Leon Anavi
657396146a
python3-uswid: Upgrade 0.5.0 -> 0.5.1
...
Upgrade to release 0.5.1:
- Add --find to recursively find SBOM files
- Add --fixup to repair any loaded SBOM files
- Add support for component CPE values
- Add support for component types, e.g. library, application or
firmware
- Add support for loading CycloneDX files
- Add support for loading fallback files
- Add support for loading SPDX files
- Add support for substituted values like @VCS_VERSION@
- Add support for SWID activationStatus
- Add support for verifying different SBOM different formats
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:25:19 -08:00
Leon Anavi
9ba618d966
python3-inflate64: Upgrade 1.0.0 -> 1.0.1
...
Upgrade to release 1.0.1:
* Change deflate_tree: base_length[] and length_code[] not to be
const to avoid C2166 error on windows
* Drop support for python 3.8 and add support for python 3.13
Patch 0001-Do-not-override-const-qualifier.patch has been merged
in the upstream therefore the file is no longer needed.
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:25:19 -08:00
Jörg Sommer
2b2c15d774
kernel-hardening-checker: New recipe to check security options
...
Signed-off-by: Jörg Sommer <joerg.sommer@navimatix.de >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Yi Zhao
e2140c416c
zfs: enable packageconfig pam for pam distro feature
...
Enable pam packageconfig if pam is in DISTRO_FEATURES. Also set pam
module path to ${base_libdir}/security as this is the default path in
libpam.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Yi Zhao
9198508373
cockpit: set pam module path to ${base_libdir}/security
...
Set pam module path to ${base_libdir}/security as this is the default
path in libpam.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Yi Zhao
6387b30d30
malcontent: set pam module path to ${base_libdir}/security
...
Set pam module path to ${base_libdir}/security as this is the default
path in libpam.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Yi Zhao
ff119e949e
mariadb: set pam module path to ${base_libdir}/security
...
Set pam module path to ${base_libdir}/security as this is the default
path in libpam.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Yi Zhao
83a8e761ed
snapper: set pam module path to ${base_libdir}/security
...
Set pam module path to ${base_libdir}/security as this is the default
path in libpam.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-06 07:22:29 -08:00
Darrel Griët
d89fc818b7
polkit: Install rules in subdir
...
https://github.com/openembedded/meta-openembedded/commit/d5e90541f8e35916abc930b2da6de037b23d51a1
moved the rules to /usr/share/ instead of /etc/. The commit also removed the
install:prepend() step.
This results in the rules being installed as file /usr/share/polkit-1/rules.d
instead of in that folder.
This commit adds back the install prepend step such that the rules are installed
in said folder.
Signed-off-by: Darrel Griët <dgriet@gmail.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-05 22:46:36 -08:00
Jörg Sommer
1c60b8ccf7
libtinyxml2: set CVE product to tinyxml2
...
This library gets tracked with the product name tinyxml2:
https://nvd.nist.gov/products/cpe/detail/5A6C04CB-E6AD-4740-882A-34620AEC060A
Signed-off-by: Jörg Sommer <joerg.sommer@navimatix.de >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 11:34:03 -08:00
Jörg Sommer
c5ef63d685
libtinyxml: set CVE product to tinyxml
...
This library gets tracked with the product name tinyxml:
https://nvd.nist.gov/products/cpe/detail/95BDA29F-257C-4C44-8847-25CFC107228D
Signed-off-by: Jörg Sommer <joerg.sommer@navimatix.de >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 11:34:03 -08:00
Leon Anavi
9db75bb5b9
python3-bitstring: Upgrade 4.2.3 -> 4.3.0
...
Upgrade to version 4.3.0:
- Upgraded bitarray dependency to >= 3.0.0.
- Explicit support for Python 3.13.
- Added i and I struct codes for 32-bit ints.
- Removed the 'experimental feature' label from the new exotic
floating point types.
- Fix for negative index LSB0 slicing issue.
License-Update: Update year
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 10:17:22 -08:00
Leon Anavi
77e269d6f6
python3-charset-normalizer: Upgrade 3.4.0 -> 3.4.1
...
Upgrade to version 3.4.1:
- Project metadata are now stored using pyproject.toml instead of
setup.cfg using setuptools as the build backend.
- Enforce annotation delayed loading for a simpler and consistent
types in the project.
- Optional mypyc compilation upgraded to version 1.14 for Python
>= 3.8
- Converting content to Unicode bytes may insert utf_8 instead of
preferred utf-8.
- Deprecation warning "'count' is passed as positional argument"
when converting to Unicode bytes on Python 3.13+
License-Update: Update year
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 10:17:22 -08:00
Divya Chellam
5c2793258e
grpc: upgrade 1.66.1 -> 1.68.0
...
This includes CVE-fix for CVE-2024-11407
Changelog:
==================================
https://github.com/grpc/grpc/releases/tag/v1.68.0
https://github.com/grpc/grpc/compare/v1.66.1...v1.68.0
Signed-off-by: Divya Chellam <divya.chellam@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 10:17:22 -08:00
Ayoub Zaki
338e2ff78b
botan: update 3.5.0 -> 3.6.1
...
* update to latest 3.6.1 Version
* add packaging for botan binary and botan-test tool
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-03 10:17:22 -08:00
Ayoub Zaki
8bdd4740b2
bmap-writer: update to latest git version
...
* switch to libarchive to handle a larger decompression schemes
* implement own sha256 hashing and drop openssl dependency
* compute maximum buffer size before writing each range
* bmap file optional: if not provided, it will be searched in the same path as the input
* print time/speed of the writing operation
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-02 07:49:49 -08:00
Bartosz Szostak
33bc1313cf
yyjson: add new recipe
...
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-02 07:49:49 -08:00
Bartosz Szostak
21ce886005
ctre: add new recipe
...
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-02 07:49:49 -08:00
Bartosz Szostak
5bd1d5ad77
jsoncons: add new recipe
...
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-02 07:49:48 -08:00
Jiaying Song
8ffe8112f7
chrony: fix do_fetch error
...
Change the SRC_URI to the correct value due to the following error:
WARNING: chrony-4.5-r0.wr2401 do_fetch: Failed to fetch URL https://download.tuxfamily.org/chrony/chrony-4.5.tar.gz , attempting MIRRORS if available
Signed-off-by: Jiaying Song <jiaying.song.cn@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-02 07:38:58 -08:00
Khem Raj
80650fefd6
python3-google-auth: Add missing dep on python3-pyjwt
...
this is needed for ptests to run
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 20:46:47 -08:00
Khem Raj
5a4b76b6aa
python3-propcache: Add missing rdeps for ptests to run/pass
...
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:28:25 -08:00
Yi Zhao
07cdb574a5
libbpf: upgrade 1.4.6 -> 1.4.7
...
ChangLog:
https://github.com/libbpf/libbpf/releases/tag/v1.4.7
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:19 -08:00
Yi Zhao
de93141c92
pahole: upgrade 1.27 -> 1.28
...
ChangeLog:
https://git.kernel.org/pub/scm/devel/pahole/pahole.git/tree/changes-v1.28
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Yi Zhao
3f7a140ed6
snort3: upgrade 3.3.4.0 -> 3.6.1.0
...
https://github.com/snort3/snort3/releases/tag/3.6.1.0
https://github.com/snort3/snort3/releases/tag/3.6.0.0
https://github.com/snort3/snort3/releases/tag/3.5.2.0
https://github.com/snort3/snort3/releases/tag/3.5.1.0
https://github.com/snort3/snort3/releases/tag/3.5.0.0
https://github.com/snort3/snort3/releases/tag/3.3.7.0
https://github.com/snort3/snort3/releases/tag/3.3.6.0
https://github.com/snort3/snort3/releases/tag/3.3.5.0
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Yi Zhao
07a8a11d94
frr: upgrade 10.2 -> 10.2.1
...
ChangeLog:
https://github.com/FRRouting/frr/commit/5f0beaa0fdd00b7a60c1765067d1b6fa65ce96c0
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Yi Zhao
b2f7a5e3eb
tigervnc: upgrade 1.14.0 -> 1.14.1
...
ChangeLog:
https://github.com/TigerVNC/tigervnc/releases/tag/v1.14.1
* Update xorg-server to 21.1.15
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Jiaying Song
4e8c4736ac
xfce-dusk-gtk3: fix do_fetch error
...
Change the SRC_URI to the correct value due to the following error:
WARNING: xfce-dusk-gtk3-1.3-r0 do_fetch: Failed to fetch URL http://sources.openembedded.org/141404-xfce_dusk_gtk3-1_3.tar.gz;subdir=xfce-dusk-gtk3-1.3 , attempting MIRRORS if available
Signed-off-by: Jiaying Song <jiaying.song.cn@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Yi Zhao
1768156191
openldap: upgrade 2.6.8 -> 2.6.9
...
ChangeLog:
https://www.openldap.org/software/release/changes.html
Drop 0001-fix-incompatible-pointer-type-error.patch as the issue has
been fixed upstream.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Yi Zhao
f5676076df
mce-inject: update to latest git rev
...
7668d820 simulate a MCE event happened during TDX guest context
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:18 -08:00
Jiaying Song
da361d2d7c
eject: fix do_fetch error
...
Change the SRC_URI to the correct value due to the following error:
WARNING: eject-2.1.5-r0.wr2401 do_fetch: Failed to fetch URL http://sources.openembedded.org/eject-2.1.5.tar.gz , attempting MIRRORS if available
Signed-off-by: Jiaying Song <jiaying.song.cn@windriver.com >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Yi Zhao
f65596ce3e
nss: upgrade 3.103 -> 3.107
...
* Refresh patches.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Yi Zhao
bdb41e2659
nspr: upgrade 4.35 -> 4.36
...
* Refresh patches.
* Drop 0001-Fix-Wincompatible-function-pointer-types.patch as the issue
has been fixed upstream.
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Wang Mingyu
0141277159
python3-trio: upgrade 0.27.0 -> 0.28.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Wang Mingyu
0458249e18
python3-starlette: upgrade 0.42.0 -> 0.44.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Wang Mingyu
f024c3cb14
python3-pyppmd: upgrade 1.1.0 -> 1.1.1
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:17 -08:00
Wang Mingyu
39fe27dd0f
python3-pybcj: upgrade 1.0.2 -> 1.0.3
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
f25d9e1e36
python3-pulsectl: upgrade 24.11.0 -> 24.12.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
fe9e2f002d
python3-path: upgrade 17.0.0 -> 17.1.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
0d103d49a1
python3-libusb1: upgrade 3.1.0 -> 3.2.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
5feffebf92
python3-kiwisolver: upgrade 1.4.7 -> 1.4.8
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
d0cbaaadc1
python3-coverage: upgrade 7.6.9 -> 7.6.10
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:16 -08:00
Wang Mingyu
4a44b90e35
python3-astroid: upgrade 3.3.7 -> 3.3.8
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2025-01-01 19:02:15 -08:00
Wang Mingyu
4450ecbb31
parallel: upgrade 20241122 -> 20241222
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:04 -08:00
Wang Mingyu
84cb88feb3
memcached: upgrade 1.6.33 -> 1.6.34
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:04 -08:00
Wang Mingyu
b9bae24144
libsdl2-image: upgrade 2.8.3 -> 2.8.4
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:04 -08:00
Wang Mingyu
03cbeb5018
libnet-dns-perl: upgrade 1.47 -> 1.49
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:04 -08:00
Wang Mingyu
16e5e77e5d
flatbuffers: upgrade 24.3.25 -> 24.12.23
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:03 -08:00
Wang Mingyu
4685607ee0
doxygen: upgrade 1.12.0 -> 1.13.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:03 -08:00
Wang Mingyu
ff5f84b316
ctags: upgrade 6.1.20241222.0 -> 6.1.20241229.0
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
2024-12-30 09:08:03 -08:00