-
Notifications
You must be signed in to change notification settings - Fork 5k
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge remote-tracking branch 'stable/linux-6.1.y' into rpi-6.1.y
- Loading branch information
Showing
233 changed files
with
3,170 additions
and
1,771 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -60,3 +60,14 @@ Description: Module taint flags: | |
C staging driver module | ||
E unsigned module | ||
== ===================== | ||
|
||
What: /sys/module/grant_table/parameters/free_per_iteration | ||
Date: July 2023 | ||
KernelVersion: 6.5 but backported to all supported stable branches | ||
Contact: Xen developer discussion <[email protected]> | ||
Description: Read and write number of grant entries to attempt to free per iteration. | ||
|
||
Note: Future versions of Xen and Linux may provide a better | ||
interface for controlling the rate of deferred grant reclaim | ||
or may not need it at all. | ||
Users: Qubes OS (https://www.qubes-os.org) |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
|
@@ -63,31 +63,28 @@ information submitted to the security list and any followup discussions | |
of the report are treated confidentially even after the embargo has been | ||
lifted, in perpetuity. | ||
|
||
Coordination | ||
------------ | ||
|
||
Fixes for sensitive bugs, such as those that might lead to privilege | ||
escalations, may need to be coordinated with the private | ||
<[email protected]> mailing list so that distribution vendors | ||
are well prepared to issue a fixed kernel upon public disclosure of the | ||
upstream fix. Distros will need some time to test the proposed patch and | ||
will generally request at least a few days of embargo, and vendor update | ||
publication prefers to happen Tuesday through Thursday. When appropriate, | ||
the security team can assist with this coordination, or the reporter can | ||
include linux-distros from the start. In this case, remember to prefix | ||
the email Subject line with "[vs]" as described in the linux-distros wiki: | ||
<http://oss-security.openwall.org/wiki/mailing-lists/distros#how-to-use-the-lists> | ||
Coordination with other groups | ||
------------------------------ | ||
|
||
The kernel security team strongly recommends that reporters of potential | ||
security issues NEVER contact the "linux-distros" mailing list until | ||
AFTER discussing it with the kernel security team. Do not Cc: both | ||
lists at once. You may contact the linux-distros mailing list after a | ||
fix has been agreed on and you fully understand the requirements that | ||
doing so will impose on you and the kernel community. | ||
|
||
The different lists have different goals and the linux-distros rules do | ||
not contribute to actually fixing any potential security problems. | ||
|
||
CVE assignment | ||
-------------- | ||
|
||
The security team does not normally assign CVEs, nor do we require them | ||
for reports or fixes, as this can needlessly complicate the process and | ||
may delay the bug handling. If a reporter wishes to have a CVE identifier | ||
assigned ahead of public disclosure, they will need to contact the private | ||
linux-distros list, described above. When such a CVE identifier is known | ||
before a patch is provided, it is desirable to mention it in the commit | ||
message if the reporter agrees. | ||
The security team does not assign CVEs, nor do we require them for | ||
reports or fixes, as this can needlessly complicate the process and may | ||
delay the bug handling. If a reporter wishes to have a CVE identifier | ||
assigned, they should find one by themselves, for example by contacting | ||
MITRE directly. However under no circumstances will a patch inclusion | ||
be delayed to wait for a CVE identifier to arrive. | ||
|
||
Non-disclosure agreements | ||
------------------------- | ||
|
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.