{"affected":[{"ecosystem_specific":{"binaries":[{"kernel-livepatch-6_4_0-150700_7_19-rt":"1-150700.1.3.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Live Patching 15 SP7","name":"kernel-livepatch-SLE15-SP7-RT_Update_5","purl":"pkg:rpm/suse/kernel-livepatch-SLE15-SP7-RT_Update_5&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2015%20SP7"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1-150700.1.3.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"6.4.0-150700.7.19.1","dlm-kmp-rt":"6.4.0-150700.7.19.1","gfs2-kmp-rt":"6.4.0-150700.7.19.1","kernel-devel-rt":"6.4.0-150700.7.19.1","kernel-rt":"6.4.0-150700.7.19.1","kernel-rt-devel":"6.4.0-150700.7.19.1","kernel-source-rt":"6.4.0-150700.7.19.1","kernel-syms-rt":"6.4.0-150700.7.19.1","ocfs2-kmp-rt":"6.4.0-150700.7.19.1"}]},"package":{"ecosystem":"SUSE:Real Time Module 15 SP7","name":"kernel-rt","purl":"pkg:rpm/suse/kernel-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP7"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.4.0-150700.7.19.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"6.4.0-150700.7.19.1","dlm-kmp-rt":"6.4.0-150700.7.19.1","gfs2-kmp-rt":"6.4.0-150700.7.19.1","kernel-devel-rt":"6.4.0-150700.7.19.1","kernel-rt":"6.4.0-150700.7.19.1","kernel-rt-devel":"6.4.0-150700.7.19.1","kernel-source-rt":"6.4.0-150700.7.19.1","kernel-syms-rt":"6.4.0-150700.7.19.1","ocfs2-kmp-rt":"6.4.0-150700.7.19.1"}]},"package":{"ecosystem":"SUSE:Real Time Module 15 SP7","name":"kernel-source-rt","purl":"pkg:rpm/suse/kernel-source-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP7"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.4.0-150700.7.19.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"cluster-md-kmp-rt":"6.4.0-150700.7.19.1","dlm-kmp-rt":"6.4.0-150700.7.19.1","gfs2-kmp-rt":"6.4.0-150700.7.19.1","kernel-devel-rt":"6.4.0-150700.7.19.1","kernel-rt":"6.4.0-150700.7.19.1","kernel-rt-devel":"6.4.0-150700.7.19.1","kernel-source-rt":"6.4.0-150700.7.19.1","kernel-syms-rt":"6.4.0-150700.7.19.1","ocfs2-kmp-rt":"6.4.0-150700.7.19.1"}]},"package":{"ecosystem":"SUSE:Real Time Module 15 SP7","name":"kernel-syms-rt","purl":"pkg:rpm/suse/kernel-syms-rt&distro=SUSE%20Real%20Time%20Module%2015%20SP7"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"6.4.0-150700.7.19.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\nThe SUSE Linux Enterprise 15 SP7 RT kernel was updated to receive various security bugfixes.\n\n\nThe following security bugs were fixed:\n\n- CVE-2023-53261: coresight: Fix memory leak in acpi_buffer->pointer (bsc#1249770).\n- CVE-2024-58090: sched/core: Prevent rescheduling when interrupts are disabled (bsc#1240324).\n- CVE-2025-22022: usb: xhci: Apply the link chain quirk on NEC isoc endpoints (bsc#1241292).\n- CVE-2025-38119: scsi: core: ufs: Fix a hang in the error handler (bsc#1245700).\n- CVE-2025-38216: iommu/vt-d: Restore context entry setup order for aliased devices (bsc#1245963).\n- CVE-2025-38234: sched/rt: Fix race in push_rt_task (bsc#1246057).\n- CVE-2025-38263: bcache: fix NULL pointer in cache_set_flush() (bsc#1246248).\n- CVE-2025-38351: KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush (bsc#1246782).\n- CVE-2025-38402: idpf: return 0 size for RSS key if not supported (bsc#1247262).\n- CVE-2025-38408: genirq/irq_sim: Initialize work context pointers properly (bsc#1247126).\n- CVE-2025-38418: remoteproc: core: Release rproc->clean_table after rproc_attach() fails (bsc#1247137).\n- CVE-2025-38419: remoteproc: core: Cleanup acquired resources when rproc_handle_resources() fails in rproc_attach() (bsc#1247136).\n- CVE-2025-38456: ipmi:msghandler: Fix potential memory corruption in ipmi_create_user() (bsc#1247099).\n- CVE-2025-38466: perf: Revert to requiring CAP_SYS_ADMIN for uprobes (bsc#1247442).\n- CVE-2025-38488: smb: client: fix use-after-free in crypt_message when using async crypto (bsc#1247239).\n- CVE-2025-38514: rxrpc: Fix oops due to non-existence of prealloc backlog struct (bsc#1248202).\n- CVE-2025-38526: ice: add NULL check in eswitch lag check (bsc#1248192).\n- CVE-2025-38527: smb: client: fix use-after-free in cifs_oplock_break (bsc#1248199).\n- CVE-2025-38533: net: libwx: fix the using of Rx buffer DMA (bsc#1248200).\n- CVE-2025-38544: rxrpc: Fix bug due to prealloc collision (bsc#1248225).\n- CVE-2025-38556: HID: core: Harden s32ton() against conversion to 0 bits (bsc#1248296).\n- CVE-2025-38574: pptp: ensure minimal skb length in pptp_xmit() (bsc#1248365).\n- CVE-2025-38584: padata: Fix pd UAF once and for all (bsc1248343).\n- CVE-2025-38590: net/mlx5e: Remove skb secpath if xfrm state is not found (bsc#1248360).\n- CVE-2025-38593: kABI workaround for bluetooth discovery_state change (bsc#1248357).\n- CVE-2025-38595: xen: fix UAF in dmabuf_exp_from_pages() (bsc#1248380).\n- CVE-2025-38597: drm/rockchip: vop2: fail cleanly if missing a primary plane for a video-port (bsc#1248378).\n- CVE-2025-38614: eventpoll: Fix semi-unbounded recursion (bsc#1248392).\n- CVE-2025-38616: tls: handle data disappearing from under the TLS ULP (bsc#1248512).\n- CVE-2025-38622: net: drop UFO packets in udp_rcv_segment() (bsc#1248619).\n- CVE-2025-38623: PCI: pnv_php: Fix surprise plug detection and recovery (bsc#1248610).\n- CVE-2025-38628: vdpa/mlx5: Fix release of uninitialized resources on error path (bsc#1248616).\n- CVE-2025-38639: netfilter: xt_nfacct: do not assume acct name is null-terminated (bsc#1248674).\n- CVE-2025-38640: bpf: Disable migration in nf_hook_run_bpf() (bsc#1248622).\n- CVE-2025-38643: wifi: cfg80211: Add missing lock in cfg80211_check_and_end_cac() (bsc#1248681).\n- CVE-2025-38645: net/mlx5: Check device memory pointer before usage (bsc#1248626).\n- CVE-2025-38659: gfs2: No more self recovery (bsc#1248639).\n- CVE-2025-38660: [ceph] parse_longname(): strrchr() expects NUL-terminated string (bsc#1248634).\n- CVE-2025-38664: ice: Fix a null pointer dereference in ice_copy_and_init_pkg() (bsc#1248628).\n- CVE-2025-38676: iommu/amd: Avoid stack buffer overflow from kernel cmdline (bsc#1248775).\n- CVE-2025-38678: netfilter: nf_tables: reject duplicate device on updates (bsc#1249126).\n- CVE-2025-38679: media: venus: Fix OOB read due to missing payload bound check (bsc#1249202).\n- CVE-2025-38684: net/sched: ets: use old 'nbands' while purging unused classes (bsc#1249156).\n- CVE-2025-38701: ext4: do not BUG when INLINE_DATA_FL lacks system.data xattr (bsc#1249258).\n- CVE-2025-38705: drm/amd/pm: fix null pointer access (bsc#1249334).\n- CVE-2025-38709: loop: Avoid updating block size under exclusive owner (bsc#1249199).\n- CVE-2025-38710: gfs2: Validate i_depth for exhash directories (bsc#1249201).\n- CVE-2025-38721: netfilter: ctnetlink: fix refcount leak on table dump (bsc#1249176).\n- CVE-2025-38722: habanalabs: fix UAF in export_dmabuf() (bsc#1249163).\n- CVE-2025-38730: io_uring/net: commit partial buffers on retry (bsc#1249172).\n- CVE-2025-38732: netfilter: nf_reject: do not leak dst refcount for loopback packets (bsc#1249262).\n- CVE-2025-39677: net/sched: Fix backlog accounting in qdisc_dequeue_internal (bsc#1249300).\n- CVE-2025-39678: platform/x86/amd/hsmp: Ensure sock->metric_tbl_addr is non-NULL (bsc#1249290).\n- CVE-2025-39681: x86/cpu/hygon: Add missing resctrl_cpu_detect() in bsp_init helper (bsc#1249303).\n- CVE-2025-39682: tls: fix handling of zero-length records on the rx_list (bsc#1249284).\n- CVE-2025-39691: fs/buffer: fix use-after-free when call bh_read() helper (bsc#1249374).\n- CVE-2025-39703: net, hsr: reject HSR frame if skb can't hold tag (bsc#1249315).\n- CVE-2025-39705: drm/amd/display: fix a Null pointer dereference vulnerability (bsc#1249295).\n- CVE-2025-39718: vsock/virtio: Validate length in packet header before skb_put() (bsc#1249305).\n- CVE-2025-39738: btrfs: do not allow relocation of partially dropped subvolumes (bsc#1249540).\n- CVE-2025-39744: rcu: Fix rcu_read_unlock() deadloop due to IRQ work (bsc#1249494).\n- CVE-2025-39746: wifi: ath10k: shutdown driver when hardware is unreliable (bsc#1249516).\n- CVE-2025-39749: rcu: Protect ->defer_qs_iw_pending from data race (bsc#1249533).\n- CVE-2025-39754: mm/smaps: fix race between smaps_hugetlb_range and migration (bsc#1249524).\n- CVE-2025-39764: netfilter: ctnetlink: remove refcounting in expectation dumpers (bsc#1249513).\n- CVE-2025-39766: net/sched: Make cake_enqueue return NET_XMIT_CN when past buffer_limit (bsc#1249510).\n- CVE-2025-39770: net: gso: Forbid IPv6 TSO with extensions on devices with only IPV6_CSUM (bsc#1249508).\n- CVE-2025-39773: net: bridge: fix soft lockup in br_multicast_query_expired() (bsc#1249504).\n- CVE-2025-39782: jbd2: prevent softlockup in jbd2_log_do_checkpoint() (bsc#1249526).\n- CVE-2025-39787: soc: qcom: mdt_loader: Deal with zero e_shentsize (bsc#1249545).\n- CVE-2025-39797: xfrm: xfrm_alloc_spi shouldn't use 0 as SPI (bsc#1249608).\n- CVE-2025-39816: io_uring/kbuf: always use READ_ONCE() to read ring provided buffer lengths (bsc#1249906).\n- CVE-2025-39823: KVM: x86: use array_index_nospec with indices that come from guest (bsc#1250002).\n- CVE-2025-39825: smb: client: fix race with concurrent opens in rename(2) (bsc#1250179).\n- CVE-2025-39830: net/mlx5: HWS, Fix memory leak in hws_pool_buddy_init error path (bsc#1249974).\n- CVE-2025-39834: net/mlx5: HWS, Fix memory leak in hws_action_get_shared_stc_nic error flow (bsc#1250021).\n- CVE-2025-39835: xfs: do not propagate ENODATA disk errors into xattr code (bsc#1250025).\n- CVE-2025-39838: cifs: prevent NULL pointer dereference in UTF16 conversion (bsc#1250365).\n- CVE-2025-39842: ocfs2: prevent release journal inode after journal shutdown (bsc#1250267).\n- CVE-2025-39857: net/smc: fix one NULL pointer dereference in smc_ib_is_sg_need_sync() (bsc#1250251).\n- CVE-2025-39865: tee: fix NULL pointer dereference in tee_shm_put (bsc#1250294).\n- CVE-2025-39885: ocfs2: fix recursive semaphore deadlock in fiemap call (bsc#1250407).\n- CVE-2025-39922: ixgbe: fix incorrect map used in eee linkmode (bsc#1250722).\n- CVE-2025-40300: x86/vmscape: Warn when STIBP is disabled with SMT (bsc#1247483).\n\nThe following non-security bugs were fixed:\n\n- 9p/xen: fix init sequence (git-fixes).\n- ACPI/IORT: Fix memory leak in iort_rmr_alloc_sids() (git-fixes).\n- ACPI: EC: Add device to acpi_ec_no_wakeup[] qurik list (stable-fixes).\n- ACPI: TAD: Add missing sysfs_remove_group() for ACPI_TAD_RT (git-fixes).\n- ACPI: debug: fix signedness issues in read/write helpers (git-fixes).\n- ACPI: processor: idle: Fix memory leak when register cpuidle device failed (git-fixes).\n- ACPI: property: Fix buffer properties extraction for subnodes (git-fixes).\n- ACPICA: Fix largest possible resource descriptor index (git-fixes).\n- ALSA: firewire-motu: drop EPOLLOUT from poll return values as write is not supported (stable-fixes).\n- ALSA: hda/hdmi: Add pin fix for another HP EliteDesk 800 G4 model (stable-fixes).\n- ALSA: hda/realtek - Add new HP ZBook laptop with micmute led fixup (stable-fixes).\n- ALSA: hda/realtek: Add ALC295 Dell TAS2781 I2C fixup (git-fixes).\n- ALSA: hda/realtek: Add support for HP Agusta using CS35L41 HDA (stable-fixes).\n- ALSA: hda/realtek: Fix headset mic for TongFang X6[AF]R5xxY (stable-fixes).\n- ALSA: hda/realtek: Fix mute led for HP Laptop 15-dw4xx (stable-fixes).\n- ALSA: hda: intel-dsp-config: Prevent SEGFAULT if ACPI_HANDLE() is NULL (git-fixes).\n- ALSA: lx_core: use int type to store negative error codes (git-fixes).\n- ALSA: pcm: Disable bottom softirqs as part of spin_lock_irq() on PREEMPT_RT (git-fixes).\n- ALSA: usb-audio: Add DSD support for Comtrue USB Audio device (stable-fixes).\n- ALSA: usb-audio: Add mixer quirk for Sony DualSense PS5 (stable-fixes).\n- ALSA: usb-audio: Add mute TLV for playback volumes on more devices (stable-fixes).\n- ALSA: usb-audio: Add mute TLV for playback volumes on some devices (stable-fixes).\n- ALSA: usb-audio: Avoid multiple assignments in mixer_quirks (stable-fixes).\n- ALSA: usb-audio: Convert comma to semicolon (git-fixes).\n- ALSA: usb-audio: Drop unnecessary parentheses in mixer_quirks (stable-fixes).\n- ALSA: usb-audio: Fix block comments in mixer_quirks (stable-fixes).\n- ALSA: usb-audio: Fix build with CONFIG_INPUT=n (git-fixes).\n- ALSA: usb-audio: Remove unneeded wmb() in mixer_quirks (stable-fixes).\n- ALSA: usb-audio: Simplify NULL comparison in mixer_quirks (stable-fixes).\n- ALSA: usb-audio: fix race condition to UAF in snd_usbmidi_free (git-fixes).\n- ALSA: usb-audio: move mixer_quirks' min_mute into common quirk (stable-fixes).\n- ASoC: Intel: bytcht_es8316: Fix invalid quirk input mapping (git-fixes).\n- ASoC: Intel: bytcr_rt5640: Fix invalid quirk input mapping (git-fixes).\n- ASoC: Intel: bytcr_rt5651: Fix invalid quirk input mapping (git-fixes).\n- ASoC: Intel: catpt: Expose correct bit depth to userspace (git-fixes).\n- ASoC: Intel: sof_sdw: Prevent jump to NULL add_sidecar callback (git-fixes).\n- ASoC: SOF: Intel: hda-stream: Fix incorrect variable used in error message (git-fixes).\n- ASoC: codecs: tx-macro: correct tx_macro_component_drv name (stable-fixes).\n- ASoC: imx-hdmi: remove cpu_pdev related code (git-fixes).\n- ASoC: qcom: audioreach: Fix lpaif_type configuration for the I2S interface (git-fixes).\n- ASoC: qcom: audioreach: fix potential null pointer dereference (git-fixes).\n- ASoC: qcom: q6apm-lpass-dais: Fix NULL pointer dereference if source graph failed (git-fixes).\n- ASoC: qcom: q6apm-lpass-dais: Fix missing set_fmt DAI op for I2S (git-fixes).\n- ASoC: wcd934x: fix error handling in wcd934x_codec_parse_data() (git-fixes).\n- ASoC: wm8940: Correct PLL rate rounding (git-fixes).\n- ASoC: wm8940: Correct typo in control name (git-fixes).\n- ASoC: wm8974: Correct PLL rate rounding (git-fixes).\n- Add alt-commit to drm v3d patch\n- Bluetooth: Fix use-after-free in l2cap_sock_cleanup_listen() (git-fixes).\n- Bluetooth: ISO: Fix possible UAF on iso_conn_free (git-fixes).\n- Bluetooth: ISO: do not leak skb in ISO_CONT RX (git-fixes).\n- Bluetooth: ISO: free rx_skb if not consumed (git-fixes).\n- Bluetooth: MGMT: Fix not exposing debug UUID on MGMT_OP_READ_EXP_FEATURES_INFO (git-fixes).\n- Bluetooth: MGMT: Fix possible UAFs (git-fixes).\n- Bluetooth: compute LE flow credits based on recvbuf space (git-fixes).\n- Bluetooth: hci_event: Fix UAF in hci_acl_create_conn_sync (git-fixes).\n- Bluetooth: hci_sync: Avoid adding default advertising on startup (stable-fixes).\n- Bluetooth: hci_sync: Fix hci_resume_advertising_sync (git-fixes).\n- Bluetooth: hci_sync: Fix using random address for BIG/PA advertisements (git-fixes).\n- Bluetooth: qca: fix invalid device address check (git-fixes).\n- Bluetooth: qca: fix wcn3991 device address check (git-fixes).\n- Bluetooth: vhci: Prevent use-after-free by removing debugfs files early (git-fixes).\n- Drivers: hv: Always select CONFIG_SYSFB for Hyper-V guests (git-fixes).\n- Drivers: hv: Select CONFIG_SYSFB only if EFI is enabled (git-fixes).\n- Drop PCI patches that broke kdump capture boot (bsc#1246509).\n- Drop arm64 patches that may lead to module load failure (bsc#1250057).\n- Drop ath12k patch that was reverted in the upstream (git-fixes).\n- Fix source string __assign_string() (bsc#1238782).\n- HID: hid-ntrig: fix unable to handle page fault in ntrig_report_version() (stable-fixes).\n- HID: input: rename hidinput_set_battery_charge_status() (stable-fixes).\n- HID: input: report battery status changes immediately (git-fixes).\n- HID: intel-ish-ipc: Remove redundant ready check after timeout function (git-fixes).\n- HID: mcp2221: Do not set bus speed on every transfer (stable-fixes).\n- HID: mcp2221: Handle reads greater than 60 bytes (stable-fixes).\n- HID: quirks: add support for Legion Go dual dinput modes (stable-fixes).\n- HID: wacom: Add a new Art Pen 2 (stable-fixes).\n- IB/mlx5: Fix obj_type mismatch for SRQ event subscriptions (git-fixes)\n- Input: i8042 - add TUXEDO InfinityBook Pro Gen10 AMD to i8042 quirk table (stable-fixes).\n- Input: iqs7222 - avoid enabling unused interrupts (stable-fixes).\n- KVM: SVM: Clear current_vmcb during vCPU free for all *possible* CPUs (git-fixes).\n- KVM: SVM: Disable interception of SPEC_CTRL iff the MSR exists for the guest (git-fixes).\n- KVM: SVM: Sync TPR from LAPIC into VMCB::V_TPR even if AVIC is active (git-fixes).\n- KVM: VMX: Extract checking of guest's DEBUGCTL into helper (git-fixes).\n- KVM: VMX: Flush shadow VMCS on emergency reboot (git-fixes).\n- KVM: VMX: Handle KVM-induced preemption timer exits in fastpath for L2 (git-fixes).\n- KVM: VMX: Handle forced exit due to preemption timer in fastpath (git-fixes).\n- KVM: VMX: Re-enter guest in fastpath for 'spurious' preemption timer exits (git-fixes).\n- KVM: arm64: vgic: fix incorrect spinlock API usage (git-fixes).\n- KVM: s390: Fix incorrect usage of mmu_notifier_register() (git-fixes bsc#1250336).\n- KVM: x86/xen: Allow 'out of range' event channel ports in IRQ routing table (git-fixes).\n- KVM: x86: Drop pending_smi vs. INIT_RECEIVED check when setting MP_STATE (git-fixes).\n- KVM: x86: Fully defer to vendor code to decide how to force immediate exit (git-fixes).\n- KVM: x86: Move handling of is_guest_mode() into fastpath exit handlers (git-fixes).\n- KVM: x86: Plumb 'force_immediate_exit' into kvm_entry() tracepoint (git-fixes).\n- KVM: x86: avoid underflow when scaling TSC frequency (git-fixes).\n- Kconfig.suse: Add KABI checkiness macro (config) (bsc#1249186).\n- Limit patch filenames to 100 characters (bsc#1249604).\n- NFSv4/flexfiles: Fix layout merge mirror check (git-fixes).\n- NFSv4: Clear the NFS_CAP_FS_LOCATIONS flag if it is not set (git-fixes).\n- NFSv4: Clear the NFS_CAP_XATTR flag if not supported by the server (git-fixes).\n- NFSv4: Do not clear capabilities that won't be reset (git-fixes).\n- PCI: Extend isolated function probing to LoongArch (git-fixes).\n- PM / devfreq: mtk-cci: Fix potential error pointer dereference in probe() (git-fixes).\n- PM: sleep: core: Clear power.must_resume in noirq suspend error path (git-fixes).\n- RDMA/mana_ib: Fix DSCP value in modify QP (git-fixes).\n- Revert 'SUNRPC: Do not allow waiting for exiting tasks' (git-fixes).\n- Revert 'drm/amdgpu: fix incorrect vm flags to map bo' (stable-fixes).\n- Revert 'usb: xhci: Avoid Stop Endpoint retry loop if the endpoint seems Running' (git-fixes).\n- SUNRPC: call xs_sock_process_cmsg for all cmsg (git-fixes).\n- Squashfs: add additional inode sanity checking (git-fixes).\n- Squashfs: fix uninit-value in squashfs_get_parent (git-fixes).\n- Squashfs: reject negative file sizes in squashfs_read_inode() (git-fixes).\n- USB: gadget: dummy-hcd: Fix locking bug in RT-enabled kernels (git-fixes).\n- USB: serial: option: add Telit Cinterion FN990A w/audio compositions (stable-fixes).\n- USB: serial: option: add Telit Cinterion LE910C4-WWX new compositions (stable-fixes).\n- Update config files. (bsc#1249186) Plain run_oldconfig after Kconfig update.\n- afs: Fix potential null pointer dereference in afs_put_server (git-fixes).\n- arm64: Handle KCOV __init vs inline mismatches (git-fixes)\n- arm64: Mark kernel as tainted on SAE and SError panic (git-fixes)\n- arm64: dts: imx8mp-tqma8mpql: fix LDO5 power off (git-fixes)\n- arm64: dts: imx8mp: Fix missing microSD slot vqmmc on DH electronics (git-fixes)\n- arm64: dts: imx8mp: Fix missing microSD slot vqmmc on Data Modul (git-fixes)\n- arm64: dts: rockchip: Add vcc-supply to SPI flash on (git-fixes)\n- arm64: dts: rockchip: disable unrouted USB controllers and PHY on (git-fixes)\n- arm64: dts: rockchip: disable unrouted USB controllers and PHY on RK3399 Puma with Haikou (git-fixes).\n- arm64: dts: rockchip: fix internal USB hub instability on RK3399 Puma (git-fixes)\n- arm64: dts: rockchip: use cs-gpios for spi1 on ringneck (git-fixes)\n- arm64: ftrace: fix unreachable PLT for ftrace_caller in init_module (git-fixes)\n- ax25: properly unshare skbs in ax25_kiss_rcv() (git-fixes).\n- batman-adv: fix OOB read/write in network-coding decode (git-fixes).\n- bpf, bpftool: Fix incorrect disasm pc (git-fixes).\n- bpf/selftests: Fix test_tcpnotify_user (poo#189822).\n- bpf: Adjust free target to avoid global starvation of LRU map (git-fixes).\n- bpf: Fix iter/task tid filtering (git-fixes).\n- bpf: Fix link info netfilter flags to populate defrag flag (git-fixes).\n- bpf: Make reg_not_null() true for CONST_PTR_TO_MAP (git-fixes).\n- bpf: Properly test iter/task tid filtering (git-fixes).\n- bpf: bpftool: Setting error code in do_loader() (git-fixes).\n- bpf: handle implicit declaration of function gettid in bpf_iter.c\n- bpf: skip non exist keys in generic_map_lookup_batch (git-fixes).\n- bpftool: Fix JSON writer resource leak in version command (git-fixes).\n- bpftool: Fix memory leak in dump_xx_nlmsg on realloc failure (git-fixes).\n- bpftool: Fix readlink usage in get_fd_type (git-fixes).\n- bpftool: Mount bpffs when pinmaps path not under the bpffs (git-fixes).\n- bpftool: fix potential NULL pointer dereferencing in prog_dump() (git-fixes).\n- btrfs: abort transaction during log replay if walk_log_tree() failed (git-fixes).\n- btrfs: abort transaction on unexpected eb generation at btrfs_copy_root() (git-fixes).\n- btrfs: add cancellation points to trim loops (git-fixes).\n- btrfs: always abort transaction on failure to add block group to free space tree (git-fixes).\n- btrfs: always update fstrim_range on failure in FITRIM ioctl (git-fixes).\n- btrfs: avoid load/store tearing races when checking if an inode was logged (git-fixes).\n- btrfs: fix data overwriting bug during buffered write when block size &lt; page size (git-fixes).\n- btrfs: fix invalid extref key setup when replaying dentry (git-fixes).\n- btrfs: fix race between logging inode and checking if it was logged before (git-fixes).\n- btrfs: fix race between setting last_dir_index_offset and inode logging (git-fixes).\n- btrfs: make found_logical_ret parameter mandatory for function queue_scrub_stripe() (git-fixes).\n- btrfs: move transaction aborts to the error site in add_block_group_free_space() (git-fixes).\n- btrfs: qgroup: fix race between quota disable and quota rescan ioctl (git-fixes).\n- btrfs: scrub: avoid unnecessary csum tree search preparing stripes (git-fixes).\n- btrfs: scrub: avoid unnecessary extent tree search preparing stripes (git-fixes).\n- btrfs: scrub: fix grouping of read IO (git-fixes).\n- btrfs: scrub: remove scrub_ctx::csum_list member (git-fixes).\n- btrfs: split remaining space to discard in chunks (git-fixes).\n- btrfs: tree-checker: fix the incorrect inode ref size check (git-fixes).\n- btrfs: use SECTOR_SHIFT to convert physical offset to LBA (git-fixes).\n- build_bug.h: Add KABI assert (bsc#1249186).\n- bus: fsl-mc: Check return value of platform_get_resource() (git-fixes).\n- bus: mhi: host: Do not use uninitialized 'dev' pointer in mhi_init_irq_setup() (git-fixes).\n- can: etas_es58x: populate ndo_change_mtu() to prevent buffer overflow (git-fixes).\n- can: hi311x: populate ndo_change_mtu() to prevent buffer overflow (git-fixes).\n- can: j1939: implement NETDEV_UNREGISTER notification handler (git-fixes).\n- can: j1939: j1939_local_ecu_get(): undo increment when j1939_local_ecu_get() fails (git-fixes).\n- can: j1939: j1939_sk_bind(): call j1939_priv_put() immediately when j1939_local_ecu_get() failed (git-fixes).\n- can: mcba_usb: populate ndo_change_mtu() to prevent buffer overflow (git-fixes).\n- can: peak_usb: fix shift-out-of-bounds issue (git-fixes).\n- can: rcar_can: rcar_can_resume(): fix s2ram with PSCI (stable-fixes).\n- can: sun4i_can: populate ndo_change_mtu() to prevent buffer overflow (git-fixes).\n- can: xilinx_can: xcan_write_frame(): fix use-after-free of transmitted SKB (git-fixes).\n- cdc_ncm: Flag Intel OEM version of Fibocom L850-GL as WWAN (stable-fixes).\n- ceph: fix possible integer overflow in ceph_zero_objects() (git-fixes).\n- ceph: validate snapdirname option length when mounting (git-fixes).\n- cgroup/cpuset: Fix a partition error with CPU hotplug (bsc#1241166).\n- cgroup/cpuset: Use static_branch_enable_cpuslocked() on cpusets_insane_config_key (bsc#1241166).\n- cgroup/rstat: Optimize cgroup_rstat_updated_list() (bsc#1247963).\n- cgroup/rstat: Reduce cpu_lock hold time in cgroup_rstat_flush_locked() (bsc#1247963).\n- cgroup: llist: avoid memory tears for llist_node (bsc#1247963).\n- cgroup: make css_rstat_updated nmi safe (bsc#1247963).\n- cgroup: remove cgroup_rstat_flush_atomic() (bsc#1247963).\n- cgroup: remove per-cpu per-subsystem locks (bsc#1247963).\n- cgroup: support to enable nmi-safe css_rstat_updated (bsc#1247963).\n- compiler-clang.h: define __SANITIZE_*__ macros only when undefined (stable-fixes).\n- compiler: remove __ADDRESSABLE_ASM{_STR,}() again (git-fixes).\n- cpufreq: CPPC: Mark driver with NEED_UPDATE_LIMITS flag (stable-fixes).\n- cpufreq: Exit governor when failed to start old governor (stable-fixes).\n- cpufreq: Init policy->rwsem before it may be possibly used (git-fixes).\n- cpufreq: Initialize cpufreq-based frequency-invariance later (git-fixes).\n- cpufreq: Initialize cpufreq-based invariance before subsys (git-fixes).\n- cpufreq: Use the fixed and coherent frequency for scaling capacity (stable-fixes).\n- cpufreq: cppc: Fix invalid return value in .get() callback (git-fixes).\n- cpufreq: governor: Fix negative 'idle_time' handling in dbs_update() (git-fixes).\n- cpufreq: intel_pstate: Always use HWP_DESIRED_PERF in passive mode (git-fixes).\n- cpufreq: intel_pstate: Unchecked MSR aceess in legacy mode (git-fixes).\n- cpufreq: scpi: compare kHz instead of Hz (git-fixes).\n- cpufreq: tegra186: Share policy per cluster (stable-fixes).\n- cpupower: Fix a bug where the -t option of the set subcommand was not working (stable-fixes).\n- crypto: af_alg - Set merge to zero early in af_alg_sendmsg (git-fixes).\n- crypto: aspeed - Fix dma_unmap_sg() direction (git-fixes).\n- crypto: atmel - Fix dma_unmap_sg() direction (git-fixes).\n- crypto: hisilicon - re-enable address prefetch after device resuming (git-fixes).\n- crypto: hisilicon/qm - check whether the input function and PF are on the same device (git-fixes).\n- crypto: hisilicon/qm - request reserved interrupt for virtual function (git-fixes).\n- crypto: hisilicon/qm - set NULL to qm->debug.qm_diff_regs (git-fixes).\n- crypto: hisilicon/zip - remove unnecessary validation for high-performance mode configurations (git-fixes).\n- crypto: keembay - Add missing check after sg_nents_for_len() (git-fixes).\n- crypto: qat - add shutdown handler to qat_c3xxx (git-fixes).\n- crypto: qat - add shutdown handler to qat_c62x (git-fixes).\n- crypto: qat - add shutdown handler to qat_dh895xcc (git-fixes).\n- dma/pool: Ensure DMA_DIRECT_REMAP allocations are decrypted (stable-fixes).\n- dmaengine: dw: dmamux: Fix device reference leak in rzn1_dmamux_route_allocate (git-fixes).\n- dmaengine: idxd: Fix double free in idxd_setup_wqs() (git-fixes).\n- dmaengine: idxd: Fix refcount underflow on module unload (git-fixes).\n- dmaengine: idxd: Remove improper idxd_free (git-fixes).\n- dmaengine: mediatek: Fix a flag reuse error in mtk_cqdma_tx_status() (git-fixes).\n- dmaengine: qcom: bam_dma: Fix DT error handling for num-channels/ees (git-fixes).\n- dmaengine: ti: edma: Fix memory allocation size for queue_priority_map (git-fixes).\n- docs: admin-guide: update to current minimum pipe size default (git-fixes).\n- drivers/base/node: fix double free in register_one_node() (git-fixes).\n- drivers/base/node: handle error properly in register_one_node() (git-fixes).\n- drivers/base/node: optimize memory block registration to reduce boot time (bsc#1241866).\n- drivers/base/node: remove register_mem_block_under_node_early() (bsc#1241866).\n- drivers/base/node: remove register_memory_blocks_under_node() function call from register_one_node (bsc#1241866).\n- drivers/base/node: rename __register_one_node() to register_one_node() (bsc#1241866).\n- drivers/base/node: rename register_memory_blocks_under_node() and remove context argument (bsc#1241866).\n- drm/amd/amdgpu: Fix missing error return on kzalloc failure (git-fixes).\n- drm/amd/amdgpu: disable hwmon power1_cap* for gfx 11.0.3 on vf mode (stable-fixes).\n- drm/amd/display: Allow RX6xxx & RX7700 to invoke amdgpu_irq_get/put (git-fixes).\n- drm/amd/display: Clear the CUR_ENABLE register on DCN314 w/out DPP PG (stable-fixes).\n- drm/amd/display: Default IPS to RCG_IN_ACTIVE_IPS2_IN_OFF (git-fixes).\n- drm/amd/display: Disable DPCD Probe Quirk (bsc#1248121).\n- drm/amd/display: Do not warn when missing DCE encoder caps (stable-fixes).\n- drm/amd/display: Fix mismatch type comparison (stable-fixes).\n- drm/amd/display: Fix unnecessary cast warnings from checkpatch (stable-fixes).\n- drm/amd/display: Reduce accessing remote DPCD overhead (git-fixes).\n- drm/amd/display: Remove redundant semicolons (git-fixes).\n- drm/amd/display: use udelay rather than fsleep (git-fixes).\n- drm/amd/pm: Adjust si_upload_smc_data register programming (v3) (git-fixes).\n- drm/amd/pm: Disable MCLK switching with non-DC at 120 Hz+ (v2) (git-fixes).\n- drm/amd/pm: Disable SCLK switching on Oland with high pixel clocks (v3) (git-fixes).\n- drm/amd/pm: Disable ULV even if unsupported (v3) (git-fixes).\n- drm/amd/pm: Fix si_upload_smc_data (v3) (git-fixes).\n- drm/amd/pm: Treat zero vblank time as too short in si_dpm (v3) (git-fixes).\n- drm/amdgpu/discovery: fix fw based ip discovery (git-fixes).\n- drm/amdgpu/discovery: optionally use fw based ip discovery (stable-fixes).\n- drm/amdgpu/mes: add missing locking in helper functions (stable-fixes).\n- drm/amdgpu/vcn4: Fix IB parsing with multiple engine info packages (stable-fixes).\n- drm/amdgpu/vcn: Allow limiting ctx to instance 0 for AV1 at any time (stable-fixes).\n- drm/amdgpu: Fix Circular Locking Dependency in AMDGPU GFX Isolation (git-fixes).\n- drm/amdgpu: Power up UVD 3 for FW validation (v2) (git-fixes).\n- drm/amdgpu: VCN v5_0_1 to prevent FW checking RB during DPG pause (stable-fixes).\n- drm/amdgpu: add kicker fws loading for gfx11/smu13/psp13 (stable-fixes).\n- drm/amdgpu: drop hw access in non-DC audio fini (stable-fixes).\n- drm/amdgpu: fix a memory leak in fence cleanup when unloading (git-fixes).\n- drm/amdgpu: fix incorrect MALL size for GFX1151 (stable-fixes).\n- drm/amdgpu: remove the redeclaration of variable i (git-fixes).\n- drm/amdkfd: Fix error code sign for EINVAL in svm_ioctl() (git-fixes).\n- drm/ast: Use msleep instead of mdelay for edid read (bsc#1250530).\n- drm/ast: Use msleep instead of mdelay for edid read (git-fixes).\n- drm/bridge: it6505: select REGMAP_I2C (git-fixes).\n- drm/bridge: ti-sn65dsi86: fix REFCLK setting (git-fixes).\n- drm/cirrus-qemu: Fix pitch programming (git-fixes).\n- drm/dp: Add an EDID quirk for the DPCD register access probe (bsc#1248121).\n- drm/dp: Change AUX DPCD probe address from LANE0_1_STATUS to TRAINING_PATTERN_SET (bsc#1248121).\n- drm/edid: Add support for quirks visible to DRM core and drivers (bsc#1248121).\n- drm/edid: Define the quirks in an enum list (bsc#1248121).\n- drm/gma500: Fix null dereference in hdmi teardown (git-fixes).\n- drm/i915/backlight: Return immediately when scale() finds invalid parameters (stable-fixes).\n- drm/i915/dp: Fix 2.7 Gbps DP_LINK_BW value on g4x (git-fixes).\n- drm/i915/icl+/tc: Cache the max lane count value (stable-fixes).\n- drm/i915/icl+/tc: Convert AUX powered WARN to a debug message (stable-fixes).\n- drm/i915/power: fix size for for_each_set_bit() in abox iteration (git-fixes).\n- drm/mediatek: fix potential OF node use-after-free (git-fixes).\n- drm/msm/dp: account for widebus and yuv420 during mode validation (git-fixes).\n- drm/msm/dpu: fix incorrect type for ret (git-fixes).\n- drm/nouveau/gsp: fix potential leak of memory used during acpi init (git-fixes).\n- drm/nouveau: select FW caching (git-fixes).\n- drm/panel: novatek-nt35560: Fix invalid return value (git-fixes).\n- drm/panthor: Defer scheduler entitiy destruction to queue release (git-fixes).\n- drm/panthor: Fix memory leak in panthor_ioctl_group_create() (git-fixes).\n- drm/panthor: validate group queue count (git-fixes).\n- drm/radeon/r600_cs: clean up of dead code in r600_cs (git-fixes).\n- drm/rcar-du: dsi: Fix 1/2/3 lane support (git-fixes).\n- drm/simpledrm: Do not upcast in release helpers (git-fixes).\n- drm/xe/bmg: Add new PCI IDs (stable-fixes).\n- drm/xe/bmg: Update Wa_22019338487 (git-fixes).\n- drm/xe/gsc: do not flush the GSC worker from the reset path (git-fixes).\n- drm/xe/tile: Release kobject for the failure path (git-fixes).\n- drm/xe: Allow dropping kunit dependency as built-in (git-fixes).\n- drm/xe: Attempt to bring bos back to VRAM after eviction (git-fixes).\n- drm/xe: Carve out wopcm portion from the stolen memory (git-fixes).\n- drm/xe: Ensure fixed_slice_mode gets set after ccs_mode change (git-fixes).\n- drm/xe: Fix a NULL vs IS_ERR() in xe_vm_add_compute_exec_queue() (git-fixes).\n- drm/xe: Fix and re-enable xe_print_blob_ascii85() (git-fixes).\n- drm/xe: Move page fault init after topology init (git-fixes).\n- drm: bridge: anx7625: Fix NULL pointer dereference with early IRQ (git-fixes).\n- drm: bridge: cdns-mhdp8546: Fix missing mutex unlock on error path (git-fixes).\n- erofs: fix atomic context detection when !CONFIG_DEBUG_LOCK_ALLOC (git-fixes).\n- ext4: remove writable userspace mappings before truncating page cache (bsc#1247223).\n- fbcon: Fix OOB access in font allocation (git-fixes).\n- fbcon: fix integer overflow in fbcon_do_set_font (git-fixes).\n- firewire: core: fix overlooked update of subsystem ABI version (git-fixes).\n- firmware: meson_sm: fix device leak at probe (git-fixes).\n- flexfiles/pNFS: fix NULL checks on result of ff_layout_choose_ds_for_read (git-fixes).\n- fs/nfs/io: make nfs_start_io_*() killable (git-fixes).\n- hv_netvsc: Fix panic during namespace deletion with VF (bsc#1248111).\n- hv_netvsc: Set VF priv_flags to IFF_NO_ADDRCONF before open to prevent IPv6 addrconf (git-fixes).\n- hwmon: (mlxreg-fan) Separate methods of fan setting coming from different subsystems (git-fixes).\n- hwmon: mlxreg-fan: Prevent fans from getting stuck at 0 RPM (git-fixes).\n- hwrng: ks-sa - fix division by zero in ks_sa_rng_init (git-fixes).\n- hwrng: nomadik - add ARM_AMBA dependency (git-fixes).\n- hypfs_create_cpu_files(): add missing check for hypfs_mkdir() failure (git-fixes bsc#1249122).\n- i2c: designware: Add disabling clocks when probe fails (git-fixes).\n- i2c: i801: Hide Intel Birch Stream SoC TCO WDT (git-fixes).\n- i2c: mediatek: fix potential incorrect use of I2C_MASTER_WRRD (git-fixes).\n- i2c: riic: Allow setting frequencies lower than 50KHz (git-fixes).\n- i2c: tegra: Use internal reset when reset property is not available (bsc#1249143)\n- i3c: Fix default I2C adapter timeout value (git-fixes).\n- i3c: master: svc: Recycle unused IBI slot (git-fixes).\n- i3c: master: svc: Use manual response for IBI events (git-fixes).\n- iio: consumers: Fix offset handling in iio_convert_raw_to_processed() (git-fixes).\n- iio: dac: ad5360: use int type to store negative error codes (git-fixes).\n- iio: dac: ad5421: use int type to store negative error codes (git-fixes).\n- iio: frequency: adf4350: Fix ADF4350_REG3_12BIT_CLKDIV_MODE (git-fixes).\n- iio: frequency: adf4350: Fix prescaler usage (git-fixes).\n- iio: imu: inv_icm42600: Drop redundant pm_runtime reinitialization in resume (git-fixes).\n- iio: xilinx-ams: Fix AMS_ALARM_THR_DIRECT_MASK (git-fixes).\n- iio: xilinx-ams: Unmask interrupts after updating alarms (git-fixes).\n- iommu/vt-d: Fix __domain_mapping()'s usage of switch_to_super_page() (git-fixes).\n- isolcpus: add missing hunk back (bsc#1236897 bsc#1249206).\n- kABI fix after vsock/virtio: fix `rx_bytes` accounting for stream sockets (git-fixes).\n- kABI fix for 'netfilter: nf_tables: Audit log rule reset' (git-fixes).\n- kABI workaround for 'drm/dp: Add an EDID quirk for the DPCD register access probe' (bsc#1248121).\n- kABI workaround for RCU tasks exit tracking (bsc#1246298).\n- kABI: adjust new field on ip_ct_sctp struct (git-fixes).\n- kABI: arm64: ftrace: Restore struct mod_arch_specific layout (git-fixes).\n- kABI: make nft_trans_gc_catchall() public again (git-fixes).\n- kABI: netfilter flowtable move gc operation to bottom (git-fixes).\n- kabi: Restore layout of parallel_data (bsc1248343).\n- kabi: add struct cgroup_extra (bsc#1247963).\n- kabi: restore layout of struct cgroup_rstat_cpu (bsc#1247963).\n- kbuild/modpost: Continue processing all unresolved symbols when KLP_SYM_RELA is found (bsc#1218644, bsc#1250655).\n- kernel-source: Do not list mkspec and its inputs as sources (bsc#1250522).\n- mISDN: Fix memory leak in dsp_hwec_enable() (git-fixes).\n- maple_tree: fix MAPLE_PARENT_RANGE32 and parent pointer docs (git-fixes).\n- media: b2c2: Fix use-after-free causing by irq_check_work in flexcop_pci_remove (git-fixes).\n- media: chips-media: wave5: Fix gray color on screen (git-fixes).\n- media: cx18: Add missing check after DMA map (git-fixes).\n- media: i2c: mt9v111: fix incorrect type for ret (git-fixes).\n- media: lirc: Fix error handling in lirc_register() (git-fixes).\n- media: mc: Fix MUST_CONNECT handling for pads with no links (git-fixes).\n- media: pci: ivtv: Add missing check after DMA map (git-fixes).\n- media: rj54n1cb0c: Fix memleak in rj54n1_probe() (git-fixes).\n- media: st-delta: avoid excessive stack usage (git-fixes).\n- media: tuner: xc5000: Fix use-after-free in xc5000_release (git-fixes).\n- media: uvcvideo: Mark invalid entities with id UVC_INVALID_ENTITY_ID (git-fixes).\n- media: v4l2-subdev: Fix alloc failure check in v4l2_subdev_call_state_try() (git-fixes).\n- media: zoran: Remove zoran_fh structure (git-fixes).\n- memory: samsung: exynos-srom: Fix of_iomap leak in exynos_srom_probe (git-fixes).\n- mfd: rz-mtu3: Fix MTU5 NFCR register offset (git-fixes).\n- mfd: vexpress-sysreg: Check the return value of devm_gpiochip_add_data() (git-fixes).\n- misc: genwqe: Fix incorrect cmd field being reported in error (git-fixes).\n- mm/hwpoison: do not send SIGBUS to processes with recovered clean pages (git-fixes).\n- mm/memory-failure: fix infinite UCE for VM_PFNMAP pfn (git-fixes).\n- mm: introduce and use {pgd,p4d}_populate_kernel() (git-fixes).\n- mm: move page table sync declarations to linux/pgtable.h (git-fixes).\n- mmc: core: Use GFP_NOIO in ACMD22 (git-fixes).\n- mmc: mvsdio: Fix dma_unmap_sg() nents value (git-fixes).\n- mmc: sdhci-cadence: add Mobileye eyeQ support (stable-fixes).\n- mtd: nand: raw: atmel: Fix comment in timings preparation (stable-fixes).\n- mtd: nand: raw: atmel: Respect tAR, tCLR in read setup timing (git-fixes).\n- mtd: rawnand: omap2: fix device leak on probe failure (git-fixes).\n- mtd: rawnand: stm32_fmc2: avoid overlapping mappings on ECC buffer (git-fixes).\n- mtd: rawnand: stm32_fmc2: fix ECC overwrite (git-fixes).\n- net: hv_netvsc: fix loss of early receive events from host during channel open (git-fixes).\n- net: nfc: nci: Add parameter validation for packet data (git-fixes).\n- net: phy: fix phy_uses_state_machine() (git-fixes).\n- net: rfkill: gpio: Fix crash due to dereferencering uninitialized pointer (git-fixes).\n- net: rose: convert 'use' field to refcount_t (git-fixes).\n- net: rose: fix a typo in rose_clear_routes() (git-fixes).\n- net: rose: include node references in rose_neigh refcount (git-fixes).\n- net: rose: split remove and free operations in rose_remove_neigh() (stable-fixes).\n- net: usb: Remove disruptive netif_wake_queue in rtl8150_set_multicast (git-fixes).\n- net: usb: cdc-ncm: check for filtering capability (git-fixes).\n- net: usb: qmi_wwan: add Telit Cinterion LE910C4-WWX new compositions (git-fixes).\n- netfilter: conntrack: fix extension size table (git-fixes).\n- netfilter: flowtable: GC pushes back packets to classic path (git-fixes).\n- netfilter: handle the connecting collision properly in nf_conntrack_proto_sctp (git-fixes).\n- netfilter: nat: fix ipv6 nat redirect with mapped and scoped addresses (git-fixes).\n- netfilter: nf_conntrack_bridge: initialize err to 0 (git-fixes).\n- netfilter: nf_tables: A better name for nft_obj_filter (git-fixes).\n- netfilter: nf_tables: Audit log rule reset (git-fixes).\n- netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctx (git-fixes).\n- netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctx (git-fixes).\n- netfilter: nf_tables: Deduplicate nft_register_obj audit logs (git-fixes).\n- netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj (git-fixes).\n- netfilter: nf_tables: Drop pointless memset when dumping rules (git-fixes).\n- netfilter: nf_tables: Fix entries val in rule reset audit log (git-fixes).\n- netfilter: nf_tables: Introduce nf_tables_getrule_single() (git-fixes).\n- netfilter: nf_tables: Open-code audit log call in nf_tables_getrule() (git-fixes).\n- netfilter: nf_tables: Unbreak audit log reset (git-fixes).\n- netfilter: nf_tables: Unconditionally allocate nft_obj_filter (git-fixes).\n- netfilter: nf_tables: audit log object reset once per table (git-fixes).\n- netfilter: nf_tables: bogus ENOENT when destroying element which does not exist (git-fixes).\n- netfilter: nf_tables: disallow element removal on anonymous sets (git-fixes).\n- netfilter: nf_tables: do not remove elements if set backend implements .abort (git-fixes).\n- netfilter: nf_tables: nft_obj_filter fits into cb->ctx (git-fixes).\n- netfilter: nf_tables: remove catchall element in GC sync path (git-fixes).\n- netfilter: nf_tables: revert do not remove elements if set backend implements .abort (git-fixes).\n- netfilter: nf_tables: split async and sync catchall in two functions (git-fixes).\n- netfilter: nfnetlink_log: silence bogus compiler warning (git-fixes).\n- netfilter: nft_payload: fix wrong mac header matching (git-fixes).\n- netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration (git-fixes).\n- netfilter: nft_set_pipapo: call nft_trans_gc_queue_sync() in catchall GC (git-fixes).\n- netfilter: nft_set_pipapo: stop GC iteration if GC transaction allocation fails (git-fixes).\n- netfilter: nft_set_rbtree: prefer sync gc to async worker (git-fixes).\n- netfilter: nft_set_rbtree: rename gc deactivate+erase function (git-fixes).\n- netfilter: xt_recent: fix (increase) ipv6 literal buffer length (git-fixes).\n- nilfs2: fix CFI failure when accessing /sys/fs/nilfs2/features/* (git-fixes).\n- nouveau: fix disabling the nonstall irq due to storm code (git-fixes).\n- nvme-auth: do not re-authenticate queues with no prior authentication (bsc#1227555).\n- nvme-pci: try function level reset on init failure (git-fixes).\n- nvme-tcp: remove tag set when second admin queue config fails (git-fixes).\n- nvmet-auth: always free derived key data (git-fixes).\n- nvmet-auth: authenticate on admin queue only (bsc#1227555).\n- nvmet: auth: use NULL to clear a pointer in (git-fixes).\n- pcmcia: Add error handling for add_interval() in do_validate_mem() (git-fixes).\n- pcmcia: Fix a NULL pointer dereference in __iodyn_find_io_region() (git-fixes).\n- pcmcia: omap: Add missing check for platform_get_resource (git-fixes).\n- phy: tegra: xusb: fix device and OF node leak at probe (git-fixes).\n- phy: ti-pipe3: fix device leak at unbind (git-fixes).\n- pinctrl: equilibrium: Remove redundant semicolons (git-fixes).\n- pinctrl: meson-gxl: add missing i2c_d pinmux (git-fixes).\n- pinctrl: renesas: Use int type to store negative error codes (git-fixes).\n- pinctrl: samsung: Drop unused S3C24xx driver data (git-fixes).\n- platform/mellanox: mlxbf-pmc: Remove newline char from event name input (git-fixes).\n- platform/mellanox: mlxbf-pmc: Validate event/enable input (git-fixes).\n- platform/x86/amd/pmc: Add TUXEDO IB Pro Gen10 AMD to spurious 8042 quirks list (stable-fixes).\n- platform/x86/intel: power-domains: Use topology_logical_package_id() for package ID (git-fixes).\n- platform/x86: dell-wmi-sysman: Fix class device unregistration (git-fixes).\n- platform/x86: think-lmi: Fix class device unregistration (git-fixes).\n- platform/x86: thinkpad_acpi: Handle KCOV __init vs inline mismatches (git-fixes).\n- power: supply: bq27xxx: fix error return in case of no bq27000 hdq battery (git-fixes).\n- power: supply: bq27xxx: restrict no-battery detection to bq27000 (git-fixes).\n- power: supply: cw2015: Fix a alignment coding style issue (git-fixes).\n- power: supply: max77976_charger: fix constant current reporting (git-fixes).\n- pptp: fix pptp_xmit() error path (git-fixes).\n- pwm: berlin: Fix wrong register in suspend/resume (git-fixes).\n- pwm: tiehrpwm: Fix corner case in clock divisor calculation (git-fixes).\n- pwm: tiehrpwm: Make code comment in .free() more useful (git-fixes).\n- rcu-tasks: Add data to eliminate RCU-tasks/do_exit() (bsc#1246298)\n- rcu-tasks: Eliminate deadlocks involving do_exit() and RCU (bsc#1246298)\n- rcu-tasks: Initialize callback lists at rcu_init() time (bsc#1246298)\n- rcu-tasks: Initialize data to eliminate RCU-tasks/do_exit() (bsc#1246298)\n- rcu-tasks: Maintain lists to eliminate RCU-tasks/do_exit() (bsc#1246298)\n- rcu-tasks: Maintain real-time response in (bsc#1246298)\n- rcu/exp: Fix RCU expedited parallel grace period kworker (git-fixes)\n- rcu/exp: Handle RCU expedited grace period kworker allocation (git-fixes)\n- rcu: Fix racy re-initialization of irq_work causing hangs (git-fixes)\n- regmap: Remove superfluous check for !config in __regmap_init() (git-fixes).\n- regulator: scmi: Use int type to store negative error codes (git-fixes).\n- regulator: sy7636a: fix lifecycle of power good gpio (git-fixes).\n- rpm: Configure KABI checkingness macro (bsc#1249186)\n- rpm: Drop support for kabi/arch/ignore-flavor (bsc#1249186)\n- rpm: Link arch-symbols script from scripts directory.\n- rpm: Link guards script from scripts directory.\n- s390/ap: Unmask SLCF bit in card and queue ap functions sysfs (git-fixes bsc#1249183).\n- s390/cpum_cf: Deny all sampling events by counter PMU (git-fixes bsc#1249481).\n- s390/debug: Add a reverse mode for debug_dump() (git-fixes jsc#PED-13260).\n- s390/debug: Add debug_dump() to write debug view to a string buffer (git-fixes jsc#PED-13260).\n- s390/debug: Simplify and document debug_next_entry() logic (git-fixes jsc#PED-13260).\n- s390/debug: Split private data alloc/free out of file operations (git-fixes jsc#PED-13260).\n- s390/hypfs: Avoid unnecessary ioctl registration in debugfs (git-fixes bsc#1248733 LTC#214881).\n- s390/hypfs: Enable limited access during lockdown (git-fixes bsc#1248733 LTC#214881).\n- s390/ism: fix concurrency management in ism_cmd() (git-fixes bsc#1248735).\n- s390/pai: Deny all events not handled by this PMU (git-fixes bsc#1249482).\n- s390/pci: Add pci_msg debug view to PCI report (git-fixes jsc#PED-13260).\n- s390/pci: Allow automatic recovery with minimal driver support (git-fixes bsc#1248734 LTC#214880).\n- s390/pci: Report PCI error recovery results via SCLP (git-fixes jsc#PED-13260).\n- s390/sclp: Fix SCCB present check (git-fixes bsc#1249123).\n- s390/stp: Remove udelay from stp_sync_clock() (git-fixes bsc#1249124).\n- s390/time: Use monotonic clock in get_cycles() (git-fixes bsc#1249125).\n- s390/vfio-ap: Fix no AP queue sharing allowed message written to kernel log (git-fixes bsc#1249488).\n- sched/deadline: Collect sched_dl_entity initialization (git-fixes)\n- sched/fair: Remove unused parameter from sched_asym() (git-fixes)\n- sched/fair: Take the scheduling domain into account in (git-fixes)\n- sched/isolation: Fix boot crash when maxcpus &lt; first (git-fixes)\n- sched/numa, mm: do not try to migrate memory to memoryless (git-fixes)\n- seccomp: Fix a race with WAIT_KILLABLE_RECV if the tracer replies too fast (git-fixes).\n- selftests/bpf: Add asserts for netfilter link info (git-fixes).\n- selftests/bpf: Add cmp_map_pointer_with_const test (git-fixes).\n- selftests/bpf: Add test cases with CONST_PTR_TO_MAP null checks (git-fixes).\n- selftests/bpf: adapt one more case in test_lru_map to the new target_free (git-fixes).\n- selftests/cpufreq: Fix cpufreq basic read and update testcases (bsc#1250344).\n- selftests: bpf: test batch lookup on array of maps with holes (git-fixes).\n- serial: max310x: Add error checking in probe() (git-fixes).\n- serial: sc16is7xx: fix bug in flow control levels init (git-fixes).\n- soc: qcom: rpmh-rsc: Unconditionally clear _TRIGGER bit for TCS (git-fixes).\n- spi: bcm2835: Remove redundant semicolons (git-fixes).\n- spi: cadence-quadspi: Flush posted register writes before DAC access (git-fixes).\n- spi: cadence-quadspi: Flush posted register writes before INDAC access (git-fixes).\n- spi: mtk-snfi: Remove redundant semicolons (git-fixes).\n- spi: spi-fsl-lpspi: Fix transmissions when using CONT (git-fixes).\n- spi: spi-fsl-lpspi: Reset FIFO and disable module on transfer abort (git-fixes).\n- spi: spi-fsl-lpspi: Set correct chip-select polarity bit (git-fixes).\n- struct cdc_ncm_ctx: hide new member filtering_supported (git-fixes).\n- struct l2cap_chan: shift new member rx_avail to end (git-fixes).\n- supported.conf: mark hyperv_drm as external\n- thermal/drivers/qcom/lmh: Add missing IRQ includes (git-fixes).\n- thunderbolt: Compare HMAC values in constant time (git-fixes).\n- tty: hvc_console: Call hvc_kick in hvc_write unconditionally (bsc#1230062).\n- tty: n_gsm: Do not block input queue by waiting MSC (git-fixes).\n- uio: uio_pdrv_genirq: Remove MODULE_DEVICE_TABLE (git-fixes).\n- usb: cdns3: cdnsp-pci: remove redundant pci_disable_device() call (git-fixes).\n- usb: core: Add 0x prefix to quirks debug output (stable-fixes).\n- usb: dwc3: imx8mp: fix device leak at unbind (git-fixes).\n- usb: dwc3: qcom: Do not leave BCR asserted (git-fixes).\n- usb: gadget: configfs: Correctly set use_os_string at bind (git-fixes).\n- usb: host: max3421-hcd: Fix error pointer dereference in probe cleanup (git-fixes).\n- usb: misc: qcom_eud: Access EUD_MODE_MANAGER2 through secure calls (git-fixes).\n- usb: phy: twl6030: Fix incorrect type for ret (git-fixes).\n- usb: typec: fusb302: cache PD RX state (git-fixes).\n- usb: typec: maxim_contaminant: disable low power mode when reading comparator values (git-fixes).\n- usb: typec: maxim_contaminant: re-enable cc toggle if cc is open and port is clean (git-fixes).\n- usb: typec: tcpci: use GENMASK() for TCPC_ROLE_CTRL_CC[12] (git-fixes).\n- usb: typec: tcpm/tcpci_maxim: fix non-contaminant CC handling (git-fixes).\n- usb: typec: tcpm/tcpci_maxim: use GENMASK() for TCPC_VENDOR_CC_CTRL2 register (git-fixes).\n- usb: typec: tcpm: properly deliver cable vdms to altmode drivers (git-fixes).\n- usb: typec: tipd: Clear interrupts first (git-fixes).\n- usb: vhci-hcd: Prevent suspending virtually attached devices (git-fixes).\n- usb: xhci: Fix invalid pointer dereference in Etron workaround (git-fixes).\n- use uniform permission checks for all mount propagation changes (git-fixes).\n- vhost-scsi: Fix log flooding with target does not exist errors (git-fixes).\n- vhost-scsi: Return queue full for page alloc failures during copy (git-fixes).\n- vhost/net: Protect ubufs with rcu read lock in vhost_net_ubuf_put() (git-fixes).\n- vhost/vsock: Avoid allocating arbitrarily-sized SKBs (git-fixes).\n- vhost: fail early when __vhost_add_used() fails (git-fixes).\n- vsock/virtio: Resize receive buffers so that each SKB fits in a 4K page (git-fixes).\n- vsock/virtio: fix `rx_bytes` accounting for stream sockets (git-fixes).\n- vsock: Allow retrying on connect() failure (git-fixes).\n- vsock: Fix IOCTL_VM_SOCKETS_GET_LOCAL_CID to check also `transport_local` (git-fixes).\n- vsock: avoid timeout during connect() if the socket is closing (git-fixes).\n- wifi: ath10k: avoid unnecessary wait for service ready message (git-fixes).\n- wifi: ath11k: Fix DMA buffer allocation to resolve SWIOTLB issues (stable-fixes).\n- wifi: ath11k: HAL SRNG: do not deinitialize and re-initialize again (git-fixes).\n- wifi: ath11k: Use dma_alloc_noncoherent for rx_tid buffer allocation (stable-fixes).\n- wifi: ath11k: fix NULL dereference in ath11k_qmi_m3_load() (git-fixes).\n- wifi: ath11k: fix group data packet drops during rekey (git-fixes).\n- wifi: ath12k: Add MODULE_FIRMWARE() entries (bsc#1250952).\n- wifi: ath12k: fix memory leak in ath12k_pci_remove() (stable-fixes).\n- wifi: ath12k: fix memory leak in ath12k_service_ready_ext_event (git-fixes).\n- wifi: ath12k: fix the fetching of combined rssi (git-fixes).\n- wifi: ath12k: fix wrong handling of CCMP256 and GCMP ciphers (git-fixes).\n- wifi: ath12k: fix wrong logging ID used for CE (git-fixes).\n- wifi: brcmfmac: fix use-after-free when rescheduling brcmf_btcoex_info work (git-fixes).\n- wifi: cfg80211: fix use-after-free in cmp_bss() (git-fixes).\n- wifi: cfg80211: remove cfg80211_inform_single_bss_frame_data() (git-fixes).\n- wifi: cfg80211: sme: cap SSID length in __cfg80211_connect_result() (git-fixes).\n- wifi: cw1200: cap SSID length in cw1200_do_join() (git-fixes).\n- wifi: iwlwifi: Remove redundant header files (git-fixes).\n- wifi: iwlwifi: uefi: check DSM item validity (git-fixes).\n- wifi: libertas: cap SSID len in lbs_associate() (git-fixes).\n- wifi: mac80211: fix Rx packet handling when pubsta information is not available (git-fixes).\n- wifi: mac80211: fix incorrect type for ret (stable-fixes).\n- wifi: mac80211: increase scan_ies_len for S1G (stable-fixes).\n- wifi: mt76: fix potential memory leak in mt76_wmac_probe() (git-fixes).\n- wifi: mt76: mt7996: Initialize hdr before passing to skb_put_data() (git-fixes).\n- wifi: mwifiex: Initialize the chan_stats array to zero (git-fixes).\n- wifi: mwifiex: send world regulatory domain to driver (git-fixes).\n- wifi: rtw89: avoid circular locking dependency in ser_state_run() (git-fixes).\n- wifi: virt_wifi: Fix page fault on connect (stable-fixes).\n- wifi: wilc1000: avoid buffer overflow in WID string configuration (stable-fixes).\n- wireless: purelifi: plfxlc: fix memory leak in plfxlc_usb_wreq_asyn() (git-fixes).\n- writeback: Avoid contention on wb->list_lock when switching inodes (bsc#1237776).\n- writeback: Avoid contention on wb->list_lock when switching inodes (kABI fixup) (bsc#1237776).\n- writeback: Avoid excessively long inode switching times (bsc#1237776).\n- writeback: Avoid softlockup when switching many inodes (bsc#1237776).\n- wrt: Regression fix for  wrt s2idle on AMD laptops (bsc#1243112).\n- x86/CPU/AMD: WARN when setting EFER.AUTOIBRS if and only if the WRMSR fails (git-fixes).\n- x86/Kconfig: Always enable ARCH_SPARSEMEM_ENABLE (git-fixes).\n- x86/amd_nb: Restrict init function to AMD-based systems (git-fixes).\n- x86/cpu: Add model number for Intel Clearwater Forest processor (git-fixes).\n- x86/fpu: Delay instruction pointer fixup until after warning (git-fixes).\n- x86/kvm: Force legacy PCI hole to UC when overriding MTRRs for TDX/SNP (bsc#1245538).\n- x86/microcode/AMD: Handle the case of no BIOS microcode (git-fixes).\n- x86/mm/64: define ARCH_PAGE_TABLE_SYNC_MASK and arch_sync_kernel_mappings() (git-fixes).\n- x86/rdrand: Disable RDSEED on AMD Cyan Skillfish (git-fixes).\n- xen/gntdev: remove struct gntdev_copy_batch from stack (git-fixes).\n- xen/netfront: Fix TX response spurious interrupts (git-fixes).\n- xen: Add support for XenServer 6.1 platform device (git-fixes).\n- xenbus: Allow PVH dom0 a non-local xenstore (git-fixes).\n- xfs: rearrange code in xfs_inode_item_precommit (bsc#1237449).\n- xfs: rework datasync tracking and execution (bsc#1237449).\n- xhci: Fix control transfer error on Etron xHCI host (git-fixes).\n- xhci: dbc: Fix full DbC transfer ring after several reconnects (git-fixes).\n- xhci: dbc: decouple endpoint allocation from initialization (git-fixes).\n- xhci: fix memory leak regression when freeing xhci vdev devices depth first (git-fixes).\n- xirc2ps_cs: fix register access when enabling FullDuplex (git-fixes).\n","id":"SUSE-SU-2025:3725-1","modified":"2025-10-22T11:48:19Z","published":"2025-10-22T11:48:19Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2025/suse-su-20253725-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1212533"},{"type":"REPORT","url":"https://bugzilla.suse.com/1216527"},{"type":"REPORT","url":"https://bugzilla.suse.com/1218644"},{"type":"REPORT","url":"https://bugzilla.suse.com/1227555"},{"type":"REPORT","url":"https://bugzilla.suse.com/1230062"},{"type":"REPORT","url":"https://bugzilla.suse.com/1236897"},{"type":"REPORT","url":"https://bugzilla.suse.com/1237449"},{"type":"REPORT","url":"https://bugzilla.suse.com/1237776"},{"type":"REPORT","url":"https://bugzilla.suse.com/1238782"},{"type":"REPORT","url":"https://bugzilla.suse.com/1240324"},{"type":"REPORT","url":"https://bugzilla.suse.com/1241166"},{"type":"REPORT","url":"https://bugzilla.suse.com/1241292"},{"type":"REPORT","url":"https://bugzilla.suse.com/1241866"},{"type":"REPORT","url":"https://bugzilla.suse.com/1243112"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245538"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245700"},{"type":"REPORT","url":"https://bugzilla.suse.com/1245963"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246057"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246190"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246248"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246298"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246509"},{"type":"REPORT","url":"https://bugzilla.suse.com/1246782"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247099"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247126"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247136"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247137"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247223"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247239"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247262"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247442"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247483"},{"type":"REPORT","url":"https://bugzilla.suse.com/1247963"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248111"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248121"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248192"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248199"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248200"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248202"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248225"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248296"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248343"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248357"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248360"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248365"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248378"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248380"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248392"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248512"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248610"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248616"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248619"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248622"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248626"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248628"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248634"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248639"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248674"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248681"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248733"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248734"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248735"},{"type":"REPORT","url":"https://bugzilla.suse.com/1248775"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249122"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249123"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249124"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249125"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249126"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249143"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249156"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249163"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249172"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249176"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249183"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249186"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249193"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249199"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249201"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249202"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249206"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249258"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249262"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249274"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249284"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249290"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249295"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249300"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249303"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249305"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249306"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249315"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249333"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249334"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249374"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249481"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249482"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249488"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249494"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249504"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249508"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249510"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249513"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249516"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249524"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249526"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249533"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249540"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249545"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249566"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249604"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249608"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249770"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249887"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249906"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249915"},{"type":"REPORT","url":"https://bugzilla.suse.com/1249974"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250002"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250021"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250025"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250057"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250179"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250251"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250267"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250294"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250334"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250336"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250344"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250365"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250407"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250522"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250530"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250574"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250655"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250722"},{"type":"REPORT","url":"https://bugzilla.suse.com/1250952"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-53261"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-5633"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2024-58090"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-22022"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38119"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38216"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38234"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38255"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38263"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38351"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38402"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38408"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38418"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38419"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38456"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38466"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38488"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38514"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38526"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38527"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38533"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38544"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38556"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38574"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38584"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38590"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38593"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38595"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38597"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38614"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38616"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38622"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38623"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38628"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38639"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38640"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38643"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38645"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38659"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38660"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38664"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38676"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38678"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38679"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38684"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38701"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38703"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38705"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38709"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38710"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38721"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38722"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38730"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-38732"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39677"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39678"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39681"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39682"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39691"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39695"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39703"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39705"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39707"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39711"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39718"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39738"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39744"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39746"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39747"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39749"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39754"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39764"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39766"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39770"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39773"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39782"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39787"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39797"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39807"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39811"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39816"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39823"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39825"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39830"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39834"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39835"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39838"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39842"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39857"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39865"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39885"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39890"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-39922"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2025-40300"}],"related":["CVE-2023-53261","CVE-2023-5633","CVE-2024-58090","CVE-2025-22022","CVE-2025-38119","CVE-2025-38216","CVE-2025-38234","CVE-2025-38255","CVE-2025-38263","CVE-2025-38351","CVE-2025-38402","CVE-2025-38408","CVE-2025-38418","CVE-2025-38419","CVE-2025-38456","CVE-2025-38466","CVE-2025-38488","CVE-2025-38514","CVE-2025-38526","CVE-2025-38527","CVE-2025-38533","CVE-2025-38544","CVE-2025-38556","CVE-2025-38574","CVE-2025-38584","CVE-2025-38590","CVE-2025-38593","CVE-2025-38595","CVE-2025-38597","CVE-2025-38614","CVE-2025-38616","CVE-2025-38622","CVE-2025-38623","CVE-2025-38628","CVE-2025-38639","CVE-2025-38640","CVE-2025-38643","CVE-2025-38645","CVE-2025-38659","CVE-2025-38660","CVE-2025-38664","CVE-2025-38676","CVE-2025-38678","CVE-2025-38679","CVE-2025-38684","CVE-2025-38701","CVE-2025-38703","CVE-2025-38705","CVE-2025-38709","CVE-2025-38710","CVE-2025-38721","CVE-2025-38722","CVE-2025-38730","CVE-2025-38732","CVE-2025-39677","CVE-2025-39678","CVE-2025-39681","CVE-2025-39682","CVE-2025-39691","CVE-2025-39695","CVE-2025-39703","CVE-2025-39705","CVE-2025-39707","CVE-2025-39711","CVE-2025-39718","CVE-2025-39738","CVE-2025-39744","CVE-2025-39746","CVE-2025-39747","CVE-2025-39749","CVE-2025-39754","CVE-2025-39764","CVE-2025-39766","CVE-2025-39770","CVE-2025-39773","CVE-2025-39782","CVE-2025-39787","CVE-2025-39797","CVE-2025-39807","CVE-2025-39811","CVE-2025-39816","CVE-2025-39823","CVE-2025-39825","CVE-2025-39830","CVE-2025-39834","CVE-2025-39835","CVE-2025-39838","CVE-2025-39842","CVE-2025-39857","CVE-2025-39865","CVE-2025-39885","CVE-2025-39890","CVE-2025-39922","CVE-2025-40300"],"summary":"Security update for the Linux Kernel","upstream":["CVE-2023-53261","CVE-2023-5633","CVE-2024-58090","CVE-2025-22022","CVE-2025-38119","CVE-2025-38216","CVE-2025-38234","CVE-2025-38255","CVE-2025-38263","CVE-2025-38351","CVE-2025-38402","CVE-2025-38408","CVE-2025-38418","CVE-2025-38419","CVE-2025-38456","CVE-2025-38466","CVE-2025-38488","CVE-2025-38514","CVE-2025-38526","CVE-2025-38527","CVE-2025-38533","CVE-2025-38544","CVE-2025-38556","CVE-2025-38574","CVE-2025-38584","CVE-2025-38590","CVE-2025-38593","CVE-2025-38595","CVE-2025-38597","CVE-2025-38614","CVE-2025-38616","CVE-2025-38622","CVE-2025-38623","CVE-2025-38628","CVE-2025-38639","CVE-2025-38640","CVE-2025-38643","CVE-2025-38645","CVE-2025-38659","CVE-2025-38660","CVE-2025-38664","CVE-2025-38676","CVE-2025-38678","CVE-2025-38679","CVE-2025-38684","CVE-2025-38701","CVE-2025-38703","CVE-2025-38705","CVE-2025-38709","CVE-2025-38710","CVE-2025-38721","CVE-2025-38722","CVE-2025-38730","CVE-2025-38732","CVE-2025-39677","CVE-2025-39678","CVE-2025-39681","CVE-2025-39682","CVE-2025-39691","CVE-2025-39695","CVE-2025-39703","CVE-2025-39705","CVE-2025-39707","CVE-2025-39711","CVE-2025-39718","CVE-2025-39738","CVE-2025-39744","CVE-2025-39746","CVE-2025-39747","CVE-2025-39749","CVE-2025-39754","CVE-2025-39764","CVE-2025-39766","CVE-2025-39770","CVE-2025-39773","CVE-2025-39782","CVE-2025-39787","CVE-2025-39797","CVE-2025-39807","CVE-2025-39811","CVE-2025-39816","CVE-2025-39823","CVE-2025-39825","CVE-2025-39830","CVE-2025-39834","CVE-2025-39835","CVE-2025-39838","CVE-2025-39842","CVE-2025-39857","CVE-2025-39865","CVE-2025-39885","CVE-2025-39890","CVE-2025-39922","CVE-2025-40300"]}