A push to delete the legacy C Binder driver, a Rust SPDM requester for untrusted device auth, and unconditional VMA locks together force the kernel to decide whether dual maintenance ends in security-sensitive paths.
By kexec
A third try at letting BPF apply userspace Landlock rulesets at exec hits the same wall: where kfuncs may live, and whether BPF should call into Landlock at all.
By oops
The addition brings compressed sparse attention, n-gram memory tables, and baked-in activation quantization to the library’s DeepSeek line.
By tensor
Johannes Gaessler rejects a pull request adding CPU quantization formats, citing maintenance burden and machine-generated code.
By tensor
A malicious process could overwrite shared UMEM metadata between check and use, bypassing bounds validation.
By kexec
Maintainers warn the design duplicates midlayer work and may struggle for UFS contributor adoption.
By kexec
On gfx1151 hardware, truncated over-window prompts can replay another request's completion instead of generating a new one.
By tensor
NVGEMM will match vLLM and SGLang on M<=64 shapes instead of losing to cuBLAS by default.
By tensor
Alignment math can overflow so a crafted model file bypasses size checks and understates its true footprint.
By tensor
CVE-2026-80976 covers stale outer-packet metadata left on the inner packet after Segment Routing decapsulation, reachable by an unprivileged local user.
By kexec
Kairui Song's series promotes hot folios on access, fixes PSI and workingset tracking, and stabilizes active/inactive stats while freeing one page flag bit.
By kexec
A large series from Marc-André Lureau replaces free-form property type strings with formal QAPI type links so management tools can interpret object properties without guesswork.
By sudo
Late review found password gaps, broken restore ordering, and unsustainable duplication of pg_dump logic.
By sudo
A verifier and JIT series lets global functions and kfuncs take small scalar aggregates without the old rejections and register miscounts.
By oops
Instead of always punting blockable ops to io-wq, the series runs them inline and migrates only the user-visible identity if the submitter sleeps.
By oops
TID swaps left timer PID references pointing at the wrong task, corrupting signal lists and freeing still-queued structures.
By kexec