Compare commits

...

10 Commits

Author SHA256 Message Date
AutoGits PR Review Bot
d266b74103 auto-created for git-bug
All checks were successful
Patchinfo incident numbering / use-go-action (push) Successful in 16s
ObsStaging OBS Staging build
This commit was autocreated by AutoGits PR Review Bot

referencing PRs:
 PR: pool/git-bug!9
2025-12-01 11:52:11 +00:00
AutoGits PR Review Bot
a84202fbe0 auto-created for git-bug
All checks were successful
Patchinfo incident numbering / use-go-action (push) Successful in 34s
ObsStaging OBS Staging build
This commit was autocreated by AutoGits PR Review Bot

referencing PRs:
 PR: pool/git-bug!9
2025-12-01 11:14:10 +00:00
a15935da4f Merge pull request 'Switch to version 16.1' (#209) from bigironman/PackageHub:leap-16.1 into leap-16.1
All checks were successful
Patchinfo incident numbering / use-go-action (push) Successful in 16s
Reviewed-on: #209
Reviewed-by: autogits_obs_staging_bot <autogits_obs_staging_bot@noreply.src.opensuse.org>
2025-11-26 11:37:17 +01:00
b9312ef3d1 Switch to version 16.1
All checks were successful
ObsStaging OBS Staging build
2025-11-11 09:49:28 +01:00
172d5d28b3 Merge pull request 'Reset every bits in the PacakgeHub 16.1' (#205) from maxlin_factory/PackageHub:161_delete_patchinfo_package into leap-16.1
All checks were successful
Patchinfo incident numbering / use-go-action (push) Successful in 24s
Reviewed-on: #205
2025-11-04 09:49:36 +01:00
3499ed9954 Reset workflow configurations 2025-11-04 16:44:02 +08:00
cfd8745f1b Adjust project config for the 16.1 2025-11-04 16:43:49 +08:00
d4d13f2589 Deleted patchinfo packages
These patchinfo packages is mistakenly fork to leap-16.1 branch since
leap-16.0 is on maintnenace mode
2025-11-04 16:41:33 +08:00
aea01eb697 Branching Leap-16.1
All checks were successful
Patchinfo incident numbering / use-go-action (push) Successful in 20s
2025-10-29 08:10:37 +01:00
ca4d1ccdb2 melange: Fix referenced submodule
last commit was not pointing to an accesable commit
2025-10-28 15:23:37 +01:00
17 changed files with 6549 additions and 32632 deletions

13054
.gitmodules vendored

File diff suppressed because it is too large Load Diff

View File

@@ -1,3 +1,9 @@
-------------------------------------------------------------------
Tue Nov 11 08:48:51 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>
- Backports.productcompose:
- switch to version 16.1
-------------------------------------------------------------------
Fri Oct 10 07:19:41 UTC 2025 - Wolfgang Engel <wolfgang.engel@suse.com>

View File

@@ -3,7 +3,7 @@ product_compose_schema: 0.2
vendor: openSUSE
name: Backports
version: 16
update: "16.0"
update: "16.1"
product-type: module
summary: openSUSE Backports

15
_config
View File

@@ -1,7 +1,7 @@
%if 0%{?is_stage_project}
Release: <CI_CNT>.<B_CNT> spec:bp160.999999.<CI_CNT>.<B_CNT>
Release: <CI_CNT>.<B_CNT> spec:bp161.999999.<CI_CNT>.<B_CNT>
%else
Release: <CI_CNT>.<B_CNT> spec:bp160.<CI_CNT>.<B_CNT>
Release: <CI_CNT>.<B_CNT> spec:bp161.<CI_CNT>.<B_CNT>
%endif
# 000productcompose experiment
@@ -129,15 +129,6 @@ Macros:
%ffmpeg_pref ffmpeg-7
:Macros
# BEGIN GIMP STUFF - remove this section when gimp3 is ready
# %if "%_project" == "openSUSE:Backports:SLE-16.0"
# Macros:
# Do not build python plugin in gimp2
# %_without_python_plugin 1
# :Macros
# %endif
# END GIMP STUFF
# openSUSE -> SLE magic BuildRequires can work then
Substitute: desktop-data-openSUSE-extra desktop-data-SLE-extra
Substitute: desktop-data-openSUSE desktop-data-SLE
@@ -168,7 +159,7 @@ Macros:
# Leap specific package list, the same list with excludebuild must add to Backports project
# Most of package should be built in Backports
%if "%_project" == "openSUSE:Backports:SLE-16.0"
%if "%_project" == "openSUSE:Backports:SLE-16.1"
# we build ffado:ffado-mixer for openSUSE, the main one is built in SLFO
BuildFlags: excludebuild:ffado
# build gpgme:qt flavor for qt5 support

View File

@@ -1,3 +1,3 @@
{
"": ["maintenance-release-review"]
"": ["packagehub-review"]
}

Submodule git-bug updated: 22bb247e73...2390ae6cee

Submodule melange updated: 32c0112588...4ca0d8a776

View File

@@ -1,66 +0,0 @@
<patchinfo incident="packagehub-1">
<issue tracker="bnc" id="1251334">VUL-0: chromium: release 141.0.7390.65</issue>
<issue tracker="cve" id="2025-11213">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11216">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11207">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11211">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11212">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11210">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="bnc" id="1250780">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11208">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10890">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11206">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11460">VUL-0: chromium: release 141.0.7390.65</issue>
<issue tracker="cve" id="2025-11219">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="bnc" id="1250472">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11205">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10891">VUL-0: chromium: release 140.0.7339.207</issue>
<issue tracker="cve" id="2025-11458"/>
<issue tracker="cve" id="2025-11215">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-11209">VUL-0: chromium: release 141.0.7390.54</issue>
<issue tracker="cve" id="2025-10892">VUL-0: chromium: release 140.0.7339.207</issue>
<packager>AndreasStieger</packager>
<rating>critical</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.76:
* Do not send URLs as AIM input. This is to resolve a privacy
concern, around passing urls to AI Mode.
Chromium 141.0.7390.65 (boo#1251334):
* CVE-2025-11458: Heap buffer overflow in Sync
* CVE-2025-11460: Use after free in Storage
* CVE-2025-11211: Out of bounds read in WebCodecs
Chromium 141.0.7390.54 (stable released 2025-09-30) (boo#1250780)
* CVE-2025-11205: Heap buffer overflow in WebGPU
* CVE-2025-11206: Heap buffer overflow in Video
* CVE-2025-11207: Side-channel information leakage in Storage
* CVE-2025-11208: Inappropriate implementation in Media
* CVE-2025-11209: Inappropriate implementation in Omnibox
* CVE-2025-11210: Side-channel information leakage in Tab
* CVE-2025-11211: Out of bounds read in Media
* CVE-2025-11212: Inappropriate implementation in Media
* CVE-2025-11213: Inappropriate implementation in Omnibox
* CVE-2025-11215: Off by one error in V8
* CVE-2025-11216: Inappropriate implementation in Storage
* CVE-2025-11219: Use after free in V8
* Various fixes from internal audits, fuzzing and other initiatives
Chromium 141.0.7390.37 (beta released 2025-09-24)
Chromium 140.0.7339.207 (boo#1250472)
* CVE-2025-10890: Side-channel information leakage in V8
* CVE-2025-10891: Integer overflow in V8
* CVE-2025-10892: Integer overflow in V8
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,17 +0,0 @@
<patchinfo incident="packagehub-3">
<issue tracker="bnc" id="1252013">VUL-0: CVE-2025-11756: chromium: Use after free in Safe Browsing</issue>
<issue tracker="cve" id="2025-11756"/>
<packager>AndreasStieger</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.107:
* CVE-2025-11756: Use after free in Safe Browsing (boo#1252013)
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,103 +0,0 @@
<patchinfo incident="packagehub-4">
<packager>dheidler</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for opi</summary>
<description>This update for opi fixes the following issues:
- Version 5.8.8
* Fix adding openh264 repo on leap 16.0
This update for opi fixes the following issues:
- Version 5.8.7
* Fix ocenaudio url
* Add LocalSend plugin
* Run all tests in verbose mode
* Print written repo files in verbose mode
* Increase timeouts in test/06_install_non_interactive.py
* Remove DNF references from README.md
This update for opi fixes the following issues:
- Version 5.8.5
* add librewolf plugin (#205)
* Install .NET 9
* Add verbose mode
* Change the order of the process in the github module
* Add rustdesk plugin
This update for opi fixes the following issues:
- Version 5.8.4
* Use arm64 rpm for libation on aarch64
This update for opi fixes the following issues:
- Version 5.8.3
* Install dependencies rpm-build and squashfs at runtime if needed
* Drop DNF support
This update for opi fixes the following issues:
- Version 5.8.2
* Warn about adding staging repos
* Gracefully handle zypper exit code 106 (repos without cache present)
This update for opi fixes the following issues:
- Version 5.8.1
* Fix SyntaxWarning: invalid escape sequence '\s'
This update for opi fixes the following issues:
- Version 5.8.0
* Add mullvad-brower
This update for opi fixes the following issues:
- Version 5.7.0
* Add leap-only plugin to install zellij from github release
* Don't use subprocess.run user kwarg on 15.6
* Fix tests: Use helloworld-opi-tests instead of zfs
* Perform search despite locked rpmdb
* Simplify backend code
This update for opi fixes the following issues:
- Use no macros in url in .spec for packtrack
This update for opi fixes the following issues:
- Version 5.6.0
* Add plugin to install vagrant from hashicorp repo
This update for opi fixes the following issues:
- Version 5.5.0
* Update opi/plugins/collabora.py
* add collabora office desktop
* Omit unsupported cli args on leap in 99_install_opi.py
* Switch to PEP517 install
* Fix 09_install_with_multi_repos_in_single_file_non_interactive.py
* Fix 07_install_multiple.py on tumbleweed
* Fix test suite on tumbleweed
* Update available apps in opi - README.md
This update for opi fixes the following issues:
- Version 5.4.0
* Show key ID when importing or deleting package signing keys
* Add option to install google-chrome-canary
This update for opi fixes the following issues:
- Version 5.3.0
* Fix tests for new zypper version
* fix doblue slash in packman repo url
* Add Plugin to install Libation
</description>
<package>opi</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,17 +0,0 @@
<patchinfo incident="packagehub-5">
<packager>michals</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for virtme</summary>
<description>This update for virtme fixes the following issues:
- Update to 1.38:
* Fix the infamous Stale file handle (ESTALE) errors with virtiofsd
* Fix for systemctl daemon-reload when systemd support is enabled
* Fix for a kernel symlink issue affecting openSUSE/SLE
* README/docs improvements
* Various coding style cleanups
</description>
<package>virtme</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,55 +0,0 @@
<patchinfo incident="packagehub-6">
<issue tracker="bnc" id="1206292">[SELinux] Wine/Proton not working reliably with default SELinux configuration</issue>
<packager>regularhunter</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for lutris</summary>
<description>This update for lutris fixes the following issues:
- Move selinux dependency
- Fix gaming under selinux (bsc#1206292)
- Fix wrong placement of lang_package macro in spec file
- Update to 0.5.19:
* Fix Proton integration bugs so Proton-fixes are applied
* Do not offer DXVK, VKD3D, D3D Extras or DDXVK-NVAPI on Proton versions;
Proton will handle these.
* The "Enable Esync" and "Enable Fsync" settings are now passed on to Proton
* DXVK's integrated D8VK will be enabled in Proton
* Emulator BIOS file location (used by libretro) may be set in Preferences
* Obtain the release year from GOG and Itch.io.
* MAME Machine setting uses a searchable entry for its enourmous list
* Support for importing Commodore 64 ROMs
- Add BuildRequires apparmor-abstractions, apparmor-rpm-macros for
Leap, fix for build error: directories not owned by a package:
/etc/apparmor.d
- update to 0.5.18:
* Lutris downloads the latest GE-Proton build for Wine if any Wine version is installed
* Use dark theme by default
* Display cover-art rather than banners by default
* Add 'Uncategorized' view to sidebar
* Preference options that do not work on Wayland will be hidden when on Wayland
* Game searches can now use fancy tags like 'installed:yes' or 'source:gog', with explanatory tool-tip
* A new filter button on the search box can build many of these fancy tags for you
* Runner searches can use 'installed:yes' as well, but no other fancy searches or anything
* Updated the Flathub and Amazon source to new APIs, restoring integration
* Itch.io source integration will load a collection named 'Lutris' if present
* GOG and Itch.io sources can now offer Linux and Windows installers for the same game
* Added support for the 'foot' terminal
* Support for DirectX 8 in DXVK v2.4
* Support for Ayatana Application Indicators
* Additional options for Ruffle runner
* Updated download links for the Atari800 and MicroM8 runners
* No longer re-download cached installation files even when some are missing
* Lutris log is included in the 'System' tab of the Preferences window
* Improved error reporting, with the Lutris log included in the error details
* Add AppArmor profile for Ubuntu versions &gt;= 23.10
* Add Duckstation runner
</description>
<package>lutris</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,16 +0,0 @@
<patchinfo incident="packagehub-8">
<issue tracker="cve" id="2025-12036">VUL-0: CVE-2025-12036: chromium: Inappropriate implementation in V8</issue>
<issue tracker="bnc" id="1252402">VUL-0: CVE-2025-12036: chromium: Inappropriate implementation in V8</issue>
<packager>AndreasStieger</packager>
<rating>moderate</rating>
<category>security</category>
<summary>Security update for chromium</summary>
<description>This update for chromium fixes the following issues:
Chromium 141.0.7390.122:
* CVE-2025-12036: Inappropriate implementation in V8 (boo#1252402)
</description>
<package>chromium</package>
<seperate_build_arch/>
</patchinfo>

View File

@@ -1,57 +0,0 @@
<patchinfo incident="packagehub-7">
<issue tracker="bnc" id="1248768">[warewulf, REGRESSION] None of the disk/partition/filesystem Options to `wwctl profile set` appear to do anything</issue>
<issue tracker="bnc" id="1227465">[warewulf, kernel] After updating the Kernel in the Container Image 'wwctl container list' still shows old</issue>
<issue tracker="bnc" id="1246082">warewulf4-slurm suggest slurm only</issue>
<issue tracker="bnc" id="1248906">VUL-0: CVE-2025-58058: warewulf4: github.com/ulikunitz/xz: github.com/ulikunitz/xz leaks memory</issue>
<issue tracker="bnc" id="1227686">[warewulf, kernel] Feature: Allow to determine the Kernel to boot - with none set, take latest</issue>
<issue tracker="cve" id="2025-58058">cve#2025-58058 not resolved: 404 Client Error: Not Found for url: https://bugzilla.suse.com/api2/issues/?references__name=CVE-2025-58058</issue>
<packager>mslacken</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for warewulf4</summary>
<description>This update for warewulf4 fixes the following issues:
Changes in warewulf4:
- Update to version 4.6.4:
* v4.6.4 release updates
* Convert disk booleans from wwbool to *bool which allows bools in
disk to be set to false via command line (bsc#1248768)
* Update NetworkManager Overlay
* Disable ipv4 in NetworkManager if no address or route is specified
* fix(wwctl): Create overlay edit tempfile in tmpdir
* Add default for systemd name for warewulf in warewulf.conf
* Atomic overlay file application in wwclient
* Simpler names for overlay methods
* Fix warewulfd api behavior when deleting distribution overlay
- Update to version 4.6.3:
* v4.6.3 release
* IPv6 iPXE support
* Fix a syntax error in the RPM specfile
* Fix a race condition in wwctl overlay edit
* Fixed handling of comma-separated mount options in `fstab` and `ignition` overlays
* Move reexec.Init() to beginning of wwctl
* Add documentation for using tmpfs to distribute across numa nodes
* added warewuld configure option
* Fix wwctl upgrade nodes to handle kernel argument lists (bsc#1227686 bsc#1227465)
* Address copilot review from #1945
* Refactor wwapi tests for proper isolation
* Bugfix: cloning a site overlay when parent dir does not exist
* Clone to a site overlay when adding files in wwapi
* Consolidated createOverlayFile and updateOverlayFile to addOverlayFile
* Support for creating and updating overlay file in wwapi
* Only return overlay files that refer to a path within the overlay
* add overlay file deletion support
* DELETE /api/overlays/{id}?force=true can delete overlays in use
* Restore idempotency of PUT /api/nodes/{id}
* Simplify overlay mtime api and add tests
* add node overlay buildtime
* Improved netplan support
* Rebuild overlays for discovered nodes
* Restrict userdocs from building during pr when not modified
* Update to v4.6.2 GitHub release notes
</description>
<package>warewulf4</package>
<seperate_build_arch/>
</patchinfo>

File diff suppressed because it is too large Load Diff

View File

@@ -1,4 +1,4 @@
{
"ObsProject": "openSUSE:Backports:SLE-16.0",
"StagingProject": "openSUSE:Backports:SLE-16.0:PullRequest"
"ObsProject": "openSUSE:Backports:SLE-16.1",
"StagingProject": "openSUSE:Backports:SLE-16.1:PullRequest"
}

View File

@@ -1,74 +1,23 @@
{
"Workflows": ["pr"],
"GitProjectName": "products/PackageHub#leap-16.0",
"GitProjectName": "products/PackageHub#leap-16.1",
"Organization": "pool",
"Branch": "leap-16.0",
"Branch": "leap-16.1",
"ManualMergeProject": true,
"NoProjectGitPR": true,
"Reviewers": [
"-maintenance-release-review",
"*opensuse-review",
"*packagehub-review",
"+legaldb",
"-autogits_obs_staging_bot",
"-qam-openqa-review"
],
"ReviewGroups": [
{
"Name": "maintenance-release-review",
"Name": "packagehub-review",
"Reviewers": [
"abergmann",
"amattiazzo",
"bfilho",
"cmatos",
"crazybyte",
"emanuelecappello",
"gsonnu",
"maintenance-robot",
"mauriziogalli",
"mbozicevic",
"mimi_vx",
"mschnitzer",
"msmeissn",
"pluskalm",
"rfrohl",
"slemke"
],
"Silent": true
},
{
"Name": "opensuse-review",
"Reviewers": [
"alarrosa",
"anag",
"atartamo",
"bigironman",
"darix",
"dimstar",
"dmach",
"eroca",
"jdsn",
"jengelh",
"mcalabkova",
"mstrigl",
"nkrapp",
"oertel",
"RBrownSUSE",
"simotek",
"lkocman-factory",
"maxlin_factory",
"smithfarm"
],
"Silent": true
},
{
"Name": "qam-openqa-review",
"Reviewers": [
"mimi_vx",
"mschnitzer",
"msmeissn",
"openqa-maintenance",
"foursixnine-openqa",
"szarate"
],
"Silent": true
]
}
]
}