From 2c15410552b5520eea07c946c733bafeb1d58cc5 Mon Sep 17 00:00:00 2001 From: Krzesimir Nowak Date: Thu, 20 Mar 2025 17:48:22 +0100 Subject: [PATCH] changelog: Add entries --- .../security/2025-03-20-weekly-updates.md | 2 ++ .../updates/2025-03-20-weekly-updates.md | 27 +++++++++++++++++++ 2 files changed, 29 insertions(+) create mode 100644 changelog/security/2025-03-20-weekly-updates.md create mode 100644 changelog/updates/2025-03-20-weekly-updates.md diff --git a/changelog/security/2025-03-20-weekly-updates.md b/changelog/security/2025-03-20-weekly-updates.md new file mode 100644 index 0000000000..31abb55e0f --- /dev/null +++ b/changelog/security/2025-03-20-weekly-updates.md @@ -0,0 +1,2 @@ +- expat ([CVE-2024-8176](https://nvd.nist.gov/vuln/detail/CVE-2024-8176)) +- libxml2 ([CVE-2024-56171](https://nvd.nist.gov/vuln/detail/CVE-2024-56171), [CVE-2025-24928](https://nvd.nist.gov/vuln/detail/CVE-2025-24928), [CVE-2025-27113](https://nvd.nist.gov/vuln/detail/CVE-2025-27113)) diff --git a/changelog/updates/2025-03-20-weekly-updates.md b/changelog/updates/2025-03-20-weekly-updates.md new file mode 100644 index 0000000000..25707af394 --- /dev/null +++ b/changelog/updates/2025-03-20-weekly-updates.md @@ -0,0 +1,27 @@ +- SDK: go ([1.24.1](https://go.dev/doc/go1.24)) +- base, dev: expat ([2.7.0](https://github.com/libexpat/libexpat/blob/R_2_7_0/expat/Changes#L40)) +- base, dev: git ([2.48.1](https://github.com/git/git/blob/v2.48.1/Documentation/RelNotes/2.48.1.txt) (includes [2.48.0](https://github.com/git/git/blob/v2.48.0/Documentation/RelNotes/2.48.0.txt), [2.47.2](https://github.com/git/git/blob/v2.47.2/Documentation/RelNotes/2.47.2.txt), [2.47.1](https://github.com/git/git/blob/v2.47.1/Documentation/RelNotes/2.47.1.txt), [2.47.0](https://github.com/git/git/blob/v2.47.0/Documentation/RelNotes/2.47.0.txt), [2.46.3](https://github.com/git/git/blob/v2.46.3/Documentation/RelNotes/2.46.3.txt), [2.46.2](https://github.com/git/git/blob/v2.46.2/Documentation/RelNotes/2.46.2.txt), [2.46.1](https://github.com/git/git/blob/v2.46.1/Documentation/RelNotes/2.46.1.txt), [2.46.0](https://github.com/git/git/blob/v2.46.0/Documentation/RelNotes/2.46.0.txt))) +- base, dev: glib ([2.82.5](https://gitlab.gnome.org/GNOME/glib/-/releases/2.82.5)) +- base, dev: iproute2 ([6.13.0](https://lore.kernel.org/all/20250120194053.3744d96b@hermes.local/)) +- base, dev: libpcre2 ([10.45](https://github.com/PCRE2Project/pcre2/blob/pcre2-10.45/NEWS)) +- base, dev: libseccomp ([2.6.0](https://github.com/seccomp/libseccomp/releases/tag/v2.6.0) (includes [2.5.6](https://github.com/seccomp/libseccomp/releases/tag/v2.5.6))) +- base, dev: libuv ([1.50.0](https://github.com/libuv/libuv/releases/tag/v1.50.0)) +- base, dev: libxml2 ([2.12.10](https://gitlab.gnome.org/GNOME/libxml2/-/releases/v2.12.10)) +- base, dev: ncurses ([6.5_p20250125](https://invisible-island.net/ncurses/announce-6.5.html)) +- base, dev: oniguruma ([6.9.10](https://github.com/kkos/oniguruma/releases/tag/v6.9.10)) +- base, dev: qemu-guest-agent ([9.2.0](https://wiki.qemu.org/ChangeLog/9.2#Guest_agent) (includes [9.1](https://wiki.qemu.org/ChangeLog/9.1#Guest_agent), [9.0](https://wiki.qemu.org/ChangeLog/9.0#Guest_agent))) +- base, dev: userspace-rcu ([0.15.1](https://lore.kernel.org/lkml/6894741e-c3c8-4464-92ab-ba8b88929961@efficios.com/T/) (includes [0.15.0](https://lore.kernel.org/all/51160e24-389a-41b6-871b-ba522d427220@efficios.com/))) +- base, dev: which ([2.23](https://git.savannah.gnu.org/cgit/which.git/tree/NEWS?id=3e2c8f8acc3a333b66b06de234bc9324c6fe5500)) +- base, dev: xfsprogs ([6.12.0](https://web.git.kernel.org/pub/scm/fs/xfs/xfsprogs-dev.git/tree/doc/CHANGES?h=v6.12.0)) +- base, dev: xz-utils ([5.6.4](https://github.com/tukaani-project/xz/releases/tag/v5.6.4)) +- base, dev: zstd ([1.5.7](https://github.com/facebook/zstd/releases/tag/v1.5.7)) +- containerd: containerd ([2.0.2](https://github.com/containerd/containerd/releases/tag/v2.0.2)) +- dev: eselect ([1.4.29](https://gitweb.gentoo.org/proj/eselect.git/tree/NEWS?h=eselect-1.4.29)) +- dev: getuto ([1.15](https://github.com/projg2/getuto/commits/getuto-1.15/)) +- dev: man-pages ([6.10](https://lkml.org/lkml/2025/1/22/1229)) +- dev: portage ([3.0.67](https://github.com/gentoo/portage/blob/portage-3.0.67/NEWS)) +- docker: docker ([28.0.1](https://github.com/moby/moby/releases/tag/v28.0.1) (includes [28.0.0](https://github.com/moby/moby/releases/tag/v28.0.0))) +- sysext-podman: crun ([1.19.1](https://github.com/containers/crun/releases/tag/1.19.1) (includes [1.19](https://github.com/containers/crun/releases/tag/1.19), [1.18.2](https://github.com/containers/crun/releases/tag/1.18.2), [1.18.1](https://github.com/containers/crun/releases/tag/1.18.1), [1.18](https://github.com/containers/crun/releases/tag/1.18))) +- sysext-python: setuptools ([75.8.2](https://github.com/pypa/setuptools/blob/v75.8.2/NEWS.rst) (includes [75.8.1](https://github.com/pypa/setuptools/blob/v75.8.1/NEWS.rst))) +- sysext-python: setuptools-scm ([8.2.0](https://github.com/pypa/setuptools-scm/blob/v8.2.0/CHANGELOG.md)) +- sysext-python: trove-classifiers ([2025.3.3.18](https://github.com/pypa/trove-classifiers/releases/tag/2025.3.3.18))