From: <nobuhiro1.iwamatsu@toshiba.co.jp>
To: <cip-dev@lists.cip-project.org>
Cc: <pavel@denx.de>, <jan.kiszka@siemens.com>, <uli@fpond.eu>,
<Chris.Paterson2@renesas.com>, <masami.ichikawa@cybertrust.co.jp>
Subject: [ANNOUNCE] Release v6.1.86-cip19
Date: Thu, 18 Apr 2024 08:57:36 +0000 [thread overview]
Message-ID: <OS0PR01MB6388C0966265BE0F5D294038920E2@OS0PR01MB6388.jpnprd01.prod.outlook.com> (raw)
Hi all,
CIP kernel team has released Linux kernel v6.1.86-cip19.
The linux-6.1.y-cip tree has been updated base version from v6.1.83 to v6.1.86.
You can get this release via the git tree at:
v6.1.86-cip19:
repository:
https://git.kernel.org/pub/scm/linux/kernel/git/cip/linux-cip.git
branch:
linux-6.1.y-cip
commit hash:
b72d10576403db55c087e515da69d332717119cd
Fixed CVEs:
CVE-2024-26817: amdkfd: use calloc instead of kzalloc to avoid integer overflow
CVE-2024-24857: Integer overflow bug was found in bluetooth device driver
CVE-2024-24859: Race condition bug in sniff_{min,max}_interval_set() in bluetooth driver causes DoS
CVE-2024-2201: Mitigations for the native BHI hardware vulnerabilty
CVE-2024-26811: ksmbd: validate payload size in ipc response
CVE-2024-24858: Race condition bug in bluetooth driver causes DoS
CVE-2024-24861: Race condition bug was found in media/xc4000 device driver in xc4000 xc4000_get_frequency()
CVE-2024-27437: vfio/pci: Disable auto-enable of exclusive INTx IRQ
CVE-2023-47233: Use after Free bug in brcmf_cfg80211_detach
CVE-2024-26584: net: tls: handle backlogging of crypto requests
CVE-2024-26642: netfilter: nf_tables: disallow anonymous set with timeout flag
CVE-2024-25739: ubi: Check for too small LEB size in VTBL code
CVE-2024-26810: vfio/pci: Lock external INTx masking ops
CVE-2024-26813: vfio/platform: Create persistent IRQ handlers
CVE-2024-26800: tls: fix use-after-free on failed backlog decryption
CVE-2024-26814: vfio/fsl-mc: Block calling interrupt handler without trigger
CVE-2024-26654: ALSA: sh: aica: reorder cleanup operations to avoid UAF bugs
CVE-2024-26585: tls: fix race between tx work scheduling and socket close
CVE-2024-26812: vfio/pci: Create persistent INTx handler
CVE-2024-23307: Integer Overflow bug was found md/raid/raid5 modules
CVE-2024-26643: netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
added commits:
CIP: Bump version suffix to -cip19 after merge from stable
Best regards,
Nobuhiro
reply other threads:[~2024-04-18 8:58 UTC|newest]
Thread overview: [no followups] expand[flat|nested] mbox.gz Atom feed
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=OS0PR01MB6388C0966265BE0F5D294038920E2@OS0PR01MB6388.jpnprd01.prod.outlook.com \
--to=nobuhiro1.iwamatsu@toshiba.co.jp \
--cc=Chris.Paterson2@renesas.com \
--cc=cip-dev@lists.cip-project.org \
--cc=jan.kiszka@siemens.com \
--cc=masami.ichikawa@cybertrust.co.jp \
--cc=pavel@denx.de \
--cc=uli@fpond.eu \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.