Commit Graph

1164767 Commits

Author SHA1 Message Date
Greg Kroah-Hartman
d0af2ae8d5 Merge 6.1.109 into android14-6.1-lts
Changes in 6.1.109
	drm: panel-orientation-quirks: Add quirk for OrangePi Neo
	scsi: ufs: core: Bypass quick recovery if force reset is needed
	ALSA: hda/generic: Add a helper to mute speakers at suspend/shutdown
	ALSA: hda/conexant: Mute speakers at suspend / shutdown
	i2c: Fix conditional for substituting empty ACPI functions
	dma-debug: avoid deadlock between dma debug vs printk and netconsole
	net: usb: qmi_wwan: add MeiG Smart SRM825L
	ASoC: amd: yc: Support mic on Lenovo Thinkpad E14 Gen 6
	mptcp: make pm_remove_addrs_and_subflows static
	mptcp: pm: fix RM_ADDR ID for the initial subflow
	PCI/MSI: Fix UAF in msi_capability_init
	f2fs: fix to truncate preallocated blocks in f2fs_file_open()
	mptcp: pm: fullmesh: select the right ID later
	mptcp: pm: avoid possible UaF when selecting endp
	mptcp: pm: reuse ID 0 after delete and re-add
	mptcp: pm: fix ID 0 endp usage after multiple re-creations
	selftests: mptcp: join: validate fullmesh endp on 1st sf
	selftests: mptcp: join: check re-using ID of closed subflow
	selftests: mptcp: add explicit test case for remove/readd
	selftests: mptcp: join: test for flush/re-add endpoints
	selftests: mptcp: join: check re-using ID of unused ADD_ADDR
	selftests: mptcp: join: check re-adding init endp with != id
	mptcp: pr_debug: add missing \n at the end
	mptcp: avoid duplicated SUB_CLOSED events
	selftests: mptcp: join: check removing ID 0 endpoint
	selftests: mptcp: join: no extra msg if no counter
	selftests: mptcp: join: check re-re-adding ID 0 endp
	selftests: mptcp: join: cannot rm sf if closed
	drm/amdgpu: Fix uninitialized variable warning in amdgpu_afmt_acr
	drm/amd/display: Assign linear_pitch_alignment even for VM
	drm/amdgpu: fix overflowed array index read warning
	drm/amdgpu/pm: Check the return value of smum_send_msg_to_smc
	drm/amd/pm: fix uninitialized variable warning
	drm/amd/pm: fix uninitialized variable warning for smu8_hwmgr
	drm/amd/pm: fix warning using uninitialized value of max_vid_step
	drm/amd/pm: Fix negative array index read
	drm/amd/pm: fix the Out-of-bounds read warning
	drm/amd/pm: fix uninitialized variable warnings for vega10_hwmgr
	drm/amdgpu: avoid reading vf2pf info size from FB
	drm/amd/display: Check gpio_id before used as array index
	drm/amd/display: Stop amdgpu_dm initialize when stream nums greater than 6
	drm/amd/display: Add array index check for hdcp ddc access
	drm/amd/display: Check num_valid_sets before accessing reader_wm_sets[]
	drm/amd/display: Check msg_id before processing transcation
	drm/amd/display: Fix Coverity INTEGER_OVERFLOW within dal_gpio_service_create
	drm/amd/display: Spinlock before reading event
	drm/amd/display: Ensure index calculation will not overflow
	drm/amd/display: Skip inactive planes within ModeSupportAndSystemConfiguration
	drm/amd/amdgpu: Check tbo resource pointer
	drm/amd/pm: fix uninitialized variable warnings for vangogh_ppt
	drm/amdgpu/pm: Fix uninitialized variable warning for smu10
	drm/amdgpu/pm: Fix uninitialized variable agc_btc_response
	drm/amdgpu: Fix out-of-bounds write warning
	drm/amdgpu: Fix out-of-bounds read of df_v1_7_channel_number
	drm/amdgpu: fix ucode out-of-bounds read warning
	drm/amdgpu: fix mc_data out-of-bounds read warning
	drm/amdkfd: Reconcile the definition and use of oem_id in struct kfd_topology_device
	apparmor: fix possible NULL pointer dereference
	wifi: ath11k: initialize 'ret' in ath11k_qmi_load_file_target_mem()
	drm/amdgpu/pm: Check input value for CUSTOM profile mode setting on legacy SOCs
	drm/amdgpu: fix dereference after null check
	drm/amdgpu: fix the waring dereferencing hive
	drm/amd/pm: check specific index for aldebaran
	drm/amdgpu: the warning dereferencing obj for nbio_v7_4
	drm/amd/pm: check negtive return for table entries
	wifi: rtw89: ser: avoid multiple deinit on same CAM
	drm/amdgpu: update type of buf size to u32 for eeprom functions
	wifi: iwlwifi: remove fw_running op
	cpufreq: scmi: Avoid overflow of target_freq in fast switch
	PCI: al: Check IORESOURCE_BUS existence during probe
	hwspinlock: Introduce hwspin_lock_bust()
	RDMA/efa: Properly handle unexpected AQ completions
	ionic: fix potential irq name truncation
	pwm: xilinx: Fix u32 overflow issue in 32-bit width PWM mode.
	rcu/nocb: Remove buggy bypass lock contention mitigation
	usbip: Don't submit special requests twice
	usb: typec: ucsi: Fix null pointer dereference in trace
	fsnotify: clear PARENT_WATCHED flags lazily
	regmap: spi: Fix potential off-by-one when calculating reserved size
	smack: tcp: ipv4, fix incorrect labeling
	net/mlx5e: SHAMPO, Fix incorrect page release
	drm/meson: plane: Add error handling
	drm/bridge: tc358767: Check if fully initialized before signalling HPD event via IRQ
	dmaengine: altera-msgdma: use irq variant of spin_lock/unlock while invoking callbacks
	dmaengine: altera-msgdma: properly free descriptor in msgdma_free_descriptor
	hwmon: (k10temp) Check return value of amd_smn_read()
	wifi: cfg80211: make hash table duplicates more survivable
	driver: iio: add missing checks on iio_info's callback access
	block: remove the blk_flush_integrity call in blk_integrity_unregister
	drm/amd/display: added NULL check at start of dc_validate_stream
	drm/amd/display: Correct the defined value for AMDGPU_DMUB_NOTIFICATION_MAX
	drm/amd/display: Skip wbscl_set_scaler_filter if filter is null
	media: uvcvideo: Enforce alignment of frame and interval
	virtio_net: Fix napi_skb_cache_put warning
	Bluetooth: SCO: Fix possible circular locking dependency on sco_connect_cfm
	Bluetooth: SCO: fix sco_conn related locking and validity issues
	ext4: fix inode tree inconsistency caused by ENOMEM
	udf: Limit file size to 4TB
	ext4: reject casefold inode flag without casefold feature
	ext4: handle redirtying in ext4_bio_write_page()
	i2c: Use IS_REACHABLE() for substituting empty ACPI functions
	Linux 6.1.109

Change-Id: If689bfd671fb92d4092b9221d742121d3f3d669e
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-10-01 16:27:04 +00:00
Greg Kroah-Hartman
c59cc7f298 Merge 6.1.108 into android14-6.1-lts
Changes in 6.1.108
	drm/amdgpu: Using uninitialized value *size when calling amdgpu_vce_cs_reloc
	LoongArch: Remove the unused dma-direct.h
	btrfs: run delayed iputs when flushing delalloc
	smb/client: avoid dereferencing rdata=NULL in smb2_new_read_req()
	pinctrl: rockchip: correct RK3328 iomux width flag for GPIO2-B pins
	pinctrl: single: fix potential NULL dereference in pcs_get_function()
	of: Add cleanup.h based auto release via __free(device_node) markings
	wifi: wfx: repair open network AP mode
	wifi: mwifiex: duplicate static structs used in driver instances
	net: mana: Fix race of mana_hwc_post_rx_wqe and new hwc response
	mptcp: close subflow when receiving TCP+FIN
	mptcp: sched: check both backup in retrans
	mptcp: pm: skip connecting to already established sf
	mptcp: pm: reset MPC endp ID when re-added
	mptcp: pm: send ACK on an active subflow
	mptcp: pm: do not remove already closed subflows
	mptcp: pm: ADD_ADDR 0 is not a new address
	drm/amdgpu: align pp_power_profile_mode with kernel docs
	drm/amdgpu/swsmu: always force a state reprogram on init
	ata: libata-core: Fix null pointer dereference on error
	usb: typec: fix up incorrectly backported "usb: typec: tcpm: unregister existing source caps before re-registration"
	mmc: Avoid open coding by using mmc_op_tuning()
	mmc: mtk-sd: receive cmd8 data when hs400 tuning fail
	mptcp: unify pm get_local_id interfaces
	mptcp: pm: remove mptcp_pm_remove_subflow()
	mptcp: pm: only mark 'subflow' endp as available
	mptcp: pm: check add_addr_accept_max before accepting new ADD_ADDR
	of: Introduce for_each_*_child_of_node_scoped() to automate of_node_put() handling
	thermal: of: Fix OF node leak in thermal_of_trips_init() error path
	thermal: of: Fix OF node leak in of_thermal_zone_find() error paths
	ASoC: amd: acp: fix module autoloading
	ASoC: SOF: amd: Fix for acp init sequence
	pinctrl: mediatek: common-v2: Fix broken bias-disable for PULL_PU_PD_RSEL_TYPE
	mm: Fix missing folio invalidation calls during truncation
	btrfs: fix extent map use-after-free when adding pages to compressed bio
	soundwire: stream: fix programming slave ports for non-continous port maps
	phy: xilinx: add runtime PM support
	phy: xilinx: phy-zynqmp: dynamic clock support for power-save
	phy: xilinx: phy-zynqmp: Fix SGMII linkup failure on resume
	dmaengine: dw: Add peripheral bus width verification
	dmaengine: dw: Add memory bus width verification
	Bluetooth: hci_core: Fix not handling hibernation actions
	iommu: Do not return 0 from map_pages if it doesn't do anything
	netfilter: nf_tables: restore IP sanity checks for netdev/egress
	wifi: iwlwifi: fw: fix wgds rev 3 exact size
	ethtool: check device is present when getting link settings
	netfilter: nf_tables_ipv6: consider network offset in netdev/egress validation
	selftests: forwarding: no_forwarding: Down ports on cleanup
	selftests: forwarding: local_termination: Down ports on cleanup
	bonding: implement xdo_dev_state_free and call it after deletion
	gtp: fix a potential NULL pointer dereference
	sctp: fix association labeling in the duplicate COOKIE-ECHO case
	drm/amd/display: avoid using null object of framebuffer
	net: busy-poll: use ktime_get_ns() instead of local_clock()
	nfc: pn533: Add poll mod list filling check
	soc: qcom: cmd-db: Map shared memory as WC, not WB
	cdc-acm: Add DISABLE_ECHO quirk for GE HealthCare UI Controller
	USB: serial: option: add MeiG Smart SRM825L
	usb: dwc3: omap: add missing depopulate in probe error path
	usb: dwc3: core: Prevent USB core invalid event buffer address access
	usb: dwc3: st: fix probed platform device ref count on probe error path
	usb: dwc3: st: add missing depopulate in probe error path
	usb: core: sysfs: Unmerge @usb3_hardware_lpm_attr_group in remove_power_attributes()
	usb: cdnsp: fix incorrect index in cdnsp_get_hw_deq function
	usb: cdnsp: fix for Link TRB with TC
	phy: zynqmp: Enable reference clock correctly
	igc: Fix reset adapter logics when tx mode change
	igc: Fix qbv tx latency by setting gtxoffset
	scsi: aacraid: Fix double-free on probe failure
	apparmor: fix policy_unpack_test on big endian systems
	fbdev: offb: fix up missing cleanup.h
	Linux 6.1.108

Change-Id: I8ef0e85c12e4e2ecccaf467f40d86c559db7d007
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-10-01 14:30:35 +00:00
Greg Kroah-Hartman
db06d215a8 Revert "posix-timers: Ensure timer ID search-loop limit is valid"
This reverts commit 6a0ac84501 which is
commit 8ce8849dd1 upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: Ie271fbc9312fe3c85aa472ecad68db55985fd96c
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-10-01 12:57:15 +00:00
Greg Kroah-Hartman
3e3e85a2c0 Revert "pid: Replace struct pid 1-element array with flex-array"
This reverts commit 5ea9dcfcd9 which is
commit b69f0aeb06 upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: Id78fddc05ab98cf79beff0adc409fbc588f7499f
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-10-01 12:56:11 +00:00
Greg Kroah-Hartman
524ae3c9d3 Merge 6.1.107 into android14-6.1-lts
Changes in 6.1.107
	tty: atmel_serial: use the correct RTS flag.
	fuse: Initialize beyond-EOF page contents before setting uptodate
	char: xillybus: Don't destroy workqueue from work item running on it
	char: xillybus: Refine workqueue handling
	char: xillybus: Check USB endpoints when probing device
	ALSA: usb-audio: Add delay quirk for VIVO USB-C-XE710 HEADSET
	ALSA: usb-audio: Support Yamaha P-125 quirk entry
	xhci: Fix Panther point NULL pointer deref at full-speed re-enumeration
	thunderbolt: Mark XDomain as unplugged when router is removed
	s390/dasd: fix error recovery leading to data corruption on ESE devices
	riscv: change XIP's kernel_map.size to be size of the entire kernel
	arm64: ACPI: NUMA: initialize all values of acpi_early_node_map to NUMA_NO_NODE
	dm resume: don't return EINVAL when signalled
	dm persistent data: fix memory allocation failure
	vfs: Don't evict inode under the inode lru traversing context
	fs/ntfs3: add prefix to bitmap_size() and use BITS_TO_U64()
	s390/cio: rename bitmap_size() -> idset_bitmap_size()
	btrfs: rename bitmap_set_bits() -> btrfs_bitmap_set_bits()
	bitmap: introduce generic optimized bitmap_size()
	fix bitmap corruption on close_range() with CLOSE_RANGE_UNSHARE
	i2c: qcom-geni: Add missing geni_icc_disable in geni_i2c_runtime_resume
	rtla/osnoise: Prevent NULL dereference in error handling
	fs/netfs/fscache_cookie: add missing "n_accesses" check
	selinux: fix potential counting error in avc_add_xperms_decision()
	mm/memory-failure: use raw_spinlock_t in struct memory_failure_cpu
	btrfs: zoned: properly take lock to read/update block group's zoned variables
	btrfs: tree-checker: add dev extent item checks
	drm/amdgpu: Actually check flags for all context ops.
	memcg_write_event_control(): fix a user-triggerable oops
	drm/amdgpu/jpeg2: properly set atomics vmid field
	s390/uv: Panic for set and remove shared access UVC errors
	bpf: Fix updating attached freplace prog in prog_array map
	nilfs2: prevent WARNING in nilfs_dat_commit_end()
	ext4, jbd2: add an optimized bmap for the journal inode
	9P FS: Fix wild-memory-access write in v9fs_get_acl
	nilfs2: initialize "struct nilfs_binfo_dat"->bi_pad field
	mm: khugepaged: fix kernel BUG in hpage_collapse_scan_file()
	bpf: Split off basic BPF verifier log into separate file
	bpf: drop unnecessary user-triggerable WARN_ONCE in verifierl log
	posix-timers: Ensure timer ID search-loop limit is valid
	pid: Replace struct pid 1-element array with flex-array
	gfs2: Rename remaining "transaction" glock references
	gfs2: Rename the {freeze,thaw}_super callbacks
	gfs2: Rename gfs2_freeze_lock{ => _shared }
	gfs2: Rename SDF_{FS_FROZEN => FREEZE_INITIATOR}
	gfs2: Rework freeze / thaw logic
	gfs2: Stop using gfs2_make_fs_ro for withdraw
	Bluetooth: Fix hci_link_tx_to RCU lock usage
	wifi: mac80211: take wiphy lock for MAC addr change
	wifi: mac80211: fix change_address deadlock during unregister
	net: sched: Print msecs when transmit queue time out
	net: don't dump stack on queue timeout
	jfs: fix shift-out-of-bounds in dbJoin
	squashfs: squashfs_read_data need to check if the length is 0
	Squashfs: fix variable overflow triggered by sysbot
	reiserfs: fix uninit-value in comp_keys
	erofs: avoid debugging output for (de)compressed data
	quota: Detect loops in quota tree
	net:rds: Fix possible deadlock in rds_message_put
	net: sctp: fix skb leak in sctp_inq_free()
	pppoe: Fix memory leak in pppoe_sendmsg()
	wifi: mac80211: fix and simplify unencrypted drop check for mesh
	wifi: cfg80211: move A-MSDU check in ieee80211_data_to_8023_exthdr
	wifi: cfg80211: factor out bridge tunnel / RFC1042 header check
	wifi: mac80211: remove mesh forwarding congestion check
	wifi: mac80211: fix receiving A-MSDU frames on mesh interfaces
	wifi: mac80211: add a workaround for receiving non-standard mesh A-MSDU
	wifi: cfg80211: check A-MSDU format more carefully
	docs/bpf: Document BPF_MAP_TYPE_LPM_TRIE map
	bpf: Replace bpf_lpm_trie_key 0-length array with flexible array
	bpf: Avoid kfree_rcu() under lock in bpf_lpm_trie.
	Bluetooth: RFCOMM: Fix not validating setsockopt user input
	ext4: check the return value of ext4_xattr_inode_dec_ref()
	ext4: fold quota accounting into ext4_xattr_inode_lookup_create()
	ext4: do not create EA inode under buffer lock
	udf: Fix bogus checksum computation in udf_rename()
	bpf, net: Use DEV_STAT_INC()
	fou: remove warn in gue_gro_receive on unsupported protocol
	jfs: fix null ptr deref in dtInsertEntry
	jfs: Fix shift-out-of-bounds in dbDiscardAG
	fs/ntfs3: Do copy_to_user out of run_lock
	ALSA: usb: Fix UBSAN warning in parse_audio_unit()
	igc: Correct the launchtime offset
	igc: Fix packet still tx after gate close by reducing i226 MAC retry buffer
	net/mlx5e: Take state lock during tx timeout reporter
	net/mlx5e: Correctly report errors for ethtool rx flows
	atm: idt77252: prevent use after free in dequeue_rx()
	net: axienet: Fix register defines comment description
	net: dsa: vsc73xx: pass value in phy_write operation
	net: dsa: vsc73xx: use read_poll_timeout instead delay loop
	net: dsa: vsc73xx: check busy flag in MDIO operations
	mlxbf_gige: Remove two unused function declarations
	mlxbf_gige: disable RX filters until RX path initialized
	mptcp: correct MPTCP_SUBFLOW_ATTR_SSN_OFFSET reserved size
	netfilter: allow ipv6 fragments to arrive on different devices
	netfilter: flowtable: initialise extack before use
	netfilter: nf_queue: drop packets with cloned unconfirmed conntracks
	netfilter: nf_tables: Audit log dump reset after the fact
	netfilter: nf_tables: Drop pointless memset in nf_tables_dump_obj
	netfilter: nf_tables: Unconditionally allocate nft_obj_filter
	netfilter: nf_tables: A better name for nft_obj_filter
	netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctx
	netfilter: nf_tables: nft_obj_filter fits into cb->ctx
	netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctx
	netfilter: nf_tables: Introduce nf_tables_getobj_single
	netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests
	net: hns3: fix wrong use of semaphore up
	net: hns3: use the user's cfg after reset
	net: hns3: fix a deadlock problem when config TC during resetting
	ALSA: hda/realtek: Fix noise from speakers on Lenovo IdeaPad 3 15IAU7
	drm/amd/amdgpu/imu_v11_0: Increase buffer size to ensure all possible values can be stored
	ssb: Fix division by zero issue in ssb_calc_clock_rate
	wifi: cfg80211: check wiphy mutex is held for wdev mutex
	wifi: mac80211: fix BA session teardown race
	mm: Remove kmem_valid_obj()
	rcu: Dump memory object info if callback function is invalid
	rcu: Eliminate rcu_gp_slow_unregister() false positive
	wifi: cw1200: Avoid processing an invalid TIM IE
	cgroup: Avoid extra dereference in css_populate_dir()
	i2c: riic: avoid potential division by zero
	RDMA/rtrs: Fix the problem of variable not initialized fully
	s390/smp,mcck: fix early IPI handling
	drm/bridge: tc358768: Attempt to fix DSI horizontal timings
	i3c: mipi-i3c-hci: Remove BUG() when Ring Abort request times out
	i3c: mipi-i3c-hci: Do not unmap region not mapped for transfer
	drm/amdkfd: Move dma unmapping after TLB flush
	media: radio-isa: use dev_name to fill in bus_info
	staging: iio: resolver: ad2s1210: fix use before initialization
	usb: gadget: uvc: cleanup request when not in correct state
	drm/amd/display: Validate hw_points_num before using it
	staging: ks7010: disable bh on tx_dev_lock
	media: s5p-mfc: Fix potential deadlock on condlock
	md/raid5-cache: use READ_ONCE/WRITE_ONCE for 'conf->log'
	binfmt_misc: cleanup on filesystem umount
	drm/tegra: Zero-initialize iosys_map
	media: qcom: venus: fix incorrect return value
	scsi: spi: Fix sshdr use
	gfs2: setattr_chown: Add missing initialization
	wifi: iwlwifi: abort scan when rfkill on but device enabled
	wifi: iwlwifi: fw: Fix debugfs command sending
	clk: visconti: Add bounds-checking coverage for struct visconti_pll_provider
	IB/hfi1: Fix potential deadlock on &irq_src_lock and &dd->uctxt_lock
	hwmon: (ltc2992) Avoid division by zero
	kbuild: rust_is_available: normalize version matching
	kbuild: rust_is_available: handle failures calling `$RUSTC`/`$BINDGEN`
	rust: work around `bindgen` 0.69.0 issue
	rust: suppress error messages from CONFIG_{RUSTC,BINDGEN}_VERSION_TEXT
	rust: fix the default format for CONFIG_{RUSTC,BINDGEN}_VERSION_TEXT
	arm64: Fix KASAN random tag seed initialization
	block: Fix lockdep warning in blk_mq_mark_tag_wait
	drm/msm: Reduce fallout of fence signaling vs reclaim hangs
	memory: tegra: Skip SID programming if SID registers aren't set
	powerpc/xics: Check return value of kasprintf in icp_native_map_one_cpu
	ASoC: SOF: ipc4: check return value of snd_sof_ipc_msg_data
	hwmon: (pc87360) Bounds check data->innr usage
	drm/rockchip: vop2: clear afbc en and transform bit for cluster window at linear mode
	Bluetooth: hci_conn: Check non NULL function before calling for HFP offload
	gfs2: Refcounting fix in gfs2_thaw_super
	nvmet-trace: avoid dereferencing pointer too early
	ext4: do not trim the group with corrupted block bitmap
	afs: fix __afs_break_callback() / afs_drop_open_mmap() race
	fuse: fix UAF in rcu pathwalks
	quota: Remove BUG_ON from dqget()
	kernfs: fix false-positive WARN(nr_mmapped) in kernfs_drain_open_files
	media: pci: cx23885: check cx23885_vdev_init() return
	fs: binfmt_elf_efpic: don't use missing interpreter's properties
	scsi: lpfc: Initialize status local variable in lpfc_sli4_repost_sgl_list()
	media: drivers/media/dvb-core: copy user arrays safely
	net/sun3_82586: Avoid reading past buffer in debug output
	drm/lima: set gp bus_stop bit before hard reset
	hrtimer: Select housekeeping CPU during migration
	virtiofs: forbid newlines in tags
	clocksource/drivers/arm_global_timer: Guard against division by zero
	netlink: hold nlk->cb_mutex longer in __netlink_dump_start()
	md: clean up invalid BUG_ON in md_ioctl
	x86: Increase brk randomness entropy for 64-bit systems
	memory: stm32-fmc2-ebi: check regmap_read return value
	parisc: Use irq_enter_rcu() to fix warning at kernel/context_tracking.c:367
	powerpc/boot: Handle allocation failure in simple_realloc()
	powerpc/boot: Only free if realloc() succeeds
	btrfs: delayed-inode: drop pointless BUG_ON in __btrfs_remove_delayed_item()
	btrfs: change BUG_ON to assertion when checking for delayed_node root
	btrfs: tests: allocate dummy fs_info and root in test_find_delalloc()
	btrfs: handle invalid root reference found in may_destroy_subvol()
	btrfs: send: handle unexpected data in header buffer in begin_cmd()
	btrfs: change BUG_ON to assertion in tree_move_down()
	btrfs: delete pointless BUG_ON check on quota root in btrfs_qgroup_account_extent()
	f2fs: fix to do sanity check in update_sit_entry
	usb: gadget: fsl: Increase size of name buffer for endpoints
	nvme: clear caller pointer on identify failure
	Bluetooth: bnep: Fix out-of-bound access
	firmware: cirrus: cs_dsp: Initialize debugfs_root to invalid
	rtc: nct3018y: fix possible NULL dereference
	net: hns3: add checking for vf id of mailbox
	nvmet-tcp: do not continue for invalid icreq
	NFS: avoid infinite loop in pnfs_update_layout.
	openrisc: Call setup_memory() earlier in the init sequence
	s390/iucv: fix receive buffer virtual vs physical address confusion
	irqchip/renesas-rzg2l: Do not set TIEN and TINT source at the same time
	clocksource: Make watchdog and suspend-timing multiplication overflow safe
	platform/x86: lg-laptop: fix %s null argument warning
	usb: dwc3: core: Skip setting event buffers for host only controllers
	fbdev: offb: replace of_node_put with __free(device_node)
	irqchip/gic-v3-its: Remove BUG_ON in its_vpe_irq_domain_alloc
	ext4: set the type of max_zeroout to unsigned int to avoid overflow
	nvmet-rdma: fix possible bad dereference when freeing rsps
	drm/amdgpu: fix dereference null return value for the function amdgpu_vm_pt_parent
	hrtimer: Prevent queuing of hrtimer without a function callback
	gtp: pull network headers in gtp_dev_xmit()
	media: solo6x10: replace max(a, min(b, c)) by clamp(b, a, c)
	i2c: tegra: allow DVC support to be compiled out
	i2c: tegra: allow VI support to be compiled out
	i2c: tegra: Do not mark ACPI devices as irq safe
	dm suspend: return -ERESTARTSYS instead of -EINTR
	net: mana: Fix doorbell out of order violation and avoid unnecessary doorbell rings
	btrfs: replace sb::s_blocksize by fs_info::sectorsize
	btrfs: send: allow cloning non-aligned extent if it ends at i_size
	drm/amd/display: Adjust cursor position
	platform/surface: aggregator: Fix warning when controller is destroyed in probe
	drm/amdkfd: reserve the BO before validating it
	Bluetooth: hci_core: Fix LE quote calculation
	Bluetooth: SMP: Fix assumption of Central always being Initiator
	net: dsa: tag_ocelot: do not rely on skb_mac_header() for VLAN xmit
	net: dsa: tag_ocelot: call only the relevant portion of __skb_vlan_pop() on TX
	net: mscc: ocelot: use ocelot_xmit_get_vlan_info() also for FDMA and register injection
	net: mscc: ocelot: fix QoS class for injected packets with "ocelot-8021q"
	net: mscc: ocelot: serialize access to the injection/extraction groups
	tc-testing: don't access non-existent variable on exception
	selftests/net: synchronize udpgro tests' tx and rx connection
	selftests: udpgro: report error when receive failed
	tcp/dccp: bypass empty buckets in inet_twsk_purge()
	tcp/dccp: do not care about families in inet_twsk_purge()
	tcp: prevent concurrent execution of tcp_sk_exit_batch
	net: mctp: test: Use correct skb for route input check
	kcm: Serialise kcm_sendmsg() for the same socket.
	netfilter: nft_counter: Disable BH in nft_counter_offload_stats().
	netfilter: nft_counter: Synchronize nft_counter_reset() against reader.
	ip6_tunnel: Fix broken GRO
	bonding: fix bond_ipsec_offload_ok return type
	bonding: fix null pointer deref in bond_ipsec_offload_ok
	bonding: fix xfrm real_dev null pointer dereference
	bonding: fix xfrm state handling when clearing active slave
	ice: Prepare legacy-rx for upcoming XDP multi-buffer support
	ice: Add xdp_buff to ice_rx_ring struct
	ice: Store page count inside ice_rx_buf
	ice: Pull out next_to_clean bump out of ice_put_rx_buf()
	ice: fix page reuse when PAGE_SIZE is over 8k
	ice: fix ICE_LAST_OFFSET formula
	dpaa2-switch: Fix error checking in dpaa2_switch_seed_bp()
	net: dsa: mv88e6xxx: Fix out-of-bound access
	netem: fix return value if duplicate enqueue fails
	ipv6: prevent UAF in ip6_send_skb()
	ipv6: fix possible UAF in ip6_finish_output2()
	ipv6: prevent possible UAF in ip6_xmit()
	netfilter: flowtable: validate vlan header
	octeontx2-af: Fix CPT AF register offset calculation
	net: xilinx: axienet: Always disable promiscuous mode
	net: xilinx: axienet: Fix dangling multicast addresses
	drm/msm/dpu: don't play tricks with debug macros
	drm/msm/dp: fix the max supported bpp logic
	drm/msm/dp: reset the link phy params before link training
	drm/msm/dpu: cleanup FB if dpu_format_populate_layout fails
	mmc: mmc_test: Fix NULL dereference on allocation failure
	Bluetooth: MGMT: Add error handling to pair_device()
	scsi: core: Fix the return value of scsi_logical_block_count()
	ksmbd: the buffer of smb2 query dir response has at least 1 byte
	drm/amdgpu: Validate TA binary size
	MIPS: Loongson64: Set timer mode in cpu-probe
	HID: wacom: Defer calculation of resolution until resolution_code is known
	HID: microsoft: Add rumble support to latest xbox controllers
	Input: i8042 - add forcenorestore quirk to leave controller untouched even on s3
	Input: i8042 - use new forcenorestore quirk to replace old buggy quirk combination
	cxgb4: add forgotten u64 ivlan cast before shift
	KVM: arm64: Make ICC_*SGI*_EL1 undef in the absence of a vGICv3
	mmc: dw_mmc: allow biu and ciu clocks to defer
	pmdomain: imx: wait SSAR when i.MX93 power domain on
	mptcp: pm: re-using ID of unused removed ADD_ADDR
	mptcp: pm: re-using ID of unused removed subflows
	mptcp: pm: re-using ID of unused flushed subflows
	mptcp: pm: only decrement add_addr_accepted for MPJ req
	Revert "usb: gadget: uvc: cleanup request when not in correct state"
	Revert "drm/amd/display: Validate hw_points_num before using it"
	tcp: do not export tcp_twsk_purge()
	hwmon: (ltc2992) Fix memory leak in ltc2992_parse_dt()
	ALSA: timer: Relax start tick time check for slave timer elements
	mm/vmalloc: fix page mapping if vm_area_alloc_pages() with high order fallback to order 0
	mm/numa: no task_numa_fault() call if PMD is changed
	mm/numa: no task_numa_fault() call if PTE is changed
	nfsd: Simplify code around svc_exit_thread() call in nfsd()
	nfsd: separate nfsd_last_thread() from nfsd_put()
	NFSD: simplify error paths in nfsd_svc()
	nfsd: call nfsd_last_thread() before final nfsd_put()
	nfsd: drop the nfsd_put helper
	nfsd: don't call locks_release_private() twice concurrently
	nfsd: Fix a regression in nfsd_setattr()
	Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in HCIUARTGETPROTO
	drm/amdgpu/vcn: identify unified queue in sw init
	drm/amdgpu/vcn: not pause dpg for unified queue
	KVM: x86: fire timer when it is migrated and expired, and in oneshot mode
	Revert "s390/dasd: Establish DMA alignment"
	udp: allow header check for dodgy GSO_UDP_L4 packets.
	gso: fix dodgy bit handling for GSO_UDP_L4
	net: more strict VIRTIO_NET_HDR_GSO_UDP_L4 validation
	net: drop bad gso csum_start and offset in virtio_net_hdr
	wifi: mac80211: add documentation for amsdu_mesh_control
	wifi: mac80211: fix mesh path discovery based on unicast packets
	wifi: mac80211: fix mesh forwarding
	wifi: mac80211: fix flow dissection for forwarded packets
	wifi: mac80211: fix receiving mesh packets in forwarding=0 networks
	wifi: mac80211: drop bogus static keywords in A-MSDU rx
	wifi: mac80211: fix potential null pointer dereference
	wifi: cfg80211: fix receiving mesh packets without RFC1042 header
	gfs2: Fix another freeze/thaw hang
	gfs2: don't withdraw if init_threads() got interrupted
	gfs2: Remove LM_FLAG_PRIORITY flag
	gfs2: Remove freeze_go_demote_ok
	udp: fix receiving fraglist GSO packets
	ice: fix W=1 headers mismatch
	Revert "jfs: fix shift-out-of-bounds in dbJoin"
	net: change maximum number of UDP segments to 128
	selftests: net: more strict check in net_helper
	Input: MT - limit max slots
	tools: move alignment-related macros to new <linux/align.h>
	Linux 6.1.107

Change-Id: I11d18ae169b1e55f18f0dc2953df2dd3a1f25624
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-10-01 11:35:58 +00:00
Greg Kroah-Hartman
8f2e4ac396 Revert "cgroup: Make operations on the cgroup root_list RCU safe"
This reverts commit f5b7a97920 which is
commit d23b5c577715892c87533b13923306acc6243f93 upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: I6b60c2d6e3ef46d02d40e76c8fd0d0ca8ac58af9
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-30 15:23:48 +00:00
Greg Kroah-Hartman
b4c085bbdb Revert "cgroup: Move rcu_head up near the top of cgroup_root"
This reverts commit 0e76e9bb1d which is
commit a7fb0423c201ba12815877a0b5a68a6a1710b23a upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: Ib15a38a3826b47d2a058a29c6b042107e70d2e33
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-30 15:23:36 +00:00
Greg Kroah-Hartman
4786dae0bb Merge 6.1.106 into android14-6.1-lts
Changes in 6.1.106
	mptcp: pass addr to mptcp_pm_alloc_anno_list
	mptcp: pm: reduce indentation blocks
	mptcp: pm: don't try to create sf if alloc failed
	mptcp: pm: do not ignore 'subflow' if 'signal' flag is also set
	selftests: mptcp: join: test both signal & subflow
	ASoC: topology: Clean up route loading
	ASoC: topology: Fix route memory corruption
	exec: Fix ToCToU between perm check and set-uid/gid usage
	LoongArch: Define __ARCH_WANT_NEW_STAT in unistd.h
	nfsd: move reply cache initialization into nfsd startup
	nfsd: move init of percpu reply_cache_stats counters back to nfsd_init_net
	NFSD: Refactor nfsd_reply_cache_free_locked()
	NFSD: Rename nfsd_reply_cache_alloc()
	NFSD: Replace nfsd_prune_bucket()
	NFSD: Refactor the duplicate reply cache shrinker
	NFSD: Rewrite synopsis of nfsd_percpu_counters_init()
	NFSD: Fix frame size warning in svc_export_parse()
	sunrpc: don't change ->sv_stats if it doesn't exist
	nfsd: stop setting ->pg_stats for unused stats
	sunrpc: pass in the sv_stats struct through svc_create_pooled
	sunrpc: remove ->pg_stats from svc_program
	sunrpc: use the struct net as the svc proc private
	nfsd: rename NFSD_NET_* to NFSD_STATS_*
	nfsd: expose /proc/net/sunrpc/nfsd in net namespaces
	nfsd: make all of the nfsd stats per-network namespace
	nfsd: remove nfsd_stats, make th_cnt a global counter
	nfsd: make svc_stat per-network namespace instead of global
	nvme/pci: Add APST quirk for Lenovo N60z laptop
	mptcp: fully established after ADD_ADDR echo on MPJ
	drm/i915/gem: Fix Virtual Memory mapping boundaries calculation
	cgroup: Make operations on the cgroup root_list RCU safe
	drm/i915: Add a function to mmap framebuffer obj
	drm/i915: Fix a NULL vs IS_ERR() bug
	drm/i915/gem: Adjust vma offset for framebuffer mmap offset
	binfmt_flat: Fix corruption when not offsetting data start
	cgroup: Move rcu_head up near the top of cgroup_root
	wifi: cfg80211: restrict NL80211_ATTR_TXQ_QUANTUM values
	KVM: arm64: Don't pass a TLBI level hint when zapping table entries
	media: Revert "media: dvb-usb: Fix unexpected infinite loop in dvb_usb_read_remote_control()"
	Revert "ata: libata-scsi: Honor the D_SENSE bit for CK_COND=1 and no error"
	Linux 6.1.106

Change-Id: Ibdd04313504f34a755a47f1db5def7869ce7882a
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-27 14:54:53 +00:00
Greg Kroah-Hartman
0450b5433d ANDROID: fix up abi break in arm64 cpu_hwcaps
In commit 286c8ca924 ("arm64: errata: Add workaround for Arm errata
3194386 and 3312417"), we add a new cpucap type, but as that breaks the
existing kernel ABI for Android systems, we need to properly use one of
the reserved slots for it instead of adding a new one.

Fixes: 286c8ca924 ("arm64: errata: Add workaround for Arm errata 3194386 and 3312417")
Change-Id: I7bbb7ffcc59cbfa9a1f03f7081df3387b8151a86
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-27 14:10:46 +00:00
Greg Kroah-Hartman
d747db6875 Merge 6.1.105 into android14-6.1-lts
Changes in 6.1.105
	irqchip/mbigen: Fix mbigen node address layout
	platform/x86/intel/ifs: Gen2 Scan test support
	platform/x86/intel/ifs: Initialize union ifs_status to zero
	jump_label: Fix the fix, brown paper bags galore
	x86/mm: Fix pti_clone_pgtable() alignment assumption
	x86/mm: Fix pti_clone_entry_text() for i386
	sctp: Fix null-ptr-deref in reuseport_add_sock().
	net: usb: qmi_wwan: fix memory leak for not ip packets
	net: bridge: mcast: wait for previous gc cycles when removing port
	net: linkwatch: use system_unbound_wq
	Bluetooth: l2cap: always unlock channel in l2cap_conless_channel()
	Bluetooth: hci_sync: avoid dup filtering when passive scanning with adv monitor
	net: dsa: bcm_sf2: Fix a possible memory leak in bcm_sf2_mdio_register()
	l2tp: fix lockdep splat
	net: fec: Stop PPS on driver remove
	rcutorture: Fix rcu_torture_fwd_cb_cr() data race
	md: do not delete safemode_timer in mddev_suspend
	md/raid5: avoid BUG_ON() while continue reshape after reassembling
	block: change rq_integrity_vec to respect the iterator
	rcu: Fix rcu_barrier() VS post CPUHP_TEARDOWN_CPU invocation
	clocksource/drivers/sh_cmt: Address race condition for clock events
	ACPI: battery: create alarm sysfs attribute atomically
	ACPI: SBS: manage alarm sysfs attribute through psy core
	wifi: nl80211: disallow setting special AP channel widths
	net/mlx5e: SHAMPO, Fix invalid WQ linked list unlink
	selftests/bpf: Fix send_signal test with nested CONFIG_PARAVIRT
	af_unix: Don't retry after unix_state_lock_nested() in unix_stream_connect().
	PCI: Add Edimax Vendor ID to pci_ids.h
	udf: prevent integer overflow in udf_bitmap_free_blocks()
	wifi: nl80211: don't give key data to userspace
	can: mcp251xfd: tef: prepare to workaround broken TEF FIFO tail index erratum
	can: mcp251xfd: tef: update workaround for erratum DS80000789E 6 of mcp2518fd
	btrfs: fix bitmap leak when loading free space cache on duplicate entry
	drm/amdgpu/pm: Fix the param type of set_power_profile_mode
	drm/amdgpu/pm: Fix the null pointer dereference for smu7
	drm/amdgpu: Fix the null pointer dereference to ras_manager
	drm/amdgpu/pm: Fix the null pointer dereference in apply_state_adjust_rules
	drm/amdgpu: Add lock around VF RLCG interface
	drm/amd/pm: Fix the null pointer dereference for vega10_hwmgr
	media: amphion: Remove lock in s_ctrl callback
	drm/amd/display: Add NULL check for 'afb' before dereferencing in amdgpu_dm_plane_handle_cursor_update
	drm/amd/display: Add null checker before passing variables
	media: uvcvideo: Ignore empty TS packets
	media: uvcvideo: Fix the bandwdith quirk on USB 3.x
	media: xc2028: avoid use-after-free in load_firmware_cb()
	ext4: fix uninitialized variable in ext4_inlinedir_to_tree
	jbd2: avoid memleak in jbd2_journal_write_metadata_buffer
	s390/sclp: Prevent release of buffer in I/O
	SUNRPC: Fix a race to wake a sync task
	bus: mhi: host: pci_generic: add support for Telit FE990 modem
	Revert "bpftool: Mount bpffs when pinmaps path not under the bpffs"
	profiling: remove profile=sleep support
	scsi: mpt3sas: Avoid IOMMU page faults on REPORT ZONES
	irqchip/meson-gpio: Convert meson_gpio_irq_controller::lock to 'raw_spinlock_t'
	irqchip/loongarch-cpu: Fix return value of lpic_gsi_to_irq()
	sched/cputime: Fix mul_u64_u64_div_u64() precision for cputime
	ext4: fix wrong unit use in ext4_mb_find_by_goal
	arm64: Add Neoverse-V2 part
	arm64: barrier: Restore spec_bar() macro
	arm64: cputype: Add Cortex-X4 definitions
	arm64: cputype: Add Neoverse-V3 definitions
	arm64: errata: Add workaround for Arm errata 3194386 and 3312417
	arm64: cputype: Add Cortex-X3 definitions
	arm64: cputype: Add Cortex-A720 definitions
	arm64: cputype: Add Cortex-X925 definitions
	arm64: errata: Unify speculative SSBS errata logic
	arm64: errata: Expand speculative SSBS workaround
	arm64: cputype: Add Cortex-X1C definitions
	arm64: cputype: Add Cortex-A725 definitions
	arm64: errata: Expand speculative SSBS workaround (again)
	i2c: smbus: Improve handling of stuck alerts
	ASoC: codecs: wcd938x-sdw: Correct Soundwire ports mask
	ASoC: codecs: wsa881x: Correct Soundwire ports mask
	ASoC: codecs: wsa883x: parse port-mapping information
	ASoC: codecs: wsa883x: Correct Soundwire ports mask
	spi: spidev: Add missing spi_device_id for bh2228fv
	ASoC: SOF: Remove libraries from topology lookups
	i2c: smbus: Send alert notifications to all devices if source not found
	bpf: kprobe: remove unused declaring of bpf_kprobe_override
	kprobes: Fix to check symbol prefixes correctly
	i2c: qcom-geni: add desc struct to prepare support for I2C Master Hub variant
	i2c: qcom-geni: Add missing clk_disable_unprepare in geni_i2c_runtime_resume
	i2c: qcom-geni: Add missing geni_icc_disable in geni_i2c_runtime_resume
	spi: spi-fsl-lpspi: Fix scldiv calculation
	ALSA: usb-audio: Re-add ScratchAmp quirk entries
	ASoC: meson: axg-fifo: fix irq scheduling issue with PREEMPT_RT
	drm/amd/display: Skip Recompute DSC Params if no Stream on Link
	drm/client: fix null pointer dereference in drm_client_modeset_probe
	ALSA: line6: Fix racy access to midibuf
	ALSA: hda: Add HP MP9 G4 Retail System AMS to force connect list
	ALSA: hda/realtek: Add Framework Laptop 13 (Intel Core Ultra) to quirks
	ALSA: hda/hdmi: Yet more pin fix for HP EliteDesk 800 G4
	usb: vhci-hcd: Do not drop references before new references are gained
	USB: serial: debug: do not echo input by default
	usb: gadget: core: Check for unset descriptor
	usb: gadget: u_serial: Set start_delayed during suspend
	usb: gadget: u_audio: Check return codes from usb_ep_enable and config_ep_by_speed.
	scsi: mpi3mr: Avoid IOMMU page faults on REPORT ZONES
	scsi: ufs: core: Fix hba->last_dme_cmd_tstamp timestamp updating logic
	tick/broadcast: Move per CPU pointer access into the atomic section
	vhost-vdpa: switch to use vmf_insert_pfn() in the fault handler
	ntp: Clamp maxerror and esterror to operating range
	torture: Enable clocksource watchdog with "tsc=watchdog"
	clocksource: Scale the watchdog read retries automatically
	clocksource: Fix brown-bag boolean thinko in cs_watchdog_read()
	driver core: Fix uevent_show() vs driver detach race
	ntp: Safeguard against time_constant overflow
	timekeeping: Fix bogus clock_was_set() invocation in do_adjtimex()
	serial: core: check uartclk for zero to avoid divide by zero
	ASoC: amd: yc: Add quirk entry for OMEN by HP Gaming Laptop 16-n0xxx
	kcov: properly check for softirq context
	irqchip/xilinx: Fix shift out of bounds
	genirq/irqdesc: Honor caller provided affinity in alloc_desc()
	power: supply: axp288_charger: Fix constant_charge_voltage writes
	power: supply: axp288_charger: Round constant_charge_voltage writes down
	tracing: Fix overflow in get_free_elt()
	padata: Fix possible divide-by-0 panic in padata_mt_helper()
	smb3: fix setting SecurityFlags when encryption is required
	btrfs: avoid using fixed char array size for tree names
	x86/mtrr: Check if fixed MTRRs exist before saving them
	sched/smt: Introduce sched_smt_present_inc/dec() helper
	sched/smt: Fix unbalance sched_smt_present dec/inc
	drm/bridge: analogix_dp: properly handle zero sized AUX transactions
	drm/dp_mst: Skip CSN if topology probing is not done yet
	drm/lima: Mark simple_ondemand governor as softdep
	drm/mgag200: Set DDC timeout in milliseconds
	drm/mgag200: Bind I2C lifetime to DRM device
	mptcp: mib: count MPJ with backup flag
	mptcp: export local_address
	mptcp: pm: fix backup support in signal endpoints
	selftests: mptcp: join: validate backup in MPJ
	selftests: mptcp: join: check backup support in signal endp
	mptcp: pm: deny endp with signal + subflow + port
	block: use the right type for stub rq_integrity_vec()
	Revert "drm/amd/display: Add NULL check for 'afb' before dereferencing in amdgpu_dm_plane_handle_cursor_update"
	mm: huge_memory: use !CONFIG_64BIT to relax huge page alignment on 32 bit machines
	btrfs: fix corruption after buffer fault in during direct IO append write
	ipv6: fix source address selection with route leak
	tools headers arm64: Sync arm64's cputype.h with the kernel sources
	mm/hugetlb: fix potential race in __update_and_free_hugetlb_folio()
	block: Call .limit_depth() after .hctx has been set
	block/mq-deadline: Fix the tag reservation code
	xfs: fix log recovery buffer allocation for the legacy h_size fixup
	netfilter: nf_tables: bail out if stateful expression provides no .clone
	netfilter: nf_tables: allow clone callbacks to sleep
	netfilter: nf_tables: prefer nft_chain_validate
	i2c: qcom-geni: fix missing clk_disable_unprepare() and geni_se_resources_off()
	btrfs: fix double inode unlock for direct IO sync writes
	Linux 6.1.105

Change-Id: I63c645dee46d43a3f1b166622e1858afba6ae3a8
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-27 14:10:38 +00:00
Greg Kroah-Hartman
2caf29dc67 Merge branch 'android14-6.1' into android14-6.1-lts
Merge the recent changes in android14-6.1 into android14-6.1-lts to
catch up on abi changes and other issues fixed there already.  Changes
included in here are:

* 5a912daf87 ANDROID: OPP: fix function args mismatch for dev_pm_opp_add in pm_opp.h
* bcc435d374 ANDROID: GKI: Update KMI symbol list for ASR
* 9e167c1c27 ANDROID: GKI: Export a symbol “next_arg” for honor
* 4dcae85afd BACKPORT: netem: fix return value if duplicate enqueue fails
* f4bcd4ef0f ANDROID: 16K: Fixup padding vm_flags bits on VMA splits
* 9027204d5a ANDROID: 16K: Introduce pgsize_migration_inline.h
* 03b93dc707 FROMLIST: binder: fix BINDER_WORK_FROZEN_BINDER debug logs
* 9c6fdb6bf8 BACKPORT: FROMLIST: binder: fix freeze UAF in binder_release_work()
* 07a43515b0 FROMLIST: binder: fix OOB in binder_add_freeze_work()
* a26cde4055 FROMLIST: binder: fix node UAF in binder_add_freeze_work()
* df571cd9f1 FROMGIT: virtio_pmem: Check device status before requesting flush
* b2a0a8f709 ANDROID: GKI: update rockchip symbols sync with kernel update
* 83e7e0486e ANDROID: GKI: Update symbol list for honor
* 5c7d0d4f4a ANDROID: GKI: Update `kernel_aarch64_16k` build config to match `kernel_aarch64`
* 2cd8ac816d ANDROID: ABI: update symbol list for honor
* b5ee53c64e ANDROID: Allow vendor modules perform more operationson on sock.
* e64a80a096 ANDROID: GKI: update symbol list file for xiaomi
* 530ff6a3e6 ANDROID: GKI: add vendor hooks android_vh_page_should_be_protected() and android_vh_modify_scan_control().
* 41e1c6f937 Merge tag 'android14-6.1.99_r00' into android14-6.1
* 3b95e54867 ANDROID: Update the ABI symbol list
* b3a2458fc6 ANDROID: mm: add vh for kcompactd_cpu_online()
* 532fad0092 ANDROID: ABI: update symbol list for honor
* 145b08312d ANDROID: vendor_hooks: add hook to perform targeted memory management
* c105083ac6 ANDROID: ABI: update symbol list for honor
* eda4e9fa64 ANDROID: mm: add vendor hook in fault and read file
* 814dd5bfa8 ANDROID: Update the ABI symbol list
* 8a268cb981 ANDROID: GKI: Update symbol list for honor
* be07389110 ANDROID: Allow vendor modules perform operationson on memleak detect
* 47871c381d ANDROID: GKI: Update symbol list for honor
* c7b8f95c21 ANDROID: Allow vendor modules perform more operations on binder transaction.
* d1f3a046a6 FROMGIT: f2fs: prevent atomic file from being dirtied before commit
* 6e5b92a6a1 ANDROID: GKI: Add symbol list for exynosauto
* b18f8bbc04 ANDROID: GKI: Update symbol list for BCMSTB
* ff74052448 BACKPORT: binder_alloc: Fix sleeping function called from invalid context
* 75c9b1955b UPSTREAM: bpf: Fix overrunning reservations in ringbuf
* fdec2610bf ANDROID: gki_config: Disable CONFIG_DEBUG_STACK_USAGE
* d02968a023 ANDROID: gki_defconfig: Enable CONFIG_SERIAL_8250_BCM7271
* a752cdd96f BACKPORT: serial: 8250_bcm7271: improve bcm7271 8250 port
* 04212acc42 ANDROID: GKI: Add initial symbol list for honor
* 27310ed6b6 ANDROID: binder: fix KMI issues due to frozen notification
* 2f43c68d05 FROMGIT: binder: frozen notification binder_features flag
* eda0570485 BACKPORT: FROMGIT: binder: frozen notification
* 822682e75d ANDROID: KVM: arm64: Fix cpu type for tracing HVCs
* c7596f093d ANDROID: gki_defconfig: Enable CONFIG_RTC_HCTOSYS for x86
* d1af8906d9 ANDROID: GKI: Update symbol list for vivo
* 9eca8763c1 ANDROID: vendor_hooks: add hooks for exting task's swp_entrys
* 03a4ae5d99 ANDROID: gki_defconfig: Enable Broadcom SoCs
* ef0ea14d63 ANDROID: ABI: Update xiaomi symbol list
* eabf8327ed ANDROID: Update the ABI symbol list
* f88293625b UPSTREAM: PM: domains: Add helper functions to attach/detach multiple PM domains
* 7b1e2d9798 UPSTREAM: OPP: Fix -Wunsequenced in _of_add_opp_table_v1()
* c33dbb3b87 UPSTREAM: firmware: arm_scmi: Specify the performance level when adding an OPP
* 47933171f3 BACKPORT: firmware: arm_scmi: Simplify error path in scmi_dvfs_device_opps_add()
* b50a013d33 BACKPORT: OPP: Extend support for the opp-level beyond required-opps
* 9ba5e19e0d UPSTREAM: OPP: Extend dev_pm_opp_data with a level
* adf41f4737 BACKPORT: OPP: Add dev_pm_opp_add_dynamic() to allow more flexibility
* 9c1597d2e4 UPSTREAM: dt-bindings: power: Clarify performance capabilities of power-domains
* dda942f010 UPSTREAM: dt-bindings: firmware: arm,scmi: Extend bindings for protocol@13
* ff18572d05 UPSTREAM: dt-bindings: arm: cpus: Add a power-domain-name for a performance-domain
* 5c0092ff97 UPSTREAM: PM: domains: Allow genpd providers to manage OPP tables directly by its FW
* c638aef4e9 UPSTREAM: cpufreq: scmi: Add support to parse domain-id using #power-domain-cells
* 0ccb8d6efa UPSTREAM: cpufreq: scmi: Avoid one OF parsing in scmi_get_sharing_cpus()
* 1a6e883184 UPSTREAM: firmware: arm_scmi: Drop redundant ->device_domain_id() from perf ops
* 3aa5b5408f UPSTREAM: firmware: arm_scmi: Align perf ops to use domain-id as in-parameter
* 49da9f2745 UPSTREAM: cpufreq: scmi: Prepare to move OF parsing of domain-id to cpufreq
* 742d32f206 BACKPORT: firmware: arm_scmi: Extend perf protocol ops to get information of a domain
* b99f37e4a6 BACKPORT: firmware: arm_scmi: Extend perf protocol ops to get number of domains
* 09ab235661 ANDROID: vendor_hooks: export shrink_slab
* 8a0fa49a77 UPSTREAM: erofs: fix out-of-bound access when z_erofs_gbuf_growsize() partially fails
* 7c5c6b6397 UPSTREAM: netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
* a1895da8bd ANDROID: GKI: Add initial sunxi symbol list
* b5e374dda9 FROMLIST: usb: typec: fix up incorrectly backported "usb: typec: tcpm: unregister existing source caps before re-registration"
* 841cae8810 UPSTREAM: net: sched: sch_multiq: fix possible OOB write in multiq_tune()
* 3bb5a64ae9 ANDROID: Update the ABI symbol list
* 6cbdf0e239 ANDROID: Update the ABI symbol list
* 25641a61ba ANDROID: GKI: Update symbol list for mtk
* 82b9eb64eb FROMGIT: KVM: arm64: Ensure TLBI uses correct VMID after changing context
* 9920d2584e FROMGIT: KVM: arm64: Invalidate EL1&0 TLB entries for all VMIDs in nvhe hyp init
* 1a48a88fcb FROMGIT: BACKPORT: KVM: arm64: Don't pass a TLBI level hint when zapping table entries
* 02fcfc12fc Merge tag 'android14-6.1.93_r00' into android14-6.1
* 42515e9246 ANDROID: sched: Add android_vh_set_task_comm
* 0f23336b97 BACKPORT: UPSTREAM: sched: Move psi_account_irqtime() out of update_rq_clock_task() hotpath
* 370ea8bc2e FROMLIST: binder: fix UAF caused by offsets overwrite
* f8f9a197f4 ANDROID: binder: fix KMI-break due to proc->dmap
* a55053f3a8 UPSTREAM: binder: fix descriptor lookup for context manager
* c5f1e68340 BACKPORT: binder: use bitmap for faster descriptor lookup
* 514bdc80b9 UPSTREAM: perf/core: Fix potential NULL deref
* faf32723dc BACKPORT: scsi: ufs: core: Fix ufshcd_abort_one racing issue
* 4d735ca7bb BACKPORT: scsi: ufs: core: Fix ufshcd_clear_cmd racing issue

Change-Id: Ib03de3ba63c1e5c7fc2782fefe352aaa5d234ba1
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-27 14:08:16 +00:00
Anant Goel
5a912daf87 ANDROID: OPP: fix function args mismatch for dev_pm_opp_add in pm_opp.h
The function prototype for dev_pm_opp_add differs between a
configuration when CONFIG_PM_OPP is set versus when CONFIG_PM_OPP is not
set.
Fix this mismatch by aligning the function arguments for the dummy
dev_pm_opp_add with the non-dummy version.

Bug: 369659366
Fixes: adf41f4737 ("BACKPORT: OPP: Add dev_pm_opp_add_dynamic() to allow more flexibility")
Change-Id: If23af6ba28bb493d619f96846545cb86608b285d
Signed-off-by: Anant Goel <quic_anantg@quicinc.com>
2024-09-27 00:34:46 +00:00
meitaogao
bcc435d374 ANDROID: GKI: Update KMI symbol list for ASR
INFO: 9 function symbol(s) added
  'unsigned int kmem_cache_size(struct kmem_cache*)'
  'void media_device_unregister_entity(struct media_entity*)'
  'void* memset16(uint16_t*, uint16_t, size_t)'
  'const char* const* v4l2_ctrl_get_menu(u32)'
  'bool v4l2_ctrl_type_op_equal(const struct v4l2_ctrl*, union v4l2_ctrl_ptr, union v4l2_ctrl_ptr)'
  'void v4l2_ctrl_type_op_init(const struct v4l2_ctrl*, u32, union v4l2_ctrl_ptr)'
  'void v4l2_ctrl_type_op_log(const struct v4l2_ctrl*)'
  'void v4l2_m2m_buf_done_and_job_finish(struct v4l2_m2m_dev*, struct v4l2_m2m_ctx*, enum vb2_buffer_state)'
  'struct vb2_v4l2_buffer* v4l2_m2m_last_buf(struct v4l2_m2m_queue_ctx*)'

Bug: 369670477
Change-Id: I5c3fa32e903685836b7812d33df8ddd6b2c65054
Signed-off-by: meitaogao <meitaogao@asrmicro.com>
2024-09-26 18:25:55 +08:00
yipeng xiang
9e167c1c27 ANDROID: GKI: Export a symbol “next_arg” for honor
Export a symbol “next_arg” in android/abi_gki_aarch64_honor

Bug: 368221985
Change-Id: I0bd8fc321752f0fa3d103b56510b33eadcb6e39b
Signed-off-by: yipeng xiang <yipengxiang@honor.corp-partner.google.com>
2024-09-25 19:24:24 +00:00
Stephen Hemminger
4dcae85afd BACKPORT: netem: fix return value if duplicate enqueue fails
[ Upstream commit c07ff8592d57ed258afee5a5e04991a48dbaf382 ]

There is a bug in netem_enqueue() introduced by
commit 5845f70638 ("net: netem: fix skb length BUG_ON in __skb_to_sgvec")
that can lead to a use-after-free.

This commit made netem_enqueue() always return NET_XMIT_SUCCESS
when a packet is duplicated, which can cause the parent qdisc's q.qlen
to be mistakenly incremented. When this happens qlen_notify() may be
skipped on the parent during destruction, leaving a dangling pointer
for some classful qdiscs like DRR.

There are two ways for the bug happen:

- If the duplicated packet is dropped by rootq->enqueue() and then
  the original packet is also dropped.
- If rootq->enqueue() sends the duplicated packet to a different qdisc
  and the original packet is dropped.

In both cases NET_XMIT_SUCCESS is returned even though no packets
are enqueued at the netem qdisc.

The fix is to defer the enqueue of the duplicate packet until after
the original packet has been guaranteed to return NET_XMIT_SUCCESS.

Bug: 362391455
Fixes: 5845f70638 ("net: netem: fix skb length BUG_ON in __skb_to_sgvec")
Reported-by: Budimir Markovic <markovicbudimir@gmail.com>
Signed-off-by: Stephen Hemminger <stephen@networkplumber.org>
Reviewed-by: Simon Horman <horms@kernel.org>
Link: https://patch.msgid.link/20240819175753.5151-1-stephen@networkplumber.org
Signed-off-by: Jakub Kicinski <kuba@kernel.org>
Signed-off-by: Sasha Levin <sashal@kernel.org>
(cherry picked from commit 0486d31dd8)
Signed-off-by: Lee Jones <joneslee@google.com>
Change-Id: I390f02549c726e961f57daace468d5cd48468722
2024-09-25 18:41:03 +00:00
Kalesh Singh
f4bcd4ef0f ANDROID: 16K: Fixup padding vm_flags bits on VMA splits
In some cases VMAs are split without the mmap write lock held;
later the lock is taken to fixup vm_flags of the original VMA.
Since some uppper bits of vm_flags are used to encode the ELF
padding ranges, they need to be modified on splits. This is
usually handled correctly by __split_vma(). However in the above
case, the flags get over witten later under the write lock.

Preserve vm_flag bits on reset to correctly represent padding.

Bug: 357901498
Change-Id: I1cb75419e614791a47cbdb0341373f619daf0bf2
Signed-off-by: Kalesh Singh <kaleshsingh@google.com>
2024-09-25 17:23:10 +00:00
Kalesh Singh
9027204d5a ANDROID: 16K: Introduce pgsize_migration_inline.h
Introduce inline header to avoid circular dependency. This
will be used in a subsequent patch.

Also take opportunity to do some small noop refactor in
vma_pad_pages() and split_pad_vma() for more robust code.

Bug: 357901498
Change-Id: Ia5f447758d0d07ed3e1429ca1e35dcc0741cc22a
Signed-off-by: Kalesh Singh <kaleshsingh@google.com>
2024-09-25 17:23:10 +00:00
Carlos Llamas
03b93dc707 FROMLIST: binder: fix BINDER_WORK_FROZEN_BINDER debug logs
The BINDER_WORK_FROZEN_BINDER type is not handled in the binder_logs
entries and it shows up as "unknown work" when logged:

  proc 649
  context binder-test
    thread 649: l 00 need_return 0 tr 0
    ref 13: desc 1 node 8 s 1 w 0 d 0000000053c4c0c3
    unknown work: type 10

This patch add the freeze work type and is now logged as such:

  proc 637
  context binder-test
    thread 637: l 00 need_return 0 tr 0
    ref 8: desc 1 node 3 s 1 w 0 d 00000000dc39e9c6
    has frozen binder

Fixes: d579b04a52a1 ("binder: frozen notification")
Cc: stable@vger.kernel.org
Signed-off-by: Carlos Llamas <cmllamas@google.com>

Bug: 366003708
Link: https://lore.kernel.org/all/20240924184401.76043-5-cmllamas@google.com/
Change-Id: I06f888aa5218db19eeda79e315385506af09d9d5
Signed-off-by: Carlos Llamas <cmllamas@google.com>
2024-09-25 03:06:31 +00:00
Carlos Llamas
9c6fdb6bf8 BACKPORT: FROMLIST: binder: fix freeze UAF in binder_release_work()
When a binder reference is cleaned up, any freeze work queued in the
associated process should also be removed. Otherwise, the reference is
freed while its ref->freeze.work is still queued in proc->work leading
to a use-after-free issue as shown by the following KASAN report:

  ==================================================================
  BUG: KASAN: slab-use-after-free in binder_release_work+0x398/0x3d0
  Read of size 8 at addr ffff31600ee91488 by task kworker/5:1/211

  CPU: 5 UID: 0 PID: 211 Comm: kworker/5:1 Not tainted 6.11.0-rc7-00382-gfc6c92196396 #22
  Hardware name: linux,dummy-virt (DT)
  Workqueue: events binder_deferred_func
  Call trace:
   binder_release_work+0x398/0x3d0
   binder_deferred_func+0xb60/0x109c
   process_one_work+0x51c/0xbd4
   worker_thread+0x608/0xee8

  Allocated by task 703:
   __kmalloc_cache_noprof+0x130/0x280
   binder_thread_write+0xdb4/0x42a0
   binder_ioctl+0x18f0/0x25ac
   __arm64_sys_ioctl+0x124/0x190
   invoke_syscall+0x6c/0x254

  Freed by task 211:
   kfree+0xc4/0x230
   binder_deferred_func+0xae8/0x109c
   process_one_work+0x51c/0xbd4
   worker_thread+0x608/0xee8
  ==================================================================

This commit fixes the issue by ensuring any queued freeze work is removed
when cleaning up a binder reference.

Fixes: d579b04a52a1 ("binder: frozen notification")
Cc: stable@vger.kernel.org
Signed-off-by: Carlos Llamas <cmllamas@google.com>

Bug: 366003708
Link: https://lore.kernel.org/all/20240924184401.76043-4-cmllamas@google.com/
Change-Id: Icc40e7dd6157981f4adbea7243e55be118552321
[cmllamas: drop BINDER_STAT_FREEZE as it's not supported here]
Signed-off-by: Carlos Llamas <cmllamas@google.com>
2024-09-25 03:06:31 +00:00
Carlos Llamas
07a43515b0 FROMLIST: binder: fix OOB in binder_add_freeze_work()
In binder_add_freeze_work() we iterate over the proc->nodes with the
proc->inner_lock held. However, this lock is temporarily dropped to
acquire the node->lock first (lock nesting order). This can race with
binder_deferred_release() which removes the nodes from the proc->nodes
rbtree and adds them into binder_dead_nodes list. This leads to a broken
iteration in binder_add_freeze_work() as rb_next() will use data from
binder_dead_nodes, triggering an out-of-bounds access:

  ==================================================================
  BUG: KASAN: global-out-of-bounds in rb_next+0xfc/0x124
  Read of size 8 at addr ffffcb84285f7170 by task freeze/660

  CPU: 8 UID: 0 PID: 660 Comm: freeze Not tainted 6.11.0-07343-ga727812a8d45 #18
  Hardware name: linux,dummy-virt (DT)
  Call trace:
   rb_next+0xfc/0x124
   binder_add_freeze_work+0x344/0x534
   binder_ioctl+0x1e70/0x25ac
   __arm64_sys_ioctl+0x124/0x190

  The buggy address belongs to the variable:
   binder_dead_nodes+0x10/0x40
  [...]
  ==================================================================

This is possible because proc->nodes (rbtree) and binder_dead_nodes
(list) share entries in binder_node through a union:

	struct binder_node {
	[...]
		union {
			struct rb_node rb_node;
			struct hlist_node dead_node;
		};

Fix the race by checking that the proc is still alive. If not, simply
break out of the iteration.

Fixes: d579b04a52a1 ("binder: frozen notification")
Cc: stable@vger.kernel.org
Signed-off-by: Carlos Llamas <cmllamas@google.com>

Bug: 366003708
Link: https://lore.kernel.org/all/20240924184401.76043-3-cmllamas@google.com/
Change-Id: I5ec9d49277a23b864862665b52213460750c535e
Signed-off-by: Carlos Llamas <cmllamas@google.com>
2024-09-25 03:06:31 +00:00
Carlos Llamas
a26cde4055 FROMLIST: binder: fix node UAF in binder_add_freeze_work()
In binder_add_freeze_work() we iterate over the proc->nodes with the
proc->inner_lock held. However, this lock is temporarily dropped in
order to acquire the node->lock first (lock nesting order). This can
race with binder_node_release() and trigger a use-after-free:

  ==================================================================
  BUG: KASAN: slab-use-after-free in _raw_spin_lock+0xe4/0x19c
  Write of size 4 at addr ffff53c04c29dd04 by task freeze/640

  CPU: 5 UID: 0 PID: 640 Comm: freeze Not tainted 6.11.0-07343-ga727812a8d45 #17
  Hardware name: linux,dummy-virt (DT)
  Call trace:
   _raw_spin_lock+0xe4/0x19c
   binder_add_freeze_work+0x148/0x478
   binder_ioctl+0x1e70/0x25ac
   __arm64_sys_ioctl+0x124/0x190

  Allocated by task 637:
   __kmalloc_cache_noprof+0x12c/0x27c
   binder_new_node+0x50/0x700
   binder_transaction+0x35ac/0x6f74
   binder_thread_write+0xfb8/0x42a0
   binder_ioctl+0x18f0/0x25ac
   __arm64_sys_ioctl+0x124/0x190

  Freed by task 637:
   kfree+0xf0/0x330
   binder_thread_read+0x1e88/0x3a68
   binder_ioctl+0x16d8/0x25ac
   __arm64_sys_ioctl+0x124/0x190
  ==================================================================

Fix the race by taking a temporary reference on the node before
releasing the proc->inner lock. This ensures the node remains alive
while in use.

Fixes: d579b04a52a1 ("binder: frozen notification")
Cc: stable@vger.kernel.org
Signed-off-by: Carlos Llamas <cmllamas@google.com>

Bug: 366003708
Link: https://lore.kernel.org/all/20240924184401.76043-2-cmllamas@google.com/
Change-Id: I47b053532dd4cd3424d35d6f254ca4d00c426411
Signed-off-by: Carlos Llamas <cmllamas@google.com>
2024-09-25 03:06:31 +00:00
Philip Chen
df571cd9f1 FROMGIT: virtio_pmem: Check device status before requesting flush
If a pmem device is in a bad status, the driver side could wait for
host ack forever in virtio_pmem_flush(), causing the system to hang.

So add a status check in the beginning of virtio_pmem_flush() to return
early if the device is not activated.

Signed-off-by: Philip Chen <philipchen@chromium.org>
Signed-off-by: Michael S. Tsirkin <mst@redhat.com>
Acked-by: Pankaj Gupta <pankaj.gupta.linux@gmail.com

Bug: 358391069
Change-Id: I325e6f0ea047c4c5fa82cf4b590cbf7240f39b7b
(cherry picked from commit e25fbcd97cf52c3c9824d44b5c56c19673c3dd50 https://git.kernel.org/pub/scm/linux/kernel/git/next/linux-next.git master)
Signed-off-by: Philip Chen <philipchen@google.com>
2024-09-25 00:08:28 +00:00
Kever Yang
b2a0a8f709 ANDROID: GKI: update rockchip symbols sync with kernel update
INFO: 2 function symbol(s) added
  'struct clk* devm_clk_get_enabled(struct device*, const char*)'
  'int devm_regulator_bulk_get_enable(struct device*, int, const char* const*)'

Bug: 300024866
Change-Id: Ib10dc7eb710fc09c185513ba8bf5789c2c7ef5d1
Signed-off-by: Kever Yang <kever.yang@rock-chips.com>
2024-09-24 23:09:49 +00:00
Chenghao Zhao
83e7e0486e ANDROID: GKI: Update symbol list for honor
Update symbol list for honor in android/abi_gki_aarch64_honor

Bug: 369259421
Change-Id: I6954293467a50a758b27444bf51b7205d68dd34d
Signed-off-by: Chenghao Zhao <zhaochenghao@honor.com>
2024-09-24 23:07:46 +00:00
Vilas Bhat
5c7d0d4f4a ANDROID: GKI: Update kernel_aarch64_16k build config to match kernel_aarch64
Test: Built & Flashed 16k page size kernel to Pixel 8a.
Bug: 361155105
Change-Id: Ibfaa96aeabe627f99effc1ae8dbaf3e86156425e
Signed-off-by: Vilas Bhat <vilasbhat@google.com>
2024-09-24 19:54:26 +00:00
Chenghao Zhao
2cd8ac816d ANDROID: ABI: update symbol list for honor
2 function symbol(s) added
  'int netdev_get_name(struct net*, char*, int)'
  'void tcp_send_active_reset(struct sock*, gfp_t)'

Bug: 334000512
Change-Id: I83507ca33d4547088b61c6f83cfb48cc94474185
Signed-off-by: Chenghao Zhao <zhaochenghao@honor.com>
2024-09-23 20:37:44 +00:00
Dezhi Huang
b5ee53c64e ANDROID: Allow vendor modules perform more operationson on sock.
Export netdev_get_name, tcp_send_active_reset functions, allow vendor
modules perform more operations on socks and improve users' online
experience.When users browse websites or watch videos, we will sense
the bad sock is on which device, so that the sock can be switched to
another good device by us, so that the internet service will no longer
be stuck. In a similar scenario, if the user downloads from multiple
devices and the rate of one device is low,we can reset the TCP stream
with a lower rate and establish it on the device with a higher rate.

Bug: 334000512
Change-Id: I9ed90ea9fe6f3dc9f11ae1661ca9f2f5fdad5820
Signed-off-by: Dezhi Huang <huangdezhi@hihonor.com>
(cherry picked from commit 21614c79408f0342363db9874d315fbb3ff6553b)
2024-09-23 20:37:44 +00:00
Yuxuan Yan
e64a80a096 ANDROID: GKI: update symbol list file for xiaomi
add 3 function:
    android_vh_page_should_be_protected()
    android_vh_page_referenced_check_bypass()
    __page_mapcount()

Bug: 348285765

Change-Id: Idbcdf69693a3f4e83ada35aebf3f138648c73d10
Signed-off-by: Yuxuan Yan <yanyuxuan3@xiaomi.corp-partner.google.com>
2024-09-23 18:25:57 +00:00
Yuxuan Yan
530ff6a3e6 ANDROID: GKI: add vendor hooks android_vh_page_should_be_protected() and
android_vh_modify_scan_control().

add two vendor hooks:
    android_vh_page_should_be_protected():protect pages from memory
reclaim.
    android_vh_page_referenced_check_bypass():bypass rmap in active list
shrink.

The new vendor data field in scan_control are used to track how many
pages are protected in current reclaim and the "protected / scanned"
rate. These parameters are useful for understanding the impact of page
protection operations on LRU and reclaim, helping us make better
decsions.

Bug: 348285765
Change-Id: I49567a4b1f978821a94da0a8339b2b8fdfd52daf
Signed-off-by: Yuxuan Yan <yanyuxuan3@xiaomi.corp-partner.google.com>
2024-09-23 18:25:57 +00:00
Greg Kroah-Hartman
41e1c6f937 Merge tag 'android14-6.1.99_r00' into android14-6.1
This merges up to the 6.1.99 LTS release into android14-6.1.  This
includes the following commits:

*   12f9bcc034 Merge 6.1.99 into android14-6.1-lts
|\
| * cac15753b8 Linux 6.1.99
| * 1f4a10cb82 Revert "usb: xhci: prevent potential failure in handle_tx_event() for Transfer events without TRB"
* | e6e7b1084c Merge 6.1.98 into android14-6.1-lts
|\|
| * 266ee8e06d Linux 6.1.98
| * 86e3ffeab5 nilfs2: fix incorrect inode allocation from reserved inodes
| * a077a6cdb3 null_blk: Do not allow runt zone with zone capacity smaller then zone size
| * 2fed4a94bc spi: cadence: Ensure data lines set to low during dummy-cycle period
| * 41f5e2840c nfc/nci: Add the inconsistency check between the input data length and count
| * 833112b7f1 kbuild: fix short log for AS in link-vmlinux.sh
| * 940a71f08e nvmet: fix a possible leak when destroy a ctrl during qp establishment
| * 273a824a9c platform/x86: touchscreen_dmi: Add info for the EZpad 6s Pro
| * 363585e3fc platform/x86: touchscreen_dmi: Add info for GlobalSpace SolT IVW 11.6" tablet
| * 85646d7796 regmap-i2c: Subtract reg size from max_write
| * 62fc41a69c nvme: adjust multiples of NVME_CTRL_PAGE_SIZE in offset
| * ce39d85705 dma-mapping: benchmark: avoid needless copy_to_user if benchmark fails
| * d62da841bf nvme-multipath: find NUMA path only for online numa-node
| * 154f4ca807 ALSA: hda/realtek: Enable headset mic of JP-IK LEAP W502 with ALC897
| * 850ef5d239 fs/ntfs3: Mark volume as dirty if xattr is broken
| * 3d32327f5c i2c: pnx: Fix potential deadlock warning from del_timer_sync() call in isr
| * 7069aa6d41 clk: mediatek: mt8183: Only enable runtime PM on mt8183-mfgcfg
| * e3e33879d6 clk: mediatek: clk-mtk: Register MFG notifier in mtk_clk_simple_probe()
| * 661baa1711 clk: qcom: gcc-sm6350: Fix gpll6* & gpll7 parents
| * e5411f2653 media: dw2102: fix a potential buffer overflow
| * 9c3906c373 ima: Avoid blocking in RCU read-side critical section
| * ee42c15083 arm64: dts: rockchip: Fix the DCDC_REG2 minimum voltage on Quartz64 Model B
| * 9504a15506 bnx2x: Fix multiple UBSAN array-index-out-of-bounds
| * 1c67f79350 mtd: rawnand: rockchip: ensure NVDDR timings are rejected
| * 670f841c07 mtd: rawnand: Bypass a couple of sanity checks during NAND identification
| * ca0f2e7244 mtd: rawnand: Ensure ECC configuration is propagated to upper layers
| * c550679d60 powerpc/pseries: Fix scv instruction crash with kexec
| * dd4674d016 drm: panel-orientation-quirks: Add quirk for Valve Galileo
| * 742cac675f drm/amdgpu/atomfirmware: silence UBSAN warning
| * 1f32535238 drm/nouveau: fix null pointer dereference in nouveau_connector_get_modes
| * cbbe17a324 Revert "mm/writeback: fix possible divide-by-zero in wb_dirty_limits(), again"
| * 4e0716110a fsnotify: Do not generate events for O_PATH file descriptors
| * 44aa3e76f4 can: kvaser_usb: Explicitly initialize family in leafimx driver_info struct
| * e6e200b264 Bluetooth: qca: Fix BT enable failure again for QCA6390 after warm reboot
| * c126aff74a scsi: mpi3mr: Use proper format specifier in mpi3mr_sas_port_add()
| * 525ad8dd9a f2fs: Add inline to f2fs_build_fault_attr() stub
| * aa1d8cc0cc btrfs: fix adding block group to a reclaim list and the unused list during reclaim
| * c83ed422c2 mm: avoid overflows in dirty throttling logic
| * d259d0c375 mm: optimize the redundant loop of mm_update_owner_next()
| * 1b7d549ed2 nilfs2: add missing check for inode numbers on directory entries
| * fae1959d6a nilfs2: fix inode number range checks
| * 98c8958980 Revert "igc: fix a log entry using uninitialized netdev"
| * 89a5f0625f platform/x86: toshiba_acpi: Fix quickstart quirk handling
| * ab557f5cd9 mlxsw: core_linecards: Fix double memory deallocation in case of invalid INI file
| * d6f487e070 inet_diag: Initialize pad field in struct inet_diag_req_v2
| * 8d9fa5e82e selftests: make order checking verbose in msg_zerocopy selftest
| * fb8fc89b5c selftests: fix OOM in msg_zerocopy selftest
| * c8eb8ab9a4 bonding: Fix out-of-bounds read in bond_option_arp_ip_targets_set()
| * 4c06c13317 netfilter: nf_tables: unconditionally flush pending work before notifier
| * 653deee48a riscv: kexec: Avoid deadlock in kexec crash path
| * b610a87538 wifi: wilc1000: fix ies_len type in connect path
| * 4b3b6c7efe net: ntb_netdev: Move ntb_netdev_rx_handler() to call netif_rx() from __netif_rx()
| * 12f6119d86 net: allow skb_datagram_iter to be called from any context
| * b368762d1e e1000e: Fix S0ix residency on corporate systems
| * c159afd3b5 KVM: s390: fix LPSWEY handling
| * 31f03bb041 tcp_metrics: validate source addr length
| * f8b7bd500d net/mlx5e: Add mqprio_rl cleanup and free in mlx5e_priv_cleanup()
| * bc3ff8d3c0 net/mlx5: E-switch, Create ingress ACL when needed
| * 965fbc6d9a UPSTREAM: tcp: fix DSACK undo in fast recovery to call tcp_try_to_open()
| * a0d1afe8a9 mac802154: fix time calculation in ieee802154_configure_durations()
| * 325d8659b8 tools/power turbostat: Remember global max_die_id
| * 0c97527e91 cdrom: rearrange last_media_change check to avoid unintentional overflow
| * c0d7a3b290 btrfs: scrub: initialize ret in scrub_simple_mirror() to fix compilation warning
| * c51795885c s390/pkey: Wipe sensitive data on failure
| * 751987a5d8 jffs2: Fix potential illegal address access in jffs2_free_inode
| * e1683ff4eb serial: imx: Raise TX trigger level to 8
| * b869ec89d2 scsi: mpi3mr: Sanitise num_phys
| * bc84dd2c33 f2fs: check validation of fault attrs in f2fs_build_fault_attr()
| * a21d76bd0b bpf: Avoid uninitialized value in BPF_CORE_READ_BITFIELD
| * 2e9d8aa52b igc: fix a log entry using uninitialized netdev
| * ce8d496786 powerpc/xmon: Check cpu id in commands "c#", "dp#" and "dx#"
| * ae9edc2b17 kunit: Fix timeout message
| * 74159d409d orangefs: fix out-of-bounds fsid access
| * 9c06fe8cfb powerpc/64: Set _IO_BASE to POISON_POINTER_DELTA not 0 for CONFIG_PCI=n
| * d4889c95bc i2c: i801: Annotate apanel_addr as __ro_after_init
| * 1663e2474e media: dvb-frontends: tda10048: Fix integer overflow
| * 1aa04c84a3 media: s2255: Use refcount_t instead of atomic_t for num_channels
| * fa547cdd7b media: dvb-frontends: tda18271c2dd: Remove casting during div
| * aa03f591ef net: dsa: mv88e6xxx: Correct check for empty list
| * 22ea2a7f0b wifi: mt76: replace skb_put with skb_put_zero
| * 948554f1bb usb: xhci: prevent potential failure in handle_tx_event() for Transfer events without TRB
| * 46c82c5e4c Input: ff-core - prefer struct_size over open coded arithmetic
| * d792fc8f7a firmware: dmi: Stop decoding on broken entry
| * f2c9c42f6b sctp: prefer struct_size over open coded arithmetic
| * a010daa33e media: dw2102: Don't translate i2c read into write
| * ee18ed34a2 drm/amdgpu: fix uninitialized scalar variable warning
| * 874261358d drm/amd/display: Skip finding free audio for unknown engine_id
| * d2c3645a4a drm/amd/display: Check pipe offset before setting vblank
| * ae91ffbc8b drm/amd/display: Check index msg_id before read or write
| * bf312c0529 drm/amdgpu: Initialize timestamp for some legacy SOCs
| * 7eb74d14c7 drm/amdgpu: Fix uninitialized variable warnings
| * 28c8d27484 crypto: aead,cipher - zeroize key buffer after use
| * fa49c65a1c scsi: qedf: Make qedf_execute_tmf() non-preemptible
| * 63d202d948 IB/core: Implement a limit on UMAD receive List
| * 95e9377c7c media: dvb-usb: dib0700_devices: Add missing release_firmware()
| * c72990a6a7 media: dvb: as102-fe: Fix as10x_register_addr packing
| * 8d3f83dfb2 powerpc: Avoid nmi_enter/nmi_exit in real mode interrupt.
| * 0a487e977c drm/lima: fix shared irq handling on driver remove
| * eda60520cf crypto: hisilicon/debugfs - Fix debugfs uninit process issue
| * 42d64dbe4b locking/mutex: Introduce devm_mutex_init()
* | e44db5756e ANDROID: db845c symbol list additions
* | ab63f81b3a Revert "mm/page_alloc: Separate THP PCP into movable and non-movable categories"
* | 9a2454ec58 Merge 6.1.97 into android14-6.1-lts
|\|
| * 7753af06ee Linux 6.1.97
| * f19cca5d16 tracing/net_sched: NULL pointer dereference in perf_trace_qdisc_reset()
| * fbfd2c876c serial: 8250_omap: Fix Errata i2310 with RX FIFO level check
| * 1dc9d05040 serial: imx: only set receiver level if it is zero
| * 16d92a6dfa arm64: dts: rockchip: Add sound-dai-cells for RK3368
| * 4e66009d35 arm64: dts: rockchip: fix PMIC interrupt pin on ROCK Pi E
| * 2581e814d7 ARM: dts: rockchip: rk3066a: add #sound-dai-cells to hdmi node
| * bccc0c847f arm64: dts: rockchip: Rename LED related pinctrl nodes on rk3308-rock-pi-s
| * b619f741b6 arm64: dts: rockchip: Fix SD NAND and eMMC init on rk3308-rock-pi-s
| * fcafdf32ac efi/x86: Free EFI memory map only when installing a new one.
| * 01b3cddfa6 efi: xen: Set EFI_PARAVIRT for Xen dom0 boot on all architectures
| * 0d01140e92 efi: memmap: Move manipulation routines into x86 arch tree
| * 7ad4e0a4f6 gfs2: Fix slab-use-after-free in gfs2_qd_dealloc
| * 447434eaaf mm/page_alloc: Separate THP PCP into movable and non-movable categories
| * 978e27ff31 Revert "cpufreq: amd-pstate: Fix the inconsistency in max frequency units"
| * d2b5636883 pwm: stm32: Refuse too small period requests
| * f910aee90b syscalls: fix sys_fanotify_mark prototype
| * e1b88ac1fe syscalls: fix compat_sys_io_pgetevents_time64 usage
| * 5ae6af6841 ftruncate: pass a signed offset
| * 702c1edbaf ata: libata-core: Fix double free on error
| * 5f0d0bf9f5 ata: ahci: Clean up sysfs file on error
| * f926c022eb can: mcp251xfd: fix infinite loop when xmit fails
| * 778a8e67c7 batman-adv: Don't accept TT entries for out-of-spec VIDs
| * c92a15b3b2 drm/amdgpu/atomfirmware: fix parsing of vram_info
| * 30cbf6ffaf drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_hd_modes
| * ca0fabd365 drm/i915/gt: Fix potential UAF by revoke of fence registers
| * 6ce0544cab drm/amdgpu: avoid using null object of framebuffer
| * f95ed0f54b drm/nouveau/dispnv04: fix null pointer dereference in nv17_tv_get_ld_modes
| * 948dc69f4b hexagon: fix fadvise64_64 calling conventions
| * 0f92275527 csky, hexagon: fix broken sys_sync_file_range
| * 87936f517b btrfs: zoned: fix initial free space detection
| * 41dd6b0ec7 sh: rework sync_file_range ABI
| * bf3c44f67c kbuild: Install dtb files as 0644 in Makefile.dtbinst
| * 84394f35b6 irqchip/loongson-liointc: Set different ISRs for different cores
| * 71af0f2f22 cpu/hotplug: Fix dynstate assignment in __cpuhp_setup_state_cpuslocked()
| * e0560219db cpufreq: intel_pstate: Use HWP to initialize ITMT if CPPC is missing
| * 26b18dd30e net: can: j1939: enhanced error handling for tightly received RTS messages in xtp_rx_rts_session_new
| * 4ff6978921 net: can: j1939: recover socket queue on CAN bus error during BAM transmission
| * f97cbce633 net: can: j1939: Initialize unused data in j1939_send_one()
| * a44aedd512 tty: mcf: MCF54418 has 10 UARTS
| * 94307bc31b ALSA: hda/realtek: fix mute/micmute LEDs don't work for EliteBook 645/665 G11.
| * e97ef9a3a3 serial: imx: set receiver level before starting uart
| * 98840e410d serial: 8250_omap: Implementation of Errata i2310
| * a47407ae12 usb: ucsi: stm32: fix command completion handling
| * a11b71624b usb: gadget: aspeed_udc: fix device address configuration
| * d77e2b5104 usb: dwc3: core: remove lock of otg mode during gadget suspend/resume to avoid deadlock
| * 5584c776a1 usb: atm: cxacru: fix endpoint checking in cxacru_bind()
| * 7afa50ce46 usb: musb: da8xx: fix a resource leak in probe()
| * e9835f39a8 usb: gadget: printer: fix races against disable
| * e48b92ed16 usb: gadget: printer: SS+ support
| * a59d84377d net: usb: ax88179_178a: improve link status logs
| * d441ad2aa9 iio: chemical: bme680: Fix sensor data read operation
| * ba1bb3e2a3 iio: chemical: bme680: Fix overflows in compensate() functions
| * 94f303ed7b iio: chemical: bme680: Fix calibration data variable
| * 4decfc47a1 iio: chemical: bme680: Fix pressure value output
| * 90d4d02b37 iio: accel: fxls8962af: select IIO_BUFFER & IIO_KFIFO_BUF
| * df188072b5 iio: adc: ad7266: Fix variable checking bug
| * 274239d9f8 i2c: testunit: discard write requests while old command is running
| * 86826b1ffd i2c: testunit: don't erase registers after STOP
| * 8cfb468a67 counter: ti-eqep: enable clock at probe
| * 70516c5ff3 iio: xilinx-ams: Don't include ams_ctrl_channels in scan_mask
| * f8ec1677ce mmc: sdhci: Do not lock spinlock around mmc_gpio_get_ro()
| * 2f3555c20a mmc: sdhci: Do not invert write-protect twice
| * dca15c1861 mmc: sdhci-pci: Convert PCIBIOS_* return codes to errnos
| * 81027f81c4 mmc: sdhci-brcmstb: check R1_STATUS for erase/trim/discard
| * ea6beb811b nfs: drop the incorrect assertion in nfs_swap_rw()
| * 9ea2d1c678 ocfs2: fix DIO failure due to insufficient transaction credits
| * a4f9251e4b pinctrl: qcom: spmi-gpio: drop broken pm8008 support
| * ceabd79fd4 Revert "MIPS: pci: lantiq: restore reset gpio polarity"
| * 3ae15c0238 parisc: use generic sys_fanotify_mark implementation
| * 161cef8185 x86: stop playing stack games in profile_pc()
| * 7fb374981e ima: Fix use-after-free on a dentry's dname.name
| * b793177141 randomize_kstack: Remove non-functional per-arch entropy filtering
| * 31594c5a42 gpiolib: cdev: Disallow reconfiguration without direction (uAPI v1)
| * c3b425744d riscv: stacktrace: convert arch_stack_walk() to noinstr
| * 09f64e7ad7 drm/amdgpu: Fix pci state save during mode-1 reset
| * 87a2448efc drm/amd/amdgpu: Fix style errors in amdgpu_drv.c & amdgpu_device.c
| * 89d7008af4 gpio: davinci: Validate the obtained number of IRQs
| * c717cef1ff drm/panel: simple: Add missing display timing flags for KOE TX26D202VM0BWA
| * d8e2766655 nvme: fixup comment for nvme RDMA Provider Type
| * b719f2bc76 drm/radeon/radeon_display: Decrease the size of allocated memory
| * 9e424deb9a soc: ti: wkup_m3_ipc: Send NULL dummy message instead of pointer message
| * 06c5331047 media: dvbdev: Initialize sbuf
| * d0ff2443fc ALSA: emux: improve patch ioctl data validation
| * fd7ef32591 crypto: ecdh - explicitly zeroize private_key
| * 48147337d7 net/dpaa2: Avoid explicit cpumask var allocation on stack
| * d85ca8179a net/iucv: Avoid explicit cpumask var allocation on stack
| * 782bdaf9d0 RDMA/restrack: Fix potential invalid address access
| * b30f3197a6 bpf: Mark bpf prog stack with kmsan_unposion_memory in interpreter mode
| * 5bcb9cf62f bpf: Add a check for struct bpf_fib_lookup size
| * cc33a7a2f1 wifi: ieee80211: check for NULL in ieee80211_mle_size_ok()
| * 081938266a mtd: partitions: redboot: Added conversion of operands to a larger type
| * ed1fa6d6af x86/fpu: Fix AMD X86_BUG_FXSAVE_LEAK fixup
| * 7d18ab6e4f vduse: Temporarily fail if control queue feature requested
| * d99a4e147b vduse: validate block features only with block devices
| * 5f41401219 drm/panel: ilitek-ili9881c: Fix warning with GPIO controllers that sleep
| * e4f602e3ff bpf: Take return from set_memory_ro() into account with bpf_prog_lock_ro()
| * efb27ad059 netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers
| * 736c74dc60 tcp: fix tcp_rcv_fastopen_synack() to enter TCP_CA_Loss for failed TFO
| * 853c0387ac powerpc: restore some missing spu syscalls
| * 2eb9a4bc63 parisc: use correct compat recv/recvfrom syscalls
| * ef03810c9a sparc: fix compat recv/recvfrom syscalls
| * 04c1271243 sparc: fix old compat_sys_select()
| * f75c21bf73 net: dsa: microchip: fix wrong register write when masking interrupt
| * c14f3c3793 Fix race for duplicate reqsk on identical SYN
| * 4e0c539ee2 xdp: Remove WARN() from __xdp_reg_mem_model()
| * 75fabdc911 net: dsa: microchip: use collision based back pressure mode
| * aecaaf8abd net: phy: micrel: add Microchip KSZ 9477 to the device table
| * 5516c9ee2a ibmvnic: Free any outstanding tx skbs during scrq reset
| * d1b9df0435 bpf: Fix overrunning reservations in ringbuf
| * bfa86a9691 mlxsw: spectrum_buffers: Fix memory corruptions on Spectrum-4 systems
| * 2dfaf2c4b3 net: dsa: microchip: fix initial port flush problem
| * 8faf91e584 ASoC: fsl-asoc-card: set priv->pdev before using it
| * 20f19c91da ASoC: amd: acp: remove i2s configuration check in acp_i2s_probe()
| * d9912994a0 s390/pci: Add missing virt_to_phys() for directed DIBV
| * 87358401ed ASoC: rockchip: i2s-tdm: Fix trcm mode by setting clock on right mclk
| * b45176b869 netfilter: nf_tables: use timestamp to check for set element timeout
| * 7491c3c55c dt-bindings: i2c: atmel,at91sam: correct path to i2c-controller schema
| * 58d65ce94b dt-bindings: i2c: Drop unneeded quotes
| * 777f3c9954 MIPS: pci: lantiq: restore reset gpio polarity
| * ae7b2aa805 pinctrl: rockchip: fix pinmux reset in rockchip_pmx_set
| * 8a5859bb14 pinctrl: rockchip: use dedicated pinctrl type for RK3328
| * 6bed115e5e pinctrl: rockchip: fix pinmux bits for RK3328 GPIO3-B pins
| * 940ce6f283 pinctrl: rockchip: fix pinmux bits for RK3328 GPIO2-B pins
| * b36efd2e3e pinctrl: fix deadlock in create_pinctrl() when handling -EPROBE_DEFER
| * 4312eace43 Input: ili210x - fix ili251x_read_touch_data() return value
| * b2f1ce6cc9 ACPI: x86: Force StorageD3Enable on more products
| * c538c8861c ACPI: x86: utils: Add Picasso to the list for forcing StorageD3Enable
| * 411e6aa90a usb: typec: ucsi: Ack also failed Get Error commands
| * 8cace39c77 usb: typec: ucsi: Never send a lone connector change ack
* | 47b24bf8ea Revert "net/sched: fix false lockdep warning on qdisc root lock"
* | 0a6ad70f07 Revert "net/sched: unregister lockdep keys in qdisc_create/qdisc_alloc error path"
* | 325f5b8ed9 Revert "tty: add the option to have a tty reject a new ldisc"
* | 7455bf543f Merge 6.1.96 into android14-6.1-lts
|\|
| * 99e6a620de Linux 6.1.96
| * 19526f54ec Revert "mm: mmap: allow for the maximum number of bits for randomizing mmap_base by default"
| * 8a630e8acd hid: asus: asus_report_fixup: fix potential read out of bounds
| * 48d3f91d83 net/sched: unregister lockdep keys in qdisc_create/qdisc_alloc error path
| * d04943bb69 drm/amd/display: revert Exit idle optimizations before HDCP execution
| * 5efe0b5deb kheaders: explicitly define file modes for archived headers
| * f0b5d1d9fe Revert "kheaders: substituting --sort in archive creation"
| * 8ab1361b2e x86/cpu: Fix x86_match_cpu() to match just X86_VENDOR_INTEL
| * b0727ed7ba x86/cpu/vfm: Add new macros to work with (vendor/family/model) values
| * 6efd1d4b1f tracing: Add MODULE_DESCRIPTION() to preemptirq_delay_test
| * 8d5d123f62 pmdomain: ti-sci: Fix duplicate PD referrals
| * 95881ebdb4 ARM: dts: samsung: smdk4412: fix keypad no-autorepeat
| * 7c1448ea11 ARM: dts: samsung: exynos4412-origen: fix keypad no-autorepeat
| * 2df48353fa ARM: dts: samsung: smdkv310: fix keypad no-autorepeat
| * 8154edd62a perf script: Show also errors for --insn-trace option
| * 4bd6f883bd perf: script: add raw|disasm arguments to --insn-trace option
| * 520f28926a spi: stm32: qspi: Clamp stm32_qspi_get_mode() output to CCR_BUSWIDTH_4
| * 56de6648a4 arm64: dts: imx8qm-mek: fix gpio number for reg_usdhc2_vmmc
| * 065494adab spi: stm32: qspi: Fix dual flash mode sanity test in stm32_qspi_setup()
| * fd6cfb11d7 dt-bindings: i2c: google,cros-ec-i2c-tunnel: correct path to i2c-controller schema
| * 92278b2dd1 i2c: ocores: set IACK bit after core is enabled
| * 51897f9935 mm/page_table_check: fix crash on ZONE_DEVICE
| * 6f7c39a675 tcp: clear tp->retrans_stamp in tcp_rcv_fastopen_synack()
| * 665e932600 mm: mmap: allow for the maximum number of bits for randomizing mmap_base by default
| * 4cb3b5bc4c kcov: don't lose track of remote references during softirqs
| * 9ad023010e gcov: add support for GCC 14
| * fc5cb952e6 drm/amdgpu: fix UBSAN warning in kv_dpm.c
| * f803532bc3 drm/radeon: fix UBSAN warning in kv_dpm.c
| * 013e8f2371 drm/i915/mso: using joiner is not possible with eDP MSO
| * 661882cfe5 ALSA: hda/realtek: Limit mic boost on N14AP7
| * 72eed766d9 ALSA: hda/realtek: fix mute/micmute LEDs don't work for ProBook 445/465 G11.
| * 9e6e37d9d6 KVM: x86: Always sync PIR to IRR prior to scanning I/O APIC routes
| * 68df4fc449 KVM: arm64: Disassociate vcpus from redistributor region on teardown
| * 92c77807d9 KVM: Fix a data race on last_boosted_vcpu in kvm_vcpu_on_spin()
| * b95fce863b cifs: fix typo in module parameter enable_gcm_256
| * 15cb476ceb btrfs: retry block group reclaim without infinite loop
| * 893eeba94c net: do not leave a dangling sk pointer, when socket creation fails
| * 44f521431f net: usb: ax88179_178a: improve reset check
| * dda369a760 net: stmmac: Assign configured channel value to EXTTS event
| * d8abba1e3c MIPS: dts: bcm63268: Add missing properties to the TWD node
| * 2703312590 kbuild: Remove support for Clang's ThinLTO caching
| * 9995864186 RDMA/mlx5: Add check for srq max_sge attribute
| * a331f275cb firmware: psci: Fix return value from psci_system_suspend()
| * ddc1f5f124 ACPICA: Revert "ACPICA: avoid Info: mapping multiple BARs. Your kernel is fine."
| * 87d2639f8a arm64: dts: freescale: imx8mm-verdin: enable hysteresis on slow input pin
| * 97af5de2cb arm64: dts: imx93-11x11-evk: Remove the 'no-sdio' property
| * 474a1661f4 regulator: bd71815: fix ramp values
| * 6136f19e52 dmaengine: ioatdma: Fix missing kmem_cache_destroy()
| * 6a104377d4 dmaengine: ioatdma: Fix kmemleak in ioat_pci_probe()
| * 98b35b2b7e dmaengine: ioatdma: Fix error path in ioat3_dma_probe()
| * d7f4e58f1b dmaengine: ioat: use PCI core macros for PCIe Capability
| * 98d79caf37 dmaengine: ioatdma: Fix leaking on version mismatch
| * 95dc59ba94 dmaengine: ioat: Drop redundant pci_enable_pcie_error_reporting()
| * 83163667d8 dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list
| * 1bd1857fed regulator: core: Fix modpost error "regulator_get_regmap" undefined
| * 1803875fef net: usb: rtl8150 fix unintiatilzed variables in rtl8150_get_link_ksettings
| * e214f102e0 bnxt_en: Restore PTP tx_avail count in case of skb_pad() error
| * dd37b86999 ice: Fix VSI list rule with ICE_SW_LKUP_LAST type
| * ec4d970b59 seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors
| * 788d585e62 netfilter: ipset: Fix suspicious rcu_dereference_protected()
| * 49780570bf octeontx2-pf: Add error handling to VLAN unoffload handling
| * 04619db397 virtio_net: checksum offloading handling fix
| * 521d42a1c2 net: stmmac: No need to calculate speed divider when offload is disabled
| * d50d62d5e6 ptp: fix integer overflow in max_vclocks_store
| * 2f82f75f84 sched: act_ct: add netns into the key of tcf_ct_flow_table
| * 623c90d86a tipc: force a dst refcount before doing decryption
| * 6fc78d67f5 net/sched: act_api: fix possible infinite loop in tcf_idr_check_alloc()
| * 668be2b635 net/sched: act_api: rely on rcu in tcf_idr_check_alloc
| * 5bd1b7ab6a net: phy: mxl-gpy: Remove interrupt mask clearing from config_init
| * 70993aca4f net: phy: mxl-gpy: enhance delay time required by loopback disable function
| * 7d0606bdd7 net: lan743x: Support WOL at both the PHY and MAC appropriately
| * 2af9aa9ac6 net: lan743x: disable WOL upon resume to restore full data path operation
| * e2ec071727 qca_spi: Make interrupt remembering atomic
| * 1b631bffcb netns: Make get_net_ns() handle zero refcount net
| * 83c02fb2cc xfrm6: check ip6_dst_idev() return value in xfrm6_get_saddr()
| * 51ee2f7c30 ipv6: prevent possible NULL dereference in rt6_probe()
| * 88b9a55e2e ipv6: prevent possible NULL deref in fib6_nh_init()
| * a02fd5d775 netrom: Fix a memory leak in nr_heartbeat_expiry()
| * eb1bde62d6 ALSA: hda/realtek: Enable headset mic on IdeaPad 330-17IKB 81DM
| * dacc15e9cb bpf: Avoid splat in pskb_pull_reason
| * 7dabc4b45b cipso: fix total option length computation
| * 224b69e875 ice: avoid IRQ collision to fix init failure on ACPI S3 resume
| * 531d85b4fb ice: move RDMA init to ice_idc.c
| * 7de448db67 ALSA/hda: intel-dsp-config: Document AVS as dsp_driver option
| * 71b027d3c0 ALSA: hda/realtek: Remove Framework Laptop 16 from quirks
| * 32ef4dc2b1 tracing: Build event generation tests only as modules
| * 6c0f6ccd93 mips: bmips: BCM6358: make sure CBR is correctly set
| * a6061f60e1 MIPS: Routerboard 532: Fix vendor retry check code
| * 3c6332f3bb tty: add the option to have a tty reject a new ldisc
| * 6466b91968 usb: gadget: function: Remove usage of the deprecated ida_simple_xx() API
| * 3b3655a1d3 serial: exar: adding missing CTI and Exar PCI ids
| * 7f9e70c68b serial: imx: Introduce timeout when waiting on transmitter empty
| * d996deb803 MIPS: Octeon: Add PCIe link status check
| * 70196feadb PCI/PM: Avoid D3cold for HP Pavilion 17 PC/1972 PCIe Ports
| * 29dfe9e844 udf: udftime: prevent overflow in udf_disk_stamp_to_time()
| * 69170a888e usb: dwc3: pci: Don't set "linux,phy_charger_detect" property on Lenovo Yoga Tab2 1380
| * dd42570018 Avoid hw_desc array overrun in dw-axi-dmac
| * 8fc246a8a4 usb: misc: uss720: check for incompatible versions of the Belkin F5U002
| * a9cea0489c f2fs: remove clear SB_INLINECRYPT flag in default_options
| * 8092775cb6 iommu/arm-smmu-v3: Free MSIs in case of ENOMEM
| * 10c19cf7a1 power: supply: cros_usbpd: provide ID table for avoiding fallback match
| * 5cb3339b6d platform/x86: p2sb: Don't init until unassigned resources have been assigned
| * 7bbcd3b1c2 powerpc/io: Avoid clang null pointer arithmetic warnings
| * 8aa11aa001 powerpc/pseries: Enforce hcall result buffer validity and size
| * cf56640e9a ALSA: hda/realtek: Add quirks for Lenovo 13X
| * 9fd8ddd237 drm/lima: mask irqs in timeout path before hard reset
| * 394d660678 drm/lima: add mask irq callback to gp and pp
| * 4cd1360c63 ASoC: Intel: sof_sdw: add JD2 quirk for HP Omen 14
| * 6239d65b91 platform/x86: toshiba_acpi: Add quirk for buttons on Z830
| * fc1f030978 drm/amd/display: Exit idle optimizations before HDCP execution
| * be4a1fc857 Bluetooth: ath3k: Fix multiple issues reported by checkpatch.pl
| * aa2fb9c54c HID: asus: fix more n-key report descriptors if n-key quirked
| * 5368c463bc HID: Add quirk for Logitech Casa touchpad
| * 0b81faa05b wifi: mt76: mt7921s: fix potential hung tasks during chip recovery
| * 96826b16ef netpoll: Fix race condition in netpoll_owner_active
| * e8fc7647a8 net: dsa: realtek: keep default LED state in rtl8366rb
| * d927fae287 kselftest: arm64: Add a null pointer check
| * 048b33817a net/sched: fix false lockdep warning on qdisc root lock
| * eaddb86637 scsi: qedi: Fix crash while reading debugfs attribute
| * f251ccef1d drop_monitor: replace spin_lock by raw_spin_lock
| * 63310043ac af_packet: avoid a false positive warning in packet_setsockopt()
| * 2e48d73577 wifi: ath9k: work around memset overflow warning
| * fed7914858 batman-adv: bypass empty buckets in batadv_purge_orig_ref()
| * 63f2d5373d selftests/bpf: Fix flaky test btf_map_in_map/lookup_update
| * fb9088a7a7 selftests/bpf: Prevent client connect before server bind in test_tc_tunnel.sh
| * 61ec76ec93 block/ioctl: prefer different overflow check
| * cf9b1652b4 rcutorture: Fix invalid context warning when enable srcu barrier testing
| * dbd4175e5e rcutorture: Make stall-tasks directly exit when rcutorture tests end
| * 9bc282fb8a rcutorture: Fix rcu_torture_one_read() pipe_count overflow comment
| * 55c22375cb io_uring/sqpoll: work around a potential audit memory leak
| * 7c42ce556f crypto: hisilicon/sec - Fix memory leak for sec resource release
| * 4925da0896 padata: Disable BH when taking works lock on MT path
* | cb7d32c26d Merge aosp/android14-6.1 to aosp/android14-6.1-lts
* | 6f4a686ac9 Revert "i2c: add fwnode APIs"
* | efbc7c7549 Revert "i2c: acpi: Unbind mux adapters before delete"
* | ced5058778 Merge 6.1.95 into android14-6.1-lts
|\|
| * a6398e3730 Linux 6.1.95
| * edd2754a62 zap_pid_ns_processes: clear TIF_NOTIFY_SIGNAL along with TIF_SIGPENDING
| * e44999ec0b i2c: designware: Fix the functionality flags of the slave-only interface
| * 1a0bbb90f3 i2c: at91: Fix the functionality flags of the slave-only interface
| * ea25a4c0de misc: microchip: pci1xxxx: Fix a memory leak in the error handling of gp_aux_bus_probe()
| * e0e2eec769 usb-storage: alauda: Check whether the media is initialized
| * ae917519ba serial: core: Add UPIO_UNKNOWN constant for unknown port type
| * 29d35f0b53 serial: 8250_dw: fall back to poll if there's no interrupt
| * 9a733d69a4 greybus: Fix use-after-free bug in gb_interface_release due to race condition.
| * 12a4a28eae Bluetooth: qca: generalise device address check
| * 47988653a4 Bluetooth: qca: fix wcn3991 device address check
| * 9afc658ce7 cachefiles, erofs: Fix NULL deref in when cachefiles is not doing ondemand-mode
| * 4733dea73c remoteproc: k3-r5: Jump to error handling labels in start/stop errors
| * 04b0c41912 Revert "fork: defer linking file vma until vma is fully initialized"
| * 35e395373e mptcp: pm: update add_addr counters after connect
| * 51861fc086 serial: 8250_pxa: Configure tx_loadsz to match FIFO IRQ level
| * 00b0752c7f mm/memory-failure: fix handling of dissolved but not taken off from buddy pages
| * b2494506f3 mm/huge_memory: don't unpoison huge_zero_folio
| * 2641261b93 tick/nohz_full: Don't abuse smp_call_function_single() in tick_setup_device()
| * 271dcd977c nilfs2: fix potential kernel bug due to lack of writeback flag waiting
| * 1776596470 btrfs: zoned: fix use-after-free due to race with dev replace
| * babfd2d0d5 btrfs: zoned: factor out DUP bg handling from btrfs_load_block_group_zone_info
| * 43a89d48bd btrfs: zoned: factor out single bg handling from btrfs_load_block_group_zone_info
| * 7fd274c062 btrfs: zoned: factor out per-zone logic from btrfs_load_block_group_zone_info
| * c60f0a442d btrfs: zoned: introduce a zone_info struct in btrfs_load_block_group_zone_info
| * d2fa51eb9c intel_th: pci: Add Lunar Lake support
| * 5b64a368e3 intel_th: pci: Add Meteor Lake-S support
| * a1fb1bd6c0 intel_th: pci: Add Sapphire Rapids SOC support
| * b7b6bc60ed intel_th: pci: Add Granite Rapids SOC support
| * bb8b9d91f7 intel_th: pci: Add Granite Rapids support
| * 3272801490 drm/i915/dpt: Make DPT object unshrinkable
| * d205e30216 drm/i915/gt: Disarm breadcrumbs if engines are already idle
| * 919f862609 riscv: rewrite __kernel_map_pages() to fix sleeping in invalid context
| * dd5042eed5 remoteproc: k3-r5: Do not allow core1 to power up before core0 via sysfs
| * 2a1ec20b17 remoteproc: k3-r5: Wait for core0 power-up before powering up core1
| * f6a426a0c4 dmaengine: axi-dmac: fix possible race in remove()
| * eab9d5a846 PCI: rockchip-ep: Remove wrong mask on subsys_vendor_id
| * ea042dc2be ocfs2: fix races between hole punching and AIO+DIO
| * a2e8105eb2 ocfs2: use coarse time for new created files
| * a373ad833a fs/proc: fix softlockup in __read_vmcore
| * 06bea44b93 knfsd: LOOKUP can return an illegal error value
| * bbce9fb50c spmi: hisi-spmi-controller: Do not override device identifier
| * 95bac1c8be vmci: prevent speculation leaks by sanitizing event in event_deliver()
| * 5eabdf17fe sock_map: avoid race between sock_map_close and sk_psock_put
| * ae080302bf null_blk: Print correct max open zones limit in null_init_zoned_dev()
| * e2585bc1d8 tracing/selftests: Fix kprobe event name test for .isra. functions
| * 6625417dfe riscv: fix overlap of allocated page and PTR_ERR
| * c81705d66f perf/core: Fix missing wakeup when waiting for context reference
| * 355784a5c0 x86/amd_nb: Check for invalid SMN reads
| * 2458f2362f irqchip/gic-v3-its: Fix potential race condition in its_vlpi_prop_update()
| * 9dc3200a5c mptcp: pm: inc RmAddr MIB counter once per RM_ADDR ID
| * f03c46eabb mptcp: ensure snd_una is properly initialized on connect
| * c3ca24dfe9 drm/exynos: hdmi: report safe 640x480 mode as a fallback when no EDID found
| * dcba6bedb4 drm/exynos/vidi: fix memory leak in .get_modes()
| * 08891eeaa9 drivers: core: synchronize really_probe() and dev_uevent()
| * cc09e1d351 iio: imu: inv_icm42600: delete unneeded update watermark call
| * 1b82cc8664 iio: dac: ad5592r: fix temperature channel scaling value
| * f35eb2c486 iio: adc: ad9467: fix scan type sign
| * b9da7e9653 x86/boot: Don't add the EFI stub to targets, again
| * 34ae447b13 misc: microchip: pci1xxxx: fix double free in the error handling of gp_aux_bus_probe()
| * cde177fa23 bnxt_en: Adjust logging of firmware messages in case of released token in __hwrm_send()
| * e9c6513cff af_unix: Read with MSG_PEEK loops if the first unread byte is OOB
| * 60cd714871 ionic: fix use after netif_napi_del()
| * caaa212978 net: bridge: mst: fix suspicious rcu usage in br_mst_set_state
| * 09f4337c27 net: bridge: mst: pass vlan group directly to br_mst_vlan_set_state
| * cd68f84910 net/ipv6: Fix the RT cache flush via sysctl using a previous delay
| * 5872043bcf nvmet-passthru: propagate status from id override functions
| * a6ea39fd2d net: stmmac: replace priv->speed with the portTransmitRate from the tc-cbs parameters
| * c495ebe90b gve: ignore nonrelevant GSO type bits when processing TSO headers
| * 950217d97c net: pse-pd: Use EOPNOTSUPP error code instead of ENOTSUPP
| * 390b353d1a netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
| * 4431d37498 Bluetooth: L2CAP: Fix rejecting L2CAP_CONN_PARAM_UPDATE_REQ
| * 0f99dc35cb net/mlx5e: Fix features validation check for tunneled UDP (non-VXLAN) packets
| * 11f1f0c4f7 geneve: Fix incorrect inner network header offset when innerprotoinherit is set
| * 0b160b127c tcp: fix race in tcp_v6_syn_recv_sock()
| * c8879a39c7 drm/bridge/panel: Fix runtime warning on panel bridge release
| * 3b1cf943b0 drm/komeda: check for error-valued pointer
| * f1ab15a094 liquidio: Adjust a NULL pointer handling path in lio_vf_rep_copy_packet
| * f2583f8172 net: hns3: add cond_resched() to hns3 ring buffer init process
| * 6d0007f7b6 net: hns3: fix kernel crash problem in concurrent scenario
| * 84a0d86853 net: sfp: Always call `sfp_sm_mod_remove()` on remove
| * 2b7be0eb79 drm/vmwgfx: Remove STDU logic from generic mode_valid function
| * b1aae9c5d7 drm/vmwgfx: 3D disabled should not effect STDU memory limits
| * b7479b39b7 drm/vmwgfx: Filter modes which exceed graphics memory
| * 862bd36daf drm/vmwgfx: Refactor drm connector probing for display modes
| * 67adcfae2e drm/vmwgfx: Port the framebuffer code to drm fb helpers
| * 789c99a1d7 HID: logitech-dj: Fix memory leak in logi_dj_recv_switch_to_dj_mode()
| * f2af9dbad8 iommu/amd: Fix sysfs leak in iommu init
| * bfd546fc7f HID: core: remove unnecessary WARN_ON() in implement()
| * 2df8c16ea4 gpio: tqmx86: fix broken IRQ_TYPE_EDGE_BOTH interrupt type
| * 4ada932c43 gpio: tqmx86: store IRQ trigger type and unmask status separately
| * 0f6b55f9f7 gpio: tqmx86: Convert to immutable irq_chip
| * 8c2e28a209 gpio: tqmx86: introduce shadow register for GPIO output value
| * a09c3dbe59 gpio: tqmx86: remove unneeded call to platform_set_drvdata()
| * 8200440578 gpio: tqmx86: fix typo in Kconfig label
| * 3150d4e4b9 platform/x86: dell-smbios: Fix wrong token data in sysfs
| * 0abb51acfb NFS: add barriers when testing for NFS_FSDATA_BLOCKED
| * 3cde566d9f SUNRPC: return proper error from gss_wrap_req_priv
| * e6ddef11c0 NFSv4.1 enforce rootpath check in fs_location query
| * 81fce119df clk: sifive: Do not register clkdevs for PRCI clocks
| * fcb4ce61a5 selftests/ftrace: Fix to check required event file
| * 320ba9cbca cachefiles: flush all requests after setting CACHEFILES_DEAD
| * eac51d9daa cachefiles: defer exposing anon_fd until after copy_to_user() succeeds
| * 1fd5f317b5 cachefiles: never get a new anonymous fd if ondemand_id is valid
| * bb00aef6d9 cachefiles: remove err_put_fd label in cachefiles_ondemand_daemon_read()
| * cb55625f8e cachefiles: fix slab-use-after-free in cachefiles_ondemand_daemon_read()
| * 99e9c5bd27 cachefiles: fix slab-use-after-free in cachefiles_ondemand_get_fd()
| * a0cc87f866 cachefiles: add restore command to recover inflight ondemand read requests
| * 5344f2ab31 cachefiles: add spin_lock for cachefiles_ondemand_info
| * f17443d52d cachefiles: resend an open request if the read request's object is closed
| * bb512c8587 cachefiles: extract ondemand info field from cachefiles_object
| * e43fb9a20d cachefiles: introduce object ondemand state
| * 9f13aacdd4 cachefiles: remove requests from xarray during flushing requests
| * dad925266a cachefiles: add output string to cachefiles_obj_[get|put]_ondemand_fd
| * bee55952ff cxl/test: Add missing vmalloc.h for tools/testing/cxl/test/mem.c
| * 6dfa1d80ea Input: try trimming too long modalias strings
| * ce1afd733b powerpc/uaccess: Fix build errors seen with GCC 13/14
| * d221284991 gve: Clear napi->skb before dev_kfree_skb_any()
| * d19254d891 scsi: sd: Use READ(16) when reading block zero on large capacity disks
| * 46bab2bcd7 scsi: mpt3sas: Avoid test/set_bit() operating in non-allocated memory
| * a9624afc91 scsi: mpi3mr: Fix ATA NCQ priority support
| * a136698d1e thunderbolt: debugfs: Fix margin debugfs node creation condition
| * 0daacb57b9 xhci: Apply broken streams quirk to Etron EJ188 xHCI host
| * 633f72cb61 xhci: Handle TD clearing for multiple streams case
| * 0a1c2a581d xhci: Apply reset resume quirk to Etron EJ188 xHCI host
| * f6559d28c0 xhci: Set correct transferred length for cancelled bulk transfers
| * 33aecc5799 jfs: xattr: fix buffer overflow for invalid xattr
| * b6e5e69643 landlock: Fix d_parent walk
| * 03f916e56a tty: n_tty: Fix buffer offsets when lookahead is used
| * 185a1b1fcc mei: me: release irq in mei_me_pci_resume error path
| * 2ad7e02c2e usb: typec: tcpm: Ignore received Hard Reset in TOGGLING state
| * 4053696594 usb: typec: tcpm: fix use-after-free case in tcpm_register_source_caps
| * fb9f366ae6 USB: xen-hcd: Traverse host/ when CONFIG_USB_XEN_HCD is selected
| * 02a4c0499f USB: class: cdc-wdm: Fix CPU lockup caused by excessive log messages
| * c2844d5e58 io_uring: check for non-NULL file pointer in io_file_can_poll()
| * 129dcd3e7d nilfs2: fix nilfs_empty_dir() misjudgment and long loop on I/O errors
| * ea2ac9238d nilfs2: return the mapped address from nilfs_get_page()
| * 8b0d6d1879 btrfs: fix leak of qgroup extent records after transaction abort
| * b1a5d3f79b btrfs: make btrfs_destroy_delayed_refs() return void
| * 95e69b16d0 btrfs: remove unnecessary prototype declarations at disk-io.c
| * be70a6c516 wifi: ath10k: fix QCOM_RPROC_COMMON dependency
| * 46a072e050 selftests/mm: compaction_test: fix bogus test success on Aarch64
| * 264b8a7e15 selftests/mm: log a consistent test name for check_compaction
| * 5ba39134b6 selftests/mm: conform test to TAP format output
| * 499fd1db08 selftests/mm: compaction_test: fix incorrect write of zero to nr_hugepages
| * 198a80833e mm/vmalloc: fix vmalloc which may return null if called with __GFP_NOFAIL
| * fe5c2bdcb1 mm, vmalloc: fix high order __GFP_NOFAIL allocations
| * b1574c8c0a i2c: acpi: Unbind mux adapters before delete
| * ef1e9b624d i2c: add fwnode APIs
| * c0cd2d8800 HID: i2c-hid: elan: fix reset suspend current leakage
| * 274ecd4001 HID: i2c-hid: elan: Add ili9882t timing
| * 0fce1c959a firmware: qcom_scm: disable clocks if qcom_scm_bw_enable() fails
| * 5ee241f72e mmc: davinci: Don't strip remove function when driver is builtin
| * c3d39fdc33 serial: sc16is7xx: fix bug in sc16is7xx_set_baud() when using prescaler
| * aeb2b22e4f serial: sc16is7xx: replace hardcoded divisor value with BIT() macro
| * c0b8f49183 misc/pvpanic-pci: register attributes via pci_driver
| * 96826e74d7 misc/pvpanic: deduplicate common code
| * 1529c86da6 arm64: dts: qcom: sa8155p-adp: fix SDHC2 CD pin configuration
| * eedbb969a4 arm64: dts: qcom: sm8150: align TLMM pin configuration with DT schema
| * a869a9b604 drm/amd/display: Fix incorrect DSC instance for MST
| * ed82dc58c7 drm/amd/display: drop unnecessary NULL checks in debugfs
| * b6621895b4 xtensa: fix MAKE_PC_FROM_RA second argument
| * eccf114abd xtensa: stacktrace: include <asm/ftrace.h> for prototype
| * 5253a35ea5 iio: accel: mxc4005: Reset chip on probe() and resume()
| * 02db59533b iio: accel: mxc4005: allow module autoloading via OF compatible
| * a0fdccb1c9 usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete
| * b55bc52521 usb: gadget: f_fs: use io_data->status consistently
| * e8b8582355 btrfs: fix wrong block_start calculation for btrfs_drop_extent_map_range()
| * b45cfd9bde Bluetooth: qca: fix invalid device address check
| * 2498960dac ipv6: fix possible race in __fib6_drop_pcpu_from()
| * 6b9ff1620d af_unix: Annotate data-race of sk->sk_shutdown in sk_diag_fill().
| * 4a967bac16 af_unix: Use skb_queue_len_lockless() in sk_diag_show_rqlen().
| * e3f2599e9a af_unix: Use skb_queue_empty_lockless() in unix_release_sock().
| * 4c64c3e2f5 af_unix: annotate lockless accesses to sk->sk_err
| * f5c4276607 af_unix: Use unix_recvq_full_lockless() in unix_stream_connect().
| * 8b29fcd7f3 af_unix: Annotate data-race of net->unx.sysctl_max_dgram_qlen.
| * 19425cfe59 af_unix: Annotate data-races around sk->sk_state in UNIX_DIAG.
| * fda68a7da8 af_unix: Annotate data-race of sk->sk_state in unix_stream_read_skb().
| * f53cf0449e af_unix: Annotate data-races around sk->sk_state in sendmsg() and recvmsg().
| * 018fc5d9db af_unix: Annotate data-race of sk->sk_state in unix_stream_connect().
| * 35bdc364e1 af_unix: Annotate data-races around sk->sk_state in unix_write_space() and poll().
| * a8814322e5 af_unix: Annotate data-race of sk->sk_state in unix_inq_len().
| * a59dc9cb03 af_unix: Annodate data-races around sk->sk_state for writers.
| * ca32605565 af_unix: Set sk->sk_state under unix_state_lock() for truly disconencted peer.
| * fe394d59cd net: wwan: iosm: Fix tainted pointer delete is case of region creation fail
| * a62c50545b ice: remove af_xdp_zc_qps bitmap
| * 447a5433bd ice: remove null checks before devm_kfree() calls
| * a388961be5 ice: Introduce new parameters in ice_sched_node
| * 17ccdebe5a ice: fix iteration of TLVs in Preserved Fields Area
| * 952557eb6e ptp: Fix error message on failed pin verification
| * 0bf6cc9661 net/sched: taprio: always validate TCA_TAPRIO_ATTR_PRIOMAP
| * 531eab2da2 net/mlx5: Fix tainted pointer delete is case of flow rules creation fail
| * e7d4485d47 net/mlx5: Always stop health timer during driver removal
| * 0819acb87b net/mlx5: Split function_setup() to enable and open functions
| * 0c42eef3f0 net/mlx5: Stop waiting for PCI if pci channel is offline
| * e4df7b53a4 net/mlx5: Stop waiting for PCI up if teardown was triggered
| * a2ab7dae67 tcp: count CLOSE-WAIT sockets for TCP_MIB_CURRESTAB
| * a31d0e5deb vxlan: Fix regression when dropping packets due to invalid src addresses
| * 0f208fad86 net: sched: sch_multiq: fix possible OOB write in multiq_tune()
| * 1a0c20c056 net/smc: avoid overwriting when adjusting sock bufsizes
| * 87ef68f3af octeontx2-af: Always allocate PF entries from low prioriy zone
| * 3708b6c254 bpf: Set run context for rawtp test_run callback
| * a170d5a40f ipv6: sr: block BH in seg6_output_core() and seg6_input_core()
| * 9b3d1ba4a4 ipv6: ioam: block BH from ioam6_output()
| * 9bcdfdc6a6 net/ncsi: Fix the multi thread manner of NCSI driver
| * f2cd7e1b48 net/ncsi: Simplify Kconfig/dts control flow
| * e6ad2311e0 ax25: Replace kfree() in ax25_dev_free() with ax25_dev_put()
| * f4df9d6c8d ax25: Fix refcount imbalance on inbound connections
| * bd403f3989 wifi: mac80211: correctly parse Spatial Reuse Parameter Set element
| * a8bc8276af wifi: iwlwifi: mvm: don't read past the mfuart notifcation
| * 9e719ae3ab wifi: iwlwifi: mvm: check n_ssids before accessing the ssids
| * ca4c230788 wifi: iwlwifi: dbg_ini: move iwl_dbg_tlv_free outside of debugfs ifdef
| * 8014a7dbbf wifi: iwlwifi: mvm: revert gen2 TX A-MPDU size to 64
| * a5c20830fb wifi: cfg80211: pmsr: use correct nla_get_uX functions
| * 6d540b0317 wifi: cfg80211: Lock wiphy in cfg80211_get_station
| * 96c950d6b0 wifi: cfg80211: fully move wiphy work to unbound workqueue
| * 9c49b58b9a wifi: mac80211: Fix deadlock in ieee80211_sta_ps_deliver_wakeup()
| * 617dadbfb2 wifi: mac80211: mesh: Fix leak of mesh_preq_queue objects
* | c6bbb760e9 ANDROID: ABI fixup for abi break in struct dst_ops
* | 079775fd35 Merge 6.1.94 into android14-6.1-lts
|/
* eb44d83053 Linux 6.1.94
* 6d6fe13cca smp: Provide 'setup_max_cpus' definition on UP too
* b09b556e48 smb: client: fix deadlock in smb2_find_smb_tcon()
* 3174d8b7c9 powerpc/bpf: enforce full ordering for ATOMIC operations with BPF_FETCH
* 1ff2bd566f btrfs: fix crash on racing fsync and size-extending write into prealloc
* e601937b5b NFS: Fix READ_PLUS when server doesn't support OP_READ_PLUS
* a54419e60e nfs: fix undefined behavior in nfs_block_bits()
* 728b663f5e EDAC/igen6: Convert PCIBIOS_* return codes to errnos
* 4e060b308d i3c: master: svc: fix invalidate IBI type and miss call client IBI handler
* 07c8050f8c s390/cpacf: Make use of invalid opcode produce a link error
* 1d39dcff47 s390/cpacf: Split and rework cpacf query functions
* 8c5f5911c1 s390/ap: Fix crash in AP internal function modify_bitmap()
* ff19ea00a5 parisc: Define sigset_t in parisc uapi header
* bca17801fb parisc: Define HAVE_ARCH_HUGETLB_UNMAPPED_AREA
* e941b712e7 ext4: fix mb_cache_entry's e_refcnt leak in ext4_xattr_block_cache_find()
* 16a392f66a ext4: set type of ac_groups_linear_remaining to __u32 to avoid overflow
* d47445b041 sparc: move struct termio to asm/termios.h
* 81dd3c82a4 net: fix __dst_negative_advice() race
* 10938be35e kdb: Use format-specifiers rather than memset() for padding in kdb_read()
* 60e2a14a81 kdb: Merge identical case statements in kdb_read()
* 0ec478e7a1 kdb: Fix console handling when editing and tab-completing commands
* b4e6a259f8 kdb: Use format-strings rather than '\0' injection in kdb_read()
* 33d9c81465 kdb: Fix buffer overflow during tab-complete
* 6da1ffc4bc watchdog: rti_wdt: Set min_hw_heartbeat_ms to accommodate a safety margin
* c7071d3052 mm/hugetlb: pass correct order_per_bit to cma_declare_contiguous_nid
* 04b4278245 mm/cma: drop incorrect alignment check in cma_init_reserved_mem
* 14a339e7d7 sparc64: Fix number of online CPUs
* 3ec82c9a15 intel_th: pci: Add Meteor Lake-S CPU support
* 82590ce3a0 cpufreq: amd-pstate: Fix the inconsistency in max frequency units
* 9ff078f5ba kmsan: do not wipe out origin when doing partial unpoisoning
* ca71f20471 net/9p: fix uninit-value in p9_client_rpc()
* 6684086359 net/ipv6: Fix route deleting failure when metric equals 0
* 65bb86fbc8 scsi: core: Handle devices which return an unusually large VPD page count
* 7a2bc8b34e mm: fix race between __split_huge_pmd_locked() and GUP-fast
* e7428e7e3f crypto: qat - Fix ADF_DEV_RESET_SYNC memory leak
* dd999fdeee crypto: ecrdsa - Fix module auto-load on add_key
* 458458c130 crypto: ecdsa - Fix module auto-load on add-key
* e0032f5c08 KVM: arm64: AArch32: Fix spurious trapping of conditional instructions
* 5b12ce0b6f KVM: arm64: Allow AArch32 PSTATE.M to be restored as System mode
* 4f902f03ef KVM: arm64: Fix AArch32 register narrowing on userspace write
* 7da44257e6 drm/amd: Fix shutdown (again) on some SMU v13.0.4/11 platforms
* cb299cdba0 9p: add missing locking around taking dentry fid list
* 97820893f2 drm/amdgpu/atomfirmware: add intergrated info v2.3 table
* edaa57480b fbdev: savage: Handle err return when savagefb_check_var failed
* 1a156761fc mmc: sdhci-acpi: Add quirk to enable pull-up on the card-detect GPIO on Asus T100TA
* 4ac34dc6b4 mmc: sdhci-acpi: Disable write protect detection on Toshiba WT10-A
* 21109f137a mmc: sdhci-acpi: Fix Lenovo Yoga Tablet 2 Pro 1380 sdcard slot not working
* c2107d3024 mmc: sdhci-acpi: Sort DMI quirks alphabetically
* 32b76505ba mmc: sdhci: Add support for "Tuning Error" interrupts
* 36a28616d4 mmc: core: Add mmc_gpiod_set_cd_config() function
* 7170d0c0da media: v4l2-core: hold videodev_lock until dev reg, finishes
* 5d931a2694 media: mxl5xx: Move xpt structures off stack
* 9ef7ee4cb6 media: mc: mark the media devnode as registered from the, start
* 788fd0f11e media: mc: Fix graph walk in media_pipeline_start
* 9d180538de arm64: dts: hi3798cv200: fix the size of GICR
* 46fe2af45c wifi: rtlwifi: rtl8192de: Fix endianness issue in RX path
* 6973383af5 wifi: rtlwifi: rtl8192de: Fix low speed with WPA3-SAE
* 83daddb601 wifi: rtlwifi: rtl8192de: Fix 5 GHz TX power
* 2c13c9f6ca wifi: rtl8xxxu: Fix the TX power of RTL8192CU, RTL8723AU
* c365394a41 wifi: rtw89: pci: correct TX resource checking for PCI DMA channel of firmware command
* 3f8d5e802d md/raid5: fix deadlock that raid5d() wait for itself to clear MD_SB_CHANGE_PENDING
* 3f09972198 arm64: dts: qcom: qcs404: fix bluetooth device address
* 2eea8b448e arm64: tegra: Correct Tegra132 I2C alias
* ef2f4d60c3 ACPI: resource: Do IRQ override on TongFang GXxHRXx and GMxHGxx
* 3988a2850b soc: qcom: rpmh-rsc: Enhance check for VRM in-flight request
* 560d69c975 thermal/drivers/qcom/lmh: Check for SCM availability at probe
* 5e0d41aa53 ata: pata_legacy: make legacy_exit() work again
* 336b8b2e90 wifi: rtw89: correct aSIFSTime for 6GHz band
* 934e1e4331 bcache: fix variable length array abuse in btree_iter
* 011552f29f drm/amdgpu: add error handle to avoid out-of-bounds
* d082757b83 media: lgdt3306a: Add a check against null-pointer-def
* 8c8aa473fe f2fs: fix to do sanity check on i_xattr_nid in sanity_check_inode()
* 376fad5e52 scripts/gdb: fix SB_* constants parsing
* 6bbd9c021c vxlan: Fix regression when dropping packets due to invalid src addresses
* 7a898d5ed4 mptcp: fix full TCP keep-alive support
* dc62d53f01 mptcp: cleanup SOL_TCP handling
* e7d48faa15 mptcp: avoid some duplicate code in socket option handling
* 164320fc22 drm/i915/audio: Fix audio time stamp programming for DP
* 86a30d6302 nilfs2: fix use-after-free of timer for log writer thread
* 79fc40a29d riscv: signal: handle syscall restart before get_signal
* bc20a0a290 afs: Don't cross .backup mountpoint from backup volume
* 265426254d mmc: core: Do not force a retune before RPMB switch
* 883e5d542b maple_tree: fix mas_empty_area_rev() null pointer dereference
* 34f3005303 maple_tree: fix allocation in mas_sparse_area()
* cf0df43520 Bluetooth: btrtl: Add missing MODULE_FIRMWARE declarations
* a17e06d709 drm: Check polling initialized before enabling in drm_helper_probe_single_connector_modes
* 4ad8d57d90 drm: Check output polling initialized before disabling

Change-Id: I849966e53c4a46d2ee81b3b6078f953a08502872
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-23 14:23:12 +00:00
Dmitry Skiba
3b95e54867 ANDROID: Update the ABI symbol list
Adding the following symbols:
  - __traceiter_android_rvh_try_to_wake_up_success
  - __traceiter_android_vh_mm_kcompactd_cpu_online
  - __traceiter_android_vh_vmscan_kswapd_done
  - __traceiter_mm_vmscan_kswapd_wake
  - __tracepoint_android_rvh_try_to_wake_up_success
  - __tracepoint_android_vh_mm_kcompactd_cpu_online
  - __tracepoint_android_vh_vmscan_kswapd_done
  - __tracepoint_mm_vmscan_kswapd_wake

Bug: 367400751
Change-Id: I658b4961666d93238feaa8f166012b76a69994eb
Signed-off-by: Dmitry Skiba <dskiba@google.com>
2024-09-20 17:12:39 +00:00
Dmitry Skiba
b3a2458fc6 ANDROID: mm: add vh for kcompactd_cpu_online()
kcompactd_cpu_online() changes kcompactd cpumask, potentially
overwriting any vendor-specific cpumask that was there. This
hook allows vendors to re-set the cpumask.

Bug: 367400751
Change-Id: I45b92bcd16fbf2d5d76474287db659e32af64201
Signed-off-by: Dmitry Skiba <dskiba@google.com>
2024-09-20 16:55:50 +00:00
jiangxinpei
532fad0092 ANDROID: ABI: update symbol list for honor
1 function symbol(s) added
  'int __traceiter_android_vh_should_fault_around(void*, struct vm_fault*, bool*)'

Bug: 362663044
Change-Id: Ie7634bc746e40142455c7bd22d876d519a02e0d5
Signed-off-by: jiangxinpei <jiangxinpei@honor.corp-partner.google.com>
2024-09-20 09:37:56 +00:00
Dezhi Huang
145b08312d ANDROID: vendor_hooks: add hook to perform targeted memory management
Add vendor_hook trace_android_vh_should_fault_around, allow vendor modules
to skip the fault_around processing for less important processes.

Bug: 362663044
Bug: 337547131
Change-Id: I792dca2038f5ad7cba1d212ef95407244958609d
Signed-off-by: Dezhi Huang <huangdezhi@hihonor.com>
(cherry picked from commit 65ebb00fe7977348d5fcfa58985c29181f3ec173)
2024-09-20 09:37:56 +00:00
jiangxinpei
c105083ac6 ANDROID: ABI: update symbol list for honor
3 function symbol(s) added
  'int __traceiter_android_vh_do_read_fault(void*, struct vm_fault*, unsigned long)'
  'int __traceiter_android_vh_filemap_map_pages(void*, struct file*, unsigned long, unsigned long, vm_fault_t)'
  'int __traceiter_android_vh_filemap_read(void*, struct file*, loff_t, size_t)'

Bug: 362665923
Change-Id: I49fa40c65d7d24799c815de0c2c02c12d09e8fd8
Signed-off-by: jiangxinpei <jiangxinpei@honor.corp-partner.google.com>
2024-09-20 09:21:56 +00:00
Sooyong Suk
eda4e9fa64 ANDROID: mm: add vendor hook in fault and read file
Add a vendor hook to notify vendor module fault and read events.

Bug: 362665923
Bug: 351175506
Change-Id: I4c46e9e00aa5f5555fd42a6b0815563497658b34
Signed-off-by: Sooyong Suk <s.suk@samsung.corp-partner.google.com>
(cherry picked from commit a9867d872e24fbe658e05f32b770e4b36c6e3773)
2024-09-20 09:21:56 +00:00
David Chiang
814dd5bfa8 ANDROID: Update the ABI symbol list
Adding the following symbols to abi_gki_aarch64_pixel:
- mbox_request_channel_byname

Bug: 368167673
Change-Id: I031522377372a25bf5f9e97eb4832173463de390
Signed-off-by: David Chiang <davidchiang@google.com>
2024-09-19 06:07:31 +00:00
jiangxinpei
8a268cb981 ANDROID: GKI: Update symbol list for honor
Update symbol list for honor in android/abi_gki_aarch64_honor

Bug: 365506689
Change-Id: I604163b979660eaedbc13d3da5c9e3cdb8275e50
Signed-off-by: jiangxinpei <jiangxinpei@honor.corp-partner.google.com>
2024-09-18 05:46:35 +00:00
jiangxinpei
be07389110 ANDROID: Allow vendor modules perform operationson on memleak detect
When an LMK (Low Memory Killer) occurs, it is crucial for us to identify
the underlying cause of low memory. Based on past experiences, memory
leaks are often the root cause in such situations. The purpose of this
function is to assist us in identifying which application or type of
memory is experiencing memory leaks, thereby enabling us to effectively
locate and address the memory leakage issue.

Bug: 365506689
Bug: 346707562
Change-Id: I5d7d6bdbca30660f2a552211fd8aff40d3550df7
Signed-off-by: jiangxinpei <jiangxinpei@honor.corp-partner.google.com>
(cherry picked from commit d61134668c2d37846a6cea3e1ab3c237f2c7bc99)
2024-09-18 05:46:35 +00:00
jiangxinpei
47871c381d ANDROID: GKI: Update symbol list for honor
Update symbol list for honor in android/abi_gki_aarch64_honor

Bug: 365506454
Change-Id: I5d9a7a41da2a6f97998fadbbcb447db53b873bcc
Signed-off-by: jiangxinpei <jiangxinpei@honor.corp-partner.google.com>
2024-09-18 10:51:09 +08:00
Dezhi Huang
c7b8f95c21 ANDROID: Allow vendor modules perform more operations on binder transaction.
Export binder_alloc_copy_from_buffer, allow vendor modules perform more operations
on binder transaction and improve user operation fluency and timeliness experience.

Bug: 365506454
Bug: 343139379
Change-Id: I4353763099d854a62d0b70b003fbaca00e2c76e4
Signed-off-by: Dezhi Huang <huangdezhi@hihonor.com>
(cherry picked from commit d8db83d94e14b48819bba18cb975943c237e33df)
2024-09-18 10:48:45 +08:00
Greg Kroah-Hartman
20739a07f1 Revert "leds: trigger: Remove unused function led_trigger_rename_static()"
This reverts commit b4e147d3f1 which is
commit c82a1662d4548c454de5343b88f69b9fc82266b3 upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: Iea8ece3b5c88a97395e25c2ba7a512872a81e93f
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-14 14:37:04 +00:00
Greg Kroah-Hartman
20c4ef91bd Revert "leds: trigger: Store brightness set by led_trigger_event()"
This reverts commit 2bc78ff25f which is
commit 822c91e72eac568ed8d83765634f00decb45666c upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: If8dc383e04251ba799709f922a570097a65982ac
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-14 14:36:59 +00:00
Greg Kroah-Hartman
35455634f9 Revert "leds: trigger: Call synchronize_rcu() before calling trig->activate()"
This reverts commit c3f8e2ec3c which is
commit b1bbd20f35e19774ea01989320495e09ac44fba3 upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: I3c84527151f1018837dce6c1c77756ae4909da8e
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-14 14:36:55 +00:00
Greg Kroah-Hartman
ba60d6bd37 Revert "leds: triggers: Flush pending brightness before activating trigger"
This reverts commit 7118f97916 which is
commit ab477b766edd3bfb6321a6e3df4c790612613fae upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: I504fb7dbfa49fb2d1b79107fc35325b9d5bc399d
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-14 14:36:51 +00:00
Greg Kroah-Hartman
2d60d8fc30 Revert "sysctl: treewide: drop unused argument ctl_table_root::set_ownership(table)"
This reverts commit cf3a73eeb5 which is
commit 520713a93d550406dae14d49cdb8778d70cecdfd upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: I53affa8f6283544467f3335459862a5a5c04e500
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-14 14:31:33 +00:00
Daeho Jeong
d1f3a046a6 FROMGIT: f2fs: prevent atomic file from being dirtied before commit
Keep atomic file clean while updating and make it dirtied during commit
in order to avoid unnecessary and excessive inode updates in the previous
fix.

Fixes: 4bf78322346f ("f2fs: mark inode dirty for FI_ATOMIC_COMMITTED flag")
Change-Id: I2a29d047fa4233632876c61cf909340d1f60c26d
Signed-off-by: Daeho Jeong <daehojeong@google.com>
Signed-off-by: Jaegeuk Kim <jaegeuk@kernel.org>

Bug: 352181300
(cherry picked from commit fccaa81de87e80b1809906f7e438e5766fbdc172
 https://git.kernel.org/pub/scm/linux/kernel/git/jaegeuk/f2fs.git dev)
Change-Id: I5970e56a5318804cfebea340b5b19d6e0a66dc01
Signed-off-by: Daeho Jeong <daehojeong@google.com>
2024-09-13 13:22:33 -07:00
Greg Kroah-Hartman
0733d0505b Merge 6.1.104 into android14-6.1-lts
Changes in 6.1.104
	arm64: dts: qcom: msm8998: switch USB QMP PHY to new style of bindings
	arm64: dts: qcom: msm8998: Disable SS instance in Parkmode for USB
	arm64: dts: qcom: ipq8074: Disable SS instance in Parkmode for USB
	sysctl: allow change system v ipc sysctls inside ipc namespace
	sysctl: allow to change limits for posix messages queues
	sysctl: treewide: drop unused argument ctl_table_root::set_ownership(table)
	sysctl: always initialize i_uid/i_gid
	ext4: make ext4_es_insert_extent() return void
	ext4: refactor ext4_da_map_blocks()
	ext4: convert to exclusive lock while inserting delalloc extents
	ext4: factor out a common helper to query extent map
	ext4: check the extent status again before inserting delalloc block
	cpufreq: qcom-nvmem: Convert to platform remove callback returning void
	cpufreq: qcom-nvmem: Simplify driver data allocation
	cpufreq: qcom-nvmem: fix memory leaks in probe error paths
	leds: trigger: Remove unused function led_trigger_rename_static()
	leds: trigger: Store brightness set by led_trigger_event()
	leds: trigger: Call synchronize_rcu() before calling trig->activate()
	leds: triggers: Flush pending brightness before activating trigger
	mm: restrict the pcp batch scale factor to avoid too long latency
	mm: page_alloc: control latency caused by zone PCP draining
	mm/page_alloc: fix pcp->count race between drain_pages_zone() vs __rmqueue_pcplist()
	f2fs: fix to avoid use SSR allocate when do defragment
	f2fs: assign CURSEG_ALL_DATA_ATGC if blkaddr is valid
	irqdomain: Fixed unbalanced fwnode get and put
	drm/udl: Rename struct udl_drm_connector to struct udl_connector
	drm/udl: Test pixel limit in mode-config's mode-valid function
	drm/udl: Use USB timeout constant when reading EDID
	drm/udl: Various improvements to the connector
	drm/udl: Move connector to modesetting code
	drm/udl: Remove DRM_CONNECTOR_POLL_HPD
	drm/i915/dp: Don't switch the LTTPR mode on an active link
	MIPS: Loongson64: DTS: Add RTC support to Loongson-2K1000
	MIPS: Loongson64: DTS: Fix PCIe port nodes for ls7a
	MIPS: dts: loongson: Fix liointc IRQ polarity
	MIPS: dts: loongson: Fix ls2k1000-rtc interrupt
	HID: amd_sfh: Remove duplicate cleanup
	HID: amd_sfh: Split sensor and HID initialization
	HID: amd_sfh: Move sensor discovery before HID device initialization
	drm/nouveau: prime: fix refcount underflow
	drm/vmwgfx: Fix overlay when using Screen Targets
	drm/vmwgfx: Trigger a modeset when the screen moves
	sched: act_ct: take care of padding in struct zones_ht_key
	ALSA: hda: conexant: Fix headset auto detect fail in the polling mode
	Bluetooth: hci_sync: Fix suspending with wrong filter policy
	net: axienet: start napi before enabling Rx/Tx
	rtnetlink: Don't ignore IFLA_TARGET_NETNSID when ifname is specified in rtnl_dellink().
	ice: respect netif readiness in AF_XDP ZC related ndo's
	ice: don't busy wait for Rx queue disable in ice_qp_dis()
	ice: replace synchronize_rcu with synchronize_net
	ice: add missing WRITE_ONCE when clearing ice_rx_ring::xdp_prog
	net/iucv: fix use after free in iucv_sock_close()
	drm/i915/hdcp: Fix HDCP2_STREAM_STATUS macro
	net: mvpp2: Don't re-use loop iterator
	ALSA: hda: Conditionally use snooping for AMD HDMI
	netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
	netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().
	net/mlx5: Lag, don't use the hardcoded value of the first port
	net/mlx5: Fix missing lock on sync reset reload
	net/mlx5e: Add a check for the return value from mlx5_port_set_eth_ptys
	ipv6: fix ndisc_is_useropt() handling for PIO
	riscv/mm: Add handling for VM_FAULT_SIGSEGV in mm_fault_error()
	arm64: jump_label: Ensure patched jump_labels are visible to all CPUs
	rust: SHADOW_CALL_STACK is incompatible with Rust
	platform/chrome: cros_ec_proto: Lock device when updating MKBP version
	HID: wacom: Modify pen IDs
	btrfs: zoned: fix zone_unusable accounting on making block group read-write again
	protect the fetch of ->fd[fd] in do_dup2() from mispredictions
	mptcp: sched: check both directions for backup
	ALSA: usb-audio: Correct surround channels in UAC1 channel map
	ALSA: hda/realtek: Add quirk for Acer Aspire E5-574G
	Revert "ALSA: firewire-lib: obsolete workqueue for period update"
	Revert "ALSA: firewire-lib: operate for period elapse event in process context"
	drm/vmwgfx: Fix a deadlock in dma buf fence polling
	drm/i915: Fix possible int overflow in skl_ddi_calculate_wrpll()
	net: usb: sr9700: fix uninitialized variable use in sr_mdio_read
	r8169: don't increment tx_dropped in case of NETDEV_TX_BUSY
	mptcp: fix user-space PM announced address accounting
	mptcp: distinguish rcv vs sent backup flag in requests
	mptcp: fix NL PM announced address accounting
	mptcp: fix bad RCVPRUNED mib accounting
	mptcp: pm: only set request_bkup flag when sending MP_PRIO
	mptcp: fix duplicate data handling
	selftests: mptcp: always close input's FD if opened
	netfilter: ipset: Add list flush to cancel_gc
	Linux 6.1.104

Change-Id: I6e7acf04893dbbfc6dc8e57c1f2bdb487687f227
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-13 07:52:15 +00:00
iabdullah
6e5b92a6a1 ANDROID: GKI: Add symbol list for exynosauto
These symbols are required to use custom driver
for writing data into Serial device
using common TTY drivers for basic data trasmit via UART/SPI.

INFO: 2 function symbol(s) added
  'int serdev_device_write(struct serdev_device*, const unsigned char*, size_t, long)'
  'void serdev_device_write_wakeup(struct serdev_device*)'

Bug: 356635235
Change-Id: Ia365485ad4b533e5e2826add9182bc98b5563f81
Signed-off-by: iabdullah <imrankhan.abdullah@harman.com>
2024-09-12 18:53:21 +00:00
Greg Kroah-Hartman
1353c19161 Revert "spi: microchip-core: switch to use modern name"
This reverts commit b39ec657ac which is
commit 8f8bf52ed5b76fc7958b0fbe3131540aecdff8ac upstream.

It breaks the Android kernel abi and can be brought back in the future
in an abi-safe way if it is really needed.

Bug: 161946584
Change-Id: Id0361c629d7c4941f132ac93f035f05fc5bf5099
Signed-off-by: Greg Kroah-Hartman <gregkh@google.com>
2024-09-12 15:08:43 +00:00