13 Sep
2019
13 Sep
'19
13:04
Hi, I will try to send e-mails to this list in a semi-automated way, when a new Tumbleweed snapshot is released for ARM architecture, similarly to what is done for x86 on openSUSE-factory mailing list. As this is the 1st email to announce a new snapshot, I am few days late! As explained below, the changes are limited to packages from aarch64 DVD ISO. --- Please note that this mail was generated by a script. The described changes are computed based on the aarch64 DVD. The full online repo contains too many changes to be listed here. Please check the known defects of this snapshot before upgrading: https://openqa.opensuse.org/tests/overview?distri=opensuse&groupid=3&version=Tumbleweed&build=20190907 Please do not reply to this email to report issues, rather file a bug on bugzilla.opensuse.org. For more information on filing bugs please see https://en.opensuse.org/openSUSE:Submitting_bug_reports Packages changed: ImageMagick (7.0.8.61 -> 7.0.8.63) MozillaFirefox (68.0.2 -> 68.1.0) SDL SDL2 (2.0.9 -> 2.0.10) aaa_base (84.87+git20190718.ce933cb -> 84.87+git20190822.82a17f1) alpine apache2 at attr awesfx bash bc bison bluedevil5 (5.16.4 -> 5.16.5) breeze (5.16.4 -> 5.16.5) breeze-gtk (5.16.4 -> 5.16.5) breeze4-style (5.16.4 -> 5.16.5) busybox ceph (14.2.2.348+gf6da3d1d18 -> 14.2.2.354+g8878cf2360) cronie dhcp discover (5.16.4 -> 5.16.5) djvulibre dmidecode dracut (049+git104.1244eed7 -> 049+git108.6c9d1156) drbd-utils drkonqi5 (5.16.4 -> 5.16.5) exiv2 (0.27.1 -> 0.27.2) filesystem flac (1.3.2 -> 1.3.3) fltk fwupd gamin-devel glib-networking gzip hplip hwinfo ibus (1.5.20 -> 1.5.21) iproute2 (5.1 -> 5.2) java-11-openjdk (11.0.3.0 -> 11.0.4.0) java-12-openjdk (12.0.1.0 -> 12.0.2.0) kactivitymanagerd (5.16.4 -> 5.16.5) kcm_sddm (5.16.4 -> 5.16.5) kde-gtk-config5 (5.16.4 -> 5.16.5) kde-user-manager (5.16.4 -> 5.16.5) kdevelop5 (5.4.1 -> 5.4.2) kernel-64kb (5.2.10 -> 5.2.13) kernel-source (5.2.10 -> 5.2.13) kgamma5 (5.16.4 -> 5.16.5) khotkeys5 (5.16.4 -> 5.16.5) kinfocenter5 (5.16.4 -> 5.16.5) kmenuedit5 (5.16.4 -> 5.16.5) kscreen5 (5.16.4 -> 5.16.5) kscreenlocker (5.16.4 -> 5.16.5) ksshaskpass5 (5.16.4 -> 5.16.5) ksysguard5 (5.16.4 -> 5.16.5) kwayland-integration (5.16.4 -> 5.16.5) kwin5 (5.16.4 -> 5.16.5) lapack ldb (1.5.4 -> 1.5.5) libcue (2.2.0 -> 2.2.1) libdb-4_8 libgcrypt (1.8.4 -> 1.8.5) libgnome-games-support (1.4.3 -> 1.4.4) libkdecoration2 (5.16.4 -> 5.16.5) libkscreen2 (5.16.4 -> 5.16.5) libksysguard5 (5.16.4 -> 5.16.5) libktorrent (2.1 -> 2.1.1) libmbim libogg (1.3.3 -> 1.3.4) libpcap libpeas libqt5-qtbase libqt5-qtimageformats libqt5-qttools libreoffice (6.3.0.4 -> 6.3.1.1) librevenge libsodium libsolv (0.7.5 -> 0.7.6) libtool libusb-1_0 (1.0.22 -> 1.0.23) libvdpau (1.2 -> 1.3) libwebp (1.0.2 -> 1.0.3) libyajl libyui-qt (2.50.4 -> 2.50.5) libzio lua51 lua53 milou5 (5.16.4 -> 5.16.5) mozilla-nspr mozilla-nss (3.44.1 -> 3.45) mpc multipath-tools (0.8.2+11+suse.0f6a649 -> 0.8.2+26+suse.d884195) nagios ncurses newt nghttp2 nodejs12 (12.8.1 -> 12.10.0) obs-service-extract_file (0.3 -> 0.4) obs-service-tar_scm (0.10.9.1559745964.22c86cd -> 0.10.10.1566390389.9f923f8) openldap2 opie os-prober ovmf (201905 -> 201908) oxygen5 (5.16.4 -> 5.16.5) package-update-indicator (4 -> 5) patterns-base pcre perl-Date-Manip (6.77 -> 6.78) perl-HTTP-Daemon (6.05 -> 6.06) perl-Net-DNS (1.20 -> 1.21) perl-RPC-XML (0.79 -> 0.80) perl-Test-Simple (1.302166 -> 1.302167) perl-YAML-LibYAML (0.79 -> 0.80) perl-namespace-autoclean (0.28 -> 0.29) phonon4qt5 (4.10.3 -> 4.11.0) phonon4qt5-backend-gstreamer (4.9.1 -> 4.10.0) php7 (7.3.8 -> 7.3.9) plasma-browser-integration (5.16.4 -> 5.16.5) plasma5-addons (5.16.4 -> 5.16.5) plasma5-integration (5.16.4 -> 5.16.5) plasma5-pa (5.16.4 -> 5.16.5) plasma5-pk-updates polkit-kde-agent-5 (5.16.4 -> 5.16.5) postgresql10 (10.9 -> 10.10) postgresql11 (11.4 -> 11.5) postgresql11-libs (11.4 -> 11.5) python-jedi (0.13.3 -> 0.15.1) python-numpy (1.17.0 -> 1.17.1) python-pycups python2-numpy (1.16.4 -> 1.16.5) readline rubygem-addressable (2.6.0 -> 2.7.0) rubygem-libyui-rake (0.1.14 -> 0.1.19) sbc shadow sharutils slang snapper speexdsp (1.2~rc3 -> 1.2.0) srt (1.3.3 -> 1.3.4) suitesparse swig (3.0.12 -> 4.0.0) sysprof tcpd tcsh unbound (1.9.2 -> 1.9.3) vim virt-manager wavpack (5.1.0~git20190420.22977b2 -> 5.1.0+71.22977b2) webkit2gtk3 (2.24.3 -> 2.24.4) webrtc-audio-processing xdg-desktop-portal-kde (5.16.4 -> 5.16.5) xorg-x11-server xz yast2 (4.2.18 -> 4.2.19) yast2-hardware-detection (4.1.0 -> 4.1.1) yast2-nfs-client (4.2.0 -> 4.2.2) yast2-ntp-client (4.2.2 -> 4.2.3) yast2-packager (4.2.23 -> 4.2.24) yast2-slp (4.1.0 -> 4.1.1) yast2-trans (84.87.20190825.25c7d8a3aa -> 84.87.20190901.3784ecca69) zstd (1.4.2 -> 1.4.3) zypper (1.14.29 -> 1.14.30) === Details === ==== ImageMagick ==== Version update (7.0.8.61 -> 7.0.8.63) Subpackages: ImageMagick-config-7-SUSE ImageMagick-extra libMagick++-7_Q16HDRI4 libMagickCore-7_Q16HDRI6 libMagickWand-7_Q16HDRI6 perl-PerlMagick - version update to 7.0.8.63 * Properly identify the DNG and AI image format (reference https://imagemagick.org/discourse-server/viewtopic.php?f=3&t=36581). * Added option to limit the maximum point size with -define caption:max-pointsize=pointsize. * Corrected JP2 numresolution calculation (reference: https://github.com/ImageMagick/ImageMagick/issues/1673) ==== MozillaFirefox ==== Version update (68.0.2 -> 68.1.0) - Mozilla Firefox 68.1.0 MFSA 2019-26 * CVE-2019-11751 (bmo#1572838; Windows only) Malicious code execution through command line parameters * CVE-2019-11746 (bmo#1564449) Use-after-free while manipulating video * CVE-2019-11744 (bmo#1562033) XSS by breaking out of title and textarea elements using innerHTML * CVE-2019-11742 (bmo#1559715) Same-origin policy violation with SVG filters and canvas to steal cross-origin images * CVE-2019-11736 (bmo#1551913, bmo#1552206; Windows only)) File manipulation and privilege escalation in Mozilla Maintenance Service * CVE-2019-11753 (bmo#1574980; Windows only) Privilege escalation with Mozilla Maintenance Service in custom Firefox installation location * CVE-2019-11752 (bmo#1501152) Use-after-free while extracting a key value in IndexedDB * CVE-2019-9812 (bmo#1538008, bmo#1538015) Sandbox escape through Firefox Sync * CVE-2019-11743 (bmo#1560495) Cross-origin access to unload event attributes * CVE-2019-11748 (bmo#1564588) Persistence of WebRTC permissions in a third party context * CVE-2019-11749 (bmo#1565374) Camera information available without prompting using getUserMedia * CVE-2019-11750 (bmo#1568397) Type confusion in Spidermonkey * CVE-2019-11738 (bmo#1452037) Content security policy bypass through hash-based sources in directives * CVE-2019-11747 (bmo#1564481) 'Forget about this site' removes sites from pre-loaded HSTS list * CVE-2019-11735i (bmo#1561404,bmo#1561484,bmo#1568047,bmo#1561912, bmo#1565744,bmo#1568858,bmo#1570358) Memory safety bugs fixed in Firefox 69 and Firefox ESR 68.1 * CVE-2019-11740 (bmo#1563133,bmo#1573160) Memory safety bugs fixed in Firefox 69, Firefox ESR 68.1, and Firefox ESR 60.9 - switched package to ESR branch - added mozilla-bmo1568145.patch to make builds reproducible - removed upstreamed patch mozilla-gcc-internal-compiler-error.patch ==== SDL ==== - Actually apply CVE-2019-7637.patch. - Add patches for several heap-based buffer overreads: * CVE-2019-7577.patch (boo#1124800 CVE-2019-7577) * CVE-2019-7575.patch (boo#1124806 CVE-2019-7575) * CVE-2019-7574.patch (boo#1124803 CVE-2019-7574) * CVE-2019-7572.patch (boo#1124806 CVE-2019-7572) * CVE-2019-7637.patch (boo#1124825 CVE-2019-7637) * CVE-2019-7578.patch (boo#1125099 boo#1124799 CVE-2019-7578 CVE-2019-7573) * CVE-2019-7635.patch (boo#1124827 CVE-2019-7635) * CVE-2019-7636.patch (boo#1124826 boo#1124824 CVE-2019-7636 CVE-2019-7638) * CVE-2019-13616.patch (boo#1141844 CVE-2019-13616) - Do not provide an empty static archive. ==== SDL2 ==== Version update (2.0.9 -> 2.0.10) - Update sdl2-symvers.patch for SDL 2.0.9/2.0.10. - Add CVE-2019-13616.patch: fix heap buffer overflow when reading a crafted bmp file (boo#1141844 CVE-2019-13616). - Drop libSDL2main.a from libSDL-2_0-devel. It is only used during build. - Use FAT LTO objects in order to provide proper static library. - Update to version 2.0.10 * The SDL_RW* macros have been turned into functions that are available only in 2.0.10 and onward * Added SDL_SIMDGetAlignment(), SDL_SIMDAlloc(), and SDL_SIMDFree(), to allocate memory aligned for SIMD operations for the current CPU * Added SDL_RenderDrawPointF(), SDL_RenderDrawPointsF(), SDL_RenderDrawLineF(), SDL_RenderDrawLinesF(), SDL_RenderDrawRectF(), SDL_RenderDrawRectsF(), SDL_RenderFillRectF(), SDL_RenderFillRectsF(), SDL_RenderCopyF(), SDL_RenderCopyExF(), to allow floating point precision in the SDL rendering API. * Added SDL_GetTouchDeviceType() to get the type of a touch device, which can be a touch screen or a trackpad in relative or absolute coordinate mode. * The SDL rendering API now uses batched rendering by default, for improved performance * Added SDL_RenderFlush() to force batched render commands to execute, if you're going to mix SDL rendering with native rendering * Added the hint SDL_HINT_RENDER_BATCHING to control whether batching should be used for the rendering API. This defaults to "1" if you don't specify what rendering driver to use when creating the renderer. * Added the hint SDL_HINT_EVENT_LOGGING to enable logging of SDL events for debugging purposes * Added the hint SDL_HINT_GAMECONTROLLERCONFIG_FILE to specify a file that will be loaded at joystick initialization with game controller bindings * Added the hint SDL_HINT_MOUSE_TOUCH_EVENTS to control whether SDL will synthesize touch events from mouse events * Improved handling of malformed WAVE and BMP files, fixing potential security exploits (boo#1142031 CVE-2019-13626) * Removed the Mir video driver in favor of Wayland - Refreshed sdl2-symvers.patch ==== aaa_base ==== Version update (84.87+git20190718.ce933cb -> 84.87+git20190822.82a17f1) Subpackages: aaa_base-extras - Update to version 84.87+git20190822.82a17f1: * add sysctl.d/51-network.conf to tighten network security a bit see also (boo#1146866) (jira#SLE-9132) ==== alpine ==== Subpackages: pico - Add return-values.diff to unbreak build. - Use more macros for standard dirs in the build recipe. ==== apache2 ==== Subpackages: apache2-devel apache2-doc apache2-example-pages apache2-prefork apache2-utils - Remove redundant metadata from summary. ==== at ==== - atd.pamd: integrate pam_keyinit pam module [bsc#1144041] ==== attr ==== Subpackages: libattr1 - Use FAT LTO objects in order to provide proper static library. ==== awesfx ==== - Fix the build error and warning: Fix-the-bogus-return-in-seq_set_gus_bank.patch Fix-unused-variable-prev-in-strtoken.patch ==== bash ==== Subpackages: bash-doc bash-lang - Add official patch bash50-008 When HISTSIZE is set to 0, history expansion can leave the history length set to an incorrect value, leading to subsequent attempts to access invalid memory. - Add official patch bash50-009 The history file reading code doesn't close the file descriptor open to the history file when it encounters a zero-length file. ==== bc ==== - Use %license instead of %doc [bsc#1082318] - Cleanup %doc section ==== bison ==== Subpackages: bison-lang - Use FAT LTO objects in order to provide proper static library. ==== bluedevil5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: bluedevil5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== breeze ==== Version update (5.16.4 -> 5.16.5) Subpackages: breeze5-cursors breeze5-decoration breeze5-style breeze5-style-lang breeze5-wallpapers libbreezecommon5-5 - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * [SplitterProxy] Don't manually mapToGlobal ==== breeze-gtk ==== Version update (5.16.4 -> 5.16.5) Subpackages: gtk2-metatheme-breeze gtk3-metatheme-breeze metatheme-breeze-common - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== breeze4-style ==== Version update (5.16.4 -> 5.16.5) Subpackages: libbreezecommon4-5 - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * [SplitterProxy] Don't manually mapToGlobal ==== busybox ==== - Drop busybox-rpm-E.patch, not needed anymore - Create new "container" subpackage with special stripped down version for container images (8MB instead of 15MB). ==== ceph ==== Version update (14.2.2.348+gf6da3d1d18 -> 14.2.2.354+g8878cf2360) Subpackages: librados2 librbd1 - Update to 14.2.2-354-g8878cf2360: + rgw: Move upload_info declaration out of conditional (bsc#1137189, https://github.com/SUSE/ceph/pull/325) - Update to 14.2.2.349+g6716a1e448: + rgw: fix for CVE-2019-10222/bsc#1145093 for the beast frontend ("rgw: asio: check the remote endpoint before processing requests") ==== cronie ==== Subpackages: cron - refresh cronie-pam_config.diff to integrate pam_keyinit pam module [bsc#1144044] ==== dhcp ==== Subpackages: dhcp-client dhcp-doc dhcp-relay dhcp-server - dhclient-script: replace host(1) with getent, which is more lightweight (part of glibc and does not pull in bind-utils) - Use FAT LTO objects in order to provide proper static library. ==== discover ==== Version update (5.16.4 -> 5.16.5) Subpackages: discover-backend-flatpak discover-backend-packagekit discover-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * odrs: fix fetching reviews (kde#411034) * odrs: don't leak qnam instances ==== djvulibre ==== Subpackages: libdjvulibre21 - Trim conjecture, bias, and metadata repetitions from description. - Trim descriptions in subpackages for length. (Main package keeps the bigger one.) - Use some more macros and limit fdupes to the /usr volume. - security update - added patches CVE-2019-15142 [bsc#1146702] + djvulibre-CVE-2019-15142.patch CVE-2019-15143 [bsc#1146569] + djvulibre-CVE-2019-15143.patch CVE-2019-15144 [bsc#1146571] + djvulibre-CVE-2019-15144.patch CVE-2019-15145 [bsc#1146572] + djvulibre-CVE-2019-15145.patch do not segfault when libtiff encounters corrupted TIFF (upstream issue #295) + djvulibre-invalid-tiff.patch ==== dmidecode ==== 2 recommended fixes from upstream: - dmidecode-only-scan-dev-mem-for-entry-point-on-x86.patch: Only scan /dev/mem for entry point on x86 (fixes reboot on ARM64). - dmidecode-fix-formatting-of-tpm-table-output.patch: Fix formatting of TPM table output (missing newlines). ==== dracut ==== Version update (049+git104.1244eed7 -> 049+git108.6c9d1156) - Update to version 049+git108.6c9d1156: * dracut-init.sh: Nuke unused install_kmod_with_fw function * dracut-install: Support the compressed firmware files correctly (boo#1146769) * dracut: let module handling function accept optional path option * dracut.sh: Fix udevdir detection ==== drbd-utils ==== - In our effort to make /etc fully admin controlled, move /etc/xen/scripts to libexec/xen/scripts ==== drkonqi5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: drkonqi5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * make fixture file name windows-safe ==== exiv2 ==== Version update (0.27.1 -> 0.27.2) - Use FAT LTO objects in order to provide proper static library. - Update to 0.27.2 * Bug and security fixes * Support for Nikon/AutoFocus and Sony/FocusPosition Metadata * Documentation and man page revisions * Updated Catalan Localisation * Using mergify to sync select PRs between 0.27-maintenance and 0.28 * Monitoring API changes for v0.27 dot releases * Prelinary Dutch Localisation * Prelinary Support for Unix (FreeBSD and NetBSD) * Better Build Bundle Dependency handling - Update exiv2-build-date.patch to new source tarball - Enable testsuite run in %check on x86_64 for Leap >= 15.0, SLE >= 15 and Tumbleweed - Use libcurl for HTTP - Enable webready (webp image support) - Add licenses to %license & add BSD 3 clause license (used for some CMake scripts) ==== filesystem ==== - Move /etc.cron.* directories to cron package - Add /usr/etc ==== flac ==== Version update (1.3.2 -> 1.3.3) Subpackages: libFLAC++6 libFLAC8 - Update to release 1.3.3 * Improve SIMD decoding of 24 bit files - Drop flac-CVE-2017-6888.patch (merged upstream) ==== fltk ==== - Use FAT LTO objects in order to provide proper static library. ==== fwupd ==== Subpackages: fwupd-lang libfwupd2 - Add fwupd-bsc1143905-hash-the-source-files.patch to hash the source files instead of libfwupdprivate.a to avoid the checksum change due to the random naming LTO profile sections (bsc#1143905) ==== gamin-devel ==== - Use FAT LTO objects in order to provide proper static library. ==== glib-networking ==== Subpackages: glib-networking-lang - Move LICENSE_EXCEPTION to %license. ==== gzip ==== - refresh gzip-1.10-ibm_dfltcc_support.patch to fix three data corruption issues [bsc#1145276] [jsc#SLE-5818] [jsc#SLE-8914] ==== hplip ==== Subpackages: hplip-hpijs hplip-sane - Renamed "hplip-scan" to "hplip-scan-utils" to express the purpose of the package more clearly in the name. "hplip-scan" has never been in public repos. - Added conditional BuildRequires on "cups-rpm-helper". Recently a bug in python-pycups was fixed that had prevented autogeneration of Provides: tags in printer drivers by means of "BuildRequires: python3-cups". See OBS sr#726727. This dependency must be conditional for now, as cups-rpm-helper is not available in every project yet. - Ran spec-cleaner. - Removed compatibility code for SLE12/Leap42 and earlier As we are now using rpm 4.13 (A and B) syntax, we can't support these any more anyway. - Moved hp-scan and hp-uiscan to a separate package "hp-scan". These tools pull in PIL and python3-scikit-image, which causes a rather big dependency list, which is only available in openSUSE. This allows us also to get rid of the non-functional "hp-scan" tool in SLE. - Fixed --with-htmldir so that documentation is packaged - Improved package descriptions and summaries * Clarified the relationship of hplip-hpijs, hplip-sane, and hplip * Shortened the descriptions * Removed reference to HTML documention in package description - Added -devel dependencies as required by post-build-checks - Minor spec file cleanup (macro usage) - Fixed build failures on non-standard architectures by adding BuildIgnore These failures are actually caused by some ports catching up slowly with package updates. But our BuildIgnores are helpful nonetheless, making the build environment leaner. ==== hwinfo ==== - Use FAT LTO objects in order to provide proper static library. ==== ibus ==== Version update (1.5.20 -> 1.5.21) Subpackages: libibus-1_0-5 typelib-1_0-IBus-1_0 - Upstream update to 1.5.21 * Enable to run ibus-setup with a different python * Update ibusunicodegen.h for Unicode UCD 12.0 * Add ibus.its for IME's component files * Make ISO 639 language names with title * Keep preedit cursor_pos and visible in clearing preedit text * Support long sequences and multiple output characters for compose table - fix boo#1138123 * Exit ibus-daemon with parent's death * Update Wayland input-method protocol to unstable v1 * Indistinguishable address of ibus-daemon * Update LOCALES_STRING * Fix typos - Drop ibus-fix-check-abs-icon-path-support.patch * not necessary anymore since the current Qt is enough new - Stop exporting OOO_FORCE_DESKTOP (boo#1042136) * KDE4 LibreOffice VCL plugin was removed from upstream * New KDE5/Qt5 VCL plugin supporting Qt IM Module will be available ==== iproute2 ==== Version update (5.1 -> 5.2) - Use FAT LTO objects in order to provide proper static library. - Use %make_build. - Update to new upstream release 5.2 * devlink: increase column size for larger shared buffers * ip: reset netns after each command in batch mode * ip addr: do not set IPv6 specific options for IPv4 addresses * ip fou: support binding FOU ports * ip link: support bridge vlan_stats_per_port * ip link: support vlan bridge binding flag * ip macsec: supporet gcm-aes-256 cipher type * ip monitor: display interfaces from all groups * ip neigh: show neighbor offload indication * rdma: add link add/delete * rdma: update node type strings * ss: add option for single line output * ss: show raw numbers for data rates with --numeric * tc: support for plug qdisc * tc: taprio: support for changing schedules * tc: taprio: support cycle_time and cycle_time_extensions * tipc: support for link broadcast method and ratio * update documentation ==== java-11-openjdk ==== Version update (11.0.3.0 -> 11.0.4.0) Subpackages: java-11-openjdk-headless - Update to upstream tag jdk-11.0.4+11 (July 2019 CPU) * Security fixes + S8208698, CVE-2019-2745, bsc#1141784: Improved ECC Implementation + S8212328, CVE-2019-2762, bsc#1141782: Exceptional throw cases + S8213431, CVE-2019-2766, bsc#1141789: Improve file protocol handling + S8213432, CVE-2019-2769, bsc#1141783: Better copies of CopiesList + S8216381, CVE-2019-2786, bsc#1141787: More limited privilege usage + S8217563: Improve realm maintenance + S8218863: Better endpoint checks + S8218873: Improve JSSE endpoint checking + S8218876, CVE-2019-7317, bsc#1141780: Improve PNG support options + S8219775: Certificate validation improvements + S8220517: Enhanced GIF support + S8221345, CVE-2019-2818, bsc#1141788: Better Poly1305 support + S8221518, CVE-2019-2816, bsc#1141785: Normalize normalization + S8222678, CVE-2019-2821, bsc#1141781: Improve TLS negotiation * Other fixes + S6913047: Long term memory leak when using PKCS11 and JCE exceeds 32 bit process address space + S8139178: Wrong fontMetrics when printing in Landscape (OpenJDK) + S8163805: hotspot/test/serviceability/sa/sadebugd/ /SADebugDTest.java failed with timed out + S8170494: JNI exception pending in PlainDatagramSocketImpl.c + S8174691: [TESTBUG] A number of native hotspot unit tests fail when executed in stand-alone mode + S8179098: Crypto AES/ECB encryption/decryption performance regression (introduced in jdk9b73) + S8181143: Introduce diagnostic flag to abort VM on too long VM operations + S8188133: C2: Static field accesses in clinit can trigger deoptimizations + S8190361: Incorrect version info in jaccessinspector.exe and jaccesswalker.exe + S8195793: Remove GTE CyberTrust Global Root + S8200286: (testbug) MOptionTest test fails with java.lang.AssertionError: Classfiles too old! + S8200613: SA: jstack throws UnmappedAddressException with a CDS core file + S8201317: X25519/X448 code improvements + S8201633: Problems with AES-GCM native acceleration + S8202353: os::readdir should use readdir instead of readdir_r + S8202414: Unsafe write after primitive array creation may result in array length change + S8202651: Test ComodoCA.java fails + S8202794: Native Unix code should use readdir rather than readdir_r + S8202884: SA: Attach/detach might fail on Linux if debugee application create/destroy threads during attaching + S8203627: Swing applications with JRadioButton and JCheckbox fail to render correctly when using GTK3 and the GTK L&F + S8204308: SA: serviceability/sa/TestInstanceKlassSize*.java fails when running in CDS mode + S8205574: Loop predication "assert(f <= 1 && f >= 0) failed Incorrect frequency" + S8205611: Improve the wording of LinkageErrors to include module and class loader information + S8206955: MethodHandleProxies.asInterfaceInstance does not support default methods + S8207340: (fs) UnixNativeDispatcher close and readdir usages should be fixed + S8207748: Fix for 8202794 breaks tier1 builds + S8207760: SAXException: Invalid UTF-16 surrogate detected: d83c ? + S8208634: Add x-IBM-1129 charset + S8208648: ECC Field Arithmetic Enhancements + S8208702: javax/swing/reliability/ /HangDuringStaticInitialization.java may hang on macos + S8208996: X11 icon window color handing bug + S8209055: c.s.t.javac.code.DeferredCompletionFailureHandler seems to use WeakHashMap incorrectly + S8209414: AArch64: method handle invocation does not respect JVMTI interp_only mode + S8209415: Fix JVMTI test failure HS202 + S8209573: [TESTBUG] gc/epsilon/TestMemoryMXBeans should retry on failure + S8209914: javadoc search sometimes generates bad URIs + S8209951: Problematic sparc intrinsic: com.sun.crypto.provider.CipherBlockChaining + S8210008: custom extension for make/SourceRevision.gmk + S8210197: javac can't tell during speculative attribution if a diamond expression is creating an anonymous inner class or not + S8210283: Support git as an SCM alternative in the build + S8210320: PPC64: Fix uninitialized variable in C1 LIR assembler code + S8210457: JVM crash in ResolvedMethodTable::add_method(Handle) + S8210483: AssertionError in DeferredAttr at setOverloadKind caused by JDK-8203679 + S8210519: build/releaseFile/CheckSource.java failed additional sources found + S8210739: Calling JSpinner's setFont with null throws NullPointerException + S8210782: Upgrade HarfBuzz to the latest 2.3.1 + S8210803: Compilation failure in codeBlob.cpp for Windows 32-bit + S8210837: Add libXrandr-devel to the Linux devkits + S8210863: Remove Xrandr include files from JDK sources + S8210880: Remove HPKeysym.h from JDK sources + S8210886: Remove references in xwindows.md to non-existent files. + S8210899: (zipfs) ZipFileSystem.EntryOutputStreamCRC32 mistakenly set the crc32 value into size field + S8211266: [TESTBUG] ZipFSTester.java failed intermittently in ZipFSTester.checkRead(): bound must be positive + S8211350: Remove jprt support + S8211393: Memory leak issue on awt_InputMethod.c + S8211435: Exception in thread "AWT-EventQueue-1" java.lang.IllegalArgumentException: null source + S8211698: Crash in C2 compiled code during execution of double array heavy processing code + S8211810: X11 Time stamp data should be unsigned + S8211826: StringIndexOutOfBoundsException happens via GetStringUTFRegion() + S8211841: [testbug] sun/nio/cs/OLD/TestIBMDB.java does not compile (aix) + S8211969: test/jdk/lib/security/CheckBlacklistedCerts.java searching for wrong paths + S8211971: Move security/cacerts/VerifyCACerts.java and security/CheckBlacklistedCerts.java + S8212202: [Windows] Exception if no printers are installed. + S8212205: VM asserts after CDS archive has been unmapped + S8212562: To remove lib/security from test/jdk/TEST.groups + S8212676: AWT SystemColor setting on CDE + S8212677: X11 default visual support for IM status window on VNC + S8212678: Windows IME related patch + S8212794: IBM-964 is required for AIX default charset + S8212828: (process) Provide a way for Runtime.exec to use posix_spawn on linux + S8213015: Inconsistent settings between JFR.configure and - XX:FlightRecorderOptions + S8213213: Remove src/java.desktop/unix/classes/sun/awt/ /X11/keysym2ucs.h + S8213232: Unix/X11 setCompositionEnableNative issue + S8213292: Input freezes after MacOS key-selector (press&hold) usage on macOS Mojave + S8213294: Upgrade IANA LSR data + S8213515: Improve freetype detection on linux/ppc64/ppc64le/ /s390x + S8213614: DnD operation change feature does not work with 64bit big endian CPU + S8213617: JFR should record the PID of the recorded process + S8213618: IBM970 charset has missing entry and remove unexpected entries + S8213825: assert(false) failed: Non-balanced monitor enter/exit! Likely JNI locking + S8213944: Fix AIX build after the removal of Xrandr.h and add a configure check for it + S8214002: Cannot use italic font style if the font has embedded bitmap + S8214109: XToolkit is not correctly displayed color on 16-bit high color setting + S8214111: There is no icon in all JOptionPane target image + S8214112: The whole text in target JPasswordField image are not selected + S8214252: Expanded & Collapsed nodes of a JTree look the same on GTK3 + S8214253: Tooltip is transparent rather than having a black background + S8214468: jQuery UI upgrade from 1.11.4 to 1.12.1 + S8214533: IBM-29626C is required for AIX default charset + S8214765: All TrayIcon MessageType icons does not show up with gtk3 option set + S8214935: Upgrade IANA LSR data + S8215026: Incorrect amount of memory unmapped with ImageFileReader::close() + S8215123: Crash in runtime image built with jlink --compress=2 + S8215284: Reduce noise induced by periodic task getFileSize() + S8215296: do not disable c99 on Solaris + S8215342: [Zero] Build fails after JDK-8200613 + S8215364: JavaFX crashes on Ubuntu 18.04 with Wayland while using Swing-FX interop + S8215374: 32-bit build failures after JDK-8181143 (Introduce diagnostic flag to abort VM on too long VM operations) + S8215398: -Xlog option usage => Invalid decorator '\temp\app_cds.log'. + S8215443: The use of TransportContext.fatal() leads to bad coding style + S8215472: (zipfs) Cleanups in implementation classes of jdk.zipfs and tests + S8215707: [macosx] fix pthread_getschedparam and pthread_setschedparam calls + S8215757: C2: PhaseIdealLoop::create_new_if_for_predicate() computes wrong IDOM + S8215790: Delegated task created by SSLEngine throws java.nio.BufferUnderflowException + S8216045: The size of key_exchange may be wrong on FFDHE + S8216355: missing NULL checks in libnet in interface iteration and potential resource leak in getMacAddress + S8216556: Unnecessary liveness computation with JVMTI + S8216577: Add GlobalSign's R6 Root certificate + S8216597: SIGBUS in Java_sun_security_pkcs11_wrapper_PKCS11_getNativeKeyInfo after JDK-6913047 + S8216970: condy causes JVM crash + S8217088: Disable JDK-6913047 fix (SunPKCS11 memory leak) after JDK-8216597 (SIGBUS error in getNativeKeyInfo) + S8217094: HttpClient SSL race if a socket IOException is raised before ALPN is available + S8217263: Automate DashOffset test + S8217311: Improve Exception thrown when MulticastSocket.setInterface fails on AIX(Unix) + S8217564: idempotent protection missing in crc32c.h + S8217647: JFR: recordings on 32-bit systems unreadable + S8217690: Update public suffix version + S8217707: JNICALL declaration breaks Splash screen functions + S8217765: Internal Error (javaCalls.cpp:61) guarantee(thread->can_call_java()) failed + S8217786: Provide virtualization related info in the hs_error file on linux s390x + S8217878: ENVELOPING XML signature no longer works in JDK 11 + S8217879: hs_err should print more instructions in hex dump + S8217880: AIX build issue after JDK-8214533 + S8218020: Fix version number in mesa.md 3rd party legal file + S8218060: JDK-8217786 breaks build due to remaining unused function + S8218063: JDK-8218060 breaks build for S390 + S8218152: [javac] fails and exits with no error if a bad annotation processor provided + S8218469: JSlider display issue with slider for GTKLookAndFeel + S8218470: JScrollBar display issue with GTKLookAndFeel + S8218472: JProgressBar display issue with GTKLookAndFeel + S8218473: JOptionPane display issue with GTKLookAndFeel + S8218479: JTextPane display issue with GTKLookAndFeel + S8218618: Program fails when using JDK addressed by UNC path and using Security Manager + S8218629: XML Digital Signature throws NAMESPACE_ERR exception on OpenJDK 11, works 8/9/10 + S8218674: HTML Tooltip with "img=src" on component doesn't show + S8218733: SA: CollectedHeap provides broken implementation for used() and capacity() + S8218781: Localized names for Japanese era Reiwa in COMPAT provider + S8218811: replace open by os::open in hotspot coding + S8218854: FontMetrics.getMaxAdvance may be less than the maximum FontMetrics.charWidth + S8218960: CONFIG level logging statements printed in CLDRCalendarDataProviderImpl.java even when default log Level is INFO + S8218991: s390: Add intrinsic for GHASH algorithm + S8219006: AArch64: Register corruption in slow subtype check + S8219011: Implement MacroAssembler::warn method on AArch64 + S8219112: name_and_sig_as_C_string usages in frame_s390 miss ResourceMark + S8219335: "failed: unexpected type" assert failure in ConnectionGraph::split_unique_types() with unsafe accesses + S8219389: Delegated task created by SSLEngine throws BufferUnderflowException + S8219414: SA: jhsdb jsnap throws UnmappedAddressException with core generated by gcore + S8219448: split-if update_uses accesses stale idom data + S8219460: ppc: adjust NativeGeneralJump::insert_unconditional to stack allocated MacroAssembler + S8219566: JFR did not collect call stacks when MaxJavaStackTraceDepth is set to zero + S8219574: Minimal VM build failure after JDK-8219414 + S8219582: PPC: Crash after C1 checkcast patched and GC + S8219584: Try to dump error file by thread which causes safepoint timeout + S8219698: aarch64: SIGILL triggered when specifying unsupported hardware features + S8219710: Bump update version for OpenJDK: jdk11.0.4 + S8219746: Provide virtualization related info in the hs_error file on linux ppc64 / ppc64le + S8219915: [TESTBUG] Fix test langtools/tools/javac/processing/ /model/completionfailure/SymbolsDontCumulate.java in Standalone mode + S8219918: ProblemList hotspot tests failing in SAP testing. + S8220165: Encryption using GCM results in RuntimeException- input length out of bound + S8220166: Performance regression in deserialization (4-6% in SPECjbb) + S8220198: Lots of com/sun/crypto/provider/Cipher tests fail on x86_32 due to missing SHA512 stubs + S8220281: IBM-858 alias name is missing on IBM00858 charset + S8220293: Deadlock in JFR string pool + S8220349: The fix done for JDK-8214253 have caused issues in JTree behaviour + S8220353: [TESTBUG] TestRegisterRestoring uses SafepointALot without UnlockDiagnosticVMOptions + S8220374: C2: LoopStripMining doesn't strip as expected + S8220441: [PPC64] Clobber memory effect missing for memory barriers in atomics + S8220495: Update GIFlib library to the 5.1.8 + S8220513: Wrapper Key may get deleted when closing sessions in SunPKCS11 crypto provider + S8220625: tools/javac/classreader/8171132/ /BadConstantValue.java failed with "did not see expected error" + S8220707: [TESTBUG] serviceability/sa/ /TestHeapDumpForLargeArray.java fails with jtreg - vmoption:-Xmx < 8g + S8220714: C2 Compilation failure when accessing off-heap memory using Unsafe + S8220718: Missing ResourceMark in nmethod::metadata_do + S8220781: linux-s390 : os::get_summary_cpu_info gives bad output + S8220794: PPC64: Fix signal handler for SIGSEGV on branch to illegal address + S8221083: [ppc64] Wrong oop compare in C1-generated code + S8221175: Fix bad function case for controlled JVM crash on PPC64 big-endian + S8221244: Unexpected behavior of PropertyDescription.getReadMethod for boolean properties + S8221263: [TEST_BUG] RemotePrinterStatusRefresh test is hard to use + S8221304: Problem list java/awt/FontMetrics/ /MaxAdvanceIsMax.java + S8221400: java/lang/String/StringRepeat.java test requests too much heap + S8221401: java/math/BigInteger/LargeValueExceptions.java test should be disabled on 32-bit platforms + S8221412: lookupPrintServices() does not always update the list of Windows remote printers + S8221437: assert(java_lang_invoke_ResolvedMethodName::vmtarget(resolved_method()) == m()) failed: Should not change after link resolution + S8221470: Print methods in exception messages in java-like Syntax. + S8221479: Fix JFR profiling on s390 + S8221483: TestOopCmp.java fails due to "Multiple garbage collectors selected" + S8221535: add steal tick related information to hs_error file [linux] + S8221610: Resurrect (legacy) JRE bundle target + S8221639: [i386] expand_exec_shield_cs_limit workaround is undefined code after JDK-8199717 + S8221833: Readability check in Symbol::is_valid not performed for some addresses + S8221870: use driver to run CtwRunner in applications/ctw tests + S8221880: Better customization for Windows RC properties FileDescription and ProductName + S8221915: cleanup ticks related coding in os_perf_aix.cpp [aix] + S8221917: serviceability/sa/TestPrintMdo.java fails on 32-bit platforms + S8221924: get(null) on single-entry unmodifiable Map returns null instead of throwing NPE + S8222027: java/util/logging/LogManager/TestLoggerNames.java generates intermittent ClassCastException + S8222032: x86_32 fails with "wrong size of mach node" on AVX-512 machine + S8222089: [TESTBUG] sun/security/lib/cacerts/ /VerifyCACerts.java fails due to cert within 90-day expiry window + S8222133: Add temporary exceptions for root certs that are due to expire soon + S8222136: Remove two Comodo root CA certificates that are expiring + S8222137: Remove T-Systems root CA certificate + S8222397: x86_32 tests with UseSHA1Intrinsics SEGV due to garbled registers + S8222410: java/nio/file/attribute/BasicFileAttributeView/ /UnixSocketFile hangs when "nc" does not accept "-U" + S8222522: Add configure options for Mac Bundle creation + S8222532: (zipfs) Performance regression when writing ZipFileSystem entries in parallel + S8222913: Add Jib support for VERSION_EXTRA* + S8222930: ConcurrentSkipListMap.clone() shares size variable between original and clone + S8223266: PPC64: Check for branch to illegal address before checking for mem serialization + S8223395: PPC64: Improve comments in the JVM signal handler to match ISA text + S8223499: Remove two DocuSign root certificates that are expiring + S8223555: Cleanups in cacerts tests + S8223597: jdk/nio/zipfs/ZipFSTester.java RuntimeException: CHECK_FAILED! (getAttribute.crc <entries20> failed 6af4413c vs 0 ...) + S8223665: SA: debugd options should follow jhsdb style + S8224474: harfbuzz 2.3.1 code fails to compile with gcc 4.4.7 + S8224671: AArch64: mauve System.arraycopy test failure + S8224727: Problem list test security/infra/java/security/cert/ /CertPathValidator/certification/ActalisCA.java + S8224828: aarch64: rflags is not correct after safepoint poll + S8224880: AArch64: java/javac error with AllocatePrefetchDistance + S8225402: events logging in deoptimization.cpp should go to deopt-log + S8225716: G1 GC: Undefined behaviour in G1BlockOffsetTablePart::block_at_or_preceding + S8226876: Assertion in sun/util/locale/provider/ /CalendarDataUtility on Windows after JDK-8218960 + S8226880: Backport of JDK-8208698 (Improved ECC Implementation) should not bring parts of JDK-8205476 (KeyAgreement#generateSecret is not reset for ECDH based algorithm) ==== java-12-openjdk ==== Version update (12.0.1.0 -> 12.0.2.0) - Upgrade to jdk-12.0.2+10 (Oracle July 2019 CPU) * Security fixes: + S8212328, CVE-2019-2762, bsc#1141782: Exceptional throw cases + S8213431, CVE-2019-2766, bsc#1141789: Improve file protocol handling + S8213432, CVE-2019-2769, bsc#1141783: Better copies of CopiesList + S8216381, CVE-2019-2786, bsc#1141787: More limited privilege usage + S8217563: Improve realm maintenance + S8218863: Better endpoint checks + S8218873: Improve JSSE endpoint checking + S8218876, CVE-2019-7317, bsc#1141780: Improve PNG support options + S8219775: Certificate validation improvements + S8220517: Enhanced GIF support + S8221345, CVE-2019-2818, bsc#1141788: Better Poly1305 support + S8221518, CVE-2019-2816, bsc#1141785: Normalize normalization + S8222678, CVE-2019-2821, bsc#1141781: Improve TLS negotiation * Fixes: + S8170494: JNI exception pending in PlainDatagramSocketImpl.c + S8188133: C2: Static field accesses in clinit can trigger deoptimizations + S8203627: Swing applications with JRadioButton and JCheckbox fail to render correctly when using GTK3 and the GTK L&F + S8205432: Replace the placeholder Japanese era name + S8209901: Canonical file handling + S8210782: Upgrade HarfBuzz to the latest 2.3.1 + S8211936: Better String parsing + S8214235: arm32: assertion in collectedHeap.cpp: attempt to clean empty remainder + S8215367: Better Collection of References + S8215472: (zipfs) Cleanups in implementation classes of jdk.zipfs and tests + S8215982: (tz) Upgrade time-zone data to tzdata2018i + S8217647: JFR: recordings on 32-bit systems unreadable + S8217737: Change the milestone to ea for jdk-12.0.2+1 build + S8217737: Change the release version from 12.0.1 to 12.0.2 + S8217879: hs_err should print more instructions in hex dump + S8218152: [javac] fails and exits with no error if a bad annotation processor provided + S8218453: More dynamic RMI interactions + S8218469: JSlider display issue with slider for GTKLookAndFeel + S8218470: JScrollBar display issue with GTKLookAndFeel + S8218472: JProgressBar display issue with GTKLookAndFeel + S8218473: JOptionPane display issue with GTKLookAndFeel + S8218479: JTextPane display issue with GTKLookAndFeel + S8218781: Localized names for Japanese era Reiwa in COMPAT provider + S8219448: split-if update_uses accesses stale idom data + S8220166: Performance regression in deserialization (4-6% in SPECjbb) + S8220495: Update GIFlib library to the 5.1.8 + S8220625: tools/javac/classreader/8171132/BadConstantValue.java failed with "did not see expected error" + S8221437: assert(java_lang_invoke_ResolvedMethodName::vmtarget( resolved_method()) == m()) failed: Should not change after link resolution + S8221530: Caller sensitive methods not handling caller = null when invoked by JNI code with no java frames on stack + S8221639: [i386] expand_exec_shield_cs_limit workaround is undefined code after JDK-8199717 + S8221880: Better customization for Windows RC properties FileDescription and ProductName + S8221924: get(null) on single-entry unmodifiable Map returns null instead of throwing NPE + S8222027: java/util/logging/LogManager/TestLoggerNames.java generates intermittent ClassCastException + S8222078: test/jdk/java/lang/reflect/exeCallerAccessTest/ /exeCallerAccessTest.c build fails after 8221530 + S8222082: Build of test/jdk/java/lang/reflect/ /exeCallerAccessTest/exeCallerAccessTest.c still failing on Windows + S8222086: CodeCache::UnloadingScope needs to preserve and restore previous IsUnloadingBehavior + S8222111: exeCallerAccessTest.c fails to build: control reaches end of non-void function + S8222136: Remove two Comodo root CA certificates that are expiring + S8222137: Remove T-Systems root CA certificate + S8222262: change milestone to fcs for jdk 12.0.2 build 2 on jdk12.0.2 repos + S8222397: x86_32 tests with UseSHA1Intrinsics SEGV due to garbled registers + S8222403: Shenandoah: Remove ShenandoahAlwaysTrueClosure, use AlwaysTrueClosure instead + S8222410: java/nio/file/attribute/BasicFileAttributeView/ /UnixSocketFile hangs when "nc" does not accept "-U" + S8222425: Shenandoah: Move commonly used closures to separate files + S8222522: Add configure options for Mac Bundle creation + S8222532: (zipfs) Performance regression when writing ZipFileSystem entries in parallel + S8222838: Shenandoah: SEGV on accessing cset bitmap for NULL ptr + S8222843: Print Shenandoah cset map addresses in hs_err + S8222930: ConcurrentSkipListMap.clone() shares size variable between original and clone + S8223003: SunMSCAPI keys are not cleaned up + S8223427: [TESTBUG] Disable JTReg Shenandoah tests when Graal is enabled + S8223437: Backout JDK-8219974 Restore static callsite resolution for the current class + S8223446: Shenandoah breaks alignment with some HumongousThreshold values + S8223447: Stabilize gc/shenandoah/TestStringDedupStress test + S8223472: volatile long field corruption on x86_32 + S8223499: Remove two DocuSign root certificates that are expiring + S8223555: Cleanups in cacerts tests + S8223570: Shenandoah needs to acquire lock before CLDG::clear_claimed_marks + S8223597: jdk/nio/zipfs/ZipFSTester.java RuntimeException: CHECK_FAILED! (getAttribute.crc <entries20> failed 6af4413c vs 0 ...) + S8223651: Build fails with --with-jvm-features=-jfr and - -disable-precompiled-headers + S8223759: Shenandoah should allow arbitrarily low initial heap size + S8223762: Shenandoah: overflows in calculations involving heap capacity + S8223767: Shenandoah fails to build on Solaris x86_64 + S8223980: Shenandoah: Refactor and fix ObjArrayChunkedTask verification + S8224907: Backout JDK-8209901 from JDK 11u-cpu and 12u-cpu + S8227230: Backout JDK-8215367 from update releases ==== kactivitymanagerd ==== Version update (5.16.4 -> 5.16.5) Subpackages: kactivitymanagerd-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kcm_sddm ==== Version update (5.16.4 -> 5.16.5) Subpackages: kcm_sddm-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kde-gtk-config5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kde-gtk-config5-gtk2 kde-gtk-config5-gtk3 kde-gtk-config5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Fix build with pango 1.44 ==== kde-user-manager ==== Version update (5.16.4 -> 5.16.5) Subpackages: kde-user-manager-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kdevelop5 ==== Version update (5.4.1 -> 5.4.2) Subpackages: kdevelop5-lang kdevplatform kdevplatform-lang libkdevplatform54 - Update to 5.4.2 * All debuggers: fix VariableCollection to unregister as texthinter provider (kde#411371) * Contextbrowser: register as texthint provider to existing views on creation * Fix crash on text hint being triggered after disabling code browser plugin (kde#411371) * Avoid possible dereference of an invalid iterator (kde#411323) * Kdevplatform/shell: fix outdated window title once project of document loaded * Kdevplatform/shell: work-around for Qt 5.9/macOS bug showing modified indicator * Kdevplatform/shell: restore document modified flag in mainwindow title * Kdevplatform/shell: do not repeat query & differently for current document * Indicate appstream the ps desktop file isn't a separate application (kde#410687) * Clang: fix tooltip missing closing bracket with default argument calls * Include more hidden files in projectfilter plugin (CI, Lint configs...) ==== kernel-64kb ==== Version update (5.2.10 -> 5.2.13) Subpackages: kernel-64kb-devel - Linux 5.2.13 (bnc#1012628). - Revert "Input: elantech - enable SMBus on new (2018+) systems" (bnc#1012628). - commit acd8e88 - Linux 5.2.12 (bnc#1012628). - dmaengine: ste_dma40: fix unneeded variable warning (bnc#1012628). - nvme-multipath: revalidate nvme_ns_head gendisk in nvme_validate_ns (bnc#1012628). - afs: Fix the CB.ProbeUuid service handler to reply correctly (bnc#1012628). - afs: Fix loop index mixup in afs_deliver_vl_get_entry_by_name_u() (bnc#1012628). - fs: afs: Fix a possible null-pointer dereference in afs_put_read() (bnc#1012628). - afs: Fix off-by-one in afs_rename() expected data version calculation (bnc#1012628). - afs: Only update d_fsdata if different in afs_d_revalidate() (bnc#1012628). - afs: Fix missing dentry data version updating (bnc#1012628). - nvmet: Fix use-after-free bug when a port is removed (bnc#1012628). - nvmet-loop: Flush nvme_delete_wq when removing the port (bnc#1012628). - nvmet-file: fix nvmet_file_flush() always returning an error (bnc#1012628). - nvme-core: Fix extra device_put() call on error path (bnc#1012628). - nvme: fix a possible deadlock when passthru commands sent to a multipath device (bnc#1012628). - nvme-rdma: fix possible use-after-free in connect error flow (bnc#1012628). - nvme: fix controller removal race with scan work (bnc#1012628). - nvme-pci: Fix async probe remove race (bnc#1012628). - soundwire: cadence_master: fix register definition for SLAVE_STATE (bnc#1012628). - soundwire: cadence_master: fix definitions for INTSTAT0/1 (bnc#1012628). - auxdisplay: panel: need to delete scan_timer when misc_register fails in panel_attach (bnc#1012628). - btrfs: trim: Check the range passed into to prevent overflow (bnc#1012628). - IB/mlx5: Fix implicit MR release flow (bnc#1012628). - dmaengine: stm32-mdma: Fix a possible null-pointer dereference in stm32_mdma_irq_handler() (bnc#1012628). - omap-dma/omap_vout_vrfb: fix off-by-one fi value (bnc#1012628). - iommu/dma: Handle SG length overflow better (bnc#1012628). - dma-direct: don't truncate dma_required_mask to bus addressing capabilities (bnc#1012628). - usb: gadget: composite: Clear "suspended" on reset/disconnect (bnc#1012628). - usb: gadget: mass_storage: Fix races between fsg_disable and fsg_set_alt (bnc#1012628). - habanalabs: fix DRAM usage accounting on context tear down (bnc#1012628). - habanalabs: fix endianness handling for packets from user (bnc#1012628). - habanalabs: fix completion queue handling when host is BE (bnc#1012628). - habanalabs: fix endianness handling for internal QMAN submission (bnc#1012628). - habanalabs: fix device IRQ unmasking for BE host (bnc#1012628). - xen/blkback: fix memory leaks (bnc#1012628). - arm64: cpufeature: Don't treat granule sizes as strict (bnc#1012628). - riscv: fix flush_tlb_range() end address for flush_tlb_page() (bnc#1012628). - i2c: rcar: avoid race when unregistering slave client (bnc#1012628). - i2c: emev2: avoid race when unregistering slave client (bnc#1012628). - drm/scheduler: use job count instead of peek (bnc#1012628). - drm/ast: Fixed reboot test may cause system hanged (bnc#1012628). - usb: host: fotg2: restart hcd after port reset (bnc#1012628). - tools: hv: fixed Python pep8/flake8 warnings for lsvmbus (bnc#1012628). - tools: hv: fix KVP and VSS daemons exit code (bnc#1012628). - locking/rwsem: Add missing ACQUIRE to read_slowpath exit when queue is empty (bnc#1012628). - lcoking/rwsem: Add missing ACQUIRE to read_slowpath sleep loop (bnc#1012628). - watchdog: bcm2835_wdt: Fix module autoload (bnc#1012628). - selftests/bpf: install files test_xdp_vlan.sh (bnc#1012628). - drm/bridge: tfp410: fix memleak in get_modes() (bnc#1012628). - mt76: usb: fix rx A-MSDU support (bnc#1012628). - ipv6/addrconf: allow adding multicast addr if IFA_F_MCAUTOJOIN is set (bnc#1012628). - ipv6: Fix return value of ipv6_mc_may_pull() for malformed packets (bnc#1012628). - net: cpsw: fix NULL pointer exception in the probe error path (bnc#1012628). - net: fix __ip_mc_inc_group usage (bnc#1012628). - net/smc: make sure EPOLLOUT is raised (bnc#1012628). - tcp: make sure EPOLLOUT wont be missed (bnc#1012628). - ipv4: mpls: fix mpls_xmit for iptunnel (bnc#1012628). - openvswitch: Fix conntrack cache with timeout (bnc#1012628). - ipv4/icmp: fix rt dst dev null pointer dereference (bnc#1012628). - xfrm/xfrm_policy: fix dst dev null pointer dereference in collect_md mode (bnc#1012628). - mm/zsmalloc.c: fix build when CONFIG_COMPACTION=n (bnc#1012628). - ALSA: usb-audio: Check mixer unit bitmap yet more strictly (bnc#1012628). - ALSA: hda/ca0132 - Add new SBZ quirk (bnc#1012628). - ALSA: line6: Fix memory leak at line6_init_pcm() error path (bnc#1012628). - ALSA: hda - Fixes inverted Conexant GPIO mic mute led (bnc#1012628). - ALSA: seq: Fix potential concurrent access to the deleted pool (bnc#1012628). - ALSA: usb-audio: Fix invalid NULL check in snd_emuusb_set_samplerate() (bnc#1012628). - ALSA: usb-audio: Add implicit fb quirk for Behringer UFX1604 (bnc#1012628). - kvm: x86: skip populating logical dest map if apic is not sw enabled (bnc#1012628). - KVM: x86: hyper-v: don't crash on KVM_GET_SUPPORTED_HV_CPUID when kvm_intel.nested is disabled (bnc#1012628). - KVM: x86: Don't update RIP or do single-step on faulting emulation (bnc#1012628). - uprobes/x86: Fix detection of 32-bit user mode (bnc#1012628). - x86/mm/cpa: Prevent large page split when ftrace flips RW on kernel text (bnc#1012628). - x86/apic: Do not initialize LDR and DFR for bigsmp (bnc#1012628). - x86/apic: Include the LDR when clearing out APIC registers (bnc#1012628). - HID: logitech-hidpp: remove support for the G700 over USB (bnc#1012628). - ftrace: Fix NULL pointer dereference in t_probe_next() (bnc#1012628). - ftrace: Check for successful allocation of hash (bnc#1012628). - ftrace: Check for empty hash and comment the race with registering probes (bnc#1012628). - usbtmc: more sanity checking for packet size (bnc#1012628). - usb-storage: Add new JMS567 revision to unusual_devs (bnc#1012628). - USB: cdc-wdm: fix race between write and disconnect due to flag abuse (bnc#1012628). - usb: hcd: use managed device resources (bnc#1012628). - usb: chipidea: udc: don't do hardware access if gadget has stopped (bnc#1012628). - usb: host: ohci: fix a race condition between shutdown and irq (bnc#1012628). - usb: host: xhci: rcar: Fix typo in compatible string matching (bnc#1012628). - USB: storage: ums-realtek: Update module parameter description for auto_delink_en (bnc#1012628). - USB: storage: ums-realtek: Whitelist auto-delink support (bnc#1012628). - tools/power turbostat: Fix caller parameter of get_tdp_amd() (bnc#1012628). - KVM: PPC: Book3S: Fix incorrect guest-to-user-translation error handling (bnc#1012628). - KVM: arm/arm64: vgic: Fix potential deadlock when ap_list is long (bnc#1012628). - KVM: arm/arm64: vgic-v2: Handle SGI bits in GICD_I{S,C}PENDR0 as WI (bnc#1012628). - mei: me: add Tiger Lake point LP device ID (bnc#1012628). - Revert "mmc: sdhci-tegra: drop ->get_ro() implementation" (bnc#1012628). - mmc: sdhci-of-at91: add quirk for broken HS200 (bnc#1012628). - mmc: sdhci-cadence: enable v4_mode to fix ADMA 64-bit addressing (bnc#1012628). - mmc: core: Fix init of SD cards reporting an invalid VDD range (bnc#1012628). - mmc: sdhci-sprd: fixed incorrect clock divider (bnc#1012628). - mmc: sdhci-sprd: add SDHCI_QUIRK2_PRESET_VALUE_BROKEN (bnc#1012628). - stm class: Fix a double free of stm_source_device (bnc#1012628). - intel_th: pci: Add support for another Lewisburg PCH (bnc#1012628). - intel_th: pci: Add Tiger Lake support (bnc#1012628). - typec: tcpm: fix a typo in the comparison of pdo_max_voltage (bnc#1012628). - fsi: scom: Don't abort operations for minor errors (bnc#1012628). - lkdtm/bugs: fix build error in lkdtm_EXHAUST_STACK (bnc#1012628). - NFSv4/pnfs: Fix a page lock leak in nfs_pageio_resend() (bnc#1012628). - NFS: Ensure O_DIRECT reports an error if the bytes read/written is 0 (bnc#1012628). - Revert "NFSv4/flexfiles: Abort I/O early if the layout segment was invalidated" (bnc#1012628). - lib: logic_pio: Fix RCU usage (bnc#1012628). - lib: logic_pio: Avoid possible overlap for unregistering regions (bnc#1012628). - lib: logic_pio: Add logic_pio_unregister_range() (bnc#1012628). - drm/amdgpu: Add APTX quirk for Dell Latitude 5495 (bnc#1012628). - drm/amdgpu: fix GFXOFF on Picasso and Raven2 (bnc#1012628). - drm/i915: Don't deballoon unused ggtt drm_mm_node in linux guest (bnc#1012628). - drm/i915: Call dma_set_max_seg_size() in i915_driver_hw_probe() (bnc#1012628). - i2c: piix4: Fix port selection for AMD Family 16h Model 30h (bnc#1012628). - bus: hisi_lpc: Unregister logical PIO range to avoid potential use-after-free (bnc#1012628). - bus: hisi_lpc: Add .remove method to avoid driver unbind crash (bnc#1012628). - VMCI: Release resource if the work is already queued (bnc#1012628). - crypto: ccp - Ignore unconfigured CCP device on suspend/resume (bnc#1012628). - SUNRPC: Don't handle errors if the bind/connect succeeded (bnc#1012628). - mt76: mt76x0u: do not reset radio on resume (bnc#1012628). - mms: sdhci-sprd: add SDHCI_QUIRK_BROKEN_CARD_DETECTION (bnc#1012628). - mm, memcg: partially revert "mm/memcontrol.c: keep local VM counters in sync with the hierarchical ones" (bnc#1012628). - mm: memcontrol: fix percpu vmstats and vmevents flush (bnc#1012628). - Revert "cfg80211: fix processing world regdomain when non modular" (bnc#1012628). - mac80211: fix possible sta leak (bnc#1012628). - cfg80211: Fix Extended Key ID key install checks (bnc#1012628). - mac80211: Don't memset RXCB prior to PAE intercept (bnc#1012628). - mac80211: Correctly set noencrypt for PAE frames (bnc#1012628). - mmc: sdhci-sprd: clear the UHS-I modes read from registers (bnc#1012628). - mmc: sdhci-sprd: Implement the get_max_timeout_count() interface (bnc#1012628). - mmc: sdhci-sprd: add get_ro hook function (bnc#1012628). - iwlwifi: add new cards for 22000 and fix struct name (bnc#1012628). - iwlwifi: add new cards for 22000 and change wrong structs (bnc#1012628). - iwlwifi: add new cards for 9000 and 20000 series (bnc#1012628). - iwlwifi: change 0x02F0 fw from qu to quz (bnc#1012628). - iwlwifi: pcie: add support for qu c-step devices (bnc#1012628). - iwlwifi: pcie: don't switch FW to qnj when ax201 is detected (bnc#1012628). - iwlwifi: pcie: handle switching killer Qu B0 NICs to C0 (bnc#1012628). - drm/i915: Do not create a new max_bpc prop for MST connectors (bnc#1012628). - drm/i915/dp: Fix DSC enable code to use cpu_transcoder instead of encoder->type (bnc#1012628). - bpf: fix use after free in prog symbol exposure (bnc#1012628). - hsr: implement dellink to clean up resources (bnc#1012628). - hsr: fix a NULL pointer deref in hsr_dev_xmit() (bnc#1012628). - hsr: switch ->dellink() to ->ndo_uninit() (bnc#1012628). - Revert "ASoC: Fail card instantiation if DAI format setup fails" (bnc#1012628). - commit bb4c31d - powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts (CVE-2019-15031 bsc#1149713). - powerpc/tm: Fix FP/VMX unavailable exceptions inside a transaction (CVE-2019-15030 bsc#1149713). - commit 76a34af - x86/ptrace: fix up botched merge of spectrev1 fix (bnc#1149376 CVE-2019-15902). - commit 77497b6 - config: enable STACKPROTECTOR_STRONG (jsc#SLE-9120 bsc#1130365) Enable CONFIG_STACKPROTECTOR_STRONG on all architectures except s390x (where the feature is not available). This extends the number of functions which are protected by "stack canary" check to catch functions writing past their stack frame. This change was requested by SUSE security to make our kernels more resistant to some types of stack overflow attacks. Tests performed by kernel performance teams confirmed that performance impact is acceptable. - commit d6e8aab - Linux 5.2.11 (bnc#1012628). - ASoC: simple_card_utils.h: care NULL dai at asoc_simple_debug_dai() (bnc#1012628). - ASoC: simple-card: fix an use-after-free in simple_dai_link_of_dpcm() (bnc#1012628). - ASoC: simple-card: fix an use-after-free in simple_for_each_link() (bnc#1012628). - ASoC: audio-graph-card: fix use-after-free in graph_dai_link_of_dpcm() (bnc#1012628). - ASoC: audio-graph-card: fix an use-after-free in graph_get_dai_id() (bnc#1012628). - ASoC: audio-graph-card: add missing const at graph_get_dai_id() (bnc#1012628). - regulator: axp20x: fix DCDCA and DCDCD for AXP806 (bnc#1012628). - regulator: axp20x: fix DCDC5 and DCDC6 for AXP803 (bnc#1012628). - ASoC: samsung: odroid: fix an use-after-free issue for codec (bnc#1012628). - ASoC: samsung: odroid: fix a double-free issue for cpu_dai (bnc#1012628). - ASoC: Intel: bytcht_es8316: Add quirk for Irbis NB41 netbook (bnc#1012628). - HID: logitech-hidpp: add USB PID for a few more supported mice (bnc#1012628). - HID: Add 044f:b320 ThrustMaster, Inc. 2 in 1 DT (bnc#1012628). - MIPS: kernel: only use i8253 clocksource with periodic clockevent (bnc#1012628). - mips: fix cacheinfo (bnc#1012628). - libbpf: sanitize VAR to conservative 1-byte INT (bnc#1012628). - netfilter: ebtables: fix a memory leak bug in compat (bnc#1012628). - ASoC: dapm: Fix handling of custom_stop_condition on DAPM graph walks (bnc#1012628). - ASoC: SOF: use __u32 instead of uint32_t in uapi headers (bnc#1012628). - spi: pxa2xx: Balance runtime PM enable/disable on error (bnc#1012628). - bpf: sockmap, sock_map_delete needs to use xchg (bnc#1012628). - bpf: sockmap, synchronize_rcu before free'ing map (bnc#1012628). - bpf: sockmap, only create entry if ulp is not already enabled (bnc#1012628). - selftests/bpf: fix sendmsg6_prog on s390 (bnc#1012628). - ASoC: dapm: fix a memory leak bug (bnc#1012628). - bonding: Force slave speed check after link state recovery for 802.3ad (bnc#1012628). - net: mvpp2: Don't check for 3 consecutive Idle frames for 10G links (bnc#1012628). - selftests: forwarding: gre_multipath: Enable IPv4 forwarding (bnc#1012628). - selftests: forwarding: gre_multipath: Fix flower filters (bnc#1012628). - selftests/bpf: add another gso_segs access (bnc#1012628). - libbpf: fix using uninitialized ioctl results (bnc#1012628). - can: dev: call netif_carrier_off() in register_candev() (bnc#1012628). - can: mcp251x: add error check when wq alloc failed (bnc#1012628). - can: gw: Fix error path of cgw_module_init (bnc#1012628). - ASoC: Fail card instantiation if DAI format setup fails (bnc#1012628). - Staging: fbtft: Fix GPIO handling (bnc#1012628). - libbpf: silence GCC8 warning about string truncation (bnc#1012628). - st21nfca_connectivity_event_received: null check the allocation (bnc#1012628). - st_nci_hci_connectivity_event_received: null check the allocation (bnc#1012628). - {nl,mac}80211: fix interface combinations on crypto controlled devices (bnc#1012628). - ASoC: ti: davinci-mcasp: Fix clk PDIR handling for i2s master mode (bnc#1012628). - ASoC: rockchip: Fix mono capture (bnc#1012628). - ASoC: ti: davinci-mcasp: Correct slot_width posed constraint (bnc#1012628). - net: usb: qmi_wwan: Add the BroadMobi BM818 card (bnc#1012628). - qed: RDMA - Fix the hw_ver returned in device attributes (bnc#1012628). - isdn: mISDN: hfcsusb: Fix possible null-pointer dereferences in start_isoc_chain() (bnc#1012628). - habanalabs: fix F/W download in BE architecture (bnc#1012628). - mac80211_hwsim: Fix possible null-pointer dereferences in hwsim_dump_radio_nl() (bnc#1012628). - net: stmmac: manage errors returned by of_get_mac_address() (bnc#1012628). - netfilter: ipset: Actually allow destination MAC address for hash:ip,mac sets too (bnc#1012628). - netfilter: ipset: Copy the right MAC address in bitmap:ip,mac and hash:ip,mac sets (bnc#1012628). - netfilter: ipset: Fix rename concurrency with listing (bnc#1012628). - rxrpc: Fix potential deadlock (bnc#1012628). - rxrpc: Fix the lack of notification when sendmsg() fails on a DATA packet (bnc#1012628). - nvmem: Use the same permissions for eeprom as for nvmem (bnc#1012628). - iwlwifi: mvm: avoid races in rate init and rate perform (bnc#1012628). - iwlwifi: dbg_ini: move iwl_dbg_tlv_load_bin out of debug override ifdef (bnc#1012628). - iwlwifi: dbg_ini: move iwl_dbg_tlv_free outside of debugfs ifdef (bnc#1012628). - iwlwifi: fix locking in delayed GTK setting (bnc#1012628). - iwlwifi: mvm: send LQ command always ASYNC (bnc#1012628). - enetc: Fix build error without PHYLIB (bnc#1012628). - isdn: hfcsusb: Fix mISDN driver crash caused by transfer buffer on the stack (bnc#1012628). - net: phy: phy_led_triggers: Fix a possible null-pointer dereference in phy_led_trigger_change_speed() (bnc#1012628). - perf bench numa: Fix cpu0 binding (bnc#1012628). - spi: pxa2xx: Add support for Intel Tiger Lake (bnc#1012628). - can: sja1000: force the string buffer NULL-terminated (bnc#1012628). - can: peak_usb: force the string buffer NULL-terminated (bnc#1012628). - ASoC: amd: acp3x: use dma_ops of parent device for acp3x dma driver (bnc#1012628). - net/ethernet/qlogic/qed: force the string buffer NULL-terminated (bnc#1012628). - enetc: Select PHYLIB while CONFIG_FSL_ENETC_VF is set (bnc#1012628). - NFSv4: Fix a credential refcount leak in nfs41_check_delegation_stateid (bnc#1012628). - NFSv4: When recovering state fails with EAGAIN, retry the same recovery (bnc#1012628). - NFSv4.1: Fix open stateid recovery (bnc#1012628). - NFSv4.1: Only reap expired delegations (bnc#1012628). - NFSv4: Fix a potential sleep while atomic in nfs4_do_reclaim() (bnc#1012628). - NFS: Fix regression whereby fscache errors are appearing on 'nofsc' mounts (bnc#1012628). - HID: quirks: Set the INCREMENT_USAGE_ON_DUPLICATE quirk on Saitek X52 (bnc#1012628). - HID: input: fix a4tech horizontal wheel custom usage (bnc#1012628). - drm/rockchip: Suspend DP late (bnc#1012628). - SMB3: Fix potential memory leak when processing compound chain (bnc#1012628). - SMB3: Kernel oops mounting a encryptData share with CONFIG_DEBUG_VIRTUAL (bnc#1012628). - sched/deadline: Fix double accounting of rq/running bw in push & pull (bnc#1012628). - sched/psi: Reduce psimon FIFO priority (bnc#1012628). - sched/psi: Do not require setsched permission from the trigger creator (bnc#1012628). - s390/protvirt: avoid memory sharing for diag 308 set/store (bnc#1012628). - s390/mm: fix dump_pagetables top level page table walking (bnc#1012628). - s390: put _stext and _etext into .text section (bnc#1012628). - ata: rb532_cf: Fix unused variable warning in rb532_pata_driver_probe (bnc#1012628). - net: cxgb3_main: Fix a resource leak in a error path in 'init_one()' (bnc#1012628). - net: stmmac: Fix issues when number of Queues >= 4 (bnc#1012628). - net: stmmac: tc: Do not return a fragment entry (bnc#1012628). - drm/amdgpu: pin the csb buffer on hw init for gfx v8 (bnc#1012628). - net: hisilicon: make hip04_tx_reclaim non-reentrant (bnc#1012628). - net: hisilicon: fix hip04-xmit never return TX_BUSY (bnc#1012628). - net: hisilicon: Fix dma_map_single failed on arm64 (bnc#1012628). - NFSv4: Ensure state recovery handles ETIMEDOUT correctly (bnc#1012628). - libata: have ata_scsi_rw_xlat() fail invalid passthrough requests (bnc#1012628). - libata: add SG safety checks in SFF pio transfers (bnc#1012628). - x86/lib/cpu: Address missing prototypes warning (bnc#1012628). - drm/vmwgfx: fix memory leak when too many retries have occurred (bnc#1012628). - block: aoe: Fix kernel crash due to atomic sleep when exiting (bnc#1012628). - block, bfq: handle NULL return value by bfq_init_rq() (bnc#1012628). - perf ftrace: Fix failure to set cpumask when only one cpu is present (bnc#1012628). - perf cpumap: Fix writing to illegal memory in handling cpumap mask (bnc#1012628). - perf pmu-events: Fix missing "cpu_clk_unhalted.core" event (bnc#1012628). - dt-bindings: riscv: fix the schema compatible string for the HiFive Unleashed board (bnc#1012628). - KVM: arm64: Don't write junk to sysregs on reset (bnc#1012628). - KVM: arm: Don't write junk to CP15 registers on reset (bnc#1012628). - selftests: kvm: Adding config fragments (bnc#1012628). - iwlwifi: mvm: disable TX-AMSDU on older NICs (bnc#1012628). - HID: wacom: correct misreported EKR ring values (bnc#1012628). - HID: wacom: Correct distance scale for 2nd-gen Intuos devices (bnc#1012628). - Revert "KVM: x86/mmu: Zap only the relevant pages when removing a memslot" (bnc#1012628). - Revert "dm bufio: fix deadlock with loop device" (bnc#1012628). - clk: socfpga: stratix10: fix rate caclulationg for cnt_clks (bnc#1012628). - ceph: clear page dirty before invalidate page (bnc#1012628). - ceph: don't try fill file_lock on unsuccessful GETFILELOCK reply (bnc#1012628). - libceph: fix PG split vs OSD (re)connect race (bnc#1012628). - drm/amdgpu/gfx9: update pg_flags after determining if gfx off is possible (bnc#1012628). - drm/nouveau: Don't retry infinitely when receiving no data on i2c over AUX (bnc#1012628). - scsi: ufs: Fix NULL pointer dereference in ufshcd_config_vreg_hpm() (bnc#1012628). - gpiolib: never report open-drain/source lines as 'input' to user-space (bnc#1012628). - Drivers: hv: vmbus: Fix virt_to_hvpfn() for X86_PAE (bnc#1012628). - userfaultfd_release: always remove uffd flags and clear vm_userfaultfd_ctx (bnc#1012628). - x86/retpoline: Don't clobber RFLAGS during CALL_NOSPEC on i386 (bnc#1012628). - x86/CPU/AMD: Clear RDRAND CPUID bit on AMD family 15h/16h (bnc#1012628). - x86/boot: Save fields explicitly, zero out everything else (bnc#1012628). - x86/boot: Fix boot regression caused by bootparam sanitizing (bnc#1012628). - IB/hfi1: Unsafe PSN checking for TID RDMA READ Resp packet (bnc#1012628). - IB/hfi1: Add additional checks when handling TID RDMA READ RESP packet (bnc#1012628). - IB/hfi1: Add additional checks when handling TID RDMA WRITE DATA packet (bnc#1012628). - IB/hfi1: Drop stale TID RDMA packets that cause TIDErr (bnc#1012628). - psi: get poll_work to run when calling poll syscall next time (bnc#1012628). - dm kcopyd: always complete failed jobs (bnc#1012628). - dm dust: use dust block size for badblocklist index (bnc#1012628). - dm btree: fix order of block initialization in btree_split_beneath (bnc#1012628). - dm integrity: fix a crash due to BUG_ON in __journal_read_write() (bnc#1012628). - dm raid: add missing cleanup in raid_ctr() (bnc#1012628). - dm space map metadata: fix missing store of apply_bops() return value (bnc#1012628). - dm table: fix invalid memory accesses with too high sector number (bnc#1012628). - dm zoned: improve error handling in reclaim (bnc#1012628). - dm zoned: improve error handling in i/o map code (bnc#1012628). - dm zoned: properly handle backing device failure (bnc#1012628). - genirq: Properly pair kobject_del() with kobject_add() (bnc#1012628). - mm/z3fold.c: fix race between migration and destruction (bnc#1012628). - mm, page_alloc: move_freepages should not examine struct page of reserved memory (bnc#1012628). - mm: memcontrol: flush percpu vmstats before releasing memcg (bnc#1012628). - mm: memcontrol: flush percpu vmevents before releasing memcg (bnc#1012628). - mm, page_owner: handle THP splits correctly (bnc#1012628). - mm/zsmalloc.c: migration can leave pages in ZS_EMPTY indefinitely (bnc#1012628). - mm/zsmalloc.c: fix race condition in zs_destroy_pool (bnc#1012628). - mm/kasan: fix false positive invalid-free reports with CONFIG_KASAN_SW_TAGS=y (bnc#1012628). - xfs: fix missing ILOCK unlock when xfs_setattr_nonsize fails due to EDQUOT (bnc#1012628). - IB/hfi1: Drop stale TID RDMA packets (bnc#1012628). - dm zoned: fix potential NULL dereference in dmz_do_reclaim() (bnc#1012628). - io_uring: fix potential hang with polled IO (bnc#1012628). - io_uring: don't enter poll loop if we have CQEs pending (bnc#1012628). - io_uring: add need_resched() check in inner poll loop (bnc#1012628). - powerpc: Allow flush_(inval_)dcache_range to work across ranges >4GB (bnc#1012628). - rxrpc: Fix local endpoint refcounting (bnc#1012628). - rxrpc: Fix read-after-free in rxrpc_queue_local() (bnc#1012628). - rxrpc: Fix local endpoint replacement (bnc#1012628). - rxrpc: Fix local refcounting (bnc#1012628). - commit 6385110 - mwifiex: Fix three heap overflow at parsing element in cfg80211_ap_settings (CVE-2019-14814,bsc#1146512,CVE-2019-14815,bsc#1146514,CVE-2019-14816,bsc#1146516). - commit 05e68fe - rpm: raise required disk space for binary packages Current disk space constraints (10 GB on s390x, 25 GB on other architectures) no longer suffice for 5.3 kernel builds. The statistics show ~30 GB of disk consumption on x86_64 and ~11 GB on s390x so raise the constraints to 35 GB in general and 14 GB on s390x. - commit 527cb66 - Refresh patches.suse/x86-apic-Handle-missing-global-clockevent-gracefully.patch. Update to the upstreamed patch. - commit bb236c2 - Update reference for ath6kl fix (CVE-2019-15290,bsc#1146543). - commit 6f03484 - Fix a NULL-ptr-deref bug in ath6kl_usb_alloc_urb_from_pipe (CVE-2019-15098,bsc#1146378). - Fix a NULL-ptr-deref bug in ath10k_usb_alloc_urb_from_pipe (CVE-2019-15099,bsc#1146368). - commit 8c61e43 - Fix a double free bug in rsi_91x_deinit (bnc#1147116 CVE-2019-15504). - commit 5009555 ==== kernel-source ==== Version update (5.2.10 -> 5.2.13) Subpackages: kernel-default kernel-default-devel kernel-devel kernel-docs kernel-macros kernel-syms - Linux 5.2.13 (bnc#1012628). - Revert "Input: elantech - enable SMBus on new (2018+) systems" (bnc#1012628). - commit acd8e88 - Linux 5.2.12 (bnc#1012628). - dmaengine: ste_dma40: fix unneeded variable warning (bnc#1012628). - nvme-multipath: revalidate nvme_ns_head gendisk in nvme_validate_ns (bnc#1012628). - afs: Fix the CB.ProbeUuid service handler to reply correctly (bnc#1012628). - afs: Fix loop index mixup in afs_deliver_vl_get_entry_by_name_u() (bnc#1012628). - fs: afs: Fix a possible null-pointer dereference in afs_put_read() (bnc#1012628). - afs: Fix off-by-one in afs_rename() expected data version calculation (bnc#1012628). - afs: Only update d_fsdata if different in afs_d_revalidate() (bnc#1012628). - afs: Fix missing dentry data version updating (bnc#1012628). - nvmet: Fix use-after-free bug when a port is removed (bnc#1012628). - nvmet-loop: Flush nvme_delete_wq when removing the port (bnc#1012628). - nvmet-file: fix nvmet_file_flush() always returning an error (bnc#1012628). - nvme-core: Fix extra device_put() call on error path (bnc#1012628). - nvme: fix a possible deadlock when passthru commands sent to a multipath device (bnc#1012628). - nvme-rdma: fix possible use-after-free in connect error flow (bnc#1012628). - nvme: fix controller removal race with scan work (bnc#1012628). - nvme-pci: Fix async probe remove race (bnc#1012628). - soundwire: cadence_master: fix register definition for SLAVE_STATE (bnc#1012628). - soundwire: cadence_master: fix definitions for INTSTAT0/1 (bnc#1012628). - auxdisplay: panel: need to delete scan_timer when misc_register fails in panel_attach (bnc#1012628). - btrfs: trim: Check the range passed into to prevent overflow (bnc#1012628). - IB/mlx5: Fix implicit MR release flow (bnc#1012628). - dmaengine: stm32-mdma: Fix a possible null-pointer dereference in stm32_mdma_irq_handler() (bnc#1012628). - omap-dma/omap_vout_vrfb: fix off-by-one fi value (bnc#1012628). - iommu/dma: Handle SG length overflow better (bnc#1012628). - dma-direct: don't truncate dma_required_mask to bus addressing capabilities (bnc#1012628). - usb: gadget: composite: Clear "suspended" on reset/disconnect (bnc#1012628). - usb: gadget: mass_storage: Fix races between fsg_disable and fsg_set_alt (bnc#1012628). - habanalabs: fix DRAM usage accounting on context tear down (bnc#1012628). - habanalabs: fix endianness handling for packets from user (bnc#1012628). - habanalabs: fix completion queue handling when host is BE (bnc#1012628). - habanalabs: fix endianness handling for internal QMAN submission (bnc#1012628). - habanalabs: fix device IRQ unmasking for BE host (bnc#1012628). - xen/blkback: fix memory leaks (bnc#1012628). - arm64: cpufeature: Don't treat granule sizes as strict (bnc#1012628). - riscv: fix flush_tlb_range() end address for flush_tlb_page() (bnc#1012628). - i2c: rcar: avoid race when unregistering slave client (bnc#1012628). - i2c: emev2: avoid race when unregistering slave client (bnc#1012628). - drm/scheduler: use job count instead of peek (bnc#1012628). - drm/ast: Fixed reboot test may cause system hanged (bnc#1012628). - usb: host: fotg2: restart hcd after port reset (bnc#1012628). - tools: hv: fixed Python pep8/flake8 warnings for lsvmbus (bnc#1012628). - tools: hv: fix KVP and VSS daemons exit code (bnc#1012628). - locking/rwsem: Add missing ACQUIRE to read_slowpath exit when queue is empty (bnc#1012628). - lcoking/rwsem: Add missing ACQUIRE to read_slowpath sleep loop (bnc#1012628). - watchdog: bcm2835_wdt: Fix module autoload (bnc#1012628). - selftests/bpf: install files test_xdp_vlan.sh (bnc#1012628). - drm/bridge: tfp410: fix memleak in get_modes() (bnc#1012628). - mt76: usb: fix rx A-MSDU support (bnc#1012628). - ipv6/addrconf: allow adding multicast addr if IFA_F_MCAUTOJOIN is set (bnc#1012628). - ipv6: Fix return value of ipv6_mc_may_pull() for malformed packets (bnc#1012628). - net: cpsw: fix NULL pointer exception in the probe error path (bnc#1012628). - net: fix __ip_mc_inc_group usage (bnc#1012628). - net/smc: make sure EPOLLOUT is raised (bnc#1012628). - tcp: make sure EPOLLOUT wont be missed (bnc#1012628). - ipv4: mpls: fix mpls_xmit for iptunnel (bnc#1012628). - openvswitch: Fix conntrack cache with timeout (bnc#1012628). - ipv4/icmp: fix rt dst dev null pointer dereference (bnc#1012628). - xfrm/xfrm_policy: fix dst dev null pointer dereference in collect_md mode (bnc#1012628). - mm/zsmalloc.c: fix build when CONFIG_COMPACTION=n (bnc#1012628). - ALSA: usb-audio: Check mixer unit bitmap yet more strictly (bnc#1012628). - ALSA: hda/ca0132 - Add new SBZ quirk (bnc#1012628). - ALSA: line6: Fix memory leak at line6_init_pcm() error path (bnc#1012628). - ALSA: hda - Fixes inverted Conexant GPIO mic mute led (bnc#1012628). - ALSA: seq: Fix potential concurrent access to the deleted pool (bnc#1012628). - ALSA: usb-audio: Fix invalid NULL check in snd_emuusb_set_samplerate() (bnc#1012628). - ALSA: usb-audio: Add implicit fb quirk for Behringer UFX1604 (bnc#1012628). - kvm: x86: skip populating logical dest map if apic is not sw enabled (bnc#1012628). - KVM: x86: hyper-v: don't crash on KVM_GET_SUPPORTED_HV_CPUID when kvm_intel.nested is disabled (bnc#1012628). - KVM: x86: Don't update RIP or do single-step on faulting emulation (bnc#1012628). - uprobes/x86: Fix detection of 32-bit user mode (bnc#1012628). - x86/mm/cpa: Prevent large page split when ftrace flips RW on kernel text (bnc#1012628). - x86/apic: Do not initialize LDR and DFR for bigsmp (bnc#1012628). - x86/apic: Include the LDR when clearing out APIC registers (bnc#1012628). - HID: logitech-hidpp: remove support for the G700 over USB (bnc#1012628). - ftrace: Fix NULL pointer dereference in t_probe_next() (bnc#1012628). - ftrace: Check for successful allocation of hash (bnc#1012628). - ftrace: Check for empty hash and comment the race with registering probes (bnc#1012628). - usbtmc: more sanity checking for packet size (bnc#1012628). - usb-storage: Add new JMS567 revision to unusual_devs (bnc#1012628). - USB: cdc-wdm: fix race between write and disconnect due to flag abuse (bnc#1012628). - usb: hcd: use managed device resources (bnc#1012628). - usb: chipidea: udc: don't do hardware access if gadget has stopped (bnc#1012628). - usb: host: ohci: fix a race condition between shutdown and irq (bnc#1012628). - usb: host: xhci: rcar: Fix typo in compatible string matching (bnc#1012628). - USB: storage: ums-realtek: Update module parameter description for auto_delink_en (bnc#1012628). - USB: storage: ums-realtek: Whitelist auto-delink support (bnc#1012628). - tools/power turbostat: Fix caller parameter of get_tdp_amd() (bnc#1012628). - KVM: PPC: Book3S: Fix incorrect guest-to-user-translation error handling (bnc#1012628). - KVM: arm/arm64: vgic: Fix potential deadlock when ap_list is long (bnc#1012628). - KVM: arm/arm64: vgic-v2: Handle SGI bits in GICD_I{S,C}PENDR0 as WI (bnc#1012628). - mei: me: add Tiger Lake point LP device ID (bnc#1012628). - Revert "mmc: sdhci-tegra: drop ->get_ro() implementation" (bnc#1012628). - mmc: sdhci-of-at91: add quirk for broken HS200 (bnc#1012628). - mmc: sdhci-cadence: enable v4_mode to fix ADMA 64-bit addressing (bnc#1012628). - mmc: core: Fix init of SD cards reporting an invalid VDD range (bnc#1012628). - mmc: sdhci-sprd: fixed incorrect clock divider (bnc#1012628). - mmc: sdhci-sprd: add SDHCI_QUIRK2_PRESET_VALUE_BROKEN (bnc#1012628). - stm class: Fix a double free of stm_source_device (bnc#1012628). - intel_th: pci: Add support for another Lewisburg PCH (bnc#1012628). - intel_th: pci: Add Tiger Lake support (bnc#1012628). - typec: tcpm: fix a typo in the comparison of pdo_max_voltage (bnc#1012628). - fsi: scom: Don't abort operations for minor errors (bnc#1012628). - lkdtm/bugs: fix build error in lkdtm_EXHAUST_STACK (bnc#1012628). - NFSv4/pnfs: Fix a page lock leak in nfs_pageio_resend() (bnc#1012628). - NFS: Ensure O_DIRECT reports an error if the bytes read/written is 0 (bnc#1012628). - Revert "NFSv4/flexfiles: Abort I/O early if the layout segment was invalidated" (bnc#1012628). - lib: logic_pio: Fix RCU usage (bnc#1012628). - lib: logic_pio: Avoid possible overlap for unregistering regions (bnc#1012628). - lib: logic_pio: Add logic_pio_unregister_range() (bnc#1012628). - drm/amdgpu: Add APTX quirk for Dell Latitude 5495 (bnc#1012628). - drm/amdgpu: fix GFXOFF on Picasso and Raven2 (bnc#1012628). - drm/i915: Don't deballoon unused ggtt drm_mm_node in linux guest (bnc#1012628). - drm/i915: Call dma_set_max_seg_size() in i915_driver_hw_probe() (bnc#1012628). - i2c: piix4: Fix port selection for AMD Family 16h Model 30h (bnc#1012628). - bus: hisi_lpc: Unregister logical PIO range to avoid potential use-after-free (bnc#1012628). - bus: hisi_lpc: Add .remove method to avoid driver unbind crash (bnc#1012628). - VMCI: Release resource if the work is already queued (bnc#1012628). - crypto: ccp - Ignore unconfigured CCP device on suspend/resume (bnc#1012628). - SUNRPC: Don't handle errors if the bind/connect succeeded (bnc#1012628). - mt76: mt76x0u: do not reset radio on resume (bnc#1012628). - mms: sdhci-sprd: add SDHCI_QUIRK_BROKEN_CARD_DETECTION (bnc#1012628). - mm, memcg: partially revert "mm/memcontrol.c: keep local VM counters in sync with the hierarchical ones" (bnc#1012628). - mm: memcontrol: fix percpu vmstats and vmevents flush (bnc#1012628). - Revert "cfg80211: fix processing world regdomain when non modular" (bnc#1012628). - mac80211: fix possible sta leak (bnc#1012628). - cfg80211: Fix Extended Key ID key install checks (bnc#1012628). - mac80211: Don't memset RXCB prior to PAE intercept (bnc#1012628). - mac80211: Correctly set noencrypt for PAE frames (bnc#1012628). - mmc: sdhci-sprd: clear the UHS-I modes read from registers (bnc#1012628). - mmc: sdhci-sprd: Implement the get_max_timeout_count() interface (bnc#1012628). - mmc: sdhci-sprd: add get_ro hook function (bnc#1012628). - iwlwifi: add new cards for 22000 and fix struct name (bnc#1012628). - iwlwifi: add new cards for 22000 and change wrong structs (bnc#1012628). - iwlwifi: add new cards for 9000 and 20000 series (bnc#1012628). - iwlwifi: change 0x02F0 fw from qu to quz (bnc#1012628). - iwlwifi: pcie: add support for qu c-step devices (bnc#1012628). - iwlwifi: pcie: don't switch FW to qnj when ax201 is detected (bnc#1012628). - iwlwifi: pcie: handle switching killer Qu B0 NICs to C0 (bnc#1012628). - drm/i915: Do not create a new max_bpc prop for MST connectors (bnc#1012628). - drm/i915/dp: Fix DSC enable code to use cpu_transcoder instead of encoder->type (bnc#1012628). - bpf: fix use after free in prog symbol exposure (bnc#1012628). - hsr: implement dellink to clean up resources (bnc#1012628). - hsr: fix a NULL pointer deref in hsr_dev_xmit() (bnc#1012628). - hsr: switch ->dellink() to ->ndo_uninit() (bnc#1012628). - Revert "ASoC: Fail card instantiation if DAI format setup fails" (bnc#1012628). - commit bb4c31d - powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts (CVE-2019-15031 bsc#1149713). - powerpc/tm: Fix FP/VMX unavailable exceptions inside a transaction (CVE-2019-15030 bsc#1149713). - commit 76a34af - x86/ptrace: fix up botched merge of spectrev1 fix (bnc#1149376 CVE-2019-15902). - commit 77497b6 - config: enable STACKPROTECTOR_STRONG (jsc#SLE-9120 bsc#1130365) Enable CONFIG_STACKPROTECTOR_STRONG on all architectures except s390x (where the feature is not available). This extends the number of functions which are protected by "stack canary" check to catch functions writing past their stack frame. This change was requested by SUSE security to make our kernels more resistant to some types of stack overflow attacks. Tests performed by kernel performance teams confirmed that performance impact is acceptable. - commit d6e8aab - Linux 5.2.11 (bnc#1012628). - ASoC: simple_card_utils.h: care NULL dai at asoc_simple_debug_dai() (bnc#1012628). - ASoC: simple-card: fix an use-after-free in simple_dai_link_of_dpcm() (bnc#1012628). - ASoC: simple-card: fix an use-after-free in simple_for_each_link() (bnc#1012628). - ASoC: audio-graph-card: fix use-after-free in graph_dai_link_of_dpcm() (bnc#1012628). - ASoC: audio-graph-card: fix an use-after-free in graph_get_dai_id() (bnc#1012628). - ASoC: audio-graph-card: add missing const at graph_get_dai_id() (bnc#1012628). - regulator: axp20x: fix DCDCA and DCDCD for AXP806 (bnc#1012628). - regulator: axp20x: fix DCDC5 and DCDC6 for AXP803 (bnc#1012628). - ASoC: samsung: odroid: fix an use-after-free issue for codec (bnc#1012628). - ASoC: samsung: odroid: fix a double-free issue for cpu_dai (bnc#1012628). - ASoC: Intel: bytcht_es8316: Add quirk for Irbis NB41 netbook (bnc#1012628). - HID: logitech-hidpp: add USB PID for a few more supported mice (bnc#1012628). - HID: Add 044f:b320 ThrustMaster, Inc. 2 in 1 DT (bnc#1012628). - MIPS: kernel: only use i8253 clocksource with periodic clockevent (bnc#1012628). - mips: fix cacheinfo (bnc#1012628). - libbpf: sanitize VAR to conservative 1-byte INT (bnc#1012628). - netfilter: ebtables: fix a memory leak bug in compat (bnc#1012628). - ASoC: dapm: Fix handling of custom_stop_condition on DAPM graph walks (bnc#1012628). - ASoC: SOF: use __u32 instead of uint32_t in uapi headers (bnc#1012628). - spi: pxa2xx: Balance runtime PM enable/disable on error (bnc#1012628). - bpf: sockmap, sock_map_delete needs to use xchg (bnc#1012628). - bpf: sockmap, synchronize_rcu before free'ing map (bnc#1012628). - bpf: sockmap, only create entry if ulp is not already enabled (bnc#1012628). - selftests/bpf: fix sendmsg6_prog on s390 (bnc#1012628). - ASoC: dapm: fix a memory leak bug (bnc#1012628). - bonding: Force slave speed check after link state recovery for 802.3ad (bnc#1012628). - net: mvpp2: Don't check for 3 consecutive Idle frames for 10G links (bnc#1012628). - selftests: forwarding: gre_multipath: Enable IPv4 forwarding (bnc#1012628). - selftests: forwarding: gre_multipath: Fix flower filters (bnc#1012628). - selftests/bpf: add another gso_segs access (bnc#1012628). - libbpf: fix using uninitialized ioctl results (bnc#1012628). - can: dev: call netif_carrier_off() in register_candev() (bnc#1012628). - can: mcp251x: add error check when wq alloc failed (bnc#1012628). - can: gw: Fix error path of cgw_module_init (bnc#1012628). - ASoC: Fail card instantiation if DAI format setup fails (bnc#1012628). - Staging: fbtft: Fix GPIO handling (bnc#1012628). - libbpf: silence GCC8 warning about string truncation (bnc#1012628). - st21nfca_connectivity_event_received: null check the allocation (bnc#1012628). - st_nci_hci_connectivity_event_received: null check the allocation (bnc#1012628). - {nl,mac}80211: fix interface combinations on crypto controlled devices (bnc#1012628). - ASoC: ti: davinci-mcasp: Fix clk PDIR handling for i2s master mode (bnc#1012628). - ASoC: rockchip: Fix mono capture (bnc#1012628). - ASoC: ti: davinci-mcasp: Correct slot_width posed constraint (bnc#1012628). - net: usb: qmi_wwan: Add the BroadMobi BM818 card (bnc#1012628). - qed: RDMA - Fix the hw_ver returned in device attributes (bnc#1012628). - isdn: mISDN: hfcsusb: Fix possible null-pointer dereferences in start_isoc_chain() (bnc#1012628). - habanalabs: fix F/W download in BE architecture (bnc#1012628). - mac80211_hwsim: Fix possible null-pointer dereferences in hwsim_dump_radio_nl() (bnc#1012628). - net: stmmac: manage errors returned by of_get_mac_address() (bnc#1012628). - netfilter: ipset: Actually allow destination MAC address for hash:ip,mac sets too (bnc#1012628). - netfilter: ipset: Copy the right MAC address in bitmap:ip,mac and hash:ip,mac sets (bnc#1012628). - netfilter: ipset: Fix rename concurrency with listing (bnc#1012628). - rxrpc: Fix potential deadlock (bnc#1012628). - rxrpc: Fix the lack of notification when sendmsg() fails on a DATA packet (bnc#1012628). - nvmem: Use the same permissions for eeprom as for nvmem (bnc#1012628). - iwlwifi: mvm: avoid races in rate init and rate perform (bnc#1012628). - iwlwifi: dbg_ini: move iwl_dbg_tlv_load_bin out of debug override ifdef (bnc#1012628). - iwlwifi: dbg_ini: move iwl_dbg_tlv_free outside of debugfs ifdef (bnc#1012628). - iwlwifi: fix locking in delayed GTK setting (bnc#1012628). - iwlwifi: mvm: send LQ command always ASYNC (bnc#1012628). - enetc: Fix build error without PHYLIB (bnc#1012628). - isdn: hfcsusb: Fix mISDN driver crash caused by transfer buffer on the stack (bnc#1012628). - net: phy: phy_led_triggers: Fix a possible null-pointer dereference in phy_led_trigger_change_speed() (bnc#1012628). - perf bench numa: Fix cpu0 binding (bnc#1012628). - spi: pxa2xx: Add support for Intel Tiger Lake (bnc#1012628). - can: sja1000: force the string buffer NULL-terminated (bnc#1012628). - can: peak_usb: force the string buffer NULL-terminated (bnc#1012628). - ASoC: amd: acp3x: use dma_ops of parent device for acp3x dma driver (bnc#1012628). - net/ethernet/qlogic/qed: force the string buffer NULL-terminated (bnc#1012628). - enetc: Select PHYLIB while CONFIG_FSL_ENETC_VF is set (bnc#1012628). - NFSv4: Fix a credential refcount leak in nfs41_check_delegation_stateid (bnc#1012628). - NFSv4: When recovering state fails with EAGAIN, retry the same recovery (bnc#1012628). - NFSv4.1: Fix open stateid recovery (bnc#1012628). - NFSv4.1: Only reap expired delegations (bnc#1012628). - NFSv4: Fix a potential sleep while atomic in nfs4_do_reclaim() (bnc#1012628). - NFS: Fix regression whereby fscache errors are appearing on 'nofsc' mounts (bnc#1012628). - HID: quirks: Set the INCREMENT_USAGE_ON_DUPLICATE quirk on Saitek X52 (bnc#1012628). - HID: input: fix a4tech horizontal wheel custom usage (bnc#1012628). - drm/rockchip: Suspend DP late (bnc#1012628). - SMB3: Fix potential memory leak when processing compound chain (bnc#1012628). - SMB3: Kernel oops mounting a encryptData share with CONFIG_DEBUG_VIRTUAL (bnc#1012628). - sched/deadline: Fix double accounting of rq/running bw in push & pull (bnc#1012628). - sched/psi: Reduce psimon FIFO priority (bnc#1012628). - sched/psi: Do not require setsched permission from the trigger creator (bnc#1012628). - s390/protvirt: avoid memory sharing for diag 308 set/store (bnc#1012628). - s390/mm: fix dump_pagetables top level page table walking (bnc#1012628). - s390: put _stext and _etext into .text section (bnc#1012628). - ata: rb532_cf: Fix unused variable warning in rb532_pata_driver_probe (bnc#1012628). - net: cxgb3_main: Fix a resource leak in a error path in 'init_one()' (bnc#1012628). - net: stmmac: Fix issues when number of Queues >= 4 (bnc#1012628). - net: stmmac: tc: Do not return a fragment entry (bnc#1012628). - drm/amdgpu: pin the csb buffer on hw init for gfx v8 (bnc#1012628). - net: hisilicon: make hip04_tx_reclaim non-reentrant (bnc#1012628). - net: hisilicon: fix hip04-xmit never return TX_BUSY (bnc#1012628). - net: hisilicon: Fix dma_map_single failed on arm64 (bnc#1012628). - NFSv4: Ensure state recovery handles ETIMEDOUT correctly (bnc#1012628). - libata: have ata_scsi_rw_xlat() fail invalid passthrough requests (bnc#1012628). - libata: add SG safety checks in SFF pio transfers (bnc#1012628). - x86/lib/cpu: Address missing prototypes warning (bnc#1012628). - drm/vmwgfx: fix memory leak when too many retries have occurred (bnc#1012628). - block: aoe: Fix kernel crash due to atomic sleep when exiting (bnc#1012628). - block, bfq: handle NULL return value by bfq_init_rq() (bnc#1012628). - perf ftrace: Fix failure to set cpumask when only one cpu is present (bnc#1012628). - perf cpumap: Fix writing to illegal memory in handling cpumap mask (bnc#1012628). - perf pmu-events: Fix missing "cpu_clk_unhalted.core" event (bnc#1012628). - dt-bindings: riscv: fix the schema compatible string for the HiFive Unleashed board (bnc#1012628). - KVM: arm64: Don't write junk to sysregs on reset (bnc#1012628). - KVM: arm: Don't write junk to CP15 registers on reset (bnc#1012628). - selftests: kvm: Adding config fragments (bnc#1012628). - iwlwifi: mvm: disable TX-AMSDU on older NICs (bnc#1012628). - HID: wacom: correct misreported EKR ring values (bnc#1012628). - HID: wacom: Correct distance scale for 2nd-gen Intuos devices (bnc#1012628). - Revert "KVM: x86/mmu: Zap only the relevant pages when removing a memslot" (bnc#1012628). - Revert "dm bufio: fix deadlock with loop device" (bnc#1012628). - clk: socfpga: stratix10: fix rate caclulationg for cnt_clks (bnc#1012628). - ceph: clear page dirty before invalidate page (bnc#1012628). - ceph: don't try fill file_lock on unsuccessful GETFILELOCK reply (bnc#1012628). - libceph: fix PG split vs OSD (re)connect race (bnc#1012628). - drm/amdgpu/gfx9: update pg_flags after determining if gfx off is possible (bnc#1012628). - drm/nouveau: Don't retry infinitely when receiving no data on i2c over AUX (bnc#1012628). - scsi: ufs: Fix NULL pointer dereference in ufshcd_config_vreg_hpm() (bnc#1012628). - gpiolib: never report open-drain/source lines as 'input' to user-space (bnc#1012628). - Drivers: hv: vmbus: Fix virt_to_hvpfn() for X86_PAE (bnc#1012628). - userfaultfd_release: always remove uffd flags and clear vm_userfaultfd_ctx (bnc#1012628). - x86/retpoline: Don't clobber RFLAGS during CALL_NOSPEC on i386 (bnc#1012628). - x86/CPU/AMD: Clear RDRAND CPUID bit on AMD family 15h/16h (bnc#1012628). - x86/boot: Save fields explicitly, zero out everything else (bnc#1012628). - x86/boot: Fix boot regression caused by bootparam sanitizing (bnc#1012628). - IB/hfi1: Unsafe PSN checking for TID RDMA READ Resp packet (bnc#1012628). - IB/hfi1: Add additional checks when handling TID RDMA READ RESP packet (bnc#1012628). - IB/hfi1: Add additional checks when handling TID RDMA WRITE DATA packet (bnc#1012628). - IB/hfi1: Drop stale TID RDMA packets that cause TIDErr (bnc#1012628). - psi: get poll_work to run when calling poll syscall next time (bnc#1012628). - dm kcopyd: always complete failed jobs (bnc#1012628). - dm dust: use dust block size for badblocklist index (bnc#1012628). - dm btree: fix order of block initialization in btree_split_beneath (bnc#1012628). - dm integrity: fix a crash due to BUG_ON in __journal_read_write() (bnc#1012628). - dm raid: add missing cleanup in raid_ctr() (bnc#1012628). - dm space map metadata: fix missing store of apply_bops() return value (bnc#1012628). - dm table: fix invalid memory accesses with too high sector number (bnc#1012628). - dm zoned: improve error handling in reclaim (bnc#1012628). - dm zoned: improve error handling in i/o map code (bnc#1012628). - dm zoned: properly handle backing device failure (bnc#1012628). - genirq: Properly pair kobject_del() with kobject_add() (bnc#1012628). - mm/z3fold.c: fix race between migration and destruction (bnc#1012628). - mm, page_alloc: move_freepages should not examine struct page of reserved memory (bnc#1012628). - mm: memcontrol: flush percpu vmstats before releasing memcg (bnc#1012628). - mm: memcontrol: flush percpu vmevents before releasing memcg (bnc#1012628). - mm, page_owner: handle THP splits correctly (bnc#1012628). - mm/zsmalloc.c: migration can leave pages in ZS_EMPTY indefinitely (bnc#1012628). - mm/zsmalloc.c: fix race condition in zs_destroy_pool (bnc#1012628). - mm/kasan: fix false positive invalid-free reports with CONFIG_KASAN_SW_TAGS=y (bnc#1012628). - xfs: fix missing ILOCK unlock when xfs_setattr_nonsize fails due to EDQUOT (bnc#1012628). - IB/hfi1: Drop stale TID RDMA packets (bnc#1012628). - dm zoned: fix potential NULL dereference in dmz_do_reclaim() (bnc#1012628). - io_uring: fix potential hang with polled IO (bnc#1012628). - io_uring: don't enter poll loop if we have CQEs pending (bnc#1012628). - io_uring: add need_resched() check in inner poll loop (bnc#1012628). - powerpc: Allow flush_(inval_)dcache_range to work across ranges >4GB (bnc#1012628). - rxrpc: Fix local endpoint refcounting (bnc#1012628). - rxrpc: Fix read-after-free in rxrpc_queue_local() (bnc#1012628). - rxrpc: Fix local endpoint replacement (bnc#1012628). - rxrpc: Fix local refcounting (bnc#1012628). - commit 6385110 - mwifiex: Fix three heap overflow at parsing element in cfg80211_ap_settings (CVE-2019-14814,bsc#1146512,CVE-2019-14815,bsc#1146514,CVE-2019-14816,bsc#1146516). - commit 05e68fe - rpm: raise required disk space for binary packages Current disk space constraints (10 GB on s390x, 25 GB on other architectures) no longer suffice for 5.3 kernel builds. The statistics show ~30 GB of disk consumption on x86_64 and ~11 GB on s390x so raise the constraints to 35 GB in general and 14 GB on s390x. - commit 527cb66 - Refresh patches.suse/x86-apic-Handle-missing-global-clockevent-gracefully.patch. Update to the upstreamed patch. - commit bb236c2 - Update reference for ath6kl fix (CVE-2019-15290,bsc#1146543). - commit 6f03484 - Fix a NULL-ptr-deref bug in ath6kl_usb_alloc_urb_from_pipe (CVE-2019-15098,bsc#1146378). - Fix a NULL-ptr-deref bug in ath10k_usb_alloc_urb_from_pipe (CVE-2019-15099,bsc#1146368). - commit 8c61e43 - Fix a double free bug in rsi_91x_deinit (bnc#1147116 CVE-2019-15504). - commit 5009555 ==== kgamma5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kgamma5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== khotkeys5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: khotkeys5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kinfocenter5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kinfocenter5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kmenuedit5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kmenuedit5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kscreen5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kscreen5-lang kscreen5-plasmoid - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Add missing includes ==== kscreenlocker ==== Version update (5.16.4 -> 5.16.5) Subpackages: kscreenlocker-lang libKScreenLocker5 - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Port away from deprecated KWindowSystem API ==== ksshaskpass5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: ksshaskpass5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== ksysguard5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: ksysguard5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== kwayland-integration ==== Version update (5.16.4 -> 5.16.5) - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Remove slideWindow(QWidget*) overload with recent KWindowSystem * Fix build with recent frameworks and Qt 5.13 ==== kwin5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: kwin5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * [effects/desktopgrid] Don't change activities (kde#301447) * Remove slideWindow(QWidget*) overload with recent KWindowSystem ==== lapack ==== Subpackages: libblas3 liblapack3 - Use FAT LTO objects in order to provide proper static library. ==== ldb ==== Version update (1.5.4 -> 1.5.5) Subpackages: libldb1 python3-ldb - Update to 1.5.5 + LDAP_REFERRAL_SCHEME_OPAQUE was added to ldb_module.h; (bso#12478); + Skip @ records early in a search full scan; (bso#13893); ==== libcue ==== Version update (2.2.0 -> 2.2.1) - Update to release 2.2.1 * Updates to the build procedure only ==== libdb-4_8 ==== Subpackages: db48-utils libdb-4_8-devel - Add opd deadlock patch as found and documented by Red Hat. (bsc#1148244) * 0001-OPD-deadlock-RH-BZ-1349779.patch - Remove the getpatches as it does not work at all, oracle removed the pages - Use spec-cleaner - Fix stripped debuginfo to make sure we can debug with libdb ==== libgcrypt ==== Version update (1.8.4 -> 1.8.5) Subpackages: libgcrypt20 libgcrypt20-hmac - libgcrypt 1.8.5: * CVE-2019-13627: mitigation against an ECDSA timing attack (boo#1148987) * Improve ECDSA unblinding * Provide a pkg-config file ==== libgnome-games-support ==== Version update (1.4.3 -> 1.4.4) Subpackages: libgnome-games-support-1-3 libgnome-games-support-lang - Update to version 1.4.4: + Fix build with new gettext. ==== libkdecoration2 ==== Version update (5.16.4 -> 5.16.5) Subpackages: libkdecorations2-5 libkdecorations2-5-lang libkdecorations2private6 - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== libkscreen2 ==== Version update (5.16.4 -> 5.16.5) Subpackages: libKF5Screen7 libkscreen2-plugin - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== libksysguard5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: libksysguard5-helper libksysguard5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== libktorrent ==== Version update (2.1 -> 2.1.1) Subpackages: libKF5Torrent6 libktorrent-lang - Update to version 2.1.1 * Fix HTTP seeding (kde#382375) * Fix a few issues found by clang-tidy * Some build fixes that get triggered on certain versions of Qt/KF5 frameworks - Drop fix-build-with-qt5.6.patch, merged upstream - Drop require-lower-LibGMP.patch, no longer necessary as all current distribution versions have gmp 6 - Remove conditionals for no longer supported distribution versions - Add missing requirements to the devel package - Update URL, ktorrent.org doesn't exist any more - Run spec-cleaner ==== libmbim ==== Subpackages: libmbim-glib4 mbimcli-bash-completion - Add libmbim-fix-build-commits.patch: Fix build with new glib2. - Follwing the above patch, add libtool BuildRequires and pass autoreconf as the patch touches the buildsystem. - Use modern macros and url's. ==== libogg ==== Version update (1.3.3 -> 1.3.4) - Update to release 1.3.4 * Faster slice-by-8 CRC32 implementation. See https://lwn.net/Articles/453931/ for motivation. ==== libpcap ==== - Use FAT LTO objects in order to provide proper static library. ==== libpeas ==== Subpackages: libpeas-1_0-0 libpeas-gtk-1_0-0 libpeas-lang libpeas-loader-python libpeas-loader-python3 typelib-1_0-Peas-1_0 typelib-1_0-PeasGtk-1_0 - Remove libpeas-loader-python from Recommends. There is already a Supplements that will install it if python 2 is installed, and hopefully this will keep it off the LiveCD. ==== libqt5-qtbase ==== Subpackages: libQt5Concurrent5 libQt5Core5 libQt5DBus5 libQt5Gui5 libQt5Network5 libQt5OpenGL5 libQt5PrintSupport5 libQt5Sql5 libQt5Sql5-mysql libQt5Sql5-sqlite libQt5Test5 libQt5Widgets5 libQt5Xml5 libqt5-qtbase-platformtheme-gtk3 - Add patch to fix crash during Drag-and-Drop: * 0001-Fix-crash-with-drag-cursor-handling.patch ==== libqt5-qtimageformats ==== - bsc#1144249 - Drop jasper dependency from libqt5-qtimageformats: Removes JPEG2000 support - Remove jas_version.patch ==== libqt5-qttools ==== Subpackages: libQt5Designer5 libQt5Help5 libqt5-qdbus libqt5-qtpaths - Split qcollectiongenerator and qhelpgenerator into a subpackage which is required by the Qt5Help cmake module - Remove the accidental dependency from the devel package on the Qt Designer example plugins, referenced in the cmake files. - Move the example plugins to a separate subpackage. - Require libqt5-qttools again. This is causing multiple build issues. - Clean the spec file. - Drop some not unnecessary library runtime Requires: libQt5Designer5, libQt5DesignerComponents5, libQt5Help5, pulled in automatically. - Change libqt5-qttools and libqt5-qttools-doc Requires in devel subpackage to Recommends, as the tools are not required for building. - Make some Summaries and Descriptions more useful. - Correct requires for matching Clang headers, the headers are part of the libclang package for current Clang versions ==== libreoffice ==== Version update (6.3.0.4 -> 6.3.1.1) Subpackages: libreoffice-base libreoffice-base-drivers-firebird libreoffice-calc libreoffice-draw libreoffice-filters-optional libreoffice-gnome libreoffice-gtk3 libreoffice-icon-themes libreoffice-impress libreoffice-l10n-en libreoffice-mailmerge libreoffice-math libreoffice-pyuno libreoffice-qt5 libreoffice-writer libreofficekit - Update to 6.3.1.1: * 6.3.1 RC1 - Remove merged patch: * gcc.patch - Add one more patch for the old boost: * old-boost2.patch - Add patch to fix building on SLE12: * old-boost.patch - Add patch to fix build with SLE12 boost: * 0001-Fix-buidling-with-older-boost.patch ==== librevenge ==== Subpackages: librevenge-0_0-0 librevenge-stream-0_0-0 - Adjust SRPM group. ==== libsodium ==== - Revert previous change about cpuid as previous change rejected in https://build.opensuse.org/request/show/724809 - Disable LTO as bypass boo#1148184 - Add libsodium_configure_cpuid_chg.patch and call autoconf to regenerate configure script with proper CPUID checking. Required at least for PowerPC and ARM now that LTO enabled. ==== libsolv ==== Version update (0.7.5 -> 0.7.6) Subpackages: libsolv-devel libsolv-tools python3-solv ruby-solv - Fix repository priority handling for multiversion packages - Make code compatible with swig 4.0, remove obj0 instances - repo2solv: support zchunk compressed data - bump version to 0.7.6 ==== libtool ==== Subpackages: libltdl7 - Use FAT LTO objects in order to provide proper static library. ==== libusb-1_0 ==== Version update (1.0.22 -> 1.0.23) - Update to version 1.0.23 * Core: abandon synchronous transfers when device closure is detected. * Core: fix error in handling the removal of file descriptors while handling events. * New API libusb_set_log_cb() to redirect global and per context log messages to the provided log handling function. * New API libusb_wrap_sys_device to allow the user to specify the usb device to use. * Various other bug fixes and improvements. ==== libvdpau ==== Version update (1.2 -> 1.3) - fixed source URL in specfile - Update libvdpau to version 1.3 * This release of libvdpau switches the build system from automake & autoconf to meson and adds definitions to support decoding of the VP9 video format. ==== libwebp ==== Version update (1.0.2 -> 1.0.3) Subpackages: libwebp7 libwebpdemux2 libwebpmux3 - Update to new upstream release 1.0.3 * Resize fixes for Nx1 sizes and the addition of non-opaque alpha values for odd sizes. * Lossless encode/decode performance improvements. * Lossy compression performance improvement at low quality levels with flat content. * vwebp will now preserve the aspect ratio of images that exceed monitor resolution by scaling the image to fit. ==== libyajl ==== - Use FAT LTO objects in order to provide proper static library. ==== libyui-qt ==== Version update (2.50.4 -> 2.50.5) - pollEventInternal/UI.PollInput would produce no events (bsc#1139967) - 2.50.5 ==== libzio ==== - Use FAT LTO objects in order to provide proper static library ==== lua51 ==== - Use FAT LTO objects in order to provide proper static library. ==== lua53 ==== Subpackages: liblua5_3-5 - Use FAT LTO objects in order to provide proper static library. ==== milou5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: milou5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== mozilla-nspr ==== - Use FAT LTO objects in order to provide proper static library. ==== mozilla-nss ==== Version update (3.44.1 -> 3.45) Subpackages: libfreebl3 libsoftokn3 mozilla-nss-certs mozilla-nss-tools - update to NSS 3.45 (bsc#1141322) * required by Firefox 69.0 New functions * PK11_FindRawCertsWithSubject - Finds all certificates on the given slot with the given subject distinguished name and returns them as DER bytes. If no such certificates can be found, returns SECSuccess and sets *results to NULL. If a failure is encountered while fetching any of the matching certificates, SECFailure is returned and *results will be NULL. Notable changes * bmo#1540403 - Implement Delegated Credentials * bmo#1550579 - Replace ARM32 Curve25519 implementation with one from fiat-crypto * bmo#1551129 - Support static linking on Windows * bmo#1552262 - Expose a function PK11_FindRawCertsWithSubject for finding certificates with a given subject on a given slot * bmo#1546229 - Add IPSEC IKE support to softoken * bmo#1554616 - Add support for the Elbrus lcc compiler (<=1.23) * bmo#1543874 - Expose an external clock for SSL * bmo#1546477 - Various changes in response to the ongoing FIPS review Certificate Authority Changes * The following CA certificates were Removed: bmo#1552374 - CN = Certinomis - Root CA Bugs fixed * bmo#1540541 - Don't unnecessarily strip leading 0's from key material during PKCS11 import (CVE-2019-11719) * bmo#1515342 - More thorough input checking (CVE-2019-11729) * bmo#1552208 - Prohibit use of RSASSA-PKCS1-v1_5 algorithms in TLS 1.3 (CVE-2019-11727) * bmo#1227090 - Fix a potential divide-by-zero in makePfromQandSeed from lib/freebl/pqg.c (static analysis) * bmo#1227096 - Fix a potential divide-by-zero in PQG_VerifyParams from lib/freebl/pqg.c (static analysis) * bmo#1509432 - De-duplicate code between mp_set_long and mp_set_ulong * bmo#1515011 - Fix a mistake with ChaCha20-Poly1305 test code where tags could be faked. Only relevant for clients that might have copied the unit test code verbatim * bmo#1550022 - Ensure nssutil3 gets built on Android * bmo#1528174 - ChaCha20Poly1305 should no longer modify output length on failure * bmo#1549382 - Don't leak in PKCS#11 modules if C_GetSlotInfo() returns error * bmo#1551041 - Fix builds using GCC < 4.3 on big-endian architectures * bmo#1554659 - Add versioning to OpenBSD builds to fix link time errors using NSS * bmo#1553443 - Send session ticket only after handshake is marked as finished * bmo#1550708 - Fix gyp scripts on Solaris SPARC so that libfreebl_64fpu_3.so builds * bmo#1554336 - Optimize away unneeded loop in mpi.c * bmo#1559906 - fipstest: use CKM_TLS12_MASTER_KEY_DERIVE instead of vendor specific mechanism * bmo#1558126 - TLS_AES_256_GCM_SHA384 should be marked as FIPS compatible * bmo#1555207 - HelloRetryRequestCallback return code for rejecting 0-RTT * bmo#1556591 - Eliminate races in uses of PK11_SetWrapKey * bmo#1558681 - Stop using a global for anti-replay of TLS 1.3 early data * bmo#1561510 - Fix a bug where removing -arch XXX args from CC didn't work * bmo#1561523 - Add a string for the new-ish error SSL_ERROR_MISSING_POST_HANDSHAKE_AUTH_EXTENSION - split hmac subpackages to match SLE's packaging - Use -ffat-lto-objects in order to provide assembly for static libs. ==== mpc ==== - Use FAT LTO objects in order to provide proper static library. ==== multipath-tools ==== Version update (0.8.2+11+suse.0f6a649 -> 0.8.2+26+suse.d884195) Subpackages: kpartx libmpath0 - Update to version 0.8.2+26+suse.d884195: - Don't activate NVMe native multipath support by default * multipath.conf.5: document foreign library support * multipath.conf: add "enable_foreign" parameter (bsc#1139837) * Set default for "enable_foreign" to "NONE" (bsc#1139837) added libmultipath-set-enable_foreign-to-NONE-by-default.patch - Added reviewed upstream patches (marginal path patch set from Red Hat) * add "marginal_pathgroups" config option * deprecate "delay_wait_checks" and "delay_watch_checks"; they are now automatically mapped to eqivalent "san_path_err_..." settings. ==== nagios ==== Subpackages: nagios-www - Add /etc/cron.weekly to filelist, as this is now part of cron, which we don't want to require ==== ncurses ==== Subpackages: libncurses6 ncurses-devel ncurses-utils tack terminfo terminfo-base terminfo-screen - Add ncurses patch 20190810 + fix a few more coverity warnings. - Add ncurses patch 20190803 + improve loop limits in _nc_scroll_window() to handle a case where the scrolled data is a pad which is taller than the window (patch by Rob King). + amend the change to screen, because tmux relies upon that entry and does not support that feature (Debian #933572) -TD + updated ms-terminal entry & notes -TD + updated kitty entry & notes -TD + updated alacritty+common entry & notes -TD + use xterm+sl-twm for consistency -TD - Add ncurses patch 20190728 + fix a few more coverity warnings. + more documentation updates based on tctest. - Add ncurses patch 20190727 + fix a few coverity warnings. + documentation updates based on tctest. - Add ncurses patch 20190720 + fix a few warnings for gcc 4.x + add some portability/historical details to the tic, toe and infocmp manual pages. + correct fix for broken link from terminfo(5) to tabs(1) manpage (report by Sven Joachim). - Use FAT LTO objects in order to provide proper static library. ==== newt ==== - Use FAT LTO objects in order to provide proper static library. ==== nghttp2 ==== - Conditionally remove dependecy on jemalloc for SLE-12 ==== nodejs12 ==== Version update (12.8.1 -> 12.10.0) Subpackages: nodejs12-devel npm12 - Update to 12.10.0: * deps: + update npm to 6.10.3 * fs: + Add recursive option to rmdir() + Allow passing true to emitClose option + Add *timeNs properties to BigInt Stats objects * net: + Allow reading data into a static buffer - versioned.patch: refreshed - Update to 12.9.0: * crypto: Added an oaepHash option to asymmetric encryption which allows users to specify a hash function when using OAEP padding * deps: Updated V8 to 7.6.303.29 + Improves the performance of various APIs such as JSON.parse and methods called on frozen arrays. + Adds the Promise.allSettled method. + Improves support of BigInt in Intl methods. + For more information: https://v8.dev/blog/v8-release-76 * fs: Added fs.writev, fs.writevSync and filehandle.writev (promise version) methods. * http: Added three properties to OutgoingMessage.prototype: writableObjectMode, writableLength and writableHighWaterMark * stream: + Added an new property 'readableEnded' to readable streams. + Added an new property 'writableEnded' to writable streams. - fix_ci_tests.patch: refreshed ==== obs-service-extract_file ==== Version update (0.3 -> 0.4) - Update to version 0.4: * add support for obscpio archives from obs_scm * Add README.md file ==== obs-service-tar_scm ==== Version update (0.10.9.1559745964.22c86cd -> 0.10.10.1566390389.9f923f8) Subpackages: obs-service-obs_scm obs-service-obs_scm-common - Update to version 0.10.10.1566390389.9f923f8: * Revert "Merge pull request #323 from e4t/master" * Make service 'tar' work with a cachedir as well * Fix unit tests for modified scm directory handling * Append '_service' to repository directory * separate language and encoding * git: really print the error message * tar_scm.service: fix exclude documentation * Don`t break testsuite if cwd contains colons * disabling hg tests in travis ==== openldap2 ==== Subpackages: libldap-2_4-2 libldap-data openldap2-client openldap2-devel - Use FAT LTO objects in order to provide proper static library. ==== opie ==== - Use FAT LTO objects in order to provide proper static library. ==== os-prober ==== - Fix duplicated distro detected on btrfs multiple device (bsc#1142858) * os-prober-btrfs-multiple-device.patch - Update URL for downloading source archive from Debain Salsa server * os-prober.spec - Added * os-prober-1.76.tar.bz2 - Removed * os-prober_1.76.tar.xz ==== ovmf ==== Version update (201905 -> 201908) Subpackages: qemu-uefi-aarch64 - Update to edk2-stable201908 + OvmfPkg: Introduce platform OvmfXen + OvmfPkg/ResetSystemLib: Add missing dependency on PciLib + MdeModulePkg DxeCore: Fix for missing Memory Attributes Table (MAT) update + BaseTools: Fixed issue of incorrect Module Unique Name + CryptoPkg/OpensslLib: Add missing header files in INF file + SecurityPkg/SecurityPkg.uni: Add missing strings for new PCDs + MdeModulePkg/DxeIplPeim: Initialize pointer PageMapLevel5Entry + MdeModulePkg/MdeModulePkg.dec: Remove gEfiDpcProtocolGuid + Readme.md: add submodule policy and clone commands + MdeModulePkg/DxeIplPeim: Relocate operation of PageMapLevel5Entry++ + MdeModulePkg: Add missing header files in INF files + MdePkg: Add MmAccess and MmControl definition. + CryptoPkg/BaseCryptLib: Wrap OpenSSL HKDF algorithm + MdeModulePkg/DxeIpl: Create 5-level page table for long mode + MdeModulePkg/DxeIpl: Introduce PCD PcdUse5LevelPageTable + UefiCpuPkg/CpuDxe: Support parsing 5-level page table + UefiCpuPkg/MpInitLib: Enable 5-level paging for AP when BSP's enabled + OvmfPkg/PlatformPei: Change referenced MSR name. + UefiCpuPkg/PiSmmCpuDxeSmm: Add check for pointer Pml5Entry + SecurityPkg/SecurityPkg.dec: Remove trailing white space + MdeModulePkg/PiSmmCore: Use unique structure signatures + UefiCpuPkg/MpInitLib: don't shadow the microcode patch twice. + ShellPkg: improve acpiview + MdePkg: Add PI 1.5 SmramMemoryReserve HOB file + MdePkg/PciExpress21.h: Fix the PCI industry standard register defines + CryptoPkg/BaseCryptLib: Use cmp-operator for non-Boolean comparisons + ArmPkg: DebugPeCoffExtraActionLib: fix trivial comment typos + ArmPkg: DebugPeCoffExtraActionLib: debugger commands are not errors + UefiCpuPkg/RegisterCpuFeaturesLib: Start all processors simultaneously. + UefiCpuPkg: Add new EDKII_PEI_MP_SERVICES2_PPI + list module-internal header files in INF [Sources] + SecurityPkg: introduce the SM3 digest algorithm + BaseTools: Fix python3.8 SyntaxWarning + BaseTools: Add HOST_APPLICATION module type. + UefiCpuPkg/PiSmmCpu: Enable 5 level paging when CPU supports + MdePkg/BaseLib.h: Update IA32_CR4 structure for 5-level paging + UefiCpuPkg RegisterCpuFeaturesLib: Fix an ASSERTION issue + ArmPlatformPkg: Actually disable PL031 interrupts + UefiCpuPkg/PiSmmCpu: Change variable names and comments to follow SDM + OvmfPkg: use DxeTpmMeasurementLib if and only if TPM2_ENABLE + ArmPlatformPkg: Fix various typos + ArmPkg: Fix various typos + Remove IntelFrameworkPkg + Remove IntelFrameworkModulePkg + MdeModulePkg/BdsDxe: Use a pcd to control PlatformRecovery + MdeModulePkg: Add a pcd to set the OS indications bit + SecurityPkg: Remove DxeDeferImageLoadLib in DSC + BaseTools:Linux changes the way the latest version is judged + Fix indentation in edksetup.sh SetupPython3 + MdeModulePkg/SdMmcHcDxe: Implement revision 3 of SdMmcOverrideProtocol + MdeModulePkg/SdMmcOverride: Add GetOperatingParam notify phase + MdeModulePkg/UfsPassThruDxe: Fix unaligned data transfer handling + ArmVirtPkg: handle NETWORK_TLS_ENABLE in ArmVirtQemu* + UefiCpuPkg/MpInitLib: MicrocodeDetect: Ensure checked range is valid + MdeModulePkg/UfsPassThruDxe: Refactor UFS device presence detection + PcAtChipsetPkg: Remove framework modules + SecurityPkg: add FvReportPei.inf in dsc for build validation + SecurityPkg/FvReportPei: implement a common FV verifier and reporter + SecurityPkg: add definitions for OBB verification + OvmfPkg: don't assign PCI BARs above 4GiB when CSM enabled + OvmfPkg: Don't build in QemuVideoDxe when we have CSM + OvmfPkg/LegacyBbs: Add boot entries for VirtIO and NVME devices + OvmfPkg/LegacyBios: set NumberBbsEntries to the size of BbsTable + SecurityPkg: Add missing instances for build only + BaseTools: Move Build Cache related function out of CreateAsBuiltInf + BaseTools: refine CreateAsBuiltInf function + BaseTools:Add DetectNotUsedItem.py to Edk2\BaseTools\Scripts + BaseTools:Add import in FvImageSection + MdeModulePkg/PeiMain: PeiAllocatePool: output NULL if HOB creation fails + MdePkg: Add Generic Initiator Affinity Structure definitions to SRAT + BaseTools:Introduce CopyFileOnChange() function to copy cache files + MdeModulePkg: Add missing instances for build only + SourceLevelDebugPkg: Add missing instances for build only + CryptoPkg: Add missing instance for build only + MdeModulePkg: Introduce EDKII_SERIAL_PORT_LIB_VENDOR_GUID + MdeModulePkg/GraphicsConsoleDxe: Initialize the output mode + MdeModulePkg/ConSplitterDxe: Optimize the ConSplitterTextOutSetMode + BaseTools: add script to configure local git options + BaseTools: add centralized location for git config files + OvmfPkg/QemuVideoDxe: Shouldn't assume system in VGA alias mode. - Refresh ovmf-gdb-symbols.patch - Enable NETWORK_TLS_ENABLE for AArch64 ==== oxygen5 ==== Version update (5.16.4 -> 5.16.5) - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * [SplitterProxy] Don't manually mapToGlobal ==== package-update-indicator ==== Version update (4 -> 5) Subpackages: package-update-indicator-lang - update to version 5: * Reduce delay before checking for updates after an "updates- changed" signal * Fix continuos loop of update checks if the refresh cache interval is 0 * Add fallback icons for KDE-based themes ==== patterns-base ==== Subpackages: patterns-base-apparmor patterns-base-base patterns-base-basesystem patterns-base-basic_desktop patterns-base-console patterns-base-documentation patterns-base-enhanced_base patterns-base-minimal_base patterns-base-sw_management patterns-base-transactional_base patterns-base-x11 patterns-base-x11_enhanced - use obsolete_legacy_pattern macro for readability - drop _opt patterns and integrate them into main patterns to reduce complexity ==== pcre ==== Subpackages: libpcre1 libpcreposix0 - Use FAT LTO objects in order to provide proper static library. ==== perl-Date-Manip ==== Version update (6.77 -> 6.78) - updated to 6.78 see /usr/share/doc/packages/perl-Date-Manip/Changes 6.78 2019-08-29 - Time zone fixes Newest zoneinfo data (tzdata 2019b). - Documentation fixes Fixed a broken link. Mohammad S Anwar (GitHub #29) ==== perl-HTTP-Daemon ==== Version update (6.05 -> 6.06) - updated to 6.06 see /usr/share/doc/packages/perl-HTTP-Daemon/Changes 6.06 2019-08-29 14:23:17Z - Delimit IPv6 numeric address with brackets and URI-quote an IPv6 zone separator in url() method output (GH#32) (Petr Pisar) - Handle undef and empty LocalAddr value in new() constructor as an unspecified address (GH#24, RT#123069) (Petr Pisar) - Use IO::Socket::IP for IPv6 support. (GH#31) (Chase Whitener) ==== perl-Net-DNS ==== Version update (1.20 -> 1.21) - updated to 1.21 see /usr/share/doc/packages/perl-Net-DNS/Changes ==== perl-RPC-XML ==== Version update (0.79 -> 0.80) - Remove patches not needed anymore: * RPC-XML-0.60-rev127.dif * RPC-XML-0.76-extern_ent.dif * RPC-XML-0.78-reproducible.diff - updated to 0.80 see /usr/share/doc/packages/perl-RPC-XML/ChangeLog 0.80 Sunday May 8, 2016, 12:45:00 PM -0700 * etc/make_method Make the build reproducible by dropping timestamps in make_method output. (Niko Tyni) * t/40_server.t * t/40_server_xmllibxml.t * t/50_client.t Fixes for test problems with Strawberry Perl. * lib/RPC/XML/Client.pm Fix leak caused by failing to free Expat parser. We don't want to return from the method until the parser's been freed. We therefore need to call $parser->release() before the return statements caused by request failures. (Tom Grimwood-Taylor) * lib/RPC/XML/Server.pm One socket-opt change, one typo corrected. * lib/RPC/XML.pm Applied patch for numeric regexes and critic cleanup. Addresses GitHub pull request #10 and RT #111636. * t/60_net_server.t RT #99578: Work-around fix for Net::Server+IO::Socket::IP. If a system's IPv6 declaration of localhost was before the IPv4 declaration in the hosts file, this test would fail. ==== perl-Test-Simple ==== Version update (1.302166 -> 1.302167) - updated to 1.302167 see /usr/share/doc/packages/perl-Test-Simple/Changes 1.302167 2019-08-23 14:07:58-07:00 America/Los_Angeles - add test2_is_testing_done api method - Fix string compare warning ==== perl-YAML-LibYAML ==== Version update (0.79 -> 0.80) - Remove perl-YAML-LibYAML-no-plan.patch (not used anymore) - updated to 0.80 see /usr/share/doc/packages/perl-YAML-LibYAML/Changes 0.80 Thu 22 Aug 2019 01:17:13 PM CEST - Fix memory leak when loading invalid YAML (PR#93 tinita) ==== perl-namespace-autoclean ==== Version update (0.28 -> 0.29) - updated to 0.29 see /usr/share/doc/packages/perl-namespace-autoclean/Changes 0.29 2019-08-24 17:07:22Z - switch from Test::Requires to Test::Needs - report on the installed versions of more optional modules ==== phonon4qt5 ==== Version update (4.10.3 -> 4.11.0) Subpackages: libphonon4qt5 phonon4qt5-lang - Add designer plugin directory to directories owned by the devel package, as libqt5-qttools is no longer pulled in. - Update to 4.11.0: * Features + New phononsettings application for advanced users to control PulseAudio device preference by-category and Phonon backend selection. This application is an advanced utility and you shouldn't need to visit it if you aren't very certain that something needs changing. This replaces the previously available System Settings module for Phonon. * Changes + The backends Phonon VLC 0.11+ or Phonon GStreamer 4.10+ are required to build with this version of libphonon! Older versions will no longer build because of aggressive clean up of legacy compatibility code in the build system. + Qt4 support has been removed. Qt5 is now the default. If you still need the Qt4 version for whatever reason it's recommended that you port to Qt5 quickly seeing as Qt4 is getting really long in the tooth. Since the Qt4 and Qt5 version are fully co-installable you can continue to use 4.10 for Qt4 while using 4.11 for Qt5 should it be necessary. + CMake 3.5 is now required for building + Installation paths are now controlled by the KDEInstallDirs CMake include instead of the GNUInstallDirs one + CCFlag and CMake settings are now shared with other KDE software as per the extra-cmake-modules framework + PHONON_BUILD_DESCRIPTOR option no longer supported. + PHONON_BUILD_DECLARATIVE_PLUGIN option no longer supported. It made little to no sense on Qt5. + PHONON_INSTALL_QT_COMPAT_HEADERS option no longer supported. It made no sense on Qt5. + PHONON_NO_DBUS option no longer supported. The DBus interface was only used to communicate with the settings interface in Plasma, but hasn't been used in many years. This effectively removes QtDBus as dependency. + PHONON_ASSERT_STATES option no longer supported. The state machine is now always enabled unless Q_ASSERTs as a whole are disabled (i.e. the build is not a Debug-ish build). + PHONON_INSTALL_QT_EXTENSIONS_INTO_SYSTEM_QT option no longer supported. Replaced by ECM's KDE_USE_QT_SYS_PATHS. * Bug Fixes + The default preference of backends is now properly implemented. This was previously reversed. ==== phonon4qt5-backend-gstreamer ==== Version update (4.9.1 -> 4.10.0) Subpackages: phonon4qt5-backend-gstreamer-lang - Update to 4.10.0 * Changes + This version of Phonon GStreamer is compatible with Phonon 4.11+ and its revised build systems. Older versions of Phonon GStreamer no longer build against newer Phonon releases. Conversely this version no longer builds with older Phonon releases. + Qt4 support has been removed. Qt5 is now the default. * Bug Fixes + Subtitles no longer outlive the media they were associated with. ==== php7 ==== Version update (7.3.8 -> 7.3.9) Subpackages: apache2-mod_php7 php7-bcmath php7-bz2 php7-calendar php7-ctype php7-curl php7-dba php7-devel php7-dom php7-exif php7-fastcgi php7-ftp php7-gd php7-gettext php7-gmp php7-iconv php7-json php7-ldap php7-mbstring php7-mysql php7-odbc php7-openssl php7-pdo php7-pear php7-pgsql php7-shmop php7-snmp php7-sockets php7-sqlite php7-sysvsem php7-sysvshm php7-tidy php7-tokenizer php7-wddx php7-xmlreader php7-xmlwriter php7-xsl php7-zlib - updated to 7.3.9: This is a security release which also contains several bug fixes. See https://www.php.net/ChangeLog-7.php#7.3.9 ==== plasma-browser-integration ==== Version update (5.16.4 -> 5.16.5) Subpackages: plasma-browser-integration-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== plasma5-addons ==== Version update (5.16.4 -> 5.16.5) Subpackages: plasma5-addons-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Fix build * Fix #410744: Duplicate results when a 2nd unit is partially written in krunner (kde#410744) * Remove colon (:) prefix when looking up dictionary word (kde#376905) ==== plasma5-integration ==== Version update (5.16.4 -> 5.16.5) Subpackages: plasma5-integration-plugin plasma5-integration-plugin-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== plasma5-pa ==== Version update (5.16.4 -> 5.16.5) Subpackages: plasma5-pa-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - Changes since 5.16.4: * Fix speaker test not showing sinks/buttons * [Microphone Indicator] Don't show if there are no microphones ==== plasma5-pk-updates ==== Subpackages: plasma5-pk-updates-lang - Implement EULA handling (boo#1148168): * 0001-Add-support-for-license-prompts.patch - Enable install updates functionality on Tumbleweed again (boo#1030829): * Drop 0001-Hide-option-to-install-updates-on-Tumbleweed.patch ==== polkit-kde-agent-5 ==== Version update (5.16.4 -> 5.16.5) Subpackages: polkit-kde-agent-5-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== postgresql10 ==== Version update (10.9 -> 10.10) Subpackages: postgresql10-contrib postgresql10-devel postgresql10-server - Update to 10.10: * https://www.postgresql.org/about/news/1960/ * https://www.postgresql.org/docs/10/release-10-10.html * CVE-2019-10208, bsc#1145092: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution. - Use FAT LTO objects in order to provide proper static library. ==== postgresql11 ==== Version update (11.4 -> 11.5) Subpackages: postgresql11-contrib postgresql11-docs postgresql11-server - Update to 11.5: * https://www.postgresql.org/about/news/1960/ * https://www.postgresql.org/docs/11/release-11-5.html * CVE-2019-10208, bsc#1145092: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution. * CVE-2019-10209, bsc#1145091: Memory disclosure in cross-type comparison for hashed subplan. - Use FAT LTO objects in order to provide proper static library. ==== postgresql11-libs ==== Version update (11.4 -> 11.5) Subpackages: libecpg6 libpq5 postgresql11-devel - Update to 11.5: * https://www.postgresql.org/about/news/1960/ * https://www.postgresql.org/docs/11/release-11-5.html * CVE-2019-10208, bsc#1145092: TYPE in pg_temp executes arbitrary SQL during SECURITY DEFINER execution. * CVE-2019-10209, bsc#1145091: Memory disclosure in cross-type comparison for hashed subplan. - Use FAT LTO objects in order to provide proper static library. ==== python-jedi ==== Version update (0.13.3 -> 0.15.1) - update to version 0.15.1: * Small bugfix and removal of a print statement - changes from version 0.15.0: * Added file path completions, there's a new "Completion.type" path, now. Example: '/ho -> '/home/ * *args/**kwargs resolving. If possible Jedi replaces the parameters with the actual alternatives. * Better support for enums/dataclasses * When using Interpreter, properties are now executed, since a lot of people have complained about this. Discussion in #1299, #1347. * New APIs: + Definition.get_signatures() -> List[Signature]. Signatures are similar to CallSignature. Definition.params is therefore deprecated. + Signature.to_string() to format call signatures. + Signature.params -> List[ParamDefinition], ParamDefinition has the following additional attributes infer_default(), infer_annotation(), to_string(), and kind. + Definition.execute() -> List[Definition], makes it possible to infer return values of functions. - update to 0.14.1 * CallSignature.index should now be working a lot better * A couple of smaller bugfixes - update to 0.14.0 - enable tests - add unbundle.patch * Added goto_*(prefer_stubs=True) as well as goto_*(prefer_stubs=True) * Stubs are used now for type inference * Typeshed is used for better type inference * Reworked Definition.full_name, should have more correct return values ==== python-numpy ==== Version update (1.17.0 -> 1.17.1) - Update to version 1.17.1 * TST: Allow fuss in testing strided/non-strided exp/log loops * BUG: avx2_scalef_ps must be static * BUG: Remove stray print that causes a SystemError on python 3.7. * BUG: Fix DeprecationWarning in python 3.8. * BLD: Add missing gcd/lcm definitions to npy_math.h * DOC, BUILD: cleanups and fix (again) 'build dist' * TST: Add 3.8-dev to travisCI testing. * BUG: Remove the broken clip wrapper (Backport) * DOC: Fix hermitian argument docs in svd. * MAINT: Workaround for Intel compiler bug leading to failing test * TST: Clean up of test_pocketfft.py * BUG: Make advanced indexing result on read-only subclass writeable... * BUG: Fixed default BitGenerator name * ENH: add c-imported modules for freeze analysis in np.random * TST: Pin pytest version to 5.0.1 * BUG: Fix leak in the f2py-generated module init and `PyMem_Del`... * BUG: Fix formatting error in exception message * MAINT: random: Match type of SeedSequence.pool_size to DEFAULT_POOL_SIZE. * BUG: Fix numpy.random bug in platform detection * ENH: Enable huge pages in all Linux builds * BUG: Fix segfault in `random.permutation(x)` when x is a string. * BUG: don't fail when lexsorting some empty arrays (#14228) * BUG: Fix misuse of .names and .fields in various places (backport... * BUG: fix behavior of structured_to_unstructured on non-trivial... * REL: Prepare 1.17.1 release ==== python-pycups ==== Subpackages: python2-pycups python3-pycups - Package /usr/lib/rpm/postscriptdriver.prov again, in the new "cups-rpm-helper" subpackage (bsc#735865). The file hasn't been packaged any more after the switch from python-cups to python-pycups (sr#502741). * removed revert-postscriptdriver.prov-py3.patch (we use python3 now) ==== python2-numpy ==== Version update (1.16.4 -> 1.16.5) - Update to 1.16.5 * ENH: Add project URLs to setup.py * TEST, ENH: fix tests and ctypes code for PyPy * BUG: use npy_intp instead of int for indexing array * TST: Ignore DeprecationWarning during nose imports * BUG: Fix use-after-free in boolean indexing * MAINT/BUG/DOC: Fix errors in _add_newdocs * BUG: fix byte order reversal for datetime64[ns] * MAINT,BUG: Use nbytes to also catch empty descr during allocation * BUG: np.array cleared errors occured in PyMemoryView_FromObject * BUG: Fixes for Undefined Behavior Sanitizer (UBSan) errors. * BUG: ensure that casting to/from structured is properly checked. * MAINT: fix histogram*d dispatchers * BUG: further fixup to histogram2d dispatcher. * BUG: Replace contextlib.suppress for Python 2.7 * BUG: fix compilation of 3rd party modules with Py_LIMITED_API... * BUG: Fix memory leak in dtype from dict contructor * DOC: Document array_function at a higher level. * BUG, DOC: add new recfunctions to `__all__` * BUG: Remove stray print that causes a SystemError on python 3.7 * TST: Pin pytest version to 5.0.1. * ENH: Enable huge pages in all Linux builds * BUG: fix behavior of structured_to_unstructured on non-trivial... * REL: Prepare for the NumPy 1.16.5 release. ==== readline ==== Subpackages: libreadline8 readline-devel readline-doc - Rework patch readline-7.0-screen.patch again for bug boo#1143055 * Map all "screen(-xxx)?.yyy(-zzz)?" to "screen" as well as map "konsole(-xxx)?" and "gnome(-xxx)?" to "xterm" - Add official patch readline80-001 The history file reading code doesn't close the file descriptor open to the history file when it encounters a zero-length file. - Use FAT LTO objects in order to provide proper static library. ==== rubygem-addressable ==== Version update (2.6.0 -> 2.7.0) - New upstream release 2.7.0 * added `:compacted` flag to `normalized_query` * `heuristic_parse` handles `mailto:` more intuitively * refactored validation to use a prepended module * dropped explicit support for JRuby 9.0.5.0 * compatibility w/ public_suffix 4.x * performance improvements ==== rubygem-libyui-rake ==== Version update (0.1.14 -> 0.1.19) - Unified spec_version (bsc#1149618) - 0.1.19 - Fix libyui/tasks.rb permissions (bsc#1145602) - 0.1.18 - Added SLE-12-SP5 target (bsc#1145480) - 0.1.17 - :sle_latest is SLE15-SP2 now (bsc#1138835) - 0.1.16 - Added version:tag task (bsc#1133435) - 0.1.15 ==== sbc ==== Subpackages: libsbc1 - Use FAT LTO objects in order to provide proper static library. ==== shadow ==== - bsc#1144060: Add pam_keyinit.so to /etc/pam.d configuration files to support kernel keyring feature - Update pamd.tar.bz2 with pam configuration files accordingly - encryption_method_nis.patch: drop, DES should really not be used anymore anywhere, even with NIS - shadow-login_defs-suse.patch: remove encryption NIS entry ==== sharutils ==== Subpackages: sharutils-lang - Drop mailx BuildRequires. The "sync directories over mail" feature has been removed in 4.11.1. ==== slang ==== Subpackages: libslang2 slang-slsh - Use FAT LTO objects in order to provide proper static library. ==== snapper ==== Subpackages: libsnapper4 snapper-zypp-plugin - reusing existing subvolumes on mksubvolume run (bsc#1138725, bsc#1126900, gh#openSUSE/snapper#236) ==== speexdsp ==== Version update (1.2~rc3 -> 1.2.0) - Update to release 1.2.0 * No changelog provided - Drop speexdsp-fixbuilds-774c87d.patch (merged) ==== srt ==== Version update (1.3.3 -> 1.3.4) - Backported commit 47e5890 and 64875fa to fix CVE-2019-15784 (boo#1148844) and avoid a potential array overflow. * Added CVE-2019-15784.patch - Update to version 1.3.4: + Various bugfixes and feature enhancments. ==== suitesparse ==== Subpackages: libamd2 libcamd2 libccolamd2 libcholmod3 libcolamd2 libsuitesparseconfig5 libumfpack5 - Use FAT LTO objects in order to provide proper static library. ==== swig ==== Version update (3.0.12 -> 4.0.0) - Update to 4.0.0 - Support for Doxygen documentation comments which are parsed and converted into JavaDoc or PyDoc comments. - STL wrappers improved for C#, Java and Ruby. - C++11 STL containers added for Java, Python and Ruby. - Improved support for parsing C++11 and C++14 code. - Various fixes for shared_ptr. - Various C preprocessor corner case fixes. - Corner case fixes for member function pointers. - Python module overhaul by simplifying the generated code and turning most optimizations on by default. - %template improvements wrt scoping to align with C++ explicit template instantiations. - Added support for a command-line options file (sometimes called a response file). - Numerous enhancements and fixes for all supported target languages. - SWIG now classifies the status of target languages into either 'Experimental' or 'Supported' to indicate the expected maturity level. - Support for CFFI, Allegrocl, Chicken, CLISP, S-EXP, UFFI, Pike, Modula3 has been removed. - Octave 4.4-5.1 support added. - PHP5 support removed, PHP7 is now the supported PHP version. - Minimum Python version required is now 2.7, 3.2-3.7 are the only other versions supported. - Added support for Javascript NodeJS versions 2-10. - OCaml support is much improved and updated, minimum OCaml version required is now 3.12.0. See https://raw.githubusercontent.com/swig/swig/master/CHANGES - Drop patches (all included) swig-3.0.12-Coverity-fix-issue-reported-for-SWIG_Python_FixMetho.patch swig-3.0.12-Fix-generated-code-for-constant-expressions-containi.patch swig-perl526.patch swig-3.0.12-fix-collections.patch swig-3.0.12-Fix-Coverity-issue-reported-for-setslice-pycontainer.patch swig-3.0.12-Coverity-fix-issue-reported-for-wrapper-argument-che.patch swig-3.0.12-support-octave-4.4.patch swig-ocaml-int64.patch swig-3.0.12-Coverity-fix-issue-reported-for-SWIG_Python_ConvertF.patch ==== sysprof ==== Subpackages: sysprof-lang - Use FAT LTO objects in order to provide proper static library. ==== tcpd ==== - Use FAT LTO objects in order to provide proper static library. ==== tcsh ==== Subpackages: tcsh-lang - Add patch tcsh-6.21.00-sighup-deadlock.patch from upstream list * Do not (re)run SIGHUP handler during rewrite history * Port and rename patch tcsh-6.18.03-history-file-locking.patch which now becomes tcsh-6.21.0-history-file-locking.patch ==== unbound ==== Version update (1.9.2 -> 1.9.3) Subpackages: libunbound8 unbound-anchor - update to 1.9.3 Features: - PR #28: IPSet module, by Kevin Chou. Created a module to support the ipset that could add the domain's ip to a list easily. Needs libmnl, and --enable-ipset and config it, doc/README.ipset.md. - Merge PR #6: Python module: support multiple instances - Merge PR #5: Python module: define constant MODULE_RESTART_NEXT - Merge PR #4: Python module: assign something useful to the per-query data store 'qdata' - Introduce `-V` option to print the version number and build options. Previously reported build options like linked libs and linked modules are now moved from `-h` to `-V` as well for consistency. - PACKAGE_BUGREPORT now also includes link to GitHub issues. Bug Fixes: - Fix #39: In libunbound, leftover logfile is close()d unpredictably. - Fix for #24: Fix abort due to scan of auth zone masters using old address from previous scan. - Fix to omit RRSIGs from addition to the ipset. - Fix to make unbound-control with ipset, remove unused variable, use unsigned type because of comparison, and assign null instead of compare with it. Remade lex and yacc output. - make depend - Added documentation to the ipset files (for doxygen output). - Fix python dict reference and double free in config. - Fix memleak in unit test, reported from the clang 8.0 static analyzer. - For #45, check that 127.0.0.1 and ::1 are not used in unbound.conf when do-not-query-localhost is turned on, or at default on, unbound-checkconf prints a warning if it is found in forward-addr or stub-addr statements. - Fix for possible assertion failure when answering respip CNAME from cache. - Fix in respip addrtree selection. Absence of addr_tree_init_parents() call made it impossible to go up the tree when the matching netmask is too specific. - Fix #48: Unbound returns additional records on NODATA response, if minimal-responses is enabled, also the additional for negative responses is removed. - Fix #49: Set no renegotiation on the SSL context to stop client session renegotiation. - Fix question section mismatch in local zone redirect. - Add verbose log message when auth zone file is written, at level 4. - Add hex print of trust anchor pointer to trust anchor file temp name to make it unique, for libunbound created multiple contexts. - For #52 #53, second context does not close logfile override. - Fix #52 #53, fix for example fail program. - Fix to return after failed auth zone http chunk write. - Fix to remove unused test for task_probe existance. - Fix to timeval_add for remaining second in microseconds. - Check repinfo in worker_handle_request, if null, drop it. - Generate configlexer with newer flex. - Fix warning for unused variable for compilation without systemd. - Fix #59, when compiled with systemd support check that we can properly communicate with systemd through the `NOTIFY_SOCKET`. - iana portlist updated. - Fix autotrust temp file uniqueness windows compile. - avoid warning about upcast on 32bit systems for autotrust. - escape commandline contents for -V. - Fix character buffer size in ub_ctx_hosts. - Option -V prints if TCP fastopen is available. - Fix unittest valgrind false positive uninitialised value report, where if gcc 9.1.1 uses -O2 (but not -O1) then valgrind 3.15.0 issues an uninitialised value for the token buffer at the str2wire.c rrinternal_get_owner() strcmp with the '@' value. Rewritten to use straight character comparisons removes the false positive. Also valgrinds --expensive-definedness-checks=yes can stop this false positive. - Please doxygen's parser for "@" occurrence in doxygen comment. - Fixup contrib/fastrpz.patch - Remove warning about unknown cast-function-type warning pragma. - Document limitation of pidfile removal outside of chroot directory. - Fix log_dns_msg to log irrespective of minimal responses config. - Fix that pkg-config is setup before --enable-systemd needs it. - change tmpfiles-unbound.conf from /var/run/ to /run/ to silence systemd-tmpfiles warning ==== vim ==== Subpackages: gvim vim-data vim-data-common - By default do not put group in specfile as it is optional ==== virt-manager ==== Subpackages: virt-install virt-manager-common - Upstream bug fixes (bsc#1027942) 0c223ab2-guest-Dont-set-default-uefi-if-firmware-is-set.patch 414ffa5e-virt-install-Use-minutes-instead-of-seconds-on-get_time_string.patch 53245827-urlfetcher-Force-a-flush-after-writing-to-a-file.patch 3009888a-urlfetcher-Dont-override-fullurl-when-its-explicitly-set.patch ==== wavpack ==== Version update (5.1.0~git20190420.22977b2 -> 5.1.0+71.22977b2) - Change version to 5.1.0+71.22977b2: + This tarball is created from git master, which is 71 commits AHEAD of 5.1.0; thus, 5.1.0~xxx is wrong, as this implies a version leading up to 5.1.0. Other than that, there is no change in the sources: it's the same commit as before (22977b2). ==== webkit2gtk3 ==== Version update (2.24.3 -> 2.24.4) Subpackages: libjavascriptcoregtk-4_0-18 libwebkit2gtk-4_0-37 libwebkit2gtk3-lang typelib-1_0-JavaScriptCore-4_0 typelib-1_0-WebKit2-4_0 webkit2gtk-4_0-injected-bundles - Update to version 2.24.4 (boo#1148931): + Updated the user agent string to make happy certain websites which would claim that the browser being used was unsupported. + Improve loading of multimedia streams to avoid memory exhaustion due to excessive caching. + Fix display of documents with MIME type application/xml in the Web Inspector, when loaded using XmlHttpRequest. + Fix a hang while scrolling certain websites which include HLS video content (Twitter, for example). + Fix rounding artifacts in volume levels for media playback. + Fix several crashes and rendering issues. + Fix the build with video track support disabled. + Fix the build with OpenGL support disabled. + Fix build issue which would cause media controls to disappear when Python 3.x was used during the build process. + Security fixes: CVE-2019-8644, CVE-2019-8649, CVE-2019-8658, CVE-2019-8669, CVE-2019-8678, CVE-2019-8680, CVE-2019-8683, CVE-2019-8684, CVE-2019-8688. - Drop webkit2gtk3-bwo197558-hang.patch: Fixed upstream. ==== webrtc-audio-processing ==== - Use FAT LTO objects in order to provide proper static library. ==== xdg-desktop-portal-kde ==== Version update (5.16.4 -> 5.16.5) Subpackages: xdg-desktop-portal-kde-lang - Update to 5.16.5 * New bugfix release * For more details please see: * https://www.kde.org/announcements/plasma-5.16.5.php - No code changes since 5.16.4 ==== xorg-x11-server ==== Subpackages: xorg-x11-server-extra xorg-x11-server-sdk xorg-x11-server-wayland - added patches required for NVIDIA's PRIME render offload support, which is available since release 435.xx: 0001-xsync-Add-resource-inside-of-SyncCreate-export-SyncC.patch, 0002-GLX-Add-a-per-client-vendor-mapping.patch, 0003-GLX-Use-the-sending-client-for-looking-up-XID-s.patch, 0004-GLX-Add-a-function-to-change-a-clients-vendor-list.patch, 0005-GLX-Set-GlxServerExports-major-minor-Version.patch ==== xz ==== Subpackages: liblzma5 xz-devel xz-lang - Use FAT LTO objects in order to provide proper static library. ==== yast2 ==== Version update (4.2.18 -> 4.2.19) Subpackages: yast2-logs - yast completions have to be named after their respective command name (bsc#1122259) - 4.2.19 ==== yast2-hardware-detection ==== Version update (4.1.0 -> 4.1.1) - add bug number (bsc#1148310) - Handle arch_riscv - 4.1.1 ==== yast2-nfs-client ==== Version update (4.2.0 -> 4.2.2) - Set X-SuSE-YaST-AutoInstResource in desktop file (bsc#144894). - 4.2.2 - Using rb_default_ruby_abi tag in the spec file in order to handle several ruby versions (bsc#1146403). - 4.2.1 ==== yast2-ntp-client ==== Version update (4.2.2 -> 4.2.3) - Add cron BuildRequires: needed for /etc/cron.* ownership. As those directories have special permissions it is easier/cheaper to buildrequire cron (boo#1148950). - 4.2.3 ==== yast2-packager ==== Version update (4.2.23 -> 4.2.24) - Avoid error when generating some warnings (bsc#1148536). - 4.2.24 ==== yast2-slp ==== Version update (4.1.0 -> 4.1.1) - Using rb_default_ruby_abi tag in the spec file in order to handle several ruby versions (bsc#1146403). - 4.1.1 ==== yast2-trans ==== Version update (84.87.20190825.25c7d8a3aa -> 84.87.20190901.3784ecca69) Subpackages: yast2-trans-af yast2-trans-ar yast2-trans-bg yast2-trans-bn yast2-trans-bs yast2-trans-ca yast2-trans-cs yast2-trans-cy yast2-trans-da yast2-trans-de yast2-trans-el yast2-trans-en_GB yast2-trans-en_US yast2-trans-es yast2-trans-et yast2-trans-fa yast2-trans-fi yast2-trans-fr yast2-trans-gl yast2-trans-gu yast2-trans-hi yast2-trans-hr yast2-trans-hu yast2-trans-id yast2-trans-it yast2-trans-ja yast2-trans-jv yast2-trans-ka yast2-trans-km yast2-trans-ko yast2-trans-lo yast2-trans-lt yast2-trans-mk yast2-trans-mr yast2-trans-nb yast2-trans-nl yast2-trans-pa yast2-trans-pl yast2-trans-pt yast2-trans-pt_BR yast2-trans-ro yast2-trans-ru yast2-trans-si yast2-trans-sk yast2-trans-sr yast2-trans-sv yast2-trans-ta yast2-trans-th yast2-trans-tr yast2-trans-uk yast2-trans-vi yast2-trans-wa yast2-trans-xh yast2-trans-zh_CN yast2-trans-zh_TW yast2-trans-zu - Update to version 84.87.20190901.3784ecca69: * Translated using Weblate (Danish) * Translated using Weblate (Danish) * Translated using Weblate (German) * Translated using Weblate (Slovak) * Translated using Weblate (Catalan) * Translated using Weblate (Portuguese (Brazil)) * Translated using Weblate (Dutch) * Translated using Weblate (Japanese) * Translated using Weblate (Czech) * New POT for text domain 'storage'. * Translated using Weblate (Albanian) * Translated using Weblate (Albanian) * Translated using Weblate (German) * Translated using Weblate (Galician) ==== zstd ==== Version update (1.4.2 -> 1.4.3) Subpackages: libzstd-devel libzstd1 - Update to version 1.4.3 * bug: Fix Dictionary Compression Ratio Regression (#1709) * bug: Fix Buffer Overflow in v0.3 Decompression (#1722) * build: Add support for IAR C/C++ Compiler for Arm (#1705) * misc: Add NULL pointer check in util.c (#1706) ==== zypper ==== Version update (1.14.29 -> 1.14.30) Subpackages: zypper-aptitude zypper-log zypper-needs-restarting - Ignore SIGPIPE while STDOUT/STDERR are OK (bsc#1145521) - Dump stacktrace on SIGPIPE (bsc#1145521) - info: The requested info must be shown in QUIET mode (fixes #287) - version 1.14.30 -- To unsubscribe, e-mail: opensuse-arm+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-arm+owner@opensuse.org