Skip to content
freedesktop-sdk-22.08.22:

  * Update elements/components/pinentry-ncurses.bst to pinentry-1.3.0-0
  * Update python3-packaging to 24.0
  * Update python3-hatchling to 1.22.2
  * Update elements/extensions/mesa/mesa-sources.yml to mesa-24.0.3-0
  * Update vim to v9.1.0184-0
  * Update elements/bootstrap/include/glibc-source.yml to glibc-2.35-284
  * Fix CVE information on some elements
  * Update aom to v3.8.2-0
  * binutils: Add patch for CVE-2023-1972
  * binutils: Sort patches
  * bootstrap/zlib.bst: Declare CVE vendor to ignore cloudflare's zlib
  * components/libtiff.bst: Mark CVE-2023-3164 as ignored
  * utils/abidiff-suppressions.ini: Suppress a new function in giflib
  * components/giflib.bst: Add patch to remove dependency on imagemagick
  * components/giflib.bst: Update to 5.2.2 to resolve CVEs
  * components/procps.bst: Add patch for CVE-2023-4016
  * components/tar.bst: Add patch for CVE-2022-48303
  * components/cairo.bst: Add patch for CVE-2019-6461
  * components/sqlite.bst: Patch CVE-2023-7104
  * components/sqlite.bst: Mark CVE-2022-46908 as ignored
  * components/gnutls.bst: Add patch for CVE-2024-0567
  * components/gnutls.bst: Add patch for CVE-2024-0553
  * Update elements/include/ostree-source.yml to v2024.5-0
  * Update python3-markdown to 3.6
  * bootstrap/glibc.bst: Mark CVE-2023-5156 as ignored
  * bootstrap/glibc.bst: Mark CVE-2023-4813 as ignored
  * bootstrap/glibc.bst: Mark CVE-2023-4911 as ignored
  * bootstrap/glibc.bst: Ignore CVE-2023-4527
  * When CVE found, print debug info
  * Make it possible to exclude known bad vendors
  * components/dav1d.bst: Add patch for CVE-2023-32570
  * components/libxml2.bst: Mark CVE-2023-45322 as ignored
  * components/libxml2.bst: Patch CVE-2024-25062
  * libxml2: Fix patch against libxml2 2.10.4
  * components/python3.bst: Mark CVE-2023-36632 as ignored
  * components/less.bst: Patch CVE-2022-46663
  * components/nss.bst: Add patch for CVE-2022-3479
  * components/libwebp.bst: Patch CVE-2023-1999
  * Update cni to v1.4.1-0
  * Update util-linux-base to v2.38.1-0
  * Update python3-setuptools to 69.2.0
  * glib: Add patch to fix a regression from the fix for CVE-2023-32665
  * Add patch for CVE-2023-32643, CVE-2023-32636
  * glib: Add patch for CVE-2023-32665, CVE-2023-29499, CVE-2023-32611
  * components/pygobject.bst: Freeze to 3.46.0
  * components/xorg-lib-xpm.bst: Freeze to 3.5.16
  * components/json-glib.bst: Freeze to 1.6
  * util-linux: Freeze to v2.38
  * Update audit to v4.0.1-0
  * Update openssh to V_9_7_P1-0
  * Update python3-wheel to 0.43.0
  * Update iproute2 to v6.8.0-0
  * Update python3-pyparsing to 3.1.2
  * Update APNG patch to libpng-1.6.43
  * Update libpng to v1.6.43-0
  * Update python3-trove-classifiers to 2024.3.3
  * Update xorg-lib-fontenc to libfontenc-1.1.8-0
  * components/libwebp.bst: Freeze to 1.2.4 due to addition of libsharpyuv
  * include/binutils-source.yml: Freeze to 2.38.0
  * abidiff: Suppress additions in libncurses due to build arg change
  * ncurses: Fix path for always-cross-compile.patch
  * ncurses: Change to patch_queue and mark CVE-2023-29491 as patched
  * ncurses: Make disable-root-environ act like disable-setuid-environ
  * ncurses: Fix -disable-root-access option
  * ncurses: Build with disable-root-environ
  * Update vim to v9.1.0161-0
  * xorg-lib-x11.bst: Add patch for CVE-2023-3138
  * xorg-lib-x11.bst: Add patch for CVE-2023-43786
  * xorg-lib-x11.bst: Add patch for CVE-2023-43785
  * xorg-lib-x11.bst: Add patch for CVE-2023-43787
  * libtiff: Correct CVE id for CVE-2023-30775
  * libtiff: Mark CVE-2023-2908 as patched
  * components/opusfile.bst: Add patch for CVE-2022-47021
  * components/libnghttp2.bst: Freeze to v1.58.0 due to ABI additions
  * libtiff: Change to patch_queue
  * libtiff: Add patch for CVE-2023-26965
  * libtiff: Add patch for CVE-2023-3576
  * libtiff: Add patch for CVE-2023-2731
  * libtiff: Add patch for CVE-2023-0800
  * libtiff: Add patches for CVE-2023-0795
  * libtiff: Add patch for CVE-2023-41175
  * libtiff: Add patch for CVE-2023-40745
  * libtiff: Add patch for CVE-2023-3618
  * libtiff: Add patch for CVE-2023-3316
  * libtiff: Rename and rebase patches against newer patches
  * libtiff: Add patch for CVE-2023-30755, rename, rebase and combine
  * libtiff: Add patch for CVE-2022-4645 and rename+rebase older patch
  * libtiff: Rename patch and rebase against latest patches
  * libtiff: Mark CVE-2023-0804 as ignored
  * libtiff: Mark CVE-2023-0803 as ignored
  * libtiff: Mark CVE-2023-0802 as ignored
  * libtiff: Mark CVE-2023-0801 as ignored
  * libtiff: Mark CVE-2023-0799 as ignored
  * libtiff: Mark CVE-2023-0798 as ignored
  * libtiff: Mark CVE-2023-0797 as ignored
  * libtiff: Mark CVE-2023-0796 as ignored
  * libtiff: Mark CVE-2023-1916 as ignored
  * libtiff: Mark CVE-2023-52355 as ignored
  * Update gtk-doc to 1.34.0-0
  * binutils: Mark CVE-2023-25584 as ignored
  * binutils: Mark CVE-2022-48064 as ignored
  * binutils: Add patch for CVE-2022-48065
  * binutils: Add patch for CVE-2022-48063
  * binutils: Add patch for CVE-2022-47696
  * binutils: Add patch for CVE-2022-47695
  * binutils: Add patch for CVE-2022-47673
  * binutils: Add patch for CVE-2022-47011
  * binutils: Add patch for CVE-2022-47010
  * binutils: Add patch for CVE-2022-47008
  * binutils: Add patch for CVE-2022-47007
  * binutils: Add patch for CVE-2022-45703
  * binutils: Add patch for CVE-2022-44840
  * binutils: Add patch for CVE-2022-4285
  * binutils-source.yml: Change to patch_queue
  * bash: Add patch for CVE-2022-3715
  * freeglut: Remove no longer needed -fcommon
  * check-sdk.bst: Add polkit-gobject to check-sdk
  * components/pcsc-lite.bst: Add dependency on polkit-gobject
  * Update pcsc-lite to 2.0.3-0
  * Update elements/include/git.yml to v2.44.0-0
  * Update go to go1.21.8-0
  * Update openjpeg to v2.5.2-0
  * perl: Rebase no-rpath-libpath.patch on top of 5.36.3
  * include/perl-source.yml: Ignore CVE-2023-31486
  * include/perl-source.yml: Add patch for CVE-2023-31484
  * include/ffmpeg.yml: Mark CVE-2022-48434 as ignored
  * include/ffmpeg.yml: Mark CVE-2023-47470 as ignored
  * include/ffmpeg.yml: Mark CVE-2023-46407 as ignored
  * include/ffmpeg.yml: Mark CVE-2024-22862 as ignored
  * include/ffmpeg.yml: Mark CVE-2024-22861 as ignored
  * include/ffmpeg.yml: Mark CVE-2024-22860 as ignored
  * include/ffmpeg.yml: Mark CVE-2022-3341 as ignored
  * include/ffmpeg.yml: Mark CVE-2022-3109 as ignored
  * Update iwd to 2.16-0
  * components/python3-tpm2-pytss.bst: Remove cryptography patch
  * Update python3-tpm2-pytss to 2.2.1
  * components/curl.bst: Add patches for various security fixes
  * Update xorg-lib-xdmcp to libXdmcp-1.1.5-0
  * Update poppler to poppler-24.03.0-0
  * utils/abidiff-suppressions.ini: Add enum and more websocket suppressions for curl 8.2.1
  * components/curl.bst: Update to 8.2.1
  * Update curl patches to 8.2.1
  * Update curl to curl-8_5_0-0
  * include/appstream-source.yml: Change tracking to 0.16.x stable branch
  * extensions/mesa/mesa-sources.yml: Add patch to fix shell crash in X11
  * expat: Disable tracking
  * extensions/mesa/mesa-extra.bst: Switch to building all codecs
  * extensions/mesa/mesa.bst: Make base mesa build all free codecs
  * Update xorg-lib-xcursor to libXcursor-1.2.2-0
  * Update wavpack to 5.7.0-0
  * Update vim to v9.1.0146-0
  * components/shadow.bst: Exclude rc tags
  * Update python3-tomlkit to 0.12.4
  * Update fcitx5 to 5.1.2-0
  * Update flatpak-builder-base to 1.4.2-0
  * Update crun to 1.14.4-0
  * Update po4a to v0.71-0
  * components/python3-tpm2-pytss: Add patch to fix build by cryptography
  * components/python3-cryptography.bst: Update to 42.0.5
  * Update python3-cryptography to 42.0.2
  * Update elements/extensions/mesa/mesa-sources.yml to mesa-24.0.2-0
  * Update ell to 0.63-0
  * Update extra-cmake-modules to v6.0.0-0
  * ninja: Take a guess at what the CPE will be
  * Update elements/include/ostree-source.yml to v2024.4-0
  * Update python3-dbusmock to 0.31.1
  * Update python3-typing-extensions to 4.10.0
  * Update elements/include/git.yml to v2.43.3-0
  * Update iwd to 2.15-0
  * ninja: CVE-2021-4336 is about different project
  * Update python3-setuptools-rust to 1.9.0
  * Update libksba to libksba-1.6.6-0
  * Update qpdf to v11.9.0-0
  * glibc: Suppress CVE-2023-47100
  * libvpx: Mark CVE-2023-44488 as patched
  * libwebp: Mark CVE-2023-4863 as patched
  * perl: Ignore CVE-2023-47100
  * Update libmicrohttpd to v1.0.1-0
  * Update swig to v4.2.1-0
  * Update vim to v9.1.0135-0
  * Update python3-setuptools to 69.1.1
  * Work around build issue for asahi
  * extensions/mesa/mesa.bst: update to 24.0.1
  * libdrm: Update to 2.4.120 without breaking ABI
  * Update to latest image
  * Update python3-trove-classifiers to 2024.2.22
  * Update bash-completion to 2.12.0-0
  * Update python3-virtualenv to 20.25.1
  * Remove deprecated conf-extra from autotools template
  * Update python3-urllib3 to 2.2.1
  * Update libffi to v3.4.6-0
  * Update elements/extensions/mesa/mesa-sources.yml to mesa-23.3.6-0
  * Update crun to 1.14.3-0
  * Update vim to v9.1.0113-0
  * Update elements/bootstrap/include/glibc-source.yml to glibc-2.35-283
  * Backport conf-arch switch to 22.08
  * Update crun to 1.14.2-0
  * Update elements/include/mesa.yml to mesa-23.3.6-0
  * components/pycairo.bst: Freeze to 1.25 branch
  * Update libffi to v3.4.5-0
  * components/efivar.bst Drop riscv64 patch
  * Update efivar to 39-0
  * Update go to go1.21.7-0
  * Update mdadm to mdadm-4.3-0
  * Update iwd to 2.14-0
  * elements/components/go.bst: fix tracking
  * Revert "Update go to go1.20.14-0"
  * Update elements/include/ostree-source.yml to v2024.3-0
  * Update elements/abi/freedesktop-sdk to freedesktop-sdk-22.08.21-0
  * Update pango to 1.51.2-0
  * components/gnutls.bst: Update to 3.7.10
  * Update btrfs-progs to v6.7.1-0
  * Update elements/include/git.yml to v2.43.2-0
  * components/avahi-base.bst: Exclude rc tags
  * Update ell to 0.62-0
  * Update python3-mako to 1.3.2
  * components/libtiff.bst: Freeze to v4.4.0 due to soname bump
  * Update foomatic-db to 20240209-0
  * Update python3-markupsafe to 2.1.5
  * Update python3-setuptools to 69.1.0
  * backport: jq: move from stedolan/jq to jqlang/jq
  * Update cmake to v3.28.3-0
  * Update xorg-lib-xkbfile to libxkbfile-1.1.3-0
  * Update python3-pytz to 2024.1
  * Update elements/include/ostree-source.yml to v2024.2-0
  * Update crun to 1.14.1-0
  * Update eos-metrics to Release_5.1.2-0
  * Update vim to v9.1.0095-0
  * Update poppler to poppler-24.02.0-0
  * Update python3-cachecontrol to 0.14.0
  * Update flatpak-builder-base to 1.4.1-0
  * Update gyp to 1615ec3
  * Update go to go1.20.14-0
  * Update libwacom to libwacom-2.10.0-0
  * Update iwd to 0.62-0
  * Update slirp4netns to v1.2.3-0
  * Update python3-multidict to 6.0.5
  * Update python3-poetry-core to 1.9.0
  * Update tzdata to 2024a-0
  * Update libpulse to v17.0-0
  * Update xorg-app-xkbcomp to xkbcomp-1.4.7-0
  * Update xorg-lib-xext to libXext-1.3.6-0
  * Update elements/include/mesa.yml to mesa-23.3.5-0
  * Update libcbor to v0.11.0-0
  * Update elements/include/pkg-config-source.yml to pkgconf-2.1.1-0
  * Update xorg-data-xkeyboard-config to xkeyboard-config-2.41-0
  * Update patch to gnupg 2.2.42
  * Update elements/include/gnupg-source.yml to gnupg-2.2.42-0