summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* haveged: upgrade 1.9.19 -> 1.9.20master-nextLi Zhou2026-05-121-1/+1
| | | | | | | | ChangeLog: https://github.com/jirka-h/haveged/releases/tag/v1.9.20 Signed-off-by: Li Zhou <li.zhou@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* lvm2: move scripts to lvm2-scripts packageLouis Rannou2026-05-121-1/+3
| | | | | | | | Move bash scripts to the lvm2-scripts package and remove the dependency to bash. Signed-off-by: Louis Rannou <louis.rannou@non.se.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* openvpn: create an extra package for the dns-updown scriptLouis Rannou2026-05-121-2/+3
| | | | | | | | | The dns-updown script is written in bash which is under the GPLv3 license. As this script is optional, it is preffered to have it in an extra package. Signed-off-by: Louis Rannou <louis.rannou@non.se.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* xarchiver: upgrade 0.5.4.21 -> 0.5.4.26Jason Schonberg2026-05-121-2/+2
| | | | | Signed-off-by: Jason Schonberg <schonm@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libgpiod: clean-up sub-packagesBartosz Golaszewski2026-05-121-1/+5
| | | | | | | | | | The libgpiodbus shared library and the .typelib file for libgpiod GLib bindings are currently packaged in the main libgpiod package which should really only contain the core libgpiod shared library. Move them to libgpiod-manager and libgpiod-glib packages respectively. Signed-off-by: Bartosz Golaszewski <bartosz.golaszewski@oss.qualcomm.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* dbus-cxx: 2.6.1 -> 2.6.2Frede Hoey Braendstrup2026-05-121-1/+1
| | | | Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* glaze: 7.3.3 -> 7.6.0Frede Hoey Braendstrup2026-05-121-1/+1
| | | | Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* apache2: upgrade 2.4.66 -> 2.4.67Liyin Zhang2026-05-121-1/+1
| | | | | | | | | | | | | | | | | | | | Security fixes: - CVE-2026-34059 - CVE-2026-34032 - CVE-2026-33857 - CVE-2026-33523 - CVE-2026-33007 - CVE-2026-33006 - CVE-2026-29169 - CVE-2026-29168 - CVE-2026-28780 - CVE-2026-24072 - CVE-2026-23918 See: https://archive.apache.org/dist/httpd/CHANGES_2.4.67 Signed-off-by: Liyin Zhang <liyin.zhang.cn@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* nginx: upgrade 1.29.7 -> 1.30.0Ankur Tyagi2026-05-123-17/+6
| | | | | | | | | | 1.30.0 stable version has been released, incorporating new features and bug fixes from the 1.29.x mainline branch (https://nginx.org/en/CHANGES-1.30) Also dropped v1.28 support. Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* postfix: upgrade 3.10.8 -> 3.10.9Yi Zhao2026-05-122-1/+52
| | | | | | | | | Security fix: CVE-2026-43964 Add a patch to fix build with musl. Signed-off-by: Yi Zhao <yi.zhao@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* bpftool-native: Fix -Wdiscarded-qualifiers errors for glibc 2.42+He Zhe2026-05-122-1/+73
| | | | | | | | | | | | | | | | | | | | Backport a patch from kernel to fix the following build errors. bbpf.c: In function ‘kallsyms_cb’: | libbpf.c:8192:13: error: assignment discards ‘const’ qualifier from pointer target type [-Werror=discarded-qualifiers] | 8192 | res = strstr(sym_name, ".llvm."); | | ^ | libbpf.c: In function ‘avail_kallsyms_cb’: | libbpf.c:11497:31: error: assignment discards ‘const’ qualifier from pointer target type [-Werror=discarded-qualifiers] | 11497 | if (!(sym_sfx = strstr(sym_name, ".llvm."))) | | ^ | libbpf.c: In function ‘resolve_full_path’: | libbpf.c:12085:35: error: assignment discards ‘const’ qualifier from pointer target type [-Werror=discarded-qualifiers] | 12085 | next_path = strchr(s, ':'); | | Signed-off-by: He Zhe <zhe.he@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* postfix: make it can compile with linux 7.xChangqing Li2026-05-122-0/+48
| | | | | | | | | | | | | | | | | | Fix compile failure on host with linux 7.x | DEBUG: Executing shell function do_compile | NOTE: make -j 64 OPT= DEBUG= OPTS= makefiles | make -f Makefile.in MAKELEVEL= Makefiles | (echo "# Do not edit -- this file documents how Postfix was built for your machine."; /bin/sh makedefs) >makedefs.tmp | ATTENTION: | ATTENTION: Unknown system type: Linux 7.0.0-14-generic | ATTENTION: | make: *** [Makefile.in:33: Makefiles] Error 1 | make: *** [Makefile:22: makefiles] Error 2 | ERROR: oe_runmake failed Signed-off-by: Changqing Li <changqing.li@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* mdns: Update for mbedtls4, set daemon versionAlex Kiernan2026-05-122-1/+60
| | | | | | | | | Switch to psa_crypto_init() which initialises all crypto subsystems, this works for both Mbed TLS 3 and 4. Also set the daemon version so it's correctly reported at runtime. Signed-off-by: Alex Kiernan <alex.kiernan@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* php: upgrade 8.5.5 -> 8.5.6Jason Schonberg2026-05-121-1/+1
| | | | | | | | | This is a security release. Changelog: https://www.php.net/ChangeLog-8.php#8.5.6 Signed-off-by: Jason Schonberg <schonm@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* freerdp3: upgrade 3.24.2 -> 3.25.0Ankur Tyagi2026-05-121-1/+4
| | | | | | | https://github.com/FreeRDP/FreeRDP/releases/tag/3.25.0 Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* thrift: upgrade 0.22.0 -> 0.23.0Ankur Tyagi2026-05-122-52/+2
| | | | | | | | | | | | | | License-Update: add attribution section for the third-party public-domain code[1] Dropped patch which is now merged in the upstream version. Changelog: https://thrift.apache.org/changelog [1]https://github.com/apache/thrift/commit/1e5fa4b9b35ad6bfeb238d19897ace7826eda057 Signed-off-by: Ankur Tyagi <ankur.tyagi85@gmail.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* cryptsetup: update udev package configPeter Marko2026-05-121-1/+1
| | | | | | | | | | | | | | | | Commit 1ca8df16af411871e10f268064570146cdef54cb fixed a build problem in wrong way. Relevant rules from lvm2-udevrules were merged into libdevmapper (which was previously pulled by the rules package), however instead of that, the whole lvm2 package was added as dependency (which then pulls the needed libdevmapper). That is a huge package completely unneeded and due to that, this new dependency was later changed to recommendation. Switch to libdevmapper instead of whole lvm2. Keep recommendation for now as it gives more flexibility. Signed-off-by: Peter Marko <peter.marko@siemens.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* android-tools: removes selinux dependency from android-tools_29.0.6.r14.bbAshishKumar Mishra2026-05-121-1/+4
| | | | | Signed-off-by: AshishKumar Mishra <ashishkumar.mishra@bmwtechworks.in> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* android-tools: move android-tools v29.x from dynamic-layers/selinux to meta-oeAshishKumar Mishra2026-05-1252-0/+0
| | | | | | | | | | | | | | | | | | | Relocate the recipe from dynamic-layers/selinux/ to the main meta-oe/recipes-devtools/ directory. The android-tools recipe (version 29.0.6.r14) was previously restricted to the selinux dynamic-layer. Investigation shows that version 29.0.6.r14 does not have a hard dependency on libselinux for core tool functionality. (adb, fastboot, and sparse image tools). - Basic runable test was done for binaries in android-tools-native - Checked for selinux absense by looking for selinx using $ ldd binary-name Changes: - Relocate recipe from dynamic-layers/selinux/ to recipes-devtools/ Signed-off-by: AshishKumar Mishra <ashishkumar.mishra@bmwtechworks.in> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* android-tools: remove android-tools 5.x from meta-oe/recipes-devtoolsAshishKumar Mishra2026-05-1241-3473/+0
| | | | | | | | We plan to upgrade android-tools from the legacy 5.1.1 version to 29.0.6.r14 To achive this we are removing the older version from meta-oe/recipes-devtools/ Signed-off-by: AshishKumar Mishra <ashishkumar.mishra@bmwtechworks.in> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* nftables: add systemd PACKAGECONFIGPiotr Wejman2026-05-121-2/+6
| | | | | | | | | Add a systemd PACKAGECONFIG option to install nftables systemd unit files. When "systemd" is present in DISTRO_FEATURES, the option is enabled and the service is installed but disabled by default. Signed-off-by: Piotr Wejman <piotr.wejman@arm.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libcamera: 0.7.0 -> 0.7.1Jose Quaresma2026-05-121-3/+9
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - Added PACKAGECONFIG for all available options, most of them introduced in this version. This will make the package's outcome more deterministic. This release brings 142 commits with the largest developments in the core of libcamera components. Perhaps the most obvious is that we now use C++20 for the project. The Configuration file handling has had a substantial rework with updates to the yaml_parser. The RKISP1 IPA has now added a new Hue control which brought with it a rework of how we manage fixed point arithmetic with the Quantized class. I hope this makes it easier to convey types with hardware operations. The SoftISP has the ability to perform CPU debaying with multiple threads which helps throughput on platforms such as the Arduino Uno Q. The Mali-C55 pipeline handler now has full support for the RZG2LCRU and inline handling which enables camera support on the Renesas RZ/V2H and RZ/V2NP platforms. And of interest in the apps components, the gstreamer plugin now has the ability to select and configure the sensor mode configuration properties. Finally a new script "libcamera-bug-report" is available to be packaged which will help users identify issues when reporting bugs. More on https://github.com/libcamera-org/libcamera/releases/tag/v0.7.1 Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libcamera: 0.6.0 -> 0.7.0Jose Quaresma2026-05-122-72/+7
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | - Drop merged pacth 0001-libcamera-Do-not-assume-libc-with-clang.patch. - The v4l2 option "true" is deprecated and we should use "enabled". - There is a new option "rpi-awb-nn", disabled for now, which requires TensorFlow Lite. - The GPU acceleration in the software ISP "SoftISP" for delivering better performance and it becomes enabled when we have OpenGL. This release brings 158 commits with substantial development on the SoftISP components. This brings in GPU acceleration, allowing us to get higher throughput for cameras using this pipeline. Further development to improve the image quality is ongoing now that we can perform more processing in realtime. The simple pipeline handler now supports exposing the Raw streams directly allowing us to enable the SoftISP by default without removing access to the camera formats. Kernel headers have been updated to v6.18, supporting the new V4L2 ISP kernel interface which allows us to continue improvements to hardware ISP pipelines as we add new features. Logging has been improved to better detect when to enable or disable color output and can be controlled through the environment variable LIBCAMERA_LOG_COLOR. A new control is added for LensShadingCorrectionEnable to allow runtime control over the LSC components where supported. The gstreamer pipeline now has raw support added to the libcamerasrc stream-role property allowing raw streams to be configured and accessed. An exciting new AWB algorithm using Neural Networks, has been added to the Raspberry Pi IPA following extensive development and training performed by the Raspberry Pi Camera Team. And finally, the Documentation now includes a support matrix which will help identify the current support and enablement for platforms and sensors. More on https://github.com/libcamera-org/libcamera/releases/tag/v0.7.0 Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libcamera: change python configJose Quaresma2026-05-121-1/+1
| | | | | | | | | | The python3 can be removed from PACKAGECONFIG depends because the python3native is already inherited. Also rename the pycamera to python as this is more generic and can be used to enable everything related to python. Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libcamera: add new package for lc-complianceJose Quaresma2026-05-121-2/+3
| | | | | | | | | | | lc-compliance is a libcamera compliance testing tool designed to ensure that cameras and their drivers function correctly within the software stack, acting as a functional system test to validate real-world use cases. This tool helps detect regressions and verifies that the libcamera API is being used correctly. Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libcamera: add configs pipelines for testingJose Quaresma2026-05-121-2/+6
| | | | | | | | | | | | | | | | | | | | | vimc: Is a driver that emulates complex video hardware, and is useful for testing libcamera without needing access to a physical camera. We would like to add support to the libcamera vimc pipeline handler for multiple simultaneous streams, to ease testing of such mechanism. This also requires adding multistream support to the vimc driver in the Linux kernel. virtual: Is a specialized handler designed to create software-based, virtual camera devices. It allows for testing, debugging, and simulating camera pipelines without needing physical hardware, often producing test patterns (e.g., all green frames) via qcam. This enables developers to emulate camera sensors and Image Signal Processors (ISPs) within the libcamera Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libyuv: add recipeJose Quaresma2026-05-121-0/+20
| | | | | | | | The libyuv is an open source project that includes YUV scaling and conversion functionality. Signed-off-by: Jose Quaresma <jose.quaresma@foundries.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* open62541: upgrade 1.4.16 -> 1.5.4Ayoub Zaki2026-05-121-3/+4
| | | | | | | | * upgrade to version 1.5.4 * fix buildpaths QA error in pkgconfig file Signed-off-by: Ayoub Zaki <ayoub.zaki@embetrix.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* libavif: add PACKAGECONFIG for rav1e codecMarkus Volk2026-05-121-1/+1
| | | | | Signed-off-by: Markus Volk <f_l_k@t-online.de> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* librav1e: add recipeMarkus Volk2026-05-122-0/+561
| | | | | | | | | This adds a recipe for the rav1e c-library and pkgconfig files - dont create dbg package to avoid buildpath issues Signed-off-by: Markus Volk <f_l_k@t-online.de> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* svt-av1: add recipeMarkus Volk2026-05-121-0/+14
| | | | | | | | | This adds a recipe for the svt-av1 encoder/decoder - dont create dbg package to avoid buildpath issues Signed-off-by: Markus Volk <f_l_k@t-online.de> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-cyclonedx-python-lib: add recipeSamuli Piippo2026-05-121-0/+19
| | | | | | | | | | | | OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. This Python package provides data models, validators and more, to help you create/render/read CycloneDX documents. Signed-off-by: Samuli Piippo <samuli.piippo@qt.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-py-serializable: add recipeSamuli Piippo2026-05-121-0/+14
| | | | | | | | This Pythonic library provides a framework for serializing/ deserializing Python classes to and from JSON and XML Signed-off-by: Samuli Piippo <samuli.piippo@qt.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-packageurl-python: add recipeSamuli Piippo2026-05-121-0/+12
| | | | | | | Python library to parse and build “purl” aka. Package URLs. Signed-off-by: Samuli Piippo <samuli.piippo@qt.io> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* proftpd: upgrade 1.3.9 -> 1.3.9aYi Zhao2026-05-121-2/+2
| | | | | | | | | | Security fix: CVE-2026-42167 ChangeLog: https://github.com/proftpd/proftpd/blob/1.3.9/NEWS Signed-off-by: Yi Zhao <yi.zhao@windriver.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* dracut: upgrade 110 -> 111Adam Duskett2026-05-121-1/+1
| | | | | | Changelog: https://github.com/dracut-ng/dracut-ng/releases/tag/111 Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* kmscon: upgrade 9.3.3 -> 9.3.5Adam Duskett2026-05-121-1/+1
| | | | | | | | Changelog: https://github.com/kmscon/kmscon/releases/tag/v9.3.5 Signed-off-by: Adam Duskett <adam.duskett@amarulasolutions.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* xterm: upgrade 408 -> 409Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* xbitmaps: upgrade 1.1.3 -> 1.1.4Wang Mingyu2026-05-122-7/+7
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* uriparser: upgrade 1.0.0 -> 1.0.1Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* ubi-utils-klibc: upgrade 2.3.0 -> 2.3.1Wang Mingyu2026-05-125-2/+2
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* tinysparql: upgrade 3.11.0 -> 3.11.1Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* swagger-ui: upgrade 5.32.2 -> 5.32.5Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* strongswan: upgrade 6.0.5 -> 6.0.6Wang Mingyu2026-05-121-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Changelog: =========== - CVE-2026-35328 - Fixed a vulnerability in libtls related to the processing of the supported_versions extension in TLS that can result in an infinite loop. - CVE-2026-35329 - Fixed a vulnerability in libstrongswan and the pkcs7 plugin related to the processing of encrypted PKCS#7 containers that can result in a crash. - CVE-2026-35330 - Fixed a vulnerability in in libsimaka related to the processing of certain EAP-SIM/AKA attributes that can result in an infinite loop or a heap-based buffer overflow and potentially remote code execution. - CVE-2026-35331 - Fixed a vulnerability in the constraints plugin related to the processing of X.509 name constraints that can allow authentication with certificates that violate the constraints. - CVE-2026-35332 - Fixed a vulnerability in libtls related to the processing of ECDH public values in TLS < 1.3 that can result in a crash. - CVE-2026-35333 - Fixed a vulnerability in libradius related to the processing of RADIUS attributes that can result in an infinite loop or an out-of-bounds read that may cause a crash. - CVE-2026-35334 - Fixed a vulnerability in the gmp plugin related to RSA decryption that can result in a crash. - Made the Botan RNG types used/provided by the botan plugin configurable. - The fix for the vulnerability in the constraints plugin now causes all certificates that contain excluded name constraints of type directoryName (DN) to get rejected. Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* spectre-meltdown-checker: upgrade 26.26.0404682 -> 26.33.0420460Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* rtorrent: upgrade 0.16.9 -> 0.16.10Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-zopeinterface: upgrade 8.3 -> 8.4Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-xxhash: upgrade 3.6.0 -> 3.7.0Wang Mingyu2026-05-121-1/+1
| | | | | | | | | | | | Changelog: ========== - Drop support for Python 3.7 - Build armv7l manylinux/musllinux wheels - Build riscv64 manylinux/musllinux wheels - Build android and ios wheels Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-virtualenv: upgrade 21.2.1 -> 21.3.0Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>
* python3-tzdata: upgrade 2026.1 -> 2026.2Wang Mingyu2026-05-121-1/+1
| | | | | Signed-off-by: Wang Mingyu <wangmy@fujitsu.com> Signed-off-by: Khem Raj <khem.raj@oss.qualcomm.com>