summaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
...
* board/pc: ensure grub.cfg is copied to target filesystemGrégoire Delattre2018-12-314-16/+19
| | | | | | | | | | | | | | | Before this commit, the grub configuration file was copied to the TARGET_DIR in a post-image hook, after the filesystem has been generated. It was kinda working because the board/pc's grub configuration and the default one are the same and the later was copied during the build process of the grub2 package. This commit ensures the custom board/pc grub configuration is copied at the right time. Signed-off-by: Grégoire Delattre <gregoire.delattre@gmail.com> Reviewed-by: Matt Weber <matthew.weber@rockwellcollin.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/lua*: fix indentation of license file listsThomas Petazzoni2018-12-314-8/+8
| | | | | | | The Luarocks addon does not properly indent with a tab, let's fix that manually for the time being, to avoid check-package complaints. Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/pkg-luarocks: add per package upgrade targetFrancois Perrad2018-12-311-0/+6
| | | | | Signed-off-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/lua*: regeneration of hash filesFrancois Perrad2018-12-3152-72/+123
| | | | | | | | This commit aligns the .hash files of Lua packages so that they match with the output of the recently added Buildroot addon for Luarocks. Signed-off-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/lua*: regeneration of Config.inFrancois Perrad2018-12-3132-78/+52
| | | | | | | | | This commit aligns the Config.in files of Lua packages so that they match with the output of the recently added Buildroot addon for Luarocks. Signed-off-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/lua*: regeneration of *.mk filesFrancois Perrad2018-12-3117-25/+29
| | | | | | | | This commit aligns the .mk files of Lua packages so that they match with the output of the recently added Buildroot addon for Luarocks. Signed-off-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/luarocks: add buildroot addonFrancois Perrad2018-12-312-0/+371
| | | | | | | | This addon allows to generate a Buildroot package from a Luarocks package definition. Signed-off-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/php-amqp: fix build with php 7.3.0Frank Hunleth2018-12-311-0/+43
| | | | | | | | | | | | | | | | | | | | | | | | | | | | This includes an upstream patch that fixes the following error: ``` /home/naourr/work/instance-1/output/build/php-amqp-1.9.3/amqp_channel.c: In function 'php_amqp_destroy_fci': /home/naourr/work/instance-1/output/build/php-amqp-1.9.3/amqp_channel.c:104:37: error: lvalue required as decrement operand GC_REFCOUNT(fci->object)--; ^~ /home/naourr/work/instance-1/output/build/php-amqp-1.9.3/amqp_channel.c: In function 'php_amqp_duplicate_fci': /home/naourr/work/instance-1/output/build/php-amqp-1.9.3/amqp_channel.c:115:40: error: lvalue required as increment operand GC_REFCOUNT(source->object)++; ^~ make[1]: *** [Makefile:206: amqp_channel.lo] Error 1 ``` The patch was created from the commit at: https://github.com/pdezwart/php-amqp/commit/1205d3287df0a9ec762a6594b4fa018ed9637d21 Upstream has not yet made an official release that includes it. Fixes: http://autobuild.buildroot.net/results/222873a689f7b9da20acb3604b8364885e96b98d http://autobuild.buildroot.net/results/90710cb2a4873f39aa75db79ff70aa9e4bdf83ae Signed-off-by: Frank Hunleth <fhunleth@troodon-software.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/pulseview: propagate BR2_ENABLE_LOCALE dependency of libsigrokThomas Petazzoni2018-12-311-2/+4
| | | | | | | | | | Since commit 922b82bde9d554237769c21e50f6c5b4f73f41a8 ("libsigrok: bump version to 0.5.1"), libsigrok depends on BR2_ENABLE_LOCALE, but this dependency was not propagated to pulseview. This commit fixes this issue. Reported-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/sigrok-cli: propagate BR2_ENABLE_LOCALE dependency of libsigrokThomas Petazzoni2018-12-311-2/+4
| | | | | | | | | | Since commit 922b82bde9d554237769c21e50f6c5b4f73f41a8 ("libsigrok: bump version to 0.5.1"), libsigrok depends on BR2_ENABLE_LOCALE, but this dependency was not propagated to sigrok-cli. This commit fixes this issue. Reported-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/grpc: needs atomic or sync built-insRyan Barnett2018-12-312-0/+8
| | | | | | | | | | | | | | | | | | | | grpc uses atomic or sync built-ins from the compiler, so we need to add the appropriate dependency. In addition, on some architectures, linking with libatomic is needed to use the atomic builtins. Fixes: http://autobuild.buildroot.org/results/2f208fbfe4e9da94be5b9c030dbd278cb8ba053c/ Signed-off-by: Ryan Barnett <ryan.barnett@rockwellcollins.com> Reviewed-by: Robert Rose <robertroyrose@gmail.com> [Thomas: - add the dependency on sync or atomic builtins in Config.in - use -DCMAKE_EXE_LINKER_FLAGS instead of -DCMAKE_C_STANDARD_LIBRARIES, to be consistent with what we do in some other cmake-based packages - tweak commit log] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/udisks: fix compilation issue with glibc 2.28+Vadim Kochan2018-12-311-0/+81
| | | | | | | | | | | | | It fixes a compilation failure with undefined "minor", "major" and "makedev" objects which is caused by the missing include of <sys/sysmacros.h>. Fixes: http://autobuild.buildroot.net/results/74a8d8c247cfc9c0024e749e1f1ac423c9e90855/ Signed-off-by: Vadim Kochan <vadim4j@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/dropbear: use BR2_SYSTEM_DEFAULT_PATH as default PATHMarkus Mayer2018-12-311-0/+6
| | | | | | | | | | | | We use the configuration option $(BR2_SYSTEM_DEFAULT_PATH) to set the default PATH in dropbear sessions. $(BR2_SYSTEM_DEFAULT_PATH) is a Kconfig string. So it is already quoted, which is exactly what we want. Signed-off-by: Markus Mayer <mmayer@broadcom.com> Reviewed-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/openssh: use BR2_SYSTEM_DEFAULT_PATH as default PATHMarkus Mayer2018-12-311-0/+1
| | | | | | | | | | | | We use the configuration option $(BR2_SYSTEM_DEFAULT_PATH) to set the default PATH in OpenSSH sessions. $(BR2_SYSTEM_DEFAULT_PATH) is a Kconfig string. So it is already quoted, which is exactly what we want. Signed-off-by: Markus Mayer <mmayer@broadcom.com> Reviewed-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* skeleton: use BR2_SYSTEM_DEFAULT_PATH as default PATHMarkus Mayer2018-12-312-1/+2
| | | | | | | | | | | | | | | We substitute the path specified in system/skeleton/etc/profile with the path specified in the configuration variable $(BR2_SYSTEM_DEFAULT_PATH). $(BR2_SYSTEM_DEFAULT_PATH) is a Kconfig string, so it is already double quoted. This means that export PATH=value will now be export PATH="value" in /etc/profile, which is perfectly fine. Signed-off-by: Markus Mayer <mmayer@broadcom.com> Reviewed-by: "Yann E. MORIN" <yann.morin.1998@free.fr> [Thomas: rework commit log about the double quoting] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* system: introduce BR2_SYSTEM_DEFAULT_PATH optionMarkus Mayer2018-12-312-0/+14
| | | | | | | | | | | | | The configuration option BR2_SYSTEM_DEFAULT_PATH allows the user to override the default path, which can be used by /etc/profile and some system daemons. It defaults to the value previously hard-coded in /etc/profile. This default should be suitable for most users. Signed-off-by: Markus Mayer <mmayer@broadcom.com> Reviewed-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/wireshark: security bump to version 2.6.5Peter Korsgaard2018-12-312-3/+3
| | | | | | | | | | | | | | | The following vulnerabilities have been fixed: - wnpa-sec-2018-51 The Wireshark dissection engine could crash. Bug 14466. CVE-2018-19625. - wnpa-sec-2018-52 The DCOM dissector could crash. Bug 15130. CVE-2018-19626. - wnpa-sec-2018-53 The LBMPDM dissector could crash. Bug 15132. CVE-2018-19623. - wnpa-sec-2018-54 The MMSE dissector could go into an infinite loop. Bug 15250. CVE-2018-19622. - wnpa-sec-2018-55 The IxVeriWave file parser could crash. Bug 15279. CVE-2018-19627. - wnpa-sec-2018-56 The PVFS dissector could crash. Bug 15280. CVE-2018-19624. - wnpa-sec-2018-57 The ZigBee ZCL dissector could crash. Bug 15281. CVE-2018-19628. Signed-off-by: Peter Korsgaard <peter@korsgaard.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/libeastl: new packageMatt Weber2018-12-315-0/+44
| | | | | | | | | | | | | | | | | This patch adds the Entertainment Arts Standard Template Library. The initial version uses the latest hash so that the aarch64 support is included vs Buildroot having to apply the aarch64 support patch. Signed-off-by: Maury Anderson <maury.anderson@rockwellcollins.com> Signed-off-by: Matthew Weber <matthew.weber@rockwellcollins.com> [Thomas: - add missing BR2_INSTALL_LIBSTDCPP dependency - use the github helper instead of the git site method, and adjust hash consequently - drop INSTALL_TARGET_CMDS, the default cmake-package implementation works fine] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/glib-networking: bump version to 2.56.1Adam Duskett2018-12-313-17/+19
| | | | | | | | | | | | Other changes: - glib-networking is now a meson package and has no support for auto-tools. - Update configure options to reflect the above change to meson. - gnutls is now a mandatory dependency of glib-networking - Add License file hash. Signed-off-by: Adam Duskett <Aduskett@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/atk: bump to version 2.30.0Fabrice Fontaine2018-12-312-7/+9
| | | | | | | | | - Switch to meson-package - Remove ATK_INSTALL_STAGING_OPTS and host-pkgconf: not needed anymore - Add hash for license file Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/libglib2: bump to version 2.56.3Petr Vorel2018-12-304-105/+3
| | | | | | | Drop 2 patches accepted by upstream. Signed-off-by: Petr Vorel <petr.vorel@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/rauc: target rauc needs unsquashfs at runtimeTrent Piepho2018-12-301-0/+1
| | | | | | | | | | | | | In order to provide info about a bundle file, e.g. running "rauc info bundle.raucb", rauc needs to use the unsquashfs progam from the squashfs package. This was not documented until upstream commit 10c501c12752 ("docs: integration: document need for 'unsquashfs' tool for 'rauc info'"), but is already present in rauc. Signed-off-by: Trent Piepho <tpiepho@impinj.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/sqlite: security bump to version 3.25.3Peter Korsgaard2018-12-302-3/+3
| | | | | | | | | | | | | | | | | Fixes CVE-2018-20346: SQLite before 3.25.3, when the FTS3 extension is enabled, encounters an integer overflow (and resultant buffer overflow) for FTS3 queries that occur after crafted changes to FTS3 shadow tables, allowing remote attackers to execute arbitrary code by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases), aka Magellan. For more details, see: https://blade.tencent.com/magellan/index_en.html https://www.sqlite.org/releaselog/3_25_3.html https://www.mail-archive.com/sqlite-users@mailinglists.sqlite.org/msg113218.html Signed-off-by: Peter Korsgaard <peter@korsgaard.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/exempi: use --disable-foo instead of --enable-foo=noThomas Petazzoni2018-12-301-1/+1
| | | | Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/azure-iot-sdk-c: bump to version 2018-12-13NikitaSobolev2018-12-301-1/+6
| | | | | | | | | | | | | Bump azure-iot-sdk-c to 2018-12-13 release. We need to specify a value for CMAKE_SYSTEM_VERSION, because the azure-iot-sdk-c build system is doing a test on this value, and CMake doesn't internally define it when cross-compiling (see https://cmake.org/cmake/help/v3.4/variable/CMAKE_SYSTEM_VERSION.html). Signed-off-by: Nikita Sobolev <Nikita.Sobolev@synopsys.com> [Thomas: drop patch, pass dummy CMAKE_SYSTEM_VERSION instead.] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/exempi: new packageIlya Averyanov2018-12-305-0/+37
| | | | | | | | | | | | | Signed-off-by: Ilya Averyanov <averyanovin@gmail.com> [Thomas: - add missing dependencies on expat and zlib - add missing depends on C++ and dynamic library support, and the corresponding Config.in comment - add the missing entry to the DEVELOPERS file - add the missing hash for the license file - adjust indentation in the Config.in file - use --disable-unittest instead of --enable-unittest=no.] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/python-pyasn1: bump to version 0.4.5Asaf Kahlon2018-12-302-5/+5
| | | | | | | License change - 2019 year bump. Signed-off-by: Asaf Kahlon <asafka7@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/sngrep: fix build with musl libcBaruch Siach2018-12-301-0/+43
| | | | | | | | | | | | | | Add upstream patch fixing typo that causes build failure under musl, where stdin is constant. Fixes: http://autobuild.buildroot.net/results/ab827021d4dae8ae98f667328e4a9a7e1c4288d0/ http://autobuild.buildroot.net/results/e99e937c05be38d33e029fbfc737665b590c33bd/ http://autobuild.buildroot.net/results/e8ca0a40d8cd2c333b55fa9e67ddeead1f502d5a/ Cc: Adam Duskett <aduskett@gmail.com> Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* utils/scanpypi: write _SOURCE only when neededAsaf Kahlon2018-12-301-7/+8
| | | | | | | | | | | For some packages, there's no need to add the _SOURCE variable, since the name of the source file is the same as the name of the package (like python-engineio). Hence, we'll add it to the .mk file only if needed. Signed-off-by: Asaf Kahlon <asafka7@gmail.com> Reviewed-by: Yegor Yefremov <yegorslists@googlemail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/lua-curl: fix define for lcurl_mime_t for curl 7.56.0Vadim Kochan2018-12-301-0/+28
| | | | | | | | | | | | | Backport a upstream patch that removes a ';' at the end of #define for lcurl_mime_t. Fixes: http://autobuild.buildroot.net/results/f3c0c1aa8f860fddc1312823530ab369b198820c/ Signed-off-by: Vadim Kochan <vadim4j@gmail.com> [Thomas: use upstream patch instead.] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/python-six: bump to version 1.12.0Asaf Kahlon2018-12-302-6/+7
| | | | | | | LICENSE update - year bump. Signed-off-by: Asaf Kahlon <asafka7@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/wget: add optional dependency on pcre/pcre2Baruch Siach2018-12-301-0/+10
| | | | | | | Default to pcre2 to mimic upstream configure.ac. Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/wget: bump to version 1.20.1Baruch Siach2018-12-302-3/+4
| | | | | Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/e2fsprogs: bump to version 1.44.5Baruch Siach2018-12-303-322/+5
| | | | | | | | | | | | | | | Drop musl build fix patch; issue fixed in upstream commit 98c6113b4147 ("Define __GNUC_PREREQ if necessary"). Drop the forced -DHAVE_SYS_STAT_H; issue fixed in upstream commit 68192a8f83e00 ("util: allow subst to build in cross build environemnt"). Drop libmagic disable in the host package. RHEL 5 is no longer a supported host platform; cfr. commit 27797caf76b ("docs/manual: update host gcc minimum required version"). Signed-off-by: Baruch Siach <baruch@tkos.co.il> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/acpica: add missing dependencies for host variantThomas Petazzoni2018-12-301-0/+1
| | | | | | | | | Just like the target acpica package needs host-flex and host-bison, the host variant also needs the same dependencies. This allows to fix the build of "make host-acpica", which was detected thanks to per-package directory support. Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/terminology: convert to the meson-package infrastructureThomas Petazzoni2018-12-301-23/+5
| | | | | | | | | | | This conversion reduces the complexity of the .mk file, but also allows to prepare terminology for per-package meson cross-compilation.conf, where the cross-compilation.conf file will not be located in $(HOST_DIR)/etc/meson/cross-compilation.conf. Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> Reviewed-by: Romain Naour <romain.naour@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/docker-containerd: add missing dependency on host-pkgconfThomas Petazzoni2018-12-301-1/+1
| | | | | | | | | | | | | | When libsseccomp support is enabled, docker-containerd uses pkg-config to find libsseccomp, so we must depend on host-pkconf. Fixes the following build issue, detected with per-package directory support: pkg-config: exec: "pkg-config": executable file not found in $PATH Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com> Signed-off-by: Christian Stewart <christian@paral.in> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/solarus: bump to version 1.6.0Romain Naour2018-12-304-20/+22
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Here are the big features in Solarus 1.6: * OpenGL backend and support for GLSL shaders (by Stdgregwar and Vlag) * Support for external script editor of your choice. Zerobrane integration: autocompletion, debug breakpoints, stack inspection (by Stdgregwar) * Multiple improvements in map editor, including the much-requested contour generator, tile replacement and support for multiple tilesets * Multiple improvements in tileset editor, including multiple selection, custom frame count for animated tile patterns * Multiple improvements in sprite editor * Data import from other quests * Beautiful new free tilesets (Zoria by DragonDePlatino, Ocean’s Heart by Max Mraz) * Free pixel fonts (by Wekhter) * Custom hero states in Lua to allow advanced customization of the hero * Tons of new features in the Lua API Last but not least: Solarus 1.6 is fully compatible with Solarus 1.5 quests. You have no work to do to upgrade your project to Solarus 1.6. Starting with version 1.6, the Solarus engine now require OpenGL (GLX) support. The OpenGL ES support doesn't build, this issue has been reported upstream [1]. Update the download url since solarus no longer use github. Rebase patch. See: http://www.solarus-games.org/2018/12/22/solarus-1-6-released [1] https://gitlab.com/solarus-games/solarus/issues/1324 Signed-off-by: Romain Naour <romain.naour@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/apache: enable optional support for nghttp2Ryan Coe2018-12-301-0/+9
| | | | | Signed-off-by: Ryan Coe <bluemrp9@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/mariadb: security bump version to 10.3.11Ryan Coe2018-12-303-51/+7
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Remove 0002-cmake-fix-ucontext-dection.path as it is now upstream. Hash updated for README.md because upstream changed bug report links. Release notes: https://mariadb.com/kb/en/mariadb-10311-release-notes/ Changelog: https://mariadb.com/kb/en/mariadb-10311-changelog/ Fixes the following security vulnerabilities: CVE-2018-3282 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Storage Engines). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2016-9843 - The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation. CVE-2018-3174 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.5.61 and prior, 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. While the vulnerability is in MySQL Server, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3143 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3156 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3251 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.6.41 and prior, 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3185 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server as well as unauthorized update, insert or delete access to some of MySQL Server accessible data. CVSS 3.0 Base Score 5.5 (Integrity and Availability impacts). CVE-2018-3277 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3162 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3173 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3200 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVE-2018-3284 - Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.7.23 and prior and 8.0.12 and prior. Difficult to exploit vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. Signed-off-by: Ryan Coe <bluemrp9@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/msmtp: prefer gnutls over opensslRyan Coe2018-12-301-4/+4
| | | | | | | | | | | | | Msmtp no longer uses openssl as default [1], and even discourages the use of the OpenSSL. Let's follow this upstream recommendation: if the Buildroot configuration has both OpenSSL and GnuTLS enabled, GnuTLS will be preferred over OpenSSL. [1] https://marlam.de/msmtp/news/openssl-discouraged/ Signed-off-by: Ryan Coe <bluemrp9@gmail.com> [Thomas: improve commit log] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/msmtp: fix configure with openssl/gnutlsRyan Coe2018-12-301-3/+3
| | | | | | | | | | | Since the bump of msmtp from 1.6.6 to 1.8.0 in commit b68ad1b2d0d1c290489e0b4e1afec46b8220a8b9 ("msmtp: bump to version 1.8.0"), the configure option to select the SSL/TLS implementation is no longer --with-ssl, but --with-tls. Signed-off-by: Ryan Coe <bluemrp9@gmail.com> [Thomas: improve commit log] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* arch/arm: add an armv8.3a coreYann E. MORIN2018-12-301-0/+12
| | | | | | | | | | | | | | The armv8.3a generation is a cumulative extension to armv8.2a. Since gcc correctly enables the appropriate extensions based on the core name, we don't really need to introduce a separate config for armv8.3a, and we can piggyback on armv8a. This new core is AArch64 only. Signed-off-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Cc: Thomas Petazzoni <thomas.petazzoni@bootlin.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* arch/arm: add armv8.2a cortex-based coresYann E. MORIN2018-12-301-0/+26
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | The armv8.2a generation is a cumulative extension to armv8.1a. Since gcc correctly enables the appropriate extensions based on the core name, we don't really need to introduce a separate config for armv8.2a, and we can piggyback on armv8a. In theory, gcc supports those cores in arm mode. However, configuring gcc thusly generates a non-working gcc that constantly whines: cc1: warning: switch -mcpu=cortex-a55 conflicts with -march=armv8.2-a switch It is to be noted that the -march flag is internal to gcc. It is not something that Buildroot did set when configuring gcc; Buildroot only ever sets --with-cpu (not --with-arch). Additionally, uClibc fails to build entirely (unsure if this is caused by the above, or if it is a separate issue, though), with: #### Your compiler does not support TLS and you are trying to build uClibc-ng #### with NPTL support. Upgrade your binutils and gcc to versions which #### support TLS for your architecture. Do not contact uClibc-ng maintainers #### about this problem. Glibc and musl have not been tested in arm mode, so maybe we could have a toolchain that eventually works (or at least, pretends to be working), but we decided it was not worth the effort. Thus, we restrict those cores to AArch64 mode only. Signed-off-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Cc: Thomas Petazzoni <thomas.petazzoni@bootlin.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* arch/arm: restrict more armv8a cores to aarch64Yann E. MORIN2018-12-301-7/+1
| | | | | | | | | | | | | Since gcc-8, falkor and qdf24xx have been available only as AArch64. Indeed, according to upstream commit [1], the released HW has never supported AArch32. [1] https://gcc.gnu.org/git/?p=gcc.git;a=commit;h=96a411453d39e6583fa4d7008761a1977cdbe7fa Signed-off-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Cc: Thomas Petazzoni <thomas.petazzoni@bootlin.com> [Thomas: improve commit log] Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/systemd: fix build on toolchain without C++James Hilliard2018-12-301-0/+60
| | | | | | | | This is a backport from upstream. Signed-off-by: James Hilliard <james.hilliard1@gmail.com> Acked-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/python-pysmi: bump to version 0.3.3Asaf Kahlon2018-12-302-5/+5
| | | | | | | Change in license file - year bump. Signed-off-by: Asaf Kahlon <asafka7@gmail.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* arch/arm: drop useless conditional dependencies for 64-bit-only coresYann E. MORIN2018-12-301-9/+0
| | | | | | | | | Those cores are already guarded by a 64-bit-only condition, so they can't even select additional options in non-64-bit mode anyway... Signed-off-by: "Yann E. MORIN" <yann.morin.1998@free.fr> Cc: Thomas Petazzoni <thomas.petazzoni@bootlin.com> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* DEVELOPERS: remove Sebastien BourdelinThomas Petazzoni2018-12-301-7/+0
| | | | | | | | | | | | | | | | His e-mail address is no longer valid. Sending an e-mail to this address says (yes, the actual text is in French): Veuillez prendre note que cette adresse n'est plus valide à la suite du départ de l'employé. which means: Please take note that this address is no longer valid following the employee departure. Therefore, it does not make sense to list Sebastien in our DEVELOPERS file. Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
* package/luaposix: bump version to 34.0.4James Hilliard2018-12-303-3/+4
| | | | | | | | This version has a new dependency on lua-std-normalize. Signed-off-by: James Hilliard <james.hilliard1@gmail.com> Acked-by: Francois Perrad <francois.perrad@gadz.org> Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
OpenPOWER on IntegriCloud