stable.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
 messages from 2026-09-04 06:08:45 to 2026-09-04 06:18:02 UTC [more...]

[PATCH 6.12 000/403] 6.12.109-rc1 review
 2026-09-04  5:01 UTC  (197+ messages)
` [PATCH 6.12 086/403] nfsd: block non-SAVEFH ops after FOREIGN PUTFH to prevent NULL deref
` [PATCH 6.12 088/403] nfsd: clear opcnt on compound arg release to prevent OOB read
` [PATCH 6.12 089/403] nfsd: defer vfree of compound ops to fix rpc_status UAF
` [PATCH 6.12 090/403] nfsd: drop the stateid, not the stateowner, on seqid_op replay retry
` [PATCH 6.12 091/403] nfsd: fix BUG_ON in nfsd4_alloc_layout_stateid on racing delegation revoke
` [PATCH 6.12 092/403] nfsd: fix cpntf publish race in nfs4_init_cp_state
` [PATCH 6.12 093/403] nfsd: fix dentry ref leak on V4ROOT export filehandle lookup
` [PATCH 6.12 094/403] nfsd: fix nfsd_file leak on inter-server COPY setup failure
` [PATCH 6.12 095/403] nfsd: fix reply size estimate for GET_DIR_DELEGATION
` [PATCH 6.12 099/403] nfsd: gate nfs2 setacl by argp->mask
` [PATCH 6.12 100/403] nfsd: gate nfs3 "
` [PATCH 6.12 101/403] nfsd: initialize copy-notify stateid before publishing it
` [PATCH 6.12 102/403] nfsd: initialize DRC hash table before registering shrinker
` [PATCH 6.12 103/403] nfsd: reject out-of-range nseconds in NFSv3 SETATTR and create ops
` [PATCH 6.12 104/403] nfsd: reject out-of-range useconds in NFSv2 SETATTR/CREATE
` [PATCH 6.12 105/403] nfsd: reject reclaim LOCK after RECLAIM_COMPLETE
` [PATCH 6.12 106/403] nfsd: revoke copy-notify stateids before dropping their reference
` [PATCH 6.12 107/403] NFSD: Prevent lock owner use-after-free during client teardown
` [PATCH 6.12 108/403] NFSD: Prevent client use-after-free during NFSv4.0 revoked-state cleanup
` [PATCH 6.12 109/403] libceph: validate OSD extent maps before cursor advance
` [PATCH 6.12 110/403] libceph: reject buckets with mismatched CRUSH ids
` [PATCH 6.12 111/403] ceph: fix UAF in __kick_flushing_caps() on cf entry freed during unlock
` [PATCH 6.12 112/403] ceph: reject export_targets ranks >= CEPH_MAX_MDS in mdsmap decode
` [PATCH 6.12 113/403] ceph: bound copied dentry name length in NFS export get_name
` [PATCH 6.12 114/403] ceph: bound MDSCapAuth path and fs_name decode in handle_session()
` [PATCH 6.12 115/403] ceph: bound num_export_targets array for mds info v2/v3
` [PATCH 6.12 116/403] ceph: bound xattr value length in __build_xattrs()
` [PATCH 6.12 117/403] ceph: do not repeat ceph_trim_dentries() if no progress possible
` [PATCH 6.12 118/403] btrfs: drop recovered reloc root refs on recovery failure
` [PATCH 6.12 119/403] audit: avoid dropping live tree ref on fsnotify rule autoremove
` [PATCH 6.12 120/403] cifs: fix loff_t underflow in cifs_remap_file_range() when len == 0
` [PATCH 6.12 121/403] smb: client: clear ce->tgthint in free_tgts()
` [PATCH 6.12 122/403] smb: client: fix ALIGN() overflow in symlink_data() error context loop
` [PATCH 6.12 123/403] smb: client: fix copy-paste error in WSL EA length accounting for $LXDEV
` [PATCH 6.12 124/403] smb: client: harden DFS cache against invalid target hints
` [PATCH 6.12 125/403] HID: picolcd: clamp eeprom debugfs read to bytes actually received
` [PATCH 6.12 126/403] HID: roccat: free buffered reports when destroying device
` [PATCH 6.12 127/403] HID: sensor: custom: Fix field sysfs group cleanup on failure
` [PATCH 6.12 128/403] HID: mcp2221: stop device IO before hid_hw_stop
` [PATCH 6.12 129/403] HID: mcp2221: validate report size in mcp2221_raw_event()
` [PATCH 6.12 130/403] eventfs: Initialize ei->children and ei->list in init_ei()
` [PATCH 6.12 131/403] fs/ntfs3: validate dirty page table on log replay
` [PATCH 6.12 132/403] fs/ntfs3: fix info-leak on partial LZNT decompress in ni_read_frame()
` [PATCH 6.12 133/403] fs/ntfs3: bound page_lcns[] index by the log record
` [PATCH 6.12 134/403] eCryptfs: bound the packet-length peek to the user buffer
` [PATCH 6.12 135/403] ecryptfs: fix tag 11 packet exact-fit size check
` [PATCH 6.12 136/403] ecryptfs: hold msg ctx list lock when cleaning daemon queue
` [PATCH 6.12 137/403] ecryptfs: pass packet set buffer size to parser
` [PATCH 6.12 138/403] ecryptfs: reject oversized encrypted_key_size in parse_tag_3_packet
` [PATCH 6.12 139/403] ecryptfs: reject too-small tag 70 packets
` [PATCH 6.12 140/403] ecryptfs: release message context on send failure
` [PATCH 6.12 141/403] ecryptfs: show filename encryption options
` [PATCH 6.12 142/403] efivarfs: Rate limit statfs() handler
` [PATCH 6.12 143/403] fat: restore original value when fat_ent_write failed
` [PATCH 6.12 144/403] fbdev: omapfb: panel-dsi-cm: initialize lock before registering display
` [PATCH 6.12 145/403] fbdev: pvr2fb: correct user pointer annotation and sentinel initializer
` [PATCH 6.12 146/403] fbdev: ssd1307fb: defer I2C transfers from damage callbacks
` [PATCH 6.12 147/403] fbdev: uvesafb: unregister connector callback on init failure
` [PATCH 6.12 148/403] forcedeth: fix off-by-one when saving/restoring non-PCI config space
` [PATCH 6.12 149/403] fpga: stratix10-soc: Fix SVC mailbox handling during reconfiguration
` [PATCH 6.12 150/403] hsi: omap_ssi_core: fix missing DMA mask setup for SSI controller device
` [PATCH 6.12 151/403] ACPI: APEI: Fix ERST timeout unit conversion
` [PATCH 6.12 152/403] ACPI: APEI: GHES: fix ARM section length accounting after header
` [PATCH 6.12 153/403] ACPI: pfr_update: fix stack buffer overflow in query_capability()
` [PATCH 6.12 154/403] alpha/PCI: Fix I/O port accessor argument order in pci_legacy_write()
` [PATCH 6.12 155/403] alpha: marvel: Fix irq_set_status_flags to use correct IRQ number
` [PATCH 6.12 156/403] alpha: marvel: Fix lock ordering in init_io7_irqs()
` [PATCH 6.12 157/403] ARM: 9477/1: Disable broken eBPF JIT on the Risc PC
` [PATCH 6.12 158/403] ata: libata-scsi: fix DSM TRIM for sector sizes larger than 2048 bytes
` [PATCH 6.12 159/403] auxdisplay: charlcd: cancel backlight work on registration failure
` [PATCH 6.12 160/403] block: set QUEUE_FLAG_DYING unconditionally in blk_mark_disk_dead()
` [PATCH 6.12 161/403] Bluetooth: btusb: Add ASUS USB-BT540 for Realtek 8761CU
` [PATCH 6.12 162/403] Bluetooth: btusb: Add ASUS USB-BT600 "
` [PATCH 6.12 163/403] Bluetooth: eir: Fix OOB read in eir_get_service_data()
` [PATCH 6.12 164/403] bnx2x: fix double free in bnx2x_init_firmware() error path
` [PATCH 6.12 165/403] bpf, x86: Fix per-CPU address resolution into an extended register
` [PATCH 6.12 166/403] bpf: Disable preemption in __bpf_get_stack
` [PATCH 6.12 167/403] bpf: Harden bloom filter sizing and indexing on 32-bit kernels
` [PATCH 6.12 168/403] dm-era: fix shadowed superblock leak on take-snap failure
` [PATCH 6.12 169/403] dm raid1: reserve space for NUL-terminator in build_constructor_string()
` [PATCH 6.12 170/403] dm array: validate array block headers on read
` [PATCH 6.12 171/403] dm array: reject an array block whose value size is not the callers
` [PATCH 6.12 172/403] coresight: etm3x: Fix cntr_val_show() to match cntr_val_store() behavior
` [PATCH 6.12 173/403] cpufreq: schedutil: Fix rate limit overflow
` [PATCH 6.12 174/403] cxl/pmem: Format the nvdimm serial number as unsigned decimal
` [PATCH 6.12 175/403] Bluetooth: hci_bcm4377: Ignore reserved PHY in ext adv reports on BCM4378
` [PATCH 6.12 176/403] Bluetooth: hci_bcm: fix usage_count leak when autosuspend_delay is negative
` [PATCH 6.12 177/403] Bluetooth: hci_uart: Fix false success return in hci_uart_setup()
` [PATCH 6.12 178/403] Bluetooth: ISO: fix use-after-free of listener socket in iso_conn_ready
` [PATCH 6.12 179/403] Bluetooth: RFCOMM: serialize security confirmation handling
` [PATCH 6.12 180/403] Bluetooth: hci_conn: re-enable advertising only for peripheral role
` [PATCH 6.12 181/403] Bluetooth: hci_core: use skb_get() instead of skb_clone() for req_skb
` [PATCH 6.12 182/403] Bluetooth: hci_event: clear HCI_LE_ADV only on a created connection
` [PATCH 6.12 183/403] Bluetooth: hci_h5: fix usage_count leak when autosuspend_delay is negative
` [PATCH 6.12 184/403] Bluetooth: hci_intel: "
` [PATCH 6.12 185/403] Bluetooth: hci_sync: Clear HCI_CMD_PENDING when dropping the last request
` [PATCH 6.12 186/403] kasan: fix cache shrink race with CPU hotplug
` [PATCH 6.12 187/403] jbd2: bound shrinker scans by examined checkpoint buffers
` [PATCH 6.12 188/403] jbd2: check need_resched() when skipping busy "
` [PATCH 6.12 189/403] ipip: fix skb leak in collect_md mode when metadata_dst allocation fails
` [PATCH 6.12 190/403] ip6_tunnel: use skb_cow_head() in ip6_tnl_xmit()
` [PATCH 6.12 191/403] ip6_gre: fix hardware header length for NBMA tunnels
` [PATCH 6.12 192/403] ipv6: use RCU iterator to dump route exceptions
` [PATCH 6.12 193/403] libnvdimm/labels: Prevent integer overflow in __nd_label_validate()
` [PATCH 6.12 194/403] mailbox: qcom-ipcc: fix duplicate channel allocation across holes
` [PATCH 6.12 195/403] md/raid10: fix still_degraded being inverted in raid10_sync_request()
` [PATCH 6.12 196/403] md: do overflow check for sb->bblog_shift in super_1_load()
` [PATCH 6.12 197/403] mpls: reload header after pskb_may_pull()
` [PATCH 6.12 198/403] mptcp: fix uninitialized local_id in syncookie MP_JOIN reconstruction
` [PATCH 6.12 199/403] nouveau/gem: reserve the bo in the info ioctl around the vma lookup
` [PATCH 6.12 200/403] params: fix charp corruption on allocation failure
` [PATCH 6.12 201/403] SUNRPC: xdr_buf_trim: clamp buf->len to avoid underflow
` [PATCH 6.12 202/403] SUNRPC: Zero rpc_gss_wire_cred at svcauth_gss_decode_credbody() entry
` [PATCH 6.12 203/403] SUNRPC: svcauth_gss: enforce krb5 token minimum length
` [PATCH 6.12 204/403] sunrpc: route to a populated pool in svc_pool_for_cpu()
` [PATCH 6.12 205/403] SUNRPC: always drain cache_cleaner before destroying a cache_detail
` [PATCH 6.12 206/403] SUNRPC: Check svc pool percpu counter allocation
` [PATCH 6.12 207/403] SUNRPC: Guard svcauth_gss_release() dispatch on rq_auth_stat
` [PATCH 6.12 208/403] SUNRPC: harden gss_krb5_unwrap_v2 against short tokens
` [PATCH 6.12 209/403] SUNRPC: harden gss_unwrap_resp_priv length checks
` [PATCH 6.12 210/403] sunrpc: init gssp_lock before publishing proc entry
` [PATCH 6.12 211/403] SUNRPC: reject duplicate CREDS_VALUE options
` [PATCH 6.12 212/403] SUNRPC: Reject krb5 v2 wrap tokens with oversized ec field
` [PATCH 6.12 213/403] SUNRPC: wait for in-flight client TLS handshake callback
` [PATCH 6.12 214/403] svcrdma: Fix offset arithmetic in read_chunk_range
` [PATCH 6.12 215/403] svcrdma: Fix pcl_for_each_segment for empty chunks
` [PATCH 6.12 216/403] svcrdma: Fix unmatched rn_unregister on failed accept
` [PATCH 6.12 217/403] svcrdma: Reject connection when transport allocation fails
` [PATCH 6.12 218/403] svcrdma: Reject inline replies that overflow the pull-up buffer
` [PATCH 6.12 219/403] svcrdma: Use svc_xprt_put to free listener on create failure
` [PATCH 6.12 220/403] svcrdma: Validate Read chunk positions before reconstruction
` [PATCH 6.12 221/403] udf: reject VAT indexes equal to the entry count
` [PATCH 6.12 222/403] wifi: ath6kl: clamp assoc request/response lengths before subtracting IE offsets
` [PATCH 6.12 223/403] staging: media: tegra-video: fix of_node_put() on VIP parse errors
` [PATCH 6.12 224/403] staging: media: tegra-video: vi: fix probe failure on skipped last port
` [PATCH 6.12 225/403] scsi: core: Fill in DMA padding bytes in scsi_alloc_sgtables()
` [PATCH 6.12 226/403] rpmsg: glink: smem: order FIFO read after availability check
` [PATCH 6.12 227/403] arm64: dts: qcom: sm6115-pro1x: Correct touchscreen GPIO flags
` [PATCH 6.12 228/403] arm64: dts: rockchip: fix eMMC reset polarity on PX30 Ringneck
` [PATCH 6.12 229/403] arm64: dts: rockchip: Fix rk3399-roc-pc-plus analog audio
` [PATCH 6.12 230/403] riscv: acpi: Handle LPI architectural context loss flags
` [PATCH 6.12 231/403] remoteproc: scp: Fix device reference leak on failed lookup
` [PATCH 6.12 232/403] qede: Fix NULL pointer dereference in TPA fragment processing
` [PATCH 6.12 233/403] RDMA/cxgb4: Cancel reg_work before freeing device on remove
` [PATCH 6.12 234/403] RDMA/ucma: Lock the handler in ucma_set_ib_path()
` [PATCH 6.12 235/403] regulator: as3722_get_regulator_dt_data: fix premature of_node_put leaving dangling of_node pointer
` [PATCH 6.12 236/403] regulator: max8998_pmic_dt_parse_pdata: of_node_put on reg_np after ownership transferred to rdata
` [PATCH 6.12 237/403] regulator: qcom-refgen: correct the regulator type to CURRENT
` [PATCH 6.12 238/403] ring-buffer: Free cpu_buffer::free_page with subbuf_order
` [PATCH 6.12 239/403] ring-buffer: Hold cpu_buffer::lock when resizing a subbuf
` [PATCH 6.12 240/403] orangefs: fix double-free of trailer_buf on readdir copy failure
` [PATCH 6.12 241/403] orangefs: skip leading spaces before parsing client debug masks
` [PATCH 6.12 242/403] ocfs2: always run deallocs on copy-on-write completion
` [PATCH 6.12 243/403] ocfs2: bound namelen in dlm_migrate_request_handler
` [PATCH 6.12 244/403] ocfs2: validate lengths in dlm_mig_lockres_handler
` [PATCH 6.12 245/403] ocfs2: validate rl_used against rl_count in refcount block validator
` [PATCH 6.12 246/403] ocfs2: cluster: dont sleep while holding o2hb_live_lock in o2hb_region_pin()
` [PATCH 6.12 247/403] ocfs2: cluster: avoid lock order inversion in o2hb_region_pin() from drop_item
` [PATCH 6.12 248/403] ocfs2: cluster: fix o2hb_dependent_users leak on pin failure
` [PATCH 6.12 249/403] ocfs2: fix readdir position truncation on 32-bit kernels
` [PATCH 6.12 250/403] openrisc: fix arbitrary kernel memory access via or1k_atomic syscall
` [PATCH 6.12 251/403] openvswitch: only skb_tx_error() a packet we are about to drop
` [PATCH 6.12 252/403] ALSA: ump: Fix corrupted data bytes at MIDI 1.0 SysEx to UMP conversion
` [PATCH 6.12 253/403] arm64: compat: Fix decrementing LDM/STM alignment emulation
` [PATCH 6.12 254/403] ASoC: amd: yc: Add DMI entry for MSI Thin A15 B7UC
` [PATCH 6.12 255/403] hwmon: (max6621) fix negative temperature offset and crit readings
` [PATCH 6.12 256/403] hwmon: (max6621) fix temperature clamp range
` [PATCH 6.12 257/403] lockd: pin next file across nlm_inspect_file lock-drop
` [PATCH 6.12 258/403] lockd: fix NULL dereference on lockowner allocation failure
` [PATCH 6.12 259/403] nvme: nvme-fc: Fix nvme_fc_create_hw_io_queues() queue deletion in error path
` [PATCH 6.12 260/403] nvme: zero the discard fallback page
` [PATCH 6.12 261/403] nvme-pci: disable controller on admin queue IRQ setup failure
` [PATCH 6.12 262/403] nvme-tcp: do not accept C2HData based on blk_rq_payload_bytes() alone
` [PATCH 6.12 263/403] nvme-tcp: fix host memory disclosure on R2T for a read command
` [PATCH 6.12 264/403] nvme-tcp: reject a read that transferred too few bytes
` [PATCH 6.12 265/403] sctp: stop processing a packet once its association is deleted
` [PATCH 6.12 266/403] sctp: drop a chunk if its transport was removed
` [PATCH 6.12 267/403] sctp: fix NULL deref on untransmitted RECONF completion
` [PATCH 6.12 268/403] sctp: distinguish sequence zero from wildcard in reconf lookup
` [PATCH 6.12 269/403] sctp: fix stream->outcnt underflow on duplicate RECONF responses
` [PATCH 6.12 271/403] power: supply: bq256xx: drain usb_work before freeing the charger
` [PATCH 6.12 272/403] power: supply: bq25890: Fix power_supply reference leak
` [PATCH 6.12 280/403] power: supply: twl4030_charger: cancel workers via devm
` [PATCH 6.12 281/403] power: supply: ucs1002: fix use-after-free on remove
` [PATCH 6.12 282/403] power: supply: max17040: propagate register read errors
` [PATCH 6.12 283/403] power: supply: max17040: drop incorrect I2C functionality check
` [PATCH 6.12 284/403] power: supply: max17040: synchronize work cancellation on suspend
` [PATCH 6.12 285/403] s390/cpum_cf: Handle CPU hotplug via prepare/dead callbacks
` [PATCH 6.12 286/403] s390/dasd: Do not complete a failed ESE read as successful
` [PATCH 6.12 287/403] s390/dasd: Guard sysfs discipline callbacks against unallocated private data
` [PATCH 6.12 288/403] s390/dasd: Propagate partial completion length across ERP recovery
` [PATCH 6.12 289/403] PCI: Fix 32-bit config write in Intel PCH Root Port MPC ACS quirk
` [PATCH 6.12 290/403] PCI: meson: Fix GPIO state while requesting PERST#
` [PATCH 6.12 291/403] PCI: plda: Fix use-after-free of event IRQs during teardown
` [PATCH 6.12 292/403] PCI: plda: Fix IRQ domain leaks in the error paths of plda_init_interrupts()
` [PATCH 6.12 293/403] PCI: Add ACS quirk for Pericom PI7C9X2G608 switches [12d8:2608]

[tip: locking/urgent] futex: Prevent rcuwait use-after-free during requeue PI
 2026-09-04  6:15 UTC 

[tip: locking/urgent] futex: Provide rt_mutex_.*_schedule() equivalents for futex scheduling
 2026-09-04  6:15 UTC 

[PATCH 0/3] alpha: fix floating-point exception state handling
 2026-09-04  6:13 UTC  (4+ messages)
` [PATCH 3/3] alpha: determine tininess after rounding in the FP emulation

[PATCH] hte: tegra194-test: shut down timer before GPIO release
 2026-09-04  6:11 UTC 


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).