release-notes-5.0.6.rst 9.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223
  1. Release notes for Yocto-5.0.6 (Scarthgap)
  2. -----------------------------------------
  3. Security Fixes in Yocto-5.0.6
  4. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  5. - acpica: Fix :cve_nist:`2024-24856`
  6. - curl: Fix :cve_nist:`2024-9681`
  7. - dropbear: Fix :cve_nist:`2023-48795`
  8. - expat: Fix :cve_nist:`2024-50602`
  9. - ffmpeg: Fix :cve_nist:`2023-49501`, :cve_nist:`2023-49528`, :cve_nist:`2023-50007`,
  10. :cve_nist:`2024-7055` and :cve_mitre:`2024-28661`
  11. - glib-2.0: Fix :cve_nist:`2024-52533`
  12. - ghostscript: Fix :cve_nist:`2024-46951`, :cve_nist:`2024-46952`, :cve_nist:`2024-46953`,
  13. :cve_nist:`2024-46954`, :cve_nist:`2024-46955` and :cve_nist:`2024-46956`
  14. - gstreamer1.0: Ignore :cve_nist:`2024-0444`
  15. - libpam: Fix :cve_nist:`2024-10041`
  16. - libsndfile: Fix :cve_nist:`2024-50612`
  17. - libsoup: Fix :cve_nist:`2024-52530`, :cve_nist:`2024-52531` and :cve_nist:`2024-52532`
  18. - ovmf: Fix :cve_nist:`2024-1298` and :cve_nist:`2024-38796`
  19. - python3-zipp: Fix :cve_nist:`2024-5569`
  20. - qemu: Fix :cve_nist:`2024-4693`, :cve_nist:`2024-6505` and :cve_nist:`2024-7730`
  21. - qemu: Ignore :cve_nist:`2024-6505`
  22. Fixes in Yocto-5.0.6
  23. ~~~~~~~~~~~~~~~~~~~~
  24. - binutils: Add missing perl modules to :term:`RDEPENDS` for nativesdk variant
  25. - binutils: stable 2.42 branch update
  26. - bitbake: Remove custom exception backtrace formatting
  27. - bitbake: fetch2/git: Use quote from shlex, not pipes
  28. - bitbake: fetch2: use persist_data context managers
  29. - bitbake: fetch/wget: Increase timeout to 100s from 30s
  30. - bitbake: persist_data: close connection in SQLTable __exit__
  31. - bitbake: runqueue: Fix performance of multiconfigs with large overlap
  32. - bitbake: runqueue: Fix scenetask processing performance issue
  33. - bitbake: runqueue: Optimise setscene loop processing
  34. - build-appliance-image: Update to scarthgap head revision
  35. - builder: set :term:`CVE_PRODUCT`
  36. - cmake: Fix sporadic issues when determining compiler internals
  37. - cml1: do_diffconfig: Don't override .config with .config.orig
  38. - contributor-guide: Remove duplicated words
  39. - dev-manual: bblock: use warning block instead of attention
  40. - dev-manual: document how to provide confs from layer.conf
  41. - dnf: drop python3-iniparse from :term:`DEPENDS` and :term:`RDEPENDS`
  42. - do_package/sstate/sstatesig: Change timestamp clamping to hash output only
  43. - doc: Makefile: add support for xelatex
  44. - doc: Makefile: publish pdf and epub versions too
  45. - doc: Makefile: remove inkscape, replace by rsvg-convert
  46. - doc: add a download page for epub and pdf
  47. - doc: conf.py: add a bitbake_git extlink
  48. - doc: standards.md: add a section on admonitions
  49. - doc: sphinx-static: switchers.js.in: do not refer to URL_ROOT anymore
  50. - dropbear: backport fix for concurrent channel open/close
  51. - enchant2: fix do_fetch error
  52. - expat: upgrade to 2.6.4
  53. - gcc: backport patch to fix an issue with tzdata 2024b
  54. - ghostscript: upgrade to 10.04.0
  55. - glibc: stable 2.39 branch updates
  56. - groff: fix rare build race in hdtbl
  57. - libgcrypt: Fix building error with '-O2' in sysroot path
  58. - libpam: drop cracklib from :term:`DEPENDS`
  59. - libxml-parser-perl: fix do_fetch error
  60. - llvm: reduce size of -dbg package
  61. - lttng-ust: backport patch to fix cmake-multiple-shared-libraries build error
  62. - migration-guides: add release notes for 4.0.23 and 5.0.5
  63. - ninja: fix build with python 3.13
  64. - oeqa/runtime/ssh: Fix incorrect timeout fix
  65. - oeqa/runtime/ssh: Rework ssh timeout
  66. - oeqa/utils/gitarchive: Return tag name and improve exclude handling
  67. - package_rpm: Check if file exists before open()
  68. - package_rpm: restrict rpm to 4 threads
  69. - package_rpm: use zstd's default compression level
  70. - poky.conf: bump version for 5.0.6
  71. - pseudo: Fix envp bug and add posix_spawn wrapper
  72. - python3-poetry-core: drop python3-six from :term:`RDEPENDS`
  73. - python3-requests: upgrade to 2.32.2
  74. - python3-urllib3: upgrade to 2.2.2
  75. - qemu: upgrade to 8.2.7
  76. - qemurunner: Clean up serial_lock handling
  77. - ref-manual: classes: fix bin_package description
  78. - resulttool: Add --logfile-archive option to store mode
  79. - resulttool: Allow store to filter to specific revisions
  80. - resulttool: Clean up repoducible build logs
  81. - resulttool: Fix passthrough of --all files in store mode
  82. - resulttool: Handle ltp rawlogs as well as ptest
  83. - resulttool: Improve repo layout for oeselftest results
  84. - resulttool: Trim the precision of duration information
  85. - resulttool: Use single space indentation in json output
  86. - rootfs: Ensure run-postinsts is not uninstalled for read-only-rootfs-delayed-postinsts
  87. - rxvt-unicode.inc: disable the terminfo installation by setting TIC to :
  88. - sanity: check for working user namespaces
  89. - scripts/install-buildtools: Update to 5.0.5
  90. - selftest/reproducible: Clean up pathnames
  91. - selftest/reproducible: Drop rawlogs
  92. - shared-mime-info: drop itstool-native from :term:`DEPENDS`
  93. - strace: download release tarballs from GitHub
  94. - systemd-boot: drop intltool-native from :term:`DEPENDS`
  95. - systemd: drop intltool-native from :term:`DEPENDS`
  96. - systemd: upgrade to 255.13
  97. - sysvinit: backport patch for fixing one issue of pidof
  98. - tcl: skip io-13.6 test case
  99. - toolchain-shar-extract.sh: exit when post-relocate-setup.sh fails
  100. - tune-cortexa32: set tune feature as armv8a
  101. - tzcode-native: upgrade to 2024b
  102. - tzdata: upgrade to 2024b
  103. - uboot-sign: fix concat_dtb arguments
  104. - udev-extraconf: fix network.sh script did not configure hotplugged interfaces
  105. - webkitgtk: fix erroneous use of unsuported DEBUG_LEVELFLAG variable
  106. - wireless-regdb: upgrade to 2024.10.07
  107. Known Issues in Yocto-5.0.6
  108. ~~~~~~~~~~~~~~~~~~~~~~~~~~~
  109. - N/A
  110. Contributors to Yocto-5.0.6
  111. ~~~~~~~~~~~~~~~~~~~~~~~~~~~
  112. Thanks to the following people who contributed to this release:
  113. - Aleksandar Nikolic
  114. - Alexander Kanavin
  115. - Antonin Godard
  116. - Archana Polampalli
  117. - Bin Lan
  118. - Changqing Li
  119. - Chen Qi
  120. - Chris Laplante
  121. - Clayton Casciato
  122. - Deepthi Hemraj
  123. - Divya Chellam
  124. - Florian Kreutzer
  125. - Gassner, Tobias.ext
  126. - Guðni Már Gilbert
  127. - Harish Sadineni
  128. - Hitendra Prajapati
  129. - Hongxu Jia
  130. - Jagadeesh Krishnanjanappa
  131. - Jiaying Song
  132. - Jinfeng Wang
  133. - Joshua Watt
  134. - Lee Chee Yang
  135. - Markus Volk
  136. - Michael Opdenacker
  137. - Pavel Zhukov
  138. - Peter Marko
  139. - Philip Lorenz
  140. - Randy MacLeod
  141. - Regis Dargent
  142. - Richard Purdie
  143. - Robert Yang
  144. - Ross Burton
  145. - Soumya Sambu
  146. - Steve Sakoman
  147. - Talel BELHAJSALEM
  148. - Trevor Gamblin
  149. - Vijay Anusuri
  150. - Wang Mingyu
  151. - Yogita Urade
  152. Repositories / Downloads for Yocto-5.0.6
  153. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  154. poky
  155. - Repository Location: :yocto_git:`/poky`
  156. - Branch: :yocto_git:`scarthgap </poky/log/?h=scarthgap>`
  157. - Tag: :yocto_git:`yocto-5.0.6 </poky/log/?h=yocto-5.0.6>`
  158. - Git Revision: :yocto_git:`2541a8171f91812a4b16e7dc4da0d77d2318a256 </poky/commit/?id=2541a8171f91812a4b16e7dc4da0d77d2318a256>`
  159. - Release Artefact: poky-2541a8171f91812a4b16e7dc4da0d77d2318a256
  160. - sha: b77157596ae75d163387a08a317397a57ab8fa6cf4725f28e344fae3f69cca4d
  161. - Download Locations:
  162. https://downloads.yoctoproject.org/releases/yocto/yocto-5.0.6/poky-2541a8171f91812a4b16e7dc4da0d77d2318a256.tar.bz2
  163. https://mirrors.kernel.org/yocto/yocto/yocto-5.0.6/poky-2541a8171f91812a4b16e7dc4da0d77d2318a256.tar.bz2
  164. openembedded-core
  165. - Repository Location: :oe_git:`/openembedded-core`
  166. - Branch: :oe_git:`scarthgap </openembedded-core/log/?h=scarthgap>`
  167. - Tag: :oe_git:`yocto-5.0.6 </openembedded-core/log/?h=yocto-5.0.6>`
  168. - Git Revision: :oe_git:`336eec6808710f260a5336ca8ca98139a80ccb14 </openembedded-core/commit/?id=336eec6808710f260a5336ca8ca98139a80ccb14>`
  169. - Release Artefact: oecore-336eec6808710f260a5336ca8ca98139a80ccb14
  170. - sha: 38c4fa7e7e88c28361c012dd5baabe373e2ec3c8aba6194146768b146192cceb
  171. - Download Locations:
  172. https://downloads.yoctoproject.org/releases/yocto/yocto-5.0.6/oecore-336eec6808710f260a5336ca8ca98139a80ccb14.tar.bz2
  173. https://mirrors.kernel.org/yocto/yocto/yocto-5.0.6/oecore-336eec6808710f260a5336ca8ca98139a80ccb14.tar.bz2
  174. meta-mingw
  175. - Repository Location: :yocto_git:`/meta-mingw`
  176. - Branch: :yocto_git:`scarthgap </meta-mingw/log/?h=scarthgap>`
  177. - Tag: :yocto_git:`yocto-5.0.6 </meta-mingw/log/?h=yocto-5.0.6>`
  178. - Git Revision: :yocto_git:`acbba477893ef87388effc4679b7f40ee49fc852 </meta-mingw/commit/?id=acbba477893ef87388effc4679b7f40ee49fc852>`
  179. - Release Artefact: meta-mingw-acbba477893ef87388effc4679b7f40ee49fc852
  180. - sha: 3b7c2f475dad5130bace652b150367f587d44b391218b1364a8bbc430b48c54c
  181. - Download Locations:
  182. https://downloads.yoctoproject.org/releases/yocto/yocto-5.0.6/meta-mingw-acbba477893ef87388effc4679b7f40ee49fc852.tar.bz2
  183. https://mirrors.kernel.org/yocto/yocto/yocto-5.0.6/meta-mingw-acbba477893ef87388effc4679b7f40ee49fc852.tar.bz2
  184. bitbake
  185. - Repository Location: :oe_git:`/bitbake`
  186. - Branch: :oe_git:`2.8 </bitbake/log/?h=2.8>`
  187. - Tag: :oe_git:`yocto-5.0.6 </bitbake/log/?h=yocto-5.0.6>`
  188. - Git Revision: :oe_git:`f40a3a477d5241b697bf2fb030dd804c1ff5839f </bitbake/commit/?id=f40a3a477d5241b697bf2fb030dd804c1ff5839f>`
  189. - Release Artefact: bitbake-f40a3a477d5241b697bf2fb030dd804c1ff5839f
  190. - sha: dbfc056c7408a5547f624799621ab1261a05685112e0922a88007723b1edbc87
  191. - Download Locations:
  192. https://downloads.yoctoproject.org/releases/yocto/yocto-5.0.6/bitbake-f40a3a477d5241b697bf2fb030dd804c1ff5839f.tar.bz2
  193. https://mirrors.kernel.org/yocto/yocto/yocto-5.0.6/bitbake-f40a3a477d5241b697bf2fb030dd804c1ff5839f.tar.bz2
  194. yocto-docs
  195. - Repository Location: :yocto_git:`/yocto-docs`
  196. - Branch: :yocto_git:`scarthgap </yocto-docs/log/?h=scarthgap>`
  197. - Tag: :yocto_git:`yocto-5.0.6 </yocto-docs/log/?h=yocto-5.0.6>`
  198. - Git Revision: :yocto_git:`TBD </yocto-docs/commit/?id=TBD>`