Files
meta-openembedded/meta-python/recipes-devtools/python/python3-glances_4.5.6.bb
T
Leon Anavi 9412289154 python3-glances: Upgrade 4.3.2 -> 4.5.6
Upgrade to release 4.5.6:

Bugs corrected:

- Alert level decided by dict ordering: a failing+slow URL is
  downgraded to WARNING, an unscanned URL reports CRITICAL
- GPU plugin duplicates card name and omits N/A for unavailable
  metrics in multi-GPU
- GPU plugin duplicates the utilisation value and paints it with
  the memory colour in multi-GPU
- IP plugin displays wrong interface: outer loop in get_ip_address()
  never breaks
- VideoCore (v3d) memory shows ~93% on Raspberry Pi 5 with
  gpu_mem=4M - misleading denominator from drm-total-memory
- CSV export: --stdout-csv data rows desync from header when
  network interfaces change count at runtime
- Glances Network plugin with mismatched schema not logging in
  TimescaleDB export

Security patches:

- as_dict_secure() Value-Level Bypass Leaks Credentials in URL
  Values via /api/4/config - CVE-2026-68520
- --disable-config-exec does not cover on-alert action commands
  - CVE-2026-68519
- Command injection bypass of action-template sanitizer via
  cross-field shell-operator reconstruction - CVE-2026-68518
- Incomplete fix of CVE-2026-32608: action-template sanitizer is
  bypassed by nested stat values - CVE-2026-62982
- REST API CORS Credentials Guard Uses Exact-Match Instead of
  Membership Test - CVE-2026-68517

Signed-off-by: Leon Anavi <leon.anavi@konsulko.com>
Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
2026-09-04 17:10:39 -07:00

39 lines
1.1 KiB
BlitzBasic

SUMMARY = "Glances is an open-source system cross-platform monitoring tool."
DESCRIPTION = "Glances an Eye on your system. A top/htop alternative for \
GNU/Linux, BSD, macOS and Windows operating systems."
HOMEPAGE = "https://nicolargo.github.io/glances/"
LICENSE = "LGPL-3.0-only"
LIC_FILES_CHKSUM = "file://COPYING;md5=852ecadc0ac7e6f4d7144d5544a3815b"
SRC_URI[sha256sum] = "8a26329f0a25e878d53c2558f1eb0615b09acc1dce2ba523cab32dbe175fe8bf"
inherit pypi python_setuptools_build_meta ptest-python-pytest
SRC_URI += " \
file://run-ptest \
"
# psutil/jinja2/packaging are oe-core; fastapi/uvicorn/defusedxml are
# meta-python.
RDEPENDS:${PN} += " \
python3-psutil \
python3-packaging \
python3-defusedxml \
python3-fastapi \
python3-uvicorn \
python3-jinja2 \
python3-json \
python3-logging \
python3-asyncio \
python3-multiprocessing \
python3-netclient \
python3-xml \
"
RDEPENDS:${PN}-ptest += " \
python3-requests \
"
# Optional fast-JSON accelerator glances uses if present.
RRECOMMENDS:${PN} += "python3-orjson"