<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/meta-openembedded.git/meta-oe/recipes-connectivity, branch gatesgarth</title>
<subtitle>Mirror of git.openembedded.org/meta-openembedded</subtitle>
<id>https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=gatesgarth</id>
<link rel='self' href='https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=gatesgarth'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/'/>
<updated>2021-04-18T21:23:26+00:00</updated>
<entry>
<title>hostapd: fix CVE-2021-30004</title>
<updated>2021-04-18T21:23:26+00:00</updated>
<author>
<name>Stefan Ghinea</name>
<email>stefan.ghinea@windriver.com</email>
</author>
<published>2021-04-09T13:12:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=730de4763a508234d09c755c838cdc4c8dd49493'/>
<id>urn:sha1:730de4763a508234d09c755c838cdc4c8dd49493</id>
<content type='text'>
In wpa_supplicant and hostapd 2.9, forging attacks may occur because
AlgorithmIdentifier parameters are mishandled in tls/pkcs1.c and
tls/x509v3.c.

References:
https://nvd.nist.gov/vuln/detail/CVE-2021-30004

Upstream patches:
https://w1.fi/cgit/hostap/commit/?id=a0541334a6394f8237a4393b7372693cd7e96f15

Signed-off-by: Stefan Ghinea &lt;stefan.ghinea@windriver.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
(cherry picked from commit e2bd6a52bf689b77b237eaee3067d2b0b6eee3d5)
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
(cherry picked from commit 98c5cddf677addcb9aa296a7437b92100a478566)
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>telepathy-glib: respect GI_DATA_ENABLED when enabling vala-bindings</title>
<updated>2021-04-10T14:37:44+00:00</updated>
<author>
<name>Martin Jansa</name>
<email>Martin.Jansa@gmail.com</email>
</author>
<published>2021-04-06T18:42:32+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=c9815c86bfd63b2d9479915045197e7d315ef709'/>
<id>urn:sha1:c9815c86bfd63b2d9479915045197e7d315ef709</id>
<content type='text'>
Signed-off-by: Martin Jansa &lt;Martin.Jansa@gmail.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>hostapd: fix CVE-2021-0326 and CVE-2021-27803</title>
<updated>2021-04-09T01:45:33+00:00</updated>
<author>
<name>Mingli Yu</name>
<email>mingli.yu@windriver.com</email>
</author>
<published>2021-04-08T06:33:17+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=845bd5a5f15bd80cecbf5c0716af3eaca5669632'/>
<id>urn:sha1:845bd5a5f15bd80cecbf5c0716af3eaca5669632</id>
<content type='text'>
Backport 2 patches to fix two CVEs.

Signed-off-by: Mingli Yu &lt;mingli.yu@windriver.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
(cherry picked from commit 5a085c588adaf79bb2bca7921c82d893877b28a1)
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>hostapd: fix CVE-2019-5061</title>
<updated>2021-04-09T01:45:29+00:00</updated>
<author>
<name>Mingli Yu</name>
<email>mingli.yu@windriver.com</email>
</author>
<published>2021-03-22T08:23:20+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=04ba527e94c8ecd7a95a9ed16cc27c2f5833f849'/>
<id>urn:sha1:04ba527e94c8ecd7a95a9ed16cc27c2f5833f849</id>
<content type='text'>
Backport a patch to fix CVE-2019-5061.

Reference: https://security-tracker.debian.org/tracker/CVE-2019-5061

Signed-off-by: Mingli Yu &lt;mingli.yu@windriver.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>zabbix: CVE-2020-15803 Security Advisory</title>
<updated>2021-01-10T18:45:36+00:00</updated>
<author>
<name>Wang Mingyu</name>
<email>wangmy@cn.fujitsu.com</email>
</author>
<published>2020-12-15T07:22:03+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=d9911b087c83e0c73fbe7eeb497ca388b62d7706'/>
<id>urn:sha1:d9911b087c83e0c73fbe7eeb497ca388b62d7706</id>
<content type='text'>
References
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15803

Signed-off-by: Wang Mingyu &lt;wangmy@cn.fujitsu.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
(cherry picked from commit d259144422bb44af9dbc7397fc4077d0bf3fc83f)
Signed-off-by: Armin Kuster &lt;akuster808@gmail.com&gt;
</content>
</entry>
<entry>
<title>modemmanager: upgrade 1.14.2 -&gt; 1.14.6</title>
<updated>2020-11-02T17:00:52+00:00</updated>
<author>
<name>Zang Ruochen</name>
<email>zangrc.fnst@cn.fujitsu.com</email>
</author>
<published>2020-10-30T05:50:15+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=11216b7cab7665117d26ed513c3dde86c5a729bc'/>
<id>urn:sha1:11216b7cab7665117d26ed513c3dde86c5a729bc</id>
<content type='text'>
Signed-off-by: Zang Ruochen &lt;zangrc.fnst@cn.fujitsu.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>libqmi: upgrade 1.26.4 -&gt; 1.26.6</title>
<updated>2020-10-23T17:20:24+00:00</updated>
<author>
<name>zangrc</name>
<email>zangrc.fnst@cn.fujitsu.com</email>
</author>
<published>2020-10-23T06:00:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=cf5e0becccbd7ea3b2a75ca2d57092a050bffc2a'/>
<id>urn:sha1:cf5e0becccbd7ea3b2a75ca2d57092a050bffc2a</id>
<content type='text'>
Signed-off-by: Zang Ruochen &lt;zangrc.fnst@cn.fujitsu.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>libmtp: upgrade 1.1.17 -&gt; 1.1.18</title>
<updated>2020-10-23T17:20:24+00:00</updated>
<author>
<name>zangrc</name>
<email>zangrc.fnst@cn.fujitsu.com</email>
</author>
<published>2020-10-23T05:59:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=ab1d310f58cd6870976e1bf71951495ec444a7c6'/>
<id>urn:sha1:ab1d310f58cd6870976e1bf71951495ec444a7c6</id>
<content type='text'>
Signed-off-by: Zang Ruochen &lt;zangrc.fnst@cn.fujitsu.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>transmission: Upgrade 2.94 -&gt; 3.00</title>
<updated>2020-10-20T05:23:23+00:00</updated>
<author>
<name>Leon Anavi</name>
<email>leon.anavi@konsulko.com</email>
</author>
<published>2020-10-19T12:05:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=77c02587fe6d0e51bbf71130a6bb2e20351b75ff'/>
<id>urn:sha1:77c02587fe6d0e51bbf71130a6bb2e20351b75ff</id>
<content type='text'>
Upgrade to release 3.00:

- Allow the RPC server to listen on an IPv6 address
- Change TR_CURL_SSL_VERIFY to TR_CURL_SSL_NO_VERIFY and enable
  verification by default
- Go back to using hash as base name for resume and torrent files
  (those stored in configuration directory)
- Handle "fields" argument in "session-get" RPC request; if
  "fields" array is present in arguments, only return session
  fields specified; otherwise return all the fields as before
- Limit the number of incorrect authentication attempts in
  embedded web server to 100 to prevent brute-force attacks
- Set idle seed limit range to 1..40320 (4 weeks tops) in all
  clients
- Add Peer ID for Xfplay, PicoTorrent, Free Download Manager,
  Folx, Baidu Netdisk torrent clients
- Announce INT64_MAX as size left if the value is unknown
  (helps with e.g. Amazon S3 trackers)
- Add TCP_FASTOPEN support (should result in slight speedup)
- Improve ToS handling on IPv6 connections
- Abort handshake if establishing DH shared secret fails (leads
  to crash)
- Don't switch trackers while announcing (leads to crash)
- Improve completion scripts execution and error handling; add
  support for .cmd and .bat files on Windows
- Maintain a "session ID" file (in temporary directory) to better
  detect whether session is local or remote; return the ID as
  part of "session-get" response
- Change torrent location even if no data move is needed
- Support CIDR-notated blocklists
- Update the resume file before running scripts
- Make multiscrape limits adaptive
- Add labels support to libtransmission and transmission-remote
- Parse session-id header case-insensitively
- Sanitize suspicious path components instead of rejecting them
- Load CA certs from system store on Windows / OpenSSL
- Add support for mbedtls (formely polarssl) and wolfssl (formely
  cyassl), LibreSSL
- Fix building against OpenSSL 1.1.0+
- Fix quota support for uClibc-ng 1.0.18+ and DragonFly BSD
- Fix a number of memory leaks (magnet loading, session shutdown,
  bencoded data parsing)
- Bump miniupnpc version to 2.0.20170509
- CMake-related improvements (Ninja generator, libappindicator,
  systemd, Solaris and macOS)
- Switch to submodules to manage (most of) third-party
  dependencies
- Fail installation on Windows if UCRT is not installed

License-Update: Bump copyright to 2020

Signed-off-by: Leon Anavi &lt;leon.anavi@konsulko.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>paho-mqtt-c: upgrade 1.3.5 -&gt; 1.3.6</title>
<updated>2020-10-14T17:04:09+00:00</updated>
<author>
<name>Zang Ruochen</name>
<email>zangrc.fnst@cn.fujitsu.com</email>
</author>
<published>2020-10-14T09:34:50+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=1a1dd70d4bb6a3ed6d076380aab72bfcaf355625'/>
<id>urn:sha1:1a1dd70d4bb6a3ed6d076380aab72bfcaf355625</id>
<content type='text'>
Signed-off-by: Zang Ruochen &lt;zangrc.fnst@cn.fujitsu.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
</feed>
