Commit Graph

79422 Commits

Author SHA1 Message Date
Akhilesh Nema
53a302c6ed package/pppd: Add an option to enable/disable CBCP support.
Adds BR2_PACKAGE_PPPD_CBCP option.
https://learn.microsoft.com/en-us/openspecs/windows_protocols/ms-cbcp/.

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
[Julien: move blocks in Config.in an .mk to keep options sorted]
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:34:01 +01:00
Akhilesh Nema
561c2e8fdc package/hwdata: bump version to 0.401
Release notes:
https://github.com/vcrhonek/hwdata/releases/tag/v0.401

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:26:48 +01:00
Akhilesh Nema
e61c5385c2 package/libxcrypt: bump version to 4.5.1
LICENSING hash updated due to the addition of new cryptographic algorithm source file names.

Release notes:
https://github.com/besser82/libxcrypt/releases/tag/v4.5.1
https://github.com/besser82/libxcrypt/releases/tag/v4.5.0

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:59 +01:00
Akhilesh Nema
94cc485083 package/liblinear: bump version to 2.49
Changelog:
https://github.com/cjlin1/liblinear/compare/v248...v249

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:28 +01:00
Akhilesh Nema
d0f2fcf4f7 package/msmtp: bump version to 1.8.32
Release notes:
https://marlam.de/msmtp/news/msmtp-1-8-32/
https://marlam.de/msmtp/news/msmtp-1-8-31/

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:16 +01:00
Akhilesh Nema
addbee7517 package/usbutils: bump to version 019
Release announcement:
https://lwn.net/Articles/1042924/

Changelog:
https://github.com/gregkh/usbutils/compare/v018...v019

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:12 +01:00
Akhilesh Nema
779e7cd7a9 package/lldpd: bump to version 1.0.20
Release notes:
https://github.com/lldpd/lldpd/releases/tag/1.0.20
https://github.com/lldpd/lldpd/releases/tag/1.0.19

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:04 +01:00
Akhilesh Nema
be0de7f087 package/nmap: bump to version 7.98
Changelog:
https://nmap.org/changelog.html#7.98

Note: It includes a fix for CVE-2025-43715, which impacts Windows-based systems.

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:25:00 +01:00
Akhilesh Nema
b032843bb4 package/ustreamer: bump version to 6.41
Changelog:
https://github.com/pikvm/ustreamer/compare/v6.40...v6.41

Signed-off-by: Akhilesh Nema <nemaakhilesh@gmail.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:24:56 +01:00
Bernd Kuhls
b9df55a911 package/nbd: bump version to 3.26.1
Added two upstream patches to fix build errors, autoreconf is required.

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:11:37 +01:00
Bernd Kuhls
0f1a2e875e package/nbd: Fix build on musl + gcc14
Fixes:
https://autobuild.buildroot.net/results/1e8/1e88151bb3aad1c1769e12b4930a2c33cd1c6830/

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 19:09:41 +01:00
Bernd Kuhls
ea9687cb2c package/libpng: add upstream patch to fix riscv64 build
Fixes:
https://autobuild.buildroot.net/results/573/573c2dc9a144da25e2d1962af09e5931a72cd8d3/

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-10 17:57:51 +01:00
Bernd Kuhls
d8b0fdb71e package/makedumpfile: bump version to 1.7.8
Release notes:
https://lists.infradead.org/pipermail/kexec/2025-October/034120.html
https://lists.infradead.org/pipermail/kexec/2025-April/032607.html
https://lists.infradead.org/pipermail/kexec/2024-October/030984.html

Switched to github helper due to upstream not providing tarballs anymore.

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 23:33:46 +01:00
Dario Binacchi
860dd9610d package/darkhttpd: bump to version 1.17
The license hash file changed because It was added copyright notice
taken directly from darkhttpd.c.

Release notes:
https://github.com/emikulic/darkhttpd/releases/tag/v1.17

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:59:23 +01:00
Dario Binacchi
cffe524023 package/cukinia: bump version to 0.9.1
Release notes:
https://github.com/savoirfairelinux/cukinia/releases/tag/v0.9.1

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:59:09 +01:00
Dario Binacchi
4d65abce7e package/cryptodev-linux: bump to version 1.14
The removed patches has been merged upstream.

Release notes:
https://github.com/cryptodev-linux/cryptodev-linux/blob/master/NEWS

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:58:18 +01:00
Dario Binacchi
304a2231cb package/crudini: bump to version 0.9.6
Release notes:
https://github.com/pixelb/crudini/releases/tag/0.9.6

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:57:16 +01:00
Dario Binacchi
81048015e8 package/cracklib: bump to version 2.10.3
https://github.com/cracklib/cracklib/blob/v2.10.3/src/NEWS

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:56:27 +01:00
Dario Binacchi
0ba7a1363f package/cppzmq: bump to version 4.11.0
https://github.com/zeromq/cppzmq/releases/tag/v4.11.0

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:55:22 +01:00
Dario Binacchi
2fdbc4faea package/cpp-httplib: bump to version 0.27.0
For release notes since 0.25.0, see:
https://github.com/yhirose/cpp-httplib/releases

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 21:54:20 +01:00
Dario Binacchi
473c9400a0 package/brotli: bump to version 1.2.0
Release notes:
https://github.com/google/brotli/releases/tag/v1.2.0

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 19:17:23 +01:00
Dario Binacchi
fc31c07dba package/cctz: bump to version 2.5
Release notes:
https://github.com/google/cctz/releases/tag/v2.5

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 18:48:38 +01:00
Dario Binacchi
2eded963ee package/conntrack-tools: bump to version 1.4.8
Upstream now ships the source archive as .tar.xz instead of .tar.bz2.

Release notes:
https://netfilter.org/pub/conntrack-tools/changes-conntrack-tools-1.4.8.txt

Signed-off-by: Dario Binacchi <dario.binacchi@amarulasolutions.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 18:39:50 +01:00
Yann E. MORIN
6b53649bfa docs/manual: add merged-bin details to customize rootfs
As was done in dc7c6487cf (Makefile: check rootfs overlays with
BR2_ROOTFS_MERGED_USR enabled) to document how overlays should be
set up for the merged-usr case, and following 428ac6fcc4 (system:
add support for merged /usr/sbin (aka merged-bin), extend the
documentation to explain how rootfs overlays should be set up for
the merged-bin case.

Reported-by: Romain Naour <romain.naour@gmail.com>
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 18:36:30 +01:00
Bernd Kuhls
34a03bdba4 package/xscreensaver: bump version to 6.12
Added two patches from Debian to fix configure errors.

Switched from libgtk2 to libgtk3 and adjusted dependencies.
Added dependency to libxcrypt.

Fixed broken include path for gl.h, inspired by Gentoo:
https://gitweb.gentoo.org/repo/gentoo.git/tree/x11-misc/xscreensaver/xscreensaver-6.12-r2.ebuild#n172

Removed dependency to gdk-pixbuf-xlib, not needed since version 6.05:
https://gitweb.gentoo.org/repo/gentoo.git/commit/x11-misc/xscreensaver?id=3d6bc3a216196c795de6e0932f74055548beb9bb

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
[Julien: replace the sed substitute separator with '%']
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-09 18:18:58 +01:00
Bernd Kuhls
7085d1c48b package/coreutils: bump version to 9.8
Release notes:
https://lists.gnu.org/archive/html/coreutils-announce/2025-01/msg00000.html
https://lists.gnu.org/archive/html/coreutils-announce/2025-04/msg00000.html
https://lists.gnu.org/archive/html/coreutils-announce/2025-09/msg00000.html

Removed patch which is included in this release.

Added tarball hashes provided by upstream.

With the bump to 9.8, the build will fail on systems that are not
Y2038, such as some uClibc configurations.

In order to preserve the previous behavior, pass --disable-year2038.
See the gnulib documentation for details [1]. Contrary to what the
option name might suggest, it doesn't really disable Y2038 support,
but only the check that the system is Y2038 compliant. So even with
--disable-year2038, if the system is Y2038 compliant (uses a 64-bit
arch, uses the musl C library, or uses the glibc C library with
BR2_TIME_BITS_64=y), tar will be Y2038 compliant.

[1] https://www.gnu.org/software/gnulib/manual/html_node/Avoiding-the-year-2038-problem.html

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-08 17:00:49 +01:00
Fiona Klute
566bb2bb76 package/uboot-tools: enable all hash algorithms if FIT support is enabled
This allows using any of the hash algorithms supported by U-Boot for
checksum (hash-N) nodes when building a FIT image, instead of only
SHA-1 or SHA-256.

Fixes: 14a0169714 "package/uboot-tools:
Bump to version 2025.10"

Signed-off-by: Fiona Klute <fiona.klute@gmx.de>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-08 11:51:55 +01:00
Bernd Kuhls
ec754cddf8 package/samba4: bump version to 4.23.3
Release notes:
https://www.samba.org/samba/history/samba-4.23.3.html

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-08 11:34:14 +01:00
Francois Perrad
c032963486 package/janet: don't use posix_spawn_file_actions_addchdir
fix build, see https://autobuild.buildroot.org/results/c3378c138980b77ad5202223e7e1dbd8443bcf93/

Signed-off-by: Francois Perrad <francois.perrad@gadz.org>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-08 11:32:25 +01:00
Bernd Kuhls
582ee9c2fd package/libnvme: bump version to 1.16.1
Release notes:
https://github.com/linux-nvme/libnvme/releases/tag/v1.16.1

Removed patch which is included in this release.

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-08 11:26:50 +01:00
Michael Nosthoff
62185b7935 package/fmt: bump to version 12.1.0
Release Notes:

https://github.com/fmtlib/fmt/releases/tag/12.1.0
https://github.com/fmtlib/fmt/releases/tag/12.0.0

Signed-off-by: Michael Nosthoff <buildroot@heine.tech>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-07 23:27:05 +01:00
Michael Nosthoff
f8bf789115 package/gerbera: bump to version 2.6.1
- new dependencies on icu and jsoncpp
- fixes most deprecations of fmt >= 12

- add upstream patch which fixes another deprecation of fmt >=12

Release Notes:
https://github.com/gerbera/gerbera/releases/tag/v2.5.0
https://github.com/gerbera/gerbera/releases/tag/v2.6.0
https://github.com/gerbera/gerbera/releases/tag/v2.6.1

Signed-off-by: Michael Nosthoff <buildroot@heine.tech>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-07 23:27:00 +01:00
Bernd Kuhls
d94d536c37 package/intel-vpl-gpu-rt: bump version to 25.4.3
Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-07 21:54:49 +01:00
Bernd Kuhls
2ebc6abccf package/intel-mediadriver: bump version to 25.4.3
Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-07 21:54:46 +01:00
Giulio Benetti
872f694a95 package/udisks: bump to version 2.11.0
Release notes:
https://github.com/storaged-project/udisks/releases/tag/udisks-2.11.0

Let's also add support for ATA SMART according to libblockdev package.

Signed-off-by: Giulio Benetti <giulio.benetti@benettiengineering.com>
[Julien: remove "security" from commit log title]
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-07 21:41:53 +01:00
Peter Korsgaard
788b7d6958 package/libcurl: bump to version 8.17.0
Brings a number of bugfixes and a (not applicable to Buildroot) security fix
for wolfssl (by dropping support for it).

https://curl.se/ch/8.17.0.html

Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 20:43:58 +01:00
Bernd Kuhls
9d7a0d07cd package/libnvme: fix build error
Added upstream patch to fix build error caused by version bump to 1.16
by buildroot commit 12500fb060.

Signed-off-by: Bernd Kuhls <bernd@kuhls.net>
Reviewed-by: Giulio Benetti <giulio.benetti@benettiengineering.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 20:37:53 +01:00
Leo Yu-Chi Liang
10bf2e6629 configs/andes_ae350_45_defconfig: move to external Bootlin stable toolchain
This moves the andes_ae350_45_defconfig to the Bootlin glibc stable external toolchain
as per[1].

[1]: https://elinux.org/Buildroot:DeveloperDaysELCE2024#Rules_for_defconfigs

Signed-off-by: Leo Yu-Chi Liang <ycliang@andestech.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 19:43:48 +01:00
Leo Yu-Chi Liang
5e6a4907ac configs/andes_ae350_45_defconfig: enable BR2_DOWNLOAD_FORCE_CHECK_HASHES
Enable BR2_DOWNLOAD_FORCE_CHECK_HASHES to check the hashes.

Signed-off-by: Leo Yu-Chi Liang <ycliang@andestech.com>
[Julien: remove .checkpackageignore entry to fix check-package error]
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 19:43:48 +01:00
Leo Yu-Chi Liang
a29196c968 configs/andes_ae350_45_defconfig: bump to uboot v2025.07
This bumps uboot to v2025.07, removes unnecessary patches,
and add proper hash file.

Signed-off-by: Leo Yu-Chi Liang <ycliang@andestech.com>
[Julien:
 - remove .checkpackageignore entries to fix check-package errors
 - add missing BR2_TARGET_UBOOT_NEEDS_GNUTLS=y in defconfig
]
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 19:43:48 +01:00
Leo Yu-Chi Liang
b3e2b2f53f configs/andes_ae350_45_defconfig: bump to opensbi v1.6
This bumps opensbi to v1.6 and add proper hash file.

Signed-off-by: Leo Yu-Chi Liang <ycliang@andestech.com>
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 19:43:48 +01:00
Leo Yu-Chi Liang
093faabd86 configs/andes_ae350_45_defconfig: Fix linux tarball source
Use tag instead of branch to download the linux source,
and add proper hash files.

Signed-off-by: Leo Yu-Chi Liang <ycliang@andestech.com>
[Julien: change linux-headers.hash to a symlink]
Signed-off-by: Julien Olivain <ju.o@free.fr>
2025-11-06 19:43:48 +01:00
Yann E. MORIN
a530492cd3 package/systemd: require merged-bin
Since version 256, systemd will taint the system if /usr/bin and
/usr/sbin are not merged, known as merged-bin:

    # systemctl --no-pager status
    ● buildroot
        State: running
        Units: 166 loaded (incl. loaded aliases)
         Jobs: 0 queued
       Failed: 0 units
        Since: Mon 2025-07-07 19:48:05 UTC; 19s ago
      systemd: 257.7
      Tainted: unmerged-bin
       CGroup: /
               ├─init.scope
               [...]

Although this is not yet an error, it will be in the future.

To be as ready as we can be when that happens, forcibly enable
merged-bin, like we did when we initially added merged-usr (except
this time we carry the select from systemd, even though it is not
yet strictly required, rather than from the init entry).

Extend the runtime test to catch any tainted flag.

Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Cc: Arnout Vandecappelle <arnout@mind.be>
Cc: Norbert Lange <nolange79@gmail.com>
Cc: Sen Hastings <sen@hastings.org>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:31 +01:00
Yann E. MORIN
28694dcec7 toolchain/external: support merged-bin
When an external toolchain does not have a merged-bin, we can end up
with a situation where the toolchain installs an staging/usr/sbin/
directory, overriding the sbin symlink with an actual directory. When
not using PPD, this does not cause any harm.

However, with PPD, the build fails when preparing the staging (the
host/) for packages when the skeleton is eventually rsynced, e.g.:

    $ cat defconfig
    BR2_aarch64=y
    BR2_TOOLCHAIN_EXTERNAL=y
    BR2_TOOLCHAIN_EXTERNAL_BOOTLIN=y
    BR2_PER_PACKAGE_DIRECTORIES=y
    BR2_INIT_NONE=y
    BR2_ROOTFS_MERGED_USR=y
    BR2_ROOTFS_MERGED_SBIN=y
    # BR2_PACKAGE_BUSYBOX is not set
    BR2_PACKAGE_ZLIB=y
    # BR2_TARGET_ROOTFS_TAR is not set

    $ make zlib
    [...]
    >>> zlib  Configuring
    mkdir -p [...]/per-package/zlib/host
    rsync -a --hard-links --link-dest=[...]/per-package/host-skeleton/host/ [...]/per-package/host-skeleton/host/ [...]/per-package/zlib/host
    rsync -a --hard-links --link-dest=[...]/per-package/libzlib/host/ [...]/per-package/libzlib/host/ [...]/per-package/zlib/host
    rsync -a --hard-links --link-dest=[...]/per-package/skeleton/host/ [...]/per-package/skeleton/host/ [...]/per-package/zlib/host
    could not make way for new symlink: aarch64-buildroot-linux-gnu/sysroot/usr/sbin
    cannot delete non-empty directory: aarch64-buildroot-linux-gnu/sysroot/usr/sbin
    rsync error: some files/attrs were not transferred (see previous errors) (code 23) at main.c(1338) [sender=3.3.0]
    make[1]: *** [package/pkg-generic.mk:256: [...]/build/zlib/.stamp_configured] Error 23
    make: *** [Makefile:23: _all] Error 2

The root cause is that, in the skeleton, we end up with
[staging]/usr/sbin as a synlink to bin, but when the external toolchain
gets installed, the symlinbk is replaced by a directory. Later, when we
aggregate the PPD before configuring a package, it often happens that a
dependant package be rsynced before the toolchain and the skeleton, as
seen above, in which case the sbin directory from the toolchain, by way
of the dependency to a package, is already present when rsync wants to
create a symlink as rsynced from the skeleton.

In the example above, this plays in this order:

 1. skeleton gets installed, provides a symlink
 2. toolchain-external-bootlin rsyncs from skeleton, gets a symlink
 3. toolchain-external-bootlin gets installed, replaces symlink with a
    directory
 4. libzlib rsyncs from skeleton, gets a symlink, then rsyncs from
    toolchain-e-b, gets a directory
 5. zlib rsyncs from libzlib first (because alphabetical ordering), gets
    a directory, then rsyncs from skeleton, which rsyncs from a symlink,
    but the destination is a non-empty directory, so rsync fails.

It is perfectly legit that an external toolchain does not use a
merged-bin setup, so we must accept that as input. We do so by treating
the /usr/sbin entry specially, like we already do for a few others, of
which /sbin itself for example.

Note that the merged-usr setup has no issue, because we already handle
the lib*/ directories specially too.

Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Cc: Giulio Benetti <giulio.benetti@benettiengineering.com>
Cc: Romain Naour <romain.naour@gmail.com>
Cc: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:29 +01:00
Yann E. MORIN
812e7e43be package/net-tools: no need for ifconfig+route workarounds with merged-bin
With a merged-bin setup, there is no need to move ifconfig and route, as
they would already be in the proper place.

Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:28 +01:00
Yann E. MORIN
7f0fdc9603 package/util-linux: adjust paths for merged-bin
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:26 +01:00
Yann E. MORIN
18107d6353 package/kmod: adjust paths for merged-bin
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Cc: Yegor Yefremov <yegorslists@googlemail.com>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:25 +01:00
Yann E. MORIN
bb0fd62f30 package/coreutils: no need for chroot workaround with merged-bin
Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:23 +01:00
Yann E. MORIN
e38cd466c7 support/scripts: reject skeletons or overlays that are unexpectedly merged
Currently, we partially accept that a skeleton or a rootfs overlay be
merged:
  - for unmerged, we accept all kind of situations: unmerged, partially
    merged, badly merged, merged-usr or merged-bin, arbitrary relative
    or absolute symlinks, and whatnots;
  - for merged-usr, we strictly require a properly set up merged-usr,
    and we refuse a merged-bin;
  - for merged-bin, we stricty require a properly set up merged-bin.

The unmerged case is inconsistent with the other cases, especially it
allows for arbitrary symlinks that may point to arbitrary locations that
may even not belong to $(TARGET_DIR) at all...

We fix that by ensuring that the skeleton and overlays strictly adhere
to the merge-level of the configuration; i.e. for an unmerged config, we
require that the skeleton and overlays be strictly unmerged, that is,
/bin, /lib, and /sbin, and their counterparts in /usr, are actual
directories.

Thus, for all three types of merge level, the skeleton and overlays must
match the configured merge level.

Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:22 +01:00
Yann E. MORIN
428ac6fcc4 system: add support for merged /usr/sbin (aka merged-bin)
Starting with version 256 [0], systemd warns when /usr/bin and
/usr/sbin are different directories; in the future, it may even
refuse to boot in such a situation.

Add support for merged-bin, not unlike the support we have for
merged-usr; we also make merged-bin a sub-case of merged-usr
(i.e. it is not possible to do merged-bin without merged-usr).

[0] https://github.com/systemd/systemd/blob/v256/NEWS#L265

Signed-off-by: Yann E. MORIN <yann.morin.1998@free.fr>
Acked-by: Arnout Vandecappelle <arnout@mind.be>
Acked-by: TIAN Yuanhao <tianyuanhao3@163.com>
Cc: Edgar Bonet <bonet@grenoble.cnrs.fr>
Signed-off-by: Romain Naour <romain.naour@smile.fr>
2025-11-05 23:10:20 +01:00