summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* linux-yocto/5.10: update to v5.10.192Bruce Ashfield2023-10-053-19/+19
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Updating to the latest korg -stable release that comprises the following commits: 1599cb60bace Linux 5.10.192 0e8139f92304 x86/srso: Correct the mitigation status when SMT is disabled 23e59874657c objtool/x86: Fixup frame-pointer vs rethunk 26e3f7690cda x86/retpoline,kprobes: Fix position of thunk sections with CONFIG_LTO_CLANG 88e16ce7f8a6 x86/srso: Disable the mitigation on unaffected configurations 69712baf2495 x86/CPU/AMD: Fix the DIV(0) initial fix attempt 62ebfeb0dcf7 x86/retpoline: Don't clobber RFLAGS during srso_safe_ret() 91b349289ef1 x86/static_call: Fix __static_call_fixup() d2be58f9215a x86/srso: Explain the untraining sequences a bit more 06597b650beb x86/cpu: Cleanup the untrain mess e0f50b0e4186 x86/cpu: Rename srso_(.*)_alias to srso_alias_\1 0676a392539b x86/cpu: Rename original retbleed methods 8b0ff83e8ad3 x86/cpu: Clean up SRSO return thunk mess 20e24c8b4c2a x86/ibt: Add ANNOTATE_NOENDBR bbbe1b23c7e6 objtool: Add frame-pointer-specific function ignore bd3d12e6fda0 x86/alternative: Make custom return thunk unconditional 043d3bfe0a72 x86/cpu: Fix up srso_safe_ret() and __x86_return_thunk() d5b3c88d153c x86/cpu: Fix __x86_return_thunk symbol type 5962f64ed2b6 mmc: f-sdh30: fix order of function calls in sdhci_f_sdh30_remove 98c7fe38c41e net: fix the RTO timer retransmitting skb every 1ms if linear option is enabled 9aead733f5e0 virtio-net: set queues after driver_ok c080cee93030 af_unix: Fix null-ptr-deref in unix_stream_sendpage(). 7aa165d761e7 netfilter: set default timeout to 3 secs for sctp shutdown send and recv state e62de63c63f3 mmc: block: Fix in_flight[issue_type] value error 9022e9e62db9 mmc: wbsd: fix double mmc_free_host() in wbsd_init() 6e74926ede96 cifs: Release folio lock on fscache read hit. a04ac0c31881 ALSA: usb-audio: Add support for Mythware XA001AU capture and playback interfaces. bd70d0b28010 serial: 8250: Fix oops for port->pm on uart_change_pm() 03a7f213af46 ALSA: hda/realtek - Remodified 3k pull low procedure b7d1c719842d ASoC: meson: axg-tdm-formatter: fix channel slot allocation e761b7e90ac9 ASoC: rt5665: add missed regulator_bulk_disable d23dd85903c9 arm64: dts: rockchip: Disable HS400 for eMMC on ROCK Pi 4 70626b93d6eb arm64: dts: rockchip: sort nodes/properties on rk3399-rock-4 7ba9ac0b5a90 arm64: dts: rockchip: fix regulator name on rk3399-rock-4 fba59a4b55ae arm64: dts: rockchip: add SPDIF node for ROCK Pi 4 77806f63c317 arm64: dts: rockchip: add ES8316 codec for ROCK Pi 4 1411c3e86e66 arm64: dts: rockchip: use USB host by default on rk3399-rock-pi-4 eb5b1e932c18 arm64: dts: rockchip: fix supplies on rk3399-rock-pi-4 73990370d63d bus: ti-sysc: Flush posted write on enable before reset 0a593e8a9d24 net: do not allow gso_size to be set to GSO_BY_FRAGS 51bc052db86d sock: Fix misuse of sk_under_memory_pressure() 773075d38a2f net: dsa: mv88e6xxx: Wait for EEPROM done before HW reset 0a9040dedec2 i40e: fix misleading debug logs abe68922d774 team: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves 526d42c558f5 net: phy: broadcom: stub c45 read/write for 54810 a7653eaea0a5 netfilter: nft_dynset: disallow object maps 49f57a9087d1 ipvs: fix racy memcpy in proc_do_sync_threshold c8d0d3811e20 drm/panel: simple: Fix AUO G121EAN01 panel timings according to the docs 86517421f470 selftests: mirror_gre_changes: Tighten up the TTL test match 614811692e21 xfrm: add forgotten nla_policy for XFRMA_MTIMER_THRESH bd30aa9c7feb xfrm: add NULL check in xfrm_update_ae_params 0b4d69539fde ip_vti: fix potential slab-use-after-free in decode_session6 ec23b25e5687 ip6_vti: fix slab-use-after-free in decode_session6 bafa23638081 xfrm: fix slab-use-after-free in decode_session6 0f89909c80a9 net: xfrm: Amend XFRMA_SEC_CTX nla_policy structure 8b92d03cfcec net: af_key: fix sadb_x_filter validation 7e50815d2903 net: xfrm: Fix xfrm_address_filter OOB read 549e4e167a4d i2c: designware: Handle invalid SMBus block data response length value bd7bef82ce0e btrfs: fix BUG_ON condition in btrfs_cancel_balance 483d713ba2f6 tty: serial: fsl_lpuart: Clear the error flags by writing 1 for lpuart32 platforms 869ce5e59845 tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux 0ba7f969be59 powerpc/rtas_flash: allow user copy to flash block cache objects c5f59de36202 fbdev: mmp: fix value check in mmphw_probe() 268cc9bc54bd i2c: bcm-iproc: Fix bcm_iproc_i2c_isr deadlock issue 3ff54d904faf virtio-mmio: don't break lifecycle of vm_dev b1fe05cc5126 virtio-mmio: Use to_virtio_mmio_device() to simply code 3b76d9263679 tracing/probes: Fix to update dynamic data counter if fetcharg uses it 265a979dedb1 tracing/probes: Have process_fetch_insn() take a void * instead of pt_regs a89054535368 mmc: meson-gx: fix deferred probing e8a41b4a5008 mmc: meson-gx: use devm_mmc_alloc_host 50ed76c9e09b mmc: core: add devm_mmc_alloc_host d523ce6f51f1 mmc: sunxi: fix deferred probing 939a12f29a4b mmc: bcm2835: fix deferred probing 01dfc61f72a8 USB: dwc3: qcom: fix NULL-deref on suspend 3e2b5d66e926 usb: cdns3: fix NCM gadget RX speed 20x slow than expection at iMX8QM f5c11b45f3f9 usb: cdns3: allocate TX FIFO size according to composite EP number a461bcfb36d6 usb: gadget: udc: core: Introduce check_config to verify USB configuration a64f5fe493b5 irqchip/mips-gic: Use raw spinlock for gic_lock 0704666c570d irqchip/mips-gic: Get rid of the reliance on irq_cpu_online() 372f1752b745 bus: mhi: host: Range check CHDBOFF and ERDBOFF 77944a6f3cf8 bus: mhi: Move host MHI code to "host" directory f73891261566 bus: mhi: Add MMIO region length to controller structure 1cacbb711e32 bus: mhi: Add MHI PCI support for WWAN modems 436b4232533a iio: addac: stx104: Fix race condition when converting analog-to-digital aeecd8d97da7 iio: addac: stx104: Fix race condition for stx104_write_raw() f6576d4851fa iio: adc: stx104: Implement and utilize register structures 9d1609824554 iio: adc: stx104: Utilize iomap interface d2ba1f40fc09 dt-bindings: iio: add AD74413R c5e580831b2d iio: add addac subdirectory bb70fdbfa272 IMA: allow/fix UML builds 66a3b2a12138 ring-buffer: Do not swap cpu_buffer during resize process dd5a12cdf20c powerpc/kasan: Disable KCOV in KASAN code 9f9eed451176 ALSA: hda: fix a possible null-pointer dereference due to data race in snd_hdac_regmap_sync() 7a21c2e474ae ALSA: hda/realtek: Add quirks for Unis H3C Desktop B760 & Q760 b870b9a47fdb drm/amdgpu: Fix potential fence use-after-free v2 f19add5c7760 Bluetooth: btusb: Add MT7922 bluetooth ID for the Asus Ally 2958cf9f805b Bluetooth: L2CAP: Fix use-after-free 04bb8af40a77 pcmcia: rsrc_nonstatic: Fix memory leak in nonstatic_release_resource_db() 7c5b2649f6a3 gfs2: Fix possible data races in gfs2_show_options() e8f3d96051c1 usb: chipidea: imx: add missing USB PHY DPDM wakeup setting 7a3a7c6fa0dc usb: chipidea: imx: don't request QoS for imx8ulp 2caeb722f0ea media: platform: mediatek: vpu: fix NULL ptr dereference 99d6afa19d6d usb: gadget: u_serial: Avoid spinlock recursion in __gs_console_push e52de26cb374 media: v4l2-mem2mem: add lock to protect parameter num_rdy 5c094ca99482 FS: JFS: Check for read-only mounted filesystem in txBegin 2a3f20efe6c9 FS: JFS: Fix null-ptr-deref Read in txBegin e778c8b0a9b6 MIPS: dec: prom: Address -Warray-bounds warning 911b48eec451 fs: jfs: Fix UBSAN: array-index-out-of-bounds in dbAllocDmapLev 4503f6fc95d6 udf: Fix uninitialized array access for some pathnames a2966e0436dd ovl: check type and offset of struct vfsmount in ovl_entry 73311dd83185 RDMA/mlx5: Return the firmware result upon destroying QP/RQ 19312bc3ff67 HID: add quirk for 03f0:464a HP Elite Presenter Mouse 04bd3a362d2f drm/amdgpu: install stub fence into potential unused fence pointers 04e774fb6789 dma-remap: use kvmalloc_array/kvfree for larger dma memory remap cbaebbba722c quota: fix warning in dqgrab() 8a4f4d47b82f quota: Properly disable quotas when add_dquot_ref() fails df907501ba54 iopoll: Call cpu_relax() in busy loops 940ccc291cca ASoC: Intel: sof_sdw: Add support for Rex soundwire b2882c51e6d0 ARM: dts: imx6dl: prtrvt, prtvt7, prti6q, prtwd2: fix USB related warnings dbe0f607f84c PCI: tegra194: Fix possible array out of bounds access 10459ffd56ad ASoC: Intel: sof_sdw: add quirk for LNL RVP 9f4dd39696c8 ASoC: Intel: sof_sdw: add quirk for MTL RVP 751c5b6a2315 ALSA: emu10k1: roll up loops in DSP setup code for Audigy e6825b30d37f drm/radeon: Fix integer overflow in radeon_cs_parser_init e6c0a9728e3a net/mlx5: Skip clock update work when device is in error state 81cc91bba42b net/mlx5: Move all internal timer metadata into a dedicated struct ba2e27e5100d net/mlx5: Refactor init clock function e77ef787415b macsec: use DEV_STATS_INC() ecf0e627fbbb macsec: Fix traffic counters/statistics b630367a608d mmc: sdhci-f-sdh30: Replace with sdhci_pltfm (From OE-Core rev: 8851b954ba00761fc6dd31561643fecf6749b838) Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* linux-yocto/5.10: update to v5.10.191Bruce Ashfield2023-10-053-19/+19
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Updating to the latest korg -stable release that comprises the following commits: da742ebfa00c Linux 5.10.191 3b55ce96efc5 sch_netem: fix issues in netem_change() vs get_dist_table() db9d161a0407 alpha: remove __init annotation from exported page_is_ram() 4af122b5d7b8 scsi: qedf: Fix firmware halt over suspend and resume 3bb05745cacc scsi: qedi: Fix firmware halt over suspend and resume aa9a76d5ffde scsi: core: Fix possible memory leak if device_add() fails 58889d5ad74c scsi: snic: Fix possible memory leak if device_add() fails a370e2d653e5 scsi: 53c700: Check that command slot is not NULL 1678408d08f3 scsi: storvsc: Fix handling of virtual Fibre Channel timeouts 267ad381c2fc scsi: core: Fix legacy /proc parsing buffer overflow 039ce5eb6ba2 netfilter: nf_tables: report use refcount overflow 93b3195d370a nvme-rdma: fix potential unbalanced freeze & unfreeze 9ad83e3e6121 nvme-tcp: fix potential unbalanced freeze & unfreeze 200ae5fa0b7e btrfs: set cache_block_group_error if we find an error bd3175f9d597 btrfs: don't stop integrity writeback too early c91d822127d3 ibmvnic: Handle DMA unmapping of login buffs in release functions 9024873b943d ibmvnic: Unmap DMA login rsp buffer on send login fail d4750cea76f7 ibmvnic: Enforce stronger sanity checks on login response 879750c6a7e1 net/mlx5: Allow 0 for total host VFs f8510dfa958b dmaengine: mcf-edma: Fix a potential un-allocated memory access e8d349408a49 net: hns3: add wait until mac link down 70660e6faac5 net: hns3: refactor hclge_mac_link_status_wait for interface reuse b564f32fb369 net: phy: at803x: remove set/get wol callbacks for AR8032 0d3573811894 wifi: cfg80211: fix sband iftype data lookup for AP_VLAN 33c677d1e087 IB/hfi1: Fix possible panic during hotplug remove 13f7752f4adb drivers: net: prevent tun_build_skb() to exceed the packet size limit 6d701c95ee64 dccp: fix data-race around dp->dccps_mss_cache 6d0bd7b7b3a7 bonding: Fix incorrect deletion of ETH_P_8021AD protocol vid from slaves 5850c391fd7e tunnels: fix kasan splat when generating ipv4 pmtu error b3b6b9331abc net/packet: annotate data-races around tp->status cafe399d4d50 mISDN: Update parameter type of dsp_cmx_send() 4f1d1cc16ad3 selftests: forwarding: tc_flower: Relax success criterion 501e3de09a53 selftests: forwarding: Switch off timeout fe8fac37aa73 selftests: forwarding: Skip test when no interfaces are specified 44a47be97cf2 selftests: forwarding: ethtool_extended_state: Skip when using veth pairs 0a93fa240d7c selftests: forwarding: ethtool: Skip when using veth pairs 7e6af9c133c0 selftests: forwarding: Add a helper to skip test when using veth pairs e731ad522159 selftests/rseq: Fix build with undefined __weak cba47d0c95fb drm/nouveau/disp: Revert a NULL check inside nouveau_connector_get_modes 98eaa12c967b x86: Move gds_ucode_mitigated() declaration to header 09f78fc442fa x86/speculation: Add cpu_show_gds() prototype 5258281a930c x86/mm: Fix VDSO and VVAR placement on 5-level paging machines eda9f8ffca46 x86/cpu/amd: Enable Zenbleed fix for AMD Custom APU 0405 cb1eefc04634 x86/srso: Fix build breakage with the LLVM linker df8d390a210f usb: common: usb-conn-gpio: Prevent bailing out if initial role is none 598ccdb92dec usb: dwc3: Properly handle processing of pending events fe7c3a445d22 usb-storage: alauda: Fix uninit-value in alauda_check_media() d7e5e2b87f5d binder: fix memory leak in binder_init() 0439ce5aefcd iio: cros_ec: Fix the allocation size for cros_ec_command aa425ee2278d io_uring: correct check for O_TMPFILE 372072408724 nilfs2: fix use-after-free of nilfs_root in dirtying inodes via iput a16c66baa4de x86/pkeys: Revert a5eff7259790 ("x86/pkeys: Add PKRU value to init_fpstate") 04499d2c973a radix tree test suite: fix incorrect allocation size for pthreads db0e1e2abddb hwmon: (pmbus/bel-pfe) Enable PMBUS_SKIP_STATUS_CHECK for pfe1100 a73d999fdfd9 drm/amd/display: check attr flag before set cursor degamma on DCN3+ 188e8e25ae24 drm/shmem-helper: Reset vma->vm_ops before calling dma_buf_mmap() 6b6839e440d7 drm/nouveau/gr: enable memory loads on helper invocation on all channels 002cde0b78d3 riscv,mmio: Fix readX()-to-delay() ordering 8362ad5367dc dmaengine: pl330: Return DMA_PAUSED when transaction is paused 7328c5319e08 selftests/bpf: Fix sk_assign on s390x b1a3e27d6bfc selftests/bpf: Workaround verification failure for fexit_bpf2bpf/func_replace_return_code 4af2d9ddb7e7 selftests/bpf: make test_align selftest more robust 1952a4d5e4cf bpf: aggressively forget precise markings during state checkpointing 7ca3e7459f4a bpf: stop setting precise in current state 2474ec58b96d bpf: allow precision tracking for programs with subprogs 6796c2a0c5fc ipv6: adjust ndisc_is_useropt() to also return true for PIO f327f463c7ac mmc: moxart: read scr register without changing byte order 890ac460b0e8 wireguard: allowedips: expand maximum node depth ec585727b63d Linux 5.10.190 b6fc2fbf8908 x86/CPU/AMD: Do not leak quotient data after a division by 0 98b7ab5e8d88 ARM: dts: nxp/imx6sll: fix wrong property name in usbphy node 14f2e2ac731b ARM: dts: imx6sll: fixup of operating points f1c928496d2a ARM: dts: imx: add usb alias c0e7123e896a wifi: mt76: mt7615: do not advertise 5 GHz on first phy of MT7615D (DBDC) 37fad83ae527 mt76: mt7615: Fix fall-through warnings for Clang b85c7882fd3c mt76: move band capabilities in mt76_phy 381f7df0f3c3 exfat: check if filename entries exceeds max filename length bd3bdb9e0d65 exfat: support dynamic allocate bh for exfat_entry_set_cache e0d192a4023e exfat: speed up iterate/lookup by fixing start point of traversing cluster chain 86e4e949ea81 PM: sleep: wakeirq: fix wake irq arming 9a320469add4 PM / wakeirq: support enabling wake-up irq after runtime_suspend called 48d1d0ce0782 soundwire: fix enumeration completion 7d949774e7c1 soundwire: bus: pm_runtime_request_resume on peripheral attachment 662735bc1127 soundwire: bus: add better dev_dbg to track complete() calls 173d9c7090db selftests/rseq: Play nice with binaries statically linked against glibc 2.35+ c08de20e7041 selftests/rseq: check if libc rseq support is registered fbb6657037d4 powerpc/mm/altmap: Fix altmap boundary check 1f09d67d3906 mtd: rawnand: fsl_upm: Fix an off-by one test in fun_exec_op() 027710952b53 mtd: rawnand: omap_elm: Fix incorrect type in assignment d328849fb63b ext2: Drop fragment support 7e4e87ec56aa fs: Protect reconfiguration of sb read-write from racing writes ec0d0be41721 net: usbnet: Fix WARNING in usbnet_start_xmit/usb_submit_urb 06f87c96216b Bluetooth: L2CAP: Fix use-after-free in l2cap_sock_ready_cb 7f740bc696d4 fs/sysv: Null check to prevent null-ptr-deref bug 426656e8dd03 tracing: Fix sleeping while atomic in kdb ftdump 4f86da9abe31 file: reinstate f_pos locking optimization for regular files d39971d902d0 drm/ttm: check null pointer before accessing when swapping c9c78b91c783 open: make RESOLVE_CACHED correctly test for O_TMPFILE 3048cb0dc0cc bpf: Disable preemption in bpf_event_output 33a339e717be net: tap_open(): set sk_uid from current_fsuid() 5ea23f1cb67e net: tun_chr_open(): set sk_uid from current_fsuid() 8d104bfd41a9 arm64: dts: stratix10: fix incorrect I2C property for SCL signal 8625802a1ba8 mtd: rawnand: meson: fix OOB available bytes for ECC 82dc2bffeabc mtd: spinand: toshiba: Fix ecc_get_status ddf7cc702973 exfat: release s_lock before calling dir_emit() 79d16a84ea41 exfat: use kvmalloc_array/kvfree instead of kmalloc_array/kfree a4b2673e3c04 ceph: defer stopping mdsc delayed_work b5b39ff6917f USB: zaurus: Add ID for A-300/B-500/C-700 513bfdde8a3b libceph: fix potential hang in ceph_osdc_notify() 181274d2f3de scsi: zfcp: Defer fc_rport blocking until after ADISC response 6d9f5f3d8920 tcp_metrics: fix data-race in tcpm_suck_dst() vs fastopen 05d1dc88c40f tcp_metrics: annotate data-races around tm->tcpm_net 079afb181504 tcp_metrics: annotate data-races around tm->tcpm_vals[] 57bcbbb208a0 tcp_metrics: annotate data-races around tm->tcpm_lock 289091eef30f tcp_metrics: annotate data-races around tm->tcpm_stamp 420aad608f72 tcp_metrics: fix addr_same() helper 80e9488ece3d net/mlx5: fs_core: Skip the FTs in the same FS_TYPE_PRIO_CHAINS fs_prio 7a634336a03b net/mlx5: fs_core: Make find_closest_ft more generic c650597647ec vxlan: Fix nexthop hash size 1683124129a4 ip6mr: Fix skb_under_panic in ip6mr_cache_report() c33d5a5c5b2c s390/qeth: Don't call dev_close/dev_open (DOWN/UP) 8e309f43d0ca net: dcb: choose correct policy to parse DCB_ATTR_BCN 6d4f24736df9 net: netsec: Ignore 'phy-mode' on SynQuacer in DT mode 216092963ce5 net: ll_temac: fix error checking of irq_of_parse_and_map() 20fe059c1d47 net: ll_temac: Switch to use dev_err_probe() helper a0e42f4bd496 bpf: sockmap: Remove preempt_disable in sock_map_sk_acquire aaa71c4e8ad9 net/sched: cls_route: No longer copy tcf_result on update to avoid use-after-free a8d478200b10 net/sched: cls_fw: No longer copy tcf_result on update to avoid use-after-free b4256c99a711 net/sched: cls_u32: No longer copy tcf_result on update to avoid use-after-free 268b29ef1947 net: add missing data-race annotation for sk_ll_usec ad417bab9d5b net: add missing data-race annotations around sk->sk_peek_off 11e0590af333 net: add missing READ_ONCE(sk->sk_rcvbuf) annotation dc20f7bada00 net: add missing READ_ONCE(sk->sk_sndbuf) annotation 427c611d846d net: add missing READ_ONCE(sk->sk_rcvlowat) annotation c7ebe08f4081 net: annotate data-races around sk->sk_max_pacing_rate 14db69381dd8 mISDN: hfcpci: Fix potential deadlock on &hc->lock d163337bef20 net: sched: cls_u32: Fix match key mis-addressing e68929f11b19 perf test uprobe_from_different_cu: Skip if there is no gcc eb8031b7ce0c net: dsa: fix value check in bcm_sf2_sw_probe() abb0172fa8dc rtnetlink: let rtnl_bridge_setlink checks IFLA_BRIDGE_MODE length 6b93c510684a bpf: Add length check for SK_DIAG_BPF_STORAGE_REQ_MAP_FD parsing 2cf67912078f net/mlx5e: fix return value check in mlx5e_ipsec_remove_trailer() 165159854757 net/mlx5: DR, fix memory leak in mlx5dr_cmd_create_reformat_ctx ef3d0a732d69 wifi: cfg80211: Fix return value in scan logic b4bdcbc0e391 KVM: s390: fix sthyi error handling 4241cfc973ad word-at-a-time: use the same return type for has_zero regardless of endianness 94f8447ab802 arm64: dts: imx8mn-var-som: add missing pull-up for onboard PHY reset pinmux 832a4d4cdb3f loop: Select I/O scheduler 'none' from inside add_disk() 3f7395c38204 perf: Fix function pointer case a883b98dc737 io_uring: gate iowait schedule on having pending requests 058c0cbd251a x86/kprobes: Fix JNG/JNLE emulation edc2ac7c7265 x86/kprobes: Update kcb status flag after singlestepping f07f3938c813 x86/kprobes: Move 'inline' to the beginning of the kprobe_is_ss() declaration 2b5afe25f5b6 x86/kprobes: Fix to identify indirect jmp and others using range case ba7d1dae9fe8 x86/kprobes: Use int3 instead of debug trap for single-step 2c57553a77e1 x86/kprobes: Identify far indirect JMP correctly 41db23bad952 x86/kprobes: Retrieve correct opcode for group instruction ff97a14c8a86 x86/kprobes: Do not decode opcode in resume_execution() 5601d812c8d8 kprobes/x86: Fix fall-through warnings for Clang 7a413fa04726 ASoC: cs42l51: fix driver to properly autoload with automatic module loading 4d360a819453 io_uring: treat -EAGAIN for REQ_F_NOWAIT as final for io-wq 9164e27c5a8e selftests: mptcp: depend on SYN_COOKIES f0acd6c3a2cd cpufreq: intel_pstate: Drop ACPI _PSS states table patching a241fc02f1ce ACPI: processor: perflib: Avoid updating frequency QoS unnecessarily ad938dd2af28 ACPI: processor: perflib: Use the "no limit" frequency QoS 4148f28f9824 drm/ttm: make ttm_bo_unpin more defensive c0f2b2b02096 dm cache policy smq: ensure IO doesn't prevent cleaner policy progress aae65b1793bb ceph: never send metrics if disable_send_metrics is set 4f669618c99f ASoC: wm8904: Fill the cache for WM8904_ADC_TEST_0 register c837f121bc98 s390/dasd: fix hanging device after quiesce/resume 276738b382cf virtio-net: fix race between set queues and probe 3d10481a90c3 btrfs: check if the transaction was aborted at btrfs_wait_for_commit() fc511ae405f7 staging: r8712: Fix memory leak in _r8712_init_xmit_priv() 223ecf871b42 staging: rtl8712: Use constants from <linux/ieee80211.h> 836b13168336 KVM: VMX: Don't fudge CR0 and CR4 for restricted L2 guest c710ff061237 KVM: nVMX: Do not clear CR3 load/store exiting bits if L1 wants 'em 7fc51da40b9d KVM: VMX: Fold ept_update_paging_mode_cr0() back into vmx_set_cr0() 96c73bc9efef KVM: VMX: Invert handling of CR0.WP for EPT without unrestricted guest 90cd5ab951ea irqchip/gic-v4.1: Properly lock VPEs when doing a directLPI invalidation 57b8db5800a5 irq-bcm6345-l1: Do not assume a fixed block to cpu mapping b1867cddd780 tpm_tis: Explicitly check for error code 5be81139d2ff nfsd: Remove incorrect check in nfsd4_validate_stateid 4a871fcebc02 file: always lock position for FMODE_ATOMIC_POS c5c797ccc3b5 btrfs: check for commit error at btrfs_attach_transaction_barrier() 5e0e4e72ca21 hwmon: (nct7802) Fix for temp6 (PECI1) processed even if PECI1 disabled 7c6df7f0fc3d ALSA: hda/relatek: Enable Mute LED on HP 250 G8 8fc0eabaa73b tty: n_gsm: fix UAF in gsm_cleanup_mux caac4b6c15b6 staging: ks7010: potential buffer overflow in ks_wlan_set_encode_ext() baef414b1ca0 Documentation: security-bugs.rst: clarify CVE handling 0d5b23743bed Documentation: security-bugs.rst: update preferences when dealing with the linux-distros group 65cd02e3c37e Revert "usb: xhci: tegra: Fix error check" b0fd110578e7 usb: xhci-mtk: set the dma max_seg_size d0b588bbe4d9 USB: quirks: add quirk for Focusrite Scarlett 66a622275a11 usb: ohci-at91: Fix the unhandle interrupt when resume 96c433aff5fd usb: dwc3: don't reset device side if dwc3 was configured as host-only 05b201de4418 usb: dwc3: pci: skip BYT GPIO lookup table for hardwired phy 75ad45cef699 Revert "usb: dwc3: core: Enable AutoRetry feature in the controller" bf468806b63f can: gs_usb: gs_can_close(): add missing set of CAN state to CAN_STATE_STOPPED d5db33a667f5 USB: serial: simple: sort driver entries 81c54eef1dd7 USB: serial: simple: add Kaufmann RKS+CAN VCP fca2a74eee5a USB: serial: option: add Quectel EC200A module support c704cb21138b USB: serial: option: support Quectel EM060K_128 1037ee1dbf73 serial: sifive: Fix sifive_serial_console_setup() section 6209a7383d3a serial: 8250_dw: Preserve original value of DLF register 9e671a6116f4 serial: qcom-geni: drop bogus runtime pm state update 68e6287ac61d USB: gadget: Fix the memory leak in raw_gadget driver da1b105dc66d Revert "usb: gadget: tegra-xudc: Fix error check in tegra_xudc_powerdomain_init()" a6d2fd1703cd tracing: Fix warning in trace_buffered_event_disable() 0efbdbc4530c ring-buffer: Fix wrong stat of cpu_buffer->read e410839c0cd8 ata: pata_ns87415: mark ns87560_tf_read static 82ce0ae87a96 dm raid: protect md_stop() with 'reconfig_mutex' d6a1cf4ee5eb dm raid: clean up four equivalent goto tags in raid_ctr() a43c761a7e1c dm raid: fix missing reconfig_mutex unlock in raid_ctr() error paths d82bfe9686f3 block: Fix a source code comment in include/uapi/linux/blkzoned.h ab6d14bc4041 ASoC: fsl_spdif: Silence output on stop 94bac776cd27 drm/msm: Fix IS_ERR_OR_NULL() vs NULL check in a5xx_submit_in_rb() b0100bdb9dcd RDMA/mthca: Fix crash when polling CQ for shared QPs 62a8a4cafa96 drm/msm/adreno: Fix snapshot BINDLESS_DATA size 5c9e03b86756 drm/msm/dpu: drop enum dpu_core_perf_data_bus_id 08aa5a5297e6 RDMA/mlx4: Make check for invalid flags stricter 9d1fd118bcb4 tipc: stop tipc crypto on failure in tipc_node_create d03de937765f tipc: check return value of pskb_trim() 3661bab5afcb benet: fix return value check in be_lancer_xmit_workarounds() f40f7a858b3b net/sched: mqprio: Add length check for TCA_MQPRIO_{MAX/MIN}_RATE64 3ed3729a6a8e net/sched: mqprio: add extack to mqprio_parse_nlattr() 6227b461542f net/sched: mqprio: refactor nlattr parsing to a separate function 308a43f1521d netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID ab5a97a94b57 netfilter: nf_tables: skip immediate deactivate in _PREPARE_ERROR 7782ce022fea netfilter: nftables: add helper function to validate set element data 893cb3c3513c netfilter: nft_set_rbtree: fix overlap expiration walk 89060b831c41 platform/x86: msi-laptop: Fix rfkill out-of-sync on MSI Wind U100 75f57acda32f team: reset team's flags when down link is P2P device de982f46be83 bonding: reset bond's flags when down link is P2P device b2712c4bfc3b ice: Fix memory management in ice_ethtool_fdir.c 0cd74fbd3b83 tcp: Reduce chance of collisions in inet6_hashfn(). b55a2b34b1b6 ipv6 addrconf: fix bug where deleting a mngtmpaddr can create a new temporary address 5a3c92968223 ethernet: atheros: fix return value check in atl1e_tso_csum() ad249aa3c38f phy: hisilicon: Fix an out of bounds check in hisi_inno_phy_probe() 6f26f1457377 vxlan: calculate correct header length for GPE d2741769d512 vxlan: move to its own directory 076f786f0414 net: hns3: fix wrong bw weight of disabled tc issue 344b7c000398 net: hns3: reconstruct function hclge_ets_validate() 111b699300a7 net: phy: marvell10g: fix 88x3310 power up 8a6cc852f658 i40e: Fix an NULL vs IS_ERR() bug for debugfs_create_dir() 39c789c9570d media: staging: atomisp: select V4L2_FWNODE fb1db979043a phy: qcom-snps-femto-v2: properly enable ref clock ffebc22bdd08 phy: qcom-snps-femto-v2: keep cfg_ahb_clk enabled during runtime suspend f34090579a8b phy: qcom-snps: correct struct qcom_snps_hsphy kerneldoc ceba255a791b phy: qcom-snps: Use dev_err_probe() to simplify code ed3d841f2fc2 ext4: fix to check return value of freeze_bdev() in ext4_shutdown() e3454b438c67 pwm: meson: fix handling of period/duty if greater than UINT_MAX b306d09967ca pwm: meson: Simplify duplicated per-channel tracking 840ce9cfc86f tracing: Show real address for trace event arguments 8996b13051f0 drm/ttm: never consider pinned BOs for eviction&swap 5f6d5b58c59e drm/ttm: add ttm_bo_pin()/ttm_bo_unpin() v2 1815d9bf02b7 fs: dlm: interrupt posix locks only when process is killed 0f6741acfd5b dlm: rearrange async condition return 793123331007 dlm: cleanup plock_op vs plock_xop 838d6e86ec74 PCI/ASPM: Avoid link retraining race 9f283ca643dd PCI/ASPM: Factor out pcie_wait_for_retrain() ffc0ee491f04 PCI/ASPM: Return 0 or -ETIMEDOUT from pcie_retrain_link() 9fd349c8858e i2c: nomadik: Remove a useless call in the remove function a7ab5d7943b5 i2c: nomadik: Use devm_clk_get_enabled() ec954a4ab0c8 i2c: nomadik: Remove unnecessary goto label 04b114067849 i2c: Improve size determinations 41e90f0e50f5 i2c: Delete error messages for failed memory allocations 52df40a5c71e btrfs: fix extent buffer leak after tree mod log failure at split_node() 52403c3dad20 btrfs: fix race between quota disable and relocation 3069fc0326b8 gpio: tps68470: Make tps68470_gpio_output() always set the initial value 22786d53817d io_uring: don't audit the capability check in io_uring_create() 8e635da0e0d3 KVM: s390: pv: fix index value of replaced ASCE (From OE-Core rev: f3db78f6fdc439ba0d3450837d8b3e9052b7d8ca) Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* linux-yocto/5.10: update to v5.10.189Bruce Ashfield2023-10-053-19/+19
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Updating to the latest korg -stable release that comprises the following commits: de5f63612d16 Linux 5.10.189 2ae9a73819a7 x86: fix backwards merge of GDS/SRSO bit f9167a2d6b94 xen/netback: Fix buffer overrun triggered by unusual packet 8457fb5740b1 x86/srso: Tie SBPB bit setting to microcode patch detection 4873939c0e1c x86/srso: Fix return thunks in generated code 384d41bea948 x86/srso: Add IBPB on VMEXIT 4acaea47e3bc x86/srso: Add IBPB e47af0c255ae x86/srso: Add SRSO_NO support df76a59feba5 x86/srso: Add IBPB_BRTYPE support 3f9b7101bea1 x86/srso: Add a Speculative RAS Overflow mitigation 34f23ba8a399 x86/cpu, kvm: Add support for CPUID_80000021_EAX 073a28a9b506 x86/bugs: Increase the x86 bugs vector size to two u32s 9b7fe7c6fbc0 tools headers cpufeatures: Sync with the kernel sources 437fa179f213 x86/cpufeatures: Assign dedicated feature word for CPUID_0x8000001F[EAX] baf6d6c39e23 x86/cpu: Add VM page flush MSR availablility as a CPUID feature 675046878431 Documentation/x86: Fix backwards on/off logic about YMM support 79972c2b95ec x86/mm: Initialize text poking earlier 1ff14defdfc9 mm: Move mm_cachep initialization to mm_init() 6ee042fd240f x86/mm: Use mm_alloc() in poking_init() f076d0817878 x86/mm: fix poking_init() for Xen PV guests 583016037a09 x86/xen: Fix secondary processors' FPU initialization eb13cce48874 KVM: Add GDS_NO support to KVM 7db4ddcb8d8e x86/speculation: Add Kconfig option for GDS 363c98f9cfa8 x86/speculation: Add force option to GDS mitigation 288a2f6bc1ce x86/speculation: Add Gather Data Sampling mitigation 4ae1cbb730bd x86/fpu: Move FPU initialization into arch_cpu_finalize_init() 2462bc3ef061 x86/fpu: Mark init functions __init 7a2f42bce9ab x86/fpu: Remove cpuinfo argument from init functions 18fcd72da1ed init, x86: Move mem_encrypt_init() into arch_cpu_finalize_init() 09658b81d158 init: Invoke arch_cpu_finalize_init() earlier bf2fa3a9d0e6 init: Remove check_bugs() leftovers b05031c2bca7 um/cpu: Switch to arch_cpu_finalize_init() 2edb3b39ca79 sparc/cpu: Switch to arch_cpu_finalize_init() 3c45134b38b4 sh/cpu: Switch to arch_cpu_finalize_init() 75bb54c951e9 mips/cpu: Switch to arch_cpu_finalize_init() 1cd3fc18eb16 m68k/cpu: Switch to arch_cpu_finalize_init() 12d93c6c98d5 ia64/cpu: Switch to arch_cpu_finalize_init() c0fff20d4efa ARM: cpu: Switch to arch_cpu_finalize_init() e5eb18e164d0 x86/cpu: Switch to arch_cpu_finalize_init() 6e606e681873 init: Provide arch_cpu_finalize_init() (From OE-Core rev: f674e44ff69a1e51c4b6929d195ce0a110577c12) Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* go: Update fix for CVE-2023-24538 & CVE-2023-39318Shubham Kulkarni2023-10-054-17/+802
| | | | | | | | | | | | | Add missing files in fix for CVE-2023-24538 & CVE-2023-39318 Upstream Link - CVE-2023-24538: https://github.com/golang/go/commit/b1e3ecfa06b67014429a197ec5e134ce4303ad9b CVE-2023-39318: https://github.com/golang/go/commit/023b542edf38e2a1f87fcefb9f75ff2f99401b4c (From OE-Core rev: 0d8f7062d4fb5525f34427b1a7304f165bee0cfc) Signed-off-by: Shubham Kulkarni <skulkarni@mvista.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* json-c: define CVE_VERSIONPeter Marko2023-10-051-0/+3
| | | | | | | | | | | | | | | Recently NVD updated all CVEs for json-c and old fixed CVE-2020-12762 is reported by cve_check now. NVD match clause now includes full tag name including date which is "greater" than tag without additional numbers. Fix it by defining CVE_VERSION identical to full tag. Put it close to hash so recipe update patch includes this line. (From OE-Core rev: 55e9ff0fe1de70f226557529f73c28f34f6956ed) Signed-off-by: Peter Marko <peter.marko@siemens.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* kernel.bbclass: Add force flag to rm callsRyan Eatmon2023-09-301-2/+2
| | | | | | | | | | | | | | | | The latest 6.5 kernels do not appear to create the source file in ${D}${nonarch_base_libdir}/modules/${KERNEL_VERSION}/source so the recipe errors out when trying to remove it. Simple fix is to add the -f (force) flag to the call. (From OE-Core rev: 2e669bf797b15d803e7d6a700e449bdc467a4bcc) (From OE-Core rev: 7e177848f97eb9958619c28b5e5dadee12f67507) Signed-off-by: Ryan Eatmon <reatmon@ti.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> Signed-off-by: Alexander Sverdlin <alexander.sverdlin@siemens.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* cml1: Fix KCONFIG_CONFIG_COMMAND not conveyed fully in do_menuconfigJaeyoon Jung2023-09-301-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | Variable overrides in KCONFIG_CONFIG_COMMAND do not work as expected due to double quote mismatches. The issue is reproducible in an environment where gold is the default linker. Below is an example snippet of run.do_terminal generated by do_menuconfig. do_terminal() { exec sh -c "make menuconfig CC="aarch64-webos-linux-gcc ..." LD="aarch64-webos-linux-ld.bfd ..." ... } Although LD override is set to bfd correctly, it is not passed to make and make menuconfig ends up with messages like: | gold linker is not supported as it is not capable of linking the kernel proper. | scripts/Kconfig.include:56: Sorry, this linker is not supported. (From OE-Core rev: 9c483765db762dbe8020423c8778518612b7e5f7) (From OE-Core rev: 536c477838fb1a318c5b283475de7f0eac99c872) Signed-off-by: Jaeyoon Jung <jaeyoon.jung@lge.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit d4664d2b7974354e73d891762ebb2c8a12d62438) Backported: File was renamed between kirkstone and master. Signed-off-by: Yoann Congal <yoann.congal@smile.fr> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* bind: update to 9.18.19Lee Chee Yang2023-09-3010-1/+1
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Notes for BIND 9.18.19 Security Fixes Previously, sending a specially crafted message over the control channel could cause the packet-parsing code to run out of available stack memory, causing named to terminate unexpectedly. This has been fixed. (CVE-2023-3341) ISC would like to thank Eric Sesterhenn from X41 D-Sec GmbH for bringing this vulnerability to our attention. [GL #4152] A flaw in the networking code handling DNS-over-TLS queries could cause named to terminate unexpectedly due to an assertion failure under significant DNS-over-TLS query load. This has been fixed. (CVE-2023-4236) ISC would like to thank Robert Story from USC/ISI Root Server Operations for bringing this vulnerability to our attention. [GL #4242] Removed Features The dnssec-must-be-secure option has been deprecated and will be removed in a future release. [GL #4263] Feature Changes If the server command is specified, nsupdate now honors the nsupdate -v option for SOA queries by sending both the UPDATE request and the initial query over TCP. [GL #1181] Bug Fixes The value of the If-Modified-Since header in the statistics channel was not being correctly validated for its length, potentially allowing an authorized user to trigger a buffer overflow. Ensuring the statistics channel is configured correctly to grant access exclusively to authorized users is essential (see the statistics-channels block definition and usage section). [GL #4124] This issue was reported independently by Eric Sesterhenn of X41 D-Sec GmbH and Cameron Whitehead. The Content-Length header in the statistics channel was lacking proper bounds checking. A negative or excessively large value could potentially trigger an integer overflow and result in an assertion failure. [GL This issue was reported by Eric Sesterhenn of X41 D-Sec GmbH. Several memory leaks caused by not clearing the OpenSSL error stack were fixed. [GL #4159] This issue was reported by Eric Sesterhenn of X41 D-Sec GmbH. The introduction of krb5-subdomain-self-rhs and ms-subdomain-self-rhs UPDATE policies accidentally caused named to return SERVFAIL responses to deletion requests for non-existent PTR and SRV records. This has been fixed. [GL #4280] The stale-refresh-time feature was mistakenly disabled when the server cache was flushed by rndc flush. This has been fixed. [GL #4278] BIND’s memory consumption has been improved by implementing dedicated jemalloc memory arenas for sending buffers. This optimization ensures that memory usage is more efficient and better manages the return of memory pages to the operating system. [GL #4038] Previously, partial writes in the TLS DNS code were not accounted for correctly, which could have led to DNS message corruption. This has been fixed. [GL #4255] Known Issues There are no new known issues with this release. See above for a list of all known issues affecting this BIND 9 branch. Notes for BIND 9.18.18 Feature Changes When a primary server for a zone responds to an SOA query, but the subsequent TCP connection required to transfer the zone is refused, that server is marked as temporarily unreachable. This now also happens if the TCP connection attempt times out, preventing too many zones from queuing up on an unreachable server and allowing the refresh process to move on to the next configured primary more quickly. [GL #4215] The dialup and heartbeat-interval options have been deprecated and will be removed in a future BIND 9 release. [GL #3700] Bug Fixes Processing already-queued queries received over TCP could cause an assertion failure, when the server was reconfigured at the same time or the cache was being flushed. This has been fixed. [GL #4200] Setting dnssec-policy to insecure prevented zones containing resource records with a TTL value larger than 86400 seconds (1 day) from being loaded. This has been fixed by ignoring the TTL values in the zone and using a value of 604800 seconds (1 week) as the maximum zone TTL in key rollover timing calculations. [GL #4032] Known Issues There are no new known issues with this release. See above for a list of all known issues affecting this BIND 9 branch. Link to release notes: https://bind9.readthedocs.io/en/v9.18.19/notes.html#notes-for-bind-9-18-19 (From OE-Core rev: b88fe4581a48c1639764266380921d452a9b6132) Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* python3-git: upgrade 3.1.32 -> 3.1.37Narpat Mali2023-09-301-2/+2
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The delta between 3.1.32 & 3.1.37 contains the CVE-2023-40590 and CVE-2023-41040 fixes and other bugfixes. Changelog: ========== - WIP Quick doc by @LeoDaCoda in #1608 - Partial clean up wrt mypy and black by @bodograumann in #1617 - Disable merge_includes in config writers by @bodograumann in #1618 - feat: full typing for "progress" parameter in Repo class by @madebylydia in #1634 - Fix CVE-2023-40590 by @EliahKagan in #1636 - #1566 Creating a lock now uses python built-in "open()" method to work arou… by @HageMaster3108 in #1619 - util: close lockfile after opening successfully by @skshetry in #1639 - Bump actions/checkout from 3 to 4 by @dependabot in #1643 - Fix 'Tree' object has no attribute '_name' when submodule path is normal path by @CosmosAtlas in #1645 - Fix CVE-2023-41040 by @facutuesca in #1644 - Only make config more permissive in tests that need it by @EliahKagan in #1648 - Added test for PR #1645 submodule path by @CosmosAtlas in #1647 - Fix Windows environment variable upcasing bug by @EliahKagan in #1650 - Improve Python version and OS compatibility, fixing deprecations by @EliahKagan in #1654 - Better document env_case test/fixture and cwd by @EliahKagan in #1657 - Remove spurious executable permissions by @EliahKagan in #1658 - Fix up checks in Makefile and make them portable by @EliahKagan in #1661 - Fix URLs that were redirecting to another license by @EliahKagan in #1662 - Assorted small fixes/improvements to root dir docs by @EliahKagan in #1663 - Use venv instead of virtualenv in test_installation by @EliahKagan in #1664 - Omit py_modules in setup by @EliahKagan in #1665 - Don't track code coverage temporary files by @EliahKagan in #1666 - Configure tox by @EliahKagan in #1667 - Format tests with black and auto-exclude untracked paths by @EliahKagan in #1668 - Upgrade and broaden flake8, fixing style problems and bugs by @EliahKagan in #1673 - Fix rollback bug in SymbolicReference.set_reference by @EliahKagan in #1675 - Remove @NoEffect annotations by @EliahKagan in #1677 - Add more checks for the validity of refnames by @facutuesca in #1672 Note that the changes to the license file are just removal of excess whitespace (the extra blank line at the end, and spaces appearing at the end of lines). References: https://github.com/gitpython-developers/GitPython/releases https://github.com/gitpython-developers/GitPython/blob/main/doc/source/changes.rst https://github.com/gitpython-developers/GitPython/commit/e1af18377fd69f9c1007f8abf6ccb95b3c5a6558 (From OE-Core rev: 35cb21d6c8076428c0c60f03bb1b8f6945e2a07c) Signed-off-by: Narpat Mali <narpat.mali@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* openssl: Upgrade 3.0.10 -> 3.0.11Peter Marko2023-09-301-1/+1
| | | | | | | | | | | https://github.com/openssl/openssl/blob/openssl-3.0/NEWS.md#major-changes-between-openssl-3010-and-openssl-3011-19-sep-2023 Major changes between OpenSSL 3.0.10 and OpenSSL 3.0.11 [19 Sep 2023] * Fix POLY1305 MAC implementation corrupting XMM registers on Windows (CVE-2023-4807) (From OE-Core rev: 1263bb1784e8e052d903408faffcf39431fd9a10) Signed-off-by: Peter Marko <peter.marko@siemens.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* libwebp: Fix CVE-2023-5129Colin McAllister2023-09-302-0/+365
| | | | | | | | | Add patch from libwebp 1.2.4 to fix CVE-2023-5129 (From OE-Core rev: 544301c63801cf0c0cfcc0c8d71bdd8e2de82805) Signed-off-by: Colin McAllister <colinmca242@gmail.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* cups: Fix CVE-2023-4504Lee Chee Yang2023-09-302-0/+43
| | | | | | | (From OE-Core rev: dc5c06da7a793e85276ce8ce9de1c06decb6e133) Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* xserver-xorg: ignore CVE-2022-3553 as it is XQuartz-specificRoss Burton2023-09-301-0/+2
| | | | | | | | | | | (cherry-pick from commit 769576f36aac9652525beec5c7e8a4d26632b844 ) (From OE-Core rev: 96d36b97d9c6d1f5e79b1bea79f182561423fecb) Signed-off-by: Ross Burton <ross.burton@arm.com> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Lee Chee Yang <chee.yang.lee@intel.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* webkitgtk: fix CVE-2023-32439Yogita Urade2023-09-302-0/+128
| | | | | | | | | | | | | | A type confusion issue was addressed with improved checks. This issue is fixed in iOS 16.5.1 and iPadOS 16.5.1, Safari 16.5.1, macOS Ventura 13.4.1, iOS 15.7.7 and iPadOS 15.7.7. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited. (From OE-Core rev: cdbc3c1548299eb78aeebb94909224eca8410158) Signed-off-by: Yogita Urade <yogita.urade@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ruby: fix CVE-2023-36617Meenali Gupta2023-09-303-0/+101
| | | | | | | | | Backport two patches [1] [2] to fix CVE-2023-36617 (From OE-Core rev: 7a40082e4e080eaf5f88bd24f7169b7731028529) Signed-off-by: Meenali Gupta <meenali.gupta@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* linux-yocto: update CVE exclusionsRoss Burton2023-09-303-35/+7372
| | | | | | | | | | Update the CVE exclusions to match the kernel version, and add an exclusion file for 5.10. (From OE-Core rev: 33ae699eaa91900ae64e6ab46f6c2bca75eb3184) Signed-off-by: Ross Burton <ross.burton@arm.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* go: Fix CVE-2023-39318Siddharth Doshi2023-09-302-0/+239
| | | | | | | | | Upstream-Status: Backport from [https://github.com/golang/go/commit/023b542edf38e2a1f87fcefb9f75ff2f99401b4c] CVE: CVE-2023-39318 (From OE-Core rev: 35fa5c12f86bda2c8542bdb57074f55808697a42) Signed-off-by: Siddharth Doshi <sdoshi@mvista.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* gstreamer1.0-plugins-bad: fix CVE-2023-40476Archana Polampalli2023-09-302-0/+45
| | | | | | | | | gst-plugins-bad: h265parser: Fix possible overflow using max_sub_layers_minus1 (From OE-Core rev: 2abcf03fbe343596de38113c655028c157763245) Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* gstreamer1.0-plugins-bad: fix CVE-2023-40475Archana Polampalli2023-09-302-0/+50
| | | | | | | | | gst-plugins-bad: Integer overflow leading to heap overwrite in MXF file handling with AES3 audio (From OE-Core rev: e5b5f7118320eecd77a6501a90d9cc73c578babc) Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* gstreamer1.0-plugins-bad: fix CVE-2023-40474Archana Polampalli2023-09-302-0/+119
| | | | | | | | | | gst-plugins-bad: Heap-based buffer overflow in the MXF file demuxer when handling malformed files with uncompressed video in GStreamer versions before 1.22.6 (From OE-Core rev: d0c8e2f78c8003ad383cc63cff32147156412650) Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ghostscript: fix CVE-2023-43115Archana Polampalli2023-09-302-0/+63
| | | | | | | | | | | | | | | | | | | In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server). References: https://nvd.nist.gov/vuln/detail/CVE-2023-43115 Upstream patches: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=8b0f20002536867bd73ff4552408a72597190cbe (From OE-Core rev: 1d169e50f28c93434461aa3ecbc47c21509143e9) Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* shadow: Fix CVE-2023-4641Soumya Sambu2023-09-303-0/+185
| | | | | | | | | shadow-utils: possible password leak during passwd(1) change (From OE-Core rev: 734a3e1fb5ee8ded3097a94c7ee8696518346166) Signed-off-by: Soumya Sambu <soumya.sambu@windriver.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* build-appliance-image: Update to kirkstone head revisionyocto-4.0.13kirkstone-4.0.13Steve Sakoman2023-09-241-1/+1
| | | | | | (From OE-Core rev: d90e4d5e3cca9cffe8f60841afc63667a9ac39fa) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* Revert "oeqa/utils/gitarchive: fix tag computation when creating archive"Steve Sakoman2023-09-241-4/+2
| | | | | | | | | | This reverts commit d0f8d5915a9ad3340a553b4a22f91074d7e679c9. This is causing errors with buildperf on the autobuilder. (From OE-Core rev: 87eee047cf77bc3fc2c7d6b2a4f35d2642919111) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* build-appliance-image: Update to kirkstone head revisionSteve Sakoman2023-09-231-1/+1
| | | | | | (From OE-Core rev: 6c7fef37d4286f6bfc7b1dcb2d1e543a110a7f6f) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* poky.conf: bump version for 4.0.13Steve Sakoman2023-09-231-1/+1
| | | | | | (From meta-yocto rev: 8b50fe692a24a80b5c3cd1f816bcdd3e0b00418a) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dev-manual: licenses: update license manifest locationMichael Opdenacker2023-09-231-2/+3
| | | | | | | | | | | | - Fix broken markup (wasn't displaying properly) - Update the path to the directory containing license information (this change applies to the kirkstone branch) - Fix typo later in the document (From yocto-docs rev: 8f02741de867125f11a37822b2d206be180d4ee3) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* manuals: document "mime-xdg" class and MIME_XDG_PACKAGESMichael Opdenacker2023-09-234-2/+30
| | | | | | | (From yocto-docs rev: 4415d95358497b23f0a7b10f9ee31203ccc01eff) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ref-manual: qa-checks: align with masterMichael Opdenacker2023-09-231-23/+64
| | | | | | | (From yocto-docs rev: 56bbfab163a6b42aaa32d9350f30b2414a60fc75) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* template: fix typo in section headerRoland Hieber2023-09-231-1/+1
| | | | | | | | (From yocto-docs rev: 325c1cbdf157ae9e4f7fecc330e60056ff056d91) Signed-off-by: Roland Hieber <rhi@pengutronix.de> Reviewed-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dev-manual: licenses: mention SPDX for license complianceMichael Opdenacker2023-09-231-8/+22
| | | | | | | | (From yocto-docs rev: cdd98a93f36694404393279d29743d97edd9be22) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> CC: Joshua Watt <JPEWhacker@gmail.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* contributor-guide: recipe-style-guide: add Upstream-StatusMichael Opdenacker2023-09-231-0/+81
| | | | | | | (From yocto-docs rev: 0618611fa049db2b9717cbe609c583a5bb16954e) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dev-manual: new-recipe.rst fix inconsistency with contributor guideMichael Opdenacker2023-09-231-6/+7
| | | | | | | | | | | This document was suggesting a way to version pre-releases which doesn't match the latest recommendations from the contributor guide. (From yocto-docs rev: f37c9e7d44a2f7aefc3b505ae4461e6f1a8b0bb2) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* documentation/README: align with masterMichael Opdenacker2023-09-231-8/+35
| | | | | | | (From yocto-docs rev: 8638eadda09e932534eb6bb345b4d0299974b219) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dev-manual: disk-space: improve wording for obsolete sstate cache filesMichael Opdenacker2023-09-231-4/+4
| | | | | | | | | | | | | | | Replace "duplicate" by "obsolete", more appropriate. "duplicate" probably comes from the "--remove-duplicated" option of the sstate-cache-management.sh script. Improve other sentences too. (From yocto-docs rev: 20206debecac0848dc18765846b990ac994209ec) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Reported-by: Richard Purdie <richard.purdie@linuxfoundation.org> CC: Quentin Schulz <quentin.schulz@theobroma-systems.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* sdk-manual: extensible.rst: align with master branchMichael Opdenacker2023-09-231-187/+202
| | | | | | | | | | | In particular, this addresses multiple formatting issues. Aligning with the master branch as all updates apply to kirkstone too. (From yocto-docs rev: 5e2ec35e3d63f9c73726122fe2b3dd6d6f85a77e) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* manuals: update former references to dev-manual/common-tasksMichael Opdenacker2023-09-2336-188/+184
| | | | | | | (From yocto-docs rev: f8bb4c392912f15bb78f6f25910f85897abb4e3d) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dev-manual: split common-tasks.rstMichael Opdenacker2023-09-2338-11417/+11427
| | | | | | | | | | | | | | | | Reusing content from the master branch which underwent this change earlier. This change makes it much easier to backport manual updates to the kirkstone LTS branch. To make the change and future updates simpler, reused file contents from master, only excluding changes which don't apply to kirkstone. (From yocto-docs rev: 95171233f0e96c00d55ed40cf713c62e6df57b8d) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ref-manual: add new variablesMichael Opdenacker2023-09-231-0/+71
| | | | | | | | | | Backported from "master" and used in dev-manual documents to be synchronized with master. (From yocto-docs rev: 1938d6017a1c9acc2c5f57c4cc6a87b918609381) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ref-manual: add Initramfs termMichael Opdenacker2023-09-231-0/+42
| | | | | | | | | Backported from the master branch (From yocto-docs rev: f5ecf1f407585617d258b6afc706d43fdbb33547) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* ref-manual: add meson class and variablesMichael Opdenacker2023-09-232-0/+35
| | | | | | | | | Backported from the master branch (From yocto-docs rev: 266540ffdf84df14ebde374927e6e8ddd8ee688e) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Steve Sakoman <steve@sakoman.com>
* cargo.bbclass: set up cargo environment in common do_compileAlexander Kanavin2023-09-232-1/+4
| | | | | | | | | | | | | | | | | cargo_do_compile runs only if the recipe is built using cargo as the top level tool. Some recipes hide usage of cargo inside setuptools (or autoconf) and use do_compile definitions specific to those, and so the environment isn't properly set up. This was exposed by latest versions of python3-cryptography. (From OE-Core rev: a3f566fcbfc02e0a3b3f6a676d6dde88a5b50506) Signed-off-by: Alexander Kanavin <alex@linutronix.de> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 9f4ff643a028d7f5670d80861f2ce19ca2d90faa) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* dbus: Specify runstatedir configure optionPavel Zhukov2023-09-231-1/+2
| | | | | | | | | | | | | Without specifing runstatedir tmpfiles.d is configured to use /var/run for dbus and this causes deprecation warnings in system logs. (From OE-Core rev: 55529a5cb481b64ab4390728e01650bc585be602) Signed-off-by: Pavel Zhukov <pavel.zhukov@huawei.com> Signed-off-by: Luca Ceresoli <luca.ceresoli@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 4df1a16e5c38d0fb724f63d37cc032aa37fa122f) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* tcl: prevent installing another copy of tzdataMartin Jansa2023-09-231-0/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | It checks build host filesystem and if it doesn't find UTC or GMT files it installs another copy of tzdata files in: /usr/lib/tcl8.6/tzdata Buildhistory shows the difference: -PKGSIZE = 2227075 +PKGSIZE = 3433088 See the autodetection in configure.in: #------------------------------------------------------------------------ # Check whether the timezone data is supplied by the OS or has # to be installed by Tcl. The default is autodetection, but can # be overridden on the configure command line either way. #------------------------------------------------------------------------ AC_MSG_CHECKING([for timezone data]) AC_ARG_WITH(tzdata, AC_HELP_STRING([--with-tzdata], [install timezone data (default: autodetect)]), [tcl_ok=$withval], [tcl_ok=auto]) # # Any directories that get added here must also be added to the # search path in ::tcl::clock::Initialize (library/clock.tcl). # case $tcl_ok in no) AC_MSG_RESULT([supplied by OS vendor]) ;; yes) # nothing to do here ;; auto*) AC_CACHE_VAL([tcl_cv_dir_zoneinfo], [ for dir in /usr/share/zoneinfo \ /usr/share/lib/zoneinfo \ /usr/lib/zoneinfo do if test -f $dir/UTC -o -f $dir/GMT then tcl_cv_dir_zoneinfo="$dir" break fi done]) if test -n "$tcl_cv_dir_zoneinfo"; then tcl_ok=no AC_MSG_RESULT([$dir]) else tcl_ok=yes fi ;; *) AC_MSG_ERROR([invalid argument: $tcl_ok]) ;; esac if test $tcl_ok = yes then AC_MSG_RESULT([supplied by Tcl]) INSTALL_TZDATA=install-tzdata fi (From OE-Core rev: 79498ea0e9eb88ad0175f7376c57efb46217a4a4) Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 3ace9fbfeb42ebf920812e3dd6d665b8b20a1ca0) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* wic: fix wrong attempt to create file system in upartitioned regionsMarkus Niebel2023-09-231-1/+1
| | | | | | | | | | | | | | | | | | The kickstart parser defaults fstype to "vfat". This leads to an attempt to create an empty file system even for regions configured with "--no-table" if used without fstype when no --sourceparams given. The fix tests for fstype "none" or no_table in Partition prepare method. This will omit the file system creation an the potential error for small region with --no-table option. (From OE-Core rev: af9f392a5e259b681077f25fa263965714a73a05) Signed-off-by: Markus Niebel <Markus.Niebel@ew.tq-group.com> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit db771a4cd36bf291a8b68edfd905e03243f2c8b3) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* build-sysroots: Add SUMMARY fieldKhem Raj2023-09-231-1/+2
| | | | | | | | | | | | Fixes build QA warning about [missing-metadata] (From OE-Core rev: 29fe45fe8857f72705183a87b4e85a3723900a78) Signed-off-by: Khem Raj <raj.khem@gmail.com> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 4f4c7130f11c069ab18c374dcbfb1276ef37be60) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* resulttool/report: Avoid divide by zeroRichard Purdie2023-09-231-1/+4
| | | | | | | | | | Avoid a divide by zero traceback if unfortunate test counts are encountered. (From OE-Core rev: b95c6a5278d44fddfbaea45cc78324f1e099187c) Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit c5aeea53dfacb53dedb8445cb3523dc3a8cb6dca) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* oeqa/utils/gitarchive: fix tag computation when creating archiveAlexis Lothoré2023-09-231-2/+4
| | | | | | | | | | | | | | | | | | | | | | | | | | | | Sporadic errors have been observed in autobuilder when trying to store new tests results: error: failed to push some refs to 'push.yoctoproject.org:yocto-testresults' hint: Updates were rejected because the tag already exists in the remote. The new tag name is generated by gitarchive based on known tags from the repository (learnt with git tag). In autobuilder case, this repository is a shallow clone, so git tag only returns most recent tags, which mean we could miss some older tags which exist in remote but not locally. In this case, gitarchive will likely create a tag which already exists in remote, and so will fail to push Fix this tag duplication by using git ls-remote to learn about existing tags instead of git tag. Two places which wrongly read only local tags has been identified in gitarchive: expand_tag_strings and get_test_runs Fixes [YOCTO #15140] (From OE-Core rev: d0f8d5915a9ad3340a553b4a22f91074d7e679c9) Signed-off-by: Alexis Lothoré <alexis.lothore@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 5a0a7da85a3acfd4a20a07478eabefdab60f313a) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* scripts/create-pull-request: update URLs to git repositoriesMichael Opdenacker2023-09-231-5/+2
| | | | | | | | | | | | Also remove the git.pokylinux.org URL, no longer used. (From OE-Core rev: c88343380bd6a66f6e18637170c53b003594af7a) Signed-off-by: Michael Opdenacker <michael.opdenacker@bootlin.com> Signed-off-by: Alexandre Belloni <alexandre.belloni@bootlin.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit 47b88d143c2fc61ce0e03b7eb3a9dbcffadbf5b1) Signed-off-by: Steve Sakoman <steve@sakoman.com>
* externalsrc: fix dependency chain issuesPeter Suti2023-09-231-4/+3
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Instead of deleting setscene tasks, now SSTATE_SKIP_CREATION is set instead. This seems to fix the compile issues where the populate_sysroot task was not run when an externalsrc recipe was built as a dependency. [YOCTO #15164] [RP addition: The deltask was added by me in 2012 when the class was created. The trouble is bitbake assumes 'sstate' tasks have a setscene task and by deleting the setscene task, bitbake stops thinking the task can be accelerated. There is other code in the sysroot code which assumes some tasks are always sstate tasks. We cannot delete the task without changes to the way bitbake learns about 'setscene' tasks so the patch is correct, avoiding creating files is the better approach given the way the world works now. There would be concerns about exisitng sstate reuse however this shouldn't occur since SRC_URI changes and that will change the underlying hashes. Hash equivalency could potentially cause issues by joining hashes together again however if the output matches, that shouldn't in theory cause any issue.] (From OE-Core rev: f6bb8438a18dfa2a520ad6fa65662d908f4ef0ed) Signed-off-by: Peter Suti <peter.suti@streamunlimited.com> Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org> (cherry picked from commit ee4667a24ccdd8c9d547e73aecf661e6a1283890) Signed-off-by: Steve Sakoman <steve@sakoman.com>