poky/meta/recipes-devtools
Archana Polampalli e085cf0d53 go: fix CVE-2025-47906
If the PATH environment variable contains paths which are executables
(rather than just directories), passing certain strings to LookPath
("", ".", and ".."), can result in the binaries listed in the PATH
 being unexpectedly returned.

(From OE-Core rev: ed6df1883225ec08e637a0d7a15a6a5da4665d8d)

Signed-off-by: Archana Polampalli <archana.polampalli@windriver.com>
Signed-off-by: Steve Sakoman <steve@sakoman.com>
2025-10-13 12:42:58 -07:00
..
apt Revert "apt: runtime error: filename too long (tmpdir length)" 2024-07-23 06:05:47 -07:00
autoconf
autoconf-archive
automake automake: mark new_rt_path_for_test-driver.patch as Inappropriate 2024-08-01 06:08:09 -07:00
binutils binutils: fix build with gcc-15 2025-09-01 08:30:56 -07:00
bison
bootchart2
btrfs-tools btrfs-tools: upgrade 6.5.3 -> 6.7.1 2024-03-07 17:25:02 +00:00
ccache ccache: upgrade 4.9 -> 4.9.1 2024-03-01 09:28:51 +00:00
cdrtools cdrtools-native: fix build with gcc-14 2024-06-20 06:29:44 -07:00
chrpath
cmake cmake: fix build with gcc-15 on host 2025-09-01 08:30:56 -07:00
createrepo-c createrepo-c: upgrade 1.0.3 -> 1.0.4 2024-03-01 09:28:51 +00:00
debugedit
dejagnu dejagnu: Fix LICENSE 2024-09-19 05:11:35 -07:00
desktop-file-utils pulseaudio, desktop-file-utils: correct freedesktop.org -> www.freedesktop.org SRC_URI 2024-10-02 06:15:15 -07:00
devel-config
diffstat
distcc
dmidecode
dnf dnf: drop python3-iniparse from DEPENDS and RDEPENDS 2024-12-13 05:21:54 -08:00
docbook-xml
dosfstools
dpkg dpkg: patch CVE-2025-6297 2025-09-01 08:30:56 -07:00
dwarfsrcfiles
e2fsprogs e2fsprogs: Fix build failure with gcc 15 2025-08-22 05:59:55 -07:00
elfutils elfutils: fix build with gcc-15 2025-09-01 08:30:56 -07:00
erofs-utils
expect expect: fix native build with GCC 15 2025-10-09 12:16:46 -07:00
fdisk
file
flex bash/flex: Ensure BUILD_FLAGS doesn't leak onto target 2024-03-19 15:25:12 +00:00
gcc gcc: Upgrade to GCC 13.4 2025-06-20 08:38:12 -07:00
gdb gdb: Upgrade 14.1 -> 14.2 2024-03-05 12:24:49 +00:00
git buildtools-tarball: fix unbound variable issues under 'set -u' 2025-09-22 13:17:52 -07:00
gnu-config
go go: fix CVE-2025-47906 2025-10-13 12:42:58 -07:00
help2man
i2c-tools
icecc-create-env
icecc-toolchain
intltool
jquery
json-c
libcomps
libdnf libdnf: upgrade 0.73.1 -> 0.73.2 2024-09-09 06:08:10 -07:00
libedit libedit: Make docs generation deterministic 2024-09-19 05:11:35 -07:00
libmodulemd
librepo librepo: update 1.16.0 -> 1.17.0 2024-03-07 17:25:02 +00:00
libtool nativesdk-libtool: sanitize the script, remove buildpaths 2025-03-26 08:48:51 -07:00
llvm llvm: fix build with gcc-15 2025-09-30 08:01:59 -07:00
log4cplus
lua
m4 m4: Stick to C17 standard 2025-09-01 08:30:56 -07:00
make
makedevs makedevs: Fix matching uid/gid 2024-10-18 06:04:41 -07:00
meson meson: don't use deprecated pkgconfig variable 2024-07-17 05:36:14 -07:00
mmc mmc-utils: fix URL 2024-07-26 07:43:46 -07:00
mtd
mtools mtools: upgrade 4.0.48 -> 4.0.49 2025-07-29 07:59:53 -07:00
nasm nasm: Upgrade 2.16.01 -> 2.16.03 2024-08-10 06:34:25 -07:00
ninja ninja: fix build with python 3.13 2024-12-06 05:50:25 -08:00
opkg
opkg-utils
orc orc: set CVE_PRODUCT 2025-07-29 07:59:52 -07:00
patch
patchelf
perl perl: upgrade 5.38.2 -> 5.38.4 2025-05-02 08:20:12 -07:00
perl-cross perlcross: 1.6 -> 1.6.2 2025-05-02 08:20:11 -07:00
pkgconf pkg-config-native: pick additional search paths from $EXTRA_NATIVE_PKGCONFIG_PATH 2025-02-12 06:25:37 -08:00
pkgconfig pkgconfig: fix build with gcc-15 2025-09-01 08:30:56 -07:00
pseudo pseudo: Fix envp bug and add posix_spawn wrapper 2024-11-18 06:59:35 -08:00
python buildtools-tarball: fix unbound variable issues under 'set -u' 2025-09-22 13:17:52 -07:00
qemu qemu: set status of CVE-2024-7730 to fixed 2025-09-01 08:30:56 -07:00
quilt
repo repo: upgrade 2.41 -> 2.42 2024-03-07 17:25:03 +00:00
rpm rpm: keep leading `/' from sed operation 2025-09-09 09:08:09 -07:00
rsync rsync: fix CVE-2024-12747 2025-01-25 06:20:37 -08:00
ruby ruby-ptest : some ptest fixes 2025-09-01 08:30:57 -07:00
run-postinsts run-postinsts.service: Removed --no-reload to fix reload warning when users execute systemctl in the first boot. 2024-06-14 05:19:22 -07:00
rust rust-llvm: fix build with gcc-15 2025-09-01 08:30:56 -07:00
squashfs-tools
strace strace: download release tarballs from GitHub 2024-11-26 06:11:30 -08:00
subversion subversion: ignore CVE-2024-45720 2025-02-21 06:25:05 -08:00
swig swig: upgrade 4.2.0 -> 4.2.1 2024-03-01 09:28:52 +00:00
syslinux
systemd-bootchart
tcf-agent tcf-agent: correct the SRC_URI 2025-07-07 07:42:58 -07:00
tcltk tcl: skip io-13.6 test case 2024-11-26 06:11:30 -08:00
unfs3
unifdef unifdef: Don't use C23 constexpr keyword 2025-09-01 08:30:56 -07:00
vala vala: fix for gtk4 prior to 4.14 2024-03-18 12:21:45 +00:00
valgrind valgrind: Backport fixes from 3.22 branch 2024-03-30 22:22:19 +00:00
xmlto