UbuntuUpdates.org

Package "linux-headers-7.0.0-31"

This package belongs to a PPA: Canonical Kernel Team

Name: linux-headers-7.0.0-31

Description:

Header files related to Linux kernel version 7.0.0

Latest version: 7.0.0-31.31
Release: resolute (26.04)
Level: base
Repository: main
Head package: linux

Links


Download "linux-headers-7.0.0-31"


Other versions of "linux-headers-7.0.0-31" in Resolute

No other version of this package is available in the Resolute release.

Changelog

Version: 7.0.0-31.31 2026-08-01 07:10:19 UTC

 linux (7.0.0-31.31) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-31.31 -proposed tracker (LP: #2162413)
 .
   * Backport: "firmware: arm_ffa: Respect firmware advertised RX/TX buffer
     size limits" (LP: #2162012)
     - firmware: arm_ffa: Respect firmware advertised RX/TX buffer size limits
 .
   * Backlight regression (LP: #2161309)
     - Revert "drm/i915/backlight: Remove try_vesa_interface"
 .
   * Resolute real-time patchset: 7.0.1-rt2 (LP: #2161757)
     - SAUCE: Reapply "serial: 8250: Switch to nbcon console"
     - SAUCE: Reapply "serial: 8250: Revert "drop lockdep annotation from
       serial8250_clear_IER()""
     - Real-time patchset 7.0.1-rt2
 .
   * Delta_Ubuntu24.04_Ubuntu (Waston)_Suspend(S3) Stress Test Fail when the
     A400 is on by remote controller . (LP: #2161385)
     - SAUCE: drm/amd/display: Tear down dangling pipe on boot to fix s0i3
 .
   * Camera output is vague and color is abnormal (LP: #2156972)
     - media: intel/ipu6: Improve DWC PHY HSFREQRANGE band selection for
       overlapping ranges
 .
   * [SRU] Fix incorrect boot_display reporting on multi-GPU systems
     (LP: #2161036)
     - x86/video: Only fall back to vga_default_device() without screen info
 .
   * Backport: complete perf_allow_* trio and use in drm/xe (LP: #2160654)
     - perf/core: out-of-line and export perf_allow_cpu/tracepoint()
     - drm/xe: gate observation streams with perf_allow_cpu()
 .
   * Fix noise of audio output on Dell Pro QCM1255 after reboot (LP: #2160666)
     - ALSA: hda/realtek - Fixed Headphone noise issue for Dell QCM1255
 .
   * Drop DEP-8 tests from kernel packages (LP: #2160302)
     - [Packaging] Drop DEP-8 tests from kernel source
 .
   * The screen will show garbages by running glxgears fullscreen.
     (LP: #2158605)
     - SAUCE: drm/xe/display: skip FORCE_WC and vm_bound check for external
       dma-bufs
 .
   * Audio shows Dummy Output on systems with Cirrus Logic cs42l43 codec
     (LP: #2156313)
     - ASoC: sdw_utils: fix missing component_name for cs42l43 part_id 0x2A3B
 .
   * TPM2 key creation commands time out on some Infineon modules
     (LP: #2158883)
     - tpm: restore timeout for key creation commands
 .
   * Fix Mic Mute LED no function on HP EliteBook (LP: #2158860)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2i Laptops
 .
   * Malformed HV_LINUX_VENDOR_ID breaks VM Availability Metric on Azure
     (LP: #2158462)
     - SAUCE: (no-up) hv: Fix supplied vendor ID
 .
   * [SRU]Enable Realtek ALC287 + Cirrus CS35L56 Audio for Lenovo Yoga Pro 7
     (LP: #2156867)
     - ALSA: hda/realtek: ALC269 fixup for Lenovo Yoga Pro 7 15ASH111 audio
     - ALSA: hda/realtek:ALC269 fixup for Yoga Pro 7 15ASH11 mic mute LED
     - ASoC: amd: acp: Add DMI quirk for Lenovo Yoga Pro 7 15ASH11
 .
   * iwlwifi failed to handle oversized command 0xC05 (LP: #2152688)
     - wifi: iwlwifi: mld: add support for iwl_mcc_allowed_ap_type_cmd v2
     - wifi: iwlwifi: mvm: avoid oversized UATS command copy
 .
   * MT7925 wifi is hard blocked on Dell's machine (LP: #2158229)
     - SAUCE: Revert "wifi: mt76: mt7925: add rfkill_poll for hardware rfkill"
 .
   * Resolute update: upstream stable patchset 2026-07-21 (LP: #2161462)
     - rust: str: use the "kernel vertical" imports style
     - rust: str: clean unused import for Rust >= 1.98
     - userfaultfd: gate must_wait writability check on pte_present()
     - device property: initialize the remaining fields of fwnode_handle in
       fwnode_init()
     - f2fs: fix potential deadlock in f2fs_balance_fs()
     - f2fs: fix potential deadlock in gc_merge path of f2fs_balance_fs()
     - f2fs: fix listxattr handling of corrupted xattr entries
     - net/sched: dualpi2: fix GSO backlog accounting
     - mm/khugepaged: write all dirty file folios when collapsing
     - slab: recognize @GFP parameter as optional in kernel-doc
     - perf trace beauty fcntl: Fix build with older kernel headers
     - KVM: x86: Move update_cr8_intercept() to lapic.c
     - KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest
       mode
     - KVM: x86: Unconditionally recompute CR8 intercept on PPR update
     - ACPI: CPPC: Suppress UBSAN warning caused by field misuse
     - ACPI: NFIT: core: Fix possible NULL pointer dereference
     - platform/x86: intel-hid: Protect ACPI notify handler against recursion
     - LoongArch: Add PIO for early access before ACPI PCI root register
     - rust: cpufreq: clean new `clippy::map_or_identity` lint for Rust 1.98.0
     - rust: block: fix GenDisk cleanup paths
     - rust: doctest: fix incorrect pattern in replacement
     - rust: Kbuild: set frame-pointer llvm module flag for
       CONFIG_FRAME_POINTER
     - futex/requeue: Revert "Prevent NULL pointer dereference in
       remove_waiter() on self-deadlock""
     - perf/core: Detach event groups during remove_on_exec
     - rust: kasan: KASAN+RUST requires clang
     - fscrypt: Replace mk_users keyring with simple list
     - usb: gadget: function: rndis: add length check to response query
     - usb: gadget: function: rndis: add length check for header
     - iio: accel: bmc150: clamp the device-reported FIFO frame count
     - iio: accel: kxsd9: fix runtime PM imbalance on write_raw() error
     - iio: adc: ad7380: select REGMAP
     - iio: adc: ad7768-1: Select GPIOLIB
     - iio: adc: ad7779: add missing 'select IIO_TRIGGERED_BUFFER' to Kconfig
     - iio: adc: ad_sigma_delta: fix clear_pending_event for registerless
       devices
     - iio: adc: ad_sigma_delta: fix CS held asserted and state leaks
     - iio: adc: lpc32xx: Initialize completion before requesting IRQ
     - iio: adc: spear: Initialize completion before requesting IRQ
     - iio: adc: ti-ads1119: fix PM reference leak in buffer preenable
     - iio: adc: ti-ads124s08: Return reset GPIO lookup errors
     - iio: backend: fix uninitialized data in debugfs
     - iio: chemical: scd30: Cleanup initializations and fix sign-extension bu

Source diff to previous version
2161309 Backlight regression
2161757 Resolute real-time patchset: 7.0.1-rt2
2161385 Delta_Ubuntu24.04_Ubuntu (Waston)_Suspend(S3) Stress Test Fail when the A400 is on by remote controller .
2160654 Backport: complete perf_allow_* trio and use in drm/xe
2160666 Fix noise of audio output on Dell Pro QCM1255 after reboot
2160302 Drop DEP-8 tests from kernel packages
2158605 The screen will show garbages by running glxgears fullscreen.
2156313 Audio shows Dummy Output on systems with Cirrus Logic cs42l43 codec
2158883 TPM2 key creation commands time out on some Infineon modules
2158860 Fix Mic Mute LED no function on HP EliteBook
2158462 Malformed HV_LINUX_VENDOR_ID breaks VM Availability Metric on Azure
2161462 Resolute update: upstream stable patchset 2026-07-21
2160733 Resolute update: upstream stable patchset 2026-07-15
2158815 Resolute update: v7.0.14 upstream stable release
2158003 Resolute update: v7.0.13 upstream stable release
1786013 Packaging resync
CVE-2026-53361 In the Linux kernel, the following vulnerability has been resolved: af_unix: Set gc_in_progress to true in unix_gc(). Igor Ushakov reported that un
CVE-2026-53362 In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(),
CVE-2026-53325 In the Linux kernel, the following vulnerability has been resolved: agp/amd64: Fix broken error propagation in agp_amd64_probe() A NULL pointer der
CVE-2026-52938 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths bpf_se
CVE-2025-10263 Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Corte
CVE-2026-46300 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() c
CVE-2026-64531 In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: reject oversized nested action attrs Open vSwitch stores gene
CVE-2026-46331 In the Linux kernel, the following vulnerability has been resolved: net/sched: fix pedit partial COW leading to page cache corruption tcf_pedit_act
CVE-2026-53212 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix use-after-free on object destroy nft_tunnel_obj_dest
CVE-2026-53359 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected role Commit 0cb2af
CVE-2026-53131 In the Linux kernel, the following vulnerability has been resolved: netfilter: require Ethernet MAC header before using eth_hdr() `ip6t_eui64`, `xt
CVE-2026-53151 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix the ACK parser to extract the SACK table for parsing Fix modificatio
CVE-2026-53175 In the Linux kernel, the following vulnerability has been resolved: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush On netns t
CVE-2026-53176 In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband
CVE-2026-53186 In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() cop
CVE-2026-53215 In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: refill RX buffers before XDP or skb use The RX error path returns t
CVE-2026-53216 In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: limit XDP frame size to the RX buffer mvpp2 has short and long BM p
CVE-2026-53221 In the Linux kernel, the following vulnerability has been resolved: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() In vti6_tnl_lookup(
CVE-2026-53224 In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded INIT chunk and address list lengths in cookie sctp_unpa
CVE-2026-53225 In the Linux kernel, the following vulnerability has been resolved: sctp: fix uninit-value in __sctp_rcv_asconf_lookup() __sctp_rcv_asconf_lookup()
CVE-2026-53228 In the Linux kernel, the following vulnerability has been resolved: ipv6: sit: reload inner IPv6 header after GSO offloads ipip6_tunnel_xmit() cach
CVE-2026-52924 In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only
CVE-2026-53246 In the Linux kernel, the following vulnerability has been resolved: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing When a l
CVE-2026-53247 In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown mtk_fre
CVE-2026-53260 In the Linux kernel, the following vulnerability has been resolved: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). syzbot re

Version: 7.0.0-28.28 2026-06-21 03:09:32 UTC

 linux (7.0.0-28.28) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-28.28 -proposed tracker (LP: #2157520)
 .
   * Backport ASoC SDCA, AMD SoundWire, and RT722 audio fixes (LP: #2154418)
     - ASoC: amd: acp-sdw-legacy: rename the dmic component name
     - SAUCE: ASoC: rt722-sdca: add FU06 Playback Switch for speaker mute
       control
 .
   * MIPI camera of a BBG809N3A_B sensor SKU of the DELL Pro 14 Premium PA14260
     renders upside-down (LP: #2155837)
     - SAUCE: media: ipu-bridge: correct platform handling for DELL Pro 14
       Premium PA14260
 .
   * resolute ubuntu_kernel_selftests:seccomp_build test compilation issue
     (LP: #2154174)
     - SAUCE: selftests/seccomp fix compilation issue for amd64
 .
   * [Ubuntu 26.04] Severe Performance Degradation on kernel 7.0.0-15
     (LP: #2154748)
     - s390: Remove GENERIC_LOCKBREAK Kconfig option
     - UBUNTU [Config]: Remove GENERIC_LOCKBREAK in s390x
 .
   * Fix no sound output device on Dell GhostRider PTL no camera SKU
     (LP: #2156559)
     - ASoC: Intel: sof_sdw: append dai type to dai link name unconditionally
 .
   * Fix no audio from right built-in speaker on HP ZBook with TAS2781
     amplifier (LP: #2156556)
     - ALSA: hda/tas2781: Fix device-0 reset issue and handle -EXDEV in block
       data processing
 .
   * Installer fails internally with a RSync error due to page fault
     (LP: #2150640)
     - ovl: keep err zero after successful ovl_cache_get()
 .
   * Internal display black screen on Intel Lunar Lake with eDP panel
     (LP: #2156312)
     - drm/i915/alpm: Allow LOBF only for platform that have Always on VRR TG
 .
   * Thunderbolt DP tunnel torn down during boot with LUKS Full Disk Encryption
     (LP: #2155096)
     - SAUCE: thunderbolt: Defer DP tunnel teardown until display driver is
       ready
 .
   * watchdog: lenovo_se10_wdt: Add SE10 Gen 2 support (LP: #2154715)
     - watchdog: lenovo_se10_wdt: Add support for SE10 Gen 2 platform
     - watchdog: lenovo_se10_wdt: Fix use-after-free and resource leak risk
 .
   * [Ubuntu 26.04] KVM: IBM Test Accelerator for Z (TAZ) not working properly
     (LP: #2153159)
     - KVM: s390: only deliver service interrupt with payload
     - KVM: s390: vsie: Allow non-zarch guests
     - KVM: s390: vsie: Disable some bits when in ESA mode
     - KVM: s390: vsie: Accommodate ESA prefix pages
     - KVM: s390: Add KVM capability for ESA mode guests
 .
   * ubuntu_bpf failed to build on Resolute (error: expected ‘:’, ‘,’, ‘;’, ‘}’
     or ‘__attribute__’ before ‘__counted_by’) (LP: #2150071)
     - tools/headers: Regenerate stddef.h to fix BPF selftests
 .
   * ubuntu_bpf: FTBFS with clang 23 / gcc 15 (LP: #2154343)
     - selftests/bpf: Fix const qualifier warning in fexit_bpf2bpf.c
 .
   * ALSA: hda/tas2781 Audio Fix for the front-right speacker (LP: #2149770)
     - ALSA: hda/tas2781: Fix sound abnormal issue on some SPI device
 .
   * Fix bad audio record quality when volume above 50% on Framework PTL
     (LP: #2153155)
     - ALSA: hda/realtek: fix mic boost on Framework PTL
 .
   * Patchset for TUXEDO devices (LP: #2152570)
     - drm/i915/vbt: Add edp pipe joiner enable/disable bits
     - drm/i915/dp: Avoid joiner for eDP if not enabled in VBT
     - drm/amd/display: Add Idle state manager(ISM)
     - drm/i915/backlight: Remove try_vesa_interface
     - drm/i915/backlight: Use intel_panel variable instead of intel_connector
     - drm/i915/backlight: Take luminance_set into account for VESA backlight
     - drm/i915/backlight: Check luminance_set when disabling PWM via AUX VESA
       backlight
     - drm/i915/backlight: Short circuit intel_dp_aux_supports_hdr_backlight
     - drm/i915/backlight: Update debug log during backlight setup
     - drm/i915/backlight: Check if VESA backlight is possible
     - drm/i915/backlight: Provide clear description on how backlight level is
       controlled
     - drm/i915/backlight: Fix VESA backlight possible check condition
 .
   * Resolute update: v7.0.12 upstream stable release (LP: #2156636)
     - Input: usbtouchscreen - clamp NEXIO data_len/x_len to URB buffer size
     - ACPI: button: Fix ACPI GPE handler leak during removal
     - ACPI: button: Enable wakeup GPEs for ACPI buttons at probe time
     - xfrm: move policy_bydst RCU sync from per-netns .exit to .pre_exit
     - net/sched: sch_sfb: Replace direct dequeue call with peek and
       qdisc_dequeue_peeked
     - bcache: fix uninitialized closure object
     - nfc: llcp: Fix use-after-free in llcp_sock_release()
     - nfc: llcp: Fix use-after-free race in nfc_llcp_recv_cc()
     - xfrm: Check for underflow in xfrm_state_mtu
     - nfc: nxp-nci: i2c: use rising-edge IRQ on ACPI systems
     - tools/bootconfig: Fix buf leaks in apply_xbc
     - HID: remove duplicate hid_warn_ratelimited definition
     - kunit: fix use-after-free in debugfs when using kunit.filter
     - accel/rocket: fix UAF via dangling GEM handle in create_bo
     - netfilter: synproxy: refresh tcphdr after skb_ensure_writable
     - netfilter: xt_cpu: prefer raw_smp_processor_id
     - netfilter: ebtables: fix OOB read in compat_mtw_from_user
     - netfilter: nf_tables: fix dst corruption in same register operation
     - vsock: keep poll shutdown state consistent
     - net: netlink: fix sending unassigned nsid after assigned one
     - net: netlink: don't set nsid on local notifications
     - net/smc: Do not re-initialize smc hashtables
     - net/iucv: fix locking in .getsockopt
     - scsi: core: Run queues for all non-SDEV_DEL devices from
       scsi_run_host_queues
     - scsi: scsi_debug: Add missing newline in scsi_debug_device_reset()
     - ipv4: free net->ipv4.sysctl_local_reserved_ports after
       unregister_net_sysctl_table()
     - ALSA: hda: cs35l56: Fix system name string leaks
     - ALSA: pcm: oss: Fix setup list UAF on proc write error
     - ASoC: Intel: bytcht_es8316: Fix MCLK leak on init errors
     - net/mlx5: HWS: Reject

Source diff to previous version
2154174 resolute ubuntu_kernel_selftests:seccomp_build test compilation issue
2154748 [Ubuntu 26.04] Severe Performance Degradation on kernel 7.0.0-15
2156559 Fix no sound output device on Dell GhostRider PTL no camera SKU
2156556 Fix no audio from right built-in speaker on HP ZBook with TAS2781 amplifier
2150640 Installer fails internally with a RSync error due to page fault
2156312 Internal display black screen on Intel Lunar Lake with eDP panel
2155096 Thunderbolt DP tunnel torn down during boot with LUKS Full Disk Encryption
2154715 watchdog: lenovo_se10_wdt: Add SE10 Gen 2 support
2153159 [Ubuntu 26.04] KVM: IBM Test Accelerator for Z (TAZ) not working properly
2150071 ubuntu_bpf failed to build on Resolute (error: expected \u2018:\u2019, \u2018,\u2019, \u2018;\u2019, \u2018}\u2019 or \u2018__attribute__\u2019 befor
2154343 ubuntu_bpf: FTBFS with clang 23 / gcc 15
2149770 ALSA: hda/tas2781 Audio Fix for the front-right speacker
2153155 Fix bad audio record quality when volume above 50% on Framework PTL
2152570 Patchset for TUXEDO devices
2156636 Resolute update: v7.0.12 upstream stable release
2156390 Resolute update: v7.0.11 upstream stable release
2156385 Resolute update: v7.0.10 upstream stable release
2156006 Resolute update: v7.0.9 upstream stable release
2155988 Resolute update: v7.0.7 upstream stable release
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
CVE-2026-46318 In the Linux kernel, the following vulnerability has been resolved: Revert "mm/hugetlbfs: update hugetlbfs to use mmap_prepare" This reverts commit
CVE-2026-46322 In the Linux kernel, the following vulnerability has been resolved: tun: free page on build_skb failure in tun_xdp_one() When build_skb() fails in
CVE-2026-46320 In the Linux kernel, the following vulnerability has been resolved: tap: free page on error paths in tap_get_user_xdp() tap_get_user_xdp() rejects
CVE-2026-46321 In the Linux kernel, the following vulnerability has been resolved: tun: free page on short-frame rejection in tun_xdp_one() tun_xdp_one() returns
CVE-2026-46316 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Drop the translation cache reference only for the erased e
CVE-2026-46317 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Reassign nested_mmus array behind mmu_lock kvm->arch.nested_mmus[]
CVE-2026-45846 In the Linux kernel, the following vulnerability has been resolved: bareudp: fix NULL pointer dereference in bareudp_fill_metadata_dst() bareudp_fi
CVE-2026-45845 In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: fix NULL pointer dereference in class dump When a TAPRIO chi
CVE-2026-45844 In the Linux kernel, the following vulnerability has been resolved: netfilter: arp_tables: fix IEEE1394 ARP payload parsing Weiming Shi says: "arp
CVE-2026-46242 In the Linux kernel, the following vulnerability has been resolved: eventpoll: fix ep_remove struct eventpoll / struct file UAF ep_remove() (via ep
CVE-2026-45843 In the Linux kernel, the following vulnerability has been resolved: slip: bound decode() reads against the compressed packet length slhc_uncompress
CVE-2026-45842 In the Linux kernel, the following vulnerability has been resolved: slip: reject VJ receive packets on instances with no rstate array slhc_init() a
CVE-2026-45841 In the Linux kernel, the following vulnerability has been resolved: netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULO nf_osf_match_one
CVE-2026-45840 In the Linux kernel, the following vulnerability has been resolved: openvswitch: cap upcall PID array size and pre-size vport replies The vport net
CVE-2026-45839 In the Linux kernel, the following vulnerability has been resolved: bpf: reject negative CO-RE accessor indices in bpf_core_parse_spec() CO-RE acce
CVE-2026-45838 In the Linux kernel, the following vulnerability has been resolved: bpf: fix end-of-list detection in cgroup_storage_get_next_key() list_next_entry
CVE-2026-46214 In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix accept queue count leak on transport mismatch virtio_transpor
CVE-2026-46207 In the Linux kernel, the following vulnerability has been resolved: vsock/virtio: fix empty payload in tap skb for non-linear buffers For non-linea
CVE-2026-46234 In the Linux kernel, the following vulnerability has been resolved: vsock: fix buffer size clamping order In vsock_update_buffer_size(), the buffer
CVE-2026-46223 In the Linux kernel, the following vulnerability has been resolved: cgroup: Defer css percpu_ref kill on rmdir until cgroup is depopulated A chain
CVE-2026-46221 In the Linux kernel, the following vulnerability has been resolved: EDAC/versalnet: Fix device name memory leak The device name allocated via kzall
CVE-2026-46231 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: put backbone reference on failed claim hash insert When batadv
CVE-2026-46233 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: only purge non-released claims When batadv_bla_purge_claims()
CVE-2026-46212 In the Linux kernel, the following vulnerability has been resolved: batman-adv: bla: prevent use-after-free when deleting claims When batadv_bla_de
CVE-2026-46238 In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop caching unowned originator pointers in BAT IV BAT IV keeps the
CVE-2026-46208 In the Linux kernel, the following vulnerability has been resolved: batman-adv: stop tp_meter sessions during mesh teardown TP meter sessions remai
CVE-2026-46206 In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject new tp_meter sessions during teardown Prevent tp_meter from
CVE-2026-46198 In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix integer overflow on buff_pos Fixing an integer overflow present
CVE-2026-46227 In the Linux kernel, the following vulnerability has been resolved: sctp: revalidate list cursor after sctp_sendmsg_to_asoc() in SCTP_SENDALL The S
CVE-2026-46220 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/sdma4: replace BUG_ON with WARN_ON in fence emission sdma_v4_0_ring_
CVE-2026-46215 In the Linux kernel, the following vulnerability has been resolved: drm: Set old handle to NULL before prime swap in change_handle There was a pote
CVE-2026-46201 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix dma-buf attachment leak in xe_gem_prime_import() When xe_dma_buf_in
CVE-2026-46224 In the Linux kernel, the following vulnerability has been resolved: drm/xe: Fix bo leak in xe_dma_buf_init_obj() on allocation failure When drm_gpu
CVE-2026-46197 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: validate SVM ioctl nattr against buffer size Validate nattr field a
CVE-2026-46209 In the Linux kernel, the following vulnerability has been resolved: drm/gem: Fix inconsistent plane dimension calculation in drm_gem_fb_init_with_fu
CVE-2026-46230 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn3: Prevent OOB reads when parsing dec msg Check bounds against th
CVE-2026-46199 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB reads when parsing dec msg Check bounds against th
CVE-2026-46204 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn4: Prevent OOB reads when parsing IB Rewrite the IB parsing to us
CVE-2026-46218 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add bounds checking to ib_{get,set}_value The uvd/vce/vcn code acce
CVE-2026-46229 In the Linux kernel, the following vulnerability has been resolved: drm/amdkfd: Clear VRAM on allocation to prevent stale data exposure KFD VRAM al
CVE-2026-46211 In the Linux kernel, the following vulnerability has been resolved: drm/msm/gem: fix error handling in msm_ioctl_gem_info_get_metadata() msm_ioctl_
CVE-2026-46203 In the Linux kernel, the following vulnerability has been resolved: spi: cadence-quadspi: fix unclocked access on unbind Make sure that the control
CVE-2026-46219 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on unbind The state machine work is scheduled
CVE-2026-46200 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix controller deregistration Make sure to deregister the control
CVE-2026-46241 In the Linux kernel, the following vulnerability has been resolved: spi: mpc52xx: fix use-after-free on registration failure Make sure to disable a
CVE-2026-46225 In the Linux kernel, the following vulnerability has been resolved: spi: rspi: fix controller deregistration Make sure to deregister the controller
CVE-2026-46226 In the Linux kernel, the following vulnerability has been resolved: spi: fsl: fix controller deregistration Make sure to deregister the controller
CVE-2026-46228 In the Linux kernel, the following vulnerability has been resolved: spi: ch341: fix devres lifetime USB drivers bind to USB interfaces and any devi
CVE-2026-46216 In the Linux kernel, the following vulnerability has been resolved: drm/xe/hdcp: Add NULL check for media_gt in intel_hdcp_gsc_check_status() When
CVE-2026-46210 In the Linux kernel, the following vulnerability has been resolved: media: iris: fix use-after-free of fmt_src during MBPF check During concurrency
CVE-2026-46240 In the Linux kernel, the following vulnerability has been resolved: media: iris: Fix use-after-free in iris_release_internal_buffers() The recent c
CVE-2026-46235 In the Linux kernel, the following vulnerability has been resolved: media: saa7164: add ioremap return checks and cleanups Add checks for ioremap r
CVE-2026-46222 In the Linux kernel, the following vulnerability has been resolved: media: rockchip: rkcif: Add missing MUST_CONNECT flag to pads The pads missed c
CVE-2026-46239 In the Linux kernel, the following vulnerability has been resolved: media: i2c: ov5647: Fix runtime PM refcount leak in s_ctrl Three control cases
CVE-2026-46236 In the Linux kernel, the following vulnerability has been resolved: media: rc: xbox_remote: heed DMA restrictions The buffer for IO must not be par
CVE-2026-46205 In the Linux kernel, the following vulnerability has been resolved: staging: media: atomisp: Disallow all private IOCTLs Disallow all private IOCTL
CVE-2026-46202 In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: run inactivity autodim from workqueues The autodim code in hi
CVE-2026-46213 In the Linux kernel, the following vulnerability has been resolved: HID: appletb-kbd: fix UAF in inactivity-timer cleanup path Commit 38224c472a03
CVE-2026-46232 In the Linux kernel, the following vulnerability has been resolved: HID: playstation: Clamp num_touch_reports A device would never lie about the nu
CVE-2026-43490 In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate inherited ACE SID length smb_inherit_dacl() walks the parent di
CVE-2026-46174 In the Linux kernel, the following vulnerability has been resolved: x86/CPU/AMD: Prevent improper isolation of shared resources in Zen2's op cache
CVE-2026-46110 In the Linux kernel, the following vulnerability has been resolved: net: stmmac: Prevent NULL deref when RX memory exhausted The CPU receives frame
CVE-2026-46153 In the Linux kernel, the following vulnerability has been resolved: 8021q: delete cleared egress QoS mappings vlan_dev_set_egress_priority() curren
CVE-2026-46169 In the Linux kernel, the following vulnerability has been resolved: hfsplus: fix uninit-value by validating catalog record size Syzbot reported a K
CVE-2026-46188 In the Linux kernel, the following vulnerability has been resolved: octeon_ep_vf: add NULL check for napi_build_skb() napi_build_skb() can return N
CVE-2026-45837 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in arena_vm_close on fork arena_vm_open() only bumps vm
CVE-2026-46156 In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix potential ADE in loongson_gpu_fixup_dma_hang() The switch case i
CVE-2026-46147 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix pin leak and publication ordering in __pkvm_init_vcpu() Two bug
CVE-2026-46175 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix fsck inconsistency caused by FGGC of node block During FGGC node bloc
CVE-2026-46194 In the Linux kernel, the following vulnerability has been resolved: f2fs: fix node_cnt race between extent node destroy and writeback f2fs_destroy_
CVE-2026-46170 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: free sk if last When an ADD_ADDR is retransmitted, the
CVE-2026-46158 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: always decrease sk refcount When an ADD_ADDR is retran
CVE-2026-46168 In the Linux kernel, the following vulnerability has been resolved: mptcp: fix scheduling with atomic in timestamp sockopt Using lock_sock_fast() (
CVE-2026-46189 In the Linux kernel, the following vulnerability has been resolved: RDMA/vmw_pvrdma: Fix double free on pvrdma_alloc_ucontext() error path Sashiko
CVE-2026-46133 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject unknown opcodes before ICRC processing Even after applying com
CVE-2026-46114 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Reject non-8-byte ATOMIC_WRITE payloads atomic_write_reply() at drive
CVE-2026-46127 In the Linux kernel, the following vulnerability has been resolved: RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp() Sashiko
CVE-2026-46176 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix error path fall-through in mlx5_ib_dev_res_srq_init() mlx5_ib_de
CVE-2026-46178 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix resource leak on error in mlx4_ib_create_srq() Sashiko points ou
CVE-2026-46181 In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Fix mis-use of RCU in mlx4_srq_event() Sashiko points out the radix_
CVE-2026-46145 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Validate rx_hash_key_len Sashiko points out that rx_hash_key_len com
CVE-2026-46117 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Remove user triggerable WARN_ON() in mana_ib_create_qp_rss() Sashiko
CVE-2026-46126 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Fix mana_destroy_wq_obj() cleanup in mana_ib_create_qp_rss() Sashiko
CVE-2026-46144 In the Linux kernel, the following vulnerability has been resolved: RDMA/mana: Fix error unwind in mana_ib_create_qp_rss() Sashiko points out that
CVE-2026-46141 In the Linux kernel, the following vulnerability has been resolved: powerpc/xive: fix kmemleak caused by incorrect chip_data lookup The kmemleak re
CVE-2026-46183 In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect path kfree() with damon_sysfs_lock damon_sysfs_
CVE-2026-46121 In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs-schemes: protect memcg_path kfree() with damon_sysfs_lock Patch
CVE-2026-46131 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: check for nEPT/nNPT in slow flush hypercalls Checking is_guest_mode(v
CVE-2026-46139 In the Linux kernel, the following vulnerability has been resolved: smb: client: use kzalloc to zero-initialize security descriptor buffer Commit 6
CVE-2026-46105 In the Linux kernel, the following vulnerability has been resolved: scsi: mpt3sas: Limit NVMe request size to 2 MiB The HBA firmware reports NVMe M
CVE-2026-46171 In the Linux kernel, the following vulnerability has been resolved: riscv: kvm: fix vector context allocation leak When the second kzalloc (host_co
CVE-2026-46112 In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix unlocked call to hns_roce_qp_remove() Sashiko points out that hns
CVE-2026-46165 In the Linux kernel, the following vulnerability has been resolved: openvswitch: vport: fix self-deadlock on release of tunnel ports vports are use
CVE-2026-46161 In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix divide-by-zero in setup_geo() with zero far_copies setup_geo() e
CVE-2026-43492 In the Linux kernel, the following vulnerability has been resolved: lib/crypto: mpi: Fix integer underflow in mpi_read_raw_from_sgl() Yiming report
CVE-2026-46124 In the Linux kernel, the following vulnerability has been resolved: isofs: validate block number from NFS file handle in isofs_export_iget isofs_fh
CVE-2026-46130 In the Linux kernel, the following vulnerability has been resolved: dm-verity-fec: fix reading parity bytes split across blocks (take 3) fec_decode
CVE-2026-46106 In the Linux kernel, the following vulnerability has been resolved: eventfs: Hold eventfs_mutex and SRCU when remount walks events Commit 340f0c706
CVE-2026-46107 In the Linux kernel, the following vulnerability has been resolved: dm-thin: fix metadata refcount underflow There's a bug in dm-thin in the functi
CVE-2026-46160 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix missing last_unlink_trans update when removing a directory When remo
CVE-2026-46164 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info_sub_group() error path When kobject
CVE-2026-46129 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free in create_space_info() error path When kobject_init_and_
CVE-2026-46159 In the Linux kernel, the following vulnerability has been resolved: btrfs: fix btrfs_ioctl_space_info() slot_count TOCTOU which can lead to info-lea
CVE-2026-46143 In the Linux kernel, the following vulnerability has been resolved: ASoC: qcom: q6apm-lpass-dai: Fix multiple graph opens As prepare can be called
CVE-2026-46148 In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: control built-in cs manually The coreQSPI IP supports
CVE-2026-46192 In the Linux kernel, the following vulnerability has been resolved: spi: microchip-core-qspi: don't attempt to transmit during emulated read-only du
CVE-2026-46162 In the Linux kernel, the following vulnerability has been resolved: ice: fix double free in ice_sf_eth_activate() error path When auxiliary_device_
CVE-2026-46273 In the Linux kernel, the following vulnerability has been resolved: ibmveth: Disable GSO for packets with small MSS Some physical adapters on Power
CVE-2026-46191 In the Linux kernel, the following vulnerability has been resolved: fbcon: Avoid OOB font access if console rotation fails Clear the font buffer if
CVE-2026-46134 In the Linux kernel, the following vulnerability has been resolved: platform/chrome: cros_ec_typec: Init mutex in Thunderbolt registration cros_typ
CVE-2026-43495 In the Linux kernel, the following vulnerability has been resolved: net: wwan: t7xx: validate port_count against message length in t7xx_port_enum_ms
CVE-2026-43502 In the Linux kernel, the following vulnerability has been resolved: net/rds: handle zerocopy send cleanup before the message is queued A zerocopy s
CVE-2026-46120 In the Linux kernel, the following vulnerability has been resolved: ip6_gre: Use cached t->net in ip6erspan_changelink(). After commit 5e72ce3e3980
CVE-2026-46142 In the Linux kernel, the following vulnerability has been resolved: net: libwx: fix VF illegal register access Register WX_CFG_PORT_ST is a PF rest
CVE-2026-46118 In the Linux kernel, the following vulnerability has been resolved: pseries/papr-hvpipe: Fix null ptr deref in papr_hvpipe_dev_create_handle() comm
CVE-2026-46182 In the Linux kernel, the following vulnerability has been resolved: pseries/papr-hvpipe: Prevent kernel stack memory leak to userspace The hdr vari
CVE-2026-46184 In the Linux kernel, the following vulnerability has been resolved: sound: ua101: fix division by zero at probe Add a missing sanity check for bNrC
CVE-2026-43498 In the Linux kernel, the following vulnerability has been resolved: accel/ivpu: Disallow re-exporting imported GEM objects Prevent re-exporting of
CVE-2026-46132 In the Linux kernel, the following vulnerability has been resolved: net: rtnetlink: zero ifla_vf_broadcast to avoid stack infoleak in rtnl_fill_vfin
CVE-2026-46190 In the Linux kernel, the following vulnerability has been resolved: mtd: spi-nor: debugfs: fix out-of-bounds read in spi_nor_params_show() Sashiko
CVE-2026-46150 In the Linux kernel, the following vulnerability has been resolved: fanotify: fix false positive on permission events fsnotify_get_mark_safe() may
CVE-2026-45836 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_get_sndtimeo_cb() Add the sa
CVE-2026-45834 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_state_change_cb() Add the sa
CVE-2026-45835 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix null-ptr-deref in l2cap_sock_new_connection_cb() Add the
CVE-2026-46138 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix OOB read and infinite loop in hci_le_create_big_comple
CVE-2026-46111 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: fix potential UAF in create_big_sync Add hci_conn_valid()
CVE-2026-46140 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btmtk: validate WMT event SKB length before struct access btmtk_usb_
CVE-2026-46186 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: validate rx pkt_type header length virtbt_rx_handle() rea
CVE-2026-46123 In the Linux kernel, the following vulnerability has been resolved: Bluetooth: virtio_bt: clamp rx length before skb_put virtbt_rx_work() calls skb
CVE-2026-46104 In the Linux kernel, the following vulnerability has been resolved: selinux: use sk blob accessor in socket permission helpers SELinux socket state
CVE-2026-46193 In the Linux kernel, the following vulnerability has been resolved: xfrm: ah: account for ESN high bits in async callbacks AH allocates its tempora
CVE-2026-46172 In the Linux kernel, the following vulnerability has been resolved: ipv6: xfrm6: release dst on error in xfrm6_rcv_encap() xfrm6_rcv_encap() perfor
CVE-2026-46116 In the Linux kernel, the following vulnerability has been resolved: xfrm: defensively unhash xfrm_state lists in __xfrm_state_delete KASAN reproduc
CVE-2026-46154 In the Linux kernel, the following vulnerability has been resolved: sched_ext: Read scx_root under scx_cgroup_ops_rwsem in cgroup setters scx_group
CVE-2026-46157 In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: oss: Fix data race at accessing runtime.oss.trigger Currently the ru
CVE-2026-46109 In the Linux kernel, the following vulnerability has been resolved: usb: ulpi: fix memory leak on ulpi_register() error paths Commit 01af542392b5 (
CVE-2026-46146 In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Avoid potential endless loop in convert_chmap_v3() The convert
CVE-2026-46167 In the Linux kernel, the following vulnerability has been resolved: usb: usblp: fix uninitialized heap leak via LPGETSTATUS ioctl Just like in a pr
CVE-2026-46151 In the Linux kernel, the following vulnerability has been resolved: usb: usblp: fix heap leak in IEEE 1284 device ID via short response usblp_ctrl_
CVE-2026-46180 In the Linux kernel, the following vulnerability has been resolved: wifi: brcmfmac: Fix potential use-after-free issue when stopping watchdog task
CVE-2026-46122 In the Linux kernel, the following vulnerability has been resolved: wifi: b43: enforce bounds check on firmware key index in b43_rx() The firmware-
CVE-2026-46125 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep fails If connection preparati
CVE-2026-46166 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: use safe list iteration in radar detect work The call to ieee80
CVE-2026-46187 In the Linux kernel, the following vulnerability has been resolved: wifi: rsi: fix kthread lifetime race between self-exit and external-stop RSI dr
CVE-2026-46152 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: drop stray 'static' from fast-RX rx_result ieee80211_invoke_fas
CVE-2026-46163 In the Linux kernel, the following vulnerability has been resolved: wifi: b43legacy: enforce bounds check on firmware key index in RX path Same fix
CVE-2026-46136 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921: fix a potential clc buffer length underflow The buf_len is
CVE-2026-46173 In the Linux kernel, the following vulnerability has been resolved: exit: prevent preemption of oopsing TASK_DEAD task When an already-exiting task
CVE-2026-43496 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_red: Replace direct dequeue call with peek and qdisc_dequeue_peek
CVE-2026-46113 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected GFN The shadow MMU
CVE-2026-46179 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Don't allow pointer operations on unconfigured streams When reportin
CVE-2026-46196 In the Linux kernel, the following vulnerability has been resolved: tracepoint: balance regfunc() on func_add() failure in tracepoint_add_func() Wh
CVE-2026-43497 In the Linux kernel, the following vulnerability has been resolved: fbdev: udlfb: add vm_ops to dlfb_ops_mmap to prevent use-after-free dlfb_ops_mm
CVE-2026-46108 In the Linux kernel, the following vulnerability has been resolved: ipmi:si: Return state to normal if message allocation fails There were places w
CVE-2026-46128 In the Linux kernel, the following vulnerability has been resolved: ipmi: Check event message buffer response for bad data The event message buffer
CVE-2026-46177 In the Linux kernel, the following vulnerability has been resolved: ipmi: Add limits to event and receive message requests The driver would just fe
CVE-2026-46149 In the Linux kernel, the following vulnerability has been resolved: scsi: target: configfs: Bound snprintf() return in tg_pt_gp_members_show() targ
CVE-2026-46244 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: Fix IPv6 inner_thoff desync In nft_inner_parse_l2l3(), wh
CVE-2026-46137 In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: ADD_ADDR rtx: fix potential data-race This mptcp_pm_add_timer() help
CVE-2026-46185 In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds read in symlink_data() Since smb2_check_message()
CVE-2026-46195 In the Linux kernel, the following vulnerability has been resolved: smb: client: validate dacloffset before building DACL pointers parse_sec_desc()
CVE-2026-46289 In the Linux kernel, the following vulnerability has been resolved: lib/scatterlist: fix length calculations in extract_kvec_to_sg Patch series "Fi
CVE-2026-46119 In the Linux kernel, the following vulnerability has been resolved: libceph: Fix slab-out-of-bounds access in auth message processing If a (potenti
CVE-2026-46135 In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: fix race between ICReq handling and queue teardown nvmet_tcp_handle_
CVE-2026-46155 In the Linux kernel, the following vulnerability has been resolved: smb/client: fix out-of-bounds read in smb2_compound_op() If a server sends a tr
CVE-2026-46115 In the Linux kernel, the following vulnerability has been resolved: block: add pgmap check to biovec_phys_mergeable biovec_phys_mergeable() is used
CVE-2026-46243 In the Linux kernel, the following vulnerability has been resolved: smb: client: reject userspace cifs.spnego descriptions cifs.spnego key descript

Version: 7.0.0-26.26 2026-05-29 05:09:00 UTC

 linux (7.0.0-26.26) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-26.26 -proposed tracker (LP: #2154530)
 .
   * Packaging resync (LP: #1786013)
     - Revert "UBUNTU: SAUCE: import Huawei ES3000_V2 (2.1.0.23)"
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA
 .
   * Resolute update: v7.0.6 upstream stable release (LP: #2152558)
     - Linux 7.0.6
     - Upstream stable to v7.0.6
 .
   * Resolute update: v7.0.5 upstream stable release (LP: #2152556)
     - Linux 7.0.5
     - Upstream stable to v7.0.5
 .
   * Resolute update: v7.0.4 upstream stable release (LP: #2152552)
     - ALSA: usb-audio: stop parsing UAC2 rates at MAX_NR_RATES
     - ALSA: usb-audio: Avoid false E-MU sample-rate notifications
     - ALSA: usb-audio: Fix Audio Advantage Micro II SPDIF switch
     - usb: xhci: Make usb_host_endpoint.hcpriv survive endpoint_disable()
     - usb: chipidea: otg: not wait vbus drop if use role_switch
     - usb: chipidea: core: allow ci_irq_handler() handle both ID and VBUS
       change
     - ALSA: usb-audio: Evaluate packsize caps at the right place
     - LoongArch: Add spectre boundry for syscall dispatch table
     - drm/nouveau: fix u32 overflow in pushbuf reloc bounds check
     - leds: qcom-lpg: Check for array overflow when selecting the high
       resolution
     - greybus: gb-beagleplay: bound bootloader receive buffering
     - greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames()
     - misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()
     - ibmasm: fix OOB reads in command_file_write due to missing size checks
     - ibmasm: fix heap over-read in ibmasm_send_i2o_message()
     - sysfs: attribute_group: Respect is_visible_const() when changing owner
     - driver core: Don't let a device probe until it's ready
     - device property: Make modifications of fwnode "flags" thread safe
     - drm/nouveau: fix nvkm_device leak on aperture removal failure
     - rust: dma: remove DMA_ATTR_NO_KERNEL_MAPPING from public attrs
     - kbuild: rust: allow `clippy::uninlined_format_args`
     - fs: afs: revert mmap_prepare() change
     - firmware: google: framebuffer: Do not mark framebuffer as busy
     - lib: test_hmm: evict device pages on file close to avoid use-after-free
     - arm64/mm: Enable batched TLB flush in unmap_hotplug_range()
     - arm64: mm: Fix rodata=full block mapping support for realm guests
     - mm: migrate: requeue destination folio on deferred split queue
     - mm: prevent droppable mappings from being locked
     - mm: fix deferred split queue races during migration
     - ocfs2: split transactions in dio completion to avoid credit exhaustion
     - Input: edt-ft5x06 - fix use-after-free in debugfs teardown
     - zram: do not forget to endio for partial discard requests
     - wifi: rtw88: check for PCI upstream bridge existence
     - wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup()
     - vfio: selftests: Fix VLA initialisation in vfio_pci_irq_set()
     - vfio/xe: Add a missing vfio_pci_core_release_dev()
     - vfio/virtio: Convert list_lock from spinlock to mutex
     - vfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutex
     - vfio/cdx: Fix NULL pointer dereference in interrupt trigger path
     - um: drivers: call kernel_strrchr() explicitly in cow_user.c
     - thermal: core: Fix thermal zone governor cleanup issues
     - spi: imx: fix use-after-free on unbind
     - spi: ch341: fix memory leaks on probe failures
     - crypto: algif_aead - snapshot IV for async AEAD requests
     - crypto: pcrypt - Fix handling of MAY_BACKLOG requests
     - dt-bindings: display: ti, am65x-dss: Fix AM62L DSS reg and clock
       constraints
     - of: unittest: fix use-after-free in of_unittest_changeset()
     - of: unittest: fix use-after-free in testdrv_probe()
     - hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt
     - EDAC/versalnet: Fix device_node leak in mc_probe()
     - PCI: imx6: Skip waiting for L2/L3 Ready on i.MX6SX
     - media: amphion: Fix race between m2m job_abort and device_run
     - ALSA: control: Validate buf_len before strnlen() in
       snd_ctl_elem_init_enum_names()
     - net: caif: clear client service pointer on teardown
     - net: strparser: fix skb_head leak in strp_abort_strp()
     - media: mtk-jpeg: fix use-after-free in release path due to uncancelled
       work
     - crypto: atmel-sha204a - Fix OTP sysfs read and error handling

Source diff to previous version
1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
2152558 Resolute update: v7.0.6 upstream stable release
2152556 Resolute update: v7.0.5 upstream stable release
2152552 Resolute update: v7.0.4 upstream stable release
2152550 Resolute update: v7.0.3 upstream stable release
2150553 Resolute update: v7.0.2 upstream stable release
2150547 Resolute update: v7.0.1 upstream stable release
2154172 GRO managed-frag use-after-free leading to local privilege escalation
2151747 AppArmor Vulnerabilities
2148809 apparmor: LLVM/clang build failure due to uninitialized variable in notify.c
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-47337 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible N ...
CVE-2026-47334 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47333 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which ca ...
CVE-2026-47332 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47330 Ubuntu Linux 6.8, 7.17 and 7.0 contain AppArmor SAUCE patches which ca ...
CVE-2026-47329 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches which fail to val ...
CVE-2026-47327 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a possible N ...
CVE-2026-47328 Ubuntu Linux 6.8, 6.17 and 7.0 contain AppArmor SAUCE patches which in ...
CVE-2026-47326 Ubuntu Linux 6.8, 6.17 and 7.0 contain SAUCE patches with a memory lea ...
CVE-2026-46300 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() c
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta

Version: 7.0.0-21.21 2026-05-22 23:09:43 UTC

 linux (7.0.0-21.21) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-21.21 -proposed tracker (LP: #2154027)
 .
   * Packaging resync (LP: #1786013)
     - Revert "UBUNTU: SAUCE: import Huawei ES3000_V2 (2.1.0.23)"
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA
 .
   * Resolute update: v7.0.6 upstream stable release (LP: #2152558)
     - Linux 7.0.6
     - Upstream stable to v7.0.6
 .
   * Resolute update: v7.0.5 upstream stable release (LP: #2152556)
     - Linux 7.0.5
     - Upstream stable to v7.0.5
 .
   * Resolute update: v7.0.4 upstream stable release (LP: #2152552)
     - ALSA: usb-audio: stop parsing UAC2 rates at MAX_NR_RATES
     - ALSA: usb-audio: Avoid false E-MU sample-rate notifications
     - ALSA: usb-audio: Fix Audio Advantage Micro II SPDIF switch
     - usb: xhci: Make usb_host_endpoint.hcpriv survive endpoint_disable()
     - usb: chipidea: otg: not wait vbus drop if use role_switch
     - usb: chipidea: core: allow ci_irq_handler() handle both ID and VBUS
       change
     - ALSA: usb-audio: Evaluate packsize caps at the right place
     - LoongArch: Add spectre boundry for syscall dispatch table
     - drm/nouveau: fix u32 overflow in pushbuf reloc bounds check
     - leds: qcom-lpg: Check for array overflow when selecting the high
       resolution
     - greybus: gb-beagleplay: bound bootloader receive buffering
     - greybus: gb-beagleplay: fix sleep in atomic context in hdlc_tx_frames()
     - misc: ibmasm: fix OOB MMIO read in ibmasm_handle_mouse_interrupt()
     - ibmasm: fix OOB reads in command_file_write due to missing size checks
     - ibmasm: fix heap over-read in ibmasm_send_i2o_message()
     - sysfs: attribute_group: Respect is_visible_const() when changing owner
     - driver core: Don't let a device probe until it's ready
     - device property: Make modifications of fwnode "flags" thread safe
     - drm/nouveau: fix nvkm_device leak on aperture removal failure
     - rust: dma: remove DMA_ATTR_NO_KERNEL_MAPPING from public attrs
     - kbuild: rust: allow `clippy::uninlined_format_args`
     - fs: afs: revert mmap_prepare() change
     - firmware: google: framebuffer: Do not mark framebuffer as busy
     - lib: test_hmm: evict device pages on file close to avoid use-after-free
     - arm64/mm: Enable batched TLB flush in unmap_hotplug_range()
     - arm64: mm: Fix rodata=full block mapping support for realm guests
     - mm: migrate: requeue destination folio on deferred split queue
     - mm: prevent droppable mappings from being locked
     - mm: fix deferred split queue races during migration
     - ocfs2: split transactions in dio completion to avoid credit exhaustion
     - Input: edt-ft5x06 - fix use-after-free in debugfs teardown
     - zram: do not forget to endio for partial discard requests
     - wifi: rtw88: check for PCI upstream bridge existence
     - wifi: mwifiex: fix use-after-free in mwifiex_adapter_cleanup()
     - vfio: selftests: Fix VLA initialisation in vfio_pci_irq_set()
     - vfio/xe: Add a missing vfio_pci_core_release_dev()
     - vfio/virtio: Convert list_lock from spinlock to mutex
     - vfio/cdx: Serialize VFIO_DEVICE_SET_IRQS with a per-device mutex
     - vfio/cdx: Fix NULL pointer dereference in interrupt trigger path
     - um: drivers: call kernel_strrchr() explicitly in cow_user.c
     - thermal: core: Fix thermal zone governor cleanup issues
     - spi: imx: fix use-after-free on unbind
     - spi: ch341: fix memory leaks on probe failures
     - crypto: algif_aead - snapshot IV for async AEAD requests
     - crypto: pcrypt - Fix handling of MAY_BACKLOG requests
     - dt-bindings: display: ti, am65x-dss: Fix AM62L DSS reg and clock
       constraints
     - of: unittest: fix use-after-free in of_unittest_changeset()
     - of: unittest: fix use-after-free in testdrv_probe()
     - hwmon: (powerz) Fix missing usb_kill_urb() on signal interrupt
     - EDAC/versalnet: Fix device_node leak in mc_probe()
     - PCI: imx6: Skip waiting for L2/L3 Ready on i.MX6SX
     - media: amphion: Fix race between m2m job_abort and device_run
     - ALSA: control: Validate buf_len before strnlen() in
       snd_ctl_elem_init_enum_names()
     - net: caif: clear client service pointer on teardown
     - net: strparser: fix skb_head leak in strp_abort_strp()
     - media: mtk-jpeg: fix use-after-free in release path due to uncancelled
       work
     - crypto: atmel-sha204a - Fix OTP sysfs read and error handling

Source diff to previous version
1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau
2152558 Resolute update: v7.0.6 upstream stable release
2152556 Resolute update: v7.0.5 upstream stable release
2152552 Resolute update: v7.0.4 upstream stable release
2152550 Resolute update: v7.0.3 upstream stable release
2150553 Resolute update: v7.0.2 upstream stable release
2150547 Resolute update: v7.0.1 upstream stable release
2153962 net/rds: reset op_nents when zerocopy page pin fails
CVE-2026-46333 In the Linux kernel, the following vulnerability has been resolved: ptrace: slightly saner 'get_dumpable()' logic The 'dumpability' of a task is fu
CVE-2026-43500 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Also unshare DATA/RESPONSE packets when paged frags are present The DATA
CVE-2026-43284 In the Linux kernel, the following vulnerability has been resolved: xfrm: esp: avoid in-place decrypt on shared skb frags MSG_SPLICE_PAGES can atta

Version: 7.0.0-18.18 2026-05-09 01:08:49 UTC

 linux (7.0.0-18.18) resolute; urgency=medium
 .
   * resolute/linux: 7.0.0-18.18 -proposed tracker (LP: #2152025)
 .
   * Packaging resync (LP: #1786013)
     - [Packaging] debian.master/dkms-versions -- remove dkms-versions
       (main/2026.05.18)
 .
   * Fix mic mute led on a HP EliteBook 6 G2a platform (LP: #2150065)
     - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2a Laptops
 .
   * ov08x40 module mounted upside down on a certain DELL platforms
     (LP: #2146517)
     - SAUCE: media: ipu-bridge: Add DMI quirk for new Dell XPS laptops with
       upside down sensors
     - SAUCE: media: ipu-bridge: Add DMI quirk for Dell 14 laptops with upside
       down sensors
 .
   * Support additional 2888x1808@30fps 900MHz for OVTI05C1 camera sensor
     (LP: #2147409)
     - SAUCE: media: ipu-bridge: Add 900MHz for OV05C10
     - SAUCE: platform/x86: int3472: increase handshake delay to 50ms for
       OV05C10
 .
   * Support Samsung S5K3J1 sensor for Intel MIPI camera (LP: #2121852)
     - SAUCE: media: ipu-bridge: Support s5k3j1 sensor
 .
   * [SRU] ASoC: enable rt1320 speaker amp and DMIC on PTL SoundWire platforms
     (LP: #2150196)
     - ASoC: Intel: soc-acpi-intel-ptl-match: drop rt722 monolithic match
       tables
     - ASoC: SOF: Intel: Add a is_amp flag to fix the wrong name prefix
     - ASoC: sdw_utils: add rt1320 and rt1321 dmic dai in codec_info_list
 .
   * powerpc-build in ubuntu_kernel_selftests fails to build due to
     uninitialized value (LP: #2129844)
     - selftests/powerpc: Suppress -Wmaybe-uninitialized with GCC 15
 .
   * Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled,
     conflicting with nouveau (LP: #2150845)
     - [Config] Disable DRM_NOVA

1786013 Packaging resync
2150065 Fix mic mute led on a HP EliteBook 6 G2a platform
2129844 powerpc-build in ubuntu_kernel_selftests fails to build due to uninitialized value
2150845 Ubuntu 26.04 linux kernel has non-functional nova-core GPU driver enabled, conflicting with nouveau



About   -   Send Feedback to @ubuntu_updates