<feed xmlns='http://www.w3.org/2005/Atom'>
<title>staging/stintel/tools/mkimage, branch master</title>
<subtitle>Staging tree of Stijn Tintel</subtitle>
<id>https://git.openwrt.org/openwrt/staging/stintel/atom?h=master</id>
<link rel='self' href='https://git.openwrt.org/openwrt/staging/stintel/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/'/>
<updated>2026-09-28T12:12:42Z</updated>
<entry>
<title>tools: mkimage: refresh patches</title>
<updated>2026-09-28T12:12:42Z</updated>
<author>
<name>Robert Marko</name>
</author>
<published>2026-09-28T12:12:17Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=cec4e5acae22da72eee22f66fa582f7eb6ac5f38'/>
<id>urn:sha1:cec4e5acae22da72eee22f66fa582f7eb6ac5f38</id>
<content type='text'>
Refresh mkimage patches, so that CI is happy.

Signed-off-by: Robert Marko &lt;robimarko@gmail.com&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: reject empty custom magic</title>
<updated>2026-09-25T08:05:04Z</updated>
<author>
<name>Massimo Mazzariol</name>
</author>
<published>2026-09-25T07:56:54Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=6f684052de875c61db37682c306cf024ca164d4c'/>
<id>urn:sha1:6f684052de875c61db37682c306cf024ca164d4c</id>
<content type='text'>
Reject custom magic values when strtoull() does not parse any
digits, in addition to values outside the 32-bit uImage magic range.

Signed-off-by: Massimo Mazzariol &lt;mazzariol.massimo@gmail.com&gt;
Link: https://github.com/openwrt/openwrt/pull/25288
Signed-off-by: Robert Marko &lt;robimarko@gmail.com&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: validate custom magic range</title>
<updated>2026-09-25T08:05:04Z</updated>
<author>
<name>Massimo Mazzariol</name>
</author>
<published>2026-09-24T22:32:33Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=36efe835fdddaf61ae75e2d442af2abb02d45dd0'/>
<id>urn:sha1:36efe835fdddaf61ae75e2d442af2abb02d45dd0</id>
<content type='text'>
strtoull() can parse values wider than the 32-bit uImage magic field.
Reject values above UINT32_MAX before assigning the parsed value to
params.magic.

Signed-off-by: Massimo Mazzariol &lt;mazzariol.massimo@gmail.com&gt;
Link: https://github.com/openwrt/openwrt/pull/25288
Signed-off-by: Robert Marko &lt;robimarko@gmail.com&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: support custom magic in dumpimage</title>
<updated>2026-09-25T08:05:04Z</updated>
<author>
<name>Massimo Mazzariol</name>
</author>
<published>2026-09-20T11:56:48Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=f9a75af7436428a7316332037e178b43c2c0c439'/>
<id>urn:sha1:f9a75af7436428a7316332037e178b43c2c0c439</id>
<content type='text'>
OpenWrt's custom uImage magic patch makes legacy image verification use
params.magic instead of IH_MAGIC.

mkimage initializes this field, while dumpimage leaves it zeroed. This
causes dumpimage to reject valid legacy uImages using the standard
IH_MAGIC with FDT_ERR_BADMAGIC.

Initialize dumpimage's magic to IH_MAGIC so the normal verification path
works by default. Also add -M handling matching mkimage, allowing
dumpimage to verify and extract uImages built with a custom magic.

Tested with the patched U-Boot 2026.07 host tools. Standard-magic images
list and extract correctly, custom-magic images are accepted with the
matching -M value, and are rejected without it or with an incorrect
magic. Extracted payloads were verified byte-for-byte.

Fixes: #25287
Signed-off-by: Massimo Mazzariol &lt;mazzariol.massimo@gmail.com&gt;
Link: https://github.com/openwrt/openwrt/pull/25288
Signed-off-by: Robert Marko &lt;robimarko@gmail.com&gt;
</content>
</entry>
<entry>
<title>tools: pass the job server to the compile step of mtools, mkimage and lzma</title>
<updated>2026-09-22T18:29:59Z</updated>
<author>
<name>John Crispin</name>
</author>
<published>2026-09-22T18:07:06Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=0f05c481fd445d49fdea6962952a84d53d03da1c'/>
<id>urn:sha1:0f05c481fd445d49fdea6962952a84d53d03da1c</id>
<content type='text'>
host-build.mk clears MAKEFLAGS, so a custom Host/Compile that runs a bare
$(MAKE) builds with one job, whatever HOST_BUILD_PARALLEL says. mtools
sets the flag, but its compile step never used it.

Each of the three now passes $(HOST_JOBS), and mkimage and lzma set
HOST_BUILD_PARALLEL:

  mkimage  11.7 s -&gt; 7.2 s
  mtools    8.3 s -&gt; 4.8 s
  lzma      4.0 s -&gt; 1.8 s

Each one builds five times out of five with the job server, and each
build installs files that are identical to those of a serial build.

Signed-off-by: John Crispin &lt;john@phrozen.org&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: update to v2026.07</title>
<updated>2026-07-09T11:00:18Z</updated>
<author>
<name>Shiji Yang</name>
</author>
<published>2026-07-06T14:09:20Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=f381d86d91e37162a6e14da541c481a0da5b31f6'/>
<id>urn:sha1:f381d86d91e37162a6e14da541c481a0da5b31f6</id>
<content type='text'>
Update to the latest version. There are no new changes here, just
to align with uboot-tools.

Signed-off-by: Shiji Yang &lt;yangshiji66@outlook.com&gt;
Link: https://github.com/openwrt/openwrt/pull/24124
Signed-off-by: Jonas Jelonek &lt;jelonek.jonas@gmail.com&gt;
</content>
</entry>
<entry>
<title>treewide: use HTTPS for PKG_SOURCE_URL where possible</title>
<updated>2026-04-20T03:58:37Z</updated>
<author>
<name>Paul Spooren</name>
</author>
<published>2026-04-18T13:26:39Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=7a991c8d88b8946db94059f1f34885c8bf74c124'/>
<id>urn:sha1:7a991c8d88b8946db94059f1f34885c8bf74c124</id>
<content type='text'>
Switch http:// (and redundant ftp://) PKG_SOURCE_URL entries to https://
across tools/ and package/. PKG_HASH alone does not protect against an
attacker tampering with insecure downloads when a maintainer regenerates
the hash via `make ... FIXUP=1`: HTTPS authenticates the upstream so the
captured hash reflects real upstream content.

In-place http -&gt; https (HTTPS reachability verified per host):
- tools/elftosb, tools/lzop, tools/liblzo, tools/mpfr, tools/dosfstools,
  tools/libressl, tools/xz
- package/libs/mpfr, package/libs/libmnl, package/libs/libnfnetlink

Replaced with @OPENWRT (HTTPS-only mirror) where the upstream HTTPS host
is dead or has a broken certificate:
- package/libs/popt (ftp.rpm.org cert mismatch)
- package/firmware/ixp4xx-microcode (was http://downloads.openwrt.org)
- package/boot/imx-bootlets (trabant.uid0.hu cert mismatch)
- package/boot/kobs-ng (freescale.com URL is dead, redirects to nxp.com root)

Dropped redundant ftp://ftp.denx.de fallback (https://ftp.denx.de is
already listed):
- package/boot/uboot-tools, tools/mkimage

Signed-off-by: Paul Spooren &lt;mail@aparcar.org&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: use full defconfig name</title>
<updated>2026-04-12T08:28:25Z</updated>
<author>
<name>Shiji Yang</name>
</author>
<published>2026-04-10T11:02:03Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=75f2f960caa03dd2d1aa1bc38de908bb5a47c979'/>
<id>urn:sha1:75f2f960caa03dd2d1aa1bc38de908bb5a47c979</id>
<content type='text'>
The defconfig file used to build tools is "tools-only_defconfig".
Though u-boot scripts can still automatically handle the old style
name for compatibility reason, it's better to use the correct name.

Signed-off-by: Shiji Yang &lt;yangshiji66@outlook.com&gt;
Link: https://github.com/openwrt/openwrt/pull/22844
Signed-off-by: Nick Hainke &lt;vincent@systemli.org&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: disable more unnecessary tools</title>
<updated>2026-04-12T08:28:25Z</updated>
<author>
<name>Shiji Yang</name>
</author>
<published>2026-04-10T11:02:03Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=e249f79723c77f5570145a34b08c4ab610296c2a'/>
<id>urn:sha1:e249f79723c77f5570145a34b08c4ab610296c2a</id>
<content type='text'>
It doesn't make sence to build unused tools.

Signed-off-by: Shiji Yang &lt;yangshiji66@outlook.com&gt;
Link: https://github.com/openwrt/openwrt/pull/22844
Signed-off-by: Nick Hainke &lt;vincent@systemli.org&gt;
</content>
</entry>
<entry>
<title>tools/mkimage: update to v2026.04</title>
<updated>2026-04-12T08:28:25Z</updated>
<author>
<name>Shiji Yang</name>
</author>
<published>2026-04-10T11:02:03Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/stintel/commit/?id=f2d684236f50faefb32a031876ed585bed7a2604'/>
<id>urn:sha1:f2d684236f50faefb32a031876ed585bed7a2604</id>
<content type='text'>
Update to the latest version and add missing 030 patch header.

Changelog:
22aa122eee0 mkimage: Add support for bundling TEE in mkimage -f auto

Signed-off-by: Shiji Yang &lt;yangshiji66@outlook.com&gt;
Link: https://github.com/openwrt/openwrt/pull/22844
Signed-off-by: Nick Hainke &lt;vincent@systemli.org&gt;
</content>
</entry>
</feed>
