mbox

[walnascar,00/32] Patch review

Message ID cover.1749571556.git.steve@sakoman.com
State Not Applicable, archived
Delegated to: Steve Sakoman
Headers show

Pull-request

https://git.openembedded.org/openembedded-core-contrib stable/walnascar-nut

Message

Steve Sakoman June 10, 2025, 4:08 p.m. UTC
Please review this set of changes for walnascar and have comments back by
end of day Thursday, June 12

Passed a-full on autobuilder:

https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/1768

The following changes since commit a7322472e41c3cac922e29d867ae3f2f74318279:

  sstatetests: Switch to new CDN (2025-05-30 06:32:58 -0700)

are available in the Git repository at:

  https://git.openembedded.org/openembedded-core-contrib stable/walnascar-nut
  https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut

Changqing Li (25):
  libsoup-2.4: update patch 0001-CVE-2025-32911.patch
  libsoup-2.4: fix CVE-2025-32053
  libsoup-2.4: fix CVE-2025-2784
  libsoup-2.4: fix CVE-2024-52530
  libsoup-2.4: fix CVE-2025-32906
  libsoup-2.4: fix CVE-2025-32914
  libsoup-2.4: fix CVE-2025-46420
  libsoup-2.4: fix CVE-2025-46421
  libsoup-2.4: fix CVE-2025-32050
  libsoup-2.4: fix CVE-2025-32052
  libsoup-2.4: fix CVE-2025-32909
  libsoup-2.4: fix CVE-2025-32910
  libsoup-2.4: fix CVE-2025-32912
  libsoup-2.4: fix CVE-2024-52531
  libsoup-2.4: fix CVE-2025-4476
  libsoup: upgrade 3.6.4 -> 3.6.5
  libsoup-2.4: fix CVE-2025-32907
  libsoup-2.4: fix CVE-2025-4948
  libsoup-2.4: fix CVE-2025-4969
  libsoup: fix CVE-2025-32914
  libsoup: fix CVE-2025-4476
  libsoup: fix CVE-2025-32907
  libsoup: fix CVE-2025-32908
  libsoup: fix CVE-2025-4948
  libsoup: fix CVE-2025-4969

Deepesh Varatharajan (2):
  binutils: Fix CVE-2025-1181
  binutils: Fix CVE-2025-5244

Patrick Williams (1):
  systemd.bbclass: generate preset for templates

Peter Marko (1):
  python3: upgrade 3.13.3 -> 3.13.4

Ross Burton (2):
  python3: remove obsolete deletion of non-deterministic .pyc files
  python3: backport the full fix for importlib scanning invalid
    distributions

Trevor Gamblin (1):
  python3: upgrade 3.13.2 -> 3.13.3

 meta/classes-recipe/systemd.bbclass           |  11 +-
 .../binutils/binutils-2.44.inc                |   3 +
 .../binutils/0016-CVE-2025-1181-1.patch       | 141 ++++++++
 .../binutils/0016-CVE-2025-5244.patch         |  25 ++
 .../binutils/0017-CVE-2025-1181-2.patch       | 337 ++++++++++++++++++
 ...shebang-overflow-on-python-config.py.patch |   2 +-
 ...-use-prefix-value-from-build-configu.patch |   2 +-
 ...-qemu-wrapper-when-gathering-profile.patch |  14 +-
 ...sts-due-to-load-variability-on-YP-AB.patch |   6 +-
 ..._fileno-test-due-to-load-variability.patch |   2 +-
 ...ctive_children-skip-problematic-test.patch |   2 +-
 ...t_readline-skip-limited-history-test.patch |  10 +-
 ...orlines-skip-due-to-load-variability.patch |   2 +-
 .../python3/deterministic_imports.patch       |  39 --
 .../python/python3/makerace.patch             |   2 +-
 .../python/python3/valid-dists.patch          | 160 +++++++++
 .../{python3_3.13.2.bb => python3_3.13.4.bb}  |  18 +-
 .../libsoup-2.4/0001-CVE-2025-32911.patch     |   2 +-
 .../libsoup/libsoup-2.4/CVE-2024-52530.patch  | 150 ++++++++
 .../libsoup-2.4/CVE-2024-52531-1.patch        |  39 ++
 .../libsoup-2.4/CVE-2024-52531-2.patch        | 133 +++++++
 .../libsoup/libsoup-2.4/CVE-2025-2784.patch   |  56 +++
 .../libsoup/libsoup-2.4/CVE-2025-32050.patch  |  29 ++
 .../libsoup/libsoup-2.4/CVE-2025-32052.patch  |  32 ++
 .../libsoup/libsoup-2.4/CVE-2025-32053.patch  |  39 ++
 .../libsoup/libsoup-2.4/CVE-2025-32906.patch  |  71 ++++
 .../libsoup/libsoup-2.4/CVE-2025-32907.patch  |  39 ++
 .../libsoup/libsoup-2.4/CVE-2025-32909.patch  |  38 ++
 .../libsoup-2.4/CVE-2025-32910-1.patch        |  32 ++
 .../libsoup-2.4/CVE-2025-32910-2.patch        |  94 +++++
 .../libsoup-2.4/CVE-2025-32910-3.patch        |  28 ++
 .../libsoup/libsoup-2.4/CVE-2025-32912.patch  |  32 ++
 .../libsoup/libsoup-2.4/CVE-2025-32914.patch  |  35 ++
 .../libsoup/libsoup-2.4/CVE-2025-4476.patch   |  38 ++
 .../libsoup/libsoup-2.4/CVE-2025-46420.patch  |  61 ++++
 .../libsoup/libsoup-2.4/CVE-2025-46421.patch  |  47 +++
 .../libsoup/libsoup-2.4/CVE-2025-4948.patch   |  38 ++
 .../libsoup/libsoup-2.4/CVE-2025-4969.patch   |  37 ++
 .../libsoup/libsoup-2.4_2.74.3.bb             |  23 +-
 .../libsoup/libsoup/CVE-2025-32907-1.patch    | 200 +++++++++++
 .../libsoup/libsoup/CVE-2025-32907-2.patch    |  68 ++++
 .../libsoup/libsoup/CVE-2025-32908-1.patch    |  89 +++++
 .../libsoup/libsoup/CVE-2025-32908-2.patch    |  53 +++
 .../libsoup/libsoup/CVE-2025-32914.patch      | 112 ++++++
 .../libsoup/libsoup/CVE-2025-4476.patch       |  39 ++
 .../libsoup/libsoup/CVE-2025-4948.patch       |  97 +++++
 .../libsoup/libsoup/CVE-2025-4969.patch       |  78 ++++
 .../{libsoup_3.6.4.bb => libsoup_3.6.5.bb}    |  13 +-
 48 files changed, 2541 insertions(+), 77 deletions(-)
 create mode 100644 meta/recipes-devtools/binutils/binutils/0016-CVE-2025-1181-1.patch
 create mode 100644 meta/recipes-devtools/binutils/binutils/0016-CVE-2025-5244.patch
 create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2025-1181-2.patch
 delete mode 100644 meta/recipes-devtools/python/python3/deterministic_imports.patch
 create mode 100644 meta/recipes-devtools/python/python3/valid-dists.patch
 rename meta/recipes-devtools/python/{python3_3.13.2.bb => python3_3.13.4.bb} (95%)
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52530.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-1.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-2.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-2784.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32050.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32052.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32053.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32906.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32907.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32909.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-1.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-2.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-3.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32912.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32914.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4476.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46420.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46421.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4948.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4969.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32907-1.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32907-2.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32908-1.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32908-2.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32914.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4476.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4948.patch
 create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4969.patch
 rename meta/recipes-support/libsoup/{libsoup_3.6.4.bb => libsoup_3.6.5.bb} (83%)

Comments

Gundlupet Raju, Sandeep June 10, 2025, 5:11 p.m. UTC | #1
Hi Steve,

Below patch is missing in your merge, Can you add it?

[OE-core][scarthgap,walnascar,master][PATCH v3] tune-cortexr52: Remove 
aarch64 for ARM Cortex-R52

Thanks,
Sandeep

On 6/10/2025 10:08 AM, Steve Sakoman via lists.openembedded.org wrote:
> Please review this set of changes for walnascar and have comments back by
> end of day Thursday, June 12
>
> Passed a-full on autobuilder:
>
> https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/1768
>
> The following changes since commit a7322472e41c3cac922e29d867ae3f2f74318279:
>
>    sstatetests: Switch to new CDN (2025-05-30 06:32:58 -0700)
>
> are available in the Git repository at:
>
>    https://git.openembedded.org/openembedded-core-contrib stable/walnascar-nut
>    https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut
>
> Changqing Li (25):
>    libsoup-2.4: update patch 0001-CVE-2025-32911.patch
>    libsoup-2.4: fix CVE-2025-32053
>    libsoup-2.4: fix CVE-2025-2784
>    libsoup-2.4: fix CVE-2024-52530
>    libsoup-2.4: fix CVE-2025-32906
>    libsoup-2.4: fix CVE-2025-32914
>    libsoup-2.4: fix CVE-2025-46420
>    libsoup-2.4: fix CVE-2025-46421
>    libsoup-2.4: fix CVE-2025-32050
>    libsoup-2.4: fix CVE-2025-32052
>    libsoup-2.4: fix CVE-2025-32909
>    libsoup-2.4: fix CVE-2025-32910
>    libsoup-2.4: fix CVE-2025-32912
>    libsoup-2.4: fix CVE-2024-52531
>    libsoup-2.4: fix CVE-2025-4476
>    libsoup: upgrade 3.6.4 -> 3.6.5
>    libsoup-2.4: fix CVE-2025-32907
>    libsoup-2.4: fix CVE-2025-4948
>    libsoup-2.4: fix CVE-2025-4969
>    libsoup: fix CVE-2025-32914
>    libsoup: fix CVE-2025-4476
>    libsoup: fix CVE-2025-32907
>    libsoup: fix CVE-2025-32908
>    libsoup: fix CVE-2025-4948
>    libsoup: fix CVE-2025-4969
>
> Deepesh Varatharajan (2):
>    binutils: Fix CVE-2025-1181
>    binutils: Fix CVE-2025-5244
>
> Patrick Williams (1):
>    systemd.bbclass: generate preset for templates
>
> Peter Marko (1):
>    python3: upgrade 3.13.3 -> 3.13.4
>
> Ross Burton (2):
>    python3: remove obsolete deletion of non-deterministic .pyc files
>    python3: backport the full fix for importlib scanning invalid
>      distributions
>
> Trevor Gamblin (1):
>    python3: upgrade 3.13.2 -> 3.13.3
>
>   meta/classes-recipe/systemd.bbclass           |  11 +-
>   .../binutils/binutils-2.44.inc                |   3 +
>   .../binutils/0016-CVE-2025-1181-1.patch       | 141 ++++++++
>   .../binutils/0016-CVE-2025-5244.patch         |  25 ++
>   .../binutils/0017-CVE-2025-1181-2.patch       | 337 ++++++++++++++++++
>   ...shebang-overflow-on-python-config.py.patch |   2 +-
>   ...-use-prefix-value-from-build-configu.patch |   2 +-
>   ...-qemu-wrapper-when-gathering-profile.patch |  14 +-
>   ...sts-due-to-load-variability-on-YP-AB.patch |   6 +-
>   ..._fileno-test-due-to-load-variability.patch |   2 +-
>   ...ctive_children-skip-problematic-test.patch |   2 +-
>   ...t_readline-skip-limited-history-test.patch |  10 +-
>   ...orlines-skip-due-to-load-variability.patch |   2 +-
>   .../python3/deterministic_imports.patch       |  39 --
>   .../python/python3/makerace.patch             |   2 +-
>   .../python/python3/valid-dists.patch          | 160 +++++++++
>   .../{python3_3.13.2.bb => python3_3.13.4.bb}  |  18 +-
>   .../libsoup-2.4/0001-CVE-2025-32911.patch     |   2 +-
>   .../libsoup/libsoup-2.4/CVE-2024-52530.patch  | 150 ++++++++
>   .../libsoup-2.4/CVE-2024-52531-1.patch        |  39 ++
>   .../libsoup-2.4/CVE-2024-52531-2.patch        | 133 +++++++
>   .../libsoup/libsoup-2.4/CVE-2025-2784.patch   |  56 +++
>   .../libsoup/libsoup-2.4/CVE-2025-32050.patch  |  29 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32052.patch  |  32 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32053.patch  |  39 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32906.patch  |  71 ++++
>   .../libsoup/libsoup-2.4/CVE-2025-32907.patch  |  39 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32909.patch  |  38 ++
>   .../libsoup-2.4/CVE-2025-32910-1.patch        |  32 ++
>   .../libsoup-2.4/CVE-2025-32910-2.patch        |  94 +++++
>   .../libsoup-2.4/CVE-2025-32910-3.patch        |  28 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32912.patch  |  32 ++
>   .../libsoup/libsoup-2.4/CVE-2025-32914.patch  |  35 ++
>   .../libsoup/libsoup-2.4/CVE-2025-4476.patch   |  38 ++
>   .../libsoup/libsoup-2.4/CVE-2025-46420.patch  |  61 ++++
>   .../libsoup/libsoup-2.4/CVE-2025-46421.patch  |  47 +++
>   .../libsoup/libsoup-2.4/CVE-2025-4948.patch   |  38 ++
>   .../libsoup/libsoup-2.4/CVE-2025-4969.patch   |  37 ++
>   .../libsoup/libsoup-2.4_2.74.3.bb             |  23 +-
>   .../libsoup/libsoup/CVE-2025-32907-1.patch    | 200 +++++++++++
>   .../libsoup/libsoup/CVE-2025-32907-2.patch    |  68 ++++
>   .../libsoup/libsoup/CVE-2025-32908-1.patch    |  89 +++++
>   .../libsoup/libsoup/CVE-2025-32908-2.patch    |  53 +++
>   .../libsoup/libsoup/CVE-2025-32914.patch      | 112 ++++++
>   .../libsoup/libsoup/CVE-2025-4476.patch       |  39 ++
>   .../libsoup/libsoup/CVE-2025-4948.patch       |  97 +++++
>   .../libsoup/libsoup/CVE-2025-4969.patch       |  78 ++++
>   .../{libsoup_3.6.4.bb => libsoup_3.6.5.bb}    |  13 +-
>   48 files changed, 2541 insertions(+), 77 deletions(-)
>   create mode 100644 meta/recipes-devtools/binutils/binutils/0016-CVE-2025-1181-1.patch
>   create mode 100644 meta/recipes-devtools/binutils/binutils/0016-CVE-2025-5244.patch
>   create mode 100644 meta/recipes-devtools/binutils/binutils/0017-CVE-2025-1181-2.patch
>   delete mode 100644 meta/recipes-devtools/python/python3/deterministic_imports.patch
>   create mode 100644 meta/recipes-devtools/python/python3/valid-dists.patch
>   rename meta/recipes-devtools/python/{python3_3.13.2.bb => python3_3.13.4.bb} (95%)
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52530.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-1.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-2.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-2784.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32050.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32052.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32053.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32906.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32907.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32909.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-1.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-2.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-3.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32912.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32914.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4476.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46420.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46421.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4948.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4969.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32907-1.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32907-2.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32908-1.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32908-2.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-32914.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4476.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4948.patch
>   create mode 100644 meta/recipes-support/libsoup/libsoup/CVE-2025-4969.patch
>   rename meta/recipes-support/libsoup/{libsoup_3.6.4.bb => libsoup_3.6.5.bb} (83%)
>
>
> -=-=-=-=-=-=-=-=-=-=-=-
> Links: You receive all messages sent to this group.
> View/Reply Online (#218369): https://lists.openembedded.org/g/openembedded-core/message/218369
> Mute This Topic: https://lists.openembedded.org/mt/113572634/3619217
> Group Owner: openembedded-core+owner@lists.openembedded.org
> Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [sandeep.gundlupet-raju@amd.com]
> -=-=-=-=-=-=-=-=-=-=-=-
>
Steve Sakoman June 10, 2025, 5:34 p.m. UTC | #2
Ok, will add it to the next batch.

In the future it would be helpful to me if you wouldn't send patches
targeted for more than one branch.  When you do this I need to remember to
keep checking the master branch to see if it is accepted. This greatly
increases the odds that I'm going forget about it! So best to submit for
master and then send a version for any other branches after it is already
in master.

Thanks!

Steve


On Tue, Jun 10, 2025, 10:11 AM Gundlupet Raju, Sandeep <
sandeep.gundlupet-raju@amd.com> wrote:

> Hi Steve,
>
> Below patch is missing in your merge, Can you add it?
>
> [OE-core][scarthgap,walnascar,master][PATCH v3] tune-cortexr52: Remove
> aarch64 for ARM Cortex-R52
>
> Thanks,
> Sandeep
>
> On 6/10/2025 10:08 AM, Steve Sakoman via lists.openembedded.org wrote:
> > Please review this set of changes for walnascar and have comments back by
> > end of day Thursday, June 12
> >
> > Passed a-full on autobuilder:
> >
> > https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/1768
> >
> > The following changes since commit
> a7322472e41c3cac922e29d867ae3f2f74318279:
> >
> >    sstatetests: Switch to new CDN (2025-05-30 06:32:58 -0700)
> >
> > are available in the Git repository at:
> >
> >    https://git.openembedded.org/openembedded-core-contrib
> stable/walnascar-nut
> >
> https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut
> >
> > Changqing Li (25):
> >    libsoup-2.4: update patch 0001-CVE-2025-32911.patch
> >    libsoup-2.4: fix CVE-2025-32053
> >    libsoup-2.4: fix CVE-2025-2784
> >    libsoup-2.4: fix CVE-2024-52530
> >    libsoup-2.4: fix CVE-2025-32906
> >    libsoup-2.4: fix CVE-2025-32914
> >    libsoup-2.4: fix CVE-2025-46420
> >    libsoup-2.4: fix CVE-2025-46421
> >    libsoup-2.4: fix CVE-2025-32050
> >    libsoup-2.4: fix CVE-2025-32052
> >    libsoup-2.4: fix CVE-2025-32909
> >    libsoup-2.4: fix CVE-2025-32910
> >    libsoup-2.4: fix CVE-2025-32912
> >    libsoup-2.4: fix CVE-2024-52531
> >    libsoup-2.4: fix CVE-2025-4476
> >    libsoup: upgrade 3.6.4 -> 3.6.5
> >    libsoup-2.4: fix CVE-2025-32907
> >    libsoup-2.4: fix CVE-2025-4948
> >    libsoup-2.4: fix CVE-2025-4969
> >    libsoup: fix CVE-2025-32914
> >    libsoup: fix CVE-2025-4476
> >    libsoup: fix CVE-2025-32907
> >    libsoup: fix CVE-2025-32908
> >    libsoup: fix CVE-2025-4948
> >    libsoup: fix CVE-2025-4969
> >
> > Deepesh Varatharajan (2):
> >    binutils: Fix CVE-2025-1181
> >    binutils: Fix CVE-2025-5244
> >
> > Patrick Williams (1):
> >    systemd.bbclass: generate preset for templates
> >
> > Peter Marko (1):
> >    python3: upgrade 3.13.3 -> 3.13.4
> >
> > Ross Burton (2):
> >    python3: remove obsolete deletion of non-deterministic .pyc files
> >    python3: backport the full fix for importlib scanning invalid
> >      distributions
> >
> > Trevor Gamblin (1):
> >    python3: upgrade 3.13.2 -> 3.13.3
> >
> >   meta/classes-recipe/systemd.bbclass           |  11 +-
> >   .../binutils/binutils-2.44.inc                |   3 +
> >   .../binutils/0016-CVE-2025-1181-1.patch       | 141 ++++++++
> >   .../binutils/0016-CVE-2025-5244.patch         |  25 ++
> >   .../binutils/0017-CVE-2025-1181-2.patch       | 337 ++++++++++++++++++
> >   ...shebang-overflow-on-python-config.py.patch |   2 +-
> >   ...-use-prefix-value-from-build-configu.patch |   2 +-
> >   ...-qemu-wrapper-when-gathering-profile.patch |  14 +-
> >   ...sts-due-to-load-variability-on-YP-AB.patch |   6 +-
> >   ..._fileno-test-due-to-load-variability.patch |   2 +-
> >   ...ctive_children-skip-problematic-test.patch |   2 +-
> >   ...t_readline-skip-limited-history-test.patch |  10 +-
> >   ...orlines-skip-due-to-load-variability.patch |   2 +-
> >   .../python3/deterministic_imports.patch       |  39 --
> >   .../python/python3/makerace.patch             |   2 +-
> >   .../python/python3/valid-dists.patch          | 160 +++++++++
> >   .../{python3_3.13.2.bb => python3_3.13.4.bb}  |  18 +-
> >   .../libsoup-2.4/0001-CVE-2025-32911.patch     |   2 +-
> >   .../libsoup/libsoup-2.4/CVE-2024-52530.patch  | 150 ++++++++
> >   .../libsoup-2.4/CVE-2024-52531-1.patch        |  39 ++
> >   .../libsoup-2.4/CVE-2024-52531-2.patch        | 133 +++++++
> >   .../libsoup/libsoup-2.4/CVE-2025-2784.patch   |  56 +++
> >   .../libsoup/libsoup-2.4/CVE-2025-32050.patch  |  29 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32052.patch  |  32 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32053.patch  |  39 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32906.patch  |  71 ++++
> >   .../libsoup/libsoup-2.4/CVE-2025-32907.patch  |  39 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32909.patch  |  38 ++
> >   .../libsoup-2.4/CVE-2025-32910-1.patch        |  32 ++
> >   .../libsoup-2.4/CVE-2025-32910-2.patch        |  94 +++++
> >   .../libsoup-2.4/CVE-2025-32910-3.patch        |  28 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32912.patch  |  32 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-32914.patch  |  35 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-4476.patch   |  38 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-46420.patch  |  61 ++++
> >   .../libsoup/libsoup-2.4/CVE-2025-46421.patch  |  47 +++
> >   .../libsoup/libsoup-2.4/CVE-2025-4948.patch   |  38 ++
> >   .../libsoup/libsoup-2.4/CVE-2025-4969.patch   |  37 ++
> >   .../libsoup/libsoup-2.4_2.74.3.bb             |  23 +-
> >   .../libsoup/libsoup/CVE-2025-32907-1.patch    | 200 +++++++++++
> >   .../libsoup/libsoup/CVE-2025-32907-2.patch    |  68 ++++
> >   .../libsoup/libsoup/CVE-2025-32908-1.patch    |  89 +++++
> >   .../libsoup/libsoup/CVE-2025-32908-2.patch    |  53 +++
> >   .../libsoup/libsoup/CVE-2025-32914.patch      | 112 ++++++
> >   .../libsoup/libsoup/CVE-2025-4476.patch       |  39 ++
> >   .../libsoup/libsoup/CVE-2025-4948.patch       |  97 +++++
> >   .../libsoup/libsoup/CVE-2025-4969.patch       |  78 ++++
> >   .../{libsoup_3.6.4.bb => libsoup_3.6.5.bb}    |  13 +-
> >   48 files changed, 2541 insertions(+), 77 deletions(-)
> >   create mode 100644
> meta/recipes-devtools/binutils/binutils/0016-CVE-2025-1181-1.patch
> >   create mode 100644
> meta/recipes-devtools/binutils/binutils/0016-CVE-2025-5244.patch
> >   create mode 100644
> meta/recipes-devtools/binutils/binutils/0017-CVE-2025-1181-2.patch
> >   delete mode 100644
> meta/recipes-devtools/python/python3/deterministic_imports.patch
> >   create mode 100644
> meta/recipes-devtools/python/python3/valid-dists.patch
> >   rename meta/recipes-devtools/python/{python3_3.13.2.bb =>
> python3_3.13.4.bb} (95%)
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52530.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-1.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-2.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-2784.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32050.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32052.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32053.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32906.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32907.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32909.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-1.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-2.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-3.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32912.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32914.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4476.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46420.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46421.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4948.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4969.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-32907-1.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-32907-2.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-32908-1.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-32908-2.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-32914.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-4476.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-4948.patch
> >   create mode 100644
> meta/recipes-support/libsoup/libsoup/CVE-2025-4969.patch
> >   rename meta/recipes-support/libsoup/{libsoup_3.6.4.bb =>
> libsoup_3.6.5.bb} (83%)
> >
> >
> > -=-=-=-=-=-=-=-=-=-=-=-
> > Links: You receive all messages sent to this group.
> > View/Reply Online (#218369):
> https://lists.openembedded.org/g/openembedded-core/message/218369
> > Mute This Topic: https://lists.openembedded.org/mt/113572634/3619217
> > Group Owner: openembedded-core+owner@lists.openembedded.org
> > Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [
> sandeep.gundlupet-raju@amd.com]
> > -=-=-=-=-=-=-=-=-=-=-=-
> >
>
Gundlupet Raju, Sandeep June 10, 2025, 6:04 p.m. UTC | #3
Sorry I keep forgetting this, Sure I will do next time.

Thanks,
Sandeep

On 6/10/2025 11:34 AM, Steve Sakoman wrote:
> Ok, will add it to the next batch.
>
> In the future it would be helpful to me if you wouldn't send patches 
> targeted for more than one branch. When you do this I need to remember 
> to keep checking the master branch to see if it is accepted. This 
> greatly increases the odds that I'm going forget about it! So best to 
> submit for master and then send a version for any other branches after 
> it is already in master.
>
> Thanks!
>
> Steve
>
>
> On Tue, Jun 10, 2025, 10:11 AM Gundlupet Raju, Sandeep 
> <sandeep.gundlupet-raju@amd.com> wrote:
>
>     Hi Steve,
>
>     Below patch is missing in your merge, Can you add it?
>
>     [OE-core][scarthgap,walnascar,master][PATCH v3] tune-cortexr52:
>     Remove
>     aarch64 for ARM Cortex-R52
>
>     Thanks,
>     Sandeep
>
>     On 6/10/2025 10:08 AM, Steve Sakoman via lists.openembedded.org
>     <http://lists.openembedded.org> wrote:
>     > Please review this set of changes for walnascar and have
>     comments back by
>     > end of day Thursday, June 12
>     >
>     > Passed a-full on autobuilder:
>     >
>     >
>     https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/1768
>     >
>     > The following changes since commit
>     a7322472e41c3cac922e29d867ae3f2f74318279:
>     >
>     >    sstatetests: Switch to new CDN (2025-05-30 06:32:58 -0700)
>     >
>     > are available in the Git repository at:
>     >
>     > https://git.openembedded.org/openembedded-core-contrib
>     stable/walnascar-nut
>     >
>     https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/walnascar-nut
>     >
>     > Changqing Li (25):
>     >    libsoup-2.4: update patch 0001-CVE-2025-32911.patch
>     >    libsoup-2.4: fix CVE-2025-32053
>     >    libsoup-2.4: fix CVE-2025-2784
>     >    libsoup-2.4: fix CVE-2024-52530
>     >    libsoup-2.4: fix CVE-2025-32906
>     >    libsoup-2.4: fix CVE-2025-32914
>     >    libsoup-2.4: fix CVE-2025-46420
>     >    libsoup-2.4: fix CVE-2025-46421
>     >    libsoup-2.4: fix CVE-2025-32050
>     >    libsoup-2.4: fix CVE-2025-32052
>     >    libsoup-2.4: fix CVE-2025-32909
>     >    libsoup-2.4: fix CVE-2025-32910
>     >    libsoup-2.4: fix CVE-2025-32912
>     >    libsoup-2.4: fix CVE-2024-52531
>     >    libsoup-2.4: fix CVE-2025-4476
>     >    libsoup: upgrade 3.6.4 -> 3.6.5
>     >    libsoup-2.4: fix CVE-2025-32907
>     >    libsoup-2.4: fix CVE-2025-4948
>     >    libsoup-2.4: fix CVE-2025-4969
>     >    libsoup: fix CVE-2025-32914
>     >    libsoup: fix CVE-2025-4476
>     >    libsoup: fix CVE-2025-32907
>     >    libsoup: fix CVE-2025-32908
>     >    libsoup: fix CVE-2025-4948
>     >    libsoup: fix CVE-2025-4969
>     >
>     > Deepesh Varatharajan (2):
>     >    binutils: Fix CVE-2025-1181
>     >    binutils: Fix CVE-2025-5244
>     >
>     > Patrick Williams (1):
>     >    systemd.bbclass: generate preset for templates
>     >
>     > Peter Marko (1):
>     >    python3: upgrade 3.13.3 -> 3.13.4
>     >
>     > Ross Burton (2):
>     >    python3: remove obsolete deletion of non-deterministic .pyc files
>     >    python3: backport the full fix for importlib scanning invalid
>     >      distributions
>     >
>     > Trevor Gamblin (1):
>     >    python3: upgrade 3.13.2 -> 3.13.3
>     >
>     >   meta/classes-recipe/systemd.bbclass           |  11 +-
>     >   .../binutils/binutils-2.44.inc                |   3 +
>     >   .../binutils/0016-CVE-2025-1181-1.patch       | 141 ++++++++
>     >   .../binutils/0016-CVE-2025-5244.patch         |  25 ++
>     >   .../binutils/0017-CVE-2025-1181-2.patch       | 337
>     ++++++++++++++++++
>     >   ...shebang-overflow-on-python-config.py.patch |   2 +-
>     >   ...-use-prefix-value-from-build-configu.patch |   2 +-
>     >   ...-qemu-wrapper-when-gathering-profile.patch |  14 +-
>     >   ...sts-due-to-load-variability-on-YP-AB.patch |   6 +-
>     >   ..._fileno-test-due-to-load-variability.patch |   2 +-
>     >   ...ctive_children-skip-problematic-test.patch |   2 +-
>     >   ...t_readline-skip-limited-history-test.patch |  10 +-
>     >   ...orlines-skip-due-to-load-variability.patch |   2 +-
>     >   .../python3/deterministic_imports.patch       |  39 --
>     >   .../python/python3/makerace.patch             |   2 +-
>     >   .../python/python3/valid-dists.patch          | 160 +++++++++
>     >   .../{python3_3.13.2.bb <http://python3_3.13.2.bb> =>
>     python3_3.13.4.bb <http://python3_3.13.4.bb>}  |  18 +-
>     >   .../libsoup-2.4/0001-CVE-2025-32911.patch     |   2 +-
>     >   .../libsoup/libsoup-2.4/CVE-2024-52530.patch  | 150 ++++++++
>     >   .../libsoup-2.4/CVE-2024-52531-1.patch        |  39 ++
>     >   .../libsoup-2.4/CVE-2024-52531-2.patch        | 133 +++++++
>     >   .../libsoup/libsoup-2.4/CVE-2025-2784.patch   |  56 +++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32050.patch  |  29 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32052.patch  |  32 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32053.patch  |  39 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32906.patch  |  71 ++++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32907.patch  |  39 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32909.patch  |  38 ++
>     >   .../libsoup-2.4/CVE-2025-32910-1.patch        |  32 ++
>     >   .../libsoup-2.4/CVE-2025-32910-2.patch        |  94 +++++
>     >   .../libsoup-2.4/CVE-2025-32910-3.patch        |  28 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32912.patch  |  32 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-32914.patch  |  35 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-4476.patch   |  38 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-46420.patch  |  61 ++++
>     >   .../libsoup/libsoup-2.4/CVE-2025-46421.patch  |  47 +++
>     >   .../libsoup/libsoup-2.4/CVE-2025-4948.patch   |  38 ++
>     >   .../libsoup/libsoup-2.4/CVE-2025-4969.patch   |  37 ++
>     >   .../libsoup/libsoup-2.4_2.74.3.bb
>     <http://libsoup-2.4_2.74.3.bb>      |  23 +-
>     >   .../libsoup/libsoup/CVE-2025-32907-1.patch    | 200 +++++++++++
>     >   .../libsoup/libsoup/CVE-2025-32907-2.patch    |  68 ++++
>     >   .../libsoup/libsoup/CVE-2025-32908-1.patch    |  89 +++++
>     >   .../libsoup/libsoup/CVE-2025-32908-2.patch    |  53 +++
>     >   .../libsoup/libsoup/CVE-2025-32914.patch      | 112 ++++++
>     >   .../libsoup/libsoup/CVE-2025-4476.patch       |  39 ++
>     >   .../libsoup/libsoup/CVE-2025-4948.patch       |  97 +++++
>     >   .../libsoup/libsoup/CVE-2025-4969.patch       |  78 ++++
>     >   .../{libsoup_3.6.4.bb <http://libsoup_3.6.4.bb> =>
>     libsoup_3.6.5.bb <http://libsoup_3.6.5.bb>}    |  13 +-
>     >   48 files changed, 2541 insertions(+), 77 deletions(-)
>     >   create mode 100644
>     meta/recipes-devtools/binutils/binutils/0016-CVE-2025-1181-1.patch
>     >   create mode 100644
>     meta/recipes-devtools/binutils/binutils/0016-CVE-2025-5244.patch
>     >   create mode 100644
>     meta/recipes-devtools/binutils/binutils/0017-CVE-2025-1181-2.patch
>     >   delete mode 100644
>     meta/recipes-devtools/python/python3/deterministic_imports.patch
>     >   create mode 100644
>     meta/recipes-devtools/python/python3/valid-dists.patch
>     >   rename meta/recipes-devtools/python/{python3_3.13.2.bb
>     <http://python3_3.13.2.bb> => python3_3.13.4.bb
>     <http://python3_3.13.4.bb>} (95%)
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52530.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-1.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2024-52531-2.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-2784.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32050.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32052.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32053.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32906.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32907.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32909.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-1.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-2.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32910-3.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32912.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-32914.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4476.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46420.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-46421.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4948.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup-2.4/CVE-2025-4969.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-32907-1.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-32907-2.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-32908-1.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-32908-2.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-32914.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-4476.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-4948.patch
>     >   create mode 100644
>     meta/recipes-support/libsoup/libsoup/CVE-2025-4969.patch
>     >   rename meta/recipes-support/libsoup/{libsoup_3.6.4.bb
>     <http://libsoup_3.6.4.bb> => libsoup_3.6.5.bb
>     <http://libsoup_3.6.5.bb>} (83%)
>     >
>     >
>     > -=-=-=-=-=-=-=-=-=-=-=-
>     > Links: You receive all messages sent to this group.
>     > View/Reply Online (#218369):
>     https://lists.openembedded.org/g/openembedded-core/message/218369
>     > Mute This Topic: https://lists.openembedded.org/mt/113572634/3619217
>     > Group Owner: openembedded-core+owner@lists.openembedded.org
>     <mailto:openembedded-core%2Bowner@lists.openembedded.org>
>     > Unsubscribe:
>     https://lists.openembedded.org/g/openembedded-core/unsub
>     [sandeep.gundlupet-raju@amd.com]
>     > -=-=-=-=-=-=-=-=-=-=-=-
>     >
>