  • Header files related to Linux kernel version 5.4.0
  • Header files related to Linux kernel version 5.4.0
  • Header files related to Linux kernel version 5.4.0
  • Header files related to Linux kernel version 5.4.0

Latest version: 5.4.0-1084.91
Release: focal (20.04)
Level: base
Repository: main


Version: 5.4.0-1084.91 2024-04-12 17:08:42 UTC

 linux-bluefield (5.4.0-1084.91) focal; urgency=medium
   * focal/linux-bluefield: 5.4.0-1084.91 -proposed tracker (LP: #2059507)
   * Focal update: v5.4.269 upstream stable release (LP: #2058948)
     - [Config] bluefield: updateconfigs for MFD_TI_AM335X_TSCADC
   [ Ubuntu: 5.4.0-181.201 ]
   * focal/linux: 5.4.0-181.201 -proposed tracker (LP: #2059549)
   * Packaging resync (LP: #1786013)
     - [Packaging] drop getabis data
   * Drop fips-checks script from trees (LP: #2055083)
     - [Packaging] Remove fips-checks script
   * Remove getabis scripts (LP: #2059143)
     - [Packaging] Remove getabis
   * Focal update: v5.4.269 upstream stable release (LP: #2058948)
     - PCI: mediatek: Clear interrupt status before dispatching handler
     - include/linux/units.h: add helpers for kelvin to/from Celsius conversion
     - units: Add Watt units
     - units: change from 'L' to 'UL'
     - units: add the HZ macros
     - serial: sc16is7xx: set safe default SPI clock frequency
     - spi: introduce SPI_MODE_X_MASK macro
     - serial: sc16is7xx: add check for unsupported SPI modes during probe
     - ext4: allow for the last group to be marked as trimmed
     - crypto: api - Disallow identical driver names
     - PM: hibernate: Enforce ordering during image compression/decompression
     - hwrng: core - Fix page fault dead lock on mmap-ed hwrng
     - rpmsg: virtio: Free driver_override when rpmsg_remove()
     - parisc/firmware: Fix F-extend for PDC addresses
     - arm64: dts: qcom: sdm845: fix USB wakeup interrupt types
     - mmc: core: Use mrq.sbc in close-ended ffu
     - nouveau/vmm: don't set addr on the fail path to avoid warning
     - ubifs: ubifs_symlink: Fix memleak of inode->i_link in error path
     - rename(): fix the locking of subdirectories
     - block: Remove special-casing of compound pages
     - mtd: spinand: macronix: Fix MX35LFxGE4AD page size
     - fs: add mode_strip_sgid() helper
     - fs: move S_ISGID stripping into the vfs_*() helpers
     - powerpc: Use always instead of always-y in for crtsavres.o
     - x86/CPU/AMD: Fix disabling XSAVES on AMD family 0x17 due to erratum
     - net/smc: fix illegal rmb_desc access in SMC-D connection dump
     - vlan: skip nested type that is not IFLA_VLAN_QOS_MAPPING
     - llc: make llc_ui_sendmsg() more robust against bonding changes
     - llc: Drop support for ETH_P_TR_802_2.
     - net/rds: Fix UBSAN: array-index-out-of-bounds in rds_cmsg_recv
     - tracing: Ensure visibility when inserting an element into tracing_map
     - afs: Hide silly-rename files from userspace
     - tcp: Add memory barrier to tcp_push()
     - netlink: fix potential sleeping issue in mqueue_flush_file
     - net/mlx5: DR, Use the right GVMI number for drop action
     - net/mlx5: Use kfree(ft->g) in arfs_create_groups()
     - net/mlx5e: fix a double-free in arfs_create_groups
     - netfilter: nf_tables: restrict anonymous set and map names to 16 bytes
     - netfilter: nf_tables: validate NFPROTO_* family
     - fjes: fix memleaks in fjes_hw_setup
     - net: fec: fix the unhandled context fault from smmu
     - btrfs: ref-verify: free ref cache before clearing mount opt
     - btrfs: tree-checker: fix inline ref size in error messages
     - btrfs: don't warn if discard range is not aligned to sector
     - btrfs: defrag: reject unknown flags of btrfs_ioctl_defrag_range_args
     - rbd: don't move requests to the running list on errors
     - gpiolib: acpi: Ignore touchpad wakeup on GPD G1619-04
     - drm: Don't unref the same fb many times by mistake due to deadlock handling
     - drm/bridge: nxp-ptn3460: fix i2c_master_send() error checking
     - drm/bridge: nxp-ptn3460: simplify some error checking
     - drm/exynos: fix accidental on-stack copy of exynos_drm_plane
     - drm/exynos: gsc: minor fix for loop iteration in gsc_runtime_resume
     - gpio: eic-sprd: Clear interrupt after set the interrupt type
     - spi: bcm-qspi: fix SFDP BFPT read by usig mspi read
     - mips: Call lose_fpu(0) before initializing fcr31 in mips_set_personality_nan
     - tick/sched: Preserve number of idle sleeps across CPU hotplug events
     - x86/entry/ia32: Ensure s32 is sign extended to s64
     - powerpc/mm: Fix null-pointer dereference in pgtable_cache_add
     - powerpc: Fix build error due to is_valid_bugaddr()
     - powerpc/mm: Fix build failures due to arch_reserved_kernel_pages()
     - powerpc: pmd_move_must_withdraw() is only needed for
     - powerpc/lib: Validate size for vector operations
     - x86/mce: Mark fatal MCE's page as poison to avoid panic in the kdump kernel
     - perf/core: Fix narrow startup race when creating the perf nr_addr_filters
       sysfs file
     - regulator: core: Only increment use_count when enable_count changes
     - audit: Send netlink ACK before setting connection in auditd_set
     - ACPI: video: Add quirk for the Colorful X15 AT 23 Laptop
     - PNP: ACPI: fix fortify warning
     - ACPI: extlog: fix NULL pointer dereference check
     - FS:JFS:UBSAN:array-index-out-of-bounds in dbAdjTree
     - jfs: fix slab-out-of-bounds Read in dtSearch
     - jfs: fix array-index-out-of-bounds in dbAdjTree
     - pstore/ram: Fix crash when setting number of cpus to an odd number
     - crypto: stm32/crc32 - fix parsing list of devices
     - afs: fix the usage of read_seqbegin_or_lock() in afs_find_server*()
     - rxrpc_find_service_conn_rcu: fix the usage of read_seqbegin_or_lock()
     - jfs: fix array-index-out-of-bounds in diNewExt
     - s390/ptrace: handle setting of fpc register correctly
     - KVM: s390: fix setting of fpc register
     - SUNRPC: Fix a suspicious RCU usage warning
     - ecryptfs: Reject casefold directory inodes
     - ext4: fix inconsistent between segment fstrim and full fstrim
     - ext4: unify the type of flexbg_size to unsigned int
     - ext4: remove unnecessary check from alloc_flex_gd()
     - ext4: avoid online resizing fa

2058948 Focal update: v5.4.269 upstream stable release
1786013 Packaging resync
2055083 Drop fips-checks script from trees
2059143 Remove getabis scripts
CVE-2023-52603 In the Linux kernel, the following vulnerability has been resolved: UBSAN: array-index-out-of-bounds in dtSplitRoot Syzkaller reported the followin
CVE-2023-52600 In the Linux kernel, the following vulnerability has been resolved: jfs: fix uaf in jfs_evict_inode When the execution of diMount(ipimap) fails, th
CVE-2023-24023 Bluetooth BR/EDR devices with Secure Simple Pairing and Secure Connections pairing in Bluetooth Core Specification 4.2 through 5.4 allow certain man-
CVE-2024-26581 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on
CVE-2024-26589 In the Linux kernel, the following vulnerability has been resolved: bpf: Reject variable offset alu on PTR_TO_FLOW_KEYS For PTR_TO_FLOW_KEYS, check

Version: 5.4.0-1082.89 2024-03-25 13:09:09 UTC

 linux-bluefield (5.4.0-1082.89) focal; urgency=medium
   * focal/linux-bluefield: 5.4.0-1082.89 -proposed tracker (LP: #2055643)
   * Focal update: v5.4.268 upstream stable release (LP: #2055075)
     - [Config] bluefield: update annotations for CONFIG_MMC_SDHCI_OMAP
   * Focal update: v5.4.267 upstream stable release (LP: #2054406)
     - [Config] bluefield: Update annotations for CONFIG_SND_MESON_CODEC_GLUE
   * Packaging resync (LP: #1786013)
     - [Packaging] drop ABI data
     - debian.bluefield/dkms-versions -- update from kernel-versions
   [ Ubuntu: 5.4.0-175.195 ]
   * focal/linux: 5.4.0-175.195 -proposed tracker (LP: #2055684)
   * Packaging resync (LP: #1786013)
     - [Packaging] drop ABI data
     - [Packaging] update annotations scripts
     - debian.master/dkms-versions -- update from kernel-versions (main/2024.03.04)
   * Drop ABI checks from kernel build (LP: #2055686)
     - [Packaging] Remove in-tree abi checks
     - [Packaging] Bring back install- prerequisite for checks-
     - [Packaging] Remove abi-check from final-checks
   * Cranky update-dkms-versions rollout (LP: #2055685)
     - [Packaging] remove update-dkms-versions
     - Move debian/dkms-versions to debian.master/dkms-versions
     - [Packaging] Replace debian/dkms-versions with $(DEBIAN)/dkms-versions
     - [Packaging] remove update-version-dkms
   * linux-tools-common: man page of usbip[d] is misplaced (LP: #2054094)
     - [Packaging] rules: Put usbip manpages in the correct directory
   * CVE-2024-23851
     - dm ioctl: log an error if the ioctl structure is corrupted
     - dm: limit the number of targets and parameter size area
   * Focal update: v5.4.268 upstream stable release (LP: #2055075)
     - f2fs: explicitly null-terminate the xattr list
     - pinctrl: lochnagar: Don't build on MIPS
     - ALSA: hda - Fix speaker and headset mic pin config for CHUWI CoreBook XPro
     - ASoC: Intel: Skylake: Fix mem leak in few functions
     - ASoC: nau8822: Fix incorrect type in assignment and cast to restricted
     - ASoC: Intel: Skylake: mem leak in skl register function
     - ASoC: cs43130: Fix the position of const qualifier
     - ASoC: cs43130: Fix incorrect frame delay configuration
     - ASoC: rt5650: add mutex to avoid the jack detection failure
     - nouveau/tu102: flush all pdbs on vmm flush
     - net/tg3: fix race condition in tg3_reset_task()
     - ASoC: da7219: Support low DC impedance headset
     - nvme: introduce helper function to get ctrl state
     - drm/exynos: fix a potential error pointer dereference
     - drm/exynos: fix a wrong error checking
     - clk: rockchip: rk3128: Fix HCLK_OTG gate register
     - jbd2: correct the printing of write_flags in jbd2_write_superblock()
     - drm/crtc: Fix uninit-value bug in drm_mode_setcrtc
     - neighbour: Don't let neigh_forced_gc() disable preemption for long
     - tracing: Have large events show up as '[LINE TOO BIG]' instead of nothing
     - tracing: Add size check when printing trace_marker output
     - ring-buffer: Do not record in NMI if the arch does not support cmpxchg in
     - reset: hisilicon: hi6220: fix Wvoid-pointer-to-enum-cast warning
     - Input: atkbd - skip ATKBD_CMD_GETID in translated mode
     - Input: i8042 - add nomux quirk for Acer P459-G2-M
     - s390/scm: fix virtual vs physical address confusion
     - ARC: fix spare error
     - Input: xpad - add Razer Wolverine V2 support
     - ARM: sun9i: smp: fix return code check of of_property_match_string
     - drm/crtc: fix uninitialized variable use
     - ACPI: resource: Add another DMI match for the TongFang GMxXGxx
     - binder: use EPOLLERR from eventpoll.h
     - binder: fix trivial typo of binder_free_buf_locked()
     - binder: fix comment on binder_alloc_new_buf() return value
     - uio: Fix use-after-free in uio_open
     - parport: parport_serial: Add Brainboxes BAR details
     - parport: parport_serial: Add Brainboxes device IDs and geometry
     - coresight: etm4x: Fix width of CCITMIN field
     - x86/lib: Fix overflow when counting digits
     - EDAC/thunderx: Fix possible out-of-bounds string access
     - powerpc: add crtsavres.o to always-y instead of extra-y
     - powerpc/44x: select I2C for CURRITUCK
     - powerpc/pseries/memhotplug: Quieten some DLPAR operations
     - powerpc/pseries/memhp: Fix access beyond end of drmem array
     - selftests/powerpc: Fix error handling in FPU/VMX preemption tests
     - powerpc/powernv: Add a null pointer check to scom_debug_init_one()
     - powerpc/powernv: Add a null pointer check in opal_event_init()
     - powerpc/powernv: Add a null pointer check in opal_powercap_init()
     - powerpc/imc-pmu: Add a null pointer check in update_events_in_group()
     - mtd: rawnand: Increment IFC_TIMEOUT_MSECS for nand controller response
     - ACPI: video: check for error while searching for backlight device parent
     - ACPI: LPIT: Avoid u32 multiplication overflow
     - net: netlabel: Fix kerneldoc warnings
     - netlabel: remove unused parameter in netlbl_netlink_auditinfo()
     - calipso: fix memory leak in netlbl_calipso_add_pass()
     - spi: sh-msiof: Enforce fixed DTDL for R-Car H3
     - mtd: Fix gluebi NULL pointer dereference caused by ftl notifier
     - selinux: Fix error priority for bind with AF_UNSPEC on PF_INET6 socket
     - crypto: virtio - Handle dataq logic with tasklet
     - crypto: virtio - don't use 'default m'
     - virtio_crypto: Introduce VIRTIO_CRYPTO_NOSPC
     - crypto: ccp - fix memleak in ccp_init_dm_workarea
     - crypto: af_alg - Disallow multiple in-flight AIO requests
     - crypto: sahara - remove FLAGS_NEW_KEY logic
     - crypto: sahara - fix ahash selftest failure
     - crypto: sahara - fix processing requests with cryptlen < sg->length
     - crypto: sahara - fix error handling in sahara_hw_descriptor_create()
     - pstore: ram_core: fix possible overflow in persistent_ram_init

2055075 Focal update: v5.4.268 upstream stable release
2054406 Focal update: v5.4.267 upstream stable release
1786013 Packaging resync
2055686 Drop ABI checks from kernel build
2055685 Cranky update-dkms-versions rollout
2054094 linux-tools-common: man page of usbip[d] is misplaced
2051655 Focal update: v5.4.266 upstream stable release
CVE-2024-23851 copy_params in drivers/md/dm-ioctl.c in the Linux kernel through 6.7.1 can attempt to allocate more than INT_MAX bytes, and crash, because of a missi
CVE-2024-24855 A race condition was found in the Linux kernel's scsi device driver in lpfc_unregister_fcf_rescan() function. This can result in a null pointer deref
CVE-2023-23000 In the Linux kernel before 5.17, drivers/phy/tegra/xusb.c mishandles the tegra_xusb_find_port_node return value. Callers expect NULL in the error cas
CVE-2023-23004 In the Linux kernel before 5.19, drivers/gpu/drm/arm/malidp_planes.c misinterprets the get_sg_table return value (expects it to be NULL in the error
CVE-2023-46838 Transmit requests in Xen's virtual network protocol can consist of multiple parts. While not really useful, except for the initial part any of them
CVE-2024-1086 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_
CVE-2024-0607 A flaw was found in the Netfilter subsystem in the Linux kernel. The issue is in the nft_byteorder_eval() function, where the code iterates through a

Version: 5.4.0-1080.87 2024-02-22 15:08:43 UTC

 linux-bluefield (5.4.0-1080.87) focal; urgency=medium
   * focal/linux-bluefield: 5.4.0-1080.87 -proposed tracker (LP: #2052097)
   * Focal update: v5.4.262 upstream stable release (LP: #2049069)
     - netfilter: nf_tables: adapt set backend to use GC transaction API
     - netfilter: nf_tables: drop map element references from preparation phase
   * Focal update: v5.4.261 upstream stable release (LP: #2049049)
     - [Config] bluefield: remove CONFIG_QCOM_SDM845_LLCC
   * Focal update: v5.4.260 upstream stable release (LP: #2049024)
     - [Config] bluefield: remove CONFIG_BLK_DEV_SX8
   [ Ubuntu: 5.4.0-173.191 ]
   * focal/linux: 5.4.0-173.191 -proposed tracker (LP: #2052135)
   * Packaging resync (LP: #1786013)
     - debian/dkms-versions -- update from kernel-versions (main/2024.02.05)
   * CVE-2023-0340
     - vhost: use kzalloc() instead of kmalloc() followed by memset()
   * CVE-2023-6915
     - ida: Fix crash in ida_free when the bitmap is empty
   * Focal update: v5.4.265 upstream stable release (LP: #2051644)
     - afs: Fix refcount underflow from error handling race
     - net: ipv6: support reporting otherwise unknown prefix flags in RTM_NEWPREFIX
     - qca_debug: Prevent crash on TX ring changes
     - qca_debug: Fix ethtool -G iface tx behavior
     - qca_spi: Fix reset behavior
     - atm: solos-pci: Fix potential deadlock on &cli_queue_lock
     - atm: solos-pci: Fix potential deadlock on &tx_queue_lock
     - atm: Fix Use-After-Free in do_vcc_ioctl
     - qed: Fix a potential use-after-free in qed_cxt_tables_alloc
     - net: Remove acked SYN flag from packet in the transmit queue correctly
     - sign-file: Fix incorrect return values check
     - vsock/virtio: Fix unsigned integer wrap around in
     - net: stmmac: use dev_err_probe() for reporting mdio bus registration failure
     - net: stmmac: Handle disabled MDIO busses from devicetree
     - cred: switch to using atomic_long_t
     - ALSA: hda/hdmi: add force-connect quirks for ASUSTeK Z170 variants
     - usb: aqc111: check packet for fixup for true limit
     - blk-throttle: fix lockdep warning of "cgroup_mutex or RCU read lock
     - bcache: avoid oversize memory allocation by small stripe_size
     - bcache: add code comments for bch_btree_node_get() and
     - bcache: avoid NULL checking to c->root in run_cache_set()
     - platform/x86: intel_telemetry: Fix kernel doc descriptions
     - HID: add ALWAYS_POLL quirk for Apple kb
     - HID: hid-asus: reset the backlight brightness level on resume
     - HID: multitouch: Add quirk for HONOR GLO-GXXX touchpad
     - asm-generic: qspinlock: fix queued_spin_value_unlocked() implementation
     - net: usb: qmi_wwan: claim interface 4 for ZTE MF290
     - HID: hid-asus: add const to read-only outgoing usb buffer
     - soundwire: stream: fix NULL pointer dereference for multi_link
     - ext4: prevent the normalized size from exceeding EXT_MAX_BLOCKS
     - arm64: mm: Always make sw-dirty PTEs hw-dirty in pte_modify
     - team: Fix use-after-free when an option instance allocation fails
     - ring-buffer: Fix memory leak of free page
     - mmc: block: Be sure to wait while busy in CQE error recovery
     - powerpc/ftrace: Create a dummy stackframe to fix stack unwind
     - powerpc/ftrace: Fix stack teardown in ftrace_no_trace
     - Linux 5.4.265
   * Focal update: v5.4.264 upstream stable release (LP: #2049935)
     - hrtimers: Push pending hrtimers away from outgoing CPU earlier
     - netfilter: ipset: fix race condition between swap/destroy and kernel side
     - tg3: Move the [rt]x_dropped counters to tg3_napi
     - tg3: Increment tx_dropped in tg3_tso_bug()
     - kconfig: fix memory leak from range properties
     - drm/amdgpu: correct chunk_ptr to a pointer to chunk.
     - of: base: Add of_get_cpu_state_node() to get idle states for a CPU node
     - ACPI/IORT: Make iort_get_device_domain IRQ domain agnostic
     - ACPI/IORT: Make iort_msi_map_rid() PCI agnostic
     - of/iommu: Make of_map_rid() PCI agnostic
     - of/irq: make of_msi_map_get_device_domain() bus agnostic
     - of/irq: Make of_msi_map_rid() PCI bus agnostic
     - of: base: Fix some formatting issues and provide missing descriptions
     - of: Fix kerneldoc output formatting
     - of: Add missing 'Return' section in kerneldoc comments
     - of: dynamic: Fix of_reconfig_get_state_change() return value documentation
     - ipv6: fix potential NULL deref in fib6_add()
     - hv_netvsc: rndis_filter needs to select NLS
     - net: arcnet: Fix RESET flag handling
     - net: arcnet: com20020 fix error handling
     - arcnet: restoring support for multiple Sohard Arcnet cards
     - ipv4: ip_gre: Avoid skb_pull() failure in ipgre_xmit()
     - net: hns: fix fake link up on xge port
     - netfilter: xt_owner: Fix for unsafe access of sk->sk_socket
     - tcp: do not accept ACK of bytes we never sent
     - bpf: sockmap, updating the sg structure should also update curr
     - RDMA/bnxt_re: Correct module description string
     - hwmon: (acpi_power_meter) Fix 4.29 MW bug
     - ASoC: wm_adsp: fix memleak in wm_adsp_buffer_populate
     - tracing: Fix a warning when allocating buffered events fails
     - scsi: be2iscsi: Fix a memleak in beiscsi_init_wrb_handle()
     - ARM: imx: Check return value of devm_kasprintf in imx_mmdc_perf_init
     - ARM: dts: imx: make gpt node name generic
     - ARM: dts: imx7: Declare timers compatible with fsl,imx6dl-gpt
     - ALSA: pcm: fix out-of-bounds in snd_pcm_state_names
     - nilfs2: prevent WARNING in nilfs_sufile_set_segment_usage()
     - tracing: Always update snapshot buffer size
     - tracing: Fix incomplete locking when disabling buffered events
     - tracing: Fix a possible race when disabling buffered events
     - packet: Move reference count in packet_sock to atomic_long_t
     - arm64: dts: me

2049069 Focal update: v5.4.262 upstream stable release
2049049 Focal update: v5.4.261 upstream stable release
2049024 Focal update: v5.4.260 upstream stable release
1786013 Packaging resync
2051644 Focal update: v5.4.265 upstream stable release
2049935 Focal update: v5.4.264 upstream stable release
2049084 Focal update: v5.4.263 upstream stable release
CVE-2023-0340 The Custom Content Shortcode WordPress plugin through 4.0.2 does not validate one of its shortcode attribute, which could allow users with a contribu
CVE-2023-6915 A Null pointer dereference problem was found in ida_free in lib/idr.c in the Linux Kernel. This issue may allow an attacker using this library to cau
CVE-2024-0646 An out-of-bounds memory write flaw was found in the Linux kernel’s Transport Layer Security functionality in how a user calls a function splice with
CVE-2024-0565 An out-of-bounds memory read flaw was found in receive_encrypted_standard in fs/smb/client/smb2ops.c in the SMB Client sub-component in the Linux Ker
CVE-2023-51781 An issue was discovered in the Linux kernel before 6.6.8. atalk_ioctl in net/appletalk/ddp.c has a use-after-free because of an atalk_recvmsg race co
CVE-2023-51782 An issue was discovered in the Linux kernel before 6.6.8. rose_ioctl in net/rose/af_rose.c has a use-after-free because of a rose_accept race conditi
CVE-2023-51779 bt_sock_recvmsg in net/bluetooth/af_bluetooth.c in the Linux kernel through 6.6.8 has a use-after-free because of a bt_sock_ioctl race condition.
CVE-2023-22995 In the Linux kernel before 5.17, an error path in dwc3_qcom_acpi_register_core in drivers/usb/dwc3/dwc3-qcom.c lacks certain platform_device_put and

Version: 5.4.0-1078.84 2024-01-15 18:08:41 UTC

 linux-bluefield (5.4.0-1078.84) focal; urgency=medium
   * focal/linux-bluefield: 5.4.0-1078.84 -proposed tracker (LP: #2048244)
   [ Ubuntu: 5.4.0-171.189 ]
   * focal/linux: 5.4.0-171.189 -proposed tracker (LP: #2048282)
   * Packaging resync (LP: #1786013)
     - [Packaging] remove helper scripts
     - [Packaging] update annotations scripts
     - debian/dkms-versions -- update from kernel-versions (main/2024.01.08)
   * Page fault in RDMA ODP triggers BUG_ON during MMU notifier registration
     (LP: #2046534)
     - RDMA/odp: Ensure the mm is still alive before creating an implicit child
   * Hotplugging SCSI disk in QEMU VM fails (LP: #2047382)
     - Revert "PCI: acpiphp: Reassign resources on bridge if necessary"
   * CVE-2023-6040
     - netfilter: nf_tables: Reject tables of unsupported family
   * kernel_selftests failures on kernel-P10d-LPAR10.ppc64el.10
     (LP: #2032641)
     - selftests: Skip TM tests on synthetic TM implementations
   * [Debian] autoreconstruct - Do not generate chmod -x for deleted files
     (LP: #2045562)
     - [Debian] autoreconstruct - Do not generate chmod -x for deleted files
   * CVE-2023-6931
     - perf/core: Add a new read format to get a number of lost samples
     - perf: Fix perf_event_validate_size()
     - perf: Fix perf_event_validate_size() lockdep splat
   * CVE-2023-6932
     - ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet
   * CVE-2023-6606
     - smb: client: fix OOB in smbCalcSize()
   * CVE-2023-45863
     - kobject: Fix slab-out-of-bounds in fill_kobj_path()
   * Focal update: v5.4.259 upstream stable release (LP: #2043724)
     - RDMA/cxgb4: Check skb value for failure to allocate
     - lib/test_meminit: fix off-by-one error in test_pages()
     - pwm: hibvt: Explicitly set .polarity in .get_state()
     - HID: logitech-hidpp: Fix kernel crash on receiver USB disconnect
     - quota: Fix slow quotaoff
     - net: prevent address rewrite in kernel_bind()
     - drm: etvnaviv: fix bad backport leading to warning
     - drm/msm/dsi: skip the wait for video mode done if not applicable
     - ravb: Fix up dma_free_coherent() call in ravb_remove()
     - ieee802154: ca8210: Fix a potential UAF in ca8210_probe
     - mlxsw: fix mlxsw_sp2_nve_vxlan_learning_set() return type
     - xen-netback: use default TX queue size for vifs
     - drm/vmwgfx: fix typo of sizeof argument
     - ixgbe: fix crash with empty VF macvlan list
     - net: nfc: fix races in nfc_llcp_sock_get() and nfc_llcp_sock_get_sn()
     - nfc: nci: assert requested protocol is valid
     - workqueue: Override implicit ordered attribute in
     - dmaengine: stm32-mdma: abort resume if no ongoing transfer
     - usb: xhci: xhci-ring: Use sysdev for mapping bounce buffer
     - net: usb: dm9601: fix uninitialized variable use in dm9601_mdio_read
     - usb: dwc3: Soft reset phy on probe for host
     - usb: musb: Get the musb_qh poniter after musb_giveback
     - usb: musb: Modify the "HWVers" register address
     - iio: pressure: bmp280: Fix NULL pointer exception
     - iio: pressure: dps310: Adjust Timeout Settings
     - iio: pressure: ms5611: ms5611_prom_is_valid false negative bug
     - mcb: remove is_added flag from mcb_device struct
     - libceph: use kernel_connect()
     - ceph: fix incorrect revoked caps assert in ceph_fill_file_size()
     - Input: powermate - fix use-after-free in powermate_config_complete
     - Input: psmouse - fix fast_reconnect function for PS/2 mode
     - Input: xpad - add PXN V900 support
     - cgroup: Remove duplicates in cgroup v1 tasks file
     - pinctrl: avoid unsafe code pattern in find_pinctrl()
     - usb: gadget: udc-xilinx: replace memcpy with memcpy_toio
     - usb: gadget: ncm: Handle decoding of multiple NTB's in unwrap call
     - x86/cpu: Fix AMD erratum #1485 on Zen4-based CPUs
     - dmaengine: mediatek: Fix deadlock caused by synchronize_irq()
     - powerpc/8xx: Fix pte_access_permitted() for PAGE_NONE
     - powerpc/64e: Fix wrong test in __ptep_test_and_clear_young()
     - ravb: Fix use-after-free issue in ravb_tx_timeout_work()
     - Documentation: sysctl: align cells in second content column
     - usb: hub: Guard against accesses to uninitialized BOS descriptors
     - Bluetooth: hci_event: Ignore NULL link key
     - Bluetooth: Reject connection with the device which has same BD_ADDR
     - Bluetooth: Fix a refcnt underflow problem for hci_conn
     - Bluetooth: vhci: Fix race when opening vhci device
     - Bluetooth: hci_event: Fix coding style
     - Bluetooth: avoid memcmp() out of bounds warning
     - ice: fix over-shifted variable
     - nfc: nci: fix possible NULL pointer dereference in send_acknowledge()
     - regmap: fix NULL deref on lookup
     - KVM: x86: Mask LVTPC when handling a PMI
     - netfilter: nft_payload: fix wrong mac header matching
     - qed: fix LL2 RX buffer allocation
     - xfrm: fix a data-race in xfrm_gen_index()
     - xfrm: interface: use DEV_STATS_INC()
     - net: ipv4: fix return value check in esp_remove_trailer
     - net: ipv6: fix return value check in esp_remove_trailer
     - net: rfkill: gpio: prevent value glitch during probe
     - tcp: fix excessive TLP and RACK timeouts from HZ rounding
     - tcp: tsq: relax tcp_small_queue_check() when rtx queue contains a single skb
     - tun: prevent negative ifindex
     - ipv4: fib: annotate races around nh->nh_saddr_genid and nh->nh_saddr
     - net: usb: smsc95xx: Fix an error code in smsc95xx_reset()
     - i40e: prevent crash on probe if hw registers have invalid values
     - net/sched: sch_hfsc: upgrade 'rt' to 'sc' when it becomes a inner curve
     - neighbor: tracing: Move pin6 inside CONFIG_IPV6=y section
     - netfilter: nft_set_rbtree: .deactivate fails if element has expired
     - net: pktgen: Fix interface flags printing
     - resource: Add irqresource_disabled()
     - ACPI: Drop acpi_dev_irqresource_disabled()

1786013 Packaging resync
2046534 Page fault in RDMA ODP triggers BUG_ON during MMU notifier registration
2047382 Hotplugging SCSI disk in QEMU VM fails
2032641 kernel_selftests failures on kernel-P10d-LPAR10.ppc64el.10 \t
2045562 [Debian] autoreconstruct - Do not generate chmod -x for deleted files
2043724 Focal update: v5.4.259 upstream stable release
2042107 Focal update: v5.4.258 upstream stable release
CVE-2023-6040 An out-of-bounds access vulnerability involving netfilter was reported and fixed as: f1082dd31fe4 (netfilter: nf_tables: Reject tables of unsupported
CVE-2023-6931 A heap out-of-bounds write vulnerability in the Linux kernel's Performance Events system component can be exploited to achieve local privilege escala
CVE-2023-6932 A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation. A race condition c
CVE-2023-6606 An out-of-bounds read vulnerability was found in smbCalcSize in fs/smb/client/netmisc.c in the Linux Kernel. This issue could allow a local attacker
CVE-2023-45863 An issue was discovered in lib/kobject.c in the Linux kernel before 6.2.3. With root access, an attacker can trigger a race condition that results in

Version: 5.4.0-1076.82 2023-11-30 14:11:27 UTC

 linux-bluefield (5.4.0-1076.82) focal; urgency=medium
   * focal/linux-bluefield: 5.4.0-1076.82 -proposed tracker (LP: #2041621)
   * pwr-mlxbf: Several bug fixes for focal (LP: #2041996)
     - SAUCE: Fix race condition between loading pwr-mlxbf.c and gpio-mlxbf2.c
     - SAUCE: pwr-mlxbf.c: rmmod results in kernel panic due to access to NULL
     - SAUCE: pwr-mlxbf: support graceful reboot instead of soft reset
   [ Ubuntu: 5.4.0-169.187 ]
   * focal/linux: 5.4.0-169.187 -proposed tracker (LP: #2044375)
   * USB bus error after upgrading to proposed kernel on lunar, jammy and focal
     (LP: #2043197)
     - USB: core: Fix oversight in SuperSpeed initialization
   * Packaging resync (LP: #1786013)
     - [Packaging] resync git-ubuntu-log
     - [Packaging] resync update-dkms-versions helper
     - [Packaging] update annotations scripts
   [ Ubuntu: 5.4.0-168.186 ]
   * focal/linux: 5.4.0-168.186 -proposed tracker (LP: #2041652)
   * Focal update: v5.4.257 upstream stable release (LP: #2040284)
     - erofs: ensure that the post-EOF tails are all zeroed
     - ARM: pxa: remove use of symbol_get()
     - mmc: au1xmmc: force non-modular build and remove symbol_get usage
     - net: enetc: use EXPORT_SYMBOL_GPL for enetc_phc_index
     - rtc: ds1685: use EXPORT_SYMBOL_GPL for ds1685_rtc_poweroff
     - modules: only allow symbol_get of EXPORT_SYMBOL_GPL modules
     - USB: serial: option: add Quectel EM05G variant (0x030e)
     - USB: serial: option: add FOXCONN T99W368/T99W373 product
     - HID: wacom: remove the battery when the EKR is off
     - staging: rtl8712: fix race condition
     - Bluetooth: btsdio: fix use after free bug in btsdio_remove due to race
     - serial: sc16is7xx: fix bug when first setting GPIO direction
     - firmware: stratix10-svc: Fix an NULL vs IS_ERR() bug in probe
     - fsi: master-ast-cf: Add MODULE_FIRMWARE macro
     - nilfs2: fix general protection fault in nilfs_lookup_dirty_data_buffers()
     - nilfs2: fix WARNING in mark_buffer_dirty due to discarded buffer reuse
     - pinctrl: amd: Don't show `Invalid config param` errors
     - 9p: virtio: make sure 'offs' is initialized in zc_request
     - ASoC: da7219: Flush pending AAD IRQ when suspending
     - ASoC: da7219: Check for failure reading AAD IRQ events
     - ethernet: atheros: fix return value check in atl1c_tso_csum()
     - vxlan: generalize vxlan_parse_gpe_hdr and remove unused args
     - m68k: Fix invalid .section syntax
     - s390/dasd: use correct number of retries for ERP requests
     - s390/dasd: fix hanging device after request requeue
     - fs/nls: make load_nls() take a const parameter
     - ASoc: codecs: ES8316: Fix DMIC config
     - ASoC: atmel: Fix the 8K sample parameter in I2SC master
     - platform/x86: intel: hid: Always call BTNL ACPI method
     - platform/x86: huawei-wmi: Silence ambient light sensor
     - security: keys: perform capable check only on privileged operations
     - clk: fixed-mmio: make COMMON_CLK_FIXED_MMIO depend on HAS_IOMEM
     - net: usb: qmi_wwan: add Quectel EM05GV2
     - idmaengine: make FSL_EDMA and INTEL_IDMA64 depends on HAS_IOMEM
     - scsi: qedi: Fix potential deadlock on &qedi_percpu->p_work_lock
     - netlabel: fix shift wrapping bug in netlbl_catmap_setlong()
     - bnx2x: fix page fault following EEH recovery
     - sctp: handle invalid error codes without calling BUG()
     - cifs: add a warning when the in-flight count goes negative
     - scsi: storvsc: Always set no_report_opcodes
     - ALSA: seq: oss: Fix racy open/close of MIDI devices
     - platform/mellanox: Fix mlxbf-tmfifo not handling all virtio CONSOLE
     - powerpc/32s: Fix assembler warning about r0
     - udf: Check consistency of Space Bitmap Descriptor
     - udf: Handle error when adding extent to a file
     - Revert "net: macsec: preserve ingress frame ordering"
     - reiserfs: Check the return value from __getblk()
     - eventfd: Export eventfd_ctx_do_read()
     - eventfd: prevent underflow for eventfd semaphores
     - new helper: lookup_positive_unlocked()
     - fs: Fix error checking for d_hash_and_lookup()
     - tmpfs: verify {g,u}id mount options correctly
     - OPP: Fix passing 0 to PTR_ERR in _opp_attach_genpd()
     - x86/asm: Make more symbols local
     - x86/boot: Annotate local functions
     - x86/decompressor: Don't rely on upper 32 bits of GPRs being preserved
     - perf/imx_ddr: don't enable counter0 if none of 4 counters are used
     - cpufreq: powernow-k8: Use related_cpus instead of cpus in driver.exit()
     - bpf: Clear the probe_addr for uprobe
     - tcp: tcp_enter_quickack_mode() should be static
     - regmap: rbtree: Use alloc_flags for memory allocations
     - spi: tegra20-sflash: fix to check return value of platform_get_irq() in
     - can: gs_usb: gs_usb_receive_bulk_callback(): count RX overflow errors also
       in case of OOM
     - wifi: mwifiex: Fix OOB and integer underflow when rx packets
     - mwifiex: switch from 'pci_' to 'dma_' API
     - wifi: mwifiex: fix error recovery in PCIE buffer descriptor management
     - crypto: stm32 - Properly handle pm_runtime_get failing
     - Bluetooth: nokia: fix value check in nokia_bluetooth_serdev_probe()
     - crypto: caam - fix unchecked return value error
     - hwrng: iproc-rng200 - use semicolons rather than commas to separate
     - hwrng: iproc-rng200 - Implement suspend and resume calls
     - lwt: Fix return values of BPF xmit ops
     - lwt: Check LWTUNNEL_XMIT_CONTINUE strictly
     - fs: ocfs2: namei: check return value of ocfs2_add_entry()
     - wifi: mwifiex: fix memory leak in mwifiex_histogram_read()
     - wifi: mwifiex: Fix missed return in oob checks failed path
     - wifi: ath9k: fix races between ath9k_wmi_cmd and ath9k_wmi_ctrl_rx
     - wifi: ath9k: protect WMI command response buffer replacement with a l

2041996 pwr-mlxbf: Several bug fixes for focal
2043197 USB bus error after upgrading to proposed kernel on lunar and jammy
1786013 Packaging resync
2040284 Focal update: v5.4.257 upstream stable release
2039446 Focal update: v5.4.256 upstream stable release
2039440 Focal update: v5.4.255 upstream stable release
2039291 Focal update: v5.4.254 upstream stable release
2038652 Focal update: v5.4.253 upstream stable release
CVE-2023-39189 A flaw was found in the Netfilter subsystem in the Linux kernel. The nfnl_osf_add_callback function did not validate the user mode controlled opt_num
CVE-2023-45871 An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel before 6.5.3. A buffer size may not be ade
CVE-2023-39193 A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local pr
CVE-2023-39192 A flaw was found in the Netfilter subsystem in the Linux kernel. The xt_u32 module did not validate the fields in the xt_u32 structure. This flaw all
CVE-2023-31085 An issue was discovered in drivers/mtd/ubi/cdev.c in the Linux kernel 6.2. There is a divide-by-zero error in do_div(sz,mtd->erasesize), used indirec
CVE-2023-5178 A use-after-free vulnerability was found in drivers/nvme/target/tcp.c` ...
CVE-2023-42754 A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before c
CVE-2023-37453 An issue was discovered in the USB subsystem in the Linux kernel through 6.4.2. There is an out-of-bounds and crash in read_descriptors in drivers/us

