Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Stable updates (kirkstone) #428

Merged
merged 4 commits into from
Mar 12, 2024
Merged

Conversation

ricardosalveti
Copy link
Member

No description provided.

Relevant changes:
- d63af11e92 kernel.bbclass: Set pkg-config variables for building modules
- 5f9463d8c9 tzdata : Upgrade to 2024a
- 122be5a683 linux-firmware: upgrade 20231030 -> 20231211
- f7ab2e9990 bind: Upgrade 9.18.19 -> 9.18.24
- 1745208bc0 cve_check: cleanup logging
- 6488fc1a8f dbus: Add missing CVE_PRODUCT
- e9af3d328d qemu: Fix CVE-2023-42467
- e993720fc3 qemu: Backport fix CVE-2023-6693
- 71600de72c qemu: Fix for CVE-2024-24474
- c8b30db7fc glibc: ignore CVE-2023-0687
- 8d91ab2093 less: Fix for CVE-2022-48624
- cca0971a7d kernel: make LOCALVERSION consistent between recipes
- 74897e505d kernel: fix localversion in v6.3+
- 29a0d2a49d kernel.bbclass: introduce KERNEL_LOCALVERSION
- 63998f13d5 scripts: python 3.12 regex
- d4e11eebdf meta/recipes: python 3.12 regex
- 939046c5e9 meta/lib/oeqa: python 3.12 regex
- 2331982cf4 feature-microblaze-versions.inc: python 3.12 regex
- 095598eb7c oeqa/selftest/oelib/buildhistory: git default branch
- 979b216330 oeqa/selftest/recipetool: expect meson.bb
- 24bf7bbd1f oeqa/selftest/recipetool: downgrade meson version to not use pyproject.toml
- 9c1a1110a3 oeqa/selftest/recipetool: fix for python 3.12
- a20325690a oeqa: replace deprecated assertEquals
- 31de620e9d runqemu: add qmp socket support
- 50815c328e populate_sdk_ext: use ConfigParser instead of SafeConfigParser
- 2f8982ef4c scripts/runqemu: fix regex escape sequences
- b9dcdf2346 recipetool/create_buildsys_python: use importlib instead of imp
- 5103ce6774 runqemu: direct mesa to use its own drivers, rather than ones provided by host distro
- 16a9037d28 oeqa/selftest/runtime_test: only run the virgl tests on qemux86-64
- 602ccc5736 ldconfig-native: Fix to point correctly on the DT_NEEDED entries in an ELF file
- 2b0b47fd0c cmake: Unset CMAKE_CXX_IMPLICIT_INCLUDE_DIRECTORIES
- 01440b4968 curl: don't enable debug builds
- b71eeab719 linux-yocto/5.15: update CVE exclusions
- f1326d008a linux-yocto/5.15: update to v5.15.148
- c7c86d97f6 linux-yocto/5.15: update CVE exclusions
- f4f1964a7a linux-yocto/5.15: update to v5.15.147
- 22b1db5362 linux-yocto/5.15: update CVE exclusions
- ee4695138e linux-yocto/5.15: update to v5.15.146
- 03794866c1 linux-yocto/5.15: update to v5.15.145
- 4deed206f9 linux-yocto/5.15: update to v5.15.142
- 5832eebee3 linux-yocto/5.15: update to v5.15.141
- 29fc80648b cve-exclusion_5.10.inc: update for 5.10.209
- bc5c1a8631 linux-yocto/5.10: update to v5.10.209
- 28b884d3ba linux-yocto/5.10: update to v5.10.206
- a1b6f99148 linux-yocto/5.10: update to v5.10.205
- 501af4c5f9 linux-yocto/5.10: update to v5.10.203
- e7976311a7 vim: upgrade v9.0.2130 -> v9.0.2190
- 9aa207a91a libuv: fix CVE-2024-24806
- 973901530c go: add a complementary fix for CVE-2023-29406

Signed-off-by: Ricardo Salveti <[email protected]>
Relevant changes:
- fda737ec0 mbedtls: Upgrade 3.5.0 -> 3.5.2
- 7d07ad570 mbedtls: upgrade 2.28.5 -> 2.28.7
- dc2b81929 python3-django: upgrade from 4.2.7 to 4.2.10
- ab7c9bea3 graphviz: fix CVE-2023-46045
- 5800571ad squid: Backport fix for CVE-2023-49286 and CVE-2023-50269
- 7f2e0e1d3 mariadb: fix CVE-2023-22084
- 1915dcb8e nodejs: Set CVE_PRODUCT to "node.js"

Signed-off-by: Ricardo Salveti <[email protected]>
Relevant changes:
- f49e4ac Merge pull request foundriesio#92 from rborn-tx/generic-ostree-repo-config-kirkstone
- 89b6948 image_types_ota: introduce generic repository configuration
- 0605a7d image_types_ostree: introduce generic repository configuration

Signed-off-by: Ricardo Salveti <[email protected]>
Relevant changes:
- 7902664f upx: bump to 4.2.2 release - fixes various CVEs

Signed-off-by: Ricardo Salveti <[email protected]>
@ricardosalveti ricardosalveti requested a review from a team March 11, 2024 23:25
@ricardosalveti ricardosalveti added the ok-to-test Requires OK for testing to proceed label Mar 11, 2024
Copy link
Contributor

@MrCry0 MrCry0 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@ricardosalveti ricardosalveti merged commit 61df807 into foundriesio:main Mar 12, 2024
56 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
ok-to-test Requires OK for testing to proceed
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants