mbox series

kirkstone merge request: March 7th

Message ID 25c3cee9-ab12-4db6-b5bd-96a435557f59@gmail.com
State New
Headers show
Series kirkstone merge request: March 7th | expand

Pull-request

https://git.openembedded.org/meta-openembedded kirkstone-next

Message

akuster808 March 8, 2025, 12:20 a.m. UTC
The following changes since commit 880df90c865b57d38f1ff836fe8900c94434322f:

   phpmyadmin: fix CVE-2025-24529/CVE-2025-24530 (2025-02-09 07:58:44 -0800)

are available in the Git repository at:

   https://git.openembedded.org/meta-openembedded kirkstone-next

for you to fetch changes up to 7e18b3fc774b7efabf9a20ae3cd6abd0e0715b59:

   lapack: upgrade 3.10.0 -> 3.10.1 (2025-03-07 19:18:02 -0500)

----------------------------------------------------------------
Changqing Li (2):
       abseil-cpp: fix CVE-2025-0838
       nginx: fix CVE-2025-23419

Haixiao Yan (1):
       freediameter: fix do_fetch warning

Jinfeng Wang (1):
       net-snmp: fix memory leak

Peter Marko (1):
       python3-grpcio(-tools): fix build concurrency issue

Vijay Anusuri (1):
       postgresql: upgrade 14.14 -> 14.17

Wang Mingyu (1):
       python3-future: upgrade 0.18.2 -> 0.18.3

Yogita Urade (2):
       dlt-daemon: fix CVE-2022-39836 and CVE-2022-39837
       dlt-daemon: fix CVE-2023-36321

wangmy (1):
       lapack: upgrade 3.10.0 -> 3.10.1

  .../recipes-protocols/freediameter/freediameter_1.4.0.bb        | 8 +-
  ...0001-unload_all_mibs-fix-memory-leak-by-freeing-tclist.patch | 40 +++++
  meta-networking/recipes-protocols/net-snmp/net-snmp_5.9.3.bb    | 1 +
  .../0001-configure.ac-bypass-autoconf-2.69-version-check.patch  | 2 +-
  .../postgresql/{postgresql_14.14.bb => postgresql_14.17.bb} |   4 +-
  .../recipes-devtools/abseil-cpp/abseil-cpp/CVE-2025-0838.patch  | 114 
+++++++++++++
  meta-oe/recipes-devtools/abseil-cpp/abseil-cpp_git.bb           | 1 +
  .../lapack/{lapack_3.10.0.bb => lapack_3.10.1.bb} |   4 +-
  .../dlt-daemon/dlt-daemon/CVE-2022-39836-CVE-2022-39837.patch   | 251 
++++++++++++++++++++++++++++
  .../recipes-extended/dlt-daemon/dlt-daemon/CVE-2023-36321.patch | 32 ++++
  meta-oe/recipes-extended/dlt-daemon/dlt-daemon_2.18.8.bb        | 2 +
  .../{python3-future_0.18.2.bb => python3-future_0.18.3.bb} |   3 +-
  .../recipes-devtools/python/python3-grpcio-tools_1.45.0.bb      | 4 +
  meta-python/recipes-devtools/python/python3-grpcio_1.45.0.bb    | 4 +
  meta-webserver/recipes-httpd/nginx/files/CVE-2025-23419.patch   | 87 
++++++++++
  meta-webserver/recipes-httpd/nginx/nginx_1.24.0.bb              | 2 +
  16 files changed, 547 insertions(+), 12 deletions(-)
  create mode 100644 
meta-networking/recipes-protocols/net-snmp/net-snmp/0001-unload_all_mibs-fix-memory-leak-by-freeing-tclist.patch
  rename meta-oe/recipes-dbs/postgresql/{postgresql_14.14.bb => 
postgresql_14.17.bb} (71%)
  create mode 100644 
meta-oe/recipes-devtools/abseil-cpp/abseil-cpp/CVE-2025-0838.patch
  rename meta-oe/recipes-devtools/lapack/{lapack_3.10.0.bb => 
lapack_3.10.1.bb} (86%)
  create mode 100644 
meta-oe/recipes-extended/dlt-daemon/dlt-daemon/CVE-2022-39836-CVE-2022-39837.patch
  create mode 100644 
meta-oe/recipes-extended/dlt-daemon/dlt-daemon/CVE-2023-36321.patch
  rename meta-python/recipes-devtools/python/{python3-future_0.18.2.bb 
=> python3-future_0.18.3.bb} (70%)
  create mode 100644 
meta-webserver/recipes-httpd/nginx/files/CVE-2025-23419.patch

Comments

Khem Raj March 8, 2025, 1:14 a.m. UTC | #1
merged now

thanks Armin.

On Fri, Mar 7, 2025 at 4:20 PM akuster808 <akuster808@gmail.com> wrote:
>
> The following changes since commit 880df90c865b57d38f1ff836fe8900c94434322f:
>
>    phpmyadmin: fix CVE-2025-24529/CVE-2025-24530 (2025-02-09 07:58:44 -0800)
>
> are available in the Git repository at:
>
>    https://git.openembedded.org/meta-openembedded kirkstone-next
>
> for you to fetch changes up to 7e18b3fc774b7efabf9a20ae3cd6abd0e0715b59:
>
>    lapack: upgrade 3.10.0 -> 3.10.1 (2025-03-07 19:18:02 -0500)
>
> ----------------------------------------------------------------
> Changqing Li (2):
>        abseil-cpp: fix CVE-2025-0838
>        nginx: fix CVE-2025-23419
>
> Haixiao Yan (1):
>        freediameter: fix do_fetch warning
>
> Jinfeng Wang (1):
>        net-snmp: fix memory leak
>
> Peter Marko (1):
>        python3-grpcio(-tools): fix build concurrency issue
>
> Vijay Anusuri (1):
>        postgresql: upgrade 14.14 -> 14.17
>
> Wang Mingyu (1):
>        python3-future: upgrade 0.18.2 -> 0.18.3
>
> Yogita Urade (2):
>        dlt-daemon: fix CVE-2022-39836 and CVE-2022-39837
>        dlt-daemon: fix CVE-2023-36321
>
> wangmy (1):
>        lapack: upgrade 3.10.0 -> 3.10.1
>
>   .../recipes-protocols/freediameter/freediameter_1.4.0.bb        | 8 +-
>   ...0001-unload_all_mibs-fix-memory-leak-by-freeing-tclist.patch | 40 +++++
>   meta-networking/recipes-protocols/net-snmp/net-snmp_5.9.3.bb    | 1 +
>   .../0001-configure.ac-bypass-autoconf-2.69-version-check.patch  | 2 +-
>   .../postgresql/{postgresql_14.14.bb => postgresql_14.17.bb} |   4 +-
>   .../recipes-devtools/abseil-cpp/abseil-cpp/CVE-2025-0838.patch  | 114
> +++++++++++++
>   meta-oe/recipes-devtools/abseil-cpp/abseil-cpp_git.bb           | 1 +
>   .../lapack/{lapack_3.10.0.bb => lapack_3.10.1.bb} |   4 +-
>   .../dlt-daemon/dlt-daemon/CVE-2022-39836-CVE-2022-39837.patch   | 251
> ++++++++++++++++++++++++++++
>   .../recipes-extended/dlt-daemon/dlt-daemon/CVE-2023-36321.patch | 32 ++++
>   meta-oe/recipes-extended/dlt-daemon/dlt-daemon_2.18.8.bb        | 2 +
>   .../{python3-future_0.18.2.bb => python3-future_0.18.3.bb} |   3 +-
>   .../recipes-devtools/python/python3-grpcio-tools_1.45.0.bb      | 4 +
>   meta-python/recipes-devtools/python/python3-grpcio_1.45.0.bb    | 4 +
>   meta-webserver/recipes-httpd/nginx/files/CVE-2025-23419.patch   | 87
> ++++++++++
>   meta-webserver/recipes-httpd/nginx/nginx_1.24.0.bb              | 2 +
>   16 files changed, 547 insertions(+), 12 deletions(-)
>   create mode 100644
> meta-networking/recipes-protocols/net-snmp/net-snmp/0001-unload_all_mibs-fix-memory-leak-by-freeing-tclist.patch
>   rename meta-oe/recipes-dbs/postgresql/{postgresql_14.14.bb =>
> postgresql_14.17.bb} (71%)
>   create mode 100644
> meta-oe/recipes-devtools/abseil-cpp/abseil-cpp/CVE-2025-0838.patch
>   rename meta-oe/recipes-devtools/lapack/{lapack_3.10.0.bb =>
> lapack_3.10.1.bb} (86%)
>   create mode 100644
> meta-oe/recipes-extended/dlt-daemon/dlt-daemon/CVE-2022-39836-CVE-2022-39837.patch
>   create mode 100644
> meta-oe/recipes-extended/dlt-daemon/dlt-daemon/CVE-2023-36321.patch
>   rename meta-python/recipes-devtools/python/{python3-future_0.18.2.bb
> => python3-future_0.18.3.bb} (70%)
>   create mode 100644
> meta-webserver/recipes-httpd/nginx/files/CVE-2025-23419.patch
>