Openembedded Core Discussions
 help / color / mirror / Atom feed
* [OE-core][walnascar 0/3] Patch review
@ 2025-09-24 21:17 Steve Sakoman
  2025-09-24 21:17 ` [OE-core][walnascar 1/3] curl: fix CVE-2025-9086 Steve Sakoman
                   ` (2 more replies)
  0 siblings, 3 replies; 5+ messages in thread
From: Steve Sakoman @ 2025-09-24 21:17 UTC (permalink / raw)
  To: openembedded-core

Please review this set of changes for walnascar and have comments back by
end of day Friday, September 26

Passed a-full on autobuilder:

https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/2435

The following changes since commit d728ec95291f05cbfb436eabe8717ebe9a0dc11d:

  python3-setuptools: restore build_scripts.executable support (2025-09-22 12:42:57 -0700)

are available in the Git repository at:

  https://git.openembedded.org/openembedded-core-contrib stable/walnascar-nut
  https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut

Ross Burton (1):
  expat: upgrade to 2.7.2

Yogita Urade (2):
  curl: fix CVE-2025-9086
  curl: fix CVE-2025-10148

 .../expat/{expat_2.7.1.bb => expat_2.7.2.bb}  |  2 +-
 .../curl/curl/CVE-2025-10148.patch            | 57 +++++++++++++++++++
 .../curl/curl/CVE-2025-9086.patch             | 55 ++++++++++++++++++
 meta/recipes-support/curl/curl_8.12.1.bb      |  2 +
 4 files changed, 115 insertions(+), 1 deletion(-)
 rename meta/recipes-core/expat/{expat_2.7.1.bb => expat_2.7.2.bb} (92%)
 create mode 100644 meta/recipes-support/curl/curl/CVE-2025-10148.patch
 create mode 100644 meta/recipes-support/curl/curl/CVE-2025-9086.patch

-- 
2.43.0



^ permalink raw reply	[flat|nested] 5+ messages in thread
* [OE-core][walnascar 0/3] Patch review
@ 2025-08-12 13:29 Steve Sakoman
  0 siblings, 0 replies; 5+ messages in thread
From: Steve Sakoman @ 2025-08-12 13:29 UTC (permalink / raw)
  To: openembedded-core

Please review this set of changes for walnascar and have comments back by
end of day Thursday, August 14

Passed a-full on autobuilder:

https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/2180

The following changes since commit 69090e41eb0a8b92e0684d391966f9627bfe5195:

  ca-certificates: correct the SRC_URI (2025-08-07 12:35:30 -0700)

are available in the Git repository at:

  https://git.openembedded.org/openembedded-core-contrib stable/walnascar-nut
  https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut

Khem Raj (2):
  glibc: Forward -ffile-prefix-map option to assembler flags
  bitbake.conf: Switch prefix mapping to use -ffile-prefix-map

Peter Marko (1):
  dropbear: patch CVE-2025-47203

 meta/classes-recipe/kernel-arch.bbclass       |   6 +-
 meta/conf/bitbake.conf                        |  14 +-
 meta/lib/oe/package.py                        |   2 +-
 .../dropbear/dropbear/CVE-2025-47203.patch    | 373 ++++++++++++++++++
 .../recipes-core/dropbear/dropbear_2024.86.bb |   1 +
 ...le-prefix-map-from-CFLAGS-to-ASFLAGS.patch |  24 ++
 meta/recipes-core/glibc/glibc_2.41.bb         |   1 +
 meta/recipes-devtools/gcc/libgfortran.inc     |   2 +-
 .../python/python3-maturin_1.8.3.bb           |   2 +-
 meta/recipes-devtools/rust/cargo_1.84.1.bb    |   2 +-
 10 files changed, 410 insertions(+), 17 deletions(-)
 create mode 100644 meta/recipes-core/dropbear/dropbear/CVE-2025-47203.patch
 create mode 100644 meta/recipes-core/glibc/glibc/0001-Propagate-ffile-prefix-map-from-CFLAGS-to-ASFLAGS.patch

-- 
2.43.0



^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2025-09-24 21:18 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2025-09-24 21:17 [OE-core][walnascar 0/3] Patch review Steve Sakoman
2025-09-24 21:17 ` [OE-core][walnascar 1/3] curl: fix CVE-2025-9086 Steve Sakoman
2025-09-24 21:17 ` [OE-core][walnascar 2/3] curl: fix CVE-2025-10148 Steve Sakoman
2025-09-24 21:17 ` [OE-core][walnascar 3/3] expat: upgrade to 2.7.2 Steve Sakoman
  -- strict thread matches above, loose matches on Subject: below --
2025-08-12 13:29 [OE-core][walnascar 0/3] Patch review Steve Sakoman

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox