* [OE-core][kirkstone 00/17] Pull request (cover letter only)
@ 2022-10-10 16:10 Steve Sakoman
0 siblings, 0 replies; 2+ messages in thread
From: Steve Sakoman @ 2022-10-10 16:10 UTC (permalink / raw)
To: openembedded-core
The following changes since commit d19cd09b43a7009d660b28ac9dcb21b8038e399f:
busybox: add devmem 128-bit support (2022-09-24 04:03:56 -1000)
are available in the Git repository at:
https://git.openembedded.org/openembedded-core-contrib stable/kirkstone-next
http://cgit.openembedded.org/openembedded-core-contrib/log/?h=stable/kirkstone-next
Alexander Kanavin (2):
rpm: update 4.17.0 -> 4.17.1
tzdata: update to 2022d
Daniel McGregor (1):
coreutils: add openssl PACKAGECONFIG
Denys Dmytriyenko (1):
glibc-locale: explicitly remove empty dirs in ${libdir}
Florin Diaconescu (2):
rsync: update 3.2.3 -> 3.2.4
rsync: update 3.2.4 -> 3.2.5
He Zhe (3):
lttng-tools: Disable on qemuriscv32
stress-cpu: disable float128 math on powerpc64 to avoid SIGILL
lttng-tools: Disable on riscv32
Khem Raj (3):
webkitgtk: Upgrade to 2.36.6 minor update
webkitgtk: Update to 2.36.7
rpm: Remove -Wimplicit-function-declaration warnings
Martin Jansa (1):
create-pull-request: don't switch the git remote protocol to git://
Richard Purdie (1):
vim: Upgrade 9.0.0541 -> 9.0.0598
Teoh Jay Shen (1):
bind: upgrade 9.18.6 -> 9.18.7
pgowda (1):
binutils : Fix CVE-2022-38127
wangmy (1):
bind: upgrade 9.18.5 -> 9.18.6
...1-avoid-start-failure-with-bind-user.patch | 0
...d-V-and-start-log-hide-build-options.patch | 0
...ching-for-json-headers-searches-sysr.patch | 0
.../bind/{bind-9.18.5 => bind-9.18.7}/bind9 | 0
.../{bind-9.18.5 => bind-9.18.7}/conf.patch | 0
.../generate-rndc-key.sh | 0
...t.d-add-support-for-read-only-rootfs.patch | 0
.../make-etc-initd-bind-stop-work.patch | 0
.../named.service | 0
.../bind/{bind_9.18.5.bb => bind_9.18.7.bb} | 2 +-
meta/recipes-core/coreutils/coreutils_9.0.bb | 1 +
meta/recipes-core/glibc/glibc-locale.inc | 5 +-
.../binutils/binutils-2.38.inc | 4 +
.../binutils/0017-CVE-2022-38127-1.patch | 1224 +++++++++++++++++
.../binutils/0017-CVE-2022-38127-2.patch | 188 +++
.../binutils/0017-CVE-2022-38127-3.patch | 211 +++
.../binutils/0017-CVE-2022-38127-4.patch | 43 +
.../rpm/files/0001-CVE-2021-3521.patch | 57 -
...lib-rpm-as-the-installation-path-for.patch | 14 +-
...lling-execute-package-scriptlets-wit.patch | 18 +-
...-linux-gnux32-variant-to-triplet-han.patch | 31 +
.../rpm/files/0002-CVE-2021-3521.patch | 64 -
.../rpm/files/0003-CVE-2021-3521.patch | 329 -----
.../rpm/{rpm_4.17.0.bb => rpm_4.17.1.bb} | 6 +-
...-the-hostname-in-the-certificate-whe.patch | 31 -
.../rsync/files/makefile-no-rebuild.patch | 12 +-
.../rsync/{rsync_3.2.3.bb => rsync_3.2.5.bb} | 17 +-
...le-float128-math-on-powerpc64-to-avo.patch | 43 +
.../stress-ng/stress-ng_0.13.12.bb | 4 +-
meta/recipes-extended/timezone/timezone.inc | 6 +-
meta/recipes-kernel/lttng/lttng-platforms.inc | 4 +
...ebkitgtk_2.36.5.bb => webkitgtk_2.36.7.bb} | 3 +-
meta/recipes-support/vim/vim.inc | 4 +-
scripts/create-pull-request | 2 +-
34 files changed, 1801 insertions(+), 522 deletions(-)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/0001-avoid-start-failure-with-bind-user.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/0001-named-lwresd-V-and-start-log-hide-build-options.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/bind-ensure-searching-for-json-headers-searches-sysr.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/bind9 (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/conf.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/generate-rndc-key.sh (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/init.d-add-support-for-read-only-rootfs.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/make-etc-initd-bind-stop-work.patch (100%)
rename meta/recipes-connectivity/bind/{bind-9.18.5 => bind-9.18.7}/named.service (100%)
rename meta/recipes-connectivity/bind/{bind_9.18.5.bb => bind_9.18.7.bb} (97%)
create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2022-38127-1.patch
create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2022-38127-2.patch
create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2022-38127-3.patch
create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2022-38127-4.patch
delete mode 100644 meta/recipes-devtools/rpm/files/0001-CVE-2021-3521.patch
create mode 100644 meta/recipes-devtools/rpm/files/0001-configure.ac-add-linux-gnux32-variant-to-triplet-han.patch
delete mode 100644 meta/recipes-devtools/rpm/files/0002-CVE-2021-3521.patch
delete mode 100644 meta/recipes-devtools/rpm/files/0003-CVE-2021-3521.patch
rename meta/recipes-devtools/rpm/{rpm_4.17.0.bb => rpm_4.17.1.bb} (97%)
delete mode 100644 meta/recipes-devtools/rsync/files/0001-rsync-ssl-Verify-the-hostname-in-the-certificate-whe.patch
rename meta/recipes-devtools/rsync/{rsync_3.2.3.bb => rsync_3.2.5.bb} (67%)
create mode 100644 meta/recipes-extended/stress-ng/stress-ng-0.13.12/0001-stress-cpu-disable-float128-math-on-powerpc64-to-avo.patch
rename meta/recipes-sato/webkit/{webkitgtk_2.36.5.bb => webkitgtk_2.36.7.bb} (98%)
--
2.25.1
^ permalink raw reply [flat|nested] 2+ messages in thread
* [OE-core][kirkstone 00/17] Pull request (cover letter only)
@ 2026-03-20 0:41 Yoann Congal
0 siblings, 0 replies; 2+ messages in thread
From: Yoann Congal @ 2026-03-20 0:41 UTC (permalink / raw)
To: openembedded-core; +Cc: Paul Barker
Those are the patches from the last patch review:
https://lore.kernel.org/all/cover.1773652940.git.yoann.congal@smile.fr/
Passed a-full on autobuilder:
https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/3429
This build was impacted by:
* 16185 – AB-INT: failed connections to git.yoctoproject.org https://bugzilla.yoctoproject.org/show_bug.cgi?id=16185
* https://autobuilder.yoctoproject.org/valkyrie/#/builders/6/builds/3403
* rebuilt successfully as https://autobuilder.yoctoproject.org/valkyrie/#/builders/6/builds/3404
* https://autobuilder.yoctoproject.org/valkyrie/#/builders/78/builds/3404
* rebuilt successfully as https://autobuilder.yoctoproject.org/valkyrie/#/builders/78/builds/3405
* A random network glitch on github:
* https://autobuilder.yoctoproject.org/valkyrie/#/builders/30/builds/3357
* rebuilt successfully as https://autobuilder.yoctoproject.org/valkyrie/#/builders/30/builds/3360
The following changes since commit 7b6c9faa301a6d058ca34e230586f6a81ffa3ffb:
build-appliance-image: Update to kirkstone head revision (2026-02-27 15:59:49 +0000)
are available in the Git repository at:
https://git.openembedded.org/openembedded-core-contrib stable/kirkstone-next
https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/kirkstone-next
for you to fetch changes up to ec995339f1f4143616f1b13814899acaf137b0b5:
createrepo-c: Fix createrepo-c-native build on GCC14 hosts (e.g. Fedora 41) (2026-03-15 23:59:54 +0100)
----------------------------------------------------------------
Aleksandar Nikolic (1):
scripts/install-buildtools: Update to 4.0.33
Hitendra Prajapati (1):
libpam: fix CVE-2024-10963
Ken Kurematsu (1):
libtheora: set CVE_PRODUCT
Martin Jansa (2):
libpam: re-add missing libgen include
lsb.py: strip ' from os-release file
Peter Marko (7):
alsa-lib: patch CVE-2026-25068
ffmpeg: patch CVE-2025-10256
inetutils: patch CVE-2026-28372
busybox: patch CVE-2025-60876
tiff: patch CVE-2025-61143
tiff: patch CVE-2025-61144
tiff: set status of CVE-2025-61145 as fixed by patch for CVE-2025-8961
Shaik Moin (1):
gdk-pixbuf: Fix CVE-2025-6199
Vijay Anusuri (1):
python3-pip: Fix CVE-2026-1703
Yoann Congal (3):
gtk+3: fix incompatible-pointer-types errors for native build on
Fedora 41
libcomps: Fix libcomps-native build on GCC14 hosts (e.g. Fedora 41)
createrepo-c: Fix createrepo-c-native build on GCC14 hosts (e.g.
Fedora 41)
meta/lib/oe/lsb.py | 2 +-
.../inetutils/inetutils/CVE-2026-28372.patch | 86 +++++++
.../inetutils/inetutils_2.2.bb | 1 +
.../busybox/busybox/CVE-2025-60876.patch | 38 +++
meta/recipes-core/busybox/busybox_1.35.0.bb | 1 +
...-proper-cast-for-PyMethodDef.ml_meth.patch | 41 ++++
.../createrepo-c/createrepo-c_0.19.0.bb | 1 +
...orrect-variable-for-category-and-env.patch | 48 ++++
.../libcomps/libcomps_0.1.18.bb | 1 +
.../python/python3-pip/CVE-2026-1703.patch | 37 +++
.../python/python3-pip_22.0.3.bb | 1 +
.../pam/libpam/CVE-2024-10963.patch | 229 ++++++++++++++++++
.../pam/libpam/CVE-2025-6020-01.patch | 4 +-
meta/recipes-extended/pam/libpam_1.5.2.bb | 1 +
.../gdk-pixbuf/gdk-pixbuf/CVE-2025-6199.patch | 36 +++
.../gdk-pixbuf/gdk-pixbuf_2.42.10.bb | 1 +
...-type-when-calling-GtkWidget-methods.patch | 28 +++
...ests-Add-GdkEvent-casts-in-testinput.patch | 48 ++++
meta/recipes-gnome/gtk+/gtk+3_3.24.34.bb | 2 +
.../alsa/alsa-lib/CVE-2026-25068.patch | 34 +++
.../alsa/alsa-lib_1.2.6.1.bb | 1 +
.../ffmpeg/ffmpeg/CVE-2025-10256.patch | 31 +++
.../recipes-multimedia/ffmpeg/ffmpeg_5.0.3.bb | 1 +
.../libtheora/libtheora_1.1.1.bb | 2 +
.../libtiff/tiff/CVE-2025-61143.patch | 44 ++++
.../libtiff/tiff/CVE-2025-61144.patch | 27 +++
.../libtiff/tiff/CVE-2025-8961.patch | 1 +
meta/recipes-multimedia/libtiff/tiff_4.3.0.bb | 2 +
scripts/install-buildtools | 4 +-
29 files changed, 748 insertions(+), 5 deletions(-)
create mode 100644 meta/recipes-connectivity/inetutils/inetutils/CVE-2026-28372.patch
create mode 100644 meta/recipes-core/busybox/busybox/CVE-2025-60876.patch
create mode 100644 meta/recipes-devtools/createrepo-c/createrepo-c/0001-Use-proper-cast-for-PyMethodDef.ml_meth.patch
create mode 100644 meta/recipes-devtools/libcomps/libcomps/0001-Fix-build-use-correct-variable-for-category-and-env.patch
create mode 100644 meta/recipes-devtools/python/python3-pip/CVE-2026-1703.patch
create mode 100644 meta/recipes-extended/pam/libpam/CVE-2024-10963.patch
create mode 100644 meta/recipes-gnome/gdk-pixbuf/gdk-pixbuf/CVE-2025-6199.patch
create mode 100644 meta/recipes-gnome/gtk+/gtk+3/0001-Use-the-right-type-when-calling-GtkWidget-methods.patch
create mode 100644 meta/recipes-gnome/gtk+/gtk+3/0002-tests-Add-GdkEvent-casts-in-testinput.patch
create mode 100644 meta/recipes-multimedia/alsa/alsa-lib/CVE-2026-25068.patch
create mode 100644 meta/recipes-multimedia/ffmpeg/ffmpeg/CVE-2025-10256.patch
create mode 100644 meta/recipes-multimedia/libtiff/tiff/CVE-2025-61143.patch
create mode 100644 meta/recipes-multimedia/libtiff/tiff/CVE-2025-61144.patch
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2026-03-20 0:42 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2022-10-10 16:10 [OE-core][kirkstone 00/17] Pull request (cover letter only) Steve Sakoman
-- strict thread matches above, loose matches on Subject: below --
2026-03-20 0:41 Yoann Congal
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox