[oe-commits] [openembedded-core] branch warrior-next updated (952bfcc -> 03b303d)

git at git.openembedded.org git at git.openembedded.org
Thu Nov 7 21:56:47 UTC 2019


This is an automated email from the git hooks/post-receive script.

rpurdie pushed a change to branch warrior-next
in repository openembedded-core.

    from 952bfcc  curl: fix CVE-2019-5435 CVE-2019-5436
     add 9422bf4  binutils: fix CVE-2019-12972 CVE-2019-9071
     add 789be0b  binutils: CVE-2019-9070 is same as CVE-2019-9071
     add feb8ba6  python: fix CVE-2019-9740
     add 7a3b5f2  libxslt: fix CVE-2019-13117 CVE-2019-13118
     add 408950d  glibc: CVE-2018-20796 is same as CVE-2019-9169
     add 9be3480  libid3tag: handle unknown encodings (CVE-2017-11550)
     add 2034398  libid3tag: CVE-2017-11551 is the same as CVE-2004-2779
     add c4fcc2d  tiff: fix CVE-2019-6128
     add 3c036ee  tiff: fix CVE-2019-7663
     add 522ac5f  libsdl: CVE fixes
     add 5071352  gstreamer1.0-vaapi: backport jpeg encode/decode fixes
     add bbbd16f  package: Improve determinism
     add 78193d3  patch: fix CVE-2019-13636
     add 8662617  python3: fix CVE-2019-9740
     add 4f60878  ghostscript: fix CVE-2019-3839
     add b6daf8a  rng-tools: fix very long shutdown delay with systemd
     add 423115b  psmisc: Fix dependency for USE_NLS=no
     add fe6546a  package.bbclass: fix directories setuid and setgid bits
     add a898245  qemu: add a patch fixing the native build on newer kernels
     add 6387d3a  mesa: Update 19.0.1 -> 19.0.8
     add 0b73e48  qemu: fix CVE-2018-20815
     add cd6de42  linux-yocto/4.19: update to 4.19.57 and -rt22
     add e199538  linux-yocto/4.19: update to v4.19.61
     add 219befc  boost: Fix build and enable context and coroutines on aarch64
     add 93ce131  rsync: fix CVEs for included zlib
     add 87106ff  patch: fix CVE-2019-13638
     add 1a35272  patch: backport fixes
     add 51fb102  dpkg: Use less as pager
     add 612a4c4  icecc.bbclass: catch subprocess.CalledProcessError
     add 0ccf907  meson: backport fix for builds with -Werror=return-type
     add efd32b0  powertop: import a fix from buildroot
     add 41579d5  binutils: fix CVE-2019-14250 CVE-2019-14444
     add d2ce91d  pango: fix CVE-2019-1010238
     add b7bc9c1  glib-2.0: fix CVE-2019-13012
     add 7edf572  gcc: reduce the variables in symtab
     add a3b083f  gcc: CVE-2018-12886
     add 21c5945  binutils: Fix mips patch which changes default emulation
     add 2735718  glibc: Fix multilibs + usrmerge builds
     add f7a5812  glibc-locale: Fix build error with PACKAGE_NO_GCONV = "1"
     add 36c223e  glibc/glibc-locale: Fix do_stash_locale to work with usrmerge and multilibs
     add 7e62ca2  glibc / glibc-locale: Fix stash_locale determinism problems
     add 125c77b  gcc-8.3: Security fix for CVE-2019-14250
     add 6b4c4fb  kernel-fitimage: uboot-sign: fix missing signature
     add ef7a387  kernel-devsrc: tweak for v5.3+
     add 9a271cf  libxcrypt: Fix the build with -Os
     add 4e110b7  libgpg-error: Fix build with gawk 5.x
     add d2e5558  Curl: Security fix for CVE-2019-5482
     add a579b11  gcc: Security fix for CVE-2019-15847
     add 5173092  multilib.bbclass: Reduce ALTERNATIVE_PRIORITY for extended recipes
     add 441a2b8  useradd: Fix build architecture corruption of sstate artefacts
     add 7f98309  useradd: Ensure do_populate_sysroot has dependency on useradd variables
     add 933a85e  uboot: fixes to uboot-extlinux-config attribute values
     add 91c42f9  kernel-uboot: compress arm64 kernels
     add 8c87e78  cve-check: backport rewrite from master
     add 20a6147  qemuarm64: Add QB_CPU_KVM to allow kvm acceleration
     add acc0f4a  runqemu: Add support for kvm on aarch64
     add 845b9a4  python: update to 3.7.3
     add 6b7604c  python3: upgrade 3.7.3 -> 3.7.4
     add 07b19cd  json-c: Don't --enable-rdrand
     add 7f13e4e  qemu: Fix CVE-2019-8934
     add 8bc35e7  unzip: Fix CVE-2019-13232
     add 66c05bb  classes/image-live.bbclass: Don't hardcode cpio.gz
     add 8b97034  systemd: update SRCREV for systemd v241-stable
     add fbedc2d  qemu: fix build issue on new hosts with glibc 2.30
     add 9051c10  meson: Fix native patch to python3
     add b6e17af  uninative: Update to 2.7 release
     add 6ab0206  kernel.bbclass: fix installation of modules signing certificates
     add c5d2ca3  gnutls:upgrade 3.6.7 -> 3.6.8
     add 47196ab  linux-yocto/5.0: bsp: add basic xilinx zynqmp support
     add 6c2c6be  linux-yocto/5.0: make scsi-debug include scsi core configs
     add 61eed76  linux-yocto: bsp/beaglebone: support qemu -machine virt
     add a45a6e1  linux-yocto: arch/x86/boot: use prefix map to avoid embedded paths
     add f5ae401  kernel-yocto: import security fragments from meta-security
     add 2b7444e  linux-yocto/4.19: make drm-bochs feature available
     add 132fb93  linux-yocto: add drm-bochs support
     add fe2d5b0  libcroco: Fix two CVEs
     add e73d5bb  python: include CVE patches for python-native as well
     add f83ecba  python: add tk-lib as runtime dependency for python-tkinter
     add 49ff6c7  python: CVE-2019-16056
     add 23d48f2  python: Fix CVE-2019-10160
     add 041fb27  openssl: make OPENSSL_ENGINES match install path
     add a981d9b  libgcrypt: fix CVE-2019-12904
     add 650dd94  sudo: fix CVE-2019-14287
     add 5fc9b15  go: fix CVE-2019-16276
     add 14f04e6  qemu: update to 3.1.1.1
     add 726c3b9  build-appliance-image: Update to warrior head revision
     new 4e642e6  go: update 1.12.1->1.12.5
     new 8dfe441  go: Upgrade 1.12.5 -> 1.12.6
     new 03b303d  go-1.12: update to 1.12.9 minor release

The 3 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails.  The revisions
listed as "add" were already present in the repository and have only
been added to this reference.


Summary of changes:
 meta/classes/cve-check.bbclass                     | 142 ++--
 meta/classes/icecc.bbclass                         |   6 +-
 meta/classes/image-live.bbclass                    |   2 +-
 meta/classes/kernel-uboot.bbclass                  |   4 -
 meta/classes/kernel.bbclass                        |   2 +-
 meta/classes/multilib.bbclass                      |  47 ++
 meta/classes/package.bbclass                       |   5 +-
 meta/classes/staging.bbclass                       |   2 +-
 meta/classes/uboot-extlinux-config.bbclass         |  13 +-
 meta/classes/uboot-sign.bbclass                    |   4 +-
 meta/classes/useradd.bbclass                       |   7 +-
 meta/conf/distro/include/maintainers.inc           |   1 +
 meta/conf/distro/include/yocto-uninative.inc       |  10 +-
 meta/conf/machine/qemuarm64.conf                   |   1 +
 meta/lib/oe/package.py                             |   2 +-
 .../recipes-connectivity/openssl/openssl_1.1.1b.bb |   2 +-
 .../glib-2.0/glib-2.0/CVE-2019-13012.patch         |  40 +
 meta/recipes-core/glib-2.0/glib-2.0_2.58.3.bb      |   1 +
 meta/recipes-core/glibc/glibc-locale.inc           |   6 +
 meta/recipes-core/glibc/glibc-mtrace.inc           |   3 +
 meta/recipes-core/glibc/glibc-package.inc          |  61 +-
 meta/recipes-core/glibc/glibc-scripts.inc          |   3 +
 meta/recipes-core/glibc/glibc/CVE-2019-9169.patch  |   1 +
 meta/recipes-core/glibc/glibc_2.29.bb              |   1 -
 .../images/build-appliance-image_15.0.0.bb         |   2 +-
 meta/recipes-core/libxcrypt/libxcrypt.bb           |   4 +-
 meta/recipes-core/meta/cve-update-db-native.bb     | 195 +++++
 meta/recipes-core/systemd/systemd.inc              |   2 +-
 meta/recipes-devtools/binutils/binutils-2.32.inc   |   4 +
 ...Change-default-emulation-for-mips64-linux.patch |   9 +-
 .../binutils/binutils/CVE-2019-12972.patch         |  51 ++
 .../binutils/binutils/CVE-2019-14250.patch         |  33 +
 .../binutils/binutils/CVE-2019-14444.patch         |  28 +
 .../binutils/binutils/CVE-2019-9071.patch          | 165 +++++
 .../cve-check-tool/cve-check-tool_5.6.4.bb         |  62 --
 ...01-Fix-freeing-memory-allocated-by-sqlite.patch |  50 --
 ...ow-overriding-default-CA-certificate-file.patch | 215 ------
 ...ogress-in-percent-when-downloading-CVE-db.patch | 135 ----
 ...are-computed-vs-expected-sha256-digit-str.patch |  52 --
 .../check-for-malloc_trim-before-using-it.patch    |  51 --
 meta/recipes-devtools/dpkg/dpkg/pager.patch        |  21 +
 meta/recipes-devtools/dpkg/dpkg_1.19.4.bb          |   1 +
 meta/recipes-devtools/gcc/gcc-8.3.inc              |   6 +
 .../gcc/gcc-8.3/0042-PR-debug-86964.patch          |  94 +++
 ...vent-spilling-of-stack-protector-guard-s-.patch | 813 +++++++++++++++++++++
 .../gcc/gcc-8.3/CVE-2019-14250.patch               |  44 ++
 .../gcc/gcc-8.3/CVE-2019-15847_p1.patch            | 521 +++++++++++++
 .../gcc/gcc-8.3/CVE-2019-15847_p2.patch            |  77 ++
 .../gcc/gcc-8.3/CVE-2019-15847_p3.patch            |  45 ++
 meta/recipes-devtools/go/go-1.12.inc               |   7 +-
 ...nch.go1.12-security-net-textproto-don-t-n.patch | 163 +++++
 meta/recipes-devtools/json-c/json-c_0.13.1.bb      |   2 -
 meta/recipes-devtools/meson/meson.inc              |   1 +
 ...-return-statements-that-are-seen-with-Wer.patch |  84 +++
 .../meson/meson/0003-native_bindir.patch           |   2 +-
 ...k-temporary-file-on-failed-ed-style-patch.patch |  93 +++
 ...ak-temporary-file-on-failed-multi-file-ed.patch |  80 ++
 ...ke-ed-directly-instead-of-using-the-shell.patch |  44 ++
 .../patch/patch/CVE-2019-13636.patch               | 113 +++
 meta/recipes-devtools/patch/patch_2.7.6.bb         |   4 +
 meta/recipes-devtools/python/python.inc            |   5 +
 ...55-Dont-parse-domains-containing-GH-13079.patch |  90 +++
 .../python/python/CVE-2019-9740.patch              | 215 ++++++
 .../python/python/bpo-36742-cve-2019-10160.patch   |  81 ++
 ...ysconfig-append-STAGING_LIBDIR-python-sys.patch |   2 +-
 ...2-distutils-prefix-is-inside-staging-area.patch |   2 +-
 .../python/python3/CVE-2018-20852.patch            | 124 ----
 .../python/python3/CVE-2019-9636.patch             | 154 ----
 .../python/{python3_3.7.2.bb => python3_3.7.4.bb}  |  10 +-
 meta/recipes-devtools/python/python_2.7.16.bb      |   8 +-
 ...qemu-native_3.1.0.bb => qemu-native_3.1.1.1.bb} |   0
 ...tive_3.1.0.bb => qemu-system-native_3.1.1.1.bb} |   0
 meta/recipes-devtools/qemu/qemu.inc                |  15 +-
 .../0001-egl-headless-add-egl_create_context.patch |  50 --
 ...nux-user-assume-__NR_gettid-always-exists.patch |  49 ++
 ...rename-gettid-to-sys_gettid-to-avoid-clas.patch |  95 +++
 .../qemu/qemu/0014-fix-CVE-2018-16872.patch        |  85 ---
 ...fix-to-handle-variably-sized-SIOCGSTAMP-w.patch | 339 +++++++++
 .../qemu/qemu/0015-fix-CVE-2018-20124.patch        |  60 --
 .../qemu/qemu/0016-fix-CVE-2018-20125.patch        |  54 --
 .../qemu/qemu/0017-fix-CVE-2018-20126.patch        | 113 ---
 .../qemu/qemu/0018-fix-CVE-2018-20191.patch        |  47 --
 .../qemu/qemu/0019-fix-CVE-2018-20216.patch        |  85 ---
 .../recipes-devtools/qemu/qemu/CVE-2019-3812.patch |  39 -
 .../qemu/{qemu_3.1.0.bb => qemu_3.1.1.1.bb}        |   0
 .../rsync/files/CVE-2016-9840.patch                |  75 ++
 .../rsync/files/CVE-2016-9841.patch                | 228 ++++++
 .../rsync/files/CVE-2016-9842.patch                |  33 +
 .../rsync/files/CVE-2016-9843.patch                |  53 ++
 meta/recipes-devtools/rsync/rsync_3.1.3.bb         |   4 +
 .../ghostscript/CVE-2019-3839-0008.patch           | 440 +++++++++++
 .../ghostscript/ghostscript_9.26.bb                |   1 +
 meta/recipes-extended/psmisc/psmisc.inc            |   2 +-
 .../sudo/sudo/CVE-2019-14287-1.patch               | 178 +++++
 .../sudo/sudo/CVE-2019-14287-2.patch               | 112 +++
 meta/recipes-extended/sudo/sudo_1.8.27.bb          |   2 +
 .../unzip/unzip/CVE-2019-13232_p1.patch            |  33 +
 .../unzip/unzip/CVE-2019-13232_p2.patch            | 356 +++++++++
 .../unzip/unzip/CVE-2019-13232_p3.patch            | 121 +++
 meta/recipes-extended/unzip/unzip_6.0.bb           |   3 +
 .../libsdl/libsdl-1.2.15/CVE-2019-7572.patch       | 114 +++
 .../libsdl/libsdl-1.2.15/CVE-2019-7574.patch       |  68 ++
 .../libsdl/libsdl-1.2.15/CVE-2019-7575.patch       |  81 ++
 .../libsdl/libsdl-1.2.15/CVE-2019-7576.patch       |  80 ++
 .../libsdl/libsdl-1.2.15/CVE-2019-7577.patch       | 123 ++++
 .../libsdl/libsdl-1.2.15/CVE-2019-7578.patch       |  64 ++
 .../libsdl/libsdl-1.2.15/CVE-2019-7635.patch       |  63 ++
 .../libsdl/libsdl-1.2.15/CVE-2019-7637.patch       | 192 +++++
 .../libsdl/libsdl-1.2.15/CVE-2019-7638.patch       |  38 +
 meta/recipes-graphics/libsdl/libsdl_1.2.15.bb      |   9 +
 .../mesa/{mesa-gl_19.0.1.bb => mesa-gl_19.0.8.bb}  |   0
 .../mesa/{mesa_19.0.1.bb => mesa_19.0.8.bb}        |   4 +-
 .../pango/pango/CVE-2019-1010238.patch             |  38 +
 meta/recipes-graphics/pango/pango_1.42.4.bb        |   4 +-
 meta/recipes-kernel/linux/kernel-devsrc.bb         |   4 +-
 meta/recipes-kernel/linux/linux-yocto-dev.bb       |   2 +-
 meta/recipes-kernel/linux/linux-yocto-rt_4.19.bb   |   8 +-
 meta/recipes-kernel/linux/linux-yocto-rt_5.0.bb    |   6 +-
 meta/recipes-kernel/linux/linux-yocto-tiny_4.19.bb |   8 +-
 meta/recipes-kernel/linux/linux-yocto-tiny_5.0.bb  |   6 +-
 meta/recipes-kernel/linux/linux-yocto_4.19.bb      |  22 +-
 meta/recipes-kernel/linux/linux-yocto_5.0.bb       |  21 +-
 .../0001-wakeup_xxx.h-include-limits.h.patch       |  55 ++
 meta/recipes-kernel/powertop/powertop_2.10.bb      |   1 +
 ...der-release-VA-buffers-after-vaEndPicture.patch |  45 ++
 ...ibs-encoder-jpeg-set-component-id-and-Tqi.patch |  65 ++
 .../gstreamer/gstreamer1.0-vaapi_1.14.4.bb         |   2 +
 .../libid3tag/libid3tag/10_utf16.patch             |   1 +
 .../libid3tag/libid3tag/unknown-encoding.patch     |  39 +
 .../libid3tag/libid3tag_0.15.1b.bb                 |   1 +
 .../libtiff/tiff/CVE-2019-6128.patch               |  52 ++
 .../libtiff/tiff/CVE-2019-7663.patch               |  77 ++
 meta/recipes-multimedia/libtiff/tiff_4.0.10.bb     |   3 +-
 meta/recipes-support/boost/boost.inc               |   2 +
 meta/recipes-support/curl/curl/CVE-2019-5482.patch |  65 ++
 meta/recipes-support/curl/curl_7.64.1.bb           |   1 +
 .../gnutls/{gnutls_3.6.7.bb => gnutls_3.6.8.bb}    |   4 +-
 .../libcroco/libcroco/CVE-2017-8834_71.patch       |  38 +
 meta/recipes-support/libcroco/libcroco_0.6.12.bb   |   1 +
 .../files/0001-Prefetch-GCM-look-up-tables.patch   |  90 +++
 ...ok-up-tables-to-.data-section-and-unshare.patch | 332 +++++++++
 ...ok-up-table-to-.data-section-and-unshare-.patch | 178 +++++
 meta/recipes-support/libgcrypt/libgcrypt_1.8.4.bb  |   3 +
 .../libgpg-error-1.35-gawk5-support.patch          | 161 ++++
 .../libgpg-error/libgpg-error_1.35.bb              |   1 +
 .../libxslt/files/CVE-2019-13117.patch             |  33 +
 .../libxslt/files/CVE-2019-13118.patch             |  76 ++
 meta/recipes-support/libxslt/libxslt_1.1.33.bb     |   2 +
 .../rng-tools/rng-tools/rngd.service               |   3 +-
 scripts/runqemu                                    |  22 +-
 150 files changed, 7736 insertions(+), 1574 deletions(-)
 create mode 100644 meta/recipes-core/glib-2.0/glib-2.0/CVE-2019-13012.patch
 create mode 100644 meta/recipes-core/meta/cve-update-db-native.bb
 create mode 100644 meta/recipes-devtools/binutils/binutils/CVE-2019-12972.patch
 create mode 100644 meta/recipes-devtools/binutils/binutils/CVE-2019-14250.patch
 create mode 100644 meta/recipes-devtools/binutils/binutils/CVE-2019-14444.patch
 create mode 100644 meta/recipes-devtools/binutils/binutils/CVE-2019-9071.patch
 delete mode 100644 meta/recipes-devtools/cve-check-tool/cve-check-tool_5.6.4.bb
 delete mode 100644 meta/recipes-devtools/cve-check-tool/files/0001-Fix-freeing-memory-allocated-by-sqlite.patch
 delete mode 100644 meta/recipes-devtools/cve-check-tool/files/0001-curl-allow-overriding-default-CA-certificate-file.patch
 delete mode 100644 meta/recipes-devtools/cve-check-tool/files/0001-print-progress-in-percent-when-downloading-CVE-db.patch
 delete mode 100644 meta/recipes-devtools/cve-check-tool/files/0001-update-Compare-computed-vs-expected-sha256-digit-str.patch
 delete mode 100644 meta/recipes-devtools/cve-check-tool/files/check-for-malloc_trim-before-using-it.patch
 create mode 100644 meta/recipes-devtools/dpkg/dpkg/pager.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/0042-PR-debug-86964.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/0043-PR85434-Prevent-spilling-of-stack-protector-guard-s-.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/CVE-2019-14250.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/CVE-2019-15847_p1.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/CVE-2019-15847_p2.patch
 create mode 100644 meta/recipes-devtools/gcc/gcc-8.3/CVE-2019-15847_p3.patch
 create mode 100644 meta/recipes-devtools/go/go-1.12/0001-release-branch.go1.12-security-net-textproto-don-t-n.patch
 create mode 100644 meta/recipes-devtools/meson/meson/0001-Fix-missing-return-statements-that-are-seen-with-Wer.patch
 create mode 100644 meta/recipes-devtools/patch/patch/0001-Don-t-leak-temporary-file-on-failed-ed-style-patch.patch
 create mode 100644 meta/recipes-devtools/patch/patch/0001-Don-t-leak-temporary-file-on-failed-multi-file-ed.patch
 create mode 100644 meta/recipes-devtools/patch/patch/0001-Invoke-ed-directly-instead-of-using-the-shell.patch
 create mode 100644 meta/recipes-devtools/patch/patch/CVE-2019-13636.patch
 create mode 100644 meta/recipes-devtools/python/python/0001-2.7-bpo-34155-Dont-parse-domains-containing-GH-13079.patch
 create mode 100644 meta/recipes-devtools/python/python/CVE-2019-9740.patch
 create mode 100644 meta/recipes-devtools/python/python/bpo-36742-cve-2019-10160.patch
 delete mode 100644 meta/recipes-devtools/python/python3/CVE-2018-20852.patch
 delete mode 100644 meta/recipes-devtools/python/python3/CVE-2019-9636.patch
 rename meta/recipes-devtools/python/{python3_3.7.2.bb => python3_3.7.4.bb} (97%)
 rename meta/recipes-devtools/qemu/{qemu-native_3.1.0.bb => qemu-native_3.1.1.1.bb} (100%)
 rename meta/recipes-devtools/qemu/{qemu-system-native_3.1.0.bb => qemu-system-native_3.1.1.1.bb} (100%)
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0001-egl-headless-add-egl_create_context.patch
 create mode 100644 meta/recipes-devtools/qemu/qemu/0001-linux-user-assume-__NR_gettid-always-exists.patch
 create mode 100644 meta/recipes-devtools/qemu/qemu/0001-linux-user-rename-gettid-to-sys_gettid-to-avoid-clas.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0014-fix-CVE-2018-16872.patch
 create mode 100644 meta/recipes-devtools/qemu/qemu/0014-linux-user-fix-to-handle-variably-sized-SIOCGSTAMP-w.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0015-fix-CVE-2018-20124.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0016-fix-CVE-2018-20125.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0017-fix-CVE-2018-20126.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0018-fix-CVE-2018-20191.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/0019-fix-CVE-2018-20216.patch
 delete mode 100644 meta/recipes-devtools/qemu/qemu/CVE-2019-3812.patch
 rename meta/recipes-devtools/qemu/{qemu_3.1.0.bb => qemu_3.1.1.1.bb} (100%)
 create mode 100644 meta/recipes-devtools/rsync/files/CVE-2016-9840.patch
 create mode 100644 meta/recipes-devtools/rsync/files/CVE-2016-9841.patch
 create mode 100644 meta/recipes-devtools/rsync/files/CVE-2016-9842.patch
 create mode 100644 meta/recipes-devtools/rsync/files/CVE-2016-9843.patch
 create mode 100644 meta/recipes-extended/ghostscript/ghostscript/CVE-2019-3839-0008.patch
 create mode 100644 meta/recipes-extended/sudo/sudo/CVE-2019-14287-1.patch
 create mode 100644 meta/recipes-extended/sudo/sudo/CVE-2019-14287-2.patch
 create mode 100644 meta/recipes-extended/unzip/unzip/CVE-2019-13232_p1.patch
 create mode 100644 meta/recipes-extended/unzip/unzip/CVE-2019-13232_p2.patch
 create mode 100644 meta/recipes-extended/unzip/unzip/CVE-2019-13232_p3.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7572.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7574.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7575.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7576.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7577.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7578.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7635.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7637.patch
 create mode 100644 meta/recipes-graphics/libsdl/libsdl-1.2.15/CVE-2019-7638.patch
 rename meta/recipes-graphics/mesa/{mesa-gl_19.0.1.bb => mesa-gl_19.0.8.bb} (100%)
 rename meta/recipes-graphics/mesa/{mesa_19.0.1.bb => mesa_19.0.8.bb} (85%)
 create mode 100644 meta/recipes-graphics/pango/pango/CVE-2019-1010238.patch
 create mode 100644 meta/recipes-kernel/powertop/powertop/0001-wakeup_xxx.h-include-limits.h.patch
 create mode 100644 meta/recipes-multimedia/gstreamer/gstreamer1.0-vaapi/0001-libs-decoder-release-VA-buffers-after-vaEndPicture.patch
 create mode 100644 meta/recipes-multimedia/gstreamer/gstreamer1.0-vaapi/0001-libs-encoder-jpeg-set-component-id-and-Tqi.patch
 create mode 100644 meta/recipes-multimedia/libid3tag/libid3tag/unknown-encoding.patch
 create mode 100644 meta/recipes-multimedia/libtiff/tiff/CVE-2019-6128.patch
 create mode 100644 meta/recipes-multimedia/libtiff/tiff/CVE-2019-7663.patch
 create mode 100644 meta/recipes-support/curl/curl/CVE-2019-5482.patch
 rename meta/recipes-support/gnutls/{gnutls_3.6.7.bb => gnutls_3.6.8.bb} (93%)
 create mode 100644 meta/recipes-support/libcroco/libcroco/CVE-2017-8834_71.patch
 create mode 100644 meta/recipes-support/libgcrypt/files/0001-Prefetch-GCM-look-up-tables.patch
 create mode 100644 meta/recipes-support/libgcrypt/files/0002-AES-move-look-up-tables-to-.data-section-and-unshare.patch
 create mode 100644 meta/recipes-support/libgcrypt/files/0003-GCM-move-look-up-table-to-.data-section-and-unshare-.patch
 create mode 100644 meta/recipes-support/libgpg-error/libgpg-error/libgpg-error-1.35-gawk5-support.patch
 create mode 100644 meta/recipes-support/libxslt/files/CVE-2019-13117.patch
 create mode 100644 meta/recipes-support/libxslt/files/CVE-2019-13118.patch

-- 
To stop receiving notification emails like this one, please contact
the administrator of this repository.


More information about the Openembedded-commits mailing list