limit
` [PATCH 5.15 033/935] NFSD: restart ssc_expire_umount walk after dropping nfsd_ssc_lock
` [PATCH 5.15 034/935] NFSD: remove flawed WARN_ON_ONCE from nfsd_mode_check
` [PATCH 5.15 035/935] NFSv4.1: fix layout segment leak on the pnfs_layout_process() forget path
` [PATCH 5.15 036/935] nfsd: Reset write verifier when async COPY writeback fails
` [PATCH 5.15 037/935] nfsd: return NFS4ERR_NOTSUPP for unsupported netloc4 types
` [PATCH 5.15 038/935] nfsd: sample writeback error cursor before async COPY loop
` [PATCH 5.15 040/935] nfsd: add fh_want_write() for early-verified SETATTR in nfsd_proc_setattr()
` [PATCH 5.15 041/935] nfsd: add filehandle match check to nfsd4_delegreturn()
` [PATCH 5.15 042/935] nfsd: block non-SAVEFH ops after FOREIGN PUTFH to prevent NULL deref
` [PATCH 5.15 043/935] nfsd: check client ownership when cancelling a copy-notify stateid
` [PATCH 5.15 044/935] nfsd: fix cpntf publish race in nfs4_init_cp_state
` [PATCH 5.15 045/935] nfsd: fix version mismatch loops in nfsd_acl_init_request()
` [PATCH 5.15 046/935] nfsd: fix XDR length calculation in nfsd4_ff_encode_layoutget
` [PATCH 5.15 047/935] nfsd: fix XDR padding calculation in ff_encode_getdeviceinfo
` [PATCH 5.15 048/935] nfsd: initialize copy-notify stateid before publishing it
` [PATCH 5.15 049/935] nfsd: reject out-of-range useconds in NFSv2 SETATTR/CREATE
` [PATCH 5.15 050/935] nfsd: reject reclaim LOCK after RECLAIM_COMPLETE
` [PATCH 5.15 051/935] nfsd: revoke copy-notify stateids before dropping their reference
` [PATCH 5.15 052/935] NFSD: Prevent lock owner use-after-free during client teardown
` [PATCH 5.15 053/935] libceph: reject buckets with mismatched CRUSH ids
` [PATCH 5.15 054/935] ceph: fix UAF in __kick_flushing_caps() on cf entry freed during unlock
` [PATCH 5.15 055/935] ceph: reject export_targets ranks >= CEPH_MAX_MDS in mdsmap decode
` [PATCH 5.15 056/935] ceph: bound num_export_targets array for mds info v2/v3
` [PATCH 5.15 057/935] ceph: bound xattr value length in __build_xattrs()
` [PATCH 5.15 058/935] audit: avoid dropping live tree ref on fsnotify rule autoremove
` [PATCH 5.15 059/935] HID: picolcd: clamp eeprom debugfs read to bytes actually received
` [PATCH 5.15 060/935] HID: roccat: free buffered reports when destroying device
` [PATCH 5.15 061/935] HID: sensor: custom: Fix field sysfs group cleanup on failure
` [PATCH 5.15 062/935] HID: mcp2221: validate report size in mcp2221_raw_event()
` [PATCH 5.15 063/935] fs/ntfs3: validate dirty page table on log replay
` [PATCH 5.15 064/935] fs/ntfs3: fix info-leak on partial LZNT decompress in ni_read_frame()
` [PATCH 5.15 065/935] fs/ntfs3: bound page_lcns[] index by the log record
` [PATCH 5.15 066/935] eCryptfs: bound the packet-length peek to the user buffer
` [PATCH 5.15 067/935] ecryptfs: fix tag 11 packet exact-fit size check
` [PATCH 5.15 068/935] ecryptfs: hold msg ctx list lock when cleaning daemon queue
` [PATCH 5.15 069/935] ecryptfs: pass packet set buffer size to parser
` [PATCH 5.15 070/935] ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet
` [PATCH 5.15 071/935] ecryptfs: reject too-small tag 70 packets
` [PATCH 5.15 072/935] ecryptfs: release message context on send failure
` [PATCH 5.15 073/935] ecryptfs: show filename encryption options
` [PATCH 5.15 074/935] fat: restore original value when fat_ent_write failed
` [PATCH 5.15 075/935] fbdev: omapfb: panel-dsi-cm: initialize lock before registering display
` [PATCH 5.15 076/935] fbdev: pvr2fb: correct user pointer annotation and sentinel initializer
` [PATCH 5.15 077/935] fbdev: uvesafb: unregister connector callback on init failure
` [PATCH 5.15 078/935] forcedeth: fix off-by-one when saving/restoring non-PCI config space
` [PATCH 5.15 079/935] fpga: stratix10-soc: Fix SVC mailbox handling during reconfiguration
` [PATCH 5.15 080/935] hsi: omap_ssi_core: fix missing DMA mask setup for SSI controller device
` [PATCH 5.15 081/935] alpha/PCI: Fix I/O port accessor argument order in pci_legacy_write()
` [PATCH 5.15 082/935] alpha: marvel: Fix irq_set_status_flags to use correct IRQ number
` [PATCH 5.15 083/935] alpha: marvel: Fix lock ordering in init_io7_irqs()
` [PATCH 5.15 084/935] ata: libata-scsi: fix DSM TRIM for sector sizes larger than 2048 bytes
` [PATCH 5.15 085/935] auxdisplay: charlcd: cancel backlight work on registration failure
` [PATCH 5.15 086/935] Bluetooth: btusb: Add ASUS USB-BT540 for Realtek 8761CU
` [PATCH 5.15 087/935] Bluetooth: btusb: Add ASUS USB-BT600 "
` [PATCH 5.15 088/935] bnx2x: fix double free in bnx2x_init_firmware() error path
` [PATCH 5.15 089/935] dm-era: fix shadowed superblock leak on take-snap failure
` [PATCH 5.15 090/935] dm raid1: reserve space for NUL-terminator in build_constructor_string()
` [PATCH 5.15 091/935] dm array: reject an array block whose value size is not the callers
` [PATCH 5.15 092/935] cpufreq: schedutil: Fix rate limit overflow
` [PATCH 5.15 093/935] Bluetooth: hci_bcm: fix usage_count leak when autosuspend_delay is negative
` [PATCH 5.15 094/935] Bluetooth: hci_uart: Fix false success return in hci_uart_setup()
` [PATCH 5.15 095/935] Bluetooth: RFCOMM: serialize security confirmation handling
` [PATCH 5.15 096/935] Bluetooth: hci_event: clear HCI_LE_ADV only on a created connection
` [PATCH 5.15 097/935] Bluetooth: hci_h5: fix usage_count leak when autosuspend_delay is negative
` [PATCH 5.15 098/935] Bluetooth: hci_intel: "
` [PATCH 5.15 099/935] ip6_tunnel: use skb_cow_head() in ip6_tnl_xmit()
` [PATCH 5.15 100/935] ip6_gre: fix hardware header length for NBMA tunnels
` [PATCH 5.15 101/935] ipv6: use RCU iterator to dump route exceptions
` [PATCH 5.15 102/935] libnvdimm/labels: Prevent integer overflow in __nd_label_validate()
` [PATCH 5.15 103/935] md: do overflow check for sb->bblog_shift in super_1_load()
` [PATCH 5.15 104/935] mpls: reload header after pskb_may_pull()
` [PATCH 5.15 105/935] mptcp: fix uninitialized local_id in syncookie MP_JOIN reconstruction
` [PATCH 5.15 106/935] SUNRPC: xdr_buf_trim: clamp buf->len to avoid underflow
` [PATCH 5.15 107/935] sunrpc: route to a populated pool in svc_pool_for_cpu()
` [PATCH 5.15 108/935] SUNRPC: always drain cache_cleaner before destroying a cache_detail
` [PATCH 5.15 109/935] SUNRPC: Guard svcauth_gss_release() dispatch on rq_auth_stat
` [PATCH 5.15 110/935] SUNRPC: harden gss_krb5_unwrap_v2 against short tokens
` [PATCH 5.15 111/935] SUNRPC: harden gss_unwrap_resp_priv length checks
` [PATCH 5.15 112/935] sunrpc: init gssp_lock before publishing proc entry
` [PATCH 5.15 113/935] SUNRPC: Reject krb5 v2 wrap tokens with oversized ec field
` [PATCH 5.15 114/935] svcrdma: Fix offset arithmetic in read_chunk_range
` [PATCH 5.15 115/935] svcrdma: Fix pcl_for_each_segment for empty chunks
` [PATCH 5.15 116/935] udf: reject VAT indexes equal to the entry count
` [PATCH 5.15 117/935] wifi: ath6kl: clamp assoc request/response lengths before subtracting IE offsets
` [PATCH 5.15 118/935] staging: media: tegra-video: vi: fix probe failure on skipped last port
` [PATCH 5.15 119/935] rpmsg: glink: smem: order FIFO read after availability check
` [PATCH 5.15 120/935] remoteproc: scp: Fix device reference leak on failed lookup
` [PATCH 5.15 121/935] qede: Fix NULL pointer dereference in TPA fragment processing
` [PATCH 5.15 122/935] RDMA/cxgb4: Cancel reg_work before freeing device on remove
` [PATCH 5.15 123/935] RDMA/ucma: Lock the handler in ucma_set_ib_path()
` [PATCH 5.15 124/935] regulator: as3722_get_regulator_dt_data: fix premature of_node_put leaving dangling of_node pointer
` [PATCH 5.15 125/935] regulator: max8998_pmic_dt_parse_pdata: of_node_put on reg_np after ownership transferred to rdata
` [PATCH 5.15 126/935] orangefs: fix double-free of trailer_buf on readdir copy failure
` [PATCH 5.15 127/935] orangefs: skip leading spaces before parsing client debug masks
` [PATCH 5.15 128/935] ocfs2: always run deallocs on copy-on-write completion
` [PATCH 5.15 129/935] ocfs2: bound namelen in dlm_migrate_request_handler
` [PATCH 5.15 130/935] ocfs2: validate lengths in dlm_mig_lockres_handler
` [PATCH 5.15 131/935] ocfs2: validate rl_used against rl_count in refcount block validator
` [PATCH 5.15 132/935] ocfs2: cluster: dont sleep while holding o2hb_live_lock in o2hb_region_pin()
` [PATCH 5.15 133/935] ocfs2: cluster: avoid lock order inversion in o2hb_region_pin() from drop_item
` [PATCH 5.15 134/935] ocfs2: cluster: fix o2hb_dependent_users leak on pin failure
` [PATCH 5.15 135/935] ocfs2: fix readdir position truncation on 32-bit kernels
` [PATCH 5.15 136/935] openrisc: fix arbitrary kernel memory access via or1k_atomic syscall
` [PATCH 5.15 137/935] openvswitch: only skb_tx_error() a packet we are about to drop
` [PATCH 5.15 138/935] hwmon: (max6621) fix negative temperature offset and crit readings
` [PATCH 5.15 139/935] hwmon: (max6621) fix temperature clamp range
` [PATCH 5.15 140/935] lockd: pin next file across nlm_inspect_file lock-drop
` [PATCH 5.15 141/935] nvme: nvme-fc: Fix nvme_fc_create_hw_io_queues() queue deletion in error path
` [PATCH 5.15 142/935] nvme: zero the discard fallback page
` [PATCH 5.15 143/935] nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone
` [PATCH 5.15 144/935] nvme-tcp: reject a read that transferred too few bytes
` [PATCH 5.15 145/935] sctp: stop processing a packet once its association is deleted
` [PATCH 5.15 146/935] sctp: drop a chunk if its transport was removed
` [PATCH 5.15 147/935] sctp: fix NULL deref on untransmitted RECONF completion
` [PATCH 5.15 148/935] sctp: distinguish sequence zero from wildcard in reconf lookup
` [PATCH 5.15 149/935] sctp: fix stream->outcnt underflow on duplicate RECONF responses
` [PATCH 5.15 150/935] power: supply: bq24257: fix use-after-free on remove
` [PATCH 5.15 151/935] power: supply: bq256xx: drain usb_work before freeing the charger
` [PATCH 5.15 152/935] power: supply: cros_usbpd-charger: bound the EC-reported port count
` [PATCH 5.15 153/935] power: supply: cros_usbpd: Limit port counts to EC_USB_PD_MAX_PORTS
` [PATCH 5.15 154/935] power: supply: lp8727: fix use-after-free in lp8727_release_irq()
` [PATCH 5.15 155/935] power: supply: twl4030_charger: cancel workers via devm
` [PATCH 5.15 156/935] power: supply: ucs1002: fix use-after-free on remove
` [PATCH 5.15 157/935] power: supply: max17040: synchronize work cancellation on suspend
` [PATCH 5.15 158/935] s390/dasd: Do not complete a failed ESE read as successful
` [PATCH 5.15 159/935] s390/dasd: Guard sysfs discipline callbacks against unallocated private data
` [PATCH 5.15 160/935] s390/dasd: Propagate partial completion length across ERP recovery
` [PATCH 5.15 161/935] PCI: Fix 32-bit config write in Intel PCH Root Port MPC ACS quirk
` [PATCH 5.15 162/935] PCI: meson: Fix GPIO state while requesting PERST#
` [PATCH 5.15 163/935] PCI/sysfs: Avoid spurious runtime PM wakeup on config space accesses
` [PATCH 5.15 164/935] PCI/proc: "
` [PATCH 5.15 165/935] PCI/proc: Use file_ns_capable() when checking config space read access
` [PATCH 5.15 166/935] iommu/vt-d: Fix no_iommu to disable platform opt-in
` [PATCH 5.15 167/935] platform/x86: dell-wmi-sysman: Dont hex dump attribute security buffer
` [PATCH 5.15 168/935] mmc: via-sdmmc: stop card-detect handling on probe failure
` [PATCH 5.15 169/935] platform/chrome: sensorhub: Bound the EC-reported sensor number
` [PATCH 5.15 170/935] interconnect: Fix use after free in icc_get() and of_icc_get_by_index()
` [PATCH 5.15 171/935] ipmi: ipmb: validate write message length
` [PATCH 5.15 172/935] ipmi: si: Fix NULL pointer dereference after failed registration
` [PATCH 5.15 173/935] net/iucv: filter frames in afiucv_hs_rcv() by ingress device
` [PATCH 5.15 174/935] xdp: fix zero-copy frame layout
` [PATCH 5.15 175/935] slip: fix use-after-free in sl_sync()
` [PATCH 5.15 176/935] net: usb: qmi_wwan: add Telit Cinterion FE990D50 composition
` [PATCH 5.15 177/935] net: tun: bound receive headroom
` [PATCH 5.15 178/935] net: openvswitch: fix flow mask use-after-free on flow deletion
` [PATCH 5.15 179/935] net: openvswitch: fix nf_connlabels leak in ovs_ct_init
` [PATCH 5.15 180/935] NTB: ntb_transport: Recycle TX entries before client callbacks
` [PATCH 5.15 181/935] NTB: ntb_transport: Fail TX enqueue when the QP link is down
` [PATCH 5.15 182/935] NTB: ntb_transport: Reject oversized TX buffers
` [PATCH 5.15 183/935] net: ntb_netdev: Avoid double-accounting netif_rx() drops
` [PATCH 5.15 184/935] net: ntb_netdev: Count packets dropped on RX refill failure
` [PATCH 5.15 185/935] net/smc: fix socket refcount leak in smc_switch_conns()
` [PATCH 5.15 186/935] net: cap advertised IP tunnel headroom
` [PATCH 5.15 187/935] seg6: reset IP6CB after IPv6 decapsulation
` [PATCH 5.15 188/935] ALSA: 6fire: bound the MIDI event length from the device
` [PATCH 5.15 189/935] ALSA: aloop: Check card index validity at probe
` [PATCH 5.15 190/935] ALSA: bcd2000: clear the URB pointers on disconnect
` [PATCH 5.15 191/935] ALSA: mpu401: Check card index validity at probe
` [PATCH 5.15 192/935] ALSA: mts64: "
` [PATCH 5.15 193/935] ALSA: pcxhr: initialize mutexes before requesting threaded IRQ
` [PATCH 5.15 194/935] ALSA: portman2x4: Check card index validity at probe
` [PATCH 5.15 195/935] ALSA: serial-u16550: "
` [PATCH 5.15 196/935] ALSA: virmidi: "
` [PATCH 5.15 197/935] PCI: hv: Set irq_retrigger callback for the Hyper-V PCI MSI irqchip
` [PATCH 5.15 198/935] arch_numa: avoid false positive fortify warning in setup_node_to_cpumask_map()
` [PATCH 5.15 199/935] dm-stats: fix a crash if allocation of per-cpu data fails
` [PATCH 5.15 200/935] dm-switch: use WRITE_ONCE() in switch_region_table_write()
` [PATCH 5.15 201/935] i3c: master: Fix info leak and UAF in device unregister path
` [PATCH 5.15 202/935] i3c: master: svc: bound IBI payload to the requested max_payload_len
` [PATCH 5.15 203/935] wifi: brcmfmac: Fix memory leak in brcmf_sdio_read_control()
` [PATCH 5.15 204/935] wifi: mwifiex: Detach sync cmd buffer on interrupted wait
` [PATCH 5.15 205/935] wifi: rtl818x: initialize eeprom_93cx6 struct to zero
` [PATCH 5.15 206/935] wifi: rtw88: Fix potential memory leak in rtw_txq_push_skb()
` [PATCH 5.15 207/935] wifi: mt76: mt7615: avoid waiting for mac work under the mt76 mutex
` [PATCH 5.15 208/935] vsock/virtio: flush works in dependency order
` [PATCH 5.15 209/935] w1: ds28e17: reject an oversize length on an I2C block read
` [PATCH 5.15 210/935] tpm: tpm_i2c_nuvoton: disable IRQ on wait timeout
` [PATCH 5.15 211/935] signal: avoid shared siginfo namespace rewrites
` [PATCH 5.15 212/935] smack: fix cred UAF in smack_file_send_sigiotask()
` [PATCH 5.15 214/935] timer: Keep debugobjects state consistent in migrate_timer_list()
` [PATCH 5.15 215/935] udf: Fix i_lenExtents truncation on 32-bit kernels
` [PATCH 5.15 223/935] fsnotify: Fix stale object mask after concurrent mark updates
` [PATCH 5.15 224/935] tcp: fix potential race in tcp_v6_syn_recv_sock()
` [PATCH 5.15 225/935] selinux: avoid implicit conversions in services code
` [PATCH 5.15 226/935] selinux: reject an unclaimed class value in security_get_classes()
` [PATCH 5.15 227/935] ALSA: seq: Fix port lock leak in deliver_to_subscribers()
` [PATCH 5.15 228/935] net: ntb_netdev: Fix TX busy and drop handling
` [PATCH 5.15 229/935] drm/vmwgfx: drop dma_buf reference on foreign-fd prime import
` [PATCH 5.15 230/935] tracing/mmiotrace: Remove reference to unused per CPU data pointer
` [PATCH 5.15 231/935] tracing/mmiotrace: Add NULL check for mmio_trace_array in logging functions
` [PATCH 5.15 232/935] scsi: core: Fill in DMA padding bytes in scsi_alloc_sgtables()
` [PATCH 5.15 233/935] espintcp: remove encap socket caching to avoid reference leak
[PATCH 6.1 0000/1191] 6.1.188-rc1 review
2026-09-12 17:43 UTC (4+ messages)
` [PATCH 6.1 1069/1191] virtio_balloon: disable indirect descriptors
[PATCH 6.18 0000/1518] 6.18.52-rc1 review
2026-09-12 17:33 UTC (2+ messages)
page: next (older) | prev (newer) | latest
- recent:[subjects (threaded)|topics (new)|topics (active)]
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox