| Age | Commit message (Collapse) | Author | Files | Lines |
|
Adam Blank (2):
lib/packagedata.py: slight improvement to code readability
sstate: remove dead code and unify path operations
Alexander Kanavin (1):
sbom-cve-check: set PV from upstream tags and ensure version checks are correct
Andrew Geissler (1):
efivar: Backport patch to fix -march issue for ppc64le
Ankur Tyagi (2):
tzdata/tzcode-native: upgrade 2026a -> 2026b
wireless-regdb: upgrade 2026.02.04 -> 2026.03.18
Antonin Godard (1):
mirrors: remove inactive sources.openembedded.org URLs
Benjamin Robin (Schneider Electric) (3):
python3-sbom-cve-check: Update to version 1.3.1
sbom-cve-check-update-cvelist-native: Update source revision
sbom-cve-check-update-nvd-native: Update source revision
Bin Cao (1):
scripts/cve-json-to-text.py: simplify getopt argument parsing
Bruce Ashfield (6):
linux-yocto/6.18: update to v6.18.25
linux-yocto/6.18: update CVE exclusions (6.18.25)
linux-yocto/6.18: update to v6.18.26
linux-yocto/6.18: update CVE exclusions (6.18.26)
linux-yocto/6.18: update to v6.18.28
linux-yocto/6.18: update CVE exclusions (6.18.28)
Changqing Li (1):
gstreamer1.0-plugins-bad: disble vulkan when x11/wayland not enabled
Corentin Guillevic (1):
sanity: add check for own-mirrors/SOURCE_MIRROR_URL
Daniel McGregor (1):
python3-requests: update to 2.33.1
Denys Dmytriyenko (2):
wayland: upgrade 1.24.0 -> 1.25.0
weston: upgrade 15.0.0 -> 15.0.1
Dmitry Sakhonchik (1):
shadow-native: Change upstream status of disable_syslog.patch
Himanshu Jadon (2):
apr: Add CVE_PRODUCT to support product name
apr-util: Add CVE_PRODUCT to support product name
Ivan Nestlerode (1):
glibc: Fix recipe bug that disabled stack protector
Joao Marcos Costa (2):
u-boot-tools: drop yaml in DT validation
u-boot-tools: drop the hardlink workaround in do_compile
João Marcos Costa (3):
soc-family.inc: improve clarity at MACHINEOVERRIDES's prepend
meta: simplify conditional operations with bb.utils.filter
insane: simplify conditional operations with bb.utils.filter
Khem Raj (8):
gn: upgrade to latest revision
dos2unix: upgrade 7.5.4 -> 7.5.5
python3-pdm-backend: upgrade 2.4.7 -> 2.4.8
python3-pdm: upgrade 2.26.6 -> 2.26.7
python3-lxml: upgrade 6.0.2 -> 6.0.4
re2c: upgrade 4.4 -> 4.5.1
libmpc: Upgrade to 1.4.0
u-boot-tools: Add dependency on libyaml for dtschema validation
Leonardo Costa (1):
bluez5: add patches to fix 8.56 cli issues
Li Wang (1):
perf: add PACKAGECONFIG for llvm
Marcus Flyckt (1):
initramfs-framework: overlayroot: Don't assume rootfs location
Mingli Yu (1):
valgrind: Upgrade 3.26.0 -> 3.27.0
Moritz Haase (2):
cmake: upgrade 4.3.1 -> 4.3.2
devtool: Disable gpg signing when setting up source tree repos
Paul Barker (1):
oe/lsb: Only read /etc/os-release
Peter Marko (49):
shadow: set CVE_PRODUCT
ruby: set status for CVE-2025-0306
python3-setuptools: set status for CVE-2024-6345
p11-kit: set status for CVE-2026-2100
libva: set status for CVE-2023-39929
harfbuzz: set status for CVE-2024-56732
gnutls: set status for CVE-2026-1584
cve-extra-exclusions: ignore CVE-2019-2708
bind: set status for CVE-2017-3139
base-files: set status for CVE-2018-6557
rsync: set status for CVE-2024-12084
python3-requests: set status for CVE-2024-35195
python3-requests: set status for CVE-2024-47081
git: set status of 5 CVEs
cargo: set status of CVE-2023-40030
cargo: set CVE_PRODUCT
ovmf: set status for 7 CVEs
sed: upgrade 4.9 -> 4.10
expat: upgrade 2.7.5 -> 2.8.0
ffmpeg: set status for 4 CVEs
coreutils: set CVE_PRODUCT
cups: upgrade 2.4.16 -> 2.4.19
libsoup: set status for CVE-2026-2436
libsoup: patch CVE-2026-5119
sudo: set CVE_PRODUCT
libsoup: set status for CVE-2026-2369
libmicrohttpd: set status for CVE-2025-59777 and CVE-2025-62689
libsdl2: set status for CVE-2026-35444
libcap: set status for CVE-2026-4878
libarchive: set status for CVE-2026-4426
libgcrypt: upgrade 1.12.1 -> 1.12.2
libpng: upgrade 1.6.56 -> 1.6.58
python3-lxml: upgrade 6.0.4 -> 6.1.0
tiff: patch CVE-2026-4775
sudo: patch CVE-2026-35535
libssh2: patch CVE-2026-7598
inetutils: patch CVE-2026-32772
libarchive: set status of CVE-2026-5745
perf: make libraries for install_headers configurable
rpm-sequoia: set status for CVE-2026-2625
libxml2: set status for CVE-2026-6732
gdk-pixbuf: set status for 2.44.6
xserver-xorg: set status for CVE-2026-34000 and CVE-2026-34002
libsoup: patch CVE-2026-2708
busybox: patch CVE-2024-58251
go: upgrade 1.26.2 -> 1.26.3
glibc: stable 2.43 branch updates
ffmpeg: upgrade 8.0.1 -> 8.1.1
python3: upgrade 3.14.4 -> 3.14.5
Peter Tatrai (1):
rust: fix codegen test failure on big-endian targets
Pratik Farkase (3):
go: add ptest support
go: ptest: improvements and multiple fixes in golang ptest
go: ptest: fix GOROOT detection and improve cleanup/exit handling
Quan Sun (1):
qemu: fix iotlb_to_section() for different AddressSpace
Richard Purdie (65):
useradd: Switch from --root to --prefix option
pseudo: Update 1.9.5 -> 1.9.6
at-spi2-core: upgrade 2.60.0 -> 2.60.3
boost-build-native: upgrade 1.90.0 -> 1.91.0
ccache: upgrade 4.13.3 -> 4.13.5
coreutils: upgrade 9.10 -> 9.11
dhcpcd: upgrade 10.3.1 -> 10.3.2
epiphany: upgrade 50.3 -> 50.4
ethtool: upgrade 6.19 -> 7.0
font-util: upgrade 1.4.1 -> 1.4.2
gdk-pixbuf: upgrade 2.44.5 -> 2.44.6
git: upgrade 2.53.0 -> 2.54.0
gn: upgrade to latest revision
gtk4: upgrade 4.22.2 -> 4.22.4
iproute2: upgrade 6.19.0 -> 7.0.0
libdrm: upgrade 2.4.131 -> 2.4.133
libgpg-error: upgrade 1.59 -> 1.60
libjpeg-turbo: upgrade 3.1.3 -> 3.1.4.1
libmpc: upgrade 1.4.0 -> 1.4.1
libsolv: upgrade 0.7.36 -> 0.7.37
libxml2: upgrade 2.15.2 -> 2.15.3
libxmlb: upgrade 0.3.25 -> 0.3.26
libxpm: upgrade 3.5.18 -> 3.5.19
makedumpfile: upgrade 1.7.8 -> 1.7.9
mesa, mesa-tools-native: Upgrade 26.0.5 -> 26.0.6
meson: upgrade 1.11.0 -> 1.11.1
mpg123: upgrade 1.33.4 -> 1.33.5
nghttp2: upgrade 1.68.1 -> 1.69.0
puzzles: upgrade to latest revision
python3-attrs: upgrade 25.4.0 -> 26.1.0
python3-build: upgrade 1.4.3 -> 1.5.0
python3-certifi: upgrade 2026.2.25 -> 2026.4.22
python3-click: upgrade 8.3.1 -> 8.3.3
python3-hypothesis: upgrade 6.151.9 -> 6.152.4
python3-idna: upgrade 3.11 -> 3.13
python3-jsonpointer: upgrade 3.0.0 -> 3.1.1
python3-mako: upgrade 1.3.10 -> 1.3.12
python3-numpy: upgrade 2.4.3 -> 2.4.4
python3-pathspec: upgrade 1.0.4 -> 1.1.1
python3-pdm: upgrade 2.26.7 -> 2.26.8
python3-pip: upgrade 26.0.1 -> 26.1
python3-pygobject: upgrade 3.56.1 -> 3.56.2
python3-pyopenssl: upgrade 26.0.0 -> 26.1.0
python3-testtools: upgrade 2.9.0 -> 2.9.1
python3-trove-classifiers: upgrade 2026.1.14.14 -> 2026.4.28.13
python3-uritools: upgrade 6.0.1 -> 6.1.0
python3-uv-build: upgrade 0.10.10 -> 0.11.8
python3-wheel: upgrade 0.46.3 -> 0.47.0
repo: upgrade 2.62 -> 2.63
rpm-sequoia-crypto-policy: upgrade to latest revision
rpm-sequoia: upgrade 1.10.1 -> 1.10.2
rsync: upgrade 3.4.1 -> 3.4.2
ruby: upgrade 4.0.2 -> 4.0.3
shaderc: upgrade 2026.1 -> 2026.2
spirv-llvm-translator: upgrade 22.1.1 -> 22.1.2
ttyrun: upgrade 2.41.0 -> 2.42.0
vulkan-samples: upgrade to latest revision
xz: upgrade 5.8.2 -> 5.8.3
kernel: Disable module deploy tarball by default
utils: Handle unexpanded variables in DISTRO_FEATURES
expat: Upgrade 2.8.0 -> 2.8.1
pseudo: Upgrade 1.9.6 -> 1.9.7
glib-2.0-native: Remove problematic path reference
sstate: Improve confusing debug message
sstate: Detect broken sstate paths containing tmpdir
Robert P. J. Day (1):
features-check.bbclass: add reference to required TUNE_FEATURES
Robert Yang (1):
time: 1.9 -> 1.10
Ross Burton (31):
classes/base: add explicit bzip2-native dependency for unpacking .bz2
p11-kit: remove obsolete compile error workaround
p11-kit: add PACKAGECONFIG for trust and systemd
p11-kit: explicitly disable tests and zsh-completions
p11-kit: packaging rewrite
wpa-supplicant: remove obsolete explicit debug packaging
python3-cryptography: remove obsolete explicit debug packaging
gobject-introspection: remove obsolete explicit debug packaging
kernel-devsrc: remove obsolete explicit debug packaging
dhcpcd: remove obsolete explicit debug packaging
bitbake.conf: add firmwaredir
classes/kernel: use ${firmwaredir} instead of ${nonarch_base_libdir}/firmware
bluez5: use ${firmwaredir} instead of ${nonarch_base_libdir}/firmware
linux-firmware: use ${firmwaredir} instead of ${nonarch_base_libdir}/firmware
wpa_supplicant: recommend the wireless regulatory database
linux-firmware: delink some tegra firmware to avoid pulling in full nvidia firmware
linux-firmware: split out MediaTek mt7996 firmare
classes/kernel-module-split: skip .debug files early
classes/kernel-module-split: return list of values in extract_modinfo
wireless-regdb: use ${firmwaredir} instead of ${nonarch_base_libdir}/firmware
harfbuzz: improve packaging
harfbuzz: upgrade 12.3.2 -> 14.2.0
weston: remove obsolete .la deletion
librsvg: remove obsolete .la deletion
librsvg: consolidate DEPENDS
librsvg: consolidate PACKAGECONFIG
librsvg: rewrite cross gdk-pixbuf-query-loaders handling
epiphany: use GTK3DISTROFEATURES in features check
epiphany: remove obsolete build dependencies
libdazzle: remove
libhandy: remove
Sam Kent (2):
package.py: fix kernel module file pre-filter and document strip asymmetry
oe-pkgdata-util: fix empty runtime-rprovides directory handling
Tejas Kanfade (1):
pulseaudio: split pactl into a dedicated client subpackage
Thomas Perrot (2):
scripts/makefile-getvar: quote MAKEFILE variable
oe-pkgdata-util: fix runtime-rprovides handling in lookup_pkg error path
Trevor Gamblin (5):
python3-urllib3: enable setuptools-scm 10.x
python3-vcs-versioning: add recipe
python3-setuptools-scm: upgrade 9.2.2 -> 10.0.5
maintainers.inc: add self for python3-uv-build
python3-vcs-versioning: add ptest
Vijay Anusuri (1):
avahi: Fix CVE-2026-34933
Viswanath Kraleti (1):
mirrors: switch Yocto Project mirrors to HTTPS
Wang Mingyu (40):
acpica: upgrade 20251212 -> 20260408
adwaita-icon-theme: upgrade 49.0 -> 50.0
ccache: upgrade 4.13.2 -> 4.13.3
dhcpcd: upgrade 10.3.0 -> 10.3.1
diffoscope: upgrade 314 -> 317
epiphany: upgrade 49.7 -> 50.3
fastfloat: upgrade 8.2.4 -> 8.2.5
ghostscript: upgrade 10.06.0 -> 10.07.0
groff: upgrade 1.24.0 -> 1.24.1
gsettings-desktop-schemas: upgrade 50.0 -> 50.1
gtk+3: upgrade 3.24.51 -> 3.24.52
gtk4: upgrade 4.22.1 -> 4.22.2
hwdata: upgrade 0.405 -> 0.406
libadwaita: upgrade 1.8.4 -> 1.9.0
libcap: upgrade 2.77 -> 2.78
lzip: upgrade 1.25 -> 1.26
meson: upgrade 1.10.2 -> 1.11.0
pango: upgrade 1.57.0 -> 1.57.1
pciutils: upgrade 3.14.0 -> 3.15.0
python3-build: upgrade 1.4.0 -> 1.4.3
python3-dtschema: upgrade 2025.12 -> 2026.4
python3-editables: upgrade 0.5 -> 0.6
python3-maturin: upgrade 1.12.4 -> 1.13.1
python3-poetry-core: upgrade 2.3.1 -> 2.3.2
python3-pyasn1: upgrade 0.6.2 -> 0.6.3
python3-pygments: upgrade 2.19.2 -> 2.20.0
python3-pytest: upgrade 9.0.2 -> 9.0.3
python3-setuptools-rust: upgrade 1.12.0 -> 1.12.1
python3-testtools: upgrade 2.8.7 -> 2.9.0
python3-zipp: upgrade 3.23.0 -> 3.23.1
repo: upgrade 2.61.1 -> 2.62
resolvconf: upgrade 1.94 -> 1.95
sqlite3: upgrade 3.51.3 -> 3.53.0
stress-ng: upgrade 0.20.01 -> 0.21.00
vala: upgrade 0.56.18 -> 0.56.19
wayland-protocols: upgrade 1.47 -> 1.48
xserver-xorg: upgrade 21.1.21 -> 21.1.22
libmicrohttpd: upgrade 1.0.2 -> 1.0.5
python3-cryptography(-vectors): upgrade 46.0.5 -> 46.0.7
u-boot: upgrade 2026.01 -> 2026.04
Zk47T (2):
meta-selftest: add usegroup-deponly recipe to test USERADD_DEPENDS only
oe-selftest: add test for useradd with only USERADD_DEPENDS
Change-Id: Icbbd748f12680ef280568abd6fe02a84a697c69a
Signed-off-by: Patrick Williams <patrick@stwcx.xyz>
|
|
Adam Blank (1):
package: update the comment block explaining 'emit_pkgdata'
Adarsh Jagadish Kamini (1):
vim: update to 9.2.0340 to fix CVEs
Adrian Freihofer (4):
oe-selftest: devtool: GDB breakpoint after std::vector is constructed
oe-selftest: devtool: use assertRegex to match test output for meson
oe-selftest/cpp-example: fix conf file ownership with static UIDs/GIDs
devtool: ide-sdk: use TOOLCHAIN not TCOVERRIDE
Benjamin Robin (4):
cve_check: Improve escaping of special characters in CPE 2.3
cve_check: do not break old CVE_PRODUCT with escaped +
gtk+: Remove escaping of the plus sign in `CVE_PRODUCT`
webkitgtk: Remove escaping of the plus sign in `CVE_PRODUCT`
Daniel Turull (1):
python3-kirk: upgrade 4.0.0 -> 4.1.0
Fabio Estevam (1):
mtd-utils: Upgrade to 2.3.1
Harish Sadineni (1):
binutils: Set status for CVE-2025-69649
Khem Raj (11):
db: Pin to use C99 std
flex: Fix build with autoconf-2.74 and gcc <= 13
sudo: Fix build with std=gnu23
bind: Fix build with std=gnu23
strace: Fix build with std=gnu23
rsync: Add packageconfig to use system zlib
time: Use upstream applied patches
vulkan-samples: Upgrade to latest tip of trunk
bluez: Fix linking with lld linker
pulseaudio: Fix build with LLD linker
avahi-libnss-mdns: Fix build with LLD linker
Mahesh Angadi (1):
weston: backport gl-shaders fix to avoid shader compiler crashes
Martin Jansa (4):
apr: fix build with autoconf-2.73
apr: remove -std=gnu23 from apr_rules.mk to fix reproducibility
apr: remove space before the -std=gnu23 from apr_rules.mk
dbus: use ${PN} in pkg_postinst instead of 'dbus'
Mohammad Rafi Shaik (1):
alsa-ucm-conf: Add GLYMUR CRD HiFi config
Peter Kjellerstedt (1):
gstreamer1.0-plugins-bad: Add fdkaac as a package feature
Peter Marko (17):
libpng: upgrade 1.6.55 -> 1.6.56
xserver-org: update CVE_PRODUCT
go: set status for CVE-2024-24786
libexif: upgrade 0.6.25 -> 0.6.26
bind: upgrade 9.20.20 -> 9.20.22
openssh: upgrade 10.2p1 -> 10.3p1
grub: set status for CVE-2024-49504
grub: set status for 6 CVEs fixed in 2.14
libarchive: upgrade 3.8.6 -> 3.8.7
kea: upgrade 3.0.2 -> 3.0.3
inetutils: patch CVE-2026-32746
xwayland: set status for CVE-2024-21886
xdg-utils: set status for CVE-2025-52968
tar: set status for CVE-2025-45582
screen: set status for CVE-2025-46802
ovmf: set status for CVE-2024-1298
mpg123: set status for CVE-2006-3355
Richard Purdie (2):
strace: Fix reproducibility issue
strace: PR bump due to reproducibility issues
Ross Burton (10):
systemtap: add option for readline
graphene: ignore CVE-2024-1984
re2c: backport fix for CVE-2026-2903
perl: link to the system zlib instead of a vendored copy
perl: link to the system bzip2 instead of a vendored copy
rsync: always use the system zlib
rsync: update comment about out-of-tree builds
wic: set CVE_PRODUCT
libinput: backport fixes for CVE-2026-35093 and CVE-2026-35094
glib-networking: backport fixes for CVE-2025-60018 and CVE-2025-60019
Rouven Rastetter (2):
kernel-fit-image: Fix support for initramfs multiconfig
qemuboot-x86.inc: Allow override of QB_AUDIO_*
Sunil Dora (1):
rust: enable fully static linking with TCLIBC=musl
Vivek Puar (1):
linux-firmware: upgrade 20260309 -> 20260410
Yash Gupta (1):
weston-init: set require-outputs=none to allow startup without connected display
Yoann Congal (2):
oeqa/selftest/devtool: add vulkan feature check for test needing it
oeqa/selftest/sstatetests: add wayland feature check for test needing it
Zk47T (2):
useradd.bbclass: allow inheriting with only USERADD_DEPENDS set
oe-pkgdata-util: improve lookup-pkg error for RPROVIDES packages
Zoltán Böszörményi (1):
ovmf: Fix build with GCC 16 and GLIBC 2.43
mark.yang (1):
clang: consolidate sysroot compiler-rt search path patches
Change-Id: I36bfa7183f83886a88ca2edcf1e0bcb0f7f67d04
Signed-off-by: Patrick Williams <patrick@stwcx.xyz>
|
|
Poky has been deprecated and instead we are expected to have individual
layers. Move the openembedded-core sourced directories to a separate
upstream-layers directory in preparation for this and clean out any
old poky content that is not present in openembedded-core.
Signed-off-by: Patrick Williams <patrick@stwcx.xyz>
Change-Id: Id969d4852ffc4b0188ea2262c7ec0fe8fea935fe
|