Nylon Chen
6cc88c4e9b
kernel-selftest: handle missing -64.h headers
...
Some toolchains ship only bits/*.h without the -64.h suffix,
causing the recipe to fail. Add a fallback to use *.h if
*-64.h is not found, and warn if neither exists.
Signed-off-by: Nylon Chen <nylon.chen@sifive.com >
Signed-off-by: Joao Marcos Costa <joaomarcos.costa@bootlin.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 9472f4a728 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
jacobpanov
85c38da17b
kernel-selftest: Fix PTP selftest compilation for kernel 6.7+
...
The PTP selftest fails to compile with kernel versions 6.7+ due to
missing header definitions for PTP_MASK_CLEAR_ALL and PTP_MASK_EN_SINGLE.
These definitions were introduced in kernel v6.7 with commit c5a445b.
This fix adds kernel headers to CFLAGS during compilation to ensure
the required definitions are available.
Error before fix:
testptp.c:613:31: error: 'PTP_MASK_CLEAR_ALL' undeclared
testptp.c:615:38: error: 'PTP_MASK_EN_SINGLE' undeclared
Fixes : #878
Signed-off-by: Jacob Panov <jacobpanov@gmail.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit f30afbe04c )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Markus Volk
20af4f6420
malcontent: update 0.13.0 -> 0.13.1
...
Bugs fixed:
(or any click on carousel's icons) (Philip Withnall)
!244 malcontent-control: Fix callback argument list
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 827abeaf07 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Yoann Congal
48e1f70ef0
boinc-client: fix hostname reproducibility
...
The generated svn_version.h contains the hostname which makes it
non-reproducible. Fix this by removing the hostname from the file.
Signed-off-by: Yoann Congal <yoann.congal@smile.fr >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit f23543fb6e )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Wang Mingyu
b4cdea2f82
parallel: upgrade 20250722 -> 20250822
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit e52777c3ac )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Wang Mingyu
dd313be320
parallel: upgrade 20250622 -> 20250722
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 482318ca41 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Wang Mingyu
645cbb65f2
parallel: upgrade 20250522 -> 20250622
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 3afbc2b0b8 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Wang Mingyu
5e0632b5a9
parallel: upgrade 20250422 -> 20250522
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 1a01da40ed )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Wang Mingyu
b78d7e24d1
parallel: upgrade 20250322 -> 20250422
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit dd4e71817d )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Louis Rannou
292ffc8951
mosquitto: bump to 2.0.21
...
Upgrade to mosquitto 2.0.21. Update the patch status for issue 2895 and create a
new patch for an issue introduced in 2.0.19 which causes connections to get down
when the clock is changed.
Signed-off-by: Louis Rannou <louis.rannou@non.se.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 2a27eacee2 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:12 +02:00
Peter Kjellerstedt
7e87aedc0c
opencv: Support building for native
...
Signed-off-by: Peter Kjellerstedt <peter.kjellerstedt@axis.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:53:08 +02:00
Peter Kjellerstedt
fe59a35289
glog: Support building for native
...
This is needed to build opencv-native.
Signed-off-by: Peter Kjellerstedt <peter.kjellerstedt@axis.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:52:48 +02:00
Divya Chellam
9128c6c8c1
cjson: upgrade 1.7.18 -> 1.7.19
...
This includes CVE-fix for CVE-2025-57052
Changelog:
https://github.com/DaveGamble/cJSON/blob/master/CHANGELOG.md
Signed-off-by: Divya Chellam <divya.chellam@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:52:29 +02:00
Saravanan
a27da12bdd
udisks2: upgrade 2.10.1 -> 2.10.2
...
This patch addresses below CVE's:
CVE-2025-6019
CVE-2025-8067
Changelog:
https://github.com/storaged-project/udisks/releases
Signed-off-by: Saravanan <saravanan.kadambathursubramaniyam@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:52:22 +02:00
Wang Mingyu
8e7fd35ffe
libssh: upgrade 0.11.2 -> 0.11.3
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
Signed-off-by: Divya Chellam <divya.chellam@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
hongxu
489a206930
indent: fix CVE-2024-0911
...
Backport a fix from upstream to resolve CVE-2024-0911
https://git.savannah.gnu.org/git/indent.git feb2b646e6c3a05018e132515c5eda98ca13d50d
Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
(cherry picked from commit 26ef6a9c2d )
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Yogita Urade
80b175f3ff
indent: fix CVE-2023-40305
...
GNU indent 2.2.13 has a heap-based buffer overflow in search_brace
in indent.c via a crafted file.
Reference:
https://savannah.gnu.org/bugs/index.php?64503
Signed-off-by: Yogita Urade <yogita.urade@windriver.com >
Signed-off-by: Armin Kuster <akuster808@gmail.com >
(cherry picked from commit 7da6cb848b )
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
fa396f39ea
mosh: set working SRC_URI
...
The project switched to storing their releases on Github, and
the original links stopped working.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
79112c98bf
collectd: set working SRC_URI
...
The project started to outsource the source hosting to Google storage
and Github.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Khem Raj
b5383b8a17
safec: Pass Qunused-arguments when using clang
...
Fixes build issue since clang does not respect some options
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit c324bee29d )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Khem Raj
9684bf8742
tomlplusplus: Fix test failures with clang/libcxx
...
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 63584aeba9 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Nitin Wankhade
b44427280b
iperf3: Fix CVE-2025-54350
...
remove assert to prevent crash due to assertion failure
on malformed authentication attempt
Reference: https://github.com/esnet/iperf/commit/4eab661da0bbaac04493fa40164e928c6df7934a
Signed-off-by: Nitin Wankhade <nitin.wankhade333@gmail.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 959b07135c )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
4b24fbf760
iptraf-ng: upgrade 1.2.1 -> 1.2.2
...
Changelog:
===========
- small cleanups: remove unused code/variable, correct format specifiers
- serv.c: fix and validate port/ranges entering/loading/saving
- SECURITY FIX: CVE-2024-52949: interface names: limit length to IFNAMSIZ
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 8c34d52003 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Jeroen Hofstee
32749dfb3b
php: ignore CVE-2024-3566
...
CVE-2024-3566 only effects Microsoft Windows.
Signed-off-by: Jeroen Hofstee <jhofstee@victronenergy.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit d68c56e1ed )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
2b3a146df0
sexpect: upgrade 2.3.14 -> 2.3.15
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 04ac3e66ec )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Leon Anavi
5f6094aee0
ssd1306: Update to newer version
...
Update to the latest version of the source code in GitHub:
- Use snprintf to replace strncpy without null string at last
Signed-off-by: Leon Anavi <leon.anavi@konsulko.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit c8ef8ccd8d )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
13cf5df3ea
tk: upgrade 9.0.1 -> 9.0.2
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit b3adc834d1 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Yi Zhao
01b157a564
tk8: upgrade 8.6.15 -> 8.6.17
...
ChangeLog:
2024-12-19 (bug) [844c0b] Menu entry underline does not consider
activeborderwidth
2025-01-03 (bug) [13ac26] wm iconbitmap does not correctly set the
icon pixmap hint on macOS
2025-01-27 (bug) [080a28] Aqua: tk_getOpenFile crash
2025-01-28 (bug) [c99266] console menu zh_cn translations
2025-03-17 (bug) [159aa5] MS-Win: Incorrect system menu entries for
transient toplevels
2025-03-17 (bug) [91d0e9] MS-Win: Withdrawn Tk transient windows can
reappear in Windows taskbar preview
2025-04-26 (bug) [111f66] Aqua: cannot iconify all windows
2025-05-17 (bug) [7231bf99] Setting ttk state may change the variable
passed by value
2025-05-29 (feature) [17b509] Win: support PNG images in icon files.
2025-06-01 (bug) [5d0bc3] block cursor size on a tab is too large
2025-07-03 (bug) [6b0f77] gcc 14 breaks configure test for bigendian
leading to broken floating point
2025-07-14 (bug) [d25b72] error popup on ttk::scale with invisible
trough
2025-07-16 (bug) [770fa0] loading windows dll's in Cygwin doesn't
work with high-entropy-va
2025-07-25 (bug) [3d13f8,e90e8c] Aqua: dark mode improvements
2025-07-25 (bug) [e94c8b] interop with clipboard managers
2025-08-11 (bug) [dc38c9] Aqua: NSHighResolutionCapable should be a
Boolean value
2025-08-11 (bug) [4e1e10] Aqua: CGRect/NSRect type mismatch on 32-bit
Signed-off-by: Yi Zhao <yi.zhao@windriver.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 3564ff8f30 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
2070d3316f
valijson: upgrade 1.0.5 -> 1.0.6
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 108183d40f )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
d96df0a9c5
valijson: upgrade 1.0.4 -> 1.0.5
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit dd018dabf8 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
cf356329ae
mm-common: upgrade 1.0.6 -> 1.0.7
...
License-Update:
- signature "Ty Coon" changed to "Moe Ghoul"
- modify the whitespace
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit fbf96a5bdd )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Jason Schonberg
a3ec67d2ce
Remove the use of http://ftp.gnome.org/pub/gnome
...
Use https://download.gnome.org instead.
In SRC_URI where the reference is https://download.gnome.org/sources
${GNOME_MIRROR} can be substituted.
Signed-off-by: Jason Schonberg <schonm@gmail.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit a9b7b0113d )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
c105150e0c
ser2net: upgrade 4.6.4 -> 4.6.5
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 6cb5569898 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
c85fd40c11
libimobiledevice-glue: upgrade 1.3.1 -> 1.3.2
...
Changelog:
=============
- socket: [macOS] Fix build on older macOS
- socket: [Windows] Prevent crash by properly initializing memory buffers
- Switch to better initializer strategy
- Fix compilation on MSVC
- Add extern "C" guards to public headers
- socket: Improve error message output/verbose logging
- socket: [Windows] Make sure errno is set in error conditions
- socket: Allow setting debug level via environment variable
- socket: [Windows] Use WSAAddressToStringA (ANSI version)
- socket: [Windows] Use inet_ntop instead of WSAAddressToStringA for >= Vista
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 0be8ef7617 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Peter Kjellerstedt
90c18d88a7
hostapd: Backport a patch to build SAE-PK correctly
...
SAE-PK needs base64_decode(), but if no other feature is enabled that
needs base64 support, then it is missing.
Signed-off-by: Peter Kjellerstedt <peter.kjellerstedt@axis.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit c9922073e4 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
47989d62a5
gensio: upgrade 2.8.7 -> 2.8.15
...
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 9a9564afe2 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Liu Yiding
55c67fa0a4
freeradius: Fix the multilib config
...
When enabling multilib with lib32, the radiusd will use etc file for lib32 as default
#systemctl status radiusd
......
/usr/sbin/radiusd -d /etc/lib32-raddb
It should be lib64 as default.
Signed-off-by: Liu Yiding <liuyd.fnst@fujitsu.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
d8cec5c068
readme: update maintainer
...
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
7fa2585dee
tokyocabinet: fix license
...
The application is distributed under the LGPL license, not GPL.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
a3b09a0a8a
tokyocabinet: switch to working SRC_URI
...
The original source seems to be long gone.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Gyorgy Sarvari
2959a76181
pm-qa: update git fetch protocol
...
Apparently the git repo in the SRC_URI stopped supporting git
protocol. Switch to https to be able to fetch the source successfully.
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Archana Polampalli
1bc9e7882f
tcpreplay: upgrade 4.5.1 -> 4.5.2
...
Changelog:
https://github.com/appneta/tcpreplay/releases/tag/v4.5.2
Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Sunil Dora
1915f0442c
layer.conf: add bpftrace to NON_MULTILIB_RECIPES
...
bpftrace need line up with kernel architecture type,
so add it to NON_MULTILIB_RECIPES.
bpftrace must be built with the same architecture (32-bit/64-bit) as the kernel
to ensure compatibility when tracing kernel functions and using eBPF features.
(cherry-picked from f8498f2699 in master )
Signed-off-by: Sunil Dora <sunilkumar.dora@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Libo Chen
d9609eeb8f
python3-gpt-image: Add native and nativesdk targets to the build
...
Add the native and nativesdk to the recipe.
Signed-off-by: Libo Chen <libo.chen.cn@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Ankur Tyagi
739baff583
lsscsi: fix versioning
...
PE bump is needed because previous PV "030" > current PV "0.32"
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Changqing Li
dd477d1633
lsscsi: upgrade to version 0.32
...
Upstream changelogs:
https://sg.danny.cz/scsi/lsscsi.ChangeLog
Changes in this commit are referenced from 51e410a84e .
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 51e410a84e )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Mikko Rapeli
a9d033d426
fwupd-efi: update from 1.6 to 1.7
...
Remove upstreamed patch.
https://github.com/fwupd/fwupd-efi/releases/tag/1.7
This release fixes the following bugs:
Fix compilation with GNU-EFI 4.0
Signed-off-by: Mikko Rapeli <mikko.rapeli@linaro.org >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit b572fdf8e1 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Wang Mingyu
9ea05dc658
bolt: upgrade 0.9.6 -> 0.9.10
...
Changelog:
============
- Fix bolt exits when opening an empty version file
- Fix failure on integration test due to the change of the latest pygobject
- Several CI improvements and fixes.
- Fixed memory leak in boltctl
- The unused codes were removed from daemon
- Fixed a NULL syspath variable causes SIGSEGV
- A new NHI for REMBRANDT.
- CI fixes.
- Don't install an empty DB directory.
- Fixed: Determine the string length before writing file.
- Fixed: Free on error to prevent resource leak.
- Add a 'nopcie' security level since some devices report 'nopcie' when Thunderbolt
is disabled through BIOS setting.
- Markdown lint styling is used for documents.
Signed-off-by: Wang Mingyu <wangmy@fujitsu.com >
Signed-off-by: Khem Raj <raj.khem@gmail.com >
(cherry picked from commit 98969e3b44 )
Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Praveen Kumar
87f82e5f1d
polkit: fix CVE-2025-7519
...
A flaw was found in polkit. When processing an XML policy with 32 or
more nested elements in depth, an out-of-bounds write can be triggered.
This issue can lead to a crash or other unexpected behavior, and
arbitrary code execution is not discarded. To exploit this flaw, a
high-privilege account is needed as it's required to place the
malicious policy file properly.
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2025-7519
Upstream-patch:
https://github.com/polkit-org/polkit/commit/107d3801361b9f9084f78710178e683391f1d245
Signed-off-by: Praveen Kumar <praveen.kumar@windriver.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00
Liu Yiding
11441e2432
freeradius: Fix service start error
...
Following error occurred while starting this service.
Error: tls: (TLS) Failed reading certificate file "/etc/raddb/certs/server.pem"
Error: tls: (TLS) error:03000072:digital envelope routines::decode error
Error: tls: (TLS) error:0A00018F:SSL routines::ee key too small
Error: rlm_eap_tls: Failed initializing SSL context
Error: rlm_eap (EAP): Failed to initialise rlm_eap_tls
Error: /etc/raddb/mods-enabled/eap[14]: Instantiation failed for module "eap"
Signed-off-by: Liu Yiding <liuyd.fnst@fujitsu.com >
Signed-off-by: Gyorgy Sarvari <skandigraun@gmail.com >
2025-10-01 13:26:29 +02:00