{"affected":[{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-extra":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 12 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-extra":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 12 SP3","name":"kernel-source","purl":"pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-extra":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Desktop 12 SP3","name":"kernel-syms","purl":"pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"cluster-md-kmp-default":"4.4.178-94.91.2","dlm-kmp-default":"4.4.178-94.91.2","gfs2-kmp-default":"4.4.178-94.91.2","ocfs2-kmp-default":"4.4.178-94.91.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise High Availability Extension 12 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kgraft-patch-4_4_178-94_91-default":"1-4.3.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Live Patching 12 SP3","name":"kgraft-patch-SLE12-SP3_Update_25","purl":"pkg:rpm/suse/kgraft-patch-SLE12-SP3_Update_25&distro=SUSE%20Linux%20Enterprise%20Live%20Patching%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1-4.3.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"4.4.178-94.91.2","kernel-obs-build":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP3","name":"kernel-docs","purl":"pkg:rpm/suse/kernel-docs&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-docs":"4.4.178-94.91.2","kernel-obs-build":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP3","name":"kernel-obs-build","purl":"pkg:rpm/suse/kernel-obs-build&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3","name":"kernel-source","purl":"pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server 12 SP3","name":"kernel-syms","purl":"pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP3","name":"kernel-source","purl":"pkg:rpm/suse/kernel-source&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default":"4.4.178-94.91.2","kernel-default-base":"4.4.178-94.91.2","kernel-default-devel":"4.4.178-94.91.2","kernel-default-man":"4.4.178-94.91.2","kernel-devel":"4.4.178-94.91.1","kernel-macros":"4.4.178-94.91.1","kernel-source":"4.4.178-94.91.1","kernel-syms":"4.4.178-94.91.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP3","name":"kernel-syms","purl":"pkg:rpm/suse/kernel-syms&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"kernel-default-extra":"4.4.178-94.91.2"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Workstation Extension 12 SP3","name":"kernel-default","purl":"pkg:rpm/suse/kernel-default&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.4.178-94.91.2"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"\n\nThe SUSE Linux Enterprise 12 SP3 kernel was updated to 4.4.178 to receive various security and bugfixes.\n\nFour new speculative execution issues have been identified in Intel CPUs. (bsc#1111331)\n\n- CVE-2018-12126: Microarchitectural Store Buffer Data Sampling (MSBDS)\n- CVE-2018-12127: Microarchitectural Fill Buffer Data Sampling (MFBDS)\n- CVE-2018-12130: Microarchitectural Load Port Data Samling (MLPDS)\n- CVE-2019-11091: Microarchitectural Data Sampling Uncacheable Memory (MDSUM)\n\nThis kernel update contains software mitigations, utilizing CPU microcode updates shipped in parallel.\n\nFor more information on this set of information leaks, check out https://www.suse.com/support/kb/doc/?id=7023736\n\nThe following security issues fixed:\n\n- CVE-2018-5814: Multiple race condition errors when handling probe, disconnect, and rebind operations could be exploited to trigger a use-after-free condition or a NULL pointer dereference by sending multiple USB over IP packets (bnc#1096480).\n- CVE-2018-1000204: Prevent infoleak caused by incorrect handling of the SG_IO ioctl (bsc#1096728)\n- CVE-2018-10853: A flaw was found in the way the KVM hypervisor emulated instructions such as sgdt/sidt/fxsave/fxrstor. It did not check current privilege(CPL) level while emulating unprivileged instructions. An unprivileged guest user/process could use this flaw to potentially escalate privileges inside guest (bnc#1097104).\n- CVE-2018-15594: arch/x86/kernel/paravirt.c mishandled certain indirect calls, which made it easier for attackers to conduct Spectre-v2 attacks against paravirtual guests (bnc#1105348).\n- CVE-2019-9503: A brcmfmac frame validation bypass was fixed (bnc#1132828).\n- CVE-2019-3882: A flaw was fixed in the vfio interface implementation that permitted violation of the user's locked memory limit. If a device is bound to a vfio driver, such as vfio-pci, and the local attacker is administratively granted ownership of the device, it may cause a system memory exhaustion and thus a denial of service (DoS). Versions 3.10, 4.14 and 4.18 are vulnerable (bnc#1131416 bnc#1131427).\n\nThe following non-security bugs were fixed:\n\n- 9p/net: fix memory leak in p9_client_create (bnc#1012382).\n- 9p: use inode->i_lock to protect i_size_write() under 32-bit (bnc#1012382).\n- acpi: acpi_pad: Do not launch acpi_pad threads on idle cpus (bsc#1113399).\n- acpi / bus: Only call dmi_check_system() on X86 (git-fixes).\n- acpi / button: make module loadable when booted in non-ACPI mode (bsc#1051510).\n- acpi / device_sysfs: Avoid OF modalias creation for removed device (bnc#1012382).\n- acpi: include ACPI button driver in base kernel (bsc#1062056).\n- Add hlist_add_tail_rcu() (Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net) (bnc#1012382).\n- alsa: bebob: use more identical mod_alias for Saffire Pro 10 I/O against Liquid Saffire 56 (bnc#1012382).\n- alsa: compress: add support for 32bit calls in a 64bit kernel (bnc#1012382).\n- alsa: compress: prevent potential divide by zero bugs (bnc#1012382).\n- alsa: hda - Enforces runtime_resume after S3 and S4 for each codec (bnc#1012382).\n- alsa: hda - Record the current power state before suspend/resume calls (bnc#1012382).\n- alsa: pcm: Do not suspend stream in unrecoverable PCM state (bnc#1012382).\n- alsa: pcm: Fix possible OOB access in PCM oss plugins (bnc#1012382).\n- alsa: rawmidi: Fix potential Spectre v1 vulnerability (bnc#1012382).\n- alsa: seq: oss: Fix Spectre v1 vulnerability (bnc#1012382).\n- applicom: Fix potential Spectre v1 vulnerabilities (bnc#1012382).\n- arc: fix __ffs return value to avoid build warnings (bnc#1012382).\n- arc: uacces: remove lp_start, lp_end from clobber list (bnc#1012382).\n- arcv2: Enable unaligned access in early ASM code (bnc#1012382).\n- arm64: fix COMPAT_SHMLBA definition for large pages (bnc#1012382).\n- arm64: Fix NUMA build error when !CONFIG_ACPI (fate#319981,  git-fixes).\n- arm64: Fix NUMA build error when !CONFIG_ACPI (git-fixes).\n- arm64: hide __efistub_ aliases from kallsyms (bnc#1012382).\n- arm64: kconfig: drop CONFIG_RTC_LIB dependency (bnc#1012382).\n- arm64/kernel: fix incorrect EL0 check in inv_entry macro (bnc#1012382).\n- arm64: mm: Add trace_irqflags annotations to do_debug_exception() (bnc#1012382).\n- arm64: Relax GIC version check during early boot (bnc#1012382).\n- arm64: support keyctl() system call in 32-bit mode (bnc#1012382).\n- arm64: traps: disable irq in die() (bnc#1012382).\n- arm: 8458/1: bL_switcher: add GIC dependency (bnc#1012382).\n- arm: 8494/1: mm: Enable PXN when running non-LPAE kernel on LPAE processor (bnc#1012382).\n- arm: 8510/1: rework ARM_CPU_SUSPEND dependencies (bnc#1012382).\n- arm: 8824/1: fix a migrating irq bug when hotplug cpu (bnc#1012382).\n- arm: dts: exynos: Add minimal clkout parameters to Exynos3250 PMU (bnc#1012382).\n- arm: dts: exynos: Do not ignore real-world fuse values for thermal zone 0 on Exynos5420 (bnc#1012382).\n- arm: imx6q: cpuidle: fix bug that CPU might not wake up at expected time (bnc#1012382).\n- arm: OMAP2+: Variable 'reg' in function omap4_dsi_mux_pads() could be uninitialized (bnc#1012382).\n- arm: pxa: ssp: unneeded to free devm_ allocated data (bnc#1012382).\n- arm: s3c24xx: Fix boolean expressions in osiris_dvs_notify (bnc#1012382).\n- ASoC: dapm: change snprintf to scnprintf for possible overflow (bnc#1012382).\n- ASoC: fsl_esai: fix register setting issue in RIGHT_J mode (bnc#1012382).\n- ASoC: imx-audmux: change snprintf to scnprintf for possible overflow (bnc#1012382).\n- ASoC: Intel: Haswell/Broadwell: fix setting for .dynamic field (bnc#1012382).\n- ASoC: topology: free created components in tplg load error (bnc#1012382).\n- assoc_array: Fix shortcut creation (bnc#1012382).\n- ath10k: avoid possible string overflow (bnc#1012382).\n- ath9k_htc: Add a sanity check in ath9k_htc_ampdu_action() (bsc#1087092).\n- atm: he: fix sign-extension overflow on large shift (bnc#1012382).\n- autofs: drop dentry reference only when it is never used (bnc#1012382).\n- autofs: fix error return in autofs_fill_super() (bnc#1012382).\n- batman-adv: Avoid endless loop in bat-on-bat netdevice check (git-fixes).\n- batman-adv: Fix lockdep annotation of batadv_tlv_container_remove (git-fixes).\n- batman-adv: fix uninit-value in batadv_interface_tx() (bnc#1012382).\n- batman-adv: Only put gw_node list reference when removed (git-fixes).\n- batman-adv: Only put orig_node_vlan list reference when removed (git-fixes).\n- bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt (bnc#1012382).\n- bnxt_en: Drop oversize TX packets to prevent errors (bnc#1012382).\n- btrfs: Avoid possible qgroup_rsv_size overflow in btrfs_calculate_inode_block_rsv_size (git-fixes).\n- btrfs: Fix bound checking in qgroup_trace_new_subtree_blocks (pending fix for bsc#1063638).\n- btrfs: fix corruption reading shared and compressed extents after hole punching (bnc#1012382).\n- btrfs: qgroup: Cleanup old subtree swap code (bsc#1063638).\n- btrfs: qgroup: Do not trace subtree if we're dropping reloc tree (bsc#1063638).\n- btrfs: qgroup: Introduce function to find all new tree blocks of reloc tree (bsc#1063638).\n- btrfs: qgroup: Introduce function to trace two swaped extents (bsc#1063638).\n- btrfs: qgroup: Introduce per-root swapped blocks infrastructure (bsc#1063638).\n- btrfs: qgroup: Introduce trace event to analyse the number of dirty extents accounted (bsc#1063638 dependency).\n- btrfs: qgroup: Only trace data extents in leaves if we're relocating data block group (bsc#1063638).\n- btrfs: qgroup: Refactor btrfs_qgroup_trace_subtree_swap (bsc#1063638).\n- btrfs: qgroup: Search commit root for rescan to avoid missing extent (bsc#1129326).\n- btrfs: qgroup: Use delayed subtree rescan for balance (bsc#1063638).\n- btrfs: qgroup: Use generation-aware subtree swap to mark dirty extents (bsc#1063638).\n- btrfs: raid56: properly unmap parity page in finish_parity_scrub() (bnc#1012382).\n- btrfs: relocation: Delay reloc tree deletion after merge_reloc_roots (bsc#1063638).\n- btrfs: remove WARN_ON in log_dir_items (bnc#1012382).\n- cdc-wdm: pass return value of recover_from_urb_loss (bsc#1129770).\n- cfg80211: extend range deviation for DMG (bnc#1012382).\n- cfg80211: size various nl80211 messages correctly (bnc#1012382).\n- cifs: fix computation for MAX_SMB2_HDR_SIZE (bnc#1012382).\n- cifs: fix POSIX lock leak and invalid ptr deref (bsc#1114542).\n- cifs: Fix read after write for files with read caching (bnc#1012382).\n- clk: ingenic: Fix round_rate misbehaving with non-integer dividers (bnc#1012382).\n- clocksource/drivers/exynos_mct: Clear timer interrupt when shutdown (bnc#1012382).\n- clocksource/drivers/exynos_mct: Move one-shot check from tick clear to ISR (bnc#1012382).\n- cls_bpf: reset class and reuse major in da (git-fixes).\n- coresight: coresight_unregister() function cleanup (bnc#1012382).\n- coresight: 'DEVICE_ATTR_RO' should defined as static (bnc#1012382).\n- coresight: etm4x: Check every parameter used by dma_xx_coherent (bnc#1012382).\n- coresight: fixing lockdep error (bnc#1012382).\n- coresight: release reference taken by 'bus_find_device()' (bnc#1012382).\n- coresight: remove csdev's link from topology (bnc#1012382).\n- coresight: removing bind/unbind options from sysfs (bnc#1012382).\n- cpufreq: pxa2xx: remove incorrect __init annotation (bnc#1012382).\n- cpufreq: tegra124: add missing of_node_put() (bnc#1012382).\n- cpufreq: Use struct kobj_attribute instead of struct global_attr (bnc#1012382).\n- cpu/hotplug: Handle unbalanced hotplug enable/disable (bnc#1012382).\n- cpu/speculation: Add 'mitigations=' cmdline option (bsc#1112178).\n- crypto: ahash - fix another early termination in hash walk (bnc#1012382).\n- crypto: arm64/aes-ccm - fix logical bug in AAD MAC handling (bnc#1012382).\n- crypto: caam - fixed handling of sg list (bnc#1012382).\n- crypto: pcbc - remove bogus memcpy()s with src == dest (bnc#1012382).\n- crypto: qat - remove unused and redundant pointer vf_info (bsc#1085539).\n- crypto: tgr192 - fix unaligned memory access (bsc#1129770).\n- cw1200: fix missing unlock on error in cw1200_hw_scan() (bsc#1129770).\n- dccp: do not use ipv6 header for ipv4 flow (bnc#1012382).\n- disable kgdboc failed by echo space to /sys/module/kgdboc/parameters/kgdboc (bnc#1012382).\n- dmaengine: at_xdmac: Fix wrongfull report of a channel as in use (bnc#1012382).\n- dmaengine: dmatest: Abort test in case of mapping error (bnc#1012382).\n- dmaengine: usb-dmac: Make DMAC system sleep callbacks explicit (bnc#1012382).\n- dm: disable DISCARD if the underlying storage no longer supports it (bsc#1114638).\n- dm: fix to_sector() for 32bit (bnc#1012382).\n- drivers: hv: vmbus: Fix bugs in rescind handling (bsc#1130567).\n- drivers: hv: vmbus: Fix ring buffer signaling (bsc#1118506).\n- drivers: hv: vmbus: Fix the offer_in_progress in vmbus_process_offer() (bsc#1130567).\n- drivers: hv: vmbus: Offload the handling of channels to two workqueues (bsc#1130567).\n- drivers: hv: vmbus: Reset the channel callback in vmbus_onoffer_rescind() (bsc#1130567).\n- drm/msm: Unblock writer if reader closes file (bnc#1012382).\n- drm/vmwgfx: Do not double-free the mode stored in par->set_mode (bsc#1106929)\n- efi: stub: define DISABLE_BRANCH_PROFILING for all architectures (bnc#1012382).\n- ext2: Fix underflow in ext2_max_size() (bnc#1012382).\n- ext4: Avoid panic during forced reboot (bsc#1126356).\n- ext4: brelse all indirect buffer in ext4_ind_remove_space() (bnc#1012382).\n- ext4: fix data corruption caused by unaligned direct AIO (bnc#1012382).\n- ext4: fix NULL pointer dereference while journal is aborted (bnc#1012382).\n- extcon: usb-gpio: Do not miss event during suspend/resume (bnc#1012382).\n- firmware: dmi: Optimize dmi_matches (git-fixes).\n- floppy: check_events callback should not return a negative number (git-fixes).\n- flow_dissector: Check for IP fragmentation even if not using IPv4 address (git-fixes).\n- fs/9p: use fscache mutex rather than spinlock (bnc#1012382).\n- fs/nfs: Fix nfs_parse_devname to not modify it's argument (git-fixes).\n- fs/proc/proc_sysctl.c: fix NULL pointer dereference in put_links (bnc#1012382).\n- fuse: continue to send FUSE_RELEASEDIR when FUSE_OPEN returns ENOSYS (git-fixes).\n- fuse: fix possibly missed wake-up after abort (git-fixes).\n- futex: Ensure that futex address is aligned in handle_futex_death() (bnc#1012382).\n- futex,rt_mutex: Fix rt_mutex_cleanup_proxy_lock() (git-fixes).\n- futex,rt_mutex: Restructure rt_mutex_finish_proxy_lock() (bnc#1012382).\n- gpio: adnp: Fix testing wrong value in adnp_gpio_direction_input (bnc#1012382).\n- gpio: vf610: Mask all GPIO interrupts (bnc#1012382).\n- gro_cells: make sure device is up in gro_cells_receive() (bnc#1012382).\n- hid-sensor-hub.c: fix wrong do_div() usage (bnc#1012382).\n- hpet: Fix missing '=' character in the __setup() code of hpet_mmap_enable (bsc#1129770).\n- hugetlbfs: fix races and page leaks during migration (bnc#1012382).\n- hv_netvsc: Fix napi reschedule while receive completion is busy (bsc#1118506).\n- hv_netvsc: fix race in napi poll when rescheduling (bsc#1118506).\n- hv_netvsc: Fix the return status in RX path (bsc#1118506).\n- hv_netvsc: use napi_schedule_irqoff (bsc#1118506).\n- hv: v4.12 API for hyperv-iommu (bsc#1122822).\n- hv: v4.12 API for hyperv-iommu (fate#327171, bsc#1122822).\n- i2c: cadence: Fix the hold bit setting (bnc#1012382).\n- i2c: tegra: fix maximum transfer size (bnc#1012382).\n- ib/{hfi1, qib}: Fix WC.byte_len calculation for UD_SEND_WITH_IMM (bnc#1012382).\n- ibmvnic: Enable GRO (bsc#1132227).\n- ibmvnic: Fix completion structure initialization (bsc#1131659).\n- ibmvnic: Fix netdev feature clobbering during a reset (bsc#1132227).\n- input: elan_i2c - add id for touchpad found in Lenovo s21e-20 (bnc#1012382).\n- input: matrix_keypad - use flush_delayed_work() (bnc#1012382).\n- input: st-keyscan - fix potential zalloc NULL dereference (bnc#1012382).\n- input: wacom_serial4 - add support for Wacom ArtPad II tablet (bnc#1012382).\n- intel_th: Do not reference unassigned outputs (bnc#1012382).\n- intel_th: gth: Fix an off-by-one in output unassigning (git-fixes).\n- iommu/amd: Fix NULL dereference bug in match_hid_uid (bsc#1130345).\n- iommu/amd: fix sg->dma_address for sg->offset bigger than PAGE_SIZE (bsc#1130346).\n- iommu/amd: Reserve exclusion range in iova-domain (bsc#1130425).\n- iommu/amd: Set exclusion range correctly (bsc#1130425).\n- iommu: Do not print warning when IOMMU driver only supports unmanaged domains (bsc#1130130).\n- iommu/hyper-v: Add Hyper-V stub IOMMU driver (bsc#1122822).\n- iommu/hyper-v: Add Hyper-V stub IOMMU driver (fate#327171,  bsc#1122822).\n- iommu/vt-d: Check capability before disabling protected memory (bsc#1130347).\n- ip6: fix PMTU discovery when using /127 subnets (git-fixes).\n- ip6mr: Do not call __IP6_INC_STATS() from preemptible context (bnc#1012382).\n- ip_tunnel: fix ip tunnel lookup in collect_md mode (git-fixes).\n- ipvlan: disallow userns cap_net_admin to change global mode/flags (bnc#1012382).\n- ipvs: Fix signed integer overflow when setsockopt timeout (bnc#1012382).\n- irqchip/mmp: Only touch the PJ4 IRQ & FIQ bits on enable/disable (bnc#1012382).\n- iscsi_ibft: Fix missing break in switch statement (bnc#1012382).\n- isdn: avm: Fix string plus integer warning from Clang (bnc#1012382).\n- isdn: i4l: isdn_tty: Fix some concurrency double-free bugs (bnc#1012382).\n- isdn: isdn_tty: fix build warning of strncpy (bnc#1012382).\n- iwlwifi: dbg: do not crash if the firmware crashes in the middle of a debug dump (bsc#1119086).\n- jbd2: clear dirty flag when revoking a buffer from an older transaction (bnc#1012382).\n- jbd2: fix compile warning when using JBUFFER_TRACE (bnc#1012382).\n- kabi fixup gendisk disk_devt revert (bsc#1020989).\n- kbuild: setlocalversion: print error to STDERR (bnc#1012382).\n- kernel/sysctl.c: add missing range check in do_proc_dointvec_minmax_conv (bnc#1012382).\n- keys: allow reaching the keys quotas exactly (bnc#1012382).\n- keys: always initialize keyring_index_key::desc_len (bnc#1012382).\n- keys: restrict /proc/keys by credentials at open time (bnc#1012382).\n- keys: user: Align the payload buffer (bnc#1012382).\n- kvm: Call kvm_arch_memslots_updated() before updating memslots (bsc#1132634).\n- kvm: nSVM: clear events pending from svm_complete_interrupts() when exiting to L1 (bnc#1012382).\n- kvm: nVMX: Apply addr size mask to effective address for VMX instructions (bsc#1132635).\n- kvm: nVMX: Ignore limit checks on VMX instructions using flat segments (bnc#1012382).\n- kvm: nVMX: Sign extend displacements of VMX instr's mem operands (bnc#1012382).\n- kvm: Reject device ioctls from processes other than the VM's creator (bnc#1012382).\n- kvm: VMX: Compare only a single byte for VMCS' 'launched' in vCPU-run (bsc#1132636).\n- kvm: VMX: Zero out *all* general purpose registers after VM-Exit (bsc#1132637).\n- kvm: x86: Emulate MSR_IA32_ARCH_CAPABILITIES on AMD hosts (bsc#1132534).\n- kvm: X86: Fix residual mmio emulation request to userspace (bnc#1012382).\n- kvm: x86/mmu: Do not cache MMIO accesses while memslots are in flux (bsc#1132638).\n- l2tp: fix infoleak in l2tp_ip6_recvmsg() (git-fixes).\n- leds: lp5523: fix a missing check of return value of lp55xx_read (bnc#1012382).\n- libertas: call into generic suspend code before turning off power (bsc#1106110).\n- libertas: fix suspend and resume for SDIO connected cards (bsc#1106110).\n- lib/int_sqrt: optimize small argument (bnc#1012382).\n- libnvdimm/pmem: Honor force_raw for legacy pmem regions (bsc#1131857).\n- locking/lockdep: Add debug_locks check in __lock_downgrade() (bnc#1012382).\n- locking/static_keys: Improve uninitialized key warning (bsc#1106913).\n- m68k: Add -ffreestanding to CFLAGS (bnc#1012382).\n- mac80211: do not initiate TDLS connection if station is not associated to AP (bnc#1012382).\n- mac80211: fix miscounting of ttl-dropped frames (bnc#1012382).\n- mac80211: fix 'warning: target metric may be used uninitialized' (bnc#1012382).\n- mac80211_hwsim: propagate genlmsg_reply return code (bnc#1012382).\n- mac8390: Fix mmio access size probe (bnc#1012382).\n- md: Fix failed allocation of md_register_thread (bnc#1012382).\n- mdio_bus: Fix use-after-free on device_register fails (bnc#1012382 git-fixes).\n- md/raid1: do not clear bitmap bits on interrupted recovery (git-fixes).\n- media: cx88: Get rid of spurious call to cx8800_start_vbi_dma() (bsc#1100132).\n- media: uvcvideo: Avoid NULL pointer dereference at the end of streaming (bnc#1012382).\n- media: uvcvideo: Fix 'type' check leading to overflow (bnc#1012382).\n- media: uvcvideo: Fix uvc_alloc_entity() allocation alignment (bsc#1119086).\n- media: v4l2-ctrls.c/uvc: zero v4l2_event (bnc#1012382).\n- media: videobuf2-v4l2: drop WARN_ON in vb2_warn_zero_bytesused() (bnc#1012382).\n- media: vivid: potential integer overflow in vidioc_g_edid() (bsc#11001132).\n- mfd: ab8500-core: Return zero in get_register_interruptible() (bnc#1012382).\n- mfd: db8500-prcmu: Fix some section annotations (bnc#1012382).\n- mfd: mc13xxx: Fix a missing check of a register-read failure (bnc#1012382).\n- mfd: qcom_rpm: write fw_version to CTRL_REG (bnc#1012382).\n- mfd: ti_am335x_tscadc: Use PLATFORM_DEVID_AUTO while registering mfd cells (bnc#1012382).\n- mfd: twl-core: Fix section annotations on {,un}protect_pm_master (bnc#1012382).\n- mfd: wm5110: Add missing ASRC rate register (bnc#1012382).\n- mips: loongson64: lemote-2f: Add IRQF_NO_SUSPEND to 'cascade' irqaction (bnc#1012382).\n- mISDN: hfcpci: Test both vendor & device ID for Digium HFC4S (bnc#1012382).\n- missing barriers in some of unix_sock ->addr and ->path accesses (bnc#1012382).\n- mmc: bcm2835: reset host on timeout (bsc#1070872).\n- mmc: block: Allow more than 8 partitions per card (bnc#1012382).\n- mmc: core: fix using wrong io voltage if mmc_select_hs200 fails (bnc#1012382).\n- mmc: core: shut up 'voltage-ranges unspecified' pr_info() (bnc#1012382).\n- mmc: debugfs: Add a restriction to mmc debugfs clock setting (bnc#1012382).\n- mmc: make MAN_BKOPS_EN message a debug (bnc#1012382).\n- mmc: mmc: fix switch timeout issue caused by jiffies precision (bnc#1012382).\n- mmc: pwrseq_simple: Make reset-gpios optional to match doc (bnc#1012382).\n- mmc: pxamci: fix enum type confusion (bnc#1012382).\n- mmc: sanitize 'bus width' in debug output (bnc#1012382).\n- mmc: spi: Fix card detection during probe (bnc#1012382).\n- mmc: tmio_mmc_core: do not claim spurious interrupts (bnc#1012382).\n- mm/debug.c: fix __dump_page when mapping->host is not set (bsc#1131934).\n- mm, memory_hotplug: fix off-by-one in is_pageblock_removable (git-fixes).\n- mm, memory_hotplug: is_mem_section_removable do not pass the end of a zone (bnc#1012382).\n- mm, memory_hotplug: test_pages_in_a_zone do not pass the end of zone (bnc#1012382).\n- mm: move is_pageblock_removable_nolock() to mm/memory_hotplug.c (git-fixes prerequisity).\n- mm/page_isolation.c: fix a wrong flag in set_migratetype_isolate() (bsc#1131935)\n- mm/rmap: replace BUG_ON(anon_vma->degree) with VM_WARN_ON (bnc#1012382).\n- mm/vmalloc: fix size check for remap_vmalloc_range_partial() (bnc#1012382).\n- move power_up_on_resume flag to end of structure for kABI (bsc#1106110).\n- mwifiex: pcie: tighten a check in mwifiex_pcie_process_event_ready() (bsc#1100132).\n- ncpfs: fix build warning of strncpy (bnc#1012382).\n- net: add description for len argument of dev_get_phys_port_name (git-fixes).\n- net: Add __icmp_send helper (bnc#1012382).\n- net: altera_tse: fix connect_local_phy error path (bnc#1012382).\n- net: altera_tse: fix msgdma_tx_completion on non-zero fill_level case (bnc#1012382).\n- net: avoid use IPCB in cipso_v4_error (bnc#1012382).\n- net: diag: support v4mapped sockets in inet_diag_find_one_icsk() (bnc#1012382).\n- net: do not decrement kobj reference count on init failure (git-fixes).\n- net: dsa: mv88e6xxx: Fix u64 statistics (bnc#1012382).\n- net: ena: fix race between link up and device initalization (bsc#1129278).\n- net: ena: update driver version from 2.0.2 to 2.0.3 (bsc#1129278).\n- netfilter: ipt_CLUSTERIP: fix use-after-free of proc entry (git-fixes).\n- netfilter: nf_conntrack_tcp: Fix stack out of bounds when parsing TCP options (bnc#1012382).\n- netfilter: nfnetlink_acct: validate NFACCT_FILTER parameters (bnc#1012382).\n- netfilter: nfnetlink_log: just returns error for unknown command (bnc#1012382).\n- netfilter: nfnetlink: use original skbuff when acking batches (git-fixes).\n- netfilter: x_tables: enforce nul-terminated table name from getsockopt GET_ENTRIES (bnc#1012382).\n- net: hns: Fix use after free identified by SLUB debug (bnc#1012382).\n- net: hns: Fix wrong read accesses via Clause 45 MDIO protocol (bnc#1012382).\n- net: hsr: fix memory leak in hsr_dev_finalize() (bnc#1012382).\n- net/hsr: fix possible crash in add_timer() (bnc#1012382).\n- netlabel: fix out-of-bounds memory accesses (bnc#1012382).\n- net/mlx4_en: Force CHECKSUM_NONE for short ethernet frames (bnc#1012382).\n- net: mv643xx_eth: disable clk on error path in mv643xx_eth_shared_probe() (bnc#1012382).\n- net: nfc: Fix NULL dereference on nfc_llcp_build_tlv fails (bnc#1012382).\n- net/packet: fix 4gb buffer limit due to overflow check (bnc#1012382).\n- net/packet: Set __GFP_NOWARN upon allocation in alloc_pg_vec (bnc#1012382).\n- net: phy: Micrel KSZ8061: link failure after cable connect (bnc#1012382).\n- net: rose: fix a possible stack overflow (bnc#1012382).\n- net: Set rtm_table to RT_TABLE_COMPAT for ipv6 for tables > 255 (bnc#1012382).\n- net: set static variable an initial value in atl2_probe() (bnc#1012382).\n- net: sit: fix UBSAN Undefined behaviour in check_6rd (bnc#1012382).\n- net: stmmac: dwmac-rk: fix error handling in rk_gmac_powerup() (bnc#1012382).\n- net-sysfs: call dev_hold if kobject_init_and_add success (git-fixes).\n- net-sysfs: Fix mem leak in netdev_register_kobject (bnc#1012382).\n- net: systemport: Fix reception of BPDUs (bnc#1012382).\n- net: tcp_memcontrol: properly detect ancestor socket pressure (git-fixes).\n- net/x25: fix a race in x25_bind() (bnc#1012382).\n- net/x25: fix use-after-free in x25_device_event() (bnc#1012382).\n- net/x25: reset state in x25_connect() (bnc#1012382).\n- nfc: nci: memory leak in nci_core_conn_create() (git-fixes).\n- nfs41: pop some layoutget errors to application (bnc#1012382).\n- nfsd: fix memory corruption caused by readdir (bsc#1127445).\n- nfsd: fix wrong check in write_v4_end_grace() (git-fixes).\n- nfs: Do not recoalesce on error in nfs_pageio_complete_mirror() (git-fixes).\n- nfs: Fix an I/O request leakage in nfs_do_recoalesce (git-fixes).\n- nfs: Fix dentry revalidation on NFSv4 lookup (bsc#1132618).\n- nfs: fix mount/umount race in nlmclnt (git-fixes).\n- nfs: Fix NULL pointer dereference of dev_name (bnc#1012382).\n- nfsv4.x: always serialize open/close operations (bsc#1114893).\n- numa: change get_mempolicy() to use nr_node_ids instead of MAX_NUMNODES (bnc#1012382).\n- packets: Always register packet sk in the same order (bnc#1012382).\n- parport_pc: fix find_superio io compare code, should use equal test (bnc#1012382).\n- pci-hyperv: increase HV_VP_SET_BANK_COUNT_MAX to handle 1792 vcpus (bsc#1122822).\n- pci-hyperv: increase HV_VP_SET_BANK_COUNT_MAX to handle 1792  vcpus (fate#327171, bsc#1122822).\n- perf auxtrace: Define auxtrace record alignment (bnc#1012382).\n- perf bench: Copy kernel files needed to build mem{cpy,set} x86_64 benchmarks (bnc#1012382).\n- perf intel-pt: Fix CYC timestamp calculation after OVF (bnc#1012382).\n- perf intel-pt: Fix overlap calculation for padding (bnc#1012382).\n- perf intel-pt: Fix TSC slip (bnc#1012382).\n- perf/ring_buffer: Refuse to begin AUX transaction after rb->aux_mmap_count drops (bnc#1012382).\n- perf symbols: Filter out hidden symbols from labels (bnc#1012382).\n- perf: Synchronously free aux pages in case of allocation failure (bnc#1012382).\n- perf tools: Handle TOPOLOGY headers with no CPU (bnc#1012382).\n- perf/x86/amd: Add event map for AMD Family 17h (bsc#1114648).\n- phonet: fix building with clang (bnc#1012382).\n- pinctrl: meson: meson8b: fix the sdxc_a data 1..3 pins (bnc#1012382).\n- platform/x86: Fix unmet dependency warning for SAMSUNG_Q10 (bnc#1012382).\n- pm / Hibernate: Call flush_icache_range() on pages restored in-place (bnc#1012382).\n- pm / wakeup: Rework wakeup source timer cancellation (bnc#1012382).\n- powerpc/32: Clear on-stack exception marker upon exception return (bnc#1012382).\n- powerpc/64: Call setup_barrier_nospec() from setup_arch() (bsc#1131107).\n- powerpc/64: Disable the speculation barrier from the command line (bsc#1131107).\n- powerpc/64: Make stf barrier PPC_BOOK3S_64 specific (bsc#1131107).\n- powerpc/64s: Add new security feature flags for count cache flush (bsc#1131107).\n- powerpc/64s: Add support for software count cache flush (bsc#1131107).\n- powerpc/83xx: Also save/restore SPRG4-7 during suspend (bnc#1012382).\n- powerpc: Always initialize input array when calling epapr_hypercall() (bnc#1012382).\n- powerpc/asm: Add a patch_site macro & helpers for patching instructions (bsc#1131107).\n- powerpc/fsl: Fix spectre_v2 mitigations reporting (bsc#1131107).\n- powerpc/mm/hash: Handle mmap_min_addr correctly in get_unmapped_area topdown search (bsc#1131900).\n- powerpc/numa: document topology_updates_enabled, disable by default (bsc#1133584).\n- powerpc/numa: improve control of topology updates (bsc#1133584).\n- powerpc/perf: Fix unit_sel/cache_sel checks (bsc#1053043).\n- powerpc/perf: Remove l2 bus events from HW cache event array (bsc#1053043).\n- powerpc/perf: Update raw-event code encoding comment for power8 (bsc#1053043, git-fixes).\n- powerpc/powernv/cpuidle: Init all present cpus for deep states (bsc#1066223).\n- powerpc/powernv: Make opal log only readable by root (bnc#1012382).\n- powerpc/powernv: Query firmware for count cache flush settings (bsc#1131107).\n- powerpc/pseries/mce: Fix misleading print for TLB mutlihit (bsc#1094244, git-fixes).\n- powerpc/pseries: Query hypervisor for count cache flush settings (bsc#1131107).\n- powerpc/security: Fix spectre_v2 reporting (bsc#1131107).\n- powerpc/speculation: Support 'mitigations=' cmdline option (bsc#1112178).\n- powerpc/tm: Add commandline option to disable hardware transactional memory (bsc#1118338).\n- powerpc/tm: Add TM Unavailable Exception (bsc#1118338).\n- powerpc/tm: Flip the HTM switch default to disabled (bsc#1125580).\n- powerpc/vdso32: fix CLOCK_MONOTONIC on PPC64 (bsc#1131587).\n- powerpc/vdso64: Fix CLOCK_MONOTONIC inconsistencies across Y2038 (bsc#1131587).\n- powerpc/wii: properly disable use of BATs when requested (bnc#1012382).\n- raid10: It's wrong to add len to sector_nr in raid10 reshape twice (bnc#1012382).\n- ravb: Decrease TxFIFO depth of Q3 and Q2 to one (bnc#1012382).\n- rcu: Do RCU GP kthread self-wakeup from softirq and interrupt (bnc#1012382).\n- rdma/core: Do not expose unsupported counters (bsc#994770).\n- rdma/srp: Rework SCSI device reset handling (bnc#1012382).\n- Refresh patches.fixes/0001-net-mlx4-Fix-endianness-issue-in-qp-context-params.patch. (bsc#1132619)\n- regulator: s2mpa01: Fix step values for some LDOs (bnc#1012382).\n- regulator: s2mps11: Fix steps for buck7, buck8 and LDO35 (bnc#1012382).\n- Revert 'bridge: do not add port to router list when receives query with source 0.0.0.0' (bnc#1012382).\n- Revert 'mmc: block: do not use parameter prefix if built as module' (bnc#1012382).\n- Revert 'scsi, block: fix duplicate bdi name registration crashes' (bsc#1020989).\n- Revert 'USB: core: only clean up what we allocated' (bnc#1012382).\n- route: set the deleted fnhe fnhe_daddr to 0 in ip_del_fnhe to fix a race (bnc#1012382).\n- rsi: fix a dereference on adapter before it has been null checked (bsc#1085539).\n- rtc: Fix overflow when converting time64_t to rtc_time (bnc#1012382).\n- rtl8xxxu: Fix missing break in switch (bsc#1120902).\n- s390/dasd: fix panic for failed online processing (bsc#1132589).\n- s390/dasd: fix using offset into zero size array error (bnc#1012382).\n- s390: Prevent hotplug rwsem recursion (bsc#1131980).\n- s390/qeth: fix use-after-free in error path (bnc#1012382).\n- s390/speculation: Support 'mitigations=' cmdline option (bsc#1112178).\n- s390/virtio: handle find on invalid queue gracefully (bnc#1012382).\n- sched/core: Fix cpu.max vs. cpuhotplug deadlock (bsc#1106913).\n- sched/smt: Expose sched_smt_present static key (bsc#1106913).\n- sched/smt: Make sched_smt_present track topology (bsc#1106913).\n- scripts/git_sort/git_sort.py: Add fixes branch from mkp/scsi.git.\n- scsi: csiostor: fix NULL pointer dereference in csio_vport_set_state() (bnc#1012382).\n- scsi: isci: initialize shost fully before calling scsi_add_host() (bnc#1012382).\n- scsi: libfc: free skb when receiving invalid flogi resp (bnc#1012382).\n- scsi: libiscsi: Fix race between iscsi_xmit_task and iscsi_complete_task (bnc#1012382).\n- scsi: libsas: Fix rphy phy_identifier for PHYs with end devices attached (bnc#1012382).\n- scsi: qla4xxx: check return code of qla4xxx_copy_from_fwddb_param (bnc#1012382).\n- scsi: sd: Fix a race between closing an sd device and sd I/O (bnc#1012382).\n- scsi: storvsc: Fix a race in sub-channel creation that can cause panic ().\n- scsi: storvsc: Fix a race in sub-channel creation that can  cause panic (fate#323887).\n- scsi: storvsc: Reduce default ring buffer size to 128 Kbytes ().\n- scsi: storvsc: Reduce default ring buffer size to 128 Kbytes  (fate#323887).\n- scsi: target/iscsi: Avoid iscsit_release_commands_from_conn() deadlock (bnc#1012382).\n- scsi: virtio_scsi: do not send sc payload with tmfs (bnc#1012382).\n- scsi: zfcp: fix rport unblock if deleted SCSI devices on Scsi_Host (bnc#1012382).\n- scsi: zfcp: fix scsi_eh host reset with port_forced ERP for non-NPIV FCP devices (bnc#1012382).\n- sctp: fix the transports round robin issue when init is retransmitted (git-fixes).\n- sctp: get sctphdr by offset in sctp_compute_cksum (bnc#1012382).\n- serial: 8250_pci: Fix number of ports for ACCES serial cards (bnc#1012382).\n- serial: 8250_pci: Have ACCES cards that use the four port Pericom PI7C9X7954 chip use the pci_pericom_setup() (bnc#1012382).\n- serial: fsl_lpuart: fix maximum acceptable baud rate with over-sampling (bnc#1012382).\n- serial: max310x: Fix to avoid potential NULL pointer dereference (bnc#1012382).\n- serial: sh-sci: Fix setting SCSCR_TIE while transferring data (bnc#1012382).\n- serial: sprd: adjust TIMEOUT to a big value (bnc#1012382).\n- serial: sprd: clear timeout interrupt only rather than all interrupts (bnc#1012382).\n- sit: check if IPv6 enabled before calling ip6_err_gen_icmpv6_unreach() (bnc#1012382).\n- sky2: Disable MSI on Dell Inspiron 1545 and Gateway P-79 (bnc#1012382).\n- sockfs: getxattr: Fail with -EOPNOTSUPP for invalid attribute names (bnc#1012382).\n- staging: ashmem: Add missing include (bnc#1012382).\n- staging: ashmem: Avoid deadlock with mmap/shrink (bnc#1012382).\n- staging: goldfish: audio: fix compiliation on arm (bnc#1012382).\n- staging: ion: Set minimum carveout heap allocation order to PAGE_SHIFT (bnc#1012382).\n- staging: lustre: fix buffer overflow of string buffer (bnc#1012382).\n- staging: rtl8188eu: avoid a null dereference on pmlmepriv (bsc#1085539).\n- staging: vt6655: Fix interrupt race condition on device start up (bnc#1012382).\n- staging: vt6655: Remove vif check from vnt_interrupt (bnc#1012382).\n- stm class: Do not leak the chrdev in error path (bnc#1012382).\n- stm class: Fix an endless loop in channel allocation (bnc#1012382).\n- stm class: Fix a race in unlinking (bnc#1012382).\n- stm class: Fix link list locking (bnc#1012382).\n- stm class: Fix locking in unbinding policy path (bnc#1012382).\n- stm class: Fix stm device initialization order (bnc#1012382).\n- stm class: Fix unbalanced module/device refcounting (bnc#1012382).\n- stm class: Fix unlocking braino in the error path (bnc#1012382).\n- stm class: Guard output assignment against concurrency (bnc#1012382).\n- stm class: Hide STM-specific options if STM is disabled (bnc#1012382).\n- stm class: Prevent division by zero (bnc#1012382).\n- stm class: Prevent user-controllable allocations (bnc#1012382).\n- stm class: Support devices with multiple instances (bnc#1012382).\n- stmmac: copy unicast mac address to MAC registers (bnc#1012382).\n- stop_machine: Provide stop_machine_cpuslocked() (bsc#1131980).\n- sunrpc: do not mark uninitialised items as VALID (bsc#1130737).\n- sunrpc: init xdr_stream for zero iov_len, page_len (bsc#11303356).\n- svm/avic: Fix invalidate logical APIC id entry (bsc#1132727).\n- svm: Fix AVIC DFR and LDR handling (bsc#1130343).\n- svm: Fix improper check when deactivate AVIC (bsc#1130344).\n- tcp/dccp: drop SYN packets if accept queue is full (bnc#1012382).\n- tcp/dccp: remove reqsk_put() from inet_child_forget() (git-fixes).\n- tcp: do not use ipv6 header for ipv4 flow (bnc#1012382).\n- tcp: handle inet_csk_reqsk_queue_add() failures (git-fixes).\n- thermal: int340x_thermal: Fix a NULL vs IS_ERR() check (bnc#1012382).\n- time: Introduce jiffies64_to_nsecs() (bsc#1113399).\n- tmpfs: fix link accounting when a tmpfile is linked in (bnc#1012382).\n- tmpfs: fix uninitialized return value in shmem_link (bnc#1012382).\n- tpm: fix kdoc for tpm2_flush_context_cmd() (bsc#1020645).\n- tpm: Fix the type of the return value in calc_tpm2_event_size() (bsc#1020645, git-fixes).\n- tpm: tpm-interface.c drop unused macros (bsc#1020645).\n- tty: atmel_serial: fix a potential NULL pointer dereference (bnc#1012382).\n- udf: Fix crash on IO error during truncate (bnc#1012382).\n- Update patches.fixes/SUNRPC-init-xdr_stream-for-zero-iov_len-page_len.patch (bsc#1130356).\n- usb: core: only clean up what we allocated (bnc#1012382).\n- usb: dwc2: Fix DMA alignment to start at allocated boundary (bsc#1100132).\n- usb: dwc2: fix the incorrect bitmaps for the ports of multi_tt hub (bsc#1100132).\n- usb: dwc3: gadget: Fix suspend/resume during device mode (bnc#1012382).\n- usb: dwc3: gadget: Fix the uninitialized link_state when udc starts (bnc#1012382).\n- usb: gadget: Add the gserial port checking in gs_start_tx() (bnc#1012382).\n- usb: gadget: composite: fix dereference after null check coverify warning (bnc#1012382).\n- usb: gadget: configfs: add mutex lock before unregister gadget (bnc#1012382).\n- usb: gadget: Potential NULL dereference on allocation error (bnc#1012382).\n- usb: gadget: rndis: free response queue during REMOTE_NDIS_RESET_MSG (bnc#1012382).\n- usb: renesas_usbhs: gadget: fix unused-but-set-variable warning (bnc#1012382).\n- usb: serial: cp210x: add ID for Ingenico 3070 (bnc#1012382).\n- usb: serial: cp210x: add new device id (bnc#1012382).\n- usb: serial: cypress_m8: fix interrupt-out transfer length (bsc#1119086).\n- usb: serial: ftdi_sio: add additional NovaTech products (bnc#1012382).\n- usb: serial: ftdi_sio: add ID for Hjelmslund Electronics USB485 (bnc#1012382).\n- usb: serial: mos7720: fix mos_parport refcount imbalance on error path (bsc#1129770).\n- usb: serial: option: add Olicard 600 (bnc#1012382).\n- usb: serial: option: add Telit ME910 ECM composition (bnc#1012382).\n- usb: serial: option: set driver_info for SIM5218 and compatibles (bsc#1129770).\n- video: fbdev: Set pixclock = 0 in goldfishfb (bnc#1012382).\n- vti4: Fix a ipip packet processing bug in 'IPCOMP' virtual tunnel (bnc#1012382).\n- vxlan: Do not call gro_cells_destroy() before device is unregistered (bnc#1012382).\n- vxlan: Fix GRO cells race condition between receive and link delete (bnc#1012382).\n- vxlan: test dev->flags & IFF_UP before calling gro_cells_receive() (bnc#1012382).\n- wlcore: Fix the return value in case of error in 'wlcore_vendor_cmd_smart_config_start()' (bsc#1120902).\n- x86_64: increase stack size for KASAN_EXTRA (bnc#1012382).\n- x86/apic: Provide apic_ack_irq() (bsc#1122822).\n- x86/apic: Provide apic_ack_irq() (fate#327171, bsc#1122822).\n- x86/CPU/AMD: Set the CPB bit unconditionally on F17h (bnc#1012382).\n- x86/Hyper-V: Set x2apic destination mode to physical when x2apic is available (bsc#1122822).\n- x86/Hyper-V: Set x2apic destination mode to physical when  x2apic is available (fate#327171, bsc#1122822).\n- x86/kexec: Do not setup EFI info if EFI runtime is not enabled (bnc#1012382).\n- x86/mce: Improve error message when kernel cannot recover, p2 (bsc#1114648).\n- x86/smp: Enforce CONFIG_HOTPLUG_CPU when SMP=y (bnc#1012382).\n- x86/speculation: Remove redundant arch_smt_update() invocation (bsc#1111331).\n- x86/speculation: Support 'mitigations=' cmdline option (bsc#1112178).\n- x86/uaccess: Do not leak the AC flag into __put_user() value evaluation (bsc#1114648).\n- x86/vdso: Add VCLOCK_HVCLOCK vDSO clock read method (bsc#1133308).\n- xen-netback: fix occasional leak of grant ref mappings under memory pressure (bnc#1012382).\n- xfrm_user: fix info leak in build_aevent() (git-fixes).\n- xfrm_user: fix info leak in xfrm_notify_sa() (git-fixes).\n- xhci: Do not let USB3 ports stuck in polling state prevent suspend (bsc#1047487).\n- xhci: Fix port resume done detection for SS ports with LPM enabled (bnc#1012382).\n- xtensa: SMP: fix ccount_timer_shutdown (bnc#1012382).\n- xtensa: SMP: fix secondary CPU initialization (bnc#1012382).\n- xtensa: SMP: limit number of possible CPUs by NR_CPUS (bnc#1012382).\n- xtensa: smp_lx200_defconfig: fix vectors clash (bnc#1012382).\n- xtensa: SMP: mark each possible CPU as present (bnc#1012382).\n","id":"SUSE-SU-2019:1245-1","modified":"2019-05-14T17:08:26Z","published":"2019-05-14T17:08:26Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2019/suse-su-20191245-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1012382"},{"type":"REPORT","url":"https://bugzilla.suse.com/1020645"},{"type":"REPORT","url":"https://bugzilla.suse.com/1020989"},{"type":"REPORT","url":"https://bugzilla.suse.com/1031492"},{"type":"REPORT","url":"https://bugzilla.suse.com/1047487"},{"type":"REPORT","url":"https://bugzilla.suse.com/1051510"},{"type":"REPORT","url":"https://bugzilla.suse.com/1053043"},{"type":"REPORT","url":"https://bugzilla.suse.com/1062056"},{"type":"REPORT","url":"https://bugzilla.suse.com/1063638"},{"type":"REPORT","url":"https://bugzilla.suse.com/1066223"},{"type":"REPORT","url":"https://bugzilla.suse.com/1070872"},{"type":"REPORT","url":"https://bugzilla.suse.com/1085539"},{"type":"REPORT","url":"https://bugzilla.suse.com/1087092"},{"type":"REPORT","url":"https://bugzilla.suse.com/1094244"},{"type":"REPORT","url":"https://bugzilla.suse.com/1096480"},{"type":"REPORT","url":"https://bugzilla.suse.com/1096728"},{"type":"REPORT","url":"https://bugzilla.suse.com/1097104"},{"type":"REPORT","url":"https://bugzilla.suse.com/1100132"},{"type":"REPORT","url":"https://bugzilla.suse.com/1105348"},{"type":"REPORT","url":"https://bugzilla.suse.com/1106110"},{"type":"REPORT","url":"https://bugzilla.suse.com/1106913"},{"type":"REPORT","url":"https://bugzilla.suse.com/1106929"},{"type":"REPORT","url":"https://bugzilla.suse.com/1111331"},{"type":"REPORT","url":"https://bugzilla.suse.com/1112178"},{"type":"REPORT","url":"https://bugzilla.suse.com/1113399"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114542"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114638"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114648"},{"type":"REPORT","url":"https://bugzilla.suse.com/1114893"},{"type":"REPORT","url":"https://bugzilla.suse.com/1118338"},{"type":"REPORT","url":"https://bugzilla.suse.com/1118506"},{"type":"REPORT","url":"https://bugzilla.suse.com/1119086"},{"type":"REPORT","url":"https://bugzilla.suse.com/1120902"},{"type":"REPORT","url":"https://bugzilla.suse.com/1122822"},{"type":"REPORT","url":"https://bugzilla.suse.com/1125580"},{"type":"REPORT","url":"https://bugzilla.suse.com/1126356"},{"type":"REPORT","url":"https://bugzilla.suse.com/1127445"},{"type":"REPORT","url":"https://bugzilla.suse.com/1129278"},{"type":"REPORT","url":"https://bugzilla.suse.com/1129326"},{"type":"REPORT","url":"https://bugzilla.suse.com/1129770"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130130"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130343"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130344"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130345"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130346"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130347"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130356"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130425"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130567"},{"type":"REPORT","url":"https://bugzilla.suse.com/1130737"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131107"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131416"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131427"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131587"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131659"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131857"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131900"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131934"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131935"},{"type":"REPORT","url":"https://bugzilla.suse.com/1131980"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132227"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132534"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132589"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132618"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132619"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132634"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132635"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132636"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132637"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132638"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132727"},{"type":"REPORT","url":"https://bugzilla.suse.com/1132828"},{"type":"REPORT","url":"https://bugzilla.suse.com/1133308"},{"type":"REPORT","url":"https://bugzilla.suse.com/1133584"},{"type":"REPORT","url":"https://bugzilla.suse.com/994770"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-1000204"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-10853"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-12126"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-12127"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-12130"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-15594"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-5814"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-11091"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-3882"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-9503"}],"related":["CVE-2018-1000204","CVE-2018-10853","CVE-2018-12126","CVE-2018-12127","CVE-2018-12130","CVE-2018-15594","CVE-2018-5814","CVE-2019-11091","CVE-2019-3882","CVE-2019-9503"],"summary":"Security update for the Linux Kernel","upstream":["CVE-2018-1000204","CVE-2018-10853","CVE-2018-12126","CVE-2018-12127","CVE-2018-12130","CVE-2018-15594","CVE-2018-5814","CVE-2019-11091","CVE-2019-3882","CVE-2019-9503"]}