diff --git a/kernel.spec b/kernel.spec index 2da77e1e7..0ea6aac73 100644 --- a/kernel.spec +++ b/kernel.spec @@ -38,10 +38,10 @@ # define buildid .local %define specversion 4.18.0 -%define pkgrelease 553.98.1.el8_10 +%define pkgrelease 553.99.1.el8_10 # allow pkg_release to have configurable %%{?dist} tag -%define specrelease 553.98.1%{?dist} +%define specrelease 553.99.1%{?dist} %define pkg_release %{specrelease}%{?buildid} @@ -2705,6 +2705,14 @@ fi # # %changelog +* Sat Jan 24 2026 CKI KWF Bot [4.18.0-553.99.1.el8_10] +- fbdev: bitblit: bound-check glyph index in bit_putcs* (Jocelyn Falempe) [RHEL-136937] {CVE-2025-40322} +- atm: clip: Fix infinite recursive call of clip_push(). (Guillaume Nault) [RHEL-137591] {CVE-2025-38459} +- squashfs: fix memory leak in squashfs_fill_super (Abhi Das) [RHEL-138010] {CVE-2025-38415} +- Squashfs: check return result of sb_min_blocksize (CKI Backport Bot) [RHEL-138010] {CVE-2025-38415} +- usb: core: config: Prevent OOB read in SS endpoint companion parsing (CKI Backport Bot) [RHEL-137362] {CVE-2025-39760} +- RDMA/rxe: Fix slab-use-after-free Read in rxe_queue_cleanup bug (CKI Backport Bot) [RHEL-137058] {CVE-2025-38024} + * Thu Jan 22 2026 CKI KWF Bot [4.18.0-553.98.1.el8_10] - vfs: use READ_ONCE() to access ->i_link (Jay Shin) [RHEL-141790] - fold generic_readlink() into its only caller (Jay Shin) [RHEL-141790] diff --git a/sources b/sources index 5e169e0f3..54e171478 100644 --- a/sources +++ b/sources @@ -1,3 +1,3 @@ -SHA512 (linux-4.18.0-553.98.1.el8_10.tar.xz) = 1dbe9e2023c39fd264883936e9d0d668a251d933956e06a9763bdfa51c9aea0008f094d2c9cd2da5dda7e02a5b1abe1e956f649eff56a6da363ac99ed2441e07 -SHA512 (kernel-abi-stablelists-4.18.0-553.tar.bz2) = a0cfedd85401c5ab4c955262935102aa9a7dae6e7ca86de906fb500d320a304e2fbab46c5f7370a64884dc1124603cc1df68910366477033a580d5e0e9899b81 -SHA512 (kernel-kabi-dw-4.18.0-553.tar.bz2) = 7fd6da3e4bd534f168eaec6fe40acfe3d6c1c82d8fc7460c6e0fb3c0bc18b437f63984d2cc94cd50fbb3c9f62b5c12342427c52878263370cf950f52e3e0fd8f +SHA512 (linux-4.18.0-553.99.1.el8_10.tar.xz) = 39861d0496041bed926e8b375ce1f57fe60deffcef23cf54ae74aec64d09c9a048e633dccf861adf20700bf401c87d803503c07b5302c5069ea514ad906b47ed +SHA512 (kernel-abi-stablelists-4.18.0-553.tar.bz2) = db88abf7e98d8770310bb0a09aed98d2330beba3c4d25a16d1ce39c87e20d39b7b0dd0028f8561e27bb5f3e81c3802f2e014b73280f479a501dfb9880efde3eb +SHA512 (kernel-kabi-dw-4.18.0-553.tar.bz2) = f367baa430e701c8975d0467a6e6774c989640cb3f44546e487ebc68dd5d0fe79757c6be616dde6d7d470382b41db7b4a79bcac82325f8627fbacbd13b26fbff