release-notes-4.0.16.rst 8.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191
  1. .. SPDX-License-Identifier: CC-BY-SA-2.0-UK
  2. Release notes for Yocto-4.0.16 (Kirkstone)
  3. ------------------------------------------
  4. Security Fixes in Yocto-4.0.16
  5. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  6. - cpio: Fix :cve_mitre:`2023-7207`
  7. - curl: Revert "curl: Backport fix CVE-2023-32001"
  8. - curl: Fix :cve_nist:`2023-46218`
  9. - dropbear:Fix :cve_nist:`2023-48795`
  10. - ffmpeg: Fix :cve_nist:`2022-3964` and :cve_nist:`2022-3965`
  11. - ghostscript: Fix :cve_nist:`2023-46751`
  12. - gnutls: Fix :cve_nist:`2024-0553` and :cve_nist:`2024-0567`
  13. - go: Fix :cve_nist:`2023-39326`
  14. - openssh: Fix :cve_nist:`2023-48795`, :cve_nist:`2023-51384` and :cve_nist:`2023-51385`
  15. - openssl: Fix :cve_nist:`2023-6129` and :cve_mitre:`2023-6237`
  16. - pam: Fix :cve_mitre:`2024-22365`
  17. - perl: Fix :cve_nist:`2023-47038`
  18. - qemu: Fix :cve_nist:`2023-5088`
  19. - sqlite3: Fix :cve_nist:`2023-7104`
  20. - systemd: Fix :cve_nist:`2023-7008`
  21. - tiff: Fix :cve_nist:`2023-6228`
  22. - xserver-xorg: Fix :cve_nist:`2023-6377`, :cve_nist:`2023-6478`, :cve_nist:`2023-6816`, :cve_mitre:`2024-0229`, :cve_nist:`2024-0408`, :cve_nist:`2024-0409`, :cve_mitre:`2024-21885` and :cve_mitre:`2024-21886`
  23. - zlib: Ignore :cve_nist:`2023-6992`
  24. Fixes in Yocto-4.0.16
  25. ~~~~~~~~~~~~~~~~~~~~~
  26. - bitbake: asyncrpc: Add context manager API
  27. - bitbake: data: Add missing dependency handling of remove operator
  28. - bitbake: lib/bb: Add workaround for libgcc issues with python 3.8 and 3.9
  29. - bitbake: toastergui: verify that an existing layer path is given
  30. - build-appliance-image: Update to kirkstone head revision
  31. - contributor-guide: add License-Update tag
  32. - contributor-guide: fix command option
  33. - contributor-guide: use "apt" instead of "aptitude"
  34. - cpio: upgrade to 2.14
  35. - cve-update-nvd2-native: faster requests with API keys
  36. - cve-update-nvd2-native: increase the delay between subsequent request failures
  37. - cve-update-nvd2-native: make number of fetch attemtps configurable
  38. - cve-update-nvd2-native: remove unused variable CVE_SOCKET_TIMEOUT
  39. - dev-manual: Discourage the use of SRC_URI[md5sum]
  40. - dev-manual: layers: update link to YP Compatible form
  41. - dev-manual: runtime-testing: fix test module name
  42. - dev-manual: start.rst: update use of Download page
  43. - docs:what-i-wish-id-known.rst: fix URL
  44. - docs: document VSCode extension
  45. - docs:brief-yoctoprojectqs:index.rst: align variable order with default local.conf
  46. - docs:migration-guides: add release notes for 4.0.15
  47. - docs:migration-guides: release 3.5 is actually 4.0
  48. - elfutils: Disable stringop-overflow warning for build host
  49. - externalsrc: Ensure :term:`SRCREV` is processed before accessing :term:`SRC_URI`
  50. - linux-firmware: upgrade to 20231030
  51. - manuals: Add :term:`CONVERSION_CMD` definition
  52. - manuals: Add :term:`UBOOT_BINARY`, extend :term:`UBOOT_CONFIG`
  53. - perl: upgrade to 5.34.3
  54. - poky.conf: bump version for 4.0.16
  55. - pybootchartgui: fix 2 SyntaxWarnings
  56. - python3-ptest: skip test_storlines
  57. - ref-manual: Fix reference to MIRRORS/PREMIRRORS defaults
  58. - ref-manual: classes: remove insserv bbclass
  59. - ref-manual: releases.svg: update nanbield release status
  60. - ref-manual: resources: sync with master branch
  61. - ref-manual: update tested and supported distros
  62. - test-manual: add links to python unittest
  63. - test-manual: add or improve hyperlinks
  64. - test-manual: explicit or fix file paths
  65. - test-manual: resource updates
  66. - test-manual: text and formatting fixes
  67. - test-manual: use working example
  68. - testimage: Exclude wtmp from target-dumper commands
  69. - testimage: drop target_dumper, host_dumper, and monitor_dumper
  70. - tzdata: Upgrade to 2023d
  71. Known Issues in Yocto-4.0.16
  72. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  73. - N/A
  74. Contributors to Yocto-4.0.16
  75. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  76. - Aatir Manzur
  77. - Archana Polampalli
  78. - Dhairya Nagodra
  79. - Dmitry Baryshkov
  80. - Enguerrand de Ribaucourt
  81. - Hitendra Prajapati
  82. - Insu Park
  83. - Joshua Watt
  84. - Justin Bronder
  85. - Jörg Sommer
  86. - Khem Raj
  87. - Lee Chee Yang
  88. - mark.yang
  89. - Marta Rybczynska
  90. - Martin Jansa
  91. - Maxin B. John
  92. - Michael Opdenacker
  93. - Paul Barker
  94. - Peter Kjellerstedt
  95. - Peter Marko
  96. - Poonam Jadhav
  97. - Richard Purdie
  98. - Shubham Kulkarni
  99. - Simone Weiß
  100. - Soumya Sambu
  101. - Sourav Pramanik
  102. - Steve Sakoman
  103. - Trevor Gamblin
  104. - Vijay Anusuri
  105. - Vivek Kumbhar
  106. - Yoann Congal
  107. - Yogita Urade
  108. Repositories / Downloads for Yocto-4.0.16
  109. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  110. poky
  111. - Repository Location: :yocto_git:`/poky`
  112. - Branch: :yocto_git:`kirkstone </poky/log/?h=kirkstone>`
  113. - Tag: :yocto_git:`yocto-4.0.16 </poky/log/?h=yocto-4.0.16>`
  114. - Git Revision: :yocto_git:`54af8c5e80ebf63707ef4e51cc9d374f716da603 </poky/commit/?id=54af8c5e80ebf63707ef4e51cc9d374f716da603>`
  115. - Release Artefact: poky-54af8c5e80ebf63707ef4e51cc9d374f716da603
  116. - sha: a53ec3a661cf56ca40c0fbf1500288c2c20abe94896d66a572bc5ccf5d92e9d6
  117. - Download Locations:
  118. http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.16/poky-54af8c5e80ebf63707ef4e51cc9d374f716da603.tar.bz2
  119. http://mirrors.kernel.org/yocto/yocto/yocto-4.0.16/poky-54af8c5e80ebf63707ef4e51cc9d374f716da603.tar.bz2
  120. openembedded-core
  121. - Repository Location: :oe_git:`/openembedded-core`
  122. - Branch: :oe_git:`kirkstone </openembedded-core/log/?h=kirkstone>`
  123. - Tag: :oe_git:`yocto-4.0.16 </openembedded-core/log/?h=yocto-4.0.16>`
  124. - Git Revision: :oe_git:`a744a897f0ea7d34c31c024c13031221f9a85f24 </openembedded-core/commit/?id=a744a897f0ea7d34c31c024c13031221f9a85f24>`
  125. - Release Artefact: oecore-a744a897f0ea7d34c31c024c13031221f9a85f24
  126. - sha: 8c2bc9487597b0caa9f5a1d72b18cfcd1ddc7e6d91f0f051313563d6af95aeec
  127. - Download Locations:
  128. http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.16/oecore-a744a897f0ea7d34c31c024c13031221f9a85f24.tar.bz2
  129. http://mirrors.kernel.org/yocto/yocto/yocto-4.0.16/oecore-a744a897f0ea7d34c31c024c13031221f9a85f24.tar.bz2
  130. meta-mingw
  131. - Repository Location: :yocto_git:`/meta-mingw`
  132. - Branch: :yocto_git:`kirkstone </meta-mingw/log/?h=kirkstone>`
  133. - Tag: :yocto_git:`yocto-4.0.16 </meta-mingw/log/?h=yocto-4.0.16>`
  134. - Git Revision: :yocto_git:`f6b38ce3c90e1600d41c2ebb41e152936a0357d7 </meta-mingw/commit/?id=f6b38ce3c90e1600d41c2ebb41e152936a0357d7>`
  135. - Release Artefact: meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7
  136. - sha: 7d57167c19077f4ab95623d55a24c2267a3a3fb5ed83688659b4c03586373b25
  137. - Download Locations:
  138. http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.16/meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7.tar.bz2
  139. http://mirrors.kernel.org/yocto/yocto/yocto-4.0.16/meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7.tar.bz2
  140. meta-gplv2
  141. - Repository Location: :yocto_git:`/meta-gplv2`
  142. - Branch: :yocto_git:`kirkstone </meta-gplv2/log/?h=kirkstone>`
  143. - Tag: :yocto_git:`yocto-4.0.16 </meta-gplv2/log/?h=yocto-4.0.16>`
  144. - Git Revision: :yocto_git:`d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a </meta-gplv2/commit/?id=d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a>`
  145. - Release Artefact: meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a
  146. - sha: c386f59f8a672747dc3d0be1d4234b6039273d0e57933eb87caa20f56b9cca6d
  147. - Download Locations:
  148. http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.16/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2
  149. http://mirrors.kernel.org/yocto/yocto/yocto-4.0.16/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2
  150. bitbake
  151. - Repository Location: :oe_git:`/bitbake`
  152. - Branch: :oe_git:`2.0 </bitbake/log/?h=2.0>`
  153. - Tag: :oe_git:`yocto-4.0.16 </bitbake/log/?h=yocto-4.0.16>`
  154. - Git Revision: :oe_git:`ee090484cc25d760b8c20f18add17b5eff485b40 </bitbake/commit/?id=ee090484cc25d760b8c20f18add17b5eff485b40>`
  155. - Release Artefact: bitbake-ee090484cc25d760b8c20f18add17b5eff485b40
  156. - sha: 479e3a57ae9fbc2aa95292a7554caeef113bbfb28c226ed19547b8dde1c95314
  157. - Download Locations:
  158. http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.16/bitbake-ee090484cc25d760b8c20f18add17b5eff485b40.tar.bz2
  159. http://mirrors.kernel.org/yocto/yocto/yocto-4.0.16/bitbake-ee090484cc25d760b8c20f18add17b5eff485b40.tar.bz2
  160. yocto-docs
  161. - Repository Location: :yocto_git:`/yocto-docs`
  162. - Branch: :yocto_git:`kirkstone </yocto-docs/log/?h=kirkstone>`
  163. - Tag: :yocto_git:`yocto-4.0.16 </yocto-docs/log/?h=yocto-4.0.16>`
  164. - Git Revision: :yocto_git:`aba67b58711019a6ba439b2b77337f813ed799ac </yocto-docs/commit/?id=aba67b58711019a6ba439b2b77337f813ed799ac>`