UbuntuUpdates.org

Package "linux-tools-host"

This package belongs to a PPA: Canonical Kernel Team

Name: linux-tools-host

Description:

Linux kernel VM host tools

Latest version: 6.8.0-123.123
Release: noble (24.04)
Level: base
Repository: main
Head package: linux

Links


Download "linux-tools-host"


Other versions of "linux-tools-host" in Noble

Repository Area Version
base main 6.8.0-31.31
security main 6.8.0-117.117
updates main 6.8.0-117.117
proposed main 6.8.0-114.114

Changelog

Version: 6.8.0-123.123 2026-05-25 23:09:00 UTC

 linux (6.8.0-123.123) noble; urgency=medium
 .
   * noble/linux: 6.8.0-123.123 -proposed tracker (LP: #2154218)
 .
   * Kernel regression (6.8.0-117.generic) (LP: #2153556)
     - net: bonding: update the slave array for broadcast mode
     - bonding: do not set usable_slaves for broadcast mode
 .
   * perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
     (LP: #2152194)
     - SAUCE: temporary fix attempt for size eceed
 .
   * Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
     (LP: #2141536)
     - selftests/powerpc: Lower run time of count_stcx_fail test
     - selftests/powerpc: Give all tests 2 minutes timeout
 .
   * Noble update: upstream stable patchset 2026-05-01 (LP: #2150809)
     - auxdisplay: arm-charlcd: fix release_mem_region() size
     - hfsplus: return error when node already exists in hfs_bnode_create
     - rcu: s/boost_kthread_mutex/kthread_mutex
     - rcu/exp: Move expedited kthread worker creation functions above
       rcutree_prepare_cpu()
     - rcu: Refactor expedited handling check in rcu_read_unlock_special()
     - rcu: Remove local_irq_save/restore() in
       rcu_preempt_deferred_qs_handler()
     - rcu: Fix rcu_read_unlock() deadloop due to softirq
     - audit: move the compat_xxx_class[] extern declarations to audit_arch.h
     - i3c: Move device name assignment after i3c_bus_init
     - fs: add for 'init_fs'
     - i3c: master: Update hot-join flag only on success
     - gfs2: Retries missing in gfs2_{rename,exchange}
     - gfs2: Fix use-after-free in iomap inline data write path
     - i3c: dw: Initialize spinlock to avoid upsetting lockdep
     - tpm: tpm_i2c_infineon: Fix locality leak on get_burstcount() failure
     - tpm: st33zp24: Fix missing cleanup on get_burstcount() error
     - btrfs: qgroup: return correct error when deleting qgroup relation item
     - btrfs: fix block_group_tree dirty_list corruption
     - smb: client: fix potential UAF and double free in smb2_open_file()
     - xen/virtio: Don't use grant-dma-ops when running as Dom0
     - ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()
     - io_uring/sync: validate passed in offset
     - cpuidle: menu: Cleanup after loadavg removal
     - cpuidle: governors: menu: Always check timers with tick stopped
     - md/raid10: fix any_working flag handling in raid10_sync_request
     - iomap: fix submission side handling of completion side errors
     - ublk: Validate SQE128 flag before accessing the cmd
     - x86/xen: make some functions static
     - Partial revert "x86/xen: fix balloon target initialization for PVH dom0"
     - PM: wakeup: Handle empty list in wakeup_sources_walk_start()
     - perf: arm_spe: Properly set hw.state on failures
     - PM: sleep: wakeirq: harden dev_pm_clear_wake_irq() against races
     - s390/cio: Fix device lifecycle handling in css_alloc_subchannel()
     - crypto: qat - fix warning on adf_pfvf_pf_proto.c
     - selftests/bpf: veristat: fix printing order in output_stats()
     - libbpf: Fix OOB read in btf_dump_get_bitfield_value
     - ARM: VDSO: Patch out __vdso_clock_getres() if unavailable
     - crypto: cavium - fix dma_free_coherent() size
     - crypto: octeontx - fix dma_free_coherent() size
     - crypto: hisilicon/zip - adjust the way to obtain the req in the callback
       function
     - crypto: hisilicon/sec2 - support skcipher/aead fallback for hardware
       queue unavailable
     - hrtimer: Fix trace oddity
     - bpf, sockmap: Fix incorrect copied_seq calculation
     - bpf, sockmap: Fix FIONREAD for sockmap
     - crypto: hisilicon/trng - modifying the order of header files
     - crypto: hisilicon/trng - support tfms sharing the device
     - bpf: Fix bpf_xdp_store_bytes proto for read-only arg
     - scsi: efct: Use IRQF_ONESHOT and default primary handler
     - EDAC/altera: Remove IRQF_ONESHOT
     - mfd: wm8350-core: Use IRQF_ONESHOT
     - sched/rt: Skip currently executing CPU in rto_next_cpu()
     - pstore/ram: fix buffer overflow in persistent_ram_save_old()
     - soc: qcom: smem: handle ENOMEM error during probe
     - EDAC/i5000: Fix snprintf() size calculation in calculate_dimm_size()
     - EDAC/i5400: Fix snprintf() limit calculation in calculate_dimm_size()
     - arm64: dts: tqma8mpql-mba8mpxl: Fix HDMI CEC pad control settings
     - clk: qcom: Return correct error code in qcom_cc_probe_by_index()
     - arm64: dts: qcom: sdm630: fix gpu_speed_bin size
     - arm64: dts: qcom: sdm845-oneplus: Don't mark ts supply boot-on
     - ARM: dts: allwinner: sun5i-a13-utoo-p66: delete "power-gpios" property
     - powerpc/uaccess: Move barrier_nospec() out of
       allow_read_{from/write}_user()
     - soc: qcom: cmd-db: Use devm_memremap() to fix memory leak in
       cmd_db_dev_probe
     - soc: mediatek: svs: Fix memory leak in svs_enable_debug_write()
     - powerpc/eeh: fix recursive pci_lock_rescan_remove locking in EEH event
       handling
     - ARM: dts: lpc32xx: Set motor PWM #pwm-cells property value to 3 cells
     - arm: dts: lpc32xx: add clocks property to Motor Control PWM device tree
       node
     - arm64: dts: amlogic: axg: assign the MMC signal clocks
     - arm64: dts: amlogic: gx: assign the MMC signal clocks
     - arm64: dts: amlogic: g12: assign the MMC B and C signal clocks
     - arm64: dts: amlogic: g12: assign the MMC A signal clock
     - arm64: dts: qcom: sdm845-db845c: drop CS from SPIO0
     - arm64: dts: qcom: sdm845-db845c: specify power for WiFi CH1
     - arm64: dts: qcom: sm6115: Add CX_MEM/DBGC GPU regions
     - workqueue: Factor out assign_rescuer_work()
     - workqueue: Only assign rescuer work when really needed
     - workqueue: Process rescuer work items one-by-one using a cursor
     - smack: /smack/doi must be > 0
     - smack: /smack/doi: accept previously used values
     - ASoC: nau8821: Consistently clear interrupts before unmasking
     - ASoC: nau8821: Avoid unnecessary blocking in IRQ hand

Source diff to previous version
2153556 Kernel regression (6.8.0-117.generic)
2152194 perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
2141536 Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
2150809 Noble update: upstream stable patchset 2026-05-01
2148714 Noble update: upstream stable patchset 2026-04-17
2148260 Noble update: upstream stable patchset 2026-04-13
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-23249 In the Linux kernel, the following vulnerability has been resolved: xfs: check for deleted cursors when revalidating two btrees The free space and
CVE-2025-71267 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop triggered by zero-sized ATTR_LIST We found an infi
CVE-2025-71265 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata W
CVE-2025-71266 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value of indx_find to avoid infinite loop We found an i
CVE-2026-23241 In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and li
CVE-2025-71239 In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in ve
CVE-2026-31411 In the Linux kernel, the following vulnerability has been resolved: net: atm: fix crash due to unvalidated vcc pointer in sigd_send() Reproducer av
CVE-2026-23243 In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_write ib_umad_write computes dat
CVE-2026-23242 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL pointer dereference in header processing If siw_ge
CVE-2025-71233 In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Avoid creating sub-groups asynchronously The asynchronous creati
CVE-2025-71231 In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode The lo
CVE-2026-23169 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reporte
CVE-2025-40005 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Implement refcount to handle unbind during busy driver su
CVE-2025-71232 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Free sp in error path to fix system crash System crash seen duri
CVE-2025-71235 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Delay module unload while fabric scan in progress System crash s
CVE-2025-71236 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with t
CVE-2025-71229 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() rtw_core_enable_be
CVE-2025-71237 In the Linux kernel, the following vulnerability has been resolved: nilfs2: Fix potential block overflow that cause system hang When a user execute
CVE-2026-23229 In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue notification When VM bo
CVE-2026-23222 In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The exist
CVE-2026-23228 In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthre
CVE-2026-23220 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths T
CVE-2026-23230 In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open,
CVE-2026-23272 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case
CVE-2026-31418 In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in mtype_del mtype_del() counts
CVE-2026-23392 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call sy
CVE-2026-23278 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catchall elements During transact
CVE-2026-46300 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() c
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-31676 In the Linux kernel, the following vulnerability has been resolved: rxrpc: only handle RESPONSE during service challenge Only process RESPONSE pack
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta
CVE-2026-31419 In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast()
CVE-2026-31431 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commi
CVE-2026-31533 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUS
CVE-2026-31504 In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` h

Version: 6.8.0-122.122 2026-05-23 01:08:52 UTC

 linux (6.8.0-122.122) noble; urgency=medium
 .
   * noble/linux: 6.8.0-122.122 -proposed tracker (LP: #2154031)
 .
   * perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
     (LP: #2152194)
     - SAUCE: temporary fix attempt for size eceed
 .
   * Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
     (LP: #2141536)
     - selftests/powerpc: Lower run time of count_stcx_fail test
     - selftests/powerpc: Give all tests 2 minutes timeout
 .
   * Noble update: upstream stable patchset 2026-05-01 (LP: #2150809)
     - auxdisplay: arm-charlcd: fix release_mem_region() size
     - hfsplus: return error when node already exists in hfs_bnode_create
     - rcu: s/boost_kthread_mutex/kthread_mutex
     - rcu/exp: Move expedited kthread worker creation functions above
       rcutree_prepare_cpu()
     - rcu: Refactor expedited handling check in rcu_read_unlock_special()
     - rcu: Remove local_irq_save/restore() in
       rcu_preempt_deferred_qs_handler()
     - rcu: Fix rcu_read_unlock() deadloop due to softirq
     - audit: move the compat_xxx_class[] extern declarations to audit_arch.h
     - i3c: Move device name assignment after i3c_bus_init
     - fs: add for 'init_fs'
     - i3c: master: Update hot-join flag only on success
     - gfs2: Retries missing in gfs2_{rename,exchange}
     - gfs2: Fix use-after-free in iomap inline data write path
     - i3c: dw: Initialize spinlock to avoid upsetting lockdep
     - tpm: tpm_i2c_infineon: Fix locality leak on get_burstcount() failure
     - tpm: st33zp24: Fix missing cleanup on get_burstcount() error
     - btrfs: qgroup: return correct error when deleting qgroup relation item
     - btrfs: fix block_group_tree dirty_list corruption
     - smb: client: fix potential UAF and double free in smb2_open_file()
     - xen/virtio: Don't use grant-dma-ops when running as Dom0
     - ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()
     - io_uring/sync: validate passed in offset
     - cpuidle: menu: Cleanup after loadavg removal
     - cpuidle: governors: menu: Always check timers with tick stopped
     - md/raid10: fix any_working flag handling in raid10_sync_request
     - iomap: fix submission side handling of completion side errors
     - ublk: Validate SQE128 flag before accessing the cmd
     - x86/xen: make some functions static
     - Partial revert "x86/xen: fix balloon target initialization for PVH dom0"
     - PM: wakeup: Handle empty list in wakeup_sources_walk_start()
     - perf: arm_spe: Properly set hw.state on failures
     - PM: sleep: wakeirq: harden dev_pm_clear_wake_irq() against races
     - s390/cio: Fix device lifecycle handling in css_alloc_subchannel()
     - crypto: qat - fix warning on adf_pfvf_pf_proto.c
     - selftests/bpf: veristat: fix printing order in output_stats()
     - libbpf: Fix OOB read in btf_dump_get_bitfield_value
     - ARM: VDSO: Patch out __vdso_clock_getres() if unavailable
     - crypto: cavium - fix dma_free_coherent() size
     - crypto: octeontx - fix dma_free_coherent() size
     - crypto: hisilicon/zip - adjust the way to obtain the req in the callback
       function
     - crypto: hisilicon/sec2 - support skcipher/aead fallback for hardware
       queue unavailable
     - hrtimer: Fix trace oddity
     - bpf, sockmap: Fix incorrect copied_seq calculation
     - bpf, sockmap: Fix FIONREAD for sockmap
     - crypto: hisilicon/trng - modifying the order of header files
     - crypto: hisilicon/trng - support tfms sharing the device
     - bpf: Fix bpf_xdp_store_bytes proto for read-only arg
     - scsi: efct: Use IRQF_ONESHOT and default primary handler
     - EDAC/altera: Remove IRQF_ONESHOT
     - mfd: wm8350-core: Use IRQF_ONESHOT
     - sched/rt: Skip currently executing CPU in rto_next_cpu()
     - pstore/ram: fix buffer overflow in persistent_ram_save_old()
     - soc: qcom: smem: handle ENOMEM error during probe
     - EDAC/i5000: Fix snprintf() size calculation in calculate_dimm_size()
     - EDAC/i5400: Fix snprintf() limit calculation in calculate_dimm_size()
     - arm64: dts: tqma8mpql-mba8mpxl: Fix HDMI CEC pad control settings
     - clk: qcom: Return correct error code in qcom_cc_probe_by_index()
     - arm64: dts: qcom: sdm630: fix gpu_speed_bin size
     - arm64: dts: qcom: sdm845-oneplus: Don't mark ts supply boot-on
     - ARM: dts: allwinner: sun5i-a13-utoo-p66: delete "power-gpios" property
     - powerpc/uaccess: Move barrier_nospec() out of
       allow_read_{from/write}_user()
     - soc: qcom: cmd-db: Use devm_memremap() to fix memory leak in
       cmd_db_dev_probe
     - soc: mediatek: svs: Fix memory leak in svs_enable_debug_write()
     - powerpc/eeh: fix recursive pci_lock_rescan_remove locking in EEH event
       handling
     - ARM: dts: lpc32xx: Set motor PWM #pwm-cells property value to 3 cells
     - arm: dts: lpc32xx: add clocks property to Motor Control PWM device tree
       node
     - arm64: dts: amlogic: axg: assign the MMC signal clocks
     - arm64: dts: amlogic: gx: assign the MMC signal clocks
     - arm64: dts: amlogic: g12: assign the MMC B and C signal clocks
     - arm64: dts: amlogic: g12: assign the MMC A signal clock
     - arm64: dts: qcom: sdm845-db845c: drop CS from SPIO0
     - arm64: dts: qcom: sdm845-db845c: specify power for WiFi CH1
     - arm64: dts: qcom: sm6115: Add CX_MEM/DBGC GPU regions
     - workqueue: Factor out assign_rescuer_work()
     - workqueue: Only assign rescuer work when really needed
     - workqueue: Process rescuer work items one-by-one using a cursor
     - smack: /smack/doi must be > 0
     - smack: /smack/doi: accept previously used values
     - ASoC: nau8821: Consistently clear interrupts before unmasking
     - ASoC: nau8821: Avoid unnecessary blocking in IRQ handler
     - ASoC: nau8821: Fixup nau8821_enable_jack_detect()
     - drm/amdgpu: Use explicit VCN instance 0 in SR-IOV init
     - drm/msm/disp/dpu: add merge3d support for sc7280
     

Source diff to previous version
2152194 perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
2141536 Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
2150809 Noble update: upstream stable patchset 2026-05-01
2148714 Noble update: upstream stable patchset 2026-04-17
2148260 Noble update: upstream stable patchset 2026-04-13
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-23249 In the Linux kernel, the following vulnerability has been resolved: xfs: check for deleted cursors when revalidating two btrees The free space and
CVE-2025-71267 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop triggered by zero-sized ATTR_LIST We found an infi
CVE-2025-71265 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata W
CVE-2025-71266 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value of indx_find to avoid infinite loop We found an i
CVE-2026-23241 In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and li
CVE-2025-71239 In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in ve
CVE-2026-31411 In the Linux kernel, the following vulnerability has been resolved: net: atm: fix crash due to unvalidated vcc pointer in sigd_send() Reproducer av
CVE-2026-23243 In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_write ib_umad_write computes dat
CVE-2026-23242 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL pointer dereference in header processing If siw_ge
CVE-2025-71233 In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Avoid creating sub-groups asynchronously The asynchronous creati
CVE-2025-71231 In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode The lo
CVE-2026-23169 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reporte
CVE-2025-40005 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Implement refcount to handle unbind during busy driver su
CVE-2025-71232 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Free sp in error path to fix system crash System crash seen duri
CVE-2025-71235 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Delay module unload while fabric scan in progress System crash s
CVE-2025-71236 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with t
CVE-2025-71229 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() rtw_core_enable_be
CVE-2025-71237 In the Linux kernel, the following vulnerability has been resolved: nilfs2: Fix potential block overflow that cause system hang When a user execute
CVE-2026-23229 In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue notification When VM bo
CVE-2026-23222 In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The exist
CVE-2026-23228 In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthre
CVE-2026-23220 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths T
CVE-2026-23230 In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open,
CVE-2026-23272 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case
CVE-2026-31418 In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in mtype_del mtype_del() counts
CVE-2026-23392 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call sy
CVE-2026-23278 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catchall elements During transact
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-31676 In the Linux kernel, the following vulnerability has been resolved: rxrpc: only handle RESPONSE during service challenge Only process RESPONSE pack
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta
CVE-2026-31419 In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast()
CVE-2026-31431 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commi
CVE-2026-31533 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUS
CVE-2026-31504 In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` h

Version: 6.8.0-119.119 2026-05-12 00:09:08 UTC

 linux (6.8.0-119.119) noble; urgency=medium
 .
   * noble/linux: 6.8.0-119.119 -proposed tracker (LP: #2152191)
 .
   * perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
     (LP: #2152194)
     - SAUCE: temporary fix attempt for size eceed
 .
   * Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
     (LP: #2141536)
     - selftests/powerpc: Lower run time of count_stcx_fail test
     - selftests/powerpc: Give all tests 2 minutes timeout
 .
   * Noble update: upstream stable patchset 2026-05-01 (LP: #2150809)
     - auxdisplay: arm-charlcd: fix release_mem_region() size
     - hfsplus: return error when node already exists in hfs_bnode_create
     - rcu: s/boost_kthread_mutex/kthread_mutex
     - rcu/exp: Move expedited kthread worker creation functions above
       rcutree_prepare_cpu()
     - rcu: Refactor expedited handling check in rcu_read_unlock_special()
     - rcu: Remove local_irq_save/restore() in
       rcu_preempt_deferred_qs_handler()
     - rcu: Fix rcu_read_unlock() deadloop due to softirq
     - audit: move the compat_xxx_class[] extern declarations to audit_arch.h
     - i3c: Move device name assignment after i3c_bus_init
     - fs: add for 'init_fs'
     - i3c: master: Update hot-join flag only on success
     - gfs2: Retries missing in gfs2_{rename,exchange}
     - gfs2: Fix use-after-free in iomap inline data write path
     - i3c: dw: Initialize spinlock to avoid upsetting lockdep
     - tpm: tpm_i2c_infineon: Fix locality leak on get_burstcount() failure
     - tpm: st33zp24: Fix missing cleanup on get_burstcount() error
     - btrfs: qgroup: return correct error when deleting qgroup relation item
     - btrfs: fix block_group_tree dirty_list corruption
     - smb: client: fix potential UAF and double free in smb2_open_file()
     - xen/virtio: Don't use grant-dma-ops when running as Dom0
     - ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()
     - io_uring/sync: validate passed in offset
     - cpuidle: menu: Cleanup after loadavg removal
     - cpuidle: governors: menu: Always check timers with tick stopped
     - md/raid10: fix any_working flag handling in raid10_sync_request
     - iomap: fix submission side handling of completion side errors
     - ublk: Validate SQE128 flag before accessing the cmd
     - x86/xen: make some functions static
     - Partial revert "x86/xen: fix balloon target initialization for PVH dom0"
     - PM: wakeup: Handle empty list in wakeup_sources_walk_start()
     - perf: arm_spe: Properly set hw.state on failures
     - PM: sleep: wakeirq: harden dev_pm_clear_wake_irq() against races
     - s390/cio: Fix device lifecycle handling in css_alloc_subchannel()
     - crypto: qat - fix warning on adf_pfvf_pf_proto.c
     - selftests/bpf: veristat: fix printing order in output_stats()
     - libbpf: Fix OOB read in btf_dump_get_bitfield_value
     - ARM: VDSO: Patch out __vdso_clock_getres() if unavailable
     - crypto: cavium - fix dma_free_coherent() size
     - crypto: octeontx - fix dma_free_coherent() size
     - crypto: hisilicon/zip - adjust the way to obtain the req in the callback
       function
     - crypto: hisilicon/sec2 - support skcipher/aead fallback for hardware
       queue unavailable
     - hrtimer: Fix trace oddity
     - bpf, sockmap: Fix incorrect copied_seq calculation
     - bpf, sockmap: Fix FIONREAD for sockmap
     - crypto: hisilicon/trng - modifying the order of header files
     - crypto: hisilicon/trng - support tfms sharing the device
     - bpf: Fix bpf_xdp_store_bytes proto for read-only arg
     - scsi: efct: Use IRQF_ONESHOT and default primary handler
     - EDAC/altera: Remove IRQF_ONESHOT
     - mfd: wm8350-core: Use IRQF_ONESHOT
     - sched/rt: Skip currently executing CPU in rto_next_cpu()
     - pstore/ram: fix buffer overflow in persistent_ram_save_old()
     - soc: qcom: smem: handle ENOMEM error during probe
     - EDAC/i5000: Fix snprintf() size calculation in calculate_dimm_size()
     - EDAC/i5400: Fix snprintf() limit calculation in calculate_dimm_size()
     - arm64: dts: tqma8mpql-mba8mpxl: Fix HDMI CEC pad control settings
     - clk: qcom: Return correct error code in qcom_cc_probe_by_index()
     - arm64: dts: qcom: sdm630: fix gpu_speed_bin size
     - arm64: dts: qcom: sdm845-oneplus: Don't mark ts supply boot-on
     - ARM: dts: allwinner: sun5i-a13-utoo-p66: delete "power-gpios" property
     - powerpc/uaccess: Move barrier_nospec() out of
       allow_read_{from/write}_user()
     - soc: qcom: cmd-db: Use devm_memremap() to fix memory leak in
       cmd_db_dev_probe
     - soc: mediatek: svs: Fix memory leak in svs_enable_debug_write()
     - powerpc/eeh: fix recursive pci_lock_rescan_remove locking in EEH event
       handling
     - ARM: dts: lpc32xx: Set motor PWM #pwm-cells property value to 3 cells
     - arm: dts: lpc32xx: add clocks property to Motor Control PWM device tree
       node
     - arm64: dts: amlogic: axg: assign the MMC signal clocks
     - arm64: dts: amlogic: gx: assign the MMC signal clocks
     - arm64: dts: amlogic: g12: assign the MMC B and C signal clocks
     - arm64: dts: amlogic: g12: assign the MMC A signal clock
     - arm64: dts: qcom: sdm845-db845c: drop CS from SPIO0
     - arm64: dts: qcom: sdm845-db845c: specify power for WiFi CH1
     - arm64: dts: qcom: sm6115: Add CX_MEM/DBGC GPU regions
     - workqueue: Factor out assign_rescuer_work()
     - workqueue: Only assign rescuer work when really needed
     - workqueue: Process rescuer work items one-by-one using a cursor
     - smack: /smack/doi must be > 0
     - smack: /smack/doi: accept previously used values
     - ASoC: nau8821: Consistently clear interrupts before unmasking
     - ASoC: nau8821: Avoid unnecessary blocking in IRQ handler
     - ASoC: nau8821: Fixup nau8821_enable_jack_detect()
     - drm/amdgpu: Use explicit VCN instance 0 in SR-IOV init
     - drm/msm/disp/dpu: add merge3d support for sc7280
     

Source diff to previous version
2152194 perf_cpu_map__merge fails to compile on ppc46el, s390x on noble linux
2141536 Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
2150809 Noble update: upstream stable patchset 2026-05-01
2148714 Noble update: upstream stable patchset 2026-04-17
2148260 Noble update: upstream stable patchset 2026-04-13
CVE-2026-23249 In the Linux kernel, the following vulnerability has been resolved: xfs: check for deleted cursors when revalidating two btrees The free space and
CVE-2025-71267 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop triggered by zero-sized ATTR_LIST We found an infi
CVE-2025-71265 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata W
CVE-2025-71266 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value of indx_find to avoid infinite loop We found an i
CVE-2026-23241 In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and li
CVE-2025-71239 In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in ve
CVE-2026-31411 In the Linux kernel, the following vulnerability has been resolved: net: atm: fix crash due to unvalidated vcc pointer in sigd_send() Reproducer av
CVE-2026-23243 In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_write ib_umad_write computes dat
CVE-2026-23242 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL pointer dereference in header processing If siw_ge
CVE-2025-71233 In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Avoid creating sub-groups asynchronously The asynchronous creati
CVE-2025-71231 In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode The lo
CVE-2026-23169 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reporte
CVE-2025-40005 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Implement refcount to handle unbind during busy driver su
CVE-2025-71232 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Free sp in error path to fix system crash System crash seen duri
CVE-2025-71235 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Delay module unload while fabric scan in progress System crash s
CVE-2025-71236 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with t
CVE-2025-71229 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() rtw_core_enable_be
CVE-2025-71237 In the Linux kernel, the following vulnerability has been resolved: nilfs2: Fix potential block overflow that cause system hang When a user execute
CVE-2026-23229 In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue notification When VM bo
CVE-2026-23222 In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The exist
CVE-2026-23228 In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthre
CVE-2026-23220 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths T
CVE-2026-23230 In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open,
CVE-2026-23272 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case
CVE-2026-31418 In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in mtype_del mtype_del() counts
CVE-2026-23392 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call sy
CVE-2026-23278 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catchall elements During transact
CVE-2026-31419 In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast()
CVE-2026-31431 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commi
CVE-2026-31533 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUS
CVE-2026-31504 In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` h

Version: 6.8.0-118.118 2026-05-09 01:08:47 UTC

 linux (6.8.0-118.118) noble; urgency=medium
 .
   * noble/linux: 6.8.0-118.118 -proposed tracker (LP: #2151949)
 .
   * Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
     (LP: #2141536)
     - selftests/powerpc: Lower run time of count_stcx_fail test
     - selftests/powerpc: Give all tests 2 minutes timeout
 .
   * Noble update: upstream stable patchset 2026-05-01 (LP: #2150809)
     - auxdisplay: arm-charlcd: fix release_mem_region() size
     - hfsplus: return error when node already exists in hfs_bnode_create
     - rcu: s/boost_kthread_mutex/kthread_mutex
     - rcu/exp: Move expedited kthread worker creation functions above
       rcutree_prepare_cpu()
     - rcu: Refactor expedited handling check in rcu_read_unlock_special()
     - rcu: Remove local_irq_save/restore() in
       rcu_preempt_deferred_qs_handler()
     - rcu: Fix rcu_read_unlock() deadloop due to softirq
     - audit: move the compat_xxx_class[] extern declarations to audit_arch.h
     - i3c: Move device name assignment after i3c_bus_init
     - fs: add for 'init_fs'
     - i3c: master: Update hot-join flag only on success
     - gfs2: Retries missing in gfs2_{rename,exchange}
     - gfs2: Fix use-after-free in iomap inline data write path
     - i3c: dw: Initialize spinlock to avoid upsetting lockdep
     - tpm: tpm_i2c_infineon: Fix locality leak on get_burstcount() failure
     - tpm: st33zp24: Fix missing cleanup on get_burstcount() error
     - btrfs: qgroup: return correct error when deleting qgroup relation item
     - btrfs: fix block_group_tree dirty_list corruption
     - smb: client: fix potential UAF and double free in smb2_open_file()
     - xen/virtio: Don't use grant-dma-ops when running as Dom0
     - ACPICA: Fix NULL pointer dereference in acpi_ev_address_space_dispatch()
     - io_uring/sync: validate passed in offset
     - cpuidle: menu: Cleanup after loadavg removal
     - cpuidle: governors: menu: Always check timers with tick stopped
     - md/raid10: fix any_working flag handling in raid10_sync_request
     - iomap: fix submission side handling of completion side errors
     - ublk: Validate SQE128 flag before accessing the cmd
     - x86/xen: make some functions static
     - Partial revert "x86/xen: fix balloon target initialization for PVH dom0"
     - PM: wakeup: Handle empty list in wakeup_sources_walk_start()
     - perf: arm_spe: Properly set hw.state on failures
     - PM: sleep: wakeirq: harden dev_pm_clear_wake_irq() against races
     - s390/cio: Fix device lifecycle handling in css_alloc_subchannel()
     - crypto: qat - fix warning on adf_pfvf_pf_proto.c
     - selftests/bpf: veristat: fix printing order in output_stats()
     - libbpf: Fix OOB read in btf_dump_get_bitfield_value
     - ARM: VDSO: Patch out __vdso_clock_getres() if unavailable
     - crypto: cavium - fix dma_free_coherent() size
     - crypto: octeontx - fix dma_free_coherent() size
     - crypto: hisilicon/zip - adjust the way to obtain the req in the callback
       function
     - crypto: hisilicon/sec2 - support skcipher/aead fallback for hardware
       queue unavailable
     - hrtimer: Fix trace oddity
     - bpf, sockmap: Fix incorrect copied_seq calculation
     - bpf, sockmap: Fix FIONREAD for sockmap
     - crypto: hisilicon/trng - modifying the order of header files
     - crypto: hisilicon/trng - support tfms sharing the device
     - bpf: Fix bpf_xdp_store_bytes proto for read-only arg
     - scsi: efct: Use IRQF_ONESHOT and default primary handler
     - EDAC/altera: Remove IRQF_ONESHOT
     - mfd: wm8350-core: Use IRQF_ONESHOT
     - sched/rt: Skip currently executing CPU in rto_next_cpu()
     - pstore/ram: fix buffer overflow in persistent_ram_save_old()
     - soc: qcom: smem: handle ENOMEM error during probe
     - EDAC/i5000: Fix snprintf() size calculation in calculate_dimm_size()
     - EDAC/i5400: Fix snprintf() limit calculation in calculate_dimm_size()
     - arm64: dts: tqma8mpql-mba8mpxl: Fix HDMI CEC pad control settings
     - clk: qcom: Return correct error code in qcom_cc_probe_by_index()
     - arm64: dts: qcom: sdm630: fix gpu_speed_bin size
     - arm64: dts: qcom: sdm845-oneplus: Don't mark ts supply boot-on
     - ARM: dts: allwinner: sun5i-a13-utoo-p66: delete "power-gpios" property
     - powerpc/uaccess: Move barrier_nospec() out of
       allow_read_{from/write}_user()
     - soc: qcom: cmd-db: Use devm_memremap() to fix memory leak in
       cmd_db_dev_probe
     - soc: mediatek: svs: Fix memory leak in svs_enable_debug_write()
     - powerpc/eeh: fix recursive pci_lock_rescan_remove locking in EEH event
       handling
     - ARM: dts: lpc32xx: Set motor PWM #pwm-cells property value to 3 cells
     - arm: dts: lpc32xx: add clocks property to Motor Control PWM device tree
       node
     - arm64: dts: amlogic: axg: assign the MMC signal clocks
     - arm64: dts: amlogic: gx: assign the MMC signal clocks
     - arm64: dts: amlogic: g12: assign the MMC B and C signal clocks
     - arm64: dts: amlogic: g12: assign the MMC A signal clock
     - arm64: dts: qcom: sdm845-db845c: drop CS from SPIO0
     - arm64: dts: qcom: sdm845-db845c: specify power for WiFi CH1
     - arm64: dts: qcom: sm6115: Add CX_MEM/DBGC GPU regions
     - workqueue: Factor out assign_rescuer_work()
     - workqueue: Only assign rescuer work when really needed
     - workqueue: Process rescuer work items one-by-one using a cursor
     - smack: /smack/doi must be > 0
     - smack: /smack/doi: accept previously used values
     - ASoC: nau8821: Consistently clear interrupts before unmasking
     - ASoC: nau8821: Avoid unnecessary blocking in IRQ handler
     - ASoC: nau8821: Fixup nau8821_enable_jack_detect()
     - drm/amdgpu: Use explicit VCN instance 0 in SR-IOV init
     - drm/msm/disp/dpu: add merge3d support for sc7280
     - regulator: core: move supply check earlier in set_machine_constraints()
     - HID: playstation: Add missing check for input_ff_create_memless
    

Source diff to previous version
2141536 Some powerpc test from ubuntu_kernel_selftests timeout with 45 seconds
2150809 Noble update: upstream stable patchset 2026-05-01
2148714 Noble update: upstream stable patchset 2026-04-17
2148260 Noble update: upstream stable patchset 2026-04-13
CVE-2026-23249 In the Linux kernel, the following vulnerability has been resolved: xfs: check for deleted cursors when revalidating two btrees The free space and
CVE-2025-71267 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop triggered by zero-sized ATTR_LIST We found an infi
CVE-2025-71265 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: fix infinite loop in attr_load_runs_range on inconsistent metadata W
CVE-2025-71266 In the Linux kernel, the following vulnerability has been resolved: fs: ntfs3: check return value of indx_find to avoid infinite loop We found an i
CVE-2026-23241 In the Linux kernel, the following vulnerability has been resolved: audit: add missing syscalls to read class The "at" variant of getxattr() and li
CVE-2025-71239 In the Linux kernel, the following vulnerability has been resolved: audit: add fchmodat2() to change attributes class fchmodat2(), introduced in ve
CVE-2026-31411 In the Linux kernel, the following vulnerability has been resolved: net: atm: fix crash due to unvalidated vcc pointer in sigd_send() Reproducer av
CVE-2026-23243 In the Linux kernel, the following vulnerability has been resolved: RDMA/umad: Reject negative data_len in ib_umad_write ib_umad_write computes dat
CVE-2026-23242 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix potential NULL pointer dereference in header processing If siw_ge
CVE-2025-71233 In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Avoid creating sub-groups asynchronously The asynchronous creati
CVE-2025-71231 In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix out-of-bounds index in find_empty_iaa_compression_mode The lo
CVE-2026-23169 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix race in mptcp_pm_nl_flush_addrs_doit() syzbot and Eulgyu Kim reporte
CVE-2025-40005 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: Implement refcount to handle unbind during busy driver su
CVE-2025-71232 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Free sp in error path to fix system crash System crash seen duri
CVE-2025-71235 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Delay module unload while fabric scan in progress System crash s
CVE-2025-71236 In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Validate sp before freeing associated memory System crash with t
CVE-2025-71229 In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: Fix alignment fault in rtw_core_enable_beacon() rtw_core_enable_be
CVE-2025-71237 In the Linux kernel, the following vulnerability has been resolved: nilfs2: Fix potential block overflow that cause system hang When a user execute
CVE-2026-23229 In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - Add spinlock protection with virtqueue notification When VM bo
CVE-2026-23222 In the Linux kernel, the following vulnerability has been resolved: crypto: omap - Allocate OMAP_CRYPTO_FORCE_COPY scatterlists correctly The exist
CVE-2026-23228 In the Linux kernel, the following vulnerability has been resolved: smb: server: fix leak of active_num_conn in ksmbd_tcp_new_connection() On kthre
CVE-2026-23220 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix infinite loop caused by next_smb2_rcv_hdr_off reset in error paths T
CVE-2026-23230 In the Linux kernel, the following vulnerability has been resolved: smb: client: split cached_fid bitfields to avoid shared-byte RMW races is_open,
CVE-2026-23272 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case
CVE-2026-31418 In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: drop logically empty buckets in mtype_del mtype_del() counts
CVE-2026-23392 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release flowtable after rcu grace period on error Call sy
CVE-2026-23278 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: always walk all pending catchall elements During transact
CVE-2026-31419 In the Linux kernel, the following vulnerability has been resolved: net: bonding: fix use-after-free in bond_xmit_broadcast() bond_xmit_broadcast()
CVE-2026-31431 In the Linux kernel, the following vulnerability has been resolved: crypto: algif_aead - Revert to operating out-of-place This mostly reverts commi
CVE-2026-31533 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUS
CVE-2026-31504 In the Linux kernel, the following vulnerability has been resolved: net: fix fanout UAF in packet_release() via NETDEV_UP race `packet_release()` h

Version: 6.8.0-116.116 2026-04-23 01:10:23 UTC

 linux (6.8.0-116.116) noble; urgency=medium
 .
   * noble/linux: 6.8.0-116.116 -proposed tracker (LP: #2150048)
 .
   * Linux kernel 6.17.0-22.22 breaks amdxdna (LP: #2149766)
     - Revert "iommu: disable SVA when CONFIG_X86 is set"
 .
   * Revert "netfilter: conntrack: fix erronous removal of offload bit"
     (LP: #2149762)
     - Revert "netfilter: conntrack: fix erronous removal of offload bit"
 .

2149766 Linux kernel 6.17.0-22.22 breaks amdxdna
2149762 Revert \



About   -   Send Feedback to @ubuntu_updates