UbuntuUpdates.org

Package "linux-cloud-tools-6.14.0-28-generic"

Name: linux-cloud-tools-6.14.0-28-generic

Description:

Linux kernel version specific cloud tools for version 6.14.0-28

Latest version: 6.14.0-28.28~24.04.1
Release: noble (24.04)
Level: security
Repository: main
Head package: linux-hwe-6.14

Links


Download "linux-cloud-tools-6.14.0-28-generic"


Other versions of "linux-cloud-tools-6.14.0-28-generic" in Noble

Repository Area Version
updates main 6.14.0-28.28~24.04.1
PPA: Canonical Kernel Team 6.14.0-28.28~24.04.1

Changelog

Version: 6.14.0-28.28~24.04.1 2025-08-18 23:07:25 UTC

  linux-hwe-6.14 (6.14.0-28.28~24.04.1) noble; urgency=medium

  * noble/linux-hwe-6.14: 6.14.0-28.28~24.04.1 -proposed tracker (LP: #2117647)

  * Packaging resync (LP: #1786013)
    - [Packaging] debian.hwe-6.14/dkms-versions -- update from kernel-versions
      (main/2025.07.14)

  [ Ubuntu: 6.14.0-28.28 ]

  * plucky/linux: 6.14.0-28.28 -proposed tracker (LP: #2117649)
  * Packaging resync (LP: #1786013)
    - [Packaging] update annotations scripts
    - [Packaging] debian.master/dkms-versions -- update from kernel-versions
      (main/2025.07.14)
  * Dell AIO backlight is not working, dell_uart_backlight module is missing
    (LP: #2083800)
    - [Config] enable CONFIG_DELL_UART_BACKLIGHT
  * integrated I219-LM network adapter appears to be running too fast, causing
    synchronization issues when using the I219-LM PTP feature (LP: #2116072)
    - e1000e: set fixed clock frequency indication for Nahum 11 and Nahum 13
  * Audio broken on ThinkPad X13s (LP: #2115898)
    - SAUCE: Revert "UBUNTU: SAUCE: Change: cracking sound fix"
  * Ubuntu 24.04+ arm64: screen resolution fixed to 1024x768 with last kernel
    update (LP: #2115068)
    - [Config] Replace FB_HYPERV with DRM_HYPERV
  * [SRU][HPE 24.04] Patch Request for HPE iLO7 VGA device for Gen12 Servers
    (LP: #2114516)
    - drm/mgag200: Added support for the new device G200eH5
  * A process exiting with an open /dev/snapshot fd causes a NULL pointer
    dereference caught by ubuntu_stress_smoke_test:sut-scan (LP: #2113990)
    - libfs: export find_next_child()
    - efivarfs: support freeze/thaw
  * [SRU] Add support for new hotkey of F9 on Thinkpad X9 (LP: #2115022)
    - platform/x86: thinkpad-acpi: Add support for new hotkey for camera
      shutter switch
  * [SRU] Fix GT0: Engine reset when suspend on Intel LNL (LP: #2114697)
    - drm/xe/sched: stop re-submitting signalled jobs
  * CVE-2025-38056
    - devres: Introduce devm_kmemdup_array()
    - ASoC: SOF: Intel: hda: Fix UAF when reloading module
  * Handle IOMMU IVRS entries with mismatched UID on AMD Strix or newer
    platforms (LP: #2115174)
    - iommu/amd: Allow matching ACPI HID devices without matching UIDs
  * [UBUNTU 22.04] kernel: Fix z17 elf platform recognition (LP: #2114450)
    - s390: Add z17 elf platform
  * [UBUNTU 24.04] Kernel: Add CPUMF extended counter set for z17
    (LP: #2114258)
    - s390/cpumf: Update CPU Measurement facility extended counter set support
  * Plucky update: v6.14.8 upstream stable release (LP: #2115266)
    - arm64: dts: rockchip: Assign RT5616 MCLK rate on rk3588-friendlyelec-
      cm3588
    - fs/xattr.c: fix simple_xattr_list to always include security.* xattrs
    - drivers/platform/x86/amd: pmf: Check for invalid sideloaded Smart PC
      Policies
    - drivers/platform/x86/amd: pmf: Check for invalid Smart PC Policies
    - x86/amd_node, platform/x86/amd/hsmp: Have HSMP use SMN through AMD_NODE
    - platform/x86/amd/hsmp: Make amd_hsmp and hsmp_acpi as mutually exclusive
      drivers
    - arm64: dts: rockchip: fix Sige5 RTC interrupt pin
    - riscv: dts: sophgo: fix DMA data-width configuration for CV18xx
    - binfmt_elf: Move brk for static PIE even if ASLR disabled
    - platform/x86/amd/pmc: Declare quirk_spurious_8042 for MECHREVO Wujie
      14XA (GX4HRXL)
    - platform/x86: asus-wmi: Fix wlan_ctrl_by_user detection
    - arm64: dts: imx8mp-var-som: Fix LDO5 shutdown causing SD card timeout
    - cgroup/cpuset: Extend kthread_is_per_cpu() check to all
      PF_NO_SETAFFINITY tasks
    - tracing: fprobe: Fix RCU warning message in list traversal
    - tracing: probes: Fix a possible race in trace_probe_log APIs
    - tpm: tis: Double the timeout B to 4s
    - iio: adc: ad7606: move the software mode configuration
    - iio: adc: ad7606: move software functions into common file
    - HID: thrustmaster: fix memory leak in thrustmaster_interrupts()
    - spi: loopback-test: Do not split 1024-byte hexdumps
    - Bluetooth: MGMT: Fix MGMT_OP_ADD_DEVICE invalid device flags
    - drm/meson: Use 1000ULL when operating with mode->clock
    - tools/net/ynl: ethtool: fix crash when Hardware Clock info is missing
    - tests/ncdevmem: Fix double-free of queue array
    - net: mctp: Ensure keys maintain only one ref to corresponding dev
    - ALSA: seq: Fix delivery of UMP events to group ports
    - ALSA: ump: Fix a typo of snd_ump_stream_msg_device_info
    - net: cadence: macb: Fix a possible deadlock in macb_halt_tx.
    - net: dsa: sja1105: discard incoming frames in BR_STATE_LISTENING
    - nvme-pci: make nvme_pci_npages_prp() __always_inline
    - nvme-pci: acquire cq_poll_lock in nvme_poll_irqdisable
    - ALSA: sh: SND_AICA should depend on SH_DMA_API
    - net: dsa: b53: prevent standalone from trying to forward to other ports
    - vsock/test: Fix occasional failure in SIOCOUTQ tests
    - qlcnic: fix memory leak in qlcnic_sriov_channel_cfg_cmd()
    - octeontx2-pf: Fix ethtool support for SDP representors
    - drm/xe: Save CTX_TIMESTAMP mmio value instead of LRC value
    - netlink: specs: tc: fix a couple of attribute names
    - netlink: specs: tc: all actions are indexed arrays
    - octeontx2-pf: macsec: Fix incorrect max transmit size in TX secy
    - net: ethernet: mtk_eth_soc: fix typo for declaration MT7988 ESW
      capability
    - octeontx2-af: Fix CGX Receive counters
    - octeontx2-pf: Do not reallocate all ntuple filters
    - tsnep: fix timestamping with a stacked DSA driver
    - ublk: fix dead loop when canceling io command
    - NFSv4/pnfs: Reset the layout state after a layoutreturn
    - dmaengine: Revert "dmaengine: dmatest: Fix dmatest waiting less when
      interrupted"
    - Revert "kbuild, rust: use -fremap-path-prefix to make paths relative"
    - udf: Make sure i_lenExtents is uptodate on inode eviction
    - HID: amd_sfh: Fix SRA sensor when it's the only sensor
    - LoongArch: Prevent cond_resched() occurring within kernel-fpu
    - LoongArch: Move __arch_cpu_idle() to .cpuid

Source diff to previous version
1786013 Packaging resync
2083800 Dell AIO backlight is not working, dell_uart_backlight module is missing
2116072 integrated I219-LM network adapter appears to be running too fast, causing synchronization issues when using the I219-LM PTP feature
2115898 Audio broken on ThinkPad X13s
2115068 Ubuntu 24.04+ arm64: screen resolution fixed to 1024x768 with last kernel update
2114516 [SRU][HPE 24.04] Patch Request for HPE iLO7 VGA device for Gen12 Servers
2113990 A process exiting with an open /dev/snapshot fd causes a NULL pointer dereference caught by ubuntu_stress_smoke_test:sut-scan
2114450 [UBUNTU 22.04] kernel: Fix z17 elf platform recognition
2114258 [UBUNTU 24.04] Kernel: Add CPUMF extended counter set for z17
2115266 Plucky update: v6.14.8 upstream stable release
2115252 Plucky update: v6.14.7 upstream stable release
2113992 Creating a VXLAN interface with a Fan mapping causes a NULL pointer dereference caught by ubuntu_fan_smoke_test:sut-scan
2117494 [Regression Updates] \
2116061 [UBUNTU 25.04] lszcrypt output shows no cards because ap module has to be loaded manually
CVE-2025-38056 In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda: Fix UAF when reloading module hda_generic_machine_select
CVE-2025-38008 In the Linux kernel, the following vulnerability has been resolved: mm/page_alloc: fix race condition in unaccepted memory handling The page alloca
CVE-2025-38014 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Refactor remove call with idxd_cleanup() helper The idxd_clean
CVE-2025-38015 In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: fix memory leak in error handling path of idxd_alloc Memory al
CVE-2025-38005 In the Linux kernel, the following vulnerability has been resolved: dmaengine: ti: k3-udma: Add missing locking Recent kernels complain about a mis
CVE-2025-38009 In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: disable napi on driver removal A warning on driver removal started
CVE-2025-38010 In the Linux kernel, the following vulnerability has been resolved: phy: tegra: xusb: Use a bitmask for UTMI pad power state tracking The current i
CVE-2025-38011 In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: csa unmap use uninterruptible lock After process exit to unmap csa
CVE-2025-38016 In the Linux kernel, the following vulnerability has been resolved: HID: bpf: abort dispatch if device destroyed The current HID bpf implementation
CVE-2025-38012 In the Linux kernel, the following vulnerability has been resolved: sched_ext: bpf_iter_scx_dsq_new() should always initialize iterator BPF program
CVE-2025-38018 In the Linux kernel, the following vulnerability has been resolved: net/tls: fix kernel panic when alloc_page failed We cannot set frag_list to NUL
CVE-2025-38019 In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_router: Fix use-after-free when deleting GRE net devices The dr
CVE-2025-38013 In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: Set n_channels after allocating struct cfg80211_scan_request Ma
CVE-2025-38002 In the Linux kernel, the following vulnerability has been resolved: io_uring/fdinfo: grab ctx->uring_lock around io_uring_show_fdinfo() Not everyth
CVE-2025-38027 In the Linux kernel, the following vulnerability has been resolved: regulator: max20086: fix invalid memory access max20086_parse_regulators_dt() c
CVE-2025-38020 In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: Disable MACsec offload for uplink representor profile MACsec offload
CVE-2025-38021 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix null check of pipe_ctx->plane_state for update_dchubp_dpp
CVE-2025-38006 In the Linux kernel, the following vulnerability has been resolved: net: mctp: Don't access ifa_index when missing In mctp_dump_addrinfo, ifa_index
CVE-2025-37992 In the Linux kernel, the following vulnerability has been resolved: net_sched: Flush gso_skb list too during ->change() Previously, when reducing a
CVE-2025-38022 In the Linux kernel, the following vulnerability has been resolved: RDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem
CVE-2025-38028 In the Linux kernel, the following vulnerability has been resolved: NFS/localio: Fix a race in nfs_local_open_fh() Once the clp->cl_uuid.lock has b
CVE-2025-38023 In the Linux kernel, the following vulnerability has been resolved: nfs: handle failure of nfs_get_lock_context in unlock path When memory is insuf
CVE-2025-38007 In the Linux kernel, the following vulnerability has been resolved: HID: uclogic: Add NULL check in uclogic_input_configured() devm_kasprintf() ret
CVE-2025-38024 In the Linux kernel, the following vulnerability has been resolved: RDMA/rxe: Fix slab-use-after-free Read in rxe_queue_cleanup bug Call Trace: <T
CVE-2025-38025 In the Linux kernel, the following vulnerability has been resolved: iio: adc: ad7606: check for NULL before calling sw_mode_config() Check that the
CVE-2025-37963 In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Only mitigate cBPF programs loaded by unprivileged users Support fo
CVE-2025-37948 In the Linux kernel, the following vulnerability has been resolved: arm64: bpf: Add BHB mitigation to the epilogue for cBPF programs A malicious BP
CVE-2025-37994 In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix NULL pointer access This patch ensures that
CVE-2025-37967 In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: displayport: Fix deadlock This patch introduces the ucsi_con_
CVE-2025-37950 In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix panic in failed foilio allocation commit 7e119cff9d0a ("ocfs2: conve
CVE-2025-37995 In the Linux kernel, the following vulnerability has been resolved: module: ensure that kobject_put() is safe for module type kobjects In 'lookup_o
CVE-2025-37960 In the Linux kernel, the following vulnerability has been resolved: memblock: Accept allocated memory before use in memblock_double_array() When in
CVE-2025-37996 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Fix uninitialized memcache pointer in user_mem_abort() Commit fce88
CVE-2025-37949 In the Linux kernel, the following vulnerability has been resolved: xenbus: Use kref to track req lifetime Marek reported seeing a NULL pointer fau
CVE-2025-37954 In the Linux kernel, the following vulnerability has been resolved: smb: client: Avoid race in open_cached_dir with lease breaks A pre-existing val
CVE-2025-37965 In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix invalid context error in dml helper [Why] "BUG: sleeping f
CVE-2025-37951 In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Add job to pending list if the reset was skipped When a CL/CSD job tim
CVE-2025-37968 In the Linux kernel, the following vulnerability has been resolved: iio: light: opt3001: fix deadlock due to concurrent flag access The threaded IR
CVE-2025-37969 In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_tagged_fifo Preven
CVE-2025-37970 In the Linux kernel, the following vulnerability has been resolved: iio: imu: st_lsm6dsx: fix possible lockup in st_lsm6dsx_read_fifo Prevent st_ls
CVE-2025-37966 In the Linux kernel, the following vulnerability has been resolved: riscv: Fix kernel crash due to PR_SET_TAGGED_ADDR_CTRL When userspace does PR_S
CVE-2025-37957 In the Linux kernel, the following vulnerability has been resolved: KVM: SVM: Forcibly leave SMM mode on SHUTDOWN interception Previously, commit e
CVE-2025-37958 In the Linux kernel, the following vulnerability has been resolved: mm/huge_memory: fix dereferencing invalid pmd migration entry When migrating a
CVE-2025-37964 In the Linux kernel, the following vulnerability has been resolved: x86/mm: Eliminate window where TLB flushes may be inadvertently skipped tl;dr:
CVE-2025-37971 In the Linux kernel, the following vulnerability has been resolved: staging: bcm2835-camera: Initialise dev in v4l2_dev Commit 42a2f6664e18 ("stagi
CVE-2025-37972 In the Linux kernel, the following vulnerability has been resolved: Input: mtk-pmic-keys - fix possible null pointer dereference In mtk_pmic_keys_p
CVE-2025-37959 In the Linux kernel, the following vulnerability has been resolved: bpf: Scrub packet on bpf_redirect_peer When bpf_redirect_peer is used to redire
CVE-2025-37961 In the Linux kernel, the following vulnerability has been resolved: ipvs: fix uninit-value for saddr in do_output_route4 syzbot reports for uninit-
CVE-2025-37993 In the Linux kernel, the following vulnerability has been resolved: can: m_can: m_can_class_allocate_dev(): initialize spin lock on device probe Th
CVE-2025-37955 In the Linux kernel, the following vulnerability has been resolved: virtio-net: free xsk_buffs on error in virtnet_xsk_pool_enable() The selftests
CVE-2025-37962 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix memory leak in parse_lease_state() The previous patch that added bou
CVE-2025-37998 In the Linux kernel, the following vulnerability has been resolved: openvswitch: Fix unsafe attribute parsing in output_userspace() This patch repl
CVE-2025-37952 In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix UAF in __close_file_table_ids A use-after-free is possible if one th
CVE-2025-37947 In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent out-of-bounds stream writes by validating *pos ksmbd_vfs_stream_
CVE-2025-37956 In the Linux kernel, the following vulnerability has been resolved: ksmbd: prevent rename with empty string Client can send empty newname string to
CVE-2025-37973 In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: fix out-of-bounds access during multi-link element defragmentati
CVE-2025-37999 In the Linux kernel, the following vulnerability has been resolved: fs/erofs/fileio: call erofs_onlinefolio_split() after bio_add_folio() If bio_ad
CVE-2025-38083 In the Linux kernel, the following vulnerability has been resolved: net_sched: prio: fix a race in prio_tune() Gerrard Tai reported a race conditio

Version: 6.14.0-27.27~24.04.1 2025-07-29 19:07:29 UTC

  linux-hwe-6.14 (6.14.0-27.27~24.04.1) noble; urgency=medium

  * noble/linux-hwe-6.14: 6.14.0-27.27~24.04.1 -proposed tracker (LP: #2117502)

  [ Ubuntu: 6.14.0-27.27 ]

  * plucky/linux: 6.14.0-27.27 -proposed tracker (LP: #2117503)
  * [Regression Updates] "PCI: Explicitly put devices into D0 when
    initializing" breaks pci-pass-through in QEMU/KVM (LP: #2117494)
    - PCI/PM: Set up runtime PM even for devices without PCI PM

Source diff to previous version
2117494 [Regression Updates] \

Version: 6.14.0-24.24~24.04.3 2025-07-17 16:07:33 UTC

  linux-hwe-6.14 (6.14.0-24.24~24.04.3) noble; urgency=medium

  * noble/linux-hwe-6.14: 6.14.0-24.24~24.04.3 -proposed tracker (LP: #2116100)

  * [UBUNTU 25.04] lszcrypt output shows no cards because ap module has to be
    loaded manually (LP: #2116061)
    - [Config] s390: Build ap driver into the kernel

  * auxiliary intel_ipu6.psys.40: deferred probe pending: (reason unknown)
    (LP: #2115083)
    - [Packaging] debian.hwe-6.14/dkms-versions -- update from kernel-versions
      (main/2025.06.16)

  * Don't suggests fdutils package anymore (LP: #2104355)
    - [Packaging] Stop suggesting fdutils from linux-image

2116061 [UBUNTU 25.04] lszcrypt output shows no cards because ap module has to be loaded manually
2104355 Don't suggests fdutils package anymore



About   -   Send Feedback to @ubuntu_updates