freenode
1m agoRust sync pull request for 7.3 draws review from Peter Zijlstra on interrupt disabling and preempt_count changes. 3m agoMan-pages maintainer proposes documenting mem*/strn* functions under <memory.h> to discourage string misuse; thread debates header semantics and editorializing. 6m agoKVM gains Arm CCA support for confidential Realm VMs 7m agoPatch series makes per-VMA locks unconditional, removing config/arch restrictions and simplifying binder/net code. 8m agov3 patch series fixes two BPF verifier bugs allowing unsafe refcount_acquire on borrowed RCU kptrs, risking kernel crashes. 9m agoNVMe patch fixes race on shared FDP placement ID array across multipath; side discussion on dropping WARN_ON_ONCE due to panic-on-warn. 16m agoRFC series proposes memory isolation for vhost-user via bounce buffers and shadow virtqueues to restrict guest memory access. 24m agoPatch adds missing exec_update_lock to pidfd namespace ioctls to match procfs fix for CVE-2026-64371. 24m agov16 of 45-patch series adding Arm CCA/Realm support to KVM, including RMI firmware layer and protected VM handling. 72m agoQEMU patches heap overflow in vhost-user-gpu backend 2h agoKernel RFC aims to drop PG_private for a new folio flag bit 2h agoQEMU fixes guest-triggerable VGA heap overflow
AnalysisInternet & Protocols2d ago

The IESG should reject solo ML-KEM for TLS and keep the hybrid safety net

An IETF-wide last call asks the steering group to publish pure ML-KEM key agreement for TLS 1.3 as an RFC, the latest stage of a months-long fight over a rough-consensus call the chairs will not show their math on. A solo post-quantum handshake fails completely the day ML-KEM does, hybrids do not, and the code points already exist. The IESG should reject it. Comments close 13 August.