Open Source Vulnerabilities
Kernel
LSM: general protection fault in legacy_parse_param
Kernel
LSM: general protection fault in legacy_parse_param
Kernel
gcc-plugins/stackleak: Exactly match strings instead of prefixes
Kernel
gcc-plugins/stackleak: Exactly match strings instead of prefixes
Kernel
selinux: allow FIOCLEX and FIONCLEX with policy capability
Kernel
selinux: allow FIOCLEX and FIONCLEX with policy capability
Kernel
block, bfq: don't move oom_bfqq
Kernel
bfq: fix use-after-free in bfq_dispatch_request
Kernel
PM: core: keep irq flags in device_pm_check_callbacks()
Kernel
PM: core: keep irq flags in device_pm_check_callbacks()
Kernel
Revert "Revert "block, bfq: honor already-setup queue merges""
Kernel
Revert "Revert "block, bfq: honor already-setup queue merges""
Kernel
ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit
Kernel
ext4: fix ext4_mb_mark_bb() with flex_bg with fast_commit
Kernel
ext4: don't BUG if someone dirty pages without asking ext4 first
Kernel
ext4: don't BUG if someone dirty pages without asking ext4 first
Kernel
f2fs: fix to do sanity check on curseg->alloc_type
Kernel
ntfs: add sanity check on allocation size
Kernel
media: ir_toy: free before error exiting
Kernel
media: staging: media: zoran: calculate the right buffer number for zoran_reap_stat_com
Kernel
media: staging: media: zoran: calculate the right buffer number for zoran_reap_stat_com
Kernel
media: staging: media: zoran: move videodev alloc
Kernel
video: fbdev: nvidiafb: Use strscpy() to prevent buffer overflow
Kernel
video: fbdev: nvidiafb: Use strscpy() to prevent buffer overflow
Kernel
video: fbdev: cirrusfb: check pixclock to avoid divide by zero
Kernel
video: fbdev: cirrusfb: check pixclock to avoid divide by zero
Kernel
powerpc/kasan: Fix early region not updated correctly
Kernel
powerpc/kasan: Fix early region not updated correctly
Kernel
media: atomisp: fix dummy_ptr check to avoid duplicate active_bo
Kernel
media: atomisp: fix dummy_ptr check to avoid duplicate active_bo
Kernel
video: fbdev: sm712fb: Fix crash in smtcfb_write()
Kernel
ARM: mmp: Fix failure to remove sram device
Kernel
mmc: host: Return an error when ->enable_sdio_irq() ops is missing
Kernel
mmc: host: Return an error when ->enable_sdio_irq() ops is missing
Kernel
KVM: x86/mmu: do compare-and-exchange of gPTE via the user address
Kernel
KVM: x86/mmu: do compare-and-exchange of gPTE via the user address
Kernel
scsi: qla2xxx: Fix scheduling while atomic
Kernel
scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair()
Kernel
scsi: qla2xxx: Suppress a kernel complaint in qla_create_qpair()
Kernel
KVM: SVM: fix panic on out-of-bounds guest IRQ
Kernel
ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock()
Kernel
ubifs: Fix read out-of-bounds in ubifs_wbuf_write_nolock()
Kernel
ubifs: Fix deadlock in concurrent rename whiteout and inode writeback
Kernel
ubifs: Fix deadlock in concurrent rename whiteout and inode writeback
Kernel
ubifs: rename_whiteout: Fix double free for whiteout_ui->data
Kernel
ubifs: rename_whiteout: Fix double free for whiteout_ui->data
Kernel
ubifs: Fix to add refcount once page is set private
Kernel
ubifs: Fix to add refcount once page is set private
Kernel
wireguard: socket: ignore v6 endpoints when ipv6 is disabled
Kernel
wireguard: socket: ignore v6 endpoints when ipv6 is disabled
Kernel
wireguard: socket: free skb in send6 when ipv6 is disabled
Kernel
wireguard: socket: free skb in send6 when ipv6 is disabled
Kernel
can: mcba_usb: properly check endpoint type
Kernel
watch_queue: Free the page array when watch_queue is dismantled
Kernel
watch_queue: Free the page array when watch_queue is dismantled
Kernel
rxrpc: Fix call timer start racing with call destruction
Kernel
rxrpc: Fix call timer start racing with call destruction
Kernel
ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl
Kernel
ubi: Fix race condition between ctrl_cdev_ioctl and ubi_cdev_ioctl
Kernel
ACPI: CPPC: Avoid out of bounds access when parsing _CPC data
Kernel
ACPI: CPPC: Avoid out of bounds access when parsing _CPC data
Kernel
io_uring: fix memory leak of uid in files registration
Kernel
io_uring: fix memory leak of uid in files registration
Kernel
ax25: fix UAF bug in ax25_send_control()
Kernel
docs: sysctl/kernel: add missing bit to panic_print
Kernel
docs: sysctl/kernel: add missing bit to panic_print
Kernel
coredump: Use the vma snapshot in fill_files_note
Kernel
KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs
Kernel
KVM: x86/svm: Clear reserved bits written to PerfEvtSeln MSRs
Kernel
ath5k: fix OOB in ath5k_eeprom_read_pcal_info_5111
Kernel
drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj
Kernel
drm/amd/amdgpu/amdgpu_cs: fix refcount leak of a dma_fence obj
Kernel
ath11k: fix kernel panic during unload/load ath11k modules
Kernel
ath11k: fix kernel panic during unload/load ath11k modules
Kernel
ath11k: mhi: use mhi_sync_power_up()
Kernel
mt76: dma: initialize skip_unmap in mt76_dma_rx_fill
Kernel
mt76: dma: initialize skip_unmap in mt76_dma_rx_fill
Kernel
drm/amdgpu: Fix recursive locking warning
Kernel
PCI: endpoint: Fix alignment fault error in copy tests
Kernel
PCI: endpoint: Fix alignment fault error in copy tests
Kernel
tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH.
Kernel
tcp: Don't acquire inet_listen_hashbucket::lock with disabled BH.
Kernel
iommu/arm-smmu-v3: fix event handling soft lockup
