Commit 062d5aad authored by Ben Hutchings's avatar Ben Hutchings Committed by Lorenzo "Palinuro" Faletra
Browse files

Import Debian changes 5.18.2-1~bpo11+1

linux (5.18.2-1~bpo11+1) bullseye-backports; urgency=medium
  * Rebuild for bullseye-backports:
    - Change ABI number to 0.bpo.1
linux (5.18.2-1) unstable; urgency=medium
  * New upstream stable update:
    - netfilter: nf_tables: disallow non-stateful expression in sets earlier
    - pipe: Fix missing lock in pipe_resize_ring() (ZDI-CAN-17291)
    - netfilter: nf_tables: sanitize nft_set_desc_concat_parse() (CVE-2022-1972)
    - [x86] fpu: KVM: Set the base guest FPU uABI size to sizeof(struct
      kvm_xsave) (Closes: #1011168)
    - KVM: x86: avoid calling x86 emulator without a decoded instruction
  [ Diederik de Haas ]
  * [arm64,armel.marvell] Remove duplicate MTD_SPI_NOR config option
  * [arm64] Remove duplicate CAN_MCP251X config option
  * drivers/net/can/spi: Enable CAN_HI311X as module (Closes: #927252)
  [ Henning Schild ]
  * [x86] drivers/platform/x86: Enable SIEMENS_SIMATIC_IPC as module
  * [x86] drivers/leds: Enable LEDS_SIEMENS_SIMATIC_IPC as module
  * [x86] drivers/wdt: Enable SIEMENS_SIMATIC_IPC_WDT as module
  [ Lubomir Rintel ]
  * [x86] Enable X86_ANDROID_TABLETS as a module
  [ Michal Simek ]
  * [arm64] Enable Xilinx PHY driver and SI5341 clock driver
  [ Zhang Ning ]
  * [arm64] Enable COMMON_CLK_PWM which is needed for some Amlogic SBCs
  * [arm64] Enable Khadas MCU and fan
  * [arm64] cpufreq: Enable SCPI cpufreq driver
  * [arm64] cpuidle: Enable CONFIG_ARM_PSCI_CPUIDLE
  [ Ben Hutchings ]
  * drivers/firmware: Build ISCSI_IBFT as module on all architectures with
    ACPI. Thanks to Eric Mackay. (Closes: #1008933).
  * intel-iommu: Correct matching of the "intgpu_off" option value.
    Thanks to Markus Kolb.
  * random: Enable RANDOM_TRUST_BOOTLOADER. This can be reverted using the
    kernel parameter: random.trust_bootloader=off
  [ Bastian Blank ]
  * [amd64] Enable X86_SGX.
  [ Salvatore Bonaccorso ]
  * block, loop: support partitions without scanning (Closes: #1012298)
  * Set ABI to 1
linux (5.18-1~exp1) experimental; urgency=medium
  * New upstream release:
  [ Diederik de Haas ]
  * Rebase patches:
    - Update patches
      - debian/dfsg/vs6624-disable.patch (9958d30f38)
      - debian/version.patch (b8321ed4a4, 03248addad)
  * Change patches:
    - debian/android-enable-building-ashmem-and-binder-as-modules.patch
      Upstream removed ashmem support in 721412ed3d saying
      "The mainline replacement for ashmem is memfd, so remove the legacy code
      from drivers/staging/"
      This seems to partially revert #901492, but there is no anbox-modules in
      the archive, even though the ITP bug was closed.
  [ Ben Hutchings ]
  * Rewrite "module: Avoid ABI changes when debug info is disabled" for 5.18
  * In "firmware: Remove redundant log messages from drivers", adjust some
  * In "x86: Make x32 syscall support conditional on a kernel parameter",
    update dependency from X86_X32 to X86_X32_ABI
  * Drop "bpftool: Fix version string in recursive builds" as redundant
  * bpftool: Prepend program version to the package version
  * [s390x] Enable MARCH_Z10 instead of MARCH_Z900, since support for z9 has
    been removed upstream
  * d/config: Update with the help of kconfigeditor2
  * udeb: Move crc64 to crc-modules and make scsi-core-modules depend on that
  * libcpupower1: Update symbols file for 5.18
  * d/copyright: Update filename of extract-cert.c
  * lintian: Add lintian-override to linux-perf for non-issue
  * d/bin/, d/templates: Stop using templates for linux-perf
  * [rt] Update to 5.18-rt10
linux (5.17.11-1) unstable; urgency=medium
  * New upstream stable update:
    - [arm64] pci_irq_vector() can't be used in atomic context any longer. This
      conflicts with the usage of this function in nic_mbx_intr_handler(). age
      of this function in nic_mbx_intr_handler().
    - ipmi: When handling send message responses, don't process the message
    - ipmi:ipmi_ipmb: Fix null-ptr-deref in ipmi_unregister_smi()
    - [mips*] Fix CP0 counter erratum detection for R4k CPUs
    - ALSA: hda/realtek: Add quirk for Yoga Duet 7 13ITL6 speakers
    - ALSA: fireworks: fix wrong return count shorter than expected by 4 bytes
    - [arm64] mmc: sdhci-msm: Reset GCC_SDCC_BCR register for SDHC
    - [arm64,armhf] mmc: sunxi-mmc: Fix DMA descriptors allocated above 32 bits
    - mmc: core: Set HS clock speed before sending HS CMD13
    - gpiolib: of: fix bounds check for 'gpio-reserved-ranges'
    - [x86] fpu: Prevent FPU state corruption
    - [x86] KVM: x86/svm: Account for family 17h event renumberings in
    - [amd64] iommu/vt-d: Calculate mask for non-aligned flushes
    - drm/amdgpu: do not use passthrough mode in Xen dom0
    - Revert "SUNRPC: attempt AF_LOCAL connect on setup"
    - timekeeping: Mark NMI safe time accessors as notrace
    - firewire: fix potential uaf in outbound_phy_packet_callback()
    - firewire: remove check of list iterator against head past the loop body
    - firewire: core: extend card->lock in fw_core_handle_bus_reset
    - net: stmmac: disable Split Header (SPH) for Intel platforms
    - btrfs: sysfs: export the balance paused state of exclusive operation
    - btrfs: force v2 space cache usage for subpage mount
    - btrfs: do not BUG_ON() on failure to update inode when setting xattr
    - btrfs: export a helper for compression hard check
    - btrfs: do not allow compression on nodatacow files
    - btrfs: skip compression property for anything other than files and dirs
    - genirq: Synchronize interrupt thread startup
    - ASoC: da7219: Fix change notifications for tone generator frequency
    - [arm64] ASoC: wm8958: Fix change notifications for DSP controls
    - [arm64,armhf] ASoC: meson: Fix event generation for AUI ACODEC mux
    - [arm64,armhf] ASoC: meson: Fix event generation for G12A tohdmi mux
    - [arm64,armhf] ASoC: meson: Fix event generation for AUI CODEC mux
    - [s390x] dasd: fix data corruption for ESE devices
    - [s390x] dasd: prevent double format of tracks for ESE devices
    - [s390x] dasd: Fix read for ESE with blksize < 4k
    - [s390x] dasd: Fix read inconsistency for ESE DASD devices
    - can: isotp: remove re-binding of bound socket
    - nfc: replace improper check device_is_registered() in netlink related
    - NFC: netlink: fix sleep in atomic bug when firmware download timeout
    - [arm64,armhf] gpio: pca953x: fix irq_stat not updated when irq is disabled
      (irq_mask not set)
    - hwmon: (adt7470) Fix warning on module removal
    - [armhf] hwmon: (pmbus) disable PEC if not enabled
    - [arm*] ASoC: dmaengine: Restore NULL prepare_slave_config() callback
    - [arm64] ASoC: meson: axg-tdm-interface: Fix formatters in trigger"
    - [arm64] ASoC: meson: axg-card: Fix nonatomic links
    - ASoC: soc-ops: fix error handling
    - [amd64] iommu/vt-d: Drop stop marker messages
    - net/mlx5e: Fix trust state reset in reload
    - net/mlx5: Fix slab-out-of-bounds while reading resource dump menu
    - net/mlx5e: Fix wrong source vport matching on tunnel rule
    - net/mlx5e: Don't match double-vlan packets if cvlan is not set
    - net/mlx5e: CT: Fix queued up restore put() executing after relevant ft
    - net/mlx5e: Fix the calling of update_buffer_lossy() API
    - net/mlx5: Fix matching on inner TTC
    - net/mlx5: Avoid double clear or set of sync reset requested
    - net/mlx5: Fix deadlock in sync reset flow
    - net/mlx5e: Lag, Fix use-after-free in fib event handler
    - net/mlx5e: Lag, Fix fib_info pointer assignment
    - net/mlx5e: Lag, Don't skip fib events on current dst
    - net/mlx5e: TC, fix decap fallback to uplink when int port not supported
    - ALSA: hda/realtek: Fix mute led issue on thinkpad with cs35l41 s-codec
    - SUNRPC release the transport of a relocated task with an assigned
    - RDMA/irdma: Flush iWARP QP if modified to ERR from RTR state
    - RDMA/irdma: Reduce iWARP QP destroy time
    - RDMA/irdma: Fix possible crash due to NULL netdev in notifier
    - NFSv4: Don't invalidate inode attributes on delegation return
    - [arm64,armhf] net: stmmac: dwmac-sun8i: add missing of_node_put() in
    - [armhf] net: cpsw: add missing of_node_put() in cpsw_probe_dt()
    - net: igmp: respect RCU rules in ip_mc_source() and ip_mc_msfilter()
    - [arm64] drm/msm/dp: remove fail safe mode related code
    - hinic: fix bug of wq out of bound access
    - SUNRPC: Don't leak sockets in xs_local_connect()
    - mld: respect RCU rules in ip6_mc_source() and ip6_mc_msfilter()
    - rxrpc: Enable IPv6 checksums on transport socket
    - dt-bindings: pci: apple,pcie: Drop max-link-speed from example
    - bnxt_en: Fix possible bnxt_open() failure caused by wrong RFS flag
    - bnxt_en: Fix unnecessary dropping of RX packets
    - [arm64,armhf] smsc911x: allow using IRQ0
    - btrfs: always log symlinks in full mode
    - [arm*] gpio: mvebu: drop pwm base assignment
    - net: rds: acquire refcount on TCP sockets
    - [x86] kvm: x86/cpuid: Only provide CPUID leaf 0xA if host has
      architectural PMU
    - fbdev: Make fb_release() return -ENODEV if fbdev was unregistered
    - [x86] KVM: SEV: Mark nested locking of vcpu->lock
    - [x86] KVM: VMX: Exit to userspace if vCPU has injected exception and
      invalid state
    - [x86] kvm: Preserve BSP MSR_KVM_POLL_CONTROL across suspend/resume
    - [x86] KVM: x86: Do not change ICR on write to APIC_SELF_IPI
    - [x86] KVM: x86/mmu: avoid NULL-pointer dereference on page freeing bugs
    - [x86] KVM: LAPIC: Enable timer posted-interrupt only when mwait/hlt is
    - mmc: rtsx: add 74 Clocks in power on flow
    - [arm64] PCI: aardvark: Replace custom PCIE_CORE_INT_* macros with
    - [arm64] PCI: aardvark: Rewrite IRQ code to chained IRQ handler
    - [arm64] PCI: aardvark: Check return value of generic_handle_domain_irq()
      when processing INTx IRQ
    - [arm64] PCI: aardvark: Make MSI irq_chip structures static driver
    - [arm64] PCI: aardvark: Make msi_domain_info structure a static driver
    - [arm64] PCI: aardvark: Use dev_fwnode() instead of
    - [arm64] PCI: aardvark: Refactor unmasking summary MSI interrupt
    - [arm64] PCI: aardvark: Add support for masking MSI interrupts
    - [arm64] PCI: aardvark: Fix setting MSI address
    - [arm64] PCI: aardvark: Enable MSI-X support
    - [arm64] PCI: aardvark: Add support for ERR interrupt on emulated bridge
    - [arm64] PCI: aardvark: Optimize writing PCI_EXP_RTCTL_PMEIE and
      PCI_EXP_RTSTA_PME on emulated bridge
    - [arm64] PCI: aardvark: Add support for PME interrupts
    - [arm64] PCI: aardvark: Fix support for PME requester on emulated bridge
    - [arm64] PCI: aardvark: Use separate INTA interrupt for emulated root
    - [arm64] PCI: aardvark: Remove irq_mask_ack() callback for INTx interrupts
    - [arm64] PCI: aardvark: Don't mask irq when mapping
    - [arm64] PCI: aardvark: Drop __maybe_unused from advk_pcie_disable_phy()
    - [arm64] PCI: aardvark: Update comment about link going down after link-up
    - Bluetooth: Fix the creation of hdev->name
    - rfkill: uapi: fix RFKILL_IOCTL_MAX_SIZE ioctl request definition
    - udf: Avoid using stale lengthOfImpUse
    - mm: fix missing cache flush for all tail pages of compound page
    - mm: hugetlb: fix missing cache flush in copy_huge_page_from_user()
    - mm: hugetlb: fix missing cache flush in hugetlb_mcopy_atomic_pte()
    - mm: shmem: fix missing cache flush in shmem_mfill_atomic_pte()
    - mm: userfaultfd: fix missing cache flush in mcopy_atomic_pte() and
    - mm/hwpoison: fix error page recovered but reported "not recovered"
    - mm/mlock: fix potential imbalanced rlimit ucounts adjustment
    - mm,migrate: fix establishing demotion target
    - mm: fix invalid page pointer returned with FOLL_PIN gups
    - batman-adv: Don't skb_split skbuffs with frag_list
    - iwlwifi: iwl-dbg: Use del_timer_sync() before freeing
    - hwmon: (tmp401) Add OF device ID table
    - mac80211: Reset MBSSID parameters upon connection
    - net: rds: use maybe_get_net() when acquiring refcount on TCP sockets
    - net: Fix features skip in for_each_netdev_feature()
    - [arm64] net: mscc: ocelot: fix last VCAP IS1/IS2 filter persisting in
      hardware when deleted
    - [arm64] net: mscc: ocelot: fix VCAP IS2 filters matching on both lookups
    - [arm64] net: mscc: ocelot: restrict tc-trap actions to VCAP IS2 lookup 0
    - [arm64] net: mscc: ocelot: avoid corrupting hardware counters when moving
      VCAP filters
    - [arm*] fbdev: simplefb: Cleanup fb_info in .fb_destroy rather than .remove
    - fbdev: efifb: Cleanup fb_info in .fb_destroy rather than .remove
    - [x86] fbdev: vesafb: Cleanup fb_info in .fb_destroy rather than .remove
    - [x86] platform/surface: aggregator: Fix initialization order when
      compiling as builtin module
    - ice: Fix race during aux device (un)plugging
    - ice: clear stale Tx queue settings before configuring
    - ice: fix PTP stale Tx timestamps cleanup
    - ipv4: drop dst in multicast routing path
    - drm/nouveau: Fix a potential theorical leak in
    - netlink: do not reset transport header in netlink_recvmsg()
    - net: chelsio: cxgb4: Avoid potential negative array offset
    - fbdev: efifb: Fix a use-after-free due early fb_info cleanup
    - net: sfc: fix memory leak due to ptp channel
    - fanotify: do not allow setting dirent events in mask of non-dir
    - mac80211_hwsim: call ieee80211_tx_prepare_skb under RCU protection
    - nfs: fix broken handling of the softreval mount option
    - dim: initialize all struct fields
    - procfs: prevent unprivileged processes accessing fdinfo dir
    - [arm64,armhf] net: dsa: flush switchdev workqueue on bridge join error
    - [arm64] vdso: fix makefile dependency on
    - virtio: fix virtio transitional ids
    - [s390x] ctcm: fix variable dereferenced before check
    - [s390x] ctcm: fix potential memory leak
    - [s390x] lcs: fix variable dereferenced before check
    - net/sched: act_pedit: really ensure the skb is writable
    - [arm64] net: bcmgenet: Check for Wake-on-LAN interrupt probe deferral
    - [arm*] drm/vc4: hdmi: Fix build error for implicit function declaration
    - [armhf] net: dsa: bcm_sf2: Fix Wake-on-LAN with mac_link_down()
    - net/smc: non blocking recvmsg() return -EAGAIN when no data and
    - net: sfc: ef10: fix memory leak in efx_ef10_mtd_probe()
    - tls: Fix context leak on tls_device_down
    - drm/vmwgfx: Fix fencing on SVGAv3
    - gfs2: Fix filesystem block deallocation for short writes
    - hwmon: (f71882fg) Fix negative temperature
    - RDMA/irdma: Fix deadlock in irdma_cleanup_cm_core()
    - [arm64,armhf] iommu: arm-smmu: disable large page mappings for Nvidia
    - ASoC: max98090: Reject invalid values in custom control put()
    - ASoC: max98090: Generate notifications on changes for custom control
    - ASoC: ops: Validate input values in snd_soc_put_volsw_range()
    - [s390x] disable -Warray-bounds
    - [x86] ASoC: SOF: Fix NULL pointer exception in sof_pci_probe callback
    - io_uring: assign non-fixed early for async work
    - net: sfp: Add tx-fault workaround for Huawei MA5671A SFP ONT
    - secure_seq: use the 64 bits of the siphash for port offset calculation
    - tcp: use different parts of the port_offset for index and offset
    - tcp: resalt the secret every 10 seconds (CVE-2022-1012)
    - tcp: add small random increments to the source port (CVE-2022-1012)
    - tcp: dynamically allocate the perturb table used by source ports
    - tcp: increase source port perturb table to 2^16 (CVE-2022-1012)
    - tcp: drop the hash_32() part from the index calculation (CVE-2022-1012)
    - block: Do not call folio_next() on an unreferenced folio
    - [arm64,armhf] interconnect: Restore sync state by ignoring ipa-virt in
      provider count
    - firmware_loader: use kernel credentials when reading firmware
    - [x86] mm: Fix marking of unused sub-pmd ranges
    - tty: n_gsm: fix buffer over-read in gsm_dlci_data()
    - tty: n_gsm: fix mux activation issues in gsm_config()
    - tty: n_gsm: fix invalid gsmtty_write_room() result
    - usb: gadget: uvc: allow for application to cleanly shutdown
    - usb: cdc-wdm: fix reading stuck on device close
    - [arm64] usb: typec: tcpci: Don't skip cleanup in .remove() on error
    - USB: serial: pl2303: add device id for HP LM930 Display
    - USB: serial: qcserial: add support for Sierra Wireless EM7590
    - USB: serial: option: add Fibocom L610 modem
    - USB: serial: option: add Fibocom MA510 modem
    - [arm64] fsl_lpuart: Don't enable interrupts too early
    - genirq: Remove WARN_ON_ONCE() in generic_handle_domain_irq()
    - ceph: fix setting of xattrs on async created inodes
    - Revert "mm/memory-failure.c: skip huge_zero_page in memory_failure()"
    - mm/huge_memory: do not overkill when splitting huge_zero_page
    - mm: mremap: fix sign for EFAULT error return value
    - drm/vmwgfx: Disable command buffers on svga3 without gbobjects
    - drm/nouveau/tegra: Stop using iommu_present()
    - i40e: i40e_main: fix a missing check on list iterator
    - net: atlantic: always deep reset on pm op, fixing up my null deref
    - net: phy: Fix race condition on link status change
    - writeback: Avoid skipping inode writeback
    - cgroup/cpuset: Remove cpus_allowed/mems_allowed setup in cpuset_init_smp()
    - ping: fix address binding wrt vrf
    - ath11k: reduce the wait time of 11d scan and hw scan while add interface
    - [arm*] arm[64]/memremap: don't abuse pfn_valid() to ensure presence of
      linear map
    - net: phy: micrel: Do not use kszphy_suspend/resume for KSZ8061
    - net: phy: micrel: Pass .probe for KS8737
    - SUNRPC: Ensure that the gssproxy client can start in a connected state
    - drm/vmwgfx: Initialize drm_mode_fb_cmd2
    - Revert "drm/amd/pm: keep the BACO feature enabled for suspend"
    - dma-buf: call dma_buf_stats_setup after dmabuf is in valid list
    - mm/hwpoison: use pr_err() instead of dump_page() in get_any_page()
    - net: phy: micrel: Fix incorrect variable type in micrel
    - mm/kfence: reset PG_slab and memcg_data before freeing __kfence_pool
    - floppy: use a statically allocated error counter
    - kernel/resource: Introduce request_mem_region_muxed()
    - i2c: piix4: Replace hardcoded memory map size with a #define
    - i2c: piix4: Move port I/O region request/release code into functions
    - i2c: piix4: Move SMBus controller base address detect into function
    - i2c: piix4: Move SMBus port selection into function
    - i2c: piix4: Add EFCH MMIO support to region request and release
    - i2c: piix4: Add EFCH MMIO support to SMBus base address detect
    - i2c: piix4: Add EFCH MMIO support for SMBus port select
    - i2c: piix4: Enable EFCH MMIO for Family 17h+
    - [x86] Watchdog: sp5100_tco: Move timer initialization into function
    - [x86] Watchdog: sp5100_tco: Refactor MMIO base address initialization
    - [x86] Watchdog: sp5100_tco: Add initialization using EFCH MMIO
    - [x86] Watchdog: sp5100_tco: Enable Family 17h+ CPUs
    - [x86] Revert "drm/i915/opregion: check port number bounds for SWSCI
      display power state"
    - gfs2: cancel timed-out glock requests
    - gfs2: Switch lock order of inode and iopen glock
    - rtc: fix use-after-free on device removal
    - [arm64] rtc: pcf2127: fix bug when reading alarm registers
    - Input: add bounds checking to input_set_capability()
    - nvme-pci: add quirks for Samsung X5 SSDs
    - gfs2: Disable page faults during lockless buffered reads
    - [arm64,armhf] rtc: sun6i: Fix time overflow handling
    - [armhf] crypto: stm32 - fix reference leak in stm32_crc_remove
    - [amd64] crypto: x86/chacha20 - Avoid spurious jumps to other functions
    - ALSA: hda/realtek: Enable headset mic on Lenovo P360
    - [s390x] traps: improve panic message for translation-specification
    - [s390x] pci: improve zpci_dev reference counting
    - smb3: cleanup and clarify status of tree connections
    - nvmet: use a private workqueue instead of the system workqueue
    - nvme-multipath: fix hang when disk goes live over reconnect
    - rtc: mc146818-lib: Fix the AltCentury for AMD platforms
    - fs: fix an infinite loop in iomap_fiemap
    - drbd: remove usage of list iterator variable after loop
    - platform/chrome: cros_ec_debugfs: detach log reader wq from devm
    - [armel,armhf] arm/stacktrace, kasan: Silence KASAN warnings in
    - nilfs2: fix lockdep warnings in page operations for btree nodes
    - nilfs2: fix lockdep warnings during disk space reclamation
    - ALSA: usb-audio: Restore Rane SL-1 quirk
    - [i386] ALSA: wavefront: Proper check of get_user() error
    - ALSA: hda/realtek: Add quirk for TongFang devices with pop noise
    - perf: Fix sys_perf_event_open() race against self (CVE-2022-1729)
    - selinux: fix bad cleanup on error in hashtab_duplicate()
    - audit,io_uring,io-wq: call __audit_uring_exit for dummy contexts
    - Fix double fget() in vhost_net_set_backend()
    - PCI/PM: Avoid putting Elo i2 PCIe Ports in D3cold
    - [arm64] KVM: arm64: vgic-v3: Consistently populate ID_AA64PFR0_EL1.GIC
    - [x86] KVM: x86/mmu: Update number of zapped pages even if page list is
    - KVM: Free new dirty bitmap if creating a new memslot fails
    - [arm64] paravirt: Use RCU read locks to guard stolen_time
    - [arm64] mte: Ensure the cleared tags are visible before setting the PTE
    - [arm64] crypto: qcom-rng - fix infinite loop on requests not multiple of
    - mmc: core: Fix busy polling for MMC_SEND_OP_COND again
    - libceph: fix potential use-after-free on linger ping and resends
    - drm/amd: Don't reset dGPUs if the system is going to s2idle
    - [x86] drm/i915/dmc: Add MMIO range restrictions
    - drm/dp/mst: fix a possible memory leak in fetch_monitor_name()
    - dma-buf: fix use of DMA_BUF_SET_NAME_{A,B} in userspace
    - dma-buf: ensure unique directory name for dmabuf stats
    - [arm64] dts: qcom: sm8250: don't enable rx/tx macro by default
    - [armhf] pinctrl: pinctrl-aspeed-g6: remove FWQSPID group in pinctrl
    - ALSA: hda - fix unused Realtek function when PM is not enabled
    - block/mq-deadline: Set the fifo_time member also if inserting at head
    - mptcp: fix subflow accounting on close
    - [arm64] net: macb: Increment rx bd head after allocating skb and buffer
    - [x86] i915/guc/reset: Make __guc_reset_context aware of guilty engines
    - xfrm: rework default policy structure
    - xfrm: fix "disable_policy" flag use when arriving from different devices
    - net/sched: act_pedit: sanitize shift argument before usage
    - netfilter: flowtable: fix excessive hw offload attempts after failure
    - netfilter: nft_flow_offload: skip dst neigh lookup for ppp devices
    - net: fix dev_fill_forward_path with pppoe + bridge
    - netfilter: nft_flow_offload: fix offload with pppoe + vlan
    - ptp: ocp: have adjtime handle negative delta_ns correctly
    - [arm64] Revert "PCI: aardvark: Rewrite IRQ code to chained IRQ handler"
    - net: vmxnet3: fix possible use-after-free bugs in
    - net: vmxnet3: fix possible NULL pointer dereference in
    - [arm64] kexec: load from kimage prior to clobbering
    - ice: fix crash when writing timestamp on RX rings
    - ice: fix possible under reporting of ethtool Tx and Rx statistics
    - ice: Fix interrupt moderation settings getting cleared
    - net/qla3xxx: Fix a test in ql_reset_work()
    - net/mlx5: DR, Fix missing flow_source when creating multi-destination FW
    - net/mlx5: Initialize flow steering during driver probe
    - net/mlx5: DR, Ignore modify TTL on RX if device doesn't support it
    - net/mlx5e: Block rx-gro-hw feature in switchdev mode
    - net/mlx5e: Properly block LRO when XDP is enabled
    - net/mlx5e: Properly block HW GRO when XDP is enabled
    - net/mlx5e: Remove HW-GRO from reported features
    - net/mlx5: Drain fw_reset when removing device
    - net: af_key: add check for pfkey_broadcast in function pfkey_process
    - [armhf] 9196/1: spectre-bhb: enable for Cortex-A15
    - [armel,armhf] 9197/1: spectre-bhb: fix loop8 sequence for Thumb2
    - lockdown: also lock down previous kgdb use (CVE-2022-21499)
    - mptcp: fix checksum byte order
    - igb: skip phy status check where unavailable
    - netfilter: flowtable: fix TCP flow teardown
    - netfilter: flowtable: pass flowtable to nf_flow_table_iterate()
    - netfilter: flowtable: move dst_check to packet path
    - net: bridge: Clear offload_fwd_mark when passing frame up bridge
    - [x86] kvm: x86/pmu: Fix the compare function used by the pmu event filter
    - [arm*] gpio: mvebu/pwm: Refuse requests with inverted polarity
    - scsi: scsi_dh_alua: Properly handle the ALUA transitioning state
    - scsi: qla2xxx: Fix missed DMA unmap for aborted commands
    - mac80211: fix rx reordering with non explicit / psmp ack policy
    - nl80211: validate S1G channel width
    - cfg80211: retrieve S1G operating channel number
    - Revert "fbdev: Make fb_release() return -ENODEV if fbdev was unregistered"
    - fbdev: Prevent possible use-after-free in fb_release()
    - [x86] platform/x86: thinkpad_acpi: Convert btusb DMI list to quirks
    - [x86] platform/x86: thinkpad_acpi: Correct dual fan probe
    - [x86] platform/surface: gpe: Add support for Surface Pro 8
    - net: fix wrong network header length
    - nl80211: fix locking in nl80211_set_tx_bitrate_mask()
    - ethernet: tulip: fix missing pci_disable_device() on error in
    - net: atlantic: fix "frag[0] not initialized"
    - net: atlantic: reduce scope of is_rsc_complete
    - net: atlantic: add check for MAX_SKB_FRAGS
    - net: atlantic: verify hw_head_ lies within TX buffer ring
    - [arm64] Enable repeat tlbi workaround on KRYO4XX gold CPUs
    - dt-bindings: pinctrl: aspeed-g6: remove FWQSPID group
    - afs: Fix afs_getattr() to refetch file status if callback break occurred
    - mptcp: Do TCP fallback on early DSS checksum failure
  [ Vincent Blut ]
  * [x86] sound/soc/amd: Enable SND_SOC_AMD_ACP5x, SND_SOC_AMD_VANGOGH_MACH,
    SND_SOC_AMD_ACP6x and SND_SOC_AMD_YC_MACH as modules (Closes: #1010580)
  * [ppc64*] crypto: Enable CRYPTO_CRC32C_VPMSUM as module (Closes: #1010293)
  [ Alejandro R. Sedeño ]
  * drivers/net/wwan: Enable MHI_WWAN_MBIM as module (Closes: #1011395)
  [ Salvatore Bonaccorso ]
  * Bump ABI to 3
  * sign-file: Convert API usage to support OpenSSL v3
  * [x86] KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID
linux (5.17.6-1) unstable; urgency=medium
  * New upstream stable update:
    - [arm64] cpuidle: PSCI: Move the `has_lpi` check to the beginning of the
    - ACPI: processor idle: Check for architectural support for LPI
    - btrfs: remove no longer used counter when reading data page
    - btrfs: remove unused variable in btrfs_{start,write}_dirty_block_groups()
    - media: si2157: unknown chip version Si2147-A30 ROM 0x50
    - drm/amdgpu: Ensure HDA function is suspended before ASIC reset
    - btrfs: release correct delalloc amount in direct IO write path
    - btrfs: fix btrfs_submit_compressed_write cgroup attribution
    - btrfs: return allocated block group from do_chunk_alloc()
    - ALSA: core: Add snd_card_free_on_error() helper
    - [i386] ALSA: sis7019: Fix the missing error handling
    - ALSA: ali5451: Fix the missing snd_card_free() call at probe error
    - ALSA: als300: Fix the missing snd_card_free() call at probe error
    - ALSA: als4000: Fix the missing snd_card_free() call at probe error
    - ALSA: atiixp: Fix the missing snd_card_free() call at probe error
    - ALSA: azt3328: Fix the missing snd_card_free() call at probe error
    - ALSA: bt87x: Fix the missing snd_card_free() call at probe error
    - ALSA: ca0106: Fix the missing snd_card_free() call at probe error
    - ALSA: cmipci: Fix the missing snd_card_free() call at probe error
    - ALSA: cs4281: Fix the missing snd_card_free() call at probe error
    - [i386] ALSA: cs5535audio: Fix the missing snd_card_free() call at probe
    - ALSA: emu10k1x: Fix the missing snd_card_free() call at probe error
    - ALSA: ens137x: Fix the missing snd_card_free() call at probe error
    - ALSA: es1938: Fix the missing snd_card_free() call at probe error
    - ALSA: es1968: Fix the missing snd_card_free() call at probe error
    - ALSA: fm801: Fix the missing snd_card_free() call at probe error
    - ALSA: hdsp: Fix the missing snd_card_free() call at probe error
    - ALSA: hdspm: Fix the missing snd_card_free() call at probe error
    - ALSA: ice1724: Fix the missing snd_card_free() call at probe error
    - ALSA: intel8x0: Fix the missing snd_card_free() call at probe error
    - [x86] ALSA: intel_hdmi: Fix the missing snd_card_free() call at probe
    - ALSA: korg1212: Fix the missing snd_card_free() call at probe error
    - ALSA: lola: Fix the missing snd_card_free() call at probe error
    - ALSA: lx6464es: Fix the missing snd_card_free() call at probe error
    - ALSA: maestro3: Fix the missing snd_card_free() call at probe error
    - ALSA: oxygen: Fix the missing snd_card_free() call at probe error
    - ALSA: riptide: Fix the missing snd_card_free() call at probe error
    - ALSA: rme32: Fix the missing snd_card_free() call at probe error
    - ALSA: rme9652: Fix the missing snd_card_free() call at probe error
    - ALSA: rme96: Fix the missing snd_card_free() call at probe error
    - [i386] ALSA: sc6000: Fix the missing snd_card_free() call at probe error
    - ALSA: sonicvibes: Fix the missing snd_card_free() call at probe error
    - ALSA: via82xx: Fix the missing snd_card_free() call at probe error
    - ALSA: usb-audio: Cap upper limits of buffer/period bytes for implicit fb
    - [x86] ALSA: memalloc: Add fallback SG-buffer allocations for x86
    - ALSA: nm256: Don't call card private_free at probe error path
    - [arm64] drm/msm: Add missing put_task_struct() in debugfs path
    - nfsd: Fix a write performance regression
    - Revert "ath11k: mesh: add support for 256 bitmap in blockack frames in
    - [arm64] KVM: arm64: Generalise VM features into a set of flags
    - [arm64] KVM: arm64: mixed-width check should be skipped for uninitialized
    - SUNRPC: Fix the svc_deferred_event trace class
    - net/sched: flower: fix parsing of ethertype following VLAN header
    - veth: Ensure eth header is in skb's linear part
    - gpiolib: acpi: use correct format characters
    - cifs: release cached dentries only if mount is complete
    - ice: arfs: fix use-after-free when freeing @rx_cpu_rmap
    - Revert "iavf: Fix deadlock occurrence during resetting VF interface"
    - net: mdio: don't defer probe forever if PHY IRQ provider is missing
    - sctp: use the correct skb for security_sctp_assoc_request
    - net/sched: fix initialization order when updating chain 0 head
    - cachefiles: unmark inode in use in error path
    - cachefiles: Fix KASAN slab-out-of-bounds in cachefiles_set_volume_xattr
    - [arm64] net: dsa: felix: suppress -EPROBE_DEFER errors
    - io_uring: flag the fact that linked file assignment is sane
    - [armhf] net: ethernet: stmmac: fix altr_tse_pcs function when using a
    - net/sched: taprio: Check if socket flags are valid
    - cfg80211: hold bss_lock while updating nontrans_list
    - netfilter: nft_socket: make cgroup match work in input too
    - [arm64] drm/msm: Fix range size vs end confusion
    - [arm64] drm/msm/dsi: Use connector directly in
    - [arm64] drm/msm/dp: add fail safe mode outside of event_mutex context
    - io_uring: stop using io_wq_work as an fd placeholder
    - net/smc: use memcpy instead of snprintf to avoid out of bounds read
    - net/smc: Fix NULL pointer dereference in smc_pnet_find_ib()
    - scsi: pm80xx: Mask and unmask upper interrupt vectors 32-63
    - scsi: pm80xx: Enable upper inbound, outbound queues
    - scsi: iscsi: Move iscsi_ep_disconnect()
    - scsi: iscsi: Fix offload conn cleanup when iscsid restarts
    - scsi: iscsi: Fix endpoint reuse regression
    - scsi: iscsi: Fix conn cleanup and stop race during iscsid restart
    - scsi: iscsi: Fix unbound endpoint error handling
    - sctp: Initialize daddr on peeled off socket
    - netfilter: nf_tables: nft_parse_register can return a negative value
    - io_uring: fix assign file locking issue
    - ALSA: ad1889: Fix the missing snd_card_free() call at probe error
    - ALSA: mtpav: Don't call card private_free at probe error path
    - io_uring: move io_uring_rsrc_update2 validation
    - io_uring: verify that resv2 is 0 in io_uring_rsrc_update2
    - io_uring: verify pad field is 0 in io_get_ext_arg
    - ALSA: usb-audio: Increase max buffer size
    - ALSA: usb-audio: Limit max buffer and period sizes per time
    - macvlan: Fix leaking skb in source mode with nodst option
    - [armhf] net: ftgmac100: access hardware register after clock ready
    - cifs: potential buffer overflow in handling symlinks
    - vfio/pci: Fix vf_token mechanism when device-specific VF drivers are used
    - tun: annotate access to queue->trans_start
    - [arm64] net: dsa: felix: fix tagging protocol changes with multiple CPU
    - [arm64] net: bcmgenet: Revert "Use stronger register read/writes to assure
    - block: fix offset/size check in bio_trim()
    - block: null_blk: end timed out poll request
    - io_uring: abort file assignment prior to assigning creds
    - [powerpc*] KVM: PPC: Book3S HV P9: Fix "lost kick" race
    - drm/amd: Add USBC connector ID
    - btrfs: fix fallocate to use file_modified to update permissions
    - btrfs: do not warn for free space inode in cow_file_range
    - drm/amdgpu: conduct a proper cleanup of PDB bo
    - drm/amdgpu/gmc: use PCI BARs for APUs in passthrough
    - drm/amd/display: FEC check in timing validation
    - drm/amdkfd: Fix Incorrect VMIDs passed to HWS
    - drm/amdgpu/vcn: improve vcn dpg stop procedure
    - [arm64,x86] Drivers: hv: vmbus: Deactivate sysctl_record_panic_msg by
      default in isolated guests
    - [arm64,x86] Drivers: hv: vmbus: Propagate VMbus coherence to each VMbus
    - [amd64,arm64] PCI: hv: Propagate coherence from VMbus device to PCI device
    - [arm64,x86] Drivers: hv: vmbus: Prevent load re-ordering when reading ring
    - scsi: target: tcmu: Fix possible page UAF
    - scsi: lpfc: Improve PCI EEH Error and Recovery Handling
    - scsi: lpfc: Fix unload hang after back to back PCI EEH faults
    - scsi: lpfc: Fix queue failures when recovering from PCI parity error
    - [powerpc*] scsi: ibmvscsis: Increase INITIAL_SRP_LIMIT to 1024
    - ata: libata-core: Disable READ LOG DMA EXT for Samsung 840 EVOs
    - [armhf] gpu: ipu-v3: Fix dev_dbg frequency output
    - [powerpc*] static_call: Properly initialise DEFINE_STATIC_CALL_RET0()
    - [arm64] alternatives: mark patch_alternative() as `noinstr`
    - tlb: hugetlb: Add more sizes to tlb_remove_huge_tlb_entry
    - [arm64,x86] Drivers: hv: balloon: Disable balloon and hot-add accordingly
    - net: usb: aqc111: Fix out-of-bounds accesses in RX fixup
    - myri10ge: fix an incorrect free for skb in myri10ge_sw_tso
    - drm/amd/display: Fix allocate_mst_payload assert on resume
    - scsi: mpt3sas: Fail reset operation if config request timed out
    - scsi: mvsas: Add PCI ID of RocketRaid 2640
    - scsi: megaraid_sas: Target with invalid LUN ID is deleted during scan
    - drivers: net: slip: fix NPD bug in sl_tx_timeout()
    - io_uring: zero tag on rsrc removal
    - io_uring: use nospec annotation for more indexes
    - [arm64] perf/imx_ddr: Fix undefined behavior due to shift overflowing the
    - mm/secretmem: fix panic when growing a memfd_secret
    - mm, page_alloc: fix build_zonerefs_node()
    - mm: fix unexpected zeroed page mapping with zram swap
    - hugetlb: do not demote poisoned hugetlb pages
    - revert "fs/binfmt_elf: fix PT_LOAD p_align values for loaders"
    - revert "fs/binfmt_elf: use PT_LOAD p_align values for static PIE"
    - [x86] KVM: x86/mmu: Resolve nx_huge_pages when kvm.ko is loaded
    - SUNRPC: Fix NFSD's request deferral on RDMA transports
    - cifs: verify that tcon is valid before dereference in cifs_kill_sb
    - ath9k: Properly clear TX status area before reporting to mac80211
    - ath9k: Fix usage of driver-private space in tx_info
    - btrfs: zoned: activate block group only for extent allocation
    - btrfs: fix root ref counts in error handling in btrfs_get_root_ref
    - btrfs: mark resumed async balance as writing
    - ALSA: hda/realtek: Add quirk for Clevo PD50PNT
    - ALSA: hda/realtek: add quirk for Lenovo Thinkpad X12 speakers
    - ALSA: pcm: Test for "silence" field in struct "pcm_format_data"
    - nl80211: correctly check NL80211_ATTR_REG_ALPHA2 size
    - ipv6: fix panic when forwarding a pkt with no in6 dev
    - drm/amdgpu: Enable gfxoff quirk on MacBook Pro
    - [x86] tsx: Use MSR_TSX_CTRL to clear CPUID bits
    - [x86] tsx: Disable TSX development mode at boot
    - genirq/affinity: Consider that CPUs on nodes can be unbalanced
    - tick/nohz: Use WARN_ON_ONCE() to prevent console saturation
    - dm integrity: fix memory corruption when tag_size is less than digest size
    - i2c: dev: check return value when calling dev_set_name()
    - [arm64,armhf] Revert "net: dsa: setup master before ports"
    - smp: Fix offline cpu check in flush_smp_call_function_queue()
    - dt-bindings: memory: snps,ddrc-3.80a compatible also need interrupts
    - timers: Fix warning condition in __run_timers()
    - mm, kfence: support kmem_dump_obj() for KFENCE objects
    - [x86] drm/i915: Sunset igpu legacy mmap support based on GRAPHICS_VER_FULL
    - cpu/hotplug: Remove the 'cpu' member of cpuhp_cpu_state
    - ax25: Fix UAF bugs in ax25 timers (CVE-2022-1205)
    - io_uring: use right issue_flags for splice/tee
    - io_uring: fix poll file assign deadlock
    - io_uring: fix poll error reporting
    - etherdevice: Adjust ether_addr* prototypes to silence -Wstringop-overead
    - perf tools: Fix segfault accessing sample_id xyarray
    - drm/amd/display: Only set PSR version when valid
    - block/compat_ioctl: fix range check in BLKGETSIZE
    - gfs2: assign rgrp glock before compute_bitstructs
    - scsi: ufs: core: scsi_get_lba() error fix
    - net/sched: cls_u32: fix netns refcount changes in u32_change()
    - ALSA: usb-audio: Clear MIDI port active flag after draining
    - ALSA: usb-audio: add mapping for MSI MAG X570S Torpedo MAX.
    - ALSA: hda/realtek: Add quirk for Clevo NP70PNP
    - ASoC: atmel: Remove system clock tree configuration for at91sam9g20ek
    - ASoC: topology: Correct error handling in soc_tplg_dapm_widget_create()
    - ASoC: rk817: Use devm_clk_get() in rk817_platform_probe
    - ASoC: msm8916-wcd-digital: Check failure for devm_snd_soc_register_component
    - ASoC: codecs: wcd934x: do not switch off SIDO Buck when codec is in use
    - dmaengine: idxd: fix device cleanup on disable
    - dmaengine: imx-sdma: Fix error checking in sdma_event_remap
    - dmaengine: mediatek:Fix PM usage reference leak of mtk_uart_apdma_alloc_chan_resources
    - dmaengine: dw-edma: Fix unaligned 64bit access
    - spi: spi-mtk-nor: initialize spi controller after resume
    - firmware: cs_dsp: Fix overrun of unterminated control name string
    - esp: limit skb_page_frag_refill use to a single page
    - spi: cadence-quadspi: fix incorrect supports_op() return value
    - igc: Fix infinite loop in release_swfw_sync
    - igc: Fix BUG: scheduling while atomic
    - igc: Fix suspending when PTM is active
    - ice: allow creating VFs for !CONFIG_NET_SWITCHDEV
    - ice: fix crash in switchdev mode
    - ice: Fix memory leak in ice_get_orom_civd_data()
    - ALSA: hda/hdmi: fix warning about PCM count when used with SOF
    - rxrpc: Restore removed timer deletion
    - net/smc: Fix sock leak when release after smc_shutdown()
    - net/packet: fix packet_sock xmit return value checking
    - ip6_gre: Avoid updating tunnel->tun_hlen in __gre6_xmit()
    - ip6_gre: Fix skb_under_panic in __gre6_xmit()
    - net: restore alpha order to Ethernet devices in config
    - net/sched: cls_u32: fix possible leak in u32_init_knode()
    - l3mdev: l3mdev_master_upper_ifindex_by_index_rcu should be using netdev_master_upper_dev_get_rcu
    - ipv6: make ip6_rt_gc_expire an atomic_t
    - can: isotp: stop timeout monitoring when no first frame was sent
    - net: dsa: hellcreek: Calculate checksums in tagger
    - net: mscc: ocelot: fix broken IP multicast flooding
    - netlink: reset network and mac headers in netlink_dump()
    - drm/i915/display/psr: Unset enable_psr2_sel_fetch if other checks in intel_psr2_config_valid() fails
    - RISC-V: KVM: Remove 's' & 'u' as valid ISA extension
    - RISC-V: KVM: Restrict the extensions that can be disabled
    - net: stmmac: Use readl_poll_timeout_atomic() in atomic state
    - dmaengine: idxd: match type for retries var in idxd_enqcmds()
    - dmaengine: idxd: fix retry value to be constant for duration of function call
    - dmaengine: idxd: add RO check for wq max_batch_size write
    - dmaengine: idxd: add RO check for wq max_transfer_size write
    - dmaengine: idxd: skip clearing device context when device is read-only
    - selftests: mlxsw: vxlan_flooding: Prevent flooding of unwanted packets
    - selftests: mlxsw: vxlan_flooding_ipv6: Prevent flooding of unwanted packets
    - userfaultfd: mark uffd_wp regardless of VM_WRITE flag
    - arm64: mm: fix p?d_leaf()
    - XArray: Disallow sibling entries of nodes
    - drm/msm/gpu: Rename runtime suspend/resume functions
    - drm/msm/gpu: Remove mutex from wait_event condition
    - ARM: vexpress/spc: Avoid negative array index when !SMP
    - reset: renesas: Check return value of reset_control_deassert()
    - reset: tegra-bpmp: Restore Handle errors in BPMP response
    - platform/x86: samsung-laptop: Fix an unsigned comparison which can never be negative
    - ALSA: usb-audio: Fix undefined behavior due to shift overflowing the constant
    - drm/msm/disp: check the return value of kzalloc()
    - selftests: KVM: Free the GIC FD when cleaning up in arch_timer
    - ALSA: hda: intel-dsp-config: update AlderLake PCI IDs
    - arm64: dts: imx: Fix imx8*-var-som touchscreen property sizes
    - vxlan: fix error return code in vxlan_fdb_append
    - cifs: Check the IOCB_DIRECT flag, not O_DIRECT
    - net: atlantic: Avoid out-of-bounds indexing
    - mt76: Fix undefined behavior due to shift overflowing the constant
    - brcmfmac: sdio: Fix undefined behavior due to shift overflowing the constant
    - dpaa_eth: Fix missing of_node_put in dpaa_get_ts_info()
    - drm/msm/mdp5: check the return of kzalloc()
    - KVM: x86: hyper-v: Avoid writing to TSC page without an active vCPU
    - net: macb: Restart tx only if queue pointer is lagging
    - scsi: iscsi: Release endpoint ID when its freed
    - scsi: iscsi: Merge suspend fields
    - scsi: iscsi: Fix NOP handling during conn recovery
    - scsi: qedi: Fix failed disconnect handling
    - stat: fix inconsistency between struct stat and struct compat_stat
    - VFS: filename_create(): fix incorrect intent.
    - nvme: add a quirk to disable namespace identifiers
    - nvme-pci: disable namespace identifiers for the MAXIO MAP1002/1202
    - nvme-pci: disable namespace identifiers for Qemu controllers
    - irq_work: use kasan_record_aux_stack_noalloc() record callstack
    - EDAC/synopsys: Read the error count from the correct register
    - mm/memory-failure.c: skip huge_zero_page in memory_failure()
    - memcg: sync flush only if periodic flush is delayed
    - mm, hugetlb: allow for "high" userspace addresses
    - oom_kill.c: futex: delay the OOM reaper to allow time for proper futex cleanup
    - mm/mmu_notifier.c: fix race in mmu_interval_notifier_remove()
    - ata: pata_marvell: Check the 'bmdma_addr' beforing reading
    - dma: at_xdmac: fix a missing check on list iterator
    - dmaengine: imx-sdma: fix init of uart scripts
    - net: atlantic: invert deep par in pm functions, preventing null derefs
    - drm/radeon: fix logic inversion in radeon_sync_resv
    - io_uring: free iovec if file assignment fails
    - Input: omap4-keypad - fix pm_runtime_get_sync() error checking
    - scsi: sr: Do not leak information in ioctl
    - sched/pelt: Fix attach_entity_load_avg() corner case
    - perf/core: Fix perf_mmap fail when CONFIG_PERF_USE_VMALLOC enabled
    - drm/panel/raspberrypi-touchscreen: Avoid NULL deref if not initialised
    - drm/panel/raspberrypi-touchscreen: Initialise the bridge in prepare
    - powerpc/time: Always set decrementer in timer_interrupt()
    - KVM: PPC: Fix TCE handling for VFIO
    - drm/vc4: Use pm_runtime_resume_and_get to fix pm_runtime_get_sync() usage
    - powerpc/perf: Fix power9 event alternatives
    - powerpc/perf: Fix power10 event alternatives
    - arm/xen: Fix some refcount leaks
    - perf script: Always allow field 'data_src' for auxtrace
    - perf report: Set PERF_SAMPLE_DATA_SRC bit for Arm SPE event
    - fs: fix acl translation
    - cifs: fix NULL ptr dereference in refresh_mounts()
    - cifs: use correct lock type in cifs_reconnect()
    - xtensa: patch_text: Fixup last cpu should be master
    - xtensa: fix a7 clobbering in coprocessor context load/store
    - openvswitch: fix OOB access in reserve_sfa_size()
    - gpio: Request interrupts after IRQ is initialized
    - ASoC: rt5682: fix an incorrect NULL check on list iterator
    - ASoC: soc-dapm: fix two incorrect uses of list iterator
    - e1000e: Fix possible overflow in LTR decoding
    - codecs: rt5682s: fix an incorrect NULL check on list iterator
    - ARC: entry: fix syscall_trace_exit argument
    - drm/vmwgfx: Fix gem refcounting and memory evictions
    - arm_pmu: Validate single/group leader events
    - KVM: x86/pmu: Update AMD PMC sample period to fix guest NMI-watchdog
    - KVM: x86: Don't re-acquire SRCU lock in complete_emulated_io()
    - KVM: x86: Pend KVM_REQ_APICV_UPDATE during vCPU creation to fix a race
    - KVM: nVMX: Defer APICv updates while L2 is active until L1 is active
    - KVM: SVM: Simplify and harden helper to flush SEV guest page(s)
    - KVM: SVM: Flush when freeing encrypted pages even on SME_COHERENT CPUs
    - ext4: fix fallocate to use file_modified to update permissions consistently
    - ext4: fix symlink file size not match to file content
    - ext4: fix use-after-free in ext4_search_dir
    - ext4: limit length to bitmap_maxbytes - blocksize in punch_hole
    - ext4, doc: fix incorrect h_reserved size
    - ext4: fix overhead calculation to account for the reserved gdt blocks
    - ext4: force overhead calculation if the s_overhead_cluster makes no sense
    - ext4: update the cached overhead value in the superblock
    - jbd2: fix a potential race while discarding reserved buffers after an abort
    - spi: atmel-quadspi: Fix the buswidth adjustment between spi-mem and controller
    - ASoC: SOF: topology: cleanup dailinks on widget unload
    - io_uring: fix leaks on IOPOLL and CQE_SKIP
    - arm64: dts: qcom: add IPA qcom,qmp property
    - usb: mtu3: fix USB 3.0 dual-role-switch from device to host
    - floppy: disable FDRAWCMD by default
    - USB: quirks: add a Realtek card reader
    - USB: quirks: add STRING quirk for VCOM device
    - USB: serial: whiteheat: fix heap overflow in WHITEHEAT_GET_DTR_RTS
    - USB: serial: cp210x: add PIDs for Kamstrup USB Meter Reader
    - USB: serial: option: add support for Cinterion MV32-WA/MV32-WB
    - USB: serial: option: add Telit 0x1057, 0x1058, 0x1075 compositions
    - usb: xhci: tegra:Fix PM usage reference leak of tegra_xusb_unpowergate_partitions
    - xhci: Enable runtime PM on second Alderlake controller
    - xhci: stop polling roothubs after shutdown
    - xhci: increase usb U3 -> U0 link resume timeout from 100ms to 500ms
    - iio: dac: ad5592r: Fix the missing return value.
    - iio: scd4x: check return of scd4x_write_and_fetch
    - iio: dac: ad5446: Fix read_raw not returning set value
    - iio: magnetometer: ak8975: Fix the error handling in ak8975_power_on()
    - iio: imu: inv_icm42600: Fix I2C init possible nack
    - usb: misc: fix improper handling of refcount in uss720_probe()
    - usb: core: Don't hold the device lock while sleeping in do_proc_control()
    - usb: typec: ucsi: Fix reuse of completion structure
    - usb: typec: ucsi: Fix role swapping
    - usb: gadget: uvc: Fix crash when encoding data for usb request
    - usb: gadget: configfs: clear deactivation flag in configfs_composite_unbind()
    - usb: dwc3: Try usb-role-switch first in dwc3_drd_init
    - usb: dwc3: core: Fix tx/rx threshold settings
    - usb: dwc3: core: Only handle soft-reset in DCTL
    - usb: dwc3: gadget: Return proper request status
    - usb: dwc3: pci: add support for the Intel Meteor Lake-P
    - usb: cdns3: Fix issue for clear halt endpoint
    - usb: phy: generic: Get the vbus supply
    - kernfs: fix NULL dereferencing in kernfs_remove
    - binder: Gracefully handle BINDER_TYPE_FDA objects with num_fds=0
    - binder: Address corner cases in deferred copy and fixup
    - serial: imx: fix overrun interrupts in DMA mode
    - serial: amba-pl011: do not time out prematurely when draining tx fifo
    - serial: 8250: Also set sticky MCR bits in console restoration
    - serial: 8250: Correct the clock for EndRun PTP/1588 PCIe device
    - eeprom: at25: Use DMA safe buffers
    - arch_topology: Do not set llc_sibling if llc_id is invalid
    - topology: make core_mask include at least cluster_siblings
    - ceph: fix possible NULL pointer dereference for req->r_session
    - bus: mhi: host: pci_generic: Add missing poweroff() PM callback
    - bus: mhi: host: pci_generic: Flush recovery worker during freeze
    - arm64: dts: imx8mm-venice: fix spi2 pin configuration
    - pinctrl: samsung: fix missing GPIOLIB on ARM64 Exynos config
    - f2fs: should not truncate blocks during roll-forward recovery
    - hex2bin: make the function hex_to_bin constant-time
    - hex2bin: fix access beyond string end
    - bus: fsl-mc-msi: Fix MSI descriptor mutex lock for msi_first_desc()
    - riscv: patch_text: Fixup last cpu should be master
    - x86/cpu: Load microcode during restore_processor_state()
    - x86/pci/xen: Disable PCI/MSI[-X] masking for XEN_HVM guests
    - iocost: don't reset the inuse weight of under-weighted debtors
    - virtio_net: fix wrong buf address calculation when using xdp
    - cpufreq: qcom-hw: drop affinity hint before freeing the IRQ
    - cpufreq: qcom-hw: fix the race between LMH worker and cpuhp
    - cpufreq: qcom-hw: fix the opp entries refcounting
    - cpufreq: qcom-cpufreq-hw: Fix throttle frequency value on EPSS platforms
    - video: fbdev: udlfb: properly check endpoint type
    - arm64: dts: meson: remove CPU opps below 1GHz for G12B boards
    - arm64: dts: meson: remove CPU opps below 1GHz for SM1 boards
    - iio: dac: ad3552r: fix signedness bug in ad3552r_reset()
    - iio:imu:bmi160: disable regulator in error path
    - iio:filter:admv8818: select REGMAP_SPI for ADMV8818
    - mtd: rawnand: fix ecc parameters for mt7622
    - tee: optee: add missing mutext_destroy in optee_ffa_probe
    - xsk: Fix l2fwd for copy mode + busy poll combo
    - arm64: dts: imx8qm: Correct SCU clock controller's compatible property
    - USB: Fix xhci event ring dequeue pointer ERDP update issue
    - soc: imx: imx8m-blk-ctrl: Fix IMX8MN_DISPBLK_PD_ISI hang
    - ARM: dts: imx6qdl-apalis: Fix sgtl5000 detection issue
    - iio:dac:ad3552r: Fix an IS_ERR() vs NULL check
    - arm64: dts: imx8mq-tqma8mq: change the spi-nor tx
    - arm64: dts: imx8mn: Fix SAI nodes
    - arm64: dts: meson-sm1-bananapi-m5: fix wrong GPIO pin labeling for CON1
    - phy: samsung: Fix missing of_node_put() in exynos_sata_phy_probe
    - phy: samsung: exynos5250-sata: fix missing device put in probe error paths
    - ARM: OMAP2+: Fix refcount leak in omap_gic_of_init
    - bus: ti-sysc: Make omap3 gpt12 quirk handling SoC specific
    - ARM: dts: dra7: Fix suspend warning for vpe powerdomain
    - phy: ti: omap-usb2: Fix error handling in omap_usb2_enable_clocks
    - ARM: dts: at91: Map MCLK for wm8731 on at91sam9g20ek
    - ARM: dts: at91: sama5d4_xplained: fix pinctrl phandle name
    - ARM: dts: at91: fix pinctrl phandles
    - phy: mapphone-mdm6600: Fix PM error handling in phy_mdm6600_probe
    - phy: ti: Add missing pm_runtime_disable() in serdes_am654_probe
    - interconnect: qcom: sc7180: Drop IP0 interconnects
    - interconnect: qcom: sdx55: Drop IP0 interconnects
    - ARM: dts: Fix mmc order for omap3-gta04
    - ARM: dts: am33xx-l4: Add missing touchscreen clock properties
    - ARM: dts: am3517-evm: Fix misc pinmuxing
    - ARM: dts: logicpd-som-lv: Fix wrong pinmuxing on OMAP35
    - pinctrl: qcom: sm6350: fix order of UFS & SDC pins
    - ipvs: correctly print the memory size of ip_vs_conn_tab
    - phy: amlogic: fix error path in phy_g12a_usb3_pcie_probe()
    - pinctrl: mediatek: moore: Fix build error
    - mtd: rawnand: Fix return value check of wait_for_completion_timeout
    - mtd: fix 'part' field data corruption in mtd_info
    - pinctrl: stm32: Do not call stm32_gpio_get() for edge triggered IRQs in EOI
    - memory: renesas-rpc-if: Fix HF/OSPI data transfer in Manual Mode
    - net: dsa: Add missing of_node_put() in dsa_port_link_register_of
    - netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion
    - bpf, lwt: Fix crash when using bpf_skb_set_tunnel_key() from bpf_xmit lwt hook
    - pinctrl: rockchip: fix RK3308 pinmux bits
    - tcp: md5: incorrect tcp_header_len for incoming connections
    - pinctrl: stm32: Keep pinctrl block clock enabled when LEVEL IRQ requested
    - tcp: ensure to use the most recently sent skb when filling the rate sample
    - wireguard: device: check for metadata_dst with skb_valid_dst()
    - sctp: check asoc strreset_chunk in sctp_generate_reconf_event
    - ARM: dts: imx6ull-colibri: fix vqmmc regulator
    - arm64: dts: imx8mn-ddr4-evk: Describe the 32.768 kHz PMIC clock
    - pinctrl: pistachio: fix use of irq_of_parse_and_map()
    - cpufreq: fix memory leak in sun50i_cpufreq_nvmem_probe
    - net: hns3: clear inited state and stop client after failed to register netdev
    - net: hns3: fix error log of tx/rx tqps stats
    - net: hns3: modify the return code of hclge_get_ring_chain_from_mbx
    - net: hns3: add validity check for message data length
    - net: hns3: add return value for mailbox handling in PF
    - net/smc: sync err code when tcp connection was refused
    - net: lan966x: fix a couple off by one bugs
    - ip_gre: Make o_seqno start from 0 in native mode
    - ip6_gre: Make o_seqno start from 0 in native mode
    - ip_gre, ip6_gre: Fix race condition on o_seqno in collect_md mode
    - tcp: fix potential xmit stalls caused by TCP_NOTSENT_LOWAT
    - tcp: make sure treq->af_specific is initialized
    - bus: sunxi-rsb: Fix the return value of sunxi_rsb_device_create()
    - clk: sunxi: sun9i-mmc: check return value after calling platform_get_resource()
    - cpufreq: qcom-cpufreq-hw: Clear dcvs interrupts
    - mctp: defer the kfree of object mdev->addrs
    - net: bcmgenet: hide status block before TX timestamping
    - net: phy: marvell10g: fix return value on error
    - net: dsa: mv88e6xxx: Fix port_hidden_wait to account for port_base_addr
    - drm/sun4i: Remove obsolete references to PHYS_OFFSET
    - ice: wait 5 s for EMP reset after firmware flash
    - Bluetooth: hci_event: Fix checking for invalid handle on error status
    - net: dsa: lantiq_gswip: Don't set GSWIP_MII_CFG_RMII_CLK
    - io_uring: check reserved fields for send/sendmsg
    - io_uring: check reserved fields for recv/recvmsg
    - netfilter: nf_conntrack_tcp: re-init for syn packets only
    - netfilter: conntrack: fix udp offload timeout sysctl
    - platform/x86: asus-wmi: Potential buffer overflow in asus_wmi_evaluate_method_buf()
    - platform/x86: asus-wmi: Fix driver not binding when fan curve control probe fails
    - drm/amdkfd: Fix GWS queue count
    - drm/amd/display: Fix memory leak in dcn21_clock_source_create
    - tls: Skip tls_append_frag on zero copy size
    - bnx2x: fix napi API usage sequence
    - net: fec: add missing of_node_put() in fec_enet_init_stop_mode()
    - gfs2: Minor retry logic cleanup
    - gfs2: Make sure not to return short direct writes
    - gfs2: No short reads or writes upon glock contention
    - perf arm-spe: Fix addresses of synthesized SPE events
    - ixgbe: ensure IPsec VF<->PF compatibility
    - net: enetc: allow tc-etf offload even with NETIF_F_CSUM_MASK
    - Revert "ibmvnic: Add ethtool private flag for driver-defined queue limits"
    - tcp: fix F-RTO may not work correctly when receiving DSACK
    - io_uring: fix uninitialized field in rw io_kiocb
    - ASoC: soc-pcm: use GFP_KERNEL when the code is sleepable
    - ASoC: cs35l41: Fix a shift-out-of-bounds warning found by UBSAN
    - ASoC: rt711/5682: check if bus is active before deferred jack detection
    - ASoC: Intel: soc-acpi: correct device endpoints for max98373
    - ASoC: wm8731: Disable the regulator when probing fails
    - Input: cypress-sf - register a callback to disable the regulators
    - ext4: fix bug_on in start_this_handle during umount filesystem
    - arch: xtensa: platforms: Fix deadlock in rs_close()
    - ksmbd: increment reference count of parent fp
    - ksmbd: set fixed sector size to FS_SECTOR_SIZE_INFORMATION
    - erofs: fix use-after-free of on-stack io[]
    - bonding: do not discard lowest hash bit for non layer3+4 hashing
    - x86: __memcpy_flushcache: fix wrong alignment if size > 2^32
    - cifs: destage any unwritten data to the server before calling copychunk_write
    - drivers: net: hippi: Fix deadlock in rr_close()
    - powerpc/perf: Fix 32bit compile
    - ALSA: hda: intel-dsp-config: Add RaptorLake PCI IDs
    - selftest/vm: verify mmap addr in mremap_test
    - selftest/vm: verify remap destination address in mremap_test
    - bfq: Fix warning in bfqq_request_over_limit()
    - Revert "ACPI: processor: idle: fix lockup regression on 32-bit ThinkPad T40"
    - Revert "block: inherit request start time from bio for BLK_CGROUP"
    - zonefs: Fix management of open zones
    - zonefs: Clear inode information flags on inode creation
    - kasan: prevent cpu_quarantine corruption when CPU offline and cache shrink occur at same time
    - mtd: rawnand: qcom: fix memory corruption that causes panic
    - netfilter: Update ip6_route_me_harder to consider L3 domain
    - drm/amdgpu: don't runtime suspend if there are displays attached (v3)
    - drm/i915: Check EDID for HDR static metadata when choosing blc
    - drm/i915: Fix SEL_FETCH_PLANE_*(PIPE_B+) register addresses
    - net: ethernet: stmmac: fix write to sgmii_adapter_base
    - ACPI: processor: idle: Avoid falling back to C3 type C-states
    - thermal: int340x: Fix callback prototype
    - btrfs: fix direct I/O read repair for split bios
    - btrfs: fix direct I/O writes for split bios on zoned devices
    - btrfs: fix leaked plug after failure syncing log on zoned filesystems
    - btrfs: zoned: use dedicated lock for data relocation
    - btrfs: fix assertion failure during scrub due to block group reallocation
    - ARM: dts: at91: sama7g5ek: enable pull-up on flexcom3 console lines
    - ARM: dts: imx8mm-venice-gw{71xx,72xx,73xx}: fix OTG controller OC mode
    - perf symbol: Pass is_kallsyms to symbols__fixup_end()
    - perf symbol: Update symbols__fixup_end()
    - perf symbol: Remove arch__symbols__fixup_end()
    - tty: n_gsm: fix missing mux reset on config change at responder
    - tty: n_gsm: fix restart handling via CLD command
    - tty: n_gsm: fix decoupled mux resource
    - tty: n_gsm: fix mux cleanup after unregister tty device
    - tty: n_gsm: fix wrong signal octet encoding in convergence layer type 2
    - tty: n_gsm: fix frame reception handling
    - tty: n_gsm: fix malformed counter for out of frame data
    - netfilter: nft_socket: only do sk lookups when indev is available
    - tty: n_gsm: fix insufficient txframe size
    - tty: n_gsm: fix wrong DLCI release order
    - tty: n_gsm: fix missing explicit ldisc flush
    - tty: n_gsm: fix wrong command retry handling
    - tty: n_gsm: fix wrong command frame length field encoding
    - tty: n_gsm: fix wrong signal octets encoding in MSC
    - tty: n_gsm: fix missing tty wakeup in convergence layer type 2
    - tty: n_gsm: fix reset fifo race condition
    - tty: n_gsm: fix incorrect UA handling
    - tty: n_gsm: fix missing update of modem controls after DLCI open
    - tty: n_gsm: fix broken virtual tty handling
    - tty: n_gsm: fix invalid use of MSC in advanced option
    - tty: n_gsm: fix software flow control handling
    - tty: n_gsm: fix sometimes uninitialized warning in gsm_dlci_modem_output()
    - objtool: Fix code relocs vs weak symbols
    - objtool: Fix type of reloc::addend
    - powerpc/64: Add UADDR64 relocation support
  [ Diederik de Haas ]
  * [armhf] drivers/net/ethernet/freescale: Enable FEC as module
    (Closes: #991461)
  * [x86] drivers/extcon: Enable EXTCON_AXP288 as module
  * [x86] drivers/power/supply: Enable AXP288_CHARGER as module
    (Closes: #940672)
  [ Vagrant Cascadian ]
  * [arm64] Enable modules for MNT Reform: DRM_LVDS_CODEC,
    SND_SOC_IMX_AUDMIX and SND_SOC_IMX_HDMI. Thanks to Johannes Schauer
    Marin Rodrigues. (Closes: #1009858)
  [ Salvatore Bonaccorso ]
  * Bump ABI to 2
linux (5.17.3-1) unstable; urgency=medium
  * New upstream stable update:
  [ Salvatore Bonaccorso ]
  * linux-kbuild: Include scripts/ (Closes: #1008501)
  * [x86] drivers/cpufreq: Enable X86_AMD_PSTATE as module (Closes: #1009302)
  * [rt] Update to 5.17.1-rt17
  * Set ABI to 1
  [ Adriaan Schmidt ]
  * tools: install perf python bindings (Closes: #860957)
  [ Ben Hutchings ]
  * d/bin/ Add support for pkg.linux.quick profile
  * lintian: Add lintian-overrides to linux-signed-* for non-issues
  * d/salsa-ci.yml: Don't disable signed code
  * d/certs: Add certificate and key to enable test signing in CI
  * d/salsa-ci.yml: Add jobs to build and test the signed packages
  [ Vagrant Cascadian ]
  * [arm64] Add nvmem-rockchip-efuse and phy-rockchip-inno-hdmi to fb-modules
linux (5.17.1-1~exp1) experimental; urgency=medium
  * New upstream release:
  * New upstream stable update:
  [ Bastian Blank ]
  * [arm64] Enable HyperV support.  (closes: #1007023)
  * Replace FB_HYPERV with DRM_HYPERV.
  * Allow disabling debug info by build profile.
  * [arm64] Make sure hyperv-daemons are actually build.
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rt15
  [ Diederik de Haas ]
  * [armhf] Enable SUN8I_THERMAL as module (Closes: #1007799)
linux (5.17~rc8-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rc7-rt13
linux (5.17~rc7-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rc7-rt12
linux (5.17~rc6-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rc6-rt10
linux (5.17~rc5-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rc5-rt8
linux (5.17~rc4-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Bastian Blank ]
  * Add pkg.linux.nokerneldbg build profile that excludes kernel debug
  [ Salvatore Bonaccorso ]
  * [rt] Update to 5.17-rc4-rt7
linux (5.17~rc3-1~exp1) experimental; urgency=medium
  * New upstream release candidate
  [ Ben Hutchings ]
  * Rebase patches:
    - Drop "x86-32: Disable 3D-Now in generic config"
    - Drop "RISC-V: Use SBI SRST extension when available"
    - Drop "objtool: check: give big enough buffer for pv_ops"
    - Drop part of "sh: Do not use hyphen in exported variable names"
    - Update "add sysctl to disallow unprivileged CLONE_NEWUSER by default"
    - Update "Disable uImage generation for mips generic"
    - Update "MODSIGN: do not load mok when secure boot disabled"
  * [rt] Update to 5.17-rc2-rt4
  * linux-kbuild: Build extract-cert in certs/ instead of scripts/
  * d/rules.real: Pass C compiler options to user-space build in HOSTCFLAGS too
  [ Aurelien Jarno ]
  * [riscv64] Add basic support for StarFive JH7100 RISC-V SoC: enable
linux (5.16.18-1) unstable; urgency=medium
  * New upstream stable update:
    - HID: elo: Revert USB reference counting
    - HID: hid-thrustmaster: fix OOB read in thrustmaster_interrupts
    - [arm64] clk: qcom: gdsc: Add support to update GDSC transition delay
    - HID: vivaldi: fix sysfs attributes leak
    - HID: nintendo: check the return value of alloc_workqueue()
    - [arm64] dts: armada-3720-turris-mox: Add missing ethernet0 alias
    - tipc: fix kernel panic when enabling bearer
    - [arm64] net: phy: meson-gxl: fix interrupt handling in forced mode
    - mISDN: Fix memory leak in dsp_pipeline_build()
    - vhost: fix hung thread due to erroneous iotlb entries
    - virtio-blk: Don't use MAX_DISCARD_SEGMENTS if max_discard_seg is zero
    - virtio-blk: Remove BUG_ON() in virtio_queue_rq()
    - isdn: hfcpci: check the return value of dma_set_mask() in setup_hw()
    - net: qlogic: check the return value of dma_alloc_coherent() in
    - esp: Fix possible buffer overflow in ESP transformation (CVE-2022-27666)
    - esp: Fix BEET mode inter address family tunneling on GSO
    - net: gro: move skb_gro_receive_list to udp_offload.c
    - qed: return status of qed_iov_get_link
    - smsc95xx: Ignore -ENODEV errors when device is unplugged
    - gpiolib: acpi: Convert ACPI value of debounce to microseconds
    - [x86] drm/i915/psr: Set "SF Partial Frame Enable" also on full update
    - drm/sun4i: mixer: Fix P010 and P210 format numbers
    - iavf: Fix handling of vlan strip virtual channel messages
    - i40e: stop disabling VFs due to PF error responses
    - ice: stop disabling VFs due to PF error responses
    - ice: Fix error with handling of bonding MTU
    - ice: Don't use GFP_KERNEL in atomic context
    - ice: Fix curr_link_speed advertised speed
    - ethernet: Fix error handling in xemaclite_of_probe
    - tipc: fix incorrect order of state message data sanity check
    - [armhf] net: ethernet: ti: cpts: Handle error for clk_enable
    - ax25: Fix NULL pointer dereference in ax25_kill_by_device
    - net/mlx5: Fix size field in bufferx_reg struct
    - net/mlx5: Fix a race on command flush flow
    - net/mlx5e: Lag, Only handle events from highest priority multipath entry
    - net/mlx5e: SHAMPO, reduce TIR indication
    - NFC: port100: fix use-after-free in port100_send_complete
    - mm: gup: make fault_in_safe_writeable() use fixup_user_fault()
    - net: phy: DP83822: clear MISR2 register to disable interrupts
    - sctp: fix kernel-infoleak for SCTP sockets
    - [arm64] net: bcmgenet: Don't claim WOL when its not available
    - [arm64] net: phy: meson-gxl: improve link-up behavior
    - swiotlb: fix info leak with DMA_FROM_DEVICE (CVE-2022-0854)
    - [arm64] usb: dwc3: pci: add support for the Intel Raptor Lake-S
    - [x86] pinctrl: tigerlake: Revert "Add Alder Lake-M ACPI ID"
    - KVM: Fix lockdep false negative during host resume
    - [x86] kvm: x86: Disable KVM_HC_CLOCK_PAIRING if tsc is in always catchup
    - [arm64,armhf] spi: rockchip: Fix error in getting num-cs property
    - [arm64,armhf] spi: rockchip: terminate dma transmission when slave abort
    - [arm*] drm/vc4: hdmi: Unregister codec device on unbind
    - of/fdt: move elfcorehdr reservation early for crash dump kernel
    - [x86] kvm: Don't use pv tlb/ipi/sched_yield if on 1 vCPU
    - drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()
    - net-sysfs: add check for netdevice being present to speed_show
    - [armhf] hwmon: (pmbus) Clear pmbus fault/warning bits after read
    - nvme-tcp: send H2CData PDUs based on MAXH2CDATA
    - PCI: Mark all AMD Navi10 and Navi14 GPU ATS as broken
    - gpio: Return EPROBE_DEFER if gc->to_irq is NULL
    - drm/amdgpu: bypass tiling flag check in virtual display case (v2)
    - Revert "xen-netback: remove 'hotplug-status' once it has served its
    - Revert "xen-netback: Check for hotplug-status existence before watching"
    - ipv6: prevent a possible race condition with lifetimes
    - tracing: Ensure trace buffer is at least 4096 bytes large
    - tracing/osnoise: Make osnoise_main to sleep for microseconds
    - [armel,armhf] Spectre-BHB: provide empty stub for non-config
    - fuse: fix fileattr op failure
    - fuse: fix pipe buffer lifetime for direct_io (CVE-2022-1011)
    - [arm64,x86] staging: rtl8723bs: Fix access-point mode deadlock
    - [arm64] net: macb: Fix lost RX packet wakeup race in NAPI receive
    - [arm64] mmc: meson: Fix usage of meson_mmc_post_req()
    - tracing/osnoise: Force quiescent states while tracing
    - tracing/osnoise: Do not unregister events twice
    - [arm64] dts: marvell: armada-37xx: Remap IO space to bus address 0x0
    - [arm64] Ensure execute-only permissions are not allowed without EPAN
    - swiotlb: rework "fix info leak with DMA_FROM_DEVICE" (CVE-2022-0854)
    - virtio: unexport virtio_finalize_features
    - virtio: acknowledge all features before access
    - net/mlx5: Fix offloading with ESWITCH_IPV4_TTL_MODIFY_ENABLE
    - [armel,armhf] fix Thumb2 regression with Spectre BHB
    - watch_queue: Fix filter limit check (CVE-2022-0995)
    - watch_queue, pipe: Free watchqueue state after clearing pipe ring
    - watch_queue: Fix to release page in ->release() (CVE-2022-0995)
    - watch_queue: Fix to always request a pow-of-2 pipe ring size
    - watch_queue: Fix the alloc bitmap size to reflect notes allocated
    - watch_queue: Free the alloc bitmap when the watch_queue is torn down
    - watch_queue: Fix lack of barrier/sync/lock between post and read
    - watch_queue: Make comment about setting ->defunct more accurate
    - [x86] boot: Fix memremap of setup_indirect structures
    - [x86] boot: Add setup_indirect support in early_memremap_is_setup_data()
    - [x86] module: Fix the paravirt vs alternative order
    - [x86] traps: Mark do_int3() NOKPROBE_SYMBOL
    - perf parse: Fix event parser error for hybrid systems
    - btrfs: make send work with concurrent block group relocation
    - vhost: allow batching hint without size
    - Revert "xfrm: state and policy should fail if XFRMA_IF_ID 0"
    - [arm64] dts: rockchip: fix rk3399-puma-haikou USB OTG mode
    - xfrm: Check if_id in xfrm_migrate
    - xfrm: Fix xfrm migrate issues when address family changes
    - mac80211: refuse aggregations sessions before authorized
    - [mips64el,mipsel] smp: fill in sibling and core maps earlier
    - Bluetooth: hci_core: Fix leaking sent_cmd skb
    - [x86] atm: firestream: check the return value of ioremap() in fs_init()
    - netfilter: egress: silence egress hook lockdep splats
    - Input: goodix - use the new soc_intel_is_byt() helper
    - Input: goodix - workaround Cherry Trail devices with a bogus ACPI
      Interrupt() resource
    - iwlwifi: don't advertise TWT support
    - drm/vrr: Set VRR capable prop only if it is attached to connector
    - nl80211: Update bss channel on channel switch for P2P_CLIENT
    - tcp: make tcp_read_sock() more robust
    - sfc: extend the locking on mcdi->seqno
    - bnx2: Fix an error message
    - ice: Fix race condition during interface enslave
    - crypto: qcom-rng - ensure buffer for generate is completely filled
    - ocfs2: fix crash when initialize filecheck kobj fails
    - mm: swap: get rid of livelock in swapin readahead
    - block: release rq qos structures for queue without disk
    - [x86] drm/mgag200: Fix PLL setup for g200wb and g200ew
    - efi: fix return value of __setup handlers
    - alx: acquire mutex for alx_reinit in alx_change_mtu
    - vsock: each transport cycles only on its own sockets
    - esp6: fix check on ipv6_skip_exthdr's return value
    - net: phy: marvell: Fix invalid comparison in the resume and suspend
    - net/packet: fix slab-out-of-bounds access in packet_recvmsg()
    - nvmet: revert "nvmet: make discovery NQN configurable"
    - atm: eni: Add check for dma_map_single
    - ice: fix NULL pointer dereference in ice_update_vsi_tx_ring_stats()
    - iavf: Fix double free in iavf_reset_task
    - hv_netvsc: Add check for kvmalloc_array
    - [armhf] drm/imx: parallel-display: Remove bus flags check in
    - [arm64,armhf] drm/panel: simple: Fix Innolux G070Y2-L01 BPP settings
    - net: handle ARPHRD_PIMREG in dev_is_mac_header_xmit()
    - [arm64,armhf] net: dsa: Add missing of_node_put() in dsa_port_parse_of
    - net: phy: mscc: Add MODULE_FIRMWARE macros
    - bnx2x: fix built-in kernel driver load failure
    - [arm64] net: bcmgenet: skip invalid partial checksums
    - [arm64] net: mscc: ocelot: fix backwards compatibility with single-chain
      tc-flower offload
    - iavf: Fix hang during reboot/shutdown
    - usb: gadget: rndis: prevent integer overflow in rndis_set_response()
    - usb: gadget: Fix use-after-free bug by not setting udc->dev.driver
    - usb: usbtmc: Fix bug in pipe direction for control transfers
    - scsi: mpt3sas: Page fault in reply q processing
    - Input: aiptek - properly check endpoint type
    - [arm64] errata: avoid duplicate field initializer
    - perf symbols: Fix symbol size calculation condition
    - Revert "ath10k: drop beacon and probe response which leak from other
    - btrfs: skip reserved bytes warning on unmount after log cleanup failure
    - Bluetooth: btusb: Add another Realtek 8761BU
    - llc: fix netdevice reference leaks in llc_ui_bind()
    - ALSA: oss: Fix PCM OSS buffer allocation overflow
    - ALSA: hda/realtek: Add quirk for Clevo NP70PNJ
    - ALSA: hda/realtek: Add quirk for Clevo NP50PNJ
    - ALSA: hda/realtek - Fix headset mic problem for a HP machine with alc671
    - ALSA: hda/realtek: Add quirk for ASUS GA402
    - ALSA: pcm: Fix races among concurrent hw_params and hw_free calls
    - ALSA: pcm: Fix races among concurrent read/write and buffer changes
    - nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION
    - net: ipv6: fix skb_over_panic in __ip6_append_data
    - tpm: Fix error handling in async work
    - ALSA: pcm: Fix races among concurrent prepare and hw_params/hw_free calls
    - ALSA: pcm: Fix races among concurrent prealloc proc writes (CVE-2022-1048)
    - ALSA: pcm: Add stream lock during PCM reset ioctl operations
    - ALSA: usb-audio: Add mute TLV for playback volumes on RODE NT-USB
    - ALSA: cmipci: Restore aux vol on suspend/resume
    - ALSA: pci: fix reading of swapped values from pcmreg in AC97 codec
    - [arm64] drivers: net: xgene: Fix regression in CRC stripping
    - netfilter: nf_tables: initialize registers in nft_do_chain()
    - netfilter: nf_tables: validate registers coming from userspace.
    - [x86] ACPI / x86: Work around broken XSDT on Advantech DAC-BJ01 board
    - ACPI: battery: Add device HID and quirk for Microsoft Surface Go 3
    - [x86] ACPI: video: Force backlight native for Clevo NL5xRU and NL5xNU
    - [x86] crypto: qat - disable registration of algorithms
    - Bluetooth: btusb: Add one more Bluetooth part for the Realtek RTL8852AE
    - Revert "ath: add support for special 0x0 regulatory domain"
    - drm/virtio: Ensure that objs is not NULL in virtio_gpu_array_put_free()
    - rcu: Don't deboost before reporting expedited quiescent state
    - uaccess: fix integer overflow on access_ok()
    - mac80211: fix potential double free on mesh join
    - tpm: use try_get_ops() in tpm-space.c
    - [arm64] wcn36xx: Differentiate wcn3660 from wcn3620
    - llc: only change llc->dev when bind() succeeds
  [ Salvatore Bonaccorso ]
  * Bump ABI to 6
  [ Vincent Blut ]
  * sound/pci/hda: Enable SND_HDA_CODEC_CS8409 as module (Closes: #1008122)
linux (5.16.14-1) unstable; urgency=medium
  * New upstream stable update:
    - mac80211_hwsim: report NOACK frames in tx_status
    - mac80211_hwsim: initialize ieee80211_tx_info at hw_scan_work
    - [arm*] i2c: bcm2835: Avoid clock stretching timeouts
    - [x86] ASoC: rt5682s: do not block workqueue if card is unbound
    - ASoC: rt5682: do not block workqueue if card is unbound
    - regulator: core: fix false positive in regulator_late_cleanup()
    - Input: clear BTN_RIGHT/MIDDLE on buttonpads
    - btrfs: get rid of warning on transaction commit when using flushoncommit
    - [arm64] KVM: arm64: vgic: Read HW interrupt pending state from the HW
    - block: loop:use kstatfs.f_bsize of backing file to set discard granularity
    - tipc: fix a bit overflow in tipc_crypto_key_rcv()
    - cifs: do not use uninitialized data in the owner/group sid
    - cifs: fix double free race when mount fails in cifs_get_root()
    - [amd64] HID: amd_sfh: Handle amd_sfh work buffer in PM ops
    - [amd64] HID: amd_sfh: Add functionality to clear interrupts
    - [amd64] HID: amd_sfh: Add interrupt handler to process interrupts
    - cifs: modefromsids must add an ACE for authenticated users
    - drm/amd/pm: correct UMD pstate clocks for Dimgrey Cavefish and Beige Goby
    - net: usb: cdc_mbim: avoid altsetting toggling for Telit FN990
    - block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern
    - usb: gadget: don't release an existing dev->buf (CVE-2022-24958)
    - usb: gadget: clear related members when goto fail (CVE-2022-24958)
    - exfat: reuse exfat_inode_info variable instead of calling EXFAT_I()
    - exfat: fix i_blocks for files truncated over 4 GiB
    - tracing: Add test for user space strings when filtering on string pointers
    - [arm64] Mark start_backtrace() notrace and NOKPROBE_SYMBOL
    - [armhf] serial: stm32: prevent TDR register overwrite when sending x_char
    - [arm64] KVM: arm64: Workaround Cortex-A510's single-step and PAC trap
    - ext4: drop ineligible txn start stop APIs
    - ext4: simplify updating of fast commit stats
    - ext4: fast commit may not fallback for ineligible commit
    - ext4: fast commit may miss file actions
    - sched/fair: Fix fault in reweight_entity
    - [x86] KVM: x86: Add KVM_CAP_ENABLE_CAP to x86
    - ata: pata_hpt37x: fix PCI clock detection
    - drm/amdgpu: check vm ready by amdgpu_vm->evicting flag
    - tracing: Add ustring operation to filtering string pointers
    - ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()
    - btrfs: defrag: bring back the old file extent search behavior
    - btrfs: defrag: don't use merged extent map for their generation check
    - [x86] ALSA: intel_hdmi: Fix reference to PCM buffer address
    - ucounts: Fix systemd LimitNPROC with private users regression
    - binfmt_elf: Avoid total_mapping_size for ET_EXEC
    - ASoC: ops: Shift tested values in snd_soc_put_volsw() by +min
    - [amd64] iommu/vt-d: Fix double list_add when enabling VMD in scalable mode
    - [amd64] iommu/amd: Recover from event log overflow
    - [x86] drm/i915: s/JSP2/ICP2/ PCH
    - drm/amd/display: Reduce dmesg error to a debug print
    - xen/netfront: destroy queues before real_num_tx_queues is zeroed
    - mac80211: fix EAPoL rekey fail in 802.3 rx path
    - blktrace: fix use after free for struct blk_trace
    - mm: Consider __GFP_NOWARN flag for oversized kvmalloc() calls
    - xfrm: fix MTU regression
    - netfilter: fix use-after-free in __nf_register_net_hook()
    - bpf, sockmap: Do not ignore orig_len parameter
    - xfrm: fix the if_id check in changelink
    - xfrm: enforce validity of offload input flags
    - e1000e: Correct NVM checksum verification flow
    - net: fix up skbs delta_truesize in UDP GRO frag_list
    - netfilter: nf_queue: don't assume sk is full socket
    - netfilter: nf_queue: fix possible use-after-free
    - netfilter: nf_queue: handle socket prefetch
    - batman-adv: Request iflink once in batadv-on-batadv check
    - batman-adv: Request iflink once in batadv_get_real_netdevice
    - batman-adv: Don't expect inter-netns unique iflink indices
    - net: ipv6: ensure we call ipv6_mc_down() at most once
    - net: dcb: flush lingering app table entries for unregistered devices
    - net/smc: fix connection leak
    - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error generated by client
    - net/smc: fix unexpected SMC_CLC_DECL_ERR_REGRMB error cause by server
    - btrfs: fix ENOSPC failure when attempting direct IO write into NOCOW range
    - [amd64] platform/x86: amd-pmc: Set QOS during suspend on CZN w/ timer
    - mac80211: fix forwarded mesh frames AC & queue selection
    - net: stmmac: fix return value of __setup handler
    - mac80211: treat some SAE auth steps as final
    - iavf: Fix missing check for running netdev
    - net: arcnet: com20020: Fix null-ptr-deref in com20020pci_probe()
    - ixgbe: xsk: change !netif_carrier_ok() handling in ixgbe_xmit_zc()
    - iavf: Fix deadlock in iavf_reset_task
    - efivars: Respect "block" flag in efivar_entry_set_safe()
    - [armhf] firmware: arm_scmi: Remove space in MODULE_ALIAS name
    - can: gs_usb: change active_channels's type from atomic_t to u8
    - [arm64,armhf] iommu/tegra-smmu: Fix missing put_device() call in
    - igc: igc_read_phy_reg_gpy: drop premature return
    - [mips*] setup: fix setnocoherentio() boolean setting
    - [armel,armhf] 9182/1: mmu: fix returns from early_param() and __setup()
    - mptcp: Correctly set DATA_FIN timeout when number of retransmits is large
    - [arm64,armhf] pinctrl: sunxi: Use unique lockdep classes for IRQs
    - igc: igc_write_phy_reg_gpy: drop premature return
    - memfd: fix F_SEAL_WRITE after shmem huge page allocated
    - [s390x] setup: preserve memory at OLDMEM_BASE and OLDMEM_SIZE
    - [s390x] extable: fix exception table sorting
    - sched: Fix yet more sched_fork() races
    - [arm64] dts: rockchip: fix Quartz64-A ddr regulator voltage
    - [amd64] iommu/amd: Fix I/O page table memory leak
    - [armhf] dts: switch timer config to common devkit8000 devicetree
    - [armhf] dts: Use 32KiHz oscillator on devkit8000
    - [arm64] soc: fsl: guts: Revert commit 3c0d64e867ed
    - [arm64] soc: fsl: guts: Add a missing memory allocation failure check
    - [arm64] soc: imx: gpcv2: Fix clock disabling imbalance in error path
    - netfilter: nf_tables: prefer kfree_rcu(ptr, rcu) variant
    - [armhf] tegra: Move panels to AUX bus
    - Bluetooth: Fix bt_skb_sendmmsg not allocating partial chunks
    - net: stmmac: enhance XDP ZC driver level switching performance
    - net: stmmac: only enable DMA interrupts when ready
    - net: chelsio: cxgb3: check the return value of pci_find_capability()
    - iavf: Add trace while removing device
    - iavf: Rework mutexes for better synchronisation
    - iavf: Add waiting so the port is initialized in remove
    - iavf: Fix init state closure on remove
    - iavf: Fix locking for VIRTCHNL_OP_GET_OFFLOAD_VLAN_V2_CAPS
    - iavf: Fix race in init state
    - iavf: Fix __IAVF_RESETTING state usage
    - [x86] drm/i915/guc/slpc: Correct the param count for unset param
    - e1000e: Fix possible HW unit hang after an s0ix exit
    - nl80211: Handle nla_memdup failures in handle_nan_filter
    - ptp: ocp: Add ptp_ocp_adjtime_coarse for large adjustments
    - drm/amdgpu: fix suspend/resume hang regression
    - net: dcb: disable softirqs in dcbnl_flush_dev()
    - net: stmmac: perserve TX and RX coalesce value during XDP setup
    - Input: elan_i2c - move regulator_[en|dis]able() out of
    - Input: elan_i2c - fix regulator enable count imbalance after
    - HID: add mapping for KEY_DICTATE
    - HID: add mapping for KEY_ALL_APPLICATIONS
    - tracing/histogram: Fix sorting on old "cpu" value
    - tracing: Fix return value of __setup handlers
    - btrfs: fix lost prealloc extents beyond eof after full fsync
    - btrfs: fix relocation crash due to premature return from
    - btrfs: subpage: fix a wrong check on subpage->writers
    - btrfs: do not WARN_ON() if we have PageError set
    - btrfs: qgroup: fix deadlock between rescan worker and remove qgroup
    - btrfs: add missing run of delayed items after unlink during log replay
    - btrfs: fallback to blocking mode when doing async dio over multiple
    - btrfs: do not start relocation until in progress drops are done
    - Revert "xfrm: xfrm_state_mtu should return at least 1280 for ipv6"
    - proc: fix documentation and description of pagemap
    - [x86] kvmclock: Fix Hyper-V Isolated VM's boot issue when vCPUs > 64
    - [s390x] ftrace: fix arch_ftrace_get_regs implementation
    - [s390x] ftrace: fix ftrace_caller/ftrace_regs_caller generation
    - [x86] KVM: x86/mmu: Passing up the error state of mmu_alloc_shadow_roots()
    - [armhf] report Spectre v2 status through sysfs
    - [armel,armhf] early traps initialisation
    - [armel,armhf] use LOADADDR() to get load address of sections
    - [armel,armhf] Spectre-BHB workaround
    - [armhf] include unprivileged BPF status in Spectre V2 reporting
    - [arm64] add ID_AA64ISAR2_EL1 sys register
    - [arm64] cpufeature: add HWCAP for FEAT_AFP
    - [arm64] cpufeature: add HWCAP for FEAT_RPRES
    - [arm64] entry.S: Add ventry overflow sanity checks
    - [arm64] spectre: Rename spectre_v4_patch_fw_mitigation_conduit
    - [arm64] KVM: arm64: Allow indirect vectors to be used without SPECTRE_V3A
    - [arm64] entry: Make the trampoline cleanup optional
    - [arm64] entry: Free up another register on kpti's tramp_exit path
    - [arm64] entry: Move the trampoline data page before the text page
    - [arm64] entry: Allow tramp_alias to access symbols after the 4K boundary
    - [arm64] entry: Don't assume tramp_vectors is the start of the vectors
    - [arm64] entry: Move trampoline macros out of ifdef'd section
    - [arm64] entry: Make the kpti trampoline's kpti sequence optional
    - [arm64] entry: Allow the trampoline text to occupy multiple pages
    - [arm64] entry: Add non-kpti __bp_harden_el1_vectors for mitigations
    - [arm64] entry: Add vectors that have the bhb mitigation sequences
    - [arm64] entry: Add macro for reading symbol addresses from the trampoline
    - [arm64] Add percpu vectors for EL1
    - [arm64] proton-pack: Report Spectre-BHB vulnerabilities as part of
    - [arm64] Mitigate spectre style branch history side channels
    - [arm64] KVM: arm64: Allow SMCCC_ARCH_WORKAROUND_3 to be discovered and
    - [arm64] Use the clearbhb instruction in mitigations
    - [arm64] proton-pack: Include unprivileged eBPF status in Spectre v2
      mitigation reporting
    - [armel,armhf] fix co-processor register typo
    - [armel,armhf] Do not use NOCROSSREFS directive with ld.lld
    - [arm64] Do not include __READ_ONCE() block in assembly files
    - [armhf] fix build warning in proc-v7-bugs.c
    - xen/xenbus: don't let xenbus_grant_ring() remove grants in error case
      (CVE-2022-23040, XSA-396)
    - xen/grant-table: add gnttab_try_end_foreign_access() (CVE-2022-23036,
      CVE-2022-23038, XSA-396)
    - xen/blkfront: don't use gnttab_query_foreign_access() for mapped status
      (CVE-2022-23036, XSA-396)
    - xen/netfront: don't use gnttab_query_foreign_access() for mapped status
      (CVE-2022-23037, XSA-396)
    - xen/scsifront: don't use gnttab_query_foreign_access() for mapped status
      (CVE-2022-23038, XSA-396)
    - xen/gntalloc: don't use gnttab_query_foreign_access() (CVE-2022-23039,
    - xen: remove gnttab_query_foreign_access()
    - xen/9p: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396)
    - xen/pvcalls: use alloc/free_pages_exact() (CVE-2022-23041, XSA-396)
    - xen/gnttab: fix gnttab_end_foreign_access() without page specified
      (CVE-2022-23041, XSA-396)
    - xen/netfront: react properly to failing gnttab_end_foreign_access_ref()
      (CVE-2022-23042, XSA-396)
    - Revert "ACPI: PM: s2idle: Cancel wakeup before dispatching EC GPE"
  [ Bastian Blank ]
  * [arm64] Enable hyperv-daemons package.
  [ Salvatore Bonaccorso ]
  * Bump ABI to 5
parents e070cd5a 64175be2
Pipeline #6252 failed with stages
in 0 seconds
......@@ -216,7 +216,6 @@ ForEachMacros:
- 'for_each_migratetype_order'
- 'for_each_msi_entry'
- 'for_each_msi_entry_safe'
- 'for_each_msi_vector'
- 'for_each_net'
- 'for_each_net_continue_reverse'
- 'for_each_netdev'
......@@ -10,10 +10,12 @@
# Please keep this list dictionary sorted.
Aaron Durbin <>
Abhinav Kumar <> <>
Adam Oldham <>
Adam Radford <>
Adriana Reus <> <>
Adrian Bunk <>
Akhil P Oommen <> <>
Alan Cox <>
Alan Cox <>
Aleksandar Markovic <> <>
......@@ -42,14 +44,18 @@ Andrew Vasquez <>
Andrey Konovalov <> <>
Andrey Ryabinin <> <>
Andrey Ryabinin <> <>
Andrzej Hajda <> <>
André Almeida <> <>
Andy Adamson <>
Antoine Tenart <> <>
Antoine Tenart <> <>
Antonio Ospite <> <>
Anup Patel <> <>
Archit Taneja <>
Ard Biesheuvel <> <>
Arnaud Patard <>
Arnd Bergmann <>
Atish Patra <> <>
Axel Dyks <>
Axel Lin <>
Bart Van Assche <> <>
......@@ -65,6 +71,8 @@ Boris Brezillon <> <>
Boris Brezillon <> <>
Brian Avery <>
Brian King <>
Brian Silverman <> <>
Cai Huoqing <> <>
Changbin Du <> <>
Changbin Du <> <>
Chao Yu <> <>
......@@ -175,11 +183,14 @@ Jeff Layton <> <>
Jens Axboe <>
Jens Osterkamp <>
Jernej Skrabec <> <>
Jessica Zhang <> <>
Jiri Slaby <> <>
Jiri Slaby <> <>
Jiri Slaby <> <>
Jiri Slaby <> <>
Jiri Slaby <> <>
Jisheng Zhang <> <>
Jisheng Zhang <> <>
Johan Hovold <> <>
Johan Hovold <> <>
John Paul Adrian Glaubitz <>
......@@ -194,6 +205,8 @@ Juha Yrjola <at>
Juha Yrjola <>
Juha Yrjola <>
Julien Thierry <> <>
Kalle Valo <> <>
Kalyan Thota <> <>
Kay Sievers <>
Kees Cook <> <>
Kees Cook <> <>
......@@ -202,12 +215,16 @@ Kees Cook <> <>
Keith Busch <> <>
Keith Busch <> <>
Kenneth W Chen <>
Kirill Tkhai <> <>
Konstantin Khlebnikov <> <>
Konstantin Khlebnikov <> <>
Koushik <>
Krishna Manikandan <> <>
Krzysztof Kozlowski <> <>
Krzysztof Kozlowski <> <>
Krzysztof Kozlowski <> <>
Kuninori Morimoto <>
Kuogee Hsieh <> <>
Leonardo Bras <> <>
Leonid I Ananiev <>
Leon Romanovsky <> <>
......@@ -234,6 +251,7 @@ Mark Yao <> <>
Martin Kepplinger <> <>
Martin Kepplinger <> <>
Martin Kepplinger <> <>
Martyna Szapar-Mudlaw <> <>
Mathieu Othacehe <>
Matthew Wilcox <> <>
Matthew Wilcox <> <>
......@@ -314,6 +332,7 @@ Qais Yousef <> <>
Quentin Monnet <> <>
Quentin Perret <> <>
Rafael J. Wysocki <> <>
Rajeev Nandan <> <>
Rajesh Shah <>
Ralf Baechle <>
Ralf Wildenhues <>
......@@ -322,12 +341,16 @@ Rémi Denis-Courmont <>
Ricardo Ribalda <> <>
Ricardo Ribalda <> Ricardo Ribalda Delgado <>
Ricardo Ribalda <> <>
Roman Gushchin <> <>
Roman Gushchin <> <>
Roman Gushchin <> <>
Ross Zwisler <> <>
Rudolf Marek <>
Rui Saraiva <>
Sachin P Sant <>
Sakari Ailus <> <>
Sam Ravnborg <>
Sankeerth Billakanti <> <>
Santosh Shilimkar <>
Santosh Shilimkar <>
Sarangdhar Joshi <>
......@@ -371,6 +394,10 @@ Uwe Kleine-König <>
Uwe Kleine-König <>
Uwe Kleine-König <>
Valdis Kletnieks <>
Vasily Averin <> <>
Vasily Averin <> <>
Vasily Averin <> <>
Vasily Averin <> <>
Vinod Koul <> <>
Vinod Koul <> <>
Vinod Koul <> <>
......@@ -315,6 +315,11 @@ S: Via Delle Palme, 9
S: Terni 05100
S: Italy
N: Ohad Ben Cohen
D: Remote Processor (remoteproc) subsystem
D: Remote Processor Messaging (rpmsg) subsystem
N: Krzysztof Benedyczak
......@@ -890,6 +895,12 @@ S: 3000 FORE Drive
S: Warrendale, Pennsylvania 15086
N: Ludovic Desroches
D: Maintainer for ARM/Microchip (AT91) SoC support
D: Author of ADC, pinctrl, XDMA and SDHCI drivers for this platform
S: France
N: Martin Devera
What: /proc/i8k
Date: November 2001
KernelVersion: 2.4.14
Contact: Pali Rohár <>
Description: Legacy interface for getting/setting sensor information like
fan speed, temperature, serial number, hotkey status etc
on Dell Laptops.
Since the driver is now using the standard hwmon sysfs interface,
the procfs interface is deprecated.
What: /sys/class/dax/
Date: May, 2016
KernelVersion: v4.7
Description: Device DAX is the device-centric analogue of Filesystem
DAX (CONFIG_FS_DAX). It allows memory ranges to be
allocated and mapped without need of an intervening file
system. Device DAX is strict, precise and predictable.
Specifically this interface:
1. Guarantees fault granularity with respect to a given
page size (pte, pmd, or pud) set at configuration time.
2. Enforces deterministic behavior by being strict about
what fault scenarios are supported.
The /sys/class/dax/ interface enumerates all the
device-dax instances in the system. The ABI is
deprecated and will be removed after 2020. It is
replaced with the DAX bus interface /sys/bus/dax/ where
device-dax instances can be found under
What: /sys/devices/system/machinecheck/machinecheckX/tolerant
Contact: Borislav Petkov <>
Date: Dec, 2021
Unused and obsolete after the advent of recoverable machine
checks (see last sentence below) and those are present since
2010 (Nehalem).
Original description:
The entries appear for each CPU, but they are truly shared
between all CPUs.
Tolerance level. When a machine check exception occurs for a
non corrected machine check the kernel can take different
Since machine check exceptions can happen any time it is
sometimes risky for the kernel to kill a process because it
defies normal kernel locking rules. The tolerance level
configures how hard the kernel tries to recover even at some
risk of deadlock. Higher tolerant values trade potentially
better uptime with the risk of a crash or even corruption
(for tolerant >= 3).
== ===========================================================
0 always panic on uncorrected errors, log corrected errors
1 panic or SIGBUS on uncorrected errors, log corrected errors
2 SIGBUS or log uncorrected errors, log corrected errors
3 never panic or SIGBUS, log all errors (for testing only)
== ===========================================================
Default: 1
Note this only makes a difference if the CPU allows recovery
from a machine check exception. Current x86 CPUs generally
do not.
This diff is collapsed.
......@@ -176,3 +176,9 @@ Contact: Keith Busch <>
The cache write policy: 0 for write-back, 1 for write-through,
other or unknown.
What: /sys/devices/system/node/nodeX/x86/sgx_total_bytes
Date: November 2021
Contact: Jarkko Sakkinen <>
The total amount of SGX physical memory in bytes.
......@@ -86,6 +86,10 @@ What: /sys/devices/system/cpu/cpuX/topology/die_cpus
Description: internal kernel map of CPUs within the same die.
Values: hexadecimal bitmask.
What: /sys/devices/system/cpu/cpuX/topology/ppin
Description: per-socket protected processor inventory number
Values: hexadecimal.
What: /sys/devices/system/cpu/cpuX/topology/die_cpus_list
Description: human-readable list of CPUs within the same die.
The format is like 0-3, 8-11, 14,17.
......@@ -41,14 +41,14 @@ KernelVersion: 5.6.0
Description: The maximum number of groups can be created under this device.
What: /sys/bus/dsa/devices/dsa<m>/max_tokens
Date: Oct 25, 2019
KernelVersion: 5.6.0
What: /sys/bus/dsa/devices/dsa<m>/max_read_buffers
Date: Dec 10, 2021
KernelVersion: 5.17.0
Description: The total number of bandwidth tokens supported by this device.
The bandwidth tokens represent resources within the DSA
Description: The total number of read buffers supported by this device.
The read buffers represent resources within the DSA
implementation, and these resources are allocated by engines to
support operations.
support operations. See DSA spec v1.2 9.2.4 Total Read Buffers.
What: /sys/bus/dsa/devices/dsa<m>/max_transfer_size
Date: Oct 25, 2019
......@@ -115,13 +115,13 @@ KernelVersion: 5.6.0
Description: To indicate if this device is configurable or not.
What: /sys/bus/dsa/devices/dsa<m>/token_limit
Date: Oct 25, 2019
KernelVersion: 5.6.0
What: /sys/bus/dsa/devices/dsa<m>/read_buffer_limit
Date: Dec 10, 2021
KernelVersion: 5.17.0
Description: The maximum number of bandwidth tokens that may be in use at
Description: The maximum number of read buffers that may be in use at
one time by operations that access low bandwidth memory in the
device. See DSA spec v1.2 9.2.8 GENCFG on Global Read Buffer Limit.
What: /sys/bus/dsa/devices/dsa<m>/cmd_status
Date: Aug 28, 2020
......@@ -220,8 +220,38 @@ Contact:
Description: Show the current number of entries in this WQ if WQ Occupancy
Support bit WQ capabilities is 1.
What: /sys/bus/dsa/devices/wq<m>.<n>/enqcmds_retries
Date Oct 29, 2021
KernelVersion: 5.17.0
Description: Indicate the number of retires for an enqcmds submission on a sharedwq.
A max value to set attribute is capped at 64.
What: /sys/bus/dsa/devices/engine<m>.<n>/group_id
Date: Oct 25, 2019
KernelVersion: 5.6.0
Description: The group that this engine belongs to.
What: /sys/bus/dsa/devices/group<m>.<n>/use_read_buffer_limit
Date: Dec 10, 2021
KernelVersion: 5.17.0
Description: Enable the use of global read buffer limit for the group. See DSA
spec v1.2 9.2.18 GRPCFG Use Global Read Buffer Limit.
What: /sys/bus/dsa/devices/group<m>.<n>/read_buffers_allowed
Date: Dec 10, 2021
KernelVersion: 5.17.0
Description: Indicates max number of read buffers that may be in use at one time
by all engines in the group. See DSA spec v1.2 9.2.18 GRPCFG Read
Buffers Allowed.
What: /sys/bus/dsa/devices/group<m>.<n>/read_buffers_reserved
Date: Dec 10, 2021
KernelVersion: 5.17.0
Description: Indicates the number of Read Buffers reserved for the use of
engines in the group. See DSA spec v1.2 9.2.18 GRPCFG Read Buffers
......@@ -113,3 +113,144 @@ Description:
# echo 0 > /sys/devices/platform/firmware\:zynqmp-firmware/health_status
Users: Xilinx
What: /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
Date: Feb 2022
KernelVersion: 5.18
Contact: "Ronak Jain" <>
This sysfs interface allows user to configure features at
runtime. The user can enable or disable features running at
firmware as well as the user can configure the parameters of
the features at runtime. The supported features are over
temperature and external watchdog. Here, the external watchdog
is completely different than the /dev/watchdog as the external
watchdog is running on the firmware and it is used to monitor
the health of firmware not APU(Linux). Also, the external
watchdog is interfaced outside of the zynqmp soc.
The supported config ids are for the feature configuration is,
1. PM_FEATURE_OVERTEMP_STATUS = 1, the user can enable or
disable the over temperature feature.
2. PM_FEATURE_OVERTEMP_VALUE = 2, the user can configure the
over temperature limit in Degree Celsius.
3. PM_FEATURE_EXTWDT_STATUS = 3, the user can enable or disable
the external watchdog feature.
4. PM_FEATURE_EXTWDT_VALUE = 4, the user can configure the
external watchdog feature.
Select over temperature config ID to enable/disable feature
# echo 1 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
Check over temperature config ID is selected or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
The expected result is 1.
Select over temperature config ID to configure OT limit
# echo 2 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
Check over temperature config ID is selected or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
The expected result is 2.
Select external watchdog config ID to enable/disable feature
# echo 3 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
Check external watchdog config ID is selected or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
The expected result is 3.
Select external watchdog config ID to configure time interval
# echo 4 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
Check external watchdog config ID is selected or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
The expected result is 4.
Users: Xilinx
What: /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Date: Feb 2022
KernelVersion: 5.18
Contact: "Ronak Jain" <>
This sysfs interface allows to configure features at runtime.
The user can enable or disable features running at firmware.
Also, the user can configure the parameters of the features
at runtime. The supported features are over temperature and
external watchdog. Here, the external watchdog is completely
different than the /dev/watchdog as the external watchdog is
running on the firmware and it is used to monitor the health
of firmware not APU(Linux). Also, the external watchdog is
interfaced outside of the zynqmp soc.
By default the features are disabled in the firmware. The user
can enable features by querying appropriate config id of the
The default limit for the over temperature is 90 Degree Celsius.
The default timer interval for the external watchdog is 570ms.
The supported config ids are for the feature configuration is,
1. PM_FEATURE_OVERTEMP_STATUS = 1, the user can enable or
disable the over temperature feature.
2. PM_FEATURE_OVERTEMP_VALUE = 2, the user can configure the
over temperature limit in Degree Celsius.
3. PM_FEATURE_EXTWDT_STATUS = 3, the user can enable or disable
the external watchdog feature.
4. PM_FEATURE_EXTWDT_VALUE = 4, the user can configure the
external watchdog feature.
Enable over temperature feature
# echo 1 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 1 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the over temperature feature is enabled or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 1.
Disable over temperature feature
# echo 1 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 0 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the over temperature feature is disabled or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 0.
Configure over temperature limit to 50 Degree Celsius
# echo 2 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 50 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the over temperature limit is configured or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 50.
Enable external watchdog feature
# echo 3 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 1 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the external watchdog feature is enabled or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 1.
Disable external watchdog feature
# echo 3 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 0 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the external watchdog feature is disabled or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 0.
Configure external watchdog timer interval to 500ms
# echo 4 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_id
# echo 500 > /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
Check whether the external watchdog timer interval is configured or not
# cat /sys/devices/platform/firmware\:zynqmp-firmware/feature_config_value
The expected result is 500.
Users: Xilinx
......@@ -6,7 +6,7 @@ Description:
===================== =======================================
c_chmask capture channel mask
c_srate capture sampling rate
c_srate list of capture sampling rates (comma-separated)
c_ssize capture sample size (bytes)
c_mute_present capture mute control enable
c_volume_present capture volume control enable
......@@ -17,7 +17,7 @@ Description:
c_volume_res capture volume control resolution
(in 1/256 dB)
p_chmask playback channel mask
p_srate playback sampling rate
p_srate list of playback sampling rates (comma-separated)
p_ssize playback sample size (bytes)
p_mute_present playback mute control enable
p_volume_present playback volume control enable
......@@ -27,6 +27,7 @@ Description:
(in 1/256 dB)
p_volume_res playback volume control resolution
(in 1/256 dB)
req_number the number of pre-allocated request
req_number the number of pre-allocated requests
for both capture and playback
function_name name of the interface
===================== =======================================
......@@ -6,8 +6,9 @@ Description:
===================== =======================================
c_chmask capture channel mask
c_srate capture sampling rate
c_srate list of capture sampling rates (comma-separated)
c_ssize capture sample size (bytes)
c_hs_bint capture bInterval for HS/SS (1-4: fixed, 0: auto)
c_sync capture synchronization type
c_mute_present capture mute control enable
......@@ -20,8 +21,9 @@ Description:
(in 1/256 dB)
fb_max maximum extra bandwidth in async mode
p_chmask playback channel mask
p_srate playback sampling rate
p_srate list of playback sampling rates (comma-separated)
p_ssize playback sample size (bytes)
p_hs_bint playback bInterval for HS/SS (1-4: fixed, 0: auto)
p_mute_present playback mute control enable
p_volume_present playback volume control enable
p_volume_min playback volume control min value
......@@ -30,4 +32,7 @@ Description:
(in 1/256 dB)
p_volume_res playback volume control resolution
(in 1/256 dB)
req_number the number of pre-allocated requests
for both capture and playback
function_name name of the interface
===================== =======================================
......@@ -12,24 +12,7 @@ What: /sys/kernel/debug/habanalabs/hl<n>/clk_gate
Date: May 2020
KernelVersion: 5.8
Description: Allow the root user to disable/enable in runtime the clock
gating mechanism in Gaudi. Due to how Gaudi is built, the
clock gating needs to be disabled in order to access the
registers of the TPC and MME engines. This is sometimes needed
during debug by the user and hence the user needs this option.
The user can supply a bitmask value, each bit represents
a different engine to disable/enable its clock gating feature.
The bitmask is composed of 20 bits:
======= ============
0 - 7 DMA channels
8 - 11 MME engines
12 - 19 TPC engines
======= ============
The bit's location of a specific engine can be determined
using (1 << GAUDI_ENGINE_ID_*). GAUDI_ENGINE_ID_* values
are defined in uapi habanalabs.h file in enum gaudi_engine_id
Description: This setting is now deprecated as clock gating is handled solely by the f/w
What: /sys/kernel/debug/habanalabs/hl<n>/command_buffers
Date: Jan 2019
......@@ -155,6 +138,13 @@ Description: Triggers an I2C transaction that is generated by the device's
CPU. Writing to this file generates a write transaction while