1.. SPDX-License-Identifier: CC-BY-SA-2.0-UK 2 3Release notes for Yocto-4.0.21 (Kirkstone) 4------------------------------------------ 5 6Security Fixes in Yocto-4.0.21 7~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 8 9- bind: Fix :cve_nist:`2024-4076`, :cve_nist:`2024-1737`, :cve_nist:`2024-0760` and :cve_nist:`2024-1975` 10- apr: Fix :cve_nist:`2023-49582` 11- busybox: Fix :cve_nist:`2023-42363`, :cve_nist:`2023-42364`, :cve_nist:`2023-42365`, :cve_nist:`2023-42366` and :cve_nist:`2021-42380` 12- curl: Ignore :cve_nist:`2024-32928` 13- curl: Fix :cve_nist:`2024-7264` 14- ghostscript: Fix :cve_nist:`2024-29506`, :cve_nist:`2024-29509` and :cve_nist:`2024-29511` 15- go: Fix :cve_nist:`2024-24789` and :cve_nist:`2024-24791` 16- gtk+3: Fix :cve_nist:`2024-6655` 17- libarchive: Ignore :cve_nist:`2024-37407` 18- libyaml: Ignore :cve_nist:`2024-35325`, :cve_nist:`2024-35326` and :cve_nist:`2024-35328` 19- linux-yocto/5.15: Fix :cve_nist:`2022-48772`, :cve_nist:`2024-35972`, :cve_nist:`2024-35984`, :cve_nist:`2024-35990`, :cve_nist:`2024-35997`, :cve_nist:`2024-36008`, :cve_nist:`2024-36270`, :cve_nist:`2024-36489`, :cve_nist:`2024-36897`, :cve_nist:`2024-36938`, :cve_nist:`2024-36965`, :cve_nist:`2024-36967`, :cve_nist:`2024-36969`, :cve_nist:`2024-36971`, :cve_nist:`2024-36978`, :cve_nist:`2024-38546`, :cve_nist:`2024-38547`, :cve_nist:`2024-38549`, :cve_nist:`2024-38552`, :cve_nist:`2024-38555`, :cve_nist:`2024-38571`, :cve_nist:`2024-38583`, :cve_nist:`2024-38591`, :cve_nist:`2024-38597`, :cve_nist:`2024-38598`, :cve_nist:`2024-38600`, :cve_nist:`2024-38627`, :cve_nist:`2024-38633`, :cve_nist:`2024-38661`, :cve_nist:`2024-38662`, :cve_nist:`2024-38780`, :cve_nist:`2024-39277`, :cve_nist:`2024-39292`, :cve_nist:`2024-39301`, :cve_nist:`2024-39466`, :cve_nist:`2024-39468`, :cve_nist:`2024-39471`, :cve_nist:`2024-39475`, :cve_nist:`2024-39476`, :cve_nist:`2024-39480`, :cve_nist:`2024-39482`, :cve_nist:`2024-39484`, :cve_nist:`2024-39487`, :cve_nist:`2024-39489`, :cve_nist:`2024-39493`, :cve_nist:`2024-39495`, :cve_nist:`2024-39506`, :cve_nist:`2024-40902`, :cve_nist:`2024-40911`, :cve_nist:`2024-40912`, :cve_nist:`2024-40932`, :cve_nist:`2024-40934`, :cve_nist:`2024-40954`, :cve_nist:`2024-40956`, :cve_nist:`2024-40957`, :cve_nist:`2024-40958`, :cve_nist:`2024-40959`, :cve_nist:`2024-40960`, :cve_nist:`2024-40961`, :cve_nist:`2024-40967`, :cve_nist:`2024-40970`, :cve_nist:`2024-40980`, :cve_nist:`2024-40981`, :cve_nist:`2024-40994`, :cve_nist:`2024-40995`, :cve_nist:`2024-41000`, :cve_nist:`2024-41002`, :cve_nist:`2024-41006`, :cve_nist:`2024-41007`, :cve_nist:`2024-41046`, :cve_nist:`2024-41049`, :cve_nist:`2024-41055`, :cve_nist:`2024-41064`, :cve_nist:`2024-41070`, :cve_nist:`2024-41073`, :cve_nist:`2024-41087`, :cve_nist:`2024-41089`, :cve_nist:`2024-41092`, :cve_nist:`2024-41093`, :cve_nist:`2024-41095`, :cve_nist:`2024-41097`, :cve_nist:`2024-42068`, :cve_nist:`2024-42070`, :cve_nist:`2024-42076`, :cve_nist:`2024-42077`, :cve_nist:`2024-42080`, :cve_nist:`2024-42082`, :cve_nist:`2024-42085`, :cve_nist:`2024-42090`, :cve_nist:`2024-42093`, :cve_nist:`2024-42094`, :cve_nist:`2024-42101`, :cve_nist:`2024-42102`, :cve_nist:`2024-42104`, :cve_nist:`2024-42109`, :cve_nist:`2024-42140`, :cve_nist:`2024-42148`, :cve_nist:`2024-42152`, :cve_nist:`2024-42153`, :cve_nist:`2024-42154`, :cve_nist:`2024-42157`, :cve_nist:`2024-42161`, :cve_nist:`2024-42223`, :cve_nist:`2024-42224`, :cve_nist:`2024-42225`, :cve_nist:`2024-42229`, :cve_nist:`2024-42232`, :cve_nist:`2024-42236`, :cve_nist:`2024-42244` and :cve_nist:`2024-42247` 20- llvm: Fix :cve_nist:`2023-46049` and :cve_nist:`2024-31852` 21- ofono: fix :cve_nist:`2023-2794` 22- orc: Fix :cve_nist:`2024-40897` 23- python3-certifi: Fix :cve_nist:`2024-39689` 24- python3-jinja2: Fix :cve_nist:`2024-34064` 25- python3: Fix :cve_nist:`2024-8088` 26- qemu: Fix :cve_nist:`2024-7409` 27- ruby: Fix for :cve_nist:`2024-27282` 28- tiff: Fix :cve_nist:`2024-7006` 29- vim: Fix :cve_nist:`2024-22667`, :cve_nist:`2024-41957`, :cve_nist:`2024-41965` and :cve_nist:`2024-43374` 30- wpa-supplicant: Fix :cve_nist:`2023-52160` 31 32 33Fixes in Yocto-4.0.21 34~~~~~~~~~~~~~~~~~~~~~ 35 36- apr: upgrade to 1.7.5 37- bind: Upgrade to 9.18.28 38- bitbake: data_smart: Improve performance for VariableHistory 39- build-appliance-image: Update to kirkstone head revision 40- cryptodev-module: Fix build for linux 5.10.220 41- gcc-runtime: remove bashism 42- grub: fs/fat: Don't error when mtime is 0 43- image_types.bbclass: Use --force also with lz4,lzop 44- libsoup: fix compile error on centos7 45- linux-yocto/5.15: upgrade to v5.15.164 46- lttng-modules: Upgrade to 2.13.14 47- migration-guide: add release notes for 4.0.20 48- orc: upgrade to 0.4.39 49- poky.conf: bump version for 4.0.21 50- python3-jinja2: upgrade to 3.1.4 51- python3-pycryptodome(x): use python_setuptools_build_meta build class 52- python3: add PACKAGECONFIG[editline] 53- ref-manual: fix typo and move :term:`SYSROOT_DIRS` example 54- sqlite3: CVE_ID correction for :cve_nist:`2023-7104` as patched 55- sqlite3: Rename patch for :cve_nist:`2022-35737` 56- uboot-sign: Fix index error in concat_dtb_helper() with multiple configs 57- vim: upgrade to 9.1.0682 58- wireless-regdb: upgrade to 2024.07.04 59 60 61Known Issues in Yocto-4.0.21 62~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 63 64- N/A 65 66 67Contributors to Yocto-4.0.21 68~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 69 70- Archana Polampalli 71- Ashish Sharma 72- Bruce Ashfield 73- Deepthi Hemraj 74- Divya Chellam 75- Florian Amstutz 76- Guocai He 77- Hitendra Prajapati 78- Hugo SIMELIERE 79- Lee Chee Yang 80- Leon Anavi 81- Matthias Pritschet 82- Ming Liu 83- Niko Mauno 84- Peter Marko 85- Robert Yang 86- Rohini Sangam 87- Ross Burton 88- Siddharth Doshi 89- Soumya Sambu 90- Steve Sakoman 91- Vijay Anusuri 92- Vrushti Dabhi 93- Wang Mingyu 94- Yogita Urade 95 96 97Repositories / Downloads for Yocto-4.0.21 98~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 99 100poky 101 102- Repository Location: :yocto_git:`/poky` 103- Branch: :yocto_git:`kirkstone </poky/log/?h=kirkstone>` 104- Tag: :yocto_git:`yocto-4.0.21 </poky/log/?h=yocto-4.0.21>` 105- Git Revision: :yocto_git:`4cdc553814640851cce85f84ee9c0b58646cd33b </poky/commit/?id=4cdc553814640851cce85f84ee9c0b58646cd33b>` 106- Release Artefact: poky-4cdc553814640851cce85f84ee9c0b58646cd33b 107- sha: 460e3a4ede491a9b66c5d262cd9498d5bcca1f2d880885342b08dc32b967f33d 108- Download Locations: 109 http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.21/poky-4cdc553814640851cce85f84ee9c0b58646cd33b.tar.bz2 110 http://mirrors.kernel.org/yocto/yocto/yocto-4.0.21/poky-4cdc553814640851cce85f84ee9c0b58646cd33b.tar.bz2 111 112openembedded-core 113 114- Repository Location: :oe_git:`/openembedded-core` 115- Branch: :oe_git:`kirkstone </openembedded-core/log/?h=kirkstone>` 116- Tag: :oe_git:`yocto-4.0.21 </openembedded-core/log/?h=yocto-4.0.21>` 117- Git Revision: :oe_git:`c40a3fec49942ac6d25ba33e57e801a550e252c9 </openembedded-core/commit/?id=c40a3fec49942ac6d25ba33e57e801a550e252c9>` 118- Release Artefact: oecore-c40a3fec49942ac6d25ba33e57e801a550e252c9 119- sha: afc2aaf312f9fb2590ae006615557ec605c98eff42bc380a1b2d6e39cfdf8930 120- Download Locations: 121 http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.21/oecore-c40a3fec49942ac6d25ba33e57e801a550e252c9.tar.bz2 122 http://mirrors.kernel.org/yocto/yocto/yocto-4.0.21/oecore-c40a3fec49942ac6d25ba33e57e801a550e252c9.tar.bz2 123 124meta-mingw 125 126- Repository Location: :yocto_git:`/meta-mingw` 127- Branch: :yocto_git:`kirkstone </meta-mingw/log/?h=kirkstone>` 128- Tag: :yocto_git:`yocto-4.0.21 </meta-mingw/log/?h=yocto-4.0.21>` 129- Git Revision: :yocto_git:`f6b38ce3c90e1600d41c2ebb41e152936a0357d7 </meta-mingw/commit/?id=f6b38ce3c90e1600d41c2ebb41e152936a0357d7>` 130- Release Artefact: meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7 131- sha: 7d57167c19077f4ab95623d55a24c2267a3a3fb5ed83688659b4c03586373b25 132- Download Locations: 133 http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.21/meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7.tar.bz2 134 http://mirrors.kernel.org/yocto/yocto/yocto-4.0.21/meta-mingw-f6b38ce3c90e1600d41c2ebb41e152936a0357d7.tar.bz2 135 136meta-gplv2 137 138- Repository Location: :yocto_git:`/meta-gplv2` 139- Branch: :yocto_git:`kirkstone </meta-gplv2/log/?h=kirkstone>` 140- Tag: :yocto_git:`yocto-4.0.21 </meta-gplv2/log/?h=yocto-4.0.21>` 141- Git Revision: :yocto_git:`d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a </meta-gplv2/commit/?id=d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a>` 142- Release Artefact: meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a 143- sha: c386f59f8a672747dc3d0be1d4234b6039273d0e57933eb87caa20f56b9cca6d 144- Download Locations: 145 http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.21/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2 146 http://mirrors.kernel.org/yocto/yocto/yocto-4.0.21/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2 147 148bitbake 149 150- Repository Location: :oe_git:`/bitbake` 151- Branch: :oe_git:`2.0 </bitbake/log/?h=2.0>` 152- Tag: :oe_git:`yocto-4.0.21 </bitbake/log/?h=yocto-4.0.21>` 153- Git Revision: :oe_git:`ec2a99a077da9aa0e99e8b05e0c65dcbd45864b1 </bitbake/commit/?id=ec2a99a077da9aa0e99e8b05e0c65dcbd45864b1>` 154- Release Artefact: bitbake-ec2a99a077da9aa0e99e8b05e0c65dcbd45864b1 155- sha: 1cb102f4c8dbd067f0262072e4e629ec7cb423103111ccdde75a09fcb8f55e5f 156- Download Locations: 157 http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.21/bitbake-ec2a99a077da9aa0e99e8b05e0c65dcbd45864b1.tar.bz2 158 http://mirrors.kernel.org/yocto/yocto/yocto-4.0.21/bitbake-ec2a99a077da9aa0e99e8b05e0c65dcbd45864b1.tar.bz2 159 160yocto-docs 161 162- Repository Location: :yocto_git:`/yocto-docs` 163- Branch: :yocto_git:`kirkstone </yocto-docs/log/?h=kirkstone>` 164- Tag: :yocto_git:`yocto-4.0.21 </yocto-docs/log/?h=yocto-4.0.21>` 165- Git Revision: :yocto_git:`512025edd9b3b6b8d0938b35bb6188c9f3b7f17d </yocto-docs/commit/?id=512025edd9b3b6b8d0938b35bb6188c9f3b7f17d>` 166 167