Packages changed:
  ImageMagick (7.1.1.15 -> 7.1.1.17)
  apparmor
  branding-openSUSE
  cairo (1.17.8 -> 1.18.0)
  cockpit
  distribution-logos-openSUSE (20220322 -> 20230921)
  flashrom (1.2 -> 1.3.0)
  git
  gnome-control-center
  gnustep-base
  graphite2
  imlib2 (1.12.0 -> 1.12.1)
  installation-images-MicroOS (17.95 -> 17.96)
  libapparmor
  libdrm
  libreoffice (7.6.1.1 -> 7.6.1.2)
  libsecret (0.21.0 -> 0.21.1)
  p11-kit (0.24.1 -> 0.25.0)
  patterns-microos
  python-constantly
  python-jsonschema (4.18.6 -> 4.19.1)
  python-tornado6 (6.3.2 -> 6.3.3)
  stoken (0.92 -> 0.93)
  systemd
  transactional-update (4.3.0 -> 4.4.0)
  tuned (2.20.0.18+git.7b1a20b -> 2.21.0.0+git.670541d)
  xdg-utils (1.1.3+20230830 -> 1.1.3+20230831)
  yast2-bootloader (4.6.2 -> 5.0.2)
  yast2-installation (4.6.7 -> 5.0.1)
  yast2-trans (84.87.20230913.43f962446c -> 84.87.20230922.91d997adab)

=== Details ===

==== ImageMagick ====
Version update (7.1.1.15 -> 7.1.1.17)
Subpackages: ImageMagick-config-7-SUSE libMagickCore-7_Q16HDRI10 libMagickWand-7_Q16HDRI10

- version update to 7.1.1.17
  * upstream changelog:
  https://github.com/ImageMagick/Website/blob/main/ChangeLog.md#711-17---2023-09-19
- modified patches
  % ImageMagick-library-installable-in-parallel.patch (refreshed)
- follow upstream, create open, limited, secure and websafe alternative
  configuration packages with different policy.xml
- removing p7zip redundant dependency

==== apparmor ====
Subpackages: apparmor-abstractions apparmor-parser apparmor-parser-lang apparmor-profiles apparmor-utils apparmor-utils-lang python3-apparmor

- Fix pam_apparmor %post and %postun scripts to handle pam-config errors
  (bsc#1215596)

==== branding-openSUSE ====
Subpackages: grub2-branding-openSUSE libreoffice-branding-openSUSE plymouth-branding-openSUSE wallpaper-branding-openSUSE yast2-qt-branding-openSUSE

- Enable grub2-branding on ppc64le. patterns-microos-base has
  Requires (grub2-branding-openSUSE if grub2). So we need the
  branding.

==== cairo ====
Version update (1.17.8 -> 1.18.0)
Subpackages: libcairo-gobject2 libcairo-script-interpreter2 libcairo2

- Update to version 1.18.0:
  + The first stable cairo release in five years should be cause
    for celebration.
  + All the API added in the 1.17 development cycle is now
    considered stable, and will not change.
  + Many thanks to all the contributors for this release.
  + The cairo-sphinx tool has been removed; we could not find any
    instruction on how to use it, and no user answered our call for
    help. If you were using cairo-sphinx, please reach out to the
    cairo maintainers.
  + Cairo now implements Type 3 color fonts for PDF.
  + Multiple documentation fixes, to ensure that the cairo API
    reference is up to date. Also fixed multiple compiler warnings
    generated when building cairo.
  + The XML surface has been removed; it was disabled by default
    when building cairo, and we could not find any downstream
    distributor that would enable it.
  + The Tee surface is now automatically enabled. Downstream
    distributors of cairo have been enabling for years it in order
    to build Firefox.
  + Fixed multiple issues with the DWrite font backend.
  + Improved the Quartz surface; mainly, Quartz surfaces now use
    the main display ColorSpace, speeding up rendering operations.
  + Cairo now hides all private symbols by default on every
    platform; the old "slim" symbols hack to alias internally used
    symbols has been dropped, in favor of using
    `-Bsymbolic-functions` with toolchains that support it.
  + Fixed multiple memory leaks in the code base and test suite,
    and general maintenance.
  + Added new API to expose the Pixman dithering filter to cairo
    patterns; this is currently implemented only for image
    surfaces.
- Drop patches fixed upstream:
  + cairo-1.17.8-fix-tee-compilation.patch
  + cairo-1.17.8-ft-font-missing-glyph.patch
- Rebase patches with quilt.
- Stop passing xml=disabled to meson setup, xml backend is dropped.

==== cockpit ====
Subpackages: cockpit-bridge cockpit-packagekit cockpit-system

- Port SLE selinux bug fix from SLE Micro 5.5
  * Copied selinux_libdir.patch from SLEM package

==== distribution-logos-openSUSE ====
Version update (20220322 -> 20230921)
Subpackages: distribution-logos-openSUSE-MicroOS distribution-logos-openSUSE-icons

- Add Aeon branding

==== flashrom ====
Version update (1.2 -> 1.3.0)

- Update to 1.3.0
  - See changelog at https://www.flashrom.org/Flashrom/1.3
- Removed patches (merged upstream):
  - flashrom-install-man-file.patch
  - flashrom-j-link-spi.patch

==== git ====

- Downgrade openssh dependency to recommends (bsc#1215533)

==== gnome-control-center ====
Subpackages: gnome-control-center-color gnome-control-center-goa gnome-control-center-lang gnome-control-center-user-faces

- Add gnome-control-center-add-user-button.patch:
  Show add user button when user is a normal user
  (bsc#1215556 glgo#GNOME/Settings!1927).

==== gnustep-base ====

- use pkgconfig(icu-uc) to use the current libicu. (jsc#PED-6193)

==== graphite2 ====

- fixed license string [bsc#1207676]:
  LGPL-2.1-or-later OR MPL-2.0 OR GPL-2.0-or-later

==== imlib2 ====
Version update (1.12.0 -> 1.12.1)
Subpackages: imlib2-loaders libImlib2-1

- update to 1.12.1:
  * Fix some clang complaints
  * scaling: MMX asm scaling causes segv, disable for now
  * loading: Call module exit function also when not
    dlclosing module on unload
  * loaders: Fix build with -m32 --enable-debug
  * test_load_2: Add forgotten xeyes.png
  * test_save: Fix for jxl loader on ix86
  * test_scale: MMX scaling is disabled
  * RAW loader: Don't unload loader
  * loaders: Fix CPPFLAGS order
  * imlib2_grab, imlib2_view: Unset context colormap
  * x11_grab: Use correct depth when grabbing

==== installation-images-MicroOS ====
Version update (17.95 -> 17.96)

- merge gh#openSUSE/installation-images#663
- Add Qualcomm's GPU clk, LCD backlight, and power-related [spmi &
  pmic] modules required for booting installer on Lenovo X13s.
  (bsc#1215326)
- Add more boot-required modules for Lenovo X13s
- 17.96

==== libapparmor ====

- Fix pam_apparmor %post and %postun scripts to handle pam-config errors
  (bsc#1215596)

==== libdrm ====
Subpackages: libdrm2 libdrm_amdgpu1 libdrm_intel1 libdrm_nouveau2 libdrm_radeon1

- provide/obsolete dropped packages libkms1/libkms-devel (bsc#1215526)
- adjusted n_libdrm-drop-valgrind-dep-generic.patch,
  n_libdrm-drop-valgrind-dep-intel.patch to generated 2.4.116
  pkgconfig files in order to fix build against sle15/Leap 15.x

==== libreoffice ====
Version update (7.6.1.1 -> 7.6.1.2)
Subpackages: libreoffice-base libreoffice-branding-upstream libreoffice-calc libreoffice-draw libreoffice-filters-optional libreoffice-gnome libreoffice-gtk3 libreoffice-icon-themes libreoffice-impress libreoffice-l10n-cs libreoffice-l10n-da libreoffice-l10n-de libreoffice-l10n-el libreoffice-l10n-en libreoffice-l10n-en_GB libreoffice-l10n-es libreoffice-l10n-fr libreoffice-l10n-hu libreoffice-l10n-it libreoffice-l10n-ja libreoffice-l10n-pl libreoffice-l10n-pt_BR libreoffice-l10n-ru libreoffice-l10n-zh_CN libreoffice-l10n-zh_TW libreoffice-mailmerge libreoffice-math libreoffice-pyuno libreoffice-qt5 libreoffice-writer libreofficekit

- libreoffice-draw requires libreoffice-impress from 7.5 onwards, bsc#1215595
- Update to 7.6.1.2:
  https://wiki.documentfoundation.org/Releases/7.6.1/RC2

==== libsecret ====
Version update (0.21.0 -> 0.21.1)
Subpackages: libsecret-1-0 libsecret-lang typelib-1_0-Secret-1

- Update to version 0.21.1:
  + Fix updating credentials by another process in the same Flatpak
    sandbox.
  + Migrate to g_memdup2.
  + Updated translations.

==== p11-kit ====
Version update (0.24.1 -> 0.25.0)
Subpackages: libp11-kit0 p11-kit-tools

- Add d1d4b0ac316a27c739ff91e6c4153f1154e96e5a.patch: Fix probing
  of C_GetInterface.
- Update to 0.25.0:
  * add PKCS#11 3.0 support
  * add support for profile objects
  * add ability to adjust module and config paths at run-time via
    system environmental exports
  * make terminal output nicer
  * p11-kit: add command to print merged configuration
  * p11-kit: add commands to list, add and delete profiles of a token
  * trust: add command to check format of .p11-kit files
  * virtual: fix libffi type signatures for PKCS#11 3.0 functions
  * server: fix umask setting when --group is specified
  * server: check SHELL only when neither --sh nor --csh is specified
  * rpc: use space string in C_InitToken
  * rpc: fix two off-by-one errors identified by asan
  * modules: make logging message more translatable
  * pkcs11.h: support CRYPTOKI_GNU for IBM vendor mechanisms
  * pkcs11.h: add IBM specific mechanism and attributes
  * pkcs11.h: add ChaCha20/Salsa20 and Poly1305 mechanisms
  * pkcs11.h: add AES-GCM mechanism parameters for message-based encryption
  * po: update translations from Transifex
- Update upstream p11-kit.keyring file
- Add missing lang files
- Switch to using Meson as the build system

==== patterns-microos ====
Subpackages: patterns-microos-alt_onlyDVD patterns-microos-apparmor patterns-microos-base patterns-microos-base-microdnf patterns-microos-base-packagekit patterns-microos-base-zypper patterns-microos-basesystem patterns-microos-cloud patterns-microos-cockpit patterns-microos-defaults patterns-microos-desktop-common patterns-microos-desktop-gnome patterns-microos-desktop-kde patterns-microos-hardware patterns-microos-ima_evm patterns-microos-onlyDVD patterns-microos-ra_agent patterns-microos-ra_verifier patterns-microos-selinux patterns-microos-sssd_ldap

- Add ksshaskpass5 (boo#1215407)

==== python-constantly ====

- Clean up the SPEC file
- use unbundled versioneer to build package

==== python-jsonschema ====
Version update (4.18.6 -> 4.19.1)

- update to 4.19.1:
  * Allow single label hostname in format string by @swaeberle in
    [#1164]
- update to 4.19.0:
  * Importing the |Validator| protocol directly from the package
    root is deprecated. Import it from
    |jsonschema.protocols.Validator| instead.
  * Automatic retrieval of remote references (which is still
    deprecated) now properly succeeds even if the retrieved
    resource does not declare which version of JSON Schema it uses.
    Such resources are assumed to be 2020-12 schemas. This more
    closely matches the pre-|referencing| library behavior.

==== python-tornado6 ====
Version update (6.3.2 -> 6.3.3)

- Update to 6.3.3
  * The Content-Length header and chunked Transfer-Encoding sizes
    are now parsed more strictly (according to the relevant RFCs)
    to avoid potential request-smuggling vulnerabilities when
    deployed behind certain proxies.
- Add py312-datetime.patch to fix build with Python 3.12

==== stoken ====
Version update (0.92 -> 0.93)

- Version update to 0.93:
  * upstream moved to github
  * Drop support for versions of nettle older than 2014
  * Further v4 token work
  * fixes in README
  * Add --both option to print current and next token
  * Support for v4 token decode
  * Remove bashisms (Alon Bar-Lev)

==== systemd ====
Subpackages: libsystemd0 libudev1 systemd-coredump systemd-doc systemd-lang udev

- systemd.spec: during package updates, restart localed, timedated and hostnamed
  if they're running.
- systemd.spec: when enabling units prefer enabling service units over socket
  ones for socket activable services. The services shipped by systemd
  automatically redirect the enablement request to the socket unit.

==== transactional-update ====
Version update (4.3.0 -> 4.4.0)
Subpackages: dracut-transactional-update libtukit4 transactional-update-zypp-config tukit

- Version 4.4.0
  - t-u: Introduce setup-fips command [jsc#SMO-194]
  - libtukit: Always set a cleanup algorithm for snapshots - when
    using API, D-Bus interface or tukit the snapshots will be
    automatically cleaned up by snapper after some time now; in the
    past only snapshots created by the transactional-update shell
    script would be cleanup after, and only after a `t-u cleanup`
    run.
  - tukit: enable kexec's syscall detection feature
  - tukit: Don't throw exceptions from the child process after fork
  - tukitd: Rename service file to org.opensuse.tukit.service
  - tukitd: Allow querying DBus Properties [boo#1214707]
  - t-u: Add support for fully written-out update commands
  - t-u: Improve detection of existing kernel parameters

==== tuned ====
Version update (2.20.0.18+git.7b1a20b -> 2.21.0.0+git.670541d)

- Update to version 2.21.0.0+git.670541d:
  * new release (2.21.0)
  * api: fixed stop method not to require any parameter
  * new release (2.21.0-rc.1)
  * gui: multiple fixes and warnings removal
  * gui: fixed inconsistent tabs and spaces, introduced by #516
  * Serialize SIGHUP processing
  * No errors when physical_package_id file does not exist
  * Update tests: disable systemd rate limiting.
  * network-latency: enable rcu_normal_after_boot=1 kernel parameter
  * remove ktimer_lockless_check sysfs setting from realtime-virtual profiles
  * move rtentsk to network-latency profile
  * move "tsc=reliable" setting from realtime to network-latency tuned configuration
  * unify common sysctl settings between realtime and cpu-partitioning profiles
  * Rename rollback-related constants and variables
  * Add rollback option to tuned-main.conf
  * Recast README into MarkDown with various minor corrections and improvements
  * Remove setting ip forwarding via openshift profile
  * Fix logging in [scheduler] plug-in
  * fixed sap-hana docu regarding processor power settings
  * Added sap-hana-kvm-guest profile
  * tests/beakerlib: Add new test which covers socket API.
  * plugin_net: expand variables properly
  * fix typo
  * add error dialog when no active profile set

==== xdg-utils ====
Version update (1.1.3+20230830 -> 1.1.3+20230831)

- Update to version 1.1.3+20230831:
  * Revert putting process in background from !55
- revert _service to the original state
- revert drop of xdg-terminal-don-t-run-kreadconfig-if-KDE_SESSION_VE.patch
  (bsc#1215384)

==== yast2-bootloader ====
Version update (4.6.2 -> 5.0.2)

- Fixed testsuite for architectures other than x86_64.
- 5.0.2
- Supporting systemd-boot for architecture x86_64.
  This feature can be enabled/disabled by the "enable_systemd_boot"
  flag in the product description file for each product
  (default is disabled).
- 5.0.1
- 5.0.0 (#bsc1185510)
- support 32 bit UEFI firmware on x86_64/i386 architecture (bsc#1208003,
  jsc#PED-2569)
- 4.6.3

==== yast2-installation ====
Version update (4.6.7 -> 5.0.1)

- Adapt code for changes in yast2-bootloader done for systemd-boot
  experimental support (jsc#PED-1906)
- 5.0.1
- 5.0.0 (#bsc1185510)

==== yast2-trans ====
Version update (84.87.20230913.43f962446c -> 84.87.20230922.91d997adab)
Subpackages: yast2-trans-cs yast2-trans-da yast2-trans-de yast2-trans-el yast2-trans-en_GB yast2-trans-es yast2-trans-fr yast2-trans-hu yast2-trans-it yast2-trans-ja yast2-trans-pl yast2-trans-pt yast2-trans-pt_BR yast2-trans-ru yast2-trans-zh_CN yast2-trans-zh_TW

- Update to version 84.87.20230922.91d997adab:
  * New POT for text domain 'packager'.
  * New POT for text domain 'iscsi-client'.