Description
kernel: nf_tables: stack-out-of-bounds-read in nft_byteorder_eval() (CVE-2023-35001,ZDI-CAN-20721).
hw: Intel: Gather Data Sampling (GDS) side channel vulnerability (CVE-2022-40982,Downfall).
kernel: net/sched: sch_qfq component can be exploited if in qfq_change_agg function happens qfq_enqueue overhead.
kernel: fbcon: out-of-sync arrays in fbcon_mode_deleted due to wrong con2fb_map assignment.
kernel: net/sched: sch_hfsc UAF.
kernel: null-ptr-deref vulnerabilities in sl_tx_timeout in drivers/net/slip.
kernel: nfp: use-after-free in area_cache_get().
kernel: use-after-free in l2cap_sock_release in net/bluetooth/l2cap_sock.c.
kernel: use after free in nvmet_tcp_free_crypto in NVMe.
kernel: IGB driver inadequate buffer size for frames larger than MTU.
kernel: out-of-bounds write in qfq_change_class function.
kernel: inactive elements in nft_pipapo_walk.
kernel: ktls overwrites readonly memory pages when using function splice with a ktls socket as destination.
kernel: UAF in nftables when nft_set_lookup_global triggered after handling named and anonymous sets in batch requests.
kernel: vmwgfx: NULL pointer dereference in vmw_cmd_dx_define_query.
kernel: use-after-free in sch_qfq network scheduler.
kernel: fbcon: out-of-sync arrays in fbcon_mode_deleted due to wrong con2fb_map assignment (JIRA:RHEL-1203).
How to reduce or prevent thousands of kworker/events_freezable_power_efficient threads being created every time multipath -ll is run (JIRA:RHEL-15054).
kernel: net/sched: sch_hfsc UAF (JIRA:RHEL-16461).
[SanityOnly][kernel]BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:35 at: sock_map_update_elem_sys+0x85/0x2a0 (JIRA:RHEL-6126).
kernel: hw: Intel: Gather Data Sampling (GDS) side channel vulnerability (JIRA:RHEL-9246).
ipoib mcast lockup fix (JIRA:RHEL-19695).