There are 10 open security issues in bookworm.
There are 9 open security issues in bullseye.
commit e18b5609eb43baf299d05e1603df1df21c360f4c
Merge: f011f374 7e6361b1
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Sep 10 10:57:39 2026 +1000
Merge branch 'jasonk000-jkoch/client-secure-key'
commit 7e6361b170c18f20fd85062336c1427b770cf6cc
Merge: f011f374 50c2fd09
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Sep 10 10:54:15 2026 +1000
Merge branch 'jkoch/client-secure-key' of https://github.com/jasonk000/pcp into jasonk000-jkoch/client-secure-key
commit f011f3748bebe3cb37c369b497074247dcb7117c
Merge: 7c7b3348 e591251b
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 17:48:19 2026 +1000
Merge pull request #2710 from kmcdonell/wip
QA Farm rebuild changes
commit e591251bf2f6319f73438cf99f24d9ac5cbae0b0
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 15:55:31 2026 +1000
More @coderabbitai cleanups for PR #2710
commit a391ea37bc30dffd48b8cdec1e98225b1658ec49
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 15:03:54 2026 +1000
qa/admin/check-other: fixup sential file name
commit 7c7b334847c950e782660632a41f68287bfc75e3
Author: Jan Kurik <jkurik@redhat.com>
Date: Mon Sep 7 13:26:31 2026 +0200
pmdads389: prevent dynamic PMNS collisions
Encode the complete replication agreement CN as a valid PMNS component
instead of truncating it at the first dot. This keeps agreements with
shared CN prefixes distinct.
Register IPACA monitor metrics once per backend, outside the replication
agreement loop. Add archive-based QA coverage for the generated metric
names.
Resolves: RHEL-244742
Resolves: RHEL-182968
commit 5c825a4ea34e247224cfbd3793bb0c021a5588e0
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 14:50:35 2026 +1000
package list updates for Ubuntu 26.04 and script fixes from @coderabbitai
All in the context of PR #2710.
commit 793974e334225117037bdba59508216842d0a986
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 11:17:21 2026 +1000
qa/admin/package-lists/Ubuntu+24.04+x86_64: bpftrace-dbgsym needs to be not4ci
commit 25a6909d58ed0f274019123c99845a8e666e4780
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 11:08:25 2026 +1000
package list: updates for CentOS 8
commit da3a26faa745084cfdd07e5e32582ef1c2c7baf3
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 10:57:38 2026 +1000
package list: updates for OpenBSD 7.7
commit 8903431114ff0b48cda6a2a3cf0a6059ad733959
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 10:15:01 2026 +1000
NetBSD: build and libpcp changes
On vm09, the $(PACKAGE_DISTRIBUTION) macro is netbsdelf not netbsd, which broke the Python build
macro in builddefs.
Also, this C compiler is more picky about the argument to isspace() et al, expecting
it to really be an (int) ... so some cosmetic casting needed to make the compiler warnings
go away here [probably more changes needed outside libpcp, but not in this commit]
commit 14873ea73eadb295facc1305d96aa8970d6c88ec
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 09:42:25 2026 +1000
package list: updates for Fedora 43
commit d3e2cdcfa2977c4aba6539de0d657bef24c7132c
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 09:33:07 2026 +1000
package list and scripts: updates for CentOS 7
commit 3022fb3d646332485364d1764f364a8ce2b1902c
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 07:42:31 2026 +1000
package list and scripts: updates for CentOS Stream10
commit 53b02b8c00deddf32be280a671221e99d2cbd55a
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 07:23:43 2026 +1000
package list and scripts: updates for Debian 13
commit b8ef9eae852c3b362063e7e46c28e69a75fe90f4
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 07:11:28 2026 +1000
package list and scripts: updates for openSUSE 15.6
commit 08402bfab1c3db5e6601f6f018160fac446ff85b
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 06:42:39 2026 +1000
package list and scripts: updates for LinuxMint 22.3
commit 7917a26badb682302dc417c9102decbe66ef8ffd
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 06:19:31 2026 +1000
package list and scripts: updates for Ubuntu 20.04
commit 0822fe01a072cdd9fffd8af1892a8f516c97a656
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 9 06:12:12 2026 +1000
package list and scripts: updates for Fedora 46
commit 4df33c498a205e8beff39ccf655c898a4fb5a61d
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 16:41:01 2026 +1000
package list: updates for Linux MX
commit 521b02adfd57d1b8d3d39c9289a498c7e5ae528a
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 16:17:31 2026 +1000
package list: updates for i686 Debian 12
commit e37451fde201ae31964a4ae987548147404d2b5b
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 15:10:41 2026 +1000
package list and scripts: updates for openSUSE Tumbleweed i686
Plus (new) qa/src/whack-suse-libnuma.c to work around
pervasive kernel+libnuma problem on this platform ... lots
of commands emit
get_mempolicy: Function not implemented
which has nothing to do with PCP, but causes massive QA failures.
This is built and installed on vm19 and no where else.
commit 35974621e566e288e6bcf38be9105ba4b11a795c
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 12:48:44 2026 +1000
package list and scripts: updates for RHEL 8
commit d4e82b2af6182cfdc8e67b7475df13837f8b0ede
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 09:15:49 2026 +1000
src/libpcp/src/getopt.c: refactor __pmStartOptions()
On FreeBSD the change to include -Wl,--no-undefined in LDFLAGS caused a
build failure because the external symbol environ cannot be resolved for
a DSO at build time ... the symbol is resolved when the DSO is linked
with an app and gets crt1.o included.
Recode the logic here to use getenv() rather than walking the array of
pointers from environ[] directly.
Needed to backport the same change to the libpcp3 version of getopt.c
because it had the same issue.
commit 8057bf1f96af4134f57c6fbedda34109d9922430
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 08:24:26 2026 +1000
package list and scripts: updates for FreeBSD 15
commit 122358e096f592e49aa3c6ecccbb1dea3f86dbde
Author: Ken McDonell <kenj@kenj.id.au>
Date: Tue Sep 8 06:24:45 2026 +1000
OpenBSD 7.9 changes: build and package lists
The change to include -Wl,--no-undefined in LDFLAGS triggered build failures
on OpenBSD (and the other *BSD platforms it looks like, but I've not triaged
these yet) ... specifically when building *any* DSO we need an explicit
-lc. While needed here, this is harmless everywhere else, which is
fortunate because the change needs to be made in lots of places.
Also in this commit package list and package script updates for
OpenBSD 7.9.
commit 50c2fd094e467512adf5cc4b2eb02909c96e2c44
Author: Jason Koch <jkoch@netflix.com>
Date: Mon Sep 7 10:41:12 2026 -0700
libpcp, qa: allow distinct client and server certificates
The OpenSSL migration in 3e8b61aeda left the client certificate
selection in an else-if chain. When client-specific files were
configured, the generic server certificate could still be loaded,
causing the subsequent client key to fail the certificate/key match.
Commit fe8e9f8ddc later commented out QA 712 coverage for separate
client and server certificates without documenting the reason.
This change restores that coverage and selects the client certificate
and key as a pair. Reject partial client-specific configuration.
Tested with QA 712 on macOS in Tart.
commit aada983290db68f24cbaa45f6ccf541bf296baa9
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 15:00:13 2026 +1000
package list: updates for Ubuntu 24.04
commit 7d7f11a0382fefdecdb06d58defb0345618fb800
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 10:50:33 2026 +1000
package list and scripts: updates for ArchLinux
commit c0500b4d3cdb02016b08cdf2d81fde0c402a6571
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 09:52:40 2026 +1000
package list: updates for openSUSE 16.0
commit d0c723f23b7feaba71b85fb056a907a6719b0ffa
Merge: 21d4394c 8ee24013
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 09:44:03 2026 +1000
Merge branch 'main' of https://github.com/performancecopilot/pcp
commit 21d4394c8f39ac0e09e4db3de0611f14aee015be
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 09:26:42 2026 +1000
package list and scripts: updates for AmazonLinux
commit 8ee240139d77d1c320369fbe23eb360ffa9ea95e
Merge: 17a2b81d 90d3f74f
Author: Nathan Scott <nathans@redhat.com>
Date: Mon Sep 7 09:03:42 2026 +1000
Merge branch 'pauljevans-pevans-merge'
commit 49e5d05d81faf4f5715cafa849a852e4fc2a29a9
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Sep 7 08:05:25 2026 +1000
package list and scripts: updates for openSUSE Tumbleweed
commit 8cff513a37ebcabb894d3dd19ca2f425882922ae
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sun Sep 6 08:00:09 2026 +1000
package list and scripts: updates for Debian 14
commit 9db6055116a018d600b6cf30871069a4e384a5b4
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sun Sep 6 06:43:53 2026 +1000
package list and scripts: updates for Ubuntu 22.04
commit c7f29d04814218ad6c1d8d830a14860aa68c9eec
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sun Sep 6 05:49:17 2026 +1000
package list and scripts: updates for RHEL 8
commit 8fc6dbbf132e2a404441214f4af79ad36271eb55
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sat Sep 5 15:35:14 2026 +1000
package list and scripts: updates for Slackware 15.0
commit 0379d253a1dcdc400b2b5cd8bfe417e92961d628
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sat Sep 5 07:54:17 2026 +1000
OracleLinux+10+x86_64: helps if you git add the package list
commit e5083e1c5b325a64bbd6c562f63c69df1ad6a446
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sat Sep 5 07:51:34 2026 +1000
package list and scripts: updates for OracleLinux 10
commit 90d3f74f6a5554889fbd7b43dfb6a48cdb927f2a
Author: Paul Evans <pevans@redhat.com>
Date: Fri Sep 4 12:49:20 2026 +0100
pmdasmart: fix Coverity FORWARD_NULL and TOCTOU warnings
Fix both warnings from Coverity from the recent pmdasmart changes
commit e19f6558931ab9ae2a838f71f39bb37ae4ee51ff
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 21:50:26 2026 +1000
package list and scripts: updates for NetBSD 11
commit 7f88fddeef0ea08d47fb11baca562b88809d4d12
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 21:24:16 2026 +1000
package list and scripts: update for Debian 12
commit c461efddcbda5a2288183259c723361a0b231801
Merge: abbd7291 17a2b81d
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 15:24:11 2026 +1000
Merge branch 'main' of https://github.com/performancecopilot/pcp
commit abbd729114e747b1c42929a527adb00319ae4e1d
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 15:23:27 2026 +1000
package list and scripts: update for CentOS 7
commit 80943be0ea0844c85b68618b453c0b40c3d39f6f
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 14:25:27 2026 +1000
package lists: updates for Fedora 44
And dnf5 which is different to dnf (list options and output) and
this broke a bunch of scripts.
commit 17a2b81d5a1ba2e414eb6d1b77760dd4b870af44
Merge: 7a2fa70b 56d35614
Author: Nathan Scott <nathans@redhat.com>
Date: Fri Sep 4 11:47:05 2026 +1000
Merge branch 'pauljevans-pevans-merge'
commit 5c0413ed2ea47c5f56ac22d56b9a353b6e41bbdd
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Sep 4 10:15:50 2026 +1000
packaging and build: wind back some OpenMandriva changes and fix AmazonLinux
Some of the OpenMandriva changes broke the build on other rpm
platforms, so re-scope these to be mandriva-only or undo 'em
and I'll return to the issue when I go back to getting OpenMandriva
working:
build/rpm/GNUmakefile:
- if rpm -ba fails, fail the build
build/rpm/pcp.spec.in
- need %{nil} (not nothing) for empty macro definitions
- some of the Requires: and Build-Requires: package macro-isation
was wrong for non-mandriva platforms
General fixups and improvements to the following scripts:
- qa/admin/check-other
- qa/admin/check-rpm
- qa/admin/check-vm
- qa/admin/list-packages
- qa/admin/old-list-packages
Package changes specific to AmazonLinux 2023:
- qa/admin/other-packages/manifest
- qa/admin/other-packages/unavailable
- qa/admin/package-lists/AmazonLinux+2023+x86_64
Make the byte-compiling changes for Python interface layers mandriva-only:
- src/include/builddefs.in
- src/python/GNUmakefile
Make the omit -flto from CFLAGS changes mandriva-only:
- src/perl/GNUmakefile
- vendor/GNUmakefile
commit 56d356141e60180a3e5091786f2f9ab7f38e69bf
Author: Paul Evans <pevans@redhat.com>
Date: Thu Sep 3 18:29:33 2026 +0100
pmdasmart: enumerate block devices from sysfs instead of lsblk
Replace the lsblk command with direct sysfs enumeration of
/sys/class/block/ for discovering SMART-capable block devices.
The previous approach used a hardcoded lsblk exclusion list
(lsblk -e 1,2,7,11,251,252) to filter virtual devices by major
number. This was fragile because major numbers like zram (251)
and device-mapper (252) are dynamically allocated and vary across
distributions and kernel configurations.
The new smart_enumerate_devices() function filters sysfs entries
using three checks:
- skip partitions (have a "partition" sysfs attribute)
- skip virtual devices (symlink resolves through /devices/virtual/)
- skip non-disk SCSI types such as CD-ROM (device/type != 0)
Accepted devices are sorted by major:minor to match the ordering
previously provided by lsblk, preserving instance identifier
stability for existing pmlogger archives.
The SMART_SETUP_LSBLK environment variable override is retained
for QA testing.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
commit 466d5a6bd1936c24d13352160f8f06753ec85534
Author: Paul Evans <pevans@redhat.com>
Date: Thu Sep 3 17:57:02 2026 +0100
pmdasmart: skip devices without wwid instead of aborting
When uuid_instance_refresh() encountered a block device without a
world wide identifier (e.g. zram or loop devices), it called pclose()
on the unfinished lsblk pipe and returned the error. This aborted
the entire instance refresh rather than just skipping the problematic
device.
Change to continue so devices without a wwid are silently skipped in
the UUID instance domain while the remaining devices are processed
normally.
Add QA test archive smart-root-006 with a fake device name
(pcp_qa_disk0) that cannot match any real /sys/block/ entry,
and extend test 1397 to verify the PMDA handles missing wwid
gracefully.
Resolves #2702
commit 45b3c0a9312ca008d082262bd46d105712985f24
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 16:23:35 2026 +1000
qa/admin/post-setup: rework "ip show link" parser
Change from broken to working (at least on vm01).
commit b5249d7179db059f05c9665b3a0bf8a3524be0e0
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 16:19:26 2026 +1000
src/include/builddefs.in: changes to byte-compiling Python interface bits
New comment says is all:
we're forcing integrated byte-compiling in the builds now with
PYTHONDONTWRITEBYTECODE=0
over in src/python/GNUmakefile
so we don't need the find and append to the end of python3-pcp.list
commit 66ac08315e0d9c2289a6821eed59f7985ff415c2
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 12:31:54 2026 +1000
pacake lists and scripts: updates for Ubuntu 16.04 (from vm01)
commit bd53becb6b18e954dc8b096b36d3e536a71bc363
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 11:54:24 2026 +1000
build: enable -no-undefined for ld(1)
Mandriva's rpmbuild forces this, which lead to a bunch of build
failures.
It is probably a "good thing", so turn it on for all our builds
and then deal with the exceptions:
- pmcd DSO PMDA (needs symbols from running pmcd at dlopen() time)
- Python wrappers (by design and without exception, these need symbol
resolution at dlopen())
And this also fixes this class of build failure for OpenMandriva.
commit c73809b1b8a8e50905510162ef7e2d93440e210a
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 11:51:25 2026 +1000
src/pmdas/bpf/modules/GNUmakefile: link with -lz
Avoids unresolved external symbols.
commit 57a78e161ea87b0e296534d6179e39037e6d0aae
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 08:04:40 2026 +1000
build/rpm: changes for OpenMandriva
- build/rpm/pcp.spec.in: lots of changes to accommodate (apparently
arbitrary) package name changes between RH, SUSE and OpenMandriva ...
most done with macro-driven names rather than conditionals
- build/rpm/GNUmakefile: rpm -ba looks like it can work, but return a
non-zero exit status ... make the makefile a little more accommodating
commit 534db01b1782ab3fdabc60adfff5963e89c276bf
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 08:01:00 2026 +1000
src/pmlogger/GNUmakefile: sed recipe for crontab.daily_report totally broken
Not sure how this has been missed for, er over a year, but
it broke the build on OpenMandriva.
commit 8c259b198b641cdcc70d43cff4929197edef04aa
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 07:57:59 2026 +1000
Makepkgs: make ZIP check logic more complicated
On OpenMandriva, gzip has been replaced by pigz which seems to have
compatible command line arguments and behaviour, but fails our _gnu_tool()
test miserably because there is no GNU verbage in the usage message.
commit 3f88c553a9aa1a7ea06a3725798fc667be618dae
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Sep 3 07:43:52 2026 +1000
qa/admin: lots of package list enhancements
- check-dpkg: (new) checks that the packages from the Debian Build-Depends:
and Depends: stanzas in debian/control are included in the packing list
(which means they have to be in the manifest as well) ... same logic as
check-rpm
- check-other: (new) checks the control files from qa/admin/other-packages
(manifest, unavailable, skip* and require [last one now retired]) are
consistent with the package list for the current platform
- check-rpm: updates and improvements
- list-packages: improve -U (=> -uv but show-me, don't update the package list)
- old-list-packages: overhaul the package selection logic
- pcp-daily: use -U (not -u) with list-packages
- package-lists/Ubuntu+26.04+x86_64: updated after running all of the above
on bozo
commit 184d8351c2d5b3d4d652f956ba66505b00d34ad4
Author: Ken McDonell <kenj@kenj.id.au>
Date: Wed Sep 2 16:01:00 2026 +1000
Merge branch 'main' of https://github.com/performancecopilot/pcp
commit 7a2fa70b3517e7f0055a1c7f91fdcd99eee573c1
Merge: 16ab2a18 6114b9f5
Author: Nathan Scott <natoscott@users.noreply.github.com>
Date: Wed Sep 2 15:42:39 2026 +1000
Merge pull request #2704 from performancecopilot/dependabot/github_actions/github/codeql-action-4.37.9
build(deps): bump github/codeql-action from 4.37.8 to 4.37.9
commit 16ab2a180c3ad167cb62498128b1514c9382ea0e
Merge: d5ace94b 6fb9dc85
Author: Nathan Scott <nathans@redhat.com>
Date: Wed Sep 2 15:42:01 2026 +1000
Merge branches 'orasagar-pcp-ps_optimization' and 'lukas7811-main'
commit d5ace94bee7a7614e89a95408f1c93c0c201fa00
Merge: 719d454a 72dca1bd
Author: Nathan Scott <nathans@redhat.com>
Date: Wed Sep 2 15:41:20 2026 +1000
Merge branch 'pcp-ps_optimization' of github.com:orasagar/pcp into orasagar-pcp-ps_optimization
commit 6114b9f5f7033011bcfec01d77712c1233874e1a
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: Mon Aug 31 22:34:17 2026 +0000
build(deps): bump github/codeql-action from 4.37.8 to 4.37.9
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.37.8 to 4.37.9.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v4.37.8...v4.37.9)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.37.9
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
commit 6fb9dc85a539c77821106863072be1b7aec33beb
Author: Lukas Oliva <lukas.oliva@virtuozzo.com>
Date: Tue Sep 1 00:21:08 2026 +0200
macos: preserve already-absolute libpcp paths in QT_LINKER_FIXUP
The previous guard only skipped rewriting a dependency already rooted
at $(PCP_LIB_DIR), so any other absolute libpcp path found by otool -L
would still get blindly prefixed with $(PCP_LIB_DIR), producing a
broken concatenated path instead of being left alone. Match on any
leading "/" instead, so every already-absolute dependency is preserved
verbatim and only a bare "libpcp.N.dylib" name gets rewritten.
Verified via a full Makepkgs --with-qt=yes rebuild plus standalone
double-invocation (make run twice) on pmdumptext, pmchart and pmtime:
otool -L shows a single /usr/local/lib/libpcp.N.dylib entry on both
runs and all three run standalone (-V) without DYLD_LIBRARY_PATH.
pmquery (also named in review) builds fine and never links libpcp, so
the fixup is a no-op there. pmgadgets fails to build for an unrelated,
pre-existing reason (missing images/pmgadgets.png, not in default
SUBDIRS); pmview needs ENABLE_QT3D, which this configuration has off.
commit 72dca1bd4559164c491a9c3fe8e30663db6037b6
Author: Sagar Sagar <sagar.sagar@oracle.com>
Date: Mon Aug 31 10:17:27 2026 +0000
qa: update 1987 process output fixture
commit 19073e5832ea7e67e6b630bb35f2aba303c83814
Author: Lukas Oliva <lukas.oliva@virtuozzo.com>
Date: Mon Aug 31 07:54:56 2026 +0200
macos: fix libpcp install_name for qmake-built Qt tools
pmchart, pmdumptext, pmtime, pmquery, pmgadgets and pmview are linked
directly by qmake's generated Makefile via the QTMAKE build-me recipe,
which bypasses the $(PROGTARGET)/$(LIBTARGET) rules in buildrules that
invoke LINKER_MAKERULE after linking. On macOS that rule is what
rewrites a binary's bare "libpcp.N.dylib" dependency into an absolute
$(PCP_LIB_DIR) path, so without it these Qt tools keep the bare name
and dyld fails to load them outside the build tree.
Add QT_LINKER_FIXUP, the same fixup parameterized on an explicit binary
path (build-me has no mtime-based prerequisites, so $@ isn't available
and the recipe can legitimately run more than once per build; the
fixup skips paths already rooted at $(PCP_LIB_DIR) so repeat runs are
a no-op instead of nesting the prefix), and call it after $(LNMAKE) in
each affected GNUmakefile.
commit 719d454ac3fe93404ab0121921d403434db27786
Merge: d68f585e 7814f52e
Author: Ken McDonell <kenj@kenj.id.au>
Date: Sat Aug 29 05:40:42 2026 +1000
Merge pull request #2701 from kmcdonell/wip
QA Farm rebuild
commit 7814f52eecf0fb6d98d42c4c1537cfc741d18d89
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 16:40:35 2026 +1000
Update build/tar/verify-install
Co-authored-by: coderabbitai[bot] <136622811+coderabbitai[bot]@users.noreply.github.com>
commit 2ae632107f0144c3fa29e6cc93b0de9b51ead561
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 15:46:43 2026 +1000
more nits from @coderabbitai for PR 2701
commit affaaaa98956d0c6a097a433ce73a0744e417f78
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 14:02:37 2026 +1000
misc: pick at nits from @coderabbit
commit dcc384433e66e31aebc138e79de183c6c4cc7d16
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 13:44:14 2026 +1000
packing lists: manifest cleanup and updates for openSUSE 16
commit 1a7c177ee62289d258609b228cb24f62a9823143
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 13:42:55 2026 +1000
qa/admin/install-packages: (new) uber package installer
Will install packages (like the ones from list-packages -m) on any platform.
Logic borrowed from qa/admin/post-setup.
commit 87ae39b9e32c9a488931b9ad16ecbf5b7f9472d4
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 13:04:58 2026 +1000
assorted fixups: from @coderabbit for PR 2701
commit b17ee08a1122ae8a4a5ec3b0829e7ea61072d50a
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 12:57:36 2026 +1000
qa/1728 (and 1729): extent coverage for $PCP_SQUASH_NEWLINES
In the same boat as the other PCP_FOO env vars for pmPrintValue()
but this one had no obvious QA coverage.
commit 3faa5cda5a1b4d2be8d748e495590f8fac1bb0ef
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 12:43:59 2026 +1000
libpcp: tweak pmPrintValue() env var uses
Based on @coderabbitai feedback in PR 2701, add sanity checks for the
values imported from $PCP_FLOAT_PRECISION and $PCP_DOUBLE_PRECISION and
reject (and report if -Dmisc) unacceptable values.
The new qa/1728 and the qa/1729 valgrind dual exercise all of this.
commit 6197acfc4ac56ec0d41789d03dd4d34223ed27e0
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 06:57:10 2026 +1000
build/tar/verify-install: replace tar -tv usage
coderabbitai pointed out in the context of PR 2701 that
tar -tv is not portable ... GNU and BSD cannot agree on the output
format, so post-processing this with awk to pick fields out is
doomed.
Claude handily suggested that the underlying archive format is
invariant, and so a drop-in replacement in Python could be used
safely across all platforms.
[I've finally encountered an actual example where Python is really,
really useful].
commit a9e2299e4dd5b424fb83dbb1d9497a9383ab9d20
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 06:55:26 2026 +1000
qa/admin/other-packages/manifest: update pyarrow for dpkg
commit efb789c47977995ced96d9472daa88ad2fc22409
Author: Ken McDonell <kenj@kenj.id.au>
Date: Fri Aug 28 06:51:12 2026 +1000
qa/admin/other-packages/manifest: add sqlite3.h packages
Needed to build pmsearch now.
commit 3b50ba54a92cf8405748f92bd028207dfbcafc34
Merge: cc751922 d68f585e
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Aug 27 14:37:05 2026 +1000
Merge branch 'main' of https://github.com/performancecopilot/pcp
commit d68f585e654da51846fdf056e032bf51851e812b
Merge: 90318199 a9b7fe54 affa7570
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Aug 27 14:30:17 2026 +1000
Merge branches 'wtatarski-pmproxy-x509-leak', 'orasagar-pcp_tools_bug_fix' and 'kurik-ppc64le-huge'
commit affa75705ad61c5f2f82e8cf438905328039d9a0
Merge: 2f1a1613 201c5358
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Aug 27 14:29:55 2026 +1000
Merge branch 'ppc64le-huge' of github.com:kurik/pcp into kurik-ppc64le-huge
commit a9b7fe5448d83f16589ed740482e1f0709db4364
Merge: 2f1a1613 e441fe62
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Aug 27 14:26:17 2026 +1000
Merge branch 'pcp_tools_bug_fix' of github.com:orasagar/pcp into orasagar-pcp_tools_bug_fix
commit 903181990be362b18c3a7a170a92577926e5d25b
Merge: 2f1a1613 7e3df62e
Author: Nathan Scott <nathans@redhat.com>
Date: Thu Aug 27 14:25:14 2026 +1000
Merge branch 'pmproxy-x509-leak' of github.com:wtatarski/pcp into wtatarski-pmproxy-x509-leak
commit 2f1a1613a924eb9c032d3ee15a1a1be2b3c805a7
Merge: 55365f2e 0b24d731
Author: Nathan Scott <natoscott@users.noreply.github.com>
Date: Thu Aug 27 14:24:43 2026 +1000
Merge pull request #2696 from performancecopilot/dependabot/github_actions/github/codeql-action-4.37.8
build(deps): bump github/codeql-action from 4.37.4 to 4.37.8
commit cc751922aaca84bfca27531a7690a511bf9e93ee
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Aug 27 13:50:20 2026 +1000
libpcp: pmPrintValue: allow control of digits of precision for float and double values
After bozo was rebuilt, the new faster CPU (AMD this time, not Intel as
well) mean that the lmsensors PMDA was exporting values for PM_TYPE_FLOAT
metrics like lmsensors.amdgpu_pci_7600.sclk in the 600000000 range, but
t.his is big enough to flip libc so that %x.8g produces a value of 6e+8
(scientific notation, ot fixed format) which blows up qa/1480 when it asks
awk to do arithmetic on this value which is no longer numeric in awkland.
This is really symptomatic of an arbitrary decision in libpcp (8) that
the user cannot change. pmPrintValue() is sufficently low-level that the
problem is visible in pminfo, pmprobe, pmrep, ...
So I've introduced another environment variable, $PCP_FLOAT_PRECISION that
can be used to set the precision for float value printing to be something
other than 8.
And the same problem exists and is fixed the same way for PM_TYPE_DOUBLE
where the (new) $PCP_DOUBLE_PRECISION allows something different to the
hard-coded 16 digits of precision.
commit c7e75cbce86b4d790f1f8623d360aea0efd1a6bb
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Aug 27 08:02:35 2026 +1000
Assorted package-list and VM build updates
From the QA Farm rebuild for AmazonLinux 2023, Fedora 44, LinuxMint 25.2
and MX Linux 25.2
- new or updated packing-list files
- tweaks for qa/admin/other-packages/manifest
- effectively retire qa/admin/other-packages/require as this is no
longer adding any value
- qa/admin/post-setup needed more bells and whistles
- qa/README.vm updates
- fix qa/admin/old-list-packages so that qa/admin/packing-lists/new works
better
- qa/admin/list-packages - add a -u flag to run -c _and_ update the
packing list for the things that can be unilaterally added or
dropped
- qa/admin/pcp-daily needs to know about some more special VMs and hosts
- new qa/008.out.bozo for the born again bozo
- qa/qa_hosts.primary update QA Farm "special" hosts
- qa/check.callback.sample update QA Farm "special" hosts
- qa/common.check fix a typo in _all_ipaddrs() for network interface
names vibr should have been virbr and ditto for _all_hostnames()
commit 116d3db85bf137594ada578449bc9d8857f8f038
Author: Ken McDonell <kenj@kenj.id.au>
Date: Thu Aug 27 07:43:26 2026 +1000
Debian packaging: deal with non-systemd systems
Various of our "postinst" scripts were blindly assuming that if systemd
helpers like systemd-tmpfiles or systemd-sysusers were installed than
systemd was running ... on MX Linux, out of the box, these helpers
are present but systemd is not active.
Add a [ "`ps -p 1 -o comm=`" = systemd ] guard to check if systemd is
really doing init's job.
commit 201c5358442e8c99ba17e197e9177342c1b2cf7a
Author: Jan Kurik <jkurik@redhat.com>
Date: Wed Aug 26 17:34:59 2026 +0200
pmdalinux: fix mem.numa.hugepages on non-sequential NUMA node ids
refresh_sysfs_numa_hugepages() used the pmdaCache walk index as the
NUMA node number when opening sysfs paths and building instance names.
On ppc64le Power systems, firmware-assigned node ids are often
non-sequential or omit node0, so the wrong directories were scanned and
mem.numa.hugepages.* returned no values even when per-node hugepage
sysfs entries existed.
Use pernode_t::nodeid from pmdaCacheLookup(), consistent with
numa_meminfo.c. Add qa/linux/sysfs-hugepages-004.tgz exercising a
node1-only layout and update qa/1788 expected output.
Resolves Red Hat bug RHEL-113057
commit e441fe620fb9e141d60da3bc952d5c49be4bf4d6
Author: Sagar Sagar <sagar.sagar@oracle.com>
Date: Wed Aug 26 13:32:56 2026 +0000
qa: update pcp-mpstat CPU utilization output
Refresh QA 883 and 1782 expected output after correcting CPU
utilization scaling. Aggregate values are divided by the CPU count,
while per-CPU values retain their full utilization.
commit 7e3df62ed58fbbe64e9ec1b0957cb84db05da0de
Author: Wojciech Tatarski <wtatarski@cloudlinux.com>
Date: Wed Aug 26 11:02:32 2026 +0200
pmproxy: release the X509 reference in the CERT_REQD check
SSL_get_peer_certificate() returns a certificate whose reference count
has been incremented, so the caller owns that reference and must release
it with X509_free(). On OpenSSL 3.x the name is a compatibility macro
for SSL_get1_peer_certificate(), which has the same owning semantics.
81a9efe96db6 called it inline in the NULL test and discarded the result.
Because of the short-circuit order the reference is taken only when the
connection is TLS and an SSL object exists, and it is leaked precisely
when a certificate is present - that is, on the path where the request
is allowed through. on_headers_complete() runs once per request, so a
pmproxy started with -Q accumulates one X509 per authenticated REST
request for the lifetime of the daemon.
Capture the reference and free it, leaving the accept/reject logic
unchanged. SSL_get0_peer_certificate() would avoid the reference
entirely but is not available on the older OpenSSL versions pcp still
supports.
Reported and fixed while backporting 81a9efe96db6 to pcp 6.3.7 and
6.0.1. Fixes #2693.
commit 55365f2e43f4e83d5399cec5b62fbf5e798883c4
Author: Sam Feifer <64805811+sfeifer@users.noreply.github.com>
Date: Mon Aug 24 21:16:27 2026 -0400
libpcp_web: make search no longer associated with a key server
Additionally add -S option to newhelp man page
commit 0b24d731c79d89b3db52bcee1436694e365de23f
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Date: Mon Aug 24 22:39:01 2026 +0000
build(deps): bump github/codeql-action from 4.37.4 to 4.37.8
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.37.4 to 4.37.8.
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](https://github.com/github/codeql-action/compare/v4.37.4...v4.37.8)
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: 4.37.8
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
commit d6c61f32b3c4e75f9493ab7f9237b5ecb96abdbc
Author: Sam Feifer <sfeifer@redhat.com>
Date: Mon Aug 24 11:14:02 2026 -0400
newhelp: Fix unchecked return values (CID 505627)
commit 305150bdd7b2d985b907af7eb180a440a867a9cd
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Aug 24 21:54:44 2026 +1000
Fedora Rawhide package-list and VM build updates
From the QA Farm rebuild for Fedora Rawhide (currently F46).
commit 60058ae269f6c33e5bdbaf96ff52492968c9f57c
Author: Sagar Sagar <sagar.sagar@oracle.com>
Date: Mon Aug 24 09:40:57 2026 +0000
pcp-ps: wait for previous system CPU time
commit 4c31da4d11479f179d2f3858b8ef30ed77f9544a
Merge: 6cdb6682 3e331a4c
Author: Nathan Scott <nathans@redhat.com>
Date: Mon Aug 24 15:52:57 2026 +1000
Merge branch 'main' of github.com:performancecopilot/pcp
commit 6cdb6682e8d811d9aaf0881c8ad2b25218aea602
Author: Nathan Scott <nathans@redhat.com>
Date: Mon Aug 24 15:51:41 2026 +1000
docs: bump version number for next planned release
commit a7189a6402a9eb3907c3ef2c4812bd3cc062105c
Author: Ken McDonell <kenj@kenj.id.au>
Date: Mon Aug 24 15:21:12 2026 +1000
NetBSD and OpenBSD package-list and VM build updates
From the QA Farm rebuild for NetBSD 10.1, NetBSD 11.0 and
OpenBSD 7.9.
Also fixes for qa/admin/old-list-packages so "new" works better
in qa/admin/package-lists.
commit 3e331a4c5fdd9baeee6b18f8b2f2725eedd73a49
Merge: 5f0bfb56 f8a245d3
Author: Nathan Scott <natoscott@users.noreply.github.com>
Date: Mon Aug 24 14:10:38 2026 +1000
Merge pull request #2679 from performancecopilot/dependabot/github_actions/github/codeql-action-4.37.4
build(deps): bump github/codeql-action from 4 to 4.37.4
There are 6 open security issues in trixie.
You can find information about how to handle these issues in the security team's documentation.