)]}'
{
  "commit": "532f603ceee851956aa21bf116cc18f4c9c8498d",
  "tree": "a04d9c44d5a1d5665b3fa2a12066fc88aa4088e9",
  "parents": [
    "e1f0f954f03f0fa1ae343426a5c6ceafbb48856e"
  ],
  "author": {
    "name": "Joseph CT Chan",
    "email": "josephctchan@google.com",
    "time": "Tue Aug 25 20:55:55 2026 +0000"
  },
  "committer": {
    "name": "Joseph Chan",
    "email": "josephctchan@google.com",
    "time": "Mon Aug 31 12:38:30 2026 -0700"
  },
  "message": "linux-gbmc: pmbus: protect regulator ops with mutex\n\nBackport upstream patches for CVE-2026-31486 and CVE-2026-72395\nto linux-gbmc 6.12 (linux-gbmc_lts.bb).\n\nIn the PMBus core driver, regulator routines get_voltage, set_voltage,\nand list_voltage previously omitted data-\u003eupdate_lock acquisition,\nallowing concurrent threads (e.g. hwmon polling) to interleave\nPMBUS_PAGE register switching and corrupt telemetry or direct voltage\nwrites to the wrong rail.\n\nThis backport:\n1. Protects regulator operations with update_lock.\n2. Defers regulator_notifier_call_chain() dispatch to an asynchronous\n   workqueue outside update_lock to prevent recursive mutex deadlock\n   with pmbus_fault_handler().\n3. Iterates over atomic fault event masks bit-by-bit to ensure\n   regulator_handle_critical() processes all simultaneous events.\n\nUpstream-Status: Backport [https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id\u003d754bd2b4a084b90b5e7b630e1f423061a9b9b761]\nUpstream-Status: Backport [https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id\u003db0ff6b6ae9c5183ef701ece7016698bde5a5bfba]\nCVE: CVE-2026-31486\nCVE: CVE-2026-72395\n\nTested:\n- Successfully compiled full firmware image via BitBake:\n  bitbake obmc-phosphor-image (10,484 tasks passed, 0 patch fuzz).\n- Signed and flashed image on real hardware (wkcw14-nfd11).\n- Executed 5,000-cycle high-frequency concurrent page-switching stress\n  test (in1_input vs in2_input) without read failures or bus errors:\n  Total Iterations: 5000 | Read Failures: 0 | New Kernel Errors: 0\n\nGoogle-Bug-Id: 540140798\nChange-Id: Id5a541cf765384d6047a5fe2741e6ad149843007\nSigned-off-by: Joseph Chan \u003cjosephctchan@google.com\u003e\n",
  "tree_diff": [
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "60fbda76269676f280b059e3a27c3de59202b5ed",
      "new_mode": 33188,
      "new_path": "recipes-kernel/linux/files/0001-hwmon-pmbus-core-Protect-regulator-operations-with-m.patch"
    },
    {
      "type": "add",
      "old_id": "0000000000000000000000000000000000000000",
      "old_mode": 0,
      "old_path": "/dev/null",
      "new_id": "b20eaa870cb0d88c8dc1cb6b6f783d9409ba685a",
      "new_mode": 33188,
      "new_path": "recipes-kernel/linux/files/0002-hwmon-pmbus-core-Fix-critical-regulator-event-notifi.patch"
    },
    {
      "type": "modify",
      "old_id": "766d832406a15418ca42f628e22293e86151e8a8",
      "old_mode": 33188,
      "old_path": "recipes-kernel/linux/linux-gbmc_lts.bb",
      "new_id": "4680c1eea234b29e818c3dea88ba5484321ec586",
      "new_mode": 33188,
      "new_path": "recipes-kernel/linux/linux-gbmc_lts.bb"
    }
  ]
}
