diff --git a/.checkpackageignore b/.checkpackageignore index efe5d54711e..32be4c93aa2 100644 --- a/.checkpackageignore +++ b/.checkpackageignore @@ -1,6 +1,4 @@ board/amarula/vyasa/post-build.sh Shellcheck -board/andes/ae350/patches/uboot/0001-mmc-ftsdc010_mci-Support-DTS-of-ftsdc010-driver-for-.patch lib_patch.Upstream -board/andes/ae350/patches/uboot/0002-spl-Align-device-tree-blob-address-at-8-byte-boundar.patch lib_patch.Upstream board/arcturus/aarch64-ucls1012a/post-build.sh Shellcheck board/arcturus/aarch64-ucls1012a/post-image.sh Shellcheck board/aspeed/common/post-image.sh Shellcheck @@ -34,9 +32,6 @@ board/octavo/osd32mp1-brk/patches/uboot/0001-Add-OSD32MP1-BRK-device-tree-suppor board/octavo/osd32mp1-brk/patches/uboot/0002-Add-OSD32MP1-BRK-build-config.patch lib_patch.NumberedSubject lib_patch.Upstream board/octavo/osd32mp1-red/patches/uboot/0001-Add-OSD32MP1-RED-Device-Tree-support.patch lib_patch.NumberedSubject lib_patch.Upstream board/octavo/osd32mp1-red/patches/uboot/0002-configs-stm32mp15_trusted_defconfig-disable-environm.patch lib_patch.NumberedSubject lib_patch.Upstream -board/olimex/a13_olinuxino/post-build.sh Shellcheck -board/olimex/a20_olinuxino/post-build.sh Shellcheck -board/olimex/a33_olinuxino/post-build.sh Shellcheck board/olpc/post-build.sh Shellcheck board/orangepi/common/post-build.sh Shellcheck board/orangepi/orangepi-zero/patches/linux/0001-ARM-dts-orange-pi-zero-interrupt-triggering-xr819.patch lib_patch.Upstream @@ -57,7 +52,6 @@ board/stmicroelectronics/stm32f429-disco/flash.sh Shellcheck board/stmicroelectronics/stm32f469-disco/flash_sd.sh Shellcheck board/stmicroelectronics/stm32f469-disco/flash_xip.sh Shellcheck board/synopsys/axs10x/post-build.sh Shellcheck -board/technologic/ts4900/post-image.sh Shellcheck board/udoo/common/post-build.sh Shellcheck boot/afboot-stm32/0003-Makefile-disable-stack-protector.patch lib_patch.Upstream boot/optee-os/3.13.0/0001-core-zlib-fix-build-warning-when-_LFS64_LARGEFILE-is.patch lib_patch.Upstream @@ -75,12 +69,8 @@ boot/syslinux/0013-Fix-build-with-gnu-efi-version-3.0.9.patch lib_patch.Upstream boot/syslinux/0014-Fix-build-with-binutils-note-gnu-property-section.patch lib_patch.Upstream boot/syslinux/0016-Workaround-multiple-definition-of-symbol-errors.patch lib_patch.Upstream boot/syslinux/0017-Replace-builtin-strlen-that-appears-to-get-optimized.patch lib_patch.Upstream -configs/am574x_idk_defconfig lib_defconfig.ForceCheckHash -configs/andes_ae350_45_defconfig lib_defconfig.ForceCheckHash configs/arcturus_ucls1012a_defconfig lib_defconfig.ForceCheckHash -configs/arcturus_ucp1020_defconfig lib_defconfig.ForceCheckHash configs/asus_tinker-s_rk3288_defconfig lib_defconfig.ForceCheckHash -configs/asus_tinker_rk3288_defconfig lib_defconfig.ForceCheckHash configs/atmel_sama5d27_som1_ek_mmc_dev_defconfig lib_defconfig.ForceCheckHash configs/atmel_sama5d2_xplained_mmc_defconfig lib_defconfig.ForceCheckHash configs/atmel_sama5d2_xplained_mmc_dev_defconfig lib_defconfig.ForceCheckHash @@ -94,8 +84,6 @@ configs/atmel_sama5d4_xplained_mmc_defconfig lib_defconfig.ForceCheckHash configs/atmel_sama5d4_xplained_mmc_dev_defconfig lib_defconfig.ForceCheckHash configs/avenger96_defconfig lib_defconfig.ForceCheckHash configs/avnet_rzboard_v2l_defconfig lib_defconfig.ForceCheckHash -configs/bananapi_m2_berry_defconfig lib_defconfig.ForceCheckHash -configs/bananapi_m2_ultra_defconfig lib_defconfig.ForceCheckHash configs/bananapi_m2_zero_defconfig lib_defconfig.ForceCheckHash configs/broadcom_northstar_defconfig lib_defconfig.ForceCheckHash configs/canaan_kd233_defconfig lib_defconfig.ForceCheckHash @@ -103,7 +91,6 @@ configs/ci20_defconfig lib_defconfig.ForceCheckHash configs/freescale_p1025twr_defconfig lib_defconfig.ForceCheckHash configs/freescale_t1040d4rdb_defconfig lib_defconfig.ForceCheckHash configs/freescale_t2080_qds_rdb_defconfig lib_defconfig.ForceCheckHash -configs/friendlyarm_nanopi_r2s_defconfig lib_defconfig.ForceCheckHash configs/globalscale_espressobin_defconfig lib_defconfig.ForceCheckHash configs/imx23evk_defconfig lib_defconfig.ForceCheckHash configs/imx6-sabreauto_defconfig lib_defconfig.ForceCheckHash @@ -112,14 +99,10 @@ configs/imx6-sabresd_qt5_defconfig lib_defconfig.ForceCheckHash configs/imx6slevk_defconfig lib_defconfig.ForceCheckHash configs/imx6sx-sdb_defconfig lib_defconfig.ForceCheckHash configs/imx6ulevk_defconfig lib_defconfig.ForceCheckHash -configs/imx6ullevk_defconfig lib_defconfig.ForceCheckHash configs/imx6ulpico_defconfig lib_defconfig.ForceCheckHash configs/imx7dpico_defconfig lib_defconfig.ForceCheckHash configs/imx8mqevk_defconfig lib_defconfig.ForceCheckHash -configs/khadas_vim3_defconfig lib_defconfig.ForceCheckHash configs/kontron_bl_imx8mm_defconfig lib_defconfig.ForceCheckHash -configs/kontron_smarc_sal28_defconfig lib_defconfig.ForceCheckHash -configs/mangopi_mq1rdw2_defconfig lib_defconfig.ForceCheckHash configs/mender_x86_64_efi_defconfig lib_defconfig.ForceCheckHash configs/microchip_sam9x60ek_mmc_defconfig lib_defconfig.ForceCheckHash configs/microchip_sam9x60ek_mmc_dev_defconfig lib_defconfig.ForceCheckHash @@ -141,19 +124,10 @@ configs/nitrogen8mm_defconfig lib_defconfig.ForceCheckHash configs/nitrogen8mn_defconfig lib_defconfig.ForceCheckHash configs/nitrogen8mp_defconfig lib_defconfig.ForceCheckHash configs/odroidc2_defconfig lib_defconfig.ForceCheckHash -configs/olimex_a10_olinuxino_lime_defconfig lib_defconfig.ForceCheckHash -configs/olimex_a13_olinuxino_defconfig lib_defconfig.ForceCheckHash -configs/olimex_a20_olinuxino_micro_defconfig lib_defconfig.ForceCheckHash -configs/olimex_a33_olinuxino_defconfig lib_defconfig.ForceCheckHash -configs/olimex_a64_olinuxino_defconfig lib_defconfig.ForceCheckHash configs/olpc_xo175_defconfig lib_defconfig.ForceCheckHash configs/olpc_xo1_defconfig lib_defconfig.ForceCheckHash configs/orangepi_pc2_defconfig lib_defconfig.ForceCheckHash configs/orangepi_zero_plus_defconfig lib_defconfig.ForceCheckHash -configs/pine64_defconfig lib_defconfig.ForceCheckHash -configs/pine64_pinecube_defconfig lib_defconfig.ForceCheckHash -configs/pine64_star64_defconfig lib_defconfig.ForceCheckHash -configs/s6lx9_microboard_defconfig lib_defconfig.ForceCheckHash configs/sipeed_lichee_rv_defconfig lib_defconfig.ForceCheckHash configs/sipeed_lichee_rv_dock_defconfig lib_defconfig.ForceCheckHash configs/sipeed_licheepi_nano_defconfig lib_defconfig.ForceCheckHash @@ -174,13 +148,10 @@ configs/solidrun_clearfog_gt_8k_defconfig lib_defconfig.ForceCheckHash configs/solidrun_macchiatobin_defconfig lib_defconfig.ForceCheckHash configs/stm32mp157c_odyssey_defconfig lib_defconfig.ForceCheckHash configs/terasic_de10nano_cyclone5_defconfig lib_defconfig.ForceCheckHash -configs/ts4900_defconfig lib_defconfig.ForceCheckHash -configs/ts5500_defconfig lib_defconfig.ForceCheckHash configs/uevm5432_defconfig lib_defconfig.ForceCheckHash configs/visionfive_defconfig lib_defconfig.ForceCheckHash configs/wandboard_defconfig lib_defconfig.ForceCheckHash configs/warp7_defconfig lib_defconfig.ForceCheckHash -linux/5.10.162-cip24-rt10/0001-arch-microblaze-mm-init.c-fix-build.patch lib_patch.Upstream package/18xx-ti-utils/0001-plt.h-fix-build-with-gcc-10.patch lib_patch.Upstream package/4th/0001-avoid-regen-during-install.patch lib_patch.Upstream package/acl/0001-Build-with-old-GCC-versions.patch lib_patch.Upstream @@ -189,11 +160,6 @@ package/alchemy/0001-toolchains-remove-hash-style-management.patch lib_patch.Ups package/alsamixergui/0001-misc-fixes.patch lib_patch.Sob lib_patch.Upstream package/alsamixergui/0002-configure-fix-detection-of-fltk-libs.patch lib_patch.Upstream package/am335x-pru-package/0001-install-does-not-build.patch lib_patch.Upstream -package/am33x-cm3/0001-fix-makefile.patch lib_patch.Upstream -package/am33x-cm3/0002-Makefile-unconditionally-disable-SSP.patch lib_patch.Upstream -package/am33x-cm3/0003-Makefile-unconditionally-disable-PIE.patch lib_patch.Upstream -package/am33x-cm3/0004-Makefile-add-fno-builtin.patch lib_patch.Upstream -package/am33x-cm3/S93-am335x-pm-firmware-load lib_sysv.Variables package/android-tools/0001-Fix-makefiles-for-out-of-tree-build.patch lib_patch.Upstream package/android-tools/0002-Fix-adbd-for-non-Ubuntu-systems.patch lib_patch.Upstream package/android-tools/0004-Fix-build-issue-with-musl.patch lib_patch.Upstream @@ -205,7 +171,6 @@ package/android-tools/0009-Fix-makefiles-for-out-of-tree-ext4_utils-build.patch package/android-tools/0010-adb-added-patch-for-openssl-1.1.0-compatibility.patch lib_patch.Upstream package/aoetools/0001-Change-shell-script-interpreter-from-bin-bash-to-bin.patch lib_patch.Upstream package/apache/0001-cross-compile.patch lib_patch.Upstream -package/apache/S50apache Shellcheck lib_sysv.Indent lib_sysv.Variables package/apr-util/0001-remove-checkapr.patch lib_patch.Upstream package/apr/0001-sys-param-h.patch lib_patch.Upstream package/apr/0002-Revert-Backport-r1872164.-Fix-the-name-of-libtool-wh.patch lib_patch.Upstream @@ -220,19 +185,15 @@ package/at/0001-Makefile.in-fix-make-install-for-non-root-don-t-stri.patch lib_p package/at/S99at lib_sysv.Indent lib_sysv.Variables package/attr/0001-build-with-older-GCCs.patch lib_patch.Upstream package/aumix/0001-fix-incorrect-makefile-am.patch lib_patch.Upstream -package/autoconf/0001-dont-add-dirty-to-version.patch lib_patch.Upstream package/automake/0001-noman.patch lib_patch.Upstream -package/avahi/0001-Fix-NULL-pointer-crashes-from-175.patch lib_patch.Upstream package/avahi/S05avahi-setup.sh lib_sysv.Indent lib_sysv.Variables package/avahi/S50avahi-daemon lib_sysv.Indent lib_sysv.Variables package/babeld/S50babeld Shellcheck lib_sysv.Indent lib_sysv.Variables -package/babeltrace2/0001-configure-simplify-warning-flags-detection.patch lib_patch.Upstream package/bash/0001-input.h-add-missing-include-on-stdio.h.patch lib_patch.Upstream package/bash/0002-parse.y-fix-compilation-for-non-multibyte-builds.patch lib_patch.Upstream package/bc/0001-bc-use-MAKEINFO-variable-for-docs.patch lib_patch.Upstream package/bc/0002-notice-read-and-write-errors-on-input-and-output.patch lib_patch.Upstream package/bcache-tools/0001-Don-t-inline-crc64-for-gcc-5-compatability.patch lib_patch.Upstream -package/bctoolbox/0001-Fix-Libs.private-flags-for-mbedtls.patch lib_patch.Upstream package/bcusdk/0002-eibd-fix-endless-recursion-when-using-USB-backends.patch lib_patch.Upstream package/bearssl/0001-Fix-missing-objdir-dependency.patch lib_patch.Upstream package/benejson/0001-c-std.patch lib_patch.Upstream @@ -273,12 +234,10 @@ package/cfm/S65cfm lib_sysv.Indent lib_sysv.Variables package/cgroupfs-mount/S30cgroupfs Shellcheck lib_sysv.Indent lib_sysv.Variables package/chipmunk/0001-Fix-build-failure-on-musl.patch lib_patch.Upstream package/chrony/S49chronyd lib_sysv.Variables -package/cmake/0001-rename-cmake-rootfile.patch lib_patch.Upstream package/collectd/0001-src-netlink.c-remove-REG_NOERROR.patch lib_patch.Upstream package/connman/S45connman lib_sysv.Variables package/copas/0001-Do-not-load-coxpcall-for-LuaJIT.patch lib_patch.Upstream package/coremark-pro/coremark-pro.sh.in Shellcheck -package/cppdb/0001-mysql-library-suffix.patch lib_patch.Upstream package/cpulimit/0001-Fix-crash-and-compiler-warnings.patch lib_patch.Upstream package/cpulimit/0002-Remove-sys-sysctl.h-and-add-missing-libgen.h-include.patch lib_patch.Upstream package/cpulimit/0003-Fix-an-infrequent-crash.patch lib_patch.Upstream @@ -295,7 +254,6 @@ package/curlftpfs/0001-fix-CURLOPT_INFILESIZE.patch lib_patch.Sob lib_patch.Upst package/curlftpfs/0002-free_ftpfs_file-memleak-fix.patch lib_patch.Sob lib_patch.Upstream package/curlftpfs/0003-nocache-memleak-fix.patch lib_patch.Sob lib_patch.Upstream package/curlftpfs/0004-fix-musl-build-off-t.patch lib_patch.Upstream -package/cutelyst/0001-server-CMakeLists.txt-don-t-override-CMAKE_EXE_LINKE.patch lib_patch.Upstream package/cwiid/0001-wmdemo-fix-linking-by-adding-the-missing-lbluetooth-.patch lib_patch.Upstream package/cwiid/0002-configure-make-wmgui-build-optional.patch lib_patch.Upstream package/dahdi-tools/0001-no-build-docs.patch lib_patch.Upstream @@ -303,14 +261,11 @@ package/dahdi-tools/0002-no-perl-manpages.patch lib_patch.Upstream package/dante/0001-fix-sparc-compile.patch lib_patch.Upstream package/dante/0002-osdep-m4-Remove-getaddrinfo-too-low-checks.patch lib_patch.Upstream package/dante/S50dante Shellcheck lib_sysv.Indent lib_sysv.Variables -package/daq/0001-Fix-build-against-the-musl-C-library.patch lib_patch.Upstream -package/daq/0002-parallel-grammar.patch lib_patch.Upstream package/darkhttpd/S50darkhttpd Shellcheck lib_sysv.Indent lib_sysv.Variables package/davfs2/0001-src-Makefile.am-do-not-hardcode-fstack-protector-str.patch lib_patch.Upstream package/dbus-cpp/0001-gcc4.7.patch lib_patch.Upstream package/dbus-cpp/0002-cross-compile-tools.patch lib_patch.Upstream package/dbus-cpp/0003-src-pipe.c-fix-build-error-with-gcc-7.x.patch lib_patch.Upstream -package/dbus/S30dbus Shellcheck lib_sysv.Indent lib_sysv.TrailingSpace lib_sysv.Variables package/dc3dd/0001-no_man.patch lib_patch.Upstream package/dc3dd/0002-fix-autoreconf.patch lib_patch.Upstream package/dc3dd/0003-fix-for-glibc-2.28.patch lib_patch.Upstream @@ -324,12 +279,9 @@ package/dmalloc/0001-configure-fix-build-on-mips.patch lib_patch.Upstream package/dmalloc/0003-configure-allow-overriding-some-tests.patch lib_patch.Upstream package/dmalloc/0004-Makefile-use-the-configure-detected-or-user-supplied.patch lib_patch.Upstream package/dmalloc/0005-configure-use-LD-instead-of-hard-coding-ld.patch lib_patch.Upstream -package/dmraid/0001-fix-compilation-under-musl.patch lib_patch.Upstream -package/dmraid/S20dmraid lib_sysv.Variables package/docopt-cpp/0001-only-build-one-target-use-BUILD_SHARED_LIBS-where-appropriate.patch lib_patch.Upstream package/domoticz/S99domoticz Shellcheck package/dovecot/0001-auth-Fix-handling-passdbs-with-identical-driver-args.patch lib_patch.Upstream -package/dracut/0001-dracut.sh-don-t-unset-LD_PRELOAD.patch lib_patch.Upstream package/dracut/merged-usr-module-setup.sh Shellcheck package/dropbear/S50dropbear Shellcheck lib_sysv.Indent lib_sysv.Variables package/dt/0001-adjust-os-symlink.patch lib_patch.Upstream @@ -337,18 +289,12 @@ package/dt/0002-dt-default-source-define.patch lib_patch.Upstream package/dtc/0001-Fix-include-guards-for-older-kernel-u-boot-sources.patch lib_patch.Upstream package/dvblast/0001-missing-lm.patch lib_patch.Upstream package/dvblast/0002-fix-int-types.patch lib_patch.Upstream -package/dvbsnoop/0001-musl-types-h.patch lib_patch.Upstream -package/dvdrw-tools/0001-limits.h.patch lib_patch.Upstream -package/dvdrw-tools/0002-Include-sysmacros.h-to-compile-with-newer-gcc.patch lib_patch.Upstream package/earlyoom/0001-main.c-fix-build-with-kernel-4.3.patch lib_patch.Upstream package/earlyoom/S02earlyoom Shellcheck lib_sysv.Indent package/ebtables/0001-replace-ebtables-save-perl-script-with-bash.patch lib_patch.Upstream package/ecryptfs-utils/0001-musl.patch lib_patch.Upstream package/ecryptfs-utils/0002-openssl110.patch lib_patch.Upstream package/ecryptfs-utils/0003-fix-parallel-build-issue.patch lib_patch.Upstream -package/efl/0001-ecore_evas-engines-drm-meson.build-use-gl_deps-as-en.patch lib_patch.Upstream -package/efl/0002-ecore_evas-engines-drm-meson.build-fix-gl_drm-includ.patch lib_patch.Upstream -package/efl/0003-ecore_fb-fix-build-with-tslib.patch lib_patch.Upstream package/eigen/0001-Adds-new-CMake-Options-for-controlling-build-compone.patch lib_patch.Upstream package/elftosb/0001-fixes-includes.patch lib_patch.Upstream package/elftosb/0002-force-cxx-compiler.patch lib_patch.Upstream @@ -365,8 +311,6 @@ package/exim/0001-Build-buildconfig-for-the-host.patch lib_patch.Upstream package/exim/0002-Don-t-make-backup-copies-of-installed-files.patch lib_patch.Upstream package/exim/0003-Skip-version-check-and-symlink-installation.patch lib_patch.Upstream package/exim/S86exim lib_sysv.Indent lib_sysv.Variables -package/expect/0001-enable-cross-compilation.patch lib_patch.Upstream -package/expect/0002-allow-tcl-build-directory.patch lib_patch.Upstream package/fail2ban/S60fail2ban Shellcheck lib_sysv.Variables package/fakedate/fakedate Shellcheck package/falcosecurity-libs/0001-cmake-Permit-setting-GRPC_CPP_PLUGIN.patch lib_patch.Upstream @@ -382,7 +326,6 @@ package/ffmpeg/0001-swscale-x86-yuv2rgb-Fix-build-without-SSSE3.patch lib_patch. package/ffmpeg/0002-avcodec-vaapi_h264-skip-decode-if-pic-has-no-slices.patch lib_patch.Upstream package/ffmpeg/0003-libavutil-Fix-mips-build.patch lib_patch.Upstream package/ffmpeg/0004-configure-add-extralibs-to-extralibs_xxx.patch lib_patch.Upstream -package/ficl/0001-fix-Makefile.patch lib_patch.Upstream package/flatbuffers/0001-include-flatbuffers-base.h-fix-build-on-musl.patch lib_patch.Upstream package/flex/0001-build-AC_USE_SYSTEM_EXTENSIONS-in-configure.ac.patch lib_patch.Upstream package/flex/0002-build-make-it-possible-to-disable-the-build-of-the-f.patch lib_patch.Upstream @@ -397,30 +340,18 @@ package/freescale-imx/imx-uuc/S80imx-uuc Shellcheck lib_sysv.Indent lib_sysv.Var package/freescale-imx/imx-vpu-hantro/0001-Fix-ion.h-header-inclusion-to-be-standard.patch lib_patch.Upstream package/freescale-imx/imx-vpu-hantro/0002-Fix-build-with-uclibc-toolchain.patch lib_patch.Upstream package/freescale-imx/imx-vpu-hantro/0003-Fix-Linux-kernel-version-header.patch lib_patch.Upstream -package/freeswitch/0001-libs-srtp-crypto-hash-hmac_ossl.c-fix-build-with-lib.patch lib_patch.Upstream package/frr/S50frr Shellcheck package/fstrcmp/0001-disable-rpath.patch lib_patch.Upstream package/ftop/0001-overflow.patch lib_patch.Upstream -package/fwts/0001-build-do-not-use-Werror.patch lib_patch.Upstream package/fxdiv/0001-CMake-don-t-enable-CXX-unless-building-tests-benchma.patch lib_patch.Upstream package/fxload/0001-fix-static-build.patch lib_patch.Upstream -package/gcc/13.4.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream -package/gcc/14.3.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream -package/gcc/15.2.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream +package/gcc/14.4.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream +package/gcc/15.3.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream +package/gcc/16.2.0/0001-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream package/gcc/8.4.0/0001-xtensa-fix-PR-target-91880.patch lib_patch.Upstream package/gcc/8.4.0/0002-Revert-re-PR-target-92095-internal-error-with-O1-mcp.patch lib_patch.Upstream package/gcc/8.4.0/0003-libsanitizer-Remove-cyclades-from-libsanitizer.patch lib_patch.Upstream package/gcc/8.4.0/0004-disable-split-stack-for-non-thread-builds.patch lib_patch.Upstream -package/gcr/0001-meson-Fix-unknown-kw-argument-in-gnome.generate_gir.patch lib_patch.Upstream -package/gdb/14.2/0001-ppc-ptrace-Define-pt_regs-uapi_pt_regs-on-GLIBC-syst.patch lib_patch.Upstream -package/gdb/14.2/0002-sh-ptrace-Define-pt_-dsp-regs-uapi_pt_-dsp-regs-on-G.patch lib_patch.Upstream -package/gdb/14.2/0003-use-asm-sgidefs.h.patch lib_patch.Upstream -package/gdb/14.2/0004-gdbserver-fix-build-for-m68k.patch lib_patch.Upstream -package/gdb/14.2/0005-nat-fork-inferior-include-linux-ptrace.h.patch lib_patch.Upstream -package/gdb/14.2/0006-Fix-getrandom-compile-for-uclibc-v1.0.35.patch lib_patch.Upstream -package/gdb/14.2/0007-fix-musl-build-on-riscv.patch lib_patch.Upstream -package/gdb/14.2/0008-gdbserver-Makefile.in-fix-NLS-build.patch lib_patch.Upstream -package/gdb/14.2/0009-gdb-Fix-native-build-on-xtensa.patch lib_patch.Upstream package/gdb/15.2/0001-ppc-ptrace-Define-pt_regs-uapi_pt_regs-on-GLIBC-syst.patch lib_patch.Upstream package/gdb/15.2/0002-sh-ptrace-Define-pt_-dsp-regs-uapi_pt_-dsp-regs-on-G.patch lib_patch.Upstream package/gdb/15.2/0003-use-asm-sgidefs.h.patch lib_patch.Upstream @@ -439,13 +370,20 @@ package/gdb/16.3/0006-Fix-getrandom-compile-for-uclibc-v1.0.35.patch lib_patch.U package/gdb/16.3/0007-fix-musl-build-on-riscv.patch lib_patch.Upstream package/gdb/16.3/0008-gdbserver-Makefile.in-fix-NLS-build.patch lib_patch.Upstream package/gdb/16.3/0009-gdb-Fix-native-build-on-xtensa.patch lib_patch.Upstream +package/gdb/17.1/0001-ppc-ptrace-Define-pt_regs-uapi_pt_regs-on-GLIBC-syst.patch lib_patch.Upstream +package/gdb/17.1/0002-sh-ptrace-Define-pt_-dsp-regs-uapi_pt_-dsp-regs-on-G.patch lib_patch.Upstream +package/gdb/17.1/0003-use-asm-sgidefs.h.patch lib_patch.Upstream +package/gdb/17.1/0004-gdbserver-fix-build-for-m68k.patch lib_patch.Upstream +package/gdb/17.1/0005-nat-fork-inferior-include-linux-ptrace.h.patch lib_patch.Upstream +package/gdb/17.1/0006-Fix-getrandom-compile-for-uclibc-v1.0.35.patch lib_patch.Upstream +package/gdb/17.1/0007-fix-musl-build-on-riscv.patch lib_patch.Upstream +package/gdb/17.1/0008-gdbserver-Makefile.in-fix-NLS-build.patch lib_patch.Upstream +package/gdb/17.1/0009-gdb-Fix-native-build-on-xtensa.patch lib_patch.Upstream package/genpart/0001-fix-return-code.patch lib_patch.Upstream -package/gensio/0001-Fix-missing-EVP_PKEY_ED25519-build-error-on-libressl.patch lib_patch.Upstream package/gerbera/S99gerbera lib_sysv.Indent package/git-crypt/0001-fix-build-with-libressl-3.5.0.patch lib_patch.Upstream package/glorytun/0001-Add-support-for-Apple-silicon.patch lib_patch.Upstream package/glorytun/0002-aegis256.c-fix-aarch64-build-with-uclibc.patch lib_patch.Upstream -package/gnu-efi/0001-Make.defaults-don-t-override-ARCH-when-cross-compili.patch lib_patch.Upstream package/gnupg/0001-build-Always-use-EXTERN_UNLESS_MAIN_MODULE-pattern.patch lib_patch.Upstream package/gnuplot/0001-configure-add-without-demo-option.patch lib_patch.Upstream package/go/go-src/0001-build.go-explicit-option-for-crosscompilation.patch lib_patch.Upstream @@ -453,22 +391,17 @@ package/gob2/0001-dont-include-from-prefix.patch lib_patch.Upstream package/gobject-introspection/0001-Add-rpath-links-to-ccompiler.patch lib_patch.Upstream package/gpsd/S50gpsd Shellcheck lib_sysv.Indent lib_sysv.Variables package/gptfdisk/0001-gptcurses-partially-revert-Tweaks-for-building-on-th.patch lib_patch.Upstream -package/graphite2/0001-don-t-install-a-libtool-file-with-static-library.patch lib_patch.Upstream -package/grpc/0003-disable-unconditionally-downloading-api-repos.patch lib_patch.Upstream package/gstreamer1/gstd/0001-Don-t-require-gstd-check-user-xenv.sh-for-systemd-se.patch lib_patch.Upstream package/guile/0001-calculate-csqrt_manually.patch lib_patch.Upstream -package/guile/0002-Makefile.am-fix-build-without-makeinfo.patch lib_patch.Upstream package/gutenprint/0001-use-pregen-xmli18n-header.patch lib_patch.Upstream package/gutenprint/0002-cups-support-replaces-static-with-static-libtool-lib.patch lib_patch.Upstream package/harfbuzz/0001-meson.build-check-for-pthread.h.patch lib_patch.Upstream package/haserl/0001-add-haserl_lualib.inc.patch lib_patch.Upstream package/haveged/S21haveged Shellcheck lib_sysv.Variables -package/heirloom-mailx/0001-fix-libressl-support.patch lib_patch.Upstream package/hplip/0001-build-use-pkg-config-to-discover-libusb.patch lib_patch.Upstream package/hplip/0002-configure.in-fix-AM_INIT_AUTOMAKE-call.patch lib_patch.Upstream package/i2pd/S99i2pd Shellcheck lib_sysv.Indent lib_sysv.Variables package/i7z/0001-fix-build-with-gcc-10.patch lib_patch.Upstream -package/ibm-sw-tpm2/0001-Use-LONG_BIT-to-define-RADIX_BITS.patch lib_patch.Upstream package/ibrcommon/0001-ibrcommon-data-File.cpp-support-POSIX-basename-call.patch lib_patch.Upstream package/ibrcommon/0002-ibrcommon-added-openssl-1.1-compatibility-264.patch lib_patch.Upstream package/ibrcommon/0003-ibrcommon-ssl-gcm-fix-static-build-with-openssl.patch lib_patch.Upstream @@ -491,8 +424,6 @@ package/ifupdown/0001-dont-use-dpkg-architecture.patch lib_patch.Upstream package/igd2-for-linux/S99upnpd Shellcheck lib_sysv.Indent lib_sysv.Variables package/imx-mkimage/0001-Add-unused-fake-version.patch lib_patch.Upstream package/inadyn/S70inadyn NotExecutable lib_sysv.Indent -package/initscripts/init.d/rcK Shellcheck lib_shellscript.ConsecutiveEmptyLines lib_shellscript.EmptyLastLine -package/initscripts/init.d/rcS Shellcheck lib_shellscript.ConsecutiveEmptyLines lib_shellscript.EmptyLastLine package/input-event-daemon/S99input-event-daemon lib_sysv.ConsecutiveEmptyLines lib_sysv.Indent lib_sysv.Variables package/intel-gmmlib/0001-Drop-hardening-related-flags.patch lib_patch.Upstream package/intel-mediasdk/0001-Don-t-force-fstack-protector.patch lib_patch.Upstream @@ -512,24 +443,18 @@ package/irqbalance/S13irqbalance Shellcheck lib_sysv.Indent lib_sysv.Variables package/irrlicht/0001-override-CPPFLAGS-CXXFLAGS-and-CFLAGS-in-Makefile.patch lib_patch.Upstream package/irrlicht/0002-makefile-override-LDFLAGS-and-remove-obsolete-X11R6-.patch lib_patch.Upstream package/iucode-tool/S00iucode-tool lib_sysv.Variables -package/iwd/S40iwd Shellcheck -package/janus-gateway/0001-disable-ssp.patch lib_patch.Upstream package/kexec-lite/0001-clean-restart.patch lib_patch.Upstream package/keyutils/0001-fix-install-rule.patch lib_patch.Upstream package/keyutils/0002-cifs.patch lib_patch.Sob lib_patch.Upstream -package/kmod/0001-fix-O_CLOEXEC.patch lib_patch.Upstream package/kodi/S50kodi Shellcheck lib_sysv.Variables package/lbase64/0001-retro-compatible-with-Lua-5.1.patch lib_patch.Upstream package/lcdproc/0001-LCDd.conf.patch lib_patch.Upstream package/lcdproc/0002-Add-missing-ioctl-header.patch lib_patch.Upstream package/lcdproc/0003-Fixcompilation-with-GCC-10-x.patch lib_patch.Upstream package/leafnode2/0001-cross_makefile.patch lib_patch.Upstream -package/let-me-create/0001-fix-build-with-musl-C-library.patch lib_patch.Upstream package/leveldb/0001-Fix-compilation-with-g-4.8.2.patch lib_patch.Upstream package/leveldb/0002-CMake-install-libmemenv.a.patch lib_patch.Upstream package/leveldb/0003-CMakeLists.txt-check-for-atomic-library.patch lib_patch.Upstream -package/lftp/0001-Fix-build-with-LibreSSL-following-commit-537f37898.patch lib_patch.Upstream -package/lftp/0002-src-lftp_ssl.c-fix-build-with-libressl-2.7.0.patch lib_patch.Upstream package/libabseil-cpp/0001-force-position-independent-code.patch lib_patch.Upstream package/libargon2/0001-libargon2-dont-fail-on-existing-symlink.patch lib_patch.Upstream package/libart/0001-art-config-cross.patch lib_patch.Sob lib_patch.Upstream @@ -538,11 +463,7 @@ package/libavl/0001-fix-makefile.patch lib_patch.Upstream package/libb64/0001-Integer-overflows.patch lib_patch.Upstream package/libb64/0002-Initialize-C++-objects.patch lib_patch.Upstream package/libcdaudio/0001-libcdaudio-enable-autoreconf.patch lib_patch.Upstream -package/libcgi/0001-CMakeLists.txt-honour-BUILD_TESTING.patch lib_patch.Upstream package/libcgicc/0001-disable-documentation-option.patch lib_patch.Sob lib_patch.Upstream -package/libconfuse/0001-Fix-163-unterminated-username-used-with-getpwnam.patch lib_patch.Upstream -package/libcorrect/0002-CMakeLists.txt-conditionally-use-fsanitize-address.patch lib_patch.Upstream -package/libcuefile/0001-fix-static-link.patch lib_patch.Upstream package/libdaemon/0001-testd-use-unistd-h-instead-of-sys-unistd-h.patch lib_patch.Upstream package/libdnet/0001-python-makefile.patch lib_patch.Upstream package/libdrm/0001-tests-meson.build-disable-nouveau-tests-for-static-b.patch lib_patch.Upstream @@ -552,10 +473,6 @@ package/libedit/0001-check-bsd-functions-in-libbsd.patch lib_patch.Upstream package/libevent/0001-Don-t-define-BIO_get_init-for-LibreSSL-3-5.patch lib_patch.Upstream package/libffi/0001-Fix-use-of-compact-eh-frames-on-MIPS.patch lib_patch.Upstream package/libfm/0001-modules-fix-cross-compilation.patch lib_patch.Upstream -package/libfreeimage/0001-no-root-install.patch lib_patch.Upstream -package/libfreeimage/0002-fix-cpuid-x86.patch lib_patch.Upstream -package/libfreeimage/0003-fix-big-endian-os.patch lib_patch.Upstream -package/libfreeimage/0004-fixed-C-11-warnings.patch lib_patch.Upstream package/libftdi/0001-pkgconfig_libusb.patch lib_patch.Sob lib_patch.Upstream package/libftdi/0002-libftdi.pc-requires-libusb-fix-static-build.patch lib_patch.Sob lib_patch.Upstream package/libfuse/0001-fix-aarch64-build.patch lib_patch.Upstream @@ -563,12 +480,7 @@ package/libfuse/0002-util-ulockmgr_server-c-conditionally-define-closefrom-fix-g package/libgcrypt/0001-configure.ac-add-an-option-to-disable-tests.patch lib_patch.Upstream package/libgpiod/0001-build-add-a-configure-switch-for-building-examples.patch lib_patch.Upstream package/libgsm/0001-Misc-fixes-from-Archlinux.patch lib_patch.Upstream -package/libgtk2/0001-reduce-dependencies.patch lib_patch.Upstream package/libgtk3/0001-Remove-Gdk-dependency-from-gtk-encode-symbolic-svg.patch lib_patch.Upstream -package/libhdhomerun/0001-dont-strip.patch lib_patch.Upstream -package/libiio/S99iiod Shellcheck lib_sysv.Variables -package/libiqrf/0001-cmake-handle-static-library-and-find-required-thread.patch lib_patch.Upstream -package/libiqrf/0002-use-only-c-language.patch lib_patch.Upstream package/libjson/0001-fix-broken-makefile.patch lib_patch.Upstream package/libks/0001-CMakeLists.txt-honour-BUILD_TESTING.patch lib_patch.Upstream package/liblinear/0001-build-static-lib.patch lib_patch.Upstream @@ -590,7 +502,6 @@ package/libmpeg2/0003-fix-arm-detection.patch lib_patch.Upstream package/libmpeg2/0004-fix-sparc.patch lib_patch.Upstream package/libnetfilter_conntrack/0001-conntrack-fix-build-with-kernel-5-15-and-musl.patch lib_patch.Upstream package/libnfc/0001-autotools-make-example-build-optional.patch lib_patch.Upstream -package/libnids/0001-libpcap-use-pkg-config.patch lib_patch.Upstream package/libnss/0001-Bug-1801182-Allow-overriding-OS_ARCH-OS_TEST-and-OS_.patch lib_patch.Upstream package/libodb-mysql/0001-fix-syntax-issue-while-checking-ldflags.patch lib_patch.Upstream package/libodb-mysql/0002-mariadb-FTBFS-fix.patch lib_patch.Upstream @@ -601,10 +512,8 @@ package/liboping/0002-Open-raw-sockets-when-adding-hosts-not-when-doing-th.patch package/liboping/0003-Fix-compile-break-with-GCC-7-buffer-overflow-with-snprintf.patch lib_patch.Upstream package/liboping/0004-Fix-compile-error-on-GCC-7.patch lib_patch.Upstream package/liboping/0005-src-oping.c-always-use-s-style-format-for-printf-sty.patch lib_patch.Upstream -package/libp11/0001-src-p11_attr.c-fix-build-with-gcc-4.8.patch lib_patch.Upstream package/libpthsem/0001-fix-build-on-linux-3.x-host.patch lib_patch.Upstream package/libressl/0001-always-expose-SSL_OP_NO_TLSv1_3.patch lib_patch.Upstream -package/libroxml/0001-src-roxml_mem.h-add-missing-extern.patch lib_patch.Upstream package/librsvg/0001-gdk-pixbuf-loader-Makefile.am-set-GDK_PIXBUF_MODULED.patch lib_patch.Upstream package/librtlsdr/0001-Makefile.am-respect-DESTDIR-with-install-udev-rules.patch lib_patch.Upstream package/libselinux/0001-Do-not-use-PYCEXT-and-rely-on-the-installed-file-nam.patch lib_patch.Upstream @@ -622,13 +531,10 @@ package/libsigrokdecode/0003-configure-ac-Use-python3-embed-pc-as-a-fallback.pat package/libspatialindex/0001-allow-building-static-libs.patch lib_patch.Upstream package/libspatialindex/0002-CMakeLists.txt-fix-CMAKE_BUILD_TYPE.patch lib_patch.Upstream package/libsquish/0001-Makefile-add-f-option-for-ln-to-remove-existing-dest.patch lib_patch.Upstream -package/libsvg/0001-fix-expat-static-declaration.patch lib_patch.Upstream -package/libsvg/0002-Fix-undefined-symbol-png_set_gray_1_2_4_to_8.patch lib_patch.Upstream package/libtalloc/0001-buildtools-wafsamba-add-disable-stack-protector-opti.patch lib_patch.Upstream package/libtelnet/0001-fix-compilation-without-zlib.patch lib_patch.Upstream package/libtomcrypt/0001-fix-CVE-2019-17362.patch lib_patch.Upstream package/libtommath/0001-Build-test-bn_mp_set_double-c-on-more-platforms.patch lib_patch.Upstream -package/libtorrent/0001-libtorrent.pc.in-add-Libs.Private.patch lib_patch.Upstream package/libubootenv/0001-src-CMakeLists.txt-do-not-force-the-build-of-a-share.patch lib_patch.Upstream package/libuio/0001-configure.ac-set-automake-strictness-to-foreign.patch lib_patch.Upstream package/liburcu/0001-Only-blacklist-ARM-gcc-4.8.0-and-4.8.1.patch lib_patch.Upstream @@ -636,9 +542,6 @@ package/libvpx/0001-vpx_mem-vpx_mem.h-Fix-compilation-with-uClibc.patch lib_patc package/libyuv/0001-i386-sse2.patch lib_patch.Upstream package/lighttpd/0001-Modify-the-default-lighttpd-configuration-file-to-ha.patch lib_patch.Upstream package/lighttpd/S50lighttpd Shellcheck lib_sysv.EmptyLastLine lib_sysv.Indent lib_sysv.Variables -package/linknx/0001-configure-ac-tweak-CPPUNIT-conditional.patch lib_patch.Upstream -package/linknx/0002-src-Makefile.am-fix-linking-with-log4cpp.patch lib_patch.Upstream -package/linphone/0001-src-core-paths-paths.cpp-fix-powerpc-build.patch lib_patch.Upstream package/linux-zigbee/0001-test-serial-Remove-test-serial.patch lib_patch.Upstream package/linux-zigbee/0002-addrdb-coord-config-parse.y-add-missing-time.h-inclu.patch lib_patch.Upstream package/linuxptp/S65ptp4l Shellcheck lib_sysv.Indent @@ -647,15 +550,10 @@ package/lirc-tools/0001-plugins-devinput.c-fix-build-with-musl-1.2.0.patch lib_p package/lirc-tools/0002-configure-add-disable-doc-option.patch lib_patch.Upstream package/lirc-tools/S25lircd lib_sysv.Indent lib_sysv.Variables package/live555/0001-Add-a-pkg-config-file-for-the-shared-libraries.patch lib_patch.Upstream -package/lldpd/S60lldpd Shellcheck lib_sysv.Indent lib_sysv.Variables -package/lm-sensors/0001-static-build.patch lib_patch.Upstream -package/lm-sensors/0002-no-host-ldconfig.patch lib_patch.Upstream +package/lm-sensors/0001-no-host-ldconfig.patch lib_patch.Upstream package/lmbench/0001-scripts-build-use-bin-bash-as-shell.patch lib_patch.Upstream package/lmbench/0002-src-Makefile-add-lmbench-to-list-of-executables.patch lib_patch.Upstream package/lmbench/0003-TOO_LONG-100-usec-to-prevent-memsize-from-timingout-.patch lib_patch.Upstream -package/lmbench/0004-Fix-garbage-pointer-for-lat_rpc-S-localhost.patch lib_patch.Upstream -package/localedef/0002-relax-dependency-on-GCC-to-4.8-and-binutils-to-2.24.patch lib_patch.Upstream -package/lockdev/0001-Makefile-install-static-library-and-headers-separate.patch lib_patch.Upstream package/lockfile-progs/0001-sus3v-legacy.patch lib_patch.Sob lib_patch.Upstream package/lshw/0001-solve-Compile-error-when-g-version-is-less-than-5.patch lib_patch.Upstream package/ltrace/0001-arm-plt.patch lib_patch.Upstream @@ -694,8 +592,6 @@ package/matchbox-panel/0003-mb-applet-battery.patch lib_patch.Upstream package/matchbox-startup-monitor/0001-true-false.patch lib_patch.Upstream package/matchbox/0001-defaulttheme.patch lib_patch.Upstream package/matchbox/0002-src-Fix-build-with-gcc-10.patch lib_patch.Upstream -package/mediastreamer/0001-src-videofilters-nowebcam.c-fix-build-without-ffmpeg.patch lib_patch.Upstream -package/mediastreamer/0002-Use-AV_INPUT_BUFFER_PADDING_SIZE-to-determine-paddin.patch lib_patch.Upstream package/memstat/0001-PATH_MAX.patch lib_patch.Upstream package/mender-connect/S43mender-connect Shellcheck package/menu-cache/0001-Support-gcc10-compilation.patch lib_patch.Upstream @@ -705,12 +601,9 @@ package/meson/0001-Prefer-ext-static-libs-when-default-library-static.patch lib_ package/meson/0002-mesonbuild-dependencies-base.py-add-pkg_config_stati.patch lib_patch.Upstream package/mfgtools/0001-lnx_def.h-fix-conflicting-declaration-of-__time64_t.patch lib_patch.Upstream package/mii-diag/0001-strchr.patch lib_patch.Sob lib_patch.Upstream -package/mini-snmpd/0001-linux.c-fix-musl-build.patch lib_patch.Upstream package/minidlna/S60minidlnad Shellcheck lib_sysv.Indent lib_sysv.Variables package/minissdpd/S50minissdpd Shellcheck lib_sysv.Indent lib_sysv.Variables package/modem-manager/S44modem-manager Shellcheck lib_sysv.Variables -package/mongrel2/0001-Do-not-run-tests.patch lib_patch.Upstream -package/mongrel2/0002-Fix-Makefiles-for-cross-compilation.patch lib_patch.Upstream package/monit/0001-Do-not-force-building-a-statically-linked-binary.patch lib_patch.Upstream package/mono-gtksharp3/0001-Fixes-MONO_PROFILE_ENTER_LEAVE-undeclared.patch lib_patch.Upstream package/mono-gtksharp3/0002-Mono-compilation-error-branch.patch lib_patch.Upstream @@ -721,13 +614,7 @@ package/mpir/0001-mpn-arm-udiv.asm-workaround-binutils-bug-14887.patch lib_patch package/mraa/0001-include-Declare-gVERSION-global-as-extern.patch lib_patch.Upstream package/mrouted/S41mrouted NotExecutable package/mrp/S65mrp lib_sysv.Indent lib_sysv.Variables -package/mstpd/0001-bridge-stp.in-support-different-versions-of-pidof-13.patch lib_patch.Upstream package/multipath-tools/S60multipathd Shellcheck -package/musepack/0001-shared.patch lib_patch.Upstream -package/musepack/0002-cmake-use-the-standard-CMake-flag-to-drive-the-share.patch lib_patch.Upstream -package/musepack/0003-include-fpu-control-with-glibc-only.patch lib_patch.Upstream -package/musepack/0004-missing-sys-select.patch lib_patch.Upstream -package/musepack/0005-fix-build-with-gcc-10.patch lib_patch.Upstream package/musl/0001-avoid-kernel-if_ether.h.patch lib_patch.Upstream package/musl/0002-package-musl-Make-scheduler-functions-Linux-compatib.patch lib_patch.Upstream package/nano/0001-lib-getrandom.c-fix-build-with-uclibc-1.0.35.patch lib_patch.Upstream @@ -778,7 +665,6 @@ package/nuttcp/0001-susv3-legacy.patch lib_patch.Upstream package/nvidia-driver/0001-use-LDFLAGS.patch lib_patch.Upstream package/octave/0001-Fix-BLAS-library-integer-size-detection.patch lib_patch.Upstream package/ofono/S46ofono lib_sysv.Variables -package/ola/0001-ola-fix-compilation-with-musl-1-2-3.patch lib_patch.Upstream package/olsr/0001-olsrd-migrate-to-using-bison-3.7.1.patch lib_patch.Upstream package/olsr/0002-lib-pud-Makefile-fix-parallel-build.patch lib_patch.Upstream package/olsr/0003-pud-adapt-to-API-changes-in-gpsd-3-20.patch lib_patch.Upstream @@ -787,8 +673,9 @@ package/olsr/0006-build-patch-for-gpsd-3-25.patch lib_patch.Upstream package/olsr/S50olsr Shellcheck lib_sysv.Indent lib_sysv.Variables package/open-plc-utils/0001-Remove-OWNER-and-GROUPS-parameters-to-install.patch lib_patch.Upstream package/open2300/0001-fix-makefile.patch lib_patch.Upstream -package/openjdk/17.0.9+9/0001-Add-ARCv2-ISA-processors-support-to-Zero.patch lib_patch.Upstream -package/openjdk/21.0.1+12/0001-Add-ARCv2-ISA-processors-support-to-Zero.patch lib_patch.Upstream +package/openjdk/17.0.18+8/0001-Add-ARCv2-ISA-processors-support-to-Zero.patch lib_patch.Upstream +package/openjdk/21.0.10+7/0001-Add-ARCv2-ISA-processors-support-to-Zero.patch lib_patch.Upstream +package/openjdk/25.0.2+10/0001-Add-ARCv2-ISA-processors-support-to-Zero.patch lib_patch.Upstream package/openldap/0001-fix-bignum.patch lib_patch.Upstream package/openldap/0002-disable-docs.patch lib_patch.Upstream package/openntpd/S49ntp Shellcheck lib_sysv.Variables @@ -796,16 +683,12 @@ package/openocd/0001-configure-enable-build-on-uclinux.patch lib_patch.Upstream package/openpgm/0001-Rename-openpgm-5.2.pc.in.patch lib_patch.Upstream package/openpgm/0002-openpgm-pgm-checksum.c-fix-build-with-32-bits-MMX.patch lib_patch.Upstream package/openpgm/0003-fix-build-on-macOS-ARM.patch lib_patch.Upstream -package/openpowerlink/0001-install-the-stack-libraries-to-lib-subdirectory.patch lib_patch.Upstream -package/openpowerlink/0002-cmake-install-oplk-headers-files.patch lib_patch.Upstream -package/openpowerlink/0003-Add-top-level-CMakeLists.txt.patch lib_patch.Upstream package/openrc/0001-init.d-sysctl.in-add-support-for-busybox-sysctl.patch lib_patch.Upstream package/openrc/0002-sh-init.sh.Linux.in-change-run-lock-from-root-uucp-t.patch lib_patch.Upstream package/openrc/0003-init.d-agetty-replace-sbin-agetty-by-sbin-getty.patch lib_patch.Upstream package/openrc/0004-init.d-agetty-start-agetty-after-all-sevices.patch lib_patch.Upstream package/openrc/0005-runlevels-do-not-add-agetty.tty-1-6-if-MKSYSVINIT-ye.patch lib_patch.Upstream package/openrc/0006-Also-create-run-lock-subsys-directory.patch lib_patch.Upstream -package/openswan/0001-lib-libopenswan-constants.c-workaround-missing-ns_t_.patch lib_patch.Upstream package/opentyrian/0001-Move-definitions-that-don-t-need-to-be-exposed-from-opl-h-to-opl-c.patch lib_patch.Upstream package/openvmtools/0001-no_cflags_werror.patch lib_patch.Upstream package/openvmtools/0002-dont-force-cppflags.patch lib_patch.Upstream @@ -824,18 +707,12 @@ package/opusfile/0001-Propagate-allocation-failure-from-ogg_sync_buffer.patch li package/owfs/S55owserver Shellcheck lib_sysv.Variables package/owfs/S60owfs Shellcheck lib_sysv.Variables package/owl-linux/0001-fix-for-linux-3.3.x.patch lib_patch.Upstream -package/patch/0001-Fix-segfault-with-mangled-rename-patch.patch lib_patch.Upstream package/patch/0002-Allow-input-files-to-be-missing-for-ed-style-patches.patch lib_patch.Upstream -package/patch/0003-Fix-arbitrary-command-execution-in-ed-style-patches-.patch lib_patch.Upstream -package/patch/0004-Invoke-ed-directly-instead-of-using-the-shell.patch lib_patch.Upstream -package/patch/0005-Don-t-follow-symlinks-unless--follow-symlinks-is-given.patch lib_patch.Upstream package/patchelf/0001-Add-option-to-make-the-rpath-relative-under-a-specif.patch lib_patch.Upstream package/paxtest/0001-genpaxtest-move-log-location.patch lib_patch.Upstream package/paxtest/0002-paxtest-page-alignment-ARM-and-NIOS2-arch.patch lib_patch.Upstream package/pcm-tools/0001-pmu-query.py-fix-python3-errors-add-linux-platform-s.patch lib_patch.Upstream package/pcmanfm/0001-po-de-po-fix-build-with-gettext-tiny.patch lib_patch.Upstream -package/pcre/0001-Kill-compatibility-bits.patch lib_patch.Upstream -package/pcre/0002-Disable-C-unit-tests.patch lib_patch.Upstream package/pdmenu/0001-autoconf-makeinfo.in-link-with-INTLLIBS-if-needed.patch lib_patch.Upstream package/pdmenu/0002-Makefile-autoconf-makeinfo.in-support-build-install-.patch lib_patch.Upstream package/perl-net-ssleay/0001-fix-build-system.patch lib_patch.Upstream @@ -844,20 +721,13 @@ package/perl-xml-libxml/0001-Makefile-PL.patch lib_patch.Upstream package/php-geoip/0001-add-build-support-for-php8.patch lib_patch.Upstream package/php-lua/0001-ZEND_ACC_ALLOW_STATIC-ZEND_ACC_STATIC-for-static-met.patch lib_patch.Upstream package/php-lua/0002-php8-explicitly-declare-arginfo.patch lib_patch.Upstream -package/php-zmq/0001-updates-for-php7.4-and-php8.0.patch lib_patch.Upstream -package/php-zmq/0002-fix-for-php-7.3.patch lib_patch.Upstream -package/php-zmq/0003-fix-for-php-8.0.0beta2.patch lib_patch.Upstream package/php/0001-acinclude.m4-don-t-unset-variables.patch lib_patch.Upstream package/php/0002-iconv-tweak-iconv-detection.patch lib_patch.Upstream package/php/0003-configure-disable-the-phar-tool.patch lib_patch.Upstream package/php/0004-Call-apxs-with-correct-prefix.patch lib_patch.Upstream -package/php/0005-allow-opcache-cross-compiling.patch lib_patch.Upstream package/pifmrds/0001-Makefile-cross-compile-friendly.patch lib_patch.Upstream package/pifmrds/0002-Makefile-use-LDFLAGS.patch lib_patch.Upstream package/pifmrds/0003-Makefile-fix-static-link.patch lib_patch.Upstream -package/pigpio/S50pigpio Shellcheck lib_sysv.Variables -package/pistache/0001-src-common-transport.cc-fallback-value-for-RUSAGE_TH.patch lib_patch.Upstream -package/pistache/0002-src-server-listener.cc-fix-libressl-build.patch lib_patch.Upstream package/pkgconf/0001-Only-prefix-with-the-sysroot-a-subset-of-variables.patch lib_patch.Upstream package/pkgconf/pkg-config.in Shellcheck package/poke/0001-configure.ac-HELP2MAN-replace-by-true-when-cross-com.patch lib_patch.Upstream @@ -875,10 +745,6 @@ package/prosody/0002-add-pidfile.patch lib_patch.Upstream package/prosody/S50prosody Shellcheck lib_sysv.Indent lib_sysv.Variables package/proxychains-ng/0001-add-configure-check-for-non-POSIX-compliant-getnameinfo-signature.patch lib_patch.Upstream package/ptpd/S65ptpd Shellcheck lib_sysv.Indent lib_sysv.Variables -package/ptpd2/0001-musl.patch lib_patch.Upstream -package/ptpd2/0002-ntp_isc_md5-rename-EVP_MD_CTX-into-PTPD_EVP_MD_CTX.patch lib_patch.Upstream -package/ptpd2/0003-Solve-issue-25-Removing-type-U64-from-net-snmp-relat.patch lib_patch.Upstream -package/ptpd2/S65ptpd2 Shellcheck lib_sysv.Indent lib_sysv.Variables package/pulseaudio/0001-shm.c-use-_Static_assert-instead-of-static_assert-fo.patch lib_patch.Upstream package/pulseaudio/S50pulseaudio lib_sysv.ConsecutiveEmptyLines lib_sysv.EmptyLastLine lib_sysv.Indent lib_sysv.Variables package/pulseview/0001-Replace-obsolete-deprecated-Qt-methods.patch lib_patch.Upstream @@ -897,11 +763,7 @@ package/qextserialport/0001-Create-a-main-include-file-QExtSerialPort.patch lib_ package/qextserialport/0002-Tell-qmake-to-add-a-pkgconfig-file-to-ease-usage-wit.patch lib_patch.Upstream package/qt5/qt5base/0001-qtbase-Fix-build-error-when-using-EGL.patch lib_patch.Upstream package/qt5/qt5base/0002-double-conversion-enable-for-microblaze.patch lib_patch.Upstream -package/qt5/qt5base/0003-double-conversion-enable-for-nios2.patch lib_patch.Upstream -package/qt5/qt5base/0004-double-conversion-enable-for-xtensa.patch lib_patch.Upstream package/qt5/qt5base/0005-eglfs-avoid-breaking-compilation-for-obscure-EGLNativeDisplayType-types.patch lib_patch.Upstream -package/qt5/qt5base/0006-Fix-build-on-riscv32.patch lib_patch.Upstream -package/qt5/qt5base/0007-src-corelib-configure.json-fix-atomicfptr-detection.patch lib_patch.Upstream package/qt5/qt5base/0008-eglconvenience-add-missing-QList-include.patch lib_patch.Upstream package/qt5/qt5declarative/0001-qsgtexture-fix-debug-build-with-uclibc.patch lib_patch.Upstream package/qt5/qt5declarative/0002-qv4regexp_p-needs-c-limits-include-instead-of-plain-.patch lib_patch.Upstream @@ -909,10 +771,8 @@ package/qt5/qt5enginio/0001-Do-not-use-deprecated-QLinkedList.patch lib_patch.Up package/qt5/qt5location/0001-3rdparty-mapbox-gl-native-fix-musl-compile-pthread_g.patch lib_patch.Upstream package/qt5/qt5script/0001-Detect-32-bits-armv8-a-architecture.patch lib_patch.Upstream package/qt5/qt5tools/0001-Disable-designer-tool-fixes-configure-error.patch lib_patch.Upstream -package/qt5/qt5webengine-chromium/0001-Add-python3-build-support.patch lib_patch.Upstream -package/qt5/qt5webengine-chromium/0002-Don-t-rebase-sysroot-path.patch lib_patch.Upstream +package/qt5/qt5webengine-chromium/0001-Don-t-rebase-sysroot-path.patch lib_patch.Upstream package/qt5/qt5webengine/0001-gn.pro-don-t-link-statically-with-libstc.patch lib_patch.Upstream -package/qt5/qt5webengine/0002-Add-python3-build-support.patch lib_patch.Upstream package/qt5/qt5webkit/0001-WinCairo-PlayStation-ICU-68.1-no-longer-exposes-FALS.patch lib_patch.Upstream package/qt5/qt5webkit/0002-Fix-compilation-with-Python-3.9-avoid-passing-encodi.patch lib_patch.Upstream package/qt5/qt5webkit/0003-Let-Bison-generate-the-header-directly-to-fix-build-.patch lib_patch.Upstream @@ -920,7 +780,6 @@ package/qt5/qt5webkit/0004-Remove-invalid-g_object-declarations-to-fix-build-wi. package/qt5/qt5webkit/0005-Add-support-for-ARC-processors.patch lib_patch.Upstream package/qt5/qt5webkit/0006-Warnings-due-to-AppSinkCallbacks-struct-growth-https.patch lib_patch.Upstream package/qt5cinex/0001-Fix-execution-problem-with-Qt5.3.patch lib_patch.Upstream -package/racehound/0001-Fix-module-install-path-lib-instead-of-usr-lib-prefi.patch lib_patch.Upstream package/rapidxml/0001-ensure-internal-print-operations-are-declared-before.patch lib_patch.Upstream package/read-edid/0001-Fix-install-file-list.patch lib_patch.Upstream package/read-edid/0002-Fix-compiler-check.patch lib_patch.Upstream @@ -933,25 +792,12 @@ package/restorecond/S02restorecond Shellcheck package/ripgrep/0001-puts-jemalloc-allocator-behind-a-cargo-feature-flag.patch lib_patch.Upstream package/riscv-isa-sim/0001-riscv-disable-precompiled-headers.patch lib_patch.Upstream package/rng-tools/S21rngd Shellcheck lib_sysv.Variables -package/rocksdb/0001-build_tools-build_detect_platform-fix-C-tests.patch lib_patch.Upstream package/rpcbind/0001-Remove-yellow-pages-support.patch lib_patch.Upstream package/rpcbind/S30rpcbind lib_sysv.EmptyLastLine lib_sysv.Indent lib_sysv.Variables -package/rpi-userland/0001-Add-.pc-files-for-the-OpenGLESv2-EGL-and-bcm_host-li.patch lib_patch.Upstream -package/rpi-userland/0002-interface-remove-faulty-assert-to-make-weston-happy-.patch lib_patch.Upstream -package/rpi-userland/0003-Disable-Werror-everywhere.patch lib_patch.Upstream -package/rpi-userland/0004-host-applications-disable-missing-applications.patch lib_patch.Upstream -package/rpi-userland/0005-dtmerge-add-missing-include-for-va_list.patch lib_patch.Upstream -package/rpi-userland/0006-interface-vcos-pthreads-CMakeLists.txt-fix-build-wit.patch lib_patch.Upstream -package/rpi-userland/0007-GLES2-gl2ext.h-add-GLint64-GLuint64-and-GLsync-typed.patch lib_patch.Upstream package/rt-tests/0001-Fix-a-build-issue-with-uClibc-ng.patch lib_patch.Upstream -package/rtorrent/0001-Added--disable-execinfo-option-to-configure.patch lib_patch.Upstream -package/rubix/0001-dont-use-legacy-functions.patch lib_patch.Upstream -package/rubix/0002-misc-fixes.patch lib_patch.Sob lib_patch.Upstream package/rygel/S99rygel Shellcheck lib_sysv.Indent lib_sysv.Variables package/s6-linux-init/0001-configure-add-D_GNU_SOURCE.patch lib_patch.Upstream -package/safeclib/0001-fix-armv7-asm-inline-error-GH-115.patch lib_patch.Upstream package/samba4/0001-build-find-pre-built-heimdal-build-tools-in-case-of-.patch lib_patch.Upstream -package/samba4/0002-ldap_message_test.c-include-stdint.h-before-cmoka.h.patch lib_patch.Upstream package/samba4/S91smb Shellcheck lib_sysv.Indent lib_sysv.Variables package/sane-backends/0001-sane_backend-add-missing-config.h.patch lib_patch.Upstream package/screen/0001-Do-not-create-backup-of-old-installed-binary.patch lib_patch.Upstream @@ -971,36 +817,15 @@ package/sentry-native/0001-sentry.h-include-ucontext.h.patch lib_patch.Upstream package/ser2net/S50ser2net Shellcheck lib_sysv.Indent lib_sysv.Variables package/setools/0001-Do-not-export-use-setools.InfoFlowAnalysis-and-setoo.patch lib_patch.Upstream package/setserial/0001-build-system-fix.patch lib_patch.Upstream -package/shadowsocks-libev/0001-configure.ac-use-pkg-config-to-find-netfilter_conntr.patch lib_patch.Upstream -package/shadowsocks-libev/0002-fix-maybe-uninitialized-errors.patch lib_patch.Upstream -package/shadowsocks-libev/0003-lib-Makefile.am-remove-static-from-LDFLAGS.patch lib_patch.Upstream package/shairport-sync/S99shairport-sync Shellcheck lib_sysv.Indent lib_sysv.Variables package/shared-mime-info/0001-Remove-incorrect-dependency-from-install-data-hook.patch lib_patch.Upstream package/shellinabox/0001-Makefile-disable-always-building-statically.patch lib_patch.Upstream -package/shellinabox/0002-CVE-2018-16789-fix-for-broken-multipart-form-data.patch lib_patch.Upstream package/skeleton-init-systemd/fakeroot_tmpfiles.sh Shellcheck package/slang/0001-slsh-libs.patch lib_patch.Upstream package/smcroute/S41smcroute NotExecutable lib_sysv.Indent lib_sysv.Variables package/smstools3/0001-fix-Makefile.patch lib_patch.Upstream package/smstools3/0002-fix-build-with-gcc-10.x.patch lib_patch.Upstream package/smstools3/S50smsd Shellcheck lib_sysv.Variables -package/snort/0001-configure.in-Avoid-path-poisoning-with-libpcap.patch lib_patch.Upstream -package/snort/0002-configure.in-Allow-to-override-the-INADDR_NONE-check.patch lib_patch.Upstream -package/snort/0003-configure.in-convert-AC_RUN_IFELSE-to-AC_CHECK_MEMBE.patch lib_patch.Upstream -package/snort/0004-configure.in-convert-AC_RUN_IFELSE-to-AC_COMPILE_IFE.patch lib_patch.Upstream -package/snort/0005-fix-sparc.patch lib_patch.Upstream -package/snort/0006-Fix-compile-error-when-building-against-uclibc-or-mu.patch lib_patch.Upstream -package/snort/0007-Fix-error-when-building-on-a-Fedora-host-machine.patch lib_patch.Upstream -package/snort/0008-Fix-NO-OPTIMIZE.patch lib_patch.Upstream -package/softether/0001-Create-autotools-plumbing-for-SoftEther.patch lib_patch.Upstream -package/softether/0002-Create-libsoftether.so-and-dynamically-link.patch lib_patch.Upstream -package/softether/0003-use-fhs-install-directories.patch lib_patch.Upstream -package/softether/0004-create-non-forking-softetherd-for-upstart-and-systemd.patch lib_patch.Upstream -package/softether/0005-change-GetExeDir-to-GetStateDir-in-Cedar-and-Mayaqua.patch lib_patch.Upstream -package/softether/0006-cross-compile.patch lib_patch.Upstream -package/softether/0007-iconv.patch lib_patch.Upstream -package/softether/0008-librt.patch lib_patch.Upstream -package/softether/0009-uclibc-ai-addrconfig.patch lib_patch.Upstream package/solarus/0001-cmake-remove-Werror.patch lib_patch.Upstream package/solarus/0002-Add-a-basic-FindOpenGLES2.cmake.patch lib_patch.Sob lib_patch.Upstream package/sox/0001-Make-SoX-support-uclibc-based-toolchains.patch lib_patch.Upstream @@ -1028,9 +853,6 @@ package/swupdate/swupdate.sh Shellcheck package/sysvinit/0001-Makefile-disable-stack-protector-strong.patch lib_patch.Upstream package/tar/0001-lib-getrandom.c-fix-build-with-uclibc-1.0.35.patch lib_patch.Upstream package/targetcli-fb/S50target Shellcheck lib_sysv.Variables -package/taskd/0001-Fix-missing-cmakedefine-HAVE_GET_CURRENT_DIR_NAME.patch lib_patch.Upstream -package/taskd/0002-Use-correct-variables-for-GnuTLS-detection.patch lib_patch.Upstream -package/taskd/0003-CMakeLists-use-pkg-config-uuid-detection.patch lib_patch.Upstream package/tcf-agent/S55tcf-agent Shellcheck lib_sysv.Variables package/tftpd/S80tftpd-hpa Shellcheck lib_sysv.Indent lib_sysv.Variables package/ti-gfx/0001-newclkapi.patch lib_patch.Upstream @@ -1042,16 +864,9 @@ package/ti-sgx-um/0001-Makefile-do-not-install-init-script.patch lib_patch.Upstr package/ti-sgx-um/S80ti-sgx lib_sysv.Variables package/ti-utils/0001-plt.h-fix-build-with-gcc-10.patch lib_patch.Upstream package/tinyalsa/0001-include-time.h-before-asound.h.patch lib_patch.Upstream -package/tinycompress/0001-wave-add-time.h-missing-header-inclusion.patch lib_patch.Upstream package/tinydtls/0001-sha2-sha2.c-fix-build-on-big-endian.patch lib_patch.Upstream -package/tinyxml/0001-In-stamp-always-advance-the-pointer-if-p-0xef.patch lib_patch.Upstream -package/tpm2-tss/0001-Temporary-fix-for-build-without-C.patch lib_patch.Upstream package/transmission/S92transmission Shellcheck lib_sysv.ConsecutiveEmptyLines lib_sysv.Indent lib_sysv.Variables package/triggerhappy/S10triggerhappy Shellcheck lib_sysv.Indent lib_sysv.Variables -package/trinity/0001-Fix-build-with-GCC-10.patch lib_patch.Upstream -package/trinity/0002-net-proto-ip-raw.c-fix-build-with-kernel-5.13.patch lib_patch.Upstream -package/trinity/0003-Use-fcntl-h-for-dev_t-mode_t.patch lib_patch.Upstream -package/trinity/0004-drop-decnet.patch lib_patch.Upstream package/trousers/0001-Check-if-the-compiler-understands-pie-and-relro-options.patch lib_patch.Upstream package/trousers/0002-Check-that-getpwent_r-is-available-before-using-it.patch lib_patch.Upstream package/trousers/0003-Fix-build-with-LibreSSL-2-7.patch lib_patch.Upstream @@ -1068,9 +883,7 @@ package/uhttpd/0002-Fix-TCP_FASTOPEN-related-compile-error.patch lib_patch.Upstr package/unbound/S70unbound Shellcheck package/unifdef/0001-Makefile-fix-error-on-install.patch lib_patch.Upstream package/unscd/S46unscd Shellcheck lib_sysv.Indent lib_sysv.Variables -package/unzip/0001-Add-a-CMakeFile.txt-to-ease-cross-compilation.patch lib_patch.Upstream package/upmpdcli/S99upmpdcli Shellcheck lib_sysv.Indent lib_sysv.Variables -package/uqmi/0001-uqmi-avoid-gcc-12.x-false-error-reporting-storing-th.patch lib_patch.Upstream package/urg/0001-select-h.patch lib_patch.Upstream package/urg/0002-urg-gcc6-fix-narrowing-conversion.patch lib_patch.Upstream package/usb_modeswitch/0001-fix-systemd-detection.patch lib_patch.Upstream @@ -1085,18 +898,12 @@ package/vala/0001-dont-add-dirty-to-valac-version.patch lib_patch.Upstream package/vala/vala-wrapper Shellcheck package/valgrind/0001-workaround-SIGSEGV-on-PPC.patch lib_patch.Upstream package/valgrind/0002-Define-PTRACE_GETSIGINFO-on-PowerPC-when-not-availab.patch lib_patch.Upstream -package/vboot-utils/0001-Add-missing-definition-of-MTD_CHAR_MAJOR.patch lib_patch.Upstream package/vdr/0001-getloadavg.patch lib_patch.Upstream package/vlc/0001-Disable-building-of-statically-linked-vlc-binary.patch lib_patch.Upstream package/vlc/0002-automake-add-subdir-objects-option.patch lib_patch.Upstream package/vlc/0003-build-use-pkg-config-to-get-tremor-libs.patch lib_patch.Upstream -package/vlc/0004-Fix-build-error-using-uClibc-by-adding-sys-types.h.patch lib_patch.Upstream package/vlc/0005-Don-t-assume-strerror_l-is-available.patch lib_patch.Upstream package/vlc/0006-posix-remove-ancient-run-time-fallback-to-real-time-.patch lib_patch.Upstream -package/vlc/0007-Add-support-for-freerdp2.patch lib_patch.Upstream -package/vlc/0008-configure.ac-also-use-AC_PATH_PROG-to-check-for-wayl.patch lib_patch.Upstream -package/vlc/0009-modules-video_filter-opencv_example.cpp-fix-build-wi.patch lib_patch.Upstream -package/vlc/0010-opengl-missing-library-check.patch lib_patch.Upstream package/vpnc/0001-Makefile-allow-to-override-the-PREFIX-variable.patch lib_patch.Upstream package/vpnc/0002-Makefile-allow-to-override-the-version.patch lib_patch.Upstream package/vpnc/0003-Makefile-allow-passing-custom-CFLAGS-CPPFLAGS.patch lib_patch.Upstream @@ -1119,11 +926,6 @@ package/wampcc/0001-Add-RISC-V-endian-detection.patch lib_patch.Upstream package/wampcc/0002-include-wampcc-platform.h-fix-build-with-musl-1.2.0.patch lib_patch.Upstream package/wampcc/0003-Broken-build-on-Windows.patch lib_patch.Upstream package/wget/0001-lib-getrandom.c-fix-build-with-uclibc-1.0.35.patch lib_patch.Upstream -package/wilc-driver/0001-cfg80211.c-fix-missing-prandom_u32-with-Linux-6.1.0.patch lib_patch.Upstream -package/wilc-driver/0002-spi.c-fix-build-failure-on-remove-callback.patch lib_patch.Upstream -package/wilc-driver/0003-cfg80211.c-fix-build-failure-with-Linux-5.19-and-6.1.patch lib_patch.Upstream -package/wilc-driver/0004-Fix-struct-station_parameters-Linux-6.1-build-failur.patch lib_patch.Upstream -package/wilc-driver/0005-Fix-cast-warnings.patch lib_patch.Upstream package/wipe/0001-musl.patch lib_patch.Upstream package/wireless_tools/0001-remove-bzero.patch lib_patch.Upstream package/woff2/0001-CMake-Handle-multiple-libraries-being-returned-for-B.patch lib_patch.Upstream @@ -1134,7 +936,6 @@ package/x11r7/xcursor-transparent-theme/0001-fix-symlink.patch lib_patch.Upstrea package/x11r7/xdriver_xf86-input-evdev/0001-build-get-rid-of-sdkdir.patch lib_patch.Upstream package/x11r7/xdriver_xf86-input-joystick/0001-build-get-rid-of-sdkdir.patch lib_patch.Upstream package/x11r7/xdriver_xf86-input-libinput/0001-build-get-rid-of-sdkdir.patch lib_patch.Upstream -package/x11r7/xdriver_xf86-input-mouse/0001-build-get-rid-of-sdkdir.patch lib_patch.Upstream package/x11r7/xdriver_xf86-input-synaptics/0001-build-get-rid-of-sdkdir.patch lib_patch.Upstream package/x11r7/xdriver_xf86-video-fbturbo/0001-sunxi_x_g2d-drop-unused-dri2-include.patch lib_patch.Upstream package/x11r7/xdriver_xf86-video-fbturbo/0002-Use-own-thunk-functions-instead-of-fbdevHW-Weak.patch lib_patch.Upstream @@ -1148,21 +949,11 @@ package/x11r7/xdriver_xf86-video-imx/0004-Make-video-API-forward-and-backward-co package/x11r7/xdriver_xf86-video-imx/0005-xf86-video-imxfb-fix-m4-hardcodded-paths.patch lib_patch.Upstream package/x11r7/xdriver_xf86-video-imx/0006-xserver-1.14-compat.patch lib_patch.Upstream package/x11r7/xdriver_xf86-video-mach64/0001-cross-compile.patch lib_patch.Upstream -package/x11r7/xdriver_xf86-video-nouveau/0001-nouveau-fixup-driver-for-new-X-server-ABI.patch lib_patch.Upstream package/x11r7/xdriver_xf86-video-tdfx/0001-cross.patch lib_patch.Upstream package/x11r7/xserver_xorg-server/0001-include-misc.h-fix-uClibc-build.patch lib_patch.Upstream package/x11r7/xserver_xorg-server/S40xorg Shellcheck lib_sysv.Variables -package/xen/0001-9pfs-include-linux-limits.h-for-XATTR_SIZE_MAX.patch lib_patch.Upstream -package/xen/0002-Fix-build-with-64-bits-time_t.patch lib_patch.Upstream -package/xen/0003-libs-light-fix-tv_sec-printf-format.patch lib_patch.Upstream -package/xen/0004-libs-light-fix-tv_sec-fprintf-format.patch lib_patch.Upstream -package/xinetd/0001-ar.patch lib_patch.Upstream -package/xinetd/0002-destdir.patch lib_patch.Upstream -package/xinetd/0003-rpc-fix.patch lib_patch.Upstream -package/xinetd/0004-configure-rlim_t.patch lib_patch.Upstream -package/xinetd/0005-CVE-2013-4342-xinetd-ignores-user-and-group-directiv.patch lib_patch.Upstream +package/x11r7/xwayland/0001-include-misc.h-fix-uClibc-build.patch lib_patch.Upstream package/xl2tp/xl2tpd lib_shellscript.TrailingSpace -package/xml-security-c/0001-fix-build-with-libressl-3.5.0.patch lib_patch.Upstream package/yajl/0001-Let-the-shared-and-the-static-library-have-the-same-.patch lib_patch.Upstream package/yajl/0002-cmake-disable-shared-library-build-when-BUILD_SHARED.patch lib_patch.Upstream package/yajl/0003-Link-with-shared-libyajl-in-a-shared-build.patch lib_patch.Upstream @@ -1202,7 +993,6 @@ support/libtool/buildroot-libtool-v2.4.4.patch lib_patch.ApplyOrder lib_patch.Up support/libtool/buildroot-libtool-v2.4.patch lib_patch.ApplyOrder lib_patch.Sob lib_patch.Upstream support/misc/relocate-sdk.sh Shellcheck support/scripts/apply-patches.sh Shellcheck -support/scripts/br2-external Shellcheck support/scripts/check-bin-arch Shellcheck support/scripts/check-host-rpath Shellcheck support/scripts/expunge-gconv-modules Shellcheck diff --git a/.github/buildroot-upstream b/.github/buildroot-upstream new file mode 100644 index 00000000000..9c9ac904630 --- /dev/null +++ b/.github/buildroot-upstream @@ -0,0 +1 @@ +upstream/master diff --git a/.github/renovate.json b/.github/renovate.json new file mode 100644 index 00000000000..1fd258ab67f --- /dev/null +++ b/.github/renovate.json @@ -0,0 +1,21 @@ +{ + "$schema": "https://docs.renovatebot.com/renovate-schema.json", + "extends": [ + ":semanticPrefixFixDepsChoreOthers", + ":ignoreModulesAndTests", + "group:all", + "workarounds:all" + ], + "forkProcessing": "enabled", + "branchConcurrentLimit": 0, + "ignorePaths": [ + "docs/**" + ], + "packageRules": [ + { + "matchManagers": ["gomod"], + "matchDepTypes": ["replace"], + "enabled": false + } + ] +} diff --git a/.github/workflows/buildroot-e2e.yml b/.github/workflows/buildroot-e2e.yml new file mode 100644 index 00000000000..7b6c09845ab --- /dev/null +++ b/.github/workflows/buildroot-e2e.yml @@ -0,0 +1,65 @@ +name: CI + +# Controls when the action will run. +on: + push: + branches: [master, skiff, skiff-next] + pull_request: + branches: [skiff, skiff-next, upstream-master] + +# A workflow run is made up of one or more jobs that can run sequentially or in parallel +jobs: + # This workflow contains a single job called "build" + build: + # The type of runner that the job will run on + runs-on: ubuntu-latest + + env: + # for add-env below + ACTIONS_ALLOW_UNSECURE_COMMANDS: 'true' + + # Steps represent a sequence of tasks + steps: + # Checks-out the repo under $GITHUB_WORKSPACE + - uses: actions/checkout@v5 + + - name: Cache build cache and downloads + uses: actions/cache@v4 + env: + cache-name: cache-buildroot + with: + path: ~/br-cache/ + key: ${{ runner.os }}-build-${{ env.cache-name }}-${{ hashFiles('Makefile') }} + restore-keys: | + ${{ runner.os }}-build-${{ env.cache-name }}- + ${{ runner.os }}-build- + ${{ runner.os }}- + + # Detect changes vs upstream-master + - name: Detect changes vs upstream + run: | + cd $GITHUB_WORKSPACE + git fetch + git remote add upstream https://github.com/buildroot/buildroot.git + git fetch upstream + export BUILDROOT_UPSTREAM=$(cat .github/buildroot-upstream) + echo "::set-env name=CHANGED_VS_UPSTREAM::$(git diff --diff-filter=ACM --name-only $BUILDROOT_UPSTREAM | xargs)" + + # Installing buildroot deps + - name: Install buildroot apt deps + run: | + sudo apt-get install -y libelf-dev python3-magic python3-flake8 + + # Run check-package on changed files + - name: Run check-package on all changed files and setup env + run: | + cd $GITHUB_WORKSPACE + ./utils/check-package $CHANGED_VS_UPSTREAM + + # Test a build + - name: Run a generic build + run: | + cd $GITHUB_WORKSPACE + make defconfig BR2_DEFCONFIG=$(pwd)/.github/workflows/buildroot-e2e_defconfig + make -s all legal-info BR2_CCACHE_DIR=${HOME}/br-cache/ccache BR2_DL_DIR=${HOME}/br-cache/dl + diff --git a/.github/workflows/buildroot-e2e_defconfig b/.github/workflows/buildroot-e2e_defconfig new file mode 100644 index 00000000000..e4dcd411e64 --- /dev/null +++ b/.github/workflows/buildroot-e2e_defconfig @@ -0,0 +1,21 @@ +BR2_x86_64=y +BR2_x86_core_avx2=y +BR2_CCACHE=y +BR2_TOOLCHAIN_BUILDROOT_GLIBC=y +BR2_TOOLCHAIN_BUILDROOT_CXX=y +BR2_GCC_ENABLE_LTO=n +BR2_INIT_SYSTEMD=y +# BR2_TARGET_ENABLE_ROOT_LOGIN is not set +BR2_SYSTEM_BIN_SH_BASH=y +BR2_ENABLE_LOCALE_WHITELIST="C en_US en_US.UTF-8" +BR2_GENERATE_LOCALE="en_US.UTF-8" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_DEFCONFIG="x86_64" +BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_PACKAGE_CA_CERTIFICATES=y +BR2_PACKAGE_DELVE=y +BR2_PACKAGE_DOCKER_CLI=y +BR2_PACKAGE_DOCKER_CLI_STATIC=y +BR2_PACKAGE_DOCKER_ENGINE_EXPERIMENTAL=y +BR2_PACKAGE_MENDER=y +BR2_PACKAGE_HOST_MENDER_ARTIFACT=y diff --git a/.gitignore b/.gitignore index ec5768d053f..810b270a627 100644 --- a/.gitignore +++ b/.gitignore @@ -13,3 +13,5 @@ *.rej *~ *.pyc +/br.log +*.swp diff --git a/CHANGES b/CHANGES index ce58f960596..71f3fd71393 100644 --- a/CHANGES +++ b/CHANGES @@ -1,3 +1,1362 @@ +2026.08, released September 4th, 2026 + + Various fixes. + + Updated/fixed packages: dpdk, dracut, drogon, erlang, exiv2, + expat, freeswitch, gcc, glibc, libcurl, libldns, libnfs, + libopenssl, mpd, ncmpc, newt, opencv, openscap, openssh, perl, + proftpd, qemu, vim + +2026.08-rc3, released August 29th, 2026 + + Fixes all over the tree. + + Updated/fixed packages: avro-c, bind, bpftrace, collectd, + dahdi-linux, expat, fetchmail, flex, fluidsynth, gdb, glibc, + haproxy, jpeg-turbo, libbpf, libheif, libopenssl, + libxml-parser-perl, localedef, mesa3d, nodejs, olsr, perl, + php, python-avro, python-gobject, qt6, qt6declarative, redis, + rsyslog, taglib, uclibc, unbound, weston + +2026.08-rc2, released August 23th, 2026 + + Fixes all over the tree. + + Infrastructure: + - Correct _FLAT_STACKSIZE handling for nommu + + Defconfigs: QEMU x86-64 EFI: Fix build issue after grub2 bump. + + Updated/fixed packages: clamav, distribution-registry, dracut, + drogon, enscript, fluidsynth, gdb, igh-ethercat, kodi, + libgpiod2, libssh2, linux-tools, mesa3d, mtools, netsnmp, + putty, python-scp, uclibc, udisks, uhttpd, webkitgtk, wget, + wireshark, xilinx-embeddedsw + +2026.08-rc1, released August 18th, 2026 + + Fixes all over the tree and new features. + + Architectures: + - Support for M68K nommu + - Support for IBM Power 10/11 variants + + Toolchain: + - Support for Linux 7.1.x headers + - Binutils 2.46.1, GCC 16.2.0, now defaults to GCC 15 + - Glibc 2.44, uClibc-ng 1.0.59 + - Support for ARC-specific GCC version and external toolchain + dropped + + Infrastructure: + - Support for building packages written in the hare + programming language + - Libudev virtual package, similar to jpeg or openssl. + - generate-cyclonedx: fixup scp-style git sites + + New defconfigs: QEMU PPC64LE Powernv10 / Powernv11 + + Removed defconfigs: Acmesystems aria/arietta g25, Avnet S6LX9 + Microboard, Technologic TS-4900 / TS-5500 + + New packages: agec, cpp-argparse, drogon, dtui, hare, harec, + hare-dbus, hare-ev, hare-xml, libcppconnman, liblc3, libudev, + libudev-zero, perl-cgi, perl-cgi-session, perl-log-message, + perl-log-message-simple, perl-switch, python-libyang, + python-sysv-ipc, qbe, qemu-xen, qt6grpc, qt6positioning, + scdoc, sdl3, sdl3_gfx, sdl3_image, sdl3_ttf, sigsum-c, + virglrenderer, wget2 + + Removed packages: argparse, ts4900-fpga + +2026.05.3, released September 10, 2026 + + Important / security related fixes: + + avro-c: (no CVE assigned) + dnsmasq: CVE-2026-12725, CVE-2026-12969 + erlang: CVE-2026-21620, CVE-2026-23941, CVE-2026-23942, CVE-2026-23943, + CVE-2026-28810, CVE-2026-32147, CVE-2026-42789, CVE-2026-42790 + exiv2: CVE-2026-49275, CVE-2026-68546, CVE-2026-68547, + GHSA-3695-mjv8-3r52, GHSA-9v3x-mhg4-wwv2, GHSA-fgw8-p7pr-37cp, + GHSA-hxph-pv7w-8649, GHSA-jcgh-p9v3-pw6j, GHSA-vg6c-9f6h-4x5q + expat: CVE-2026-66046, CVE-2026-76641, CVE-2026-76956, CVE-2026-76957 + glibc: CVE-2026-18374, CVE-2026-19499, CVE-2026-77117, CVE-2026-80489 + go: CVE-2026-33818, CVE-2026-39821, CVE-2026-46600, CVE-2026-56853, + CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862, + CVE-2026-56864, CVE-2026-56865 + haproxy: (no CVE assigned) + hostapd: CVE-2026-58374 + libcurl: CVE-2026-13608, CVE-2026-18924, CVE-2026-19931, + CVE-2026-80229, CVE-2026-80230, CVE-2026-80231, CVE-2026-80255, + CVE-2026-82208, CVE-2026-82209 + libde265: GHSA-mm7m-v26f-wf8x, GHSA-xp3h-6f5r-8cxp + libgit2: CVE-2026-5917 + libheif: CVE-2026-84450, CVE-2026-84451, GHSA-24wx-9w62-c96w, + GHSA-2jg2-4ch7-h545, GHSA-4h82-g446-83fm, GHSA-4jqm-2x34-6f6r, + GHSA-73p7-m7gg-w2jv, GHSA-8857-r8x5-7499, GHSA-8fmq-r4pf-7m57, + GHSA-9rj8-5mp5-26c9, GHSA-g89c-p67h-r497, GHSA-gh5q-69gg-c964, + GHSA-hh47-fhqr-cj2r, GHSA-j264-xvrp-5v7q, GHSA-jc8f-p23p-5hjg, + GHSA-mw6f-29j3-76f4, GHSA-p58j-h3vm-3fp5, GHSA-w7mc-p8jc-p853, + GHSA-x8r2-mggj-j6wr, GHSA-x8xm-cm2c-cfc8, GHSA-xw34-mjcp-jqh8 + libldns: CVE-2026-10846 + libopenssl: CVE-2026-14456, CVE-2026-14457, CVE-2026-18798, + CVE-2026-54874, CVE-2026-54876, CVE-2026-63072, CVE-2026-63073, + CVE-2026-63074, CVE-2026-63075, CVE-2026-63076, CVE-2026-75803 + libssh2: CVE-2025-15661, CVE-2026-66032, CVE-2026-66033, + CVE-2026-66034, CVE-2026-66035 + localedef: CVE-2026-18374, CVE-2026-19499, CVE-2026-77117, + CVE-2026-80489 + mongoose: CVE-2026-63626, CVE-2026-73251, CVE-2026-73252, + CVE-2026-73260, CVE-2026-73261 + nodejs: CVE-2026-56846, CVE-2026-56847, CVE-2026-56848, CVE-2026-56850, + CVE-2026-58039, CVE-2026-58040, CVE-2026-58042, CVE-2026-58043, + CVE-2026-58044, CVE-2026-58045 + openvpn: CVE-2026-84732 + proftpd: CVE-2026-44331 + putty: (no CVE assigned) + python-avro: (no CVE assigned) + redis: CVE-2026-62356 + rsyslog: CVE-2026-19654 + udisks: CVE-2026-7867, GHSA-j42g-v9jw-6ph3 + unbound: CVE-2026-14586, CVE-2026-32665, CVE-2026-40622, + CVE-2026-40691, CVE-2026-41637, CVE-2026-42955, CVE-2026-44621, + CVE-2026-44687, CVE-2026-44690, CVE-2026-46582, CVE-2026-50045, + CVE-2026-50046, CVE-2026-50243, CVE-2026-50248, CVE-2026-50251, + CVE-2026-50252, CVE-2026-52863, CVE-2026-54478, CVE-2026-55708, + CVE-2026-55717, CVE-2026-55973, CVE-2026-55990, CVE-2026-55991, + CVE-2026-56416, CVE-2026-56444 + wget: CVE-2026-58469, CVE-2026-58470, CVE-2026-58471 + wireshark: CVE-2026-15163, CVE-2026-15164, CVE-2026-15166, + CVE-2026-15167, CVE-2026-15168, CVE-2026-15169, CVE-2026-15170, + CVE-2026-15171, CVE-2026-15172, CVE-2026-15174, CVE-2026-76879, + CVE-2026-76880, CVE-2026-76881, CVE-2026-76882, CVE-2026-76883, + CVE-2026-76884, CVE-2026-76885, CVE-2026-76886, CVE-2026-76887, + CVE-2026-76888, CVE-2026-76889, CVE-2026-76890, CVE-2026-76891, + CVE-2026-76917, CVE-2026-76918, CVE-2026-76919, CVE-2026-76920, + CVE-2026-76921, CVE-2026-76922, CVE-2026-76923, CVE-2026-76924, + CVE-2026-76926, CVE-2026-76927, CVE-2026-76928, CVE-2026-76929 + + Toolchain: + + - linux-headers: bump to 5.10.269, 5.15.220, 6.1.187, 6.6.156, + 6.12.109, 6.18.50 + - powerpc: correctly track libquadmath + + Infrastructure updates/fixes: + + - Fix setting of stack size for FLAT binaries + - Various fixes to the runtime tests + - manual: document the LTS release cadence correctly + - manual: document move of patchwork to patchwork.buildroot.org + + Updated defconfigs: qemu_xtensa_lx60* + + Updated / fixed packages: avro-c, bind, bpftrace, clamav, collectd, + dahdi-linux, dejavu, distribution-registry, dnsmasq, dpdk, dracut, + enscript, erlang, exiv2, expat, gdb, glibc, go, haproxy, hostapd, + igh-ethercat, jpeg-turbo, libbpf, libcurl, libde265, libgit2, + libheif, libldns, libnfs, libopenssl, libssh2, libxkbcommon, + libxml-parser-perl, libxml2, linux, linux-headers, linux-tools, + localedef, mesa3d, mongoose, netsnmp, newt, nodejs, olsr, opencv4, + openssh, openvpn, passt, perl, powerpc, proftpd, putty, python-avro, + python-charset-normalizer, python-gobject, qt5knx, qt6, qt6base, + qt6declarative, redis, rsyslog, taglib, toolchain-external-bootlin, + uclibc, udisks, uhttpd, unbound, vim, webkitgtk, wget, wine, + wireless-regdb, wireshark, xilinx-embeddedsw + +2026.05.2, released August 23, 2026 + + Important / security related fixes: + + apr-util: CVE-2025-49506, CVE-2026-32327, CVE-2026-34191, + CVE-2026-34501, CVE-2026-34502 + bind: CVE-2026-10723, CVE-2026-10822, CVE-2026-11331, CVE-2026-11605, + CVE-2026-11622, CVE-2026-11721, CVE-2026-12617, CVE-2026-13204, + CVE-2026-13321 + botan: CVE-2026-32877, CVE-2026-32883, CVE-2026-32884, CVE-2026-34580, + CVE-2026-34582 + busybox: CVE-2024-58251 + clamav: CVE-2025-8088, CVE-2026-20337, CVE-2026-20338, CVE-2026-20339, + CVE-2026-20345, CVE-2026-20346, CVE-2026-20347, CVE-2026-20348 + containerd: CVE-2026-35469, CVE-2026-46680, CVE-2026-47262, + CVE-2026-53488 + dracut: CVE-2026-6893 + dropbear: (no CVE assigned) + exim: GCVE-25-2026-07-45-1, CVE-2026-66140, CVE-2026-66141 + expat: CVE-2026-72522 + glibc: CVE-2026-6368 + go: CVE-2026-39822 + intel-microcode: CVE-2025-31936, CVE-2025-31938, CVE-2025-35973, + CVE-2026-20707, CVE-2026-20713, CVE-2026-20716, CVE-2026-20760, + CVE-2026-20917 + libarchive: (no CVE assigned) + libass: CVE-2026-61626, CVE-2026-61627 + libgit2: CVE-2026-53583, CVE-2026-53584, CVE-2026-53585, + CVE-2026-53586, CVE-2026-53587 + libglib2: CVE-2025-13601, CVE-2025-14087, CVE-2025-14512, + CVE-2026-1484, CVE-2026-1485, CVE-2026-1489, CVE-2026-15588, + CVE-2026-58010, CVE-2026-58011, CVE-2026-58012, CVE-2026-58013, + CVE-2026-58014, CVE-2026-58015 + libheif: CVE-2026-62289, CVE-2026-62291, CVE-2026-62292, + CVE-2026-62377, GHSA-46rp-pcq2-rpmr, GHSA-73p7-m7gg-w2jv, + GHSA-9ww4-9v47-m7pj, GHSA-jc8f-p23p-5hjg, GHSA-xpw3-9rhw-482x + libmodsecurity: CVE-2026-52747, CVE-2026-52761 + libssh: CVE-2026-15370, CVE-2026-59843, CVE-2026-59844, CVE-2026-59845, + CVE-2026-59846, CVE-2026-59847, CVE-2026-59848, CVE-2026-59849, + CVE-2026-59850 + localedef: CVE-2026-6368 + memcached: (no CVE assigned) + ntfs-3g: CVE-2026-42616, CVE-2026-42617, CVE-2026-42618, + CVE-2026-46569, CVE-2026-46570, CVE-2026-46571, CVE-2026-46572, + CVE-2026-56135, CVE-2026-56136 + openssh: (no CVE assigned) + openvpn: CVE-2026-63649, CVE-2026-63650 + perl: CVE-2026-13221, CVE-2026-57432, CVE-2026-8376 + php: CVE-2026-17543, CVE-2026-17544, CVE-2026-7260, CVE-2026-9672 + postgresql: CVE-2026-14662, CVE-2026-14663, CVE-2026-14664, + CVE-2026-14666, CVE-2026-14668, CVE-2026-14669, CVE-2026-14670, + CVE-2026-14671, CVE-2026-14672, CVE-2026-14673, CVE-2026-14676, + CVE-2026-14677, CVE-2026-14678, CVE-2026-14679, CVE-2026-14680, + CVE-2026-14681, CVE-2026-15741, CVE-2026-15742, CVE-2026-16238, + CVE-2026-16239, CVE-2026-16241, CVE-2026-18024, CVE-2026-18408, + CVE-2026-19385, CVE-2026-6464, CVE-2026-6469, CVE-2026-6470, + CVE-2026-6471 + python3: CVE-2026-0864, CVE-2026-11972, CVE-2026-12003, CVE-2026-15308, + CVE-2026-4360 + rsync: CVE-2026-53783, CVE-2026-53784, CVE-2026-53785, CVE-2026-53786, + CVE-2026-53788, CVE-2026-53789, CVE-2026-53790, CVE-2026-53791, + CVE-2026-53792, CVE-2026-53793, CVE-2026-53794, CVE-2026-53795, + CVE-2026-53796, CVE-2026-53797, CVE-2026-53798, CVE-2026-53799, + CVE-2026-53800, CVE-2026-53801, CVE-2026-53802, CVE-2026-53803, + CVE-2026-70452, CVE-2026-70453, CVE-2026-70454, CVE-2026-70455, + CVE-2026-70456, CVE-2026-70457, CVE-2026-70458, CVE-2026-70459, + CVE-2026-70460, CVE-2026-70461, CVE-2026-70462, CVE-2026-70463, + CVE-2026-70464 + samba4: CVE-2026-58216, CVE-2026-58218, CVE-2026-58221, CVE-2026-58222, + CVE-2026-58224, CVE-2026-6949 + screen: (no CVE assigned) + ser2net: GHSA-cgh5-39mg-vhfr + socat: CVE-2026-56123 + stunnel: CVE-2026-70367, CVE-2026-70368 + syslog-ng: CVE-2026-39879 + vim: CVE-2026-28417, CVE-2026-28418, CVE-2026-28419, CVE-2026-28420, + CVE-2026-28421, CVE-2026-28422, CVE-2026-32249, CVE-2026-33412, + CVE-2026-34714, CVE-2026-34982, CVE-2026-35177, CVE-2026-39881, + CVE-2026-41411, CVE-2026-42307, CVE-2026-44656, CVE-2026-45130, + CVE-2026-46483, CVE-2026-47162, CVE-2026-47167, CVE-2026-52858, + CVE-2026-52859, CVE-2026-52860, CVE-2026-55693, CVE-2026-55892, + CVE-2026-55895, CVE-2026-57451, CVE-2026-57452, CVE-2026-57453, + CVE-2026-57455, CVE-2026-57456, CVE-2026-59856, CVE-2026-59857, + CVE-2026-59858 + wpa_supplicant: (no CVE assigned) + xlib_libXfont2: CVE-2026-56001, CVE-2026-56002, CVE-2026-56003 + xserver_xorg-server: CVE-2026-55999, CVE-2026-56000 + xwayland: CVE-2026-55999, CVE-2026-56000 + + Toolchain: + + - gcc: fix mips/glibc build issue + - glibc: bump to 2.43-49-g8017bcfc4d + - linux-headers: bump to 5.10.265, 5.15.216, 6.1.183, 6.6.152, + 6.12.104, 6.18.45, 7.0.14 + - toolchain-buildroot: drop Synopsys ARC specific versions + - toolchain-external: drop Synopsys ARC toolchain + + Infrastructure updates/fixes: + + - Add license information for skeleton packages + - Make docker image reproducible again + - New runtime tests for guile, libgpiod2, mdnsd, php, python-pydal + + Updated defconfigs: freescale_imx91frdm, freescale_imx93frdm + + Removed defconfigs: acmesystems_aria_g25_{128mb, 256mb}, + acmesystems_arietta_g25_{128mb, 256mb}, s6lx9_microboard, ts4900, + ts5500 + + Removed packages: argparse, ts4900-fpga + + Updated / fixed packages: amazon-ecr-credential-helper, apache, + apr-util, arm-trusted-firmware, armadillo, at-spi2-core, atop, bind, + binutils, bitcoin, botan, busybox, cantarell, cifs-utils, clamav, + containerd, cramfs, dbus-broker, docker-credential-acr-env, + docker-credential-gcr, dracut, dropbear, environment-setup, exim, + expat, gcc, glibc, go, guile, gvfs, ifupdown-scripts, igt-gpu-tools, + initscripts, intel-microcode, libarchive, libass, libcamera, libgee, + libgit2, libglib2, libgpg-error, libgtk4, libgudev, libheif, + libmicrohttpd, libmodsecurity, libnpupnp, libpeas, librsvg, + libsecret, libsoup, libsoup3, libssh, libvpl, linux, linux-headers, + localedef, mbedtls, memcached, mini-snmpd, mosquitto, nettle, + network-manager, ntfs-3g, ogre, open62541, openblas, openssh, + openvpn, optee-os, p11-kit, pahole, perl, php, postgresql, + python-paho-mqtt, python-pydal, python-web2py, python3, quickjs, + redis, rsync, rygel, samba4, screen, ser2net, socat, stunnel, + syslog-ng, toolchain-external, uboot-tools, uclibc, ugetty, + urandom-scripts, usbutils, vim, wpa_supplicant, xlib_libXfont2, + xserver_xorg-server, xwayland, xz + +2026.05.1, released July 15, 2026 + + Important / security related fixes: + + apache: CVE-2026-29167, CVE-2026-29170, CVE-2026-34355, CVE-2026-34356, + CVE-2026-42535, CVE-2026-42536, CVE-2026-43951, CVE-2026-44119, + CVE-2026-44185, CVE-2026-44186, CVE-2026-44631, CVE-2026-48913, + CVE-2026-49975 + asterisk: GHSA-3g56-cgrh-95p5, GHSA-3rhj-hhw7-m6fw, + GHSA-4pgv-j3mr-3rcp, GHSA-589g-qgf8-m6mx, GHSA-746q-794h-cc7f, + GHSA-8jhw-m2hg-vp3h, GHSA-8jw3-ccr9-xrmf, GHSA-g8q2-p36q-94f6, + GHSA-h5hv-jmgj-92q2, GHSA-j2mm-57pq-jh94, GHSA-mxgm-8c6f-5p8f, + GHSA-ph27-3m5q-mj5m, GHSA-q9fr-m7g8-6ph5, GHSA-qf8j-jp7h-c5hx, + GHSA-r6c2-hwc2-j4mp, GHSA-vfhr-r9x9-c687, GHSA-vrfp-mg3q-3959, + GHSA-wcvv-g26m-wx5c, GHSA-x348-j6c9-77f3, GHSA-xgj6-2gc5-5x9c + avahi: CVE-2026-34933 + bind: (no CVE assigned), CVE-2026-3593 + clamav: CVE-2026-20213, CVE-2026-20214, CVE-2026-20215, CVE-2026-20216, + CVE-2026-20217, CVE-2026-20243, CVE-2026-20244, CVE-2026-41676 + cpp-httplib: CVE-2026-45352, CVE-2026-45372, CVE-2026-46527 + cups-filters: CVE-2025-64503 + expat: CVE-2026-50219, CVE-2026-56131, CVE-2026-56132, CVE-2026-56403, + CVE-2026-56404, CVE-2026-56405, CVE-2026-56406, CVE-2026-56407, + CVE-2026-56408, CVE-2026-56409, CVE-2026-56410, CVE-2026-56411, + CVE-2026-56412 + fetchmail: (no CVE assigned) + ghostscript: (no CVE assigned) + gnupg2: CVE-2026-34182 + imagemagick: CVE-2026-48724, CVE-2026-48733, CVE-2026-48734, + CVE-2026-48994, CVE-2026-49218, CVE-2026-49219, CVE-2026-53460, + CVE-2026-53461, CVE-2026-53462, CVE-2026-53463, CVE-2026-53464, + CVE-2026-53465 + jq: CVE-2026-32316, CVE-2026-33947, CVE-2026-33948, CVE-2026-39979, + CVE-2026-40164, CVE-2026-40612, CVE-2026-41256, CVE-2026-41257, + CVE-2026-43894, CVE-2026-43896, CVE-2026-44777, CVE-2026-49839, + CVE-2026-54679, GHSA-gf4g-95wj-4q4r, GHSA-hj52-j2c9-r8r4 + libarchive: (no CVE assigned) + libcurl: CVE-2026-10536, CVE-2026-11352, CVE-2026-11564, + CVE-2026-11586, CVE-2026-11856, CVE-2026-12064, CVE-2026-8286, + CVE-2026-8458, CVE-2026-8924, CVE-2026-8925, CVE-2026-8926, + CVE-2026-8927, CVE-2026-8932, CVE-2026-9079, CVE-2026-9080, + CVE-2026-9545, CVE-2026-9546, CVE-2026-9547 + libevent: (no CVE assigned) + libgsasl: CVE-2026-48829 + libopenssl: CVE-2026-34180, CVE-2026-34181, CVE-2026-34182, + CVE-2026-34183, CVE-2026-42764, CVE-2026-42766, CVE-2026-42767, + CVE-2026-42768, CVE-2026-42769, CVE-2026-42770, CVE-2026-45445, + CVE-2026-45446, CVE-2026-45447, CVE-2026-7383, CVE-2026-9076 + libssh2: CVE-2026-55199, CVE-2026-55200 + mariadb: CVE-2026-48163, CVE-2026-48165, CVE-2026-49261 + mongoose: (no CVE assigned yet) + nginx: CVE-2026-42055, CVE-2026-48142 + openjpeg: CVE-2026-6192 + openvpn: CVE-2026-11771, CVE-2026-12932, CVE-2026-12996, + CVE-2026-13117, CVE-2026-13122, CVE-2026-13379, CVE-2026-13698 + php: CVE-2026-14355 + python-django: CVE-2026-35192, CVE-2026-35193, CVE-2026-48587, + CVE-2026-5766, CVE-2026-6873, CVE-2026-6907, CVE-2026-7666, + CVE-2026-8404 + python3: CVE-2026-11940, CVE-2026-9669 + redis: CVE-2026-23479, CVE-2026-23631, CVE-2026-25243 + ruby: CVE-2026-46727 + rust: CVE-2025-15661, CVE-2026-55199, CVE-2026-55200 + squid: CVE-2026-47729, CVE-2026-50012 + sudo: CVE-2026-35535 + tiff: CVE-2026-36849 + tmux: CVE-2026-11623 + tor: TROVE-2026-025, TROVE-2026-026. + util-linux: CVE-2026-27456, CVE-2026-53612, CVE-2026-53613, + CVE-2026-53614 + webkitgtk: CVE-2026-28847, CVE-2026-28883, CVE-2026-28901, + CVE-2026-28902, CVE-2026-28903, CVE-2026-28904, CVE-2026-28905, + CVE-2026-28907, CVE-2026-28942, CVE-2026-28946, CVE-2026-28947, + CVE-2026-28953, CVE-2026-28955, CVE-2026-28958, CVE-2026-43658, + CVE-2026-43660 + wolfssl: CVE-2026-10097, CVE-2026-10098, CVE-2026-10512, + CVE-2026-10592, CVE-2026-11310, CVE-2026-11703, CVE-2026-11999, + CVE-2026-12340, CVE-2026-55958, CVE-2026-55960, CVE-2026-55961, + CVE-2026-55962, CVE-2026-55964, CVE-2026-55967, CVE-2026-6091, + CVE-2026-6092, CVE-2026-6094, CVE-2026-6291, CVE-2026-6325, + CVE-2026-6329, CVE-2026-6330, CVE-2026-6331, CVE-2026-6412, + CVE-2026-6450, CVE-2026-6678, CVE-2026-6681, CVE-2026-6731, + CVE-2026-7511, CVE-2026-7531, CVE-2026-7532, CVE-2026-8720 + + Toolchain: + + - gcc: bump 15.x series to 15.3.0 + - gcc:: bump 14.x series to 14.4.0 + + Infrastructure updates/fixes: + + - support/testing: various internal refactorings + - support/testing Improve TestPythonPy3NetworkmanagerGoi + - support/testing: improve iptables package test + - generate-cyclonedx: fixup scp-style git sites + - support/testing: Fix test_gnupg2 + + Updated / fixed packages: apache, asterisk, avahi, bind, bind, clamav, + cpp-httplib, cups-filters, expat, fetchmail, gcc, gcc:, ghostscript, + gnupg2, hwdata, imagemagick, iptables, jq, jq, kodi-screensaver-rsxs, + libarchive, libcurl, libepoxy, libevent, libglib2, + libglib2-bootstrap, libgsasl, libopenssl, libssh2, libssh2, linux, + mariadb, mdnsd, mongoose, mosquitto, mpd, nginx, ntp, openjpeg, + openrc, openvpn, passt, php, python-django, python3, python3, redis, + rsync, ruby, rust, shadow, shim, squid, strongswan, sudo, tiff, tmux, + tor, util-linux, util-linux, util-linux, webkitgtk, wolfssl + +2026.05, released June 8th, 2026 + + Various fixes. + + Defconfigs: Correct legal-info for at91sam9x5ek* + (at91bootstrap3) and Arcturus ucp1020 (Linux) + + Updated/fixed packages: jailhouse, libde265, libinput, libusb, + php, python3, runc + +2026.05-rc4, released June 4th, 2026 + + Fixes all over the tree. + + Infrastructure: + + - dependencies: detect and reject buggy uutils 'install' + program as used in Ubuntu 26.04 + + - pkg-generic: Cleanup /usr/share/info/dir in the target + + - generate-cyclonedx / cve-check: Various fixes for better + CycloneDX / BSI TR-03183-2 compliance + + - linux: No longer forcibly disable CONFIG_WERROR + + - 'make show-info-all' added, which works like 'make + show-info' but for all packages. The package hash files are + now also included in the show-info{,-all} output. + + Architectures: + + - Drop support for the (rare) PA-RISC 1.0 variant + + Updated/fixed packages: aardvark-dns, arm-trusted-firmware, + asterisk, babeld, bpftrace, busybox, ca-certificates, cairo, + capnproto, collectd, cppdb, crucible, cups-filters, + docker-cli, docker-engine, drm-info, efl, esp-hosted, exim, + faad2, freeipmi, freeswitch, gcc-bare-metal, gdb, gerbera, + glibc, graphene, gst1-plugins-bad, gst1-plugins-good, + gstreamer1, harfbuzz, heirloom-mailx, hiredis, hplip, icu, + jemalloc, jq, kodi, lcms2, libbpf, libdill, libdrm, libenca, + libgit2, libheif, libks, libmad, libmicrohttpd, + libmodsecurity, libpthsem, libssh2, liburing, llvm-project, + lrzip, lrzsz, lua-sdl2, mesa3d, mpd, mrp, ndctl, netatalk, + netavark, odhcp6c, openblas, opencv4, opendoas, openscap, php, + podman, poppler, powerpc-utils, privoxy, python-ecdsa, + python-gymnasium, python3, qt53d, qt5webengine-chromium, + qt6base, readline, redis, rpcbind, rtl8188eu, + rtl8812au-aircrack-ng, rtl8822cs, runc, rust, rust-bin, + samba4, sane-airscan, sane-backends, sdl2_image, sqlite, + sshfs, stellarium, suricata, sway, sysrepo, tor, unzip, + ustream-ssl, util-linux, vlc, vorbis-tools, weston, + wireless-regdb, xdriver_xf86-video-nv, xen, xerces, + xserver_xorg-server, xwayland, zsh + + Removed packages: daq, kodi-pvr-hdhomerun, libhdhomerun, + libphidget, phidgetwebservice, pigpio, ptpd2, xml-security-c, + zeek + +2026.05-rc3, released May 29th, 2026 + + Fixes all over the tree. + + Updated/fixed packages: kexec, libde265, libheif, + llvm-project, mariadb, mesa3d, mpd, nginx, putty, + python-urllib3, radvd, samba4, unbound + +2026.05-rc2, released May 21th, 2026 + + Fixes all over the tree. + + Updated/fixed packages: bind, cog, exim, fwts, gnupg2, + haveged, htop, imagemagick, intel-microcode, libabseil-cpp, + libargon2, libblockdev, libde265, libgphoto2, libheif, libks, + libmodsecurity, libnfs, libnss, liburiparser, libvncserver, + memcached, mongoose, mpd, openvmtools, postgresql, + python-cbor2, python-google-api-core, + python-sdbus-modemmanager, rsync, samba4, sed, + shadowsocks-libev, supertux, tzdata, weston, wireshark, + wpewebkit, zic, zlib-ng + +2026.05-rc1, released May 12th, 2026 + + Fixes all over the tree and new features. + + Architecture: + - ARM Neoverse-V1/V2/V3/V3AE cores added + - Default x86 CPU variant is now i686 (from i586) + + Toolchain: + - Support for Linux 7.0.x headers + - ARM external toolchains bumped to 15.2.rel1 + + Filesystem: + - Support for XFS rootfs generation. + + Misc: + - generate-cyclonedx now adds source attribute to known + CVEs for better compatibility with Dependency-Track. + + New defconfigs: AMD Versal VPK120, TI j721e starter kit (TDA4VM-SK) + + New packages: cxxopts, drm-info, ftxui, go-bootstrap-stage5, + iniparser, libnss-ato, libzippp, ndctl, opendoas, + python-cloudpickle, python-deprecation, + python-farama-notifications, python-gymnasium, + python-humanfriendly, python-isodate, python-transitions, + sbctl, ugetty, zix + + Removed packages: cegui, openswan, pcre, rubix, snort, + spinxbase + +2026.02.3, released June 16, 2026 + + Important / security related fixes: + + asterisk: GHSA-8fj4-fv9f-hjpc, GHSA-g88q-c2hm-q7p7, + GHSA-j29p-pvh2-pvqp, GHSA-x5pq-qrp4-fmrj + bind: CVE-2026-3039, CVE-2026-3592, CVE-2026-5946, CVE-2026-5950 + capnproto: CVE-2026-322, CVE-2026-32239, CVE-2026-32240 + cups-filters: CVE-2025-64524 + dnsmasq: CVE-2026-2291, CVE-2026-4890, CVE-2026-4891, CVE-2026-4892, + CVE-2026-4893, CVE-2026-5172 + docker-engine: CVE-2025-54388 + dropbear: CVE-2019-6111, CVE-2026-35385 + exim: (no CVE assigned), CVE-2026-48840 + expat: CVE-2026-45186 + freeipmi: CVE-2026-50031 + glibc: CVE-2026-4046, CVE-2026-4437, CVE-2026-4438, CVE-2026-5450, + CVE-2026-5928 + gnupg2: (no CVE assigned) + haveged: CVE-2026-41054 + imagemagick: CVE-2026-42326, CVE-2026-45031, CVE-2026-45358, + CVE-2026-45359, CVE-2026-45624, CVE-2026-45664, CVE-2026-46520, + CVE-2026-46521, CVE-2026-46522, CVE-2026-46523, CVE-2026-46557, + CVE-2026-46559 + intel-microcode: CVE-2025-35979 + libde265: CVE-2026-45382, CVE-2026-45383, GHSA-ccfw-29x7-rrx3, + GHSA-j2qq-x2xq-g9wr + libgpg-error: T8239 + libheif: CVE-2026-32738, CVE-2026-32739, CVE-2026-32740, + CVE-2026-32741, CVE-2026-32814, CVE-2026-32882, CVE-2026-3949, + CVE-2026-41069, CVE-2026-41071, CVE-2026-47178, CVE-2026-47247, + CVE-2026-47251, CVE-2026-47254, CVE-2026-47709, CVE-2026-47714, + GHSA-5hqq-636x-r3cr, GHSA-6x5f-qchq-cxqv, GHSA-jvmp-j3cw-84mh, + GHSA-r7qj-cg5r-r6vf + libmad: CVE-2017-837, CVE-2017-8372, CVE-2017-8373, CVE-2017-8374 + libmodsecurity: CVE-2026-30923, CVE-2026-42268 + libssh2: CVE-2026-7598 + liburiparser: CVE-2026-44927, CVE-2026-44928 + libusb: CVE-2026-23679, CVE-2026-47104 + libvncserver: CVE-2026-3285, CVE-2026-32853, CVE-2026-32854 + mariadb: CVE-2026-34303, CVE-2026-3494, CVE-2026-44168, CVE-2026-44169, + CVE-2026-44170, CVE-2026-44171, CVE-2026-44172, CVE-2026-44173 + memcached: (no CVE assigned) + nginx: CVE-2026-40460, CVE-2026-40701, CVE-2026-42926, CVE-2026-42934, + CVE-2026-42945, CVE-2026-42946, CVE-2026-9256 + php: CVE-2026-44927, CVE-2026-44928 + postgresql: CVE-2026-6472, CVE-2026-6473, CVE-2026-6474, CVE-2026-6475, + CVE-2026-6476, CVE-2026-6477, CVE-2026-6478, CVE-2026-6479, + CVE-2026-6575, CVE-2026-6637, CVE-2026-6638 + privoxy: OVE-20260515-0001, OVE-20260515-0002 + putty: (no CVE assigned) + python-urllib3: CVE-2026-44431, CVE-2026-44432 + python3: CVE-2026-3276, CVE-2026-7774, CVE-2026-8328, gh-146211, + gh-146333, gh-148169, gh-148178, gh-148395, gh-149017, gh-149254, + gh-90309 + radvd: CVE-2026-48715 + rsync: CVE-2026-29518, CVE-2026-43617, CVE-2026-43618, CVE-2026-43619, + CVE-2026-43620, CVE-2026-45232 + runc: CVE-2025-31133, CVE-2025-52565, CVE-2025-52881 + samba4: CVE-2026-1933, CVE-2026-2340, CVE-2026-3012, CVE-2026-3238, + CVE-2026-4408, CVE-2026-4480 + sdl2_image: CVE-2026-35444 + sed: CVE-2026-5958 + sshfs: CVE-2026-47187, CVE-2026-48711 + tor: TROVE-2026-013, TROVE-2026-014, TROVE-2026-015, TROVE-2026-016, + TROVE-2026-017, TROVE-2026-018, TROVE-2026-019, TROVE-2026-020, + TROVE-2026-021, TROVE-2026-022 + unbound: CVE-2026-32792, CVE-2026-33278, CVE-2026-40622, + CVE-2026-41292, CVE-2026-42534, CVE-2026-42923, CVE-2026-42944, + CVE-2026-42959, CVE-2026-42960, CVE-2026-44390, CVE-2026-44608 + unzip: CVE-2021-4217 + xserver_xorg-server: (no CVE assigned) + xwayland: (no CVE assigned) + + Toolchain: + + - linux-headers: bump to 5.10.257, 5.15.208, 6.1.174, 6.6.141, 6.12.91, + 6.18.33 + + Infrastructure updates/fixes: + + - cve-check: fix vulnerabilities with different analysis + - generate-cyclonedx: add hashes from .hash files to externalReferences + - generate-cyclonedx: hint at missing Buildroot host package on a + specific error + - bump-stable-kernel-versions: update for split hash file + - kconfig: fix compiler warnings + - cve-check: add indication how to run + - Remove /usr/share/info/dir from target + - generate-cyclonedx: remove indirect dependencies from root component + - replicate IGNORE_CVES to host packages + - cve-check: remove 'bom-ref' for vulnerabilities + - generate-cyclonedx: generate externalReferences with + source-distribution + - cve-check: fix vulnerability timestamp to RFC 3339 + - generate-cyclonedx: generate vcs externalReferences for source repos + - gitlab-ci: use larger shared runners where necessary + - add 'make show-info-all' + - dependencies.sh: reject buggy uutils "install" on Ubuntu 26.04 + + Updated defconfigs: arcturus_ucp1020, at91sam9x5ek* + + Updated / fixed packages: kexec, zsh, cups-filters, python-cbor2, + haveged, lrzsz, ustream-ssl, expat, xwayland, libvncserver, liburing, + sysrepo, qt53d, collectd, mariadb, gstreamer1, jemalloc, libks, + lua-sdl2, util-linux, vlc, xfsprogs, kodi, bind, libde265, + docker-cli, libabseil-cpp, wpewebkit, libpthsem, heirloom-mailx, icu, + libheif, podman, unbound, dropbear, vorbis-tools, crucible, unzip, + libssh2, python3, imagemagick, libbpf, gdb, capnproto, esp-hosted, + freeipmi, asterisk, wireless-regdb, intel-microcode, weston, + util-linux-libs, linux-headers, qt6base, zlib-ng, libgphoto2, hplip, + bpftrace, postgresql, babeld, sed, libdrm, lrzip, odhcp6c, linux, + efl, libusb, jq, sane-airscan, libmad, faad2, dnsmasq, privoxy, + libgit2, mrp, putty, sshfs, gcc-bare-metal, graphene, mongoose, + rsync, redis, hiredis, cairo, zic, dos2unix, libargon2, + docker-engine, sane-backends, arm-trusted-firmware, libnss, openscap, + opencv4, liburiparser, libdill, radvd, poppler, tzdata, + gst1-plugins-bad, python-ecdsa, php, stellarium, python-aiodns, + nginx, gnupg2, tor, xerces, gst1-plugins-good, libmodsecurity, + sdl2_image, readline, libgpg-error, samba4, runc, + xserver_xorg-server, glibc, memcached, libmicrohttpd, supertux, exim, + python-urllib3, qt5webengine-chromium + +2026.02.2, released May 20, 2026 + + Changes with potentially large impact: + + - ficl was downgraded to version 3.065 because ficl4 is no longer + maintained. + + Important / security related fixes: + + apache: CVE-2026-23918, CVE-2026-24072, CVE-2026-28780, CVE-2026-29168, + CVE-2026-29169, CVE-2026-33006, CVE-2026-33007, CVE-2026-33523, + CVE-2026-33857, CVE-2026-34032, CVE-2026-34059 + bubblewrap: CVE-2026-41163 + cups: CVE-2026-27447, CVE-2026-34978, CVE-2026-34979, CVE-2026-34980, + CVE-2026-34990, CVE-2026-39314, CVE-2026-39316, CVE-2026-41079 + dash: CVE-2026-31323 + dropbear: CVE-2019-6111, CVE-2026-35385 + exim: CVE-2026-40684, CVE-2026-40685, CVE-2026-40686, CVE-2026-40687 + expat: CVE-2026-7210, CVE-2026-41080 + ffmpeg: CVE-2026-30997 + ghostscript: (no CVE assigned) + gnutls: CVE-2026-33845, CVE-2026-33846, CVE-2026-3832, CVE-2026-3833, + CVE-2026-42009, CVE-2026-42010, CVE-2026-42011, CVE-2026-42012, + CVE-2026-42013, CVE-2026-42014, CVE-2026-42015, CVE-2026-5260, + CVE-2026-5419 + go: CVE-2026-33811, CVE-2026-33814, CVE-2026-39817, CVE-2026-39819, + CVE-2026-39820, CVE-2026-39823, CVE-2026-39825, CVE-2026-39826, + CVE-2026-39836, CVE-2026-42499, CVE-2026-42501 + go-bootstrap-stage5: CVE-2026-33811, CVE-2026-33814, CVE-2026-39817, + CVE-2026-39819, CVE-2026-39820, CVE-2026-39823, CVE-2026-39825, + CVE-2026-39826, CVE-2026-39836, CVE-2026-42499, CVE-2026-42501 + imagemagick: CVE-2026-28493, CVE-2026-28494, CVE-2026-28686, + CVE-2026-28687, CVE-2026-28688, CVE-2026-28689, CVE-2026-28690, + CVE-2026-28691, CVE-2026-28692, CVE-2026-28693, CVE-2026-30883, + CVE-2026-30929, CVE-2026-30931, CVE-2026-30935, CVE-2026-30936, + CVE-2026-30937, CVE-2026-31853, CVE-2026-32259, CVE-2026-32636, + CVE-2026-33535, CVE-2026-33536, CVE-2026-33899, CVE-2026-33900, + CVE-2026-33901, CVE-2026-33902, CVE-2026-33905, CVE-2026-33908, + CVE-2026-34238, CVE-2026-40169, CVE-2026-40183, CVE-2026-40310, + CVE-2026-40311, CVE-2026-40312 + lcms2: CVE-2026-41254 + libarchive: (no CVE assigned) + libcurl: CVE-2026-7168, CVE-2026-7009, CVE-2026-6429, CVE-2026-6276, + CVE-2026-6253, CVE-2026-5773, CVE-2026-5545, CVE-2026-4873 + libexif: CVE-2026-40386, CVE-2026-40385, CVE-2026-32775 + libjxl: CVE-2025-12474, CVE-2026-1837 + libmicrohttpd: (no CVE assigned) + libpcap: CVE-2025-11961 + libpjsip: CVE-2025-65102, CVE-2026-25994, CVE-2026-26203, + CVE-2026-26967, CVE-2026-29068, CVE-2026-28799, CVE-2026-32942, + CVE-2026-32945, CVE-2026-33069, CVE-2026-34235, CVE-2026-40614, + CVE-2026-40892, CVE-2026-41416, CVE-2026-41415, CVE-2026-42225 + libsodium: (no CVE assigned) + libspdm: GHSA-m4wc-xmvg-369f, GHSA-j54w-759w-xj3m + liburiparser: CVE-2026-42371 + libxml2: CVE-2026-6732 + linux-pam: CVE-2025-6020 + log4cxx: CVE-2025-54812, CVE-2025-54813, CVE-2026-40023 + mbedtls: CVE-2025-66442, CVE-2026-25833, CVE-2026-25834, + CVE-2026-25835, CVE-2026-34871, CVE-2026-34872, CVE-2026-34873, + CVE-2026-34874, CVE-2026-34875, CVE-2026-34876, CVE-2026-34877 + musl: CVE-2026-6042, CVE-2026-40200 + nginx: CVE-2026-27654, CVE-2026-27784, CVE-2026-32647, CVE-2026-27651, + CVE-2026-28753, CVE-2026-28755 + opensc: CVE-2025-13763, CVE-2025-49010, CVE-2025-66215, CVE-2025-66038, + CVE-2025-66037 + openvpn: CVE-2026-40215, CVE-2026-35058 + p11-kit: CVE-2026-2100 + p7zip: CVE-2021-3520 + php: CVE-2026-7263, CVE-2026-6735, CVE-2026-29078, CVE-2026-29079, + CVE-2026-7259, CVE-2026-6104, CVE-2025-14179, CVE-2026-6722, + CVE-2026-7261, CVE-2026-7262, CVE-2026-7568, CVE-2026-7258, + CVE-2026-42371 + proftpd: CVE-2026-42167 + python-cbor2: CVE-2026-26209 + python-django: CVE-2026-5766, CVE-2026-35192, CVE-2026-6907, + CVE-2026-3902, CVE-2026-4277, CVE-2026-4292, CVE-2026-33033, + CVE-2026-33034 + python-lmdb: CVE-2019-16224, CVE-2019-16225, CVE-2019-16226, + CVE-2019-16227, CVE-2019-16228 + python-magic-wormhole: CVE-2026-32116 + python-pyasn1: CVE-2026-30922 + python-pyopenssl: CVE-2026-40475, CVE-2026-27459, CVE-2026-27448 + python-requests: CVE-2026-25645 + rsync: (no CVE assigned) + ruby: CVE-2026-41316 + squid: CVE-2026-32748, CVE-2026-33515, CVE-2026-33526 + strongswan: CVE-2026-25075 + systemd: CVE-2026-29111, CVE-2026-40226 + thrift: CVE-2025-48431, CVE-2026-41602, CVE-2026-41603, CVE-2026-41604, + CVE-2026-41605, CVE-2026-41606, CVE-2026-41607, CVE-2026-41636, + CVE-2026-43868, CVE-2026-43869, CVE-2026-43870 + tor: CVE-2026-44597, CVE-2026-44599, CVE-2026-44600, CVE-2026-44601, + CVE-2026-44602, CVE-2026-44603 + util-linux: CVE-2026-27456 + webkitgtk: CVE-2026-20643, CVE-2026-20664, CVE-2026-20665, + CVE-2026-20691, CVE-2026-28857, CVE-2026-28859, CVE-2026-28861, + CVE-2026-28871, CVE-2025-43457, CVE-2025-46299, CVE-2026-20608, + CVE-2026-20635, CVE-2026-20636, CVE-2026-20644, CVE-2026-20652, + CVE-2026-20676 + wireshark: CVE-2026-5409, CVE-2026-5408, CVE-2026-5406, CVE-2026-5407, + CVE-2026-5299, CVE-2026-5401, CVE-2026-5404, CVE-2026-5403, + CVE-2026-5405, CVE-2026-5654, CVE-2026-5657, CVE-2026-5656, + CVE-2026-5653, CVE-2026-6538, CVE-2026-6537, CVE-2026-6535, + CVE-2026-6534, CVE-2026-6533, CVE-2026-6532, CVE-2026-6531, + CVE-2026-6530, CVE-2026-6529, CVE-2026-6527, CVE-2026-6524, + CVE-2026-6523, CVE-2026-6521, CVE-2026-6520, CVE-2026-6519, + CVE-2026-6522, CVE-2026-6870, CVE-2026-6869, CVE-2026-6868 + wolfssl: CVE-2026-5264, CVE-2026-5263, CVE-2026-5295, CVE-2026-5466, + CVE-2026-5477, CVE-2026-5447, CVE-2026-5500, CVE-2026-5501, + CVE-2026-5503, CVE-2026-5187, CVE-2026-5188, CVE-2026-5448, + CVE-2026-5772, CVE-2026-5778, CVE-2026-3548, CVE-2026-3549, + CVE-2026-3547, CVE-2026-0819, CVE-2026-1005, CVE-2026-2645, + CVE-2026-3230, CVE-2025-12888, CVE-2025-11936, CVE-2025-11935, + CVE-2025-11934, CVE-2025-11933, CVE-2025-11931, CVE-2025-11932, + CVE-2025-12889, CVE-2025-13912, CVE-2025-7395, CVE-2025-7394, + CVE-2025-7396 + wolftpm: CVE-2025-7844 + xdg-dbus-proxy: (no CVE assigned) + xlib_libXpm: CVE-2026-4367 + xserver_xorg-server: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, + CVE-2026-34002, CVE-2026-34003 + xwayland: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, + CVE-2026-34002, CVE-2026-34003 + + Toolchain: + + - gcc: fix GCC 13, 14 and 15 build with host GCC 16 + - linux-headers: bump to 5.10.256, 5.15.207, 6.1.173, 6.6.140, 6.12.90, + 6.18.32, 6.19.14 + + Infrastructure updates/fixes: + + - Various improvements to pkg-stats. + + Updated / fixed packages: apache, bat, btrfs-progs, bubblewrap, + c-icap, ca-certificates, cups, dash, dropbear, eudev, exim, expat, + ffmpeg, ficl, frr, gcc, ghostscript, gnutls, go, go-bootstrap-stage5, + haproxy, imagemagick, kmod, lcms2, libarchive, libcurl, libexif, + libjxl, libmicrohttpd, libpcap, libpjsip, libpng, libsodium, libspdm, + liburiparser, libxml2, linux, linux-headers, linux-pam, log4cxx, + make, mbedtls, mkpasswd, musl, mutt, neon, netsnmp, network-manager, + nginx, opensc, openssh, openvpn, p11-kit, p7zip, php, proftpd, + python-cbor2, python-certifi, python-django, python-lmdb, + python-magic-wormhole, python-pyasn1, python-pyopenssl, + python-requests, python3, rsync, ruby, squid, strongswan, sudo, + systemd, thrift, tor, util-linux, watchdogd, webkitgtk, + wireless-regdb, wireshark, wolfssl, wolftpm, xdg-dbus-proxy, + xlib_libXpm, xserver_xorg-server, xwayland + +2026.02.1, released April 21, 2026 + + Changes with potentially large impact: + + - openssl was updated to 3.5.0 which has a few incompatible changes. + See https://github.com/openssl/openssl/releases/tag/openssl-3.5.0 + + Important / security related fixes: + + asterisk: CVE-2026-23739, CVE-2026-23741, CVE-2026-23738, + CVE-2026-23740 + bind: CVE-2026-1519 + clamav: CVE-2026-20031 + cpp-httplib: CVE-2026-21428, CVE-2026-22776, CVE-2026-28434, + CVE-2026-28435, CVE-2026-29076, CVE-2026-31870, CVE-2026-32627, + CVE-2026-33745, CVE-2026-34441 + exiv2: CVE-2026-25884, CVE-2026-27596, CVE-2026-27631 + expat: CVE-2026-32776, CVE-2026-32777, CVE-2026-32778 + freetype: [No CVE tracking], CVE-2026-23865 + giflib: CVE-2021-40633, CVE-2025-31344 + go: CVE-2026-32289, CVE-2026-33810, CVE-2026-27144, CVE-2026-27143, + CVE-2026-32288, CVE-2026-32283, CVE-2026-27140, CVE-2026-32280, + CVE-2026-32281 + libarchive: [No CVE tracking] + libcap: CVE-2026-4878 + libcurl: CVE-2026-3805, CVE-2026-3784, CVE-2026-3783, CVE-2026-1965 + libde265: CVE-2026-33164, CVE-2026-33165 + libglib2: CVE-2025-13601, CVE-2026-1484, CVE-2026-1485, CVE-2026-1489 + libgpiod2: [No CVE tracking] + libinput: CVE-2026-35093, CVE-2026-35094 + libmicrohttpd: CVE-2025-59777, CVE-2025-62689 + libopenssl: CVE-2026-31790, CVE-2026-28386, CVE-2026-28387, + CVE-2026-28388, CVE-2026-28389, CVE-2026-28390, CVE-2026-31789 + libpng: CVE-2026-33416, CVE-2026-33636, CVE-2026-34757 + libsoup3: CVE-2025-14523 + libtpms: CVE-2026-21444 + libxml2: CVE-2026-1757, CVE-2026-0990, CVE-2026-0992, CVE-2025-10911, + CVE-2026-0989 + musl: CVE-2025-26519 + nfs-utils: CVE-2025-12801 + nghttp2: CVE-2026-27135 + perl: CVE-2026-4176 + python-django: CVE-2026-25673, CVE-2026-25674 + python-flask: CVE-2026-27205 + python-gpiod: [No CVE tracking] + python-pyasn1: CVE-2026-23490 + python-pyjwt: CVE-2026-32597 + python-wheel: CVE-2026-24049 + python3: CVE-2026-4224, CVE-2026-3644, CVE-2026-2297 + quickjs: CVE-2025-62490, CVE-2025-62491, CVE-2025-62492, + CVE-2025-62493, CVE-2025-62494, CVE-2025-62495, CVE-2025-62496 + rauc: CVE-2026-34155 + redis: [No CVE tracking] + tor: TROVE-2026-003, TROVE-2026-004 + wireshark: CVE-2026-3201, CVE-2026-3203 + xz: CVE-2026-34743 + + Toolchain: + + - linux-headers: bump to 6.19.12, 6.18.22, 6.12.81, 6.6.134, 6.1.168, + 5.15.202, 5.10.252 + - uclibc: bump to 1.0.57 + + Infrastructure updates/fixes: + + - cve-check: fix CVE URL format + - generate-cyclonedx: add source attribute with NVD reference for CVEs + - Add SECURITY.md + - Fix error handling in br2-external + - New runtime test for memcached + - Remove 32-bit EFI from runtime tests + - New runtime test for connman + - Added support for "secondary" target that are less often tested in + autobuilders + - Update kernel and toolchain for some tests + + Updated defconfigs: aarch64_efi, nitrogen*, stm32mp135f_dk, + versal2_vek385 + + Updated / fixed packages: asterisk, bind, bind, bootgen, clamav, cpp- + httplib, cpp-httplib, docker, edk2, exiv2, expat, faketime, freeradius- + server, freetype, freetype, giflib, giflib, go, igh-ethercat, jasper, + kodi, leafnode2, libarchive, libcap, libcurl, libde265, libftdi1, + libglib2, libgpiod2, libgpiod2, libheif, libinput, libmicrohttpd, + libopenssl, libpng, libpng, libsoup3, libtpms, libtpms, libvips, + libxml2, linux, linux-headers, ltp-testsuite, luvi, mesa3d, mpd, musl, + nfs-utils, nfs-utils, nghttp2, perl, php, postgresql, python-django, + python-flask, python-gpiod, python-pyasn1, python-pyjwt, python-tornado, + python-wheel, python3, python3, quickjs, rauc, redis, sqlite, sway, tor, + uboot, uclibc, wireshark, wpebackend-fdo, xen, xz, xz, zfs + +2026.02, released March 4th, 2026 + + Various fixes. + + Updated/fixed packages: freerdp, graphicsmagick, ruby, nsquid, + vim + +2026.02-rc3, released March 2nd, 2026 + + Fixes all over the tree. + + support/testing/run-tests: Work around a node2 patch in Debian + testing/unstable: + https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1129350 + + Updated/fixed packages: bind, botan, containerd, cups, gpsd, + flashbench, igmpproxy, imagemagick, libssh, libunistring, + libvirt, mesa3d, mupdf, openscap, patch, poco, + python-multipart, rtl_433, safeclib, samba4, tinyproxy, + udisks, webkitgtk, wireshark, wlroots, wpewebkit + +2026.02-rc2, released February 24th, 2026 + + Fixes all over the tree. + + Updated/fixed packages: bind, c-ares, libzlib, mpir, netsnmp, + python-anyio, python-fastapi, python-jsonschema, + python-pybind, python-starlette, qemu, ruby, snort, systemd, + wmctrl, wpewebkit + +2026.02-rc1, released February 17th, 2026 + + Fixes all over the tree and new features. + + Arch: + - Add HPPA architecture support + - Drop ARC big-endian support + + Toolchain: + - Kernel headers: use 6.19.x by default, removed 6.17.x, added + 6.19.x support. + + - Binutils: use 2.44 by default, removed 2.42.x, added 2.45.x series. + + Misc: + - Various tweaks to utils/generate-cyclonedx for better SBOM + compatibility and more detailed annotations for CVEs fixed + by patches in Buildroot. + + New defconfigs: AMD Versal2 VEK385, HP-9000, QEMU HPPA B160L, + STM32h747i-disco + + Removed defconfigs: Raspberrypi3 qt5we + + New packages: adsp-ldr, aichat, k3conf, kibi, libplacebo, + libxmlsec1, libyang-cpp, nqptp, openscap, + python-annotated-doc, python-base58, python-coherent-licensed, + python-diskcache, python-gpiod, + python-ipython-pygments-lexers, python-librt, + python-markdown-it-py, python-mdit-py-plugins, python-mdurl, + python-memray, python-platformdirs, python-rich, + python-sdbus-systemd, python-textual, python-varlink, + qoriq-restool, rasdaemon, sigsum-go, sysrepo-cpp, yq, zellij + + Removed packages: alure, bootstrap, chartjs, connman-gtk, + cppdb, criu, cvs, datatables-buttons, datatables-fixedcolumns, + datatables-responsive, datatables, dbus-triggerd, dmraid, + dvdrw-tools, explorercanvas, flot, forge, gconf, hawktracer, + jquery-datetimepicker, jquery-keyboard, jquery-mobile, + jquery-sidebar, jquery-sparkline, jquery-ui-themes, jquery-ui, + jquery-validation, jquery, jsmin, json-javascript, jszip, + let-me-create, libcgi, libcuefile, libfreeimage, libiqrf, + libmhash, libnids, libsvg-cairo, libsvg, libuwsc, lockdev, + musepack, opencv3, openlayers, openpowerlink, opentracing-cpp, + php-zmq, python-aioredis, qjson, racehound, rpi-userland, + sconeserver, softether, taskd, vis-network, vuejs-router, + vuejs, xdriver_xf86-input-mouse + + Issues resolved: + - GNU GRUB (BIOS) with f2fs filesystem failed + https://gitlab.com/buildroot.org/buildroot/-/issues/61 + + - The shadow package does not correctly configure the ENCRYPT_METHOD.. + https://gitlab.com/buildroot.org/buildroot/-/issues/134 + + - EGL not found when building libWPE from buildroot base folder + https://gitlab.com/buildroot.org/buildroot/-/issues/144 + + - Awkward error message: "Fix you path" + https://gitlab.com/buildroot.org/buildroot/-/issues/151 + + - Detected presence of version control tool artifacts + https://gitlab.com/buildroot.org/buildroot/-/issues/154 + + - run-tests tool broken with Python 3.14 + https://gitlab.com/buildroot.org/buildroot/-/issues/156 + + - Moving away from bminor Github mirrors + https://gitlab.com/buildroot.org/buildroot/-/issues/160 + + - How can I make the 'en_US' locale by default? + https://gitlab.com/buildroot.org/buildroot/-/issues/161 + +2025.11.3, released March 17, 2026 + + Important / security related fixes: + + botan: CVE-2024-50382, CVE-2024-50383 + c-ares: CVE-2025-62408 + clamav: CVE-2026-20031 + containerd: CVE-2024-25621, CVE-2024-40635, CVE-2025-47291, + CVE-2025-64329 + cups: CVE-2025-58436, CVE-2025-61915 + exiv2: CVE-2026-25884, CVE-2026-27596, CVE-2026-27631 + fluidsynth: CVE-2025-56225 + freerdp: CVE-2024-32661, CVE-2026-23530, CVE-2026-23531, + CVE-2026-23532, CVE-2026-23533, CVE-2026-23534, CVE-2026-23948, + CVE-2026-24675, CVE-2026-24676, CVE-2026-24679, CVE-2026-24681, + CVE-2026-24682, CVE-2026-24683 + freetype: CVE-2026-23865 + graphicsmagick, CVE-2025-27796 + igmpproxy: CVE-2025-50681 + imagemagick: CVE-2026-22770, CVE-2026-23874, CVE-2026-23876, + CVE-2026-24481, CVE-2026-25638, CVE-2026-25794, CVE-2026-25795, + CVE-2026-25796, CVE-2026-25798, CVE-2026-25799, CVE-2026-25897, + CVE-2026-25989, CVE-2026-26066, CVE-2026-26283, CVE-2026-26284, + CVE-2026-26983 + jasper: CVE-2025-8836, CVE-2025-8837 + libsoup3: CVE-2025-14523 + libssh: CVE-2025-14821, CVE-2026-0964, CVE-2026-0965, CVE-2026-0966, + CVE-2026-0967, CVE-2026-0968 + libtpms: CVE-2026-21444 + mupdf: CVE-2026-25556 + netsnmp: CVE-2025-68615 + patch: CVE-2018-6952, CVE-2019-20633 + postgresql: CVE-2026-2003, CVE-2026-2004, CVE-2026-2005, CVE-2026-2006 + python-multipart: CVE-2026-24486 + rtl_433: CVE-2025-34450 + squid: CVE-2025-62168 + tinyproxy: CVE-2025-63938 + vim: CVE-2026-25749, CVE-2026-26269 + wpewebkit: CVE-2025-31273, CVE-2025-31278, CVE-2025-43211, + CVE-2025-43212, CVE-2025-43216, CVE-2025-43227, CVE-2025-43228, + CVE-2025-43240, CVE-2025-43265, CVE-2025-43272, CVE-2025-43342, + CVE-2025-43343, CVE-2025-43356, CVE-2025-43368, CVE-2025-6558 + + Infrastructure updates/fixes: + + linux: make license option visible for _CUSTOM_VERSION as well + support/testing/run-tests: fix Debian testing/unstable + + Updated / fixed packages: botan, c-ares, clamav, containerd, cups, + docker, dtc, exiv2, faketime, flashbench, freerdp, freetype, + graphicsmagick, igmpproxy, imagemagick, jasper, libsoup3, libssh, + libtpms, libvips, libvirt, libzlib, mpir, mupdf, netsnmp, patch, poco, + postgresql, python3, python-multipart, qemu, rtl_433, samba4, snort, + squid, tinyproxy, util-linux, vim, webkitgtk, wireshark, wmctrl, + wpewebkit + + Removed packages: qemu (cris target), python3 (ossaudiodev) + +2025.11.2, released February 20, 2026 + + avahi: CVE-2021-3468, CVE-2023-38469, CVE-2023-38470, CVE-2023-38471, + CVE-2023-38472, CVE-2023-38473, CVE-2024-52615, CVE-2024-52616, + CVE-2025-68276, CVE-2025-68468, CVE-2025-68471, CVE-2026-24401 + bind: CVE-2025-13878 + busybox: CVE-2025-46394, CVE-2025-60876 + expat: CVE-2026-24515, CVE-2026-25210 + glibc: CVE-2025-15281, CVE-2026-0861, CVE-2026-0915 + gnutls: CVE-2025-14831, CVE-2026-1584 + go: CVE-2025-61732, CVE-2025-68121, CVE-2025-61728, CVE-2025-61726, + CVE-2025-68121, CVE-2025-61731, CVE-2025-61730 + gpsd: CVE-2025-67268, CVE-2025-67268 + haproxy: CVE-2025-11230 + intel-microcode: CVE-2024-24853, CVE-2025-31648 + libopenssl: CVE-2025-11187, CVE-2025-15467, CVE-2025-15468, + CVE-2025-66199, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, + CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796 + libpng: CVE-2026-22695, CVE-2026-22801, CVE-2026-25646 + libtasn1: CVE-2025-13151 + libvpx + linux-pam: CVE-2024-10963 + nginx: CVE-2025-53859 + nodejs: CVE-2025-27210, CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, + CVE-2025-59465, CVE-2025-59466, CVE-2026-21637 + python3: gh-144125, gh-143935, gh-143925, gh-143919, gh-143916 + python-django: CVE-2025-13473, CVE-2025-14550, CVE-2026-1207, + CVE-2026-1285, CVE-2026-1287, CVE-2026-1312 + python-urllib3: CVE-2026-21441 + strongswan: CVE-2025-62291 + tor: TROVE-2025-016 + vim: CVE-2025-66476 + webkitgtk + + Infrastructure updates/fixes: + + arm-trusted-firmware, at91bootstrap3, barebox, linux, opensbi, optee-os, + uboot: Add support for custom license files + config-fragments/autobuild: drop a number of duplicated toolchains + generate-cyclonedx: fix dependencies + Makefile: add check-package-external target + pkg-stats: add -N/--needs-update option + pkg-stats: fix RuntimeError with python 3.14 asyncio + relocate-sdk.sh: pre-calculate files in need of relocation + system/Config.in: do not reference md5 for sha256 option + testing/run-tests: specify multiprocessing method + testing: fix SdbusModemmanager/SdbusNetworkmanager duplicate test name + testing: python-requests: new runtime test + testing: test_python.py: disable interpreter colors + testing: test_python_sdbus_modemmanager: remove unneeded systemd vconsole + testing/tests/package/test_firewalld: use ext2 instead of cpio + + Updated / fixed packages: aardvark-dns, asterisk, at91bootstrap3, avahi, + berkeleydb, bind, bitcoin, blake3, brltty, brotli, busybox cryptsetup, + dash, dc3dd, docker-engine, easy-rsa, efl, ell, expat, frr, glibc, + gnutls, go, gpsd, grub2, haproxy, igmpproxy, intel-microcode, + kvm-unit-tests, libcec, libbsd, libcdio-paranoia, libcurl, libgphoto2, + libgpiod2, libite, libopenssl, libpng, libtasn1, libucl, libvpx, + libwebsockets, linux, linux-headers, linux-pam, localedef, lockdev, + m4, manual, mcelog, mesa3d, mp4v2, mpg123, mpir, mupdf, netdata, + netsniff-ng, nginx, nodejs, parprouted, php, php-lua, pkg-utils, podman, + python3, python-django, python-jinja2, python-urllib3, qemu, rp-pppoe, + rust-bindgen, safeclib, samba4, sane-airscan, screen, shadow, shapelib, + spandsp, squeezelite, strongswan, swig, syslog-ng, systemd, tor, uboot, + uclibc, uftp, util-linux, vim, vsftpd, webkitgtk, wireless-regdb, + xmlstarlet, zeek + + Removed packages: criu, cvs, dbus-triggerd, dvdrw-tools, libsvg, libsvg-cairo, lockdev, gconf, + +2025.11.1, released January 20, 2026 + + Important / security related fixes: + + apache: CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, + CVE-2025-66200 + cryptsetup + dropbear: CVE-2025-14282, CVE-2019-6111 + exim: CVE-2025-67896 + gnupg2 + imagemagick: CVE-2025-66628 + libarchive + libcoap: CVE-2025-59391, CVE-2025-65493, CVE-2025-65494 + CVE-2025-65495, CVE-2025-65496, CVE-2025-65497, CVE-2025-65498, + CVE-2025-65499, CVE-2025-65500, CVE-2025-65501 + libcurl: CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, + CVE-2025-14819, CVE-2025-15079, CVE-2025-15224 + libfcgi: CVE-2025-23016. + libfreeimage: CVE-2019-12211, CVE-2019-12213, CVE-2020-24292, + CVE-2020-24293, CVE-2020-24295, CVE-2021-33367, CVE-2021-40263, + CVE-2021-40266, CVE-2023-47995, CVE-2023-47997 + libpng: CVE-2025-66293 + liburiparser: CVE-2025-67899 + libxslt: CVE-2025-7424, CVE-2025-9714, CVE-2025-11731 + linenoise: CVE-2025-9810 + perl: CVE-2025-40909 + php: CVE-2025-14177, CVE-2025-14178, CVE-2025-14180 + python-django: CVE-2025-13372, CVE-2025-64460 + python-filelock: CVE-2025-68146 + python-fonttools: CVE-2025-66034 + python-urllib3: CVE-2025-66471, CVE-2025-66418 + unbound: CVE-2025-11411 + vlc + xserver_xorg-server: CVE-2025-62229, CVE-2025-62230, + CVE-2025-62231 + xwayland: CVE-2025-62229, CVE-2025-62230, CVE-2025-62231 + + Infrastructure updates/fixes: + + - pkg-stats use HEAD request & unique HTTP user-agent + - cve-check: don't fail with unknown CVE + - generate-cyclonedx: support 'resolved_with_pedigree' + - testing: add host bin dir to PATH + - testing: add tests for FIT hash support in package/uboot-tools + - testing: add libiio python bindings runtime test + - testing: ddrescue: use dmsetup from lvm2 + - testing: ddrescue: use f-string for test config + - testing: add tio runtime test + - add 'CVE:' trailer in various patches + - add md5 hash and update tarball url to various python packages + - testing: ltp-testsuite: replace runltp by kirk + - testing: new kvmtool runtime test + - gitignore: ignore utils/brmake log output named `br.log` + - testing: add opus-tools runtime test + - testing: add flac runtime test + - testing: test_xen: add block + + Updated / fixed packages: apache, arm-trusted-firmware, atf, audit, + bitcoin, boost, busybox, cage, cmake, collectl, cppcms, cpulimit, + cryptsetup, dbus, dmraid, dropbear, efl, embiggen-disk, evilwm, exim, + ficl, fio, fluent-bit, fontconfig, glibc, gnupg2, grpc, gvfs, icu, + imagemagick, irqbalance, iwd, kvmtool, ledmon, libarchive, libcoap, + libconfig, libcpprestsdk, libcurl, libdill, libdnet, libfcgi, libfreeimage, + libgit2, libgtk3, libgtk4, libiio, libmbus, libpng, libselinux, libtirpc, + libupnp, liburiparser, libvncserver, libxslt, linenoise, linux-tools, + lttng-modules, lugaru, matchbox-fakekey, matchbox-keyboard, matchbox-lib, + matchbox-panel, mender-update-modules, mesa3d, mosh, nfs-utils, open-lldp, + opencv4, opencv4-contrib, openjdk, perl, perl-dbd-mysql, perl-mozilla-ca, + php, pigz, pixman, python-brotli, python-can, python-certifi, python-django, + python-filelock, python-fonttools, python-pyqt5, python-urllib3, python3, + qt5enginio, qt5webkit, qt6base, racehound, rdesktop, rpcbind, rpi-firmware, + rtl8192eu, rtl8723bu, rtl8723ds, rtl8821au, rtl8821cu, rtl8822cs, samba4, + skopeo, softether, softhsm2, spice, ssdp-responder, sway, tio, trinity, + tzdata, uboot, uboot-tools, uclibc, unbound, utfcpp, v4l2loopback, vim, vlc, + xdriver_xf86-video-intel, xen, xinetd, xlib_libxshmfence, + xserver_xorg-server, xvkbd, xwayland, zic, zxing-cpp + + Removed packages: opencv3 'protobuf', opencv3 'ffmpeg', + libdnet 'python', rpi-firmware 'vcdbg' + +2025.11, released December 11th, 2025 + + Fixes all over the tree. + + linux: Default to 6.18 for runtime kernel and kernel headers, + drop the now EOL 5.4.x series. + + Updated/fixed packages: apache, audit, cryptodev-linux, + dmraid, ficl, glibc, go, intel-mediadriver, intel-vpl-gpu-rt, + kbd, libcap, libdbi, libgit2, libpng, libtirpc, libxslt, + lugaru, mosh, pigz, podman, python-fonttools, python-urllib3, + python3, racehound, rdesktop, rtl8188eu, softhsm, sqlite, + strace, unbound, unzip, xapp_xkbutils, + xdriver_xf86-video-intel, xl2tp, xserver_xorg-server, xwayland + +2025.11-rc2, released November 30th, 2025 + + Fixes all over the tree. + + Infrastructure: support/scripts/check-merged (introduced in + 2025.11-rc1) no longer relies on getopt from util-linux + + Defconfigs: pine64 star: Update U-Boot and Linux kernel to fix + builds with GCC 14.x + + Updated/fixed packages: 18xx-ti-utils, depot-tools, e2fsprogs, + enscript, fio, gnutls, intel-mediadriver, intel-vpl-gpu-rt, + ledmon, libpng, libteam, lmbench, mongoose, netsnmp, + nss-pam-ldapd, open-plc-utils, oprofile, pdmenu, php-apcu, + php-pecl-dbus, php-xdebug, php-yaml, python-flask-restx, + python-pysocks, python-starlette, sane-backends, sbc, sdl, + stress-ng, swipl, syslinux, time, tmux, tor, uboot-tools, + woff2, xfsprogs, yaml-cpp + + Removed packages: libargtable2, starfive-spltool + +2025.11-rc1, released November 20th, 2025 + + Fixes all over the tree and new features. + + Infrastructure: + + - Support merged /usr/sbin/ (E.G. sbin a symlink to bin rather + than separate directories), which is required by systemd + 256+ + + - support/scripts/cve-check can now be used to enrich a SBOM + in CycloneDX format (as generated by + utils/generate-cyclonedx) with vulnerability analysis from + the NVD database. + + Dropped a number of old and unmaintained packages and external + toolchains. + + New defconfigs: Compulab IOT-GATE-iMX8 EBBR, QEMU x86-64 EFI + + Removed defconfigs: at91sam9260eknf, atmel_sama5d3xek, + roseapplepi + + New packages: broot, bvi, go-bootstrap-stage4, libpam-pkcs11, + llama-cpp, nnn, python-crccheck, python-fs, python-patch-ng, + python-pyfatfs, python-scp, python-whitenoise, snapboot, wmenu + + Removed packages: aufs, aufs-util, axfsutils, bctoolbox, + belle-sip, belr, dmenu-wayland, dvbsnoop, + ev3dev-linux-drivers, expect, fbtft, gtk2-engines, gtkperf, + leafpad, lesstif, libbson, libglade, libgtk2, libjwt, libsexy, + linphone, logsurfer, mediastreamer, metacity, mongrel2, ola, + ortp, procrank_linux, ramspeed, sylpheed + +2025.08.3, released December 11, 2025 + + Important / security related fixes: + + - asterisk: CVE-2025-1131, CVE-2025-57767, CVE-2025-49832, + CVE-2025-47780, CVE-2025-47779 + - gnutls: CVE-2025-9820 + - libpng: CVE-2025-64505, CVE-2025-64506, CVE-2025-64720, CVE-2025-65018 + - luksmeta: CVE-2025-11568 + - mariadb: CVE-2025-30693, CVE-2025-30722, CVE-2023-52969, + CVE-2023-52970, CVE-2023-52971 + - openvpn: CVE-2025-13086 + - postgresql: CVE-2025-12817, CVE-2025-12818 + - python-django: CVE-2025-64458, CVE-2025-64459 + - python-startlette: GHSA-7f5h-v6xp-fcq8 + + Infrastructure updates/fixes: + + - New script support/scripts/cve-check to enricht CycloneDX SBoM with + CVE information from NVD database. + + Updated / fixed packages: 18xx-ti-utils, asterisk, enscript, gnutls, + libpng, libroxml, libteam, linux-headers, luksmeta, mariadb, nbd, neard, + nss-pam-ldapd, open-plc-utils, openjdk, openjdk-bin, openvpn, oprofile, + pdmenu, perl-net-ssleay, postgresql, python-django, python-starlette, + redis, sane-bacends, sbc, sdbusplus, sdl, swipl, tailscale, thermald, + tmux, tor + + Removed packages: bctoolbox, belle-sip, belr, linphone, mediastreamer, + mongrel2, ortp + +2025.08.2, released November 20, 2025 + + Important / security related fixes: + + - bind: CVE-2025-8677, CVE-2025-40778, CVE-2025-40780 + - dante: CVE-2024-54662 + - erlang: CVE-2024-53846, CVE-2025-4748, CVE-2025-26618, CVE-2025-30211, + CVE-2025-32433, CVE-2025-46712, CVE-2025-48038, + CVE-2025-48039, CVE-2025-48040, CVE-2025-48041 + - hostapd: CVE-2025-24912 + - imagemagick: CVE-2025-62171 + - iptraf-ng: CVE-2024-52949 + - libarchive: CVE-2025-25724 + - libglib2: CVE-2024-54662 + - libvips: CVE-2025-29769, CVE-2025-59933 + - libvpx: CVE-2025-5283 + - libxslt: CVE-2025-24855, CVE-2024-55549 + - mbedtls: CVE-2025-54764, CVE-2025-59438 + - modsecurity2: CVE-2025-52891, CVE-2025-54571 + - netdata: CVE-2023-22496, CVE-2023-22497 + - podman: CVE-2025-9566 + - poppler: CVE-2024-6239, CVE-2024-56378, CVE-2025-32364, + CVE-2025-32365, CVE-2025-43903, CVE-2025-50420, + CVE-2025-52886 + - python3: gh-139312, gh-139700, gh-139400, gh-135661, gh-135661, + gh-102555, gh-135462, gh-118350, gh-86155 + - python-webpy: CVE-2025-3818 + - redis: CVE-2025-46817, CVE-2025-46818, CVE-2025-46819, CVE-2025-49844 + - samba: CVE-2025-3818, CVE-2025-10230 + - shairport-sync: Upstream security fixes without CVE + - squid: CVE-2025-59362 + - suricata: CVE-2024-37151, CVE-2024-38535 + - tpm2-tss: CVE-2024-29040 + - xerces: CVE-2024-23807 + - zabbix: CVE-2025-27231, CVE-2025-27236, CVE-2025-27238, CVE-2025-49641 + - zip: CVE-2018-13410 + + Infrastructure updates/fixes: + + - Improved matching of CPE ID with NVD database, resulting in more accurate + identification of CVEs. + - brmake: avoid garbled output with top-level parallel build + + Updated / fixed packages: 4th, audit, bind, cmake, crun, dante, + ebtables, erlang, freeradius-server, freerdp, gpsd, gstd, hostapd, + imagemagick, iptraf-ng, ledmon, libarchive, libcurl, libdbi-drivers, + libdisplay-info, libglib2, libgphoto2, libgtk3, libheif, libiconv, + libsemanage, libshout, libsolv, libtpms, libvips, libvpx, libwpe, + libxslt, linux, linux-headers, live555, mbedtls, micropython, + mjpg-streamer, modsecurity2, netdata, podman, poppler, python3, + python-flask-cors, python-webpy, quota, qt6multimedia, redis, refpolicy, + samba4, shairport-sync, selinux-python, sexpect, siproxd, sqlite, squid, + suricata, tor, tpm2-tss, waffle, webkitgtk, wireless-regdb, wpewebkit, + xerces, zabbix, zip + + Removed package: ramspeed + + Boards updated / fixed: andes_ae350_45, beaglebone, beagleboneai, + cubieboard1, cubieboard2, imx6ulz_bsh_smm_m2, imx8mn_bsh_smm_s2, + imx8mn_bsh_smm_s2_pro, olimex_a20_olinuxino_lime*, stm32f429_disco_xip, + stm32f746_disco_sd, stm32f769_disco_sd, stm32mp1*_dk*, ti_am62x_sk + + Test Improvements: + + - Capture output of failing commands on host. + 2025.08.1, released October 11, 2025 Important / security related fixes: @@ -512,6 +1871,957 @@ - netsnmp: unexpected header length in /proc/net/snmp... https://gitlab.com/buildroot.org/buildroot/-/issues/110 +2025.02.18, released September 10, 2026 + + Important / security related fixes: + + avro-c: (no CVE assigned) + clamav: CVE-2026-20031, CVE-2026-20213, CVE-2026-20214, CVE-2026-20215, + CVE-2026-20216, CVE-2026-20217, CVE-2026-20243, CVE-2026-20244, + CVE-2026-20339, CVE-2026-20345, CVE-2026-20346, CVE-2026-20347, + CVE-2026-20348 + dnsmasq: CVE-2026-12725, CVE-2026-12969 + erlang: CVE-2026-21620, CVE-2026-23941, CVE-2026-23942, CVE-2026-23943, + CVE-2026-28810, CVE-2026-32147, CVE-2026-42789, CVE-2026-42790 + exiv2: CVE-2026-49275, CVE-2026-68546, CVE-2026-68547, + GHSA-3695-mjv8-3r52, GHSA-9v3x-mhg4-wwv2, GHSA-fgw8-p7pr-37cp, + GHSA-hxph-pv7w-8649, GHSA-jcgh-p9v3-pw6j, GHSA-vg6c-9f6h-4x5q + expat: CVE-2026-66046, CVE-2026-76641, CVE-2026-76956, CVE-2026-76957 + glibc: CVE-2026-18374, CVE-2026-19499, CVE-2026-5435, CVE-2026-6238, + CVE-2026-6368, CVE-2026-6791, CVE-2026-77117, CVE-2026-80489 + go: CVE-2026-33818, CVE-2026-39821, CVE-2026-46600, CVE-2026-56853, + CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862, + CVE-2026-56864, CVE-2026-56865 + haproxy: (no CVE assigned) + hostapd: CVE-2026-58374 + libcurl: CVE-2026-13608, CVE-2026-18924, CVE-2026-19931, + CVE-2026-80229, CVE-2026-80230, CVE-2026-80231, CVE-2026-80255, + CVE-2026-82208, CVE-2026-82209 + libde265: GHSA-mm7m-v26f-wf8x, GHSA-xp3h-6f5r-8cxp + libgit2: CVE-2026-5917 + libheif: CVE-2026-84450, CVE-2026-84451, GHSA-24wx-9w62-c96w, + GHSA-2jg2-4ch7-h545, GHSA-4h82-g446-83fm, GHSA-4jqm-2x34-6f6r, + GHSA-73p7-m7gg-w2jv, GHSA-8857-r8x5-7499, GHSA-8fmq-r4pf-7m57, + GHSA-9rj8-5mp5-26c9, GHSA-g89c-p67h-r497, GHSA-gh5q-69gg-c964, + GHSA-hh47-fhqr-cj2r, GHSA-j264-xvrp-5v7q, GHSA-jc8f-p23p-5hjg, + GHSA-mw6f-29j3-76f4, GHSA-p58j-h3vm-3fp5, GHSA-w7mc-p8jc-p853, + GHSA-x8r2-mggj-j6wr, GHSA-x8xm-cm2c-cfc8, GHSA-xw34-mjcp-jqh8 + libldns: CVE-2026-10846 + libopenssl: CVE-2026-14456, CVE-2026-14457, CVE-2026-18798, + CVE-2026-54874, CVE-2026-63072, CVE-2026-63073, CVE-2026-63074, + CVE-2026-63075, CVE-2026-63076, CVE-2026-75803 + libssh2: CVE-2025-15661, CVE-2026-66032, CVE-2026-66033, + CVE-2026-66034, CVE-2026-66035 + libxml2: CVE-2026-11979 + localedef: CVE-2026-18374, CVE-2026-19499, CVE-2026-5435, + CVE-2026-6238, CVE-2026-6368, CVE-2026-6791, CVE-2026-77117, + CVE-2026-80489 + mongoose: CVE-2026-63626, CVE-2026-73251, CVE-2026-73252, + CVE-2026-73260, CVE-2026-73261 + nodejs: CVE-2026-56846, CVE-2026-56847, CVE-2026-56848, CVE-2026-56850, + CVE-2026-58039, CVE-2026-58040, CVE-2026-58042, CVE-2026-58043, + CVE-2026-58044, CVE-2026-58045 + openvpn: CVE-2026-84732 + proftpd: CVE-2026-44331 + python-avro: (no CVE assigned) + redis: (no CVE assigned) + rsyslog: CVE-2026-19654 + udisks: CVE-2026-7867 + unbound: CVE-2026-14586, CVE-2026-32665, CVE-2026-40622, + CVE-2026-40691, CVE-2026-41637, CVE-2026-42955, CVE-2026-44621, + CVE-2026-44687, CVE-2026-44690, CVE-2026-46582, CVE-2026-50045, + CVE-2026-50046, CVE-2026-50243, CVE-2026-50248, CVE-2026-50251, + CVE-2026-50252, CVE-2026-52863, CVE-2026-54478, CVE-2026-55708, + CVE-2026-55717, CVE-2026-55973, CVE-2026-55990, CVE-2026-55991, + CVE-2026-56416, CVE-2026-56444 + wget: CVE-2026-58469, CVE-2026-58470, CVE-2026-58471 + + Toolchain: + + - linux-headers: bump to 5.10.269, 5.15.220, 6.1.187, 6.6.156, 6.12.109 + - powerpc: correctly track libquadmath + + Infrastructure updates/fixes: + + - Various fixes to the runtime tests + - manual: document move of patchwork to patchwork.buildroot.org + - manual: document the LTS release cadence correctly + - Fix setting of stack size for FLAT binaries + + Updated defconfigs: qemu_xtensa_lx60* + + Updated / fixed packages: avro-c, bind, clamav, collectd, dejavu, + dnsmasq, dpdk, dracut, erlang, exiv2, expat, gcc-bare-metal, gdb, + glibc, go, haproxy, hostapd, libcurl, libde265, libgit2, libheif, + libldns, libopenssl, libssh2, libxkbcommon, libxml-parser-perl, + libxml2, linux, linux-headers, linux-tools, localedef, mongoose, + mosquitto, newt, nodejs, opencv4, openssh, openvpn, perl, powerpc, + proftpd, python-avro, python-charset-normalizer, qt5knx, + qt6declarative, redis, rsyslog, taglib, uclibc, udisks, unbound, vim, + webkitgtk, wget, wine, wireless-regdb + +2025.02.17, released August 23, 2026 + + Important / security related fixes: + + apr-util: CVE-2025-49506, CVE-2026-32327, CVE-2026-34191, + CVE-2026-34501, CVE-2026-34502 + bind: CVE-2026-10723, CVE-2026-10822, CVE-2026-11331, CVE-2026-11605, + CVE-2026-11622, CVE-2026-11721, CVE-2026-12617, CVE-2026-13204, + CVE-2026-13321 + botan: CVE-2026-32877, CVE-2026-32883, CVE-2026-32884, CVE-2026-34580, + CVE-2026-34582 + busybox: CVE-2023-39810, CVE-2024-58251, CVE-2026-26157, + CVE-2026-26158, CVE-2026-29004 + containerd: CVE-2026-35469, CVE-2026-46680, CVE-2026-47262, + CVE-2026-53488 + dracut: CVE-2026-6893 + dropbear: (no CVE assigned) + exim: GCVE-25-2026-07-45-1, CVE-2026-66140, CVE-2026-66141 + expat: CVE-2026-72522 + go: CVE-2026-39822 + intel-microcode: CVE-2025-31936, CVE-2025-31938, CVE-2025-35973, + CVE-2026-20707, CVE-2026-20713, CVE-2026-20716, CVE-2026-20760, + CVE-2026-20917 + libarchive: (no CVE assigned) + libass: CVE-2026-61626, CVE-2026-61627 + libgcrypt: CVE-2026-41989 + libgit2: CVE-2026-53583, CVE-2026-53584, CVE-2026-53585, + CVE-2026-53586, CVE-2026-53587 + libheif: CVE-2026-62289, CVE-2026-62291, CVE-2026-62292, + CVE-2026-62377, GHSA-46rp-pcq2-rpmr, GHSA-73p7-m7gg-w2jv, + GHSA-9ww4-9v47-m7pj, GHSA-jc8f-p23p-5hjg, GHSA-xpw3-9rhw-482x + libmodsecurity: CVE-2026-52747, CVE-2026-52761 + libssh: CVE-2026-15370, CVE-2026-59843, CVE-2026-59844, CVE-2026-59845, + CVE-2026-59846, CVE-2026-59847, CVE-2026-59848, CVE-2026-59849, + CVE-2026-59850 + memcached: (no CVE assigned) + ntfs-3g: CVE-2026-42616, CVE-2026-42617, CVE-2026-42618, + CVE-2026-46569, CVE-2026-46570, CVE-2026-46571, CVE-2026-46572, + CVE-2026-56135, CVE-2026-56136 + openssh: CVE-2026-59995, CVE-2026-59996, CVE-2026-59997, + CVE-2026-59998, CVE-2026-59999, CVE-2026-60000, CVE-2026-60001, + CVE-2026-60002 + openvpn: CVE-2026-63649 + perl: CVE-2026-13221, CVE-2026-57432, CVE-2026-8376 + php: CVE-2026-17543, CVE-2026-7260, CVE-2026-9672 + postgresql: CVE-2026-14662, CVE-2026-14663, CVE-2026-14664, + CVE-2026-14666, CVE-2026-14668, CVE-2026-14669, CVE-2026-14670, + CVE-2026-14671, CVE-2026-14672, CVE-2026-14673, CVE-2026-14676, + CVE-2026-14677, CVE-2026-14678, CVE-2026-14679, CVE-2026-14680, + CVE-2026-14681, CVE-2026-15741, CVE-2026-15742, CVE-2026-16238, + CVE-2026-16239, CVE-2026-16241, CVE-2026-18024, CVE-2026-18408, + CVE-2026-19385, CVE-2026-6464, CVE-2026-6469, CVE-2026-6470, + CVE-2026-6471 + python3: CVE-2025-13462, CVE-2026-15308, CVE-2026-2297, CVE-2026-3644, + CVE-2026-4224, CVE-2026-4519, CVE-2026-7210 + redis: (no CVE assigned) + rsync: CVE-2026-53783, CVE-2026-53784, CVE-2026-53785, CVE-2026-53786, + CVE-2026-53788, CVE-2026-53789, CVE-2026-53790, CVE-2026-53791, + CVE-2026-53792, CVE-2026-53793, CVE-2026-53794, CVE-2026-53795, + CVE-2026-53796, CVE-2026-53797, CVE-2026-53798, CVE-2026-53799, + CVE-2026-53800, CVE-2026-53801, CVE-2026-53802, CVE-2026-53803, + CVE-2026-70452, CVE-2026-70453, CVE-2026-70454, CVE-2026-70455, + CVE-2026-70456, CVE-2026-70457, CVE-2026-70458, CVE-2026-70459, + CVE-2026-70460, CVE-2026-70461, CVE-2026-70462, CVE-2026-70463, + CVE-2026-70464 + samba4: CVE-2026-58216, CVE-2026-58218, CVE-2026-58221, CVE-2026-58222, + CVE-2026-58224, CVE-2026-6949 + screen: (no CVE assigned) + ser2net: GHSA-cgh5-39mg-vhfr + socat: CVE-2026-56123 + sqlite: CVE-2026-1182, CVE-2026-11822, CVE-2026-11824 + stunnel: CVE-2026-70367, CVE-2026-70368 + syslog-ng: CVE-2026-39879 + util-linux: CVE-2026-13595 + vim: CVE-2026-28417, CVE-2026-28418, CVE-2026-28419, CVE-2026-28420, + CVE-2026-28421, CVE-2026-28422, CVE-2026-32249, CVE-2026-33412, + CVE-2026-34714, CVE-2026-34982, CVE-2026-35177, CVE-2026-39881, + CVE-2026-41411, CVE-2026-42307, CVE-2026-44656, CVE-2026-45130, + CVE-2026-46483, CVE-2026-47162, CVE-2026-47167, CVE-2026-52858, + CVE-2026-52859, CVE-2026-52860, CVE-2026-55693, CVE-2026-55892, + CVE-2026-55895, CVE-2026-57451, CVE-2026-57452, CVE-2026-57453, + CVE-2026-57455, CVE-2026-57456, CVE-2026-59856, CVE-2026-59857, + CVE-2026-59858 + wpa_supplicant: (no CVE assigned) + xlib_libXfont2: CVE-2026-56001, CVE-2026-56002, CVE-2026-56003 + xserver_xorg-server: CVE-2026-55999, CVE-2026-56000 + xwayland: CVE-2026-55999, CVE-2026-56000 + + Toolchain: + + - toolchain-buildroot: drop Synopsys ARC specific GCC, binutils and gdb + - toolchain-external: drop Synopsys ARC toolchain + - linux-headers:: bump to 5.10.265, 5.15.216, 6.1.183, 6.6.152, + 6.12.104 + + Infrastructure updates/fixes: + + - Add license information for skeleton packages + - Make docker image reproducible again + - New runtime tests for guile, libgpiod2, mdnsd, php, python-pydal + + Updated defconfigs: acmesystems_acqua_a5_* + + Removed defconfigs: acmesystems_aria_g25_{128mb, 256mb}, + acmesystems_arietta_g25_{128mb, 256mb}, s6lx9_microboard, ts4900, + ts5500 + + Removed packages: argparse, ts4900-fpga + + Updated / fixed packages: apache, apr-util, arm-trusted-firmware, + at-spi2-core, bind, binutils, botan, busybox, cantarell, cifs-utils, + containerd, cramfs, dbus-broker, dracut, drop, dropbear, + environment-setup, exim, expat, glibc, go, guile, gvfs, + ifupdown-scripts, initscripts, intel-microcode, libarchive, libass, + libcamera, libgcrypt, libgee, libgit2, libglib2, libgpg-error, + libgtk4, libgudev, libheif, libmicrohttpd, libmodsecurity, libpeas, + librsvg, libsecret, libsoup, libsoup3, libssh, linux, linux-headers:, + localedef, mbedtls, memcached, mini-snmpd, nettle, ntfs-3g, ogre, + open62541, openblas, openssh, openvpn, optee-os, p11-kit, pahole, + perl, php, postgresql, python-paho-mqtt, python-pydal, python-web2py, + python3, qt6, quickjs, redis, rsync, rygel, samba4, screen, ser2net, + socat, sqlite, stunnel, syslog-ng, uclibc, urandom-scripts, usbutils, + util-linux, vim, wpa_supplicant, xlib_libXfont2, xserver_xorg-server, + xwayland, xz + +2025.02.16, released July 15, 2026 + + Important / security related fixes: + + apache: CVE-2026-29167, CVE-2026-29170, CVE-2026-34355, CVE-2026-34356, + CVE-2026-42535, CVE-2026-42536, CVE-2026-43951, CVE-2026-44119, + CVE-2026-44185, CVE-2026-44186, CVE-2026-44631, CVE-2026-48913, + CVE-2026-49975 + asterisk: GHSA-3g56-cgrh-95p5, GHSA-3rhj-hhw7-m6fw, + GHSA-4pgv-j3mr-3rcp, GHSA-589g-qgf8-m6mx, GHSA-746q-794h-cc7f, + GHSA-8jhw-m2hg-vp3h, GHSA-8jw3-ccr9-xrmf, GHSA-g8q2-p36q-94f6, + GHSA-h5hv-jmgj-92q2, GHSA-j2mm-57pq-jh94, GHSA-mxgm-8c6f-5p8f, + GHSA-ph27-3m5q-mj5m, GHSA-q9fr-m7g8-6ph5, GHSA-qf8j-jp7h-c5hx, + GHSA-r6c2-hwc2-j4mp, GHSA-vfhr-r9x9-c687, GHSA-vrfp-mg3q-3959, + GHSA-wcvv-g26m-wx5c, GHSA-x348-j6c9-77f3, GHSA-xgj6-2gc5-5x9c + avahi: CVE-2026-34933 + bind: (no CVE assigned), CVE-2026-3593 + cpp-httplib: CVE-2026-45352, CVE-2026-45372, CVE-2026-46527 + cups-filters: CVE-2025-64503 + expat: CVE-2026-50219, CVE-2026-56131, CVE-2026-56132, CVE-2026-56403, + CVE-2026-56404, CVE-2026-56405, CVE-2026-56406, CVE-2026-56407, + CVE-2026-56408, CVE-2026-56409, CVE-2026-56410, CVE-2026-56411, + CVE-2026-56412 + ghostscript: (no CVE assigned) + glibc: CVE-2026-5450, CVE-2026-5928 + icu: CVE-2025-5222 + imagemagick: CVE-2026-48724, CVE-2026-48733, CVE-2026-48734, + CVE-2026-48994, CVE-2026-49218, CVE-2026-49219, CVE-2026-53460, + CVE-2026-53461, CVE-2026-53462, CVE-2026-53463, CVE-2026-53464, + CVE-2026-53465 + jq: CVE-2026-32316, CVE-2026-33947, CVE-2026-33948, CVE-2026-39979, + CVE-2026-40164, CVE-2026-40612, CVE-2026-41256, CVE-2026-41257, + CVE-2026-43894, CVE-2026-43896, CVE-2026-44777, CVE-2026-49839, + CVE-2026-54679 + libarchive: (no CVE assigned) + libcurl: CVE-2026-10536, CVE-2026-11352, CVE-2026-11564, + CVE-2026-11586, CVE-2026-11856, CVE-2026-12064, CVE-2026-8286, + CVE-2026-8458, CVE-2026-8924, CVE-2026-8925, CVE-2026-8926, + CVE-2026-8927, CVE-2026-8932, CVE-2026-9079, CVE-2026-9080, + CVE-2026-9545, CVE-2026-9546, CVE-2026-9547 + libevent: (no CVE assigned) + libglib2: CVE-2025-14087 + libgsasl: CVE-2026-48829 + libinput: CVE-2026-50292 + libopenssl: CVE-2026-34180, CVE-2026-34181, CVE-2026-34182, + CVE-2026-34183, CVE-2026-42764, CVE-2026-42766, CVE-2026-42767, + CVE-2026-42768, CVE-2026-42769, CVE-2026-42770, CVE-2026-45445, + CVE-2026-45446, CVE-2026-45447, CVE-2026-7383, CVE-2026-9076 + libssh2: CVE-2026-55199, CVE-2026-55200 + mariadb: CVE-2026-48163, CVE-2026-48165, CVE-2026-49261 + mesa3d: CVE-2026-40393 + mongoose: (no CVE assigned yet) + nginx: CVE-2026-42055, CVE-2026-48142 + openjpeg: CVE-2026-6192 + openvpn: CVE-2026-11771, CVE-2026-12932, CVE-2026-12996, + CVE-2026-13117, CVE-2026-13122, CVE-2026-13698 + php: CVE-2026-12184, CVE-2026-14355 + python-django: CVE-2026-35192, CVE-2026-35193, CVE-2026-48587, + CVE-2026-5766, CVE-2026-6873, CVE-2026-6907, CVE-2026-7666, + CVE-2026-8404 + python3: CVE-2026-11940, CVE-2026-9669 + redis: CVE-2026-23479, CVE-2026-23631, CVE-2026-25243 + squid: CVE-2026-33515, CVE-2026-33526, CVE-2026-47729, CVE-2026-50012 + sudo: CVE-2026-35535 + swupdate: CVE-2026-28525 + tiff: CVE-2026-36849 + tor: TROVE-2026-025, TROVE-2026-026. + util-linux: CVE-2025-14104, CVE-2026-27456, CVE-2026-53612, + CVE-2026-53613, CVE-2026-53614 + webkitgtk: CVE-2026-28847, CVE-2026-28883, CVE-2026-28901, + CVE-2026-28902, CVE-2026-28903, CVE-2026-28904, CVE-2026-28905, + CVE-2026-28907, CVE-2026-28942, CVE-2026-28946, CVE-2026-28947, + CVE-2026-28953, CVE-2026-28955, CVE-2026-28958, CVE-2026-43658, + CVE-2026-43660 + wolfssl: CVE-2026-10097, CVE-2026-10098, CVE-2026-10512, + CVE-2026-10592, CVE-2026-11310, CVE-2026-11703, CVE-2026-11999, + CVE-2026-12340, CVE-2026-55958, CVE-2026-55960, CVE-2026-55961, + CVE-2026-55962, CVE-2026-55964, CVE-2026-55967, CVE-2026-6091, + CVE-2026-6092, CVE-2026-6094, CVE-2026-6291, CVE-2026-6325, + CVE-2026-6329, CVE-2026-6330, CVE-2026-6331, CVE-2026-6412, + CVE-2026-6450, CVE-2026-6678, CVE-2026-6681, CVE-2026-6731, + CVE-2026-7511, CVE-2026-7531, CVE-2026-7532, CVE-2026-8720 + + Toolchain: + + - gcc: bump 14.x series to 14.4.0 + - glibc, localedef: security bump to version 2.41-143-gfc7a48bc9 + + Infrastructure updates/fixes: + + - support/testing Improve TestPythonPy3NetworkmanagerGoi + - generate-cyclonedx: fixup scp-style git sites + - support/testing: Fix test_gnupg2 + - support/testing: various internal refactorings + + Updated / fixed packages: apache, asterisk, avahi, bind, bind, + cpp-httplib, cpp-httplib, cups-filters, expat, gcc:, ghostscript, + glibc, hwdata, icu, imagemagick, jq, kodi-screensaver-rsxs, + libarchive, libcurl, libepoxy, libevent, libglib2, libglib2, + libglib2-bootstrap, libgsasl, libgsasl, libinput, libopenssl, + libssh2, libssh2, linux, mariadb, mdnsd, mesa3d, mongoose, mpd, + nginx, ntp, openjpeg, openrc, openvpn, php, python-django, python3, + python3, qt5, redis, rsync, ruby, shadow, shim, squid, squid, squid, + squid, strongswan, sudo, swupdate, tiff, tor, util-linux, util-linux, + util-linux, util-linux, util-linux, util-linux, webkitgtk, wolfssl + +2025.02.15, released June 16, 2026 + + Important / security related fixes: + + asterisk: GHSA-8fj4-fv9f-hjpc, GHSA-g88q-c2hm-q7p7, + GHSA-j29p-pvh2-pvqp, GHSA-x5pq-qrp4-fmrj + bind: CVE-2026-3039, CVE-2026-3592, CVE-2026-5946, CVE-2026-5950 + capnproto: CVE-2026-322, CVE-2026-32239, CVE-2026-32240 + cups-filters: CVE-2025-64524 + dnsmasq: CVE-2026-2291, CVE-2026-4890, CVE-2026-4891, CVE-2026-4892, + CVE-2026-4893, CVE-2026-5172 + dropbear: CVE-2019-6111, CVE-2026-35385 + exim: (no CVE assigned), CVE-2026-48840 + expat: CVE-2026-45186 + freeipmi: CVE-2026-50031 + glibc: CVE-2026-4046, CVE-2026-4437, CVE-2026-4438, CVE-2026-5450, + CVE-2026-5928 + go: (no CVE assigned), CVE-2025-61726, CVE-2025-61728, CVE-2025-61730, + CVE-2025-61731, CVE-2025-61732, CVE-2025-68121, CVE-2025-68121, + CVE-2026-25679, CVE-2026-27137, CVE-2026-27138, CVE-2026-27139, + CVE-2026-27140, CVE-2026-27142, CVE-2026-27143, CVE-2026-27144, + CVE-2026-32280, CVE-2026-32281, CVE-2026-32283, CVE-2026-32288, + CVE-2026-32289, CVE-2026-33810, CVE-2026-33811, CVE-2026-33814, + CVE-2026-39817, CVE-2026-39819, CVE-2026-39820, CVE-2026-39823, + CVE-2026-39825, CVE-2026-39826, CVE-2026-39836, CVE-2026-42499, + CVE-2026-42501 + go-bootstrap-stage5: CVE-2026-33811, CVE-2026-33814, CVE-2026-39817, + CVE-2026-39819, CVE-2026-39820, CVE-2026-39823, CVE-2026-39825, + CVE-2026-39826, CVE-2026-39836, CVE-2026-42499, CVE-2026-42501 + haveged: CVE-2026-41054 + imagemagick: CVE-2026-42326, CVE-2026-45031, CVE-2026-45358, + CVE-2026-45359, CVE-2026-45624, CVE-2026-45664, CVE-2026-46520, + CVE-2026-46521, CVE-2026-46522, CVE-2026-46523, CVE-2026-46557, + CVE-2026-46559 + intel-microcode: CVE-2025-35979 + libde265: CVE-2026-45382, CVE-2026-45383, GHSA-ccfw-29x7-rrx3, + GHSA-j2qq-x2xq-g9wr + libgpg-error: T8239 + libheif: CVE-2026-32738, CVE-2026-32739, CVE-2026-32740, + CVE-2026-32741, CVE-2026-32814, CVE-2026-32882, CVE-2026-3949, + CVE-2026-41069, CVE-2026-41071, CVE-2026-47178, CVE-2026-47247, + CVE-2026-47251, CVE-2026-47254, CVE-2026-47709, CVE-2026-47714, + GHSA-5hqq-636x-r3cr, GHSA-6x5f-qchq-cxqv, GHSA-jvmp-j3cw-84mh, + GHSA-r7qj-cg5r-r6vf + libmad: CVE-2017-837, CVE-2017-8372, CVE-2017-8373, CVE-2017-8374 + libmodsecurity: CVE-2026-30923, CVE-2026-42268 + libssh2: CVE-2026-7598 + liburiparser: CVE-2026-44927, CVE-2026-44928 + libusb: CVE-2026-23679, CVE-2026-47104 + libvncserver: CVE-2026-3285, CVE-2026-32853, CVE-2026-32854 + linux-pam: CVE-2025-6020 + mariadb: CVE-2026-34303, CVE-2026-3494, CVE-2026-44168, CVE-2026-44169, + CVE-2026-44170, CVE-2026-44171, CVE-2026-44172, CVE-2026-44173 + memcached: (no CVE assigned) + nginx: CVE-2026-40460, CVE-2026-40701, CVE-2026-42926, CVE-2026-42934, + CVE-2026-42945, CVE-2026-42946, CVE-2026-9256 + openssh: CVE-2025-61984, CVE-2025-61985, CVE-2026-35385, + CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, CVE-2026-35414 + php: CVE-2025-14179, CVE-2026-6722, CVE-2026-6735, CVE-2026-7258, + CVE-2026-7259, CVE-2026-7261, CVE-2026-7262, CVE-2026-7568 + postgresql: CVE-2026-6472, CVE-2026-6473, CVE-2026-6474, CVE-2026-6475, + CVE-2026-6476, CVE-2026-6477, CVE-2026-6478, CVE-2026-6479, + CVE-2026-6575, CVE-2026-6637, CVE-2026-6638 + putty: CVE-2026-48850, CVE-2026-48851, CVE-2026-48852 + python-urllib3: CVE-2026-44431, CVE-2026-44432 + python3: CVE-2026-3276, CVE-2026-7774, CVE-2026-8328 + radvd: CVE-2026-48715 + rsync: CVE-2026-29518, CVE-2026-43617, CVE-2026-43618, CVE-2026-43619, + CVE-2026-43620, CVE-2026-45232 + runc: CVE-2025-31133, CVE-2025-52565, CVE-2025-52881 + samba4: CVE-2026-1933, CVE-2026-2340, CVE-2026-3012, CVE-2026-3238, + CVE-2026-4408, CVE-2026-4480 + sdl2_image: CVE-2026-35444 + sed: CVE-2026-5958 + sshfs: CVE-2026-47187, CVE-2026-48711 + tor: TROVE-2026-013, TROVE-2026-014, TROVE-2026-015, TROVE-2026-016, + TROVE-2026-017, TROVE-2026-018, TROVE-2026-019, TROVE-2026-020, + TROVE-2026-021, TROVE-2026-022 + unbound: CVE-2026-32792, CVE-2026-33278, CVE-2026-40622, + CVE-2026-41292, CVE-2026-42534, CVE-2026-42923, CVE-2026-42944, + CVE-2026-42959, CVE-2026-42960, CVE-2026-44390, CVE-2026-44608 + unzip: CVE-2021-4217 + xserver_xorg-server: (no CVE assigned) + xwayland: (no CVE assigned) + + Toolchain: + + - linux-headers:: bump to 5.10.257, 5.15.208, 6.1.174, 6.6.141, 6.12.91 + + Infrastructure updates/fixes: + + - generate-cyclonedx: generate externalReferences with + source-distribution + - Remove /usr/share/info/dir from target + - bump-stable-kernel-versions: update for split hash file + - cve-check: fix vulnerability timestamp to RFC 3339 + - cve-check: remove 'bom-ref' for vulnerabilities + - generate-cyclonedx: add hashes from .hash files to externalReferences + - dependencies.sh: reject buggy uutils "install" on Ubuntu 26.04 + - add 'make show-info-all' + - cve-check: fix vulnerabilities with different analysis + - kconfig: fix compiler warnings + - generate-cyclonedx: remove indirect dependencies from root component + - cve-check: add indication how to run + - generate-cyclonedx: generate vcs externalReferences for source repos + - gitlab-ci: use larger shared runners where necessary + - replicate IGNORE_CVES to host packages + - generate-cyclonedx: hint at missing Buildroot host package on a + specific error + + Updated defconfigs: at91sam9x5ek* + + Updated / fixed packages: libmicrohttpd, qt53d, crucible, libgit2, php, + esp-hosted, tzdata, libabseil-cpp, collectd, redis, swupdate, + libdill, zsh, samba4, haveged, arm-trusted-firmware, weston, + wireless-regdb, libssh2, go-bootstrap-stage5, jq, kodi, unbound, + lrzip, libgpg-error, hplip, expat, heimdal, glibc, go, imagemagick, + kexec, libnss, putty, libmad, vorbis-tools, libvncserver, rsync, + mongoose, intel-microcode, freeipmi, openssh, dos2unix, liburiparser, + zic, cups-filters, libks, odhcp6c, libmodsecurity, memcached, + graphene, vlc, capnproto, faad2, gcc-bare-metal, mariadb, qt6base, + python-ecdsa, runc, heirloom-mailx, icu, systemd, unzip, dnsmasq, + gst1-plugins-bad, cairo, dropbear, libusb, asterisk, hiredis, + linux-pam, sed, gstreamer1, xfsprogs, python-urllib3, radvd, + qt5webengine-chromium, sshfs, gdb, python3, sane-backends, + linux-headers:, zlib-ng, libheif, supertux, postgresql, + gst1-plugins-good, libde265, libdrm, exim, linux, lrzsz, babeld, + bind, nginx, stellarium, sdl2_image, tor, libpthsem, wpewebkit, + libargon2, xwayland, python-cbor2, xserver_xorg-server, poppler, + jemalloc + +2025.02.14, released May 20, 2026 + + Changes with potentially large impact: + + - ficl was downgraded to version 3.065 because ficl4 is no longer + maintained. + + Important / security related fixes: + + apache: CVE-2026-23918, CVE-2026-24072, CVE-2026-28780, CVE-2026-29168, + CVE-2026-29169, CVE-2026-33006, CVE-2026-33007, CVE-2026-33523, + CVE-2026-33857, CVE-2026-34032, CVE-2026-34059 + bubblewrap: CVE-2026-41163 + cups: CVE-2026-27447, CVE-2026-34978, CVE-2026-34979, CVE-2026-34980, + CVE-2026-34990, CVE-2026-39314, CVE-2026-39316, CVE-2026-41079 + dash: CVE-2026-31323 + dropbear: CVE-2019-6111, CVE-2026-35385 + exim: CVE-2026-40684, CVE-2026-40685, CVE-2026-40686, CVE-2026-40687 + expat: CVE-2026-7210, CVE-2026-41080 + ffmpeg: CVE-2026-30997 + freetype: CVE-2026-23865 + ghostscript: (no CVE assigned) + giflib: CVE-2021-40633, CVE-2025-31344, CVE-2026-23868 + gnutls: CVE-2026-33845, CVE-2026-33846, CVE-2026-3832, CVE-2026-3833, + CVE-2026-42009, CVE-2026-42010, CVE-2026-42011, CVE-2026-42012, + CVE-2026-42013, CVE-2026-42014, CVE-2026-42015, CVE-2026-5260, + CVE-2026-5419 + imagemagick: CVE-2026-28493, CVE-2026-28494, CVE-2026-28686, + CVE-2026-28687, CVE-2026-28688, CVE-2026-28689, CVE-2026-28690, + CVE-2026-28691, CVE-2026-28692, CVE-2026-28693, CVE-2026-30883, + CVE-2026-30929, CVE-2026-30931, CVE-2026-30935, CVE-2026-30936, + CVE-2026-30937, CVE-2026-31853, CVE-2026-32259, CVE-2026-32636, + CVE-2026-33535, CVE-2026-33536, CVE-2026-33899, CVE-2026-33900, + CVE-2026-33901, CVE-2026-33902, CVE-2026-33905, CVE-2026-33908, + CVE-2026-34238, CVE-2026-40169, CVE-2026-40183, CVE-2026-40310, + CVE-2026-40311, CVE-2026-40312 + lcms2: CVE-2026-41254, CVE-2026-42798 + libcap: CVE-2026-4878 + libcurl: CVE-2026-7168, CVE-2026-7009, CVE-2026-6429, CVE-2026-6276, + CVE-2026-6253, CVE-2026-5773, CVE-2026-5545, CVE-2026-4873 + libexif: CVE-2026-40386, CVE-2026-40385, CVE-2026-32775 + libjxl: CVE-2025-12474, CVE-2026-1837 + libmicrohttpd: (no CVE assigned) + libpcap: CVE-2025-11961 + libpjsip: CVE-2026-25994, CVE-2026-26203, CVE-2026-26967, + CVE-2026-29068, CVE-2026-28799, CVE-2026-32942, CVE-2026-32945, + CVE-2026-33069, CVE-2026-34235, CVE-2026-40614, CVE-2026-40892, + CVE-2026-41416, CVE-2026-41415, CVE-2026-42225, CVE-2025-65102 + libspdm: GHSA-m4wc-xmvg-369f, GHSA-j54w-759w-xj3m + liburiparser: CVE-2026-42371 + libxml2: CVE-2026-6732 + log4cxx: CVE-2025-54812, CVE-2025-54813, CVE-2026-40023 + mbedtls: CVE-2025-66442, CVE-2026-25833, CVE-2026-25834, + CVE-2026-25835, CVE-2026-34871, CVE-2026-34872, CVE-2026-34873, + CVE-2026-34874, CVE-2026-34875, CVE-2026-34876, CVE-2026-34877 + musl: CVE-2026-6042, CVE-2026-40200 + nginx: CVE-2026-27654, CVE-2026-27784, CVE-2026-32647, CVE-2026-27651, + CVE-2026-28753, CVE-2026-28755, CVE-2025-53859, CVE-2025-23419, + CVE-2024-7347, CVE-2024-32760, CVE-2024-31079, CVE-2024-35200, + CVE-2024-34161 + opensc: CVE-2025-13763, CVE-2025-49010, CVE-2025-66215, CVE-2025-66038, + CVE-2025-66037 + openvpn: CVE-2026-40215, CVE-2026-35058 + p11-kit: CVE-2026-2100 + p7zip: CVE-2021-3520 + proftpd: CVE-2026-42167 + python-cbor2: CVE-2026-26209, CVE-2025-64076, CVE-2025-68131 + python-django: CVE-2026-3902, CVE-2026-4277, CVE-2026-4292, + CVE-2026-33033, CVE-2026-33034 + python-pyasn1: CVE-2026-30922 + python-pyopenssl: CVE-2026-27448, CVE-2026-27459 + python-requests: CVE-2026-25645 + python3: CVE-2024-6923, CVE-2025-13836, CVE-2025-59375 + rsync: (no CVE assigned) + ruby: CVE-2026-41316 + sqlite: CVE-2025-70873 + strongswan: CVE-2026-25075 + systemd: CVE-2026-40226 + thrift: CVE-2025-48431, CVE-2026-41602, CVE-2026-41603, CVE-2026-41604, + CVE-2026-41605, CVE-2026-41606, CVE-2026-41607, CVE-2026-41636, + CVE-2026-43868, CVE-2026-43869, CVE-2026-43870 + tor: CVE-2026-44597, CVE-2026-44599, CVE-2026-44600, CVE-2026-44601, + CVE-2026-44602, CVE-2026-44603 + util-linux: CVE-2026-27456 + webkitgtk: CVE-2026-20643, CVE-2026-20664, CVE-2026-20665, + CVE-2026-20691, CVE-2026-28857, CVE-2026-28859, CVE-2026-28861, + CVE-2026-28871, CVE-2025-43457, CVE-2025-46299, CVE-2026-20608, + CVE-2026-20635, CVE-2026-20636, CVE-2026-20644, CVE-2026-20652, + CVE-2026-20676 + wolfssl: CVE-2026-5264, CVE-2026-5263, CVE-2026-5295, CVE-2026-5466, + CVE-2026-5477, CVE-2026-5447, CVE-2026-5500, CVE-2026-5501, + CVE-2026-5503, CVE-2026-5187, CVE-2026-5188, CVE-2026-5448, + CVE-2026-5772, CVE-2026-5778, CVE-2026-3548, CVE-2026-3549, + CVE-2026-3547, CVE-2026-0819, CVE-2026-1005, CVE-2026-2645, + CVE-2026-3230, CVE-2025-12888, CVE-2025-11936, CVE-2025-11935, + CVE-2025-11934, CVE-2025-11933, CVE-2025-11931, CVE-2025-11932, + CVE-2025-12889, CVE-2025-13912, CVE-2025-7395, CVE-2025-7394, + CVE-2025-7396 + wolftpm: CVE-2025-7844 + xlib_libXpm: CVE-2026-4367 + xserver_xorg-server: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, + CVE-2026-34002, CVE-2026-34003 + xwayland: CVE-2026-33999, CVE-2026-34000, CVE-2026-34001, + CVE-2026-34002, CVE-2026-34003 + xz: CVE-2025-31115, CVE-2026-34743 + + Toolchain: + + - gcc: fix GCC 12, 13 and 14 build with host gcc 16, bump 12.x series + to 12.5.0 + - linux-headers: bump to 6.12.90, 6.6.140, 6.1.173, 5.15.207, 5.10.256 + + Infrastructure updates/fixes: + + - Various improvements to pkg-stats. + + New packages: libxmlsec1 + + Updated / fixed packages: apache, btrfs-progs, bubblewrap, c-icap, + ca-certificates, cmake, cups, dash, dropbear, exim, expat, ffmpeg, + ficl, freetype, frr, gcc, ghostscript, giflib, gnutls, haproxy, + imagemagick, initscripts, kmod, lcms2, libarchive, libcap, libcurl, + libexif, libinput, libjxl, libmicrohttpd, libpcap, libpjsip, libpng, + libsodium, libspdm, liburiparser, libxml2, linux, linux-headers, + log4cxx, mbedtls, mkpasswd, musl, mutt, neon, netsnmp, + network-manager, nginx, opensc, openssh, openvpn, p11-kit, p7zip, + proftpd, python-cbor2, python-certifi, python-django, + python-magic-wormhole, python-pyasn1, python-pyopenssl, + python-requests, python3, rsync, ruby, sqlite, strongswan, sudo, + systemd, thrift, tor, util-linux, watchdogd, webkitgtk, + wireless-regdb, wolfssl, wolftpm, xdg-dbus-proxy, xlib_libXpm, + xserver_xorg-server, xwayland, xz + +2025.02.13, released April 21, 2026 + + Changes with potentially large impact: + + - openssl was updated to 3.5.0 which has a few incompatible changes. + See https://github.com/openssl/openssl/releases/tag/openssl-3.5.0 + + Important / security related fixes: + + asterisk: CVE-2026-23739, CVE-2026-23741, CVE-2026-23738, + CVE-2026-23740 + bind: https://gitlab.isc.org/isc-projects/bind9/-/issues/5751, + CVE-2026-1519, https://gitlab.isc.org/isc- + projects/bind9/-/issues/5817, https://gitlab.isc.org/isc- + projects/bind9/-/issues/5800, https://gitlab.isc.org/isc- + projects/bind9/-/issues/5826 + cpp-httplib: CVE-2026-33745, CVE-2026-34441, CVE-2026-21428, + CVE-2026-22776, CVE-2026-28434, CVE-2026-28435, CVE-2026-29076, + CVE-2026-31870, CVE-2026-32627 + expat: CVE-2026-32776, CVE-2026-32777, CVE-2026-32778 + gpsd: CVE-2025-67268, CVE-2025-67269 + libarchive: [no CVE tracking] + libcurl: CVE-2026-3805, CVE-2026-3784, CVE-2026-3783, CVE-2026-1965 + libde265: CVE-2026-33164, CVE-2026-33165 + libheif: CVE-2025-68431 + libmicrohttpd: CVE-2025-59777, CVE-2025-62689 + libopenssl: CVE-2025-9230, CVE-2025-9231, CVE-2025-9232, CVE-2025-4575, + CVE-2025-11187, CVE-2025-15467, CVE-2025-15468, CVE-2025-15469, + CVE-2025-66199, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, + CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796, + CVE-2026-31790, CVE-2026-2673, CVE-2026-28387, CVE-2026-28388, + CVE-2026-28389, CVE-2026-28390, CVE-2026-31789 + libpng: CVE-2026-33416, CVE-2026-33636, CVE-2026-34757, + GHSA-6fr7-g8h7-v645 + libxml2: CVE-2026-1757, CVE-2026-0990, CVE-2026-0992, CVE-2025-10911, + CVE-2026-0989 + mongoose: CVE-2025-65502 + musl: CVE-2025-26519 + nfs-utils: CVE-2025-12801 + nghttp2: CVE-2026-27135 + perl: CVE-2026-4176 + python-django: CVE-2026-25673, CVE-2026-25674 + python-flask: CVE-2026-27205 + python-pyasn1: CVE-2026-23490 + python-pyjwt: CVE-2026-32597, GHSA-752w-5fwx-jx9f + python-tornado: CVE-2025-67724, CVE-2025-67725, CVE-2025-67726 + python-wheel: CVE-2026-24049 + quickjs: CVE-2025-62490, CVE-2025-62491, CVE-2025-62492, + CVE-2025-62493, CVE-2025-62494, CVE-2025-62495, CVE-2025-62496 + rauc: CVE-2026-34155 + redis: [No CVE tracking] + ruby: CVE-2025-27221, CVE-2025-58767, CVE-2025-61594, CVE-2026-27820 + tor: TROVE-2026-003, TROVE-2026-004 + wireshark: CVE-2025-11626 + + Toolchain: + + - uclibc: bump to 1.0.57 + - musl: bump to 1.2.6 + - linux-headers: bump to 6.12.81, 6.6.134, 6.1.168, 5.15.202, 5.10.252 + + Infrastructure updates/fixes: + + - Add SECURITY.md + - Automatically add 2025.02.x prefix for b4 users + - generate-cyclonedx: add source attribute with NVD reference for CVEs + - Fix cve-check's CVE URLs + - New runtime test for connman. + - Added support for "secondary" target that are less often tested in + autobuilders + - New runtime test for memcached + - Fix error handling in br2-external + + Updated defconfigs: aarch64_efi, nitrogen* + + Updated / fixed packages: asterisk, bind, cpp-httplib, expat, faketime, + freeradius-server, giflib, gpsd, ibm-sw-tpm2, leafnode2, libarchive, + libcurl, libde265, libftdi1, libheif, libmicrohttpd, libopenssl, libpng, + libspdm, libxml2, linux, linux-headers, ltp-testsuite, luvi, mongoose, + mpd, musl, nfs-utils, nghttp2, perl, python-djange, python-flask, + python-pyasn1, python-pyjwt, python-tornado, quickjs, rauc, redis, ruby, + sway, tor, uboot, uclibc, wireshark, zfs + +2025.02.12, released March 17, 2026 + + Important / security related fixes: + + botan: CVE-2024-50382, CVE-2024-50383 + c-ares: CVE-2025-62408 + containerd: CVE-2024-25621, CVE-2024-40635, CVE-2025-47291, + CVE-2025-64329 + cups: CVE-2025-58436, CVE-2025-61915 + exiv2: CVE-2026-25884, CVE-2026-27596, CVE-2026-27631 + fluidsynth: CVE-2025-56225 + freerdp: CVE-2024-32661, CVE-2026-23530, CVE-2026-23531, + CVE-2026-23532, CVE-2026-23533, CVE-2026-23534, CVE-2026-23948, + CVE-2026-24675, CVE-2026-24676, CVE-2026-24679, CVE-2026-24681, + CVE-2026-24682, CVE-2026-24683 + graphicsmagick, CVE-2025-27796 + igmpproxy: CVE-2025-50681 + imagemagick: CVE-2026-22770, CVE-2026-23874, CVE-2026-23876, + CVE-2026-24481, CVE-2026-25638, CVE-2026-25794, CVE-2026-25795, + CVE-2026-25796, CVE-2026-25798, CVE-2026-25799, CVE-2026-25897, + CVE-2026-25989, CVE-2026-26066, CVE-2026-26283, CVE-2026-26284, + CVE-2026-26983 + jasper: CVE-2025-8836, CVE-2025-8837 + libsoup3: CVE-2025-14523 + libssh: CVE-2025-14821, CVE-2026-0964, CVE-2026-0965, CVE-2026-0966, + CVE-2026-0967, CVE-2026-0968 + libtpms: CVE-2026-21444 + mupdf: CVE-2026-25556 + netsnmp: CVE-2025-68615 + patch: CVE-2018-6952, CVE-2019-20633 + postgresql: CVE-2026-2003, CVE-2026-2004, CVE-2026-2005, CVE-2026-2006 + rtl_433: CVE-2025-34450 + squid: CVE-2025-62168 + tinyproxy: CVE-2025-63938 + vim: CVE-2026-25749, CVE-2026-26269 + wpewebkit: CVE-2025-31273, CVE-2025-31278, CVE-2025-43211, + CVE-2025-43212, CVE-2025-43216, CVE-2025-43227, CVE-2025-43228, + CVE-2025-43240, CVE-2025-43265, CVE-2025-43272, CVE-2025-43342, + CVE-2025-43343, CVE-2025-43356, CVE-2025-43368, CVE-2025-6558 + + Infrastructure updates/fixes: + + linux: make license option visible for _CUSTOM_VERSION as well + support/testing/run-tests: fix Debian testing/unstable + + Updated / fixed packages: botan, c-ares, containerd, cups, dtc, exiv2, + faketime, flashbench, fluidsynth, freerdp, graphicsmagick, igmpproxy, + imagemagick, jasper, libsoup3, libssh, libtpms, libvips, libvirt, + libzlib, mupdf, netsnmp, patch, poco, postgresql, python-multipart, + qemu, rtl_433, squid, tinyproxy, util-linux, vim, webkitgtk, wmctrl, + wpewebkit + + Removed packages: qemu (cris target) + +2025.02.11, released February 20, 2026 + + avahi: CVE-2021-3468, CVE-2023-38469, CVE-2023-38470, CVE-2023-38471, + CVE-2023-38472, CVE-2023-38473, CVE-2024-52615, CVE-2024-52616, + CVE-2025-68276, CVE-2025-68468, CVE-2025-68471, CVE-2026-24401 + bind: CVE-2025-13878 + busybox: CVE-2025-46394, CVE-2025-60876 + expat: CVE-2026-24515, CVE-2026-25210 + glibc: CVE-2025-15281, CVE-2026-0861, CVE-2026-0915 + gnutls: CVE-2025-14831, CVE-2026-1584 + haproxy: CVE-2025-11230 + intel-microcode: CVE-2024-24853, CVE-2025-31648 + libopenssl: CVE-2025-11187, CVE-2025-15467, CVE-2025-15468, + CVE-2025-66199, CVE-2025-68160, CVE-2025-69418, CVE-2025-69419, + CVE-2025-69420, CVE-2025-69421, CVE-2026-22795, CVE-2026-22796 + libpng: CVE-2026-22695, CVE-2026-22801, CVE-2026-25646 + libtasn1: CVE-2025-13151 + libvpx + linux-pam: CVE-2024-10963 + nginx: CVE-2025-53859 + nodejs: CVE-2025-27210, CVE-2025-55130, CVE-2025-55131, CVE-2025-55132, + CVE-2025-59465, CVE-2025-59466, CVE-2026-21637 + python-django: CVE-2025-13473, CVE-2025-14550, CVE-2026-1207, CVE-2026-1285, + CVE-2026-1287, CVE-2026-1312 + python-urllib3: CVE-2026-21441 + strongswan: CVE-2025-62291 + tor: TROVE-2025-016 + vim: CVE-2025-66476 + webkitgtk + + Infrastructure updates/fixes: + + arm-trusted-firmware, at91bootstrap3, barebox, linux, opensbi, optee-os, + uboot: Add support for custom license files + config-fragments/autobuild: drop a number of duplicated toolchains + generate-cyclonedx: fix dependencies + Makefile: add check-package-external target + pkg-stats: add -N/--needs-update option + pkg-stats: fix RuntimeError with python 3.14 asyncio + relocate-sdk.sh: pre-calculate files in need of relocation + system/Config.in: do not reference md5 for sha256 option + testing/run-tests: specify multiprocessing method + testing: python-requests: new runtime test + testing: test_python.py: disable interpreter colors + testing/tests/package/test_firewalld: use ext2 instead of cpio + + Updated / fixed packages: asterisk, at91bootstrap3, avahi, berkeleydb, + bind, bitcoin, brltty, busybox, cryptsetup, dash, dc3dd, docker-engine, + easy-rsa, ell, expat, frr, glibc, gnutls, haproxy, + igmpproxy, intel-microcode, libcec, libcurl, libgphoto2, libgpiod2, + libite, libopenssl, libpng, libselinux, + libtasn1, libucl, libvpx, libwebsockets, linux, linux-headers, + linux-pam, localedef, lockdev, m4, manual, mcelog, mesa3d, mp4v2, + mpg123, mpir, mupdf, netdata, nginx, nodejs, php, php-lua, pkg-utils, + python3, python-django, python-jinja2, python-urllib3, rp-pppoe, + rust-bindgen, safeclib, screen, shadow, spandsp, strongswan, swig, + syslog-ng, tor, uclibc, uftp, util-linux, vim, webkitgtk, + wireless-regdb, xmlstarlet, zeek + + New package: libpam-pkcs11 + + Removed packages: criu, cvs, dbus-triggerd, dvdrw-tools, libsvg, libsvg-cairo, lockdev, gconf, + +2025.02.10, released January 20, 2026 + + Important / security related fixes: + + apache: CVE-2025-55753, CVE-2025-58098, CVE-2025-59775, CVE-2025-65082, + CVE-2025-66200 + cryptsetup + dropbear: CVE-2025-14282, CVE-2019-6111 + exim: CVE-2025-67896 + gnupg2 + imagemagick: CVE-2025-66628 + libarchive + libcoap: CVE-2025-59391, CVE-2025-65493, CVE-2025-65494 + CVE-2025-65495, CVE-2025-65496, CVE-2025-65497, CVE-2025-65498, + CVE-2025-65499, CVE-2025-65500, CVE-2025-65501 + libcurl: CVE-2025-13034, CVE-2025-14017, CVE-2025-14524, + CVE-2025-14819, CVE-2025-15079, CVE-2025-15224 + libfcgi: CVE-2025-23016. + libfreeimage: CVE-2019-12211, CVE-2019-12213, CVE-2020-24292, + CVE-2020-24293, CVE-2020-24295, CVE-2021-33367, CVE-2021-40263, + CVE-2021-40266, CVE-2023-47995, CVE-2023-47997 + libpng: CVE-2025-66293 + liburiparser: CVE-2025-67899 + libxslt: CVE-2025-7424, CVE-2025-9714, CVE-2025-11731 + linenoise: CVE-2025-9810 + perl: CVE-2025-40909 + php: CVE-2025-14177, CVE-2025-14178, CVE-2025-14180 + python-django: CVE-2025-13372, CVE-2025-64460 + python-filelock: CVE-2025-68146 + python-fonttools: CVE-2025-66034 + python-urllib3: CVE-2025-66471, CVE-2025-66418 + unbound: CVE-2025-11411 + vlc + xserver_xorg-server: CVE-2025-62229, CVE-2025-62230, + CVE-2025-62231 + xwayland: CVE-2025-62229, CVE-2025-62230, CVE-2025-62231 + + Infrastructure updates/fixes: + + - pkg-stats use HEAD request & unique HTTP user-agent + - cve-check: don't fail with unknown CVE + - generate-cyclonedx: support 'resolved_with_pedigree' + - testing: add host bin dir to PATH + - testing: add libiio python bindings runtime test + - testing: ddrescue: use dmsetup from lvm2 + - testing: ddrescue: use f-string for test config + - testing: add tio runtime test + - add 'CVE:' trailer in various patches + - add md5 hash and update tarball url to various python packages + - testing: ltp-testsuite: replace runltp by kirk + - testing: new kvmtool runtime test + - gitignore: ignore utils/brmake log output named `br.log` + - testing: add opus-tools runtime test + - testing: add flac runtime test + + Updated / fixed packages: apache, arm-trusted-firmware, atf, audit, + bitcoin, boost, busybox, cage, cmake, collectl, cppcms, cpulimit, + cryptsetup, dbus, dmraid, dropbear, embiggen-disk, evilwm, exim, ficl, + fontconfig, glibc, gnupg2, grpc, gvfs, imagemagick, kvmtool, ledmon, + libarchive, libcoap, libcpprestsdk, libcurl, libdill, libfcgi, + libfreeimage, libgit2, libgtk3, libgtk4, libiio, libmbus, libpng, + libselinux, libtirpc, libupnp, liburiparser, libxml2, libxslt, linenoise, + linux-tools, lttng-modules, lugaru, matchbox-fakekey, matchbox-keyboard, + matchbox-lib, matchbox-panel, mosh, nfs-utils, open-lldp, opencv4, + opencv4-contrib, openjdk, perl, perl-dbd-mysql, perl-mozilla-ca, php, pigz, + pixman, python-brotli, python-certifi, python-django, python-filelock, + python-fonttools, python-pyqt5, python-urllib3, qt5enginio, qt5webkit, + qt6base, racehound, rdesktop, rpcbind, rpi-firmware, softether, softhsm2, + spice, ssdp-responder, sway, sysprof, tio, trinity, tzdata, uboot, uclibc, + unbound, vim, vlc, xdriver_xf86-video-intel, xen, xinetd, + xlib_libxshmfence, xserver_xorg-server, xvkbd, xwayland, zic, zxing-cpp + + Removed packages: opencv3 'protobuf', opencv3 'ffmpeg' + +2025.02.9, released December 11, 2025 + + Important / security related fixes: + + - asterisk: CVE-2025-1131, CVE-2025-57767, CVE-2025-49832, + CVE-2025-47780, CVE-2025-47779 + - gnutls: CVE-2025-9820 + - libpng: CVE-2025-64505, CVE-2025-64506, CVE-2025-64720, CVE-2025-65018 + - luksmeta: CVE-2025-11568 + - mariadb: CVE-2025-30693, CVE-2025-30722, CVE-2023-52969, + CVE-2023-52970, CVE-2023-52971 + - openvpn: CVE-2025-13086 + - postgresql: CVE-2025-12817, CVE-2025-12818 + - python-django: CVE-2025-64458, CVE-2025-64459 + - python-startlette: GHSA-7f5h-v6xp-fcq8 + + Infrastructure updates/fixes: + + - New script support/scripts/cve-check to enricht CycloneDX SBoM with + CVE information from NVD database. + + Updated / fixed packages: 18xx-ti-utils, asterisk, gnutls, libpng, + libroxml, libteam, linux-headers, luksmeta, mariadb, nbd, neard, + openjdk, openjdk-bin, openvpn, oprofile, perl-net-ssleay, postgresql, + python-django, python-starlette, redis, sdbusplus, sdl, swipl, + tailscale, thermald, tmux, tor + + Removed packages: bctoolbox, belle-sip, belr, linphone, mediastreamer, + mongrel2, ortp + +2025.02.8, released November 20, 2025 + + Important / security related fixes: + + - bind: CVE-2025-8677, CVE-2025-40778, CVE-2025-40780 + - dante: CVE-2024-54662 + - erlang: CVE-2024-53846, CVE-2025-4748, CVE-2025-26618, CVE-2025-30211, + CVE-2025-32433, CVE-2025-46712, CVE-2025-48038, + CVE-2025-48039, CVE-2025-48040, CVE-2025-48041 + - hostapd: CVE-2025-24912 + - imagemagick: CVE-2025-62171 + - iptraf-ng: CVE-2024-52949 + - libarchive: CVE-2025-25724 + - libglib2: CVE-2024-54662 + - libvips: CVE-2025-29769, CVE-2025-59933 + - libvpx: CVE-2025-5283 + - libxslt: CVE-2025-24855, CVE-2024-55549 + - mbedtls: CVE-2025-54764, CVE-2025-59438 + - modsecurity2: CVE-2025-52891, CVE-2025-54571 + - netdata: CVE-2023-22496, CVE-2023-22497 + - poppler: CVE-2024-6239, CVE-2024-56378, CVE-2025-32364, + CVE-2025-32365, CVE-2025-43903, CVE-2025-50420, + CVE-2025-52886 + - python3: gh-139312, gh-139700, gh-139400, gh-135661, gh-135661, + gh-102555, gh-135462, gh-118350, gh-86155 + - python-webpy: CVE-2025-3818 + - redis: CVE-2025-46817, CVE-2025-46818, CVE-2025-46819, CVE-2025-49844 + - samba: CVE-2025-3818, CVE-2025-10230 + - shairport-sync: Upstream security fixes without CVE + - squid: CVE-2025-59362 + - suricata: CVE-2024-37151, CVE-2024-38535 + - tpm2-tss: CVE-2024-29040 + - xerces: CVE-2024-23807 + - zabbix: CVE-2025-27231, CVE-2025-27236, CVE-2025-27238, CVE-2025-49641 + - zip: CVE-2018-13410 + + Infrastructure updates/fixes: + + - Improved matching of CPE ID with NVD database, resulting in more + accurate identification of CVEs. + - brmake: avoid garbled output with top-level parallel build + + Updated / fixed packages: 4th, audit, bind, cmake, crun, dante, + ebtables, erlang, freeradius-server, gpsd, gstd, hostapd, imagemagick, + iptraf-ng, iozone, ledmon, libarchive, libcurl, libdbi-drivers, + libdisplay-info, libglib2, libgphoto2, libgtk3, libheif, libsemanage, + libshout, libsolv, libtpms, libvips, libvpx, libwpe, libxslt, linux, + linux-headers, live555, mbedtls, micropython, mjpg-streamer, + modsecurity2, netdata, netsnmp, poppler, python3, python-flask-cors, + python-webpy, quota, qt6multimedia, redis, refpolicy, samba4, + selinux-python, sexpect, shairport-sync, siproxd, sqlite, squid, + suricata, tor, tpm2-tss, waffle, webkitgtk, wireless-regdb, wpewebkit, + xerces, zabbix, zip + + Removed package: ramspeed + + Boards updated / fixed: beagleboneai, cubieboard1, cubieboard2, + stm32f429_disco_xip, stm32f746_disco_sd, stm32f769_disco_sd, + + Test Improvements: + + - Capture output of failing commands on host. + 2025.02.7, released October 11, 2025 Important / security related fixes: diff --git a/Config.in b/Config.in index d730f2034b2..7c55d78e5d0 100644 --- a/Config.in +++ b/Config.in @@ -15,6 +15,10 @@ config BR2_HAVE_DOT_CONFIG config BR2_BROKEN bool +config BR2_HIDE_SECONDARY_TARGET_OPTIONS + bool + option env="BR2_HIDE_SECONDARY_TARGET_OPTIONS" + config BR2_VERSION string option env="BR2_VERSION_FULL" @@ -97,11 +101,6 @@ config BR2_HOST_GCC_AT_LEAST_15 # When adding new entries above, be sure to update # the HOSTCC_MAX_VERSION variable in the Makefile. -# Hidden boolean selected by packages in need of Java in order to build -# (example: kodi) -config BR2_NEEDS_HOST_JAVA - bool - # Hidden boolean selected by pre-built packages for x86, when they # need to run on x86-64 machines (example: pre-built external # toolchains, binary tools, etc.). @@ -297,6 +296,16 @@ config BR2_BACKUP_SITE buildroot will fall back to download package sources from here if the normal location fails. +config BR2_SKIFFOS_BACKUP_SITE + string "SkiffOS backup download site" + default "https://github.com/skiffos/mirror/raw/master" + help + Backup site to download from. If this option is set then + buildroot will fall back to download package sources from here + if the normal location fails. + + This is an additional mirror used by SkiffOS. + config BR2_KERNEL_MIRROR string "Kernel.org mirror" default "https://cdn.kernel.org/pub" @@ -327,6 +336,21 @@ config BR2_GNU_MIRROR http://ftp.gnu.org/pub/gnu http://mirror.aarnet.edu.au/pub/gnu +config BR2_GOPROXY + string "Go module proxy" + default "https://proxy.golang.org,direct" + depends on BR2_PACKAGE_HOST_GO_TARGET_ARCH_SUPPORTS + help + The Go module proxy URL used to download Go modules. By + default, it uses the official Go module mirror, falling + back to direct downloads if the module is not found in the + mirror. The value can be one of: + - Comma-separated list of proxy URLs + - "off" to disable all downloads + - "direct" to download directly from source repositories + + See https://go.dev/ref/mod#module-proxy + config BR2_LUAROCKS_MIRROR string "LuaRocks mirror" default "http://rocks.moonscript.org" diff --git a/Config.in.legacy b/Config.in.legacy index 26391bec23d..6c222c0e57a 100644 --- a/Config.in.legacy +++ b/Config.in.legacy @@ -144,8 +144,895 @@ endif ############################################################################### +comment "Legacy options removed in 2026.11" + +config BR2_BINUTILS_VERSION_2_44_X + bool "binutils 2.44 has been removed" + select BR2_LEGACY + help + binutils 2.44 has been removed, select a newer version + instead. + +config BR2_KERNEL_HEADERS_7_1 + bool "kernel headers version 7.1.x are no longer supported" + select BR2_LEGACY + help + Version 7.1.x of the Linux kernel headers are no longer + maintained upstream and are now removed. + +config BR2_PACKAGE_WESTON_SCREENSHARE + bool "weston screenshare option removed" + select BR2_LEGACY + help + Weston screenshare option was removed in v16.0.0. + +config BR2_PACKAGE_WESTON_SHELL_FULLSCREEN + bool "weston fullscreen shell removed" + select BR2_LEGACY + help + Weston fullscreen shell option was removed in v16.0.0. + +comment "Legacy options removed in 2026.08" + +config BR2_PACKAGE_FLUIDSYNTH_SDL2 + bool "fluidsynth sdl2 audio support removed" + select BR2_LEGACY + help + FluidSynth SDL2 audio support was removed in v2.5.0. + +config BR2_PACKAGE_HOSTAPD_DRIVER_HOSTAP + bool "hostapd hostap driver removed" + select BR2_LEGACY + help + The hostap driver was removed from hostapd. + +config BR2_GDB_VERSION_ARC + bool "ARC-specific gdb version removed" + select BR2_LEGACY + help + Support for the ARC-specific gdb version was removed, as it + was no longer maintained in Buildroot. + +config BR2_BINUTILS_VERSION_ARC + bool "ARC-specific binutils version removed" + select BR2_LEGACY + help + Support for the ARC-specific binutils version was removed, + as it was no longer maintained in Buildroot. + +config BR2_GCC_VERSION_ARC + bool "ARC-specific gcc version removed" + select BR2_LEGACY + help + Support for the ARC-specific gcc version was removed, as it + was no longer maintained in Buildroot. + +config BR2_TOOLCHAIN_EXTERNAL_SYNOPSYS_ARC + bool "Synopsys ARC toolchain removed" + select BR2_LEGACY + help + The Synopsys ARC external toolchain has been removed, as it + was no longer maintained in Buildroot. + +config BR2_PACKAGE_TS4900_FPGA + bool "ts4900-fpga removed" + select BR2_LEGACY + help + The ts4900 defconfig was removed, so ts4900-fpga package + has been dropped. + +config BR2_GDB_VERSION_14 + bool "gdb 14.x has been removed" + select BR2_LEGACY + help + GDB 14.x support has been removed, a newer version should be + used instead. + +config BR2_PACKAGE_ARGPARSE + bool "argparse has been removed" + select BR2_LEGACY + select BR2_PACKAGE_LUA_ARGPARSE + help + Package argparse duplicates the package lua-argparse. + +config BR2_KERNEL_HEADERS_7_0 + bool "kernel headers version 7.0.x are no longer supported" + select BR2_LEGACY + help + Version 7.0.x of the Linux kernel headers are no longer + maintained upstream and are now removed. + +config BR2_PACKAGE_BLUEZ5_UTILS_PLUGINS_SAP + bool "bluez sap plugin removed" + select BR2_LEGACY + help + Build plugin for SAP profile. + +config BR2_PACKAGE_BLUEZ5_UTILS_PLUGINS_HEALTH + bool "bluez health plugin removed" + select BR2_LEGACY + help + Build plugin for health profiles. + +config BR2_GCC_VERSION_13_X + bool "gcc 13.x support removed" + select BR2_LEGACY + help + Support for building a toolchain based on GCC 13.x has been + removed, chose a newer GCC version instead. + +config BR2_PACKAGE_QEMU_TARGET_MICROBLAZEEL + bool "qemu target microblazeel removed" + select BR2_PACKAGE_QEMU_TARGET_MICROBLAZE + select BR2_LEGACY + help + Version 11.0.0 of qemu folded microblazeel support into + the microblaze target. + +comment "Legacy options removed in 2026.05" + +config BR2_PACKAGE_PTPD2 + bool "ptpd2 removed" + select BR2_LEGACY + help + ptpd2 was no longer maintained upstream, so it has been + dropped. + +config BR2_PACKAGE_LIBHDHOMERUN + bool "libhdhomerun" + select BR2_LEGACY + help + libhdhomerun was removed from Buildroot as it was + insufficiently maintained. It can be re-added if someone + volunteers to maintain it. + +config BR2_PACKAGE_KODI_PVR_HDHOMERUN + bool "kodi-pvr-hdhomerun" + select BR2_LEGACY + help + kodi-pvr-hdhomerun was removed from Buildroot as it was + insufficiently maintained. It can be re-added if someone + volunteers to maintain it. + +config BR2_PACKAGE_ZEEK + bool "zeek removed" + select BR2_LEGACY + help + The zeek package was not maintained, with numerous build + issues and severely lagging behind upstream. so it has been + dropped. + +config BR2_PACKAGE_PIGPIO + bool "pigpio removed" + select BR2_LEGACY + help + pigpio was no longer maintained upstream, so it has been + dropped. + +config BR2_PACKAGE_XML_SECURITY_C + bool "xml-security-c removed" + select BR2_LEGACY + help + xml-security-c was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_LIBPHIDGET + bool "libphidget" + select BR2_LEGACY + help + libphidget was removed from Buildroot as it was + insufficiently maintained. It can be re-added if someone + volunteers to maintain it. + +config BR2_PACKAGE_PHIDGETWEBSERVICE + bool "phidgetwebservice" + select BR2_LEGACY + help + phidgetwebservice was removed from Buildroot as it was + insufficiently maintained. It can be re-added if someone + volunteers to maintain it. + +config BR2_PACKAGE_DAQ + bool "daq removed" + select BR2_LEGACY + help + The only dependee, snort, has been removed. Look at daq3 + for an alternative. + +config BR2_PACKAGE_FWTS_EFI_RUNTIME_MODULE + bool "fwts efi_runtime kernel module removed" + select BR2_LEGACY + help + The fwts efi_runtime module has been removed in V26.01.00. + The Kernel efi_test (Kernel CONFIG_EFI_TEST) should be used + instead. + +config BR2_KERNEL_HEADERS_6_19 + bool "kernel headers version 6.19.x are no longer supported" + select BR2_LEGACY + help + Version 6.19.x of the Linux kernel headers are no longer + maintained upstream and are now removed. + +config BR2_PACKAGE_PCRE + bool "pcre removed" + select BR2_LEGACY + help + pcre was no longer maintained upstream, so it has been + dropped. Look at pcre2 for an alternative. + +config BR2_PACKAGE_SNORT + bool "snort removed" + select BR2_LEGACY + help + snort was no longer maintained upstream, so it has been + dropped. Look at snort3 for an alternative. + +config BR2_PACKAGE_CEGUI + bool "cegui" + select BR2_LEGACY + help + cegui was removed from Buildroot as it was insufficiently + maintained. It can be re-added if someone volunteers to + maintain it. + +config BR2_PACKAGE_SPHINXBASE + bool "sphinxbase removed" + select BR2_LEGACY + help + sphinxbase was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_OPENSWAN + bool "openswan removed" + select BR2_LEGACY + help + Openswan was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_RUBIX + bool "rubix removed" + select BR2_LEGACY + help + Rubix was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_LLAMA_CPP_SERVER + bool "llama-cpp option removed" + select BR2_PACKAGE_LLAMA_CPP_TOOLS + select BR2_LEGACY + help + Several tools (server, cli) now require building both + tools and server, so enable both with the same config + BR2_PACKAGE_LLAMA_CPP_TOOLS + +config BR2_PACKAGE_PYTHON3_OSSAUDIODEV + bool "python3 ossaudiodev module removed" + select BR2_LEGACY + help + The ossaudiodev module was removed in Python 3.13. + +config BR2_TARGET_EDK2_PLATFORM_OVMF_I386 + bool "EDK2 OVMF IA32 removed" + select BR2_LEGACY + help + EDK2 OVMF IA32 support was removed in upstream version + 202511, so it has been dropped. + +config BR2_BINUTILS_VERSION_2_43_X + bool "binutils 2.43 has been removed" + select BR2_LEGACY + help + binutils 2.43 has been removed, select a newer version + instead. + +config BR2_parisc10 + bool "PA-RISC architecture version 1.0 support removed" + select BR2_LEGACY + help + Following the build issues with glibc 2.43, Buildroot has + removed support for this architecture version. + +comment "Legacy options removed in 2026.02" + +config BR2_PACKAGE_QEMU_TARGET_CRIS + bool "qemu cris support has been removed" + select BR2_LEGACY + help + CRIS support has been removed since Qemu 9.2.0. + +config BR2_PACKAGE_DVDRW_TOOLS + bool "dvdrw-tools removed" + select BR2_LEGACY + help + dvdrw-tools was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_PHP_ZMQ + bool "php-zmq removed" + select BR2_LEGACY + help + php-zmq was no longer maintained upstream, broken with php + 8.5, so it has been dropped. + +config BR2_PACKAGE_LOCKDEV + bool "lockdev removed" + select BR2_LEGACY + help + lockdev was no longer maintained upstream, so it has been + dropped. + +config BR2_PACKAGE_DBUS_TRIGGERD + bool "dbus-triggerd removed" + select BR2_LEGACY + help + dbus-triggerd was no longer maintained upstream, so it has + been dropped. + +config BR2_PACKAGE_CVS + bool "cvs has been removed" + select BR2_LEGACY + help + The cvs project was no longer maintained upstream, broken + with GCC 14.x, so it was removed. + +config BR2_PACKAGE_CRIU + bool "criu has been removed" + select BR2_LEGACY + help + criu was removed from Buildroot as it was insufficiently + maintained. It can be re-added if someone volunteers to + maintain it. + +config BR2_PACKAGE_GCONF + bool "gconf package removed" + select BR2_LEGACY + help + gconf was no longer maintained upstream, so it has been + dropped. + +config BR2_PACKAGE_LIBSVG + bool "libsvg package removed" + select BR2_LEGACY + help + The libsvg package has been removed. Its latest upstream + release was from 2005, it was incompatible with recent + libxml2 versions, and it wasn't used by any other Buildroot + package except libsvg-cairo, also removed. + +config BR2_PACKAGE_LIBSVG_CAIRO + bool "libsvg-cairo package removed" + select BR2_LEGACY + help + The libsvg-cairo package has been removed. Its latest + upstream release was from 2005, and it wasn't used by any + other Buildroot package. + +config BR2_PACKAGE_XDRIVER_XF86_INPUT_MOUSE + bool "xf86-input-mouse removed" + select BR2_LEGACY + help + Linux support was removed upstream in version + 2.0.0. Upstream recommends to switch to xf86-input-evdev or + xf86-input-libinput. + +config BR2_PACKAGE_HOST_JSMIN + bool "host-jsmin has been removed" + select BR2_LEGACY + help + JSMin is no longer maintained and better alternative + exists since then. + +config BR2_PACKAGE_JSMIN + bool "jsmin has been removed" + select BR2_LEGACY + help + JSMin is no longer maintained and better alternative + exists since then. + +config BR2_PACKAGE_VUEJS_ROUTER + bool "vuejs-router has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_VUEJS + bool "vuejs has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_VIS_NETWORK + bool "vis-network has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_OPENLAYERS + bool "openlayers has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JSZIP + bool "jszip has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JSON_JAVASCRIPT + bool "json-javascript has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_VALIDATION + bool "jquery-validation has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_UI_THEMES + bool "jquery-ui-themes has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_UI + bool "jquery-ui has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_SPARK + bool "jquery-spark has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_SIDEBAR + bool "jquery-sidebar has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_MOBILE + bool "jquery-mobile has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_KEYBOARD + bool "jquery-keyboard has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY_DATETIMEPICKER + bool "jquery-datetimepicker has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_JQUERY + bool "jquery has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_FORGE + bool "forge has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_FLOT + bool "flot has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_EXPLORERCANVAS + bool "explorercanvas has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_DATATABLES_RESPONSIVE + bool "datatables-responsive has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_DATATABLES_FIXEDCOLUMNS + bool "datatables-fixedcolumns has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_DATATABLES_BUTTONS + bool "datatables-buttons has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_DATATABLES + bool "datatables has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_CHARTJS + bool "chartjs has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_BOOTSTRAP + bool "bootstrap has been removed" + select BR2_LEGACY + help + JS libraries are no longer part of Buildroot packages. + +config BR2_PACKAGE_SOFTETHER + bool "softether has been removed" + select BR2_LEGACY + help + The version packaged in Buildroot version was outdated + compared to upstream and no longer maintained by anyone + listed in the DEVELOPERS file. + +config BR2_PACKAGE_RPI_USERLAND + bool "rpi-userland has been removed" + select BR2_LEGACY + help + According to https://github.com/raspberrypi/userland, "This + repo is ancient and deprecated. [...] If you are using code + from here you should rethink your solution.". + +config BR2_PACKAGE_GST1_PLUGINS_BASE_LIB_OPENGL_DISPMANX + bool "gst1-plugins-base dispmanx option removed" + select BR2_LEGACY + help + Due to the removal of the rpi-userland package, the dispmanx + OpenGL plug-in from GStreamer plugin base has been removed. + +config BR2_PACKAGE_RPI_FIRMWARE_INSTALL_VCDBG + bool "rpi-firmware vcdbg option removed" + select BR2_LEGACY + help + rpi-firmware upstream has dropped the vcdbg tool + +config BR2_PACKAGE_LIBDNET_PYTHON + bool "libdnet python module removed" + select BR2_LEGACY + help + The libdnet Python module is no longer compatible with + Python >= 3.13, so it had to be removed. + +config BR2_PACKAGE_LIBFREEIMAGE + bool "libfreeimage" + select BR2_LEGACY + help + libfreeimage is unmaintained and has been removed + +config BR2_PACKAGE_OPENCV3 + bool "opencv3" + select BR2_LEGACY + help + opencv3 is unmaintained and has been removed + +config BR2_PACKAGE_VLC_OPENCV3_BACKEND + bool "opencv3 support in vlc has been removed" + select BR2_LEGACY + help + OpenCV3 support in VLC has been reported, as OpenCV has been + removed. + +config BR2_PACKAGE_CPPDB + bool "cppdb has been removed" + select BR2_LEGACY + help + cppdb was no longer maintained upstream, and therefore was + removed. + +config BR2_PACKAGE_PYTHON_AIOREDIS + bool "python-aioredis has been removed" + select BR2_LEGACY + select BR2_PACKAGE_PYTHON_REDIS + help + python-aioredis was abandoned upstream and replaced by + python-redis + +config BR2_PACKAGE_LIBCUEFILE + bool "libcuefile has been removed" + select BR2_LEGACY + help + libcuefile is unmaintained and has been removed + +config BR2_PACKAGE_MPD_MUSEPACK + bool "musepack support in mpd has been removed" + select BR2_LEGACY + help + musepack package is unmaintained and has been removed + +config BR2_PACKAGE_GST1_PLUGINS_BAD_PLUGIN_MUSEPACK + bool "musepack support in gst1-plugins-bad has been removed" + select BR2_LEGACY + help + musepack package is unmaintained and has been removed + +config BR2_PACKAGE_MUSEPACK + bool "musepack has been removed" + select BR2_LEGACY + help + musepack is unmaintained and has been removed + +config BR2_PACKAGE_RACEHOUND + bool "racehound has been removed" + select BR2_LEGACY + help + racehound is unmaintained and has been removed + +config BR2_PACKAGE_TASKD + bool "taskd has been removed" + select BR2_LEGACY + help + taskd was deprecated upstream and has been removed + +config BR2_PACKAGE_SCONESERVER + bool "sconeserver has been removed" + select BR2_LEGACY + help + sconeserver is unmaintained and has been removed + +config BR2_PACKAGE_QJSON + bool "qjson has been removed" + select BR2_LEGACY + help + qjson was deprecated upstream and has been removed + +config BR2_PACKAGE_OPENTRACING_CPP + bool "opentracing-cpp has been removed" + select BR2_LEGACY + help + opentracing-cpp was deprecated upstream and has been removed + +config BR2_PACKAGE_OPENPOWERLINK + bool "openpowerlink has been removed" + select BR2_LEGACY + help + openpowerlink is unmaintained and has been removed + +config BR2_PACKAGE_ALURE + bool "alure has been removed" + select BR2_LEGACY + help + alure is unmaintained and has been removed + +config BR2_PACKAGE_LIBUWSC + bool "libuwsc has been removed" + select BR2_LEGACY + help + libuwsc is unmaintained and has been removed + +config BR2_PACKAGE_LIBIQRF + bool "libiqrf has been removed" + select BR2_LEGACY + help + libiqrf is unmaintained and has been removed + +config BR2_PACKAGE_LIBCGI + bool "libcgi has been removed" + select BR2_LEGACY + help + libcgi is unmaintained and has been removed + +config BR2_PACKAGE_LET_ME_CREATE + bool "let-me-create has been removed" + select BR2_LEGACY + help + let-me-create is unmaintained and has been removed + +config BR2_PACKAGE_HAWKTRACER + bool "hawktracer has been removed" + select BR2_LEGACY + help + hawktracer is unmaintained and has been removed + +config BR2_PACKAGE_CONNMAN_GTK + bool "connman-gtk has been removed" + select BR2_LEGACY + help + connman-gtk is unmaintained and has been removed + +config BR2_PACKAGE_LIBMHASH + bool "libmhash has been removed" + select BR2_LEGACY + help + libmhash is unmaintained and has been removed + +config BR2_PACKAGE_DMRAID + bool "dmraid has been removed" + select BR2_LEGACY + help + dmraid is unmaintained and has been removed + +config BR2_PACKAGE_LIBNIDS + bool "libnids has been removed" + select BR2_LEGACY + help + libnids is unmaintained and has been removed + +config BR2_TARGET_S500_BOOTLOADER + bool "s500-bootloader" + select BR2_LEGACY + help + s500-bootloader package has been removed + +config BR2_PACKAGE_OPENCV3_WITH_FFMPEG + bool "opencv3 ffmpeg support removed" + select BR2_LEGACY + help + Support for OpenCV 3 ffmpeg support has been removed as it + was no longer compatible with recent versions of ffmpeg. + +config BR2_PACKAGE_OPENCV3_WITH_PROTOBUF + bool "opencv3 protobuf support removed" + select BR2_LEGACY + help + Support for OpenCV 3 protobuf support has been removed as it + was no longer compatible with recent versions of protobuf. + +config BR2_PACKAGE_RESIPROCATE_APPS + bool "resiprocate apps support option removed" + select BR2_LEGACY + help + The build system does not contain an apps-specific option + anymore. + +config BR2_PACKAGE_WATCHDOGD_TEST_SUITE + bool "The watchdogd test mode option has been removed." + select BR2_LEGACY + help + watchdogd v4.1 removes the test mode and test suite. + +config BR2_KERNEL_HEADERS_6_17 + bool "kernel headers version 6.17.x are no longer supported" + select BR2_LEGACY + help + Version 6.17.x of the Linux kernel headers are no longer + maintained upstream and are now removed. + +config BR2_PACKAGE_MESA3D_VDPAU + bool "mesa3d Gallium VDPAU state tracker support removed" + select BR2_LEGACY + help + Mesa3d removed the Gallium VDPAU state tracker. + +config BR2_BINUTILS_VERSION_2_42_X + bool "binutils 2.42 has been removed" + select BR2_LEGACY + help + binutils 2.42 has been removed, select a newer version + instead. + +config BR2_arceb + bool "ARC big endian support removed" + select BR2_LEGACY + help + Synopsys' DesignWare ARC Processor Cores are a family of + 32-bit CPUs that can be used from deeply embedded to high + performance host applications. The big endian support was + not used nor maintained, so it was removed. + comment "Legacy options removed in 2025.11" +config BR2_KERNEL_HEADERS_5_4 + bool "kernel headers version 5.4.x are no longer supported" + select BR2_LEGACY + help + Version 5.4.x of the Linux kernel headers are no longer + maintained upstream and are now removed. + +config BR2_PACKAGE_LIBARGTABLE2 + bool "libargtable2 has been removed" + select BR2_LEGACY + help + libargtable2 is unmaintained and has been removed + +config BR2_PACKAGE_OLA + bool "ola has been removed" + select BR2_LEGACY + help + ola is incompatible with current versions of protobuf + +config BR2_PACKAGE_BATMAN_ADV_NC + bool "batman-adv removed network coding" + select BR2_LEGACY + help + batman-adv removed B.A.T.M.A.N. network coding + +config BR2_PACKAGE_DVBSNOOP + bool "dvbsnoop has been removed" + select BR2_LEGACY + help + dvbsnoop is unmaintained and has been removed + +config BR2_PACKAGE_PROCRANK_LINUX + bool "procrank_linux has been removed" + select BR2_LEGACY + help + procrank_linux is unmaintained and has been removed + +config BR2_PACKAGE_MONGREL2 + bool "mongrel2 has been removed" + select BR2_LEGACY + help + mongrel2 is incompatible with MbedTLS 3.6 and has been removed + +config BR2_PACKAGE_EXPECT + bool "expect has been removed" + select BR2_LEGACY + help + expect is unmaintained and has been removed + +config BR2_PACKAGE_BCTOOLBOX + bool "bctoolbox has been removed" + select BR2_LEGACY + help + This package has been removed as part of the linphone + removal. In addition, newer version of linphone directly + bundle bctoolbox making a separate package unnecessary. + +config BR2_PACKAGE_ORTP + bool "ortp has been removed" + select BR2_LEGACY + help + This package has been removed as part of the linphone + removal. In addition, newer version of linphone directly + bundle ortp making a separate package unnecessary. + +config BR2_PACKAGE_MEDIASTREAMER + bool "mediastreamer has been removed" + select BR2_LEGACY + help + This package has been removed as part of the linphone + removal. In addition, newer version of linphone directly + bundle mediastreamer making a separate package unnecessary. + +config BR2_PACKAGE_BELR + bool "belr has been removed" + select BR2_LEGACY + help + This package has been removed as part of the linphone + removal. In addition, newer version of linphone directly + bundle belr making a separate package unnecessary. + +config BR2_PACKAGE_BELLE_SIP + bool "belle-sip has been removed" + select BR2_LEGACY + help + This package has been removed as part of the linphone + removal. In addition, newer version of linphone directly + bundle belle-sip making a separate package unnecessary. + +config BR2_PACKAGE_LINPHONE + bool "linphone has been removed" + select BR2_LEGACY + help + This package was no longer maintained in Buildroot and was + no longer building. It can be re-added if someone volunteers + to fix the issues, update the package and maintain it. + +config BR2_PACKAGE_LIBJWT + bool "libjwt has been removed" + select BR2_LEGACY + help + The only dependee of libjwt, asterisk, is incompatible with + version 3 so the version bundled with asterisk is used and + this package has been removed. + config BR2_PACKAGE_RAMSPEED bool "ramspeed has been removed" select BR2_LEGACY @@ -2866,12 +3753,12 @@ config BR2_PACKAGE_KODI_LIBTHEORA Kodi does not need libtheora config BR2_PACKAGE_CEGUI06 - bool "BR2_PACKAGE_CEGUI06 was renamed" - select BR2_PACKAGE_CEGUI + bool "BR2_PACKAGE_CEGUI06 was removed" select BR2_LEGACY help - The BR2_PACKAGE_CEGUI06 config symbol was renamed to - BR2_PACKAGE_CEGUI. + cegui06 was removed from Buildroot as it was insufficiently + maintained. It can be re-added if someone volunteers to + maintain it. config BR2_GCC_VERSION_5_X bool "gcc 5.x support removed" @@ -5443,8 +6330,6 @@ config BR2_GCC_VERSION_4_8_ARC help The option that selects the gcc version for the ARC architecture has been renamed to BR2_GCC_VERSION_ARC. -# Note: BR2_GCC_VERSION_4_8_ARC is still referenced from -# package/gcc/Config.in.host config BR2_KERNEL_HEADERS_4_0 bool "kernel headers version 4.0.x are no longer supported" @@ -5787,8 +6672,6 @@ config BR2_PACKAGE_OPENPOWERLINK_KERNEL_MODULE help openpowerlink kernel modules are built if the kernel stack library is selected. -# Note: BR2_PACKAGE_OPENPOWERLINK_KERNEL_MODULE is still referenced from -# package/openpowerlink/Config.in config BR2_PACKAGE_OPENPOWERLINK_LIBPCAP bool "openpowerlink package has been updated" @@ -5797,8 +6680,6 @@ config BR2_PACKAGE_OPENPOWERLINK_LIBPCAP The user space support has been split in two part: - a monolithic user space library - a user space daemon driver -# Note: BR2_PACKAGE_OPENPOWERLINK_LIBPCAP is still referenced from -# package/openpowerlink/Config.in config BR2_LINUX_KERNEL_SAME_AS_HEADERS bool "using the linux headers version for the kernel has been removed" diff --git a/DEVELOPERS b/DEVELOPERS index b14c6e3875e..1f19c91dc10 100644 --- a/DEVELOPERS +++ b/DEVELOPERS @@ -87,7 +87,10 @@ N: Aleksandr Makarov F: package/cpp-httplib/ N: Alexander Shirokov +F: package/broot/ +F: package/kibi/ F: package/nnn/ +F: package/zellij/ N: Alessandro Partesotti F: package/oatpp/ @@ -128,6 +131,9 @@ F: package/openpgm/ N: Aleksandr Makarov F: package/libest/ +N: Alexander Shirokov +F: package/aichat/ + N: Alexander Sverdlin F: package/mini-snmpd/ @@ -149,7 +155,11 @@ N: Alexey Lukyanchuk F: package/zabbix/ N: Alexis Lothoré -F: package/python-scp +F: package/libxmlsec1/ +F: package/openscap/ +F: package/python-scp/ +F: support/testing/tests/package/test_libldns.py +F: support/testing/tests/package/test_python_scp.py N: Alistair Francis F: board/sifive/ @@ -158,6 +168,9 @@ F: configs/hifive_unleashed_defconfig F: package/libspdm/ F: package/xen/ +N: Alsey Coleman Miller +F: package/liblc3/ + N: Alvaro G. M F: package/dcron/ F: package/libxmlrpc/ @@ -178,6 +191,7 @@ F: package/wine/ N: Andrea Ricchi F: package/cutekeyboard/ +F: package/libcppconnman/ N: Andreas Klinger F: package/ply/ @@ -235,6 +249,7 @@ F: package/python-pillow/ F: package/python-pydal/ F: package/python-spidev/ F: package/python-web2py/ +F: package/qpdf/ F: package/qt5/qt5coap/ F: package/qt5/qt5knx/ F: package/qt5/qt5mqtt/ @@ -340,12 +355,13 @@ F: package/tcpdump/ F: package/ti-uim/ F: package/uhubctl/ +N: Bastien Curutchet +F: package/rasdaemon/ +F: support/testing/tests/package/test_rasdaemon.py + N: Baxiche Su F: package/qt6/qt6multimedia/ -N: Ben Boeckel -F: package/taskd/ - N: Benjamin Kamath F: package/lapack/ @@ -360,6 +376,7 @@ F: package/bcg729/ F: package/bento4/ F: package/bitcoin/ F: package/clamav/ +F: package/cxxopts/ F: package/dav1d/ F: package/dht/ F: package/dnsmasq/ @@ -406,7 +423,6 @@ F: package/libcec/ F: package/libcodec2/ F: package/libcrossguid/ F: package/libde265/ -F: package/libdecor/ F: package/libdeflate/ F: package/libdisplay-info/ F: package/libdrm/ @@ -414,15 +430,13 @@ F: package/libdvbcsa/ F: package/libdvdcss/ F: package/libdvdnav/ F: package/libdvdread/ -F: package/libfreeglut/ F: package/libfribidi/ F: package/libg7221/ F: package/libglew/ F: package/libglu/ -F: package/libhdhomerun/ F: package/libheif/ +F: package/libid3tag/ F: package/libilbc/ -F: package/libldns/ F: package/libmicrohttpd/ F: package/libminiupnpc/ F: package/libmspack/ @@ -431,12 +445,14 @@ F: package/libnpth/ F: package/libogg/ F: package/libopenh264/ F: package/libpciaccess/ +F: package/libplacebo/ F: package/libplatform/ F: package/libpng/ F: package/libsidplay2/ F: package/libsilk/ F: package/libsndfile/ F: package/libsoundtouch/ +F: package/libudev-zero/ F: package/libudfread/ F: package/libunibreak/ F: package/liburiparser/ @@ -449,6 +465,7 @@ F: package/libvorbis/ F: package/libvpl/ F: package/libvpx/ F: package/libyuv/ +F: package/libzippp/ F: package/linux-firmware/ F: package/mc/ F: package/mesa3d/ @@ -487,6 +504,7 @@ F: package/perl-uri/ F: package/perl-www-robotrules/ F: package/php/ F: package/pngquant/ +F: package/postgresql/ F: package/pppd/ F: package/privoxy/ F: package/pure-ftpd/ @@ -503,6 +521,7 @@ F: package/python-pyicu/ F: package/python-pylru/ F: package/python-requests-oauthlib/ F: package/python-slob/ +F: package/qt6/qt6positioning/ F: package/rrdtool/ F: package/rsync/ F: package/rtmpdump/ @@ -520,12 +539,14 @@ F: package/unixodbc/ F: package/utfcpp/ F: package/vlc/ F: package/wget/ +F: package/wget2/ F: package/wireless-regdb/ F: package/wireless_tools/ F: package/x264/ F: package/x265/ F: package/xmrig/ F: package/ytree/ +F: package/zix/ F: package/znc/ F: support/testing/tests/package/test_perl_html_parser.py @@ -543,6 +564,7 @@ F: package/libgpiod2/ N: Bogdan Radulescu F: package/iftop/ F: package/ncdu/ +F: package/nettest/ N: Brandon Maier F: board/freescale/ls1046a-frwy/ @@ -582,10 +604,7 @@ F: package/jailhouse/ F: package/sunxi-boards/ N: Carsten Schoenert -F: package/dvbsnoop/ F: package/libdvbsi/ -F: package/libsvg/ -F: package/libsvg-cairo/ N: Cédric Chépied F: package/znc/ @@ -604,6 +623,10 @@ F: package/alsa-plugins/ N: Changming Huang F: package/qoriq-cadence-dp-firmware/ +N: Chen Pei +F: package/iniparser/ +F: package/ndctl/ + N: Chris Packham F: package/coremark/ F: package/coremark-pro/ @@ -620,6 +643,7 @@ F: package/python-pylibftdi/ N: Christian Stewart F: package/balena-engine/ F: package/batman-adv/ +F: package/buildah/ F: package/catatonit/ F: package/cni-plugins/ F: package/conmon/ @@ -690,18 +714,8 @@ F: package/perl-sys-mmap/ F: package/perl-time-parsedate/ F: package/perl-x10/ -N: Clayton Shotwell -F: package/audit/ -F: package/checkpolicy/ -F: package/cpio/ -F: package/libcgroup/ -F: package/libee/ -F: package/libestr/ -F: package/liblogging/ -F: package/libselinux/ -F: package/libsemanage/ -F: package/libsepol/ -F: package/policycoreutils/ +N: Christopher Obbard +F: package/dtui/ N: Colin Foster F: package/python-tftpy/ @@ -795,12 +809,14 @@ N: Dario Binacchi F: board/bsh/ F: board/stmicroelectronics/stm32f746-disco/ F: board/stmicroelectronics/stm32f769-disco/ +F: board/stmicroelectronics/stm32h747-disco/ F: boot/ti-k3-boot-firmware/ F: configs/imx6ulz_bsh_smm_m2_defconfig F: configs/imx8mn_bsh_smm_s2_defconfig F: configs/imx8mn_bsh_smm_s2_pro_defconfig F: configs/stm32f746_disco_sd_defconfig F: configs/stm32f769_disco_sd_defconfig +F: configs/stm32h747_disco_sd_defconfig F: package/aespipe/ F: package/armadillo/ F: package/atf/ @@ -808,6 +824,7 @@ F: package/babeld/ F: package/bc/ F: package/cmocka/ F: package/connman/ +F: package/drogon/ F: package/empty/ F: package/iana-assignments/ F: package/inih/ @@ -966,7 +983,7 @@ F: package/optee-client/ F: package/optee-examples/ F: package/optee-test/ -N: Eugen Hristev +N: Eugen Hristev F: board/atmel/readme.txt F: board/microchip/sama7g5ek/ F: configs/microchip_sama7g5ek* @@ -1019,8 +1036,6 @@ F: package/openzwave/ N: Fabrice Fontaine F: package/bearssl/ -F: package/belle-sip/ -F: package/belr/ F: package/boinc/ F: package/cairo/ F: package/daq3/ @@ -1051,7 +1066,6 @@ F: package/libcue/ F: package/libebml/ F: package/libgee/ F: package/libglib2/ -F: package/libgtk2/ F: package/libgtk3/ F: package/libhtp/ F: package/libidn/ @@ -1103,7 +1117,6 @@ F: package/tinycbor/ F: package/tinydtls/ F: package/whois/ F: package/x11r7/xlib_libXpresent/ -F: package/zeek/ N: Fabrice Goucem F: board/freescale/imx6ullevk/ @@ -1116,8 +1129,13 @@ N: Fiona Klute F: package/*/S* F: package/panel-mipi-dbi-firmware/ F: package/python-aiomqtt/ +F: package/python-markdown-it-py/ +F: package/python-mdurl/ +F: package/python-platformdirs/ F: package/python-pyasynchat/ F: package/python-pyasyncore/ +F: package/python-rich/ +F: package/python-textual/ F: support/testing/tests/package/sample_python_networkmanager_goi.py F: support/testing/tests/package/sample_python_pyroute2.py F: support/testing/tests/package/test_nftables.py @@ -1136,6 +1154,8 @@ F: package/cpulimit/ N: Florian Larysch F: package/casync-nano/ +F: package/sigsum-c/ +F: package/sigsum-go/ N: Floris Bos F: package/ipmitool/ @@ -1150,40 +1170,38 @@ F: package/tbb/ N: Francisco Gonzalez F: package/ser2net/ +N: Franciszek Stachura +F: support/testing/tests/package/test_memcached.py +F: support/testing/tests/package/test_nano.py + N: Francois Dugast F: board/sipeed/licheepi_nano/ F: board/visionfive2/ F: configs/sipeed_licheepi_nano_defconfig F: configs/visionfive2_defconfig -N: Francois Perrad -F: board/freescale/ls1028ardb/ +N: Francois Perrad F: board/olimex/a20_olinuxino F: board/olimex/imx233_olinuxino/ F: board/olimex/stmp1_olinuxino/ -F: configs/ls1028ardb_defconfig F: configs/olimex_a20_olinuxino_* F: configs/olimex_imx233_olinuxino_defconfig F: configs/olimex_stmp157_olinuxino_lime_defconfig F: package/4th/ F: package/cgilua/ -F: package/chipmunk/ -F: package/cog/ F: package/collectl/ F: package/copas/ F: package/coxpcall/ F: package/dado/ F: package/ficl/ -F: package/graphene/ +F: package/hare* F: package/janet/ -F: package/libgtk4/ +F: package/qbe/ F: package/libtomcrypt/ F: package/libtommath/ -F: package/libwpe/ F: package/linenoise/ F: package/ljlinenoise/ F: package/lua-inotify/ -F: package/lmdb/ F: package/lpeg/ F: package/lpty/ F: package/lrandom/ @@ -1192,16 +1210,14 @@ F: package/lua* F: package/lynis/ F: package/lzlib/ F: package/moarvm/ -F: package/mstpd/ -F: package/netsurf/ +F: package/opendoas/ F: package/perl* +F: package/pkg-hare.mk F: package/pkg-perl.mk F: package/pkg-luarocks.mk F: package/quickjs/ F: package/rings/ -F: package/tekui/ -F: package/wpebackend-fdo/ -F: package/wpewebkit/ +F: package/scdoc/ F: package/wsapi/ F: package/wsapi-fcgi/ F: package/wsapi-xavante/ @@ -1221,7 +1237,7 @@ F: package/sane-backends/ F: package/upx/ F: package/zxing-cpp/ -N: Frank Vanbever +N: Frank Vanbever F: package/libmodsecurity/ F: package/nginx-modsecurity/ @@ -1261,7 +1277,7 @@ F: package/cctz/ F: package/clpeak/ F: package/faad2/ F: package/fdk-aac/ -F: package/hawktracer/ +F: package/ftxui/ F: package/httping/ F: package/iozone/ F: package/leptonica/ @@ -1293,8 +1309,10 @@ F: configs/mangopi_mq1rdw2_defconfig F: configs/olimex_a* F: configs/rockpro64_defconfig F: package/at/ +F: package/bind/ F: package/binutils/ F: package/cryptsetup/ +F: package/dash/ F: package/erlang-jiffy/ F: package/esp-hosted/ F: package/gcc/ @@ -1305,6 +1323,7 @@ F: package/liblo/ F: package/libnspr/ F: package/libnss/ F: package/libnvme/ +F: package/libtirpc/ F: package/libtraceevent/ F: package/libtracefs F: package/linux-tools/linux-tool-rtla.mk.in @@ -1313,10 +1332,12 @@ F: package/minicom/ F: package/mongoose/ F: package/mmc-utils/ F: package/nfs-utils/ +F: package/putty/ F: package/python-libconf/ F: package/python-uvloop/ F: package/qt5/ F: package/rockchip-mali/ +F: package/rpcbind/ F: package/rtl8188eu/ F: package/rtl8189es/ F: package/rtl8192eu/ @@ -1330,9 +1351,14 @@ F: package/sunxi-mali-utgard-driver/ F: package/sunxi-tools/ F: package/swugenerator/ F: package/swupdate/ +F: package/tmux/ F: package/trace-cmd/ F: package/udisks/ +F: package/util-linux/ +F: package/vim/ F: package/wilc-driver/ +F: package/wireshark/ +F: package/zlib-ng/ F: toolchain/ N: Graeme Smecher @@ -1351,7 +1377,6 @@ F: fs/f2fs/ F: package/bluez5_utils-headers/ F: package/f2fs-tools/ F: package/graphicsmagick/ -F: package/pigpio/ F: package/python-aioblescan/ F: package/python-bluezero/ F: package/python-crontab/ @@ -1370,7 +1395,6 @@ N: Guillaume Chaye F: package/sane-airscan/ N: Guillaume William Brs -F: package/libnids/ F: package/libxcrypt/ F: package/liquid-dsp/ F: package/mbw/ @@ -1557,9 +1581,7 @@ F: package/microchip-hss-payload-generator/ N: Jan Havran F: board/pine64/pinecube/ F: configs/pine64_pinecube_defconfig - -N: Jan Heylen -F: package/opentracing-cpp/ +F: package/rtklib/ N: Jan Kraval F: board/orangepi/orangepi-lite @@ -1627,7 +1649,6 @@ F: package/qt6/ N: Jianhui Zhao F: package/libuhttpd/ -F: package/libuwsc/ F: package/rtty/ N: Jiaxun Yang @@ -1659,6 +1680,7 @@ F: package/ssdp-responder/ F: package/sysklogd/ F: package/uredir/ F: package/watchdogd/ +F: support/testing/tests/package/test_mdnsd.py N: Jochen Baltes F: package/altera-stapl @@ -1706,18 +1728,11 @@ F: package/erlang-p1-yconf/ F: package/erlang-p1-zlib/ F: package/erlang-stun/ F: package/erlang-xmpp/ -F: package/forge/ F: package/nginx-dav-ext/ -F: package/vis-network/ -F: package/vuejs/ N: John Stile F: package/dhcpcd/ -N: John Faith -F: package/python-inflection/ -F: package/sdbusplus/ - N: Jon Ringle F: package/mbpoll/ @@ -1728,10 +1743,7 @@ N: Jonathan Ben Avraham F: arch/Config.in.xtensa F: package/autofs/ F: package/dawgdic/ -F: package/libphidget/ -F: package/phidgetwebservice/ F: package/rapidxml/ -F: package/sphinxbase/ N: Joris Offouga F: package/python-colorlog/ @@ -1752,12 +1764,12 @@ F: support/testing/tests/package/test_zfs.py N: Joseph Kogut F: package/at-spi2-core/ F: package/earlyoom/ -F: package/gconf/ F: package/libnss/ F: package/llama-cpp/ F: package/llvm-project/clang/ F: package/llvm-project/lld/ F: package/llvm-project/llvm/ +F: package/mesa3d/ F: package/python-cython/ F: package/python-pycups/ F: package/python-raven/ @@ -1768,6 +1780,8 @@ F: package/python-xlib/ F: package/sentry-cli/ F: package/sentry-native/ F: package/unclutter-xfixes/ +F: package/virglrenderer/ +F: support/testing/tests/package/test_virglrenderer.py N: Joshua Henderson F: package/qt5/qt5wayland/ @@ -1793,9 +1807,6 @@ F: package/libmodbus/ F: package/ltris/ F: package/opentyrian/ -N: Julien Corjon -F: package/qt5/ - N: Julien Grossholtz F: board/raspberrypi/ F: configs/raspberrypizero2w_defconfig @@ -1822,7 +1833,6 @@ F: package/libopenmpt/ F: package/mokutil/ F: package/oath-toolkit/ F: package/octave/ -F: package/ola/ F: package/openblas/ F: package/opencsd/ F: package/openmpi/ @@ -1850,8 +1860,12 @@ F: support/testing/tests/boot/test_optee_os.py F: support/testing/tests/boot/test_optee_os/ F: support/testing/tests/fs/test_btrfs.py F: support/testing/tests/fs/test_btrfs/ +F: support/testing/tests/fs/test_cramfs.py +F: support/testing/tests/fs/test_cramfs/ F: support/testing/tests/fs/test_erofs.py F: support/testing/tests/fs/test_erofs/ +F: support/testing/tests/fs/test_xfs.py +F: support/testing/tests/fs/test_xfs/ F: support/testing/tests/package/sample_python_distro.py F: support/testing/tests/package/sample_python_gnupg.py F: support/testing/tests/package/sample_python_hwdata.py @@ -1859,12 +1873,15 @@ F: support/testing/tests/package/sample_python_midiutil.py F: support/testing/tests/package/sample_python_ml_dtypes.py F: support/testing/tests/package/sample_python_mpmath.py F: support/testing/tests/package/sample_python_pyalsa.py +F: support/testing/tests/package/sample_python_pydal.py F: support/testing/tests/package/sample_python_spake2.py F: support/testing/tests/package/sample_python_sympy.py F: support/testing/tests/package/test_4th.py F: support/testing/tests/package/test_acl.py F: support/testing/tests/package/test_acpica.py F: support/testing/tests/package/test_acpica/ +F: support/testing/tests/package/test_aichat.py +F: support/testing/tests/package/test_aichat/ F: support/testing/tests/package/test_apache.py F: support/testing/tests/package/test_attr.py F: support/testing/tests/package/test_audio_codec_base.py @@ -1878,11 +1895,10 @@ F: support/testing/tests/package/test_btrfs_progs.py F: support/testing/tests/package/test_btrfs_progs/ F: support/testing/tests/package/test_bzip2.py F: support/testing/tests/package/test_compressor_base.py +F: support/testing/tests/package/test_connman.py F: support/testing/tests/package/test_coremark.py F: support/testing/tests/package/test_cryptsetup.py F: support/testing/tests/package/test_cryptsetup/ -F: support/testing/tests/package/test_ddrescue.py -F: support/testing/tests/package/test_ddrescue/ F: support/testing/tests/package/test_dieharder.py F: support/testing/tests/package/test_dmidecode.py F: support/testing/tests/package/test_dos2unix.py @@ -1896,10 +1912,12 @@ F: support/testing/tests/package/test_exfatprogs.py F: support/testing/tests/package/test_exfatprogs/ F: support/testing/tests/package/test_file.py F: support/testing/tests/package/test_file/ +F: support/testing/tests/package/test_flac.py F: support/testing/tests/package/test_fluidsynth.py F: support/testing/tests/package/test_fluidsynth/ F: support/testing/tests/package/test_fping.py F: support/testing/tests/package/test_fwts.py +F: support/testing/tests/package/test_fwts/ F: support/testing/tests/package/test_gawk.py F: support/testing/tests/package/test_ghostscript.py F: support/testing/tests/package/test_ghostscript/ @@ -1914,6 +1932,8 @@ F: support/testing/tests/package/test_gnuradio/ F: support/testing/tests/package/test_gpsd.py F: support/testing/tests/package/test_gpsd/ F: support/testing/tests/package/test_gstreamer1.py +F: support/testing/tests/package/test_guile.py +F: support/testing/tests/package/test_guile/ F: support/testing/tests/package/test_gzip.py F: support/testing/tests/package/test_highway.py F: support/testing/tests/package/test_hwloc.py @@ -1933,12 +1953,16 @@ F: support/testing/tests/package/test_kmod.py F: support/testing/tests/package/test_kmod/ F: support/testing/tests/package/test_kmscube.py F: support/testing/tests/package/test_kmscube/ +F: support/testing/tests/package/test_kvmtool.py +F: support/testing/tests/package/test_kvmtool/ F: support/testing/tests/package/test_lame.py F: support/testing/tests/package/test_less.py F: support/testing/tests/package/test_libcamera.py F: support/testing/tests/package/test_libcamera/ F: support/testing/tests/package/test_libcurl.py F: support/testing/tests/package/test_libgpgme.py +F: support/testing/tests/package/test_libgpiod2.py +F: support/testing/tests/package/test_libgpiod2/ F: support/testing/tests/package/test_libjxl.py F: support/testing/tests/package/test_lighttpd.py F: support/testing/tests/package/test_links.py @@ -1972,21 +1996,24 @@ F: support/testing/tests/package/test_nftables.py F: support/testing/tests/package/test_nftables/ F: support/testing/tests/package/test_ngrep.py F: support/testing/tests/package/test_nmap.py +F: support/testing/tests/package/test_ndctl.py +F: support/testing/tests/package/test_ndctl/ F: support/testing/tests/package/test_ntp.py F: support/testing/tests/package/test_ntp/ F: support/testing/tests/package/test_numactl.py F: support/testing/tests/package/test_numactl/ F: support/testing/tests/package/test_oath_toolkit.py F: support/testing/tests/package/test_octave.py -F: support/testing/tests/package/test_ola.py -F: support/testing/tests/package/test_ola/ F: support/testing/tests/package/test_openblas.py F: support/testing/tests/package/test_openocd.py +F: support/testing/tests/package/test_opus_tools.py F: support/testing/tests/package/test_parted.py F: support/testing/tests/package/test_patch.py F: support/testing/tests/package/test_patch/ F: support/testing/tests/package/test_pciutils.py F: support/testing/tests/package/test_perftest.py +F: support/testing/tests/package/test_php.py +F: support/testing/tests/package/test_php/ F: support/testing/tests/package/test_pigz.py F: support/testing/tests/package/test_postgresql.py F: support/testing/tests/package/test_pppd.py @@ -2002,10 +2029,13 @@ F: support/testing/tests/package/test_python_midiutil.py F: support/testing/tests/package/test_python_ml_dtypes.py F: support/testing/tests/package/test_python_mpmath.py F: support/testing/tests/package/test_python_pyalsa.py +F: support/testing/tests/package/test_python_pydal.py F: support/testing/tests/package/test_python_pyqt5.py F: support/testing/tests/package/test_python_pyqt5/ F: support/testing/tests/package/test_python_spake2.py F: support/testing/tests/package/test_python_sympy.py +F: support/testing/tests/package/test_quickjs.py +F: support/testing/tests/package/test_quickjs/ F: support/testing/tests/package/test_rdma_core.py F: support/testing/tests/package/test_rdma_core/ F: support/testing/tests/package/test_rrdtool.py @@ -2023,6 +2053,7 @@ F: support/testing/tests/package/test_tcl.py F: support/testing/tests/package/test_tcl/ F: support/testing/tests/package/test_tcpdump.py F: support/testing/tests/package/test_tesseract_ocr.py +F: support/testing/tests/package/test_tio.py F: support/testing/tests/package/test_trace_cmd.py F: support/testing/tests/package/test_trace_cmd/ F: support/testing/tests/package/test_tree.py @@ -2038,6 +2069,8 @@ F: support/testing/tests/package/test_weston/ F: support/testing/tests/package/test_wget.py F: support/testing/tests/package/test_which.py F: support/testing/tests/package/test_wine.py +F: support/testing/tests/package/test_wpa_supplicant.py +F: support/testing/tests/package/test_wpa_supplicant/ F: support/testing/tests/package/test_xfsprogs.py F: support/testing/tests/package/test_xfsprogs/ F: support/testing/tests/package/test_xvisor.py @@ -2100,6 +2133,7 @@ F: board/octavo/osd32mp1-brk/ F: board/octavo/osd32mp1-red/ F: configs/octavo_osd32mp1_brk_defconfig F: configs/octavo_osd32mp1_red_defconfig +F: package/drm-info/ N: Kris Bahnsen F: package/wilc-firmware/ @@ -2138,9 +2172,6 @@ F: package/python-gunicorn/ F: support/testing/tests/package/sample_python_flask.py F: support/testing/tests/package/test_python_flask.py -N: Lionel Orry -F: package/mongrel2/ - N: Lothar Felten F: board/bananapi/bananapi-m2-ultra/ F: board/beagleboard/beaglebone/ @@ -2171,6 +2202,7 @@ F: configs/zynq_zc706_defconfig F: configs/zynqmp_zcu106_defconfig F: package/agentpp/ F: package/exim/ +F: package/heaptrack/ F: package/libpjsip/ F: package/linux-tools/linux-tool-usbtools.mk.in F: package/qpid-proton/ @@ -2179,6 +2211,7 @@ F: package/snmppp/ F: package/stm32flash/ F: package/unzip/ F: support/legal-info/ +F: support/testing/tests/package/test_heaptrack.py N: Lucas De Marchi F: package/fswebcam/ @@ -2209,7 +2242,29 @@ N: Mahyar Koshkouei F: package/ffmpeg/ F: package/mpv/ F: package/rpi-firmware/ -F: package/rpi-userland/ + +N: Manuel Diener +F: package/pico-sdk/ +F: package/picotool/ +F: package/python-annotated-doc/ +F: package/python-apscheduler/ +F: package/python-crc/ +F: package/python-diskcache/ +F: package/python-django/ +F: package/python-gpiod/ +F: package/python-immutabledict/ +F: package/python-jc/ +F: package/python-log-rate-limit/ +F: package/python-pydantic/ +F: package/python-pydantic-core/ +F: package/python-pydantic-settings/ +F: package/python-typing-inspection/ +F: package/python-tzlocal/ +F: package/python-sdbus-modemmanager/ +F: package/python-sdbus-systemd/ +F: package/python-varlink/ +F: package/python-waitress/ +F: package/python-whitenoise/ N: Marcin Bis F: package/bluez5_utils/ @@ -2223,10 +2278,10 @@ F: board/orangepi/orangepi-zero3/ F: configs/grinn_* F: configs/orangepi_zero_plus_defconfig F: configs/orangepi_zero3_defconfig -F: package/argparse/ F: package/dt-utils/ F: package/easydbus/ F: package/gitlab-runner/ +F: package/lua-argparse/ F: package/lua-flu/ F: package/lua-stdlib/ F: package/luaossl/ @@ -2250,13 +2305,14 @@ F: support/testing/tests/package/sample_python_dbus_fast.py F: support/testing/tests/package/sample_python_dbus_next.py F: support/testing/tests/package/sample_python_pytest.py F: support/testing/tests/package/sample_python_pytest_asyncio.py +F: support/testing/tests/package/test_easydbus.py +F: support/testing/tests/package/test_easydbus/ F: support/testing/tests/package/test_netdata.py F: support/testing/tests/package/test_python_dbus_next.py F: support/testing/tests/package/test_python_pytest.py F: support/testing/tests/package/test_python_pytest_asyncio.py N: Marcus Folkesson -F: package/criu/ F: package/libcamera/ F: package/libcamera-apps/ F: package/libostree/ @@ -2271,42 +2327,20 @@ F: utils/diffconfig N: Marcus Hoffmann F: package/nethogs/ -F: package/pico-sdk/ -F: package/picotool/ -F: package/python-apscheduler/ -F: package/python-crc/ F: package/python-django/ -F: package/python-immutabledict/ +F: package/python-gpiod/ F: package/python-jc/ -F: package/python-log-rate-limit/ -F: package/python-pydantic/ -F: package/python-pydantic-core/ -F: package/python-pydantic-settings/ -F: package/python-ruamel-yaml-clib/ -F: package/python-typing-inspection/ -F: package/python-tzlocal/ -F: package/python-sdbus-modemmanager/ +F: package/python-varlink/ F: package/python-waitress/ F: package/python-whitenoise/ -F: support/testing/tests/package/test_python_apscheduler.py -F: support/testing/tests/package/test_python_crc.py F: support/testing/tests/package/test_python_django.py -F: support/testing/tests/package/test_python_fastapi.py -F: support/testing/tests/package/test_python_pydantic.py -F: support/testing/tests/package/test_python_pydantic_settings.py -F: support/testing/tests/package/test_python_ruamel_yaml.py -F: support/testing/tests/package/test_python_sdbus_modemmanager.py -F: support/testing/tests/package/test_python_tzlocal.py +F: support/testing/tests/package/test_python_requests.py +F: support/testing/tests/package/test_python_varlink.py +F: support/testing/tests/package/test_python_varlink/ F: support/testing/tests/package/test_python_waitress.py F: support/testing/tests/package/test_python_whitenoise.py -F: support/testing/tests/package/sample_python_apscheduler.py -F: support/testing/tests/package/sample_python_crc.py F: support/testing/tests/package/sample_python_django.py -F: support/testing/tests/package/sample_python_fastapi.py -F: support/testing/tests/package/sample_python_pydantic.py -F: support/testing/tests/package/sample_python_pydantic_settings.py -F: support/testing/tests/package/sample_python_ruamel_yaml.py -F: support/testing/tests/package/sample_python_sdbus_modemmanager.py +F: support/testing/tests/package/sample_python_requests.py N: Marek Belisko F: package/libatasmart/ @@ -2356,7 +2390,6 @@ F: package/python-webargs/ N: Martin Kepplinger F: package/tslib/ F: package/x11r7/xdriver_xf86-input-tslib/ -F: package/x11vnc/ N: Martin PoviÅ¡er F: package/python-construct/ @@ -2373,26 +2406,6 @@ F: package/gtkiostream/ N: Matt Silva F: package/rlwrap/ -N: Mauro Condarelli -F: package/mc/ -F: package/python-autobahn/ -F: package/python-cbor/ -F: package/python-characteristic/ -F: package/python-click/ -F: package/python-lmdb/ -F: package/python-mistune/ -F: package/python-netaddr/ -F: package/python-pygments/ -F: package/python-pynacl/ -F: package/python-pytrie/ -F: package/python-service-identity/ -F: package/python-setproctitle/ -F: package/python-shutilwhich/ -F: package/python-treq/ -F: package/python-txaio/ -F: package/python-ujson/ -F: package/python-wsaccel/ - N: Maksim Kiselev F: package/ledmon/ @@ -2428,18 +2441,22 @@ F: configs/arcturus_ucls1012a_defconfig N: Michael Fischer F: package/gnuplot/ F: package/sdl2/ +F: package/sdl3/ +F: package/sdl3_gfx/ +F: package/sdl3_image/ +F: package/sdl3_ttf/ N: Michael Nosthoff F: package/boost/ F: package/catch2/ F: package/fmt/ -F: package/grpc/ F: package/gtest/ F: package/json-for-modern-cpp/ F: package/libabseil-cpp/ +F: package/libgpiod2/ F: package/networkd-dispatcher/ F: package/protobuf/ -F: package/re2/ +F: package/sdbus-cpp/ F: package/spdlog/ F: package/sqlitecpp/ @@ -2481,6 +2498,9 @@ F: package/libfribidi/ N: Mircea Gliga F: package/mbuffer/ +N: Mohammed Sadik Shaik +F: package/k3conf/ + N: Murat Demirten F: package/jpeg-turbo/ F: package/libgeotiff/ @@ -2494,6 +2514,7 @@ F: package/libgudev/ N: Neal Frager F: board/versal/ +F: board/versal2/ F: board/xilinx/ F: board/zynq/ F: board/zynqmp/ @@ -2501,7 +2522,9 @@ F: boot/xilinx-embeddedsw/ F: boot/xilinx-prebuilt/ F: configs/versal_vck190_defconfig F: configs/versal_vek280_defconfig +F: configs/versal_vpk120_defconfig F: configs/versal_vpk180_defconfig +F: configs/versal2_vek385_defconfig F: configs/zynq_zc702_defconfig F: configs/zynq_zc706_defconfig F: configs/zynqmp_kria_kd240_defconfig @@ -2514,6 +2537,8 @@ F: package/binutils-bare-metal/ F: package/bootgen/ F: package/gcc-bare-metal/ F: package/newlib-bare-metal/ +F: package/qemu-xen/ +F: package/xen/ F: package/xilinx-fpgautil/ F: toolchain/toolchain-bare-metal-buildroot/ @@ -2665,6 +2690,7 @@ F: configs/orangepi_pc_defconfig F: configs/orangepi_r1_defconfig F: configs/sheevaplug_defconfig F: configs/visionfive_defconfig +F: package/agec/ F: package/bats-core/ F: package/dfu-programmer/ F: package/docker-compose/ @@ -2696,9 +2722,12 @@ F: package/rnnoise/ F: package/sedutil/ F: package/tpm2-totp/ F: package/triggerhappy/ +F: package/ugetty/ F: package/wireguard-linux-compat/ F: package/wireguard-tools/ +F: support/testing/tests/package/test_agec.py F: support/testing/tests/package/test_docker_compose.py +F: support/testing/tests/package/test_haproxy.py F: support/testing/tests/package/test_python_hid.py N: Peter Seiderer @@ -2734,6 +2763,9 @@ F: package/psplash/ F: package/sispmctl/ F: package/zsh/ +N: Philip Molloy +F: package/adsp-ldr/ + N: Philipp Richter F: package/libtorrent-rasterbar/ @@ -2782,16 +2814,9 @@ F: package/libdvbpsi/ F: package/mraa/ F: package/synergy/ -N: Prabhu Sannachi -F: package/redis-plus-plus/ - N: Qais Yousef F: package/bpftrace/ -N: Rafal Susz -F: board/avnet/s6lx9_microboard/ -F: configs/s6lx9_microboard_defconfig - N: RafaÅ‚ MiÅ‚ecki F: board/broadcom/northstar/ F: configs/broadcom_northstar_defconfig @@ -2804,7 +2829,6 @@ F: package/glog/ F: package/gssdp/ F: package/gupnp/ F: package/gupnp-av/ -F: package/let-me-create/ F: package/nanomsg/ N: Ralf Dragon @@ -2853,9 +2877,6 @@ N: Refik Tuzakli F: package/freescale-imx/ F: package/paho-mqtt-cpp/ -N: Rémi Rérolle -F: package/libfreeimage/ - N: Renaud Aubin F: package/libhttpparser/ @@ -2906,7 +2927,6 @@ F: configs/qemu_* F: configs/am574x_idk_defconfig F: configs/beagleboneai64_defconfig F: configs/beagley_ai_defconfig -F: package/alure/ F: package/aubio/ F: package/bcc/ F: package/binutils/ @@ -2938,7 +2958,6 @@ F: package/mesa3d/ F: package/minetest/ F: package/minetest-game/ F: package/ogre/ -F: package/openpowerlink/ F: package/physfs/ F: package/piglit/ F: package/python-libevdev/ @@ -3039,11 +3058,9 @@ F: package/aoetools/ F: package/asn1c/ F: package/azure-iot-sdk-c/ F: package/curlpp/ -F: package/daq/ F: package/libgdiplus/ F: package/pimd/ F: package/sloci-image/ -F: package/snort/ F: package/stella/ F: package/tio/ F: package/traceroute/ @@ -3051,6 +3068,18 @@ F: package/tunctl/ F: package/ubus/ F: package/wolfssl/ +N: Shubham Chakraborty +F: package/bash-completion/ +F: package/ccache/ +F: package/dos2unix/ +F: package/font-awesome/ +F: package/htop/ +F: package/hyperfine/ +F: package/libenca/ +F: package/pv/ +F: package/unrar/ +F: package/xterm/ + N: Simon Dawson F: boot/at91bootstrap3/ F: package/cppzmq/ @@ -3058,9 +3087,6 @@ F: package/czmq/ F: package/filemq/ F: package/googlefontdirectory/ F: package/jansson/ -F: package/jquery-ui/ -F: package/jquery-ui-themes/ -F: package/json-javascript/ F: package/lcdapi/ F: package/libfreefare/ F: package/libjson/ @@ -3076,7 +3102,6 @@ F: package/neard/ F: package/neardal/ F: package/owl-linux/ F: package/rapidjson/ -F: package/sconeserver/ F: package/sound-theme-borealis/ F: package/sound-theme-freedesktop/ F: package/vlc/ @@ -3142,7 +3167,6 @@ F: package/libcli/ N: Steve Kenton F: package/dvdauthor/ -F: package/dvdrw-tools/ F: package/memtest86/ F: package/mjpegtools/ F: package/udftools/ @@ -3185,17 +3209,14 @@ F: package/x265/ N: Thomas Bonnefille F: board/pine64/star64 F: configs/pine64_star64_defconfig -F: package/starfive-spltool/ N: Thomas Claveirole F: package/fcgiwrap/ -F: package/openlayers/ -F: package/vuejs/ -F: package/vuejs-router/ N: Thomas Devoogdt F: package/fluent-bit/ F: package/libsoup3/ +F: package/yq/ N: Thomas Huth F: package/ascii-invaders/ @@ -3205,6 +3226,8 @@ F: package/xorcurses/ N: Thomas Perale F: package/go/ F: utils/generate-cyclonedx +F: support/scripts/cve-check +F: support/scripts/cve.py N: Thomas Petazzoni F: arch/Config.in.arm @@ -3285,7 +3308,10 @@ F: support/testing/tests/package/sample_python_augeas.py F: support/testing/tests/package/sample_python_flask.py F: support/testing/tests/package/sample_python_flask_expects_json.py F: support/testing/tests/package/sample_python_git.py +F: support/testing/tests/package/sample_python_pyudev.py F: support/testing/tests/package/sample_python_unittest_xml_reporting.py +F: support/testing/tests/package/test_bpftrace.py +F: support/testing/tests/package/test_bpftrace/linux-bpftrace.fragment F: support/testing/tests/package/test_nodejs.py F: support/testing/tests/package/test_python_augeas.py F: support/testing/tests/package/test_python_crccheck.py @@ -3294,6 +3320,7 @@ F: support/testing/tests/package/test_python_flask_expects_json.py F: support/testing/tests/package/test_python_fs.py F: support/testing/tests/package/test_python_git.py F: support/testing/tests/package/test_python_pyfatfs.py +F: support/testing/tests/package/test_python_pyudev.py F: support/testing/tests/package/test_python_pyusb.py F: support/testing/tests/package/test_python_serial.py F: support/testing/tests/package/test_snagboot.py @@ -3320,6 +3347,9 @@ F: package/kmemd/ N: Torben Voltmer F: package/espflash/ +N: Trammell Hudson +F: package/nqptp/ + N: Tudor Holton F: package/openjdk/ @@ -3345,29 +3375,40 @@ F: package/llvm-project/llvm/ N: Vanya Sergeev F: package/lua-periphery/ -N: Viacheslav Bocharov +N: Viacheslav Bocharov +F: package/amlogic-boot-fip/ F: package/rtl8822cs/ N: Victor Huesca F: support/testing/tests/core/test_root_password.py +N: Vincent Cruz +F: package/python-transitions/ + N: Vincent Jardin F: board/nvidia/bf3/ F: configs/nvidia_bf3_defconfig F: package/bfscripts/ F: package/dpdk/ F: package/libecoli/ +F: package/libnss-ato/ +F: package/libyang-cpp/ +F: package/python-libyang/ +F: package/python-sysv-ipc/ +F: package/sysrepo-cpp/ N: Vincent Prince F: package/nss-myhostname/ F: package/utp_com/ N: Vincent Stehlé +F: board/aarch64-efi/ F: board/arm/fvp-ebbr/ F: board/compulab/iot-gate-imx8-ebbr/ F: board/pine64/rockpro64-ebbr/ F: board/qemu/aarch64-ebbr/ F: board/qemu/arm-ebbr/ +F: configs/aarch64_efi_defconfig F: configs/arm_fvp_ebbr_defconfig F: configs/iot-gate-imx8_ebbr_defconfig F: configs/qemu_aarch64_ebbr_defconfig @@ -3377,10 +3418,17 @@ F: package/edk2-non-osi/ F: support/testing/tests/boot/test_edk2.py N: Vincent Stehlé +F: arch/Config.in.hppa +F: arch/arch.mk.hppa F: board/arm/foundation-v8/ F: board/bananapi/bananapi-m2-zero/ +F: board/hp/9000/ +F: board/qemu/hppa-b160l/ +F: boot/palo/ F: configs/arm_foundationv8_defconfig F: configs/bananapi_m2_zero_defconfig +F: configs/hp_9000_defconfig +F: configs/qemu_hppa_b160l_defconfig F: configs/uevm5432_defconfig F: package/i7z/ F: package/msr-tools/ @@ -3395,15 +3443,12 @@ F: support/testing/tests/package/test_zerofree.py N: Vinicius Tinti F: package/python-thrift/ -N: Vivien Didelot -F: board/technologic/ts5500/ -F: configs/ts5500_defconfig - N: Vladimir Oltean F: package/qoriq-ddr-phy-binary/ F: package/qoriq-firmware-inphi/ F: package/qoriq-mc-binary/ F: package/qoriq-mc-utils/ +F: package/qoriq-restool/ N: Volkov Viacheslav F: package/v4l2grab/ @@ -3420,13 +3465,16 @@ F: configs/stm32f746_disco_sd_defconfig F: package/asterisk/ F: package/evilwm/ F: package/fbv/ -F: package/libjwt/ F: package/libpam-pkcs11/ F: package/mksh/ +F: package/perl-cgi/ +F: package/perl-cgi-session/ +F: package/perl-log-message/ +F: package/perl-log-message-simple/ +F: package/perl-switch/ F: package/ruby/ F: package/uclibc/ F: package/uclibc-ng-test/ -F: package/zabbix/ F: support/testing/tests/package/test_ruby.py N: Will Newton @@ -3465,6 +3513,17 @@ F: boot/ti-k3-r5-loader/ F: configs/ti_am62x_sk_defconfig F: configs/ti_am64x_sk_defconfig +N: Xukai Wang +F: package/python-cloudpickle/ +F: package/python-farama-notifications/ +F: package/python-gymnasium/ +F: support/testing/tests/package/sample_python_cloudpickle.py +F: support/testing/tests/package/sample_python_farama_notifications.py +F: support/testing/tests/package/sample_python_gymnasium.py +F: support/testing/tests/package/test_python_cloudpickle.py +F: support/testing/tests/package/test_python_farama_notifications.py +F: support/testing/tests/package/test_python_gymnasium.py + N: Yair Ben Avraham F: package/casync/ F: package/gloox/ @@ -3472,7 +3531,13 @@ F: package/tpm2-pkcs11/ N: Yann E. MORIN F: .editorconfig +F: package/amazon-ecr-credential-helper/ +F: package/distribution-registry/ +F: package/docker-credential-acr-env/ +F: package/docker-credential-gcr/ F: package/gpsd/ +F: package/mosquitto/ +F: package/python-humanfriendly/ F: package/skopeo/ N: Yegor Yefremov @@ -3482,7 +3547,6 @@ F: package/acl/ F: package/attr/ F: package/avrdude/ F: package/boost/ -F: package/bootstrap/ F: package/cannelloni/ F: package/can-utils/ F: package/circus/ @@ -3490,8 +3554,6 @@ F: package/dhcpcd/ F: package/feh/ F: package/hostapd/ F: package/imlib2/ -F: package/jquery-datetimepicker/ -F: package/jquery-sidebar/ F: package/kmod/ F: package/libftdi1/ F: package/libical/ @@ -3542,16 +3604,16 @@ F: utils/scanpypi N: Yunhao Tian F: package/libopenaptx/ -N: Zoltan Gyarmati +N: Zoltan Gyarmati F: package/crudini/ F: package/grantlee/ F: package/libusb/ F: package/libusb-compat/ F: package/proj/ F: package/python-iniparse/ -F: package/qjson/ F: package/qt6/qt6core5compat/ F: package/quazip/ F: package/shapelib/ F: package/simple-mail/ F: package/tinc/ +F: support/testing/tests/package/test_quazip.py diff --git a/Makefile b/Makefile index b8678ea15be..490f1d419dd 100644 --- a/Makefile +++ b/Makefile @@ -92,9 +92,9 @@ all: .PHONY: all # Set and export the version string -export BR2_VERSION := 2025.11-git +export BR2_VERSION := 2026.11-git # Actual time the release is cut (for reproducible builds) -BR2_VERSION_EPOCH = 1757278000 +BR2_VERSION_EPOCH = 1788535000 # Save running make version since it's clobbered by the make package RUNNING_MAKE_VERSION := $(MAKE_VERSION) @@ -125,7 +125,8 @@ endif noconfig_targets := menuconfig nconfig gconfig xconfig config oldconfig randconfig \ defconfig %_defconfig allyesconfig allnoconfig alldefconfig syncconfig release \ randpackageconfig allyespackageconfig allnopackageconfig \ - print-version olddefconfig distclean manual manual-% check-package + print-version olddefconfig distclean manual manual-% check-package \ + check-package-external show-info-all # Some global targets do not trigger a build, but are used to collect # metadata, or do various checks. When such targets are triggered, @@ -141,7 +142,7 @@ nobuild_targets := source %-source \ clean distclean help show-targets graph-depends \ %-graph-depends %-show-depends %-show-version \ graph-build graph-size list-defconfigs \ - savedefconfig update-defconfig printvars show-vars + savedefconfig update-defconfig printvars show-vars show-info-all ifeq ($(MAKECMDGOALS),) BR_BUILDING = y else ifneq ($(filter-out $(nobuild_targets),$(MAKECMDGOALS)),) @@ -235,6 +236,13 @@ BR2_CONFIG = $(CONFIG_DIR)/.config ifeq ($(filter $(noconfig_targets),$(MAKECMDGOALS)),) -include $(BR2_CONFIG) endif +# show-info-all needs to access the PACKAGES_ALL variable. This variable +# contains a reference to every package present in Buildroot. +# Since the 'show-info-all' command might be used without actually having a +# dotconfig this condition is forced to be set true. +ifeq ($(MAKECMDGOALS),show-info-all) +BR2_HAVE_DOT_CONFIG = y +endif ifeq ($(BR2_PER_PACKAGE_DIRECTORIES),) # Disable top-level parallel build if per-package directories is not @@ -250,6 +258,13 @@ export LANG = C export LC_ALL = C endif +# we set a default value here to avoid a Kconfig warning about unset +# environment varilable. This option is passed as an environment +# variable to be controlled by autobuilders. The purpose is to test +# less frequently some uncommon configurations which tend to generate +# more build failures. +export BR2_HIDE_SECONDARY_TARGET_OPTIONS ?= n + # To put more focus on warnings, be less verbose as default # Use 'make V=1' to see the full commands ifeq ("$(origin V)", "command line") @@ -601,6 +616,16 @@ prepare-sdk: world @$(call MESSAGE,"Preparing the SDK") $(INSTALL) -m 755 $(TOPDIR)/support/misc/relocate-sdk.sh $(HOST_DIR)/relocate-sdk.sh mkdir -p $(HOST_DIR)/share/buildroot + (\ + export LC_ALL=C; \ + grep -lr '$(HOST_DIR)' '$(HOST_DIR)' | while read -r FILE; do \ + if file -b --mime-type "$$FILE" | grep -q '^text/' && \ + [ "$$FILE" != '$(HOST_DIR)/share/buildroot/sdk-location' ] && \ + [ "$$FILE" != '$(HOST_DIR)/share/buildroot/sdk-relocs' ]; then \ + echo "$$FILE"; \ + fi; \ + done \ + ) | sed -e 's|^$(HOST_DIR)|.|g' > $(HOST_DIR)/share/buildroot/sdk-relocs echo $(HOST_DIR) > $(HOST_DIR)/share/buildroot/sdk-location BR2_SDK_PREFIX ?= $(GNU_TARGET_NAME)_sdk-buildroot @@ -781,19 +806,12 @@ endif # For a merged /usr, ensure that /lib, /bin and /sbin and their /usr # counterparts are appropriately setup as symlinks ones to the others. -ifeq ($(BR2_ROOTFS_MERGED_USR),y) - - $(foreach d, $(call qstrip,$(BR2_ROOTFS_OVERLAY)), \ - @$(call MESSAGE,"Sanity check in overlay $(d)")$(sep) \ - $(Q)not_merged_dirs="$$(support/scripts/check-merged-usr.sh $(d))"; \ - test -n "$$not_merged_dirs" && { \ - echo "ERROR: The overlay in $(d) is not" \ - "using a merged /usr for the following directories:" \ - $$not_merged_dirs; \ - exit 1; \ - } || true$(sep)) - -endif # merged /usr + @$(call MESSAGE,"Sanity check in overlays $(call qstrip,$(BR2_ROOTFS_OVERLAY))") + support/scripts/check-merged \ + -t overlay \ + $(if $(BR2_ROOTFS_MERGED_USR),-u) \ + $(if $(BR2_ROOTFS_MERGED_BIN),-b) \ + $(call qstrip,$(BR2_ROOTFS_OVERLAY)) $(foreach d, $(call qstrip,$(BR2_ROOTFS_OVERLAY)), \ @$(call MESSAGE,"Copying overlay $(d)")$(sep) \ @@ -923,15 +941,22 @@ check-dependencies: $(TOPDIR)/support/scripts/graph-depends -C .PHONY: show-info -show-info: +show-info: show-info-inner +show-info: SHOW_INFO_PACKAGES = \ + $(foreach i,$(PACKAGES) $(TARGETS_ROOTFS), \ + $(i) $($(call UPPERCASE,$(i))_FINAL_RECURSIVE_DEPENDENCIES) \ + ) + +.PHONY: show-info-all +show-info-all: show-info-inner +show-info-all: SHOW_INFO_PACKAGES = $(PACKAGES_ALL) + +.PHONY: show-info-inner +show-info-inner: @: $(info $(call clean-json, \ { $(foreach p, \ - $(sort $(foreach i,$(PACKAGES) $(TARGETS_ROOTFS), \ - $(i) \ - $($(call UPPERCASE,$(i))_FINAL_RECURSIVE_DEPENDENCIES) \ - ) \ - ), \ + $(sort $(SHOW_INFO_PACKAGES)), \ $(call json-info,$(call UPPERCASE,$(p)))$(comma) \ ) } \ ) \ @@ -1202,6 +1227,8 @@ help: @echo ' external-deps - list external packages used' @echo ' legal-info - generate info about license compliance' @echo ' show-info - generate info about packages, as a JSON blurb' + @echo ' show-info-all - generate info about all packages in Buildroot,' + @echo ' regardless of configuration or target architecture' @echo ' pkg-stats - generate info about packages as JSON and HTML' @echo ' printvars - dump internal variables selected with VARS=...' @echo ' show-vars - dump all internal variables as a JSON blurb; use VARS=...' @@ -1262,10 +1289,29 @@ release: print-version: @echo $(BR2_VERSION_FULL) +# $(1): br2-external path +# $(2): br2-external description +define check-package-external + @$(call MESSAGE,"Checking packages in $(2)") + $(Q)if [ -r "$(1)/.checkpackageignore" ]; then \ + ignore="--ignore-list=$(1)/.checkpackageignore" ; \ + else \ + ignore=""; \ + fi ; \ + $(TOPDIR)/utils/check-package \ + --br2-external $${ignore} \ + `git -C $(1) ls-tree -r --format='$(1)/%(path)' HEAD` +endef + check-package: $(Q)./utils/check-package `git ls-tree -r --name-only HEAD` \ --ignore-list=$(TOPDIR)/.checkpackageignore +check-package-external: + $(foreach name,$(BR2_EXTERNAL_NAMES),\ + $(call check-package-external,$(BR2_EXTERNAL_$(name)_PATH),\ + $(BR2_EXTERNAL_$(name)_DESC))$(sep)) + .PHONY: .checkpackageignore .checkpackageignore: $(Q)./utils/check-package --failed-only `git ls-tree -r --name-only HEAD` \ diff --git a/README b/README index 008e996f5f3..143b476be6a 100644 --- a/README +++ b/README @@ -3,7 +3,7 @@ Linux systems through cross-compilation. The documentation can be found in docs/manual. You can generate a text document with 'make manual-text' and read output/docs/manual/manual.text. -Online documentation can be found at http://buildroot.org/docs.html +Online documentation can be found at https://buildroot.org/docs.html To build and use the buildroot stuff, do the following: diff --git a/SECURITY.md b/SECURITY.md new file mode 100644 index 00000000000..85740a15a50 --- /dev/null +++ b/SECURITY.md @@ -0,0 +1,38 @@ +# Security Policy + + [![OpenSSF Best Practices](https://www.bestpractices.dev/projects/12245/badge)](https://www.bestpractices.dev/projects/12245) + +## Security advisories + +Advisories for Buildroot security vulnerabilities are reported on the +developer's mailing list. A public archive can be consulted on +https://lists.buildroot.org/mailman/listinfo/buildroot + +Buildroot itself has a CPE to track its published vulnerabilities: +https://nvd.nist.gov/products/cpe/search/results?namingFormat=2.3&keyword=buildroot + +The Buildroot project provides some ways for its users to track known +vulnerabilites in the packages included in the generated images, see: +- https://nightly.buildroot.org/manual.html#_details_about_packages + +In addition, detailed informations for all packages integrated with Buildroot +are updated daily on the following public web pages: +- https://security.buildroot.org/ +- https://autobuild.buildroot.org/stats/ + +## Reporting a Vulnerability + +To report a security vulnerability found in the Buildroot build system itself, +please send an email to [security@buildroot.org](mailto:security@buildroot.org). + +This is a private mailing list contacting the Buildroot maintainers only. + +## Vulnerabilities in packages + +Buildroot is a build system that cross-compiles packages from third-party +sources. The Buildroot developers are not responsible for security +vulnerabilities in these packages. Such vulnerabilities should be reported +directly to the upstream project that maintains the affected package. + +When vulnerabilities are fixed upstream, send a patch to update the affected +packages in Buildroot. diff --git a/arch/Config.in b/arch/Config.in index 34422c0d50c..aa104c92e15 100644 --- a/arch/Config.in +++ b/arch/Config.in @@ -23,20 +23,13 @@ choice config BR2_arcle bool "ARC (little endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help Synopsys' DesignWare ARC Processor Cores are a family of 32-bit CPUs that can be used from deeply embedded to high performance host applications. Little endian. -config BR2_arceb - bool "ARC (big endian)" - select BR2_USE_MMU - help - Synopsys' DesignWare ARC Processor Cores are a family of - 32-bit CPUs that can be used from deeply embedded to high - performance host applications. Big endian. - config BR2_arm bool "ARM (little endian)" # MMU support is set by the subarchitecture file, arch/Config.in.arm @@ -49,6 +42,7 @@ config BR2_arm config BR2_armeb bool "ARM (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help ARM is a 32-bit reduced instruction set computer (RISC) @@ -67,12 +61,22 @@ config BR2_aarch64 config BR2_aarch64_be bool "AArch64 (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARCH_IS_64 help Aarch64 is a 64-bit architecture developed by ARM Holdings. http://www.arm.com/products/processors/instruction-set-architectures/armv8-architecture.php http://en.wikipedia.org/wiki/ARM +config BR2_hppa + bool "HPPA" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS + select BR2_USE_MMU + help + Precision Architecture (a.k.a. PA-RISC) is a 32-bit + (big endian) architecture developed by Hewlett Packard. + https://en.wikipedia.org/wiki/PA-RISC + config BR2_i386 bool "i386" select BR2_USE_MMU @@ -82,6 +86,7 @@ config BR2_i386 config BR2_loongarch64 bool "LoongArch64" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU select BR2_ARCH_IS_64 select BR2_ARCH_NEEDS_GCC_AT_LEAST_12 @@ -92,6 +97,7 @@ config BR2_loongarch64 config BR2_m68k bool "m68k" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS # MMU support is set by the subarchitecture file, arch/Config.in.m68k help Motorola 68000 family microprocessor @@ -99,6 +105,7 @@ config BR2_m68k config BR2_microblazeel bool "Microblaze AXI (little endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help Soft processor core designed for Xilinx FPGAs from Xilinx. AXI @@ -108,6 +115,7 @@ config BR2_microblazeel config BR2_microblazebe bool "Microblaze non-AXI (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help Soft processor core designed for Xilinx FPGAs from Xilinx. PLB @@ -117,6 +125,7 @@ config BR2_microblazebe config BR2_mips bool "MIPS (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help MIPS is a RISC microprocessor from MIPS Technologies. Big @@ -126,6 +135,7 @@ config BR2_mips config BR2_mipsel bool "MIPS (little endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help MIPS is a RISC microprocessor from MIPS Technologies. Little @@ -135,6 +145,7 @@ config BR2_mipsel config BR2_mips64 bool "MIPS64 (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARCH_IS_64 select BR2_USE_MMU help @@ -155,6 +166,7 @@ config BR2_mips64el config BR2_or1k bool "OpenRISC" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help OpenRISC is a free and open processor for embedded system. @@ -162,6 +174,7 @@ config BR2_or1k config BR2_powerpc bool "PowerPC" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help PowerPC is a RISC architecture created by Apple-IBM-Motorola @@ -171,6 +184,7 @@ config BR2_powerpc config BR2_powerpc64 bool "PowerPC64 (big endian)" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARCH_IS_64 select BR2_USE_MMU help @@ -201,6 +215,7 @@ config BR2_riscv config BR2_s390x bool "s390x" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARCH_IS_64 select BR2_USE_MMU help @@ -210,6 +225,7 @@ config BR2_s390x config BR2_sh bool "SuperH" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help SuperH (or SH) is a 32-bit reduced instruction set computer @@ -220,6 +236,7 @@ config BR2_sh config BR2_sparc bool "SPARC" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_USE_MMU help SPARC (from Scalable Processor Architecture) is a RISC @@ -230,6 +247,7 @@ config BR2_sparc config BR2_sparc64 bool "SPARC64" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARCH_IS_64 select BR2_USE_MMU help @@ -248,8 +266,17 @@ config BR2_x86_64 architecture compatible microprocessor). http://en.wikipedia.org/wiki/X86_64 +config BR2_wasm32 + bool "WebAssembly (wasm32)" + select BR2_ARCH_HAS_NO_TOOLCHAIN_BUILDROOT + select BR2_USE_MMU + help + WebAssembly 32-bit target using wasi-sdk external toolchain. + Produces .wasm binaries for WASI-compatible runtimes. + config BR2_xtensa bool "Xtensa" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS # MMU support is set by the subarchitecture file, arch/Config.in.xtensa help Xtensa is a Tensilica processor IP architecture. @@ -325,6 +352,10 @@ config BR2_ARCH_NEEDS_GCC_AT_LEAST_16 bool select BR2_ARCH_NEEDS_GCC_AT_LEAST_15 +config BR2_ARCH_NEEDS_GCC_AT_LEAST_17 + bool + select BR2_ARCH_NEEDS_GCC_AT_LEAST_16 + # The following string values are defined by the individual # Config.in.$ARCH files config BR2_ARCH @@ -385,7 +416,7 @@ config BR2_BINFMT_SUPPORTS_SHARED config BR2_READELF_ARCH_NAME string -if BR2_arcle || BR2_arceb +if BR2_arcle source "arch/Config.in.arc" endif @@ -393,6 +424,10 @@ if BR2_arm || BR2_armeb || BR2_aarch64 || BR2_aarch64_be source "arch/Config.in.arm" endif +if BR2_hppa +source "arch/Config.in.hppa" +endif + if BR2_loongarch64 source "arch/Config.in.loongarch" endif @@ -437,6 +472,10 @@ if BR2_i386 || BR2_x86_64 source "arch/Config.in.x86" endif +if BR2_wasm32 +source "arch/Config.in.wasm32" +endif + if BR2_xtensa source "arch/Config.in.xtensa" endif @@ -444,6 +483,7 @@ endif # Set up target binary format choice prompt "Target Binary Format" + default BR2_BINFMT_WASM if BR2_wasm32 default BR2_BINFMT_ELF if BR2_USE_MMU default BR2_BINFMT_FLAT @@ -474,6 +514,12 @@ config BR2_BINFMT_FLAT format based on the original a.out format. It is widely used in environment where no MMU is available. +config BR2_BINFMT_WASM + bool "WASM" + depends on BR2_wasm32 + help + WebAssembly binary format. WASM binaries are executed by a + host runtime (e.g. wazero) rather than the OS kernel directly. endchoice endmenu # Target options diff --git a/arch/Config.in.arc b/arch/Config.in.arc index f367c491311..f250ae5eeb4 100644 --- a/arch/Config.in.arc +++ b/arch/Config.in.arc @@ -31,7 +31,7 @@ config BR2_archs38_full bool "ARC HS38 with Quad MAC & FPU" help Fully featured ARC HS with additional support for - - Dual- and quad multiply and MC oprations + - Dual- and quad multiply and MC operations - Double-precision FPU It corresponds to "hs38_slc_full" ARC HS template in @@ -59,19 +59,17 @@ config BR2_ARC_ATOMIC_EXT default y if BR2_archs4x_rel31 || BR2_archs4x config BR2_ARCH - default "arc" if BR2_arcle - default "arceb" if BR2_arceb + default "arc" config BR2_NORMALIZED_ARCH default "arc" config BR2_arc bool - default y if BR2_arcle || BR2_arceb + default y config BR2_ENDIAN - default "LITTLE" if BR2_arcle - default "BIG" if BR2_arceb + default "LITTLE" config BR2_GCC_TARGET_CPU default "arc700" if BR2_arc750d diff --git a/arch/Config.in.arm b/arch/Config.in.arm index a0bf6c3386c..6fbad65f9e7 100644 --- a/arch/Config.in.arm +++ b/arch/Config.in.arm @@ -112,22 +112,27 @@ choice if !BR2_ARCH_IS_64 comment "armv4 cores" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS config BR2_arm920t bool "arm920t" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARM_CPU_HAS_ARM select BR2_ARM_CPU_HAS_THUMB select BR2_ARM_CPU_ARMV4 config BR2_arm922t bool "arm922t" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARM_CPU_HAS_ARM select BR2_ARM_CPU_HAS_THUMB select BR2_ARM_CPU_ARMV4 config BR2_fa526 bool "fa526/626" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARM_CPU_HAS_ARM select BR2_ARM_CPU_ARMV4 config BR2_strongarm bool "strongarm sa110/sa1100" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS select BR2_ARM_CPU_HAS_ARM select BR2_ARM_CPU_ARMV4 @@ -474,6 +479,14 @@ config BR2_cortex_a76_a55 select BR2_ARM_CPU_HAS_FP_ARMV8 select BR2_ARM_CPU_ARMV8A select BR2_ARCH_NEEDS_GCC_AT_LEAST_9 +config BR2_cortex_a77 + bool "cortex-A77" + select BR2_ARM_CPU_HAS_ARM if !BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_NEON if !BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_THUMB2 if !BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_FP_ARMV8 + select BR2_ARM_CPU_ARMV8A + select BR2_ARCH_NEEDS_GCC_AT_LEAST_11 config BR2_cortex_a78 bool "cortex-A78" select BR2_ARM_CPU_HAS_ARM if !BR2_ARCH_IS_64 @@ -498,6 +511,12 @@ config BR2_tsv110 select BR2_ARCH_NEEDS_GCC_AT_LEAST_9 comment "armv8.4a cores" +config BR2_neoverse_v1 + bool "neoverse-V1 (aka zeus)" + depends on BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_FP_ARMV8 + select BR2_ARM_CPU_ARMV8A + select BR2_ARCH_NEEDS_GCC_AT_LEAST_11 config BR2_saphira bool "saphira" depends on BR2_ARCH_IS_64 @@ -518,6 +537,12 @@ config BR2_neoverse_n2 select BR2_ARM_CPU_HAS_FP_ARMV8 select BR2_ARM_CPU_ARMV9A select BR2_ARCH_NEEDS_GCC_AT_LEAST_11 +config BR2_neoverse_v2 + bool "neoverse-V2 (aka demeter)" + depends on BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_FP_ARMV8 + select BR2_ARM_CPU_ARMV9A + select BR2_ARCH_NEEDS_GCC_AT_LEAST_13 comment "armv9.2a cores" config BR2_cortex_a720 @@ -526,6 +551,18 @@ config BR2_cortex_a720 select BR2_ARM_CPU_HAS_FP_ARMV8 select BR2_ARM_CPU_ARMV9A select BR2_ARCH_NEEDS_GCC_AT_LEAST_14 +config BR2_neoverse_v3 + bool "neoverse-V3 (aka poseidon)" + depends on BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_FP_ARMV8 + select BR2_ARM_CPU_ARMV9A + select BR2_ARCH_NEEDS_GCC_AT_LEAST_15 +config BR2_neoverse_v3ae + bool "neoverse-V3AE (aka poseidon)" + depends on BR2_ARCH_IS_64 + select BR2_ARM_CPU_HAS_FP_ARMV8 + select BR2_ARM_CPU_ARMV9A + select BR2_ARCH_NEEDS_GCC_AT_LEAST_15 endchoice config BR2_ARM_ENABLE_NEON @@ -918,12 +955,16 @@ config BR2_GCC_TARGET_CPU default "neoverse-n1" if BR2_neoverse_n1 default "tsv110" if BR2_tsv110 # armv8.4a + default "neoverse-v1" if BR2_neoverse_v1 default "saphira" if BR2_saphira # armv9.0a default "cortex-a710" if BR2_cortex_a710 default "neoverse-n2" if BR2_neoverse_n2 + default "neoverse-v2" if BR2_neoverse_v2 # armv9.2a default "cortex-a720" if BR2_cortex_a720 + default "neoverse-v3" if BR2_neoverse_v3 + default "neoverse-v3ae" if BR2_neoverse_v3ae config BR2_GCC_TARGET_ABI default "aapcs-linux" if BR2_arm || BR2_armeb diff --git a/arch/Config.in.hppa b/arch/Config.in.hppa new file mode 100644 index 00000000000..16c826dd9ea --- /dev/null +++ b/arch/Config.in.hppa @@ -0,0 +1,20 @@ +choice + prompt "Target Architecture Type" + help + Architecture type (or version) to use. + +config BR2_parisc11 + bool "PA-RISC 1.1" +endchoice + +config BR2_ARCH + default "hppa" + +config BR2_NORMALIZED_ARCH + default "parisc" + +config BR2_ENDIAN + default "BIG" + +config BR2_READELF_ARCH_NAME + default "HPPA" diff --git a/arch/Config.in.m68k b/arch/Config.in.m68k index 235cafacf5b..74a197934ff 100644 --- a/arch/Config.in.m68k +++ b/arch/Config.in.m68k @@ -23,6 +23,11 @@ choice help Specific CPU variant to use +config BR2_m68k_68000 + bool "68000" + select BR2_m68k_m68k + select BR2_SOFT_FLOAT + config BR2_m68k_68030 bool "68030" select BR2_m68k_m68k @@ -41,6 +46,7 @@ config BR2_m68k_cf5208 endchoice config BR2_GCC_TARGET_CPU + default "68000" if BR2_m68k_68000 default "68030" if BR2_m68k_68030 default "68040" if BR2_m68k_68040 default "5208" if BR2_m68k_cf5208 diff --git a/arch/Config.in.powerpc b/arch/Config.in.powerpc index 3f4d348d5fc..805bc9ce689 100644 --- a/arch/Config.in.powerpc +++ b/arch/Config.in.powerpc @@ -144,6 +144,16 @@ config BR2_powerpc_power9 select BR2_POWERPC_CPU_HAS_ALTIVEC select BR2_POWERPC_CPU_HAS_VSX select BR2_ARCH_NEEDS_GCC_AT_LEAST_6 +config BR2_powerpc_power10 + bool "power10" + select BR2_POWERPC_CPU_HAS_ALTIVEC + select BR2_POWERPC_CPU_HAS_VSX + select BR2_ARCH_NEEDS_GCC_AT_LEAST_11 +config BR2_powerpc_power11 + bool "power11" + select BR2_POWERPC_CPU_HAS_ALTIVEC + select BR2_POWERPC_CPU_HAS_VSX + select BR2_ARCH_NEEDS_GCC_AT_LEAST_15 endchoice config BR2_POWERPC_SOFT_FLOAT @@ -207,6 +217,8 @@ config BR2_GCC_TARGET_CPU default "power7" if BR2_powerpc_power7 default "power8" if BR2_powerpc_power8 default "power9" if BR2_powerpc_power9 + default "power10" if BR2_powerpc_power10 + default "power11" if BR2_powerpc_power11 config BR2_READELF_ARCH_NAME default "PowerPC" if BR2_powerpc diff --git a/arch/Config.in.riscv b/arch/Config.in.riscv index 23d095d1a66..8801590d803 100644 --- a/arch/Config.in.riscv +++ b/arch/Config.in.riscv @@ -45,16 +45,25 @@ config BR2_RISCV_ISA_RVV bool "Vector Instructions (V)" select BR2_ARCH_NEEDS_GCC_AT_LEAST_12 +config BR2_RISCV_ISA_EXTRA + string "Append extra RISC-V ISA extensions" + help + Extra ISA extensions to append to the ISA extensions string. + They are underscore-separated. For example, + "zba_zbb_zvl256b". + choice prompt "Target Architecture Size" default BR2_RISCV_64 config BR2_RISCV_32 bool "32-bit" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS config BR2_RISCV_64 bool "64-bit" select BR2_ARCH_IS_64 + select BR2_RISCV_USE_MMU if BR2_HIDE_SECONDARY_TARGET_OPTIONS endchoice diff --git a/arch/Config.in.wasm32 b/arch/Config.in.wasm32 new file mode 100644 index 00000000000..75898bd7b78 --- /dev/null +++ b/arch/Config.in.wasm32 @@ -0,0 +1,11 @@ +config BR2_ARCH + default "wasm32" + +config BR2_NORMALIZED_ARCH + default "wasm32" + +config BR2_ENDIAN + default "LITTLE" + +config BR2_READELF_ARCH_NAME + default "WebAssembly" diff --git a/arch/Config.in.x86 b/arch/Config.in.x86 index f9b32130b23..3c4a7253600 100644 --- a/arch/Config.in.x86 +++ b/arch/Config.in.x86 @@ -35,19 +35,22 @@ config BR2_X86_CPU_HAS_AVX512 # https://gcc.gnu.org/onlinedocs/gcc-13.2.0/gcc/x86-Options.html choice prompt "Target Architecture Variant" - default BR2_x86_i586 if BR2_i386 + default BR2_x86_i686 if BR2_i386 depends on BR2_i386 || BR2_x86_64 help Specific CPU variant to use config BR2_x86_i486 bool "i486" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS depends on !BR2_x86_64 config BR2_x86_i586 bool "i586" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS depends on !BR2_x86_64 config BR2_x86_x1000 bool "x1000" + depends on !BR2_HIDE_SECONDARY_TARGET_OPTIONS depends on !BR2_x86_64 help The Intel X1000 is a Pentium class microprocessor in the diff --git a/arch/arch.mk.hppa b/arch/arch.mk.hppa new file mode 100644 index 00000000000..f4a9ac41d23 --- /dev/null +++ b/arch/arch.mk.hppa @@ -0,0 +1,11 @@ +# +# Configure the GCC_TARGET_ARCH variable. +# + +ifeq ($(BR2_hppa),y) + +ifeq ($(BR2_parisc11),y) +GCC_TARGET_ARCH := 1.1 +endif + +endif diff --git a/arch/arch.mk.riscv b/arch/arch.mk.riscv index ee5c434b971..e47666eadd6 100644 --- a/arch/arch.mk.riscv +++ b/arch/arch.mk.riscv @@ -39,4 +39,9 @@ ifeq ($(BR2_TOOLCHAIN_GCC_AT_LEAST_12),y) GCC_TARGET_ARCH := $(GCC_TARGET_ARCH)_zicsr_zifencei endif +ARCH_RISV_ISA_EXTRA = $(call qstrip, $(BR2_RISCV_ISA_EXTRA)) +ifneq ($(ARCH_RISV_ISA_EXTRA),) +GCC_TARGET_ARCH := $(GCC_TARGET_ARCH)_$(ARCH_RISV_ISA_EXTRA) +endif + endif diff --git a/arch/arch.mk.wasm32 b/arch/arch.mk.wasm32 new file mode 100644 index 00000000000..23ad29656d8 --- /dev/null +++ b/arch/arch.mk.wasm32 @@ -0,0 +1,133 @@ +# wasi-libc emulation flags for wasm32-wasi targets. +ifeq ($(BR2_wasm32),y) +ARCH_TOOLCHAIN_WRAPPER_OPTS += \ + -D_WASI_EMULATED_SIGNAL \ + -D_WASI_EMULATED_MMAN \ + -D_WASI_EMULATED_PROCESS_CLOCKS \ + -D_WASI_EMULATED_GETPID \ + -include wasi-posix-fixups.h + +# Export __errno_location so host runtimes can set errno in WASM memory. +# Add usr/lib to search path (wasi-sdk sysroot only has lib/wasm32-wasi). +TARGET_LDFLAGS += -Wl,--export=__errno_location -L$(STAGING_DIR)/usr/lib + +# Autoconf function detection cache overrides for wasm32-wasi. +# +# wasi-posix-fixups.h is force-included via -include into every compilation +# unit, including autoconf test programs. Autoconf detects functions by +# compiling `char FUNC(void); int main() { return FUNC(); }` -- which +# conflicts with the proper prototypes in wasi-posix-fixups.h and the +# wasi-libc headers. Pre-seeding these cache variables tells configure +# the functions exist without running the (broken) compile test. +TARGET_CONFIGURE_ARGS += \ + ac_cv_func__exit=yes \ + ac_cv_func_accept=yes \ + ac_cv_func_access=yes \ + ac_cv_func_bind=yes \ + ac_cv_func_chdir=yes \ + ac_cv_func_chown=yes \ + ac_cv_func_chroot=yes \ + ac_cv_func_clock_gettime=yes \ + ac_cv_func_clock_settime=yes \ + ac_cv_func_connect=yes \ + ac_cv_func_dup=yes \ + ac_cv_func_dup2=yes \ + ac_cv_func_dup3=yes \ + ac_cv_func_execl=yes \ + ac_cv_func_execle=yes \ + ac_cv_func_execlp=yes \ + ac_cv_func_execv=yes \ + ac_cv_func_execve=yes \ + ac_cv_func_execvp=yes \ + ac_cv_func_fchdir=yes \ + ac_cv_func_fchown=yes \ + ac_cv_func_fork=yes \ + ac_cv_func_fpathconf=yes \ + ac_cv_func_ftruncate=yes \ + ac_cv_func_getcwd=yes \ + ac_cv_func_getegid=yes \ + ac_cv_func_geteuid=yes \ + ac_cv_func_getgid=yes \ + ac_cv_func_getgroups=yes \ + ac_cv_func_gethostname=yes \ + ac_cv_func_getpeername=yes \ + ac_cv_func_getpgid=yes \ + ac_cv_func_getpgrp=yes \ + ac_cv_func_getppid=yes \ + ac_cv_func_getpriority=yes \ + ac_cv_func_getrlimit=yes \ + ac_cv_func_getsid=yes \ + ac_cv_func_getsockname=yes \ + ac_cv_func_getsockopt=yes \ + ac_cv_func_gettimeofday=yes \ + ac_cv_func_getuid=yes \ + ac_cv_func_initgroups=yes \ + ac_cv_func_isatty=yes \ + ac_cv_func_kill=yes \ + ac_cv_func_killpg=yes \ + ac_cv_func_lchown=yes \ + ac_cv_func_link=yes \ + ac_cv_func_listen=yes \ + ac_cv_func_mkdtemp=yes \ + ac_cv_func_mkfifo=yes \ + ac_cv_func_mknod=yes \ + ac_cv_func_mkstemp=yes \ + ac_cv_func_nice=yes \ + ac_cv_func_pathconf=yes \ + ac_cv_func_pause=yes \ + ac_cv_func_pipe=yes \ + ac_cv_func_pipe2=yes \ + ac_cv_func_readlink=yes \ + ac_cv_func_recv=yes \ + ac_cv_func_recvfrom=yes \ + ac_cv_func_select=yes \ + ac_cv_func_send=yes \ + ac_cv_func_sendto=yes \ + ac_cv_func_setegid=yes \ + ac_cv_func_seteuid=yes \ + ac_cv_func_setgid=yes \ + ac_cv_func_setgroups=yes \ + ac_cv_func_sethostname=yes \ + ac_cv_func_setpgid=yes \ + ac_cv_func_setpgrp=yes \ + ac_cv_func_setpriority=yes \ + ac_cv_func_setregid=yes \ + ac_cv_func_setreuid=yes \ + ac_cv_func_setrlimit=yes \ + ac_cv_func_setsid=yes \ + ac_cv_func_setsockopt=yes \ + ac_cv_func_settimeofday=yes \ + ac_cv_func_setuid=yes \ + ac_cv_func_shutdown=yes \ + ac_cv_func_sigaction=yes \ + ac_cv_func_sigaddset=yes \ + ac_cv_func_sigdelset=yes \ + ac_cv_func_sigemptyset=yes \ + ac_cv_func_sigfillset=yes \ + ac_cv_func_sigismember=yes \ + ac_cv_func_sigpending=yes \ + ac_cv_func_sigprocmask=yes \ + ac_cv_func_sigaltstack=yes \ + ac_cv_func_setitimer=yes \ + ac_cv_func_getitimer=yes \ + ac_cv_func_socket=yes \ + ac_cv_func_symlink=yes \ + ac_cv_func_sync=yes \ + ac_cv_func_sysconf=yes \ + ac_cv_func_tcgetpgrp=yes \ + ac_cv_func_tcsetpgrp=yes \ + ac_cv_func_truncate=yes \ + ac_cv_func_ttyname=yes \ + ac_cv_func_ttyname_r=yes \ + ac_cv_func_tzset=yes \ + ac_cv_func_umask=yes \ + ac_cv_func_vfork=yes \ + ac_cv_func_wait=yes \ + ac_cv_func_waitpid=yes + +# Functions falsely detected due to -Wl,--allow-undefined (link always +# succeeds). These do NOT exist in wasi-libc or our host imports. +TARGET_CONFIGURE_ARGS += \ + ac_cv_func_tcgetwinsize=no \ + ac_cv_func_tcsetwinsize=no +endif diff --git a/board/aarch64-efi/genimage-efi.cfg b/board/aarch64-efi/genimage-efi.cfg index 158deab87dc..207fc3e3bcc 100644 --- a/board/aarch64-efi/genimage-efi.cfg +++ b/board/aarch64-efi/genimage-efi.cfg @@ -24,7 +24,7 @@ image disk.img { } partition root { - partition-type-uuid = b921b045-1df0-41c3-af44-4c6f280d3fae + partition-type-uuid = root-arm64 image = "rootfs.ext2" } } diff --git a/board/aarch64-efi/linux-pmem-netboot.fragment b/board/aarch64-efi/linux-pmem-netboot.fragment new file mode 100644 index 00000000000..8c3e9109197 --- /dev/null +++ b/board/aarch64-efi/linux-pmem-netboot.fragment @@ -0,0 +1,3 @@ +CONFIG_BLK_DEV_PMEM=y +CONFIG_LIBNVDIMM=y +CONFIG_OF_PMEM=y diff --git a/board/aarch64-efi/patches/linux/linux.hash b/board/aarch64-efi/patches/linux/linux.hash index 50983eb42bf..7cc4ece4bc2 100644 --- a/board/aarch64-efi/patches/linux/linux.hash +++ b/board/aarch64-efi/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 62148e7e17f54c4a5ab5e75ad4882682c54bee818948be61a5963234fc0849fc linux-6.11.11.tar.xz +sha256 8d1934a72a185f1be6b56e3ad8ea31fd9a381ffec0346c69f06c90d776da7cb8 linux-6.18.14.tar.xz diff --git a/board/aarch64-efi/readme.txt b/board/aarch64-efi/readme.txt index 0e7ea0b5dd7..259eb5b8c9d 100644 --- a/board/aarch64-efi/readme.txt +++ b/board/aarch64-efi/readme.txt @@ -48,6 +48,17 @@ alternative to QEMU_EFI.fd. You will also need to change the machine specification to "-M virt,secure=on" on qemu command line, to enable TrustZone support, and you will need to increase the memory with "-m 1024". +HTTP boot +--------- + +Some U-Boot and Devicetree based firmwares are capable of booting with UEFI from +HTTP(s). [4] + +The aarch64_efi_defconfig has appropriate persistent memory support compiled in +the Linux kernel to support this scenario. [5] + [1]: https://github.com/ARM-software/ebbr [2]: https://developer.arm.com/architectures/system-architectures/arm-systemready [3]: https://github.com/glikely/u-boot-tfa-build +[4]: https://docs.u-boot-project.org/en/latest/develop/uefi/uefi.html#uefi-http-boot-using-the-legacy-tcp-stack +[5]: https://github.com/ARM-software/edge-iot-arch-guide/blob/main/source/http-boot/pmem_node.md diff --git a/board/acmesystems/acqua-a5/dts/microchip/at91-sama5d3_acqua.dts b/board/acmesystems/acqua-a5/dts/microchip/at91-sama5d3_acqua.dts index 60be8a67cdf..4754c3cf1cc 100644 --- a/board/acmesystems/acqua-a5/dts/microchip/at91-sama5d3_acqua.dts +++ b/board/acmesystems/acqua-a5/dts/microchip/at91-sama5d3_acqua.dts @@ -281,11 +281,11 @@ status = "disabled"; }; - usb1: ohci@600000 { + usb1: usb@600000 { status = "okay"; }; - usb2: ehci@700000 { + usb2: usb@700000 { status = "okay"; }; diff --git a/board/acmesystems/acqua-a5/patches/linux/linux.hash b/board/acmesystems/acqua-a5/patches/linux/linux.hash index 2c86a53263e..67e419e2f0e 100644 --- a/board/acmesystems/acqua-a5/patches/linux/linux.hash +++ b/board/acmesystems/acqua-a5/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 6b19a3ae99423de2416964d67251d745910277af258b4c4c63e88fd87dbf0e27 linux-6.12.41.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 3712fc1ec839e4daac981176c8518912e8f452650aaedfe4381da4419613a431 linux-6.18.40.tar.xz diff --git a/board/acmesystems/aria-g25/genimage.cfg b/board/acmesystems/aria-g25/genimage.cfg deleted file mode 100644 index 29dc697153d..00000000000 --- a/board/acmesystems/aria-g25/genimage.cfg +++ /dev/null @@ -1,36 +0,0 @@ -# Minimal SD card image for the Acmesystems Aria G25 - -image boot.vfat { - vfat { - file zImage { - image = "zImage" - } - - file at91-ariag25.dtb { - image = "at91-ariag25.dtb" - } - - file boot.bin { - image = "at91sam9x5_aria-sdcardboot-linux-zimage-dt-3.10.3.bin" - } - } - - size = 16M -} - -image sdcard.img { - hdimage { - } - - partition boot { - partition-type = 0xC - bootable = "true" - image = "boot.vfat" - } - - partition rootfs { - partition-type = 0x83 - image = "rootfs.ext4" - size = 512M - } -} diff --git a/board/acmesystems/aria-g25/patches/at91bootstrap3/at91bootstrap3.hash b/board/acmesystems/aria-g25/patches/at91bootstrap3/at91bootstrap3.hash deleted file mode 100644 index 6edf3d3345e..00000000000 --- a/board/acmesystems/aria-g25/patches/at91bootstrap3/at91bootstrap3.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 5ea2a8fed1ba0024229c6f6d77176679e1b24791bdbce8e285634013d4a93551 at91bootstrap3-v3.10.3-git4.tar.gz diff --git a/board/acmesystems/aria-g25/patches/linux/linux.hash b/board/acmesystems/aria-g25/patches/linux/linux.hash deleted file mode 100644 index 81824a41ee4..00000000000 --- a/board/acmesystems/aria-g25/patches/linux/linux.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 6c5e4d3c87feadbfdb9f7d2e46f3f120b00286ba380491c5956708e0b94232c8 linux-4.19.315.tar.xz diff --git a/board/acmesystems/aria-g25/readme.txt b/board/acmesystems/aria-g25/readme.txt deleted file mode 100644 index cb9e9abf778..00000000000 --- a/board/acmesystems/aria-g25/readme.txt +++ /dev/null @@ -1,44 +0,0 @@ -Acme Systems Aria G25 - -Build instructions -================== - -To build an image for the Aria G25 choose the configuration -corresponding to the Aria variant. - -For 128MB RAM variant type: - -$ make acmesystems_aria_g25_128mb_defconfig - -else for 256MB RAM variant type: - -$ make acmesystems_aria_g25_256mb_defconfig - -To customize the configuration choosed type: - -$ make menuconfig - -When you are ready to start building Buildroot type: - -$ make - -How to write the microSD card -============================= - -Once the build process is finished you will have an image called -"sdcard.img" in the output/images/ directory. - -Write the bootable SD card image "sdcard.img" onto an SD card with -"dd" command: - - $ sudo dd if=output/images/sdcard.img of=/dev/sdX - -Assuming your Aria G25 baseboard has a MicroSD socket, for example -with the Terra baseboard, insert the microSD card into the baseboard -slot and power it. - -To get the kernel log messages you can use a DPI cable -(http://www.acmesystems.it/DPI) - -You can find additional informations, tutorials and a very -comprehensive documentation on http://www.acmesystems.it/aria. diff --git a/board/acmesystems/arietta-g25/genimage.cfg b/board/acmesystems/arietta-g25/genimage.cfg deleted file mode 100644 index 3b67a474cd0..00000000000 --- a/board/acmesystems/arietta-g25/genimage.cfg +++ /dev/null @@ -1,36 +0,0 @@ -# Minimal SD card image for the Acmesystems Arietta G25 - -image boot.vfat { - vfat { - file zImage { - image = "zImage" - } - - file acme-arietta.dtb { - image = "at91-ariettag25.dtb" - } - - file boot.bin { - image = "at91sam9x5_arietta-sdcardboot-linux-zimage-dt-3.10.3.bin" - } - } - - size = 16M -} - -image sdcard.img { - hdimage { - } - - partition boot { - partition-type = 0xC - bootable = "true" - image = "boot.vfat" - } - - partition rootfs { - partition-type = 0x83 - image = "rootfs.ext4" - size = 512M - } -} diff --git a/board/acmesystems/arietta-g25/patches/at91bootstrap3/at91bootstrap3.hash b/board/acmesystems/arietta-g25/patches/at91bootstrap3/at91bootstrap3.hash deleted file mode 100644 index 6edf3d3345e..00000000000 --- a/board/acmesystems/arietta-g25/patches/at91bootstrap3/at91bootstrap3.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 5ea2a8fed1ba0024229c6f6d77176679e1b24791bdbce8e285634013d4a93551 at91bootstrap3-v3.10.3-git4.tar.gz diff --git a/board/acmesystems/arietta-g25/patches/linux/linux.hash b/board/acmesystems/arietta-g25/patches/linux/linux.hash deleted file mode 100644 index 81824a41ee4..00000000000 --- a/board/acmesystems/arietta-g25/patches/linux/linux.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 6c5e4d3c87feadbfdb9f7d2e46f3f120b00286ba380491c5956708e0b94232c8 linux-4.19.315.tar.xz diff --git a/board/acmesystems/arietta-g25/readme.txt b/board/acmesystems/arietta-g25/readme.txt deleted file mode 100644 index f356b0a2645..00000000000 --- a/board/acmesystems/arietta-g25/readme.txt +++ /dev/null @@ -1,49 +0,0 @@ -Acme Systems Arietta G25 - -Intro -===== - -This default configuration will allow you to start experimenting with the -buildroot environment for the Arietta G25. With the current configuration -it will bring-up the board, and allow access through the serial console. - -You can find additional informations, tutorials and a very comprehensive -documentation on http://www.acmesystems.it/arietta. - -Build instructions -================== - -To build an image for the Arietta G25 choose the configuration -corresponding to the Arietta variant. - -For 128MB RAM variant type: - -$ make acmesystems_arietta_g25_128mb_defconfig - -else for 256MB RAM variant type: - -$ make acmesystems_arietta_g25_256mb_defconfig - -To customize the configuration chosen type: - -$ make menuconfig - -When you are ready to start building Buildroot type: - -$ make - -How to write the microSD card -============================= - -Once the build process is finished you will have an image called "sdcard.img" -in the output/images/ directory. - -Copy the bootable "sdcard.img" onto an SD card with "dd": - - $ sudo dd if=output/images/sdcard.img of=/dev/sdX - -Insert the microSD card into the Arietta slot and power it. - -The image just built is fairly basic and the only output -you will get is on serial console, please consider to use a DPI -cable (http://www.acmesystems.it/DPI) diff --git a/board/amarula/vyasa/patches/linux/linux.hash b/board/amarula/vyasa/patches/linux/linux.hash index b763fc947a9..f83883b936d 100644 --- a/board/amarula/vyasa/patches/linux/linux.hash +++ b/board/amarula/vyasa/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 880ace63ca2291b8b639e9bd862cc828649d3e1e00ccfee5861473debd2e4dec linux-6.1.91.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/amarula/vyasa/patches/uboot/uboot.hash b/board/amarula/vyasa/patches/uboot/uboot.hash index 5e017f54990..b6a925ea4e8 100644 --- a/board/amarula/vyasa/patches/uboot/uboot.hash +++ b/board/amarula/vyasa/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 50b4482a505bc281ba8470c399a3c26e145e29b23500bc35c50debd7fa46bdf8 u-boot-2022.10.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/aarch64-efi/patches/linux-headers/linux-headers.hash b/board/andes/ae350/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/aarch64-efi/patches/linux-headers/linux-headers.hash rename to board/andes/ae350/patches/linux-headers/linux-headers.hash diff --git a/board/andes/ae350/patches/linux/linux.hash b/board/andes/ae350/patches/linux/linux.hash new file mode 100644 index 00000000000..1a6a136b71b --- /dev/null +++ b/board/andes/ae350/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 c71af3d2c86c0a0deca4f54b51d1c35217082b030052cc3513dc42e852652733 linux-v6.0.y-andes.tar.gz diff --git a/board/andes/ae350/patches/opensbi/opensbi.hash b/board/andes/ae350/patches/opensbi/opensbi.hash new file mode 100644 index 00000000000..d7893a1deec --- /dev/null +++ b/board/andes/ae350/patches/opensbi/opensbi.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 d11702103f177a2914e94eec57ce5ed820296d874f6b6525c4482e55d71a3667 opensbi-1.6.tar.gz diff --git a/board/andes/ae350/patches/uboot/0001-mmc-ftsdc010_mci-Support-DTS-of-ftsdc010-driver-for-.patch b/board/andes/ae350/patches/uboot/0001-mmc-ftsdc010_mci-Support-DTS-of-ftsdc010-driver-for-.patch deleted file mode 100644 index be89a1563f7..00000000000 --- a/board/andes/ae350/patches/uboot/0001-mmc-ftsdc010_mci-Support-DTS-of-ftsdc010-driver-for-.patch +++ /dev/null @@ -1,38 +0,0 @@ -From 16aad5594e08550295ea3c12c1c9ed6f64774748 Mon Sep 17 00:00:00 2001 -From: Rick Chen -Date: Tue, 29 Mar 2022 13:41:10 +0800 -Subject: [PATCH] mmc: ftsdc010_mci: Support DTS of ftsdc010 driver for - generic dma - -The ftsdc010 driver has been implemented for generic dma in Linux -kernel. And its compatible is andestech,atfsdc010g to distinguish -the legacy andestech,atfsdc010 which is not for generic dma. - -Althought the ftsdc010_mci driver in U-Boot does not use dma, but -it still can work well with the mmc node for generic dma. So add -the compatible string to support it. - -Signed-off-by: Rick Chen - -Upstream-Status: Pending - -Signed-off-by: Yu Chien Peter Lin ---- - drivers/mmc/ftsdc010_mci.c | 1 + - 1 file changed, 1 insertion(+) - -diff --git a/drivers/mmc/ftsdc010_mci.c b/drivers/mmc/ftsdc010_mci.c -index 570d54cf9d..65b1d447a8 100644 ---- a/drivers/mmc/ftsdc010_mci.c -+++ b/drivers/mmc/ftsdc010_mci.c -@@ -460,6 +460,7 @@ int ftsdc010_mmc_bind(struct udevice *dev) - - static const struct udevice_id ftsdc010_mmc_ids[] = { - { .compatible = "andestech,atfsdc010" }, -+ { .compatible = "andestech,atfsdc010g" }, - { } - }; - --- -2.34.1 - diff --git a/board/andes/ae350/patches/uboot/0002-spl-Align-device-tree-blob-address-at-8-byte-boundar.patch b/board/andes/ae350/patches/uboot/0002-spl-Align-device-tree-blob-address-at-8-byte-boundar.patch deleted file mode 100644 index 5080554ca1f..00000000000 --- a/board/andes/ae350/patches/uboot/0002-spl-Align-device-tree-blob-address-at-8-byte-boundar.patch +++ /dev/null @@ -1,42 +0,0 @@ -From 933ad8a59f7fd9b2088badc3e97167d750a40b5a Mon Sep 17 00:00:00 2001 -From: Bin Meng -Date: Mon, 12 Jul 2021 11:52:31 +0800 -Subject: [PATCH] spl: Align device tree blob address at 8-byte boundary - -Since libfdt v1.6.1, a new requirement on the device tree address via: - - commit 5e735860c478 ("libfdt: Check for 8-byte address alignment in fdt_ro_probe_()") - -must be met that the device tree must be loaded in to memory at an -8-byte aligned address. - -Signed-off-by: Bin Meng - -This patch was imported from U-boot patchwork: -https://patchwork.ozlabs.org/project/uboot/patch/20210712035231.26475-1-bmeng.cn@gmail.com/ - -Signed-off-by: Yu Chien Peter Lin ---- - common/spl/spl_fit.c | 6 ++++++ - 1 file changed, 6 insertions(+) - -diff --git a/common/spl/spl_fit.c b/common/spl/spl_fit.c -index a35be529..a76ad14a 100644 ---- a/common/spl/spl_fit.c -+++ b/common/spl/spl_fit.c -@@ -382,6 +382,12 @@ static int spl_fit_append_fdt(struct spl_image_info *spl_image, - */ - image_info.load_addr = spl_image->load_addr + spl_image->size; - -+ /* -+ * Since libfdt v1.6.1, the device tree must be loaded in to memory -+ * at an 8-byte aligned address. -+ */ -+ image_info.load_addr = roundup(image_info.load_addr, 8); -+ - /* Figure out which device tree the board wants to use */ - node = spl_fit_get_image_node(ctx, FIT_FDT_PROP, index++); - if (node < 0) { --- -2.34.1 - diff --git a/board/andes/ae350/patches/uboot/uboot.hash b/board/andes/ae350/patches/uboot/uboot.hash new file mode 100644 index 00000000000..440526977bd --- /dev/null +++ b/board/andes/ae350/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 diff --git a/board/acmesystems/aria-g25/patches/linux-headers/linux-headers.hash b/board/arcturus/ppc-ucp1020/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/acmesystems/aria-g25/patches/linux-headers/linux-headers.hash rename to board/arcturus/ppc-ucp1020/patches/linux-headers/linux-headers.hash diff --git a/board/arcturus/ppc-ucp1020/patches/linux/linux.hash b/board/arcturus/ppc-ucp1020/patches/linux/linux.hash new file mode 100644 index 00000000000..eafb86d8cb1 --- /dev/null +++ b/board/arcturus/ppc-ucp1020/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 5ad0192e5cd10eca5f9fabb3234f2bfcbafba3382a9577139cc66be629e5bafa linux-v20190618.tar.gz diff --git a/board/arcturus/ppc-ucp1020/patches/uboot/uboot.hash b/board/arcturus/ppc-ucp1020/patches/uboot/uboot.hash new file mode 100644 index 00000000000..eb9744043cd --- /dev/null +++ b/board/arcturus/ppc-ucp1020/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 eba8aaf634affec7c27a55b899c404a85a0c219c3f814d576793e3c21b711b05 uboot-v20190618.tar.gz diff --git a/board/arm/fvp-ebbr/fvp-config.txt b/board/arm/fvp-ebbr/fvp-config.txt index 61e040015bc..5c68bb638e1 100644 --- a/board/arm/fvp-ebbr/fvp-config.txt +++ b/board/arm/fvp-ebbr/fvp-config.txt @@ -1,6 +1,10 @@ # Arm A-Profile Base RevC AEM FVP config bp.secure_memory=1 +bp.terminal_1.start_telnet=0 bp.ve_sysregs.exit_on_shutdown=1 +bp.virtio_net.enabled=1 +bp.virtio_net.hostbridge.userNetworking=1 +bp.vis.rate_limit-enable=1 cache_state_modelled=0 cluster0.NUM_CORES=4 cluster0.cpu0.enable_crc32=1 diff --git a/board/arm/fvp-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/arm/fvp-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash index 8b77e1f1653..b52b00722fd 100644 --- a/board/arm/fvp-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/arm/fvp-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 c0f23ccc71c49989e9ad238acf334473c17b7c88f79a20c829c3d443e3794a22 arm-trusted-firmware-v2.11-git4.tar.gz +sha256 a899100d9d92ceb1290fd4d61f5dd3b8af6b0e937cebc3c711cb514ac5acfaed arm-trusted-firmware-v2.14.0-git4.tar.gz diff --git a/board/arm/fvp-ebbr/patches/linux/linux.hash b/board/arm/fvp-ebbr/patches/linux/linux.hash index 20941a269b9..a4cc7bd3f6f 100644 --- a/board/arm/fvp-ebbr/patches/linux/linux.hash +++ b/board/arm/fvp-ebbr/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 524858852f5869a9ef17de8b1e6e7faf05bcb2c462bc96b3c24dbf82ede373cf linux-6.10.12.tar.xz +# From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 9106a4605da9e31ff17659d958782b815f9591ab308d03b0ee21aad6c7dced4b linux-6.18.tar.xz diff --git a/board/arm/fvp-ebbr/patches/optee-client/optee-client.hash b/board/arm/fvp-ebbr/patches/optee-client/optee-client.hash new file mode 100644 index 00000000000..6c61615dbe6 --- /dev/null +++ b/board/arm/fvp-ebbr/patches/optee-client/optee-client.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 464b3bf5bc4a61830357dbf81a0e5b89414d3bca1c2a752570cb0e40d2f1e637 optee-client-4.8.0.tar.gz diff --git a/board/arm/fvp-ebbr/patches/optee-os/0001-plat-vexpress-redirect-console-to-uart0.patch b/board/arm/fvp-ebbr/patches/optee-os/0001-plat-vexpress-redirect-console-to-uart0.patch new file mode 100644 index 00000000000..aa61594088c --- /dev/null +++ b/board/arm/fvp-ebbr/patches/optee-os/0001-plat-vexpress-redirect-console-to-uart0.patch @@ -0,0 +1,34 @@ +From 1debd0c8bd46255f8c22b128ec16586ef9154869 Mon Sep 17 00:00:00 2001 +From: =?UTF-8?q?Vincent=20Stehl=C3=A9?= +Date: Tue, 2 Dec 2025 15:53:23 +0100 +Subject: [PATCH] plat-vexpress: redirect console to uart0 +MIME-Version: 1.0 +Content-Type: text/plain; charset=UTF-8 +Content-Transfer-Encoding: 8bit + +For consistency with TF-A, U-Boot and Linux. + +Upstream: Not applicable. Buildroot specific. +Signed-off-by: Vincent Stehlé +--- + core/arch/arm/plat-vexpress/platform_config.h | 4 ++-- + 1 file changed, 2 insertions(+), 2 deletions(-) + +diff --git a/core/arch/arm/plat-vexpress/platform_config.h b/core/arch/arm/plat-vexpress/platform_config.h +index 9231f3048..76c7fdb36 100644 +--- a/core/arch/arm/plat-vexpress/platform_config.h ++++ b/core/arch/arm/plat-vexpress/platform_config.h +@@ -23,8 +23,8 @@ + + #define IT_UART1 38 + +-#define CONSOLE_UART_BASE UART1_BASE +-#define IT_CONSOLE_UART IT_UART1 ++#define CONSOLE_UART_BASE UART0_BASE ++#undef IT_CONSOLE_UART + + #elif defined(PLATFORM_FLAVOR_juno) + +-- +2.51.0 + diff --git a/board/arm/fvp-ebbr/patches/optee-os/optee-os.hash b/board/arm/fvp-ebbr/patches/optee-os/optee-os.hash new file mode 100644 index 00000000000..80b30de9ead --- /dev/null +++ b/board/arm/fvp-ebbr/patches/optee-os/optee-os.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 5222cd553f5edb69ae4ec7cb99b2bfec2c47a47c0be1865b49744701918e8b4d optee-os-4.8.0.tar.gz diff --git a/board/arm/fvp-ebbr/patches/uboot/uboot.hash b/board/arm/fvp-ebbr/patches/uboot/uboot.hash index fe9b4f53dc6..98a5c53aaf9 100644 --- a/board/arm/fvp-ebbr/patches/uboot/uboot.hash +++ b/board/arm/fvp-ebbr/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f591da9ab90ef3d6b3d173766d0ddff90c4ed7330680897486117df390d83c8f u-boot-2024.07.tar.bz2 +sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 diff --git a/board/arm/fvp-ebbr/readme.txt b/board/arm/fvp-ebbr/readme.txt index fe7d4de5c55..6edfed20dfb 100644 --- a/board/arm/fvp-ebbr/readme.txt +++ b/board/arm/fvp-ebbr/readme.txt @@ -2,7 +2,7 @@ Introduction ============ The arm_fvp_ebbr_defconfig is meant to illustrate some aspects of the Arm EBBR -specification[1] and the Arm SystemReady IR[2] compliance program. +specification[1] and the Arm SystemReady Devicetree band[2]. It allows building an AArch64 U-Boot based firmware implementing the subset of UEFI defined by EBBR, as well as a Linux OS disk image booting with UEFI, to run on the Arm A-Profile Base RevC AEM FVP. @@ -26,8 +26,8 @@ Running on the FVP Download the FVP from one of the following sources, corresponding to your host computer: -- https://developer.arm.com/-/cdn-downloads/permalink/Fixed-Virtual-Platforms/FM-11.27/FVP_Base_RevC-2xAEMvA_11.27_19_Linux64.tgz -- https://developer.arm.com/-/cdn-downloads/permalink/Fixed-Virtual-Platforms/FM-11.27/FVP_Base_RevC-2xAEMvA_11.27_19_Linux64_armv8l.tgz +- https://developer.arm.com/-/cdn-downloads/permalink/FVPs-Architecture/FM-11.30/FVP_Base_RevC-2xAEMvA_11.30_27_Linux64.tgz +- https://developer.arm.com/-/cdn-downloads/permalink/FVPs-Architecture/FM-11.30/FVP_Base_RevC-2xAEMvA_11.30_27_Linux64_armv8l.tgz The FVP will be located under one of the corresponding folders: @@ -53,21 +53,58 @@ supporting the EBBR specification. To run another OS on simulation using a live or pre-installed image, use the same FVP command line as for the generated OS but adapt the OS image path in the virtioblockdevice stanza. -The image generated by the aarch64_efi_defconfig or the Arm ACS-IR images[3] are -examples of pre-installed OS images. -Linux distributions such as Debian, Fedora, openSUSE or Ubuntu provide a -pre-installed OS image. +The image generated by the aarch64_efi_defconfig or the Arm ACS Devicetree +images[3] are examples of pre-installed OS images. +Linux distributions such as Debian, Fedora, openSUSE or Ubuntu, or FreeBSD +provide live or pre-installed OS image. + +Firmware details +================ + +Noteworthy firmware features: + +- TF-A, OP-TEE & U-Boot +- UEFI, with EFI variables stored on disk in the ESP +- Support for ethernet, RTC and LCD + +Architecture diagram: + + Non-Secure : Secure + : + +---------------------------+ : + EL0 | Busybox | : + +---------------------------+ : +--------+ + EL1 | Linux | : | OP-TEE | S-EL1 + +---------------------------+ : +--------+ + EL2 | U-Boot, GRUB, Linux (kvm) | : + +---------------------------+ : + ...................................: + +----------------------------------------+ + | TF-A | EL3 + +----------------------------------------+ + +Boot flow: + + TF-A -+-> OP-TEE + `-> U-Boot -> GRUB -> Linux -> Busybox + +TF-A BL1 loads the fit image with the remaining pieces of TF-A, OP-TEE and +U-Boot. +OP-TEE boots, calls back TF-A to go to normal world. +U-Boot loads GRUB with UEFI, boots Linux at EL2. + +In this configuration, the Devicetree is static and fully contained in TF-A. Miscellaneous ============= This configuration is inspired by the arm_foundationv8_defconfig, the -qemu_aarch64_virt_defconfig and the Arm SystemReady IR IoT Integration, Test, -and Certification Guide[4]. +qemu_aarch64_virt_defconfig and the Arm SystemReady Devicetree Band Integration +and Testing Guide[4]. -Firmware update, MMC and network are currently not supported. +Firmware update, GOP, MMC and RNG are currently not supported. -[1]: https://github.com/ARM-software/ebbr -[2]: https://developer.arm.com/Architectures/Arm%20SystemReady%20IR -[3]: https://github.com/ARM-software/arm-systemready/tree/main/IR/prebuilt_images -[4]: https://developer.arm.com/documentation/DUI1101/latest/ +[1] https://github.com/ARM-software/ebbr +[2] https://www.arm.com/architecture/system-architectures/systemready-compliance-program/systemready-devicetree-band +[3] https://github.com/ARM-software/arm-systemready/tree/main/SystemReady-devicetree-band/prebuilt_images +[4] https://developer.arm.com/documentation/DUI1101/latest/ diff --git a/board/arm/fvp-ebbr/u-boot.fragment b/board/arm/fvp-ebbr/u-boot.fragment index abbf8395be4..37d98bcdf0e 100644 --- a/board/arm/fvp-ebbr/u-boot.fragment +++ b/board/arm/fvp-ebbr/u-boot.fragment @@ -1,4 +1,4 @@ -# CONFIG_USE_BOOTCOMMAND is not set +CONFIG_ARM_SMCCC_FEATURES=y CONFIG_BOOTCOMMAND="bootflow scan -lb" CONFIG_BOOTMETH_DISTRO=y CONFIG_BOOTM_EFI=y @@ -17,8 +17,10 @@ CONFIG_CMD_EFI_VARIABLE_FILE_STORE=y CONFIG_CMD_GETTIME=y CONFIG_CMD_GPT=y CONFIG_CMD_NVEDIT_EFI=y +CONFIG_CMD_POWEROFF=y CONFIG_CMD_RNG=y CONFIG_CMD_RTC=y +CONFIG_CMD_SMC=y CONFIG_CMD_TIME=y CONFIG_DM_RNG=y CONFIG_DM_RTC=y @@ -29,6 +31,7 @@ CONFIG_EFI_LOADER=y CONFIG_EFI_LOADER_HII=y CONFIG_EFI_MM_COMM_TEE=y CONFIG_EFI_PARTITION=y +CONFIG_EFI_RUNTIME_UPDATE_CAPSULE=y CONFIG_EFI_SECURE_BOOT=y CONFIG_EFI_SET_TIME=y CONFIG_EFI_UNICODE_CAPITALIZATION=y diff --git a/board/acmesystems/arietta-g25/patches/linux-headers/linux-headers.hash b/board/asus/tinker/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/acmesystems/arietta-g25/patches/linux-headers/linux-headers.hash rename to board/asus/tinker/patches/linux-headers/linux-headers.hash diff --git a/board/asus/tinker/patches/linux/linux.hash b/board/asus/tinker/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/asus/tinker/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/asus/tinker/patches/uboot/uboot.hash b/board/asus/tinker/patches/uboot/uboot.hash new file mode 100644 index 00000000000..60971ee74f0 --- /dev/null +++ b/board/asus/tinker/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally computed +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/avnet/s6lx9_microboard/lx9_mmu.dts b/board/avnet/s6lx9_microboard/lx9_mmu.dts deleted file mode 100644 index 8ffedd9febc..00000000000 --- a/board/avnet/s6lx9_microboard/lx9_mmu.dts +++ /dev/null @@ -1,247 +0,0 @@ -/* - * Device Tree Generator version: 1.3 - * - * (C) Copyright 2007-2008 Xilinx, Inc. - * (C) Copyright 2007-2009 Michal Simek - * - * Michal SIMEK - * - * This program is free software; you can redistribute it and/or - * modify it under the terms of the GNU General Public License as - * published by the Free Software Foundation; either version 2 of - * the License, or (at your option) any later version. - * - * This program is distributed in the hope that it will be useful, - * but WITHOUT ANY WARRANTY; without even the implied warranty of - * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the - * GNU General Public License for more details. - * - * You should have received a copy of the GNU General Public License - * along with this program; if not, write to the Free Software - * Foundation, Inc., 59 Temple Place, Suite 330, Boston, - * MA 02111-1307 USA - * - * CAUTION: This file is automatically generated by libgen. - * Version: Xilinx EDK 13.2 EDK_O.61xd - * - * XPS project directory: device-tree_bsp_230-orig - */ - -/dts-v1/; -/ { - #address-cells = <1>; - #size-cells = <1>; - compatible = "xlnx,microblaze"; - model = "testing"; - MCB3_LPDDR: memory@80000000 { - device_type = "memory"; - reg = < 0x80000000 0x4000000 >; - } ; - aliases { - ethernet0 = &Ethernet_MAC; - serial0 = &USB_Uart; - } ; - chosen { - bootargs = "console=ttyUL0"; - linux,stdout-path = "/axi@0/serial@40600000"; - } ; - cpus { - #address-cells = <1>; - #cpus = <0x1>; - #size-cells = <0>; - microblaze_0: cpu@0 { - clock-frequency = <66666667>; - compatible = "xlnx,microblaze-8.20.a"; - d-cache-baseaddr = <0x80000000>; - d-cache-highaddr = <0x83ffffff>; - d-cache-line-size = <0x10>; - d-cache-size = <0x2000>; - device_type = "cpu"; - i-cache-baseaddr = <0x80000000>; - i-cache-highaddr = <0x83ffffff>; - i-cache-line-size = <0x10>; - i-cache-size = <0x2000>; - model = "microblaze,8.20.a"; - reg = <0>; - timebase-frequency = <66666667>; - xlnx,addr-tag-bits = <0xd>; - xlnx,allow-dcache-wr = <0x1>; - xlnx,allow-icache-wr = <0x1>; - xlnx,area-optimized = <0x0>; - xlnx,avoid-primitives = <0x0>; - xlnx,branch-target-cache-size = <0x0>; - xlnx,cache-byte-size = <0x2000>; - xlnx,d-axi = <0x1>; - xlnx,d-lmb = <0x1>; - xlnx,d-plb = <0x0>; - xlnx,data-size = <0x20>; - xlnx,dcache-addr-tag = <0xd>; - xlnx,dcache-always-used = <0x1>; - xlnx,dcache-byte-size = <0x2000>; - xlnx,dcache-data-width = <0x0>; - xlnx,dcache-force-tag-lutram = <0x0>; - xlnx,dcache-interface = <0x0>; - xlnx,dcache-line-len = <0x4>; - xlnx,dcache-use-fsl = <0x0>; - xlnx,dcache-use-writeback = <0x0>; - xlnx,dcache-victims = <0x0>; - xlnx,debug-enabled = <0x1>; - xlnx,div-zero-exception = <0x0>; - xlnx,dynamic-bus-sizing = <0x1>; - xlnx,ecc-use-ce-exception = <0x0>; - xlnx,edge-is-positive = <0x1>; - xlnx,endianness = <0x1>; - xlnx,family = "spartan6"; - xlnx,fault-tolerant = <0x0>; - xlnx,fpu-exception = <0x0>; - xlnx,freq = <0x3f940ab>; - xlnx,fsl-data-size = <0x20>; - xlnx,fsl-exception = <0x0>; - xlnx,fsl-links = <0x0>; - xlnx,i-axi = <0x0>; - xlnx,i-lmb = <0x1>; - xlnx,i-plb = <0x0>; - xlnx,icache-always-used = <0x1>; - xlnx,icache-data-width = <0x0>; - xlnx,icache-force-tag-lutram = <0x0>; - xlnx,icache-interface = <0x0>; - xlnx,icache-line-len = <0x4>; - xlnx,icache-streams = <0x0>; - xlnx,icache-use-fsl = <0x0>; - xlnx,icache-victims = <0x0>; - xlnx,ill-opcode-exception = <0x0>; - xlnx,instance = "microblaze_0"; - xlnx,interconnect = <0x2>; - xlnx,interconnect-m-axi-dc-aw-register = <0x0>; - xlnx,interconnect-m-axi-dc-read-issuing = <0x2>; - xlnx,interconnect-m-axi-dc-w-register = <0x0>; - xlnx,interconnect-m-axi-dc-write-issuing = <0x20>; - xlnx,interconnect-m-axi-dp-read-issuing = <0x1>; - xlnx,interconnect-m-axi-dp-write-issuing = <0x1>; - xlnx,interconnect-m-axi-ic-read-issuing = <0x2>; - xlnx,interconnect-m-axi-ip-read-issuing = <0x1>; - xlnx,interrupt-is-edge = <0x0>; - xlnx,lockstep-slave = <0x0>; - xlnx,mmu-dtlb-size = <0x1>; - xlnx,mmu-itlb-size = <0x1>; - xlnx,mmu-privileged-instr = <0x0>; - xlnx,mmu-tlb-access = <0x3>; - xlnx,mmu-zones = <0x2>; - xlnx,number-of-pc-brk = <0x1>; - xlnx,number-of-rd-addr-brk = <0x0>; - xlnx,number-of-wr-addr-brk = <0x0>; - xlnx,opcode-0x0-illegal = <0x0>; - xlnx,optimization = <0x0>; - xlnx,pvr = <0x0>; - xlnx,pvr-user1 = <0x0>; - xlnx,pvr-user2 = <0x0>; - xlnx,reset-msr = <0x0>; - xlnx,sco = <0x0>; - xlnx,stream-interconnect = <0x0>; - xlnx,unaligned-exceptions = <0x0>; - xlnx,use-barrel = <0x1>; - xlnx,use-branch-target-cache = <0x0>; - xlnx,use-dcache = <0x1>; - xlnx,use-div = <0x0>; - xlnx,use-ext-brk = <0x1>; - xlnx,use-ext-nm-brk = <0x1>; - xlnx,use-extended-fsl-instr = <0x0>; - xlnx,use-fpu = <0x0>; - xlnx,use-hw-mul = <0x1>; - xlnx,use-icache = <0x1>; - xlnx,use-interrupt = <0x1>; - xlnx,use-mmu = <0x3>; - xlnx,use-msr-instr = <0x1>; - xlnx,use-pcmp-instr = <0x0>; - xlnx,use-stack-protection = <0x0>; - } ; - } ; - axi4lite_0: axi@0 { - #address-cells = <1>; - #size-cells = <1>; - compatible = "xlnx,axi-interconnect-1.03.a", "simple-bus"; - ranges ; - Ethernet_MAC: ethernet@40e00000 { - compatible = "xlnx,axi-ethernetlite-1.00.a", "xlnx,xps-ethernetlite-1.00.a"; - device_type = "network"; - interrupt-parent = <µblaze_0_intc>; - interrupts = < 2 0 >; - local-mac-address = [ 00 0a 35 aa de 00 ]; -// phy-handle = <&phy0>; - reg = < 0x40e00000 0x10000 >; - xlnx,duplex = <0x1>; - xlnx,family = "spartan6"; - xlnx,include-global-buffers = <0x0>; - xlnx,include-internal-loopback = <0x0>; - xlnx,include-mdio = <0x1>; - xlnx,include-phy-constraints = <0x1>; - xlnx,interconnect-s-axi-read-acceptance = <0x1>; - xlnx,interconnect-s-axi-write-acceptance = <0x1>; - xlnx,rx-ping-pong = <0x0>; - xlnx,s-axi-aclk-period-ps = <0x3a98>; - xlnx,s-axi-id-width = <0x1>; - xlnx,s-axi-supports-narrow-burst = <0x0>; - xlnx,tx-ping-pong = <0x0>; -/* - mdio { - #address-cells = <1>; - #size-cells = <0>; - phy0: phy@7 { - compatible = "marvell,88e1111"; - device_type = "ethernet-phy"; - reg = <7>; - } ; - } ; -*/ - } ; - SPI_FLASH: spi@40a00000 { - compatible = "xlnx,axi-spi-1.01.a", "xlnx,xps-spi-2.00.a"; - interrupt-parent = <µblaze_0_intc>; - interrupts = < 1 2 >; - reg = < 0x40a00000 0x10000 >; - xlnx,family = "spartan6"; - xlnx,fifo-exist = <0x1>; - xlnx,num-ss-bits = <0x1>; - xlnx,num-transfer-bits = <0x8>; - xlnx,sck-ratio = <0x4>; - } ; - USB_Uart: serial@40600000 { - clock-frequency = <66666667>; - compatible = "xlnx,axi-uartlite-1.02.a", "xlnx,xps-uartlite-1.00.a"; - current-speed = <115200>; - device_type = "serial"; - interrupt-parent = <µblaze_0_intc>; - interrupts = < 3 0 >; - port-number = <0>; - reg = < 0x40600000 0x10000 >; - xlnx,baudrate = <0x1c200>; - xlnx,data-bits = <0x8>; - xlnx,family = "spartan6"; - xlnx,odd-parity = <0x1>; - xlnx,s-axi-aclk-freq-hz = <0x3f940ab>; - xlnx,use-parity = <0x0>; - } ; - microblaze_0_intc: interrupt-controller@41200000 { - #interrupt-cells = <0x2>; - compatible = "xlnx,axi-intc-1.01.a", "xlnx,xps-intc-1.00.a"; - interrupt-controller ; - reg = < 0x41200000 0x10000 >; - xlnx,kind-of-intr = <0xc>; - xlnx,num-intr-inputs = <0x4>; - } ; - system_timer: timer@41c00000 { - clock-frequency = <66666667>; - compatible = "xlnx,axi-timer-1.02.a", "xlnx,xps-timer-1.00.a"; - interrupt-parent = <µblaze_0_intc>; - interrupts = < 0 2 >; - reg = < 0x41c00000 0x10000 >; - xlnx,count-width = <0x20>; - xlnx,family = "spartan6"; - xlnx,gen0-assert = <0x1>; - xlnx,gen1-assert = <0x1>; - xlnx,one-timer-only = <0x0>; - xlnx,trig0-assert = <0x1>; - xlnx,trig1-assert = <0x1>; - } ; - } ; -} ; diff --git a/board/avnet/s6lx9_microboard/lx9_mmu_defconfig b/board/avnet/s6lx9_microboard/lx9_mmu_defconfig deleted file mode 100644 index 5d01ca00a19..00000000000 --- a/board/avnet/s6lx9_microboard/lx9_mmu_defconfig +++ /dev/null @@ -1,68 +0,0 @@ -CONFIG_EXPERIMENTAL=y -CONFIG_SYSVIPC=y -CONFIG_IKCONFIG=y -CONFIG_IKCONFIG_PROC=y -CONFIG_BLK_DEV_INITRD=y -CONFIG_INITRAMFS_SOURCE="rootfs.cpio" -CONFIG_INITRAMFS_COMPRESSION_GZIP=y -# CONFIG_CC_OPTIMIZE_FOR_SIZE is not set -CONFIG_EXPERT=y -CONFIG_KALLSYMS_ALL=y -CONFIG_KALLSYMS_EXTRA_PASS=y -# CONFIG_HOTPLUG is not set -# CONFIG_BASE_FULL is not set -# CONFIG_FUTEX is not set -# CONFIG_EPOLL is not set -# CONFIG_SIGNALFD is not set -# CONFIG_SHMEM is not set -CONFIG_SLAB=y -CONFIG_MODULES=y -CONFIG_MODULE_UNLOAD=y -# CONFIG_BLK_DEV_BSG is not set -# CONFIG_OPT_LIB_ASM is not set -CONFIG_KERNEL_BASE_ADDR=0x80000000 -CONFIG_XILINX_MICROBLAZE0_FAMILY="spartan6" -CONFIG_XILINX_MICROBLAZE0_USE_MSR_INSTR=1 -# CONFIG_XILINX_MICROBLAZE0_USE_PCMP_INSTR is not set -CONFIG_XILINX_MICROBLAZE0_USE_BARREL=1 -CONFIG_XILINX_MICROBLAZE0_USE_HW_MUL=1 -CONFIG_XILINX_MICROBLAZE0_HW_VER="8.20.a" -CONFIG_HZ_100=y -CONFIG_MMU=y -CONFIG_CMDLINE_BOOL=y -CONFIG_CMDLINE_FORCE=y -CONFIG_NET=y -CONFIG_PACKET=y -CONFIG_UNIX=y -CONFIG_INET=y -# CONFIG_INET_LRO is not set -# CONFIG_IPV6 is not set -CONFIG_PROC_DEVICETREE=y -CONFIG_BLK_DEV_RAM=y -CONFIG_BLK_DEV_RAM_SIZE=8192 -CONFIG_NETDEVICES=y -CONFIG_NET_ETHERNET=y -CONFIG_XILINX_EMACLITE=y -# CONFIG_INPUT is not set -# CONFIG_SERIO is not set -# CONFIG_VT is not set -CONFIG_SERIAL_UARTLITE=y -CONFIG_SERIAL_UARTLITE_CONSOLE=y -# CONFIG_HW_RANDOM is not set -# CONFIG_HWMON is not set -# CONFIG_USB_SUPPORT is not set -CONFIG_EXT2_FS=y -# CONFIG_DNOTIFY is not set -CONFIG_NFS_FS=y -CONFIG_NFS_V3=y -CONFIG_CIFS=y -CONFIG_CIFS_STATS=y -CONFIG_CIFS_STATS2=y -CONFIG_PARTITION_ADVANCED=y -CONFIG_DEBUG_KERNEL=y -CONFIG_DETECT_HUNG_TASK=y -CONFIG_DEBUG_SLAB=y -CONFIG_DEBUG_SPINLOCK=y -CONFIG_DEBUG_INFO=y -CONFIG_EARLY_PRINTK=y -# CONFIG_CRYPTO_ANSI_CPRNG is not set diff --git a/board/avnet/s6lx9_microboard/readme.txt b/board/avnet/s6lx9_microboard/readme.txt deleted file mode 100644 index 3cb2ce982ac..00000000000 --- a/board/avnet/s6lx9_microboard/readme.txt +++ /dev/null @@ -1,70 +0,0 @@ -This is the buildroot board support for the Avnet Spartan6 LX9 MicroBoard. - -The Avnet S6LX9 Microboard is a small USB-Stick sized module containing -a Spartan6 FPGA capable of running the Microblaze softcore processor -together with RAM and FLASH memory. - -The board can be bought from Avnet (avnet.com) or from Trenz Electronic -(www.trenz-electronic.de) for a low price. - -To run the Linux built with buildroot you have to install the FPGA bitfile -and u-boot as described in the tutorial AvtS6LX9MicroBoard_SW302_PetaLinux -available on http://www.em.avnet.com/s6microboard - -On this site also is a forum containing information on how to build your own -Microblaze processor for the Microboard. - -The image file (default name is simpleImage.lx9_mmu.ub) has to be copied -to your tftp folder (often /tftpboot/) or can be programmed into the -board's SPI flash. - -Sample session: - -$ make s6lx9_microboard_defconfig -$ make -$ cp build/linux-/arch/microblaze/boot/simpleImage.lx9_mmu.ub /tftpboot/br12.2a.ub -$ minicom - - - Icache:ON - Dcache:ON - U-Boot Start:0x83f00000 -SF: Got idcode 20 ba 18 10 01 -*** Warning - bad CRC, using default environment - -Net: Xilinx_Emaclite -MAC: 00:0a:35:00:63:37 -U-BOOT for Avnet-LX9-Microboard-AXI-tiny-13.1 - -BOOTP broadcast 1 -DHCP client bound to address 192.168.11.122 -Hit any key to stop autoboot: 0 -U-Boot-PetaLinux> tftp br12.2a.ub -Using Xilinx_Emaclite device -TFTP from server 192.168.11.10; our IP address is 192.168.11.122 -Filename 'br12.2a.ub'. -Load address: 0x80002000 -Loading: ################################################################# - ################################################################# - ################################################################# - ################################################################# - ################################################################# - ############################## -done -Bytes transferred = 5207724 (4f76ac hex) -U-Boot-PetaLinux> bootm -## Booting kernel from Legacy Image at 80002000 ... - Image Name: Linux-3.1.0 - Image Type: MicroBlaze Linux Kernel Image (uncompressed) - Data Size: 5207660 Bytes = 5 MB - Load Address: 80000000 - Entry Point: 80000000 - Verifying Checksum ... OK - Loading Kernel Image ... OK -OK -## Transferring control to Linux (at address 80000000), 0x80000000 ramdisk 0x00000000, FDT 0x00000000... -Early console on uartlite at 0x40600000 -..... boot log skipped - -Welcome to Microblaze Buildroot -Microblaze login: diff --git a/board/beagleboard/beagleboneai64/patches/linux-headers/linux-headers.hash b/board/bananapi/bananapi-m2-berry/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/beagleboard/beagleboneai64/patches/linux-headers/linux-headers.hash rename to board/bananapi/bananapi-m2-berry/patches/linux-headers/linux-headers.hash diff --git a/board/bananapi/bananapi-m2-berry/patches/linux/linux.hash b/board/bananapi/bananapi-m2-berry/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/bananapi/bananapi-m2-berry/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/bananapi/bananapi-m2-berry/patches/uboot/uboot.hash b/board/bananapi/bananapi-m2-berry/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/bananapi/bananapi-m2-berry/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beagleplay/patches/linux-headers/linux-headers.hash b/board/bananapi/bananapi-m2-ultra/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/beagleboard/beagleplay/patches/linux-headers/linux-headers.hash rename to board/bananapi/bananapi-m2-ultra/patches/linux-headers/linux-headers.hash diff --git a/board/bananapi/bananapi-m2-ultra/patches/linux/linux.hash b/board/bananapi/bananapi-m2-ultra/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/bananapi/bananapi-m2-ultra/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/bananapi/bananapi-m2-ultra/patches/uboot/uboot.hash b/board/bananapi/bananapi-m2-ultra/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/bananapi/bananapi-m2-ultra/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beaglebone/genimage.cfg b/board/beagleboard/beaglebone/genimage.cfg index 4b026fda843..095e6e200bd 100644 --- a/board/beagleboard/beaglebone/genimage.cfg +++ b/board/beagleboard/beaglebone/genimage.cfg @@ -12,6 +12,7 @@ image boot.vfat { "am335x-bonegreen.dtb", "am335x-boneblack-wireless.dtb", "am335x-bonegreen-wireless.dtb", + "am335x-bonegreen-eco.dtb", "extlinux" } } diff --git a/board/beagleboard/beaglebone/patches/linux/linux.hash b/board/beagleboard/beaglebone/patches/linux/linux.hash index e70a999129c..00eecaae3b4 100644 --- a/board/beagleboard/beaglebone/patches/linux/linux.hash +++ b/board/beagleboard/beaglebone/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 1db327d0743e97ec725fefe05065a6fb779abe3063845fc3b551a4a716247c0a linux-6.12.34-ti-arm32-r12.tar.gz +# From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 ac26e508abd56e9f8b89872b6e10c49fc823bcc70d8068a5d8504c1a7c4ff045 linux-6.18.38.tar.xz diff --git a/board/beagleboard/beaglebone/patches/uboot/uboot.hash b/board/beagleboard/beaglebone/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/beagleboard/beaglebone/patches/uboot/uboot.hash +++ b/board/beagleboard/beaglebone/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/beagleboard/beaglebone/post-build.sh b/board/beagleboard/beaglebone/post-build.sh index dc84d26eca6..dcb923356df 100755 --- a/board/beagleboard/beaglebone/post-build.sh +++ b/board/beagleboard/beaglebone/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname "$0")" cp "${BOARD_DIR}/uEnv.txt" "${BINARIES_DIR}/uEnv.txt" diff --git a/board/beagleboard/beaglebone/readme.txt b/board/beagleboard/beaglebone/readme.txt index a11377eaee5..f896e1285ae 100644 --- a/board/beagleboard/beaglebone/readme.txt +++ b/board/beagleboard/beaglebone/readme.txt @@ -31,6 +31,7 @@ output/images/ +-- am335x-boneblack-wireless.dtb +-- am335x-boneblue.dtb +-- am335x-bonegreen.dtb ++-- am335x-bonegreen-eco.dtb +-- am335x-bonegreen-wireless.dtb +-- am335x-bone.dtb +-- am335x-evm.dtb diff --git a/board/beagleboard/beagleboneai/genimage.cfg b/board/beagleboard/beagleboneai/genimage.cfg index 8aefd76ef8b..02e61bc9bed 100644 --- a/board/beagleboard/beagleboneai/genimage.cfg +++ b/board/beagleboard/beagleboneai/genimage.cfg @@ -19,7 +19,7 @@ image sdcard.img { partition u-boot { partition-type = 0xC bootable = "true" - image = "boot.vfat" + image = "boot.vfat" } partition rootfs { diff --git a/board/beagleboard/beagleboneai64/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/beagleboard/beagleboneai64/patches/arm-trusted-firmware/arm-trusted-firmware.hash deleted file mode 100644 index 6f02bfbb22e..00000000000 --- a/board/beagleboard/beagleboneai64/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 7efa89e1b4e4106ee05d68e876c8efbb146364d89cfd5d26bf4647b09c08f32b arm-trusted-firmware-v2.10-git4.tar.gz diff --git a/board/beagleboard/beagleboneai64/patches/linux/linux.hash b/board/beagleboard/beagleboneai64/patches/linux/linux.hash index 4b20a009a7e..eb4dcee9586 100644 --- a/board/beagleboard/beagleboneai64/patches/linux/linux.hash +++ b/board/beagleboard/beagleboneai64/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 b66a5b863b0f8669448b74ca83bd641a856f164b29956e539bbcb5fdeeab9cc6 linux-6.6.30.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 4f21c01f4d04c1d1b3ed794153f8900802c92497be620b07c4869530f2d28ee3 linux-6.18.16.tar.xz diff --git a/board/beagleboard/beagleboneai64/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash b/board/beagleboard/beagleboneai64/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash index 97a2b4eaf95..b6a925ea4e8 100644 --- a/board/beagleboard/beagleboneai64/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash +++ b/board/beagleboard/beagleboneai64/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 18a853fe39fad7ad03a90cc2d4275aeaed6da69735defac3492b80508843dd4a u-boot-2024.04.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beagleboneai64/patches/uboot/uboot.hash b/board/beagleboard/beagleboneai64/patches/uboot/uboot.hash index 97a2b4eaf95..b6a925ea4e8 100644 --- a/board/beagleboard/beagleboneai64/patches/uboot/uboot.hash +++ b/board/beagleboard/beagleboneai64/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 18a853fe39fad7ad03a90cc2d4275aeaed6da69735defac3492b80508843dd4a u-boot-2024.04.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beagleplay/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/beagleboard/beagleplay/patches/arm-trusted-firmware/arm-trusted-firmware.hash deleted file mode 100644 index 8b77e1f1653..00000000000 --- a/board/beagleboard/beagleplay/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 c0f23ccc71c49989e9ad238acf334473c17b7c88f79a20c829c3d443e3794a22 arm-trusted-firmware-v2.11-git4.tar.gz diff --git a/board/beagleboard/beagleplay/patches/linux/linux.hash b/board/beagleboard/beagleplay/patches/linux/linux.hash index 53eb1438945..eb4dcee9586 100644 --- a/board/beagleboard/beagleplay/patches/linux/linux.hash +++ b/board/beagleboard/beagleplay/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 774698422ee54c5f1e704456f37c65c06b51b4e9a8b0866f34580d86fef8e226 linux-6.10.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 4f21c01f4d04c1d1b3ed794153f8900802c92497be620b07c4869530f2d28ee3 linux-6.18.16.tar.xz diff --git a/board/beagleboard/beagleplay/patches/uboot/uboot.hash b/board/beagleboard/beagleplay/patches/uboot/uboot.hash index fe9b4f53dc6..b6a925ea4e8 100644 --- a/board/beagleboard/beagleplay/patches/uboot/uboot.hash +++ b/board/beagleboard/beagleplay/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f591da9ab90ef3d6b3d173766d0ddff90c4ed7330680897486117df390d83c8f u-boot-2024.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beaglev_fire/boot.cmd b/board/beagleboard/beaglev_fire/boot.cmd index 1402458d8b8..80b44592c77 100644 --- a/board/beagleboard/beaglev_fire/boot.cmd +++ b/board/beagleboard/beaglev_fire/boot.cmd @@ -11,6 +11,5 @@ bootm loados ${scriptaddr}; # Try to load a ramdisk if available inside fitImage bootm ramdisk; bootm prep; -fdt set /soc/ethernet@20110000 mac-address ${beaglevfire_mac_addr0}; run design_overlays; bootm go; diff --git a/board/beagleboard/beaglev_fire/patches/linux/linux.hash b/board/beagleboard/beaglev_fire/patches/linux/linux.hash index 9ee63df23d3..2902da56b63 100644 --- a/board/beagleboard/beaglev_fire/patches/linux/linux.hash +++ b/board/beagleboard/beaglev_fire/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 7bd234a93bc6351d6a830f9ef18e9e780d70c478d280a6513a30bc2f945fb050 linux-linux4microchip+fpga-2024.09.1.tar.gz +sha256 37191994758d521dc7223cb5010a67ef83bd061bf70194ea522abc9ef2b17391 linux-linux4microchip+fpga-2025.10.tar.gz diff --git a/board/beagleboard/beaglev_fire/patches/uboot/uboot.hash b/board/beagleboard/beaglev_fire/patches/uboot/uboot.hash index cb0ec5ec524..a40f963a2e4 100644 --- a/board/beagleboard/beaglev_fire/patches/uboot/uboot.hash +++ b/board/beagleboard/beaglev_fire/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 a2fad7fe7f933fa4679b070e952e1e7a21dbd8b586d7a9a11bfcb99e75ae7ad6 uboot-linux4microchip+fpga-2024.09.tar.gz +sha256 591c80f7e16d6f43192deb7ab7587ae81b31ba7c7de1a668c14b9997b6c976c8 uboot-linux4microchip+fpga-2025.10.tar.gz diff --git a/board/beagleboard/beagley-ai/patches/linux/linux.hash b/board/beagleboard/beagley-ai/patches/linux/linux.hash index 794837b2858..eb4dcee9586 100644 --- a/board/beagleboard/beagley-ai/patches/linux/linux.hash +++ b/board/beagleboard/beagley-ai/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 2bb586c954277d070c8fdf6d7275faa93b4807d9bf3353b491d8149cca02b4fc linux-6.15.6.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 4f21c01f4d04c1d1b3ed794153f8900802c92497be620b07c4869530f2d28ee3 linux-6.18.16.tar.xz diff --git a/board/beagleboard/beagley-ai/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash b/board/beagleboard/beagley-ai/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash index 440526977bd..b6a925ea4e8 100644 --- a/board/beagleboard/beagley-ai/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash +++ b/board/beagleboard/beagley-ai/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/beagleboard/beagley-ai/patches/uboot/uboot.hash b/board/beagleboard/beagley-ai/patches/uboot/uboot.hash index 440526977bd..b6a925ea4e8 100644 --- a/board/beagleboard/beagley-ai/patches/uboot/uboot.hash +++ b/board/beagleboard/beagley-ai/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/bsh/common/imx8mn-bsh-smm-s2/patches/linux/linux.hash b/board/bsh/common/imx8mn-bsh-smm-s2/patches/linux/linux.hash index b61e87cec65..e675afabcfe 100644 --- a/board/bsh/common/imx8mn-bsh-smm-s2/patches/linux/linux.hash +++ b/board/bsh/common/imx8mn-bsh-smm-s2/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 55432b2af352f7bf3053c348d8549df2f2deeaa4a361c65d638c2f3b2ca7ec96 linux-6.12.56.tar.xz +sha256 7d2e1b5d5ab36b3a01856e71782dad2a54e634fb2b37c0a42998def3bbf957c1 linux-6.12.96.tar.xz diff --git a/board/bsh/common/imx8mn-bsh-smm-s2/patches/uboot/uboot.hash b/board/bsh/common/imx8mn-bsh-smm-s2/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/bsh/common/imx8mn-bsh-smm-s2/patches/uboot/uboot.hash +++ b/board/bsh/common/imx8mn-bsh-smm-s2/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/bsh/imx6ulz-bsh-smm-m2/patches/linux/linux.hash b/board/bsh/imx6ulz-bsh-smm-m2/patches/linux/linux.hash index 32ed4d2a08d..5adce2bab48 100644 --- a/board/bsh/imx6ulz-bsh-smm-m2/patches/linux/linux.hash +++ b/board/bsh/imx6ulz-bsh-smm-m2/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 4a168aed2de5a81aadd90ba2b153860a98d99bfc34651936e17f18e54f01ba8c linux-6.12.36.tar.xz +sha256 7d2e1b5d5ab36b3a01856e71782dad2a54e634fb2b37c0a42998def3bbf957c1 linux-6.12.96.tar.xz diff --git a/board/bsh/imx6ulz-bsh-smm-m2/patches/uboot/uboot.hash b/board/bsh/imx6ulz-bsh-smm-m2/patches/uboot/uboot.hash index 440526977bd..ff6e4ed2e2f 100644 --- a/board/bsh/imx6ulz-bsh-smm-m2/patches/uboot/uboot.hash +++ b/board/bsh/imx6ulz-bsh-smm-m2/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/bsh/imx6ulz-bsh-smm-m2/post-build.sh b/board/bsh/imx6ulz-bsh-smm-m2/post-build.sh index eac82cc22af..4a9bc1cfd50 100755 --- a/board/bsh/imx6ulz-bsh-smm-m2/post-build.sh +++ b/board/bsh/imx6ulz-bsh-smm-m2/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname "$0")" cp "${BOARD_DIR}/nand-full.lst" "${BINARIES_DIR}" diff --git a/board/bsh/imx8mn-bsh-smm-s2-pro/post-build.sh b/board/bsh/imx8mn-bsh-smm-s2-pro/post-build.sh index bf8861f6a91..9306df3f3ff 100755 --- a/board/bsh/imx8mn-bsh-smm-s2-pro/post-build.sh +++ b/board/bsh/imx8mn-bsh-smm-s2-pro/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname $0)" PARTUUID="$($HOST_DIR/bin/uuidgen)" diff --git a/board/bsh/imx8mn-bsh-smm-s2/post-build.sh b/board/bsh/imx8mn-bsh-smm-s2/post-build.sh index 49df4cd6fb1..ede1738ecbc 100755 --- a/board/bsh/imx8mn-bsh-smm-s2/post-build.sh +++ b/board/bsh/imx8mn-bsh-smm-s2/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname $0)" cp ${BOARD_DIR}/nand-full.lst ${BINARIES_DIR} diff --git a/board/compulab/iot-gate-imx8-ebbr/patches/uboot/uboot.hash b/board/compulab/iot-gate-imx8-ebbr/patches/uboot/uboot.hash index 440526977bd..b6a925ea4e8 100644 --- a/board/compulab/iot-gate-imx8-ebbr/patches/uboot/uboot.hash +++ b/board/compulab/iot-gate-imx8-ebbr/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/cubietech/cubieboard1/patches/linux/linux.hash b/board/cubietech/cubieboard1/patches/linux/linux.hash index 9ef8b4af9c5..cd7c9607f28 100644 --- a/board/cubietech/cubieboard1/patches/linux/linux.hash +++ b/board/cubietech/cubieboard1/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 b4850cf670a032c70f38b713a27d62046c5f747caf028c5f50b18f98606a9eb1 linux-6.12.52.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v7.x/sha256sums.asc +sha256 be41c068e88f5242a19bccdbffbe077b18c47b45f627e2325504b4fab79dd1dc linux-7.1.3.tar.xz diff --git a/board/cubietech/cubieboard1/patches/uboot/uboot.hash b/board/cubietech/cubieboard1/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/cubietech/cubieboard1/patches/uboot/uboot.hash +++ b/board/cubietech/cubieboard1/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/cubietech/cubieboard2/patches/linux/linux.hash b/board/cubietech/cubieboard2/patches/linux/linux.hash index 9ef8b4af9c5..cd7c9607f28 100644 --- a/board/cubietech/cubieboard2/patches/linux/linux.hash +++ b/board/cubietech/cubieboard2/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 b4850cf670a032c70f38b713a27d62046c5f747caf028c5f50b18f98606a9eb1 linux-6.12.52.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v7.x/sha256sums.asc +sha256 be41c068e88f5242a19bccdbffbe077b18c47b45f627e2325504b4fab79dd1dc linux-7.1.3.tar.xz diff --git a/board/cubietech/cubieboard2/patches/uboot/uboot.hash b/board/cubietech/cubieboard2/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/cubietech/cubieboard2/patches/uboot/uboot.hash +++ b/board/cubietech/cubieboard2/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/firefly/roc-rk3399-pc/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/firefly/roc-rk3399-pc/patches/arm-trusted-firmware/arm-trusted-firmware.hash index 8b77e1f1653..0bf70b55422 100644 --- a/board/firefly/roc-rk3399-pc/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/firefly/roc-rk3399-pc/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 c0f23ccc71c49989e9ad238acf334473c17b7c88f79a20c829c3d443e3794a22 arm-trusted-firmware-v2.11-git4.tar.gz +sha256 6fd749e53c455aec3418288630544e7552bbffab4442ddc48b20ebef9aee87ff arm-trusted-firmware-v2.14-git4.tar.gz diff --git a/board/firefly/roc-rk3399-pc/patches/linux/linux.hash b/board/firefly/roc-rk3399-pc/patches/linux/linux.hash index 98edd13a581..be62c295011 100644 --- a/board/firefly/roc-rk3399-pc/patches/linux/linux.hash +++ b/board/firefly/roc-rk3399-pc/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f74812f78e88992c416434cb107639e13a551dbaff36bb90d6346ab16ab71a95 linux-6.6.56.tar.xz +sha256 f4855f382c1b735c84072bdef36db5bcd5dc7b0c37e42f5104317149a0a486ef linux-6.18.18.tar.xz diff --git a/board/firefly/roc-rk3399-pc/patches/uboot/uboot.hash b/board/firefly/roc-rk3399-pc/patches/uboot/uboot.hash index fe9b4f53dc6..b6a925ea4e8 100644 --- a/board/firefly/roc-rk3399-pc/patches/uboot/uboot.hash +++ b/board/firefly/roc-rk3399-pc/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f591da9ab90ef3d6b3d173766d0ddff90c4ed7330680897486117df390d83c8f u-boot-2024.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/freescale/imx6ull-evk/linux_sdma.fragment b/board/freescale/imx6ull-evk/linux_sdma.fragment new file mode 100644 index 00000000000..6f1c8b4313c --- /dev/null +++ b/board/freescale/imx6ull-evk/linux_sdma.fragment @@ -0,0 +1 @@ +CONFIG_IMX_SDMA=m diff --git a/board/beagleboard/beagley-ai/patches/linux-headers/linux-headers.hash b/board/freescale/imx6ull-evk/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/beagleboard/beagley-ai/patches/linux-headers/linux-headers.hash rename to board/freescale/imx6ull-evk/patches/linux-headers/linux-headers.hash diff --git a/board/freescale/imx6ull-evk/patches/linux/linux.hash b/board/freescale/imx6ull-evk/patches/linux/linux.hash new file mode 100644 index 00000000000..b1a0042a91a --- /dev/null +++ b/board/freescale/imx6ull-evk/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/freescale/imx6ull-evk/patches/uboot/uboot.hash b/board/freescale/imx6ull-evk/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/freescale/imx6ull-evk/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/freescale/imx6ull-evk/readme.txt b/board/freescale/imx6ull-evk/readme.txt new file mode 100644 index 00000000000..8203a120268 --- /dev/null +++ b/board/freescale/imx6ull-evk/readme.txt @@ -0,0 +1,64 @@ +**************************** +Freescale i.MX6ULL EVK board +**************************** + +This file documents the Buildroot support for the Freescale i.MX6ULL EVK board +using Upstream U-Boot and Linux. + +Build +===== + +First, configure Buildroot for your i.MX6ULL EVK board: + +In order to do so issue: + + make imx6ullevk_defconfig + +Build all components: + + make + +You will find in output/images/ the following files: + - boot.vfat + - imx6ull-14x14-evk.dtb + - rootfs.ext2 + - rootfs.ext4 + - rootfs.tar + - sdcard.img + - u-boot.bin + - u-boot-dtb.imx + - zImage + +Create a bootable SD card +========================= + +To determine the device associated to the SD card have a look in the +/proc/partitions file: + + cat /proc/partitions + +Buildroot prepares a bootable "sdcard.img" image in the output/images/ +directory, ready to be dumped on a SD card. Launch the following +command as root: + + dd if=./output/images/sdcard.img of=/dev/ + +*** WARNING! This will destroy all the card content. Use with care! *** + +For details about the medium image layout, see the definition in +board/freescale/common/imx/genimage.cfg.template. + +Boot the i.MX6ULL EVK board +=========================== + +To boot your newly created system (refer to the i.MX 6ULL EVK Quick Start Guide [1] for guidance): +- insert the SD card in the micro SD slot of the board; +- put a micro USB cable into the Debug USB Port and connect using a terminal + emulator at 115200 bps, 8n1; +- power on the board. + +Enjoy! + +References +========== +[1] https://www.nxp.com/webapp/Download?colCode=IMX6ULLQSG diff --git a/board/freescale/imx6ullevk/patches/linux/linux.hash b/board/freescale/imx6ullevk/patches/linux/linux.hash index b4f534dcc8d..b138642633a 100644 --- a/board/freescale/imx6ullevk/patches/linux/linux.hash +++ b/board/freescale/imx6ullevk/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 4c1147a9bbe4bf36fbcbd8b1e6b0d73ec0da3c454821c58a61d32d3879afc146 linux-imx-lf-6.12.3-1.0.0.tar.gz +sha256 2166d92e5631ee11bd249d492a1f4009c7635ee36b835fa55384b4ce41e8a63f linux-imx-lf-6.12.49-2.2.0.tar.gz diff --git a/board/freescale/imx6ullevk/patches/uboot/uboot.hash b/board/freescale/imx6ullevk/patches/uboot/uboot.hash index 309a684c2d6..5d57adfa22b 100644 --- a/board/freescale/imx6ullevk/patches/uboot/uboot.hash +++ b/board/freescale/imx6ullevk/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 18a32d6c79538e4f90746674873b196f9c48be24caef0ab5c1bec920a1816825 uboot-imx-lf-6.12.3-1.0.0.tar.gz +sha256 212ea4d8d442153ab732ab724282fef64450e9dab5cfe9565eec4f618e305a80 uboot-imx-lf-6.12.49-2.2.0.tar.gz diff --git a/board/freescale/imx6ullevk/readme.txt b/board/freescale/imx6ullevk/readme.txt index dc7c5f3678f..80db3a46ca6 100644 --- a/board/freescale/imx6ullevk/readme.txt +++ b/board/freescale/imx6ullevk/readme.txt @@ -2,25 +2,18 @@ Freescale i.MX6ULL EVK board **************************** -This file documents the Buildroot support for the Freescale i.MX6ULL EVK board. +This file documents the Buildroot support for the Freescale i.MX6ULL EVK board +using Vendor U-Boot and Linux. Build ===== First, configure Buildroot for your i.MX6ULL EVK board: -In order to do so there are two supported options: +In order to do so issue: make freescale_imx6ullevk_defconfig -if you plan to use NXP provided U-Boot and kernel. - -or - - make imx6ullevk_defconfig - -if you plan to use mainline U-Boot and mainline kernel. - Build all components: make diff --git a/board/freescale/imx91frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/imx91frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash index 7561385cb86..bf39f1e9c7f 100644 --- a/board/freescale/imx91frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/imx91frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 8cfe0afc903ebbc03f27e4874aa9ce82be78843a8b42ed4c906871e7f311b510 imx-atf-lf-6.6.36-2.1.0.tar.gz +sha256 d7813f4ad5431edb162d6be2775bc021f9007b9c6934e977330291168523a507 imx-atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx91frdm/patches/linux/linux.hash b/board/freescale/imx91frdm/patches/linux/linux.hash index f03ffd5b557..222ec55328d 100644 --- a/board/freescale/imx91frdm/patches/linux/linux.hash +++ b/board/freescale/imx91frdm/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 3f5017e85ba6c490be597670033a7eaba14e3c34af4e53d24dc3762c3deece83 linux-imx-lf-6.6.36-2.1.0-imx91frdm.tar.gz +sha256 a8f55764fd1418db8adfd2711c0abb7d5464a8ee1cbfd0f6878f1059ecfa1316 linux-imx-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx91frdm/patches/uboot/uboot.hash b/board/freescale/imx91frdm/patches/uboot/uboot.hash index f285dff4902..01e860b59ea 100644 --- a/board/freescale/imx91frdm/patches/uboot/uboot.hash +++ b/board/freescale/imx91frdm/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f7d9a6e99825926d0bc597e0fdfeafffcc76ad6267f1d4e9aae1fe9a8d400c22 uboot-imx-lf-6.6.36-2.1.0-imx91frdm.tar.gz +sha256 96942f8c49736b7d40277891bf0a34cfdd0afb59390f79b65b2b33b3bbd19f61 uboot-imx-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx91frdm/uboot.fragment b/board/freescale/imx91frdm/uboot.fragment new file mode 100644 index 00000000000..201ab282904 --- /dev/null +++ b/board/freescale/imx91frdm/uboot.fragment @@ -0,0 +1 @@ +# CONFIG_EFI_CAPSULE_AUTHENTICATE is not set diff --git a/board/freescale/imx93frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/imx93frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash index 7561385cb86..bf39f1e9c7f 100644 --- a/board/freescale/imx93frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/imx93frdm/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 8cfe0afc903ebbc03f27e4874aa9ce82be78843a8b42ed4c906871e7f311b510 imx-atf-lf-6.6.36-2.1.0.tar.gz +sha256 d7813f4ad5431edb162d6be2775bc021f9007b9c6934e977330291168523a507 imx-atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx93frdm/patches/linux/linux.hash b/board/freescale/imx93frdm/patches/linux/linux.hash index 0da8c03384b..222ec55328d 100644 --- a/board/freescale/imx93frdm/patches/linux/linux.hash +++ b/board/freescale/imx93frdm/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 3244dc3c62c990d9de90e1c7193aa3099e0e74e720de5c9c13edfbfdd802f596 linux-imx-lf-6.6.36-2.1.0-imx93frdm.tar.gz +sha256 a8f55764fd1418db8adfd2711c0abb7d5464a8ee1cbfd0f6878f1059ecfa1316 linux-imx-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx93frdm/patches/uboot/uboot.hash b/board/freescale/imx93frdm/patches/uboot/uboot.hash index e512c27f7d2..01e860b59ea 100644 --- a/board/freescale/imx93frdm/patches/uboot/uboot.hash +++ b/board/freescale/imx93frdm/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 bced4334363199d5465532d221d06dc3a5b49271067d74408019c825ed2ca715 uboot-imx-lf-6.6.36-2.1.0-imx93frdm.tar.gz +sha256 96942f8c49736b7d40277891bf0a34cfdd0afb59390f79b65b2b33b3bbd19f61 uboot-imx-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/imx93frdm/uboot.fragment b/board/freescale/imx93frdm/uboot.fragment new file mode 100644 index 00000000000..201ab282904 --- /dev/null +++ b/board/freescale/imx93frdm/uboot.fragment @@ -0,0 +1 @@ +# CONFIG_EFI_CAPSULE_AUTHENTICATE is not set diff --git a/board/freescale/imxrt1050evk/patches/linux/linux.hash b/board/freescale/imxrt1050evk/patches/linux/linux.hash index 216d9b9d39d..020dc72386c 100644 --- a/board/freescale/imxrt1050evk/patches/linux/linux.hash +++ b/board/freescale/imxrt1050evk/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 0fcbbbbcd456e87bbbfc8bf37af541fda62ccfcce76903503424fd101ef7bdee linux-6.12.43.tar.xz +sha256 f4855f382c1b735c84072bdef36db5bcd5dc7b0c37e42f5104317149a0a486ef linux-6.18.18.tar.xz diff --git a/board/freescale/imxrt1050evk/patches/uboot/uboot.hash b/board/freescale/imxrt1050evk/patches/uboot/uboot.hash index 440526977bd..b6a925ea4e8 100644 --- a/board/freescale/imxrt1050evk/patches/uboot/uboot.hash +++ b/board/freescale/imxrt1050evk/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/freescale/ls1028ardb/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/ls1028ardb/patches/arm-trusted-firmware/arm-trusted-firmware.hash index c05084df766..4a62068d297 100644 --- a/board/freescale/ls1028ardb/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/ls1028ardb/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 738f029c6bfcdac5649e2c252970b1f44c1ce7fee9fe4657a25edc666375ffa8 atf-lf-6.12.20-2.0.0.tar.gz +sha256 658af40a90fd8e2460d364775a0c37e0507201e49de7f69c8a22d61e179f81e1 atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1028ardb/patches/linux/linux.hash b/board/freescale/ls1028ardb/patches/linux/linux.hash index 3aea05469cc..85d5173aa78 100644 --- a/board/freescale/ls1028ardb/patches/linux/linux.hash +++ b/board/freescale/ls1028ardb/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 c98177e85ace6400b06301101af3065e90463920c3e166da4ed22deffe960fb8 linux-lf-6.12.20-2.0.0.tar.gz +sha256 206f997d41bb958099bf7a89a02a6889942b118984f81f9a45bec9907f60708f linux-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1028ardb/patches/uboot/uboot.hash b/board/freescale/ls1028ardb/patches/uboot/uboot.hash index 1072686160f..80bbe7d2191 100644 --- a/board/freescale/ls1028ardb/patches/uboot/uboot.hash +++ b/board/freescale/ls1028ardb/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 a39f7db3ffd2b7263ea5d02b0631decac1c89f7c1b96b77ba8e302f3641a3eb3 u-boot-lf-6.12.20-2.0.0.tar.gz +sha256 04aed627132db7b656117c7a35fb29d314172319fa3a297ea6748eebac2b5ce3 u-boot-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1028ardb/readme.txt b/board/freescale/ls1028ardb/readme.txt index 28b8fdff3ad..d2bcee0ac2a 100644 --- a/board/freescale/ls1028ardb/readme.txt +++ b/board/freescale/ls1028ardb/readme.txt @@ -11,7 +11,7 @@ For more details about the board and the QorIQ Layerscape SoC, see the following Layerscape platforms are officially supported by NXP under the Layerscape Debian Linux SDK (LDLSDK). This uses components from Linux Factory (project common with i.MX), but has a slower release cadence than LF. The currently used -tag is lf-6.12.20-2.0.0, which is in line with the latest LF tag. Generally, in +tag is lf-6.18.20-2.0.0, which is in line with the latest LF tag. Generally, in Buildroot, the latest Linux Factory release tag is always used, which may be considered pre-release software, as it may contain features which are not yet documented, and it generally undergoes less testing. @@ -21,11 +21,11 @@ For the software Layerscape Debian Linux SDK User Guide, see: - https://www.nxp.com/docs/en/user-guide/UG10143.pdf The components from NXP are: - - rcw, lf-6.12.20-2.0.0 - - atf (fork), lf-6.12.20-2.0.0 - - uboot (fork), lf-6.12.20-2.0.0 + - rcw, lf-6.18.20-2.0.0 + - atf (fork), lf-6.18.20-2.0.0 + - uboot (fork), lf-6.18.20-2.0.0 - cadence-dp-firmware (blob), 8.16 - - linux (fork), lf-6.12.20-2.0.0 + - linux (fork), lf-6.18.20-2.0.0 Build ===== diff --git a/board/freescale/ls1043a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/ls1043a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash index c05084df766..4a62068d297 100644 --- a/board/freescale/ls1043a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/ls1043a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 738f029c6bfcdac5649e2c252970b1f44c1ce7fee9fe4657a25edc666375ffa8 atf-lf-6.12.20-2.0.0.tar.gz +sha256 658af40a90fd8e2460d364775a0c37e0507201e49de7f69c8a22d61e179f81e1 atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1043a-rdb/patches/linux/linux.hash b/board/freescale/ls1043a-rdb/patches/linux/linux.hash index 3aea05469cc..85d5173aa78 100644 --- a/board/freescale/ls1043a-rdb/patches/linux/linux.hash +++ b/board/freescale/ls1043a-rdb/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 c98177e85ace6400b06301101af3065e90463920c3e166da4ed22deffe960fb8 linux-lf-6.12.20-2.0.0.tar.gz +sha256 206f997d41bb958099bf7a89a02a6889942b118984f81f9a45bec9907f60708f linux-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1043a-rdb/patches/uboot/uboot.hash b/board/freescale/ls1043a-rdb/patches/uboot/uboot.hash index 1072686160f..80bbe7d2191 100644 --- a/board/freescale/ls1043a-rdb/patches/uboot/uboot.hash +++ b/board/freescale/ls1043a-rdb/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 a39f7db3ffd2b7263ea5d02b0631decac1c89f7c1b96b77ba8e302f3641a3eb3 u-boot-lf-6.12.20-2.0.0.tar.gz +sha256 04aed627132db7b656117c7a35fb29d314172319fa3a297ea6748eebac2b5ce3 u-boot-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1043a-rdb/readme.txt b/board/freescale/ls1043a-rdb/readme.txt index b106c964714..df067aa1e82 100644 --- a/board/freescale/ls1043a-rdb/readme.txt +++ b/board/freescale/ls1043a-rdb/readme.txt @@ -11,7 +11,7 @@ for more details about the board and the QorIQ Layerscape SoC, see the following Layerscape platforms are officially supported by NXP under the Layerscape Debian Linux SDK (LDLSDK). This uses components from Linux Factory (project common with i.MX), but has a slower release cadence than LF. The currently used -tag is lf-6.12.20-2.0.0, which is in line with the latest LF tag. Generally, in +tag is lf-6.18.20-2.0.0, which is in line with the latest LF tag. Generally, in Buildroot, the latest Linux Factory release tag is always used, which may be considered pre-release software, as it may contain features which are not yet documented, and it generally undergoes less testing. @@ -21,13 +21,13 @@ For the software Layerscape Debian Linux SDK User Guide, see: - https://www.nxp.com/docs/en/user-guide/UG10143.pdf The components from NXP are: - - rcw, lf-6.12.20-2.0.0 - - atf (fork), lf-6.12.20-2.0.0 - - uboot (fork), lf-6.12.20-2.0.0 - - qoriq-fm-ucode (blob), lf-6.12.20-2.0.0 - - linux (fork), lf-6.12.20-2.0.0 - - fmlib, lf-6.12.20-2.0.0 - - fmc, lf-6.12.20-2.0.0 + - rcw, lf-6.18.20-2.0.0 + - atf (fork), lf-6.18.20-2.0.0 + - uboot (fork), lf-6.18.20-2.0.0 + - qoriq-fm-ucode (blob), lf-6.18.20-2.0.0 + - linux (fork), lf-6.18.20-2.0.0 + - fmlib, lf-6.18.20-2.0.0 + - fmc, lf-6.18.20-2.0.0 Build ===== diff --git a/board/freescale/ls1046a-frwy/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/ls1046a-frwy/patches/arm-trusted-firmware/arm-trusted-firmware.hash index c05084df766..4a62068d297 100644 --- a/board/freescale/ls1046a-frwy/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/ls1046a-frwy/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 738f029c6bfcdac5649e2c252970b1f44c1ce7fee9fe4657a25edc666375ffa8 atf-lf-6.12.20-2.0.0.tar.gz +sha256 658af40a90fd8e2460d364775a0c37e0507201e49de7f69c8a22d61e179f81e1 atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-frwy/patches/linux/linux.hash b/board/freescale/ls1046a-frwy/patches/linux/linux.hash index 3aea05469cc..85d5173aa78 100644 --- a/board/freescale/ls1046a-frwy/patches/linux/linux.hash +++ b/board/freescale/ls1046a-frwy/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 c98177e85ace6400b06301101af3065e90463920c3e166da4ed22deffe960fb8 linux-lf-6.12.20-2.0.0.tar.gz +sha256 206f997d41bb958099bf7a89a02a6889942b118984f81f9a45bec9907f60708f linux-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-frwy/patches/uboot/uboot.hash b/board/freescale/ls1046a-frwy/patches/uboot/uboot.hash index 1072686160f..80bbe7d2191 100644 --- a/board/freescale/ls1046a-frwy/patches/uboot/uboot.hash +++ b/board/freescale/ls1046a-frwy/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 a39f7db3ffd2b7263ea5d02b0631decac1c89f7c1b96b77ba8e302f3641a3eb3 u-boot-lf-6.12.20-2.0.0.tar.gz +sha256 04aed627132db7b656117c7a35fb29d314172319fa3a297ea6748eebac2b5ce3 u-boot-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-frwy/readme.txt b/board/freescale/ls1046a-frwy/readme.txt index 79a2ecdecf2..4312afe40f3 100644 --- a/board/freescale/ls1046a-frwy/readme.txt +++ b/board/freescale/ls1046a-frwy/readme.txt @@ -12,7 +12,7 @@ For more details about the board and the QorIQ Layerscape SoC, see the following Layerscape platforms are officially supported by NXP under the Layerscape Debian Linux SDK (LDLSDK). This uses components from Linux Factory (project common with i.MX), but has a slower release cadence than LF. The currently used -tag is lf-6.12.20-2.0.0, which is in line with the latest LF tag. Generally, in +tag is lf-6.18.20-2.0.0, which is in line with the latest LF tag. Generally, in Buildroot, the latest Linux Factory release tag is always used, which may be considered pre-release software, as it may contain features which are not yet documented, and it generally undergoes less testing. @@ -22,13 +22,13 @@ For the software Layerscape Debian Linux SDK User Guide, see: - https://www.nxp.com/docs/en/user-guide/UG10143.pdf The components from NXP are: - - rcw, lf-6.12.20-2.0.0 - - atf (fork), lf-6.12.20-2.0.0 - - uboot (fork), lf-6.12.20-2.0.0 - - qoriq-fm-ucode (blob), lf-6.12.20-2.0.0 - - linux (fork), lf-6.12.20-2.0.0 - - fmlib, lf-6.12.20-2.0.0 - - fmc, lf-6.12.20-2.0.0 + - rcw, lf-6.18.20-2.0.0 + - atf (fork), lf-6.18.20-2.0.0 + - uboot (fork), lf-6.18.20-2.0.0 + - qoriq-fm-ucode (blob), lf-6.18.20-2.0.0 + - linux (fork), lf-6.18.20-2.0.0 + - fmlib, lf-6.18.20-2.0.0 + - fmc, lf-6.18.20-2.0.0 Build ===== diff --git a/board/freescale/ls1046a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/freescale/ls1046a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash index c05084df766..4a62068d297 100644 --- a/board/freescale/ls1046a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/freescale/ls1046a-rdb/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 738f029c6bfcdac5649e2c252970b1f44c1ce7fee9fe4657a25edc666375ffa8 atf-lf-6.12.20-2.0.0.tar.gz +sha256 658af40a90fd8e2460d364775a0c37e0507201e49de7f69c8a22d61e179f81e1 atf-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-rdb/patches/linux/linux.hash b/board/freescale/ls1046a-rdb/patches/linux/linux.hash index 3aea05469cc..85d5173aa78 100644 --- a/board/freescale/ls1046a-rdb/patches/linux/linux.hash +++ b/board/freescale/ls1046a-rdb/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 c98177e85ace6400b06301101af3065e90463920c3e166da4ed22deffe960fb8 linux-lf-6.12.20-2.0.0.tar.gz +sha256 206f997d41bb958099bf7a89a02a6889942b118984f81f9a45bec9907f60708f linux-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-rdb/patches/uboot/uboot.hash b/board/freescale/ls1046a-rdb/patches/uboot/uboot.hash index 1072686160f..80bbe7d2191 100644 --- a/board/freescale/ls1046a-rdb/patches/uboot/uboot.hash +++ b/board/freescale/ls1046a-rdb/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 a39f7db3ffd2b7263ea5d02b0631decac1c89f7c1b96b77ba8e302f3641a3eb3 u-boot-lf-6.12.20-2.0.0.tar.gz +sha256 04aed627132db7b656117c7a35fb29d314172319fa3a297ea6748eebac2b5ce3 u-boot-lf-6.18.20-2.0.0.tar.gz diff --git a/board/freescale/ls1046a-rdb/readme.txt b/board/freescale/ls1046a-rdb/readme.txt index ede7a607a88..a79bd886fad 100644 --- a/board/freescale/ls1046a-rdb/readme.txt +++ b/board/freescale/ls1046a-rdb/readme.txt @@ -11,7 +11,7 @@ for more details about the board and the QorIQ Layerscape SoC, see the following Layerscape platforms are officially supported by NXP under the Layerscape Debian Linux SDK (LDLSDK). This uses components from Linux Factory (project common with i.MX), but has a slower release cadence than LF. The currently used -tag is lf-6.12.20-2.0.0, which is in line with the latest LF tag. Generally, in +tag is lf-6.18.20-2.0.0, which is in line with the latest LF tag. Generally, in Buildroot, the latest Linux Factory release tag is always used, which may be considered pre-release software, as it may contain features which are not yet documented, and it generally undergoes less testing. @@ -21,13 +21,13 @@ For the software Layerscape Debian Linux SDK User Guide, see: - https://www.nxp.com/docs/en/user-guide/UG10143.pdf The components from NXP are: - - rcw, lf-6.12.20-2.0.0 - - atf (fork), lf-6.12.20-2.0.0 - - uboot (fork), lf-6.12.20-2.0.0 - - qoriq-fm-ucode (blob), lf-6.12.20-2.0.0 - - linux (fork), lf-6.12.20-2.0.0 - - fmlib, lf-6.12.20-2.0.0 - - fmc, lf-6.12.20-2.0.0 + - rcw, lf-6.18.20-2.0.0 + - atf (fork), lf-6.18.20-2.0.0 + - uboot (fork), lf-6.18.20-2.0.0 + - qoriq-fm-ucode (blob), lf-6.18.20-2.0.0 + - linux (fork), lf-6.18.20-2.0.0 + - fmlib, lf-6.18.20-2.0.0 + - fmc, lf-6.18.20-2.0.0 Build ===== diff --git a/board/friendlyarm/nanopi-neo/patches/linux/linux.hash b/board/friendlyarm/nanopi-neo/patches/linux/linux.hash index ecff37638a0..020dc72386c 100644 --- a/board/friendlyarm/nanopi-neo/patches/linux/linux.hash +++ b/board/friendlyarm/nanopi-neo/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally calculated -sha256 93218296934915636fe6ba08e125948424cc270fd8948502c0ab91087a9fccd8 linux-6.6.44.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 f4855f382c1b735c84072bdef36db5bcd5dc7b0c37e42f5104317149a0a486ef linux-6.18.18.tar.xz diff --git a/board/friendlyarm/nanopi-neo/patches/uboot/uboot.hash b/board/friendlyarm/nanopi-neo/patches/uboot/uboot.hash index fe9b4f53dc6..b6a925ea4e8 100644 --- a/board/friendlyarm/nanopi-neo/patches/uboot/uboot.hash +++ b/board/friendlyarm/nanopi-neo/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 f591da9ab90ef3d6b3d173766d0ddff90c4ed7330680897486117df390d83c8f u-boot-2024.07.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/friendlyarm/nanopi-r2s/patches/linux/linux.hash b/board/friendlyarm/nanopi-r2s/patches/linux/linux.hash new file mode 100644 index 00000000000..020dc72386c --- /dev/null +++ b/board/friendlyarm/nanopi-r2s/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 f4855f382c1b735c84072bdef36db5bcd5dc7b0c37e42f5104317149a0a486ef linux-6.18.18.tar.xz diff --git a/board/friendlyarm/nanopi-r2s/patches/uboot/uboot.hash b/board/friendlyarm/nanopi-r2s/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/friendlyarm/nanopi-r2s/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/friendlyarm/nanopi-r3s/patches/linux/linux.hash b/board/friendlyarm/nanopi-r3s/patches/linux/linux.hash index 451159a6dc4..f83883b936d 100644 --- a/board/friendlyarm/nanopi-r3s/patches/linux/linux.hash +++ b/board/friendlyarm/nanopi-r3s/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 21817f1998e2230f81f7e4f605fa6fdcb040e14fa27d99c27ddb16ce749797a9 linux-6.14.6.tar.xz +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/friendlyarm/nanopi-r3s/patches/uboot/uboot.hash b/board/friendlyarm/nanopi-r3s/patches/uboot/uboot.hash index b550824126f..74d80a0daa1 100644 --- a/board/friendlyarm/nanopi-r3s/patches/uboot/uboot.hash +++ b/board/friendlyarm/nanopi-r3s/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed: -sha256 439d3bef296effd54130be6a731c5b118be7fddd7fcc663ccbc5fb18294d8718 u-boot-2025.04.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/hp/9000/genimage.cfg.in b/board/hp/9000/genimage.cfg.in new file mode 100644 index 00000000000..5a593075527 --- /dev/null +++ b/board/hp/9000/genimage.cfg.in @@ -0,0 +1,16 @@ +image disk.img { + hdimage { + partition-table-type = "mbr" + disk-signature = 0x%PARTUUID% + } + + partition boot { + partition-type= 0xF0 + size = 16M + } + + partition root { + partition-type= 0x83 + image = "rootfs.ext2" + } +} diff --git a/board/hp/9000/palo.sh.in b/board/hp/9000/palo.sh.in new file mode 100644 index 00000000000..9743111bc8f --- /dev/null +++ b/board/hp/9000/palo.sh.in @@ -0,0 +1,21 @@ +#!/bin/sh +set -eu + +# Generate lifimage. +palo \ + --bootloader="${BINARIES_DIR}/iplboot" \ + --commandline='0/vmlinux initrd=0/ramdisk' \ + --configfile=/dev/null \ + --init-tape="${BINARIES_DIR}/lifimage" \ + --ramdisk="${BINARIES_DIR}/rootfs.cpio.gz" \ + --recoverykernel="${BINARIES_DIR}/vmlinux" \ + --verbose + +# Install loader to disk image. +palo \ + --bootloader="${BINARIES_DIR}/iplboot" \ + --commandline="1/vmlinux root=PARTUUID=%PARTUUID%-02 rootwait" \ + --configfile=/dev/null \ + --init-partitioned="${BINARIES_DIR}/disk.img" \ + --recoverykernel="${BINARIES_DIR}/vmlinux" \ + --verbose diff --git a/board/cubietech/cubieboard1/patches/linux-headers/linux-headers.hash b/board/hp/9000/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/cubietech/cubieboard1/patches/linux-headers/linux-headers.hash rename to board/hp/9000/patches/linux-headers/linux-headers.hash diff --git a/board/hp/9000/patches/linux/linux.hash b/board/hp/9000/patches/linux/linux.hash new file mode 100644 index 00000000000..e05e102f0e1 --- /dev/null +++ b/board/hp/9000/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 76bffbae7eab2a1de1ed05692bef709f43b02a52fe95ae655cacf0fa252213f3 linux-6.16.5.tar.xz diff --git a/board/hp/9000/post-image.sh b/board/hp/9000/post-image.sh new file mode 100755 index 00000000000..e489e0bf9eb --- /dev/null +++ b/board/hp/9000/post-image.sh @@ -0,0 +1,16 @@ +#!/bin/sh +set -eu + +BOARD_DIR="$(dirname "$0")" + +# Generate a random 32-bit signature for the disk image and +# substitute it in genimage configuration file and palo script. +PARTUUID="$("$HOST_DIR"/bin/uuidgen -r |sed 's/-.*//')" + +sed "s/%PARTUUID%/$PARTUUID/g" "$BOARD_DIR/genimage.cfg.in" \ + > "$BINARIES_DIR/genimage.cfg" + +sed "s/%PARTUUID%/$PARTUUID/g" "$BOARD_DIR/palo.sh.in" \ + > "$BINARIES_DIR/palo.sh" + +chmod +x "$BINARIES_DIR/palo.sh" diff --git a/board/hp/9000/readme.txt b/board/hp/9000/readme.txt new file mode 100644 index 00000000000..9a07c55253f --- /dev/null +++ b/board/hp/9000/readme.txt @@ -0,0 +1,57 @@ +Introduction +============ + +The hp_9000_defconfig is meant to run Linux on a large range of 32-bit +HP PA-RISC 1.1 Workstations, such as the HP 9000 700 and Visualize +workstations. [1] + +Building +======== + + $ make hp_9000_defconfig + $ make + +Generated files under output/images: + +* lifimage: network bootable image comprising Linux kernel and ramdisk. +* disk.img: bootable disk image, with Linux kernel and root filesystem. + +Running +======= + +To run the generated system, one method is to write the disk image directly to +the workstation hard disk drive using a PC and an SCSI adapter. Extract the +disk from the workstation, connect it to the PC, then do: + + # dd if=output/images/disk.img of= ; sync + +Put the disk back into the workstation, connect to the UART console with +baudrate 9600; the firmware should boot Linux from disk and you should obtain a +login prompt. + +Another method is to boot from the network. This necessitates to setup a DHCP +and TFTP server, such as dnsmasq[2], to give the workstation its boot filename +with DHCP and serve the lifimage with TFTP. + +Connect to the UART console with baudrate 9600 and interrupt the boot sequence +of the firmware. + +On an HP 9000 712 workstation, do: + + BOOT_ADMIN> boot lan + +On an HP Visualize J210XC workstation, do: + + Configuration Menu: Enter command > boot lan + Interact with IPL (Y or N)?> n + +The firmware should boot Linux from the network and you should obtain a login +prompt. + +It is possible to download the disk image from the network and write it to the +hard disk drive, for example with TFTP: + + # tftp -g -r /disk.img -l /dev/sda + +[1] https://www.openpa.net/systems/ +[2] https://dnsmasq.org/doc.html diff --git a/board/khadas/vim3/genimage.cfg b/board/khadas/vim3/genimage.cfg index 79d7f9ca076..1ceb5e4e8bc 100644 --- a/board/khadas/vim3/genimage.cfg +++ b/board/khadas/vim3/genimage.cfg @@ -27,7 +27,6 @@ image sdcard.img { partition rootfs { partition-type = 0x83 image = "rootfs.ext2" - size = 128M offset = 0 } } diff --git a/board/khadas/vim3/patches/linux/linux.hash b/board/khadas/vim3/patches/linux/linux.hash new file mode 100644 index 00000000000..6ef79ed70a2 --- /dev/null +++ b/board/khadas/vim3/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 7c716216c3c4134ed0de69195701e677577bbcdd3979f331c182acd06bf2f170 linux-6.18.15.tar.xz diff --git a/board/khadas/vim3/patches/uboot/uboot.hash b/board/khadas/vim3/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/khadas/vim3/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/kontron/smarc-sal28/patches/linux/linux.hash b/board/kontron/smarc-sal28/patches/linux/linux.hash new file mode 100644 index 00000000000..a4cc7bd3f6f --- /dev/null +++ b/board/kontron/smarc-sal28/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 9106a4605da9e31ff17659d958782b815f9591ab308d03b0ee21aad6c7dced4b linux-6.18.tar.xz diff --git a/board/kontron/smarc-sal28/patches/uboot/uboot.hash b/board/kontron/smarc-sal28/patches/uboot/uboot.hash new file mode 100644 index 00000000000..36322a6a904 --- /dev/null +++ b/board/kontron/smarc-sal28/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 ac7c04b8b7004923b00a4e5d6699c5df4d21233bac9fda690d8cfbc209fff2fd u-boot-2026.04.tar.bz2 diff --git a/board/cubietech/cubieboard2/patches/linux-headers/linux-headers.hash b/board/mangopi/mq1rdw2/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/cubietech/cubieboard2/patches/linux-headers/linux-headers.hash rename to board/mangopi/mq1rdw2/patches/linux-headers/linux-headers.hash diff --git a/board/mangopi/mq1rdw2/patches/linux/linux.hash b/board/mangopi/mq1rdw2/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/mangopi/mq1rdw2/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/mangopi/mq1rdw2/patches/uboot/uboot.hash b/board/mangopi/mq1rdw2/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/mangopi/mq1rdw2/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/microchip/mpfs_icicle/mpfs_icicle.its b/board/microchip/mpfs_icicle/mpfs_icicle.its index a62b079fa12..2f89a6ee2f1 100644 --- a/board/microchip/mpfs_icicle/mpfs_icicle.its +++ b/board/microchip/mpfs_icicle/mpfs_icicle.its @@ -24,7 +24,7 @@ algo = "sha256"; }; }; - base_fdt { + fdt-mpfs-icicle-kit.dtb { description = "Flattened Device Tree blob"; data = /incbin/("./mpfs-icicle-kit.dtb"); type = "flat_dt"; @@ -35,19 +35,41 @@ algo = "sha256"; }; }; + fdt-mpfs-icicle-kit-prod.dtb { + description = "Flattened Device Tree blob"; + data = /incbin/("./mpfs-icicle-kit-prod.dtb"); + type = "flat_dt"; + arch = "riscv"; + compression = "none"; + load = <0x8a000000>; + hash-1 { + algo = "sha256"; + }; + }; }; configurations { - default = "kernel_dtb"; - kernel_dtb { + default = "conf-microchip,mpfs-icicle-kit-prod"; + conf-microchip,mpfs-icicle-kit { description = "1 Linux kernel, FDT blob"; kernel = "kernel"; - fdt = "base_fdt"; + fdt = "fdt-mpfs-icicle-kit.dtb"; }; - base_dtb { + conf-microchip,mpfs-icicle-kit-prod { + description = "1 Linux kernel, FDT blob"; + kernel = "kernel"; + fdt = "fdt-mpfs-icicle-kit-prod.dtb"; + }; + + conf-microchip,fdt-mpfs-icicle-kit.dtb { description = "Base FDT blob for MPFS Icicle board"; - fdt = "base_fdt"; + fdt = "fdt-mpfs-icicle-kit.dtb"; + }; + + conf-microchip,fdt-mpfs-icicle-kit-prod.dtb { + description = "Base FDT blob for MPFS Icicle Production board"; + fdt = "fdt-mpfs-icicle-kit-prod.dtb"; }; }; -}; +}; \ No newline at end of file diff --git a/board/microchip/mpfs_icicle/patches/linux/linux.hash b/board/microchip/mpfs_icicle/patches/linux/linux.hash index 416a8b1550b..2902da56b63 100644 --- a/board/microchip/mpfs_icicle/patches/linux/linux.hash +++ b/board/microchip/mpfs_icicle/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 dcb7b41fd363729675c34545fcb514d5a94dbb3714ee10f527a26ca7716c2579 linux-linux4microchip+fpga-2024.06.tar.gz +sha256 37191994758d521dc7223cb5010a67ef83bd061bf70194ea522abc9ef2b17391 linux-linux4microchip+fpga-2025.10.tar.gz diff --git a/board/microchip/mpfs_icicle/patches/uboot/uboot.hash b/board/microchip/mpfs_icicle/patches/uboot/uboot.hash index 2628d4b4fd6..a40f963a2e4 100644 --- a/board/microchip/mpfs_icicle/patches/uboot/uboot.hash +++ b/board/microchip/mpfs_icicle/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 d461c45a9c5acd019776cdcf8ab2b571315282a880dd6580431f7dd5bfac3889 uboot-linux4microchip+fpga-2024.06.tar.gz +sha256 591c80f7e16d6f43192deb7ab7587ae81b31ba7c7de1a668c14b9997b6c976c8 uboot-linux4microchip+fpga-2025.10.tar.gz diff --git a/board/microchip/mpfs_icicle/uboot-env.txt b/board/microchip/mpfs_icicle/uboot-env.txt index 8a655085ed1..befbfa20065 100644 --- a/board/microchip/mpfs_icicle/uboot-env.txt +++ b/board/microchip/mpfs_icicle/uboot-env.txt @@ -5,12 +5,15 @@ setenv fdt_high 0xffffffffffffffff setenv initrd_high 0xffffffffffffffff -load mmc 0:${distro_bootpart} ${scriptaddr} mpfs_icicle.itb; -bootm start ${scriptaddr}#kernel_dtb; -bootm loados ${scriptaddr}; -# Try to load a ramdisk if available inside fitImage -bootm ramdisk; -bootm prep; -fdt set /soc/ethernet@20112000 mac-address ${icicle_mac_addr0}; -fdt set /soc/ethernet@20110000 mac-address ${icicle_mac_addr1}; -bootm go; +fdt addr ${fdtcontroladdr} +fdt get value board_compatible / compatible 1 + +setenv fitconf conf-${board_compatible} + +load mmc 0:${distro_bootpart} ${scriptaddr} mpfs_icicle.itb +bootm start ${scriptaddr}#${fitconf} +bootm loados ${scriptaddr} +bootm ramdisk +bootm prep +run design_overlays +bootm go diff --git a/board/microchip/mpfs_icicle/uboot-fragment-rootfs.config b/board/microchip/mpfs_icicle/uboot-fragment-rootfs.config index e2a5eb94385..47f4c35ea43 100644 --- a/board/microchip/mpfs_icicle/uboot-fragment-rootfs.config +++ b/board/microchip/mpfs_icicle/uboot-fragment-rootfs.config @@ -1,3 +1,4 @@ CONFIG_USE_BOOTARGS=y CONFIG_BOOTARGS="root=/dev/mmcblk0p3 rootwait uio_pdrv_genirq.of_id=generic-uio" CONFIG_MPFS_PRIORITISE_QSPI_BOOT=n +CONFIG_OF_BOARD=y diff --git a/board/olimex/a10_olinuxino/boot.cmd b/board/olimex/a10_olinuxino/boot.cmd deleted file mode 120000 index 612c745500b..00000000000 --- a/board/olimex/a10_olinuxino/boot.cmd +++ /dev/null @@ -1 +0,0 @@ -../a20_olinuxino/boot.cmd \ No newline at end of file diff --git a/board/freescale/imx91frdm/patches/linux-headers/linux-headers.hash b/board/olimex/a10_olinuxino/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/freescale/imx91frdm/patches/linux-headers/linux-headers.hash rename to board/olimex/a10_olinuxino/patches/linux-headers/linux-headers.hash diff --git a/board/olimex/a10_olinuxino/patches/linux/linux.hash b/board/olimex/a10_olinuxino/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/olimex/a10_olinuxino/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/olimex/a10_olinuxino/patches/uboot/uboot.hash b/board/olimex/a10_olinuxino/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/olimex/a10_olinuxino/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/olimex/a10_olinuxino/post-build.sh b/board/olimex/a10_olinuxino/post-build.sh deleted file mode 120000 index b3468960242..00000000000 --- a/board/olimex/a10_olinuxino/post-build.sh +++ /dev/null @@ -1 +0,0 @@ -../a20_olinuxino/post-build.sh \ No newline at end of file diff --git a/board/olimex/a10_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf b/board/olimex/a10_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf new file mode 100644 index 00000000000..24a3e18b5c7 --- /dev/null +++ b/board/olimex/a10_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf @@ -0,0 +1,4 @@ +label A10-Olinuxino + kernel /boot/zImage + fdtdir /boot + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} diff --git a/board/olimex/a13_olinuxino/boot.cmd b/board/olimex/a13_olinuxino/boot.cmd deleted file mode 100644 index 4dd1c7b754a..00000000000 --- a/board/olimex/a13_olinuxino/boot.cmd +++ /dev/null @@ -1,7 +0,0 @@ -setenv bootargs console=ttyS0,115200 earlyprintk root=/dev/mmcblk0p2 rootwait - -mmc dev 0 -fatload mmc 0 $kernel_addr_r zImage -fatload mmc 0 $fdt_addr_r sun5i-a13-olinuxino.dtb - -bootz $kernel_addr_r - $fdt_addr_r diff --git a/board/olimex/a13_olinuxino/genimage.cfg b/board/olimex/a13_olinuxino/genimage.cfg index 4eb14eb520f..92c86775456 100644 --- a/board/olimex/a13_olinuxino/genimage.cfg +++ b/board/olimex/a13_olinuxino/genimage.cfg @@ -1,15 +1,3 @@ -image boot.vfat { - vfat { - files = { - "zImage", - "sun5i-a13-olinuxino.dtb", - "boot.scr" - } - } - - size = 64M -} - image sdcard.img { hdimage { } @@ -21,12 +9,6 @@ image sdcard.img { size = 1016K # 1MB - 8KB } - partition boot { - partition-type = 0xC - bootable = "true" - image = "boot.vfat" - } - partition rootfs { partition-type = 0x83 image = "rootfs.ext4" diff --git a/board/freescale/imx93frdm/patches/linux-headers/linux-headers.hash b/board/olimex/a13_olinuxino/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/freescale/imx93frdm/patches/linux-headers/linux-headers.hash rename to board/olimex/a13_olinuxino/patches/linux-headers/linux-headers.hash diff --git a/board/olimex/a13_olinuxino/patches/linux/linux.hash b/board/olimex/a13_olinuxino/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/olimex/a13_olinuxino/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/olimex/a13_olinuxino/patches/uboot/uboot.hash b/board/olimex/a13_olinuxino/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/olimex/a13_olinuxino/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/olimex/a13_olinuxino/post-build.sh b/board/olimex/a13_olinuxino/post-build.sh deleted file mode 100755 index aa2a76bddec..00000000000 --- a/board/olimex/a13_olinuxino/post-build.sh +++ /dev/null @@ -1,7 +0,0 @@ -#!/bin/sh - -MKIMAGE=$HOST_DIR/bin/mkimage - -$MKIMAGE -A arm -O linux -T script -C none \ - -d board/olimex/a13_olinuxino/boot.cmd \ - ${BINARIES_DIR}/boot.scr diff --git a/board/olimex/a13_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf b/board/olimex/a13_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf new file mode 100644 index 00000000000..f852b75a443 --- /dev/null +++ b/board/olimex/a13_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf @@ -0,0 +1,4 @@ +label A13-Olinuxino + kernel /boot/zImage + fdtdir /boot + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} diff --git a/board/olimex/a20_olinuxino/boot.cmd b/board/olimex/a20_olinuxino/boot.cmd deleted file mode 100644 index 44d9239a947..00000000000 --- a/board/olimex/a20_olinuxino/boot.cmd +++ /dev/null @@ -1,5 +0,0 @@ -setenv bootargs console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} -ext4load mmc 0 0x49000000 /boot/${fdtfile} -ext4load mmc 0 0x46000000 /boot/zImage -env set fdt_high ffffffff -bootz 0x46000000 - 0x49000000 diff --git a/board/olimex/a20_olinuxino/patches/linux/linux.hash b/board/olimex/a20_olinuxino/patches/linux/linux.hash index 52688f83e80..f83883b936d 100644 --- a/board/olimex/a20_olinuxino/patches/linux/linux.hash +++ b/board/olimex/a20_olinuxino/patches/linux/linux.hash @@ -1,2 +1,2 @@ -# Locally computed -sha256 c435bd74d1c21fc5a950781a50d78bae2b93944144694843359948ad3afc72a5 linux-6.12.50.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/olimex/a20_olinuxino/patches/uboot/uboot.hash b/board/olimex/a20_olinuxino/patches/uboot/uboot.hash index a2725383c93..60971ee74f0 100644 --- a/board/olimex/a20_olinuxino/patches/uboot/uboot.hash +++ b/board/olimex/a20_olinuxino/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally computed -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/olimex/a20_olinuxino/post-build.sh b/board/olimex/a20_olinuxino/post-build.sh deleted file mode 100755 index d3f612f8118..00000000000 --- a/board/olimex/a20_olinuxino/post-build.sh +++ /dev/null @@ -1,3 +0,0 @@ -#!/bin/sh - -cp $BINARIES_DIR/boot.scr $TARGET_DIR/boot/boot.scr diff --git a/board/olimex/a20_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf b/board/olimex/a20_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf index 358bda056bf..d74fcb0a753 100644 --- a/board/olimex/a20_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf +++ b/board/olimex/a20_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf @@ -1,4 +1,4 @@ -label Olinuxino +label A20-Olinuxino kernel /boot/zImage fdtdir /boot - append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 drm_kms_helper.drm_leak_fbdev_smem=1 drm_kms_helper.drm_fbdev_overalloc=200 ${extra} + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} diff --git a/board/olimex/a20_olinuxino/rootfs_overlay_mali/boot/extlinux/extlinux.conf b/board/olimex/a20_olinuxino/rootfs_overlay_mali/boot/extlinux/extlinux.conf new file mode 100644 index 00000000000..358bda056bf --- /dev/null +++ b/board/olimex/a20_olinuxino/rootfs_overlay_mali/boot/extlinux/extlinux.conf @@ -0,0 +1,4 @@ +label Olinuxino + kernel /boot/zImage + fdtdir /boot + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 drm_kms_helper.drm_leak_fbdev_smem=1 drm_kms_helper.drm_fbdev_overalloc=200 ${extra} diff --git a/board/olimex/a33_olinuxino/boot.cmd b/board/olimex/a33_olinuxino/boot.cmd deleted file mode 100644 index 44d9239a947..00000000000 --- a/board/olimex/a33_olinuxino/boot.cmd +++ /dev/null @@ -1,5 +0,0 @@ -setenv bootargs console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} -ext4load mmc 0 0x49000000 /boot/${fdtfile} -ext4load mmc 0 0x46000000 /boot/zImage -env set fdt_high ffffffff -bootz 0x46000000 - 0x49000000 diff --git a/board/friendlyarm/nanopi-neo/patches/linux-headers/linux-headers.hash b/board/olimex/a33_olinuxino/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/friendlyarm/nanopi-neo/patches/linux-headers/linux-headers.hash rename to board/olimex/a33_olinuxino/patches/linux-headers/linux-headers.hash diff --git a/board/olimex/a33_olinuxino/patches/linux/linux.hash b/board/olimex/a33_olinuxino/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/olimex/a33_olinuxino/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/olimex/a33_olinuxino/patches/uboot/uboot.hash b/board/olimex/a33_olinuxino/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/olimex/a33_olinuxino/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/olimex/a33_olinuxino/post-build.sh b/board/olimex/a33_olinuxino/post-build.sh deleted file mode 100755 index b418120652d..00000000000 --- a/board/olimex/a33_olinuxino/post-build.sh +++ /dev/null @@ -1,2 +0,0 @@ -#!/bin/sh -cp $BINARIES_DIR/boot.scr $TARGET_DIR/boot/boot.scr diff --git a/board/olimex/a33_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf b/board/olimex/a33_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf new file mode 100644 index 00000000000..f852b75a443 --- /dev/null +++ b/board/olimex/a33_olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf @@ -0,0 +1,4 @@ +label A13-Olinuxino + kernel /boot/zImage + fdtdir /boot + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} diff --git a/board/olimex/a64-olinuxino/boot.cmd b/board/olimex/a64-olinuxino/boot.cmd deleted file mode 100644 index 28ed6d9dc9a..00000000000 --- a/board/olimex/a64-olinuxino/boot.cmd +++ /dev/null @@ -1,6 +0,0 @@ -setenv bootargs console=ttyS0,115200 earlyprintk root=/dev/mmcblk0p2 rootwait - -fatload mmc 0 $kernel_addr_r Image -fatload mmc 0 $fdt_addr_r sun50i-a64-olinuxino.dtb - -booti $kernel_addr_r - $fdt_addr_r diff --git a/board/olimex/a64-olinuxino/genimage.cfg b/board/olimex/a64-olinuxino/genimage.cfg index ac59e915d9b..f6adbb18818 100644 --- a/board/olimex/a64-olinuxino/genimage.cfg +++ b/board/olimex/a64-olinuxino/genimage.cfg @@ -1,15 +1,3 @@ -image boot.vfat { - vfat { - files = { - "Image", - "sun50i-a64-olinuxino.dtb", - "boot.scr" - } - } - - size = 64M -} - image sdcard.img { hdimage { } @@ -21,12 +9,6 @@ image sdcard.img { size = 1032K # 1MB - 8KB + 16KB(GPT) } - partition boot { - partition-type = 0xC - bootable = "true" - image = "boot.vfat" - } - partition rootfs { partition-type = 0x83 image = "rootfs.ext4" diff --git a/board/pine64/rockpro64-ebbr/patches/linux-headers/linux-headers.hash b/board/olimex/a64-olinuxino/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/pine64/rockpro64-ebbr/patches/linux-headers/linux-headers.hash rename to board/olimex/a64-olinuxino/patches/linux-headers/linux-headers.hash diff --git a/board/olimex/a64-olinuxino/patches/linux/linux.hash b/board/olimex/a64-olinuxino/patches/linux/linux.hash new file mode 100644 index 00000000000..f83883b936d --- /dev/null +++ b/board/olimex/a64-olinuxino/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/olimex/a64-olinuxino/patches/uboot/uboot.hash b/board/olimex/a64-olinuxino/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/olimex/a64-olinuxino/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/olimex/a64-olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf b/board/olimex/a64-olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf new file mode 100644 index 00000000000..6a5a0886665 --- /dev/null +++ b/board/olimex/a64-olinuxino/rootfs_overlay/boot/extlinux/extlinux.conf @@ -0,0 +1,4 @@ +label A64-Olinuxino + kernel /boot/zImage + fdtdir /boot + append console=ttyS0,115200 root=/dev/mmcblk0p1 rootwait panic=10 ${extra} diff --git a/board/openblocks/a6/patches/linux/linux.hash b/board/openblocks/a6/patches/linux/linux.hash index b207306a2b1..aa432012b03 100644 --- a/board/openblocks/a6/patches/linux/linux.hash +++ b/board/openblocks/a6/patches/linux/linux.hash @@ -1,2 +1,3 @@ # Locally calculated sha256 0820fdb7971c6974338081c11fbf2dc869870501e7bdcac4d0ed58ba1f57b61c linux-4.14.336.tar.xz +sha256 af8067302947c01fd9eee72befa54c7e3ef8a48fecde7fd71277f2290b2bf0f7 COPYING diff --git a/board/pc/linux.config b/board/pc/linux.config index 43b15c94be4..cbc4f5a6b0e 100644 --- a/board/pc/linux.config +++ b/board/pc/linux.config @@ -5,6 +5,7 @@ CONFIG_SMP=y CONFIG_HYPERVISOR_GUEST=y CONFIG_PARAVIRT=y CONFIG_EFI=y +CONFIG_EFI_STUB=y CONFIG_NET=y CONFIG_PACKET=y CONFIG_UNIX=y diff --git a/board/pine64/pine64/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/pine64/pine64/patches/arm-trusted-firmware/arm-trusted-firmware.hash new file mode 100644 index 00000000000..649ae8df44b --- /dev/null +++ b/board/pine64/pine64/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -0,0 +1,3 @@ +# Locally calculated +sha256 3ab7e90d6fc3364815ad7770d7aa7af9cfd68edde43da7123f5f38f80e034c44 arm-trusted-firmware-lts-v2.12.1-git4.tar.gz +sha256 b2c79635797bafcde84c6edadadde290b9d5e05deb3ea16a847210fd2ca83669 docs/license.rst diff --git a/board/pine64/pine64/patches/linux/linux.hash b/board/pine64/pine64/patches/linux/linux.hash new file mode 100644 index 00000000000..e810c7aa768 --- /dev/null +++ b/board/pine64/pine64/patches/linux/linux.hash @@ -0,0 +1,7 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 067dadd445578284ea6158f312f7970d8940fed3e094dbe49cff66d188d3bda4 linux-6.18.32.tar.xz + +# Locally calculated +sha256 fb5a425bd3b3cd6071a3a9aff9909a859e7c1158d54d32e07658398cd67eb6a0 COPYING +sha256 8780e78a1a737e127f25a65f6d95269bffd36158dc261114de7859b490bfc5aa LICENSES/preferred/GPL-2.0 +sha256 8e378ab93586eb55135d3bc119cce787f7324f48394777d00c34fa3d0be3303f LICENSES/exceptions/Linux-syscall-note diff --git a/board/pine64/pine64/patches/uboot/uboot.hash b/board/pine64/pine64/patches/uboot/uboot.hash new file mode 100644 index 00000000000..d20ea615768 --- /dev/null +++ b/board/pine64/pine64/patches/uboot/uboot.hash @@ -0,0 +1,3 @@ +# Locally calculated +sha256 ac7c04b8b7004923b00a4e5d6699c5df4d21233bac9fda690d8cfbc209fff2fd u-boot-2026.04.tar.bz2 +sha256 8177f97513213526df2cf6184d8ff986c675afb514d4e68a404010521b880643 Licenses/gpl-2.0.txt diff --git a/board/pine64/pinecube/patches/linux/linux.hash b/board/pine64/pinecube/patches/linux/linux.hash new file mode 100644 index 00000000000..788483030c1 --- /dev/null +++ b/board/pine64/pinecube/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 6f16ff302599f6fe34742890322cf0775703105fbd8767449682fca6af0fb782 linux-6.18.33.tar.xz diff --git a/board/pine64/pinecube/patches/uboot/uboot.hash b/board/pine64/pinecube/patches/uboot/uboot.hash new file mode 100644 index 00000000000..36322a6a904 --- /dev/null +++ b/board/pine64/pinecube/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 ac7c04b8b7004923b00a4e5d6699c5df4d21233bac9fda690d8cfbc209fff2fd u-boot-2026.04.tar.bz2 diff --git a/board/pine64/rockpro64-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/pine64/rockpro64-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash index b5898cba3f9..0bf70b55422 100644 --- a/board/pine64/rockpro64-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/pine64/rockpro64-ebbr/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 06b35a3596b8417bf66f7bfdd7acd181bcb53fc36dc13216227b5cae154e0219 arm-trusted-firmware-v2.12-git4.tar.gz +sha256 6fd749e53c455aec3418288630544e7552bbffab4442ddc48b20ebef9aee87ff arm-trusted-firmware-v2.14-git4.tar.gz diff --git a/board/pine64/rockpro64-ebbr/patches/linux/linux.hash b/board/pine64/rockpro64-ebbr/patches/linux/linux.hash index 7635b8ccb37..5810d3d580f 100644 --- a/board/pine64/rockpro64-ebbr/patches/linux/linux.hash +++ b/board/pine64/rockpro64-ebbr/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 beb902a5f69d9e57710112203db38111dad6d30556ea8ce389284c8077fe944d linux-6.12.18.tar.xz +sha256 f850139ca5f79c1bf6bb8b32f92e212aadca97bdaef8a83a7cf4ac4d6a525fab linux-6.18.4.tar.xz diff --git a/board/pine64/rockpro64-ebbr/patches/optee-client/optee-client.hash b/board/pine64/rockpro64-ebbr/patches/optee-client/optee-client.hash index e1f486e7a5e..6c61615dbe6 100644 --- a/board/pine64/rockpro64-ebbr/patches/optee-client/optee-client.hash +++ b/board/pine64/rockpro64-ebbr/patches/optee-client/optee-client.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 ac6dc2c0c253ea228ea230e537211a45475771050faf4e66fe64321de3a0a652 optee-client-4.5.0.tar.gz +sha256 464b3bf5bc4a61830357dbf81a0e5b89414d3bca1c2a752570cb0e40d2f1e637 optee-client-4.8.0.tar.gz diff --git a/board/pine64/rockpro64-ebbr/patches/optee-os/optee-os.hash b/board/pine64/rockpro64-ebbr/patches/optee-os/optee-os.hash index 3e981c142d8..80b30de9ead 100644 --- a/board/pine64/rockpro64-ebbr/patches/optee-os/optee-os.hash +++ b/board/pine64/rockpro64-ebbr/patches/optee-os/optee-os.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 43c389f0505e8bc21d6fbaa8ea83ec67d1746ed14a537e3f505cd0e5b4cc2db9 optee-os-4.5.0.tar.gz +sha256 5222cd553f5edb69ae4ec7cb99b2bfec2c47a47c0be1865b49744701918e8b4d optee-os-4.8.0.tar.gz diff --git a/board/pine64/rockpro64-ebbr/patches/uboot/uboot.hash b/board/pine64/rockpro64-ebbr/patches/uboot/uboot.hash index 50674352d71..b6a925ea4e8 100644 --- a/board/pine64/rockpro64-ebbr/patches/uboot/uboot.hash +++ b/board/pine64/rockpro64-ebbr/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 cdef7d507c93f1bbd9f015ea9bc21fa074268481405501945abc6f854d5b686f u-boot-2025.01.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/pine64/rockpro64/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/pine64/rockpro64/patches/arm-trusted-firmware/arm-trusted-firmware.hash index 8b77e1f1653..0bf70b55422 100644 --- a/board/pine64/rockpro64/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ b/board/pine64/rockpro64/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 c0f23ccc71c49989e9ad238acf334473c17b7c88f79a20c829c3d443e3794a22 arm-trusted-firmware-v2.11-git4.tar.gz +sha256 6fd749e53c455aec3418288630544e7552bbffab4442ddc48b20ebef9aee87ff arm-trusted-firmware-v2.14-git4.tar.gz diff --git a/board/pine64/rockpro64/patches/linux/linux.hash b/board/pine64/rockpro64/patches/linux/linux.hash index 396c18dd5c7..5810d3d580f 100644 --- a/board/pine64/rockpro64/patches/linux/linux.hash +++ b/board/pine64/rockpro64/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://cdn.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 55e5bcbc68d66776fc46896291f0a24844beb57817345a854d65e3d055fa423e linux-6.10.14.tar.xz +sha256 f850139ca5f79c1bf6bb8b32f92e212aadca97bdaef8a83a7cf4ac4d6a525fab linux-6.18.4.tar.xz diff --git a/board/pine64/rockpro64/patches/uboot/uboot.hash b/board/pine64/rockpro64/patches/uboot/uboot.hash index 904fa56c02a..b6a925ea4e8 100644 --- a/board/pine64/rockpro64/patches/uboot/uboot.hash +++ b/board/pine64/rockpro64/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b28daf4ac17e43156363078bf510297584137f6df50fced9b12df34f61a92fb0 u-boot-2024.10.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/pine64/rockpro64/readme.txt b/board/pine64/rockpro64/readme.txt index de86970104d..d2a865670a8 100644 --- a/board/pine64/rockpro64/readme.txt +++ b/board/pine64/rockpro64/readme.txt @@ -20,7 +20,6 @@ output/images ├── rk3399-rockpro64.dtb ├── rootfs.ext2 ├── rootfs.ext4 -> rootfs.ext2 -├── rootfs.tar ├── sdcard.img ├── u-boot.bin └── u-boot.itb diff --git a/board/pine64/star64/genimage.cfg b/board/pine64/star64/genimage.cfg index 74940016f4c..20326710c5c 100644 --- a/board/pine64/star64/genimage.cfg +++ b/board/pine64/star64/genimage.cfg @@ -12,8 +12,8 @@ image sdcard.img { } partition uboot { - image = "opensbi_uboot_payload.img" - partition-type-uuid = 5B193300-FC78-40CD-8002-E86C45580B47 + image = "u-boot.itb" + partition-type-uuid = xbootldr offset = 4M } diff --git a/board/pine64/star64/overlay/boot/extlinux/extlinux.conf b/board/pine64/star64/overlay/boot/extlinux/extlinux.conf index db7cfb7b8b2..4a76fc16242 100644 --- a/board/pine64/star64/overlay/boot/extlinux/extlinux.conf +++ b/board/pine64/star64/overlay/boot/extlinux/extlinux.conf @@ -1,4 +1,4 @@ label star64 kernel /boot/Image devicetree /boot/jh7110-pine64-star64.dtb - append root=/dev/mmcblk1p3 earlycon=sbi + append root=/dev/mmcblk1p3 rootwait earlycon=sbi diff --git a/board/pine64/star64/patches/linux/linux.hash b/board/pine64/star64/patches/linux/linux.hash new file mode 100644 index 00000000000..8549cf10373 --- /dev/null +++ b/board/pine64/star64/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 165ca1c37c4607b90e731996b7c1e3311285167d13deeedf08f3f1f0b9d2541a linux-6.12.57.tar.xz diff --git a/board/pine64/star64/patches/uboot/uboot.hash b/board/pine64/star64/patches/uboot/uboot.hash new file mode 100644 index 00000000000..98a5c53aaf9 --- /dev/null +++ b/board/pine64/star64/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 diff --git a/board/pine64/star64/post-build.sh b/board/pine64/star64/post-build.sh deleted file mode 100755 index ed0a6ebd520..00000000000 --- a/board/pine64/star64/post-build.sh +++ /dev/null @@ -1,9 +0,0 @@ -#!/bin/bash -BOARD_DIR="$CONFIG_DIR"/board/pine64/star64 - -# Add header to the SPL -"$HOST_DIR"/bin/spl_tool -c -f "$BINARIES_DIR"/u-boot-spl.bin - -# Create the u-boot FIT image -cp "$BOARD_DIR"/star64-uboot-fit-image.its "$BINARIES_DIR" -mkimage -f "$BINARIES_DIR"/star64-uboot-fit-image.its -A riscv -O u-boot -T firmware "$BINARIES_DIR"/opensbi_uboot_payload.img diff --git a/board/pine64/star64/star64-uboot-fit-image.its b/board/pine64/star64/star64-uboot-fit-image.its deleted file mode 100644 index 08f603163a9..00000000000 --- a/board/pine64/star64/star64-uboot-fit-image.its +++ /dev/null @@ -1,29 +0,0 @@ -/dts-v1/; - -/ { - description = "U-boot-spl FIT image for JH7110 Pine64 Star64"; - #address-cells = <2>; - - images { - firmware { - description = "u-boot"; - data = /incbin/("fw_payload.bin"); - type = "firmware"; - arch = "riscv"; - os = "u-boot"; - load = <0x0 0x40000000>; - entry = <0x0 0x40000000>; - compression = "none"; - }; - }; - - configurations { - default = "config-1"; - - config-1 { - description = "U-boot-spl FIT config for JH7110 Pine64 Star64"; - firmware = "firmware"; - }; - }; -}; - diff --git a/board/qemu/arm-vexpress-tz/u-boot.config b/board/qemu/arm-vexpress-tz/u-boot.config index 48b1d06fdbb..8633ea18d0e 100644 --- a/board/qemu/arm-vexpress-tz/u-boot.config +++ b/board/qemu/arm-vexpress-tz/u-boot.config @@ -1,5 +1,5 @@ CONFIG_SYS_TEXT_BASE=0x60000000 -CONFIG_BOOTCOMMAND="smhload zImage ${kernel_addr_r} && smhload rootfs.cpio.uboot ${ramdisk_addr_r} && setenv bootargs console=ttyAMA0,115200 earlyprintk=serial,ttyAMA0,115200 && bootz ${kernel_addr_r} ${ramdisk_addr_r} ${fdt_addr}" +CONFIG_BOOTCOMMAND="load hostfs - ${kernel_addr_r} zImage && load hostfs - ${ramdisk_addr_r} rootfs.cpio.uboot && setenv bootargs console=ttyAMA0,115200 earlyprintk=serial,ttyAMA0,115200 && bootz ${kernel_addr_r} ${ramdisk_addr_r} ${fdt_addr}" CONFIG_SEMIHOSTING=y # Drop flash accesses CONFIG_ENV_IS_IN_FLASH=n diff --git a/board/qemu/hppa-b160l/readme.txt b/board/qemu/hppa-b160l/readme.txt new file mode 100644 index 00000000000..052ca9b8483 --- /dev/null +++ b/board/qemu/hppa-b160l/readme.txt @@ -0,0 +1,33 @@ +Introduction +============ + +The qemu_hppa_b160l_defconfig is meant to run Linux on a HP Visualize B160L +PA-RISC Workstation[1], emulated with Qemu. + +Building +======== + + $ make qemu_hppa_b160l_defconfig + $ make + +Generated files under output/images: + +* rootfs.ext4: the root filesystem. +* vmlinux: the Linux kernel. + +Running under Qemu +================== + +Run the emulation with: + + qemu-system-hppa \ + -machine B160L \ + -append "rootwait root=/dev/sda" \ + -hda output/images/rootfs.ext4 \ + -kernel output/images/vmlinux \ + -nographic \ + -smp 2 # qemu_hppa_b160l_defconfig + +The login prompt will appear in the terminal that started Qemu. + +[1] https://www.openpa.net/systems/hp-visualize_b132l_b160l_b180l.html diff --git a/board/qemu/microblazeel-mmu/readme.txt b/board/qemu/microblazeel-mmu/readme.txt index 20fa0072ed1..4d1e6606505 100644 --- a/board/qemu/microblazeel-mmu/readme.txt +++ b/board/qemu/microblazeel-mmu/readme.txt @@ -1,5 +1,5 @@ Run the emulation with: - qemu-system-microblazeel -M petalogix-s3adsp1800 -kernel output/images/linux.bin -serial stdio # qemu_microblazeel_mmu_defconfig + qemu-system-microblaze -M petalogix-s3adsp1800,endianness=little -kernel output/images/linux.bin -serial stdio # qemu_microblazeel_mmu_defconfig The login prompt will appear in the terminal that started Qemu. diff --git a/board/qemu/patches/linux/linux.hash b/board/qemu/patches/linux/linux.hash index 9bcf1f561dd..3c689260bb0 100644 --- a/board/qemu/patches/linux/linux.hash +++ b/board/qemu/patches/linux/linux.hash @@ -1,5 +1,5 @@ -# sha256 locally computed -sha256 e82fe40871743048226987bd349ef107168b15aab90140e872ca4ed470922e25 linux-6.12.47.tar.xz +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 b726a4d15cf9ae06219b56d87820776e34d89fbc137e55fb54a9b9c3015b8f1e linux-6.18.7.tar.xz # sha256 locally computed sha256 a76052c0c71d4025b117dcfc18ca7e189ac495a7645fa98c1bdaddca15cce815 xtensa_dc233c.tar.gz diff --git a/board/qemu/patches/uboot/uboot.hash b/board/qemu/patches/uboot/uboot.hash index 7762ff3f8f9..594d7ebeae6 100644 --- a/board/qemu/patches/uboot/uboot.hash +++ b/board/qemu/patches/uboot/uboot.hash @@ -1,3 +1,3 @@ # Locally calculated -sha256 68e065413926778e276ec3abd28bb32fa82abaa4a6898d570c1f48fbdb08bcd0 u-boot-2022.04.tar.bz2 sha256 b99611f1ed237bf3541bdc8434b68c96a6e05967061f992443cb30aabebef5b3 u-boot-2024.01.tar.bz2 +sha256 ac7c04b8b7004923b00a4e5d6699c5df4d21233bac9fda690d8cfbc209fff2fd u-boot-2026.04.tar.bz2 diff --git a/board/qemu/ppc64le-powernv10/readme.txt b/board/qemu/ppc64le-powernv10/readme.txt new file mode 100644 index 00000000000..9ac60a2cae2 --- /dev/null +++ b/board/qemu/ppc64le-powernv10/readme.txt @@ -0,0 +1,14 @@ +Run the emulation with: + +qemu-system-ppc64 \ + -M powernv10 \ + -kernel output/images/vmlinux \ + -append "console=hvc0 rootwait root=/dev/nvme0n1" \ + -device nvme,bus=pcie.3,addr=0x0,drive=drive0,serial=1234 \ + -drive file=output/images/rootfs.ext2,if=none,id=drive0,format=raw,cache=none \ + -device e1000e,netdev=net0,mac=C0:FF:EE:00:01:03,bus=pcie.1,addr=0x0 \ + -netdev user,id=net0 \ + -serial mon:stdio \ + -nographic # qemu_ppc64le_powernv10_defconfig + +The login prompt will appear in the terminal window. diff --git a/board/qemu/ppc64le-powernv11/readme.txt b/board/qemu/ppc64le-powernv11/readme.txt new file mode 100644 index 00000000000..368bad0264c --- /dev/null +++ b/board/qemu/ppc64le-powernv11/readme.txt @@ -0,0 +1,14 @@ +Run the emulation with: + +qemu-system-ppc64 \ + -M powernv11 \ + -kernel output/images/vmlinux \ + -append "console=hvc0 rootwait root=/dev/nvme0n1" \ + -device nvme,bus=pcie.3,addr=0x0,drive=drive0,serial=1234 \ + -drive file=output/images/rootfs.ext2,if=none,id=drive0,format=raw,cache=none \ + -device e1000e,netdev=net0,mac=C0:FF:EE:00:01:03,bus=pcie.1,addr=0x0 \ + -netdev user,id=net0 \ + -serial mon:stdio \ + -nographic # qemu_ppc64le_powernv11_defconfig + +The login prompt will appear in the terminal window. diff --git a/board/qemu/x86_64-efi/linux.config b/board/qemu/x86_64-efi/linux.config index 9362b7ecb51..4f5f0b386d2 100644 --- a/board/qemu/x86_64-efi/linux.config +++ b/board/qemu/x86_64-efi/linux.config @@ -3,6 +3,7 @@ CONFIG_SMP=y CONFIG_HYPERVISOR_GUEST=y CONFIG_PARAVIRT=y CONFIG_EFI=y +CONFIG_EFI_STUB=y # CONFIG_GCC_PLUGINS is not set CONFIG_MODULES=y CONFIG_MODULE_UNLOAD=y diff --git a/board/qemu/xtensa-lx60/patches/linux/0001-xtensa-disable-SSP-when-needed.patch b/board/qemu/xtensa-lx60/patches/linux/0001-xtensa-disable-SSP-when-needed.patch new file mode 100644 index 00000000000..cc193481400 --- /dev/null +++ b/board/qemu/xtensa-lx60/patches/linux/0001-xtensa-disable-SSP-when-needed.patch @@ -0,0 +1,36 @@ +From 5358d4e20801ffbb1c0834eab36c003049d4055f Mon Sep 17 00:00:00 2001 +From: Romain Naour +Date: Sun, 16 Aug 2026 22:27:28 +0200 +Subject: [PATCH] xtensa: disable SSP when needed + +-fno-stack-protector must be passed to avoid linking errors related to +undefined references to '__stack_chk_guard' and '__stack_chk_fail' if +toolchain enforces -fstack-protector. + +Fixes: +https://gitlab.com/buildroot.org/toolchains-builder/-/jobs/15876432953 + +Upstream: Submitted to Max Filippov via email for initial review. + +Cc: Max Filippov +Signed-off-by: Romain Naour +--- + arch/xtensa/boot/Makefile | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/arch/xtensa/boot/Makefile b/arch/xtensa/boot/Makefile +index d8b0fadf429a9..dfb758cdb2756 100644 +--- a/arch/xtensa/boot/Makefile ++++ b/arch/xtensa/boot/Makefile +@@ -9,7 +9,7 @@ + + + # KBUILD_CFLAGS used when building rest of boot (takes effect recursively) +-KBUILD_CFLAGS += -fno-builtin ++KBUILD_CFLAGS += -fno-builtin -fno-stack-protector + + subdir-y := lib + targets += vmlinux.bin vmlinux.bin.gz +-- +2.55.0 + diff --git a/board/radxa/rock4se/patches/linux/linux.hash b/board/radxa/rock4se/patches/linux/linux.hash index 8ad0e7d8c00..f83883b936d 100644 --- a/board/radxa/rock4se/patches/linux/linux.hash +++ b/board/radxa/rock4se/patches/linux/linux.hash @@ -1,2 +1,2 @@ # From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc -sha256 e8a099182562aecff781de72ce769461e706d97af42d740dff20eb450dd5771e linux-6.12.28.tar.xz +sha256 37f0c5d5c242c1d604e87d48f08795e861a5a85f725b4ca11d0a538f12ff8cff linux-6.18.8.tar.xz diff --git a/board/radxa/rock4se/patches/uboot/uboot.hash b/board/radxa/rock4se/patches/uboot/uboot.hash index 80ea21b7cb4..b6a925ea4e8 100644 --- a/board/radxa/rock4se/patches/uboot/uboot.hash +++ b/board/radxa/rock4se/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 439d3bef296effd54130be6a731c5b118be7fddd7fcc663ccbc5fb18294d8718 u-boot-2025.04.tar.bz2 +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/raspberrypi/patches/linux/linux.hash b/board/raspberrypi/patches/linux/linux.hash index 51b0684b20e..fedfd9d4c97 100644 --- a/board/raspberrypi/patches/linux/linux.hash +++ b/board/raspberrypi/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 afc44e2899a3c32a1b968272a5816e5c90bea346341153807553396621e65dde linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz +sha256 7c31df8061aae748a6e72417bfe743a54198fb5bdc96e229ecc605dc621d32ef linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz diff --git a/board/sheevaplug/patches/linux/linux.hash b/board/sheevaplug/patches/linux/linux.hash index b207306a2b1..aa432012b03 100644 --- a/board/sheevaplug/patches/linux/linux.hash +++ b/board/sheevaplug/patches/linux/linux.hash @@ -1,2 +1,3 @@ # Locally calculated sha256 0820fdb7971c6974338081c11fbf2dc869870501e7bdcac4d0ed58ba1f57b61c linux-4.14.336.tar.xz +sha256 af8067302947c01fd9eee72befa54c7e3ef8a48fecde7fd71277f2290b2bf0f7 COPYING diff --git a/board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh b/board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh index 4fcce615007..2c5b6be098a 100755 --- a/board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh +++ b/board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh @@ -1,4 +1,5 @@ #!/bin/sh +set -eu # Busybox is built without network support sed -i '/hostname/d' ${TARGET_DIR}/etc/inittab diff --git a/board/stmicroelectronics/common/stm32mp1xx/patches/linux/linux.hash b/board/stmicroelectronics/common/stm32mp1xx/patches/linux/linux.hash index 4ac46f027b2..08483293cf6 100644 --- a/board/stmicroelectronics/common/stm32mp1xx/patches/linux/linux.hash +++ b/board/stmicroelectronics/common/stm32mp1xx/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 663507accae673afcf4e210b4ae8d4352e61d926202e5da3f04bf71ca1d2c0b5 linux-6.12.53.tar.xz +sha256 a9e8c51fcb1e695d1d35dde5886cba579cb6f29c9646c5889f39d63841d4b9f6 linux-6.12.95.tar.xz diff --git a/board/stmicroelectronics/common/stm32mp1xx/patches/optee-client/optee-client.hash b/board/stmicroelectronics/common/stm32mp1xx/patches/optee-client/optee-client.hash index 5423bf93a58..379bbfea65e 100644 --- a/board/stmicroelectronics/common/stm32mp1xx/patches/optee-client/optee-client.hash +++ b/board/stmicroelectronics/common/stm32mp1xx/patches/optee-client/optee-client.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 a9a91bdb433df795c87a6d15198effbd648e3671ae611f2a3f8b41229d61cce0 optee-client-4.3.0.tar.gz +sha256 2ef152f25b682e59c3684d6d73d7c5a138495615f6b045e95266eb3d0bc0d04e optee-client-4.9.0.tar.gz diff --git a/board/stmicroelectronics/common/stm32mp1xx/patches/optee-os/optee-os.hash b/board/stmicroelectronics/common/stm32mp1xx/patches/optee-os/optee-os.hash index 2e12a5cdea7..3f5c58fcffa 100644 --- a/board/stmicroelectronics/common/stm32mp1xx/patches/optee-os/optee-os.hash +++ b/board/stmicroelectronics/common/stm32mp1xx/patches/optee-os/optee-os.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 390b271905c828d6def9fa6a77bbaa425f3b434d733c8eb18f582ccbc6896096 optee-os-4.3.0.tar.gz +sha256 9400e16c45bfa45f15585b2c933b86c449e7de05def0ecaaa62a4f38973a3a45 optee-os-4.9.0.tar.gz diff --git a/board/stmicroelectronics/common/stm32mp1xx/patches/uboot/uboot.hash b/board/stmicroelectronics/common/stm32mp1xx/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/stmicroelectronics/common/stm32mp1xx/patches/uboot/uboot.hash +++ b/board/stmicroelectronics/common/stm32mp1xx/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/stmicroelectronics/stm32f429-disco/patches/linux/linux.hash b/board/stmicroelectronics/stm32f429-disco/patches/linux/linux.hash index 6450f4b2d48..be1c34bc237 100644 --- a/board/stmicroelectronics/stm32f429-disco/patches/linux/linux.hash +++ b/board/stmicroelectronics/stm32f429-disco/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 c29387aeee085fbcbd91236224b9df805063bac43615e75cea2c6b29604a5c73 linux-6.1.155.tar.xz +sha256 f6529bfe1a457adab69156fb7fa2232cc203eb63f5e46210f9953d6fc9f70a30 linux-6.1.177.tar.xz diff --git a/board/stmicroelectronics/stm32f469-disco/patches/linux/linux.hash b/board/stmicroelectronics/stm32f469-disco/patches/linux/linux.hash index 68e85f8a21d..b4a6bbd3f78 100644 --- a/board/stmicroelectronics/stm32f469-disco/patches/linux/linux.hash +++ b/board/stmicroelectronics/stm32f469-disco/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 9c4efdd7ee550d524c017b5dae27725374526311e983661850cd880af671cb2a linux-5.15.186.tar.xz +sha256 beb954e53617928b751944a89b6670bf9a9c7177c641b24c5dba504e46f1d961 linux-5.15.211.tar.xz diff --git a/board/stmicroelectronics/stm32f469-disco/patches/uboot/uboot.hash b/board/stmicroelectronics/stm32f469-disco/patches/uboot/uboot.hash index 440526977bd..ff6e4ed2e2f 100644 --- a/board/stmicroelectronics/stm32f469-disco/patches/uboot/uboot.hash +++ b/board/stmicroelectronics/stm32f469-disco/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 0f933f6c5a426895bf306e93e6ac53c60870e4b54cda56d95211bec99e63bec7 u-boot-2025.07.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/stmicroelectronics/stm32f469-disco/post-build.sh b/board/stmicroelectronics/stm32f469-disco/post-build.sh index 03e9dcae821..74c59fdb72d 100755 --- a/board/stmicroelectronics/stm32f469-disco/post-build.sh +++ b/board/stmicroelectronics/stm32f469-disco/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname "$0")" install -m 0644 -D "${BOARD_DIR}"/extlinux.conf "${TARGET_DIR}"/boot/extlinux/extlinux.conf diff --git a/board/stmicroelectronics/stm32f469-disco/readme.txt b/board/stmicroelectronics/stm32f469-disco/readme.txt index 99d26ccb66f..6d46f7c31ae 100644 --- a/board/stmicroelectronics/stm32f469-disco/readme.txt +++ b/board/stmicroelectronics/stm32f469-disco/readme.txt @@ -20,7 +20,7 @@ It will flash the U-boot bootloader. Creating SD card ---------------- -Buildroot prepares an"sdcard.img" image in the output/images/ directory, +Buildroot prepares an "sdcard.img" image in the output/images/ directory, ready to be dumped on a SD card. Launch the following command as root: dd if=output/images/sdcard.img of=/dev/ diff --git a/board/stmicroelectronics/stm32f746-disco/patches/linux/linux.hash b/board/stmicroelectronics/stm32f746-disco/patches/linux/linux.hash index 27549bda934..b4a6bbd3f78 100644 --- a/board/stmicroelectronics/stm32f746-disco/patches/linux/linux.hash +++ b/board/stmicroelectronics/stm32f746-disco/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 348d6faada05fd4684450cd7c4e666c3c98cdb96f2309b1520c9a92a378c267e linux-5.15.194.tar.xz +sha256 beb954e53617928b751944a89b6670bf9a9c7177c641b24c5dba504e46f1d961 linux-5.15.211.tar.xz diff --git a/board/stmicroelectronics/stm32f746-disco/patches/uboot/uboot.hash b/board/stmicroelectronics/stm32f746-disco/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/stmicroelectronics/stm32f746-disco/patches/uboot/uboot.hash +++ b/board/stmicroelectronics/stm32f746-disco/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/stmicroelectronics/stm32f746-disco/post-build.sh b/board/stmicroelectronics/stm32f746-disco/post-build.sh index 03e9dcae821..74c59fdb72d 100755 --- a/board/stmicroelectronics/stm32f746-disco/post-build.sh +++ b/board/stmicroelectronics/stm32f746-disco/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname "$0")" install -m 0644 -D "${BOARD_DIR}"/extlinux.conf "${TARGET_DIR}"/boot/extlinux/extlinux.conf diff --git a/board/stmicroelectronics/stm32f769-disco/patches/linux/linux.hash b/board/stmicroelectronics/stm32f769-disco/patches/linux/linux.hash index 27549bda934..b4a6bbd3f78 100644 --- a/board/stmicroelectronics/stm32f769-disco/patches/linux/linux.hash +++ b/board/stmicroelectronics/stm32f769-disco/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 348d6faada05fd4684450cd7c4e666c3c98cdb96f2309b1520c9a92a378c267e linux-5.15.194.tar.xz +sha256 beb954e53617928b751944a89b6670bf9a9c7177c641b24c5dba504e46f1d961 linux-5.15.211.tar.xz diff --git a/board/stmicroelectronics/stm32f769-disco/patches/uboot/uboot.hash b/board/stmicroelectronics/stm32f769-disco/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/stmicroelectronics/stm32f769-disco/patches/uboot/uboot.hash +++ b/board/stmicroelectronics/stm32f769-disco/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/stmicroelectronics/stm32f769-disco/post-build.sh b/board/stmicroelectronics/stm32f769-disco/post-build.sh index 45100509411..293bf30cb3f 100755 --- a/board/stmicroelectronics/stm32f769-disco/post-build.sh +++ b/board/stmicroelectronics/stm32f769-disco/post-build.sh @@ -1,4 +1,6 @@ #!/bin/sh +set -eu + BOARD_DIR="$(dirname "$0")" # Kernel is built without devpts support diff --git a/board/stmicroelectronics/stm32f769-disco/readme.txt b/board/stmicroelectronics/stm32f769-disco/readme.txt index 8f4f79a8613..5b8fba7099e 100644 --- a/board/stmicroelectronics/stm32f769-disco/readme.txt +++ b/board/stmicroelectronics/stm32f769-disco/readme.txt @@ -20,7 +20,7 @@ It will flash the U-boot bootloader. Creating SD card ---------------- -Buildroot prepares an"sdcard.img" image in the output/images/ directory, +Buildroot prepares an "sdcard.img" image in the output/images/ directory, ready to be dumped on a SD card. Launch the following command as root: dd if=output/images/sdcard.img of=/dev/ diff --git a/board/stmicroelectronics/stm32h747-disco/extlinux.conf b/board/stmicroelectronics/stm32h747-disco/extlinux.conf new file mode 100644 index 00000000000..36f60e346b6 --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/extlinux.conf @@ -0,0 +1,4 @@ +label stm32h747i-disco-buildroot + kernel /boot/zImage + devicetree /boot/stm32h747i-disco.dtb + append console=ttySTM0,115200 root=/dev/mmcblk0p1 rw rootfstype=ext2 rootwait earlyprintk consoleblank=0 ignore_loglevel diff --git a/board/stmicroelectronics/stm32h747-disco/flash_sd.sh b/board/stmicroelectronics/stm32h747-disco/flash_sd.sh new file mode 100755 index 00000000000..6f2e421aba3 --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/flash_sd.sh @@ -0,0 +1,18 @@ +#!/bin/sh + +OUTPUT_DIR=$1 + +if ! test -d "${OUTPUT_DIR}" ; then + echo "ERROR: no output directory specified." + echo "Usage: $0 OUTPUT_DIR" + exit 1 +fi + +"${OUTPUT_DIR}"/host/bin/openocd -f board/stm32h747i-disco.cfg \ + -c "init" \ + -c "reset init" \ + -c "flash probe 0" \ + -c "flash info 0" \ + -c "flash write_image erase ${OUTPUT_DIR}/images/u-boot.bin 0x08000000" \ + -c "reset run" \ + -c "shutdown" diff --git a/board/stmicroelectronics/stm32h747-disco/genimage.cfg b/board/stmicroelectronics/stm32h747-disco/genimage.cfg new file mode 100644 index 00000000000..e911a94e46b --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/genimage.cfg @@ -0,0 +1,10 @@ +image sdcard.img { + hdimage { + } + + partition rootfs { + partition-type = 0x83 + image = "rootfs.ext2" + size = 32M + } +} diff --git a/board/stmicroelectronics/stm32h747-disco/linux-sd.fragment b/board/stmicroelectronics/stm32h747-disco/linux-sd.fragment new file mode 100644 index 00000000000..846229d0d46 --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/linux-sd.fragment @@ -0,0 +1 @@ +# CONFIG_XIP_KERNEL is not set diff --git a/board/stmicroelectronics/stm32h747-disco/patches/linux/linux.hash b/board/stmicroelectronics/stm32h747-disco/patches/linux/linux.hash new file mode 100644 index 00000000000..0daaa94e97f --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 a7a7e3d2ae9d95e74197223a8d4eb5f6be7aac21b6e6de27e9685d001c1f8cb0 linux-6.18.39.tar.xz diff --git a/board/stmicroelectronics/stm32h747-disco/patches/uboot/uboot.hash b/board/stmicroelectronics/stm32h747-disco/patches/uboot/uboot.hash new file mode 100644 index 00000000000..ff6e4ed2e2f --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/stmicroelectronics/stm32h747-disco/post-build.sh b/board/stmicroelectronics/stm32h747-disco/post-build.sh new file mode 100755 index 00000000000..293bf30cb3f --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/post-build.sh @@ -0,0 +1,9 @@ +#!/bin/sh +set -eu + +BOARD_DIR="$(dirname "$0")" + +# Kernel is built without devpts support +sed -i '/^devpts/d' "${TARGET_DIR}"/etc/fstab + +install -m 0644 -D "${BOARD_DIR}"/extlinux.conf "${TARGET_DIR}"/boot/extlinux/extlinux.conf diff --git a/board/stmicroelectronics/stm32h747-disco/readme.txt b/board/stmicroelectronics/stm32h747-disco/readme.txt new file mode 100644 index 00000000000..5c565de2112 --- /dev/null +++ b/board/stmicroelectronics/stm32h747-disco/readme.txt @@ -0,0 +1,32 @@ +STM32H747 Discovery +=================== + +This tutorial describes how to use the predefined Buildroot +configuration for the STM32H747 Discovery evaluation platform. + +Building +-------- + + make stm32h747_disco_sd_defconfig + make + +Flashing +-------- + + ./board/stmicroelectronics/stm32h747-disco/flash_sd.sh output/ + +It will flash the U-Boot bootloader. + +Creating SD card +---------------- + +Buildroot prepares an "sdcard.img" image in the output/images/ directory, +ready to be dumped on a SD card. Launch the following command as root: + + dd if=output/images/sdcard.img of=/dev/ + +*** WARNING! This will destroy all the card content. Use with care! *** + +For details about the medium image layout and its content, see the +definition in board/stmicroelectronics/stm32h747-disco/genimage.cfg. + diff --git a/board/technologic/ts4900/genimage.cfg b/board/technologic/ts4900/genimage.cfg deleted file mode 100644 index 7e580eb27b5..00000000000 --- a/board/technologic/ts4900/genimage.cfg +++ /dev/null @@ -1,10 +0,0 @@ -image sdcard.img { - hdimage { - } - - partition rootfs { - partition-type = 0x83 - image = "rootfs.ext2" - size = 256M - } -} diff --git a/board/technologic/ts4900/post-image.sh b/board/technologic/ts4900/post-image.sh deleted file mode 100755 index cb966d883bf..00000000000 --- a/board/technologic/ts4900/post-image.sh +++ /dev/null @@ -1,17 +0,0 @@ -#!/bin/bash -# -# Copyright (C) 2015-2016 Savoir-Faire Linux -# Post image generation script. - -BOARD_DIR="$(dirname $0)" -GENIMAGE_CFG=$BOARD_DIR/genimage.cfg -GENIMAGE_TMP=$BUILD_DIR/.genimage_tmp - -rm -rf $GENIMAGE_TMP - -${HOST_DIR}/bin/genimage \ - --config ${GENIMAGE_CFG} \ - --rootpath $TARGET_DIR \ - --tmppath $GENIMAGE_TMP \ - --inputpath $BINARIES_DIR \ - --outputpath $BINARIES_DIR diff --git a/board/technologic/ts4900/readme.txt b/board/technologic/ts4900/readme.txt deleted file mode 100644 index 121e6397495..00000000000 --- a/board/technologic/ts4900/readme.txt +++ /dev/null @@ -1,52 +0,0 @@ -Technologic Systems TS-4900 -=========================== - -This document explains how to set up a basic Buildroot system for the -Technologic Systems TS-4900 System on Module. - -The TS-4900 is a TS-SOCKET macrocontroller board based on the -Freescale i.MX6 Single or Quad Core ARM Cortex-A9 CPU clocked at -1GHz. The TS-4900 features Gigabit Ethernet, SATA II Port, PCI Express -Bus, high speed USB host and device (OTG), and microSD card. -More details on the board here: - https://docs.embeddedTS.com/TS-4900 - -The TS-4900 is not currently supported by mainline Linux, so a -Technologic Systems Linux is used based on Linux 4.1. -The default U-boot configuration flashed scans the SD card to find the -0x83 partition type, corresponding to the rootfs. Then it will load -both uImage and dts from the /boot directory. -To build the default configuration you only have to: - - $ make ts4900_defconfig - $ make - -The output looks like: -output/images/ -├── imx6q-ts4900.dtb -├── rootfs.ext2 -├── rootfs.tar -├── sdcard.img -└── uImage - -Since both the uImage and the dts are contained in the /boot -directory, the provided post-image script generates an image file -containing only one partition for the rootfs: - - $ fdisk output/images/sdcard.img - Device Boot Start End Blocks Id System -output/images/sdcard.img1 1 524288 262144 83 Linux - -This image can be directly written to an SD card. - - $ sudo dd if=output/images/sdcard.img of=/dev/mmcblk0 - -In order to test the image on TS-4900 board, a TS baseboard, such as -the TS-9xxx series, is needed to provide power, console header, RJ45 -connector etc. - -The bootloader comes pre-flashed on the board on an SPI flash. Since -updating the bootloader is risky and not trivial, it is not included -in the Buildroot defconfig. Refer to -https://docs.embeddedTS.com/TS-4900#U-Boot for details on which -U-Boot config to use and how to flash it. diff --git a/board/technologic/ts5500/fs-overlay/boot/syslinux/syslinux.cfg b/board/technologic/ts5500/fs-overlay/boot/syslinux/syslinux.cfg deleted file mode 100644 index 64f8187733a..00000000000 --- a/board/technologic/ts5500/fs-overlay/boot/syslinux/syslinux.cfg +++ /dev/null @@ -1,9 +0,0 @@ -SERIAL 1 115200 -CONSOLE 0 - -DEFAULT linux - -LABEL linux - SAY Now booting the kernel from SYSLINUX... - LINUX /boot/bzImage - APPEND console=ttyS1,115200n8 root=/dev/sda1 rootfstype=ext4 rw diff --git a/board/technologic/ts5500/linux-4.14.config b/board/technologic/ts5500/linux-4.14.config deleted file mode 100644 index eb81596e258..00000000000 --- a/board/technologic/ts5500/linux-4.14.config +++ /dev/null @@ -1,111 +0,0 @@ -# CONFIG_CROSS_MEMORY_ATTACH is not set -CONFIG_PARTITION_ADVANCED=y -# CONFIG_X86_EXTENDED_PLATFORM is not set -CONFIG_MELAN=y -CONFIG_X86_GENERIC=y -CONFIG_X86_REBOOTFIXUPS=y -CONFIG_NOHIGHMEM=y -# CONFIG_COMPACTION is not set -# CONFIG_BOUNCE is not set -# CONFIG_RELOCATABLE is not set -# CONFIG_SUSPEND is not set -# CONFIG_ACPI is not set -CONFIG_CPU_IDLE=y -CONFIG_TS5500=y -CONFIG_NET=y -CONFIG_PACKET=y -CONFIG_UNIX=y -CONFIG_INET=y -# CONFIG_INET_XFRM_MODE_TRANSPORT is not set -# CONFIG_INET_XFRM_MODE_TUNNEL is not set -# CONFIG_INET_XFRM_MODE_BEET is not set -# CONFIG_INET_DIAG is not set -# CONFIG_IPV6 is not set -# CONFIG_WIRELESS is not set -CONFIG_DEVTMPFS=y -CONFIG_DEVTMPFS_MOUNT=y -# CONFIG_BLK_DEV is not set -CONFIG_BLK_DEV_SD=y -# CONFIG_SCSI_LOWLEVEL is not set -CONFIG_ATA=y -# CONFIG_ATA_VERBOSE_ERROR is not set -# CONFIG_SATA_PMP is not set -CONFIG_ATA_GENERIC=y -CONFIG_PATA_LEGACY=y -CONFIG_NETDEVICES=y -# CONFIG_NET_CORE is not set -# CONFIG_NET_VENDOR_3COM is not set -# CONFIG_NET_VENDOR_ADAPTEC is not set -# CONFIG_NET_VENDOR_ALTEON is not set -# CONFIG_NET_VENDOR_AMD is not set -# CONFIG_NET_VENDOR_ARC is not set -# CONFIG_NET_VENDOR_ATHEROS is not set -# CONFIG_NET_VENDOR_BROADCOM is not set -# CONFIG_NET_VENDOR_BROCADE is not set -# CONFIG_NET_VENDOR_CHELSIO is not set -# CONFIG_NET_VENDOR_CISCO is not set -CONFIG_NET_TULIP=y -CONFIG_DM9102=y -# CONFIG_NET_VENDOR_DLINK is not set -# CONFIG_NET_VENDOR_EMULEX is not set -# CONFIG_NET_VENDOR_EXAR is not set -# CONFIG_NET_VENDOR_HP is not set -# CONFIG_NET_VENDOR_INTEL is not set -# CONFIG_NET_VENDOR_MARVELL is not set -# CONFIG_NET_VENDOR_MELLANOX is not set -# CONFIG_NET_VENDOR_MICREL is not set -# CONFIG_NET_VENDOR_MYRI is not set -# CONFIG_NET_VENDOR_NATSEMI is not set -# CONFIG_NET_VENDOR_NVIDIA is not set -# CONFIG_NET_VENDOR_OKI is not set -# CONFIG_NET_PACKET_ENGINE is not set -# CONFIG_NET_VENDOR_QLOGIC is not set -# CONFIG_NET_VENDOR_REALTEK is not set -# CONFIG_NET_VENDOR_RDC is not set -# CONFIG_NET_VENDOR_SEEQ is not set -# CONFIG_NET_VENDOR_SILAN is not set -# CONFIG_NET_VENDOR_SIS is not set -# CONFIG_NET_VENDOR_SMSC is not set -# CONFIG_NET_VENDOR_STMICRO is not set -# CONFIG_NET_VENDOR_SUN is not set -# CONFIG_NET_VENDOR_TEHUTI is not set -# CONFIG_NET_VENDOR_TI is not set -# CONFIG_NET_VENDOR_VIA is not set -# CONFIG_NET_VENDOR_WIZNET is not set -CONFIG_PHYLIB=y -CONFIG_DAVICOM_PHY=y -# CONFIG_WLAN is not set -# CONFIG_INPUT_KEYBOARD is not set -# CONFIG_INPUT_MOUSE is not set -# CONFIG_SERIO is not set -CONFIG_SERIAL_8250=y -# CONFIG_SERIAL_8250_DEPRECATED_OPTIONS is not set -CONFIG_SERIAL_8250_CONSOLE=y -# CONFIG_HW_RANDOM is not set -CONFIG_GPIOLIB=y -CONFIG_GPIO_TS5500=y -CONFIG_SENSORS_MAX197=y -CONFIG_WATCHDOG=y -CONFIG_SC520_WDT=y -CONFIG_USB=y -CONFIG_USB_OHCI_HCD=y -CONFIG_USB_SERIAL=y -CONFIG_USB_SERIAL_FTDI_SIO=y -CONFIG_USB_SERIAL_PL2303=y -# CONFIG_X86_PLATFORM_DEVICES is not set -# CONFIG_IOMMU_SUPPORT is not set -# CONFIG_DMIID is not set -CONFIG_EXT4_FS=y -# CONFIG_DNOTIFY is not set -# CONFIG_INOTIFY_USER is not set -CONFIG_VFAT_FS=y -CONFIG_TMPFS=y -# CONFIG_MISC_FILESYSTEMS is not set -# CONFIG_NETWORK_FILESYSTEMS is not set -CONFIG_NLS_CODEPAGE_437=y -CONFIG_NLS_CODEPAGE_850=y -CONFIG_NLS_ISO8859_1=y -CONFIG_NLS_ISO8859_15=y -CONFIG_NLS_UTF8=y -# CONFIG_VIRTUALIZATION is not set -CONFIG_XZ_DEC=y diff --git a/board/technologic/ts5500/readme.txt b/board/technologic/ts5500/readme.txt deleted file mode 100644 index 1fe384faae9..00000000000 --- a/board/technologic/ts5500/readme.txt +++ /dev/null @@ -1,52 +0,0 @@ -Technologic Systems TS-5x00 SBCs -================================ - -This document explains how to set up a basic Buildroot system for the -Technologic Systems TS-5x00 serie of x86-based Single Board Computers. - -TS-5x00 Single Board Computers are based on the AMD Elan520 processor. For more -information please have a look at https://docs.embeddedTS.com/Documentation_Home#AMD - -The kernel configuration works for any AMD Elan520-based SBCs, but the support -is enhanced for the TS-5500 and TS-5400 models (on-board devices registration -and additional sysfs attributes under /sys/devices/platform/). - -To build the default configuration you only have to: - - $ make ts5500_defconfig - $ make - -You will need a Compact Flash card of sufficient size and the first or only -partition configured as Linux type, with the bootable flag. - -You can transfer the system on the partition then optionally resize it with: - - # dd if=output/images/rootfs.ext4 of=/dev/sdX1 - # resize2fs /dev/sdX1 - -Or you can just extract the root filesystem to the partition with: - - # mount /dev/sdX1 /mnt - # tar -pxf output/images/rootfs.tar -C /mnt - # umount /mnt - -To install the bootloader, you will need to copy the MBR: - - # cat output/images/syslinux/mbr.bin > /dev/sdX - -Then install SYSLINUX in the mounted partition: - - # mount /dev/sdX1 /mnt - # output/host/sbin/extlinux --install /mnt/boot/syslinux - # umount /mnt - -IMPORTANT: In order for the board to boot the Compact Flash with a recent -config, the BIOS must use Logical Block Addressing (LBA). You can do it by -choosing "Ide 0: AUTOCONFIG, LBA" under "IDE DRIVE GEOMETRY" in the "Basic CMOS -Configuration" screen. Also, don't forget to set the 'active' (or 'bootable') -flag on partition 1. For details about the CMOS setup, please see: -https://docs.embeddedts.com/TS-5500#System_BIOS_Setup_Screens - -Connect a terminal program to the rs232 connector marked "COM2" -with baudrate set to 115200, insert the Compact Flash card into the socket, -power up the board, and enjoy. diff --git a/board/ti/am574x-idk/extlinux.conf b/board/ti/am574x-idk/extlinux.conf index 29e0ecfa142..4faa8f7eed3 100644 --- a/board/ti/am574x-idk/extlinux.conf +++ b/board/ti/am574x-idk/extlinux.conf @@ -1,4 +1,4 @@ label am5749-idk-buildroot kernel /zImage fdtdir / - append console=ttyS0,115200n8 root=/dev/mmcblk0p2 rw rootfstype=ext4 rootwait + append console=ttyS2,115200n8 root=/dev/mmcblk0p2 rw rootfstype=ext4 rootwait diff --git a/board/ti/am574x-idk/genimage.cfg b/board/ti/am574x-idk/genimage.cfg index 02a9ffe0131..e7ab22f29b5 100644 --- a/board/ti/am574x-idk/genimage.cfg +++ b/board/ti/am574x-idk/genimage.cfg @@ -4,9 +4,11 @@ image boot.vfat { "MLO", "u-boot.img", "zImage", - "am574x-idk.dtb", + "ti", "extlinux" } + + label = "boot" } size = 16M @@ -25,6 +27,5 @@ image sdcard.img { partition rootfs { partition-type = 0x83 image = "rootfs.ext4" - size = 1G } } diff --git a/board/ti/am574x-idk/patches/linux/linux.hash b/board/ti/am574x-idk/patches/linux/linux.hash new file mode 100644 index 00000000000..020dc72386c --- /dev/null +++ b/board/ti/am574x-idk/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 f4855f382c1b735c84072bdef36db5bcd5dc7b0c37e42f5104317149a0a486ef linux-6.18.18.tar.xz diff --git a/board/ti/am574x-idk/patches/uboot/uboot.hash b/board/ti/am574x-idk/patches/uboot/uboot.hash new file mode 100644 index 00000000000..36322a6a904 --- /dev/null +++ b/board/ti/am574x-idk/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 ac7c04b8b7004923b00a4e5d6699c5df4d21233bac9fda690d8cfbc209fff2fd u-boot-2026.04.tar.bz2 diff --git a/board/ti/am62x-sk/patches/linux/linux.hash b/board/ti/am62x-sk/patches/linux/linux.hash index 4ac46f027b2..08483293cf6 100644 --- a/board/ti/am62x-sk/patches/linux/linux.hash +++ b/board/ti/am62x-sk/patches/linux/linux.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 663507accae673afcf4e210b4ae8d4352e61d926202e5da3f04bf71ca1d2c0b5 linux-6.12.53.tar.xz +sha256 a9e8c51fcb1e695d1d35dde5886cba579cb6f29c9646c5889f39d63841d4b9f6 linux-6.12.95.tar.xz diff --git a/board/ti/am62x-sk/patches/uboot/uboot.hash b/board/ti/am62x-sk/patches/uboot/uboot.hash index 98a5c53aaf9..ff6e4ed2e2f 100644 --- a/board/ti/am62x-sk/patches/uboot/uboot.hash +++ b/board/ti/am62x-sk/patches/uboot/uboot.hash @@ -1,2 +1,2 @@ # Locally calculated -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 diff --git a/board/ti/common/am6xx/post-build.sh b/board/ti/common/am6xx/post-build.sh index d066e28fd0d..c32cfe25b29 100755 --- a/board/ti/common/am6xx/post-build.sh +++ b/board/ti/common/am6xx/post-build.sh @@ -1,4 +1,5 @@ -#!/bin/sh -x +#!/bin/sh +set -eu # genimage will need to find the extlinux.conf # in the binaries directory diff --git a/board/ti/tda4vm-sk/extlinux.conf b/board/ti/tda4vm-sk/extlinux.conf new file mode 100644 index 00000000000..582d510b5d4 --- /dev/null +++ b/board/ti/tda4vm-sk/extlinux.conf @@ -0,0 +1,5 @@ +default buildroot +label buildroot + kernel /Image + devicetreedir / +append root=/dev/mmcblk1p2 rootwait rw console=ttyS2,115200n8 diff --git a/board/ti/tda4vm-sk/genimage.cfg b/board/ti/tda4vm-sk/genimage.cfg new file mode 100644 index 00000000000..b5ba2d21db5 --- /dev/null +++ b/board/ti/tda4vm-sk/genimage.cfg @@ -0,0 +1,33 @@ +image boot.vfat { + vfat { + files = { + "sysfw.itb", + "tiboot3.bin", + "tispl.bin", + "u-boot.img", + "Image", + "ti", + "extlinux", + } + + label = "boot" + } + + size = 64M +} + +image sdcard.img { + hdimage { + } + + partition u-boot { + partition-type = 0xC + bootable = "true" + image = "boot.vfat" + } + + partition rootfs { + partition-type = 0x83 + image = "rootfs.ext4" + } +} diff --git a/board/ti/tda4vm-sk/patches/linux/linux.hash b/board/ti/tda4vm-sk/patches/linux/linux.hash new file mode 100644 index 00000000000..eb4dcee9586 --- /dev/null +++ b/board/ti/tda4vm-sk/patches/linux/linux.hash @@ -0,0 +1,2 @@ +# From https://www.kernel.org/pub/linux/kernel/v6.x/sha256sums.asc +sha256 4f21c01f4d04c1d1b3ed794153f8900802c92497be620b07c4869530f2d28ee3 linux-6.18.16.tar.xz diff --git a/board/ti/tda4vm-sk/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash b/board/ti/tda4vm-sk/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/ti/tda4vm-sk/patches/ti-k3-r5-loader/ti-k3-r5-loader.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/ti/tda4vm-sk/patches/uboot/uboot.hash b/board/ti/tda4vm-sk/patches/uboot/uboot.hash new file mode 100644 index 00000000000..b6a925ea4e8 --- /dev/null +++ b/board/ti/tda4vm-sk/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 b60d5865cefdbc75da8da4156c56c458e00de75a49b80c1a2e58a96e30ad0d54 u-boot-2026.01.tar.bz2 diff --git a/board/ti/tda4vm-sk/post-build.sh b/board/ti/tda4vm-sk/post-build.sh new file mode 100755 index 00000000000..8dae08a47cd --- /dev/null +++ b/board/ti/tda4vm-sk/post-build.sh @@ -0,0 +1,5 @@ +#!/bin/sh + +BOARD_DIR="$(dirname "$0")" + +install -m 0644 -D "$BOARD_DIR"/extlinux.conf "$BINARIES_DIR"/extlinux/extlinux.conf diff --git a/board/ti/tda4vm-sk/readme.txt b/board/ti/tda4vm-sk/readme.txt new file mode 100644 index 00000000000..b3e789be805 --- /dev/null +++ b/board/ti/tda4vm-sk/readme.txt @@ -0,0 +1,36 @@ +Texas Instruments SK-TDA4VM Test and Development Board + +Description +=========== + +This configuration will build a complete image for the TI SK-TDA4VM +board: https://www.ti.com/tool/SK-TDA4VM + +How to Build +============ + +Select the default configuration for the target: + +$ make ti_tda4vm_sk_defconfig + +Optional: modify the configuration: + +$ make menuconfig + +Build: + +$ make + +To copy the resultimg output image file to an SD card use dd: + +$ dd if=output/images/sdcard.img of=/dev/sdX bs=1M + +How to Run +========== + +Insert the SD card into the SK-TDA4VM board, and power it up through the +USB Type-C connector. The system should come up. You can use a +micro-USB cable to connect to the connector labeled UART to +communicate with the board. + +User's guide : https://www.ti.com/lit/ug/spruj21e/spruj21e.pdf diff --git a/board/versal/readme.txt b/board/versal/readme.txt index 3bcaccbb0ea..80ab068495e 100644 --- a/board/versal/readme.txt +++ b/board/versal/readme.txt @@ -5,6 +5,7 @@ Xilinx Versal boards: Supported Versal Boards: Xilinx VCK190 board Xilinx VEK280 board +Xilinx VPK120 board Xilinx VPK180 board ****************************************** @@ -16,6 +17,9 @@ https://www.amd.com/en/products/adaptive-socs-and-fpgas/evaluation-boards/vck190 VEK280: https://www.amd.com/en/products/adaptive-socs-and-fpgas/evaluation-boards/vek280.html +VPK120: +https://www.amd.com/en/products/adaptive-socs-and-fpgas/evaluation-boards/vpk120.html + VPK180: https://www.amd.com/en/products/adaptive-socs-and-fpgas/evaluation-boards/vpk180.html diff --git a/board/versal2/genimage.cfg b/board/versal2/genimage.cfg new file mode 120000 index 00000000000..3aa5543165e --- /dev/null +++ b/board/versal2/genimage.cfg @@ -0,0 +1 @@ +../versal/genimage.cfg \ No newline at end of file diff --git a/board/versal2/post-build.sh b/board/versal2/post-build.sh new file mode 120000 index 00000000000..0130ff23d2c --- /dev/null +++ b/board/versal2/post-build.sh @@ -0,0 +1 @@ +../zynqmp/post-build.sh \ No newline at end of file diff --git a/board/versal2/post-image.sh b/board/versal2/post-image.sh new file mode 100755 index 00000000000..af50909fb1f --- /dev/null +++ b/board/versal2/post-image.sh @@ -0,0 +1,29 @@ +#!/bin/sh + +# By default U-Boot loads DTB from a file named "system.dtb", and +# with versal2, the Linux DTB is the same as the U-Boot DTB, so +# let's use a symlink since the DTB is the same. +ln -fs "u-boot.dtb" "${BINARIES_DIR}/system.dtb" + +BOARD_DIR="$(dirname "$0")" + +cat <<-__HEADER_EOF > "${BINARIES_DIR}/bootgen.bif" + the_ROM_image: + { + image { + { type=bootimage, file=${BINARIES_DIR}/boot.pdi } + { type=bootloader, file=${BINARIES_DIR}/plm.elf } + { core=asu, file=${BINARIES_DIR}/asufw.elf } + } + image { + id = 0x1c000000, name=apu_subsystem + { type=raw, load=0x01000000, file=${BINARIES_DIR}/u-boot.dtb } + { core=a78-0, cluster=0, exception_level=el-3, trustzone, file=${BINARIES_DIR}/bl31.elf } + { core=a78-0, cluster=0, exception_level=el-1, trustzone, load=0x1800000, file=${BINARIES_DIR}/tee-raw.bin } + { core=a78-0, cluster=0, exception_level=el-2, file=${BINARIES_DIR}/u-boot.elf } + } + } + __HEADER_EOF + +"${HOST_DIR}/bin/bootgen" -arch versal_2ve_2vm -image "${BINARIES_DIR}/bootgen.bif" -o "${BINARIES_DIR}/boot.bin" -w on +support/scripts/genimage.sh -c "${BOARD_DIR}/genimage.cfg" diff --git a/board/versal2/readme.txt b/board/versal2/readme.txt new file mode 100644 index 00000000000..4498392bcb3 --- /dev/null +++ b/board/versal2/readme.txt @@ -0,0 +1,182 @@ +This document describes the Buildroot support for the following +Xilinx Versal Gen2 boards: + +****************************************** +Supported Versal Gen2 Boards: +Xilinx VEK385 board +****************************************** + +Evaluation board features can be found here with the links below. + +VEK385: +https://www.amd.com/en/products/adaptive-socs-and-fpgas/evaluation-boards/vek385.html + +How to build it +=============== + +Configure Buildroot: + + $ make versal2_vek385_defconfig + +Compile everything and build the rootfs image: + + $ make + +Result of the build +------------------- + +After building, you should get a tree like this: + + output/images/ + +-- asufw.elf + +-- bl31.elf + +-- boot.bin + +-- bootgen.bif + +-- boot.pdi + +-- boot.vfat + +-- extlinux.conf + +-- Image + +-- plm.elf + +-- rootfs.ext2 + +-- rootfs.ext4 -> rootfs.ext2 + +-- sdcard.img + +-- system.dtb -> u-boot.dtb + +-- tee-raw.bin + +-- u-boot.dtb + `-- u-boot.elf + +How to write the SD card +======================== + +WARNING! This will destroy all the card content. Use with care! + +The sdcard.img file is a complete bootable image ready to be written +on the boot medium. To install it, simply copy the image to an SD +card: + + # dd if=output/images/sdcard.img of=/dev/sdX + +Where 'sdX' is the device node of the SD. + +Eject the SD card, insert it in the board, and power it up. + +Support for other boards: +========================= + +If you want to build a system for other boards based on the same SoC, and the +board is already supported by the upstream kernel, U-Boot, and +xilinx-prebuilt, you simply need to change the following Buildroot options: + + - U-Boot (BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="DEVICE_TREE=") + - xilinx-prebuilt (BR2_TARGET_XILINX_PREBUILT_BOARD) + +Custom versal2 board support: + +To generate a boot.bin image, Versal2 boards require a PDI (Programmable Device +Image) generated by Xilinx Vivado which contains all the hardware specific +boot information, such as clock, MIO and DDR initializations as well as any +customizations in the programmable logic. Since this PDI can only be generated +by Xilinx Vivado, Buildroot needs access to the prebuilt image. The Buildroot +xilinx-prebuilt package has support for Versal2 XSA files exported from Xilinx +Vivado. + +Using the option BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA, Buildroot can obtain +the prebuilt PDI from the XSA file. + +1) Start with a defconfig supported by Buildroot (e.g. VEK385) + make versal2_vek385_defconfig + +2) make menuconfig + Visit the following menu and enable BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA + + Bootloaders ---> + xilinx-prebuilt ---> + [*] download a prebuilt Versal XSA + +3) Within the same menuconfig, configure location of XSA. It can be in the + local file system or downloadable from an https:// location. + + Bootloaders ---> + xilinx-prebuilt ---> + () URL of custom XSA + +4) make + +The resulting output/images will contain a boot.bin that includes the custom +PDI file extracted from the Xilinx Vivado exported XSA file. + +How to write boot.bin to VEK385 OSPI boot flash +======================================================= + +The VEK385 cannot be configured to boot from the SD card directly because it +is connected to the 2VE3858 by a USB to SD card bridge and not connected +directly. For this reason, the boot.bin needs to be in the OSPI flash for +booting the first boot stage, and u-boot can then boot Linux and the file +system from the SD card. + +For writing the boot.bin file to the OSPI flash the first time, it is +recommended to use the board system controller with the instructions on the +wiki page below: +https://xilinx-wiki.atlassian.net/wiki/spaces/A/pages/2273738753/Versal+Evaluation+Board+-+System+Controller+-+Update+7 + +Once the first boot.bin has been flashed and the VEK385 is able to boot into +u-boot, u-boot can then be used for subsequent updates to the OSPI flash using +the instructions below. + +VEK385 U-Boot Flashing Instructions: + $ usb start + $ sf probe + $ fatload usb 0 0x40000000 boot.bin + $ sf erase 0x0 +$filesize + $ sf write 0x40000000 0x0 $filesize + +If a valid boot.bin is already in the OSPI flash, it is possible to boot the +Buildroot generated SD card image without updating the OSPI boot.bin image, so +this is an optional step when just updating Linux and the file system. + +IMPORTANT NOTES for the VEK385 +======================================================= + +1) The base-design.pdi on the https://github.com/Xilinx/soc-prebuilt-firmware +repo is designed for revB of the VEK385 and will not work properly on revA. +Users should either create their own Vivado XSA file if they have a revA +board, or make sure to get a VEK385 revB or newer board. + +2) The default u-boot bootcmd is not the distro_bootcmd that buildroot +expects. When booting for the first time, please stop the boot in u-boot +and run the following commands: + $ setenv bootcmd 'run distro_bootcmd' + $ saveenv + $ boot + +3) When using the 2025.2 release, the default u-boot env value for fdt_addr_r +is 0x21000000 which overlaps with the OS image causing the following boot +failure: + +Found /extlinux/extlinux.conf +Retrieving file: /extlinux/extlinux.conf +1: linux +Retrieving file: /Image +append: console="ttyAMA1,115200" root="/dev/sdd2" rw rootwait +Retrieving file: /system.dtb +## Flattened Device Tree blob at 21000000 + Booting using the fdt blob at 0x21000000 +ERROR: FDT image overlaps OS image (OS=20200000..21cf0000) +EXTLINUX FAILED: continuing... + +This will be fixed with 2026.1 and future releases, but for 2025.2, users +must run the following u-boot commands to change the default value. + $ setenv fdt_addr_r 0x31000000 + $ saveenv + +4) Depending on the device tree used, the USB->SD card interface may not be +probed as /dev/sdd as the probing order can vary based on the device tree +configuration. To deal with this, users will need to change the last +parameter of BR2_ROOTFS_POST_SCRIPT_ARGS to sda2, sdb2 or sdc2 depending on +which corresponds to their configuration's USB->SD card. + +For example, the default value in the versal2_vek385_defconfig: +BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA1,115200 sdd2" + +If the USB->SD card interface probed first, this would need to be changed to: +BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA1,115200 sda2" diff --git a/board/pine64/rockpro64/patches/linux-headers/linux-headers.hash b/board/xilinx/linux_6.18.40/patches/linux-headers/linux-headers.hash similarity index 100% rename from board/pine64/rockpro64/patches/linux-headers/linux-headers.hash rename to board/xilinx/linux_6.18.40/patches/linux-headers/linux-headers.hash diff --git a/board/xilinx/linux_6.18.40/patches/linux/linux.hash b/board/xilinx/linux_6.18.40/patches/linux/linux.hash new file mode 100644 index 00000000000..f0b89845733 --- /dev/null +++ b/board/xilinx/linux_6.18.40/patches/linux/linux.hash @@ -0,0 +1,7 @@ +# Locally calculated +sha256 bdb5c40d7b43f8a1ea6ee34e2392a389935120b11cf54c36ad3ccff937b1a179 xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz + +# Locally calculated +sha256 fb5a425bd3b3cd6071a3a9aff9909a859e7c1158d54d32e07658398cd67eb6a0 COPYING +sha256 8780e78a1a737e127f25a65f6d95269bffd36158dc261114de7859b490bfc5aa LICENSES/preferred/GPL-2.0 +sha256 8e378ab93586eb55135d3bc119cce787f7324f48394777d00c34fa3d0be3303f LICENSES/exceptions/Linux-syscall-note diff --git a/board/xilinx/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/xilinx/patches/arm-trusted-firmware/arm-trusted-firmware.hash deleted file mode 100644 index d7bd1e73ef0..00000000000 --- a/board/xilinx/patches/arm-trusted-firmware/arm-trusted-firmware.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 4d16661f367adb8713113acb420a1ad5f611ce6a309e98005a8ea3273511f03d xlnx_rebase_v2.12_2025.1.tar.gz diff --git a/board/xilinx/patches/linux-headers/linux-headers.hash b/board/xilinx/patches/linux-headers/linux-headers.hash deleted file mode 120000 index 5808d92afe8..00000000000 --- a/board/xilinx/patches/linux-headers/linux-headers.hash +++ /dev/null @@ -1 +0,0 @@ -../linux/linux.hash \ No newline at end of file diff --git a/board/xilinx/patches/linux/linux.hash b/board/xilinx/patches/linux/linux.hash deleted file mode 100644 index 994d637d50e..00000000000 --- a/board/xilinx/patches/linux/linux.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 ea55acf69bead3d4cf121de414cccfbe75a3c36465c93d9500cc00688d9b8d9d xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz diff --git a/board/xilinx/patches/uboot/uboot.hash b/board/xilinx/patches/uboot/uboot.hash deleted file mode 100644 index 19192b182cb..00000000000 --- a/board/xilinx/patches/uboot/uboot.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 b86d6f07d16a83ed0bdbd9b9439e099afc87ba7dfb77246e2472183848e2ea93 xlnx_rebase_v2025.01_2025.1.tar.gz diff --git a/board/xilinx/xilinx_v2026.1/patches/arm-trusted-firmware/arm-trusted-firmware.hash b/board/xilinx/xilinx_v2026.1/patches/arm-trusted-firmware/arm-trusted-firmware.hash new file mode 100644 index 00000000000..d40bcad589c --- /dev/null +++ b/board/xilinx/xilinx_v2026.1/patches/arm-trusted-firmware/arm-trusted-firmware.hash @@ -0,0 +1,5 @@ +# Locally calculated +sha256 6047af5f352fa7aaacd988a3fe0d018627dcc200dfdf93de0c0dc8072adef828 xlnx-rebase-v2.14_2026.1.tar.gz + +# Locally calculated +sha256 dbc8c4c1042f833ac961730cda41f87b6845068d9b5be2c90726504cfc82382e docs/license.rst diff --git a/board/xilinx/xilinx_v2026.1/patches/optee-os/optee-os.hash b/board/xilinx/xilinx_v2026.1/patches/optee-os/optee-os.hash new file mode 100644 index 00000000000..8dde8c24ea7 --- /dev/null +++ b/board/xilinx/xilinx_v2026.1/patches/optee-os/optee-os.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 0d33919008db24241580ac54c355d5c7efb18b089c2a7248704676a769790380 xlnx-rebase-v4.9.0_2026.1.tar.gz diff --git a/board/xilinx/xilinx_v2026.1/patches/uboot/uboot.hash b/board/xilinx/xilinx_v2026.1/patches/uboot/uboot.hash new file mode 100644 index 00000000000..52fcaf846f8 --- /dev/null +++ b/board/xilinx/xilinx_v2026.1/patches/uboot/uboot.hash @@ -0,0 +1,2 @@ +# Locally calculated +sha256 bc42689fffa878f9852120b167b871d8294697441cdd9f8347506a30d4024e8c xlnx-rebase-v2026.01_2026.1.tar.gz diff --git a/boot/Config.in b/boot/Config.in index 08a6c8353d4..80ea11a4c18 100644 --- a/boot/Config.in +++ b/boot/Config.in @@ -4,7 +4,7 @@ config BR2_TARGET_XILINX_FIRMWARE_ARCH_SUPPORTS # All Xilinx SoCs using this package are aarch64 only depends on BR2_aarch64 # only CPUs with corresponding firmwares: - depends on BR2_cortex_a53 || BR2_cortex_a72 + depends on BR2_cortex_a53 || BR2_cortex_a72 || BR2_cortex_a78 menu "Bootloaders" @@ -14,13 +14,16 @@ source "boot/arm-trusted-firmware/Config.in" source "boot/barebox/Config.in" source "boot/binaries-marvell/Config.in" source "boot/boot-wrapper-aarch64/Config.in" +source "boot/clover-bin/Config.in" +source "boot/clover/Config.in" source "boot/edk2/Config.in" source "boot/grub2/Config.in" source "boot/mv-ddr-marvell/Config.in" source "boot/mxs-bootlets/Config.in" source "boot/optee-os/Config.in" source "boot/opensbi/Config.in" -source "boot/s500-bootloader/Config.in" +source "boot/palo/Config.in" +source "boot/refind-bin/Config.in" source "boot/shim/Config.in" source "boot/syslinux/Config.in" source "boot/ti-k3-boot-firmware/Config.in" diff --git a/boot/arm-trusted-firmware/Config.in b/boot/arm-trusted-firmware/Config.in index 72684e5974c..70fdec5c2ae 100644 --- a/boot/arm-trusted-firmware/Config.in +++ b/boot/arm-trusted-firmware/Config.in @@ -80,6 +80,14 @@ config BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_REPO_VERSION endif +config BR2_TARGET_ARM_TRUSTED_FIRMWARE_LICENSE_FILES + string "ATF license files" if BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_GIT || \ + BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL + default "docs/license.rst" + help + A space-separated list of license files related to the ATF + package. + config BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM string "ATF platform" help @@ -188,6 +196,19 @@ config BR2_TARGET_ARM_TRUSTED_FIRMWARE_EDK2_AS_BL33 for the 'qemu_sbsa' platform. In this case, due to the EDK2 build system, the dependency between ATF and EDK is reversed. +config BR2_TARGET_ARM_TRUSTED_FIRMWARE_LINUX_AS_BL33 + bool "Linux kernel" + depends on BR2_LINUX_KERNEL + depends on (BR2_arm || BR2_armeb) + depends on (BR2_LINUX_KERNEL_ZIMAGE || BR2_LINUX_KERNEL_APPENDED_ZIMAGE) + help + This option allows to embed the Linux kernel as the BL33 + part of the ARM Trusted Firmware. + + Do not choose this option if you intend to use U-Boot or + another second-stage bootloader. With this option, TF-A + starts Linux directly. + endchoice if BR2_TARGET_ARM_TRUSTED_FIRMWARE_BAREBOX_AS_BL33 diff --git a/boot/arm-trusted-firmware/arm-trusted-firmware.mk b/boot/arm-trusted-firmware/arm-trusted-firmware.mk index dca16d39604..798efd5a15a 100644 --- a/boot/arm-trusted-firmware/arm-trusted-firmware.mk +++ b/boot/arm-trusted-firmware/arm-trusted-firmware.mk @@ -5,6 +5,10 @@ ################################################################################ ARM_TRUSTED_FIRMWARE_VERSION = $(call qstrip,$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_VERSION)) +ARM_TRUSTED_FIRMWARE_CPE_ID_PREFIX = cpe:2.3:o +ARM_TRUSTED_FIRMWARE_CPE_ID_VENDOR = trustedfirmware +ARM_TRUSTED_FIRMWARE_CPE_ID_PRODUCT = trusted_firmware-a +ARM_TRUSTED_FIRMWARE_CPE_ID_VERSION = $(patsubst v%,%,$(patsubst lts-%,%,$(ARM_TRUSTED_FIRMWARE_VERSION))) ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL),y) # Handle custom ATF tarballs as specified by the configuration @@ -18,14 +22,11 @@ else # Handle stable official ATF versions ARM_TRUSTED_FIRMWARE_SITE = https://git.trustedfirmware.org/TF-A/trusted-firmware-a.git ARM_TRUSTED_FIRMWARE_SITE_METHOD = git -# The licensing of custom or from-git versions is unknown. -# This is valid only for the latest (i.e. known) version. -ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_VERSION)$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_10_VERSION)$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_8_VERSION)$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION),y) -ARM_TRUSTED_FIRMWARE_LICENSE = BSD-3-Clause -ARM_TRUSTED_FIRMWARE_LICENSE_FILES = docs/license.rst -endif endif +ARM_TRUSTED_FIRMWARE_LICENSE = BSD-3-Clause +ARM_TRUSTED_FIRMWARE_LICENSE_FILES = $(call qstrip,$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LICENSE_FILES)) + ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE):$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION)$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL)$(BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_GIT),y:y) BR_NO_CHECK_HASH_FOR += $(ARM_TRUSTED_FIRMWARE_SOURCE) endif @@ -132,6 +133,14 @@ ARM_TRUSTED_FIRMWARE_MAKE_OPTS += BL33=$(BINARIES_DIR)/$(ARM_TRUSTED_FIRMWARE_UB ARM_TRUSTED_FIRMWARE_DEPENDENCIES += uboot endif +ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE_LINUX_AS_BL33),y) +ARM_TRUSTED_FIRMWARE_MAKE_OPTS += BL33=$(BINARIES_DIR)/zImage +ifeq ($(ARM_TRUSTED_FIRMWARE_PLATFORM),stm32mp1) +ARM_TRUSTED_FIRMWARE_MAKE_OPTS += BL33_CFG=$(BINARIES_DIR)/$(LINUX_DTBS) +endif +ARM_TRUSTED_FIRMWARE_DEPENDENCIES += linux +endif + ifeq ($(BR2_TARGET_VEXPRESS_FIRMWARE),y) ARM_TRUSTED_FIRMWARE_MAKE_OPTS += SCP_BL2=$(BINARIES_DIR)/scp-fw.bin ARM_TRUSTED_FIRMWARE_DEPENDENCIES += vexpress-firmware @@ -162,6 +171,8 @@ endif ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31),y) ARM_TRUSTED_FIRMWARE_MAKE_TARGETS += bl31 +# Avoid BL31 environment variable from polluting the build +ARM_TRUSTED_FIRMWARE_MAKE_OPTS += BL31= endif ifeq ($(BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT),y) diff --git a/boot/at91bootstrap3/Config.in b/boot/at91bootstrap3/Config.in index 35bdb28162b..83d3a02121f 100644 --- a/boot/at91bootstrap3/Config.in +++ b/boot/at91bootstrap3/Config.in @@ -66,6 +66,16 @@ config BR2_TARGET_AT91BOOTSTRAP3_VERSION if BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT || BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_SVN default "custom" if BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_TARBALL +config BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES + string "AT91Bootstrap3 license files" if BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT || \ + BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_SVN || \ + BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_TARBALL + default "" if BR2_TARGET_AT91BOOTSTRAP3_LATEST_VERSION_3X + default "LICENSES/MIT.txt" + help + A space-separated list of license files related to the + AT91Bootstrap3 package. + config BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_PATCH_DIR string "custom patch dir" help diff --git a/boot/at91bootstrap3/at91bootstrap3.mk b/boot/at91bootstrap3/at91bootstrap3.mk index 4bbe7cc7181..2ed34f3de4d 100644 --- a/boot/at91bootstrap3/at91bootstrap3.mk +++ b/boot/at91bootstrap3/at91bootstrap3.mk @@ -25,11 +25,12 @@ endif ifeq ($(BR2_TARGET_AT91BOOTSTRAP3_LATEST_VERSION),y) AT91BOOTSTRAP3_LICENSE = MIT -AT91BOOTSTRAP3_LICENSE_FILES = LICENSES/MIT.txt else ifeq ($(BR2_TARGET_AT91BOOTSTRAP3_LATEST_VERSION_3X),y) AT91BOOTSTRAP3_LICENSE = Atmel License endif +AT91BOOTSTRAP3_LICENSE_FILES = $(call qstrip,$(BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES)) + AT91BOOTSTRAP3_CPE_ID_VENDOR = linux4sam AT91BOOTSTRAP3_CPE_ID_PRODUCT = at91bootstrap diff --git a/boot/barebox/Config.in b/boot/barebox/Config.in index c3cb0b33325..6ee97ffe02a 100644 --- a/boot/barebox/Config.in +++ b/boot/barebox/Config.in @@ -45,6 +45,14 @@ config BR2_TARGET_BAREBOX_VERSION default "custom" if BR2_TARGET_BAREBOX_CUSTOM_TARBALL default BR2_TARGET_BAREBOX_CUSTOM_GIT_VERSION if BR2_TARGET_BAREBOX_CUSTOM_GIT +config BR2_TARGET_BAREBOX_LICENSE_FILES + string "Barebox license files" if BR2_TARGET_BAREBOX_CUSTOM_TARBALL || \ + BR2_TARGET_BAREBOX_CUSTOM_GIT + default "COPYING" + help + A space-separated list of license files related to the Barebox + package. + config BR2_TARGET_BAREBOX_CUSTOM_PATCH_DIR string "custom patch dir" help diff --git a/boot/barebox/barebox.mk b/boot/barebox/barebox.mk index 929ed48ada8..cbd6f9313c8 100644 --- a/boot/barebox/barebox.mk +++ b/boot/barebox/barebox.mk @@ -39,9 +39,7 @@ $(1)_DL_SUBDIR = barebox $(1)_DEPENDENCIES = host-lzop $(1)_LICENSE = GPL-2.0 with exceptions -ifeq ($(BR2_TARGET_BAREBOX_LATEST_VERSION),y) -$(1)_LICENSE_FILES = COPYING -endif +$(1)_LICENSE_FILES = $$(call qstrip,$$(BR2_TARGET_BAREBOX_LICENSE_FILES)) ifeq ($(BR2_TARGET_BAREBOX_NEEDS_OPENSSL),y) BAREBOX_DEPENDENCIES += host-openssl host-pkgconf diff --git a/boot/clover-bin/Config.in b/boot/clover-bin/Config.in new file mode 100644 index 00000000000..24139b7c2a5 --- /dev/null +++ b/boot/clover-bin/Config.in @@ -0,0 +1,19 @@ +config BR2_TARGET_CLOVER_BIN + bool "clover-bin" + depends on BR2_x86_64 + help + Clover is a graphical UEFI boot manager. + + This is the pre-compiled binary variant. + + https://github.com/CloverHackyColor/CloverBootloader + +if BR2_TARGET_CLOVER_BIN + +config BR2_TARGET_CLOVER_BIN_INSTALL_FALLBACK + bool "install Clover as the fallback bootloader" + help + Install Clover as EFI/BOOT/BOOTX64.efi. Do not enable this + when another package, such as GRUB, supplies that path. + +endif diff --git a/boot/clover-bin/clover-bin.hash b/boot/clover-bin/clover-bin.hash new file mode 100644 index 00000000000..b98104bc0fb --- /dev/null +++ b/boot/clover-bin/clover-bin.hash @@ -0,0 +1,5 @@ +# Locally computed +sha256 6cfa48b1f8e7201f2c318d73089c026d9e9d5979adc6c053bd402ecc75b0fc8c CloverV2-5174.zip + +# Locally computed, from the 5174 tag +sha256 9ad38268029f8604cdadb30d598d42f67697cddb738a962250bc966bda2edcd2 LICENSE diff --git a/boot/clover-bin/clover-bin.mk b/boot/clover-bin/clover-bin.mk new file mode 100644 index 00000000000..ba8356965de --- /dev/null +++ b/boot/clover-bin/clover-bin.mk @@ -0,0 +1,46 @@ +################################################################################ +# +# clover-bin +# +################################################################################ + +CLOVER_BIN_VERSION = 5174 +CLOVER_BIN_SITE = https://github.com/CloverHackyColor/CloverBootloader/releases/download/$(CLOVER_BIN_VERSION) +CLOVER_BIN_SOURCE = CloverV2-$(CLOVER_BIN_VERSION).zip +CLOVER_BIN_EXTRA_DOWNLOADS = https://raw.githubusercontent.com/CloverHackyColor/CloverBootloader/$(CLOVER_BIN_VERSION)/LICENSE +CLOVER_BIN_LICENSE = BSD-2-Clause +CLOVER_BIN_LICENSE_FILES = LICENSE +CLOVER_BIN_INSTALL_IMAGES = YES + +CLOVER_BIN_EXTRACT_CMDS = \ + bsdtar --strip-components=1 \ + -C $(CLOVER_BIN_DIR) \ + $(TAR_OPTIONS) $(CLOVER_BIN_DL_DIR)/$(CLOVER_BIN_SOURCE) - + +define CLOVER_BIN_COPY_LICENSE + cp $(CLOVER_BIN_DL_DIR)/LICENSE $(@D)/LICENSE +endef +CLOVER_BIN_POST_EXTRACT_HOOKS += CLOVER_BIN_COPY_LICENSE + +CLOVER_BIN_EFI_DIR = $(BINARIES_DIR)/efi-part/EFI + +# SkiffOS keeps its kernels on ext4, so Clover must load that filesystem. +define CLOVER_BIN_INSTALL_IMAGES_CMDS + rm -rf $(CLOVER_BIN_EFI_DIR)/CLOVER + mkdir -p $(CLOVER_BIN_EFI_DIR) + cp -a $(@D)/EFI/CLOVER $(CLOVER_BIN_EFI_DIR)/ + mv $(CLOVER_BIN_EFI_DIR)/CLOVER/drivers/off/UEFI/FileSystem/Ext4Dxe.efi \ + $(CLOVER_BIN_EFI_DIR)/CLOVER/drivers/UEFI/ +endef + +ifeq ($(BR2_TARGET_CLOVER_BIN_INSTALL_FALLBACK),y) +define CLOVER_BIN_INSTALL_FALLBACK + mkdir -p $(CLOVER_BIN_EFI_DIR)/BOOT + find $(CLOVER_BIN_EFI_DIR)/BOOT -maxdepth 1 -iname bootx64.efi -delete + $(INSTALL) -m 0755 -D $(@D)/EFI/BOOT/BOOTX64.efi \ + $(CLOVER_BIN_EFI_DIR)/BOOT/BOOTX64.efi +endef +CLOVER_BIN_POST_INSTALL_IMAGES_HOOKS += CLOVER_BIN_INSTALL_FALLBACK +endif + +$(eval $(generic-package)) diff --git a/boot/clover/0001-ebuild-support-source-archive-builds.patch b/boot/clover/0001-ebuild-support-source-archive-builds.patch new file mode 100644 index 00000000000..dea334b2e5c --- /dev/null +++ b/boot/clover/0001-ebuild-support-source-archive-builds.patch @@ -0,0 +1,94 @@ +From 4435598401a0e9fafb9739a7e6e097adbb0e3c1a Mon Sep 17 00:00:00 2001 +From: Buildroot +Subject: [PATCH] ebuild: support source archive builds + +Use supplied Buildroot tools and deterministic source-archive metadata. +This avoids Git and network-dependent tool bootstrap paths. + +Signed-off-by: Buildroot +Upstream: N/A (specific to Buildroot) +--- +--- a/ebuild.sh ++++ b/ebuild.sh +@@ -440,7 +440,7 @@ + esac + + if [[ "$SYSNAME" == Linux ]]; then +- export GCC161_BIN="$TOOLCHAIN_DIR/bin/" ++ export GCC161_BIN="${GCC161_BIN:-$TOOLCHAIN_DIR/bin/}" + if [[ ! -x "${GCC161_BIN}gcc" ]]; then + echo "No clover toolchain for Linux found !" >&2 + echo "Install on your system or define the TOOLCHAIN_DIR variable." >&2 +@@ -455,7 +455,9 @@ + fi + fi + +- if [[ -x "/opt/local/bin/nasm" ]]; then ++ if [[ -n "${NASM_PREFIX:-}" ]]; then ++ : ++ elif [[ -x "/opt/local/bin/nasm" ]]; then + export NASM_PREFIX="/opt/local/bin/" + elif [[ -x "${TOOLCHAIN_DIR}/bin/nasm" ]]; then + # using $TOOLCHAIN_DIR here should allow Clover source to be +@@ -529,7 +531,7 @@ + echo "BUILD_DIR_ARCH: $BUILD_DIR_ARCH" + + # local repoRev=$(git describe --tags $(git rev-list --tags --max-count=1)) +- local repoRev=$(git describe --tags --abbrev=0) ++ local repoRev="${CLOVER_REVISION:-5174}" + + # + # we are building the same rev as before? +@@ -598,7 +600,7 @@ + echo "Building tools as they are not found" + if [[ "$SYSNAME" == Linux ]]; then + echo "Linux" +- make -C "$WORKSPACE"/BaseTools "BUILD_CC=clang" ++ make -C "$WORKSPACE"/BaseTools "BUILD_CC=${BUILD_CC:-cc}" + else + make -C "$WORKSPACE"/BaseTools CC="gcc -Wno-deprecated-declarations" + fi +@@ -634,36 +636,28 @@ + + # local clover_revision=$(cat "${CLOVERROOT}/${VERSTXT}") + # local clover_revision=$(git describe --tags $(git rev-list --tags --max-count=1)) +- local clover_revision=$(git describe --tags --abbrev=0) +- local clover_build_date=$(date '+%Y-%m-%d %H:%M:%S') ++ local clover_revision="${CLOVER_REVISION:-5174}" ++ local clover_build_date="${CLOVER_BUILD_DATE:-$(date -u -d "@${SOURCE_DATE_EPOCH:-0}" '+%Y-%m-%d %H:%M:%S')}" + #echo "#define FIRMWARE_VERSION \"2.31\"" > "$CLOVERROOT"/Version.h + + echo "#define FIRMWARE_BUILDDATE \"${clover_build_date}\"" > "$CLOVERROOT"/Version.h + echo "#define FIRMWARE_REVISION L\"${clover_revision}\"" >> "$CLOVERROOT"/Version.h + +- local sha1="(github unknown)" +- if [[ -d "${CLOVERROOT}"/.git ]]; then +- sha1="($(git rev-parse --abbrev-ref HEAD), commit $(git rev-parse --short HEAD))" +- fi ++ local sha1="(source archive, commit ${CLOVER_COMMIT_HASH:-4435598401a0e9fafb9739a7e6e097adbb0e3c1a})" + echo "#define REVISION_STR \"Clover revision: ${clover_revision} $sha1\"" >> "$CLOVERROOT"/Version.h + +- rev_date=$(git show -s --format=%ci $(git rev-parse HEAD)) ++ rev_date="${CLOVER_REVISION_DATE:-$(date -u -d "@${SOURCE_DATE_EPOCH:-0}" '+%Y-%m-%d %H:%M:%S +0000')}" + echo "#define REVISION_DATE \"${rev_date}\"" >> "$CLOVERROOT"/Version.h +- COMMIT_HASH="$(git rev-parse HEAD)" ++ COMMIT_HASH="${CLOVER_COMMIT_HASH:-4435598401a0e9fafb9739a7e6e097adbb0e3c1a}" + echo "#define COMMIT_HASH \"$COMMIT_HASH\"" >> "$CLOVERROOT"/Version.h +- #build_id_date="$(date +%Y%m%d%H%M%S)" +- build_id_date="$(git show -s --format=%cd --date=format:%Y%m%d%H%M%S)" +- number_of_commit="$(git rev-list tags/$(git describe --tags --abbrev=0)..HEAD --count)" ++ build_id_date="$(date -u -d "@${SOURCE_DATE_EPOCH:-0}" '+%Y%m%d%H%M%S')" ++ number_of_commit=0 + if [ $number_of_commit -gt 0 ] + then + build_id="$build_id_date"-"${COMMIT_HASH::7}" + else + build_id="$build_id_date"-"${COMMIT_HASH::7}"-"$clover_revision" + fi +- if [[ -n $(git status -s) ]] +- then +- build_id="$build_id"-dirty +- fi + echo "#define BUILD_ID \"$build_id\"" >> "$CLOVERROOT"/Version.h + + local clover_build_info="Args: " diff --git a/boot/clover/0002-BaseTools-fix-GCC-16-warnings.patch b/boot/clover/0002-BaseTools-fix-GCC-16-warnings.patch new file mode 100644 index 00000000000..ed69031e297 --- /dev/null +++ b/boot/clover/0002-BaseTools-fix-GCC-16-warnings.patch @@ -0,0 +1,66 @@ +From: Christian Stewart +Subject: [PATCH] BaseTools: fix GCC 16 warnings + +GCC 16 diagnoses the intentionally bounded string appends as possible +truncation and detects an unused loop counter. Use snprintf for the appends +and remove the unused counter without changing the parser behavior. + +Signed-off-by: Christian Stewart +Upstream: https://github.com/CloverHackyColor/CloverBootloader/pull/TODO +--- +--- a/BaseTools/Source/C/Common/EfiUtilityMsgs.c ++++ b/BaseTools/Source/C/Common/EfiUtilityMsgs.c +@@ -460,7 +460,7 @@ + strncat (Line, Cptr, MAX_LINE_LEN - strlen (Line) - 1); + if (LineNumber != 0) { + snprintf (Line2, MAX_LINE_LEN, "(%u)", (unsigned) LineNumber); +- strncat (Line, Line2, MAX_LINE_LEN - strlen (Line) - 1); ++ snprintf (Line + strlen (Line), MAX_LINE_LEN - strlen (Line), "%s", Line2); + } + } + } else { +@@ -475,7 +475,7 @@ + Line[MAX_LINE_LEN - 1] = 0; + if (LineNumber != 0) { + snprintf (Line2, MAX_LINE_LEN, "(%u)", (unsigned) LineNumber); +- strncat (Line, Line2, MAX_LINE_LEN - strlen (Line) - 1); ++ snprintf (Line + strlen (Line), MAX_LINE_LEN - strlen (Line), "%s", Line2); + } + } else { + if (mUtilityName[0] != '\0') { +@@ -502,7 +502,7 @@ + strncat (Line, Type, MAX_LINE_LEN - strlen (Line) - 1); + if (MessageCode != 0) { + snprintf (Line2, MAX_LINE_LEN, " %04u", (unsigned) MessageCode); +- strncat (Line, Line2, MAX_LINE_LEN - strlen (Line) - 1); ++ snprintf (Line + strlen (Line), MAX_LINE_LEN - strlen (Line), "%s", Line2); + } + fprintf (stdout, "%s", Line); + // +--- a/BaseTools/Source/C/Common/StringFuncs.c ++++ b/BaseTools/Source/C/Common/StringFuncs.c +@@ -136,7 +136,6 @@ + CHAR8 *EndOfSubString; + CHAR8 *EndOfString; + STRING_LIST *Output; +- UINTN Item; + + String = CloneString (String); + if (String == NULL) { +@@ -146,7 +145,7 @@ + + Output = NewStringList (); + +- for (Pos = String, Item = 0; Pos < EndOfString; Item++) { ++ for (Pos = String; Pos < EndOfString; Pos = EndOfSubString + 1) { + while (isspace ((int)*Pos)) { + Pos++; + } +@@ -165,7 +164,6 @@ + + AppendCopyOfStringToList (&Output, Pos); + +- Pos = EndOfSubString + 1; + } + + free (String); diff --git a/boot/clover/0003-BrotliCompress-match-decoder-buffer-declarations.patch b/boot/clover/0003-BrotliCompress-match-decoder-buffer-declarations.patch new file mode 100644 index 00000000000..d31a0d856f7 --- /dev/null +++ b/boot/clover/0003-BrotliCompress-match-decoder-buffer-declarations.patch @@ -0,0 +1,38 @@ +From: Christian Stewart +Subject: [PATCH] BrotliCompress: match buffer declarations + +Use the same bounded array declarations in the implementations and public +headers. GCC 16 diagnoses the mismatched declarations. + +Signed-off-by: Christian Stewart +Upstream: https://github.com/CloverHackyColor/CloverBootloader/pull/TODO +--- +--- a/BaseTools/Source/C/BrotliCompress/dec/decode.c ++++ b/BaseTools/Source/C/BrotliCompress/dec/decode.c +@@ -1942,8 +1942,10 @@ + } + + BrotliDecoderResult BrotliDecoderDecompress( +- size_t encoded_size, const uint8_t* encoded_buffer, size_t* decoded_size, +- uint8_t* decoded_buffer) { ++ size_t encoded_size, ++ const uint8_t encoded_buffer[BROTLI_ARRAY_PARAM(encoded_size)], ++ size_t* decoded_size, ++ uint8_t decoded_buffer[BROTLI_ARRAY_PARAM(*decoded_size)]) { + BrotliDecoderState s; + BrotliDecoderResult result; + size_t total_out = 0; +--- a/BaseTools/Source/C/BrotliCompress/enc/encode.c ++++ b/BaseTools/Source/C/BrotliCompress/enc/encode.c +@@ -1432,8 +1432,9 @@ + + BROTLI_BOOL BrotliEncoderCompress( + int quality, int lgwin, BrotliEncoderMode mode, size_t input_size, +- const uint8_t* input_buffer, size_t* encoded_size, +- uint8_t* encoded_buffer) { ++ const uint8_t input_buffer[BROTLI_ARRAY_PARAM(input_size)], ++ size_t* encoded_size, ++ uint8_t encoded_buffer[BROTLI_ARRAY_PARAM(*encoded_size)]) { + BrotliEncoderState* s; + size_t out_size = *encoded_size; + const uint8_t* input_start = input_buffer; diff --git a/boot/clover/0004-GenFfs-report-the-filename-on-allocation-failure.patch b/boot/clover/0004-GenFfs-report-the-filename-on-allocation-failure.patch new file mode 100644 index 00000000000..0f2fa8443cc --- /dev/null +++ b/boot/clover/0004-GenFfs-report-the-filename-on-allocation-failure.patch @@ -0,0 +1,48 @@ +From: Christian Stewart +Subject: [PATCH] BaseTools: report filenames on allocation failure + +The GenFfs and GenSec allocation errors pass closed FILE pointers to %s +conversions. Pass the input filenames and release the PE buffers on the +adjacent error paths. + +Signed-off-by: Christian Stewart +Upstream: https://github.com/CloverHackyColor/CloverBootloader/pull/TODO +--- +--- a/BaseTools/Source/C/GenFfs/GenFfs.c ++++ b/BaseTools/Source/C/GenFfs/GenFfs.c +@@ -542,7 +542,7 @@ + PeFileBuffer = (UINT8 *) malloc (PeFileSize); + if (PeFileBuffer == NULL) { + fclose (InFileHandle); +- Error(NULL, 0, 4001, "Resource", "memory cannot be allocated of %s", InFileHandle); ++ Error(NULL, 0, 4001, "Resource", "memory cannot be allocated for %s", InFile); + return EFI_OUT_OF_RESOURCES; + } + fread (PeFileBuffer, sizeof (UINT8), PeFileSize, InFileHandle); +@@ -554,6 +554,7 @@ + Status = PeCoffLoaderGetImageInfo(&ImageContext); + if (EFI_ERROR (Status)) { + Error (NULL, 0, 3000, "Invalid PeImage", "The input file is %s and return status is %x", InFile, (int) Status); ++ free (PeFileBuffer); + return Status; + } + *Alignment = ImageContext.SectionAlignment; +--- a/BaseTools/Source/C/GenSec/GenSec.c ++++ b/BaseTools/Source/C/GenSec/GenSec.c +@@ -1062,7 +1062,7 @@ + PeFileBuffer = (UINT8 *) malloc (PeFileSize); + if (PeFileBuffer == NULL) { + fclose (InFileHandle); +- Error(NULL, 0, 4001, "Resource", "memory cannot be allocated of %s", InFileHandle); ++ Error(NULL, 0, 4001, "Resource", "memory cannot be allocated for %s", InFile); + return EFI_OUT_OF_RESOURCES; + } + fread (PeFileBuffer, sizeof (UINT8), PeFileSize, InFileHandle); +@@ -1074,6 +1074,7 @@ + Status = PeCoffLoaderGetImageInfo(&ImageContext); + if (EFI_ERROR (Status)) { + Error (NULL, 0, 3000, "Invalid PeImage", "The input file is %s and return status is %x", InFile, (int) Status); ++ free (PeFileBuffer); + return Status; + } + *Alignment = ImageContext.SectionAlignment; diff --git a/boot/clover/0005-LzmaCompress-clear-stack-output-stream-pointers.patch b/boot/clover/0005-LzmaCompress-clear-stack-output-stream-pointers.patch new file mode 100644 index 00000000000..0df97ac2c7c --- /dev/null +++ b/boot/clover/0005-LzmaCompress-clear-stack-output-stream-pointers.patch @@ -0,0 +1,38 @@ +From: Christian Stewart +Subject: [PATCH] LzmaCompress: clear stack output stream pointers + +The encoder state retains pointers to stack output streams after two memory +encoding functions return. Clear the pointers after the encoder has finished +using each stream. + +Signed-off-by: Christian Stewart +Upstream: https://github.com/CloverHackyColor/CloverBootloader/pull/TODO +--- +--- a/BaseTools/Source/C/LzmaCompress/Sdk/C/LzmaEnc.c ++++ b/BaseTools/Source/C/LzmaCompress/Sdk/C/LzmaEnc.c +@@ -2638,15 +2638,15 @@ + + nowPos64 = p->nowPos64; + RangeEnc_Init(&p->rc); +- p->rc.outStream = &outStream.vt; +- + if (desiredPackSize == 0) + return SZ_ERROR_OUTPUT_EOF; + ++ p->rc.outStream = &outStream.vt; + res = LzmaEnc_CodeOneBlock(p, desiredPackSize, *unpackSize); + + *unpackSize = (UInt32)(p->nowPos64 - nowPos64); + *destLen -= outStream.rem; ++ p->rc.outStream = NULL; + if (outStream.overflow) + return SZ_ERROR_OUTPUT_EOF; + +@@ -2760,6 +2760,7 @@ + } + + *destLen -= outStream.rem; ++ p->rc.outStream = NULL; + if (outStream.overflow) + return SZ_ERROR_OUTPUT_EOF; + return res; diff --git a/boot/clover/Config.in b/boot/clover/Config.in new file mode 100644 index 00000000000..a855d045d69 --- /dev/null +++ b/boot/clover/Config.in @@ -0,0 +1,24 @@ +config BR2_TARGET_CLOVER + bool "clover" + depends on BR2_x86_64 + depends on BR2_INSTALL_LIBSTDCPP + depends on !BR2_TARGET_CLOVER_BIN + help + Clover is a graphical UEFI boot manager built from source. + + https://github.com/CloverHackyColor/CloverBootloader + +if BR2_TARGET_CLOVER + +config BR2_TARGET_CLOVER_INSTALL_FALLBACK + bool "install Clover as the fallback bootloader" + help + Install Clover as EFI/BOOT/BOOTX64.efi. Do not enable this + when another package, such as GRUB, supplies that path. + +endif + +comment "clover needs a toolchain w/ C++" + depends on BR2_x86_64 + depends on !BR2_INSTALL_LIBSTDCPP + depends on !BR2_TARGET_CLOVER_BIN diff --git a/boot/clover/clover.hash b/boot/clover/clover.hash new file mode 100644 index 00000000000..2095e3644d4 --- /dev/null +++ b/boot/clover/clover.hash @@ -0,0 +1,5 @@ +# Locally calculated +sha256 f1bba533f5d1487de4ad10df136c0fc0cfbcf6c871ec53e95df4838787266cb3 clover-4435598401a0e9fafb9739a7e6e097adbb0e3c1a.tar.gz +sha256 3024bd126506235b5b6467c26a0411848a3ab0707cc3db09ea347486f03f6a2d OpenCorePkg-3c845217937d8522030db95183b5d0948b70bd32.tar.gz +sha256 9ad38268029f8604cdadb30d598d42f67697cddb738a962250bc966bda2edcd2 LICENSE +sha256 4ca709aac88e7b297e794f464d6557203b23a4e92e792b579bb968fef2bce4c4 LICENSE.txt diff --git a/boot/clover/clover.mk b/boot/clover/clover.mk new file mode 100644 index 00000000000..8f4cdaf76b9 --- /dev/null +++ b/boot/clover/clover.mk @@ -0,0 +1,73 @@ +################################################################################ +# +# clover +# +################################################################################ + +CLOVER_VERSION = 4435598401a0e9fafb9739a7e6e097adbb0e3c1a +CLOVER_SOURCE_DATE_EPOCH = 1786385379 +CLOVER_SITE = $(call github,CloverHackyColor,CloverBootloader,$(CLOVER_VERSION)) +CLOVER_OPENCORPKG_VERSION = 3c845217937d8522030db95183b5d0948b70bd32 +CLOVER_EXTRA_DOWNLOADS = https://github.com/acidanthera/OpenCorePkg/archive/$(CLOVER_OPENCORPKG_VERSION)/OpenCorePkg-$(CLOVER_OPENCORPKG_VERSION).tar.gz +CLOVER_LICENSE = BSD-2-Clause, BSD-3-Clause +CLOVER_LICENSE_FILES = LICENSE OpenCorePkg/LICENSE.txt +CLOVER_DEPENDENCIES = host-python3 host-nasm host-acpica host-util-linux host-zip +CLOVER_INSTALL_IMAGES = YES + +# OpenCorePkg contains vendored code. Its top-level BSD-3-Clause license is +# declared above; its vendored components need a separate license audit. +define CLOVER_STAGE_OPENCORPKG + mkdir -p $(@D)/OpenCorePkg + $(TAR) -C $(@D)/OpenCorePkg --strip-components=1 \ + -xf $(CLOVER_DL_DIR)/OpenCorePkg-$(CLOVER_OPENCORPKG_VERSION).tar.gz +endef +CLOVER_POST_EXTRACT_HOOKS += CLOVER_STAGE_OPENCORPKG + +define CLOVER_NORMALIZE_BASETOOLS_LINE_ENDINGS + $(SED) 's/\r$$//' \ + $(@D)/BaseTools/Source/C/Common/EfiUtilityMsgs.c \ + $(@D)/BaseTools/Source/C/Common/StringFuncs.c \ + $(@D)/BaseTools/Source/C/BrotliCompress/dec/decode.c \ + $(@D)/BaseTools/Source/C/BrotliCompress/enc/encode.c \ + $(@D)/BaseTools/Source/C/GenFfs/GenFfs.c \ + $(@D)/BaseTools/Source/C/GenSec/GenSec.c \ + $(@D)/BaseTools/Source/C/LzmaCompress/Sdk/C/LzmaEnc.c +endef +CLOVER_POST_EXTRACT_HOOKS += CLOVER_NORMALIZE_BASETOOLS_LINE_ENDINGS + +CLOVER_BUILD_ENV = \ + MAKEFLAGS= \ + SOURCE_DATE_EPOCH=$(CLOVER_SOURCE_DATE_EPOCH) \ + BUILD_CC="$(HOSTCC) -std=gnu17" \ + EXTRA_OPTFLAGS=-Wno-error=stringop-overflow \ + GCC161_BIN=$(TARGET_CROSS) \ + NASM_PREFIX=$(HOST_DIR)/bin/ \ + IASL_PREFIX=$(HOST_DIR)/bin/ \ + PYTHON_COMMAND=$(HOST_DIR)/bin/python3 + +define CLOVER_BUILD_CMDS + export $(CLOVER_BUILD_ENV) && \ + $(@D)/ebuild.sh -gcc161 -n $(BR2_JLEVEL) +endef + +CLOVER_EFI_DIR = $(BINARIES_DIR)/efi-part/EFI + +define CLOVER_INSTALL_IMAGES_CMDS + rm -rf $(CLOVER_EFI_DIR)/CLOVER + mkdir -p $(CLOVER_EFI_DIR) + cp -a $(@D)/CloverPackage/CloverV2/EFI/CLOVER $(CLOVER_EFI_DIR)/ + mv $(CLOVER_EFI_DIR)/CLOVER/drivers/off/UEFI/FileSystem/Ext4Dxe.efi \ + $(CLOVER_EFI_DIR)/CLOVER/drivers/UEFI/ +endef + +ifeq ($(BR2_TARGET_CLOVER_INSTALL_FALLBACK),y) +define CLOVER_INSTALL_FALLBACK + mkdir -p $(CLOVER_EFI_DIR)/BOOT + find $(CLOVER_EFI_DIR)/BOOT -maxdepth 1 -iname bootx64.efi -delete + $(INSTALL) -m 0755 -D $(@D)/CloverPackage/CloverV2/EFI/BOOT/BOOTX64.efi \ + $(CLOVER_EFI_DIR)/BOOT/BOOTX64.efi +endef +CLOVER_POST_INSTALL_IMAGES_HOOKS += CLOVER_INSTALL_FALLBACK +endif + +$(eval $(generic-package)) diff --git a/boot/edk2/0001-BaseTools-Source-C-VfrCompile-Fix-parallel-make-fail.patch b/boot/edk2/0001-BaseTools-Source-C-VfrCompile-Fix-parallel-make-fail.patch new file mode 100644 index 00000000000..020d3d7467c --- /dev/null +++ b/boot/edk2/0001-BaseTools-Source-C-VfrCompile-Fix-parallel-make-fail.patch @@ -0,0 +1,48 @@ +From 3d3af4812d29c5527e5a701d2cb7aff671fdc182 Mon Sep 17 00:00:00 2001 +From: Michael D Kinney +Date: Tue, 24 Feb 2026 21:50:20 -0800 +Subject: [PATCH] BaseTools/Source/C/VfrCompile: Fix parallel make failures + +Update makefile rules to run antlr and dlg to completion +before compiling any of the generated cpp files. + +Without this change, parallel make may start compiling some +of the cpp files before both antlr and dlg have finished +which produces syntax errors from compilation with partially +generated files. + +Also use &: so the targets are treated as a group and the +rule is only executed once for the entire group. Without +this change, parallel make may run the rule actions more +than once and modify the output while it is being used by +another rule. + +Upstream: https://github.com/tianocore/edk2/commit/9fc0aca51e83afda703963ea177feeb78a125cbc +Signed-off-by: Michael D Kinney +Signed-off-by: Julien Olivain +--- + BaseTools/Source/C/VfrCompile/GNUmakefile | 7 ++++--- + 1 file changed, 4 insertions(+), 3 deletions(-) + +diff --git a/BaseTools/Source/C/VfrCompile/GNUmakefile b/BaseTools/Source/C/VfrCompile/GNUmakefile +index b469bd3f30..4f10b1d933 100644 +--- a/BaseTools/Source/C/VfrCompile/GNUmakefile ++++ b/BaseTools/Source/C/VfrCompile/GNUmakefile +@@ -54,10 +54,11 @@ VfrCompiler.o: ../Include/Common/BuildVersion.h + + include $(MAKEROOT)/Makefiles/footer.makefile + +-VfrSyntax.cpp EfiVfrParser.cpp EfiVfrParser.h VfrParser.dlg VfrTokens.h: Pccts/antlr/antlr VfrSyntax.g +- Pccts/antlr/antlr -CC -e3 -ck 3 -k 2 -fl VfrParser.dlg -ft VfrTokens.h -o . VfrSyntax.g ++ANTLR_GEN = VfrSyntax.cpp EfiVfrParser.cpp EfiVfrParser.h VfrParser.dlg VfrTokens.h ++DLG_GEN = VfrLexer.cpp VfrLexer.h + +-VfrLexer.cpp VfrLexer.h: Pccts/dlg/dlg VfrParser.dlg ++$(ANTLR_GEN) $(DLG_GEN) &: Pccts/antlr/antlr Pccts/dlg/dlg VfrSyntax.g ++ Pccts/antlr/antlr -CC -e3 -ck 3 -k 2 -fl VfrParser.dlg -ft VfrTokens.h -o . VfrSyntax.g + Pccts/dlg/dlg -C2 -i -CC -cl VfrLexer -o . VfrParser.dlg + + Pccts/antlr/antlr: +-- +2.53.0 + diff --git a/boot/edk2/Config.in b/boot/edk2/Config.in index 850b9a39de0..2620c790766 100644 --- a/boot/edk2/Config.in +++ b/boot/edk2/Config.in @@ -21,20 +21,12 @@ if BR2_TARGET_EDK2 choice prompt "Platform" - default BR2_TARGET_EDK2_PLATFORM_OVMF_I386 if BR2_i386 default BR2_TARGET_EDK2_PLATFORM_OVMF_LOONGARCH64 if \ BR2_loongarch64 default BR2_TARGET_EDK2_PLATFORM_OVMF_RISCV if BR2_RISCV_64 default BR2_TARGET_EDK2_PLATFORM_OVMF_X64 if BR2_x86_64 default BR2_TARGET_EDK2_PLATFORM_ARM_VIRT_QEMU if BR2_aarch64 -config BR2_TARGET_EDK2_PLATFORM_OVMF_I386 - bool "i386" - depends on BR2_i386 || BR2_x86_64 - help - Platform configuration for a generic i386 target. - This platform will boot from flash address 0x0. - config BR2_TARGET_EDK2_PLATFORM_OVMF_LOONGARCH64 bool "LoongArch64" depends on BR2_loongarch64 @@ -118,8 +110,7 @@ endchoice config BR2_TARGET_EDK2_OVMF_DEBUG_ON_SERIAL bool "OVMF Debug on Serial" depends on BR2_ENABLE_DEBUG - depends on BR2_TARGET_EDK2_PLATFORM_OVMF_I386 || \ - BR2_TARGET_EDK2_PLATFORM_OVMF_X64 + depends on BR2_TARGET_EDK2_PLATFORM_OVMF_X64 help When EDK2 OVMF is built with debug, messages are printed to IO port 0x402. Those messages are not shown in the normal @@ -130,9 +121,23 @@ config BR2_TARGET_EDK2_OVMF_DEBUG_ON_SERIAL See OVMF README: https://github.com/tianocore/edk2/blob/master/OvmfPkg/README +config BR2_TARGET_EDK2_EXTRA_BUILD_OPTS + string "Extra build options" + help + EDK2 build may include extra options. Those are usually in + the form of "-D SOMEFLAG_ENABLE" and might be specific for a + processor architecture or a platform. For example: "-D + NETWORK_HTTP_BOOT_ENABLE", "-D NETWORK_TLS_ENABLE", ... + + Those options are generally documented in their respective + packages. See for example: + https://github.com/tianocore/edk2/blob/master/OvmfPkg/README + + This configuration is an arbitrary string that will be + passed to the build command. + config BR2_TARGET_EDK2_FD_NAME string - default "OVMF" if BR2_TARGET_EDK2_PLATFORM_OVMF_I386 default "OVMF" if BR2_TARGET_EDK2_PLATFORM_OVMF_X64 default "QEMU_EFI" if BR2_TARGET_EDK2_PLATFORM_ARM_VIRT_QEMU default "QEMU_EFI" if BR2_TARGET_EDK2_PLATFORM_ARM_VIRT_QEMU_KERNEL diff --git a/boot/edk2/edk2.hash b/boot/edk2/edk2.hash index 68fae47afcb..ab9bbcf7efb 100644 --- a/boot/edk2/edk2.hash +++ b/boot/edk2/edk2.hash @@ -1,3 +1,3 @@ # Locally calculated -sha256 e05130e107d476cdec0846f55f22e00fb2cc0030b60fafce464a6cf10134d18d edk2-edk2-stable202505-git4.tar.gz +sha256 a44b47f2d233213cdb848206bda8d475b264ed1a2cf097ae9cd82581e4aa2090 edk2-edk2-stable202602-git4.tar.gz sha256 50ce20c9cfdb0e19ee34fe0a51fc0afe961f743697b068359ab2f862b494df80 License.txt diff --git a/boot/edk2/edk2.mk b/boot/edk2/edk2.mk index 3612c86fb1e..11d9b90e7f5 100644 --- a/boot/edk2/edk2.mk +++ b/boot/edk2/edk2.mk @@ -4,7 +4,7 @@ # ################################################################################ -EDK2_VERSION = edk2-stable202505 +EDK2_VERSION = edk2-stable202602 EDK2_SITE = https://github.com/tianocore/edk2 EDK2_SITE_METHOD = git EDK2_LICENSE = BSD-2-Clause-Patent @@ -56,14 +56,7 @@ EDK2_GIT_SUBMODULES = YES EDK2_BUILD_PACKAGES = $(@D)/Build/Buildroot EDK2_PACKAGES_PATHS = $(@D) $(EDK2_BUILD_PACKAGES) $(STAGING_DIR)/usr/share/edk2-platforms -ifeq ($(BR2_TARGET_EDK2_PLATFORM_OVMF_I386),y) -EDK2_ARCH = IA32 -EDK2_DEPENDENCIES += host-nasm -EDK2_PACKAGE_NAME = OvmfPkg -EDK2_PLATFORM_NAME = OvmfPkgIa32 -EDK2_BUILD_DIR = OvmfIa32 - -else ifeq ($(BR2_TARGET_EDK2_PLATFORM_OVMF_X64),y) +ifeq ($(BR2_TARGET_EDK2_PLATFORM_OVMF_X64),y) EDK2_ARCH = X64 EDK2_DEPENDENCIES += host-nasm EDK2_PACKAGE_NAME = OvmfPkg @@ -74,13 +67,13 @@ else ifeq ($(BR2_TARGET_EDK2_PLATFORM_ARM_VIRT_QEMU),y) EDK2_ARCH = AARCH64 EDK2_PACKAGE_NAME = ArmVirtPkg EDK2_PLATFORM_NAME = ArmVirtQemu -EDK2_BUILD_DIR = $(EDK2_PLATFORM_NAME)-$(EDK2_ARCH) +EDK2_BUILD_DIR = $(EDK2_PLATFORM_NAME)-AArch64 else ifeq ($(BR2_TARGET_EDK2_PLATFORM_ARM_VIRT_QEMU_KERNEL),y) EDK2_ARCH = AARCH64 EDK2_PACKAGE_NAME = ArmVirtPkg EDK2_PLATFORM_NAME = ArmVirtQemuKernel -EDK2_BUILD_DIR = $(EDK2_PLATFORM_NAME)-$(EDK2_ARCH) +EDK2_BUILD_DIR = $(EDK2_PLATFORM_NAME)-AArch64 else ifeq ($(BR2_TARGET_EDK2_PLATFORM_ARM_SGI575),y) EDK2_ARCH = AARCH64 @@ -156,7 +149,8 @@ EDK2_BUILD_OPTS += \ -n $(BR2_JLEVEL) \ -a $(EDK2_ARCH) \ -b $(EDK2_BUILD_TYPE) \ - -p $(EDK2_PACKAGE_NAME)/$(EDK2_PLATFORM_NAME).dsc + -p $(EDK2_PACKAGE_NAME)/$(EDK2_PLATFORM_NAME).dsc \ + $(call qstrip,$(BR2_TARGET_EDK2_EXTRA_BUILD_OPTS)) define EDK2_BUILD_CMDS mkdir -p $(EDK2_BUILD_PACKAGES) diff --git a/boot/grub2/0001-Add-missing-grub-core-extra_deps.lst-file-in-release.patch b/boot/grub2/0001-Add-missing-grub-core-extra_deps.lst-file-in-release.patch deleted file mode 100644 index 2a7c206b2db..00000000000 --- a/boot/grub2/0001-Add-missing-grub-core-extra_deps.lst-file-in-release.patch +++ /dev/null @@ -1,37 +0,0 @@ -From 4d4dae6a52b1749642261a15f5dcc1e3d4150b36 Mon Sep 17 00:00:00 2001 -From: Julien Olivain -Date: Fri, 22 Dec 2023 19:02:53 +0100 -Subject: [PATCH] Add missing grub-core/extra_deps.lst file in release tarball - -A file is missing in the grub-2.12 release tarballs (both .gz and .xz). -See [1]. The issue was reported in [2] and fixed upstream in [3]. - -This patch adds the missing file, on top of the release tarball. This -patch won't apply on upstream git, since the file is present in the -source repository. Since the issue is fixed upstream in [3], it is -expected upcoming releases tarballs will include the file. - -The file content was fetched from the upstream git repo: -https://git.savannah.gnu.org/gitweb/?p=grub.git;a=blob_plain;f=grub-core/extra_deps.lst;hb=refs/tags/grub-2.12 - -[1] https://ftp.gnu.org/gnu/grub/grub-2.12.tar.xz -[2] https://lists.gnu.org/archive/html/grub-devel/2023-12/msg00054.html -[3] https://git.savannah.gnu.org/gitweb/?p=grub.git;a=commit;h=b835601c7639ed1890f2d3db91900a8506011a8e - -Signed-off-by: Julien Olivain -Upstream: Fixed by: https://git.savannah.gnu.org/gitweb/?p=grub.git;a=commit;h=b835601c7639ed1890f2d3db91900a8506011a8e ---- - grub-core/extra_deps.lst | 1 + - 1 file changed, 1 insertion(+) - create mode 100644 grub-core/extra_deps.lst - -diff --git a/grub-core/extra_deps.lst b/grub-core/extra_deps.lst -new file mode 100644 -index 0000000..f44ad6a ---- /dev/null -+++ b/grub-core/extra_deps.lst -@@ -0,0 +1 @@ -+depends bli part_gpt --- -2.43.0 - diff --git a/boot/grub2/0001-Revert-configure-Check-linker-for-image-base-support.patch b/boot/grub2/0001-Revert-configure-Check-linker-for-image-base-support.patch new file mode 100644 index 00000000000..edfaea2de8e --- /dev/null +++ b/boot/grub2/0001-Revert-configure-Check-linker-for-image-base-support.patch @@ -0,0 +1,75 @@ +From 3a9d2dd2f5fb07b75a74c307d61b9b9fc5d20a62 Mon Sep 17 00:00:00 2001 +From: Yi Zhao +Date: Fri, 27 Feb 2026 11:46:54 +0800 +Subject: [PATCH] Revert "configure: Check linker for --image-base support" + +This reverts commit 1a5417f39a0ccefcdd5440f2a67f84d2d2e26960. + +Signed-off-by: Yi Zhao +Upstream: temporary revert, until upstream fixes the issue, see +discussion at +https://lists.gnu.org/archive/html/grub-devel/2026-02/msg00039.html +Signed-off-by: Thomas Petazzoni +--- + acinclude.m4 | 5 ----- + configure.ac | 14 ++------------ + 2 files changed, 2 insertions(+), 17 deletions(-) + +diff --git a/acinclude.m4 b/acinclude.m4 +index 70c1912f8..fa7840f09 100644 +--- a/acinclude.m4 ++++ b/acinclude.m4 +@@ -79,11 +79,6 @@ AC_DEFUN([grub_PROG_OBJCOPY_ABSOLUTE], + [AC_MSG_CHECKING([whether ${TARGET_OBJCOPY} works for absolute addresses]) + AC_CACHE_VAL(grub_cv_prog_objcopy_absolute, + [cat > conftest.c <<\EOF +-asm ( +- ".globl start, _start, __start\n" +- ".ifdef cmain; .set start = _start = __start = cmain\n.endif\n" +- ".ifdef _cmain; .set start = _start = __start = _cmain\n.endif\n" +-); + void cmain (void); + void + cmain (void) +diff --git a/configure.ac b/configure.ac +index d8ca1b7c1..041cfbab4 100644 +--- a/configure.ac ++++ b/configure.ac +@@ -1461,6 +1461,7 @@ elif test x$grub_cv_target_cc_link_format = x-mi386pe || test x$grub_cv_target_c + TARGET_IMG_LDSCRIPT='$(top_srcdir)'"/conf/i386-cygwin-img-ld.sc" + TARGET_IMG_LDFLAGS="-Wl,-T${TARGET_IMG_LDSCRIPT}" + TARGET_IMG_LDFLAGS_AC="-Wl,-T${srcdir}/conf/i386-cygwin-img-ld.sc" ++ TARGET_IMG_BASE_LDOPT="-Wl,-Ttext" + TARGET_IMG_CFLAGS= + else + TARGET_APPLE_LINKER=0 +@@ -1468,6 +1469,7 @@ else + TARGET_IMG_LDSCRIPT= + TARGET_IMG_LDFLAGS='-Wl,-N' + TARGET_IMG_LDFLAGS_AC='-Wl,-N' ++ TARGET_IMG_BASE_LDOPT="-Wl,-Ttext" + TARGET_IMG_CFLAGS= + fi + +@@ -1798,18 +1800,6 @@ grub_PROG_TARGET_CC + m4_ifndef([AX_CHECK_LINK_FLAG], [m4_fatal([autoconf-archive is missing. You must install it to generate the configure script.])]) + + if test "x$TARGET_APPLE_LINKER" != x1 ; then +-AX_CHECK_LINK_FLAG([-Wl,--image-base,0x400000], +- [TARGET_IMG_BASE_LDOPT="-Wl,--image-base"], +- [TARGET_IMG_BASE_LDOPT="-Wl,-Ttext"], +- [], +- [AC_LANG_SOURCE([ +-asm (".globl start; start:"); +-asm (".globl _start; _start:"); +-asm (".globl __start; __start:"); +-void __main (void); +-void __main (void) {} +-int main (void); +- ])]) + grub_PROG_OBJCOPY_ABSOLUTE + fi + grub_PROG_LD_BUILD_ID_NONE +-- +2.43.0 + diff --git a/boot/grub2/0002-Revert-configure-Print-a-more-helpful-error-if-autoc.patch b/boot/grub2/0002-Revert-configure-Print-a-more-helpful-error-if-autoc.patch new file mode 100644 index 00000000000..8e38bb9d3fc --- /dev/null +++ b/boot/grub2/0002-Revert-configure-Print-a-more-helpful-error-if-autoc.patch @@ -0,0 +1,36 @@ +From d0f516385dc73e8dd92b78ce08c1df100434fe67 Mon Sep 17 00:00:00 2001 +From: Yi Zhao +Date: Fri, 27 Feb 2026 13:58:44 +0800 +Subject: [PATCH] Revert "configure: Print a more helpful error if + autoconf-archive is not installed" + +This reverts commit ac042f3f58d33ce9cd5ff61750f06da1a1d7b0eb. + +Signed-off-by: Yi Zhao +Upstream: temporary revert, until upstream fixes the issue, see +discussion at +https://lists.gnu.org/archive/html/grub-devel/2026-02/msg00039.html +Signed-off-by: Thomas Petazzoni +--- + configure.ac | 5 ----- + 1 file changed, 5 deletions(-) + +diff --git a/configure.ac b/configure.ac +index 041cfbab4..209c0fb11 100644 +--- a/configure.ac ++++ b/configure.ac +@@ -1794,11 +1794,6 @@ LIBS="" + # Defined in acinclude.m4. + grub_ASM_USCORE + grub_PROG_TARGET_CC +- +-# The error message produced by autoconf if autoconf-archive is not installed is +-# quite misleading and not very helpful. So, try point people in the right direction. +-m4_ifndef([AX_CHECK_LINK_FLAG], [m4_fatal([autoconf-archive is missing. You must install it to generate the configure script.])]) +- + if test "x$TARGET_APPLE_LINKER" != x1 ; then + grub_PROG_OBJCOPY_ABSOLUTE + fi +-- +2.43.0 + diff --git a/boot/grub2/0002-misc-Implement-grub_strlcpy.patch b/boot/grub2/0002-misc-Implement-grub_strlcpy.patch deleted file mode 100644 index f512df44400..00000000000 --- a/boot/grub2/0002-misc-Implement-grub_strlcpy.patch +++ /dev/null @@ -1,70 +0,0 @@ -From 67241595d3dae392589ee74b65cd40ea090d1837 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sat, 15 Jun 2024 02:33:08 +0100 -Subject: [PATCH] misc: Implement grub_strlcpy() - -grub_strlcpy() acts the same way as strlcpy() does on most *NIX, -returning the length of src and ensuring dest is always NUL -terminated except when size is 0. - -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: ea703528a8581a2ea7e0bad424a70fdf0aec7d8f -Signed-off-by: Thomas Petazzoni ---- - include/grub/misc.h | 39 +++++++++++++++++++++++++++++++++++++++ - 1 file changed, 39 insertions(+) - -diff --git a/include/grub/misc.h b/include/grub/misc.h -index 1b35a167f..103175480 100644 ---- a/include/grub/misc.h -+++ b/include/grub/misc.h -@@ -64,6 +64,45 @@ grub_stpcpy (char *dest, const char *src) - return d - 1; - } - -+static inline grub_size_t -+grub_strlcpy (char *dest, const char *src, grub_size_t size) -+{ -+ char *d = dest; -+ grub_size_t res = 0; -+ /* -+ * We do not subtract one from size here to avoid dealing with underflowing -+ * the value, which is why to_copy is always checked to be greater than one -+ * throughout this function. -+ */ -+ grub_size_t to_copy = size; -+ -+ /* Copy size - 1 bytes to dest. */ -+ if (to_copy > 1) -+ while ((*d++ = *src++) != '\0' && ++res && --to_copy > 1) -+ ; -+ -+ /* -+ * NUL terminate if size != 0. The previous step may have copied a NUL byte -+ * if it reached the end of the string, but we know dest[size - 1] must always -+ * be a NUL byte. -+ */ -+ if (size != 0) -+ dest[size - 1] = '\0'; -+ -+ /* If there is still space in dest, but are here, we reached the end of src. */ -+ if (to_copy > 1) -+ return res; -+ -+ /* -+ * If we haven't reached the end of the string, iterate through to determine -+ * the strings total length. -+ */ -+ while (*src++ != '\0' && ++res) -+ ; -+ -+ return res; -+} -+ - /* XXX: If grub_memmove is too slow, we must implement grub_memcpy. */ - static inline void * - grub_memcpy (void *dest, const void *src, grub_size_t n) --- -2.50.1 - diff --git a/boot/grub2/0003-fs-ufs-Fix-a-heap-OOB-write.patch b/boot/grub2/0003-fs-ufs-Fix-a-heap-OOB-write.patch deleted file mode 100644 index 0d822cba249..00000000000 --- a/boot/grub2/0003-fs-ufs-Fix-a-heap-OOB-write.patch +++ /dev/null @@ -1,36 +0,0 @@ -From ab0f52dadcda56782b3e82be0b15fa6eb0e9cee1 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 02:03:33 +0100 -Subject: [PATCH] fs/ufs: Fix a heap OOB write - -grub_strcpy() was used to copy a symlink name from the filesystem -image to a heap allocated buffer. This led to a OOB write to adjacent -heap allocations. Fix by using grub_strlcpy(). - -Fixes: CVE-2024-45781 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: c1a291b01f4f1dcd6a22b61f1c81a45a966d16ba -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/ufs.c | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/grub-core/fs/ufs.c b/grub-core/fs/ufs.c -index a354c92d9..01235101b 100644 ---- a/grub-core/fs/ufs.c -+++ b/grub-core/fs/ufs.c -@@ -463,7 +463,7 @@ grub_ufs_lookup_symlink (struct grub_ufs_data *data, int ino) - /* Check against zero is paylindromic, no need to swap. */ - if (data->inode.nblocks == 0 - && INODE_SIZE (data) <= sizeof (data->inode.symlink)) -- grub_strcpy (symlink, (char *) data->inode.symlink); -+ grub_strlcpy (symlink, (char *) data->inode.symlink, sz); - else - { - if (grub_ufs_read_file (data, 0, 0, 0, sz, symlink) < 0) --- -2.50.1 - diff --git a/boot/grub2/0004-fs-hfs-Fix-stack-OOB-write-with-grub_strcpy.patch b/boot/grub2/0004-fs-hfs-Fix-stack-OOB-write-with-grub_strcpy.patch deleted file mode 100644 index 40df727a609..00000000000 --- a/boot/grub2/0004-fs-hfs-Fix-stack-OOB-write-with-grub_strcpy.patch +++ /dev/null @@ -1,36 +0,0 @@ -From 157e6e2a3da139dc2e08cf41b49115965cdaa1d3 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 02:48:33 +0100 -Subject: [PATCH] fs/hfs: Fix stack OOB write with grub_strcpy() - -Replaced with grub_strlcpy(). - -Fixes: CVE-2024-45782 -Fixes: CVE-2024-56737 -Fixes: https://savannah.gnu.org/bugs/?66599 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 417547c10410b714e43f08f74137c24015f8f4c3 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/hfs.c | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/grub-core/fs/hfs.c b/grub-core/fs/hfs.c -index 91dc0e69c..920112b03 100644 ---- a/grub-core/fs/hfs.c -+++ b/grub-core/fs/hfs.c -@@ -379,7 +379,7 @@ grub_hfs_mount (grub_disk_t disk) - volume name. */ - key.parent_dir = grub_cpu_to_be32_compile_time (1); - key.strlen = data->sblock.volname[0]; -- grub_strcpy ((char *) key.str, (char *) (data->sblock.volname + 1)); -+ grub_strlcpy ((char *) key.str, (char *) (data->sblock.volname + 1), sizeof (key.str)); - - if (grub_hfs_find_node (data, (char *) &key, data->cat_root, - 0, (char *) &dir, sizeof (dir)) == 0) --- -2.50.1 - diff --git a/boot/grub2/0005-fs-tar-Initialize-name-in-grub_cpio_find_file.patch b/boot/grub2/0005-fs-tar-Initialize-name-in-grub_cpio_find_file.patch deleted file mode 100644 index 444c02c44f1..00000000000 --- a/boot/grub2/0005-fs-tar-Initialize-name-in-grub_cpio_find_file.patch +++ /dev/null @@ -1,45 +0,0 @@ -From 2233c409ada20d1ab4a6a00a50cdde35e5a36589 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 02:47:54 +0100 -Subject: [PATCH] fs/tar: Initialize name in grub_cpio_find_file() - -It was possible to iterate through grub_cpio_find_file() without -allocating name and not setting mode to GRUB_ARCHELP_ATTR_END, which -would cause the uninitialized value for name to be used as an argument -for canonicalize() in grub_archelp_dir(). - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 2c8ac08c99466c0697f704242363fc687f492a0d -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/tar.c | 5 +++++ - 1 file changed, 5 insertions(+) - -diff --git a/grub-core/fs/tar.c b/grub-core/fs/tar.c -index c551ed6b5..646bce5eb 100644 ---- a/grub-core/fs/tar.c -+++ b/grub-core/fs/tar.c -@@ -78,6 +78,7 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - int reread = 0, have_longname = 0, have_longlink = 0; - - data->hofs = data->next_hofs; -+ *name = NULL; - - for (reread = 0; reread < 3; reread++) - { -@@ -202,6 +203,10 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - } - return GRUB_ERR_NONE; - } -+ -+ if (*name == NULL) -+ return grub_error (GRUB_ERR_BAD_FS, "invalid tar archive"); -+ - return GRUB_ERR_NONE; - } - --- -2.50.1 - diff --git a/boot/grub2/0006-fs-tar-Integer-overflow-leads-to-heap-OOB-write.patch b/boot/grub2/0006-fs-tar-Integer-overflow-leads-to-heap-OOB-write.patch deleted file mode 100644 index c3c845a50af..00000000000 --- a/boot/grub2/0006-fs-tar-Integer-overflow-leads-to-heap-OOB-write.patch +++ /dev/null @@ -1,94 +0,0 @@ -From 472e180b6aac8cb4f25affa687e68f9be4e3df79 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:27:58 +0000 -Subject: [PATCH] fs/tar: Integer overflow leads to heap OOB write - -Both namesize and linksize are derived from hd.size, a 12-digit octal -number parsed by read_number(). Later direct arithmetic calculation like -"namesize + 1" and "linksize + 1" may exceed the maximum value of -grub_size_t leading to heap OOB write. This patch fixes the issue by -using grub_add() and checking for an overflow. - -Fixes: CVE-2024-45780 - -Reported-by: Nils Langius -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: 0087bc6902182fe5cedce2d034c75a79cf6dd4f3 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/tar.c | 23 ++++++++++++++++++----- - 1 file changed, 18 insertions(+), 5 deletions(-) - -diff --git a/grub-core/fs/tar.c b/grub-core/fs/tar.c -index 646bce5eb..386c09022 100644 ---- a/grub-core/fs/tar.c -+++ b/grub-core/fs/tar.c -@@ -25,6 +25,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -76,6 +77,7 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - { - struct head hd; - int reread = 0, have_longname = 0, have_longlink = 0; -+ grub_size_t sz; - - data->hofs = data->next_hofs; - *name = NULL; -@@ -98,7 +100,11 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - { - grub_err_t err; - grub_size_t namesize = read_number (hd.size, sizeof (hd.size)); -- *name = grub_malloc (namesize + 1); -+ -+ if (grub_add (namesize, 1, &sz)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("name size overflow")); -+ -+ *name = grub_malloc (sz); - if (*name == NULL) - return grub_errno; - err = grub_disk_read (data->disk, 0, -@@ -118,15 +124,19 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - { - grub_err_t err; - grub_size_t linksize = read_number (hd.size, sizeof (hd.size)); -- if (data->linkname_alloc < linksize + 1) -+ -+ if (grub_add (linksize, 1, &sz)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("link size overflow")); -+ -+ if (data->linkname_alloc < sz) - { - char *n; -- n = grub_calloc (2, linksize + 1); -+ n = grub_calloc (2, sz); - if (!n) - return grub_errno; - grub_free (data->linkname); - data->linkname = n; -- data->linkname_alloc = 2 * (linksize + 1); -+ data->linkname_alloc = 2 * (sz); - } - - err = grub_disk_read (data->disk, 0, -@@ -149,7 +159,10 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - while (extra_size < sizeof (hd.prefix) - && hd.prefix[extra_size]) - extra_size++; -- *name = grub_malloc (sizeof (hd.name) + extra_size + 2); -+ -+ if (grub_add (sizeof (hd.name) + 2, extra_size, &sz)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("long name size overflow")); -+ *name = grub_malloc (sz); - if (*name == NULL) - return grub_errno; - if (hd.prefix[0]) --- -2.50.1 - diff --git a/boot/grub2/0007-fs-f2fs-Set-a-grub_errno-if-mount-fails.patch b/boot/grub2/0007-fs-f2fs-Set-a-grub_errno-if-mount-fails.patch deleted file mode 100644 index 320240b2663..00000000000 --- a/boot/grub2/0007-fs-f2fs-Set-a-grub_errno-if-mount-fails.patch +++ /dev/null @@ -1,36 +0,0 @@ -From 95f391673c0a08c2410454536614ef543cac6629 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 06:15:03 +0100 -Subject: [PATCH] fs/f2fs: Set a grub_errno if mount fails - -It was previously possible for grub_errno to not be set when -grub_f2fs_mount() failed if nat_bitmap_ptr() returned NULL. - -This issue is solved by ensuring a grub_errno is set in the fail case. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 563436258cde64da6b974880abff1bf0959f4da3 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/f2fs.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/fs/f2fs.c b/grub-core/fs/f2fs.c -index 855e24618..db8a65f8d 100644 ---- a/grub-core/fs/f2fs.c -+++ b/grub-core/fs/f2fs.c -@@ -872,6 +872,9 @@ grub_f2fs_mount (grub_disk_t disk) - return data; - - fail: -+ if (grub_errno == GRUB_ERR_NONE) -+ grub_error (GRUB_ERR_BAD_FS, "not a F2FS filesystem"); -+ - grub_free (data); - - return NULL; --- -2.50.1 - diff --git a/boot/grub2/0008-fs-hfsplus-Set-a-grub_errno-if-mount-fails.patch b/boot/grub2/0008-fs-hfsplus-Set-a-grub_errno-if-mount-fails.patch deleted file mode 100644 index 3493ab8af30..00000000000 --- a/boot/grub2/0008-fs-hfsplus-Set-a-grub_errno-if-mount-fails.patch +++ /dev/null @@ -1,40 +0,0 @@ -From 947e9e98d35edd7b359498b5f31338dc228f5081 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 06:22:51 +0100 -Subject: [PATCH] fs/hfsplus: Set a grub_errno if mount fails - -It was possible for mount to fail but not set grub_errno. This led to -a possible double decrement of the module reference count if the NULL -page was mapped. - -Fixing in general as a similar bug was fixed in commit 61b13c187 -(fs/hfsplus: Set grub_errno to prevent NULL pointer access) and there -are likely more variants around. - -Fixes: CVE-2024-45783 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: f7c070a2e28dfab7137db0739fb8db1dc02d8898 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/hfsplus.c | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/grub-core/fs/hfsplus.c b/grub-core/fs/hfsplus.c -index 295822f69..de71fd486 100644 ---- a/grub-core/fs/hfsplus.c -+++ b/grub-core/fs/hfsplus.c -@@ -405,7 +405,7 @@ grub_hfsplus_mount (grub_disk_t disk) - - fail: - -- if (grub_errno == GRUB_ERR_OUT_OF_RANGE) -+ if (grub_errno == GRUB_ERR_OUT_OF_RANGE || grub_errno == GRUB_ERR_NONE) - grub_error (GRUB_ERR_BAD_FS, "not a HFS+ filesystem"); - - grub_free (data); --- -2.50.1 - diff --git a/boot/grub2/0009-fs-iso9660-Set-a-grub_errno-if-mount-fails.patch b/boot/grub2/0009-fs-iso9660-Set-a-grub_errno-if-mount-fails.patch deleted file mode 100644 index d9c38b62ba9..00000000000 --- a/boot/grub2/0009-fs-iso9660-Set-a-grub_errno-if-mount-fails.patch +++ /dev/null @@ -1,38 +0,0 @@ -From a0e37c98e6f330110e4009f8e5ba73ca0c2eaff5 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 06:37:08 +0100 -Subject: [PATCH] fs/iso9660: Set a grub_errno if mount fails - -It was possible for a grub_errno to not be set if mount of an ISO 9660 -filesystem failed when set_rockridge() returned 0. - -This isn't known to be exploitable as the other filesystems due to -filesystem helper checking the requested file type. Though fixing -as a precaution. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 965db5970811d18069b34f28f5f31ddadde90a97 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/iso9660.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/fs/iso9660.c b/grub-core/fs/iso9660.c -index 8c348b59a..8d480e602 100644 ---- a/grub-core/fs/iso9660.c -+++ b/grub-core/fs/iso9660.c -@@ -551,6 +551,9 @@ grub_iso9660_mount (grub_disk_t disk) - return data; - - fail: -+ if (grub_errno == GRUB_ERR_NONE) -+ grub_error (GRUB_ERR_BAD_FS, "not a ISO9660 filesystem"); -+ - grub_free (data); - return 0; - } --- -2.50.1 - diff --git a/boot/grub2/0010-fs-iso9660-Fix-invalid-free.patch b/boot/grub2/0010-fs-iso9660-Fix-invalid-free.patch deleted file mode 100644 index 6bd1665234f..00000000000 --- a/boot/grub2/0010-fs-iso9660-Fix-invalid-free.patch +++ /dev/null @@ -1,55 +0,0 @@ -From 3acd964eafdd32e8ab7d7c04b18171052a859d3a Mon Sep 17 00:00:00 2001 -From: Michael Chang -Date: Fri, 31 May 2024 15:14:42 +0800 -Subject: [PATCH] fs/iso9660: Fix invalid free - -The ctx->filename can point to either a string literal or a dynamically -allocated string. The ctx->filename_alloc field is used to indicate the -type of allocation. - -An issue has been identified where ctx->filename is reassigned to -a string literal in susp_iterate_dir() but ctx->filename_alloc is not -correctly handled. This oversight causes a memory leak and an invalid -free operation later. - -The fix involves checking ctx->filename_alloc, freeing the allocated -string if necessary and clearing ctx->filename_alloc for string literals. - -Reported-by: Daniel Axtens -Signed-off-by: Michael Chang -Reviewed-by: Daniel Kiper -Upstream: 1443833a9535a5873f7de3798cf4d8389f366611 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/iso9660.c | 14 ++++++++++++-- - 1 file changed, 12 insertions(+), 2 deletions(-) - -diff --git a/grub-core/fs/iso9660.c b/grub-core/fs/iso9660.c -index 8d480e602..8e3c95c4f 100644 ---- a/grub-core/fs/iso9660.c -+++ b/grub-core/fs/iso9660.c -@@ -628,9 +628,19 @@ susp_iterate_dir (struct grub_iso9660_susp_entry *entry, - filename type is stored. */ - /* FIXME: Fix this slightly improper cast. */ - if (entry->data[0] & GRUB_ISO9660_RR_DOT) -- ctx->filename = (char *) "."; -+ { -+ if (ctx->filename_alloc) -+ grub_free (ctx->filename); -+ ctx->filename_alloc = 0; -+ ctx->filename = (char *) "."; -+ } - else if (entry->data[0] & GRUB_ISO9660_RR_DOTDOT) -- ctx->filename = (char *) ".."; -+ { -+ if (ctx->filename_alloc) -+ grub_free (ctx->filename); -+ ctx->filename_alloc = 0; -+ ctx->filename = (char *) ".."; -+ } - else if (entry->len >= 5) - { - grub_size_t off = 0, csize = 1; --- -2.50.1 - diff --git a/boot/grub2/0011-fs-jfs-Fix-OOB-read-in-jfs_getent.patch b/boot/grub2/0011-fs-jfs-Fix-OOB-read-in-jfs_getent.patch deleted file mode 100644 index 96e34b0e9f2..00000000000 --- a/boot/grub2/0011-fs-jfs-Fix-OOB-read-in-jfs_getent.patch +++ /dev/null @@ -1,68 +0,0 @@ -From b01accc4d132a252f02bf57c31f5fff8ce98a339 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:27:59 +0000 -Subject: [PATCH] fs/jfs: Fix OOB read in jfs_getent() - -The JFS fuzzing revealed an OOB read in grub_jfs_getent(). The crash -was caused by an invalid leaf nodes count, diro->dirpage->header.count, -which was larger than the maximum number of leaf nodes allowed in an -inode. This fix is to ensure that the leaf nodes count is validated in -grub_jfs_opendir() before calling grub_jfs_getent(). - -On the occasion replace existing raw numbers with newly defined constant. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: 66175696f3a385b14bdf1ebcda7755834bd2d5fb -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/jfs.c | 17 +++++++++++++++-- - 1 file changed, 15 insertions(+), 2 deletions(-) - -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index 6f7c43904..32dec7fb7 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -41,6 +41,12 @@ GRUB_MOD_LICENSE ("GPLv3+"); - - #define GRUB_JFS_TREE_LEAF 2 - -+/* -+ * Define max entries stored in-line in an inode. -+ * https://jfs.sourceforge.net/project/pub/jfslayout.pdf -+ */ -+#define GRUB_JFS_INODE_INLINE_ENTRIES 8 -+ - struct grub_jfs_sblock - { - /* The magic for JFS. It should contain the string "JFS1". */ -@@ -203,9 +209,9 @@ struct grub_jfs_inode - grub_uint8_t freecnt; - grub_uint8_t freelist; - grub_uint32_t idotdot; -- grub_uint8_t sorted[8]; -+ grub_uint8_t sorted[GRUB_JFS_INODE_INLINE_ENTRIES]; - } header; -- struct grub_jfs_leaf_dirent dirents[8]; -+ struct grub_jfs_leaf_dirent dirents[GRUB_JFS_INODE_INLINE_ENTRIES]; - } GRUB_PACKED dir; - /* Fast symlink. */ - struct -@@ -453,6 +459,13 @@ grub_jfs_opendir (struct grub_jfs_data *data, struct grub_jfs_inode *inode) - /* Check if the entire tree is contained within the inode. */ - if (inode->file.tree.flags & GRUB_JFS_TREE_LEAF) - { -+ if (inode->dir.header.count > GRUB_JFS_INODE_INLINE_ENTRIES) -+ { -+ grub_free (diro); -+ grub_error (GRUB_ERR_BAD_FS, N_("invalid JFS inode")); -+ return 0; -+ } -+ - diro->leaf = inode->dir.dirents; - diro->next_leaf = (struct grub_jfs_leaf_next_dirent *) de; - diro->sorted = inode->dir.header.sorted; --- -2.50.1 - diff --git a/boot/grub2/0012-fs-jfs-Fix-OOB-read-caused-by-invalid-dir-slot-index.patch b/boot/grub2/0012-fs-jfs-Fix-OOB-read-caused-by-invalid-dir-slot-index.patch deleted file mode 100644 index 6257a4b887e..00000000000 --- a/boot/grub2/0012-fs-jfs-Fix-OOB-read-caused-by-invalid-dir-slot-index.patch +++ /dev/null @@ -1,69 +0,0 @@ -From b35b73b9d779e88fb4e6f53fb10a5bfebf3475aa Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:28:00 +0000 -Subject: [PATCH] fs/jfs: Fix OOB read caused by invalid dir slot index - -While fuzz testing JFS with ASAN enabled an OOB read was detected in -grub_jfs_opendir(). The issue occurred due to an invalid directory slot -index in the first entry of the sorted directory slot array in the inode -directory header. The fix ensures the slot index is validated before -accessing it. Given that an internal or a leaf node in a directory B+ -tree is a 4 KiB in size and each directory slot is always 32 bytes, the -max number of slots in a node is 128. The validation ensures that the -slot index doesn't exceed this limit. - -[1] https://jfs.sourceforge.net/project/pub/jfslayout.pdf - - JFS will allocate 4K of disk space for an internal node of the B+ tree. - An internal node looks the same as a leaf node. - - page 10 - - Fixed number of Directory Slots depending on the size of the node. These are - the slots to be used for storing the directory slot array and the directory - entries or router entries. A directory slot is always 32 bytes. - ... - A Directory Slot Array which is a sorted array of indices to the directory - slots that are currently in use. - ... - An internal or a leaf node in the directory B+ tree is a 4K page. - - page 25 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: ab09fd0531f3523ac0ef833404526c98c08248f7 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/jfs.c | 9 +++++++++ - 1 file changed, 9 insertions(+) - -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index 32dec7fb7..88fb884df 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -46,6 +46,7 @@ GRUB_MOD_LICENSE ("GPLv3+"); - * https://jfs.sourceforge.net/project/pub/jfslayout.pdf - */ - #define GRUB_JFS_INODE_INLINE_ENTRIES 8 -+#define GRUB_JFS_DIR_MAX_SLOTS 128 - - struct grub_jfs_sblock - { -@@ -481,6 +482,14 @@ grub_jfs_opendir (struct grub_jfs_data *data, struct grub_jfs_inode *inode) - return 0; - } - -+ if (inode->dir.header.sorted[0] >= GRUB_JFS_DIR_MAX_SLOTS) -+ { -+ grub_error (GRUB_ERR_BAD_FS, N_("invalid directory slot index")); -+ grub_free (diro->dirpage); -+ grub_free (diro); -+ return 0; -+ } -+ - blk = grub_le_to_cpu32 (de[inode->dir.header.sorted[0]].ex.blk2); - blk <<= (grub_le_to_cpu16 (data->sblock.log2_blksz) - GRUB_DISK_SECTOR_BITS); - --- -2.50.1 - diff --git a/boot/grub2/0013-fs-jfs-Use-full-40-bits-offset-and-address-for-a-dat.patch b/boot/grub2/0013-fs-jfs-Use-full-40-bits-offset-and-address-for-a-dat.patch deleted file mode 100644 index cd5d69cf74b..00000000000 --- a/boot/grub2/0013-fs-jfs-Use-full-40-bits-offset-and-address-for-a-dat.patch +++ /dev/null @@ -1,133 +0,0 @@ -From 978c4c79935a375cb16d94e8114d96fee013c288 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Mon, 16 Dec 2024 20:22:39 +0000 -Subject: [PATCH] fs/jfs: Use full 40 bits offset and address for a data extent - -An extent's logical offset and address are represented as a 40-bit value -split into two parts: the most significant 8 bits and the least -significant 32 bits. Currently the JFS code uses only the least -significant 32 bits value for offsets and addresses assuming the data -size will never exceed the 32-bit range. This approach ignores the most -significant 8 bits potentially leading to incorrect offsets and -addresses for larger values. The patch fixes it by incorporating the -most significant 8 bits into the calculation to get the full 40-bits -value for offsets and addresses. - -https://jfs.sourceforge.net/project/pub/jfslayout.pdf - - "off1,off2 is a 40-bit field, containing the logical offset of the first - block in the extent. - ... - addr1,addr2 is a 40-bit field, containing the address of the extent." - -Signed-off-by: Lidong Chen -Reviewed-by: Alec Brown -Reviewed-by: Ross Philipson -Reviewed-by: Daniel Kiper -Upstream: bd999310fe67f35a66de3bfa2836da91589d04ef -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/jfs.c | 41 +++++++++++++++++++++++++++++------------ - 1 file changed, 29 insertions(+), 12 deletions(-) - -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index 88fb884df..2bde48d45 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -265,6 +265,20 @@ static grub_dl_t my_mod; - - static grub_err_t grub_jfs_lookup_symlink (struct grub_jfs_data *data, grub_uint32_t ino); - -+/* -+ * An extent's offset, physical and logical, is represented as a 40-bit value. -+ * This 40-bit value is split into two parts: -+ * - offset1: the most signficant 8 bits of the offset, -+ * - offset2: the least significant 32 bits of the offset. -+ * -+ * This function calculates and returns the 64-bit offset of an extent. -+ */ -+static grub_uint64_t -+get_ext_offset (grub_uint8_t offset1, grub_uint32_t offset2) -+{ -+ return (((grub_uint64_t) offset1 << 32) | grub_le_to_cpu32 (offset2)); -+} -+ - static grub_int64_t - getblk (struct grub_jfs_treehead *treehead, - struct grub_jfs_tree_extent *extents, -@@ -274,22 +288,25 @@ getblk (struct grub_jfs_treehead *treehead, - { - int found = -1; - int i; -+ grub_uint64_t ext_offset, ext_blk; - - for (i = 0; i < grub_le_to_cpu16 (treehead->count) - 2 && - i < max_extents; i++) - { -+ ext_offset = get_ext_offset (extents[i].offset1, extents[i].offset2); -+ ext_blk = get_ext_offset (extents[i].extent.blk1, extents[i].extent.blk2); -+ - if (treehead->flags & GRUB_JFS_TREE_LEAF) - { - /* Read the leafnode. */ -- if (grub_le_to_cpu32 (extents[i].offset2) <= blk -+ if (ext_offset <= blk - && ((grub_le_to_cpu16 (extents[i].extent.length)) - + (extents[i].extent.length2 << 16) -- + grub_le_to_cpu32 (extents[i].offset2)) > blk) -- return (blk - grub_le_to_cpu32 (extents[i].offset2) -- + grub_le_to_cpu32 (extents[i].extent.blk2)); -+ + ext_offset) > blk) -+ return (blk - ext_offset + ext_blk); - } - else -- if (blk >= grub_le_to_cpu32 (extents[i].offset2)) -+ if (blk >= ext_offset) - found = i; - } - -@@ -307,10 +324,9 @@ getblk (struct grub_jfs_treehead *treehead, - return -1; - - if (!grub_disk_read (data->disk, -- ((grub_disk_addr_t) grub_le_to_cpu32 (extents[found].extent.blk2)) -- << (grub_le_to_cpu16 (data->sblock.log2_blksz) -- - GRUB_DISK_SECTOR_BITS), 0, -- sizeof (*tree), (char *) tree)) -+ (grub_disk_addr_t) ext_blk -+ << (grub_le_to_cpu16 (data->sblock.log2_blksz) - GRUB_DISK_SECTOR_BITS), -+ 0, sizeof (*tree), (char *) tree)) - { - if (grub_memcmp (&tree->treehead, treehead, sizeof (struct grub_jfs_treehead)) || - grub_memcmp (&tree->extents, extents, 254 * sizeof (struct grub_jfs_tree_extent))) -@@ -361,7 +377,7 @@ grub_jfs_read_inode (struct grub_jfs_data *data, grub_uint32_t ino, - sizeof (iag_inodes), &iag_inodes)) - return grub_errno; - -- inoblk = grub_le_to_cpu32 (iag_inodes[inoext].blk2); -+ inoblk = get_ext_offset (iag_inodes[inoext].blk1, iag_inodes[inoext].blk2); - inoblk <<= (grub_le_to_cpu16 (data->sblock.log2_blksz) - - GRUB_DISK_SECTOR_BITS); - inoblk += inonum; -@@ -490,7 +506,8 @@ grub_jfs_opendir (struct grub_jfs_data *data, struct grub_jfs_inode *inode) - return 0; - } - -- blk = grub_le_to_cpu32 (de[inode->dir.header.sorted[0]].ex.blk2); -+ blk = get_ext_offset (de[inode->dir.header.sorted[0]].ex.blk1, -+ de[inode->dir.header.sorted[0]].ex.blk2); - blk <<= (grub_le_to_cpu16 (data->sblock.log2_blksz) - GRUB_DISK_SECTOR_BITS); - - /* Read in the nodes until we are on the leaf node level. */ -@@ -508,7 +525,7 @@ grub_jfs_opendir (struct grub_jfs_data *data, struct grub_jfs_inode *inode) - - de = (struct grub_jfs_internal_dirent *) diro->dirpage->dirent; - index = diro->dirpage->sorted[diro->dirpage->header.sindex * 32]; -- blk = (grub_le_to_cpu32 (de[index].ex.blk2) -+ blk = (get_ext_offset (de[index].ex.blk1, de[index].ex.blk2) - << (grub_le_to_cpu16 (data->sblock.log2_blksz) - - GRUB_DISK_SECTOR_BITS)); - } while (!(diro->dirpage->header.flags & GRUB_JFS_TREE_LEAF)); --- -2.50.1 - diff --git a/boot/grub2/0014-fs-jfs-Inconsistent-signed-unsigned-types-usage-in-r.patch b/boot/grub2/0014-fs-jfs-Inconsistent-signed-unsigned-types-usage-in-r.patch deleted file mode 100644 index f08e797b37a..00000000000 --- a/boot/grub2/0014-fs-jfs-Inconsistent-signed-unsigned-types-usage-in-r.patch +++ /dev/null @@ -1,90 +0,0 @@ -From 32f319d100c3b8f9b04e6a175f599c7411a54555 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Mon, 16 Dec 2024 20:22:40 +0000 -Subject: [PATCH] fs/jfs: Inconsistent signed/unsigned types usage in return - values - -The getblk() returns a value of type grub_int64_t which is assigned to -iagblk and inoblk, both of type grub_uint64_t, in grub_jfs_read_inode() -via grub_jfs_blkno(). This patch fixes the type mismatch in the -functions. Additionally, the getblk() will return 0 instead of -1 on -failure cases. This change is safe because grub_errno is always set in -getblk() to indicate errors and it is later checked in the callers. - -Signed-off-by: Lidong Chen -Reviewed-by: Alec Brown -Reviewed-by: Ross Philipson -Reviewed-by: Daniel Kiper -Upstream: edd995a26ec98654d907a9436a296c2d82bc4b28 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/jfs.c | 15 +++++++++------ - 1 file changed, 9 insertions(+), 6 deletions(-) - -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index 2bde48d45..70a2f4947 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -279,7 +279,7 @@ get_ext_offset (grub_uint8_t offset1, grub_uint32_t offset2) - return (((grub_uint64_t) offset1 << 32) | grub_le_to_cpu32 (offset2)); - } - --static grub_int64_t -+static grub_uint64_t - getblk (struct grub_jfs_treehead *treehead, - struct grub_jfs_tree_extent *extents, - int max_extents, -@@ -290,6 +290,8 @@ getblk (struct grub_jfs_treehead *treehead, - int i; - grub_uint64_t ext_offset, ext_blk; - -+ grub_errno = GRUB_ERR_NONE; -+ - for (i = 0; i < grub_le_to_cpu16 (treehead->count) - 2 && - i < max_extents; i++) - { -@@ -312,7 +314,7 @@ getblk (struct grub_jfs_treehead *treehead, - - if (found != -1) - { -- grub_int64_t ret = -1; -+ grub_uint64_t ret = 0; - struct - { - struct grub_jfs_treehead treehead; -@@ -321,7 +323,7 @@ getblk (struct grub_jfs_treehead *treehead, - - tree = grub_zalloc (sizeof (*tree)); - if (!tree) -- return -1; -+ return 0; - - if (!grub_disk_read (data->disk, - (grub_disk_addr_t) ext_blk -@@ -334,19 +336,20 @@ getblk (struct grub_jfs_treehead *treehead, - else - { - grub_error (GRUB_ERR_BAD_FS, "jfs: infinite recursion detected"); -- ret = -1; -+ ret = 0; - } - } - grub_free (tree); - return ret; - } - -- return -1; -+ grub_error (GRUB_ERR_READ_ERROR, "jfs: block %" PRIuGRUB_UINT64_T " not found", blk); -+ return 0; - } - - /* Get the block number for the block BLK in the node INODE in the - mounted filesystem DATA. */ --static grub_int64_t -+static grub_uint64_t - grub_jfs_blkno (struct grub_jfs_data *data, struct grub_jfs_inode *inode, - grub_uint64_t blk) - { --- -2.50.1 - diff --git a/boot/grub2/0015-fs-ext2-Fix-out-of-bounds-read-for-inline-extents.patch b/boot/grub2/0015-fs-ext2-Fix-out-of-bounds-read-for-inline-extents.patch deleted file mode 100644 index c04fb8eae03..00000000000 --- a/boot/grub2/0015-fs-ext2-Fix-out-of-bounds-read-for-inline-extents.patch +++ /dev/null @@ -1,51 +0,0 @@ -From 7da8e2e23db5f1ddb9c4dc992c69349149163c4c Mon Sep 17 00:00:00 2001 -From: Michael Chang -Date: Fri, 31 May 2024 15:14:23 +0800 -Subject: [PATCH] fs/ext2: Fix out-of-bounds read for inline extents - -When inline extents are used, i.e. the extent tree depth equals zero, -a maximum of four entries can fit into the inode's data block. If the -extent header states a number of entries greater than four the current -ext2 implementation causes an out-of-bounds read. Fix this issue by -capping the number of extents to four when reading inline extents. - -Reported-by: Daniel Axtens -Signed-off-by: Michael Chang -Reviewed-by: Daniel Kiper -Upstream: 7e2f750f0a795c4d64ec7dc7591edac8da2e978c -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/ext2.c | 10 +++++++++- - 1 file changed, 9 insertions(+), 1 deletion(-) - -diff --git a/grub-core/fs/ext2.c b/grub-core/fs/ext2.c -index e1cc5e62a..3f9f6b208 100644 ---- a/grub-core/fs/ext2.c -+++ b/grub-core/fs/ext2.c -@@ -495,6 +495,8 @@ grub_ext2_read_block (grub_fshelp_node_t node, grub_disk_addr_t fileblock) - struct grub_ext4_extent *ext; - int i; - grub_disk_addr_t ret; -+ grub_uint16_t nent; -+ const grub_uint16_t max_inline_ext = sizeof (inode->blocks) / sizeof (*ext) - 1; /* Minus 1 extent header. */ - - if (grub_ext4_find_leaf (data, (struct grub_ext4_extent_header *) inode->blocks.dir_blocks, - fileblock, &leaf) != GRUB_ERR_NONE) -@@ -508,7 +510,13 @@ grub_ext2_read_block (grub_fshelp_node_t node, grub_disk_addr_t fileblock) - return 0; - - ext = (struct grub_ext4_extent *) (leaf + 1); -- for (i = 0; i < grub_le_to_cpu16 (leaf->entries); i++) -+ -+ nent = grub_le_to_cpu16 (leaf->entries); -+ -+ if (leaf->depth == 0) -+ nent = grub_min (nent, max_inline_ext); -+ -+ for (i = 0; i < nent; i++) - { - if (fileblock < grub_le_to_cpu32 (ext[i].block)) - break; --- -2.50.1 - diff --git a/boot/grub2/0016-fs-xfs-Fix-out-of-bounds-read.patch b/boot/grub2/0016-fs-xfs-Fix-out-of-bounds-read.patch deleted file mode 100644 index c42627b7cd4..00000000000 --- a/boot/grub2/0016-fs-xfs-Fix-out-of-bounds-read.patch +++ /dev/null @@ -1,48 +0,0 @@ -From 854503d76e7dbc25f999d6be3e2ef4e8067f4152 Mon Sep 17 00:00:00 2001 -From: Michael Chang -Date: Fri, 31 May 2024 15:14:57 +0800 -Subject: [PATCH] fs/xfs: Fix out-of-bounds read - -The number of records in the root key array read from disk was not being -validated against the size of the root node. This could lead to an -out-of-bounds read. - -This patch adds a check to ensure that the number of records in the root -key array does not exceed the expected size of a root node read from -disk. If this check detects an out-of-bounds condition the operation is -aborted to prevent random errors due to metadata corruption. - -Reported-by: Daniel Axtens -Signed-off-by: Michael Chang -Reviewed-by: Daniel Kiper -Upstream: 6ccc77b59d16578b10eaf8a4fe85c20b229f0d8a -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/xfs.c | 11 +++++++++++ - 1 file changed, 11 insertions(+) - -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index bc2224dbb..d2d533531 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -595,6 +595,17 @@ grub_xfs_read_block (grub_fshelp_node_t node, grub_disk_addr_t fileblock) - do - { - grub_uint64_t i; -+ grub_addr_t keys_end, data_end; -+ -+ if (grub_mul (sizeof (grub_uint64_t), nrec, &keys_end) || -+ grub_add ((grub_addr_t) keys, keys_end, &keys_end) || -+ grub_add ((grub_addr_t) node->data, node->data->data_size, &data_end) || -+ keys_end > data_end) -+ { -+ grub_error (GRUB_ERR_BAD_FS, "invalid number of XFS root keys"); -+ grub_free (leaf); -+ return 0; -+ } - - for (i = 0; i < nrec; i++) - { --- -2.50.1 - diff --git a/boot/grub2/0017-fs-xfs-Ensuring-failing-to-mount-sets-a-grub_errno.patch b/boot/grub2/0017-fs-xfs-Ensuring-failing-to-mount-sets-a-grub_errno.patch deleted file mode 100644 index 98d1be15443..00000000000 --- a/boot/grub2/0017-fs-xfs-Ensuring-failing-to-mount-sets-a-grub_errno.patch +++ /dev/null @@ -1,47 +0,0 @@ -From 9a5c23756f2e2d4ee8438bf449881c8f854e59ab Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 06:03:58 +0100 -Subject: [PATCH] fs/xfs: Ensuring failing to mount sets a grub_errno - -It was previously possible for grub_xfs_mount() to return NULL without -setting grub_errno if the XFS version was invalid. This resulted in it -being possible for grub_dl_unref() to be called twice allowing the XFS -module to be unloaded while there were still references to it. - -Fixing this problem in general by ensuring a grub_errno is set if the -fail label is reached. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: d1d6b7ea58aa5a80a4c4d0666b49460056c8ef0a -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/xfs.c | 4 +++- - 1 file changed, 3 insertions(+), 1 deletion(-) - -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index d2d533531..56738a135 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -327,6 +327,8 @@ static int grub_xfs_sb_valid(struct grub_xfs_data *data) - } - return 1; - } -+ -+ grub_error (GRUB_ERR_BAD_FS, "unsupported XFS filesystem version"); - return 0; - } - -@@ -1058,7 +1060,7 @@ grub_xfs_mount (grub_disk_t disk) - return data; - fail: - -- if (grub_errno == GRUB_ERR_OUT_OF_RANGE) -+ if (grub_errno == GRUB_ERR_OUT_OF_RANGE || grub_errno == GRUB_ERR_NONE) - grub_error (GRUB_ERR_BAD_FS, "not an XFS filesystem"); - - grub_free (data); --- -2.50.1 - diff --git a/boot/grub2/0018-kern-file-Ensure-file-data-is-set.patch b/boot/grub2/0018-kern-file-Ensure-file-data-is-set.patch deleted file mode 100644 index 1b84ef304b7..00000000000 --- a/boot/grub2/0018-kern-file-Ensure-file-data-is-set.patch +++ /dev/null @@ -1,37 +0,0 @@ -From 816fb20ed0a80032e2eaf4c4ccaf989bf20908be Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 03:01:40 +0100 -Subject: [PATCH] kern/file: Ensure file->data is set - -This is to avoid a generic issue were some filesystems would not set -data and also not set a grub_errno. This meant it was possible for many -filesystems to grub_dl_unref() themselves multiple times resulting in -it being possible to unload the filesystems while there were still -references to them, e.g., via a loopback. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: a7910687294b29288ac649e71b47493c93294f17 -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/file.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/kern/file.c b/grub-core/kern/file.c -index 750177248..e990507fc 100644 ---- a/grub-core/kern/file.c -+++ b/grub-core/kern/file.c -@@ -114,6 +114,9 @@ grub_file_open (const char *name, enum grub_file_type type) - if ((file->fs->fs_open) (file, file_name) != GRUB_ERR_NONE) - goto fail; - -+ if (file->data == NULL) -+ goto fail; -+ - file->name = grub_strdup (name); - grub_errno = GRUB_ERR_NONE; - --- -2.50.1 - diff --git a/boot/grub2/0019-kern-file-Implement-filesystem-reference-counting.patch b/boot/grub2/0019-kern-file-Implement-filesystem-reference-counting.patch deleted file mode 100644 index 71c53efd445..00000000000 --- a/boot/grub2/0019-kern-file-Implement-filesystem-reference-counting.patch +++ /dev/null @@ -1,449 +0,0 @@ -From a27c4b6da2f4a014e5d096e75790e860bcdb2472 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 10:15:03 +0100 -Subject: [PATCH] kern/file: Implement filesystem reference counting - -The grub_file_open() and grub_file_close() should be the only places -that allow a reference to a filesystem to stay open. So, add grub_dl_t -to grub_fs_t and set this in the GRUB_MOD_INIT() for each filesystem to -avoid issues when filesystems forget to do it themselves or do not track -their own references, e.g. squash4. - -The fs_label(), fs_uuid(), fs_mtime() and fs_read() should all ref and -unref in the same function but it is essentially redundant in GRUB -single threaded model. - -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/fs/erofs.c - -Upstream: 16f196874fbe360a1b3c66064ec15adadf94c57b -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/affs.c | 1 + - grub-core/fs/bfs.c | 1 + - grub-core/fs/btrfs.c | 1 + - grub-core/fs/cbfs.c | 1 + - grub-core/fs/cpio.c | 1 + - grub-core/fs/cpio_be.c | 1 + - grub-core/fs/ext2.c | 1 + - grub-core/fs/f2fs.c | 1 + - grub-core/fs/fat.c | 1 + - grub-core/fs/hfs.c | 1 + - grub-core/fs/hfsplus.c | 1 + - grub-core/fs/iso9660.c | 1 + - grub-core/fs/jfs.c | 1 + - grub-core/fs/minix.c | 1 + - grub-core/fs/newc.c | 1 + - grub-core/fs/nilfs2.c | 1 + - grub-core/fs/ntfs.c | 1 + - grub-core/fs/odc.c | 1 + - grub-core/fs/proc.c | 1 + - grub-core/fs/reiserfs.c | 1 + - grub-core/fs/romfs.c | 1 + - grub-core/fs/sfs.c | 1 + - grub-core/fs/squash4.c | 1 + - grub-core/fs/tar.c | 1 + - grub-core/fs/udf.c | 1 + - grub-core/fs/ufs.c | 1 + - grub-core/fs/xfs.c | 1 + - grub-core/fs/zfs/zfs.c | 1 + - grub-core/kern/file.c | 7 +++++++ - include/grub/fs.h | 4 ++++ - 30 files changed, 39 insertions(+) - -diff --git a/grub-core/fs/affs.c b/grub-core/fs/affs.c -index ed606b3f1..9b0afb954 100644 ---- a/grub-core/fs/affs.c -+++ b/grub-core/fs/affs.c -@@ -703,6 +703,7 @@ static struct grub_fs grub_affs_fs = - - GRUB_MOD_INIT(affs) - { -+ grub_affs_fs.mod = mod; - grub_fs_register (&grub_affs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/bfs.c b/grub-core/fs/bfs.c -index 07cb3e3ac..f37b16895 100644 ---- a/grub-core/fs/bfs.c -+++ b/grub-core/fs/bfs.c -@@ -1106,6 +1106,7 @@ GRUB_MOD_INIT (bfs) - { - COMPILE_TIME_ASSERT (1 << LOG_EXTENT_SIZE == - sizeof (struct grub_bfs_extent)); -+ grub_bfs_fs.mod = mod; - grub_fs_register (&grub_bfs_fs); - } - -diff --git a/grub-core/fs/btrfs.c b/grub-core/fs/btrfs.c -index ba0c58352..aae81482b 100644 ---- a/grub-core/fs/btrfs.c -+++ b/grub-core/fs/btrfs.c -@@ -2413,6 +2413,7 @@ static struct grub_fs grub_btrfs_fs = { - - GRUB_MOD_INIT (btrfs) - { -+ grub_btrfs_fs.mod = mod; - grub_fs_register (&grub_btrfs_fs); - } - -diff --git a/grub-core/fs/cbfs.c b/grub-core/fs/cbfs.c -index 8ab7106af..2332745fe 100644 ---- a/grub-core/fs/cbfs.c -+++ b/grub-core/fs/cbfs.c -@@ -390,6 +390,7 @@ GRUB_MOD_INIT (cbfs) - #if (defined (__i386__) || defined (__x86_64__)) && !defined (GRUB_UTIL) && !defined (GRUB_MACHINE_EMU) && !defined (GRUB_MACHINE_XEN) - init_cbfsdisk (); - #endif -+ grub_cbfs_fs.mod = mod; - grub_fs_register (&grub_cbfs_fs); - } - -diff --git a/grub-core/fs/cpio.c b/grub-core/fs/cpio.c -index dab5f9898..1799f7ff5 100644 ---- a/grub-core/fs/cpio.c -+++ b/grub-core/fs/cpio.c -@@ -52,6 +52,7 @@ read_number (const grub_uint16_t *arr, grub_size_t size) - - GRUB_MOD_INIT (cpio) - { -+ grub_cpio_fs.mod = mod; - grub_fs_register (&grub_cpio_fs); - } - -diff --git a/grub-core/fs/cpio_be.c b/grub-core/fs/cpio_be.c -index 846548892..7bed1b848 100644 ---- a/grub-core/fs/cpio_be.c -+++ b/grub-core/fs/cpio_be.c -@@ -52,6 +52,7 @@ read_number (const grub_uint16_t *arr, grub_size_t size) - - GRUB_MOD_INIT (cpio_be) - { -+ grub_cpio_fs.mod = mod; - grub_fs_register (&grub_cpio_fs); - } - -diff --git a/grub-core/fs/ext2.c b/grub-core/fs/ext2.c -index 3f9f6b208..c3058f7e7 100644 ---- a/grub-core/fs/ext2.c -+++ b/grub-core/fs/ext2.c -@@ -1131,6 +1131,7 @@ static struct grub_fs grub_ext2_fs = - - GRUB_MOD_INIT(ext2) - { -+ grub_ext2_fs.mod = mod; - grub_fs_register (&grub_ext2_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/f2fs.c b/grub-core/fs/f2fs.c -index db8a65f8d..f6d6beaa5 100644 ---- a/grub-core/fs/f2fs.c -+++ b/grub-core/fs/f2fs.c -@@ -1353,6 +1353,7 @@ static struct grub_fs grub_f2fs_fs = { - - GRUB_MOD_INIT (f2fs) - { -+ grub_f2fs_fs.mod = mod; - grub_fs_register (&grub_f2fs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/fat.c b/grub-core/fs/fat.c -index c5efed724..6e62b915d 100644 ---- a/grub-core/fs/fat.c -+++ b/grub-core/fs/fat.c -@@ -1312,6 +1312,7 @@ GRUB_MOD_INIT(fat) - #endif - { - COMPILE_TIME_ASSERT (sizeof (struct grub_fat_dir_entry) == 32); -+ grub_fat_fs.mod = mod; - grub_fs_register (&grub_fat_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/hfs.c b/grub-core/fs/hfs.c -index 920112b03..ce7581dd5 100644 ---- a/grub-core/fs/hfs.c -+++ b/grub-core/fs/hfs.c -@@ -1434,6 +1434,7 @@ static struct grub_fs grub_hfs_fs = - - GRUB_MOD_INIT(hfs) - { -+ grub_hfs_fs.mod = mod; - if (!grub_is_lockdown ()) - grub_fs_register (&grub_hfs_fs); - my_mod = mod; -diff --git a/grub-core/fs/hfsplus.c b/grub-core/fs/hfsplus.c -index de71fd486..3f203abcc 100644 ---- a/grub-core/fs/hfsplus.c -+++ b/grub-core/fs/hfsplus.c -@@ -1176,6 +1176,7 @@ static struct grub_fs grub_hfsplus_fs = - - GRUB_MOD_INIT(hfsplus) - { -+ grub_hfsplus_fs.mod = mod; - grub_fs_register (&grub_hfsplus_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/iso9660.c b/grub-core/fs/iso9660.c -index 8e3c95c4f..c73cb9ce0 100644 ---- a/grub-core/fs/iso9660.c -+++ b/grub-core/fs/iso9660.c -@@ -1260,6 +1260,7 @@ static struct grub_fs grub_iso9660_fs = - - GRUB_MOD_INIT(iso9660) - { -+ grub_iso9660_fs.mod = mod; - grub_fs_register (&grub_iso9660_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index 70a2f4947..b0283ac00 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -1005,6 +1005,7 @@ static struct grub_fs grub_jfs_fs = - - GRUB_MOD_INIT(jfs) - { -+ grub_jfs_fs.mod = mod; - grub_fs_register (&grub_jfs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/minix.c b/grub-core/fs/minix.c -index 5354951d1..b7679c3e2 100644 ---- a/grub-core/fs/minix.c -+++ b/grub-core/fs/minix.c -@@ -734,6 +734,7 @@ GRUB_MOD_INIT(minix) - #endif - #endif - { -+ grub_minix_fs.mod = mod; - grub_fs_register (&grub_minix_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/newc.c b/grub-core/fs/newc.c -index 4fb8b2e3d..43b7f8b64 100644 ---- a/grub-core/fs/newc.c -+++ b/grub-core/fs/newc.c -@@ -64,6 +64,7 @@ read_number (const char *str, grub_size_t size) - - GRUB_MOD_INIT (newc) - { -+ grub_cpio_fs.mod = mod; - grub_fs_register (&grub_cpio_fs); - } - -diff --git a/grub-core/fs/nilfs2.c b/grub-core/fs/nilfs2.c -index fc7374ead..4e1e71738 100644 ---- a/grub-core/fs/nilfs2.c -+++ b/grub-core/fs/nilfs2.c -@@ -1231,6 +1231,7 @@ GRUB_MOD_INIT (nilfs2) - grub_nilfs2_dat_entry)); - COMPILE_TIME_ASSERT (1 << LOG_INODE_SIZE - == sizeof (struct grub_nilfs2_inode)); -+ grub_nilfs2_fs.mod = mod; - grub_fs_register (&grub_nilfs2_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/ntfs.c b/grub-core/fs/ntfs.c -index de435aa14..560917dc2 100644 ---- a/grub-core/fs/ntfs.c -+++ b/grub-core/fs/ntfs.c -@@ -1320,6 +1320,7 @@ static struct grub_fs grub_ntfs_fs = - - GRUB_MOD_INIT (ntfs) - { -+ grub_ntfs_fs.mod = mod; - grub_fs_register (&grub_ntfs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/odc.c b/grub-core/fs/odc.c -index 790000622..8e4e8aeac 100644 ---- a/grub-core/fs/odc.c -+++ b/grub-core/fs/odc.c -@@ -52,6 +52,7 @@ read_number (const char *str, grub_size_t size) - - GRUB_MOD_INIT (odc) - { -+ grub_cpio_fs.mod = mod; - grub_fs_register (&grub_cpio_fs); - } - -diff --git a/grub-core/fs/proc.c b/grub-core/fs/proc.c -index 5f516502d..bcde43349 100644 ---- a/grub-core/fs/proc.c -+++ b/grub-core/fs/proc.c -@@ -192,6 +192,7 @@ static struct grub_fs grub_procfs_fs = - - GRUB_MOD_INIT (procfs) - { -+ grub_procfs_fs.mod = mod; - grub_disk_dev_register (&grub_procfs_dev); - grub_fs_register (&grub_procfs_fs); - } -diff --git a/grub-core/fs/reiserfs.c b/grub-core/fs/reiserfs.c -index 36b26ac98..c3850e013 100644 ---- a/grub-core/fs/reiserfs.c -+++ b/grub-core/fs/reiserfs.c -@@ -1417,6 +1417,7 @@ static struct grub_fs grub_reiserfs_fs = - - GRUB_MOD_INIT(reiserfs) - { -+ grub_reiserfs_fs.mod = mod; - grub_fs_register (&grub_reiserfs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/romfs.c b/grub-core/fs/romfs.c -index 1f7dcfca1..56b0b2b2f 100644 ---- a/grub-core/fs/romfs.c -+++ b/grub-core/fs/romfs.c -@@ -475,6 +475,7 @@ static struct grub_fs grub_romfs_fs = - - GRUB_MOD_INIT(romfs) - { -+ grub_romfs_fs.mod = mod; - grub_fs_register (&grub_romfs_fs); - } - -diff --git a/grub-core/fs/sfs.c b/grub-core/fs/sfs.c -index 983e88008..f0d7cac43 100644 ---- a/grub-core/fs/sfs.c -+++ b/grub-core/fs/sfs.c -@@ -779,6 +779,7 @@ static struct grub_fs grub_sfs_fs = - - GRUB_MOD_INIT(sfs) - { -+ grub_sfs_fs.mod = mod; - grub_fs_register (&grub_sfs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/squash4.c b/grub-core/fs/squash4.c -index a30e6ebe1..6e9d63874 100644 ---- a/grub-core/fs/squash4.c -+++ b/grub-core/fs/squash4.c -@@ -1044,6 +1044,7 @@ static struct grub_fs grub_squash_fs = - - GRUB_MOD_INIT(squash4) - { -+ grub_squash_fs.mod = mod; - grub_fs_register (&grub_squash_fs); - } - -diff --git a/grub-core/fs/tar.c b/grub-core/fs/tar.c -index 386c09022..fd2ec1f74 100644 ---- a/grub-core/fs/tar.c -+++ b/grub-core/fs/tar.c -@@ -354,6 +354,7 @@ static struct grub_fs grub_cpio_fs = { - - GRUB_MOD_INIT (tar) - { -+ grub_cpio_fs.mod = mod; - grub_fs_register (&grub_cpio_fs); - } - -diff --git a/grub-core/fs/udf.c b/grub-core/fs/udf.c -index b836e6107..8765c633c 100644 ---- a/grub-core/fs/udf.c -+++ b/grub-core/fs/udf.c -@@ -1455,6 +1455,7 @@ static struct grub_fs grub_udf_fs = { - - GRUB_MOD_INIT (udf) - { -+ grub_udf_fs.mod = mod; - grub_fs_register (&grub_udf_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/ufs.c b/grub-core/fs/ufs.c -index 01235101b..e82d9356d 100644 ---- a/grub-core/fs/ufs.c -+++ b/grub-core/fs/ufs.c -@@ -899,6 +899,7 @@ GRUB_MOD_INIT(ufs1) - #endif - #endif - { -+ grub_ufs_fs.mod = mod; - grub_fs_register (&grub_ufs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index 56738a135..74feeb86a 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -1294,6 +1294,7 @@ static struct grub_fs grub_xfs_fs = - - GRUB_MOD_INIT(xfs) - { -+ grub_xfs_fs.mod = mod; - grub_fs_register (&grub_xfs_fs); - my_mod = mod; - } -diff --git a/grub-core/fs/zfs/zfs.c b/grub-core/fs/zfs/zfs.c -index b5453e006..a497b1869 100644 ---- a/grub-core/fs/zfs/zfs.c -+++ b/grub-core/fs/zfs/zfs.c -@@ -4424,6 +4424,7 @@ static struct grub_fs grub_zfs_fs = { - GRUB_MOD_INIT (zfs) - { - COMPILE_TIME_ASSERT (sizeof (zap_leaf_chunk_t) == ZAP_LEAF_CHUNKSIZE); -+ grub_zfs_fs.mod = mod; - grub_fs_register (&grub_zfs_fs); - #ifndef GRUB_UTIL - my_mod = mod; -diff --git a/grub-core/kern/file.c b/grub-core/kern/file.c -index e990507fc..6e7efe89a 100644 ---- a/grub-core/kern/file.c -+++ b/grub-core/kern/file.c -@@ -25,6 +25,7 @@ - #include - #include - #include -+#include - - void (*EXPORT_VAR (grub_grubnet_fini)) (void); - -@@ -117,6 +118,9 @@ grub_file_open (const char *name, enum grub_file_type type) - if (file->data == NULL) - goto fail; - -+ if (file->fs->mod) -+ grub_dl_ref (file->fs->mod); -+ - file->name = grub_strdup (name); - grub_errno = GRUB_ERR_NONE; - -@@ -197,6 +201,9 @@ grub_file_read (grub_file_t file, void *buf, grub_size_t len) - grub_err_t - grub_file_close (grub_file_t file) - { -+ if (file->fs->mod) -+ grub_dl_unref (file->fs->mod); -+ - if (file->fs->fs_close) - (file->fs->fs_close) (file); - -diff --git a/include/grub/fs.h b/include/grub/fs.h -index 026bc3bb8..df4c93b16 100644 ---- a/include/grub/fs.h -+++ b/include/grub/fs.h -@@ -23,6 +23,7 @@ - #include - #include - #include -+#include - - #include - /* For embedding types. */ -@@ -57,6 +58,9 @@ struct grub_fs - /* My name. */ - const char *name; - -+ /* My module */ -+ grub_dl_t mod; -+ - /* Call HOOK with each file under DIR. */ - grub_err_t (*fs_dir) (grub_device_t device, const char *path, - grub_fs_dir_hook_t hook, void *hook_data); --- -2.50.1 - diff --git a/boot/grub2/0020-disk-loopback-Reference-tracking-for-the-loopback.patch b/boot/grub2/0020-disk-loopback-Reference-tracking-for-the-loopback.patch deleted file mode 100644 index 5295251e154..00000000000 --- a/boot/grub2/0020-disk-loopback-Reference-tracking-for-the-loopback.patch +++ /dev/null @@ -1,108 +0,0 @@ -From a81ef3044791e7ee02bd349b5ec0adcbf6947555 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 03:26:19 +0100 -Subject: [PATCH] disk/loopback: Reference tracking for the loopback - -It was possible to delete a loopback while there were still references -to it. This led to an exploitable use-after-free. - -Fixed by implementing a reference counting in the grub_loopback struct. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 67f70f70a36b6e87a65f928fe1e840a12eafb7ae -Signed-off-by: Thomas Petazzoni ---- - grub-core/disk/loopback.c | 18 ++++++++++++++++++ - include/grub/err.h | 3 ++- - 2 files changed, 20 insertions(+), 1 deletion(-) - -diff --git a/grub-core/disk/loopback.c b/grub-core/disk/loopback.c -index 4635dcfde..2bea4e922 100644 ---- a/grub-core/disk/loopback.c -+++ b/grub-core/disk/loopback.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -33,6 +34,7 @@ struct grub_loopback - grub_file_t file; - struct grub_loopback *next; - unsigned long id; -+ grub_uint64_t refcnt; - }; - - static struct grub_loopback *loopback_list; -@@ -64,6 +66,8 @@ delete_loopback (const char *name) - if (! dev) - return grub_error (GRUB_ERR_BAD_DEVICE, "device not found"); - -+ if (dev->refcnt > 0) -+ return grub_error (GRUB_ERR_STILL_REFERENCED, "device still referenced"); - /* Remove the device from the list. */ - *prev = dev->next; - -@@ -120,6 +124,7 @@ grub_cmd_loopback (grub_extcmd_context_t ctxt, int argc, char **args) - - newdev->file = file; - newdev->id = last_id++; -+ newdev->refcnt = 0; - - /* Add the new entry to the list. */ - newdev->next = loopback_list; -@@ -161,6 +166,9 @@ grub_loopback_open (const char *name, grub_disk_t disk) - if (! dev) - return grub_error (GRUB_ERR_UNKNOWN_DEVICE, "can't open device"); - -+ if (grub_add (dev->refcnt, 1, &dev->refcnt)) -+ grub_fatal ("Reference count overflow"); -+ - /* Use the filesize for the disk size, round up to a complete sector. */ - if (dev->file->size != GRUB_FILE_SIZE_UNKNOWN) - disk->total_sectors = ((dev->file->size + GRUB_DISK_SECTOR_SIZE - 1) -@@ -178,6 +186,15 @@ grub_loopback_open (const char *name, grub_disk_t disk) - return 0; - } - -+static void -+grub_loopback_close (grub_disk_t disk) -+{ -+ struct grub_loopback *dev = disk->data; -+ -+ if (grub_sub (dev->refcnt, 1, &dev->refcnt)) -+ grub_fatal ("Reference count underflow"); -+} -+ - static grub_err_t - grub_loopback_read (grub_disk_t disk, grub_disk_addr_t sector, - grub_size_t size, char *buf) -@@ -220,6 +237,7 @@ static struct grub_disk_dev grub_loopback_dev = - .id = GRUB_DISK_DEVICE_LOOPBACK_ID, - .disk_iterate = grub_loopback_iterate, - .disk_open = grub_loopback_open, -+ .disk_close = grub_loopback_close, - .disk_read = grub_loopback_read, - .disk_write = grub_loopback_write, - .next = 0 -diff --git a/include/grub/err.h b/include/grub/err.h -index 1c07034cd..b0e54e0a0 100644 ---- a/include/grub/err.h -+++ b/include/grub/err.h -@@ -73,7 +73,8 @@ typedef enum - GRUB_ERR_NET_NO_DOMAIN, - GRUB_ERR_EOF, - GRUB_ERR_BAD_SIGNATURE, -- GRUB_ERR_BAD_FIRMWARE -+ GRUB_ERR_BAD_FIRMWARE, -+ GRUB_ERR_STILL_REFERENCED - } - grub_err_t; - --- -2.50.1 - diff --git a/boot/grub2/0021-kern-disk-Limit-recursion-depth.patch b/boot/grub2/0021-kern-disk-Limit-recursion-depth.patch deleted file mode 100644 index 8d2390ac551..00000000000 --- a/boot/grub2/0021-kern-disk-Limit-recursion-depth.patch +++ /dev/null @@ -1,125 +0,0 @@ -From 195331a7a64c2a4ba754e2527ca8973012db68c9 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 04:09:24 +0100 -Subject: [PATCH] kern/disk: Limit recursion depth - -The grub_disk_read() may trigger other disk reads, e.g. via loopbacks. -This may lead to very deep recursion which can corrupt the heap. So, fix -the issue by limiting reads depth. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 18212f0648b6de7d71d4c8f41eb4d8b78b3a299b -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/disk.c | 27 ++++++++++++++++++++------- - include/grub/err.h | 3 ++- - 2 files changed, 22 insertions(+), 8 deletions(-) - -diff --git a/grub-core/kern/disk.c b/grub-core/kern/disk.c -index 1eda58fe9..82e04fd00 100644 ---- a/grub-core/kern/disk.c -+++ b/grub-core/kern/disk.c -@@ -28,6 +28,10 @@ - - #define GRUB_CACHE_TIMEOUT 2 - -+/* Disk reads may trigger other disk reads. So, limit recursion depth. */ -+#define MAX_READ_RECURSION_DEPTH 16 -+static unsigned int read_recursion_depth = 0; -+ - /* The last time the disk was used. */ - static grub_uint64_t grub_last_time = 0; - -@@ -417,6 +421,8 @@ grub_err_t - grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - grub_off_t offset, grub_size_t size, void *buf) - { -+ grub_err_t err = GRUB_ERR_NONE; -+ - /* First of all, check if the region is within the disk. */ - if (grub_disk_adjust_range (disk, §or, &offset, size) != GRUB_ERR_NONE) - { -@@ -427,12 +433,17 @@ grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - return grub_errno; - } - -+ if (++read_recursion_depth >= MAX_READ_RECURSION_DEPTH) -+ { -+ grub_error (GRUB_ERR_RECURSION_DEPTH, "grub_disk_read(): Maximum recursion depth exceeded"); -+ goto error; -+ } -+ - /* First read until first cache boundary. */ - if (offset || (sector & (GRUB_DISK_CACHE_SIZE - 1))) - { - grub_disk_addr_t start_sector; - grub_size_t pos; -- grub_err_t err; - grub_size_t len; - - start_sector = sector & ~((grub_disk_addr_t) GRUB_DISK_CACHE_SIZE - 1); -@@ -444,7 +455,7 @@ grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - err = grub_disk_read_small (disk, start_sector, - offset + pos, len, buf); - if (err) -- return err; -+ goto error; - buf = (char *) buf + len; - size -= len; - offset += len; -@@ -457,7 +468,6 @@ grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - { - char *data = NULL; - grub_disk_addr_t agglomerate; -- grub_err_t err; - - /* agglomerate read until we find a first cached entry. */ - for (agglomerate = 0; agglomerate -@@ -493,7 +503,7 @@ grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - - disk->log_sector_size), - buf); - if (err) -- return err; -+ goto error; - - for (i = 0; i < agglomerate; i ++) - grub_disk_cache_store (disk->dev->id, disk->id, -@@ -527,13 +537,16 @@ grub_disk_read (grub_disk_t disk, grub_disk_addr_t sector, - /* And now read the last part. */ - if (size) - { -- grub_err_t err; - err = grub_disk_read_small (disk, sector, 0, size, buf); - if (err) -- return err; -+ goto error; - } - -- return grub_errno; -+ err = grub_errno; -+ -+ error: -+ read_recursion_depth--; -+ return err; - } - - grub_uint64_t -diff --git a/include/grub/err.h b/include/grub/err.h -index b0e54e0a0..202fa8a7a 100644 ---- a/include/grub/err.h -+++ b/include/grub/err.h -@@ -74,7 +74,8 @@ typedef enum - GRUB_ERR_EOF, - GRUB_ERR_BAD_SIGNATURE, - GRUB_ERR_BAD_FIRMWARE, -- GRUB_ERR_STILL_REFERENCED -+ GRUB_ERR_STILL_REFERENCED, -+ GRUB_ERR_RECURSION_DEPTH - } - grub_err_t; - --- -2.50.1 - diff --git a/boot/grub2/0022-kern-partition-Limit-recursion-in-part_iterate.patch b/boot/grub2/0022-kern-partition-Limit-recursion-in-part_iterate.patch deleted file mode 100644 index 03183abf2f2..00000000000 --- a/boot/grub2/0022-kern-partition-Limit-recursion-in-part_iterate.patch +++ /dev/null @@ -1,49 +0,0 @@ -From 3f1c5f55e7ef7b872c3ae59c0c41f1e07508a943 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sat, 16 Nov 2024 21:24:19 +0000 -Subject: [PATCH] kern/partition: Limit recursion in part_iterate() - -The part_iterate() is used by grub_partition_iterate() as a callback in -the partition iterate functions. However, part_iterate() may also call -the partition iterate functions which may lead to recursion. Fix potential -issue by limiting the recursion depth. - -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 8a7103fddfd6664f41081f3bb88eebbf2871da2a -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/partition.c | 10 +++++++++- - 1 file changed, 9 insertions(+), 1 deletion(-) - -diff --git a/grub-core/kern/partition.c b/grub-core/kern/partition.c -index edad9f9e4..704512a20 100644 ---- a/grub-core/kern/partition.c -+++ b/grub-core/kern/partition.c -@@ -28,6 +28,9 @@ - - grub_partition_map_t grub_partition_map_list; - -+#define MAX_RECURSION_DEPTH 32 -+static unsigned int recursion_depth = 0; -+ - /* - * Checks that disk->partition contains part. This function assumes that the - * start of part is relative to the start of disk->partition. Returns 1 if -@@ -208,7 +211,12 @@ part_iterate (grub_disk_t dsk, const grub_partition_t partition, void *data) - FOR_PARTITION_MAPS(partmap) - { - grub_err_t err; -- err = partmap->iterate (dsk, part_iterate, ctx); -+ recursion_depth++; -+ if (recursion_depth <= MAX_RECURSION_DEPTH) -+ err = partmap->iterate (dsk, part_iterate, ctx); -+ else -+ err = grub_error (GRUB_ERR_RECURSION_DEPTH, "maximum recursion depth exceeded"); -+ recursion_depth--; - if (err) - grub_errno = GRUB_ERR_NONE; - if (ctx->ret) --- -2.50.1 - diff --git a/boot/grub2/0023-script-execute-Limit-the-recursion-depth.patch b/boot/grub2/0023-script-execute-Limit-the-recursion-depth.patch deleted file mode 100644 index f0e922c27a0..00000000000 --- a/boot/grub2/0023-script-execute-Limit-the-recursion-depth.patch +++ /dev/null @@ -1,60 +0,0 @@ -From 2a094a7116c56519a42a13c96e77bdeda6069076 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 18 Apr 2024 19:04:13 +0100 -Subject: [PATCH] script/execute: Limit the recursion depth - -If unbounded recursion is allowed it becomes possible to collide the -stack with the heap. As UEFI firmware often lacks guard pages this -becomes an exploitable issue as it is possible in some cases to do -a controlled overwrite of a section of this heap region with -arbitrary data. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: d8a937ccae5c6d86dc4375698afca5cefdcd01e1 -Signed-off-by: Thomas Petazzoni ---- - grub-core/script/execute.c | 14 ++++++++++++++ - 1 file changed, 14 insertions(+) - -diff --git a/grub-core/script/execute.c b/grub-core/script/execute.c -index 14ff09094..e1450f45d 100644 ---- a/grub-core/script/execute.c -+++ b/grub-core/script/execute.c -@@ -33,10 +33,18 @@ - is sizeof (int) * 3, and one extra for a possible -ve sign. */ - #define ERRNO_DIGITS_MAX (sizeof (int) * 3 + 1) - -+/* -+ * A limit on recursion, to avoid colliding with the heap. UEFI defines a baseline -+ * stack size of 128 KiB. So, assuming at most 1-2 KiB per iteration this should -+ * keep us safe. -+ */ -+#define MAX_RECURSION_DEPTH 64 -+ - static unsigned long is_continue; - static unsigned long active_loops; - static unsigned long active_breaks; - static unsigned long function_return; -+static unsigned long recursion_depth; - - #define GRUB_SCRIPT_SCOPE_MALLOCED 1 - #define GRUB_SCRIPT_SCOPE_ARGS_MALLOCED 2 -@@ -816,7 +824,13 @@ grub_script_execute_cmd (struct grub_script_cmd *cmd) - if (cmd == 0) - return 0; - -+ recursion_depth++; -+ -+ if (recursion_depth >= MAX_RECURSION_DEPTH) -+ return grub_error (GRUB_ERR_RECURSION_DEPTH, N_("maximum recursion depth exceeded")); -+ - ret = cmd->exec (cmd); -+ recursion_depth--; - - grub_snprintf (errnobuf, sizeof (errnobuf), "%d", ret); - grub_env_set ("?", errnobuf); --- -2.50.1 - diff --git a/boot/grub2/0024-net-Unregister-net_default_ip-and-net_default_mac-va.patch b/boot/grub2/0024-net-Unregister-net_default_ip-and-net_default_mac-va.patch deleted file mode 100644 index 881493e5676..00000000000 --- a/boot/grub2/0024-net-Unregister-net_default_ip-and-net_default_mac-va.patch +++ /dev/null @@ -1,34 +0,0 @@ -From b9a8d2cb984f0a5fd92fe7275dfa280466dd82ce Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 28 Nov 2024 04:05:04 +0000 -Subject: [PATCH] net: Unregister net_default_ip and net_default_mac variables - hooks on unload - -The net module is a dependency of normal. So, it shouldn't be possible -to unload the net. Though unregister variables hooks as a precaution. -It also gets in line with unregistering the other net module hooks. - -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: a1dd8e59da26f1a9608381d3a1a6c0f465282b1d -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/net.c | 2 ++ - 1 file changed, 2 insertions(+) - -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index 8cad4fb6d..f69c67b64 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -2072,6 +2072,8 @@ GRUB_MOD_FINI(net) - { - grub_register_variable_hook ("net_default_server", 0, 0); - grub_register_variable_hook ("pxe_default_server", 0, 0); -+ grub_register_variable_hook ("net_default_ip", 0, 0); -+ grub_register_variable_hook ("net_default_mac", 0, 0); - - grub_bootp_fini (); - grub_dns_fini (); --- -2.50.1 - diff --git a/boot/grub2/0025-net-Remove-variables-hooks-when-interface-is-unregis.patch b/boot/grub2/0025-net-Remove-variables-hooks-when-interface-is-unregis.patch deleted file mode 100644 index 3c6bd1fc836..00000000000 --- a/boot/grub2/0025-net-Remove-variables-hooks-when-interface-is-unregis.patch +++ /dev/null @@ -1,93 +0,0 @@ -From 883c8721591c1f7a186e2f3cdc8a4f140bd81ce9 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 1 Nov 2024 23:49:48 +0000 -Subject: [PATCH] net: Remove variables hooks when interface is unregisted - -The grub_net_network_level_interface_unregister(), previously -implemented in a header, did not remove the variables hooks that -were registered in grub_net_network_level_interface_register(). -Fix this by implementing the same logic used to register the -variables and move the function into the grub-core/net/net.c. - -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/net/net.c - -Upstream: aa8b4d7facef7b75a2703274b1b9d4e0e734c401 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/net.c | 33 +++++++++++++++++++++++++++++++++ - include/grub/net.h | 11 +---------- - 2 files changed, 34 insertions(+), 10 deletions(-) - -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index f69c67b64..8dbb0eada 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -1094,6 +1094,39 @@ grub_cmd_delroute (struct grub_command *cmd __attribute__ ((unused)), - return GRUB_ERR_NONE; - } - -+void -+grub_net_network_level_interface_unregister (struct grub_net_network_level_interface *inter) -+{ -+ char *name; -+ -+ { -+ char buf[GRUB_NET_MAX_STR_HWADDR_LEN]; -+ -+ grub_net_hwaddr_to_str (&inter->hwaddress, buf); -+ name = grub_xasprintf ("net_%s_mac", inter->name); -+ if (name != NULL) -+ grub_register_variable_hook (name, NULL, NULL); -+ grub_free (name); -+ } -+ -+ { -+ char buf[GRUB_NET_MAX_STR_ADDR_LEN]; -+ -+ grub_net_addr_to_str (&inter->address, buf); -+ name = grub_xasprintf ("net_%s_ip", inter->name); -+ if (name != NULL) -+ grub_register_variable_hook (name, NULL, NULL); -+ grub_free (name); -+ } -+ -+ inter->card->num_ifaces--; -+ *inter->prev = inter->next; -+ if (inter->next) -+ inter->next->prev = inter->prev; -+ inter->next = 0; -+ inter->prev = 0; -+} -+ - grub_err_t - grub_net_add_route (const char *name, - grub_net_network_level_netaddress_t target, -diff --git a/include/grub/net.h b/include/grub/net.h -index 844e501c1..228d04963 100644 ---- a/include/grub/net.h -+++ b/include/grub/net.h -@@ -540,16 +540,7 @@ void grub_bootp_fini (void); - void grub_dns_init (void); - void grub_dns_fini (void); - --static inline void --grub_net_network_level_interface_unregister (struct grub_net_network_level_interface *inter) --{ -- inter->card->num_ifaces--; -- *inter->prev = inter->next; -- if (inter->next) -- inter->next->prev = inter->prev; -- inter->next = 0; -- inter->prev = 0; --} -+void grub_net_network_level_interface_unregister (struct grub_net_network_level_interface *inter); - - void - grub_net_tcp_retransmit (void); --- -2.50.1 - diff --git a/boot/grub2/0026-net-Fix-OOB-write-in-grub_net_search_config_file.patch b/boot/grub2/0026-net-Fix-OOB-write-in-grub_net_search_config_file.patch deleted file mode 100644 index b047b150bc3..00000000000 --- a/boot/grub2/0026-net-Fix-OOB-write-in-grub_net_search_config_file.patch +++ /dev/null @@ -1,89 +0,0 @@ -From 7ad4117be44d8cf0443bbc58d49e592a33aaac89 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 15 Nov 2024 13:12:09 +0000 -Subject: [PATCH] net: Fix OOB write in grub_net_search_config_file() - -The function included a call to grub_strcpy() which copied data from an -environment variable to a buffer allocated in grub_cmd_normal(). The -grub_cmd_normal() didn't consider the length of the environment variable. -So, the copy operation could exceed the allocation and lead to an OOB -write. Fix the issue by replacing grub_strcpy() with grub_strlcpy() and -pass the underlying buffers size to the grub_net_search_config_file(). - -Fixes: CVE-2025-0624 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/normal/main.c - -Upstream: 5eef88152833062a3f7e017535372d64ac8ef7e1 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/net.c | 7 ++++--- - grub-core/normal/main.c | 2 +- - include/grub/net.h | 2 +- - 3 files changed, 6 insertions(+), 5 deletions(-) - -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index 8dbb0eada..2bd490279 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -1942,14 +1942,15 @@ grub_config_search_through (char *config, char *suffix, - } - - grub_err_t --grub_net_search_config_file (char *config) -+grub_net_search_config_file (char *config, grub_size_t config_buf_len) - { -- grub_size_t config_len; -+ grub_size_t config_len, suffix_len; - char *suffix; - - config_len = grub_strlen (config); - config[config_len] = '-'; - suffix = config + config_len + 1; -+ suffix_len = config_buf_len - (config_len + 1); - - struct grub_net_network_level_interface *inf; - FOR_NET_NETWORK_LEVEL_INTERFACES (inf) -@@ -1975,7 +1976,7 @@ grub_net_search_config_file (char *config) - - if (client_uuid) - { -- grub_strcpy (suffix, client_uuid); -+ grub_strlcpy (suffix, client_uuid, suffix_len); - if (grub_config_search_through (config, suffix, 1, 0) == 0) - return GRUB_ERR_NONE; - } -diff --git a/grub-core/normal/main.c b/grub-core/normal/main.c -index bd4431000..3b48cd333 100644 ---- a/grub-core/normal/main.c -+++ b/grub-core/normal/main.c -@@ -344,7 +344,7 @@ grub_cmd_normal (struct grub_command *cmd __attribute__ ((unused)), - - if (grub_strncmp (prefix + 1, "tftp", sizeof ("tftp") - 1) == 0 && - !disable_net_search) -- grub_net_search_config_file (config); -+ grub_net_search_config_file (config, config_len); - - grub_enter_normal_mode (config); - grub_free (config); -diff --git a/include/grub/net.h b/include/grub/net.h -index 228d04963..58a4f83fc 100644 ---- a/include/grub/net.h -+++ b/include/grub/net.h -@@ -570,7 +570,7 @@ void - grub_net_remove_dns_server (const struct grub_net_network_level_address *s); - - grub_err_t --grub_net_search_config_file (char *config); -+grub_net_search_config_file (char *config, grub_size_t config_buf_len); - - extern char *grub_net_default_server; - --- -2.50.1 - diff --git a/boot/grub2/0027-net-tftp-Fix-stack-buffer-overflow-in-tftp_open.patch b/boot/grub2/0027-net-tftp-Fix-stack-buffer-overflow-in-tftp_open.patch deleted file mode 100644 index 76b18ace8f6..00000000000 --- a/boot/grub2/0027-net-tftp-Fix-stack-buffer-overflow-in-tftp_open.patch +++ /dev/null @@ -1,120 +0,0 @@ -From 8284fca0f096d01f566eadfdc790232df9f2934e Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 18 Apr 2024 17:32:34 +0100 -Subject: [PATCH] net/tftp: Fix stack buffer overflow in tftp_open() - -An overly long filename can be passed to tftp_open() which would cause -grub_normalize_filename() to write out of bounds. - -Fixed by adding an extra argument to grub_normalize_filename() for the -space available, making it act closer to a strlcpy(). As several fixed -strings are strcpy()'d after into the same buffer, their total length is -checked to see if they exceed the remaining space in the buffer. If so, -return an error. - -On the occasion simplify code a bit by removing unneeded rrqlen zeroing. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 0707accab1b9be5d3645d4700dde3f99209f9367 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/tftp.c | 38 ++++++++++++++++++++++++-------------- - 1 file changed, 24 insertions(+), 14 deletions(-) - -diff --git a/grub-core/net/tftp.c b/grub-core/net/tftp.c -index 409b1d09b..336b78691 100644 ---- a/grub-core/net/tftp.c -+++ b/grub-core/net/tftp.c -@@ -266,17 +266,19 @@ tftp_receive (grub_net_udp_socket_t sock __attribute__ ((unused)), - * forward slashes to a single forward slash. - */ - static void --grub_normalize_filename (char *normalized, const char *filename) -+grub_normalize_filename (char *normalized, const char *filename, int c) - { - char *dest = normalized; - const char *src = filename; - -- while (*src != '\0') -+ while (*src != '\0' && c > 0) - { - if (src[0] == '/' && src[1] == '/') - src++; -- else -+ else { -+ c--; - *dest++ = *src++; -+ } - } - *dest = '\0'; - } -@@ -287,7 +289,7 @@ tftp_open (struct grub_file *file, const char *filename) - struct tftphdr *tftph; - char *rrq; - int i; -- int rrqlen; -+ int rrqlen, rrqsize; - int hdrlen; - grub_uint8_t open_data[1500]; - struct grub_net_buff nb; -@@ -315,37 +317,45 @@ tftp_open (struct grub_file *file, const char *filename) - - tftph = (struct tftphdr *) nb.data; - -- rrq = (char *) tftph->u.rrq; -- rrqlen = 0; -- - tftph->opcode = grub_cpu_to_be16_compile_time (TFTP_RRQ); - -+ rrq = (char *) tftph->u.rrq; -+ rrqsize = sizeof (tftph->u.rrq); -+ - /* - * Copy and normalize the filename to work-around issues on some TFTP - * servers when file names are being matched for remapping. - */ -- grub_normalize_filename (rrq, filename); -- rrqlen += grub_strlen (rrq) + 1; -+ grub_normalize_filename (rrq, filename, rrqsize); -+ -+ rrqlen = grub_strlen (rrq) + 1; - rrq += grub_strlen (rrq) + 1; - -- grub_strcpy (rrq, "octet"); -+ /* Verify there is enough space for the remaining components. */ - rrqlen += grub_strlen ("octet") + 1; -+ rrqlen += grub_strlen ("blksize") + 1; -+ rrqlen += grub_strlen ("1024") + 1; -+ rrqlen += grub_strlen ("tsize") + 1; -+ rrqlen += grub_strlen ("0") + 1; -+ -+ if (rrqlen >= rrqsize) { -+ grub_free (data); -+ return grub_error (GRUB_ERR_BAD_FILENAME, N_("filename too long")); -+ } -+ -+ grub_strcpy (rrq, "octet"); - rrq += grub_strlen ("octet") + 1; - - grub_strcpy (rrq, "blksize"); -- rrqlen += grub_strlen ("blksize") + 1; - rrq += grub_strlen ("blksize") + 1; - - grub_strcpy (rrq, "1024"); -- rrqlen += grub_strlen ("1024") + 1; - rrq += grub_strlen ("1024") + 1; - - grub_strcpy (rrq, "tsize"); -- rrqlen += grub_strlen ("tsize") + 1; - rrq += grub_strlen ("tsize") + 1; - - grub_strcpy (rrq, "0"); -- rrqlen += grub_strlen ("0") + 1; - rrq += grub_strlen ("0") + 1; - hdrlen = sizeof (tftph->opcode) + rrqlen; - --- -2.50.1 - diff --git a/boot/grub2/0028-video-readers-jpeg-Do-not-permit-duplicate-SOF0-mark.patch b/boot/grub2/0028-video-readers-jpeg-Do-not-permit-duplicate-SOF0-mark.patch deleted file mode 100644 index 6ea951225a4..00000000000 --- a/boot/grub2/0028-video-readers-jpeg-Do-not-permit-duplicate-SOF0-mark.patch +++ /dev/null @@ -1,38 +0,0 @@ -From 8368710fbce5c040227fca8bf10828ad1632f84f Mon Sep 17 00:00:00 2001 -From: Daniel Axtens -Date: Fri, 8 Mar 2024 22:47:20 +1100 -Subject: [PATCH] video/readers/jpeg: Do not permit duplicate SOF0 markers in - JPEG - -Otherwise a subsequent header could change the height and width -allowing future OOB writes. - -Fixes: CVE-2024-45774 - -Reported-by: Nils Langius -Signed-off-by: Daniel Axtens -Reviewed-by: Daniel Kiper -Upstream: 2c34af908ebf4856051ed29e46d88abd2b20387f -Signed-off-by: Thomas Petazzoni ---- - grub-core/video/readers/jpeg.c | 4 ++++ - 1 file changed, 4 insertions(+) - -diff --git a/grub-core/video/readers/jpeg.c b/grub-core/video/readers/jpeg.c -index ae634fd41..631a89356 100644 ---- a/grub-core/video/readers/jpeg.c -+++ b/grub-core/video/readers/jpeg.c -@@ -339,6 +339,10 @@ grub_jpeg_decode_sof (struct grub_jpeg_data *data) - if (grub_errno != GRUB_ERR_NONE) - return grub_errno; - -+ if (data->image_height != 0 || data->image_width != 0) -+ return grub_error (GRUB_ERR_BAD_FILE_TYPE, -+ "jpeg: cannot have duplicate SOF0 markers"); -+ - if (grub_jpeg_get_byte (data) != 8) - return grub_error (GRUB_ERR_BAD_FILE_TYPE, - "jpeg: only 8-bit precision is supported"); --- -2.50.1 - diff --git a/boot/grub2/0029-kern-dl-Fix-for-an-integer-overflow-in-grub_dl_ref.patch b/boot/grub2/0029-kern-dl-Fix-for-an-integer-overflow-in-grub_dl_ref.patch deleted file mode 100644 index cea0dede419..00000000000 --- a/boot/grub2/0029-kern-dl-Fix-for-an-integer-overflow-in-grub_dl_ref.patch +++ /dev/null @@ -1,143 +0,0 @@ -From 4d70ddc5255b6d3f752da4120f593d7007222ca2 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 18 Apr 2024 15:59:26 +0100 -Subject: [PATCH] kern/dl: Fix for an integer overflow in grub_dl_ref() - -It was possible to overflow the value of mod->ref_count, a signed -integer, by repeatedly invoking insmod on an already loaded module. -This led to a use-after-free. As once ref_count was overflowed it became -possible to unload the module while there was still references to it. - -This resolves the issue by using grub_add() to check if the ref_count -will overflow and then stops further increments. Further changes were -also made to grub_dl_unref() to check for the underflow condition and -the reference count was changed to an unsigned 64-bit integer. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 500e5fdd82ca40412b0b73f5e5dda38e4a3af96d -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/minicmd.c | 2 +- - grub-core/kern/dl.c | 17 ++++++++++++----- - include/grub/dl.h | 8 ++++---- - util/misc.c | 4 ++-- - 4 files changed, 19 insertions(+), 12 deletions(-) - -diff --git a/grub-core/commands/minicmd.c b/grub-core/commands/minicmd.c -index fa498931e..286290866 100644 ---- a/grub-core/commands/minicmd.c -+++ b/grub-core/commands/minicmd.c -@@ -167,7 +167,7 @@ grub_mini_cmd_lsmod (struct grub_command *cmd __attribute__ ((unused)), - { - grub_dl_dep_t dep; - -- grub_printf ("%s\t%d\t\t", mod->name, mod->ref_count); -+ grub_printf ("%s\t%" PRIuGRUB_UINT64_T "\t\t", mod->name, mod->ref_count); - for (dep = mod->dep; dep; dep = dep->next) - { - if (dep != mod->dep) -diff --git a/grub-core/kern/dl.c b/grub-core/kern/dl.c -index 0bf40caa6..1a38742e6 100644 ---- a/grub-core/kern/dl.c -+++ b/grub-core/kern/dl.c -@@ -32,6 +32,7 @@ - #include - #include - #include -+#include - - /* Platforms where modules are in a readonly area of memory. */ - #if defined(GRUB_MACHINE_QEMU) -@@ -532,7 +533,7 @@ grub_dl_resolve_dependencies (grub_dl_t mod, Elf_Ehdr *e) - return GRUB_ERR_NONE; - } - --int -+grub_uint64_t - grub_dl_ref (grub_dl_t mod) - { - grub_dl_dep_t dep; -@@ -543,10 +544,13 @@ grub_dl_ref (grub_dl_t mod) - for (dep = mod->dep; dep; dep = dep->next) - grub_dl_ref (dep->mod); - -- return ++mod->ref_count; -+ if (grub_add (mod->ref_count, 1, &mod->ref_count)) -+ grub_fatal ("Module reference count overflow"); -+ -+ return mod->ref_count; - } - --int -+grub_uint64_t - grub_dl_unref (grub_dl_t mod) - { - grub_dl_dep_t dep; -@@ -557,10 +561,13 @@ grub_dl_unref (grub_dl_t mod) - for (dep = mod->dep; dep; dep = dep->next) - grub_dl_unref (dep->mod); - -- return --mod->ref_count; -+ if (grub_sub (mod->ref_count, 1, &mod->ref_count)) -+ grub_fatal ("Module reference count underflow"); -+ -+ return mod->ref_count; - } - --int -+grub_uint64_t - grub_dl_ref_count (grub_dl_t mod) - { - if (mod == NULL) -diff --git a/include/grub/dl.h b/include/grub/dl.h -index cd1f46c8b..f0a94e273 100644 ---- a/include/grub/dl.h -+++ b/include/grub/dl.h -@@ -174,7 +174,7 @@ typedef struct grub_dl_dep *grub_dl_dep_t; - struct grub_dl - { - char *name; -- int ref_count; -+ grub_uint64_t ref_count; - int persistent; - grub_dl_dep_t dep; - grub_dl_segment_t segment; -@@ -203,9 +203,9 @@ grub_dl_t EXPORT_FUNC(grub_dl_load) (const char *name); - grub_dl_t grub_dl_load_core (void *addr, grub_size_t size); - grub_dl_t EXPORT_FUNC(grub_dl_load_core_noinit) (void *addr, grub_size_t size); - int EXPORT_FUNC(grub_dl_unload) (grub_dl_t mod); --extern int EXPORT_FUNC(grub_dl_ref) (grub_dl_t mod); --extern int EXPORT_FUNC(grub_dl_unref) (grub_dl_t mod); --extern int EXPORT_FUNC(grub_dl_ref_count) (grub_dl_t mod); -+extern grub_uint64_t EXPORT_FUNC(grub_dl_ref) (grub_dl_t mod); -+extern grub_uint64_t EXPORT_FUNC(grub_dl_unref) (grub_dl_t mod); -+extern grub_uint64_t EXPORT_FUNC(grub_dl_ref_count) (grub_dl_t mod); - - extern grub_dl_t EXPORT_VAR(grub_dl_head); - -diff --git a/util/misc.c b/util/misc.c -index d545212d9..0f928e5b4 100644 ---- a/util/misc.c -+++ b/util/misc.c -@@ -190,14 +190,14 @@ grub_xputs_real (const char *str) - - void (*grub_xputs) (const char *str) = grub_xputs_real; - --int -+grub_uint64_t - grub_dl_ref (grub_dl_t mod) - { - (void) mod; - return 0; - } - --int -+grub_uint64_t - grub_dl_unref (grub_dl_t mod) - { - (void) mod; --- -2.50.1 - diff --git a/boot/grub2/0030-kern-dl-Check-for-the-SHF_INFO_LINK-flag-in-grub_dl_.patch b/boot/grub2/0030-kern-dl-Check-for-the-SHF_INFO_LINK-flag-in-grub_dl_.patch deleted file mode 100644 index 9ca04547d47..00000000000 --- a/boot/grub2/0030-kern-dl-Check-for-the-SHF_INFO_LINK-flag-in-grub_dl_.patch +++ /dev/null @@ -1,46 +0,0 @@ -From 91c2e44d3d29d11b339bec954142521148924ed1 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 7 Nov 2024 06:00:36 +0000 -Subject: [PATCH] kern/dl: Check for the SHF_INFO_LINK flag in - grub_dl_relocate_symbols() - -The grub_dl_relocate_symbols() iterates through the sections in -an ELF looking for relocation sections. According to the spec [1] -the SHF_INFO_LINK flag should be set if the sh_info field is meant -to be a section index. - -[1] https://refspecs.linuxbase.org/elf/gabi4+/ch4.sheader.html - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/kern/dl.c - -Conflicts: - grub-core/kern/dl.c - -Upstream: 98ad84328dcabfa603dcf5bd217570aa6b4bdd99 -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/dl.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/kern/dl.c b/grub-core/kern/dl.c -index 1a38742e6..958de3bf1 100644 ---- a/grub-core/kern/dl.c -+++ b/grub-core/kern/dl.c -@@ -599,6 +599,9 @@ grub_dl_relocate_symbols (grub_dl_t mod, void *ehdr) - grub_dl_segment_t seg; - grub_err_t err; - -+ if (!(s->sh_flags & SHF_INFO_LINK)) -+ continue; -+ - /* Find the target segment. */ - for (seg = mod->segment; seg; seg = seg->next) - if (seg->section == s->sh_info) --- -2.50.1 - diff --git a/boot/grub2/0031-commands-extcmd-Missing-check-for-failed-allocation.patch b/boot/grub2/0031-commands-extcmd-Missing-check-for-failed-allocation.patch deleted file mode 100644 index 8a1cdd867dc..00000000000 --- a/boot/grub2/0031-commands-extcmd-Missing-check-for-failed-allocation.patch +++ /dev/null @@ -1,39 +0,0 @@ -From 239a16a303228574f61a82c6fbb041688dff65d0 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:27:55 +0000 -Subject: [PATCH] commands/extcmd: Missing check for failed allocation - -The grub_extcmd_dispatcher() calls grub_arg_list_alloc() to allocate -a grub_arg_list struct but it does not verify the allocation was successful. -In case of failed allocation the NULL state pointer can be accessed in -parse_option() through grub_arg_parse() which may lead to a security issue. - -Fixes: CVE-2024-45775 - -Reported-by: Nils Langius -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: 05be856a8c3aae41f5df90cab7796ab7ee34b872 -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/extcmd.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/commands/extcmd.c b/grub-core/commands/extcmd.c -index 90a5ca24a..c236be13a 100644 ---- a/grub-core/commands/extcmd.c -+++ b/grub-core/commands/extcmd.c -@@ -49,6 +49,9 @@ grub_extcmd_dispatcher (struct grub_command *cmd, int argc, char **args, - } - - state = grub_arg_list_alloc (ext, argc, args); -+ if (state == NULL) -+ return grub_errno; -+ - if (grub_arg_parse (ext, argc, args, state, &new_args, &new_argc)) - { - context.state = state; --- -2.50.1 - diff --git a/boot/grub2/0032-commands-ls-Fix-NULL-dereference.patch b/boot/grub2/0032-commands-ls-Fix-NULL-dereference.patch deleted file mode 100644 index 48b03e74f45..00000000000 --- a/boot/grub2/0032-commands-ls-Fix-NULL-dereference.patch +++ /dev/null @@ -1,37 +0,0 @@ -From 322d82364cc0db30b1ae4fc0adfdf7a43adc91ef Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Sun, 12 May 2024 11:08:23 +0100 -Subject: [PATCH] commands/ls: Fix NULL dereference - -The grub_strrchr() may return NULL when the dirname do not contain "/". -This can happen on broken filesystems. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 0bf56bce47489c059e50e61a3db7f682d8c44b56 -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/ls.c | 6 +++++- - 1 file changed, 5 insertions(+), 1 deletion(-) - -diff --git a/grub-core/commands/ls.c b/grub-core/commands/ls.c -index 6a1c7f5d3..f660946a2 100644 ---- a/grub-core/commands/ls.c -+++ b/grub-core/commands/ls.c -@@ -241,7 +241,11 @@ grub_ls_list_files (char *dirname, int longlist, int all, int human) - - grub_file_close (file); - -- p = grub_strrchr (dirname, '/') + 1; -+ p = grub_strrchr (dirname, '/'); -+ if (p == NULL) -+ goto fail; -+ ++p; -+ - ctx.dirname = grub_strndup (dirname, p - dirname); - if (ctx.dirname == NULL) - goto fail; --- -2.50.1 - diff --git a/boot/grub2/0033-commands-pgp-Unregister-the-check_signatures-hooks-o.patch b/boot/grub2/0033-commands-pgp-Unregister-the-check_signatures-hooks-o.patch deleted file mode 100644 index 6bfc0dd7c3a..00000000000 --- a/boot/grub2/0033-commands-pgp-Unregister-the-check_signatures-hooks-o.patch +++ /dev/null @@ -1,36 +0,0 @@ -From c05c4d591ef5f21fefd95fc928fe123a12f2bfb0 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 1 Nov 2024 19:24:29 +0000 -Subject: [PATCH] commands/pgp: Unregister the "check_signatures" hooks on - module unload - -If the hooks are not removed they can be called after the module has -been unloaded leading to an use-after-free. - -Fixes: CVE-2025-0622 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 2123c5bca7e21fbeb0263df4597ddd7054700726 -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/pgp.c | 2 ++ - 1 file changed, 2 insertions(+) - -diff --git a/grub-core/commands/pgp.c b/grub-core/commands/pgp.c -index c6766f044..5fadc33c4 100644 ---- a/grub-core/commands/pgp.c -+++ b/grub-core/commands/pgp.c -@@ -1010,6 +1010,8 @@ GRUB_MOD_INIT(pgp) - - GRUB_MOD_FINI(pgp) - { -+ grub_register_variable_hook ("check_signatures", NULL, NULL); -+ grub_env_unset ("check_signatures"); - grub_verifier_unregister (&grub_pubkey_verifier); - grub_unregister_extcmd (cmd); - grub_unregister_extcmd (cmd_trust); --- -2.50.1 - diff --git a/boot/grub2/0034-normal-Remove-variables-hooks-on-module-unload.patch b/boot/grub2/0034-normal-Remove-variables-hooks-on-module-unload.patch deleted file mode 100644 index a2028ad6c05..00000000000 --- a/boot/grub2/0034-normal-Remove-variables-hooks-on-module-unload.patch +++ /dev/null @@ -1,42 +0,0 @@ -From 6290cc499f0fcaa82b3764cf1d9beb2ff27d82a1 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 1 Nov 2024 23:46:55 +0000 -Subject: [PATCH] normal: Remove variables hooks on module unload - -The normal module does not entirely cleanup after itself in -its GRUB_MOD_FINI() leaving a few variables hooks in place. -It is not possible to unload normal module now but fix the -issues for completeness. - -On the occasion replace 0s with NULLs for "pager" variable -hooks unregister. - -Fixes: CVE-2025-0622 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 9c16197734ada8d0838407eebe081117799bfe67 -Signed-off-by: Thomas Petazzoni ---- - grub-core/normal/main.c | 4 +++- - 1 file changed, 3 insertions(+), 1 deletion(-) - -diff --git a/grub-core/normal/main.c b/grub-core/normal/main.c -index 3b48cd333..5d848c864 100644 ---- a/grub-core/normal/main.c -+++ b/grub-core/normal/main.c -@@ -582,7 +582,9 @@ GRUB_MOD_FINI(normal) - grub_xputs = grub_xputs_saved; - - grub_set_history (0); -- grub_register_variable_hook ("pager", 0, 0); -+ grub_register_variable_hook ("pager", NULL, NULL); -+ grub_register_variable_hook ("color_normal", NULL, NULL); -+ grub_register_variable_hook ("color_highlight", NULL, NULL); - grub_fs_autoload_hook = 0; - grub_unregister_command (cmd_clear); - } --- -2.50.1 - diff --git a/boot/grub2/0035-gettext-Remove-variables-hooks-on-module-unload.patch b/boot/grub2/0035-gettext-Remove-variables-hooks-on-module-unload.patch deleted file mode 100644 index caf9764131f..00000000000 --- a/boot/grub2/0035-gettext-Remove-variables-hooks-on-module-unload.patch +++ /dev/null @@ -1,39 +0,0 @@ -From 69e0cb299c479e01e1c13a032172d29293db8e69 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 1 Nov 2024 23:52:06 +0000 -Subject: [PATCH] gettext: Remove variables hooks on module unload - -The gettext module does not entirely cleanup after itself in -its GRUB_MOD_FINI() leaving a few variables hooks in place. -It is not possible to unload gettext module because normal -module depends on it. Though fix the issues for completeness. - -Fixes: CVE-2025-0622 - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 7580addfc8c94cedb0cdfd7a1fd65b539215e637 -Signed-off-by: Thomas Petazzoni ---- - grub-core/gettext/gettext.c | 4 ++++ - 1 file changed, 4 insertions(+) - -diff --git a/grub-core/gettext/gettext.c b/grub-core/gettext/gettext.c -index 7a1c14e4f..e4f4f8ee6 100644 ---- a/grub-core/gettext/gettext.c -+++ b/grub-core/gettext/gettext.c -@@ -535,6 +535,10 @@ GRUB_MOD_INIT (gettext) - - GRUB_MOD_FINI (gettext) - { -+ grub_register_variable_hook ("locale_dir", NULL, NULL); -+ grub_register_variable_hook ("secondary_locale_dir", NULL, NULL); -+ grub_register_variable_hook ("lang", NULL, NULL); -+ - grub_gettext_delete_list (&main_context); - grub_gettext_delete_list (&secondary_context); - --- -2.50.1 - diff --git a/boot/grub2/0036-gettext-Integer-overflow-leads-to-heap-OOB-write-or-.patch b/boot/grub2/0036-gettext-Integer-overflow-leads-to-heap-OOB-write-or-.patch deleted file mode 100644 index 84d2fd9bc84..00000000000 --- a/boot/grub2/0036-gettext-Integer-overflow-leads-to-heap-OOB-write-or-.patch +++ /dev/null @@ -1,40 +0,0 @@ -From 31b3e24947c6dbb65ea2eca30ddd168dc47513ce Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:27:56 +0000 -Subject: [PATCH] gettext: Integer overflow leads to heap OOB write or read - -Calculation of ctx->grub_gettext_msg_list size in grub_mofile_open() may -overflow leading to subsequent OOB write or read. This patch fixes the -issue by replacing grub_zalloc() and explicit multiplication with -grub_calloc() which does the same thing in safe manner. - -Fixes: CVE-2024-45776 - -Reported-by: Nils Langius -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: 09bd6eb58b0f71ec273916070fa1e2de16897a91 -Signed-off-by: Thomas Petazzoni ---- - grub-core/gettext/gettext.c | 4 ++-- - 1 file changed, 2 insertions(+), 2 deletions(-) - -diff --git a/grub-core/gettext/gettext.c b/grub-core/gettext/gettext.c -index e4f4f8ee6..63bb1ab73 100644 ---- a/grub-core/gettext/gettext.c -+++ b/grub-core/gettext/gettext.c -@@ -323,8 +323,8 @@ grub_mofile_open (struct grub_gettext_context *ctx, - for (ctx->grub_gettext_max_log = 0; ctx->grub_gettext_max >> ctx->grub_gettext_max_log; - ctx->grub_gettext_max_log++); - -- ctx->grub_gettext_msg_list = grub_zalloc (ctx->grub_gettext_max -- * sizeof (ctx->grub_gettext_msg_list[0])); -+ ctx->grub_gettext_msg_list = grub_calloc (ctx->grub_gettext_max, -+ sizeof (ctx->grub_gettext_msg_list[0])); - if (!ctx->grub_gettext_msg_list) - { - grub_file_close (fd); --- -2.50.1 - diff --git a/boot/grub2/0037-gettext-Integer-overflow-leads-to-heap-OOB-write.patch b/boot/grub2/0037-gettext-Integer-overflow-leads-to-heap-OOB-write.patch deleted file mode 100644 index bb3cfb18138..00000000000 --- a/boot/grub2/0037-gettext-Integer-overflow-leads-to-heap-OOB-write.patch +++ /dev/null @@ -1,58 +0,0 @@ -From dfe673e457e9eb5c7c0c68d8385ba176476de7d7 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Fri, 22 Nov 2024 06:27:57 +0000 -Subject: [PATCH] gettext: Integer overflow leads to heap OOB write - -The size calculation of the translation buffer in -grub_gettext_getstr_from_position() may overflow -to 0 leading to heap OOB write. This patch fixes -the issue by using grub_add() and checking for -an overflow. - -Fixes: CVE-2024-45777 - -Reported-by: Nils Langius -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Alec Brown -Upstream: b970a5ed967816bbca8225994cd0ee2557bad515 -Signed-off-by: Thomas Petazzoni ---- - grub-core/gettext/gettext.c | 7 ++++++- - 1 file changed, 6 insertions(+), 1 deletion(-) - -diff --git a/grub-core/gettext/gettext.c b/grub-core/gettext/gettext.c -index 63bb1ab73..9ffc73428 100644 ---- a/grub-core/gettext/gettext.c -+++ b/grub-core/gettext/gettext.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -99,6 +100,7 @@ grub_gettext_getstr_from_position (struct grub_gettext_context *ctx, - char *translation; - struct string_descriptor desc; - grub_err_t err; -+ grub_size_t alloc_sz; - - internal_position = (off + position * sizeof (desc)); - -@@ -109,7 +111,10 @@ grub_gettext_getstr_from_position (struct grub_gettext_context *ctx, - length = grub_cpu_to_le32 (desc.length); - offset = grub_cpu_to_le32 (desc.offset); - -- translation = grub_malloc (length + 1); -+ if (grub_add (length, 1, &alloc_sz)) -+ return NULL; -+ -+ translation = grub_malloc (alloc_sz); - if (!translation) - return NULL; - --- -2.50.1 - diff --git a/boot/grub2/0038-commands-read-Fix-an-integer-overflow-when-supplying.patch b/boot/grub2/0038-commands-read-Fix-an-integer-overflow-when-supplying.patch deleted file mode 100644 index c3e1d8b5bf2..00000000000 --- a/boot/grub2/0038-commands-read-Fix-an-integer-overflow-when-supplying.patch +++ /dev/null @@ -1,74 +0,0 @@ -From 762eda67c7b0e83011040d5dbcc2ddc9a03b90cd Mon Sep 17 00:00:00 2001 -From: Jonathan Bar Or -Date: Thu, 23 Jan 2025 19:17:05 +0100 -Subject: [PATCH] commands/read: Fix an integer overflow when supplying more - than 2^31 characters - -The grub_getline() function currently has a signed integer variable "i" -that can be overflown when user supplies more than 2^31 characters. -It results in a memory corruption of the allocated line buffer as well -as supplying large negative values to grub_realloc(). - -Fixes: CVE-2025-0690 - -Reported-by: Jonathan Bar Or -Signed-off-by: Jonathan Bar Or -Reviewed-by: Daniel Kiper -Upstream: dad8f502974ed9ad0a70ae6820d17b4b142558fc -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/read.c | 19 +++++++++++++++---- - 1 file changed, 15 insertions(+), 4 deletions(-) - -diff --git a/grub-core/commands/read.c b/grub-core/commands/read.c -index 597c90706..8d72e45c9 100644 ---- a/grub-core/commands/read.c -+++ b/grub-core/commands/read.c -@@ -25,6 +25,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -37,13 +38,14 @@ static const struct grub_arg_option options[] = - static char * - grub_getline (int silent) - { -- int i; -+ grub_size_t i; - char *line; - char *tmp; - int c; -+ grub_size_t alloc_size; - - i = 0; -- line = grub_malloc (1 + i + sizeof('\0')); -+ line = grub_malloc (1 + sizeof('\0')); - if (! line) - return NULL; - -@@ -59,8 +61,17 @@ grub_getline (int silent) - line[i] = (char) c; - if (!silent) - grub_printf ("%c", c); -- i++; -- tmp = grub_realloc (line, 1 + i + sizeof('\0')); -+ if (grub_add (i, 1, &i)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow is detected")); -+ return NULL; -+ } -+ if (grub_add (i, 1 + sizeof('\0'), &alloc_size)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow is detected")); -+ return NULL; -+ } -+ tmp = grub_realloc (line, alloc_size); - if (! tmp) - { - grub_free (line); --- -2.50.1 - diff --git a/boot/grub2/0039-commands-test-Stack-overflow-due-to-unlimited-recurs.patch b/boot/grub2/0039-commands-test-Stack-overflow-due-to-unlimited-recurs.patch deleted file mode 100644 index 73675cc3d9b..00000000000 --- a/boot/grub2/0039-commands-test-Stack-overflow-due-to-unlimited-recurs.patch +++ /dev/null @@ -1,88 +0,0 @@ -From 926fe49003b6b46d595d5900893c8ca79710bbd2 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Mon, 16 Dec 2024 20:22:41 +0000 -Subject: [PATCH] commands/test: Stack overflow due to unlimited recursion - depth - -The test_parse() evaluates test expression recursively. Due to lack of -recursion depth check a specially crafted expression may cause a stack -overflow. The recursion is only triggered by the parentheses usage and -it can be unlimited. However, sensible expressions are unlikely to -contain more than a few parentheses. So, this patch limits the recursion -depth to 100, which should be sufficient. - -Reported-by: Nils Langius -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: c68b7d23628a19da67ebe2e06f84165ee04961af -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/test.c | 21 ++++++++++++++++++--- - 1 file changed, 18 insertions(+), 3 deletions(-) - -diff --git a/grub-core/commands/test.c b/grub-core/commands/test.c -index 62d3fb398..b585c3d70 100644 ---- a/grub-core/commands/test.c -+++ b/grub-core/commands/test.c -@@ -29,6 +29,9 @@ - - GRUB_MOD_LICENSE ("GPLv3+"); - -+/* Set a limit on recursion to avoid stack overflow. */ -+#define MAX_TEST_RECURSION_DEPTH 100 -+ - /* A simple implementation for signed numbers. */ - static int - grub_strtosl (char *arg, const char ** const end, int base) -@@ -150,7 +153,7 @@ get_fileinfo (char *path, struct test_parse_ctx *ctx) - - /* Parse a test expression starting from *argn. */ - static int --test_parse (char **args, int *argn, int argc) -+test_parse (char **args, int *argn, int argc, int *depth) - { - struct test_parse_ctx ctx = { - .and = 1, -@@ -387,13 +390,24 @@ test_parse (char **args, int *argn, int argc) - if (grub_strcmp (args[*argn], ")") == 0) - { - (*argn)++; -+ if (*depth > 0) -+ (*depth)--; -+ - return ctx.or || ctx.and; - } - /* Recursively invoke if parenthesis. */ - if (grub_strcmp (args[*argn], "(") == 0) - { - (*argn)++; -- update_val (test_parse (args, argn, argc), &ctx); -+ -+ if (++(*depth) > MAX_TEST_RECURSION_DEPTH) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("max recursion depth exceeded")); -+ depth--; -+ return ctx.or || ctx.and; -+ } -+ -+ update_val (test_parse (args, argn, argc, depth), &ctx); - continue; - } - -@@ -428,11 +442,12 @@ grub_cmd_test (grub_command_t cmd __attribute__ ((unused)), - int argc, char **args) - { - int argn = 0; -+ int depth = 0; - - if (argc >= 1 && grub_strcmp (args[argc - 1], "]") == 0) - argc--; - -- return test_parse (args, &argn, argc) ? GRUB_ERR_NONE -+ return test_parse (args, &argn, argc, &depth) ? GRUB_ERR_NONE - : grub_error (GRUB_ERR_TEST_FAILURE, N_("false")); - } - --- -2.50.1 - diff --git a/boot/grub2/0040-commands-minicmd-Block-the-dump-command-in-lockdown-.patch b/boot/grub2/0040-commands-minicmd-Block-the-dump-command-in-lockdown-.patch deleted file mode 100644 index 23e02cfa1a8..00000000000 --- a/boot/grub2/0040-commands-minicmd-Block-the-dump-command-in-lockdown-.patch +++ /dev/null @@ -1,38 +0,0 @@ -From 2864e6ca7ac492d5215c369a6a52a57c6e602f55 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 18 Apr 2024 20:29:39 +0100 -Subject: [PATCH] commands/minicmd: Block the dump command in lockdown mode - -The dump enables a user to read memory which should not be possible -in lockdown mode. - -Fixes: CVE-2025-1118 - -Reported-by: B Horn -Reported-by: Jonathan Bar Or -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 34824806ac6302f91e8cabaa41308eaced25725f -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/minicmd.c | 4 ++-- - 1 file changed, 2 insertions(+), 2 deletions(-) - -diff --git a/grub-core/commands/minicmd.c b/grub-core/commands/minicmd.c -index 286290866..8c5ee3e60 100644 ---- a/grub-core/commands/minicmd.c -+++ b/grub-core/commands/minicmd.c -@@ -203,8 +203,8 @@ GRUB_MOD_INIT(minicmd) - grub_register_command ("help", grub_mini_cmd_help, - 0, N_("Show this message.")); - cmd_dump = -- grub_register_command ("dump", grub_mini_cmd_dump, -- N_("ADDR [SIZE]"), N_("Show memory contents.")); -+ grub_register_command_lockdown ("dump", grub_mini_cmd_dump, -+ N_("ADDR [SIZE]"), N_("Show memory contents.")); - cmd_rmmod = - grub_register_command ("rmmod", grub_mini_cmd_rmmod, - N_("MODULE"), N_("Remove a module.")); --- -2.50.1 - diff --git a/boot/grub2/0041-commands-memrw-Disable-memory-reading-in-lockdown-mo.patch b/boot/grub2/0041-commands-memrw-Disable-memory-reading-in-lockdown-mo.patch deleted file mode 100644 index 968a42f4f96..00000000000 --- a/boot/grub2/0041-commands-memrw-Disable-memory-reading-in-lockdown-mo.patch +++ /dev/null @@ -1,55 +0,0 @@ -From 51c3e37bb23b3ce1919f3ff582cb31fc32a10b4b Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Thu, 18 Apr 2024 20:37:10 +0100 -Subject: [PATCH] commands/memrw: Disable memory reading in lockdown mode - -With the rest of module being blocked in lockdown mode it does not make -a lot of sense to leave memory reading enabled. This also goes in par -with disabling the dump command. - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 340e4d058f584534f4b90b7dbea2b64a9f8c418c -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/memrw.c | 21 ++++++++++++--------- - 1 file changed, 12 insertions(+), 9 deletions(-) - -diff --git a/grub-core/commands/memrw.c b/grub-core/commands/memrw.c -index d401a6db0..3542683d1 100644 ---- a/grub-core/commands/memrw.c -+++ b/grub-core/commands/memrw.c -@@ -122,17 +122,20 @@ grub_cmd_write (grub_command_t cmd, int argc, char **argv) - GRUB_MOD_INIT(memrw) - { - cmd_read_byte = -- grub_register_extcmd ("read_byte", grub_cmd_read, 0, -- N_("ADDR"), N_("Read 8-bit value from ADDR."), -- options); -+ grub_register_extcmd_lockdown ("read_byte", grub_cmd_read, 0, -+ N_("ADDR"), -+ N_("Read 8-bit value from ADDR."), -+ options); - cmd_read_word = -- grub_register_extcmd ("read_word", grub_cmd_read, 0, -- N_("ADDR"), N_("Read 16-bit value from ADDR."), -- options); -+ grub_register_extcmd_lockdown ("read_word", grub_cmd_read, 0, -+ N_("ADDR"), -+ N_("Read 16-bit value from ADDR."), -+ options); - cmd_read_dword = -- grub_register_extcmd ("read_dword", grub_cmd_read, 0, -- N_("ADDR"), N_("Read 32-bit value from ADDR."), -- options); -+ grub_register_extcmd_lockdown ("read_dword", grub_cmd_read, 0, -+ N_("ADDR"), -+ N_("Read 32-bit value from ADDR."), -+ options); - cmd_write_byte = - grub_register_command_lockdown ("write_byte", grub_cmd_write, - N_("ADDR VALUE [MASK]"), --- -2.50.1 - diff --git a/boot/grub2/0042-commands-hexdump-Disable-memory-reading-in-lockdown-.patch b/boot/grub2/0042-commands-hexdump-Disable-memory-reading-in-lockdown-.patch deleted file mode 100644 index fcced2b3b85..00000000000 --- a/boot/grub2/0042-commands-hexdump-Disable-memory-reading-in-lockdown-.patch +++ /dev/null @@ -1,42 +0,0 @@ -From d5028a608b21c6fa6ff02e4d84a96ab28034d170 Mon Sep 17 00:00:00 2001 -From: B Horn -Date: Fri, 19 Apr 2024 22:31:45 +0100 -Subject: [PATCH] commands/hexdump: Disable memory reading in lockdown mode - -Reported-by: B Horn -Signed-off-by: B Horn -Reviewed-by: Daniel Kiper -Upstream: 5f31164aed51f498957cdd6ed733ec71a8592c99 -Signed-off-by: Thomas Petazzoni ---- - grub-core/commands/hexdump.c | 7 ++++++- - 1 file changed, 6 insertions(+), 1 deletion(-) - -diff --git a/grub-core/commands/hexdump.c b/grub-core/commands/hexdump.c -index eaa12465b..d6f61d98a 100644 ---- a/grub-core/commands/hexdump.c -+++ b/grub-core/commands/hexdump.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -51,7 +52,11 @@ grub_cmd_hexdump (grub_extcmd_context_t ctxt, int argc, char **args) - length = (state[1].set) ? grub_strtoul (state[1].arg, 0, 0) : 256; - - if (!grub_strcmp (args[0], "(mem)")) -- hexdump (skip, (char *) (grub_addr_t) skip, length); -+ { -+ if (grub_is_lockdown() == GRUB_LOCKDOWN_ENABLED) -+ return grub_error (GRUB_ERR_ACCESS_DENIED, N_("memory reading is disabled in lockdown mode")); -+ hexdump (skip, (char *) (grub_addr_t) skip, length); -+ } - else if ((args[0][0] == '(') && (args[0][namelen - 1] == ')')) - { - grub_disk_t disk; --- -2.50.1 - diff --git a/boot/grub2/0043-fs-bfs-Disable-under-lockdown.patch b/boot/grub2/0043-fs-bfs-Disable-under-lockdown.patch deleted file mode 100644 index 58a63985cdd..00000000000 --- a/boot/grub2/0043-fs-bfs-Disable-under-lockdown.patch +++ /dev/null @@ -1,57 +0,0 @@ -From 71487b0cf0f7c3fa45f450ed1f3ea4cedd8002a1 Mon Sep 17 00:00:00 2001 -From: Daniel Axtens -Date: Sat, 23 Mar 2024 15:59:43 +1100 -Subject: [PATCH] fs/bfs: Disable under lockdown - -The BFS is not fuzz-clean. Don't allow it to be loaded under lockdown. -This will also disable the AFS. - -Fixes: CVE-2024-45778 -Fixes: CVE-2024-45779 - -Reported-by: Nils Langius -Signed-off-by: Daniel Axtens -Reviewed-by: Daniel Kiper -Upstream: 26db6605036bd9e5b16d9068a8cc75be63b8b630 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/bfs.c | 11 ++++++++--- - 1 file changed, 8 insertions(+), 3 deletions(-) - -diff --git a/grub-core/fs/bfs.c b/grub-core/fs/bfs.c -index f37b16895..c92fd7916 100644 ---- a/grub-core/fs/bfs.c -+++ b/grub-core/fs/bfs.c -@@ -30,6 +30,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -1106,8 +1107,11 @@ GRUB_MOD_INIT (bfs) - { - COMPILE_TIME_ASSERT (1 << LOG_EXTENT_SIZE == - sizeof (struct grub_bfs_extent)); -- grub_bfs_fs.mod = mod; -- grub_fs_register (&grub_bfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_bfs_fs.mod = mod; -+ grub_fs_register (&grub_bfs_fs); -+ } - } - - #ifdef MODE_AFS -@@ -1116,5 +1120,6 @@ GRUB_MOD_FINI (afs) - GRUB_MOD_FINI (bfs) - #endif - { -- grub_fs_unregister (&grub_bfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_bfs_fs); - } --- -2.50.1 - diff --git a/boot/grub2/0044-fs-Disable-many-filesystems-under-lockdown.patch b/boot/grub2/0044-fs-Disable-many-filesystems-under-lockdown.patch deleted file mode 100644 index 9120f8c8727..00000000000 --- a/boot/grub2/0044-fs-Disable-many-filesystems-under-lockdown.patch +++ /dev/null @@ -1,396 +0,0 @@ -From f0846530aef66583064a6707430437912dda5fa9 Mon Sep 17 00:00:00 2001 -From: Daniel Axtens -Date: Sat, 23 Mar 2024 16:20:45 +1100 -Subject: [PATCH] fs: Disable many filesystems under lockdown - -The idea is to permit the following: btrfs, cpio, exfat, ext, f2fs, fat, -hfsplus, iso9660, squash4, tar, xfs and zfs. - -The JFS, ReiserFS, romfs, UDF and UFS security vulnerabilities were -reported by Jonathan Bar Or . - -Fixes: CVE-2025-0677 -Fixes: CVE-2025-0684 -Fixes: CVE-2025-0685 -Fixes: CVE-2025-0686 -Fixes: CVE-2025-0689 - -Suggested-by: Daniel Axtens -Signed-off-by: Daniel Axtens -Reviewed-by: Daniel Kiper -Upstream: c4bc55da28543d2522a939ba4ee0acde45f2fa74 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/affs.c | 11 ++++++++--- - grub-core/fs/cbfs.c | 11 ++++++++--- - grub-core/fs/jfs.c | 11 ++++++++--- - grub-core/fs/minix.c | 11 ++++++++--- - grub-core/fs/nilfs2.c | 11 ++++++++--- - grub-core/fs/ntfs.c | 11 ++++++++--- - grub-core/fs/reiserfs.c | 11 ++++++++--- - grub-core/fs/romfs.c | 11 ++++++++--- - grub-core/fs/sfs.c | 11 ++++++++--- - grub-core/fs/udf.c | 11 ++++++++--- - grub-core/fs/ufs.c | 11 ++++++++--- - 11 files changed, 88 insertions(+), 33 deletions(-) - -diff --git a/grub-core/fs/affs.c b/grub-core/fs/affs.c -index 9b0afb954..520a001c7 100644 ---- a/grub-core/fs/affs.c -+++ b/grub-core/fs/affs.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -703,12 +704,16 @@ static struct grub_fs grub_affs_fs = - - GRUB_MOD_INIT(affs) - { -- grub_affs_fs.mod = mod; -- grub_fs_register (&grub_affs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_affs_fs.mod = mod; -+ grub_fs_register (&grub_affs_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI(affs) - { -- grub_fs_unregister (&grub_affs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_affs_fs); - } -diff --git a/grub-core/fs/cbfs.c b/grub-core/fs/cbfs.c -index 2332745fe..b62c8777c 100644 ---- a/grub-core/fs/cbfs.c -+++ b/grub-core/fs/cbfs.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -390,13 +391,17 @@ GRUB_MOD_INIT (cbfs) - #if (defined (__i386__) || defined (__x86_64__)) && !defined (GRUB_UTIL) && !defined (GRUB_MACHINE_EMU) && !defined (GRUB_MACHINE_XEN) - init_cbfsdisk (); - #endif -- grub_cbfs_fs.mod = mod; -- grub_fs_register (&grub_cbfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_cbfs_fs.mod = mod; -+ grub_fs_register (&grub_cbfs_fs); -+ } - } - - GRUB_MOD_FINI (cbfs) - { -- grub_fs_unregister (&grub_cbfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_cbfs_fs); - #if (defined (__i386__) || defined (__x86_64__)) && !defined (GRUB_UTIL) && !defined (GRUB_MACHINE_EMU) && !defined (GRUB_MACHINE_XEN) - fini_cbfsdisk (); - #endif -diff --git a/grub-core/fs/jfs.c b/grub-core/fs/jfs.c -index b0283ac00..ab175c7f1 100644 ---- a/grub-core/fs/jfs.c -+++ b/grub-core/fs/jfs.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -1005,12 +1006,16 @@ static struct grub_fs grub_jfs_fs = - - GRUB_MOD_INIT(jfs) - { -- grub_jfs_fs.mod = mod; -- grub_fs_register (&grub_jfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_jfs_fs.mod = mod; -+ grub_fs_register (&grub_jfs_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI(jfs) - { -- grub_fs_unregister (&grub_jfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_jfs_fs); - } -diff --git a/grub-core/fs/minix.c b/grub-core/fs/minix.c -index b7679c3e2..4440fcca8 100644 ---- a/grub-core/fs/minix.c -+++ b/grub-core/fs/minix.c -@@ -25,6 +25,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -734,8 +735,11 @@ GRUB_MOD_INIT(minix) - #endif - #endif - { -- grub_minix_fs.mod = mod; -- grub_fs_register (&grub_minix_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_minix_fs.mod = mod; -+ grub_fs_register (&grub_minix_fs); -+ } - my_mod = mod; - } - -@@ -757,5 +761,6 @@ GRUB_MOD_FINI(minix) - #endif - #endif - { -- grub_fs_unregister (&grub_minix_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_minix_fs); - } -diff --git a/grub-core/fs/nilfs2.c b/grub-core/fs/nilfs2.c -index 4e1e71738..26e6077ff 100644 ---- a/grub-core/fs/nilfs2.c -+++ b/grub-core/fs/nilfs2.c -@@ -34,6 +34,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -1231,12 +1232,16 @@ GRUB_MOD_INIT (nilfs2) - grub_nilfs2_dat_entry)); - COMPILE_TIME_ASSERT (1 << LOG_INODE_SIZE - == sizeof (struct grub_nilfs2_inode)); -- grub_nilfs2_fs.mod = mod; -- grub_fs_register (&grub_nilfs2_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_nilfs2_fs.mod = mod; -+ grub_fs_register (&grub_nilfs2_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI (nilfs2) - { -- grub_fs_unregister (&grub_nilfs2_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_nilfs2_fs); - } -diff --git a/grub-core/fs/ntfs.c b/grub-core/fs/ntfs.c -index 560917dc2..bce81947c 100644 ---- a/grub-core/fs/ntfs.c -+++ b/grub-core/fs/ntfs.c -@@ -27,6 +27,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -1320,12 +1321,16 @@ static struct grub_fs grub_ntfs_fs = - - GRUB_MOD_INIT (ntfs) - { -- grub_ntfs_fs.mod = mod; -- grub_fs_register (&grub_ntfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_ntfs_fs.mod = mod; -+ grub_fs_register (&grub_ntfs_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI (ntfs) - { -- grub_fs_unregister (&grub_ntfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_ntfs_fs); - } -diff --git a/grub-core/fs/reiserfs.c b/grub-core/fs/reiserfs.c -index c3850e013..5d3c85950 100644 ---- a/grub-core/fs/reiserfs.c -+++ b/grub-core/fs/reiserfs.c -@@ -39,6 +39,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -1417,12 +1418,16 @@ static struct grub_fs grub_reiserfs_fs = - - GRUB_MOD_INIT(reiserfs) - { -- grub_reiserfs_fs.mod = mod; -- grub_fs_register (&grub_reiserfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_reiserfs_fs.mod = mod; -+ grub_fs_register (&grub_reiserfs_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI(reiserfs) - { -- grub_fs_unregister (&grub_reiserfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_reiserfs_fs); - } -diff --git a/grub-core/fs/romfs.c b/grub-core/fs/romfs.c -index 56b0b2b2f..eafab03b2 100644 ---- a/grub-core/fs/romfs.c -+++ b/grub-core/fs/romfs.c -@@ -23,6 +23,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -475,11 +476,15 @@ static struct grub_fs grub_romfs_fs = - - GRUB_MOD_INIT(romfs) - { -- grub_romfs_fs.mod = mod; -- grub_fs_register (&grub_romfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_romfs_fs.mod = mod; -+ grub_fs_register (&grub_romfs_fs); -+ } - } - - GRUB_MOD_FINI(romfs) - { -- grub_fs_unregister (&grub_romfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_romfs_fs); - } -diff --git a/grub-core/fs/sfs.c b/grub-core/fs/sfs.c -index f0d7cac43..88705b3a2 100644 ---- a/grub-core/fs/sfs.c -+++ b/grub-core/fs/sfs.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - #include - - GRUB_MOD_LICENSE ("GPLv3+"); -@@ -779,12 +780,16 @@ static struct grub_fs grub_sfs_fs = - - GRUB_MOD_INIT(sfs) - { -- grub_sfs_fs.mod = mod; -- grub_fs_register (&grub_sfs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_sfs_fs.mod = mod; -+ grub_fs_register (&grub_sfs_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI(sfs) - { -- grub_fs_unregister (&grub_sfs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_sfs_fs); - } -diff --git a/grub-core/fs/udf.c b/grub-core/fs/udf.c -index 8765c633c..3d5ee5af5 100644 ---- a/grub-core/fs/udf.c -+++ b/grub-core/fs/udf.c -@@ -27,6 +27,7 @@ - #include - #include - #include -+#include - #include - #include - -@@ -1455,12 +1456,16 @@ static struct grub_fs grub_udf_fs = { - - GRUB_MOD_INIT (udf) - { -- grub_udf_fs.mod = mod; -- grub_fs_register (&grub_udf_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_udf_fs.mod = mod; -+ grub_fs_register (&grub_udf_fs); -+ } - my_mod = mod; - } - - GRUB_MOD_FINI (udf) - { -- grub_fs_unregister (&grub_udf_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_udf_fs); - } -diff --git a/grub-core/fs/ufs.c b/grub-core/fs/ufs.c -index e82d9356d..8b5adbd48 100644 ---- a/grub-core/fs/ufs.c -+++ b/grub-core/fs/ufs.c -@@ -25,6 +25,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -899,8 +900,11 @@ GRUB_MOD_INIT(ufs1) - #endif - #endif - { -- grub_ufs_fs.mod = mod; -- grub_fs_register (&grub_ufs_fs); -+ if (!grub_is_lockdown ()) -+ { -+ grub_ufs_fs.mod = mod; -+ grub_fs_register (&grub_ufs_fs); -+ } - my_mod = mod; - } - -@@ -914,6 +918,7 @@ GRUB_MOD_FINI(ufs1) - #endif - #endif - { -- grub_fs_unregister (&grub_ufs_fs); -+ if (!grub_is_lockdown ()) -+ grub_fs_unregister (&grub_ufs_fs); - } - --- -2.50.1 - diff --git a/boot/grub2/0045-disk-Use-safe-math-macros-to-prevent-overflows.patch b/boot/grub2/0045-disk-Use-safe-math-macros-to-prevent-overflows.patch deleted file mode 100644 index 3ddd168ad5e..00000000000 --- a/boot/grub2/0045-disk-Use-safe-math-macros-to-prevent-overflows.patch +++ /dev/null @@ -1,551 +0,0 @@ -From b6bdea00ea1a3d6b0b7551133279cbc7ff23bdf6 Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 22 Jan 2025 02:55:09 +0000 -Subject: [PATCH] disk: Use safe math macros to prevent overflows - -Replace direct arithmetic operations with macros from include/grub/safemath.h -to prevent potential overflow issues when calculating the memory sizes. - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/disk/cryptodisk.c - -Upstream: c407724dad6c3e2fc1571e57adbda71cc03f82aa -Signed-off-by: Thomas Petazzoni ---- - grub-core/disk/cryptodisk.c | 36 ++++++++++++++----- - grub-core/disk/diskfilter.c | 9 +++-- - grub-core/disk/ieee1275/obdisk.c | 43 +++++++++++++++++++---- - grub-core/disk/ieee1275/ofdisk.c | 59 +++++++++++++++++++++++++++----- - grub-core/disk/ldm.c | 36 ++++++++++++++++--- - grub-core/disk/luks2.c | 7 +++- - grub-core/disk/memdisk.c | 7 +++- - grub-core/disk/plainmount.c | 9 +++-- - 8 files changed, 172 insertions(+), 34 deletions(-) - -diff --git a/grub-core/disk/cryptodisk.c b/grub-core/disk/cryptodisk.c -index 2246af51b..6f7445665 100644 ---- a/grub-core/disk/cryptodisk.c -+++ b/grub-core/disk/cryptodisk.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - #ifdef GRUB_UTIL - #include -@@ -1473,7 +1474,7 @@ static char * - luks_script_get (grub_size_t *sz) - { - grub_cryptodisk_t i; -- grub_size_t size = 0; -+ grub_size_t size = 0, mul; - char *ptr, *ret; - - *sz = 0; -@@ -1482,10 +1483,6 @@ luks_script_get (grub_size_t *sz) - if (grub_strcmp (i->modname, "luks") == 0 || - grub_strcmp (i->modname, "luks2") == 0) - { -- size += grub_strlen (i->modname); -- size += sizeof ("_mount"); -- size += grub_strlen (i->uuid); -- size += grub_strlen (i->cipher->cipher->name); - /* - * Add space in the line for (in order) spaces, cipher mode, cipher IV - * mode, sector offset, sector size and the trailing newline. This is -@@ -1493,14 +1490,35 @@ luks_script_get (grub_size_t *sz) - * in an earlier version of this code that are unaccounted for. It is - * left in the calculations in case it is needed. At worst, its short- - * lived wasted space. -+ * -+ * 60 = 5 + 5 + 8 + 20 + 6 + 1 + 15 - */ -- size += 5 + 5 + 8 + 20 + 6 + 1 + 15; -+ if (grub_add (size, grub_strlen (i->modname), &size) || -+ grub_add (size, sizeof ("_mount") + 60, &size) || -+ grub_add (size, grub_strlen (i->uuid), &size) || -+ grub_add (size, grub_strlen (i->cipher->cipher->name), &size) || -+ grub_mul (i->keysize, 2, &mul) || -+ grub_add (size, mul, &size)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while obtaining size of luks script"); -+ return 0; -+ } - if (i->essiv_hash) -- size += grub_strlen (i->essiv_hash->name); -- size += i->keysize * 2; -+ { -+ if (grub_add (size, grub_strlen (i->essiv_hash->name), &size)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while obtaining size of luks script"); -+ return 0; -+ } -+ } - } -+ if (grub_add (size, 1, &size)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while obtaining size of luks script"); -+ return 0; -+ } - -- ret = grub_malloc (size + 1); -+ ret = grub_malloc (size); - if (!ret) - return 0; - -diff --git a/grub-core/disk/diskfilter.c b/grub-core/disk/diskfilter.c -index 21e239511..de5a564d4 100644 ---- a/grub-core/disk/diskfilter.c -+++ b/grub-core/disk/diskfilter.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - #ifdef GRUB_UTIL - #include - #include -@@ -1039,7 +1040,7 @@ grub_diskfilter_make_raid (grub_size_t uuidlen, char *uuid, int nmemb, - { - struct grub_diskfilter_vg *array; - int i; -- grub_size_t j; -+ grub_size_t j, sz; - grub_uint64_t totsize; - struct grub_diskfilter_pv *pv; - grub_err_t err; -@@ -1140,7 +1141,11 @@ grub_diskfilter_make_raid (grub_size_t uuidlen, char *uuid, int nmemb, - } - array->lvs->vg = array; - -- array->lvs->idname = grub_malloc (sizeof ("mduuid/") + 2 * uuidlen); -+ if (grub_mul (uuidlen, 2, &sz) || -+ grub_add (sz, sizeof ("mduuid/"), &sz)) -+ goto fail; -+ -+ array->lvs->idname = grub_malloc (sz); - if (!array->lvs->idname) - goto fail; - -diff --git a/grub-core/disk/ieee1275/obdisk.c b/grub-core/disk/ieee1275/obdisk.c -index cd923b90f..9d4c42665 100644 ---- a/grub-core/disk/ieee1275/obdisk.c -+++ b/grub-core/disk/ieee1275/obdisk.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - #include - #include - -@@ -128,9 +129,17 @@ count_commas (const char *src) - static char * - decode_grub_devname (const char *name) - { -- char *devpath = grub_malloc (grub_strlen (name) + 1); -+ char *devpath; - char *p, c; -+ grub_size_t sz; - -+ if (grub_add (grub_strlen (name), 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining size of device name")); -+ return NULL; -+ } -+ -+ devpath = grub_malloc (sz); - if (devpath == NULL) - return NULL; - -@@ -156,12 +165,20 @@ static char * - encode_grub_devname (const char *path) - { - char *encoding, *optr; -+ grub_size_t sz; - - if (path == NULL) - return NULL; - -- encoding = grub_malloc (sizeof (IEEE1275_DEV) + count_commas (path) + -- grub_strlen (path) + 1); -+ if (grub_add (sizeof (IEEE1275_DEV) + 1, count_commas (path), &sz) || -+ grub_add (sz, grub_strlen (path), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining encoding size")); -+ grub_print_error (); -+ return NULL; -+ } -+ -+ encoding = grub_malloc (sz); - - if (encoding == NULL) - { -@@ -396,6 +413,14 @@ canonicalise_disk (const char *devname) - - real_unit_str_len = grub_strlen (op->name) + sizeof (IEEE1275_DISK_ALIAS) - + grub_strlen (real_unit_address); -+ if (grub_add (grub_strlen (op->name), sizeof (IEEE1275_DISK_ALIAS), &real_unit_str_len) || -+ grub_add (real_unit_str_len, grub_strlen (real_unit_address), &real_unit_str_len)) -+ { -+ grub_free (parent); -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining size of canonical name")); -+ grub_print_error (); -+ return NULL; -+ } - - real_canon = grub_malloc (real_unit_str_len); - -@@ -413,6 +438,7 @@ canonicalise_disk (const char *devname) - static struct disk_dev * - add_canon_disk (const char *cname) - { -+ grub_size_t sz; - struct disk_dev *dev; - - dev = grub_zalloc (sizeof (struct disk_dev)); -@@ -428,13 +454,18 @@ add_canon_disk (const char *cname) - * arguments and allows a client program to open - * the entire (raw) disk. Any disk label is ignored. - */ -- dev->raw_name = grub_malloc (grub_strlen (cname) + sizeof (":nolabel")); -+ if (grub_add (grub_strlen (cname), sizeof (":nolabel"), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while appending :nolabel to end of canonical name"); -+ goto failed; -+ } -+ -+ dev->raw_name = grub_malloc (sz); - - if (dev->raw_name == NULL) - goto failed; - -- grub_snprintf (dev->raw_name, grub_strlen (cname) + sizeof (":nolabel"), -- "%s:nolabel", cname); -+ grub_snprintf (dev->raw_name, sz, "%s:nolabel", cname); - } - - /* -diff --git a/grub-core/disk/ieee1275/ofdisk.c b/grub-core/disk/ieee1275/ofdisk.c -index c6cba0c8a..4c5b89cbc 100644 ---- a/grub-core/disk/ieee1275/ofdisk.c -+++ b/grub-core/disk/ieee1275/ofdisk.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - static char *last_devpath; - static grub_ieee1275_ihandle_t last_ihandle; -@@ -80,6 +81,7 @@ ofdisk_hash_add_real (char *devpath) - struct ofdisk_hash_ent **head = &ofdisk_hash[ofdisk_hash_fn(devpath)]; - const char *iptr; - char *optr; -+ grub_size_t sz; - - p = grub_zalloc (sizeof (*p)); - if (!p) -@@ -87,8 +89,14 @@ ofdisk_hash_add_real (char *devpath) - - p->devpath = devpath; - -- p->grub_devpath = grub_malloc (sizeof ("ieee1275/") -- + 2 * grub_strlen (p->devpath)); -+ if (grub_mul (grub_strlen (p->devpath), 2, &sz) || -+ grub_add (sz, sizeof ("ieee1275/"), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining size of device path")); -+ return NULL; -+ } -+ -+ p->grub_devpath = grub_malloc (sz); - - if (!p->grub_devpath) - { -@@ -98,7 +106,13 @@ ofdisk_hash_add_real (char *devpath) - - if (! grub_ieee1275_test_flag (GRUB_IEEE1275_FLAG_NO_PARTITION_0)) - { -- p->open_path = grub_malloc (grub_strlen (p->devpath) + 3); -+ if (grub_add (grub_strlen (p->devpath), 3, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining size of an open path")); -+ return NULL; -+ } -+ -+ p->open_path = grub_malloc (sz); - if (!p->open_path) - { - grub_free (p->grub_devpath); -@@ -224,6 +238,7 @@ dev_iterate (const struct grub_ieee1275_devalias *alias) - args; - char *buf, *bufptr; - unsigned i; -+ grub_size_t sz; - - if (grub_ieee1275_open (alias->path, &ihandle)) - return; -@@ -243,7 +258,14 @@ dev_iterate (const struct grub_ieee1275_devalias *alias) - return; - } - -- buf = grub_malloc (grub_strlen (alias->path) + 32); -+ if (grub_add (grub_strlen (alias->path), 32, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while creating buffer for vscsi"); -+ grub_ieee1275_close (ihandle); -+ return; -+ } -+ -+ buf = grub_malloc (sz); - if (!buf) - return; - bufptr = grub_stpcpy (buf, alias->path); -@@ -287,9 +309,15 @@ dev_iterate (const struct grub_ieee1275_devalias *alias) - grub_uint64_t *table; - grub_uint16_t table_size; - grub_ieee1275_ihandle_t ihandle; -+ grub_size_t sz; - -- buf = grub_malloc (grub_strlen (alias->path) + -- sizeof ("/disk@7766554433221100")); -+ if (grub_add (grub_strlen (alias->path), sizeof ("/disk@7766554433221100"), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while creating buffer for sas_ioa"); -+ return; -+ } -+ -+ buf = grub_malloc (sz); - if (!buf) - return; - bufptr = grub_stpcpy (buf, alias->path); -@@ -427,9 +455,17 @@ grub_ofdisk_iterate (grub_disk_dev_iterate_hook_t hook, void *hook_data, - static char * - compute_dev_path (const char *name) - { -- char *devpath = grub_malloc (grub_strlen (name) + 3); -+ char *devpath; - char *p, c; -+ grub_size_t sz; - -+ if (grub_add (grub_strlen (name), 3, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining size of device path")); -+ return NULL; -+ } -+ -+ devpath = grub_malloc (sz); - if (!devpath) - return NULL; - -@@ -625,6 +661,7 @@ insert_bootpath (void) - char *bootpath; - grub_ssize_t bootpath_size; - char *type; -+ grub_size_t sz; - - if (grub_ieee1275_get_property_length (grub_ieee1275_chosen, "bootpath", - &bootpath_size) -@@ -635,7 +672,13 @@ insert_bootpath (void) - return; - } - -- bootpath = (char *) grub_malloc ((grub_size_t) bootpath_size + 64); -+ if (grub_add (bootpath_size, 64, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining bootpath size")); -+ return; -+ } -+ -+ bootpath = (char *) grub_malloc (sz); - if (! bootpath) - { - grub_print_error (); -diff --git a/grub-core/disk/ldm.c b/grub-core/disk/ldm.c -index 34bfe6bd1..4101b15d8 100644 ---- a/grub-core/disk/ldm.c -+++ b/grub-core/disk/ldm.c -@@ -220,6 +220,7 @@ make_vg (grub_disk_t disk, - struct grub_ldm_vblk vblk[GRUB_DISK_SECTOR_SIZE - / sizeof (struct grub_ldm_vblk)]; - unsigned i; -+ grub_size_t sz; - err = grub_disk_read (disk, cursec, 0, - sizeof(vblk), &vblk); - if (err) -@@ -251,7 +252,13 @@ make_vg (grub_disk_t disk, - grub_free (pv); - goto fail2; - } -- pv->internal_id = grub_malloc (ptr[0] + 2); -+ if (grub_add (ptr[0], 2, &sz)) -+ { -+ grub_free (pv); -+ goto fail2; -+ } -+ -+ pv->internal_id = grub_malloc (sz); - if (!pv->internal_id) - { - grub_free (pv); -@@ -276,7 +283,15 @@ make_vg (grub_disk_t disk, - goto fail2; - } - pv->id.uuidlen = *ptr; -- pv->id.uuid = grub_malloc (pv->id.uuidlen + 1); -+ -+ if (grub_add (pv->id.uuidlen, 1, &sz)) -+ { -+ grub_free (pv->internal_id); -+ grub_free (pv); -+ goto fail2; -+ } -+ -+ pv->id.uuid = grub_malloc (sz); - grub_memcpy (pv->id.uuid, ptr + 1, pv->id.uuidlen); - pv->id.uuid[pv->id.uuidlen] = 0; - -@@ -343,7 +358,13 @@ make_vg (grub_disk_t disk, - grub_free (lv); - goto fail2; - } -- lv->internal_id = grub_malloc ((grub_size_t) ptr[0] + 2); -+ if (grub_add (ptr[0], 2, &sz)) -+ { -+ grub_free (lv->segments); -+ grub_free (lv); -+ goto fail2; -+ } -+ lv->internal_id = grub_malloc (sz); - if (!lv->internal_id) - { - grub_free (lv); -@@ -455,6 +476,7 @@ make_vg (grub_disk_t disk, - struct grub_ldm_vblk vblk[GRUB_DISK_SECTOR_SIZE - / sizeof (struct grub_ldm_vblk)]; - unsigned i; -+ grub_size_t sz; - err = grub_disk_read (disk, cursec, 0, - sizeof(vblk), &vblk); - if (err) -@@ -490,7 +512,12 @@ make_vg (grub_disk_t disk, - grub_free (comp); - goto fail2; - } -- comp->internal_id = grub_malloc ((grub_size_t) ptr[0] + 2); -+ if (grub_add (ptr[0], 2, &sz)) -+ { -+ grub_free (comp); -+ goto fail2; -+ } -+ comp->internal_id = grub_malloc (sz); - if (!comp->internal_id) - { - grub_free (comp); -@@ -640,7 +667,6 @@ make_vg (grub_disk_t disk, - if (lv->segments->node_alloc == lv->segments->node_count) - { - void *t; -- grub_size_t sz; - - if (grub_mul (lv->segments->node_alloc, 2, &lv->segments->node_alloc) || - grub_mul (lv->segments->node_alloc, sizeof (*lv->segments->nodes), &sz)) -diff --git a/grub-core/disk/luks2.c b/grub-core/disk/luks2.c -index d5106402f..8036d76ff 100644 ---- a/grub-core/disk/luks2.c -+++ b/grub-core/disk/luks2.c -@@ -26,6 +26,7 @@ - #include - #include - #include -+#include - - #include - #include -@@ -569,6 +570,7 @@ luks2_recover_key (grub_disk_t source, - gcry_err_code_t gcry_ret; - grub_json_t *json = NULL, keyslots; - grub_err_t ret; -+ grub_size_t sz; - - if (cargs->key_data == NULL || cargs->key_len == 0) - return grub_error (GRUB_ERR_BAD_ARGUMENT, "no key data"); -@@ -577,7 +579,10 @@ luks2_recover_key (grub_disk_t source, - if (ret) - return ret; - -- json_header = grub_zalloc (grub_be_to_cpu64 (header.hdr_size) - sizeof (header)); -+ if (grub_sub (grub_be_to_cpu64 (header.hdr_size), sizeof (header), &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, "underflow detected while calculating json header size"); -+ -+ json_header = grub_zalloc (sz); - if (!json_header) - return GRUB_ERR_OUT_OF_MEMORY; - -diff --git a/grub-core/disk/memdisk.c b/grub-core/disk/memdisk.c -index 613779cf3..36de3bfab 100644 ---- a/grub-core/disk/memdisk.c -+++ b/grub-core/disk/memdisk.c -@@ -23,6 +23,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -96,7 +97,11 @@ GRUB_MOD_INIT(memdisk) - - grub_dprintf ("memdisk", "Found memdisk image at %p\n", memdisk_orig_addr); - -- memdisk_size = header->size - sizeof (struct grub_module_header); -+ if (grub_sub (header->size, sizeof (struct grub_module_header), &memdisk_size)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, "underflow detected while obtaining memdisk size"); -+ return; -+ } - memdisk_addr = grub_malloc (memdisk_size); - - grub_dprintf ("memdisk", "Copying memdisk image to dynamic memory\n"); -diff --git a/grub-core/disk/plainmount.c b/grub-core/disk/plainmount.c -index 47e64805f..21ec4072c 100644 ---- a/grub-core/disk/plainmount.c -+++ b/grub-core/disk/plainmount.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -126,7 +127,7 @@ plainmount_configure_password (grub_cryptodisk_t dev, const char *hash, - grub_uint8_t *derived_hash, *dh; - char *p; - unsigned int round, i, len, size; -- grub_size_t alloc_size; -+ grub_size_t alloc_size, sz; - grub_err_t err = GRUB_ERR_NONE; - - /* Support none (plain) hash */ -@@ -145,7 +146,11 @@ plainmount_configure_password (grub_cryptodisk_t dev, const char *hash, - * Allocate buffer for the password and for an added prefix character - * for each hash round ('alloc_size' may not be a multiple of 'len'). - */ -- p = grub_zalloc (alloc_size + (alloc_size / len) + 1); -+ if (grub_add (alloc_size, (alloc_size / len), &sz) || -+ grub_add (sz, 1, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while allocating size of password buffer")); -+ -+ p = grub_zalloc (sz); - derived_hash = grub_zalloc (GRUB_CRYPTODISK_MAX_KEYLEN * 2); - if (p == NULL || derived_hash == NULL) - { --- -2.50.1 - diff --git a/boot/grub2/0046-disk-Prevent-overflows-when-allocating-memory-for-ar.patch b/boot/grub2/0046-disk-Prevent-overflows-when-allocating-memory-for-ar.patch deleted file mode 100644 index 1c1cb0ee3a8..00000000000 --- a/boot/grub2/0046-disk-Prevent-overflows-when-allocating-memory-for-ar.patch +++ /dev/null @@ -1,47 +0,0 @@ -From d9f900247eb886176aace7888be941348a9c8fc8 Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 22 Jan 2025 02:55:10 +0000 -Subject: [PATCH] disk: Prevent overflows when allocating memory for arrays - -Use grub_calloc() when allocating memory for arrays to ensure proper -overflow checks are in place. - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/disk/cryptodisk.c - -Upstream: d8151f98331ee4d15fcca59edffa59246d8fc15f -Signed-off-by: Thomas Petazzoni ---- - grub-core/disk/lvm.c | 6 ++---- - 1 file changed, 2 insertions(+), 4 deletions(-) - -diff --git a/grub-core/disk/lvm.c b/grub-core/disk/lvm.c -index 794248540..a395b200d 100644 ---- a/grub-core/disk/lvm.c -+++ b/grub-core/disk/lvm.c -@@ -671,8 +671,7 @@ grub_lvm_detect (grub_disk_t disk, - goto lvs_segment_fail; - } - -- seg->nodes = grub_zalloc (sizeof (seg->nodes[0]) -- * seg->node_count); -+ seg->nodes = grub_calloc (seg->node_count, sizeof (seg->nodes[0])); - - p = grub_strstr (p, "mirrors = ["); - if (p == NULL) -@@ -760,8 +759,7 @@ grub_lvm_detect (grub_disk_t disk, - } - } - -- seg->nodes = grub_zalloc (sizeof (seg->nodes[0]) -- * seg->node_count); -+ seg->nodes = grub_calloc (seg->node_count, sizeof (seg->nodes[0])); - - p = grub_strstr (p, "raids = ["); - if (p == NULL) --- -2.50.1 - diff --git a/boot/grub2/0047-disk-Check-if-returned-pointer-for-allocated-memory-.patch b/boot/grub2/0047-disk-Check-if-returned-pointer-for-allocated-memory-.patch deleted file mode 100644 index f00d37d9774..00000000000 --- a/boot/grub2/0047-disk-Check-if-returned-pointer-for-allocated-memory-.patch +++ /dev/null @@ -1,157 +0,0 @@ -From 04621aac0412b99323fda050074d4e77c00bc8e8 Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 22 Jan 2025 02:55:11 +0000 -Subject: [PATCH] disk: Check if returned pointer for allocated memory is NULL - -When using grub_malloc(), grub_zalloc() or grub_calloc(), these functions can -fail if we are out of memory. After allocating memory we should check if these -functions returned NULL and handle this error if they did. - -On the occasion make a NULL check in ATA code more obvious. - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 33bd6b5ac5c77b346769ab5284262f94e695e464 -Signed-off-by: Thomas Petazzoni ---- - grub-core/disk/ata.c | 4 ++-- - grub-core/disk/ieee1275/obdisk.c | 6 ++++++ - grub-core/disk/ldm.c | 6 ++++++ - grub-core/disk/lvm.c | 14 ++++++++++++++ - grub-core/disk/memdisk.c | 2 ++ - 5 files changed, 30 insertions(+), 2 deletions(-) - -diff --git a/grub-core/disk/ata.c b/grub-core/disk/ata.c -index 7b6ac7bfc..a2433e29e 100644 ---- a/grub-core/disk/ata.c -+++ b/grub-core/disk/ata.c -@@ -112,10 +112,10 @@ grub_ata_identify (struct grub_ata *dev) - return grub_atapi_identify (dev); - - info64 = grub_malloc (GRUB_DISK_SECTOR_SIZE); -+ if (info64 == NULL) -+ return grub_errno; - info32 = (grub_uint32_t *) info64; - info16 = (grub_uint16_t *) info64; -- if (! info16) -- return grub_errno; - - grub_memset (&parms, 0, sizeof (parms)); - parms.buffer = info16; -diff --git a/grub-core/disk/ieee1275/obdisk.c b/grub-core/disk/ieee1275/obdisk.c -index 9d4c42665..fcc39e0a2 100644 ---- a/grub-core/disk/ieee1275/obdisk.c -+++ b/grub-core/disk/ieee1275/obdisk.c -@@ -423,6 +423,12 @@ canonicalise_disk (const char *devname) - } - - real_canon = grub_malloc (real_unit_str_len); -+ if (real_canon == NULL) -+ { -+ grub_free (parent); -+ grub_print_error (); -+ return NULL; -+ } - - grub_snprintf (real_canon, real_unit_str_len, "%s/disk@%s", - op->name, real_unit_address); -diff --git a/grub-core/disk/ldm.c b/grub-core/disk/ldm.c -index 4101b15d8..048e29cd0 100644 ---- a/grub-core/disk/ldm.c -+++ b/grub-core/disk/ldm.c -@@ -292,6 +292,12 @@ make_vg (grub_disk_t disk, - } - - pv->id.uuid = grub_malloc (sz); -+ if (pv->id.uuid == NULL) -+ { -+ grub_free (pv->internal_id); -+ grub_free (pv); -+ goto fail2; -+ } - grub_memcpy (pv->id.uuid, ptr + 1, pv->id.uuidlen); - pv->id.uuid[pv->id.uuidlen] = 0; - -diff --git a/grub-core/disk/lvm.c b/grub-core/disk/lvm.c -index a395b200d..b2dff76d1 100644 ---- a/grub-core/disk/lvm.c -+++ b/grub-core/disk/lvm.c -@@ -370,6 +370,8 @@ grub_lvm_detect (grub_disk_t disk, - break; - - pv = grub_zalloc (sizeof (*pv)); -+ if (pv == NULL) -+ goto fail4; - q = p; - while (*q != ' ' && q < mda_end) - q++; -@@ -379,6 +381,8 @@ grub_lvm_detect (grub_disk_t disk, - - s = q - p; - pv->name = grub_malloc (s + 1); -+ if (pv->name == NULL) -+ goto pvs_fail_noname; - grub_memcpy (pv->name, p, s); - pv->name[s] = '\0'; - -@@ -451,6 +455,8 @@ grub_lvm_detect (grub_disk_t disk, - break; - - lv = grub_zalloc (sizeof (*lv)); -+ if (lv == NULL) -+ goto fail4; - - q = p; - while (*q != ' ' && q < mda_end) -@@ -545,6 +551,8 @@ grub_lvm_detect (grub_disk_t disk, - goto lvs_fail; - } - lv->segments = grub_calloc (lv->segment_count, sizeof (*seg)); -+ if (lv->segments == NULL) -+ goto lvs_fail; - seg = lv->segments; - - for (i = 0; i < lv->segment_count; i++) -@@ -612,6 +620,8 @@ grub_lvm_detect (grub_disk_t disk, - - seg->nodes = grub_calloc (seg->node_count, - sizeof (*stripe)); -+ if (seg->nodes == NULL) -+ goto lvs_segment_fail; - stripe = seg->nodes; - - p = grub_strstr (p, "stripes = ["); -@@ -672,6 +682,8 @@ grub_lvm_detect (grub_disk_t disk, - } - - seg->nodes = grub_calloc (seg->node_count, sizeof (seg->nodes[0])); -+ if (seg->nodes == NULL) -+ goto lvs_segment_fail; - - p = grub_strstr (p, "mirrors = ["); - if (p == NULL) -@@ -760,6 +772,8 @@ grub_lvm_detect (grub_disk_t disk, - } - - seg->nodes = grub_calloc (seg->node_count, sizeof (seg->nodes[0])); -+ if (seg->nodes == NULL) -+ goto lvs_segment_fail; - - p = grub_strstr (p, "raids = ["); - if (p == NULL) -diff --git a/grub-core/disk/memdisk.c b/grub-core/disk/memdisk.c -index 36de3bfab..2d7afaea3 100644 ---- a/grub-core/disk/memdisk.c -+++ b/grub-core/disk/memdisk.c -@@ -103,6 +103,8 @@ GRUB_MOD_INIT(memdisk) - return; - } - memdisk_addr = grub_malloc (memdisk_size); -+ if (memdisk_addr == NULL) -+ return; - - grub_dprintf ("memdisk", "Copying memdisk image to dynamic memory\n"); - grub_memmove (memdisk_addr, memdisk_orig_addr, memdisk_size); --- -2.50.1 - diff --git a/boot/grub2/0048-disk-ieee1275-ofdisk-Call-grub_ieee1275_close-when-g.patch b/boot/grub2/0048-disk-ieee1275-ofdisk-Call-grub_ieee1275_close-when-g.patch deleted file mode 100644 index fd0ddda6745..00000000000 --- a/boot/grub2/0048-disk-ieee1275-ofdisk-Call-grub_ieee1275_close-when-g.patch +++ /dev/null @@ -1,36 +0,0 @@ -From 2dcfad49316cc757138a8c69f6b44ee1a240aa3d Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 22 Jan 2025 02:55:12 +0000 -Subject: [PATCH] disk/ieee1275/ofdisk: Call grub_ieee1275_close() when - grub_malloc() fails - -In the dev_iterate() function a handle is opened but isn't closed when -grub_malloc() returns NULL. We should fix this by closing it on error. - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: fbaddcca541805c333f0fc792b82772594e73753 -Signed-off-by: Thomas Petazzoni ---- - grub-core/disk/ieee1275/ofdisk.c | 5 ++++- - 1 file changed, 4 insertions(+), 1 deletion(-) - -diff --git a/grub-core/disk/ieee1275/ofdisk.c b/grub-core/disk/ieee1275/ofdisk.c -index 4c5b89cbc..dbc0f1aba 100644 ---- a/grub-core/disk/ieee1275/ofdisk.c -+++ b/grub-core/disk/ieee1275/ofdisk.c -@@ -267,7 +267,10 @@ dev_iterate (const struct grub_ieee1275_devalias *alias) - - buf = grub_malloc (sz); - if (!buf) -- return; -+ { -+ grub_ieee1275_close (ihandle); -+ return; -+ } - bufptr = grub_stpcpy (buf, alias->path); - - for (i = 0; i < args.nentries; i++) --- -2.50.1 - diff --git a/boot/grub2/0049-fs-Use-safe-math-macros-to-prevent-overflows.patch b/boot/grub2/0049-fs-Use-safe-math-macros-to-prevent-overflows.patch deleted file mode 100644 index 4ad7463a13e..00000000000 --- a/boot/grub2/0049-fs-Use-safe-math-macros-to-prevent-overflows.patch +++ /dev/null @@ -1,362 +0,0 @@ -From 005280a4b3ba41ab0b4fea5e1d2a874646e6e12d Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Tue, 21 Jan 2025 19:02:36 +0000 -Subject: [PATCH] fs: Use safe math macros to prevent overflows - -Replace direct arithmetic operations with macros from include/grub/safemath.h -to prevent potential overflow issues when calculating the memory sizes. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/fs/erofs.c - -Upstream: 6608163b08a7a8be4b0ab2a5cd4593bba07fe2b7 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/archelp.c | 9 ++++++++- - grub-core/fs/btrfs.c | 34 ++++++++++++++++++++++++++++------ - grub-core/fs/cpio_common.c | 16 ++++++++++++++-- - grub-core/fs/f2fs.c | 17 +++++++++++++++-- - grub-core/fs/ntfscomp.c | 9 ++++++++- - grub-core/fs/squash4.c | 12 +++++++++--- - grub-core/fs/xfs.c | 17 +++++++++++++++-- - 7 files changed, 97 insertions(+), 17 deletions(-) - -diff --git a/grub-core/fs/archelp.c b/grub-core/fs/archelp.c -index c1dcc6285..0816b28de 100644 ---- a/grub-core/fs/archelp.c -+++ b/grub-core/fs/archelp.c -@@ -21,6 +21,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -68,6 +69,7 @@ handle_symlink (struct grub_archelp_data *data, - char *rest; - char *linktarget; - grub_size_t linktarget_len; -+ grub_size_t sz; - - *restart = 0; - -@@ -98,7 +100,12 @@ handle_symlink (struct grub_archelp_data *data, - if (linktarget[0] == '\0') - return GRUB_ERR_NONE; - linktarget_len = grub_strlen (linktarget); -- target = grub_malloc (linktarget_len + grub_strlen (*name) + 2); -+ -+ if (grub_add (linktarget_len, grub_strlen (*name), &sz) || -+ grub_add (sz, 2, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("link target length overflow")); -+ -+ target = grub_malloc (sz); - if (!target) - return grub_errno; - -diff --git a/grub-core/fs/btrfs.c b/grub-core/fs/btrfs.c -index aae81482b..0625b1166 100644 ---- a/grub-core/fs/btrfs.c -+++ b/grub-core/fs/btrfs.c -@@ -1801,6 +1801,7 @@ find_path (struct grub_btrfs_data *data, - char *path_alloc = NULL; - char *origpath = NULL; - unsigned symlinks_max = 32; -+ grub_size_t sz; - - err = get_root (data, key, tree, type); - if (err) -@@ -1891,9 +1892,15 @@ find_path (struct grub_btrfs_data *data, - struct grub_btrfs_dir_item *cdirel; - if (elemsize > allocated) - { -- allocated = 2 * elemsize; -+ if (grub_mul (2, elemsize, &allocated) || -+ grub_add (allocated, 1, &sz)) -+ { -+ grub_free (path_alloc); -+ grub_free (origpath); -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("directory item size overflow")); -+ } - grub_free (direl); -- direl = grub_malloc (allocated + 1); -+ direl = grub_malloc (sz); - if (!direl) - { - grub_free (path_alloc); -@@ -1955,8 +1962,16 @@ find_path (struct grub_btrfs_data *data, - grub_free (origpath); - return err; - } -- tmp = grub_malloc (grub_le_to_cpu64 (inode.size) -- + grub_strlen (path) + 1); -+ -+ if (grub_add (grub_le_to_cpu64 (inode.size), grub_strlen (path), &sz) || -+ grub_add (sz, 1, &sz)) -+ { -+ grub_free (direl); -+ grub_free (path_alloc); -+ grub_free (origpath); -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("buffer size overflow")); -+ } -+ tmp = grub_malloc (sz); - if (!tmp) - { - grub_free (direl); -@@ -2078,6 +2093,7 @@ grub_btrfs_dir (grub_device_t device, const char *path, - grub_uint64_t tree; - grub_uint8_t type; - grub_size_t est_size = 0; -+ grub_size_t sz; - - if (!data) - return grub_errno; -@@ -2119,9 +2135,15 @@ grub_btrfs_dir (grub_device_t device, const char *path, - } - if (elemsize > allocated) - { -- allocated = 2 * elemsize; -+ if (grub_mul (2, elemsize, &allocated) || -+ grub_add (allocated, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("directory element size overflow")); -+ r = -grub_errno; -+ break; -+ } - grub_free (direl); -- direl = grub_malloc (allocated + 1); -+ direl = grub_malloc (sz); - if (!direl) - { - r = -grub_errno; -diff --git a/grub-core/fs/cpio_common.c b/grub-core/fs/cpio_common.c -index 5d41b6fdb..6ba58b354 100644 ---- a/grub-core/fs/cpio_common.c -+++ b/grub-core/fs/cpio_common.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -48,6 +49,7 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - struct head hd; - grub_size_t namesize; - grub_uint32_t modeval; -+ grub_size_t sz; - - data->hofs = data->next_hofs; - -@@ -76,7 +78,10 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - - *mode = modeval; - -- *name = grub_malloc (namesize + 1); -+ if (grub_add (namesize, 1, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("file name size overflow")); -+ -+ *name = grub_malloc (sz); - if (*name == NULL) - return grub_errno; - -@@ -110,10 +115,17 @@ grub_cpio_get_link_target (struct grub_archelp_data *data) - { - char *ret; - grub_err_t err; -+ grub_size_t sz; - - if (data->size == 0) - return grub_strdup (""); -- ret = grub_malloc (data->size + 1); -+ -+ if (grub_add (data->size, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("target data size overflow")); -+ return NULL; -+ } -+ ret = grub_malloc (sz); - if (!ret) - return NULL; - -diff --git a/grub-core/fs/f2fs.c b/grub-core/fs/f2fs.c -index f6d6beaa5..72b4aa1e6 100644 ---- a/grub-core/fs/f2fs.c -+++ b/grub-core/fs/f2fs.c -@@ -28,6 +28,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -958,6 +959,7 @@ grub_f2fs_read_symlink (grub_fshelp_node_t node) - char *symlink; - struct grub_fshelp_node *diro = node; - grub_uint64_t filesize; -+ grub_size_t sz; - - if (!diro->inode_read) - { -@@ -968,7 +970,12 @@ grub_f2fs_read_symlink (grub_fshelp_node_t node) - - filesize = grub_f2fs_file_size(&diro->inode.i); - -- symlink = grub_malloc (filesize + 1); -+ if (grub_add (filesize, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("symlink size overflow")); -+ return 0; -+ } -+ symlink = grub_malloc (sz); - if (!symlink) - return 0; - -@@ -997,6 +1004,7 @@ grub_f2fs_check_dentries (struct grub_f2fs_dir_iter_ctx *ctx) - enum FILE_TYPE ftype; - int name_len; - int ret; -+ int sz; - - if (grub_f2fs_test_bit_le (i, ctx->bitmap) == 0) - { -@@ -1010,7 +1018,12 @@ grub_f2fs_check_dentries (struct grub_f2fs_dir_iter_ctx *ctx) - if (name_len >= F2FS_NAME_LEN) - return 0; - -- filename = grub_malloc (name_len + 1); -+ if (grub_add (name_len, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("directory entry name length overflow")); -+ return 0; -+ } -+ filename = grub_malloc (sz); - if (!filename) - return 0; - -diff --git a/grub-core/fs/ntfscomp.c b/grub-core/fs/ntfscomp.c -index a009f2c2d..f168a318e 100644 ---- a/grub-core/fs/ntfscomp.c -+++ b/grub-core/fs/ntfscomp.c -@@ -22,6 +22,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -310,6 +311,7 @@ ntfscomp (grub_uint8_t *dest, grub_disk_addr_t ofs, - { - grub_err_t ret; - grub_disk_addr_t vcn; -+ int log_sz; - - if (ctx->attr->sbuf) - { -@@ -349,7 +351,12 @@ ntfscomp (grub_uint8_t *dest, grub_disk_addr_t ofs, - } - - ctx->comp.comp_head = ctx->comp.comp_tail = 0; -- ctx->comp.cbuf = grub_malloc (1 << (ctx->comp.log_spc + GRUB_NTFS_BLK_SHR)); -+ if (grub_add (ctx->comp.log_spc, GRUB_NTFS_BLK_SHR, &log_sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("compression buffer size overflow")); -+ return 0; -+ } -+ ctx->comp.cbuf = grub_malloc (1 << log_sz); - if (!ctx->comp.cbuf) - return 0; - -diff --git a/grub-core/fs/squash4.c b/grub-core/fs/squash4.c -index 6e9d63874..f91ff3bfa 100644 ---- a/grub-core/fs/squash4.c -+++ b/grub-core/fs/squash4.c -@@ -460,11 +460,11 @@ grub_squash_read_symlink (grub_fshelp_node_t node) - { - char *ret; - grub_err_t err; -- grub_size_t sz; -+ grub_uint32_t sz; - - if (grub_add (grub_le_to_cpu32 (node->ino.symlink.namelen), 1, &sz)) - { -- grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow is detected")); -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("symlink name length overflow")); - return NULL; - } - -@@ -580,6 +580,7 @@ grub_squash_iterate_dir (grub_fshelp_node_t dir, - struct grub_squash_dirent di; - struct grub_squash_inode ino; - grub_size_t sz; -+ grub_uint16_t nlen; - - err = read_chunk (dir->data, &di, sizeof (di), - grub_le_to_cpu64 (dir->data->sb.diroffset) -@@ -595,7 +596,12 @@ grub_squash_iterate_dir (grub_fshelp_node_t dir, - if (err) - return 0; - -- buf = grub_malloc (grub_le_to_cpu16 (di.namelen) + 2); -+ if (grub_add (grub_le_to_cpu16 (di.namelen), 2, &nlen)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("name length overflow")); -+ return 0; -+ } -+ buf = grub_malloc (nlen); - if (!buf) - return 0; - err = read_chunk (dir->data, buf, -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index 74feeb86a..70c9f449b 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -718,6 +718,7 @@ static char * - grub_xfs_read_symlink (grub_fshelp_node_t node) - { - grub_ssize_t size = grub_be_to_cpu64 (node->inode.size); -+ grub_size_t sz; - - if (size < 0) - { -@@ -739,7 +740,12 @@ grub_xfs_read_symlink (grub_fshelp_node_t node) - if (node->data->hascrc) - off = 56; - -- symlink = grub_malloc (size + 1); -+ if (grub_add (size, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("symlink size overflow")); -+ return 0; -+ } -+ symlink = grub_malloc (sz); - if (!symlink) - return 0; - -@@ -789,8 +795,15 @@ static int iterate_dir_call_hook (grub_uint64_t ino, const char *filename, - { - struct grub_fshelp_node *fdiro; - grub_err_t err; -+ grub_size_t sz; - -- fdiro = grub_malloc (grub_xfs_fshelp_size(ctx->diro->data) + 1); -+ if (grub_add (grub_xfs_fshelp_size(ctx->diro->data), 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("directory data size overflow")); -+ grub_print_error (); -+ return 0; -+ } -+ fdiro = grub_malloc (sz); - if (!fdiro) - { - grub_print_error (); --- -2.50.1 - diff --git a/boot/grub2/0050-fs-Prevent-overflows-when-allocating-memory-for-arra.patch b/boot/grub2/0050-fs-Prevent-overflows-when-allocating-memory-for-arra.patch deleted file mode 100644 index e7bf8d543b7..00000000000 --- a/boot/grub2/0050-fs-Prevent-overflows-when-allocating-memory-for-arra.patch +++ /dev/null @@ -1,87 +0,0 @@ -From 593d7b8659bef80b1f6ae3b793332d8eca8b8131 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Tue, 21 Jan 2025 19:02:37 +0000 -Subject: [PATCH] fs: Prevent overflows when allocating memory for arrays - -Use grub_calloc() when allocating memory for arrays to ensure proper -overflow checks are in place. - -The HFS+ and squash4 security vulnerabilities were reported by -Jonathan Bar Or . - -Fixes: CVE-2025-0678 -Fixes: CVE-2025-1125 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: 84bc0a9a68835952ae69165c11709811dae7634e -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/btrfs.c | 4 ++-- - grub-core/fs/hfspluscomp.c | 9 +++++++-- - grub-core/fs/squash4.c | 8 ++++---- - 3 files changed, 13 insertions(+), 8 deletions(-) - -diff --git a/grub-core/fs/btrfs.c b/grub-core/fs/btrfs.c -index 0625b1166..9c1e925c9 100644 ---- a/grub-core/fs/btrfs.c -+++ b/grub-core/fs/btrfs.c -@@ -1276,8 +1276,8 @@ grub_btrfs_mount (grub_device_t dev) - } - - data->n_devices_allocated = 16; -- data->devices_attached = grub_malloc (sizeof (data->devices_attached[0]) -- * data->n_devices_allocated); -+ data->devices_attached = grub_calloc (data->n_devices_allocated, -+ sizeof (data->devices_attached[0])); - if (!data->devices_attached) - { - grub_free (data); -diff --git a/grub-core/fs/hfspluscomp.c b/grub-core/fs/hfspluscomp.c -index 48ae438d8..a80954ee6 100644 ---- a/grub-core/fs/hfspluscomp.c -+++ b/grub-core/fs/hfspluscomp.c -@@ -244,14 +244,19 @@ hfsplus_open_compressed_real (struct grub_hfsplus_file *node) - return 0; - } - node->compress_index_size = grub_le_to_cpu32 (index_size); -- node->compress_index = grub_malloc (node->compress_index_size -- * sizeof (node->compress_index[0])); -+ node->compress_index = grub_calloc (node->compress_index_size, -+ sizeof (node->compress_index[0])); - if (!node->compress_index) - { - node->compressed = 0; - grub_free (attr_node); - return grub_errno; - } -+ -+ /* -+ * The node->compress_index_size * sizeof (node->compress_index[0]) is safe here -+ * due to relevant checks done in grub_calloc() above. -+ */ - if (grub_hfsplus_read_file (node, 0, 0, - 0x104 + sizeof (index_size), - node->compress_index_size -diff --git a/grub-core/fs/squash4.c b/grub-core/fs/squash4.c -index f91ff3bfa..cf2bca822 100644 ---- a/grub-core/fs/squash4.c -+++ b/grub-core/fs/squash4.c -@@ -822,10 +822,10 @@ direct_read (struct grub_squash_data *data, - break; - } - total_blocks = ((total_size + data->blksz - 1) >> data->log2_blksz); -- ino->block_sizes = grub_malloc (total_blocks -- * sizeof (ino->block_sizes[0])); -- ino->cumulated_block_sizes = grub_malloc (total_blocks -- * sizeof (ino->cumulated_block_sizes[0])); -+ ino->block_sizes = grub_calloc (total_blocks, -+ sizeof (ino->block_sizes[0])); -+ ino->cumulated_block_sizes = grub_calloc (total_blocks, -+ sizeof (ino->cumulated_block_sizes[0])); - if (!ino->block_sizes || !ino->cumulated_block_sizes) - { - grub_free (ino->block_sizes); --- -2.50.1 - diff --git a/boot/grub2/0051-fs-Prevent-overflows-when-assigning-returned-values-.patch b/boot/grub2/0051-fs-Prevent-overflows-when-assigning-returned-values-.patch deleted file mode 100644 index f1438a28fee..00000000000 --- a/boot/grub2/0051-fs-Prevent-overflows-when-assigning-returned-values-.patch +++ /dev/null @@ -1,110 +0,0 @@ -From 639711967a296edb0704c3d2c31691076d46f565 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Tue, 21 Jan 2025 19:02:38 +0000 -Subject: [PATCH] fs: Prevent overflows when assigning returned values from - read_number() - -The direct assignment of the unsigned long long value returned by -read_number() can potentially lead to an overflow on a 32-bit systems. -The fix replaces the direct assignments with calls to grub_cast() -which detects the overflows and safely assigns the values if no -overflow is detected. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: cde9f7f338f8f5771777f0e7dfc423ddf952ad31 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/cpio_common.c | 18 ++++++++++++++---- - grub-core/fs/tar.c | 23 ++++++++++++++++------- - 2 files changed, 30 insertions(+), 11 deletions(-) - -diff --git a/grub-core/fs/cpio_common.c b/grub-core/fs/cpio_common.c -index 6ba58b354..45ac119a8 100644 ---- a/grub-core/fs/cpio_common.c -+++ b/grub-core/fs/cpio_common.c -@@ -62,11 +62,21 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - #endif - ) - return grub_error (GRUB_ERR_BAD_FS, "invalid cpio archive"); -- data->size = read_number (hd.filesize, ARRAY_SIZE (hd.filesize)); -+ -+ if (grub_cast (read_number (hd.filesize, ARRAY_SIZE (hd.filesize)), &data->size)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("data size overflow")); -+ - if (mtime) -- *mtime = read_number (hd.mtime, ARRAY_SIZE (hd.mtime)); -- modeval = read_number (hd.mode, ARRAY_SIZE (hd.mode)); -- namesize = read_number (hd.namesize, ARRAY_SIZE (hd.namesize)); -+ { -+ if (grub_cast (read_number (hd.mtime, ARRAY_SIZE (hd.mtime)), mtime)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("mtime overflow")); -+ } -+ -+ if (grub_cast (read_number (hd.mode, ARRAY_SIZE (hd.mode)), &modeval)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("mode overflow")); -+ -+ if (grub_cast (read_number (hd.namesize, ARRAY_SIZE (hd.namesize)), &namesize)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("namesize overflow")); - - /* Don't allow negative numbers. */ - if (namesize >= 0x80000000) -diff --git a/grub-core/fs/tar.c b/grub-core/fs/tar.c -index fd2ec1f74..1eaa5349f 100644 ---- a/grub-core/fs/tar.c -+++ b/grub-core/fs/tar.c -@@ -99,9 +99,10 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - if (hd.typeflag == 'L') - { - grub_err_t err; -- grub_size_t namesize = read_number (hd.size, sizeof (hd.size)); -+ grub_size_t namesize; - -- if (grub_add (namesize, 1, &sz)) -+ if (grub_cast (read_number (hd.size, sizeof (hd.size)), &namesize) || -+ grub_add (namesize, 1, &sz)) - return grub_error (GRUB_ERR_BAD_FS, N_("name size overflow")); - - *name = grub_malloc (sz); -@@ -123,9 +124,10 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - if (hd.typeflag == 'K') - { - grub_err_t err; -- grub_size_t linksize = read_number (hd.size, sizeof (hd.size)); -+ grub_size_t linksize; - -- if (grub_add (linksize, 1, &sz)) -+ if (grub_cast (read_number (hd.size, sizeof (hd.size)), &linksize) || -+ grub_add (linksize, 1, &sz)) - return grub_error (GRUB_ERR_BAD_FS, N_("link size overflow")); - - if (data->linkname_alloc < sz) -@@ -174,15 +176,22 @@ grub_cpio_find_file (struct grub_archelp_data *data, char **name, - (*name)[extra_size + sizeof (hd.name)] = 0; - } - -- data->size = read_number (hd.size, sizeof (hd.size)); -+ if (grub_cast (read_number (hd.size, sizeof (hd.size)), &data->size)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("data size overflow")); -+ - data->dofs = data->hofs + GRUB_DISK_SECTOR_SIZE; - data->next_hofs = data->dofs + ((data->size + GRUB_DISK_SECTOR_SIZE - 1) & - ~(GRUB_DISK_SECTOR_SIZE - 1)); - if (mtime) -- *mtime = read_number (hd.mtime, sizeof (hd.mtime)); -+ { -+ if (grub_cast (read_number (hd.mtime, sizeof (hd.mtime)), mtime)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("mtime overflow")); -+ } - if (mode) - { -- *mode = read_number (hd.mode, sizeof (hd.mode)); -+ if (grub_cast (read_number (hd.mode, sizeof (hd.mode)), mode)) -+ return grub_error (GRUB_ERR_BAD_FS, N_("mode overflow")); -+ - switch (hd.typeflag) - { - /* Hardlink. */ --- -2.50.1 - diff --git a/boot/grub2/0052-fs-zfs-Use-safe-math-macros-to-prevent-overflows.patch b/boot/grub2/0052-fs-zfs-Use-safe-math-macros-to-prevent-overflows.patch deleted file mode 100644 index bbf93dd0b4a..00000000000 --- a/boot/grub2/0052-fs-zfs-Use-safe-math-macros-to-prevent-overflows.patch +++ /dev/null @@ -1,143 +0,0 @@ -From bd4fcbdbd9835716213debce07f08c81311ce9a6 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 07:17:02 +0000 -Subject: [PATCH] fs/zfs: Use safe math macros to prevent overflows - -Replace direct arithmetic operations with macros from include/grub/safemath.h -to prevent potential overflow issues when calculating the memory sizes. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: 88e491a0f744c6b19b6d4caa300a576ba56db7c9 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/zfs/zfs.c | 50 +++++++++++++++++++++++++++++++++++++----- - 1 file changed, 44 insertions(+), 6 deletions(-) - -diff --git a/grub-core/fs/zfs/zfs.c b/grub-core/fs/zfs/zfs.c -index a497b1869..2f303d655 100644 ---- a/grub-core/fs/zfs/zfs.c -+++ b/grub-core/fs/zfs/zfs.c -@@ -2387,6 +2387,7 @@ fzap_iterate (dnode_end_t * zap_dnode, zap_phys_t * zap, - zap_dnode->endian) << DNODE_SHIFT); - grub_err_t err; - grub_zfs_endian_t endian; -+ grub_size_t sz; - - if (zap_verify (zap, zap_dnode->endian)) - return 0; -@@ -2448,8 +2449,14 @@ fzap_iterate (dnode_end_t * zap_dnode, zap_phys_t * zap, - if (le->le_type != ZAP_CHUNK_ENTRY) - continue; - -- buf = grub_malloc (grub_zfs_to_cpu16 (le->le_name_length, endian) -- * name_elem_length + 1); -+ if (grub_mul (grub_zfs_to_cpu16 (le->le_name_length, endian), name_elem_length, &sz) || -+ grub_add (sz, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("buffer size overflow")); -+ grub_free (l); -+ return grub_errno; -+ } -+ buf = grub_malloc (sz); - if (zap_leaf_array_get (l, endian, blksft, - grub_zfs_to_cpu16 (le->le_name_chunk, - endian), -@@ -2872,6 +2879,7 @@ dnode_get_path (struct subvolume *subvol, const char *path_in, dnode_end_t *dn, - && ((grub_zfs_to_cpu64(((znode_phys_t *) DN_BONUS (&dnode_path->dn.dn))->zp_mode, dnode_path->dn.endian) >> 12) & 0xf) == 0xa) - { - char *sym_value; -+ grub_size_t sz; - grub_size_t sym_sz; - int free_symval = 0; - char *oldpath = path, *oldpathbuf = path_buf; -@@ -2923,7 +2931,18 @@ dnode_get_path (struct subvolume *subvol, const char *path_in, dnode_end_t *dn, - break; - free_symval = 1; - } -- path = path_buf = grub_malloc (sym_sz + grub_strlen (oldpath) + 1); -+ -+ if (grub_add (sym_sz, grub_strlen (oldpath), &sz) || -+ grub_add (sz, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("path buffer size overflow")); -+ grub_free (oldpathbuf); -+ if (free_symval) -+ grub_free (sym_value); -+ err = grub_errno; -+ break; -+ } -+ path = path_buf = grub_malloc (sz); - if (!path_buf) - { - grub_free (oldpathbuf); -@@ -2960,6 +2979,7 @@ dnode_get_path (struct subvolume *subvol, const char *path_in, dnode_end_t *dn, - { - void *sahdrp; - int hdrsize; -+ grub_size_t sz; - - if (dnode_path->dn.dn.dn_bonuslen != 0) - { -@@ -2993,7 +3013,15 @@ dnode_get_path (struct subvolume *subvol, const char *path_in, dnode_end_t *dn, - + SA_SIZE_OFFSET), - dnode_path->dn.endian); - char *oldpath = path, *oldpathbuf = path_buf; -- path = path_buf = grub_malloc (sym_sz + grub_strlen (oldpath) + 1); -+ if (grub_add (sym_sz, grub_strlen (oldpath), &sz) || -+ grub_add (sz, 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("path buffer size overflow")); -+ grub_free (oldpathbuf); -+ err = grub_errno; -+ break; -+ } -+ path = path_buf = grub_malloc (sz); - if (!path_buf) - { - grub_free (oldpathbuf); -@@ -3568,6 +3596,7 @@ grub_zfs_nvlist_lookup_nvlist_array (const char *nvlist, const char *name, - unsigned i; - grub_size_t nelm; - int elemsize = 0; -+ int sz; - - found = nvlist_find_value (nvlist, name, DATA_TYPE_NVLIST_ARRAY, &nvpair, - &size, &nelm); -@@ -3602,7 +3631,12 @@ grub_zfs_nvlist_lookup_nvlist_array (const char *nvlist, const char *name, - return 0; - } - -- ret = grub_zalloc (elemsize + sizeof (grub_uint32_t)); -+ if (grub_add (elemsize, sizeof (grub_uint32_t), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("elemsize overflow")); -+ return 0; -+ } -+ ret = grub_zalloc (sz); - if (!ret) - return 0; - grub_memcpy (ret, nvlist, sizeof (grub_uint32_t)); -@@ -4193,6 +4227,7 @@ iterate_zap_snap (const char *name, grub_uint64_t val, - struct grub_dirhook_info info; - char *name2; - int ret; -+ grub_size_t sz; - - dnode_end_t mdn; - -@@ -4213,7 +4248,10 @@ iterate_zap_snap (const char *name, grub_uint64_t val, - return 0; - } - -- name2 = grub_malloc (grub_strlen (name) + 2); -+ if (grub_add (grub_strlen (name), 2, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("name length overflow")); -+ -+ name2 = grub_malloc (sz); - name2[0] = '@'; - grub_memcpy (name2 + 1, name, grub_strlen (name) + 1); - ret = ctx->hook (name2, &info, ctx->hook_data); --- -2.50.1 - diff --git a/boot/grub2/0053-fs-zfs-Prevent-overflows-when-allocating-memory-for-.patch b/boot/grub2/0053-fs-zfs-Prevent-overflows-when-allocating-memory-for-.patch deleted file mode 100644 index 7cf5524195d..00000000000 --- a/boot/grub2/0053-fs-zfs-Prevent-overflows-when-allocating-memory-for-.patch +++ /dev/null @@ -1,45 +0,0 @@ -From b39a42a7de6639c32829a5f4aff603190c69d689 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 07:17:03 +0000 -Subject: [PATCH] fs/zfs: Prevent overflows when allocating memory for arrays - -Use grub_calloc() when allocating memory for arrays to ensure proper -overflow checks are in place. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: 7f38e32c7ebeaebb79e2c71e3c7d5ea367d3a39c -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/zfs/zfs.c | 8 ++++---- - 1 file changed, 4 insertions(+), 4 deletions(-) - -diff --git a/grub-core/fs/zfs/zfs.c b/grub-core/fs/zfs/zfs.c -index 2f303d655..9ab7bf319 100644 ---- a/grub-core/fs/zfs/zfs.c -+++ b/grub-core/fs/zfs/zfs.c -@@ -723,8 +723,8 @@ fill_vdev_info_real (struct grub_zfs_data *data, - { - fill->n_children = nelm; - -- fill->children = grub_zalloc (fill->n_children -- * sizeof (fill->children[0])); -+ fill->children = grub_calloc (fill->n_children, -+ sizeof (fill->children[0])); - } - - for (i = 0; i < nelm; i++) -@@ -3712,8 +3712,8 @@ zfs_mount (grub_device_t dev) - #endif - - data->n_devices_allocated = 16; -- data->devices_attached = grub_malloc (sizeof (data->devices_attached[0]) -- * data->n_devices_allocated); -+ data->devices_attached = grub_calloc (data->n_devices_allocated, -+ sizeof (data->devices_attached[0])); - data->n_devices_attached = 0; - err = scan_disk (dev, data, 1, &inserted); - if (err) --- -2.50.1 - diff --git a/boot/grub2/0054-fs-zfs-Check-if-returned-pointer-for-allocated-memor.patch b/boot/grub2/0054-fs-zfs-Check-if-returned-pointer-for-allocated-memor.patch deleted file mode 100644 index 1c208a7540b..00000000000 --- a/boot/grub2/0054-fs-zfs-Check-if-returned-pointer-for-allocated-memor.patch +++ /dev/null @@ -1,93 +0,0 @@ -From 177ae1f6b05fbe5a8c8e83d468c189ff339d608f Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 07:17:01 +0000 -Subject: [PATCH] fs/zfs: Check if returned pointer for allocated memory is - NULL - -When using grub_malloc() or grub_zalloc(), these functions can fail if -we are out of memory. After allocating memory we should check if these -functions returned NULL and handle this error if they did. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: 13065f69dae0eeb60813809026de5bd021051892 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/zfs/zfs.c | 26 ++++++++++++++++++++++++++ - 1 file changed, 26 insertions(+) - -diff --git a/grub-core/fs/zfs/zfs.c b/grub-core/fs/zfs/zfs.c -index 9ab7bf319..6e6d1c921 100644 ---- a/grub-core/fs/zfs/zfs.c -+++ b/grub-core/fs/zfs/zfs.c -@@ -614,6 +614,8 @@ zfs_fetch_nvlist (struct grub_zfs_device_desc *diskdesc, char **nvlist) - return grub_error (GRUB_ERR_BUG, "member drive unknown"); - - *nvlist = grub_malloc (VDEV_PHYS_SIZE); -+ if (!*nvlist) -+ return grub_errno; - - /* Read in the vdev name-value pair list (112K). */ - err = grub_disk_read (diskdesc->dev->disk, diskdesc->vdev_phys_sector, 0, -@@ -725,6 +727,11 @@ fill_vdev_info_real (struct grub_zfs_data *data, - - fill->children = grub_calloc (fill->n_children, - sizeof (fill->children[0])); -+ if (!fill->children) -+ { -+ grub_free (type); -+ return grub_errno; -+ } - } - - for (i = 0; i < nelm; i++) -@@ -2457,6 +2464,11 @@ fzap_iterate (dnode_end_t * zap_dnode, zap_phys_t * zap, - return grub_errno; - } - buf = grub_malloc (sz); -+ if (!buf) -+ { -+ grub_free (l); -+ return grub_errno; -+ } - if (zap_leaf_array_get (l, endian, blksft, - grub_zfs_to_cpu16 (le->le_name_chunk, - endian), -@@ -2472,6 +2484,12 @@ fzap_iterate (dnode_end_t * zap_dnode, zap_phys_t * zap, - val_length = ((int) le->le_value_length - * (int) le->le_int_size); - val = grub_malloc (grub_zfs_to_cpu16 (val_length, endian)); -+ if (!val) -+ { -+ grub_free (l); -+ grub_free (buf); -+ return grub_errno; -+ } - if (zap_leaf_array_get (l, endian, blksft, - grub_zfs_to_cpu16 (le->le_value_chunk, - endian), -@@ -3714,6 +3732,11 @@ zfs_mount (grub_device_t dev) - data->n_devices_allocated = 16; - data->devices_attached = grub_calloc (data->n_devices_allocated, - sizeof (data->devices_attached[0])); -+ if (!data->devices_attached) -+ { -+ grub_free (data); -+ return NULL; -+ } - data->n_devices_attached = 0; - err = scan_disk (dev, data, 1, &inserted); - if (err) -@@ -4252,6 +4275,9 @@ iterate_zap_snap (const char *name, grub_uint64_t val, - return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("name length overflow")); - - name2 = grub_malloc (sz); -+ if (!name2) -+ return grub_errno; -+ - name2[0] = '@'; - grub_memcpy (name2 + 1, name, grub_strlen (name) + 1); - ret = ctx->hook (name2, &info, ctx->hook_data); --- -2.50.1 - diff --git a/boot/grub2/0055-fs-zfs-Add-missing-NULL-check-after-grub_strdup-call.patch b/boot/grub2/0055-fs-zfs-Add-missing-NULL-check-after-grub_strdup-call.patch deleted file mode 100644 index 0fcb427b749..00000000000 --- a/boot/grub2/0055-fs-zfs-Add-missing-NULL-check-after-grub_strdup-call.patch +++ /dev/null @@ -1,29 +0,0 @@ -From f60272b284e98ecd4ee38ec06aab6587cf525616 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 07:17:04 +0000 -Subject: [PATCH] fs/zfs: Add missing NULL check after grub_strdup() call - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: dd6a4c8d10e02ca5056681e75795041a343636e4 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/zfs/zfs.c | 2 ++ - 1 file changed, 2 insertions(+) - -diff --git a/grub-core/fs/zfs/zfs.c b/grub-core/fs/zfs/zfs.c -index 6e6d1c921..5ff647ffb 100644 ---- a/grub-core/fs/zfs/zfs.c -+++ b/grub-core/fs/zfs/zfs.c -@@ -3309,6 +3309,8 @@ dnode_get_fullpath (const char *fullpath, struct subvolume *subvol, - filename = 0; - snapname = 0; - fsname = grub_strdup (fullpath); -+ if (!fsname) -+ return grub_errno; - } - else - { --- -2.50.1 - diff --git a/boot/grub2/0056-net-Use-safe-math-macros-to-prevent-overflows.patch b/boot/grub2/0056-net-Use-safe-math-macros-to-prevent-overflows.patch deleted file mode 100644 index 111bfdf58a4..00000000000 --- a/boot/grub2/0056-net-Use-safe-math-macros-to-prevent-overflows.patch +++ /dev/null @@ -1,250 +0,0 @@ -From 6cb15ce33f7c7153ef986f3fe710e22062d37ba7 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 18:04:42 +0000 -Subject: [PATCH] net: Use safe math macros to prevent overflows - -Replace direct arithmetic operations with macros from include/grub/safemath.h -to prevent potential overflow issues when calculating the memory sizes. - -Signed-off-by: Lidong Chen -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper - -Conflicts: - grub-core/net/bootp.c - grub-core/net/net.c - -Upstream: 4beeff8a31c4fb4071d2225533cfa316b5a58391 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/bootp.c | 16 ++++++++-- - grub-core/net/dns.c | 9 +++++- - grub-core/net/drivers/ieee1275/ofnet.c | 20 ++++++++++-- - grub-core/net/net.c | 43 +++++++++++++++++++++----- - 4 files changed, 75 insertions(+), 13 deletions(-) - -diff --git a/grub-core/net/bootp.c b/grub-core/net/bootp.c -index abe45ef7b..2f45a3cc2 100644 ---- a/grub-core/net/bootp.c -+++ b/grub-core/net/bootp.c -@@ -24,6 +24,7 @@ - #include - #include - #include -+#include - - struct grub_dhcp_discover_options - { -@@ -686,6 +687,7 @@ grub_cmd_dhcpopt (struct grub_command *cmd __attribute__ ((unused)), - unsigned num; - const grub_uint8_t *ptr; - grub_uint8_t taglength; -+ grub_uint8_t len; - - if (argc < 4) - return grub_error (GRUB_ERR_BAD_ARGUMENT, -@@ -727,7 +729,12 @@ grub_cmd_dhcpopt (struct grub_command *cmd __attribute__ ((unused)), - if (grub_strcmp (args[3], "string") == 0) - { - grub_err_t err = GRUB_ERR_NONE; -- char *val = grub_malloc (taglength + 1); -+ char *val; -+ -+ if (grub_add (taglength, 1, &len)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("tag length overflow")); -+ -+ val = grub_malloc (len); - if (!val) - return grub_errno; - grub_memcpy (val, ptr, taglength); -@@ -760,7 +767,12 @@ grub_cmd_dhcpopt (struct grub_command *cmd __attribute__ ((unused)), - if (grub_strcmp (args[3], "hex") == 0) - { - grub_err_t err = GRUB_ERR_NONE; -- char *val = grub_malloc (2 * taglength + 1); -+ char *val; -+ -+ if (grub_mul (taglength, 2, &len) || grub_add (len, 1, &len)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, N_("tag length overflow")); -+ -+ val = grub_malloc (len); - int i; - if (!val) - return grub_errno; -diff --git a/grub-core/net/dns.c b/grub-core/net/dns.c -index fcc09aa65..39b0c46cf 100644 ---- a/grub-core/net/dns.c -+++ b/grub-core/net/dns.c -@@ -224,10 +224,17 @@ get_name (const grub_uint8_t *name_at, const grub_uint8_t *head, - { - int length; - char *ret; -+ int len; - - if (!check_name_real (name_at, head, tail, NULL, &length, NULL)) - return NULL; -- ret = grub_malloc (length + 1); -+ -+ if (grub_add (length, 1, &len)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("name length overflow")); -+ return NULL; -+ } -+ ret = grub_malloc (len); - if (!ret) - return NULL; - if (!check_name_real (name_at, head, tail, NULL, NULL, ret)) -diff --git a/grub-core/net/drivers/ieee1275/ofnet.c b/grub-core/net/drivers/ieee1275/ofnet.c -index 78f03df8e..c35b107ad 100644 ---- a/grub-core/net/drivers/ieee1275/ofnet.c -+++ b/grub-core/net/drivers/ieee1275/ofnet.c -@@ -22,6 +22,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -391,6 +392,7 @@ search_net_devices (struct grub_ieee1275_devalias *alias) - grub_uint8_t *pprop; - char *shortname; - char need_suffix = 1; -+ grub_size_t sz; - - if (grub_strcmp (alias->type, "network") != 0) - return 0; -@@ -448,9 +450,23 @@ search_net_devices (struct grub_ieee1275_devalias *alias) - } - - if (need_suffix) -- ofdata->path = grub_malloc (grub_strlen (alias->path) + sizeof (SUFFIX)); -+ { -+ if (grub_add (grub_strlen (alias->path), sizeof (SUFFIX), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obatining size of ofdata path")); -+ grub_print_error (); -+ return 0; -+ } -+ } - else -- ofdata->path = grub_malloc (grub_strlen (alias->path) + 1); -+ { -+ if (grub_add (grub_strlen (alias->path), 1, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obatining size of ofdata path")); -+ grub_print_error (); -+ return 0; -+ } -+ } - if (!ofdata->path) - { - grub_print_error (); -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index 2bd490279..27df4669a 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -32,6 +32,7 @@ - #include - #include - #include -+#include - - GRUB_MOD_LICENSE ("GPLv3+"); - -@@ -206,6 +207,7 @@ grub_net_ipv6_get_slaac (struct grub_net_card *card, - { - struct grub_net_slaac_mac_list *slaac; - char *ptr; -+ grub_size_t sz; - - for (slaac = card->slaac_list; slaac; slaac = slaac->next) - if (grub_net_hwaddr_cmp (&slaac->address, hwaddr) == 0) -@@ -215,9 +217,16 @@ grub_net_ipv6_get_slaac (struct grub_net_card *card, - if (!slaac) - return NULL; - -- slaac->name = grub_malloc (grub_strlen (card->name) -- + GRUB_NET_MAX_STR_HWADDR_LEN -- + sizeof (":slaac")); -+ if (grub_add (grub_strlen (card->name), -+ (GRUB_NET_MAX_STR_HWADDR_LEN + sizeof (":slaac")), &sz)) -+ { -+ grub_free (slaac); -+ grub_error (GRUB_ERR_OUT_OF_RANGE, -+ "overflow detected while obtaining size of slaac name"); -+ return NULL; -+ } -+ -+ slaac->name = grub_malloc (sz); - ptr = grub_stpcpy (slaac->name, card->name); - if (grub_net_hwaddr_cmp (&card->default_address, hwaddr) != 0) - { -@@ -288,6 +297,7 @@ grub_net_ipv6_get_link_local (struct grub_net_card *card, - char *name; - char *ptr; - grub_net_network_level_address_t addr; -+ grub_size_t sz; - - addr.type = GRUB_NET_NETWORK_LEVEL_PROTOCOL_IPV6; - addr.ipv6[0] = grub_cpu_to_be64_compile_time (0xfe80ULL << 48); -@@ -302,9 +312,14 @@ grub_net_ipv6_get_link_local (struct grub_net_card *card, - return inf; - } - -- name = grub_malloc (grub_strlen (card->name) -- + GRUB_NET_MAX_STR_HWADDR_LEN -- + sizeof (":link")); -+ if (grub_add (grub_strlen (card->name), -+ (GRUB_NET_MAX_STR_HWADDR_LEN + sizeof (":link")), &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, -+ "overflow detected while obtaining size of link name"); -+ return NULL; -+ } -+ name = grub_malloc (sz); - if (!name) - return NULL; - -@@ -1435,9 +1450,15 @@ grub_net_open_real (const char *name) - if (grub_strchr (port_start + 1, ':')) - { - int iplen = grub_strlen (server); -+ grub_size_t sz; - - /* Bracket bare IPv6 addr. */ -- host = grub_malloc (iplen + 3); -+ if (grub_add (iplen, 3, &sz)) -+ { -+ grub_error (GRUB_ERR_OUT_OF_RANGE, N_("overflow detected while obtaining length of host")); -+ return NULL; -+ } -+ host = grub_malloc (sz); - if (!host) - return NULL; - -@@ -1692,6 +1713,7 @@ grub_env_set_net_property (const char *intername, const char *suffix, - { - char *varname, *varvalue; - char *ptr; -+ grub_size_t sz; - - varname = grub_xasprintf ("net_%s_%s", intername, suffix); - if (!varname) -@@ -1699,7 +1721,12 @@ grub_env_set_net_property (const char *intername, const char *suffix, - for (ptr = varname; *ptr; ptr++) - if (*ptr == ':') - *ptr = '_'; -- varvalue = grub_malloc (len + 1); -+ if (grub_add (len, 1, &sz)) -+ { -+ grub_free (varname); -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, "overflow detected while obtaining the size of an env variable"); -+ } -+ varvalue = grub_malloc (sz); - if (!varvalue) - { - grub_free (varname); --- -2.50.1 - diff --git a/boot/grub2/0057-net-Prevent-overflows-when-allocating-memory-for-arr.patch b/boot/grub2/0057-net-Prevent-overflows-when-allocating-memory-for-arr.patch deleted file mode 100644 index b4a50f6a4ff..00000000000 --- a/boot/grub2/0057-net-Prevent-overflows-when-allocating-memory-for-arr.patch +++ /dev/null @@ -1,50 +0,0 @@ -From 5d483e4c7c5a20a17a413f0cc51decfbb5828a5a Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 22 Jan 2025 18:04:43 +0000 -Subject: [PATCH] net: Prevent overflows when allocating memory for arrays - -Use grub_calloc() when allocating memory for arrays to ensure proper -overflow checks are in place. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: dee2c14fd66bc497cdc74c69fde8c9b84637c8eb -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/dns.c | 4 ++-- - grub-core/net/net.c | 4 ++-- - 2 files changed, 4 insertions(+), 4 deletions(-) - -diff --git a/grub-core/net/dns.c b/grub-core/net/dns.c -index 39b0c46cf..f20cd6f83 100644 ---- a/grub-core/net/dns.c -+++ b/grub-core/net/dns.c -@@ -470,8 +470,8 @@ grub_net_dns_lookup (const char *name, - && grub_get_time_ms () < dns_cache[h].limit_time) - { - grub_dprintf ("dns", "retrieved from cache\n"); -- *addresses = grub_malloc (dns_cache[h].naddresses -- * sizeof ((*addresses)[0])); -+ *addresses = grub_calloc (dns_cache[h].naddresses, -+ sizeof ((*addresses)[0])); - if (!*addresses) - return grub_errno; - *naddresses = dns_cache[h].naddresses; -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index 27df4669a..ea88ae8a8 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -88,8 +88,8 @@ grub_net_link_layer_add_address (struct grub_net_card *card, - /* Add sender to cache table. */ - if (card->link_layer_table == NULL) - { -- card->link_layer_table = grub_zalloc (LINK_LAYER_CACHE_SIZE -- * sizeof (card->link_layer_table[0])); -+ card->link_layer_table = grub_calloc (LINK_LAYER_CACHE_SIZE, -+ sizeof (card->link_layer_table[0])); - if (card->link_layer_table == NULL) - return; - } --- -2.50.1 - diff --git a/boot/grub2/0058-net-Check-if-returned-pointer-for-allocated-memory-i.patch b/boot/grub2/0058-net-Check-if-returned-pointer-for-allocated-memory-i.patch deleted file mode 100644 index 4ed78b82bf3..00000000000 --- a/boot/grub2/0058-net-Check-if-returned-pointer-for-allocated-memory-i.patch +++ /dev/null @@ -1,36 +0,0 @@ -From cc4c75dd3bf99f08fc2ef796b613c9413cf46399 Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 22 Jan 2025 18:04:44 +0000 -Subject: [PATCH] net: Check if returned pointer for allocated memory is NULL - -When using grub_malloc(), the function can fail if we are out of memory. -After allocating memory we should check if this function returned NULL -and handle this error if it did. - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 1c06ec900591d1fab6fbacf80dc010541d0a5ec8 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/net.c | 5 +++++ - 1 file changed, 5 insertions(+) - -diff --git a/grub-core/net/net.c b/grub-core/net/net.c -index ea88ae8a8..6774f4ad0 100644 ---- a/grub-core/net/net.c -+++ b/grub-core/net/net.c -@@ -227,6 +227,11 @@ grub_net_ipv6_get_slaac (struct grub_net_card *card, - } - - slaac->name = grub_malloc (sz); -+ if (slaac->name == NULL) -+ { -+ grub_free (slaac); -+ return NULL; -+ } - ptr = grub_stpcpy (slaac->name, card->name); - if (grub_net_hwaddr_cmp (&card->default_address, hwaddr) != 0) - { --- -2.50.1 - diff --git a/boot/grub2/0059-fs-sfs-Check-if-allocated-memory-is-NULL.patch b/boot/grub2/0059-fs-sfs-Check-if-allocated-memory-is-NULL.patch deleted file mode 100644 index baf4efbac6e..00000000000 --- a/boot/grub2/0059-fs-sfs-Check-if-allocated-memory-is-NULL.patch +++ /dev/null @@ -1,37 +0,0 @@ -From afacc73c48934b66e18d9d12fef2ae6b44f105ea Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Tue, 28 Jan 2025 05:15:50 +0000 -Subject: [PATCH] fs/sfs: Check if allocated memory is NULL - -When using grub_zalloc(), if we are out of memory, this function can fail. -After allocating memory, we should check if grub_zalloc() returns NULL. -If so, we should handle this error. - -Fixes: CID 473856 - -Signed-off-by: Alec Brown -Reviewed-by: Ross Philipson -Reviewed-by: Daniel Kiper -Upstream: e3c578a56f9294e286b6028ca7c1def997a17b15 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/sfs.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/fs/sfs.c b/grub-core/fs/sfs.c -index 88705b3a2..bad4ae8d1 100644 ---- a/grub-core/fs/sfs.c -+++ b/grub-core/fs/sfs.c -@@ -429,6 +429,9 @@ grub_sfs_mount (grub_disk_t disk) - - 24 /* offsetof (struct grub_sfs_objc, objects) */ - - 25); /* offsetof (struct grub_sfs_obj, filename) */ - data->label = grub_zalloc (max_len + 1); -+ if (data->label == NULL) -+ goto fail; -+ - grub_strncpy (data->label, (char *) rootobjc->objects[0].filename, max_len); - - grub_free (rootobjc_data); --- -2.50.1 - diff --git a/boot/grub2/0060-script-execute-Fix-potential-underflow-and-NULL-dere.patch b/boot/grub2/0060-script-execute-Fix-potential-underflow-and-NULL-dere.patch deleted file mode 100644 index f84ee5de1f0..00000000000 --- a/boot/grub2/0060-script-execute-Fix-potential-underflow-and-NULL-dere.patch +++ /dev/null @@ -1,37 +0,0 @@ -From 6cb70802581222ba80a37c3e2fd4b8357a859dad Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 29 Jan 2025 06:48:37 +0000 -Subject: [PATCH] script/execute: Fix potential underflow and NULL dereference - -The result is initialized to 0 in grub_script_arglist_to_argv(). -If the for loop condition is not met both result.args and result.argc -remain 0 causing result.argc - 1 to underflow and/or result.args NULL -dereference. Fix the issues by adding relevant checks. - -Fixes: CID 473880 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: d13b6e8ebd10b4eb16698a002aa40258cf6e6f0e -Signed-off-by: Thomas Petazzoni ---- - grub-core/script/execute.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/script/execute.c b/grub-core/script/execute.c -index e1450f45d..a86e0051f 100644 ---- a/grub-core/script/execute.c -+++ b/grub-core/script/execute.c -@@ -760,6 +760,9 @@ cleanup: - } - } - -+ if (result.args == NULL || result.argc == 0) -+ goto fail; -+ - if (! result.args[result.argc - 1]) - result.argc--; - --- -2.50.1 - diff --git a/boot/grub2/0061-osdep-unix-getroot-Fix-potential-underflow.patch b/boot/grub2/0061-osdep-unix-getroot-Fix-potential-underflow.patch deleted file mode 100644 index 6a5588c34ec..00000000000 --- a/boot/grub2/0061-osdep-unix-getroot-Fix-potential-underflow.patch +++ /dev/null @@ -1,40 +0,0 @@ -From 050f09a5e16a935be4a4770f59f2a7ff977fc088 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Wed, 29 Jan 2025 06:48:38 +0000 -Subject: [PATCH] osdep/unix/getroot: Fix potential underflow - -The entry_len is initialized in grub_find_root_devices_from_mountinfo() -to 0 before the while loop iterates through /proc/self/mountinfo. If the -file is empty or contains only invalid entries entry_len remains -0 causing entry_len - 1 in the subsequent for loop initialization -to underflow. To prevent this add a check to ensure entry_len > 0 before -entering the for loop. - -Fixes: CID 473877 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Reviewed-by: Ross Philipson -Upstream: 66733f7c7dae889861ea3ef3ec0710811486019e -Signed-off-by: Thomas Petazzoni ---- - grub-core/osdep/linux/getroot.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/osdep/linux/getroot.c b/grub-core/osdep/linux/getroot.c -index 7dd775d2a..527d4f0c5 100644 ---- a/grub-core/osdep/linux/getroot.c -+++ b/grub-core/osdep/linux/getroot.c -@@ -484,6 +484,9 @@ again: - } - } - -+ if (!entry_len) -+ goto out; -+ - /* Now scan visible mounts for the ones we're interested in. */ - for (i = entry_len - 1; i >= 0; i--) - { --- -2.50.1 - diff --git a/boot/grub2/0062-misc-Ensure-consistent-overflow-error-messages.patch b/boot/grub2/0062-misc-Ensure-consistent-overflow-error-messages.patch deleted file mode 100644 index 2add69d9430..00000000000 --- a/boot/grub2/0062-misc-Ensure-consistent-overflow-error-messages.patch +++ /dev/null @@ -1,60 +0,0 @@ -From 3a844f1139dd6fdcc90278239c8f6ea43aad9f2e Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Tue, 21 Jan 2025 19:02:39 +0000 -Subject: [PATCH] misc: Ensure consistent overflow error messages - -Update the overflow error messages to make them consistent -across the GRUB code. - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: f8795cde217e21539c2f236bcbb1a4bf521086b3 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/ntfs.c | 2 +- - grub-core/fs/ntfscomp.c | 2 +- - grub-core/video/readers/png.c | 2 +- - 3 files changed, 3 insertions(+), 3 deletions(-) - -diff --git a/grub-core/fs/ntfs.c b/grub-core/fs/ntfs.c -index bce81947c..b4c70a71d 100644 ---- a/grub-core/fs/ntfs.c -+++ b/grub-core/fs/ntfs.c -@@ -364,7 +364,7 @@ retry: - goto retry; - } - } -- return grub_error (GRUB_ERR_BAD_FS, "run list overflown"); -+ return grub_error (GRUB_ERR_BAD_FS, "run list overflow"); - } - ctx->curr_vcn = ctx->next_vcn; - ctx->next_vcn += read_run_data (run, c1, 0); /* length of current VCN */ -diff --git a/grub-core/fs/ntfscomp.c b/grub-core/fs/ntfscomp.c -index f168a318e..b68bf5e40 100644 ---- a/grub-core/fs/ntfscomp.c -+++ b/grub-core/fs/ntfscomp.c -@@ -30,7 +30,7 @@ static grub_err_t - decomp_nextvcn (struct grub_ntfs_comp *cc) - { - if (cc->comp_head >= cc->comp_tail) -- return grub_error (GRUB_ERR_BAD_FS, "compression block overflown"); -+ return grub_error (GRUB_ERR_BAD_FS, "compression block overflow"); - if (grub_disk_read - (cc->disk, - (cc->comp_table[cc->comp_head].next_lcn - -diff --git a/grub-core/video/readers/png.c b/grub-core/video/readers/png.c -index 3163e97bf..aa7524b7d 100644 ---- a/grub-core/video/readers/png.c -+++ b/grub-core/video/readers/png.c -@@ -626,7 +626,7 @@ static grub_err_t - grub_png_output_byte (struct grub_png_data *data, grub_uint8_t n) - { - if (--data->raw_bytes < 0) -- return grub_error (GRUB_ERR_BAD_FILE_TYPE, "image size overflown"); -+ return grub_error (GRUB_ERR_BAD_FILE_TYPE, "image size overflow"); - - if (data->cur_column == 0) - { --- -2.50.1 - diff --git a/boot/grub2/0063-bus-usb-ehci-Define-GRUB_EHCI_TOGGLE-as-grub_uint32_.patch b/boot/grub2/0063-bus-usb-ehci-Define-GRUB_EHCI_TOGGLE-as-grub_uint32_.patch deleted file mode 100644 index 18d5e880875..00000000000 --- a/boot/grub2/0063-bus-usb-ehci-Define-GRUB_EHCI_TOGGLE-as-grub_uint32_.patch +++ /dev/null @@ -1,35 +0,0 @@ -From 12dae049169b978aaa1e162f40954910ad90f2df Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Tue, 4 Feb 2025 15:11:10 +0000 -Subject: [PATCH] bus/usb/ehci: Define GRUB_EHCI_TOGGLE as grub_uint32_t - -The Coverity indicates that GRUB_EHCI_TOGGLE is an int that contains -a negative value and we are using it for the variable token which is -grub_uint32_t. To remedy this we can cast the definition to grub_uint32_t. - -Fixes: CID 473851 - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 9907d9c2723304b42cf6da74f1cc6c4601391956 -Signed-off-by: Thomas Petazzoni ---- - grub-core/bus/usb/ehci.c | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/grub-core/bus/usb/ehci.c b/grub-core/bus/usb/ehci.c -index 9abebc6bd..2db07c7c0 100644 ---- a/grub-core/bus/usb/ehci.c -+++ b/grub-core/bus/usb/ehci.c -@@ -218,7 +218,7 @@ enum - - #define GRUB_EHCI_TERMINATE (1<<0) - --#define GRUB_EHCI_TOGGLE (1<<31) -+#define GRUB_EHCI_TOGGLE ((grub_uint32_t) 1<<31) - - enum - { --- -2.50.1 - diff --git a/boot/grub2/0064-normal-menu-Use-safe-math-to-avoid-an-integer-overfl.patch b/boot/grub2/0064-normal-menu-Use-safe-math-to-avoid-an-integer-overfl.patch deleted file mode 100644 index 8dffc38fa4c..00000000000 --- a/boot/grub2/0064-normal-menu-Use-safe-math-to-avoid-an-integer-overfl.patch +++ /dev/null @@ -1,46 +0,0 @@ -From 6fa61b113427cb9db600a4a2a2f38ce09595f15f Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Tue, 4 Feb 2025 15:11:11 +0000 -Subject: [PATCH] normal/menu: Use safe math to avoid an integer overflow - -The Coverity indicates that the variable current_entry might overflow. -To prevent this use safe math when adding GRUB_MENU_PAGE_SIZE to current_entry. - -On the occasion fix limiting condition which was broken. - -Fixes: CID 473853 - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 5b36a5210e21bee2624f8acc36aefd8f10266adb -Signed-off-by: Thomas Petazzoni ---- - grub-core/normal/menu.c | 5 ++--- - 1 file changed, 2 insertions(+), 3 deletions(-) - -diff --git a/grub-core/normal/menu.c b/grub-core/normal/menu.c -index 6a90e091f..7ac6abf93 100644 ---- a/grub-core/normal/menu.c -+++ b/grub-core/normal/menu.c -@@ -32,6 +32,7 @@ - #include - #include - #include -+#include - - /* Time to delay after displaying an error message about a default/fallback - entry failing to boot. */ -@@ -751,9 +752,7 @@ run_menu (grub_menu_t menu, int nested, int *auto_boot, int *notify_boot) - - case GRUB_TERM_CTRL | 'c': - case GRUB_TERM_KEY_NPAGE: -- if (current_entry + GRUB_MENU_PAGE_SIZE < menu->size) -- current_entry += GRUB_MENU_PAGE_SIZE; -- else -+ if (grub_add (current_entry, GRUB_MENU_PAGE_SIZE, ¤t_entry) || current_entry >= menu->size) - current_entry = menu->size - 1; - menu_set_chosen_entry (current_entry); - break; --- -2.50.1 - diff --git a/boot/grub2/0065-kern-partition-Add-sanity-check-after-grub_strtoul-c.patch b/boot/grub2/0065-kern-partition-Add-sanity-check-after-grub_strtoul-c.patch deleted file mode 100644 index 3f35ba50196..00000000000 --- a/boot/grub2/0065-kern-partition-Add-sanity-check-after-grub_strtoul-c.patch +++ /dev/null @@ -1,51 +0,0 @@ -From d5385ae4e4d0c443e188e43c2b0703b68aaf55a3 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Thu, 6 Feb 2025 18:16:56 +0000 -Subject: [PATCH] kern/partition: Add sanity check after grub_strtoul() call - -The current code incorrectly assumes that both the input and the values -returned by grub_strtoul() are always valid which can lead to potential -errors. This fix ensures proper validation to prevent any unintended issues. - -Fixes: CID 473843 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: 8e6e87e7923ca2ae880021cb42a35cc9bb4c8fe2 -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/partition.c | 12 ++++++++++-- - 1 file changed, 10 insertions(+), 2 deletions(-) - -diff --git a/grub-core/kern/partition.c b/grub-core/kern/partition.c -index 704512a20..c6a578cf4 100644 ---- a/grub-core/kern/partition.c -+++ b/grub-core/kern/partition.c -@@ -125,14 +125,22 @@ grub_partition_probe (struct grub_disk *disk, const char *str) - for (ptr = str; *ptr;) - { - grub_partition_map_t partmap; -- int num; -+ unsigned long num; - const char *partname, *partname_end; - - partname = ptr; - while (*ptr && grub_isalpha (*ptr)) - ptr++; - partname_end = ptr; -- num = grub_strtoul (ptr, &ptr, 0) - 1; -+ -+ num = grub_strtoul (ptr, &ptr, 0); -+ if (*ptr != '\0' || num == 0 || num > GRUB_INT_MAX) -+ { -+ grub_error (GRUB_ERR_BAD_NUMBER, N_("invalid partition number")); -+ return 0; -+ } -+ -+ num -= 1; - - curpart = 0; - /* Use the first partition map type found. */ --- -2.50.1 - diff --git a/boot/grub2/0066-kern-misc-Add-sanity-check-after-grub_strtoul-call.patch b/boot/grub2/0066-kern-misc-Add-sanity-check-after-grub_strtoul-call.patch deleted file mode 100644 index 7e9e377154b..00000000000 --- a/boot/grub2/0066-kern-misc-Add-sanity-check-after-grub_strtoul-call.patch +++ /dev/null @@ -1,62 +0,0 @@ -From 009d1b7189c6eba0b8d284c94a9ef7dc9db351d1 Mon Sep 17 00:00:00 2001 -From: Lidong Chen -Date: Thu, 6 Feb 2025 18:16:57 +0000 -Subject: [PATCH] kern/misc: Add sanity check after grub_strtoul() call - -When the format string, fmt0, includes a positional argument -grub_strtoul() or grub_strtoull() is called to extract the argument -position. However, the returned argument position isn't fully validated. -If the format is something like "%0$x" then these functions return -0 which leads to an underflow in the calculation of the args index, curn. -The fix is to add a check to ensure the extracted argument position is -greater than 0 before computing curn. Additionally, replace one -grub_strtoull() with grub_strtoul() and change curn type to make code -more correct. - -Fixes: CID 473841 - -Signed-off-by: Lidong Chen -Reviewed-by: Daniel Kiper -Upstream: a8d6b06331a75d75b46f3dd6cc6fcd40dcf604b7 -Signed-off-by: Thomas Petazzoni ---- - grub-core/kern/misc.c | 9 +++++++-- - 1 file changed, 7 insertions(+), 2 deletions(-) - -diff --git a/grub-core/kern/misc.c b/grub-core/kern/misc.c -index 7cee5d75c..2b7922393 100644 ---- a/grub-core/kern/misc.c -+++ b/grub-core/kern/misc.c -@@ -830,7 +830,7 @@ parse_printf_arg_fmt (const char *fmt0, struct printf_args *args, - while ((c = *fmt++) != 0) - { - int longfmt = 0; -- grub_size_t curn; -+ unsigned long curn; - const char *p; - - if (c != '%') -@@ -848,7 +848,10 @@ parse_printf_arg_fmt (const char *fmt0, struct printf_args *args, - - if (*fmt == '$') - { -- curn = grub_strtoull (p, 0, 10) - 1; -+ curn = grub_strtoul (p, 0, 10); -+ if (curn == 0) -+ continue; -+ curn--; - fmt++; - } - -@@ -1034,6 +1037,8 @@ grub_vsnprintf_real (char *str, grub_size_t max_len, const char *fmt0, - - if (*fmt == '$') - { -+ if (format1 == 0) -+ continue; - curn = format1 - 1; - fmt++; - format1 = 0; --- -2.50.1 - diff --git a/boot/grub2/0067-loader-i386-linux-Cast-left-shift-to-grub_uint32_t.patch b/boot/grub2/0067-loader-i386-linux-Cast-left-shift-to-grub_uint32_t.patch deleted file mode 100644 index 7cdef992beb..00000000000 --- a/boot/grub2/0067-loader-i386-linux-Cast-left-shift-to-grub_uint32_t.patch +++ /dev/null @@ -1,35 +0,0 @@ -From 3668d0c12b0604d08cf290529797c348a59483ea Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Fri, 7 Feb 2025 01:47:57 +0000 -Subject: [PATCH] loader/i386/linux: Cast left shift to grub_uint32_t - -The Coverity complains that we might overflow into a negative value when -setting linux_params.kernel_alignment to (1 << align). We can remedy -this by casting it to grub_uint32_t. - -Fixes: CID 473876 - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 490a6ab71cebd96fae7a1ceb9067484f5ccbec2a -Signed-off-by: Thomas Petazzoni ---- - grub-core/loader/i386/linux.c | 2 +- - 1 file changed, 1 insertion(+), 1 deletion(-) - -diff --git a/grub-core/loader/i386/linux.c b/grub-core/loader/i386/linux.c -index 977757f2c..b051600c8 100644 ---- a/grub-core/loader/i386/linux.c -+++ b/grub-core/loader/i386/linux.c -@@ -806,7 +806,7 @@ grub_cmd_linux (grub_command_t cmd __attribute__ ((unused)), - } - - linux_params.code32_start = prot_mode_target + lh.code32_start - GRUB_LINUX_BZIMAGE_ADDR; -- linux_params.kernel_alignment = (1 << align); -+ linux_params.kernel_alignment = ((grub_uint32_t) 1 << align); - linux_params.ps_mouse = linux_params.padding11 = 0; - linux_params.type_of_loader = GRUB_LINUX_BOOT_LOADER_TYPE; - --- -2.50.1 - diff --git a/boot/grub2/0068-loader-i386-bsd-Use-safe-math-to-avoid-underflow.patch b/boot/grub2/0068-loader-i386-bsd-Use-safe-math-to-avoid-underflow.patch deleted file mode 100644 index e9a7acc0845..00000000000 --- a/boot/grub2/0068-loader-i386-bsd-Use-safe-math-to-avoid-underflow.patch +++ /dev/null @@ -1,61 +0,0 @@ -From 02a0365799f5ca3d70c4e28b5d11ade56c4c1652 Mon Sep 17 00:00:00 2001 -From: Alec Brown -Date: Wed, 5 Feb 2025 22:04:08 +0000 -Subject: [PATCH] loader/i386/bsd: Use safe math to avoid underflow - -The operation kern_end - kern_start may underflow when we input it into -grub_relocator_alloc_chunk_addr() call. To avoid this we can use safe -math for this subtraction. - -Fixes: CID 73845 - -Signed-off-by: Alec Brown -Reviewed-by: Daniel Kiper -Upstream: 4dc6166571645780c459dde2cdc1b001a5ec844c -Signed-off-by: Thomas Petazzoni ---- - grub-core/loader/i386/bsd.c | 14 ++++++++++---- - 1 file changed, 10 insertions(+), 4 deletions(-) - -diff --git a/grub-core/loader/i386/bsd.c b/grub-core/loader/i386/bsd.c -index 1f9128f6f..578433402 100644 ---- a/grub-core/loader/i386/bsd.c -+++ b/grub-core/loader/i386/bsd.c -@@ -1340,6 +1340,7 @@ static grub_err_t - grub_bsd_load_elf (grub_elf_t elf, const char *filename) - { - grub_err_t err; -+ grub_size_t sz; - - kern_end = 0; - kern_start = ~0; -@@ -1370,8 +1371,11 @@ grub_bsd_load_elf (grub_elf_t elf, const char *filename) - - if (grub_errno) - return grub_errno; -- err = grub_relocator_alloc_chunk_addr (relocator, &ch, -- kern_start, kern_end - kern_start); -+ -+ if (grub_sub (kern_end, kern_start, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, "underflow detected while determining size of kernel for relocator"); -+ -+ err = grub_relocator_alloc_chunk_addr (relocator, &ch, kern_start, sz); - if (err) - return err; - -@@ -1431,8 +1435,10 @@ grub_bsd_load_elf (grub_elf_t elf, const char *filename) - { - grub_relocator_chunk_t ch; - -- err = grub_relocator_alloc_chunk_addr (relocator, &ch, kern_start, -- kern_end - kern_start); -+ if (grub_sub (kern_end, kern_start, &sz)) -+ return grub_error (GRUB_ERR_OUT_OF_RANGE, "underflow detected while determining size of kernel for relocator"); -+ -+ err = grub_relocator_alloc_chunk_addr (relocator, &ch, kern_start, sz); - if (err) - return err; - kern_chunk_src = get_virtual_current_address (ch); --- -2.50.1 - diff --git a/boot/grub2/0069-fs-ext2-Rework-out-of-bounds-read-for-inline-and-ext.patch b/boot/grub2/0069-fs-ext2-Rework-out-of-bounds-read-for-inline-and-ext.patch deleted file mode 100644 index f39210c0c69..00000000000 --- a/boot/grub2/0069-fs-ext2-Rework-out-of-bounds-read-for-inline-and-ext.patch +++ /dev/null @@ -1,69 +0,0 @@ -From 156ee67f3e76aee99d6e40e5e029f56d681cb80a Mon Sep 17 00:00:00 2001 -From: Michael Chang -Date: Fri, 21 Feb 2025 09:06:12 +0800 -Subject: [PATCH] fs/ext2: Rework out-of-bounds read for inline and external - extents - -Previously, the number of extent entries was not properly capped based -on the actual available space. This could lead to insufficient reads for -external extents, since the computation was based solely on the inline -extent layout. - -In this patch, when processing the extent header, we determine whether -the header is stored inline (i.e., at inode->blocks.dir_blocks) or in an -external extent block. We then clamp the number of entries accordingly -(using max_inline_ext for inline extents and max_external_ext for -external extent blocks). - -This change ensures that only the valid number of extent entries is -processed, preventing out-of-bound reads and potential filesystem -corruption. - -Fixes: 7e2f750f0a (fs/ext2: Fix out-of-bounds read for inline extents) - -Signed-off-by: Michael Chang -Upstream: 348cd416a3574348f4255bf2b04ec95938990997 -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/ext2.c | 17 +++++++++++++++-- - 1 file changed, 15 insertions(+), 2 deletions(-) - -diff --git a/grub-core/fs/ext2.c b/grub-core/fs/ext2.c -index c3058f7e7..a38c86c4f 100644 ---- a/grub-core/fs/ext2.c -+++ b/grub-core/fs/ext2.c -@@ -496,7 +496,10 @@ grub_ext2_read_block (grub_fshelp_node_t node, grub_disk_addr_t fileblock) - int i; - grub_disk_addr_t ret; - grub_uint16_t nent; -+ /* maximum number of extent entries in the inode's inline extent area */ - const grub_uint16_t max_inline_ext = sizeof (inode->blocks) / sizeof (*ext) - 1; /* Minus 1 extent header. */ -+ /* maximum number of extent entries in the external extent block */ -+ const grub_uint16_t max_external_ext = EXT2_BLOCK_SIZE(data) / sizeof (*ext) - 1; /* Minus 1 extent header. */ - - if (grub_ext4_find_leaf (data, (struct grub_ext4_extent_header *) inode->blocks.dir_blocks, - fileblock, &leaf) != GRUB_ERR_NONE) -@@ -513,8 +516,18 @@ grub_ext2_read_block (grub_fshelp_node_t node, grub_disk_addr_t fileblock) - - nent = grub_le_to_cpu16 (leaf->entries); - -- if (leaf->depth == 0) -- nent = grub_min (nent, max_inline_ext); -+ /* -+ * Determine the effective number of extent entries (nent) to process: -+ * If the extent header (leaf) is stored inline in the inode's block -+ * area (i.e. at inode->blocks.dir_blocks), then only max_inline_ext -+ * entries can fit. -+ * Otherwise, if the header was read from an external extent block, use -+ * the larger limit, max_external_ext, based on the full block size. -+ */ -+ if (leaf == (struct grub_ext4_extent_header *) inode->blocks.dir_blocks) -+ nent = grub_min (nent, max_inline_ext); -+ else -+ nent = grub_min (nent, max_external_ext); - - for (i = 0; i < nent; i++) - { --- -2.50.1 - diff --git a/boot/grub2/0070-fs-xfs-Fix-grub_xfs_iterate_dir-return-value-in-case.patch b/boot/grub2/0070-fs-xfs-Fix-grub_xfs_iterate_dir-return-value-in-case.patch deleted file mode 100644 index 3a5769e6cc9..00000000000 --- a/boot/grub2/0070-fs-xfs-Fix-grub_xfs_iterate_dir-return-value-in-case.patch +++ /dev/null @@ -1,53 +0,0 @@ -From f5234334c2c5958a55c2bdfbcaf63b6814d31d5f Mon Sep 17 00:00:00 2001 -From: Egor Ignatov -Date: Thu, 23 Jan 2025 20:44:14 +0300 -Subject: [PATCH] fs/xfs: Fix grub_xfs_iterate_dir return value in case of - failure - -Commit ef7850c757 introduced multiple boundary checks in grub_xfs_iterate_dir() -but handled the error incorrectly returning error code instead of 0. - -Also change the error message so that it doesn't match the message -in grub_xfs_read_inode(). - -Fixes: ef7850c757 (fs/xfs: Fix issues found while fuzzing the XFS filesystem) - -Signed-off-by: Egor Ignatov -Upstream: f209887381a56dea79152ab26ffb485718e3218e -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/xfs.c | 11 +++++++++-- - 1 file changed, 9 insertions(+), 2 deletions(-) - -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index 70c9f449b..e0daeb45f 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -870,7 +870,11 @@ grub_xfs_iterate_dir (grub_fshelp_node_t dir, - grub_uint8_t c; - - if ((inopos + (smallino ? 4 : 8)) > (grub_uint8_t *) dir + grub_xfs_fshelp_size (dir->data)) -- return grub_error (GRUB_ERR_BAD_FS, "not a correct XFS inode"); -+ { -+ grub_error (GRUB_ERR_BAD_FS, "invalid XFS inode"); -+ return 0; -+ } -+ - - /* inopos might be unaligned. */ - if (smallino) -@@ -979,7 +983,10 @@ grub_xfs_iterate_dir (grub_fshelp_node_t dir, - - filename = (char *)(direntry + 1); - if (filename + direntry->len + 1 > (char *) end) -- return grub_error (GRUB_ERR_BAD_FS, "invalid XFS directory entry"); -+ { -+ grub_error (GRUB_ERR_BAD_FS, "invalid XFS directory entry"); -+ return 0; -+ } - - /* The byte after the filename is for the filetype, padding, or - tag, which is not used by GRUB. So it can be overwritten. */ --- -2.50.1 - diff --git a/boot/grub2/0071-fs-xfs-Propagate-incorrect-inode-error-from-grub_xfs.patch b/boot/grub2/0071-fs-xfs-Propagate-incorrect-inode-error-from-grub_xfs.patch deleted file mode 100644 index 05e31957c57..00000000000 --- a/boot/grub2/0071-fs-xfs-Propagate-incorrect-inode-error-from-grub_xfs.patch +++ /dev/null @@ -1,77 +0,0 @@ -From 6becb747027c4f9cdb10f23d6eb24fcc238e8b68 Mon Sep 17 00:00:00 2001 -From: Egor Ignatov -Date: Thu, 23 Jan 2025 20:44:15 +0300 -Subject: [PATCH] fs/xfs: Propagate incorrect inode error from - grub_xfs_read_inode - -The incorrect inode error from grub_xfs_read_inode did not propagate because -grub_print_error() resetted grub_errno, and grub_xfs_iterate_dir() did not -handle it at all. - -Signed-off-by: Egor Ignatov -Upstream: https://www.mail-archive.com/grub-devel@gnu.org/msg40098.html -[Not accepted upstream, but in Debian] -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/xfs.c | 14 ++++++++++++-- - 1 file changed, 12 insertions(+), 2 deletions(-) - -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index e0daeb45f..28a342996 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -806,7 +806,6 @@ static int iterate_dir_call_hook (grub_uint64_t ino, const char *filename, - fdiro = grub_malloc (sz); - if (!fdiro) - { -- grub_print_error (); - return 0; - } - -@@ -818,7 +817,6 @@ static int iterate_dir_call_hook (grub_uint64_t ino, const char *filename, - err = grub_xfs_read_inode (ctx->diro->data, ino, &fdiro->inode); - if (err) - { -- grub_print_error (); - grub_free (fdiro); - return 0; - } -@@ -858,9 +856,13 @@ grub_xfs_iterate_dir (grub_fshelp_node_t dir, - /* Synthesize the direntries for `.' and `..'. */ - if (iterate_dir_call_hook (diro->ino, ".", &ctx)) - return 1; -+ else if (grub_errno) -+ return 0; - - if (iterate_dir_call_hook (parent, "..", &ctx)) - return 1; -+ else if (grub_errno) -+ return 0; - - for (i = 0; i < head->count && - (grub_uint8_t *) de < ((grub_uint8_t *) dir + grub_xfs_fshelp_size (dir->data)); i++) -@@ -901,6 +903,9 @@ grub_xfs_iterate_dir (grub_fshelp_node_t dir, - } - de->name[de->len] = c; - -+ if (grub_errno) -+ return 0; -+ - de = grub_xfs_inline_next_de(dir->data, head, de); - } - break; -@@ -998,6 +1003,11 @@ grub_xfs_iterate_dir (grub_fshelp_node_t dir, - grub_free (dirblock); - return 1; - } -+ else if (grub_errno) -+ { -+ grub_free (dirblock); -+ return 0; -+ } - - /* - * The expected number of directory entries is only tracked for the --- -2.50.1 - diff --git a/boot/grub2/0072-fs-xfs-Handle-root-inode-read-failure-in-grub_xfs_mo.patch b/boot/grub2/0072-fs-xfs-Handle-root-inode-read-failure-in-grub_xfs_mo.patch deleted file mode 100644 index 2d5887dfca9..00000000000 --- a/boot/grub2/0072-fs-xfs-Handle-root-inode-read-failure-in-grub_xfs_mo.patch +++ /dev/null @@ -1,29 +0,0 @@ -From 462f1d1a64e57310d10dcd325b36587a1a367d0a Mon Sep 17 00:00:00 2001 -From: Egor Ignatov -Date: Thu, 23 Jan 2025 20:44:13 +0300 -Subject: [PATCH] fs/xfs: Handle root inode read failure in grub_xfs_mount - -Signed-off-by: Egor Ignatov -Upstream: https://www.mail-archive.com/grub-devel@gnu.org/msg40099.html -[Not accepted upstream, but in Debian] -Signed-off-by: Thomas Petazzoni ---- - grub-core/fs/xfs.c | 2 ++ - 1 file changed, 2 insertions(+) - -diff --git a/grub-core/fs/xfs.c b/grub-core/fs/xfs.c -index 28a342996..59bdee5f9 100644 ---- a/grub-core/fs/xfs.c -+++ b/grub-core/fs/xfs.c -@@ -1086,6 +1086,8 @@ grub_xfs_mount (grub_disk_t disk) - grub_cpu_to_be64(data->sblock.rootino)); - - grub_xfs_read_inode (data, data->diropen.ino, &data->diropen.inode); -+ if (grub_errno) -+ goto fail; - - return data; - fail: --- -2.50.1 - diff --git a/boot/grub2/0073-net-drivers-ieee1275-ofnet-Add-missing-grub_malloc.patch b/boot/grub2/0073-net-drivers-ieee1275-ofnet-Add-missing-grub_malloc.patch deleted file mode 100644 index 97bad8c6358..00000000000 --- a/boot/grub2/0073-net-drivers-ieee1275-ofnet-Add-missing-grub_malloc.patch +++ /dev/null @@ -1,36 +0,0 @@ -From 516af0a5bd172123d4c7ff281d65b1f4b0035258 Mon Sep 17 00:00:00 2001 -From: Nicolas Frayer -Date: Wed, 19 Mar 2025 17:39:41 +0100 -Subject: [PATCH] net/drivers/ieee1275/ofnet: Add missing grub_malloc() - -The grub_malloc() has been inadvertently removed from the code after it -has been modified to use safe math functions. - -Fixes: 4beeff8a (net: Use safe math macros to prevent overflows) - -Signed-off-by: Nicolas Frayer -Tested-by: Marta Lewandowska -Reviewed-by: Daniel Kiper -Upstream: 3b25e494d47e7a728e7ce6264b10f2aa1063f9c7 -Signed-off-by: Thomas Petazzoni ---- - grub-core/net/drivers/ieee1275/ofnet.c | 3 +++ - 1 file changed, 3 insertions(+) - -diff --git a/grub-core/net/drivers/ieee1275/ofnet.c b/grub-core/net/drivers/ieee1275/ofnet.c -index c35b107ad..3004b970e 100644 ---- a/grub-core/net/drivers/ieee1275/ofnet.c -+++ b/grub-core/net/drivers/ieee1275/ofnet.c -@@ -467,6 +467,9 @@ search_net_devices (struct grub_ieee1275_devalias *alias) - return 0; - } - } -+ -+ ofdata->path = grub_malloc (sz); -+ - if (!ofdata->path) - { - grub_print_error (); --- -2.50.1 - diff --git a/boot/grub2/0074-Constant-time-grub_crypto_memcmp.patch b/boot/grub2/0074-Constant-time-grub_crypto_memcmp.patch deleted file mode 100644 index 7449e081911..00000000000 --- a/boot/grub2/0074-Constant-time-grub_crypto_memcmp.patch +++ /dev/null @@ -1,63 +0,0 @@ -From 4bbd6ae38efc7c0ae9ffd343157b7f3f37bd729c Mon Sep 17 00:00:00 2001 -From: Gary Lin -Date: Fri, 25 Jul 2025 13:50:23 +0800 -Subject: [PATCH] Constant-time grub_crypto_memcmp() - -Use the constant-time algorithm to compare the given memory blocks. -The code is extracted from the upstream commit: -0739d24cd1648531d0708d1079ff6bbfa6140268 - -Fix: bsc#1234959 - -Signed-off-by: Gary Lin -Upstream: not submitted upstream, as upstream has switched to gcrypt -Taken-from: https://build.opensuse.org/projects/SUSE:SLE-15-SP5:Update/packages/grub2.39923/files/grub2-constant-time-grub_crypto_memcmp.patch?expand=0 -Fixes: https://www.cve.org/CVERecord?id=CVE-2024-56738 -Signed-off-by: Thomas Petazzoni ---- - grub-core/lib/crypto.c | 23 ++++++++++++++++------- - 1 file changed, 16 insertions(+), 7 deletions(-) - -diff --git a/grub-core/lib/crypto.c b/grub-core/lib/crypto.c -index 396f76410..19db7870a 100644 ---- a/grub-core/lib/crypto.c -+++ b/grub-core/lib/crypto.c -@@ -433,19 +433,28 @@ grub_crypto_gcry_error (gcry_err_code_t in) - return GRUB_ACCESS_DENIED; - } - -+/* -+ * Compare byte arrays of length LEN, return 1 if it's not same, -+ * 0, otherwise. -+ */ - int --grub_crypto_memcmp (const void *a, const void *b, grub_size_t n) -+grub_crypto_memcmp (const void *b1, const void *b2, grub_size_t len) - { -- register grub_size_t counter = 0; -- const grub_uint8_t *pa, *pb; -+ const grub_uint8_t *a = b1; -+ const grub_uint8_t *b = b2; -+ int ab, ba; -+ grub_size_t i; - -- for (pa = a, pb = b; n; pa++, pb++, n--) -+ /* Constant-time compare. */ -+ for (i = 0, ab = 0, ba = 0; i < len; i++) - { -- if (*pa != *pb) -- counter++; -+ /* If a[i] != b[i], either ab or ba will be negative. */ -+ ab |= a[i] - b[i]; -+ ba |= b[i] - a[i]; - } - -- return !!counter; -+ /* 'ab | ba' is negative when buffers are not equal, extract sign bit. */ -+ return ((unsigned int)(ab | ba) >> (sizeof(unsigned int) * 8 - 1)) & 1; - } - - #ifndef GRUB_UTIL --- -2.50.1 - diff --git a/boot/grub2/Config.in b/boot/grub2/Config.in index 3a50ec0ad74..8cd56cad00a 100644 --- a/boot/grub2/Config.in +++ b/boot/grub2/Config.in @@ -118,7 +118,7 @@ config BR2_TARGET_GRUB2_LOONGARCH64_EFI depends on BR2_loongarch64 select BR2_TARGET_GRUB2_HAS_EFI_BOOT help - Select this option if the platform you're targetting is a + Select this option if the platform you're targeting is a 64bit LoongArch platform and you want to boot Grub 2 as an EFI application. diff --git a/boot/grub2/grub2.hash b/boot/grub2/grub2.hash index 65a8ec8e4f5..5b5ac28edae 100644 --- a/boot/grub2/grub2.hash +++ b/boot/grub2/grub2.hash @@ -1,5 +1,5 @@ # Locally calculated after checking signature -# https://ftp.gnu.org/gnu/grub/grub-2.12.tar.xz.sig -sha256 f3c97391f7c4eaa677a78e090c7e97e6dc47b16f655f04683ebd37bef7fe0faa grub-2.12.tar.xz +# https://ftp.gnu.org/gnu/grub/grub-2.14.tar.xz.sig +sha256 bc8d3c73535b8838d8c8e2654d73edc4e6ae8c8acdb45d5df5dc9a1547446d43 grub-2.14.tar.xz # Locally computed: sha256 8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903 COPYING diff --git a/boot/grub2/grub2.mk b/boot/grub2/grub2.mk index f543c53cd82..de9f913e930 100644 --- a/boot/grub2/grub2.mk +++ b/boot/grub2/grub2.mk @@ -4,7 +4,7 @@ # ################################################################################ -GRUB2_VERSION = 2.12 +GRUB2_VERSION = 2.14 GRUB2_SITE = $(BR2_GNU_MIRROR)/grub GRUB2_SOURCE = grub-$(GRUB2_VERSION).tar.xz GRUB2_LICENSE = GPL-3.0+ @@ -15,47 +15,12 @@ HOST_GRUB2_DEPENDENCIES = host-bison host-flex host-gawk \ $(BR2_PYTHON3_HOST_DEPENDENCY) GRUB2_INSTALL_IMAGES = YES -# CVE-2019-14865 is about a flaw in the grub2-set-bootflag tool, which -# doesn't exist upstream, but is added by the Redhat/Fedora -# packaging. Not applicable to Buildroot. -GRUB2_IGNORE_CVES += CVE-2019-14865 -# vulnerability is specific to the Redhat distribution, affects a -# downstream change from Redhat related to password authentication -GRUB2_IGNORE_CVES += CVE-2023-4001 -# vulnerability is specific to the Redhat distribution, affects the -# grub2-set-bootflag tool, which doesn't exist upstream -GRUB2_IGNORE_CVES += CVE-2024-1048 - -# 0004-fs-hfs-Fix-stack-OOB-write-with-grub_strcpy.patch (yes, two -# CVEs are fixed by this patch) -GRUB2_IGNORE_CVES += CVE-2024-45782 -GRUB2_IGNORE_CVES += CVE-2024-56737 - -# 0006-fs-tar-Integer-overflow-leads-to-heap-OOB-write.patch -GRUB2_IGNORE_CVES += CVE-2024-45780 - -# 0037-gettext-Integer-overflow-leads-to-heap-OOB-write.patch -GRUB2_IGNORE_CVES += CVE-2024-45777 - -# 0043-fs-bfs-Disable-under-lockdown.patch (yes, two CVEs are fixed by -# this patch) -GRUB2_IGNORE_CVES += CVE-2024-45778 -GRUB2_IGNORE_CVES += CVE-2024-45779 - -# 0044-fs-Disable-many-filesystems-under-lockdown.patch (yes, four -# CVEs are fixed by this patch) -GRUB2_IGNORE_CVES += CVE-2025-0684 -GRUB2_IGNORE_CVES += CVE-2025-0685 -GRUB2_IGNORE_CVES += CVE-2025-0686 -GRUB2_IGNORE_CVES += CVE-2025-0689 - -# 0050-fs-Prevent-overflows-when-allocating-memory-for-arra.patch -# (yes, two CVEs are fixed by this patch) -GRUB2_IGNORE_CVES += CVE-2025-0678 -GRUB2_IGNORE_CVES += CVE-2025-1125 - -# 0074-Constant-time-grub_crypto_memcmp.patch -GRUB2_IGNORE_CVES += CVE-2024-56738 +# 0001-Revert-configure-Check-linker-for-image-base-support.patch +# 0002-Revert-configure-Print-a-more-helpful-error-if-autoc.patch +# Target grub2 package doesn't use autotools-package +GRUB2_DEPENDENCIES += host-automake host-autoconf host-libtool host-pkgconf +HOST_GRUB2_AUTORECONF = YES +HOST_GRUB2_DEPENDENCIES += host-pkgconf ifeq ($(BR2_TARGET_GRUB2_INSTALL_TOOLS),y) GRUB2_INSTALL_TARGET = YES @@ -174,6 +139,7 @@ HOST_GRUB2_CONF_OPTS = \ --disable-werror define GRUB2_CONFIGURE_CMDS + cd $(@D); $(AUTORECONF) $(foreach tuple, $(GRUB2_TUPLES-y), \ @$(call MESSAGE,Configuring $(tuple)) mkdir -p $(@D)/build-$(tuple) diff --git a/boot/opensbi/Config.in b/boot/opensbi/Config.in index 9c6047df5e6..6e26da63449 100644 --- a/boot/opensbi/Config.in +++ b/boot/opensbi/Config.in @@ -19,7 +19,7 @@ choice Select the specific OpenSBI version you want to use config BR2_TARGET_OPENSBI_LATEST_VERSION - bool "1.7" + bool "Latest version (1.8.1)" config BR2_TARGET_OPENSBI_CUSTOM_VERSION bool "Custom version" @@ -57,13 +57,21 @@ endif config BR2_TARGET_OPENSBI_VERSION string - default "1.7" if BR2_TARGET_OPENSBI_LATEST_VERSION + default "1.8.1" if BR2_TARGET_OPENSBI_LATEST_VERSION default BR2_TARGET_OPENSBI_CUSTOM_VERSION_VALUE \ if BR2_TARGET_OPENSBI_CUSTOM_VERSION default "custom" if BR2_TARGET_OPENSBI_CUSTOM_TARBALL default BR2_TARGET_OPENSBI_CUSTOM_REPO_VERSION \ if BR2_TARGET_OPENSBI_CUSTOM_GIT +config BR2_TARGET_OPENSBI_LICENSE_FILES + string "OpenSBI license files" if BR2_TARGET_OPENSBI_CUSTOM_GIT || \ + BR2_TARGET_OPENSBI_CUSTOM_TARBALL + default "COPYING.BSD" + help + A space-separated list of license files related to the OpenSBI + package. + config BR2_TARGET_OPENSBI_PLAT string "OpenSBI Platform" default "" diff --git a/boot/opensbi/opensbi.hash b/boot/opensbi/opensbi.hash index c82d2de236e..661f08189ea 100644 --- a/boot/opensbi/opensbi.hash +++ b/boot/opensbi/opensbi.hash @@ -1,3 +1,3 @@ # locally computed -sha256 2cf856a4e5e2e052948ddb54ba48232b1f698b7f52e0374fc7d17d51e8c8f7ce opensbi-1.7.tar.gz +sha256 fb1ae61a85e966322101acb1c982f84d9eaafc4de7dd474a7d7546d9bb321c6f opensbi-1.8.1.tar.gz sha256 82d13fb1bf6bb162629deeea9eb9c117e74548d3b707e478967691fe79a68e21 COPYING.BSD diff --git a/boot/opensbi/opensbi.mk b/boot/opensbi/opensbi.mk index 0142769a127..f9f550176f9 100644 --- a/boot/opensbi/opensbi.mk +++ b/boot/opensbi/opensbi.mk @@ -20,9 +20,7 @@ OPENSBI_SITE = $(call github,riscv-software-src,opensbi,v$(OPENSBI_VERSION)) endif OPENSBI_LICENSE = BSD-2-Clause -ifeq ($(BR2_TARGET_OPENSBI_LATEST_VERSION),y) -OPENSBI_LICENSE_FILES = COPYING.BSD -endif +OPENSBI_LICENSE_FILES = $(call qstrip,$(BR2_TARGET_OPENSBI_LICENSE_FILES)) OPENSBI_INSTALL_TARGET = NO OPENSBI_INSTALL_STAGING = YES diff --git a/boot/optee-os/Config.in b/boot/optee-os/Config.in index e737d2a0acd..af08375b9ac 100644 --- a/boot/optee-os/Config.in +++ b/boot/optee-os/Config.in @@ -18,7 +18,7 @@ choice Select the version of OP-TEE OS you want to use config BR2_TARGET_OPTEE_OS_LATEST - bool "4.6.0" + bool "4.9.0" depends on BR2_PACKAGE_HOST_RUSTC_ARCH_SUPPORTS select BR2_TARGET_OPTEE_OS_NEEDS_PYTHON_CRYPTOGRAPHY help @@ -79,13 +79,21 @@ endif config BR2_TARGET_OPTEE_OS_VERSION string - default "4.6.0" if BR2_TARGET_OPTEE_OS_LATEST + default "4.9.0" if BR2_TARGET_OPTEE_OS_LATEST default BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE \ if BR2_TARGET_OPTEE_OS_CUSTOM_VERSION default "custom" if BR2_TARGET_OPTEE_OS_CUSTOM_TARBALL default BR2_TARGET_OPTEE_OS_CUSTOM_REPO_VERSION \ if BR2_TARGET_OPTEE_OS_CUSTOM_GIT +config BR2_TARGET_OPTEE_OS_LICENSE_FILES + string "OP-TEE OS license files" if BR2_TARGET_OPTEE_OS_CUSTOM_GIT || \ + BR2_TARGET_OPTEE_OS_CUSTOM_TARBALL + default "LICENSE" + help + A space-separated list of license files related to the + OPTEE-OS package. + config BR2_TARGET_OPTEE_OS_NEEDS_DTC bool "OP-TEE OS needs dtc" select BR2_PACKAGE_HOST_DTC diff --git a/boot/optee-os/optee-os.hash b/boot/optee-os/optee-os.hash index c86bd1e0d99..3db5c85cf17 100644 --- a/boot/optee-os/optee-os.hash +++ b/boot/optee-os/optee-os.hash @@ -1,3 +1,3 @@ # Locally computed -sha256 0c947c6972bf50c483cb993af01041d4094b1e03711c7246cdde6ba2ffc351fe optee-os-4.6.0.tar.gz +sha256 9400e16c45bfa45f15585b2c933b86c449e7de05def0ecaaa62a4f38973a3a45 optee-os-4.9.0.tar.gz sha256 1247ee90858f4037b6cac63cbffddfed435d0d73c631b37d78c1e6e6ab3e5d1a LICENSE diff --git a/boot/optee-os/optee-os.mk b/boot/optee-os/optee-os.mk index 25c917e2fce..38faf8bff77 100644 --- a/boot/optee-os/optee-os.mk +++ b/boot/optee-os/optee-os.mk @@ -6,12 +6,10 @@ OPTEE_OS_VERSION = $(call qstrip,$(BR2_TARGET_OPTEE_OS_VERSION)) OPTEE_OS_LICENSE = BSD-2-Clause -ifeq ($(BR2_TARGET_OPTEE_OS_LATEST),y) -OPTEE_OS_LICENSE_FILES = LICENSE -endif +OPTEE_OS_LICENSE_FILES = $(call qstrip,$(BR2_TARGET_OPTEE_OS_LICENSE_FILES)) OPTEE_OS_CPE_ID_PREFIX = cpe:2.3:o -OPTEE_OS_CPE_ID_VENDOR = linaro +OPTEE_OS_CPE_ID_VENDOR = trustedfirmware OPTEE_OS_CPE_ID_PRODUCT = op-tee OPTEE_OS_INSTALL_STAGING = YES diff --git a/boot/palo/Config.in b/boot/palo/Config.in new file mode 100644 index 00000000000..34e2d5bf005 --- /dev/null +++ b/boot/palo/Config.in @@ -0,0 +1,13 @@ +config BR2_TARGET_PALO + bool "palo" + depends on BR2_hppa + help + Palo is a PA-RISC/Linux boot loader. + + It comprises iplboot, a bootloader loaded by the HP firmware, + and palo, a boot media management tool. + + Palo allows to update disk images with a bootloader to make + them bootable, or to create network bootable images. + + https://parisc.docs.kernel.org diff --git a/boot/palo/palo.hash b/boot/palo/palo.hash new file mode 100644 index 00000000000..9019d00f04d --- /dev/null +++ b/boot/palo/palo.hash @@ -0,0 +1,3 @@ +# Locally calculated +sha256 bca096116d403b7d370794d84853c4f4a4703d604c01a645d1fbd1c5be42a7e0 palo-2.29.tar.gz +sha256 fa5fc1d1eec39532ea517518eeefd7b6e3c14341a55e5880a0e2a49eee47a5b7 COPYING diff --git a/boot/palo/palo.mk b/boot/palo/palo.mk new file mode 100644 index 00000000000..d2761042f55 --- /dev/null +++ b/boot/palo/palo.mk @@ -0,0 +1,25 @@ +################################################################################ +# +# palo +# +################################################################################ + +PALO_VERSION = 2.29 +PALO_SITE = https://git.kernel.org/pub/scm/linux/kernel/git/deller/palo.git/snapshot +PALO_LICENSE = GPL-2.0 +PALO_LICENSE_FILES = COPYING +PALO_INSTALL_IMAGES = YES + +define PALO_BUILD_CMDS + # Dummy README to remove the dependency on lynx. + touch $(@D)/README + $(TARGET_MAKE_ENV) $(MAKE) -C $(@D) \ + CROSS_COMPILE=$(TARGET_CROSS) all makeipl +endef + +define PALO_INSTALL_IMAGES_CMDS + $(INSTALL) -D -m 0644 $(@D)/iplboot $(BINARIES_DIR)/iplboot + $(INSTALL) -D -m 0755 $(@D)/palo/palo $(HOST_DIR)/bin/palo +endef + +$(eval $(generic-package)) diff --git a/boot/refind-bin/Config.in b/boot/refind-bin/Config.in new file mode 100644 index 00000000000..7bc19d00e68 --- /dev/null +++ b/boot/refind-bin/Config.in @@ -0,0 +1,28 @@ +config BR2_PACKAGE_REFIND_BIN_ARCH_SUPPORTS + bool + default y if BR2_i386 + default y if BR2_x86_64 + default y if BR2_aarch64 + depends on BR2_USE_MMU + +menuconfig BR2_TARGET_REFIND_BIN + bool "refind-bin" + depends on BR2_PACKAGE_REFIND_BIN_ARCH_SUPPORTS + help + rEFInd presents a user-friendly GUI for boot selection. + + For additional notes on using rEFInd with Buildroot, see + boot/refind/readme.txt + + This is the pre-compiled binary variant. + + https://www.rodsbooks.com/refind/ + +if BR2_TARGET_REFIND_BIN + +config BR2_TARGET_REFIND_BIN_RENAME_TO_BOOT + bool "rename refind efi files to BOOT" + help + Move refind EFI directory to the default BOOT path. + +endif diff --git a/boot/refind-bin/readme.txt b/boot/refind-bin/readme.txt new file mode 100644 index 00000000000..d4bc326e6f1 --- /dev/null +++ b/boot/refind-bin/readme.txt @@ -0,0 +1,42 @@ +Notes on using rEFInd +============================================= + +1. Create a disk image + dd if=/dev/zero of=disk.img bs=1M count=32 +2. Partition it (either legacy or GPT style partitions work) + - Create one fat16 partition, labeled BOOT, flags boot, lba. + - Create one ext4 partition, type Linux, for the root fs. +3. Setup loop device and loop partitions + sudo losetup -f disk.img + sudo partx -a /dev/loop0 +4. Prepare the partition contents + sudo mkfs.fat -F 16 -L BOOT /dev/loop0p1 + sudo mkfs.ext4 -L root /dev/loop0p2 + sudo mount /dev/loop0p1 /mnt + sudo tar -C /mnt -xf output/images/refind.tar + sudo umount /mnt + sudo mount /dev/loop0p2 /mnt + sudo tar -C /mnt -xf output/images/rootfs.tar + sudo umount /mnt +5. Cleanup loop device + sudo partx -d /dev/loop0 + sudo losetup -d /dev/loop0 +6. Your disk.img is ready! + +Configuring rEFInd +============================================= + +rEFInd will search for refind_linux.conf files. + +Place a refind_linux.conf file in the same location as your initrd: + +"Boot Buildroot" "initrd=/boot/initrd-%v root=/dev/initrd ro earlyprintk" + +rEFInd will find all files with prefix initrd- and display options on screen, +defaulting to the most recent build version. + +Example contents of /boot: + +bzImage-buildroot-2022.05.1-104-1 +initrd-buildroot-2022.05.1-104-1 +refind_linux.conf diff --git a/boot/refind-bin/refind-bin.hash b/boot/refind-bin/refind-bin.hash new file mode 100644 index 00000000000..fbd9030bf1b --- /dev/null +++ b/boot/refind-bin/refind-bin.hash @@ -0,0 +1,5 @@ +# Locally computed +sha256 410c7828c4fec2f2179bd956073522415831d27c00416381b8f71153c190a311 refind-bin-0.14.2.zip +sha256 8ceb4b9ee5adedde47b31e975c1d90c73ad27b6b165a1dcd80c7c545eb65b903 COPYING.txt +sha256 cebbc60079d3e79a1d94bf7c63482ca27d8ce58739d28c5e209bbd378337729b LICENSE.txt +sha256 4748f03ed2dbcc14cde6ebc30799899c403e356a7465dc30fcf2b80c45fc0059 docs/refind/FDL-1.3.txt diff --git a/boot/refind-bin/refind-bin.mk b/boot/refind-bin/refind-bin.mk new file mode 100644 index 00000000000..705a7c7a2f4 --- /dev/null +++ b/boot/refind-bin/refind-bin.mk @@ -0,0 +1,63 @@ +################################################################################ +# +# refind-bin +# +################################################################################ + +REFIND_BIN_VERSION = 0.14.2 +REFIND_BIN_SITE = http://downloads.sourceforge.net/project/refind/$(REFIND_BIN_VERSION) +REFIND_BIN_SOURCE = refind-bin-$(REFIND_BIN_VERSION).zip +REFIND_BIN_LICENSE = GPL-3.0+, GFDL-1.3+ (docs) +REFIND_BIN_LICENSE_FILES = COPYING.txt LICENSE.txt docs/refind/FDL-1.3.txt +REFIND_BIN_INSTALL_IMAGES = YES + +ifeq ($(BR2_x86_64),y) +REFIND_BIN_ARCH = x86_64 +REFIND_BIN_PLATFORM = x64 +else ifeq ($(BR2_aarch64),y) +REFIND_BIN_ARCH = aarch64 +REFIND_BIN_PLATFORM = aa64 +else +REFIND_BIN_ARCH = ia32 +REFIND_BIN_PLATFORM = ia32 +endif + +REFIND_BIN_EFI_PART_DIR = $(BINARIES_DIR)/efi-part +REFIND_BIN_BINARIES_DIR = $(REFIND_BIN_EFI_PART_DIR)/EFI/refind + +REFIND_BIN_EXTRACT_CMDS = \ + bsdtar --strip-components=1 \ + -C $(REFIND_BIN_DIR) \ + $(TAR_OPTIONS) $(REFIND_BIN_DL_DIR)/$(REFIND_BIN_SOURCE) - + +define REFIND_BIN_INSTALL_IMAGES_CMDS + if [ -d $(REFIND_BIN_BINARIES_DIR) ]; then \ + rm -rf $(REFIND_BIN_BINARIES_DIR); \ + fi + $(INSTALL) -m 0755 -D $(@D)/refind/refind_$(REFIND_BIN_PLATFORM).efi \ + $(REFIND_BIN_BINARIES_DIR)/refind_$(REFIND_BIN_PLATFORM).efi + cp -r $(@D)/refind/drivers_$(REFIND_BIN_PLATFORM) \ + $(REFIND_BIN_BINARIES_DIR)/drivers_$(REFIND_BIN_PLATFORM) + echo "refind_$(REFIND_BIN_PLATFORM).efi,rEFInd Boot Manager,,Entry for rEFInd" > \ + $(REFIND_BIN_BINARIES_DIR)/BOOT.CSV + echo "# rEFInd configuration\ntimeout 20\n" > \ + $(REFIND_BIN_BINARIES_DIR)/refind.conf + cp -r $(@D)/refind/icons $(REFIND_BIN_BINARIES_DIR)/icons + cp -r $(@D)/{fonts,banners,keys} $(REFIND_BIN_BINARIES_DIR)/ +endef + +ifeq ($(BR2_TARGET_REFIND_BIN_RENAME_TO_BOOT),y) +define REFIND_BIN_IMAGES_RENAME_TO_BOOT + if [ -d $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT ]; then \ + rm -rf $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT; \ + fi + mv $(REFIND_BIN_BINARIES_DIR)/ $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT/ + mv $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT/refind_$(REFIND_BIN_PLATFORM).efi \ + $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT/BOOT$(REFIND_BIN_PLATFORM).EFI + echo "BOOT$(REFIND_BIN_PLATFORM).EFI,rEFInd Boot Manager,,Entry for rEFInd" > \ + $(REFIND_BIN_EFI_PART_DIR)/EFI/BOOT/BOOT.CSV +endef +REFIND_BIN_POST_INSTALL_IMAGES_HOOKS += REFIND_BIN_IMAGES_RENAME_TO_BOOT +endif + +$(eval $(generic-package)) diff --git a/boot/s500-bootloader/Config.in b/boot/s500-bootloader/Config.in deleted file mode 100644 index 7bb689f305b..00000000000 --- a/boot/s500-bootloader/Config.in +++ /dev/null @@ -1,17 +0,0 @@ -config BR2_TARGET_S500_BOOTLOADER - bool "s500-bootloader" - depends on BR2_arm - depends on BR2_HOSTARCH = "x86_64" || BR2_HOSTARCH = "x86" - select BR2_HOSTARCH_NEEDS_IA32_LIBS - help - 1st level bootloader for Actions Semiconductor S500 SoC. - - https://github.com/xapp-le/owl - -config BR2_TARGET_S500_BOOTLOADER_BOARD - string "board to configure for" - depends on BR2_TARGET_S500_BOOTLOADER - help - Specify the board to configure the bootloader for. - This should be the name of a directory under s500/boards - containing a suitable bootloader.ini file. diff --git a/boot/s500-bootloader/s500-bootloader.hash b/boot/s500-bootloader/s500-bootloader.hash deleted file mode 100644 index 2ebd933e523..00000000000 --- a/boot/s500-bootloader/s500-bootloader.hash +++ /dev/null @@ -1,2 +0,0 @@ -# Locally calculated -sha256 b183024ac69f51ea7befd28d03b2ec35a7280e270405600fb4f37aa91d9c9571 s500-bootloader-a8d7fa1d9a7f353ec4613febf30f4ca99a10a106.tar.gz diff --git a/boot/s500-bootloader/s500-bootloader.mk b/boot/s500-bootloader/s500-bootloader.mk deleted file mode 100644 index bc87b091c75..00000000000 --- a/boot/s500-bootloader/s500-bootloader.mk +++ /dev/null @@ -1,34 +0,0 @@ -################################################################################ -# -# s500-bootloader -# -################################################################################ - -S500_BOOTLOADER_VERSION = a8d7fa1d9a7f353ec4613febf30f4ca99a10a106 -S500_BOOTLOADER_SITE = $(call github,xapp-le,owl,$(S500_BOOTLOADER_VERSION)) -S500_BOOTLOADER_LICENSE = PROPRIETARY -S500_BOOTLOADER_INSTALL_TARGET = NO -S500_BOOTLOADER_INSTALL_IMAGES = YES - -S500_BOOTLOADER_BOARD = $(call qstrip,$(BR2_TARGET_S500_BOOTLOADER_BOARD)) - -define S500_BOOTLOADER_BUILD_CMDS - cd $(@D) && ./tools/utils/bootloader_pack \ - s500/bootloader/bootloader.bin \ - s500/boards/$(S500_BOOTLOADER_BOARD)/bootloader.ini \ - s500-bootloader.bin -endef - -define S500_BOOTLOADER_INSTALL_IMAGES_CMDS - $(INSTALL) -m 0644 -D $(@D)/s500-bootloader.bin \ - $(BINARIES_DIR)/s500-bootloader.bin -endef - -$(eval $(generic-package)) - -ifeq ($(BR2_TARGET_S500_BOOTLOADER)$(BR_BUILDING),yy) -# we NEED a board name -ifeq ($(S500_BOOTLOADER_BOARD),) -$(error No s500-bootloader board specified. Check your BR2_TARGET_S500_BOOTLOADER settings) -endif -endif diff --git a/boot/shim/0001-Fix-build-with-binutils-2.46.patch b/boot/shim/0001-Fix-build-with-binutils-2.46.patch new file mode 100644 index 00000000000..05ab7b2c834 --- /dev/null +++ b/boot/shim/0001-Fix-build-with-binutils-2.46.patch @@ -0,0 +1,51 @@ +From c4665d282072df2ed8ab6ae1d5fa0de41e5db02f Mon Sep 17 00:00:00 2001 +From: Luca Boccassi +Date: Tue, 6 Jan 2026 11:48:13 +0100 +Subject: [PATCH] Fix build with binutils 2.46 + +With the new binutils which is in development and in Fedora Rawhide: + +objcopy -D -j .text -j .sdata -j .data -j .data.ident \ + -j .dynamic -j .rodata -j .rel* \ + -j .rela* -j .dyn -j .reloc -j .eh_frame \ + -j .vendor_cert -j .sbat -j .sbatlevel \ + --file-alignment 0x1000 \ + --target efi-app-x86_64 fbx64.so fbx64.efi +objcopy: fbx64.so: file format not recognized + +It seems it was an intentional compat break, according to the upstream +commit: + +https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;a=commit;h=5e83077d552ed6f81dbc092eb3ccf827a43de42c + +* Internal changes to plugin support, and stricter target checking may result + in some errors being exposed in user options passed to the various binutils. + For example objcopy --target=TARGET now will only work if the input file is + for TARGET whereas prior versions of objcopy accepted other target input + files and produced a TARGET output. If you do in fact want the old + behaviour the correct usage is objcopy --output-target=TARGET. + +Switch from --taget to --output-target as suggested. + +Signed-off-by: Luca Boccassi + +Upstream: https://github.com/rhboot/shim/commit/c4665d282072df2ed8ab6ae1d5fa0de41e5db02f + +Signed-off-by: Bernd Kuhls +--- + Make.defaults | 2 +- + 1 file changed, 1 insertion(+), 1 deletion(-) + +diff --git a/Make.defaults b/Make.defaults +index c5fa32bec..9b40b7f4a 100644 +--- a/Make.defaults ++++ b/Make.defaults +@@ -155,7 +155,7 @@ endif + + LIB_GCC = $(shell $(CC) $(ARCH_CFLAGS) -print-libgcc-file-name) + EFI_LIBS = -lefi -lgnuefi --start-group Cryptlib/libcryptlib.a Cryptlib/OpenSSL/libopenssl.a --end-group $(LIB_GCC) +-FORMAT ?= --target efi-app-$(ARCH) ++FORMAT ?= --output-target efi-app-$(ARCH) + LOCAL_EFI_PATH = gnu-efi/$(ARCH_GNUEFI)/gnuefi + LIBDIR = gnu-efi/$(ARCH_GNUEFI)/lib + diff --git a/boot/shim/0002-cmac.c-optimize-make_kn-and-move-zero_iv-to-const-se.patch b/boot/shim/0002-cmac.c-optimize-make_kn-and-move-zero_iv-to-const-se.patch new file mode 100644 index 00000000000..2baa0de56cf --- /dev/null +++ b/boot/shim/0002-cmac.c-optimize-make_kn-and-move-zero_iv-to-const-se.patch @@ -0,0 +1,72 @@ +From 7aee873d6f6b0737dfe566fc8c5cd4eaada9bd5e Mon Sep 17 00:00:00 2001 +From: Fabrice Fontaine +Date: Mon, 8 Apr 2024 11:56:06 +0200 +Subject: [PATCH] cmac.c: optimize make_kn and move zero_iv to const segment. + +Backport +https://github.com/openssl/openssl/commit/03cf7e784caa4c61febbf249be63cbae3e368ac9 +to fix the following k1 stringop-overflow: + +In function 'make_kn', + inlined from 'make_kn' at crypto/cmac/cmac.c:81:13, + inlined from 'CMAC_Init' at crypto/cmac/cmac.c:205:9: +crypto/cmac/cmac.c:92:20: error: writing 1 byte into a region of size 0 [-Werror=stringop-overflow=] + 92 | k1[bl - 1] ^= bl == 16 ? 0x87 : 0x1b; + | ~~~~~~~~~~~^~~~~~~~~~~~~~~~~~~~~~~~~ +crypto/cmac/cmac.c: In function 'CMAC_Init': +crypto/cmac/cmac.c:69:19: note: at offset [-2147483649, -1] into destination object 'k1' of size 32 + 69 | unsigned char k1[EVP_MAX_BLOCK_LENGTH]; + | ^~ + +Fixes: + - http://autobuild.buildroot.org/results/97b6333cdc7bad24aba7af1b04890679e0058299 + +Upstream: https://github.com/rhboot/shim/pull/652 +Signed-off-by: Fabrice Fontaine +Signed-off-by: Peter Korsgaard +--- + Cryptlib/OpenSSL/crypto/cmac/cmac.c | 17 ++++++++--------- + 1 file changed, 8 insertions(+), 9 deletions(-) + +diff --git a/Cryptlib/OpenSSL/crypto/cmac/cmac.c b/Cryptlib/OpenSSL/crypto/cmac/cmac.c +index 2954b6eb..27dbfaac 100644 +--- a/Cryptlib/OpenSSL/crypto/cmac/cmac.c ++++ b/Cryptlib/OpenSSL/crypto/cmac/cmac.c +@@ -78,18 +78,17 @@ struct CMAC_CTX_st { + + /* Make temporary keys K1 and K2 */ + +-static void make_kn(unsigned char *k1, unsigned char *l, int bl) ++static void make_kn(unsigned char *k1, const unsigned char *l, int bl) + { + int i; ++ unsigned char c = l[0], carry = c>>7, cnext; ++ + /* Shift block to left, including carry */ +- for (i = 0; i < bl; i++) { +- k1[i] = l[i] << 1; +- if (i < bl - 1 && l[i + 1] & 0x80) +- k1[i] |= 1; +- } ++ for (i = 0; i < bl-1; i++, c = cnext) ++ k1[i] = (c << 1) | ((cnext=l[i+1]) >> 7); ++ + /* If MSB set fixup with R */ +- if (l[0] & 0x80) +- k1[bl - 1] ^= bl == 16 ? 0x87 : 0x1b; ++ k1[i] = (c << 1) ^ ((0-carry)&(bl==16?0x87:0x1b)); + } + + CMAC_CTX *CMAC_CTX_new(void) +@@ -151,7 +150,7 @@ int CMAC_CTX_copy(CMAC_CTX *out, const CMAC_CTX *in) + int CMAC_Init(CMAC_CTX *ctx, const void *key, size_t keylen, + const EVP_CIPHER *cipher, ENGINE *impl) + { +- static unsigned char zero_iv[EVP_MAX_BLOCK_LENGTH]; ++ static const unsigned char zero_iv[EVP_MAX_BLOCK_LENGTH] = {0}; + #ifdef OPENSSL_FIPS + if (FIPS_mode()) { + /* If we have an ENGINE need to allow non FIPS */ +-- +2.47.3 + diff --git a/boot/syslinux/syslinux.mk b/boot/syslinux/syslinux.mk index b8f022b189c..f938634c356 100644 --- a/boot/syslinux/syslinux.mk +++ b/boot/syslinux/syslinux.mk @@ -56,6 +56,9 @@ SYSLINUX_POST_PATCH_HOOKS += SYSLINUX_CLEANUP # syslinux build system has no convenient way to pass CFLAGS, # and the internal zlib should take precedence so -I shouldn't # be used. +# gcc-15 defaults to -std=gnu23 which introduces build failures. +# We force "-std=gnu17" for gcc version supporting it. Earlier gcc +# versions will work, since they are using the older standard. # Install in a temporary location that eases final install into # images/ (see corresponding command, below). # Repeat the target, otherwise syslinux will try to build everything @@ -65,7 +68,7 @@ define SYSLINUX_BUILD_CMDS $(TARGET_MAKE_ENV) $(MAKE1) \ ASCIIDOC_OK=-1 \ A2X_XML_OK=-1 \ - CC="$(TARGET_CC) -std=gnu17" \ + CC="$(TARGET_CC) $(if $(BR2_TOOLCHAIN_GCC_AT_LEAST_8),-std=gnu17)" \ LD="$(TARGET_LD)" \ OBJCOPY="$(TARGET_OBJCOPY)" \ AS="$(TARGET_AS)" \ diff --git a/boot/ti-k3-r5-loader/Config.in b/boot/ti-k3-r5-loader/Config.in index b4fb46e55b8..7eb471e6d50 100644 --- a/boot/ti-k3-r5-loader/Config.in +++ b/boot/ti-k3-r5-loader/Config.in @@ -95,6 +95,12 @@ config BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_CONFIG_FILE help Path to the TI K3 R5 Loader configuration file. +config BR2_TARGET_TI_K3_R5_LOADER_CONFIG_FRAGMENT_FILES + string "Additional configuration fragment files" + help + A space-separated list of configuration fragment files, + that will be merged to the tiboot3.bin configuration file. + config BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_DTS_PATH string "Device Tree Source file paths" help diff --git a/boot/ti-k3-r5-loader/ti-k3-r5-loader.mk b/boot/ti-k3-r5-loader/ti-k3-r5-loader.mk index db5c3cdaf8b..178db5c0f35 100644 --- a/boot/ti-k3-r5-loader/ti-k3-r5-loader.mk +++ b/boot/ti-k3-r5-loader/ti-k3-r5-loader.mk @@ -77,6 +77,7 @@ TI_K3_R5_LOADER_MAKE_OPTS = \ HOSTLDFLAGS="$(HOST_LDFLAGS)" \ BINMAN_INDIRS=$(BINARIES_DIR) +TI_K3_R5_LOADER_KCONFIG_FRAGMENT_FILES = $(call qstrip,$(BR2_TARGET_TI_K3_R5_LOADER_CONFIG_FRAGMENT_FILES)) TI_K3_R5_LOADER_TIBOOT3_BIN = $(call qstrip,$(BR2_TARGET_TI_K3_R5_LOADER_TIBOOT3_BIN)) define TI_K3_R5_LOADER_INSTALL_TIBOOT3_BIN diff --git a/boot/uboot/Config.in b/boot/uboot/Config.in index d40e1e95e07..1eabd10407a 100644 --- a/boot/uboot/Config.in +++ b/boot/uboot/Config.in @@ -41,7 +41,7 @@ choice Select the specific U-Boot version you want to use config BR2_TARGET_UBOOT_LATEST_VERSION - bool "2025.10" + bool "2026.07" config BR2_TARGET_UBOOT_CUSTOM_VERSION bool "Custom version" @@ -85,13 +85,21 @@ endif config BR2_TARGET_UBOOT_VERSION string - default "2025.10" if BR2_TARGET_UBOOT_LATEST_VERSION + default "2026.07" if BR2_TARGET_UBOOT_LATEST_VERSION default BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE \ if BR2_TARGET_UBOOT_CUSTOM_VERSION default "custom" if BR2_TARGET_UBOOT_CUSTOM_TARBALL default BR2_TARGET_UBOOT_CUSTOM_REPO_VERSION \ if BR2_TARGET_UBOOT_CUSTOM_GIT || BR2_TARGET_UBOOT_CUSTOM_HG || BR2_TARGET_UBOOT_CUSTOM_SVN +config BR2_TARGET_UBOOT_LICENSE_FILES + string "U-boot license files" if BR2_TARGET_UBOOT_CUSTOM_GIT || BR2_TARGET_UBOOT_CUSTOM_HG || \ + BR2_TARGET_UBOOT_CUSTOM_SVN || BR2_TARGET_UBOOT_CUSTOM_TARBALL + default "Licenses/gpl-2.0.txt" + help + A space-separated list of license files related to U-Boot + package. + config BR2_TARGET_UBOOT_PATCH string "Custom U-Boot patches" default BR2_TARGET_UBOOT_CUSTOM_PATCH_DIR if BR2_TARGET_UBOOT_CUSTOM_PATCH_DIR != "" # legacy @@ -287,17 +295,37 @@ choice Since this version, the TEE in binary format must be used as it contains important meta-data. + https://optee.readthedocs.io/en/4.9.0/architecture/porting_guidelines.html#binaries + config BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_ELF bool "tee.elf" help + The main OP-TEE ELF file. All other OP-TEE binaries are + created with this as input. + ELF format may be used only for OP-TEE versions before 3.8.0. config BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_BIN bool "tee.bin" help + The original OP-TEE binary with a header (v1) and combined + init, paged, and unpaged parts. + Binary format must be used for OP-TEE versions since 3.8.0. +config BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN + bool "tee-raw.bin" + help + Raw binary suitable to copy into physical memory where OP-TEE + be can executed from. + + OP-TEE since 3.21 suggests to use tee-raw.bin instead of (the + still identical) tee-pager_v2.bin. + + Texas Instrument’s K3 family of SoCs embed tee-raw.bin in + U-Boot (using Binman tool) to support their boot flow. + endchoice config BR2_TARGET_UBOOT_NEEDS_OPENSBI @@ -340,7 +368,7 @@ config BR2_TARGET_UBOOT_USE_BINMAN help Use binman tool for generation and signing of boot images. - https://docs.u-boot.org/en/v2025.10/develop/package/binman.html + https://docs.u-boot.org/en/v2026.07/develop/package/binman.html menu "U-Boot binary format" @@ -479,6 +507,14 @@ config BR2_TARGET_UBOOT_FORMAT_QSPI_BIN file for flashing by combining the spl/boot.bin and u-boot.itb files into a unified binary. +config BR2_TARGET_UBOOT_FORMAT_ADSP_LDR + bool "u-boot.ldr" + depends on BR2_arm || BR2_aarch64 + help + Boot stream format for Analog Devices, Inc. ADSP-SCxxx + processors including 32-bit SC589, SC592, and SC594, as + well as 64-bit SC596 and SC598 + config BR2_TARGET_UBOOT_FORMAT_STM32 bool "u-boot.stm32" depends on BR2_arm @@ -677,7 +713,7 @@ config BR2_TARGET_UBOOT_ZYNQMP_PSU_INIT_FILE string "Custom psu_init_gpl file" depends on BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG help - On ZynqMP the booloader is responsible for some basic + On ZynqMP the bootloader is responsible for some basic initializations, such as enabling peripherals and configuring pinmuxes. The psu_init_gpl.c file (and, optionally, psu_init_gpl.h) contains the code for such @@ -714,7 +750,7 @@ config BR2_TARGET_UBOOT_ZYNQ_PS7_INIT_FILE depends on BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG depends on BR2_TARGET_UBOOT_ZYNQ help - On Zynq the booloader is responsible for some basic + On Zynq the bootloader is responsible for some basic initializations, such as enabling peripherals and configuring pinmuxes. The ps7_init_gpl.c file (and, optionally, ps7_init_gpl.h) contains the code for such diff --git a/boot/uboot/uboot.hash b/boot/uboot/uboot.hash index 7b71e2d948c..e992835582d 100644 --- a/boot/uboot/uboot.hash +++ b/boot/uboot/uboot.hash @@ -1,3 +1,3 @@ # Locally computed: -sha256 b4f032848e56cc8f213ad59f9132c084dbbb632bc29176d024e58220e0efdf4a u-boot-2025.10.tar.bz2 +sha256 78e8bfc382fe388f9b55aa1daf8c563522a037779b5d4c349d1415e381f1243e u-boot-2026.07.tar.bz2 sha256 8177f97513213526df2cf6184d8ff986c675afb514d4e68a404010521b880643 Licenses/gpl-2.0.txt diff --git a/boot/uboot/uboot.mk b/boot/uboot/uboot.mk index 7bd0937df24..5b3f46ac74a 100644 --- a/boot/uboot/uboot.mk +++ b/boot/uboot/uboot.mk @@ -8,9 +8,7 @@ UBOOT_VERSION = $(call qstrip,$(BR2_TARGET_UBOOT_VERSION)) UBOOT_BOARD_NAME = $(call qstrip,$(BR2_TARGET_UBOOT_BOARDNAME)) UBOOT_LICENSE = GPL-2.0+ -ifeq ($(BR2_TARGET_UBOOT_LATEST_VERSION),y) -UBOOT_LICENSE_FILES = Licenses/gpl-2.0.txt -endif +UBOOT_LICENSE_FILES = $(call qstrip,$(BR2_TARGET_UBOOT_LICENSE_FILES)) UBOOT_CPE_ID_VENDOR = denx UBOOT_CPE_ID_PRODUCT = u-boot @@ -206,6 +204,8 @@ ifeq ($(BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_ELF),y) UBOOT_MAKE_OPTS += TEE=$(BINARIES_DIR)/tee.elf else ifeq ($(BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_BIN),y) UBOOT_MAKE_OPTS += TEE=$(BINARIES_DIR)/tee.bin +else ifeq ($(BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN),y) +UBOOT_MAKE_OPTS += TEE=$(BINARIES_DIR)/tee-raw.bin endif endif @@ -257,6 +257,11 @@ UBOOT_MAKE_OPTS += TEE=$(BINARIES_DIR)/$(notdir $(ROCKCHIP_RKBIN_TEE_FILENAME)) endif endif +ifeq ($(BR2_TARGET_UBOOT_FORMAT_ADSP_LDR),y) +UBOOT_BINS += u-boot.ldr +UBOOT_DEPENDENCIES += host-adsp-ldr +endif + ifeq ($(BR2_TARGET_UBOOT_NEEDS_DTC),y) UBOOT_DEPENDENCIES += host-dtc UBOOT_MAKE_OPTS += DTC=$(HOST_DIR)/bin/dtc @@ -409,8 +414,12 @@ UBOOT_KCONFIG_OPTS = $(UBOOT_MAKE_OPTS) HOSTCC="$(HOSTCC_NOCCACHE)" HOSTLDFLAGS= ifeq ($(BR2_TARGET_UBOOT_DEFAULT_ENV_FILE_ENABLED),y) UBOOT_DEFAULT_ENV_FILE = $(call qstrip,$(BR2_TARGET_UBOOT_DEFAULT_ENV_FILE)) define UBOOT_KCONFIG_DEFAULT_ENV_FILE + # Pre-2025.10 $(call KCONFIG_SET_OPT,CONFIG_USE_DEFAULT_ENV_FILE,y) $(call KCONFIG_SET_OPT,CONFIG_DEFAULT_ENV_FILE,"$(shell readlink -f $(UBOOT_DEFAULT_ENV_FILE))") + # 2025.10 and later + $(call KCONFIG_SET_OPT,CONFIG_ENV_USE_DEFAULT_ENV_TEXT_FILE,y) + $(call KCONFIG_SET_OPT,CONFIG_ENV_DEFAULT_ENV_TEXT_FILE,"$(shell readlink -f $(UBOOT_DEFAULT_ENV_FILE))") endef endif endif # BR2_TARGET_UBOOT_BUILD_SYSTEM_LEGACY diff --git a/boot/xilinx-embeddedsw/Config.in b/boot/xilinx-embeddedsw/Config.in index 3826f2e18e3..03488a18ce1 100644 --- a/boot/xilinx-embeddedsw/Config.in +++ b/boot/xilinx-embeddedsw/Config.in @@ -1,5 +1,6 @@ comment "xilinx-embeddedsw needs a bare metal toolchain for tuple microblazeel-buildroot-elf" depends on BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH != "microblazeel-buildroot-elf" + depends on BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH != "microblazeel-buildroot-elf riscv32-buildroot-elf" depends on BR2_TOOLCHAIN_BARE_METAL_BUILDROOT menuconfig BR2_TARGET_XILINX_EMBEDDEDSW @@ -21,11 +22,33 @@ if BR2_TARGET_XILINX_EMBEDDEDSW config BR2_TARGET_XILINX_EMBEDDEDSW_VERSION string "xilinx-embeddedsw version" - default "xilinx_v2025.1" + default "xilinx_v2026.1" help Release version of Xilinx/embeddedsw. Must be xilinx_v2023.1 or newer. +config BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_ASUFW + bool "versal2 asufw" + depends on BR2_cortex_a78 + help + Build versal2 asufw application from Xilinx/embeddedsw + repo. + + https://github.com/Xilinx/embeddedsw/tree/master/lib/sw_apps/asufw + Version must be xilinx_v2025.2 or newer. + +config BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM + bool "versal2 plm" + depends on BR2_cortex_a78 + help + Build versal2 plm application from Xilinx/embeddedsw repo. + If selected, the xilinx-prebuilt package will not install + the plm.elf since it will come from the xilinx-embeddedsw + package. + + https://github.com/Xilinx/embeddedsw/tree/master/lib/sw_apps/versal_plm + Version must be xilinx_v2025.2 or newer. + config BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PLM bool "versal plm" depends on BR2_cortex_a72 diff --git a/boot/xilinx-embeddedsw/xilinx-embeddedsw.hash b/boot/xilinx-embeddedsw/xilinx-embeddedsw.hash deleted file mode 100644 index 0a42bab3142..00000000000 --- a/boot/xilinx-embeddedsw/xilinx-embeddedsw.hash +++ /dev/null @@ -1,5 +0,0 @@ -# Locally calculated -sha256 867b7c7652f754d1a3d6edfe76e53223670e2b4c7e4144d4db1604403d68f616 xilinx-embeddedsw-xilinx_v2025.1.tar.gz - -# Locally calculated -sha256 fbee87edd32cf203fdd7925f0bab15c98e2dc1e0d61e70867f1190dc4a605b12 license.txt diff --git a/boot/xilinx-embeddedsw/xilinx-embeddedsw.mk b/boot/xilinx-embeddedsw/xilinx-embeddedsw.mk index abcfee255d2..b19c420d32c 100644 --- a/boot/xilinx-embeddedsw/xilinx-embeddedsw.mk +++ b/boot/xilinx-embeddedsw/xilinx-embeddedsw.mk @@ -30,6 +30,39 @@ XILINX_EMBEDDEDSW_ZYNQMP_PMUFW_CFLAGS = \ "-Os -flto -ffat-lto-objects $(XILINX_EMBEDDEDSW_ZYNQMP_PMUFW_USER_CFLAGS)" XILINX_EMBEDDEDSW_CFLAGS = "-Os -flto -ffat-lto-objects" +XILINX_EMBEDDEDSW_ASUFW_CFLAGS = "-O2 -ffat-lto-objects -fno-lto" + +ifeq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_ASUFW),y) +define XILINX_EMBEDDEDSW_BUILD_VERSAL2_ASUFW + $(MAKE) -C $(@D)/lib/sw_apps/asufw/src \ + COMPILER=$(HOST_DIR)/bin/riscv32-buildroot-elf-gcc \ + ARCHIVER=$(HOST_DIR)/bin/riscv32-buildroot-elf-gcc-ar \ + CC=$(HOST_DIR)/bin/riscv32-buildroot-elf-gcc \ + CFLAGS=$(XILINX_EMBEDDEDSW_ASUFW_CFLAGS) +endef + +define XILINX_EMBEDDEDSW_INSTALL_VERSAL2_ASUFW + $(INSTALL) -D -m 0755 $(@D)/lib/sw_apps/asufw/src/asufw.elf \ + $(BINARIES_DIR)/asufw.elf +endef +endif # BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_ASUFW + +ifeq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM),y) +define XILINX_EMBEDDEDSW_BUILD_VERSAL2_PLM + $(MAKE) -C $(@D)/lib/sw_apps/versal_plm/src/versal_2ve_2vm \ + COMPILER=$(XILINX_EMBEDDEDSW_MICROBLAZE_CC) \ + ARCHIVER=$(XILINX_EMBEDDEDSW_MICROBLAZE_AR) \ + CC=$(XILINX_EMBEDDEDSW_MICROBLAZE_CC) \ + CFLAGS=$(XILINX_EMBEDDEDSW_CFLAGS) \ + XILPM_RUNTIME_LIB=SUBSYS +endef + +define XILINX_EMBEDDEDSW_INSTALL_VERSAL2_PLM + $(INSTALL) -D -m 0755 \ + $(@D)/lib/sw_apps/versal_plm/src/versal_2ve_2vm/plm.elf \ + $(BINARIES_DIR)/plm.elf +endef +endif # BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM ifeq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PLM),y) define XILINX_EMBEDDEDSW_BUILD_VERSAL_PLM @@ -77,12 +110,16 @@ endef endif # BR2_TARGET_XILINX_EMBEDDEDSW_ZYNQMP_PMUFW define XILINX_EMBEDDEDSW_BUILD_CMDS + $(XILINX_EMBEDDEDSW_BUILD_VERSAL2_ASUFW) + $(XILINX_EMBEDDEDSW_BUILD_VERSAL2_PLM) $(XILINX_EMBEDDEDSW_BUILD_VERSAL_PLM) $(XILINX_EMBEDDEDSW_BUILD_VERSAL_PSMFW) $(XILINX_EMBEDDEDSW_BUILD_ZYNQMP_PMUFW) endef define XILINX_EMBEDDEDSW_INSTALL_IMAGES_CMDS + $(XILINX_EMBEDDEDSW_INSTALL_VERSAL2_ASUFW) + $(XILINX_EMBEDDEDSW_INSTALL_VERSAL2_PLM) $(XILINX_EMBEDDEDSW_INSTALL_VERSAL_PLM) $(XILINX_EMBEDDEDSW_INSTALL_VERSAL_PSMFW) $(XILINX_EMBEDDEDSW_INSTALL_ZYNQMP_PMUFW) diff --git a/boot/xilinx-embeddedsw/xilinx_v2026.1/xilinx-embeddedsw.hash b/boot/xilinx-embeddedsw/xilinx_v2026.1/xilinx-embeddedsw.hash new file mode 100644 index 00000000000..35d443e965f --- /dev/null +++ b/boot/xilinx-embeddedsw/xilinx_v2026.1/xilinx-embeddedsw.hash @@ -0,0 +1,5 @@ +# Locally calculated +sha256 c6cce76eec367bda35c0c02fea18b0cb913b57a30ae809aa803e4c8c64e6991f xilinx-embeddedsw-xilinx_v2026.1.tar.gz + +# Locally calculated +sha256 bfcf86c2e567dd91b311be961ef0a144934e1c79f8b9c4518d0a65e44006ea5d license.txt diff --git a/boot/xilinx-prebuilt/Config.in b/boot/xilinx-prebuilt/Config.in index b218458ba58..ff129ed5b52 100644 --- a/boot/xilinx-prebuilt/Config.in +++ b/boot/xilinx-prebuilt/Config.in @@ -17,7 +17,7 @@ if BR2_TARGET_XILINX_PREBUILT config BR2_TARGET_XILINX_PREBUILT_VERSION string "prebuilt version" - default "xilinx_v2025.1_update1" + default "xilinx_v2026.1" help Release version of Xilinx firmware. Must be xilinx_v2023.1 or newer. @@ -26,6 +26,7 @@ choice bool "family variant" default BR2_TARGET_XILINX_PREBUILT_VERSAL if BR2_PACKAGE_VERSAL_FIRMWARE # legacy default BR2_TARGET_XILINX_PREBUILT_VERSAL if BR2_cortex_a72 + default BR2_TARGET_XILINX_PREBUILT_VERSAL2 if BR2_cortex_a78 default BR2_TARGET_XILINX_PREBUILT_ZYNQMP config BR2_TARGET_XILINX_PREBUILT_ZYNQMP @@ -40,14 +41,21 @@ config BR2_TARGET_XILINX_PREBUILT_VERSAL bool "versal" depends on BR2_cortex_a72 +config BR2_TARGET_XILINX_PREBUILT_VERSAL2 + bool "versal2" + depends on BR2_cortex_a78 + help + Version must be xilinx_v2025.2 or newer. + endchoice config BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA bool "download a prebuilt Versal XSA" - depends on BR2_TARGET_XILINX_PREBUILT_VERSAL + depends on BR2_TARGET_XILINX_PREBUILT_VERSAL || BR2_TARGET_XILINX_PREBUILT_VERSAL2 help The Xilinx Support Archive (XSA) provides custom Xilinx firmware files generated by the AMD Vivado Design Suite. + This option applies to either versal or versal2. https://docs.amd.com/r/en-US/ug1400-vitis-embedded/Creating-a-Hardware-Design-XSA-File @@ -60,32 +68,37 @@ config BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA_LOCATION file. This URL can use any protocol recognized by Buildroot, like http://, ftp://, file:// or scp://. - When pointing to a local XSA using file://, you may want to - use a make variable like $(TOPDIR) to reference the root of - the Buildroot tree. + When pointing to a local XSA using file:// or simply the + local path, you may want to use a make variable like + $(TOPDIR) to reference the root of the Buildroot tree. + + This option applies to either versal or versal2. endif # BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA config BR2_TARGET_XILINX_PREBUILT_VERSAL_PLD_PDI bool "install versal pld.pdi" - depends on BR2_TARGET_XILINX_PREBUILT_VERSAL + depends on BR2_TARGET_XILINX_PREBUILT_VERSAL || BR2_TARGET_XILINX_PREBUILT_VERSAL2 help When using the Versal Segmented Configuration, there is a pld.pdi file containing the FPGA bitstream which can be loaded at run-time. By enabling this option, the pld.pdi will be installed to the target /lib/firmware/xilinx dir. + This option applies to either versal or versal2. config BR2_TARGET_XILINX_PREBUILT_FAMILY string default "zynqmp" if BR2_TARGET_XILINX_PREBUILT_ZYNQMP default "kria" if BR2_TARGET_XILINX_PREBUILT_KRIA default "versal" if BR2_TARGET_XILINX_PREBUILT_VERSAL + default "versal_2ve_2vm" if BR2_TARGET_XILINX_PREBUILT_VERSAL2 config BR2_TARGET_XILINX_PREBUILT_BOARD string "board name" default "zcu102" if BR2_TARGET_XILINX_PREBUILT_ZYNQMP default "kr260" if BR2_TARGET_XILINX_PREBUILT_KRIA default "vck190" if BR2_TARGET_XILINX_PREBUILT_VERSAL + default "vek385" if BR2_TARGET_XILINX_PREBUILT_VERSAL2 help Name of Xilinx target board. Used for installing the appropriate firmware. diff --git a/boot/xilinx-prebuilt/xilinx-prebuilt.hash b/boot/xilinx-prebuilt/xilinx-prebuilt.hash deleted file mode 100644 index 6879b88d839..00000000000 --- a/boot/xilinx-prebuilt/xilinx-prebuilt.hash +++ /dev/null @@ -1,5 +0,0 @@ -# Locally calculated -sha256 48fd698a16f79b9a828c35ca5b2b50fe832149d1a2938c94c0bb6a2e249b0bed xilinx-prebuilt-xilinx_v2025.1_update1.tar.gz - -# Locally calculated -sha256 7b2074b607264a07347e1a7ef0323229585942793469f34b2cf9628f7623e05f LICENSE diff --git a/boot/xilinx-prebuilt/xilinx-prebuilt.mk b/boot/xilinx-prebuilt/xilinx-prebuilt.mk index 95b656cdde8..74334449242 100644 --- a/boot/xilinx-prebuilt/xilinx-prebuilt.mk +++ b/boot/xilinx-prebuilt/xilinx-prebuilt.mk @@ -10,6 +10,9 @@ ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA),y) XILINX_PREBUILT_FILE = $(call qstrip,$(BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA_LOCATION)) XILINX_PREBUILT_SITE = $(patsubst %/,%,$(dir $(XILINX_PREBUILT_FILE))) XILINX_PREBUILT_SOURCE = $(notdir $(XILINX_PREBUILT_FILE)) +ifeq ($(findstring ://,$(XILINX_PREBUILT_FILE)),) +XILINX_PREBUILT_SITE_METHOD = file +endif define XILINX_PREBUILT_EXTRACT_CMDS $(UNZIP) $(XILINX_PREBUILT_DL_DIR)/$(XILINX_PREBUILT_SOURCE) -d $(@D) endef @@ -26,16 +29,11 @@ XILINX_PREBUILT_BOARD = $(call qstrip,$(BR2_TARGET_XILINX_PREBUILT_BOARD)) XILINX_PREBUILT_BOARD_DIR = $(@D)/$(XILINX_PREBUILT_BOARD)-$(XILINX_PREBUILT_FAMILY) -ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL),y) +# Common Files for All Versal Families +ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL)$(BR2_TARGET_XILINX_PREBUILT_VERSAL2),y) ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA),y) # Supports either plm.elf or plmfw.elf filenames XILINX_PREBUILT_PLM = $(@D)/pdi_files/gen_files/plm*.elf -# Unlike the psmfw.elf file for Xilinx development boards, -# AMD Vivado Design Suite currently generates a file named psm_fw.elf. -# Future versions of AMD Vivado will generate a file named psmfw.elf, -# so to support current and future AMD Vivado versions, the filename -# psm*fw.elf is used. -XILINX_PREBUILT_PSMFW = $(@D)/pdi_files/static_files/psm*fw.elf # We need the *.pdi glob, because the file has different names for the # different boards, and it has to be named boot.pdi when installed. # If Segmented Configuration is used, there will be two pdi files and we need @@ -63,7 +61,6 @@ endif # BR2_TARGET_XILINX_PREBUILT_VERSAL_PLD_PDI else # BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA # Supports either plm.elf or plmfw.elf filenames XILINX_PREBUILT_PLM = $(XILINX_PREBUILT_BOARD_DIR)/plm*.elf -XILINX_PREBUILT_PSMFW = $(XILINX_PREBUILT_BOARD_DIR)/psmfw.elf # We need the *.pdi glob, because the file has different names for the # different boards, and it has to be named boot.pdi when installed. # If Segmented Configuration is used, there will be two pdi files and we need @@ -91,11 +88,27 @@ endif # BR2_TARGET_XILINX_PREBUILT_VERSAL_PLD_PDI endif # BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA ifneq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PLM),y) +ifneq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM),y) define XILINX_PREBUILT_INSTALL_VERSAL_PLM $(INSTALL) -D -m 0755 $(XILINX_PREBUILT_PLM) \ $(BINARIES_DIR)/plm.elf endef +endif # !BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM endif # !BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PLM +endif # BR2_TARGET_XILINX_PREBUILT_VERSAL | BR2_TARGET_XILINX_PREBUILT_VERSAL2 + +# Files specific to Versal Gen1 +ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL),y) +ifeq ($(BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA),y) +# Unlike the psmfw.elf file for Xilinx development boards, +# AMD Vivado Design Suite currently generates a file named psm_fw.elf. +# Future versions of AMD Vivado will generate a file named psmfw.elf, +# so to support current and future AMD Vivado versions, the filename +# psm*fw.elf is used. +XILINX_PREBUILT_PSMFW = $(@D)/pdi_files/static_files/psm*fw.elf +else # BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA +XILINX_PREBUILT_PSMFW = $(XILINX_PREBUILT_BOARD_DIR)/psmfw.elf +endif # BR2_TARGET_XILINX_PREBUILT_VERSAL_XSA ifneq ($(BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PSMFW),y) define XILINX_PREBUILT_INSTALL_VERSAL_PSMFW diff --git a/boot/xilinx-prebuilt/xilinx_v2026.1/xilinx-prebuilt.hash b/boot/xilinx-prebuilt/xilinx_v2026.1/xilinx-prebuilt.hash new file mode 100644 index 00000000000..4e82561cb13 --- /dev/null +++ b/boot/xilinx-prebuilt/xilinx_v2026.1/xilinx-prebuilt.hash @@ -0,0 +1,5 @@ +# Locally calculated +sha256 6e02391f0dae67a46efc260729901da9c110b956880d0ff2617701f8b6cf0e1c xilinx-prebuilt-xilinx_v2026.1.tar.gz + +# Locally calculated +sha256 e4a8315687fbd55fc6bf0965c968bd95c8b73b8a957bb10b2ba618d5390b0e3a LICENSE diff --git a/configs/aarch64_efi_defconfig b/configs/aarch64_efi_defconfig index 3aa649cf9c3..78292c0cc43 100644 --- a/configs/aarch64_efi_defconfig +++ b/configs/aarch64_efi_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_11=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/aarch64-efi/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y @@ -7,8 +9,9 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/aarch64-efi/post-image.sh support/scripts/ge BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/aarch64-efi/genimage-efi.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.11.11" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.14" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y +BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/aarch64-efi/linux-pmem-netboot.fragment" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_PYTHON3=y BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/acmesystems_acqua_a5_256mb_defconfig b/configs/acmesystems_acqua_a5_256mb_defconfig index 9e6d35a859c..3eb805b5306 100644 --- a/configs/acmesystems_acqua_a5_256mb_defconfig +++ b/configs/acmesystems_acqua_a5_256mb_defconfig @@ -2,7 +2,8 @@ BR2_arm=y BR2_cortex_a5=y BR2_ARM_ENABLE_VFP=y BR2_ARM_INSTRUCTIONS_THUMB2=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/acmesystems/acqua-a5/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -10,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/acqua-a5/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.41" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.40" BR2_LINUX_KERNEL_DEFCONFIG="sama5" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_CUSTOM_DTS_DIR="board/acmesystems/acqua-a5/dts" @@ -22,6 +23,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="acqua-256m" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/acmesystems_acqua_a5_512mb_defconfig b/configs/acmesystems_acqua_a5_512mb_defconfig index 8e6d9774da1..0664a268b02 100644 --- a/configs/acmesystems_acqua_a5_512mb_defconfig +++ b/configs/acmesystems_acqua_a5_512mb_defconfig @@ -2,7 +2,8 @@ BR2_arm=y BR2_cortex_a5=y BR2_ARM_ENABLE_VFP=y BR2_ARM_INSTRUCTIONS_THUMB2=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/acmesystems/acqua-a5/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -10,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/acqua-a5/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.41" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.40" BR2_LINUX_KERNEL_DEFCONFIG="sama5" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_CUSTOM_DTS_DIR="board/acmesystems/acqua-a5/dts" @@ -22,6 +23,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="acqua-512m" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/acmesystems_aria_g25_128mb_defconfig b/configs/acmesystems_aria_g25_128mb_defconfig deleted file mode 100644 index 0aff8f92e0d..00000000000 --- a/configs/acmesystems_aria_g25_128mb_defconfig +++ /dev/null @@ -1,26 +0,0 @@ -BR2_arm=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_19=y -BR2_GLOBAL_PATCH_DIR="board/acmesystems/aria-g25/patches" -BR2_DOWNLOAD_FORCE_CHECK_HASHES=y -BR2_TARGET_GENERIC_ISSUE="Welcome to Aria-G25 Buildroot" -BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_TARGET_GENERIC_GETTY_BAUDRATE_115200=y -BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" -BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/aria-g25/genimage.cfg" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.19.315" -BR2_LINUX_KERNEL_DEFCONFIG="at91_dt" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="at91-ariag25" -BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_AT91BOOTSTRAP3=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" -BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="aria-128m" -BR2_PACKAGE_HOST_DOSFSTOOLS=y -BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/acmesystems_aria_g25_256mb_defconfig b/configs/acmesystems_aria_g25_256mb_defconfig deleted file mode 100644 index e75ca9cf346..00000000000 --- a/configs/acmesystems_aria_g25_256mb_defconfig +++ /dev/null @@ -1,26 +0,0 @@ -BR2_arm=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_19=y -BR2_GLOBAL_PATCH_DIR="board/acmesystems/aria-g25/patches" -BR2_DOWNLOAD_FORCE_CHECK_HASHES=y -BR2_TARGET_GENERIC_ISSUE="Welcome to Aria-G25 Buildroot" -BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_TARGET_GENERIC_GETTY_BAUDRATE_115200=y -BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" -BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/aria-g25/genimage.cfg" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.19.315" -BR2_LINUX_KERNEL_DEFCONFIG="at91_dt" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="at91-ariag25" -BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_AT91BOOTSTRAP3=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" -BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="aria-256m" -BR2_PACKAGE_HOST_DOSFSTOOLS=y -BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/acmesystems_arietta_g25_128mb_defconfig b/configs/acmesystems_arietta_g25_128mb_defconfig deleted file mode 100644 index 788818c118a..00000000000 --- a/configs/acmesystems_arietta_g25_128mb_defconfig +++ /dev/null @@ -1,26 +0,0 @@ -BR2_arm=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_19=y -BR2_GLOBAL_PATCH_DIR="board/acmesystems/arietta-g25/patches" -BR2_DOWNLOAD_FORCE_CHECK_HASHES=y -BR2_TARGET_GENERIC_ISSUE="Welcome to Arietta-G25 Buildroot" -BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_TARGET_GENERIC_GETTY_BAUDRATE_115200=y -BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" -BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/arietta-g25/genimage.cfg" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.19.315" -BR2_LINUX_KERNEL_DEFCONFIG="at91_dt" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="at91-ariettag25" -BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_AT91BOOTSTRAP3=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" -BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="arietta-128m" -BR2_PACKAGE_HOST_DOSFSTOOLS=y -BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/acmesystems_arietta_g25_256mb_defconfig b/configs/acmesystems_arietta_g25_256mb_defconfig deleted file mode 100644 index c483ae4c573..00000000000 --- a/configs/acmesystems_arietta_g25_256mb_defconfig +++ /dev/null @@ -1,26 +0,0 @@ -BR2_arm=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_19=y -BR2_GLOBAL_PATCH_DIR="board/acmesystems/arietta-g25/patches" -BR2_DOWNLOAD_FORCE_CHECK_HASHES=y -BR2_TARGET_GENERIC_ISSUE="Welcome to Arietta-G25 Buildroot" -BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_TARGET_GENERIC_GETTY_BAUDRATE_115200=y -BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" -BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/acmesystems/arietta-g25/genimage.cfg" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.19.315" -BR2_LINUX_KERNEL_DEFCONFIG="at91_dt" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="at91-ariettag25" -BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_AT91BOOTSTRAP3=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" -BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" -BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="arietta-256m" -BR2_PACKAGE_HOST_DOSFSTOOLS=y -BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/am574x_idk_defconfig b/configs/am574x_idk_defconfig index 5d3ec12ad63..3ec8829ff75 100644 --- a/configs/am574x_idk_defconfig +++ b/configs/am574x_idk_defconfig @@ -1,26 +1,33 @@ BR2_arm=y BR2_cortex_a15=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/ti/am574x-idk/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/am574x-idk/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/ti/am574x-idk/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.14" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.18" BR2_LINUX_KERNEL_DEFCONFIG="multi_v7" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/omap/am574x-idk" +BR2_LINUX_KERNEL_DTB_KEEP_DIRNAME=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y +BR2_TARGET_ROOTFS_EXT2_SIZE="256M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="am57xx_evm" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y # BR2_TARGET_UBOOT_FORMAT_BIN is not set BR2_TARGET_UBOOT_FORMAT_IMG=y BR2_TARGET_UBOOT_SPL=y diff --git a/configs/amarula_vyasa_rk3288_defconfig b/configs/amarula_vyasa_rk3288_defconfig index f59d78a5b91..cf99702d0c9 100644 --- a/configs/amarula_vyasa_rk3288_defconfig +++ b/configs/amarula_vyasa_rk3288_defconfig @@ -1,7 +1,7 @@ BR2_arm=y BR2_cortex_a17=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/amarula/vyasa/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="vyasa-rk3288" @@ -11,13 +11,13 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/amarula/vyasa/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.91" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="multi_v7" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/amarula/vyasa/linux_gmac.fragment" BR2_LINUX_KERNEL_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x02000000" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="rk3288-vyasa" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="rockchip/rk3288-vyasa" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -25,11 +25,12 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="512M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2022.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="vyasa-rk3288" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_DTB_IMG=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="spl/u-boot-spl-dtb.bin tpl/u-boot-tpl.bin" diff --git a/configs/andes_ae350_45_defconfig b/configs/andes_ae350_45_defconfig index 7b5a6f73c6c..80b780b6e09 100644 --- a/configs/andes_ae350_45_defconfig +++ b/configs/andes_ae350_45_defconfig @@ -1,7 +1,9 @@ BR2_riscv=y BR2_RISCV_ISA_RVC=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_0=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_RISCV64_LP64D_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/andes/ae350/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_ROOTFS_OVERLAY="board/andes/ae350/rootfs_overlay" BR2_ROOTFS_POST_BUILD_SCRIPT="board/andes/ae350/post-build.sh" @@ -9,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/andes/ae350/genimage_sdcard.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,andestech,linux,v6.0.y_ae350-ax45mp)/linux-v6.0.y_ae350-ax45mp.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,andestech,linux,v6.0.y-andes)/linux-v6.0.y-andes.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="ae350_ax45mp" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="andes/ae350_ax45mp" @@ -17,18 +19,19 @@ BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_OPENSBI=y -BR2_TARGET_OPENSBI_CUSTOM_TARBALL=y -BR2_TARGET_OPENSBI_CUSTOM_TARBALL_LOCATION="$(call github,riscv,opensbi,22f38ee6c658a660083aa45c4ec6c72f66a17260)/opensbi-22f38ee6c658a660083aa45c4ec6c72f66a17260.tar.gz" -BR2_TARGET_OPENSBI_PLAT="andes/ae350" +BR2_TARGET_OPENSBI_CUSTOM_VERSION=y +BR2_TARGET_OPENSBI_CUSTOM_VERSION_VALUE="1.6" +BR2_TARGET_OPENSBI_PLAT="generic" # BR2_TARGET_OPENSBI_INSTALL_JUMP_IMG is not set BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,u-boot,u-boot,a5dfa3b8a0f7ad555495bad1386613d2de4ba619)/u-boot-a5dfa3b8a0f7ad555495bad1386613d2de4ba619.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_VERSION=y +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ae350_rv64_spl_xip" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/andes/ae350/uboot.config.fragment" BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_NEEDS_OPENSBI=y # BR2_TARGET_UBOOT_FORMAT_BIN is not set BR2_TARGET_UBOOT_FORMAT_CUSTOM=y diff --git a/configs/arcturus_ucp1020_defconfig b/configs/arcturus_ucp1020_defconfig index 8e489f7f192..c0423032bc5 100644 --- a/configs/arcturus_ucp1020_defconfig +++ b/configs/arcturus_ucp1020_defconfig @@ -1,6 +1,8 @@ BR2_powerpc=y BR2_powerpc_8548=y BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_4=y +BR2_GLOBAL_PATCH_DIR="board/arcturus/ppc-ucp1020/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="UCP1020" BR2_TARGET_GENERIC_ISSUE="Welcome to Arcturus uCP1020 System on Module" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -8,6 +10,7 @@ BR2_SYSTEM_DHCP="eth0" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,ArcturusNetworks,uCP1020-kernel,v20190618)/linux-v20190618.tar.gz" +BR2_LINUX_KERNEL_LICENSE_FILES="COPYING" BR2_LINUX_KERNEL_DEFCONFIG="ucp1020" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ucp1020" diff --git a/configs/arm_fvp_ebbr_defconfig b/configs/arm_fvp_ebbr_defconfig index 5aa17278895..665f59c130c 100644 --- a/configs/arm_fvp_ebbr_defconfig +++ b/configs/arm_fvp_ebbr_defconfig @@ -1,12 +1,16 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/arm/fvp-ebbr/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y +BR2_SYSTEM_DHCP="eth0" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/arm/fvp-ebbr/post-image.sh support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/arm/fvp-ebbr/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.10.12" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_PYTHON3=y @@ -17,7 +21,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.11" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.14.0" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="fvp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_DTS_PATH="board/arm/fvp-ebbr/fvp-ebbr.dts" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y @@ -26,17 +30,21 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_UBOOT_AS_BL33=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_ADDITIONAL_VARIABLES="ARM_TSP_RAM_LOCATION=tdram FVP_DT_PREFIX=fvp-ebbr" BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_DTC=y BR2_TARGET_GRUB2=y +BR2_TARGET_GRUB2_BUILTIN_MODULES_EFI="boot efi_gop efifwsetup efinet efitextmode ext2 fat halt help linux lsefi lsefimmap lsefisystab minicmd normal part_gpt part_msdos reboot squash4" BR2_TARGET_OPTEE_OS=y -BR2_TARGET_OPTEE_OS_NEEDS_DTC=y +BR2_TARGET_OPTEE_OS_CUSTOM_VERSION=y +BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE="4.8.0" +BR2_TARGET_OPTEE_OS_NEEDS_PYTHON_CRYPTOGRAPHY=y BR2_TARGET_OPTEE_OS_PLATFORM="vexpress-fvp" -BR2_TARGET_OPTEE_OS_ADDITIONAL_VARIABLES="CFG_ARM_GICV3=y" +BR2_TARGET_OPTEE_OS_ADDITIONAL_VARIABLES="CFG_ARM_GICV3=y CFG_TEE_CORE_LOG_LEVEL=2 CFG_TEE_TA_LOG_LEVEL=2" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="vexpress_fvp" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/arm/fvp-ebbr/u-boot.fragment" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/asus_tinker_rk3288_defconfig b/configs/asus_tinker_rk3288_defconfig index f3a2c4d71d0..8326405536b 100644 --- a/configs/asus_tinker_rk3288_defconfig +++ b/configs/asus_tinker_rk3288_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a17=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/asus/tinker/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="tinker-rk3288" BR2_TARGET_GENERIC_ISSUE="Welcome to TINKER RK3288!" BR2_ROOTFS_POST_BUILD_SCRIPT="board/asus/tinker/post-build.sh" @@ -9,10 +11,10 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/asus/tinker/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.44" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="multi_v7" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="rk3288-tinker" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="rockchip/rk3288-tinker" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -20,11 +22,12 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="512M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="tinker-rk3288" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_DTB_IMG=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="spl/u-boot-spl-dtb.bin tpl/u-boot-tpl.bin" diff --git a/configs/at91sam9x5ek_defconfig b/configs/at91sam9x5ek_defconfig index 775fcceae37..246d34edef4 100644 --- a/configs/at91sam9x5ek_defconfig +++ b/configs/at91sam9x5ek_defconfig @@ -16,6 +16,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="at91sam9x5eknf_uboot" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y diff --git a/configs/at91sam9x5ek_dev_defconfig b/configs/at91sam9x5ek_dev_defconfig index 0f292167361..36441f38e73 100644 --- a/configs/at91sam9x5ek_dev_defconfig +++ b/configs/at91sam9x5ek_dev_defconfig @@ -67,6 +67,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="at91sam9x5eknf_uboot" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y diff --git a/configs/at91sam9x5ek_mmc_defconfig b/configs/at91sam9x5ek_mmc_defconfig index a6fd7e05fcb..4c2a6255bca 100644 --- a/configs/at91sam9x5ek_mmc_defconfig +++ b/configs/at91sam9x5ek_mmc_defconfig @@ -17,6 +17,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="at91sam9x5eksd_uboot" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y diff --git a/configs/at91sam9x5ek_mmc_dev_defconfig b/configs/at91sam9x5ek_mmc_dev_defconfig index 344c6c2eae4..908907acda5 100644 --- a/configs/at91sam9x5ek_mmc_dev_defconfig +++ b/configs/at91sam9x5ek_mmc_dev_defconfig @@ -69,6 +69,7 @@ BR2_TARGET_AT91BOOTSTRAP3=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_GIT=y BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_URL="https://github.com/linux4sam/at91bootstrap.git" BR2_TARGET_AT91BOOTSTRAP3_CUSTOM_REPO_VERSION="v3.10.3" +BR2_TARGET_AT91BOOTSTRAP3_LICENSE_FILES="" BR2_TARGET_AT91BOOTSTRAP3_DEFCONFIG="at91sam9x5eksd_uboot" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y diff --git a/configs/bananapi_m2_berry_defconfig b/configs/bananapi_m2_berry_defconfig index 200257ac0d5..35909fbb99d 100644 --- a/configs/bananapi_m2_berry_defconfig +++ b/configs/bananapi_m2_berry_defconfig @@ -1,16 +1,18 @@ BR2_arm=y BR2_cortex_a7=y -BR2_TOOLCHAIN_EXTERNAL=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/bananapi/bananapi-m2-berry/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_ISSUE="Welcome to Bananapi M2 Berry" BR2_ROOTFS_POST_BUILD_SCRIPT="board/bananapi/bananapi-m2-berry/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/bananapi/bananapi-m2-berry/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.57" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun8i-v40-bananapi-m2-berry" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-v40-bananapi-m2-berry" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -18,11 +20,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="bananapi_m2_berry" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_CUSTOM=y BR2_TARGET_UBOOT_FORMAT_CUSTOM_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y diff --git a/configs/bananapi_m2_ultra_defconfig b/configs/bananapi_m2_ultra_defconfig index b67a9d3f5da..190481837e1 100644 --- a/configs/bananapi_m2_ultra_defconfig +++ b/configs/bananapi_m2_ultra_defconfig @@ -1,16 +1,18 @@ BR2_arm=y BR2_cortex_a7=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/bananapi/bananapi-m2-ultra/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_ISSUE="Welcome to Bananapi M2 Ultra" BR2_ROOTFS_POST_BUILD_SCRIPT="board/bananapi/bananapi-m2-ultra/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/bananapi/bananapi-m2-ultra/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.57" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun8i-r40-bananapi-m2-ultra" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-r40-bananapi-m2-ultra" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -18,11 +20,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="bananapi_m2_berry" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_CUSTOM=y BR2_TARGET_UBOOT_FORMAT_CUSTOM_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y diff --git a/configs/beaglebone_defconfig b/configs/beaglebone_defconfig index 86bf6bce9ae..1bae3e3bf8d 100644 --- a/configs/beaglebone_defconfig +++ b/configs/beaglebone_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a8=y BR2_ARM_FPU_VFPV3=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/beagleboard/beaglebone/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_MDEV=y @@ -9,14 +11,15 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/beagleboard/beaglebone/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/beagleboard/beaglebone/genimage.cfg" BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,beagleboard,linux,6.12.34-ti-arm32-r12)/linux-6.12.34-ti-arm32-r12.tar.gz" -BR2_LINUX_KERNEL_DEFCONFIG="bb.org" +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.38" +BR2_LINUX_KERNEL_DEFCONFIG="omap2plus" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/omap/am335x-evm ti/omap/am335x-bone ti/omap/am335x-boneblack ti/omap/am335x-bonegreen ti/omap/am335x-evmsk ti/omap/am335x-boneblue ti/omap/am335x-boneblack-wireless ti/omap/am335x-bonegreen-wireless" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/omap/am335x-evm ti/omap/am335x-bone ti/omap/am335x-boneblack ti/omap/am335x-bonegreen ti/omap/am335x-evmsk ti/omap/am335x-boneblue ti/omap/am335x-boneblack-wireless ti/omap/am335x-bonegreen-wireless ti/omap/am335x-bonegreen-eco" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_PACKAGE_BUSYBOX_SHOW_OTHERS=y BR2_PACKAGE_XZ=y +BR2_PACKAGE_AM33X_CM3=y BR2_PACKAGE_KMOD=y BR2_PACKAGE_KMOD_TOOLS=y BR2_TARGET_ROOTFS_EXT2=y @@ -24,7 +27,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="am335x_evm" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/beagleboneai64_defconfig b/configs/beagleboneai64_defconfig index 0429dd63e17..b41ea09f3e4 100644 --- a/configs/beagleboneai64_defconfig +++ b/configs/beagleboneai64_defconfig @@ -1,6 +1,8 @@ BR2_aarch64=y BR2_cortex_a72=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/beagleboard/beagleboneai64/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -9,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/beagleboard/beagleboneai64/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.30" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.16" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/k3-j721e-beagleboneai64" @@ -18,8 +20,7 @@ BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="256M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.10" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="k3" BR2_TARGET_ARM_TRUSTED_FIRMWARE_TARGET_BOARD="generic" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y @@ -27,22 +28,23 @@ BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_PLATFORM="k3-j721e" BR2_TARGET_TI_K3_R5_LOADER=y BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION=y -BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2024.04" +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_TI_K3_R5_LOADER_BOARD_DEFCONFIG="j721e_beagleboneai64_r5" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="j721e_beagleboneai64_a72" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN=y BR2_TARGET_UBOOT_USE_BINMAN=y # BR2_TARGET_UBOOT_FORMAT_BIN is not set BR2_TARGET_UBOOT_FORMAT_IMG=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="tispl.bin_unsigned" -BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="TEE=$(BINARIES_DIR)/tee-pager_v2.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/beagleplay_defconfig b/configs/beagleplay_defconfig index 42aa2fbd6ed..90212bda447 100644 --- a/configs/beagleplay_defconfig +++ b/configs/beagleplay_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/beagleboard/beagleplay/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/beagleboard/beagleplay/post-build.sh" @@ -7,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT_ARGS="-c board/beagleboard/beagleplay/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.10" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.16" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/k3-am625-beagleplay" @@ -22,8 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="256M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.11" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="k3" BR2_TARGET_ARM_TRUSTED_FIRMWARE_TARGET_BOARD="lite" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y @@ -31,17 +32,19 @@ BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_PLATFORM="k3-am62x" BR2_TARGET_TI_K3_R5_LOADER=y BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION=y -BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_TI_K3_R5_LOADER_BOARD_DEFCONFIG="am62x_beagleplay_r5" BR2_TARGET_TI_K3_R5_LOADER_TIBOOT3_BIN="tiboot3-am62x-gp-evm.bin" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="am62x_beagleplay_a53" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN=y BR2_TARGET_UBOOT_USE_BINMAN=y # BR2_TARGET_UBOOT_FORMAT_BIN is not set BR2_TARGET_UBOOT_FORMAT_IMG=y @@ -49,7 +52,6 @@ BR2_TARGET_UBOOT_FORMAT_CUSTOM=y BR2_TARGET_UBOOT_FORMAT_CUSTOM_NAME="u-boot.img_unsigned" BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="tispl.bin_unsigned" -BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="TEE=$(BINARIES_DIR)/tee-pager_v2.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/beaglev_fire_defconfig b/configs/beaglev_fire_defconfig index bfaa8208e9a..a5cda23242f 100644 --- a/configs/beaglev_fire_defconfig +++ b/configs/beaglev_fire_defconfig @@ -1,6 +1,6 @@ BR2_riscv=y BR2_RISCV_ISA_RVC=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y BR2_GLOBAL_PATCH_DIR="board/beagleboard/beaglev_fire/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +8,7 @@ BR2_ROOTFS_OVERLAY="board/beagleboard/beaglev_fire/rootfs-overlay/" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/beagleboard/beaglev_fire/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,linux,linux4microchip+fpga-2024.09.1)/linux-linux4microchip+fpga-2024.09.1.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,linux,linux4microchip+fpga-2025.10)/linux-linux4microchip+fpga-2025.10.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="mpfs" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="microchip/mpfs-beaglev-fire" @@ -19,7 +19,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,u-boot-mchp,linux4microchip+fpga-2024.09)/uboot-linux4microchip+fpga-2024.09.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,u-boot-mchp,linux4microchip+fpga-2025.10)/uboot-linux4microchip+fpga-2025.10.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="beaglev_fire" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/beagleboard/beaglev_fire/uboot-fragment.config" BR2_TARGET_UBOOT_NEEDS_DTC=y diff --git a/configs/beagley_ai_defconfig b/configs/beagley_ai_defconfig index 67516d86814..d0a3bf58c45 100644 --- a/configs/beagley_ai_defconfig +++ b/configs/beagley_ai_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/beagleboard/beagley-ai/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.15.6" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.16" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/k3-am67a-beagley-ai" @@ -28,22 +28,23 @@ BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_PLATFORM="k3-am62x" BR2_TARGET_TI_K3_R5_LOADER=y BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION=y -BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_TI_K3_R5_LOADER_BOARD_DEFCONFIG="am67a_beagley_ai_r5" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="am67a_beagley_ai_a53" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN=y BR2_TARGET_UBOOT_USE_BINMAN=y # BR2_TARGET_UBOOT_FORMAT_BIN is not set BR2_TARGET_UBOOT_FORMAT_IMG=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="tispl.bin" -BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="TEE=$(BINARIES_DIR)/tee-pager_v2.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/ci20_defconfig b/configs/ci20_defconfig index bb4863cb1dd..4fd7d48c388 100644 --- a/configs/ci20_defconfig +++ b/configs/ci20_defconfig @@ -1,14 +1,14 @@ BR2_mipsel=y BR2_mips_xburst=y # BR2_MIPS_SOFT_FLOAT is not set -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS4" BR2_SYSTEM_DHCP="eth0" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/ci20/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.81" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.38" BR2_LINUX_KERNEL_DEFCONFIG="ci20" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y @@ -16,7 +16,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ci20_mmc" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_FORMAT_IMG=y diff --git a/configs/cubieboard1_defconfig b/configs/cubieboard1_defconfig index 7948ab3b194..217303dc475 100644 --- a/configs/cubieboard1_defconfig +++ b/configs/cubieboard1_defconfig @@ -1,6 +1,8 @@ BR2_arm=y BR2_cortex_a8=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/cubietech/cubieboard1/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_OVERLAY="board/cubietech/cubieboard1/rootfs_overlay" @@ -8,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/cubietech/cubieboard1/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.52" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="7.1.3" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun4i-a10-cubieboard" @@ -18,7 +20,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="Cubieboard" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/cubieboard2_defconfig b/configs/cubieboard2_defconfig index 43ef33e3296..a0d6d968c4c 100644 --- a/configs/cubieboard2_defconfig +++ b/configs/cubieboard2_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/cubietech/cubieboard2/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_OVERLAY="board/cubietech/cubieboard2/rootfs_overlay" @@ -9,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/cubietech/cubieboard2/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.52" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="7.1.3" BR2_LINUX_KERNEL_DEFCONFIG="multi_v7" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun7i-a20-cubieboard2" @@ -19,7 +21,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="Cubieboard2" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/freescale_imx6ullevk_defconfig b/configs/freescale_imx6ullevk_defconfig index 3d9e0869ac8..99bbff605b6 100644 --- a/configs/freescale_imx6ullevk_defconfig +++ b/configs/freescale_imx6ullevk_defconfig @@ -8,7 +8,7 @@ BR2_TARGET_GENERIC_GETTY_PORT="ttymxc0" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/freescale/common/imx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,linux-imx,lf-6.12.3-1.0.0)/linux-imx-lf-6.12.3-1.0.0.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,linux-imx,lf-6.12.49-2.2.0)/linux-imx-lf-6.12.49-2.2.0.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="imx_v7" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/freescale/imx6ullevk/linux_sdma.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -22,9 +22,10 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BOARDNAME="mx6ull_14x14_evk" BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,uboot-imx,lf-6.12.3-1.0.0)/uboot-imx-lf-6.12.3-1.0.0.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,uboot-imx,lf-6.12.49-2.2.0)/uboot-imx-lf-6.12.49-2.2.0.tar.gz" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_IMX=y BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/freescale_imx91frdm_defconfig b/configs/freescale_imx91frdm_defconfig index 8a233afb50d..7fc2fd59597 100644 --- a/configs/freescale_imx91frdm_defconfig +++ b/configs/freescale_imx91frdm_defconfig @@ -10,7 +10,7 @@ BR2_TARGET_GENERIC_GETTY_PORT="ttyLP0" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/freescale/common/imx/imx9-bootloader-prepare.sh board/freescale/common/imx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,jolivain,linux-imx,lf-6.6.36-2.1.0-imx91frdm)/linux-imx-lf-6.6.36-2.1.0-imx91frdm.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,linux-imx,lf-6.18.20-2.0.0)/linux-imx-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="imx_v8" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="freescale/imx91-11x11-frdm" @@ -24,14 +24,15 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,imx-atf,lf-6.6.36-2.1.0)/imx-atf-lf-6.6.36-2.1.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,imx-atf,lf-6.18.20-2.0.0)/imx-atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="imx91" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,jolivain,uboot-imx,lf-6.6.36-2.1.0-imx91frdm)/uboot-imx-lf-6.6.36-2.1.0-imx91frdm.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,uboot-imx,lf-6.18.20-2.0.0)/uboot-imx-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx91_11x11_frdm" +BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/freescale/imx91frdm/uboot.fragment" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/freescale_imx93frdm_defconfig b/configs/freescale_imx93frdm_defconfig index 8e16762d8fa..53875cc0208 100644 --- a/configs/freescale_imx93frdm_defconfig +++ b/configs/freescale_imx93frdm_defconfig @@ -1,14 +1,16 @@ BR2_aarch64=y BR2_cortex_a55=y BR2_ARM_FPU_VFPV4D16=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/freescale/imx93frdm/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyLP0" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/freescale/common/imx/imx9-bootloader-prepare.sh board/freescale/common/imx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,jolivain,linux-imx,lf-6.6.36-2.1.0-imx93frdm)/linux-imx-lf-6.6.36-2.1.0-imx93frdm.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,linux-imx,lf-6.18.20-2.0.0)/linux-imx-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="imx_v8" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="freescale/imx93-11x11-frdm" @@ -22,14 +24,15 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,imx-atf,lf-6.6.36-2.1.0)/imx-atf-lf-6.6.36-2.1.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,imx-atf,lf-6.18.20-2.0.0)/imx-atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="imx93" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,jolivain,uboot-imx,lf-6.6.36-2.1.0-imx93frdm)/uboot-imx-lf-6.6.36-2.1.0-imx93frdm.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-imx,uboot-imx,lf-6.18.20-2.0.0)/uboot-imx-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx93_11x11_frdm" +BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/freescale/imx93frdm/uboot.fragment" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/friendlyarm_nanopi_neo_defconfig b/configs/friendlyarm_nanopi_neo_defconfig index 9aed25b30cc..07be41cbf13 100644 --- a/configs/friendlyarm_nanopi_neo_defconfig +++ b/configs/friendlyarm_nanopi_neo_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/friendlyarm/nanopi-neo/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="nanopi-neo" @@ -11,7 +13,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/friendlyarm/nanopi-neo/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.44" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.18" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-h3-nanopi-neo" @@ -21,11 +23,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nanopi_neo" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_CUSTOM=y BR2_TARGET_UBOOT_FORMAT_CUSTOM_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/friendlyarm_nanopi_r2s_defconfig b/configs/friendlyarm_nanopi_r2s_defconfig index 547d9d5f59f..62502377078 100644 --- a/configs/friendlyarm_nanopi_r2s_defconfig +++ b/configs/friendlyarm_nanopi_r2s_defconfig @@ -1,6 +1,10 @@ BR2_aarch64=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/friendlyarm/nanopi-r2s/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="rk3328-nanopi-r2s" BR2_TARGET_GENERIC_ISSUE="Welcome to Nanopi R2S RK3328" BR2_ROOTFS_POST_BUILD_SCRIPT="board/friendlyarm/nanopi-r2s/post-build.sh" @@ -8,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/friendlyarm/nanopi-r2s/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.13" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.18" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="rockchip/rk3328-nanopi-r2s" @@ -16,7 +20,7 @@ BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="120M" +BR2_TARGET_ROOTFS_EXT2_SIZE="256M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.12" @@ -26,7 +30,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_ARM32_TOOLCHAIN=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nanopi-r2s-rk3328" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/friendlyarm_nanopi_r3s_defconfig b/configs/friendlyarm_nanopi_r3s_defconfig index beeab11c5eb..971a0ae851e 100644 --- a/configs/friendlyarm_nanopi_r3s_defconfig +++ b/configs/friendlyarm_nanopi_r3s_defconfig @@ -13,7 +13,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c $(BINARIES_DIR)/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.14.6" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/friendlyarm/nanopi-r3s/kernel.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -35,7 +35,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="bl31/bl31.elf" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nanopi-r3s-rk3566" BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_PYELFTOOLS=y diff --git a/configs/hp_9000_defconfig b/configs/hp_9000_defconfig new file mode 100644 index 00000000000..29ad684d74f --- /dev/null +++ b/configs/hp_9000_defconfig @@ -0,0 +1,20 @@ +BR2_hppa=y +BR2_parisc11=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_16=y +BR2_GLOBAL_PATCH_DIR="board/hp/9000/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_SYSTEM_DHCP="eth0" +BR2_ROOTFS_POST_IMAGE_SCRIPT=" board/hp/9000/post-image.sh support/scripts/genimage.sh $(BINARIES_DIR)/palo.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="-c $(BINARIES_DIR)/genimage.cfg" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.16.5" +BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y +BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_TARGET_ROOTFS_CPIO=y +BR2_TARGET_ROOTFS_CPIO_GZIP=y +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_4=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_TARGET_PALO=y +BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/imx6ullevk_defconfig b/configs/imx6ullevk_defconfig index 38ea8f69408..5d802e6614e 100644 --- a/configs/imx6ullevk_defconfig +++ b/configs/imx6ullevk_defconfig @@ -1,13 +1,15 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/freescale/imx6ull-evk/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc0" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/freescale/common/imx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.4" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="imx_v6_v7" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="nxp/imx/imx6ull-14x14-evk" @@ -20,9 +22,10 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BOARDNAME="mx6ull_14x14_evk" BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_FORMAT_DTB_IMX=y BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/imx6ulz_bsh_smm_m2_defconfig b/configs/imx6ulz_bsh_smm_m2_defconfig index 5aa41b6438c..23c23cd758d 100644 --- a/configs/imx6ulz_bsh_smm_m2_defconfig +++ b/configs/imx6ulz_bsh_smm_m2_defconfig @@ -9,7 +9,7 @@ BR2_TARGET_GENERIC_GETTY_PORT="ttymxc3" BR2_ROOTFS_POST_BUILD_SCRIPT="board/bsh/imx6ulz-bsh-smm-m2/post-build.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.36" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.96" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/bsh/imx6ulz-bsh-smm-m2/linux.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_UBIFS_LEBSIZE=0x1f000 BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx6ulz_smm_m2" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/imx8mn_bsh_smm_s2_defconfig b/configs/imx8mn_bsh_smm_s2_defconfig index ee8fb9bea39..50a5eb2d9b9 100644 --- a/configs/imx8mn_bsh_smm_s2_defconfig +++ b/configs/imx8mn_bsh_smm_s2_defconfig @@ -6,7 +6,7 @@ BR2_TARGET_GENERIC_GETTY_PORT="ttymxc3" BR2_ROOTFS_POST_BUILD_SCRIPT="board/bsh/imx8mn-bsh-smm-s2/post-build.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.56" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.96" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/bsh/common/imx8mn-bsh-smm-s2/linux.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_DEBUG=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx8mn_bsh_smm_s2" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/imx8mn_bsh_smm_s2_pro_defconfig b/configs/imx8mn_bsh_smm_s2_pro_defconfig index 1abe3a531a7..6a4a662b923 100644 --- a/configs/imx8mn_bsh_smm_s2_pro_defconfig +++ b/configs/imx8mn_bsh_smm_s2_pro_defconfig @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/bsh/imx8mn-bsh-smm-s2-pro/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/bsh/imx8mn-bsh-smm-s2-pro/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.56" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.96" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/bsh/common/imx8mn-bsh-smm-s2/linux.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -29,7 +29,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_ADDITIONAL_VARIABLES="IMX_BOOT_UART_BASE=0x30a60 BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx8mn_bsh_smm_s2pro" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/imxrt1050-evk_defconfig b/configs/imxrt1050-evk_defconfig index 7a70c42afa7..813be65e524 100644 --- a/configs/imxrt1050-evk_defconfig +++ b/configs/imxrt1050-evk_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/freescale/imxrt1050evk/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.43" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.18" BR2_LINUX_KERNEL_DEFCONFIG="imxrt" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="nxp/imx/imxrt1050-evk" @@ -21,7 +21,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="16M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imxrt1050-evk" BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/iot-gate-imx8_ebbr_defconfig b/configs/iot-gate-imx8_ebbr_defconfig index ff646e8adc8..460494302a7 100644 --- a/configs/iot-gate-imx8_ebbr_defconfig +++ b/configs/iot-gate-imx8_ebbr_defconfig @@ -44,7 +44,7 @@ BR2_TARGET_OPTEE_OS_ADDITIONAL_VARIABLES="CFG_TEE_CORE_LOG_LEVEL=2 CFG_TEE_TA_LO BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="imx8mm-cl-iot-gate-optee" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/compulab/iot-gate-imx8-ebbr/u-boot.fragment" BR2_TARGET_UBOOT_NEEDS_DTC=y diff --git a/configs/khadas_vim3_defconfig b/configs/khadas_vim3_defconfig index 21a16cc1b0b..32e39fc64b5 100644 --- a/configs/khadas_vim3_defconfig +++ b/configs/khadas_vim3_defconfig @@ -1,12 +1,16 @@ BR2_aarch64=y BR2_cortex_a73_a53=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_3=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/khadas/vim3/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/khadas/vim3/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/khadas/vim3/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.3" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.15" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="amlogic/meson-g12b-a311d-khadas-vim3" @@ -14,13 +18,14 @@ BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_PACKAGE_DOSFSTOOLS=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="128M" +BR2_TARGET_ROOTFS_EXT2_SIZE="256M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="khadas-vim3" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_PACKAGE_HOST_AMLOGIC_BOOT_FIP=y BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/kontron_smarc_sal28_defconfig b/configs/kontron_smarc_sal28_defconfig index efd4bd41e6c..b1e175b7b2d 100644 --- a/configs/kontron_smarc_sal28_defconfig +++ b/configs/kontron_smarc_sal28_defconfig @@ -1,6 +1,10 @@ BR2_aarch64=y BR2_cortex_a72=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_5_16=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/kontron/smarc-sal28/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y BR2_ROOTFS_OVERLAY="board/kontron/smarc-sal28/rootfs_overlay" BR2_ROOTFS_POST_BUILD_SCRIPT="board/kontron/smarc-sal28/post-build.sh" @@ -8,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c $(BINARIES_DIR)/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.16" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="freescale/fsl-ls1028a-kontron-sl28 freescale/fsl-ls1028a-kontron-sl28-var2 freescale/fsl-ls1028a-kontron-sl28-var3-ads2 freescale/fsl-ls1028a-kontron-sl28-var4 freescale/fsl-ls1028a-kontron-kbox-a-230-ls" @@ -18,11 +22,11 @@ BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_PACKAGE_RCW_SMARC_SAL28=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="128M" +BR2_TARGET_ROOTFS_EXT2_SIZE="160M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2022.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="kontron_sl28" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/ls1028ardb_defconfig b/configs/ls1028ardb_defconfig index ccb886dbe94..ec3828e74af 100644 --- a/configs/ls1028ardb_defconfig +++ b/configs/ls1028ardb_defconfig @@ -1,6 +1,6 @@ BR2_aarch64=y BR2_cortex_a72=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/freescale/ls1028ardb/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="ls1028a" @@ -12,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/freescale/ls1028ardb/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.12.20-2.0.0)/linux-lf-6.12.20-2.0.0.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.18.20-2.0.0)/linux-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm64/configs/lsdk.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -22,11 +22,11 @@ BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_PACKAGE_QORIQ_CADENCE_DP_FIRMWARE=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="128M" +BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.12.20-2.0.0)/atf-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.18.20-2.0.0)/atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="ls1028ardb" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_UBOOT_AS_BL33=y @@ -36,7 +36,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="fip.bin bl2_sd.pbl" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.12.20-2.0.0)/u-boot-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.18.20-2.0.0)/u-boot-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ls1028ardb_tfa" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/ls1043a-rdb_defconfig b/configs/ls1043a-rdb_defconfig index 57c9dbf5b12..e40fade23b6 100644 --- a/configs/ls1043a-rdb_defconfig +++ b/configs/ls1043a-rdb_defconfig @@ -1,5 +1,5 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_TOOLCHAIN_BUILDROOT_CXX=y BR2_GLOBAL_PATCH_DIR="board/freescale/ls1043a-rdb/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y @@ -12,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/freescale/ls1043a-rdb/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.12.20-2.0.0)/linux-lf-6.12.20-2.0.0.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.18.20-2.0.0)/linux-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm64/configs/lsdk.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.12.20-2.0.0)/atf-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.18.20-2.0.0)/atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="ls1043ardb" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_UBOOT_AS_BL33=y @@ -38,7 +38,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="fip.bin bl2_sd.pbl" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.12.20-2.0.0)/u-boot-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.18.20-2.0.0)/u-boot-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ls1043ardb_tfa" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/ls1046a-frwy_defconfig b/configs/ls1046a-frwy_defconfig index f12b27b8179..346931bc2d5 100644 --- a/configs/ls1046a-frwy_defconfig +++ b/configs/ls1046a-frwy_defconfig @@ -1,6 +1,6 @@ BR2_aarch64=y BR2_cortex_a72=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_TOOLCHAIN_BUILDROOT_CXX=y BR2_GLOBAL_PATCH_DIR="board/freescale/ls1046a-frwy/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y @@ -13,7 +13,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/freescale/ls1046a-frwy/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.12.20-2.0.0)/linux-lf-6.12.20-2.0.0.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.18.20-2.0.0)/linux-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm64/configs/lsdk.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.12.20-2.0.0)/atf-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.18.20-2.0.0)/atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="ls1046afrwy" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_UBOOT_AS_BL33=y @@ -38,7 +38,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="fip.bin bl2_sd.pbl" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.12.20-2.0.0)/u-boot-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.18.20-2.0.0)/u-boot-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ls1046afrwy_tfa" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/ls1046a-rdb_defconfig b/configs/ls1046a-rdb_defconfig index 21c63e43b41..b604f1f33a7 100644 --- a/configs/ls1046a-rdb_defconfig +++ b/configs/ls1046a-rdb_defconfig @@ -1,6 +1,6 @@ BR2_aarch64=y BR2_cortex_a72=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_TOOLCHAIN_BUILDROOT_CXX=y BR2_GLOBAL_PATCH_DIR="board/freescale/ls1046a-rdb/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y @@ -13,7 +13,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/freescale/ls1046a-rdb/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.12.20-2.0.0)/linux-lf-6.12.20-2.0.0.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,linux,lf-6.18.20-2.0.0)/linux-lf-6.18.20-2.0.0.tar.gz" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm64/configs/lsdk.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.12.20-2.0.0)/atf-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,atf,lf-6.18.20-2.0.0)/atf-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="ls1046ardb" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_UBOOT_AS_BL33=y @@ -38,7 +38,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="fip.bin bl2_sd.pbl" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.12.20-2.0.0)/u-boot-lf-6.12.20-2.0.0.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,nxp-qoriq,u-boot,lf-6.18.20-2.0.0)/u-boot-lf-6.18.20-2.0.0.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="ls1046ardb_tfa" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/mangopi_mq1rdw2_defconfig b/configs/mangopi_mq1rdw2_defconfig index 2249fa4be5e..469a45b967e 100644 --- a/configs/mangopi_mq1rdw2_defconfig +++ b/configs/mangopi_mq1rdw2_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/mangopi/mq1rdw2/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="mangopi-mq1rdw2" BR2_TARGET_GENERIC_ISSUE="Welcome to MangoPI MQ1RDW2" BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y @@ -12,7 +14,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/mangopi/mq1rdw2/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.5" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-t113s-mangopi-mq-r-t113" @@ -31,11 +33,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.01-rc4" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="mangopi_mq_r" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/microchip_mpfs_icicle_defconfig b/configs/microchip_mpfs_icicle_defconfig index 4337ac34b47..1d8937c3d11 100644 --- a/configs/microchip_mpfs_icicle_defconfig +++ b/configs/microchip_mpfs_icicle_defconfig @@ -1,23 +1,23 @@ BR2_riscv=y BR2_RISCV_ISA_RVC=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y BR2_GLOBAL_PATCH_DIR="board/microchip/mpfs_icicle/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="mpfs_icicle" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/microchip/mpfs_icicle/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,linux,linux4microchip+fpga-2024.06)/linux-linux4microchip+fpga-2024.06.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,linux,linux4microchip+fpga-2025.10)/linux-linux4microchip+fpga-2025.10.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="mpfs" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/microchip/mpfs_icicle/linux.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="microchip/mpfs-icicle-kit" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="microchip/mpfs-icicle-kit microchip/mpfs-icicle-kit-prod" BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,u-boot-mchp,linux4microchip+fpga-2024.06)/uboot-linux4microchip+fpga-2024.06.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,linux4microchip,u-boot-mchp,linux4microchip+fpga-2025.10)/uboot-linux4microchip+fpga-2025.10.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="microchip_mpfs_icicle" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/microchip/mpfs_icicle/uboot-fragment-rootfs.config" BR2_TARGET_UBOOT_NEEDS_DTC=y diff --git a/configs/nitrogen6sx_defconfig b/configs/nitrogen6sx_defconfig index 03103567e9e..368cd027f41 100644 --- a/configs/nitrogen6sx_defconfig +++ b/configs/nitrogen6sx_defconfig @@ -3,7 +3,9 @@ BR2_cortex_a9=y BR2_ARM_ENABLE_NEON=y BR2_ARM_ENABLE_VFP=y BR2_ARM_FPU_VFPV3=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc0" BR2_ROOTFS_POST_BUILD_SCRIPT="board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -20,7 +22,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen6sx" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_FORMAT_IMX=y diff --git a/configs/nitrogen6x_defconfig b/configs/nitrogen6x_defconfig index 4d5408a474a..f99392a82b5 100644 --- a/configs/nitrogen6x_defconfig +++ b/configs/nitrogen6x_defconfig @@ -3,7 +3,9 @@ BR2_cortex_a9=y BR2_ARM_ENABLE_NEON=y BR2_ARM_ENABLE_VFP=y BR2_ARM_FPU_VFPV3=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc1" BR2_ROOTFS_POST_BUILD_SCRIPT="board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -20,7 +22,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen6q" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_FORMAT_IMX=y diff --git a/configs/nitrogen7_defconfig b/configs/nitrogen7_defconfig index 65aff368606..2c558f73115 100644 --- a/configs/nitrogen7_defconfig +++ b/configs/nitrogen7_defconfig @@ -1,7 +1,9 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc0" BR2_ROOTFS_POST_BUILD_SCRIPT="board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -19,7 +21,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen7" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_FORMAT_IMX=y diff --git a/configs/nitrogen8m_defconfig b/configs/nitrogen8m_defconfig index 9a90cdae54d..92d50051baa 100644 --- a/configs/nitrogen8m_defconfig +++ b/configs/nitrogen8m_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc0" BR2_ROOTFS_POST_BUILD_SCRIPT="board/freescale/common/imx/imx8-bootloader-prepare.sh board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -26,7 +28,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen8m" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/nitrogen8mm_defconfig b/configs/nitrogen8mm_defconfig index db4af070a82..91cdcd7a961 100644 --- a/configs/nitrogen8mm_defconfig +++ b/configs/nitrogen8mm_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc1" BR2_ROOTFS_POST_BUILD_SCRIPT="board/freescale/common/imx/imx8-bootloader-prepare.sh board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -26,7 +28,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen8mm_2g" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/nitrogen8mn_defconfig b/configs/nitrogen8mn_defconfig index dc54d240089..746c9faf29b 100644 --- a/configs/nitrogen8mn_defconfig +++ b/configs/nitrogen8mn_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc1" BR2_ROOTFS_POST_BUILD_SCRIPT="board/freescale/common/imx/imx8-bootloader-prepare.sh board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -26,7 +28,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen8_nano_8mn1gr0" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/nitrogen8mp_defconfig b/configs/nitrogen8mp_defconfig index 72884d97fd3..867ce7c4eb5 100644 --- a/configs/nitrogen8mp_defconfig +++ b/configs/nitrogen8mp_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TARGET_GENERIC_GETTY_PORT="ttymxc1" BR2_ROOTFS_POST_BUILD_SCRIPT="board/freescale/common/imx/imx8-bootloader-prepare.sh board/boundarydevices/common/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/boundarydevices/common/post-image.sh" @@ -26,7 +28,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/7e7eff74.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="https://github.com/boundarydevices/u-boot/archive/ea37a18c.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="nitrogen8mp_2gr0" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/olimex_a10_olinuxino_lime_defconfig b/configs/olimex_a10_olinuxino_lime_defconfig index 101796cc121..625491d69bd 100644 --- a/configs/olimex_a10_olinuxino_lime_defconfig +++ b/configs/olimex_a10_olinuxino_lime_defconfig @@ -1,18 +1,20 @@ BR2_arm=y BR2_cortex_a8=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/olimex/a10_olinuxino/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="a10-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/olimex/a10_olinuxino/post-build.sh" +BR2_ROOTFS_OVERLAY="board/olimex/a10_olinuxino/rootfs_overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a10_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.9" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun4i-a10-olinuxino-lime" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun4i-a10-olinuxino-lime" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -20,14 +22,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A10-OLinuXino-Lime" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT_SOURCE="board/olimex/a10_olinuxino/boot.cmd" diff --git a/configs/olimex_a13_olinuxino_defconfig b/configs/olimex_a13_olinuxino_defconfig index 219fe19ba06..9ec20779ceb 100644 --- a/configs/olimex_a13_olinuxino_defconfig +++ b/configs/olimex_a13_olinuxino_defconfig @@ -1,32 +1,34 @@ BR2_arm=y BR2_cortex_a8=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/olimex/a13_olinuxino/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="a13-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/olimex/a13_olinuxino/post-build.sh" +BR2_ROOTFS_OVERLAY="board/olimex/a13_olinuxino/rootfs_overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a13_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.9" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun5i-a13-olinuxino" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun5i-a13-olinuxino" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A13-OLinuXino" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y diff --git a/configs/olimex_a20_olinuxino_lime2_defconfig b/configs/olimex_a20_olinuxino_lime2_defconfig index ff6eca176b4..4e8686615bc 100644 --- a/configs/olimex_a20_olinuxino_lime2_defconfig +++ b/configs/olimex_a20_olinuxino_lime2_defconfig @@ -9,12 +9,12 @@ BR2_TARGET_GENERIC_HOSTNAME="a20-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_SYSTEM_DHCP="eth0" -BR2_ROOTFS_OVERLAY="board/olimex/a20_olinuxino/rootfs_overlay" +BR2_ROOTFS_OVERLAY="board/olimex/a20_olinuxino/rootfs_overlay_mali" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a20_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.50" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/olimex/a20_olinuxino/linux-disable-lima.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A20-OLinuXino-Lime2" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/olimex_a20_olinuxino_lime_defconfig b/configs/olimex_a20_olinuxino_lime_defconfig index 7d95bd4d48a..7edbdcf3694 100644 --- a/configs/olimex_a20_olinuxino_lime_defconfig +++ b/configs/olimex_a20_olinuxino_lime_defconfig @@ -9,12 +9,12 @@ BR2_TARGET_GENERIC_HOSTNAME="a20-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_SYSTEM_DHCP="eth0" -BR2_ROOTFS_OVERLAY="board/olimex/a20_olinuxino/rootfs_overlay" +BR2_ROOTFS_OVERLAY="board/olimex/a20_olinuxino/rootfs_overlay_mali" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a20_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.50" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/olimex/a20_olinuxino/linux-disable-lima.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -28,7 +28,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A20-OLinuXino-Lime" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/olimex_a20_olinuxino_micro_defconfig b/configs/olimex_a20_olinuxino_micro_defconfig index a1d23952d7b..cf1c23ef35d 100644 --- a/configs/olimex_a20_olinuxino_micro_defconfig +++ b/configs/olimex_a20_olinuxino_micro_defconfig @@ -1,20 +1,22 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_NEON_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/olimex/a20_olinuxino/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="a20-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_SYSTEM_DHCP="eth0" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/olimex/a20_olinuxino/post-build.sh" +BR2_ROOTFS_OVERLAY="board/olimex/a20_olinuxino/rootfs_overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a20_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.9" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun7i-a20-olinuxino-micro" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun7i-a20-olinuxino-micro" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y @@ -22,14 +24,12 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A20-OLinuXino_MICRO" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT_SOURCE="board/olimex/a20_olinuxino/boot.cmd" diff --git a/configs/olimex_a33_olinuxino_defconfig b/configs/olimex_a33_olinuxino_defconfig index 8c053ef3d6f..3606d49a41e 100644 --- a/configs/olimex_a33_olinuxino_defconfig +++ b/configs/olimex_a33_olinuxino_defconfig @@ -1,34 +1,34 @@ BR2_arm=y BR2_cortex_a7=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/olimex/a33_olinuxino/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="A33-olinuxino" BR2_TARGET_GENERIC_ISSUE="Welcome to A33 OLinuXino!" BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/olimex/a33_olinuxino/post-build.sh" +BR2_ROOTFS_OVERLAY="board/olimex/a33_olinuxino/rootfs_overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a33_olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.9" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun8i-a33-olinuxino" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-a33-olinuxino" BR2_LINUX_KERNEL_INSTALL_TARGET=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="A33-OLinuXino" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT_SOURCE="board/olimex/a33_olinuxino/boot.cmd" diff --git a/configs/olimex_a64_olinuxino_defconfig b/configs/olimex_a64_olinuxino_defconfig index ad446ea18c8..6173fc8c202 100644 --- a/configs/olimex_a64_olinuxino_defconfig +++ b/configs/olimex_a64_olinuxino_defconfig @@ -1,12 +1,15 @@ BR2_aarch64=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/olimex/a64-olinuxino/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_ISSUE="Welcome to Olimex A64-OLinuXino" +BR2_ROOTFS_OVERLAY="board/olimex/a64-olinuxino/rootfs_overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/olimex/a64-olinuxino/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.9" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun50i-a64-olinuxino" @@ -16,16 +19,17 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.8" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.14.0" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="sun50i_a64" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="a64-olinuxino" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y BR2_TARGET_UBOOT_FORMAT_CUSTOM=y BR2_TARGET_UBOOT_FORMAT_CUSTOM_NAME="u-boot-sunxi-with-spl.bin" @@ -33,6 +37,3 @@ BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="SCP=/dev/null" BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y BR2_PACKAGE_HOST_MTOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_BOOT_SCRIPT_SOURCE="board/olimex/a64-olinuxino/boot.cmd" diff --git a/configs/openblocks_a6_defconfig b/configs/openblocks_a6_defconfig index 754ec539378..e0ce4aa3fba 100644 --- a/configs/openblocks_a6_defconfig +++ b/configs/openblocks_a6_defconfig @@ -8,6 +8,7 @@ BR2_SYSTEM_DHCP="eth0" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.14.336" +BR2_LINUX_KERNEL_LICENSE_FILES="COPYING" BR2_LINUX_KERNEL_DEFCONFIG="mvebu_v5" BR2_LINUX_KERNEL_APPENDED_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" diff --git a/configs/orangepi_pc2_defconfig b/configs/orangepi_pc2_defconfig index 46d04b34c84..180c744baed 100644 --- a/configs/orangepi_pc2_defconfig +++ b/configs/orangepi_pc2_defconfig @@ -25,11 +25,12 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="sun50i_a64" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="orangepi_pc2" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" diff --git a/configs/pine64_defconfig b/configs/pine64_defconfig index 8975f3b1a21..9a77452a517 100644 --- a/configs/pine64_defconfig +++ b/configs/pine64_defconfig @@ -1,12 +1,16 @@ BR2_aarch64=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/pine64/pine64/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_ISSUE="Welcome to PINE64" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/pine64/pine64/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.48" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.32" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun50i-a64-pine64" @@ -16,16 +20,17 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="lts-v2.10.5" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="lts-v2.12.1" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="sun50i_a64" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="pine64_plus" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" diff --git a/configs/pine64_pinecube_defconfig b/configs/pine64_pinecube_defconfig index 3f88ca08222..2a0c567d762 100644 --- a/configs/pine64_pinecube_defconfig +++ b/configs/pine64_pinecube_defconfig @@ -1,7 +1,11 @@ BR2_arm=y BR2_cortex_a7=y BR2_ARM_FPU_VFPV4=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_1=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/pine64/pinecube/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="pinecube" BR2_TARGET_GENERIC_ISSUE="Welcome to Pine64 Pinecube" BR2_SYSTEM_DHCP="eth0" @@ -10,21 +14,22 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/pine64/pinecube/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.60" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.33" BR2_LINUX_KERNEL_DEFCONFIG="sunxi" BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="sun8i-s3-pinecube" +BR2_LINUX_KERNEL_INTREE_DTS_NAME="allwinner/sun8i-s3-pinecube" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2023.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="pinecube" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_SPL=y BR2_TARGET_UBOOT_SPL_NAME="u-boot-sunxi-with-spl.bin" BR2_PACKAGE_HOST_DOSFSTOOLS=y diff --git a/configs/pine64_star64_defconfig b/configs/pine64_star64_defconfig index 33c5826a4a3..a0356447d51 100644 --- a/configs/pine64_star64_defconfig +++ b/configs/pine64_star64_defconfig @@ -1,13 +1,14 @@ BR2_riscv=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_5_15=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_GLOBAL_PATCH_DIR="board/pine64/star64/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_OVERLAY="board/pine64/star64/overlay/" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/pine64/star64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/pine64/star64/genimage.cfg" BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Fishwaldo,Star64_linux,1456c984f15e21e28fb8a9ce96d0ca10e61a71c4)/linux-1456c984f15e21e28fb8a9ce96d0ca10e61a71c4.tar.gz" -BR2_LINUX_KERNEL_DEFCONFIG="pine64_star64" +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.57" +BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="starfive/jh7110-pine64-star64" BR2_LINUX_KERNEL_INSTALL_TARGET=y @@ -17,15 +18,18 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="100M" BR2_TARGET_OPENSBI=y BR2_TARGET_OPENSBI_PLAT="generic" -BR2_TARGET_OPENSBI_UBOOT_PAYLOAD=y +# BR2_TARGET_OPENSBI_INSTALL_JUMP_IMG is not set BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Fishwaldo,u-boot,172b47f62039605d6806fa96bd403c21cda28996)/u-boot-172b47f62039605d6806fa96bd403c21cda28996.tar.gz" -BR2_TARGET_UBOOT_BOARD_DEFCONFIG="pine64_star64" +BR2_TARGET_UBOOT_CUSTOM_VERSION=y +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_BOARD_DEFCONFIG="starfive_visionfive2" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y +BR2_TARGET_UBOOT_NEEDS_OPENSBI=y +BR2_TARGET_UBOOT_USE_BINMAN=y +# BR2_TARGET_UBOOT_FORMAT_BIN is not set +BR2_TARGET_UBOOT_FORMAT_ITB=y BR2_TARGET_UBOOT_SPL=y +BR2_TARGET_UBOOT_SPL_NAME="spl/u-boot-spl.bin.normal.out" BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_STARFIVE_SPLTOOL=y -BR2_PACKAGE_HOST_UBOOT_TOOLS=y -BR2_PACKAGE_HOST_UBOOT_TOOLS_FIT_SUPPORT=y diff --git a/configs/qemu_aarch64_ebbr_defconfig b/configs/qemu_aarch64_ebbr_defconfig index 4dc2d1e3964..8d20813044c 100644 --- a/configs/qemu_aarch64_ebbr_defconfig +++ b/configs/qemu_aarch64_ebbr_defconfig @@ -1,12 +1,14 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh board/qemu/aarch64-ebbr/post-image.sh support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG) -c board/qemu/aarch64-ebbr/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_PYTHON3=y diff --git a/configs/qemu_aarch64_sbsa_defconfig b/configs/qemu_aarch64_sbsa_defconfig index 84ae76ca0bc..56c160c85af 100644 --- a/configs/qemu_aarch64_sbsa_defconfig +++ b/configs/qemu_aarch64_sbsa_defconfig @@ -1,6 +1,8 @@ BR2_aarch64=y BR2_neoverse_n2=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyAMA0" @@ -9,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh board/qemu/aarch64-sbsa/a BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG) -c board/qemu/aarch64-sbsa/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_PYTHON3=y diff --git a/configs/qemu_aarch64_virt_defconfig b/configs/qemu_aarch64_virt_defconfig index 6695f2b2d84..19c8b86ae61 100644 --- a/configs/qemu_aarch64_virt_defconfig +++ b/configs/qemu_aarch64_virt_defconfig @@ -1,5 +1,5 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/aarch64-virt/linux.config" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_arm_ebbr_defconfig b/configs/qemu_arm_ebbr_defconfig index dfd3f47578b..eae560590e6 100644 --- a/configs/qemu_arm_ebbr_defconfig +++ b/configs/qemu_arm_ebbr_defconfig @@ -1,13 +1,15 @@ BR2_arm=y BR2_cortex_a15=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh board/qemu/arm-ebbr/post-image.sh support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG) -c board/qemu/arm-ebbr/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/arm-ebbr/linux.fragment" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_arm_versatile_defconfig b/configs/qemu_arm_versatile_defconfig index b00b309b056..7677e5fd055 100644 --- a/configs/qemu_arm_versatile_defconfig +++ b/configs/qemu_arm_versatile_defconfig @@ -1,5 +1,5 @@ BR2_arm=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyAMA0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="versatile" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/arm-versatile/linux.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y diff --git a/configs/qemu_arm_vexpress_defconfig b/configs/qemu_arm_vexpress_defconfig index 9698b1c6c5a..6dc116c1e74 100644 --- a/configs/qemu_arm_vexpress_defconfig +++ b/configs/qemu_arm_vexpress_defconfig @@ -2,7 +2,7 @@ BR2_arm=y BR2_cortex_a9=y BR2_ARM_ENABLE_NEON=y BR2_ARM_ENABLE_VFP=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyAMA0" @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="vexpress" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="arm/vexpress-v2p-ca9" diff --git a/configs/qemu_arm_vexpress_tz_defconfig b/configs/qemu_arm_vexpress_tz_defconfig index 5dca55fdce0..84dca264da4 100644 --- a/configs/qemu_arm_vexpress_tz_defconfig +++ b/configs/qemu_arm_vexpress_tz_defconfig @@ -1,8 +1,9 @@ BR2_arm=y BR2_cortex_a15=y BR2_ARM_FPU_VFPV3D16=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y -BR2_TOOLCHAIN_BUILDROOT_CXX=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyAMA0" @@ -11,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="vexpress" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/arm-vexpress-tz/linux.fragment" BR2_PACKAGE_OPENSSL=y @@ -22,8 +23,7 @@ BR2_TARGET_ROOTFS_CPIO_GZIP=y BR2_TARGET_ROOTFS_CPIO_UIMAGE=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.7" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="qemu" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y @@ -35,8 +35,9 @@ BR2_TARGET_OPTEE_OS_PLATFORM="vexpress-qemu_virt" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2022.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.04" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="qemu_arm" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/qemu/arm-vexpress-tz/u-boot.config" +BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_PACKAGE_HOST_QEMU=y BR2_PACKAGE_HOST_QEMU_SYSTEM_MODE=y diff --git a/configs/qemu_hppa_b160l_defconfig b/configs/qemu_hppa_b160l_defconfig new file mode 100644 index 00000000000..7e3e561e3f0 --- /dev/null +++ b/configs/qemu_hppa_b160l_defconfig @@ -0,0 +1,18 @@ +BR2_hppa=y +BR2_parisc11=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/qemu/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_SYSTEM_DHCP="eth0" +BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" +BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y +BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_4=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_PACKAGE_HOST_QEMU=y +BR2_PACKAGE_HOST_QEMU_SYSTEM_MODE=y diff --git a/configs/qemu_loongarch64_virt_efi_defconfig b/configs/qemu_loongarch64_virt_efi_defconfig index 4a4cd93b52a..0c1d0468924 100644 --- a/configs/qemu_loongarch64_virt_efi_defconfig +++ b/configs/qemu_loongarch64_virt_efi_defconfig @@ -1,5 +1,5 @@ BR2_loongarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y @@ -8,10 +8,11 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/loongarch64-virt-efi/post-image.sh boar BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG) -c board/qemu/loongarch64-virt-efi/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y +BR2_PACKAGE_ZSTD=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_SIZE="200M" # BR2_TARGET_ROOTFS_TAR is not set @@ -20,6 +21,7 @@ BR2_TARGET_GRUB2=y BR2_TARGET_GRUB2_LOONGARCH64_EFI=y BR2_PACKAGE_HOST_DOSFSTOOLS=y BR2_PACKAGE_HOST_GENIMAGE=y +BR2_PACKAGE_HOST_KMOD_ZSTD=y BR2_PACKAGE_HOST_MTOOLS=y BR2_PACKAGE_HOST_QEMU=y BR2_PACKAGE_HOST_QEMU_SYSTEM_MODE=y diff --git a/configs/qemu_m68k_mcf5208_defconfig b/configs/qemu_m68k_mcf5208_defconfig index 1850f670877..ac3df225792 100644 --- a/configs/qemu_m68k_mcf5208_defconfig +++ b/configs/qemu_m68k_mcf5208_defconfig @@ -1,6 +1,6 @@ BR2_m68k=y BR2_m68k_cf5208=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/m68k-mcf5208/linux.config" BR2_TARGET_ROOTFS_INITRAMFS=y diff --git a/configs/qemu_m68k_q800_defconfig b/configs/qemu_m68k_q800_defconfig index 6e84e1e791f..87b96299212 100644 --- a/configs/qemu_m68k_q800_defconfig +++ b/configs/qemu_m68k_q800_defconfig @@ -1,5 +1,5 @@ BR2_m68k=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/m68k-q800/linux.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_microblazebe_mmu_defconfig b/configs/qemu_microblazebe_mmu_defconfig index 5444380f25c..cc6871e212e 100644 --- a/configs/qemu_microblazebe_mmu_defconfig +++ b/configs/qemu_microblazebe_mmu_defconfig @@ -1,5 +1,5 @@ BR2_microblazebe=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyUL0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/microblazebe-mmu/linux.config" BR2_LINUX_KERNEL_LINUX_BIN=y diff --git a/configs/qemu_microblazeel_mmu_defconfig b/configs/qemu_microblazeel_mmu_defconfig index e5bd0650190..8945a775d04 100644 --- a/configs/qemu_microblazeel_mmu_defconfig +++ b/configs/qemu_microblazeel_mmu_defconfig @@ -1,5 +1,5 @@ BR2_microblazeel=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyUL0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/microblazeel-mmu/linux.config" BR2_LINUX_KERNEL_LINUX_BIN=y diff --git a/configs/qemu_mips32r2_malta_defconfig b/configs/qemu_mips32r2_malta_defconfig index d5051f7c39e..832d9f2242b 100644 --- a/configs/qemu_mips32r2_malta_defconfig +++ b/configs/qemu_mips32r2_malta_defconfig @@ -1,6 +1,6 @@ BR2_mips=y BR2_mips_32r2=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips32r2-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips32r2el_malta_defconfig b/configs/qemu_mips32r2el_malta_defconfig index ce03bc21bdf..b714a7fc6c8 100644 --- a/configs/qemu_mips32r2el_malta_defconfig +++ b/configs/qemu_mips32r2el_malta_defconfig @@ -1,6 +1,6 @@ BR2_mipsel=y BR2_mips_32r2=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips32r2el-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips32r6_malta_defconfig b/configs/qemu_mips32r6_malta_defconfig index 6d026e2a508..9cebeeaf45a 100644 --- a/configs/qemu_mips32r6_malta_defconfig +++ b/configs/qemu_mips32r6_malta_defconfig @@ -1,6 +1,6 @@ BR2_mips=y BR2_mips_32r6=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips32r6-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips32r6el_malta_defconfig b/configs/qemu_mips32r6el_malta_defconfig index 5ea91f281e2..d54ab1f15e5 100644 --- a/configs/qemu_mips32r6el_malta_defconfig +++ b/configs/qemu_mips32r6el_malta_defconfig @@ -1,6 +1,6 @@ BR2_mipsel=y BR2_mips_32r6=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips32r6el-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips64_malta_defconfig b/configs/qemu_mips64_malta_defconfig index f33cff79635..62dba0e369a 100644 --- a/configs/qemu_mips64_malta_defconfig +++ b/configs/qemu_mips64_malta_defconfig @@ -1,6 +1,6 @@ BR2_mips64=y BR2_MIPS_NABI64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips64-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips64el_malta_defconfig b/configs/qemu_mips64el_malta_defconfig index c535228b53e..0714a8e70c3 100644 --- a/configs/qemu_mips64el_malta_defconfig +++ b/configs/qemu_mips64el_malta_defconfig @@ -1,6 +1,6 @@ BR2_mips64el=y BR2_MIPS_NABI64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips64el-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips64r6_malta_defconfig b/configs/qemu_mips64r6_malta_defconfig index f514bacd833..c7eac226ea3 100644 --- a/configs/qemu_mips64r6_malta_defconfig +++ b/configs/qemu_mips64r6_malta_defconfig @@ -1,7 +1,7 @@ BR2_mips64=y BR2_mips_64r6=y BR2_MIPS_NABI64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips64r6-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_mips64r6el_malta_defconfig b/configs/qemu_mips64r6el_malta_defconfig index 83d9f109f94..606bb61a399 100644 --- a/configs/qemu_mips64r6el_malta_defconfig +++ b/configs/qemu_mips64r6el_malta_defconfig @@ -1,7 +1,7 @@ BR2_mips64el=y BR2_mips_64r6=y BR2_MIPS_NABI64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/mips64r6el-malta/linux.config" BR2_LINUX_KERNEL_VMLINUX=y diff --git a/configs/qemu_or1k_defconfig b/configs/qemu_or1k_defconfig index b97774d39c7..19abf1efb7c 100644 --- a/configs/qemu_or1k_defconfig +++ b/configs/qemu_or1k_defconfig @@ -1,5 +1,5 @@ BR2_or1k=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/or1k/linux.config" BR2_TARGET_ROOTFS_INITRAMFS=y diff --git a/configs/qemu_ppc64_e5500_defconfig b/configs/qemu_ppc64_e5500_defconfig index 88e3d99f900..3d37656bf53 100644 --- a/configs/qemu_ppc64_e5500_defconfig +++ b/configs/qemu_ppc64_e5500_defconfig @@ -1,6 +1,6 @@ BR2_powerpc64=y BR2_powerpc_e5500=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="corenet64_smp" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/ppc64-e5500/linux.fragment" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_ppc64_pseries_defconfig b/configs/qemu_ppc64_pseries_defconfig index e89f4e2b3ed..a46cedbb1f7 100644 --- a/configs/qemu_ppc64_pseries_defconfig +++ b/configs/qemu_ppc64_pseries_defconfig @@ -1,6 +1,6 @@ BR2_powerpc64=y BR2_powerpc_power7=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="hvc0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="pseries" BR2_LINUX_KERNEL_VMLINUX=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_ppc64le_powernv10_defconfig b/configs/qemu_ppc64le_powernv10_defconfig new file mode 100644 index 00000000000..41765c2f170 --- /dev/null +++ b/configs/qemu_ppc64le_powernv10_defconfig @@ -0,0 +1,19 @@ +BR2_powerpc64le=y +BR2_powerpc_power10=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/qemu/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_TARGET_GENERIC_GETTY_PORT="hvc0" +BR2_SYSTEM_DHCP="eth0" +BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" +BR2_LINUX_KERNEL_DEFCONFIG="powernv" +BR2_LINUX_KERNEL_VMLINUX=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y +BR2_TARGET_ROOTFS_EXT2=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_PACKAGE_HOST_QEMU=y +BR2_PACKAGE_HOST_QEMU_SYSTEM_MODE=y diff --git a/configs/qemu_ppc64le_powernv11_defconfig b/configs/qemu_ppc64le_powernv11_defconfig new file mode 100644 index 00000000000..94266a22d58 --- /dev/null +++ b/configs/qemu_ppc64le_powernv11_defconfig @@ -0,0 +1,19 @@ +BR2_powerpc64le=y +BR2_powerpc_power11=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/qemu/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_TARGET_GENERIC_GETTY_PORT="hvc0" +BR2_SYSTEM_DHCP="eth0" +BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" +BR2_LINUX_KERNEL_DEFCONFIG="powernv" +BR2_LINUX_KERNEL_VMLINUX=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y +BR2_TARGET_ROOTFS_EXT2=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_PACKAGE_HOST_QEMU=y +BR2_PACKAGE_HOST_QEMU_SYSTEM_MODE=y diff --git a/configs/qemu_ppc64le_powernv8_defconfig b/configs/qemu_ppc64le_powernv8_defconfig index a999a767dc5..5f1d7b78d9f 100644 --- a/configs/qemu_ppc64le_powernv8_defconfig +++ b/configs/qemu_ppc64le_powernv8_defconfig @@ -1,5 +1,5 @@ BR2_powerpc64le=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="hvc0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="powernv" BR2_LINUX_KERNEL_VMLINUX=y BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y diff --git a/configs/qemu_ppc64le_pseries_defconfig b/configs/qemu_ppc64le_pseries_defconfig index 2c633f198d5..4596d436826 100644 --- a/configs/qemu_ppc64le_pseries_defconfig +++ b/configs/qemu_ppc64le_pseries_defconfig @@ -1,5 +1,5 @@ BR2_powerpc64le=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="hvc0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="pseries_le" BR2_LINUX_KERNEL_VMLINUX=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_ppc_bamboo_defconfig b/configs/qemu_ppc_bamboo_defconfig index a71e368cc92..6e12047f852 100644 --- a/configs/qemu_ppc_bamboo_defconfig +++ b/configs/qemu_ppc_bamboo_defconfig @@ -1,6 +1,6 @@ BR2_powerpc=y BR2_powerpc_440fp=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,10 +9,11 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="44x/bamboo" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/ppc-bamboo/linux.fragment" BR2_LINUX_KERNEL_VMLINUX=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y BR2_TARGET_ROOTFS_INITRAMFS=y # BR2_TARGET_ROOTFS_TAR is not set BR2_PACKAGE_HOST_QEMU=y diff --git a/configs/qemu_ppc_e500mc_defconfig b/configs/qemu_ppc_e500mc_defconfig index 632d6400e14..6ac6e1c135d 100644 --- a/configs/qemu_ppc_e500mc_defconfig +++ b/configs/qemu_ppc_e500mc_defconfig @@ -1,6 +1,6 @@ BR2_powerpc=y BR2_powerpc_e500mc=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,10 +9,11 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="corenet32_smp" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/ppc-e500mc/linux.fragment" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y BR2_TARGET_ROOTFS_EXT2=y # BR2_TARGET_ROOTFS_TAR is not set BR2_PACKAGE_HOST_QEMU=y diff --git a/configs/qemu_ppc_g3beige_defconfig b/configs/qemu_ppc_g3beige_defconfig index 0d2a1798ece..a8e9c379bad 100644 --- a/configs/qemu_ppc_g3beige_defconfig +++ b/configs/qemu_ppc_g3beige_defconfig @@ -1,6 +1,6 @@ BR2_powerpc=y BR2_powerpc_750=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,10 +9,11 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/ppc-g3beige/linux.config" BR2_LINUX_KERNEL_VMLINUX=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y BR2_TARGET_ROOTFS_EXT2=y # BR2_TARGET_ROOTFS_TAR is not set BR2_PACKAGE_HOST_QEMU=y diff --git a/configs/qemu_ppc_mac99_defconfig b/configs/qemu_ppc_mac99_defconfig index ecaa8d7cccd..55d201bdb9b 100644 --- a/configs/qemu_ppc_mac99_defconfig +++ b/configs/qemu_ppc_mac99_defconfig @@ -1,6 +1,6 @@ BR2_powerpc=y BR2_powerpc_7400=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,11 +9,12 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="pmac32" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/qemu/ppc-mac99/linux.fragment" BR2_LINUX_KERNEL_VMLINUX=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y BR2_TARGET_ROOTFS_CPIO=y BR2_TARGET_ROOTFS_EXT2=y # BR2_TARGET_ROOTFS_TAR is not set diff --git a/configs/qemu_ppc_mpc8544ds_defconfig b/configs/qemu_ppc_mpc8544ds_defconfig index d2a35bd70e1..3e5a9a84fe5 100644 --- a/configs/qemu_ppc_mpc8544ds_defconfig +++ b/configs/qemu_ppc_mpc8544ds_defconfig @@ -1,6 +1,6 @@ BR2_powerpc=y BR2_powerpc_8548=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" @@ -9,10 +9,11 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/ppc-mpc8544ds/linux.config" BR2_LINUX_KERNEL_VMLINUX=y +BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y BR2_TARGET_ROOTFS_INITRAMFS=y # BR2_TARGET_ROOTFS_TAR is not set BR2_PACKAGE_HOST_QEMU=y diff --git a/configs/qemu_riscv32_nommu_virt_defconfig b/configs/qemu_riscv32_nommu_virt_defconfig index 5fa9a174bf7..0f9ac77e41c 100644 --- a/configs/qemu_riscv32_nommu_virt_defconfig +++ b/configs/qemu_riscv32_nommu_virt_defconfig @@ -1,7 +1,7 @@ BR2_riscv=y BR2_RISCV_32=y # BR2_RISCV_USE_MMU is not set -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/riscv32-virt/linux-nommu.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_riscv32_virt_defconfig b/configs/qemu_riscv32_virt_defconfig index 4369d644cd1..a57c94910c0 100644 --- a/configs/qemu_riscv32_virt_defconfig +++ b/configs/qemu_riscv32_virt_defconfig @@ -1,6 +1,6 @@ BR2_riscv=y BR2_RISCV_32=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_DEFCONFIG="rv32" BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_OPENSBI=y diff --git a/configs/qemu_riscv64_nommu_virt_defconfig b/configs/qemu_riscv64_nommu_virt_defconfig index 6c3d2608cc5..58d89eae5f6 100644 --- a/configs/qemu_riscv64_nommu_virt_defconfig +++ b/configs/qemu_riscv64_nommu_virt_defconfig @@ -1,6 +1,6 @@ BR2_riscv=y # BR2_RISCV_USE_MMU is not set -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/riscv64-virt/linux-nommu.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_riscv64_virt_defconfig b/configs/qemu_riscv64_virt_defconfig index f436dac1434..0d91971d1c5 100644 --- a/configs/qemu_riscv64_virt_defconfig +++ b/configs/qemu_riscv64_virt_defconfig @@ -1,5 +1,5 @@ BR2_riscv=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_OPENSBI=y diff --git a/configs/qemu_riscv64_virt_efi_defconfig b/configs/qemu_riscv64_virt_efi_defconfig index b9d622df052..c279e159af8 100644 --- a/configs/qemu_riscv64_virt_efi_defconfig +++ b/configs/qemu_riscv64_virt_efi_defconfig @@ -1,5 +1,7 @@ BR2_riscv=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_RISCV64_LP64D_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +9,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh board/qemu/riscv64-virt-e BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG) -c board/qemu/riscv64-virt-efi/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_TARGET_ROOTFS_EXT2=y # BR2_TARGET_ROOTFS_TAR is not set diff --git a/configs/qemu_s390x_defconfig b/configs/qemu_s390x_defconfig index cc85d87d351..5efc048c893 100644 --- a/configs/qemu_s390x_defconfig +++ b/configs/qemu_s390x_defconfig @@ -1,5 +1,5 @@ BR2_s390x=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_sh4_r2d_defconfig b/configs/qemu_sh4_r2d_defconfig index 7f22dab3c49..2311f7e06cf 100644 --- a/configs/qemu_sh4_r2d_defconfig +++ b/configs/qemu_sh4_r2d_defconfig @@ -1,5 +1,5 @@ BR2_sh=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttySC1" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/sh4-r2d/linux.config" BR2_LINUX_KERNEL_ZIMAGE=y diff --git a/configs/qemu_sh4eb_r2d_defconfig b/configs/qemu_sh4eb_r2d_defconfig index a1fc4a89e64..083c25ddb8d 100644 --- a/configs/qemu_sh4eb_r2d_defconfig +++ b/configs/qemu_sh4eb_r2d_defconfig @@ -1,6 +1,6 @@ BR2_sh=y BR2_sh4eb=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttySC1" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/sh4eb-r2d/linux.config" BR2_LINUX_KERNEL_ZIMAGE=y diff --git a/configs/qemu_sparc64_sun4u_defconfig b/configs/qemu_sparc64_sun4u_defconfig index a147b129e75..2a6d28aa42f 100644 --- a/configs/qemu_sparc64_sun4u_defconfig +++ b/configs/qemu_sparc64_sun4u_defconfig @@ -1,5 +1,5 @@ BR2_sparc64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/sparc64-sun4u/linux.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_sparc_ss10_defconfig b/configs/qemu_sparc_ss10_defconfig index 2f05c0947f2..fb039e55236 100644 --- a/configs/qemu_sparc_ss10_defconfig +++ b/configs/qemu_sparc_ss10_defconfig @@ -1,5 +1,5 @@ BR2_sparc=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -7,7 +7,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/sparc-ss10/linux.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_x86_64_defconfig b/configs/qemu_x86_64_defconfig index 39d7793a048..ccaac0d0b92 100644 --- a/configs/qemu_x86_64_defconfig +++ b/configs/qemu_x86_64_defconfig @@ -1,5 +1,5 @@ BR2_x86_64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/x86_64/linux.config" BR2_LINUX_KERNEL_NEEDS_HOST_LIBELF=y diff --git a/configs/qemu_x86_64_efi_defconfig b/configs/qemu_x86_64_efi_defconfig index e487b68687c..60790857b5e 100644 --- a/configs/qemu_x86_64_efi_defconfig +++ b/configs/qemu_x86_64_efi_defconfig @@ -1,5 +1,7 @@ BR2_x86_64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_X86_64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh board/qemu/x86_64-efi/pos BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/x86_64-efi/linux.config" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y diff --git a/configs/qemu_x86_defconfig b/configs/qemu_x86_defconfig index f8cb83a4b02..21e3d7657e9 100644 --- a/configs/qemu_x86_defconfig +++ b/configs/qemu_x86_defconfig @@ -1,5 +1,5 @@ BR2_x86_pentiumpro=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/qemu/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_SYSTEM_DHCP="eth0" @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/x86/linux.config" BR2_TARGET_ROOTFS_EXT2=y diff --git a/configs/qemu_xtensa_lx60_defconfig b/configs/qemu_xtensa_lx60_defconfig index 92c0795698d..a84395a3442 100644 --- a/configs/qemu_xtensa_lx60_defconfig +++ b/configs/qemu_xtensa_lx60_defconfig @@ -1,8 +1,8 @@ BR2_xtensa=y BR2_XTENSA_CUSTOM=y BR2_XTENSA_OVERLAY_FILE="https://github.com/jcmvbkbc/xtensa-toolchain-build/raw/95291b7c39e6f790d0b2f062c945a630290f2c81/overlays/xtensa_dc233c.tar.gz" -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y -BR2_GLOBAL_PATCH_DIR="board/qemu/patches" +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/qemu/patches board/qemu/xtensa-lx60/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_SYSTEM_DHCP="eth0" @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/xtensa-lx60/linux.config" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y diff --git a/configs/qemu_xtensa_lx60_nommu_defconfig b/configs/qemu_xtensa_lx60_nommu_defconfig index bb5a7600ddb..a937112a9e5 100644 --- a/configs/qemu_xtensa_lx60_nommu_defconfig +++ b/configs/qemu_xtensa_lx60_nommu_defconfig @@ -2,8 +2,8 @@ BR2_xtensa=y BR2_XTENSA_CUSTOM=y BR2_XTENSA_OVERLAY_FILE="https://github.com/jcmvbkbc/xtensa-toolchain-build/raw/95291b7c39e6f790d0b2f062c945a630290f2c81/overlays/xtensa_dc233c.tar.gz" # BR2_XTENSA_USE_MMU is not set -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y -BR2_GLOBAL_PATCH_DIR="board/qemu/patches" +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y +BR2_GLOBAL_PATCH_DIR="board/qemu/patches board/qemu/xtensa-lx60/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_GETTY_PORT="ttyS0" BR2_SYSTEM_DHCP="eth0" @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/qemu/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="$(BR2_DEFCONFIG)" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.47" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.7" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/qemu/xtensa-lx60/linux-nommu.config" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y diff --git a/configs/raspberrypi0_defconfig b/configs/raspberrypi0_defconfig index 1be48c32dce..9c000dc39d3 100644 --- a/configs/raspberrypi0_defconfig +++ b/configs/raspberrypi0_defconfig @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi0/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi0/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcmrpi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2708-rpi-zero" diff --git a/configs/raspberrypi0w_defconfig b/configs/raspberrypi0w_defconfig index c7803c5af6f..a2392faf0be 100644 --- a/configs/raspberrypi0w_defconfig +++ b/configs/raspberrypi0w_defconfig @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi0w/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi0w/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcmrpi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2708-rpi-zero-w" diff --git a/configs/raspberrypi2_64_defconfig b/configs/raspberrypi2_64_defconfig index 57f98c7396d..f8cadcb7311 100644 --- a/configs/raspberrypi2_64_defconfig +++ b/configs/raspberrypi2_64_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi2-64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi2-64/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-2-b" diff --git a/configs/raspberrypi2_defconfig b/configs/raspberrypi2_defconfig index 60eb62b473f..5e3af7864b9 100644 --- a/configs/raspberrypi2_defconfig +++ b/configs/raspberrypi2_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi2/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi2/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2709" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2709-rpi-2-b broadcom/bcm2710-rpi-2-b" diff --git a/configs/raspberrypi3_64_defconfig b/configs/raspberrypi3_64_defconfig index 59b8b3fc6f5..31568129ac7 100644 --- a/configs/raspberrypi3_64_defconfig +++ b/configs/raspberrypi3_64_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi3-64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi3-64/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-3-b broadcom/bcm2710-rpi-3-b-plus broadcom/bcm2710-rpi-cm3" diff --git a/configs/raspberrypi3_defconfig b/configs/raspberrypi3_defconfig index 3f7fdeb3abf..4cc73708e8e 100644 --- a/configs/raspberrypi3_defconfig +++ b/configs/raspberrypi3_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi3/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi3/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2709" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-3-b broadcom/bcm2710-rpi-3-b-plus broadcom/bcm2710-rpi-cm3" diff --git a/configs/raspberrypi3_qt5we_defconfig b/configs/raspberrypi3_qt5we_defconfig deleted file mode 100644 index 8cbb8b0d413..00000000000 --- a/configs/raspberrypi3_qt5we_defconfig +++ /dev/null @@ -1,43 +0,0 @@ -BR2_arm=y -BR2_cortex_a53=y -BR2_ARM_FPU_NEON_VFPV4=y -BR2_TOOLCHAIN_EXTERNAL=y -BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y -BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y -BR2_GLOBAL_PATCH_DIR="board/raspberrypi/patches" -BR2_DOWNLOAD_FORCE_CHECK_HASHES=y -BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_EUDEV=y -BR2_SYSTEM_DHCP="eth0" -BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi3/post-build.sh" -BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi3/post-image.sh" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" -BR2_LINUX_KERNEL_DEFCONFIG="bcm2709" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-3-b broadcom/bcm2710-rpi-3-b-plus broadcom/bcm2710-rpi-cm3" -BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y -BR2_PACKAGE_BUSYBOX_SHOW_OTHERS=y -BR2_PACKAGE_XZ=y -BR2_PACKAGE_LIBERATION=y -BR2_PACKAGE_QT5=y -BR2_PACKAGE_QT5BASE_EXAMPLES=y -BR2_PACKAGE_QT5BASE_GIF=y -BR2_PACKAGE_QT5WEBENGINE=y -BR2_PACKAGE_QT5WEBENGINE_PROPRIETARY_CODECS=y -BR2_PACKAGE_RPI_FIRMWARE=y -BR2_PACKAGE_RPI_FIRMWARE_BOOTCODE_BIN=y -BR2_PACKAGE_RPI_FIRMWARE_VARIANT_PI=y -BR2_PACKAGE_RPI_FIRMWARE_CONFIG_FILE="board/raspberrypi3/config_3_qt5we.txt" -BR2_PACKAGE_RPI_USERLAND=y -BR2_PACKAGE_CA_CERTIFICATES=y -BR2_PACKAGE_NTP=y -BR2_PACKAGE_KMOD_TOOLS=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="400M" -# BR2_TARGET_ROOTFS_TAR is not set -BR2_PACKAGE_HOST_DOSFSTOOLS=y -BR2_PACKAGE_HOST_GENIMAGE=y -BR2_PACKAGE_HOST_KMOD_XZ=y -BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/raspberrypi4_64_defconfig b/configs/raspberrypi4_64_defconfig index c0a33c3eb5c..ce79952ff75 100644 --- a/configs/raspberrypi4_64_defconfig +++ b/configs/raspberrypi4_64_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi4-64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi4-64/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2711-rpi-4-b broadcom/bcm2711-rpi-400 broadcom/bcm2711-rpi-cm4 broadcom/bcm2711-rpi-cm4s" diff --git a/configs/raspberrypi4_defconfig b/configs/raspberrypi4_defconfig index 75078a3c2c8..a6df6fd9235 100644 --- a/configs/raspberrypi4_defconfig +++ b/configs/raspberrypi4_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi4/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi4/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2711-rpi-4-b broadcom/bcm2711-rpi-400 broadcom/bcm2711-rpi-cm4 broadcom/bcm2711-rpi-cm4s" diff --git a/configs/raspberrypi5_defconfig b/configs/raspberrypi5_defconfig index 6928e2ba0f9..63432f45d57 100644 --- a/configs/raspberrypi5_defconfig +++ b/configs/raspberrypi5_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi5/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi5/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2712" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/raspberrypi/linux-4k-page-size.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y diff --git a/configs/raspberrypi_defconfig b/configs/raspberrypi_defconfig index 00525e050ec..fd8508661c5 100644 --- a/configs/raspberrypi_defconfig +++ b/configs/raspberrypi_defconfig @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypi/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypi/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcmrpi" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2708-rpi-b-rev1 broadcom/bcm2708-rpi-b broadcom/bcm2708-rpi-b-plus broadcom/bcm2708-rpi-cm" diff --git a/configs/raspberrypicm4io_64_defconfig b/configs/raspberrypicm4io_64_defconfig index 648740c2730..53f5193db4c 100644 --- a/configs/raspberrypicm4io_64_defconfig +++ b/configs/raspberrypicm4io_64_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypicm4io-64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypicm4io-64/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2711-rpi-cm4" diff --git a/configs/raspberrypicm4io_defconfig b/configs/raspberrypicm4io_defconfig index e5bbff76c13..01e02fd300d 100644 --- a/configs/raspberrypicm4io_defconfig +++ b/configs/raspberrypicm4io_defconfig @@ -11,7 +11,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypicm4io/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypicm4io/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2711-rpi-cm4" diff --git a/configs/raspberrypicm5io_defconfig b/configs/raspberrypicm5io_defconfig index 122a25ed92e..706f759832b 100644 --- a/configs/raspberrypicm5io_defconfig +++ b/configs/raspberrypicm5io_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypicm5io/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypicm5io/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2712" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/raspberrypi/linux-4k-page-size.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y diff --git a/configs/raspberrypizero2w_64_defconfig b/configs/raspberrypizero2w_64_defconfig index 7a00fa14ac5..e926f6f23df 100644 --- a/configs/raspberrypizero2w_64_defconfig +++ b/configs/raspberrypizero2w_64_defconfig @@ -9,7 +9,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypizero2w-64/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypizero2w-64/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2711" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-zero-2-w" diff --git a/configs/raspberrypizero2w_defconfig b/configs/raspberrypizero2w_defconfig index 36e66676fa8..eb23324e114 100644 --- a/configs/raspberrypizero2w_defconfig +++ b/configs/raspberrypizero2w_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT="board/raspberrypizero2w/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/raspberrypizero2w/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,ac69f097e1fba94502cbd36278db204120a37943)/linux-ac69f097e1fba94502cbd36278db204120a37943.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,raspberrypi,linux,21b410140c47ffab5668399f6f143c7d7b935c8b)/linux-21b410140c47ffab5668399f6f143c7d7b935c8b.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="bcm2709" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="broadcom/bcm2710-rpi-zero-2-w" diff --git a/configs/roc_pc_rk3399_defconfig b/configs/roc_pc_rk3399_defconfig index 145e155fac7..c5c6771bdfc 100644 --- a/configs/roc_pc_rk3399_defconfig +++ b/configs/roc_pc_rk3399_defconfig @@ -1,6 +1,6 @@ BR2_aarch64=y BR2_cortex_a72_a53=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_6=y +BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_18=y BR2_GLOBAL_PATCH_DIR="board/firefly/roc-rk3399-pc/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="roc-rk3399-pc" @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/firefly/roc-rk3399-pc/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.6.56" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.18" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="rockchip/rk3399-roc-pc" @@ -23,19 +23,20 @@ BR2_TARGET_ROOTFS_EXT2_MKFS_OPTIONS="-O 64bit" BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_GIT=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_REPO_URL="https://git.trustedfirmware.org/TF-A/trusted-firmware-a.git" -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_REPO_VERSION="v2.11" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_REPO_VERSION="v2.14" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="rk3399" BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="" BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_ARM32_TOOLCHAIN=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="roc-pc-rk3399" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_PYELFTOOLS=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y BR2_TARGET_UBOOT_NEEDS_ATF_BL31_ELF=y BR2_TARGET_UBOOT_FORMAT_CUSTOM=y diff --git a/configs/rock4se_defconfig b/configs/rock4se_defconfig index 29437b9be35..c4e13f6a397 100644 --- a/configs/rock4se_defconfig +++ b/configs/rock4se_defconfig @@ -12,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/radxa/rock4se/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.28" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.8" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="rockchip/rk3399-rock-4se" @@ -29,7 +29,7 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_ARM32_TOOLCHAIN=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.04" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="rock-4se-rk3399" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/rockpro64_defconfig b/configs/rockpro64_defconfig index d6c217e9462..c31365ca6ba 100644 --- a/configs/rockpro64_defconfig +++ b/configs/rockpro64_defconfig @@ -1,6 +1,8 @@ BR2_aarch64=y BR2_cortex_a72_a53=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/pine64/rockpro64/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_TARGET_GENERIC_HOSTNAME="rockpro64" @@ -10,7 +12,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/pine64/rockpro64/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.10.14" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.4" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/pine64/rockpro64/linux.fragment" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -19,17 +21,18 @@ BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y BR2_LINUX_KERNEL_NEEDS_HOST_PYTHON3=y BR2_TARGET_ROOTFS_EXT2=y BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_ROOTFS_EXT2_SIZE="120M" +BR2_TARGET_ROOTFS_EXT2_SIZE="128M" +# BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.11" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.14" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="rk3399" BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="" BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_ARM32_TOOLCHAIN=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2024.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="rockpro64-rk3399" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y diff --git a/configs/rockpro64_ebbr_defconfig b/configs/rockpro64_ebbr_defconfig index 4d94d61d1f7..0a8fc46e58d 100644 --- a/configs/rockpro64_ebbr_defconfig +++ b/configs/rockpro64_ebbr_defconfig @@ -1,6 +1,8 @@ BR2_aarch64=y BR2_cortex_a72_a53=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/pine64/rockpro64-ebbr/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_DEVICE_CREATION_DYNAMIC_MDEV=y @@ -9,7 +11,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="board/pine64/rockpro64-ebbr/post-image.sh support/ BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/pine64/rockpro64-ebbr/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.18" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.4" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/pine64/rockpro64-ebbr/linux.fragment" BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y @@ -22,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="128M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.12" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_VERSION_VALUE="v2.14" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="rk3399" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="" @@ -31,7 +33,7 @@ BR2_TARGET_GRUB2=y BR2_TARGET_GRUB2_BUILTIN_MODULES_EFI="boot linux ext2 fat squash4 part_msdos part_gpt normal efi_gop lsefisystab lsefimmap lsefi efifwsetup efitextmode efinet" BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_CUSTOM_VERSION=y -BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE="4.5.0" +BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE="4.8.0" BR2_TARGET_OPTEE_OS_NEEDS_DTC=y BR2_TARGET_OPTEE_OS_NEEDS_PYTHON_CRYPTOGRAPHY=y BR2_TARGET_OPTEE_OS_PLATFORM="rockchip-rk3399" @@ -39,7 +41,7 @@ BR2_TARGET_OPTEE_OS_ADDITIONAL_VARIABLES="CFG_TEE_CORE_LOG_LEVEL=2 CFG_DT=y CFG_ BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.01" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="rockpro64-rk3399" BR2_TARGET_UBOOT_CONFIG_FRAGMENT_FILES="board/pine64/rockpro64-ebbr/u-boot.fragment" BR2_TARGET_UBOOT_NEEDS_DTC=y diff --git a/configs/s6lx9_microboard_defconfig b/configs/s6lx9_microboard_defconfig deleted file mode 100644 index b2d1d49d79f..00000000000 --- a/configs/s6lx9_microboard_defconfig +++ /dev/null @@ -1,11 +0,0 @@ -BR2_microblazeel=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_4=y -BR2_TARGET_GENERIC_GETTY_PORT="ttyUL0" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.4.7" -BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y -BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/avnet/s6lx9_microboard/lx9_mmu_defconfig" -BR2_LINUX_KERNEL_CUSTOM_DTS_PATH="board/avnet/s6lx9_microboard/lx9_mmu.dts" -BR2_TARGET_ROOTFS_INITRAMFS=y -# BR2_TARGET_ROOTFS_TAR is not set diff --git a/configs/sheevaplug_defconfig b/configs/sheevaplug_defconfig index 855efedafa5..a6a324213c5 100644 --- a/configs/sheevaplug_defconfig +++ b/configs/sheevaplug_defconfig @@ -7,6 +7,7 @@ BR2_SYSTEM_DHCP="eth0" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.14.336" +BR2_LINUX_KERNEL_LICENSE_FILES="COPYING" BR2_LINUX_KERNEL_DEFCONFIG="mvebu_v5" BR2_LINUX_KERNEL_APPENDED_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" diff --git a/configs/stm32f429_disco_xip_defconfig b/configs/stm32f429_disco_xip_defconfig index c22b6e1135e..40577a21a5e 100644 --- a/configs/stm32f429_disco_xip_defconfig +++ b/configs/stm32f429_disco_xip_defconfig @@ -8,7 +8,7 @@ BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.155" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.1.177" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/stmicroelectronics/stm32f429-disco/linux.config" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y diff --git a/configs/stm32f469_disco_sd_defconfig b/configs/stm32f469_disco_sd_defconfig index 704e8ecc16b..70a214a1082 100644 --- a/configs/stm32f469_disco_sd_defconfig +++ b/configs/stm32f469_disco_sd_defconfig @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/stmicroelectronics/stm32f469-disco/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.186" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.211" BR2_LINUX_KERNEL_DEFCONFIG="stm32" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm/configs/dram_0x00000000.config board/stmicroelectronics/stm32f469-disco/linux-sd.fragment" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="32M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.07" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32f469-discovery" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/stm32f469_disco_xip_defconfig b/configs/stm32f469_disco_xip_defconfig index 5d6c5ba7527..578cecadbe5 100644 --- a/configs/stm32f469_disco_xip_defconfig +++ b/configs/stm32f469_disco_xip_defconfig @@ -8,7 +8,7 @@ BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/stmicroelectronics/common/stm32f4xx/stm32-post-build.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.186" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.211" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/stmicroelectronics/stm32f469-disco/linux-xip.config" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y diff --git a/configs/stm32f746_disco_sd_defconfig b/configs/stm32f746_disco_sd_defconfig index cd2123b992c..e0c257787a6 100644 --- a/configs/stm32f746_disco_sd_defconfig +++ b/configs/stm32f746_disco_sd_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/stmicroelectronics/stm32f746-disco/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.194" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.211" BR2_LINUX_KERNEL_DEFCONFIG="stm32" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="board/stmicroelectronics/stm32f746-disco/linux.fragment" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="32M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32f746-disco" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/stm32f769_disco_sd_defconfig b/configs/stm32f769_disco_sd_defconfig index 54ee93aa197..a025bd78027 100644 --- a/configs/stm32f769_disco_sd_defconfig +++ b/configs/stm32f769_disco_sd_defconfig @@ -8,7 +8,7 @@ BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/stmicroelectronics/stm32f769-disco/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.194" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="5.15.211" BR2_LINUX_KERNEL_DEFCONFIG="stm32" BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm/configs/dram_0xc0000000.config board/stmicroelectronics/stm32f769-disco/linux-sd.fragment" BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y @@ -23,7 +23,7 @@ BR2_TARGET_ROOTFS_EXT2_SIZE="32M" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32f769-disco" BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/stm32h747_disco_sd_defconfig b/configs/stm32h747_disco_sd_defconfig new file mode 100644 index 00000000000..cd882aa5acd --- /dev/null +++ b/configs/stm32h747_disco_sd_defconfig @@ -0,0 +1,32 @@ +BR2_arm=y +BR2_cortex_m7=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7M_UCLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/stmicroelectronics/stm32h747-disco/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_ROOTFS_POST_BUILD_SCRIPT="board/stmicroelectronics/stm32h747-disco/post-build.sh" +BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/stmicroelectronics/stm32h747-disco/genimage.cfg" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.39" +BR2_LINUX_KERNEL_DEFCONFIG="stm32" +BR2_LINUX_KERNEL_CONFIG_FRAGMENT_FILES="$(LINUX_DIR)/arch/arm/configs/dram_0xd0000000.config board/stmicroelectronics/stm32h747-disco/linux-sd.fragment" +BR2_LINUX_KERNEL_IMAGE_TARGET_CUSTOM=y +BR2_LINUX_KERNEL_IMAGE_TARGET_NAME="zImage" +BR2_LINUX_KERNEL_DTS_SUPPORT=y +BR2_LINUX_KERNEL_INTREE_DTS_NAME="st/stm32h747i-disco" +BR2_LINUX_KERNEL_INSTALL_TARGET=y +BR2_PACKAGE_EVTEST=y +# BR2_PACKAGE_IFUPDOWN_SCRIPTS is not set +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_SIZE="32M" +# BR2_TARGET_ROOTFS_TAR is not set +BR2_TARGET_UBOOT=y +BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y +BR2_TARGET_UBOOT_CUSTOM_VERSION=y +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" +BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32h747-disco" +BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_PACKAGE_HOST_GENIMAGE=y +BR2_PACKAGE_HOST_OPENOCD=y diff --git a/configs/stm32mp135f_dk_defconfig b/configs/stm32mp135f_dk_defconfig index 94c6dad1f04..bd1c6ca00a7 100644 --- a/configs/stm32mp135f_dk_defconfig +++ b/configs/stm32mp135f_dk_defconfig @@ -10,7 +10,7 @@ BR2_ROOTFS_OVERLAY="board/stmicroelectronics/stm32mp135f-dk/overlay" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/stmicroelectronics/common/stm32mp1xx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.53" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.95" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/stmicroelectronics/stm32mp135f-dk/linux.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -23,7 +23,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_10_VERSION=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="stm32mp1" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y @@ -35,15 +35,16 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_IMAGES="fip.bin *.stm32" BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_DTC=y BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_CUSTOM_VERSION=y -BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE="4.3.0" +BR2_TARGET_OPTEE_OS_CUSTOM_VERSION_VALUE="4.9.0" BR2_TARGET_OPTEE_OS_NEEDS_PYTHON_CRYPTOGRAPHY=y BR2_TARGET_OPTEE_OS_PLATFORM="stm32mp1" BR2_TARGET_OPTEE_OS_PLATFORM_FLAVOR="135F_DK" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32mp13" +BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/stm32mp157a_dk1_defconfig b/configs/stm32mp157a_dk1_defconfig index 52338bba0bf..7f4143fa328 100644 --- a/configs/stm32mp157a_dk1_defconfig +++ b/configs/stm32mp157a_dk1_defconfig @@ -9,7 +9,7 @@ BR2_ROOTFS_OVERLAY="board/stmicroelectronics/stm32mp157a-dk1/overlay/" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/stmicroelectronics/common/stm32mp1xx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.53" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.95" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/stmicroelectronics/stm32mp157a-dk1/linux.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -20,7 +20,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_10_VERSION=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="stm32mp1" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y @@ -32,8 +32,9 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_DTC=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32mp15_trusted" +BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/stm32mp157c_dk2_defconfig b/configs/stm32mp157c_dk2_defconfig index 34fdec85587..10638f22604 100644 --- a/configs/stm32mp157c_dk2_defconfig +++ b/configs/stm32mp157c_dk2_defconfig @@ -9,7 +9,7 @@ BR2_ROOTFS_OVERLAY="board/stmicroelectronics/stm32mp157c-dk2/overlay/" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/stmicroelectronics/common/stm32mp1xx/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.53" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.95" BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/stmicroelectronics/stm32mp157c-dk2/linux.config" BR2_LINUX_KERNEL_DTS_SUPPORT=y @@ -20,7 +20,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_ROOTFS_EXT2_SIZE="120M" # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_10_VERSION=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="stm32mp1" BR2_TARGET_ARM_TRUSTED_FIRMWARE_FIP=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31=y @@ -32,8 +32,9 @@ BR2_TARGET_ARM_TRUSTED_FIRMWARE_NEEDS_DTC=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="stm32mp15_trusted" +BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_PYLIBFDT=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y BR2_TARGET_UBOOT_NEEDS_GNUTLS=y diff --git a/configs/ti_am62ax_sk_defconfig b/configs/ti_am62ax_sk_defconfig index 0b3ebe6242a..da60d93435f 100644 --- a/configs/ti_am62ax_sk_defconfig +++ b/configs/ti_am62ax_sk_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/ti/am62ax-sk/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/common/am6xx/post-build.sh" diff --git a/configs/ti_am62px_sk_defconfig b/configs/ti_am62px_sk_defconfig index e53b41ed5eb..876734bf4ef 100644 --- a/configs/ti_am62px_sk_defconfig +++ b/configs/ti_am62px_sk_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/ti/am62px-sk/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/common/am6xx/post-build.sh" diff --git a/configs/ti_am62x_sk_defconfig b/configs/ti_am62x_sk_defconfig index 4349c966ace..ddabba238ff 100644 --- a/configs/ti_am62x_sk_defconfig +++ b/configs/ti_am62x_sk_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_12=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/ti/am62x-sk/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/common/am6xx/post-build.sh" @@ -8,7 +10,7 @@ BR2_ROOTFS_POST_BUILD_SCRIPT_ARGS="-c ttyS2,115200n8 -d k3-am625-sk.dtb -l am62x BR2_ROOTFS_POST_IMAGE_SCRIPT_ARGS="-c board/ti/am62x-sk/genimage.cfg" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.53" +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.12.95" BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/k3-am625-sk" @@ -26,12 +28,12 @@ BR2_TARGET_OPTEE_OS=y BR2_TARGET_OPTEE_OS_PLATFORM="k3-am62x" BR2_TARGET_TI_K3_R5_LOADER=y BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION=y -BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_TI_K3_R5_LOADER_BOARD_DEFCONFIG="am62x_evm_r5" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_VERSION=y -BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2025.10" +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.07" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="am62x_evm_a53" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/ti_am64x_sk_defconfig b/configs/ti_am64x_sk_defconfig index a9ec5e3d536..f31989e1e70 100644 --- a/configs/ti_am64x_sk_defconfig +++ b/configs/ti_am64x_sk_defconfig @@ -1,5 +1,7 @@ BR2_aarch64=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_6_10=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_GLOBAL_PATCH_DIR="board/ti/am64x-sk/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/common/am6xx/post-build.sh" diff --git a/configs/ti_tda4vm_sk_defconfig b/configs/ti_tda4vm_sk_defconfig new file mode 100644 index 00000000000..be2529fb37f --- /dev/null +++ b/configs/ti_tda4vm_sk_defconfig @@ -0,0 +1,50 @@ +BR2_aarch64=y +BR2_cortex_a72=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_GLOBAL_PATCH_DIR="board/ti/tda4vm-sk/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_SYSTEM_DHCP="eth0" +BR2_ROOTFS_POST_BUILD_SCRIPT="board/ti/tda4vm-sk/post-build.sh" +BR2_ROOTFS_POST_IMAGE_SCRIPT="support/scripts/genimage.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="-c board/ti/tda4vm-sk/genimage.cfg" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_VERSION=y +BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="6.18.16" +BR2_LINUX_KERNEL_USE_ARCH_DEFAULT_CONFIG=y +BR2_LINUX_KERNEL_DTS_SUPPORT=y +BR2_LINUX_KERNEL_INTREE_DTS_NAME="ti/k3-j721e-sk" +BR2_LINUX_KERNEL_DTB_KEEP_DIRNAME=y +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_4=y +BR2_TARGET_ROOTFS_EXT2_SIZE="256M" +BR2_TARGET_ARM_TRUSTED_FIRMWARE=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_LATEST_LTS_2_12_VERSION=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="k3" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_TARGET_BOARD="generic" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y +BR2_TARGET_OPTEE_OS=y +BR2_TARGET_OPTEE_OS_PLATFORM="k3-j721e" +BR2_TARGET_TI_K3_R5_LOADER=y +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION=y +BR2_TARGET_TI_K3_R5_LOADER_CUSTOM_VERSION_VALUE="2026.01" +BR2_TARGET_TI_K3_R5_LOADER_BOARD_DEFCONFIG="j721e_sk_r5" +BR2_TARGET_UBOOT=y +BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y +BR2_TARGET_UBOOT_CUSTOM_VERSION=y +BR2_TARGET_UBOOT_CUSTOM_VERSION_VALUE="2026.01" +BR2_TARGET_UBOOT_BOARD_DEFCONFIG="j721e_sk_a72" +BR2_TARGET_UBOOT_NEEDS_DTC=y +BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE=y +BR2_TARGET_UBOOT_NEEDS_OPTEE_TEE_RAW_BIN=y +BR2_TARGET_UBOOT_USE_BINMAN=y +# BR2_TARGET_UBOOT_FORMAT_BIN is not set +BR2_TARGET_UBOOT_FORMAT_IMG=y +BR2_TARGET_UBOOT_SPL=y +BR2_TARGET_UBOOT_SPL_NAME="tispl.bin" +BR2_PACKAGE_HOST_DOSFSTOOLS=y +BR2_PACKAGE_HOST_GENIMAGE=y +BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/ts4900_defconfig b/configs/ts4900_defconfig deleted file mode 100644 index e7950cea4b1..00000000000 --- a/configs/ts4900_defconfig +++ /dev/null @@ -1,16 +0,0 @@ -BR2_arm=y -BR2_cortex_a9=y -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_12=y -BR2_ROOTFS_POST_IMAGE_SCRIPT="board/technologic/ts4900/post-image.sh" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.12" -BR2_LINUX_KERNEL_DEFCONFIG="imx_v6_v7" -BR2_LINUX_KERNEL_UIMAGE=y -BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x10008000" -BR2_LINUX_KERNEL_DTS_SUPPORT=y -BR2_LINUX_KERNEL_INTREE_DTS_NAME="imx6q-ts4900" -BR2_LINUX_KERNEL_INSTALL_TARGET=y -BR2_PACKAGE_TS4900_FPGA=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_PACKAGE_HOST_GENIMAGE=y diff --git a/configs/ts5500_defconfig b/configs/ts5500_defconfig deleted file mode 100644 index 62d80839b70..00000000000 --- a/configs/ts5500_defconfig +++ /dev/null @@ -1,13 +0,0 @@ -BR2_PACKAGE_HOST_LINUX_HEADERS_CUSTOM_4_14=y -BR2_TARGET_GENERIC_GETTY_PORT="ttyS1" -BR2_ROOTFS_OVERLAY="board/technologic/ts5500/fs-overlay" -BR2_LINUX_KERNEL=y -BR2_LINUX_KERNEL_CUSTOM_VERSION=y -BR2_LINUX_KERNEL_CUSTOM_VERSION_VALUE="4.14" -BR2_LINUX_KERNEL_USE_CUSTOM_CONFIG=y -BR2_LINUX_KERNEL_CUSTOM_CONFIG_FILE="board/technologic/ts5500/linux-4.14.config" -BR2_LINUX_KERNEL_INSTALL_TARGET=y -BR2_TARGET_ROOTFS_EXT2=y -BR2_TARGET_ROOTFS_EXT2_4=y -BR2_TARGET_SYSLINUX=y -BR2_TARGET_SYSLINUX_MBR=y diff --git a/configs/versal2_vek385_defconfig b/configs/versal2_vek385_defconfig new file mode 100644 index 00000000000..89d2385d1d5 --- /dev/null +++ b/configs/versal2_vek385_defconfig @@ -0,0 +1,55 @@ +BR2_aarch64=y +BR2_cortex_a78=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y +BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf riscv32-buildroot-elf" +BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_MULTILIB=y +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_ROOTFS_POST_BUILD_SCRIPT="board/versal2/post-build.sh" +BR2_ROOTFS_POST_IMAGE_SCRIPT="board/versal2/post-image.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA1,115200 sdd2" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_TARBALL=y +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" +BR2_LINUX_KERNEL_DEFCONFIG="xilinx" +BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_PACKAGE_XILINX_FPGAUTIL=y +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_4=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_TARGET_ARM_TRUSTED_FIRMWARE=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="versal2" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL32_OPTEE=y +BR2_TARGET_OPTEE_OS=y +BR2_TARGET_OPTEE_OS_CUSTOM_TARBALL=y +BR2_TARGET_OPTEE_OS_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,optee_os,xlnx-rebase-v4.9.0_2026.1)/xlnx-rebase-v4.9.0_2026.1.tar.gz" +BR2_TARGET_OPTEE_OS_NEEDS_DTC=y +BR2_TARGET_OPTEE_OS_NEEDS_PYTHON_CRYPTOGRAPHY=y +BR2_TARGET_OPTEE_OS_PLATFORM="versal2" +BR2_TARGET_UBOOT=y +BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y +BR2_TARGET_UBOOT_CUSTOM_TARBALL=y +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" +BR2_TARGET_UBOOT_BOARD_DEFCONFIG="amd_versal2_virt" +BR2_TARGET_UBOOT_NEEDS_DTC=y +BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y +BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_ATF_BL31_ELF=y +BR2_TARGET_UBOOT_FORMAT_DTB=y +BR2_TARGET_UBOOT_FORMAT_REMAKE_ELF=y +BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="DEVICE_TREE=versal2-vek385-revB" +BR2_TARGET_XILINX_EMBEDDEDSW=y +BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_ASUFW=y +BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL2_PLM=y +BR2_TARGET_XILINX_PREBUILT=y +BR2_PACKAGE_HOST_BOOTGEN=y +BR2_PACKAGE_HOST_DOSFSTOOLS=y +BR2_PACKAGE_HOST_GENIMAGE=y +BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/versal_vck190_defconfig b/configs/versal_vck190_defconfig index 33d06ef9631..5499f1a2294 100644 --- a/configs/versal_vck190_defconfig +++ b/configs/versal_vck190_defconfig @@ -5,14 +5,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/versal/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/versal/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/versal-vck190-rev1.1" @@ -23,13 +23,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="versal" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_versal_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/versal_vek280_defconfig b/configs/versal_vek280_defconfig index 07ab2f18af4..4072e7cb226 100644 --- a/configs/versal_vek280_defconfig +++ b/configs/versal_vek280_defconfig @@ -5,14 +5,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/versal/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/versal/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/versal-vek280-revB" @@ -23,13 +23,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="versal" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_versal_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/versal_vpk120_defconfig b/configs/versal_vpk120_defconfig new file mode 100644 index 00000000000..37f353fb218 --- /dev/null +++ b/configs/versal_vpk120_defconfig @@ -0,0 +1,50 @@ +BR2_aarch64=y +BR2_cortex_a72=y +BR2_TOOLCHAIN_EXTERNAL=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y +BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y +BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y +BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" +BR2_DOWNLOAD_FORCE_CHECK_HASHES=y +BR2_ROOTFS_POST_BUILD_SCRIPT="board/versal/post-build.sh" +BR2_ROOTFS_POST_IMAGE_SCRIPT="board/versal/post-image.sh" +BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA0,115200 mmcblk0p2" +BR2_LINUX_KERNEL=y +BR2_LINUX_KERNEL_CUSTOM_TARBALL=y +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" +BR2_LINUX_KERNEL_DEFCONFIG="xilinx" +BR2_LINUX_KERNEL_DTS_SUPPORT=y +BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/versal-vpk120-revB" +BR2_LINUX_KERNEL_NEEDS_HOST_OPENSSL=y +BR2_PACKAGE_XILINX_FPGAUTIL=y +BR2_TARGET_ROOTFS_EXT2=y +BR2_TARGET_ROOTFS_EXT2_4=y +# BR2_TARGET_ROOTFS_TAR is not set +BR2_TARGET_ARM_TRUSTED_FIRMWARE=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="versal" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y +BR2_TARGET_UBOOT=y +BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y +BR2_TARGET_UBOOT_CUSTOM_TARBALL=y +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" +BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_versal_virt" +BR2_TARGET_UBOOT_NEEDS_DTC=y +BR2_TARGET_UBOOT_NEEDS_OPENSSL=y +BR2_TARGET_UBOOT_NEEDS_GNUTLS=y +BR2_TARGET_UBOOT_NEEDS_ATF_BL31=y +BR2_TARGET_UBOOT_NEEDS_ATF_BL31_ELF=y +BR2_TARGET_UBOOT_FORMAT_DTB=y +BR2_TARGET_UBOOT_FORMAT_REMAKE_ELF=y +BR2_TARGET_UBOOT_CUSTOM_MAKEOPTS="DEVICE_TREE=versal-vpk120-revB" +BR2_TARGET_XILINX_EMBEDDEDSW=y +BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PLM=y +BR2_TARGET_XILINX_EMBEDDEDSW_VERSAL_PSMFW=y +BR2_TARGET_XILINX_PREBUILT=y +BR2_TARGET_XILINX_PREBUILT_BOARD="vpk120" +BR2_PACKAGE_HOST_BOOTGEN=y +BR2_PACKAGE_HOST_DOSFSTOOLS=y +BR2_PACKAGE_HOST_GENIMAGE=y +BR2_PACKAGE_HOST_MTOOLS=y diff --git a/configs/versal_vpk180_defconfig b/configs/versal_vpk180_defconfig index 970823e571f..1a67d54bbc9 100644 --- a/configs/versal_vpk180_defconfig +++ b/configs/versal_vpk180_defconfig @@ -5,14 +5,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/versal/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/versal/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyAMA0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/versal-vpk180-revA" @@ -23,13 +23,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="versal" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_versal_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynq_microzed_defconfig b/configs/zynq_microzed_defconfig index b7bf70efcd6..fae1abc60f8 100644 --- a/configs/zynq_microzed_defconfig +++ b/configs/zynq_microzed_defconfig @@ -5,13 +5,13 @@ BR2_ARM_ENABLE_VFP=y BR2_TOOLCHAIN_EXTERNAL=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynq/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynq/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx_zynq" BR2_LINUX_KERNEL_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynq_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynq_zc702_defconfig b/configs/zynq_zc702_defconfig index f968ae1a080..e3fe95dabf8 100644 --- a/configs/zynq_zc702_defconfig +++ b/configs/zynq_zc702_defconfig @@ -5,13 +5,13 @@ BR2_ARM_ENABLE_VFP=y BR2_TOOLCHAIN_EXTERNAL=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynq/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynq/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx_zynq" BR2_LINUX_KERNEL_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynq_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynq_zc706_defconfig b/configs/zynq_zc706_defconfig index fe40dc99aaf..2bb670d8d99 100644 --- a/configs/zynq_zc706_defconfig +++ b/configs/zynq_zc706_defconfig @@ -5,13 +5,13 @@ BR2_ARM_ENABLE_VFP=y BR2_TOOLCHAIN_EXTERNAL=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynq/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynq/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx_zynq" BR2_LINUX_KERNEL_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynq_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynq_zed_defconfig b/configs/zynq_zed_defconfig index 53653036bae..2c4db8bdad5 100644 --- a/configs/zynq_zed_defconfig +++ b/configs/zynq_zed_defconfig @@ -5,13 +5,13 @@ BR2_ARM_ENABLE_VFP=y BR2_TOOLCHAIN_EXTERNAL=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_ARMV7_EABIHF_GLIBC_STABLE=y -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynq/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynq/post-image.sh" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx_zynq" BR2_LINUX_KERNEL_UIMAGE=y BR2_LINUX_KERNEL_UIMAGE_LOADADDR="0x8000" @@ -24,7 +24,7 @@ BR2_TARGET_ROOTFS_EXT2_4=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynq_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_kria_kd240_defconfig b/configs/zynqmp_kria_kd240_defconfig index 71b2547e696..52359fcd07f 100644 --- a/configs/zynqmp_kria_kd240_defconfig +++ b/configs/zynqmp_kria_kd240_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS1,115200 sda2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-smk-k24-revA-sck-kd-g-revA" @@ -22,14 +22,14 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_ADDITIONAL_VARIABLES="ZYNQMP_CONSOLE=cadence1" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_kria" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_kria_kr260_defconfig b/configs/zynqmp_kria_kr260_defconfig index e0c002ea7ab..bf5fdfe5447 100644 --- a/configs/zynqmp_kria_kr260_defconfig +++ b/configs/zynqmp_kria_kr260_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS1,115200 sda2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-smk-k26-revA-sck-kr-g-revB" @@ -22,14 +22,14 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_ADDITIONAL_VARIABLES="ZYNQMP_CONSOLE=cadence1" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_kria" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_kria_kv260_defconfig b/configs/zynqmp_kria_kv260_defconfig index d80c47b4bc2..a0a1d3557b1 100644 --- a/configs/zynqmp_kria_kv260_defconfig +++ b/configs/zynqmp_kria_kv260_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS1,115200 mmcblk1p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-smk-k26-revA-sck-kv-g-revB" @@ -22,14 +22,14 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_ADDITIONAL_VARIABLES="ZYNQMP_CONSOLE=cadence1" BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_kria" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_zcu102_defconfig b/configs/zynqmp_zcu102_defconfig index a1ac800098e..623d37140dc 100644 --- a/configs/zynqmp_zcu102_defconfig +++ b/configs/zynqmp_zcu102_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-zcu102-rev1.0" @@ -22,13 +22,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_zcu104_defconfig b/configs/zynqmp_zcu104_defconfig index bd8e8b0629a..68213bbabf0 100644 --- a/configs/zynqmp_zcu104_defconfig +++ b/configs/zynqmp_zcu104_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-zcu104-revC" @@ -22,13 +22,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/configs/zynqmp_zcu106_defconfig b/configs/zynqmp_zcu106_defconfig index a964f28a9e5..da3af3c6bbc 100644 --- a/configs/zynqmp_zcu106_defconfig +++ b/configs/zynqmp_zcu106_defconfig @@ -4,14 +4,14 @@ BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y BR2_TOOLCHAIN_EXTERNAL_BOOTLIN_AARCH64_GLIBC_STABLE=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT=y BR2_TOOLCHAIN_BARE_METAL_BUILDROOT_ARCH="microblazeel-buildroot-elf" -BR2_GLOBAL_PATCH_DIR="board/xilinx/patches" +BR2_GLOBAL_PATCH_DIR="board/xilinx/xilinx_v2026.1/patches board/xilinx/linux_6.18.40/patches" BR2_DOWNLOAD_FORCE_CHECK_HASHES=y BR2_ROOTFS_POST_BUILD_SCRIPT="board/zynqmp/post-build.sh" BR2_ROOTFS_POST_IMAGE_SCRIPT="board/zynqmp/post-image.sh" BR2_ROOTFS_POST_SCRIPT_ARGS="ttyPS0,115200 mmcblk0p2" BR2_LINUX_KERNEL=y BR2_LINUX_KERNEL_CUSTOM_TARBALL=y -BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.12_LTS_merge_6.12.40)/xlnx_rebase_v6.12_LTS_merge_6.12.40.tar.gz" +BR2_LINUX_KERNEL_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,linux-xlnx,xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40)/xlnx_rebase_v6.18_LTS_2026.1_update_merge_v6.18.40.tar.gz" BR2_LINUX_KERNEL_DEFCONFIG="xilinx" BR2_LINUX_KERNEL_DTS_SUPPORT=y BR2_LINUX_KERNEL_INTREE_DTS_NAME="xilinx/zynqmp-zcu106-revA" @@ -22,13 +22,13 @@ BR2_TARGET_ROOTFS_EXT2_4=y # BR2_TARGET_ROOTFS_TAR is not set BR2_TARGET_ARM_TRUSTED_FIRMWARE=y BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL=y -BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx_rebase_v2.12_2025.1)/xlnx_rebase_v2.12_2025.1.tar.gz" +BR2_TARGET_ARM_TRUSTED_FIRMWARE_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,arm-trusted-firmware,xlnx-rebase-v2.14_2026.1)/xlnx-rebase-v2.14_2026.1.tar.gz" BR2_TARGET_ARM_TRUSTED_FIRMWARE_PLATFORM="zynqmp" BR2_TARGET_ARM_TRUSTED_FIRMWARE_BL31_UBOOT=y BR2_TARGET_UBOOT=y BR2_TARGET_UBOOT_BUILD_SYSTEM_KCONFIG=y BR2_TARGET_UBOOT_CUSTOM_TARBALL=y -BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx_rebase_v2025.01_2025.1)/xlnx_rebase_v2025.01_2025.1.tar.gz" +BR2_TARGET_UBOOT_CUSTOM_TARBALL_LOCATION="$(call github,Xilinx,u-boot-xlnx,xlnx-rebase-v2026.01_2026.1)/xlnx-rebase-v2026.01_2026.1.tar.gz" BR2_TARGET_UBOOT_BOARD_DEFCONFIG="xilinx_zynqmp_virt" BR2_TARGET_UBOOT_NEEDS_DTC=y BR2_TARGET_UBOOT_NEEDS_OPENSSL=y diff --git a/docs/manual/adding-packages-generic.adoc b/docs/manual/adding-packages-generic.adoc index 6827b9975e5..e7547460fd5 100644 --- a/docs/manual/adding-packages-generic.adoc +++ b/docs/manual/adding-packages-generic.adoc @@ -509,9 +509,9 @@ not and can not work as people would expect it should: * +LIBFOO_IGNORE_CVES+ is a space-separated list of CVEs that tells Buildroot CVE tracking tools which CVEs should be ignored for this package. This is typically used when the CVE is fixed by a patch in - the package, or when the CVE for some reason does not affect the - Buildroot package. A Makefile comment must always precede the - addition of a CVE to this variable. Example: + the package (see xref:additional-patch-documentation[]), or when the CVE for + some reason does not affect the Buildroot package. A Makefile comment must + always precede the addition of a CVE to this variable. Example: + ---- # 0001-fix-cve-2020-12345.patch diff --git a/docs/manual/adding-packages-hare.adoc b/docs/manual/adding-packages-hare.adoc new file mode 100644 index 00000000000..e61d524acb3 --- /dev/null +++ b/docs/manual/adding-packages-hare.adoc @@ -0,0 +1,87 @@ +// -*- mode:doc; -*- +// vim: set syntax=asciidoc: + +=== Infrastructure for Hare packages + +[[hare-package-tutorial]] + +==== +hare-package+ tutorial + +The +Config.in+ file of Hare-based package 'hare-foo' should contain: + +---- +01: config BR2_PACKAGE_HARE_FOO +02: bool "hare-foo" +03: depends on BR2_PACKAGE_HOST_HARE_TARGET_ARCH_SUPPORTS +04: select BR2_PACKAGE_HOST_HARE +05: help +06: This is a comment that explains what foo is. +07: +08: https://foosoftware.org/foo/ +---- + +And the +.mk+ file for this package should contain: + +---- +01: ################################################################################ +02: # +03: # hare-foo +04: # +05: ################################################################################ +06: +07: HARE_FOO_VERSION = 0.42.0 +08: HARE_FOO_SITE = https://git.sr.ht/~sircmpwn/hare-foo +09: HARE_FOO_SITE_METHOD = git +10: HARE_FOO_LICENSE = MPL-2.0 +11: HARE_FOO_LICENSE_FILES = COPYING +12: HARE_FOO_INSTALL_STAGING = YES +13: +14: $(eval $(hare-package)) +---- + +The Makefile starts with the definition of the standard variables for +package declaration (lines 7 to 12). + +Finally, on line 14, we invoke the +hare-package+ +macro that generates all the Makefile rules that actually allows the +package to be built. + +[[hare-package-reference]] + +==== +hare-package+ reference + +As a policy, packages that provide Hare modules should all be +named +hare-+ in Buildroot. + +In their +Config.in+ file, packages using the +hare-package+ +infrastructure should depend on +BR2_PACKAGE_HOST_HARE_TARGET_ARCH_SUPPORTS+ +because Buildroot will automatically add a dependency on +host-hare+ +to such packages. + +The main macro of the Hare package infrastructure is +hare-package+: +like +generic-package+ it works by defining a number of variables providing +metadata information about the package, and then calling the +hare-package+ +macro. + +Just like the generic infrastructure, the Hare infrastructure works +by defining a number of variables before calling the +hare-package+ +macro. + +All the package metadata information variables that exist in the +xref:generic-package-reference[generic package infrastructure] also +exist in the Hare infrastructure. + +This infrastructure expects that the upstream package follows the +https://harelang.org/documentation/usage/project-structure.html#makefiles[project structure conventions], +because the upstream +Makefile+ is called. + +When the package contains Hare modules (ie. libraries), +there are not compiled by this BR package, +there are just installed in +$(STAGING_DIR)/usr/src/hare/third-party+, +for a future use. + +When the package produces one or more executables, +all Hare sources (from this package, from dependent modules, +from the Hare stdlib) are compiled and statically linked. +If a binding to a native library is used, +the link requires the static library, not the shared one. diff --git a/docs/manual/adding-packages.adoc b/docs/manual/adding-packages.adoc index 10acae0b1af..2c66d88f37e 100644 --- a/docs/manual/adding-packages.adoc +++ b/docs/manual/adding-packages.adoc @@ -43,6 +43,8 @@ include::adding-packages-golang.adoc[] include::adding-packages-qmake.adoc[] +include::adding-packages-hare.adoc[] + include::adding-packages-kernel-module.adoc[] include::adding-packages-asciidoc.adoc[] diff --git a/docs/manual/common-usage.adoc b/docs/manual/common-usage.adoc index 43caa3a9bc8..631c2f77882 100644 --- a/docs/manual/common-usage.adoc +++ b/docs/manual/common-usage.adoc @@ -170,6 +170,18 @@ by using the +show-info+ make target: make show-info ---- +Buildroot can also produce information in the +show-info+ format about all +packages regardless of the configuration or architecture by using ++show-info-all+. +This is used for maintenance tasks that require information about every +package in the tree, such as generating a full-tree SBOM for +https://security.buildroot.org[]. +It does not require a +.config+ file: + +---- +make show-info-all +---- + Buildroot can also produce details about packages as HTML and JSON output using the +pkg-stats+ make target. Amongst other things, these details include whether known CVEs (security vulnerabilities) affect @@ -180,6 +192,34 @@ a newer upstream version for those packages. make pkg-stats ---- +=== Generating CycloneDX SBOM + +Based on the output of +show-info+ Buildroot can generate a SBOM in +the CycloneDX format. While it doesn't offer any additional +information, CycloneDX is a format specification that can be consumed +by other projects. + +---- +make show-info | utils/generate-cyclonedx +---- + +For more information check the help of the +generate-cyclonedx+ script, the +script call can be tailored to your project. + +---- +utils/generate-cyclonedx --help +---- + +Similarly to +pkg-stats+, CycloneDX SBOM's can be enriched with vulnerability +analysis from the NVD database. + +---- +make show | utils/generate-cyclonedx > sbom.cdx.json +cat sbom.cdx.json | support/scripts/cve-check --nvd-path dl/buildroot-nvd/ +---- + +For more information about CycloneDX see https://cyclonedx.org/[]. + === Graphing the dependencies between packages [[graph-depends]] diff --git a/docs/manual/contribute.adoc b/docs/manual/contribute.adoc index c17f1619b43..f82eb143036 100644 --- a/docs/manual/contribute.adoc +++ b/docs/manual/contribute.adoc @@ -283,16 +283,18 @@ the commit message body. When you bump a package to a new version, you should also submit a separate patch for each package. Don't forget to update the +.hash+ file, or add it if it doesn't exist yet. Also don't forget to check if -the +_LICENSE+ and +_LICENSE_FILES+ are still valid. The summary line -should be something like +: bump to version +. If the new version only contains security updates compared -to the existing one, the summary should be +: security -bump to version + and the commit message body should show -the CVE numbers that are fixed. If some package patches can be removed -in the new version, it should be explained explicitly why they can be -removed, preferably with the upstream commit ID. Also any other -required changes should be explained explicitly, like configure -options that no longer exist or are no longer needed. +the +_LICENSE+ and +_LICENSE_FILES+ are still valid. If the hash of a +license file changed, please include a note in the commit message +about what changed, ideally with a link to the upstream commit. The +summary line should be something like +: bump to version ++. If the new version only contains security updates +compared to the existing one, the summary should be +: +security bump to version + and the commit message body +should show the CVE numbers that are fixed. If some package patches +can be removed in the new version, it should be explained explicitly +why they can be removed, preferably with the upstream commit ID. Also +any other required changes should be explained explicitly, like +configure options that no longer exist or are no longer needed. If you are interested in getting notified of build failures and of further changes in the packages you added or modified, please add @@ -458,7 +460,7 @@ editing the commit message. Below the +Signed-off-by+ section, add Although the changelog will be visible for the reviewers in the mail thread, as well as in -https://patchwork.ozlabs.org/project/buildroot/list/[patchwork], +git+ +https://patchwork.buildroot.org/project/buildroot/list/[patchwork], +git+ will automatically ignores lines below +---+ when the patch will be merged. This is the intended behavior: the changelog is not meant to be preserved forever in the +git+ history of the project. @@ -511,19 +513,19 @@ $ git format-patch -v4 -M -s -o outgoing origin/master When you provide a new version of a patch, please mark the old one as superseded in -https://patchwork.ozlabs.org/project/buildroot/list/[patchwork]. You +https://patchwork.buildroot.org/project/buildroot/list/[patchwork]. You need to create an account on -https://patchwork.ozlabs.org/project/buildroot/list/[patchwork] to be +https://patchwork.buildroot.org/project/buildroot/list/[patchwork] to be able to modify the status of your patches. Note that you can only change the status of patches you submitted yourself, which means the email address you register in -https://patchwork.ozlabs.org/project/buildroot/list/[patchwork] should +https://patchwork.buildroot.org/project/buildroot/list/[patchwork] should match the one you use for sending patches to the mailing list. You can also add the +--in-reply-to=+ option when submitting a patch to the mailing list. The id of the mail to reply to can be found under the "Message Id" tag on -https://patchwork.ozlabs.org/project/buildroot/list/[patchwork]. The +https://patchwork.buildroot.org/project/buildroot/list/[patchwork]. The advantage of *in-reply-to* is that patchwork will automatically mark the previous version of the patch as superseded. @@ -559,8 +561,9 @@ If some of these details are too large, do not hesitate to use a pastebin service. Note that not all available pastebin services will preserve Unix-style line terminators when downloading raw pastes. Following pastebin services are known to work correctly: + - https://gist.github.com/ -- http://code.bulix.org/ +- https://paste.sr.ht/ === Using the runtime tests framework @@ -661,7 +664,7 @@ Creating a basic test case involves: advantage of using +infra.basetest.BASIC_TOOLCHAIN_CONFIG+ is that a matching Linux kernel image is provided, which allows to boot the resulting image in Qemu without having to build a Linux kernel image - as part of the test case, therefore significant decreasing the build + as part of the test case, therefore significantly decreasing the build time required for the test case. * Implementing a +def test_run(self):+ function to implement the diff --git a/docs/manual/customize-directory-structure.adoc b/docs/manual/customize-directory-structure.adoc index b4b5d50e1a3..aab225811b0 100644 --- a/docs/manual/customize-directory-structure.adoc +++ b/docs/manual/customize-directory-structure.adoc @@ -23,8 +23,8 @@ to you. | +-- linux.config | +-- busybox.config | +-- -| +-- post_build.sh -| +-- post_image.sh +| +-- post-build.sh +| +-- post-image.sh | +-- rootfs_overlay/ | | +-- etc/ | | +-- @@ -84,7 +84,7 @@ layers 'common' and 'fooboard' is: +-- board/ +-- / +-- common/ - | +-- post_build.sh + | +-- post-build.sh | +-- rootfs_overlay/ | | +-- ... | +-- patches/ @@ -94,7 +94,7 @@ layers 'common' and 'fooboard' is: +-- linux.config +-- busybox.config +-- - +-- post_build.sh + +-- post-build.sh +-- rootfs_overlay/ | +-- ... +-- patches/ diff --git a/docs/manual/customize-outside-br.adoc b/docs/manual/customize-outside-br.adoc index 78065489d46..8a76f3a9987 100644 --- a/docs/manual/customize-outside-br.adoc +++ b/docs/manual/customize-outside-br.adoc @@ -58,10 +58,11 @@ We can switch to another br2-external tree at any time: buildroot/ $ make BR2_EXTERNAL=/where/we/have/bar xconfig ---- -We can also use multiple br2-external trees: +We can also use multiple br2-external trees, by specifying a space-separated +list of paths to use: ---- -buildroot/ $ make BR2_EXTERNAL=/path/to/foo:/where/we/have/bar menuconfig +buildroot/ $ make BR2_EXTERNAL="/path/to/foo /where/we/have/bar" menuconfig ---- Or disable the usage of any br2-external tree: diff --git a/docs/manual/customize-quick-guide.adoc b/docs/manual/customize-quick-guide.adoc index 315027c5901..360cbe9622f 100644 --- a/docs/manual/customize-quick-guide.adoc +++ b/docs/manual/customize-quick-guide.adoc @@ -35,9 +35,9 @@ your project can be skipped. Set +BR2_ROOTFS_OVERLAY+ to +board///rootfs-overlay+. . Create a post-build script - +board///post_build.sh+. Set + +board///post-build.sh+. Set +BR2_ROOTFS_POST_BUILD_SCRIPT+ to - +board///post_build.sh+ + +board///post-build.sh+ . If additional setuid permissions have to be set or device nodes have to be created, create +board///device_table.txt+ and add that path to +BR2_ROOTFS_DEVICE_TABLE+. diff --git a/docs/manual/customize-rootfs.adoc b/docs/manual/customize-rootfs.adoc index d334093748a..b7fe5813f74 100644 --- a/docs/manual/customize-rootfs.adoc +++ b/docs/manual/customize-rootfs.adoc @@ -28,6 +28,11 @@ When +BR2_ROOTFS_MERGED_USR+ is enabled, then the overlay must not such a situation, should the overlay have any programs or libraries, they should be placed in '/usr/bin', '/usr/sbin' and '/usr/lib'. + +Additionally, when +BR2_ROOTFS_MERGED_BIN+ is enabled, then the overlay + must not contain the '/usr/sbin' directory, as Buildroot will create + it as a symbolic link to '/usr/bin'. In such a situation, should the + overlay have any programs, they should be placed in '/usr/bin'. ++ As shown in xref:customize-dir-structure[], the recommended path for this overlay is +board///rootfs-overlay+. @@ -47,7 +52,7 @@ Using post-build scripts, you can remove or modify any file in your post-build cleanup scripts. + As shown in xref:customize-dir-structure[], the recommended path for - this script is +board///post_build.sh+. + this script is +board///post-build.sh+. + The post-build scripts are run with the main Buildroot tree as current working directory. The path to the target filesystem is passed as the diff --git a/docs/manual/getting.adoc b/docs/manual/getting.adoc index b3a451f67d4..4b5eae0150d 100644 --- a/docs/manual/getting.adoc +++ b/docs/manual/getting.adoc @@ -15,14 +15,14 @@ available in `support/misc/Vagrantfile` in the Buildroot source tree to quickly set up a virtual machine with the needed dependencies to get started. -If you want to setup an isolated buildroot environment on Linux or Mac -Os X, paste this line onto your terminal: +If you want to set up an isolated Buildroot environment on Linux or Mac +OS X, paste this line into your terminal: ---- curl -O https://buildroot.org/downloads/Vagrantfile; vagrant up ---- -If you are on Windows, paste this into your powershell: +If you are on Windows, paste this into your PowerShell: ---- (new-object System.Net.WebClient).DownloadFile( diff --git a/docs/manual/introduction.adoc b/docs/manual/introduction.adoc index 476aa81edc4..1a8cc6d13ed 100644 --- a/docs/manual/introduction.adoc +++ b/docs/manual/introduction.adoc @@ -16,11 +16,11 @@ filesystem with Buildroot). Buildroot is useful mainly for people working with embedded systems. Embedded systems often use processors that are not the regular x86 -processors everyone is used to having in his PC. They can be PowerPC -processors, MIPS processors, ARM processors, etc. +processors developers are used to having in their PCs, including +ARM (both 32- and 64-bit), MIPS, PowerPC, RISC-V and more. Buildroot supports numerous processors and their variants; it also -comes with default configurations for several boards available +comes with default configurations for hundreds of boards available off-the-shelf. Besides this, a number of third-party projects are based on, or develop their BSP footnote:[BSP: Board Support Package] or SDK footnote:[SDK: Software Development Kit] on top of Buildroot. diff --git a/docs/manual/migrating.adoc b/docs/manual/migrating.adoc index 130d7a10121..68f09e1baee 100644 --- a/docs/manual/migrating.adoc +++ b/docs/manual/migrating.adoc @@ -227,4 +227,40 @@ your kernel or use an alternative network manager. === Migrating to 2025.11 In 2025.11, the +FOO_INSTALL_BINS+ variable for golang packages is no longer supported; the list of binaries to install is automatically derived from -the +FOO_BULD_TARGETS+ variable. +the +FOO_BUILD_TARGETS+ variable. + +[[migrating-js-libs]] +=== Migration to 2026.02 + +Starting 2025.08, JavaScript libraries that were just copied to `/var/www` on +the target filesystem are not part of the Buildroot packages. +If you want to provide such libraries either: + +- Use a CDN to target the library version of your choice. +- Serve it by adding the package to your external and installing the content to + the destination of your choice +- Serve it by adding the library to your overlay. +- Install the libraries from your project with NPM and bundle with a JavaScript + bundler. + +In 2026.02, the network-manager package stopped selecting the gnutls package as +a cryptography backend automatically. Manually enable the gnutls or libnss +package if you require features that depend on a cryptography backend, such as +certificate-based authentication. + +[[migrating-to-2026-08]] +=== Migration to 2026.08 + +In 2026.08, the iwd package stopped installing a custom ++/etc/iwd/main.conf+, and started using the upstream example +instead. With that the +EnableNetworkConfiguration+ setting changed +from +true+ to +false+, in line with upstream defaults. If you need ++EnableNetworkConfiguration=true+ to let +iwd+ handle network +configuration for active wifi connections, adjust +/etc/iwd/main.conf+ +in your build (see xref:rootfs-custom[] for options). + +Due to the update of Rust to a version greater than 1.96.1 $comment was +added to .cargo-checksum.json to clarify that this file is not a +security mechanism. Tarballs generated by Cargo-fetched packages have +changed, therefore the suffix of such tarballs has been changed from ++-cargo5+ to +-cargo6+. diff --git a/docs/manual/patch-policy.adoc b/docs/manual/patch-policy.adoc index a4bc5f391ab..02051f2f0ee 100644 --- a/docs/manual/patch-policy.adoc +++ b/docs/manual/patch-policy.adoc @@ -144,6 +144,7 @@ AC_PROG_MAKE_SET +AM_CONDITIONAL([CXX_WORKS], [test "x$rw_cv_prog_cxx_works" = "xyes"]) ---- +[[additional-patch-documentation]] === Additional patch documentation Ideally, all patches should document an upstream patch or patch submission, when @@ -177,4 +178,14 @@ Upstream: N/A ---- Adding this documentation helps streamline the patch review process during -package version updates. \ No newline at end of file +package version updates. + +If the patch addresses one or multiple vulnerabilities, list each identifier on +a separate line with a +CVE+ trailer. + +---- +CVE: +---- + +If multiple patches address the same vulnerability, reference the vulnerability +in every patch. diff --git a/docs/manual/release-engineering.adoc b/docs/manual/release-engineering.adoc index 0cf38183f90..cbd310d6823 100644 --- a/docs/manual/release-engineering.adoc +++ b/docs/manual/release-engineering.adoc @@ -5,19 +5,21 @@ == Release Engineering === Releases -The Buildroot project makes quarterly releases with monthly bugfix -releases. The first release of each year is a long term support -release, LTS. +The Buildroot project makes quarterly stable releases with monthly bugfix +releases. Starting with 2025.02, the first release of every odd-numbered year +is a long-term support (LTS) release supported for three years. - - Quarterly releases: 2020.02, 2020.05, 2020.08, and 2020.11 - - Bugfix releases: 2020.02.1, 2020.02.2, ... - - LTS releases: 2020.02, 2021.02, ... + - LTS releases: 2025.02, 2027.02, 2029.02 ... + - Non-LTS releases: 2025.05, 2025.08, 2025.11, 2026.02, ... + - Bugfix releases: 2025.02.1, 2025.02.2, ... -Releases are supported until the first bugfix release of the next -release, e.g., 2020.05.x is EOL when 2020.08.1 is released. +LTS releases are supported for three years, with a one-year overlap with the +next LTS release, e.g., 2025.02.x is EOL when 2028.02 is released. -LTS releases are supported until the first bugfix release of the next -LTS, e.g., 2020.02.x is supported until 2021.02.1 is released. +Non-LTS releases are supported until the next release, e.g., 2025.05.x is EOL +when 2025.08 is released. + +See the table at https://lts.buildroot.org/#releases[lts.buildroot.org]. === Development diff --git a/docs/manual/resources.adoc b/docs/manual/resources.adoc index a1b8b366e14..331929e0c67 100644 --- a/docs/manual/resources.adoc +++ b/docs/manual/resources.adoc @@ -68,4 +68,4 @@ review comments in a clean and concise web interface, it can be useful for all Buildroot developers. + The Buildroot patch management interface is available at -https://patchwork.ozlabs.org/project/buildroot/list/[]. +https://patchwork.buildroot.org/project/buildroot/list/[]. diff --git a/docs/website/contribute.html b/docs/website/contribute.html index 52c30d60d32..8da371cf01a 100644 --- a/docs/website/contribute.html +++ b/docs/website/contribute.html @@ -14,22 +14,22 @@

For more details on these topics, check out the - + Contributing to buildroot chapter in the Buildroot manual. Thanks for your help!

If you need any support yourself, have a look at @@ -51,7 +51,7 @@ to organise those.

  • Practical help: providing a meeting room for developer meetings, providing autobuilder instances, etc.
  • -
  • Buildroot LTS Sponsoring, +
  • Buildroot LTS Sponsoring, a specific effort to finance the maintenance of the Long Term Support branch of Buildroot.
  • diff --git a/docs/website/css/lts.css b/docs/website/css/lts.css new file mode 100644 index 00000000000..c1e9b198a8c --- /dev/null +++ b/docs/website/css/lts.css @@ -0,0 +1,410 @@ +@font-face { + font-family: "Compagnon Light"; + src: url("/fonts/compagnon-light.woff") format("woff"); + font-weight: 300; + font-style: normal; + font-display: swap; +} + +@font-face { + font-family: "Terminal Grotesque"; + src: url("/fonts/terminal-grotesque.woff") format("woff"); + font-weight: normal; + font-style: normal; + font-display: swap; +} + +:root { + --br-blue: #2b7de0; + --br-grid: #dceeff; + --br-yellow: #dcb045; + --font-pixel: "Terminal Grotesque", sans-serif; + --font-serif: "Compagnon Light", serif; + --br-grid-size: 40px; +} + +@keyframes slideDownFade { + 0% { + opacity: 0; + transform: translateY(-30px); + } + 100% { + opacity: 1; + transform: translateY(0); + } +} + +@keyframes growBar { + from { transform: scaleX(0); opacity: 0.5; } + to { transform: scaleX(1); opacity: 1; } +} + +/** + * Header with the grid pattern background used by the Buildroot LTS + * graphical chart + */ +.br-lts-header { + margin-top: 50px; + position: relative; + width: 100%; + min-height: 400px; + background-color: #ffffff; + overflow: hidden; + border-bottom: 4px solid var(--br-blue); + display: flex; + justify-content: center; + padding: 40px 20px; +} + +.br-lts-header-bg { + position: absolute; + top: 0; + left: 0; + width: 100%; + height: 100%; + background-image: + linear-gradient(var(--br-grid) 2px, transparent 2px), + linear-gradient(90deg, var(--br-grid) 2px, transparent 2px); + background-size: 120px 120px; + z-index: 1; + pointer-events: none; +} + +.br-lts-header-content { + position: relative; + z-index: 10; + max-width: 1200px; + display: flex; + flex-direction: column; +} + +.br-lts-header-title { + color: var(--br-blue); + font-family: var(--font-pixel); + font-size: 8rem; + display: inline-block; + background: white; + padding: 10px; + margin: 10px; + border: 2px solid var(--br-blue); + box-shadow: 6px 6px 0 var(--br-blue); + + transition: all 0.3s cubic-bezier(0.25, 0.8, 0.25, 1); + opacity: 0; + animation: slideDownFade 0.8s cubic-bezier(0.34, 1.56, 0.64, 1) forwards; +} + +.br-lts-header-title:nth-of-type(2) { + font-size: 6rem; + line-height: 6rem; + animation-delay: 0.2s; +} + +.br-lts-header-title:hover { + background-color: var(--br-blue); + color: #ffffff; + box-shadow: 8px 8px 0 var(--br-grid); + transform: translateY(-2px) translateX(-2px); +} + +/** + *
    wrapper. + */ +.br-lts-main { + max-width: 1200px; + margin: 40px auto; + padding: 0 20px; +} + +/** + * Custom dotted separator using the BR-LTS theme. + */ +.br-lts-separator { + width: 100%; + max-width: 900px; + height: 10px; + border-bottom: 2px dotted var(--br-blue); + margin: 10px 0; +} + +/** + * Intersection subtitle
    with grid background + */ +.br-lts-section-header { + position: relative; + width: 40%; + height: calc(var(--br-grid-size) * 3); + background-color: #fff; + display: flex; + align-items: center; + padding-left: var(--br-grid-size); + margin: var(--br-grid-size) 0; + border: 2px solid var(--br-grid); + + text-decoration: none; + scroll-margin-top: 20px; /* Offset for jump to anchor */ +} + +@media screen and (max-width: 768px) { + .br-lts-section-header { + width: 100%; + } +} + +.br-lts-section-header:hover { + border: 2px solid var(--br-blue); + box-shadow: 6px 6px 0 var(--br-blue); + transition: border-color 0.3s ease, box-shadow 0.3s ease; +} + +.br-lts-section-header .br-lts-bg-grid { + position: absolute; + top: 0; + left: 0; + width: 100%; + height: 100%; + background-image: + linear-gradient(var(--br-grid) 2px, transparent 2px), + linear-gradient(90deg, var(--br-grid) 2px, transparent 2px); + background-size: var(--br-grid-size) var(--br-grid-size); + background-position: -1px -1px; + z-index: 1; + pointer-events: none; +} + +.br-lts-section-header .br-lts-title-box { + position: relative; + z-index: 10; + background-color: #fff; + border: 2px solid var(--br-blue); + color: var(--br-blue); + font-family: var(--font-pixel); + font-weight: 400; + font-style: normal; + font-size: 24px; + line-height: 1; + padding: 10px 15px; +} + +.br-lts-section-header .br-lts-decoration-dot { + position: absolute; + z-index: 10; + width: 10px; + height: 10px; + background-color: var(--br-yellow); + border-radius: 50%; + bottom: 0; + left: 0; + transform: translate(-50%, 50%); +} + +/** + * Numbered titled list. + * The number is spanning on the left. + * The content is on this right. + */ +.br-lts-item-row { + display: flex; + gap: 25px; + max-width: 900px; + position: relative; +} + +.br-lts-item-number { + font-family: var(--font-pixel); + color: var(--br-yellow); + font-size: 160px; + line-height: 0.8; + flex-shrink: 0; + user-select: none; + margin-top: 20px; + text-align: center; + width: 60px; +} + +.br-lts-item-content { + display: flex; + flex-direction: column; + gap: 15px; + padding-top: 5px; +} + +.br-lts-item-title { + font-family: var(--font-serif); + font-style: italic; + font-weight: 300; + font-size: 42px; + line-height: 1.1; + color: var(--br-blue); + letter-spacing: 1px; +} + +.br-lts-item-text { + font-family: var(--font-mono); + font-size: 16px; + line-height: 1.4; + color: #333; + max-width: 750px; +} + +/** + * 'timeline' grid to represent how tasks are expanding across time. + */ +.br-lts-chart { + display: grid; + grid-template-columns: 120px repeat(12, 1fr); + gap: 0; + width: 100%; + max-width: 1000px; + background-color: #fff; + border: 2px solid var(--br-blue); + box-shadow: 6px 6px 0 var(--br-blue); + position: relative; + overflow-x: auto; +} + +.br-lts-chart::before { + content: ""; + position: absolute; + top: 45px; + left: 120px; + right: 0; + bottom: 0; + background-size: calc(100% / 12) 100%; + z-index: 0; + pointer-events: none; +} + +.br-lts-chart-head { + grid-column: 1 / -1; + display: grid; + grid-template-columns: 120px repeat(12, 1fr); + border-bottom: 2px solid var(--br-blue); + background-color: color-mix(in srgb, var(--br-blue) 6%, white); + font-weight: bold; + position: relative; + z-index: 2; +} + +.br-lts-chart-head-label { + text-align: center; + padding: 10px; + border-left: 2px solid var(--br-grid); + font-family: var(--font-pixel); + font-size: 20px; + color: var(--br-blue); +} + +.br-lts-span-year { grid-column: span 4; } +.br-lts-span-day { grid-column: span 2; } +.br-lts-head-spacer { grid-column: span 1; border-right: 2px solid var(--br-blue); } + +.br-lts-chart-row { + grid-column: 1 / -1; + display: grid; + grid-template-columns: 120px repeat(12, 1fr); + align-items: center; + height: 50px; + border-bottom: 1px dashed #ddd; + position: relative; + z-index: 1; + transition: background-color 0.2s ease; +} + +.br-lts-chart-row:last-child { border-bottom: none; } + +.br-lts-chart-row--tall { + height: 100px; +} + +.br-lts-chart-row--faded { + color: #999; + font-style: italic; +} + +.br-lts-chart-row:hover { + background-color: color-mix(in srgb, var(--br-blue) 8%, transparent); + z-index: 2; +} + +.br-lts-chart-label { + padding: 0 15px; + font-weight: bold; + color: #555; + border-right: 2px solid var(--br-blue); + height: 100%; + display: flex; + align-items: center; + background-color: #fff; + font-size: 14px; + transition: color 0.2s ease, background-color 0.2s ease; +} + +.br-lts-chart-row:hover .br-lts-chart-label { + background-color: transparent; + color: var(--br-blue); +} + +.br-lts-bar { + height: 24px; + border-radius: 4px; + display: flex; + align-items: center; + padding-left: 10px; + font-size: 12px; + color: white; + font-weight: bold; + box-shadow: 2px 2px 0 rgba(0,0,0,0.1); + white-space: nowrap; + overflow: hidden; + position: relative; + background-color: var(--br-blue); + grid-column-end: span 1; + cursor: default; + + transform-origin: left center; + animation: growBar 0.8s cubic-bezier(0.16, 1, 0.3, 1) forwards; + opacity: 0; + + transition: transform 0.2s cubic-bezier(0.175, 0.885, 0.32, 1.275), + box-shadow 0.2s ease, + filter 0.2s ease; +} + +.br-lts-chart-row:nth-child(2) .br-lts-bar { animation-delay: 100ms; } +.br-lts-chart-row:nth-child(3) .br-lts-bar { animation-delay: 200ms; } +.br-lts-chart-row:nth-child(4) .br-lts-bar { animation-delay: 300ms; } +.br-lts-chart-row:nth-child(5) .br-lts-bar { animation-delay: 400ms; } +.br-lts-chart-row:nth-child(6) .br-lts-bar { animation-delay: 500ms; } +.br-lts-chart-row:nth-child(7) .br-lts-bar { animation-delay: 600ms; } +.br-lts-chart-row:nth-child(8) .br-lts-bar { animation-delay: 700ms; } +.br-lts-chart-row:nth-child(9) .br-lts-bar { animation-delay: 800ms; } +.br-lts-chart-row:nth-child(10) .br-lts-bar { animation-delay: 900ms; } +.br-lts-chart-row:nth-child(11) .br-lts-bar { animation-delay: 1000ms; } + +.br-lts-bar:hover { + transform: scale(1.05) translateY(-2px); + box-shadow: 4px 6px 12px rgba(0,0,0,0.2); + z-index: 10; + filter: brightness(1.1); +} + +.br-lts-bar--long { + background-color: var(--br-yellow); + color: color-mix(in srgb, var(--br-yellow), black 45%); + grid-column-end: span 12; + border: 2px solid color-mix(in srgb, var(--br-yellow), white 20%); +} + +.br-lts-bar--span-2 { grid-column-end: span 2; } +.br-lts-bar--span-6 { grid-column-end: span 6; } + +.br-lts-col-start-2 { grid-column-start: 2; } +.br-lts-col-start-3 { grid-column-start: 3; } +.br-lts-col-start-4 { grid-column-start: 4; } +.br-lts-col-start-5 { grid-column-start: 5; } +.br-lts-col-start-6 { grid-column-start: 6; } +.br-lts-col-start-7 { grid-column-start: 7; } +.br-lts-col-start-8 { grid-column-start: 8; } +.br-lts-col-start-9 { grid-column-start: 9; } +.br-lts-col-start-10 { grid-column-start: 10; } diff --git a/docs/website/css/sponsors.css b/docs/website/css/sponsors.css new file mode 100644 index 00000000000..889737eabda --- /dev/null +++ b/docs/website/css/sponsors.css @@ -0,0 +1,40 @@ +.sponsors-container { + display: flex; + flex-wrap: wrap; + gap: 15px; + align-items: stretch; +} + +.sponsor-entry { + flex: 0 0 calc(33.333% - 10px); + display: flex; + flex-direction: column; + min-width: 250px; +} + +.sponsor-entry .panel { + flex: 1; + display: flex; + flex-direction: column; +} + +.sponsor-entry .panel-body { + flex: 1; + display: flex; + flex-direction: column; +} + +.sponsor-title { + display: flex; + align-items: center; + justify-content: center; + min-height: 150px; +} + +.sponsor-title img { + max-height: 120px; +} + +.sponsor-body { + flex: 1; +} diff --git a/docs/website/download.html b/docs/website/download.html index d5b849ca9a4..d6f260bc772 100644 --- a/docs/website/download.html +++ b/docs/website/download.html @@ -19,80 +19,81 @@ Stable - 2025.08.x - December 2025 + 2026.08.x + December 2026 - 2025.08.1
    - + 2026.08
    +
    Changelog - 2025-10-11 + 2026-09-04 - + .tar.gz
    - [PGP sig] + [PGP sig] - + .tar.xz
    - [PGP sig] + [PGP sig] - Stable (EOL) - 2025.05.x - September 2025 + + Old stable + 2026.05.x + September 2026 - 2025.05.3
    - + 2026.05.3
    +
    Changelog - 2025-10-11 + 2026-09-10 - + .tar.gz
    - [PGP sig] + [PGP sig] - + .tar.xz
    - [PGP sig] + [PGP sig] @@ -100,31 +101,31 @@ 2025.02.x March 2028 - 2025.02.7
    - + 2025.02.18
    +
    Changelog - 2025-10-11 + 2026-09-10 - + .tar.gz
    - [PGP sig] + [PGP sig] - + .tar.xz
    - [PGP sig] + [PGP sig] This and earlier releases (and their PGP signatures) can always be downloaded from - http://buildroot.net/downloads/. + https://buildroot.org/downloads/.
    @@ -149,7 +150,7 @@

    If you are not already familiar with using Git, we recommend - you visit the Git + you visit the Git website.

    Once you've checked out a copy of the source tree, you can diff --git a/docs/website/fonts/compagnon-light.woff b/docs/website/fonts/compagnon-light.woff new file mode 100644 index 00000000000..b0c6e876497 Binary files /dev/null and b/docs/website/fonts/compagnon-light.woff differ diff --git a/docs/website/fonts/terminal-grotesque.woff b/docs/website/fonts/terminal-grotesque.woff new file mode 100644 index 00000000000..d721311c12d Binary files /dev/null and b/docs/website/fonts/terminal-grotesque.woff differ diff --git a/docs/website/footer.html b/docs/website/footer.html index 82901b7ee60..b93fa46ebbd 100644 --- a/docs/website/footer.html +++ b/docs/website/footer.html @@ -3,5 +3,11 @@ + +

    + + + +
    diff --git a/docs/website/header.html b/docs/website/header.html index 548ed7ad532..8d610bb4422 100644 --- a/docs/website/header.html +++ b/docs/website/header.html @@ -41,6 +41,8 @@ Support
  • Contribute
  • +
  • + LTS
  • Sponsors
  • diff --git a/docs/website/images/calian-logo.png b/docs/website/images/calian-logo.png new file mode 100644 index 00000000000..762e0b13dc0 Binary files /dev/null and b/docs/website/images/calian-logo.png differ diff --git a/docs/website/images/ipcomm-logo.png b/docs/website/images/ipcomm-logo.png new file mode 100644 index 00000000000..376f4160ef6 Binary files /dev/null and b/docs/website/images/ipcomm-logo.png differ diff --git a/docs/website/images/othermo-logo.png b/docs/website/images/othermo-logo.png new file mode 100644 index 00000000000..98f8a93f387 Binary files /dev/null and b/docs/website/images/othermo-logo.png differ diff --git a/docs/website/images/sense-logo.png b/docs/website/images/sense-logo.png index d4cab95b820..d324111638f 100644 Binary files a/docs/website/images/sense-logo.png and b/docs/website/images/sense-logo.png differ diff --git a/docs/website/images/smc-gateway-logo.png b/docs/website/images/smc-gateway-logo.png new file mode 100644 index 00000000000..b530f5ec0bd Binary files /dev/null and b/docs/website/images/smc-gateway-logo.png differ diff --git a/docs/website/index.html b/docs/website/index.html index d68436c7216..027fd485e02 100644 --- a/docs/website/index.html +++ b/docs/website/index.html @@ -148,4 +148,15 @@

    Buildroot is an open source project: many developers contribute to it daily. + + diff --git a/docs/website/lts.html b/docs/website/lts.html new file mode 100644 index 00000000000..caa9344f4a0 --- /dev/null +++ b/docs/website/lts.html @@ -0,0 +1,366 @@ + + + + +
    +
    + +
    +
    + Buildroot LTS +
    +
    + 3-year long-term support with security fixes +
    +
    +
    + +
    +
    +
    +
    LTS Objectives
    +
    +
    + +
    +
    1
    +
    +

    + 3-year LTS support +

    +

    + Starting with version 2025.02, the LTS support has been extended to + 3 years, replacing the previous 1-year cycle. +

    +
    +
    + +
    + +
    +
    2
    +
    +

    + Vulnerability tracking & reporting +

    +

    + Tracking of the vulnerabilities affecting Buildroot + is available at + security.buildroot.org. +
    + LTS stewards ensure this data remains up-to-date by actively + maintaining Buildroot packages metadata. +

    +
    +
    + +
    + +
    +
    3
    +
    +

    + Sponsored LTS stewards +

    +

    + To ensure a consistent release cadence and maintenance + workflow, paid LTS stewards are assigned to the weekly LTS + maintenance tasks. +

    +
    +
    + +
    + +
    +
    4
    +
    +

    + Dedicated backports +

    +

    + Vulnerability fixes applied to the master branch will be + prioritized for backporting to stable branches. +

    +
    +
    + + +
    +
    +
    Releases
    +
    +
    + +

    + The Buildroot LTS sponsorship initiative has evolved from a more + comprehensive understanding of the needs of our user base. +
    + To address these requirements, the release model evolves into the following. +
    + Starting with 2025.02, the first release of every odd-numbered year is a long-term + support (LTS) release supported for three years. + In between, non-LTS releases are made every 3 months. +

    + +
    + +
    +
    +
    +
    2025
    +
    2026
    +
    2027
    +
    + +
    +
    2025.02
    +
    3 Years Support (LTS)
    +
    + +
    +
    2025.05
    +
    3 mo
    +
    + +
    +
    2025.08
    +
    3 mo
    +
    + +
    +
    2025.11
    +
    3 mo
    +
    + +
    +
    2026.02
    +
    3 mo
    +
    + +
    +
    2026.05
    +
    3 mo
    +
    + +
    +
    2026.08
    +
    3 mo
    +
    + +
    +
    2026.11
    +
    3 mo
    +
    + +
    +
    2027.02
    +
    3 Years Support (LTS)
    +
    + +
    +
    ...
    +
    +
    + +
    +
    + +
    +
    +
    How we work
    +
    +
    + +

    + Each week, the LTS stewards define the set of commits to + analyze based on the previous week's commits to the master branch. The + commits are then annotated to define a list of candidates for the LTS + branches. +

    + +

    + Mid-week, the candidates are cherry-picked to a staging branch hosted on + gitlab.com/essensium-mind/buildroot. + Every maintained branch has a staging branch, with the .x + suffix replaced by .pre. The staging branch allows other + maintainers to review the changes before they are pushed upstream. +

    + +

    + By the end of the week, the staging branches are pushed upstream and + contributors are notified. Feedback from users, sponsors and + autobuilders + are then collected and + vulnerability analyses + updated. +

    + +

    + For more information about the development workflow, see the + documentation. +

    +
    + +
    +
    +
    +
    Monday
    +
    Tuesday
    +
    Wednesday
    +
    Thursday
    +
    Friday
    +
    ...
    +
    + +
    +
    Freeze weekly commit set from master
    +
    +
    + +
    +
    Apply branch specific patches
    +
    +
    + +
    +
    Analysis & commit annotation
    +
    +
    + +
    +
    Cherry picking to staging branch
    +
    +
    + +
    +
    Push to upstream branch
    +
    +
    + +
    +
    Update vulns
    +
    +
    +
    + +
    +
    +
    Sponsorship benefits
    +
    +
    + +
    +
    1
    +
    +

    + Long-term sustainability +

    +

    + Sponsors ensure the long-term sustainability of the Buildroot + LTS effort with dedicated stewards assigned to tasks such as + backporting, security monitoring and LTS releases. +

    +
    +
    + +
    + +
    +
    2
    +
    +

    + Recognition of your sponsorship +

    +

    + Sponsors can be publicly acknowledged on the Buildroot website. + Sponsors may provide a logo linking to a webpage of their + choice. +

    +
    +
    + +
    + +
    +
    3
    +
    +

    + Direct interaction with LTS stewards +

    +

    + Sponsors may submit queries and requests regarding + Buildroot LTS and security updates. +

    +
    +
    + +
    + +
    +
    4
    +
    +

    + Assignment of priorities for package tracking +

    +

    + Buildroot integrates more than 2000 open source packages, + many of which do not offer long-term stable releases or + security updates. +
    +
    + Sponsors may submit a priority list indicating:
    + - Packages of interest
    + - Architectures of interest
    +

    +
    +
    + +
    + +
    +
    5
    +
    +

    + Testing of your packages +

    +

    + To make sure the packages of interest to the sponsors don't + include regressions between releases. + Sponsors may submit a list of packages to be tested + before a bugfix release. +

    +
    +
    + +
    + +
    +
    6
    +
    +

    + Personalized security reports +

    +

    + Sponsors receive personalized security reports for their + Buildroot packages in the form of + security.buildroot.org + with comparison with the upstream branches. +

    +
    +
    + + +

    + Interested ? Contact us at + buildroot-lts@buildroot.org + to learn more about the different sponsorship tiers and get all the + details about the sponsorship. +

    +
    + + diff --git a/docs/website/news.html b/docs/website/news.html index dd290c33fc9..b8f9e92852f 100644 --- a/docs/website/news.html +++ b/docs/website/news.html @@ -9,6 +9,768 @@

    News

      +
    • +
      +
      +
      +

      2026.05.3 released

      +

      10 September 2026

      +
      +
      +

      The 2026.05.3 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.05.2 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.05.3 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.18 released

      +

      10 September 2026

      +
      +
      +

      The 2025.02.18 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.17 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.18 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.08 released

      +

      4 September 2026

      +
      +
      +

      The stable 2026.08 release is out - Thanks to everyone + contributing and testing the release candidates. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.08 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.08-rc3 released

      +

      29 August 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.08-rc3 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.08-rc2 released

      +

      23 August 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.08-rc2 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05.2 released

      +

      23 August 2026

      +
      +
      +

      The 2026.05.2 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.05.1 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.05.2 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.17 released

      +

      23 August 2026

      +
      +
      +

      The 2025.02.17 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.16 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.17 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.08-rc1 released

      +

      18 August 2026

      +
      +
      +

      We have a new release candidate! Lots of changes all over the tree, see the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.08-rc1 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05.1 released

      +

      15 July 2026

      +
      +
      +

      The 2026.05.1 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.05 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.05.1 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.16 released

      +

      15 July 2026

      +
      +
      +

      The 2025.02.16 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.15 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.16 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.15 released

      +

      16 June 2026

      +
      +
      +

      The 2025.02.15 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.14 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.15 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02.3 released

      +

      16 June 2026

      +
      +
      +

      The 2026.02.3 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.02.2 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.02.3 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05 released

      +

      8 June 2026

      +
      +
      +

      The stable 2026.05 release is out - Thanks to everyone + contributing and testing the release candidates. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.05 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05-rc4 released

      +

      4 June 2026

      +
      +
      +

      The Nice hackathon brought a large amount of (security) bugfixes, so here comes another + release candidate. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.05-rc4 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05-rc3 released

      +

      29 May 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.05-rc3 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05-rc2 released

      +

      21 May 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.05-rc2 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02.2 released

      +

      20 May 2026

      +
      +
      +

      The 2026.02.2 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.02.1 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.02.2 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.14 released

      +

      20 May 2026

      +
      +
      +

      The 2025.02.14 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.13 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.14 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.05-rc1 released

      +

      12 May 2026

      +
      +
      +

      We have a new release candidate! Lots of changes all over the tree, see the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.05-rc1 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02.1 released

      +

      21 April 2026

      +
      +
      +

      The 2026.02.1 bugfix release is out, fixing a number of important / + security related issues discovered since the 2026.02 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.02.1 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.13 released

      +

      21 April 2026

      +
      +
      +

      The 2025.02.13 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.12 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.13 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11.3 released

      +

      17 March 2026

      +
      +
      +

      The 2025.11.3 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.11.2 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.11.3 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.12 released

      +

      17 March 2026

      +
      +
      +

      The 2025.02.12 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.11 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.12 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02 released

      +

      4 March 2026

      +
      +
      +

      The stable 2026.02 release is out - Thanks to everyone + contributing and testing the release candidates. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2026.02 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02-rc3 released

      +

      2 March 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.02-rc3 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02-rc2 released

      +

      24 February 2026

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.02-rc2 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11.2 released

      +

      20 February 2026

      +
      +
      +

      The 2025.11.2 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.11 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.11.2 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.11 released

      +

      20 February 2026

      +
      +
      +

      The 2025.02.11 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.9 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.11 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2026.02-rc1 released

      +

      17 February 2026

      +
      +
      +

      We have a new release candidate! Lots of changes all over the tree, see the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2026.02-rc1 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      Marcus Hoffmann joins the maintainer team

      +

      5 February 2026

      +
      +
      +

      We are happy to announce that Marcus Hoffmann has joined + the team of Buildroot maintainers. For details, see the + announcement.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11.1 released

      +

      20 January 2026

      +
      +
      +

      The 2025.11.1 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.11 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.11.1 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.10 released

      +

      20 January 2026

      +
      +
      +

      The 2025.02.10 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.9 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.10 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11 released

      +

      11 December 2025

      +
      +
      +

      The stable 2025.11 release is out - Thanks to everyone + contributing and testing the release candidates. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.11 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.9 released

      +

      11 December 2025

      +
      +
      +

      The 2025.02.9 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.8 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.9 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.08.3 released

      +

      11 December 2025

      +
      +
      +

      The 2025.08.3 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.08.2 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.08.3 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11-rc2 released

      +

      30 November 2025

      +
      +
      +

      Another week, another release candidate with more cleanups and build fixes. See the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2025.11-rc2 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.08.2 released

      +

      20 November 2025

      +
      +
      +

      The 2025.08.2 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.08.1 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.08.2 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.02.8 released

      +

      20 November 2025

      +
      +
      +

      The 2025.02.8 bugfix release is out, fixing a number of important / + security related issues discovered since the 2025.02.7 release. See the + CHANGES + file for more details, read the + announcement + and go to the downloads page to pick up the + 2025.02.8 release.

      +
      +
      +
    • + +
    • +
      +
      +
      +

      2025.11-rc1 released

      +

      20 November 2025

      +
      +
      +

      We have a new release candidate! Lots of changes all over the tree, see the + CHANGES + file for more details.

      + +

      Go to the downloads page to pick up the + 2025.11-rc1 + release, and report any problems found to the + mailing list or + bug tracker.

      +
      +
      +
    • +
    • @@ -1006,7 +1768,7 @@

      LTS Sponsoring announced

      and join this initiative that's shaping the future of Buildroot.

      Find more information on the - Buildroot LTS Sponsoring + Buildroot LTS Sponsoring page.

      diff --git a/docs/website/sponsors.html b/docs/website/sponsors.html index ba11b4b081d..02622babec5 100644 --- a/docs/website/sponsors.html +++ b/docs/website/sponsors.html @@ -1,5 +1,7 @@ + +
      @@ -9,81 +11,133 @@

      The maintenance of the Long Term Support branch of Buildroot is possible thanks to the sponsors of the - Buildroot LTS Sponsorship + Buildroot LTS Sponsorship Program.

      Gold Sponsors

      -
      +
      +