Debian Bug report logs - #1108065
linux-image-6.12.32-amd64: Fails to boot on emmc

version graph

Package: src:linux; Maintainer for src:linux is Debian Kernel Team <debian-kernel@lists.debian.org>;

Reported by: Jeremy Lincicome <w0jrl1@gmail.com>

Date: Thu, 19 Jun 2025 22:31:01 UTC

Severity: serious

Tags: confirmed, upstream

Merged with 1107979

Found in versions linux/6.15.3-1~exp1, linux/6.12.32-1, linux/6.15.2-1~exp1

Fixed in versions linux/6.15.4-1~exp1, linux/6.12.35-1, linux/6.1.147-1

Done: Salvatore Bonaccorso <carnil@debian.org>

Bug is archived. No further changes may be made.

Forwarded to https://lore.kernel.org/regressions/aFW0ia8Jj4PQtFkS@eldamar.lan/T/

View this report as an mbox folder, status mbox, maintainer mbox


Report forwarded to debian-bugs-dist@lists.debian.org, debian-amd64@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package linux-image-6.12.32-amd64. (Thu, 19 Jun 2025 22:31:02 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
New Bug report received and forwarded. Copy sent to debian-amd64@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>. (Thu, 19 Jun 2025 22:31:02 GMT) (full text, mbox, link).


Message #5 received at submit@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Debian Bug Tracking System <submit@bugs.debian.org>
Subject: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Thu, 19 Jun 2025 16:29:32 -0600
Package: linux-image-6.12.32-amd64
Severity: critical
Justification: breaks the whole system
X-Debbugs-Cc: debian-amd64@lists.debian.org
User: debian-amd64@lists.debian.org
Usertags: amd64

Dear Maintainer,

I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the EMMC 
starting with this kernel. I'm including a link from the Be My Eyes app 
that shows the boot error. I used this app to get the error because I'm 
blind, and cannot read the boot screen independently.
https://share.bemyeyes.com/chat/kE3kuHs4c3

* What led up to the situation?
Booting the machine.
* What exactly did you do (or not do) that was effective (or
ineffective)?
I restored a btrfs snapshot with  6.12.30-amd64 to get the machine 
running again.
* What was the outcome of this action?
I'm not able to update the system. If I do, it won't boot.
* What outcome did you expect instead?
The system should boot after an update.

-- System Information:
Debian Release: 13.0
APT prefers testing-security
APT policy: (500, 'testing-security'), (500, 'testing')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 6.12.30-amd64 (SMP w/2 CPU threads; PREEMPT)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE 
not set
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages linux-image-6.12.32-amd64 depends on:
ii initramfs-tools [linux-initramfs-tool] 0.148.1
ii kmod 34.2-2
ii linux-base 4.12

Versions of packages linux-image-6.12.32-amd64 recommends:
ii apparmor 4.1.0-1

Versions of packages linux-image-6.12.32-amd64 suggests:
pn debian-kernel-handbook <none>
ii firmware-linux-free 20241210-2
ii grub-efi-amd64 2.12-7
pn linux-doc-6.12 <none>

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Bug reassigned from package 'linux-image-6.12.32-amd64' to 'src:linux'. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Thu, 19 Jun 2025 22:37:01 GMT) (full text, mbox, link).


Marked as found in versions linux/6.12.32-1. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Thu, 19 Jun 2025 22:37:02 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Thu, 19 Jun 2025 22:41:01 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Thu, 19 Jun 2025 22:41:01 GMT) (full text, mbox, link).


Message #14 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Jeremy Lincicome <w0jrl1@gmail.com>, 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 00:38:16 +0200
Control: reassign -1 src:linux 6.12.32-1
Control: tags -1 + moreinfo
Control: severity 1108065 serious

Hi,

On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
> Package: linux-image-6.12.32-amd64
> Severity: critical
> Justification: breaks the whole system
> X-Debbugs-Cc: debian-amd64@lists.debian.org
> User: debian-amd64@lists.debian.org
> Usertags: amd64
> 
> Dear Maintainer,
> 
> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the EMMC
> starting with this kernel. I'm including a link from the Be My Eyes app that
> shows the boot error. I used this app to get the error because I'm blind,
> and cannot read the boot screen independently.
> https://share.bemyeyes.com/chat/kE3kuHs4c3
> 
> * What led up to the situation?
> Booting the machine.
> * What exactly did you do (or not do) that was effective (or
> ineffective)?
> I restored a btrfs snapshot with  6.12.30-amd64 to get the machine running
> again.
> * What was the outcome of this action?
> I'm not able to update the system. If I do, it won't boot.
> * What outcome did you expect instead?
> The system should boot after an update.

I think this is the same as the already reported #1107979.

Would you be able to bisect the changes between 6.12.30 upstream and
6.12.32 to identify the offending commit?

Regards,
Salvatore



Added tag(s) moreinfo. Request was from Salvatore Bonaccorso <carnil@debian.org> to 1108065-submit@bugs.debian.org. (Thu, 19 Jun 2025 22:41:02 GMT) (full text, mbox, link).


Severity set to 'serious' from 'critical' Request was from Salvatore Bonaccorso <carnil@debian.org> to 1108065-submit@bugs.debian.org. (Thu, 19 Jun 2025 22:41:02 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Thu, 19 Jun 2025 22:51:01 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Thu, 19 Jun 2025 22:51:01 GMT) (full text, mbox, link).


Message #23 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Jeremy Lincicome <w0jrl1@gmail.com>
Cc: 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 00:49:20 +0200
Hi,

On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
> Control: reassign -1 src:linux 6.12.32-1
> Control: tags -1 + moreinfo
> Control: severity 1108065 serious
> 
> Hi,
> 
> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
> > Package: linux-image-6.12.32-amd64
> > Severity: critical
> > Justification: breaks the whole system
> > X-Debbugs-Cc: debian-amd64@lists.debian.org
> > User: debian-amd64@lists.debian.org
> > Usertags: amd64
> > 
> > Dear Maintainer,
> > 
> > I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the EMMC
> > starting with this kernel. I'm including a link from the Be My Eyes app that
> > shows the boot error. I used this app to get the error because I'm blind,
> > and cannot read the boot screen independently.
> > https://share.bemyeyes.com/chat/kE3kuHs4c3
> > 
> > * What led up to the situation?
> > Booting the machine.
> > * What exactly did you do (or not do) that was effective (or
> > ineffective)?
> > I restored a btrfs snapshot with  6.12.30-amd64 to get the machine running
> > again.
> > * What was the outcome of this action?
> > I'm not able to update the system. If I do, it won't boot.
> > * What outcome did you expect instead?
> > The system should boot after an update.
> 
> I think this is the same as the already reported #1107979.
> 
> Would you be able to bisect the changes between 6.12.30 upstream and
> 6.12.32 to identify the offending commit?

Additionally, please do test as well the kernel from experimental
(6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
persists there as well.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Thu, 19 Jun 2025 22:53:03 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Thu, 19 Jun 2025 22:53:03 GMT) (full text, mbox, link).


Message #28 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>, 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Thu, 19 Jun 2025 16:52:24 -0600
On 6/19/25 16:38, Salvatore Bonaccorso wrote:
> Control: reassign -1 src:linux 6.12.32-1
> Control: tags -1 + moreinfo
> Control: severity 1108065 serious
>
> Hi,
>
> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
>> Package: linux-image-6.12.32-amd64
>> Severity: critical
>> Justification: breaks the whole system
>> X-Debbugs-Cc: debian-amd64@lists.debian.org
>> User: debian-amd64@lists.debian.org
>> Usertags: amd64
>>
>> Dear Maintainer,
>>
>> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the EMMC
>> starting with this kernel. I'm including a link from the Be My Eyes app that
>> shows the boot error. I used this app to get the error because I'm blind,
>> and cannot read the boot screen independently.
>> https://share.bemyeyes.com/chat/kE3kuHs4c3
>>
>> * What led up to the situation?
>> Booting the machine.
>> * What exactly did you do (or not do) that was effective (or
>> ineffective)?
>> I restored a btrfs snapshot with  6.12.30-amd64 to get the machine running
>> again.
>> * What was the outcome of this action?
>> I'm not able to update the system. If I do, it won't boot.
>> * What outcome did you expect instead?
>> The system should boot after an update.
> I think this is the same as the already reported #1107979.

That bug sounds very similar to this one.

> Would you be able to bisect the changes between 6.12.30 upstream and
> 6.12.32 to identify the offending commit?

No, not without a little hand-holding.

> Regards,
> Salvatore


-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 00:39:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 00:39:01 GMT) (full text, mbox, link).


Message #33 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Thu, 19 Jun 2025 18:36:47 -0600
Hi,

On 6/19/25 16:49, Salvatore Bonaccorso wrote:
> Hi,
>
> On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
>> Control: reassign -1 src:linux 6.12.32-1
>> Control: tags -1 + moreinfo
>> Control: severity 1108065 serious
>>
>> Hi,
>>
>> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
>>> Package: linux-image-6.12.32-amd64
>>> Severity: critical
>>> Justification: breaks the whole system
>>> X-Debbugs-Cc: debian-amd64@lists.debian.org
>>> User: debian-amd64@lists.debian.org
>>> Usertags: amd64
>>>
>>> Dear Maintainer,
>>>
>>> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the EMMC
>>> starting with this kernel. I'm including a link from the Be My Eyes app that
>>> shows the boot error. I used this app to get the error because I'm blind,
>>> and cannot read the boot screen independently.
>>> https://share.bemyeyes.com/chat/kE3kuHs4c3
>>>
>>> * What led up to the situation?
>>> Booting the machine.
>>> * What exactly did you do (or not do) that was effective (or
>>> ineffective)?
>>> I restored a btrfs snapshot with  6.12.30-amd64 to get the machine running
>>> again.
>>> * What was the outcome of this action?
>>> I'm not able to update the system. If I do, it won't boot.
>>> * What outcome did you expect instead?
>>> The system should boot after an update.
>> I think this is the same as the already reported #1107979.
>>
>> Would you be able to bisect the changes between 6.12.30 upstream and
>> 6.12.32 to identify the offending commit?
> Additionally, please do test as well the kernel from experimental
> (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
> persists there as well.

I just tested 6.15.2-1~exp1, and as far as I can tell, got the same error.

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Marked as found in versions linux/6.15.2-1~exp1. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Fri, 20 Jun 2025 04:25:02 GMT) (full text, mbox, link).


Removed tag(s) moreinfo. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Fri, 20 Jun 2025 04:27:01 GMT) (full text, mbox, link).


Added tag(s) upstream. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Fri, 20 Jun 2025 04:27:02 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 16:37:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 16:37:01 GMT) (full text, mbox, link).


Message #44 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 10:35:17 -0600
On 6/19/25 18:36, Jeremy Lincicome wrote:
> Hi,
>
> On 6/19/25 16:49, Salvatore Bonaccorso wrote:
>> Hi,
>>
>> On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
>>> Control: reassign -1 src:linux 6.12.32-1
>>> Control: tags -1 + moreinfo
>>> Control: severity 1108065 serious
>>>
>>> Hi,
>>>
>>> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
>>>> Package: linux-image-6.12.32-amd64
>>>> Severity: critical
>>>> Justification: breaks the whole system
>>>> X-Debbugs-Cc: debian-amd64@lists.debian.org
>>>> User: debian-amd64@lists.debian.org
>>>> Usertags: amd64
>>>>
>>>> Dear Maintainer,
>>>>
>>>> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot from the 
>>>> EMMC
>>>> starting with this kernel. I'm including a link from the Be My Eyes 
>>>> app that
>>>> shows the boot error. I used this app to get the error because I'm 
>>>> blind,
>>>> and cannot read the boot screen independently.
>>>> https://share.bemyeyes.com/chat/kE3kuHs4c3
>>>>
>>>> * What led up to the situation?
>>>> Booting the machine.
>>>> * What exactly did you do (or not do) that was effective (or
>>>> ineffective)?
>>>> I restored a btrfs snapshot with  6.12.30-amd64 to get the machine 
>>>> running
>>>> again.
>>>> * What was the outcome of this action?
>>>> I'm not able to update the system. If I do, it won't boot.
>>>> * What outcome did you expect instead?
>>>> The system should boot after an update.
>>> I think this is the same as the already reported #1107979.
>>>
>>> Would you be able to bisect the changes between 6.12.30 upstream and
>>> 6.12.32 to identify the offending commit?
>> Additionally, please do test as well the kernel from experimental
>> (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
>> persists there as well.
>
> I just tested 6.15.2-1~exp1, and as far as I can tell, got the same 
> error.

I just tried 6.15.3-1~exp1 and got the same error.
Am I correct in assuming that the error won't show up in any logs with 
more information?
I can chroot into the installed system from a Gnome live image if needed.

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Marked as found in versions linux/6.15.3-1~exp1. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Fri, 20 Jun 2025 18:41:02 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 18:55:01 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 18:55:01 GMT) (full text, mbox, link).


Message #51 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Jeremy Lincicome <w0jrl1@gmail.com>, 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 20:53:53 +0200
Hi Jeremy,

On Fri, Jun 20, 2025 at 10:35:17AM -0600, Jeremy Lincicome wrote:
> On 6/19/25 18:36, Jeremy Lincicome wrote:
> > Hi,
> > 
> > On 6/19/25 16:49, Salvatore Bonaccorso wrote:
> > > Hi,
> > > 
> > > On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
> > > > Control: reassign -1 src:linux 6.12.32-1
> > > > Control: tags -1 + moreinfo
> > > > Control: severity 1108065 serious
> > > > 
> > > > Hi,
> > > > 
> > > > On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
> > > > > Package: linux-image-6.12.32-amd64
> > > > > Severity: critical
> > > > > Justification: breaks the whole system
> > > > > X-Debbugs-Cc: debian-amd64@lists.debian.org
> > > > > User: debian-amd64@lists.debian.org
> > > > > Usertags: amd64
> > > > > 
> > > > > Dear Maintainer,
> > > > > 
> > > > > I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot
> > > > > from the EMMC
> > > > > starting with this kernel. I'm including a link from the Be
> > > > > My Eyes app that
> > > > > shows the boot error. I used this app to get the error
> > > > > because I'm blind,
> > > > > and cannot read the boot screen independently.
> > > > > https://share.bemyeyes.com/chat/kE3kuHs4c3
> > > > > 
> > > > > * What led up to the situation?
> > > > > Booting the machine.
> > > > > * What exactly did you do (or not do) that was effective (or
> > > > > ineffective)?
> > > > > I restored a btrfs snapshot with  6.12.30-amd64 to get the
> > > > > machine running
> > > > > again.
> > > > > * What was the outcome of this action?
> > > > > I'm not able to update the system. If I do, it won't boot.
> > > > > * What outcome did you expect instead?
> > > > > The system should boot after an update.
> > > > I think this is the same as the already reported #1107979.
> > > > 
> > > > Would you be able to bisect the changes between 6.12.30 upstream and
> > > > 6.12.32 to identify the offending commit?
> > > Additionally, please do test as well the kernel from experimental
> > > (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
> > > persists there as well.
> > 
> > I just tested 6.15.2-1~exp1, and as far as I can tell, got the same
> > error.
> 
> I just tried 6.15.3-1~exp1 and got the same error.
> Am I correct in assuming that the error won't show up in any logs with more
> information?
> I can chroot into the installed system from a Gnome live image if needed.

Once you drop into the initramfs shell, can you run dmesg to get the
kernel messages printed, so we might see something more interesting? 

Given it is as well an issue in 6.15.3 based kernel it might now be
worth to bring this already to upstream attention (I have not found
yet a similar report though, which is bit surprising).

Additionally to get the dmesg output printed, as this might become
difficult to get that out to us, two more things:

If you are using quiet kernel parameter, rmeote it so it less quiet.

Secondly it might be a try to use the netconsole if we get far enough.
https://www.kernel.org/doc/html/latest/networking/netconsole.html

Parallel to those questions, I will ask the linux-mmc list if
something rings a bell with the changes between 6.12.30..6.12.32.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 19:27:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 19:27:01 GMT) (full text, mbox, link).


Message #56 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>, 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 13:25:11 -0600
[Message part 1 (text/plain, inline)]
Hi Salvatore,

On 6/20/25 12:53, Salvatore Bonaccorso wrote:
> Hi Jeremy,
>
> On Fri, Jun 20, 2025 at 10:35:17AM -0600, Jeremy Lincicome wrote:
>> On 6/19/25 18:36, Jeremy Lincicome wrote:
>>> Hi,
>>>
>>> On 6/19/25 16:49, Salvatore Bonaccorso wrote:
>>>> Hi,
>>>>
>>>> On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
>>>>> Control: reassign -1src:linux 6.12.32-1
>>>>> Control: tags -1 + moreinfo
>>>>> Control: severity 1108065 serious
>>>>>
>>>>> Hi,
>>>>>
>>>>> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
>>>>>> Package: linux-image-6.12.32-amd64
>>>>>> Severity: critical
>>>>>> Justification: breaks the whole system
>>>>>> X-Debbugs-Cc:debian-amd64@lists.debian.org
>>>>>> User:debian-amd64@lists.debian.org
>>>>>> Usertags: amd64
>>>>>>
>>>>>> Dear Maintainer,
>>>>>>
>>>>>> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot
>>>>>> from the EMMC
>>>>>> starting with this kernel. I'm including a link from the Be
>>>>>> My Eyes app that
>>>>>> shows the boot error. I used this app to get the error
>>>>>> because I'm blind,
>>>>>> and cannot read the boot screen independently.
>>>>>> https://share.bemyeyes.com/chat/kE3kuHs4c3
>>>>>>
>>>>>> * What led up to the situation?
>>>>>> Booting the machine.
>>>>>> * What exactly did you do (or not do) that was effective (or
>>>>>> ineffective)?
>>>>>> I restored a btrfs snapshot with  6.12.30-amd64 to get the
>>>>>> machine running
>>>>>> again.
>>>>>> * What was the outcome of this action?
>>>>>> I'm not able to update the system. If I do, it won't boot.
>>>>>> * What outcome did you expect instead?
>>>>>> The system should boot after an update.
>>>>> I think this is the same as the already reported #1107979.
>>>>>
>>>>> Would you be able to bisect the changes between 6.12.30 upstream and
>>>>> 6.12.32 to identify the offending commit?
>>>> Additionally, please do test as well the kernel from experimental
>>>> (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
>>>> persists there as well.
>>> I just tested 6.15.2-1~exp1, and as far as I can tell, got the same
>>> error.
>> I just tried 6.15.3-1~exp1 and got the same error.
>> Am I correct in assuming that the error won't show up in any logs with more
>> information?
>> I can chroot into the installed system from a Gnome live image if needed.
> Once you drop into the initramfs shell, can you run dmesg to get the
> kernel messages printed, so we might see something more interesting?

I can certainly try. Just to make sure I understand, you want me to run 
dmesg after the system fails to boot, and the busybox shell loads? Or, 
are you asking me to run that from a chroot? Please understand that my 
only way to get any output to you from the busybox shell is to use the 
method I used in my initial report. I will need to use the Be My Eyes 
app to get a description of the screen, and the AI may not focus on the 
text, or worse, may try to summarize it.
I know this is an unusual request; is there any possibility of meeting 
on something like Jitsi meet so that you can see my screen through my 
phone's camera?
>
> Given it is as well an issue in 6.15.3 based kernel it might now be
> worth to bring this already to upstream attention (I have not found
> yet a similar report though, which is bit surprising).
>
> Additionally to get the dmesg output printed, as this might become
> difficult to get that out to us, two more things:
>
> If you are using quiet kernel parameter, rmeote it so it less quiet.
>
> Secondly it might be a try to use the netconsole if we get far enough.
> https://www.kernel.org/doc/html/latest/networking/netconsole.html
>
> Parallel to those questions, I will ask the linux-mmc list if
> something rings a bell with the changes between 6.12.30..6.12.32.
>

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com
[Message part 2 (text/html, inline)]

Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 20:07:02 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 20:07:02 GMT) (full text, mbox, link).


Message #61 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Jeremy Lincicome <w0jrl1@gmail.com>
Cc: 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 22:04:21 +0200
Hi Jeremy,

On Fri, Jun 20, 2025 at 01:25:11PM -0600, Jeremy Lincicome wrote:
> Hi Salvatore,
> 
> On 6/20/25 12:53, Salvatore Bonaccorso wrote:
> > Hi Jeremy,
> > 
> > On Fri, Jun 20, 2025 at 10:35:17AM -0600, Jeremy Lincicome wrote:
> > > On 6/19/25 18:36, Jeremy Lincicome wrote:
> > > > Hi,
> > > > 
> > > > On 6/19/25 16:49, Salvatore Bonaccorso wrote:
> > > > > Hi,
> > > > > 
> > > > > On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
> > > > > > Control: reassign -1src:linux 6.12.32-1
> > > > > > Control: tags -1 + moreinfo
> > > > > > Control: severity 1108065 serious
> > > > > > 
> > > > > > Hi,
> > > > > > 
> > > > > > On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
> > > > > > > Package: linux-image-6.12.32-amd64
> > > > > > > Severity: critical
> > > > > > > Justification: breaks the whole system
> > > > > > > X-Debbugs-Cc:debian-amd64@lists.debian.org
> > > > > > > User:debian-amd64@lists.debian.org
> > > > > > > Usertags: amd64
> > > > > > > 
> > > > > > > Dear Maintainer,
> > > > > > > 
> > > > > > > I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot
> > > > > > > from the EMMC
> > > > > > > starting with this kernel. I'm including a link from the Be
> > > > > > > My Eyes app that
> > > > > > > shows the boot error. I used this app to get the error
> > > > > > > because I'm blind,
> > > > > > > and cannot read the boot screen independently.
> > > > > > > https://share.bemyeyes.com/chat/kE3kuHs4c3
> > > > > > > 
> > > > > > > * What led up to the situation?
> > > > > > > Booting the machine.
> > > > > > > * What exactly did you do (or not do) that was effective (or
> > > > > > > ineffective)?
> > > > > > > I restored a btrfs snapshot with  6.12.30-amd64 to get the
> > > > > > > machine running
> > > > > > > again.
> > > > > > > * What was the outcome of this action?
> > > > > > > I'm not able to update the system. If I do, it won't boot.
> > > > > > > * What outcome did you expect instead?
> > > > > > > The system should boot after an update.
> > > > > > I think this is the same as the already reported #1107979.
> > > > > > 
> > > > > > Would you be able to bisect the changes between 6.12.30 upstream and
> > > > > > 6.12.32 to identify the offending commit?
> > > > > Additionally, please do test as well the kernel from experimental
> > > > > (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
> > > > > persists there as well.
> > > > I just tested 6.15.2-1~exp1, and as far as I can tell, got the same
> > > > error.
> > > I just tried 6.15.3-1~exp1 and got the same error.
> > > Am I correct in assuming that the error won't show up in any logs with more
> > > information?
> > > I can chroot into the installed system from a Gnome live image if needed.
> > Once you drop into the initramfs shell, can you run dmesg to get the
> > kernel messages printed, so we might see something more interesting?
> 
> I can certainly try. Just to make sure I understand, you want me to run
> dmesg after the system fails to boot, and the busybox shell loads? Or, are
> you asking me to run that from a chroot? Please understand that my only way
> to get any output to you from the busybox shell is to use the method I used
> in my initial report. I will need to use the Be My Eyes app to get a
> description of the screen, and the AI may not focus on the text, or worse,
> may try to summarize it.

Yes the idea would have been to get the dmesg output from the running
system while you got dropped into the initramfs.

Yes I undersand the constraints here, this is as well why it makes me
bit reluctant to let you do such lower level debugging via initramfs
shell or netconsole and remote logging to another host.

> I know this is an unusual request; is there any possibility of meeting on
> something like Jitsi meet so that you can see my screen through my phone's
> camera?

yes that would be certainly an option or have a video recording posted
somewhere from the above steps.  I could contact you otherwise offlist
if we need to try the jitsi approach.

But as you might have seen I have posted a upstream report about the
issue, let's see first if we get something back from upstream as well
(like other things to debug) and then we can maybe combine the
session.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 20:23:02 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 20:23:02 GMT) (full text, mbox, link).


Message #66 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: regressions@lists.linux.dev, Jeremy Lincicome <w0jrl1@gmail.com>, Ulf Hansson <ulf.hansson@linaro.org>
Cc: linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Fri, 20 Jun 2025 22:21:19 +0200
On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
> Hi
> 
> In Debian we got a regression report booting on a Lenovo IdeaPad 1
> 15ADA7 dropping finally into the initramfs shell after updating from
> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
> shell:
> 
> mmc1: mmc_select_hs400 failed, error -110
> mmc1: error -110 whilst initialising MMC card
> 
> The original report is at https://bugs.debian.org/1107979 and the
> reporter tested as well kernel up to 6.15.3 which still fails to boot.
> 
> Another similar report landed with after the same version update as
> https://bugs.debian.org/1107979 .
> 
> I only see three commits touching drivers/mmc between
> 6.12.30..6.12.32:
> 
> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
> 
> I have found a potential similar issue reported in ArchLinux at
> https://bbs.archlinux.org/viewtopic.php?id=306024
> 
> I have asked if we can get more information out of the boot, but maybe
> this regression report already rings  bell for you?
> 
> #regzbot introduced v6.12.30..v6.12.32
> #regzbot link: https://bugs.debian.org/1107979
> #regzbot link: https://bbs.archlinux.org/viewtopic.php?id=306024

*sigh* apologies for the "mess", the actual right report is
https://bugs.debian.org/1108065 (where #1107979 at least has
similarities or might have the same root cause).

#regzbot link: https://bugs.debian.org/1108065

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Fri, 20 Jun 2025 20:25:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Fri, 20 Jun 2025 20:25:01 GMT) (full text, mbox, link).


Message #71 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: 1108065@bugs.debian.org
Subject: Re: Bug#1108065: linux-image-6.12.32-amd64: Fails to boot on emmc
Date: Fri, 20 Jun 2025 14:23:35 -0600
[Message part 1 (text/plain, inline)]
Hi Salvatore,

On 6/20/25 14:04, Salvatore Bonaccorso wrote:
> Hi Jeremy,
>
> On Fri, Jun 20, 2025 at 01:25:11PM -0600, Jeremy Lincicome wrote:
>> Hi Salvatore,
>>
>> On 6/20/25 12:53, Salvatore Bonaccorso wrote:
>>> Hi Jeremy,
>>>
>>> On Fri, Jun 20, 2025 at 10:35:17AM -0600, Jeremy Lincicome wrote:
>>>> On 6/19/25 18:36, Jeremy Lincicome wrote:
>>>>> Hi,
>>>>>
>>>>> On 6/19/25 16:49, Salvatore Bonaccorso wrote:
>>>>>> Hi,
>>>>>>
>>>>>> On Fri, Jun 20, 2025 at 12:38:16AM +0200, Salvatore Bonaccorso wrote:
>>>>>>> Control: reassign -1src:linux 6.12.32-1
>>>>>>> Control: tags -1 + moreinfo
>>>>>>> Control: severity 1108065 serious
>>>>>>>
>>>>>>> Hi,
>>>>>>>
>>>>>>> On Thu, Jun 19, 2025 at 04:29:32PM -0600, Jeremy Lincicome wrote:
>>>>>>>> Package: linux-image-6.12.32-amd64
>>>>>>>> Severity: critical
>>>>>>>> Justification: breaks the whole system
>>>>>>>> X-Debbugs-Cc:debian-amd64@lists.debian.org
>>>>>>>> User:debian-amd64@lists.debian.org
>>>>>>>> Usertags: amd64
>>>>>>>>
>>>>>>>> Dear Maintainer,
>>>>>>>>
>>>>>>>> I have a Lenovo IdeaPad 1 15ADA7, and am not able to boot
>>>>>>>> from the EMMC
>>>>>>>> starting with this kernel. I'm including a link from the Be
>>>>>>>> My Eyes app that
>>>>>>>> shows the boot error. I used this app to get the error
>>>>>>>> because I'm blind,
>>>>>>>> and cannot read the boot screen independently.
>>>>>>>> https://share.bemyeyes.com/chat/kE3kuHs4c3
>>>>>>>>
>>>>>>>> * What led up to the situation?
>>>>>>>> Booting the machine.
>>>>>>>> * What exactly did you do (or not do) that was effective (or
>>>>>>>> ineffective)?
>>>>>>>> I restored a btrfs snapshot with  6.12.30-amd64 to get the
>>>>>>>> machine running
>>>>>>>> again.
>>>>>>>> * What was the outcome of this action?
>>>>>>>> I'm not able to update the system. If I do, it won't boot.
>>>>>>>> * What outcome did you expect instead?
>>>>>>>> The system should boot after an update.
>>>>>>> I think this is the same as the already reported #1107979.
>>>>>>>
>>>>>>> Would you be able to bisect the changes between 6.12.30 upstream and
>>>>>>> 6.12.32 to identify the offending commit?
>>>>>> Additionally, please do test as well the kernel from experimental
>>>>>> (6.15.2-1~exp1 and soonish 6.15.3-1~exp1) to see if the problem
>>>>>> persists there as well.
>>>>> I just tested 6.15.2-1~exp1, and as far as I can tell, got the same
>>>>> error.
>>>> I just tried 6.15.3-1~exp1 and got the same error.
>>>> Am I correct in assuming that the error won't show up in any logs with more
>>>> information?
>>>> I can chroot into the installed system from a Gnome live image if needed.
>>> Once you drop into the initramfs shell, can you run dmesg to get the
>>> kernel messages printed, so we might see something more interesting?
>> I can certainly try. Just to make sure I understand, you want me to run
>> dmesg after the system fails to boot, and the busybox shell loads? Or, are
>> you asking me to run that from a chroot? Please understand that my only way
>> to get any output to you from the busybox shell is to use the method I used
>> in my initial report. I will need to use the Be My Eyes app to get a
>> description of the screen, and the AI may not focus on the text, or worse,
>> may try to summarize it.
> Yes the idea would have been to get the dmesg output from the running
> system while you got dropped into the initramfs.
>
> Yes I undersand the constraints here, this is as well why it makes me
> bit reluctant to let you do such lower level debugging via initramfs
> shell or netconsole and remote logging to another host.
>
>> I know this is an unusual request; is there any possibility of meeting on
>> something like Jitsi meet so that you can see my screen through my phone's
>> camera?
> yes that would be certainly an option or have a video recording posted
> somewhere from the above steps.  I could contact you otherwise offlist
> if we need to try the jitsi approach.
>
> But as you might have seen I have posted a upstream report about the
> issue, let's see first if we get something back from upstream as well
> (like other things to debug) and then we can maybe combine the
> session.

Yes, I did see your report to upstream, and I agree.
Thank you for your willingness to help me get the needed debugging info. 
I appreciate it.

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com
[Message part 2 (text/html, inline)]

Set Bug forwarded-to-address to 'https://lore.kernel.org/regressions/aFW0ia8Jj4PQtFkS@eldamar.lan/T/'. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Fri, 20 Jun 2025 21:07:03 GMT) (full text, mbox, link).


Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 09:21:02 GMT) (full text, mbox, link).


Acknowledgement sent to Shawn Lin <shawn.lin@rock-chips.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 09:21:02 GMT) (full text, mbox, link).


Message #78 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Shawn Lin <shawn.lin@rock-chips.com>
To: Salvatore Bonaccorso <carnil@debian.org>, regressions@lists.linux.dev, Jeremy Lincicome <w0jrl1@gmail.com>, Ulf Hansson <ulf.hansson@linaro.org>
Cc: shawn.lin@rock-chips.com, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 17:13:38 +0800
+ Jonathan Liu

在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>> Hi
>>
>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>> 15ADA7 dropping finally into the initramfs shell after updating from
>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>> shell:
>>
>> mmc1: mmc_select_hs400 failed, error -110
>> mmc1: error -110 whilst initialising MMC card
>>
>> The original report is at https://bugs.debian.org/1107979 and the
>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>
>> Another similar report landed with after the same version update as
>> https://bugs.debian.org/1107979 .
>>
>> I only see three commits touching drivers/mmc between
>> 6.12.30..6.12.32:
>>
>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>
>> I have found a potential similar issue reported in ArchLinux at
>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>
>> I have asked if we can get more information out of the boot, but maybe
>> this regression report already rings  bell for you?

Jonathan reported a similar failure regarding to hs400 on RK3399
platform.
https://lkml.org/lkml/2025/6/19/145

Maybe you could try to revert :
28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing 
parameters")

>>
>> #regzbot introduced v6.12.30..v6.12.32
>> #regzbot link: https://bugs.debian.org/1107979
>> #regzbot link: https://bbs.archlinux.org/viewtopic.php?id=306024
> 
> *sigh* apologies for the "mess", the actual right report is
> https://bugs.debian.org/1108065 (where #1107979 at least has
> similarities or might have the same root cause).
> 
> #regzbot link: https://bugs.debian.org/1108065
> 
> Regards,
> Salvatore
> 
> 




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 17:32:01 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 17:32:01 GMT) (full text, mbox, link).


Message #83 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Shawn Lin <shawn.lin@rock-chips.com>, Jeremy Lincicome <w0jrl1@gmail.com>
Cc: regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 19:30:40 +0200
On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
> + Jonathan Liu
> 
> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
> > On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
> > > Hi
> > > 
> > > In Debian we got a regression report booting on a Lenovo IdeaPad 1
> > > 15ADA7 dropping finally into the initramfs shell after updating from
> > > 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
> > > shell:
> > > 
> > > mmc1: mmc_select_hs400 failed, error -110
> > > mmc1: error -110 whilst initialising MMC card
> > > 
> > > The original report is at https://bugs.debian.org/1107979 and the
> > > reporter tested as well kernel up to 6.15.3 which still fails to boot.
> > > 
> > > Another similar report landed with after the same version update as
> > > https://bugs.debian.org/1107979 .
> > > 
> > > I only see three commits touching drivers/mmc between
> > > 6.12.30..6.12.32:
> > > 
> > > 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
> > > 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
> > > 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
> > > 
> > > I have found a potential similar issue reported in ArchLinux at
> > > https://bbs.archlinux.org/viewtopic.php?id=306024
> > > 
> > > I have asked if we can get more information out of the boot, but maybe
> > > this regression report already rings  bell for you?
> 
> Jonathan reported a similar failure regarding to hs400 on RK3399
> platform.
> https://lkml.org/lkml/2025/6/19/145
> 
> Maybe you could try to revert :
> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
> parameters")

Thanks.

Jeremy, could you test the (unofficial!) packages at
https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
6.12.33-1 with the revert patch applied on top?

I have put a sha256sum file and signed it with my key in the Debian
keyring for verification.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 19:01:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 19:01:01 GMT) (full text, mbox, link).


Message #88 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>, Shawn Lin <shawn.lin@rock-chips.com>
Cc: regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 12:58:43 -0600
On 6/23/25 11:30, Salvatore Bonaccorso wrote:
> On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
>> + Jonathan Liu
>>
>> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>>>> Hi
>>>>
>>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>>> 15ADA7 dropping finally into the initramfs shell after updating from
>>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>>> shell:
>>>>
>>>> mmc1: mmc_select_hs400 failed, error -110
>>>> mmc1: error -110 whilst initialising MMC card
>>>>
>>>> The original report is at https://bugs.debian.org/1107979 and the
>>>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>>>
>>>> Another similar report landed with after the same version update as
>>>> https://bugs.debian.org/1107979 .
>>>>
>>>> I only see three commits touching drivers/mmc between
>>>> 6.12.30..6.12.32:
>>>>
>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>>>
>>>> I have found a potential similar issue reported in ArchLinux at
>>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>>
>>>> I have asked if we can get more information out of the boot, but maybe
>>>> this regression report already rings  bell for you?
>> Jonathan reported a similar failure regarding to hs400 on RK3399
>> platform.
>> https://lkml.org/lkml/2025/6/19/145
>>
>> Maybe you could try to revert :
>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
>> parameters")
> Thanks.
>
> Jeremy, could you test the (unofficial!) packages at
> https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
> 6.12.33-1 with the revert patch applied on top?
>
> I have put a sha256sum file and signed it with my key in the Debian
> keyring for verification.

Do I need all those packages?

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 19:09:02 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 19:09:02 GMT) (full text, mbox, link).


Message #93 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Jeremy Lincicome <w0jrl1@gmail.com>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 21:07:39 +0200
Hi,

On Mon, Jun 23, 2025 at 12:58:43PM -0600, Jeremy Lincicome wrote:
> On 6/23/25 11:30, Salvatore Bonaccorso wrote:
> > On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
> > > + Jonathan Liu
> > > 
> > > 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
> > > > On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
> > > > > Hi
> > > > > 
> > > > > In Debian we got a regression report booting on a Lenovo IdeaPad 1
> > > > > 15ADA7 dropping finally into the initramfs shell after updating from
> > > > > 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
> > > > > shell:
> > > > > 
> > > > > mmc1: mmc_select_hs400 failed, error -110
> > > > > mmc1: error -110 whilst initialising MMC card
> > > > > 
> > > > > The original report is at https://bugs.debian.org/1107979 and the
> > > > > reporter tested as well kernel up to 6.15.3 which still fails to boot.
> > > > > 
> > > > > Another similar report landed with after the same version update as
> > > > > https://bugs.debian.org/1107979 .
> > > > > 
> > > > > I only see three commits touching drivers/mmc between
> > > > > 6.12.30..6.12.32:
> > > > > 
> > > > > 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
> > > > > 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
> > > > > 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
> > > > > 
> > > > > I have found a potential similar issue reported in ArchLinux at
> > > > > https://bbs.archlinux.org/viewtopic.php?id=306024
> > > > > 
> > > > > I have asked if we can get more information out of the boot, but maybe
> > > > > this regression report already rings  bell for you?
> > > Jonathan reported a similar failure regarding to hs400 on RK3399
> > > platform.
> > > https://lkml.org/lkml/2025/6/19/145
> > > 
> > > Maybe you could try to revert :
> > > 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
> > > parameters")
> > Thanks.
> > 
> > Jeremy, could you test the (unofficial!) packages at
> > https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
> > 6.12.33-1 with the revert patch applied on top?
> > 
> > I have put a sha256sum file and signed it with my key in the Debian
> > keyring for verification.
> 
> Do I need all those packages?

Just the linux-image-6.12+unreleased-amd64-unsigned package to test
the patched kernel image and modules.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 21:01:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 21:01:01 GMT) (full text, mbox, link).


Message #98 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 15:00:10 -0600
[Message part 1 (text/plain, inline)]
Hi,

On 6/23/25 13:07, Salvatore Bonaccorso wrote:
> Hi,
>
> On Mon, Jun 23, 2025 at 12:58:43PM -0600, Jeremy Lincicome wrote:
>> On 6/23/25 11:30, Salvatore Bonaccorso wrote:
>>> On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
>>>> + Jonathan Liu
>>>>
>>>> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>>>>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>>>>>> Hi
>>>>>>
>>>>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>>>>> 15ADA7 dropping finally into the initramfs shell after updating from
>>>>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>>>>> shell:
>>>>>>
>>>>>> mmc1: mmc_select_hs400 failed, error -110
>>>>>> mmc1: error -110 whilst initialising MMC card
>>>>>>
>>>>>> The original report is athttps://bugs.debian.org/1107979 and the
>>>>>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>>>>>
>>>>>> Another similar report landed with after the same version update as
>>>>>> https://bugs.debian.org/1107979 .
>>>>>>
>>>>>> I only see three commits touching drivers/mmc between
>>>>>> 6.12.30..6.12.32:
>>>>>>
>>>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>>>>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>>>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>>>>>
>>>>>> I have found a potential similar issue reported in ArchLinux at
>>>>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>>>>
>>>>>> I have asked if we can get more information out of the boot, but maybe
>>>>>> this regression report already rings  bell for you?
>>>> Jonathan reported a similar failure regarding to hs400 on RK3399
>>>> platform.
>>>> https://lkml.org/lkml/2025/6/19/145
>>>>
>>>> Maybe you could try to revert :
>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
>>>> parameters")
>>> Thanks.
>>>
>>> Jeremy, could you test the (unofficial!) packages at
>>> https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
>>> 6.12.33-1 with the revert patch applied on top?
>>>
>>> I have put a sha256sum file and signed it with my key in the Debian
>>> keyring for verification.
>> Do I need all those packages?
> Just the linux-image-6.12+unreleased-amd64-unsigned package to test
> the patched kernel image and modules.

I installed the package, and this is as far as I got.
https://share.bemyeyes.com/en-US/chat/oJcrv3N22q
for anyone who doesn't know, the above link is from Be My Eyes, an app 
that allows me to read information not available with a screen reader 
like Orca.
I'm blind, and unable to read the Grub menu independently.
I ran a bash script to extract the menu number for that kernel, then ran 
grub-reboot to try and boot it on the next reboot.
As far as I can tell, the system is trying to boot,but fails and returns 
to Grub. Am I doing something wrong?

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com
[Message part 2 (text/html, inline)]

Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 21:13:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 21:13:02 GMT) (full text, mbox, link).


Message #103 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 15:08:01 -0600
Hi,

On 6/23/25 13:07, Salvatore Bonaccorso wrote:
> Hi,
>
> On Mon, Jun 23, 2025 at 12:58:43PM -0600, Jeremy Lincicome wrote:
>> On 6/23/25 11:30, Salvatore Bonaccorso wrote:
>>> On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
>>>> + Jonathan Liu
>>>>
>>>> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>>>>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>>>>>> Hi
>>>>>>
>>>>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>>>>> 15ADA7 dropping finally into the initramfs shell after updating from
>>>>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>>>>> shell:
>>>>>>
>>>>>> mmc1: mmc_select_hs400 failed, error -110
>>>>>> mmc1: error -110 whilst initialising MMC card
>>>>>>
>>>>>> The original report is athttps://bugs.debian.org/1107979 and the
>>>>>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>>>>>
>>>>>> Another similar report landed with after the same version update as
>>>>>> https://bugs.debian.org/1107979 .
>>>>>>
>>>>>> I only see three commits touching drivers/mmc between
>>>>>> 6.12.30..6.12.32:
>>>>>>
>>>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>>>>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>>>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>>>>>
>>>>>> I have found a potential similar issue reported in ArchLinux at
>>>>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>>>>
>>>>>> I have asked if we can get more information out of the boot, but maybe
>>>>>> this regression report already rings  bell for you?
>>>> Jonathan reported a similar failure regarding to hs400 on RK3399
>>>> platform.
>>>> https://lkml.org/lkml/2025/6/19/145
>>>>
>>>> Maybe you could try to revert :
>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
>>>> parameters")
>>> Thanks.
>>>
>>> Jeremy, could you test the (unofficial!) packages at
>>> https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
>>> 6.12.33-1 with the revert patch applied on top?
>>>
>>> I have put a sha256sum file and signed it with my key in the Debian
>>> keyring for verification.
>> Do I need all those packages?
> Just the linux-image-6.12+unreleased-amd64-unsigned package to test
> the patched kernel image and modules.

I installed the package, and this is as far as I got.
<https://share.bemyeyes.com/chat/oJcrv3N22q>
for anyone who doesn't know, the above link is from Be My Eyes, an app 
that allows me to read information not available with a screen reader 
like Orca.
I'm blind, and unable to read the Grub menu independently.
I ran a bash script to extract the menu number for that kernel, then ran 
grub-reboot to try and boot it on the next reboot.
As far as I can tell, the system is trying to boot,but fails and returns 
to Grub. Am I doing something wrong?

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Mon, 23 Jun 2025 21:29:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Mon, 23 Jun 2025 21:29:02 GMT) (full text, mbox, link).


Message #108 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Mon, 23 Jun 2025 15:28:05 -0600
On 6/23/25 15:08, Jeremy Lincicome wrote:
> Hi,
>
> On 6/23/25 13:07, Salvatore Bonaccorso wrote:
>> Hi,
>>
>> On Mon, Jun 23, 2025 at 12:58:43PM -0600, Jeremy Lincicome wrote:
>>> On 6/23/25 11:30, Salvatore Bonaccorso wrote:
>>>> On Mon, Jun 23, 2025 at 05:13:38PM +0800, Shawn Lin wrote:
>>>>> + Jonathan Liu
>>>>>
>>>>> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>>>>>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso 
>>>>>> wrote:
>>>>>>> Hi
>>>>>>>
>>>>>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>>>>>> 15ADA7 dropping finally into the initramfs shell after updating 
>>>>>>> from
>>>>>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>>>>>> shell:
>>>>>>>
>>>>>>> mmc1: mmc_select_hs400 failed, error -110
>>>>>>> mmc1: error -110 whilst initialising MMC card
>>>>>>>
>>>>>>> The original report is athttps://bugs.debian.org/1107979 and the
>>>>>>> reporter tested as well kernel up to 6.15.3 which still fails to 
>>>>>>> boot.
>>>>>>>
>>>>>>> Another similar report landed with after the same version update as
>>>>>>> https://bugs.debian.org/1107979 .
>>>>>>>
>>>>>>> I only see three commits touching drivers/mmc between
>>>>>>> 6.12.30..6.12.32:
>>>>>>>
>>>>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing 
>>>>>>> parameters")
>>>>>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>>>>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power 
>>>>>>> off")
>>>>>>>
>>>>>>> I have found a potential similar issue reported in ArchLinux at
>>>>>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>>>>>
>>>>>>> I have asked if we can get more information out of the boot, but 
>>>>>>> maybe
>>>>>>> this regression report already rings  bell for you?
>>>>> Jonathan reported a similar failure regarding to hs400 on RK3399
>>>>> platform.
>>>>> https://lkml.org/lkml/2025/6/19/145
>>>>>
>>>>> Maybe you could try to revert :
>>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing
>>>>> parameters")
>>>> Thanks.
>>>>
>>>> Jeremy, could you test the (unofficial!) packages at
>>>> https://people.debian.org/~carnil/tmp/linux/1108065/ which consist of
>>>> 6.12.33-1 with the revert patch applied on top?
>>>>
>>>> I have put a sha256sum file and signed it with my key in the Debian
>>>> keyring for verification.
>>> Do I need all those packages?
>> Just the linux-image-6.12+unreleased-amd64-unsigned package to test
>> the patched kernel image and modules.
>
> I installed the package, and this is as far as I got.
> <https://share.bemyeyes.com/chat/oJcrv3N22q>
> for anyone who doesn't know, the above link is from Be My Eyes, an app 
> that allows me to read information not available with a screen reader 
> like Orca.
> I'm blind, and unable to read the Grub menu independently.
> I ran a bash script to extract the menu number for that kernel, then 
> ran grub-reboot to try and boot it on the next reboot.
> As far as I can tell, the system is trying to boot,but fails and 
> returns to Grub. Am I doing something wrong?

For those of you who got my last message twice, I apologize. Some of the 
lists rejected it for having html.

-- 
Sincerely,
Jeremy Lincicome W0JRL
JL Applied Technologies:
https://jlappliedtechnologies.com
SkyHubLink System:
https://skyhublink.com




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Tue, 24 Jun 2025 08:39:02 GMT) (full text, mbox, link).


Acknowledgement sent to Adrian Hunter <adrian.hunter@intel.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Tue, 24 Jun 2025 08:39:02 GMT) (full text, mbox, link).


Message #113 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Adrian Hunter <adrian.hunter@intel.com>
To: Shawn Lin <shawn.lin@rock-chips.com>, Salvatore Bonaccorso <carnil@debian.org>, <regressions@lists.linux.dev>, Jeremy Lincicome <w0jrl1@gmail.com>, Ulf Hansson <ulf.hansson@linaro.org>
Cc: <linux-mmc@vger.kernel.org>, <1108065@bugs.debian.org>, <stable@vger.kernel.org>, <net147@gmail.com>
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Tue, 24 Jun 2025 11:26:41 +0300
On 23/06/2025 12:13, Shawn Lin wrote:
> + Jonathan Liu
> 
> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>>> Hi
>>>
>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>> 15ADA7 dropping finally into the initramfs shell after updating from
>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>> shell:
>>>
>>> mmc1: mmc_select_hs400 failed, error -110
>>> mmc1: error -110 whilst initialising MMC card
>>>
>>> The original report is at https://bugs.debian.org/1107979 and the
>>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>>
>>> Another similar report landed with after the same version update as
>>> https://bugs.debian.org/1107979 .
>>>
>>> I only see three commits touching drivers/mmc between
>>> 6.12.30..6.12.32:
>>>
>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>>
>>> I have found a potential similar issue reported in ArchLinux at
>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>
>>> I have asked if we can get more information out of the boot, but maybe
>>> this regression report already rings  bell for you?
> 
> Jonathan reported a similar failure regarding to hs400 on RK3399
> platform.
> https://lkml.org/lkml/2025/6/19/145
> 
> Maybe you could try to revert :
> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")

Given the number of other reports, probably best to revert
anyway.

> 
>>>
>>> #regzbot introduced v6.12.30..v6.12.32
>>> #regzbot link: https://bugs.debian.org/1107979
>>> #regzbot link: https://bbs.archlinux.org/viewtopic.php?id=306024
>>
>> *sigh* apologies for the "mess", the actual right report is
>> https://bugs.debian.org/1108065 (where #1107979 at least has
>> similarities or might have the same root cause).
>>
>> #regzbot link: https://bugs.debian.org/1108065
>>
>> Regards,
>> Salvatore
>>
>>
> 




Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Wed, 25 Jun 2025 03:43:01 GMT) (full text, mbox, link).


Acknowledgement sent to Salvatore Bonaccorso <carnil@debian.org>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Wed, 25 Jun 2025 03:43:01 GMT) (full text, mbox, link).


Message #118 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Salvatore Bonaccorso <carnil@debian.org>
To: Adrian Hunter <adrian.hunter@intel.com>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Jeremy Lincicome <w0jrl1@gmail.com>, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Wed, 25 Jun 2025 05:40:06 +0200
Hi,

On Tue, Jun 24, 2025 at 11:26:41AM +0300, Adrian Hunter wrote:
> On 23/06/2025 12:13, Shawn Lin wrote:
> > + Jonathan Liu
> > 
> > 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
> >> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
> >>> Hi
> >>>
> >>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
> >>> 15ADA7 dropping finally into the initramfs shell after updating from
> >>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
> >>> shell:
> >>>
> >>> mmc1: mmc_select_hs400 failed, error -110
> >>> mmc1: error -110 whilst initialising MMC card
> >>>
> >>> The original report is at https://bugs.debian.org/1107979 and the
> >>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
> >>>
> >>> Another similar report landed with after the same version update as
> >>> https://bugs.debian.org/1107979 .
> >>>
> >>> I only see three commits touching drivers/mmc between
> >>> 6.12.30..6.12.32:
> >>>
> >>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
> >>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
> >>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
> >>>
> >>> I have found a potential similar issue reported in ArchLinux at
> >>> https://bbs.archlinux.org/viewtopic.php?id=306024
> >>>
> >>> I have asked if we can get more information out of the boot, but maybe
> >>> this regression report already rings  bell for you?
> > 
> > Jonathan reported a similar failure regarding to hs400 on RK3399
> > platform.
> > https://lkml.org/lkml/2025/6/19/145
> > 
> > Maybe you could try to revert :
> > 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
> 
> Given the number of other reports, probably best to revert
> anyway.

FTR, Jeremy Lincicome confirmed that reverting the commit fixes the
issue for him as reported in Debian bug #1108065.

Regards,
Salvatore



Information forwarded to debian-bugs-dist@lists.debian.org, Debian Kernel Team <debian-kernel@lists.debian.org>:
Bug#1108065; Package src:linux. (Wed, 25 Jun 2025 03:57:01 GMT) (full text, mbox, link).


Acknowledgement sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Extra info received and forwarded to list. Copy sent to Debian Kernel Team <debian-kernel@lists.debian.org>. (Wed, 25 Jun 2025 03:57:01 GMT) (full text, mbox, link).


Message #123 received at 1108065@bugs.debian.org (full text, mbox, reply):

From: Jeremy Lincicome <w0jrl1@gmail.com>
To: Salvatore Bonaccorso <carnil@debian.org>, Adrian Hunter <adrian.hunter@intel.com>
Cc: Shawn Lin <shawn.lin@rock-chips.com>, regressions@lists.linux.dev, Ulf Hansson <ulf.hansson@linaro.org>, linux-mmc@vger.kernel.org, 1108065@bugs.debian.org, stable@vger.kernel.org, net147@gmail.com
Subject: Re: [regression v6.12.30..v6.12.32] mmc1: mmc_select_hs400 failed, error -110 / boot regression on Lenovo IdeaPad 1 15ADA7
Date: Tue, 24 Jun 2025 21:55:44 -0600
On 6/24/25 21:40, Salvatore Bonaccorso wrote:
> Hi,
>
> On Tue, Jun 24, 2025 at 11:26:41AM +0300, Adrian Hunter wrote:
>> On 23/06/2025 12:13, Shawn Lin wrote:
>>> + Jonathan Liu
>>>
>>> 在 2025/06/21 星期六 4:21, Salvatore Bonaccorso 写道:
>>>> On Fri, Jun 20, 2025 at 09:20:41PM +0200, Salvatore Bonaccorso wrote:
>>>>> Hi
>>>>>
>>>>> In Debian we got a regression report booting on a Lenovo IdeaPad 1
>>>>> 15ADA7 dropping finally into the initramfs shell after updating from
>>>>> 6.12.30 to 6.12.32 with messages before dropping into the intiramfs
>>>>> shell:
>>>>>
>>>>> mmc1: mmc_select_hs400 failed, error -110
>>>>> mmc1: error -110 whilst initialising MMC card
>>>>>
>>>>> The original report is at https://bugs.debian.org/1107979 and the
>>>>> reporter tested as well kernel up to 6.15.3 which still fails to boot.
>>>>>
>>>>> Another similar report landed with after the same version update as
>>>>> https://bugs.debian.org/1107979 .
>>>>>
>>>>> I only see three commits touching drivers/mmc between
>>>>> 6.12.30..6.12.32:
>>>>>
>>>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>>>>> 38828e0dc771 ("mmc: dw_mmc: add exynos7870 DW MMC support")
>>>>> 67bb2175095e ("mmc: host: Wait for Vdd to settle on card power off")
>>>>>
>>>>> I have found a potential similar issue reported in ArchLinux at
>>>>> https://bbs.archlinux.org/viewtopic.php?id=306024
>>>>>
>>>>> I have asked if we can get more information out of the boot, but maybe
>>>>> this regression report already rings  bell for you?
>>> Jonathan reported a similar failure regarding to hs400 on RK3399
>>> platform.
>>> https://lkml.org/lkml/2025/6/19/145
>>>
>>> Maybe you could try to revert :
>>> 28306c58daf8 ("mmc: sdhci: Disable SD card clock before changing parameters")
>> Given the number of other reports, probably best to revert
>> anyway.
> FTR, Jeremy Lincicome confirmed that reverting the commit fixes the
> issue for him as reported in Debian bug #1108065.

I confirm that reverting the commit fixes

Debian bug #1108065.

Tested-by: Jeremy Lincicome<w0jrl1@gmail.com>




Merged 1107979 1108065 Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Wed, 25 Jun 2025 09:17:03 GMT) (full text, mbox, link).


Added tag(s) confirmed and pending. Request was from Salvatore Bonaccorso <carnil@debian.org> to control@bugs.debian.org. (Wed, 25 Jun 2025 09:17:04 GMT) (full text, mbox, link).


Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Sat, 28 Jun 2025 19:57:03 GMT) (full text, mbox, link).


Notification sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Bug acknowledged by developer. (Sat, 28 Jun 2025 19:57:03 GMT) (full text, mbox, link).


Message #132 received at 1108065-close@bugs.debian.org (full text, mbox, reply):

From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
To: 1108065-close@bugs.debian.org
Subject: Bug#1108065: fixed in linux 6.15.4-1~exp1
Date: Sat, 28 Jun 2025 19:56:14 +0000
[Message part 1 (text/plain, inline)]
Source: linux
Source-Version: 6.15.4-1~exp1
Done: Salvatore Bonaccorso <carnil@debian.org>

We believe that the bug you reported is fixed in the latest version of
linux, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1108065@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Salvatore Bonaccorso <carnil@debian.org> (supplier of updated linux package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Sat, 28 Jun 2025 21:29:54 +0200
Source: linux
Architecture: source
Version: 6.15.4-1~exp1
Distribution: experimental
Urgency: medium
Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org>
Changed-By: Salvatore Bonaccorso <carnil@debian.org>
Closes: 1088747 1108065 1108069 1108215
Changes:
 linux (6.15.4-1~exp1) experimental; urgency=medium
 .
   * New upstream stable update:
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.15.4
 .
   [ наб ]
   * Don't compress perf's tips.txt (Closes: #1088747)
 .
   [ Aurelien Jarno ]
   * [riscv64] Enable BRCMFMAC_SDIO (Closes: #1108215)
 .
   [ Salvatore Bonaccorso ]
   * ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X507UAR
     (Closes: #1108069)
   * Revert "mmc: sdhci: Disable SD card clock before changing parameters"
     (Closes: #1108065)
Checksums-Sha1:
 923f3b1ecd413c519a48a5f28c800e99c9741470 192327 linux_6.15.4-1~exp1.dsc
 21dbe1fd8faa0dca1cd53f7db75b75d1e600d9cc 154232732 linux_6.15.4.orig.tar.xz
 86c0f1a18b913f6abe48963f50fe2a568389469b 1529156 linux_6.15.4-1~exp1.debian.tar.xz
 7cd810f72909fb8fa392f45c0a1d3b3a7ab24755 6636 linux_6.15.4-1~exp1_source.buildinfo
Checksums-Sha256:
 2b5c5ed7681aaec5e69a7de15dba478e43567ec40cab4dd7604c042c14106f23 192327 linux_6.15.4-1~exp1.dsc
 06a2501ce9a47f69bf5bb5161cacd0d794938441f277ec13e7a97eb6ce9a69df 154232732 linux_6.15.4.orig.tar.xz
 bb9ede78e8a333ed87ebfa2cb7151d8b1b5dd3ff2823437bc32af74fded153f6 1529156 linux_6.15.4-1~exp1.debian.tar.xz
 6439bc7610e4d28e24d2924beb65e09f63fbcba0a831831d20805b598c600857 6636 linux_6.15.4-1~exp1_source.buildinfo
Files:
 df258f90aa8b9cdedd138d007309fb5d 192327 kernel optional linux_6.15.4-1~exp1.dsc
 ddecacf399f6f19771895617a18d36d9 154232732 kernel optional linux_6.15.4.orig.tar.xz
 c6cce56b9af707e455ad39c617d2daf1 1529156 kernel optional linux_6.15.4-1~exp1.debian.tar.xz
 e53f3e91775769a88678a3d3a7536d0d 6636 kernel optional linux_6.15.4-1~exp1_source.buildinfo

-----BEGIN PGP SIGNATURE-----

iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmhgQ1tfFIAAAAAALgAo
aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2
NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk
ZWJpYW4ub3JnAAoJEAVMuPMTQ89E72wP/R/symcc2TH3xe7MA8Y0uOa4DygeJvVu
vxiJVPGeEa7guVjIF6nq7n6KKI62eJ6hnnyVN0gPnoRvlQzms7yAsgo9zELiwSPj
sAsrLcYBcVG7c2zCnIeLAXt8Ce+KzBoWjFzWkEFhVEaDWNAVggwXdARNJGeLb2cB
6ioCz5pjCofgyptZ8RLGItYr56doqvJGBFnGc1bsPxDElkRQncz/eLGQpAqtTtub
U8PcgE/Ui2FFz41lF44M6IqIJLqt4RMSay0eNDPH1X6bk1MTFeB/cfZJlZheOKOR
HFFlX2W5WfP61eeoJ9QDbo5QxxiP9sVoozJ0AmxqmdHMBEhnhI6SOkhX+yjtXsaj
RNO7XzpaDD/VFOg/5g+9kHdDBG4pUoPiFd6VV8ofeUTjwuSzD5rdZcS9hLwz03Dp
wLbf9uDP5xvzWAd2RW0tlCYrcqs6PldD1yj1gBbR/BaWev27lSutM7udRF4+ywqi
NciRmfUXeHLJweMPTL03Iqhsa3sxLS8Rcg/CDKpldS3lm8928a3LngwzHC+22YdE
Txud4jsqmWngteZ5kg+kj+gYUyJgULS4pa8Us2n5lUsGpheJKkdpPxo19jy4ACjc
RPmyN9gkSKvb/z/Hu4RX8STx/7NDPui3r8uSoYa6f8TrCqxuVYUhvH6wFaUpVu4S
CdMwzdplxrCW
=Ty6k
-----END PGP SIGNATURE-----

[Message part 2 (application/pgp-signature, inline)]

Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Sat, 28 Jun 2025 19:57:04 GMT) (full text, mbox, link).


Notification sent to Liviu Heinrich <livix07@riseup.net>:
Bug acknowledged by developer. (Sat, 28 Jun 2025 19:57:04 GMT) (full text, mbox, link).


Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Fri, 04 Jul 2025 07:03:08 GMT) (full text, mbox, link).


Notification sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Bug acknowledged by developer. (Fri, 04 Jul 2025 07:03:09 GMT) (full text, mbox, link).


Message #141 received at 1108065-close@bugs.debian.org (full text, mbox, reply):

From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
To: 1108065-close@bugs.debian.org
Subject: Bug#1108065: fixed in linux 6.12.35-1
Date: Fri, 04 Jul 2025 07:00:12 +0000
[Message part 1 (text/plain, inline)]
Source: linux
Source-Version: 6.12.35-1
Done: Salvatore Bonaccorso <carnil@debian.org>

We believe that the bug you reported is fixed in the latest version of
linux, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1108065@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Salvatore Bonaccorso <carnil@debian.org> (supplier of updated linux package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 03 Jul 2025 21:01:19 +0200
Source: linux
Architecture: source
Version: 6.12.35-1
Distribution: unstable
Urgency: medium
Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org>
Changed-By: Salvatore Bonaccorso <carnil@debian.org>
Closes: 1088747 1104745 1105865 1107479 1108065 1108069 1108215 1108597
Changes:
 linux (6.12.35-1) unstable; urgency=medium
 .
   * New upstream stable update:
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12.34
     - [x86] idle: Remove MFENCEs for X86_BUG_CLFLUSH_MONITOR in
       mwait_idle_with_hints() and prefer_mwait_c1_over_halt()
     - sched: Fix trace_sched_switch(.prev_state)
     - [x86] perf/x86/amd/uncore: Remove unused 'struct amd_uncore_ctx::node'
       member
     - [x86] perf/x86/amd/uncore: Prevent UMC counters from saturating
     - gfs2: replace sd_aspace with sd_inode
     - gfs2: gfs2_create_inode error handling fix
     - perf/core: Fix broken throttling when max_samples_per_tick=1
     - [arm64] crypto: sun8i-ce-cipher - fix error handling in
       sun8i_ce_cipher_prepare()
     - [powerpc*] do not build ppc_save_regs.o always
     - [powerpc*] crash: Fix non-smp kexec preparation
     - sched/core: Tweak wait_task_inactive() to force dequeue sched_delayed
       tasks
     - [x86] microcode/AMD: Do not return error when microcode update is not
       necessary
     - [arm64] crypto: sun8i-ce - undo runtime PM changes during driver removal
     - [x86] cpu: Sanitize CPUID(0x80000000) output
     - [x86] insn: Fix opcode map (!REX2) superscript tags
     - brd: fix aligned_sector from brd_do_discard()
     - brd: fix discard end sector
     - [arm64,armhf] crypto: marvell/cesa - Handle zero-length skcipher requests
     - [arm64,armhf] crypto: marvell/cesa - Avoid empty transfer descriptor
     - erofs: fix file handle encoding for 64-bit NIDs
     - erofs: avoid using multiple devices with different type
     - [powerpc*] pseries/iommu: Fix kmemleak in TCE table userspace view
     - btrfs: scrub: update device stats when an error is detected
     - btrfs: scrub: fix a wrong error type when metadata bytenr mismatches
     - btrfs: fix invalid data space release when truncating block in NOCOW mode
     - rcu/cpu_stall_cputime: fix the hardirq count for x86 architecture
     - crypto: lrw - Only add ecb if it is not already there
     - crypto: xts - Only add ecb if it is not already there
     - crypto: api - Redo lookup on EEXIST
     - ACPICA: exserial: don't forget to handle FFixedHW opregions for reading
     - [arm64] ASoC: mediatek: mt8195: Set ETDM1/2 IN/OUT to COMP_DUMMY()
     - [amd64] EDAC/skx_common: Fix general protection fault
     - [amd64] EDAC/{skx_common,i10nm}: Fix the loss of saved RRL for HBM pseudo
       channel 0
     - power: reset: at91-reset: Optimize at91_reset()
     - PM: EM: Fix potential division-by-zero error in em_compute_costs()
     - [amd64] ASoC: SOF: ipc4-pcm: Adjust pipeline_list->pipelines allocation
       type
     - ASoC: SOF: amd: add missing acp descriptor field
     - PM: wakeup: Delete space in the end of string shown by pm_show_wakelocks()
     - ACPI: resource: fix a typo for MECHREVO in irq1_edge_low_force_override[]
     - [x86] mtrr: Check if fixed-range MTRRs exist in mtrr_save_fixed_ranges()
     - PM: sleep: Print PM debug messages during hibernation
     - thermal/drivers/mediatek/lvts: Fix debugfs unregister on failure
     - ACPI: OSI: Stop advertising support for "3.0 _SCP Extensions"
     - spi: sh-msiof: Fix maximum DMA transfer size
     - ALSA: core: fix up bus match const issues.
     - drm/vmwgfx: Add seqno waiter for sync_files
     - drm/vmwgfx: Add error path for xa_store in vmw_bo_add_detached_resource
     - drm/vmwgfx: Fix dumb buffer leak
     - drm/xe/d3cold: Set power state to D3Cold during s2idle/s3
     - drm/amd/pp: Fix potential NULL pointer dereference in
       atomctrl_initialize_mc_reg_table
     - media: rkvdec: Fix frame size enumeration
     - [arm64] fpsimd: Avoid RES0 bits in the SME trap handler
     - [arm64] fpsimd: Discard stale CPU state when handling SME traps
     - [arm64] fpsimd: Don't corrupt FPMR when streaming mode changes
     - [arm64] fpsimd: Avoid clobbering kernel FPSIMD state with SMSTOP
     - [arm64] fpsimd: Reset FPMR upon exec()
     - [arm64] fpsimd: Fix merging of FPSIMD state during signal return
     - [arm64] drm/panthor: Fix GPU_COHERENCY_ACE[_LITE] definitions
     - [arm64] drm/panthor: Update panthor_mmu::irq::mask when needed
     - [arm64] drm/bridge: lt9611uxc: Fix an error handling path in
       lt9611uxc_probe()
     - fs/ntfs3: handle hdr_first_de() return value
     - fs/ntfs3: Add missing direct_IO in ntfs_aops_cmpr
     - [arm64,armhf] firmware: psci: Fix refcount leak in psci_dt_init
     - [arm64] Support ARM64_VA_BITS=52 when setting ARCH_MMAP_RND_BITS_MAX
     - [arm64] fpsimd: Avoid warning when sve_to_fpsimd() is unused
     - [arm64,armhf] drm/tegra: rgb: Fix the unbound reference count
     - firmware: SDEI: Allow sdei initialization without ACPI_APEI_GHES
     - [arm64] fpsimd: Do not discard modified SVE state
     - overflow: Fix direct struct member initialization in _DEFINE_FLEX()
     - scsi: qedf: Use designated initializer for struct qed_fcoe_cb_ops
     - [arm64] drm/msm/a6xx: Disable rgb565_predicator on Adreno 7c3
     - [arm64] drm/mediatek: mtk_drm_drv: Fix kobject put for mtk_mutex device
       ptr
     - [arm64] drm/mediatek: Fix kobject put for component sub-drivers
     - [arm64] drm/mediatek: mtk_drm_drv: Unbind secondary mmsys components on
       err
     - [arm64,armhf] media: verisilicon: Free post processor buffers on error
     - svcrdma: Reduce the number of rdma_rw contexts per-QP
     - [x86] xen/x86: fix initial memory balloon target
     - wifi: ath11k: fix node corruption in ar->arvifs list
     - wifi: ath12k: Fix memory leak during vdev_id mismatch
     - wifi: ath12k: Fix invalid memory access while forming 802.11 header
     - IB/cm: use rwlock for MAD agent lock
     - bpf: Check link_create.flags parameter for multi_kprobe
     - bpf: fix ktls panic with sockmap
     - bpf, sockmap: fix duplicated data transmission
     - bpf, sockmap: Fix panic when calling skb_linearize
     - f2fs: zone: fix to avoid inconsistence in between SIT and SSA
     - wifi: ath12k: fix cleanup path after mhi init
     - wifi: ath12k: Fix WMI tag for EHT rate in peer assoc
     - wifi: ath12k: Fix buffer overflow in debugfs
     - f2fs: clean up unnecessary indentation
     - f2fs: prevent the current section from being selected as a victim during
       GC
     - f2fs: fix to do sanity check on sbi->total_valid_block_count
     - page_pool: Move pp_magic check into helper functions
     - page_pool: Track DMA-mapped pages and unmap them when destroying the pool
     - net: ncsi: Fix GCPS 64-bit member variables
     - libbpf: Fix buffer overflow in bpf_object__init_prog
     - net/mlx5: Avoid using xso.real_dev unnecessarily
     - xfrm: Use xdo.dev instead of xdo.real_dev
     - wifi: rtw88: sdio: map mgmt frames to queue TX_DESC_QSEL_MGMT
     - wifi: rtw88: sdio: call rtw_sdio_indicate_tx_status unconditionally
     - wifi: rtw88: do not ignore hardware read error during DPK
     - wifi: ath12k: fix invalid access to memory
     - wifi: ath12k: Add MSDU length validation for TKIP MIC error
     - wifi: ath12k: Fix the QoS control field offset to build QoS header
     - wifi: ath12k: fix node corruption in ar->arvifs list
     - [arm64] RDMA/hns: Include hnae3.h in hns_roce_hw_v2.h
     - scsi: hisi_sas: Call I_T_nexus after soft reset for SATA disk
     - libbpf: Fix event name too long error
     - libbpf: Remove sample_period init in perf_buffer
     - Use thread-safe function pointer in libbpf_print
     - iommu: Protect against overflow in iommu_pgsize()
     - bonding: assign random address if device address is same as bond
     - f2fs: clean up w/ fscrypt_is_bounce_page()
     - f2fs: fix to detect gcing page in f2fs_is_cp_guaranteed()
     - scsi: smartpqi: Fix smp_processor_id() call trace for preemptible kernels
     - libbpf: Use proper errno value in linker
     - bpf: Allow XDP dev-bound programs to perform XDP_REDIRECT into maps
     - netfilter: bridge: Move specific fragmented packet to slow_path instead of
       dropping it
     - netfilter: nft_quota: match correctly when the quota just depleted
     - netfilter: nft_set_pipapo: prevent overflow in lookup table allocation
     - RDMA/mlx5: Fix error flow upon firmware failure for RQ destruction
     - bpf: Fix uninitialized values in BPF_{CORE,PROBE}_READ
     - tracing: Move histogram trigger variables from stack to per CPU structure
     - bpftool: Fix regression of "bpftool cgroup tree" EINVAL on older kernels
     - [arm*] clk: bcm: rpi: Add NULL check in raspberrypi_clk_register()
     - wifi: iwlfiwi: mvm: Fix the rate reporting
     - efi/libstub: Describe missing 'out' parameter in efi_load_initrd
     - tracing: Rename event_trigger_alloc() to trigger_data_alloc()
     - tracing: Fix error handling in event_trigger_parse()
     - ktls, sockmap: Fix missing uncharge operation
     - libbpf: Use proper errno value in nlattr
     - bpf: Fix WARN() in get_bpf_raw_tp_regs
     - dt-bindings: soc: fsl,qman-fqd: Fix reserved-memory.yaml reference
     - [s390x] bpf: Store backchain even for leaf progs
     - wifi: rtw89: pci: enlarge retry times of RX tag to 1000
     - wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds
     - wifi: rtw89: fix firmware scan delay unit for WiFi 6 chips
     - iommu: remove duplicate selection of DMAR_TABLE
     - wifi: ath12k: fix memory leak in ath12k_service_ready_ext_event
     - wifi: ath9k_htc: Abort software beacon handling if disabled
     - scsi: ufs: mcq: Delete ufshcd_release_scsi_cmd() in ufshcd_mcq_abort()
     - kernfs: Relax constraint in draining guard
     - Bluetooth: ISO: Fix not using SID from adv report
     - wifi: mt76: mt7996: Fix null-ptr-deref in mt7996_mmio_wed_init()
     - wifi: mt76: mt7915: Fix null-ptr-deref in mt7915_mmio_wed_init()
     - wifi: mt76: mt7925: prevent multiple scan commands
     - wifi: mt76: mt7925: refine the sniffer commnad
     - wifi: mt76: mt7925: ensure all MCU commands wait for response
     - wifi: mt76: mt7996: set EHT max ampdu length capability
     - wifi: mt76: mt7996: fix RX buffer size of MCU event
     - bpf: Revert "bpf: remove unnecessary rcu_read_{lock,unlock}() in
       multi-uprobe attach logic"
     - netfilter: xtables: support arpt_mark and ipv6 optstrip for iptables-nft
       only builds
     - netfilter: nf_tables: nft_fib_ipv6: fix VRF ipv4/ipv6 result discrepancy
     - vfio/type1: Fix error unwind in migration dirty bitmap allocation
     - Bluetooth: MGMT: iterate over mesh commands in mgmt_mesh_foreach()
     - Bluetooth: btintel: Check dsbr size from EFI variable
     - bpf, sockmap: Avoid using sk_socket after free when sending
     - netfilter: nf_tables: nft_fib: consistent l3mdev handling
     - netfilter: nft_tunnel: fix geneve_opt dump
     - [riscv64] RISC-V: KVM: lock the correct mp_state during reset
     - net: usb: aqc111: fix error handling of usbnet read calls
     - vsock/virtio: fix `rx_bytes` accounting for stream sockets
     - RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work
     - bpf: Avoid __bpf_prog_ret0_warn when jit fails
     - net: phy: clear phydev->devlink when the link is deleted
     - net: phy: fix up const issues in to_mdio_device() and to_phy_device()
     - net: lan743x: rename lan743x_reset_phy to lan743x_hw_reset_phy
     - net: lan743x: Fix PHY reset handling during initialization and WOL
     - net: phy: mscc: Fix memory leak when using one step timestamping
     - [arm64] octeontx2-pf: QOS: Perform cache sync on send queue teardown
     - [arm64] octeontx2-pf: QOS: Refactor TC_HTB_LEAF_DEL_LAST callback
     - calipso: Don't call calipso functions for AF_INET sk.
     - net: openvswitch: Fix the dead loop of MPLS parse
     - net: phy: mscc: Stop clearing the the UDPv4 checksum for L2 frames
     - f2fs: use d_inode(dentry) cleanup dentry->d_inode
     - f2fs: fix to correct check conditions in f2fs_cross_rename
     - [arm64] dts: qcom: x1e80100: Mark usb_2 as dma-coherent
     - [arm64] dts: qcom: sm8650: setup gpu thermal with higher temperatures
     - [arm64] dts: qcom: sm8650: add missing cpu-cfg interconnect path in the
       mdss node
     - [arm64] dts: qcom: x1e80100-romulus: Keep L12B and L15B always on
     - [arm64] dts: qcom: sdm845-starqltechn: remove wifi
     - [arm64] dts: qcom: sdm845-starqltechn: fix usb regulator mistake
     - [arm64] dts: qcom: sdm845-starqltechn: refactor node order
     - [arm64] dts: qcom: sdm845-starqltechn: remove excess reserved gpios
     - [arm64] dts: qcom: sm8350: Reenable crypto & cryptobam
     - [arm64] dts: qcom: sm8250: Fix CPU7 opp table
     - [arm64] dts: qcom: sc8280xp-x13s: Drop duplicate DMIC supplies
     - [arm64] dts: qcom: ipq9574: Fix USB vdd info
     - [arm64] dts: rockchip: Move SHMEM memory to reserved memory on rk3588
     - [arm64] dts: mediatek: mt8195: Reparent vdec1/2 and venc1 power domains
     - [arm64] dts: qcom: sdm660-xiaomi-lavender: Add missing SD card detect GPIO
     - [arm64] dts: mt8183: Add port node to mt8183.dtsi
     - [arm64] dts: imx8mm-beacon: Fix RTC capacitive load
     - [arm64] dts: imx8mn-beacon: Fix RTC capacitive load
     - [arm64] dts: imx8mp-beacon: Fix RTC capacitive load
     - [arm64] dts: imx8mm-beacon: Set SAI5 MCLK direction to output for HDMI
       audio
     - [arm64] dts: imx8mn-beacon: Set SAI5 MCLK direction to output for HDMI
       audio
     - [arm64] dts: mediatek: mt6357: Drop regulator-fixed compatibles
     - [arm64] dts: mt6359: Add missing 'compatible' property to regulators node
     - [arm64] dts: qcom: sdm660-lavender: Add missing USB phy supply
     - [arm64] dts: qcom: sda660-ifc6560: Fix dt-validate warning
     - [arm64] dts: rockchip: Add vcc-supply to SPI flash on rk3566-rock3c
     - [arm64] dts: rockchip: Update eMMC for NanoPi R5 series
     - [arm64] tegra: Drop remaining serial clock-names and reset-names
     - [arm64] tegra: Add uartd serial alias for Jetson TX1 module
     - [arm64] dts: ti: k3-j721e-common-proc-board: Enable OSPI1 on J721E
     - [arm64] soc: qcom: smp2p: Fix fallback to qcom,ipc parse
     - Squashfs: check return result of sb_min_blocksize
     - ocfs2: fix possible memory leak in ocfs2_finish_quota_recovery
     - nilfs2: add pointer check for nilfs_direct_propagate()
     - nilfs2: do not propagate ENOENT error from nilfs_btree_propagate()
     - bus: fsl-mc: fix double-free on mc_dev
     - dt-bindings: vendor-prefixes: Add Liontron name
     - [arm64] dts: rockchip: disable unrouted USB controllers and PHY on RK3399
       Puma with Haikou
     - [arm64] dts: qcom: qcm2290: fix (some) of QUP interconnects
     - [arm64] dts: renesas: white-hawk-ard-audio: Fix TPU0 groups
     - [arm64] dts: mt6359: Rename RTC node to match binding expectations
     - [armhf] aspeed: Don't select SRAM
     - [armhf] soc: aspeed: lpc: Fix impossible judgment condition
     - [armhf] soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop()
     - fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod()
     - randstruct: gcc-plugin: Remove bogus void member
     - randstruct: gcc-plugin: Fix attribute addition (Closes: #1104745)
     - perf build: Warn when libdebuginfod devel files are not available
     - perf ui browser hists: Set actions->thread before calling do_zoom_thread()
     - dm: don't change md if dm_table_set_restrictions() fails
     - dm: free table mempools if not used in __bind
     - backlight: pm8941: Add NULL check in wled_configure()
     - [x86] irq: Ensure initial PIR loads are performed exactly once
     - [amd64] hwmon: (asus-ec-sensors) check sensor index in read_string()
     - perf symbol-minimal: Fix double free in filename__read_build_id
     - dm: fix dm_blk_report_zones
     - dm-flakey: error all IOs when num_features is absent
     - dm-flakey: make corrupting read bios work
     - perf intel-pt: Fix PEBS-via-PT data_src
     - perf scripts python: exported-sql-viewer.py: Fix pattern matching with
       Python 3
     - remoteproc: qcom_wcnss_iris: Add missing put_device() on error in probe
     - remoteproc: k3-r5: Drop check performed in
       k3_r5_rproc_{mbox_callback/kick}
     - remoteproc: k3-dsp: Drop check performed in
       k3_dsp_rproc_{mbox_callback/kick}
     - [arm64] rpmsg: qcom_smd: Fix uninitialized return variable in
       __qcom_smd_send()
     - [arm64] mailbox: imx: Fix TXDB_V2 sending
     - [arm64] mailbox: mtk-cmdq: Refine GCE_GCTL_VALUE setting
     - perf symbol: Fix use-after-free in filename__read_build_id
     - perf record: Fix incorrect --user-regs comments
     - perf trace: Always print return value for syscalls returning a pid
     - nfs: clear SB_RDONLY before getting superblock
     - nfs: ignore SB_RDONLY when remounting nfs
     - perf trace: Set errpid to false for rseq and set_robust_list
     - perf callchain: Always populate the addr_location map when adding IP
     - cifs: Fix validation of SMB1 query reparse point response
     - rtc: sh: assign correct interrupts with DT
     - [arm64] phy: rockchip: samsung-hdptx: Fix clock ratio setup
     - [arm64] phy: rockchip: samsung-hdptx: Do no set rk_hdptx_phy->rate in case
       of errors
     - PCI: Print the actual delay time in pci_bridge_wait_for_secondary_bus()
     - [arm64] PCI: cadence: Fix runtime atomic count underflow
     - [arm64] phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug
     - [arm64] dmaengine: ti: Add NULL check in udma_probe()
     - PCI/ACPI: Fix allocated memory release on error in pci_acpi_scan_root()
     - PCI/DPC: Initialize aer_err_info before using it
     - PCI/DPC: Log Error Source ID only when valid
     - rtc: loongson: Add missing alarm notifications for ACPI RTC events
     - PCI: endpoint: Retain fixed-size BAR size as well as aligned size
     - serial: Fix potential null-ptr-deref in mlb_usio_probe()
     - [amd64] thunderbolt: Fix a logic error in wake on connect
     - iio: adc: ad7124: Fix 3dB filter frequency reading
     - usb: acpi: Prevent null pointer dereference in usb_acpi_add_usb4_devlink()
     - [arm64,armhf] coresight: Fixes device's owner field for registered using
       coresight_init_driver()
     - [arm64,armhf] coresight: catu: Introduce refcount and spinlock for
       enabling/disabling
     - counter: interrupt-cnt: Protect enable/disable OPs with mutex
     - [arm64,armhf] coresight: prevent deactivate active config while enabling
       the config
     - vt: remove VT_RESIZE and VT_RESIZEX from vt_compat_ioctl()
     - mei: vsc: Cast tx_buf to (__be32 *) when passed to cpu_to_be32_array()
     - USB: gadget: udc: fix const issue in gadget_match_driver()
     - USB: typec: fix const issue in typec_match()
     - loop: add file_start_write() and file_end_write()
     - drm/xe: Make xe_gt_freq part of the Documentation
     - Fix sock_exceed_buf_limit not being triggered in __sk_mem_raise_allocated
     - page_pool: Fix use-after-free in page_pool_recycle_in_ring
     - net: stmmac: platform: guarantee uniqueness of bus_id
     - gve: Fix RX_BUFFERS_POSTED stat to report per-queue fill_cnt
     - net: tipc: fix refcount warning in tipc_aead_encrypt
     - driver: net: ethernet: mtk_star_emac: fix suspend/resume issue
     - net/mlx4_en: Prevent potential integer overflow calculating Hz
     - net: lan966x: Make sure to insert the vlan tags also in host mode
     - Bluetooth: L2CAP: Fix not responding with L2CAP_CR_LE_ENCRYPTION
     - ice: fix Tx scheduler error handling in XDP callback
     - ice: create new Tx scheduler nodes for new queues only
     - ice: fix rebuilding the Tx scheduler tree for large queue counts
     - idpf: fix a race in txq wakeup
     - idpf: avoid mailbox timeout delays during reset
     - [armhf] net: dsa: tag_brcm: legacy: fix pskb_may_pull length
     - net: stmmac: make sure that ptp_rate is not 0 before configuring
       timestamping
     - net: stmmac: make sure that ptp_rate is not 0 before configuring EST
     - [amd64] drm/i915/guc: Check if expecting reply before decrementing
       outstanding_submission_g2h
     - [amd64] drm/i915/psr: Fix using wrong mask in REG_FIELD_PREP
     - [amd64] drm/i915/guc: Handle race condition where wakeref count drops
       below 0
     - net: fix udp gso skb_segment after pull from frag_list
     - net: wwan: t7xx: Fix napi rx poll issue
     - vmxnet3: correctly report gso type for UDP tunnels
     - PM: sleep: Fix power.is_suspended cleanup for direct-complete devices
     - nvme: fix command limits status code
     - gve: add missing NULL check for gve_alloc_pending_packet() in TX DQO
     - [arm64,armhf] drm/panel-simple: fix the warnings for the Evervision
       VGG644804
     - netfilter: nf_set_pipapo_avx2: fix initial map fill
     - netfilter: nf_nat: also check reverse tuple to obtain clashing entry
     - [arm64] net: ti: icssg-prueth: Fix swapped TX stats for MII interfaces.
     - [armhf] net: dsa: b53: do not enable RGMII delay on bcm63xx
     - [armhf] net: dsa: b53: allow RGMII for bcm63xx RGMII ports
     - [armhf] net: dsa: b53: do not touch DLL_IQQD on bcm53115
     - wifi: cfg80211/mac80211: correctly parse S1G beacon optional elements
     - net: wwan: mhi_wwan_mbim: use correct mux_id for multiplexing
     - wireguard: device: enable threaded NAPI
     - seg6: Fix validation of nexthop addresses
     - [riscv64] misaligned: fix sleeping function called during misaligned
       access handling
     - scsi: ufs: qcom: Prevent calling phy_exit() before phy_init()
     - [amd64] ASoC: codecs: hda: Fix RPM usage count underflow
     - [amd64] ASoC: Intel: avs: Fix deadlock when the failing IPC is SET_D0IX
     - [amd64] ASoC: Intel: avs: Verify content returned by parse_int_array()
     - iov_iter: use iov_offset for length calculation in iov_iter_aligned_bvec
     - path_overmount(): avoid false negatives
     - fix propagation graph breakage by MOVE_MOUNT_SET_GROUP move_mount(2)
     - do_change_type(): refuse to operate on unmounted/not ours mounts
     - tools/power turbostat: Fix AMD package-energy reporting
     - ALSA: hda/realtek: fix micmute LEDs on HP Laptops with ALC3315
     - ALSA: hda/realtek: fix micmute LEDs on HP Laptops with ALC3247
     - ALSA: hda/realtek: Add support for various HP Laptops using CS35L41 HDA
     - ALSA: hda/realtek - Support mute led function for HP platform
     - ALSA: hda/realtek - Add new HP ZBook laptop with micmute led fixup
     - ALSA: hda/realtek: Add support for HP Agusta using CS35L41 HDA
     - Input: synaptics-rmi - fix crash with unsupported versions of F34
     - pmdomain: core: Introduce dev_pm_genpd_rpm_always_on()
     - mmc: sdhci-of-dwcmshc: add PD workaround on RK3576
     - [arm64,armhf] pinctrl: samsung: refactor drvdata suspend & resume
       callbacks
     - [arm64,armhf] pinctrl: samsung: add dedicated SoC eint suspend/resume
       callbacks
     - [arm64,armhf] pinctrl: samsung: add gs101 specific eint suspend/resume
       callbacks
     - dt-bindings: pwm: adi,axi-pwmgen: Increase #pwm-cells to 3
     - dt-bindings: pwm: Correct indentation and style in DTS example
     - dt-bindings: pwm: adi,axi-pwmgen: Fix clocks
     - serial: sh-sci: Move runtime PM enable to sci_probe_single()
     - scsi: core: ufs: Fix a hang in the error handler
     - Bluetooth: hci_core: fix list_for_each_entry_rcu usage
     - Bluetooth: btintel_pcie: Fix driver not posting maximum rx buffers
     - Bluetooth: btintel_pcie: Increase the tx and rx descriptor count
     - Bluetooth: btintel_pcie: Reduce driver buffer posting to prevent race
       condition
     - Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete
     - Bluetooth: MGMT: Remove unused mgmt_pending_find_data
     - Bluetooth: MGMT: Protect mgmt_pending list with its own lock
     - [armhf] net: dsa: b53: fix untagged traffic sent via cpu tagged with VID 0
     - ptp: remove ptp->n_vclocks check logic in ptp_vclock_in_use()
     - ath10k: snoc: fix unbalanced IRQ enable in crash recovery
     - wifi: ath11k: convert timeouts to secs_to_jiffies()
     - wifi: ath11k: avoid burning CPU in ath11k_debugfs_fw_stats_request()
     - wifi: ath11k: don't use static variables in
       ath11k_debugfs_fw_stats_process()
     - wifi: ath11k: don't wait when there is no vdev started
     - wifi: ath11k: move some firmware stats related functions outside of
       debugfs
     - wifi: ath11k: validate ath11k_crypto_mode on top of
       ath11k_core_qmi_firmware_ready
     - wifi: ath12k: refactor ath12k_hw_regs structure
     - wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850
     - regulator: max20086: Fix refcount leak in max20086_parse_regulators_dt()
     - [arm64,armhf] spi: omap2-mcspi: Disable multi mode when CS should be kept
       asserted after message
     - [arm64,armhf] spi: omap2-mcspi: Disable multi-mode when the previous
       message kept CS asserted
     - [arm64] pinctrl: qcom: pinctrl-qcm2290: Add missing pins
     - scsi: iscsi: Fix incorrect error path labels for flashnode operations
     - net_sched: sch_sfq: fix a potential crash on gso_skb handling
     - [powerpc*] powernv/memtrace: Fix out of bounds issue in memtrace mmap
     - [powerpc*] vas: Return -EINVAL if the offset is non-zero in mmap()
     - [arm64] drm/meson: use unsigned long long / Hz for frequency types
     - [arm64] drm/meson: fix debug log statement when setting the HDMI clocks
     - [arm64] drm/meson: use vclk_freq instead of pixel_freq in debug print
     - [arm64] drm/meson: fix more rounding issues with 59.94Hz modes
     - i40e: return false from i40e_reset_vf if reset is in progress
     - i40e: retry VFLR handling if there is ongoing VF reset
     - ACPI: CPPC: Fix NULL pointer dereference when nosmp is used
     - net: Fix TOCTOU issue in sk_is_readable()
     - macsec: MACsec SCI assignment for ES = 0
     - net/mdiobus: Fix potential out-of-bounds read/write access
     - net/mdiobus: Fix potential out-of-bounds clause 45 read/write access
     - Bluetooth: Fix NULL pointer deference on eir_get_service_data
     - Bluetooth: hci_sync: Fix broadcast/PA when using an existing instance
     - Bluetooth: eir: Fix possible crashes on eir_create_adv_data
     - Bluetooth: MGMT: Fix sparse errors
     - net/mlx5: Ensure fw pages are always allocated on same NUMA
     - net/mlx5: Fix ECVF vports unload on shutdown flow
     - net/mlx5: Fix return value when searching for existing flow group
     - net/mlx5: HWS, fix missing ip_version handling in definer
     - net/mlx5e: Fix leak of Geneve TLV option object
     - net_sched: prio: fix a race in prio_tune() (CVE-2025-38083)
     - net_sched: red: fix a race in __red_change()
     - net_sched: tbf: fix a race in tbf_change()
     - net_sched: ets: fix a race in ets_qdisc_change()
     - net: drv: netdevsim: don't napi_complete() from netpoll
     - btrfs: exit after state insertion failure at btrfs_convert_extent_bit()
     - fs/filesystems: Fix potential unsigned integer underflow in fs_name()
     - gfs2: pass through holder from the VFS for freeze/thaw
     - btrfs: exit after state split error at set_extent_bit()
     - nvmet-fcloop: access fcpreq only when holding reqlock
     - perf: Ensure bpf_perf_link path is properly serialized
     - block: use q->elevator with ->elevator_lock held in elv_iosched_show()
     - io_uring: fix use-after-free of sq->thread in __io_uring_show_fdinfo()
     - block: don't use submit_bio_noacct_nocheck in blk_zone_wplug_bio_work
     - io_uring: consistently use rcu semantics with sqpoll thread
     - bio: Fix bio_first_folio() for SPARSEMEM without VMEMMAP
     - block: Fix bvec_set_folio() for very large folios
     - Revert "wifi: mwifiex: Fix HT40 bandwidth issue."
     - ALSA: usb-audio: Add implicit feedback quirk for RODE AI-1
     - HID: usbhid: Eliminate recurrent out-of-bounds bug in usbhid_parse()
     - posix-cpu-timers: fix race between handle_posix_cpu_timers() and
       posix_cpu_timer_del()
     - nvmem: zynqmp_nvmem: unbreak driver after cleanup
     - usb: usbtmc: Fix read_stb function and get_stb ioctl
     - VMCI: fix race between vmci_host_setup_notify and vmci_ctx_unset_notify
     - tty: serial: 8250_omap: fix TX with DMA for am33xx
     - usb: misc: onboard_usb_dev: Fix usb5744 initialization sequence
     - usb: cdnsp: Fix issue with detecting command completion event
     - usb: cdnsp: Fix issue with detecting USB 3.2 speed
     - usb: Flush altsetting 0 endpoints before reinitializating them after
       reset.
     - usb: typec: tcpm/tcpci_maxim: Fix bounds check in process_rx()
     - usb: typec: tcpm: move tcpm_queue_vdm_unlocked to asynchronous work
     - 9p: Add a migrate_folio method
     - ring-buffer: Do not trigger WARN_ON() due to a commit_overrun
     - ring-buffer: Fix buffer locking in ring_buffer_subbuf_order_set()
     - ring-buffer: Move cpus_read_lock() outside of buffer->mutex
     - xfs: don't assume perags are initialised when trimming AGs
     - [arm64] xen/arm: call uaccess_ttbr0_enable for dm_op hypercall
     - [x86] iopl: Cure TIF_IO_BITMAP inconsistencies
     - [x86] fred/signal: Prevent immediate repeat of single step trap on return
       from SIGTRAP handler
     - calipso: unlock rcu before returning -EAFNOSUPPORT
     - regulator: dt-bindings: mt6357: Drop fixed compatible requirement
     - usb: misc: onboard_usb_dev: fix build warning for
       CONFIG_USB_ONBOARD_DEV_USB5744=n
     - net: usb: aqc111: debug info before sanitation
     - overflow: Introduce __DEFINE_FLEX for having no initializer
     - gfs2: Don't clear sb->s_fs_info in gfs2_sys_fs_add
     - [arm64] drm/meson: Use 1000ULL when operating with mode->clock
     - thermal/drivers/mediatek/lvts: Remove unused lvts_debugfs_exit
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.12.35
     - configfs: Do not override creating attribute file failure in
       populate_attrs()
     - [arm64,armhf] crypto: marvell/cesa - Do not chain submitted requests
     - gfs2: move msleep to sleepable context
     - [amd64] crypto: qat - add shutdown handler to qat_c3xxx
     - [amd64] crypto: qat - add shutdown handler to qat_420xx
     - [amd64] crypto: qat - add shutdown handler to qat_4xxx
     - [amd64] crypto: qat - add shutdown handler to qat_c62x
     - [amd64] crypto: qat - add shutdown handler to qat_dh895xcc
     - [arm64] ASoC: qcom: sdm845: Add error handling in
       sdm845_slim_snd_hw_params()
     - [arm64,armhf] ASoC: meson: meson-card-utils: use of_property_present() for
       DT parsing
     - io_uring: account drain memory to cgroup
     - io_uring/kbuf: account ring io_buffer_list memory
     - [powerpc*] pseries/msi: Avoid reading PCI device registers in reduced
       power states
     - [s390x] pci: Remove redundant bus removal and disable from
       zpci_release_device()
     - [s390x] pci: Prevent self deletion in disable_slot()
     - [s390x] pci: Allow re-add of a reserved but not yet removed device
     - [s390x] pci: Serialize device addition and removal
     - net/mlx5_core: Add error handling inmlx5_query_nic_vport_qkey_viol_cntr()
     - net/mlx5: Add error handling in mlx5_query_nic_vport_node_guid()
     - wifi: p54: prevent buffer-overflow in p54_rx_eeprom_readback()
     - wifi: mt76: mt7925: fix host interrupt register initialization
     - wifi: ath11k: fix rx completion meta data corruption
     - wifi: rtw88: usb: Upload the firmware in bigger chunks
     - wifi: ath11k: fix ring-buffer corruption
     - NFSD: unregister filesystem in case genl_register_family() fails
     - NFSD: fix race between nfsd registration and exports_proc
     - NFSD: Implement FATTR4_CLONE_BLKSIZE attribute
     - nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
     - nfsd: Initialize ssc before laundromat_work to prevent NULL dereference
     - SUNRPC: Prevent hang on NFS mount with xprtsec=[m]tls
     - NFSv4: Don't check for OPEN feature support in v4.1
     - fs/nfs/read: fix double-unlock bug in nfs_return_empty_folio()
     - wifi: ath12k: fix ring-buffer corruption
     - jbd2: fix data-race and null-ptr-deref in jbd2_journal_dirty_metadata()
     - svcrdma: Unregister the device if svc_rdma_accept() fails
     - wifi: rtw88: usb: Reduce control message timeout to 500 ms
     - wifi: rtlwifi: disable ASPM for RTL8723BE with subsystem ID 11ad:1723
     - [amd64] media: ov8856: suppress probe deferral errors
     - [arm64] media: ov5675: suppress probe deferral errors
     - media: cxusb: no longer judge rbuf when the write fails
     - media: gspca: Add error handling for stv06xx_read_sensor()
     - [amd64] media: intel/ipu6: Fix dma mask for non-secure mode
     - [amd64] media: ipu6: Remove workaround for Meteor Lake ES2
     - [arm64] media: mediatek: vcodec: Correct vsi_core framebuffer size
     - [armhf] media: omap3isp: use sgtable-based scatterlist wrappers
     - media: v4l2-dev: fix error handling in __video_register_device()
     - [arm64] media: venus: Fix probe error handling
     - media: videobuf2: use sgtable-based scatterlist wrappers
     - media: vivid: Change the siize of the composing
     - media: uvcvideo: Return the number of processed controls
     - media: uvcvideo: Send control events for partial succeeds
     - media: uvcvideo: Fix deferred probing error
     - [arm64] mm: Close theoretical race where stale TLB entry remains valid
     - [armel,armhf] 9447/1: arm/memremap: fix arch_memremap_can_ram_remap()
     - block: use plug request list tail for one-shot backmerge attempt
     - block: Clear BIO_EMULATES_ZONE_APPEND flag on BIO completion
     - bus: mhi: ep: Update read pointer only after buffer is written
     - bus: mhi: host: Fix conflict between power_up and SYSERR
     - ceph: avoid kernel BUG for encrypted inode with unaligned file size
     - ceph: set superblock s_magic for IMA fsmagic matching
     - cgroup,freezer: fix incomplete freezing when attaching tasks
     - bus: firewall: Fix missing static inline annotations for stubs
     - ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330
     - ata: ahci: Disallow LPM for ASUSPRO-D840SA motherboard
     - ata: ahci: Disallow LPM for Asus B550-F motherboard
     - [arm64] bus: fsl-mc: do not add a device-link for the UAPI used DPMCP
       device
     - [arm64] bus: fsl-mc: fix GET/SET_TAILDROP command ids
     - ext4: inline: fix len overflow in ext4_prepare_inline_data
     - ext4: fix calculation of credits for extent tree modification
     - ext4: factor out ext4_get_maxbytes()
     - ext4: ensure i_size is smaller than maxbytes
     - ext4: only dirty folios when data journaling regular files
     - [arm*] Input: gpio-keys - fix possible concurrent access in
       gpio_keys_irq_timer()
     - f2fs: fix to do sanity check on ino and xnid
     - f2fs: prevent kernel warning due to negative i_nlink from corrupted image
     - f2fs: fix to do sanity check on sit_bitmap_size
     - hwmon: (ftsteutates) Fix TOCTOU race in fts_read()
     - NFC: nci: uart: Set tty->disc_data only in success path
     - net/sched: fix use-after-free in taprio_dev_notifier
     - net: ftgmac100: select FIXED_PHY
     - [amd64] iommu/vt-d: Restore context entry setup order for aliased devices
     - fbdev: Fix do_register_framebuffer to prevent null-ptr-deref in
       fb_videomode_to_var
     - fbdev: Fix fb_set_var to prevent null-ptr-deref in fb_videomode_to_var
     - vgacon: Add check for vc_origin address range in vgacon_scroll()
     - [arm64] clk: meson-g12a: add missing fclk_div2 to spicc
     - ipc: fix to protect IPCS lookups using RCU
     - watchdog: fix watchdog may detect false positive of softlockup
     - RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction
     - mm: fix ratelimit_pages update error in dirty_ratio_handler()
     - [arm64] soc: qcom: pmic_glink_altmode: fix spurious DP hotplug events
     - configfs-tsm-report: Fix NULL dereference of tsm_ops
     - [arm64] firmware: arm_scmi: Ensure that the message-id supports
       fastchannel
     - [armhf] mtd: rawnand: sunxi: Add randomizer configuration in
       sunxi_nfc_hw_ecc_write_chunk
     - [armhf] mtd: nand: sunxi: Add randomizer configuration before randomizer
       enable
     - [amd64] KVM: SVM: Clear current_vmcb during vCPU free for all *possible*
       CPUs
     - [amd64] KVM: VMX: Flush shadow VMCS on emergency reboot
     - dm-mirror: fix a tiny race condition
     - dm-verity: fix a memory leak if some arguments are specified multiple
       times
     - ftrace: Fix UAF when lookup kallsym after ftrace disabled
     - dm: lock limits when reading them
     - phy: fsl-imx8mq-usb: fix phy_tx_vboost_level_from_property()
     - net: ch9200: fix uninitialised access during mii_nway_restart
       (CVE-2025-38086)
     - [s390x] KVM: s390: rename PROT_NONE to PROT_TYPE_DUMMY
     - sysfb: Fix screen_info type check for VGA
     - video: screen_info: Relocate framebuffers behind PCI bridges
     - pwm: axi-pwmgen: fix missing separate external clock
     - staging: iio: ad5933: Correct settling cycles encoding per datasheet
     - ovl: Fix nested backing file paths
     - regulator: max14577: Add error check for max14577_read_reg()
     - [arm64,armhf] remoteproc: core: Cleanup acquired resources when
       rproc_handle_resources() fails in rproc_attach()
     - [arm64,armhf] remoteproc: core: Release rproc->clean_table after
       rproc_attach() fails
     - cifs: reset connections for all channels when reconnect requested
     - cifs: update dstaddr whenever channel iface is updated
     - cifs: dns resolution is needed only for primary channel
     - smb: client: add NULL check in automount_fullpath
     - Drivers: hv: Allocate interrupt and monitor pages aligned to system page
       boundary
     - uio_hv_generic: Use correct size for interrupt and monitor pages
     - uio_hv_generic: Align ring size to system page
     - [arm64] PCI: cadence-ep: Correct PBA offset in .set_msix() callback
     - [arm64] PCI: dwc: ep: Correct PBA offset in .set_msix() callback
     - PCI: Add ACS quirk for Loongson PCIe
     - PCI: Fix lock symmetry in pci_slot_unlock()
     - [arm64] PCI: dw-rockchip: Remove PCIE_L0S_ENTRY check from
       rockchip_pcie_link_up()
     - [arm64] PCI: dw-rockchip: Fix PHY function call sequence in
       rockchip_pcie_phy_deinit()
     - iio: accel: fxls8962af: Fix temperature scan element sign
     - [amd64] accel/ivpu: Improve buffer object logging
     - [amd64] accel/ivpu: Use firmware names from upstream repo
     - [amd64] accel/ivpu: Use dma_resv_lock() instead of a custom mutex
     - [amd64] accel/ivpu: Fix warning in ivpu_gem_bo_free()
     - dummycon: Trigger redraw when switching consoles with deferred takeover
     - mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race
     - iio: imu: inv_icm42600: Fix temperature calculation
     - iio: adc: ad7944: mask high bits on direct read
     - iio: adc: ti-ads1298: Kconfig: add kfifo dependency to fix module build
     - iio: adc: ad7606_spi: fix reg write value mask
     - ACPICA: fix acpi operand cache leak in dswstate.c
     - [amd64] ASoC: amd: yc: Add quirk for Lenovo Yoga Pro 7 14ASP9
     - clocksource: Fix the CPUs' choice in the watchdog per CPU verification
     - power: supply: collie: Fix wakeup source leaks on device unbind
     - mmc: Add quirk to disable DDR50 tuning
     - ACPICA: Avoid sequence overread in call to strncmp()
     - [amd64] ASoC: intel/sdw_utils: Assign initial value in
       asoc_sdw_rt_amp_spk_rtd_init()
     - ACPI: bus: Bail out if acpi_kobj registration fails
     - ACPI: Add missing prototype for non CONFIG_SUSPEND/CONFIG_X86 case
     - ACPICA: fix acpi parse and parseext cache leaks
     - ACPICA: Apply pack(1) to union aml_resource
     - ALSA: hda: cs35l41: Fix swapped l/r audio channels for Acer Helios laptops
     - power: supply: bq27xxx: Retrieve again when busy
     - pmdomain: core: Reset genpd->states to avoid freeing invalid data
     - ACPICA: utilities: Fix overflow check in vsnprintf()
     - platform-msi: Add msi_remove_device_irq_domain() in
       platform_device_msi_free_irqs_all()
     - Make 'cc-option' work correctly for the -Wno-xyzzy pattern
     - gpiolib: of: Add polarity quirk for s5m8767
     - PM: runtime: fix denying of auto suspend in pm_suspend_timer_fn()
     - power: supply: max17040: adjust thermal channel scaling
     - ACPI: battery: negate current when discharging
     - net: macb: Check return value of dma_set_mask_and_coherent()
     - net: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices
     - tipc: use kfree_sensitive() for aead cleanup
     - f2fs: use vmalloc instead of kvmalloc in .init_{,de}compress_ctx
     - bpf: Check rcu_read_lock_trace_held() in bpf_map_lookup_percpu_elem()
     - Bluetooth: btusb: Add new VID/PID 13d3/3584 for MT7922
     - i2c: designware: Invoke runtime suspend on quick slave re-registration
     - wifi: mt76: mt7996: drop fragments with multicast or broadcast RA
     - emulex/benet: correct command version selection in be_cmd_get_stats()
     - Bluetooth: btusb: Add new VID/PID 13d3/3630 for MT7925
     - wifi: mt76: mt76x2: Add support for LiteOn WN4516R,WN4519R
     - wifi: mt76: mt7921: add 160 MHz AP for mt7922 device
     - wifi: mt76: mt7925: introduce thermal protection
     - wifi: mac80211: validate SCAN_FLAG_AP in scan request during MLO
     - sctp: Do not wake readers in __sctp_write_space()
     - libbpf/btf: Fix string handling to support multi-split BTF
     - cpufreq: scmi: Skip SCMI devices that aren't used by the CPUs
     - [arm64,armhf] i2c: tegra: check msg length in SMBUS block read
     - [arm64] clk: qcom: gcc-x1e80100: Set FORCE MEM CORE for UFS clocks
     - net: dlink: add synchronization for stats update
     - wifi: ath12k: fix macro definition HAL_RX_MSDU_PKT_LENGTH_GET
     - wifi: ath12k: fix a possible dead lock caused by ab->base_lock
     - wifi: ath11k: Fix QMI memory reuse logic
     - [amd64] iommu/amd: Allow matching ACPI HID devices without matching UIDs
     - wifi: rtw89: leave idle mode when setting WEP encryption for AP mode
     - tcp: always seek for minimal rtt in tcp_rcv_rtt_update()
     - tcp: remove zero TCP TS samples for autotuning
     - tcp: fix initial tp->rcvq_space.space value for passive TS enabled flows
     - tcp: add receive queue awareness in tcp_rcv_space_adjust()
     - [amd64] x86/sgx: Prevent attempts to reclaim poisoned pages
     - ipv4/route: Use this_cpu_inc() for stats on PREEMPT_RT
     - net: page_pool: Don't recycle into cache on PREEMPT_RT
     - xfrm: validate assignment of maximal possible SEQ number
     - net: atlantic: generate software timestamp just before the doorbell
     - [arm64] pinctrl: armada-37xx: propagate error from
       armada_37xx_pmx_set_by_name()
     - [arm64] pinctrl: armada-37xx: propagate error from
       armada_37xx_gpio_get_direction()
     - bpf: Pass the same orig_call value to trampoline functions
     - net: stmmac: generate software timestamp just before the doorbell
     - pinctrl: armada-37xx: propagate error from
       armada_37xx_pmx_gpio_set_direction()
     - libbpf: Check bpf_map_skeleton link for NULL
     - [arm64] pinctrl: armada-37xx: propagate error from armada_37xx_gpio_get()
     - net: mlx4: add SOF_TIMESTAMPING_TX_SOFTWARE flag when getting ts info
     - wireless: purelifi: plfxlc: fix memory leak in plfxlc_usb_wreq_asyn()
     - wifi: mac80211: do not offer a mesh path if forwarding is disabled
     - [armhf] clk: rockchip: rk3036: mark ddrphy as critical
     - hid-asus: check ROG Ally MCU version and warn
     - wifi: iwlwifi: mvm: fix beacon CCK flag
     - f2fs: fix to bail out in get_new_segment()
     - netfilter: nft_set_pipapo: clamp maximum map bucket size to INT_MAX
     - libbpf: Add identical pointer detection to btf_dedup_is_equiv()
     - scsi: lpfc: Fix lpfc_check_sli_ndlp() handling for GEN_REQUEST64 commands
     - scsi: smartpqi: Add new PCI IDs
     - [amd64] iommu/amd: Ensure GA log notifier callbacks finish running before
       module unload
     - wifi: iwlwifi: pcie: make sure to lock rxq->read
     - wifi: rtw89: 8922a: fix TX fail with wrong VCO setting
     - wifi: mac80211_hwsim: Prevent tsf from setting if beacon is disabled
     - net/mlx5: HWS, Fix IP version decision
     - bpf: Use proper type to calculate bpf_raw_tp_null_args.mask index
     - wifi: mac80211: VLAN traffic in multicast path
     - Revert "mac80211: Dynamically set CoDel parameters per station"
     - wifi: iwlwifi: Add missing MODULE_FIRMWARE for Qu-c0-jf-b0
     - net: bridge: mcast: update multicast contex when vlan state is changed
     - net: bridge: mcast: re-implement br_multicast_{enable, disable}_port
       functions
     - vxlan: Do not treat dst cache initialization errors as fatal
     - bnxt_en: Remove unused field "ref_count" in struct bnxt_ulp
     - wifi: ath12k: using msdu end descriptor to check for rx multicast packets
     - net: ethernet: ti: am65-cpsw: handle -EPROBE_DEFER
     - software node: Correct a OOB check in software_node_get_reference_args()
     - isofs: fix Y2038 and Y2156 issues in Rock Ridge TF entry
     - [armhf] pinctrl: mcp23s08: Reset all pins to input at probe
     - wifi: ath12k: fix failed to set mhi state error during reboot with
       hardware grouping
     - scsi: lpfc: Use memcpy() for BIOS version
     - sock: Correct error checking condition for (assign|release)_proto_idx()
     - i40e: fix MMIO write access to an invalid page in i40e_clear_hw
     - ixgbe: Fix unreachable retry logic in combined and byte I2C write
       functions
     - [arm64] RDMA/hns: initialize db in update_srq_db()
     - ice: fix check for existing switch rule
     - usbnet: asix AX88772: leave the carrier control to phylink
     - f2fs: fix to set atomic write status more clear
     - bpf, sockmap: Fix data lost during EAGAIN retries
     - net: ethernet: cortina: Use TOE/TSO on all TCP
     - [arm64] octeontx2-pf: Add error log forcn10k_map_unmap_rq_policer()
     - wifi: ath11k: determine PM policy based on machine model
     - wifi: ath12k: fix link valid field initialization in the monitor Rx
     - wifi: ath12k: fix incorrect CE addresses
     - wifi: ath12k: Pass correct values of center freq1 and center freq2 for 160
       MHz
     - net/mlx5: HWS, Harden IP version definer checks
     - fbcon: Make sure modelist not set on unregistered console
     - watchdog: da9052_wdt: respect TWDMIN
     - [arm64] bus: fsl-mc: increase MC_CMD_COMPLETION_TIMEOUT_MS value
     - [armhf] OMAP2+: Fix l4ls clk domain handling in STANDBY
     - tee: Prevent size calculation wraparound on 32-bit kernels
     - Revert "bus: ti-sysc: Probe for l4_wkup and l4_cfg interconnect devices
       first"
     - fs/xattr.c: fix simple_xattr_list()
     - [amd64] platform/x86/amd: pmc: Clear metrics table at start of cycle
     - [amd64] platform/x86/amd: pmf: Prevent amd_pmf_tee_deinit() from running
       twice
     - [amd64] platform/x86: dell_rbu: Fix list usage
     - [amd64] platform/x86: dell_rbu: Stop overwriting data buffer
     - [powerpc*] vdso: Fix build of VDSO32 with pcrel
     - [powerpc*] eeh: Fix missing PE bridge reconfiguration during VFIO EEH
       recovery
     - io_uring/kbuf: don't truncate end buffer for multiple buffer peeks
     - io_uring: fix task leak issue in io_wq_create()
     - drivers/rapidio/rio_cm.c: prevent possible heap overwrite
     - jffs2: check that raw node were preallocated before writing summary
     - jffs2: check jffs2_prealloc_raw_node_refs() result in few other places
     - cifs: deal with the channel loading lag while picking channels
     - cifs: serialize other channels when query server interfaces is pending
     - cifs: do not disable interface polling on failure
     - smb: improve directory cache reuse for readdir operations
     - scsi: storvsc: Increase the timeouts to storvsc_timeout
     - scsi: s390: zfcp: Ensure synchronous unit_add
     - nvme: always punt polled uring_cmd end_io work to task_work
     - net_sched: sch_sfq: reject invalid perturb period
     - net: clear the dst when changing skb protocol
     - mm: close theoretical race where stale TLB entries could linger
     - udmabuf: use sgtable-based scatterlist wrappers
     - [amd64] x86/virt/tdx: Avoid indirect calls to TDX assembly functions
     - ksmbd: fix null pointer dereference in destroy_previous_session
     - [amd64] platform/x86: ideapad-laptop: use usleep_range() for EC polling
     - selinux: fix selinux_xfrm_alloc_user() to set correct ctx_len
     - [amd64] platform/x86/intel-uncore-freq: Fail module load when plat_info is
       NULL
     - sched_ext, sched/core: Don't call scx_group_set_weight() prematurely from
       sched_create_group()
     - atm: Revert atm_account_tx() if copy_from_iter_full() fails.
     - wifi: rtw89: phy: add dummy C2H event handler for report of TAS power
     - cpufreq/amd-pstate: Add missing NULL ptr check in amd_pstate_update
       (CVE-2025-23137)
     - Input: sparcspkr - avoid unannotated fall-through
     - wifi: ath12k: Clear affinity hint before calling ath12k_pci_free_irq() in
       error path
     - wifi: cfg80211: init wiphy_work before allocating rfkill fails
       (CVE-2025-22119)
     - [arm64] Restrict pagetable teardown to avoid false warning
     - ALSA: usb-audio: Rename ALSA kcontrol PCM and PCM1 for the KTMicro sound
       card
     - ALSA: hda/intel: Add Thinkpad E15 to PM deny list
     - ALSA: hda/realtek - Add mute LED support for HP Victus 16-s1xxx and HP
       Victus 15-fa1xxx
     - ALSA: hda/realtek: enable headset mic on Latitude 5420 Rugged
     - ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X513EA
     - ALSA: hda/realtek: Add quirk for Asus GU605C
     - iio: accel: fxls8962af: Fix temperature calculation
     - mm/hugetlb: unshare page tables during VMA split, not before
       (CVE-2025-38084)
     - drm/amdgpu: read back register after written for VCN v4.0.5
     - kbuild: rust: add rustc-min-version support function
     - net: Fix checksum update for ILA adj-transport
     - bpf: Fix L4 csum update on IPv6 in CHECKSUM_COMPLETE
     - erofs: remove unused trace event erofs_destroy_inode
     - nfsd: use threads array as-is in netlink interface
     - sunrpc: handle SVC_GARBAGE during svc auth processing as auth error
     - [arm64] drm/v3d: Avoid NULL pointer dereference in
       `v3d_job_update_stats()`
     - ipv6: remove leftover ip6 cookie initializer
     - ipv6: replace ipcm6_init calls with ipcm6_init_sk
     - smb: fix secondary channel creation issue with kerberos by populating
       hostname when adding channels
     - [arm64] drm/msm/disp: Correct porch timing for SDM845
     - [arm64] drm/msm/dsi/dsi_phy_10nm: Fix missing initial VCO rate
     - [arm64] drm/msm: Fix CP_RESET_CONTEXT_STATE bitfield names
     - [arm64] drm/msm/a7xx: Call CP_RESET_CONTEXT_STATE
     - ionic: Prevent driver/fw getting out of sync on devcmd(s)
     - drm/nouveau/bl: increase buffer size to avoid truncate warning
     - [amd64] drm/i915/pmu: Fix build error with GCOV and AutoFDO enabled
     - [armhf] hwmon: (occ) Rework attribute registration for stack usage
     - [armhf] hwmon: (occ) fix unaligned accesses
     - aoe: clean device rq_list in aoedev_downdev()
     - io_uring/sqpoll: don't put task_struct on tctx setup failure
     - net: ice: Perform accurate aRFS flow match
     - ice: fix eswitch code memory leak in reset scenario
     - e1000e: set fixed clock frequency indication for Nahum 11 and Nahum 13
     - workqueue: Initialize wq_isolated_cpumask in workqueue_init_early()
     - ksmbd: add free_transport ops in ksmbd connection
     - net: netmem: fix skb_ensure_writable with unreadable skbs
     - bnxt_en: Fix double invocation of bnxt_ulp_stop()/bnxt_ulp_start()
     - eth: bnxt: fix out-of-range access of vnic_info array (CVE-2025-22112)
     - bnxt_en: Add a helper function to configure MRU and RSS
     - bnxt_en: Update MRU and RSS table of RSS contexts on queue reset
     - ptp: fix breakage after ptp_vclock_in_use() rework
     - ptp: allow reading of currently dialed frequency to succeed on
       free-running clocks
     - wifi: carl9170: do not ping device which has failed to load firmware
     - mpls: Use rcu_dereference_rtnl() in mpls_route_input_rcu().
     - atm: atmtcp: Free invalid length skb in atmtcp_c_send().
     - tcp: fix tcp_packet_delayed() for tcp_is_non_sack_preventing_reopen()
       behavior
     - tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer
     - tcp: fix passive TFO socket having invalid NAPI ID
     - eth: fbnic: avoid double free when failing to DMA-map FW msg
     - net: lan743x: fix potential out-of-bounds write in
       lan743x_ptp_io_event_clock_get()
     - ublk: santizize the arguments from userspace when adding a device
     - drm/xe: Wire up device shutdown handler
     - drm/xe/gt: Update handling of xe_force_wake_get return
     - drm/xe/bmg: Update Wa_16023588340
     - calipso: Fix null-ptr-deref in calipso_req_{set,del}attr().
     - mlxbf_gige: return EPROBE_DEFER if PHY IRQ is not available
     - net: atm: add lec_mutex
     - net: atm: fix /proc/net/atm/lec handling
     - [amd64] EDAC/amd64: Correct number of UMCs for family 19h models 70h-7fh
     - dt-bindings: i2c: nvidia,tegra20-i2c: Specify the required properties
     - smb: Log an error when close_all_cached_dirs fails
     - serial: sh-sci: Clean sci_ports[0] after at earlycon exit
     - serial: sh-sci: Increment the runtime usage counter for the earlycon
       device
     - smb: client: fix first command failure during re-negotiation
     - smb: client: fix max_sge overflow in smb_extract_folioq_to_rdma()
     - [s390x] pci: Fix __pcilg_mio_inuser() inline assembly
     - perf: Fix sample vs do_exit()
     - perf: Fix cgroup state vs ERROR
     - perf/core: Fix WARN in perf_cgroup_switch()
     - [arm64] ptrace: Fix stack-out-of-bounds read in
       regs_get_kernel_stack_nth()
     - [riscv64] KVM: Fix the size parameter check in SBI SFENCE calls
     - [riscv64] KVM: Don't treat SBI HFENCE calls as NOPs
     - [arm64,armhf] gpio: pca953x: fix wrong error probe return value
     - cifs: Remove duplicate fattr->cf_dtype assignment from wsl_to_fattr()
       function
     - bpftool: Fix cgroup command to only show cgroup bpf programs
 .
   [ Uwe Kleine-König ]
   * Disable CONFIG_CDROM_PKTCDVD for all archs as this driver is
     orphaned, buggy and not needed. (Closes: #1107479)
   * [armhf] Enable various kernel modules for the machines defined in the
     device-trees st/stm32mp153c-lxa-tac-gen3,
     st/stm32mp153c-lxa-fairytux2-gen1 and st/stm32mp153c-lxa-fairytux2-gen2
     (Closes: #1105865)
 .
   [ Macpaul Lin ]
   * [arm64] drivers/usb/typec/mux: Enable TYPEC_MUX_IT5205 as module
   * [arm64] sound/soc/mediatek: Enable sound for MediaTek MT8365 EVK
     - Enable SND_SOC_MT8365 as module
     - Enable SND_SOC_MT8365_MT6357 as module
   * [arm64] drivers/dma/mediatek: Enable DMA support for MediaTek peripherals
     - Enable MTK_HSDMA as module
     - Enable MTK_UART_APDMA as module
   * [arm64] drivers/net/ethernet/mediatek: Enable ethernet for MT8365
     - Enable NET_MEDIATEK_STAR_EMAC as module
   * drivers/bluetooth: set BT_HCIBTUSB_POLL_SYNC=y
   * All the above Closes: #1108597
 .
   [ наб ]
   * Don't compress perf's tips.txt (Closes: #1088747)
 .
   [ Aurelien Jarno ]
   * [riscv64] Enable BRCMFMAC_SDIO (Closes: #1108215)
 .
   [ Salvatore Bonaccorso ]
   * ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X507UAR
     (Closes: #1108069)
   * Revert "mmc: sdhci: Disable SD card clock before changing parameters"
     (Closes: #1108065)
 .
   [ Bastian Blank ]
   * [cloud] Enable SATA_AHCI.
Checksums-Sha1:
 774eaff6449f1f2fb6b670566adad508427de4ac 219407 linux_6.12.35-1.dsc
 f3d204fe7e0a3eceb03a703d3a99d2a30f3acdba 151106700 linux_6.12.35.orig.tar.xz
 3bd826869df98dd3b2bd37bf63a715c5572f583c 1659924 linux_6.12.35-1.debian.tar.xz
 25723056d32f23dec9d35176d3dba5dd73c9ebc9 6617 linux_6.12.35-1_source.buildinfo
Checksums-Sha256:
 a1f10094595d32037a3d56fe030e1f1cc4f7c1c985d5c37c19c784376b4956fc 219407 linux_6.12.35-1.dsc
 62e0238ab1d6bffbab18257aa13d3a7d073f2424d265284e764eb530c316e24e 151106700 linux_6.12.35.orig.tar.xz
 42166e7729eb9aa652514a5e6e8e67e38933aaf7ca358bdae08019d489f87382 1659924 linux_6.12.35-1.debian.tar.xz
 5e6214fc9e4ab545632c7fd88ecd588d76220368dd65454fbcab409e928b2770 6617 linux_6.12.35-1_source.buildinfo
Files:
 77548310e80926d3a36e12c0abaa3402 219407 kernel optional linux_6.12.35-1.dsc
 b793a36bee1d88174467082202ba7b5d 151106700 kernel optional linux_6.12.35.orig.tar.xz
 98008e2d1f3a6ff7407f74a4b5561dd7 1659924 kernel optional linux_6.12.35-1.debian.tar.xz
 010470cf3f2e836e0d4bff010e202acb 6617 kernel optional linux_6.12.35-1_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=ouXs
-----END PGP SIGNATURE-----

[Message part 2 (application/pgp-signature, inline)]

Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Fri, 04 Jul 2025 07:03:09 GMT) (full text, mbox, link).


Notification sent to Liviu Heinrich <livix07@riseup.net>:
Bug acknowledged by developer. (Fri, 04 Jul 2025 07:03:09 GMT) (full text, mbox, link).


Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Sun, 17 Aug 2025 19:49:03 GMT) (full text, mbox, link).


Notification sent to Jeremy Lincicome <w0jrl1@gmail.com>:
Bug acknowledged by developer. (Sun, 17 Aug 2025 19:49:03 GMT) (full text, mbox, link).


Message #150 received at 1108065-close@bugs.debian.org (full text, mbox, reply):

From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
To: 1108065-close@bugs.debian.org
Subject: Bug#1108065: fixed in linux 6.1.147-1
Date: Sun, 17 Aug 2025 19:47:26 +0000
[Message part 1 (text/plain, inline)]
Source: linux
Source-Version: 6.1.147-1
Done: Salvatore Bonaccorso <carnil@debian.org>

We believe that the bug you reported is fixed in the latest version of
linux, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 1108065@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Salvatore Bonaccorso <carnil@debian.org> (supplier of updated linux package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmaster@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Sat, 02 Aug 2025 15:13:02 +0200
Source: linux
Architecture: source
Version: 6.1.147-1
Distribution: bookworm-security
Urgency: high
Maintainer: Debian Kernel Team <debian-kernel@lists.debian.org>
Changed-By: Salvatore Bonaccorso <carnil@debian.org>
Closes: 1107479 1107511 1108065 1108069 1108430 1109734
Changes:
 linux (6.1.147-1) bookworm-security; urgency=high
 .
   * New upstream stable update:
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.141
     - [arm64,armhf] gpio: pca953x: Add missing header(s)
     - [arm64,armhf] gpio: pca953x: Split pca953x_restore_context() and
       pca953x_save_context()
     - [arm64,armhf] gpio: pca953x: Simplify code with cleanup helpers
     - [arm64,armhf] gpio: pca953x: fix IRQ storm on system wake up
     - [arm64] phy: renesas: rcar-gen3-usb2: Add support to initialize the bus
     - [arm64] phy: renesas: rcar-gen3-usb2: Move IRQ request in probe
     - [arm64] phy: renesas: rcar-gen3-usb2: Lock around hardware registers and
       driver data
     - [arm64] phy: renesas: rcar-gen3-usb2: Assert PLL reset on PHY power off
     - scsi: target: iscsi: Fix timeout on deleted connection
     - virtio_ring: Fix data race by tagging event_triggered as racy for KCSAN
     - dma-mapping: avoid potential unused data compilation warning
     - cgroup: Fix compilation issue due to cgroup_mutex not being exported
     - scsi: mpi3mr: Add level check to control event logging
     - [arm64] net: enetc: refactor bulk flipping of RX buffers to separate
       function
     - drm/amdgpu: Allow P2P access through XGMI
     - bpf: fix possible endless loop in BPF map iteration
     - kconfig: merge_config: use an empty file as initfile
     - [s390x] vfio-ap: Fix no AP queue sharing allowed message written to kernel
       log
     - cifs: Add fallback for SMB2 CREATE without FILE_READ_ATTRIBUTES
     - cifs: Fix querying and creating MF symlinks over SMB1
     - cifs: Fix negotiate retry functionality
     - fuse: Return EPERM rather than ENOSYS from link()
     - NFSv4: Check for delegation validity in
       nfs_start_delegation_return_locked()
     - NFS: Don't allow waiting for exiting tasks
     - SUNRPC: Don't allow waiting for exiting tasks
     - [arm64] Add support for HIP09 Spectre-BHB mitigation
     - tracing: Mark binary printing functions with __printf() attribute
     - mailbox: use error ret code of of_parse_phandle_with_args()
     - fbdev: fsl-diu-fb: add missing device_remove_file()
     - fbcon: Use correct erase colour for clearing in fbcon
     - fbdev: core: tileblit: Implement missing margin clearing for tileblit
     - cifs: Fix establishing NetBIOS session for SMB2+ connection
     - NFSv4: Treat ENETUNREACH errors as fatal for state recovery
     - SUNRPC: rpc_clnt_set_transport() must not change the autobind setting
     - SUNRPC: rpcbind should never reset the port to the value '0'
     - [arm64] thermal/drivers/qoriq: Power down TMU on system suspend
     - dql: Fix dql->limit value when reset.
     - lockdep: Fix wait context check on softirq for PREEMPT_RT
     - objtool: Properly disable uaccess validation
     - pNFS/flexfiles: Report ENETDOWN as a connection error
     - [amd64] PCI: vmd: Disable MSI remapping bypass under Xen
     - libnvdimm/labels: Fix divide error in nd_label_data_init()
     - mmc: host: Wait for Vdd to settle on card power off
     - [x86] mm: Check return value from memblock_phys_alloc_range()
     - [arm64] i2c: qup: Vote for interconnect bandwidth to DRAM
     - i2c: pxa: fix call balance of i2c->clk handling routines
     - btrfs: make btrfs_discard_workfn() block_group ref explicit
     - btrfs: avoid linker error in btrfs_find_create_tree_block()
     - btrfs: run btrfs_error_commit_super() early
     - btrfs: fix non-empty delayed iputs list on unmount due to async workers
     - btrfs: get zone unusable bytes while holding lock at
       btrfs_reclaim_bgs_work()
     - btrfs: send: return -ENAMETOOLONG when attempting a path that is too long
     - drm/amd/display: Guard against setting dispclk low for dcn31x
     - dlm: make tcp still work in multi-link env
     - ext4: reorder capability check last
     - scsi: st: Tighten the page format heuristics with MODE SELECT
     - scsi: st: ERASE does not change tape location
     - vfio/pci: Handle INTx IRQ_NOTCONNECTED
     - bpf: Return prog btf_id without capable check
     - tcp: reorganize tcp_in_ack_event() and tcp_count_delivered()
     - rtc: rv3032: fix EERD location
     - [x86] thunderbolt: Do not add non-active NVM if NVM upgrade is disabled
       for retimer
     - kbuild: fix argument parsing in scripts/config
     - dm: restrict dm device size to 2^63-512 bytes
     - net/smc: use the correct ndev to find pnetid by pnetid table
     - xen: Add support for XenServer 6.1 platform device
     - [arm64,armhf] pinctrl-tegra: Restore SFSEL bit when freeing pins
     - [armhf] ASoC: sun4i-codec: support hp-det-gpios property
     - ext4: reject the 'data_err=abort' option in nojournal mode
     - RDMA/uverbs: Propagate errors from rdma_lookup_get_uobject()
     - posix-timers: Add cond_resched() to posix_timer_add() search loop
     - timer_list: Don't use %pK through printk()
     - netfilter: conntrack: Bound nf_conntrack sysctl writes
     - [arm64] mm: Check PUD_TYPE_TABLE in pud_bad()
     - [armhf] mmc: dw_mmc: add exynos7870 DW MMC support
     - mmc: sdhci: Disable SD card clock before changing parameters
     - [x86] hwmon: (dell-smm) Increment the number of fans
     - ipv6: save dontfrag in cork
     - drm/amd/display: calculate the remain segments for all pipes
     - gfs2: Check for empty queue in run_queue
     - auxdisplay: charlcd: Partially revert "Move hwidth and bwidth to struct
       hd44780_common"
     - [amd64] iommu/amd/pgtbl_v2: Improve error handling
     - crypto: lzo - Fix compression buffer overrun
     - [arm64] tegra: p2597: Fix gpio for vdd-1v8-dis regulator
     - [powerpc*] prom_init: Fixup missing #size-cells on PowerBook6,7
     - ALSA: seq: Improve data consistency at polling
     - tcp: bring back NUMA dispersion in inet_ehash_locks_alloc()
     - rtc: ds1307: stop disabling alarms on probe
     - ieee802154: ca8210: Use proper setters and getters for bitwise types
     - dm cache: prevent BUG_ON by blocking retries on failed device resumes
     - orangefs: Do not truncate file size
     - net: phylink: use pl->link_interface in phylink_expects_phy()
     - remoteproc: qcom_wcnss: Handle platforms with only single power domain
     - drm/amdgpu: Do not program AGP BAR regs under SRIOV in gfxhub_v1_0.c
     - media: cx231xx: set device_caps for 417
     - pinctrl: bcm281xx: Use "unsigned int" instead of bare "unsigned"
     - [armhf] net: ethernet: ti: cpsw_new: populate netdev of_node
     - net: pktgen: fix mpls maximum labels list parsing
     - perf/hw_breakpoint: Return EOPNOTSUPP for unsupported breakpoint type
     - ALSA: hda/realtek: Enable PC beep passthrough for HP EliteBook 855 G7
     - ipv4: fib: Move fib_valid_key_len() to rtm_to_fib_config().
     - drm/rockchip: vop2: Add uv swap for cluster window
     - media: uvcvideo: Add sanity check to uvc_ioctl_xu_ctrl_map
     - [arm64] clk: imx8mp: inform CCF of maximum frequency of clocks
     - [x86] bugs: Make spectre user default depend on MITIGATION_SPECTRE_V2
     - [arm*] hwmon: (gpio-fan) Add missing mutex locks
     - [arm64] PCI: brcmstb: Expand inbound window size up to 64GB
     - [arm64] PCI: brcmstb: Add a softdep to MIP MSI-X driver
     - net/mlx5: Avoid report two health errors on same syndrome
     - drm/amdkfd: KFD release_work possible circular locking
     - leds: pwm-multicolor: Add check for fwnode_property_read_u32
     - net: ethernet: mtk_ppe_offload: Allow QinQ, double ETH_P_8021Q only
     - net: xgene-v2: remove incorrect ACPI_PTR annotation
     - bonding: report duplicate MAC address in all situations
     - [arm64] soc: ti: k3-socinfo: Do not use syscon helper to build regmap
     - [x86] build: Fix broken copy command in genimage.sh when making isoimage
     - drm/amd/display: handle max_downscale_src_width fail check
     - [x86] nmi: Add an emergency handler in nmi_desc & use it in
       nmi_shootdown_cpus()
     - cpuidle: menu: Avoid discarding useful information
     - libbpf: Fix out-of-bound read
     - dm: fix unconditional IO throttle caused by REQ_PREFLUSH
     - [x86] kaslr: Reduce KASLR entropy on most x86 systems
     - [mips*] Use arch specific syscall name match function
     - genirq/msi: Store the IOMMU IOVA directly in msi_desc instead of
       iommu_cookie
     - [mips*] pm-cps: Use per-CPU variables as per-CPU, not per-core
     - [mips*] clocksource: mips-gic-timer: Enable counter when CPUs start
     - scsi: mpt3sas: Send a diag reset if target reset fails
     - wifi: rtw88: Fix rtw_init_vht_cap() for RTL8814AU
     - wifi: rtw88: Fix rtw_init_ht_cap() for RTL8814AU
     - wifi: rtw88: Fix rtw_desc_to_mcsrate() to handle MCS16-31
     - wifi: rtw89: fw: propagate error code from rtw89_h2c_tx()
     - net: pktgen: fix access outside of user given buffer in
       pktgen_thread_write()
     - [x86] EDAC/ie31200: work around false positive build warning
     - serial: mctrl_gpio: split disable_ms into sync and no_sync APIs
     - RDMA/core: Fix best page size finding when it can cross SG entries
     - [arm64,armhf] pmdomain: imx: gpcv2: use proper helper for property
       detection
     - can: c_can: Use of_property_present() to test existence of DT property
     - eth: mlx4: don't try to complete XDP frames in netpoll
     - PCI: Fix old_size lower bound in calculate_iosize() too
     - ACPI: HED: Always initialize before evged
     - vxlan: Join / leave MC group after remote changes
     - media: test-drivers: vivid: don't call schedule in loop
     - net/mlx5: Modify LSB bitmask in temperature event to include only the
       first bit
     - net/mlx5: Apply rate-limiting to high temperature warning
     - ASoC: ops: Enforce platform maximum on initial value
     - ASoC: soc-dai: check return value at snd_soc_dai_set_tdm_slot()
     - pinctrl: devicetree: do not goto err when probing hogs in
       pinctrl_dt_to_map
     - kunit: tool: Use qboot on QEMU x86_64
     - net/mlx4_core: Avoid impossible mlx4_db_alloc() order value
     - [arm64] clk: qcom: clk-alpha-pll: Do not use random stack value for recalc
       rate
     - serial: sh-sci: Update the suspend/resume support
     - phy: core: don't require set_mode() callback for phy_get_mode() to work
     - drm/amdgpu: reset psp->cmd to NULL after releasing the buffer
     - drm/amd/display: Initial psr_version with correct setting
     - drm/amdgpu: enlarge the VBIOS binary size limit
     - drm/amd/display/dm: drop hw_support check in amdgpu_dm_i2c_xfer()
     - net/mlx5: Extend Ethtool loopback selftest to support non-linear SKB
     - net/mlx5e: set the tx_queue_len for pfifo_fast
     - net/mlx5e: reduce rep rxq depth to 256 for ECPF
     - wifi: mac80211: don't unconditionally call drv_mgd_complete_tx()
     - wifi: mac80211: remove misplaced drv_mgd_complete_tx() call
     - [powerpc*] arch/powerpc/perf: Check the instruction type before creating
       sample with perf_mem_data_src
     - ip: fib_rules: Fetch net from fib_rule in fib[46]_rule_configure().
     - r8152: add vendor/device ID pair for Dell Alienware AW1022z
     - wifi: rtw88: Fix download_firmware_validate() for RTL8814AU
     - [arm64] hwmon: (xgene-hwmon) use appropriate type for the latency value
     - vxlan: Annotate FDB data races
     - r8169: don't scan PHY addresses > 0
     - rcu: handle quiescent states for PREEMPT_RCU=n, PREEMPT_COUNT=y
     - rcu: handle unstable rdp in rcu_read_unlock_strict()
     - rcu: fix header guard for rcu_all_qs()
     - perf: Avoid the read if the count is already updated
     - ice: count combined queues using Rx/Tx count
     - net/mana: fix warning in the writer of client oob
     - scsi: lpfc: Handle duplicate D_IDs in ndlp search-by D_ID routine
     - scsi: lpfc: Free phba irq in lpfc_sli4_enable_msi() when pci_irq_vector()
       fails
     - scsi: st: Restore some drive settings after reset
     - HID: usbkbd: Fix the bit shift number for LED_KANA
     - drm/ast: Find VBIOS mode from regular display size
     - bpftool: Fix readlink usage in get_fd_type
     - [x86] perf/amd/ibs: Fix perf_ibs_op.cnt_mask for CurCnt
     - wifi: rtl8xxxu: retry firmware download on error
     - wifi: rtw88: Don't use static local variable in
       rtw8822b_set_tx_power_index_by_rate
     - wifi: rtw89: add wiphy_lock() to work that isn't held wiphy_lock() yet
     - wifi: ath9k: return by of_get_mac_address
     - drm/atomic: clarify the rules around drm_atomic_state->allow_modeset
     - drm/panel-edp: Add Starry 116KHD024006
     - drm: Add valid clones check
     - [arm64,armhf] pinctrl: meson: define the pull up/down resistor value as 60
       kOhm
     - [x86] ASoC: Intel: bytcr_rt5640: Add DMI quirk for Acer Aspire SW3-013
     - ALSA: hda/realtek: Add quirk for HP Spectre x360 15-df1xxx
     - nvmet-tcp: don't restore null sk_state_change
     - io_uring/fdinfo: annotate racy sq/cq head/tail reads
     - btrfs: correct the order of prelim_ref arguments in btrfs__prelim_ref
     - wifi: iwlwifi: add support for Killer on MTL
     - xenbus: Allow PVH dom0 a non-local xenstore
     - __legitimize_mnt(): check for MNT_SYNC_UMOUNT should be under mount_lock
     - espintcp: remove encap socket caching to avoid reference leak
     - [amd64] dmaengine: idxd: add per DSA wq workqueue for processing cr faults
     - [amd64] dmaengine: idxd: add idxd_copy_cr() to copy user completion record
       during page fault handling
     - [amd64] dmaengine: idxd: Fix allowing write() from different address
       spaces
     - remoteproc: qcom_wcnss: Fix on platforms without fallback regulators
     - xfrm: Sanitize marks before insert
     - [amd64] dmaengine: idxd: Fix ->poll() return value
     - Bluetooth: L2CAP: Fix not checking l2cap_chan security level
     - bridge: netfilter: Fix forwarding of fragmented packets
     - ice: fix vf->num_mac count with port representors
     - [arm64,armhf] net: dwmac-sun8i: Use parsed internal PHY address instead of
       1
     - net: lan743x: Restore SGMII CTRL register on resume
     - io_uring: fix overflow resched cqe reordering
     - sch_hfsc: Fix qlen accounting bug when using peek in hfsc_enqueue()
       (CVE-2025-38000)
     - net/tipc: fix slab-use-after-free Read in tipc_aead_encrypt_done
     - crypto: algif_hash - fix double free in hash_accept
     - padata: do not leak refcount in reorder_work
     - can: slcan: allow reception of short error messages
     - can: bcm: add locking for bcm_op runtime updates
     - can: bcm: add missing rcu read protection for procfs content
     - ALSA: pcm: Fix race of buffer access at PCM OSS layer
     - ALSA: hda/realtek: Add quirk for Lenovo Yoga Pro 7 14ASP10
     - llc: fix data loss when reading from a socket in llc_ui_recvmsg()
     - [x86] platform/x86: dell-wmi-sysman: Avoid buffer overflow in
       current_password_store()
     - drm/edid: fixed the bug that hdr metadata was not reset
     - smb: client: Fix use-after-free in cifs_fill_dirent
     - smb: client: Reset all search buffer pointers when releasing buffer
     - Revert "drm/amd: Keep display off while going into S4" (Closes: #1107511)
     - memcg: always call cond_resched() after fn()
     - mm/page_alloc.c: avoid infinite retries caused by cpuset race
     - Revert "arm64: dts: allwinner: h6: Use RSB for AXP805 PMIC connection"
     - ksmbd: fix stream write failure
     - [arm64] spi: spi-fsl-dspi: restrict register range for regmap access
     - [arm64] spi: spi-fsl-dspi: Halt the module after a new message transfer
     - [arm64] spi: spi-fsl-dspi: Reset SR flags before sending a new message
     - kbuild: Disable -Wdefault-const-init-unsafe
     - serial: sh-sci: Save and restore more registers
     - [arm64,armhf] pinctrl: tegra: Fix off by one in tegra_pinctrl_get_group()
     - [x86] mm/init: Handle the special case of device private pages in
       add_pages(), to not increase max_pfn and trigger dma_addressing_limited()
       bounce buffers bounce buffers
     - [amd64] dmaengine: idxd: Fix passing freed memory in idxd_cdev_open()
     - hrtimers: Force migrate away hrtimers queued after CPUHP_AP_HRTIMERS_DYING
       (CVE-2025-21816)
     - btrfs: check folio mapping after unlock in relocate_one_folio()
       (CVE-2024-56758)
     - af_unix: Kconfig: make CONFIG_UNIX bool
     - af_unix: Return struct unix_sock from unix_get_socket().
     - af_unix: Run GC on only one CPU.
     - af_unix: Try to run GC async.
     - af_unix: Replace BUG_ON() with WARN_ON_ONCE().
     - af_unix: Remove io_uring code for GC.
     - af_unix: Remove CONFIG_UNIX_SCM.
     - af_unix: Allocate struct unix_vertex for each inflight AF_UNIX fd.
     - af_unix: Allocate struct unix_edge for each inflight AF_UNIX fd.
     - af_unix: Link struct unix_edge when queuing skb.
     - af_unix: Bulk update unix_tot_inflight/unix_inflight when queuing skb.
     - af_unix: Iterate all vertices by DFS.
     - af_unix: Detect Strongly Connected Components.
     - af_unix: Save listener for embryo socket.
     - af_unix: Fix up unix_edge.successor for embryo socket.
     - af_unix: Save O(n) setup of Tarjan's algo.
     - af_unix: Skip GC if no cycle exists.
     - af_unix: Avoid Tarjan's algorithm if unnecessary.
     - af_unix: Assign a unique index to SCC.
     - af_unix: Detect dead SCC.
     - af_unix: Replace garbage collection algorithm.
     - af_unix: Remove lock dance in unix_peek_fds().
     - af_unix: Try not to hold unix_gc_lock during accept().
     - af_unix: Don't access successor in unix_del_edges() during GC.
     - af_unix: Add dead flag to struct scm_fp_list.
     - af_unix: Fix garbage collection of embryos carrying OOB with SCM_RIGHTS
     - af_unix: Fix uninit-value in __unix_walk_scc()
     - [arm64] dts: qcom: sm8350: Fix typo in pil_camera_mem node
     - net_sched: hfsc: Address reentrant enqueue adding class to eltree twice
     - [arm64] perf/arm-cmn: Fix REQ2/SNP2 mixup
     - [arm64] perf/arm-cmn: Initialise cmn->cpu earlier
     - coredump: fix error handling for replace_fd()
     - pid: add pidfd_prepare()
     - fork: use pidfd_prepare()
     - coredump: hand a pidfd to the usermode coredump helper
     - HID: quirks: Add ADATA XPG alpha wireless mouse support
     - nfs: don't share pNFS DS connections between net namespaces
     - [x86] platform/x86: thinkpad_acpi: Support also NEC Lavie X1475JAS
     - [armhf] spi: spi-sun4i: fix early activation
     - nvme-pci: add NVME_QUIRK_NO_DEEPEST_PS quirk for SOLIDIGM P44 Pro
     - NFS: Avoid flushing data while holding directory locks in nfs_rename()
     - [x86] platform/x86: fujitsu-laptop: Support Lifebook S2110 hotkeys
     - [x86] platform/x86: thinkpad_acpi: Ignore battery threshold change event
       notification
     - [arm64] net: ethernet: ti: am65-cpsw: Lower random mac address error print
       to info
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.142
     - mm/uffd: fix vma operation where start addr cuts part of vma
     - tracing: Fix compilation warning on arm32
     - [arm64] pinctrl: armada-37xx: use correct OUTPUT_VAL register for GPIOs >
       31
     - [arm64] pinctrl: armada-37xx: set GPIO output value before setting
       direction
     - acpi-cpufreq: Fix nominal_freq units to KHz in get_max_boost_ratio()
     - rtc: Make rtc_time64_to_tm() support dates before 1970
     - rtc: Fix offset calculation for .start_secs < 0
     - usb: quirks: Add NO_LPM quirk for SanDisk Extreme 55AE
     - usb: storage: Ignore UAS driver for SanDisk 3.2 Gen2 storage device
     - USB: serial: pl2303: add new chip PL2303GC-Q20 and PL2303GT-2AB
     - Bluetooth: hci_qca: move the SoC type check to the right place
     - usb: usbtmc: Fix timeout value in get_stb
     - [x86] thunderbolt: Do not double dequeue a configuration request
     - gfs2: gfs2_create_inode error handling fix
     - perf/core: Fix broken throttling when max_samples_per_tick=1
     - [arm64] crypto: sun8i-ce-cipher - fix error handling in
       sun8i_ce_cipher_prepare()
     - [powerpc*] crash: Fix non-smp kexec preparation
     - [x86] cpu: Sanitize CPUID(0x80000000) output
     - [arm*] crypto: marvell/cesa - Handle zero-length skcipher requests
     - [arm*] crypto: marvell/cesa - Avoid empty transfer descriptor
     - crypto: lrw - Only add ecb if it is not already there
     - crypto: xts - Only add ecb if it is not already there
     - [amd64] EDAC/skx_common: Fix general protection fault
     - power: reset: at91-reset: Optimize at91_reset()
     - PM: wakeup: Delete space in the end of string shown by pm_show_wakelocks()
     - [x86] mtrr: Check if fixed-range MTRRs exist in mtrr_save_fixed_ranges()
     - ACPI: OSI: Stop advertising support for "3.0 _SCP Extensions"
     - drm/vmwgfx: Add seqno waiter for sync_files
     - drm/amd/pp: Fix potential NULL pointer dereference in
       atomctrl_initialize_mc_reg_table
     - [arm64] media: rkvdec: Fix frame size enumeration
     - [arm64] fpsimd: Discard stale CPU state when handling SME traps
     - [arm64] fpsimd: Fix merging of FPSIMD state during signal return
     - watchdog: exar: Shorten identity name to fit correctly
     - firmware: psci: Fix refcount leak in psci_dt_init
     - [arm64] Support ARM64_VA_BITS=52 when setting ARCH_MMAP_RND_BITS_MAX
     - [arm64,armhf] drm/tegra: rgb: Fix the unbound reference count
     - firmware: SDEI: Allow sdei initialization without ACPI_APEI_GHES
     - scsi: qedf: Use designated initializer for struct qed_fcoe_cb_ops
     - wifi: ath11k: fix node corruption in ar->arvifs list
     - IB/cm: use rwlock for MAD agent lock
     - bpf: fix ktls panic with sockmap
     - bpf, sockmap: fix duplicated data transmission
     - bpf, sockmap: Fix panic when calling skb_linearize
     - f2fs: fix to do sanity check on sbi->total_valid_block_count
     - net: ncsi: Fix GCPS 64-bit member variables
     - libbpf: Fix buffer overflow in bpf_object__init_prog
     - wifi: rtw88: do not ignore hardware read error during DPK
     - [arm64] RDMA/hns: Include hnae3.h in hns_roce_hw_v2.h
     - [arm64] scsi: hisi_sas: Call I_T_nexus after soft reset for SATA disk
     - iommu: Protect against overflow in iommu_pgsize()
     - f2fs: clean up w/ fscrypt_is_bounce_page()
     - f2fs: fix to detect gcing page in f2fs_is_cp_guaranteed()
     - libbpf: Use proper errno value in linker
     - netfilter: bridge: Move specific fragmented packet to slow_path instead of
       dropping it
     - netfilter: nft_quota: match correctly when the quota just depleted
     - RDMA/mlx5: Fix error flow upon firmware failure for RQ destruction
     - bpf: Fix uninitialized values in BPF_{CORE,PROBE}_READ
     - [arm64,armhf] clk: bcm: rpi: Add NULL check in raspberrypi_clk_register()
     - efi/libstub: Describe missing 'out' parameter in efi_load_initrd
     - tracing: Rename event_trigger_alloc() to trigger_data_alloc()
     - tracing: Fix error handling in event_trigger_parse()
     - libbpf: Use proper errno value in nlattr
     - bpf: Fix WARN() in get_bpf_raw_tp_regs
     - [s390x] bpf: Store backchain even for leaf progs
     - wifi: rtw88: fix the 'para' buffer size to avoid reading out of bounds
     - iommu: remove duplicate selection of DMAR_TABLE
     - wifi: ath9k_htc: Abort software beacon handling if disabled
     - kernfs: Relax constraint in draining guard
     - netfilter: nf_tables: nft_fib_ipv6: fix VRF ipv4/ipv6 result discrepancy
     - vfio/type1: Fix error unwind in migration dirty bitmap allocation
     - Bluetooth: MGMT: iterate over mesh commands in mgmt_mesh_foreach()
     - bpf, sockmap: Avoid using sk_socket after free when sending
     - netfilter: nft_tunnel: fix geneve_opt dump
     - net: usb: aqc111: fix error handling of usbnet read calls
     - RDMA/cma: Fix hang when cma_netevent_callback fails to queue_work
     - bpf: Avoid __bpf_prog_ret0_warn when jit fails
     - net: lan743x: rename lan743x_reset_phy to lan743x_hw_reset_phy
     - net: phy: mscc: Fix memory leak when using one step timestamping
     - calipso: Don't call calipso functions for AF_INET sk.
     - net: openvswitch: Fix the dead loop of MPLS parse
     - net: phy: mscc: Stop clearing the the UDPv4 checksum for L2 frames
     - f2fs: use d_inode(dentry) cleanup dentry->d_inode
     - f2fs: fix to correct check conditions in f2fs_cross_rename
     - [arm64] dts: qcom: sm8250: Fix CPU7 opp table
     - [arm64] dts: mediatek: mt8195: Reparent vdec1/2 and venc1 power domains
     - [arm64] dts: qcom: sdm660-xiaomi-lavender: Add missing SD card detect GPIO
     - [arm64] dts: imx8mm-beacon: Fix RTC capacitive load
     - [arm64] dts: imx8mn-beacon: Fix RTC capacitive load
     - [arm64] dts: mt6359: Add missing 'compatible' property to regulators node
     - [arm64] dts: qcom: sdm660-lavender: Add missing USB phy supply
     - [arm64] dts: qcom: sda660-ifc6560: Fix dt-validate warning
     - Squashfs: check return result of sb_min_blocksize
     - ocfs2: fix possible memory leak in ocfs2_finish_quota_recovery
     - nilfs2: add pointer check for nilfs_direct_propagate()
     - nilfs2: do not propagate ENOENT error from nilfs_btree_propagate()
     - bus: fsl-mc: fix double-free on mc_dev
     - dt-bindings: vendor-prefixes: Add Liontron name
     - [arm64] dts: rockchip: disable unrouted USB controllers and PHY on RK3399
       Puma with Haikou
     - [armhf] soc: aspeed: lpc: Fix impossible judgment condition
     - [armhf] soc: aspeed: Add NULL check in aspeed_lpc_enable_snoop()
     - fbdev: core: fbcvt: avoid division by 0 in fb_cvt_hperiod()
     - randstruct: gcc-plugin: Remove bogus void member
     - randstruct: gcc-plugin: Fix attribute addition
     - perf build: Warn when libdebuginfod devel files are not available
     - perf ui browser hists: Set actions->thread before calling do_zoom_thread()
     - dm: don't change md if dm_table_set_restrictions() fails
     - dm: free table mempools if not used in __bind
     - backlight: pm8941: Add NULL check in wled_configure()
     - mtd: nand: ecc-mxic: Fix use of uninitialized variable ret
     - hwmon: (asus-ec-sensors) check sensor index in read_string()
     - perf intel-pt: Fix PEBS-via-PT data_src
     - perf scripts python: exported-sql-viewer.py: Fix pattern matching with
       Python 3
     - remoteproc: qcom_wcnss_iris: Add missing put_device() on error in probe
     - remoteproc: k3-r5: Drop check performed in
       k3_r5_rproc_{mbox_callback/kick}
     - perf tests switch-tracking: Fix timestamp comparison
     - perf record: Fix incorrect --user-regs comments
     - nfs: clear SB_RDONLY before getting superblock
     - nfs: ignore SB_RDONLY when remounting nfs
     - [arm64] PCI: cadence: Fix runtime atomic count underflow
     - [arm64] phy: qcom-qmp-usb: Fix an NULL vs IS_ERR() bug
     - [arm64] dmaengine: ti: Add NULL check in udma_probe()
     - PCI/DPC: Initialize aer_err_info before using it
     - usb: renesas_usbhs: Reorder clock handling and power management in probe
     - serial: Fix potential null-ptr-deref in mlb_usio_probe()
     - counter: interrupt-cnt: Protect enable/disable OPs with mutex
     - coresight: prevent deactivate active config while enabling the config
     - vt: remove VT_RESIZE and VT_RESIZEX from vt_compat_ioctl()
     - net: stmmac: platform: guarantee uniqueness of bus_id
     - gve: Fix RX_BUFFERS_POSTED stat to report per-queue fill_cnt
     - net: tipc: fix refcount warning in tipc_aead_encrypt
     - net/mlx4_en: Prevent potential integer overflow calculating Hz
     - Bluetooth: L2CAP: Fix not responding with L2CAP_CR_LE_ENCRYPTION
     - ice: create new Tx scheduler nodes for new queues only
     - ice: fix rebuilding the Tx scheduler tree for large queue counts
     - [armhf] net: dsa: tag_brcm: legacy: fix pskb_may_pull length
     - net: stmmac: make sure that ptp_rate is not 0 before configuring
       timestamping
     - net: fix udp gso skb_segment after pull from frag_list
     - vmxnet3: correctly report gso type for UDP tunnels
     - PM: sleep: Fix power.is_suspended cleanup for direct-complete devices
     - gve: add missing NULL check for gve_alloc_pending_packet() in TX DQO
     - netfilter: nf_set_pipapo_avx2: fix initial map fill
     - wireguard: device: enable threaded NAPI
     - seg6: Fix validation of nexthop addresses
     - fix propagation graph breakage by MOVE_MOUNT_SET_GROUP move_mount(2)
     - do_change_type(): refuse to operate on unmounted/not ours mounts
     - xfs: fix interval filtering in multi-step fsmap queries
     - xfs: fix integer overflows in the fsmap rtbitmap and logdev backends
     - xfs: fix getfsmap reporting past the last rt extent
     - xfs: clean up the rtbitmap fsmap backend
     - xfs: fix logdev fsmap query result filtering
     - xfs: validate fsmap offsets specified in the query keys
     - xfs: fix xfs_btree_query_range callers to initialize btree rec fully
     - xfs: fix an agbno overflow in __xfs_getfsmap_datadev
     - xfs: fix the contact address for the sysfs ABI documentation
     - xfs: verify buffer, inode, and dquot items every tx commit
     - xfs: use consistent uid/gid when grabbing dquots for inodes
     - xfs: declare xfs_file.c symbols in xfs_file.h
     - xfs: create a new helper to return a file's allocation unit
     - xfs: Fix xfs_flush_unmap_range() range for RT
     - xfs: Fix xfs_prepare_shift() range for RT
     - xfs: don't walk off the end of a directory data block (CVE-2024-41013)
     - xfs: remove unused parameter in macro XFS_DQUOT_LOGRES
     - xfs: attr forks require attr, not attr2
     - xfs: conditionally allow FS_XFLAG_REALTIME changes if S_DAX is set
     - xfs: Fix the owner setting issue for rmap query in xfs fsmap
     - xfs: use XFS_BUF_DADDR_NULL for daddrs in getfsmap code
     - xfs: take m_growlock when running growfsrt
     - xfs: reset rootdir extent size hint after growfsrt
     - pmdomain: core: Fix error checking in genpd_dev_pm_attach_by_id()
     - Input: synaptics-rmi - fix crash with unsupported versions of F34
     - [arm64] serial: sh-sci: Check if TX data was written to device in
       .tx_empty()
     - [arm64] serial: sh-sci: Move runtime PM enable to sci_probe_single()
     - [arm64] serial: sh-sci: Clean sci_ports[0] after at earlycon exit
     - scsi: core: ufs: Fix a hang in the error handler
     - Bluetooth: hci_core: fix list_for_each_entry_rcu usage
     - Bluetooth: MGMT: Fix UAF on mgmt_remove_adv_monitor_complete
     - ptp: remove ptp->n_vclocks check logic in ptp_vclock_in_use()
     - ath10k: snoc: fix unbalanced IRQ enable in crash recovery
     - wifi: ath11k: remove unused function ath11k_tm_event_wmi()
     - wifi: ath11k: fix soc_dp_stats debugfs file permission
     - wifi: ath11k: convert timeouts to secs_to_jiffies()
     - wifi: ath11k: avoid burning CPU in ath11k_debugfs_fw_stats_request()
     - wifi: ath11k: don't use static variables in
       ath11k_debugfs_fw_stats_process()
     - wifi: ath11k: don't wait when there is no vdev started
     - wifi: ath11k: validate ath11k_crypto_mode on top of
       ath11k_core_qmi_firmware_ready
     - regulator: max20086: Fix refcount leak in max20086_parse_regulators_dt()
     - pinctrl: qcom: pinctrl-qcm2290: Add missing pins
     - scsi: iscsi: Fix incorrect error path labels for flashnode operations
     - net_sched: sch_sfq: fix a potential crash on gso_skb handling
     - [powerpc*] powernv/memtrace: Fix out of bounds issue in memtrace mmap
       (CVE-2025-38088)
     - [powerpc*] vas: Return -EINVAL if the offset is non-zero in mmap()
     - [arm64] drm/meson: use unsigned long long / Hz for frequency types
     - [arm64] drm/meson: fix debug log statement when setting the HDMI clocks
     - [arm64] drm/meson: use vclk_freq instead of pixel_freq in debug print
     - [arm64] drm/meson: fix more rounding issues with 59.94Hz modes
     - i40e: return false from i40e_reset_vf if reset is in progress
     - i40e: retry VFLR handling if there is ongoing VF reset
     - ACPI: CPPC: Fix NULL pointer dereference when nosmp is used
     - net: Fix TOCTOU issue in sk_is_readable()
     - macsec: MACsec SCI assignment for ES = 0
     - net: mdio: C22 is now optional, EOPNOTSUPP if not provided
     - net/mdiobus: Fix potential out-of-bounds read/write access
     - Bluetooth: Fix NULL pointer deference on eir_get_service_data
     - Bluetooth: hci_sync: Fix broadcast/PA when using an existing instance
     - Bluetooth: MGMT: Fix sparse errors
     - net/mlx5: Ensure fw pages are always allocated on same NUMA
     - net/mlx5: Fix return value when searching for existing flow group
     - net/mlx5e: Fix leak of Geneve TLV option object
     - net_sched: prio: fix a race in prio_tune() (CVE-2025-38083)
     - net_sched: red: fix a race in __red_change()
     - net_sched: tbf: fix a race in tbf_change()
     - net_sched: ets: fix a race in ets_qdisc_change()
     - fs/filesystems: Fix potential unsigned integer underflow in fs_name()
     - nvmet-fcloop: access fcpreq only when holding reqlock
     - perf: Ensure bpf_perf_link path is properly serialized
     - bio: Fix bio_first_folio() for SPARSEMEM without VMEMMAP
     - tools/resolve_btfids: Fix build when cross compiling kernel with clang.
     - ALSA: usb-audio: Add implicit feedback quirk for RODE AI-1
     - HID: usbhid: Eliminate recurrent out-of-bounds bug in usbhid_parse()
     - Revert "io_uring: ensure deferred completions are posted for multishot"
     - posix-cpu-timers: fix race between handle_posix_cpu_timers() and
       posix_cpu_timer_del()
     - drm/amd/display: Do not add '-mhard-float' to dml_ccflags for clang
     - kbuild: Add KBUILD_CPPFLAGS to as-option invocation
     - usb: usbtmc: Fix read_stb function and get_stb ioctl
     - VMCI: fix race between vmci_host_setup_notify and vmci_ctx_unset_notify
     - usb: Flush altsetting 0 endpoints before reinitializating them after
       reset.
     - usb: typec: tcpm/tcpci_maxim: Fix bounds check in process_rx()
     - [arm64] xen/arm: call uaccess_ttbr0_enable for dm_op hypercall
     - [x86] iopl: Cure TIF_IO_BITMAP inconsistencies
     - calipso: unlock rcu before returning -EAFNOSUPPORT
     - net: usb: aqc111: debug info before sanitation
     - [arm64] drm/meson: Use 1000ULL when operating with mode->clock
     - configfs: Do not override creating attribute file failure in
       populate_attrs()
     - crypto: marvell/cesa - Do not chain submitted requests
     - gfs2: move msleep to sleepable context
     - [arm64,armhf] ASoC: meson: meson-card-utils: use of_property_present() for
       DT parsing
     - io_uring: account drain memory to cgroup
     - [powerpc*] pseries/msi: Avoid reading PCI device registers in reduced
       power states
     - regulator: max20086: Fix MAX200086 chip id
     - regulator: max20086: Change enable gpio to optional
     - net/mlx5_core: Add error handling inmlx5_query_nic_vport_qkey_viol_cntr()
     - net/mlx5: Add error handling in mlx5_query_nic_vport_node_guid()
     - wifi: p54: prevent buffer-overflow in p54_rx_eeprom_readback()
     - wifi: ath11k: fix rx completion meta data corruption
     - wifi: ath11k: fix ring-buffer corruption
     - nfsd: nfsd4_spo_must_allow() must check this is a v4 compound request
     - nfsd: Initialize ssc before laundromat_work to prevent NULL dereference
     - jbd2: fix data-race and null-ptr-deref in jbd2_journal_dirty_metadata()
     - wifi: rtlwifi: disable ASPM for RTL8723BE with subsystem ID 11ad:1723
     - media: cxusb: no longer judge rbuf when the write fails
     - media: gspca: Add error handling for stv06xx_read_sensor()
     - media: omap3isp: use sgtable-based scatterlist wrappers
     - media: v4l2-dev: fix error handling in __video_register_device()
     - media: videobuf2: use sgtable-based scatterlist wrappers
     - media: vidtv: Terminating the subsequent process of initialization failure
     - media: vivid: Change the siize of the composing
     - media: uvcvideo: Return the number of processed controls
     - media: uvcvideo: Send control events for partial succeeds
     - media: uvcvideo: Fix deferred probing error
     - [armel,armhf] 9447/1: arm/memremap: fix arch_memremap_can_ram_remap()
     - bus: mhi: host: Fix conflict between power_up and SYSERR
     - can: tcan4x5x: fix power regulator retrieval during probe
     - ceph: set superblock s_magic for IMA fsmagic matching
     - cgroup,freezer: fix incomplete freezing when attaching tasks
     - ata: pata_via: Force PIO for ATAPI devices on VT6415/VT6330
     - bus: fsl-mc: do not add a device-link for the UAPI used DPMCP device
     - bus: fsl-mc: fix GET/SET_TAILDROP command ids
     - ext4: inline: fix len overflow in ext4_prepare_inline_data
     - ext4: fix calculation of credits for extent tree modification
     - ext4: factor out ext4_get_maxbytes()
     - ext4: ensure i_size is smaller than maxbytes
     - Input: ims-pcu - check record size in ims_pcu_flash_firmware()
     - Input: gpio-keys - fix possible concurrent access in gpio_keys_irq_timer()
     - f2fs: prevent kernel warning due to negative i_nlink from corrupted image
     - f2fs: fix to do sanity check on sit_bitmap_size
     - NFC: nci: uart: Set tty->disc_data only in success path
     - net: ftgmac100: select FIXED_PHY
     - fbdev: Fix fb_set_var to prevent null-ptr-deref in fb_videomode_to_var
     - vgacon: Add check for vc_origin address range in vgacon_scroll()
     - [arm64] clk: meson-g12a: add missing fclk_div2 to spicc
     - ipc: fix to protect IPCS lookups using RCU
     - RDMA/iwcm: Fix use-after-free of work objects after cm_id destruction
     - mm: fix ratelimit_pages update error in dirty_ratio_handler()
     - [armhf] mtd: rawnand: sunxi: Add randomizer configuration in
       sunxi_nfc_hw_ecc_write_chunk
     - [armhf] mtd: nand: sunxi: Add randomizer configuration before randomizer
       enable
     - [x86] KVM: SVM: Clear current_vmcb during vCPU free for all *possible*
       CPUs
     - dm-mirror: fix a tiny race condition
     - ftrace: Fix UAF when lookup kallsym after ftrace disabled
     - net: ch9200: fix uninitialised access during mii_nway_restart
       (CVE-2025-38086)
     - [s390x] KVM: s390: rename PROT_NONE to PROT_TYPE_DUMMY
     - staging: iio: ad5933: Correct settling cycles encoding per datasheet
     - regulator: max14577: Add error check for max14577_read_reg()
     - remoteproc: core: Cleanup acquired resources when rproc_handle_resources()
       fails in rproc_attach()
     - remoteproc: core: Release rproc->clean_table after rproc_attach() fails
     - cifs: reset connections for all channels when reconnect requested
     - uio_hv_generic: Use correct size for interrupt and monitor pages
     - PCI: cadence-ep: Correct PBA offset in .set_msix() callback
     - PCI: Add ACS quirk for Loongson PCIe
     - PCI: Fix lock symmetry in pci_slot_unlock()
     - PCI: dw-rockchip: Fix PHY function call sequence in
       rockchip_pcie_phy_deinit()
     - iio: accel: fxls8962af: Fix temperature scan element sign
     - iio: imu: inv_icm42600: Fix temperature calculation
     - iio: adc: ad7606_spi: fix reg write value mask
     - ACPICA: fix acpi operand cache leak in dswstate.c
     - [x86] ASoC: amd: yc: Add quirk for Lenovo Yoga Pro 7 14ASP9
     - clocksource: Fix the CPUs' choice in the watchdog per CPU verification
     - mmc: Add quirk to disable DDR50 tuning
     - ACPICA: Avoid sequence overread in call to strncmp()
     - ASoC: tas2770: Power cycle amp on ISENSE/VSENSE change
     - ACPI: bus: Bail out if acpi_kobj registration fails
     - ACPICA: fix acpi parse and parseext cache leaks
     - power: supply: bq27xxx: Retrieve again when busy
     - ACPICA: utilities: Fix overflow check in vsnprintf()
     - PM: runtime: fix denying of auto suspend in pm_suspend_timer_fn()
     - ACPI: battery: negate current when discharging
     - net: macb: Check return value of dma_set_mask_and_coherent()
     - net: lan743x: Modify the EEPROM and OTP size for PCI1xxxx devices
     - tipc: use kfree_sensitive() for aead cleanup
     - bpf: Check rcu_read_lock_trace_held() in bpf_map_lookup_percpu_elem()
     - i2c: designware: Invoke runtime suspend on quick slave re-registration
     - emulex/benet: correct command version selection in be_cmd_get_stats()
     - wifi: mt76: mt76x2: Add support for LiteOn WN4516R,WN4519R
     - wifi: mt76: mt7921: add 160 MHz AP for mt7922 device
     - sctp: Do not wake readers in __sctp_write_space()
     - cpufreq: scmi: Skip SCMI devices that aren't used by the CPUs
     - i2c: tegra: check msg length in SMBUS block read
     - i2c: npcm: Add clock toggle recovery
     - net: dlink: add synchronization for stats update
     - wifi: ath11k: Fix QMI memory reuse logic
     - tcp: always seek for minimal rtt in tcp_rcv_rtt_update()
     - tcp: fix initial tp->rcvq_space.space value for passive TS enabled flows
     - [x86] sgx: Prevent attempts to reclaim poisoned pages
     - ipv4/route: Use this_cpu_inc() for stats on PREEMPT_RT
     - net: atlantic: generate software timestamp just before the doorbell
     - [arm64] pinctrl: armada-37xx: propagate error from
       armada_37xx_pmx_set_by_name()
     - [arm64] pinctrl: armada-37xx: propagate error from
       armada_37xx_gpio_get_direction()
     - [arm64] pinctrl: armada-37xx: propagate error from
       armada_37xx_pmx_gpio_set_direction()
     - [arm64] pinctrl: armada-37xx: propagate error from armada_37xx_gpio_get()
     - net: mlx4: add SOF_TIMESTAMPING_TX_SOFTWARE flag when getting ts info
     - net: vertexcom: mse102x: Return code for mse102x_rx_pkt_spi
     - wireless: purelifi: plfxlc: fix memory leak in plfxlc_usb_wreq_asyn()
     - wifi: mac80211: do not offer a mesh path if forwarding is disabled
     - clk: rockchip: rk3036: mark ddrphy as critical
     - libbpf: Add identical pointer detection to btf_dedup_is_equiv()
     - scsi: lpfc: Fix lpfc_check_sli_ndlp() handling for GEN_REQUEST64 commands
     - [amd64] iommu/amd: Ensure GA log notifier callbacks finish running before
       module unload
     - wifi: mac80211_hwsim: Prevent tsf from setting if beacon is disabled
     - net: bridge: mcast: update multicast contex when vlan state is changed
     - net: bridge: mcast: re-implement br_multicast_{enable, disable}_port
       functions
     - vxlan: Do not treat dst cache initialization errors as fatal
     - software node: Correct a OOB check in software_node_get_reference_args()
     - pinctrl: mcp23s08: Reset all pins to input at probe
     - scsi: lpfc: Use memcpy() for BIOS version
     - sock: Correct error checking condition for (assign|release)_proto_idx()
     - i40e: fix MMIO write access to an invalid page in i40e_clear_hw
     - ice: fix check for existing switch rule
     - bpf, sockmap: Fix data lost during EAGAIN retries
     - net: ethernet: cortina: Use TOE/TSO on all TCP
     - fbcon: Make sure modelist not set on unregistered console
     - watchdog: da9052_wdt: respect TWDMIN
     - bus: fsl-mc: increase MC_CMD_COMPLETION_TIMEOUT_MS value
     - [armhf] OMAP2+: Fix l4ls clk domain handling in STANDBY
     - Revert "bus: ti-sysc: Probe for l4_wkup and l4_cfg interconnect devices
       first"
     - [x86] platform/x86: dell_rbu: Fix list usage
     - [x86] platform/x86: dell_rbu: Stop overwriting data buffer
     - [powerpc*] eeh: Fix missing PE bridge reconfiguration during VFIO EEH
       recovery
     - Revert "x86/bugs: Make spectre user default depend on
       MITIGATION_SPECTRE_V2" on v6.6 and older
     - drivers/rapidio/rio_cm.c: prevent possible heap overwrite (CVE-2025-38090)
     - jffs2: check that raw node were preallocated before writing summary
     - jffs2: check jffs2_prealloc_raw_node_refs() result in few other places
     - smb: improve directory cache reuse for readdir operations
     - scsi: storvsc: Increase the timeouts to storvsc_timeout
     - scsi: s390: zfcp: Ensure synchronous unit_add
     - net_sched: sch_sfq: reject invalid perturb period
     - udmabuf: use sgtable-based scatterlist wrappers
     - ksmbd: fix null pointer dereference in destroy_previous_session
     - selinux: fix selinux_xfrm_alloc_user() to set correct ctx_len
     - atm: Revert atm_account_tx() if copy_from_iter_full() fails.
     - Input: sparcspkr - avoid unannotated fall-through
     - wifi: cfg80211: init wiphy_work before allocating rfkill fails
       (CVE-2025-22119)
     - ALSA: usb-audio: Rename ALSA kcontrol PCM and PCM1 for the KTMicro sound
       card
     - ALSA: hda/intel: Add Thinkpad E15 to PM deny list
     - ALSA: hda/realtek: enable headset mic on Latitude 5420 Rugged
     - mm/hugetlb: unshare page tables during VMA split, not before
       (CVE-2025-38084)
     - mm: hugetlb: independent PMD page table shared count (CVE-2024-57883)
     - mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race
     - mm/huge_memory: fix dereferencing invalid pmd migration entry
       (CVE-2025-37958)
     - net: Fix checksum update for ILA adj-transport
     - bpf: Fix L4 csum update on IPv6 in CHECKSUM_COMPLETE
     - erofs: remove unused trace event erofs_destroy_inode
     - [arm64] drm/msm/disp: Correct porch timing for SDM845
     - [arm64] drm/msm/dsi/dsi_phy_10nm: Fix missing initial VCO rate
     - ionic: Prevent driver/fw getting out of sync on devcmd(s)
     - drm/nouveau/bl: increase buffer size to avoid truncate warning
     - hwmon: (occ) Rework attribute registration for stack usage
     - hwmon: (occ) fix unaligned accesses
     - pldmfw: Select CRC32 when PLDMFW is selected
     - aoe: clean device rq_list in aoedev_downdev()
     - net: ice: Perform accurate aRFS flow match
     - ptp: fix breakage after ptp_vclock_in_use() rework
     - ptp: allow reading of currently dialed frequency to succeed on
       free-running clocks
     - wifi: carl9170: do not ping device which has failed to load firmware
     - mpls: Use rcu_dereference_rtnl() in mpls_route_input_rcu().
     - atm: atmtcp: Free invalid length skb in atmtcp_c_send().
     - tcp: fix tcp_packet_delayed() for tcp_is_non_sack_preventing_reopen()
       behavior
     - tipc: fix null-ptr-deref when acquiring remote ip of ethernet bearer
     - tcp: fix passive TFO socket having invalid NAPI ID
     - net: microchip: lan743x: Reduce PTP timeout on HW failure
     - net: lan743x: fix potential out-of-bounds write in
       lan743x_ptp_io_event_clock_get()
     - calipso: Fix null-ptr-deref in calipso_req_{set,del}attr().
     - net: atm: add lec_mutex
     - net: atm: fix /proc/net/atm/lec handling
     - dt-bindings: i2c: nvidia,tegra20-i2c: Specify the required properties
     - [x86] platform/x86: ideapad-laptop: add missing Ideapad Pro 5 fn keys
     - [arm64] dts: ti: k3-j721e-sk: Add DT nodes for power regulators
     - serial: sh-sci: Increment the runtime usage counter for the earlycon
       device
     - Revert "cpufreq: tegra186: Share policy per cluster"
     - smb: client: fix first command failure during re-negotiation
     - [s390x] pci: Fix __pcilg_mio_inuser() inline assembly
     - perf: Fix sample vs do_exit()
     - [arm64] ptrace: Fix stack-out-of-bounds read in
       regs_get_kernel_stack_nth()
     - scsi: elx: efct: Fix memory leak in efct_hw_parse_filter()
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.143
     - cifs: Correctly set SMB1 SessionKey field in Session Setup Request
     - cifs: Fix cifs_query_path_info() for Windows NT servers
     - NFSv4: Always set NLINK even if the server doesn't support it
     - NFSv4.2: fix listxattr to return selinux security label
     - [arm*] mailbox: Not protect module_put with spin_lock_irqsave
     - leds: multicolor: Fix intensity setting while SW blinking
     - NFSv4: xattr handlers should check for absent nfs filehandles
     - ksmbd: allow a filename to contain special characters on SMB3.1.1 posix
       extension
     - md/md-bitmap: fix dm-raid max_write_behind setting
     - amd/amdkfd: fix a kfd_process ref leak
     - bcache: fix NULL pointer in cache_set_flush()
     - iio: pressure: zpa2326: Use aligned_s64 for the timestamp
     - [arm64] coresight: Only check bottom two claim bits
     - [arm64,armhf] usb: dwc2: also exit clock_gating when stopping udc while
       suspended
     - iio: adc: ad_sigma_delta: Fix use of uninitialized status_pos
     - usb: potential integer overflow in usbg_make_tpg()
     - usb: common: usb-conn-gpio: use a unique name for usb connector device
     - usb: Add checks for snprintf() calls in usb_alloc_dev()
     - usb: cdc-wdm: avoid setting WDM_READ for ZLP-s
     - usb: typec: displayport: Receive DP Status Update NAK request exit dp
       altmode
     - usb: typec: mux: do not return on EOPNOTSUPP in {mux, switch}_set
     - ALSA: hda: Ignore unsol events for cards being shut down
     - ALSA: hda: Add new pci id for AMD GPU display HD audio controller
     - ALSA: usb-audio: Add a quirk for Lenovo Thinkpad Thunderbolt 3 dock
     - ceph: fix possible integer overflow in ceph_zero_objects()
     - ovl: Check for NULL d_inode() in ovl_dentry_upper()
     - btrfs: handle csum tree error with rescue=ibadroots correctly
     - [x86] drm/i915/gem: Allow EXEC_CAPTURE on recoverable contexts on DG1
     - [x86] Revert "drm/i915/gem: Allow EXEC_CAPTURE on recoverable contexts on
       DG1"
     - fs/jfs: consolidate sanity checking in dbMount
     - jfs: validate AG parameters in dbMount() to prevent crashes
       (CVE-2025-38230)
     - media: imx-jpeg: Cleanup after an allocation error (CVE-2025-38225)
     - f2fs: don't over-report free space or inodes in statvfs
     - fbdev: Fix do_register_framebuffer to prevent null-ptr-deref in
       fb_videomode_to_var (CVE-2025-38215)
     - drivers: hv, hyperv_fb: Untangle and refactor Hyper-V panic notifiers
     - Drivers: hv: vmbus: Remove second mapping of VMBus monitor pages
     - Drivers: hv: move panic report code from vmbus to hv early init code
     - Drivers: hv: Change hv_free_hyperv_page() to take void * argument
     - Drivers: hv: vmbus: Leak pages if set_memory_encrypted() fails
       (CVE-2024-36913)
     - Drivers: hv: Allocate interrupt and monitor pages aligned to system page
       boundary
     - Drivers: hv: vmbus: Add utility function for querying ring size
     - uio_hv_generic: Query the ringbuffer size for device
     - uio_hv_generic: Align ring size to system page
     - vgacon: switch vgacon_scrolldelta() and vgacon_restore_screen()
     - vgacon: remove unneeded forward declarations
     - tty: vt: make init parameter of consw::con_init() a bool
     - tty: vt: sanitize arguments of consw::con_clear()
     - tty: vt: make consw::con_switch() return a bool
     - dummycon: Trigger redraw when switching consoles with deferred takeover
     - af_unix: Don't call skb_get() for OOB skb.
     - af_unix: Don't leave consecutive consumed OOB skbs.
     - i2c: tiny-usb: disable zero-length read messages
     - i2c: robotfuzz-osif: disable zero-length read messages
     - [x86] ASoC: amd: yc: Add DMI quirk for Lenovo IdeaPad Slim 5 15
     - [s390x] pkey: Prevent overflow in size calculation for memdup_user()
     - atm: clip: prevent NULL deref in clip_push()
     - ALSA: usb-audio: Fix out-of-bounds read in snd_usb_get_audioformat_uac3()
     - attach_recursive_mnt(): do not lock the covering tree when sliding
       something under it
     - libbpf: Fix null pointer dereference in btf_dump__free on allocation
       failure
     - wifi: mac80211: fix beacon interval calculation overflow
     - af_unix: Don't set -ECONNRESET for consumed OOB skb.
     - vsock/uapi: fix linux/vm_sockets.h userspace compilation errors
     - atm: Release atm_dev_mutex after removing procfs in atm_dev_deregister().
     - ALSA: hda/realtek: Fix built-in mic on ASUS VivoBook X507UAR
       (Closes: #1108069)
     - net: selftests: fix TCP packet checksum
     - [arm64] drm/bridge: ti-sn65dsi86: make use of debugfs_init callback
     - [arm64] drm/bridge: ti-sn65dsi86: Add HPD for DisplayPort connector type
     - staging: rtl8723bs: Avoid memset() in aes_cipher() and aes_decipher()
     - dt-bindings: serial: 8250: Make clocks and clock-frequency exclusive
     - serial: imx: Restore original RXTL for console to fix data loss
     - Bluetooth: L2CAP: Fix L2CAP MTU negotiation
     - dm-raid: fix variable in journal device check
     - btrfs: fix a race between renames and directory logging
     - btrfs: update superblock's device bytes_used when dropping chunk
     - HID: lenovo: Restrict F7/9/11 mode to compact keyboards only
     - HID: wacom: fix memory leak on kobject creation failure
     - HID: wacom: fix memory leak on sysfs attribute creation failure
     - HID: wacom: fix kobject reference count leak
     - scsi: megaraid_sas: Fix invalid node index
     - [arm64,armhf] drm/etnaviv: Protect the scheduler's pending list with its
       lock
     - [arm64,armhf] drm/tegra: Assign plane type before registration
     - [arm64,armhf] drm/tegra: Fix a possible null pointer dereference
     - drm/udl: Unregister device before cleaning up on disconnect
     - [arm64] drm/msm/gpu: Fix crash when throttling GPU immediately during boot
     - drm/amdkfd: Fix race in GWS queue scheduling
     - drm/amd/display: Add null pointer check for get_first_active_display()
     - drm/amdgpu: amdgpu_vram_mgr_new(): Clamp lpfn to total vram
     - drm/amdgpu: Add kicker device detection
     - ksmbd: Use unsafe_memcpy() for ntlm_negotiate
     - ksmbd: remove unsafe_memcpy use in session setup
     - fs: omfs: Use flexible-array member in struct omfs_extent
     - fbdev: hyperv_fb: Convert comma to semicolon
     - eth: bnxt: fix one of the W=1 warnings about fortified memcpy()
     - bnxt_en: Fix W=1 warning in bnxt_dcb.c from fortify memcpy()
     - bnxt_en: Fix W=stringop-overflow warning in bnxt_dcb.c
     - media: uvcvideo: Rollback non processed entities on error
     - [s390x] entry: Fix last breaking event handling in case of stack
       corruption
     - Kunit to check the longest symbol length
     - [x86] tools: Drop duplicate unlikely() definition in insn_decoder_test.c
     - Revert "ipv6: save dontfrag in cork"
     - nvme: always punt polled uring_cmd end_io work to task_work
     - io_uring/kbuf: account ring io_buffer_list memory
     - [arm64] firmware: arm_scmi: Add a common helper to check if a message is
       supported
     - [arm64] firmware: arm_scmi: Ensure that the message-id supports
       fastchannel
     - [arm64] Restrict pagetable teardown to avoid false warning
     - [arm*] 9354/1: ptrace: Use bitfield helpers
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.144
     - rtc: cmos: use spin_lock_irqsave in cmos_interrupt
     - [s390x] pci: Do not try re-enabling load/store if device is disabled
     - vsock/vmci: Clear the vmci transport packet properly when initializing it
     - mmc: sdhci: Add a helper function for dump register in dynamic debug mode
     - Revert "mmc: sdhci: Disable SD card clock before changing parameters"
       (Closes: #1108065)
     - Bluetooth: hci_sync: revert some mesh modifications
     - Bluetooth: MGMT: set_mesh: update LE scan interval and window
     - Bluetooth: MGMT: mesh_send: check instances prior disabling advertising
     - [arm64,armhf] regulator: gpio: Fix the out-of-bounds access to
       drvdata::gpiods
     - usb: typec: altmodes/displayport: do not index invalid pin_assignments
     - [arm64] dts: apple: t8103: Fix PCIe BCM4377 nodename
     - RDMA/mlx5: Initialize obj_event->obj_sub_list before xa_insert
     - nfs: Clean up /proc/net/rpc/nfs when nfs_fs_proc_net_init() fails.
     - NFSv4/pNFS: Fix a race to wake on NFS_LAYOUT_DRAIN
     - scsi: qla2xxx: Fix DMA mapping test in qla24xx_get_port_database()
     - scsi: qla4xxx: Fix missing DMA mapping error in qla4xxx_alloc_pdu()
     - scsi: ufs: core: Fix spelling of a sysfs attribute name
     - RDMA/mlx5: Fix CC counters query for MPV
     - Bluetooth: Prevent unintended pause by checking if advertising is active
     - btrfs: fix missing error handling when searching for inode refs during log
       replay
     - btrfs: fix iteration of extrefs during log replay
     - ethernet: atl1: Add missing DMA mapping error checks and count errors
     - [armhf] drm/exynos: fimd: Guard display clock control with runtime PM
       calls
     - [arm64] spi: spi-fsl-dspi: Clear completion counter before initiating
       transfer
     - [x86] platform/x86: dell-wmi-sysman: Fix WMI data block retrieval in sysfs
       callbacks
     - [x86] drm/i915/gt: Fix timeline left held on VMA alloc error
     - [x86] drm/i915/gsc: mei interrupt top half should be in irq disabled
       context
     - igc: disable L1.2 PCI-E link substate to avoid performance issue
     - [amd64,arm64] amd-xgbe: align CL37 AN sequence as per databook
     - enic: fix incorrect MTU comparison in enic_change_mtu()
     - rose: fix dangling neighbour pointers in rose_rt_device_down()
     - nui: Fix dma_mapping_error() check
     - net/sched: Always pass notifications when child class becomes empty
     - smb: client: fix race condition in negotiate timeout by using more precise
       timing
     - [arm64] drm/msm: Fix a fence leak in submit error path
     - [arm64] drm/msm: Fix another leak in the submit error path
     - ALSA: sb: Don't allow changing the DMA mode during operations
     - ALSA: sb: Force to disable DMAs once when DMA mode is changed
     - ata: libata-acpi: Do not assume 40 wire cable if no devices are enabled
     - ata: pata_cs5536: fix build on 32-bit UML
     - [powerpc*] Fix struct termio related ioctl macros
     - [x86] ASoC: amd: yc: update quirk data for HP Victus
     - scsi: target: Fix NULL pointer dereference in
       core_scsi3_decode_spec_i_port()
     - aoe: defer rexmit timer downdev work to workqueue
     - wifi: mac80211: drop invalid source address OCB frames
     - wifi: ath6kl: remove WARN on bad firmware input
     - ACPICA: Refuse to evaluate a method if arguments are missing
     - mtd: spinand: fix memory leak of ECC engine conf
     - rcu: Return early if callback is not specified
     - virtio-net: ensure the received length does not exceed allocated size
     - [arm64] drm/v3d: Disable interrupts before resetting the GPU
     - NFSv4/flexfiles: Fix handling of NFS level errors in I/O
     - btrfs: use btrfs_record_snapshot_destroy() during rmdir
     - [arm64] dpaa2-eth: fix xdp_rxq_info leak
     - [x86] platform/x86: think-lmi: Fix class device unregistration
     - [x86] platform/x86: dell-wmi-sysman: Fix class device unregistration
     - net: usb: lan78xx: fix WARN in __netif_napi_del_locked on disconnect
     - xhci: dbctty: disable ECHO flag by default
     - xhci: dbc: Flush queued requests before stopping dbc
     - xhci: Disable stream for xHC controller with XHCI_BROKEN_STREAMS
     - usb: cdnsp: do not disable slot for disabled slot
     - dma-buf: fix timeout handling in dma_resv_wait_timeout v2
     - i2c/designware: Fix an initialization issue
     - Logitech C-270 even more broken
     - [x86] platform/x86: think-lmi: Create ksets consecutively
     - [x86] platform/x86: think-lmi: Fix kobject cleanup
     - usb: typec: displayport: Fix potential deadlock
     - [amd64] Mitigations Transitive Scheduler Attacks (TSA) (CVE-2024-36350,
       CVE-2024-36357)
       + x86/bugs: Rename MDS machinery to something more generic
       + x86/bugs: Add a Transient Scheduler Attacks mitigation
       + KVM: SVM: Advertise TSA CPUID bits to guests
       + x86/process: Move the buffer clearing before MONITOR
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.145
     - [amd64] x86/CPU/AMD: Properly check the TSA microcode
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.146
     - [x86] platform/x86: ideapad-laptop: use usleep_range() for EC polling
     - perf: Revert to requiring CAP_SYS_ADMIN for uprobes
     - Bluetooth: hci_sync: Fix not disabling advertising instance
     - fix proc_sys_compare() handling of in-lookup dentries
     - netlink: Fix wraparounds of sk->sk_rmem_alloc.
     - tipc: Fix use-after-free in tipc_conn_close().
     - vsock: Fix transport_{g2h,h2g} TOCTOU
     - vsock: Fix transport_* TOCTOU
     - vsock: Fix IOCTL_VM_SOCKETS_GET_LOCAL_CID to check also `transport_local`
     - net: phy: smsc: Fix Auto-MDIX configuration when disabled by strap
     - net: phy: smsc: Fix link failure in forced mode with Auto-MDIX
     - atm: clip: Fix potential null-ptr-deref in to_atmarpd().
     - atm: clip: Fix memory leak of struct clip_vcc.
     - atm: clip: Fix infinite recursive call of clip_push().
     - atm: clip: Fix NULL pointer dereference in vcc_sendmsg()
     - net/sched: Abort __tc_modify_qdisc if parent class does not exist
     - maple_tree: fix MA_STATE_PREALLOC flag in mas_preallocate()
     - rxrpc: Fix oops due to non-existence of prealloc backlog struct
     - [x86] boot: Compile boot code with -std=gnu11 too
     - ipmi:msghandler: Fix potential memory corruption in ipmi_create_user()
     - [x86] mce/amd: Fix threshold limit reset
     - [x86] mce: Don't remove sysfs if thresholding sysfs init fails
     - [x86] mce: Make sure CMCI banks are cleared during shutdown on Intel
     - [x86] KVM: x86/xen: Allow 'out of range' event channel ports in IRQ
       routing table.
     - [x86] KVM: SVM: Reject SEV{-ES} intra host migration if vCPU creation is
       in-flight
     - gre: Fix IPv6 multicast route creation. (Closes: #1108430)
     - md/md-bitmap: fix GPF in bitmap_get_stats() (Closes: #1109734)
     - [arm64] pinctrl: qcom: msm: mark certain pins as invalid for interrupts
     - wifi: prevent A-MSDU attacks in mesh networks (CVE-2025-27558)
     - drm/sched: Increment job count before swapping tail spsc queue
     - drm/ttm: fix error handling in ttm_buffer_object_transfer
     - drm/gem: Fix race in drm_gem_handle_create_tail()
     - usb: gadget: u_serial: Fix race condition in TTY wakeup
     - Revert "ACPI: battery: negate current when discharging"
     - kallsyms: fix build without execinfo
     - maple_tree: fix mt_destroy_walk() on root leaf node
     - pwm: mediatek: Ensure to disable clocks in error path
     - smb: server: make use of rdma_destroy_qp()
     - ksmbd: fix a mount write count leak in ksmbd_vfs_kern_path_locked()
     - netlink: Fix rmem check in netlink_broadcast_deliver().
     - netlink: make sure we allow at least one dump skb
     - fs: export anon_inode_make_secure_inode() and fix secretmem LSM bypass
     - btrfs: propagate last_unlink_trans earlier when doing a rmdir
     - xhci: Allow RPM on the USB controller (1022:43f7) by default
     - usb: xhci: quirk for data loss in ISOC transfers
     - Input: xpad - support Acer NGR 200 Controller
     - [arm64,armhf] usb: dwc3: Abort suspend on soft disconnect failure
     - wifi: zd1211rw: Fix potential NULL pointer dereference in
       zd_mac_tx_to_dev()
     - [arm64,armhf] drm/tegra: nvdec: Fix dma_alloc_coherent error check
     - md/raid1: Fix stack memory use after return in raid1_reshape
     - raid10: cleanup memleak at raid10_make_request
     - nbd: fix uaf in nbd_genl_connect() error path
     - erofs: remove the member readahead from struct z_erofs_decompress_frontend
     - erofs: clean up z_erofs_pcluster_readmore()
     - erofs: allocate extra bvec pages directly instead of retrying
     - erofs: avoid on-stack pagepool directly passed by arguments
     - erofs: adapt folios for z_erofs_read_folio()
     - erofs: fix to add missing tracepoint in erofs_read_folio()
     - netfilter: flowtable: account for Ethernet header in nf_flow_pppoe_proto()
     - net: appletalk: Fix device refcount leak in atrtr_create()
     - ibmvnic: Fix hardcoded NUM_RX_STATS/NUM_TX_STATS with dynamic sizeof
     - net: phy: microchip: limit 100M workaround to link-down events on LAN88xx
     - can: m_can: m_can_handle_lost_msg(): downgrade msg lost in rx message to
       debug level
     - net: ll_temac: Fix missing tx_pending check in ethtools_set_ringparam()
     - bnxt_en: Fix DCB ETS validation
     - bnxt_en: Set DMA unmap len correctly for XDP_REDIRECT
     - atm: idt77252: Add missing `dma_map_error()`
     - [x86] ASoC: amd: yc: add quirk for Acer Nitro ANV15-41 internal mic
     - ALSA: hda/realtek - Enable mute LED on HP Pavilion Laptop 15-eg100
     - net: usb: qmi_wwan: add SIMCom 8230C composition
     - HID: lenovo: Add support for ThinkPad X1 Tablet Thin Keyboard Gen2
     - btrfs: fix assertion when building free space tree
     - vt: add missing notification when switching back to text mode
     - HID: Add IGNORE quirk for SMARTLINKTECHNOLOGY
     - HID: quirks: Add quirk for 2 Chicony Electronics HP 5MP Cameras
     - Input: atkbd - do not skip atkbd_deactivate() when skipping
       ATKBD_CMD_GETID
     - vhost-scsi: protect vq->log_used with vq->mutex (CVE-2025-38074)
     - [x86] mm: Disable hugetlb page table sharing on 32-bit
     - [x86] Fix X86_FEATURE_VERW_CLEAR definition
     - ksmbd: fix potential use-after-free in oplock/lease break ack
     - rseq: Fix segfault on registration when rseq_cs is non-zero
       (CVE-2025-38067)
     https://www.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.147
     - USB: serial: option: add Telit Cinterion FE910C04 (ECM) composition
     - USB: serial: option: add Foxconn T99W640
     - USB: serial: ftdi_sio: add support for NDI EMGUIDE GEMINI
     - usb: gadget: configfs: Fix OOB read on empty string write
     - [armhf] i2c: stm32: fix the device used for the DMA map
     - [x86] thunderbolt: Fix bit masking in tb_dp_port_set_hops()
     - Input: xpad - set correct controller type for Acer NGR200
     - pch_uart: Fix dma_sync_sg_for_device() nents value
     - HID: core: ensure the allocated report buffer can contain the reserved
       report ID
     - HID: core: ensure __hid_request reserves the report ID as the first byte
     - HID: core: do not bypass hid_hw_raw_request
     - tracing: Add down_write(trace_event_sem) when adding trace event
     - io_uring/poll: fix POLLERR handling
     - phonet/pep: Move call to pn_skb_get_dst_sockaddr() earlier in
       pep_sock_accept()
     - net/mlx5: Update the list of the PCI supported devices
     - af_packet: fix the SO_SNDTIMEO constraint not effective on tpacked_snd()
     - af_packet: fix soft lockup issue caused by tpacket_snd()
     - isofs: Verify inode mode when loading from disk
     - memstick: core: Zero initialize id_reg in h_memstick_read_dev_id()
     - [arm64,armhf] mmc: bcm2835: Fix dma_unmap_sg() nents value
     - mmc: sdhci-pci: Quirk for broken command queuing on Intel GLK-based
       Positivo models
     - [arm64] mmc: sdhci_am654: Workaround for Errata i2312
     - pmdomain: governor: Consider CPU latency tolerance from pm_domain_cpu_gov
     - smb: client: fix use-after-free in crypt_message when using async crypto
     - [armhf] soc: aspeed: lpc-snoop: Cleanup resources in stack-order
     - [armhf] soc: aspeed: lpc-snoop: Don't disable channels that aren't enabled
     - iio: accel: fxls8962af: Fix use after free in fxls8962af_fifo_flush
     - iio: adc: max1363: Fix MAX1363_4X_CHANS/MAX1363_8X_CHANS[]
     - iio: adc: max1363: Reorder mode_list[] entries
     - iio: adc: stm32-adc: Fix race in installing chained IRQ handler
     - [i386] comedi: pcl812: Fix bit shift out of bounds
     - [i386] comedi: aio_iiro_16: Fix bit shift out of bounds
     - [i386] comedi: das16m1: Fix bit shift out of bounds
     - [i386] comedi: das6402: Fix bit shift out of bounds
     - [i386] comedi: Fail COMEDI_INSNLIST ioctl if n_insns is too large
     - [i386] comedi: Fix some signed shift left operations
     - [i386] comedi: Fix use of uninitialized data in insn_rw_emulate_bits()
     - [i386] comedi: Fix initialization of data for instructions that write to
       subdevice
     - bpf: Reject %p% format string in bprintf-like helpers
     - cachefiles: Fix the incorrect return value in __cachefiles_write()
     - net/sched: sch_qfq: Fix race condition on qfq_aggregate
     - rpl: Fix use-after-free in rpl_do_srh_inline().
     - smb: client: fix use-after-free in cifs_oplock_break
     - nvme: fix misaccounting of nvme-mpath inflight I/O
     - [x86] hwmon: (corsair-cpro) Validate the size of the received input buffer
     - usb: net: sierra: check for no status endpoint
     - Bluetooth: Fix null-ptr-deref in l2cap_sock_resume_cb()
     - Bluetooth: hci_sync: fix connectable extended advertising when using
       static random address
     - Bluetooth: SMP: If an unallowed command is received consider it a failure
     - Bluetooth: SMP: Fix using HCI_ERROR_REMOTE_USER_TERM on timeout
     - Bluetooth: btusb: QCA: Fix downloading wrong NVM for WCN6855 GF variant
       without board ID
     - net/mlx5: Correctly set gso_size when LRO is used
     - ipv6: mcast: Delay put pmc->idev in mld_del_delrec()
     - netfilter: nf_conntrack: fix crash due to removal of uninitialised entry
     - Bluetooth: L2CAP: Fix attempting to adjust outgoing MTU
     - tls: always refresh the queue when reading sock
     - net: vlan: fix VLAN 0 refcount imbalance of toggling filtering during
       runtime
     - net: bridge: Do not offload IGMP/MLD messages
     - net/sched: Return NULL when htb_lookup_leaf encounters an empty rbtree
     - Revert "cgroup_freezer: cgroup_freezing: Check if not frozen"
     - sched: Change nr_uninterruptible type to unsigned long
     - HID: mcp2221: Set driver data before I2C adapter add
     - clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right
       userns
     - usb: hub: fix detection of high tier USB3 devices behind suspended hubs
     - usb: hub: Fix flushing and scheduling of delayed work that tunes runtime
       pm
     - usb: hub: Fix flushing of delayed work used for post resume purposes
     - usb: hub: Don't try to recover devices lost during warm reset.
     - usb: musb: Add and use inline functions musb_{get,set}_state
     - usb: musb: fix gadget state on disconnect
     - [arm64] usb: dwc3: qcom: Don't leave BCR asserted
     - [arm64] ASoC: fsl_sai: Force a software reset when starting in consumer
       mode
     - Bluetooth: HCI: Set extended advertising data synchronously
     - mm/vmalloc: leave lazy MMU mode on PTE mapping error
     - nvmem: layouts: u-boot-env: remove crc32 endianness conversion
 .
   [ Uwe Kleine-König ]
   * Disable CONFIG_CDROM_PKTCDVD for all archs as this driver is
     orphaned, buggy and not needed. (Closes: #1107479)
 .
   [ Salvatore Bonaccorso ]
   * [amd64] drivers/acpi: Make ACPI_HED built-in
   * Bump ABI to 38
   * [rt] Update to 6.1.141-rt52
   * net/sched: sch_qfq: Avoid triggering might_sleep in atomic context in
     qfq_delete_class
   * [amd64] x86/bugs: Fix use of possibly uninit value in
     amd_check_tsa_microcode()
 .
   [ Kevin P. Fleming ]
   * test-patches: Add defaults for DEBEMAIL and DEBFULLNAME
Checksums-Sha1:
 744010b35c5cad4621458c2dcd0aa5805172216a 290931 linux_6.1.147-1.dsc
 b4de6e21c88a28dfd829b6523250805b34b0093f 137834576 linux_6.1.147.orig.tar.xz
 a00454930c8a8f16040c8057572b6ba8476cadd1 1771736 linux_6.1.147-1.debian.tar.xz
 5bbbec96872d6a8a022d97e3840f6dbf61716eb3 6691 linux_6.1.147-1_source.buildinfo
Checksums-Sha256:
 4d9fafd10424203e46c918802aea63d6448bb3f902b712e84e36b512031b3bc5 290931 linux_6.1.147-1.dsc
 d7d3456dcabe4bb188112a664c21830de479ac86a09fbc11029a8d9da102d319 137834576 linux_6.1.147.orig.tar.xz
 1ec9a92bb0c8e6d64b2d951bf406d2adaf8a526fb6f745f7b6817f012a4e7d7b 1771736 linux_6.1.147-1.debian.tar.xz
 0d6b4f78ababaff48e3c0466c47b28c8a8c2618db614ede156209654d728a1f7 6691 linux_6.1.147-1_source.buildinfo
Files:
 134476f6e222d881c40d012a08da2093 290931 kernel optional linux_6.1.147-1.dsc
 fda001c7d2b3d230f4308357e40591a5 137834576 kernel optional linux_6.1.147.orig.tar.xz
 189db29e338b463c8b82806b49b2c9ee 1771736 kernel optional linux_6.1.147-1.debian.tar.xz
 63888971c02fa205d6db0df2f5b231a1 6691 kernel optional linux_6.1.147-1_source.buildinfo

-----BEGIN PGP SIGNATURE-----
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=0WX3
-----END PGP SIGNATURE-----

[Message part 2 (application/pgp-signature, inline)]

Reply sent to Salvatore Bonaccorso <carnil@debian.org>:
You have taken responsibility. (Sun, 17 Aug 2025 19:49:03 GMT) (full text, mbox, link).


Notification sent to Liviu Heinrich <livix07@riseup.net>:
Bug acknowledged by developer. (Sun, 17 Aug 2025 19:49:03 GMT) (full text, mbox, link).


Bug archived. Request was from Debbugs Internal Request <owner@bugs.debian.org> to internal_control@bugs.debian.org. (Mon, 15 Sep 2025 07:27:43 GMT) (full text, mbox, link).


Send a report that this bug log contains spam.


Debian bug tracking system administrator <owner@bugs.debian.org>. Last modified: Fri Oct 31 07:08:35 2025; Machine Name: buxtehude

Debian Bug tracking system

Debbugs is free software and licensed under the terms of the GNU General Public License version 2. The current version can be obtained from https://bugs.debian.org/debbugs-source/.

Copyright © 1999 Darren O. Benham, 1997,2003 nCipher Corporation Ltd, 1994-97 Ian Jackson, 2005-2017 Don Armstrong, and many other contributors.