From patchwork Tue Oct 6 06:24:53 2026 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: auh@yoctoproject.org X-Patchwork-Id: 100026 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from aws-us-west-2-korg-lkml-1.web.codeaurora.org (localhost.localdomain [127.0.0.1]) by smtp.lore.kernel.org (Postfix) with ESMTP id 10A19CA5FFC for ; Tue, 6 Oct 2026 06:24:56 +0000 (UTC) Received: from a27-192.smtp-out.us-west-2.amazonses.com (a27-192.smtp-out.us-west-2.amazonses.com [54.240.27.192]) by mx.groups.io with SMTP id smtpd.msgproc02-g2.39323.1791267894356408091 for ; Mon, 05 Oct 2026 23:24:54 -0700 Authentication-Results: mx.groups.io; dkim=pass header.i=@yoctoproject.org header.s=lvjh2tk576v2ro5mi6k4dt3mc6wpqbky header.b=AXisx9w7; dkim=pass header.i=@amazonses.com header.s=hsbnp7p3ensaochzwyq5wwmceodymuwv header.b=FpnC32Q2; spf=pass (domain: us-west-2.amazonses.com, ip: 54.240.27.192, mailfrom: 010101a10fe2effd-d4efaf5d-d2a4-40be-affe-afb2ff844c1f-000000@us-west-2.amazonses.com) DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple; s=lvjh2tk576v2ro5mi6k4dt3mc6wpqbky; d=yoctoproject.org; t=1791267893; h=Content-Type:MIME-Version:From:To:Cc:Subject:Message-Id:Date; bh=570Gp+Mxbql4zms/Eu4B0SY35ePkEdnHS0f7uJrww8E=; b=AXisx9w7ef3iuMmkCL7y0ThMNDEYC+b4HklrT1ZM76YW3kkalTpAFdf0kaUCulS4 OtHaKcwpDoeiBAdaBjQbeRCQd1ahU+6tRQG9OrZettFS9SbVaI/CpeVUygONjI/QuQI gAEfUomRVFcjiWRwIY9QXuhVhslqEGEZaTW/XoiU= DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple; s=hsbnp7p3ensaochzwyq5wwmceodymuwv; d=amazonses.com; t=1791267893; h=Content-Type:MIME-Version:From:To:Cc:Subject:Message-Id:Date:Feedback-ID; bh=570Gp+Mxbql4zms/Eu4B0SY35ePkEdnHS0f7uJrww8E=; b=FpnC32Q239SYZ5j6+gkfOgisbfwH+0ze6FOiTSKPvHH5jlbPRPioPoHMsEPpFNjn PMUC1ibjIsFRpjGbJsQY3OHtV1JirkWgf5H54bUxwltQiiaqcMWiGpI1AcPXstNDIX+ 2F/5aFwNVx9qQAH5klBozdS7uY98hfw7N8CacBLs= MIME-Version: 1.0 From: auh@yoctoproject.org To: Fabio Estevam , Fabio Estevam Cc: openembedded-core@lists.openembedded.org Subject: [AUH] u-boot-tools,u-boot: upgrading to 2026.10 FAILED Message-ID: <010101a10fe2effd-d4efaf5d-d2a4-40be-affe-afb2ff844c1f-000000@us-west-2.amazonses.com> Date: Tue, 6 Oct 2026 06:24:53 +0000 Feedback-ID: ::1.us-west-2.9np3MYPs3fEaOBysGKSlUD4KtcmPijcmS9Az2Hwf7iQ=:AmazonSES X-SES-Outgoing: 2026.10.06-54.240.27.192 List-Id: X-Webhook-Received: from 45-33-107-173.ip.linodeusercontent.com [45.33.107.173] by aws-us-west-2-korg-lkml-1.web.codeaurora.org with HTTPS for ; Tue, 06 Oct 2026 06:24:56 -0000 X-Groupsio-URL: https://lists.openembedded.org/g/openembedded-core/message/247265 Hello, this email is a notification from the Auto Upgrade Helper that the automatic attempt to upgrade the recipe(s) *u-boot-tools,u-boot* to *2026.10* has Failed (devtool error). Detailed error information: The following devtool command failed: finish -f u-boot /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot NOTE: Reconnecting to bitbake server... Loading cache...done. Loaded 1994 entries from dependency cache. Parsing recipes... Summary: There were 3 ERROR messages, returning a non-zero exit code. ERROR: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot_2026.07.bb: Unable to get checksum for u-boot SRC_URI entry 0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch: file could not be found The following paths were searched: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/qemux86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/qemuall/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-2026.07/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch ERROR: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb: Unable to get checksum for nativesdk-u-boot-tools SRC_URI entry 0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch: file could not be found The following paths were searched: /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/poky/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/x86-64/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools-2026.10/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/u-boot-tools/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch /srv/pokybuild/yocto-worker/auh/build/layers/openembedded-core/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch ERROR: Parsing halted due to errors, see error messages above ERROR: Failed to start bitbake environment Next steps: - apply the patch: git am 0001-u-boot-tools-u-boot-upgrade-2026.07-2026.10.patch - check the changes to upstream patches and summarize them in the commit message, - compile an image that contains the package - perform some basic sanity tests - amend the patch and sign it off: git commit -s --reset-author --amend - send it to the appropriate mailing list Alternatively, if you believe the recipe should not be upgraded at this time, you can fill RECIPE_NO_UPDATE_REASON in respective recipe file so that automatic upgrades would no longer be attempted. Please review the attached files for further information and build/update failures. Any problem please file a bug at https://bugzilla.yoctoproject.org/enter_bug.cgi?product=Automated%20Update%20Handler Regards, The Upgrade Helper -- >8 -- From 98877f4965fafa68c253745e3cf754d98a426e68 Mon Sep 17 00:00:00 2001 From: Upgrade Helper Date: Tue, 6 Oct 2026 05:16:57 +0000 Subject: [PATCH] u-boot-tools,u-boot: upgrade 2026.07 -> 2026.10 Prepare v2026.10 MAINTAINERS: Fix Lukasz email Gitlab CI: Temporarily limit thread count on world builds board: beacon: Remove i.MX8MP Beacon EmbeddedWorks Devkit support board: beacon: Remove i.MX8MN Beacon EmbeddedWorks Devkit support board: beacon: Remove i.MX8MM Beacon EmbeddedWorks Devkit support board: beacon: Remove Beacon EmbeddedWorks RZ/G2 Dev Kit support board: davinci: Remove DA850 EVM support board: logicpd: Remove AM3517 EVM support board: logicpd: Remove i.MX6 SOM support board: logicpd: Remove OMAP3 SOM support Merge tag 'efi-2026-10-rc6' of https://git.u-boot- project.org/u-boot/custodians/u-boot-efi lmb: Add StarFive JH-7110 SoC as requiring DMA below 4GiB Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- sh boot: mention sbox in efi loader boot method doc efi_loader: fix efi_http_instance free on error Merge patch series "fsl, powerpc: Fix SPD read and appended DTB alignment" board: cssi: Move alignment padding into __u_boot_list section powerpc: mpc85xx: Move alignment padding into __u_boot_list section ddr: fsl: Fix SPD read when legacy I2C is used Merge tag 'u-boot-dfu-20260929' of https://git.u-boot- project.org/u-boot/custodians/u-boot-dfu usb: dwc3-generic: Fix ref clock enable error check power: domain: renesas-r8a78000: Add SDK SCP 4.39 map power: domain: renesas-r8a78000: Add SDK SCP 4.37 map clk: renesas: Add SDK SCP 4.39 map to Renesas R-Car R8A78000 X5H CPG clock driver clk: renesas: Add SDK SCP 4.37 map to Renesas R-Car R8A78000 X5H CPG clock driver configs: Resync with savedefconfig Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- usb usb: dwc3-generic: fix ref clock lookup indexing wrong clk_bulk array usb: gadget: f_mass_storage: Synchronously tear interface down usb: gadget: rockusb: terminate full-speed descriptors Prepare v2026.10-rc5 Merge tag 'u-boot-stm32-20260921' of https://git.u-boot- project.org/u-boot/custodians/u-boot-stm fw_env: do not create lockfile with read access for others MAINTAINERS: Update some SoCFPGA related addresses ARM: dts: Add bootph-all in ltdc node for sqtm32mp235f-dk-u-boot ARM: dts: Add bootph-all in ltdc node for stm32mp257f-dk-u-boot Merge tag 'u-boot-rockchip-2026.10-20260918' of https://git.u-boot- project.org/u-boot/custodians/u-boot-rockchip Revert "Clean up emails from non-existing domains" Clean up emails from non-existing domains Merge branch 'main' of https://git.u-boot-project.org/u-boot/custodians/u-boot- sh clk: versaclock: Fix incorrect error check in versaclock_probe() arm64: renesas: Enable FFA on Renesas R-Car X5H R8A78000 arm64: renesas: Drop empty board_early_init_f() from Renesas R-Car Gen5 common code arm64: renesas: Drop CNTP from Renesas R-Car Gen5 common code arm: renesas: Drop SYS_ARCH_TIMER on R-Car R8A78000 X5H Cortex-M33 RSIP Merge tag 'u-boot-dfu-20260914' of https://git.u-boot- project.org/u-boot/custodians/u-boot-dfu Merge tag 'net-20260915' of https://git.u-boot- project.org/u-boot/custodians/u-boot-net board: anbernic: Fix the RG-DS Kconfig target guard fastboot: fix the RK3328 buffer-address default test: dm: nfs: Add regression tests for the NFS reply-length checks net: nfs: Bound the length of an NFS readlink reply net: nfs: Bound the length of an NFS read reply u-boot: fix error check in eth init net: airoha: fix PCS calibration retry limit net: net6: validate IPv6 payload and transport lengths on receive net: lwip: allow DHCP to stop without releasing its lease net: lwip: add an HTTP client abort operation net: lwip: allow DNS callbacks to be canceled net: lwip: return ERR_ABRT after aborting wget receive test: dm: eth: add DHCPv6 oversized option regression tests net: dhcp6: bound received DUID option lengths MAINTAINERS: tee: update Jens Wiklander's email address env: Update description of single to redundant environment upgrade path Merge tag 'u-boot-pci-fixes-20260911' of https://git.u-boot- project.org/u-boot/custodians/neil.armstrong/u-boot-pci Merge tag 'u-boot-nvme-fixes-20260911' of https://git.u-boot- project.org/u-boot/custodians/neil.armstrong/u-boot-nvme dm: pci: fix uninitialized fdt_pci_addr fall-through in pci_get_devfn pci: Iterate over busses using uclass_foreach_dev_probe nvme: apple: Drop the PRP null check chicken bit nvme: apple: Add WARN_ON_ONCE for non page-aligned admin queue buffers nvme: apple: Never set the opcode in the NVMMU TCB nvme: apple: Don't set a DMA direction for commands without a data transfer avb: fix missing break in avb_set_state() switch dfu: mtd: probe before get_mtd_device_nm() Prepare v2026.10-rc4 arm: mvebu: armada8k: do not offer the ATF/TEE region as free memory Merge tag 'efi-2026-10-rc4-2' of https://git.u-boot- project.org/u-boot/custodians/u-boot-efi Merge tag 'fsl-qoriq-for-2026.10-rc4' of https://git.u-boot- project.org/u-boot/custodians/u-boot-fsl-qoriq configs: ls104{3,6}aqds_tfa: enable PCIe Ethernet common: kconfig: raise SYS_CBSIZE default to 1024 for FSL_LSCH2/LSCH3 configs: layersc [Changelog truncated as it exceeds 5000 characters; the full changelog can be found in an attachment to the AUH email] --- ...Add-support-for-OpenSSL-Provider-API.patch | 38 ++++++------- ...-removed-SWIG-Python-2-compatibility.patch | 55 ------------------- ...apsule-Detect-GnuTLS-PKCS-11-support.patch | 10 ++-- meta/recipes-bsp/u-boot/u-boot-common.inc | 2 +- ...ols_2026.07.bb => u-boot-tools_2026.10.bb} | 4 +- 5 files changed, 27 insertions(+), 82 deletions(-) delete mode 100644 meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch rename meta/recipes-bsp/u-boot/{u-boot-tools_2026.07.bb => u-boot-tools_2026.10.bb} (22%) diff --git a/meta/recipes-bsp/u-boot/files/0001-Add-support-for-OpenSSL-Provider-API.patch b/meta/recipes-bsp/u-boot/files/0001-Add-support-for-OpenSSL-Provider-API.patch index 346d0584d5..caca2955a4 100644 --- a/meta/recipes-bsp/u-boot/files/0001-Add-support-for-OpenSSL-Provider-API.patch +++ b/meta/recipes-bsp/u-boot/files/0001-Add-support-for-OpenSSL-Provider-API.patch @@ -1,4 +1,4 @@ -From a81cb0932dce109af44d7245d47489fe54ae390f Mon Sep 17 00:00:00 2001 +From fedf11e740e7893eed6590d17e92073fcd7e7841 Mon Sep 17 00:00:00 2001 From: Eddie Kovsky Date: Mon, 23 Feb 2026 09:43:22 -0700 Subject: [PATCH] Add support for OpenSSL Provider API @@ -39,14 +39,14 @@ Changes from upstream: Signed-off-by: Jaipaul Cheernam --- - doc/build/gcc.rst | 4 +- - lib/aes/aes-encrypt.c | 4 +- - lib/rsa/rsa-sign.c | 102 +++++++++++++++++++++++++++++++++++++++--- - tools/docker/Dockerfile | 1 + - 4 files changed, 103 insertions(+), 8 deletions(-) + doc/build/gcc.rst | 4 +- + lib/aes/aes-encrypt.c | 4 +- + lib/rsa/rsa-sign.c | 103 ++++++++++++++++++++++++++++++++++++++-- + tools/docker/Dockerfile | 1 + + 4 files changed, 104 insertions(+), 8 deletions(-) diff --git a/doc/build/gcc.rst b/doc/build/gcc.rst -index 1fef718ceecb..29a6a632e7e3 100644 +index 1fef718ceec..29a6a632e7e 100644 --- a/doc/build/gcc.rst +++ b/doc/build/gcc.rst @@ -25,8 +25,8 @@ Depending on the build targets further packages maybe needed @@ -61,7 +61,7 @@ index 1fef718ceecb..29a6a632e7e3 100644 python3-pkg-resources python3-pycryptodome python3-pyelftools \ python3-pytest python3-pytest-xdist python3-sphinxcontrib.apidoc \ diff --git a/lib/aes/aes-encrypt.c b/lib/aes/aes-encrypt.c -index 90e1407b4f09..4fc4ce232478 100644 +index 90e1407b4f0..4fc4ce23247 100644 --- a/lib/aes/aes-encrypt.c +++ b/lib/aes/aes-encrypt.c @@ -16,7 +16,9 @@ @@ -76,7 +76,7 @@ index 90e1407b4f09..4fc4ce232478 100644 #if OPENSSL_VERSION_NUMBER >= 0x10000000L diff --git a/lib/rsa/rsa-sign.c b/lib/rsa/rsa-sign.c -index 0e38c9e802fd..f456f3c58e65 100644 +index 0e38c9e802f..4990b43a7a6 100644 --- a/lib/rsa/rsa-sign.c +++ b/lib/rsa/rsa-sign.c @@ -19,7 +19,47 @@ @@ -128,7 +128,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 static int rsa_err(const char *msg) { -@@ -94,10 +134,11 @@ static int rsa_pem_get_pub_key(const char *keydir, const char *name, EVP_PKEY ** +@@ -94,10 +134,11 @@ err_cert: * * @keydir: Key prefix * @name Name of key @@ -214,7 +214,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 return 0; } -@@ -226,6 +301,7 @@ static int rsa_pem_get_priv_key(const char *keydir, const char *name, +@@ -226,6 +302,7 @@ static int rsa_pem_get_priv_key(const char *keydir, const char *name, * @evpp Returns EVP_PKEY object, or NULL on failure * Return: 0 if ok, -ve on error (in which case *evpp will be set to NULL) */ @@ -222,7 +222,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 static int rsa_engine_get_priv_key(const char *keydir, const char *name, const char *keyfile, ENGINE *engine, EVP_PKEY **evpp) -@@ -293,22 +369,25 @@ static int rsa_engine_get_priv_key(const char *keydir, const char *name, +@@ -293,22 +370,25 @@ static int rsa_engine_get_priv_key(const char *keydir, const char *name, return 0; } @@ -249,7 +249,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 return rsa_pem_get_priv_key(keydir, name, keyfile, evpp); } -@@ -325,6 +404,7 @@ static int rsa_init(void) +@@ -325,6 +405,7 @@ static int rsa_init(void) return 0; } @@ -257,7 +257,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 static int rsa_engine_init(const char *engine_id, ENGINE **pe) { const char *key_pass; -@@ -380,6 +460,7 @@ static void rsa_engine_remove(ENGINE *e) +@@ -380,6 +461,7 @@ static void rsa_engine_remove(ENGINE *e) ENGINE_free(e); } } @@ -265,7 +265,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 static int rsa_sign_with_key(EVP_PKEY *pkey, struct padding_algo *padding_algo, struct checksum_algo *checksum_algo, -@@ -480,11 +561,13 @@ int rsa_sign(struct image_sign_info *info, +@@ -480,11 +562,13 @@ int rsa_sign(struct image_sign_info *info, if (ret) return ret; @@ -279,7 +279,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 ret = rsa_get_priv_key(info->keydir, info->keyname, info->keyfile, e, &pkey); -@@ -496,16 +579,21 @@ int rsa_sign(struct image_sign_info *info, +@@ -496,16 +580,21 @@ int rsa_sign(struct image_sign_info *info, goto err_sign; EVP_PKEY_free(pkey); @@ -301,7 +301,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 return ret; } -@@ -645,11 +733,13 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest) +@@ -645,11 +734,13 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest) ENGINE *e = NULL; debug("%s: Getting verification data\n", __func__); @@ -315,7 +315,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 ret = rsa_get_pub_key(info->keydir, info->keyname, e, &pkey); if (ret) goto err_get_pub_key; -@@ -726,8 +816,10 @@ int rsa_add_verify_data(struct image_sign_info *info, void *keydest) +@@ -726,8 +817,10 @@ done: err_get_params: EVP_PKEY_free(pkey); err_get_pub_key: @@ -327,7 +327,7 @@ index 0e38c9e802fd..f456f3c58e65 100644 if (ret) return ret; diff --git a/tools/docker/Dockerfile b/tools/docker/Dockerfile -index 73bf6cdd2c52..50e98e83dc20 100644 +index ebb679a5f46..c2ccc0ca7db 100644 --- a/tools/docker/Dockerfile +++ b/tools/docker/Dockerfile @@ -122,6 +122,7 @@ RUN --mount=type=cache,target=/var/cache/apt,sharing=locked \ diff --git a/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch b/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch deleted file mode 100644 index c1d0204e32..0000000000 --- a/meta/recipes-bsp/u-boot/files/0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch +++ /dev/null @@ -1,55 +0,0 @@ -From 886616d03b6afcc5ce8b34e7af91f7ccfbb0a5c Mon Sep 17 00:00:00 2001 -From: Jaipaul Cheernam -Date: Tue, 11 Aug 2026 13:21:01 +0000 -Subject: [PATCH] pylibfdt: Replace removed SWIG Python 2 compatibility macros - -SWIG 4.5.0 removed Python 2 compatibility macros (PyInt_*, PyString_*) -from its runtime header pyhead.swg (see commit 79f7a2b7cb7d). Replace -them with their Python 3 C API equivalents: - -- PyString_FromString -> PyUnicode_FromString -- PyString_AsString -> PyBytes_AsString -- PyInt_AsLong -> PyLong_AsLong - -The replacements are safe since the macros were already aliased to -these exact functions in SWIG's Python 3 code path. - -This is a backport of dtc commit 5008d1d6a356 ("pylibfdt: Replace -removed SWIG Python 2 compatibility macros"). - -Upstream-Status: Submitted [https://patchwork.ozlabs.org/patch/2283713/] - -Signed-off-by: Jaipaul Cheernam ---- - scripts/dtc/pylibfdt/libfdt.i_shipped | 6 +++--- - 1 file changed, 3 insertions(+), 3 deletions(-) - -diff --git a/scripts/dtc/pylibfdt/libfdt.i_shipped b/scripts/dtc/pylibfdt/libfdt.i_shipped -index e4659489..326a15c7 100644 ---- a/scripts/dtc/pylibfdt/libfdt.i_shipped -+++ b/scripts/dtc/pylibfdt/libfdt.i_shipped -@@ -1033,7 +1033,7 @@ typedef uint32_t fdt32_t; - PyObject *buff; - - if ($1) { -- resultobj = PyString_FromString( -+ resultobj = PyUnicode_FromString( - fdt_string(fdt1, fdt32_to_cpu($1->nameoff))); - buff = PyByteArray_FromStringAndSize( - (const char *)($1 + 1), fdt32_to_cpu($1->len)); -@@ -1064,13 +1064,13 @@ typedef uint32_t fdt32_t; - } - $1 = PyBytes_AsString($input); - %#else -- $1 = PyString_AsString($input); /* char *str */ -+ $1 = PyBytes_AsString($input); /* char *str */ - %#endif - } - - /* typemaps used for fdt_next_node() */ - %typemap(in, numinputs=1) int *depth (int depth) { -- depth = (int) PyInt_AsLong($input); -+ depth = (int) PyLong_AsLong($input); - $1 = &depth; - } - diff --git a/meta/recipes-bsp/u-boot/files/0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch b/meta/recipes-bsp/u-boot/files/0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch index 68865af481..e0323abef8 100644 --- a/meta/recipes-bsp/u-boot/files/0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch +++ b/meta/recipes-bsp/u-boot/files/0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch @@ -1,4 +1,4 @@ -From 007b77c2f51d4c1c696fbf1ff92694b585b35f57 Mon Sep 17 00:00:00 2001 +From 1f5b573d5340b66bf09310e8331064ca53a2d7d2 Mon Sep 17 00:00:00 2001 From: Wojciech Dubowik Date: Tue, 9 Jun 2026 09:01:04 +0200 Subject: [PATCH] tools: mkeficapsule: Rework pkcs11 support @@ -22,10 +22,10 @@ Signed-off-by: Wojciech Dubowik 2 files changed, 77 insertions(+), 23 deletions(-) diff --git a/tools/Makefile b/tools/Makefile -index 1a5f425ecdaa..e85f5a354b81 100644 +index 535a5d51c89..607d6d8ff8b 100644 --- a/tools/Makefile +++ b/tools/Makefile -@@ -271,6 +271,11 @@ mkeficapsule-objs := generated/lib/uuid.o \ +@@ -272,6 +272,11 @@ mkeficapsule-objs := generated/lib/uuid.o \ $(LIBFDT_OBJS) \ mkeficapsule.o hostprogs-always-$(CONFIG_TOOLS_MKEFICAPSULE) += mkeficapsule @@ -38,7 +38,7 @@ index 1a5f425ecdaa..e85f5a354b81 100644 include tools/fwumdata_src/fwumdata.mk diff --git a/tools/mkeficapsule.c b/tools/mkeficapsule.c -index ec640c57e8a5..c3cf48f4cc1d 100644 +index ec640c57e8a..9ac686f51a8 100644 --- a/tools/mkeficapsule.c +++ b/tools/mkeficapsule.c @@ -207,6 +207,71 @@ static int write_capsule_file(FILE *f, void *data, size_t size, const char *msg) @@ -175,5 +175,3 @@ index ec640c57e8a5..c3cf48f4cc1d 100644 gnutls_strerror(ret)); return -1; } --- -2.47.3 diff --git a/meta/recipes-bsp/u-boot/u-boot-common.inc b/meta/recipes-bsp/u-boot/u-boot-common.inc index ece0fade55..9d217f13a5 100644 --- a/meta/recipes-bsp/u-boot/u-boot-common.inc +++ b/meta/recipes-bsp/u-boot/u-boot-common.inc @@ -14,7 +14,7 @@ CVE_PRODUCT = "u-boot:u-boot denx:u-boot" # We use the revision in order to avoid having to fetch it from the # repo during parse -SRCREV = "ece349ade2973e220f524ce59e59711cc919263f" +SRCREV = "5508406582f6f7120dce0c4b3059819a41788db2" SRC_URI = "git://git.u-boot-project.org/u-boot/u-boot.git;protocol=https;branch=main;tag=v${PV} \ file://0001-pylibfdt-Replace-removed-SWIG-Python-2-compatibility.patch \ diff --git a/meta/recipes-bsp/u-boot/u-boot-tools_2026.07.bb b/meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb similarity index 22% rename from meta/recipes-bsp/u-boot/u-boot-tools_2026.07.bb rename to meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb index 9e7a178310..b28afecf72 100644 --- a/meta/recipes-bsp/u-boot/u-boot-tools_2026.07.bb +++ b/meta/recipes-bsp/u-boot/u-boot-tools_2026.10.bb @@ -1,4 +1,6 @@ require u-boot-common.inc require u-boot-tools.inc -SRC_URI += "file://0001-tools-mkeficapsule-Detect-GnuTLS-PKCS-11-support.patch" +SRC_URI += "git://git.u-boot-project.org/u-boot/u-boot.git;protocol=https;branch=main;tag=v${PV} \ + file://0001-Add-support-for-OpenSSL-Provider-API.patch \ + "