1.. SPDX-License-Identifier: CC-BY-SA-2.0-UK
2
3Release notes for Yocto-4.0.10 (Kirkstone)
4------------------------------------------
5
6Security Fixes in Yocto-4.0.10
7~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
8
9-  binutils: Fix :cve:`2023-1579`, :cve:`2023-1972`, :cve_mitre:`2023-25584`, :cve_mitre:`2023-25585` and :cve_mitre:`2023-25588`
10-  cargo : Ignore :cve:`2022-46176`
11-  connman: Fix :cve:`2023-28488`
12-  curl: Fix :cve:`2023-27533`, :cve:`2023-27534`, :cve:`2023-27535`, :cve:`2023-27536` and :cve:`2023-27538`
13-  ffmpeg: Fix :cve:`2022-48434`
14-  freetype: Fix :cve:`2023-2004`
15-  ghostscript: Fix :cve_mitre:`2023-29979`
16-  git: Fix :cve:`2023-25652` and :cve:`2023-29007`
17-  go: Fix :cve:`2022-41722`, :cve:`2022-41724`, :cve:`2022-41725`, :cve:`2023-24534`, :cve:`2023-24537` and :cve:`2023-24538`
18-  go: Ignore :cve:`2022-41716`
19-  libxml2: Fix :cve:`2023-28484` and :cve:`2023-29469`
20-  libxpm: Fix :cve:`2022-44617`, :cve:`2022-46285` and :cve:`2022-4883`
21-  linux-yocto: Ignore :cve:`2021-3759`, :cve:`2021-4135`, :cve:`2021-4155`, :cve:`2022-0168`, :cve:`2022-0171`, :cve:`2022-1016`, :cve:`2022-1184`, :cve:`2022-1198`, :cve:`2022-1199`, :cve:`2022-1462`, :cve:`2022-1734`, :cve:`2022-1852`, :cve:`2022-1882`, :cve:`2022-1998`, :cve:`2022-2078`, :cve:`2022-2196`, :cve:`2022-2318`, :cve:`2022-2380`, :cve:`2022-2503`, :cve:`2022-26365`, :cve:`2022-2663`, :cve:`2022-2873`, :cve:`2022-2905`, :cve:`2022-2959`, :cve:`2022-3028`, :cve:`2022-3078`, :cve:`2022-3104`, :cve:`2022-3105`, :cve:`2022-3106`, :cve:`2022-3107`, :cve:`2022-3111`, :cve:`2022-3112`, :cve:`2022-3113`, :cve:`2022-3115`, :cve:`2022-3202`, :cve:`2022-32250`, :cve:`2022-32296`, :cve:`2022-32981`, :cve:`2022-3303`, :cve:`2022-33740`, :cve:`2022-33741`, :cve:`2022-33742`, :cve:`2022-33743`, :cve:`2022-33744`, :cve:`2022-33981`, :cve:`2022-3424`, :cve:`2022-3435`, :cve:`2022-34918`, :cve:`2022-3521`, :cve:`2022-3545`, :cve:`2022-3564`, :cve:`2022-3586`, :cve:`2022-3594`, :cve:`2022-36123`, :cve:`2022-3621`, :cve:`2022-3623`, :cve:`2022-3629`, :cve:`2022-3633`, :cve:`2022-3635`, :cve:`2022-3646`, :cve:`2022-3649`, :cve:`2022-36879`, :cve:`2022-36946`, :cve:`2022-3707`, :cve:`2022-39188`, :cve:`2022-39190`, :cve:`2022-39842`, :cve:`2022-40307`, :cve:`2022-40768`, :cve:`2022-4095`, :cve:`2022-41218`, :cve:`2022-4139`, :cve:`2022-41849`, :cve:`2022-41850`, :cve:`2022-41858`, :cve:`2022-42328`, :cve:`2022-42329`, :cve:`2022-42703`, :cve:`2022-42721`, :cve:`2022-42722`, :cve:`2022-42895`, :cve:`2022-4382`, :cve:`2022-4662`, :cve:`2022-47518`, :cve:`2022-47519`, :cve:`2022-47520`, :cve:`2022-47929`, :cve:`2023-0179`, :cve:`2023-0394`, :cve:`2023-0461`, :cve:`2023-0590`, :cve:`2023-1073`, :cve:`2023-1074`, :cve:`2023-1077`, :cve:`2023-1078`, :cve:`2023-1079`, :cve:`2023-1095`, :cve:`2023-1118`, :cve:`2023-1249`, :cve:`2023-1252`, :cve:`2023-1281`, :cve:`2023-1382`, :cve:`2023-1513`, :cve:`2023-1829`, :cve:`2023-1838`, :cve:`2023-1998`, :cve:`2023-2006`, :cve:`2023-2008`, :cve:`2023-2162`, :cve:`2023-2166`, :cve:`2023-2177`, :cve:`2023-22999`, :cve:`2023-23002`, :cve:`2023-23004`, :cve:`2023-23454`, :cve:`2023-23455`, :cve:`2023-23559`, :cve:`2023-25012`, :cve:`2023-26545`, :cve:`2023-28327` and :cve:`2023-28328`
22-  nasm: Fix :cve:`2022-44370`
23-  python3-cryptography: Fix :cve:`2023-23931`
24-  qemu: Ignore :cve:`2023-0664`
25-  ruby: Fix :cve:`2023-28755` and :cve:`2023-28756`
26-  screen: Fix :cve:`2023-24626`
27-  shadow: Fix :cve:`2023-29383`
28-  tiff: Fix :cve:`2022-4645`
29-  webkitgtk: Fix :cve:`2022-32888` and :cve:`2022-32923`
30-  xserver-xorg: Fix :cve:`2023-1393`
31
32
33Fixes in Yocto-4.0.10
34~~~~~~~~~~~~~~~~~~~~~
35
36-  bitbake: bin/utils: Ensure locale en_US.UTF-8 is available on the system
37-  build-appliance-image: Update to kirkstone head revision
38-  cmake: add CMAKE_SYSROOT to generated toolchain file
39-  glibc: stable 2.35 branch updates.
40-  kernel-devsrc: depend on python3-core instead of python3
41-  kernel: improve initramfs bundle processing time
42-  libarchive: Enable acls, xattr for native as well as target
43-  libbsd: Add correct license for all packages
44-  libpam: Fix the xtests/tst-pam_motd[1|3] failures
45-  libxpm: upgrade to 3.5.15
46-  linux-firmware: upgrade to 20230404
47-  linux-yocto/5.15: upgrade to v5.15.108
48-  migration-guides: add release-notes for 4.0.9
49-  oeqa/utils/metadata.py: Fix running oe-selftest running with no distro set
50-  openssl: Move microblaze to linux-latomic config
51-  package.bbclass: correct check for /build in copydebugsources()
52-  poky.conf: bump version for 4.0.10
53-  populate_sdk_base: add zip options
54-  populate_sdk_ext.bbclass: set :term:`METADATA_REVISION` with an :term:`DISTRO` override
55-  run-postinsts: Set dependency for ldconfig to avoid boot issues
56-  update-alternatives.bbclass: fix old override syntax
57-  wic/bootimg-efi: if fixed-size is set then use that for mkdosfs
58-  wpebackend-fdo: upgrade to 1.14.2
59-  xorg-lib-common: Add variable to set tarball type
60-  xserver-xorg: upgrade to 21.1.8
61
62
63Known Issues in Yocto-4.0.10
64~~~~~~~~~~~~~~~~~~~~~~~~~~~~
65
66- N/A
67
68
69Contributors to Yocto-4.0.10
70~~~~~~~~~~~~~~~~~~~~~~~~~~~~
71
72-  Archana Polampalli
73-  Arturo Buzarra
74-  Bruce Ashfield
75-  Christoph Lauer
76-  Deepthi Hemraj
77-  Dmitry Baryshkov
78-  Frank de Brabander
79-  Hitendra Prajapati
80-  Joe Slater
81-  Kai Kang
82-  Kyle Russell
83-  Lee Chee Yang
84-  Mark Hatle
85-  Martin Jansa
86-  Mingli Yu
87-  Narpat Mali
88-  Pascal Bach
89-  Pawan Badganchi
90-  Peter Bergin
91-  Peter Marko
92-  Piotr Łobacz
93-  Randolph Sapp
94-  Ranjitsinh Rathod
95-  Ross Burton
96-  Shubham Kulkarni
97-  Siddharth Doshi
98-  Steve Sakoman
99-  Sundeep KOKKONDA
100-  Thomas Roos
101-  Virendra Thakur
102-  Vivek Kumbhar
103-  Wang Mingyu
104-  Xiangyu Chen
105-  Yash Shinde
106-  Yoann Congal
107-  Yogita Urade
108-  Zhixiong Chi
109
110
111Repositories / Downloads for Yocto-4.0.10
112~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
113
114poky
115
116-  Repository Location: :yocto_git:`/poky`
117-  Branch: :yocto_git:`kirkstone </poky/log/?h=kirkstone>`
118-  Tag:  :yocto_git:`yocto-4.0.10 </poky/log/?h=yocto-4.0.10>`
119-  Git Revision: :yocto_git:`f53ab3a2ff206a130cdc843839dd0ea5ec4ad02f </poky/commit/?id=f53ab3a2ff206a130cdc843839dd0ea5ec4ad02f>`
120-  Release Artefact: poky-f53ab3a2ff206a130cdc843839dd0ea5ec4ad02f
121-  sha: 8820aeac857ce6bbd1c7ef26cadbb86eca02be93deded253b4a5f07ddd69255d
122-  Download Locations:
123   http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.10/poky-f53ab3a2ff206a130cdc843839dd0ea5ec4ad02f.tar.bz2
124   http://mirrors.kernel.org/yocto/yocto/yocto-4.0.10/poky-f53ab3a2ff206a130cdc843839dd0ea5ec4ad02f.tar.bz2
125
126openembedded-core
127
128-  Repository Location: :oe_git:`/openembedded-core`
129-  Branch: :oe_git:`kirkstone </openembedded-core/log/?h=kirkstone>`
130-  Tag:  :oe_git:`yocto-4.0.10 </openembedded-core/log/?h=yocto-4.0.10>`
131-  Git Revision: :oe_git:`d2713785f9cd2d58731df877bc8b7bcc71b6c8e6 </openembedded-core/commit/?id=d2713785f9cd2d58731df877bc8b7bcc71b6c8e6>`
132-  Release Artefact: oecore-d2713785f9cd2d58731df877bc8b7bcc71b6c8e6
133-  sha: 78e084a1aceaaa6ec022702f29f80eaffade3159e9c42b6b8985c1b7ddd2fbab
134-  Download Locations:
135   http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.10/oecore-d2713785f9cd2d58731df877bc8b7bcc71b6c8e6.tar.bz2
136   http://mirrors.kernel.org/yocto/yocto/yocto-4.0.10/oecore-d2713785f9cd2d58731df877bc8b7bcc71b6c8e6.tar.bz2
137
138meta-mingw
139
140-  Repository Location: :yocto_git:`/meta-mingw`
141-  Branch: :yocto_git:`kirkstone </meta-mingw/log/?h=kirkstone>`
142-  Tag:  :yocto_git:`yocto-4.0.10 </meta-mingw/log/?h=yocto-4.0.10>`
143-  Git Revision: :yocto_git:`a90614a6498c3345704e9611f2842eb933dc51c1 </meta-mingw/commit/?id=a90614a6498c3345704e9611f2842eb933dc51c1>`
144-  Release Artefact: meta-mingw-a90614a6498c3345704e9611f2842eb933dc51c1
145-  sha: 49f9900bfbbc1c68136f8115b314e95d0b7f6be75edf36a75d9bcd1cca7c6302
146-  Download Locations:
147   http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.10/meta-mingw-a90614a6498c3345704e9611f2842eb933dc51c1.tar.bz2
148   http://mirrors.kernel.org/yocto/yocto/yocto-4.0.10/meta-mingw-a90614a6498c3345704e9611f2842eb933dc51c1.tar.bz2
149
150meta-gplv2
151
152-  Repository Location: :yocto_git:`/meta-gplv2`
153-  Branch: :yocto_git:`kirkstone </meta-gplv2/log/?h=kirkstone>`
154-  Tag:  :yocto_git:`yocto-4.0.10 </meta-gplv2/log/?h=yocto-4.0.10>`
155-  Git Revision: :yocto_git:`d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a </meta-gplv2/commit/?id=d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a>`
156-  Release Artefact: meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a
157-  sha: c386f59f8a672747dc3d0be1d4234b6039273d0e57933eb87caa20f56b9cca6d
158-  Download Locations:
159   http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.10/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2
160   http://mirrors.kernel.org/yocto/yocto/yocto-4.0.10/meta-gplv2-d2f8b5cdb285b72a4ed93450f6703ca27aa42e8a.tar.bz2
161
162bitbake
163
164-  Repository Location: :oe_git:`/bitbake`
165-  Branch: :oe_git:`2.0 </bitbake/log/?h=2.0>`
166-  Tag:  :oe_git:`yocto-4.0.10 </bitbake/log/?h=yocto-4.0.10>`
167-  Git Revision: :oe_git:`0c6f86b60cfba67c20733516957c0a654eb2b44c </bitbake/commit/?id=0c6f86b60cfba67c20733516957c0a654eb2b44c>`
168-  Release Artefact: bitbake-0c6f86b60cfba67c20733516957c0a654eb2b44c
169-  sha: 4caa94ee4d644017b0cc51b702e330191677f7d179018cbcec8b1793949ebc74
170-  Download Locations:
171   http://downloads.yoctoproject.org/releases/yocto/yocto-4.0.10/bitbake-0c6f86b60cfba67c20733516957c0a654eb2b44c.tar.bz2
172   http://mirrors.kernel.org/yocto/yocto/yocto-4.0.10/bitbake-0c6f86b60cfba67c20733516957c0a654eb2b44c.tar.bz2
173
174yocto-docs
175
176-  Repository Location: :yocto_git:`/yocto-docs`
177-  Branch: :yocto_git:`kirkstone </yocto-docs/log/?h=kirkstone>`
178-  Tag: :yocto_git:`yocto-4.0.10 </yocto-docs/log/?h=yocto-4.0.10>`
179-  Git Revision: :yocto_git:`8388be749806bd0bf4fccf1005dae8f643aa4ef4 </yocto-docs/commit/?id=8388be749806bd0bf4fccf1005dae8f643aa4ef4>`
180
181