Packages changed: conmon (2.0.11 -> 2.0.12) cri-o (1.17.0 -> 1.17.1) fuse-overlayfs (0.7.7 -> 0.7.8) gcc10 (10.0.1+git174776 -> 10.0.1+git175037) glibc libidn2 makedumpfile pam patterns-containers rpm salt sssd sudo (1.8.31 -> 1.8.31p1) xfsprogs (5.4.0 -> 5.5.0) yomi-formula (0.0.1+git.1582036279.1c70638 -> 0.0.1+git.1583771480.5787782) === Details === ==== conmon ==== Version update (2.0.11 -> 2.0.12) - Update to v2.0.12 - oom: fix potential race between verification steps ==== cri-o ==== Version update (1.17.0 -> 1.17.1) Subpackages: cri-o-kubeadm-criconfig - Update to v1.17.1: * Drop conmonmon * Update docs and completions for crio wipe --force * wipe: Add a force flag for skipping version check * Restore sandbox selinux labels directly from config.json * klog: don't write to /tmp * Pass down the integer value of the stop signal * exec: Close pipe fds to prevent hangs * Unwrap errors from label.Relabel() before checking for ENOTSUP * oci: Handle timeouts correctly for probes ==== fuse-overlayfs ==== Version update (0.7.7 -> 0.7.8) - Update to v0.7.8 - report correctly the number of links for a directory also for subsequent stat calls - stop looking up the ino in the lower layers if the file could not be opened ==== gcc10 ==== Version update (10.0.1+git174776 -> 10.0.1+git175037) Subpackages: libgcc_s1 libgomp1 libstdc++6 - Update to master head (778a77357cad11e8dd4c810544330af0fbe843b1). * Includes fix for binutils version parsing [gcc#93965] ==== glibc ==== Subpackages: glibc-locale glibc-locale-base - riscv-syscall-clobber.patch: riscv: Avoid clobbering register parameters in syscall - ldbl-96-rem-pio2l.patch: Avoid ldbl-96 stack corruption from range reduction of pseudo-zero (CVE-2020-10029, bsc#1165784, BZ #25487) ==== libidn2 ==== - No longer recommend -lang: supplements are in use. ==== makedumpfile ==== - makedumpfile-arm64-VA-range-SUSE.patch: Fix error processing core files on arm64 (bsc#1142715). ==== pam ==== - Removed pam_userdb from this package and moved to pam-modules. This removed the requirement for libdb. Also made "xz" required for all releases. Remove limits for nproc from /etc/security/limits.conf [bsc#1164562, bsc#1166510, bsc#1110700, pam.spec] ==== patterns-containers ==== Subpackages: patterns-containers-container_runtime patterns-containers-container_runtime_kubernetes patterns-containers-kubeadm patterns-containers-kubernetes_utilities patterns-containers-kubic_admin patterns-containers-kubic_loadbalancer patterns-containers-kubic_worker - Add kube-prometheus-k8s-yaml to kubeadm pattern ==== rpm ==== Subpackages: librpmbuild9 - Use libgcrypt as crypto library instead of beecrypt * dropped patch: beecrypt-4.1.2-build.diff * dropped patch: beecrypt-4.1.2.diff - Rewrite rpmqpack to use rpm's database interface modified patch: rpmqpack.diff - Backport database detection code from upstream new patch: db_ops_name.diff - Backport read-only BerkeleyDB code new patch: bdb_ro.diff - Enable ndb backend - Backport bdb disabling fix new patch: disable_bdb.diff - Backport ndb improvements new patch: ndb_backport.diff - Backport automatic db conversion new patch: db_conversion.diff - Disable the BerkeleyDB backend and switch over to 'ndb' ==== salt ==== Subpackages: python3-salt salt-master salt-minion salt-standalone-formulas-configuration - virt._get_domain: don't raise an exception if there is no VM - Added: * virt._get_domain-don-t-raise-an-exception-if-there-i.patch - Adds test for zypper abbreviation fix - Improved storage pool or network handling - Better import cache handline - Added: * loader-invalidate-the-import-cachefor-extra-modules.patch * open-suse-2019.2.3-virt-defined-states-219.patch - Modified: * use-full-option-name-instead-of-undocumented-abbrevi.patch ==== sssd ==== Subpackages: libsss_certmap0 libsss_idmap0 libsss_nss_idmap0 sssd-krb5-common sssd-ldap - Fix dynamic DNS updates not using FQDN (bsc#1160587); Add 0001-AD-use-getaddrinfo-with-AI_CANONNAME-to-find-the-FQD.patch ==== sudo ==== Version update (1.8.31 -> 1.8.31p1) - Update to 1.8.31p1 * Sudo once again ignores a failure to restore the RLIMIT_CORE resource limit, as it did prior to version 1.8.29. Linux containers don't allow RLIMIT_CORE to be set back to RLIM_INFINITY if we set the limit to zero, even for root, which resulted in a warning from sudo. ==== xfsprogs ==== Version update (5.4.0 -> 5.5.0) - update to v5.5.0: * xfsprogs: actually check that writes succeeded * mkfs.xfs: check root inode location * mkfs.xfs: efficient block zeroing * xfs_repair: fix broken unit conv. in dir invalidation * xfs_repair: fix bad next_unlinked field * xfs_repair: don't corrupt attr fork clearing forw/back * xfs_repair: check root dir pointer before trashing it * xfs_repair: try to fix sb_unit value from secondaries * libxfs changes merged from kernel 5.5 ==== yomi-formula ==== Version update (0.0.1+git.1582036279.1c70638 -> 0.0.1+git.1583771480.5787782) - Update to version 0.0.1+git.1583771480.5787782: * Comment about the network configuration