Please review this set of changes for scarthgap and have comments back by end of day Thursday, December 4
Passed a-full on autobuilder: https://autobuilder.yoctoproject.org/valkyrie/#/builders/29/builds/2811 The following changes since commit 1fbd9eddbdf0da062df0510cabff6f6ee33d5752: libarchive: patch CVE-2025-60753 (2025-11-24 08:08:18 -0800) are available in the Git repository at: https://git.openembedded.org/openembedded-core-contrib stable/scarthgap-nut https://git.openembedded.org/openembedded-core-contrib/log/?h=stable/scarthgap-nut Changqing Li (1): libmicrohttpd: fix CVE-2025-59777, CVE-2025-62689 Moritz Haase (1): curl: Ensure 'CURL_CA_BUNDLE' from host env is indeed respected Peter Marko (5): gnutls: patch CVE-2025-9820 libpng: patch CVE-2025-64505 libpng: patch CVE-2025-64506 libpng: patch CVE-2025-64720 libpng: patch CVE-2025-65018 Praveen Kumar (1): python3: fix CVE-2025-6075 .../python/python3/CVE-2025-6075.patch | 355 + .../python/python3_3.12.12.bb | 1 + .../libpng/files/CVE-2025-64505-01.patch | 111 + .../libpng/files/CVE-2025-64505-02.patch | 163 + .../libpng/files/CVE-2025-64505-03.patch | 52 + .../libpng/files/CVE-2025-64506.patch | 57 + .../libpng/files/CVE-2025-64720.patch | 103 + .../libpng/files/CVE-2025-65018-01.patch | 60 + .../libpng/files/CVE-2025-65018-02.patch | 163 + .../libpng/libpng_1.6.42.bb | 7 + .../curl/curl/environment.d-curl.sh | 4 +- .../gnutls/gnutls/CVE-2025-9820.patch | 250 + meta/recipes-support/gnutls/gnutls_3.8.4.bb | 1 + ...0001-Remove-broken-experimental-code.patch | 14471 ++++++++++++++++ .../libmicrohttpd/libmicrohttpd_1.0.1.bb | 3 +- 15 files changed, 15798 insertions(+), 3 deletions(-) create mode 100644 meta/recipes-devtools/python/python3/CVE-2025-6075.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-64505-01.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-64505-02.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-64505-03.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-64506.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-64720.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-65018-01.patch create mode 100644 meta/recipes-multimedia/libpng/files/CVE-2025-65018-02.patch create mode 100644 meta/recipes-support/gnutls/gnutls/CVE-2025-9820.patch create mode 100644 meta/recipes-support/libmicrohttpd/files/0001-Remove-broken-experimental-code.patch -- 2.43.0
-=-=-=-=-=-=-=-=-=-=-=- Links: You receive all messages sent to this group. View/Reply Online (#227186): https://lists.openembedded.org/g/openembedded-core/message/227186 Mute This Topic: https://lists.openembedded.org/mt/116585219/21656 Group Owner: [email protected] Unsubscribe: https://lists.openembedded.org/g/openembedded-core/unsub [[email protected]] -=-=-=-=-=-=-=-=-=-=-=-
