UbuntuUpdates.org

Package "linux-riscv-7.0-headers-7.0.0-34"

Name: linux-riscv-7.0-headers-7.0.0-34

Description:

Header files related to Linux kernel version 7.0.0

Latest version: 7.0.0-34.34.1~24.04.1
Release: noble (24.04)
Level: security
Repository: main
Head package: linux-riscv-7.0

Links


Download "linux-riscv-7.0-headers-7.0.0-34"


Other versions of "linux-riscv-7.0-headers-7.0.0-34" in Noble

Repository Area Version
updates main 7.0.0-34.34.1~24.04.1

Changelog

Version: 7.0.0-34.34.1~24.04.1 2026-09-23 17:07:55 UTC

linux-riscv-7.0 (7.0.0-34.34.1~24.04.1) noble; urgency=medium

  * noble/linux-riscv-7.0: 7.0.0-34.34.1~24.04.1 -proposed tracker (LP: #2165773)

  * Packaging resync (LP: #1786013)
    - [Packaging] debian.riscv-7.0/dkms-versions -- update from kernel-
      versions (main/s2026.08.03)

  [ Ubuntu-riscv: 7.0.0-34.34.1 ]

  * resolute/linux-riscv: 7.0.0-34.34.1 -proposed tracker (LP: #2165774)
  [ Ubuntu: 7.0.0-34.34 ]
  * resolute/linux: 7.0.0-34.34 -proposed tracker (LP: #2165995)
  [ Ubuntu: 7.0.0-32.32 ]
  * resolute/linux: 7.0.0-32.32 -proposed tracker (LP: #2165777)
  * CVE-2026-72064
    - net: mana: Sync page pool RX frags for CPU
  * CVE-2026-72065
    - net: mana: Validate the packet length reported by the NIC
  * CVE-2026-72098
    - dm-verity-fec: replace {MAX,MIN}_RSN with {MIN,MAX}_ROOTS
    - dm-verity: fix buffer overflow in FEC calculation
  * CVE-2026-72248
    - netfilter: flowtable: support IPIP tunnel with direct xmit
    - netfilter: flowtable: use correct direction to set up tunnel route
  * CVE-2026-72249
    - netfilter: flowtable: use dst in this direction when pushing IPIP header
  * CVE-2026-72287
    - KVM: nVMX: Move vTPR vs. TPR Threshold consistency check into "normal"
      checks
  * CVE-2026-72329
    - net/liquidio: drop cached VF pci_dev LUT
  * CVE-2026-72355
    - netfs: Fix barriering when walking subrequest list
  * CVE-2026-72412
    - s390/mm: Fix handling of _PAGE_UNUSED pte bit
  * CVE-2026-72417
    - netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto()
  * CVE-2026-72442
    - netfilter: flowtable: fix and simplify IP6IP6 tunnel handling
  * CVE-2026-72463
    - xfrm: Fix dev use-after-free in xfrm async resumption
  * CVE-2026-72477
    - fs/ntfs3: call _ntfs_bad_inode() when failing to rename
  * CVE-2026-72493
    - net: serialize netif_running() check in enqueue_to_backlog()
  * CVE-2026-72494
    - RDMA/irdma: Replace waitqueue and flag with completion
  * CVE-2026-72496
    - RDMA/bnxt_re: Proper rollback if the ioremap fails
  * CVE-2026-74269
    - bnxt: fix head underflow on XDP head-grow
  * CVE-2026-74350
    - ocfs2: validate fast symlink target during inode read
  * CVE-2026-72495
    - RDMA/bnxt_re: Avoid repeated requests to allocate WC pages
  * CVE-2026-72501
    - RDMA/bnxt_re: Initialize dpi variable to zero
  * CVE-2026-72278
    - KVM: arm64: nv: Re-translate VNCR before injecting abort
  * CVE-2026-68083
    - ksmbd: fix path resolution in ksmbd_vfs_kern_path_create
  * CVE-2026-68457
    - ksmbd: use opener credentials for FSCTL mutations
  * CVE-2026-68476
    - ipvs: reload ip header after head reallocation
  * CVE-2026-68477
    - ipvs: fix more places with wrong ipv6 transport offsets
  * CVE-2026-72014
    - drbd: reject data replies with an out-of-range payload size
  * CVE-2026-72020
    - ipvs: reset full ip_vs_seq structs in ip_vs_conn_new
  * CVE-2026-72033
    - orangefs: keep the readdir entry size 64-bit in fill_from_part()
  * CVE-2026-72041
    - espintcp: use sk_msg_free_partial to fix partial send
  * CVE-2026-72046
    - gve: fix header buffer corruption with header-split and HW-GRO
  * CVE-2026-72069
    - locking/rt: Fix the incorrect RCU protection in rt_spin_unlock()
  * CVE-2026-72083
    - scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE
  * CVE-2026-72084
    - scsi: target: Bound PR-OUT TransportID parsing to the received buffer
  * CVE-2026-72085
    - scsi: xen: scsiback: Free unsubmitted command instead of double-putting
      it
  * CVE-2026-72129
    - nvmet-rdma: handle inline data with a nonzero offset
  * CVE-2026-72130
    - nvmet-auth: reject short AUTH_RECEIVE buffers
  * CVE-2026-64551
    - sctp: validate STALE_COOKIE cause length before reading staleness
  * CVE-2026-72137
    - xfrm: nat_keepalive: avoid double free on send error
  * CVE-2026-72139
    - tcp: defer md5sig_info kfree past RCU grace period in tcp_connect
  * CVE-2026-72191
    - ntfs3: validate split-point offset in indx_insert_into_buffer
  * CVE-2026-72192
    - ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head
  * CVE-2026-72194
    - fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow
  * CVE-2026-72217
    - SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing
  * CVE-2026-72220
    - sunrpc: harden rq_procinfo lifecycle to prevent double-free
  * CVE-2026-72221
    - sunrpc: wait for in-flight TLS handshake callback when cancel loses race
  * CVE-2026-72222
    - sunrpc: pin svc_xprt across the asynchronous TLS handshake callback
  * CVE-2026-72226
    - batman-adv: tt: prevent TVLV OOB check overflow
  * CVE-2026-72234
    - batman-adv: access unicast_ttvn skb->data only after skb realloc
  * CVE-2026-72251
    - netfilter: nf_nat_sip: reload possible stale data pointer
  * CVE-2026-72277
    - KVM: arm64: nv: Inject SEA if kvm_translate_vncr() can't resolve PFN
    - KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory
  * CVE-2026-72279
    - KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR
  * CVE-2026-72288
    - KVM: arm64: vgic: Handle race between interrupt affinity change and LPI
      disabling
  * CVE-2026-72289
    - KVM: arm64: vgic: Check the interrupt is still ours before migrating it
  * CVE-2026-72296
    - net: ife: require ETH_HLEN to be pullable in ife_decode()
  * CVE-2026-72299
    - tipc: restrict socket queue dumps in enqueue tracepoints
  * CVE-2026-72317
    - SUNRPC: pin upper rpc_clnt across the TLS connect_worker
  * CVE-2026-72318
    - cifs: validate DFS referral string offsets
  * CVE-2026-72319
    - ipvs: fix PMTU for GUE/GRE tunnel ICMP errors
    - ipvs: ensure inner headers in ICMP errors are in headroom
  * CVE-2026-72320
    - netfilter: nft_lookup: fix catchall element handling with inverted
      lookups
  * CVE-2026-72322
    - ipv6: mcast: Fix potential UAF in MLD delayed work
  * CVE-2026-72323
    - ipv4: igmp: Fix potential UAF in igmp_gq_start_timer()
  * CVE-2

Source diff to previous version
1786013 Packaging resync
CVE-2026-72064 In the Linux kernel, the following vulnerability has been resolved: net: mana: Sync page pool RX frags for CPU MANA allocates RX buffers from page
CVE-2026-72065 In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet length reported by the NIC Validate the packet l
CVE-2026-72098 In the Linux kernel, the following vulnerability has been resolved: dm-verity: fix buffer overflow in FEC calculation There's a buffer overflow in
CVE-2026-72248 In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: support IPIP tunnel with direct xmit The combination of I
CVE-2026-72249 In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: use dst in this direction when pushing IPIP header When p
CVE-2026-72287 In the Linux kernel, the following vulnerability has been resolved: KVM: nVMX: Move vTPR vs. TPR Threshold consistency check into "normal" checks M
CVE-2026-72329 In the Linux kernel, the following vulnerability has been resolved: net/liquidio: drop cached VF pci_dev LUT The PF SR-IOV enable path caches VF pc
CVE-2026-72355 In the Linux kernel, the following vulnerability has been resolved: netfs: Fix barriering when walking subrequest list Fix the barriering used when
CVE-2026-72412 In the Linux kernel, the following vulnerability has been resolved: s390/mm: Fix handling of _PAGE_UNUSED pte bit The _PAGE_UNUSED softbit should n
CVE-2026-72417 In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() Add sanit
CVE-2026-72442 In the Linux kernel, the following vulnerability has been resolved: netfilter: flowtable: fix and simplify IP6IP6 tunnel handling Fix nf_flow_ip6_t
CVE-2026-72463 In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix dev use-after-free in xfrm async resumption xfrm async resumption hol
CVE-2026-72477 In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: call _ntfs_bad_inode() when failing to rename It is safe to call _ntf
CVE-2026-72493 In the Linux kernel, the following vulnerability has been resolved: net: serialize netif_running() check in enqueue_to_backlog() Syzbot reported a
CVE-2026-72494 In the Linux kernel, the following vulnerability has been resolved: RDMA/irdma: Replace waitqueue and flag with completion The driver previously us
CVE-2026-72496 In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Proper rollback if the ioremap fails bnxt_qplib_alloc_dpi returns
CVE-2026-74269 In the Linux kernel, the following vulnerability has been resolved: bnxt: fix head underflow on XDP head-grow The xdp.py test test_xdp_native_adjst
CVE-2026-74350 In the Linux kernel, the following vulnerability has been resolved: ocfs2: validate fast symlink target during inode read ocfs2_validate_inode_bloc
CVE-2026-72495 In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Avoid repeated requests to allocate WC pages Applications can req
CVE-2026-72501 In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Initialize dpi variable to zero dpi is initialized only for BNXT_
CVE-2026-72278 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Re-translate VNCR before injecting abort KVM faults in the VNCR
CVE-2026-68083 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix path resolution in ksmbd_vfs_kern_path_create The SMB2 open lookup i
CVE-2026-68457 In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for FSCTL mutations SET_SPARSE, SET_ZERO_DATA and
CVE-2026-68476 In the Linux kernel, the following vulnerability has been resolved: ipvs: reload ip header after head reallocation __ip_vs_get_out_rt() calls skb_e
CVE-2026-68477 In the Linux kernel, the following vulnerability has been resolved: ipvs: fix more places with wrong ipv6 transport offsets Sashiko reports for mor
CVE-2026-72014 In the Linux kernel, the following vulnerability has been resolved: drbd: reject data replies with an out-of-range payload size recv_dless_read() r
CVE-2026-72020 In the Linux kernel, the following vulnerability has been resolved: ipvs: reset full ip_vs_seq structs in ip_vs_conn_new Commit 9a05475cebdd ("ipvs
CVE-2026-72033 In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entry size 64-bit in fill_from_part() fill_from_part
CVE-2026-72041 In the Linux kernel, the following vulnerability has been resolved: espintcp: use sk_msg_free_partial to fix partial send sk_msg_free_partial() ens
CVE-2026-72046 In the Linux kernel, the following vulnerability has been resolved: gve: fix header buffer corruption with header-split and HW-GRO The DQO RX datap
CVE-2026-72069 In the Linux kernel, the following vulnerability has been resolved: locking/rt: Fix the incorrect RCU protection in rt_spin_unlock() rt_spin_unlock
CVE-2026-72083 In the Linux kernel, the following vulnerability has been resolved: scsi: target: core: Fix iSCSI ISID use-after-free in REGISTER AND MOVE core_scs
CVE-2026-72084 In the Linux kernel, the following vulnerability has been resolved: scsi: target: Bound PR-OUT TransportID parsing to the received buffer core_scsi
CVE-2026-72085 In the Linux kernel, the following vulnerability has been resolved: scsi: xen: scsiback: Free unsubmitted command instead of double-putting it scsi
CVE-2026-72129 In the Linux kernel, the following vulnerability has been resolved: nvmet-rdma: handle inline data with a nonzero offset nvmet_rdma_use_inline_sg()
CVE-2026-72130 In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: reject short AUTH_RECEIVE buffers nvmet_execute_auth_receive() trus
CVE-2026-64551 In the Linux kernel, the following vulnerability has been resolved: sctp: validate STALE_COOKIE cause length before reading staleness When an ERROR
CVE-2026-72137 In the Linux kernel, the following vulnerability has been resolved: xfrm: nat_keepalive: avoid double free on send error nat_keepalive_send() frees
CVE-2026-72139 In the Linux kernel, the following vulnerability has been resolved: tcp: defer md5sig_info kfree past RCU grace period in tcp_connect The md5+ao re
CVE-2026-72191 In the Linux kernel, the following vulnerability has been resolved: ntfs3: validate split-point offset in indx_insert_into_buffer indx_insert_into_
CVE-2026-72192 In the Linux kernel, the following vulnerability has been resolved: ntfs3: bound to_move in indx_insert_into_root before hdr_insert_head indx_inser
CVE-2026-72194 In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: add depth limit to indx_find_buffer to prevent stack overflow indx_fi
CVE-2026-72217 In the Linux kernel, the following vulnerability has been resolved: SUNRPC: Bound-check xdr_buf_to_bvec() stores before writing xdr_buf_to_bvec() w
CVE-2026-72220 In the Linux kernel, the following vulnerability has been resolved: sunrpc: harden rq_procinfo lifecycle to prevent double-free The svc_release_rqs
CVE-2026-72221 In the Linux kernel, the following vulnerability has been resolved: sunrpc: wait for in-flight TLS handshake callback when cancel loses race When w
CVE-2026-72222 In the Linux kernel, the following vulnerability has been resolved: sunrpc: pin svc_xprt across the asynchronous TLS handshake callback svc_tcp_han
CVE-2026-72226 In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: prevent TVLV OOB check overflow A TT unicast TVLV contains the
CVE-2026-72234 In the Linux kernel, the following vulnerability has been resolved: batman-adv: access unicast_ttvn skb->data only after skb realloc The pskb_may_p
CVE-2026-72251 In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_nat_sip: reload possible stale data pointer quoting sashiko: ---
CVE-2026-72277 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Inject SEA if guest VNCR isn't normal memory When constructing
CVE-2026-72279 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: nv: Respect read-only PFN when mapping L1 VNCR KVM currently maps t
CVE-2026-72288 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Handle race between interrupt affinity change and LPI disablin
CVE-2026-72289 In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic: Check the interrupt is still ours before migrating it vgic_pr
CVE-2026-72296 In the Linux kernel, the following vulnerability has been resolved: net: ife: require ETH_HLEN to be pullable in ife_decode() ife decode may return
CVE-2026-72299 In the Linux kernel, the following vulnerability has been resolved: tipc: restrict socket queue dumps in enqueue tracepoints tipc_sk_enqueue() runs
CVE-2026-72317 In the Linux kernel, the following vulnerability has been resolved: SUNRPC: pin upper rpc_clnt across the TLS connect_worker The TLS connect path h
CVE-2026-72318 In the Linux kernel, the following vulnerability has been resolved: cifs: validate DFS referral string offsets parse_dfs_referrals() validates that
CVE-2026-72319 In the Linux kernel, the following vulnerability has been resolved: ipvs: ensure inner headers in ICMP errors are in headroom Sashiko points out th
CVE-2026-72320 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_lookup: fix catchall element handling with inverted lookups nft_
CVE-2026-72322 In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: Fix potential UAF in MLD delayed work A race condition exists betw
CVE-2026-72323 In the Linux kernel, the following vulnerability has been resolved: ipv4: igmp: Fix potential UAF in igmp_gq_start_timer() A race condition exists
CVE-2026-64541 In the Linux kernel, the following vulnerability has been resolved: net/smc: fix UAF in smc_cdc_rx_handler() by pinning the socket smc_cdc_rx_handl
CVE-2026-72339 In the Linux kernel, the following vulnerability has been resolved: qede: fix off-by-one in BD ring consumption on build_skb failure qede_rx_build_
CVE-2026-72348 In the Linux kernel, the following vulnerability has been resolved: netfilter: ip6tables: mark malformed IPv6 extension headers for hotdrop The ah,
CVE-2026-72351 In the Linux kernel, the following vulnerability has been resolved: gue: validate REMCSUM private option length GUE private flags can indicate that
CVE-2026-72366 In the Linux kernel, the following vulnerability has been resolved: netfs: Fix netfs_create_write_req() to handle async cache object creation netfs
CVE-2026-72381 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of fp->owner.name in durable handle owner check Two c
CVE-2026-72393 In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: don't cache shinfo across skb realloc fbnic_tx_lso() calls skb_cow_
CVE-2026-72398 In the Linux kernel, the following vulnerability has been resolved: sctp: add INIT verification after cookie unpacking In SCTP handshake, the INIT
CVE-2026-72399 In the Linux kernel, the following vulnerability has been resolved: net: enetc: check the number of BDs needed for xdp_frame The size of xdp_redire
CVE-2026-64530 In the Linux kernel, the following vulnerability has been resolved: net/sched: cls_api: Handle TC_ACT_CONSUMED in tcf_qevent_handle tcf_classify()
CVE-2026-72422 In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix use-after-free of conn->preauth_info in concurrent SMB2 NEGOTIATE co
CVE-2026-72429 In the Linux kernel, the following vulnerability has been resolved: ipv6: ioam: fix type confusion of dst_entry IOAM uses a dummy dst_entry(null_ds
CVE-2026-72436 In the Linux kernel, the following vulnerability has been resolved: netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types Sa
CVE-2026-72451 In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix xfrm state cache insertion race The xfrm input state cache insertion
CVE-2026-72466 In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Fix bcall rep leak and unbounded peek rpcrdma_is_bcall() decodes a re
CVE-2026-72472 In the Linux kernel, the following vulnerability has been resolved: nfs: use nfsi->rwsem to protect traversal of the file lock list Lingfeng identi
CVE-2026-72473 In the Linux kernel, the following vulnerability has been resolved: xprtrdma: Decouple req recycling from RPC completion rl_kref formerly served tw
CVE-2026-72491 In the Linux kernel, the following vulnerability has been resolved: net/9p: fix race condition on rdma->state in trans_rdma.c The rdma->state field
CVE-2026-74255 In the Linux kernel, the following vulnerability has been resolved: tipc: fix UAF in tipc_l2_send_msg() Syzbot reported a slab-use-after-free in ip
CVE-2026-74267 In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_codel: Do not call qdisc_tree_reduce_backlog during peek before r
CVE-2026-74268 In the Linux kernel, the following vulnerability has been resolved: tcp: clear sock_ops cb flags before force-closing a child socket A child socket
CVE-2026-74287 In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded address parameter length sctp_verify_asconf() and sctp_
CVE-2026-74310 In the Linux kernel, the following vulnerability has been resolved: vhost/net: complete zerocopy ubufs only once vhost-net initializes one ubuf_inf
CVE-2026-74345 In the Linux kernel, the following vulnerability has been resolved: RDMA/siw: Fix endpoint/socket association handling Disassociating a socket from
CVE-2026-74361 In the Linux kernel, the following vulnerability has been resolved: nvme: fix FDP fdpcidx bounds check The fdpcidx bounds check sets n = NUMFDPC +
CVE-2026-74376 In the Linux kernel, the following vulnerability has been resolved: md/raid10: reset read_slot when reusing r10bio for discard put_all_bios() alway
CVE-2026-74384 In the Linux kernel, the following vulnerability has been resolved: nvme-multipath: fix flex array size in struct nvme_ns_head struct nvme_ns_head
CVE-2026-74394 In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: fix integer overflow in immediate data length check imm_buf->len is
CVE-2026-74398 In the Linux kernel, the following vulnerability has been resolved: ipv6: addrconf: bail out of dad_failure when state is no longer POSTDAD addrcon
CVE-2026-74401 In the Linux kernel, the following vulnerability has been resolved: dlm: fix add msg handle in send_queue ordered In a benchmark scenario triggerin
CVE-2026-74406 In the Linux kernel, the following vulnerability has been resolved: vxlan: Fix potential null-ptr-deref in vxlan_gro_prepare_receive(). udp_tunnel_
CVE-2026-74427 In the Linux kernel, the following vulnerability has been resolved: afs: Fix netns teardown to cancel the preallocation charger Fix the teardown of
CVE-2026-74428 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix double unlock in rxrpc_recvmsg() Fix a double unlock in rxrpc_recvms
CVE-2026-74433 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix UAF in rxgk_issue_challenge() Fix rxgk_issue_challenge() to free the
CVE-2026-74434 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Don't move a peeked OOB message onto the pending queue rxrpc_recvmsg_oob
CVE-2026-74436 In the Linux kernel, the following vulnerability has been resolved: rxrpc: serialize kernel accept preallocation with socket teardown rxrpc_kernel_
CVE-2026-64535 In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: Fix potential UAF when ddgst mismatch Shivam Kumar found via vulnera
CVE-2026-74439 In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Clear Present bit before tearing down scalable-mode context entry d
CVE-2026-64534 In the Linux kernel, the following vulnerability has been resolved: nvmet-tcp: check INIT_FAILED before nvmet_req_uninit in digest error path In nv

Version: 7.0.0-31.31.1~24.04.1 2026-09-04 10:45:38 UTC

linux-riscv-7.0 (7.0.0-31.31.1~24.04.1) noble; urgency=medium

  * noble/linux-riscv-7.0: 7.0.0-31.31.1~24.04.1 -proposed tracker (LP: #2162409)

  [ Ubuntu-riscv: 7.0.0-31.31.1 ]

  * resolute/linux-riscv: 7.0.0-31.31.1 -proposed tracker (LP: #2162410)
  [ Ubuntu: 7.0.0-31.31 ]
  * resolute/linux: 7.0.0-31.31 -proposed tracker (LP: #2162413)
  * Backport: "firmware: arm_ffa: Respect firmware advertised RX/TX buffer
    size limits" (LP: #2162012)
    - firmware: arm_ffa: Respect firmware advertised RX/TX buffer size limits
  * Backlight regression (LP: #2161309)
    - Revert "drm/i915/backlight: Remove try_vesa_interface"
  * Resolute real-time patchset: 7.0.1-rt2 (LP: #2161757)
    - SAUCE: Reapply "serial: 8250: Switch to nbcon console"
    - SAUCE: Reapply "serial: 8250: Revert "drop lockdep annotation from
      serial8250_clear_IER()""
    - Real-time patchset 7.0.1-rt2
  * Delta_Ubuntu24.04_Ubuntu (Waston)_Suspend(S3) Stress Test Fail when the
    A400 is on by remote controller . (LP: #2161385)
    - SAUCE: drm/amd/display: Tear down dangling pipe on boot to fix s0i3
  * Camera output is vague and color is abnormal (LP: #2156972)
    - media: intel/ipu6: Improve DWC PHY HSFREQRANGE band selection for
      overlapping ranges
  * [SRU] Fix incorrect boot_display reporting on multi-GPU systems
    (LP: #2161036)
    - x86/video: Only fall back to vga_default_device() without screen info
  * Backport: complete perf_allow_* trio and use in drm/xe (LP: #2160654)
    - perf/core: out-of-line and export perf_allow_cpu/tracepoint()
    - drm/xe: gate observation streams with perf_allow_cpu()
  * Fix noise of audio output on Dell Pro QCM1255 after reboot (LP: #2160666)
    - ALSA: hda/realtek - Fixed Headphone noise issue for Dell QCM1255
  * Drop DEP-8 tests from kernel packages (LP: #2160302)
    - [Packaging] Drop DEP-8 tests from kernel source
  * The screen will show garbages by running glxgears fullscreen.
    (LP: #2158605)
    - SAUCE: drm/xe/display: skip FORCE_WC and vm_bound check for external
      dma-bufs
  * Audio shows Dummy Output on systems with Cirrus Logic cs42l43 codec
    (LP: #2156313)
    - ASoC: sdw_utils: fix missing component_name for cs42l43 part_id 0x2A3B
  * TPM2 key creation commands time out on some Infineon modules
    (LP: #2158883)
    - tpm: restore timeout for key creation commands
  * Fix Mic Mute LED no function on HP EliteBook (LP: #2158860)
    - ALSA: hda/realtek: Add LED fixup for HP EliteBook 6 G2i Laptops
  * Malformed HV_LINUX_VENDOR_ID breaks VM Availability Metric on Azure
    (LP: #2158462)
    - SAUCE: (no-up) hv: Fix supplied vendor ID
  * [SRU]Enable Realtek ALC287 + Cirrus CS35L56 Audio for Lenovo Yoga Pro 7
    (LP: #2156867)
    - ALSA: hda/realtek: ALC269 fixup for Lenovo Yoga Pro 7 15ASH111 audio
    - ALSA: hda/realtek:ALC269 fixup for Yoga Pro 7 15ASH11 mic mute LED
    - ASoC: amd: acp: Add DMI quirk for Lenovo Yoga Pro 7 15ASH11
  * iwlwifi failed to handle oversized command 0xC05 (LP: #2152688)
    - wifi: iwlwifi: mld: add support for iwl_mcc_allowed_ap_type_cmd v2
    - wifi: iwlwifi: mvm: avoid oversized UATS command copy
  * MT7925 wifi is hard blocked on Dell's machine (LP: #2158229)
    - SAUCE: Revert "wifi: mt76: mt7925: add rfkill_poll for hardware rfkill"
  * Resolute update: upstream stable patchset 2026-07-21 (LP: #2161462)
    - rust: str: use the "kernel vertical" imports style
    - rust: str: clean unused import for Rust >= 1.98
    - userfaultfd: gate must_wait writability check on pte_present()
    - device property: initialize the remaining fields of fwnode_handle in
      fwnode_init()
    - f2fs: fix potential deadlock in f2fs_balance_fs()
    - f2fs: fix potential deadlock in gc_merge path of f2fs_balance_fs()
    - f2fs: fix listxattr handling of corrupted xattr entries
    - net/sched: dualpi2: fix GSO backlog accounting
    - mm/khugepaged: write all dirty file folios when collapsing
    - slab: recognize @GFP parameter as optional in kernel-doc
    - perf trace beauty fcntl: Fix build with older kernel headers
    - KVM: x86: Move update_cr8_intercept() to lapic.c
    - KVM: VMX: Grab vmcs12 on CR8 interception update iff vCPU is in guest
      mode
    - KVM: x86: Unconditionally recompute CR8 intercept on PPR update
    - ACPI: CPPC: Suppress UBSAN warning caused by field misuse
    - ACPI: NFIT: core: Fix possible NULL pointer dereference
    - platform/x86: intel-hid: Protect ACPI notify handler against recursion
    - LoongArch: Add PIO for early access before ACPI PCI root register
    - rust: cpufreq: clean new `clippy::map_or_identity` lint for Rust 1.98.0
    - rust: block: fix GenDisk cleanup paths
    - rust: doctest: fix incorrect pattern in replacement
    - rust: Kbuild: set frame-pointer llvm module flag for
      CONFIG_FRAME_POINTER
    - futex/requeue: Revert "Prevent NULL pointer dereference in
      remove_waiter() on self-deadlock""
    - perf/core: Detach event groups during remove_on_exec
    - rust: kasan: KASAN+RUST requires clang
    - fscrypt: Replace mk_users keyring with simple list
    - usb: gadget: function: rndis: add length check to response query
    - usb: gadget: function: rndis: add length check for header
    - iio: accel: bmc150: clamp the device-reported FIFO frame count
    - iio: accel: kxsd9: fix runtime PM imbalance on write_raw() error
    - iio: adc: ad7380: select REGMAP
    - iio: adc: ad7768-1: Select GPIOLIB
    - iio: adc: ad7779: add missing 'select IIO_TRIGGERED_BUFFER' to Kconfig
    - iio: adc: ad_sigma_delta: fix clear_pending_event for registerless
      devices
    - iio: adc: ad_sigma_delta: fix CS held asserted and state leaks
    - iio: adc: lpc32xx: Initialize completion before requesting IRQ
    - iio: adc: spear: Initialize completion before requesting IRQ
    - iio: adc: ti-ads1119: fix PM reference leak in buffer preenable
    - iio: adc: ti-ads124s08: Return reset GPIO lookup errors
    - iio: backend: fix uninitialized data in debugfs

Source diff to previous version
2161309 Backlight regression
2161757 Resolute real-time patchset: 7.0.1-rt2
2161385 Delta_Ubuntu24.04_Ubuntu (Waston)_Suspend(S3) Stress Test Fail when the A400 is on by remote controller .
2160654 Backport: complete perf_allow_* trio and use in drm/xe
2160666 Fix noise of audio output on Dell Pro QCM1255 after reboot
2160302 Drop DEP-8 tests from kernel packages
2158605 The screen will show garbages by running glxgears fullscreen.
2156313 Audio shows Dummy Output on systems with Cirrus Logic cs42l43 codec
2158883 TPM2 key creation commands time out on some Infineon modules
2158860 Fix Mic Mute LED no function on HP EliteBook
2158462 Malformed HV_LINUX_VENDOR_ID breaks VM Availability Metric on Azure
2161462 Resolute update: upstream stable patchset 2026-07-21
2160733 Resolute update: upstream stable patchset 2026-07-15
2158815 Resolute update: v7.0.14 upstream stable release
2158003 Resolute update: v7.0.13 upstream stable release
2158267 Performance regression causes SDXL inference slowdown (~42x)
1786013 Packaging resync
CVE-2026-53361 In the Linux kernel, the following vulnerability has been resolved: af_unix: Set gc_in_progress to true in unix_gc(). Igor Ushakov reported that un
CVE-2026-53362 In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(),
CVE-2026-53325 In the Linux kernel, the following vulnerability has been resolved: agp/amd64: Fix broken error propagation in agp_amd64_probe() A NULL pointer der
CVE-2026-52938 In the Linux kernel, the following vulnerability has been resolved: bpf: Fix NULL pointer dereference in bpf_sk_storage_clone and diag paths bpf_se
CVE-2025-10263 Arm C1-Ultra, C1-Premium, Neoverse V3 & V3AE, Neoverse V2, Neoverse V1, Neoverse-N2, Neoverse-N1, Cortex-X925, Cortex-X4, Cortex-X3, Cortex-X2, Corte
CVE-2026-46300 In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() c
CVE-2026-64531 In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: reject oversized nested action attrs Open vSwitch stores gene
CVE-2026-46331 In the Linux kernel, the following vulnerability has been resolved: net/sched: fix pedit partial COW leading to page cache corruption tcf_pedit_act
CVE-2026-53212 In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tunnel: fix use-after-free on object destroy nft_tunnel_obj_dest
CVE-2026-53359 In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Fix shadow paging use-after-free due to unexpected role Commit 0cb2af
CVE-2026-53131 In the Linux kernel, the following vulnerability has been resolved: netfilter: require Ethernet MAC header before using eth_hdr() `ip6t_eui64`, `xt
CVE-2026-53151 In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix the ACK parser to extract the SACK table for parsing Fix modificatio
CVE-2026-53175 In the Linux kernel, the following vulnerability has been resolved: inet: frags: fix use-after-free caused by the fqdir_pre_exit() flush On netns t
CVE-2026-53176 In the Linux kernel, the following vulnerability has been resolved: IB/isert: Reject login PDUs shorter than ISER_HEADERS_LEN In drivers/infiniband
CVE-2026-53186 In the Linux kernel, the following vulnerability has been resolved: RDMA/srp: bound SRP_RSP sense copy by the received length srp_process_rsp() cop
CVE-2026-53215 In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: refill RX buffers before XDP or skb use The RX error path returns t
CVE-2026-53216 In the Linux kernel, the following vulnerability has been resolved: net: mvpp2: limit XDP frame size to the RX buffer mvpp2 has short and long BM p
CVE-2026-53221 In the Linux kernel, the following vulnerability has been resolved: ip6_vti: fix incorrect tunnel matching in vti6_tnl_lookup() In vti6_tnl_lookup(
CVE-2026-53224 In the Linux kernel, the following vulnerability has been resolved: sctp: validate embedded INIT chunk and address list lengths in cookie sctp_unpa
CVE-2026-53225 In the Linux kernel, the following vulnerability has been resolved: sctp: fix uninit-value in __sctp_rcv_asconf_lookup() __sctp_rcv_asconf_lookup()
CVE-2026-53228 In the Linux kernel, the following vulnerability has been resolved: ipv6: sit: reload inner IPv6 header after GSO offloads ipip6_tunnel_xmit() cach
CVE-2026-52924 In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only
CVE-2026-53246 In the Linux kernel, the following vulnerability has been resolved: sctp: validate cached peer INIT chunk length in COOKIE_ECHO processing When a l
CVE-2026-53247 In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: Fix use-after-free in metadata dst teardown mtk_fre
CVE-2026-53260 In the Linux kernel, the following vulnerability has been resolved: tcp: Add preempt_{disable,enable}_nested() in reqsk_queue_hash_req(). syzbot re

Version: 7.0.0-30.30.1~24.04.1 2026-08-27 17:07:33 UTC
No changelog available yet.
Source diff to previous version

Version: 7.0.0-28.28.1~24.04.3 2026-08-25 22:07:44 UTC
No changelog available yet.
Source diff to previous version

Version: 7.0.0-27.27.1~24.04.2 2026-07-01 14:07:53 UTC

  linux-riscv-7.0 (7.0.0-27.27.1~24.04.2) noble; urgency=medium

  * noble/linux-riscv-7.0: 7.0.0-27.27.1~24.04.2 -proposed tracker (LP: #2158069)




About   -   Send Feedback to @ubuntu_updates