Compare commits
164
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
c9620ac37e | ||
|
|
7fd80897a1 | ||
|
|
1889815afc | ||
|
|
0bc0c719e3 | ||
|
|
92bb20468a | ||
|
|
a007e8fefd | ||
|
|
e74d8d1199 | ||
|
|
0ad5993c48 | ||
|
|
18fa9c60ef | ||
|
|
33ea45a4fb | ||
|
|
7704fded71 | ||
|
|
4724ca20ae | ||
|
|
7d9899dbd1 | ||
|
|
6c0f612efa | ||
|
|
be585e15ed | ||
|
|
420b686e37 | ||
|
|
a4469e8767 | ||
|
|
138e4b2d14 | ||
|
|
d1b481bf80 | ||
|
|
445badfa8b | ||
|
|
bb0db27065 | ||
|
|
c6cf277662 | ||
|
|
40e308bc50 | ||
|
|
362d72d6f4 | ||
|
|
70f75b7ad9 | ||
|
|
ea76f2425d | ||
|
|
24be3751ab | ||
|
|
aa14c37abf | ||
|
|
08f268ace7 | ||
|
|
2e84625215 | ||
|
|
64d2f706f7 | ||
|
|
b5486babf7 | ||
|
|
29c17da5b0 | ||
|
|
886851a66f | ||
|
|
0c37db904d | ||
|
|
8a87115a8f | ||
|
|
c595b5b828 | ||
|
|
af9f7bdd7c | ||
|
|
1bc589c515 | ||
|
|
6f9a2c8083 | ||
|
|
0455bcc804 | ||
|
|
e09b44b36a | ||
|
|
be577adfbc | ||
|
|
8157e14da6 | ||
|
|
da6c5f7434 | ||
|
|
1bbcfb3b5b | ||
|
|
498406cfdb | ||
|
|
0980919b90 | ||
|
|
9749b6fbc9 | ||
|
|
c7288d19b9 | ||
|
|
b570feeb64 | ||
|
|
e2143da2c1 | ||
|
|
6ad85c42fb | ||
|
|
fd1c47e287 | ||
|
|
4426fd6b64 | ||
|
|
ecd9ffbdd3 | ||
|
|
0ee60ab4d3 | ||
|
|
41bd9a5839 | ||
|
|
f62d6af7fd | ||
|
|
e8c9054461 | ||
|
|
c5ca74ba46 | ||
|
|
8b4a5da997 | ||
|
|
849306c66d | ||
|
|
310d70cb08 | ||
|
|
460cce9247 | ||
|
|
cf454846b5 | ||
|
|
5d1912ba3d | ||
|
|
79299da8c4 | ||
|
|
27914e481d | ||
|
|
76d7d1f1b9 | ||
|
|
029fc4fb3a | ||
|
|
b1f9e8cc15 | ||
|
|
5a07c6f8b3 | ||
|
|
1650865220 | ||
|
|
2538748565 | ||
|
|
80ade2cbab | ||
|
|
d8e6f912c6 | ||
|
|
3126215c3e | ||
|
|
a2d58f5145 | ||
|
|
23872a77b2 | ||
|
|
f1a9811a45 | ||
|
|
996554d0bc | ||
|
|
7596ec2b69 | ||
|
|
b1b6002049 | ||
|
|
e93fde7c81 | ||
|
|
b0d9c27bb3 | ||
|
|
325f755182 | ||
|
|
2167526591 | ||
|
|
d3fe498721 | ||
|
|
e9115cd214 | ||
|
|
8b757ac451 | ||
|
|
dd1fb4221c | ||
|
|
21e949b3e6 | ||
|
|
8016537b7d | ||
|
|
e61b83c61b | ||
|
|
50a362afac | ||
|
|
38ac87a690 | ||
|
|
e39cad0915 | ||
|
|
0f835efc9c | ||
|
|
c22118bbfb | ||
|
|
d37527ba49 | ||
|
|
25ba164372 | ||
|
|
be24ec40cd | ||
|
|
64ee690875 | ||
|
|
84754f5c87 | ||
|
|
ecec8f8f32 | ||
|
|
b4554306d2 | ||
|
|
17fedf85c5 | ||
|
|
fa11dff848 | ||
|
|
b8e9a352d2 | ||
|
|
0a0dfa9cb2 | ||
|
|
08dd363ff9 | ||
|
|
fa5719e8f7 | ||
|
|
fef9d959cb | ||
|
|
511a6157e2 | ||
|
|
b3fad7e105 | ||
|
|
d016e8b886 | ||
|
|
83c1c81d1c | ||
|
|
8bf55f1da7 | ||
|
|
a1e5061463 | ||
|
|
7bd02e75ae | ||
|
|
598f537316 | ||
|
|
6c060f3d1a | ||
|
|
9bd1746ee4 | ||
|
|
ba7bd5efd0 | ||
|
|
40acbd72c3 | ||
|
|
33d97647f1 | ||
|
|
8dc93af8b2 | ||
|
|
5f83467a0f | ||
|
|
c1a393045f | ||
|
|
47811443fd | ||
|
|
06b1879533 | ||
|
|
ba8f13e5d7 | ||
|
|
58e5e26cf5 | ||
|
|
4088777f7b | ||
|
|
a210062ce2 | ||
|
|
8b83136326 | ||
|
|
61855e0bc7 | ||
|
|
326df39ca3 | ||
|
|
90b0c694a1 | ||
|
|
674d55f9f5 | ||
|
|
c2da8dee8b | ||
|
|
b302c4bbd6 | ||
|
|
cea73e726b | ||
|
|
8be0c546ae | ||
|
|
2182134836 | ||
|
|
e0a8550dc2 | ||
|
|
30a1d2196e | ||
|
|
fee127154a | ||
|
|
35d3dd33da | ||
|
|
7805e72284 | ||
|
|
ba77d95931 | ||
|
|
45963b1c7c | ||
|
|
ec41522c2d | ||
|
|
ebd4fe2723 | ||
|
|
17555734e8 | ||
|
|
8a50eb162b | ||
|
|
c807d5e4ec | ||
|
|
09be912cdb | ||
|
|
2d8d9c45f5 | ||
|
|
96706bc7fe | ||
|
|
dfb9f3412a | ||
|
|
38065ea890 | ||
|
|
4c53364d89 |
+5
-10
@@ -131,12 +131,11 @@ package/am33x-cm3/0004-Makefile-add-fno-builtin.patch Upstream
|
||||
package/am33x-cm3/S93-am335x-pm-firmware-load Variables
|
||||
package/android-tools/0001-Fix-makefiles-for-out-of-tree-build.patch Upstream
|
||||
package/android-tools/0002-Fix-adbd-for-non-Ubuntu-systems.patch Upstream
|
||||
package/android-tools/0003-Fix-build-issue-with-uclibc.patch Upstream
|
||||
package/android-tools/0004-Fix-build-issue-with-musl.patch Upstream
|
||||
package/android-tools/0005-Use-pkgconf-to-get-libs-deps.patch Upstream
|
||||
package/android-tools/0006-fix-big-endian-build.patch Upstream
|
||||
package/android-tools/0007-include-cdefs-h-when-needed.patch Upstream
|
||||
package/android-tools/0008-Include-sysmacros.h-to-compile-with-glibc-2.28.patch Sob Upstream
|
||||
package/android-tools/0005-makefiles-use-pkgconf-to-get-libs-deps.patch Upstream
|
||||
package/android-tools/0006-Fix-build-on-big-endian-systems.patch Upstream
|
||||
package/android-tools/0007-Include-cdefs.h-wherever-it-is-needed.patch Upstream
|
||||
package/android-tools/0008-usb_linux.c-fix-minor-major-build-failure-due-to-gli.patch Upstream
|
||||
package/android-tools/0009-Fix-makefiles-for-out-of-tree-ext4_utils-build.patch Upstream
|
||||
package/android-tools/0010-adb-added-patch-for-openssl-1.1.0-compatibility.patch Upstream
|
||||
package/aoetools/0001-Change-shell-script-interpreter-from-bin-bash-to-bin.patch Upstream
|
||||
@@ -223,7 +222,7 @@ package/cache-calibrator/0001-Fix-conflicting-round-function.patch Upstream
|
||||
package/cairo/0001-_arc_max_angle_for_tolerance_normalized-fix-infinite.patch Upstream
|
||||
package/cairo/0002-Fix-mask-usage-in-image-compositor.patch Upstream
|
||||
package/caps/0001-Fix-stdint-types-with-musl.patch Upstream
|
||||
package/cdrkit/0001-no-rcmd.patch Upstream
|
||||
package/cdrkit/0001-fix-build-with-uClibc.patch Upstream
|
||||
package/cdrkit/0002-define-__THROW-to-avoid-build-issue-with-musl.patch Upstream
|
||||
package/cdrkit/0003-Add-extern-to-char-outfile-declaration-to-fix-build-.patch Upstream
|
||||
package/cfm/S65cfm Indent Variables
|
||||
@@ -329,8 +328,6 @@ package/dvdrw-tools/0002-Include-sysmacros.h-to-compile-with-newer-gcc.patch Ups
|
||||
package/earlyoom/0001-main.c-fix-build-with-kernel-4.3.patch Upstream
|
||||
package/earlyoom/S02earlyoom Indent Shellcheck
|
||||
package/ebtables/0001-replace-ebtables-save-perl-script-with-bash.patch Upstream
|
||||
package/ebtables/0002-ebtables.h-restore-KERNEL_64_USERSPACE_32-checks.patch Upstream
|
||||
package/ebtables/0003-configure.ac-add-option-enable-kernel-64-userland-32.patch Upstream
|
||||
package/ecryptfs-utils/0001-musl.patch Upstream
|
||||
package/ecryptfs-utils/0002-openssl110.patch Upstream
|
||||
package/ecryptfs-utils/0003-fix-parallel-build-issue.patch Upstream
|
||||
@@ -1377,8 +1374,6 @@ package/x11r7/xdriver_xf86-video-nouveau/0001-nouveau-fixup-driver-for-new-X-ser
|
||||
package/x11r7/xdriver_xf86-video-tdfx/0001-cross.patch Sob Upstream
|
||||
package/x11r7/xserver_xorg-server/0001-include-misc.h-fix-uClibc-build.patch Upstream
|
||||
package/x11r7/xserver_xorg-server/S40xorg Shellcheck Variables
|
||||
package/x11vnc/0001-Fix-build-on-32bit-arches-with-64bit-time_t.patch Upstream
|
||||
package/x11vnc/0002-scan-limit-access-to-shared-memory-segments-to-current-user.patch Upstream
|
||||
package/xen/0001-9pfs-include-linux-limits.h-for-XATTR_SIZE_MAX.patch Upstream
|
||||
package/xen/0002-Fix-build-with-64-bits-time_t.patch Upstream
|
||||
package/xen/0003-libs-light-fix-tv_sec-printf-format.patch Upstream
|
||||
|
||||
@@ -1,3 +1,50 @@
|
||||
2024.02.10, released January 9th, 2025
|
||||
|
||||
Important / security related fixes.
|
||||
|
||||
Infrastructure:
|
||||
|
||||
- Ensure CONFIG_TRIM_UNUSED_KSYMS is disabled when building
|
||||
external Linux kernel modules
|
||||
|
||||
Updated/fixed packages: apr, bc, cdrkit, cryptodev-linux,
|
||||
freeipmi, gdb, gnupg2, gnutls, go, gobject-introspection,
|
||||
grub2, gst-omx, gst1-devtools, gst1-libav, gst1-plugins-bad,
|
||||
gst1-plugins-base, gst1-plugins-good, gst1-plugins-ugly,
|
||||
gst1-python, gst1-rtsp-server, gst1-vaapi, gstreamer1,
|
||||
gstreamer1-editing-services, iperf3, libcurl, libsha1,
|
||||
libsndfile, libsoup3, libvirt, libxcrypt, linux, linux-pam,
|
||||
mosquitto, netatalk, nettle, octave, opensc, perl, pixman,
|
||||
procps-ng, python-django, python3, qt6base, samba4, skeleton,
|
||||
subversion, tzdata, v4l2loopback, webkitgtk, wget, wireshark,
|
||||
wpewebkit, zic
|
||||
|
||||
Issues resolved:
|
||||
- gdb package doesn't have a licence hash in the gdb.hash file
|
||||
https://gitlab.com/buildroot.org/buildroot/-/issues/66
|
||||
- package/libsha1: Build failure with GCC 14 [-Wimplicit-int]
|
||||
https://gitlab.com/buildroot.org/buildroot/-/issues/69
|
||||
- [2024.02.9] Mosquitto doesn't build
|
||||
https://gitlab.com/buildroot.org/buildroot/-/issues/78
|
||||
|
||||
2024.02.9, released December 8th, 2024
|
||||
|
||||
Important / security related fixes.
|
||||
|
||||
Updated/fixed packages: alsa-lib, android-tools, babeld,
|
||||
bmap-tools, boost, ebtables, expat, fbv, foot, frr, gamin,
|
||||
gnutls, intel-microcode, irssi, libcurl, libkrb5, libmodbus,
|
||||
libvpl, linux-tools, lmbench, mbedtls, mosquitto, musl,
|
||||
musl-compat-headers, nfs-utils, ntp, php, postgresql,
|
||||
procps-ng, python-psycopg2, python-sip, qt6base, quagga,
|
||||
rt-tests, sshguard, systemd, tiff, x11vnc
|
||||
|
||||
Issues resolved:
|
||||
- procps-ng: builderror in 2024.08
|
||||
https://gitlab.com/buildroot.org/buildroot/-/issues/38
|
||||
- fbv package download link is broken in long term support branch
|
||||
https://gitlab.com/buildroot.org/buildroot/-/issues/73
|
||||
|
||||
2024.02.8, released November 14th, 2024
|
||||
|
||||
Important / security related fixes.
|
||||
|
||||
@@ -274,7 +274,7 @@ config BR2_KERNEL_MIRROR
|
||||
|
||||
config BR2_GNU_MIRROR
|
||||
string "GNU Software mirror"
|
||||
default "http://ftpmirror.gnu.org"
|
||||
default "https://ftpmirror.gnu.org"
|
||||
help
|
||||
GNU has multiple software mirrors scattered around the
|
||||
world. The following allows you to select your preferred
|
||||
@@ -948,7 +948,7 @@ config BR2_FORTIFY_SOURCE_2
|
||||
# gcc bug https://gcc.gnu.org/bugzilla/show_bug.cgi?id=61164
|
||||
depends on !BR2_TOOLCHAIN_BUILDROOT || BR2_TOOLCHAIN_GCC_AT_LEAST_6
|
||||
help
|
||||
This option sets _FORTIFY_SOURCES to 2 and some more
|
||||
This option sets _FORTIFY_SOURCE to 2 and some more
|
||||
checking is added, but some conforming programs might fail.
|
||||
Also adds checks at run-time (detected buffer overflow
|
||||
terminates the program)
|
||||
@@ -957,7 +957,7 @@ config BR2_FORTIFY_SOURCE_3
|
||||
bool "Extended"
|
||||
depends on BR2_TOOLCHAIN_GCC_AT_LEAST_12
|
||||
help
|
||||
This option sets _FORTIFY_SOURCES to 3 and even more
|
||||
This option sets _FORTIFY_SOURCE to 3 and even more
|
||||
checking is added compared to level 2. Extends checks at
|
||||
run-time that can introduce an additional performance
|
||||
overhead.
|
||||
|
||||
+5
-68
@@ -262,18 +262,6 @@ F: package/python-bottle/
|
||||
F: package/sqlcipher/
|
||||
F: package/stress/
|
||||
|
||||
N: Asaf Kahlon <asafka7@gmail.com>
|
||||
F: package/collectd/
|
||||
F: package/libfuse3/
|
||||
F: package/libuv/
|
||||
F: package/python*
|
||||
F: package/snmpclitools/
|
||||
F: package/spdlog/
|
||||
F: package/uftp/
|
||||
F: package/uftrace/
|
||||
F: package/uvw/
|
||||
F: package/zeromq/
|
||||
|
||||
N: Ash Charles <ashcharles@gmail.com>
|
||||
F: package/pru-software-support/
|
||||
F: package/ti-cgt-pru/
|
||||
@@ -296,7 +284,6 @@ F: package/git/
|
||||
N: Bartosz Bilas <b.bilas@grinn-global.com>
|
||||
F: board/stmicroelectronics/stm32mp157a-dk1/
|
||||
F: configs/stm32mp157a_dk1_defconfig
|
||||
F: package/cegui/
|
||||
F: package/log4qt/
|
||||
F: package/python-esptool/
|
||||
F: package/python-pyaes/
|
||||
@@ -1750,6 +1737,7 @@ F: support/testing/tests/package/test_acpica.py
|
||||
F: support/testing/tests/package/test_acpica/
|
||||
F: support/testing/tests/package/test_apache.py
|
||||
F: support/testing/tests/package/test_attr.py
|
||||
F: support/testing/tests/package/test_audit.py
|
||||
F: support/testing/tests/package/test_bc.py
|
||||
F: support/testing/tests/package/test_bitcoin.py
|
||||
F: support/testing/tests/package/test_brotli.py
|
||||
@@ -1864,6 +1852,7 @@ F: support/testing/tests/package/test_python_pyqt5/
|
||||
F: support/testing/tests/package/test_python_spake2.py
|
||||
F: support/testing/tests/package/test_rdma_core.py
|
||||
F: support/testing/tests/package/test_rdma_core/
|
||||
F: support/testing/tests/package/test_rrdtool.py
|
||||
F: support/testing/tests/package/test_screen.py
|
||||
F: support/testing/tests/package/test_sed.py
|
||||
F: support/testing/tests/package/test_socat.py
|
||||
@@ -1886,6 +1875,8 @@ F: support/testing/tests/package/test_weston.py
|
||||
F: support/testing/tests/package/test_weston/
|
||||
F: support/testing/tests/package/test_xfsprogs.py
|
||||
F: support/testing/tests/package/test_xfsprogs/
|
||||
F: support/testing/tests/package/test_xvisor.py
|
||||
F: support/testing/tests/package/test_xxhash.py
|
||||
F: support/testing/tests/package/test_xz.py
|
||||
F: support/testing/tests/package/test_z3.py
|
||||
F: support/testing/tests/package/test_z3/
|
||||
@@ -1997,11 +1988,6 @@ F: package/python-huepy/
|
||||
F: package/python-tqdm/
|
||||
F: package/rtl8189es/
|
||||
|
||||
N: Louis-Paul Cordier <lpdev@cordier.org>
|
||||
F: package/intel-gmmlib/
|
||||
F: package/intel-mediadriver/
|
||||
F: package/intel-mediasdk/
|
||||
|
||||
N: Luca Ceresoli <luca.ceresoli@bootlin.com>
|
||||
F: board/olimex/a20_olinuxino/
|
||||
F: board/zynq/
|
||||
@@ -2381,7 +2367,7 @@ F: package/dbus-broker/
|
||||
F: package/systemd/
|
||||
F: package/tcf-agent/
|
||||
|
||||
N: Yu Chien Peter Lin <peterlin@andestech.com>
|
||||
N: Leo Yu-Chi Liang <ycliang@andestech.com>
|
||||
F: board/andes
|
||||
F: configs/andes_ae350_45_defconfig
|
||||
|
||||
@@ -3185,55 +3171,6 @@ F: package/casync/
|
||||
F: package/gloox/
|
||||
F: package/tpm2-pkcs11/
|
||||
|
||||
N: Yann E. MORIN <yann.morin.1998@free.fr>
|
||||
F: fs/squashfs/
|
||||
F: package/asterisk/
|
||||
F: package/cegui/
|
||||
F: package/dahdi-linux/
|
||||
F: package/dahdi-tools/
|
||||
F: package/dbus-broker/
|
||||
F: package/dtc/
|
||||
F: package/dtv-scan-tables/
|
||||
F: package/dvb-apps/
|
||||
F: package/freerdp/
|
||||
F: package/keyutils/
|
||||
F: package/libbsd/
|
||||
F: package/libedit/
|
||||
F: package/libgsm/
|
||||
F: package/libiberty/
|
||||
F: package/libinput/
|
||||
F: package/libiscsi/
|
||||
F: package/libpri/
|
||||
F: package/libseccomp/
|
||||
F: package/libss7/
|
||||
F: package/linux-firmware/
|
||||
F: package/linux-tools/
|
||||
F: package/matchbox*
|
||||
F: package/mesa3d-headers/
|
||||
F: package/nbd/
|
||||
F: package/nut/
|
||||
F: package/nvidia-driver/
|
||||
F: package/omxplayer/
|
||||
F: package/python-pyparsing/
|
||||
F: package/pkg-download.mk
|
||||
F: package/pkg-waf.mk
|
||||
F: package/slirp/
|
||||
F: package/snappy/
|
||||
F: package/spice/
|
||||
F: package/spice-protocol/
|
||||
F: package/systemd/
|
||||
F: package/systemd-bootchart/
|
||||
F: package/tmux/
|
||||
F: package/tvheadend/
|
||||
F: package/usbredir/
|
||||
F: package/vde2/
|
||||
F: package/w_scan/
|
||||
F: package/wayland/
|
||||
F: package/weston/
|
||||
F: package/wtfutil/
|
||||
F: package/zisofs-tools/
|
||||
F: support/download/
|
||||
|
||||
N: Yann E. MORIN <yann.morin@orange.com>
|
||||
F: .editorconfig
|
||||
F: package/gpsd/
|
||||
|
||||
@@ -90,9 +90,9 @@ all:
|
||||
.PHONY: all
|
||||
|
||||
# Set and export the version string
|
||||
export BR2_VERSION := 2024.02.8
|
||||
export BR2_VERSION := 2024.02.10
|
||||
# Actual time the release is cut (for reproducible builds)
|
||||
BR2_VERSION_EPOCH = 1731601000
|
||||
BR2_VERSION_EPOCH = 1736430000
|
||||
|
||||
# Save running make version since it's clobbered by the make package
|
||||
RUNNING_MAKE_VERSION := $(MAKE_VERSION)
|
||||
|
||||
+2
-2
@@ -42,8 +42,8 @@ Emulation in qemu (BIOS)
|
||||
1. Edit grub-bios.cfg
|
||||
|
||||
Since the driver will show up in the virtual machine as /dev/vda,
|
||||
change board/pc/grub-bios.cfg to use root=/dev/vda2 instead of
|
||||
root=/dev/sda2. Then rebuild grub2 and the image.
|
||||
change board/pc/grub-bios.cfg to use root=/dev/vda1 instead of
|
||||
root=/dev/sda1. Then rebuild grub2 and the image.
|
||||
|
||||
2. Run the emulation with:
|
||||
|
||||
|
||||
@@ -101,12 +101,14 @@ Flashing boot.bin:
|
||||
|
||||
KD240 / KR260 Flashing Instructions:
|
||||
Flashing u-boot.itb:
|
||||
$ usb start
|
||||
$ sf probe
|
||||
$ fatload usb 0 0x1000000 u-boot.itb
|
||||
$ sf erase 0xf80000 +$filesize
|
||||
$ sf write 0x1000000 0xf80000 $filesize
|
||||
|
||||
Flashing boot.bin:
|
||||
$ usb start
|
||||
$ sf probe
|
||||
$ fatload usb 0 0x1000000 boot.bin
|
||||
$ sf erase 0x200000 +$filesize
|
||||
|
||||
+1
-1
@@ -5,7 +5,7 @@
|
||||
################################################################################
|
||||
|
||||
GRUB2_VERSION = 2.12
|
||||
GRUB2_SITE = http://ftp.gnu.org/gnu/grub
|
||||
GRUB2_SITE = $(BR2_GNU_MIRROR)/grub
|
||||
GRUB2_SOURCE = grub-$(GRUB2_VERSION).tar.xz
|
||||
GRUB2_LICENSE = GPL-3.0+
|
||||
GRUB2_LICENSE_FILES = COPYING
|
||||
|
||||
+15
-15
@@ -10,20 +10,20 @@ Notes on using Grub2 for BIOS-based platforms
|
||||
is enough free space *before* the first partition to
|
||||
store Grub2. Leaving 1 MB of free space is safe.
|
||||
3. Setup loop device and loop partitions
|
||||
sudo losetup -f disk.img
|
||||
sudo partx -a /dev/loop0
|
||||
loop_dev=$(sudo losetup -f disk.img)
|
||||
sudo partx -a "$loop_dev"
|
||||
4. Prepare the root partition
|
||||
sudo mkfs.ext3 -L root /dev/loop0p1
|
||||
sudo mount /dev/loop0p1 /mnt
|
||||
sudo mkfs.ext3 -L root "${loop_dev}p1"
|
||||
sudo mount "${loop_dev}p1" /mnt
|
||||
sudo tar -C /mnt -xf output/images/rootfs.tar
|
||||
sudo umount /mnt
|
||||
5. Install Grub2
|
||||
sudo ./output/host/sbin/grub-bios-setup \
|
||||
-b ./output/host/lib/grub/i386-pc/boot.img \
|
||||
-c ./output/images/grub.img -d . /dev/loop0
|
||||
-c ./output/images/grub.img -d . "$loop_dev"
|
||||
6. Cleanup loop device
|
||||
sudo partx -d /dev/loop0
|
||||
sudo losetup -d /dev/loop0
|
||||
sudo partx -d "$loop_dev"
|
||||
sudo losetup -d "$loop_dev"
|
||||
7. Your disk.img is ready!
|
||||
|
||||
Using genimage
|
||||
@@ -65,22 +65,22 @@ Notes on using Grub2 for x86/x86_64 EFI-based platforms
|
||||
- Create a second partition, type 8300, for the root
|
||||
filesystem.
|
||||
3. Setup loop device and loop partitions
|
||||
sudo losetup -f disk.img
|
||||
sudo partx -a /dev/loop0
|
||||
loop_dev=$(sudo losetup -f disk.img)
|
||||
sudo partx -a "$loop_dev"
|
||||
4. Prepare the boot partition
|
||||
sudo mkfs.vfat -n boot /dev/loop0p1
|
||||
sudo mount /dev/loop0p1 /mnt
|
||||
sudo mkfs.vfat -n boot "${loop_dev}p1"
|
||||
sudo mount "${loop_dev}p1" /mnt
|
||||
sudo cp -a output/images/efi-part/* /mnt/
|
||||
sudo cp output/images/bzImage /mnt/
|
||||
sudo umount /mnt
|
||||
5. Prepare the root partition
|
||||
sudo mkfs.ext3 -L root /dev/loop0p2
|
||||
sudo mount /dev/loop0p2 /mnt
|
||||
sudo mkfs.ext3 -L root "${loop_dev}p2"
|
||||
sudo mount "${loop_dev}p2" /mnt
|
||||
sudo tar -C /mnt -xf output/images/rootfs.tar
|
||||
sudo umount /mnt
|
||||
6 Cleanup loop device
|
||||
sudo partx -d /dev/loop0
|
||||
sudo losetup -d /dev/loop0
|
||||
sudo partx -d "$loop_dev"
|
||||
sudo losetup -d "$loop_dev"
|
||||
7. Your disk.img is ready!
|
||||
|
||||
To test your i386/x86-64 EFI image in Qemu
|
||||
|
||||
+1
-1
@@ -128,7 +128,7 @@ endif
|
||||
|
||||
config BR2_LINUX_KERNEL_VERSION
|
||||
string
|
||||
default "6.6.58" if BR2_LINUX_KERNEL_LATEST_VERSION
|
||||
default "6.6.68" if BR2_LINUX_KERNEL_LATEST_VERSION
|
||||
default "5.10.162-cip24" if BR2_LINUX_KERNEL_LATEST_CIP_VERSION
|
||||
default "5.10.162-cip24-rt10" if BR2_LINUX_KERNEL_LATEST_CIP_RT_VERSION
|
||||
default BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE \
|
||||
|
||||
+6
-6
@@ -1,12 +1,12 @@
|
||||
# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc
|
||||
sha256 e7df81e588d70fab5ec3ec3bb04ac53d51f0860fc3b1ec45e0a4167a026899db linux-6.6.58.tar.xz
|
||||
sha256 2286e4a02ea2fbe65023dbf779f20aa994ba2b8d37ed559049378089451aa256 linux-6.1.114.tar.xz
|
||||
sha256 283ff410e3f352ceed161ae30c0020301326059db03e86efcb384d46ac5840e2 linux-6.6.68.tar.xz
|
||||
sha256 e892c0b380100b7e6249060282ad07fbded092f0a2ca1d647243d0fbe9ce6e50 linux-6.1.122.tar.xz
|
||||
# From https://www.kernel.org/pub/linux/kernel/v5.x/sha256sums.asc
|
||||
sha256 e618c6d845fd1bc89477508e8d084bbe791fc88bf7623adee2deb6ecb2275370 linux-5.15.169.tar.xz
|
||||
sha256 76cc8d7f1528f87902e38697229661d0617a7d6ab86166be9f3ef9a613b17b72 linux-5.10.228.tar.xz
|
||||
sha256 77221ab9aebeac746915c755ec3b7d320f85cd219c63d9c501820fbca1e3b32b linux-5.4.284.tar.xz
|
||||
sha256 8fd8bbc80e7aae30aaca3b40576b283010b5e84e70f6fea1573589155ce8a9d0 linux-5.15.175.tar.xz
|
||||
sha256 fda44589a438dff8c718082e9a48843b15e5eb82f6cc2f98d48f48226063bef0 linux-5.10.232.tar.xz
|
||||
sha256 876fbae303723bcf9e01ab57b1a0a7d38045aacd481ff865dccc2cc89f591afe linux-5.4.288.tar.xz
|
||||
# From https://www.kernel.org/pub/linux/kernel/v4.x/sha256sums.asc
|
||||
sha256 4e27cdf999359876a0ff489bff6ece7ba5798ff37c2289db0c9e9422a9014162 linux-4.19.322.tar.xz
|
||||
sha256 607bed7de5cda31a443df4c8a78dbe5e8a9ad31afde2a4d28fe99ab4730e8de1 linux-4.19.325.tar.xz
|
||||
# Locally computed
|
||||
sha256 fb0edc3c18e47d2b6974cb0880a0afb5c3fa08f50ee87dfdf24349405ea5f8ae linux-cip-5.10.162-cip24.tar.gz
|
||||
sha256 b5539243f187e3d478d76d44ae13aab83952c94b885ad889df6fa9997e16a441 linux-cip-5.10.162-cip24-rt10.tar.gz
|
||||
|
||||
@@ -330,6 +330,12 @@ LINUX_KCONFIG_DEFCONFIG = $(call qstrip,$(BR2_LINUX_KERNEL_DEFCONFIG))_defconfig
|
||||
else ifeq ($(BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG),y)
|
||||
ifeq ($(BR2_powerpc64le),y)
|
||||
LINUX_KCONFIG_DEFCONFIG = ppc64le_defconfig
|
||||
else ifeq ($(BR2_powerpc64),y)
|
||||
LINUX_KCONFIG_DEFCONFIG = ppc64_defconfig
|
||||
else ifeq ($(BR2_powerpc),y)
|
||||
LINUX_KCONFIG_DEFCONFIG = ppc_defconfig
|
||||
else ifeq ($(BR2_arc750d)$(BR2_arc770d),y)
|
||||
LINUX_KCONFIG_DEFCONFIG = axs101_defconfig
|
||||
else
|
||||
LINUX_KCONFIG_DEFCONFIG = defconfig
|
||||
endif
|
||||
|
||||
@@ -69,6 +69,7 @@ config BR2_PACKAGE_ALSA_LIB_SEQ
|
||||
config BR2_PACKAGE_ALSA_LIB_UCM
|
||||
bool "ucm"
|
||||
default y
|
||||
depends on BR2_USE_MMU # fork()
|
||||
select BR2_PACKAGE_ALSA_LIB_MIXER
|
||||
|
||||
config BR2_PACKAGE_ALSA_LIB_ALISP
|
||||
|
||||
@@ -1,4 +1,7 @@
|
||||
[PATCH] Fix makefiles for out-of-tree build
|
||||
From 1fe49c34aa3e32e801af5c56293ec71ff6e7e2bc Mon Sep 17 00:00:00 2001
|
||||
From: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
Date: Sun, 1 Dec 2024 15:43:17 +0100
|
||||
Subject: [PATCH] Fix makefiles for out-of-tree build
|
||||
|
||||
Signed-off-by: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
---
|
||||
@@ -158,5 +161,5 @@ index 9e8b751..94a069b 100644
|
||||
LIBS+= -lz -lselinux
|
||||
|
||||
--
|
||||
2.5.1
|
||||
2.47.0
|
||||
|
||||
|
||||
@@ -1,4 +1,7 @@
|
||||
[PATCH] Fix adbd for non-Ubuntu systems
|
||||
From d433d5c340f3b36de58ea8550fd140dbdaea13b4 Mon Sep 17 00:00:00 2001
|
||||
From: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
Date: Sun, 1 Dec 2024 15:43:33 +0100
|
||||
Subject: [PATCH] Fix adbd for non-Ubuntu systems
|
||||
|
||||
Remove glib/dbus dependencies and partially restore services.c to be
|
||||
closer to the original source code in order to run on systems without
|
||||
@@ -7,7 +10,7 @@ sudo.
|
||||
Signed-off-by: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
---
|
||||
core/adbd/adb.c | 1 -
|
||||
core/adbd/services.c | 160 ++++-------------------------------------------
|
||||
core/adbd/services.c | 160 +++------------------------------------
|
||||
debian/makefiles/adbd.mk | 4 +-
|
||||
3 files changed, 14 insertions(+), 151 deletions(-)
|
||||
|
||||
@@ -260,5 +263,5 @@ index 49dab8c..22c1816 100644
|
||||
OBJS= $(patsubst %, %.o, $(basename $(SRCS)))
|
||||
|
||||
--
|
||||
2.5.1
|
||||
2.47.0
|
||||
|
||||
|
||||
@@ -0,0 +1,96 @@
|
||||
From 946dbb00fe4b2a75c688a470fc0c3924aa018a24 Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 11:39:49 +0200
|
||||
Subject: [PATCH] Adjust base64 function handling
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
In order to support libcs that do not provide b64_pton(), one of the
|
||||
Debian patches adds a copy of b64_pton() and b64_ntop(). However, no
|
||||
prototype is added for those functions, causing an "implicit
|
||||
declaration" warning... or error depending on the compiler version
|
||||
used:
|
||||
|
||||
core/adbd/adb_auth_client.c:75:15: error: implicit declaration of function ‘b64_pton’ [-Wimplicit-function-declaration]
|
||||
|
||||
This patch adds appropriate prototypes, but while at it, also renames
|
||||
the internal copy of b64_*() functions to have an adb_ prefix in order
|
||||
to clarify things and not clash with definitions potentially coming
|
||||
from the C library.
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
core/adb/adb_auth_client.c | 3 ++-
|
||||
core/adbd/adb_auth_client.c | 3 ++-
|
||||
core/adbd/base64.c | 4 ++--
|
||||
3 files changed, 6 insertions(+), 4 deletions(-)
|
||||
|
||||
diff --git a/core/adb/adb_auth_client.c b/core/adb/adb_auth_client.c
|
||||
index 0b4913e..25b9828 100644
|
||||
--- a/core/adb/adb_auth_client.c
|
||||
+++ b/core/adb/adb_auth_client.c
|
||||
@@ -45,6 +45,7 @@ static char *key_paths[] = {
|
||||
static fdevent listener_fde;
|
||||
static int framework_fd = -1;
|
||||
|
||||
+extern int adb_b64_pton(char const *src, u_char *target, size_t targsize);
|
||||
|
||||
static void read_keys(const char *file, struct listnode *list)
|
||||
{
|
||||
@@ -72,7 +73,7 @@ static void read_keys(const char *file, struct listnode *list)
|
||||
if (sep)
|
||||
*sep = '\0';
|
||||
|
||||
- ret = __b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
+ ret = adb_b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
if (ret != sizeof(key->key)) {
|
||||
D("%s: Invalid base64 data ret=%d\n", file, ret);
|
||||
free(key);
|
||||
diff --git a/core/adbd/adb_auth_client.c b/core/adbd/adb_auth_client.c
|
||||
index 0b4913e..25b9828 100644
|
||||
--- a/core/adbd/adb_auth_client.c
|
||||
+++ b/core/adbd/adb_auth_client.c
|
||||
@@ -45,6 +45,7 @@ static char *key_paths[] = {
|
||||
static fdevent listener_fde;
|
||||
static int framework_fd = -1;
|
||||
|
||||
+extern int adb_b64_pton(char const *src, u_char *target, size_t targsize);
|
||||
|
||||
static void read_keys(const char *file, struct listnode *list)
|
||||
{
|
||||
@@ -72,7 +73,7 @@ static void read_keys(const char *file, struct listnode *list)
|
||||
if (sep)
|
||||
*sep = '\0';
|
||||
|
||||
- ret = __b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
+ ret = adb_b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
if (ret != sizeof(key->key)) {
|
||||
D("%s: Invalid base64 data ret=%d\n", file, ret);
|
||||
free(key);
|
||||
diff --git a/core/adbd/base64.c b/core/adbd/base64.c
|
||||
index 7270703..91fc1b2 100644
|
||||
--- a/core/adbd/base64.c
|
||||
+++ b/core/adbd/base64.c
|
||||
@@ -134,7 +134,7 @@ static const char Pad64 = '=';
|
||||
*/
|
||||
|
||||
int
|
||||
-b64_ntop(src, srclength, target, targsize)
|
||||
+adb_b64_ntop(src, srclength, target, targsize)
|
||||
u_char const *src;
|
||||
size_t srclength;
|
||||
char *target;
|
||||
@@ -212,7 +212,7 @@ b64_ntop(src, srclength, target, targsize)
|
||||
*/
|
||||
|
||||
int
|
||||
-b64_pton(src, target, targsize)
|
||||
+adb_b64_pton(src, target, targsize)
|
||||
char const *src;
|
||||
u_char *target;
|
||||
size_t targsize;
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -1,36 +0,0 @@
|
||||
[PATCH] Fix build issue with uclibc
|
||||
|
||||
Signed-off-by: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
---
|
||||
core/adbd/adb_auth_client.c | 2 +-
|
||||
2 files changed, 2 insertions(+), 2 deletions(-)
|
||||
|
||||
diff --git a/core/adb/adb_auth_client.c b/core/adb/adb_auth_client.c
|
||||
index 0b4913e..068d837 100644
|
||||
--- a/core/adb/adb_auth_client.c
|
||||
+++ b/core/adb/adb_auth_client.c
|
||||
@@ -72,7 +72,7 @@ static void read_keys(const char *file, struct listnode *list)
|
||||
if (sep)
|
||||
*sep = '\0';
|
||||
|
||||
- ret = __b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
+ ret = b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
if (ret != sizeof(key->key)) {
|
||||
D("%s: Invalid base64 data ret=%d\n", file, ret);
|
||||
free(key);
|
||||
diff --git a/core/adbd/adb_auth_client.c b/core/adbd/adb_auth_client.c
|
||||
index 0b4913e..068d837 100644
|
||||
--- a/core/adbd/adb_auth_client.c
|
||||
+++ b/core/adbd/adb_auth_client.c
|
||||
@@ -72,7 +72,7 @@ static void read_keys(const char *file, struct listnode *list)
|
||||
if (sep)
|
||||
*sep = '\0';
|
||||
|
||||
- ret = __b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
+ ret = b64_pton(buf, (u_char *)&key->key, sizeof(key->key) + 4);
|
||||
if (ret != sizeof(key->key)) {
|
||||
D("%s: Invalid base64 data ret=%d\n", file, ret);
|
||||
free(key);
|
||||
--
|
||||
2.6.1
|
||||
|
||||
@@ -1,4 +1,7 @@
|
||||
[PATCH] Fix build issue with musl
|
||||
From d14ca3e3362448590adaebacb76d4d8046f9b556 Mon Sep 17 00:00:00 2001
|
||||
From: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
Date: Sun, 1 Dec 2024 15:44:16 +0100
|
||||
Subject: [PATCH] Fix build issue with musl
|
||||
|
||||
arpa/nameser.h doesn't use the same macro name to avoid several
|
||||
inclusions.
|
||||
@@ -8,19 +11,12 @@ TEMP_FAILURE_RETRY macro.
|
||||
|
||||
Signed-off-by: Gary Bisson <gary.bisson@boundarydevices.com>
|
||||
---
|
||||
core/adbd/arpa_nameser.h | 12 +++++++++---
|
||||
core/adbd/base64.c | 1 -
|
||||
core/adbd/framebuffer_service.c | 1 +
|
||||
core/adbd/qemu_pipe.h | 1 -
|
||||
core/include/cutils/android_reboot.h | 8 ++++++--
|
||||
core/include/cutils/bitops.h | 10 ++++++----
|
||||
core/include/cutils/partition_utils.h | 8 ++++++--
|
||||
extras/ext4_utils/sha1.c | 3 ---
|
||||
extras/ext4_utils/sha1.h | 13 ++++++-------
|
||||
9 files changed, 34 insertions(+), 23 deletions(-)
|
||||
core/adbd/arpa_nameser.h | 3 +++
|
||||
core/adbd/framebuffer_service.c | 1 +
|
||||
2 files changed, 4 insertions(+)
|
||||
|
||||
diff --git a/core/adbd/arpa_nameser.h b/core/adbd/arpa_nameser.h
|
||||
index 438dc04..b2a28d6 100644
|
||||
index 438dc04..f3d2fee 100644
|
||||
--- a/core/adbd/arpa_nameser.h
|
||||
+++ b/core/adbd/arpa_nameser.h
|
||||
@@ -52,6 +52,8 @@
|
||||
@@ -32,7 +28,7 @@ index 438dc04..b2a28d6 100644
|
||||
|
||||
#define BIND_4_COMPAT
|
||||
|
||||
@@ -574,4 +579,5 @@ __END_DECLS
|
||||
@@ -574,4 +576,5 @@ __END_DECLS
|
||||
#define XLOG(...) do {} while (0)
|
||||
#endif
|
||||
|
||||
@@ -51,4 +47,5 @@ index 20c08d2..48e0241 100644
|
||||
#include <sys/ioctl.h>
|
||||
#include <sys/mman.h>
|
||||
--
|
||||
2.6.1
|
||||
2.47.0
|
||||
|
||||
|
||||
+30
-17
@@ -1,4 +1,7 @@
|
||||
makefiles: use pkgconf to get libs deps
|
||||
From 10f3f6fb75da72f155e72794d6647e4fa21a87d0 Mon Sep 17 00:00:00 2001
|
||||
From: Giulio Benetti <giulio.benetti@micronovasrl.com>
|
||||
Date: Sun, 1 Dec 2024 15:45:01 +0100
|
||||
Subject: [PATCH] makefiles: use pkgconf to get libs deps
|
||||
|
||||
LIBS lists library dependencies without taking into account static linking
|
||||
that need ordered listing and more libraries listed since differently from
|
||||
@@ -10,26 +13,36 @@ needed libraries are listed during linking.
|
||||
|
||||
Signed-off-by: Giulio Benetti <giulio.benetti@micronovasrl.com>
|
||||
---
|
||||
diff -urpN android-tools-4.2.2+git20130218.orig/debian/makefiles/adbd.mk android-tools-4.2.2+git20130218/debian/makefiles/adbd.mk
|
||||
--- android-tools-4.2.2+git20130218.orig/debian/makefiles/adbd.mk 2019-04-08 16:05:02.967710428 +0200
|
||||
+++ android-tools-4.2.2+git20130218/debian/makefiles/adbd.mk 2019-04-08 16:30:42.463084426 +0200
|
||||
@@ -44,7 +44,7 @@ CPPFLAGS+= -DADBD_NON_ANDROID
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/adbd
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/include
|
||||
debian/makefiles/adb.mk | 2 +-
|
||||
debian/makefiles/adbd.mk | 2 +-
|
||||
2 files changed, 2 insertions(+), 2 deletions(-)
|
||||
|
||||
-LIBS+= -lc -lpthread -lz -lcrypto -lcrypt
|
||||
+LIBS+= -lc -lpthread -lz `pkg-config --libs libcrypto` -lcrypt
|
||||
|
||||
OBJS= $(patsubst %, %.o, $(basename $(SRCS)))
|
||||
|
||||
diff -urpN android-tools-4.2.2+git20130218.orig/debian/makefiles/adb.mk android-tools-4.2.2+git20130218/debian/makefiles/adb.mk
|
||||
--- android-tools-4.2.2+git20130218.orig/debian/makefiles/adb.mk 2019-04-08 16:05:02.959701400 +0200
|
||||
+++ android-tools-4.2.2+git20130218/debian/makefiles/adb.mk 2019-04-08 16:31:06.529426250 +0200
|
||||
diff --git a/debian/makefiles/adb.mk b/debian/makefiles/adb.mk
|
||||
index 654b9f1..a03c93a 100644
|
||||
--- a/debian/makefiles/adb.mk
|
||||
+++ b/debian/makefiles/adb.mk
|
||||
@@ -41,7 +41,7 @@ CPPFLAGS+= -DHAVE_TERMIO_H
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/adb
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/include
|
||||
|
||||
|
||||
-LIBS+= -lc -lpthread -lz -lcrypto
|
||||
+LIBS+= -lc -lpthread -lz `pkg-config --libs libcrypto`
|
||||
|
||||
|
||||
OBJS= $(SRCS:.c=.o)
|
||||
|
||||
diff --git a/debian/makefiles/adbd.mk b/debian/makefiles/adbd.mk
|
||||
index 22c1816..a8eee3a 100644
|
||||
--- a/debian/makefiles/adbd.mk
|
||||
+++ b/debian/makefiles/adbd.mk
|
||||
@@ -44,7 +44,7 @@ CPPFLAGS+= -DADBD_NON_ANDROID
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/adbd
|
||||
CPPFLAGS+= -I$(SRCDIR)/core/include
|
||||
|
||||
-LIBS+= -lc -lpthread -lz -lcrypto -lcrypt
|
||||
+LIBS+= -lc -lpthread -lz `pkg-config --libs libcrypto` -lcrypt
|
||||
|
||||
OBJS= $(patsubst %, %.o, $(basename $(SRCS)))
|
||||
|
||||
--
|
||||
2.47.0
|
||||
|
||||
+15
-5
@@ -1,4 +1,7 @@
|
||||
Fix build on big endian systems
|
||||
From 8f7e9458dbfca969d3edc9cf409b3439e98f4c5a Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
|
||||
Date: Sun, 1 Dec 2024 15:45:26 +0100
|
||||
Subject: [PATCH] Fix build on big endian systems
|
||||
|
||||
The usb_linux_client.c file defines cpu_to_le16/32 by using the C
|
||||
library htole16/32 function calls. However, cpu_to_le16/32 are used
|
||||
@@ -14,9 +17,13 @@ To solve this, we simply open-code cpu_to_le16/32 in a way that allows
|
||||
them to be used when initializing structures.
|
||||
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
|
||||
---
|
||||
core/adb/usb_linux_client.c | 11 +++++++++--
|
||||
core/adbd/usb_linux_client.c | 11 +++++++++--
|
||||
2 files changed, 18 insertions(+), 4 deletions(-)
|
||||
|
||||
Index: b/core/adb/usb_linux_client.c
|
||||
===================================================================
|
||||
diff --git a/core/adb/usb_linux_client.c b/core/adb/usb_linux_client.c
|
||||
index fb1dad0..a981e96 100644
|
||||
--- a/core/adb/usb_linux_client.c
|
||||
+++ b/core/adb/usb_linux_client.c
|
||||
@@ -34,8 +34,15 @@
|
||||
@@ -37,8 +44,8 @@ Index: b/core/adb/usb_linux_client.c
|
||||
|
||||
struct usb_handle
|
||||
{
|
||||
Index: b/core/adbd/usb_linux_client.c
|
||||
===================================================================
|
||||
diff --git a/core/adbd/usb_linux_client.c b/core/adbd/usb_linux_client.c
|
||||
index 33875a8..0e4d200 100644
|
||||
--- a/core/adbd/usb_linux_client.c
|
||||
+++ b/core/adbd/usb_linux_client.c
|
||||
@@ -34,8 +34,15 @@
|
||||
@@ -59,3 +66,6 @@ Index: b/core/adbd/usb_linux_client.c
|
||||
|
||||
struct usb_handle
|
||||
{
|
||||
--
|
||||
2.47.0
|
||||
|
||||
+12
-6
@@ -1,4 +1,7 @@
|
||||
Include cdefs.h wherever it is needed
|
||||
From d3f0157bf2ac1afc9a810ccbe188110df724129d Mon Sep 17 00:00:00 2001
|
||||
From: "Yann E. MORIN" <yann.morin.1998@free.fr>
|
||||
Date: Sun, 1 Dec 2024 15:46:15 +0100
|
||||
Subject: [PATCH] Include cdefs.h wherever it is needed
|
||||
|
||||
cdefs.h is included from within a lot of glibc headers, so it almost
|
||||
invariably and automagically gets pulled in with glibc.
|
||||
@@ -11,12 +14,12 @@ So we must include it when we are going to use macros it provides.
|
||||
|
||||
Signed-off-by: "Yann E. MORIN" <yann.morin.1998@free.fr>
|
||||
---
|
||||
core/adbd/services.c | 1 +
|
||||
core/libcutils/android_reboot.c | 1 +
|
||||
2 files changed, 2 insertions(+), 0 deletion(-)
|
||||
core/adbd/services.c | 1 +
|
||||
core/libcutils/android_reboot.c | 1 +
|
||||
2 files changed, 2 insertions(+)
|
||||
|
||||
diff --git a/core/adbd/services.c b/core/adbd/services.c
|
||||
index 20c08d2..48e0241 100644
|
||||
index 5adcefe..6de1951 100644
|
||||
--- a/core/adbd/services.c
|
||||
+++ b/core/adbd/services.c
|
||||
@@ -20,6 +20,7 @@
|
||||
@@ -28,7 +31,7 @@ index 20c08d2..48e0241 100644
|
||||
#include "sysdeps.h"
|
||||
|
||||
diff --git a/core/libcutils/android_reboot.c b/core/libcutils/android_reboot.c
|
||||
index 20c08d2..48e0241 100644
|
||||
index 79c05f8..9386006 100644
|
||||
--- a/core/libcutils/android_reboot.c
|
||||
+++ b/core/libcutils/android_reboot.c
|
||||
@@ -23,6 +23,7 @@
|
||||
@@ -39,3 +42,6 @@ index 20c08d2..48e0241 100644
|
||||
|
||||
#include <cutils/android_reboot.h>
|
||||
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -1,42 +0,0 @@
|
||||
usb_linux.c: fix minor()/major() build failure due to glibc 2.28
|
||||
|
||||
glibc 2.28 no longer includes <sys/sysmacros.h> from <sys/types.h>,
|
||||
and therefore <sys/sysmacros.h> must be included explicitly when
|
||||
major()/minor() are used.
|
||||
|
||||
This commit adds a patch to directly include <sys/sysmacros.h> into
|
||||
all usb_linux.c files where minor() and major() macros are used.
|
||||
|
||||
diff -urpN host-android-tools-4.2.2+git20130218.orig/core/adb/usb_linux.c host-android-tools-4.2.2+git20130218/core/adb/usb_linux.c
|
||||
--- host-android-tools-4.2.2+git20130218.orig/core/adb/usb_linux.c 2013-02-18 15:49:03.000000000 +0100
|
||||
+++ host-android-tools-4.2.2+git20130218/core/adb/usb_linux.c 2018-09-09 11:47:16.476292546 +0200
|
||||
@@ -20,6 +20,7 @@
|
||||
#include <string.h>
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <sys/time.h>
|
||||
#include <dirent.h>
|
||||
diff -urpN host-android-tools-4.2.2+git20130218.orig/core/adbd/usb_linux.c host-android-tools-4.2.2+git20130218/core/adbd/usb_linux.c
|
||||
--- host-android-tools-4.2.2+git20130218.orig/core/adbd/usb_linux.c 2018-09-09 02:32:57.154503866 +0200
|
||||
+++ host-android-tools-4.2.2+git20130218/core/adbd/usb_linux.c 2018-09-09 11:47:28.148353880 +0200
|
||||
@@ -20,6 +20,7 @@
|
||||
#include <string.h>
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <sys/time.h>
|
||||
#include <dirent.h>
|
||||
diff -urpN host-android-tools-4.2.2+git20130218.orig/core/fastboot/usb_linux.c host-android-tools-4.2.2+git20130218/core/fastboot/usb_linux.c
|
||||
--- host-android-tools-4.2.2+git20130218.orig/core/fastboot/usb_linux.c 2013-02-18 15:49:03.000000000 +0100
|
||||
+++ host-android-tools-4.2.2+git20130218/core/fastboot/usb_linux.c 2018-09-09 11:46:53.028169154 +0200
|
||||
@@ -33,6 +33,7 @@
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
#include <sys/stat.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <dirent.h>
|
||||
#include <fcntl.h>
|
||||
@@ -0,0 +1,59 @@
|
||||
From 99c20bd08065d9c78d81ba7aa48a2a113ab28c26 Mon Sep 17 00:00:00 2001
|
||||
From: Giulio Benetti <giulio.benetti@micronovasrl.com>
|
||||
Date: Sun, 1 Dec 2024 15:46:50 +0100
|
||||
Subject: [PATCH] usb_linux.c: fix minor()/major() build failure due to glibc
|
||||
2.28
|
||||
|
||||
glibc 2.28 no longer includes <sys/sysmacros.h> from <sys/types.h>,
|
||||
and therefore <sys/sysmacros.h> must be included explicitly when
|
||||
major()/minor() are used.
|
||||
|
||||
This commit adds a patch to directly include <sys/sysmacros.h> into
|
||||
all usb_linux.c files where minor() and major() macros are used.
|
||||
|
||||
Signed-off-by: Giulio Benetti <giulio.benetti@micronovasrl.com>
|
||||
---
|
||||
core/adb/usb_linux.c | 1 +
|
||||
core/adbd/usb_linux.c | 1 +
|
||||
core/fastboot/usb_linux.c | 1 +
|
||||
3 files changed, 3 insertions(+)
|
||||
|
||||
diff --git a/core/adb/usb_linux.c b/core/adb/usb_linux.c
|
||||
index 7bf2057..f748267 100644
|
||||
--- a/core/adb/usb_linux.c
|
||||
+++ b/core/adb/usb_linux.c
|
||||
@@ -20,6 +20,7 @@
|
||||
#include <string.h>
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <sys/time.h>
|
||||
#include <dirent.h>
|
||||
diff --git a/core/adbd/usb_linux.c b/core/adbd/usb_linux.c
|
||||
index 7bf2057..f748267 100644
|
||||
--- a/core/adbd/usb_linux.c
|
||||
+++ b/core/adbd/usb_linux.c
|
||||
@@ -20,6 +20,7 @@
|
||||
#include <string.h>
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <sys/time.h>
|
||||
#include <dirent.h>
|
||||
diff --git a/core/fastboot/usb_linux.c b/core/fastboot/usb_linux.c
|
||||
index b7a9ca3..2dac62b 100644
|
||||
--- a/core/fastboot/usb_linux.c
|
||||
+++ b/core/fastboot/usb_linux.c
|
||||
@@ -33,6 +33,7 @@
|
||||
|
||||
#include <sys/ioctl.h>
|
||||
#include <sys/stat.h>
|
||||
+#include <sys/sysmacros.h>
|
||||
#include <sys/types.h>
|
||||
#include <dirent.h>
|
||||
#include <fcntl.h>
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -1,4 +1,4 @@
|
||||
From d24abbec201975a5eb7f8589614cfb424b8c80b6 Mon Sep 17 00:00:00 2001
|
||||
From 3c4319da20fab4e48ec02e28f5b013b4a33b5fe4 Mon Sep 17 00:00:00 2001
|
||||
From: Alex Kaplan <kaplan2539@gmail.com>
|
||||
Date: Sat, 10 Nov 2018 19:50:51 -0800
|
||||
Subject: [PATCH] Fix makefiles for out-of-tree ext4_utils build
|
||||
@@ -44,5 +44,5 @@ index cb64916..c5904bf 100644
|
||||
LIBS+= -lz -lselinux
|
||||
|
||||
--
|
||||
2.7.4
|
||||
2.47.0
|
||||
|
||||
|
||||
@@ -1,4 +1,4 @@
|
||||
From bb3da0e32be4f2260940edf3ee0f88103dfd0dcc Mon Sep 17 00:00:00 2001
|
||||
From 79bf5cdee607241434e0d1c5b72e724eb1d20102 Mon Sep 17 00:00:00 2001
|
||||
From: Eneas U de Queiroz <cote2004-github@yahoo.com>
|
||||
Date: Tue, 5 Feb 2019 01:12:19 +0200
|
||||
Subject: [PATCH] adb: added patch for openssl 1.1.0 compatibility
|
||||
@@ -43,5 +43,5 @@ index 9039d42..debd2ef 100644
|
||||
out:
|
||||
BN_free(n0inv);
|
||||
--
|
||||
2.14.1
|
||||
2.47.0
|
||||
|
||||
|
||||
@@ -0,0 +1,54 @@
|
||||
From 6919b6619a9c744d2220f7af6e211c50662ba94b Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 11:41:10 +0200
|
||||
Subject: [PATCH] core/fastboot/fastboot.c: reorder functions to avoid implicit
|
||||
definition
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
The match_fastboot() function uses match_fastboot_with_serial() but is
|
||||
implemented before it, causing an implicit definition. Re-order the
|
||||
functions to avoid this.
|
||||
|
||||
Fixes:
|
||||
|
||||
core/fastboot/fastboot.c:191:12: error: implicit declaration of function ‘match_fastboot_with_serial’ [-Wimplicit-function-declaration]
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
core/fastboot/fastboot.c | 10 +++++-----
|
||||
1 file changed, 5 insertions(+), 5 deletions(-)
|
||||
|
||||
diff --git a/core/fastboot/fastboot.c b/core/fastboot/fastboot.c
|
||||
index 3de6d7d..9b2c86f 100644
|
||||
--- a/core/fastboot/fastboot.c
|
||||
+++ b/core/fastboot/fastboot.c
|
||||
@@ -186,11 +186,6 @@ oops:
|
||||
}
|
||||
#endif
|
||||
|
||||
-int match_fastboot(usb_ifc_info *info)
|
||||
-{
|
||||
- return match_fastboot_with_serial(info, serial);
|
||||
-}
|
||||
-
|
||||
int match_fastboot_with_serial(usb_ifc_info *info, const char *local_serial)
|
||||
{
|
||||
if(!(vendor_id && (info->dev_vendor == vendor_id)) &&
|
||||
@@ -217,6 +212,11 @@ int match_fastboot_with_serial(usb_ifc_info *info, const char *local_serial)
|
||||
return 0;
|
||||
}
|
||||
|
||||
+int match_fastboot(usb_ifc_info *info)
|
||||
+{
|
||||
+ return match_fastboot_with_serial(info, serial);
|
||||
+}
|
||||
+
|
||||
int list_devices_callback(usb_ifc_info *info)
|
||||
{
|
||||
if (match_fastboot_with_serial(info, NULL) == 0) {
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,37 @@
|
||||
From 72b9e79c81a237f1839afb4fdee680eafdd180d9 Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 11:41:56 +0200
|
||||
Subject: [PATCH] core/libsparse/sparse_read.c: add missing output_file.h
|
||||
include
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
sparse_read.c uses read_all() without including the header file
|
||||
containing its prototype, causing:
|
||||
|
||||
core/libsparse/sparse_read.c:122:31: error: implicit declaration of function ‘read_all’ [-Wimplicit-function-declaration]
|
||||
|
||||
Fix this by including output_file.h.
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
core/libsparse/sparse_read.c | 1 +
|
||||
1 file changed, 1 insertion(+)
|
||||
|
||||
diff --git a/core/libsparse/sparse_read.c b/core/libsparse/sparse_read.c
|
||||
index 704bcfa..0a8f838 100644
|
||||
--- a/core/libsparse/sparse_read.c
|
||||
+++ b/core/libsparse/sparse_read.c
|
||||
@@ -32,6 +32,7 @@
|
||||
#include "sparse_crc32.h"
|
||||
#include "sparse_file.h"
|
||||
#include "sparse_format.h"
|
||||
+#include "output_file.h"
|
||||
|
||||
#if defined(__APPLE__) && defined(__MACH__)
|
||||
#define lseek64 lseek
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,54 @@
|
||||
From 01e86db8460d873aec15d658bfc717b026c0545f Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 11:46:51 +0200
|
||||
Subject: [PATCH] extras/ext4_utils/make_ext4fs_main.c: disable
|
||||
Android-specific code
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
Since we are not building with the Android code, we do not have the
|
||||
implementation of the selinux_android_file_context_handle(). However,
|
||||
its only call site is when 'mountpoint' is set, and 'mountpoint'
|
||||
cannot be non-NULL in non-Android cases due to how the -a option is
|
||||
parsed:
|
||||
|
||||
case 'a':
|
||||
#ifdef ANDROID
|
||||
fs_config_func = fs_config;
|
||||
mountpoint = optarg;
|
||||
#else
|
||||
fprintf(stderr, "can't set android permissions - built without android support\n");
|
||||
usage(argv[0]);
|
||||
exit(EXIT_FAILURE);
|
||||
#endif
|
||||
|
||||
So also compile out the code calling
|
||||
selinux_android_file_context_handle() when ANDROID is not set.
|
||||
|
||||
Fixes:
|
||||
|
||||
make_ext4fs_main.c:155:25: error: implicit declaration of function ‘selinux_android_file_context_handle’ [-Wimplicit-function-declaration]
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
extras/ext4_utils/make_ext4fs_main.c | 2 +-
|
||||
1 file changed, 1 insertion(+), 1 deletion(-)
|
||||
|
||||
diff --git a/extras/ext4_utils/make_ext4fs_main.c b/extras/ext4_utils/make_ext4fs_main.c
|
||||
index 17d3735..cb58011 100644
|
||||
--- a/extras/ext4_utils/make_ext4fs_main.c
|
||||
+++ b/extras/ext4_utils/make_ext4fs_main.c
|
||||
@@ -149,7 +149,7 @@ int main(int argc, char **argv)
|
||||
}
|
||||
}
|
||||
|
||||
-#if !defined(HOST)
|
||||
+#if !defined(HOST) && defined(ANDROID)
|
||||
// Use only if -S option not requested
|
||||
if (!sehnd && mountpoint) {
|
||||
sehnd = selinux_android_file_context_handle();
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,52 @@
|
||||
From 850fd3f4a0384ebe492a466a9b1149060619aacb Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 12:57:22 +0200
|
||||
Subject: [PATCH] core/adbd/adb.c: open code capset()
|
||||
|
||||
capset() is apparently implemented by C libraries (at least glibc and
|
||||
musl), but not exposed through a header as an official public API.
|
||||
|
||||
In addition capset(2) says:
|
||||
|
||||
Note: glibc provides no wrappers for these system calls,
|
||||
necessitating the use of syscall(2)
|
||||
|
||||
The lack of a header with a prototype for capset() was not causing any
|
||||
problem so far, but GCC 14.x has become stricter on implicit
|
||||
declarations, causing the build to fail with:
|
||||
|
||||
core/adbd/adb.c:1296:9: error: implicit declaration of function 'capset' [-Wimplicit-function-declaration]
|
||||
|
||||
So fix that by open-coding it using syscall() as suggested by the man
|
||||
page.
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
core/adbd/adb.c | 3 ++-
|
||||
1 file changed, 2 insertions(+), 1 deletion(-)
|
||||
|
||||
diff --git a/core/adbd/adb.c b/core/adbd/adb.c
|
||||
index 7fe6445..98b1de1 100644
|
||||
--- a/core/adbd/adb.c
|
||||
+++ b/core/adbd/adb.c
|
||||
@@ -41,6 +41,7 @@
|
||||
#if !ADB_HOST
|
||||
#include "android_filesystem_config.h"
|
||||
#include <linux/capability.h>
|
||||
+#include <sys/syscall.h>
|
||||
#include <linux/prctl.h>
|
||||
#include <sys/mount.h>
|
||||
#else
|
||||
@@ -1293,7 +1294,7 @@ int adb_main(int is_daemon, int server_port)
|
||||
header.pid = 0;
|
||||
cap[CAP_TO_INDEX(CAP_SYS_BOOT)].effective |= CAP_TO_MASK(CAP_SYS_BOOT);
|
||||
cap[CAP_TO_INDEX(CAP_SYS_BOOT)].permitted |= CAP_TO_MASK(CAP_SYS_BOOT);
|
||||
- capset(&header, cap);
|
||||
+ syscall(SYS_capset, &header, cap);
|
||||
|
||||
D("Local port disabled\n");
|
||||
} else {
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,34 @@
|
||||
From 8f351150de38641c8ce2e9b7f9a5cba29ccd8f7e Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Sun, 14 Jul 2024 13:00:02 +0200
|
||||
Subject: [PATCH] core/adbd/adb.c: include correct header for prctl()
|
||||
|
||||
As documented by prctl(2), the correct header to include for prctl()
|
||||
is <sys/prctl.h>, not <linux/prctl.h>.
|
||||
|
||||
Fixes:
|
||||
|
||||
core/adbd/adb.c:1256:13: error: implicit declaration of function 'prctl' [-Wimplicit-function-declaration]
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
core/adbd/adb.c | 2 +-
|
||||
1 file changed, 1 insertion(+), 1 deletion(-)
|
||||
|
||||
diff --git a/core/adbd/adb.c b/core/adbd/adb.c
|
||||
index 98b1de1..10f420b 100644
|
||||
--- a/core/adbd/adb.c
|
||||
+++ b/core/adbd/adb.c
|
||||
@@ -42,7 +42,7 @@
|
||||
#include "android_filesystem_config.h"
|
||||
#include <linux/capability.h>
|
||||
#include <sys/syscall.h>
|
||||
-#include <linux/prctl.h>
|
||||
+#include <sys/prctl.h>
|
||||
#include <sys/mount.h>
|
||||
#else
|
||||
#include "usb_vendors.h"
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,68 @@
|
||||
From 5db9529436f13b8c073a0310da3a1107f84645da Mon Sep 17 00:00:00 2001
|
||||
From: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
Date: Wed, 4 Dec 2024 20:51:22 +0100
|
||||
Subject: [PATCH] extras/ext4_utils/make_ext4fs.c: define
|
||||
__SANE_USERSPACE_TYPES__
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
The Debian patch ppc64el-ftbfs.patch is already defining
|
||||
__SANE_USERSPACE_TYPES__ in a few files to solve a conflict between
|
||||
kernel header definitions and local definition of some types, on
|
||||
powerpc64 and mips64.
|
||||
|
||||
However, the Debian patch lacks an update to ext4_utils.c, and has the
|
||||
definition too late in make_ext4fs.c. This commit therefore fixes
|
||||
those two remaining issues, fixing:
|
||||
|
||||
error: conflicting types for ‘u64’; have ‘long unsigned int’
|
||||
|
||||
Upstream: N/A, we're too far from upstream
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
extras/ext4_utils/ext4_utils.c | 5 ++++-
|
||||
extras/ext4_utils/make_ext4fs.c | 4 ++++
|
||||
2 files changed, 8 insertions(+), 1 deletion(-)
|
||||
|
||||
diff --git a/extras/ext4_utils/ext4_utils.c b/extras/ext4_utils/ext4_utils.c
|
||||
index e95f5cc..9f6836f 100644
|
||||
--- a/extras/ext4_utils/ext4_utils.c
|
||||
+++ b/extras/ext4_utils/ext4_utils.c
|
||||
@@ -14,6 +14,10 @@
|
||||
* limitations under the License.
|
||||
*/
|
||||
|
||||
+#if defined(__linux__)
|
||||
+#define __SANE_USERSPACE_TYPES__
|
||||
+#endif
|
||||
+
|
||||
#include "ext4_utils.h"
|
||||
#include "uuid.h"
|
||||
#include "allocate.h"
|
||||
@@ -36,7 +40,6 @@
|
||||
#endif
|
||||
|
||||
#if defined(__linux__)
|
||||
-#define __SANE_USERSPACE_TYPES__
|
||||
#include <linux/fs.h>
|
||||
#elif defined(__APPLE__) && defined(__MACH__)
|
||||
#include <sys/disk.h>
|
||||
diff --git a/extras/ext4_utils/make_ext4fs.c b/extras/ext4_utils/make_ext4fs.c
|
||||
index 3124aed..332a213 100644
|
||||
--- a/extras/ext4_utils/make_ext4fs.c
|
||||
+++ b/extras/ext4_utils/make_ext4fs.c
|
||||
@@ -14,6 +14,10 @@
|
||||
* limitations under the License.
|
||||
*/
|
||||
|
||||
+#if defined(__linux__)
|
||||
+#define __SANE_USERSPACE_TYPES__
|
||||
+#endif
|
||||
+
|
||||
#include "make_ext4fs.h"
|
||||
#include "ext4_utils.h"
|
||||
#include "allocate.h"
|
||||
--
|
||||
2.47.0
|
||||
|
||||
@@ -0,0 +1,71 @@
|
||||
From 36ea6d5a2bfc480dd8032cc8651e6793552bc2aa Mon Sep 17 00:00:00 2001
|
||||
From: Eric Covener <covener@apache.org>
|
||||
Date: Tue, 20 Aug 2024 21:50:42 +0000
|
||||
Subject: [PATCH] Merge r1920082 from 1.8.x:
|
||||
|
||||
use 0600 perms for named shared mem consistently
|
||||
|
||||
|
||||
|
||||
|
||||
git-svn-id: https://svn.apache.org/repos/asf/apr/apr/branches/1.7.x@1920083 13f79535-47bb-0310-9956-ffa450edef68
|
||||
Upstream: https://github.com/apache/apr/commit/36ea6d5a2bfc480dd8032cc8651e6793552bc2aa
|
||||
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
|
||||
---
|
||||
shmem/unix/shm.c | 18 +++++++-----------
|
||||
1 file changed, 7 insertions(+), 11 deletions(-)
|
||||
|
||||
diff --git a/shmem/unix/shm.c b/shmem/unix/shm.c
|
||||
index 096884d99..ea9b94277 100644
|
||||
--- a/shmem/unix/shm.c
|
||||
+++ b/shmem/unix/shm.c
|
||||
@@ -287,10 +287,9 @@ APR_DECLARE(apr_status_t) apr_shm_create(apr_shm_t **m,
|
||||
status = APR_SUCCESS;
|
||||
|
||||
#if APR_USE_SHMEM_MMAP_TMP
|
||||
- /* FIXME: Is APR_OS_DEFAULT sufficient? */
|
||||
- status = apr_file_open(&file, filename,
|
||||
- APR_READ | APR_WRITE | APR_CREATE | APR_EXCL,
|
||||
- APR_OS_DEFAULT, pool);
|
||||
+ status = apr_file_open(&file, filename,
|
||||
+ APR_FOPEN_READ | APR_FOPEN_WRITE | APR_FOPEN_CREATE | APR_FOPEN_EXCL,
|
||||
+ APR_FPROT_UREAD | APR_FPROT_UWRITE, pool);
|
||||
if (status != APR_SUCCESS) {
|
||||
return status;
|
||||
}
|
||||
@@ -319,8 +318,7 @@ APR_DECLARE(apr_status_t) apr_shm_create(apr_shm_t **m,
|
||||
}
|
||||
#endif /* APR_USE_SHMEM_MMAP_TMP */
|
||||
#if APR_USE_SHMEM_MMAP_SHM
|
||||
- /* FIXME: SysV uses 0600... should we? */
|
||||
- tmpfd = shm_open(shm_name, O_RDWR | O_CREAT | O_EXCL, 0644);
|
||||
+ tmpfd = shm_open(shm_name, O_RDWR | O_CREAT | O_EXCL, 0600);
|
||||
if (tmpfd == -1) {
|
||||
return errno;
|
||||
}
|
||||
@@ -361,10 +359,9 @@ APR_DECLARE(apr_status_t) apr_shm_create(apr_shm_t **m,
|
||||
#elif APR_USE_SHMEM_SHMGET
|
||||
new_m->realsize = reqsize;
|
||||
|
||||
- /* FIXME: APR_OS_DEFAULT is too permissive, switch to 600 I think. */
|
||||
- status = apr_file_open(&file, filename,
|
||||
+ status = apr_file_open(&file, filename,
|
||||
APR_FOPEN_WRITE | APR_FOPEN_CREATE | APR_FOPEN_EXCL,
|
||||
- APR_OS_DEFAULT, pool);
|
||||
+ APR_FPROT_UREAD | APR_FPROT_UWRITE, pool);
|
||||
if (status != APR_SUCCESS) {
|
||||
return status;
|
||||
}
|
||||
@@ -555,8 +552,7 @@ APR_DECLARE(apr_status_t) apr_shm_attach(apr_shm_t **m,
|
||||
#if APR_USE_SHMEM_MMAP_SHM
|
||||
const char *shm_name = make_shm_open_safe_name(filename, pool);
|
||||
|
||||
- /* FIXME: SysV uses 0600... should we? */
|
||||
- tmpfd = shm_open(shm_name, O_RDWR, 0644);
|
||||
+ tmpfd = shm_open(shm_name, O_RDWR, 0600);
|
||||
if (tmpfd == -1) {
|
||||
return errno;
|
||||
}
|
||||
--
|
||||
2.39.5
|
||||
|
||||
@@ -16,6 +16,9 @@ APR_INSTALL_STAGING = YES
|
||||
# so we need to autoreconf:
|
||||
APR_AUTORECONF = YES
|
||||
|
||||
# 0004-Merge-r1920082-from-1.8.x.patch
|
||||
APR_IGNORE_CVES += CVE-2023-49582
|
||||
|
||||
APR_CONF_OPTS = --disable-sctp
|
||||
|
||||
# avoid apr_hints.m4 by setting apr_preload_done=yes and set
|
||||
|
||||
@@ -1,7 +1,7 @@
|
||||
autoconf: don't append -dirty to version
|
||||
|
||||
Don't append -dirty to autoconf version number if the buildroot git tree
|
||||
has uncommited changes.
|
||||
has uncommitted changes.
|
||||
|
||||
This script is meant for the autoconf developers, but it also activates
|
||||
if you build autoconf in a subdirectory of a git tree (E.G. like how it's
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally computed
|
||||
sha256 41a99b340b568a12ba58486cf07a63ab01b8dbbc8da1c4e833c30dc251340aaa babeld-babeld-1.9.2-br1.tar.gz
|
||||
sha256 d1b41f246a437bdafa5551fb16ca957fc9402de1c53f3647ead9466d67fe3fe0 babeld-babeld-1.9.2-br1.tar.gz
|
||||
sha256 b415c41292cedef6c97b243609e50552887c29343566c639f23282d31efd2afd LICENCE
|
||||
|
||||
+1
-1
@@ -5,7 +5,7 @@
|
||||
################################################################################
|
||||
|
||||
BC_VERSION = 1.07.1
|
||||
BC_SITE = http://ftp.gnu.org/gnu/bc
|
||||
BC_SITE = $(BR2_GNU_MIRROR)/bc
|
||||
BC_DEPENDENCIES = host-flex
|
||||
BC_LICENSE = GPL-2.0+, LGPL-2.1+
|
||||
BC_LICENSE_FILES = COPYING COPYING.LIB
|
||||
|
||||
@@ -1,5 +1,6 @@
|
||||
config BR2_PACKAGE_HOST_BMAP_TOOLS
|
||||
bool "host bmap-tools"
|
||||
select BR2_PACKAGE_HOST_PYTHON3 # runtime
|
||||
select BR2_PACKAGE_HOST_PYTHON_SIX # runtime
|
||||
help
|
||||
Tool to flash image files to block devices using the block map
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
|
||||
BOOST_VERSION = 1.83.0
|
||||
BOOST_SOURCE = boost_$(subst .,_,$(BOOST_VERSION)).tar.bz2
|
||||
BOOST_SITE = https://boostorg.jfrog.io/artifactory/main/release/$(BOOST_VERSION)/source
|
||||
BOOST_SITE = https://archives.boost.io/release/$(BOOST_VERSION)/source
|
||||
BOOST_INSTALL_STAGING = YES
|
||||
BOOST_LICENSE = BSL-1.0
|
||||
BOOST_LICENSE_FILES = LICENSE_1_0.txt
|
||||
|
||||
+12
-6
@@ -1,17 +1,20 @@
|
||||
[PATCH] fix build with uClibc
|
||||
From 13823cfe42f33e947f8375f5a3f9ee177c699960 Mon Sep 17 00:00:00 2001
|
||||
From: Peter Korsgaard <jacmet@sunsite.dk>
|
||||
Date: Sat, 13 Jul 2024 10:57:57 +0200
|
||||
Subject: [PATCH] fix build with uClibc
|
||||
|
||||
cdrkit unconditionally enables code using rcmd(3), which isn't available
|
||||
on uClibc.
|
||||
|
||||
Signed-off-by: Peter Korsgaard <jacmet@sunsite.dk>
|
||||
---
|
||||
include/xconfig.h.in | 1 -
|
||||
include/xconfig.h.in | 1 -
|
||||
1 file changed, 1 deletion(-)
|
||||
|
||||
Index: cdrkit-1.1.10/include/xconfig.h.in
|
||||
===================================================================
|
||||
--- cdrkit-1.1.10.orig/include/xconfig.h.in
|
||||
+++ cdrkit-1.1.10/include/xconfig.h.in
|
||||
diff --git a/include/xconfig.h.in b/include/xconfig.h.in
|
||||
index c130600..00f2044 100644
|
||||
--- a/include/xconfig.h.in
|
||||
+++ b/include/xconfig.h.in
|
||||
@@ -187,7 +187,6 @@
|
||||
* they are placed before the large file tests.
|
||||
*/
|
||||
@@ -20,3 +23,6 @@ Index: cdrkit-1.1.10/include/xconfig.h.in
|
||||
#define HAVE_SOCKET 1 /* socket() is present in libc/libsocket */
|
||||
#define HAVE_SOCKETPAIR 1 /* socketpair() is present in libc/libsocket */
|
||||
#define HAVE_GETSERVBYNAME 1 /* getservbyname() is present in libc/libsocket */
|
||||
--
|
||||
2.45.2
|
||||
|
||||
@@ -0,0 +1,48 @@
|
||||
From 8b7852149c45c8a837a9f5124e91812dd475a270 Mon Sep 17 00:00:00 2001
|
||||
From: Andrey Rakhmatullin <wrar@debian.org>
|
||||
Date: Sat, 13 Jul 2024 11:37:07 +0200
|
||||
Subject: [PATCH] Add missing header includes
|
||||
MIME-Version: 1.0
|
||||
Content-Type: text/plain; charset=UTF-8
|
||||
Content-Transfer-Encoding: 8bit
|
||||
|
||||
Bug-Debian: https://bugs.debian.org/1066264
|
||||
|
||||
Fixes:
|
||||
|
||||
genisoimage/genisoimage.c:1509:17: error: implicit declaration of function ‘parse_checksum_algo’ [-Wimplicit-function-declaration]
|
||||
|
||||
Upstream: https://sources.debian.org/patches/cdrkit/9:1.1.11-3.5/fix-implicit-function-declaration.patch/
|
||||
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
|
||||
---
|
||||
genisoimage/genisoimage.c | 1 +
|
||||
genisoimage/jte.c | 1 +
|
||||
2 files changed, 2 insertions(+)
|
||||
|
||||
diff --git a/genisoimage/genisoimage.c b/genisoimage/genisoimage.c
|
||||
index 46f0cb7..fa2f8bd 100644
|
||||
--- a/genisoimage/genisoimage.c
|
||||
+++ b/genisoimage/genisoimage.c
|
||||
@@ -53,6 +53,7 @@
|
||||
#include <ctype.h>
|
||||
#include "match.h"
|
||||
#include "exclude.h"
|
||||
+#include "checksum.h"
|
||||
#include <unls.h> /* For UNICODE translation */
|
||||
#include <schily.h>
|
||||
#ifdef UDF
|
||||
diff --git a/genisoimage/jte.c b/genisoimage/jte.c
|
||||
index 0dff289..4c4d986 100644
|
||||
--- a/genisoimage/jte.c
|
||||
+++ b/genisoimage/jte.c
|
||||
@@ -27,6 +27,7 @@
|
||||
#include "ifo_read.h"
|
||||
#include "endianconv.h"
|
||||
#include "checksum.h"
|
||||
+#include "md5.h"
|
||||
#endif
|
||||
#ifdef APPLE_HYB
|
||||
#include <ctype.h>
|
||||
--
|
||||
2.45.2
|
||||
|
||||
@@ -21,7 +21,7 @@ define CRYPTODEV_LINUX_INSTALL_STAGING_CMDS
|
||||
$(STAGING_DIR)/usr/include/crypto/cryptodev.h
|
||||
endef
|
||||
|
||||
define CRYPTODEV_LINUX_CONFIG_FIXUPS
|
||||
define CRYPTODEV_LINUX_LINUX_CONFIG_FIXUPS
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_CRYPTO)
|
||||
$(call KCONFIG_ENABLE_OPT,CONFIG_CRYPTO_USER_API_AEAD)
|
||||
endef
|
||||
|
||||
@@ -8,7 +8,7 @@ Patch borrowed from Void Linux :
|
||||
https://github.com/voidlinux/void-packages/blob/master/srcpkgs/dmraid/patches/25_musl-libc.patch
|
||||
|
||||
Upstream package appears dormant, no mailing list and no
|
||||
maintainence releases since Nov 2010.
|
||||
maintenance releases since Nov 2010.
|
||||
|
||||
Upstream-Status: dormant
|
||||
Signed-off-by: Brendan Heading <brendanheading@gmail.com>
|
||||
|
||||
@@ -1,105 +0,0 @@
|
||||
From 7297a8ef3cab3b0faf1426622ee902a2144e2e89 Mon Sep 17 00:00:00 2001
|
||||
From: Thomas De Schampheleire <thomas.de_schampheleire@nokia.com>
|
||||
Date: Wed, 24 Mar 2021 11:27:14 +0100
|
||||
Subject: [PATCH] ebtables.h: restore KERNEL_64_USERSPACE_32 checks
|
||||
|
||||
Commit e6359eedfbf497e52d52451072aea4713ed80a88 replaced the file ebtables.h
|
||||
but removed the usage of KERNEL_64_USERSPACE_32. This breaks boards where
|
||||
such flag is relevant, with following messages:
|
||||
|
||||
[ 6364.971346] kernel msg: ebtables bug: please report to author: Standard target size too big
|
||||
|
||||
Unable to update the kernel. Two possible causes:
|
||||
1. Multiple ebtables programs were executing simultaneously. The ebtables
|
||||
userspace tool doesn't by default support multiple ebtables programs running
|
||||
concurrently. The ebtables option --concurrent or a tool like flock can be
|
||||
used to support concurrent scripts that update the ebtables kernel tables.
|
||||
2. The kernel doesn't support a certain ebtables extension, consider
|
||||
recompiling your kernel or insmod the extension.
|
||||
|
||||
Analysis shows that the structure 'ebt_replace' passed from userspace
|
||||
ebtables to the kernel, is too small, i.e 80 bytes instead of 120 in case of
|
||||
64-bit kernel.
|
||||
|
||||
Note that the ebtables build system seems to assume that 'sparc64' is the
|
||||
only case where KERNEL_64_USERSPACE_32 is relevant, but this is not true.
|
||||
This situation can happen on many architectures, especially in embedded
|
||||
systems. For example, an Aarch64 processor with kernel in 64-bit but
|
||||
userland build for 32-bit Arm. Or a 64-bit MIPS Octeon III processor, with
|
||||
userland running in the 'n32' ABI.
|
||||
|
||||
Signed-off-by: Thomas De Schampheleire <thomas.de_schampheleire@nokia.com>
|
||||
Upstream-Status: http://patchwork.ozlabs.org/project/netfilter-devel/patch/20210518181730.13436-1-patrickdepinguin@gmail.com/
|
||||
---
|
||||
include/linux/netfilter_bridge/ebtables.h | 21 +++++++++++++++++++++
|
||||
1 file changed, 21 insertions(+)
|
||||
|
||||
diff --git a/include/linux/netfilter_bridge/ebtables.h b/include/linux/netfilter_bridge/ebtables.h
|
||||
index 5be75f2..3c2b61e 100644
|
||||
--- a/include/linux/netfilter_bridge/ebtables.h
|
||||
+++ b/include/linux/netfilter_bridge/ebtables.h
|
||||
@@ -49,12 +49,21 @@ struct ebt_replace {
|
||||
/* total size of the entries */
|
||||
unsigned int entries_size;
|
||||
/* start of the chains */
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ uint64_t hook_entry[NF_BR_NUMHOOKS];
|
||||
+#else
|
||||
struct ebt_entries *hook_entry[NF_BR_NUMHOOKS];
|
||||
+#endif
|
||||
/* nr of counters userspace expects back */
|
||||
unsigned int num_counters;
|
||||
/* where the kernel will put the old counters */
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ uint64_t counters;
|
||||
+ uint64_t entries;
|
||||
+#else
|
||||
struct ebt_counter *counters;
|
||||
char *entries;
|
||||
+#endif
|
||||
};
|
||||
|
||||
struct ebt_replace_kernel {
|
||||
@@ -129,6 +138,9 @@ struct ebt_entry_match {
|
||||
} u;
|
||||
/* size of data */
|
||||
unsigned int match_size;
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ unsigned int pad;
|
||||
+#endif
|
||||
unsigned char data[0] __attribute__ ((aligned (__alignof__(struct ebt_replace))));
|
||||
};
|
||||
|
||||
@@ -142,6 +154,9 @@ struct ebt_entry_watcher {
|
||||
} u;
|
||||
/* size of data */
|
||||
unsigned int watcher_size;
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ unsigned int pad;
|
||||
+#endif
|
||||
unsigned char data[0] __attribute__ ((aligned (__alignof__(struct ebt_replace))));
|
||||
};
|
||||
|
||||
@@ -155,6 +170,9 @@ struct ebt_entry_target {
|
||||
} u;
|
||||
/* size of data */
|
||||
unsigned int target_size;
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ unsigned int pad;
|
||||
+#endif
|
||||
unsigned char data[0] __attribute__ ((aligned (__alignof__(struct ebt_replace))));
|
||||
};
|
||||
|
||||
@@ -162,6 +180,9 @@ struct ebt_entry_target {
|
||||
struct ebt_standard_target {
|
||||
struct ebt_entry_target target;
|
||||
int verdict;
|
||||
+#ifdef KERNEL_64_USERSPACE_32
|
||||
+ unsigned int pad;
|
||||
+#endif
|
||||
};
|
||||
|
||||
/* one entry */
|
||||
--
|
||||
2.26.2
|
||||
|
||||
@@ -1,51 +0,0 @@
|
||||
From ebf0236270b977a62c522bc32810bc9f8edc72d1 Mon Sep 17 00:00:00 2001
|
||||
From: Thomas De Schampheleire <thomas.de_schampheleire@nokia.com>
|
||||
Date: Wed, 24 Mar 2021 13:40:14 +0100
|
||||
Subject: [PATCH] configure.ac: add option --enable-kernel-64-userland-32
|
||||
|
||||
The ebtables build system seems to assume that 'sparc64' is the
|
||||
only case where KERNEL_64_USERSPACE_32 is relevant, but this is not true.
|
||||
This situation can happen on many architectures, especially in embedded
|
||||
systems. For example, an Aarch64 processor with kernel in 64-bit but
|
||||
userland build for 32-bit Arm. Or a 64-bit MIPS Octeon III processor, with
|
||||
userland running in the 'n32' ABI.
|
||||
|
||||
While it is possible to set CFLAGS in the environment when calling the
|
||||
configure script, the caller would need to know to not only specify
|
||||
KERNEL_64_USERSPACE_32 but also the EBT_MIN_ALIGN value.
|
||||
|
||||
Instead, add a configure option. All internal details can then be handled by
|
||||
the configure script.
|
||||
|
||||
Signed-off-by: Thomas De Schampheleire <thomas.de_schampheleire@nokia.com>
|
||||
Upstream-Status: http://patchwork.ozlabs.org/project/netfilter-devel/patch/20210518181730.13436-2-patrickdepinguin@gmail.com/
|
||||
---
|
||||
configure.ac | 9 ++++++++-
|
||||
1 file changed, 8 insertions(+), 1 deletion(-)
|
||||
|
||||
diff --git a/configure.ac b/configure.ac
|
||||
index c24ede3..3e89c0c 100644
|
||||
--- a/configure.ac
|
||||
+++ b/configure.ac
|
||||
@@ -15,10 +15,17 @@ AS_IF([test "x$LOCKFILE" = x], [LOCKFILE="/var/lib/ebtables/lock"])
|
||||
|
||||
regular_CFLAGS="-Wall -Wunused"
|
||||
regular_CPPFLAGS=""
|
||||
+
|
||||
case "$host" in
|
||||
sparc64-*)
|
||||
- regular_CPPFLAGS="$regular_CPPFLAGS -DEBT_MIN_ALIGN=8 -DKERNEL_64_USERSPACE_32";;
|
||||
+ enable_kernel_64_userland_32=yes ;;
|
||||
esac
|
||||
+AC_ARG_ENABLE([kernel-64-userland-32],
|
||||
+ AC_HELP_STRING([--enable-kernel-64-userland-32], [indicate that ebtables will be built as a 32-bit application but run under a 64-bit kernel])
|
||||
+)
|
||||
+AS_IF([test "x$enable_kernel_64_userland_32" = xyes],
|
||||
+ [regular_CPPFLAGS="$regular_CPPFLAGS -DEBT_MIN_ALIGN=8 -DKERNEL_64_USERSPACE_32"]
|
||||
+)
|
||||
|
||||
AC_SUBST([regular_CFLAGS])
|
||||
AC_SUBST([regular_CPPFLAGS])
|
||||
--
|
||||
2.26.2
|
||||
|
||||
@@ -1,6 +1,8 @@
|
||||
config BR2_PACKAGE_EBTABLES
|
||||
bool "ebtables"
|
||||
depends on BR2_USE_MMU # fork()
|
||||
# https://lore.kernel.org/all/20210518181730.13436-1-patrickdepinguin@gmail.com/
|
||||
depends on !BR2_KERNEL_64_USERLAND_32
|
||||
help
|
||||
Ethernet bridge frame table administration
|
||||
|
||||
|
||||
@@ -11,12 +11,6 @@ EBTABLES_LICENSE_FILES = COPYING
|
||||
EBTABLES_CPE_ID_VENDOR = netfilter
|
||||
EBTABLES_SELINUX_MODULES = iptables
|
||||
|
||||
# for 0003-configure.ac-add-option-enable-kernel-64-userland-32.patch
|
||||
EBTABLES_AUTORECONF = YES
|
||||
ifeq ($(BR2_KERNEL_64_USERLAND_32),y)
|
||||
EBTABLES_CONF_OPTS += --enable-kernel-64-userland-32
|
||||
endif
|
||||
|
||||
ifeq ($(BR2_PACKAGE_EBTABLES_UTILS_SAVE),y)
|
||||
define EBTABLES_INSTALL_TARGET_UTILS_SAVE
|
||||
$(INSTALL) -m 0755 -D $(@D)/ebtables-save.sh $(TARGET_DIR)/usr/sbin/ebtables-legacy-save
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally calculated
|
||||
sha256 274db254a6979bde5aad404763a704956940e465843f2a9bd9ed7af22e2c0efc expat-2.6.3.tar.xz
|
||||
sha256 a695629dae047055b37d50a0ff4776d1d45d0a4c842cf4ccee158441f55ff7ee expat-2.6.4.tar.xz
|
||||
sha256 122f2c27000472a201d337b9b31f7eb2b52d091b02857061a8880371612d9534 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
EXPAT_VERSION = 2.6.3
|
||||
EXPAT_VERSION = 2.6.4
|
||||
EXPAT_SITE = https://github.com/libexpat/libexpat/releases/download/R_$(subst .,_,$(EXPAT_VERSION))
|
||||
EXPAT_SOURCE = expat-$(EXPAT_VERSION).tar.xz
|
||||
EXPAT_INSTALL_STAGING = YES
|
||||
|
||||
+2
-2
@@ -5,8 +5,8 @@
|
||||
################################################################################
|
||||
|
||||
FBV_VERSION = 1.0b
|
||||
FBV_SITE = http://s-tech.elsat.net.pl/fbv
|
||||
|
||||
# upstream (http://s-tech.elsat.net.pl/fbv) dead
|
||||
FBV_SITE = http://sources.buildroot.net/fbv
|
||||
FBV_LICENSE = GPL-2.0
|
||||
FBV_LICENSE_FILES = COPYING
|
||||
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally computed
|
||||
sha256 8060ec28cbf6e2e3d408665330da4bc48fd094d4f1265d7c58dc75c767463c29 1.16.2.tar.gz
|
||||
sha256 ff81bca86178ef326588176f8bdf817bb3e0fbc891d026960144f69c8a74eb4d foot-1.16.2-git4.tar.gz
|
||||
sha256 d534a23a31500a0ac958d9634b84f532bd73ff1aca1bb8f7debbcbebc16ff39a LICENSE
|
||||
|
||||
@@ -5,8 +5,8 @@
|
||||
################################################################################
|
||||
|
||||
FOOT_VERSION = 1.16.2
|
||||
FOOT_SOURCE = $(FOOT_VERSION).tar.gz
|
||||
FOOT_SITE = https://codeberg.org/dnkl/foot/archive
|
||||
FOOT_SITE = https://codeberg.org/dnkl/foot.git
|
||||
FOOT_SITE_METHOD = git
|
||||
FOOT_LICENSE = MIT
|
||||
FOOT_LICENSE_FILES = LICENSE
|
||||
FOOT_DEPENDENCIES = \
|
||||
|
||||
@@ -5,7 +5,7 @@
|
||||
################################################################################
|
||||
|
||||
FREEIPMI_VERSION = 1.6.14
|
||||
FREEIPMI_SITE = https://ftp.gnu.org/gnu/freeipmi
|
||||
FREEIPMI_SITE = $(BR2_GNU_MIRROR)/freeipmi
|
||||
FREEIPMI_LICENSE = GPL-3.0+, BSD-like (sunbmc)
|
||||
FREEIPMI_LICENSE_FILES = \
|
||||
COPYING COPYING.bmc-watchdog COPYING.ipmiconsole COPYING.ipmi-dcmi \
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally calculated
|
||||
sha256 7ae9d8bafc65bb5d0f21061ac61dbc6cf93b2b05a5dae9e5eec72ed42388551e frr-8.5.4.tar.gz
|
||||
sha256 5f3a32e66efdf2628548165d10327688847443c342788b31c4ea98368cfacbf8 frr-8.5.6.tar.gz
|
||||
sha256 8177f97513213526df2cf6184d8ff986c675afb514d4e68a404010521b880643 COPYING
|
||||
|
||||
+1
-1
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
FRR_VERSION = 8.5.4
|
||||
FRR_VERSION = 8.5.6
|
||||
FRR_SITE = $(call github,FRRouting,frr,frr-$(FRR_VERSION))
|
||||
FRR_LICENSE = GPL-2.0
|
||||
FRR_LICENSE_FILES = COPYING
|
||||
|
||||
@@ -5,7 +5,8 @@
|
||||
################################################################################
|
||||
|
||||
GAMIN_VERSION = 0.1.10
|
||||
GAMIN_SITE = http://www.gnome.org/~veillard/gamin/sources
|
||||
# upstream (http://www.gnome.org/~veillard/gamin/sources) dead
|
||||
GAMIN_SITE = http://sources.buildroot.net/gamin
|
||||
GAMIN_AUTORECONF = YES
|
||||
GAMIN_INSTALL_STAGING = YES
|
||||
GAMIN_LICENSE = LGPL-2.0+
|
||||
|
||||
@@ -5,3 +5,9 @@ sha512 7e07941f1fe661288cc571b4964012ceabc1760624fce20320db2f470c01439b2386f859
|
||||
|
||||
# Locally calculated (fetched from Github)
|
||||
sha512 3518b47d5c11d1fb478ee152bde1719363f9391db73f3b9f5491217c17742bef8ebca6a51a40302dfaa9476c5a32a8b8f70a4bf64289422dea5f750ae53ab88d gdb-arc-2023.09-release.tar.gz
|
||||
|
||||
# Locally calculated (fetched from gcc.gnu.org)
|
||||
sha256 231f7edcc7352d7734a96eef0b8030f77982678c516876fcb81e25b32d68564c COPYING
|
||||
sha256 8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903 COPYING3
|
||||
sha256 a853c2ffec17057872340eee242ae4d96cbf2b520ae27d903e1b2fef1a5f9d1c COPYING3.LIB
|
||||
sha256 56bdea73b6145ef6ac5259b3da390b981d840c24cb03b8e1cbc678de7ecfa18d COPYING.LIB
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
# From https://www.gnupg.org/download/integrity_check.html
|
||||
sha1 ae0935ead29a2dfa34d6b48d70808652bc3ca73b gnupg-2.4.5.tar.bz2
|
||||
sha256 f68f7d75d06cb1635c336d34d844af97436c3f64ea14bcb7c869782f96f44277 gnupg-2.4.5.tar.bz2
|
||||
sha1 2d510a1a7294f2f9ef3f2e280c93c3ad9b0cdb68 gnupg-2.4.7.tar.bz2
|
||||
sha256 7b24706e4da7e0e3b06ca068231027401f238102c41c909631349dcc3b85eb46 gnupg-2.4.7.tar.bz2
|
||||
# Locally calculated
|
||||
sha256 bc2d6664f6276fa0a72d57633b3ae68dc7dcb677b71018bf08c8e93e509f1357 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GNUPG2_VERSION = 2.4.5
|
||||
GNUPG2_VERSION = 2.4.7
|
||||
GNUPG2_SOURCE = gnupg-$(GNUPG2_VERSION).tar.bz2
|
||||
GNUPG2_SITE = https://gnupg.org/ftp/gcrypt/gnupg
|
||||
GNUPG2_LICENSE = GPL-3.0+
|
||||
|
||||
@@ -0,0 +1,798 @@
|
||||
From 5ed597eb28c408c5968e6dfb839880ba5fa17ba1 Mon Sep 17 00:00:00 2001
|
||||
From: Daiki Ueno <ueno@gnu.org>
|
||||
Date: Fri, 6 Dec 2024 09:53:18 +0900
|
||||
Subject: [PATCH] groups: represent hybrid groups with an array of IDs
|
||||
|
||||
Previously, the supported_groups array contained externally defined
|
||||
elements, which is legitimate in C99 but caused error with Clang:
|
||||
|
||||
groups.c:93:2: error: initializer element is not a compile-time constant
|
||||
group_x25519,
|
||||
^~~~~~~~~~~~
|
||||
|
||||
This reworks the array definition of indirection through group
|
||||
IDs (gnutls_group_t, i.e., integer).
|
||||
|
||||
This also makes pqc-hybrid-kx test more exhaustive.
|
||||
|
||||
Signed-off-by: Daiki Ueno <ueno@gnu.org>
|
||||
Upstream: https://gitlab.com/gnutls/gnutls/-/commit/9cc9d5556d258d23a399abfe45715773e719d134
|
||||
Signed-off-by: Brandon Maier <brandon.maier@collins.com>
|
||||
---
|
||||
lib/algorithms.h | 7 ++
|
||||
lib/algorithms/groups.c | 161 ++++++++++++++++++++------------
|
||||
lib/ext/key_share.c | 81 ++++++++++++----
|
||||
lib/ext/supported_groups.c | 45 +++++----
|
||||
lib/gnutls_int.h | 8 +-
|
||||
lib/includes/gnutls/gnutls.h.in | 4 +-
|
||||
lib/priority.c | 25 ++---
|
||||
lib/session.c | 6 +-
|
||||
tests/pqc-hybrid-kx.sh | 101 +++++++++++++++++---
|
||||
9 files changed, 315 insertions(+), 123 deletions(-)
|
||||
|
||||
diff --git a/lib/algorithms.h b/lib/algorithms.h
|
||||
index 2e1b694c6..c4af571ce 100644
|
||||
--- a/lib/algorithms.h
|
||||
+++ b/lib/algorithms.h
|
||||
@@ -55,6 +55,9 @@
|
||||
#define IS_KEM(x) \
|
||||
(((x) == GNUTLS_PK_MLKEM768) || ((x) == GNUTLS_PK_EXP_KYBER768))
|
||||
|
||||
+
|
||||
+#define IS_GROUP_HYBRID(group) ((group)->ids[0] != GNUTLS_GROUP_INVALID)
|
||||
+
|
||||
#define SIG_SEM_PRE_TLS12 (1 << 1)
|
||||
#define SIG_SEM_TLS13 (1 << 2)
|
||||
#define SIG_SEM_DEFAULT (SIG_SEM_PRE_TLS12 | SIG_SEM_TLS13)
|
||||
@@ -493,6 +496,10 @@ const gnutls_group_entry_st *_gnutls_tls_id_to_group(unsigned num);
|
||||
const gnutls_group_entry_st *_gnutls_id_to_group(unsigned id);
|
||||
gnutls_group_t _gnutls_group_get_id(const char *name);
|
||||
|
||||
+int _gnutls_group_expand(
|
||||
+ const gnutls_group_entry_st *group,
|
||||
+ const gnutls_group_entry_st *subgroups[MAX_HYBRID_GROUPS + 1]);
|
||||
+
|
||||
gnutls_ecc_curve_t _gnutls_ecc_bits_to_curve(gnutls_pk_algorithm_t pk,
|
||||
int bits);
|
||||
#define MAX_ECC_CURVE_SIZE 66
|
||||
diff --git a/lib/algorithms/groups.c b/lib/algorithms/groups.c
|
||||
index 88d0cf630..2fbe7b8ec 100644
|
||||
--- a/lib/algorithms/groups.c
|
||||
+++ b/lib/algorithms/groups.c
|
||||
@@ -30,30 +30,6 @@
|
||||
/* Supported ECC curves
|
||||
*/
|
||||
|
||||
-#ifdef HAVE_LIBOQS
|
||||
-static const gnutls_group_entry_st group_mlkem768 = {
|
||||
- .name = "MLKEM768",
|
||||
- .id = GNUTLS_GROUP_INVALID,
|
||||
- .curve = GNUTLS_ECC_CURVE_INVALID,
|
||||
- .pk = GNUTLS_PK_MLKEM768,
|
||||
-};
|
||||
-
|
||||
-static const gnutls_group_entry_st group_kyber768 = {
|
||||
- .name = "KYBER768",
|
||||
- .id = GNUTLS_GROUP_INVALID,
|
||||
- .curve = GNUTLS_ECC_CURVE_INVALID,
|
||||
- .pk = GNUTLS_PK_EXP_KYBER768,
|
||||
-};
|
||||
-#endif
|
||||
-
|
||||
-static const gnutls_group_entry_st group_x25519 = {
|
||||
- .name = "X25519",
|
||||
- .id = GNUTLS_GROUP_X25519,
|
||||
- .curve = GNUTLS_ECC_CURVE_X25519,
|
||||
- .tls_id = 29,
|
||||
- .pk = GNUTLS_PK_ECDH_X25519,
|
||||
-};
|
||||
-
|
||||
static const gnutls_group_entry_st supported_groups[] = {
|
||||
{
|
||||
.name = "SECP192R1",
|
||||
@@ -90,7 +66,13 @@ static const gnutls_group_entry_st supported_groups[] = {
|
||||
.tls_id = 25,
|
||||
.pk = GNUTLS_PK_ECDSA,
|
||||
},
|
||||
- group_x25519,
|
||||
+ {
|
||||
+ .name = "X25519",
|
||||
+ .id = GNUTLS_GROUP_X25519,
|
||||
+ .curve = GNUTLS_ECC_CURVE_X25519,
|
||||
+ .tls_id = 29,
|
||||
+ .pk = GNUTLS_PK_ECDH_X25519,
|
||||
+ },
|
||||
#ifdef ENABLE_GOST
|
||||
/* draft-smyshlyaev-tls12-gost-suites-06, Section 6 */
|
||||
{
|
||||
@@ -191,24 +173,33 @@ static const gnutls_group_entry_st supported_groups[] = {
|
||||
.tls_id = 0x104 },
|
||||
#endif
|
||||
#ifdef HAVE_LIBOQS
|
||||
+ {
|
||||
+ .name = "MLKEM768",
|
||||
+ .id = GNUTLS_GROUP_EXP_MLKEM768,
|
||||
+ .pk = GNUTLS_PK_MLKEM768,
|
||||
+ /* absense of .tls_id means that this group alone cannot be used in TLS */
|
||||
+ },
|
||||
+ {
|
||||
+ .name = "KYBER768",
|
||||
+ .id = GNUTLS_GROUP_EXP_KYBER768,
|
||||
+ .pk = GNUTLS_PK_EXP_KYBER768,
|
||||
+ /* absense of .tls_id means that this group alone cannot be used in TLS */
|
||||
+ },
|
||||
{ .name = "SECP256R1-MLKEM768",
|
||||
.id = GNUTLS_GROUP_EXP_SECP256R1_MLKEM768,
|
||||
- .curve = GNUTLS_ECC_CURVE_SECP256R1,
|
||||
- .pk = GNUTLS_PK_ECDSA,
|
||||
- .tls_id = 0x11EB,
|
||||
- .next = &group_mlkem768 },
|
||||
+ .ids = { GNUTLS_GROUP_SECP256R1, GNUTLS_GROUP_EXP_MLKEM768,
|
||||
+ GNUTLS_GROUP_INVALID },
|
||||
+ .tls_id = 0x11EB },
|
||||
{ .name = "X25519-MLKEM768",
|
||||
.id = GNUTLS_GROUP_EXP_X25519_MLKEM768,
|
||||
- .curve = GNUTLS_ECC_CURVE_INVALID,
|
||||
- .pk = GNUTLS_PK_MLKEM768,
|
||||
- .tls_id = 0x11EC,
|
||||
- .next = &group_x25519 },
|
||||
+ .ids = { GNUTLS_GROUP_EXP_MLKEM768, GNUTLS_GROUP_X25519,
|
||||
+ GNUTLS_GROUP_INVALID },
|
||||
+ .tls_id = 0x11EC },
|
||||
{ .name = "X25519-KYBER768",
|
||||
.id = GNUTLS_GROUP_EXP_X25519_KYBER768,
|
||||
- .curve = GNUTLS_ECC_CURVE_X25519,
|
||||
- .pk = GNUTLS_PK_ECDH_X25519,
|
||||
- .tls_id = 0x6399,
|
||||
- .next = &group_kyber768 },
|
||||
+ .ids = { GNUTLS_GROUP_X25519, GNUTLS_GROUP_EXP_KYBER768,
|
||||
+ GNUTLS_GROUP_INVALID },
|
||||
+ .tls_id = 0x6399 },
|
||||
#endif
|
||||
{ 0, 0, 0 }
|
||||
};
|
||||
@@ -221,14 +212,46 @@ static const gnutls_group_entry_st supported_groups[] = {
|
||||
} \
|
||||
}
|
||||
|
||||
+static inline const gnutls_group_entry_st *group_to_entry(gnutls_group_t group)
|
||||
+{
|
||||
+ if (group == 0)
|
||||
+ return NULL;
|
||||
+
|
||||
+ GNUTLS_GROUP_LOOP(if (p->id == group) { return p; });
|
||||
+
|
||||
+ return NULL;
|
||||
+}
|
||||
+
|
||||
+static inline bool
|
||||
+group_is_supported_standalone(const gnutls_group_entry_st *group)
|
||||
+{
|
||||
+ return group->pk != 0 && _gnutls_pk_exists(group->pk) &&
|
||||
+ (group->curve == 0 ||
|
||||
+ _gnutls_ecc_curve_is_supported(group->curve));
|
||||
+}
|
||||
+
|
||||
+static inline bool group_is_supported(const gnutls_group_entry_st *group)
|
||||
+{
|
||||
+ if (!IS_GROUP_HYBRID(group))
|
||||
+ return group_is_supported_standalone(group);
|
||||
+
|
||||
+ for (size_t i = 0;
|
||||
+ i < MAX_HYBRID_GROUPS && group->ids[i] != GNUTLS_GROUP_INVALID;
|
||||
+ i++) {
|
||||
+ const gnutls_group_entry_st *p = group_to_entry(group->ids[i]);
|
||||
+ if (!p || !group_is_supported_standalone(p))
|
||||
+ return false;
|
||||
+ }
|
||||
+
|
||||
+ return true;
|
||||
+}
|
||||
+
|
||||
/* Returns the TLS id of the given curve
|
||||
*/
|
||||
const gnutls_group_entry_st *_gnutls_tls_id_to_group(unsigned num)
|
||||
{
|
||||
GNUTLS_GROUP_LOOP(
|
||||
- if (p->tls_id == num &&
|
||||
- (p->curve == 0 ||
|
||||
- _gnutls_ecc_curve_is_supported(p->curve))) { return p; });
|
||||
+ if (p->tls_id == num && group_is_supported(p)) { return p; });
|
||||
|
||||
return NULL;
|
||||
}
|
||||
@@ -239,10 +262,7 @@ const gnutls_group_entry_st *_gnutls_id_to_group(unsigned id)
|
||||
return NULL;
|
||||
|
||||
GNUTLS_GROUP_LOOP(
|
||||
- if (p->id == id && (p->curve == 0 ||
|
||||
- _gnutls_ecc_curve_is_supported(p->curve))) {
|
||||
- return p;
|
||||
- });
|
||||
+ if (p->id == id && group_is_supported(p)) { return p; });
|
||||
|
||||
return NULL;
|
||||
}
|
||||
@@ -261,27 +281,17 @@ const gnutls_group_entry_st *_gnutls_id_to_group(unsigned id)
|
||||
**/
|
||||
const gnutls_group_t *gnutls_group_list(void)
|
||||
{
|
||||
- static gnutls_group_t groups[MAX_ALGOS] = { 0 };
|
||||
+ static gnutls_group_t groups[MAX_ALGOS + 1] = { 0 };
|
||||
|
||||
if (groups[0] == 0) {
|
||||
- int i = 0;
|
||||
+ size_t i = 0;
|
||||
|
||||
- const gnutls_group_entry_st *p;
|
||||
-
|
||||
- for (p = supported_groups; p->name != NULL; p++) {
|
||||
- const gnutls_group_entry_st *pp;
|
||||
-
|
||||
- for (pp = p; pp != NULL; pp = pp->next) {
|
||||
- if ((pp->curve != 0 &&
|
||||
- !_gnutls_ecc_curve_is_supported(
|
||||
- pp->curve)) ||
|
||||
- (pp->pk != 0 && !_gnutls_pk_exists(pp->pk)))
|
||||
- break;
|
||||
- }
|
||||
- if (pp == NULL)
|
||||
+ for (const gnutls_group_entry_st *p = supported_groups;
|
||||
+ p->name != NULL; p++) {
|
||||
+ if (group_is_supported(p))
|
||||
groups[i++] = p->id;
|
||||
}
|
||||
- groups[i++] = 0;
|
||||
+ groups[i++] = GNUTLS_GROUP_INVALID;
|
||||
}
|
||||
|
||||
return groups;
|
||||
@@ -344,3 +354,34 @@ const char *gnutls_group_get_name(gnutls_group_t group)
|
||||
|
||||
return NULL;
|
||||
}
|
||||
+
|
||||
+/* Expand GROUP into hybrid SUBGROUPS if any, otherwise an array
|
||||
+ * containing the GROUP itself. The result will be written to
|
||||
+ * SUBGROUPS, which will be NUL-terminated.
|
||||
+ */
|
||||
+int _gnutls_group_expand(
|
||||
+ const gnutls_group_entry_st *group,
|
||||
+ const gnutls_group_entry_st *subgroups[MAX_HYBRID_GROUPS + 1])
|
||||
+{
|
||||
+ size_t pos = 0;
|
||||
+
|
||||
+ if (IS_GROUP_HYBRID(group)) {
|
||||
+ for (size_t i = 0; i < MAX_HYBRID_GROUPS &&
|
||||
+ group->ids[i] != GNUTLS_GROUP_INVALID;
|
||||
+ i++) {
|
||||
+ const gnutls_group_entry_st *p =
|
||||
+ group_to_entry(group->ids[i]);
|
||||
+ /* This shouldn't happen, as GROUP is assumed
|
||||
+ * to be supported before calling this
|
||||
+ * function. */
|
||||
+ if (unlikely(!p))
|
||||
+ return gnutls_assert_val(
|
||||
+ GNUTLS_E_INTERNAL_ERROR);
|
||||
+ subgroups[pos++] = p;
|
||||
+ }
|
||||
+ } else {
|
||||
+ subgroups[pos++] = group;
|
||||
+ }
|
||||
+ subgroups[pos] = NULL;
|
||||
+ return 0;
|
||||
+}
|
||||
diff --git a/lib/ext/key_share.c b/lib/ext/key_share.c
|
||||
index 574521157..8fbe2d2bd 100644
|
||||
--- a/lib/ext/key_share.c
|
||||
+++ b/lib/ext/key_share.c
|
||||
@@ -232,6 +232,9 @@ static int client_gen_key_share(gnutls_session_t session,
|
||||
gnutls_buffer_st *extdata)
|
||||
{
|
||||
unsigned int length_pos;
|
||||
+ const gnutls_group_entry_st *groups[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
int ret;
|
||||
|
||||
_gnutls_handshake_log("EXT[%p]: sending key share for %s\n", session,
|
||||
@@ -247,8 +250,12 @@ static int client_gen_key_share(gnutls_session_t session,
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
|
||||
- for (const gnutls_group_entry_st *p = group; p != NULL; p = p->next) {
|
||||
- ret = client_gen_key_share_single(session, p, extdata);
|
||||
+ ret = _gnutls_group_expand(group, groups);
|
||||
+ if (ret < 0)
|
||||
+ return gnutls_assert_val(ret);
|
||||
+
|
||||
+ for (size_t i = 0; groups[i]; i++) {
|
||||
+ ret = client_gen_key_share_single(session, groups[i], extdata);
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
}
|
||||
@@ -345,6 +352,9 @@ static int server_gen_key_share(gnutls_session_t session,
|
||||
gnutls_buffer_st *extdata)
|
||||
{
|
||||
unsigned int length_pos;
|
||||
+ const gnutls_group_entry_st *groups[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
int ret;
|
||||
|
||||
_gnutls_handshake_log("EXT[%p]: sending key share for %s\n", session,
|
||||
@@ -360,8 +370,12 @@ static int server_gen_key_share(gnutls_session_t session,
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
|
||||
- for (const gnutls_group_entry_st *p = group; p != NULL; p = p->next) {
|
||||
- ret = server_gen_key_share_single(session, p, extdata);
|
||||
+ ret = _gnutls_group_expand(group, groups);
|
||||
+ if (ret < 0)
|
||||
+ return gnutls_assert_val(ret);
|
||||
+
|
||||
+ for (size_t i = 0; groups[i]; i++) {
|
||||
+ ret = server_gen_key_share_single(session, groups[i], extdata);
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
}
|
||||
@@ -594,13 +608,19 @@ static int server_use_key_share(gnutls_session_t session,
|
||||
const uint8_t *data, size_t data_size)
|
||||
{
|
||||
gnutls_buffer_st buffer;
|
||||
+ const gnutls_group_entry_st *groups[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
+ int ret;
|
||||
|
||||
_gnutls_ro_buffer_init(&buffer, data, data_size);
|
||||
|
||||
- for (const gnutls_group_entry_st *p = group; p != NULL; p = p->next) {
|
||||
- int ret;
|
||||
+ ret = _gnutls_group_expand(group, groups);
|
||||
+ if (ret < 0)
|
||||
+ return gnutls_assert_val(ret);
|
||||
|
||||
- ret = server_use_key_share_single(session, p, &buffer);
|
||||
+ for (size_t i = 0; groups[i]; i++) {
|
||||
+ ret = server_use_key_share_single(session, groups[i], &buffer);
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
}
|
||||
@@ -775,13 +795,19 @@ static int client_use_key_share(gnutls_session_t session,
|
||||
const uint8_t *data, size_t data_size)
|
||||
{
|
||||
gnutls_buffer_st buffer;
|
||||
+ const gnutls_group_entry_st *groups[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
+ int ret;
|
||||
|
||||
_gnutls_ro_buffer_init(&buffer, data, data_size);
|
||||
|
||||
- for (const gnutls_group_entry_st *p = group; p != NULL; p = p->next) {
|
||||
- int ret;
|
||||
+ ret = _gnutls_group_expand(group, groups);
|
||||
+ if (ret < 0)
|
||||
+ return gnutls_assert_val(ret);
|
||||
|
||||
- ret = client_use_key_share_single(session, p, &buffer);
|
||||
+ for (size_t i = 0; groups[i]; i++) {
|
||||
+ ret = client_use_key_share_single(session, groups[i], &buffer);
|
||||
if (ret < 0)
|
||||
return gnutls_assert_val(ret);
|
||||
}
|
||||
@@ -958,18 +984,39 @@ static int key_share_recv_params(gnutls_session_t session, const uint8_t *data,
|
||||
return 0;
|
||||
}
|
||||
|
||||
+static inline bool pk_types_overlap_single(const gnutls_group_entry_st *a,
|
||||
+ const gnutls_group_entry_st *b)
|
||||
+{
|
||||
+ return a->pk == b->pk || (IS_ECDHX(a->pk) && IS_ECDHX(b->pk)) ||
|
||||
+ (IS_KEM(a->pk) && IS_KEM(b->pk));
|
||||
+}
|
||||
+
|
||||
static inline bool pk_types_overlap(const gnutls_group_entry_st *a,
|
||||
const gnutls_group_entry_st *b)
|
||||
{
|
||||
- const gnutls_group_entry_st *pa;
|
||||
+ const gnutls_group_entry_st *sa[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
+ const gnutls_group_entry_st *sb[MAX_HYBRID_GROUPS + 1] = {
|
||||
+ NULL,
|
||||
+ };
|
||||
+ int ret;
|
||||
+
|
||||
+ ret = _gnutls_group_expand(a, sa);
|
||||
+ if (ret < 0) {
|
||||
+ gnutls_assert();
|
||||
+ return false;
|
||||
+ }
|
||||
|
||||
- for (pa = a; pa != NULL; pa = pa->next) {
|
||||
- const gnutls_group_entry_st *pb;
|
||||
+ ret = _gnutls_group_expand(b, sb);
|
||||
+ if (ret < 0) {
|
||||
+ gnutls_assert();
|
||||
+ return false;
|
||||
+ }
|
||||
|
||||
- for (pb = b; pb != NULL; pb = pb->next) {
|
||||
- if (pa->pk == pb->pk ||
|
||||
- (IS_ECDHX(pa->pk) && IS_ECDHX(pb->pk)) ||
|
||||
- (IS_KEM(pa->pk) && IS_KEM(pb->pk)))
|
||||
+ for (size_t i = 0; sa[i]; i++) {
|
||||
+ for (size_t j = 0; sb[j]; j++) {
|
||||
+ if (pk_types_overlap_single(sa[i], sb[j]))
|
||||
return true;
|
||||
}
|
||||
}
|
||||
diff --git a/lib/ext/supported_groups.c b/lib/ext/supported_groups.c
|
||||
index 254ec4882..4c31d2f8f 100644
|
||||
--- a/lib/ext/supported_groups.c
|
||||
+++ b/lib/ext/supported_groups.c
|
||||
@@ -106,9 +106,9 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
unsigned min_dh;
|
||||
unsigned j;
|
||||
int serv_ec_idx, serv_dh_idx,
|
||||
- serv_kem_idx; /* index in server's priority listing */
|
||||
+ serv_hybrid_idx; /* index in server's priority listing */
|
||||
int cli_ec_pos, cli_dh_pos,
|
||||
- cli_kem_pos; /* position in listing sent by client */
|
||||
+ cli_hybrid_pos; /* position in listing sent by client */
|
||||
|
||||
if (session->security_parameters.entity == GNUTLS_CLIENT) {
|
||||
/* A client shouldn't receive this extension in TLS1.2. It is
|
||||
@@ -134,8 +134,8 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
/* we figure what is the minimum DH allowed for this session, if any */
|
||||
min_dh = get_min_dh(session);
|
||||
|
||||
- serv_ec_idx = serv_dh_idx = serv_kem_idx = -1;
|
||||
- cli_ec_pos = cli_dh_pos = cli_kem_pos = -1;
|
||||
+ serv_ec_idx = serv_dh_idx = serv_hybrid_idx = -1;
|
||||
+ cli_ec_pos = cli_dh_pos = cli_hybrid_pos = -1;
|
||||
|
||||
/* This extension is being processed prior to a ciphersuite being selected,
|
||||
* so we cannot rely on ciphersuite information. */
|
||||
@@ -180,14 +180,15 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
break;
|
||||
serv_ec_idx = j;
|
||||
cli_ec_pos = i;
|
||||
- } else if (IS_KEM(group->pk)) {
|
||||
- if (serv_kem_idx !=
|
||||
+ } else if (IS_GROUP_HYBRID(
|
||||
+ group)) {
|
||||
+ if (serv_hybrid_idx !=
|
||||
-1 &&
|
||||
(int)j >
|
||||
- serv_kem_idx)
|
||||
+ serv_hybrid_idx)
|
||||
break;
|
||||
- serv_kem_idx = j;
|
||||
- cli_kem_pos = i;
|
||||
+ serv_hybrid_idx = j;
|
||||
+ cli_hybrid_pos = i;
|
||||
}
|
||||
} else {
|
||||
if (group->pk == GNUTLS_PK_DH) {
|
||||
@@ -200,11 +201,13 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
break;
|
||||
cli_ec_pos = i;
|
||||
serv_ec_idx = j;
|
||||
- } else if (IS_KEM(group->pk)) {
|
||||
- if (cli_kem_pos != -1)
|
||||
+ } else if (IS_GROUP_HYBRID(
|
||||
+ group)) {
|
||||
+ if (cli_hybrid_pos !=
|
||||
+ -1)
|
||||
break;
|
||||
- cli_kem_pos = i;
|
||||
- serv_kem_idx = j;
|
||||
+ cli_hybrid_pos = i;
|
||||
+ serv_hybrid_idx = j;
|
||||
}
|
||||
}
|
||||
break;
|
||||
@@ -212,7 +215,7 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
}
|
||||
}
|
||||
|
||||
- /* serv_{dh,ec,kem}_idx contain the index of the groups we want to use.
|
||||
+ /* serv_{dh,ec,hybrid}_idx contain the index of the groups we want to use.
|
||||
*/
|
||||
if (serv_dh_idx != -1) {
|
||||
session->internals.cand_dh_group =
|
||||
@@ -236,18 +239,20 @@ static int _gnutls_supported_groups_recv_params(gnutls_session_t session,
|
||||
}
|
||||
}
|
||||
|
||||
- /* KEM can only be used in TLS 1.3, where no separation from
|
||||
- * ECDH and DH, and thus only cand_group is set here.
|
||||
+ /* PQC hybrid key exchange groups can only be used in
|
||||
+ * TLS 1.3, where no distinction between ECDH and DH
|
||||
+ * in the group definitions, and thus only cand_group
|
||||
+ * is set here.
|
||||
*/
|
||||
- if (serv_kem_idx != -1) {
|
||||
+ if (serv_hybrid_idx != -1) {
|
||||
if (session->internals.cand_group == NULL ||
|
||||
(session->internals.priorities->server_precedence &&
|
||||
- serv_kem_idx < MIN(serv_ec_idx, serv_dh_idx)) ||
|
||||
+ serv_hybrid_idx < MIN(serv_ec_idx, serv_dh_idx)) ||
|
||||
(!session->internals.priorities->server_precedence &&
|
||||
- cli_kem_pos < MIN(cli_ec_pos, cli_dh_pos))) {
|
||||
+ cli_hybrid_pos < MIN(cli_ec_pos, cli_dh_pos))) {
|
||||
session->internals.cand_group =
|
||||
session->internals.priorities->groups
|
||||
- .entry[serv_kem_idx];
|
||||
+ .entry[serv_hybrid_idx];
|
||||
}
|
||||
}
|
||||
|
||||
diff --git a/lib/gnutls_int.h b/lib/gnutls_int.h
|
||||
index fb2cacb54..01ef59729 100644
|
||||
--- a/lib/gnutls_int.h
|
||||
+++ b/lib/gnutls_int.h
|
||||
@@ -756,6 +756,8 @@ typedef struct gnutls_cipher_suite_entry_st {
|
||||
gnutls_mac_algorithm_t prf;
|
||||
} gnutls_cipher_suite_entry_st;
|
||||
|
||||
+#define MAX_HYBRID_GROUPS 2
|
||||
+
|
||||
typedef struct gnutls_group_entry_st {
|
||||
const char *name;
|
||||
gnutls_group_t id;
|
||||
@@ -765,8 +767,12 @@ typedef struct gnutls_group_entry_st {
|
||||
const unsigned *q_bits;
|
||||
gnutls_ecc_curve_t curve;
|
||||
gnutls_pk_algorithm_t pk;
|
||||
+ gnutls_group_t ids[MAX_HYBRID_GROUPS + 1]; /* IDs of subgroups
|
||||
+ * comprising a
|
||||
+ * hybrid group,
|
||||
+ * terminated with
|
||||
+ * GNUTLS_GROUP_INVALID */
|
||||
unsigned tls_id; /* The RFC4492 namedCurve ID or TLS 1.3 group ID */
|
||||
- const struct gnutls_group_entry_st *next;
|
||||
} gnutls_group_entry_st;
|
||||
|
||||
#define GNUTLS_MAC_FLAG_PREIMAGE_INSECURE \
|
||||
diff --git a/lib/includes/gnutls/gnutls.h.in b/lib/includes/gnutls/gnutls.h.in
|
||||
index 8b3bb5213..1e44fdd91 100644
|
||||
--- a/lib/includes/gnutls/gnutls.h.in
|
||||
+++ b/lib/includes/gnutls/gnutls.h.in
|
||||
@@ -1147,8 +1147,10 @@ typedef enum {
|
||||
GNUTLS_GROUP_EXP_X25519_KYBER768 = 512,
|
||||
GNUTLS_GROUP_EXP_SECP256R1_MLKEM768 = 513,
|
||||
GNUTLS_GROUP_EXP_X25519_MLKEM768 = 514,
|
||||
+ GNUTLS_GROUP_EXP_KYBER768 = 515,
|
||||
+ GNUTLS_GROUP_EXP_MLKEM768 = 516,
|
||||
GNUTLS_GROUP_EXP_MIN = GNUTLS_GROUP_EXP_X25519_KYBER768,
|
||||
- GNUTLS_GROUP_EXP_MAX = GNUTLS_GROUP_EXP_X25519_MLKEM768
|
||||
+ GNUTLS_GROUP_EXP_MAX = GNUTLS_GROUP_EXP_MLKEM768
|
||||
} gnutls_group_t;
|
||||
|
||||
/* macros to allow specifying a specific curve in gnutls_privkey_generate()
|
||||
diff --git a/lib/priority.c b/lib/priority.c
|
||||
index ac4ff2d8c..479dbccd6 100644
|
||||
--- a/lib/priority.c
|
||||
+++ b/lib/priority.c
|
||||
@@ -2566,7 +2566,7 @@ static void add_dh(gnutls_priority_t priority_cache)
|
||||
}
|
||||
}
|
||||
|
||||
-static void add_kem(gnutls_priority_t priority_cache)
|
||||
+static void add_hybrid(gnutls_priority_t priority_cache)
|
||||
{
|
||||
const gnutls_group_entry_st *ge;
|
||||
unsigned i;
|
||||
@@ -2579,7 +2579,7 @@ static void add_kem(gnutls_priority_t priority_cache)
|
||||
sizeof(priority_cache->groups.entry) /
|
||||
sizeof(priority_cache->groups.entry[0])) {
|
||||
/* do not add groups which do not correspond to enabled ciphersuites */
|
||||
- if (!IS_KEM(ge->pk))
|
||||
+ if (!IS_GROUP_HYBRID(ge))
|
||||
continue;
|
||||
priority_cache->groups
|
||||
.entry[priority_cache->groups.size++] = ge;
|
||||
@@ -2598,7 +2598,7 @@ static int set_ciphersuite_list(gnutls_priority_t priority_cache)
|
||||
const gnutls_sign_entry_st *se;
|
||||
unsigned have_ec = 0;
|
||||
unsigned have_dh = 0;
|
||||
- unsigned have_kem = 0;
|
||||
+ unsigned have_hybrid = 0;
|
||||
unsigned tls_sig_sem = 0;
|
||||
const version_entry_st *tlsmax = NULL, *vers;
|
||||
const version_entry_st *dtlsmax = NULL;
|
||||
@@ -2807,9 +2807,9 @@ static int set_ciphersuite_list(gnutls_priority_t priority_cache)
|
||||
priority_cache->cs.entry[priority_cache->cs.size++] =
|
||||
ce;
|
||||
|
||||
- if (!have_kem) {
|
||||
- have_kem = 1;
|
||||
- add_kem(priority_cache);
|
||||
+ if (!have_hybrid) {
|
||||
+ have_hybrid = 1;
|
||||
+ add_hybrid(priority_cache);
|
||||
}
|
||||
}
|
||||
}
|
||||
@@ -2851,8 +2851,8 @@ static int set_ciphersuite_list(gnutls_priority_t priority_cache)
|
||||
}
|
||||
}
|
||||
|
||||
- if (have_tls13 && (!have_ec || !have_dh || !have_kem)) {
|
||||
- /* scan groups to determine have_{ec,dh,kem} */
|
||||
+ if (have_tls13 && (!have_ec || !have_dh || !have_hybrid)) {
|
||||
+ /* scan groups to determine have_{ec,dh,hybrid} */
|
||||
for (i = 0; i < priority_cache->_supported_ecc.num_priorities;
|
||||
i++) {
|
||||
const gnutls_group_entry_st *ge;
|
||||
@@ -2865,12 +2865,13 @@ static int set_ciphersuite_list(gnutls_priority_t priority_cache)
|
||||
} else if (ge->prime && !have_dh) {
|
||||
add_dh(priority_cache);
|
||||
have_dh = 1;
|
||||
- } else if (IS_KEM(ge->pk) && !have_kem) {
|
||||
- add_kem(priority_cache);
|
||||
- have_kem = 1;
|
||||
+ } else if (IS_GROUP_HYBRID(ge) &&
|
||||
+ !have_hybrid) {
|
||||
+ add_hybrid(priority_cache);
|
||||
+ have_hybrid = 1;
|
||||
}
|
||||
|
||||
- if (have_dh && have_ec && have_kem)
|
||||
+ if (have_dh && have_ec && have_hybrid)
|
||||
break;
|
||||
}
|
||||
}
|
||||
diff --git a/lib/session.c b/lib/session.c
|
||||
index a9049a464..7fcbe4fb4 100644
|
||||
--- a/lib/session.c
|
||||
+++ b/lib/session.c
|
||||
@@ -415,7 +415,11 @@ char *gnutls_session_get_desc(gnutls_session_t session)
|
||||
snprintf(kx_name, sizeof(kx_name), "(PSK)");
|
||||
}
|
||||
} else if (group && sign_str) {
|
||||
- if (group->curve)
|
||||
+ if (IS_GROUP_HYBRID(group))
|
||||
+ snprintf(kx_name, sizeof(kx_name),
|
||||
+ "(HYBRID-%s)-(%s)", group_name,
|
||||
+ sign_str);
|
||||
+ else if (group->curve)
|
||||
snprintf(kx_name, sizeof(kx_name),
|
||||
"(ECDHE-%s)-(%s)", group_name,
|
||||
sign_str);
|
||||
diff --git a/tests/pqc-hybrid-kx.sh b/tests/pqc-hybrid-kx.sh
|
||||
index da936cf04..4984cd4b4 100644
|
||||
--- a/tests/pqc-hybrid-kx.sh
|
||||
+++ b/tests/pqc-hybrid-kx.sh
|
||||
@@ -33,34 +33,113 @@
|
||||
|
||||
. "${srcdir}/scripts/common.sh"
|
||||
|
||||
+# First check any mismatch in the gnutls-cli --list
|
||||
if ! "${CLI}" --list | grep '^Groups: .*GROUP-X25519-KYBER768.*' >/dev/null; then
|
||||
if "${CLI}" --list | grep '^Public Key Systems: .*KYBER768.*' >/dev/null; then
|
||||
- fail "KYBER768 is in Public Key Systems, while GROUP-X25519-KYBER768 is NOT in Groups"
|
||||
+ fail '' 'KYBER768 is in Public Key Systems, while GROUP-X25519-KYBER768 is NOT in Groups'
|
||||
fi
|
||||
- exit 77
|
||||
else
|
||||
if ! "${CLI}" --list | grep '^Public Key Systems: .*KYBER768.*' >/dev/null; then
|
||||
- fail "KYBER768 is NOT in Public Key Systems, while GROUP-X25519-KYBER768 is in Groups"
|
||||
+ fail '' 'KYBER768 is NOT in Public Key Systems, while GROUP-X25519-KYBER768 is in Groups'
|
||||
+ fi
|
||||
+fi
|
||||
+
|
||||
+if ! "${CLI}" --list | grep '^Groups: .*GROUP-\(SECP256R1\|X25519\)-MLKEM768.*' >/dev/null; then
|
||||
+ if "${CLI}" --list | grep '^Public Key Systems: .*ML-KEM-768.*' >/dev/null; then
|
||||
+ fail '' 'ML-KEM-768 is in Public Key Systems, while GROUP-SECP256R1-MLKEM768 or GROUP-X25519-MLKEM768 is NOT in Groups'
|
||||
+ fi
|
||||
+else
|
||||
+ if ! "${CLI}" --list | grep '^Public Key Systems: .*ML-KEM-768.*' >/dev/null; then
|
||||
+ fail '' 'ML-KEM-768 is NOT in Public Key Systems, while GROUP-SECP256R1-MLKEM768 or GROUP-X25519-MLKEM768 is in Groups'
|
||||
fi
|
||||
fi
|
||||
|
||||
+# If none of those hybrid groups is supported, skip the test
|
||||
+if ! "${CLI}" --list | grep '^Groups: .*GROUP-\(X25519-KYBER768\|SECP256R1-MLKEM768\|X25519-MLKEM768\).*' >/dev/null; then
|
||||
+ exit 77
|
||||
+fi
|
||||
+
|
||||
testdir=`create_testdir pqc-hybrid-kx`
|
||||
|
||||
KEY="$srcdir/../doc/credentials/x509/key-ecc.pem"
|
||||
CERT="$srcdir/../doc/credentials/x509/cert-ecc.pem"
|
||||
CACERT="$srcdir/../doc/credentials/x509/ca.pem"
|
||||
|
||||
-eval "${GETPORT}"
|
||||
-launch_server --echo --priority NORMAL:-GROUP-ALL:+GROUP-X25519-KYBER768 --x509keyfile="$KEY" --x509certfile="$CERT"
|
||||
-PID=$!
|
||||
-wait_server ${PID}
|
||||
+# Test all supported hybrid groups
|
||||
+for group in X25519-KYBER768 SECP256R1-MLKEM768 X25519-MLKEM768; do
|
||||
+ if ! "${CLI}" --list | grep "^Groups: .*GROUP-$group.*" >/dev/null; then
|
||||
+ echo "$group is not supported, skipping" >&2
|
||||
+ continue
|
||||
+ fi
|
||||
+
|
||||
+ eval "${GETPORT}"
|
||||
+ launch_server --echo --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509keyfile="$KEY" --x509certfile="$CERT"
|
||||
+ PID=$!
|
||||
+ wait_server ${PID}
|
||||
+
|
||||
+ ${VALGRIND} "${CLI}" -p "${PORT}" localhost --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509cafile="$CACERT" --logfile="$testdir/cli.log" </dev/null
|
||||
+ kill ${PID}
|
||||
+ wait
|
||||
+
|
||||
+ grep -- "- Description: (TLS1.3-X.509)-(HYBRID-$group)-(ECDSA-SECP256R1-SHA256)-(AES-256-GCM)" "$testdir/cli.log" || { echo "unexpected handshake description"; cat "$testdir/cli.log"; exit 1; }
|
||||
+done
|
||||
+
|
||||
+# KEM based groups cannot be used standalone
|
||||
+for group in KYBER768 MLKEM768; do
|
||||
+ if ! "${CLI}" --list | grep "^Groups: .*GROUP-$group.*" >/dev/null; then
|
||||
+ "$group is not supported, skipping"
|
||||
+ continue
|
||||
+ fi
|
||||
+
|
||||
+ eval "${GETPORT}"
|
||||
+ launch_server --echo --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509keyfile="$KEY" --x509certfile="$CERT"
|
||||
+ PID=$!
|
||||
+ wait_server ${PID}
|
||||
+
|
||||
+ ${VALGRIND} "${CLI}" -p "${PORT}" localhost --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509cafile="$CACERT" --logfile="$testdir/cli.log" </dev/null
|
||||
+ rc=$?
|
||||
+ kill ${PID}
|
||||
+ wait
|
||||
+
|
||||
+ if test $rc -eq 0; then
|
||||
+ fail '' 'Handshake succeeded with a standalone KEM group'
|
||||
+ fi
|
||||
+done
|
||||
+
|
||||
+# Check if disabling a curve will also disables hybrid groups with it
|
||||
+cat <<_EOF_ > "$testdir/test.config"
|
||||
+[overrides]
|
||||
+
|
||||
+disabled-curve = x25519
|
||||
+_EOF_
|
||||
+
|
||||
+for group in X25519-KYBER768 SECP256R1-MLKEM768 X25519-MLKEM768; do
|
||||
+ if ! "${CLI}" --list | grep "^Groups: .*GROUP-$group.*" >/dev/null; then
|
||||
+ echo "$group is not supported, skipping" >&2
|
||||
+ continue
|
||||
+ fi
|
||||
|
||||
-${VALGRIND} "${CLI}" -p "${PORT}" localhost --priority NORMAL:-GROUP-ALL:+GROUP-X25519-KYBER768 --x509cafile="$CACERT" --logfile="$testdir/cli.log" </dev/null
|
||||
+ eval "${GETPORT}"
|
||||
+ GNUTLS_SYSTEM_PRIORITY_FILE="$testdir/test.config" launch_server --echo --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509keyfile="$KEY" --x509certfile="$CERT"
|
||||
+ PID=$!
|
||||
+ wait_server ${PID}
|
||||
|
||||
-kill ${PID}
|
||||
-wait
|
||||
+ ${VALGRIND} "${CLI}" -p "${PORT}" localhost --priority "NORMAL:-GROUP-ALL:+GROUP-$group" --x509cafile="$CACERT" --logfile="$testdir/cli.log" </dev/null
|
||||
+ rc=$?
|
||||
+ kill ${PID}
|
||||
+ wait
|
||||
|
||||
-grep -- '- Description: (TLS1.3-X.509)-(ECDHE-X25519-KYBER768)-(ECDSA-SECP256R1-SHA256)-(AES-256-GCM)' "$testdir/cli.log" || { echo "unexpected handshake description"; exit 1; }
|
||||
+ case "$group" in
|
||||
+ X25519*)
|
||||
+ if test $rc -eq 0; then
|
||||
+ fail '' 'Handshake succeeded with a hybrid group with X25519'
|
||||
+ fi
|
||||
+ ;;
|
||||
+ *)
|
||||
+ grep -- "- Description: (TLS1.3-X.509)-(HYBRID-$group)-(ECDSA-SECP256R1-SHA256)-(AES-256-GCM)" "$testdir/cli.log" || { echo "unexpected handshake description"; cat "$testdir/cli.log"; exit 1; }
|
||||
+ ;;
|
||||
+ esac
|
||||
+done
|
||||
|
||||
rm -rf "$testdir"
|
||||
exit 0
|
||||
--
|
||||
2.47.1
|
||||
|
||||
@@ -1,6 +1,6 @@
|
||||
# Locally calculated after checking pgp signature
|
||||
# https://www.gnupg.org/ftp/gcrypt/gnutls/v3.8/gnutls-3.8.7.tar.xz.sig
|
||||
sha256 fe302f2b6ad5a564bcb3678eb61616413ed5277aaf8e7bf7cdb9a95a18d9f477 gnutls-3.8.7.tar.xz
|
||||
# https://www.gnupg.org/ftp/gcrypt/gnutls/v3.8/gnutls-3.8.8.tar.xz.sig
|
||||
sha256 ac4f020e583880b51380ed226e59033244bc536cad2623f2e26f5afa2939d8fb gnutls-3.8.8.tar.xz
|
||||
# Locally calculated
|
||||
sha256 3972dc9744f6499f0f9b2dbf76696f2ae7ad8af9b23dde66d6af86c9dfb36986 doc/COPYING
|
||||
sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 doc/COPYING.LESSER
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
|
||||
# When bumping, make sure *all* --without-libfoo-prefix options are in GNUTLS_CONF_OPTS
|
||||
GNUTLS_VERSION_MAJOR = 3.8
|
||||
GNUTLS_VERSION = $(GNUTLS_VERSION_MAJOR).7
|
||||
GNUTLS_VERSION = $(GNUTLS_VERSION_MAJOR).8
|
||||
GNUTLS_SOURCE = gnutls-$(GNUTLS_VERSION).tar.xz
|
||||
GNUTLS_SITE = https://www.gnupg.org/ftp/gcrypt/gnutls/v$(GNUTLS_VERSION_MAJOR)
|
||||
GNUTLS_LICENSE = LGPL-2.1+ (core library)
|
||||
@@ -58,11 +58,11 @@ HOST_GNUTLS_CONF_OPTS = \
|
||||
--without-libz-prefix \
|
||||
--without-tpm \
|
||||
--disable-openssl-compatibility \
|
||||
--without-libbrotli \
|
||||
--without-brotli \
|
||||
--without-idn \
|
||||
--without-p11-kit \
|
||||
--without-zlib \
|
||||
--without-libzstd
|
||||
--without-zstd
|
||||
|
||||
ifeq ($(BR2_PACKAGE_GNUTLS_OPENSSL),y)
|
||||
GNUTLS_LICENSE += , GPL-3.0+ (gnutls-openssl library)
|
||||
@@ -73,10 +73,10 @@ GNUTLS_CONF_OPTS += --disable-openssl-compatibility
|
||||
endif
|
||||
|
||||
ifeq ($(BR2_PACKAGE_BROTLI),y)
|
||||
GNUTLS_CONF_OPTS += --with-libbrotli
|
||||
GNUTLS_CONF_OPTS += --with-brotli
|
||||
GNUTLS_DEPENDENCIES += brotli
|
||||
else
|
||||
GNUTLS_CONF_OPTS += --without-libbrotli
|
||||
GNUTLS_CONF_OPTS += --without-brotli
|
||||
endif
|
||||
|
||||
ifeq ($(BR2_PACKAGE_CRYPTODEV_LINUX),y)
|
||||
@@ -106,10 +106,10 @@ GNUTLS_CONF_OPTS += --without-zlib
|
||||
endif
|
||||
|
||||
ifeq ($(BR2_PACKAGE_ZSTD),y)
|
||||
GNUTLS_CONF_OPTS += --with-libzstd
|
||||
GNUTLS_CONF_OPTS += --with-zstd
|
||||
GNUTLS_DEPENDENCIES += zstd
|
||||
else
|
||||
GNUTLS_CONF_OPTS += --without-libzstd
|
||||
GNUTLS_CONF_OPTS += --without-zstd
|
||||
endif
|
||||
|
||||
# Provide a default CA cert location
|
||||
|
||||
+1
-1
@@ -1,3 +1,3 @@
|
||||
# From https://go.dev/dl
|
||||
sha256 66432d87d85e0cfac3edffe637d5930fc4ddf5793313fe11e4a0f333023c879f go1.22.7.src.tar.gz
|
||||
sha256 1e94fd48be750d1fafb4d9b3b6dd31a6e9d2735d339bf2462bc97b64ca4c1037 go1.22.10.src.tar.gz
|
||||
sha256 2d36597f7117c38b006835ae7f537487207d8ec407aa9d9980794b2030cbc067 LICENSE
|
||||
|
||||
+1
-1
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GO_VERSION = 1.22.7
|
||||
GO_VERSION = 1.22.10
|
||||
GO_SITE = https://storage.googleapis.com/golang
|
||||
GO_SOURCE = go$(GO_VERSION).src.tar.gz
|
||||
|
||||
|
||||
@@ -2,6 +2,11 @@ config BR2_PACKAGE_GOBJECT_INTROSPECTION_ARCH_SUPPORTS
|
||||
bool
|
||||
default y
|
||||
depends on BR2_PACKAGE_HOST_QEMU_ARCH_SUPPORTS
|
||||
# gobject-introspection programs cause a hang of Qemu on
|
||||
# Microblaze, and supporting GOI on Microblaze is not very
|
||||
# relevant.
|
||||
depends on !BR2_microblazeel
|
||||
depends on !BR2_microblazebe
|
||||
|
||||
config BR2_PACKAGE_GOBJECT_INTROSPECTION
|
||||
bool "gobject-introspection"
|
||||
@@ -36,7 +41,7 @@ config BR2_PACKAGE_GOBJECT_INTROSPECTION
|
||||
language bindings can read this metadata and automatically
|
||||
provide bindings to call into the C library.
|
||||
|
||||
https://wiki.gnome.org/action/show/Projects/GObjectIntrospection
|
||||
https://gi.readthedocs.io/
|
||||
|
||||
comment "gobject-introspection needs python3"
|
||||
depends on !BR2_PACKAGE_PYTHON3
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-omx/gst-omx-1.22.9.tar.xz.sha256sum
|
||||
sha256 9362d6117985d09dcf6e27bdaef377dc08efb7df01d00101d04fb644addac61e gst-omx-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-omx/gst-omx-1.22.12.tar.xz.sha256sum
|
||||
sha256 6b0685b92ac735032d7987d1028afaeab0a98ab726e0c51e5b9bfc8f2da7c8b1 gst-omx-1.22.12.tar.xz
|
||||
sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST_OMX_VERSION = 1.22.9
|
||||
GST_OMX_VERSION = 1.22.12
|
||||
GST_OMX_SOURCE = gst-omx-$(GST_OMX_VERSION).tar.xz
|
||||
GST_OMX_SITE = https://gstreamer.freedesktop.org/src/gst-omx
|
||||
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-devtools/gst-devtools-1.22.9.tar.xz.sha256sum
|
||||
sha256 02e29400b44e9cc603aa6444dee5726b57edabef6455e6d0921ffed6f13840ee gst-devtools-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-devtools/gst-devtools-1.22.12.tar.xz.sha256sum
|
||||
sha256 015ff62789dab423edafe979b019c7de4c849a2b7e74912b20b74a70e5b68f72 gst-devtools-1.22.12.tar.xz
|
||||
sha256 6095e9ffa777dd22839f7801aa845b31c9ed07f3d6bf8a26dc5d2dec8ccc0ef3 validate/COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_DEVTOOLS_VERSION = 1.22.9
|
||||
GST1_DEVTOOLS_VERSION = 1.22.12
|
||||
GST1_DEVTOOLS_SOURCE = gst-devtools-$(GST1_DEVTOOLS_VERSION).tar.xz
|
||||
GST1_DEVTOOLS_SITE = https://gstreamer.freedesktop.org/src/gst-devtools
|
||||
GST1_DEVTOOLS_LICENSE = LGPL-2.1+
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-libav/gst-libav-1.22.9.tar.xz.sha256sum
|
||||
sha256 192f7d27d21c1e7c72c339a2647a9b0c247fedc62ea5029115f8c3e22ebb87d8 gst-libav-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-libav/gst-libav-1.22.12.tar.xz.sha256sum
|
||||
sha256 3b60d4cac2fbcd085a93e9389ca23e0443bee1ca75574d31d4f12bb1bbecab48 gst-libav-1.22.12.tar.xz
|
||||
sha256 ad2eec519ebd4b5df86ea84dff24ae3bfa2edea846a703b58902dd221ae375db COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_LIBAV_VERSION = 1.22.9
|
||||
GST1_LIBAV_VERSION = 1.22.12
|
||||
GST1_LIBAV_SOURCE = gst-libav-$(GST1_LIBAV_VERSION).tar.xz
|
||||
GST1_LIBAV_SITE = https://gstreamer.freedesktop.org/src/gst-libav
|
||||
GST1_LIBAV_LICENSE = LGPL-2.1+
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-bad/gst-plugins-bad-1.22.9.tar.xz.sha256sum
|
||||
sha256 1bc65d0fd5f53a3636564efd3fcf318c3edcdec39c4109a503c1fc8203840a1d gst-plugins-bad-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-bad/gst-plugins-bad-1.22.12.tar.xz.sha256sum
|
||||
sha256 388b4c4412f42e36a38b17cc34119bc11879bd4d9fbd4ff6d03b2c7fc6b4d494 gst-plugins-bad-1.22.12.tar.xz
|
||||
sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_PLUGINS_BAD_VERSION = 1.22.9
|
||||
GST1_PLUGINS_BAD_VERSION = 1.22.12
|
||||
GST1_PLUGINS_BAD_SOURCE = gst-plugins-bad-$(GST1_PLUGINS_BAD_VERSION).tar.xz
|
||||
GST1_PLUGINS_BAD_SITE = https://gstreamer.freedesktop.org/src/gst-plugins-bad
|
||||
GST1_PLUGINS_BAD_INSTALL_STAGING = YES
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-base/gst-plugins-base-1.22.9.tar.xz.sha256sum
|
||||
sha256 fac3e0dd2d8e9370388b34bf8c21b89d5f63bc3cfc12cd7fdc8fc6c1cba03334 gst-plugins-base-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-base/gst-plugins-base-1.22.12.tar.xz.sha256sum
|
||||
sha256 73cfadc3a6ffe77ed974cfd6fb391c605e4531f48db21dd6b9f42b8cb69bd8c1 gst-plugins-base-1.22.12.tar.xz
|
||||
sha256 ad2eec519ebd4b5df86ea84dff24ae3bfa2edea846a703b58902dd221ae375db COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_PLUGINS_BASE_VERSION = 1.22.9
|
||||
GST1_PLUGINS_BASE_VERSION = 1.22.12
|
||||
GST1_PLUGINS_BASE_SOURCE = gst-plugins-base-$(GST1_PLUGINS_BASE_VERSION).tar.xz
|
||||
GST1_PLUGINS_BASE_SITE = https://gstreamer.freedesktop.org/src/gst-plugins-base
|
||||
GST1_PLUGINS_BASE_INSTALL_STAGING = YES
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-good/gst-plugins-good-1.22.9.tar.xz.sha256sum
|
||||
sha256 26959fcfebfff637d4ea08ef40316baf31b61bb7729820b0684e800c3a1478b6 gst-plugins-good-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-good/gst-plugins-good-1.22.12.tar.xz.sha256sum
|
||||
sha256 9c1913f981900bd8867182639b20907b28ed78ef7a222cfbf2d8ba9dab992fa7 gst-plugins-good-1.22.12.tar.xz
|
||||
sha256 6095e9ffa777dd22839f7801aa845b31c9ed07f3d6bf8a26dc5d2dec8ccc0ef3 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_PLUGINS_GOOD_VERSION = 1.22.9
|
||||
GST1_PLUGINS_GOOD_VERSION = 1.22.12
|
||||
GST1_PLUGINS_GOOD_SOURCE = gst-plugins-good-$(GST1_PLUGINS_GOOD_VERSION).tar.xz
|
||||
GST1_PLUGINS_GOOD_SITE = https://gstreamer.freedesktop.org/src/gst-plugins-good
|
||||
GST1_PLUGINS_GOOD_LICENSE_FILES = COPYING
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-ugly/gst-plugins-ugly-1.22.9.tar.xz.sha256sum
|
||||
sha256 0bf685d66015a01dd3fc1671b64a1c8acb321dd9d4ab9e05a29ab19782aa6236 gst-plugins-ugly-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-plugins-ugly/gst-plugins-ugly-1.22.12.tar.xz.sha256sum
|
||||
sha256 d59a1aaf8dd2cc416dc5b5c0b7aecd02b1811bf1229aa724e6c2a503d3799083 gst-plugins-ugly-1.22.12.tar.xz
|
||||
sha256 6095e9ffa777dd22839f7801aa845b31c9ed07f3d6bf8a26dc5d2dec8ccc0ef3 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_PLUGINS_UGLY_VERSION = 1.22.9
|
||||
GST1_PLUGINS_UGLY_VERSION = 1.22.12
|
||||
GST1_PLUGINS_UGLY_SOURCE = gst-plugins-ugly-$(GST1_PLUGINS_UGLY_VERSION).tar.xz
|
||||
GST1_PLUGINS_UGLY_SITE = https://gstreamer.freedesktop.org/src/gst-plugins-ugly
|
||||
GST1_PLUGINS_UGLY_LICENSE_FILES = COPYING
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-python/gst-python-1.22.9.tar.xz.sha256sum
|
||||
sha256 3f9d5c6ffefda268703744b592a6b3983aa6723273b1220ecbcb62c2a5800009 gst-python-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-python/gst-python-1.22.12.tar.xz.sha256sum
|
||||
sha256 d98d3226efea20d5c440a28988a20319a953f7c594895df2bba4538633108e9f gst-python-1.22.12.tar.xz
|
||||
sha256 ea3ad127610e5ded2210b3a86a46314f2b3b28e438eccffdae19a4d6fbcdb0c2 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_PYTHON_VERSION = 1.22.9
|
||||
GST1_PYTHON_VERSION = 1.22.12
|
||||
GST1_PYTHON_SOURCE = gst-python-$(GST1_PYTHON_VERSION).tar.xz
|
||||
GST1_PYTHON_SITE = https://gstreamer.freedesktop.org/src/gst-python
|
||||
GST1_PYTHON_INSTALL_STAGING = YES
|
||||
|
||||
@@ -1,4 +1,4 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gst-rtsp-server/gst-rtsp-server-1.22.9.tar.xz.sha256sum
|
||||
sha256 808af148f89404ff74850f8ca5272bed4bfe67f9620231dc4514fd07eb26d0a4 gst-rtsp-server-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gst-rtsp-server/gst-rtsp-server-1.22.12.tar.xz.sha256sum
|
||||
sha256 bf6c7871e7cf3528e4ec87ddc2f2949691cd269f98e536482ae744c1405cf451 gst-rtsp-server-1.22.12.tar.xz
|
||||
sha256 ad2eec519ebd4b5df86ea84dff24ae3bfa2edea846a703b58902dd221ae375db COPYING
|
||||
sha256 ad2eec519ebd4b5df86ea84dff24ae3bfa2edea846a703b58902dd221ae375db COPYING.LIB
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_RTSP_SERVER_VERSION = 1.22.9
|
||||
GST1_RTSP_SERVER_VERSION = 1.22.12
|
||||
GST1_RTSP_SERVER_SOURCE = gst-rtsp-server-$(GST1_RTSP_SERVER_VERSION).tar.xz
|
||||
GST1_RTSP_SERVER_SITE = http://gstreamer.freedesktop.org/src/gst-rtsp-server
|
||||
GST1_RTSP_SERVER_LICENSE = LGPL-2.1+
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer-vaapi/gstreamer-vaapi-1.22.9.tar.xz.sha256sum
|
||||
sha256 8ba20da8c4cbf5b2953dba904672c4275d0053e1528f97fdf8e59942c7883ca8 gstreamer-vaapi-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer-vaapi/gstreamer-vaapi-1.22.12.tar.xz.sha256sum
|
||||
sha256 013ad729b2fe4fccda559bddc626bcb14230cfb90a2271049f8466bfec5d80df gstreamer-vaapi-1.22.12.tar.xz
|
||||
sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 COPYING.LIB
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GST1_VAAPI_VERSION = 1.22.9
|
||||
GST1_VAAPI_VERSION = 1.22.12
|
||||
GST1_VAAPI_SITE = https://gstreamer.freedesktop.org/src/gstreamer-vaapi
|
||||
GST1_VAAPI_SOURCE = gstreamer-vaapi-$(GST1_VAAPI_VERSION).tar.xz
|
||||
GST1_VAAPI_LICENSE = LGPL-2.1+
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer-editing-services/gst-editing-services-1.22.9.tar.xz.sha256sum
|
||||
sha256 3553ad3802dccde0c0ef1461881acd9b55bddf8adf751de4cb51b7f8cb50440d gst-editing-services-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer-editing-services/gst-editing-services-1.22.12.tar.xz.sha256sum
|
||||
sha256 792339135ce713088663cc5d44e0aea8217793e88fabfd11571e7abf4a429f2c gst-editing-services-1.22.12.tar.xz
|
||||
|
||||
# Hashes for license files:
|
||||
sha256 f445dc78b88496f7e20c7a2a461b95baba5865c8919b8289ac24ac0a80c6ce7a COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GSTREAMER1_EDITING_SERVICES_VERSION = 1.22.9
|
||||
GSTREAMER1_EDITING_SERVICES_VERSION = 1.22.12
|
||||
GSTREAMER1_EDITING_SERVICES_SOURCE = gst-editing-services-$(GSTREAMER1_EDITING_SERVICES_VERSION).tar.xz
|
||||
GSTREAMER1_EDITING_SERVICES_SITE = https://gstreamer.freedesktop.org/src/gstreamer-editing-services
|
||||
GSTREAMER1_EDITING_SERVICES_LICENSE = LGPL-2.0+
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer/gstreamer-1.22.9.tar.xz.sha256sum
|
||||
sha256 1e7124d347e8cdc80f08ec1d370c201be513002af1102bb20e83c5279cb48ebd gstreamer-1.22.9.tar.xz
|
||||
# From https://gstreamer.freedesktop.org/src/gstreamer/gstreamer-1.22.12.tar.xz.sha256sum
|
||||
sha256 ac352f3d02caa67f3b169daa9aa78b04dea0fc08a727de73cb28d89bd54c6f61 gstreamer-1.22.12.tar.xz
|
||||
sha256 ad2eec519ebd4b5df86ea84dff24ae3bfa2edea846a703b58902dd221ae375db COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
GSTREAMER1_VERSION = 1.22.9
|
||||
GSTREAMER1_VERSION = 1.22.12
|
||||
GSTREAMER1_SOURCE = gstreamer-$(GSTREAMER1_VERSION).tar.xz
|
||||
GSTREAMER1_SITE = https://gstreamer.freedesktop.org/src/gstreamer
|
||||
GSTREAMER1_INSTALL_STAGING = YES
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally computed
|
||||
sha256 8b7582eac7e9a691356e18b3bdcbc7b2db09494e040ec980a4a5fb6d0da261bf intel-microcode-20240910.tar.gz
|
||||
sha256 37246208ef68039be752438c72400a688a2238df13a7f5282497c80be2d8366d intel-microcode-20241112.tar.gz
|
||||
sha256 03efb1491c7e899feb2665fa299363e64035e5444c1b8bc1f6ebed30de964e12 license
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
INTEL_MICROCODE_VERSION = 20240910
|
||||
INTEL_MICROCODE_VERSION = 20241112
|
||||
INTEL_MICROCODE_SITE = $(call github,intel,Intel-Linux-Processor-Microcode-Data-Files,microcode-$(INTEL_MICROCODE_VERSION))
|
||||
INTEL_MICROCODE_LICENSE = PROPRIETARY
|
||||
INTEL_MICROCODE_LICENSE_FILES = license
|
||||
|
||||
@@ -1,4 +1,4 @@
|
||||
# From https://downloads.es.net/pub/iperf/iperf-3.17.1.tar.gz.sha256
|
||||
sha256 84404ca8431b595e86c473d8f23d8bb102810001f15feaf610effd3b318788aa iperf-3.17.1.tar.gz
|
||||
# From https://downloads.es.net/pub/iperf/iperf-3.18.tar.gz.sha256
|
||||
sha256 c0618175514331e766522500e20c94bfb293b4424eb27d7207fb427b88d20bab iperf-3.18.tar.gz
|
||||
# Locally computed
|
||||
sha256 3dc3e2076dd9cdea2b66d8fe213997ff25fb6171594f055b59fe25321b438f6f LICENSE
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
IPERF3_VERSION = 3.17.1
|
||||
IPERF3_VERSION = 3.18
|
||||
IPERF3_SITE = https://downloads.es.net/pub/iperf
|
||||
IPERF3_SOURCE = iperf-$(IPERF3_VERSION).tar.gz
|
||||
IPERF3_LICENSE = BSD-3-Clause, BSD-2-Clause, MIT
|
||||
|
||||
@@ -1,4 +1,5 @@
|
||||
# Locally calculated after checking pgp signature
|
||||
sha256 fefe9ec8c7b1475449945c934a2360ab12693454892be47a6d288c63eb107ead irssi-1.4.4.tar.xz
|
||||
# Locally calculated after checking pgp signature with key
|
||||
# 7EE65E3082A5FB06AC7C368D00CCB587DDBEF0E1
|
||||
sha256 72a951cb0ad622785a8962801f005a3a412736c7e7e3ce152f176287c52fe062 irssi-1.4.5.tar.xz
|
||||
# Locally calculated
|
||||
sha256 a1a27cb2ecee8d5378fbb3562f577104a445d6d66fee89286e16758305e63e2b COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
IRSSI_VERSION = 1.4.4
|
||||
IRSSI_VERSION = 1.4.5
|
||||
IRSSI_SOURCE = irssi-$(IRSSI_VERSION).tar.xz
|
||||
IRSSI_SITE = https://codeberg.org/irssi/irssi/releases/download/$(IRSSI_VERSION)
|
||||
IRSSI_LICENSE = GPL-2.0+
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
# Locally calculated after checking pgp signature
|
||||
# https://curl.se/download/curl-8.10.1.tar.xz.asc
|
||||
# https://curl.se/download/curl-8.11.1.tar.xz.asc
|
||||
# signed with key 27EDEAF22F3ABCEB50DB9A125CC908FDB71E12C2
|
||||
sha256 73a4b0e99596a09fa5924a4fb7e4b995a85fda0d18a2c02ab9cf134bebce04ee curl-8.10.1.tar.xz
|
||||
sha256 c7ca7db48b0909743eaef34250da02c19bc61d4f1dcedd6603f109409536ab56 curl-8.11.1.tar.xz
|
||||
sha256 adb1fc06547fd136244179809f7b7c2d2ae6c4534f160aa513af9b6a12866a32 COPYING
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
LIBCURL_VERSION = 8.10.1
|
||||
LIBCURL_VERSION = 8.11.1
|
||||
LIBCURL_SOURCE = curl-$(LIBCURL_VERSION).tar.xz
|
||||
LIBCURL_SITE = https://curl.se/download
|
||||
LIBCURL_DEPENDENCIES = host-pkgconf \
|
||||
|
||||
@@ -1,5 +1,7 @@
|
||||
# Locally calculated after checking pgp signature
|
||||
sha256 9560941a9d843c0243a71b17a7ac6fe31c7cebb5bce3983db79e52ae7e850491 krb5-1.21.2.tar.gz
|
||||
# from https://web.mit.edu/kerberos/dist/krb5/1.21/krb5-1.21.3.tar.gz.asc
|
||||
# with key C4493CB739F4A89F9852CBC20CBA08575F8372DF
|
||||
sha256 b7a4cd5ead67fb08b980b21abd150ff7217e85ea320c9ed0c6dadd304840ad35 krb5-1.21.3.tar.gz
|
||||
|
||||
# Hash for license file:
|
||||
sha256 0d5373486138cb176c063db98274b4c4ab6ef3518c4191360736384b780306c2 NOTICE
|
||||
sha256 7601361a275aadbe35c90185519323c28730d60c553683e56fd06cf9c5f749a6 NOTICE
|
||||
|
||||
@@ -5,7 +5,7 @@
|
||||
################################################################################
|
||||
|
||||
LIBKRB5_VERSION_MAJOR = 1.21
|
||||
LIBKRB5_VERSION = $(LIBKRB5_VERSION_MAJOR).2
|
||||
LIBKRB5_VERSION = $(LIBKRB5_VERSION_MAJOR).3
|
||||
LIBKRB5_SITE = https://web.mit.edu/kerberos/dist/krb5/$(LIBKRB5_VERSION_MAJOR)
|
||||
LIBKRB5_SOURCE = krb5-$(LIBKRB5_VERSION).tar.gz
|
||||
LIBKRB5_SUBDIR = src
|
||||
|
||||
@@ -1,3 +1,3 @@
|
||||
# Locally computed
|
||||
sha256 899be4e25ab7fe5799d43f9567510d6f063d2e8f56136dd726b6fd976f9b2253 libmodbus-3.1.10.tar.gz
|
||||
sha256 15b4b2e0f68122c2da9b195de5c330489a9c97d40b4a95d2822378dc14d780e7 libmodbus-3.1.11.tar.gz
|
||||
sha256 dc626520dcd53a22f727af3ee42c770e56c97a64fe3adb063799d8ab032fe551 COPYING.LESSER
|
||||
|
||||
@@ -4,7 +4,7 @@
|
||||
#
|
||||
################################################################################
|
||||
|
||||
LIBMODBUS_VERSION = 3.1.10
|
||||
LIBMODBUS_VERSION = 3.1.11
|
||||
LIBMODBUS_SITE = https://github.com/stephane/libmodbus/releases/download/v$(LIBMODBUS_VERSION)
|
||||
LIBMODBUS_LICENSE = LGPL-2.1+
|
||||
LIBMODBUS_LICENSE_FILES = COPYING.LESSER
|
||||
|
||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user