Upstream update available: haveged 1.9.22 → 1.9.25 #10

Open
opened 2026-06-24 02:34:46 +03:00 by sbelikov · 0 comments
Owner

Upstream update available: haveged 1.9.221.9.25

Package

  • Package: haveged
  • RPM name: haveged
  • Branch: niceos-5.2
  • Current EVR: 1.9.22-1
  • Update class: patch
  • Compare method: python_rpm
  • Update policy: leaf
  • Risk tags: github-upstream

Upstream

Signals

  • Security-relevant keywords detected: False
  • Policy blocked: False
  • Policy reason: -
  • Labels: ai-summary, bot, needs-build, needs-triage, priority/medium, update/patch, upstream-update, upstream/github

NiceSOFT AI preliminary stability analysis

1. Краткий вывод

Пакет haveged получил патч, исправляющий проблему с initramfs, но не содержит критических изменений. Установка допустима, так как риск низкий.

2. Риск для НАЙС.ОС

Low
Патч исправляет конкретную проблему с initramfs, но не влияет на основные функции системы. Нет изменений в ABI или API, поэтому риск для сборки и использования минималь.

3. Security/CVE

Нет признаков security/CVE. Данные не подтверждают наличие уязвимостей или обнаруженных CVE.

4. ABI/API риск

Данные недостаточно. Нет указаний на ABI/API breakage или изменение интерфейса. Рекомендуется ручной анализ для подтверждения.

5. Риск для RPM-сборки

Патч может вызвать конфликты с BuildRequires или %check, если зависимость от старого версии dracut. Нет указаний на ABI-изменения, поэтому риск низкий.

6. Проверки мейнтеймера

  • Проверить источник: GitHub release/tag (v1.9.25)
  • Убедиться, что патч не содержит ABI/API изменений
  • Проверить наличие security advisories/CVE
  • Проверить совместимость с текущими версиями dracut и других компонентов

7. Рекомендация

update candidate
Патч исправляет конкретную проблему, не влияет на основные функции, без критических изменений. Рекомендуется автоматическое обновление.

8. Основание рекомендации

Патч является minor fix, не содержит критических изменений, риск низкий. Установка допустима без ручного reviews.

  1. GitHub release API: jirka-h/haveged v1.9.25
  2. GitHub tag page: jirka-h/haveged v1.9.25
  3. GitHub releases page: jirka-h/haveged
  4. GitHub compare page: jirka-h/haveged v1.9.22...v1.9.25
  5. The Best Laptops for 2026 - PCMag UK
  6. https://packages.vmware.com/photon/3.0/RC/OSL/open...
  7. Best Laptops 2026: Our benchmarked picks for productivity, …
  8. https://downloads.openwrt.org/releases/21.02.5/pac...

Upstream release notes / description

Fix initramfs switch-root failure (BZ#2491739)

The v1.9.24 haveged.service with --no-command and PrivateNetwork=true was installed into the initramfs by the dracut module, breaking the switch-root handoff. On systems where haveged was started but not enabled, this caused an entropy gap that could trigger emergency mode.

Changes

  • Add haveged-initramfs.service for use inside the initramfs (without --no-command, without PrivateNetwork=true)
  • Update dracut module to install the initramfs-specific service file

NiceOS maintainer checklist

  • Confirm that the detected version is a stable upstream release.
  • Check upstream changelog for security fixes, ABI/API changes and build-system changes.
  • Check ABI/API compatibility and reverse dependencies.
  • Download source into NiceOS lookaside storage.
  • Update Version and related fields in SPECS/*.spec only if policy allows it.
  • Regenerate SOURCES/sources.lock.json, manifests, metadata and SBOM.
  • Build SRPM/RPM in a clean NiceOS buildroot.
  • Run package smoke tests.
  • Link PR/build logs and close this issue after update or triage.

Bot metadata

  • Tool: niceos_upstream_monitor.py 2.1.3-local-websearch-github-release-pages
  • Generated at: 2026-06-23T23:34:44Z
<!-- niceos-upstream-monitor:fingerprint=upstream-update:haveged:1.9.25 --> <!-- niceos-upstream-monitor:package=haveged --> <!-- niceos-upstream-monitor:current=1.9.22 --> <!-- niceos-upstream-monitor:latest=1.9.25 --> # Upstream update available: `haveged` `1.9.22` → `1.9.25` ## Package - Package: `haveged` - RPM name: `haveged` - Branch: `niceos-5.2` - Current EVR: `1.9.22-1` - Update class: `patch` - Compare method: `python_rpm` - Update policy: `leaf` - Risk tags: `github-upstream` ## Upstream - Upstream type: `github` - Upstream project: `jirka-h/haveged` - Upstream URL: <a href="https://github.com/jirka-h/haveged" target="_blank" rel="noopener noreferrer">github.com — haveged</a> - Detected version: `1.9.25` - Tag/release: `v1.9.25` - Source: `github_release_latest` - Published: `2026-06-23T22:42:14Z` - Release URL: <a href="https://github.com/jirka-h/haveged/releases/tag/v1.9.25" target="_blank" rel="noopener noreferrer">github.com — v1.9.25</a> - Source URL: <a href="https://api.github.com/repos/jirka-h/haveged/tarball/v1.9.25" target="_blank" rel="noopener noreferrer">api.github.com — v1.9.25</a> - Pre-release: `False` ## Signals - Security-relevant keywords detected: `False` - Policy blocked: `False` - Policy reason: `-` - Labels: `ai-summary, bot, needs-build, needs-triage, priority/medium, update/patch, upstream-update, upstream/github` ## NiceSOFT AI preliminary stability analysis ### 1. Краткий вывод Пакет haveged получил патч, исправляющий проблему с initramfs, но не содержит критических изменений. Установка допустима, так как риск низкий. ### 2. Риск для НАЙС.ОС **Low** Патч исправляет конкретную проблему с initramfs, но не влияет на основные функции системы. Нет изменений в ABI или API, поэтому риск для сборки и использования минималь. ### 3. Security/CVE Нет признаков security/CVE. Данные не подтверждают наличие уязвимостей или обнаруженных CVE. ### 4. ABI/API риск Данные недостаточно. Нет указаний на ABI/API breakage или изменение интерфейса. Рекомендуется ручной анализ для подтверждения. ### 5. Риск для RPM-сборки Патч может вызвать конфликты с BuildRequires или %check, если зависимость от старого версии dracut. Нет указаний на ABI-изменения, поэтому риск низкий. ### 6. Проверки мейнтеймера - Проверить источник: GitHub release/tag (v1.9.25) - Убедиться, что патч не содержит ABI/API изменений - Проверить наличие security advisories/CVE - Проверить совместимость с текущими версиями dracut и других компонентов ### 7. Рекомендация **update candidate** Патч исправляет конкретную проблему, не влияет на основные функции, без критических изменений. Рекомендуется автоматическое обновление. ### 8. Основание рекомендации Патч является minor fix, не содержит критических изменений, риск низкий. Установка допустима без ручного reviews. ### Источники, найденные web_search 1. <a href="https://github.com/jirka-h/haveged/releases/tag/v1.9.25" target="_blank" rel="noopener noreferrer">GitHub release API: jirka-h/haveged v1.9.25</a> 2. <a href="https://github.com/jirka-h/haveged/tree/v1.9.25" target="_blank" rel="noopener noreferrer">GitHub tag page: jirka-h/haveged v1.9.25</a> 3. <a href="https://github.com/jirka-h/haveged/releases" target="_blank" rel="noopener noreferrer">GitHub releases page: jirka-h/haveged</a> 4. <a href="https://github.com/jirka-h/haveged/compare/v1.9.22...v1.9.25" target="_blank" rel="noopener noreferrer">GitHub compare page: jirka-h/haveged v1.9.22...v1.9.25</a> 5. <a href="https://uk.pcmag.com/laptops/158/the-best-laptops" target="_blank" rel="noopener noreferrer">The Best Laptops for 2026 - PCMag UK</a> 6. <a href="https://packages.vmware.com/photon/3.0/RC/OSL/open_source_license_PhotonOS_3.0_RC.TXT" target="_blank" rel="noopener noreferrer">https://packages.vmware.com/photon/3.0/RC/OSL/open...</a> 7. <a href="https://www.tomshardware.com/laptops/best-laptops" target="_blank" rel="noopener noreferrer">Best Laptops 2026: Our benchmarked picks for productivity, …</a> 8. <a href="https://downloads.openwrt.org/releases/21.02.5/packages/mipsel_24kc_24kf/packages/Packages.manifest" target="_blank" rel="noopener noreferrer">https://downloads.openwrt.org/releases/21.02.5/pac...</a> ## Upstream release notes / description ## Fix initramfs switch-root failure (BZ#2491739) The v1.9.24 `haveged.service` with `--no-command` and `PrivateNetwork=true` was installed into the initramfs by the dracut module, breaking the switch-root handoff. On systems where haveged was started but not enabled, this caused an entropy gap that could trigger emergency mode. ### Changes - Add `haveged-initramfs.service` for use inside the initramfs (without `--no-command`, without `PrivateNetwork=true`) - Update dracut module to install the initramfs-specific service file ## NiceOS maintainer checklist - [ ] Confirm that the detected version is a stable upstream release. - [ ] Check upstream changelog for security fixes, ABI/API changes and build-system changes. - [ ] Check ABI/API compatibility and reverse dependencies. - [ ] Download source into NiceOS lookaside storage. - [ ] Update `Version` and related fields in `SPECS/*.spec` only if policy allows it. - [ ] Regenerate `SOURCES/sources.lock.json`, manifests, metadata and SBOM. - [ ] Build SRPM/RPM in a clean NiceOS buildroot. - [ ] Run package smoke tests. - [ ] Link PR/build logs and close this issue after update or triage. ## Bot metadata - Tool: `niceos_upstream_monitor.py 2.1.3-local-websearch-github-release-pages` - Generated at: `2026-06-23T23:34:44Z`
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
rpms/haveged#10
No description provided.