[oe-commits] [openembedded-core] branch sumo updated (b4738c5 -> 82b0189)

git at git.openembedded.org git at git.openembedded.org
Wed Aug 29 14:24:20 UTC 2018


This is an automated email from the git hooks/post-receive script.

rpurdie pushed a change to branch sumo
in repository openembedded-core.

    from b4738c5  multilib_header: recognize BPF as a target
     new 1bd4851  bzip2: use Yocto Project mirror for SRC_URI
     new 0b0409a  libvorbis: CVE-2017-14160 CVE-2018-10393
     new 10569df  libvorbis: CVE-2018-10392
     new a5db618  classes: sanity-check LIC_FILES_CHKSUM
     new 6c3438a  alsa-lib: Cleanup packaging
     new ab3b009  wic/qemux86: don't pass ip parameter to kernel in wks
     new a1a5b0f  openssl: fix upstream version check for 1.0 version
     new e90da34  openssl: disable ccache usage
     new fcea508  openssl-nativesdk: Fix "can't open config file" warning
     new 000da57  openssl_1.1: avoid using += with an over-ride
     new 5da6681  openssl_1.1: minor recipe formatting tweaks etc
     new 5b4ffcb  openssl_1.0: merge openssl10.inc into the openssl_1.0.2o.bb recipe
     new 67cde33  openssl_1.0: minor recipe formatting tweaks etc
     new cf9f965  openssl_1.0: drop curly brackets from shell local variables
     new 201f4a8  openssl_1.0: fix cryptodev-linux PACKAGECONFIG support
     new 3936faf  openssl_1.0: drop leading "-" from no-ssl3 config option
     new 1aaca6b  openssl_1.0: avoid running make twice for target do_compile()
     new 7a5fd1c  openssl: remove uclibc remnants
     new ec24fcc  openssl: support musl-x32 build
     new 3e0290b  openssl: minor indent fixes
     new 4a136f8  openssl_1.0: drop obsolete ca.patch
     new 8aa33c1  openssl_1.0: drop obsolete exporting of AS, EX_LIBS and DIRS
     new ebe53ed  openssl_1.0: drop unmaintained darwin support
     new 061c17f  openssl_1.0: add PACKAGECONFIG option to control manpages
     new 0bda7fd  openssl_1.0: squash whitespace in CC_INFO
     new 33a9519  openssl: fix missing dependency on hostperl-runtime-native
     new 74524ec  openssl_1.0: drop unnecessary dependency on makedepend-native
     new 1b0dcca  openssl_1.0: drop unnecessary call to perlpath.pl from do_configure()
     new 4524d1f  openssl-1.1: fix c_rehash perl errors
     new 8423355  openssl: update 1.0.2o -> 1.0.2p
     new 784059d  openssl: update 1.1.0h -> 1.1.0i
     new 6123523  unzip: fix symlink problem
     new 97a52df  unzip: fix CVE-2018-1000035
     new 058bdd0  nasm: fix CVE-2018-8883 & CVE-2018-8882 & CVE-2018-10316
     new bca64ae  flac: CVE-2017-6888
     new 3e00059  libarchive: CVE-2017-14503
     new 39b1dc8  libsndfile1: CVE-2017-14245 CVE-2017-14246
     new 00da7ba  libsndfile1: CVE-2017-14634
     new a523bc6  coreutils: CVE-2017-18018
     new e05c9b1  libgcrypt: CVE-2018-0495
     new 229bb7c  git: CVE-2018-11235
     new f1c0da2  gnupg: CVE-2018-12020
     new a875522  shadow: CVE-2018-7169
     new 82d873a  procps: CVE-2018-1124
     new 4b6c84e  python: CVE-2018-1000030
     new 9f1d026  qemu: CVE-2018-7550
     new a11c8ee  qemu: CVE-2018-12617
     new 4aaf09b  perl: CVE-2018-6798
     new 109ffd1  perl: CVE-2018-6797
     new 0542779  perl: CVE-2018-6913
     new ca005cd  perl: CVE-2018-12015
     new 100d7f1  patch: fix CVE-2018-6952
     new 82b0189  swig: Remove superfluous python dependency

The 53 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails.  The revisions
listed as "add" were already present in the repository and have only
been added to this reference.


Summary of changes:
 meta/classes/base.bbclass                          |   4 +-
 meta/classes/license.bbclass                       |   4 +-
 .../openssl/openssl-1.0.2o/debian/ca.patch         |  22 --
 .../openssl/openssl-1.0.2o/find.pl                 |  54 ----
 .../openssl-util-perlpath.pl-cwd.patch             |  34 ---
 ...build-with-clang-using-external-assembler.patch |   0
 .../0001-allow-manpages-to-be-disabled.patch       |  31 +++
 ...penssl-force-soft-link-to-avoid-rare-race.patch |   0
 .../Makefiles-ptest.patch                          |  18 +-
 .../Use-SHA256-not-MD5-as-default-digest.patch     |   0
 .../configure-musl-target.patch                    |   0
 .../configure-targets.patch                        |   0
 .../debian/c_rehash-compat.patch                   |   0
 .../debian/debian-targets.patch                    |   0
 .../debian/man-dir.patch                           |   0
 .../debian/man-section.patch                       |   0
 .../debian/no-rpath.patch                          |   0
 .../debian/no-symbolic.patch                       |   0
 .../debian/pic.patch                               |   0
 .../debian1.0.2/block_digicert_malaysia.patch      |   0
 .../debian1.0.2/block_diginotar.patch              |   0
 .../debian1.0.2/soname.patch                       |   0
 .../debian1.0.2/version-script.patch               |   0
 .../engines-install-in-libdir-ssl.patch            |   0
 .../oe-ldflags.patch                               |   0
 .../openssl-c_rehash.sh                            |   0
 .../openssl-fix-des.pod-error.patch                |   0
 .../openssl_fix_for_x32.patch                      |   0
 .../parallel.patch                                 |  40 ++-
 .../ptest-deps.patch                               |   0
 .../ptest_makefile_deps.patch                      |   0
 .../reproducible-cflags.patch                      |   0
 .../reproducible-mkbuildinf.patch                  |   0
 .../{openssl-1.0.2o => openssl-1.0.2p}/run-ptest   |   0
 .../shared-libs.patch                              |   0
 .../openssl/openssl/environment.d-openssl.sh       |   1 +
 .../recipes-connectivity/openssl/openssl_1.0.2o.bb |  64 -----
 .../openssl/{openssl10.inc => openssl_1.0.2p.bb}   | 191 ++++++++-----
 .../{openssl_1.1.0h.bb => openssl_1.1.0i.bb}       | 123 +++++----
 .../coreutils/coreutils/CVE-2017-18018-1.patch     |  40 +++
 .../coreutils/coreutils/CVE-2017-18018-2.patch     |  83 ++++++
 meta/recipes-core/coreutils/coreutils_8.29.bb      |   2 +
 .../git/files/CVE-2018-11235.patch                 | 288 +++++++++++++++++++
 meta/recipes-devtools/git/git.inc                  |   3 +-
 ...t-we-are-not-reading-past-end-of-a-buffer.patch |  65 +++++
 .../0001-assemble-Check-global-line-limit.patch    |  50 ++++
 .../nasm/nasm/0001-fix-CVE-2018-8882.patch         |  30 ++
 meta/recipes-devtools/nasm/nasm_2.13.03.bb         |   3 +
 .../0001-Fix-swapping-fake-lines-in-pch_swap.patch |  36 +++
 meta/recipes-devtools/patch/patch_2.7.6.bb         |   1 +
 .../perl/perl/CVE-2018-12015.patch                 |  48 ++++
 .../recipes-devtools/perl/perl/CVE-2018-6797.patch |  45 +++
 .../perl/perl/CVE-2018-6798-1.patch                | 130 +++++++++
 .../perl/perl/CVE-2018-6798-2.patch                |  37 +++
 .../recipes-devtools/perl/perl/CVE-2018-6913.patch | 153 +++++++++++
 meta/recipes-devtools/perl/perl_5.24.1.bb          |   5 +
 meta/recipes-devtools/python/python.inc            |   4 +-
 .../python/python/CVE-2018-1000030-1.patch         | 138 ++++++++++
 .../python/python/CVE-2018-1000030-2.patch         | 306 +++++++++++++++++++++
 .../qemu/qemu/CVE-2018-12617.patch                 |  53 ++++
 .../recipes-devtools/qemu/qemu/CVE-2018-7550.patch |  62 +++++
 meta/recipes-devtools/qemu/qemu_2.11.1.bb          |   2 +
 meta/recipes-devtools/swig/swig.inc                |   2 +-
 meta/recipes-extended/bzip2/bzip2_1.0.6.bb         |   6 +-
 .../libarchive/libarchive/CVE-2017-14503.patch     |  33 +++
 .../libarchive/libarchive_3.3.2.bb                 |   1 +
 .../procps/procps/CVE-2018-1124.patch              | 176 ++++++++++++
 meta/recipes-extended/procps/procps_3.3.12.bb      |   1 +
 .../shadow/files/CVE-2018-7169.patch               | 186 +++++++++++++
 meta/recipes-extended/shadow/shadow.inc            |   1 +
 .../unzip/0001-unzip-fix-CVE-2018-1000035.patch    |  48 ++++
 meta/recipes-extended/unzip/unzip/symlink.patch    |  26 ++
 meta/recipes-extended/unzip/unzip_6.0.bb           |   2 +
 meta/recipes-multimedia/alsa/alsa-lib_1.1.5.bb     |  13 +-
 .../flac/files/CVE-2017-6888.patch                 |  31 +++
 meta/recipes-multimedia/flac/flac_1.3.2.bb         |   3 +-
 .../libsndfile1/CVE-2017-14245-14246.patch         | 121 ++++++++
 .../libsndfile/libsndfile1/CVE-2017-14634.patch    |  42 +++
 .../libsndfile/libsndfile1_1.0.28.bb               |   2 +
 .../libvorbis/libvorbis/CVE-2017-14160.patch       |  33 +++
 .../libvorbis/libvorbis/CVE-2018-10392.patch       |  29 ++
 .../libvorbis/libvorbis_1.3.5.bb                   |   3 +
 .../gnupg/gnupg/CVE-2018-12020.patch               |  47 ++++
 meta/recipes-support/gnupg/gnupg_2.2.4.bb          |   1 +
 .../libgcrypt/files/CVE-2018-0495.patch            |  76 +++++
 meta/recipes-support/libgcrypt/libgcrypt_1.8.2.bb  |   1 +
 scripts/lib/wic/canned-wks/qemux86-directdisk.wks  |   2 +-
 87 files changed, 2709 insertions(+), 347 deletions(-)
 delete mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.2o/debian/ca.patch
 delete mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.2o/find.pl
 delete mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.2o/openssl-util-perlpath.pl-cwd.patch
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/0001-Fix-build-with-clang-using-external-assembler.patch (100%)
 create mode 100644 meta/recipes-connectivity/openssl/openssl-1.0.2p/0001-allow-manpages-to-be-disabled.patch
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/0001-openssl-force-soft-link-to-avoid-rare-race.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/Makefiles-ptest.patch (87%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/Use-SHA256-not-MD5-as-default-digest.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/configure-musl-target.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/configure-targets.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/c_rehash-compat.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/debian-targets.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/man-dir.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/man-section.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/no-rpath.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/no-symbolic.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian/pic.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian1.0.2/block_digicert_malaysia.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian1.0.2/block_diginotar.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian1.0.2/soname.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/debian1.0.2/version-script.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/engines-install-in-libdir-ssl.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/oe-ldflags.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/openssl-c_rehash.sh (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/openssl-fix-des.pod-error.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/openssl_fix_for_x32.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/parallel.patch (92%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/ptest-deps.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/ptest_makefile_deps.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/reproducible-cflags.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/reproducible-mkbuildinf.patch (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/run-ptest (100%)
 rename meta/recipes-connectivity/openssl/{openssl-1.0.2o => openssl-1.0.2p}/shared-libs.patch (100%)
 create mode 100644 meta/recipes-connectivity/openssl/openssl/environment.d-openssl.sh
 delete mode 100644 meta/recipes-connectivity/openssl/openssl_1.0.2o.bb
 rename meta/recipes-connectivity/openssl/{openssl10.inc => openssl_1.0.2p.bb} (62%)
 rename meta/recipes-connectivity/openssl/{openssl_1.1.0h.bb => openssl_1.1.0i.bb} (52%)
 create mode 100644 meta/recipes-core/coreutils/coreutils/CVE-2017-18018-1.patch
 create mode 100644 meta/recipes-core/coreutils/coreutils/CVE-2017-18018-2.patch
 create mode 100644 meta/recipes-devtools/git/files/CVE-2018-11235.patch
 create mode 100644 meta/recipes-devtools/nasm/nasm/0001-Verify-that-we-are-not-reading-past-end-of-a-buffer.patch
 create mode 100644 meta/recipes-devtools/nasm/nasm/0001-assemble-Check-global-line-limit.patch
 create mode 100644 meta/recipes-devtools/nasm/nasm/0001-fix-CVE-2018-8882.patch
 create mode 100644 meta/recipes-devtools/patch/patch/0001-Fix-swapping-fake-lines-in-pch_swap.patch
 create mode 100644 meta/recipes-devtools/perl/perl/CVE-2018-12015.patch
 create mode 100644 meta/recipes-devtools/perl/perl/CVE-2018-6797.patch
 create mode 100644 meta/recipes-devtools/perl/perl/CVE-2018-6798-1.patch
 create mode 100644 meta/recipes-devtools/perl/perl/CVE-2018-6798-2.patch
 create mode 100644 meta/recipes-devtools/perl/perl/CVE-2018-6913.patch
 create mode 100644 meta/recipes-devtools/python/python/CVE-2018-1000030-1.patch
 create mode 100644 meta/recipes-devtools/python/python/CVE-2018-1000030-2.patch
 create mode 100644 meta/recipes-devtools/qemu/qemu/CVE-2018-12617.patch
 create mode 100644 meta/recipes-devtools/qemu/qemu/CVE-2018-7550.patch
 create mode 100644 meta/recipes-extended/libarchive/libarchive/CVE-2017-14503.patch
 create mode 100644 meta/recipes-extended/procps/procps/CVE-2018-1124.patch
 create mode 100644 meta/recipes-extended/shadow/files/CVE-2018-7169.patch
 create mode 100644 meta/recipes-extended/unzip/unzip/0001-unzip-fix-CVE-2018-1000035.patch
 create mode 100644 meta/recipes-extended/unzip/unzip/symlink.patch
 create mode 100644 meta/recipes-multimedia/flac/files/CVE-2017-6888.patch
 create mode 100644 meta/recipes-multimedia/libsndfile/libsndfile1/CVE-2017-14245-14246.patch
 create mode 100644 meta/recipes-multimedia/libsndfile/libsndfile1/CVE-2017-14634.patch
 create mode 100644 meta/recipes-multimedia/libvorbis/libvorbis/CVE-2017-14160.patch
 create mode 100644 meta/recipes-multimedia/libvorbis/libvorbis/CVE-2018-10392.patch
 create mode 100644 meta/recipes-support/gnupg/gnupg/CVE-2018-12020.patch
 create mode 100644 meta/recipes-support/libgcrypt/files/CVE-2018-0495.patch

-- 
To stop receiving notification emails like this one, please contact
the administrator of this repository.


More information about the Openembedded-commits mailing list