<feed xmlns='http://www.w3.org/2005/Atom'>
<title>staging/xback/package/libs, branch v17.01.0</title>
<subtitle>Staging tree of Koen Vandeputte</subtitle>
<id>https://git.openwrt.org/openwrt/staging/xback/atom?h=v17.01.0</id>
<link rel='self' href='https://git.openwrt.org/openwrt/staging/xback/atom?h=v17.01.0'/>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/'/>
<updated>2017-02-01T15:05:52Z</updated>
<entry>
<title>libtool: don't clobber host libtool infrastructure</title>
<updated>2017-02-01T15:05:52Z</updated>
<author>
<name>Jo-Philipp Wich</name>
</author>
<published>2017-01-21T23:28:54Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=d1d970e2352072ec06599b9024df107ac1b96f5d'/>
<id>urn:sha1:d1d970e2352072ec06599b9024df107ac1b96f5d</id>
<content type='text'>
The libtool target package stages its files into the host staging directory
and moves the libltdl library parts from there into the target staging
directory afterwards.

By doing so, the package essentially renders the host libtool infrastructure
unusable, leading to the below error in subsequent package builds:

    libtoolize: $pkgltdldir is not a directory: `.../hostpkg/share/libtool`

Prevent this problem by using a dedicated libltdl install prefix in order to
avoid overwriting and moving away preexisting files belonging to tools/libtool.

Signed-off-by: Jo-Philipp Wich &lt;jo@mein.io&gt;
</content>
</entry>
<entry>
<title>openssl: update to version 1.0.2k</title>
<updated>2017-01-28T12:33:22Z</updated>
<author>
<name>Hauke Mehrtens</name>
</author>
<published>2017-01-27T22:36:45Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=f5ab082243f9822544204fc713c6bd4dab14a3a8'/>
<id>urn:sha1:f5ab082243f9822544204fc713c6bd4dab14a3a8</id>
<content type='text'>
This fixes the following security problems:
CVE-2017-3731: Truncated packet could crash via OOB read
CVE-2017-3732: BN_mod_exp may produce incorrect results on x86_64
CVE-2016-7055: Montgomery multiplication may produce incorrect results

Signed-off-by: Hauke Mehrtens &lt;hauke@hauke-m.de&gt;
</content>
</entry>
<entry>
<title>zlib: Update to 1.2.11</title>
<updated>2017-01-21T13:27:23Z</updated>
<author>
<name>Daniel Engberg</name>
</author>
<published>2017-01-15T20:46:27Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=12392e560034f4ece090ebcda52f7d965a58b4d8'/>
<id>urn:sha1:12392e560034f4ece090ebcda52f7d965a58b4d8</id>
<content type='text'>
Update to 1.2.11 as suggested by upstream
Also add SF as primary source and main site as fallback

Note: SF doesn't carry the 1.2.11 update yet.

Signed-off-by: Daniel Engberg &lt;daniel.engberg.lists@pyret.net&gt;</content>
</entry>
<entry>
<title>mbedtls: add static files in staging_dir</title>
<updated>2017-01-16T10:41:54Z</updated>
<author>
<name>Domagoj Pintaric</name>
</author>
<published>2017-01-01T18:10:38Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=b5b83706be5bad055033bd3cf6d4f50e2fe2f19c'/>
<id>urn:sha1:b5b83706be5bad055033bd3cf6d4f50e2fe2f19c</id>
<content type='text'>
Signed-off-by: Domagoj Pintaric &lt;domagoj.pintaric@sartura.hr&gt;
Signed-off-by: Luka Perkov &lt;luka.perkov@sartura.hr&gt;
</content>
</entry>
<entry>
<title>ncurses: revert $(STAGING_DIR_HOSTPKG) to $(STAGING_DIR)/host where appropriate</title>
<updated>2017-01-14T17:58:44Z</updated>
<author>
<name>Matthias Schiffer</name>
</author>
<published>2017-01-14T17:11:26Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=0d8381aea38e97a440fe5ae21f629827c0197628'/>
<id>urn:sha1:0d8381aea38e97a440fe5ae21f629827c0197628</id>
<content type='text'>
Host files installed in Build/InstallDev are target-specific and will stay
in $(STAGING_DIR)/host after the STAGING_DIR_HOSTPKG unification.

Signed-off-by: Matthias Schiffer &lt;mschiffer@universe-factory.net&gt;
</content>
</entry>
<entry>
<title>polarssl: remove package</title>
<updated>2017-01-13T11:08:08Z</updated>
<author>
<name>Felix Fietkau</name>
</author>
<published>2017-01-13T10:39:56Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=bd68ddbda46e49515f69765be82ea306297af1fe'/>
<id>urn:sha1:bd68ddbda46e49515f69765be82ea306297af1fe</id>
<content type='text'>
The mbedTLS 1.3 branch has been EOL since end of 2016 and now all
remaining users have been converted.

Signed-off-by: Felix Fietkau &lt;nbd@nbd.name&gt;
</content>
</entry>
<entry>
<title>gettext-full: avoid using iconv for host builds</title>
<updated>2017-01-11T02:48:30Z</updated>
<author>
<name>Jo-Philipp Wich</name>
</author>
<published>2017-01-11T02:44:51Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=b95494baedbc46d088550e18370e3507af4f732e'/>
<id>urn:sha1:b95494baedbc46d088550e18370e3507af4f732e</id>
<content type='text'>
The gettext-full host build might pick up iconv-stub host build  headers
during the build, leading to stray linker errors with unresolved references
to libiconv_open(), libiconv() and libiconv_close().

Since we're not needing iconv support on the host, pass the appropriate
cache variables to configure to prevent detection and linking of iconv.

Signed-off-by: Jo-Philipp Wich &lt;jo@mein.io&gt;
</content>
</entry>
<entry>
<title>package: replace $(STAGING_DIR)/host with $(STAGING_DIR_HOSTPKG)</title>
<updated>2017-01-10T21:15:37Z</updated>
<author>
<name>Matthias Schiffer</name>
</author>
<published>2017-01-10T17:43:57Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=77beaf2ec91bba0a0202ea63877ed3b399effabf'/>
<id>urn:sha1:77beaf2ec91bba0a0202ea63877ed3b399effabf</id>
<content type='text'>
Cleanup to prepare for changing STAGING_DIR_HOSTPKG. The actual change of
STAGING_DIR_HOSTPKG (i.e., moving the host packages back into a common, not
target-specific directory) will be done after the first LEDE release, but
the cleanup will also be useful for projects like Gluon.

Signed-off-by: Matthias Schiffer &lt;mschiffer@universe-factory.net&gt;
</content>
</entry>
<entry>
<title>libnl: Update to 3.2.29</title>
<updated>2017-01-10T07:26:42Z</updated>
<author>
<name>Daniel Engberg</name>
</author>
<published>2017-01-03T21:06:36Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=dfe93c20ec643f0128b55b18f19f9b52c8d670ec'/>
<id>urn:sha1:dfe93c20ec643f0128b55b18f19f9b52c8d670ec</id>
<content type='text'>
Update libnl to 3.2.29

Signed-off-by: Daniel Engberg &lt;daniel.engberg.lists@pyret.net&gt;
</content>
</entry>
<entry>
<title>cyassl: update to wolfssl version  3.10.0</title>
<updated>2017-01-09T23:10:15Z</updated>
<author>
<name>Hauke Mehrtens</name>
</author>
<published>2017-01-09T22:56:05Z</published>
<link rel='alternate' type='text/html' href='https://git.openwrt.org/openwrt/staging/xback/commit/?id=e9f0b759769bb3d51aae5fa578ce1bde088d72ba'/>
<id>urn:sha1:e9f0b759769bb3d51aae5fa578ce1bde088d72ba</id>
<content type='text'>
This fixes a low level security vulnerability.
Deactivate MIPS16 support, crypto code gets much slower with MIPS16.

Signed-off-by: Hauke Mehrtens &lt;hauke@hauke-m.de&gt;
</content>
</entry>
</feed>
