Oracle Linux 6466 Published by

Oracle Linux administrators must apply a significant batch of security patches covering versions seven through ten. Critical updates target popular software including Firefox, Thunderbird, and FreeRDP alongside essential system components like the kernel. Additional advisories address vulnerabilities in Java, virtualization tools, and GNOME extensions that impact daily operations. It is vital to review the detailed bulletins promptly since unpatched systems remain at risk from these identified threats.

ELSA-2026-50170 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-6009 Oracle Linux 9 java-25-openjdk bug fix and enhancement update
ELSA-2026-5578 Moderate: Oracle Linux 8 virt:ol and virt-devel:ol security update
ELSA-2026-5932 Important: Oracle Linux 8 firefox security update
ELSA-2026-6004 Important: Oracle Linux 9 freerdp security update
ELSA-2026-6005 Important: Oracle Linux 8 freerdp security update
ELSA-2026-4756 Important: Oracle Linux 7 libpng security update
ELSA-2026-4471 Important: Oracle Linux 7 freerdp security update
ELSA-2026-50171 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-6010 Oracle Linux 8 gnome-shell-extensions bug fix and enhancement update
ELSA-2026-50171 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update
ELSA-2026-5931 Important: Oracle Linux 10 firefox security update
ELSA-2026-6188 Important: Oracle Linux 9 thunderbird security update
ELSA-2026-6053 Moderate: Oracle Linux 10 kernel security update
ELSA-2026-5930 Important: Oracle Linux 9 firefox security update
ELSA-2026-50171 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update
ELBA-2026-50169 Oracle Linux 10 oracle-common-release bug fix update
ELBA-2026-50168 Oracle Linux 10 oraclelinux-release-el10 bug fix update
ELSA-2026-50170 Unbreakable Enterprise kernel bug fix update




ELSA-2026-50170 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update


Oracle Linux Bug Fix Advisory ELSA-2026-50170

http://linux.oracle.com/errata/ELSA-2026-50170.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-core-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-core-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-devel-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-core-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-deprecated-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-desktop-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-extra-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-extra-netfilter-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-usb-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-wireless-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-devel-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-doc-6.12.0-200.74.27.1.el9uek.noarch.rpm
kernel-uek-modules-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-core-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-deprecated-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-desktop-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-extra-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-extra-netfilter-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-usb-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-modules-wireless-6.12.0-200.74.27.1.el9uek.x86_64.rpm
kernel-uek-tools-6.12.0-200.74.27.1.el9uek.x86_64.rpm

aarch64:
kernel-uek-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-devel-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-deprecated-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-desktop-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-extra-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-extra-netfilter-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-usb-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-debug-modules-wireless-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-devel-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-doc-6.12.0-200.74.27.1.el9uek.noarch.rpm
kernel-uek-modules-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-extra-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-deprecated-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-desktop-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-extra-netfilter-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-usb-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-modules-wireless-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek-tools-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-devel-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-core-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-deprecated-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-desktop-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-extra-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-extra-netfilter-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-usb-6.12.0-200.74.27.1.el9uek.aarch64.rpm
kernel-uek64k-modules-wireless-6.12.0-200.74.27.1.el9uek.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/kernel-uek-6.12.0-200.74.27.1.el9uek.src.rpm

Description of changes:

[6.12.0-200.74.27.1]
- KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE (Sean Christopherson) [Orabug: 39071315]



ELBA-2026-6009 Oracle Linux 9 java-25-openjdk bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-6009

http://linux.oracle.com/errata/ELBA-2026-6009.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
java-25-openjdk-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-crypto-adapter-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-crypto-adapter-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-crypto-adapter-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-demo-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-demo-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-demo-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-devel-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-devel-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-devel-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-headless-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-headless-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-headless-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-javadoc-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-javadoc-zip-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-jmods-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-jmods-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-jmods-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-src-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-src-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-src-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-static-libs-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-static-libs-fastdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm
java-25-openjdk-static-libs-slowdebug-25.0.2.0.10-3.0.1.el9.x86_64.rpm

aarch64:
java-25-openjdk-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-crypto-adapter-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-crypto-adapter-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-crypto-adapter-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-demo-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-demo-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-demo-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-devel-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-devel-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-devel-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-headless-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-headless-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-headless-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-javadoc-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-javadoc-zip-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-jmods-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-jmods-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-jmods-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-src-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-src-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-src-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-static-libs-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-static-libs-fastdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm
java-25-openjdk-static-libs-slowdebug-25.0.2.0.10-3.0.1.el9.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/java-25-openjdk-25.0.2.0.10-3.0.1.el9.src.rpm

Description of changes:

[1:25.0.2.0.10-3.0.1]
- Add Oracle vendor bug URL [Orabug: 34340155]

[1:25.0.2.0.10-3]
- Disable abidiff inspection in rpminspect.yaml to avoid an out-of-memory error on the CentOS test farm
- See: https://docs.testing-farm.io/Testing%20Farm/0.1/errors.html#TFE-1
- Resolves: RHEL-149786

[1:25.0.2.0.10-3]
- Update FIPS patch to e55ada9353e to include the fix for the too restrictive provider lockdown
- Fix FIPS issue list to represent the new 25u version
- Add JDK-8375063 libpng 1.6.54 ahead of 25.0.3
- Add JDK-8375057 harfbuzz 12.3.2 ahead of 25.0.3
- Add JDK-8377526 libpng 1.6.55 ahead of 25.0.3
- Bump libpng version to 1.6.55 following JDK-8375063 & JDK-8377526
- Bump harfbuzz version to 12.3.2 following JDK-8375057
- Bump nssadapter version to bring in shared PKCS11 session fix
- Drop LDFLAGS nssadapter patch which is now upstream in 0.1.1
- Add tagging scripts with signature checks and gating handling
- Update tagged versions to include 9.8.0-z, 9.9.0, 10.2-z & 10.3.
- Add gating scripts to simplify obtaining results and waiving issues
- Sync the copy of the portable specfile with the latest update
- Resolves: RHEL-155001
- Resolves: RHEL-147354
- Resolves: RHEL-148410
- Resolves: RHEL-148997
- Resolves: RHEL-155047
- Resolves: RHEL-155330
- Resolves: RHEL-156036
- Resolves: RHEL-156040

[1:25.0.2.0.10-2]
- Bump rpmrelease for CentOS build
- Related: RHEL-139577
- Related: RHEL-142856
- Related: RHEL-142808

[1:25.0.2.0.10-1]
- Execute create-redhat-properties-files.bash with '-e' to exit on failure
- Related: RHEL-142856

[1:25.0.2.0.10-1]
- Update to jdk-25.0.2+10 (GA)
- Update release notes to 25.0.2+10
- Add JDK-8372534 libpng 1.6.51 ahead of 25.0.3
- Bump libpng version to 1.6.51 following JDK-8372534
- Bump ID of NSS adapter patch so we can stay in sync with portable on the libpng patch
- Test for java.security's existence in create-redhat-properties-files.bash
- Handle 'upgrade' as an alternative to 'update' in openjdk_news.sh
- Sync the copy of the portable specfile with the latest update
- ** This tarball is embargoed until 2026-01-20 @ 1pm PT. **
- Resolves: RHEL-139577
- Resolves: RHEL-143373
- Resolves: RHEL-143368
- Resolves: RHEL-142856
- Resolves: RHEL-142808



ELSA-2026-5578 Moderate: Oracle Linux 8 virt:ol and virt-devel:ol security update


Oracle Linux Security Advisory ELSA-2026-5578

http://linux.oracle.com/errata/ELSA-2026-5578.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
hivex-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
hivex-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-appliance-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-bash-completion-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-gfs2-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-gobject-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-gobject-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-inspect-icons-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-java-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-java-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-javadoc-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-man-pages-ja-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-man-pages-uk-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-rescue-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-rsync-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-tools-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-tools-c-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libguestfs-winsupport-8.10-1.module+el8.10.0+90308+7c659588.i686.rpm
libguestfs-winsupport-8.10-1.module+el8.10.0+90308+7c659588.x86_64.rpm
libguestfs-xfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libiscsi-1.18.0-8.module+el8.9.0+90052+d3bf71d8.i686.rpm
libiscsi-1.18.0-8.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libiscsi-devel-1.18.0-8.module+el8.9.0+90052+d3bf71d8.i686.rpm
libiscsi-devel-1.18.0-8.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libiscsi-utils-1.18.0-8.module+el8.9.0+90052+d3bf71d8.i686.rpm
libiscsi-utils-1.18.0-8.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
libnbd-bash-completion-1.6.0-6.module+el8.10.0+90410+bcde3bf4.noarch.rpm
libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
libtpms-0.9.1-3.20211126git1ff6fe1f43.module+el8.10.0+90780+01092f9b.x86_64.rpm
libtpms-devel-0.9.1-3.20211126git1ff6fe1f43.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-client-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-client-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-config-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-config-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-config-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-config-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-interface-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-interface-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-nodedev-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-nodedev-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-qemu-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-secret-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-secret-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-core-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-core-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-disk-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-disk-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-gluster-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-iscsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-iscsi-direct-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-iscsi-direct-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-logical-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-logical-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-mpath-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-mpath-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-rbd-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-driver-storage-scsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-daemon-driver-storage-scsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-daemon-kvm-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-dbus-1.3.0-2.module+el8.9.0+90052+d3bf71d8.i686.rpm
libvirt-dbus-1.3.0-2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
libvirt-devel-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-devel-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-docs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-docs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-libs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-libs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-lock-sanlock-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-nss-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-nss-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
libvirt-wireshark-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.i686.rpm
libvirt-wireshark-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.x86_64.rpm
lua-guestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdfuse-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
nbdfuse-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
nbdkit-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-bash-completion-1.24.0-5.module+el8.9.0+90052+d3bf71d8.noarch.rpm
nbdkit-basic-filters-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-basic-plugins-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-curl-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-devel-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-example-plugins-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-gzip-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-gzip-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-linuxdisk-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-nbd-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-python-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-server-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-ssh-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-tar-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-tar-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-tmpdisk-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-vddk-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
nbdkit-xz-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
netcf-0.2.8-12.module+el8.9.0+90052+d3bf71d8.i686.rpm
netcf-0.2.8-12.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
netcf-devel-0.2.8-12.module+el8.9.0+90052+d3bf71d8.i686.rpm
netcf-devel-0.2.8-12.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
netcf-libs-0.2.8-12.module+el8.9.0+90052+d3bf71d8.i686.rpm
netcf-libs-0.2.8-12.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
ocaml-hivex-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
ocaml-hivex-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
ocaml-hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
ocaml-hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
ocaml-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
ocaml-libguestfs-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
ocaml-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
ocaml-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
ocaml-libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
ocaml-libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
perl-hivex-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
perl-hivex-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
perl-Sys-Guestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
perl-Sys-Virt-8.0.0-1.module+el8.9.0+90052+d3bf71d8.i686.rpm
perl-Sys-Virt-8.0.0-1.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
python3-hivex-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
python3-hivex-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
python3-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
python3-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.i686.rpm
python3-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.x86_64.rpm
python3-libvirt-8.0.0-2.module+el8.9.0+90052+d3bf71d8.i686.rpm
python3-libvirt-8.0.0-2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
qemu-guest-agent-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-img-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-block-curl-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-block-gluster-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-block-iscsi-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-block-rbd-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-block-ssh-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-common-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-core-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-docs-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-hw-usbredir-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-tests-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-ui-opengl-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
qemu-kvm-ui-spice-6.2.0-53.module+el8.10.0+90780+01092f9b.6.x86_64.rpm
ruby-hivex-1.3.18-23.module+el8.9.0+90075+85334608.i686.rpm
ruby-hivex-1.3.18-23.module+el8.9.0+90075+85334608.x86_64.rpm
ruby-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
seabios-1.16.0-4.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
seabios-bin-1.16.0-4.module+el8.9.0+90052+d3bf71d8.noarch.rpm
seavgabios-bin-1.16.0-4.module+el8.9.0+90052+d3bf71d8.noarch.rpm
sgabios-0.20170427git-3.module+el8.9.0+90052+d3bf71d8.i686.rpm
sgabios-0.20170427git-3.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
sgabios-bin-0.20170427git-3.module+el8.9.0+90052+d3bf71d8.noarch.rpm
supermin-5.2.1-2.0.1.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
supermin-devel-5.2.1-2.0.1.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
swtpm-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
swtpm-devel-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
swtpm-libs-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
swtpm-tools-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
swtpm-tools-pkcs11-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
virt-dib-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
virt-v2v-1.42.0-22.module+el8.9.0+90052+d3bf71d8.x86_64.rpm
virt-v2v-bash-completion-1.42.0-22.module+el8.9.0+90052+d3bf71d8.noarch.rpm
virt-v2v-man-pages-ja-1.42.0-22.module+el8.9.0+90052+d3bf71d8.noarch.rpm
virt-v2v-man-pages-uk-1.42.0-22.module+el8.9.0+90052+d3bf71d8.noarch.rpm

aarch64:
hivex-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-appliance-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-bash-completion-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-gfs2-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-gobject-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-gobject-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-inspect-icons-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-java-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-java-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-javadoc-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-man-pages-ja-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-man-pages-uk-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-rescue-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-rsync-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-tools-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.noarch.rpm
libguestfs-tools-c-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libguestfs-winsupport-8.10-1.module+el8.10.0+90308+7c659588.aarch64.rpm
libguestfs-xfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libiscsi-1.18.0-8.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libiscsi-devel-1.18.0-8.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libiscsi-utils-1.18.0-8.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
libnbd-bash-completion-1.6.0-6.module+el8.10.0+90410+bcde3bf4.noarch.rpm
libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
libtpms-0.9.1-3.20211126git1ff6fe1f43.module+el8.10.0+90780+01092f9b.aarch64.rpm
libtpms-devel-0.9.1-3.20211126git1ff6fe1f43.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-client-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-config-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-config-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-interface-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-network-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-nodedev-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-nwfilter-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-qemu-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-secret-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-core-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-disk-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-gluster-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-iscsi-direct-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-logical-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-mpath-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-rbd-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-driver-storage-scsi-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-daemon-kvm-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-dbus-1.3.0-2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
libvirt-devel-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-docs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-libs-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-lock-sanlock-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-nss-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
libvirt-wireshark-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.aarch64.rpm
lua-guestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdfuse-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
nbdkit-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-bash-completion-1.24.0-5.module+el8.9.0+90052+d3bf71d8.noarch.rpm
nbdkit-basic-filters-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-basic-plugins-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-curl-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-devel-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-example-plugins-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-gzip-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-gzip-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-linuxdisk-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-nbd-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-python-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-server-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-ssh-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-tar-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-tar-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-tmpdisk-plugin-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
nbdkit-xz-filter-1.24.0-5.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
netcf-0.2.8-12.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
netcf-devel-0.2.8-12.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
netcf-libs-0.2.8-12.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
ocaml-hivex-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
ocaml-hivex-devel-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
ocaml-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
ocaml-libguestfs-devel-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
ocaml-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
ocaml-libnbd-devel-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
perl-hivex-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
perl-Sys-Guestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
perl-Sys-Virt-8.0.0-1.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
python3-hivex-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
python3-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
python3-libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.aarch64.rpm
python3-libvirt-8.0.0-2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
qemu-guest-agent-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-img-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-block-curl-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-block-iscsi-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-block-rbd-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-block-ssh-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-common-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-core-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-docs-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
qemu-kvm-tests-6.2.0-53.module+el8.10.0+90780+01092f9b.6.aarch64.rpm
ruby-hivex-1.3.18-23.module+el8.9.0+90075+85334608.aarch64.rpm
ruby-libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
supermin-5.2.1-2.0.1.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
supermin-devel-5.2.1-2.0.1.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
swtpm-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
swtpm-devel-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
swtpm-libs-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
swtpm-tools-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
swtpm-tools-pkcs11-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.aarch64.rpm
virt-dib-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/hivex-1.3.18-23.module+el8.9.0+90075+85334608.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libguestfs-1.44.0-9.0.2.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libguestfs-winsupport-8.10-1.module+el8.10.0+90308+7c659588.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libiscsi-1.18.0-8.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libnbd-1.6.0-6.module+el8.10.0+90410+bcde3bf4.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libtpms-0.9.1-3.20211126git1ff6fe1f43.module+el8.10.0+90780+01092f9b.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libvirt-8.0.0-23.5.0.1.module+el8.10.0+90780+01092f9b.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libvirt-dbus-1.3.0-2.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/libvirt-python-8.0.0-2.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/nbdkit-1.24.0-5.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/netcf-0.2.8-12.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/perl-Sys-Virt-8.0.0-1.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/qemu-kvm-6.2.0-53.module+el8.10.0+90780+01092f9b.6.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/seabios-1.16.0-4.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/sgabios-0.20170427git-3.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/supermin-5.2.1-2.0.1.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/swtpm-0.7.0-4.20211109gitb79fd91.module+el8.9.0+90052+d3bf71d8.src.rpm
http://oss.oracle.com/ol8/SRPMS-updates/virt-v2v-1.42.0-22.module+el8.9.0+90052+d3bf71d8.src.rpm

Related CVEs:

CVE-2025-11234

Description of changes:

hivex
[1.3.18-23]
- Limit recursion in ri-records (CVE-2021-3622)
resolves: rhbz#1976194

libguestfs
[1.44.0-9.0.2]
- libguestfs.spec: Add btrfs-progs RPM to appliance [Orabug: 35634755]

libguestfs-winsupport
[8.10-1]
- Rebase to ntfs-3g 2022.10.3
- Fixes: CVE-2022-40284
- resolves: rhbz#2236373

libiscsi
[1.18.0-8]
- Rebuild all virt packages to fix RHEL's upgrade path
- Resolves: rhbz#1695587
(Ensure modular RPM upgrade path)

libnbd
[1.6.0-6.el8]
- Fix CVE-2024-7383 NBD server improper certificate validation
resolves: RHEL-52728

libtpms
[0.9.1-3.20211126git1ff6fe1f43]
- Fix CVE-2025-49133
Resolves: RHEL-96251

libvirt
[8.0.0-23.5.0.1]
- Set SOURCE_DATE_EPOCH from changelog [Orabug: 32019554]
- Add runtime deps for pkg librbd1 >= 1:10.2.5 (Keshav Sharma)

libvirt-dbus
[1.3.0-2.el8]
- Resolves: bz#2000225
(Rebase virt:rhel module:stream based on AV-8.6)

libvirt-python
[8.0.0-2]
- [RFE] RFE backport allow enabling ZEROCOPY live migration to libvirt-python on RHEL8 to be consumed by VDSM (rhbz#2092756)

nbdkit
[1.24.0-5]
- vddk: Add support for VDDK 8.0.0
resolves: rhbz#2143907

netcf
[0.2.8-12]
- Resolves: rhbz#1602628

perl-Sys-Virt
[8.0.0-1]
- Rebase to 8.0.0 release
- Resolves: rhbz#2012813

qemu-kvm
[6.2.0-53.el8.6]
- kvm-scsi-disk-Use-positive-return-value-for-status-in-dm.patch [RHEL-120737]
- kvm-scsi-block-Don-t-skip-callback-for-sgio-error-status.patch [RHEL-120737]
- kvm-scsi-disk-Add-warning-comments-that-host_status-erro.patch [RHEL-120737]
- kvm-scsi-disk-Always-report-RESERVATION_CONFLICT-to-gues.patch [RHEL-120737]
- kvm-scsi-disk-Apply-error-policy-for-host_status-errors-.patch [RHEL-120737]
- Resolves: RHEL-120737
(qemu hit io error and crash scsi-disk.c:554: scsi_write_data: Assertion r->req.aiocb == NULL' failed)

[6.2.0-53.el8.5]
- kvm-io-move-websock-resource-release-to-close-method.patch [RHEL-120119]
- kvm-io-fix-use-after-free-in-websocket-handshake-code.patch [RHEL-120119]
- Resolves: RHEL-120119
(CVE-2025-11234 virt:rhel/qemu-kvm: VNC WebSocket handshake use-after-free [rhel-8.10.z])

seabios
[1.16.0-4]
- seabios-malloc-use-variable-for-ZoneHigh-size.patch [bz#2227373]
- seabios-malloc-use-large-ZoneHigh-when-there-is-enough-memor.patch [bz#2227373]
- Resolves: bz#2227373
("No bootable device" with OS boot disk interface VirtIO-SCSI and with more than 9 VirtIO disks.)

sgabios
[1:0.20170427git-3]
- Rebuild all virt packages to fix RHEL's upgrade path
- Resolves: rhbz#1695587
(Ensure modular RPM upgrade path)

supermin
[5.2.1-2.0.1.el8]
- Rebuild [Orabug: 35720304]

swtpm
[0.7.0-4.20211109gitb79fd91]
- swtpm_localca: Test for available issuercert before creating CA
Resolves: rhbz#2100508

virt-v2v
[1:1.42.0-22]
- RHEL 8: If setfiles fails fall back to autorelabel
resolves: rhbz#XXX
- Reapply patches since we are using git format-patch --submodule=diff



ELSA-2026-5932 Important: Oracle Linux 8 firefox security update


Oracle Linux Security Advisory ELSA-2026-5932

http://linux.oracle.com/errata/ELSA-2026-5932.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
firefox-140.9.0-1.0.1.el8_10.x86_64.rpm

aarch64:
firefox-140.9.0-1.0.1.el8_10.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/firefox-140.9.0-1.0.1.el8_10.src.rpm

Related CVEs:

CVE-2026-4684
CVE-2026-4685
CVE-2026-4686
CVE-2026-4687
CVE-2026-4688
CVE-2026-4689
CVE-2026-4690
CVE-2026-4691
CVE-2026-4692
CVE-2026-4693
CVE-2026-4694
CVE-2026-4695
CVE-2026-4696
CVE-2026-4697
CVE-2026-4698
CVE-2026-4699
CVE-2026-4700
CVE-2026-4701
CVE-2026-4702
CVE-2026-4704
CVE-2026-4705
CVE-2026-4706
CVE-2026-4707
CVE-2026-4708
CVE-2026-4709
CVE-2026-4710
CVE-2026-4711
CVE-2026-4712
CVE-2026-4713
CVE-2026-4714
CVE-2026-4715
CVE-2026-4716
CVE-2026-4717
CVE-2026-4718
CVE-2026-4719
CVE-2026-4720
CVE-2026-4721

Description of changes:

[140.9.0-1.0.1]
- Fix firefox-oracle-default-prefs.js for new nss [Orabug: 37079789]

[140.9.0]
- Add debranding patches (Mustafa Gezen)
- Add OpenELA default preferences (Louis Abel)

[140.9.0-1]
- Update to 140.9.0 ESR



ELSA-2026-6004 Important: Oracle Linux 9 freerdp security update


Oracle Linux Security Advisory ELSA-2026-6004

http://linux.oracle.com/errata/ELSA-2026-6004.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
freerdp-2.11.7-1.el9_7.3.x86_64.rpm
freerdp-devel-2.11.7-1.el9_7.3.i686.rpm
freerdp-devel-2.11.7-1.el9_7.3.x86_64.rpm
freerdp-libs-2.11.7-1.el9_7.3.i686.rpm
freerdp-libs-2.11.7-1.el9_7.3.x86_64.rpm
libwinpr-2.11.7-1.el9_7.3.i686.rpm
libwinpr-2.11.7-1.el9_7.3.x86_64.rpm
libwinpr-devel-2.11.7-1.el9_7.3.i686.rpm
libwinpr-devel-2.11.7-1.el9_7.3.x86_64.rpm

aarch64:
freerdp-2.11.7-1.el9_7.3.aarch64.rpm
freerdp-devel-2.11.7-1.el9_7.3.aarch64.rpm
freerdp-libs-2.11.7-1.el9_7.3.aarch64.rpm
libwinpr-2.11.7-1.el9_7.3.aarch64.rpm
libwinpr-devel-2.11.7-1.el9_7.3.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/freerdp-2.11.7-1.el9_7.3.src.rpm

Related CVEs:

CVE-2026-26955
CVE-2026-26965

Description of changes:

[2:2.11.7-1.3]
- Backport several CVE fixes
Resolves: RHEL-151988, RHEL-152215



ELSA-2026-6005 Important: Oracle Linux 8 freerdp security update


Oracle Linux Security Advisory ELSA-2026-6005

http://linux.oracle.com/errata/ELSA-2026-6005.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
freerdp-2.11.7-4.el8_10.x86_64.rpm
freerdp-devel-2.11.7-4.el8_10.i686.rpm
freerdp-devel-2.11.7-4.el8_10.x86_64.rpm
freerdp-libs-2.11.7-4.el8_10.i686.rpm
freerdp-libs-2.11.7-4.el8_10.x86_64.rpm
libwinpr-2.11.7-4.el8_10.i686.rpm
libwinpr-2.11.7-4.el8_10.x86_64.rpm
libwinpr-devel-2.11.7-4.el8_10.i686.rpm
libwinpr-devel-2.11.7-4.el8_10.x86_64.rpm

aarch64:
freerdp-2.11.7-4.el8_10.aarch64.rpm
freerdp-devel-2.11.7-4.el8_10.aarch64.rpm
freerdp-libs-2.11.7-4.el8_10.aarch64.rpm
libwinpr-2.11.7-4.el8_10.aarch64.rpm
libwinpr-devel-2.11.7-4.el8_10.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/freerdp-2.11.7-4.el8_10.src.rpm

Related CVEs:

CVE-2026-26955
CVE-2026-26965

Description of changes:

[2:2.11.7-4]
- Backport several CVE fixes
Resolves: RHEL-151979, RHEL-152206



ELSA-2026-4756 Important: Oracle Linux 7 libpng security update


Oracle Linux Security Advisory ELSA-2026-4756

http://linux.oracle.com/errata/ELSA-2026-4756.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
libpng-1.5.13-8.0.3.el7.i686.rpm
libpng-1.5.13-8.0.3.el7.x86_64.rpm
libpng-devel-1.5.13-8.0.3.el7.i686.rpm
libpng-devel-1.5.13-8.0.3.el7.x86_64.rpm
libpng-static-1.5.13-8.0.3.el7.i686.rpm
libpng-static-1.5.13-8.0.3.el7.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/libpng-1.5.13-8.0.3.el7.src.rpm

Related CVEs:

CVE-2026-25646

Description of changes:

[2:1.5.13-8.0.3]
- Fix CVE-2026-25646 [Orabug: 39093556]

[2:1.5.13-8.0.1]
- Fix CVE-2025-64720 [Orabug: 38824465]



ELSA-2026-4471 Important: Oracle Linux 7 freerdp security update


Oracle Linux Security Advisory ELSA-2026-4471

http://linux.oracle.com/errata/ELSA-2026-4471.html

The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:

x86_64:
freerdp-2.1.1-5.0.3.el7_9.x86_64.rpm
freerdp-devel-2.1.1-5.0.3.el7_9.i686.rpm
freerdp-devel-2.1.1-5.0.3.el7_9.x86_64.rpm
freerdp-libs-2.1.1-5.0.3.el7_9.i686.rpm
freerdp-libs-2.1.1-5.0.3.el7_9.x86_64.rpm
libwinpr-2.1.1-5.0.3.el7_9.i686.rpm
libwinpr-2.1.1-5.0.3.el7_9.x86_64.rpm
libwinpr-devel-2.1.1-5.0.3.el7_9.i686.rpm
libwinpr-devel-2.1.1-5.0.3.el7_9.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol7/SRPMS-updates/freerdp-2.1.1-5.0.3.el7_9.src.rpm

Related CVEs:

CVE-2026-22855
CVE-2026-22858
CVE-2026-22859

Description of changes:

[2:2.2.0-5.0.3]
- Fixed CVE-2026-22855 CVE-2026-22858 CVE-2026-22859 [Orabug: 39075086]

[2:2.2.0-5.0.1]
- fixed CVE-2026-23530 CVE-2026-23531 CVE-2026-23532 CVE-2026-23533
CVE-2026-23884 [Orabug: 38971897]

[2:2.2.0-5]
- Update: Refactored RPC gateway parser (rhbz#2017944)
+ fix issues discovered by Covscan

[2:2.2.0-4]
- Refactored RPC gateway parser (rhbz#2017944)

[2.1.1-3]
- Add checks for bitmap and glyph width/heigth values (rhbz#2017951)

[2.1.1-2]
- Update to 2.1.1 (#1834286)

[2.0.0-4.rc4]
- CVE-2020-11521: Fix out-of-bounds write in planar.c (#1837621)
- CVE-2020-11523: Fix integer overflow in region.c (#1837622)
- CVE-2020-11524: Fix out-of-bounds write in interleaved.c (#1837623)

[2.0.0-2.rc4]
- Fix SCARD_INSUFFICIENT_BUFFER error (#1765199)

[2.0.0-1.rc4]
- Update to 2.0.0-rc4 (#1291254)

[1.0.2-15]
- Fix smartcard usage in manpage (#1428041)



ELSA-2026-50171 Oracle Linux 9 Unbreakable Enterprise kernel bug fix update


Oracle Linux Bug Fix Advisory ELSA-2026-50171

http://linux.oracle.com/errata/ELSA-2026-50171.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-core-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-debug-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-debug-core-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-debug-devel-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-debug-modules-extra-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-devel-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-doc-5.15.0-318.199.3.2.1.el9uek.noarch.rpm
kernel-uek-modules-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-modules-extra-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-container-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm
kernel-uek-container-debug-5.15.0-318.199.3.2.1.el9uek.x86_64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/kernel-uek-5.15.0-318.199.3.2.1.el9uek.src.rpm

Description of changes:

[5.15.0-318.199.3.2.1]
- KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE (Sean Christopherson) [Orabug: 39071316]



ELBA-2026-6010 Oracle Linux 8 gnome-shell-extensions bug fix and enhancement update


Oracle Linux Bug Fix Advisory ELBA-2026-6010

http://linux.oracle.com/errata/ELBA-2026-6010.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
gnome-classic-session-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-apps-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-auto-move-windows-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-classification-banner-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-common-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-custom-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-dash-to-dock-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-dash-to-panel-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-desktop-icons-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-disable-screenshield-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-drive-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-gesture-inhibitor-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-heads-up-display-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-horizontal-workspaces-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-launch-new-instance-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-native-window-placement-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-no-hot-corner-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-panel-favorites-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-places-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-screenshot-window-sizer-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-systemMonitor-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-top-icons-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-updates-dialog-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-user-theme-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-window-grouper-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-window-list-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-windowsNavigator-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-workspace-indicator-3.32.1-52.el8_10.noarch.rpm

aarch64:
gnome-classic-session-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-apps-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-auto-move-windows-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-classification-banner-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-common-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-custom-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-dash-to-dock-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-dash-to-panel-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-desktop-icons-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-disable-screenshield-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-drive-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-gesture-inhibitor-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-heads-up-display-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-horizontal-workspaces-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-launch-new-instance-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-native-window-placement-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-no-hot-corner-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-panel-favorites-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-places-menu-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-screenshot-window-sizer-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-systemMonitor-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-top-icons-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-updates-dialog-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-user-theme-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-window-grouper-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-window-list-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-windowsNavigator-3.32.1-52.el8_10.noarch.rpm
gnome-shell-extension-workspace-indicator-3.32.1-52.el8_10.noarch.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/gnome-shell-extensions-3.32.1-52.el8_10.src.rpm

Description of changes:

[3.32.1-52]
- Merge custom-menu entries into desktop-icons background menu
Resolves: RHEL-136187

[3.32.1-51]
- Fix menu flip in window-list
Related: RHEL-143030

[3.32.1-50]
- Support scrolling in workspace menu
Resolves: RHEL-143030



ELSA-2026-50171 Oracle Linux 8 Unbreakable Enterprise kernel bug fix update


Oracle Linux Bug Fix Advisory ELSA-2026-50171

http://linux.oracle.com/errata/ELSA-2026-50171.html

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

x86_64:
bpftool-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-core-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-debug-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-debug-core-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-debug-devel-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-debug-modules-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-debug-modules-extra-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-devel-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-doc-5.15.0-318.199.3.2.1.el8uek.noarch.rpm
kernel-uek-modules-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-modules-extra-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-container-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm
kernel-uek-container-debug-5.15.0-318.199.3.2.1.el8uek.x86_64.rpm

aarch64:
bpftool-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-core-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-debug-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-debug-core-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-debug-devel-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-debug-modules-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-debug-modules-extra-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-devel-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-doc-5.15.0-318.199.3.2.1.el8uek.noarch.rpm
kernel-uek-modules-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-modules-extra-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-container-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm
kernel-uek-container-debug-5.15.0-318.199.3.2.1.el8uek.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol8/SRPMS-updates/kernel-uek-5.15.0-318.199.3.2.1.el8uek.src.rpm

Description of changes:

[5.15.0-318.199.3.2.1]
- KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE (Sean Christopherson) [Orabug: 39071316]



ELSA-2026-5931 Important: Oracle Linux 10 firefox security update


Oracle Linux Security Advisory ELSA-2026-5931

http://linux.oracle.com/errata/ELSA-2026-5931.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
firefox-140.9.0-1.0.1.el10_1.x86_64.rpm

aarch64:
firefox-140.9.0-1.0.1.el10_1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/firefox-140.9.0-1.0.1.el10_1.src.rpm

Related CVEs:

CVE-2026-4684
CVE-2026-4685
CVE-2026-4686
CVE-2026-4687
CVE-2026-4688
CVE-2026-4689
CVE-2026-4690
CVE-2026-4691
CVE-2026-4692
CVE-2026-4693
CVE-2026-4694
CVE-2026-4695
CVE-2026-4696
CVE-2026-4697
CVE-2026-4698
CVE-2026-4699
CVE-2026-4700
CVE-2026-4701
CVE-2026-4702
CVE-2026-4704
CVE-2026-4705
CVE-2026-4706
CVE-2026-4707
CVE-2026-4708
CVE-2026-4709
CVE-2026-4710
CVE-2026-4711
CVE-2026-4712
CVE-2026-4713
CVE-2026-4714
CVE-2026-4715
CVE-2026-4716
CVE-2026-4717
CVE-2026-4718
CVE-2026-4719
CVE-2026-4720
CVE-2026-4721

Description of changes:

[140.9.0-1.0.1]
- Fix firefox-oracle-default-prefs.js for new nss [Orabug: 37079773]
- Add firefox-oracle-default-prefs.js and remove the corresponding Red Hat file

[140.9.0-1]
- Update to 140.9.0 ESR



ELSA-2026-6188 Important: Oracle Linux 9 thunderbird security update


Oracle Linux Security Advisory ELSA-2026-6188

http://linux.oracle.com/errata/ELSA-2026-6188.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
thunderbird-140.9.0-1.0.1.el9_7.x86_64.rpm

aarch64:
thunderbird-140.9.0-1.0.1.el9_7.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates/thunderbird-140.9.0-1.0.1.el9_7.src.rpm

Related CVEs:

CVE-2026-3889
CVE-2026-4371
CVE-2026-4684
CVE-2026-4685
CVE-2026-4686
CVE-2026-4687
CVE-2026-4688
CVE-2026-4689
CVE-2026-4690
CVE-2026-4691
CVE-2026-4692
CVE-2026-4693
CVE-2026-4694
CVE-2026-4695
CVE-2026-4696
CVE-2026-4697
CVE-2026-4698
CVE-2026-4699
CVE-2026-4700
CVE-2026-4701
CVE-2026-4702
CVE-2026-4704
CVE-2026-4705
CVE-2026-4706
CVE-2026-4707
CVE-2026-4708
CVE-2026-4709
CVE-2026-4710
CVE-2026-4711
CVE-2026-4712
CVE-2026-4713
CVE-2026-4714
CVE-2026-4715
CVE-2026-4716
CVE-2026-4717
CVE-2026-4718
CVE-2026-4719
CVE-2026-4720
CVE-2026-4721

Description of changes:

[140.9.0-1.0.1]
- Fix prefs for new nss [Orabug: 37079813]
- Add Oracle prefs

[140.9.0]
- Add OpenELA debranding

[140.9.0-1]
- Update to 140.9.0 ESR



ELSA-2026-6053 Moderate: Oracle Linux 10 kernel security update


Oracle Linux Security Advisory ELSA-2026-6053

http://linux.oracle.com/errata/ELSA-2026-6053.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-abi-stablelists-6.12.0-124.47.1.el10_1.noarch.rpm
kernel-core-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-cross-headers-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-core-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-devel-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-devel-matched-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-modules-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-modules-core-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-modules-extra-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-debug-uki-virt-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-devel-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-devel-matched-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-doc-6.12.0-124.47.1.el10_1.noarch.rpm
kernel-headers-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-modules-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-modules-core-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-modules-extra-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-modules-extra-matched-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-tools-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-tools-libs-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-tools-libs-devel-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-uki-virt-6.12.0-124.47.1.el10_1.x86_64.rpm
kernel-uki-virt-addons-6.12.0-124.47.1.el10_1.x86_64.rpm
libperf-6.12.0-124.47.1.el10_1.x86_64.rpm
perf-6.12.0-124.47.1.el10_1.x86_64.rpm
python3-perf-6.12.0-124.47.1.el10_1.x86_64.rpm
rtla-6.12.0-124.47.1.el10_1.x86_64.rpm
rv-6.12.0-124.47.1.el10_1.x86_64.rpm

aarch64:
kernel-cross-headers-6.12.0-124.47.1.el10_1.aarch64.rpm
kernel-headers-6.12.0-124.47.1.el10_1.aarch64.rpm
kernel-tools-6.12.0-124.47.1.el10_1.aarch64.rpm
kernel-tools-libs-6.12.0-124.47.1.el10_1.aarch64.rpm
kernel-tools-libs-devel-6.12.0-124.47.1.el10_1.aarch64.rpm
libperf-6.12.0-124.47.1.el10_1.aarch64.rpm
perf-6.12.0-124.47.1.el10_1.aarch64.rpm
python3-perf-6.12.0-124.47.1.el10_1.aarch64.rpm
rtla-6.12.0-124.47.1.el10_1.aarch64.rpm
rv-6.12.0-124.47.1.el10_1.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/kernel-6.12.0-124.47.1.el10_1.src.rpm

Related CVEs:

CVE-2025-71238
CVE-2026-23231

Description of changes:

[6.12.0-124.47.1]
- Add new Oracle Linux Driver Signing (key 1) certificate [Orabug: 37985782]
- Disable UKI signing [Orabug: 36571828]
- Update Oracle Linux certificates (Kevin Lyons)
- Disable signing for aarch64 (Ilya Okomin)
- Oracle Linux RHCK Module Signing Key was added to the kernel trusted keys list (olkmod_signing_key.pem) [Orabug: 29539237]
- Update x509.genkey [Orabug: 24817676]
- Conflict with shim-ia32 and shim-x64 paused, not just clear it (Ilya Dryomov) [Orabug: 38930821] {CVE-2026-23047}
- libceph: return the handler error from mon_handle_auth_done() (Ilya Dryomov) [Orabug: 38887697] {CVE-2026-22992}
- libceph: make free_choose_arg_map() resilient to partial allocation (Tuo Li) [Orabug: 38887691] {CVE-2026-22991}
- libceph: replace overzealous BUG_ON in osdmap_apply_incremental() (Ilya Dryomov) [Orabug: 38887685] {CVE-2026-22990}
- libceph: prevent potential out-of-bounds reads in handle_auth_done() (Ziming Zhang) [Orabug: 38887673] {CVE-2026-22984}
- wifi: avoid kernel-infoleak from struct iw_point (Eric Dumazet) [Orabug: 38887650] {CVE-2026-22978}
- drm/pl111: Fix error handling in pl111_amba_probe (Miaoqian Lin)
- lib/crypto: aes: Fix missing MMU protection for AES S-box (Eric Biggers)
- mei: me: add nova lake point S DID (Alexander Usyskin)
- net: 3com: 3c59x: fix possible null dereference in vortex_probe1() (Thomas Fourier) [Orabug: 38914755] {CVE-2026-23020}
- atm: Fix dma_free_coherent() size (Thomas Fourier)
- usb: gadget: lpc32xx_udc: fix clock imbalance in error path (Johan Hovold)
- net: ethtool: fix the error condition in ethtool_get_phy_stats_ethtool() (Su Hui) [Orabug: 39004163] {CVE-2024-40928}
- firmware: arm_scmi: Fix unused notifier-block in unregister (Amitai Gottlieb)
- ext4: fix error message when rejecting the default hash (Gabriel Krisman Bertazi)
- ext4: factor out ext4_hash_info_init() (Jason Yan)
- ext4: filesystems without casefold feature cannot be mounted with siphash (Lizhi Xu) [Orabug: 37206152] {CVE-2024-49968}
- pwm: stm32: Always program polarity (Sean Nyekjaer)
- x86: remove __range_not_ok() (Arnd Bergmann)
- selftests: net: test_vxlan_under_vrf: fix HV connectivity test (Andrea Righi)
- ipv4: Fix uninit-value access in __ip_make_skb() (Shigeru Yoshida) [Orabug: 36683410] {CVE-2024-36927}
- ipv6: Fix potential uninit-value access in __ip6_make_skb() (Shigeru Yoshida) [Orabug: 36683284] {CVE-2024-36903}
- KVM: arm64: sys_regs: disable -Wuninitialized-const-pointer warning (Justin Stitt)
- HID: core: Harden s32ton() against conversion to 0 bits (Alan Stern) [Orabug: 38334903] {CVE-2025-38556}
- KVM: x86: Acquire kvm->srcu when handling KVM_SET_VCPU_EVENTS (Sean Christopherson) [Orabug: 37116451] {CVE-2024-46830}
- page_pool: Fix use-after-free in page_pool_recycle_in_ring (Dong Chenchen) [Orabug: 38152994] {CVE-2025-38129}
- drm/i915/selftests: fix subtraction overflow bug (Andrzej Hajda)
- mmc: core: use sysfs_emit() instead of sprintf() (Sergey Shtylyov)
- net: Remove RTNL dance for SIOCBRADDIF and SIOCBRDELIF. (Thadeu Lima de Souza Cascardo) [Orabug: 37844500] {CVE-2025-22111}
- drm/gma500: Remove unused helper psb_fbdev_fb_setcolreg() (Thomas Zimmermann)
- wifi: mac80211: Discard Beacon frames to non-broadcast address (Jouni Malinen) [Orabug: 38852361] {CVE-2025-71127}
- ASoC: stm32: sai: fix OF node leak on probe (Johan Hovold)
- lockd: fix vfs_test_lock() calls (Neil Brown)
- powerpc/pseries/cmm: adjust BALLOON_MIGRATE when migrating pages (David Hildenbrand)
- mm/balloon_compaction: convert balloon_page_delete() to balloon_page_finalize() (David Hildenbrand)
- mm/balloon_compaction: we cannot have isolated pages in the balloon list (David Hildenbrand)
- mm/balloon_compaction: make balloon page compaction callbacks static (Miaohe Lin)
- ASoC: stm32: sai: fix clk prepare imbalance on probe failure (Johan Hovold)
- ASoC: stm32: sai: Use the devm_clk_get_optional() helper (Christophe Jaillet)
- ASoC: stm: Use dev_err_probe() helper (Kuninori Morimoto)
- r8169: fix RTL8117 Wake-on-Lan in DASH mode (René Rebe)
- iommu/qcom: fix device leak on of_xlate() (Johan Hovold)
- powerpc/64s/slb: Fix SLB multihit issue during SLB preload (Donet Tom)
- PCI: brcmstb: Fix disabling L0s capability (Jim Quinlan)
- powerpc/pseries/cmm: call balloon_devinfo_init() also without CONFIG_BALLOON_COMPACTION (David Hildenbrand)
- media: renesas: rcar_drif: fix device node reference leak in rcar_drif_bond_enabled (Miaoqian Lin)
- media: samsung: exynos4-is: fix potential ABBA deadlock on init (Marek Szyprowski)
- NFSD: NFSv4 file creation neglects setting ACL (Chuck Lever) [Orabug: 38847872] {CVE-2025-68803}
- media: verisilicon: Protect G2 HEVC decoder against invalid DPB index (Nicolas Dufresne)
- media: vpif_capture: fix section mismatch (Johan Hovold)
- media: mediatek: vcodec: Fix a reference leak in mtk_vcodec_fw_vpu_init() (Haoxiang Li)
- SUNRPC: svcauth_gss: avoid NULL deref on zero length gss_token in gss_read_proxy_verf (Joshua Rogers) [Orabug: 38852341] {CVE-2025-71120}
- KVM: SVM: Mark VMCB_NPT as dirty on nested VMRUN (Jim Mattson)
- crypto: af_alg - zero initialize memory allocated via sock_kmalloc (Shivani Agarwal) [Orabug: 38852312] {CVE-2025-71113}
- svcrdma: bound check rq_pages index in inline path (Joshua Rogers) [Orabug: 38847976] {CVE-2025-71068}
- ARM: dts: microchip: sama7g5: fix uart fifo size to 32 (Nicolas Ferre)
- usb: ohci-nxp: fix device leak on probe failure (Johan Hovold)
- usb: ohci-nxp: Use helper function devm_clk_get_enabled() (Zhang Zekun)
- mptcp: pm: ignore unknown endpoint flags (Matthieu Baerts)
- usb: dwc3: keep susphy enabled during exit to avoid controller faults (Udipto Goswami)
- f2fs: fix to avoid updating zero-sized extent in extent cache (Chao Yu)
- f2fs: fix to propagate error from f2fs_enable_checkpoint() (Chao Yu)
- f2fs: use global inline_xattr_slab instead of per-sb slab cache (Chao Yu)
- f2fs: fix to detect recoverable inode during dryrun of find_fsync_dnodes() (Chao Yu)
- xfs: fix a memory leak in xfs_buf_item_init() (Haoxiang Li)
- KVM: nVMX: Immediately refresh APICv controls as needed on nested VM-Exit (Dongli Zhang)
- NFSD: Clear SECLABEL in the suppattr_exclcreat bitmap (Chuck Lever)
- ALSA: wavefront: Fix integer overflow in sample size validation (Junrui Luo)
- ALSA: wavefront: Use standard print API (Takashi Iwai)
- ALSA: wavefront: Clear substream pointers on close (Junrui Luo)
- wifi: mt76: Fix DTS power-limits on little endian systems (Sven Eckelmann)
- btrfs: don't rewrite ret from inode_permission (Josef Bacik)
- tpm: Cap the number of PCR banks (Jarkko Sakkinen) [Orabug: 38848017] {CVE-2025-71077}
- jbd2: fix the inconsistency between checksum and data in memory for journal sb (Ye Bin)
- xhci: dbgtty: fix device unregister (Łukasz Bartosik)
- xhci: dbgtty: use IDR to support several dbc instances. (Mathias Nyman)
- usb: gadget: udc: fix use-after-free in usb_gadget_state_work (Jimmy Hu) [Orabug: 38773636] {CVE-2025-68282}
- usb: xhci: Apply the link chain quirk on NEC isoc endpoints (Michał Pecio) [Orabug: 37844150] {CVE-2025-22022}
- usb: xhci: move link chain bit quirk checks into one helper function. (Niklas Neronin)
- drm/vmwgfx: Fix a null-ptr access in the cursor snooper (Zack Rusin) [Orabug: 38643537] {CVE-2025-40110}
- virtio_console: fix order of fields cols and rows (Maximilian Immanuel Brandtner)
- kbuild: Use CRC32 and a 1MiB dictionary for XZ compressed modules (Martin Nybo Andersen)
- mm/damon/tests/core-kunit: handle memory alloc failure from damon_test_aggregate() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_split_regions_of() (Seongjae Park)
- mm/damon/tests/core-kunit: handle memory failure from damon_test_target() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_merge_two() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on dasmon_test_merge_regions_of() (Seongjae Park)
- mm/damon/tests/core-kunit: handle alloc failures on damon_test_split_at() (Seongjae Park)
- mm/damon/tests/core-kunit: handle allocation failures in damon_test_regions() (Seongjae Park)
- mm/damon/tests/vaddr-kunit: handle alloc failures on damon_test_split_evenly_succ() (Seongjae Park)
- RDMA/core: Fix "KASAN: slab-use-after-free Read in ib_register_device" problem (Zhu Yanjun) [Orabug: 38094814] {CVE-2025-38022}
- mm/damon/tests/vaddr-kunit: handle alloc failures on damon_do_test_apply_three_regions() (Seongjae Park)
- mm/damon/tests/vaddr-kunit: handle alloc failures in damon_test_split_evenly_fail() (Seongjae Park)
- drm/nouveau/dispnv50: Don't call drm_atomic_get_crtc_state() in prepare_fb (Lyude Paul)
- drm/ttm: Avoid NULL pointer deref for evicted BOs (Simon Richter) [Orabug: 38848052] {CVE-2025-71083}
- drm/msm/a6xx: Fix out of bound IO access in a6xx_get_gmu_registers (Akhil P Oommen)
- net: nfc: fix deadlock between nfc_unregister_device and rfkill_fop_write (Deepanshu Kartikey)
- net: usb: sr9700: fix incorrect command used to write single register (Ethan Nelson-Moore)
- nfsd: Drop the client reference in client_states_open() (Haoxiang Li)
- fjes: Add missing iounmap in fjes_hw_init() (Haoxiang Li)
- e1000: fix OOB in e1000_tbi_should_accept() (Guangshuo Li) [Orabug: 38848099] {CVE-2025-71093}
- RDMA/cm: Fix leaking the multicast GID table reference (Jason Gunthorpe) [Orabug: 38848058] {CVE-2025-71084}
- RDMA/core: Check for the presence of LS_NLA_TYPE_DGID correctly (Jason Gunthorpe) [Orabug: 38848117] {CVE-2025-71096}
- idr: fix idr_alloc() returning an ID out of range (Matthew Wilcox)
- media: i2c: adv7842: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: i2c: ADV7604: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: TDA1997x: Remove redundant cancel_delayed_work in probe (Duoming Zhou)
- media: msp3400: Avoid possible out-of-bounds array accesses in msp3400c_thread() (Ivan Abramov)
- media: cec: Fix debugfs leak on bus_register() failure (Xu Wang)
- fbdev: tcx.c fix mem_map to correct smem_start offset (René Rebe)
- fbdev: pxafb: Fix multiple clamped values in pxafb_adjust_timing (Thorsten Blum)
- fbdev: gbefb: fix to use physical address instead of dma address (René Rebe)
- dm-ebs: Mark full buffer dirty even on partial write (Uladzislau Rezki)
- media: adv7842: Avoid possible out-of-bounds array accesses in adv7842_cp_log_status() (Ivan Abramov)
- parisc: entry: set W bit for !compat tasks in syscall_restore_rfi() (Sven Schnelle)
- parisc: entry.S: fix space adjustment on interruption for 64-bit userspace (Sven Schnelle)
- media: rc: st_rc: Fix reset control resource leak (Xu Wang)
- mfd: max77620: Fix potential IRQ chip conflict when probing two devices (Krzysztof Kozlowski)
- mfd: altera-sysmgr: Fix device leak on sysmgr regmap lookup (Johan Hovold)
- leds: leds-lp50xx: LP5009 supports 3 modules for a total of 9 LEDs (Christian Hitz)
- leds: leds-lp50xx: Allow LED 0 to be added to module bank (Christian Hitz)
- PCI/PM: Reinstate clearing state_saved in legacy and !PM codepaths (Lukas Wunner)
- HID: logitech-dj: Remove duplicate error logging (Hans de Goede)
- iommu/tegra: fix device leak on probe_device() (Johan Hovold)
- iommu/sun50i: fix device leak on of_xlate() (Johan Hovold)
- iommu/omap: fix device leaks on probe_device() (Johan Hovold)
- iommu/mediatek: fix device leak on of_xlate() (Johan Hovold)
- iommu/mediatek-v1: fix device leak on probe_device() (Johan Hovold)
- iommu/ipmmu-vmsa: fix device leak on of_xlate() (Johan Hovold)
- iommu/exynos: fix device leak on of_xlate() (Johan Hovold)
- iommu/apple-dart: fix device leak on of_xlate() (Johan Hovold)
- ASoC: qcom: qdsp6: q6asm-dai: set 10 ms period and buffer alignment. (Srinivas Kandagatla)
- ASoC: qcom: q6adm: the the copp device only during last instance (Srinivas Kandagatla)
- ASoC: qcom: q6asm-dai: perform correct state check before closing (Srinivas Kandagatla)
- ASoC: stm32: sai: fix device leak on probe (Johan Hovold)
- selftests/ftrace: traceonoff_triggers: strip off names (Yipeng Zou)
- RDMA/bnxt_re: fix dma_free_coherent() pointer (Thomas Fourier)
- RDMA/rtrs: Fix clt_path::max_pages_per_mr calculation (Lihonggang)
- RDMA/bnxt_re: Fix to use correct page size for PDE table (Kalesh Ap)
- RDMA/bnxt_re: Fix IB_SEND_IP_CSUM handling in post_send (Alok Tiwari)
- RDMA/bnxt_re: Fix incorrect BAR check in bnxt_qplib_map_creq_db() (Alok Tiwari)
- RDMA/core: Fix logic error in ib_get_gids_from_rdma_hdr() (Jang Ingyu)
- RDMA/efa: Remove possible negative shift (Michael Margolin)
- RDMA/irdma: avoid invalid read in irdma_net_event (Michal Schmidt) [Orabug: 38852379] {CVE-2025-71133}
- net: rose: fix invalid array index in rose_kill_by_device() (Pwnverse)
- ipv4: Fix reference count leak when using error routes with nexthop objects (Ido Schimmel) [Orabug: 38848125] {CVE-2025-71097}
- ipv6: BUG() in pskb_expand_head() as part of calipso_skbuff_setattr() (Will Rosenberg) [Orabug: 38848061] {CVE-2025-71085}
- octeontx2-pf: fix "UBSAN: shift-out-of-bounds error" (Anshumali Gaur)
- net: bridge: Describe @tunnel_hash member in net_bridge_vlan_group struct (Bagas Sanjaya)
- net: usb: asix: validate PHY address before use (Deepanshu Kartikey) [Orabug: 38848107] {CVE-2025-71094}
- net: dsa: b53: skip multicast entries for fdb_dump() (Jonas Gorski)
- firewire: nosy: Fix dma_free_coherent() size (Thomas Fourier)
- genalloc.h: fix htmldocs warning (Andrew Morton)
- smc91x: fix broken irq-context in PREEMPT_RT (Levi Yun) [Orabug: 38852376] {CVE-2025-71132}
- net: usb: rtl8150: fix memory leak on usb_submit_urb() failure (Deepakkumar Karn) [Orabug: 38887620] {CVE-2025-71154}
- team: fix check for port enabled in team_queue_override_port_prio_changed() (Jiri Pirko) [Orabug: 38848088] {CVE-2025-71091}
- platform/x86: ibm_rtl: fix EBDA signature search pointer arithmetic (Junrui Luo)
- platform/x86: msi-laptop: add missing sysfs_remove_group() (Thomas Fourier)
- ip6_gre: make ip6gre_header() robust (Eric Dumazet) [Orabug: 38848131] {CVE-2025-71098}
- net: openvswitch: Avoid needlessly taking the RTNL on vport destroy (Toke Høiland-Jørgensen)
- net: mdio: aspeed: add dummy read to avoid read-after-write issue (Jacky Chou)
- net: mdio: aspeed: move reg accessing part into separate functions (Potin Lai)
- Bluetooth: btusb: revert use of devm_kzalloc in btusb (Raphael Pinsonneault-Thibeault) [Orabug: 38848044] {CVE-2025-71082}
- crypto: seqiv - Do not use req->iv after crypto_aead_encrypt (Herbert Xu) [Orabug: 38852370] {CVE-2025-71131}
- iavf: fix off-by-one issues in iavf_config_rss_reg() (Kohei Enju) [Orabug: 38848073] {CVE-2025-71087}
- i40e: Refactor argument of i40e_detect_recover_hung() (Ivan Vecera)
- i40e: Refactor argument of several client notification functions (Ivan Vecera)
- i40e: fix scheduling in set_rx_mode (Przemyslaw Korba)
- hwmon: (w83l786ng) Convert macros to functions to avoid TOCTOU (Gui-Dong Han)
- hwmon: (w83791d) Convert macros to functions to avoid TOCTOU (Gui-Dong Han) [Orabug: 38852300] {CVE-2025-71111}
- hwmon: (max16065) Use local variable to avoid TOCTOU (Gui-Dong Han)
- i2c: amd-mp2: fix reference leak in MP2 PCI device (Ma Ke)
- rpmsg: glink: fix rpmsg device leak (Srinivas Kandagatla)
- soc: amlogic: canvas: fix device leak on lookup (Johan Hovold)
- soc: qcom: ocmem: fix device leak on lookup (Johan Hovold)
- amba: tegra-ahb: Fix device leak on SMMU enable (Johan Hovold)
- drm/amd/display: Use GFP_ATOMIC in dc_create_plane_state() (Alex Deucher)
- io_uring: fix filename leak in __io_openat_prep() (Prithvi Tambewagh)
- svcrdma: return 0 on success from svc_rdma_copy_inline_range (Joshua Rogers)
- nfsd: Mark variable __maybe_unused to avoid W=1 build break (Andy Shevchenko)
- fsnotify: do not generate ACCESS/MODIFY events on child for special files (Amir Goldstein) [Orabug: 38847800] {CVE-2025-68788}
- tracing: Do not register unsupported perf events (Steven Rostedt) [Orabug: 38852355] {CVE-2025-71125}
- KVM: nSVM: Clear exit_code_hi in VMCB when synthesizing nested VM-Exits (Sean Christopherson)
- KVM: nSVM: Set exit_code_hi to -1 when synthesizing SVM_EXIT_ERR (failed VMRUN) (Sean Christopherson)
- KVM: nSVM: Propagate SVM_EXIT_CR0_SEL_WRITE correctly for LMSW emulation (Yosry Ahmed)
- KVM: x86: Fix VM hard lockup after prolonged inactivity with periodic HV timer (Fuqiang Wang) [Orabug: 38852273] {CVE-2025-71104}
- KVM: x86: Explicitly set new periodic hrtimer expiration in apic_timer_fn() (Fuqiang Wang)
- KVM: x86: WARN if hrtimer callback for periodic APIC timer fires with period=0 (Sean Christopherson)
- libceph: make decode_pool() more resilient against corrupted osdmaps (Ilya Dryomov) [Orabug: 38852325] {CVE-2025-71116}
- parisc: Do not reprogram affinitiy on ASP chip (Helge Deller)
- scs: fix a wrong parameter in __scs_magic (Zhichi Lin)
- platform/chrome: cros_ec_ishtp: Fix UAF after unbinding driver (Tzung-Bi Shih)
- ocfs2: fix kernel BUG in ocfs2_find_victim_chain (Prithvi Tambewagh) [Orabug: 38847688] {CVE-2025-68771}
- media: vidtv: initialize local pointers upon transfer of memory ownership (Jeongjun Park)
- tools/testing/nvdimm: Use per-DIMM device handle (Alison Schofield)
- f2fs: fix return value of f2fs_recover_fsync_data() (Chao Yu)
- f2fs: invalidate dentry cache on failed whiteout creation (Deepanshu Kartikey)
- scsi: target: Reset t_task_cdb pointer in error case (Andrey Vatoropin) [Orabug: 38847770] {CVE-2025-68782}
- NFSD: use correct reservation type in nfsd4_scsi_fence_client (Dai Ngo)
- scsi: aic94xx: fix use-after-free in device removal path (Junrui Luo) [Orabug: 38848009] {CVE-2025-71075}
- scsi: Revert "scsi: qla2xxx: Perform lockless command completion in abort path" (Tony Battersby) [Orabug: 38847931] {CVE-2025-68818}
- cpufreq: nforce2: fix reference count leak in nforce2 (Miaoqian Lin)
- intel_th: Fix error handling in intel_th_output_open (Ma Ke)
- char: applicom: fix NULL pointer dereference in ac_ioctl (Tianchu Chen)
- usb: renesas_usbhs: Fix a resource leak in usbhs_pipe_malloc() (Haoxiang Li)
- usb: dwc3: of-simple: fix clock resource leak in dwc3_of_simple_probe (Miaoqian Lin)
- usb: phy: isp1301: fix non-OF device reference imbalance (Johan Hovold)
- USB: lpc32xx_udc: Fix error handling in probe (Ma Ke)
- phy: broadcom: bcm63xx-usbh: fix section mismatches (Johan Hovold)
- media: pvrusb2: Fix incorrect variable used in trace message (Colin Ian King)
- media: dvb-usb: dtv5100: fix out-of-bounds in dtv5100_i2c_msg() (Jeongjun Park) [Orabug: 38847937] {CVE-2025-68819}
- usb: usb-storage: Maintain minimal modifications to the bcdDevice range. (Chenchangcheng)
- media: v4l2-mem2mem: Fix outdated documentation (Laurent Pinchart)
- jbd2: use a weaker annotation in journal handling (Byungchul Park)
- ext4: fix incorrect group number assertion in mb_check_buddy (Yongjian Sun)
- ext4: xattr: fix null pointer deref in ext4_raw_inode() (Karina Yankevich) [Orabug: 38848276] {CVE-2025-68820}
- ktest.pl: Fix uninitialized var in config-bisect.pl (Steven Rostedt)
- floppy: fix for PAGE_SIZE != 4KB (René Rebe)
- block: rate-limit capacity change info log (Li Chen)
- lib/crypto: x86/blake2s: Fix 32-bit arg treated as 64-bit (Eric Biggers)
- mmc: sdhci-msm: Avoid early clock doubling during HS400 transition (Sarthak Garg)
- KEYS: trusted: Fix a memory leak in tpm2_load_cmd (Jarkko Sakkinen) [Orabug: 38887597] {CVE-2025-71147}
- vhost/vsock: improve RCU read sections around vhost_vsock_get() (Stefano Garzarella)
- platform/x86/intel/hid: Add Dell Pro Rugged 10/12 tablet to VGBS DMI quirks (Chia-Lin Kao)
- nvme-fc: don't hold rport lock when putting ctrl (Daniel Wagner)
- serial: sprd: Return -EPROBE_DEFER when uart clock is not ready (Wenhua Lin)
- usb: usb-storage: No additional quirks need to be added to the EL-R12 optical drive. (Chenchangcheng)
- usb: xhci: limit run_graceperiod for only usb 3.0 devices (Hongyu Xie)
- usb: typec: ucsi: Handle incorrect num_connectors capability (Mark Pearson) [Orabug: 38852285] {CVE-2025-71108}
- usbip: Fix locking bug in RT-enabled kernels (Lizhi Xu)
- exfat: fix remount failure in different process environments (Yuezhang Mo)
- via_wdt: fix critical boot hang due to unnamed resource allocation (Li Qiang) [Orabug: 38852318] {CVE-2025-71114}
- scsi: qla2xxx: Use reinit_completion on mbx_intr_comp (Tony Battersby)
- scsi: qla2xxx: Fix initiator mode with qlini_mode=exclusive (Tony Battersby)
- scsi: qla2xxx: Fix lost interrupts with qlini_mode=disabled (Tony Battersby)
- powerpc/addnote: Fix overflow on 32-bit builds (Ben Collins)
- clk: mvebu: cp110 add CLK_IGNORE_UNUSED to pcie_x10, pcie_x11 & pcie_x4 (Josua Mayer)
- ti-sysc: allow OMAP2 and OMAP4 timers to be reserved on AM33xx (Matthias Schiffer)
- firmware: imx: scu-irq: Init workqueue before request mbox channel (Peng Fan)
- ipmi: Fix __scan_channels() failing to rescan channels (Jinhui Guo)
- ipmi: Fix the race between __scan_channels() and deliver_response() (Jinhui Guo)
- ALSA: usb-mixer: us16x08: validate meter packet indices (Shipei Qu) [Orabug: 38847775] {CVE-2025-68783}
- ALSA: pcmcia: Fix resource leak in snd_pdacf_probe error path (Xu Wang)
- ALSA: vxpocket: Fix resource leak in vxpocket_probe error path (Xu Wang)
- net/hsr: fix NULL pointer dereference in prp_get_untagged_frame() (Shaurya Rane) [Orabug: 38847724] {CVE-2025-68776}
- mmc: sdhci-esdhc-imx: add alternate ARCH_S32 dependency to Kconfig (Jared Kangas)
- spi: fsl-cpm: Check length parity before switching to 16 bit mode (Christophe Leroy)
- ACPI: CPPC: Fix missing PCC check for guaranteed_perf (Pengjie Zhang)
- Input: i8042 - add TUXEDO InfinityBook Max Gen10 AMD to i8042 quirk table (Christoffer Sandberg)
- Input: ti_am335x_tsc - fix off-by-one error in wire_order validation (Junjie Cao)
- HID: input: map HID_GD_Z to ABS_DISTANCE for stylus/pen (Ping Cheng)
- net: hns3: add VLAN id validation before using (Jian Shen)
- net: hns3: using the num_tqps to check whether tqp_index is out of range when vf get ring info from mbx (Jian Shen)
- net: hns3: Align type of some variables with their print type (Hao Chen)
- net: hns3: using the num_tqps in the vf driver to apply for resources (Jian Shen)
- net/mlx5: fw_tracer, Handle escaped percent properly (Shay Drory)
- net/mlx5: fw_tracer, Validate format string parameters (Shay Drory) [Orabug: 38847914] {CVE-2025-68816}
- ethtool: Avoid overflowing userspace buffer on stats query (Gal Pressman) [Orabug: 38847826] {CVE-2025-68795}
- net/ethtool/ioctl: split ethtool_get_phy_stats into multiple helpers (Daniil Tatianin)
- net/ethtool/ioctl: remove if n_stats checks from ethtool_get_phy_stats (Daniil Tatianin)
- ethtool: use phydev variable (Tom Rix)
- nfc: pn533: Fix error code in pn533_acr122_poweron_rdr() (Dan Carpenter)
- net/sched: ets: Remove drr class from the active list if it changes to strict (Victor Nogueira) [Orabug: 38847910] {CVE-2025-68815}
- caif: fix integer underflow in cffrml_receive() (Junrui Luo)
- ipvs: fix ipv4 null-ptr-deref in route error path (Slavin Liu) [Orabug: 38847900] {CVE-2025-68813}
- netfilter: nf_conncount: fix leaked ct in error paths (Fernando Fernandez Mancera) [Orabug: 38974757] {CVE-2025-71146}
- broadcom: b44: prevent uninitialized value usage (Alexey Simakov)
- net: openvswitch: fix middle attribute validation in push_nsh() action (Ilya Maximets) [Orabug: 38847784] {CVE-2025-68785}
- mlxsw: spectrum_mr: Fix use-after-free when updating multicast route stats (Ido Schimmel)
- mlxsw: spectrum_router: Fix neighbour use-after-free (Ido Schimmel)
- ipvlan: Ignore PACKET_LOOPBACK in handle_mode_l2() (Dmitry Skorodumov)
- net/sched: ets: Always remove class from active list before deleting in ets_qdisc_change (Jamal Hadi Salim) [Orabug: 38847965] {CVE-2025-71066}
- netrom: Fix memory leak in nr_sendmsg() (Wang Liang)
- Bluetooth: btusb: Add new VID/PID 13d3/3533 for RTL8821CE (Gongwei Li)
- btrfs: scrub: always update btrfs_scrub_progress::last_physical (Qu Wenruo)
- hfsplus: fix volume corruption issue for generic/073 (Viacheslav Dubeyko)
- hfsplus: Verify inode mode when loading from disk (Tetsuo Handa)
- hfsplus: fix missing hfs_bnode_get() in __hfs_bnode_create (Yang Chenzhi)
- hfsplus: fix volume corruption issue for generic/070 (Viacheslav Dubeyko)
- fs/ntfs3: Support timestamps prior to epoch (Konstantin Komarov)
- livepatch: Match old_sympos 0 and 1 in klp_find_func() (Song Liu)
- cpufreq: s5pv210: fix refcount leak (Shuhao Fu)
- ACPI: property: Use ACPI functions in acpi_graph_get_next_endpoint() only (Sakari Ailus)
- ACPICA: Avoid walking the Namespace if start_node is NULL (Cryolitia Pukngae) [Orabug: 38852333] {CVE-2025-71118}
- x86/ptrace: Always inline trivial accessors (Peter Zijlstra)
- sched/deadline: only set free_cpus for online runqueues (Doug Berger) [Orabug: 38847753] {CVE-2025-68780}
- btrfs: fix memory leak of fs_devices in degraded seed device path (Deepanshu Kartikey)
- bpf, arm64: Do not audit capability check in do_jit() (Ondrej Mosnacek)
- spi: tegra210-quad: Fix X1_X2_X4 encoding and support x4 transfers (Vishwaroop A)
- coresight: etm4x: Correct polling IDLE bit (Leo Yan)
- netfilter: nf_conncount: garbage collection is not skipped when jiffies wrap around (Nicklas Bo Jensen)
- NFS: Fix missing unlock in nfs_unlink() (Sun Ke)
- ASoC: fsl_xcvr: get channel status data when PHY is not exists (Shengjiu Wang)
- ALSA: dice: fix buffer overflow in detect_stream_formats() (Junrui Luo) [Orabug: 38798767] {CVE-2025-68346}
- usb: phy: Initialize struct usb_phy list_head (Diogo Ivo)
- usb: gadget: tegra-xudc: Always reinitialize data toggle when clear halt (Haotien Hsu)
- ocfs2: fix memory leak in ocfs2_merge_rec_left() (Dmitry Antipov)
- efi/cper: align ARM CPER type with UEFI 2.9A/2.10 specs (Mauro Carvalho Chehab)
- efi/cper: Adjust infopfx size to accept an extra space (Mauro Carvalho Chehab)
- efi/cper: Add a new helper function to print bitmasks (Mauro Carvalho Chehab)
- dm log-writes: Add missing set_freezable() for freezable kthread (Xu Wang)
- dm-raid: fix possible NULL dereference with undefined raid type (Alexey Simakov)
- ARM: 9464/1: fix input-only operand modification in load_unaligned_zeropad() (Pangliyuan)
- ALSA: uapi: Fix typo in asound.h comment (Andres J Rosa)
- dma/pool: eliminate alloc_pages warning in atomic_pool_expand (Dave Kleikamp)
- blk-mq: Abort suspend when wakeup events are pending (Cong Zhang)
- ASoC: ak5558: Disable regulator when error happens (Shengjiu Wang)
- ASoC: ak4458: Disable regulator when error happens (Shengjiu Wang)
- ASoC: bcm: bcm63xx-pcm-whistler: Check return value of of_dma_configure() (Xu Wang)
- platform/x86: asus-wmi: use brightness_set_blocking() for kbd led (Anton Khirnov)
- fs/nls: Fix inconsistency between utf8_to_utf32() and utf32_to_utf8() (Armin Wolf)
- NFS: Automounted filesystems should inherit ro,noexec,nodev,sync flags (Trond Myklebust) [Orabug: 38818237] {CVE-2025-68764}
- fs_context: drop the unused lsm_flags member (Ondrej Mosnacek)
- Revert "nfs: ignore SB_RDONLY when mounting nfs" (Trond Myklebust)
- Revert "nfs: clear SB_RDONLY before getting superblock" (Trond Myklebust)
- Revert "nfs: ignore SB_RDONLY when remounting nfs" (Trond Myklebust)
- NFSv4/pNFS: Clear NFS_INO_LAYOUTCOMMIT in pnfs_mark_layout_stateid_invalid (Jonathan Curley) [Orabug: 38798775] {CVE-2025-68349}
- NFS: Initialise verifiers for visible dentries in nfs_atomic_open() (Trond Myklebust)
- NFS: Fix the verifier for case sensitive filesystem in nfs_atomic_open() (Trond Myklebust)
- NFSv4: Add some support for case insensitive filesystems (Trond Myklebust)
- fs/nls: Fix utf16 to utf8 conversion (Armin Wolf)
- NFS: Avoid changing nlink when file removes and attribute updates race (Trond Myklebust)
- NFS: don't unhash dentry during unlink/rename (Neil Brown)
- NFS: Label the dentry with a verifier in nfs_rmdir() and nfs_unlink() (Trond Myklebust)
- fbdev: ssd1307fb: fix potential page leak in ssd1307fb_probe() (Abdun Nihaal)
- pinctrl: single: Fix incorrect type for error return variable (Xu Wang)
- pinctrl: single: Fix PIN_CONFIG_BIAS_DISABLE handling (Matthijs Kooijman)
- perf tools: Fix split kallsyms DSO counting (Namhyung Kim)
- remoteproc: qcom_q6v5_wcss: fix parsing of qcom,halt-regs (Alexandru Gagniuc)
- mtd: lpddr_cmds: fix signed shifts in lpddr_cmds (Ivan Stepchenko)
- net: stmmac: fix rx limit check in stmmac_rx_zc() (Alexey Kodanev)
- netfilter: nft_connlimit: update the count if add was skipped (Fernando Fernandez Mancera)
- netfilter: nf_conncount: rework API to use sk_buff directly (Fernando Fernandez Mancera)
- netfilter: nf_conncount: reduce unnecessary GC (William Tu)
- netfilter: flowtable: check for maximum number of encapsulations in bridge vlan (Pablo Neira Ayuso)
- regulator: core: Protect regulator_supply_alias_list with regulator_list_mutex (Sparkhuang) [Orabug: 38798787] {CVE-2025-68354}
- ASoC: Intel: catpt: Fix error path in hw_params() (Cezary Rojewski)
- virtio: fix virtqueue_set_affinity() docs (Michael S. Tsirkin)
- virtio_vdpa: fix misleading return in void function (Alok Tiwari)
- ext4: improve integrity checking in __mb_check_buddy by enhancing order-0 validation (Yongjian Sun)
- ext4: remove unused return value of __mb_check_buddy (Kemeng Shi)
- ACPI: processor_core: fix map_x2apic_id for amd-pstate on am4 (René Rebe)
- drm/amd/display: Fix logical vs bitwise bug in get_embedded_panel_info_v2_1() (Dan Carpenter)
- ASoC: fsl_xcvr: clear the channel status control memory (Shengjiu Wang)
- ASoC: fsl_xcvr: Add support for i.MX93 platform (Chancel Liu)
- ASoC: fsl_xcvr: Add Counter registers (Shengjiu Wang)
- RDMA/irdma: Fix data race in irdma_free_pble (Krzysztof Czurylo)
- RDMA/irdma: Fix data race in irdma_sc_ccq_arm (Krzysztof Czurylo)
- iommu/arm-smmu-qcom: Enable use of all SMR groups when running bare-metal (Stephan Gerhold)
- backlight: lp855x: Fix lp855x.h kernel-doc warnings (Randy Dunlap)
- backlight: led-bl: Add devlink to supplier LEDs (Luca Ceresoli)
- backlight: led_bl: Take led_access lock when required (Mans Rullgard)
- wifi: ieee80211: correct FILS status codes (Ria Thomas)
- PCI: dwc: Fix wrong PORT_LOGIC_LTSSM_STATE_MASK definition (Shawn Lin)
- staging: fbtft: core: fix potential memory leak in fbtft_probe_common() (Jianglei Nie)
- mt76: mt7615: Fix memory leak in mt7615_mcu_wtbl_sta_add() (Zilin Guan)
- crypto: ccree - Correctly handle return of sg_nents_for_len (Xu Wang)
- selftests/bpf: Improve reliability of test_perf_branches_no_hw() (Matt Bobrowski)
- selftests/bpf: skip test_perf_branches_hw() on unsupported platforms (Matt Bobrowski)
- usb: dwc2: fix hang during suspend if set as peripheral (Jisheng Zhang)
- usb: dwc2: fix hang during shutdown if set as peripheral (Jisheng Zhang)
- usb: dwc2: disable platform lowlevel hw resources during shutdown (Jisheng Zhang)
- usb: chaoskey: fix locking for O_NONBLOCK (Oliver Neukum)
- ima: Handle error code returned by ima_filter_rule_match() (Zhao Yipeng) [Orabug: 38798922] {CVE-2025-68740}
- wifi: rtl818x: rtl8187: Fix potential buffer underflow in rtl8187_rx_cb() (Seungjin Bae) [Orabug: 38798815] {CVE-2025-68362}
- mfd: mt6358-irq: Fix missing irq_domain_remove() in error path (Xu Wang)
- mfd: mt6397-irq: Fix missing irq_domain_remove() in error path (Xu Wang)
- pwm: bcm2835: Make sure the channel is enabled after pwm_request() (Uwe Kleine-König)
- drm/mediatek: Fix CCORR mtk_ctm_s31_32_to_s1_n function issue (Jay Liu)
- fs/ntfs3: Prevent memory leaks in add sub record (Edward Adam Davis)
- fs/ntfs3: out1 also needs to put mi (Edward Adam Davis)
- fs/ntfs3: Make ni_ins_new_attr return error (Konstantin Komarov)
- fs/ntfs3: Add new argument is_mft to ntfs_mark_rec_free (Konstantin Komarov)
- fs/ntfs3: Remove unused mi_mark_free (Konstantin Komarov)
- powerpc/64s/ptdump: Fix kernel_hash_pagetable dump for ISA v3.00 HPTE format (Ritesh Harjani)
- wifi: rtl818x: Fix potential memory leaks in rtl8180_init_rx_ring() (Abdun Nihaal) [Orabug: 38818222] {CVE-2025-68759}
- NFSD/blocklayout: Fix minlength check in proc_layoutget (Sergey Bashirov)
- watchdog: wdat_wdt: Fix ACPI table leak in probe function (Xu Wang)
- watchdog: wdat_wdt: Stop watchdog when uninstalling module (Liu Xinpeng)
- selftests/bpf: Fix failure paths in send_signal test (Alexei Starovoitov)
- ps3disk: use memcpy_{from,to}_bvec index (René Rebe)
- PCI: keystone: Exit ks_pcie_probe() for invalid mode (Siddharth Vadapalli)
- leds: netxbig: Fix GPIO descriptor leak in error paths (Xu Wang)
- scsi: sim710: Fix resource leak by adding missing ioport_unmap() calls (Xu Wang)
- ACPI: property: Fix fwnode refcount leak in acpi_fwnode_graph_parse_endpoint() (Xu Wang)
- ocfs2: relax BUG() to ocfs2_error() in __ocfs2_move_extent() (Dmitry Antipov) [Orabug: 38798824] {CVE-2025-68364}
- lib/vsprintf: Check pointer before dereferencing in time_and_date() (Andy Shevchenko)
- clk: renesas: r9a06g032: Fix memory leak in error path (Xu Wang)
- coresight: etm4x: Add context synchronization before enabling trace (Leo Yan)
- coresight: etm4x: Extract the trace unit controlling (Leo Yan)
- coresight-etm4x: add isb() before reading the TRCSTATR (Yuanfang Zhang)
- coresight: etm4x: Use Trace Filtering controls dynamically (Suzuki K Poulose)
- coresight: etm4x: Save restore TRFCR_EL1 (Suzuki K Poulose)
- nbd: defer config unlock in nbd_genl_connect (Zheng Qixing) [Orabug: 38798833] {CVE-2025-68366}
- wifi: cw1200: Fix potential memory leak in cw1200_bh_rx_helper() (Abdun Nihaal)
- macintosh/mac_hid: fix race condition in mac_hid_toggle_emumouse (Long Li) [Orabug: 38798838] {CVE-2025-68367}
- powerpc/32: Fix unpaired stwcx. on interrupt exit (Christophe Leroy)
- RDMA/rtrs: server: Fix error handling in get_or_create_srv (Ma Ke)
- dt-bindings: PCI: amlogic: Fix the register name of the DBI region (Manivannan Sadhasivam)
- dt-bindings: PCI: convert amlogic,meson-pcie.txt to dt-schema (Neil Armstrong)
- scsi: stex: Fix reboot_notifier leak in probe error path (Xu Wang)
- nbd: defer config put in recv_work (Zheng Qixing) [Orabug: 38798851] {CVE-2025-68372}
- nbd: partition nbd_read_stat() into nbd_read_reply() and nbd_handle_reply() (Yu Kuai)
- nbd: clean up return value checking of sock_xmit() (Yu Kuai)
- regulator: core: disable supply if enabling main regulator fails (Gabor Juhos)
- perf/x86/intel: Correct large PEBS flag check (Dapeng Mi)
- ext4: correct the checking of quota files before moving extents (Zhang Yi)
- ext4: minor defrag code improvements (Eric Whitney)
- mfd: da9055: Fix missing regmap_del_irq_chip() in error path (Xu Wang)
- spi: tegra210-quad: Fix timeout handling (Vishwaroop A) [Orabug: 38798944] {CVE-2025-68746}
- spi: tegra210-quad: modify chip select (CS) deactivation (Vishwaroop A)
- scsi: target: Do not write NUL characters into ASCII configfs output (Bart Van Assche)
- power: supply: apm_power: only unset own apm_get_power_status (Ahelenia Ziemiańska)
- power: supply: wm831x: Check wm831x_set_bits() return value (Ivan Abramov)
- i3c: master: svc: Prevent incomplete IBI transaction (Stanley Chu)
- i3c: fix refcount inconsistency in i3c_master_register (Frank Li)
- pinctrl: stm32: fix hwspinlock resource leak in probe function (Xu Wang)
- x86/dumpstack: Prevent KASAN false positive warnings in __show_regs() (Tengda Wu)
- x86: kmsan: don't instrument stack walking functions (Alexander Potapenko)
- kmsan: introduce __no_sanitize_memory and __no_kmsan_checks (Alexander Potapenko)
- compiler-gcc.h: Define __SANITIZE_ADDRESS__ under hwaddress sanitizer (Kees Cook)
- sctp: Defer SCTP_DBG_OBJCNT_DEC() to sctp_destroy_sock(). (Kuniyuki Iwashima)
- phy: mscc: Fix PTP for VSC8574 and VSC8572 (Horatiu Vultur)
- firmware: imx: scu-irq: fix OF node leak in (Peng Fan)
- s390/ap: Don't leak debug feature files if AP instructions are not available (Heiko Carstens)
- s390/smp: Fix fallback CPU detection (Heiko Carstens)
- crypto: hisilicon/qm - restore original qos values (Nieweiqiang)
- crypto: asymmetric_keys - prevent overflow in asymmetric_key_generate_id (Thorsten Blum) [Orabug: 38798875] {CVE-2025-68724}
- uio: uio_fsl_elbc_gpcm:: Add null pointer check to uio_fsl_elbc_gpcm_probe (Li Qiang)
- arm64: dts: imx8mm-venice-gw72xx: remove unused sdhc1 pinctrl (Tim Harvey)
- iio: imu: st_lsm6dsx: Fix measurement unit for odr struct member (Francesco Lavra)
- iio: imu: st_lsm6dsx: discard samples during filters settling time (Lorenzo Bianconi)
- iio: imu: st_lsm6dsx: introduce st_lsm6dsx_device_set_enable routine (Lorenzo Bianconi)
- inet: Avoid ehash lookup race in inet_ehash_insert() (Luoxuanqiang)
- rculist: Add hlist_nulls_replace_rcu() and hlist_nulls_replace_init_rcu() (Luoxuanqiang)
- ntfs3: Fix uninit buffer allocated by __getname() (Sidharth Seela)
- ntfs3: fix uninit memory after failed mi_read in mi_format_new (Raphael Pinsonneault-Thibeault)
- irqchip/qcom-irq-combiner: Fix section mismatch (Johan Hovold)
- USB: Fix descriptor count when handling invalid MBIM extended descriptor (Seungjin Bae)
- drm/vgem-fence: Fix potential deadlock on release (Janusz Krzysztofik) [Orabug: 38818212] {CVE-2025-68757}
- drm/panel: visionox-rm69299: Don't clear all mode flags (Guido Günther)
- gpu: host1x: Fix race in syncpt alloc/free (Mainak Sen) [Orabug: 38798899] {CVE-2025-68732}
- smack: fix bug: unprivileged task can create labels (Konstantin Andreev)
- staging: rtl8723bs: fix out-of-bounds read in OnBeacon ESR IE parsing (Navaneeth K) [Orabug: 38773544] {CVE-2025-68254}
- staging: rtl8723bs: fix stack buffer overflow in OnAssocReq IE parsing (Navaneeth K) [Orabug: 38773554] {CVE-2025-68255}
- comedi: check device's attached status in compat ioctls (Nikita Zhandarovich)
- comedi: multiq3: sanitize config options in multiq3_attach() (Nikita Zhandarovich)
- comedi: c6xdigio: Fix invalid PNP driver unregistration (Ian Abbott)
- HID: elecom: Add support for ELECOM M-XT3URBK (018F) (Naoki Ueki)
- platform/x86: huawei-wmi: add keys for HONOR models (Ston Jia)
- platform/x86: acer-wmi: Ignore backlight event (Armin Wolf)
- pinctrl: qcom: msm: Fix deadlock in pinmux configuration (Praveen Talari)
- bfs: Reconstruct file type when loading from disk (Tetsuo Handa)
- spi: imx: keep dma request disabled before dma transfer setup (Robin Gong)
- spi: xilinx: increase number of retries before declaring stall (Alvaro Gamez Machado)
- USB: serial: kobil_sct: fix TIOCMBIS and TIOCMBIC (Johan Hovold)
- USB: serial: belkin_sa: fix TIOCMBIS and TIOCMBIC (Johan Hovold)
- serial: add support of CPCI cards (Magne Bruno)
- USB: serial: ftdi_sio: match on interface number for jtag (Johan Hovold)
- USB: serial: option: move Telit 0x10c7 composition in the right place (Fabio Porcedda)
- USB: serial: option: add Telit Cinterion FE910C04 new compositions (Fabio Porcedda)
- USB: serial: option: add Foxconn T99W760 (Slark Xiao)
- comedi: pcl818: fix null-ptr-deref in pcl818_ai_cancel() (Nikita Zhandarovich)
- ext4: add i_data_sem protection in ext4_destroy_inline_data_nolock() (Alexey Nepomnyashih) [Orabug: 38773587] {CVE-2025-68261}
- locking/spinlock/debug: Fix data-race in do_raw_write_lock (Alexander Sverdlin)
- ext4: refresh inline data size before write operations (Deepanshu Kartikey) [Orabug: 38773603] {CVE-2025-68264}
- jbd2: avoid bug_on in jbd2_journal_get_create_access() when file system corrupted (Ye Bin) [Orabug: 38792633] {CVE-2025-68337}
- Documentation: process: Also mention Sasha Levin as stable tree maintainer (Bagas Sanjaya)
- leds: spi-byte: Use devm_led_classdev_register_ext() (Stefan Kalscheuer)
- leds: Replace all non-returning strlcpy with strscpy (Azeem Shaikh)
- drm/i915/selftests: Fix inconsistent IS_ERR and PTR_ERR (Kai Song)
- dpaa2-mac: bail if the dpmacs fwnode is not found (Robert-Ionut Alexa)
- xfrm: flush all states in xfrm_state_fini (Sabrina Dubroca)
- xfrm: also call xfrm_state_delete_tunnel at destroy time for states that were never added (Sabrina Dubroca) [Orabug: 39004269] {CVE-2025-40256}
- Revert "xfrm: destroy xfrm_state synchronously on net exit path" (Sabrina Dubroca)

[5.15.0-317.197.5]
- KVM: x86: conditionally clear masterclock request for uek=exadata (Dongli Zhang) [Orabug: 38801641]
- Partial backport of "KVM: x86: Fix software TSC upscaling in kvm_update_guest_time()" (Dongli Zhang) [Orabug: 38801641]
- uek-rpm: pensando: Move crashkernel to cnic-image-builder (Henry Willard) [Orabug: 38851137]
- ext4: drop dio overwrite only flag and associated warning (Brian Foster) [Orabug: 38381010]
- ext4: fix racy may inline data check in dio write (Brian Foster) [Orabug: 38381010]
- ext4: allow concurrent unaligned dio overwrites (Brian Foster) [Orabug: 38381010]
- ext4: dio take shared inode lock when overwriting preallocated blocks (Zhang Yi) [Orabug: 38381010]
- net: mana: Reduce waiting time if HWC not responding (Haiyang Zhang) [Orabug: 38172423]
- uek-rpm: hnic: add unique hnic signing certs (Tom Saeger) [Orabug: 38894488]
- drivers/soc/pensando/sbus: Secure mode support. (Hiren Mehta) [Orabug: 38894106]
- drivers/soc/pensando/pen_secure: Report register address on access errors (Maciej S. Szmigiero) [Orabug: 38894106]
- drivers/edac/elba_edac: Secure mode support (Hiren Mehta) [Orabug: 38894106]
- drivers/soc/pensando/bsm: Add secure-mode support. (Hiren Mehta) [Orabug: 38894106]
- drivers/soc/pensando/rstcause: Add secure mode support. (Hiren Mehta) [Orabug: 38894106]
- drivers/soc/pensando/penfw: New SMC support for secure-mode. (Hiren Mehta) [Orabug: 38894106]
- drivers/soc/pensando/sbus: Secure mode support (Hiren Mehta) [Orabug: 38894106]
- sunrpc: fix client side handling of tls alerts (Olga Kornievskaia) [Orabug: 38334981,38932988] {CVE-2025-38571}
- sunrpc: fix handling of server side tls alerts (Olga Kornievskaia) [Orabug: 38334968,38932991] {CVE-2025-38566}
- xfrm: delete x->tunnel as we delete x (Sabrina Dubroca) [Orabug: 38730492,38933003] {CVE-2025-40215}

[5.15.0-317.197.4]
- gpio: mlxbf3: use platform_get_irq_optional() (David Thompson) [Orabug: 38755419]
- platform/mellanox: mlxbf-pmc: Fix duplicate event ID for CACHE_DATA1 (Alok Tiwari) [Orabug: 38755419]
- pinctrl: mlxbf3: Fix return value check for devm_platform_ioremap_resource (Chen Ni) [Orabug: 38755419]
- net/mlx5e: Query FW for buffer ownership (Alexei Lazar) [Orabug: 38755419]
- net/mlx5: Add IFC bits and enums for buf_ownership (Oren Sidi) [Orabug: 38755419]
- net/mlx5: Update mlx5_ifc to support FEC for 200G per lane link modes (Jianbo Liu) [Orabug: 38755419]
- net/mlx5e: Support FEC settings for 100G/lane modes (Cosmin Ratiu) [Orabug: 38755419]
- net/mlx5e: Extract checking of FEC support for a link mode (Cosmin Ratiu) [Orabug: 38755419]
- tcp: Set pingpong threshold via sysctl (Haiyang Zhang) [Orabug: 38853979]
- arm64: hnic: config: Add NBD driver (Patrick Colp) [Orabug: 38858773]
- arm64: pensando: Fix spec file for HNIC (Rob Gardner) [Orabug: 38858773]
- Enable additional drivers needed to support MIPS64 SmartNic (Vijay Kumar) [Orabug: 38846771]
- MIPS: Fix build error for mips ARCH_ATOMIC (Vijay Kumar) [Orabug: 38846771]
- Added atomic addition,subtraction functions. (Anagha K J) [Orabug: 38846771]
- Allocate the required IV size referenced by the cypher handle in init_state (Anagha K J) [Orabug: 38846771]
- Setting up numa system and memory initializations (Anagha K J) [Orabug: 38846771]
- Implemented clocksource provider driven by node-0 FPA_CLK_COUNT (Anagha K J) [Orabug: 38846771]
- Processor cache information made available to userspace (Anagha K J) [Orabug: 38846771]
- MIPS: mm: kmalloc tlb_vpn array to avoid stack overflow (Thomas Bogendoerfer) [Orabug: 38851582]
- usb: raw-gadget: cap raw_io transfer length to KMALLOC_MAX_SIZE (Gopi Krishna Menon)
- ext4: clear i_state_flags when alloc inode (Haibo Chen)
- ext4: align max orphan file size with e2fsprogs limit (Baokun Li)
- PM: runtime: Do not clear needs_force_resume with enabled runtime PM (Rafael J. Wysocki)
- net: enetc: fix build warning when PAGE_SIZE is greater than 128K (Wei Fang)
- net/sched: sch_cake: Fix incorrect qlen reduction in cake_drop (Xiang Mei) [Orabug: 38783137] {CVE-2025-68325}
- block: fix comment for op_is_zone_mgmt() to include RESET_ALL (Shechenglong)
- fuse: fix readahead reclaim deadlock (Joanne Koong) [Orabug: 38847946] {CVE-2025-68821}
- i40e: validate ring_len parameter against hardware-specific values (Gregory Herrero)
- fs/ntfs3: fix mount failure for sparse runs in run_unpack() (Konstantin Komarov)
- ntfs3: init run lock for extend inode (Edward Adam Davis)

[5.15.0-317.197.3]
- kpcimgr: Enable loading firmware via kernel infrastructure (Joseph Dobosenski) [Orabug: 38546110]
- Move hnic crashkernel to cnic-image-builder (Henry Willard) [Orabug: 38546110]
- Bump supported capmem range count from 64 to 256 (Jan Setje-Eilers) [Orabug: 38546110]
- irqchip/pensando: Fix partial of_iomap() leak on error (#505) (Brad Larson) [Orabug: 38546110]
- pensando: Allow sparse allowed ranges in cap_mem (Maciej S. Szmigiero) [Orabug: 38546110]
- soc/pensando/cap-pcie: Handle zero-ed out MS_CFG_WDT_IDX/WDT_IDX (Joao Martins) [Orabug: 38546110]
- pensando: Enable penfw driver for smartnic (Jan Setje-Eilers) [Orabug: 38546110]
- irqchip/gic-v3-its: remove WARN_ON gic_reserve_range (Tom Saeger) [Orabug: 38546110]
- hnic: Disable CONFIG_OVERLAY_FS_INDEX (Patrick Colp) [Orabug: 38546110]
- pensando: missing diffs from AMD (Jan Setje-Eilers) [Orabug: 38546110]
- hnic: config: Build FUSE into the kernel (not as a module) (Patrick Colp) [Orabug: 38546110]
- hnic: config: Add DM_VERITY support (Patrick Colp) [Orabug: 38546110]
- hnic config: Add LOCKDOWN_LSM support (Patrick Colp) [Orabug: 38546110]
- Subject: uek-rpm: Build hostnic kernel for Pensando (Dave Kleikamp) [Orabug: 38546110]
- pensando: kpcimgr: support pcie port bifurcation (Darshan Prajapati) [Orabug: 38546110]
- Add changes for penfw and sbus.c for secureboot (Rahshekh) [Orabug: 38546110]
- arm64: GIC ITS MSI encapsulator address configured from device tree (Brad Larson) [Orabug: 38546110]
- perf/arm-cmn: Enable AMD Pensando Salina SoC CMN PMU driver (Brad Larson) [Orabug: 38546110]
- reset: salinasr: Add AMD Pensando Salina SoC reset (Brad Larson) [Orabug: 38546110]
- spi: dw-mmio: Add AMD Pensando Salina SoC support (Brad Larson) [Orabug: 38546110]
- EDAC/elba: Support AMD Pensando Giglio SoC (Brad Larson) [Orabug: 38546110]
- arm64: defconfig: Add AMD Pensando Salina SoC defconfig (Brad Larson) [Orabug: 38546110]
- soc/pensando: Support AMD Pensando Salina SoC (Brad Larson) [Orabug: 38546110]
- arm64: dts: Add AMD Pensando Salina SoC support (Brad Larson) [Orabug: 38546110]
- mmc: sdhci-cadence: Support AMD Salina SoC (Brad Larson) [Orabug: 38546110]
- PCI/AER: Avoid NULL pointer dereference in aer_ratelimit() (Breno Leitao) [Orabug: 38597010] {CVE-2025-40034}
- mm/hugetlb: disable huge_pmd_unshare TLB sync by default on Exadata (Joe Jin) [Orabug: 38829889]
- vhost: Account for worker thread under owner's nproc (Mike Christie) [Orabug: 38770748]
- vhost: revert CAP_SYS restrictions on worker ioctls (Mike Christie) [Orabug: 38770748]
- RDMA/cm: Base cm_id destruction timeout on CMA values (Håkon Bugge) [Orabug: 38753654]
- mlx5: Fix default values in create CQ (Akiva Goldberger) [Orabug: 38420735,38773370] {CVE-2025-68209}
- uek-rpm: Allow disabling kabichk at command line (Yifei Liu) [Orabug: 38744825]

[5.15.0-317.197.2]
- x86/its: Build fails with CONFIG_MITIGATION_ITS=n (Alexandre Chartre) [Orabug: 38756952]
- net/sched: adjust device watchdog timer to detect stopped queue at right time (Praveen Kumar Kannoju) [Orabug: 38341919]
- KVM: arm64: Add minimal handling for the ARMv8.7 PMU (Marc Zyngier) [Orabug: 38784458]
- scsi: megaraid_sas: Fix invalid node index (Chen Yu) [Orabug: 38175026] {CVE-2025-38239}
- Revert "iommu/amd: Skip enabling command/event buffers for kdump" (Dongli Zhang) [Orabug: 38790823]
- mm: list_lru: avoid using NULL list_lru_one. (Imran Khan) [Orabug: 38619860]
- mm: list_lru: fix UAF for memory cgroup (Muchun Song) [Orabug: 38619860]
- net/rds: improve conn destroy printk message (Sharath Srinivasan) [Orabug: 38728740]
- net/rds: expand kref coverage to rds_notifier->n_conn (Sharath Srinivasan) [Orabug: 38728740]
- net/rds: fix crash by expanding kref coverage to rds_incoming.i_conn (Sharath Srinivasan) [Orabug: 38728740]
- net/rds: rds_sendmsg must use rs_conn only when not being destroyed (Sharath Srinivasan) [Orabug: 38728743]
- net/mlx5e: Set default burst period for TX and RX reporters (Shahar Shitrit) [Orabug: 38512377]
- devlink: Make health reporter burst period configurable (Shahar Shitrit) [Orabug: 38512377]
- devlink: Introduce burst period for health reporter (Shahar Shitrit) [Orabug: 38512377]
- devlink: Move health reporter recovery abort logic to a separate function (Shahar Shitrit) [Orabug: 38512377]
- devlink: Move graceful period parameter to reporter ops (Shahar Shitrit) [Orabug: 38512377]
- devlink: introduce devlink_nl_put_u64() (Przemek Kitszel) [Orabug: 38512377]
- net/mlx5: remove fw reporter dump option for non PF (Moshe Shemesh) [Orabug: 38512377]
- net/mlx5: remove fw_fatal reporter dump option for non PF (Moshe Shemesh) [Orabug: 38512377]
- devlink: Hold devlink lock on health reporter dump get (Moshe Shemesh) [Orabug: 38512377]
- Revert "net/mlx5: set graceful_period to 0 to allow multiple transmission queue recovery" (Qing Huang) [Orabug: 38512377]
- NVIDIA: SAUCE: iommu/arm-smmu-v3: Allow default substream bypass with a pasid support (Nicolin Chen) [Orabug: 38463999]
- RDMA/mlx5: Fix a WARN during dereg_mr for DM type (Yishai Hadas) [Orabug: 37766291,38463999] {CVE-2025-21888}
- uek-rpm: replace CONFIG_IOMMU_SVA_LIB with CONFIG_IOMMU_SVA (Junxiao Bi) [Orabug: 38463999]
- iommu/sva: Rename CONFIG_IOMMU_SVA_LIB to CONFIG_IOMMU_SVA (Fenghua Yu) [Orabug: 38463999]



ELBA-2026-50169 Oracle Linux 10 oracle-common-release bug fix update


Oracle Linux Bug Fix Advisory ELBA-2026-50169

http://linux.oracle.com/errata/ELBA-2026-50169.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
oci-included-release-el10-1.0-6.el10.x86_64.rpm
oracle-epel-release-el10-1.0-6.el10.x86_64.rpm
oraclelinux-developer-release-el10-1.0-6.el10.x86_64.rpm
oracle-instantclient-release-26ai-el10-1.0-6.el10.x86_64.rpm

aarch64:
oci-included-release-el10-1.0-6.el10.aarch64.rpm
oracle-epel-release-el10-1.0-6.el10.aarch64.rpm
oraclelinux-developer-release-el10-1.0-6.el10.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/oracle-common-release-1.0-6.el10.src.rpm

Description of changes:

[1.0-6]
- Add Oracle Linux 10 KVM Utilities for Development and test repositories [JIRA: OLRM-763]



ELBA-2026-50168 Oracle Linux 10 oraclelinux-release-el10 bug fix update


Oracle Linux Bug Fix Advisory ELBA-2026-50168

http://linux.oracle.com/errata/ELBA-2026-50168.html

The following updated rpms for Oracle Linux 10 have been uploaded to the Unbreakable Linux Network:

x86_64:
oraclelinux-release-el10-1.0-17.el10.x86_64.rpm

aarch64:
oraclelinux-release-el10-1.0-17.el10.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/oraclelinux-release-el10-1.0-17.el10.src.rpm

Description of changes:

[1.0-17]
- Add Oracle Linux 10 KVM Utilities repository [Orabug: 39112380]



ELSA-2026-50170 Unbreakable Enterprise kernel bug fix update


Oracle Linux Bug Fix Advisory ELSA-2026-50170

http://linux.oracle.com/errata/ELSA-2026-50170.html

The following updated rpms for have been uploaded to the Unbreakable Linux Network:

x86_64:
kernel-uek-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-core-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-devel-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-doc-6.12.0-200.74.27.1.el10uek.noarch.rpm
kernel-uek-modules-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-core-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-deprecated-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-desktop-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-extra-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-extra-netfilter-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-usb-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-modules-wireless-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-tools-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-core-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-devel-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-core-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-deprecated-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-desktop-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-extra-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-extra-netfilter-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-usb-6.12.0-200.74.27.1.el10uek.x86_64.rpm
kernel-uek-debug-modules-wireless-6.12.0-200.74.27.1.el10uek.x86_64.rpm

aarch64:
kernel-uek-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-devel-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-doc-6.12.0-200.74.27.1.el10uek.noarch.rpm
kernel-uek-modules-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-deprecated-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-desktop-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-extra-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-extra-netfilter-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-usb-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-modules-wireless-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-tools-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-devel-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-deprecated-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-desktop-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-extra-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-extra-netfilter-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-usb-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek-debug-modules-wireless-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-devel-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-core-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-deprecated-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-desktop-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-extra-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-extra-netfilter-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-usb-6.12.0-200.74.27.1.el10uek.aarch64.rpm
kernel-uek64k-modules-wireless-6.12.0-200.74.27.1.el10uek.aarch64.rpm

SRPMS:
http://oss.oracle.com/ol10/SRPMS-updates/kernel-uek-6.12.0-200.74.27.1.el10uek.src.rpm

Description of changes:

[6.12.0-200.74.27.1]
- KVM: x86/mmu: Drop/zap existing present SPTE even when creating an MMIO SPTE (Sean Christopherson) [Orabug: 39071315]