Re: [Buildroot] [PATCH 2025.02.x] package/qt6: bump version to 6.8.4
OCD <[email protected]>
| Newsgroups | net.busybox.buildroot |
|---|---|
| Message-ID | <CAG5N19cT23RZiW=Eaz8NqiahaSJ3TrVQcpj=KgEm1h0a_2HO6A@mail.gmail.com> |
> > Hi Titouan, > > Thank you for pointing this out. > > The main reason for this bump was to pick up several Qt Multimedia fixes > included in 6.8.4: > > - a1f3429c releases the memory-backed QVideoFrame after QRhi::endFrame(), > instead of retaining it for the texture lifetime: > > https://github.com/qt/qtmultimedia/commit/a1f3429c4eddd7716b461031ffd7726fa75edc58 > > - 3356d630 fixes GStreamer memory leaks caused by incorrect object > ownership: > > https://github.com/qt/qtmultimedia/commit/3356d630d78d5305ea22be5a11478a544e70985c > > - a24d805c backports the end-of-stream policy needed for QTBUG-129764: > > https://github.com/qt/qtmultimedia/commit/a24d805c174086debd7bc04a9048b95793cb612f > > All three commits are included in the qtmultimedia v6.8.4-lts-lgpl tag. I > should have included this motivation in the commit message. > > I selected 6.8.4 because it is the latest Qt 6.8 source release available > from the public Qt archive. There is no public Qt 6.8.5 source archive on > download.qt.io at this time. > > We have not applied CVE-2025-5683-qtimageformats-6.8.patch. It applies to > qicnshandler.cpp in the separate qtimageformats repository. Buildroot > 2025.02.x does not provide a Qt 6 qtimageformats package, and the affected > code is not present in the qt6base or qt6multimedia sources used here. > > Therefore, this CVE does not affect the Qt 6 packages updated by this > patch. The qt6base entry in the security tracker appears to come from the > Qt CPE mapping. > > Kind regards, > Conghao > _______________________________________________ buildroot mailing list [email protected] https://lists.buildroot.org/mailman/listinfo/buildroot