From patchwork Wed Dec 24 19:34:30 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gyorgy Sarvari X-Patchwork-Id: 77498 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 75C05E7848A for ; Wed, 24 Dec 2025 19:34:45 +0000 (UTC) Received: from mail-wr1-f53.google.com (mail-wr1-f53.google.com [209.85.221.53]) by mx.groups.io with SMTP id smtpd.msgproc02-g2.127034.1766604879249976203 for ; Wed, 24 Dec 2025 11:34:39 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@gmail.com header.s=20230601 header.b=V5D/zaDq; spf=pass (domain: gmail.com, ip: 209.85.221.53, mailfrom: skandigraun@gmail.com) Received: by mail-wr1-f53.google.com with SMTP id ffacd0b85a97d-42fb03c3cf2so3225798f8f.1 for ; Wed, 24 Dec 2025 11:34:39 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1766604877; x=1767209677; darn=lists.openembedded.org; h=content-transfer-encoding:mime-version:message-id:date:subject:to :from:from:to:cc:subject:date:message-id:reply-to; bh=GVI5E3mINeukwDN78uRnAQ+phEH/0Gt+m5Iz5SSJ6iI=; b=V5D/zaDq0yfAG2Q8e55g49QV60HLaDW/UNHoxUfo07QzzZASiJONlEl0JGrS/W/6Cl Wt7Te4HQM5wE0eRckQ95lpg4eqHT1dcbBucyxRDQc52lBbhaH79X2Zb5agWvfva540X1 C++jHkOnv2pucK/h1ir9YnxgIZfFU1Bh2m7U2iLZbm9XT+uasbeMk7BZ4y/P9fpeUAM2 iC5U+OGkzHQaqxmHLeOoCh/+XgWkXZOKMsK9tK9fKdNWDbqiUoY2KfO1H1IuOhjVrfnx LNwOnS0iuJRmMXlb+0fCdU2PZ/26fgvkU9YaNrygbMqYywNKb1G5lRG7GdoAPu7vqbv6 1AnA== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766604877; x=1767209677; h=content-transfer-encoding:mime-version:message-id:date:subject:to :from:x-gm-gg:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=GVI5E3mINeukwDN78uRnAQ+phEH/0Gt+m5Iz5SSJ6iI=; b=H4BB/cXdsPc2EFpKbR1SvDOT6wD0ZYHp84QkUVFHK12UXazkP/zEgTF9WAxdlwjQCx phOI55fEknTosPW/tzEVdDIdlq3yqaZog2EMLkGBfzuwhpFxOWSjpfO9N+9fMny7KP9+ GJ1Wz+K3bukwrAQlv++3sLS/yMasEFrPWb0LUtbiVCYVlC+00IeRxBw+/1H/UG2mAKOk 1qOHxMTqgEmhjYKGa5Ye27ndDRWFqH6mq1UFB4tGOREA43zVEvbAgnOEiGzJvcPUiMLX d3RRhMzHmsoku9t5+sRIIh+LrzcQVfTLL2mFxCHe/EkFXm/CDi1PaIzMAQEctcoHmjtc fbFQ== X-Gm-Message-State: AOJu0YxzVZbHxus+pdONAxFtrKeZERoAttHdx8mNoJwtNEMXrUAYbrwG gOPmZzwfoCtPq+9K6MgH/T2bJRjXW+swD3dC8JYrxOKRRe9dgYHprvceBQdWTw== X-Gm-Gg: AY/fxX4XOvlaIaAkjUCGqYS6LbvkVY5QY6Tx0/Z7FkzJJJhQNq4I8O5k8wlNeQ0CsEZ uatg8O4ZDzTK5P5cuH6j9aqDBeOcdCfHkfMkq2W3bDBxDrvtxTMQ8ih7KPUO9byN1lGg717EXd1 TSVG2Pj5Xrxt5YWZhCjPh0+PWKR+cbdaVlPByjWqwXHC5lTI1Nrc2mfaj9FOM3AXfZz0Almog8G loJr+WfRI8HnC51iW9JDUajhhI7OGAvfuz6sPhV1jeOF2+zGcfgZKvHDA1JQ2Vlhdxs7zgLgIVt S6XEm4drMGP4/z2gfAL1rwzYmnB7GZ1pL3umopI1081UWXcSAdtqupnQBhMx3s2lVUzyWrhvRRx 1woyJ3sfztuWT3Uu98IG6tQz7UU5nrp1k2zKczsejAAip4bMalmNyoV0MRRglvq2pRuSeykeN0T 3y4DooSlRYEtXSyihwfc8= X-Google-Smtp-Source: AGHT+IFOacTKZA24KB3ZVFulnfpI5KX4Cp4z7gS4GDjhgWvqJg6bDPoUQrz3tEbbxiBDquaGB4mruA== X-Received: by 2002:a05:6000:401f:b0:42f:bb08:d1f0 with SMTP id ffacd0b85a97d-4324e704909mr22979443f8f.60.1766604877408; Wed, 24 Dec 2025 11:34:37 -0800 (PST) Received: from desktop ([51.154.145.205]) by smtp.gmail.com with ESMTPSA id ffacd0b85a97d-4324ea1af20sm33750665f8f.2.2025.12.24.11.34.34 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 24 Dec 2025 11:34:36 -0800 (PST) From: Gyorgy Sarvari To: openembedded-devel@lists.openembedded.org Subject: [meta-oe][kirkstone][PATCH 1/5] imagemagick: patch CVE-2022-1115 Date: Wed, 24 Dec 2025 20:34:30 +0100 Message-ID: <20251224193434.2631122-1-skandigraun@gmail.com> X-Mailer: git-send-email 2.52.0 MIME-Version: 1.0 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Wed, 24 Dec 2025 19:34:45 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-devel/message/122892 Details: https://nvd.nist.gov/vuln/detail/CVE-2022-1115 Pick the patch referenced in the NVD report. Tested successfully against the PoC described in the related Github issue[1]. [1]: https://github.com/ImageMagick/ImageMagick/issues/4974 Signed-off-by: Gyorgy Sarvari --- .../imagemagick/files/CVE-2022-1115.patch | 25 +++++++++++++++++++ .../imagemagick/imagemagick_7.0.10.bb | 1 + 2 files changed, 26 insertions(+) create mode 100644 meta-oe/recipes-support/imagemagick/files/CVE-2022-1115.patch diff --git a/meta-oe/recipes-support/imagemagick/files/CVE-2022-1115.patch b/meta-oe/recipes-support/imagemagick/files/CVE-2022-1115.patch new file mode 100644 index 0000000000..51a441cfe3 --- /dev/null +++ b/meta-oe/recipes-support/imagemagick/files/CVE-2022-1115.patch @@ -0,0 +1,25 @@ +From 0d8ca198fd90d882e524a3bc2eed55aff5c737c1 Mon Sep 17 00:00:00 2001 +From: Cristy +Date: Tue, 22 Mar 2022 20:11:27 -0400 +Subject: [PATCH] https://github.com/ImageMagick/ImageMagick/issues/4974 + +CVE: CVE-2022-1115 +Upstream-Status: Backport [https://github.com/ImageMagick/ImageMagick6/commit/1f860f52bd8d58737ad883072203391096b30b51] +Signed-off-by: Gyorgy Sarvari +--- + coders/tiff.c | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/coders/tiff.c b/coders/tiff.c +index d8e9a8953..c3767c8c3 100644 +--- a/coders/tiff.c ++++ b/coders/tiff.c +@@ -1993,7 +1993,7 @@ static Image *ReadTIFFImage(const ImageInfo *image_info, + number_pixels=(MagickSizeType) columns*rows; + if (HeapOverflowSanityCheck(rows,sizeof(*tile_pixels)) != MagickFalse) + ThrowTIFFException(ResourceLimitError,"MemoryAllocationFailed"); +- extent=TIFFTileSize(tiff); ++ extent=4*MagickMax(rows*TIFFTileRowSize(tiff),TIFFTileSize(tiff)); + #if defined(TIFF_VERSION_BIG) + extent+=columns*sizeof(uint64); + #else diff --git a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb index 0b2eeb2ad4..350b504400 100644 --- a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb +++ b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb @@ -45,6 +45,7 @@ SRC_URI = "git://github.com/ImageMagick/ImageMagick.git;branch=main;protocol=htt file://0011-ImageMagick-Add-support-patch-2-to-fix-CVE-2023-3415.patch \ file://0011-ImageMagick-Add-support-patch-3-to-fix-CVE-2023-3415.patch \ file://0011-ImageMagick-Fix-CVE-2023-34151.patch \ + file://CVE-2022-1115.patch \ " SRCREV = "35b4991eb0939a327f3489988c366e21068b0178" From patchwork Wed Dec 24 19:34:31 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gyorgy Sarvari X-Patchwork-Id: 77497 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 76A5CE7848B for ; Wed, 24 Dec 2025 19:34:45 +0000 (UTC) Received: from mail-wr1-f54.google.com (mail-wr1-f54.google.com [209.85.221.54]) by mx.groups.io with SMTP id smtpd.msgproc02-g2.127035.1766604880704019727 for ; Wed, 24 Dec 2025 11:34:41 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@gmail.com header.s=20230601 header.b=l2RtwO8U; spf=pass (domain: gmail.com, ip: 209.85.221.54, mailfrom: skandigraun@gmail.com) Received: by mail-wr1-f54.google.com with SMTP id ffacd0b85a97d-430f2ee2f00so2995015f8f.3 for ; Wed, 24 Dec 2025 11:34:40 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1766604879; x=1767209679; darn=lists.openembedded.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:from:to:cc:subject:date:message-id :reply-to; bh=ThPOP1OQafPH5tRzKfkj50KTvYCW3y0+dALhCUOSv5M=; b=l2RtwO8U4FY73Qc4aiaK5/CvjDvZBevL3T5zo9X7zmq1jqSAlgPgSzoxpLD9PxJeJZ KzVM0Tx88s988MNiYvnywbOx9uLzy7wApfbYZZsOLyG/OsMECOE5UthfsQqYTaLSPLC3 K/U9qPq9IzthCuuaz5y9JIVFCcbqF5C7JvbOT01OCzxlVbFGJx4f0CUcID7L9hPnzyXk 8064WsoFnTFefa5wOJd+sM/Ggl0+tE71wr9UJD0fegOssQYu4TSjQ5Hm354BY09hNeSl sRt8DXGYQyGKcNDWtMGaly6gGhL6MUU/wOlrFfTKRq4ctKtXB4mV4XZNNCzHa7KZh2oF +Dxg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766604879; x=1767209679; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:x-gm-gg:x-gm-message-state:from:to :cc:subject:date:message-id:reply-to; bh=ThPOP1OQafPH5tRzKfkj50KTvYCW3y0+dALhCUOSv5M=; b=mi3fLcQzjnws6Sh83hEWhmx6BdwDG1Zopac6WVZhYGGvoPpRjvevbijahjMpe/5tnb wJyajjHM7IhF3uEkyeV0pU3qJV7Y5PWDKo5GDDSkpTT3a6vno1Qvl/QUPWaKJo0mMGB3 EpLep7yAG0IZc/B1+H2UJH6E1BtENCzi+yXtxxeJ95mwHX/ncUjGnIyQpzF8e0cE9OvL OpNL5i9nNv0WpFQTTGCjMexZ+mRnXR+DdGs/Nnv+lPAZVan6AaCc9MhPcPi8eL5swZpl hxRvjhrk2b4AC+sGqoDmOSIUB3KxAJBfAuhpAwAXROf2Lx8oLvcK0PePPmUhf58pDnSI zxCA== X-Gm-Message-State: AOJu0Yxk6TNyDZR8/FAB5rt+HUMd06XTn1JcMZGX5NwUNuNSY3Q5VMzz O0OiGpJ1GQ77xYQxwTF98YKllBv5m6Ne87KMMVgCxgU1gz43vq3TT56GLFNH9A== X-Gm-Gg: AY/fxX4sVa07ePO5uLl1c0uLF9d2ctAiJHuXhoyCe9q3SOvwrASkHLGusgMIibw9hiE Eduf+zmzftVDj5VKFPtVEZv5xLfDZx4isK3LDSUepL+GQSodqxT/xfk4UXd4eTK4yCyE6yh0DSq fdUUBasYREHqKg4lZxx7XY5OpWB36+QPixao3ZhT/Xr2vQxm6/ZJSn7le2d3SHw6jVFaNJ5CgLU DD2FSJXde6ED/XWdmlAWTX27QaVe93HM7Ig6wJT28M7w4hRgu3E6rZU/u9pltTWEK1hD1HLivZO c36ksq/cFsarrxiYkoF0mJrsbmici9W/Qbnv7qgPk1y9z88Hzuxb3dyp/Mh4ZDCbyhe0YGSqB3G HqvbDxGOSBCu/CuknJLV/YWlsLWKdDYeYyCxqKlZhMmPjVT2L0WnEb9u+vlL5hHN8eyTtvIUpgk ZPXB8sVI56 X-Google-Smtp-Source: AGHT+IGwIRZHfuVpDz9HDEpfKBUfpQUIvXA215BjLg99w7ErHxjxCkO5C/JkB+tplT+SlrI3zZualQ== X-Received: by 2002:a05:6000:4202:b0:430:f5ab:dc83 with SMTP id ffacd0b85a97d-4324e4c70cfmr22994071f8f.11.1766604878966; Wed, 24 Dec 2025 11:34:38 -0800 (PST) Received: from desktop ([51.154.145.205]) by smtp.gmail.com with ESMTPSA id ffacd0b85a97d-4324ea1af20sm33750665f8f.2.2025.12.24.11.34.37 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 24 Dec 2025 11:34:37 -0800 (PST) From: Gyorgy Sarvari To: openembedded-devel@lists.openembedded.org Subject: [meta-oe][kirkstone][PATCH 2/5] imagemagick: patch CVE-2025-65955 Date: Wed, 24 Dec 2025 20:34:31 +0100 Message-ID: <20251224193434.2631122-2-skandigraun@gmail.com> X-Mailer: git-send-email 2.52.0 In-Reply-To: <20251224193434.2631122-1-skandigraun@gmail.com> References: <20251224193434.2631122-1-skandigraun@gmail.com> MIME-Version: 1.0 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Wed, 24 Dec 2025 19:34:45 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-devel/message/122893 Details: https://nvd.nist.gov/vuln/detail/CVE-2025-65955 Pick the patch referenced by the NVD report. Signed-off-by: Gyorgy Sarvari --- .../imagemagick/files/CVE-2025-65955.patch | 25 +++++++++++++++++++ .../imagemagick/imagemagick_7.0.10.bb | 1 + 2 files changed, 26 insertions(+) create mode 100644 meta-oe/recipes-support/imagemagick/files/CVE-2025-65955.patch diff --git a/meta-oe/recipes-support/imagemagick/files/CVE-2025-65955.patch b/meta-oe/recipes-support/imagemagick/files/CVE-2025-65955.patch new file mode 100644 index 0000000000..57fb1c1bf7 --- /dev/null +++ b/meta-oe/recipes-support/imagemagick/files/CVE-2025-65955.patch @@ -0,0 +1,25 @@ +From f4e53579d8906c939e4169b9e14c5fe867e2b6b8 Mon Sep 17 00:00:00 2001 +From: Dirk Lemstra +Date: Sun, 23 Nov 2025 09:17:29 +0100 +Subject: [PATCH] Correct incorrect free (GHSA-q3hc-j9x5-mp9m) + +CVE: CVE-2025-65955 +Upstream-Status: Backport [https://github.com/ImageMagick/ImageMagick/commit/6f81eb15f822ad86e8255be75efad6f9762c32f8] +Signed-off-by: Gyorgy Sarvari +--- + Magick++/lib/Options.cpp | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/Magick++/lib/Options.cpp b/Magick++/lib/Options.cpp +index 9d2a5904b..14b06a724 100644 +--- a/Magick++/lib/Options.cpp ++++ b/Magick++/lib/Options.cpp +@@ -308,7 +308,7 @@ void Magick::Options::fontFamily(const std::string &family_) + { + if (family_.length() == 0) + { +- _drawInfo->family=(char *) RelinquishMagickMemory(_drawInfo->font); ++ _drawInfo->family=(char *) RelinquishMagickMemory(_drawInfo->family); + DestroyString(RemoveImageOption(imageInfo(),"family")); + } + else diff --git a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb index 350b504400..83e9ff2fd0 100644 --- a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb +++ b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb @@ -46,6 +46,7 @@ SRC_URI = "git://github.com/ImageMagick/ImageMagick.git;branch=main;protocol=htt file://0011-ImageMagick-Add-support-patch-3-to-fix-CVE-2023-3415.patch \ file://0011-ImageMagick-Fix-CVE-2023-34151.patch \ file://CVE-2022-1115.patch \ + file://CVE-2025-65955.patch \ " SRCREV = "35b4991eb0939a327f3489988c366e21068b0178" From patchwork Wed Dec 24 19:34:32 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gyorgy Sarvari X-Patchwork-Id: 77499 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 84E68E7848F for ; Wed, 24 Dec 2025 19:34:45 +0000 (UTC) Received: from mail-wr1-f51.google.com (mail-wr1-f51.google.com [209.85.221.51]) by mx.groups.io with SMTP id smtpd.msgproc01-g2.126491.1766604882280640226 for ; Wed, 24 Dec 2025 11:34:42 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@gmail.com header.s=20230601 header.b=XQEx/Bjg; spf=pass (domain: gmail.com, ip: 209.85.221.51, mailfrom: skandigraun@gmail.com) Received: by mail-wr1-f51.google.com with SMTP id ffacd0b85a97d-42e2e77f519so4049622f8f.2 for ; Wed, 24 Dec 2025 11:34:42 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1766604881; x=1767209681; darn=lists.openembedded.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:from:to:cc:subject:date:message-id :reply-to; bh=xlS/G9uOzhtQKb1X+/2FyhBaRuzoPiKvndAvqyRVfj8=; b=XQEx/BjgVfVWNchVssML8XZbUp1LjEojtCOV47FFjFt/2fqmybHsF+qqg8sB4Vz5H8 hOLI6a94LXWKInAL8EKqMyENebwaTBbvBmHRbZtv/ALJY0a1S/DwsGIXhVNbeRCX0V6w hz0jlAklGQeBxOyy1288Hp7crQV7/YGtfYkTWHqc+fuM2R+ISb+hhSJ/KO7FimCChfGh AV62BwyXDOZSCI+Nt0DPyDdg85BbqB6V//hb7LxkjWuwX2InqLPq27ev/yEDg77aYSKJ GBwllFd7H61vJTxo1p+h0dsAvAgsjMVp1yKoTav3Q8oJgmlOZJ66b671nbdhz3EFU4dv ZGwg== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766604881; x=1767209681; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:x-gm-gg:x-gm-message-state:from:to :cc:subject:date:message-id:reply-to; bh=xlS/G9uOzhtQKb1X+/2FyhBaRuzoPiKvndAvqyRVfj8=; b=MuMytR51u8sS6F+i6vb5MlAuueUGC4Ayzb+KLH3Ufa5GcUG/4uLF02F2Hbos2hOLbk RChba8CDilI8FHqT1r7R9IvsVNMa2eLeJNmnfPl0BsyiEEi+EmYX3k3rrFdfSiLdVuNY /LYYslWYjCALPOpk/FGYXXmwcsXebCSBiZjAe/V/xaFmKDQFWAlLIJjNH8gwosffm+nt zkXm0EQb7cqOi9y1pjPlX8KifFSW5OxNaFcPCHtSD7sdDayg362aevVrwk2YmSDOKT84 /DZzpajSNHD4C9co3EMY8wr33dgzROKfE9UDfpFfmxyQuepnVasnx5C3INu0kXIwF478 VOJg== X-Gm-Message-State: AOJu0Yxs82LhX67eZycF/lSC27zNgrOGbSG/uHHFf2uhIOD3Q9CF6Eec 0k0s2sF4AJjhcPogsFSS9hSXFC6PfiU6pzoJxtpvldxzY+brGkUX+fDf/HowKw== X-Gm-Gg: AY/fxX51V2Awhlmi5TOh3bi6SYEw9rpUp78zqCMA/Z7+DTnewQHG0cBo+fVhh8wx5aJ sozYNJPND2U4qwAIWiLXiq/D7vhsQaM95SV0WrWY6Hxda+EV3ARzQrJOvDORPPJW5vB0XsVMv9+ U5xDjZ/hMwHbTtVxrHR6MJ3+A5odIWfsvUR4/EXekNQQ/lhEANBRFEMzV10Js6CwKyIbGBlKWpe fcWIkfipUId6ZUXaU+u5yJ9GzUolm20OIOmapgiSJCVG+/r2NT7tvk27c66HmiQMwWrDTqRGgHZ 4Ut3vtCeRG46I9yXZQfX2tlIEtqLhFsZSgWBexuOCCshQg+RL2NzQMYxhhhtrCnJecbyTJsHA5V UGEfNAf7fZpxUQlKf9iQxD12kJKrK364TfwucwScTacD6jW1ZlfAAdUOf/Pw9Qsnd0YAXHXDZMY mswidTao9Q X-Google-Smtp-Source: AGHT+IFiuuX5I2Fm98Y22tfeaSXvJ6EZOZGZ2hfBVQVskNrkXqS0iybJ8JXb7Qtv7b5elFoVbtFqpQ== X-Received: by 2002:a05:6000:24c9:b0:430:fc0f:8fb3 with SMTP id ffacd0b85a97d-4324e506148mr22732440f8f.38.1766604880534; Wed, 24 Dec 2025 11:34:40 -0800 (PST) Received: from desktop ([51.154.145.205]) by smtp.gmail.com with ESMTPSA id ffacd0b85a97d-4324ea1af20sm33750665f8f.2.2025.12.24.11.34.39 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 24 Dec 2025 11:34:40 -0800 (PST) From: Gyorgy Sarvari To: openembedded-devel@lists.openembedded.org Subject: [meta-oe][kirkstone][PATCH 3/5] imagemagick: patch CVE-2025-62171 Date: Wed, 24 Dec 2025 20:34:32 +0100 Message-ID: <20251224193434.2631122-3-skandigraun@gmail.com> X-Mailer: git-send-email 2.52.0 In-Reply-To: <20251224193434.2631122-1-skandigraun@gmail.com> References: <20251224193434.2631122-1-skandigraun@gmail.com> MIME-Version: 1.0 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Wed, 24 Dec 2025 19:34:45 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-devel/message/122894 Details: https://nvd.nist.gov/vuln/detail/CVE-2025-62171 Pick the patch that's mentioned in the nvd report. Signed-off-by: Gyorgy Sarvari --- .../imagemagick/files/CVE-2025-62171.patch | 26 +++++++++++++++++++ .../imagemagick/imagemagick_7.0.10.bb | 1 + 2 files changed, 27 insertions(+) create mode 100644 meta-oe/recipes-support/imagemagick/files/CVE-2025-62171.patch diff --git a/meta-oe/recipes-support/imagemagick/files/CVE-2025-62171.patch b/meta-oe/recipes-support/imagemagick/files/CVE-2025-62171.patch new file mode 100644 index 0000000000..7b6012657e --- /dev/null +++ b/meta-oe/recipes-support/imagemagick/files/CVE-2025-62171.patch @@ -0,0 +1,26 @@ +From 12e9e846c20e8429940c1aab01ca8ffb9067bed0 Mon Sep 17 00:00:00 2001 +From: Dirk Lemstra +Date: Sun, 12 Oct 2025 20:43:14 +0200 +Subject: [PATCH] Added extra check to resolve issue on 32-bit systems + (https://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-9pp9-cfwx-54rm) + +CVE: CVE-2025-62171 +Upstream-Status: Backport [https://github.com/ImageMagick/ImageMagick/commit/cea1693e2ded51b4cc91c70c54096cbed1691c00] +Signed-off-by: Gyorgy Sarvari +--- + coders/bmp.c | 2 ++ + 1 file changed, 2 insertions(+) + +diff --git a/coders/bmp.c b/coders/bmp.c +index 37f54e7f8..26deb34fe 100644 +--- a/coders/bmp.c ++++ b/coders/bmp.c +@@ -976,6 +976,8 @@ static Image *ReadBMPImage(const ImageInfo *image_info,ExceptionInfo *exception) + ThrowReaderException(CorruptImageError,"ImproperImageHeader"); + if (bmp_info.compression == BI_RLE4) + bmp_info.bits_per_pixel<<=1; ++ if (BMPOverflowCheck(image->columns,bmp_info.bits_per_pixel) != MagickFalse) ++ ThrowReaderException(ResourceLimitError,"MemoryAllocationFailed"); + extent=image->columns*bmp_info.bits_per_pixel; + bytes_per_line=4*((extent+31)/32); + if (BMPOverflowCheck(bytes_per_line,image->rows) != MagickFalse) diff --git a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb index 83e9ff2fd0..81f4596456 100644 --- a/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb +++ b/meta-oe/recipes-support/imagemagick/imagemagick_7.0.10.bb @@ -47,6 +47,7 @@ SRC_URI = "git://github.com/ImageMagick/ImageMagick.git;branch=main;protocol=htt file://0011-ImageMagick-Fix-CVE-2023-34151.patch \ file://CVE-2022-1115.patch \ file://CVE-2025-65955.patch \ + file://CVE-2025-62171.patch \ " SRCREV = "35b4991eb0939a327f3489988c366e21068b0178" From patchwork Wed Dec 24 19:34:33 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gyorgy Sarvari X-Patchwork-Id: 77500 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 84E06E7848E for ; Wed, 24 Dec 2025 19:34:45 +0000 (UTC) Received: from mail-wr1-f48.google.com (mail-wr1-f48.google.com [209.85.221.48]) by mx.groups.io with SMTP id smtpd.msgproc01-g2.126492.1766604884846183255 for ; Wed, 24 Dec 2025 11:34:45 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@gmail.com header.s=20230601 header.b=Kku1xVY5; spf=pass (domain: gmail.com, ip: 209.85.221.48, mailfrom: skandigraun@gmail.com) Received: by mail-wr1-f48.google.com with SMTP id ffacd0b85a97d-42fb5810d39so3293164f8f.2 for ; Wed, 24 Dec 2025 11:34:44 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1766604883; x=1767209683; darn=lists.openembedded.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:from:to:cc:subject:date:message-id :reply-to; bh=SaMvdJ0AoAKAHVoJHq9tcXy4Ta/bdf+gkoTUioshrjc=; b=Kku1xVY5XOkwf6D3pZIut4+5EOddMrIKOjB7cRBQFryYyZO4Sz1CSdf4u9RWOXofDX E6lRyePg/WwZhL6uLQW+aOxyR7jkfdpOGfbImZn6GLiJvpUpWjLVh7I79TeuXVEaXzob YfB4ZjEpSSJJfUZQhJ6FIbsDfl/Y65aeUqAteWZ3vmZ6bJ8kSJqWn4cua/K8NyG4152s ScWZiJCZGqyzM0+8r1xmPxz/D8jpqzvE8x/KrY8lNiiAO+Im0oLIbqoWnFF8TI3fpUKi AGP3YgcuhHeg2nU4I6xwsizLj1mk+x62390SNeqWz9OzyMdqNQPdSo/JmrJN3wpWjPMA lH9A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766604883; x=1767209683; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:x-gm-gg:x-gm-message-state:from:to :cc:subject:date:message-id:reply-to; bh=SaMvdJ0AoAKAHVoJHq9tcXy4Ta/bdf+gkoTUioshrjc=; b=sb0DfhobMInpIQ1bJ7Dz8LBVQ5vxp4ARPQmRvJuiFM+wV6EO6Pke5tTUkVoihY00qS 0CWM70DZKXoA8ecFaIqoG0mPitH/Mo5W33Vmle3jmi4HHR98dmBjINr3Q+v1/M6guLta gz66oCkH8Pp3lsXpQMdCtyAaIICmqiXiki0F08fzMqSXGryTC8pf64Rpvf14Ti3jANT4 +TCHyY6JNfovBQ2wwrIEEye65ic38nJKTx1tbXmpkHdwkxOXJG01dS2rKixn21+AMSFv /Pxt3ikOhDPXXC4ua1CL7SZ12UudGaLGp5ZgrKnyHZqmM4oezP0bO3quOvlUsl2sJ95z /GEA== X-Gm-Message-State: AOJu0YwysE60WRxi57E4/A/VQOh0CGMLJCs7SKkuUbTl50c2Ueu3Y3dq cmkIuc7NC1GlWM4FmGfzPbuAgc+XW3QFsNb3ML1u6vKYmZfZu18Lf2JmjMNcmQ== X-Gm-Gg: AY/fxX7ICoX0Mbee4PgXESFXnrlnzj/kEQPYgbtS/ORX92MreZazkYyinGC/VJsl3d/ dTMGvdK5G5Iw81NsRm6S8kkZT1DpHfCJKtWXsDm5+TKhV1hNOkeFGQ8N0f18uLa63ey/mQ15YqM ImDc9yvY5yNuWhOsDKwmMVo+0iYoIc52zyD3CUddOBgqSAiIDJ54upkuuZGHciz3oodwTManTjt bZVaYx07IHW+z/WsWYIHlm89vDTzmdw13MjGwb+o4GJH5e7gJW8wVqkAYAb2IlN/Jhvmd2pCMkm pvmsQLljVQ2g92mxROiRymG4AkVr08wG0/CxoKVfrjoEqk4RFmVdCaFNRE2Q6kFC3A5Uh5dXSdg AMZ5ttS876FMzhADIlLT0UXknj4VeY9oIh9ewIvWj8Xg0ucOcsbtj/sQKj33TPjNtH+qCuyldvN +zDhBfUchd X-Google-Smtp-Source: AGHT+IExMxl7ZPYg07eMMRJvckNbeug/bQ79/bafWeoV5V0NwI5tuImekgmdNWYBnam9IioSE2qctQ== X-Received: by 2002:a05:6000:22c8:b0:430:f6c0:6c47 with SMTP id ffacd0b85a97d-4324e4cbea8mr21264426f8f.21.1766604883067; Wed, 24 Dec 2025 11:34:43 -0800 (PST) Received: from desktop ([51.154.145.205]) by smtp.gmail.com with ESMTPSA id ffacd0b85a97d-4324ea1af20sm33750665f8f.2.2025.12.24.11.34.40 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 24 Dec 2025 11:34:41 -0800 (PST) From: Gyorgy Sarvari To: openembedded-devel@lists.openembedded.org Subject: [meta-oe][kirkstone][PATCH 4/5] zabbix: patch CVE-2025-49643 Date: Wed, 24 Dec 2025 20:34:33 +0100 Message-ID: <20251224193434.2631122-4-skandigraun@gmail.com> X-Mailer: git-send-email 2.52.0 In-Reply-To: <20251224193434.2631122-1-skandigraun@gmail.com> References: <20251224193434.2631122-1-skandigraun@gmail.com> MIME-Version: 1.0 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Wed, 24 Dec 2025 19:34:45 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-devel/message/122895 The actual patch was identified by checking the file that was modified in the tag 6.0.42, and also by looking at the Jira item referenced by it: the patch references DEV-4466, the same ID that is referenced in the Jira ticket[1] referenced by the NVD report (look in the "All Activity" tab). [1]: https://support.zabbix.com/browse/ZBX-27284 Signed-off-by: Gyorgy Sarvari --- .../zabbix/zabbix/CVE-2025-49643.patch | 38 +++++++++++++++++++ .../zabbix/zabbix_5.4.12.bb | 1 + 2 files changed, 39 insertions(+) create mode 100644 meta-oe/recipes-connectivity/zabbix/zabbix/CVE-2025-49643.patch diff --git a/meta-oe/recipes-connectivity/zabbix/zabbix/CVE-2025-49643.patch b/meta-oe/recipes-connectivity/zabbix/zabbix/CVE-2025-49643.patch new file mode 100644 index 0000000000..c518880c7a --- /dev/null +++ b/meta-oe/recipes-connectivity/zabbix/zabbix/CVE-2025-49643.patch @@ -0,0 +1,38 @@ +From 2fe5c1d761226d73fe49269eac96dcd99860efa6 Mon Sep 17 00:00:00 2001 +From: Ginta Berzina +Date: Mon, 1 Sep 2025 14:10:12 +0300 +Subject: [PATCH] ..F....... [DEV-4466] fixed resource usage for image resize + +CVE: CVE-2025-49643 +Upstream-Status: Backport [https://github.com/zabbix/zabbix/commit/aeada86d3c8231e1e173c6a7ac19ea60bf899b86] +Signed-off-by: Gyorgy Sarvari +--- + ui/imgstore.php | 8 ++------ + 1 file changed, 2 insertions(+), 6 deletions(-) + +diff --git a/ui/imgstore.php b/ui/imgstore.php +index 38661f5..6a616df 100644 +--- a/ui/imgstore.php ++++ b/ui/imgstore.php +@@ -34,8 +34,8 @@ $fields = [ + 'css' => [T_ZBX_INT, O_OPT, P_SYS, null, null], + 'imageid' => [T_ZBX_STR, O_OPT, P_SYS, null, null], + 'iconid' => [T_ZBX_INT, O_OPT, P_SYS, DB_ID, null], +- 'width' => [T_ZBX_INT, O_OPT, P_SYS, BETWEEN(1, 2000), null], +- 'height' => [T_ZBX_INT, O_OPT, P_SYS, BETWEEN(1, 2000), null], ++ 'width' => [T_ZBX_INT, O_OPT, P_SYS, BETWEEN(1, 200), null], ++ 'height' => [T_ZBX_INT, O_OPT, P_SYS, BETWEEN(1, 200), null], + 'unavailable' => [T_ZBX_INT, O_OPT, null, IN([0, 1]), null] + ]; + check_fields($fields); +@@ -58,10 +58,6 @@ if (isset($_REQUEST['css'])) { + foreach ($images as $image) { + $image['image'] = base64_decode($image['image']); + $ico = imagecreatefromstring($image['image']); +- +- if ($resize) { +- $ico = imageThumb($ico, $width, $height); +- } + $w = imagesx($ico); + $h = imagesy($ico); + diff --git a/meta-oe/recipes-connectivity/zabbix/zabbix_5.4.12.bb b/meta-oe/recipes-connectivity/zabbix/zabbix_5.4.12.bb index 75ba16a450..f55890a456 100644 --- a/meta-oe/recipes-connectivity/zabbix/zabbix_5.4.12.bb +++ b/meta-oe/recipes-connectivity/zabbix/zabbix_5.4.12.bb @@ -34,6 +34,7 @@ SRC_URI = "https://cdn.zabbix.com/zabbix/sources/oldstable/5.4/${BPN}-${PV}.tar. file://CVE-2023-32726.patch \ file://CVE-2023-32727_0001.patch \ file://CVE-2023-32727_0002.patch \ + file://CVE-2025-49643.patch \ " SRC_URI[md5sum] = "f295fd2df86143d72f6ff26e47d9e39e" From patchwork Wed Dec 24 19:34:34 2025 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Gyorgy Sarvari X-Patchwork-Id: 77501 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 89508E7848C for ; Wed, 24 Dec 2025 19:34:55 +0000 (UTC) Received: from mail-wr1-f50.google.com (mail-wr1-f50.google.com [209.85.221.50]) by mx.groups.io with SMTP id smtpd.msgproc01-g2.126493.1766604886223790734 for ; Wed, 24 Dec 2025 11:34:46 -0800 Authentication-Results: mx.groups.io; dkim=pass header.i=@gmail.com header.s=20230601 header.b=B6Jaaapg; spf=pass (domain: gmail.com, ip: 209.85.221.50, mailfrom: skandigraun@gmail.com) Received: by mail-wr1-f50.google.com with SMTP id ffacd0b85a97d-42b3c5defb2so3846959f8f.2 for ; Wed, 24 Dec 2025 11:34:46 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1766604885; x=1767209685; darn=lists.openembedded.org; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:from:to:cc:subject:date:message-id :reply-to; bh=SeoTxWekxaUxlltQvnSL66qSSxOO1WbTv7pRczoKDos=; b=B6JaaapgpiLggBaQqn66IKamTmJ9q6dVpP1msiGE6NJHsk+cIZSKcaskIMdTfeIV3u z9dY7PKUyG9VkFqrwu9OadpnuFkCV06sNh5sN9PD3G6YznH+wVtfhWC0Jtk9BoPrXOQl qSpRqu3/1uDwS2bWPAc0wGi2HT8AxfDyXTc1I2dpUZ7W8aIuFtJU5OXgUZvNav0Wz2k2 twaJpaK+7ZWI521qcvwrakrOTZsAtNtEzfGh0vSvKBdiXPTK7p+ba9yakmFdaZgBIFJG /O5HaMN36LcHE07GATMwwn47JiL1HDm8LxmKKXqtZw7Ncp+RAxjR8xtNKDRmTlbLs/SG pK1A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1766604885; x=1767209685; h=content-transfer-encoding:mime-version:references:in-reply-to :message-id:date:subject:to:from:x-gm-gg:x-gm-message-state:from:to :cc:subject:date:message-id:reply-to; bh=SeoTxWekxaUxlltQvnSL66qSSxOO1WbTv7pRczoKDos=; b=JKA8yLKeeD+5AhMRZyxb6+A6vOwQxX1aJwK61CErCfRImupVCDM+T9Dj5QZLQD6ytW EC9pKa1zhg5HCW0pmzYyfF5SY2pISKcFV/uZhizs9H9oTsl/v4K1dNDnZy0aWXQF1xP6 TUe8plXovvNxGAckvAMejGJOZn8ytzRdGJYesDJciiRaGBNhDnIVlNMEYIw46FatHLaH RXus4let6aEBfU7y2Up7FTLF06wQ7S6UeoQOZZUgNs3xzu8KxxdKltK6KbjtP9Mu7h/4 mHAa0iw1C5AWbSmefNt/n+Tap9HzeA81Ts7qXwJh5KavhlM29f7t9Bs/bZl/tjlKVgeX iKRQ== X-Gm-Message-State: AOJu0YxVtVy8t4tAfN46pBo/d5lqHqZSZsLD59iHeCU14kxLKHoinUP0 3iYSfuGlJ5RQjDFm63/eX3tFDqxxHUV+Z3rRLZNdM94cBQZIqE7oIuAYHamnyQ== X-Gm-Gg: AY/fxX71vptu/p9g3wG7lDMqMuD9ekOjtX1N11AL9fNxMXEpsMFTlxkMLKwII53gWQx 61CGn7oQUlejFcJQrgJGmpokVGKxprCBLvHtWRt3fpyxN4gMHZRISRg3b+EanS++Ahnqa+oLMix V3x6GItvq7GcMErelV38Aux48xoC/d/pcq2LT+CUTCYhYXy7zhlvA4R8PhDYcxvFQFBp+PD1Svo kLotY6YqQY866ve5CRUk5kyC9ooxub0kCtk3eq4MDHGO6/S+QMpa7kysTUV/EWF9VxUX65brsA3 c9GhfWh9MkFMRdGHXKJJ5Fr+o/KR6bUozfSiLz/NJYQIGUHWuU8S3EpT0JS9Z/5EiwWVp4vPkPm mcTiHBnWaP17phCuYu5qgIGEyCfsgRIVuq3+4mxcn07Lrc0CodJcXGKkRzbjOx8JaxWy0YbKP8l vu+7ei/HIkwPOjC7s+pkU= X-Google-Smtp-Source: AGHT+IFCCdmXwGM/MaAmKtyBOOKtl8C310rrscauWrBGKKWR6j+E0L7KzNnTquIn2cgum8TUFlEGvA== X-Received: by 2002:a05:6000:200e:b0:431:9dd:2cca with SMTP id ffacd0b85a97d-4324e4c126fmr19182335f8f.7.1766604884567; Wed, 24 Dec 2025 11:34:44 -0800 (PST) Received: from desktop ([51.154.145.205]) by smtp.gmail.com with ESMTPSA id ffacd0b85a97d-4324ea1af20sm33750665f8f.2.2025.12.24.11.34.43 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Wed, 24 Dec 2025 11:34:44 -0800 (PST) From: Gyorgy Sarvari To: openembedded-devel@lists.openembedded.org Subject: [meta-multimedia][kirkstone][PATCH 5/5] libmediaart-2.0: upgrade 1.9.6 -> 1.9.7 Date: Wed, 24 Dec 2025 20:34:34 +0100 Message-ID: <20251224193434.2631122-5-skandigraun@gmail.com> X-Mailer: git-send-email 2.52.0 In-Reply-To: <20251224193434.2631122-1-skandigraun@gmail.com> References: <20251224193434.2631122-1-skandigraun@gmail.com> MIME-Version: 1.0 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Wed, 24 Dec 2025 19:34:55 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-devel/message/122896 This is a bugfix release, fixing some memory leaks and compiler warning (and it also has a couple of commits related to the project's own CI system, which doesn't affect the application) Changelog: https://gitlab.gnome.org/GNOME/libmediaart/-/blob/master/NEWS Signed-off-by: Gyorgy Sarvari --- .../{libmediaart-2.0_1.9.6.bb => libmediaart-2.0_1.9.7.bb} | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) rename meta-multimedia/recipes-support/libmediaart/{libmediaart-2.0_1.9.6.bb => libmediaart-2.0_1.9.7.bb} (90%) diff --git a/meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.6.bb b/meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.7.bb similarity index 90% rename from meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.6.bb rename to meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.7.bb index 90dc6ab498..7058fa0bab 100644 --- a/meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.6.bb +++ b/meta-multimedia/recipes-support/libmediaart/libmediaart-2.0_1.9.7.bb @@ -12,7 +12,7 @@ GNOMEBASEBUILDCLASS = "meson" inherit gnomebase gobject-introspection vala features_check SRC_URI = "${GNOME_MIRROR}/libmediaart/1.9/libmediaart-${PV}.tar.xz" -SRC_URI[sha256sum] = "c3bc5025d7db380587f9c8eb800c611f6b5a16d6b4b78fcff93f62876a677f17" +SRC_URI[sha256sum] = "2b43dd9f54f0d8d0b89e2addb83341ab06d7b98cb1b2e704383584af9c560f6b" S = "${WORKDIR}/libmediaart-${PV}"