Packages changed:
Mesa (25.1.6 -> 25.1.7)
Mesa-drivers (25.1.6 -> 25.1.7)
MicroOS-release (20250801 -> 20250803)
dracut-pcr-signature (0.6+2 -> 0.6+3)
grub2
libzypp (17.37.14 -> 17.37.15)
llvm20
lua54
sssd (2.10.2 -> 2.11.1)
wget
=== Details ===
==== Mesa ====
Version update (25.1.6 -> 25.1.7)
Subpackages: Mesa-libEGL1 Mesa-libGL1 libgbm1
- Update to release 25.1.7
- ->
https://docs.mesa3d.org/relnotes/25.1.7
- Bump required versions of the wayland packages.
==== Mesa-drivers ====
Version update (25.1.6 -> 25.1.7)
Subpackages: Mesa-dri Mesa-gallium Mesa-vulkan-device-select libvulkan_lvp
- Update to release 25.1.7
- ->
https://docs.mesa3d.org/relnotes/25.1.7
- Bump required versions of the wayland packages.
==== MicroOS-release ====
Version update (20250801 -> 20250803)
Subpackages: MicroOS-release-appliance MicroOS-release-dvd
- automatically generated by openSUSE-release-tools/pkglistgen
==== dracut-pcr-signature ====
Version update (0.6+2 -> 0.6+3)
- Update to version 0.6+3:
* Use installkernel() only to install kernel modules
==== grub2 ====
Subpackages: grub2-common grub2-i386-efi grub2-i386-efi-bls grub2-i386-pc grub2-snapper-plugin grub2-x86_64-efi grub2-x86_64-efi-bls
- Fix CVE-2024-56738: side-channel attack due to not constant-time
algorithm in grub_crypto_memcmp (bsc#1234959)
* grub2-constant-time-grub_crypto_memcmp.patch
==== libzypp ====
Version update (17.37.14 -> 17.37.15)
- Append RepoInfo::path() to the mirror URLs in Preloader
(bsc#1247054)
- version 17.37.15 (35)
==== llvm20 ====
- Enable lldb on riscv64
==== lua54 ====
- Switch from update-alternatives to libalternatives (and
dependency on lua-interpreter)
- improve .gitignore and overall improve the packaging.
- this package also provides devel symlink directly and conflicts
other -devel packages
==== sssd ====
Version update (2.10.2 -> 2.11.1)
Subpackages: libsss_certmap0 libsss_idmap0 sssd-krb5-common sssd-ldap
- Update to release 2.11.1
* Fixed AD users in external groups not being cleared once the
cache expires.
* Fixed `cache_credentials=true` not having any effect.
* Fixed socket activation not having an effect for sssd_pam.
- Add logrotate.patch [boo#1246537]
- Install file in krb5.conf.d to include sssd krb5 config snippets;
(bsc#1244325);
- Update to release 2.11
* The deprecated tool `sss_ssh_knownhostsproxy` was finally
removed.
* Support for `id_provider = files` was removed.
* SSSD doesn't create any more missing path components of
DIR:/FILE: ccache types while acquiring user's TGT.
* New generic id and auth provider for Identity Providers (IdPs)
for Keycloak/EntraID. [Not enabled in openSUSE for now.]
- Run mkdir/rm with verbose mode for the build log
==== wget ====
- adjust gpgme (and other) build dependencies for future-proofing
- drop unused build dependency