diff --git a/Makefile.rhelver b/Makefile.rhelver index a51a0b73c..e76ae6ce9 100644 --- a/Makefile.rhelver +++ b/Makefile.rhelver @@ -12,7 +12,7 @@ RHEL_MINOR = 2 # # Use this spot to avoid future merge conflicts. # Do not trim this comment. -RHEL_RELEASE = 131 +RHEL_RELEASE = 134 # # RHEL_REBASE_NUM diff --git a/kernel-aarch64-64k-debug-rhel.config b/kernel-aarch64-64k-debug-rhel.config index 6eec11750..cdc6f5c5c 100644 --- a/kernel-aarch64-64k-debug-rhel.config +++ b/kernel-aarch64-64k-debug-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-64k-rhel.config b/kernel-aarch64-64k-rhel.config index 245714976..4384b35f2 100644 --- a/kernel-aarch64-64k-rhel.config +++ b/kernel-aarch64-64k-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-debug-rhel.config b/kernel-aarch64-debug-rhel.config index 53890a4ff..0b724054a 100644 --- a/kernel-aarch64-debug-rhel.config +++ b/kernel-aarch64-debug-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-rhel.config b/kernel-aarch64-rhel.config index d32d39ffa..f5e247f0f 100644 --- a/kernel-aarch64-rhel.config +++ b/kernel-aarch64-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-rt-64k-debug-rhel.config b/kernel-aarch64-rt-64k-debug-rhel.config index edb1405af..d413cfd27 100644 --- a/kernel-aarch64-rt-64k-debug-rhel.config +++ b/kernel-aarch64-rt-64k-debug-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-rt-64k-rhel.config b/kernel-aarch64-rt-64k-rhel.config index f8d6ed958..973d4de55 100644 --- a/kernel-aarch64-rt-64k-rhel.config +++ b/kernel-aarch64-rt-64k-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-rt-debug-rhel.config b/kernel-aarch64-rt-debug-rhel.config index b6e716117..60d6b7fc0 100644 --- a/kernel-aarch64-rt-debug-rhel.config +++ b/kernel-aarch64-rt-debug-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-aarch64-rt-rhel.config b/kernel-aarch64-rt-rhel.config index 774ffb3a6..9505e14a8 100644 --- a/kernel-aarch64-rt-rhel.config +++ b/kernel-aarch64-rt-rhel.config @@ -252,7 +252,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set # CONFIG_APDS9802ALS is not set @@ -260,7 +259,6 @@ CONFIG_AMPERE_ERRATUM_AC04_CPU_23=y # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-ppc64le-debug-rhel.config b/kernel-ppc64le-debug-rhel.config index a39d5d3f1..9bcda0419 100644 --- a/kernel-ppc64le-debug-rhel.config +++ b/kernel-ppc64le-debug-rhel.config @@ -239,7 +239,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -247,7 +246,6 @@ CONFIG_APDS9802ALS=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-ppc64le-rhel.config b/kernel-ppc64le-rhel.config index 1d0b11780..e5d93cd09 100644 --- a/kernel-ppc64le-rhel.config +++ b/kernel-ppc64le-rhel.config @@ -239,7 +239,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -247,7 +246,6 @@ CONFIG_APDS9802ALS=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-riscv64-debug-rhel.config b/kernel-riscv64-debug-rhel.config index 022114532..e0f1491fa 100644 --- a/kernel-riscv64-debug-rhel.config +++ b/kernel-riscv64-debug-rhel.config @@ -241,7 +241,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -249,7 +248,6 @@ CONFIG_APDS9802ALS=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-riscv64-rhel.config b/kernel-riscv64-rhel.config index e4debeff8..8983dfb8f 100644 --- a/kernel-riscv64-rhel.config +++ b/kernel-riscv64-rhel.config @@ -241,7 +241,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -249,7 +248,6 @@ CONFIG_APDS9802ALS=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y # CONFIG_AQTION is not set CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set diff --git a/kernel-x86_64-debug-rhel.config b/kernel-x86_64-debug-rhel.config index fc6c2c4f5..aa26b7381 100644 --- a/kernel-x86_64-debug-rhel.config +++ b/kernel-x86_64-debug-rhel.config @@ -264,7 +264,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -273,7 +272,6 @@ CONFIG_APPLE_GMUX=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y CONFIG_AQTION=m CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set @@ -3869,6 +3867,7 @@ CONFIG_MITIGATION_SRBDS=y CONFIG_MITIGATION_SRSO=y CONFIG_MITIGATION_SSB=y CONFIG_MITIGATION_TAA=y +CONFIG_MITIGATION_TSA=y CONFIG_MITIGATION_UNRET_ENTRY=y # CONFIG_MK8 is not set CONFIG_MLX4_CORE_GEN2=y diff --git a/kernel-x86_64-rhel.config b/kernel-x86_64-rhel.config index 871349f82..eeae58e5a 100644 --- a/kernel-x86_64-rhel.config +++ b/kernel-x86_64-rhel.config @@ -264,7 +264,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -273,7 +272,6 @@ CONFIG_APPLE_GMUX=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y CONFIG_AQTION=m CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set @@ -3849,6 +3847,7 @@ CONFIG_MITIGATION_SRBDS=y CONFIG_MITIGATION_SRSO=y CONFIG_MITIGATION_SSB=y CONFIG_MITIGATION_TAA=y +CONFIG_MITIGATION_TSA=y CONFIG_MITIGATION_UNRET_ENTRY=y # CONFIG_MK8 is not set CONFIG_MLX4_CORE_GEN2=y diff --git a/kernel-x86_64-rt-debug-rhel.config b/kernel-x86_64-rt-debug-rhel.config index 986f4eb1f..629c5bd7c 100644 --- a/kernel-x86_64-rt-debug-rhel.config +++ b/kernel-x86_64-rt-debug-rhel.config @@ -264,7 +264,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -273,7 +272,6 @@ CONFIG_APPLE_GMUX=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y CONFIG_AQTION=m CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set @@ -3910,6 +3908,7 @@ CONFIG_MITIGATION_SRBDS=y CONFIG_MITIGATION_SRSO=y CONFIG_MITIGATION_SSB=y CONFIG_MITIGATION_TAA=y +CONFIG_MITIGATION_TSA=y CONFIG_MITIGATION_UNRET_ENTRY=y # CONFIG_MK8 is not set CONFIG_MLX4_CORE_GEN2=y diff --git a/kernel-x86_64-rt-rhel.config b/kernel-x86_64-rt-rhel.config index 6c71ed294..40deab51c 100644 --- a/kernel-x86_64-rt-rhel.config +++ b/kernel-x86_64-rt-rhel.config @@ -264,7 +264,6 @@ CONFIG_AMPERE_ERRATUM_AC03_CPU_38=y # CONFIG_ANDROID_BINDER_IPC is not set # CONFIG_ANON_VMA_NAME is not set # CONFIG_AOSONG_AGS02MA is not set -# CONFIG_AP_DEBUG is not set # CONFIG_APDS9300 is not set # CONFIG_APDS9306 is not set CONFIG_APDS9802ALS=m @@ -273,7 +272,6 @@ CONFIG_APPLE_GMUX=m # CONFIG_APPLE_MFI_FASTCHARGE is not set CONFIG_APPLE_PROPERTIES=y # CONFIG_APPLICOM is not set -CONFIG_AP=y CONFIG_AQTION=m CONFIG_AQUANTIA_PHY=m # CONFIG_AR5523 is not set @@ -3890,6 +3888,7 @@ CONFIG_MITIGATION_SRBDS=y CONFIG_MITIGATION_SRSO=y CONFIG_MITIGATION_SSB=y CONFIG_MITIGATION_TAA=y +CONFIG_MITIGATION_TSA=y CONFIG_MITIGATION_UNRET_ENTRY=y # CONFIG_MK8 is not set CONFIG_MLX4_CORE_GEN2=y diff --git a/kernel.changelog b/kernel.changelog index fea9c7e41..e95aa8507 100644 --- a/kernel.changelog +++ b/kernel.changelog @@ -1,3 +1,126 @@ +* Wed Sep 24 2025 Scott Weaver [6.12.0-134.el10] +- EDAC/amd64: Correct number of UMCs for family 19h models 70h-7fh (Joel Savitz) [RHEL-102253] +- platform/x86/intel: power-domains: Use topology_logical_package_id() for package ID (Steve Best) [RHEL-115105] +- dpll: zl3073x: Implement devlink flash callback (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Refactor DPLL initialization (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add firmware loading functionality (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add low-level flash functions (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add functions to access hardware registers (Ivan Vecera) [RHEL-115367] +- x86/mce: Make sure CMCI banks are cleared during shutdown on Intel (Steve Best) [RHEL-113399] +- x86/mce: Make several functions return bool (Steve Best) [RHEL-113399] +- x86/mce/intel: Use MCG_BANKCNT_MASK instead of 0xff (Steve Best) [RHEL-113399] +- pinctrl: intel: fix build warnings about export.h (Steve Best) [RHEL-113190] +- pinctrl: intel: drop repeated config dependency (Steve Best) [RHEL-113190] +- pinctrl: tangier: use devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: cherryview: use devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: baytrail: copy communities using devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: intel: copy communities using devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: intel: Fix wrong bypass assignment in intel_pinctrl_probe_pwm() (Steve Best) [RHEL-113190] +- pinctrl: intel: Import PWM_LPSS namespace for devm_pwm_lpss_probe() (Steve Best) [RHEL-113190] +- pinctrl: lynxpoint: Use dedicated helpers for chained IRQ handlers (Steve Best) [RHEL-113190] +- pinctrl: baytrail: Use dedicated helpers for chained IRQ handlers (Steve Best) [RHEL-113190] +- pinctrl: elkhartlake: Add support for DSW community (Steve Best) [RHEL-113190] +- pinctrl: intel: Add a human readable decoder for pull bias values (Steve Best) [RHEL-113190] +- net: stmmac: fix TSO DMA API usage causing oops (Izabela Bakollari) [RHEL-84762] +- octeon_ep: Fix host hang issue during device reboot (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: Resolve netdevice usage count issue (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: add ndo ops for VFs in PF driver (Kamal Heib) [RHEL-90058] +- net: marvell: use ethtool string helpers (Kamal Heib) [RHEL-90058] +- io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CKI Backport Bot) [RHEL-114338] {CVE-2025-39698} +- net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree (CKI Backport Bot) [RHEL-106587] {CVE-2025-38468} +- dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver before using (Audra Mitchell) [RHEL-106609] {CVE-2025-38369} +- ethtool: Block setting of symmetric RSS when non-symmetric rx-flow-hash is requested (CKI Backport Bot) [RHEL-107023] +- flexfiles/pNFS: fix NULL checks on result of ff_layout_choose_ds_for_read (Benjamin Coddington) [RHEL-110294] +- pNFS/flexfiles: don't attempt pnfs on fatal DS errors (Benjamin Coddington) [RHEL-110294] +- HID: core: Harden s32ton() against conversion to 0 bits (Benjamin Tissoires) [RHEL-111038] {CVE-2025-38556} +- Revert "KVM: arm64: Hide ID_AA64MMFR2_EL1.NV from guest and userspace" (Eric Auger) [RHEL-112491] +- fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass (Audra Mitchell) [RHEL-106613] {CVE-2025-38396} +- Revert "e1000e: change k1 configuration on MTP and later platforms" (Michal Schmidt) [RHEL-109782] +- s390/sclp: Fix SCCB present check (CKI Backport Bot) [RHEL-113560] {CVE-2025-39694} +- idpf: convert control queue mutex to a spinlock (CKI Backport Bot) [RHEL-106059] {CVE-2025-38392} +- redhat/configs: Enable CONFIG_MITIGATION_TSA for x86 (Waiman Long) [RHEL-83893] +- x86/process: Move the buffer clearing before MONITOR (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/microcode/AMD: Add TSA microcode SHAs (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- KVM: SVM: Advertise TSA CPUID bits to guests (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Add a Transient Scheduler Attacks mitigation (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Rename MDS machinery to something more generic (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Fix spectre_v2 mitigation default on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure ITS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Fix SRSO reporting on Zen1/2 with SMT disabled (Waiman Long) [RHEL-83893] +- x86/idle: Use MONITOR and MWAIT mnemonics in (Waiman Long) [RHEL-83893] +- x86/idle: Remove .s output beautifying delimiters from simpler asm() templates (Waiman Long) [RHEL-83893] +- x86/idle: Remove MFENCEs for X86_BUG_CLFLUSH_MONITOR in mwait_idle_with_hints() and prefer_mwait_c1_over_halt() (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_APX (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_AMD_HETEROGENEOUS_CORES (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_CLEAR_BHB_LOOP_ON_VMEXIT (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Clean up formatting (Waiman Long) [RHEL-83893] +- x86/bugs: Remove X86_BUG_MMIO_UNKNOWN (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRSO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure L1TF mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SSB mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure BHI mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2_user mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure retbleed mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Allow retbleed=stuff only on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v1 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure GDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRBDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Remove md_clear_*_mitigation() (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure RFDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MMIO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure TAA mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Rename mmio_stale_data_clear to cpu_buf_vm_clear (Waiman Long) [RHEL-83893] +- x86/microcode: Consolidate the loader enablement checking (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Fix __apply_microcode_amd()'s return value (Waiman Long) [RHEL-83893] {CVE-2025-22047} +- x86: move ZMM exclusion list into CPU feature flag (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add some forgotten models to the SHA check (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Load only SHA256-checksummed patches (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add get_patch_level() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Get rid of the _load_microcode_amd() forward declaration (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Merge early_apply_microcode() into its single callsite (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove unused save_microcode_in_initrd_amd() declarations (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ugly linebreak in __verify_patch_section() signature (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ret local var in early_apply_microcode() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Have __apply_microcode_amd() return bool (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Return bool from find_blobs_in_containers() (Waiman Long) [RHEL-83893] +- x86/cpu: Fix formatting of cpuid_bits[] in scattered.c (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_AMD_WORKLOAD_CLASS feature bit (Waiman Long) [RHEL-83893] +Resolves: RHEL-102253, RHEL-113190, RHEL-113399, RHEL-115367, RHEL-115105 + +* Tue Sep 23 2025 CKI KWF Bot [6.12.0-133.el10] +- drm/virtio: implement virtio_gpu_shutdown (Eric Auger) [RHEL-90224] +- io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CKI Backport Bot) [RHEL-114339] {CVE-2025-39698} +- redhat: Move the CONFIG_AP and CONFIG_AP_DEBUG switches to the s390x subfolder (Thomas Huth) [RHEL-91273] +Resolves: RHEL-114339, RHEL-90224, RHEL-91273 + +* Fri Sep 19 2025 CKI KWF Bot [6.12.0-132.el10] +- RDMA/mana_ib: add support of multiple ports (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: add additional port counters (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: Fix DSCP value in modify QP (Maxim Levitsky) [RHEL-109580] +- net: mana: fix spelling for mana_gd_deregiser_irq() (Maxim Levitsky) [RHEL-109580] +- net: mana: Handle Reset Request from MANA NIC (Maxim Levitsky) [RHEL-109580] +- net: mana: Handle unsupported HWC commands (Maxim Levitsky) [RHEL-109580] +- net: mana: Set tx_packets to post gso processing packet count (Maxim Levitsky) [RHEL-109580] +- net: mana: Allocate MSI-X vectors dynamically (Maxim Levitsky) [RHEL-109580] +- net: mana: Allow irq_setup() to skip cpus for affinity (Maxim Levitsky) [RHEL-109580] +- net: mana: explain irq_setup() algorithm (Maxim Levitsky) [RHEL-109580] +- PCI: hv: Allow dynamic MSI-X vector allocation (Maxim Levitsky) [RHEL-109580] +- PCI/MSI: Export pci_msix_prepare_desc() for dynamic MSI-X allocations (Maxim Levitsky) [RHEL-109580] +- net: mana: Add handler for hardware servicing events (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: Add device statistics support (Maxim Levitsky) [RHEL-109580] +- net: mana: Expose additional hardware counters for drop and TC via ethtool. (Maxim Levitsky) [RHEL-109580] +- net: mana: Fix warnings for missing export.h header inclusion (Maxim Levitsky) [RHEL-109580] +- tunnels: reset the GSO metadata before reusing the skb (Antoine Tenart) [RHEL-113911] +- netfilter: conntrack: helper: Replace -EEXIST by -EBUSY (Phil Sutter) [RHEL-108858] +- s390/sclp: Fix SCCB present check (CKI Backport Bot) [RHEL-113563] {CVE-2025-39694} +Resolves: RHEL-108858, RHEL-109580, RHEL-113563, RHEL-113911 + * Wed Sep 17 2025 Scott Weaver [6.12.0-131.el10] - config: new config in drivers/phy (Izabela Bakollari) [RHEL-106145] - net: phy: realtek: remove unsed RTL821x_PHYSR* macros (Izabela Bakollari) [RHEL-106145] @@ -1131,6 +1254,82 @@ Resolves: RHEL-101827, RHEL-102692, RHEL-104142, RHEL-104442, RHEL-110366, RHEL- - redhat: bump RHEL_MINOR for 10.2 (Scott Weaver) Resolves: RHEL-102876, RHEL-104319, RHEL-104327, RHEL-105599, RHEL-105606, RHEL-95630 +* Mon Sep 22 2025 Jan Stancek [6.12.0-124.3.1.el10_1] +- net: stmmac: fix TSO DMA API usage causing oops (Izabela Bakollari) [RHEL-84762] +- octeon_ep: Fix host hang issue during device reboot (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: Resolve netdevice usage count issue (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: add ndo ops for VFs in PF driver (Kamal Heib) [RHEL-90058] +- net: marvell: use ethtool string helpers (Kamal Heib) [RHEL-90058] +- io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CKI Backport Bot) [RHEL-114338] {CVE-2025-39698} +- net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree (CKI Backport Bot) [RHEL-106587] {CVE-2025-38468} +- dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver before using (Audra Mitchell) [RHEL-106609] {CVE-2025-38369} +- ethtool: Block setting of symmetric RSS when non-symmetric rx-flow-hash is requested (CKI Backport Bot) [RHEL-107023] +Resolves: RHEL-106587, RHEL-106609, RHEL-107023, RHEL-114338, RHEL-84762, RHEL-90058 + +* Mon Sep 15 2025 Julio Faracco [6.12.0-124.2.1.el10_1] +- flexfiles/pNFS: fix NULL checks on result of ff_layout_choose_ds_for_read (Benjamin Coddington) [RHEL-110294] +- pNFS/flexfiles: don't attempt pnfs on fatal DS errors (Benjamin Coddington) [RHEL-110294] +- HID: core: Harden s32ton() against conversion to 0 bits (Benjamin Tissoires) [RHEL-111038] {CVE-2025-38556} +- Revert "KVM: arm64: Hide ID_AA64MMFR2_EL1.NV from guest and userspace" (Eric Auger) [RHEL-112491] +- fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass (Audra Mitchell) [RHEL-106613] {CVE-2025-38396} +- Revert "e1000e: change k1 configuration on MTP and later platforms" (Michal Schmidt) [RHEL-109782] +- s390/sclp: Fix SCCB present check (CKI Backport Bot) [RHEL-113560] {CVE-2025-39694} +- idpf: convert control queue mutex to a spinlock (CKI Backport Bot) [RHEL-106059] {CVE-2025-38392} +- redhat/configs: Enable CONFIG_MITIGATION_TSA for x86 (Waiman Long) [RHEL-83893] +- x86/process: Move the buffer clearing before MONITOR (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/microcode/AMD: Add TSA microcode SHAs (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- KVM: SVM: Advertise TSA CPUID bits to guests (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Add a Transient Scheduler Attacks mitigation (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Rename MDS machinery to something more generic (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Fix spectre_v2 mitigation default on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure ITS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Fix SRSO reporting on Zen1/2 with SMT disabled (Waiman Long) [RHEL-83893] +- x86/idle: Use MONITOR and MWAIT mnemonics in (Waiman Long) [RHEL-83893] +- x86/idle: Remove .s output beautifying delimiters from simpler asm() templates (Waiman Long) [RHEL-83893] +- x86/idle: Remove MFENCEs for X86_BUG_CLFLUSH_MONITOR in mwait_idle_with_hints() and prefer_mwait_c1_over_halt() (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_APX (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_AMD_HETEROGENEOUS_CORES (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_CLEAR_BHB_LOOP_ON_VMEXIT (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Clean up formatting (Waiman Long) [RHEL-83893] +- x86/bugs: Remove X86_BUG_MMIO_UNKNOWN (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRSO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure L1TF mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SSB mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure BHI mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2_user mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure retbleed mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Allow retbleed=stuff only on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v1 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure GDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRBDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Remove md_clear_*_mitigation() (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure RFDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MMIO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure TAA mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Rename mmio_stale_data_clear to cpu_buf_vm_clear (Waiman Long) [RHEL-83893] +- x86/microcode: Consolidate the loader enablement checking (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Fix __apply_microcode_amd()'s return value (Waiman Long) [RHEL-83893] {CVE-2025-22047} +- x86: move ZMM exclusion list into CPU feature flag (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add some forgotten models to the SHA check (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Load only SHA256-checksummed patches (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add get_patch_level() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Get rid of the _load_microcode_amd() forward declaration (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Merge early_apply_microcode() into its single callsite (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove unused save_microcode_in_initrd_amd() declarations (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ugly linebreak in __verify_patch_section() signature (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ret local var in early_apply_microcode() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Have __apply_microcode_amd() return bool (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Return bool from find_blobs_in_containers() (Waiman Long) [RHEL-83893] +- x86/cpu: Fix formatting of cpuid_bits[] in scattered.c (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_AMD_WORKLOAD_CLASS feature bit (Waiman Long) [RHEL-83893] +Resolves: RHEL-106059, RHEL-106613, RHEL-109782, RHEL-110294, RHEL-111038, RHEL-112491, RHEL-113560, RHEL-83893, RHEL-83903 + * Mon Sep 08 2025 Julio Faracco [6.12.0-124.1.1.el10_1] - cxl: core/region - ignore interleave granularity when ways=1 (John W. Linville) [RHEL-107880] - posix-cpu-timers: fix race between handle_posix_cpu_timers() and posix_cpu_timer_del() (CKI Backport Bot) [RHEL-112787] {CVE-2025-38352} diff --git a/kernel.spec b/kernel.spec index 8328586c1..3968971a9 100644 --- a/kernel.spec +++ b/kernel.spec @@ -176,15 +176,15 @@ Summary: The Linux kernel %define specrpmversion 6.12.0 %define specversion 6.12.0 %define patchversion 6.12 -%define pkgrelease 131 +%define pkgrelease 134 %define kversion 6 -%define tarfile_release 6.12.0-131.el10 +%define tarfile_release 6.12.0-134.el10 # This is needed to do merge window version magic %define patchlevel 12 # This allows pkg_release to have configurable %%{?dist} tag -%define specrelease 131%{?buildid}%{?dist} +%define specrelease 134%{?buildid}%{?dist} # This defines the kabi tarball version -%define kabiversion 6.12.0-131.el10 +%define kabiversion 6.12.0-134.el10 # If this variable is set to 1, a bpf selftests build failure will cause a # fatal kernel package build error @@ -4388,14 +4388,14 @@ fi\ # # %changelog -* Thu Sep 25 2025 Eduard Abdullin - 6.12.0-131 +* Thu Sep 25 2025 Eduard Abdullin - 6.12.0-134 - Debrand for AlmaLinux OS - Use AlmaLinux OS secure boot cert -* Thu Sep 25 2025 Neal Gompa - 6.12.0-131 +* Thu Sep 25 2025 Neal Gompa - 6.12.0-134 - Enable Btrfs support for all kernel variants -* Thu Sep 25 2025 Andrew Lukoshko - 6.12.0-131 +* Thu Sep 25 2025 Andrew Lukoshko - 6.12.0-134 - hpsa: bring back deprecated PCI ids #CFHack #CFHack2024 - mptsas: bring back deprecated PCI ids #CFHack #CFHack2024 - megaraid_sas: bring back deprecated PCI ids #CFHack #CFHack2024 @@ -4406,6 +4406,126 @@ fi\ - kernel/rh_messages.h: enable all disabled pci devices by moving to unmaintained +* Wed Sep 24 2025 Scott Weaver [6.12.0-134.el10] +- EDAC/amd64: Correct number of UMCs for family 19h models 70h-7fh (Joel Savitz) [RHEL-102253] +- platform/x86/intel: power-domains: Use topology_logical_package_id() for package ID (Steve Best) [RHEL-115105] +- dpll: zl3073x: Implement devlink flash callback (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Refactor DPLL initialization (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add firmware loading functionality (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add low-level flash functions (Ivan Vecera) [RHEL-115367] +- dpll: zl3073x: Add functions to access hardware registers (Ivan Vecera) [RHEL-115367] +- x86/mce: Make sure CMCI banks are cleared during shutdown on Intel (Steve Best) [RHEL-113399] +- x86/mce: Make several functions return bool (Steve Best) [RHEL-113399] +- x86/mce/intel: Use MCG_BANKCNT_MASK instead of 0xff (Steve Best) [RHEL-113399] +- pinctrl: intel: fix build warnings about export.h (Steve Best) [RHEL-113190] +- pinctrl: intel: drop repeated config dependency (Steve Best) [RHEL-113190] +- pinctrl: tangier: use devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: cherryview: use devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: baytrail: copy communities using devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: intel: copy communities using devm_kmemdup_array() (Steve Best) [RHEL-113190] +- pinctrl: intel: Fix wrong bypass assignment in intel_pinctrl_probe_pwm() (Steve Best) [RHEL-113190] +- pinctrl: intel: Import PWM_LPSS namespace for devm_pwm_lpss_probe() (Steve Best) [RHEL-113190] +- pinctrl: lynxpoint: Use dedicated helpers for chained IRQ handlers (Steve Best) [RHEL-113190] +- pinctrl: baytrail: Use dedicated helpers for chained IRQ handlers (Steve Best) [RHEL-113190] +- pinctrl: elkhartlake: Add support for DSW community (Steve Best) [RHEL-113190] +- pinctrl: intel: Add a human readable decoder for pull bias values (Steve Best) [RHEL-113190] +- net: stmmac: fix TSO DMA API usage causing oops (Izabela Bakollari) [RHEL-84762] +- octeon_ep: Fix host hang issue during device reboot (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: Resolve netdevice usage count issue (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep_vf: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: update tx/rx stats locally for persistence (Kamal Heib) [RHEL-90058] +- octeon_ep: remove firmware stats fetch in ndo_get_stats64 (Kamal Heib) [RHEL-90058] +- octeon_ep: add ndo ops for VFs in PF driver (Kamal Heib) [RHEL-90058] +- net: marvell: use ethtool string helpers (Kamal Heib) [RHEL-90058] +- io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CKI Backport Bot) [RHEL-114338] {CVE-2025-39698} +- net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree (CKI Backport Bot) [RHEL-106587] {CVE-2025-38468} +- dmaengine: idxd: Check availability of workqueue allocated by idxd wq driver before using (Audra Mitchell) [RHEL-106609] {CVE-2025-38369} +- ethtool: Block setting of symmetric RSS when non-symmetric rx-flow-hash is requested (CKI Backport Bot) [RHEL-107023] +- flexfiles/pNFS: fix NULL checks on result of ff_layout_choose_ds_for_read (Benjamin Coddington) [RHEL-110294] +- pNFS/flexfiles: don't attempt pnfs on fatal DS errors (Benjamin Coddington) [RHEL-110294] +- HID: core: Harden s32ton() against conversion to 0 bits (Benjamin Tissoires) [RHEL-111038] {CVE-2025-38556} +- Revert "KVM: arm64: Hide ID_AA64MMFR2_EL1.NV from guest and userspace" (Eric Auger) [RHEL-112491] +- fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass (Audra Mitchell) [RHEL-106613] {CVE-2025-38396} +- Revert "e1000e: change k1 configuration on MTP and later platforms" (Michal Schmidt) [RHEL-109782] +- s390/sclp: Fix SCCB present check (CKI Backport Bot) [RHEL-113560] {CVE-2025-39694} +- idpf: convert control queue mutex to a spinlock (CKI Backport Bot) [RHEL-106059] {CVE-2025-38392} +- redhat/configs: Enable CONFIG_MITIGATION_TSA for x86 (Waiman Long) [RHEL-83893] +- x86/process: Move the buffer clearing before MONITOR (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/microcode/AMD: Add TSA microcode SHAs (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- KVM: SVM: Advertise TSA CPUID bits to guests (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Add a Transient Scheduler Attacks mitigation (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Rename MDS machinery to something more generic (Waiman Long) [RHEL-83893 RHEL-83903] {CVE-2024-36357 CVE-2024-36350} +- x86/bugs: Fix spectre_v2 mitigation default on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure ITS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Fix SRSO reporting on Zen1/2 with SMT disabled (Waiman Long) [RHEL-83893] +- x86/idle: Use MONITOR and MWAIT mnemonics in (Waiman Long) [RHEL-83893] +- x86/idle: Remove .s output beautifying delimiters from simpler asm() templates (Waiman Long) [RHEL-83893] +- x86/idle: Remove MFENCEs for X86_BUG_CLFLUSH_MONITOR in mwait_idle_with_hints() and prefer_mwait_c1_over_halt() (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_APX (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_AMD_HETEROGENEOUS_CORES (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Shorten X86_FEATURE_CLEAR_BHB_LOOP_ON_VMEXIT (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Clean up formatting (Waiman Long) [RHEL-83893] +- x86/bugs: Remove X86_BUG_MMIO_UNKNOWN (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRSO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure L1TF mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SSB mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure BHI mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v2_user mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure retbleed mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Allow retbleed=stuff only on Intel (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure spectre_v1 mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure GDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure SRBDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Remove md_clear_*_mitigation() (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure RFDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MMIO mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure TAA mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Restructure MDS mitigation (Waiman Long) [RHEL-83893] +- x86/bugs: Rename mmio_stale_data_clear to cpu_buf_vm_clear (Waiman Long) [RHEL-83893] +- x86/microcode: Consolidate the loader enablement checking (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Fix __apply_microcode_amd()'s return value (Waiman Long) [RHEL-83893] {CVE-2025-22047} +- x86: move ZMM exclusion list into CPU feature flag (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add some forgotten models to the SHA check (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Load only SHA256-checksummed patches (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Add get_patch_level() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Get rid of the _load_microcode_amd() forward declaration (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Merge early_apply_microcode() into its single callsite (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove unused save_microcode_in_initrd_amd() declarations (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ugly linebreak in __verify_patch_section() signature (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Remove ret local var in early_apply_microcode() (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Have __apply_microcode_amd() return bool (Waiman Long) [RHEL-83893] +- x86/microcode/AMD: Return bool from find_blobs_in_containers() (Waiman Long) [RHEL-83893] +- x86/cpu: Fix formatting of cpuid_bits[] in scattered.c (Waiman Long) [RHEL-83893] +- x86/cpufeatures: Add X86_FEATURE_AMD_WORKLOAD_CLASS feature bit (Waiman Long) [RHEL-83893] + +* Tue Sep 23 2025 CKI KWF Bot [6.12.0-133.el10] +- drm/virtio: implement virtio_gpu_shutdown (Eric Auger) [RHEL-90224] +- io_uring/futex: ensure io_futex_wait() cleans up properly on failure (CKI Backport Bot) [RHEL-114339] {CVE-2025-39698} +- redhat: Move the CONFIG_AP and CONFIG_AP_DEBUG switches to the s390x subfolder (Thomas Huth) [RHEL-91273] + +* Fri Sep 19 2025 CKI KWF Bot [6.12.0-132.el10] +- RDMA/mana_ib: add support of multiple ports (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: add additional port counters (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: Fix DSCP value in modify QP (Maxim Levitsky) [RHEL-109580] +- net: mana: fix spelling for mana_gd_deregiser_irq() (Maxim Levitsky) [RHEL-109580] +- net: mana: Handle Reset Request from MANA NIC (Maxim Levitsky) [RHEL-109580] +- net: mana: Handle unsupported HWC commands (Maxim Levitsky) [RHEL-109580] +- net: mana: Set tx_packets to post gso processing packet count (Maxim Levitsky) [RHEL-109580] +- net: mana: Allocate MSI-X vectors dynamically (Maxim Levitsky) [RHEL-109580] +- net: mana: Allow irq_setup() to skip cpus for affinity (Maxim Levitsky) [RHEL-109580] +- net: mana: explain irq_setup() algorithm (Maxim Levitsky) [RHEL-109580] +- PCI: hv: Allow dynamic MSI-X vector allocation (Maxim Levitsky) [RHEL-109580] +- PCI/MSI: Export pci_msix_prepare_desc() for dynamic MSI-X allocations (Maxim Levitsky) [RHEL-109580] +- net: mana: Add handler for hardware servicing events (Maxim Levitsky) [RHEL-109580] +- RDMA/mana_ib: Add device statistics support (Maxim Levitsky) [RHEL-109580] +- net: mana: Expose additional hardware counters for drop and TC via ethtool. (Maxim Levitsky) [RHEL-109580] +- net: mana: Fix warnings for missing export.h header inclusion (Maxim Levitsky) [RHEL-109580] +- tunnels: reset the GSO metadata before reusing the skb (Antoine Tenart) [RHEL-113911] +- netfilter: conntrack: helper: Replace -EEXIST by -EBUSY (Phil Sutter) [RHEL-108858] +- s390/sclp: Fix SCCB present check (CKI Backport Bot) [RHEL-113563] {CVE-2025-39694} + * Wed Sep 17 2025 Scott Weaver [6.12.0-131.el10] - config: new config in drivers/phy (Izabela Bakollari) [RHEL-106145] - net: phy: realtek: remove unsed RTL821x_PHYSR* macros (Izabela Bakollari) [RHEL-106145] diff --git a/sources b/sources index 3deb3266f..3e2c41e78 100644 --- a/sources +++ b/sources @@ -1,5 +1,5 @@ SHA512 (kernel-abi-stablelists-6.6.0.tar.bz2) = 4f917598056dee5e23814621ec96ff2e4a411c8c4ba9d56ecb01b23cb96431825bedbecfcbaac9338efbf5cb21694d85497fa0bf43e7c80d9cd10bc6dd144dbd SHA512 (kernel-kabi-dw-6.6.0.tar.bz2) = 19308cd976031d05e18ef7f5d093218acdb89446418bab0cd956ff12cf66369915b9e64bb66fa9f20939428a60e81884fec5be3529c6c7461738d6540d3cc5c6 -SHA512 (linux-6.12.0-131.el10.tar.xz) = 9c0aed2b7e5ffce2b716435e21bcd8a443dcb924a9e657ee3d1e5c7431244c88480cd66d9cd48298a161c85d74756886140f102bd778f6d3b7df9d3291d6e352 -SHA512 (kernel-abi-stablelists-6.12.0-131.el10.tar.xz) = 6467a9d57ff9b3c99a5dcb5a0ae005e2d5573b11f165802c21b2481fe2dfa8002933fa4dcd996e833b1cf0c2551bb2dd1ee25b68f57b83c36ad49e0a4633fe6e -SHA512 (kernel-kabi-dw-6.12.0-131.el10.tar.xz) = 9f27202676bcc6d1433bffc323c9e340cedf9a3bab6c27159576306b7ec139c290d27adfd4fd97d78d351ad5363907b5f31994dc727dc0fd40a50dcf28f2c5e0 +SHA512 (linux-6.12.0-134.el10.tar.xz) = f3da7feaa75329dbfe1f8b762bdf8a0b1818aee1567dcc850bf2b9c062958464d8d74138450b9565847ef2d02f871a88e57e30805bc9011d0840bd012405882b +SHA512 (kernel-abi-stablelists-6.12.0-134.el10.tar.xz) = 4d77620e30b159db85a566d0b3da74da3829d3ea9cc67ff8d2c9d2db830cac1fff74cb6ff373fb09b9b31b0303801c2320b1948ada9370a9058018720bafffee +SHA512 (kernel-kabi-dw-6.12.0-134.el10.tar.xz) = c636c256eadcae3e5367cc4534781d3bae6350c031878aa355fd62ab454f1f007eb6a698994c01d84711e9d26b739fed953171d9c7c017ea1c1c0a6aedc2f009