This bug was fixed in the package linux-intel-iotg - 5.15.0-1030.35

---------------
linux-intel-iotg (5.15.0-1030.35) jammy; urgency=medium

  * jammy/linux-intel-iotg: 5.15.0-1030.35 -proposed tracker (LP:
#2019028)

  * net:veth.sh in ubuntu_kernel_selftests hang with J-intel-iotg (BUG: unable
    to handle page fault) (LP: #2008085)
    - Revert "rtnetlink: Add return value check"
    - Revert "rtnetlink: Fix unchecked return value of dev_xdp_query_md_btf()"
    - Revert "igc: Enable HW RX Timestamp for AF_XDP ZC"
    - Revert "igc: Add BTF based metadata for XDP"
    - Revert "net/core: XDP metadata BTF netlink API"

linux-intel-iotg (5.15.0-1029.34) jammy; urgency=medium

  * jammy/linux-intel-iotg: 5.15.0-1029.34 -proposed tracker (LP:
#2016534)

  * CVE-2023-1829
    - [Config]: Make sure CONFIG_NET_CLS_TCINDEX is not available

  * [IOTG][RPL] Enable Time Coordinated Compute interface driver (LP: #2012755)
    - tcc: driver should exit if no psram entry found in PTCT.
    - tcc: tcc drvier should not exit even if no psram entry.
    - Add new IOCTL to read error log buffer.
    - Display errlog buffer raw data in kernel log as requested once this driver
      is loaded.
    - Fix issue found in acrn uos when convert cacheid to apicid.
    - tcc: rounding possible non page-aligned ssram address
    - Support RPL in measurement function.
    - Assume default hardware prefetch bitmask in measurement function.
    - tcc: fix patch style problem
    - tcc: Map and show crl version number in /proc.
    - tcc: Update hardware prefetcher disable bits for ADL and RPL in cache
      hit/miss measurement.
    - tcc: Choose different L3 cache miss perf event for ADL-N.

  * [IoTG] Integrated TSN controller (stmmac) driver commits tracker
    (LP: #2017934)
    - fixup! net: phy: marvell10g: Add WAKE_PHY support to WOL event
    - taprio: Add bitmask checking based on the traffic class
    - net: stmmac: Add check for supported EEE advertisement
    - net: stmmac: update EEE status when mac link goes down
    - net: stmmac: Check and exit when coalesce rx-usecs is equal to 0
    - net: phy: add wrapper function for setup master slave setup
    - net: phy: dp83867: add TI PHY loopback
    - net: stmmac: add check for supported mode before speed/advertising change
    - net: stmmac: Adjust mac_capabilities for Intel mGbE 2.5G mode
    - net: stmmac: check CBS input values before configuration
    - stmmac: intel: Separate ADL-N device ID from TGL
    - net: stmmac: Add check for taprio basetime configuration
    - net: stmmac: fix deadlock caused by taking RTNL in RPM resume path
    - net: phy: dp83867: perform phy reset after modifying auto-neg setting
    - Revert "net: stmmac: trigger PCS EEE to turn off on link down"
    - net: stmmac: add check for advertising linkmode request for set-eee
    - taprio: Add boundary check for sched-entry values
    - taprio: Fix no error return when entering invalid gatemask value
    - stmmac: intel: PCH MSI arbitration WA for HW bug
    - igc: Add BTF based metadata for XDP
    - net: stmmac: Fix 'no previous prototype' build warning
    - igc: Enable HW RX Timestamp for AF_XDP ZC
    - net/core: XDP metadata BTF netlink API
    - rtnetlink: Fix unchecked return value of dev_xdp_query_md_btf()
    - rtnetlink: Add return value check
    - Revert "igc: Add support for enabling frame preemption via ethtool"
    - Revert "igc: Add support for Frame Preemption verification"
    - Revert "ethtool: Add support for configuring frame preemption"
    - Revert "ethtool: Add support for configuring and verifying frame 
preemption"
    - Revert "ethtool: Add support for configuring frame preemption via ioctl"
    - Revert "net: tc: Add index of FPE QMASK"
    - ptp: Fixed read issue on PHC with zero n_pins
    - net: phy: dp83867: perform restart AN after modifying AN setting
    - ethtool: Add support for configuring frame preemption
    - ethtool: Add support for Frame Preemption verification
    - igc: Add support for enabling frame preemption via ethtool
    - igc: Add support for Frame Preemption verification

  [ Ubuntu: 5.15.0-72.79 ]

  * jammy/linux: 5.15.0-72.79 -proposed tracker (LP: #2016548)
  * Add split lock detection for EMR (LP: #2015855)
    - x86/split_lock: Enumerate architectural split lock disable bit
  *  selftest: fib_tests: Always cleanup before exit  (LP: #2015956)
    - selftest: fib_tests: Always cleanup before exit
  * Add support for intel EMR cpu (LP: #2015372)
    - platform/x86: intel-uncore-freq: add Emerald Rapids support
    - perf/x86/intel/cstate: Add Emerald Rapids
    - perf/x86/rapl: Add support for Intel Emerald Rapids
    - intel_idle: add Emerald Rapids Xeon support
    - tools/power/x86/intel-speed-select: Add Emerald Rapid quirk
    - tools/power turbostat: Introduce support for EMR
    - powercap: intel_rapl: add support for Emerald Rapids
    - EDAC/i10nm: Add Intel Emerald Rapids server support
  * Kernel livepatch ftrace graph fix (LP: #2013603)
    - kprobes: treewide: Remove trampoline_address from
      kretprobe_trampoline_handler()
    - kprobes: treewide: Make it harder to refer kretprobe_trampoline directly
    - kprobes: Add kretprobe_find_ret_addr() for searching return address
    - s390/unwind: recover kretprobe modified return address in stacktrace
    - s390/unwind: fix fgraph return address recovery
  * Jammy update: v5.15.98 upstream stable release (LP: #2015600)
    - Linux 5.15.98
  * Jammy update: v5.15.97 upstream stable release (LP: #2015599)
    - ionic: refactor use of ionic_rx_fill()
    - Fix XFRM-I support for nested ESP tunnels
    - arm64: dts: rockchip: drop unused LED mode property from rk3328-roc-cc
    - ARM: dts: rockchip: add power-domains property to dp node on rk3288
    - HID: elecom: add support for TrackBall 056E:011C
    - ACPI: NFIT: fix a potential deadlock during NFIT teardown
    - btrfs: send: limit number of clones and allocated memory size
    - ASoC: rt715-sdca: fix clock stop prepare timeout issue
    - IB/hfi1: Assign npages earlier
    - neigh: make sure used and confirmed times are valid
    - HID: core: Fix deadloop in hid_apply_multiplier.
    - x86/cpu: Add Lunar Lake M
    - staging: mt7621-dts: change palmbus address to lower case
    - bpf: bpf_fib_lookup should not return neigh in NUD_FAILED state
    - net: Remove WARN_ON_ONCE(sk->sk_forward_alloc) from 
sk_stream_kill_queues().
    - vc_screen: don't clobber return value in vcs_read
    - scripts/tags.sh: Invoke 'realpath' via 'xargs'
    - scripts/tags.sh: fix incompatibility with PCRE2
    - usb: dwc3: pci: add support for the Intel Meteor Lake-M
    - USB: serial: option: add support for VW/Skoda "Carstick LTE"
    - usb: gadget: u_serial: Add null pointer check in gserial_resume
    - USB: core: Don't hold device lock while reading the "descriptors" sysfs 
file
    - Linux 5.15.97
  * Jammy update: v5.15.96 upstream stable release (LP: #2015595)
    - drm/etnaviv: don't truncate physical page address
    - wifi: rtl8xxxu: gen2: Turn on the rate control
    - drm/edid: Fix minimum bpc supported with DSC1.2 for HDMI sink
    - clk: mxl: Switch from direct readl/writel based IO to regmap based IO
    - clk: mxl: Remove redundant spinlocks
    - clk: mxl: Add option to override gate clks
    - clk: mxl: Fix a clk entry by adding relevant flags
    - powerpc: dts: t208x: Mark MAC1 and MAC2 as 10G
    - clk: mxl: syscon_node_to_regmap() returns error pointers
    - random: always mix cycle counter in add_latent_entropy()
    - KVM: x86: Fail emulation during EMULTYPE_SKIP on any exception
    - KVM: SVM: Skip WRMSR fastpath on VM-Exit if next RIP isn't valid
    - can: kvaser_usb: hydra: help gcc-13 to figure out cmd_len
    - powerpc: dts: t208x: Disable 10G on MAC1 and MAC2
    - powerpc: use generic version of arch_is_kernel_initmem_freed()
    - powerpc/vmlinux.lds: Ensure STRICT_ALIGN_SIZE is at least page aligned
    - powerpc/vmlinux.lds: Add an explicit symbol for the SRWX boundary
    - powerpc/64s/radix: Fix crash with unaligned relocated kernel
    - powerpc/64s/radix: Fix RWX mapping with relocated kernel
    - drm/i915/gvt: fix double free bug in split_2MB_gtt_entry
    - uaccess: Add speculation barrier to copy_from_user()
    - binder: read pre-translated fds from sender buffer
    - binder: defer copies of pre-patched txn data
    - binder: fix pointer cast warning
    - binder: Address corner cases in deferred copy and fixup
    - binder: Gracefully handle BINDER_TYPE_FDA objects with num_fds=0
    - nbd: fix possible overflow on 'first_minor' in nbd_dev_add()
    - wifi: mwifiex: Add missing compatible string for SD8787
    - audit: update the mailing list in MAINTAINERS
    - ext4: Fix function prototype mismatch for ext4_feat_ktype
    - bpf: add missing header file include
    - Linux 5.15.96
  * Debian autoreconstruct Fix restoration of execute permissions (LP: #2015498)
    - [Debian] autoreconstruct - fix restoration of execute permissions
  * kernel: fix __clear_user() inline assembly constraints (LP: #2013088)
    - s390/uaccess: add missing earlyclobber annotations to __clear_user()
  * Kernel crash during Mellanox performance testing (LP: #2015097)
    - net/mlx5: fs, refactor software deletion rule
  * expoline.o is packaged unconditionally for s390x (LP: #2013209)
    - [Packaging] Copy expoline.o only when produced by the build
  * Intel E810 NICs driver in causing hangs when booting and bonds configured
    (LP: #2004262)
    - ice: avoid bonding causing auxiliary plug/unplug under RTNL lock
  * Jammy update: v5.15.95 upstream stable release (LP: #2013118)
    - mptcp: fix locking for in-kernel listener creation
    - kprobes: treewide: Cleanup the error messages for kprobes
    - riscv: kprobe: Fixup misaligned load text
    - ACPI / x86: Add support for LPS0 callback handler
    - ASoC: Intel: sof_rt5682: always set dpcm_capture for amplifiers
    - ASoC: Intel: sof_cs42l42: always set dpcm_capture for amplifiers
    - selftests/bpf: Verify copy_register_state() preserves parent/live fields
    - ALSA: hda: Do not unset preset when cleaning up codec
    - bpf, sockmap: Don't let sock_map_{close,destroy,unhash} call itself
    - ASoC: cs42l56: fix DT probe
    - tools/virtio: fix the vringh test for virtio ring changes
    - net/rose: Fix to not accept on connected socket
    - net: stmmac: do not stop RX_CLK in Rx LPI state for qcs404 SoC
    - drm/nouveau/devinit/tu102-: wait for GFW_BOOT_PROGRESS == COMPLETED
    - net: sched: sch: Bounds check priority
    - s390/decompressor: specify __decompress() buf len to avoid overflow
    - nvme-fc: fix a missing queue put in nvmet_fc_ls_create_association
    - drm/amd/display: Properly handle additional cases where DCN is not 
supported
    - platform/x86: touchscreen_dmi: Add Chuwi Vi8 (CWI501) DMI match
    - nvmem: core: add error handling for dev_set_name
    - nvmem: core: fix cleanup after dev_set_name()
    - nvmem: core: fix registration vs use race
    - nvmem: core: fix return value
    - xfs: zero inode fork buffer at allocation
    - xfs: fix potential log item leak
    - xfs: detect self referencing btree sibling pointers
    - xfs: set XFS_FEAT_NLINK correctly
    - xfs: validate v5 feature fields
    - xfs: avoid unnecessary runtime sibling pointer endian conversions
    - xfs: don't assert fail on perag references on teardown
    - xfs: assert in xfs_btree_del_cursor should take into account error
    - xfs: purge dquots after inode walk fails during quotacheck
    - xfs: don't leak btree cursor when insrec fails after a split
    - mptcp: do not wait for bare sockets' timeout
    - aio: fix mremap after fork null-deref
    - drm/amd/display: Fail atomic_check early on normalize_zpos error
    - platform/x86: amd-pmc: Fix compilation when CONFIG_DEBUGFS is disabled
    - platform/x86: amd-pmc: Correct usage of SMU version
    - platform/x86/amd: pmc: Disable IRQ1 wakeup for RN/CZN
    - netfilter: nft_tproxy: restrict to prerouting hook
    - tcp: Fix listen() regression in 5.15.88.
    - mmc: jz4740: Work around bug on JZ4760(B)
    - mmc: sdio: fix possible resource leaks in some error paths
    - mmc: mmc_spi: fix error handling in mmc_spi_probe()
    - ALSA: hda/conexant: add a new hda codec SN6180
    - ALSA: hda/realtek - fixed wrong gpio assigned
    - sched/psi: Fix use-after-free in ep_remove_wait_queue()
    - hugetlb: check for undefined shift on 32 bit architectures
    - of: reserved_mem: Have kmemleak ignore dynamically allocated reserved mem
    - selftest/lkdtm: Skip stack-entropy test if lkdtm is not available
    - net: Fix unwanted sign extension in netdev_stats_to_stats64()
    - revert "squashfs: harden sanity check in squashfs_read_xattr_id_table"
    - ixgbe: allow to increase MTU to 3K with XDP enabled
    - i40e: add double of VLAN header when computing the max MTU
    - net: bgmac: fix BCM5358 support by setting correct flags
    - net: ethernet: ti: am65-cpsw: Add RX DMA Channel Teardown Quirk
    - sctp: sctp_sock_filter(): avoid list_entry() on possibly empty list
    - dccp/tcp: Avoid negative sk_forward_alloc by ipv6_pinfo.pktoptions.
    - net/usb: kalmia: Don't pass act_len in usb_bulk_msg error path
    - net: openvswitch: fix possible memory leak in ovs_meter_cmd_set()
    - net: stmmac: fix order of dwmac5 FlexPPS parametrization sequence
    - bnxt_en: Fix mqprio and XDP ring checking logic
    - net: stmmac: Restrict warning on disabling DMA store and fwd mode
    - ixgbe: add double of VLAN header when computing the max MTU
    - ipv6: Fix datagram socket connection with DSCP.
    - ipv6: Fix tcp socket connection with DSCP.
    - nilfs2: fix underflow in second superblock position calculations
    - mm/filemap: fix page end in filemap_get_read_batch
    - drm/i915/gen11: Moving WAs to icl_gt_workarounds_init()
    - drm/i915/gen11: Wa_1408615072/Wa_1407596294 should be on GT list
    - flow_offload: fill flags to action structure
    - net/sched: act_ctinfo: use percpu stats
    - i40e: Add checking for null for nlmsg_find_attr()
    - kvm: initialize all of the kvm_debugregs structure before sending it to
      userspace
    - alarmtimer: Prevent starvation by small intervals and SIG_IGN
    - ASoC: SOF: Intel: hda-dai: fix possible stream_tag leak
    - net: sched: sch: Fix off by one in htb_activate_prios()
    - platform/x86/amd: pmc: add CONFIG_SERIO dependency
    - Linux 5.15.95
  * CVE-2023-1075
    - net/tls: tls_is_tx_ready() checked list_entry
  * devlink_port_split from ubuntu_kernel_selftests.net fails on hirsute
    (KeyError: 'flavour') (LP: #1937133)
    - selftests: net: devlink_port_split.py: skip test if no suitable device
      available
  * Connection timeout due to conntrack limits (LP: #2011616)
    - netfilter: conntrack: adopt safer max chain length
  * Jammy update: v5.15.94 upstream stable release (LP: #2012673)
    - mm/migration: return errno when isolate_huge_page failed
    - migrate: hugetlb: check for hugetlb shared PMD in node migration
    - btrfs: limit device extents to the device size
    - btrfs: zlib: zero-initialize zlib workspace
    - ALSA: hda/realtek: Add Positivo N14KP6-TG
    - ALSA: emux: Avoid potential array out-of-bound in snd_emux_xg_control()
    - ALSA: hda/realtek: Fix the speaker output on Samsung Galaxy Book2 Pro 360
    - ALSA: hda/realtek: Enable mute/micmute LEDs on HP Elitebook, 645 G9
    - tracing: Fix poll() and select() do not work on per_cpu trace_pipe and
      trace_pipe_raw
    - of/address: Return an error when no valid dma-ranges are found
    - can: j1939: do not wait 250 ms if the same addr was already claimed
    - xfrm: compat: change expression for switch in xfrm_xlate64
    - IB/hfi1: Restore allocated resources on failed copyout
    - xfrm/compat: prevent potential spectre v1 gadget in xfrm_xlate32_attr()
    - IB/IPoIB: Fix legacy IPoIB due to wrong number of queues
    - RDMA/irdma: Fix potential NULL-ptr-dereference
    - RDMA/usnic: use iommu_map_atomic() under spin_lock()
    - xfrm: fix bug with DSCP copy to v6 from v4 tunnel
    - net: phylink: move phy_device_free() to correctly release phy device
    - bonding: fix error checking in bond_debug_reregister()
    - net: phy: meson-gxl: use MMD access dummy stubs for GXL, internal PHY
    - ionic: clean interrupt before enabling queue to avoid credit race
    - uapi: add missing ip/ipv6 header dependencies for linux/stddef.h
    - ice: Do not use WQ_MEM_RECLAIM flag for workqueue
    - net: dsa: mt7530: don't change PVC_EG_TAG when CPU port becomes VLAN-aware
    - net: mscc: ocelot: fix VCAP filters not matching on MAC with "protocol
      802.1Q"
    - net/mlx5e: Move repeating clear_bit in 
mlx5e_rx_reporter_err_rq_cqe_recover
    - net/mlx5e: Introduce the mlx5e_flush_rq function
    - net/mlx5e: Update rx ring hw mtu upon each rx-fcs flag change
    - net/mlx5: Bridge, fix ageing of peer FDB entries
    - net/mlx5e: IPoIB, Show unknown speed instead of error
    - net/mlx5: fw_tracer, Clear load bit when freeing string DBs buffers
    - net/mlx5: fw_tracer, Zero consumer index when reloading the tracer
    - net/mlx5: Serialize module cleanup with reload and remove
    - igc: Add ndo_tx_timeout support
    - rds: rds_rm_zerocopy_callback() use list_first_entry()
    - selftests: forwarding: lib: quote the sysctl values
    - ALSA: pci: lx6464es: fix a debug loop
    - riscv: stacktrace: Fix missing the first frame
    - ASoC: topology: Return -ENOMEM on memory allocation failure
    - pinctrl: mediatek: Fix the drive register definition of some Pins
    - pinctrl: aspeed: Fix confusing types in return value
    - pinctrl: single: fix potential NULL dereference
    - spi: dw: Fix wrong FIFO level setting for long xfers
    - pinctrl: intel: Restore the pins that used to be in Direct IRQ mode
    - cifs: Fix use-after-free in rdata->read_into_pages()
    - net: USB: Fix wrong-direction WARNING in plusb.c
    - mptcp: be careful on subflow status propagation on errors
    - btrfs: free device in btrfs_close_devices for a single device filesystem
    - usb: core: add quirk for Alcor Link AK9563 smartcard reader
    - usb: typec: altmodes/displayport: Fix probe pin assign check
    - clk: ingenic: jz4760: Update M/N/OD calculation algorithm
    - ceph: flush cap releases when the session is flushed
    - riscv: Fixup race condition on PG_dcache_clean in flush_icache_pte
    - powerpc/64s/interrupt: Fix interrupt exit race with security mitigation
      switch
    - rtmutex: Ensure that the top waiter is always woken up
    - arm64: dts: meson-gx: Make mmc host controller interrupts level-sensitive
    - arm64: dts: meson-g12-common: Make mmc host controller interrupts level-
      sensitive
    - arm64: dts: meson-axg: Make mmc host controller interrupts level-sensitive
    - Fix page corruption caused by racy check in __free_pages
    - drm/amdgpu/fence: Fix oops due to non-matching drm_sched init/fini
    - drm/i915: Initialize the obj flags for shmem objects
    - drm/i915: Fix VBT DSI DVO port handling
    - x86/speculation: Identify processors vulnerable to SMT RSB predictions
    - KVM: x86: Mitigate the cross-thread return address predictions bug
    - Documentation/hw-vuln: Add documentation for Cross-Thread Return 
Predictions
    - Linux 5.15.94
  * Jammy update: v5.15.93 upstream stable release (LP: #2012665)
    - firewire: fix memory leak for payload of request subaction to IEC 61883-1
      FCP region
    - bus: sunxi-rsb: Fix error handling in sunxi_rsb_init()
    - ASoC: Intel: boards: fix spelling in comments
    - ASoC: Intel: bytcht_es8316: move comment to the right place
    - ASoC: Intel: bytcht_es8316: Drop reference count of ACPI device after use
    - ASoC: Intel: bytcr_rt5651: Drop reference count of ACPI device after use
    - ASoC: Intel: bytcr_rt5640: Drop reference count of ACPI device after use
    - ASoC: Intel: bytcr_wm5102: Drop reference count of ACPI device after use
    - bpf: Fix a possible task gone issue with bpf_send_signal[_thread]() 
helpers
    - ALSA: hda/via: Avoid potential array out-of-bound in add_secret_dac_path()
    - bpf: Support <8-byte scalar spill and refill
    - bpf: Fix to preserve reg parent/live fields when copying range info
    - bpf, sockmap: Check for any of tcp_bpf_prots when cloning a listener
    - arm64: dts: imx8mm: Fix pad control for UART1_DTE_RX
    - drm/vc4: hdmi: make CEC adapter name unique
    - scsi: Revert "scsi: core: map PQ=1, PDT=other values to
      SCSI_SCAN_TARGET_PRESENT"
    - vhost/net: Clear the pending messages when the backend is removed
    - WRITE is "data source", not destination...
    - READ is "data destination", not source...
    - fix iov_iter_bvec() "direction" argument
    - fix "direction" argument of iov_iter_kvec()
    - ice: Prevent set_channel from changing queues while RDMA active
    - qede: execute xdp_do_flush() before napi_complete_done()
    - virtio-net: execute xdp_do_flush() before napi_complete_done()
    - dpaa_eth: execute xdp_do_flush() before napi_complete_done()
    - dpaa2-eth: execute xdp_do_flush() before napi_complete_done()
    - sfc: correctly advertise tunneled IPv6 segmentation
    - net: phy: dp83822: Fix null pointer access on DP83825/DP83826 devices
    - block/bfq-iosched.c: use "false" rather than "BLK_RW_ASYNC"
    - block, bfq: replace 0/1 with false/true in bic apis
    - block, bfq: fix uaf for bfqq in bic_set_bfqq()
    - netrom: Fix use-after-free caused by accept on already connected socket
    - drm/i915/guc: Fix locking when searching for a hung request
    - drm/i915/adlp: Fix typo for reference clock
    - netfilter: br_netfilter: disable sabotage_in hook after first suppression
    - squashfs: harden sanity check in squashfs_read_xattr_id_table
    - net: phy: meson-gxl: Add generic dummy stubs for MMD register access
    - ip/ip6_gre: Fix changing addr gen mode not generating IPv6 link local
      address
    - ip/ip6_gre: Fix non-point-to-point tunnel not generating IPv6 link local
      address
    - riscv: kprobe: Fixup kernel panic when probing an illegal position
    - igc: return an error if the mac type is unknown in
      igc_ptp_systim_to_hwtstamp()
    - can: j1939: fix errant WARN_ON_ONCE in j1939_session_deactivate
    - ata: libata: Fix sata_down_spd_limit() when no link speed is reported
    - selftests: net: udpgso_bench_rx: Fix 'used uninitialized' compiler warning
    - selftests: net: udpgso_bench_rx/tx: Stop when wrong CLI args are provided
    - selftests: net: udpgso_bench_tx: Cater for pending datagrams zerocopy
      benchmarking
    - virtio-net: Keep stop() to follow mirror sequence of open()
    - net: openvswitch: fix flow memory leak in ovs_flow_cmd_new
    - efi: fix potential NULL deref in efi_mem_reserve_persistent
    - i2c: designware-pci: Add new PCI IDs for AMD NAVI GPU
    - i2c: mxs: suppress probe-deferral error message
    - scsi: target: core: Fix warning on RT kernels
    - perf/x86/intel: Add Emerald Rapids
    - scsi: iscsi_tcp: Fix UAF during logout when accessing the shost ipaddress
    - scsi: iscsi_tcp: Fix UAF during login when accessing the shost ipaddress
    - i2c: rk3x: fix a bunch of kernel-doc warnings
    - platform/x86: gigabyte-wmi: add support for B450M DS3H WIFI-CF
    - net/x25: Fix to not accept on connected socket
    - drm/amd/display: Fix timing not changning when freesync video is enabled
    - iio: adc: stm32-dfsdm: fill module aliases
    - usb: dwc3: qcom: enable vbus override when in OTG dr-mode
    - usb: gadget: f_fs: Fix unbalanced spinlock in __ffs_ep0_queue_wait
    - vc_screen: move load of struct vc_data pointer in vcs_read() to avoid UAF
    - Input: i8042 - add Clevo PCX0DX to i8042 quirk table
    - fbcon: Check font dimension limits
    - net: qrtr: free memory on error path in radix_tree_insert()
    - watchdog: diag288_wdt: do not use stack buffers for hardware data
    - watchdog: diag288_wdt: fix __diag288() inline assembly
    - ALSA: hda/realtek: Add Acer Predator PH315-54
    - efi: Accept version 2 of memory attributes table
    - iio: hid: fix the retval in accel_3d_capture_sample
    - iio: hid: fix the retval in gyro_3d_capture_sample
    - iio: adc: berlin2-adc: Add missing of_node_put() in error path
    - iio:adc:twl6030: Enable measurements of VUSB, VBAT and others
    - iio: imu: fxos8700: fix ACCEL measurement range selection
    - iio: imu: fxos8700: fix incomplete ACCEL and MAGN channels readback
    - iio: imu: fxos8700: fix IMU data bits returned to user space
    - iio: imu: fxos8700: fix map label of channel type to MAGN sensor
    - iio: imu: fxos8700: fix swapped ACCEL and MAGN channels readback
    - iio: imu: fxos8700: fix incorrect ODR mode readback
    - iio: imu: fxos8700: fix failed initialization ODR mode assignment
    - iio: imu: fxos8700: remove definition FXOS8700_CTRL_ODR_MIN
    - iio: imu: fxos8700: fix MAGN sensor scale and unit
    - nvmem: qcom-spmi-sdam: fix module autoloading
    - parisc: Fix return code of pdc_iodc_print()
    - parisc: Wire up PTRACE_GETREGS/PTRACE_SETREGS for compat case
    - riscv: disable generation of unwind tables
    - mm: hugetlb: proc: check for hugetlb shared PMD in /proc/PID/smaps
    - usb: gadget: f_uac2: Fix incorrect increment of bNumEndpoints
    - kernel/irq/irqdomain.c: fix memory leak with using debugfs_lookup()
    - x86/debug: Fix stack recursion caused by wrongly ordered DR7 accesses
    - fpga: stratix10-soc: Fix return value check in s10_ops_write_init()
    - mm/swapfile: add cond_resched() in get_swap_pages()
    - highmem: round down the address passed to kunmap_flush_on_unmap()
    - Squashfs: fix handling and sanity checking of xattr_ids count
    - drm/i915: Fix potential bit_17 double-free
    - nvmem: core: initialise nvmem->id early
    - nvmem: core: remove nvmem_config wp_gpio
    - nvmem: core: fix cell removal on error
    - serial: 8250_dma: Fix DMA Rx completion race
    - serial: 8250_dma: Fix DMA Rx rearm race
    - phy: qcom-qmp-combo: disable runtime PM on unbind
    - phy: qcom-qmp-combo: fix memleak on probe deferral
    - phy: qcom-qmp-usb: fix memleak on probe deferral
    - phy: qcom-qmp-combo: fix broken power on
    - phy: qcom-qmp-combo: fix runtime suspend
    - bpf: Fix incorrect state pruning for <8B spill/fill
    - bpf: Do not reject when the stack read size is different from the tracked
      scalar size
    - iio:adc:twl6030: Enable measurement of VAC
    - powerpc/imc-pmu: Revert nest_init_lock to being a mutex
    - fs/ntfs3: Validate attribute data and valid sizes
    - ovl: Use "buf" flexible array for memcpy() destination
    - fbdev: smscufx: fix error handling code in ufx_usb_probe
    - f2fs: fix to do sanity check on i_extra_isize in is_alive()
    - wifi: brcmfmac: Check the count value of channel spec to prevent out-of-
      bounds reads
    - gfs2: Cosmetic gfs2_dinode_{in,out} cleanup
    - gfs2: Always check inode size of inline inodes
    - bpf: Skip invalid kfunc call in backtrack_insn
    - Linux 5.15.93
  * CVE-2023-1118
    - media: rc: Fix use-after-free bugs caused by ene_tx_irqsim()
  * [SRU][Ubuntu 22.04.1]: Observed "Array Index out of bounds" Call Trace
    multiple times on Ubuntu 22.04.1 OS during boot (LP: #2008157)
    - scsi: megaraid_sas: Replace one-element array with flexible-array member 
in
      MR_FW_RAID_MAP
    - scsi: megaraid_sas: Replace one-element array with flexible-array member 
in
      MR_FW_RAID_MAP_DYNAMIC
    - scsi: megaraid_sas: Replace one-element array with flexible-array member 
in
      MR_DRV_RAID_MAP
    - scsi: megaraid_sas: Replace one-element array with flexible-array member 
in
      MR_PD_CFG_SEQ_NUM_SYNC
    - scsi: megaraid_sas: Use struct_size() in code related to struct
      MR_FW_RAID_MAP
    - scsi: megaraid_sas: Use struct_size() in code related to struct
      MR_PD_CFG_SEQ_NUM_SYNC
  * Revert "net/sched: taprio: make qdisc_leaf() see the per-netdev-queue pfifo
    child qdiscs" (LP: #2011926)
    - Revert "net/sched: taprio: make qdisc_leaf() see the per-netdev-queue 
pfifo
      child qdiscs"

  [ Ubuntu: 5.15.0-71.78 ]

  * jammy/linux: 5.15.0-71.78 -proposed tracker (LP: #2016820)
  * CVE-2023-1872
    - io_uring: add missing lock in io_get_file_fixed
    - io_uring: ensure that io_init_req() passes in the right issue_flags
  * CVE-2023-1829
    - net/sched: Retire tcindex classifier
    - [Config]: Make sure CONFIG_NET_CLS_TCINDEX is not available

 -- Marcelo Henrique Cerri <marcelo.ce...@canonical.com>  Tue, 09 May
2023 16:52:49 -0300

** Changed in: linux-intel-iotg (Ubuntu Jammy)
       Status: Fix Committed => Fix Released

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2023-1075

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2023-1118

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2023-1829

** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2023-1872

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux-intel-iotg in Ubuntu.
https://bugs.launchpad.net/bugs/2017934

Title:
  [IoTG] Integrated TSN controller (stmmac) driver commits tracker

Status in linux-intel-iotg package in Ubuntu:
  Invalid
Status in linux-intel-iotg source package in Jammy:
  Fix Released

Bug description:
  Based on LP https://bugs.launchpad.net/bugs/2006706

  List of cherry-picks required:
  Adding the actual list of commits to make it easier to reference...

  The following are the latest updates from our v5.15 kernel
  https://github.com/intel/linux-intel-
  quilt/tree/lts-v5.15.71-linux-221214T134252Z

  0004-fixup-net-phy-marvell10g-Add-WAKE_PHY-support-to-WOL-.conn
  0002-stmmac-intel-Add-ADL-N-PCI-ID.conn --> 
30c5601fbf353a40115564e1304a1870978fda29 (v5.18-rc1)
  0001-taprio-Add-bitmask-checking-based-on-the-traffic-clas.conn
  0053-net-phy-dp83867-Fix-SGMII-FIFO-depth-for-non-OF-devic.conn --> 
e2a54350dc9642e7dfc07335ca355581caa9dbfe (v6.1-rc6)
  0052-net-stmmac-check-supported-linkmode-request-for-set-e.conn
  0006-net-stmmac-Add-check-for-supported-EEE-advertisement.conn
  0002-net-stmmac-update-EEE-status-when-mac-link-goes-down.conn
  0003-net-stmmac-Check-and-exit-when-coalesce-rx-usecs-is-e.conn
  0033-Revert-net-sched-taprio-make-qdisc_leaf-see-the-per-n.conn --> 
af7b29b1deaac6da3bb7637f0e263dfab7bfc7a3 (v6.1-rc1)
  0005-taprio-Fix-no-error-return-when-entering-invalid-gate.conn
  0005-ethtool-Add-support-for-Frame-Preemption-verification.conn
  0008-ethtool-Add-support-for-configuring-frame-preemption-.conn
  0020-net-networkproxy-add-MIB-passing-via-shared-memory-me.conn
  0042-net-phy-add-wrapper-function-for-setup-master-slave-s.conn
  0027-net-phy-reconfigure-PHY-WOL-in-resume-if-WOL-option-s.conn
  0025-net-stmmac-Disable-MAC-EEE-when-Network-Proxy-is-enab.conn
  0035-net-phy-dp83867-add-TI-PHY-loopback.conn --> 
13bd85580b85768238cf726dec0ddd89c06a230a (v6.2-rc1)
  0003-net-stmmac-add-FPE-preempt-setting-for-TxQ-preemptibl.conn
  0013-net-phy-marvell10g-Add-WAKE_PHY-support-to-WOL-event.conn
  0043-net-phy-marvell-add-link-status-check-before-enabling.conn
  0040-net-stmmac-add-check-for-supported-mode-before-speed-.conn
  0044-net-stmmac-Adjust-mac_capabilities-for-Intel-mGbE-2.5.conn
  0022-net-stmmac-enable-network-proxy-MSI-interrupt-support.conn
  0007-net-stmmac-restructure-Rx-Tx-hardware-timestamping-fu.conn
  0045-net-stmmac-check-CBS-input-values-before-configuratio.conn
  0008-net-stmmac-introduce-AF_XDP-ZC-RX-HW-timestamps.conn
  0024-net-stmmac-Move-phy-state-machine-handling-into-commo.conn
  0048-stmmac-intel-Separate-ADL-N-device-ID-from-TGL.conn
  0033-net-phy-update-in-band-AN-mode-when-changing-interfac.conn
  0047-net-stmmac-Add-check-for-taprio-basetime-configuratio.conn --> 
6d534ee057b62ca9332b988619323ee99c7847c1 (v6.2-rc1)
  0039-net-stmmac-Set-MAC-s-flow-control-register-to-reflect.conn --> 
cc3d2b5fc0d6f8ad8a52da5ea679e5c2ec2adbd4 (v6.1-rc8)
  0036-net-stmmac-fix-deadlock-caused-by-taking-RTNL-in-RPM-.conn
  0037-net-phy-dp83867-perform-phy-reset-after-modifying-aut.conn
  0028-Revert-net-stmmac-trigger-PCS-EEE-to-turn-off-on-link.conn
  0014-net-stmmac-Fix-Unbalanced-pm_runtime_enable-warning.conn --> 
d90d0c175cf2982789d336dda928c0f69d3e8a9d (v5.17-rc1)
  0038-net-stmmac-Ensure-tx-function-is-not-running-in-stmma.conn --> 
77711683a50477de39757d67ab1a3638220d6860 (v6.1-rc6)
  0026-net-phy-skip-disabling-interrupt-when-WOL-is-enabled-.conn
  0009-REVERTME-net-stmmac-introduce-AF_XDP-ZC-TX-HW-timesta.conn
  0010-net-pcs-xpcs-enable-xpcs-reset-skipping.conn
  0018-net-networkproxy-add-network-proxy-heci-client.conn
  net-stmmac-add-network-proxy-support.conn
  0019-net-networkproxy-add-configfs.conn
  0015-net-stmmac-skip-runtime-handling-in-mdio-read-write.conn
  0012-REVERTME-net-stmmac-Add-support-for-HW-accelerated-VL.conn
  net: stmmac: only enable DMA interrupts when ready --> 
087a7b944c5db409f7c1a68bf4896c56ba54eaff (v5.17-rc7)
  0006-net-stmmac-Add-per-packet-time-based-scheduling-for-X.conn
  0017-net-networkproxy-introduce-network-proxy-framework.conn
  0032-net-pcs-xpcs-combine-C37-SGMII-AN-and-2500BASEX-for-I.conn
  0041-net-stmmac-add-check-for-advertising-linkmode-request.conn
  0014-net-stmmac-Prevent-double-release-for-suspended-port-.conn
  0004-net-stmmac-support-recalculating-of-CBS-idle-slope-un.conn
  0046-taprio-Add-boundary-check-for-sched-entry-values.conn
  0029-net-stmmac-add-fsleep-in-HW-Rx-timestamp-checking-loo.conn
  0011-net-stmmac-Resolve-poor-line-rate-after-switching-fro.conn
  0016-net-stmmac-selftest-replace-skb_unshare-with-skb_shar.conn
  0021-net-stmmac-move-TX-RX-MAC-state-machine-enablement-to.conn
  0005-REVERTME-net-stmmac-Add-module-param-to-del-keep-est-.conn
  0001-net-stmmac-Bugfix-on-stmmac_interrupt-for-WOL.conn
  0030-platform-x86-intel_pmc_core-Add-IPC-mailbox-accessor-.conn
  0031-platform-x86-intel_pmc_core-Add-SoC-register-access.conn
  0002-stmmac-intel-PCH-MSI-arbitration-WA-for-HW-bug.conn
  0015-net-stmmac-optimize-locking-around-PTP-clock-reads.conn --> 
642436a1ad34a28c45bbc2bdc131640a73782356 (v5.18-rc1)
  0034-net-stmmac-enable-Intel-mGbE-1G-2.5G-auto-negotiation.conn
  stmmac: intel: Enable 2.5Gbps for Intel AlderLake-S --> 
23d743301198f7903d732d5abb4f2b44f22f5df0 (v5.18-rc1)
  net: stmmac: switch to use interrupt for hw crosstimestamping --> 
76c16d3e19446deea98b7883f261758b96b8781a (v5.19-rc8)
  net: stmmac: fix pm runtime issue in stmmac_dvr_remove() --> 
0d9a15913b871e03fdd3b3d90a2e665fb22f9bcf (v5.19-rc8)
  net: stmmac: fix unbalanced ptp clock issue in suspend/resume flow --> 
f4c7d8948e866918d61493264dbbd67e45ef2bda (v5.19-rc8)
  net: phy: Don't trigger state machine while in suspend --> 
1758bde2e4aa5ff188d53e7d9d388bbb7e12eebb (v5.19-rc5)
  0001-net-stmmac-enable-runtime-power-management-support.conn
  igc: Fix suspending when PTM is active --> 
822f52e7efdc88fccffb9fbf6250a4b7666a0b0f (v5.18-rc1)
  net: stmmac: remove redunctant disable xPCS EEE call --> 
da791bac104a3169b05b54270afe75daacba4641 (v5.19-rc8)
  igc: Add checking for basetime less than zero --> 
3b61764fb49a6e147ac90d71dccdddc9d5508ba1 (v6.2-rc1)
  net: phy: dp83867: introduce critical chip default init for non-of platform 
--> 4dc08dcc9f6f58e881fd790d800e49abee8540e1 (v5.16-rc1)
  net: stmmac: add tc flower filter for EtherType matching --> 
e48cb313fde3e6f9434bb41c858d5c791d83f2d0 (v5.17-rc1)
  net: stmmac: Add GFP_DMA32 for rx buffers if no 64 capability --> 
884d2b845477cd0a18302444dc20fe2d9a01743e (v5.16-rc6)
  net: stmmac: bump tc when get underflow error from DMA descriptor --> 
3a6c12a0c6c3f857f47efe0e40011360063a35bc (v5.17-rc1)
  net: stmmac: ptp: fix potentially overflowing expression --> 
eccffcf4657ab9a148faaa0eb354d2a091caf552 (v5.16-rc7)
  net: stmmac: fix tc flower deletion for VLAN priority Rx steering --> 
aeb7c75cb77478fdbf821628e9c95c4baa9adc63 (v5.16-rc6)
  net: phy: marvell: add Marvell specific PHY loopback --> 
020a45aff1190c32b1087cd75b57fbf6bff46ea6 (v5.17-rc1)

  0001-libbpf-Fix-bpf_netlink_recv.conn
  0024-tools-bpf-Add-xdp-set-command-for-md-btf.conn
  net: stmmac: configure PTP clock source prior to PTP initialization --> 
94c82de43e01ef5747a95e4a590880de863fe423 (v5.17-rc2)
  0019-bpf-add-btf-register-unregister-API.conn
  0025-igc-Add-BTF-based-metadata-for-XDP.conn
  net: stmmac: skip only stmmac_ptp_register when resume from suspend --> 
0735e639f129dff455aeb91da291f5c578cc33db (v5.17-rc2)
  net: stmmac: disable Split Header (SPH) for Intel platforms --> 
47f753c1108e287edb3e27fad8a7511a9d55578e (v5.18-rc6)
  0001-net-stmmac-Fix-no-previous-prototype-build-warning.conn
  net: stmmac: perserve TX and RX coalesce value during XDP setup --> 
61da6ac715700bcfeef50d187e15c6cc7c9d079b (v5.17-rc1)
  0035-igc-Add-context-for-empty-packet.conn
  igc: Correct the launchtime offset --> 
790835fcc0cb9992349ae3c9010dbc7321aaa24d (v6.2-rc1)
  0016-igc-Add-support-for-DMA-timestamp-for-non-PTP-packets.conn
  0034-igc-Fix-scheduling-multiple-packets-for-next-cycle.conn
  0030-igc-Take-care-of-DMA-timestamp-rollover.conn
  0009-igc-Add-support-for-TC_SETUP_PREEMPT.conn
  0001-igc-Set-the-RX-packet-buffer-size-for-TSN-mode.conn
  0011-igc-Add-support-for-Frame-Preemption-verification.conn
  0027-igc-Enable-HW-TX-Timestamp-for-AF_XDP-ZC.conn
  0036-igc-Reodering-the-empty-packet-buffers-and-descriptor.conn
  0005-taprio-Replace-tc_map_to_queue_mask.conn
  0007-igc-Add-support-for-enabling-frame-preemption-via-eth.conn
  0002-igc-Only-dump-registers-if-configured-to-dump-HW-info.conn
  0004-core-Introduce-netdev_tc_map_to_queue_mask.conn
  0032-igc-Fix-sending-packets-too-early.conn
  0010-igc-Add-support-for-setting-frame-preemption-configur.conn
  0012-igc-Add-support-for-exposing-frame-preemption-stats-r.conn
  0037-igc-Add-trace-for-launchtime-calculation-corner-case.conn
  0014-igc-Add-support-for-enabling-all-packets-to-be-receiv.conn
  0026-igc-Enable-HW-RX-Timestamp-for-AF_XDP-ZC.conn
  0015-igc-Fix-race-condition-in-PTP-Tx-code.conn
  0020-net-core-XDP-metadata-BTF-netlink-API.conn
  0013-igc-Optimize-the-packet-buffer-utilization.conn
  0054-net-phy-increase-gpy-loopback-test-delay.conn
  0001-xsk-add-txtime-field-in-xdp_desc-struct.conn
  0028-igc-Enable-trace-for-HW-TX-Timestamp-AF_XDP-ZC.conn
  0021-rtnetlink-Fix-unchecked-return-value-of-dev_xdp_query.conn
  0022-rtnetlink-Add-return-value-check.conn
  0029-igc-Remove-the-CONFIG_DEBUG_MISC-condition-for-trace.conn
  igc: Use strict cycles for LaunchTime mode --> 
d8f45be01dd9381065a3778a579385249ed011dc (v6.2-rc1)
  0033-igc-Add-SO_TXTIME-for-AF_XDP-ZC.conn
  0002-taprio-Add-support-for-frame-preemption-offload.conn
  0023-tools-bpf-Query-XDP-metadata-BTF-ID.conn
  0001-igc-Configure-BaseT-after-start-and-end-tim.conn
  net: stmmac: Calculate CDC error only once --> 
c6d5f1933085f9a92ed5c256a859ab31c7a35f88 (v5.17-rc1)
  net: stmmac: fix dma queue left shift overflow issue --> 
613b065ca32e90209024ec4a6bb5ca887ee70980 (v5.19-rc8)
  net: phy: prefer 1000baseT over 1000baseKX --> 
f20f94f7f52c4685c81754f489ffcc72186e8bdb (v5.17-rc1)
  0002-taprio-Add-support-for-frame-preemption-offload.conn
  net: stmmac: enhance XDP ZC driver level switching performance --> 
ac746c8520d9d056b6963ecca8ff1da9929d02f1 (v5.17-rc1)

  
  The following were added  to the list:
  Here are some new updates for TSN commits.

  1) Please revert the following commits from your v5.15 kernel repo cause 
there are new versions.
  d4693f9a365d0510c75fd3425a23decdd2b85fe9 igc: Add support for enabling frame 
preemption via ethtool
  4a35531e3ffa180a51973d3446be45afa0f9b155 igc: Add support for Frame 
Preemption verification
  857a369b94bba7600322dec90bca6393b73729f6 ethtool: Add support for configuring 
frame preemption
  eb7738199a973886e46dee1970351a7d75bb1a74 ethtool: Add support for configuring 
and verifying frame preemption
  1343abeaea0bda3a2386bbd79ee2516b786d622f ethtool: Add support for configuring 
frame preemption via ioctl
  0ec3ef23c5abf678c41f8f49e3c2ad6db1add86b net: tc: Add index of FPE QMASK

  2) Backport the following upstreamed ones:
  fdf87b5b3087 net: phy: marvell: add sleep time after enabling the loopback bit
  af7b29b1deaa Revert "net/sched: taprio: make qdisc_leaf() see the 
per-netdev-queue pfifo child qdiscs"
  c0df8e7ba6aa igc: Add checking for basetime less than zero
  cfd5978411ed igc: Fix PPS delta between two synchronized end-points

  3) And then pick up the following OOT patches from 
https://github.com/intel/linux-intel-quilt/tree/lts-v5.15.92-linux-230301T014014Z
  0016-ptp-Fixed-read-issue-on-PHC-with-zero-n_pins.tgpio
  0001-net-phy-dp83867-perform-restart-AN-after-modifying-AN.conn
  0004-ethtool-Add-support-for-configuring-frame-preemption.conn
  0005-ethtool-Add-support-for-Frame-Preemption-verification.conn
  0007-igc-Add-support-for-enabling-frame-preemption-via-eth.conn
  0011-igc-Add-support-for-Frame-Preemption-verification.conn

  4) Please also track the following 2 tickets for ADL-N and RPL TSN support.
  https://bugs.launchpad.net/lookout-canyon/+bug/1997525
  https://bugs.launchpad.net/lookout-canyon/+bug/1996592

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux-intel-iotg/+bug/2017934/+subscriptions


-- 
Mailing list: https://launchpad.net/~kernel-packages
Post to     : kernel-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~kernel-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to