Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

kirk: stable updates #422

Merged
merged 4 commits into from
Feb 19, 2024
Merged

kirk: stable updates #422

merged 4 commits into from
Feb 19, 2024

Conversation

ricardosalveti
Copy link
Member

No description provided.

Relevant changes:
- 8609de009 Revert "libcroco: Add fix for CVE-2020-12825"
- 667850f08 postfix: Backport fix for CVE-2023-51764
- f81b18193 squid: backport Debian patch for CVE-2023-46728 and CVE-2023-46846
- 5f46d71fc wireshark: Fix for CVE-2023-4511
- 182c4742c radvd: add '--shell /sbin/nologin' to /etc/passwd
- c5008af2c samba: fix CVE-2023-0922
- 306837707 linuxptp: fix do_compile error
- 8ce84b09e libssh: Backport fix for CVE-2023-48795
- dbb7b798f samba: fix CVE-2018-14628
- 08d5b4bf9 xscreensaver: Add osuosl backup MIRROR
- d54a73ac5 opensc: Fix CVE-2023-40661
- 2c3c2d25b opensc: Fix CVE-2023-40660
- de760c31d zabbix: fix CVE-2023-32726 and CVE-2023-32727
- 4af7df792 python3-aiohttp: upgrade 3.8.5 -> 3.8.6
- cda1751e2 wireshark: fix CVE-2024-0208 GVCP dissector crash
- b72149572 squid: Backport fix for CVE-2023-49285
- 901ddf5a3 layer.conf: Add libdevmapper-native PREFERRED_RPROVIDER
- 1b1cf2be1 p7zip: fix CVE-2018-5996 & CVE-2016-9296

Signed-off-by: Ricardo Salveti <[email protected]>
Relevant changes:
- 59cc2e75c1 Revert "kernel: fix localversion in v6.3+"
- 8e192a2e0c ghostscript: correct LICENSE with AGPLv3
- d9273edae8 kernel: fix localversion in v6.3+
- 17e20ce90b systemd: Only add myhostname to nsswitch.conf if in PACKAGECONFIG
- 04c9b6b081 python3-pycryptodome: Fix CVE-2023-52323
- 942254eb3e libgit2: Fix CVE-2024-24575 and CVE-2024-24577
- e0f503594e curl: Fix CVE-2023-46219
- 616857b991 go: Fix CVE-2023-45285 and CVE-2023-45287
- 55027bc882 libxml2: Fix for CVE-2024-25062
- 2bdae590ab openssl: Upgrade 3.0.12 -> 3.0.13
- 04511734c6 gcc-shared-source: ignore CVE-2023-4039
- 7b93bb0ba1 gdb: Fix CVE-2023-39130
- 67b62fd57d gdb: Fix CVE-2023-39129
- 97b5bf2505 binutils: internal gdb: Fix CVE-2023-39130
- fd3f20e1e8 binutils: internal gdb: Fix CVE-2023-39129
- 2771a1248a curl: ignore CVE-2023-42915

Signed-off-by: Ricardo Salveti <[email protected]>
Relevant changes:
- 1642c22f base: rs: custom-sota-client: Bump version to b2140a5
- 1169d5b6 base: rs: aktualizr: Bump version to b2140a5
- 449c77ef meta-lmp-base: allow lmp-device-auto-register to use hostname

Signed-off-by: Ricardo Salveti <[email protected]>
Same revision as used by:
https://github.com/intel/iotg-yocto-ese-manifest/releases/tag/release-146_adl_s-mr7

Relevant changes:
- 5cfefd9a README: update tested hardware list
- 91ff1977 README: update installer image config
- 1b4e1a25 intel-cmt-cat: upgrade 23.08 -> 23.11
- 67dab4b6 open-model-zoo: upgrade 2023.1.0 -> 2023.2.0
- a938ea1b openvino-model-optimizer: upgrade 2023.1.0 -> 2023.2.0
- df5a4501 ispc: upgrade 1.21.1 -> 1.22.0
- 6d361433 oidn: upgrade 1.4.3 -> 2.1.0
- c93900c6 openvino-inference-engine: upgrade 2023.1.0 -> 2023.2.0
- b3fca003 onednn: upgrade 3.3 -> 3.3.1
- 5d9ad846 onedpl: upgrade 2022.2.0 -> 2022.3.0
- 67693c42 intel-oneapi-compiler: drop recipe
- 8a8c009d intel-oneapi-mkl: upgrade 2023.0.0-25398 -> 2024.0.0-49656
- 0826fa75 intel-oneapi-ipp: 2021.7.0-25396 -> 2021.10.0-653
- 8ad76be2 intel-oneapi-dpcpp-cpp: 2023.1.0-46305 -> 2024.0.0-49819
- 198af9e9 intel-oneapi-dpcpp-cpp-runtime: upgrade 2023.1.0-46305 -> 2024.0.0-49819
- 52ce86a7 onevpl-intel-gpu: upgrade 23.2.4 -> 23.3.4
- 989d35a4 onevpl: upgrade 2023.3.0 -> 2023.3.1
- 587dce12 intel-media-driver: upgrade 23.2.4 -> 23.3.5
- 2ab87a29 libva-intel-utils: upgrade 2.19.0 -> 2.20.0
- 05a1c5c6 libva-intel: upgrade 2.19.0 -> 2.20.0
- 6dcc61ac gmmlib: upgrade 22.3.7 -> 22.3.12
- c220d2b0 linux-intel-rt/6.1: update to v6.1.59-rt16
- f7bac45b linux-intel/6.1: update to v6.1.59
- fa34a619 lms: install /etc/lms directory
- 49da9b61 intel-microcode: upgrade 20230808 -> 20231114
- d72611ba metee: fix compilation error with musl
- 7b62d64d lms: 2245.0.0.0 -> 2322.0.0.0
- 758d05bc libipt: 2.0.6 -> 2.1.0
- 6d40bb2d metee: 3.1.3 -> 3.1.6
- 25d70356 onedpl: 2022.0.0 -> 2022.2.0
- 3c855dab ispc: upgrade 1.21.0 -> 1.21.1
- 3f9e616b ospray: upgrade 2.12.0 -> 3.0.0
- e1aedc8b openvkl: upgrade 1.3.2 -> 2.0.0
- 2b3d88de rkcommon: upgrade 1.11.0 -> 1.12.0

Signed-off-by: Ricardo Salveti <[email protected]>
@ricardosalveti ricardosalveti requested a review from a team February 16, 2024 23:11
@ricardosalveti ricardosalveti added the ok-to-test Requires OK for testing to proceed label Feb 16, 2024
Copy link
Contributor

@igoropaniuk igoropaniuk left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@ricardosalveti ricardosalveti merged commit 01a87d6 into foundriesio:main Feb 19, 2024
56 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ok-to-test Requires OK for testing to proceed
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants