<feed xmlns='http://www.w3.org/2005/Atom'>
<title>BMC/OpenBmc/openbmc.git/poky/bitbake/lib/bb/tests/support/httpserver.py, branch scarthgap</title>
<subtitle>OpenBMC Distribution (mirror)</subtitle>
<id>https://git.radix-linux.su/BMC/OpenBmc/openbmc.git/atom?h=scarthgap</id>
<link rel='self' href='https://git.radix-linux.su/BMC/OpenBmc/openbmc.git/atom?h=scarthgap'/>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/BMC/OpenBmc/openbmc.git/'/>
<updated>2025-11-03T19:31:57+00:00</updated>
<entry>
<title>subtree updates (scarthgap 11/3/2025)</title>
<updated>2025-11-03T19:31:57+00:00</updated>
<author>
<name>Andrew Geissler</name>
<email>geissonator@yahoo.com</email>
</author>
<published>2025-11-03T16:09:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/BMC/OpenBmc/openbmc.git/commit/?id=6cb7f76381dbeb50bbf963f9192344f02d985637'/>
<id>urn:sha1:6cb7f76381dbeb50bbf963f9192344f02d985637</id>
<content type='text'>
poky: ca27724b44..c4a4df3e72:
  Adam Blank (3):
        kernel-dev/common.rst: fix the in-tree defconfig description
        ref-manual/variables.rst: fix the description of KBUILD_DEFCONFIG
        ref-manual/variables.rst: fix the description of STAGING_DIR

  Aditya Tayade (1):
        e2fsprogs: removed 'sed -u' option

  Adrian Freihofer (15):
        kernel-fitimage: fix intentation
        kernel-fitimage: fix external dtb check
        devtool: modify support debug-builds
        devtool: ide-sdk sort cmake preset
        devtool: ide-sdk recommend DEBUG_BUILD
        oe-selftest: devtool ide-sdk use modify debug-build
        devtool: ide-sdk remove the plugin from eSDK installer
        uboot-config: fix devtool modify with kernel-fitimage
        sdk-manual: extensible.rst: devtool ide-sdk improve
        sdk-manual: extensible.rst: update devtool ide-sdk
        ref-manual: kernel-fitimage.bbclass does not use SPL_SIGN_KEYNAME
        llvm: update from 18.1.6 to 18.1.8
        llvm: fix build with gcc-15
        expect: Revert "expect-native: fix do_compile failure with gcc-14"
        expect: fix native build with GCC 15

  Alban Bedel (1):
        bind: Fix build with the `httpstats` package config enabled

  Aleksandar Nikolic (12):
        cve-check: Introduce CVE_CHECK_MANIFEST_JSON_SUFFIX
        install-buildtools: remove md5 checksum validation
        install-buildtools: fix "test installation" step
        install-buildtools: update base-url, release and installer version
        ref-manual: introduce CVE_CHECK_REPORT_PATCHED variable
        scripts/install-buildtools: Update to 5.0.5
        scripts/install-buildtools: Update to 5.0.6
        scripts/install-buildtools: Update to 5.0.7
        scripts/install-buildtools: Update to 5.0.9
        scripts/install-buildtools: Update to 5.0.10
        scripts/install-buildtools: Update to 5.0.11
        scripts/install-buildtools: Update to 5.0.12

  Alessio Cascone (1):
        tzcode-native: Fix compiler setting from 2023d version

  Alexander Kanavin (29):
        mesa: remove obsolete 0001-meson.build-check-for-all-linux-host_os-combinations.patch
        kexec-tools: submit 0003-kexec-ARM-Fix-add_buffer_phys_virt-align-issue.patch upstream
        vorbis: mark patch as Inactive-Upstream
        grub: mark grub-module-explicitly-keeps-symbole-.module_license.patch as a workaround
        perl: submit the rest of determinism.patch upstream
        iptables: submit 0001-configure-Add-option-to-enable-disable-libnfnetlink.patch upstream
        xserver-xorg: upgrade 21.1.12 -&gt; 21.1.13
        mobile-broadband-provider-info: upgrade 20230416 -&gt; 20240407
        python3: submit deterministic_imports.patch upstream as a ticket
        glib-networking: submit eagain.patch upstream
        glslang: mark 0001-generate-glslang-pkg-config.patch as Inappropriate
        tcp-wrappers: mark all patches as inactive-upstream
        automake: mark new_rt_path_for_test-driver.patch as Inappropriate
        settings-daemon: submit addsoundkeys.patch upstream and update to a revision that has it
        dpkg: mark patches adding custom non-debian architectures as inappropriate for upstream
        libacpi: mark patches as inactive-upstream
        apr: drop 0007-explicitly-link-libapr-against-phtread-to-make-gold-.patch
        pulseaudio, desktop-file-utils: correct freedesktop.org -&gt; www.freedesktop.org SRC_URI
        sysvinit: take release tarballs from github
        package_rpm: use zstd's default compression level
        package_rpm: restrict rpm to 4 threads
        rust: add reproducibility patch to eliminate host leakage
        rust: build the default set of tools
        rust: use rust-snapshot binaries only in rust-native
        rust: correctly link rust-snapshot into build/stage0
        pkg-config-native: pick additional search paths from $EXTRA_NATIVE_PKGCONFIG_PATH
        selftest/rust: correctly form the PATH environment variable
        perlcross: update 1.5.2 -&gt; 1.6
        mtools: upgrade 4.0.43 -&gt; 4.0.44

  Alexis Cellier (1):
        systemd: add libpcre2 as RRECOMMENDS if pcre2 is enabled

  Alexis Lothoré (3):
        oeqa/utils/postactions: transfer whole archive over ssh instead of doing individual copies
        oeqa/postactions: fix exception handling
        oeqa/ssh: allow to retrieve raw, unformatted ouput

  Alon Bar-Lev (1):
        module.bbclass: add KBUILD_EXTRA_SYMBOLS to install

  Alper Ak (2):
        ref-manual/variables.rst: document INHIBIT_DEFAULT_RUST_DEPS
        ref-manual/variables.rst: document INHIBIT_UPDATERCD_BBCLASS

  Anders Heimer (1):
        libpam: mark CVE-2025-6018 as not applicable

  Andrew Fernandes (1):
        gtk+: add missing libdrm dependency

  Andrew Kreimer (1):
        manuals: remove repeated word

  Antonin Godard (77):
        ref-manual: add missing CVE_CHECK manifest variables
        ref-manual: add missing TESTIMAGE_FAILED_QA_ARTIFACTS
        ref-manual: add missing EXTERNAL_KERNEL_DEVICETREE variable
        ref-manual: add missing OPKGBUILDCMD variable
        ref-manual: merge patch-status-* to patch-status
        ref-manual: structure.rst: document missing tmp/ dirs
        overview-manual: concepts: add details on package splitting
        ref-manual: faq: add q&amp;a on class appends
        ref-manual: release-process: update releases.svg
        ref-manual: release-process: refresh the current LTS releases
        ref-manual: release-process: update releases.svg with month after "Current"
        ref-manual: release-process: add a reference to the doc's release
        ref-manual: devtool-reference: refresh example outputs
        ref-manual: devtool-reference: document missing commands
        conf.py: rename :cve: role to :cve_nist:
        doc: Makefile: remove inkscape, replace by rsvg-convert
        doc: Makefile: add support for xelatex
        doc: add a download page for epub and pdf
        sphinx-static/switchers.js.in: do not refer to URL_ROOT anymore
        conf.py: add a bitbake_git extlink
        dev-manual: document how to provide confs from layer.conf
        dev-manual: bblock: use warning block instead of attention
        standards.md: add a section on admonitions
        ref-manual: classes: fix bin_package description
        Gather dependencies in poky.yaml.in
        poky.yaml.in: add missing locales dependency
        poky.yaml.in: replace inkscape dependency by librsvg2-bin
        system-requirements: add fedora 39 to supported distros
        system-requirements: update list of supported distros
        system-requirements.rst: add dependencies for pdf builds
        Update the documentation for SRCPV
        poky.conf: add new tested distros
        ref-manual/qa-checks: remove patch-status-core/patch-status-noncore
        contributor-guide/submit-changes.rst: suggest to remove the git signature
        ref-manual/devtool-reference: add warning note on deploy-target and shared objects
        SSTATE_MIRRORS/SOURCE_MIRROR_URL: add instructions for mirror authentication
        ref-manual/packages: move ptest section to the test-manual
        ref-manual: move runtime-testing section to the test-manual
        Update autobuilder URLs to valkyrie
        test-manual/reproducible-builds: fix reproducible links
        test-manual/ptest: link to common framework ptest classes
        dev-manual/building: document the initramfs-framework recipe
        ref-manual/faq: add q&amp;a on systemd as default
        contributor-guide/submit-changes: add policy on AI generated code
        Add favicon for the documentation html
        overview-manual/concepts: remove PR from the build dir list
        ref-manual/variables.rst: WATCHDOG_TIMEOUT: fix recipe name
        ref-manual/variables.rst: document autotools class related variables
        documentation/conf.py: define a manpage url
        ref-manual/variables.rst: add manpage links for toolchain variables
        ref-manual/variables.rst: add missing documentation for BUILD_* variables
        ref-manual/variables.rst: document missing SDK_*_ARCH variables
        ref-manual/variables.rst: document HOST_*_ARCH variables
        ref-manual/variables.rst: HOST_CC_ARCH: fix wrong SDK reference
        ref-manual/variables.rst: improve the PKGV documentation
        poky.yaml: introduce DISTRO_LATEST_TAG
        Fix dead links that use the DISTRO macro
        dev-manual/sbom.rst: fix wrong build outputs
        test-manual/intro: remove Buildbot version used
        ref-manual/release-process: update releases.svg
        overview-manual/concepts.rst: fix sayhello hardcoded bindir
        ref-manual/system-requirements.rst: update supported distributions
        ref-manual/variables.rst: document the FIT_CONF_PREFIX variable
        ref-manual/variables.rst: document SPL_DTB_BINARY
        ref-manual/classes.rst: document the testexport class
        dev-manual/security-subjects.rst: update mailing lists
        test-manual/yocto-project-compatible.rst: fix a typo
        ref-manual/structure: document the auto.conf file
        ref-manual/variables.rst: document UNINATIVE_URL/CHECKSUM
        ref-manual/classes.rst: extend the uninative class documentation
        ref-manual/classes,variables: document the CCACHE_DISABLE variable
        ref-manual/variables.rst: document the REQUIRED_MACHINE_FEATURES variable
        ref-manual/variables.rst: document the REQUIRED_COMBINED_FEATURES variable
        ref-manual/variables.rst: document the REQUIRED_IMAGE_FEATURES variable
        ref-manual/variables.rst: document the USE_NLS variable
        ref-manual/classes.rst: gettext: extend the documentation of the class
        ref-manual/classes.rst: document the relative_symlinks class

  Anuj Mittal (1):
        sqlite3: upgrade 3.45.1 -&gt; 3.45.3

  Archana Polampalli (51):
        less: fix CVE-2024-32487
        ofono: fix CVE-2023-2794
        ffmpeg: fix CVE-2023-49502
        ffmpeg: fix CVE-2024-31578
        ffmpeg: fix CVE-2024-31582
        ffmpeg: fix CVE-2023-50008
        ffmpeg: fix CVE-2024-32230
        qemu: fix CVE-2024-7409
        ffmpeg: fix CVE-2023-49501
        ffmpeg: fix CVE-2024-28661
        ffmpeg: fix CVE-2023-50007
        ffmpeg: fix CVE-2023-49528
        ffmpeg: fix CVE-2024-7055
        ffmpeg: fix CVE-2024-35366
        ffmpeg: fix CVE-2024-35367
        ffmpeg: fix CVE-2024-35368
        rsync: fix CVE-2024-12084
        rsync: fix CVE-2024-12085
        rsync: fix CVE-2024-12086
        rsync: fix CVE-2024-12087
        rsync: fix CVE-2024-12088
        rsync: fix CVE-2024-12747
        ffmpeg: fix CVE-2024-35365
        ffmpeg: fix CVE-2024-36613
        ffmpeg: fix CVE-2024-36616
        ffmpeg: fix CVE-2024-36617
        ffmpeg: fix CVE-2024-36618
        ffmpeg: fix CVE-2024-36619
        ffmpeg: fix CVE-2024-35369
        gstreamer1.0-rtsp-server: fix CVE-2024-44331
        ffmpeg: fix CVE-2025-25473
        ffmpeg: fix CVE-2025-25471
        ffmpeg: fix CVE-2025-22921
        ffmpeg: fix CVE-2025-0518
        ffmpeg: Correct the CVE ID to fix CVE-2025-22919
        openssh: fix CVE-2025-26465
        go: fix CVE-2025-22870
        ghostscript: upgrade 10.04.0 -&gt; 10.05.0
        perlcross: 1.6 -&gt; 1.6.2
        perl: upgrade 5.38.2 -&gt; 5.38.4
        xwayland: fix CVE-2025-49175
        xwayland: fix CVE-2025-49176
        xwayland: fix CVE-2025-49177
        xwayland: fix CVE-2025-49178
        xwayland: fix CVE-2025-49179
        xwayland: fix CVE-2025-49180
        gdk-pixbuf: fix CVE-2025-7345
        go: fix CVE-2025-4674
        ffmpeg: upgrade 6.1.2 -&gt; 6.1.3
        ffmpeg: fix CVE-2025-1594
        go: fix CVE-2025-47906

  Ashish Sharma (11):
        bind: Upgrade 9.18.25 -&gt; 9.18.28
        ruby: Backport fix for CVE-2024-27282
        ruby: Fix CVE-2025-27219
        binutils: Fix CVE-2025-1176
        binutils: patch CVE-2025-1178 &amp; CVE-2024-57360
        binutils: patch CVE-2025-1181
        binutils: patch CVE-2025-1182
        libsoup: patch CVE-2025-46420
        libsoup-2.4: Fix CVE-2025-46420
        libsoup: patch CVE-2025-4476
        screen: patch CVE-2025-46805

  AshishKumar Mishra (2):
        systemd: backport fix for handle USE_NLS from master
        p11-kit: backport fix for handle USE_NLS from master

  Barne Carstensen (1):
        test-manual: update runtime-testing Exporting Tests section

  Bartosz Golaszewski (1):
        linux-firmware: add a package for ath12k firmware

  Benjamin Szőke (2):
        archiver.bbclass: Fix work-shared checking for kernel recipes
        mc: fix source URL

  Bin Lan (1):
        lttng-ust: backport patch to fix cmake-multiple-shared-libraries build error

  Bruce Ashfield (54):
        linux-yocto/6.6: update to v6.6.36
        linux-yocto/6.6: update to v6.6.38
        linux-yocto/6.6: update to v6.6.40
        linux-yocto/6.6: update to v6.6.43
        kernel-devsrc: remove 64 bit vdso cmd files
        linux-yocto/6.6: update to v6.6.44
        linux-yocto/6.6: update to v6.6.45
        linux-yocto/6.6: fix genericarm64 config warning
        linux-yocto/6.6: update to v6.6.47
        linux-yocto/6.6: update to v6.6.49
        linux-yocto/6.6: update to v6.6.50
        linux-yocto/6.6: update to v6.6.52
        linux-yocto/6.6: update to v6.6.54
        linux-yocto/6.6: update to v6.6.56
        linux-yocto/6.6: update to v6.6.58
        linux-yocto/6.6: genericarm64.cfg: enable CONFIG_DMA_CMA
        linux-yocto/6.6: update to v6.6.59
        linux-yocto/6.6: update to v6.6.60
        linux-yocto/6.6: update to v6.6.62
        linux-yocto/6.6: bsp/genericarm64: disable ARM64_SME
        linux-yocto/6.6: update to v6.6.63
        linux-yocto/6.6: update to v6.6.64
        linux-yocto/6.6: update to v6.6.66
        linux-yocto/6.6: update to v6.6.69
        linux-yocto/6.6: update to v6.6.75
        linux-yocto/6.6: update to v6.6.77
        linux-yocto/6.6: update to v6.6.78
        linux-yocto/6.6: update to v6.6.80
        linux-yocto/6.6: update to v6.6.82
        linux-yocto/6.6: update to v6.6.83
        linux-yocto/6.6: update to v6.6.84
        linux-yocto/6.6: update to v6.6.85
        linux-yocto/6.6: fix beaglebone ethernet
        linux-yocto/6.6: update to v6.6.86
        linux-yocto/6.6: update to v6.6.87
        linux-yocto/6.6: update to v6.6.88
        linux-yocto/6.6: update to v6.6.89
        linux-yocto/6.6: update to v6.6.91
        linux-yocto/6.6: update to v6.6.92
        linux-yocto/6.6: update to v6.6.93
        linux-yocto/6.6: update to v6.6.94
        linux-yocto/6.6: update to v6.6.96
        linux-yocto/6.6: update to v6.6.98
        linux-yocto/6.6: update to v6.6.99
        linux-yocto/6.6: update to v6.6.100
        linux-yocto/6.6: update to v6.6.101
        linux-yocto/6.6: update to v6.6.102
        linux-yocto/6.6: update to v6.6.103
        linux-yocto/6.6: update to v6.6.106
        linux-yocto/6.6: update to v6.6.107
        linux-yocto/6.6: update to v6.6.108
        linux-yocto/6.6: update to v6.6.109
        linux-yocto/6.6: update to v6.6.110
        linux-yocto/6.6: update to v6.6.111

  Carlos Alberto Lopez Perez (1):
        icu: Backport patch to fix build issues with long paths (&gt;512 chars)

  Carlos Sánchez de La Lama (1):
        ref-manual: clarify KCONFIG_MODE default behaviour

  Catalin Popescu (1):
        Revert "bluez5: remove configuration files from install task"

  Changqing Li (48):
        apt-native: don't let dpkg overwrite files by default
        apt: runtime error: filename too long (tmpdir length)
        webkitgtk: fix do_configure error on beaglebone-yocto
        webkitgtk: fix do_compile errors on beaglebone-yocto
        vulkan-samples: fix do_compile error when -Og enabled
        multilib.conf: remove appending to PKG_CONFIG_PATH
        gettext: fix a parallel build issue
        pixman: fixing inline failure with -Og
        rt-tests: rt_bmark.py: fix TypeError
        curl: correct the PACKAGECONFIG for native/nativesdk
        libpng: update SRC_URI
        expect-native: fix do_compile failure with gcc-14
        libcap-ng: update SRC_URI
        sysvinit: backport patch for fixing one issue of pidof
        acpica: fix CVE-2024-24856
        libsoup: fix CVE-2024-52530, CVE-2024-52531
        rxvt-unicode.inc: disable the terminfo installation by setting TIC to :
        sanity.bbclass: skip check_userns for non-local uid
        systemd: enable create-log-dirs
        babeltrace: extend to nativesdk
        babeltrace2: extend to nativesdk
        patch.py: set commituser and commitemail for addNote
        initscripts: add function log_success_msg/log_failure_msg/log_warning_msg
        buildtools-tarball: move setting of envvars to respective envfile
        buildtools-tarball: add envvars into BB_ENV_PASSTHROUGH_ADDITIONS
        buildtools-tarball: Make buildtools respects host CA certificates
        libsoup: fix CVE-2025-32908
        libsoup: fix CVE-2025-32907
        libsoup-2.4: fix CVE-2025-32907
        libsoup-2.4: fix do_compile failure
        libsoup-2.4: fix CVE-2025-32053
        libsoup: fix CVE-2025-32053
        libsoup-2.4: fix CVE-2025-32052
        libsoup: fix CVE-2025-32052
        libsoup: fix CVE-2025-32051
        libsoup-2.4: fix CVE-2025-32050
        libsoup: fix CVE-2025-32050
        libsoup-2.4: fix CVE-2025-46421
        libsoup: fix CVE-2025-46421
        libsoup-2.4: fix CVE-2025-4948
        libsoup: fix CVE-2025-4948
        libsoup-2.4: fix CVE-2025-4476
        libsoup-2.4: fix CVE-2025-2784
        libsoup: fix CVE-2025-2784
        icu: fix CVE-2025-5222
        libsoup-2.4: refresh CVE-2025-4969.patch
        libsoup-2.4: fix CVE-2025-4945
        libsoup: fix CVE-2025-4945

  Chen Qi (8):
        libnl: change HOMEPAGE
        qemu: back port patches to fix riscv64 build failure
        toolchain-shar-extract.sh: exit when post-relocate-setup.sh fails
        libgfortran: fix buildpath QA issue
        bitbake: data_smart.py: remove unnecessary ? from __expand_var_regexp__
        bitbake: data_smart.py: simple clean up
        bitbake: data_smart.py: clear expand_cache in _setvar_update_overridevars
        coreutils: fix CVE-2025-5278

  Chris Laplante (6):
        bitbake: persist_data: close connection in SQLTable __exit__
        bitbake: fetch2: use persist_data context managers
        bitbake: ui/knotty: print log paths for failed tasks in summary
        bitbake: ui/knotty: respect NO_COLOR &amp; check for tty; rename print_hyperlink =&gt; format_hyperlink
        bitbake: cooker: Make cooker 'skiplist' per-multiconfig/mc
        util-linux: use ${B} instead of ${WORKDIR}/build, to fix building under devtool

  Christian Taedcke (1):
        iptables: fix memory corruption when parsing nft rules

  Christos Gavros (2):
        ref-manual/variables.rst: document the IMAGE_ROOTFS_MAXSIZE variable
        ref-manual/variables.rst: document the INITRAMFS_MAXSIZE variable

  Claus Stovgaard (1):
        lib/oe/package-manager: skip processing installed-pkgs with empty globs

  Clayton Casciato (1):
        uboot-sign: fix concat_dtb arguments

  Colin McAllister (2):
        udev-extraconf: Add collect flag to mount
        busybox: Fix cut with "-s" flag

  Colin Pinnell McAllister (1):
        ffmpeg: fix CVE-2025-1373

  Daniel Semkowicz (2):
        os-release: Fix VERSION_CODENAME in case it is empty
        gstreamer1.0-plugins-bad: fix buffer allocation fail for v4l2codecs

  Daniel Turull (4):
        package: export debugsources in PKGDESTWORK as json
        spdx: add option to include only compiled sources
        xz: ignore CVE-2024-47611
        libxml2: ignore CVE-2025-8732

  David Nyström (3):
        openssh: fix CVE-2025-61985
        openssh: fix CVE-2025-61984
        lz4: fix CVE-2025-62813

  Deepak Rathore (1):
        default-distrovars.inc: Fix CONNECTIVITY_CHECK_URIS redirect issue

  Deepesh Varatharajan (13):
        binutils: stable 2.42 branch updates
        glibc: stable 2.39 branch updates.
        binutils: stable 2.42 branch update
        binutils: Fix CVE-2025-0840
        glibc: stable 2.39 branch updates
        binutils: stable 2.42 branch updates
        binutils: Fix CVE-2025-5245
        binutils: Fix CVE-2025-5244
        gcc: Upgrade to GCC 13.4
        binutils: stable 2.42 branch updates
        binutils: Fix CVE-2025-7545
        glibc: stable 2.39 branch updates
        glibc: stable 2.39 branch updates

  Deepthi Hemraj (5):
        binutils: stable 2.42 branch updates
        glibc: stable 2.39 branch updates
        rust-llvm: Fix CVE-2024-0151
        binutils: stable 2.42 branch update
        glibc: stable 2.39 branch updates

  Denys Dmytriyenko (3):
        weston: upgrade 13.0.0 -&gt; 13.0.1
        gcc: unify cleanup of include-fixed, apply to cross-canadian
        nativesdk-libtool: sanitize the script, remove buildpaths

  Divya Chellam (16):
        libpam: fix CVE-2024-10041
        libxml2: Upgrade 2.12.8 -&gt; 2.12.9
        wget: fix CVE-2024-10524
        vim: Upgrade 9.1.0764 -&gt; 9.1.1043
        vim: Upgrade 9.1.1043 -&gt; 9.1.1115
        ruby: fix CVE-2025-27220
        ruby: fix CVE-2025-27221
        screen: fix CVE-2025-46802
        screen: fix CVE-2025-46804
        libarchive: fix CVE-2025-5914
        libarchive: fix CVE-2025-5915
        libarchive: fix CVE-2025-5916
        libarchive: fix CVE-2025-5917
        libarchive: fix CVE-2025-5918
        wpa-supplicant: fix CVE-2022-37660
        vim: upgrade 9.1.1652 -&gt; 9.1.1683

  Divyanshu Rathore (1):
        ffmpeg: upgrade 6.1.1 -&gt; 6.1.2

  Dixit Parmar (1):
        ref-manual: document KERNEL_SPLIT_MODULES variable

  Dmitry Baryshkov (1):
        xserver-xorg: fix CVE-2023-5574 status

  Emil Kronborg (3):
        insane.bbclass: remove skipping of cross-compiled packages
        insane.bbclass: fix HOST_ variable names
        insane.bbclass: remove leftover variables and comment

  Enrico Jörns (6):
        wic: engine.py: use raw string for escape sequence
        wic: bootimg-efi: fix error handling
        bitbake: bitbake-diffsigs: fix handling when finding only a single sigfile
        ref-manual/variables.rst: update ROOT_HOME documentation
        conf.py: tweak SearchEnglish to be hyphen-friendly
        conf.py: improve SearchEnglish to handle terms with dots

  Erik Lindsten (1):
        overview-manual/yp-intro.rst: fix broken link to article

  Esben Haabendal (3):
        pulseaudio: fix webrtc audio depdency
        files: Amend overlayfs unit descriptions with path information
        files: overlayfs-create-dirs: Improve mount unit dependency

  Etienne Cordonnier (6):
        oeqa/runtime: fix regression in minidebuginfo test
        oeqa/runtime: make minidebuginfo test work with coreutils
        oeqa/runtime: fix race-condition in minidebuginfo test
        python3-setuptools-scm: respect GIT_CEILING_DIRECTORIES
        ref-manual/variables.rst: document SSTATE_SKIP_CREATION
        bitbake: gcp.py: remove slow calls to gsutil stat

  Fabio Berton (2):
        ccache.conf: Add include_file_ctime to sloppiness
        linux-libc-headers: Fix invalid conversion in cn_proc.h

  Florian Kreutzer (1):
        dropbear: backport fix for concurrent channel open/close

  Gassner, Tobias.ext (1):
        rootfs: Ensure run-postinsts is not uninstalled for read-only-rootfs-delayed-postinsts

  Gauthier HADERER (1):
        populate_sdk_ext.bclass: make sure OECORE_NATIVE_SYSROOT is exported.

  Guocai He (2):
        tcf-agent: correct the SRC_URI
        minicom: correct the SRC_URI

  Guénaël Muller (1):
        ref-manual: use standardized method accross both ubuntu and debian for locale install

  Guðni Már Gilbert (15):
        pam: Fix for CVE-2024-22365
        python3-attrs: drop python3-ctypes from RDEPENDS
        bluez5: remove redundant patch for MAX_INPUT
        shared-mime-info: drop itstool-native from DEPENDS
        libpam: drop cracklib from DEPENDS
        systemd: drop intltool-native from DEPENDS
        systemd-boot: drop intltool-native from DEPENDS
        python3-poetry-core: drop python3-six from RDEPENDS
        dnf: drop python3-iniparse from DEPENDS and RDEPENDS
        python3: upgrade 3.12.6 -&gt; 3.12.7
        python3: upgrade 3.12.7 -&gt; 3.12.8
        systemd: upgrade 255.13 -&gt; 255.17
        systemd: upgrade 255.17 -&gt; 255.18
        bluez5: add missing tools to noinst-tools package
        systemd: upgrade 255.18 -&gt; 255.21

  Gyorgy Sarvari (1):
        conf/bitbake.conf: use gnu mirror instead of main server

  Haixiao Yan (2):
        glibc: Add single-threaded fast path to rand()
        buildtools-tarball: fix unbound variable issues under 'set -u'

  Harish Sadineni (7):
        binutils: Add missing perl modules to RDEPENDS for nativesdk variant
        rust-target-config: Fix TARGET_C_INT_WIDTH with correct size
        rust: fix for rust multilib sdk configuration
        rust: remove redundant cargo config file
        oeqa/sdk/context: fix for gtk3 test failure during do_testsdk
        binutils: Fix CVE-2025-1179
        binutils: set CVE_STATUS for CVE-2025-1180

  Hiago De Franco (2):
        weston: backport patch to allow neatvnc &lt; v0.9.0
        bluez5: backport patch to fix address type when loading keys

  Hitendra Prajapati (24):
        ghostscript: upgrade 10.02.1 -&gt; 10.03.1
        ruby: fix CVE-2024-27281
        vte: fix CVE-2024-37535
        curl: fix CVE-2024-8096
        webkitgtk: upgrade 2.44.1 -&gt; 2.44.3
        cups: Backport fix for CVE-2024-47175
        libarchive: fix CVE-2024-48957 &amp; CVE-2024-48958
        libsoup: fix CVE-2024-52532
        ghostscript: upgrade 10.03.1 -&gt; 10.04.0
        libsndfile: fix CVE-2024-50612
        ofono: Fix multiple CVEs
        libcap: fix CVE-2025-1390
        elfutils: Fix multiple CVEs
        go: fix CVE-2025-22871
        libsoup-3.4.4: Fix CVE-2025-4969
        libsoup-2.4: Fix CVE-2025-4969
        libxml2: fix CVE-2025-6021
        libxml2: fix CVE-2025-49794 &amp; CVE-2025-49796
        libpam: fix CVE-2025-6020
        gstreamer1.0-plugins-base: fix CVE-2025-47808
        gstreamer1.0-plugins-base: fix CVE-2025-47806
        gstreamer1.0-plugins-good: fix multiple CVEs
        gstreamer1.0-plugins-base: fix CVE-2025-47807
        grub2: mark CVE-2024-2312 as not applicable

  Hongxu Jia (10):
        ovmf: fix CVE-2024-38796
        ovmf: fix CVE-2024-1298
        u-boot: fix CVE-2024-57254
        u-boot: fix CVE-2024-57255
        u-boot: fix CVE-2024-57256
        u-boot: fix CVE-2024-57257
        u-boot: fix CVE-2024-57258
        u-boot: fix CVE-2024-57259
        rpm: keep leading `/' from sed operation
        u-boot: fix CVE-2024-42040

  Igor Opaniuk (1):
        wic: bootimg-efi: Support + symbol in filenames

  Jaeyoon Jung (2):
        makedevs: Fix issue when rootdir of / is given
        makedevs: Fix matching uid/gid

  Jagadeesh Krishnanjanappa (1):
        tune-cortexa32: set tune feature as armv8a

  Jan Vermaete (1):
        sdk: The main in the C example should return an int

  Jeroen Hofstee (2):
        bluez5: make media control a PACKAGECONFIG option
        bluez5: backport a patch to fix btmgmt -i

  Jiaying Song (9):
        liba52: fix do_fetch error
        enchant2: fix do_fetch error
        libxml-parser-perl: fix do_fetch error
        python3-zipp: fix CVE-2024-5569
        subversion: fix CVE-2024-46901
        boost: fix do_fetch error
        binutils: File name too long causing failure to open temporary head file in dlltool
        python3-requests: upgrade 2.32.3 -&gt; 2.32.4
        ruby-ptest : some ptest fixes

  Jinfeng Wang (3):
        tzdata&amp;tzcode-native: upgrade 2024a -&gt; 2024b
        mtools: upgrade 4.0.48 -&gt; 4.0.49
        systemtap: Fix task_work_cancel build

  Joao Marcos Costa (1):
        ref-manual/variables.rst: expand IMAGE_OVERHEAD_FACTOR glossary entry

  Joe Slater (1):
        oe-debuginfod: add option for data storage

  Joerg Schmidt (1):
        bitbake: bblayers/query: Fix using "removeprefix" string method

  Johannes Schneider (1):
        ppp: Revert lock path to /var/lock

  Jon Mason (4):
        oeqa/runtime/ssh: add retry logic and sleeps to allow for slower systems
        oeqa/runtime/ssh: check for all errors at the end
        oeqa/runtime/ssh: increase the number of attempts
        openssh: add backported header file include

  Jonas Gorski (1):
        rootfs-postcommands.bbclass: make opkg status reproducible

  Jookia (1):
        populate_sdk_ext.bbclass: Fix undefined variable error

  Jose Quaresma (7):
        go: upgrade 1.22.4 -&gt; 1.22.5
        oeqa/runtime/scp: requires openssh-sftp-server
        openssh: drop rejected patch fixed in 8.6p1 release
        openssh: systemd sd-notify patch was rejected upstream
        openssh: systemd notification was implemented upstream
        go: upgrade 1.22.5 -&gt; 1.22.6
        bitbake: bitbake: doc/user-manual: Update the BB_HASHSERVE_UPSTREAM

  Joshua Watt (3):
        bitbake: asyncrpc: Use client timeout for websocket open timeout
        bitbake: Remove custom exception backtrace formatting
        bitbake: Use a "fork" multiprocessing context

  João Marcos Costa (1):
        variables.rst: fix LAYERDEPENDS description

  Julien Stephan (5):
        README: add instruction to run Vale on a subset
        documentation: Makefile: add SPHINXLINTDOCS to specify subset to sphinx-lint
        styles: vocabularies: Yocto: add sstate
        ref-manual: variables: add SIGGEN_LOCKEDSIGS* variables
        dev-manual: add bblock documentation

  Jörg Sommer (5):
        classes/kernel: No symlink in postinst without KERNEL_IMAGETYPE_SYMLINK
        doc/features: remove duplicate word in distribution feature ext2
        doc/features: describe distribution feature pni-name
        ptest-runner: Update 2.4.4 -&gt; 2.4.5
        runqemu: Fix detection of -serial parameter

  Kai Kang (3):
        multilib.bbclass: replace deprecated e.data with d
        cmake-qemu.bbclass: fix if criterion
        glibc: fix fortran header file conflict for arm

  Khem Raj (26):
        linux-yocto: Enable team net driver
        systemd.bbclass: Clarify error message
        grub,grub-efi: Remove -mfpmath=sse on x86
        python3: Treat UID/GID overflow as failure
        gawk: Remove References to /usr/local/bin/gawk
        busybox: CVE-2023-42364 and CVE-2023-42365 fixes
        busybox: Add fix for CVE-2023-42366
        gcc: Fix spurious '/' in GLIBC_DYNAMIC_LINKER on microblaze
        gnupg: Document CVE-2022-3219 and mark wontfix
        openssh: Mark CVE-2023-51767 as wont-fix
        libpcre2: Update base uri PhilipHazel -&gt; PCRE2Project
        python3: Drop empty patch
        qemu: Do not define sched_attr with glibc &gt;= 2.41
        e2fsprogs: Fix build failure with gcc 15
        parted: Fix build with GCC 15
        bash: Stick to C17 std
        ncurses: Pin to C17 standard
        unzip: Fix build with GCC-15
        m4: Stick to C17 standard
        gmp: Fix build with GCC15/C23
        gmp: Fix build with older gcc versions
        gdbm: Use C11 standard
        unifdef: Don't use C23 constexpr keyword
        libtirpc: Fix build with gcc-15/C23
        cpio: Pin to use C17 std
        expect: Fix build with GCC 15

  Kirill Yatsenko (1):
        iptables: fix save/restore symlinks with libnftnl PACKAGECONFIG enabled

  Konrad Weihmann (3):
        runqemu: keep generating tap devices
        testimage: fallback for empty IMAGE_LINK_NAME
        testexport: fallback for empty IMAGE_LINK_NAME

  Kyungjik Min (1):
        pulseaudio: Add audio group explicitly

  Lee Chee Yang (24):
        migration-notes: add release notes for 5.0.1
        migration-guides: add release notes for 4.0.19
        migration-guides: add release notes for 5.0.2
        migration-guide: add release notes for 4.0.20
        migration-guides: add release notes for 5.0.3
        migration-guide: add release notes for 4.0.21
        migration-guides: add release notes for 5.0.4
        migration-guide: add release notes for 4.0.22
        migration-guides: add release notes for 5.0.5
        migration-guides: add release notes for 4.0.23
        migration-guides: add release notes for 5.0.6
        migration-guides: add release notes for 4.0.24
        migration-guides: add release notes for 5.0.7
        migration-guides: add release notes for 4.0.25
        migration-guides: add release notes for 5.0.8
        migration-guides: add release notes for 4.0.26
        migration-guides: add release notes for 5.0.9
        migration-guides: add release notes for 4.0.27
        migration-guide: add release notes for 5.0.10
        migration-guides: add release notes for 4.0.28
        migration-guides: add release notes for 5.0.11
        migration-guides: add release notes for 4.0.29
        migration-guides: add release notes for 5.0.12
        migration-guides: add release notes for 4.0.30

  Libo Chen (1):
        runqemu: fix special characters bug

  Louis Rannou (1):
        image_qa: fix error handling

  Macpaul Lin (1):
        linux-firmware: upgrade 20240312 -&gt; 20240909

  Madhu Marri (1):
        qemu 8.2.7: ignore CVE-2023-1386

  Makarios Christakis (1):
        icu: Adjust ICU_DATA_DIR path on big endian targets

  Marco Cavallini (1):
        dev-manual/start.rst: added missing command in Optimize your VHDX file using DiskPart

  Marek Vasut (3):
        u-boot: kernel-fitimage: Fix dependency loop if UBOOT_SIGN_ENABLE and UBOOT_ENV enabled
        base-files: Drop /bin/sh dependency
        u-boot: kernel-fitimage: Restore FIT_SIGN_INDIVIDUAL="1" behavior

  Mark Hatle (9):
        package.py: Fix static debuginfo split
        package.py: Fix static library processing
        selftest-hardlink: Add additional test cases
        create-spdx-*: Support multilibs via SPDX_MULTILIB_SSTATE_ARCHS
        oeqa sdk cases: Skip SDK test cases when TCLIBC is newlib
        create-sdpx-2.2.bbclass: Switch from exists to isfile checking debugsrc
        populate_sdk_ext: write_local_conf add shutil import
        cve-update-nvd2-native: Handle BB_NO_NETWORK and missing db
        bitbake: bitbake: runqueue: Verify mcdepends are valid

  Markus Volk (3):
        libadwaita: update 1.5.0 -&gt; 1.5.1
        gcc: add a backport patch to fix an issue with tzdata 2024b
        ninja: fix build with python 3.13

  Marta Rybczynska (1):
        vulnerabilities/classes: remove references to cve-check text format

  Martin Jansa (22):
        selftest: add Upstream-Status to .patch files
        libgfortran.inc: fix nativesdk-libgfortran dependencies
        populate_sdk_base: inherit nopackages
        meta-world-pkgdata: Inherit nopackages
        python3-lxml=v5.0.2
        mc: set ac_cv_path_ZIP to avoid buildpaths QA issues
        libpam: re-add missing libgen include
        cairo: fix build with gcc-15 on host
        bash: use -std=gnu17 also for native CFLAGS
        cmake: fix build with gcc-15 on host
        git: fix build with gcc-15 on host
        pkgconfig: fix build with gcc-15
        libgpg-error: fix build with gcc-15
        rust-llvm: fix build with gcc-15
        elfutils: fix build with gcc-15
        binutils: fix build with gcc-15
        dbus-glib: fix build with gcc-15
        bitbake: bitbake: Bump version to 2.8.1
        license.py: avoid deprecated ast.Str
        sanity.conf: Update minimum bitbake version to 2.8.1
        lib/oe/utils: use multiprocessing from bb
        flex: fix build with gcc-15 on host

  Matthias Pritschet (1):
        ref-manual: fix typo and move SYSROOT_DIRS example

  Matthias Schiffer (1):
        curl: only set CA bundle in target build

  Michael Haener (1):
        oeqa/runtime/ping: don't bother trying to ping localhost

  Michael Halstead (4):
        yocto-uninative: Update to 4.6 for glibc 2.40
        yocto-uninative: Update to 4.7 for glibc 2.41
        yocto-uninative: Update to 4.8 for GCC 15.1
        yocto-uninative: Update to 4.9 for glibc 2.42

  Michael Opdenacker (5):
        maintainers.inc: update self e-mail address
        doc: Makefile: publish pdf and epub versions too
        dev-manual: fix styling of references to bmaptool
        dev-manual/bmaptool.rst: correct command for bmaptool-native
        dev-manual/bmaptool.rst: simplify and fix instructions

  Michal Seben (1):
        timedated: wait for jobs before SetNTP response

  Mikko Rapeli (1):
        ovmf-native: remove .pyc files from install

  Mingli Yu (1):
        llvm: Enable libllvm for native build

  Moritz Haase (2):
        meta: Enable '-o pipefail' for the SDK installer
        cmake: Correctly handle cost data of tests with arbitrary chars in name

  NeilBrown (1):
        nfs-utils: don't use signals to shut down nfs server.

  Nguyen Dat Tho (1):
        libatomic-ops: Update GITHUB_BASE_URI

  Nikhil R (1):
        cmake: Add PACKAGECONFIG option for debugger support

  Niko Mauno (15):
        dnf/mesa: Fix missing leading whitespace with ':append'
        libyaml: Fix warning regarding unpatched CVE
        systemd: Mitigate /var/log type mismatch issue
        systemd: Mitigate /var/tmp type mismatch issue
        image_types.bbclass: Use --force also with lz4,lzop
        util-linux: Add PACKAGECONFIG option to mitigate rootfs remount error
        iw: Fix LICENSE
        dejagnu: Fix LICENSE
        unzip: Fix LICENSE
        zip: Fix LICENSE
        tiff: Fix LICENSE
        gcr: Fix LICENSE
        python3-maturin: Fix cross compilation issue for armv7l, mips64, ppc
        cve-check.bbclass: Mitigate symlink related error
        cve-check.bbclass: Fix symlink handling also for text files

  Nitin Wankhade (1):
        examples: genl: fix wrong attribute size

  Oleksandr Hnatiuk (2):
        icu: remove host references in nativesdk to fix reproducibility
        gcc: remove paths to sysroot from configargs.h and checksum-options for gcc-cross-canadian

  Patrick Wicki (1):
        gpgme: move gpgme-tool to own sub-package

  Paul Barker (2):
        meta-ide-support: Mark recipe as MACHINE-specific
        dev-manual, test-manual: Update autobuilder output links

  Paul Gerber (1):
        uboot-sign: fix counters in do_uboot_assemble_fitimage

  Pavel Zhukov (1):
        package_rpm: Check if file exists before open()

  Pedro Ferreira (3):
        buildhistory: Fix intermittent package file list creation
        buildhistory: Restoring files from preserve list
        rust-common.bbclass: soft assignment for RUSTLIB path

  Peter Kjellerstedt (1):
        image.bbclass: Drop support for ImageQAFailed exceptions in image_qa

  Peter Marko (144):
        flac: fix buildpaths warnings
        cargo: remove True option to getVar calls
        ncurses: switch to new mirror
        busybox: Patch CVE-2021-42380
        busybox: Patch CVE-2023-42363
        libstd-rs,rust-cross-canadian: set CVE_PRODUCT to rust
        curl: Patch CVE-2024-6197
        glibc: cleanup old cve status
        qemu: set cve status for CVE-2023-6683
        libmnl: explicitly disable doxygen
        libyaml: ignore CVE-2024-35326
        libyaml: Ignore CVE-2024-35325
        curl: Patch CVE-2024-7264
        python3: Upgrade 3.12.5 -&gt; 3.12.6
        wpa-supplicant: Ignore CVE-2024-5290
        wpa-supplicant: Patch CVE-2024-3596
        wpa-supplicant: Patch security advisory 2024-2
        rust: ignore CVE-2024-43402
        openssl: patch CVE-2024-9143
        cve-check: add support for cvss v4.0
        go: upgrade 1.22.6 -&gt; 1.22.7
        go: upgrade 1.22.7 -&gt; 1.22.8
        dropbear: backport patch for CVE-2023-48795
        curl: patch CVE-2024-9681
        gstreamer1.0: set status for CVE-2024-0444
        expat: upgrade 2.6.3 -&gt; 2.6.4
        builder: set CVE_PRODUCT
        qemu: set CVE-2024-6505 to fixed
        gstreamer1.0-plugins-good: fix several CVEs
        gstreamer1.0-plugins-base: patch CVE-2024-47538
        gstreamer1.0-plugins-base: patch CVE-2024-47607
        gstreamer1.0-plugins-base: patch CVE-2024-47615
        gstreamer1.0-plugins-good: patch CVE-2024-47613
        gstreamer1.0-plugins-good: patch several CVEs
        gstreamer1.0-plugins-base: patch CVE-2024-47541
        gstreamer1.0-plugins-base: patch CVE-2024-47542
        gstreamer1.0-plugins-good: patch CVE-2024-47599
        gstreamer1.0-plugins-base: patch CVE-2024-47600
        gstreamer1.0-plugins-good: patch CVE-2024-47606
        gstreamer1.0-plugins-good: patch CVE-2024-47606
        gstreamer1.0-plugins-good: patch CVE-2024-47774
        gstreamer1.0-plugins-good: patch several CVEs
        gstreamer1.0-plugins-base: patch CVE-2024-47835
        gstreamer1.0: ignore CVEs fixed in plugins recipes
        socat: patch CVE-2024-54661
        ofono: patch CVE-2024-7540, CVE-2024-7541, CVE-2024-7542
        ofono: patch CVE-2023-4232
        ofono: patch CVE-2023-4235
        openssl: patch CVE-2024-13176
        go: upgrade 1.22.8 -&gt; 1.22.9
        go: upgrade 1.22.9 -&gt; 1.22.10
        go: upgrade 1.22.10 -&gt; 1.22.11
        glibc: stable 2.39 branch updates
        python3: upgrade 3.12.8 -&gt; 3.12.9
        go: upgrade 1.22.11 -&gt; 1.22.12
        cmake: apply parallel build settings to ptest tasks
        subversion: ignore CVE-2024-45720
        gnutls: patch CVE-2024-12243
        openssl: upgrade 3.2.3 -&gt; 3.2.4
        libxml2: upgrade 2.12.9 -&gt; 2.12.10
        grub: drop obsolete CVE statuses
        grub: backport strlcpy function
        grup: patch CVE-2024-45781
        grub: patch CVE-2024-45782 and CVE-2024-56737
        grub: patch CVE-2024-45780
        grub: patch CVE-2024-45783
        grub: patch CVE-2025-0624
        grub: patch CVE-2024-45774
        grub: patch CVE-2024-45775
        grub: patch CVE-2025-0622
        grub: patch CVE-2024-45776
        grub: patch CVE-2024-45777
        grub: patch CVE-2025-0690
        grub: patch CVE-2025-1118
        grub: patch CVE-2024-45778 and CVE-2024-45779
        grub: patch CVE-2025-0677, CVE-2025-0684, CVE-2025-0685, CVE-2025-0686 and CVE-2025-0689
        grub: patch CVE-2025-0678 and CVE-2025-1125
        libarchive: patch CVE-2025-1632 and CVE-2025-25724
        xserver-xorg: mark CVEs fixed in 21.1.16 as fixed
        cve-update-nvd2-native: handle missing vulnStatus
        expat: patch CVE-2024-8176
        freetype: follow-up patch for CVE-2025-27363
        ofono: patch CVE-2024-7537
        cve-update-nvd2-native: add workaround for json5 style list
        xz: upgrade 5.4.6 -&gt; 5.4.7
        xz: patch CVE-2025-31115
        libarchive: upgrade 3.7.4 -&gt; 3.7.9
        sqlite3: patch CVE-2025-3277
        sqlite3: patch CVE-2025-29088
        ppp: patch CVE-2024-58250
        libxml2: patch CVE-2025-32414
        libxml2: patch CVE-2025-32415
        glib-2.0: patch CVE-2025-3360
        Revert "cve-update-nvd2-native: Tweak to work better with NFS DL_DIR"
        sqlite3: mark CVE-2025-29087 as patched
        python3: upgrade 3.12.9 -&gt; 3.12.11
        testimage: get real os-release file
        net-tools: patch CVE-2025-46836
        go: set status of CVE-2024-3566
        glibc: stable 2.39 branch updates
        python3: update CVE product
        busybox: apply patch for CVE-2023-39810
        iputils: patch CVE-2025-48964
        orc: set CVE_PRODUCT
        openssl: CVE-2024-41996
        openssl: patch CVE-2025-27587
        gnutls: patch CVE-2025-32989
        gnutls: patch read buffer overrun in the "pre_shared_key" extension
        gnutls: patch reject zero-length version in certificate request
        gnutls: patch CVE-2025-32988
        gnutls: patch CVE-2025-32990
        gnutls: patch CVE-2025-6395
        ncurses: patch CVE-2025-6141
        libxml2: patch CVE-2025-6170
        glibc: fix CVE-2025-8058
        python3: patch CVE-2025-8194
        go: ignore CVE-2025-0913
        dropbear: patch CVE-2025-47203
        glib-2.0: ignore CVE-2025-4056
        qemu: set status of CVE-2024-7730 to fixed
        go-binary-native: ignore CVE-2025-0913
        glib-2.0: patch CVE-2025-7039
        glib-2.0: patch CVE-2025-6052
        dpkg: patch CVE-2025-6297
        libarchive: patch regression of patch for CVE-2025-5918
        vim: upgrade 9.1.1198 -&gt; 9.1.1652
        sudo: remove devtool FIXME comment
        busybox: patch CVE-2025-46394
        gstreamer1.0: ignore CVEs fixed in plugins
        gstreamer1.0: ignore CVE-2025-2759
        ghostscript: patch CVE-2025-59798
        ghostscript: patch CVE-2025-59799
        ghostscript: patch CVE-2025-59800
        expat: follow-up for CVE-2024-8176
        tiff: ignore 5 CVEs
        ffmpeg: ignore 8 CVEs fixed in 6.1.1 and 6.1.3 releases
        openssl: upgrade 3.2.4 -&gt; 3.2.6
        qemu: patch CVE-2024-8354
        binutils: patch CVE-2025-11082
        binutils: patch CVE-2025-11083
        gnupg: mark CVE-2025-30258 as patched
        python3: upgrade 3.12.11 -&gt; 3.12.12
        vulnerabilities: update nvdcve file name
        expat: patch CVE-2025-59375

  Philip Lorenz (3):
        cmake: Fix sporadic issues when determining compiler internals
        cve-check: Add missing call to exit_if_errors
        shared-mime-info: Handle USE_NLS

  Poonam Jadhav (2):
        curl: ignore CVE-2025-0725
        libpng: Add ptest

  Praveen Kumar (7):
        connman :fix CVE-2025-32743
        connman :fix CVE-2025-32366
        glib-2.0: fix CVE-2025-4373
        go: fix CVE-2025-4673
        sudo: upgrade 1.9.15p5 -&gt; 1.9.17p1
        go: fix CVE-2025-47907
        bind: upgrade 9.18.33 -&gt; 9.18.41

  Preeti Sachan (1):
        ltp: backport patch to fix compilation error for x86_64

  Priyal Doshi (2):
        tzdata/tzcode-native: upgrade 2024b -&gt; 2025a
        tzdata/tzcode-native: upgrade 2025a -&gt; 2025b

  Purushottam Choudhary (1):
        virglrenderer: Add patch to fix -int-conversion build issue

  Quentin Schulz (14):
        mmc-utils: fix URL
        weston-init: fix weston not starting when xwayland is enabled
        docs: README: specify how to contribute instead of pointing at another file
        docs: conf.py: silence SyntaxWarning on js_splitter_code
        ref-manual: classes: reword to clarify that native/nativesdk options are exclusive
        ref-manual: classes: nativesdk: move note to appropriate section
        go-helloworld: fix license
        contributor-guide: submit-changes: fix improper bold string
        contributor-guide: submit-changes: clarify example with Yocto bug ID
        contributor-guide: submit-changes: align CC tag description
        contributor-guide: submit-changes: make the Cc tag follow kernel guidelines
        contributor-guide: submit-changes: reword commit message instructions
        contributor-guide: submit-changes: number instruction list in commit your changes
        contributor-guide: submit-changes: make "Crediting contributors" part of "Commit your changes"

  Rajeshkumar Ramasamy (2):
        glib-networking: fix CVE-2025-60018
        glib-networking: fix CVE-2025-60019

  Randy MacLeod (1):
        systemd: stable update 255.4 -&gt; 255.13

  Ranjitsinh Rathod (1):
        rust: Add new varaible RUST_ENABLE_EXTRA_TOOLS

  Rasmus Villemoes (1):
        iptables: remove /etc/ethertypes

  Regis Dargent (1):
        udev-extraconf: fix network.sh script did not configure hotplugged interfaces

  Richard Purdie (60):
        selftest/cases/runtime_test: Exclude centos-9 from virgl tests
        cve-exclusion: Drop the version comparision/warning
        bitbake: codeparser/data: Ensure module function contents changing is accounted for
        bitbake: codeparser: Skip non-local functions for module dependencies
        pseudo: Update to pull in python 3.12+ fix
        layer.conf: Add os-release to SIGGEN_EXCLUDERECIPES_ABISAFE
        oeqa/sdk/case: Ensure DL_DIR is populated with artefacts if used
        create-spdx-3.0/populate_sdk_base: Add SDK_CLASSES inherit mechanism to fix tarball SPDX manifests
        pseudo: Fix to work with glibc 2.40
        pseudo: Update to include open symlink handling bugfix
        nasm: Upgrade 2.16.01 -&gt; 2.16.03
        oeqa/runtime/ssh: In case of failure, show exit code and handle -15 (SIGTERM)
        oeqa/selftest/reproducibile: Explicitly list virtual targets
        expat: 2.6.2 -&gt; 2.6.3
        ruby: Make docs generation deterministic
        libedit: Make docs generation deterministic
        buildhistory: Simplify intercept call sites and drop SSTATEPOSTINSTFUNC usage
        scripts/install-buildtools: Update to 5.0.3
        bitbake.conf: Add truncate to HOSTTOOLS
        license: Fix directory layout issues
        libsdl2: Fix non-deterministic configure option for libsamplerate
        bitbake: tests/fetch: Use our own mirror of sysprof to decouple from gnome gitlab
        bitbake: tests/fetch: Use our own mirror of mobile-broadband-provider to decouple from gnome gitlab
        cve_check: Use a local copy of the database during builds
        pseudo: Fix envp bug and add posix_spawn wrapper
        oeqa/runtime/ssh: Rework ssh timeout
        oeqa/runtime/ssh: Fix incorrect timeout fix
        qemurunner: Clean up serial_lock handling
        bitbake: fetch2/git: Use quote from shlex, not pipes
        bitbake: fetch/wget: Increase timeout to 100s from 30s
        bitbake: runqueue: Fix performance of multiconfigs with large overlap
        bitbake: runqueue: Optimise setscene loop processing
        bitbake: runqueue: Fix scenetask processing performance issue
        do_package/sstate/sstatesig: Change timestamp clamping to hash output only
        selftest/reproducible: Drop rawlogs
        selftest/reproducible: Clean up pathnames
        resulttool: Allow store to filter to specific revisions
        resulttool: Use single space indentation in json output
        oeqa/utils/gitarchive: Return tag name and improve exclude handling
        resulttool: Fix passthrough of --all files in store mode
        resulttool: Add --logfile-archive option to store mode
        resulttool: Handle ltp rawlogs as well as ptest
        resulttool: Clean up repoducible build logs
        resulttool: Trim the precision of duration information
        resulttool: Improve repo layout for oeselftest results
        cve-update-nvd2-native: Tweak to work better with NFS DL_DIR
        bitbake: tests/fetch: Fix git shallow test failure with git &gt;= 2.48
        bitbake: utils: Print information about lock issue before exiting
        bitbake: utils: Tweak lock_timeout logic
        bitbake: utils: Add signal blocking for lock_timeout
        bitbake: event/utils: Avoid deadlock from lock_timeout() and recursive events
        bitbake: toaster/tests/buildtest: Switch to new CDN
        bitbake: fetch2: Avoid deprecation warning
        sstatetests: Switch to new CDN
        local.conf.sample: Switch to new CDN
        bitbake: ast: Change deferred inherits to happen per recipe
        brief-yoctoprojectqs/ref-manual: Switch to new CDN
        bitbake: test/fetch: Switch u-boot based test to use our own mirror
        mtools: upgrade 4.0.46 -&gt; 4.0.47
        bitbake: utils: Optimise signal/sigmask performance

  Robert Kovacsics (1):
        sdk: Fix path length limit to match reserved size

  Robert P. J. Day (7):
        Clean up explanation of minimum required version numbers
        overview-manual: small number of pedantic cleanups
        bsp guide: update kernel version example to 6.12
        bsp-guide: update lonely "4.12" kernel reference to "6.12"
        bsp-guide: update all of section 1.8.2 to reflect current beaglebone conf file
        variables.rst: remove references to obsolete tar packaging
        overview-manual/yp-intro.rst: update on-target packaging info

  Robert Yang (7):
        bitbake: data_smart: Improve performance for VariableHistory
        release-notes-5.0.rst: NO_OUTPUT -&gt; NO_COLOR
        bitbake: gitsm: Add call_process_submodules() to remove duplicated code
        bitbake: gitsm: Remove downloads/tmpdir when failed
        cml1.bbclass: do_diffconfig: Don't override .config with .config.orig
        libgcrypt: Fix building error with '-O2' in sysroot path
        groff: Fix race issues for parallel build

  Rogerio Guerra Borin (1):
        u-boot: ensure keys are generated before assembling U-Boot FIT image

  Rohini Sangam (1):
        vim: Upgrade 9.1.0698 -&gt; 9.1.0764

  Roland Kovacs (3):
        gnupg: update 2.4.5 -&gt; 2.4.8
        libxml2: fix CVE-2025-49795
        sqlite3: fix CVE-2025-6965

  Ross Burton (31):
        cpio: mark CVE-2023-7216 as disputed
        fribidi: upgrade 1.0.13 -&gt; 1.0.14
        gstreamer1.0: skip another known flaky test
        libportal: fix rare build race
        meson: don't use deprecated pkgconfig variable
        curl: skip FTP tests in run-ptest
        gawk: update patch status
        python3-pycryptodome(x): use python_setuptools_build_meta build class
        gstreamer1.0: disable flaky baseparser tests
        librsvg: don't try to run target code at build time
        icu: update patch Upstream-Status
        strace: download release tarballs from GitHub
        tcl: skip io-13.6 test case
        groff: fix rare build race in hdtbl
        sanity: check for working user namespaces
        python3: add dependency on -compression to -core
        classes/nativesdk: also override TUNE_PKGARCH
        classes/qemu: use tune to select QEMU_EXTRAOPTIONS, not package architecture
        oeqa/selftest/rust: skip on all MIPS platforms
        Remove all mention of core-image-lsb
        ref-manual: don't refer to poky-lsb
        ref-manual: remove OE_IMPORTS
        puzzles: ignore three new CVEs for a different puzzles
        xserver-xf86-config: add a configuration fragment to disable screen blanking
        xserver-xf86-config: remove obsolete configuration files
        grub2: fix CVE-2024-56738
        libxslt: apply patch for CVE-2025-7424
        expect: update code for Tcl channel implementation
        expect: don't run aclocal in do_configure
        expect: cleanup do_install
        pulseaudio: ignore CVE-2024-11586

  Ryan Eatmon (2):
        u-boot.inc: Refactor do_* steps into functions that can be overridden
        uboot: Allow for customizing installed/deployed file names

  Sana Kazi (1):
        gcc-cross-canadian.inc: Fix buildpaths error for pthread.h

  Sandeep Gundlupet Raju (1):
        tune-cortexr52: Remove aarch64 for ARM Cortex-R52

  Saravanan (2):
        python3-xmltodict: fix CVE-2025-9375
        cmake: fix CVE-2025-9301

  Savvas Etairidis (1):
        systemd: Rename systemd_v255.21 to systemd_255.21

  Sergei Zhmylev (1):
        lsb-release: fix Distro Codename shell escaping

  Shubham Kulkarni (1):
        libpam: Update fix for CVE-2024-10041

  Shunsuke Tokumoto (1):
        python3-setuptools: Add "python:setuptools" to CVE_PRODUCT

  Siddharth Doshi (5):
        Tiff: Security fix for CVE-2024-7006
        vim: Upgrade 9.1.0114 -&gt; 9.1.0682
        wpa-supplicant: Upgrade 2.10 -&gt; 2.11
        vim: Upgrade 9.1.0682 -&gt; 9.1.0698
        openssl: Upgrade 3.2.2 -&gt; 3.2.3

  Simon A. Eugster (1):
        documentation: Fix typo in standards.md

  Simone Weiß (3):
        tzdata: Add tzdata.zi to tzdata-core package
        sanity: Check if tar is gnutar
        curl: Ignore CVE-2024-32928

  Soumya Sambu (12):
        python3-idna: upgrade 3.6 -&gt; 3.7
        python3-certifi: Fix CVE-2024-39689
        python3-setuptools: Fix CVE-2024-6345
        python3: Fix CVE-2024-7592
        python3: Fix CVE-2024-8088
        python3-requests: upgrade 2.32.1 -&gt; 2.32.2
        python3-requests: upgrade 2.32.0 -&gt; 2.32.3
        python3-jinja2: upgrade 3.1.4 -&gt; 3.1.6
        git: Upgrade 2.44.1 -&gt; 2.44.3
        elfutils: Fix CVE-2025-1371
        elfutils: Fix CVE-2025-1376
        elfutils: Fix CVE-2025-1377

  Stanislav Vovk (1):
        libpam: fix CVE-2024-10963

  Stefan Mueller-Klieser (1):
        kernel-arch: add macro-prefix-map in KERNEL_CC

  Steve Sakoman (35):
        Revert "apt: runtime error: filename too long (tmpdir length)"
        poky.conf: bump version for 5.0.3
        build-appliance-image: Update to scarthgap head revision
        Revert "wpa-supplicant: Upgrade 2.10 -&gt; 2.11"
        poky.conf: bump version for 5.0.4
        build-appliance-image: Update to scarthgap head revision
        build-appliance-image: Update to scarthgap head revision
        release-notes-4.0: update BB_HASHSERVE_UPSTREAM for new infrastructure
        poky.conf: bump version for 5.0.5
        build-appliance-image: Update to scarthgap head revision
        webkitgtk: fix erroneous use of unsuported DEBUG_LEVELFLAG variable
        llvm: reduce size of -dbg package
        poky.conf: bump version for 5.0.6
        build-appliance-image: Update to scarthgap head revision
        poky.conf: bump version for 5.0.7
        build-appliance-image: Update to scarthgap head revision
        Revert "rust: Add new varaible RUST_ENABLE_EXTRA_TOOLS"
        build-appliance-image: Update to scarthgap head revision
        poky.conf: add ubuntu2404 to SANITY_TESTED_DISTROS
        poky.conf: bump version for 5.0.8
        build-appliance-image: Update to scarthgap head revision
        Revert "gcc-cross-canadian.inc: Fix buildpaths error for pthread.h"
        poky.conf: bump version for 5.0.9
        build-appliance-image: Update to scarthgap head revision
        poky.conf: bump version for 5.0.10
        build-appliance-image: Update to scarthgap head revision
        poky.conf: bump version for 5.0.11
        build-appliance-image: Update to scarthgap head revision
        Revert "sudo: Fix CVE-2025-32462"
        poky.conf: bump version for 5.0.12
        build-appliance-image: Update to scarthgap head revision
        selftest/cases/meta_ide.py: use use gnu mirror instead of main server
        oeqa/sdk/cases/buildcpio.py: use gnu mirror instead of main server
        poky.conf: bump version for 5.0.13
        build-appliance-image: Update to scarthgap head revision

  Sunil Dora (2):
        gcc: Fix c++: tweak for Wrange-loop-construct
        binutils: Fix CVE-2025-1153

  Talel BELHAJ SALEM (1):
        dev-manual/building.rst: add note about externalsrc variables absolute paths

  Talel BELHAJSALEM (1):
        contributor-guide: Remove duplicated words

  Teresa Remmet (1):
        recipes-bsp: usbutils: Fix usb-devices command using busybox

  Trevor Gamblin (7):
        python3: skip test_concurrent_futures/test_deadlock
        python3: skip test_multiprocessing/test_active_children test
        maintainers.inc: add self for unassigned python recipes
        python3: upgrade 3.12.4 -&gt; 3.12.5
        python3: skip readline limited history tests
        python3-urllib3: upgrade 2.2.1 -&gt; 2.2.2
        reproducible-builds.rst: show how to build a single package

  Trevor Woerner (5):
        contributor-guide/submit-changes: encourage patch version changelogs
        ref-manual/variables.rst: document WIC_CREATE_EXTRA_ARGS
        sphinx-lint: trailing whitespace
        sphinx-lint: missing space after literal
        sphinx-lint: unbalanced inline literal markup

  Ulrich Ölmann (1):
        initramfs-framework: fix typos

  Victor Giraud (1):
        busybox: fix CVE-2022-48174

  Victor Kamensky (1):
        systemtap: fix systemtap-native build error on Fedora 40

  Vijay Anusuri (44):
        openssh: fix CVE-2024-39894
        apr: upgrade 1.7.4 -&gt; 1.7.5
        libpcap: Security fix for CVE-2023-7256 &amp; CVE-2024-8006
        xserver-xorg: upgrade 21.1.13 -&gt; 21.1.14
        glib-2.0: Backport fix for CVE-2024-52533
        bind: Upgrade 9.18.28 -&gt; 9.18.33
        openssh: Fix CVE-2025-26466
        xwayland: Fix CVE-2024-9632
        xwayland: Fix CVE-2025-26594
        xwayland: Fix CVE-2025-26595
        xwayland: Fix CVE-2025-26596
        xwayland: Fix CVE-2025-26597
        xwayland: Fix CVE-2025-26598
        xwayland: Fix CVE-2025-26599
        xwayland: Fix CVE-2025-26600
        xwayland: Fix CVE-2025-26601
        libtasn1: upgrade 4.19.0 -&gt; 4.20.0
        xserver-xorg: upgrade 21.1.15 -&gt; 21.1.16
        libxslt: upgrade 1.1.39 -&gt; 1.1.43
        vim: Upgrade 9.1.1115 -&gt; 9.1.1198
        libsoup: Fix CVE-2025-32910
        libsoup: Fix CVE-2025-32909
        libsoup: Fix CVE-2025-32911 &amp; CVE-2025-32913
        libsoup: Fix CVE-2025-32912
        libsoup: Fix CVE-2025-32906
        libsoup-2.4: Fix CVE-2024-52530
        libsoup-2.4: Fix CVE-2024-52531
        libsoup-2.4: Fix CVE-2024-52532
        libsoup-2.4: Fix CVE-2025-32906
        libsoup-2.4: Fix CVE-2025-32909
        libsoup: Fix CVE-2025-32914
        openssh: Fix for CVE-2025-32728
        libsoup-2.4: Fix CVE-2025-32910
        libsoup-2.4: Fix CVE-2025-32911 &amp; CVE-2025-32913
        libsoup-2.4: Fix CVE-2025-32912
        libsoup-2.4: Fix CVE-2025-32914
        python3-setuptools: Fix CVE-2025-47273
        kea: upgrade 2.4.1 -&gt; 2.4.2
        sudo: Fix CVE-2025-32462
        git: Upgrade 2.44.3 -&gt; 2.44.4
        xserver-xorg: upgrade 21.1.6 -&gt; 21.1.18
        cups: upgrade 2.4.10 -&gt; 2.4.11
        cups: Fix for CVE-2025-58060 and CVE-2025-58364
        gstreamer1.0-plugins-bad: Fix CVE-2025-3887

  Virendra Thakur (3):
        rust-cross-canadian: Set CVE_STATUS ignore for CVE-2024-43402
        util-linux: Add fix to isolate test fstab entries using CUSTOM_FSTAB
        curl: set conditional CVE_STATUS for CVE-2025-5025

  Vishwas Udupa (1):
        openssl: rewrite ptest installation

  Vrushti Dabhi (1):
        curl: update CVE_STATUS for CVE-2025-5025

  Vyacheslav Yurkov (1):
        systemd: Password agents shouldn't be optional

  Wadim Egorov (1):
        watchdog: Set watchdog_module in default config

  Wang Mingyu (18):
        ed: upgrade 1.20.1 -&gt; 1.20.2
        llvm: upgrade 18.1.5 -&gt; 18.1.6
        mesa: upgrade 24.0.5 -&gt; 24.0.7
        wireless-regdb: upgrade 2024.01.23 -&gt; 2024.05.08
        orc: upgrade 0.4.38 -&gt; 0.4.39
        cups: upgrade 2.4.9 -&gt; 2.4.10
        libadwaita: upgrade 1.5.1 -&gt; 1.5.2
        libdnf: upgrade 0.73.1 -&gt; 0.73.2
        wireless-regdb: upgrade 2024.05.08 -&gt; 2024.07.04
        cryptodev: upgrade 1.13 -&gt; 1.14
        orc: upgrade 0.4.39 -&gt; 0.4.40
        wireless-regdb: upgrade 2024.07.04 -&gt; 2024.10.07
        gnupg: upgrade 2.4.4 -&gt; 2.4.5
        xserver-xorg: upgrade 21.1.14 -&gt; 21.1.15
        ghostscript: upgrade 10.05.0 -&gt; 10.05.1
        mtools: upgrade 4.0.44 -&gt; 4.0.45
        mtools: upgrade 4.0.45 -&gt; 4.0.46
        mtools: upgrade 4.0.47 -&gt; 4.0.48

  Weisser, Pascal (1):
        ref-manual: Add missing variable IMAGE_ROOTFS_MAXSIZE

  Weisser, Pascal.ext (1):
        qemuboot: Trigger write_qemuboot_conf task on changes of kernel image realpath

  Xiangyu Chen (2):
        qemu: Upgrade 8.2.1 -&gt; 8.2.2
        lttng-modules: fix sched_stat_runtime changed in Linux 6.6.66

  Yash Shinde (4):
        binutils: Fix CVE-2024-53589
        binutils: Fix CVE-2025-7546
        binutils: fix CVE-2025-11081
        binutils: fix CVE-2025-8225

  Yi Zhao (5):
        libcap-ng: upgrade 0.8.4 -&gt; 0.8.5
        libcap-ng-python: upgrade 0.8.4 -&gt; 0.8.5
        rpm: fix expansion of %_libdir in macros
        iputils: Security fix for CVE-2025-47268
        kea: set correct permissions for /var/run/kea

  Yogita Urade (10):
        qemu: upgrade 8.2.2 -&gt; 8.2.3
        qemu: fix CVE-2024-4467
        ruby: upgrade 3.2.2 -&gt; 3.3.5
        qemu: upgrade 8.2.3 -&gt; 8.2.7
        curl: fix CVE-2024-11053
        curl: fix CVE-2025-0167
        python3-urllib3: fix CVE-2025-50181
        curl: fix CVE-2025-9086
        tiff: fix CVE-2025-9900
        tiff: ignore CVE-2025-8961

  Zhang Peng (3):
        avahi: fix CVE-2024-52616
        mpg123: upgrade 1.32.6 -&gt; 1.32.10
        avahi: fix CVE-2024-52615

  aszh07 (3):
        xz: Update LICENSE variable for xz packages
        ffmpeg: Add "libswresample libavcodec" to CVE_PRODUCT
        libarchive: Fix CVE-2024-20696

  rajmohan r (1):
        glibc-y2038-tests: remove glibc-y2038-tests_2.39.bb recipe

meta-openembedded: 78a14731cf..15e18246dd:
  Adrian Freihofer (2):
        networkmanager: remove modemmanager rdepends
        thrift: fix build with gcc 15

  Alexandre Truong (4):
        source-han-sans-*-fonts: Switch away from SVN fetcher in SRC_URI
        lcov: include UPSTREAM_CHECK_* to fix UNKNOWN_BROKEN status
        hunspell-dictionaries: switch branch from master to main
        evince: Update status for CVE-2011-0433 and CVE-2011-5244

  Alexandre Videgrain (1):
        openbox: fix crash on alt+tab with fullscreen app

  AmateurECE (1):
        pipewire: Add glib-2.0-native dep for bluez5

  Andrej Valek (1):
        externalsrc: fix support in various components

  Anil Dongare (1):
        libssh 0.10.6: Fix CVE-2025-8114

  Ankur Tyagi (25):
        tinyproxy: patch CVE-2023-49606
        frr: patch CVE-2024-44070
        libavif: ignore CVE-2025-48175
        libconfuse: patch CVE-2022-40320
        hdf5: patch CVE-2025-2913
        hdf5: patch CVE-2025-2914
        hdf5: patch CVE-2025-2915
        hdf5: patch CVE-2025-2923, CVE-2025-6816, CVE-2025-6856
        hdf5: patch CVE-2025-2924
        hdf5: patch CVE-2025-2925
        hdf5: patch CVE-2025-6269, CVE-2025-6270, CVE-2025-6516
        libppd: patch CVE-2024-47175
        libcupsfilters: patch CVE-2024-47076
        libraw: patch CVE-2025-43961 CVE-2025-43962
        libraw: patch CVE-2025-43963
        libraw: patch CVE-2025-43964
        zlog: fix CVE-2024-22857
        memcached: patch CVE-2023-46852
        memcached: patch CVE-2023-46853
        ndpi: ignore CVE-2025-25066
        libiec61850: patch CVE-2024-26529
        libiec61850: patch CVE-2024-45970
        libiec61850: patch CVE-2024-45971
        mbedtls: upgrade 3.6.4 -&gt; 3.6.5
        hostapd: patch CVE-2025-24912

  Archana Polampalli (4):
        modejs: upgrade 20.18.0 -&gt; 20.18.2
        tftpy: fix CVE-2023-46566
        tcpreplay: fix CVE-2024-22654
        apache2: upgrade 2.4.64 - 2.4.65

  Ariel D'Alessandro (1):
        pipewire: Install missing ALSA config files

  Armin Kuster (1):
        Revert "mariadb: fix runtime failure on riscv"

  Ashish Sharma (2):
        nginx: Backport fix for CVE-2024-7347
        postgresql: Backport fix for CVE-2024-7348

  AshishKumar Mishra (1):
        meta-oe: image: optionally remove RAW image after sparse image creation

  Awais Belal (2):
        mongodb: fix build with python 3.12
        mongodb: update to 4.4.29

  BINDU (1):
        flatbuffers: adapt for cross-compilation environments

  Barry Grussling (1):
        postgresql: Break perl RDEPENDS

  Bastian Krause (2):
        libsocketcan: use https instead of git protocol
        canutils: use https instead of git protocol

  Benjamin Szőke (1):
        tree: fix broken links

  Changqing Li (11):
        pavucontrol: update SRC_URI
        libatasmart: Update SRC_URI
        mariadb: fix runtime failure on riscv
        dlt-daemon: make DLT_WatchdogSec configurable
        abseil-cpp: upgrade 20240116.2 -&gt; 20240116.3
        nginx: fix CVE-2025-23419
        libblockdev: fix CVE-2025-6019
        udisks2: Hardening measure of CVE-2025-6019
        phpmyadmin: upgrade 5.2.1 -&gt; 5.2.2
        luajit: fix several CVEs
        mariadb: correct STACK_DIRECTION setting

  Chen Qi (6):
        libdbd-mysql-perl: avoid invoking assert_lib at do_configure stage
        python3-protobuf: remove useless and problematic .pth file
        graphviz: remove obsolete and problematic patch
        protobuf: fix CVE-2024-7254
        protobuf: upgrade from 4.25.3 to 4.25.8
        python3-protobuf: upgrade from 4.25.3 to 4.25.8

  Chris Laplante (1):
        poco: fix branch: master =&gt; poco-1.12.5

  Christos Gavros (1):
        corosync: reproducibility issue

  Claus Stovgaard (2):
        lcov: sort RDEPENDS alphabetical
        lcov: Add missing RDEPENDS

  Clayton Casciato (1):
        chrony: use inherit_defer for conditional inherit of useradd

  Deepak Rathore (1):
        protobuf 4.25.8: Mark CVE-2024-7254 as patched

  Divya Chellam (7):
        nginx: upgrade 1.25.3 -&gt; 1.25.4
        redis: upgrade 7.2.6 -&gt; 7.2.7
        krb5: fix CVE-2025-24528
        openvpn: upgrade 2.6.12 -&gt; 2.6.14
        libssh: fix CVE-2025-4878
        libssh: fix CVE-2025-5987
        jq: fix CVE-2025-9403

  Dmitry Baryshkov (1):
        android-tools: Create flag file /etc/usb-debugging-enabled

  Esben Haabendal (1):
        netplan: add missing runtime dependencies

  Etienne Cordonnier (3):
        uutils-coreutils: upgrade 0.0.25 -&gt; 0.0.26
        uutils-coreutils: upgrade 0.0.26 -&gt; 0.0.27
        uutils-coreutils: fix compilation with selinux

  Fabrice Aeschbacher (1):
        mosquitto: upgrade 2.0.18 -&gt; 2.0.19

  Fathi Boudra (2):
        python3-django: upgrade 4.2.11 -&gt; 4.2.16
        python3-django: upgrade 5.0.4 -&gt; 5.0.9

  Frank de Brabander (3):
        python3-pydantic-core: fix incompatible version
        python3-pydantic-core: fix TMPDIR path reference
        python3-pydantic-core: add missing RDEPENDS for ptest

  Grygorii Tertychnyi (1):
        libusbgx: fix gadget-stop install

  Guocai He (6):
        python3-pylint: correct the SRC_URI
        libconfig: correct the SRC_URI
        logcheck: correct the SRC_URI
        thrift: correct the SRC_URI
        softhsm: correct the SRC_URI
        mariadb: File conflicts for multilib

  Guðni Már Gilbert (1):
        mbedtls: upgrade 3.6.3.1 -&gt; 3.6.4

  Gyorgy Sarvari (35):
        poppler: fix typos in CVE-2025-52886-0001.patch
        mod-dnssd: update SRC_URI
        mosh: set working SRC_URI
        psqlodbc: set valid SRC_URI
        collectd: set working SRC_URI
        apache2: ignore irrelevant CVEs
        civetweb: patch CVE-2025-55763
        dovecot: patch CVE-2022-30550
        pm-qa: update git fetch protocol
        tokyocabinet: switch to working SRC_URI
        tokyocabinet: fix license
        iperf2: ignore irrelevant CVEs
        jasper: patch CVE-2025-8835
        jasper: patch CVE-2025-8836
        jasper: patch CVE-2025-8837
        etcd: patch CVE-2023-32082
        freerdp3: patch CVE-2024-32039 and CVE-2024-32041
        freerdp3: patch CVE-2024-32040
        freerdp3: patch CVE-2024-32458
        freerdp3: patch CVE-2024-32459
        freerdp3: patch CVE-2024-32460
        freerdp3: patch CVE-2024-32658
        freerdp3: patch CVE-2025-32659
        freerdp3: patch CVE-2024-32660
        freerdp3: patch CVE-2024-32661
        freerdp3: patch CVE-2024-32662
        exiv2: patch CVE-2025-26623
        exiv2: patch CVE-2025-54080
        exiv2: patch CVE-2025-55304
        redis: upgrade 6.2.18 -&gt; 6.2.20
        emacs: patch CVE-2024-30202
        emacs: patch CVE-2024-30203
        emacs: patch CVE-2024-30204
        emacs: patch CVE-2024-30205
        emacs: patch CVE-2024-39331

  Haixiao Yan (4):
        openvpn: fix CVE-2024-28882
        openvpn: upgrade 2.6.10 -&gt; 2.6.12
        lmsensors: Clean stale files for sensord to avoid incorrect GCC header dependencies
        python3-posix-ipc: fix runtime error

  Harish Sadineni (1):
        bpftool: Add support for riscv64

  Hieu Van Nguyen (1):
        gphoto2: Fix contains reference to TMPDIR [buildpaths] warning

  Hitendra Prajapati (8):
        tgt: fix CVE-2024-45751
        libssh: fix CVE-2025-5318
        redis: fix CVE-2025-32023
        libssh: fix CVE-2025-5351 &amp; CVE-2025-5372
        open-vm-tools: fix CVE-2025-22247
        libssh: fix CVE-2025-4877
        openjpeg: fix for CVE-2025-54874
        libjxl: fix CVE-2024-11403 &amp; CVE-2024-11498

  Hongxu Jia (1):
        nodejs: support cross compile without qemu user conditionally

  J. S (2):
        nodejs: upgrade 20.16.0 -&gt; 20.17.0
        nodejs: upgrade 20.17.0 -&gt; 20.18.0

  J. S. (3):
        znc: Fix buildpaths QA errors
        nodejs: cleanup
        xfce4 update HOMEPAGEs

  Jan Vermaete (1):
        python3-werkzeug: added python3-difflib as RDEPENDS

  Jason Schonberg (1):
        nodejs: upgrade 20.13.0 -&gt; 20.16.0

  Jef Driesen (2):
        nginx: fix the tarball and license checksums
        lcov: Add missing RDEPENDS for nativesdk

  Jeroen Hofstee (5):
        nodejs: backport a patch to prevent brotli crashing nodejs
        can-utils: fix printing / reading timestamps
        can-utils: handle CAN_ERR_CNT correctly
        php: ignore CVE-2024-3566
        nodejs: ignore CVE-2024-3566

  Jeroen Knoops (1):
        nng: Rename default branch of github.com:nanomsg/nng.git

  Jiaying Song (15):
        rrdtool: Fix do_populate_sysroot QA issues
        nftables: change ptest output format
        debootstrap: fix do_fetch error
        wireguard-tools: fix do_fetch error
        vlock: fix do_fetch error
        openipmi: upgrade 2.0.34-&gt;2.0.36
        tcpreplay: fix CVE-2023-43279
        xfce-dusk-gtk3: fix do_fetch error
        eject: fix do_fetch error
        libdev-checklib-perl: fix do_fetch error
        xmlsec1: Switch SRC_URI to use github release
        chrony: fix do_fetch error
        v4l-utils: Fix QA and build errors related to _TIME_BITS on 32-bit
        webkitgtk3: update 2.44.1 -&gt; 2.44.3
        webkitgtk3: fix do_configure error on beaglebone-yocto

  Jinfeng Wang (2):
        netplan: Fix CVE-2022-4968
        postfix: fix rootfs file difference

  Justin Bronder (1):
        python3-xmodem: replace hardcoded /usr with ${prefix}

  Khem Raj (32):
        python3-pydantic-core: Fix build with python 3.12.4
        log4cpp: Fix buildpaths QA error
        python3-pydantic: Upgrade to 2.7.3
        mariadb: Upgrade to 10.11.9 release
        ndisc: Remove buildpaths from binaries
        ndisc6: Fix reproducible build
        ghex,gnome-chess,gnome-photos: Add missing dep on itstool-native
        nodejs: Upgrade to 20.13.0 release
        nodejs: Fix build with libc++ 19
        wolfssl: Add packageconfig for reproducible build
        blueman: Fix buildpathe issue with cython generated code
        botan: Make it reproducible
        keepalived: Make build reproducible
        ldns: Fix buildpaths QA issues
        python3-kivy: Remove buildpaths from comments in generated C sources
        python3-pyproj: Fix buildpaths QA Error
        python3-pyproj: Remove absolute paths from cython generated .c files
        python3-pycocotools: Remove absolute paths from comments
        lprng: Specify target paths for needed utilities
        fwknop: Specify target locations of gpg and wget
        e2tools: Fix buildpaths QA warning in config.status in ptest
        sharutils: Let POSIX_SHELL be overridable from environment
        python3-posix-ipc: switch to PEP-517 build backend
        gtkwave: Add libtirpc to depends
        ssmping: Use debian mirror for SRC_URI
        enca: Fix cross builds
        ckermit: Define return type for main
        ckermit: Fix build with GCC-15
        procmail: Fix build with GCC-14
        uim: Stick to C17
        freerdp: Upgrade 2.11.2 -&gt; 2.11.7
        influxdb: Do not remove non-existing files

  Leon Anavi (2):
        sip: Upgrade 6.8.3 -&gt; 6.8.6
        sip: Fix homepage and license

  Leonard Anderweit (1):
        lmsensors: Fix build without sensord

  Libo Chen (3):
        thin-provisioning-tools: install missed thin_shrink and era_repair
        grpc: Fix CVE-2024-7246
        libgpiod: fix gpiod-cxx-test failed test case

  Marc Ferland (2):
        polkit: update SRC_URI
        libvncserver: fix generated LibVNCServerTargets.cmake

  Markus Volk (4):
        exiv2: update 0.28.0 -&gt; 0.28.2
        gnome-remote-desktop: update 46.1 -&gt; 46.2
        geary: add itstool-native dependency
        eog: add itstool-native dependency

  Martin Jansa (13):
        bolt: package systemd_system_unitdir correctly
        giflib: fix build with gold and avoid imagemagick-native dependency
        Revert "gcab: ignore buildpaths error from sources"
        gpm: fix buildpaths QA issue
        xerces-c: fix buildpaths QA issue
        xmlrpc-c: update SRCREV
        lapack: add PACKAGECONFIG for cblas
        lapack: fix buildpaths in ptest also when CBLAS is enabled
        gcab: fix buildpaths QA issue
        python3-posix-ipc: improve build_support
        python3-h5py: backport fixes for incompatible-pointer-types issues
        abseil-cpp: fix build with gcc-15 on host
        nodejs: fix build with gcc-15 on host

  Martin Schwan (1):
        linuxptp: Add systemd instance specifier for ptp4l dependency

  Michael Olbrich (1):
        nftables: avoid python dependencies when building without python

  Michael Opdenacker (1):
        kernel-hardening-checker: backport recipe

  Mikko Rapeli (3):
        fwupd: skip buildpaths errors
        gcab: ignore buildpaths error from sources
        libjcat: skip buildpaths check

  Mingli Yu (2):
        asio: Add ptest support
        ptest-packagelists-meta-oe.inc: Add asio

  Neel Gandhi (1):
        v4l-utils: Install media ctrl header and library files

  Nikhil R (2):
        nftables: Conditionally add ${PN}-python as RDEPENDS for ptest
        rocksdb: Add an option to set static library

  Niko Mauno (16):
        python3-xlsxwriter: Fix LICENSE
        python3-cbor2: Fix LICENSE and LIC_FILES_CHKSUM
        python3-crc32c: Amend LICENSE declaration
        python3-email-validator: Fix LICENSE
        python3-lru-dict: Fix LICENSE and change SUMMARY to DESCRIPTION
        python3-mock: Fix LICENSE
        python3-parse-type: Fix LICENSE
        python3-pillow: Fix LICENSE and change SUMMARY to DESCRIPTION
        python3-platformdirs: Fix LICENSE
        python3-colorama: Fix LICENSE
        python3-fann2: Fix LICENSE
        python3-nmap: Fix LICENSE and LIC_FILES_CHKSUM
        python3-pycurl: Fix LICENSE
        python3-googleapis-common-protos: Fix LIC_FILES_CHKSUM
        python3-haversine: Fix LIC_FILES_CHKSUM
        python3-libevdev: Fix LIC_FILES_CHKSUM

  Ninette Adhikari (6):
        imagemagick: Update status for CVE
        imagemagick: Update status for CVE
        imagemagick: Update status for CVE
        xsp: CVE status update for CVE-2006-2658
        influxdb: Update CVE status for CVE-2019-10329
        monkey: Update status for CVE-2013-2183

  Peter Kjellerstedt (6):
        hostapd: Support running "devtool modify hostapd"
        hostapd: Only include the relevant parts from README in LIC_FILES_CHKSUM
        libjs-jquery-icheck: Correct LIC_FILES_CHKSUM
        libdevmapper: Inherit nopackages
        ebtables: Remove the dependecy on bash
        libeigen: Remove LGPL code

  Peter Marko (41):
        libndp: Patch CVE-2024-5564
        squid: patch CVE-2024-37894
        hostapd: Patch CVE-2024-3596
        hostapd: Patch security advisory 2024-2
        nss: patch CVE-2024-6602
        nss: patch CVE-2024-6609
        squid: conditionally set status of CVE-2024-45802
        thrift: fix c++ generated code compilation with clang
        grpc: patch CVE-2024-11407
        python3-grpcio: patch CVE-2024-11407
        python3-grpcio(-tools): fix build concurrency issue
        libmodbus: patch CVE-2024-10918
        libmodbus: ignore CVE-2023-26793 and CVE-2024-34244
        libcoap: patch CVE-2024-31031
        spdlog: patch CVE-2025-6140
        minifi-cpp: patch spdlog CVE-2025-6140
        poco: ignore additional failing tests
        poco: patch CVE-2025-6375
        nginx: patch CVE-2025-53859
        fontforge: patch CVE-2024-25081 and CVE-2024-25082
        fcgi: patch CVE-2025-23016
        procmail: patch CVE-2014-3618
        procmail: patch CVE-2017-16844.
        ace: ignore CVE-2009-1147
        audiofile: fix multiple CVEs
        audiofile: patch CVE-2017-6829
        audiofile: fix multiple CVEs
        audiofile: patch CVE-2017-6831
        audiofile: patch CVE-2017-6839
        emlog: set CVE_PRODUCT
        freerdp: patch CVE-2024-32661
        freerdp: mark CVE-2024-32662 as fixed
        freerdp3: set CVE_PRODUCT
        corosync: fix upstream version check
        corosync: upgrade 3.1.6 -&gt; 3.1.9
        corosync: patch CVE-2025-30472
        dash: set CVE_PRODUCT
        gattlib: mark CVE-2019-6498 as fixed
        memcached: ignore disputed CVE-2022-26635
        monkey: ignore CVE-2013-1771
        squid: patch CVE-2025-59362

  Poonam Jadhav (1):
        tcpreplay: Fix CVE-2023-4256

  Praveen Kumar (4):
        php: upgrade 8.2.28 -&gt; 8.2.29
        polkit: fix CVE-2025-7519
        yasm: fix CVE-2024-22653
        cjson: upgrade 1.7.18 -&gt; 1.7.19

  Preeti Sachan (1):
        bpftool: fix libelf.h not found error

  Raghuvarya S (2):
        android-tools-adbd.service: Update ConditionPathExists to /etc
        android-toold-adbd: Fix inconsistency between selinux configurations

  Rajeshkumar Ramasamy (1):
        open-vm-tools: fix CVE-2025-41244

  Randolph Sapp (2):
        opencl-clhpp: add native and nativesdk
        vulkan-cts: allow vulkan versions &gt; 1.3

  Randy MacLeod (1):
        python3-pyyaml-include: support native and nativesdk build

  Robert Yang (1):
        hostapd: Add CVE id to CVE-2024-3596_00.patch

  Roland Kovacs (2):
        jq-1.7.1: Backport multiple CVE fixes
        jq: add Upstream-Status and CVE tags into .patch files

  Ryan Eatmon (1):
        kernel-selftest: Update to allow for turning on all tests

  Sana Kazi (2):
        libp11: Treat all openssl-3.x releases the same
        imagemagick: guard sed operations in do_install for optional files

  Saravanan (2):
        udisks2: upgrade 2.10.1 -&gt; 2.10.2
        fio: fix CVE-2025-10823

  Scott Murray (2):
        python3-grpcio: Fix build with gcc-14
        python3-grpcio: backport abseil-cpp RISC-V fix

  Shubham Pushpkar (2):
        wireshark 4.2.7: Fix CVE-2024-9781
        cjson 1.7.18: Fix CVE-2025-57052

  Siddharth Doshi (2):
        apache2: Upgrade 2.4.59 -&gt; 2.4.60
        apache2: Upgrade 2.4.60 -&gt; 2.4.62

  Sofiane HAMAM (2):
        Wolfssl: add ptest
        wolfssl: Upgrade 5.7.0 -&gt; 5.7.2

  Soumya Sambu (14):
        python3-sqlparse: Fix CVE-2024-4340
        python3-werkzeug: upgrade 3.0.1 -&gt; 3.0.3
        gtk+: Fix CVE-2024-6655
        python3-twisted: Fix CVE-2024-41671
        python3-flask-cors: Fix CVE-2024-6221
        python3-werkzeug: upgrade 3.0.3 -&gt; 3.0.6
        python3-tornado: Upgrade 6.4 -&gt; 6.4.2
        python3-django: upgrade 4.2.16 -&gt; 4.2.17
        python3-django: upgrade 5.0.9 -&gt; 5.0.10
        python3-django: upgrade 5.0.10 -&gt; 5.0.11
        python3-django: upgrade 4.2.17 -&gt; 4.2.18
        php: Upgrade 8.2.26 -&gt; 8.2.28
        iniparser: Fix CVE-2025-0633
        python3-django: upgrade 4.2.18 -&gt; 4.2.20

  Sunil Dora (1):
        layer.conf: add bpftrace to NON_MULTILIB_RECIPES

  Swamil Jain (1):
        kmsxx: Revert to using original name for kmstest

  Thomas Roos (1):
        libcamera: backport 0.4.0 from master-next

  Tim Orling (1):
        python3-pydantic: upgrade 2.7.3 -&gt; 2.7.4

  Trevor Woerner (2):
        apache2: use update-alternatives for httpd
        iperf3: throughput fix

  Vijay Anusuri (16):
        krb5: upgrade 1.21.2 -&gt; 1.21.3
        wireshark: upgrade 4.2.4 -&gt; 4.2.5
        wireshark: upgrade 4.2.5 -&gt; 4.2.7
        php: upgrade 8.2.24 -&gt; 8.2.26
        openjpeg: upgrade 2.5.0 -&gt; 2.5.3
        postgresql: upgrade 16.5 -&gt; 16.8
        wireshark: upgrade 4.2.7 -&gt; 4.2.9
        proftpd: Fix CVE-2024-57392
        redis: upgrade 7.2.7 -&gt; 7.2.8
        wireshark: upgrade 4.2.9 -&gt; 4.2.12
        proftpd: Fix CVE-2023-51713
        apache2: Upgrade 2.4.62 -&gt; 2.4.64
        poppler: Fix CVE-2025-43718
        redis: upgrade 7.2.8 -&gt; 7.2.11
        redis: upgrade 6.2.16 -&gt; 6.2.18
        vorbis-tools: Fix CVE-2023-43361

  Virendra Thakur (2):
        opensc: Fix multiple cve CVE-2024-45615-45616-45617-45618-45619-45620
        unbound: Fix CVE-2024-8508

  Wang Mingyu (18):
        python3-email-validator: upgrade 2.1.0 -&gt; 2.1.1
        python3-pydantic: upgrade 2.7.0 -&gt; 2.7.1
        cjson: upgrade 1.7.17 -&gt; 1.7.18
        samba: upgrade 4.19.7 -&gt; 4.19.8
        postgresql: upgrade 16.3 -&gt; 16.4
        redis: upgrade 7.2.4 -&gt; 7.2.5
        mosquitto: upgrade 2.0.19 -&gt; 2.0.20
        uutils-coreutils: upgrade 0.0.27 -&gt; 0.0.28
        nana: Fix buildpaths warning.
        fetchmail: Fix buildpaths warning.
        fetchmail: disable rpath to fix buildpaths warning.
        python3-posix-ipc: upgrade 1.1.1 -&gt; 1.2.0
        mbedtls: upgrade 3.6.3 -&gt; 3.6.3.1
        geoip: fix do_fetch error
        rp-pppoe: update SRC_URI
        procmail: fix build failure with gcc-14
        procmail: Add -Wno-implicit-int to fix error of do_compile
        libiec61850: upgrade 1.5.1 -&gt; 1.5.3

  Wentao Zhang (1):
        meta-oe/conf/layer.conf: remove libbpf from NON_MULTILIB_RECIPES for x86 and x86-64

  Xiangyu Chen (1):
        crash: fix crash cannot work with kaslr

  Yi Zhao (12):
        samba: upgrade 4.19.6 -&gt; 4.19.7
        mbedtls: upgrade 3.6.0 -&gt; 3.6.1
        mbedtls: upgrade 2.28.8 -&gt; 2.28.9
        libldb: upgrade 2.8.0 -&gt; 2.8.1
        mbedtls: upgrade 3.6.1 -&gt; 3.6.2
        freeradius: upgrade 3.2.3 -&gt; 3.2.5
        hostapd: Security fix for CVE-2023-52160
        redis: upgrade 7.2.5 -&gt; 7.2.6
        mbedtls: upgrade 2.28.9 -&gt; 2.28.10
        mbedtls: 3.6.2 -&gt; 3.6.3
        wxwidgets: upgrade 3.2.1 -&gt; 3.2.6
        redis: upgrade 6.2.14 -&gt; 6.2.16

  Yoann Congal (3):
        packagegroup-meta-oe: fix lvgl inclusion
        mdio-tools: fix mdio-netlink kernel module reproducibility
        gutenprint: fix a build race-condition

  Yogesh Tyagi (1):
        tbb-native: Fix build with gcc-13

  Yogita Urade (18):
        graphviz: fix CVE-2023-46045
        hdf5: upgrade to 1.14.4
        poppler: CVE-2024-6239
        krb5: fix CVE-2024-26458 and CVE-2024-26461
        php: upgrade 8.2.20 -&gt; 8.2.24
        postgresql: upgrade 16.4 -&gt; 16.5
        poppler: fix CVE-2024-56378
        poppler: fix CVE-2025-32364
        poppler: fix CVE-2025-32365
        poppler: fix CVE-2025-43903
        syslog-ng: fix CVE-2024-47619
        postgresql: upgrade 16.8 -&gt; 16.9
        mariadb: upgrade 10.11.9 -&gt; 10.11.12
        poppler: fix CVE-2025-52886
        poppler: fix CVE-2025-50420
        postgresql: upgrade 16.9 -&gt; 16.10
        indent: fix CVE-2023-40305
        poppler: fix CVE-2025-52885

  Zhang Peng (21):
        hiredis: remove ANSI color from ptest result
        frr: fix CVE-2024-34088
        frr: fix CVE-2024-31950
        frr: fix CVE-2024-31951
        frr: fix CVE-2024-31948
        frr: fix CVE-2024-31949
        libgsf: upgrade 1.14.52 -&gt; 1.14.53
        glade: fix CVE-2020-36774
        opensc: fix CVE-2024-8443
        lapack: fix TMPDIR reference in do_package_qa
        iperf3: upgrade 3.16 -&gt; 3.18
        gnuplot: fix CVE-2025-3359
        gnuplot: fix CVE-2025-31176
        gnuplot: fix CVE-2025-31177
        gnuplot: fix CVE-2025-31178
        gnuplot: fix CVE-2025-31179
        gnuplot: fix CVE-2025-31180
        gnuplot: fix CVE-2025-31181
        iperf3: fix CVE-2025-54349
        iperf3: fix CVE-2025-54350
        wxwidgets: fix CVE-2024-58249

  Zoltán Böszörményi (1):
        gutenprint: 5.3.5

  akash hadke (1):
        python3-flatbuffers: provide nativesdk support

  alperak (8):
        tayga: Fix contains reference to TMPDIR [buildpaths] warning
        etcd-cpp-apiv3: Fix contains reference to TMPDIR [buildpaths] warning
        exiv2: Upgrade 0.28.2 to 0.28.3 for CVE fix
        jsonrpc: Fix contains reference to TMPDIR [buildpaths] warning
        rdist: Fix contains reference to TMPDIR [buildpaths] warning
        perfetto: Fix contains reference to TMPDIR [buildpaths] warning
        hplip: Fix contains reference to TMPDIR [buildpaths] warning
        boinc-client: Fix contains reference to TMPDIR [buildpaths] warning

  gudnimar (1):
        pipewire: upgrade 1.0.5 -&gt; 1.0.9

  hongxu (2):
        p7zip: fix CVE-2023-52169 and CVE-2023-52168
        indent: fix CVE-2024-0911

  kjlau0112 (1):
        mbedtls: drop tag parameter from SRC_URI.

  mark.yang (1):
        srecord: fix build failure with gcc-15

meta-raspberrypi: 1918a27419..8767e2ff80:
  Adam Schafer (1):
        add raspi-utils recipe to scarthgap branch

  Andrei Gherzan (1):
        docs: Fix ReadTheDocs sphinx.configuration requirement

  Ayoub Zaki (1):
        raspberrypi5: add bcm2712d0 overlay required for booting up correctly

  Bassem Nomany (1):
        mesa: update to 24.3.1

  Damiano Ferrari (2):
        rpi-eeprom: Update to latest release
        rpi-bootfiles: Update to latest release

  Florin Sarbu (1):
        linux-raspberrypi.inc: Change defconfig for RPi3 64 bits

  Garrett Brown (1):
        linux: Enable CONFIG_I2C_BRCMSTB for proper HDMI I2C support

  Gijs Peskens (1):
        raspberrypi5.conf: Add CM5 dtb's

  Jaeyoon Jung (1):
        linux-raspberrypi: Drop deprecated configs from android-driver.cfg

  Joshua Watt (1):
        linux-firmware-rpidistro: Fix WiFi on Raspberry Pi 5

  Khem Raj (2):
        linux-raspberrypi-6.6: Upgrade to 6.6.63
        rpi-base: Remove bcm2712-rpi-5-b.dtb from RPI_KERNEL_DEVICETREE target

  Leon Anavi (11):
        yocto-builder/Dockerfile: Ubuntu 22.04
        rpi-base.inc: vc4-kms-dsi-ili9881-7inch.dtbo
        u-boot_%.bbappend: Increase CONFIG_SYS_BOOTM_LEN
        wayland-protocols: Upgrade 1.38 -&gt; 1.45
        mesa: Upgrade 24.3.1 -&gt; 25.1.3
        mesa: Upgrade 25.1.3 -&gt; 25.1.6
        mesa_%.bbappend: DISTRO_FEATURES for wayland
        mesa: wayland-protocols: Fix signatures
        linux-firmware-rpidistro: Update and stabilize
        rpi-base.inc: Add w1-gpio-pi5.dtbo
        rpi-base.inc: Add rpi-backlight.dtbo

  Markus Volk (4):
        linux-raspberrypi: add recipe for 6.12
        linux-raspberrypi: update 6.12.2 -&gt; 6.12.25
        rpi-default-versions: Switch default kernel to 6.12
        rpi-bootfiles: update to latest release

  Martin Jansa (3):
        docker-build: use --no-cache
        Revert "rpi-default-versions: Switch default kernel to 6.12"
        mesa, wayland-protocols: use separate recipe instead of bbappend

  Matthias Klein (1):
        linux-firmware-rpidistro: Upgrade to bookworm/20230625-2+rpt3

  Omri Sarig (1):
        linux-firmware-rpidistro: Fix wireless error message on RPi

  Pierrick Curt (1):
        rpi-base: build uart dts overlays by default

  Thomas Roos (1):
        Moving bcm2712d0.dtbo into rpi-base.inc

meta-arm: 58268ddccb..0f1e7bf92c:
  Amr Mohamed (5):
        kas: Update kas configuration for fvp-base.yml file
        arm-systemready/linux-distros: new inc file for unattended installation
        arm-systemready/linux-distros: Add kickstart file for Fedora unattended
        arm-systemready/oeqa: Add new test for Fedora unattended installation
        kas: Add new yml file for Distros unattended installation

  Ben (3):
        arm-systemready/linux-distros: Implement unattended openSUSE
        arm-systemready/oeqa: Add unattended installation testcase
        kas: Include unattended openSUSE test

  Bence Balogh (1):
        arm-bsp/trusted-firmware-m: corstone1000: Fix MPU configuration

  Harsimran Singh Tungal (1):
        arm-bsp,kas: corstone1000: enable External System based on new yml file

  Hugues KAMBA MPIANA (1):
        arm-bsp/documentation: corstone1000: Add SystemReady IR v2.0 certification

  Jon Mason (4):
        arm-toolchain: remove libmount-mountfd-support when using binary toolchain
        arm-bsp/fvp-base: Get 6.10 kernel working
        arm/linux-yocto: disable CONFIG_MTD_NAND_FSL_IFC
        arm-systemready/ir-acs: Update URL

  Jose Quaresma (1):
        bsp: optee-client: cleanup old tee-supplicant

  Luca Fancellu (2):
        arm/oeqa: Introduce retry mechanism for fvp_devices run_cmd
        arm/lib: Handle timeout for spawn object on stop()

  Romain Naour (4):
        external-arm-toolchain: remove old sed fixup for libc.so
        external-arm-toolchain: wrap symlink handling under usrmerge check
        external-arm-toolchain: override dynamic loader path with usrmerge enabled
        external-arm-toolchain: rebuild libmvec.so symlink if any

  Ross Burton (5):
        arm-base/linux-yocto: revert interim 6.10 patch for fvp-base
        arm-system-ready/arm-systemready-ir-acs: add version to download filename
        CI: use canonical git.yoctoproject.org URLs
        arm/execstack-native: add new recipe
        arm/fvp-base-a-aem: remove spurious executable stack from one library

  Vasyl Vavrychuk (3):
        external-arm-toolchain: wrap base_libdir vs libdir manipulations under usrmerge check
        external-arm-toolchain: in libc.so GNU ld script use base_libdir
        external-arm-toolchain: remove ${base_libdir}/libpthread*.so from FILES:${PN}

meta-security: 11ea91192d..bc865c5276:
  Hitendra Prajapati (2):
        clamav: fix CVE-2024-20505 &amp; CVE-2024-20506
        libhtp: fix CVE-2024-45797

  Vijay Anusuri (2):
        tpm2-tools: Upgrade 5.5 -&gt; 5.7
        tpm2-tss: upgrade 4.0.1 -&gt; 4.0.2

Change-Id: Ief5b086436b2f3a4e819546fcd1bb9a5b1f608dd
Signed-off-by: Andrew Geissler &lt;geissonator@yahoo.com&gt;
</content>
</entry>
<entry>
<title>meta-openembedded and poky: subtree updates</title>
<updated>2020-05-05T13:30:44+00:00</updated>
<author>
<name>Andrew Geissler</name>
<email>geissonator@yahoo.com</email>
</author>
<published>2020-04-13T18:39:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git.radix-linux.su/BMC/OpenBmc/openbmc.git/commit/?id=82c905dc58a36aeae40b1b273a12f63fb1973cf4'/>
<id>urn:sha1:82c905dc58a36aeae40b1b273a12f63fb1973cf4</id>
<content type='text'>
Squash of the following due to dependencies among them
and OpenBMC changes:

meta-openembedded: subtree update:d0748372d2..9201611135
meta-openembedded: subtree update:9201611135..17fd382f34
poky: subtree update:9052e5b32a..2e11d97b6c
poky: subtree update:2e11d97b6c..a8544811d7

The change log was too large for the jenkins plugin
to handle therefore it has been removed. Here is
the first and last commit of each subtree:

meta-openembedded:d0748372d2
      cppzmq: bump to version 4.6.0
meta-openembedded:17fd382f34
      mpv: Remove X11 dependency
poky:9052e5b32a
      package_ipk: Remove pointless comment to trigger rebuild
poky:a8544811d7
      pbzip2: Fix license warning

Change-Id: If0fc6c37629642ee207a4ca2f7aa501a2c673cd6
Signed-off-by: Andrew Geissler &lt;geissonator@yahoo.com&gt;
</content>
</entry>
</feed>
