Toggle navigation
Patchwork
OpenEmbedded Core Layer
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: none
| 21364 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Search
Archived
No
Yes
Both
Delegate
------
Nobody
gitpwbot
gitpwbot
gitpwbot
gitpwbot
gitpwbot
gitpwbot
gitpwbot
gitpwbot
akuster
akuster
akuster
akuster
mototimo
mototimo
mototimo
kraj
kraj
denix
denix
reatmon
reatmon
rpurdie
rpurdie
rpurdie
rpurdie
sakoman
rossburton
rossburton
jonmason
Apply
«
1
2
...
98
99
100
…
213
214
»
Patch
Series
A/R/T
S/W/F
Date
Submitter
Delegate
State
[dunfell,08/11] openssh: Add openssh-sftp-server to openssh RDEPENDS
[dunfell,01/11] grub2: Fix several security issue of integer underflow
- - -
-
-
-
2022-08-10
Steve Sakoman
Accepted
[dunfell,08/11] linux-yocto/5.4: update to v5.4.258
[dunfell,01/11] binutils 2.34: Fix CVE-2021-46174
- - -
-
-
-
2023-12-06
Steve Sakoman
Accepted
[dunfell,08/11] linux-yocto/5.4: update to v5.4.241
[dunfell,01/11] ffmpeg: Fix CVE-2022-48434
- - -
-
-
-
2023-06-08
Steve Sakoman
New
[dunfell,08/11] linux-yocto/5.4: update to v5.4.172
[dunfell,01/11] expat fix CVE-2022-22822 through CVE-2022-22827
- - -
-
-
-
2022-01-20
Steve Sakoman
Accepted
[dunfell,08/11] license_image.bbclass: close package.manifest file
[dunfell,01/11] vim: Upgrade 8.2.4524 -> 8.2.4681
- - -
-
-
-
2022-04-16
Steve Sakoman
Accepted
[dunfell,08/11] kernel-arch: Fix buildpaths leaking into external module compiles
[dunfell,01/11] qemu: CVE-2020-27821 heap buffer overflow in msix_table_mmio_write
- - -
-
-
-
2022-08-18
Steve Sakoman
Accepted
[dunfell,08/11] golang: ignore CVE-2021-33194
[dunfell,01/11] golang: fix CVE-2021-33195
- - -
-
-
-
2022-11-17
Ralph Siemsen
Accepted
[dunfell,08/11] ghostscript: Backport fix CVE-2023-43115
[dunfell,01/11] cups: Backport fix for CVE-2023-32360 and CVE-2023-4504
- - -
-
-
-
2023-10-10
Steve Sakoman
Accepted
[dunfell,08/11] externalsrc.bbclass: fix git repo detection
[dunfell,01/11] bluez: CVE-2022-3637 A DoS exists in monitor/jlink.c
- - -
-
-
-
2022-11-12
Steve Sakoman
Accepted
[dunfell,08/11] expat: Update HOMEPAGE to current url
[dunfell,01/11] valgrind: skip flakey ptest (gdbserver_tests/hginfo)
- - -
-
-
-
2022-01-13
Steve Sakoman
Accepted
[dunfell,08/11] cve-check.bbclass: Added do_populate_sdk[recrdeptask].
[dunfell,01/11] ruby: Upgrade ruby to 2.7.6 for security fix
- - -
-
-
-
2022-06-02
Steve Sakoman
Accepted
[dunfell,08/10] recipetool: Set master branch only as fallback
[dunfell,01/10] cve-extra-exclusions: add db CVEs to exclusion list
- - -
-
-
-
2021-12-13
Steve Sakoman
Accepted
[dunfell,08/10] linux-yocto/5.4: update to v5.4.248
[dunfell,01/10] libjpeg-turbo: CVE-2020-35538 Null pointer dereference in jcopy_sample_rows() funct…
- - -
-
-
-
2023-06-30
Steve Sakoman
Accepted
[dunfell,08/10] libxpm: upgrade to 3.5.17
[dunfell,01/10] libtiff: Add fix for tiffcrop CVE-2023-1916
- - -
-
-
-
2023-10-17
Steve Sakoman
Accepted
[dunfell,08/10] gnu-config: update SRC_URI
[dunfell,01/10] libsolv: fix CVE: CVE-2021-44568-71 and CVE-2021-44573-77
- - -
-
-
-
2022-03-27
Steve Sakoman
Accepted
[dunfell,07/50] grub: fix a dangling memory pointer
[dunfell,01/50] openssl: Add fix for CVE-2021-4160
- - -
-
-
-
2022-02-25
Steve Sakoman
Accepted
[dunfell,07/42] Revert "vim: fix 2021-3796"
[dunfell,01/42] linux-yocto/5.4: update to v5.4.154
- - -
-
-
-
2021-11-28
Steve Sakoman
Accepted
[dunfell,07/23] vim: update 9.0.1211 -> 9.0.1293 to resolve open CVEs
[dunfell,01/23] curl: fix CVE-2022-43552 Use-after-free triggered by an HTTP proxy deny response
- - -
-
-
-
2023-03-07
Steve Sakoman
Accepted
[dunfell,07/22] tiff: fix multiple CVEs
[dunfell,01/22] ruby/cgi-gem: CVE-2021-33621 HTTP response splitting in CGI
- - -
-
-
-
2023-08-13
Steve Sakoman
Accepted
[dunfell,07/21] golang: fix CVE-2021-33195
[dunfell,01/21] sudo: CVE-2022-43995 heap-based overflow with very small passwords
- - -
-
-
-
2022-11-19
Steve Sakoman
Accepted
[dunfell,07/20] expat: add missing Upstream-status, CVE tag and sign-off to CVE-2021-46143.patch
[dunfell,01/20] glibc: update to lastest 2.31 release HEAD
- - -
-
-
-
2022-02-03
Steve Sakoman
Accepted
[dunfell,07/20] binutils: Fix CVE-2021-45078
[dunfell,01/20] expat: fix CVE-2022-23990
- - -
-
-
-
2022-02-21
Steve Sakoman
Accepted
[dunfell,07/18] libsolv: update tag for missing CVEs
[dunfell,01/18] cve-extra-exclusions: add db CVEs to exclusion list
- - -
-
-
-
2021-12-03
Steve Sakoman
Accepted
[dunfell,07/18] expat: fix CVE-2022-25314
[dunfell,01/18] libarchive: Fix for CVE-2021-36976
- - -
-
-
-
2022-03-04
Steve Sakoman
Accepted
[dunfell,07/18] cairo: update patch for CVE-2019-6461 with upstream solution
[dunfell,01/18] grub2: CVE-2022-28735 shim_lock verifier allows non-kernel files to be loaded
- - -
-
-
-
2023-01-01
Steve Sakoman
Accepted
[dunfell,07/17] zlib: Backport fix for CVE-2023-45853
[dunfell,01/17] kexec-tools: Ignore Fedora/RedHat specific CVE-2021-20269
- - -
-
-
-
2023-11-15
Steve Sakoman
Accepted
[dunfell,07/17] go.bbclass: don't use test to check output from ls
[dunfell,01/17] cups: Fix CVE-2023-34241
- - -
-
-
-
2023-07-08
Steve Sakoman
New
[dunfell,07/16] quilt: use upstreamed faildiff.test fix
[dunfell,01/16] qemu: Fix slirp determinism issue
- - -
-
-
-
2023-02-20
Steve Sakoman
Accepted
[dunfell,07/16] QEMU: CVE-2022-4144 QXL: qxl_phys2virt unsafe address translation can lead to out-o…
[dunfell,01/16] cve-update-db-native: Allow to overrule the URL in a bbappend.
- - -
-
-
-
2023-01-25
Steve Sakoman
New
[dunfell,07/15] Revert "qemu: Backport fix for CVE-2023-0330"
[dunfell,01/15] kexec-tools: Ignore Fedora/RedHat specific CVE-2021-20269
- - -
-
-
-
2023-11-11
Steve Sakoman
Accepted
[dunfell,07/14] uninative: Upgrade to 3.9 to include glibc 2.37
[dunfell,01/14] cups: Fix CVE-2023-32324
- - -
-
-
-
2023-06-22
Steve Sakoman
New
[dunfell,07/14] systemd: Fix systemd when used with busybox less
[dunfell,01/14] libarchive: fix CVE-2022-26280
- - -
-
-
-
2023-03-21
Steve Sakoman
Accepted
[dunfell,07/14] resulttool/resultutils: allow index generation despite corrupt json
[dunfell,01/14] bind: Backport fix for CVE-2023-2828
- - -
-
-
-
2023-09-12
Steve Sakoman
Accepted
[dunfell,07/14] linux-firmware: package firmare for Dragonboard 410c
[dunfell,01/14] curl: Backport fix CVE-2023-32001
- - -
-
-
-
2023-08-25
Steve Sakoman
Accepted
[dunfell,07/14] libxslt: Mark CVE-2022-29824 as not applying
[dunfell,01/14] Revert "openssl: Backport fix for ptest cert expiry"
- - -
-
-
-
2022-06-08
Steve Sakoman
Accepted
[dunfell,07/14] efivar: change branch name to main
[dunfell,01/14] cve-extra-exclusions: Clean up and ignore three CVEs (2xqemu and nasm)
- - -
-
-
-
2022-07-07
Steve Sakoman
New
[dunfell,07/14] cve-update-db-native: let the user to drive the update interval
[dunfell,01/14] fribidi: Add fix for CVE-2022-25308, CVE-2022-25309 and CVE-2022-25310
- - -
-
-
-
2022-05-11
Steve Sakoman
Accepted
[dunfell,07/14] cve-check: Don't use f-strings
[dunfell,01/14] libtiff: CVE-2022-34526 A stack overflow was discovered
- - -
-
-
-
2022-08-29
Steve Sakoman
New
[dunfell,07/14] bootchart2: remove wait_boot logic
[dunfell,01/14] bluez: fix CVE-2021-0129
- - -
-
-
-
2021-12-22
Steve Sakoman
Accepted
[dunfell,07/13] python3: upgrade 3.8.12 -> 3.8.13
[dunfell,01/13] libxml2: backport fix for CVE-2022-23308
- - -
-
-
-
2022-03-21
Steve Sakoman
Accepted
[dunfell,07/13] golang: CVE-2022-41715 regexp/syntax: limit memory used by parsing regexps
[dunfell,01/13] xserver-xorg: backport fixes for CVE-2022-3550, CVE-2022-3551 and CVE-2022-3553
- - -
-
-
-
2022-12-16
Steve Sakoman
Accepted
[dunfell,07/13] go: Fix CVE-2023-39318 and CVE-2023-39319
[dunfell,01/13] mdadm: Backport fix for CVE-2023-28736
- - -
-
-
-
2023-09-30
Steve Sakoman
Accepted
[dunfell,07/13] glibc: stable 2.31 branch updates.
[dunfell,01/13] libx11: Fix CVE-2023-3138 for dunfell branch
- - -
-
-
-
2023-07-18
Steve Sakoman
Accepted
[dunfell,07/13] avahi: backport Debian patches to fix multiple CVE's
[dunfell,01/13] libx11: Fix for CVE-2023-43785 CVE-2023-43786 and CVE-2023-43787
- - -
-
-
-
2023-11-28
Steve Sakoman
Accepted
[dunfell,07/12] weston: Backport patches to always activate the top-level surface
[dunfell,01/12] grub: fix CVE-2020-14372 and CVE-2020-27779
- - -
-
-
-
2022-01-09
Steve Sakoman
Accepted
[dunfell,07/12] rootfs.py: close kernel_abi_ver_file
[dunfell,01/12] cups: fix CVE-2022-26691
- - -
-
-
-
2022-06-19
Steve Sakoman
Accepted
[dunfell,07/12] oeqa/selftest/cve_check: add tests for Ignored and partial reports
[dunfell,01/12] golang: CVE-2022-24675 encoding/pem: fix stack overflow in Decode
- - -
-
-
-
2022-06-30
Steve Sakoman
Accepted
[dunfell,07/12] linux-yocto/5.4: update to v5.4.229
[dunfell,01/12] go: fix CVE-2022-1962 go/parser stack exhaustion in all Parse* functions
- - -
-
-
-
2023-02-04
Steve Sakoman
New
[dunfell,07/12] cve-update-nvd2-native: Remove rejected CVE from database
[dunfell,01/12] libxml2: Backport fix for CVE-2024-25062
- - -
-
-
-
2024-03-20
Steve Sakoman
sakoman
Accepted
[dunfell,07/11] wic: use shutil.which
[dunfell,01/11] valgrind: skip flakey ptest (gdbserver_tests/hginfo)
- - -
-
-
-
2022-01-13
Steve Sakoman
Accepted
[dunfell,07/11] vim: upgrade 9.0.2068 -> 9.0.2130
[dunfell,01/11] binutils 2.34: Fix CVE-2021-46174
- - -
-
-
-
2023-12-06
Steve Sakoman
Accepted
[dunfell,07/11] vim: Upgrade 8.2.4912 -> 8.2.5034 to fix 9 CVEs
[dunfell,01/11] ruby: Upgrade ruby to 2.7.6 for security fix
- - -
-
-
-
2022-06-02
Steve Sakoman
Accepted
[dunfell,07/11] pseudo: Fix handling of absolute links
[dunfell,01/11] vim: Upgrade 8.2.4524 -> 8.2.4681
- - -
-
-
-
2022-04-16
Steve Sakoman
Accepted
[dunfell,07/11] perf: Depend on native setuptools3
[dunfell,01/11] git: fix CVE-2023-29007
- - -
-
-
-
2023-05-20
Steve Sakoman
New
[dunfell,07/11] openssl: upgrade 1.1.1q to 1.1.1s
[dunfell,01/11] bluez: CVE-2022-3637 A DoS exists in monitor/jlink.c
- - -
-
-
-
2022-11-12
Steve Sakoman
Accepted
[dunfell,07/11] linux-yocto/5.4: update to v5.4.240
[dunfell,01/11] ffmpeg: Fix CVE-2022-48434
- - -
-
-
-
2023-06-08
Steve Sakoman
New
[dunfell,07/11] linux-yocto/5.4: update to v5.4.171
[dunfell,01/11] expat fix CVE-2022-22822 through CVE-2022-22827
- - -
-
-
-
2022-01-20
Steve Sakoman
Accepted
[dunfell,07/11] linux-firwmare: restore WHENCE_CHKSUM variable
[dunfell,01/11] qemu: CVE-2020-27821 heap buffer overflow in msix_table_mmio_write
- - -
-
-
-
2022-08-18
Steve Sakoman
Accepted
[dunfell,07/11] libpcre2 : Follow up fix CVE-2022-1586
[dunfell,01/11] cups: Backport fix for CVE-2023-32360 and CVE-2023-4504
- - -
-
-
-
2023-10-10
Steve Sakoman
Accepted
[dunfell,07/11] libmodule-build-perl: Use env utility to find perl interpreter
[dunfell,01/11] grub2: Fix several security issue of integer underflow
- - -
-
-
-
2022-08-10
Steve Sakoman
Accepted
[dunfell,07/11] golang: ignore CVE-2022-29804
[dunfell,01/11] golang: fix CVE-2021-33195
- - -
-
-
-
2022-11-17
Ralph Siemsen
Accepted
[dunfell,07/10] xorg-lib-common: Add variable to set tarball type
[dunfell,01/10] libtiff: Add fix for tiffcrop CVE-2023-1916
- - -
-
-
-
2023-10-17
Steve Sakoman
Accepted
[dunfell,07/10] runqemu: check the qemu PID has been set before kill()ing it
[dunfell,01/10] cve-extra-exclusions: add db CVEs to exclusion list
- - -
-
-
-
2021-12-13
Steve Sakoman
Accepted
[dunfell,07/10] linux-yocto/5.4: update to v5.4.247
[dunfell,01/10] libjpeg-turbo: CVE-2020-35538 Null pointer dereference in jcopy_sample_rows() funct…
- - -
-
-
-
2023-06-30
Steve Sakoman
New
[dunfell,07/10] libxml2: fix CVE-2022-23308 regression
[dunfell,01/10] libsolv: fix CVE: CVE-2021-44568-71 and CVE-2021-44573-77
- - -
-
-
-
2022-03-27
Steve Sakoman
Accepted
[dunfell,06/50] grub: add a fix for a possible NULL dereference
[dunfell,01/50] openssl: Add fix for CVE-2021-4160
- - -
-
-
-
2022-02-25
Steve Sakoman
Accepted
[dunfell,06/42] python3: upgrade 3.8.11 -> 3.8.12
[dunfell,01/42] linux-yocto/5.4: update to v5.4.154
- - -
-
-
-
2021-11-28
Steve Sakoman
Accepted
[dunfell,06/23] tar: CVE-2022-48303
[dunfell,01/23] curl: fix CVE-2022-43552 Use-after-free triggered by an HTTP proxy deny response
- - -
-
-
-
2023-03-07
Steve Sakoman
Accepted
[dunfell,06/22] libpcre2: patch CVE-2022-41409
[dunfell,01/22] ruby/cgi-gem: CVE-2021-33621 HTTP response splitting in CGI
- - -
-
-
-
2023-08-13
Steve Sakoman
Accepted
[dunfell,06/21] libxml2: Fix CVE-2022-40304
[dunfell,01/21] sudo: CVE-2022-43995 heap-based overflow with very small passwords
- - -
-
-
-
2022-11-19
Steve Sakoman
Accepted
[dunfell,06/20] lighttpd: backport a fix for CVE-2022-22707
[dunfell,01/20] expat: fix CVE-2022-23990
- - -
-
-
-
2022-02-21
Steve Sakoman
Accepted
[dunfell,06/20] expat: fix CVE-2022-23852
[dunfell,01/20] glibc: update to lastest 2.31 release HEAD
- - -
-
-
-
2022-02-03
Steve Sakoman
Accepted
[dunfell,06/18] ppp: fix CVE-2022-4603
[dunfell,01/18] grub2: CVE-2022-28735 shim_lock verifier allows non-kernel files to be loaded
- - -
-
-
-
2023-01-01
Steve Sakoman
Accepted
[dunfell,06/18] ncurses: Fix for CVE-2021-39537
[dunfell,01/18] cve-extra-exclusions: add db CVEs to exclusion list
- - -
-
-
-
2021-12-03
Steve Sakoman
Accepted
[dunfell,06/18] expat: fix CVE-2022-25313
[dunfell,01/18] libarchive: Fix for CVE-2021-36976
- - -
-
-
-
2022-03-04
Steve Sakoman
Accepted
[dunfell,06/17] oe-depends-dot: Handle new format for task-depends.dot
[dunfell,01/17] cups: Fix CVE-2023-34241
- - -
-
-
-
2023-07-08
Steve Sakoman
New
[dunfell,06/17] libwebp: Fix CVE-2023-4863
[dunfell,01/17] kexec-tools: Ignore Fedora/RedHat specific CVE-2021-20269
- - -
-
-
-
2023-11-15
Steve Sakoman
Accepted
[dunfell,06/16] quilt: fix intermittent failure in faildiff.test
[dunfell,01/16] qemu: Fix slirp determinism issue
- - -
-
-
-
2023-02-20
Steve Sakoman
Accepted
[dunfell,06/16] cairo: fix CVE patches assigned wrong CVE number
[dunfell,01/16] cve-update-db-native: Allow to overrule the URL in a bbappend.
- - -
-
-
-
2023-01-25
Steve Sakoman
New
[dunfell,06/15] zlib: Backport fix for CVE-2023-45853
[dunfell,01/15] kexec-tools: Ignore Fedora/RedHat specific CVE-2021-20269
- - -
-
-
-
2023-11-11
Steve Sakoman
Accepted
[dunfell,06/14] yocto-uninative: Update to 4.3
[dunfell,01/14] bind: Backport fix for CVE-2023-2828
- - -
-
-
-
2023-09-12
Steve Sakoman
Accepted
[dunfell,06/14] vim: set modified-by to the recipe MAINTAINER
[dunfell,01/14] libarchive: fix CVE-2022-26280
- - -
-
-
-
2023-03-21
Steve Sakoman
Accepted
[dunfell,06/14] uninative: Upgrade to 3.8.1 to include libgcc
[dunfell,01/14] cups: Fix CVE-2023-32324
- - -
-
-
-
2023-06-22
Steve Sakoman
New
[dunfell,06/14] linux-yocto/5.4: update to v5.4.203
[dunfell,01/14] cve-extra-exclusions: Clean up and ignore three CVEs (2xqemu and nasm)
- - -
-
-
-
2022-07-07
Steve Sakoman
New
[dunfell,06/14] linux-firmware: upgrade 20230515 -> 20230625
[dunfell,01/14] curl: Backport fix CVE-2023-32001
- - -
-
-
-
2023-08-25
Steve Sakoman
Accepted
[dunfell,06/14] libxslt: Fix CVE-2021-30560
[dunfell,01/14] Revert "openssl: Backport fix for ptest cert expiry"
- - -
-
-
-
2022-06-08
Steve Sakoman
Accepted
[dunfell,06/14] libxml2: Add fix for CVE-2016-3709
[dunfell,01/14] libtiff: CVE-2022-34526 A stack overflow was discovered
- - -
-
-
-
2022-08-29
Steve Sakoman
Accepted
[dunfell,06/14] dropbear: Fix CVE-2020-36254
[dunfell,01/14] bluez: fix CVE-2021-0129
- - -
-
-
-
2021-12-22
Steve Sakoman
New
[dunfell,06/14] cve-update-db-native: update the CVE database once a day only
[dunfell,01/14] fribidi: Add fix for CVE-2022-25308, CVE-2022-25309 and CVE-2022-25310
- - -
-
-
-
2022-05-11
Steve Sakoman
Accepted
[dunfell,06/13] tzdata: upgrade to 2023c
[dunfell,01/13] libx11: Fix CVE-2023-3138 for dunfell branch
- - -
-
-
-
2023-07-18
Steve Sakoman
Accepted
[dunfell,06/13] qemu: fix CVE-2020-24165
[dunfell,01/13] mdadm: Backport fix for CVE-2023-28736
- - -
-
-
-
2023-09-30
Steve Sakoman
Accepted
[dunfell,06/13] openssl: upgrade 1.1.1l -> 1.1.1n
[dunfell,01/13] libxml2: backport fix for CVE-2022-23308
- - -
-
-
-
2022-03-21
Steve Sakoman
Accepted
[dunfell,06/13] dropbear: fix CVE-2021-36369
[dunfell,01/13] xserver-xorg: backport fixes for CVE-2022-3550, CVE-2022-3551 and CVE-2022-3553
- - -
-
-
-
2022-12-16
Steve Sakoman
Accepted
[dunfell,06/13] bind: Backport fix for CVE-2023-3341
[dunfell,01/13] libx11: Fix for CVE-2023-43785 CVE-2023-43786 and CVE-2023-43787
- - -
-
-
-
2023-11-28
Steve Sakoman
Accepted
[dunfell,06/12] oeqa/selftest/tinfoil: Update to use test command
[dunfell,01/12] grub: fix CVE-2020-14372 and CVE-2020-27779
- - -
-
-
-
2022-01-09
Steve Sakoman
Accepted
[dunfell,06/12] lttng-modules: fix build with 5.4.229 kernel
[dunfell,01/12] go: fix CVE-2022-1962 go/parser stack exhaustion in all Parse* functions
- - -
-
-
-
2023-02-04
Steve Sakoman
New
[dunfell,06/12] license.bbclass: Bound beginline and endline in copy_license_files()
[dunfell,01/12] cups: fix CVE-2022-26691
- - -
-
-
-
2022-06-19
Steve Sakoman
Accepted
[dunfell,06/12] grub2: CVE-2021-3981 Incorrect permission in grub.cfg allow unprivileged user to re…
[dunfell,01/12] golang: CVE-2022-24675 encoding/pem: fix stack overflow in Decode
- - -
-
-
-
2022-06-30
Steve Sakoman
Accepted
[dunfell,06/12] cve-update-nvd2-native: Fix CVE configuration update
[dunfell,01/12] libxml2: Backport fix for CVE-2024-25062
- - -
-
-
-
2024-03-20
Steve Sakoman
sakoman
Accepted
[dunfell,06/11] xdg-utils: Fix CVE-2022-4055
[dunfell,01/11] cups: Backport fix for CVE-2023-32360 and CVE-2023-4504
- - -
-
-
-
2023-10-10
Steve Sakoman
Accepted
«
1
2
...
98
99
100
…
213
214
»