release-notes-5.2.2.rst 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249
  1. Release notes for Yocto-5.2.2 (Walnascar)
  2. -----------------------------------------
  3. Security Fixes in Yocto-5.2.2
  4. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  5. - bind: Fix :cve_nist:`2025-40775`
  6. - binutils: Fix :cve_nist:`2025-1153`, :cve_nist:`2025-1178`, :cve_nist:`2025-1180`,
  7. :cve_nist:`2025-1181`, :cve_nist:`2025-1182`, :cve_nist:`2025-3198` and :cve_nist:`2025-5244`
  8. - binutils: Ignore :cve_nist:`2025-1153` (fixed in current version)
  9. - epiphany: Fix CVE-2025-3839
  10. - go: Fix :cve_nist:`2025-0913`, :cve_nist:`2025-4673` and :cve_nist:`2025-22874`
  11. - go: Ignore :cve_nist:`2024-3566`
  12. - kea: Fix :cve_nist:`2025-32801`, :cve_nist:`2025-32802` and :cve_nist:`2025-32803`
  13. - libarchive: Fix :cve_nist:`2025-5914`
  14. - libsoup-2.4: Fix :cve_nist:`2024-52530`, :cve_nist:`2024-52531`, :cve_nist:`2025-2784`,
  15. :cve_nist:`2025-4476`, :cve_nist:`2025-4948`, :cve_nist:`2025-4969`, :cve_nist:`2025-32050`,
  16. :cve_nist:`2025-32052`, :cve_nist:`2025-32053`, :cve_nist:`2025-32906`, :cve_nist:`2025-32907`,
  17. :cve_nist:`2025-32909`, :cve_nist:`2025-32910`, :cve_nist:`2025-32912`, :cve_nist:`2025-32913`,
  18. :cve_nist:`2025-32914`, :cve_nist:`2025-46420` and :cve_nist:`2025-46421`
  19. - libsoup: Fix :cve_nist:`2025-4476`, :cve_nist:`2025-4948`, :cve_nist:`2025-4969`,
  20. :cve_nist:`2025-32907`, :cve_nist:`2025-32908` and :cve_nist:`2025-32914`
  21. - linux-yocto: Fix :cve_nist:`2023-3079`, :cve_nist:`2023-52904`, :cve_nist:`2023-52979`,
  22. :cve_nist:`2025-22102`, :cve_nist:`2025-37800`, :cve_nist:`2025-37801`, :cve_nist:`2025-37802`,
  23. :cve_nist:`2025-37805`, :cve_nist:`2025-37821`, :cve_nist:`2025-37838`, :cve_nist:`2025-37890`,
  24. :cve_nist:`2025-37891`, :cve_nist:`2025-37894`, :cve_nist:`2025-37895`, :cve_nist:`2025-37897`,
  25. :cve_nist:`2025-37899`, :cve_nist:`2025-37900`, :cve_nist:`2025-37901`, :cve_nist:`2025-37903`,
  26. :cve_nist:`2025-37905`, :cve_nist:`2025-37907`, :cve_nist:`2025-37908`, :cve_nist:`2025-37909`,
  27. :cve_nist:`2025-37910`, :cve_nist:`2025-37911`, :cve_nist:`2025-37912`, :cve_nist:`2025-37913`,
  28. :cve_nist:`2025-37914`, :cve_nist:`2025-37915`, :cve_nist:`2025-37916`, :cve_nist:`2025-37917`,
  29. :cve_nist:`2025-37918`, :cve_nist:`2025-37919`, :cve_nist:`2025-37920`, :cve_nist:`2025-37921`,
  30. :cve_nist:`2025-37922`, :cve_nist:`2025-37923`, :cve_nist:`2025-37924`, :cve_nist:`2025-37926`,
  31. :cve_nist:`2025-37927`, :cve_nist:`2025-37928`, :cve_nist:`2025-37929`, :cve_nist:`2025-37930`,
  32. :cve_nist:`2025-37931`, :cve_nist:`2025-37932`, :cve_nist:`2025-37933`, :cve_nist:`2025-37934`,
  33. :cve_nist:`2025-37935`, :cve_nist:`2025-37936`, :cve_nist:`2025-37946`, :cve_nist:`2025-37947`,
  34. :cve_nist:`2025-37948`, :cve_nist:`2025-37949`, :cve_nist:`2025-37951`, :cve_nist:`2025-37952`,
  35. :cve_nist:`2025-37953`, :cve_nist:`2025-37954`, :cve_nist:`2025-37955`, :cve_nist:`2025-37956`,
  36. :cve_nist:`2025-37957`, :cve_nist:`2025-37958`, :cve_nist:`2025-37959`, :cve_nist:`2025-37960`,
  37. :cve_nist:`2025-37961`, :cve_nist:`2025-37962`, :cve_nist:`2025-37963`, :cve_nist:`2025-37964`,
  38. :cve_nist:`2025-37965`, :cve_nist:`2025-37967`, :cve_nist:`2025-37968`, :cve_nist:`2025-37969`,
  39. :cve_nist:`2025-37970`, :cve_nist:`2025-37971`, :cve_nist:`2025-37972`, :cve_nist:`2025-37973`,
  40. :cve_nist:`2025-37974`, :cve_nist:`2025-37990`, :cve_nist:`2025-37991`, :cve_nist:`2025-37992`,
  41. :cve_nist:`2025-37993`, :cve_nist:`2025-37994`, :cve_nist:`2025-37995`, :cve_nist:`2025-37997`,
  42. :cve_nist:`2025-37998` and :cve_nist:`2025-37999`
  43. - linux-yocto: Ignore :cve_nist:`2023-3079` and :cve_nist:`2025-37996`
  44. - net-tools: Fix :cve_nist:`2025-46836`
  45. - ofono: Fix :cve_nist:`2024-7537`
  46. - python3-setuptools: Fix :cve_nist:`2025-47273`
  47. - python3-urllib3: Fix :cve_nist:`2025-50181` and :cve_nist:`2025-50182`
  48. - sqlite3: Fix :cve_nist:`2025-3277` and :cve_nist:`2025-29088`
  49. - sqlite3: mark :cve_nist:`2025-29087` as patched
  50. - systemd: Fix :cve_nist:`2025-4598`
  51. - xz: Fix :cve_nist:`2025-31115`
  52. Fixes in Yocto-5.2.2
  53. ~~~~~~~~~~~~~~~~~~~~
  54. - bind: upgrade to 9.20.9
  55. - bitbake: toaster/tests/buildtest: Switch to new CDN
  56. - brief-yoctoprojectqs/index.rst: replace removed macro
  57. - brief-yoctoprojectqs/ref-manual: Switch to new CDN
  58. - bsp guide: update kernel version example to 6.12
  59. - bsp-guide: update all of section 1.8.2 to reflect current beaglebone conf file
  60. - bsp-guide: update lonely "4.12" kernel reference to "6.12"
  61. - build-appliance-image: Update to walnascar head revision
  62. - cmake: Correctly handle cost data of tests with arbitrary chars in name
  63. - conf.py: tweak SearchEnglish to be hyphen-friendly
  64. - cve-exclusion_6.12.inc: Update using current cvelistV5
  65. - cve-exclusions: correct cve status for 5 entries
  66. - docs: Clean up explanation of minimum required version numbers
  67. - docs: README: specify how to contribute instead of pointing at another file
  68. - docs: conf.py: silence SyntaxWarning on js_splitter_code
  69. - docs: sphinx-lint: superfluous backtick in front of role
  70. - docs: sphinx-lint: unbalanced inline literal markup
  71. - epiphany: upgrade to 48.3
  72. - gcc: Upgrade to GCC 14.3
  73. - gcc: fix incorrect preprocessor line numbers in large files
  74. - genericarm64.conf: increase :term:`INITRAMFS_MAXSIZE`
  75. - ghostscript: upgrade to 10.05.1
  76. - glibc: stable 2.41 branch updates
  77. - go: upgrade to 1.24.4
  78. - kea: upgrade to 2.6.3
  79. - libarchive: upgrade to 3.7.9
  80. - libmatchbox: upgrade to 1.14
  81. - libsoup: upgrade to 3.6.5
  82. - linux-yocto/6.12: bsp/genericarm64: modular configuration updates
  83. - linux-yocto/6.12: libbpf: silence maybe-uninitialized warning from clang
  84. - linux-yocto/6.12: update to v6.12.31
  85. - linux-yoto/6.12: bsp/arm: fix CONFIG_CRYPTO_LIB_CHACHA
  86. - linux/cve-exclusion: Execute the script after changing to the new data source
  87. - linux/cve-exclusion: correct fixed-version calculation
  88. - linux/cve-exclusion: do not shift first_affected
  89. - linux/cve-exclusion: update exclusions after script fixes
  90. - linux/cve-exclusion: update with latest cvelistV5
  91. - linux/generate-cve-exclusions: show the name and version of the data source
  92. - linux/generate-cve-exclusions: use data from CVEProject
  93. - linux: cve-exclusions: Amend terminology
  94. - linux: cve-exclusions: Fix false negatives
  95. - local.conf.sample: Switch to new CDN
  96. - migration-guides: add release notes for 4.0.27, 5.0.10, 5.2.1
  97. - nfs-utils: don't use signals to shut down nfs server.
  98. - oeqa/sstatetests: Fix :term:`NATIVELSBSTRING` handling
  99. - oeqa/sstatetests: Improve/fix sstate creation tests
  100. - overview-manual: small number of pedantic cleanups
  101. - package_rpm.bbclass: Remove empty build directory
  102. - poky.conf: bump version for 5.2.2
  103. - python3-pygobject: :term:`RDEPENDS` on gobject-introspection
  104. - python3-requests: upgrade to 2.32.4
  105. - python3: backport the full fix for importlib scanning invalid distributions
  106. - python3: drop old nis module dependencies
  107. - python3: remove obsolete deletion of non-deterministic .pyc files
  108. - python3: upgrade to 3.13.4
  109. - ref-manual/variables.rst: document :term:`IMAGE_ROOTFS_MAXSIZE` :term:`INHIBIT_DEFAULT_RUST_DEPS`
  110. :term:`INHIBIT_UPDATERCD_BBCLASS` :term:`INITRAMFS_MAXSIZE` :term:`KERNEL_SPLIT_MODULES`
  111. :term:`SSTATE_SKIP_CREATION`
  112. - ref-manual: clarify :term:`KCONFIG_MODE` default behaviour
  113. - ref-manual: classes: nativesdk: move note to appropriate section
  114. - ref-manual: classes: reword to clarify that native/nativesdk options are exclusive
  115. - scripts/install-buildtools: Update to 5.2.1
  116. - sstate: apply proper umask when fetching from SSTATE_MIRROR
  117. - sstatetests: Switch to new CDN
  118. - systemd.bbclass: generate preset for templates
  119. - systemd: upgrade to 257.6
  120. - tcf-agent: correct the :term:`SRC_URI`
  121. - testimage: get real os-release file
  122. - tune-cortexr52: Remove aarch64 for ARM Cortex-R52
  123. - util-linux: fix agetty segfault issue
  124. - xwayland: Add missing libtirpc dependency
  125. Known Issues in Yocto-5.2.2
  126. ~~~~~~~~~~~~~~~~~~~~~~~~~~~
  127. - N/A
  128. Contributors to Yocto-5.2.2
  129. ~~~~~~~~~~~~~~~~~~~~~~~~~~~
  130. - Aleksandar Nikolic
  131. - Alper Ak
  132. - Antonin Godard
  133. - Archana Polampalli
  134. - Bruce Ashfield
  135. - Carlos Sánchez de La Lama
  136. - Changqing Li
  137. - Christos Gavros
  138. - Colin Pinnell McAllister
  139. - Daniel Turull
  140. - Deepesh Varatharajan
  141. - Dixit Parmar
  142. - Enrico Jörns
  143. - Etienne Cordonnier
  144. - Guocai He
  145. - Guðni Már Gilbert
  146. - Gyorgy Sarvari
  147. - Harish Sadineni
  148. - Jiaying Song
  149. - Lee Chee Yang
  150. - Mathieu Dubois-Briand
  151. - Mikko Rapeli
  152. - Moritz Haase
  153. - NeilBrown
  154. - Niko Mauno
  155. - Patrick Williams
  156. - Peter Marko
  157. - Praveen Kumar
  158. - Quentin Schulz
  159. - Randy MacLeod
  160. - Rasmus Villemoes
  161. - Richard Purdie
  162. - Robert P. J. Day
  163. - Robert Yang
  164. - Ross Burton
  165. - Sandeep Gundlupet Raju
  166. - Steve Sakoman
  167. - Trevor Gamblin
  168. - Trevor Woerner
  169. - Wang Mingyu
  170. - Yash Shinde
  171. - Yi Zhao
  172. - Yogita Urade
  173. - Yongxin Liu
  174. Repositories / Downloads for Yocto-5.2.2
  175. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  176. poky
  177. - Repository Location: :yocto_git:`/poky`
  178. - Branch: :yocto_git:`walnascar </poky/log/?h=walnascar>`
  179. - Tag: :yocto_git:`yocto-5.2.2 </poky/log/?h=yocto-5.2.2>`
  180. - Git Revision: :yocto_git:`41038342a471b4a8884548568ad147a1704253a3 </poky/commit/?id=41038342a471b4a8884548568ad147a1704253a3>`
  181. - Release Artefact: poky-41038342a471b4a8884548568ad147a1704253a3
  182. - sha: 4b1e9c80949e5c5ab5ffeb4fa3dadb43b74b813fc9d132caabf1fc8c38bd8f5e
  183. - Download Locations:
  184. https://downloads.yoctoproject.org/releases/yocto/yocto-5.2.2/poky-41038342a471b4a8884548568ad147a1704253a3.tar.bz2
  185. https://mirrors.kernel.org/yocto/yocto/yocto-5.2.2/poky-41038342a471b4a8884548568ad147a1704253a3.tar.bz2
  186. openembedded-core
  187. - Repository Location: :oe_git:`/openembedded-core`
  188. - Branch: :oe_git:`walnascar </openembedded-core/log/?h=walnascar>`
  189. - Tag: :oe_git:`yocto-5.2.2 </openembedded-core/log/?h=yocto-5.2.2>`
  190. - Git Revision: :oe_git:`c855be07828c9cff3aa7ddfa04eb0c4df28658e4 </openembedded-core/commit/?id=c855be07828c9cff3aa7ddfa04eb0c4df28658e4>`
  191. - Release Artefact: oecore-c855be07828c9cff3aa7ddfa04eb0c4df28658e4
  192. - sha: c510b69b984be7ad8045236a3dde9bc4f5833bc9f3045dc04d6442a9453165f4
  193. - Download Locations:
  194. https://downloads.yoctoproject.org/releases/yocto/yocto-5.2.2/oecore-c855be07828c9cff3aa7ddfa04eb0c4df28658e4.tar.bz2
  195. https://mirrors.kernel.org/yocto/yocto/yocto-5.2.2/oecore-c855be07828c9cff3aa7ddfa04eb0c4df28658e4.tar.bz2
  196. meta-mingw
  197. - Repository Location: :yocto_git:`/meta-mingw`
  198. - Branch: :yocto_git:`walnascar </meta-mingw/log/?h=walnascar>`
  199. - Tag: :yocto_git:`yocto-5.2.2 </meta-mingw/log/?h=yocto-5.2.2>`
  200. - Git Revision: :yocto_git:`edce693e1b8fabd84651aa6c0888aafbcf238577 </meta-mingw/commit/?id=edce693e1b8fabd84651aa6c0888aafbcf238577>`
  201. - Release Artefact: meta-mingw-edce693e1b8fabd84651aa6c0888aafbcf238577
  202. - sha: 6cfed41b54f83da91a6cf201ec1c2cd4ac284f642b1268c8fa89d2335ea2bce1
  203. - Download Locations:
  204. https://downloads.yoctoproject.org/releases/yocto/yocto-5.2.2/meta-mingw-edce693e1b8fabd84651aa6c0888aafbcf238577.tar.bz2
  205. https://mirrors.kernel.org/yocto/yocto/yocto-5.2.2/meta-mingw-edce693e1b8fabd84651aa6c0888aafbcf238577.tar.bz2
  206. bitbake
  207. - Repository Location: :oe_git:`/bitbake`
  208. - Branch: :oe_git:`2.12 </bitbake/log/?h=2.12>`
  209. - Tag: :oe_git:`yocto-5.2.2 </bitbake/log/?h=yocto-5.2.2>`
  210. - Git Revision: :oe_git:`74c28e14a9b5e2ff908a03f93c189efa6f56b0ca </bitbake/commit/?id=74c28e14a9b5e2ff908a03f93c189efa6f56b0ca>`
  211. - Release Artefact: bitbake-74c28e14a9b5e2ff908a03f93c189efa6f56b0ca
  212. - sha: 1d417990d922289152af6274d461d7809d06c290d57e5373fd46bb0112e6b812
  213. - Download Locations:
  214. https://downloads.yoctoproject.org/releases/yocto/yocto-5.2.2/bitbake-74c28e14a9b5e2ff908a03f93c189efa6f56b0ca.tar.bz2
  215. https://mirrors.kernel.org/yocto/yocto/yocto-5.2.2/bitbake-74c28e14a9b5e2ff908a03f93c189efa6f56b0ca.tar.bz2
  216. meta-yocto
  217. - Repository Location: :yocto_git:`/meta-yocto`
  218. - Branch: :yocto_git:`walnascar </meta-yocto/log/?h=walnascar>`
  219. - Tag: :yocto_git:`yocto-5.2.2 </meta-yocto/log/?h=yocto-5.2.2>`
  220. - Git Revision: :yocto_git:`5754fb5efb54cf06f96012a88619baba0995b0fc </meta-yocto/commit/?id=5754fb5efb54cf06f96012a88619baba0995b0fc>`
  221. yocto-docs
  222. - Repository Location: :yocto_git:`/yocto-docs`
  223. - Branch: :yocto_git:`walnascar </yocto-docs/log/?h=walnascar>`
  224. - Tag: :yocto_git:`yocto-5.2.2 </yocto-docs/log/?h=yocto-5.2.2>`
  225. - Git Revision: :yocto_git:`85f8e5c799ef38c6dcca615d7cc6baff325df259 </yocto-docs/commit/?id=85f8e5c799ef38c6dcca615d7cc6baff325df259>`