|
[meta-oe][kirkstone][langdale][PATCH] c-ares: fix CVE-2022-4904
From: Peter Marko <peter.marko@...> Backport based on https://github.com/c-ares/c-ares/issues/496 Signed-off-by: Peter Marko <peter.marko@...> --- .../c-ares/c-ares/CVE-2022-4904.patch | 66 ++++++++++
From: Peter Marko <peter.marko@...> Backport based on https://github.com/c-ares/c-ares/issues/496 Signed-off-by: Peter Marko <peter.marko@...> --- .../c-ares/c-ares/CVE-2022-4904.patch | 66 ++++++++++
|
By
Peter Marko
·
|
|
[meta-oe][PATCH] cmocka: Check for previous declaration of uintptr_t
Fix build with musl/aarch64 Signed-off-by: Khem Raj <raj.khem@...> --- meta-oe/recipes-test/cmocka/cmocka_1.1.7.bb | 1 + ...or-previous-declaration-of-uintptr_t.patch | 43 +++++++++++++++++++ 2 files
Fix build with musl/aarch64 Signed-off-by: Khem Raj <raj.khem@...> --- meta-oe/recipes-test/cmocka/cmocka_1.1.7.bb | 1 + ...or-previous-declaration-of-uintptr_t.patch | 43 +++++++++++++++++++ 2 files
|
By
Khem Raj
·
|
|
[meta-oe][PATCH] libyang: upgrade 2.1.30 -> 2.1.55
ChangeLog: https://github.com/CESNET/libyang/releases/tag/v2.1.55 * Generate cases list dynamically in run-ptest. * Add a patch to fix ptest. Signed-off-by: Yi Zhao <yi.zhao@...> --- ...ntext-skip-tes
ChangeLog: https://github.com/CESNET/libyang/releases/tag/v2.1.55 * Generate cases list dynamically in run-ptest. * Add a patch to fix ptest. Signed-off-by: Yi Zhao <yi.zhao@...> --- ...ntext-skip-tes
|
By
Yi Zhao
·
|
|
[kirkstone][meta-oe][PATCH] redis: upgrade 7.0.9 -> 7.0.10
3 messages
From: Changqing Li <changqing.li@...> Upgrade urgency: SECURITY, contains fixes to security issues. Security Fixes: (CVE-2023-28425) Specially crafted MSETNX command can lead to assertion and denial-o
From: Changqing Li <changqing.li@...> Upgrade urgency: SECURITY, contains fixes to security issues. Security Fixes: (CVE-2023-28425) Specially crafted MSETNX command can lead to assertion and denial-o
|
By
Changqing Li
·
|
|
[kirkstone][meta-webserver][PATCH] apache2: upgrade 2.4.55 -> 2.4.56
2 messages
From: Changqing Li <changqing.li@...> This upgrade contains two CVE fixes, CVE-2023-25690 (CRITICAL) CVE-2023-27522 (HIGH) Signed-off-by: Changqing Li <changqing.li@...> --- .../apache2/{apache2_2.4.5
From: Changqing Li <changqing.li@...> This upgrade contains two CVE fixes, CVE-2023-25690 (CRITICAL) CVE-2023-27522 (HIGH) Signed-off-by: Changqing Li <changqing.li@...> --- .../apache2/{apache2_2.4.5
|
By
Changqing Li
·
|
|
langdale merge request: March 22nd
The following changes since commit 613dc6e1076efcb8c0aadf7728433e5841e6a6aa: nodejs: Upgrade 16.19.0 -> 16.19.1 (2023-03-12 11:51:57 -0400) are available in the Git repository at: https://git.openembe
The following changes since commit 613dc6e1076efcb8c0aadf7728433e5841e6a6aa: nodejs: Upgrade 16.19.0 -> 16.19.1 (2023-03-12 11:51:57 -0400) are available in the Git repository at: https://git.openembe
|
By
Armin Kuster
·
|
|
[master][meta-oe][PATCH] redis: upgrade 7.0.9 -> 7.0.10
From: Changqing Li <changqing.li@...> Upgrade urgency: SECURITY, contains fixes to security issues. Security Fixes: * (CVE-2023-28425) Specially crafted MSETNX command can lead to assertion and denial
From: Changqing Li <changqing.li@...> Upgrade urgency: SECURITY, contains fixes to security issues. Security Fixes: * (CVE-2023-28425) Specially crafted MSETNX command can lead to assertion and denial
|
By
Changqing Li
·
|
|
[meta-python][PATCH v2 1/4] python_mesonpy.bbclass: New class
5 messages
Some python modules (e.g. SciPy, scikit-image) use meson-python (a.k.a. mesonpy) in pyproject.toml: [build-system] build-backend = 'mesonpy' This class, together with python3-meson-python and its depe
Some python modules (e.g. SciPy, scikit-image) use meson-python (a.k.a. mesonpy) in pyproject.toml: [build-system] build-backend = 'mesonpy' This class, together with python3-meson-python and its depe
|
By
Zoltan Boszormenyi
·
|
|
[meta-oe][PATCH v5] pgpool2: Added a new recipe.
3 messages
Pgpool-II is a middleware that works between PostgreSQL servers and a PostgreSQL database client. It is distributed under a license similar to BSD and MIT. It provides the following features. Signed-o
Pgpool-II is a middleware that works between PostgreSQL servers and a PostgreSQL database client. It is distributed under a license similar to BSD and MIT. It provides the following features. Signed-o
|
By
leimaohui
·
|
|
[PATCH] cmocka: update from 1.1.5+ to 1.1.7
2 messages
Switch the SRC_URI branch from master to stable-1.1 The 1.1.5 version was actually a bit ahead of that tag but the ChangeLog comment for the two releases are: Thu Feb 23 2023 Andreas Schneider <asn@..
Switch the SRC_URI branch from master to stable-1.1 The 1.1.5 version was actually a bit ahead of that tag but the ChangeLog comment for the two releases are: Thu Feb 23 2023 Andreas Schneider <asn@..
|
By
Randy MacLeod
·
|
|
[meta-oe][langdale][PATCH] mbedtls: upgrade to 2.28.2 to fix CVE-2022-46392, CVE-2022-46393
From: Stefan Ghinea <stefan.ghinea@...> An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. An adversary with access to precise enough information about memory accesses (typically,
From: Stefan Ghinea <stefan.ghinea@...> An issue was discovered in Mbed TLS before 2.28.2 and 3.x before 3.3.0. An adversary with access to precise enough information about memory accesses (typically,
|
By
Armin Kuster
·
|
|
SPDX Support in Dunfell
There has been a strong desire to have our SPDX support in the Dunfell LTS release. As such, I've put together a patch series in poky-contrib to try this out, which can be found here: https://git.yoct
There has been a strong desire to have our SPDX support in the Dunfell LTS release. As such, I've put together a patch series in poky-contrib to try this out, which can be found here: https://git.yoct
|
By
Joshua Watt
·
|
|
[meta-networking][PATCH 2/2] packagegroup-meta-networking: Set PACKAGE_ARCH = "${MACHINE_ARCH}"
Remove memcached from rv64, its not buildable yet Signed-off-by: Khem Raj <raj.khem@...> --- .../recipes-core/packagegroups/packagegroup-meta-networking.bb | 2 ++ 1 file changed, 2 insertions(+) diff
Remove memcached from rv64, its not buildable yet Signed-off-by: Khem Raj <raj.khem@...> --- .../recipes-core/packagegroups/packagegroup-meta-networking.bb | 2 ++ 1 file changed, 2 insertions(+) diff
|
By
Khem Raj
·
|
|
[meta-oe][PATCH 1/2] packagegroup-meta-oe: Remove mongodb from rdep list of packagegroup
Signed-off-by: Khem Raj <raj.khem@...> --- .../packagegroups/packagegroup-meta-oe.bbappend | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/meta-oe/dynamic-layers/meta-python/
Signed-off-by: Khem Raj <raj.khem@...> --- .../packagegroups/packagegroup-meta-oe.bbappend | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/meta-oe/dynamic-layers/meta-python/
|
By
Khem Raj
·
|
|
[meta-multimedia][PATCH] packagegroup-meta-multimedia: Remove library only packages from rdeps
Because they get renamed, it is better to ignore them and let a dependency build them Fixes errors like ERROR: packagegroup-meta-multimedia-1.0-r0 do_package_write_ipk: An allarch packagegroup shouldn
Because they get renamed, it is better to ignore them and let a dependency build them Fixes errors like ERROR: packagegroup-meta-multimedia-1.0-r0 do_package_write_ipk: An allarch packagegroup shouldn
|
By
Khem Raj
·
|
|
[meta-oe][dunfell][PATCH] apache2: upgrade 2.4.55 -> 2.4.56
3 messages
From: Wang Mingyu <wangmy@...> Changelog: ========== - rotatelogs: Add -T flag to allow subsequent rotated logfiles to be truncated without the initial logfile being truncated. - mod_ldap: LDAPConnect
From: Wang Mingyu <wangmy@...> Changelog: ========== - rotatelogs: Add -T flag to allow subsequent rotated logfiles to be truncated without the initial logfile being truncated. - mod_ldap: LDAPConnect
|
By
Valeria Petrov
·
|
|
p7zip fixes for CVE-2018-5996 and CVE-2016-9296
Dear maintainers, CVE-2018-5996 and CVE-2016-9296 were fixed in dunfell but these patched did not make it to master (and thus also not to langdale and kirkstone). Could you please pick them to these t
Dear maintainers, CVE-2018-5996 and CVE-2016-9296 were fixed in dunfell but these patched did not make it to master (and thus also not to langdale and kirkstone). Could you please pick them to these t
|
By
Peter Marko
·
|
|
[meta-oe][PATCH 2/2] libssh: Fix build with clang16
Signed-off-by: Khem Raj <raj.khem@...> --- ...prototype-of-des3_encrypt-des3_decry.patch | 46 +++++++++++++++++++ .../recipes-support/libssh/libssh_0.10.4.bb | 1 + 2 files changed, 47 insertions(+) cr
Signed-off-by: Khem Raj <raj.khem@...> --- ...prototype-of-des3_encrypt-des3_decry.patch | 46 +++++++++++++++++++ .../recipes-support/libssh/libssh_0.10.4.bb | 1 + 2 files changed, 47 insertions(+) cr
|
By
Khem Raj
·
|
|
[meta-networking][PATCH 1/2] rp-pppoe: Define _GNU_SOURCE
Ensures that it picks up definitions of strlcpy() from string.h Signed-off-by: Khem Raj <raj.khem@...> --- meta-networking/recipes-protocols/rp-pppoe/rp-pppoe_3.15.bb | 3 +++ 1 file changed, 3 inserti
Ensures that it picks up definitions of strlcpy() from string.h Signed-off-by: Khem Raj <raj.khem@...> --- meta-networking/recipes-protocols/rp-pppoe/rp-pppoe_3.15.bb | 3 +++ 1 file changed, 3 inserti
|
By
Khem Raj
·
|
|
[kirkstone][meta-networking][PATCH] mbedtls: upgrade 2.28.0 -> 2.28.2
ChangeLog: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2 Security Fixes: CVE-2022-46392: https://nvd.nist.gov/vuln/detail/CVE-2022-46392 CVE-2022-46393: https://nvd.nist.gov/vuln/detail/CVE
ChangeLog: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.2 Security Fixes: CVE-2022-46392: https://nvd.nist.gov/vuln/detail/CVE-2022-46392 CVE-2022-46393: https://nvd.nist.gov/vuln/detail/CVE
|
By
Yi Zhao
·
|