14356 Commits

Author SHA1 Message Date
Flatcar Buildbot
8392df7499 dev-util/b2: Sync with Gentoo
It's from Gentoo commit a7764bed64842d82a4bcfa787c2d60896c20d269.
2022-12-12 07:14:07 +00:00
Flatcar Buildbot
07e5de6b53 dev-libs/libxslt: Sync with Gentoo
It's from Gentoo commit 01b65c1ab8739171aa41a3ff28bc1c2fef2f8f46.
2022-12-12 07:14:05 +00:00
Flatcar Buildbot
3d07340f66 dev-libs/libpcre2: Sync with Gentoo
It's from Gentoo commit 087a2d2ec18b57f889c5e0d1ddf94b91057efd99.
2022-12-12 07:14:05 +00:00
Flatcar Buildbot
1a83b32742 dev-libs/libltdl: Sync with Gentoo
It's from Gentoo commit 22cafa1b14162e5b0441bc7f3a0d81552f0e3901.
2022-12-12 07:14:05 +00:00
Flatcar Buildbot
7de0e5f8a9 dev-libs/boost: Sync with Gentoo
It's from Gentoo commit ad6496f10ac3e6101a9886d73997245f7ff0a69b.
2022-12-12 07:14:02 +00:00
Flatcar Buildbot
e6613dff2e dev-lang/python: Sync with Gentoo
It's from Gentoo commit 4ff0f9bdbf50fa1b729a3d5335f9cae63ff66a7f.
2022-12-12 07:14:02 +00:00
Flatcar Buildbot
b333307dca app-portage/portage-utils: Sync with Gentoo
It's from Gentoo commit bed995908f73ac2603ac9153d0f6274c1f13ee61.
2022-12-12 07:14:01 +00:00
Flatcar Buildbot
8ad8667287 app-arch/xz-utils: Sync with Gentoo
It's from Gentoo commit 08fdfad386278271137bdda1eb3d482d51a3e829.
2022-12-12 07:14:00 +00:00
Flatcar Buildbot
28cbbcc92d app-arch/libarchive: Sync with Gentoo
It's from Gentoo commit bb54c4d5f1b0b8b0beb35d7081e42070dccdb29a.
2022-12-12 07:13:59 +00:00
Flatcar Buildbot
d769f45218 app-alternatives/yacc: Sync with Gentoo
It's from Gentoo commit e773377026c28a1324d074e8af1039cc8c432eb4.
2022-12-12 07:13:59 +00:00
Flatcar Buildbot
54dc427086 app-alternatives/awk: Sync with Gentoo
It's from Gentoo commit d4c96a45f9e0c5401a6d4df4867dc85348fd7989.
2022-12-12 07:13:59 +00:00
flatcar-ci
e0f1da0e46 New version: main-3448.0.0-nightly-20221209-2100 2022-12-09 21:00:23 +00:00
Dongsu Park
94ee295e6e changelog: add security changelog for containerd 1.6.12 2022-12-09 13:13:56 +01:00
Flatcar Buildbot
4f0dd682f9 app-emulation: Upgrade Containerd 1.6.10 to 1.6.12 2022-12-09 08:22:42 +00:00
flatcar-ci
8c583cb5a1 New version: main-3447.0.0-nightly-20221208-2100 2022-12-08 21:00:31 +00:00
Krzesimir Nowak
ec5f6ca252 Merge pull request #2317 from flatcar/krnowak/libarchive-update
profiles: Drop accept keywords for app-arch/libarchive
2022-12-08 12:50:24 +01:00
Krzesimir Nowak
fed5a37dec Merge pull request #397 from flatcar/krnowak/libarchive-update
Update app-arch/libarchive
2022-12-08 12:50:18 +01:00
Mathieu Tortuyaux
1fab9ca500 coreos-base/coreos: add libsodium
update_engine needs to access context from SHA256 to store it and
restore it for further computations on it.
With OpenSSL SHA256 v3 implementation is not possible, let's use the
libsodium implementation.

Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2022-12-08 11:18:52 +01:00
Mathieu Tortuyaux
018198129a coreos-base/update_engine: bump commit ID
this pulls the OpenSSL 3 upgrade.

Signed-off-by: Mathieu Tortuyaux <mtortuyaux@microsoft.com>
2022-12-08 11:18:52 +01:00
Krzesimir Nowak
246bc58053 Merge pull request #2316 from flatcar/krnowak/weekly
Updates for weekly update 2022-12-05
2022-12-08 09:43:33 +01:00
Krzesimir Nowak
eaad06ebc7 Merge pull request #396 from flatcar/buildbot/weekly-package-updates-2022-12-05
Weekly package updates 2022-12-05
2022-12-08 09:43:29 +01:00
Krzesimir Nowak
ba22599eff changelog: Add entries 2022-12-08 09:41:08 +01:00
Krzesimir Nowak
6bf8f7603c .github: Update packages list 2022-12-08 09:38:04 +01:00
Krzesimir Nowak
82e387e979 changelog: Add an entry 2022-12-08 09:37:46 +01:00
flatcar-ci
4169c67698 New version: main-3446.0.0-nightly-20221207-2100 2022-12-07 21:00:26 +00:00
Mathieu Tortuyaux
c40db9d10f Revert "coreos-base/update_engine: remove -Werror flag"
This reverts commit 5f720f7b9987bf8b7d15a9569b4a340bdf253260.
2022-12-07 13:33:48 +01:00
Krzesimir Nowak
5cae1e12de profiles: Drop accept keywords for app-arch/libarchive
The updated package is stable for both amd64 and arm64.
2022-12-07 11:37:28 +01:00
Krzesimir Nowak
0e234985c1 app-arch/libarchive: Sync with Gentoo
It's from Gentoo commit b618d6ec93c66f91c071c99c65775aaef2471bdf.
2022-12-07 11:30:47 +01:00
flatcar-ci
ee28e6c793 New version: main-3445.0.0-nightly-20221206-2100 2022-12-06 21:00:29 +00:00
Flatcar Buildbot
b134ce0bb9 sys-kernel: Upgrade Kernel 5.15.79 to 5.15.81 2022-12-07 00:22:20 +05:30
Krzesimir Nowak
f46187dccc .github: Update packages list 2022-12-06 15:08:07 +01:00
Krzesimir Nowak
f3f210208c dev-lang/python: Sync with Gentoo
It's from Gentoo commit 1b39922b75edcd897083f7b0d91aded7ba0523e4.
2022-12-06 15:08:07 +01:00
Krzesimir Nowak
56977d879b net-libs/libpcap: Sync with Gentoo
It's from Gentoo commit 02b17c9bb64e147affc4acecaa0ff4151b2329bf.
2022-12-06 15:08:07 +01:00
Krzesimir Nowak
dd8444f6b6 app-crypt/mit-krb5: Sync with Gentoo
It's from Gentoo commit 02b17c9bb64e147affc4acecaa0ff4151b2329bf.
2022-12-06 15:08:07 +01:00
Sayan Chowdhury
bcf2bb0b77 sys-libs/pam: Apply Flatcar patches
-  sys-libs/pam: Make /sbin/unix_chkpwd suid

This is to avoid importing fcaps eclass which adds a dependency on
sys-libs/libcap, which in turn depends on sys-libs/pam. To get out of
this conundrum, we could specify a "-filecaps" use flag for
sys-libs/pam. Problem with this solution would be no capability
override for the binary making it unable to read /etc/shadow. Thus we
make the binary suid. This is strictly less secure than overriding its
capabilities, but I have no idea how to solve it in a less hacky way.

-  sys-libs/pam: Install configuration into /usr

Also provide a tmpfiles fragment to bring it back.

- sys-libs/pam: Locked accounts functionality

Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2022-12-06 15:06:47 +01:00
Krzesimir Nowak
ef09c88d70 sys-libs/pam: Reset to vanilla ebuild 2022-12-06 15:03:29 +01:00
Dongsu Park
eec5d85328 sys-devel/gdb: Apply Flatcar modifications
- Fix cross build issues with configuring gmp libs

  As gdb 11 or newer requires gmp libs as dependency, a cross build of
  gdb 11.2 started to fail when its configure scripts try to detect if
  gmp exists.  The failure occurs mainly because the build still
  passes '-L/usr/lib64` to LDFLAGS. Let's say, for example, host
  toolchains outside of sysroot have amd64 libs, while the target
  inside of sysroot should have arm64 libs. However, configure scripts
  of gdb 11.2 still try to find its libs outside of sysroot,
  /usr/lib64, although it should find its libs inside of sysroot,
  e.g. /build/arm64/usr/lib64.

  To fix the cross build issues, pass --with-sysroot as well as
  --libdir, correctly with ${ESYSROOT}.

  As a side note, for some reason, upstream gdb configure scripts are
  not able to correctly make use of its gmp-specific options like
  --with-gmp or --with-gmp-lib. Passing those options does not bring
  anything.  Also configure must have both --with-sysroot and
  --libdir, to make the build work.

- Replace dependency on virtual/yacc with app-alternatives/yacc

  The former is gone in favor of the latter in Gentoo. This change
  will be dropped when we sync the package with Gentoo again.
2022-12-06 14:53:36 +01:00
Krzesimir Nowak
1f88c934c0 sys-devel/gdb: Reset to vanilla ebuild 2022-12-06 14:51:21 +01:00
Sayan Chowdhury
f6efb50cb6 net-firewall/iptables: Apply the Flatcar patches
Signed-off-by: Sayan Chowdhury <sayan@kinvolk.io>
2022-12-06 14:49:54 +01:00
Krzesimir Nowak
fd2b43d9cf net-firewall/iptables: Reset to vanilla ebuild 2022-12-06 14:42:47 +01:00
Sayan Chowdhury
b621893c2e app-shells/bash: Apply Flatcar patches
Signed-off-by: Sayan Chowdhury <schowdhury@microsoft.com>
2022-12-06 14:41:10 +01:00
Krzesimir Nowak
0a0f1733f4 app-shells/bash: Reset to vanilla ebuild 2022-12-06 14:40:14 +01:00
Krzesimir Nowak
4bd509277a sys-libs/glibc: Apply Flatcar modifications
- take care of nscd.conf via tmpfiles, add files/nscd-conf.tmpfiles.
  - comment out 'dostrip -x' to force the OS image binaries to be stripped
  - remove everything glibc wants to put under /etc since we use
    baselayout to provide that
  - replace virtual/awk with app-alternatives/awk
2022-12-06 14:38:29 +01:00
Krzesimir Nowak
43ccab8e9d sys-libs/glibc: Reset to vanilla ebuild 2022-12-06 14:36:54 +01:00
Krzesimir Nowak
a4326957df dev-lang/python-oem: Apply Flatcar modifications 2022-12-06 14:34:48 +01:00
Krzesimir Nowak
4dc2f9a83d dev-lang/python-oem: Reset to vanilla ebuild 2022-12-06 14:32:39 +01:00
Krzesimir Nowak
f76441eaeb dev-lang/python-oem: Update dependency
The `virtual/awk` package is replaced with `app-alternatives/awk`, so
reflect that in the ebuild.
2022-12-06 14:32:39 +01:00
Krzesimir Nowak
33d5bace3f profiles: Do not pull in pip stuff from dev-lang/python 2022-12-06 14:32:39 +01:00
Krzesimir Nowak
990b2749a3 coreos/config: Update description for app-crypt/mit-krb5 overrides 2022-12-06 14:32:39 +01:00
Jeremi Piotrowski
1db12d110d Merge pull request #2315 from flatcar/bug-847-kernel-fix-backport
sys-kernel/coreos-sources: Add backport of bugfix for #847
2022-12-06 13:35:15 +01:00