UbuntuUpdates.org

Package "linux-cloud-tools-7.0.0-28-generic"

This package belongs to a PPA: Canonical Kernel Team

Name: linux-cloud-tools-7.0.0-28-generic

Description:

Linux kernel version specific cloud tools for version 7.0.0-28

Latest version: 7.0.0-28.28
Release: resolute (26.04)
Level: base
Repository: main
Head package: linux

Links


Download "linux-cloud-tools-7.0.0-28-generic"


Other versions of "linux-cloud-tools-7.0.0-28-generic" in Resolute

No other version of this package is available in the Resolute release.

Changelog

Version: 7.0.0-28.28 2026-06-21 03:09:32 UTC

 linux (7.0.0-28.28) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-28.28 -proposed tracker (LP: #2157520)
 .
   * Backport ASoC SDCA, AMD SoundWire, and RT722 audio fixes (LP: #2154418)
     - ASoC: amd: acp-sdw-legacy: rename the dmic component name
     - SAUCE: ASoC: rt722-sdca: add FU06 Playback Switch for speaker mute
       control
 .
   * MIPI camera of a BBG809N3A_B sensor SKU of the DELL Pro 14 Premium PA14260
     renders upside-down (LP: #2155837)
     - SAUCE: media: ipu-bridge: correct platform handling for DELL Pro 14
       Premium PA14260
 .
   * resolute ubuntu_kernel_selftests:seccomp_build test compilation issue
     (LP: #2154174)
     - SAUCE: selftests/seccomp fix compilation issue for amd64
 .
   * [Ubuntu 26.04] Severe Performance Degradation on kernel 7.0.0-15
     (LP: #2154748)
     - s390: Remove GENERIC_LOCKBREAK Kconfig option
     - UBUNTU [Config]: Remove GENERIC_LOCKBREAK in s390x
 .
   * Fix no sound output device on Dell GhostRider PTL no camera SKU
     (LP: #2156559)
     - ASoC: Intel: sof_sdw: append dai type to dai link name unconditionally
 .
   * Fix no audio from right built-in speaker on HP ZBook with TAS2781
     amplifier (LP: #2156556)
     - ALSA: hda/tas2781: Fix device-0 reset issue and handle -EXDEV in block
       data processing
 .
   * Installer fails internally with a RSync error due to page fault
     (LP: #2150640)
     - ovl: keep err zero after successful ovl_cache_get()
 .
   * Internal display black screen on Intel Lunar Lake with eDP panel
     (LP: #2156312)
     - drm/i915/alpm: Allow LOBF only for platform that have Always on VRR TG
 .
   * Thunderbolt DP tunnel torn down during boot with LUKS Full Disk Encryption
     (LP: #2155096)
     - SAUCE: thunderbolt: Defer DP tunnel teardown until display driver is
       ready
 .
   * watchdog: lenovo_se10_wdt: Add SE10 Gen 2 support (LP: #2154715)
     - watchdog: lenovo_se10_wdt: Add support for SE10 Gen 2 platform
     - watchdog: lenovo_se10_wdt: Fix use-after-free and resource leak risk
 .
   * [Ubuntu 26.04] KVM: IBM Test Accelerator for Z (TAZ) not working properly
     (LP: #2153159)
     - KVM: s390: only deliver service interrupt with payload
     - KVM: s390: vsie: Allow non-zarch guests
     - KVM: s390: vsie: Disable some bits when in ESA mode
     - KVM: s390: vsie: Accommodate ESA prefix pages
     - KVM: s390: Add KVM capability for ESA mode guests
 .
   * ubuntu_bpf failed to build on Resolute (error: expected ‘:’, ‘,’, ‘;’, ‘}’
     or ‘__attribute__’ before ‘__counted_by’) (LP: #2150071)
     - tools/headers: Regenerate stddef.h to fix BPF selftests
 .
   * ubuntu_bpf: FTBFS with clang 23 / gcc 15 (LP: #2154343)
     - selftests/bpf: Fix const qualifier warning in fexit_bpf2bpf.c
 .
   * ALSA: hda/tas2781 Audio Fix for the front-right speacker (LP: #2149770)
     - ALSA: hda/tas2781: Fix sound abnormal issue on some SPI device
 .
   * Fix bad audio record quality when volume above 50% on Framework PTL
     (LP: #2153155)
     - ALSA: hda/realtek: fix mic boost on Framework PTL
 .
   * Patchset for TUXEDO devices (LP: #2152570)
     - drm/i915/vbt: Add edp pipe joiner enable/disable bits
     - drm/i915/dp: Avoid joiner for eDP if not enabled in VBT
     - drm/amd/display: Add Idle state manager(ISM)
     - drm/i915/backlight: Remove try_vesa_interface
     - drm/i915/backlight: Use intel_panel variable instead of intel_connector
     - drm/i915/backlight: Take luminance_set into account for VESA backlight
     - drm/i915/backlight: Check luminance_set when disabling PWM via AUX VESA
       backlight
     - drm/i915/backlight: Short circuit intel_dp_aux_supports_hdr_backlight
     - drm/i915/backlight: Update debug log during backlight setup
     - drm/i915/backlight: Check if VESA backlight is possible
     - drm/i915/backlight: Provide clear description on how backlight level is
       controlled
     - drm/i915/backlight: Fix VESA backlight possible check condition
 .
   * Resolute update: v7.0.12 upstream stable release (LP: #2156636)
     - Input: usbtouchscreen - clamp NEXIO data_len/x_len to URB buffer size
     - ACPI: button: Fix ACPI GPE handler leak during removal
     - ACPI: button: Enable wakeup GPEs for ACPI buttons at probe time
     - xfrm: move policy_bydst RCU sync from per-netns .exit to .pre_exit
     - net/sched: sch_sfb: Replace direct dequeue call with peek and
       qdisc_dequeue_peeked
     - bcache: fix uninitialized closure object
     - nfc: llcp: Fix use-after-free in llcp_sock_release()
     - nfc: llcp: Fix use-after-free race in nfc_llcp_recv_cc()
     - xfrm: Check for underflow in xfrm_state_mtu
     - nfc: nxp-nci: i2c: use rising-edge IRQ on ACPI systems
     - tools/bootconfig: Fix buf leaks in apply_xbc
     - HID: remove duplicate hid_warn_ratelimited definition
     - kunit: fix use-after-free in debugfs when using kunit.filter
     - accel/rocket: fix UAF via dangling GEM handle in create_bo
     - netfilter: synproxy: refresh tcphdr after skb_ensure_writable
     - netfilter: xt_cpu: prefer raw_smp_processor_id
     - netfilter: ebtables: fix OOB read in compat_mtw_from_user
     - netfilter: nf_tables: fix dst corruption in same register operation
     - vsock: keep poll shutdown state consistent
     - net: netlink: fix sending unassigned nsid after assigned one
     - net: netlink: don't set nsid on local notifications
     - net/smc: Do not re-initialize smc hashtables
     - net/iucv: fix locking in .getsockopt
     - scsi: core: Run queues for all non-SDEV_DEL devices from
       scsi_run_host_queues
     - scsi: scsi_debug: Add missing newline in scsi_debug_device_reset()
     - ipv4: free net->ipv4.sysctl_local_reserved_ports after
       unregister_net_sysctl_table()
     - ALSA: hda: cs35l56: Fix system name string leaks
     - ALSA: pcm: oss: Fix setup list UAF on proc write error
     - ASoC: Intel: bytcht_es8316: Fix MCLK leak on init errors
     - net/mlx5: HWS: Reject

Source diff to previous version
2154174 resolute ubuntu_kernel_selftests:seccomp_build test compilation issue
2154748 [Ubuntu 26.04] Severe Performance Degradation on kernel 7.0.0-15
2156559 Fix no sound output device on Dell GhostRider PTL no camera SKU
2156556 Fix no audio from right built-in speaker on HP ZBook with TAS2781 amplifier
2150640 Installer fails internally with a RSync error due to page fault
2156312 Internal display black screen on Intel Lunar Lake with eDP panel
2155096 Thunderbolt DP tunnel torn down during boot with LUKS Full Disk Encryption
2154715 watchdog: lenovo_se10_wdt: Add SE10 Gen 2 support
2153159 [Ubuntu 26.04] KVM: IBM Test Accelerator for Z (TAZ) not working properly
2150071 ubuntu_bpf failed to build on Resolute (error: expected \u2018:\u2019, \u2018,\u2019, \u2018;\u2019, \u2018}\u2019 or \u2018__attribute__\u2019 befor
2154343 ubuntu_bpf: FTBFS with clang 23 / gcc 15
2149770 ALSA: hda/tas2781 Audio Fix for the front-right speacker
2153155 Fix bad audio record quality when volume above 50% on Framework PTL
2152570 Patchset for TUXEDO devices
2156636 Resolute update: v7.0.12 upstream stable release
2156390 Resolute update: v7.0.11 upstream stable release
2156385 Resolute update: v7.0.10 upstream stable release
2156006 Resolute update: v7.0.9 upstream stable release
2155988 Resolute update: v7.0.7 upstream stable release
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
CVE-2026-46318 In the Linux kernel, the following vulnerability has been resolved: Revert "mm/hugetlbfs: update hugetlbfs to use mmap_prepare" This reverts commit
CVE-2026-46322 In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in
CVE-2026-46320 In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp() tap_get_user_xdp() rejects
CVE-2026-46321 In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_one() tun_xdp_one() returns
CVE-2026-46316 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased e
CVE-2026-46317 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Reassign nested_mmus array behind mmu_lock kvm->arch.nested_mmus[]
CVE-2026-45846 In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() bareudp_fi
CVE-2026-45845 In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in class dump When a TAPRIO chi
CVE-2026-45844 In the Linux kernel, the following vulnerability has been resolved: netfilter: arp_tables: fix IEEE1394 ARP payload parsing Weiming Shi says: "arp
CVE-2026-46242 In the Linux kernel, the following vulnerability has been resolved: eventpoll: fix ep_remove struct eventpoll / struct file UAF ep_remove() (via ep
CVE-2026-45843 In the Linux kernel, the following vulnerability has been resolved: slip: bound decode() reads against the compressed packet length slhc_uncompress
CVE-2026-45842 In the Linux kernel, the following vulnerability has been resolved: slip: reject VJ receive packets on instances with no rstate array slhc_init() a
CVE-2026-45841 In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO nf_osf_match_one
CVE-2026-45840 In the Linux kernel, the following vulnerability has been resolved: openvswitch: cap upcall PID array size and pre-size vport replies The vport net
CVE-2026-45839 In the Linux kernel, the following vulnerability has been resolved: bpf: reject negative CO-RE accessor indices in bpf_core_parse_spec() CO-RE acce
CVE-2026-45838 In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_get_next_key() list_next_entry
CVE-2026-46214 In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix accept queue count leak on transport mismatch virtio_transpor
CVE-2026-46207 In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix empty payload in tap skb for non-linear buffers For non-linea
CVE-2026-46234 In the Linux kernel, the following vulnerability has been resolved: vsock: fix buffer size clamping order In vsock_update_buffer_size(), the buffer
CVE-2026-46223 In the Linux kernel, the following vulnerability has been resolved: cgroup: Defer css percpu_ref kill on rmdir until cgroup is depopulated A chain
CVE-2026-46221 In the Linux kernel, the following vulnerability has been resolved: EDAC/versalnet: Fix device name memory leak The device name allocated via kzall
CVE-2026-46231 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: put backbone reference on failed claim hash insert When batadv
CVE-2026-46233 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: only purge non-released claims When batadv_bla_purge_claims()
CVE-2026-46212 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: prevent use-after-free when deleting claims When batadv_bla_de
CVE-2026-46238 In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop caching unowned originator pointers in BAT IV BAT IV keeps the
CVE-2026-46208 In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop tp_meter sessions during mesh teardown TP meter sessions remai
CVE-2026-46206 In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject new tp_meter sessions during teardown Prevent tp_meter from
CVE-2026-46198 In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix integer overflow on buff_pos Fixing an integer overflow present
CVE-2026-46227 In the Linux kernel, the following vulnerability has been resolved: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL The S
CVE-2026-46220 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/sdma4: replace BUG_ON with WARN_ON in fence emission sdma_v4_0_ring_
CVE-2026-46215 In the Linux kernel, the following vulnerability has been resolved: drm: Set old handle to NULL before prime swap in change_handle There was a pote
CVE-2026-46201 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import() When xe_dma_buf_in
CVE-2026-46224 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure When drm_gpu
CVE-2026-46197 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: validate SVM ioctl nattr against buffer size Validate nattr field a
CVE-2026-46209 In the Linux kernel, the following vulnerability has been resolved: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_fu
CVE-2026-46230 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg Check bounds against th
CVE-2026-46199 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg Check bounds against th
CVE-2026-46204 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB reads when parsing IB Rewrite the IB parsing to us
CVE-2026-46218 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add bounds checking to ib_{get,set}_value The uvd/vce/vcn code acce
CVE-2026-46229 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Clear VRAM on allocation to prevent stale data exposure KFD VRAM al
CVE-2026-46211 In the Linux kernel, the following vulnerability has been resolved: drm/msm/gem: fix error handling in msm_ioctl_gem_info_get_metadata() msm_ioctl_
CVE-2026-46203 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: fix unclocked access on unbind Make sure that the control
CVE-2026-46219 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on unbind The state machine work is scheduled
CVE-2026-46200 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix controller deregistration Make sure to deregister the control
CVE-2026-46241 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on registration failure Make sure to disable a
CVE-2026-46225 In the Linux kernel, the following vulnerability has been resolved: spi: rspi: fix controller deregistration Make sure to deregister the controller
CVE-2026-46226 In the Linux kernel, the following vulnerability has been resolved: spi: fsl: fix controller deregistration Make sure to deregister the controller
CVE-2026-46228 In the Linux kernel, the following vulnerability has been resolved: spi: ch341: fix devres lifetime USB drivers bind to USB interfaces and any devi
CVE-2026-46216 In the Linux kernel, the following vulnerability has been resolved: drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status() When
CVE-2026-46210 In the Linux kernel, the following vulnerability has been resolved: media: iris: fix use-after-free of fmt_src during MBPF check During concurrency
CVE-2026-46240 In the Linux kernel, the following vulnerability has been resolved: media: iris: Fix use-after-free in iris_release_internal_buffers() The recent c
CVE-2026-46235 In the Linux kernel, the following vulnerability has been resolved: media: saa7164: add ioremap return checks and cleanups Add checks for ioremap r
CVE-2026-46222 In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: Add missing MUST_CONNECT flag to pads The pads missed c
CVE-2026-46239 In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5647: Fix runtime PM refcount leak in s_ctrl Three control cases
CVE-2026-46236 In the Linux kernel, the following vulnerability has been resolved: media: rc: xbox_remote: heed DMA restrictions The buffer for IO must not be par
CVE-2026-46205 In the Linux kernel, the following vulnerability has been resolved: staging: media: atomisp: Disallow all private IOCTLs Disallow all private IOCTL
CVE-2026-46202 In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: run inactivity autodim from workqueues The autodim code in hi
CVE-2026-46213 In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix UAF in inactivity-timer cleanup path Commit 38224c472a03
CVE-2026-46232 In the Linux kernel, the following vulnerability has been resolved: HID: playstation: Clamp num_touch_reports A device would never lie about the nu
CVE-2026-43490 In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent di
CVE-2026-46174 In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache
CVE-2026-46110 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Prevent NULL deref when RX memory exhausted The CPU receives frame
CVE-2026-46153 In the Linux kernel, the following vulnerability has been resolved: 8021q: delete cleared egress QoS mappings vlan_dev_set_egress_priority() curren
CVE-2026-46169 In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix uninit-value by validating catalog record size Syzbot reported a K
CVE-2026-46188 In the Linux kernel, the following vulnerability has been resolved: octeon_ep_vf: add NULL check for napi_build_skb() napi_build_skb() can return N
CVE-2026-45837 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in arena_vm_close on fork arena_vm_open() only bumps vm
CVE-2026-46156 In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix potential ADE in loongson_gpu_fixup_dma_hang() The switch case i
CVE-2026-46147 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() Two bug
CVE-2026-46175 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix fsck inconsistency caused by FGGC of node block During FGGC node bloc
CVE-2026-46194 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix node_cnt race between extent node destroy and writeback f2fs_destroy_
CVE-2026-46170 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: free sk if last When an ADD_ADDR is retransmitted, the
CVE-2026-46158 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: always decrease sk refcount When an ADD_ADDR is retran
CVE-2026-46168 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix scheduling with atomic in timestamp sockopt Using lock_sock_fast() (
CVE-2026-46189 In the Linux kernel, the following vulnerability has been resolved: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path Sashiko
CVE-2026-46133 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject unknown opcodes before ICRC processing Even after applying com
CVE-2026-46114 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads atomic_write_reply() at drive
CVE-2026-46127 In the Linux kernel, the following vulnerability has been resolved: RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp() Sashiko
CVE-2026-46176 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init() mlx5_ib_de
CVE-2026-46178 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq() Sashiko points ou
CVE-2026-46181 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event() Sashiko points out the radix_
CVE-2026-46145 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Validate rx_hash_key_len Sashiko points out that rx_hash_key_len com
CVE-2026-46117 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() Sashiko
CVE-2026-46126 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Fix mana_destroy_wq_obj() cleanup in mana_ib_create_qp_rss() Sashiko
CVE-2026-46144 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Fix error unwind in mana_ib_create_qp_rss() Sashiko points out that
CVE-2026-46141 In the Linux kernel, the following vulnerability has been resolved: powerpc/xive: fix kmemleak caused by incorrect chip_data lookup The kmemleak re
CVE-2026-46183 In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect path kfree() with damon_sysfs_lock damon_sysfs_
CVE-2026-46121 In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock Patch
CVE-2026-46131 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: check for nEPT/nNPT in slow flush hypercalls Checking is_guest_mode(v
CVE-2026-46139 In the Linux kernel, the following vulnerability has been resolved: smb: client: use kzalloc to zero-initialize security descriptor buffer Commit 6
CVE-2026-46105 In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Limit NVMe request size to 2 MiB The HBA firmware reports NVMe M
CVE-2026-46171 In the Linux kernel, the following vulnerability has been resolved: riscv: kvm: fix vector context allocation leak When the second kzalloc (host_co
CVE-2026-46112 In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix unlocked call to hns_roce_qp_remove() Sashiko points out that hns
CVE-2026-46165 In the Linux kernel, the following vulnerability has been resolved: openvswitch: vport: fix self-deadlock on release of tunnel ports vports are use
CVE-2026-46161 In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix divide-by-zero in setup_geo() with zero far_copies setup_geo() e
CVE-2026-43492 In the Linux kernel, the following vulnerability has been resolved: lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() Yiming report
CVE-2026-46124 In the Linux kernel, the following vulnerability has been resolved: isofs: validate block number from NFS file handle in isofs_export_iget isofs_fh
CVE-2026-46130 In the Linux kernel, the following vulnerability has been resolved: dm-verity-fec: fix reading parity bytes split across blocks (take 3) fec_decode
CVE-2026-46106 In the Linux kernel, the following vulnerability has been resolved: eventfs: Hold eventfs_mutex and SRCU when remount walks events Commit 340f0c706
CVE-2026-46107 In the Linux kernel, the following vulnerability has been resolved: dm-thin: fix metadata refcount underflow There's a bug in dm-thin in the functi
CVE-2026-46160 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix missing last_unlink_trans update when removing a directory When remo
CVE-2026-46164 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info_sub_group() error path When kobject
CVE-2026-46129 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info() error path When kobject_init_and_
CVE-2026-46159 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-lea
CVE-2026-46143 In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm-lpass-dai: Fix multiple graph opens As prepare can be called
CVE-2026-46148 In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: control built-in cs manually The coreQSPI IP supports
CVE-2026-46192 In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: don't attempt to transmit during emulated read-only du
CVE-2026-46162 In the Linux kernel, the following vulnerability has been resolved: ice: fix double free in ice_sf_eth_activate() error path When auxiliary_device_
CVE-2026-46273 In the Linux kernel, the following vulnerability has been resolved: ibmveth: Disable GSO for packets with small MSS Some physical adapters on Power
CVE-2026-46191 In the Linux kernel, the following vulnerability has been resolved: fbcon: Avoid OOB font access if console rotation fails Clear the font buffer if
CVE-2026-46134 In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration cros_typ
CVE-2026-43495 In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_ms
CVE-2026-43502 In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the message is queued A zerocopy s
CVE-2026-46120 In the Linux kernel, the following vulnerability has been resolved: ip6_gre: Use cached t->net in ip6erspan_changelink(). After commit 5e72ce3e3980
CVE-2026-46142 In the Linux kernel, the following vulnerability has been resolved: net: libwx: fix VF illegal register access Register WX_CFG_PORT_ST is a PF rest
CVE-2026-46118 In the Linux kernel, the following vulnerability has been resolved: pseries/papr-hvpipe: Fix null ptr deref in papr_hvpipe_dev_create_handle() comm
CVE-2026-46182 In the Linux kernel, the following vulnerability has been resolved: pseries/papr-hvpipe: Prevent kernel stack memory leak to userspace The hdr vari
CVE-2026-46184 In the Linux kernel, the following vulnerability has been resolved: sound: ua101: fix division by zero at probe Add a missing sanity check for bNrC
CVE-2026-43498 In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM objects Prevent re-exporting of
CVE-2026-46132 In the Linux kernel, the following vulnerability has been resolved: net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfin
CVE-2026-46190 In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: debugfs: fix out-of-bounds read in spi_nor_params_show() Sashiko
CVE-2026-46150 In the Linux kernel, the following vulnerability has been resolved: fanotify: fix false positive on permission events fsnotify_get_mark_safe() may
CVE-2026-45836 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the sa
CVE-2026-45834 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the sa
CVE-2026-45835 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() Add the
CVE-2026-46138 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_comple
CVE-2026-46111 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in create_big_sync Add hci_conn_valid()
CVE-2026-46140 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: validate WMT event SKB length before struct access btmtk_usb_
CVE-2026-46186 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: validate rx pkt_type header length virtbt_rx_handle() rea
CVE-2026-46123 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: clamp rx length before skb_put virtbt_rx_work() calls skb
CVE-2026-46104 In the Linux kernel, the following vulnerability has been resolved: selinux: use sk blob accessor in socket permission helpers SELinux socket state
CVE-2026-46193 In the Linux kernel, the following vulnerability has been resolved: xfrm: ah: account for ESN high bits in async callbacks AH allocates its tempora
CVE-2026-46172 In the Linux kernel, the following vulnerability has been resolved: ipv6: xfrm6: release dst on error in xfrm6_rcv_encap() xfrm6_rcv_encap() perfor
CVE-2026-46116 In the Linux kernel, the following vulnerability has been resolved: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete KASAN reproduc
CVE-2026-46154 In the Linux kernel, the following vulnerability has been resolved: sched_ext: Read scx_root under scx_cgroup_ops_rwsem in cgroup setters scx_group
CVE-2026-46157 In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: oss: Fix data race at accessing runtime.oss.trigger Currently the ru
CVE-2026-46109 In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix memory leak on ulpi_register() error paths Commit 01af542392b5 (
CVE-2026-46146 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Avoid potential endless loop in convert_chmap_v3() The convert
CVE-2026-46167 In the Linux kernel, the following vulnerability has been resolved: usb: usblp: fix uninitialized heap leak via LPGETSTATUS ioctl Just like in a pr
CVE-2026-46151 In the Linux kernel, the following vulnerability has been resolved: usb: usblp: fix heap leak in IEEE 1284 device ID via short response usblp_ctrl_
CVE-2026-46180 In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task
CVE-2026-46122 In the Linux kernel, the following vulnerability has been resolved: wifi: b43: enforce bounds check on firmware key index in b43_rx() The firmware-
CVE-2026-46125 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep fails If connection preparati
CVE-2026-46166 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: use safe list iteration in radar detect work The call to ieee80
CVE-2026-46187 In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: fix kthread lifetime race between self-exit and external-stop RSI dr
CVE-2026-46152 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: drop stray 'static' from fast-RX rx_result ieee80211_invoke_fas
CVE-2026-46163 In the Linux kernel, the following vulnerability has been resolved: wifi: b43legacy: enforce bounds check on firmware key index in RX path Same fix
CVE-2026-46136 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: fix a potential clc buffer length underflow The buf_len is
CVE-2026-46173 In the Linux kernel, the following vulnerability has been resolved: exit: prevent preemption of oopsing TASK_DEAD task When an already-exiting task
CVE-2026-43496 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peek
CVE-2026-46113 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN The shadow MMU
CVE-2026-46179 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Don't allow pointer operations on unconfigured streams When reportin
CVE-2026-46196 In the Linux kernel, the following vulnerability has been resolved: tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() Wh
CVE-2026-43497 In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free dlfb_ops_mm
CVE-2026-46108 In the Linux kernel, the following vulnerability has been resolved: ipmi:si: Return state to normal if message allocation fails There were places w
CVE-2026-46128 In the Linux kernel, the following vulnerability has been resolved: ipmi: Check event message buffer response for bad data The event message buffer
CVE-2026-46177 In the Linux kernel, the following vulnerability has been resolved: ipmi: Add limits to event and receive message requests The driver would just fe
CVE-2026-46149 In the Linux kernel, the following vulnerability has been resolved: scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() targ
CVE-2026-46244 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: Fix IPv6 inner_thoff desync In nft_inner_parse_l2l3(), wh
CVE-2026-46137 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: fix potential data-race This mptcp_pm_add_timer() help
CVE-2026-46185 In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds read in symlink_data() Since smb2_check_message()
CVE-2026-46195 In the Linux kernel, the following vulnerability has been resolved: smb: client: validate dacloffset before building DACL pointers parse_sec_desc()
CVE-2026-46289 In the Linux kernel, the following vulnerability has been resolved: lib/scatterlist: fix length calculations in extract_kvec_to_sg Patch series "Fi
CVE-2026-46119 In the Linux kernel, the following vulnerability has been resolved: libceph: Fix slab-out-of-bounds access in auth message processing If a (potenti
CVE-2026-46135 In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix race between ICReq handling and queue teardown nvmet_tcp_handle_
CVE-2026-46155 In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds read in smb2_compound_op() If a server sends a tr
CVE-2026-46115 In the Linux kernel, the following vulnerability has been resolved: block: add pgmap check to biovec_phys_mergeable biovec_phys_mergeable() is used
CVE-2026-46243 In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descriptions cifs.spnego key descript

Version: 7.0.0-26.26 2026-05-29 05:09:00 UTC

 linux (7.0.0-26.26) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-26.26 -proposed tracker (LP: #2154530)
 .
   * Packaging resync (LP: #1786013)
     - Revert "UBUNTU: SAUCE: import Huawei ES3000_V2 (2.1.0.23)"
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA
 .
   * Resolute update: v7.0.6 upstream stable release (LP: #2152558)
     - Linux 7.0.6
     - Upstream stable to v7.0.6
 .
   * Resolute update: v7.0.5 upstream stable release (LP: #2152556)
     - Linux 7.0.5
     - Upstream stable to v7.0.5
 .
   * Resolute update: v7.0.4 upstream stable release (LP: #2152552)
     - ALSA: usb-audio: stop parsing UAC2 rates at MAX_NR_RATES
     - ALSA: usb-audio: Avoid false E-MU sample-rate notifications
     - ALSA: usb-audio: Fix Audio Advantage Micro II SPDIF switch
     - usb: xhci: Make usb_host_endpoint.hcpriv survive endpoint_disable()
     - usb: chipidea: otg: not wait vbus drop if use role_switch
     - usb: chipidea: core: allow ci_irq_handler() handle both ID and VBUS
       change
     - ALSA: usb-audio: Evaluate packsize caps at the right place
     - LoongArch: Add spectre boundry for syscall dispatch table
     - drm/nouveau: fix u32 overflow in pushbuf reloc bounds check
     - leds: qcom-lpg: Check for array overflow when selecting the high
       resolution
     - greybus: gb-beagleplay: bound bootloader receive buffering
     - greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames()
     - misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()
     - ibmasm: fix OOB reads in command_file_write due to missing size checks
     - ibmasm: fix heap over-read in ibmasm_send_i2o_message()
     - sysfs: attribute_group: Respect is_visible_const() when changing owner
     - driver core: Don't let a device probe until it's ready
     - device property: Make modifications of fwnode "flags" thread safe
     - drm/nouveau: fix nvkm_device leak on aperture removal failure
     - rust: dma: remove DMA_ATTR_NO_KERNEL_MAPPING from public attrs
     - kbuild: rust: allow `clippy::uninlined_format_args`
     - fs: afs: revert mmap_prepare() change
     - firmware: google: framebuffer: Do not mark framebuffer as busy
     - lib: test_hmm: evict device pages on file close to avoid use-after-free
     - arm64/mm: Enable batched TLB flush in unmap_hotplug_range()
     - arm64: mm: Fix rodata=full block mapping support for realm guests
     - mm: migrate: requeue destination folio on deferred split queue
     - mm: prevent droppable mappings from being locked
     - mm: fix deferred split queue races during migration
     - ocfs2: split transactions in dio completion to avoid credit exhaustion
     - Input: edt-ft5x06 - fix use-after-free in debugfs teardown
     - zram: do not forget to endio for partial discard requests
     - wifi: rtw88: check for PCI upstream bridge existence
     - wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup()
     - vfio: selftests: Fix VLA initialisation in vfio_pci_irq_set()
     - vfio/xe: Add a missing vfio_pci_core_release_dev()
     - vfio/virtio: Convert list_lock from spinlock to mutex
     - vfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutex
     - vfio/cdx: Fix NULL pointer dereference in interrupt trigger path
     - um: drivers: call kernel_strrchr() explicitly in cow_user.c
     - thermal: core: Fix thermal zone governor cleanup issues
     - spi: imx: fix use-after-free on unbind
     - spi: ch341: fix memory leaks on probe failures
     - crypto: algif_aead - snapshot IV for async AEAD requests
     - crypto: pcrypt - Fix handling of MAY_BACKLOG requests
     - dt-bindings: display: ti, am65x-dss: Fix AM62L DSS reg and clock
       constraints
     - of: unittest: fix use-after-free in of_unittest_changeset()
     - of: unittest: fix use-after-free in testdrv_probe()
     - hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt
     - EDAC/versalnet: Fix device_node leak in mc_probe()
     - PCI: imx6: Skip waiting for L2/L3 Ready on i.MX6SX
     - media: amphion: Fix race between m2m job_abort and device_run
     - ALSA: control: Validate buf_len before strnlen() in
       snd_ctl_elem_init_enum_names()
     - net: caif: clear client service pointer on teardown
     - net: strparser: fix skb_head leak in strp_abort_strp()
     - media: mtk-jpeg: fix use-after-free in release path due to uncancelled
       work
     - crypto: atmel-sha204a - Fix OTP sysfs read and error handling

Source diff to previous version
1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
2152558 Resolute update: v7.0.6 upstream stable release
2152556 Resolute update: v7.0.5 upstream stable release
2152552 Resolute update: v7.0.4 upstream stable release
2152550 Resolute update: v7.0.3 upstream stable release
2150553 Resolute update: v7.0.2 upstream stable release
2150547 Resolute update: v7.0.1 upstream stable release
2154172 GRO managed-frag use-after-free leading to local privilege escalation
2151747 AppArmor Vulnerabilities
2148809 apparmor: LLVM/clang build failure due to uninitialized variable in notify.c
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-47337 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible N ...
CVE-2026-47334 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47333 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which ca ...
CVE-2026-47332 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47330 Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which ca ...
CVE-2026-47329 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to val ...
CVE-2026-47327 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible N ...
CVE-2026-47328 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47326 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a memory lea ...
CVE-2026-46300 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() c
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta

Version: 7.0.0-21.21 2026-05-22 23:09:43 UTC

 linux (7.0.0-21.21) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-21.21 -proposed tracker (LP: #2154027)
 .
   * Packaging resync (LP: #1786013)
     - Revert "UBUNTU: SAUCE: import Huawei ES3000_V2 (2.1.0.23)"
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA
 .
   * Resolute update: v7.0.6 upstream stable release (LP: #2152558)
     - Linux 7.0.6
     - Upstream stable to v7.0.6
 .
   * Resolute update: v7.0.5 upstream stable release (LP: #2152556)
     - Linux 7.0.5
     - Upstream stable to v7.0.5
 .
   * Resolute update: v7.0.4 upstream stable release (LP: #2152552)
     - ALSA: usb-audio: stop parsing UAC2 rates at MAX_NR_RATES
     - ALSA: usb-audio: Avoid false E-MU sample-rate notifications
     - ALSA: usb-audio: Fix Audio Advantage Micro II SPDIF switch
     - usb: xhci: Make usb_host_endpoint.hcpriv survive endpoint_disable()
     - usb: chipidea: otg: not wait vbus drop if use role_switch
     - usb: chipidea: core: allow ci_irq_handler() handle both ID and VBUS
       change
     - ALSA: usb-audio: Evaluate packsize caps at the right place
     - LoongArch: Add spectre boundry for syscall dispatch table
     - drm/nouveau: fix u32 overflow in pushbuf reloc bounds check
     - leds: qcom-lpg: Check for array overflow when selecting the high
       resolution
     - greybus: gb-beagleplay: bound bootloader receive buffering
     - greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames()
     - misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()
     - ibmasm: fix OOB reads in command_file_write due to missing size checks
     - ibmasm: fix heap over-read in ibmasm_send_i2o_message()
     - sysfs: attribute_group: Respect is_visible_const() when changing owner
     - driver core: Don't let a device probe until it's ready
     - device property: Make modifications of fwnode "flags" thread safe
     - drm/nouveau: fix nvkm_device leak on aperture removal failure
     - rust: dma: remove DMA_ATTR_NO_KERNEL_MAPPING from public attrs
     - kbuild: rust: allow `clippy::uninlined_format_args`
     - fs: afs: revert mmap_prepare() change
     - firmware: google: framebuffer: Do not mark framebuffer as busy
     - lib: test_hmm: evict device pages on file close to avoid use-after-free
     - arm64/mm: Enable batched TLB flush in unmap_hotplug_range()
     - arm64: mm: Fix rodata=full block mapping support for realm guests
     - mm: migrate: requeue destination folio on deferred split queue
     - mm: prevent droppable mappings from being locked
     - mm: fix deferred split queue races during migration
     - ocfs2: split transactions in dio completion to avoid credit exhaustion
     - Input: edt-ft5x06 - fix use-after-free in debugfs teardown
     - zram: do not forget to endio for partial discard requests
     - wifi: rtw88: check for PCI upstream bridge existence
     - wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup()
     - vfio: selftests: Fix VLA initialisation in vfio_pci_irq_set()
     - vfio/xe: Add a missing vfio_pci_core_release_dev()
     - vfio/virtio: Convert list_lock from spinlock to mutex
     - vfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutex
     - vfio/cdx: Fix NULL pointer dereference in interrupt trigger path
     - um: drivers: call kernel_strrchr() explicitly in cow_user.c
     - thermal: core: Fix thermal zone governor cleanup issues
     - spi: imx: fix use-after-free on unbind
     - spi: ch341: fix memory leaks on probe failures
     - crypto: algif_aead - snapshot IV for async AEAD requests
     - crypto: pcrypt - Fix handling of MAY_BACKLOG requests
     - dt-bindings: display: ti, am65x-dss: Fix AM62L DSS reg and clock
       constraints
     - of: unittest: fix use-after-free in of_unittest_changeset()
     - of: unittest: fix use-after-free in testdrv_probe()
     - hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt
     - EDAC/versalnet: Fix device_node leak in mc_probe()
     - PCI: imx6: Skip waiting for L2/L3 Ready on i.MX6SX
     - media: amphion: Fix race between m2m job_abort and device_run
     - ALSA: control: Validate buf_len before strnlen() in
       snd_ctl_elem_init_enum_names()
     - net: caif: clear client service pointer on teardown
     - net: strparser: fix skb_head leak in strp_abort_strp()
     - media: mtk-jpeg: fix use-after-free in release path due to uncancelled
       work
     - crypto: atmel-sha204a - Fix OTP sysfs read and error handling

Source diff to previous version
1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
2152558 Resolute update: v7.0.6 upstream stable release
2152556 Resolute update: v7.0.5 upstream stable release
2152552 Resolute update: v7.0.4 upstream stable release
2152550 Resolute update: v7.0.3 upstream stable release
2150553 Resolute update: v7.0.2 upstream stable release
2150547 Resolute update: v7.0.1 upstream stable release
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta

Version: 7.0.0-18.18 2026-05-09 01:08:49 UTC

 linux (7.0.0-18.18) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-18.18 -proposed tracker (LP: #2152025)
 .
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA

Source diff to previous version
1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau

Version: 7.0.0-17.17 2026-05-06 05:09:14 UTC

 linux (7.0.0-17.17) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-17.17 -proposed tracker (LP: #2150786)
 .
   * Resolute update: v7.0.2 upstream stable release (LP: #2150553)
     - crypto: authencesn - Fix src offset when decrypting in-place
     - pwm: th1520: fix `CLIPPY=1` warning
     - drm/amdgpu: replace PASID IDR with XArray
     - crypto: krb5enc - fix sleepable flag handling in encrypt dispatch
     - crypto: krb5enc - fix async decrypt skipping hash verification
     - ksmbd: fix use-after-free in __ksmbd_close_fd() via durable scavenger
     - ksmbd: validate owner of durable handle on reconnect
     - scripts: generate_rust_analyzer.py: define scripts
     - scripts/dtc: Remove unused dts_version in dtc-lexer.l
     - fs/ntfs3: validate rec->used in journal-replay file record check
     - f2fs: fix to do sanity check on dcc->discard_cmd_cnt conditionally
     - f2fs: fix UAF caused by decrementing sbi->nr_pages[] in
       f2fs_write_end_io()
     - f2fs: fix to avoid memory leak in f2fs_rename()
     - f2fs: fix to avoid uninit-value access in f2fs_sanity_check_node_footer
     - fuse: reject oversized dirents in page cache
     - fuse: abort on fatal signal during sync init
     - fuse: Check for large folio with SPLICE_F_MOVE
     - fuse: quiet down complaints in fuse_conn_limit_write
     - fuse: fuse_dev_ioctl_clone() should wait for device file to be
       initialized
     - ksmbd: require minimum ACE size in smb_check_perm_dacl()
     - smb: server: fix active_num_conn leak on transport allocation failure
     - smb: client: fix dir separator in SMB1 UNIX mounts
     - smb: server: fix max_connections off-by-one in tcp accept path
     - smb: client: require a full NFS mode SID before reading mode bits
     - smb: client: validate the whole DACL before rewriting it in cifsacl
     - smb: client: fix OOB read in smb2_ioctl_query_info QUERY_INFO path
     - ksmbd: validate response sizes in ipc_validate_msg()
     - ksmbd: validate num_aces and harden ACE walk in smb_inherit_dacl()
     - ksmbd: fix out-of-bounds write in smb2_get_ea() EA alignment
     - ksmbd: use check_add_overflow() to prevent u16 DACL size overflow
     - ksmbd: reset rcount per connection in ksmbd_conn_wait_idle_sess_id()
     - writeback: Fix use after free in inode_switch_wbs_work_fn()
     - f2fs: fix use-after-free of sbi in f2fs_compress_write_end_io()
     - ALSA: usb-audio: apply quirk for MOONDROP JU Jiu
     - ALSA: hda/realtek: Add quirk for Legion S7 15IMH
     - ALSA: caiaq: take a reference on the USB device in create_card()
     - net/packet: fix TOCTOU race on mmap'd vnet_hdr in tpacket_snd()
     - crypto: ccp: Don't attempt to copy CSR to userspace if PSP command
       failed
     - crypto: ccp: Don't attempt to copy PDH cert to userspace if PSP command
       failed
     - crypto: ccp: Don't attempt to copy ID to userspace if PSP command failed
     - rxrpc: Fix missing validation of ticket length in non-XDR key preparsing
     - mshv_vtl: Fix vmemmap_shift exceeding MAX_FOLIO_ORDER
     - Linux 7.0.2
 .
   * Resolute update: v7.0.1 upstream stable release (LP: #2150547)
     - nfc: llcp: add missing return after LLCP_CLOSED checks
     - x86/CPU: Fix FPDSS on Zen1
     - can: raw: fix ro->uniq use-after-free in raw_rcv()
     - i2c: s3c24xx: check the size of the SMBUS message before using it
     - staging: rtl8723bs: initialize le_tmp64 in rtw_BIP_verify()
     - HID: alps: fix NULL pointer dereference in alps_raw_event()
     - HID: core: clamp report_size in s32ton() to avoid undefined shift
     - net: usb: cdc-phonet: fix skb frags[] overflow in rx_complete()
     - NFC: digital: Bounds check NFC-A cascade depth in SDD response handler
     - drm/vc4: platform_get_irq_byname() returns an int
     - bnge: return after auxiliary_device_uninit() in error path
     - ALSA: usx2y: us144mkii: fix NULL deref on missing interface 0
     - ALSA: fireworks: bound device-supplied status before string array lookup
     - fbdev: tdfxfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO
     - usb: gadget: f_ncm: validate minimum block_len in ncm_unwrap_ntb()
     - usb: gadget: f_phonet: fix skb frags[] overflow in pn_rx_complete()
     - usb: gadget: renesas_usb3: validate endpoint index in standard request
       handlers
     - smb: client: fix off-by-8 bounds check in check_wsl_eas()
     - smb: client: fix OOB reads parsing symlink error response
     - ksmbd: validate EaNameLength in smb2_get_ea()
     - ksmbd: require 3 sub-authorities before reading sub_auth[2]
     - ksmbd: fix mechToken leak when SPNEGO decode fails after token alloc
     - smb: client: avoid double-free in smbd_free_send_io() after
       smbd_send_batch_flush()
     - smb: server: avoid double-free in smb_direct_free_sendmsg after
       smb_direct_flush_send_list()
     - usbip: validate number_of_packets in usbip_pack_ret_submit()
     - usb: typec: fusb302: Switch to threaded IRQ handler
     - usb: storage: Expand range of matched versions for VL817 quirks entry
     - USB: cdc-acm: Add quirks for Yoga Book 9 14IAH10 INGENIC touchscreen
     - usb: gadget: f_hid: don't call cdev_init while cdev in use
     - usb: port: add delay after usb_hub_set_port_power()
     - fbdev: udlfb: avoid divide-by-zero on FBIOPUT_VSCREENINFO
     - scripts/gdb/symbols: handle module path parameters
     - scripts: generate_rust_analyzer.py: avoid FD leak
     - wifi: rtw88: fix device leak on probe failure
     - staging: sm750fb: fix division by zero in ps_to_hz()
     - selftests/mm: hmm-tests: don't hardcode THP size to 2MB
     - USB: serial: option: add Telit Cinterion FN990A MBIM composition
     - Docs/admin-guide/mm/damon/reclaim: warn commit_inputs vs param updates
       race
     - Docs/admin-guide/mm/damon/lru_sort: warn commit_inputs vs param updates
       race
     - ALSA: ctxfi: Limit PTP to a single page
     - dcache: Limit the minimal number of bucket to two
     - vfio/xe: Reorganize

2150553 Resolute update: v7.0.2 upstream stable release
2150547 Resolute update: v7.0.1 upstream stable release



About   -   Send Feedback to @ubuntu_updates