| /openbmc/openbmc/poky/scripts/ |
| H A D | b4-wrapper-poky.py | 5 # SPDX-License-Identifier: MIT 8 # - through the b4.prep-perpatch-check-cmd with "prep-perpatch-check-cmd" as 10 # - through b4.send-auto-cc-cmd with "send-auto-cc-cmd" as first argument, 11 # - through b4.send-auto-to-cmd with "send-auto-to-cmd" as first argument, 13 # When prep-perpatch-check-cmd is passsed: 15 # This checks that a patch makes changes to at most one project in the poky 16 # combo repo (that is, out of yocto-docs, bitbake, openembedded-core combined 17 # into poky and the poky-specific files). 19 # Printing something to stdout in this file will result in b4 prep --check fail 20 # for the currently parsed patch. [all …]
|
| /openbmc/openbmc/poky/documentation/dev-manual/ |
| H A D | vulnerabilities.rst | 1 .. SPDX-License-Identifier: CC-BY-SA-2.0-UK 6 Vulnerabilities in Poky and OE-Core 15 <https://autobuilder.yocto.io/pub/non-release/patchmetrics/>`__ 16 for packages in Poky and OE-Core, tracking the evolution of the number of 21 issues may be impacting Poky and OE-Core. It is up to the maintainers, users, 24 It is recommended to work with Poky and OE-Core upstream maintainers and submit 25 patches to fix them, see ":doc:`../contributor-guide/submit-changes`" for details. 27 Vulnerability check at build time 30 To enable a check for CVE security vulnerabilities using 31 :ref:`ref-classes-cve-check` in the specific image or target you are building, [all …]
|
| /openbmc/qemu/.gitlab-ci.d/ |
| H A D | check-patch.py | 3 # check-patch.py: run checkpatch.pl across all commits in a branch 7 # SPDX-License-Identifier: GPL-2.0-or-later 14 namespace = "qemu-project" 26 subprocess.check_call(["git", "remote", "add", "check-patch", repourl]) 27 subprocess.check_call(["git", "fetch", "--refetch", "check-patch", "master"]) 29 ancestor = subprocess.check_output(["git", "merge-base", 30 "check-patch/master", "HEAD"], 35 log = subprocess.check_output(["git", "log", "--format=%H %s", 39 subprocess.check_call(["git", "remote", "rm", "check-patch"]) 49 ret = subprocess.run(["scripts/checkpatch.pl", "--terse", ancestor + "..."])
|
| H A D | static_checks.yml | 1 check-patch: 4 image: python:3.10-alpine 7 - .gitlab-ci.d/check-patch.py 12 - apk -U add git perl 15 check-dco: 18 image: python:3.10-alpine 20 script: .gitlab-ci.d/check-dco.py 24 - apk -U add git 26 check-python-minreqs: 31 - make -C python check-minreqs [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-multimedia/audiofile/ |
| H A D | audiofile_0.3.6.bb | 2 API for accessing a variety of audio file formats, such as AIFF/AIFF-C, \ 7 LICENSE = "LGPL-2.0-only & GPL-2.0-only" 13 file://0001-fix-negative-shift-constants.patch \ 14 file://0002-fix-build-on-gcc6.patch \ 15 file://0003-fix-CVE-2015-7747.patch \ 16 file://0004-Always-check-the-number-of-coefficients.patch \ 17 file://0005-clamp-index-values-to-fix-index-overflow-in-IMA.cpp.patch \ 18 file://0006-Check-for-multiplication-overflow-in-sfconvert.patch \ 19 file://0007-Actually-fail-when-error-occurs-in-parseFormat.patch \ 20 file://0008-Check-for-multiplication-overflow-in-MSADPCM-decodeS.patch \ [all …]
|
| /openbmc/openbmc/poky/documentation/ref-manual/ |
| H A D | qa-checks.rst | 1 .. SPDX-License-Identifier: CC-BY-SA-2.0-UK 7 .. _qa-introduction: 30 - At the end of each message, the name of the associated QA test (as 31 listed in the ":ref:`ref-classes-insane`" 34 - As mentioned, this list of error and warning messages is for QA 38 - Because some QA checks are disabled by default, this list does not 39 include all possible QA check errors and warnings. 41 .. _qa-errors-and-warnings: 46 .. _qa-check-libexec: 48 - ``<packagename>: <path> is using libexec please relocate to <libexecdir> [libexec]`` [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-dbs/postgresql/ |
| H A D | postgresql_17.5.bb | 6 file://not-check-libperl.patch \ 7 file://0001-Add-support-for-RISC-V.patch \ 8 file://0002-Improve-reproducibility.patch \ 9 file://0003-configure.ac-bypass-autoconf-2.69-version-check.patch \ 10 file://0004-config_info.c-not-expose-build-info.patch \ 11 file://0005-postgresql-fix-ptest-failure-of-sysviews.patch \ 12 file://0001-tcl.m4-Recognize-tclsh9.patch \ 17 CVE_STATUS[CVE-2017-8806] = "not-applicable-config: Ddoesn't apply to out configuration of postgres…
|
| /openbmc/openbmc/poky/meta/lib/patchtest/ |
| H A D | repo.py | 2 # -*- tab-width: 4; c-basic-offset: 4; indent-tabs-mode: nil -*- 8 # SPDX-License-Identifier: GPL-2.0-only 20 def __init__(self, patch, repodir, commit=None, branch=None): argument 23 self.patch = mbox.PatchSeries(patch) 26 # targeted branch defined on the patch may be invalid, so make sure there 29 if self.patch.branch in self.repo.branches: 30 valid_patch_branch = self.patch.branch 36 # 3. branch given at the patch 45 # create working branch. Use the '-B' flag so that we just 46 # check out the existing one if it's there [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-connectivity/wvdial/ |
| H A D | wvstreams_4.6.1.bb | 4 LICENSE = "LGPL-2.0-only" 8 DEPENDS:append:libc-musl = " argp-standalone libexecinfo" 10 SRC_URI = "https://storage.googleapis.com/google-code-archive-downloads/v2/code.google.com/${BPN}/$… 13 file://06_gcc-4.7.diff \ 15 file://gcc-6.patch \ 16 file://argp.patch \ 17 file://0001-Check-for-limits.h-during-configure.patch \ 18 file://0003-wvtask-Check-for-HAVE_LIBC_STACK_END-only-on-glibc-s.patch \ 19 file://0004-wvcrash-Replace-use-of-basename-API.patch \ 20 file://0005-check-for-libexecinfo-during-configure.patch \ [all …]
|
| /openbmc/openbmc/poky/meta/recipes-support/libcheck/ |
| H A D | libcheck_0.15.2.bb | 1 SUMMARY = "Check - unit testing framework for C code" 7 HOMEPAGE = "https://libcheck.github.io/check/" 10 LICENSE = "LGPL-2.1-or-later" 13 SRC_URI = "${GITHUB_BASE_URI}/download/${PV}/check-${PV}.tar.gz \ 14 file://automake-output.patch \ 15 file://not-echo-compiler-info-to-check_stdint.h.patch" 17 GITHUB_BASE_URI = "https://github.com/libcheck/check/releases/" 19 S = "${WORKDIR}/check-${PV}" 21 inherit autotools pkgconfig texinfo github-releases 25 RREPLACES:${PN} = "check (<= 0.9.5)" [all …]
|
| /openbmc/openbmc/poky/meta/recipes-devtools/binutils/ |
| H A D | binutils-2.44.inc | 14 # that upstream version check can work correctly. 17 SRCBRANCH ?= "binutils-2_44-branch" 19 UPSTREAM_CHECK_GITTAGREGEX = "binutils-(?P<pver>\d+_(\d_?)*)" 21 CVE_STATUS[CVE-2025-1153] = "cpe-stable-backport: fix available in used git hash" 24 BINUTILS_GIT_URI ?= "git://sourceware.org/git/binutils-gdb.git;branch=${SRCBRANCH};protocol=https" 27 file://0004-Point-scripts-location-to-libdir.patch \ 28 file://0005-don-t-let-the-distro-compiler-point-to-the-wrong-ins.patch \ 29 file://0006-warn-for-uses-of-system-directories-when-cross-linki.patch \ 30 file://0007-fix-the-incorrect-assembling-for-ppc-wait-mnemonic.patch \ 31 file://0008-Use-libtool-2.4.patch \ [all …]
|
| /openbmc/openbmc/poky/meta/lib/oeqa/selftest/cases/ |
| H A D | devtool.py | 4 # SPDX-License-Identifier: MIT 29 corecopydir = os.path.join(templayerdir, 'core-copy') 33 result = runCmd('bitbake-layers show-layers') 52 runCmd('git rev-parse --is-inside-work-tree', cwd=canonical_layerpath) 56 result = runCmd('git rev-parse --show-toplevel', cwd=canonical_layerpath) 62 # cloning and doing this?" - well, the problem with that is 66 result = runCmd('git status --porcelain', cwd=oldreporoot) 113 """Check srctree git repository""" 116 result = runCmd('git status --porcelain', cwd=repo_dir) 119 result = runCmd('git symbolic-ref HEAD', cwd=repo_dir) [all …]
|
| /openbmc/openbmc/poky/meta/recipes-core/busybox/ |
| H A D | busybox_1.37.0.bb | 3 SRC_URI = "https://busybox.net/downloads/busybox-${PV}.tar.bz2;name=tarball \ 4 file://0001-depmod-Ignore-.debug-directories.patch \ 5 file://find-touchscreen.sh \ 6 file://busybox-cron \ 7 file://busybox-httpd \ 8 file://busybox-udhcpd \ 13 file://syslog-startup.conf \ 15 file://busybox-syslog.default \ 18 file://mdev-mount.sh \ 20 file://busybox-syslog.service.in \ [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-dbs/postgresql/files/ |
| H A D | not-check-libperl.patch | 4 Subject: [PATCH] not check libperl under cross compiling 6 Upstream-Status: Inappropriate [configuration] 9 can not be used to check target library. 11 postpresql has the dependency on perl, so not need to check libperl 12 again, like in postgresql-9.2.4 14 Signed-off-by: Roy Li <rongqing.li@windriver.com> 16 update patch to version 11.1 17 Signed-off-by: Changqing Li <changqing.li@windriver.com> 18 --- 19 configure.ac | 2 +- [all …]
|
| /openbmc/openbmc/poky/meta/lib/patchtest/tests/ |
| H A D | test_mbox.py | 1 # Checks related to the patch's author 5 # SPDX-License-Identifier: GPL-2.0-only 17 "cd %s; git log --pretty='%%h#%%aN#%%cD:#%%s' -1" % PatchtestParser.repodir, 25 # base paths of main yocto project sub-projects 27 'oe-core': ['meta-selftest', 'meta-skeleton', 'meta', 'scripts'], 30 'poky': ['meta-poky','meta-yocto-bsp'], 31 …-gpe', 'meta-gnome', 'meta-efl', 'meta-networking', 'meta-multimedia','meta-initramfs', 'meta-ruby… 34 # scripts folder is a mix of oe-core and poky, most is oe-core code except: 35 …poky_scripts = ['scripts/yocto-bsp', 'scripts/yocto-kernel', 'scripts/yocto-layer', 'scripts/lib/b… 39 …bitbake = Project(name='Bitbake', listemail='bitbake-devel@lists.openembedded.org', gitrepo='http:… [all …]
|
| /openbmc/openbmc-test-automation/security/ |
| H A D | test_bmc_connections.robot | 39 Test Patch Without Auth Token Fails 40 [Documentation] Send patch method without auth token and verify it throws an error. 46 Redfish.Patch ${REDFISH_NW_ETH_IFACE}${ethernet_interface} body={'HostName': '${hostname}'} 50 Flood Patch Without Auth Token And Check Stability Of BMC 51 [Documentation] Flood patch method without auth token and check BMC stability. 60 Log To Console ${iter}th iteration Patch Request without valid session token 62 … Redfish.Patch ${REDFISH_NW_ETH_IFACE}${ethernet_interface} body={'HostName': '${hostname}'} 65 # Every 100th iteration, check BMC allows patch with auth token. 76 …... msg=Patch operation failed ${fail_count} times in ${verify_count} attempts; fails at iteratio… 79 Verify User Cannot Login After 5 Non-Logged In Sessions [all …]
|
| /openbmc/u-boot/tools/patman/ |
| H A D | patman | 2 # SPDX-License-Identifier: GPL-2.0+ 31 parser.add_option('-H', '--full-help', action='store_true', dest='full_help', 33 parser.add_option('-c', '--count', dest='count', type='int', 34 default=-1, help='Automatically create patches from top n commits') 35 parser.add_option('-i', '--ignore-errors', action='store_true', 37 help='Send patches email even if patch errors are found') 38 parser.add_option('-m', '--no-maintainers', action='store_false', 41 parser.add_option('-l', '--limit-cc', dest='limit', type='int', 43 parser.add_option('-n', '--dry-run', action='store_true', dest='dry_run', 45 parser.add_option('-p', '--project', default=project.DetectProject(), [all …]
|
| H A D | patman.py | 2 # SPDX-License-Identifier: GPL-2.0+ 31 parser.add_option('-H', '--full-help', action='store_true', dest='full_help', 33 parser.add_option('-c', '--count', dest='count', type='int', 34 default=-1, help='Automatically create patches from top n commits') 35 parser.add_option('-i', '--ignore-errors', action='store_true', 37 help='Send patches email even if patch errors are found') 38 parser.add_option('-m', '--no-maintainers', action='store_false', 41 parser.add_option('-l', '--limit-cc', dest='limit', type='int', 43 parser.add_option('-n', '--dry-run', action='store_true', dest='dry_run', 45 parser.add_option('-p', '--project', default=project.DetectProject(), [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-devtools/php/php/ |
| H A D | 0003-iconv-fix-detection.patch | 3 Date: Tue, 9 Nov 2021 13:10:33 -0500 4 Subject: [PATCH] iconv: fix detection 6 Upstream-Status: Pending 8 Signed-off-by: Koen Kooi <koen@dominion.thruhere.net> 10 update patch to version 7.4.4 11 Signed-off-by: Changqing Li <changqing.li@windriver.com> 13 update patch to version 8.0.12 14 Signed-off-by: Claude Bing <cbing@cybernetics.com> 16 update patch to version 8.4.4 17 Signed-off-by: Chen Qi <Qi.Chen@windriver.com> [all …]
|
| /openbmc/openbmc/meta-security/dynamic-layers/meta-perl/recipes-scanners/checksecurity/ |
| H A D | checksecurity_2.0.16.bb | 4 LICENSE = "GPL-2.0-only" 5 LIC_FILES_CHKSUM = "file://${COMMON_LICENSE_DIR}/GPL-2.0-only;md5=801f80980d171dd6425610833a22dbe6" 8 file://check-setuid-use-more-portable-find-args.patch \ 13 S = "${WORKDIR}/checksecurity-${PV}+nmu1" 16 # allow for anylocal, no need to patch 20 sed -i -e "s;LOGDIR=/var/log/setuid;LOGDIR=${LOGDIR};g" ${B}/etc/check-setuid.conf 21 sed -i -e "s;LOGDIR=/var/log/setuid;LOGDIR=${LOGDIR};g" ${B}/plugins/check-setuid 22 sed -i -e "s;LOGDIR:=/var/log/setuid;LOGDIR:=${LOGDIR};g" ${B}/plugins/check-setuid 29 …v-perl perl-module-tie-array perl-module-getopt-long perl-module-file-glob perl-module-carp perl-m…
|
| /openbmc/u-boot/scripts/coccinelle/free/ |
| H A D | ifnullfree.cocci | 1 /// NULL check before some freeing functions is not needed. 4 /// "kfree(NULL) is safe this check is probably not required" 8 // Comments: - 9 // Options: --no-includes --include-headers 11 virtual patch 16 @r2 depends on patch@ 19 - if (E != NULL) 52 cocci.print_main("NULL check before that freeing function is not needed", p) 58 msg = "WARNING: NULL check before freeing functions like kfree, debugfs_remove, debugfs_remove_recu…
|
| /openbmc/openbmc/poky/documentation/migration-guides/ |
| H A D | release-notes-4.0.2.rst | 1 .. SPDX-License-Identifier: CC-BY-SA-2.0-UK 3 Release notes for Yocto-4.0.2 (Kirkstone) 4 ----------------------------------------- 6 Security Fixes in Yocto-4.0.2 9 - libxslt: Mark :cve_nist:`2022-29824` as not applying 10 - tiff: Add jbig :term:`PACKAGECONFIG` and clarify IGNORE :cve_nist:`2022-1210` 11 - tiff: mark :cve_nist:`2022-1622` and :cve_nist:`2022-1623` as invalid 12 - pcre2:fix :cve_nist:`2022-1586` Out-of-bounds read 13 - curl: fix :cve_nist:`2022-22576`, :cve_nist:`2022-27775`, :cve_nist:`2022-27776`, :cve_nist:`202… 14 - qemu: fix :cve_nist:`2021-4206` and :cve_nist:`2021-4207` [all …]
|
| /openbmc/openbmc/poky/meta/recipes-core/busybox/busybox/ |
| H A D | busybox-cross-menuconfig.patch | 2 Date: Sun, 3 Mar 2013 12:31:40 -0600 3 Subject: [PATCH] menuconfig,check-lxdiaglog.sh: Allow specification of ncurses location 5 Upstream-Status: Submitted 9 This patch syncs up with the way the menuconfig ncurses / curses 14 --- 25 check-lxdialog.sh for environments such as the Yocto Project. Adding 29 Signed-off-by: Jason Wessel <jason.wessel@windriver.com> 31 cc: linux-kbuild@vger.kernel.org 32 --- 33 scripts/kconfig/lxdialog/Makefile | 2 +- [all …]
|
| /openbmc/openbmc/poky/meta/recipes-devtools/perl-cross/files/ |
| H A D | 0001-Makefile-check-the-file-if-patched-or-not.patch | 4 Subject: [PATCH] Makefile: check the file if patched or not 6 Check the file if patched or not to avoid patched more than 9 Upstream-Status: Inappropriate (OE-specific) 11 Signed-off-by: Mingli Yu <mingli.yu@windriver.com> 12 --- 13 Makefile | 2 +- 14 1 file changed, 1 insertion(+), 1 deletion(-) 16 diff --git a/Makefile b/Makefile 18 --- a/Makefile 20 @@ -67,7 +67,7 @@ miniperlmain$O: $(CROSSPATCHED) [all …]
|
| /openbmc/openbmc/meta-openembedded/meta-oe/recipes-dbs/rocksdb/ |
| H A D | rocksdb_9.10.0.bb | 1 SUMMARY = "RocksDB an embeddable, persistent key-value store" 2 DESCRIPTION = "RocksDB is library that provides an embeddable, persistent key-value store for fast … 4 LICENSE = "(Apache-2.0 | GPL-2.0-only) & BSD-3-Clause" 13 file://0001-cmake-Add-check-for-atomic-support.patch \ 14 file://0002-cmake-Use-exported-target-for-bz2.patch \ 15 file://0003-cmake-Do-not-add-msse4.2-mpclmul-on-clang.patch \ 16 file://0004-Implement-support-for-musl-ppc64.patch \ 17 file://0005-Implement-timer-implementation-for-mips-platform.patch \ 18 file://0006-Implement-timer-for-arm-v6.patch \ 19 file://0007-Fix-declaration-scope-of-LE_LOAD32-in-crc32c.patch \ [all …]
|