Skip to content

Use OpenSSL 3.6.4 for musl builds - #45149

Merged
copyberry[bot] merged 1 commit into
mainfrom
copyberry/codex-internal-to-codex-oss/4276c7d6cf30c31c8554246cea2f406dfbf7568b
Sep 13, 2026
Merged

copyberry[bot] merged 1 commit into
mainfrom
copyberry/codex-internal-to-codex-oss/4276c7d6cf30c31c8554246cea2f406dfbf7568b

Conversation

@copyberry

@copyberry copyberry Bot commented Sep 13, 2026 •

Copy link
Copy Markdown

Use OpenSSL 3.6.4 for musl builds

Why

The latest openssl-src 300.x crate still bundles OpenSSL 3.6.3. Build the 3.6.4 security release directly while preserving the existing 3.x ABI.

What changed

  • Build static OpenSSL libraries with the musl compiler for x86_64 and aarch64, verifying the source archive's SHA-256 checksum.
  • Set target-specific OpenSSL overrides to bypass vendored builds without affecting host build dependencies.
  • Add perl and make to the musl build prerequisites and reuse completed OpenSSL installations.

## Why

The latest `openssl-src` 300.x crate still bundles OpenSSL 3.6.3. Build the 3.6.4 security release directly while preserving the existing 3.x ABI.

## What changed

- Build static OpenSSL libraries with the musl compiler for `x86_64` and `aarch64`, verifying the source archive's SHA-256 checksum.
- Set target-specific OpenSSL overrides to bypass vendored builds without affecting host build dependencies.
- Add `perl` and `make` to the musl build prerequisites and reuse completed OpenSSL installations.

GitOrigin-RevId: 4276c7d6cf30c31c8554246cea2f406dfbf7568b
@copyberry
copyberry Bot force-pushed the copyberry/codex-internal-to-codex-oss/4276c7d6cf30c31c8554246cea2f406dfbf7568b branch from d9ba803 to a592c38 Compare September 13, 2026 01:20
@copyberry
copyberry Bot merged commit a592c38 into main Sep 13, 2026
@copyberry
copyberry Bot deleted the copyberry/codex-internal-to-codex-oss/4276c7d6cf30c31c8554246cea2f406dfbf7568b branch September 13, 2026 01:20
@github-actions

Copy link
Copy Markdown
Contributor


Thank you for your submission, we really appreciate it. Like many open-source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution. You can sign the CLA by just posting a Pull Request Comment same as the below format.


I have read the CLA Document and I hereby sign the CLA


You can retrigger this bot by commenting recheck in this Pull Request. Posted by the CLA Assistant Lite bot.

1 similar comment
@github-actions

Copy link
Copy Markdown
Contributor


Thank you for your submission, we really appreciate it. Like many open-source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution. You can sign the CLA by just posting a Pull Request Comment same as the below format.


I have read the CLA Document and I hereby sign the CLA


You can retrigger this bot by commenting recheck in this Pull Request. Posted by the CLA Assistant Lite bot.

@github-actions github-actions Bot locked and limited conversation to collaborators Sep 13, 2026
@anotb
anotb deployed to issue-triage September 13, 2026 02:55 — with GitHub Actions Active
@Nadr0j
Nadr0j deployed to issue-triage September 13, 2026 02:56 — with GitHub Actions Active
@LZhWi
LZhWi deployed to issue-triage September 13, 2026 03:42 — with GitHub Actions Active
@LZhWi
LZhWi deployed to issue-triage September 13, 2026 03:42 — with GitHub Actions Active
@LZhWi
LZhWi deployed to issue-triage September 13, 2026 03:42 — with GitHub Actions Active
@ADAWE087
ADAWE087 deployed to issue-triage September 13, 2026 04:50 — with GitHub Actions Active
@ADAWE087
ADAWE087 deployed to issue-triage September 13, 2026 04:50 — with GitHub Actions Active
@ADAWE087
ADAWE087 deployed to issue-triage September 13, 2026 04:50 — with GitHub Actions Active

This branch was successfully deployed

1 active deployment
issue-triage — a592c38c Deployed Sep 13, 2026 by SteveJobsIM via Translate non-English issue #12965
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.