Comments

610 Comments
karma

Tested on aarch64 and x86_64

Looks good on my Lenovo X1g9, a old HPE AMD server, RPi4, RPi3, Jetson nano/Xavier/Orin and a handful of other arm devices.

BZ#2216459 The rmnet driver is missing
BZ#2220892 CVE-2023-35001 kernel: nf_tables: stack-out-of-bounds-read in nft_byteorder_eval()
BZ#2220893 CVE-2023-31248 kernel: nf_tables: use-after-free in nft_chain_lookup_byid()
BZ#2221759 CVE-2023-35001 kernel: nf_tables: stack-out-of-bounds-read in nft_byteorder_eval() [fedora-all]
BZ#2221766 ZyDAS USB WiFi dongle stopped to work
BZ#2221778 CVE-2023-31248 kernel: nf_tables: use-after-free in nft_chain_lookup_byid() [fedora-all]
BZ#2223079 A patch to fix mt7921e "hardware init failed"
karma

Seems fine with testing

BZ#2223495 TRIAGE iperf3: memory allocation hazard and crash [fedora-all]
BZ#2122271 Early microcode loading not present due to compressed microcode files in linux-firmware (AMD, microcode_amd.bin.xz)
Test Case lorax netinst

Seems fine with a build test

Seems fine on a bunch of arm devices.

karma

Seems OK

BZ#2196610 Firefox 113.0.0 was released

Works as expected for rpi update

Works as expected for rpi update

Works as expected for rpi update

@adamwill they're a hard dependency for F-36 so pulled in with linux-firmware so why would that make any difference at all?

@workonstuff the version you reference is 1.30, not 2.4, and if that's the case it's not a regression, besides it could easily be a driver bug. If it is a regression please report which version it regressed in for Fedora and file a bug with more details explicitly for Fedora.

This update has been unpushed.

This update has been unpushed.

No issues noted on a slew of aarch64 devices including NV Jetson, Raspberry Pi Zero2W, 4-series, 3-series and a bunch of other devices.

Tested on x86_64 and aarch64 across a number of services that use openssl inc openssh, postfix, dovecot, httpd using TLS1.2 and 1.3 and a number of client apps

BZ#2137723 CVE-2022-3602 OpenSSL: X.509 Email Address Buffer Overflow
BZ#2139149 [Major Incident] CVE-2022-3602 openssl: X.509 Email Address Buffer Overflow [fedora-all]

Works fine on a bunch of arm devices

Seems fine on a number of devices

Tested 3 rockchip devices and all look good, tested a whole raft of various raspberry pis, and a bunch of other random x86 and aarch64 devices. Wifi works on all the models with WiFi too.

BZ#2128462 CVE-2022-40768 kernel: leak of sensitive information due to uninitialized data in stex_queuecommand_lck() in drivers/scsi/stex.c
BZ#2128463 CVE-2022-40768 kernel: leak of sensitive information due to uninitialized data in stex_queuecommand_lck() in drivers/scsi/stex.c [fedora-all]
BZ#2133490 CVE-2022-3435 kernel: an out-of-bounds read in fib_nh_match of the file net/ipv4/fib_semantics.c
BZ#2133491 CVE-2022-3435 kernel: an out-of-bounds read in fib_nh_match of the file net/ipv4/fib_semantics.c [fedora-all]
BZ#2134177 kernel crash on a number of rockchip rk3399 devices on boot