| 2121673 | noble ubuntu_ftrace_smoke_test:mmiotrace timeout on aws:r5.metal | 
                
                | 2103415 | [25.04 FEAT] [post announcement] [KRN2304] CPU-MF Counters for new IBM Z hardware - perf part | 
                
                | 2122554 | memory leaks when configuring a small rate limit in audit | 
                
                | 2121956 | [UBUNTU 24.04] PAI/NNPA support for new IBM z17 | 
                
                | 2121150 | [UBUNTU 24.04] s390/pci: Don't abort recovery for user-space drivers | 
                
                | 2121149 | [UBUNTU 24.04] s390/pci: Fix stale function handles in error handling | 
                
                | 2121146 | [UBUNTU 24.04] vfio/pci: fix 8-byte PCI loads and stores | 
                
                | 2120209 | x86 systems with PCIe BAR addresses located outside a certain range see P2PDMA allocation failures and CUDA initialization errors | 
                
                | 2104911 | sources list generation using dwarfdump takes up to 0.5hr in build process | 
                
                | 2121257 | [SRU] Apparmor: Unshifted uids for hardlinks and unix sockets in user namespaces | 
                
                | 2119713 | UBSAN: shift-out-of-bounds in drivers/edac/skx_common.c:452:16 | 
                
                | 2102749 | [IdeaPad Slim 5 13ARP10 , 83J2] Microphone on AMD Ryzen 7 7735HS does not work | 
                
                | 2120561 | Fix compilation failure because of incomplete backport | 
                
                | 2121716 | Noble update: upstream stable patchset 2025-09-01 | 
                
                | 2120877 | Noble update: upstream stable patchset 2025-08-18 | 
                
                | 2120516 | TLS socket disconnection causes various issues | 
                
                | 1786013 | Packaging resync | 
                
                | CVE-2025-22028 | In the Linux kernel, the following vulnerability has been resolved:  media: vimc: skip .s_stream() for stopped entities  Syzbot reported [1] a warnin | 
                
                | CVE-2025-22036 | In the Linux kernel, the following vulnerability has been resolved:  exfat: fix random stack corruption after get_block  When get_block is called wit | 
                
                | CVE-2025-22039 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: fix overflow in dacloffset bounds check  The dacloffset field was origina | 
                
                | CVE-2025-22062 | In the Linux kernel, the following vulnerability has been resolved:  sctp: add mutual exclusion in proc_sctp_do_udp_port()  We must serialize calls t | 
                
                | CVE-2025-22065 | In the Linux kernel, the following vulnerability has been resolved:  idpf: fix adapter NULL pointer dereference on reboot  With SRIOV enabled, idpf e | 
                
                | CVE-2025-22068 | In the Linux kernel, the following vulnerability has been resolved:  ublk: make sure ubq->canceling is set when queue is frozen  Now ublk driver depe | 
                
                | CVE-2025-22070 | In the Linux kernel, the following vulnerability has been resolved:  fs/9p: fix NULL pointer dereference on mkdir  When a 9p tree was mounted with op | 
                
                | CVE-2025-40114 | In the Linux kernel, the following vulnerability has been resolved:  iio: light: Add check for array bounds in veml6075_read_int_time_ms  The array c | 
                
                | CVE-2025-22025 | In the Linux kernel, the following vulnerability has been resolved:  nfsd: put dl_stid if fail to queue dl_recall  Before calling nfsd4_run_cb to que | 
                
                | CVE-2025-22027 | In the Linux kernel, the following vulnerability has been resolved:  media: streamzap: fix race between device disconnection and urb callback  Syzkal | 
                
                | CVE-2025-39735 | In the Linux kernel, the following vulnerability has been resolved:  jfs: fix slab-out-of-bounds read in ea_get()  During the "size_check" label in e | 
                
                | CVE-2025-22033 | In the Linux kernel, the following vulnerability has been resolved:  arm64: Don't call NULL in do_compat_alignment_fixup()  do_alignment_t32_to_handl | 
                
                | CVE-2025-22035 | In the Linux kernel, the following vulnerability has been resolved:  tracing: Fix use-after-free in print_graph_function_flags during tracer switchin | 
                
                | CVE-2025-22038 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: validate zero num_subauth before sub_auth is accessed  Access psid->sub_a | 
                
                | CVE-2025-22040 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: fix session use-after-free in multichannel connection  There is a race co | 
                
                | CVE-2025-22041 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: fix use-after-free in ksmbd_sessions_deregister()  In multichannel mode, | 
                
                | CVE-2025-22042 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: add bounds check for create lease context  Add missing bounds check for c | 
                
                | CVE-2025-22044 | In the Linux kernel, the following vulnerability has been resolved:  acpi: nfit: fix narrowing conversion in acpi_nfit_ctl  Syzkaller has reported a | 
                
                | CVE-2025-22045 | In the Linux kernel, the following vulnerability has been resolved:  x86/mm: Fix flush_tlb_range() when used for zapping normal PMDs  On the followin | 
                
                | CVE-2025-22050 | In the Linux kernel, the following vulnerability has been resolved:  usbnet:fix NPE during rx_complete  Missing usbnet_going_away Check in Critical P | 
                
                | CVE-2025-22053 | In the Linux kernel, the following vulnerability has been resolved:  net: ibmveth: make veth_pool_store stop hanging  v2: - Created a single error ha | 
                
                | CVE-2025-22054 | In the Linux kernel, the following vulnerability has been resolved:  arcnet: Add NULL check in com20020pci_probe()  devm_kasprintf() returns NULL whe | 
                
                | CVE-2025-22055 | In the Linux kernel, the following vulnerability has been resolved:  net: fix geneve_opt length integer overflow  struct geneve_opt uses 5 bit length | 
                
                | CVE-2025-22056 | In the Linux kernel, the following vulnerability has been resolved:  netfilter: nft_tunnel: fix geneve_opt type confusion addition  When handling mul | 
                
                | CVE-2025-22057 | In the Linux kernel, the following vulnerability has been resolved:  net: decrease cached dst counters in dst_release  Upstream fix ac888d58869b ("ne | 
                
                | CVE-2025-22058 | In the Linux kernel, the following vulnerability has been resolved:  udp: Fix memory accounting leak.  Matt Dowling reported a weird UDP memory usage | 
                
                | CVE-2025-22060 | In the Linux kernel, the following vulnerability has been resolved:  net: mvpp2: Prevent parser TCAM memory corruption  Protect the parser TCAM/SRAM | 
                
                | CVE-2025-38637 | In the Linux kernel, the following vulnerability has been resolved:  net_sched: skbprio: Remove overly strict queue assertions  In the current implem | 
                
                | CVE-2025-22063 | In the Linux kernel, the following vulnerability has been resolved:  netlabel: Fix NULL pointer exception caused by CALIPSO on IPv4 sockets  When cal | 
                
                | CVE-2025-22064 | In the Linux kernel, the following vulnerability has been resolved:  netfilter: nf_tables: don't unregister hook when table is dormant  When nf_table | 
                
                | CVE-2025-22066 | In the Linux kernel, the following vulnerability has been resolved:  ASoC: imx-card: Add NULL check in imx_card_probe()  devm_kasprintf() returns NUL | 
                
                | CVE-2023-53034 | In the Linux kernel, the following vulnerability has been resolved:  ntb_hw_switchtec: Fix shift-out-of-bounds in switchtec_ntb_mw_set_trans  There i | 
                
                | CVE-2025-22071 | In the Linux kernel, the following vulnerability has been resolved:  spufs: fix a leak in spufs_create_context()  Leak fixes back in 2008 missed one | 
                
                | CVE-2025-22072 | In the Linux kernel, the following vulnerability has been resolved:  spufs: fix gang directory lifetimes  prior to "[POWERPC] spufs: Fix gang destroy | 
                
                | CVE-2025-22073 | In the Linux kernel, the following vulnerability has been resolved:  spufs: fix a leak on spufs_new_file() failure  It's called from spufs_fill_dir() | 
                
                | CVE-2025-38575 | In the Linux kernel, the following vulnerability has been resolved:  ksmbd: use aead_request_free to match aead_request_alloc  Use aead_request_free( | 
                
                | CVE-2025-22075 | In the Linux kernel, the following vulnerability has been resolved:  rtnetlink: Allocate vfinfo size for VF GUIDs when supported  Commit 30aad41721e0 | 
                
                | CVE-2025-37937 | In the Linux kernel, the following vulnerability has been resolved:  objtool, media: dib8000: Prevent divide-by-zero in dib8000_set_dds()  If dib8000 | 
                
                | CVE-2025-22079 | In the Linux kernel, the following vulnerability has been resolved:  ocfs2: validate l_tree_depth to avoid out-of-bounds access  The l_tree_depth fie | 
                
                | CVE-2025-22080 | In the Linux kernel, the following vulnerability has been resolved:  fs/ntfs3: Prevent integer overflow in hdr_first_de()  The "de_off" and "used" va | 
                
                | CVE-2025-22081 | In the Linux kernel, the following vulnerability has been resolved:  fs/ntfs3: Fix a couple integer overflows on 32bit systems  On 32bit systems the | 
                
                | CVE-2025-22083 | In the Linux kernel, the following vulnerability has been resolved:  vhost-scsi: Fix handling of multiple calls to vhost_scsi_set_endpoint  If vhost_ | 
                
                | CVE-2025-22086 | In the Linux kernel, the following vulnerability has been resolved:  RDMA/mlx5: Fix mlx5_poll_one() cur_qp update flow  When cur_qp isn't NULL, in or | 
                
                | CVE-2025-22089 | In the Linux kernel, the following vulnerability has been resolved:  RDMA/core: Don't expose hw_counters outside of init net namespace  Commit 467f43 | 
                
                | CVE-2025-39728 | In the Linux kernel, the following vulnerability has been resolved:  clk: samsung: Fix UBSAN panic in samsung_clk_init()  With UBSAN_ARRAY_BOUNDS=y, | 
                
                | CVE-2025-22090 | In the Linux kernel, the following vulnerability has been resolved:  x86/mm/pat: Fix VM_PAT handling when fork() fails in copy_page_range()  If track | 
                
                | CVE-2025-38152 | In the Linux kernel, the following vulnerability has been resolved:  remoteproc: core: Clear table_sz when rproc_shutdown  There is case as below cou | 
                
                | CVE-2025-38240 | In the Linux kernel, the following vulnerability has been resolved:  drm/mediatek: dp: drm_err => dev_err in HPD path to avoid NULL ptr  The function | 
                
                | CVE-2025-22095 | In the Linux kernel, the following vulnerability has been resolved:  PCI: brcmstb: Fix error path after a call to regulator_bulk_get()  If the regula | 
                
                | CVE-2025-22097 | In the Linux kernel, the following vulnerability has been resolved:  drm/vkms: Fix use after free and double free on init error  If the driver initia | 
                
                | CVE-2025-23136 | In the Linux kernel, the following vulnerability has been resolved:  thermal: int340x: Add NULL check for adev  Not all devices have an ACPI companio | 
                
                | CVE-2025-23138 | In the Linux kernel, the following vulnerability has been resolved:  watch_queue: fix pipe accounting mismatch  Currently, watch_queue_set_size() mod | 
                
                | CVE-2025-39682 | In the Linux kernel, the following vulnerability has been resolved:  tls: fix handling of zero-length records on the rx_list  Each recvmsg() call mus | 
                
                | CVE-2025-38500 | In the Linux kernel, the following vulnerability has been resolved:  xfrm: interface: fix use-after-free after changing collect_md xfrm interface  co | 
                
                | CVE-2025-37756 | In the Linux kernel, the following vulnerability has been resolved:  net: tls: explicitly disallow disconnect  syzbot discovered that it can disconne | 
                
                | CVE-2025-38477 | In the Linux kernel, the following vulnerability has been resolved:  net/sched: sch_qfq: Fix race condition on qfq_aggregate  A race condition can oc | 
                
                | CVE-2025-38618 | In the Linux kernel, the following vulnerability has been resolved:  vsock: Do not allow binding to VMADDR_PORT_ANY  It is possible for a vsock to au | 
                
                | CVE-2025-38617 | In the Linux kernel, the following vulnerability has been resolved:  net/packet: fix a race in packet_set_ring() and packet_notifier()  When packet_s | 
                
                | CVE-2025-37785 | In the Linux kernel, the following vulnerability has been resolved:  ext4: fix OOB read when checking dotdot dir  Mounting a corrupted filesystem wit |