[oe] [meta-oe][PATCH] lcms: upgrade 2.15 -> 2.16

2024-01-16 Thread Alper Ak
License-Update: Renamed from COPYING to LICENSE Changelog: New: import .CUBE files as RGB device links New: Read/Write MHC2 tags for Windows GPU access New: Support for UTF8 on multi-localized Unicode functions New: Support for OkLab color space, built-in and formatter. Improv

[oe] [meta-oe][kirkstone][PATCH] strongswan: upgrade 5.9.12 -> 5.9.13

2024-01-16 Thread Armin Kuster
From: Wang Mingyu Changelog: - Fixes a regression with handling OCSP error responses and adds a new option to specify the length of nonces in OCSP requests. Also adds some other improvements for OCSP handling and fuzzers for OCSP requests/responses. Signed-off-by: Wang Mingyu Signed-off-

[oe] [meta-oe][nanbield][PATCH 11/11] libssh: upgrade 0.10.5 -> 0.10.6

2024-01-16 Thread Armin Kuster
From: Wang Mingyu 0001-libgcrypt.c-Fix-prototype-of-des3_encrypt-des3_decry.patch 0001-tests-CMakeLists.txt-do-not-search-ssh-sshd-commands.patch refreshed for 0.10.6 Changelog: == * Fix CVE-2023-6004: Command injection using proxycommand * Fix CVE-2023-48795: Potential downgrade attack

[oe] [meta-oe][nanbield][PATCH 10/11] redis: upgrade 6.2.13 -> 6.2.14

2024-01-16 Thread Armin Kuster
From: Changqing Li Upgrade urgency SECURITY: See security fixes below. Security fixes: (CVE-2023-45145) The wrong order of listen(2) and chmod(2) calls creates a race condition that can be used by another process to bypass desired Unix socket permissions on startup. Signed-off-by: Changqing Li

[oe] [meta-oe][nanbield][PATCH 09/11] samba: upgrade 4.18.8 -> 4.18.9

2024-01-16 Thread Armin Kuster
From: Yi Zhao This is the latest stable release of the Samba 4.18 release series. It contains the security-relevant bugfix CVE-2018-14628: Wrong ntSecurityDescriptor values for "CN=Deleted Objects" allow read of object tombstones over LDAP (Administrator action required!) https:/

[oe] [meta-oe][nanbield][PATCH 08/11] postgresql: upgrade 15.4 -> 15.5

2024-01-16 Thread Armin Kuster
From: Changqing Li Refer https://www.postgresql.org/docs/release/15.5/ Signed-off-by: Changqing Li Signed-off-by: Khem Raj (cherry picked from commit bcedf9f99ca683764ef19ab008e042c82da616ff) Signed-off-by: Armin Kuster --- ...-configure.ac-bypass-autoconf-2.69-version-check.patch | 8 --

[oe] [meta-oe][nanbield][PATCH 06/11] webkitgtk3: upgrade 2.42.2 -> 2.42.3

2024-01-16 Thread Armin Kuster
From: Wang Mingyu Changelog: === - Fix flickering while playing videos with DMA-BUF sink. - Fix color picker being triggered in the inspector when typing "tan". - Do not special case the "sans" font family name. - Fix build failure with libxml2 version 2.12.0 due to an API change. -

[oe] [meta-oe][nanbield][PATCH 07/11] webkitgtk3: upgrade 2.42.3 -> 2.42.4

2024-01-16 Thread Armin Kuster
From: Wang Mingyu Signed-off-by: Wang Mingyu Signed-off-by: Khem Raj (cherry picked from commit 466370a087534eded974a1eef2a4431dda6900b3) Signed-off-by: Armin Kuster --- .../webkitgtk/{webkitgtk3_2.42.3.bb => webkitgtk3_2.42.4.bb}| 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rena

[oe] [meta-oe][nanbield][PATCH 05/11] webkitgtk3: upgrade 2.42.1 -> 2.42.2

2024-01-16 Thread Armin Kuster
From: Wang Mingyu Changelog: == - Bump Safari version in user agent header. - Fix CSP regression that broke Unity WebGL applications. - Fix the build with GBM disabled. - Fix several crashes and rendering issues. Signed-off-by: Wang Mingyu Signed-off-by: Khem Raj (cherry picked from co

[oe] [meta-oe][nanbield][PATCH 04/11] webkitgtk3: upgrade 2.42.0 -> 2.42.1

2024-01-16 Thread Armin Kuster
From: Khem Raj Signed-off-by: Khem Raj (cherry picked from commit 32bae13bb8b8edf6b4af12ee7057493101c5fb14) Signed-off-by: Armin Kuster --- .../webkitgtk/{webkitgtk3_2.42.0.bb => webkitgtk3_2.42.1.bb}| 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename meta-oe/recipes-support/webk

[oe] [meta-oe][nanbield][PATCH 01/11] strongswan: upgrade 5.9.12 -> 5.9.13

2024-01-16 Thread Armin Kuster
From: Wang Mingyu Changelog: - Fixes a regression with handling OCSP error responses and adds a new option to specify the length of nonces in OCSP requests. Also adds some other improvements for OCSP handling and fuzzers for OCSP requests/responses. Signed-off-by: Wang Mingyu Signed-off-

[oe] [meta-oe][nanbield][PATCH 02/11] nginx: upgrade 1.25.2 -> 1.25.3

2024-01-16 Thread Armin Kuster
From: Meenali Gupta Changelog: === https://nginx.org/en/CHANGES *) Change: improved detection of misbehaving clients when using HTTP/2. *) Feature: startup speedup when using a large number of locations. Thanks to Yusuke Nojima. *) Bugfix: a segmentation fault might occur in a w

[oe] [meta-oe][nanbield][PATCH 03/11] mariadb: Upgrade to 10.11.6

2024-01-16 Thread Armin Kuster
From: Mingli Yu Remove one patch as the logic is included in the new version [1] [2]. Upgrade mariadb to 10.11.6 [3]. [1] https://github.com/MariaDB/server/commit/f4cec369a392c8a6056207012992ad4a5639965a [2] https://github.com/MariaDB/server/commit/cd5808eb8da13c5626d4bdeb452cef6ada29cb1d [3]

[oe] [meta-oe][PATCH] opencl-icd: Rename rdepends to virtual-opencl-icd

2024-01-16 Thread Khem Raj
This helps in fending off the build time QA error WARNING: /mnt/b/yoe/master/sources/meta-openembedded/meta-oe/recipes-core/opencl/opencl-icd-loader_2023.12.14.bb: RPROVIDES is set to v irtual/opencl-icd, the substring 'virtual/' holds no meaning in this context. It is suggested to use the 'vir

Re: [oe] Dunfell merge request: Jan 16th

2024-01-16 Thread Khem Raj
merged now. thanks Armin On Tue, Jan 16, 2024 at 4:34 AM akuster808 wrote: > > The following changes since commit fc632d5bb0936e91e4e0191547b9aa8ca47b4ffe: > >wireshark: fix CVE-2022-4345 multiple (BPv6, OpenFlow, and Kafka > protocol) dissector infinite loops (2023-12-17 15:36:42 -0500) > >

[oe] [meta-multimedia][PATCH] pipewire: update 1.0.0 -> 1.0.1

2024-01-16 Thread Markus Volk
This is a bugfix release that is API and ABI compatible with previous 1.0.x releases. - Work around the buggy ALSA backend in libcanberra by forcing the pulse backend in module-x11-bell. - Fix a race in the device info updates in pulse-server. - Fix timing and rate matching in ALSA seque

Re: [oe] [PATCH 18/23] mongodb: skip until python 3.12 fixes are available.

2024-01-16 Thread Yoann Congal
Hello, Le 16/01/2024 à 10:30, Alexander Kanavin a écrit : > On Tue, 16 Jan 2024 at 10:24, Joao Marcos Costa > wrote: >> Would you have any updates on this porting? > > I wouldn't and I don't plan to fix it. Mongodb is under a proprietary > license that OSI rejected and thus in my opinion doesn't

[oe] [meta-oe][PATCH] packagegroup-meta-oe: remove mongodb

2024-01-16 Thread Yoann Congal
mongodb is skipped pending a port to Python 3.12. But there is no plan to actually do this port so, in the meantime, remove mongodb from packagegroup-meta-oe to avoid an unbuildable dependency. This patch may be reverted once mongodb has been ported to Python 3.12. [0]: https://lists.openembedded

Re: [oe] [meta-python][PATCH] python3-pytest-cov: add missing python3-coverage dependency

2024-01-16 Thread Yoann Congal
Le 08/01/2024 à 03:47, Khem Raj a écrit : > > On Wed, 03 Jan 2024 10:56:02 +0100, Richard Leitner wrote: >> As reported by "pip3 check" python3-pytest-cov depends on >> python3-coverage: >> >> $ pip3 check >> pytest-cov 4.1.0 requires coverage, which is not installed. >> >> This patch fi

Re: [oe] [PATCH 18/23] mongodb: skip until python 3.12 fixes are available.

2024-01-16 Thread Joao Marcos Costa via lists.openembedded.org
Hello Alexander, On 12/31/23 13:23, Alexander Kanavin wrote: Signed-off-by: Alexander Kanavin --- .../meta-python/recipes-dbs/mongodb/mongodb_git.bb | 2 ++ 1 file changed, 2 insertions(+) diff --git a/meta-oe/dynamic-layers/meta-python/recipes-dbs/mongodb/mongodb_git.bb b/me

[oe][meta-oe][PATCH] nginx: add http sub module feature

2024-01-16 Thread Michael Haener via lists.openembedded.org
From: Michael Haener Providing the http sub module feature. The module works as a filter which replaces a specific character string in a response with another character string. Signed-off-by: Michael Haener --- meta-webserver/recipes-httpd/nginx/nginx.inc | 1 + 1 file changed, 1 insertion(+)

[oe][meta-networking][kirkstone][PATCH 1/1] samba: fix CVE-2018-14628

2024-01-16 Thread Polampalli, Archana via lists.openembedded.org
From: Archana Polampalli An information leak vulnerability was discovered in Samba's LDAP server. Due to missing access control checks, an authenticated but unprivileged attacker could discover the names and preserved attributes of deleted objects in the LDAP store. Signed-off-by: Archana Polamp

[oe] Dunfell merge request: Jan 16th

2024-01-16 Thread Armin Kuster
The following changes since commit fc632d5bb0936e91e4e0191547b9aa8ca47b4ffe:   wireshark: fix CVE-2022-4345 multiple (BPv6, OpenFlow, and Kafka protocol) dissector infinite loops (2023-12-17 15:36:42 -0500) are available in the Git repository at:   https://git.openembedded.org/meta-openembedd

Re: [oe] [PATCH 18/23] mongodb: skip until python 3.12 fixes are available.

2024-01-16 Thread Alexander Kanavin
On Tue, 16 Jan 2024 at 10:24, Joao Marcos Costa wrote: > Would you have any updates on this porting? I wouldn't and I don't plan to fix it. Mongodb is under a proprietary license that OSI rejected and thus in my opinion doesn't belong in meta-oe at all. If it's important to you, then you need to