1. 12 8月, 2023 15 次提交
    • H
      openssl: bump to 1.1.1v · de29f15a
      Hauke Mehrtens 提交于
      Major changes between OpenSSL 1.1.1u and OpenSSL 1.1.1v [1 Aug 2023]
      
          o Fix excessive time spent checking DH q parameter value (CVE-2023-3817)
          o Fix DH_check() excessive time with over sized modulus (CVE-2023-3446)
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      de29f15a
    • H
      firmware: intel-microcode: update to 20230808 · 8c7b03a2
      Hauke Mehrtens 提交于
      Debian changelog:
      
      intel-microcode (3.20230808.1) unstable; urgency=high
      
        * New upstream microcode datafile 20230808 (closes: #1043305)
          Mitigations for "Downfall" INTEL-SA-00828 (CVE-2022-40982),
          INTEL-SA-00836 (CVE-2023-23908) and INTEL-SA-00837 (CVE-2022-41804)
          * Updated microcodes:
            sig 0x00050653, pf_mask 0x97, 2023-03-23, rev 0x1000181, size 36864
            sig 0x00050654, pf_mask 0xb7, 2023-03-06, rev 0x2007006, size 44032
            sig 0x00050656, pf_mask 0xbf, 2023-03-17, rev 0x4003604, size 38912
            sig 0x00050657, pf_mask 0xbf, 2023-03-17, rev 0x5003604, size 38912
            sig 0x0005065b, pf_mask 0xbf, 2023-03-21, rev 0x7002703, size 30720
            sig 0x000606a6, pf_mask 0x87, 2023-03-30, rev 0xd0003a5, size 297984
            sig 0x000706e5, pf_mask 0x80, 2023-02-26, rev 0x00bc, size 113664
            sig 0x000806c1, pf_mask 0x80, 2023-02-27, rev 0x00ac, size 111616
            sig 0x000806c2, pf_mask 0xc2, 2023-02-27, rev 0x002c, size 98304
            sig 0x000806d1, pf_mask 0xc2, 2023-02-27, rev 0x0046, size 103424
            sig 0x000806e9, pf_mask 0xc0, 2023-02-22, rev 0x00f4, size 106496
            sig 0x000806e9, pf_mask 0x10, 2023-02-23, rev 0x00f4, size 105472
            sig 0x000806ea, pf_mask 0xc0, 2023-02-23, rev 0x00f4, size 105472
            sig 0x000806eb, pf_mask 0xd0, 2023-02-23, rev 0x00f4, size 106496
            sig 0x000806ec, pf_mask 0x94, 2023-02-26, rev 0x00f8, size 106496
            sig 0x000806f8, pf_mask 0x87, 2023-05-09, rev 0x2b0004b1, size 572416
            sig 0x000806f7, pf_mask 0x87, 2023-05-09, rev 0x2b0004b1
            sig 0x000806f6, pf_mask 0x87, 2023-05-09, rev 0x2b0004b1
            sig 0x000806f5, pf_mask 0x87, 2023-05-09, rev 0x2b0004b1
            sig 0x000806f4, pf_mask 0x87, 2023-05-09, rev 0x2b0004b1
            sig 0x000806f8, pf_mask 0x10, 2023-05-15, rev 0x2c000271, size 605184
            sig 0x000806f6, pf_mask 0x10, 2023-05-15, rev 0x2c000271
            sig 0x000806f5, pf_mask 0x10, 2023-05-15, rev 0x2c000271
            sig 0x000806f4, pf_mask 0x10, 2023-05-15, rev 0x2c000271
            sig 0x00090672, pf_mask 0x07, 2023-04-18, rev 0x002e, size 220160
            sig 0x00090675, pf_mask 0x07, 2023-04-18, rev 0x002e
            sig 0x000b06f2, pf_mask 0x07, 2023-04-18, rev 0x002e
            sig 0x000b06f5, pf_mask 0x07, 2023-04-18, rev 0x002e
            sig 0x000906a3, pf_mask 0x80, 2023-04-18, rev 0x042c, size 219136
            sig 0x000906a4, pf_mask 0x80, 2023-04-18, rev 0x042c
            sig 0x000906e9, pf_mask 0x2a, 2023-02-23, rev 0x00f4, size 108544
            sig 0x000906ea, pf_mask 0x22, 2023-02-23, rev 0x00f4, size 104448
            sig 0x000906eb, pf_mask 0x02, 2023-02-23, rev 0x00f4, size 106496
            sig 0x000906ec, pf_mask 0x22, 2023-02-23, rev 0x00f4, size 105472
            sig 0x000906ed, pf_mask 0x22, 2023-02-27, rev 0x00fa, size 106496
            sig 0x000a0652, pf_mask 0x20, 2023-02-23, rev 0x00f8, size 97280
            sig 0x000a0653, pf_mask 0x22, 2023-02-23, rev 0x00f8, size 97280
            sig 0x000a0655, pf_mask 0x22, 2023-02-23, rev 0x00f8, size 97280
            sig 0x000a0660, pf_mask 0x80, 2023-02-23, rev 0x00f8, size 97280
            sig 0x000a0661, pf_mask 0x80, 2023-02-23, rev 0x00f8, size 96256
            sig 0x000a0671, pf_mask 0x02, 2023-02-26, rev 0x0059, size 104448
            sig 0x000b0671, pf_mask 0x32, 2023-06-06, rev 0x0119, size 210944
            sig 0x000b06a2, pf_mask 0xe0, 2023-06-06, rev 0x4119, size 216064
            sig 0x000b06a3, pf_mask 0xe0, 2023-06-06, rev 0x4119
            sig 0x000b06e0, pf_mask 0x11, 2023-04-12, rev 0x0011, size 136192
        * source: update symlinks to reflect id of the latest release, 20230808
      
      intel-microcode (3.20230512.1) unstable; urgency=medium
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit ced28548)
      8c7b03a2
    • H
      linux-firmware: update to 20230804 · 08a78203
      Hauke Mehrtens 提交于
      7be2766 (tag: 20230804) Merge branch 'rb3-update' of https://github.com/lumag/linux-firmware
      66c1db8 Merge https://github.com/pkshih/linux-firmware
      5046942 Mellanox: Add new mlxsw_spectrum firmware xx.2012.1012
      5c7b67f linux-firmware: Add URL for latest FW binaries for NXP BT chipsets
      29f185d rtw89: 8851b: update firmware to v0.29.41.1
      742bf57 qcom: sdm845: add RB3 sensors DSP firmware
      253cc17 amdgpu: Update DMCUB for DCN314 & Yellow Carp
      07f05b0 Merge branch 'dmc-adlp_2.20-mtl_2.13' of git://anongit.freedesktop.org/drm/drm-firmware
      5a251ed Merge branch 'for-upstream' of https://github.com/CirrusLogic/linux-firmware
      6c8ce49 ice: add LAG-supporting DDP package
      fd6e13c i915: Update MTL DMC to v2.13
      41e615c i915: Update ADLP DMC to v2.20
      c8424cf cirrus: Add CS35L41 firmware for Dell Oasis Models
      b6ea35f copy-firmware: Fix linking directories when using compression
      0a51959 copy-firmware: Fix test: unexpected operator
      b602d43 qcom: sc8280xp: LENOVO: remove directory sym link
      e0bad5e qcom: sc8280xp: LENOVO: Remove execute bits
      59fbffa amdgpu: update VCN 4.0.0 firmware
      22fb12f amdgpu: add initial SMU 13.0.10 firmware
      b3f512f amdgpu: add initial SDMA 6.0.3 firmware
      b1a7d76 amdgpu: add initial PSP 13.0.10 firmware
      d6d655a amdgpu: add initial GC 11.0.3 firmware
      c782458 Merge branch 'v2.0.21961' of https://github.com/yunfei-mtk/linux_fw_10bit
      ca9086f Merge branch 'dg2_mtl_guc_70.8' of git://anongit.freedesktop.org/drm/drm-firmware
      0bc3126 linux-firmware: Update AMD fam17h cpu microcode
      b250b32 linux-firmware: Update AMD cpu microcode
      9dfcace amdgpu: update green sardine VCN firmware
      b519832 amdgpu: update renoir VCN firmware
      5f569aa amdgpu: update raven VCN firmware
      868bb36 amdgpu: update raven2 VCN firmware
      6fa9a17 amdgpu: update Picasso VCN firmware
      cd52460 amdgpu: update DMCUB to v0.0.175.0 for various AMDGPU ASICs
      4ef7581 Updated NXP SR150 UWB firmware
      2514504 Merge branch 'for-upstream' of https://github.com/CirrusLogic/linux-firmware
      45f5ebf wfx: update to firmware 3.16.1
      f41d890 mediatek: Update mt8195 SCP firmware to support 10bit mode
      6f3a37f i915: update DG2 GuC to v70.8.0
      0ee23bd i915: update to GuC 70.8.0 and HuC 8.5.1 for MTL
      1a76e8b cirrus: Add CS35L41 firmware for ASUS ROG 2023 Models
      d3f6606 Partially revert "amdgpu: DMCUB updates for DCN 3.1.4 and 3.1.5"
      8917650 linux-firmware: update firmware for mediatek bluetooth chip (MT7922)
      7d9af09 linux-firmware: update firmware for MT7922 WiFi device
      0bab5df Merge tag 'iwlwifi-fw-2023-06-29' of http://git.kernel.org/pub/scm/linux/kernel/git/iwlwifi/linux-firmware
      3ec3817 linux-firmware: Update firmware file for Intel Bluetooth AX203
      7db3ef9 linux-firmware: Update firmware file for Intel Bluetooth AX203
      5684048 linux-firmware: Update firmware file for Intel Bluetooth AX211
      3f7a24e linux-firmware: Update firmware file for Intel Bluetooth AX211
      eb2c745 linux-firmware: Update firmware file for Intel Bluetooth AX210
      4a3ff0a linux-firmware: Update firmware file for Intel Bluetooth AX200
      1d1bad4 linux-firmware: Update firmware file for Intel Bluetooth AX201
      db39dff Fix qcom ASoC tglp WHENCE entry
      a687f89 Merge branch 'sc8280xp-audio-fw' of git://git.kernel.org/pub/scm/linux/kernel/git/srini/linux-firmware
      9e0343c check_whence: Check link targets are valid
      b255f5b iwlwifi: add new FWs from core80-39 release
      fa5d30b iwlwifi: update cc/Qu/QuZ firmwares for core80-39 release
      f9a35b3 qcom: Add Audio firmware for SC8280XP X13s
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit bfbb5ccf)
      08a78203
    • J
      linux-firmware: update to 20230625 · 68c6608c
      John Audia 提交于
      Change from git log --oneline:
      
      ee91452d (tag: 20230625) Makefile, copy-firmware: support xz/zstd compressed firmware
      ad2ce8be copy-firmware: silence the last shellcheck warnings
      67bf50e7 copy-firmware: drop obsolete backticks, quote
      77f31a80 copy-firmware: tweak sed invocation
      40fa2b20 copy-firmware: quote deskdir and dirname
      77f92e0b check_whence: error if symlinks are in-tree
      f2671b1f check_whence: error if File: is actually a link
      4b539e7a check_whence: strip quotation marks
      32693d3b linux-firmware: wilc1000: update WILC1000 firmware to v16.0
      109b23c5 ice: update ice DDP wireless_edge package to 1.3.10.0
      ade163aa amdgpu: DMCUB updates for DCN 3.1.4 and 3.1.5
      045b2136 amdgpu: update DMCUB to v0.0.172.0 for various AMDGPU ASICs
      5a1842ce Merge branch 'rb3-update' of https://github.com/lumag/linux-firmware
      2f81bd9f fix broken cirrus firmware symlinks
      01a7a844 qcom: Update the microcode files for Adreno a630 GPUs.
      94120467 qcom: sdm845: rename the modem firmware
      1c599488 qcom: sdm845: update remoteproc firmware
      1cd1c871 rtl_bt: Update RTL8852A BT USB firmware to 0xDAC7_480D
      55e74485 rtl_bt: Update RTL8852C BT USB firmware to 0x040D_7225
      9dbd8ec2 amdgpu: DMCUB updates for various AMDGPU asics
      9a47adc7 Merge branch 'mtl_huc_v8.5.0' of git://anongit.freedesktop.org/drm/drm-firmware
      eb3ae841 linux-firmware: update firmware for MT7922 WiFi device
      5ce06b9e linux-firmware: update firmware for MT7921 WiFi device
      2c50361c linux-firmware: update firmware for mediatek bluetooth chip (MT7922)
      185f49df linux-firmware: update firmware for mediatek bluetooth chip (MT7921)
      05f94af7 Merge branch 'v2.0.21478' of https://github.com/yunfei-mtk/linux_fw_scp
      5de33fb4 i915: Add HuC v8.5.0 for MTL
      795aea91 mediatek: Update mt8195 SCP firmware to support hevc
      fc90c59b Merge branch 'db410c' of https://github.com/lumag/linux-firmware
      9d4c9a52 qcom: apq8016: add Dragonboard 410c WiFi and modem firmware
      1f9667eb Merge branch 'for-upstream' of http://git.chelsio.net/pub/git/linux-firmware
      b544e2b0 Merge branch 'for-upstream' of https://github.com/CirrusLogic/linux-firmware
      244d6b5c cirrus: Add firmware for new Asus ROG Laptops
      d11ae984 brcm: Add symlinks from Pine64 devices to AW-CM256SM.txt
      1c513ec7 amdgpu: Update GC 11.0.1 and 11.0.4
      8449fcd0 Merge https://github.com/pkshih/linux-firmware
      c10facaf rtw89: 8851b: add firmware v0.29.41.0
      1ba3519e Merge branch 'dev-queue' of git://git.kernel.org/pub/scm/linux/kernel/git/tnguy/firmware
      2e775450 amdgpu: update yellow carp firmware for amd.5.5 release
      5eccb3c1 amdgpu: update navi14 firmware for amd.5.5 release
      c70d3c3b amdgpu: update navi12 firmware for amd.5.5 release
      0e4f17cc amdgpu: update vega20 firmware for amd.5.5 release
      413348f3 amdgpu: update vega12 firmware for amd.5.5 release
      c167587d amdgpu: update navi10 firmware for amd.5.5 release
      3c98630a amdgpu: update vega10 firmware for amd.5.5 release
      d13ef0cb amdgpu: update PSP 13.0.11 firmware for amd.5.5 release
      31f8f526 amdgpu: update GC 11.0.4 firmware for amd.5.5 release
      f0ce7026 amdgpu: update SDMA 6.0.1 firmware for amd.5.5 release
      47424464 amdgpu: update PSP 13.0.4 firmware for amd.5.5 release
      60dc78a7 amdgpu: update GC 11.0.1 firmware for amd.5.5 release
      ba70041c amdgpu: update 13.0.8 firmware for amd.5.5 release
      9c48881f amdgpu: update GC 10.3.7 firmware for amd.5.5 release
      bb4d7250 amdgpu: update vangogh firmware for amd.5.5 release
      102a4138 amdgpu: update VCN 4.0.4 firmware for amd.5.5 release
      a7fe4aa1 amdgpu: update SMU 13.0.7 firmware for amd.5.5 release
      80b2d561 amdgpu: update PSP 13.0.7 firmware for amd.5.5 release
      a5d7b4df amdgpu: update GC 11.0.2 firmware for amd.5.5 release
      c1db00c5 amdgpu: update renoir firmware for amd.5.5 release
      683c91f7 amdgpu: update VCN 4.0.0 firmware for amd.5.5 release
      39d6fcc7 amdgpu: update SMU 13.0.0 firmware for amd.5.5 release
      56832557 amdgpu: update PSP 13.0.0 firmware for amd.5.5 release
      ffe1a41e amdgpu: update GC 11.0.0 firmware for amd.5.5 release
      72d525d7 amdgpu: update green sardine firmware for amd.5.5 release
      ceba765d amdgpu: update beige goby firmware for amd.5.5 release
      95eb53c9 amdgpu: update dimgrey cavefish firmware for amd.5.5 release
      909cef98 amdgpu: update arcturus firmware for amd.5.5 release
      91251d16 amdgpu: update vcn 3.1.2 firmware for amd.5.5 release
      9eaff866 amdgpu: update psp 13.0.5 firmware for amd.5.5 release
      44772528 amdgpu: update GC 10.3.6 firmware for amd.5.5 release
      3bffc9f8 amdgpu: update navy flounder firmware for amd.5.5 release
      3b920773 amdgpu: update sienna cichlid firmware for amd.5.5 release
      84d5550e amdgpu: update aldebaran firmware for amd.5.5 release
      dcd30473 amdgpu: DMCUB updates for various AMDGPU asics
      c9e4034a ice: update ice DDP comms package to 1.3.40.0
      601c1813 Merge https://github.com/pkshih/linux-firmware
      08b854f0 rtlwifi: Add firmware v6.0 for RTL8192FU
      b72c69dd rtlwifi: Update firmware for RTL8188EU to v28.0
      51290942 (tag: 20230515) Merge branch 'main' of https://github.com/CirrusLogic/linux-firmwareSigned-off-by: NJohn Audia <therealgraysky@proton.me>
      (cherry picked from commit a5005508)
      68c6608c
    • H
      mbedtls: Update to version 2.28.4 · b62dacea
      Hauke Mehrtens 提交于
      This only fixes minor problems.
      Changelog: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.4Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit d773fe54)
      b62dacea
    • H
      mbedtls: Update to version 2.28.3 · df994cce
      Hauke Mehrtens 提交于
      This only fixes minor problems.
      Changelog: https://github.com/Mbed-TLS/mbedtls/releases/tag/v2.28.3
      
      The 100-fix-compile.patch patch was merged upstream, see:
      https://github.com/Mbed-TLS/mbedtls/issues/6243
      https://github.com/Mbed-TLS/mbedtls/pull/7013
      
      The code style of all files in mbedtls 2.28.3 was changed. I took a new
      version of the 100-x509-crt-verify-SAN-iPAddress.patch patch from this
      pull request: https://github.com/Mbed-TLS/mbedtls/pull/6475Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit d679b15d)
      df994cce
    • A
      lua: fix integer overflow in LNUM patch · c29390b0
      Adam Bailey 提交于
      Safely detect integer overflow in try_addint() and try_subint().
      Old code relied on undefined behavior, and recent versions of GCC on x86
      optimized away the if-statements.
      This caused integer overflow in Lua code instead of falling back to
      floating-point numbers.
      Signed-off-by: NAdam Bailey <aebailey@gmail.com>
      (cherry picked from commit 3a2e7c30)
      c29390b0
    • E
      dropbear: add ed25519 for failsafe key · 503aa7f9
      Etienne Champetier 提交于
      At least Fedora and RHEL 9 set RSAMinSize=2048, so when trying to use
      failsafe, we get 'Bad server host key: Invalid key length'
      To workaround the issue, we can use: ssh -o RSAMinSize=1024 ...
      
      Generating 2048 bits RSA is extremely slow, so add ed25519.
      We keep RSA 1024 to be as compatible as possible.
      Signed-off-by: NEtienne Champetier <champetier.etienne@gmail.com>
      (cherry picked from commit 6ac61dea)
      503aa7f9
    • N
      wolfssl: update to 5.6.3 · 681baab5
      Nick Hainke 提交于
      Release Notes:
      - https://github.com/wolfSSL/wolfssl/releases/tag/v5.6.0-stable
      - https://github.com/wolfSSL/wolfssl/releases/tag/v5.6.2-stable
      - https://github.com/wolfSSL/wolfssl/releases/tag/v5.6.3-stable
      
      Refresh patch:
      - 100-disable-hardening-check.patch
      
      Backport patch:
      - 001-fix-detection-of-cut-tool-in-configure.ac.patch
      Signed-off-by: NNick Hainke <vincent@systemli.org>
      (cherry picked from commit 0e83b5e6)
      681baab5
    • H
      uhttpd: update to latest git HEAD · 1dbbd0fc
      Hauke Mehrtens 提交于
      34a8a74 uhttpd/file: fix string out of buffer range on uh_defer_script
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit 7a6f6b81)
      1dbbd0fc
    • H
      uhttpd: update to latest Git HEAD · c1181a54
      Hauke Mehrtens 提交于
      47561aa mimetypes: add audio/video support for apple airplay
      6341357 ucode: respect all arguments passed to send()
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      (cherry picked from commit d14559e9)
      c1181a54
    • H
      kernel: bump 5.10 to 5.10.190 · 419218af
      Hauke Mehrtens 提交于
      All patches automatically rebased.
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      419218af
    • H
      kernel: bump 5.10 to 5.10.189 · 59dce3b5
      Hauke Mehrtens 提交于
      All patches automatically rebased.
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      59dce3b5
    • H
      kernel: bump 5.10 to 5.10.188 · f6b6d4b2
      Hauke Mehrtens 提交于
      Manually rebased:
       bcm27xx/patches-5.10/950-0355-xhci-quirks-add-link-TRB-quirk-for-VL805.patch
       bcm53xx/patches-5.10/180-usb-xhci-add-support-for-performing-fake-doorbell.patch
      
      Removed because already in upstream:
       bcm53xx/patches-5.10/039-v6.5-0003-ARM-dts-BCM5301X-Drop-clock-names-from-the-SPI-node.patch
       bcm53xx/patches-5.10/039-v6.5-0015-ARM-dts-BCM5301X-fix-duplex-full-full-duplex.patch
       generic/backport-5.10/765-v6.5-net-bgmac-postpone-turning-IRQs-off-to-avoid-SoC-han.patch
      
      All other patches automatically rebased.
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      f6b6d4b2
    • H
      kernel: bump 5.10 to 5.10.187 · 77f7f697
      Hauke Mehrtens 提交于
      All patches automatically rebased.
      Signed-off-by: NHauke Mehrtens <hauke@hauke-m.de>
      77f7f697
  2. 30 7月, 2023 2 次提交
  3. 20 7月, 2023 6 次提交
  4. 14 7月, 2023 1 次提交
  5. 11 7月, 2023 1 次提交
  6. 10 7月, 2023 3 次提交
  7. 05 7月, 2023 1 次提交
  8. 01 7月, 2023 2 次提交
  9. 23 6月, 2023 1 次提交
  10. 17 6月, 2023 1 次提交
  11. 15 6月, 2023 6 次提交
  12. 12 6月, 2023 1 次提交