- EDAC/ghes: Set the DIMM label unconditionally - lkdtm: Disable return thunks in rodata.c - userfaultfd: provide properly masked address for huge-pages - x86/bugs: Do not enable IBPB at firmware entry when IBPB is not available