@@ -1,4 +1,4 @@
-From a81cb0932dce109af44d7245d47489fe54ae390f Mon Sep 17 00:00:00 2001
+From fedf11e740e7893eed6590d17e92073fcd7e7841 Mon Sep 17 00:00:00 2001
From: Eddie Kovsky <ewk@edkovsky.org>
Date: Mon, 23 Feb 2026 09:43:22 -0700
Subject: [PATCH] Add support for OpenSSL Provider API
@@ -39,14 +39,14 @@ Changes from upstream:
Signed-off-by: Jaipaul Cheernam <jaipaul.cheernam@est.tech>
---
- doc/build/gcc.rst | 4 +-
- lib/aes/aes-encrypt.c | 4 +-
- lib/rsa/rsa-sign.c | 102 +++++++++++++++++++++++++++++++++++++++---
- tools/docker/Dockerfile | 1 +
- 4 files changed, 103 insertions(+), 8 deletions(-)
+ doc/build/gcc.rst | 4 +-
+ lib/aes/aes-encrypt.c | 4 +-
+ lib/rsa/rsa-sign.c | 103 ++++++++++++++++++++++++++++++++++++++--
+ tools/docker/Dockerfile | 1 +
+ 4 files changed, 104 insertions(+), 8 deletions(-)
diff --git a/doc/build/gcc.rst b/doc/build/gcc.rst
-index 1fef718ceecb..29a6a632e7e3 100644
+index 1fef718ceec..29a6a632e7e 100644
--- a/doc/build/gcc.rst
+++ b/doc/build/gcc.rst
@@ -25,8 +25,8 @@ Depending on the build targets further packages maybe needed
@@ -61,7 +61,7 @@ index 1fef718ceecb..29a6a632e7e3 100644
python3-pkg-resources python3-pycryptodome python3-pyelftools \
python3-pytest python3-pytest-xdist python3-sphinxcontrib.apidoc \
diff --git a/lib/aes/aes-encrypt.c b/lib/aes/aes-encrypt.c
-index 90e1407b4f09..4fc4ce232478 100644
+index 90e1407b4f0..4fc4ce23247 100644
--- a/lib/aes/aes-encrypt.c
+++ b/lib/aes/aes-encrypt.c
@@ -16,7 +16,9 @@
@@ -76,7 +76,7 @@ index 90e1407b4f09..4fc4ce232478 100644
#if OPENSSL_VERSION_NUMBER >= 0x10000000L
diff --git a/lib/rsa/rsa-sign.c b/lib/rsa/rsa-sign.c
-index 0e38c9e802fd..f456f3c58e65 100644
+index 0e38c9e802f..4990b43a7a6 100644
--- a/lib/rsa/rsa-sign.c
+++ b/lib/rsa/rsa-sign.c
@@ -19,7 +19,47 @@
@@ -128,7 +128,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
static int rsa_err(const char *msg)
{
-@@ -94,10 +134,11 @@ static int rsa_pem_get_pub_key(const char *keydir, const char *name, EVP_PKEY **
+@@ -94,10 +134,11 @@ err_cert:
*
* @keydir: Key prefix
* @name Name of key
@@ -214,7 +214,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
return 0;
}
-@@ -226,6 +301,7 @@ static int rsa_pem_get_priv_key(const char *keydir, const char *name,
+@@ -226,6 +302,7 @@ static int rsa_pem_get_priv_key(const char *keydir, const char *name,
* @evpp Returns EVP_PKEY object, or NULL on failure
* Return: 0 if ok, -ve on error (in which case *evpp will be set to NULL)
*/
@@ -222,7 +222,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
static int rsa_engine_get_priv_key(const char *keydir, const char *name,
const char *keyfile,
ENGINE *engine, EVP_PKEY **evpp)
-@@ -293,22 +369,25 @@ static int rsa_engine_get_priv_key(const char *keydir, const char *name,
+@@ -293,22 +370,25 @@ static int rsa_engine_get_priv_key(const char *keydir, const char *name,
return 0;
}
@@ -249,7 +249,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
return rsa_pem_get_priv_key(keydir, name, keyfile, evpp);
}
-@@ -325,6 +404,7 @@ static int rsa_init(void)
+@@ -325,6 +405,7 @@ static int rsa_init(void)
return 0;
}
@@ -257,7 +257,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
static int rsa_engine_init(const char *engine_id, ENGINE **pe)
{
const char *key_pass;
-@@ -380,6 +460,7 @@ static void rsa_engine_remove(ENGINE *e)
+@@ -380,6 +461,7 @@ static void rsa_engine_remove(ENGINE *e)
ENGINE_free(e);
}
}
@@ -265,7 +265,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
static int rsa_sign_with_key(EVP_PKEY *pkey, struct padding_algo *padding_algo,
struct checksum_algo *checksum_algo,
-@@ -480,11 +561,13 @@ int rsa_sign(struct image_sign_info *info,
+@@ -480,11 +562,13 @@ int rsa_sign(struct image_sign_info *info,
if (ret)
return ret;
@@ -279,7 +279,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
ret = rsa_get_priv_key(info->keydir, info->keyname, info->keyfile,
e, &pkey);
-@@ -496,16 +579,21 @@ int rsa_sign(struct image_sign_info *info,
+@@ -496,16 +580,21 @@ int rsa_sign(struct image_sign_info *info,
goto err_sign;
EVP_PKEY_free(pkey);
@@ -301,7 +301,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
return ret;
}
-@@ -645,11 +733,13 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest)
+@@ -645,11 +734,13 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest)
ENGINE *e = NULL;
debug("%s: Getting verification data\n", __func__);
@@ -315,7 +315,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
ret = rsa_get_pub_key(info->keydir, info->keyname, e, &pkey);
if (ret)
goto err_get_pub_key;
-@@ -726,8 +816,10 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest)
+@@ -726,8 +817,10 @@ done:
err_get_params:
EVP_PKEY_free(pkey);
err_get_pub_key:
@@ -327,7 +327,7 @@ index 0e38c9e802fd..f456f3c58e65 100644
if (ret)
return ret;
diff --git a/tools/docker/Dockerfile b/tools/docker/Dockerfile
-index 73bf6cdd2c52..50e98e83dc20 100644
+index ebb679a5f46..c2ccc0ca7db 100644
--- a/tools/docker/Dockerfile
+++ b/tools/docker/Dockerfile
@@ -122,6 +122,7 @@ RUN --mount=type=cache,target=/var/cache/apt,sharing=locked \
deleted file mode 100644
@@ -1,55 +0,0 @@
-From 886616d03b6afcc5ce8b34e7af91f7ccfbb0a5c Mon Sep 17 00:00:00 2001
-From: Jaipaul Cheernam <jaipaul.cheernam@est.tech>
-Date: Tue, 11 Aug 2026 13:21:01 +0000
-Subject: [PATCH] pylibfdt: Replace removed SWIG Python 2 compatibility macros
-
-SWIG 4.5.0 removed Python 2 compatibility macros (PyInt_*, PyString_*)
-from its runtime header pyhead.swg (see commit 79f7a2b7cb7d). Replace
-them with their Python 3 C API equivalents:
-
-- PyString_FromString -> PyUnicode_FromString
-- PyString_AsString -> PyBytes_AsString
-- PyInt_AsLong -> PyLong_AsLong
-
-The replacements are safe since the macros were already aliased to
-these exact functions in SWIG's Python 3 code path.
-
-This is a backport of dtc commit 5008d1d6a356 ("pylibfdt: Replace
-removed SWIG Python 2 compatibility macros").
-
-Upstream-Status: Submitted [https://patchwork.ozlabs.org/patch/2283713/]
-
-Signed-off-by: Jaipaul Cheernam <jaipaul.cheernam@est.tech>
----
- scripts/dtc/pylibfdt/libfdt.i_shipped | 6 +++---
- 1 file changed, 3 insertions(+), 3 deletions(-)
-
-diff --git a/scripts/dtc/pylibfdt/libfdt.i_shipped b/scripts/dtc/pylibfdt/libfdt.i_shipped
-index e4659489..326a15c7 100644
---- a/scripts/dtc/pylibfdt/libfdt.i_shipped
-+++ b/scripts/dtc/pylibfdt/libfdt.i_shipped
-@@ -1033,7 +1033,7 @@ typedef uint32_t fdt32_t;
- PyObject *buff;
-
- if ($1) {
-- resultobj = PyString_FromString(
-+ resultobj = PyUnicode_FromString(
- fdt_string(fdt1, fdt32_to_cpu($1->nameoff)));
- buff = PyByteArray_FromStringAndSize(
- (const char *)($1 + 1), fdt32_to_cpu($1->len));
-@@ -1064,13 +1064,13 @@ typedef uint32_t fdt32_t;
- }
- $1 = PyBytes_AsString($input);
- %#else
-- $1 = PyString_AsString($input); /* char *str */
-+ $1 = PyBytes_AsString($input); /* char *str */
- %#endif
- }
-
- /* typemaps used for fdt_next_node() */
- %typemap(in, numinputs=1) int *depth (int depth) {
-- depth = (int) PyInt_AsLong($input);
-+ depth = (int) PyLong_AsLong($input);
- $1 = &depth;
- }
-
@@ -1,4 +1,4 @@
-From 007b77c2f51d4c1c696fbf1ff92694b585b35f57 Mon Sep 17 00:00:00 2001
+From 1f5b573d5340b66bf09310e8331064ca53a2d7d2 Mon Sep 17 00:00:00 2001
From: Wojciech Dubowik <Wojciech.Dubowik@mt.com>
Date: Tue, 9 Jun 2026 09:01:04 +0200
Subject: [PATCH] tools: mkeficapsule: Rework pkcs11 support
@@ -22,10 +22,10 @@ Signed-off-by: Wojciech Dubowik <Wojciech.Dubowik@mt.com>
2 files changed, 77 insertions(+), 23 deletions(-)
diff --git a/tools/Makefile b/tools/Makefile
-index 1a5f425ecdaa..e85f5a354b81 100644
+index 535a5d51c89..607d6d8ff8b 100644
--- a/tools/Makefile
+++ b/tools/Makefile
-@@ -271,6 +271,11 @@ mkeficapsule-objs := generated/lib/uuid.o \
+@@ -272,6 +272,11 @@ mkeficapsule-objs := generated/lib/uuid.o \
$(LIBFDT_OBJS) \
mkeficapsule.o
hostprogs-always-$(CONFIG_TOOLS_MKEFICAPSULE) += mkeficapsule
@@ -38,7 +38,7 @@ index 1a5f425ecdaa..e85f5a354b81 100644
include tools/fwumdata_src/fwumdata.mk
diff --git a/tools/mkeficapsule.c b/tools/mkeficapsule.c
-index ec640c57e8a5..c3cf48f4cc1d 100644
+index ec640c57e8a..9ac686f51a8 100644
--- a/tools/mkeficapsule.c
+++ b/tools/mkeficapsule.c
@@ -207,6 +207,71 @@ static int write_capsule_file(FILE *f, void *data, size_t size, const char *msg)
@@ -175,5 +175,3 @@ index ec640c57e8a5..c3cf48f4cc1d 100644
gnutls_strerror(ret));
return -1;
}
-2.47.3
@@ -14,7 +14,7 @@ CVE_PRODUCT = "u-boot:u-boot denx:u-boot"
# We use the revision in order to avoid having to fetch it from the
# repo during parse
-SRCREV = "ece349ade2973e220f524ce59e59711cc919263f"
+SRCREV = "5508406582f6f7120dce0c4b3059819a41788db2"
SRC_URI = "git://git.u-boot-project.org/u-boot/u-boot.git;protocol=https;branch=main;tag=v${PV} \
file://0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch \
similarity index 22%
rename from meta/recipes-bsp/u-boot/u-boot-tools_2026.07.bb
rename to meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb
@@ -1,4 +1,6 @@
require u-boot-common.inc
require u-boot-tools.inc
-SRC_URI += "file://0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch"
+SRC_URI += "git://git.u-boot-project.org/u-boot/u-boot.git;protocol=https;branch=main;tag=v${PV} \
+ file://0001-Add-support-for-OpenSSL-Provider-API.patch \
+ "
Hello, this email is a notification from the Auto Upgrade Helper that the automatic attempt to upgrade the recipe(s) *u-boot-tools,u-boot* to *2026.10* has Failed (devtool error). Detailed error information: The following devtool command failed: finish -f u-boot /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot NOTE: Reconnecting to bitbake server... Loading cache...done. Loaded 1994 entries from dependency cache. Parsing recipes... Summary: There were 3 ERROR messages, returning a non-zero exit code. ERROR: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot_2026.07.bb: Unable to get checksum for u-boot SRC_URI entry 0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch: file could not be found The following paths were searched: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch ERROR: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb: Unable to get checksum for nativesdk-u-boot-tools SRC_URI entry 0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch: file could not be found The following paths were searched: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch ERROR: Parsing halted due to errors, see error messages above ERROR: Failed to start bitbake environment Next steps: - apply the patch: git am 0001-u-boot-tools-u-boot-upgrade-2026.07-2026.10.patch - check the changes to upstream patches and summarize them in the commit message, - compile an image that contains the package - perform some basic sanity tests - amend the patch and sign it off: git commit -s --reset-author --amend - send it to the appropriate mailing list Alternatively, if you believe the recipe should not be upgraded at this time, you can fill RECIPE_NO_UPDATE_REASON in respective recipe file so that automatic upgrades would no longer be attempted. Please review the attached files for further information and build/update failures. Any problem please file a bug at https://bugzilla.yoctoproject.org/enter_bug.cgi?product=Automated%20Update%20Handler Regards, The Upgrade Helper -- >8 -- From 98877f4965fafa68c253745e3cf754d98a426e68 Mon Sep 17 00:00:00 2001 From: Upgrade Helper <auh@yoctoproject.org> Date: Tue, 6 Oct 2026 05:16:57 +0000 Subject: [PATCH] u-boot-tools,u-boot: upgrade 2026.07 -> 2026.10 Prepare v2026.10 MAINTAINERS: Fix Lukasz email Gitlab CI: Temporarily limit thread count on world builds board: beacon: Remove i.MX8MP Beacon EmbeddedWorks Devkit support board: beacon: Remove i.MX8MN Beacon EmbeddedWorks Devkit support board: beacon: Remove i.MX8MM Beacon EmbeddedWorks Devkit support board: beacon: Remove Beacon EmbeddedWorks RZ/G2 Dev Kit support board: davinci: Remove DA850 EVM support board: logicpd: Remove AM3517 EVM support board: logicpd: Remove i.MX6 SOM support board: logicpd: Remove OMAP3 SOM support Merge tag 'efi-2026-10-rc6' of https://git.u-boot- project.org/u-boot/custodians/u-boot-efi lmb: Add StarFive JH-7110 SoC as requiring DMA below 4GiB Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- sh boot: mention sbox in efi loader boot method doc efi_loader: fix efi_http_instance free on error Merge patch series "fsl, powerpc: Fix SPD read and appended DTB alignment" board: cssi: Move alignment padding into __u_boot_list section powerpc: mpc85xx: Move alignment padding into __u_boot_list section ddr: fsl: Fix SPD read when legacy I2C is used Merge tag 'u-boot-dfu-20260929' of https://git.u-boot- project.org/u-boot/custodians/u-boot-dfu usb: dwc3-generic: Fix ref clock enable error check power: domain: renesas-r8a78000: Add SDK SCP 4.39 map power: domain: renesas-r8a78000: Add SDK SCP 4.37 map clk: renesas: Add SDK SCP 4.39 map to Renesas R-Car R8A78000 X5H CPG clock driver clk: renesas: Add SDK SCP 4.37 map to Renesas R-Car R8A78000 X5H CPG clock driver configs: Resync with savedefconfig Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- usb usb: dwc3-generic: fix ref clock lookup indexing wrong clk_bulk array usb: gadget: f_mass_storage: Synchronously tear interface down usb: gadget: rockusb: terminate full-speed descriptors Prepare v2026.10-rc5 Merge tag 'u-boot-stm32-20260921' of https://git.u-boot- project.org/u-boot/custodians/u-boot-stm fw_env: do not create lockfile with read access for others MAINTAINERS: Update some SoCFPGA related addresses ARM: dts: Add bootph-all in ltdc node for sqtm32mp235f-dk-u-boot ARM: dts: Add bootph-all in ltdc node for stm32mp257f-dk-u-boot Merge tag 'u-boot-rockchip-2026.10-20260918' of https://git.u-boot- project.org/u-boot/custodians/u-boot-rockchip Revert "Clean up emails from non-existing domains" Clean up emails from non-existing domains Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- sh clk: versaclock: Fix incorrect error check in versaclock_probe() arm64: renesas: Enable FFA on Renesas R-Car X5H R8A78000 arm64: renesas: Drop empty board_early_init_f() from Renesas R-Car Gen5 common code arm64: renesas: Drop CNTP from Renesas R-Car Gen5 common code arm: renesas: Drop SYS_ARCH_TIMER on R-Car R8A78000 X5H Cortex-M33 RSIP Merge tag 'u-boot-dfu-20260914' of https://git.u-boot- project.org/u-boot/custodians/u-boot-dfu Merge tag 'net-20260915' of https://git.u-boot- project.org/u-boot/custodians/u-boot-net board: anbernic: Fix the RG-DS Kconfig target guard fastboot: fix the RK3328 buffer-address default test: dm: nfs: Add regression tests for the NFS reply-length checks net: nfs: Bound the length of an NFS readlink reply net: nfs: Bound the length of an NFS read reply u-boot: fix error check in eth init net: airoha: fix PCS calibration retry limit net: net6: validate IPv6 payload and transport lengths on receive net: lwip: allow DHCP to stop without releasing its lease net: lwip: add an HTTP client abort operation net: lwip: allow DNS callbacks to be canceled net: lwip: return ERR_ABRT after aborting wget receive test: dm: eth: add DHCPv6 oversized option regression tests net: dhcp6: bound received DUID option lengths MAINTAINERS: tee: update Jens Wiklander's email address env: Update description of single to redundant environment upgrade path Merge tag 'u-boot-pci-fixes-20260911' of https://git.u-boot- project.org/u-boot/custodians/neil.armstrong/u-boot-pci Merge tag 'u-boot-nvme-fixes-20260911' of https://git.u-boot- project.org/u-boot/custodians/neil.armstrong/u-boot-nvme dm: pci: fix uninitialized fdt_pci_addr fall-through in pci_get_devfn pci: Iterate over busses using uclass_foreach_dev_probe nvme: apple: Drop the PRP null check chicken bit nvme: apple: Add WARN_ON_ONCE for non page-aligned admin queue buffers nvme: apple: Never set the opcode in the NVMMU TCB nvme: apple: Don't set a DMA direction for commands without a data transfer avb: fix missing break in avb_set_state() switch dfu: mtd: probe before get_mtd_device_nm() Prepare v2026.10-rc4 arm: mvebu: armada8k: do not offer the ATF/TEE region as free memory Merge tag 'efi-2026-10-rc4-2' of https://git.u-boot- project.org/u-boot/custodians/u-boot-efi Merge tag 'fsl-qoriq-for-2026.10-rc4' of https://git.u-boot- project.org/u-boot/custodians/u-boot-fsl-qoriq configs: ls104{3,6}aqds_tfa: enable PCIe Ethernet common: kconfig: raise SYS_CBSIZE default to 1024 for FSL_LSCH2/LSCH3 configs: layersc [Changelog truncated as it exceeds 5000 characters; the full changelog can be found in an attachment to the AUH email] --- ...Add-support-for-OpenSSL-Provider-API.patch | 38 ++++++------- ...-removed-SWIG-Python-2-compatibility.patch | 55 ------------------- ...apsule-Detect-GnuTLS-PKCS-11-support.patch | 10 ++-- meta/recipes-bsp/u-boot/u-boot-common.inc | 2 +- ...ols_2026.07.bb => u-boot-tools_2026.10.bb} | 4 +- 5 files changed, 27 insertions(+), 82 deletions(-) delete mode 100644 meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch rename meta/recipes-bsp/u-boot/{u-boot-tools_2026.07.bb => u-boot-tools_2026.10.bb} (22%)