<feed xmlns='http://www.w3.org/2005/Atom'>
<title>linux/meta-openembedded.git/meta-oe/recipes-extended/rsyslog, branch scarthgap</title>
<subtitle>Mirror of git.openembedded.org/meta-openembedded</subtitle>
<id>https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=scarthgap</id>
<link rel='self' href='https://git.enea.com/cgit/linux/meta-openembedded.git/atom?h=scarthgap'/>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/'/>
<updated>2025-11-19T03:16:50+00:00</updated>
<entry>
<title>rsyslog: set status for CVE-2015-3243</title>
<updated>2025-11-19T03:16:50+00:00</updated>
<author>
<name>Gyorgy Sarvari</name>
<email>skandigraun@gmail.com</email>
</author>
<published>2025-11-17T08:58:47+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=65b4b2111086737b66bb13b537c6b34eb76bf4e8'/>
<id>urn:sha1:65b4b2111086737b66bb13b537c6b34eb76bf4e8</id>
<content type='text'>
Details: https://nvd.nist.gov/vuln/detail/CVE-2015-3243

The issue is about file permissions: by default rsyslog creates world-readable
files. In case a log message contains some sensitive information, then that's
exposed to every user on the system.

However the rsyslog.conf file that is shipped with the recipe solves it: it
already sets non-world-readable default permissions on all files, so this
vulnerability is fixed in the default OE recipe.

See also this package in OpenSuse[1], where it is solved the same way.

[1]: https://build.opensuse.org/requests/619439/changes (rsyslog.conf.in)

Signed-off-by: Gyorgy Sarvari &lt;skandigraun@gmail.com&gt;
Signed-off-by: Anuj Mittal &lt;anuj.mittal@oss.qualcomm.com&gt;
</content>
</entry>
<entry>
<title>rsyslog: update from 8.2306.0 to 8.2402.0</title>
<updated>2024-03-25T19:51:35+00:00</updated>
<author>
<name>Randy MacLeod</name>
<email>Randy.MacLeod@windriver.com</email>
</author>
<published>2024-03-25T19:48:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=85fa15cab878b7d8a5f0818678a75f5128549d6e'/>
<id>urn:sha1:85fa15cab878b7d8a5f0818678a75f5128549d6e</id>
<content type='text'>
Change the PACKAGECONFIG[systemd] that wrapped --with-systemdsystemunitdir
to use the new --enable-libsystemd option:
   acb62dfda remove systemd embedded code, use library instead

The bug related to using libcap-ng has beeen fixed:
   https://github.com/rsyslog/rsyslog/pull/5166/commits/030e047fd0c896b4cb2433bab853321eff6f8ec9
so use that library by default now to allow rsyslog to run with fewer privileges.

PTest results: sysvinit, systemd
 TOTAL: 462, 462
 PASS:  457, 459
 SKIP:  5, 3
 XFAIL: 0, 0
 FAIL:  0, 0
 XPASS: 0, 0
 ERROR: 0, 0

Signed-off-by: Randy MacLeod &lt;Randy.MacLeod@windriver.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>libfastjson: upgrade 0.99.9 -&gt; 1.2304.0</title>
<updated>2023-11-06T06:27:15+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-11-04T00:19:20+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=befbbc1bdc33bee35d0f7647dcd074813161e1e9'/>
<id>urn:sha1:befbbc1bdc33bee35d0f7647dcd074813161e1e9</id>
<content type='text'>
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>rsyslog: Skip failing omfile-outchannel test on musl</title>
<updated>2023-08-27T07:11:43+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-27T07:10:16+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=1de29b487b38d7769e36f97a6da53aa59fbd8aab'/>
<id>urn:sha1:1de29b487b38d7769e36f97a6da53aa59fbd8aab</id>
<content type='text'>
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>rsyslog: Enable openssl transport by default</title>
<updated>2023-08-27T00:32:44+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-24T07:45:04+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=8a1e2109c63bb296fdaba774347f1a6833608a27'/>
<id>urn:sha1:8a1e2109c63bb296fdaba774347f1a6833608a27</id>
<content type='text'>
gnutls is not enabled in librelp and therefore tests fail becasue it
uses openssl but rsyslog uses gnutls,

FAIL: sndrcv_relp_tls_prio.sh

therefore default to using openssl
for both the packages. gnutls can be enabled for both via bbappends but
its not default anymore.

Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Cc: Nicolas Marguet &lt;nicolas.marguet@windriver.com&gt;
</content>
</entry>
<entry>
<title>librelp: Fix ptest installs to work with dash</title>
<updated>2023-08-19T17:46:13+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-19T17:32:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=107d11c38fd45aaff900a9aeee9e70f8e6c679c1'/>
<id>urn:sha1:107d11c38fd45aaff900a9aeee9e70f8e6c679c1</id>
<content type='text'>
Suggested-by: Martin Jansa &lt;Martin.Jansa@gmail.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>librelp: Fix ptests builds on musl</title>
<updated>2023-08-19T17:46:09+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-19T17:28:56+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=b320682bf5cbc280fc916725fb8a2f4ea38eeef4'/>
<id>urn:sha1:b320682bf5cbc280fc916725fb8a2f4ea38eeef4</id>
<content type='text'>
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>librelp: Add packageconfigs for TLS implementations</title>
<updated>2023-08-18T16:54:47+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-18T16:52:55+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=e34c58ed66886ee2c964aa21aee2268d87c65699'/>
<id>urn:sha1:e34c58ed66886ee2c964aa21aee2268d87c65699</id>
<content type='text'>
valgrind is not available on all arches e.g. riscv so enable it
conditionally

Enable openSSL TLS by default and add option to enable gnuTLS

Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
<entry>
<title>librelp: Fix function prototypes in tests</title>
<updated>2023-08-15T19:27:45+00:00</updated>
<author>
<name>Khem Raj</name>
<email>raj.khem@gmail.com</email>
</author>
<published>2023-08-15T19:25:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=cf2444ac1df685631501d23e508cc65ab00752dc'/>
<id>urn:sha1:cf2444ac1df685631501d23e508cc65ab00752dc</id>
<content type='text'>
Helps fix issues found with clang

Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
Cc: Nicolas Marguet &lt;nicolas.marguet@windriver.com&gt;
</content>
</entry>
<entry>
<title>librelp: add ptest</title>
<updated>2023-08-15T15:31:23+00:00</updated>
<author>
<name>Nicolas Marguet</name>
<email>nicolas.marguet@windriver.com</email>
</author>
<published>2023-08-14T23:54:51+00:00</published>
<link rel='alternate' type='text/html' href='https://git.enea.com/cgit/linux/meta-openembedded.git/commit/?id=288ad311f0eb2c636c7c7eeadc9eb3aedc6d46b9'/>
<id>urn:sha1:288ad311f0eb2c636c7c7eeadc9eb3aedc6d46b9</id>
<content type='text'>
Use internal test from librelp project as ptest.

This work is largely inspired on the rsyslog ptest implementation,
which copies the automake-based tests/Makefile to the target and runs
'make check-TESTS'. sed is used to fix a few Makefile paths or
env-vars so 'make' can run on the target.

Tested on qemux86_64 and qemuarm64:

==========================================
   librelp 1.11.0: tests/test-suite.log
==========================================

TOTAL: 30
PASS:  27
SKIP:  3
XFAIL: 0
FAIL:  0
XPASS: 0
ERROR: 0

The 3 skipped tests are either self-identified as “not do anything
really useful” or may need to port libtool to the target.

Signed-off-by: Nicolas Marguet &lt;nicolas.marguet@windriver.com&gt;
Signed-off-by: Khem Raj &lt;raj.khem@gmail.com&gt;
</content>
</entry>
</feed>
