]> code.ossystems Code Review - openembedded-core.git/log
openembedded-core.git
6 years agoclasses/kernel-yocto: Cleanup getstatusoutput usage
Joshua Watt [Fri, 24 Aug 2018 14:59:50 +0000 (10:59 -0400)]
classes/kernel-yocto: Cleanup getstatusoutput usage

Replace usage of os.utils.getstatusoutput() with direct subprocess
calls. Pass a modified environment and working directory where necessary
to bypass the need to execute in a shell.

Signed-off-by: Joshua Watt <JPEWhacker@gmail.com>
Signed-off-by: Bruce Ashfield <bruce.ashfield@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolinux-yocto/standard: enable bpf configs in standard kernel
Bruce Ashfield [Fri, 24 Aug 2018 14:59:49 +0000 (10:59 -0400)]
linux-yocto/standard: enable bpf configs in standard kernel

Enabling the bpf feature for the standard kernel configurations
by default. Systemd (and other) userspace applications are looking
for BPF more often, and we get warnings such as this:

  [   12.810554] systemd[1]: File
    /lib/systemd/system/systemd-journald.service:36 configures an IP
    firewall (IPAddressDeny=any), but the local system does not support
    BPF/cgroup based firewalling.

The configs don't add much overhead to the kernel, so we enable them
by default.

Signed-off-by: Bruce Ashfield <bruce.ashfield@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolinux-yocto/4.14: rt: Revert mm/vmstat.c: fix vmstat_update() preemption BUG
Bruce Ashfield [Fri, 24 Aug 2018 14:59:48 +0000 (10:59 -0400)]
linux-yocto/4.14: rt: Revert mm/vmstat.c: fix vmstat_update() preemption BUG

Reverting mm/vmstat.c: fix vmstat_update() preemption BUG, to fix
failures in the 4.14 -rt kernel.

Signed-off-by: Bruce Ashfield <bruce.ashfield@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocairo: merge cairo.inc into cairo recipe
Andre McCurdy [Fri, 24 Aug 2018 02:09:09 +0000 (19:09 -0700)]
cairo: merge cairo.inc into cairo recipe

Remove SUMMARY_${PN} and DESCRIPTION_${PN}, which duplicate the
default SUMMARY and DESCRIPTION.

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocairo: merge cairo-fpu.inc into cairo.inc
Andre McCurdy [Fri, 24 Aug 2018 02:09:08 +0000 (19:09 -0700)]
cairo: merge cairo-fpu.inc into cairo.inc

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agosstate.bbclass: make SSTATE_PRUNE_OBSOLETEWORKDIR could be overwritten
Kai Kang [Fri, 24 Aug 2018 06:29:24 +0000 (14:29 +0800)]
sstate.bbclass: make SSTATE_PRUNE_OBSOLETEWORKDIR could be overwritten

Define variable SSTATE_PRUNE_OBSOLETEWORKDIR with '?=' in sstate.bbclass,
then it could be overwritten by user configuration.

Signed-off-by: Kai Kang <kai.kang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agobluez5: Fix ptest hang
Mingli Yu [Fri, 24 Aug 2018 06:48:55 +0000 (14:48 +0800)]
bluez5: Fix ptest hang

The below test hangs infinitely
$ ./run-ptest

Actually it stuck at test-gatt unit test and
the detailed test output as below:
$ unit/test-gatt -p  /robustness/unkown-request -d
/robustness/unkown-request - init
/robustness/unkown-request - setup
/robustness/unkown-request - setup complete
/robustness/unkown-request - run
GATT: < 02 17 00                                         ...
bt_gatt_server:MTU exchange complete, with MTU: 23
GATT: > 03 00 02                                         ...
PDU: = 03 00 02                                         ...
GATT: < bf 00

Considering the /robustness/unkown-request test
actually does no action, update to raw_pdu() to
fix the hang issue.

Signed-off-by: Mingli Yu <Mingli.Yu@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoterminal.bbclass: use var-SHELL as the shebang of wrapper script
Hongxu Jia [Fri, 24 Aug 2018 08:54:04 +0000 (16:54 +0800)]
terminal.bbclass: use var-SHELL as the shebang of wrapper script

The devshell.bbclass set var-SHELL to var-DEVSHELL, and terminal.bbclass
initial var-SHELL with `bash'. Keep sync with it, use var-SHELL rather
than hardcoded `/bin/sh' as the shebang of wrapper script.

On Ubuntu host, default shell is dash (/bin/sh -> dash), even though
we assign var-SHELL with `/bin/bash', the wrapper script is still dashism.

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agobusybox/mdev-mount.sh: Fix partition detect and cleanup mountpoint on fail
Mike Looijmans [Fri, 24 Aug 2018 07:21:44 +0000 (09:21 +0200)]
busybox/mdev-mount.sh: Fix partition detect and cleanup mountpoint on fail

This fixes issues mainly seen when mounting eMMC devices:

The wildcard /sys/block/${DEVBASE}/${DEVBASE}*1 matches both "mmcblk0p1"
and "mmcblk0boot1" for example, and this results in syntax errors. Fix this
by searching for a "partition" file instead, which only exists for real
partitions and not 'fakes' like the eMMC extra's.

When mount fails, the mountpoint file is left behind, causing later attempts
at auto-mounting it to fail. If mount fails, remove the mountpoint, leaving
the system in the state as it was before the mount attempt.

Signed-off-by: Mike Looijmans <mike.looijmans@topic.nl>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoblktrace: Security fix CVE-2018-10689
Yi Zhao [Fri, 24 Aug 2018 07:21:27 +0000 (15:21 +0800)]
blktrace: Security fix CVE-2018-10689

CVE-2018-10689: blktrace (aka Block IO Tracing) 1.2.0, as used with the
Linux kernel and Android, has a buffer overflow in the dev_map_read
function in btt/devmap.c because the device and devno arrays are too
small, as demonstrated by an invalid free when using the btt program
with a crafted file.

References:
https://nvd.nist.gov/vuln/detail/CVE-2018-10689

Patch from:
https://git.kernel.org/pub/scm/linux/kernel/git/axboe/blktrace.git/commit/?id=d61ff409cb4dda31386373d706ea0cfb1aaac5b7

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopackage.bbclass: only one hardlink of separated debug info file in each directory
Hongxu Jia [Fri, 24 Aug 2018 07:00:31 +0000 (15:00 +0800)]
package.bbclass: only one hardlink of separated debug info file in each directory

While multiple hardlinks of binary located in different dirs,
there are also multiple hardlinks of separated debug info file
with the same binary name in same debug dirs. But in each dir,
only one debug file with original name works. Because all of
binary hardlinks have one `.gnu_debuglink' which is added in
`splitdebuginfo'. It caused gdb could not find debugging
symbols.

[Before the patch]
$ find .
./usr/bin/foo
./usr/bin/foo-hd1
./usr/bin/.debug
./usr/bin/.debug/foo
./usr/bin/.debug/foo-hd1
./usr/libexec/foo-hd2
./usr/libexec/.debug
./usr/libexec/.debug/foo-hd2

$ readelf --debug-dump usr/libexec/foo-hd2
Contents of the .gnu_debuglink section:
  Separate debug info file: foo

$ gdb usr/libexec/foo-hd2
Reading symbols from usr/libexec/foo-hd2...(no debugging symbols found)...done.
[Before the patch]

[Apply the patch]
$ find .
./usr/bin/foo
./usr/bin/foo-hd1
./usr/bin/.debug
./usr/bin/.debug/foo
./usr/libexec/foo-hd2
./usr/libexec/.debug
./usr/libexec/.debug/foo

$ gdb usr/libexec/foo-hd2
Reading symbols from usr/libexec/foo-hd2...Reading symbols from usr/libexec/.debug/foo...done.
[Apply the patch]

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoutils.bbclass: fix KeyError exception
Chen Qi [Fri, 24 Aug 2018 03:46:40 +0000 (11:46 +0800)]
utils.bbclass: fix KeyError exception

The following statement was accidently removed. Add it back.

  values['ml'] = ['']

This patch fixes the following error.

  Exception: KeyError: 'ml'

Signed-off-by: Chen Qi <Qi.Chen@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agomingetty: fix usrmerge install path
Mingli Yu [Fri, 17 Aug 2018 06:27:10 +0000 (14:27 +0800)]
mingetty: fix usrmerge install path

Update /sbin to $base_sbindir to fix the
below warning when usrmerge enabled in
DISTRO_FEATURES.

WARNING: mingetty-1.08-r3 do_package: mingetty: NOT adding alternative provide /usr/sbin/getty: /usr/sbin/mingetty does not exist
WARNING: mingetty-1.08-r3 do_package: QA Issue: mingetty: Files/directories were installed but not shipped in any package:
  /sbin
  /usr/sbin

Signed-off-by: Mingli Yu <Mingli.Yu@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agomdadm: fix usrmerge install path
Mingli Yu [Fri, 17 Aug 2018 06:27:09 +0000 (14:27 +0800)]
mdadm: fix usrmerge install path

Update /lib to $nonarch_base_libdir to fix
the below error when usrmerge enabled in
DISTRO_FEATURES.

ERROR: mdadm-4.0-r0 do_package_qa: QA Issue: mdadm package is not obeying usrmerge distro feature. /lib should be relocated to /usr. [usrmerge]

Signed-off-by: Mingli Yu <Mingli.Yu@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoswig: Remove superfluous python dependency
Joshua Watt [Thu, 23 Aug 2018 21:24:37 +0000 (16:24 -0500)]
swig: Remove superfluous python dependency

The actual dependency on native Python and is handled by inheriting
python3native

Signed-off-by: Joshua Watt <JPEWhacker@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoscripts: Add autobuilder worker test script
Richard Purdie [Thu, 23 Aug 2018 16:32:17 +0000 (17:32 +0100)]
scripts: Add autobuilder worker test script

Add a script which can be run on new autobuilder workers to check all needed configuration
is present. Designed to be run in a repo where bitbake/oe-core are already present.

This means when we add new autobuilder workers, we can quickly test whether all the needed
funcationality to support the standard yocto project autobuilder (ie. the standard
OE-Core tests) are present.

It uses images prebuilt in a previous release to cut build/testing time.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoutil-linux: upgrade 2.32 -> 2.32.1
Chen Qi [Thu, 23 Aug 2018 08:11:46 +0000 (16:11 +0800)]
util-linux: upgrade 2.32 -> 2.32.1

Signed-off-by: Chen Qi <Qi.Chen@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agodistcc: 3.3 -> 3.3.2
Robert Yang [Thu, 23 Aug 2018 08:11:26 +0000 (16:11 +0800)]
distcc: 3.3 -> 3.3.2

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoelfutils: 0.172 -> 0.173
Robert Yang [Thu, 23 Aug 2018 08:11:25 +0000 (16:11 +0800)]
elfutils: 0.172 -> 0.173

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agodbus-test: 1.12.8 -> 1.12.10
Robert Yang [Thu, 23 Aug 2018 08:11:24 +0000 (16:11 +0800)]
dbus-test: 1.12.8 -> 1.12.10

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agodbus: 1.12.8 -> 1.12.10
Robert Yang [Thu, 23 Aug 2018 08:11:23 +0000 (16:11 +0800)]
dbus: 1.12.8 -> 1.12.10

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopciutils: 3.6.1 -> 3.6.2
Robert Yang [Thu, 23 Aug 2018 08:11:22 +0000 (16:11 +0800)]
pciutils: 3.6.1 -> 3.6.2

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agodiffstat: 1.61 -> 1.62
Robert Yang [Thu, 23 Aug 2018 08:11:21 +0000 (16:11 +0800)]
diffstat: 1.61 -> 1.62

Refresh avoid-check-user-break-cc.patch to fix fuzz warning.

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agostrace: 4.23 -> 4.24
Robert Yang [Thu, 23 Aug 2018 08:11:20 +0000 (16:11 +0800)]
strace: 4.23 -> 4.24

Remove backported patch 0001-tests-fix-build-with-fresh-glibc.patch.

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/core/decorator: add skipIfInDataVar
Richard Leitner [Wed, 22 Aug 2018 09:22:52 +0000 (11:22 +0200)]
oeqa/core/decorator: add skipIfInDataVar

skipIfInDataVar will skip a test if a value is in a certain variable.

Signed-off-by: Richard Leitner <richard.leitner@skidata.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoltp: Fix ftest06 too small file path string
He Zhe [Wed, 22 Aug 2018 16:52:45 +0000 (00:52 +0800)]
ltp: Fix ftest06 too small file path string

The name string is too small to contain normal full path names and causes
the following failure.

"ftest06     2  TFAIL  :  ftest06.c:223: Can't chdir(): errno=ENOENT(2): No such file or directory"

Signed-off-by: He Zhe <zhe.he@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoopenssl: remove dependency on relative_symlinks class
Andre McCurdy [Thu, 23 Aug 2018 01:51:31 +0000 (18:51 -0700)]
openssl: remove dependency on relative_symlinks class

Although the relative_symlinks class converts any absolute symlinks
in ${D} into relative symlinks automatically, it's a little clearer
to create relative symlinks directly where possible.

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocompress_doc.bbclass: Clean up getstatusoutput usage
Robert Yang [Thu, 23 Aug 2018 08:07:28 +0000 (16:07 +0800)]
compress_doc.bbclass: Clean up getstatusoutput usage

Replace usage of oe.utils.getstatusoutput() with direct subprocess calls.

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopsplash: Clean up getstatusoutput usage
Robert Yang [Thu, 23 Aug 2018 08:07:27 +0000 (16:07 +0800)]
psplash: Clean up getstatusoutput usage

Replace usage of oe.utils.getstatusoutput() with direct subprocess calls.

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolib/oe/patch.py: Clean up getstatusoutput usage
Robert Yang [Thu, 23 Aug 2018 08:07:25 +0000 (16:07 +0800)]
lib/oe/patch.py: Clean up getstatusoutput usage

We can't use subprocess.check_output() or subprocess.call() here since the one
who invokes runcmd() needs handle CmdError() exception (error out or ignore
it).

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolib/oe/gpg_sign.py: Clean up getstatusoutput usage
Robert Yang [Thu, 23 Aug 2018 08:07:24 +0000 (16:07 +0800)]
lib/oe/gpg_sign.py: Clean up getstatusoutput usage

Replace usage of oe.utils.getstatusoutput() with direct subprocess calls.

Signed-off-by: Robert Yang <liezhi.yang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoutils: Fix patch merging error
Richard Purdie [Thu, 23 Aug 2018 11:54:21 +0000 (11:54 +0000)]
utils: Fix patch merging error

The previous patch has duplicate split calls and one needs to be removed
to avoid failures

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoutils: Rely on get_multilib_datastore() to get the original datastore
Richard Purdie [Wed, 22 Aug 2018 17:01:16 +0000 (17:01 +0000)]
utils: Rely on get_multilib_datastore() to get the original datastore

get_multilib_datastore() should be able to handle the original datastore
correctly now so rely upon this rather than custom coding.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoglibc-ld: Simplify/cleanup multilib handling to use library functions
Richard Purdie [Wed, 22 Aug 2018 16:46:52 +0000 (16:46 +0000)]
glibc-ld: Simplify/cleanup multilib handling to use library functions

We have library functions to handle multilib variables/datastores, lets
use them so we have good common functions.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolib/oe/utils: Fix get_multilib_datastore to work for original tune
Richard Purdie [Wed, 22 Aug 2018 16:43:06 +0000 (16:43 +0000)]
lib/oe/utils: Fix get_multilib_datastore to work for original tune

Currently the original datastore returned by this function doesn't
always work as the tune isn't set back to the original. Fix it
to work like all_multilib_tune_list() in utils.bbclass and correct
the data returned.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoglibc: Improve ldd loader specification
Richard Purdie [Wed, 22 Aug 2018 14:51:17 +0000 (14:51 +0000)]
glibc: Improve ldd loader specification

Currently if a tune isn't specified in the table, the loader defaults for the
architecture are used which may or may not match our path specification. This
leads to general confusion.

Change the code to use the linuxloader class which works of architecture, not
tune.

This still isn't perfect as n32/x32 aren't covered but its an improvement
to listing all tunes here.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolinuxloader: Convert to python function
Richard Purdie [Wed, 22 Aug 2018 14:49:52 +0000 (14:49 +0000)]
linuxloader: Convert to python function

We could do with one decent general purpose python function to query the
path to the dynamic loader. Convert the shell code into python.

Also correct baremetal to return "None", not musl loaders.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolib/oe/package.py: use bb.utils.break_hardlinks helper
Rasmus Villemoes [Tue, 21 Aug 2018 10:01:45 +0000 (12:01 +0200)]
lib/oe/package.py: use bb.utils.break_hardlinks helper

This does the same thing, but is more efficient in case st_nlinks
is (already) 1.

Depends on bitbake commit 7ae93cf40ab91965147055100432961436bce46c .

Signed-off-by: Rasmus Villemoes <rv@rasmusvillemoes.dk>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopackage.bbclass: use bb.utils.break_hardlinks helper
Rasmus Villemoes [Tue, 21 Aug 2018 10:01:44 +0000 (12:01 +0200)]
package.bbclass: use bb.utils.break_hardlinks helper

This does the same thing, but is more efficient in case st_nlinks
is (already) 1.

Depends on bitbake commit 7ae93cf40ab91965147055100432961436bce46c .

Signed-off-by: Rasmus Villemoes <rv@rasmusvillemoes.dk>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agosanity.conf: Update minimum bitbake version to 1.39.1
Richard Purdie [Thu, 23 Aug 2018 08:03:34 +0000 (09:03 +0100)]
sanity.conf: Update minimum bitbake version to 1.39.1

We need this for the new break_hardlinks helper function.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopatch: fix CVE-2018-6952
Hongxu Jia [Wed, 22 Aug 2018 12:10:40 +0000 (20:10 +0800)]
patch: fix CVE-2018-6952

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoperl: CVE-2018-12015
Jagadeesh Krishnanjanappa [Wed, 22 Aug 2018 12:00:32 +0000 (17:30 +0530)]
perl: CVE-2018-12015

Remove existing files before overwriting them

Archive should extract only the latest same-named entry.
Extracted regular file should not be writtent into existing block
device (or any other one).

https://rt.cpan.org/Ticket/Display.html?id=125523

Affects perl <= 5.26.2

Signed-off-by: Jagadeesh Krishnanjanappa <jkrishnanjanappa@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibarchive: CVE-2017-14503
Jagadeesh Krishnanjanappa [Wed, 22 Aug 2018 12:00:31 +0000 (17:30 +0530)]
libarchive: CVE-2017-14503

Reject LHA archive entries with negative size.

Affects libarchive = 3.3.2

Signed-off-by: Jagadeesh Krishnanjanappa <jkrishnanjanappa@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibsndfile1: CVE-2017-14634
Jagadeesh Krishnanjanappa [Wed, 22 Aug 2018 12:00:30 +0000 (17:30 +0530)]
libsndfile1: CVE-2017-14634

double64_init: Check psf->sf.channels against upper bound

This prevents division by zero later in the code.

While the trivial case to catch this (i.e. sf.channels < 1) has already
been covered, a crafted file may report a number of channels that is
so high (i.e. > INT_MAX/sizeof(double)) that it "somehow" gets
miscalculated to zero (if this makes sense) in the determination of the
blockwidth. Since we only support a limited number of channels anyway,
make sure to check here as well.

CVE-2017-14634

Closes: #318
Affects libsndfile1 = 1.0.28

Signed-off-by: Jagadeesh Krishnanjanappa <jkrishnanjanappa@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibsndfile1: CVE-2017-14245 CVE-2017-14246
Jagadeesh Krishnanjanappa [Wed, 22 Aug 2018 12:00:29 +0000 (17:30 +0530)]
libsndfile1: CVE-2017-14245 CVE-2017-14246

sfe_copy_data_fp: check value of "max" variable for being normal
and check elements of the data[] array for being finite.

Both checks use functions provided by the <math.h> header as declared
by the C99 standard.

Fixes #317
CVE-2017-14245
CVE-2017-14246

Affects libsndfile1 = 1.0.28

Signed-off-by: Jagadeesh Krishnanjanappa <jkrishnanjanappa@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agognutls: drop PACKAGECONFIG options for SSL v3 and TLS v1.3
Andre McCurdy [Wed, 22 Aug 2018 00:43:30 +0000 (17:43 -0700)]
gnutls: drop PACKAGECONFIG options for SSL v3 and TLS v1.3

By including PACKAGECONFIG options, the recipe takes responsibility
for defining the default state of these options. Although the recipe
currently aligns with the gnutls defaults (ie both disabled) tracking
new gnutls releases will be a maintenance effort. Unless there's a
clear reason to do otherwise, it seems safer to leave the choice of
which SSL/TLS versions to enable by default up to the gnutls
developers.

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agognutls: drop obsolete configure.ac patch
Andre McCurdy [Wed, 22 Aug 2018 00:43:29 +0000 (17:43 -0700)]
gnutls: drop obsolete configure.ac patch

>From gnutls 3.5.8 onwards, the code in configure.ac has been passing
"basename $i" to sed, rather than "echo $i". Since the full ${srcdir}
path is not being processed, there's no risk of unexpected matches.

  https://gitlab.com/armcc/gnutls/commit/478179316bc815e1ad518ae318f46e94a13b0e1f

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agognutls: merge gnutls.inc into the gnutls recipe
Andre McCurdy [Wed, 22 Aug 2018 00:43:28 +0000 (17:43 -0700)]
gnutls: merge gnutls.inc into the gnutls recipe

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/runtime/ldd: Clean up test
Richard Purdie [Wed, 22 Aug 2018 12:47:10 +0000 (12:47 +0000)]
oeqa/runtime/ldd: Clean up test

* Merge the two tests together as having them separate is pointless
* Test that ldd runs correctly
* Add in a dependency on the "ldd" package being installed instead of
  the sdk tools feature

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agou-boot: patch for CVE-2018-1000205
Changqing Li [Wed, 22 Aug 2018 05:36:57 +0000 (13:36 +0800)]
u-boot: patch for CVE-2018-1000205

Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoperl: avoid using += with an over-ride
Andre McCurdy [Wed, 22 Aug 2018 01:24:27 +0000 (18:24 -0700)]
perl: avoid using += with an over-ride

Using += with an over-ride can be a source of confusion so try to
avoid the construct in core recipes.

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agofreetype: Upgrade 2.9 -> 2.9.1
Changqing Li [Wed, 22 Aug 2018 01:10:32 +0000 (09:10 +0800)]
freetype: Upgrade 2.9 -> 2.9.1

The -config script can now be disabled from configure.

Drop backported patch now merged.

Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibxml-parser-perl: fix "...contains bad RPATH"
Jens Rehsack [Wed, 22 Aug 2018 09:04:24 +0000 (11:04 +0200)]
libxml-parser-perl: fix "...contains bad RPATH"

The perl distribution "XML-Parser" relies for configuration
on the tooling of Devel::CheckLib - which is not aware of
sysroot locations nor of reasonable compiler/link definitions
from outside.

This causes

    ERROR: libxml-parser-perl-2.44-r0 do_package_qa: QA Issue: package libxml-parser-perl contains bad RPATH ${BUILDDIR}/tmp/work/core2-64-poky-linux/libxml-parser-perl/2.44-r0/recipe-sysroot/usr/lib in file ${BUILDDIR}/tmp/work/core2-64-poky-linux/libxml-parser-perl/2.44-r0/packages-split/libxml-parser-perl/usr/lib/perl/vendor_perl/5.24.4/auto/XML/Parser/Expat/Expat.so
    package libxml-parser-perl contains bad RPATH ${BUILDDIR}/tmp/work/core2-64-poky-linux/libxml-parser-perl/2.44-r0/recipe-sysroot/usr/lib in file ${BUILDDIR}/tmp/work/core2-64-poky-linux/libxml-parser-perl/2.44-r0/packages-split/libxml-parser-perl/usr/lib/perl/vendor_perl/5.24.4/auto/XML/Parser/Expat/Expat.so [rpaths]
    ERROR: libxml-parser-perl-2.44-r0 do_package_qa: QA run found fatal errors. Please consider fixing them.
    ERROR: libxml-parser-perl-2.44-r0 do_package_qa: Function failed: do_package_qa

It's strongly encouraged to the maintainer @toddr to rework the
toolchain for up to date environments.

[RP: Added fix for nativesdk RPATH issues too]

Signed-off-by: Jens Rehsack <sno@netbsd.org>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocpan.bbclass: adopt to recent EU::MM
Jens Rehsack [Wed, 22 Aug 2018 09:04:23 +0000 (11:04 +0200)]
cpan.bbclass: adopt to recent EU::MM

The modern the time, the improvements in ExtUtils::MakeMaker.

Nowadays, .packlist and perllocal.pod aren't touched anymore when appropriate
flags set during configure stage. Controlling the flags globally avoids
dual-life recipes need share patching.

Further: remove prepending ${PERL_ARCHLIB} in PERL5LIB - it's wrong (search
order is site_lib, vendor_lib, core) - and ${PERL_ARCHLIB} contains core
libpath only ...

Signed-off-by: Jens Rehsack <sno@netbsd.org>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocryptodev-linux: Fixes a kernel crash observed with cipher-gcm test
Hongzhi.Song [Wed, 22 Aug 2018 08:37:12 +0000 (01:37 -0700)]
cryptodev-linux: Fixes a kernel crash observed with cipher-gcm test

The crypto API for AEAD ciphers changed in recent kernels, so that
associated data is now part of both source and destination scatter
gathers. The source, destination and associated data buffers need
to be stiched accordingly for the operations to succeed.

Signed-off-by: Hongzhi.Song <hongzhi.song@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agou-boot: Fix inconsistent indentation
Alexander Hedges [Tue, 21 Aug 2018 17:17:50 +0000 (19:17 +0200)]
u-boot: Fix inconsistent indentation

This removes some extra spaces.

Signed-off-by: Alexander Hedges <ahedges@ethz.ch>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibinput: upgrade 1.11.2 -> 1.11.3
Maxin B. John [Wed, 22 Aug 2018 10:27:25 +0000 (13:27 +0300)]
libinput: upgrade 1.11.2 -> 1.11.3

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoacpid: upgrade 2.0.29 -> 2.0.30
Maxin B. John [Wed, 22 Aug 2018 10:27:24 +0000 (13:27 +0300)]
acpid: upgrade 2.0.29 -> 2.0.30

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibpng: upgrade 1.6.34 -> 1.6.35
Maxin B. John [Wed, 22 Aug 2018 10:27:23 +0000 (13:27 +0300)]
libpng: upgrade 1.6.34 -> 1.6.35

License-Update: copyright years updated

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibatomic-ops: upgrade 7.6.4 -> 7.6.6
Maxin B. John [Wed, 22 Aug 2018 10:27:22 +0000 (13:27 +0300)]
libatomic-ops: upgrade 7.6.4 -> 7.6.6

License-Update: updated address of Free Software Foundation

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopkgconf: upgrade 1.4.2 -> 1.5.3
Maxin B. John [Wed, 22 Aug 2018 10:27:21 +0000 (13:27 +0300)]
pkgconf: upgrade 1.4.2 -> 1.5.3

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoharfbuzz: upgrade 1.8.4 -> 1.8.8
Maxin B. John [Wed, 22 Aug 2018 10:27:20 +0000 (13:27 +0300)]
harfbuzz: upgrade 1.8.4 -> 1.8.8

Signed-off-by: Maxin B. John <maxin.john@intel.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agosstate: add intel-microcode to SSTATE_DUPWHITELIST
Yongxin Liu [Wed, 22 Aug 2018 09:24:36 +0000 (17:24 +0800)]
sstate: add intel-microcode to SSTATE_DUPWHITELIST

intel-microcode multilib recipes can generate identical overlapping
files: microcode.cpio.

Signed-off-by: Yongxin Liu <yongxin.liu@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agomtools: fix race issue while mtools invoked frequently
Hongxu Jia [Wed, 22 Aug 2018 09:16:42 +0000 (17:16 +0800)]
mtools: fix race issue while mtools invoked frequently

While invoking mtools frequently, the unblocking request
caused race issue. Here is an example of syslinux
[snip]
dd if=/dev/zero of=floppy.img bs=1024 count=144
losetup /dev/loop1 floppy.img
mkdosfs /dev/loop1
syslinux -i /dev/loop1
|plain floppy: device "/proc/6351/fd/3" busy (Resource temporarily unavailable):
|Cannot initialize 'S:'
|Bad target s:/ldlinux.sys
[snip]

The idea is from:
https://bugzilla.redhat.com/show_bug.cgi?id=1235016
https://groups.google.com/a/chromium.org/forum/#!msg/chromium-os-dev/bRPUCFHoBTQ/ZjB8kjjx1vUJ

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoclasses/package: Clean up getstatusoutput
Joshua Watt [Wed, 22 Aug 2018 02:28:52 +0000 (21:28 -0500)]
classes/package: Clean up getstatusoutput

Replaces usage of the deprecated oe.utils.getstatusoutput() with Python
subprocess calls.

Signed-off-by: Joshua Watt <JPEWhacker@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooe-run-native: Add *-native directories under STAGING_BINDIR_NATIVE to PATH environment
Jagadeesh Krishnanjanappa [Fri, 17 Aug 2018 02:58:01 +0000 (08:28 +0530)]
oe-run-native: Add *-native directories under STAGING_BINDIR_NATIVE to PATH environment

It helps to find/use native tools under ${STAGING_BINDIR_NATIVE}/*-native.

Solving below error:

$ oe-run-native python3-native python3
Running bitbake -e python3-native
Error: Unable to find 'python3' in .../tmp/work/x86_64-linux/python3-native/3.5.5-r1.0/recipe-sysroot-native/usr/bin:.../tmp/work/x86_64-linux/python3-native/3.5.5-r1.0/recipe-sysroot-native/bin:.../tmp/work/x86_64-linux/python3-native/3.5.5-r1.0/recipe-sysroot-native/usr/sbin:.../tmp/work/x86_64-linux/python3-native/3.5.5-r1.0/recipe-sysroot-native/sbin
Error: Have you run 'bitbake python3-native -caddto_recipe_sysroot'?
-- snip --

After this change we have native python3 to be found:

$ oe-run-native python3-native python3
Running bitbake -e python3-native
Python 3.5.5 (default, Aug  8 2018, 17:45:49)
[GCC 4.8.5 20150623 (Red Hat 4.8.5-28)] on linux
Type "help", "copyright", "credits" or "license" for more information.
>>>
-- snip --

[YOCTO #12889]

Signed-off-by: Jagadeesh Krishnanjanappa <jkrishnanjanappa@mvista.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agocmake-native: fix to function correctly in case of eSDK
Chen Qi [Mon, 20 Aug 2018 08:57:54 +0000 (16:57 +0800)]
cmake-native: fix to function correctly in case of eSDK

Our eSDK is expected to provide traditional SDK's functionality. But
for cmake, it could not function well in eSDK.

This problem is discovered by the assimp.py test case. The error message
is as below.

  testsdkext/tmp/sysroots/x86_64/usr/lib/libz.so: error adding symbols: file in wrong format
  collect2: error: ld returned 1 exit status

The problem is about cmake-native being unable to find the correct lib.
nativesdk-cmake has solved this problem. So make use of the solution to
solve the eSDK problem.

Signed-off-by: Chen Qi <Qi.Chen@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoflac: patch for CVE-2017-6888
Changqing Li [Tue, 21 Aug 2018 08:25:45 +0000 (16:25 +0800)]
flac: patch for CVE-2017-6888

Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agonasm: fix CVE-2018-8883 & CVE-2018-8882 & CVE-2018-10316
Hongxu Jia [Tue, 21 Aug 2018 06:30:27 +0000 (14:30 +0800)]
nasm: fix CVE-2018-8883 & CVE-2018-8882 & CVE-2018-10316

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/runner: Print any errors/failures early
Richard Purdie [Wed, 22 Aug 2018 22:12:43 +0000 (23:12 +0100)]
oeqa/runner: Print any errors/failures early

Its a pain to have to wait until oe-selftest finishes to see the
failures for example.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/runner: Use the proper logger functions instead of print()
Richard Purdie [Wed, 22 Aug 2018 22:10:51 +0000 (23:10 +0100)]
oeqa/runner: Use the proper logger functions instead of print()

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/context: Only set buffer mode for non-concurrent tests
Richard Purdie [Tue, 21 Aug 2018 21:45:31 +0000 (21:45 +0000)]
oeqa/context: Only set buffer mode for non-concurrent tests

Periodically we'd see:

NOTE: core-image-sato-1.0-r0 do_testsdk: ======================================================================
NOTE: core-image-sato-1.0-r0 do_testsdk: ERROR: broken-runner
NOTE: core-image-sato-1.0-r0 do_testsdk: ----------------------------------------------------------------------
NOTE: core-image-sato-1.0-r0 do_testsdk: testtools.testresult.real._StringException: Traceback (most recent call last):
  File "/home/pokybuild/yocto-autobuilder/yocto-worker/nightly-mips/build/meta/lib/oeqa/core/utils/concurrencytest.py", line 122, in _run_test
    test.run(process_result)
  File "/usr/lib/python3.6/site-packages/subunit/__init__.py", line 1194, in run
    protocol = TestProtocolServer(result, self._passthrough, self._forward)
  File "/usr/lib/python3.6/site-packages/subunit/__init__.py", line 514, in __init__
    stream = stream.buffer
AttributeError: '_io.StringIO' object has no attribute 'buffer'

which seems to occur if a result arrives before all the runner threads
have started. The runner's result handling changes sys.stdout to a buffer
temporarily which can be seen in other threads and it can sometimes fail.

Since the tests are running in a separate process we don't need this buffer
handling in the concurrent case so only set when not parallelising. The
concurrent class handle setting buffer mode internally.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agooeqa/concurrencytest: Ensure subunit streams are flushed at exit
Richard Purdie [Tue, 21 Aug 2018 18:28:32 +0000 (18:28 +0000)]
oeqa/concurrencytest: Ensure subunit streams are flushed at exit

Without this, error output such as that in the teardown can be lost
and processes may recieve signals they're not expecting causing other
strange errors.

Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agopython/python3: add virtual/crypt to DEPENDS
Hongxu Jia [Tue, 21 Aug 2018 05:44:55 +0000 (13:44 +0800)]
python/python3: add virtual/crypt to DEPENDS

Since  `6146b8c glibc: Disable crypt support in glibc' in oe-core,
python2/3 could not find symbol crypt which caused import crypt failed.
[snip]
>>> import crypt
Traceback (most recent call last):
  File "<stdin>", line 1, in <module>
  File "/usr/lib64/python3.5/crypt.py", line 3, in <module>
    import _crypt
ImportError: /usr/lib64/python3.5/lib-dynload/_crypt.cpython-35m-x86_64-linux-gnu.so: undefined symbol: crypt
[snip]

Add virtual/crypt to DEPENDS, and python's build system (setup.py)
will search libcrypt.so in recipe-sysroot and add `-lcrypt' if it
exists.

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agosstate: Avoid indirect autoconf-archive-native dependencies
Changqing Li [Tue, 21 Aug 2018 01:30:18 +0000 (09:30 +0800)]
sstate: Avoid indirect autoconf-archive-native dependencies

remove the indirect dependcy of autoconf-archive-native via
SSTATE_EXCLUDEDEPS_SYSROOT to avoid not needed .m4 installed
into sysroot, which may cause compile problem.

Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoopenssl: fix hardcoded paths in native for openssl 1.1
Andre McCurdy [Tue, 21 Aug 2018 00:47:28 +0000 (17:47 -0700)]
openssl: fix hardcoded paths in native for openssl 1.1

Relying on hardcoded built-in paths causes openssl-native to not be
relocateable from sstate.

Solution for openssl 1.1, based on the existing solution from
openssl 1.0:

  http://git.openembedded.org/openembedded-core/commit/?id=771d3123331fbfab1eb9ce47e3013eabcb2248f5

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoassimp.py: fix AttributeError in tearDownClass
Chen Qi [Fri, 17 Aug 2018 09:17:14 +0000 (17:17 +0800)]
assimp.py: fix AttributeError in tearDownClass

When running this test case, we will see the following error.

  AttributeError: type object 'BuildAssimp' has no attribute 'project'

assimp.py test case does not make use of SDKBuildProject, so remove
the import statement and the tearDownClass.

Signed-off-by: Chen Qi <Qi.Chen@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agollvm: Enable AMDGPU backend for native/native-sdk builds too
Khem Raj [Mon, 20 Aug 2018 22:25:29 +0000 (15:25 -0700)]
llvm: Enable AMDGPU backend for native/native-sdk builds too

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agollvm: Use HOST_ARCH in LLVM_TARGETS_TO_BUILD for builds
Khem Raj [Mon, 20 Aug 2018 18:59:51 +0000 (11:59 -0700)]
llvm: Use HOST_ARCH in LLVM_TARGETS_TO_BUILD for builds

LLVM_TARGETS_TO_BUILD is needed to represent HOST_ARCH for
builds and target specific additions should use class-target
override

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agodos2unix: Move to oe-core
Khem Raj [Mon, 20 Aug 2018 18:59:50 +0000 (11:59 -0700)]
dos2unix: Move to oe-core

- Import from meta-oe layer

- This is useful for many packages where CR-LF
  needs to be adjusted, many recipes depend on it
  e.g. meta-multimedia libebml and so on.

- Add myself as maintainer for now

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agogdb: Alias rpl_stat to stat() on musl
Khem Raj [Mon, 20 Aug 2018 18:59:49 +0000 (11:59 -0700)]
gdb: Alias rpl_stat to stat() on musl

Use CPPFLAGS instead of CFLAGS since there is C++ compiler being used for somefiles

Fixes
gdb/gdbserver/../../../gdb-8.1.1/gdb/gdbserver/../common/common-utils.c:419: undefined reference to `rpl_stat'
| collect2: error: ld returned 1 exit status
| make[4]: *** [Makefile:414: libinproctrace.so] Error 1

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agogdb: Upgrade to 8.1.1
Khem Raj [Mon, 20 Aug 2018 18:59:48 +0000 (11:59 -0700)]
gdb: Upgrade to 8.1.1

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agomesa: Enable gallium-llvm on x86 and x86_64
Khem Raj [Mon, 20 Aug 2018 18:59:47 +0000 (11:59 -0700)]
mesa: Enable gallium-llvm on x86 and x86_64

Signed-off-by: Khem Raj <raj.khem@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agokernel.bbclass: rename type variable to imageType
Martin Jansa [Sun, 19 Aug 2018 22:16:03 +0000 (22:16 +0000)]
kernel.bbclass: rename type variable to imageType

* to avoid confusion with "type" command in shell

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agokernel-artifact-names.bbclass: Add 2 more variables to make it easier to change all...
Martin Jansa [Sun, 19 Aug 2018 22:16:02 +0000 (22:16 +0000)]
kernel-artifact-names.bbclass: Add 2 more variables to make it easier to change all names with one variable

* some people don't like the ${MACHINE} in the symlink, because now the DEPLOYDIR already
  contains ${MACHINE} subdirectory, add KERNEL_ARTIFACT_LINK_NAME variable to change it
  in one place without the need to list all variables for various artifacts

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agokernel-artifact-names.bbclass, kernel.bbclass: remove prefix and extension from MODUL...
Martin Jansa [Sun, 19 Aug 2018 22:16:01 +0000 (22:16 +0000)]
kernel-artifact-names.bbclass, kernel.bbclass: remove prefix and extension from MODULE_TARBALL_* variables

* for consistency with other artifacts variables, include only the version string, not the actual name or extension
* changing .tgz to something else in the MODULE_TARBALL_NAME variable only wouldn't make much sense
  because then kernel.bbclass still calls "tar -cvzf" to create it

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agokernel*.bbclass: rename *_SYMLINK_NAME variables to *_LINK_NAME and *_BASE_NAME to...
Martin Jansa [Sun, 19 Aug 2018 22:16:00 +0000 (22:16 +0000)]
kernel*.bbclass: rename *_SYMLINK_NAME variables to *_LINK_NAME and *_BASE_NAME to *_NAME

* for consistency with IMAGE_NAME and IMAGE_LINK_NAME
  and to avoid confusion with IMAGE_BASENAME (which is the
  actual name of the artifact, e.g. PN while KERNEL_IMAGE_BASE_NAME
  was only the version suffix)

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agokernel-artifact-names, kernel-fitimage: add KERNEL_FIT_BASE_NAME, KERNEL_FIT_SYMLINK_...
Martin Jansa [Sun, 19 Aug 2018 22:15:59 +0000 (22:15 +0000)]
kernel-artifact-names, kernel-fitimage: add KERNEL_FIT_BASE_NAME, KERNEL_FIT_SYMLINK_NAME variables

* use the same naming scheme for fitImage files like all other deployed artifacts
* remove unnecessary cd to DEPLOYDIR
* remove unnecessary cd to B

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agobitbake.conf, kernel-artifact-names.bbclass: introduce IMAGE_VERSION_SUFFIX instead...
Martin Jansa [Sun, 19 Aug 2018 22:15:58 +0000 (22:15 +0000)]
bitbake.conf, kernel-artifact-names.bbclass: introduce IMAGE_VERSION_SUFFIX instead of using DATETIME directly

* this makes it easier to use different version string than DATETIME, e.g. set from jenkins job
  while keeping the suffix consistent across all artifacts stored in DEPLOYDIR

Signed-off-by: Martin Jansa <Martin.Jansa@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agorootfs-postcommands: put image testdata under sstate control
André Draszik [Mon, 20 Aug 2018 08:15:09 +0000 (09:15 +0100)]
rootfs-postcommands: put image testdata under sstate control

The testdata.json is being written to DEPLOY_DIR_IMAGE directly,
thus bypassing sstate, which results in an ever growing list
of files.

Write them to IMGDEPLOYDIR instead, so as to benefit from the
automatic management via sstate.

Signed-off-by: André Draszik <andre.draszik@jci.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoautoconf: update runtime perl module dependencies
Mikko Rapeli [Mon, 20 Aug 2018 15:21:19 +0000 (18:21 +0300)]
autoconf: update runtime perl module dependencies

Test in SDK was failing to execute:

$ autoreconf --install --force

due to missing perl modules. Add the needed perl modules
for target build:

perl-module-bytes
perl-module-thread-queue
perl-module-threads

Duplicate the perl module dependencies for SDK as well.

Now autoreconf runs with a trivial example.

Signed-off-by: Mikko Rapeli <mikko.rapeli@bmw.de>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agowic: bootimg-partition: Select a preferred type if multi kernel images are installed
Kevin Hao [Mon, 20 Aug 2018 10:42:25 +0000 (18:42 +0800)]
wic: bootimg-partition: Select a preferred type if multi kernel images are installed

Automatically select one kernel type image based on a predefined
precedence list if there are multi kernel images installed.

Signed-off-by: Kevin Hao <kexin.hao@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agowic: bootimg-partition: Add support to specify a custom extlinux.conf
Kevin Hao [Mon, 20 Aug 2018 10:42:24 +0000 (18:42 +0800)]
wic: bootimg-partition: Add support to specify a custom extlinux.conf

Add support to specify a custom extlinux.conf via something like:
    bootloader --configfile="extlinux.conf"

Signed-off-by: Kevin Hao <kexin.hao@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoweston-init: run login before start weston.service
Wang Quanyang [Fri, 17 Aug 2018 15:01:37 +0000 (11:01 -0400)]
weston-init: run login before start weston.service

When systemd start the weston.service, the script "weston-start" will
check if the dir "XDG_RUNTIME_DIR" (usually is /run/user/0) exits and
create it. Then weston will create a socket file "wayland-0" for communications
with clients in this dir.

If systemd is built with enabling "pam" feature, the login will call "run-user-0.mount"
to mount tmpfs at the dir "/run/user/0", then the socket file "wayland-0" will be
missing since it is created in the old "/run/user/0".

So add "PAMName=login" to let weston.service call login first, once tmpfs is mounted at
"/run/user/0", then call weston-start to create a socket file in it.

Signed-off-by: Quanyang Wang <quanyang.wang@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agounzip: fix CVE-2018-1000035
Changqing Li [Fri, 17 Aug 2018 02:02:13 +0000 (10:02 +0800)]
unzip: fix CVE-2018-1000035

Signed-off-by: Changqing Li <changqing.li@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agolibxml2: fix CVE-2018-9251 and CVE-2018-14567
Hongxu Jia [Fri, 17 Aug 2018 07:22:41 +0000 (15:22 +0800)]
libxml2: fix CVE-2018-9251 and CVE-2018-14567

Signed-off-by: Hongxu Jia <hongxu.jia@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoexpat: upgrade 2.2.5 -> 2.2.6
Yi Zhao [Fri, 17 Aug 2018 07:37:21 +0000 (15:37 +0800)]
expat: upgrade 2.2.5 -> 2.2.6

Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoopenssl: drop obsolete no-afalgeng workaround for aarch64
Andre McCurdy [Fri, 17 Aug 2018 04:43:37 +0000 (21:43 -0700)]
openssl: drop obsolete no-afalgeng workaround for aarch64

The aarch64 build issue in the afalg engine appears to have been
fixed upstream since openssl 1.1.0g:

  https://github.com/openssl/openssl/commit/a0c262644eab897b51faf1fa013008052c3754c2

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoopenssl: fix path in nativesdk environment-setup script
Andre McCurdy [Fri, 17 Aug 2018 04:43:36 +0000 (21:43 -0700)]
openssl: fix path in nativesdk environment-setup script

A single version of the openssl.sh environment-setup script is
currently shared by both the openssl 1.0 and 1.1 recipes. The libdir
path in the script needs to be tweaked for openssl 1.1.

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
6 years agoopenssl: move the libdir openssl.cnf symlink into the openssl package
Andre McCurdy [Fri, 17 Aug 2018 04:43:35 +0000 (21:43 -0700)]
openssl: move the libdir openssl.cnf symlink into the openssl package

The openssl 1.0 recipe puts the libdir symlink to /etc/ssl/openssl.cnf
in the base openssl package (along with the libdir symlinks to
/etc/ssl/certs and /etc/ssl/private). Keep the openssl 1.1 recipe
aligned with that approach until there's a clear reason to do
something else. For more background, see comments in the following
thread:

  http://lists.openembedded.org/pipermail/openembedded-core/2017-April/135176.html

Signed-off-by: Andre McCurdy <armccurdy@gmail.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>