UbuntuUpdates.org

Package "linux-azure-nvidia-6.14"

This package belongs to a PPA: Canonical Kernel Team

Name: linux-azure-nvidia-6.14

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • Linux kernel version specific cloud tools for version 6.14.0
  • Header files related to Linux kernel version 6.14.0
  • Header files related to Linux kernel version 6.14.0
  • Header files related to Linux kernel version 6.14.0

Latest version: 6.14.0-1009.9
Release: noble (24.04)
Level: base
Repository: main

Links



Other versions of "linux-azure-nvidia-6.14" in Noble

Repository Area Version
security main 6.14.0-1007.7
updates main 6.14.0-1007.7
proposed main 6.14.0-1009.9

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 6.14.0-1009.9 2025-10-31 23:08:29 UTC

 linux-azure-nvidia-6.14 (6.14.0-1009.9) noble; urgency=medium
 .
   * noble/linux-azure-nvidia-6.14: 6.14.0-1009.9 -proposed tracker (LP: #2127629)
 .
   * Set CONFIG_IOMMU_DEFAULT_PASSTHROUGH as default for Nvidia CPUs
     (LP: #2129776)
     - [Config] azure-nvidia-6.14: Update annotations to set
       CONFIG_IOMMU_DEFAULT_PASSTHROUGH
 .
   * mediatek EINT driver for NVIDIA CX7 hotplug management (LP: #2120474)
     - NVIDIA: SAUCE: azure-nvidia-6.14: MEDIATEK: pinctrl: mediatek: Add EINT
       Driver for CX7 hot plug on DGX Spark
 .
   [ Ubuntu-nvidia-6.14: 6.14.0-1013.13 ]
 .
   * noble/linux-nvidia-6.14: 6.14.0-1013.13 -proposed tracker (LP: #2130053)
   * backport: "drm/ast: Use msleep instead of mdelay for edid read"
     (LP: #2125667)
     - drm/ast: Use msleep instead of mdelay for edid read
   * Set CONFIG_IOMMU_DEFAULT_PASSTHROUGH as default for Nvidia CPUs
     (LP: #2129776)
     - NVIDIA: SAUCE: iommu/arm-smmu-v3: Set DGX Spark iGPU default domain type
       to DMA
     - [Config] nvidia-6.14: Update annotations to set
       CONFIG_IOMMU_DEFAULT_PASSTHROUGH
   * mediatek EINT driver for NVIDIA CX7 hotplug management (LP: #2120474)
     - NVIDIA: SAUCE: MEDIATEK: pinctrl: mediatek: Add EINT Driver for CX7 hot
       plug on DGX Spark
   * IOMMU: Support contiguous bit in translation tables (LP: #2112600)
     - perf hist stdio: Do bounds check when printing callchains to avoid UB
       with new gcc versions
     - NVIDIA: SAUCE: iommu/io-pgtable-arm: backport contiguous bit support
   * mt7925: Introduce CSA support in non-MLO mode (LP: #2129209)
     - NVIDIA: SAUCE: wifi: mt76: mt7925: introduce CSA support in non-MLO mode
   * linux-nvidia: Do not produce linux-modules-extra package (LP: #2121416)
     - [Packaging] nvidia-6.14: Move wireless-regdb dependency to the linux-
       modules package
 .
   [ Ubuntu-nvidia-6.14: 6.14.0-1012.12 ]
 .
   * noble/linux-nvidia-6.14: 6.14.0-1012.12 -proposed tracker (LP: #2127928)
   * Packaging resync (LP: #1786013)
     - [Packaging] update variants
     - [Packaging] nvidia-6.14: Remove dwarfdump from Build-Depends
   * Binaries perf and bpftool missing from linux-tools-6.14.0-*nvidia{,-64k}
     packages (LP: #2127953)
     - [Packaging] Add do_tools_noble_hwe to include perf and bpftool in
       SRCPKGNAME-tools-$(abi_release)
     - [Packaging] nvidia-6.14: enable do_tools_noble_hwe
   * Support for 800Gb for CX9 devices (LP: #2126973)
     - ethtool: Add support for 200Gbps per lane link modes
     - net/mlx5: Add support for 200Gbps per lane link modes
     - net/mlx5e: Support FEC settings for 200G per lane link modes
   * QSPI Transfer failed with timeout: 0 (LP: #2126589)
     - NVIDIA: SAUCE: spi: tegra210-quad: Fix timeout handling
     - NVIDIA: SAUCE: spi: tegra210-quad: Check hardware status on timeout
 .
   [ Ubuntu-azure-6.14: 6.14.0-1016.16~24.04.1 ]
 .
   * noble/linux-azure-6.14: 6.14.0-1016.16~24.04.1 -proposed tracker (LP: #2127630)
   [ Ubuntu-azure: 6.14.0-1016.16 ]
   * plucky/linux-azure: 6.14.0-1016.16 -proposed tracker (LP: #2127631)
   * Add pvpanic kernel modules to linux-modules (LP: #2126659)
     - [Packaging] azure: Add pvpanic kernel modules to linux-modules
   * [STORVSC] [Backport] Backport for Linux storage driver patch for fixing
     performance issues (LP: #2128842)
     - scsi: storvsc: Prefer returning channel with the same CPU as on the I/O
       issuing CPU
   * [MANA][Backport] net: mana: Reduce waiting time if HWC not responding
     (LP: #2128833)
     - net: mana: Reduce waiting time if HWC not responding
   * Mana-IB Patches - Part 2 (LP: #2128662)
     - RDMA/mana_ib: add support of multiple ports
     - RDMA/mana_ib: Access remote atomic for MRs
     - RDMA/mana_ib: support of the zero based MRs
     - RDMA/mana_ib: Fix integer overflow during queue creation
     - RDMA/mana_ib: Use safer allocation function()
   * Mana-IB Patches - Part 1 (LP: #2127201)
     - RDMA/mana_ib: Extend modify QP
     - RDMA/mana_ib: Drain send wrs of GSI QP
     - RDMA/mana_ib: add additional port counters
   [ Ubuntu: 6.14.0-36.36 ]
   * plucky/linux: 6.14.0-36.36 -proposed tracker (LP: #2127650)
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.master/dkms-versions -- update from kernel-versions
       (main/2025.10.13)
   * [SRU] Add support of cs42l43 and cs35l56 on ThinkPad P1 and P16
     (LP: #2122379)
     - ASoC: Intel: sof_sdw: Add quirks for Lenovo P1 and P16
   * ubuntu_kselftests_net:nl_netdev.py regression plucky nsim_queue_stop
     [netdevsim] (LP: #2121866)
     - net: devmem: don't call queue stop / start when the interface is down
   * [SRU] Fix kernel crash in intel-thc driver (LP: #2119738)
     - HID: intel-thc-hid: intel-quicki2c: Fix ACPI dsd ICRS/ISUB length
     - HID: intel-thc-hid: intel-thc: Fix incorrect pointer arithmetic in I2C
       regs save
   * Enable Xilinx PS UART configs (LP: #2121337)
     - [Config] Enable Xilinx PS UART configs
   * [SRU] Do not instantiate SPD5118 sensors on i801 SMBus controllers
     (LP: #2114963)
     - i2c: smbus: introduce Write Disable-aware SPD instantiating functions
     - SAUCE: i2c: i801: Do not instantiate spd5118 under SPD Write Disable
   * UBSAN: shift-out-of-bounds in drivers/edac/skx_common.c:452:16
     (LP: #2119713)
     - EDAC/i10nm: Skip DIMM enumeration on a disabled memory controller
   * [SRU][Q/P/N:hwe-6.14] mt7925: Add MBSS support (LP: #2119479)
     - wifi: mt76: mt7925: add MBSSID support
   * Add pvpanic kernel modules to linux-modules (LP: #2126659)
     - [Packaging] Add pvpanic kernel modules to linux-modules
   * r8169 can not wake on LAN via SFP moudule (LP: #2123901)
     - r8169: set EEE speed down ratio to 1
   * ensure mptcp keepalives are honored when set (LP: #2125444)
     - mptcp: sockopt: make sync_socket_options propagate SOCK_KEEPOPEN
   * [SRU] Re-enable common modes for eDP on AMDGPU (LP: #2125471)
     - drm/amd/display: Use scaling for non-native resolutions on eDP
  

Source diff to previous version
2129776 Set CONFIG_IOMMU_DEFAULT_PASSTHROUGH as default for Nvidia CPUs
2120474 mediatek EINT driver for NVIDIA CX7 hotplug management
2125667 backport: \
2112600 IOMMU: Support contiguous bit in translation tables
2129209 mt7925: Introduce CSA support in non-MLO mode
2121416 linux-nvidia: Do not produce linux-modules-extra package
1786013 Packaging resync
2127953 Binaries perf and bpftool missing from linux-tools-6.14.0-*nvidia{,-64k} packages
2126973 Support for 800Gb for CX9 devices
2126659 Add pvpanic kernel modules to linux-modules
2128842 [STORVSC] [Backport] Backport for Linux storage driver patch for fixing performance issues
2128833 [MANA][Backport] net: mana: Reduce waiting time if HWC not responding
2128662 Mana-IB Patches - Part 2
2121866 ubuntu_kselftests_net:nl_netdev.py regression plucky nsim_queue_stop [netdevsim]
2119738 [SRU] Fix kernel crash in intel-thc driver
2121337 Enable Xilinx PS UART configs
2114963 [SRU] Do not instantiate SPD5118 sensors on i801 SMBus controllers
2119713 UBSAN: shift-out-of-bounds in drivers/edac/skx_common.c:452:16
2123901 r8169 can not wake on LAN via SFP moudule
2125444 ensure mptcp keepalives are honored when set
2125471 [SRU] Re-enable common modes for eDP on AMDGPU
2103680 System hangs when running the memory stress test
2125053 UBUNTU: fan: fail to check kmalloc() return could cause a NULL pointer dereference
2122435 drm/xe: support power limits
2122397 A few HP laptops are failing to respond during test runs after upgrading to the 6.14.0-1012-oem kernel.
2126463 Plucky update: upstream stable patchset 2025-09-30
2125820 Plucky update: upstream stable patchset 2025-09-26
2123805 Plucky update: upstream stable patchset 2025-09-15
2123745 Plucky update: upstream stable patchset 2025-09-14
2124105 VMSCAPE CVE-2025-40300
CVE-2025-38660 In the Linux kernel, the following vulnerability has been resolved: [ceph] parse_longname(): strrchr() expects NUL-terminated string ... and parse_
CVE-2024-50047 In the Linux kernel, the following vulnerability has been resolved: smb: client: fix UAF in async decryption Doing an async decryption (large read)
CVE-2025-38678 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: reject duplicate device on updates A chain/flowtable upda
CVE-2025-38616 In the Linux kernel, the following vulnerability has been resolved: tls: handle data disappearing from under the TLS ULP TLS expects that it owns t
CVE-2025-40300 In the Linux kernel, the following vulnerability has been resolved: x86/vmscape: Add conditional IBPB mitigation VMSCAPE is a vulnerability that ex

Version: 6.14.0-1007.7 2025-10-04 08:08:12 UTC

 linux-azure-nvidia-6.14 (6.14.0-1007.7) noble; urgency=medium
 .
   * noble/linux-azure-nvidia-6.14: 6.14.0-1007.7 -proposed tracker (LP: #2123924)
 .
   * Plucky update: upstream stable patchset 2025-09-04 (LP: #2122072)
     - firmware: arm_ffa: Move memory allocation outside the mutex locking
     - firmware: arm_ffa: Replace mutex with rwlock to avoid sleep in atomic
       context
 .
   * sources list generation using dwarfdump takes up to 0.5hr in build process
     (LP: #2104911)
     - [Packaging] azure-nvidia-6.14: Don't generate list of source files
 .
   [ Ubuntu-azure-6.14: 6.14.0-1014.14~24.04.1 ]
 .
   * noble/linux-azure-6.14: 6.14.0-1014.14~24.04.1 -proposed tracker (LP: #2123925)
   * sources list generation using dwarfdump takes up to 0.5hr in build process
     (LP: #2104911)
     - [Packaging] azure-6.14: Don't generate list of source files
   [ Ubuntu-azure: 6.14.0-1014.14 ]
   * plucky/linux-azure: 6.14.0-1014.14 -proposed tracker (LP: #2123926)
   * sources list generation using dwarfdump takes up to 0.5hr in build process
     (LP: #2104911)
     - [Packaging] azure: Don't generate list of source files
   * MANA Catchup (LP: #2125704)
     - RDMA/mana_ib: Allow registration of DMA-mapped memory in PDs
     - RDMA/mana_ib: implement get_dma_mr
     - RDMA/mana_ib: helpers to allocate kernel queues
     - RDMA/mana_ib: create kernel-level CQs
     - RDMA/mana_ib: Create and destroy UD/GSI QP
     - RDMA/mana_ib: UD/GSI QP creation for kernel
     - RDMA/mana_ib: create/destroy AH
     - RDMA/mana_ib: UD/GSI work requests
     - RDMA/mana_ib: implement req_notify_cq
     - RDMA/mana_ib: extend mana QP table
     - RDMA/mana_ib: polling of CQs for GSI/UD
     - RDMA/mana_ib: indicate CM support
     - RDMA/mana_ib: request error CQEs when supported
     - RDMA/mana_ib: Implement DMABUF MR support
     - RDMA/mana_ib: Fix error code in probe()
     - net: mana: Probe rdma device in mana driver
     - RDMA/mana_ib: Add support of 4M, 1G, and 2G pages
     - RDMA/mana_ib: Add support of mana_ib for RNIC and ETH nic
     - RDMA/mana_ib: unify mana_ib functions to support any gdma device
     - net: mana: Add support for auxiliary device servicing events
     - net: mana: Handle Reset Request from MANA NIC
   [ Ubuntu: 6.14.0-34.34 ]
   * plucky/linux: 6.14.0-34.34 -proposed tracker (LP: #2123945)
   * [25.04 FEAT] [post announcement] [KRN2304] CPU-MF Counters for new IBM Z
     hardware - perf part (LP: #2103415)
     - perf list: Add IBM z17 event descriptions
   * Kernel fails to build when coresight is enabled (LP: #2122527)
     - Coresight: Introduce a new struct coresight_path
     - Coresight: Change functions to accept the coresight_path
     - coresight: change coresight_device lock type to raw_spinlock_t
   * memory leaks when configuring a small rate limit in audit (LP: #2122554)
     - audit: fix skb leak when audit rate limit is exceeded
   * [UBUNTU 24.04] s390/pci: Don't abort recovery for user-space drivers
     (LP: #2121150)
     - s390/pci: Allow automatic recovery with minimal driver support
   * [AMDGPU] Call trace occurs when unplugging a HDMI/DP/VGA cable on Dell
     platforms (LP: #2116908)
     - drm/amd/display: limit clear_update_flags to dcn32 and above
     - drm/amd/display: Allow DCN301 to clear update flags
   * sources list generation using dwarfdump takes up to 0.5hr in build process
     (LP: #2104911)
     - [Packaging] Don't generate list of source files
   * [SRU] Apparmor: Unshifted uids for hardlinks and unix sockets in user
     namespaces (LP: #2121257)
     - apparmor: shift ouid when mediating hard links in userns
     - apparmor: shift uid when mediating af_unix in userns
   * Plucky update: upstream stable patchset 2025-09-04 (LP: #2122072)
     - rtc: pcf2127: add missing semicolon after statement
     - rtc: pcf2127: fix SPI command byte for PCF2131
     - rtc: cmos: use spin_lock_irqsave in cmos_interrupt
     - virtio-net: xsk: rx: fix the frame's length check
     - virtio-net: ensure the received length does not exceed allocated size
     - net: txgbe: request MISC IRQ in ndo_open
     - vsock/vmci: Clear the vmci transport packet properly when initializing
       it
     - net: libwx: fix the incorrect display of the queue number
     - mmc: sdhci: Add a helper function for dump register in dynamic debug
       mode
     - Revert "mmc: sdhci: Disable SD card clock before changing parameters"
     - mmc: core: sd: Apply BROKEN_SD_DISCARD quirk earlier
     - Bluetooth: HCI: Set extended advertising data synchronously
     - Bluetooth: hci_sync: revert some mesh modifications
     - Bluetooth: MGMT: set_mesh: update LE scan interval and window
     - Bluetooth: MGMT: mesh_send: check instances prior disabling advertising
     - iommufd/selftest: Fix iommufd_dirty_tracking with large hugepage sizes
     - regulator: gpio: Fix the out-of-bounds access to drvdata::gpiods
     - Input: cs40l50-vibra - fix potential NULL dereference in
       cs40l50_upload_owt()
     - usb: typec: altmodes/displayport: do not index invalid pin_assignments
     - mtk-sd: Fix a pagefault in dma_unmap_sg() for not prepared data
     - mtk-sd: Prevent memory corruption from DMA map failure
     - mtk-sd: reset host->mrq on prepare_data() error
     - drm/v3d: Disable interrupts before resetting the GPU
     - firmware: arm_ffa: Fix memory leak by freeing notifier callback node
     - firmware: arm_ffa: Move memory allocation outside the mutex locking
     - firmware: arm_ffa: Replace mutex with rwlock to avoid sleep in atomic
       context
     - arm64: dts: apple: t8103: Fix PCIe BCM4377 nodename
     - platform/mellanox: mlxbf-tmfifo: fix vring_desc.len assignment
     - RDMA/mlx5: Fix unsafe xarray access in implicit ODP handling
     - RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert
     - nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net_init() fails.
     - NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN
     -

Source diff to previous version
2122072 Plucky update: upstream stable patchset 2025-09-04
2104911 sources list generation using dwarfdump takes up to 0.5hr in build process
2125704 MANA Catchup
2103415 [25.04 FEAT] [post announcement] [KRN2304] CPU-MF Counters for new IBM Z hardware - perf part
2122527 Kernel fails to build when coresight is enabled
2122554 memory leaks when configuring a small rate limit in audit
2121150 [UBUNTU 24.04] s390/pci: Don't abort recovery for user-space drivers
2121257 [SRU] Apparmor: Unshifted uids for hardlinks and unix sockets in user namespaces
2121149 [UBUNTU 24.04] s390/pci: Fix stale function handles in error handling
2121266 Plucky update: upstream stable patchset 2025-08-22
2120812 Plucky update: upstream stable patchset 2025-08-18
1786013 Packaging resync
CVE-2025-39682 In the Linux kernel, the following vulnerability has been resolved: tls: fix handling of zero-length records on the rx_list Each recvmsg() call mus
CVE-2025-38541 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: Fix null-ptr-deref in mt7925_thermal_init() devm_kasprintf(
CVE-2025-38477 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_qfq: Fix race condition on qfq_aggregate A race condition can oc
CVE-2025-38500 In the Linux kernel, the following vulnerability has been resolved: xfrm: interface: fix use-after-free after changing collect_md xfrm interface co
CVE-2025-38617 In the Linux kernel, the following vulnerability has been resolved: net/packet: fix a race in packet_set_ring() and packet_notifier() When packet_s
CVE-2025-38618 In the Linux kernel, the following vulnerability has been resolved: vsock: Do not allow binding to VMADDR_PORT_ANY It is possible for a vsock to au

Version: 6.14.0-1004.4~24.04.1 2025-09-11 21:08:33 UTC

 linux-azure-nvidia-6.14 (6.14.0-1004.4~24.04.1) noble; urgency=medium
 .
   * noble/linux-azure-nvidia-6.14: 6.14.0-1004.4~24.04.1 -proposed tracker (LP: #2120105)
 .
   * Kernel fails to build when coresight is enabled (LP: #2122527)
     - Coresight: Introduce a new struct coresight_path
     - Coresight: Change functions to accept the coresight_path
     - coresight: change coresight_device lock type to raw_spinlock_t
 .
   * Set CONFIG_IOMMU_DEFAULT_DMA_LAZY as default for Nvidia CPUs
     (LP: #2119661)
     - [Config] azure-nvidia-6.14: Update annotations to set
       CONFIG_IOMMU_DEFAULT_DMA_LAZY
 .
   * Backport support for Grace virtualization features: vEVENTQ, HW QUEUE, and
     vEGM (LP: #2119656)
     - NVIDIA: SAUCE: arm64: configs: enable NVGRACE_EGM as module
 .
   * Backport support for arm64 BRBE and a future NVIDIA CPU ID (LP: #2118663)
     - [Config] azure-nvidia-6.14: Enable BRBE
 .
   * azure: Add the drm_ttm_helper module to the inclusion list (LP: #2119016)
     - [Packaging] azure-nvidia-6.14: Add the drm_ttm_helper module to the
       inclusion list
 .
   [ Ubuntu-nvidia-6.14: 6.14.0-1009.9]
 .
   * noble/linux-nvidia-6.14: 6.14.0-1009.9 -proposed tracker (LP: #2121703)
   * Remove obsolete build flags in derivative kernels (LP: #2077306)
     - [Packaging] nvidia-6.14: Drop unused or invalid rule flags
   * Packaging resync (LP: #1786013)
     - [Packaging] resync git-ubuntu-log
     - [Packaging] debian.nvidia-6.14/dkms-versions -- update from kernel-
       versions (main/d2025.08.25)
   * linux-nvidia: Do not produce linux-modules-extra package (LP: #2121416)
     - NVIDIA: [Packaging] Do not produce modules-extra packages
   * Backport: iommu/arm-smmu-v3: Fix smmu_domain->nr_ats_masters decrement
     (LP: #2121415)
     - iommu/arm-smmu-v3: Fix smmu_domain->nr_ats_masters decrement
   * Revert Fix incorrect iommu_groups with PCIe ACS (LP: #2121418)
     - Revert "NVIDIA: SAUCE: PCI: Check ACS Extended flags for
       pci_bus_isolated()"
     - Revert "NVIDIA: SAUCE: PCI: Check ACS DSP/USP redirect bits in
       pci_enable_pasid()"
     - Revert "NVIDIA: SAUCE: PCI: Enable ACS Enhanced bits for enable_acs and
       config_acs"
     - Revert "NVIDIA: SAUCE: PCI: Add the ACS Enhanced Capability definitions"
     - Revert "NVIDIA: SAUCE: iommu: Validate that pci_for_each_dma_alias()
       matches the groups"
     - Revert "NVIDIA: SAUCE: iommu: Compute iommu_groups properly for PCIe
       MFDs"
     - Revert "NVIDIA: SAUCE: PCI: Add pci_mfd_isolation()"
     - Revert "NVIDIA: SAUCE: PCI: Widen the acs_flags to u32 within the quirk
       callback"
     - Revert "NVIDIA: SAUCE: PCI: Use pci_acs_ctrl_isolated() for
       pci_quirk_al_acs()"
     - Revert "NVIDIA: SAUCE: PCI: Use pci_quirk_mf_endpoint_acs() for
       pci_quirk_amd_sb_acs()"
     - Revert "NVIDIA: SAUCE: PCI: Remove duplication in calling
       pci_acs_ctrl_enabled()"
     - Revert "NVIDIA: SAUCE: PCI: Add pci_reachable_set()"
     - Revert "NVIDIA: SAUCE: iommu: Organize iommu_group by member size"
     - Revert "NVIDIA: SAUCE: iommu: Compute iommu_groups properly for PCIe
       switches"
     - Revert "NVIDIA: SAUCE: PCI: Add pci_bus_isolation()"
     - Revert "NVIDIA: SAUCE: PCI: Move REQ_ACS_FLAGS into pci_regs.h as
       PCI_ACS_ISOLATED"
   * backport: "ACPI/PCI: Fix memory leak fix in pci_acpi_preserve_config"
     (LP: #2121451)
     - PCI/ACPI: Fix pci_acpi_preserve_config() memory leak
   * Pull-request for setting CPU frequency gov to performance (LP: #2028576)
     - [Config] nvidia-6.14: Use performance CPU frequency governor on amd64
   * Backport: iommu/arm-smmu-v3: Fix incorrect return in arm_smmu_attach_dev
     (LP: #2121161)
     - iommu/arm-smmu-v3: Fix incorrect return in arm_smmu_attach_dev
   * Backport: mm/hugetlb: don't crash when allocating a folio if there are no
     resv (LP: #2119577)
     - mm/hugetlb: don't crash when allocating a folio if there are no resv
   * Set CONFIG_IOMMU_DEFAULT_DMA_LAZY as default for Nvidia CPUs
     (LP: #2119661)
     - [Config] nvidia-6.14: Update annotations to set
       CONFIG_IOMMU_DEFAULT_DMA_LAZY
   * mt7925: Additional wifi fixes (LP: #2119687)
     - wifi: mt76: mt7925: fix incorrect scan probe IE handling for hw_scan
     - NVIDIA: SAUCE: wifi: mt76: mt7925: add MBSSID support
     - NVIDIA: SAUCE: wifi: mt76: mt7925: fix the wrong bss cleanup for SAP
   * Backport support for Grace virtualization features: vEVENTQ, HW QUEUE, and
     vEGM (LP: #2119656)
     - Revert "x86/module: prepare module loading for ROX allocations of text"
     - x86/ibt: Clean up is_endbr()
     - Revert "NVIDIA: SAUCE: iommu/arm-smmu-v3: Implement
       arm_smmu_get_msi_mapping_domain"
     - iommufd/fault: Remove iommufd_fault_domain_attach/detach/replace_dev()
     - Revert "NVIDIA: SAUCE: iommu/dma: Support MSIs through nested domains"
     - genirq/msi: Store the IOMMU IOVA directly in msi_desc instead of
       iommu_cookie
     - genirq/msi: Refactor iommu_dma_compose_msi_msg()
     - iommu: Make iommu_dma_prepare_msi() into a generic operation
     - iommu: Make @handle mandatory in iommu_{attach|replace}_group_handle()
     - iommu: Drop iommu_group_replace_domain()
     - iommu: Store either domain or handle in group->pasid_array
     - iommu: Swap the order of setting group->pasid_array and calling attach
       op of iommu drivers
     - iommu: Unexport iommu_fwspec_free()
     - iommu: Keep dev->iommu state consistent
     - irqchip: Have CONFIG_IRQ_MSI_IOMMU be selected by irqchips that need it
     - iommu: Turn fault_data to iommufd private pointer
     - iommufd: Implement sw_msi support natively
     - iommufd/fault: Move two fault functions out of the header
     - iommufd/fault: Add an iommufd_fault_init() helper
     - iommufd: Abstract an iommufd_eventq from iommufd_fault
     - iommufd: Rename fault.c to eventq.c
     - iommufd: Add IOMMUFD_OBJ_VEVENTQ and IOMMUFD_CMD_VEVENTQ_ALLOC
     - iommufd/v

Source diff to previous version
2119661 Set CONFIG_IOMMU_DEFAULT_DMA_LAZY as default for Nvidia CPUs
2119656 Backport support for Grace virtualization features: vEVENTQ, HW QUEUE, and vEGM
2118663 Backport support for arm64 BRBE and a future NVIDIA CPU ID
2119016 azure: Add the drm_ttm_helper module to the inclusion list
2077306 Remove obsolete build flags in derivative kernels
1786013 Packaging resync
2121416 linux-nvidia: Do not produce linux-modules-extra package
2121415 Backport: iommu/arm-smmu-v3: Fix smmu_domain-\u003enr_ats_masters decrement
2121418 Revert Fix incorrect iommu_groups with PCIe ACS
2121451 backport: \
2121161 Backport: iommu/arm-smmu-v3: Fix incorrect return in arm_smmu_attach_dev
2119577 Backport: mm/hugetlb: don't crash when allocating a folio if there are no resv
2119687 mt7925: Additional wifi fixes
2117095 sbsa_gwdt: seeing reboot due watchdog reset
2119958 [MANA][Backport] The big tcp enablement patch
2119690 [storvsc][Backport] scsi: storvsc: Increase the timeouts to storvsc_timeout
2119680 [MANA][Backport]net: mana: Record doorbell physical address in PF mode
2119485 MANA patch catch-up with azure-nvidia
2119686 net: mana: Expose additional hardware counters for drop and TC via ethtool
2119168 [MANA][Backport] patch: net: mana: Add debug logs in MANA network driver
2120454 Pytorch reports incorrect GPU memory causing \
2111521 nvme no longer detected on boot after upgrade to 6.8.0-60
2120233 kernel panic when reloading apparmor 5.0.0 profiles
2115478 [SRU] Add waiting latency for USB port resume
2118499 minimal kernel lacks modules for blk disk in arm64 openstack environments where config_drive is required
2116175 Support xe2_hpg
2119526 drm/xe: Lite restore breaks fdinfo drm-cycles-rcs reporting
2115738 I/O performance regression on NVMes under same bridge (dual port nvme)
2118965 BPF header file in wrong location
2112330 Internal microphone not working on ASUS VivoBook with Realtek ALC256 (Ubuntu 24.04 + kernel 6.15)
2111231 Documentation update for [Ubuntu25.04] \
2119603 Plucky update: upstream stable patchset 2025-08-06
2119039 Plucky update: v6.14.11 upstream stable release
2119010 Plucky update: v6.14.10 upstream stable release
2115678 Plucky update: v6.14.9 upstream stable release
2121449 Unable to put display on standby after resuming from hibernate
CVE-2025-38105 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Kill timer properly at removal The USB-audio MIDI code initial
CVE-2025-38114 In the Linux kernel, the following vulnerability has been resolved: e1000: Move cancel_work_sync to avoid deadlock Previously, e1000_down called ca
CVE-2025-38116 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix uaf in ath12k_core_init() When the execution of ath12k_core_h
CVE-2025-38306 In the Linux kernel, the following vulnerability has been resolved: fs/fhandle.c: fix a race in call of has_locked_children() may_decode_fh() is ca
CVE-2025-38272 In the Linux kernel, the following vulnerability has been resolved: net: dsa: b53: do not enable EEE on bcm63xx BCM63xx internal switches do not su
CVE-2025-38311 In the Linux kernel, the following vulnerability has been resolved: iavf: get rid of the crit lock Get rid of the crit lock. That frees us from the
CVE-2025-38128 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: reject malformed HCI_CMD_SYNC commands In 'mgmt_hci_cmd_sync()
CVE-2025-38130 In the Linux kernel, the following vulnerability has been resolved: drm/connector: only call HDMI audio helper plugged cb if non-null On driver rem
CVE-2025-38132 In the Linux kernel, the following vulnerability has been resolved: coresight: holding cscfg_csdev_lock while removing cscfg from csdev There'll be
CVE-2025-38137 In the Linux kernel, the following vulnerability has been resolved: PCI/pwrctrl: Cancel outstanding rescan work when unregistering It's possible to
CVE-2025-38139 In the Linux kernel, the following vulnerability has been resolved: netfs: Fix oops in write-retry from mis-resetting the subreq iterator Fix the r
CVE-2025-38140 In the Linux kernel, the following vulnerability has been resolved: dm: limit swapping tables for devices with zone write plugs dm_revalidate_zones
CVE-2025-38279 In the Linux kernel, the following vulnerability has been resolved: bpf: Do not include stack ptr register in precision backtracking bookkeeping Yi
CVE-2025-38314 In the Linux kernel, the following vulnerability has been resolved: virtio-pci: Fix result size returned for the admin command completion The resul
CVE-2025-38316 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: avoid NULL pointer dereference in mt7996_set_monitor() The
CVE-2025-38281 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Add NULL check in mt7996_thermal_init devm_kasprintf() can
CVE-2025-38284 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: pci: configure manual DAC mode via PCI config API only To support
CVE-2025-38287 In the Linux kernel, the following vulnerability has been resolved: IB/cm: Drop lockdep assert and WARN when freeing old msg The send completion ha
CVE-2025-38289 In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Avoid potential ndlp use-after-free in dev_loss_tmo_callbk Smatch d
CVE-2025-38291 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Prevent sending WMI commands to firmware during firmware crash Cu
CVE-2025-38294 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix NULL access in assign channel context handler Currently, when
CVE-2025-38296 In the Linux kernel, the following vulnerability has been resolved: ACPI: platform_profile: Avoid initializing on non-ACPI platforms The platform p
CVE-2025-38100 In the Linux kernel, the following vulnerability has been resolved: x86/iopl: Cure TIF_IO_BITMAP inconsistencies io_bitmap_exit() is invoked from e
CVE-2025-38101 In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix buffer locking in ring_buffer_subbuf_order_set() Enlarge the c
CVE-2025-38267 In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Do not trigger WARN_ON() due to a commit_overrun When reading a me
CVE-2025-38268 In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: move tcpm_queue_vdm_unlocked to asynchronous work A state che
CVE-2025-38102 In the Linux kernel, the following vulnerability has been resolved: VMCI: fix race between vmci_host_setup_notify and vmci_ctx_unset_notify During
CVE-2025-38301 In the Linux kernel, the following vulnerability has been resolved: nvmem: zynqmp_nvmem: unbreak driver after cleanup Commit 29be47fcd6a0 ("nvmem:
CVE-2025-38352 In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer
CVE-2025-38103 In the Linux kernel, the following vulnerability has been resolved: HID: usbhid: Eliminate recurrent out-of-bounds bug in usbhid_parse() Update str
CVE-2025-38302 In the Linux kernel, the following vulnerability has been resolved: block: don't use submit_bio_noacct_nocheck in blk_zone_wplug_bio_work Bios queu
CVE-2025-38106 In the Linux kernel, the following vulnerability has been resolved: io_uring: fix use-after-free of sq->thread in __io_uring_show_fdinfo() syzbot r
CVE-2025-38269 In the Linux kernel, the following vulnerability has been resolved: btrfs: exit after state insertion failure at btrfs_convert_extent_bit() If inse
CVE-2025-38270 In the Linux kernel, the following vulnerability has been resolved: net: drv: netdevsim: don't napi_complete() from netpoll netdevsim supports netp
CVE-2025-38107 In the Linux kernel, the following vulnerability has been resolved: net_sched: ets: fix a race in ets_qdisc_change() Gerrard Tai reported a race co
CVE-2025-38108 In the Linux kernel, the following vulnerability has been resolved: net_sched: red: fix a race in __red_change() Gerrard Tai reported a race condit
CVE-2025-38109 In the Linux kernel, the following vulnerability has been resolved: net/mlx5: Fix ECVF vports unload on shutdown flow Fix shutdown flow UAF when a
CVE-2025-38303 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: eir: Fix possible crashes on eir_create_adv_data eir_create_adv_data
CVE-2025-38304 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix NULL pointer deference on eir_get_service_data The len parameter
CVE-2025-38110 In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds clause 45 read/write access When using
CVE-2025-38111 In the Linux kernel, the following vulnerability has been resolved: net/mdiobus: Fix potential out-of-bounds read/write access When using publicly
CVE-2025-38112 In the Linux kernel, the following vulnerability has been resolved: net: Fix TOCTOU issue in sk_is_readable() sk->sk_prot->sock_is_readable is a va
CVE-2025-38113 In the Linux kernel, the following vulnerability has been resolved: ACPI: CPPC: Fix NULL pointer dereference when nosmp is used With nosmp in cmdli
CVE-2025-38088 In the Linux kernel, the following vulnerability has been resolved: powerpc/powernv/memtrace: Fix out of bounds issue in memtrace mmap memtrace mma
CVE-2025-38115 In the Linux kernel, the following vulnerability has been resolved: net_sched: sch_sfq: fix a potential crash on gso_skb handling SFQ has an assump
CVE-2025-38414 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850 GCC_GCC_PCIE_HOT_
CVE-2025-38305 In the Linux kernel, the following vulnerability has been resolved: ptp: remove ptp->n_vclocks check logic in ptp_vclock_in_use() There is no disag
CVE-2025-38117 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Protect mgmt_pending list with its own lock This uses a mutex
CVE-2025-38118 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete This reworks MGMT_
CVE-2025-38119 In the Linux kernel, the following vulnerability has been resolved: scsi: core: ufs: Fix a hang in the error handler ufshcd_err_handling_prepare()
CVE-2025-38307 In the Linux kernel, the following vulnerability has been resolved: ASoC: Intel: avs: Verify content returned by parse_int_array() The first elemen
CVE-2025-38310 In the Linux kernel, the following vulnerability has been resolved: seg6: Fix validation of nexthop addresses The kernel currently validates that t
CVE-2025-38120 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo_avx2: fix initial map fill If the first field doesn't
CVE-2025-38122 In the Linux kernel, the following vulnerability has been resolved: gve: add missing NULL check for gve_alloc_pending_packet() in TX DQO gve_alloc_
CVE-2025-38123 In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: Fix napi rx poll issue When driver handles the napi rx polling
CVE-2025-38124 In the Linux kernel, the following vulnerability has been resolved: net: fix udp gso skb_segment after pull from frag_list Commit a1e40ac5b5e9 ("ne
CVE-2025-38125 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: make sure that ptp_rate is not 0 before configuring EST If the ptp
CVE-2025-38126 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: make sure that ptp_rate is not 0 before configuring timestamping T
CVE-2025-38127 In the Linux kernel, the following vulnerability has been resolved: ice: fix Tx scheduler error handling in XDP callback When the XDP program is lo
CVE-2025-38129 In the Linux kernel, the following vulnerability has been resolved: page_pool: Fix use-after-free in page_pool_recycle_in_ring syzbot reported a ua
CVE-2025-38131 In the Linux kernel, the following vulnerability has been resolved: coresight: prevent deactivate active config while enabling the config While ena
CVE-2025-38274 In the Linux kernel, the following vulnerability has been resolved: fpga: fix potential null pointer deref in fpga_mgr_test_img_load_sgt() fpga_mgr
CVE-2025-38134 In the Linux kernel, the following vulnerability has been resolved: usb: acpi: Prevent null pointer dereference in usb_acpi_add_usb4_devlink() As d
CVE-2025-38135 In the Linux kernel, the following vulnerability has been resolved: serial: Fix potential null-ptr-deref in mlb_usio_probe() devm_ioremap() can ret
CVE-2025-38136 In the Linux kernel, the following vulnerability has been resolved: usb: renesas_usbhs: Reorder clock handling and power management in probe Reorde
CVE-2025-38138 In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: Add NULL check in udma_probe() devm_kasprintf() returns NULL whe
CVE-2025-38275 In the Linux kernel, the following vulnerability has been resolved: phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug The qmp_usb_iomap() helper funct
CVE-2025-38141 In the Linux kernel, the following vulnerability has been resolved: dm: fix dm_blk_report_zones If dm_get_live_table() returned NULL, dm_put_live_t
CVE-2025-38142 In the Linux kernel, the following vulnerability has been resolved: hwmon: (asus-ec-sensors) check sensor index in read_string() Prevent a potentia
CVE-2025-38277 In the Linux kernel, the following vulnerability has been resolved: mtd: nand: ecc-mxic: Fix use of uninitialized variable ret If ctx->steps is zer
CVE-2025-38143 In the Linux kernel, the following vulnerability has been resolved: backlight: pm8941: Add NULL check in wled_configure() devm_kasprintf() returns
CVE-2025-38312 In the Linux kernel, the following vulnerability has been resolved: fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod() In fb_find_mode_cvt
CVE-2025-38145 In the Linux kernel, the following vulnerability has been resolved: soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop() devm_kasprintf() retur
CVE-2025-38313 In the Linux kernel, the following vulnerability has been resolved: bus: fsl-mc: fix double-free on mc_dev The blamed commit tried to simplify how
CVE-2025-38415 In the Linux kernel, the following vulnerability has been resolved: Squashfs: check return result of sb_min_blocksize Syzkaller reports an "UBSAN:
CVE-2025-38146 In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix the dead loop of MPLS parse The unexpected MPLS packet ma
CVE-2025-38147 In the Linux kernel, the following vulnerability has been resolved: calipso: Don't call calipso functions for AF_INET sk. syzkaller reported a null
CVE-2025-38278 In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: QOS: Refactor TC_HTB_LEAF_DEL_LAST callback This patch addresses
CVE-2025-38148 In the Linux kernel, the following vulnerability has been resolved: net: phy: mscc: Fix memory leak when using one step timestamping Fix memory lea
CVE-2025-38149 In the Linux kernel, the following vulnerability has been resolved: net: phy: clear phydev->devlink when the link is deleted There is a potential c
CVE-2025-38280 In the Linux kernel, the following vulnerability has been resolved: bpf: Avoid __bpf_prog_ret0_warn when jit fails syzkaller reported an issue: WA
CVE-2025-38151 In the Linux kernel, the following vulnerability has been resolved: RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work The cited com
CVE-2025-38153 In the Linux kernel, the following vulnerability has been resolved: net: usb: aqc111: fix error handling of usbnet read calls Syzkaller, courtesy o
CVE-2025-38154 In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Avoid using sk_socket after free when sending The sk->sk_socket i
CVE-2025-38315 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btintel: Check dsbr size from EFI variable Since the size of struct
CVE-2025-38155 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7915: Fix null-ptr-deref in mt7915_mmio_wed_init() devm_ioremap()
CVE-2025-38156 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7996: Fix null-ptr-deref in mt7996_mmio_wed_init() devm_ioremap()
CVE-2025-38282 In the Linux kernel, the following vulnerability has been resolved: kernfs: Relax constraint in draining guard The active reference lifecycle provi
CVE-2025-38157 In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k_htc: Abort software beacon handling if disabled A malicious USB dev
CVE-2025-38283 In the Linux kernel, the following vulnerability has been resolved: hisi_acc_vfio_pci: bugfix live migration function without VF device driver If t
CVE-2025-38158 In the Linux kernel, the following vulnerability has been resolved: hisi_acc_vfio_pci: fix XQE dma address error The dma addresses of EQE and AEQE
CVE-2025-38159 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds Set the
CVE-2025-38285 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix WARN() in get_bpf_raw_tp_regs syzkaller reported an issue: WARNING: C
CVE-2025-38286 In the Linux kernel, the following vulnerability has been resolved: pinctrl: at91: Fix possible out-of-boundary access at91_gpio_probe() doesn't ch
CVE-2025-38160 In the Linux kernel, the following vulnerability has been resolved: clk: bcm: rpi: Add NULL check in raspberrypi_clk_register() devm_kasprintf() re
CVE-2025-38161 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix error flow upon firmware failure for RQ destruction Upon RQ dest
CVE-2025-38162 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: prevent overflow in lookup table allocation When cal
CVE-2025-38288 In the Linux kernel, the following vulnerability has been resolved: scsi: smartpqi: Fix smp_processor_id() call trace for preemptible kernels Corre
CVE-2025-38290 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix node corruption in ar->arvifs list In current WLAN recovery c
CVE-2025-38292 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix invalid access to memory In ath12k_dp_rx_msdu_coalesce(), rxc
CVE-2025-38163 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check on sbi->total_valid_block_count syzbot reported a
CVE-2025-38317 In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix buffer overflow in debugfs If the user tries to write more th
CVE-2025-38164 In the Linux kernel, the following vulnerability has been resolved: f2fs: zone: fix to avoid inconsistence in between SIT and SSA w/ below testcase
CVE-2025-38165 In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix panic when calling skb_linearize The panic can be reproduced
CVE-2025-38166 In the Linux kernel, the following vulnerability has been resolved: bpf: fix ktls panic with sockmap [ 2172.936997] ------------[ cut here ]-------
CVE-2025-38293 In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix node corruption in ar->arvifs list In current WLAN recovery c
CVE-2025-38295 In the Linux kernel, the following vulnerability has been resolved: perf/amlogic: Replace smp_processor_id() with raw_smp_processor_id() in meson_dd
CVE-2025-38167 In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: handle hdr_first_de() return value The hdr_first_de() function return
CVE-2025-38318 In the Linux kernel, the following vulnerability has been resolved: perf: arm-ni: Fix missing platform_set_drvdata() Add missing platform_set_drvda
CVE-2025-38168 In the Linux kernel, the following vulnerability has been resolved: perf: arm-ni: Unregister PMUs on probe failure When a resource allocation fails
CVE-2025-38169 In the Linux kernel, the following vulnerability has been resolved: arm64/fpsimd: Avoid clobbering kernel FPSIMD state with SMSTOP On system with S
CVE-2025-38170 In the Linux kernel, the following vulnerability has been resolved: arm64/fpsimd: Discard stale CPU state when handling SME traps The logic for han
CVE-2025-38319 In the Linux kernel, the following vulnerability has been resolved: drm/amd/pp: Fix potential NULL pointer dereference in atomctrl_initialize_mc_reg
CVE-2025-38297 In the Linux kernel, the following vulnerability has been resolved: PM: EM: Fix potential division-by-zero error in em_compute_costs() When the dev
CVE-2025-38298 In the Linux kernel, the following vulnerability has been resolved: EDAC/skx_common: Fix general protection fault After loading i10nm_edac (which a
CVE-2025-38299 In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: mt8195: Set ETDM1/2 IN/OUT to COMP_DUMMY() ETDM2_IN_BE and ETDM
CVE-2025-38172 In the Linux kernel, the following vulnerability has been resolved: erofs: avoid using multiple devices with different type For multiple devices, b
CVE-2025-38173 In the Linux kernel, the following vulnerability has been resolved: crypto: marvell/cesa - Handle zero-length skcipher requests Do not access rando
CVE-2025-38300 In the Linux kernel, the following vulnerability has been resolved: crypto: sun8i-ce-cipher - fix error handling in sun8i_ce_cipher_prepare() Fix t
CVE-2025-38174 In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Do not double dequeue a configuration request Some of our devices
CVE-2025-38175 In the Linux kernel, the following vulnerability has been resolved: binder: fix yet another UAF in binder_devices Commit e77aff5528a18 ("binderfs:
CVE-2025-38176 In the Linux kernel, the following vulnerability has been resolved: binder: fix use-after-free in binderfs_evict_inode() Running 'stress-ng --binde
CVE-2025-38265 In the Linux kernel, the following vulnerability has been resolved: serial: jsm: fix NPE during jsm_uart_port_init No device was set which caused s
CVE-2025-38092 In the Linux kernel, the following vulnerability has been resolved: ksmbd: use list_first_entry_or_null for opinfo_get_list() The list_first_entry(
CVE-2025-38091 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: check stream id dml21 wrapper to get plane_id [Why & How] Fix
CVE-2025-38082 In the Linux kernel, the following vulnerability has been resolved: gpio: virtuser: fix potential out-of-bound write If the caller wrote more chara
CVE-2025-38050 In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix kernel NULL pointer dereference when replacing free hugetlb foli
CVE-2025-38029 In the Linux kernel, the following vulnerability has been resolved: kasan: avoid sleepable page allocation from atomic context apply_to_pte_range()
CVE-2025-38076 In the Linux kernel, the following vulnerability has been resolved: alloc_tag: allocate percpu counters for module tags dynamically When a module g
CVE-2025-38051 In the Linux kernel, the following vulnerability has been resolved: smb: client: Fix use-after-free in cifs_fill_dirent There is a race condition i
CVE-2025-38077 In the Linux kernel, the following vulnerability has been resolved: platform/x86: dell-wmi-sysman: Avoid buffer overflow in current_password_store()
CVE-2025-38078 In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix race of buffer access at PCM OSS layer The PCM OSS layer tries t
CVE-2025-38003 In the Linux kernel, the following vulnerability has been resolved: can: bcm: add missing rcu read protection for procfs content When the procfs co
CVE-2025-38004 In the Linux kernel, the following vulnerability has been resolved: can: bcm: add locking for bcm_op runtime updates The CAN broadcast manager (CAN
CVE-2025-38031 In the Linux kernel, the following vulnerability has been resolved: padata: do not leak refcount in reorder_work A recent patch that addressed a UA
CVE-2025-38079 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - fix double free in hash_accept If accept(2) is called on s
CVE-2025-38052 In the Linux kernel, the following vulnerability has been resolved: net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done Syzbot reporte
CVE-2025-38053 In the Linux kernel, the following vulnerability has been resolved: idpf: fix null-ptr-deref in idpf_features_check idpf_features_check is used to
CVE-2025-38032 In the Linux kernel, the following vulnerability has been resolved: mr: consolidate the ipmr_can_free_table() checks. Guoyu Yin reported a splat in
CVE-2025-38054 In the Linux kernel, the following vulnerability has been resolved: ptp: ocp: Limit signal/freq counts in summary output functions The debugfs summ
CVE-2025-38055 In the Linux kernel, the following vulnerability has been resolved: perf/x86/intel: Fix segfault with PEBS-via-PT with sample_freq Currently, using
CVE-2025-38057 In the Linux kernel, the following vulnerability has been resolved: espintcp: fix skb leaks A few error paths are missing a kfree_skb.
CVE-2025-38058 In the Linux kernel, the following vulnerability has been resolved: __legitimize_mnt(): check for MNT_SYNC_UMOUNT should be under mount_lock ... or
CVE-2025-38033 In the Linux kernel, the following vulnerability has been resolved: x86/Kconfig: make CFI_AUTO_DEFAULT depend on !RUST or Rust >= 1.88 Calling core
CVE-2025-38059 In the Linux kernel, the following vulnerability has been resolved: btrfs: avoid NULL pointer dereference if no valid csum tree [BUG] When trying r
CVE-2025-38034 In the Linux kernel, the following vulnerability has been resolved: btrfs: correct the order of prelim_ref arguments in btrfs__prelim_ref btrfs_pre
CVE-2025-38035 In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: don't restore null sk_state_change queue->state_change is set as par
CVE-2025-38036 In the Linux kernel, the following vulnerability has been resolved: drm/xe/vf: Perform early GT MMIO initialization to read GMDID VFs need to commu
CVE-2025-38037 In the Linux kernel, the following vulnerability has been resolved: vxlan: Annotate FDB data races The 'used' and 'updated' fields in the FDB entry
CVE-2025-38038 In the Linux kernel, the following vulnerability has been resolved: cpufreq: amd-pstate: Remove unnecessary driver_lock in set_boost set_boost is a
CVE-2025-38039 In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Avoid WARN_ON when configuring MQPRIO with HTB offload enabled When
CVE-2025-38080 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Increase block_sequence array size [Why] It's possible to gene
CVE-2025-38060 In the Linux kernel, the following vulnerability has been resolved: bpf: copy_verifier_state() should copy 'loop_entry' field The bpf_verifier_stat
CVE-2025-38040 In the Linux kernel, the following vulnerability has been resolved: serial: mctrl_gpio: split disable_ms into sync and no_sync APIs The following s
CVE-2025-38061 In the Linux kernel, the following vulnerability has been resolved: net: pktgen: fix access outside of user given buffer in pktgen_thread_write() H
CVE-2025-38062 In the Linux kernel, the following vulnerability has been resolved: genirq/msi: Store the IOMMU IOVA directly in msi_desc instead of iommu_cookie T
CVE-2025-38041 In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: h616: Reparent GPU clock during frequency changes The H616 manua
CVE-2025-38063 In the Linux kernel, the following vulnerability has been resolved: dm: fix unconditional IO throttle caused by REQ_PREFLUSH When a bio with REQ_PR
CVE-2025-38064 In the Linux kernel, the following vulnerability has been resolved: virtio: break and reset virtio devices on device_shutdown() Hongyu reported a h
CVE-2025-38042 In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: k3-udma-glue: Drop skip_fdq argument from k3_udma_glue_reset_rx_c
CVE-2025-38043 In the Linux kernel, the following vulnerability has been resolved: firmware: arm_ffa: Set dma_mask for ffa devices Set dma_mask for FFA devices, o
CVE-2025-38044 In the Linux kernel, the following vulnerability has been resolved: media: cx231xx: set device_caps for 417 The video_device for the MPEG encoder d
CVE-2025-38065 In the Linux kernel, the following vulnerability has been resolved: orangefs: Do not truncate file size 'len' is used to store the result of i_size
CVE-2025-38066 In the Linux kernel, the following vulnerability has been resolved: dm cache: prevent BUG_ON by blocking retries on failed device resumes A cache d
CVE-2025-38067 In the Linux kernel, the following vulnerability has been resolved: rseq: Fix segfault on registration when rseq_cs is non-zero The rseq_cs field i
CVE-2025-38068 In the Linux kernel, the following vulnerability has been resolved: crypto: lzo - Fix compression buffer overrun Unlike the decompression code, the
CVE-2025-38069 In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: pci-epf-test: Fix double free that causes kernel to oops Fix a k
CVE-2025-38045 In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix debug actions order The order of actions taken for debug was
CVE-2025-38070 In the Linux kernel, the following vulnerability has been resolved: ASoC: sma1307: Add NULL check in sma1307_setting_loaded() All varibale allocate
CVE-2025-38071 In the Linux kernel, the following vulnerability has been resolved: x86/mm: Check return value from memblock_phys_alloc_range() At least with CONFI
CVE-2025-38072 In the Linux kernel, the following vulnerability has been resolved: libnvdimm/labels: Fix divide error in nd_label_data_init() If a faulty CXL memo
CVE-2025-38081 In the Linux kernel, the following vulnerability has been resolved: spi-rockchip: Fix register out of bounds access Do not write native chip select
CVE-2025-38047 In the Linux kernel, the following vulnerability has been resolved: x86/fred: Fix system hang during S4 resume with FRED enabled Upon a wakeup from
CVE-2025-38073 In the Linux kernel, the following vulnerability has been resolved: block: fix race between set_blocksize and read paths With the new large sector
CVE-2025-38074 In the Linux kernel, the following vulnerability has been resolved: vhost-scsi: protect vq->log_used with vq->mutex The vhost-scsi completion path
CVE-2025-38048 In the Linux kernel, the following vulnerability has been resolved: virtio_ring: Fix data race by tagging event_triggered as racy for KCSAN syzbot
CVE-2025-38075 In the Linux kernel, the following vulnerability has been resolved: scsi: target: iscsi: Fix timeout on deleted connection NOPIN response timer may
CVE-2025-38350 In the Linux kernel, the following vulnerability has been resolved: net/sched: Always pass notifications when child class becomes empty Certain cla

Version: 6.14.0-1003.3 2025-07-26 17:07:56 UTC

 linux-azure-nvidia-6.14 (6.14.0-1003.3) noble; urgency=medium
 .
   * noble/linux-azure-nvidia-6.14: 6.14.0-1003.3 -proposed tracker (LP: #2117629)
 .
   * Add pincontrol driver for MT8901 chip (LP: #2117784)
     - [Config] azure-nvidia-6.14: Update annotations to enable
       CONFIG_PINCTRL_MT8901
 .
   * Packaging resync (LP: #1786013)
     - [Packaging] update variants
     - [Packaging] debian.azure-nvidia-6.14/dkms-versions -- update from
       kernel-versions (main/2025.07.14)
 .
   [ Ubuntu-nvidia-6.14: 6.14.0-1008.8 ]
 .
   * noble/linux-nvidia-6.14: 6.14.0-1008.8 -proposed tracker (LP: #2118798)
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.nvidia-6.14/dkms-versions -- update from kernel-
       versions (main/d2025.07.23)
   * mt7925: Mediate extra wifi fixes (LP: #2118583)
     - wifi: mt76: mt7925: prevent multiple scan commands
     - wifi: mt76: mt7925: refine the sniffer commnad
     - wifi: mt76: mt7925: ensure all MCU commands wait for response
   * nvidia-ffa-ec: Fix FFH data response length (LP: #2118357)
     - NVIDIA: SAUCE: Fix FFH data response length
   * Add pincontrol driver for MT8901 chip (LP: #2117784)
     - pinctrl: mediatek: Add EINT support for multiple addresses
     - pinctrl: mediatek: Fix new design debounce issue
     - NVIDIA: SAUCE: MEDIATEK: pinctrl: mediatek: Add gpio-range record in
       pinctrl driver
     - NVIDIA: SAUCE: MEDIATEK: pinctrl: mediatek: Add acpi support
     - NVIDIA: SAUCE: MEDIATEK: pinctrl: mt8901: Add pinctrl driver
     - [Config] nvidia-6.14: Update annotations to enable CONFIG_PINCTRL_MT8901
   * mt7925: Extra wifi fixes (LP: #2117774)
     - wifi: mt76: mt7925: fix the wrong config for tx interrupt
     - wifi: mt76: mt7925: prevent NULL pointer dereference in
       mt7925_sta_set_decap_offload()
   * CVE-2025-38016
     - HID: bpf: abort dispatch if device destroyed
   * Fix incorrect iommu_groups with PCIe ACS (LP: #2116967)
     - NVIDIA: SAUCE: PCI: Move REQ_ACS_FLAGS into pci_regs.h as
       PCI_ACS_ISOLATED
     - NVIDIA: SAUCE: PCI: Add pci_bus_isolation()
     - NVIDIA: SAUCE: iommu: Compute iommu_groups properly for PCIe switches
     - NVIDIA: SAUCE: iommu: Organize iommu_group by member size
     - NVIDIA: SAUCE: PCI: Add pci_reachable_set()
     - NVIDIA: SAUCE: PCI: Remove duplication in calling pci_acs_ctrl_enabled()
     - NVIDIA: SAUCE: PCI: Use pci_quirk_mf_endpoint_acs() for
       pci_quirk_amd_sb_acs()
     - NVIDIA: SAUCE: PCI: Use pci_acs_ctrl_isolated() for pci_quirk_al_acs()
     - NVIDIA: SAUCE: PCI: Widen the acs_flags to u32 within the quirk callback
     - NVIDIA: SAUCE: PCI: Add pci_mfd_isolation()
     - NVIDIA: SAUCE: iommu: Compute iommu_groups properly for PCIe MFDs
     - NVIDIA: SAUCE: iommu: Validate that pci_for_each_dma_alias() matches the
       groups
     - NVIDIA: SAUCE: PCI: Add the ACS Enhanced Capability definitions
     - NVIDIA: SAUCE: PCI: Enable ACS Enhanced bits for enable_acs and
       config_acs
     - NVIDIA: SAUCE: PCI: Check ACS DSP/USP redirect bits in
       pci_enable_pasid()
     - NVIDIA: SAUCE: PCI: Check ACS Extended flags for pci_bus_isolated()
   * Backport: KVM: arm64: Map GPU device memory as cacheable (LP: #2116207)
     - Revert "NVIDIA: SAUCE: KVM: arm64: determine memory type from VMA"
     - KVM: arm64: Rename the device variable to s2_force_noncacheable
     - KVM: arm64: Assume non-PFNMAP/MIXEDMAP VMAs can be mapped cacheable
     - KVM: arm64: Block cacheable PFNMAP mapping
     - KVM: arm64: Allow cacheable stage 2 mapping using VMA flags
     - KVM: arm64: Expose new KVM cap for cacheable PFNMAP
   * wifi: mt7925: Connecting to Wifi is not reliable (LP: #2116194)
     - wifi: mt76: mt7925: Remove unnecessary if-check
     - wifi: mt76: mt7925: fix missing hdr_trans_tlv command for broadcast wtbl
   * Add missing NVIDIA HDA codec IDs (LP: #2115674)
     - ALSA: hda/tegra: Add Tegra264 support
     - ALSA: hda: Add missing NVIDIA HDA codec IDs
 .
   [ Ubuntu-azure-6.14: 6.14.0-1010.10~24.04.1 ]
 .
   * noble/linux-azure-6.14: 6.14.0-1010.10~24.04.1 -proposed tracker (LP: #2117630)
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.azure-6.14/dkms-versions -- update from kernel-
       versions (main/2025.07.14)
   * plucky/linux-azure: 6.14.0-1010.10 -proposed tracker (LP: #2117631)
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.azure/dkms-versions -- update from kernel-versions
       (main/2025.07.14)
   * Additional MANA patch support, kernel 5.15 and later (LP: #2115356)
     - net: mana: Set tx_packets to post gso processing packet count
     - net: mana: Add support for Multi Vports on Bare metal
     - net: mana: Add handler for hardware servicing events
   * Additional MANA patch support, kernel 6.8 and later (LP: #2115309)
     - PCI/MSI: Export pci_msix_prepare_desc() for dynamic MSI-X allocations
     - PCI: hv: Allow dynamic MSI-X vector allocation
     - net: mana: explain irq_setup() algorithm
     - net: mana: Allow irq_setup() to skip cpus for affinity
     - net: mana: Allocate MSI-X vectors dynamically
   * vhci-hcd and usbip-core not available (LP: #2115827)
     - [Config] azure: Revert to -generic config for CONFIG_USBIP_VHCI_HCD and
       CONFIG_USBIP_CORE
   [ Ubuntu: 6.14.0-28.28 ]
   * plucky/linux: 6.14.0-28.28 -proposed tracker (LP: #2117649)
   * Packaging resync (LP: #1786013)
     - [Packaging] update annotations scripts
     - [Packaging] debian.master/dkms-versions -- update from kernel-versions
       (main/2025.07.14)
   * Dell AIO backlight is not working, dell_uart_backlight module is missing
     (LP: #2083800)
     - [Config] enable CONFIG_DELL_UART_BACKLIGHT
   * integrated I219-LM network adapter appears to be running too fast, causing
     synchronization issues when using the I219-LM PTP feature (LP: #2116072)
     - e1000e: set fixed clock frequency indication for Nahum 11 and Nahum 13
   * Audio broken on ThinkPad X13s (LP: #2115898)
     - SAUCE: Rev

2117784 Add pincontrol driver for MT8901 chip
1786013 Packaging resync
2118583 mt7925: Mediate extra wifi fixes
2118357 nvidia-ffa-ec: Fix FFH data response length
2117774 mt7925: Extra wifi fixes
2116967 Fix incorrect iommu_groups with PCIe ACS
2116207 Backport: KVM: arm64: Map GPU device memory as cacheable
2116194 wifi: mt7925: Connecting to Wifi is not reliable
2115674 Add missing NVIDIA HDA codec IDs
2115356 Additional MANA patch support, kernel 5.15 and later
2115309 Additional MANA patch support, kernel 6.8 and later
2115827 vhci-hcd and usbip-core not available
2083800 Dell AIO backlight is not working, dell_uart_backlight module is missing
2116072 integrated I219-LM network adapter appears to be running too fast, causing synchronization issues when using the I219-LM PTP feature
2115898 Audio broken on ThinkPad X13s
2115068 Ubuntu 24.04+ arm64: screen resolution fixed to 1024x768 with last kernel update
2114516 [SRU][HPE 24.04] Patch Request for HPE iLO7 VGA device for Gen12 Servers
2113990 A process exiting with an open /dev/snapshot fd causes a NULL pointer dereference caught by ubuntu_stress_smoke_test:sut-scan
2114450 [UBUNTU 22.04] kernel: Fix z17 elf platform recognition
2114258 [UBUNTU 24.04] Kernel: Add CPUMF extended counter set for z17
2115266 Plucky update: v6.14.8 upstream stable release
2115252 Plucky update: v6.14.7 upstream stable release
2113992 Creating a VXLAN interface with a Fan mapping causes a NULL pointer dereference caught by ubuntu_fan_smoke_test:sut-scan
2117494 [Regression Updates] \
2116061 [UBUNTU 25.04] lszcrypt output shows no cards because ap module has to be loaded manually
CVE-2025-38016 In the Linux kernel, the following vulnerability has been resolved: HID: bpf: abort dispatch if device destroyed The current HID bpf implementation
CVE-2025-38056 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda: Fix UAF when reloading module hda_generic_machine_select
CVE-2025-38008 In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: fix race condition in unaccepted memory handling The page alloca
CVE-2025-38014 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Refactor remove call with idxd_cleanup() helper The idxd_clean
CVE-2025-38015 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix memory leak in error handling path of idxd_alloc Memory al
CVE-2025-38005 In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: k3-udma: Add missing locking Recent kernels complain about a mis
CVE-2025-38009 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: disable napi on driver removal A warning on driver removal started
CVE-2025-38010 In the Linux kernel, the following vulnerability has been resolved: phy: tegra: xusb: Use a bitmask for UTMI pad power state tracking The current i
CVE-2025-38011 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: csa unmap use uninterruptible lock After process exit to unmap csa
CVE-2025-38012 In the Linux kernel, the following vulnerability has been resolved: sched_ext: bpf_iter_scx_dsq_new() should always initialize iterator BPF program
CVE-2025-38018 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix kernel panic when alloc_page failed We cannot set frag_list to NUL
CVE-2025-38019 In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_router: Fix use-after-free when deleting GRE net devices The dr
CVE-2025-38013 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating struct cfg80211_scan_request Ma
CVE-2025-38002 In the Linux kernel, the following vulnerability has been resolved: io_uring/fdinfo: grab ctx->uring_lock around io_uring_show_fdinfo() Not everyth
CVE-2025-38027 In the Linux kernel, the following vulnerability has been resolved: regulator: max20086: fix invalid memory access max20086_parse_regulators_dt() c
CVE-2025-38020 In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Disable MACsec offload for uplink representor profile MACsec offload
CVE-2025-38021 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix null check of pipe_ctx->plane_state for update_dchubp_dpp
CVE-2025-38006 In the Linux kernel, the following vulnerability has been resolved: net: mctp: Don't access ifa_index when missing In mctp_dump_addrinfo, ifa_index
CVE-2025-37992 In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change() Previously, when reducing a
CVE-2025-38022 In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem
CVE-2025-38028 In the Linux kernel, the following vulnerability has been resolved: NFS/localio: Fix a race in nfs_local_open_fh() Once the clp->cl_uuid.lock has b
CVE-2025-38023 In the Linux kernel, the following vulnerability has been resolved: nfs: handle failure of nfs_get_lock_context in unlock path When memory is insuf
CVE-2025-38007 In the Linux kernel, the following vulnerability has been resolved: HID: uclogic: Add NULL check in uclogic_input_configured() devm_kasprintf() ret
CVE-2025-38024 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix slab-use-after-free Read in rxe_queue_cleanup bug Call Trace: <T
CVE-2025-38025 In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7606: check for NULL before calling sw_mode_config() Check that the
CVE-2025-37963 In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users Support fo
CVE-2025-37948 In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Add BHB mitigation to the epilogue for cBPF programs A malicious BP
CVE-2025-37994 In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix NULL pointer access This patch ensures that
CVE-2025-37967 In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix deadlock This patch introduces the ucsi_con_
CVE-2025-37950 In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix panic in failed foilio allocation commit 7e119cff9d0a ("ocfs2: conve
CVE-2025-37995 In the Linux kernel, the following vulnerability has been resolved: module: ensure that kobject_put() is safe for module type kobjects In 'lookup_o
CVE-2025-37960 In the Linux kernel, the following vulnerability has been resolved: memblock: Accept allocated memory before use in memblock_double_array() When in
CVE-2025-37996 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix uninitialized memcache pointer in user_mem_abort() Commit fce88
CVE-2025-37949 In the Linux kernel, the following vulnerability has been resolved: xenbus: Use kref to track req lifetime Marek reported seeing a NULL pointer fau
CVE-2025-37954 In the Linux kernel, the following vulnerability has been resolved: smb: client: Avoid race in open_cached_dir with lease breaks A pre-existing val
CVE-2025-37965 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix invalid context error in dml helper [Why] "BUG: sleeping f
CVE-2025-37951 In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Add job to pending list if the reset was skipped When a CL/CSD job tim
CVE-2025-37968 In the Linux kernel, the following vulnerability has been resolved: iio: light: opt3001: fix deadlock due to concurrent flag access The threaded IR
CVE-2025-37969 In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo Preven
CVE-2025-37970 In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo Prevent st_ls
CVE-2025-37966 In the Linux kernel, the following vulnerability has been resolved: riscv: Fix kernel crash due to PR_SET_TAGGED_ADDR_CTRL When userspace does PR_S
CVE-2025-37957 In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Forcibly leave SMM mode on SHUTDOWN interception Previously, commit e
CVE-2025-37958 In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry When migrating a
CVE-2025-37964 In the Linux kernel, the following vulnerability has been resolved: x86/mm: Eliminate window where TLB flushes may be inadvertently skipped tl;dr:
CVE-2025-37971 In the Linux kernel, the following vulnerability has been resolved: staging: bcm2835-camera: Initialise dev in v4l2_dev Commit 42a2f6664e18 ("stagi
CVE-2025-37972 In the Linux kernel, the following vulnerability has been resolved: Input: mtk-pmic-keys - fix possible null pointer dereference In mtk_pmic_keys_p
CVE-2025-37959 In the Linux kernel, the following vulnerability has been resolved: bpf: Scrub packet on bpf_redirect_peer When bpf_redirect_peer is used to redire
CVE-2025-37961 In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-
CVE-2025-37993 In the Linux kernel, the following vulnerability has been resolved: can: m_can: m_can_class_allocate_dev(): initialize spin lock on device probe Th
CVE-2025-37955 In the Linux kernel, the following vulnerability has been resolved: virtio-net: free xsk_buffs on error in virtnet_xsk_pool_enable() The selftests
CVE-2025-37962 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix memory leak in parse_lease_state() The previous patch that added bou
CVE-2025-37998 In the Linux kernel, the following vulnerability has been resolved: openvswitch: Fix unsafe attribute parsing in output_userspace() This patch repl
CVE-2025-37952 In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one th
CVE-2025-37947 In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds stream writes by validating *pos ksmbd_vfs_stream_
CVE-2025-37956 In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent rename with empty string Client can send empty newname string to
CVE-2025-37973 In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: fix out-of-bounds access during multi-link element defragmentati
CVE-2025-37999 In the Linux kernel, the following vulnerability has been resolved: fs/erofs/fileio: call erofs_onlinefolio_split() after bio_add_folio() If bio_ad
CVE-2025-38083 In the Linux kernel, the following vulnerability has been resolved: net_sched: prio: fix a race in prio_tune() Gerrard Tai reported a race conditio



About   -   Send Feedback to @ubuntu_updates