xmlsec1: update to 1.3.11 #4

Merged
sbelikov merged 2 commits from update-xmlsec1-1.3.11 into niceos-5.2 2026-05-02 15:02:58 +03:00
Owner

Update xmlsec1 from 1.3.9 to 1.3.11.

Upstream signals:

  • Added support for OpenSSL 4.0.0.
  • Windows build tooling moved to PowerShell; legacy JScript path is deprecated for future removal.
  • Documentation pipeline changed from Gtk-Doc to Doxygen/Pandoc, with docs moved to the GitHub Wiki.
  • Release notes mention additional small fixes, but do not enumerate them all.

Risk assessment:

  • No explicit ABI/SONAME/CLI break is documented in upstream release notes.
  • The package is a security-sensitive crypto/XML library, so even a patch-level update needs verification.
  • The compare page shows non-trivial churn, so this is not a trivial no-op upgrade.
  • For NiceOS stability policy, this should go through manual review and a clean build/test run before merge.

Checks to perform before approval:

  • Refresh source locks/checksums for the 1.3.11 tarball.
  • Build in a clean mock/chroot.
  • Verify BuildRequires and docs handling, especially around Gtk-Doc vs Doxygen/Pandoc assumptions.
  • Run package tests and basic xmlsec1 signing/verifying smoke tests.
  • Compare installed file lists and confirm no SONAME/subpackage changes.

References:

  • Upstream releases and tag 1.3.11
  • Compare 1.3.10...1.3.11
  • NiceOS spec/SOURCES branch for xmlsec1
Update xmlsec1 from 1.3.9 to 1.3.11. Upstream signals: - Added support for OpenSSL 4.0.0. - Windows build tooling moved to PowerShell; legacy JScript path is deprecated for future removal. - Documentation pipeline changed from Gtk-Doc to Doxygen/Pandoc, with docs moved to the GitHub Wiki. - Release notes mention additional small fixes, but do not enumerate them all. Risk assessment: - No explicit ABI/SONAME/CLI break is documented in upstream release notes. - The package is a security-sensitive crypto/XML library, so even a patch-level update needs verification. - The compare page shows non-trivial churn, so this is not a trivial no-op upgrade. - For NiceOS stability policy, this should go through manual review and a clean build/test run before merge. Checks to perform before approval: - Refresh source locks/checksums for the 1.3.11 tarball. - Build in a clean mock/chroot. - Verify BuildRequires and docs handling, especially around Gtk-Doc vs Doxygen/Pandoc assumptions. - Run package tests and basic xmlsec1 signing/verifying smoke tests. - Compare installed file lists and confirm no SONAME/subpackage changes. References: - Upstream releases and tag 1.3.11 - Compare 1.3.10...1.3.11 - NiceOS spec/SOURCES branch for xmlsec1
sbelikov merged commit 68ae646b49 into niceos-5.2 2026-05-02 15:02:58 +03:00
Sign in to join this conversation.
No description provided.