Packages changed: Mesa (25.1.6 -> 25.1.7) Mesa-drivers (25.1.6 -> 25.1.7) MicroOS-release (20250801 -> 20250803) dracut-pcr-signature (0.6+2 -> 0.6+3) grub2 libzypp (17.37.14 -> 17.37.15) llvm20 lua54 sssd (2.10.2 -> 2.11.1) wget === Details === ==== Mesa ==== Version update (25.1.6 -> 25.1.7) Subpackages: Mesa-libEGL1 Mesa-libGL1 libgbm1 - Update to release 25.1.7 - -> https://docs.mesa3d.org/relnotes/25.1.7 - Bump required versions of the wayland packages. ==== Mesa-drivers ==== Version update (25.1.6 -> 25.1.7) Subpackages: Mesa-dri Mesa-gallium Mesa-vulkan-device-select libvulkan_lvp - Update to release 25.1.7 - -> https://docs.mesa3d.org/relnotes/25.1.7 - Bump required versions of the wayland packages. ==== MicroOS-release ==== Version update (20250801 -> 20250803) Subpackages: MicroOS-release-appliance MicroOS-release-dvd - automatically generated by openSUSE-release-tools/pkglistgen ==== dracut-pcr-signature ==== Version update (0.6+2 -> 0.6+3) - Update to version 0.6+3: * Use installkernel() only to install kernel modules ==== grub2 ==== Subpackages: grub2-common grub2-i386-efi grub2-i386-efi-bls grub2-i386-pc grub2-snapper-plugin grub2-x86_64-efi grub2-x86_64-efi-bls - Fix CVE-2024-56738: side-channel attack due to not constant-time algorithm in grub_crypto_memcmp (bsc#1234959) * grub2-constant-time-grub_crypto_memcmp.patch ==== libzypp ==== Version update (17.37.14 -> 17.37.15) - Append RepoInfo::path() to the mirror URLs in Preloader (bsc#1247054) - version 17.37.15 (35) ==== llvm20 ==== - Enable lldb on riscv64 ==== lua54 ==== - Switch from update-alternatives to libalternatives (and dependency on lua-interpreter) - improve .gitignore and overall improve the packaging. - this package also provides devel symlink directly and conflicts other -devel packages ==== sssd ==== Version update (2.10.2 -> 2.11.1) Subpackages: libsss_certmap0 libsss_idmap0 sssd-krb5-common sssd-ldap - Update to release 2.11.1 * Fixed AD users in external groups not being cleared once the cache expires. * Fixed `cache_credentials=true` not having any effect. * Fixed socket activation not having an effect for sssd_pam. - Add logrotate.patch [boo#1246537] - Install file in krb5.conf.d to include sssd krb5 config snippets; (bsc#1244325); - Update to release 2.11 * The deprecated tool `sss_ssh_knownhostsproxy` was finally removed. * Support for `id_provider = files` was removed. * SSSD doesn't create any more missing path components of DIR:/FILE: ccache types while acquiring user's TGT. * New generic id and auth provider for Identity Providers (IdPs) for Keycloak/EntraID. [Not enabled in openSUSE for now.] - Run mkdir/rm with verbose mode for the build log ==== wget ==== - adjust gpgme (and other) build dependencies for future-proofing - drop unused build dependency