Please review this set of changes for kirkstone and have comments back by end of day Tuesday, July 23
Passed a-full on autobuilder: https://autobuilder.yoctoproject.org/typhoon/#/builders/83/builds/7158 The following changes since commit 5d97b0576e98a2cf402abab1a1edcab223545d87: build-appliance-image: Update to kirkstone head revision (2024-07-15 10:31:11 -0700) are available in the Git repository at: https://git.openembedded.org/openembedded-core-contrib stable/kirkstone-nut https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/kirkstone-nut Ashish Sharma (1): ruby: backport fix for CVE-2024-27282 Florian Amstutz (1): uboot-sign: Fix index error in concat_dtb_helper() with multiple configs Hitendra Prajapati (1): busybox: Fix CVE-2023-42363 Peter Marko (2): busybox: Patch CVE-2021-42380 libarchive: ignore CVE-2024-37407 Vijay Anusuri (1): python3-jinja2: Upgrade 3.1.3 -> 3.1.4 meta/classes/uboot-sign.bbclass | 6 +- .../busybox/busybox/CVE-2021-42380.patch | 151 ++++++++++++++++++ .../busybox/busybox/CVE-2023-42363.patch | 68 ++++++++ meta/recipes-core/busybox/busybox_1.35.0.bb | 2 + ...inja2_3.1.3.bb => python3-jinja2_3.1.4.bb} | 8 +- .../ruby/ruby/CVE-2024-27282.patch | 29 ++++ meta/recipes-devtools/ruby/ruby_3.1.3.bb | 1 + .../libarchive/libarchive_3.6.2.bb | 2 + 8 files changed, 261 insertions(+), 6 deletions(-) create mode 100644 meta/recipes-core/busybox/busybox/CVE-2021-42380.patch create mode 100644 meta/recipes-core/busybox/busybox/CVE-2023-42363.patch rename meta/recipes-devtools/python/{python3-jinja2_3.1.3.bb => python3-jinja2_3.1.4.bb} (82%) create mode 100644 meta/recipes-devtools/ruby/ruby/CVE-2024-27282.patch -- 2.34.1
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#202277): https://lists.openembedded.org/g/openembedded-core/message/202277 Mute This Topic: https://lists.openembedded.org/mt/107451385/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
