[ANNOUNCEMENT] Yocto Project 6.0.2 (wrynose-6.0.2) is Released
"Lee, Chee Yang" <[email protected]> Thu, 16 Jul 2026 02:18:33 +0000
| Newsgroups | org.yoctoproject.lists.yocto |
|---|---|
| Message-ID | <BL4PR11MB8797F00D3E45FC1D61601A57B9C72@BL4PR11MB8797.namprd11.prod.outlook.com> |
Hi =0A= =0A= We are pleased to announce the Yocto Project 6.0.2 Release is now available= for download.=0A= =0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/=0A= https://mirrors.kernel.org/yocto/yocto/yocto-6.0.2/=0A= =0A= A gpg signed version of these release notes is available at:=0A= =0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/RELEASENOTES= =0A= =0A= Full Test Report:=0A= =0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/testreport.tx= t=0A= =0A= Thank you for everyone's contributions to this release.=0A= =0A= Chee Yang=0A= [email protected]=0A= Yocto Project Build and Release=0A= =0A= =0A= --------------------------=0A= yocto-6.0.2 Release Notes=0A= --------------------------=0A= =0A= This release removed the linux-yocto 6.18 CVE exclusion list (meta/recipes-= kernel/linux/cve-exclusion_6.18.inc) as sbom-cve-check now natively handles= CVE status. =0A= =0A= =0A= --------------------------=0A= Repositories/Downloads=0A= --------------------------=0A= =0A= Repository Name: yocto-docs=0A= Repository Location: https://git.yoctoproject.org/yocto-docs=0A= Branch: wrynose=0A= Tag: yocto-6.0.2=0A= Git Revision: 2c59a23fc39d92831cb55a0e5f713d20f94730d4=0A= Release Artefact: yocto-docs-2c59a23fc39d92831cb55a0e5f713d20f94730d4=0A= sha: ed297179a81884c892ca4fac44be163e9603c77d2ca84462b7b29a772c427236=0A= Download Locations:=0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/yocto-docs-2c= 59a23fc39d92831cb55a0e5f713d20f94730d4.tar.bz2=0A= https://mirrors.edge.kernel.org/yocto/yocto/yocto-6.0.2/yocto-docs-2c59a23f= c39d92831cb55a0e5f713d20f94730d4.tar.bz2=0A= =0A= Repository Name: openembedded-core=0A= Repository Location: https://git.openembedded.org/openembedded-core=0A= Branch: wrynose=0A= Tag: yocto-6.0.2=0A= Git Revision: 5d1aa5c806c061a2994f4decb59016610f093213=0A= Release Artefact: oecore-5d1aa5c806c061a2994f4decb59016610f093213=0A= sha: d7c5b514ebba36558921bf30b2f404521a46bbe38805011afb1f43ec60925c31=0A= Download Locations:=0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/oecore-5d1aa5= c806c061a2994f4decb59016610f093213.tar.bz2=0A= https://mirrors.edge.kernel.org/yocto/yocto/yocto-6.0.2/oecore-5d1aa5c806c0= 61a2994f4decb59016610f093213.tar.bz2=0A= =0A= Repository Name: meta-yocto=0A= Repository Location: https://git.yoctoproject.org/meta-yocto=0A= Branch: wrynose=0A= Tag: yocto-6.0.2=0A= Git Revision: 24c24cef5d1523fefe43a3e3d34667b37ae551f3=0A= Release Artefact: meta-yocto-24c24cef5d1523fefe43a3e3d34667b37ae551f3=0A= sha: d81d38f935efaf7f744f9f3b0b47e0c551dc4aad09343792813acadc60a11ef2=0A= Download Locations:=0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/meta-yocto-24= c24cef5d1523fefe43a3e3d34667b37ae551f3.tar.bz2=0A= https://mirrors.edge.kernel.org/yocto/yocto/yocto-6.0.2/meta-yocto-24c24cef= 5d1523fefe43a3e3d34667b37ae551f3.tar.bz2=0A= =0A= Repository Name: bitbake=0A= Repository Location: https://git.openembedded.org/bitbake=0A= Branch: 2.18=0A= Tag: yocto-6.0.2=0A= Git Revision: acfe02fa38b5da9e6a36c6cedcf91d4fcbefbfbd=0A= Release Artefact: bitbake-acfe02fa38b5da9e6a36c6cedcf91d4fcbefbfbd=0A= sha: 13c93db11c6648ceed179408244a07111b6d6fb911749d46d160103fdd375ec9=0A= Download Locations:=0A= https://downloads.yoctoproject.org/releases/yocto/yocto-6.0.2/bitbake-acfe0= 2fa38b5da9e6a36c6cedcf91d4fcbefbfbd.tar.bz2=0A= https://mirrors.edge.kernel.org/yocto/yocto/yocto-6.0.2/bitbake-acfe02fa38b= 5da9e6a36c6cedcf91d4fcbefbfbd.tar.bz2=0A= =0A= =0A= ---------------=0A= Contributors=0A= ---------------=0A= =0A= Thanks to the following people who contributed to this release:=0A= =0A= Abhishek Bachiphale=0A= Adarsh Jagadish Kamini=0A= Alexander Kanavin=0A= Anders Heimer=0A= Anil Dongare=0A= Ankur Tyagi=0A= Anthony Squires=0A= Antonin Godard=0A= Bin Cao=0A= David Reyna=0A= Deepak Rathore=0A= Harish Sadineni=0A= He Zhe=0A= Hemanth Kumar M D=0A= Jate Sujjavanich=0A= Jesse Van Gavere=0A= Jinfeng Wang=0A= Joshua Watt=0A= Jo=C3=A3o Marcos Costa=0A= J=C3=B6rg Sommer=0A= Lee Chee Yang=0A= Marcio Henriques=0A= Mark Hatle=0A= Mark Jonas=0A= Marta Rybczynska=0A= Niko Mauno=0A= Omkar Patil=0A= Paul Barker=0A= Peter Marko=0A= Prabhudasu Vatala=0A= Quentin Schulz=0A= Richard Purdie=0A= Robert P. J. Day=0A= Ross Burton=0A= Sai Sneha=0A= Thomas Perrot=0A= Tushar Darote=0A= Vyacheslav Yurkov=0A= Wang Mingyu=0A= Yoann Congal=0A= hongxu=0A= =0A= ---------------=0A= Known Issues=0A= ---------------=0A= N/A=0A= =0A= =0A= ---------------=0A= Security Fixes=0A= ---------------=0A= =0A= bind: Fix CVE-2026-3039 CVE-2026-3592 CVE-2026-3593 CVE-2026-5946 CVE-2026-= 5947 CVE-2026-5950=0A= cups: Fix CVE-2026-34978 CVE-2026-34979 CVE-2026-34980 CVE-2026-34990 CVE-2= 026-39314 CVE-2026-39316=0A= curl: Fix CVE-2026-6276=0A= go: Fix CVE-2026-27145 CVE-2026-33811 CVE-2026-33814 CVE-2026-39817 CVE-202= 6-39819 CVE-2026-39820 CVE-2026-39823 CVE-2026-39825 CVE-2026-39826 CVE-202= 6-39836 CVE-2026-42499 CVE-2026-42501 CVE-2026-42504 CVE-2026-42507=0A= libinput: Fix CVE-2026-50292=0A= libsolv: Fix CVE-2026-9150=0A= libusb1: Fix CVE-2026-23679 CVE-2026-47104=0A= openssl: Fix CVE-2026-7383 CVE-2026-9076 CVE-2026-34180 CVE-2026-34181 CVE-= 2026-34182 CVE-2026-34183 CVE-2026-42764 CVE-2026-42766 CVE-2026-42767 CVE-= 2026-42768 CVE-2026-42769 CVE-2026-42770 CVE-2026-45445 CVE-2026-45446 CVE-= 2026-45447=0A= python3: Fix CVE-2026-1502 CVE-2026-3087 CVE-2026-3298 CVE-2026-4786 CVE-20= 26-5713 CVE-2026-6019 CVE-2026-6100 =0A= qemu: Fix CVE-2024-6519=0A= xserver-xorg: Fix CVE-2026-33999 CVE-2026-34000 CVE-2026-34001 CVE-2026-340= 02 CVE-2026-34003=0A= xwayland: Fix CVE-2026-33999 CVE-2026-34000 CVE-2026-34001 CVE-2026-34002 C= VE-2026-34003=0A= =0A= =0A= ---------------=0A= Fixes=0A= ---------------=0A= =0A= bitbake=0A= -----------=0A= bitbake: fix issue with varflag exclusion=0A= fetch2/crate: guard against empty version list=0A= fetch2/crate: skip yanked versions when reading cargo index=0A= fetch2/git: quote shallow extra ref arguments=0A= fetch2/wget: limit auth on checkstatus redirects=0A= fetch2: Unpack RPMs with --no-absolute-filenames=0A= fetch2: allow empty value for params while formatting URI string.=0A= fetch2: reraise IOError during download=0A= fetch2: validate deb/ipk data member names=0A= fetch2: validate striplevel parameter=0A= hashserv/tests: use valid 64-character unihashes=0A= hashserv: validate unihash values=0A= layerindexlib: restapi.py: fix unbound variable=0A= tests/fetch: cover checkstatus redirect auth handling=0A= toaster: use https for clones, remove cgit in links in defaults=0A= =0A= oecore=0A= -----------=0A= bind: upgrade to 9.20.23=0A= binutils: Upgrade to 2.46.1=0A= build-appliance-image: Update to wrynose head revisions=0A= ca-certificates: upgrade to 20260601=0A= classes/gtk-icon-cache: fix libdir passed to the postrm intercept=0A= conf/machine: fix typos in ARM and x86 README files=0A= curl: fix mbedtls detection=0A= dropbear: Clarify LICENSE and drop PD=0A= gcc: Upgrade GCC to 15.3 release=0A= gettext-minimal-native: Use SPDX License Identifier=0A= glib-2.0-native: Remove problematic path reference=0A= glib-2.0: Change from Public Domain to Gnome GCR Documentation License=0A= go: upgrade to 1.26.4=0A= gstreamer1.0-plugins-bad: handle padded buffers in wl_shm buffer creation= =0A= libpcap: fix error message on 32-bit integer overflow=0A= libsdl2: Fix compilation error with DirectFB=0A= licenses: Update with the pull-sdpx-licenses.py script to 3.28.0=0A= linux-yocto: remove CVE exclusion list, sbom-cve-check does this itself=0A= lttng-modules: Fix trace_hrtimer_start build failure=0A= matchbox-panel-2: backport patch to set a constant size for the clock=0A= mobile-broadband-provider-info: Fix license to be CC-PDDC=0A= net-tools: Handle binmerge=0A= oeqa/core/runner: stub addDuration in OETestResult=0A= openssl: upgrade to 3.5.7=0A= perf: disable BUILD_BPF_SKEL by default=0A= perf: make libraries for install_headers configurable=0A= pixman: Change PD license to HPND-sell-variant=0A= ppp: Remove PD license=0A= pseudo: Update to version 1.9.8=0A= python3-pycryptodome: Update LICENSE PD -> Unlicense=0A= python3-pyelftools: Update license to Unlicense=0A= python3: Fix ThreadingMock call_count race condition=0A= python3: sanitize userbase in _sysconfig_vars JSON to avoid host path leak= =0A= python3: upgrade to 3.14.5=0A= python3targetconfig: pull in nativesdk python when building nativesdk recip= es=0A= rust: export CARGO_BUILD_TARGET=0A= sbom-cve-check-common: Fatalize command failure=0A= sbom-cve-check: Fix breakage with empty IMAGE_LINK_NAME=0A= scripts/install-buildtools: Update to 6.0.1=0A= sqlite3: Use SPDX identifier=0A= squashfs-tools: add another CPE=0A= sstate: Detect broken sstate paths containing tmpdir=0A= udev-extraconf: use -H for unmount tmpfile find=0A= util-macros: Remove redundant MIT license=0A= wireless-regdb: upgrade to 2026.05.30=0A= xserver-xorg/xwayland: 'Clarify' xserver license=0A= xserver-xorg/xwayland: Drop X11-swapped from LICENSE=0A= xserver-xorg: upgrade to 21.1.22=0A= xwayland: upgrade 24.1.9 -> 24.1.11=0A= =0A= meta-yocto=0A= -----------=0A= poky.conf: Bump version for 6.0.2 release=0A= =0A= yocto-docs=0A= -----------=0A= Document shared state signing=0A= bsp-guide: mention bootloader and device tree in BSP intro=0A= bsp-guide: simplify example of structure of BSP layer=0A= bsp-guide: update guide to reflect newer beaglebone=0A= build-manual: update ROOTFS_POSTPROCESS_COMMAND example=0A= contributor-guide: couple minor typo/grammar fixes=0A= dev-manual: SysVinit is the default init manager for Poky=0A= dev-manual: change "setup" to "set up" when used as an action=0A= dev-manual: drop "PREFERRED_VERSION" from x86-base.inc snippet=0A= dev-manual: fix broken grammar in "Libraries" section=0A= dev-manual: fix grammatical error, missing word "with"=0A= dev-manual: fully define SOLIBS-related variables in bitbake.conf=0A= dev-manual: remove semicolons for rootfs commands=0A= dev-manual: update AUTOREV explanation to match current file=0A= kernel-dev: remove references to defunct LTSI project=0A= migration-guide: Fix migration scripts=0A= migration-guide: add release notes for 5.0.18=0A= overview-manual/concepts: convert several .png to SVG=0A= overview-manual/svg: remove white backgrounds=0A= overview-manual: add ":term:" for OE Build System=0A= overview-manual: correct that "conf" is a subdir of build dir=0A= overview-manual: explain "ODM" and "OSV" acronyms=0A= overview-manual: fix typo, "semi-colon" -> "colon"=0A= overview-manual: hyphens not allowed in file version=0A= overview-manual: inform the reader early of "bitbake-getvar"=0A= overview-manual: mention that patch files can be compressed=0A= overview-manual: provide a more expansive definition of "layer"=0A= overview-manual: remind reader that meta-poky is a distro layer=0A= overview-manual: update deploy.bbclass snippet=0A= overview-manual: use correct spelling "counterpart"=0A= recipe-style-guide.rst: two minor grammatical tweaks=0A= ref-manual/variables.rst: link *MIRRORS definitions to the BitBake manual= =0A= ref-manual: add more explanation to glossary variable LICENSE=0A= ref-manual: clarify that PACKAGE_EXCLUDE supports DEB packaging=0A= ref-manual: clarify use of "PACKAGE_ARCH" in a packagegroup=0A= ref-manual: document RM_WORK_EXCLUDE_ITEMS variable=0A= ref-manual: update glossary entries for packaging backend variables=0A= security-manual: some grammar and wording fixes in intro=0A= security-team.rst: update my email address and key=0A= security-team: Add section on multi-project embargoes=0A= security-team: Tidy and update section on security team operations=0A= security-team: Update membership list=0A=